New issue
Advanced search Search tips

Issue 815019 link

Starred by 1 user

Issue metadata

Status: Fixed
Owner:
Closed: Jun 2018
Cc:
EstimatedDays: ----
NextAction: ----
OS: ----
Pri: 3
Type: Bug

Blocking:
issue 803774



Sign in to add a comment

SignedExchangeHandler can cause browser-side DoS

Project Member Reported by horo@chromium.org, Feb 23 2018

Issue description

Currently SignedExchangeHandler stores the all response body to |original_body_string_|.
This can cause browser-side DoS.
We must fix it before shipping.
 

Comment 1 by horo@chromium.org, Feb 23 2018

Blocking: 803774
Status: Fixed (was: Assigned)
Now Signed Exchange uses simpler envelope format which does not require stream parsing, and browser bounds the maximum header size.

I think we can close this.

Sign in to add a comment