New issue
Advanced search Search tips

Issue 649225 link

Starred by 1 user

Issue metadata

Status: Duplicate
Merged: issue 648539
Owner: ----
Closed: Sep 2016
Components:
EstimatedDays: ----
NextAction: ----
OS: Windows
Pri: 1
Type: Bug



Sign in to add a comment

Crash in v8::internal::JSObject::New

Project Member Reported by ClusterFuzz, Sep 22 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5032724715012096

Fuzzer: mbarbella_js_mutation
Job Type: windows_asan_d8
Platform Id: windows

Crash Type: UNKNOWN READ
Crash Address: 0x0000001c
Crash State:
  v8::internal::JSObject::New
  v8::internal::ErrorUtils::Construct
  v8::internal::ErrorUtils::MakeGenericError
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=windows_asan_d8&range=419475:419839

Minimized Testcase (0.43 Kb): https://cluster-fuzz.appspot.com/download/AMIfv94DfiMJ2tt5ii6P49N0jUca_lRgYWTnX9VDsTKJsi7Hr2Te3U0FBPvp0yyLwgOB_4oTvPkxqNsXnOZ-6kNGb9_gWT5yKEOAsD31drPj9zr0ueB2ag9SRQ_UTpIQCQlT791aoV9eYf8K43uCaALw4TfBq6Y9lw?testcase_id=5032724715012096

Issue manually filed by: kavvaru

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
 
Mergedinto: 648539
Status: Duplicate (was: Untriaged)
Project Member

Comment 2 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment