Stack-overflow in blink::HarfBuzzShaper::HarfBuzzShaper |
||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=4735056957931520 Fuzzer: bj_broddelwerk Job Type: linux_asan_chrome_v8_arm Platform Id: linux Crash Type: Stack-overflow Crash Address: 0xff3ddfdc Crash State: blink::HarfBuzzShaper::HarfBuzzShaper blink::CachingWordShapeIterator::shapeWordWithoutSpacing blink::CachingWordShapeIterator::shapeWord Unminimized Testcase: https://cluster-fuzz.appspot.com/download/AMIfv96LOI7MtFPk4l5D3VJVTn4pzNFMKLt92ITraOTtWOAzk3nYi2KpffwgWz3nVrJaJNKZj-ncAX_IodEJJ0BlgKwKrswxn8PYYXmUe7LTIpYx8ySqI_Zf9nFMb5lHh3W6cx6MbcOa1lnLyL1sKU8bpD7wj9EcGL09Ve2H7ft6u2IhnlQxJTI Filer: mmohammad See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
May 23 2016
My CL does not contain a functional change. The stack trace looks like an extreme case of nested layout, almost like an infinite loop. eae@, would you have a good idea who could take a look at this?
,
May 27 2016
Stack overflow for deeply nested content.
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
||||
►
Sign in to add a comment |
||||
Comment 1 by mmohammad@chromium.org
, May 18 2016Owner: drott@chromium.org
Status: Assigned (was: Available)