New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 633541 link

Starred by 1 user

Issue metadata

Status: Verified
Owner: ----
Closed: Sep 2016
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug



Sign in to add a comment

m_lineNumber != v8::Message::kNoLineNumberInfo in V8StackTraceImpl.cpp

Project Member Reported by ClusterFuzz, Aug 2 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4902302920212480

Fuzzer: inferno_layout_test_unmodified
Job Type: linux_debug_content_shell_drt
Platform Id: linux

Crash Type: CHECK failure
Crash Address: 
Crash State:
  m_lineNumber != v8::Message::kNoLineNumberInfo in V8StackTraceImpl.cpp
  blink::V8StackTraceImpl::Frame::Frame
  blink::toFrame
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_debug_content_shell_drt&range=408955:408969

Minimized Testcase (0.12 Kb):
Download: https://cluster-fuzz.appspot.com/download/AMIfv95UFI6qPDvudk-7CbGyRVNwfoxBr0DzpjmNsLAwnjDQ4VZgkdF7JmaT8hXQjHHIP25rDcwVF66pjzjXI5DVPiTIW5VKKhL__MO7pMNLZkF6kyMZMJhpuSgPTmHw8b2ymIWMLDXHlbXWQ9k4eRy41BD_dD-DpA?testcase_id=4902302920212480
<div id=container><svg><script>
    var svgView = document.getElementById("container").childNodes[0].currentView;
</script>


Filer: nyerramilli

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
 
Cc: ishell@chromium.org mstarzinger@chromium.org rossberg@chromium.org nyerramilli@chromium.org titzer@chromium.org
Components: Blink>JavaScript Tools>Test>FindIt>NoResult
Labels: findit-wrong Te-Logged
Status: Available (was: Untriaged)
providing Findit results for internal purpose:
Suspected CLs	Findit could not determine the memory tool from the stacktrace. Is it in a new format?

assigning to v8 team, requesting to check and update.

Project Member

Comment 2 by ClusterFuzz, Sep 9 2016

ClusterFuzz has detected this issue as fixed in range 417355:417362.

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4902302920212480

Fuzzer: inferno_layout_test_unmodified
Job Type: linux_debug_content_shell_drt
Platform Id: linux

Crash Type: CHECK failure
Crash Address: 
Crash State:
  m_lineNumber != v8::Message::kNoLineNumberInfo in V8StackTraceImpl.cpp
  blink::V8StackTraceImpl::Frame::Frame
  blink::toFrame
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_debug_content_shell_drt&range=408955:408969
Fixed: https://cluster-fuzz.appspot.com/revisions?job=linux_debug_content_shell_drt&range=417355:417362

Minimized Testcase (0.12 Kb):
Download: https://cluster-fuzz.appspot.com/download/AMIfv95UFI6qPDvudk-7CbGyRVNwfoxBr0DzpjmNsLAwnjDQ4VZgkdF7JmaT8hXQjHHIP25rDcwVF66pjzjXI5DVPiTIW5VKKhL__MO7pMNLZkF6kyMZMJhpuSgPTmHw8b2ymIWMLDXHlbXWQ9k4eRy41BD_dD-DpA?testcase_id=4902302920212480
<div id=container><svg><script>
    var svgView = document.getElementById("container").childNodes[0].currentView;
</script>


See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
Project Member

Comment 3 by ClusterFuzz, Sep 9 2016

Labels: ClusterFuzz-Verified
Status: Verified (was: Available)
ClusterFuzz testcase is verified as fixed, closing issue.

If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
Components: -Tools>Test>FindIt>NoResult
Project Member

Comment 5 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment