New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 624116 link

Starred by 1 user

Issue metadata

Status: Duplicate
Merged: issue 623727
Owner:
Not on Chrome anymore
Closed: Jun 2016
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug



Sign in to add a comment

false in browser_process_impl.cc

Project Member Reported by ClusterFuzz, Jun 28 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4510187977441280

Fuzzer: meacer_extension_apis
Job Type: linux_ubsan_vptr_chrome
Platform Id: linux

Crash Type: CHECK failure
Crash Address: 
Crash State:
  false in browser_process_impl.cc
  BrowserProcessImpl::Pin
  KeepAliveRegistry::OnKeepAliveStateChanged
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_ubsan_vptr_chrome&range=388178:388349

Minimized Testcase (7.29 Kb): https://cluster-fuzz.appspot.com/download/AMIfv96XSV56QoqknBHcQ9kfqtvj-78dD_GDjCp9Wa28cXoscbPfNNZaIRv7_SMhx2U0YlEKTLcJ4wLC6xw-460p1ItkPEeRcursVlKtlrmWwcfrlgXkeobVuKXWskHWwCu4SOf-cWP16gyBZyA6zojCf9KRPnRLcg?testcase_id=4510187977441280

Filer: mmohammad

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
 
Owner: dgn@chromium.org
Status: Assigned (was: Available)
Suspected CL could be

https://chromium.googlesource.com/chromium/src/+/fe075c81bffa961dfbc1bccc2e47501f45b88484%5E%21/chrome/browser/browser_process_impl.cc
Last updated by dgn@ weeks ago , please have a look and reassign if needed.

Thank you.

Comment 2 by dgn@chromium.org, Jun 29 2016

Mergedinto: 623727
Status: Duplicate (was: Assigned)
I didn't manage to get a repro, both with the linked build and with a master build. We got similar crash reports from tester bots, so I'm going to dupe this but with that other issue.
Project Member

Comment 3 by ClusterFuzz, Jul 2 2016

ClusterFuzz has detected this issue as fixed in range 403432:403437.

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4510187977441280

Fuzzer: meacer_extension_apis
Job Type: linux_ubsan_vptr_chrome
Platform Id: linux

Crash Type: CHECK failure
Crash Address: 
Crash State:
  false in browser_process_impl.cc
  BrowserProcessImpl::Pin
  KeepAliveRegistry::OnKeepAliveStateChanged
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_ubsan_vptr_chrome&range=388178:388349
Fixed: https://cluster-fuzz.appspot.com/revisions?job=linux_ubsan_vptr_chrome&range=403432:403437

Minimized Testcase (7.29 Kb): https://cluster-fuzz.appspot.com/download/AMIfv96XSV56QoqknBHcQ9kfqtvj-78dD_GDjCp9Wa28cXoscbPfNNZaIRv7_SMhx2U0YlEKTLcJ4wLC6xw-460p1ItkPEeRcursVlKtlrmWwcfrlgXkeobVuKXWskHWwCu4SOf-cWP16gyBZyA6zojCf9KRPnRLcg?testcase_id=4510187977441280

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
Project Member

Comment 4 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment