New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 631392 link

Starred by 1 user

Issue metadata

Status: WontFix
Owner:
Last visit > 30 days ago
Closed: Dec 2016
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 2
Type: Bug-Regression



Sign in to add a comment

Crash in blink::Range::toString

Project Member Reported by ClusterFuzz, Jul 26 2016

Issue description

Components: Blink>Forms>Range Tools>Test>FindIt>CorrectResult
Labels: -Pri-1 -Type-Bug M-54 Findit-for-crash Te-Logged Pri-2 Type-Bug-Regression
Owner: danakj@chromium.org
Status: Assigned (was: Untriaged)
Suspecting:

Author: danakj
Project: chromium
Changelist: https://chromium.googlesource.com/chromium/src//+/bda5037a1df2390c268493f608ca9b88b38ca715
Time: Thu Feb 25 10:22:52 2016
The CL last changed line 846 of file Range.cpp, which is stack frame 0.

@danakj: Could you please look into this issue.

Thank you.

Comment 2 by tkent@chromium.org, Jul 26 2016

Components: -Blink>Forms>Range Blink>DOM
"Range" object is unrelated to Blink>Forms>Range.

Comment 3 by danakj@chromium.org, Jul 26 2016

Owner: tkent@chromium.org
Status: Untriaged (was: Assigned)
That was "Rename enums/functions that collide in chromium style in core/dom/".

This should go to the owners of the DOM component I guess. tkent do you know who that would be?

Comment 4 by tkent@chromium.org, Jul 26 2016

Labels: -M-54
Owner: ----
Status: Available (was: Untriaged)
Project Member

Comment 5 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
It is still not possible to access Minimized Testcase.
Owner: a.obzhirov@samsung.com
Owner: ----
I cannot reproduce it, tried with AddressSanitizer. It is probably fixed already.
Cc: lcamtuf@google.com
Owner: dominicc@chromium.org
Status: WontFix (was: Available)
I can't reproduce this at r435888.

lcamtuf, I'm curious how stable these repros are over time--it seems like they would change behavior when we add or remove properties from browser host objects?

a.obzhirov, re: comment 8, clusterfuzz's repros can be quite involved; there's a lot of state not in the callstack.

CF says this is fixed in 407408:407421.

Sign in to add a comment