Crash in blink::FrameView::trackedObjectPaintInvalidationsAsJSON |
||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=6081407625723904 Fuzzer: mbarbella_js_mutation_layout Job Type: windows_syzyasan_content_shell Platform Id: windows Crash Type: UNKNOWN Crash Address: 0x00000003 Crash State: blink::FrameView::trackedObjectPaintInvalidationsAsJSON blink::LocalFrame::layerTreeAsText blink::Internals::layerTreeAsText Regressed: https://cluster-fuzz.appspot.com/revisions?job=windows_syzyasan_content_shell&range=404631:404810 Minimized Testcase (0.61 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95Ords8uRMtvB07nyneUd-G_od7mheziHBmyIlIazatq_6OSphOWQDakJKIhUmPD9-GYwsTRUk0OcqORUo3Bzh8DGz_bO0SMCSL74IQturoZbplPcNHWBk6qTGjDzZ2BusyCggTeiTBlEWKezy_dpBzh9TaMA?testcase_id=6081407625723904 Filer: nyerramilli See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Jul 14 2016
Layout test only. Lowering priority.
,
Jul 25 2016
This is layout test only. The author of layout test can avoid such crashes.
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
||||
►
Sign in to add a comment |
||||
Comment 1 by nyerramilli@chromium.org
, Jul 13 2016Components: Tools>Test>FindIt>CorrectResult
Labels: findit-for-crash Te-Logged
Owner: wangxianzhu@chromium.org
Status: Assigned (was: Available)