Loading
Bug 2066736 - Validate filter array lengths in FilePickerParent::RecvOpen. a=dmeehan
The loop in RecvOpen counts with aFilters.Length() but reads aFilterNames[i]. If a content process sends the message with more filters than filterNames, the read goes out of bounds and the parent process crashes. So I added a check that both arrays have the same length. Original Revision: https://phabricator.services.mozilla.com/D321511 Differential Revision: https://phabricator.services.mozilla.com/D321697