New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 592840 link

Starred by 0 users

Issue metadata

Status: Fixed
Owner:
Closed: Mar 2016
Cc:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug



Sign in to add a comment

Crash in blink::FocusController::advanceFocusInDocumentOrder

Project Member Reported by ClusterFuzz, Mar 8 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6060757472509952

Fuzzer: cdiehl_peach
Job Type: linux_asan_chrome_media
Platform Id: linux

Crash Type: UNKNOWN
Crash Address: 0x000000000020
Crash State:
  blink::FocusController::advanceFocusInDocumentOrder
  blink::FocusController::advanceFocus
  blink::FocusController::setInitialFocus
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_asan_chrome_media&range=376399:376718

Unminimized Testcase: https://cluster-fuzz.appspot.com/download/AMIfv971QOvy4NNgG2uZhVKNWYa9nubSk8od4NkCsHQC7UzpZ6SrKhyCzWMQagDuM_gy33dzCrnfMWo59QQYf-DOpQAL_vaAQ1B4FS87dCE79Vv0uLU9Zw6kADfehDggsWa0iDtjnQgc3WymE0HgpINzv8TvrlT3foTc4f18gS2rT-GRwagl7fo


Additional requirements: Requires Gestures

Filer: pucchakayala

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
 
Labels: findit-for-crash Te-Logged M-51
Owner: hayato@chromium.org
Status: Assigned (was: Available)
Suspected CLs	The result is a list of CLs that change the crashed files.

Author: hayato
Component: chromium
Changelist: https://chromium.googlesource.com/chromium/src//+/513d58f7d6622a3c8897d911f3a67f6c57f23fc6
Time: Fri Feb 19 07:37:20 2016
Lines 727 of file FocusController.cpp which potentially caused crash are changed in this cl (frame #4, "blink::FocusController::advanceFocus").
Minimum distance from crash line to modified line: 0. (file: FocusController.cpp, crashed on: 727, modified: 727).

Suspected Component: chromium
Cc: hayato@chromium.org kochi@chromium.org
Owner: yuzus@chromium.org
I guess https://codereview.chromium.org/1707443003 is a suspected CL.

Yuzu, could you take a look?
Project Member

Comment 3 by ClusterFuzz, Mar 10 2016

ClusterFuzz has detected this testcase as flaky and is unable to reproduce it in the original crash revision. Skipping fixed testing check and marking it as potentially fixed.

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6060757472509952

Fuzzer: cdiehl_peach
Job Type: linux_asan_chrome_media
Platform Id: linux

Crash Type: UNKNOWN
Crash Address: 0x000000000020
Crash State:
  blink::FocusController::advanceFocusInDocumentOrder
  blink::FocusController::advanceFocus
  blink::FocusController::setInitialFocus
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_asan_chrome_media&range=376399:376718

Unminimized Testcase: https://cluster-fuzz.appspot.com/download/AMIfv971QOvy4NNgG2uZhVKNWYa9nubSk8od4NkCsHQC7UzpZ6SrKhyCzWMQagDuM_gy33dzCrnfMWo59QQYf-DOpQAL_vaAQ1B4FS87dCE79Vv0uLU9Zw6kADfehDggsWa0iDtjnQgc3WymE0HgpINzv8TvrlT3foTc4f18gS2rT-GRwagl7fo


Additional requirements: Requires Gestures

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
Project Member

Comment 4 by ClusterFuzz, Mar 11 2016

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4676674324529152

Fuzzer: inferno_twister
Job Type: windows_syzyasan_content_shell
Platform Id: windows

Crash Type: UNKNOWN
Crash Address: 0x00000013
Crash State:
  blink::FocusController::advanceFocusInDocumentOrder
  blink::FocusController::advanceFocus
  blink::EventHandler::defaultTabEventHandler
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=windows_syzyasan_content_shell&range=380200:380273

Unminimized Testcase: https://cluster-fuzz.appspot.com/download/AMIfv97uUAGMPz8Dx1BqhZZTFqVYOw8y_P7xq6JdUhOca0US3DUZGkJP1QBKEL_pZeBu2_oRmvGCWoalEkLVbPXzAExDHuCRXER2RdMMP4Cawgyrg525u3cZpmqcnsEOjfKI7HJU8O3p2VL61mvjuraDQcWb0SAWVjsweMrZfsWMpgHFYp6bbHM


Filer: manoranjanr

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
Project Member

Comment 5 by ClusterFuzz, Mar 16 2016

ClusterFuzz has detected this testcase as flaky and is unable to reproduce it in the original crash revision. Skipping fixed testing check and marking it as potentially fixed.

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4676674324529152

Fuzzer: inferno_twister
Job Type: windows_syzyasan_content_shell
Platform Id: windows

Crash Type: UNKNOWN
Crash Address: 0x00000013
Crash State:
  blink::FocusController::advanceFocusInDocumentOrder
  blink::FocusController::advanceFocus
  blink::EventHandler::defaultTabEventHandler
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=windows_syzyasan_content_shell&range=380200:380273

Unminimized Testcase: https://cluster-fuzz.appspot.com/download/AMIfv97uUAGMPz8Dx1BqhZZTFqVYOw8y_P7xq6JdUhOca0US3DUZGkJP1QBKEL_pZeBu2_oRmvGCWoalEkLVbPXzAExDHuCRXER2RdMMP4Cawgyrg525u3cZpmqcnsEOjfKI7HJU8O3p2VL61mvjuraDQcWb0SAWVjsweMrZfsWMpgHFYp6bbHM


See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.

Comment 6 by kochi@chromium.org, Mar 18 2016

Status: Fixed (was: Assigned)
Probably https://codereview.chromium.org/1804943002/ for issue 594841
also fixed this?

CLosing unless this happens again for clusterfuzz.
Project Member

Comment 7 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment