Security/Reviews/B2G/DownloadManager: Difference between revisions

no edit summary
No edit summary
No edit summary
Line 63: Line 63:




=== Permissions ===
Settings and System are only apps with certified ‘downloads’ permission.
<code>
  "downloads": {
    app: DENY_ACTION,
    privileged: DENY_ACTION,
    certified: ALLOW_ACTION
  },
</code>


===Permission Model===
===Permission Model===
Line 87: Line 78:


==== 2. Process Segregation ====
==== 2. Process Segregation ====


==== 3. Data validation & Sanitization ====
==== 3. Data validation & Sanitization ====


====4. Denial of Service ====
====4. Denial of Service ====
canmove, Confirmed users
1,220

edits