New issue
Advanced search Search tips

Issue 598664 link

Starred by 0 users

Issue metadata

Status: Duplicate
Owner:
Closed: May 2016
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug



Sign in to add a comment

ASSERTION FAILED: enclosingIntRect(layoutObjectMappedResult) == enclosingIntRect

Project Member Reported by ClusterFuzz, Mar 29 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5919163591163904

Fuzzer: inferno_twister
Job Type: linux_debug_content_shell_drt
Platform Id: linux

Crash Type: ASSERT
Crash Address: 
Crash State:
  ASSERTION FAILED: enclosingIntRect(layoutObjectMappedResult) == enclosingIntRect
  blink::LayoutGeometryMap::mapToAncestor
  blink::LayoutGeometryMap::absoluteRect
  

Minimized Testcase (0.33 Kb): https://cluster-fuzz.appspot.com/download/AMIfv97P8U2hxtAqiIKgxX_x32UdiZ4UT5R7UK_XK2Czqsctkmx7uFhScZXNAdOVwB_axL2-y9PshVznvkBfFmUMPsuSAQEq9UfyC44ZmWe9QHQ6cN-dCZrsonx_8deiH4_p9MR-3QjLNSQ3eF0KXWb1jRpKa9aY7A

Additional requirements: Requires Gestures

Filer: durga.behera

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
 
Labels: findit-for-crash Te-Logged
Owner: chrishtr@chromium.org
Status: Assigned (was: Available)
Suspected CLs: Regression information is not available. The result is the blame information.
-----------------------------------
Author: chrishtr
Component: chromium
Changelist: https://chromium.googlesource.com/chromium/src//+/19a84549ad0bec1308b768f96b2345d4431a8a30
Time: Tue Dec 15 19:07:24 2015
The CL last changed line 152 of file LayoutGeometryMap.cpp, which is stack frame 0.

Author: wangxianzhu
Component: chromium
Changelist: https://chromium.googlesource.com/chromium/src//+/88719a882e81c1f008c8cbf89584a25769458a31
Time: Tue Jan 05 20:06:27 2016
The CL last changed line 58 of file LayoutGeometryMap.h, which is stack frame 1.

Author: chrishtr@chromium.org
Component: chromium
Changelist: https://chromium.googlesource.com/chromium/src//+/84d9b3ba8691dc33dd55b9a4041324fab40b2a52
Time: Tue Aug 25 23:46:20 2015
The CL last changed line 116 of file CompositingInputsUpdater.cpp, which is stack frame 2.

Author: abarth@chromium.org
Component: chromium
Changelist: https://chromium.googlesource.com/chromium/src//+/dc46981faf924c3fbecf6aaffede85559364d3a9
Time: Tue Jun 24 20:03:35 2014
The CL last changed line 178 of file CompositingInputsUpdater.cpp, which is stack frame 3.

Author: abarth@chromium.org
Component: chromium
Changelist: https://chromium.googlesource.com/chromium/src//+/dc46981faf924c3fbecf6aaffede85559364d3a9
Time: Tue Jun 24 20:03:35 2014
The CL last changed line 178 of file CompositingInputsUpdater.cpp, which is stack frame 4.

Author: dsinclair@chromium.org
Component: chromium
Changelist: https://chromium.googlesource.com/chromium/src//+/655de97058736371d3aeefb4f298a6556669ae49
Time: Wed Feb 04 20:41:30 2015
The CL last changed line 28 of file CompositingInputsUpdater.cpp, which is stack frame 5.

Author: abarth@chromium.org
Component: chromium
Changelist: https://chromium.googlesource.com/chromium/src//+/dc46981faf924c3fbecf6aaffede85559364d3a9
Time: Tue Jun 24 20:03:35 2014
The CL last changed line 367 of file PaintLayerCompositor.cpp, which is stack frame 6.
---------------------------------
Suspected Component: chromium
Suspected Cr- Label: Cr-Blink-Layout

From above suspected blame list, suspecting the change made to the file LayoutGeometryMap.cpp, which is stack frame 0.
https://codereview.chromium.org/1514243004
chrishtr@ :Could you please take a look into this if its related to your change.


Mergedinto: 602753
Status: Duplicate (was: Assigned)
Project Member

Comment 3 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment