-
Notifications
You must be signed in to change notification settings - Fork 2.5k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Security] Audio farbling bypass #42356
Comments
@arthuredelstein please add the following required labels as appropriate:
cc @kjozwiak |
@arthuredelstein @diracdeltas should we use |
yes let's include it in the release notes, credit goes to https://hackerone.com/cesium_fusilli |
QA testing (copied from https://hackerone.com/reports/2846851 by https://hackerone.com/cesium_fusilli):
|
Verification
Reproduced the issue in 1.74.48 using the STR/testplan from #42356 (comment)
Confirmed that the fingerprint values in Normal window and Private window for both the tables are different in 1.75.161 as expected.
|
Verified on
|
Description
Fix a code path in our audio farbling where audio is not being farbled. See https://hackerone.com/reports/2846851
Summary:
Reproduces how often
Easily reproduced
Desktop Brave version (brave://version info)
Desktop Linux: Brave 1.73.89 Chromium 131.0.6778.69 (Ubuntu 22.04.5 LTS)
Android: Brave 1.73.89 Chromium 131.0.6778.69 (Android 14)
Android device
Channel information
Reproducibility
The text was updated successfully, but these errors were encountered: