Crash in cc::ResourceProvider::CreateBitmap |
|||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=4584609119731712 Fuzzer: meacer_extension_apis Job Type: linux_asan_chrome_mp Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x000000000008 Crash State: cc::ResourceProvider::CreateBitmap cc::ResourceProvider::CreateResource cc::ScopedResource::Allocate Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_asan_chrome_mp&range=395936:396053 Minimized Testcase (8.81 Kb): https://cluster-fuzz.appspot.com/download/AMIfv97i3CLE_l4i1_jF-yMMRTf_QVg8xmD61NtVEBed21W0tQQP3RbCt5twXHc-352Cxt8tfydK_289Db4yQXYaB2z12K1zk_KH180ebQ1nPvLlFQ3XiIvxtNe01tFcZUX1O967srMRWL5-lwDuq3Rj7hgRr_QTMA Filer: nyerramilli See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
May 26 2016
My change should not be affecting images. It simply changes the signature of two of the LoadDataResourceBytes functions in the ResourceBundle - which this issue's stack trace doesn't touch.
,
May 26 2016
Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5682306190934016 Fuzzer: meacer_extension_apis Job Type: linux_asan_chrome_mp Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x000000000008 Crash State: cc::ResourceProvider::CreateBitmap cc::ResourceProvider::CreateResource cc::LayerTreeHostImpl::CreateUIResource Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_asan_chrome_mp&range=395936:396053 Minimized Testcase (6.13 Kb): https://cluster-fuzz.appspot.com/download/AMIfv975elatEb301_OvnU7pSAxiN8IeTONGFSU0l99QzF-IhfXNNmukl1GzGDfMIK0MpFBC8KKy3AEoR_3vOaQDQtvKnJh52geb-OSEctDB-uk2fgCyR72jwuZRrcWk_MZUK5Aka3YsSLcz42DJMV57D9ghVrQk7g Filer: manoranjanr See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
May 26 2016
,
May 27 2016
ClusterFuzz has detected this issue as fixed in range 396110:396253. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4584609119731712 Fuzzer: meacer_extension_apis Job Type: linux_asan_chrome_mp Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x000000000008 Crash State: cc::ResourceProvider::CreateBitmap cc::ResourceProvider::CreateResource cc::ScopedResource::Allocate Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_asan_chrome_mp&range=395936:396053 Fixed: https://cluster-fuzz.appspot.com/revisions?job=linux_asan_chrome_mp&range=396110:396253 Minimized Testcase (8.81 Kb): https://cluster-fuzz.appspot.com/download/AMIfv97i3CLE_l4i1_jF-yMMRTf_QVg8xmD61NtVEBed21W0tQQP3RbCt5twXHc-352Cxt8tfydK_289Db4yQXYaB2z12K1zk_KH180ebQ1nPvLlFQ3XiIvxtNe01tFcZUX1O967srMRWL5-lwDuq3Rj7hgRr_QTMA See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Jun 3 2016
ClusterFuzz has detected this issue as fixed in range 397495:397535. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5682306190934016 Fuzzer: meacer_extension_apis Job Type: linux_asan_chrome_mp Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x000000000008 Crash State: cc::ResourceProvider::CreateBitmap cc::ResourceProvider::CreateResource cc::LayerTreeHostImpl::CreateUIResource Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_asan_chrome_mp&range=395936:396053 Fixed: https://cluster-fuzz.appspot.com/revisions?job=linux_asan_chrome_mp&range=397495:397535 Minimized Testcase (6.13 Kb): https://cluster-fuzz.appspot.com/download/AMIfv975elatEb301_OvnU7pSAxiN8IeTONGFSU0l99QzF-IhfXNNmukl1GzGDfMIK0MpFBC8KKy3AEoR_3vOaQDQtvKnJh52geb-OSEctDB-uk2fgCyR72jwuZRrcWk_MZUK5Aka3YsSLcz42DJMV57D9ghVrQk7g See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Oct 18 2016
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||||
►
Sign in to add a comment |
|||||
Comment 1 by nyerramilli@chromium.org
, May 26 2016Components: Tools>Test>FindIt>WrongResult Internals>Compositing
Labels: findit-wrong Te-Logged M-53
Owner: smaier@chromium.org
Status: Assigned (was: Available)