Issue metadata
Sign in to add a comment
|
Crash in v8::internal::Factory::NewFunctionFromSharedFunctionInfo |
||||||||||||||||||||||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=4772920354406400 Fuzzer: mbarbella_js_mutation Job Type: windows_asan_d8 Platform Id: windows Crash Type: UNKNOWN READ Crash Address: 0x6570001c Crash State: v8::internal::Factory::NewFunctionFromSharedFunctionInfo v8::internal::TranslatedState::MaterializeAt v8::internal::TranslatedState::MaterializeAt Recommended Security Severity: Medium Regressed: https://cluster-fuzz.appspot.com/revisions?job=windows_asan_d8&range=403853:403869 Minimized Testcase (0.76 Kb): https://cluster-fuzz.appspot.com/download/AMIfv94TTAlCLwYhiHFFQuPbFiUJcTDlp4gJKiDpuZyENKQa1sv6oOSgq7WnW_6nYBaZPixLav_IrSyQU3Ny8mQUa2PVGiGZBgzAiOtBt8-jiTYsz5VmLazXYu3CgAAL4tNQXm6dswsQOjYJM2c7U_NOalpmpRDV4g?testcase_id=4772920354406400 Filer: mmoroz See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Jul 12 2016
Triggered by TurboFan escape analysis, which is not shipping yet. Dropping security labels.
,
Sep 15 2016
Has been fixed by 9d6872cdf1f32580de2375f19acbc9bde2b83ac9.
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||||
Comment 1 by mmoroz@chromium.org
, Jul 12 2016