Crash in blink::LayoutObject::document |
|||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=6045616868425728 Fuzzer: inferno_twister Job Type: windows_syzyasan_content_shell Platform Id: windows Crash Type: UNKNOWN Crash Address: 0x0000000b Crash State: blink::LayoutObject::document blink::LayoutObject::setShouldDoFullPaintInvalidation blink::LayoutObject::forceLayout Regressed: https://cluster-fuzz.appspot.com/revisions?job=windows_syzyasan_content_shell&range=424467:424472 Minimized Testcase (0.76 Kb): https://cluster-fuzz.appspot.com/download/AMIfv94A-rwOfy5XFezV3CCTB0FBk0i6o297Y1r6n_a7kI1-cwo1Y7t0F3y87zGNrhzPeKDPu11ExB73oevR5XDodmhYTOplsdv6c__UwYy6qXchX1bpyk4k5iyw1W3UTZI3kxFfRJwQNOtmXo7jwgF3dpG22vna0A?testcase_id=6045616868425728 Issue manually filed by: mummareddy See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Oct 12 2016
That regression range doesn't make much sense, there are no blink related changes at all in the range. Requested another bisect run.
,
Oct 18 2016
,
Nov 2 2016
Closing due to lack of response and insufficient information for further action.
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||||
►
Sign in to add a comment |
|||||
Comment 1 by mummare...@chromium.org
, Oct 12 2016Labels: M-56 Te-Logged
Owner: e...@chromium.org
Status: Assigned (was: Untriaged)