2015-05-03 19:32:37 +00:00
|
|
|
/* -*- Mode: C++; tab-width: 8; indent-tabs-mode: nil; c-basic-offset: 2 -*- */
|
|
|
|
/* vim: set ts=8 sts=2 et sw=2 tw=80: */
|
2012-05-21 11:12:37 +00:00
|
|
|
/* This Source Code Form is subject to the terms of the Mozilla Public
|
|
|
|
* License, v. 2.0. If a copy of the MPL was not distributed with this
|
|
|
|
* file, You can obtain one at http://mozilla.org/MPL/2.0/. */
|
2006-06-13 03:07:47 +00:00
|
|
|
|
|
|
|
#include "nsCOMPtr.h"
|
2013-03-22 00:05:20 +00:00
|
|
|
#include "nsIDocument.h"
|
2006-06-13 03:07:47 +00:00
|
|
|
#include "nsIScriptTimeoutHandler.h"
|
|
|
|
#include "nsIXPConnect.h"
|
|
|
|
#include "nsJSUtils.h"
|
|
|
|
#include "nsContentUtils.h"
|
2012-07-27 14:03:27 +00:00
|
|
|
#include "nsError.h"
|
2008-01-30 02:11:48 +00:00
|
|
|
#include "nsGlobalWindow.h"
|
2010-03-08 08:24:50 +00:00
|
|
|
#include "nsIContentSecurityPolicy.h"
|
2012-06-15 02:31:55 +00:00
|
|
|
#include "mozilla/Attributes.h"
|
2012-10-26 13:32:10 +00:00
|
|
|
#include "mozilla/Likely.h"
|
2013-01-15 12:22:03 +00:00
|
|
|
#include <algorithm>
|
2013-01-03 19:02:36 +00:00
|
|
|
#include "mozilla/dom/FunctionBinding.h"
|
2013-09-06 17:50:24 +00:00
|
|
|
#include "nsAXPCNativeCallContext.h"
|
2006-06-13 03:07:47 +00:00
|
|
|
|
|
|
|
static const char kSetIntervalStr[] = "setInterval";
|
|
|
|
static const char kSetTimeoutStr[] = "setTimeout";
|
|
|
|
|
2013-10-08 15:51:42 +00:00
|
|
|
using namespace mozilla;
|
2013-01-03 19:02:36 +00:00
|
|
|
using namespace mozilla::dom;
|
|
|
|
|
2006-06-13 03:07:47 +00:00
|
|
|
// Our JS nsIScriptTimeoutHandler implementation.
|
2015-03-21 16:28:04 +00:00
|
|
|
class nsJSScriptTimeoutHandler final : public nsIScriptTimeoutHandler
|
2006-06-13 03:07:47 +00:00
|
|
|
{
|
|
|
|
public:
|
|
|
|
// nsISupports
|
2007-03-08 11:17:16 +00:00
|
|
|
NS_DECL_CYCLE_COLLECTING_ISUPPORTS
|
2007-10-29 13:45:07 +00:00
|
|
|
NS_DECL_CYCLE_COLLECTION_SCRIPT_HOLDER_CLASS(nsJSScriptTimeoutHandler)
|
2006-06-13 03:07:47 +00:00
|
|
|
|
|
|
|
nsJSScriptTimeoutHandler();
|
2013-10-08 15:51:42 +00:00
|
|
|
// This will call SwapElements on aArguments with an empty array.
|
2015-09-03 23:03:19 +00:00
|
|
|
nsJSScriptTimeoutHandler(JSContext* aCx, nsGlobalWindow *aWindow,
|
|
|
|
Function& aFunction,
|
2013-10-08 15:51:42 +00:00
|
|
|
FallibleTArray<JS::Heap<JS::Value> >& aArguments,
|
|
|
|
ErrorResult& aError);
|
|
|
|
nsJSScriptTimeoutHandler(JSContext* aCx, nsGlobalWindow *aWindow,
|
|
|
|
const nsAString& aExpression, bool* aAllowEval,
|
|
|
|
ErrorResult& aError);
|
2006-06-13 03:07:47 +00:00
|
|
|
|
2015-03-21 16:28:04 +00:00
|
|
|
virtual const char16_t* GetHandlerText() override;
|
|
|
|
virtual Function* GetCallback() override
|
2013-01-03 19:02:36 +00:00
|
|
|
{
|
|
|
|
return mFunction;
|
2006-06-13 03:07:47 +00:00
|
|
|
}
|
2015-09-03 23:03:19 +00:00
|
|
|
virtual void GetLocation(const char** aFileName, uint32_t* aLineNo,
|
|
|
|
uint32_t* aColumn) override
|
2013-01-03 19:02:36 +00:00
|
|
|
{
|
2006-06-13 03:07:47 +00:00
|
|
|
*aFileName = mFileName.get();
|
|
|
|
*aLineNo = mLineNo;
|
2015-09-03 23:03:19 +00:00
|
|
|
*aColumn = mColumn;
|
2006-06-13 03:07:47 +00:00
|
|
|
}
|
|
|
|
|
2015-03-21 16:28:04 +00:00
|
|
|
virtual const nsTArray<JS::Value>& GetArgs() override
|
2013-01-03 19:02:36 +00:00
|
|
|
{
|
|
|
|
return mArgs;
|
2006-06-13 03:07:47 +00:00
|
|
|
}
|
|
|
|
|
2007-03-08 11:17:16 +00:00
|
|
|
void ReleaseJSObjects();
|
|
|
|
|
2006-06-13 03:07:47 +00:00
|
|
|
private:
|
2014-06-23 19:56:07 +00:00
|
|
|
~nsJSScriptTimeoutHandler();
|
|
|
|
|
2006-06-13 03:07:47 +00:00
|
|
|
// filename, line number and JS language version string of the
|
|
|
|
// caller of setTimeout()
|
2008-07-17 15:05:20 +00:00
|
|
|
nsCString mFileName;
|
2012-08-22 15:56:38 +00:00
|
|
|
uint32_t mLineNo;
|
2015-09-03 23:03:19 +00:00
|
|
|
uint32_t mColumn;
|
2013-06-18 10:00:37 +00:00
|
|
|
nsTArray<JS::Heap<JS::Value> > mArgs;
|
2006-06-13 03:07:47 +00:00
|
|
|
|
2013-10-08 15:51:42 +00:00
|
|
|
// The expression to evaluate or function to call. If mFunction is non-null
|
|
|
|
// it should be used, else use mExpr.
|
|
|
|
nsString mExpr;
|
2015-10-18 05:24:48 +00:00
|
|
|
RefPtr<Function> mFunction;
|
2006-06-13 03:07:47 +00:00
|
|
|
};
|
|
|
|
|
|
|
|
|
|
|
|
// nsJSScriptTimeoutHandler
|
|
|
|
// QueryInterface implementation for nsJSScriptTimeoutHandler
|
2013-08-02 01:29:05 +00:00
|
|
|
NS_IMPL_CYCLE_COLLECTION_CLASS(nsJSScriptTimeoutHandler)
|
|
|
|
|
2010-11-08 15:02:49 +00:00
|
|
|
NS_IMPL_CYCLE_COLLECTION_UNLINK_BEGIN(nsJSScriptTimeoutHandler)
|
2007-03-08 11:17:16 +00:00
|
|
|
tmp->ReleaseJSObjects();
|
2010-11-08 15:02:49 +00:00
|
|
|
NS_IMPL_CYCLE_COLLECTION_UNLINK_END
|
2009-02-27 14:48:26 +00:00
|
|
|
NS_IMPL_CYCLE_COLLECTION_TRAVERSE_BEGIN_INTERNAL(nsJSScriptTimeoutHandler)
|
2012-10-26 13:32:10 +00:00
|
|
|
if (MOZ_UNLIKELY(cb.WantDebugInfo())) {
|
2012-09-02 02:35:17 +00:00
|
|
|
nsAutoCString name("nsJSScriptTimeoutHandler");
|
2013-10-08 15:51:42 +00:00
|
|
|
if (tmp->mFunction) {
|
2013-01-03 19:02:36 +00:00
|
|
|
JSFunction* fun =
|
|
|
|
JS_GetObjectFunction(js::UncheckedUnwrap(tmp->mFunction->Callable()));
|
2011-11-07 12:55:59 +00:00
|
|
|
if (fun && JS_GetFunctionId(fun)) {
|
2011-03-14 20:59:53 +00:00
|
|
|
JSFlatString *funId = JS_ASSERT_STRING_IS_FLAT(JS_GetFunctionId(fun));
|
2013-10-28 14:04:12 +00:00
|
|
|
size_t size = 1 + JS_PutEscapedFlatString(nullptr, 0, funId, 0);
|
2012-08-27 17:41:04 +00:00
|
|
|
char *funIdName = new char[size];
|
|
|
|
if (funIdName) {
|
|
|
|
JS_PutEscapedFlatString(funIdName, size, funId, 0);
|
|
|
|
name.AppendLiteral(" [");
|
|
|
|
name.Append(funIdName);
|
|
|
|
delete[] funIdName;
|
2014-05-22 03:48:51 +00:00
|
|
|
name.Append(']');
|
2010-10-28 15:15:53 +00:00
|
|
|
}
|
2009-02-27 14:48:26 +00:00
|
|
|
}
|
2013-10-08 15:51:42 +00:00
|
|
|
} else {
|
|
|
|
name.AppendLiteral(" [");
|
|
|
|
name.Append(tmp->mFileName);
|
2014-05-22 03:48:51 +00:00
|
|
|
name.Append(':');
|
2013-10-08 15:51:42 +00:00
|
|
|
name.AppendInt(tmp->mLineNo);
|
2015-09-03 23:03:19 +00:00
|
|
|
name.Append(':');
|
|
|
|
name.AppendInt(tmp->mColumn);
|
2014-05-22 03:48:51 +00:00
|
|
|
name.Append(']');
|
2009-02-27 14:48:26 +00:00
|
|
|
}
|
2012-08-27 17:41:04 +00:00
|
|
|
cb.DescribeRefCountedNode(tmp->mRefCnt.get(), name.get());
|
2009-02-27 14:48:26 +00:00
|
|
|
}
|
|
|
|
else {
|
2011-06-23 21:10:52 +00:00
|
|
|
NS_IMPL_CYCLE_COLLECTION_DESCRIBE(nsJSScriptTimeoutHandler,
|
|
|
|
tmp->mRefCnt.get())
|
2009-02-27 14:48:26 +00:00
|
|
|
}
|
|
|
|
|
2013-10-08 15:51:42 +00:00
|
|
|
if (tmp->mFunction) {
|
|
|
|
NS_IMPL_CYCLE_COLLECTION_TRAVERSE(mFunction)
|
|
|
|
NS_IMPL_CYCLE_COLLECTION_TRAVERSE_SCRIPT_OBJECTS
|
|
|
|
}
|
2007-03-08 11:17:16 +00:00
|
|
|
NS_IMPL_CYCLE_COLLECTION_TRAVERSE_END
|
|
|
|
|
2007-10-29 13:45:07 +00:00
|
|
|
NS_IMPL_CYCLE_COLLECTION_TRACE_BEGIN(nsJSScriptTimeoutHandler)
|
2013-01-03 19:02:36 +00:00
|
|
|
for (uint32_t i = 0; i < tmp->mArgs.Length(); ++i) {
|
2016-02-22 18:11:02 +00:00
|
|
|
NS_IMPL_CYCLE_COLLECTION_TRACE_JS_MEMBER_CALLBACK(mArgs[i])
|
2013-01-03 19:02:36 +00:00
|
|
|
}
|
2007-10-29 13:45:07 +00:00
|
|
|
NS_IMPL_CYCLE_COLLECTION_TRACE_END
|
|
|
|
|
2007-04-25 16:35:27 +00:00
|
|
|
NS_INTERFACE_MAP_BEGIN_CYCLE_COLLECTION(nsJSScriptTimeoutHandler)
|
2006-06-13 03:07:47 +00:00
|
|
|
NS_INTERFACE_MAP_ENTRY(nsIScriptTimeoutHandler)
|
|
|
|
NS_INTERFACE_MAP_ENTRY(nsISupports)
|
|
|
|
NS_INTERFACE_MAP_END
|
|
|
|
|
2007-03-08 11:17:16 +00:00
|
|
|
NS_IMPL_CYCLE_COLLECTING_ADDREF(nsJSScriptTimeoutHandler)
|
|
|
|
NS_IMPL_CYCLE_COLLECTING_RELEASE(nsJSScriptTimeoutHandler)
|
2006-06-13 03:07:47 +00:00
|
|
|
|
2013-10-08 15:51:42 +00:00
|
|
|
static bool
|
|
|
|
CheckCSPForEval(JSContext* aCx, nsGlobalWindow* aWindow, ErrorResult& aError)
|
|
|
|
{
|
|
|
|
// if CSP is enabled, and setTimeout/setInterval was called with a string,
|
|
|
|
// disable the registration and log an error
|
|
|
|
nsCOMPtr<nsIDocument> doc = aWindow->GetExtantDoc();
|
|
|
|
if (!doc) {
|
|
|
|
// if there's no document, we don't have to do anything.
|
|
|
|
return true;
|
|
|
|
}
|
|
|
|
|
|
|
|
nsCOMPtr<nsIContentSecurityPolicy> csp;
|
|
|
|
aError = doc->NodePrincipal()->GetCsp(getter_AddRefs(csp));
|
|
|
|
if (aError.Failed()) {
|
|
|
|
return false;
|
|
|
|
}
|
|
|
|
|
|
|
|
if (!csp) {
|
|
|
|
return true;
|
|
|
|
}
|
|
|
|
|
|
|
|
bool allowsEval = true;
|
|
|
|
bool reportViolation = false;
|
|
|
|
aError = csp->GetAllowsEval(&reportViolation, &allowsEval);
|
|
|
|
if (aError.Failed()) {
|
|
|
|
return false;
|
|
|
|
}
|
|
|
|
|
|
|
|
if (reportViolation) {
|
|
|
|
// TODO : need actual script sample in violation report.
|
|
|
|
NS_NAMED_LITERAL_STRING(scriptSample,
|
|
|
|
"call to eval() or related function blocked by CSP");
|
|
|
|
|
|
|
|
// Get the calling location.
|
|
|
|
uint32_t lineNum = 0;
|
|
|
|
nsAutoString fileNameString;
|
2015-01-06 20:50:29 +00:00
|
|
|
if (!nsJSUtils::GetCallingLocation(aCx, fileNameString, &lineNum)) {
|
2013-10-08 15:51:42 +00:00
|
|
|
fileNameString.AssignLiteral("unknown");
|
|
|
|
}
|
|
|
|
|
|
|
|
csp->LogViolationDetails(nsIContentSecurityPolicy::VIOLATION_TYPE_EVAL,
|
2014-01-02 19:14:06 +00:00
|
|
|
fileNameString, scriptSample, lineNum,
|
|
|
|
EmptyString(), EmptyString());
|
2013-10-08 15:51:42 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
return allowsEval;
|
|
|
|
}
|
|
|
|
|
2015-09-03 23:03:19 +00:00
|
|
|
nsJSScriptTimeoutHandler::nsJSScriptTimeoutHandler()
|
|
|
|
: mLineNo(0)
|
|
|
|
, mColumn(0)
|
2013-10-08 15:51:42 +00:00
|
|
|
{
|
|
|
|
}
|
|
|
|
|
2015-09-03 23:03:19 +00:00
|
|
|
nsJSScriptTimeoutHandler::nsJSScriptTimeoutHandler(JSContext* aCx,
|
|
|
|
nsGlobalWindow *aWindow,
|
2013-10-08 15:51:42 +00:00
|
|
|
Function& aFunction,
|
|
|
|
FallibleTArray<JS::Heap<JS::Value> >& aArguments,
|
2015-09-03 23:03:19 +00:00
|
|
|
ErrorResult& aError)
|
|
|
|
: mLineNo(0)
|
|
|
|
, mColumn(0)
|
|
|
|
, mFunction(&aFunction)
|
2013-10-08 15:51:42 +00:00
|
|
|
{
|
|
|
|
if (!aWindow->GetContextInternal() || !aWindow->FastGetGlobalJSObject()) {
|
|
|
|
// This window was already closed, or never properly initialized,
|
|
|
|
// don't let a timer be scheduled on such a window.
|
|
|
|
aError.Throw(NS_ERROR_NOT_INITIALIZED);
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
|
|
|
|
mozilla::HoldJSObjects(this);
|
|
|
|
mArgs.SwapElements(aArguments);
|
2015-09-03 23:03:19 +00:00
|
|
|
|
|
|
|
// Get the calling location.
|
2015-09-03 23:03:19 +00:00
|
|
|
nsJSUtils::GetCallingLocation(aCx, mFileName, &mLineNo, &mColumn);
|
2013-10-08 15:51:42 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
nsJSScriptTimeoutHandler::nsJSScriptTimeoutHandler(JSContext* aCx,
|
|
|
|
nsGlobalWindow *aWindow,
|
|
|
|
const nsAString& aExpression,
|
|
|
|
bool* aAllowEval,
|
2015-09-03 23:03:19 +00:00
|
|
|
ErrorResult& aError)
|
|
|
|
: mLineNo(0)
|
|
|
|
, mColumn(0)
|
|
|
|
, mExpr(aExpression)
|
2006-06-13 03:07:47 +00:00
|
|
|
{
|
2013-10-08 15:51:42 +00:00
|
|
|
if (!aWindow->GetContextInternal() || !aWindow->FastGetGlobalJSObject()) {
|
|
|
|
// This window was already closed, or never properly initialized,
|
|
|
|
// don't let a timer be scheduled on such a window.
|
|
|
|
aError.Throw(NS_ERROR_NOT_INITIALIZED);
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
|
|
|
|
*aAllowEval = CheckCSPForEval(aCx, aWindow, aError);
|
|
|
|
if (aError.Failed() || !*aAllowEval) {
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
|
|
|
|
// Get the calling location.
|
2015-09-03 23:03:19 +00:00
|
|
|
nsJSUtils::GetCallingLocation(aCx, mFileName, &mLineNo, &mColumn);
|
2006-06-13 03:07:47 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
nsJSScriptTimeoutHandler::~nsJSScriptTimeoutHandler()
|
2007-03-08 11:17:16 +00:00
|
|
|
{
|
|
|
|
ReleaseJSObjects();
|
|
|
|
}
|
|
|
|
|
|
|
|
void
|
|
|
|
nsJSScriptTimeoutHandler::ReleaseJSObjects()
|
2006-06-13 03:07:47 +00:00
|
|
|
{
|
2013-10-08 15:51:42 +00:00
|
|
|
if (mFunction) {
|
2013-01-03 19:02:36 +00:00
|
|
|
mFunction = nullptr;
|
|
|
|
mArgs.Clear();
|
2013-10-08 15:51:42 +00:00
|
|
|
mozilla::DropJSObjects(this);
|
2006-06-13 03:07:47 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2014-01-04 15:02:17 +00:00
|
|
|
const char16_t *
|
2006-06-13 03:07:47 +00:00
|
|
|
nsJSScriptTimeoutHandler::GetHandlerText()
|
|
|
|
{
|
2013-10-08 15:51:42 +00:00
|
|
|
NS_ASSERTION(!mFunction, "No expression, so no handler text!");
|
|
|
|
return mExpr.get();
|
2006-06-13 03:07:47 +00:00
|
|
|
}
|
|
|
|
|
2013-10-08 15:51:42 +00:00
|
|
|
already_AddRefed<nsIScriptTimeoutHandler>
|
2015-09-03 23:03:19 +00:00
|
|
|
NS_CreateJSTimeoutHandler(JSContext *aCx, nsGlobalWindow *aWindow,
|
|
|
|
Function& aFunction,
|
2013-10-08 15:51:42 +00:00
|
|
|
const Sequence<JS::Value>& aArguments,
|
|
|
|
ErrorResult& aError)
|
|
|
|
{
|
|
|
|
FallibleTArray<JS::Heap<JS::Value> > args;
|
2015-05-28 18:07:43 +00:00
|
|
|
if (!args.AppendElements(aArguments, fallible)) {
|
2013-10-08 15:51:42 +00:00
|
|
|
aError.Throw(NS_ERROR_OUT_OF_MEMORY);
|
2014-05-26 01:16:01 +00:00
|
|
|
return nullptr;
|
2013-10-08 15:51:42 +00:00
|
|
|
}
|
|
|
|
|
2015-10-18 05:24:48 +00:00
|
|
|
RefPtr<nsJSScriptTimeoutHandler> handler =
|
2015-09-03 23:03:19 +00:00
|
|
|
new nsJSScriptTimeoutHandler(aCx, aWindow, aFunction, args, aError);
|
2013-10-08 15:51:42 +00:00
|
|
|
return aError.Failed() ? nullptr : handler.forget();
|
|
|
|
}
|
|
|
|
|
|
|
|
already_AddRefed<nsIScriptTimeoutHandler>
|
|
|
|
NS_CreateJSTimeoutHandler(JSContext* aCx, nsGlobalWindow *aWindow,
|
|
|
|
const nsAString& aExpression, ErrorResult& aError)
|
|
|
|
{
|
|
|
|
bool allowEval = false;
|
2015-10-18 05:24:48 +00:00
|
|
|
RefPtr<nsJSScriptTimeoutHandler> handler =
|
2015-12-10 21:14:10 +00:00
|
|
|
new nsJSScriptTimeoutHandler(aCx, aWindow, aExpression, &allowEval, aError);
|
|
|
|
if (aError.Failed() || !allowEval) {
|
2013-10-08 15:51:42 +00:00
|
|
|
return nullptr;
|
|
|
|
}
|
|
|
|
|
|
|
|
return handler.forget();
|
|
|
|
}
|