Enable ProcessBoundStringEncryption by default: drop patch, feature enabled by default from upstream

This commit is contained in:
Carmelo Messina
2025-11-26 18:01:45 +01:00
parent 1398295c85
commit 7d5f515019
2 changed files with 0 additions and 26 deletions
-1
View File
@@ -287,7 +287,6 @@ Disable-Posture-API.patch
PublicKeyCredential-fingerprinting-mitigations.patch
Disable-Web-Bluetooth-by-default-in-desktop-platforms.patch
Enable-Cert-Management-UI.patch
Enable-ProcessBoundStringEncryption-by-default.patch
Prevent-mouse-wheel-fingerprinting-on-Windows.patch
Enable-component-updater.patch
Android-fonts-fingerprinting-mitigation.patch
@@ -1,25 +0,0 @@
From: uazo <uazo@users.noreply.github.com>
Date: Mon, 20 Jan 2025 16:55:57 +0000
Subject: Enable ProcessBoundStringEncryption by default
Data placed into a crypto::ProcessBoundString no longer appears in crash dumps
or memory dumps so should be used for any sensitive data that should be process-bound.
https://issuetracker.google.com/issues/372873695
License: GPL-2.0-or-later - https://spdx.org/licenses/GPL-2.0-or-later.html
---
crypto/features.cc | 3 +++
1 file changed, 3 insertions(+)
diff --git a/crypto/features.cc b/crypto/features.cc
--- a/crypto/features.cc
+++ b/crypto/features.cc
@@ -13,4 +13,7 @@ BASE_FEATURE(kIsHardwareBackedFixEnabled, base::FEATURE_ENABLED_BY_DEFAULT);
BASE_FEATURE(kMigrateIOSKeychainAccessibility,
base::FEATURE_DISABLED_BY_DEFAULT);
+#if BUILDFLAG(IS_WIN)
+SET_CROMITE_FEATURE_ENABLED(kProcessBoundStringEncryption);
+#endif
} // namespace crypto::features
--