ma1 pushed to branch base-browser-128.7.0esr-14.5-1 at The Tor Project / 
Applications / Tor Browser


Commits:
d2b1cdb2 by Henry Wilkes at 2025-02-03T17:58:41+01:00
fixup! BB 42716: Disable unwanted about: pages

TB 43308: Remove about:logo which exposes a branding asset.

- - - - -


1 changed file:

- docshell/base/nsAboutRedirector.cpp


Changes:

=====================================
docshell/base/nsAboutRedirector.cpp
=====================================
@@ -123,10 +123,9 @@ static const RedirEntry kRedirMap[] = {
          nsIAboutModule::IS_SECURE_CHROME_UI},
     {"logging", "chrome://global/content/aboutLogging.html",
      nsIAboutModule::ALLOW_SCRIPT},
-    {"logo", "chrome://branding/content/about.png",
-     nsIAboutModule::URI_SAFE_FOR_UNTRUSTED_CONTENT |
-         // Linkable for testing reasons.
-         nsIAboutModule::MAKE_LINKABLE},
+    // Do not allow web pages to link to about:logo, which varies between
+    // channels. See tor-browser#43308.
+    // Moreover, it exposes firefox-specific branding.
     {"memory", "chrome://global/content/aboutMemory.xhtml",
      nsIAboutModule::ALLOW_SCRIPT},
     {"certificate", "chrome://global/content/certviewer/certviewer.html",



View it on GitLab: 
https://gitlab.torproject.org/tpo/applications/tor-browser/-/commit/d2b1cdb2a830de5171f157b95b43a0191d24accd

-- 
View it on GitLab: 
https://gitlab.torproject.org/tpo/applications/tor-browser/-/commit/d2b1cdb2a830de5171f157b95b43a0191d24accd
You're receiving this email because of your account on gitlab.torproject.org.


_______________________________________________
tbb-commits mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to