Sat, 03 Jan 2015 20:18:00 +0100
Conditionally enable double key logic according to:
private browsing mode or privacy.thirdparty.isolate preference and
implement in GetCookieStringCommon and FindCookie where it counts...
With some reservations of how to convince FindCookie users to test
condition and pass a nullptr when disabling double key logic.
michael@0 | 1 | <!DOCTYPE HTML> |
michael@0 | 2 | <html> |
michael@0 | 3 | <!-- |
michael@0 | 4 | https://bugzilla.mozilla.org/show_bug.cgi?id=965082 |
michael@0 | 5 | --> |
michael@0 | 6 | <head> |
michael@0 | 7 | <meta charset="utf-8"> |
michael@0 | 8 | <title>Test for Bug 965082</title> |
michael@0 | 9 | <script type="application/javascript" src="/tests/SimpleTest/SimpleTest.js"></script> |
michael@0 | 10 | <link rel="stylesheet" type="text/css" href="/tests/SimpleTest/test.css"/> |
michael@0 | 11 | <script type="application/javascript"> |
michael@0 | 12 | |
michael@0 | 13 | /** Test for Bug 965082 **/ |
michael@0 | 14 | SimpleTest.waitForExplicitFinish(); |
michael@0 | 15 | |
michael@0 | 16 | function checkThrows(f, msg) { |
michael@0 | 17 | try { f(); ok(false, "Should have thrown: " + msg); } |
michael@0 | 18 | catch (e) { ok(/denied|insecure/.test(e), "Should throw security exception: " + e + " (" + msg + ")"); } |
michael@0 | 19 | } |
michael@0 | 20 | |
michael@0 | 21 | function go() { |
michael@0 | 22 | var protoSetter = Object.getOwnPropertyDescriptor(Object.prototype, '__proto__').set; |
michael@0 | 23 | checkThrows(function() { protoSetter.call(window[0], new Object()); }, "Setting cross-origin Window prototype"); |
michael@0 | 24 | checkThrows(function() { protoSetter.call(window[0].location, new Object()); }, "Setting cross-origin Location prototype"); |
michael@0 | 25 | SimpleTest.finish(); |
michael@0 | 26 | } |
michael@0 | 27 | |
michael@0 | 28 | </script> |
michael@0 | 29 | </head> |
michael@0 | 30 | <body> |
michael@0 | 31 | <a target="_blank" href="https://bugzilla.mozilla.org/show_bug.cgi?id=965082">Mozilla Bug 965082</a> |
michael@0 | 32 | <p id="display"></p> |
michael@0 | 33 | <div id="content" style="display: none"> |
michael@0 | 34 | </div> |
michael@0 | 35 | <iframe id="ifr" onload="go();" src="http://example.org/tests/js/xpconnect/tests/mochitest/file_empty.html"></iframe> |
michael@0 | 36 | <pre id="test"> |
michael@0 | 37 | </pre> |
michael@0 | 38 | </body> |
michael@0 | 39 | </html> |