Opened 3 years ago

Closed 3 years ago

#21764 closed enhancement (fixed)

Use bubblewrap's `--die-with-parent` once a release is made.

Reported by: yawning Owned by: yawning
Priority: Medium Milestone:
Component: Archived/Tor Browser Sandbox Version:
Severity: Normal Keywords:
Cc: Actual Points:
Parent ID: Points:
Reviewer: Sponsor:

Description

There's a good amount of work that goes into "Kill sandboxed processes" that can be dramatically simplified and made more robust with bubblewrap's --die-with-parent option. As of this moment this is unreleased, so support will need to wait until after they tag the next version.

https://github.com/projectatomic/bubblewrap/commit/b6370de0fc4be6bb801206e39437ad1f2f5c0be7

Child Tickets

Change History (1)

comment:1 Changed 3 years ago by yawning

Resolution: fixed
Status: newclosed

Turns out in certain cases with e10s enabled, killing the sandbox leaves firefox running without this.

https://gitweb.torproject.org/tor-browser/sandboxed-tor-browser.git/commit/?id=66aaf6fea4293fdb0f9f233ea612e3b53efc4172

Note: See TracTickets for help on using tickets.