New issue
Advanced search Search tips

Issue 631362 link

Starred by 1 user

Issue metadata

Status: Fixed
Owner:
Closed: Aug 2016
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Windows
Pri: 1
Type: Bug



Sign in to add a comment

Crash in extensions::ShowSettingsApiBubble

Project Member Reported by ClusterFuzz, Jul 26 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5014052963352576

Fuzzer: inferno_layout_test_unmodified
Job Type: windows_syzyasan_chrome
Platform Id: windows

Crash Type: UNKNOWN
Crash Address: 0x00000077
Crash State:
  extensions::ShowSettingsApiBubble
  ChromeOmniboxEditController::OnAutocompleteAccept
  OmniboxEditModel::OpenMatch
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=windows_syzyasan_chrome&range=407477:407480

Minimized Testcase (0.00 Kb): https://cluster-fuzz.appspot.com/download/AMIfv96D51FKaPDSnUikLHKdLyAnbj06zYjAHEIhcVAHEQPZouUACUT82YUPg9yZ2Y3S1jQBbMiNQUlLAk_0ZW6zJu14H4M_63WP7mODfbgVkiS8Hn2o8n9ascTcjUDpmhLa5cCugRLnaTk61m9BKcetN1outf5oxA?testcase_id=5014052963352576

Additional requirements: Requires Gestures

Filer: rnimmagadda

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
 
Cc: mea...@chromium.org
Components: Platform>Extensions Tools>Test>FindIt>CorrectResult
Labels: M-54 Findit-for-crash Te-Logged
Owner: rdevlin....@chromium.org
Status: Assigned (was: Untriaged)
Suspecting:

Author: rdevlin.cronin
Project: chromium
Changelist: https://chromium.googlesource.com/chromium/src//+/af64c8cb4de48a580b04fe266e6f6a0c4c14e4d1
Time: Tue Jun 21 00:16:00 2016
The CL last changed line 30 of file settings_api_bubble_helpers.cc, which is stack frame 0.

@rdevlin.cronin: Could you please look into this issue.

Thank you.
Project Member

Comment 2 by bugdroid1@chromium.org, Jul 28 2016

The following revision refers to this bug:
  https://chromium.googlesource.com/chromium/src.git/+/8996565733bc75e7a029e8b8d4612e2b013e63d2

commit 8996565733bc75e7a029e8b8d4612e2b013e63d2
Author: rdevlin.cronin <rdevlin.cronin@chromium.org>
Date: Thu Jul 28 15:44:36 2016

[Extensions UI] Check for a browser not being found

chrome::FindBrowserWithWebContents() can return null in some cases.
Guard against it in showing the warning bubble.

BUG= 631362 

Review-Url: https://codereview.chromium.org/2191713003
Cr-Commit-Position: refs/heads/master@{#408403}

[modify] https://crrev.com/8996565733bc75e7a029e8b8d4612e2b013e63d2/chrome/browser/ui/extensions/settings_api_bubble_helpers.cc

I think this should be fixed by #2.  meacer@, do you know if there's a way to have clusterfuzz rerun the test case?  Since this particular one involves a bunch of gestures, it's hard to repro locally.

Comment 4 by mea...@chromium.org, Jul 28 2016

I think the "Redo" button at the top does that. I clicked it and it seems to be updating with a "Pending" message.
I noticed that, but wasn't sure of the value to pick.  I'm assuming maybe "fixed" checks if it's fixed?  (I wanted to be sure to not accidentally force it to mark as fixed.)

Comment 6 by mea...@chromium.org, Jul 28 2016

Cc: mbarbe...@chromium.org
I clicked all of them, but not sure either :)

+Marty for the clusterfuzz question
If you checked the "Fixed" box under redo it would re-run fixed testing. CF also seems to be having trouble reproducing this, probably because of gesture timing.
Status: Fixed (was: Assigned)
Project Member

Comment 9 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment