availableLogicalWidth >= 0 |
||||||||||||||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5763023124037632 Fuzzer: inferno_twister Job Type: linux_debug_content_shell_drt Platform Id: linux Crash Type: ASSERT Crash Address: Crash State: availableLogicalWidth >= 0 blink::LayoutBox::fillAvailableMeasure blink::LayoutBox::fillAvailableMeasure Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_debug_content_shell_drt&range=352857:352959 Minimized Testcase (0.83 Kb): https://cluster-fuzz.appspot.com/download/AMIfv97n5vpc-lr2W76PUzGae08aT95SBT3aGFKltTRORTu2Itel5iHHbQ6mrfQewcqp-RFFAETLGXTa0Y0fw_1DlDl6bl60-daYKwY3ESetRKl2zeXrcXN4rO6Zdc5fomAbpoQW0hQmUzG01n5t7keowygg5uo8IA?testcase_id=5763023124037632 Issue manually filed by: mummareddy See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Aug 9 2016
,
Aug 9 2016
,
Aug 15 2016
,
Aug 15 2016
,
Aug 15 2016
I'll take a look.
,
Aug 16 2016
Thanks. Reassigning to you then. Feel free to assign back if there is something you think I can help out with.
,
Aug 18 2016
It seems I don't have permissions to read the minimized test cases. Would it be possible to grant me access to it ?
,
Aug 18 2016
What usually works for me is going through the detailed report (top link in the description) and following the link to testcases from there, while being the owner of the bug. YMMV.
,
Aug 18 2016
Thanks @dawe, that worked. BTW, it seems that bug #620235 was marked as fixed, but I didn't land the patch I had implemented for that. Both @cbiesigner and @rune want to go further on the approach to solve the issue. It seems there are several errors in the implementation of preferred width for replaced elements. I'll first try to verify whether bug #620235 was actually fixed or not.
,
Aug 18 2016
BTW, the ongoing discussion can be followed at issue #2065243003
,
Aug 18 2016
Obviously, my patch for https://crrev.com/2065243003 fixes this bug. However, as I pointed out in a previous comment, we will probably need more time to figure out a more complete solution.
,
Sep 8 2016
Ok, thanks for the update!
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Dec 22 2016
ClusterFuzz testcase 5763023124037632 is flaky and no longer reproduces, so closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
,
Dec 22 2016
This big is still valid. As I said in comment #12, the test case used to reproduce the issue may be not valid anymore, but my patch on https://codereview.chromium.org/2065243003 is still needed.
,
Jan 3 2017
,
Feb 21 2017
The proposed patch, already reviewed and approved, causes 2 browser tests to fail: - PluginPowerSaverBrowserTest.SmallerThanPlayIcon - PluginPowerSaverBrowserTest.PosterTests I haven't been able to find out why my patch causes those tests to fail, so far, so I had to move to other issues. Recently, I retake the issue and found out that my patch might have discovered an Flexbox issue with affecting LayoutImages aspect ratio. I still think my patch for crrev.com/2065243003 is still valid, so I ll continue working to figure out a solution for the flexbox related issues.
,
Mar 1 2017
,
Mar 28 2017
,
Mar 28 2017
,
Jun 5 2017
I'm blocked on this issue and need time to re-think the whole approach. I put it on hold for some time because I've got other things more urgent at this moment.
,
Jun 5 2018
This issue has been Available for over a year. If it's no longer important or seems unlikely to be fixed, please consider closing it out. If it is important, please re-triage the issue. Sorry for the inconvenience if the bug really should have been left as Available. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Jun 7 2018
,
Jun 8 2018
ClusterFuzz has detected this issue as fixed in range 452556:452596. Detailed report: https://clusterfuzz.com/testcase?key=5763023124037632 Fuzzer: inferno_twister Job Type: linux_debug_content_shell_drt Platform Id: linux Crash Type: ASSERT Crash Address: Crash State: availableLogicalWidth >= 0 blink::LayoutBox::fillAvailableMeasure blink::LayoutBox::fillAvailableMeasure Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=linux_debug_content_shell_drt&range=352857:352959 Fixed: https://clusterfuzz.com/revisions?job=linux_debug_content_shell_drt&range=452556:452596 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5763023124037632 See https://github.com/google/clusterfuzz-tools for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Aug 2
|
||||||||||||||||
►
Sign in to add a comment |
||||||||||||||||
Comment 1 by mummare...@chromium.org
, Aug 5 2016Labels: Te-Logged M-53
Owner: davve@opera.com
Status: Assigned (was: Untriaged)