Issue metadata
Sign in to add a comment
|
Crash in blink::SpeechSynthesis::didPauseSpeaking |
||||||||||||||||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=4548242888458240 Fuzzer: inferno_twister Job Type: windows_syzyasan_content_shell Platform Id: windows Crash Type: UNKNOWN Crash Address: 0x00000003 Crash State: blink::SpeechSynthesis::didPauseSpeaking blink::PlatformSpeechSynthesizerMock::pause v8::internal::FunctionCallbackArguments::Call Regressed: https://cluster-fuzz.appspot.com/revisions?job=windows_syzyasan_content_shell&range=384816:384825 Minimized Testcase (0.19 Kb): Download: https://cluster-fuzz.appspot.com/download/AMIfv977CbFd_6FX4bJQmwBLXzk3eD7QOaI2one7C3weFettPGpeEnW8H831VJuhyN11-TAONJDO3nvc-44Uf1l4DXPqFvO8DfSGqpztd4Sn08V21sLclDvsaHdO19kajNzl4myLJCuV0nSmzz7CZ1Ajm-MTg7iG3w <script> "This tests that pausing/resuming speech jobs works as expected."; window.internals.enableMockSpeechSynthesizer(document); setTimeout("speechSynthesis.pause()"); </script> Filer: msrchandra See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Apr 5 2016
Um, the CL only renames methods, and wasn't in the regression range, I'm missing why this assigned to me.
,
Apr 5 2016
,
Apr 6 2016
Unable to find the exact culprit from the CL. Could some one please look into the issue and update. Thank You.
,
Apr 7 2016
The following revision refers to this bug: https://chromium.googlesource.com/chromium/src.git/+/0f7b9d798c423f45a11d8afa10807c5a0bc1c646 commit 0f7b9d798c423f45a11d8afa10807c5a0bc1c646 Author: sigbjornf <sigbjornf@opera.com> Date: Thu Apr 07 05:32:06 2016 Have the mock PlatformSpeechSynthesizer ignore pause/resume sometimes. Should pause()/resume() be attempted without nothing being currently spoken, just ignore. R= BUG= 600664 Review URL: https://codereview.chromium.org/1861323003 Cr-Commit-Position: refs/heads/master@{#385670} [add] https://crrev.com/0f7b9d798c423f45a11d8afa10807c5a0bc1c646/third_party/WebKit/LayoutTests/fast/speechsynthesis/speech-synthesis-mock-no-crash-expected.txt [add] https://crrev.com/0f7b9d798c423f45a11d8afa10807c5a0bc1c646/third_party/WebKit/LayoutTests/fast/speechsynthesis/speech-synthesis-mock-no-crash.html [modify] https://crrev.com/0f7b9d798c423f45a11d8afa10807c5a0bc1c646/third_party/WebKit/Source/modules/speech/testing/PlatformSpeechSynthesizerMock.cpp
,
Apr 7 2016
,
Apr 7 2016
ClusterFuzz has detected this testcase as flaky and is unable to reproduce it in the original crash revision. Skipping fixed testing check and marking it as potentially fixed. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4548242888458240 Fuzzer: inferno_twister Job Type: windows_syzyasan_content_shell Platform Id: windows Crash Type: UNKNOWN Crash Address: 0x00000003 Crash State: blink::SpeechSynthesis::didPauseSpeaking blink::PlatformSpeechSynthesizerMock::pause v8::internal::FunctionCallbackArguments::Call Regressed: https://cluster-fuzz.appspot.com/revisions?job=windows_syzyasan_content_shell&range=384816:384825 Minimized Testcase (0.19 Kb): Download: https://cluster-fuzz.appspot.com/download/AMIfv977CbFd_6FX4bJQmwBLXzk3eD7QOaI2one7C3weFettPGpeEnW8H831VJuhyN11-TAONJDO3nvc-44Uf1l4DXPqFvO8DfSGqpztd4Sn08V21sLclDvsaHdO19kajNzl4myLJCuV0nSmzz7CZ1Ajm-MTg7iG3w <script> "This tests that pausing/resuming speech jobs works as expected."; window.internals.enableMockSpeechSynthesizer(document); setTimeout("speechSynthesis.pause()"); </script> See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||
Comment 1 by msrchandra@chromium.org
, Apr 5 2016Labels: -Type-Bug findit-wrong Te-Logged Type-Bug-Regression
Owner: danakj@chromium.org
Status: Assigned (was: Available)