2020-01-22 10:45:15 +00:00
|
|
|
/* This Source Code Form is subject to the terms of the Mozilla Public
|
|
|
|
* License, v. 2.0. If a copy of the MPL was not distributed with this
|
|
|
|
* file, You can obtain one at http://mozilla.org/MPL/2.0/. */
|
|
|
|
|
|
|
|
#include "ImageBlocker.h"
|
|
|
|
#include "nsIPermissionManager.h"
|
|
|
|
#include "nsContentUtils.h"
|
|
|
|
#include "mozilla/StaticPrefs_permissions.h"
|
|
|
|
#include "nsNetUtil.h"
|
|
|
|
|
|
|
|
using namespace mozilla;
|
|
|
|
using namespace mozilla::image;
|
|
|
|
|
|
|
|
NS_IMPL_ISUPPORTS(ImageBlocker, nsIContentPolicy)
|
|
|
|
|
|
|
|
NS_IMETHODIMP
|
|
|
|
ImageBlocker::ShouldLoad(nsIURI* aContentLocation, nsILoadInfo* aLoadInfo,
|
2024-01-08 15:47:42 +00:00
|
|
|
int16_t* aShouldLoad) {
|
2020-01-22 10:45:15 +00:00
|
|
|
*aShouldLoad = nsIContentPolicy::ACCEPT;
|
|
|
|
|
2021-12-09 12:09:40 +00:00
|
|
|
if (!aContentLocation) {
|
|
|
|
// Bug 1720280: Ideally we should block the load, but to avoid a potential
|
|
|
|
// null pointer deref, we return early in this case. Please note that
|
|
|
|
// the ImageBlocker only applies about http/https loads anyway.
|
|
|
|
return NS_OK;
|
|
|
|
}
|
|
|
|
|
2024-01-17 09:49:32 +00:00
|
|
|
ExtContentPolicyType contentType = aLoadInfo->GetExternalContentPolicyType();
|
|
|
|
if (contentType != ExtContentPolicy::TYPE_IMAGE &&
|
|
|
|
contentType != ExtContentPolicy::TYPE_IMAGESET) {
|
2020-01-22 10:45:15 +00:00
|
|
|
return NS_OK;
|
|
|
|
}
|
|
|
|
|
2024-01-17 09:49:32 +00:00
|
|
|
if (ImageBlocker::ShouldBlock(aContentLocation)) {
|
2020-01-22 10:45:15 +00:00
|
|
|
NS_SetRequestBlockingReason(
|
|
|
|
aLoadInfo, nsILoadInfo::BLOCKING_REASON_CONTENT_POLICY_CONTENT_BLOCKED);
|
|
|
|
*aShouldLoad = nsIContentPolicy::REJECT_TYPE;
|
|
|
|
}
|
|
|
|
|
|
|
|
return NS_OK;
|
|
|
|
}
|
|
|
|
|
|
|
|
NS_IMETHODIMP
|
|
|
|
ImageBlocker::ShouldProcess(nsIURI* aContentLocation, nsILoadInfo* aLoadInfo,
|
|
|
|
int16_t* aShouldProcess) {
|
|
|
|
// We block images at load level already, so those should not end up here.
|
|
|
|
*aShouldProcess = nsIContentPolicy::ACCEPT;
|
|
|
|
return NS_OK;
|
|
|
|
}
|
2024-01-17 09:49:32 +00:00
|
|
|
|
|
|
|
/* static */
|
|
|
|
bool ImageBlocker::ShouldBlock(nsIURI* aContentLocation) {
|
|
|
|
// Block loading images depending on the permissions.default.image pref.
|
|
|
|
if (StaticPrefs::permissions_default_image() !=
|
|
|
|
nsIPermissionManager::DENY_ACTION) {
|
|
|
|
return false;
|
|
|
|
}
|
|
|
|
|
|
|
|
// we only want to check http, https
|
|
|
|
// for chrome:// and resources and others, no need to check.
|
|
|
|
return aContentLocation->SchemeIs("http") ||
|
|
|
|
aContentLocation->SchemeIs("https");
|
|
|
|
}
|