New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 640377 link

Starred by 1 user

Issue metadata

Status: WontFix
Owner:
Last visit > 30 days ago
Closed: Aug 2016
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Windows
Pri: 2
Type: Bug



Sign in to add a comment

Crash in blink::InlineBox::logicalRight

Project Member Reported by ClusterFuzz, Aug 23 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6210573018857472

Fuzzer: bj_broddelwerk
Job Type: windows_syzyasan_chrome
Platform Id: windows

Crash Type: UNKNOWN
Crash Address: 0x0000000b
Crash State:
  blink::InlineBox::logicalRight
  blink::RootInlineBox::closestLeafChildForLogicalLeftPosition
  blink::RootInlineBox::closestLeafChildForPoint
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=windows_syzyasan_chrome&range=413430:413439

Minimized Testcase (2.34 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95mzSLEN5EBL8kPFGNH3DIWTv_4qLC54Im_StHGbg0ba7gEjdPsXIZuyhwD3Qsdmn9NRhT8xrIds3lOm6uqj4cm_kSSlGRtr1j6hZIQ5RaQ4axH0uRZcZKKgobb-WtkaRulA0L42Y8MwgWwaQ61_YrJ4bgROw?testcase_id=6210573018857472

Issue manually filed by: mmohammad

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
 
Owner: danakj@chromium.org
Status: Assigned (was: Untriaged)
suspected might be : 
https://chromium.googlesource.com/chromium/src/+/0b5c86b7b67ab235998e7dcddc00df65d833f87d%5E%21/third_party/WebKit/Source/core/layout/line/RootInlineBox.cpp

danakj@ could you please look into this.please feel free to re-assigned back if needed. thanks in advance 

Comment 2 by danakj@chromium.org, Aug 23 2016

Owner: mmohammad@chromium.org
Please assign to layout owners if you can't find a reasonable guess, not to a CL renaming things across the codebase.
Cc: szager@chromium.org
Owner: wangxianzhu@chromium.org
wangxianzhu @ could you please look into this ,if not please feel free to re-assigned back if needed. thanks in advance 
Components: Blink>Layout
Owner: mmohammad@chromium.org
I work on Blink>Paint.

Comment 5 by e...@chromium.org, Aug 23 2016

Labels: -Pri-1 Pri-2
Status: WontFix (was: Assigned)
we are no longer seeing this , will re- open if we get this again. Thanks
Project Member

Comment 7 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment