Bug 1380674 - remove the ability to create directories in the content temp directory on macOS; r?haik
MozReview-Commit-ID: 8SDcDTqp2F5
--- a/security/sandbox/mac/SandboxPolicies.h
+++ b/security/sandbox/mac/SandboxPolicies.h
@@ -322,19 +322,17 @@ static const char contentSandboxRules[]
(iokit-user-client-class "Gen6DVDContext"))
; bug 1237847
(allow file-read* file-write-data
(subpath appTempDir))
(allow file-write-create
(require-all
(subpath appTempDir)
- (require-any
- (vnode-type REGULAR-FILE)
- (vnode-type DIRECTORY))))
+ (vnode-type REGULAR-FILE)))
; bug 1382260
; We may need to load fonts from outside of the standard
; font directories whitelisted above. This is typically caused
; by a font manager. For now, whitelist any file with a
; font extension. Limit this to the common font types:
; files ending in .otf, .ttf, .ttc, .otc, and .dfont.
(allow file-read*