Crash in blink::SVGLengthContext::convertValueFromUserUnitsToEXS |
|||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=6385243286405120 Fuzzer: inferno_twister Job Type: windows_syzyasan_chrome Platform Id: windows Crash Type: UNKNOWN Crash Address: 0x00000023 Crash State: blink::SVGLengthContext::convertValueFromUserUnitsToEXS blink::SVGLengthContext::convertValueFromUserUnits blink::SVGLength::convertToSpecifiedUnits Regressed: https://cluster-fuzz.appspot.com/revisions?job=windows_syzyasan_chrome&range=425517:425531 Minimized Testcase (2.07 Kb): https://cluster-fuzz.appspot.com/download/AMIfv96_3ABf7M4FFkDJBsWsxVnz-1CQFyQiBAF8e_86htwqQi_SIhzDyE6ICW8oHqnSCsjIWM3w5GD7ITNHecWqsxHYDONoVs-KpyecGzVaYOfGXfM9Arc4mVcsQxyTQtYZOWQ9VdAkEn_d2pirmCxrTUbs0CqGhQ?testcase_id=6385243286405120 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Oct 24 2016
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||
►
Sign in to add a comment |
|||
Comment 1 by mummare...@chromium.org
, Oct 24 2016Labels: M-56 Te-Logged
Owner: e...@chromium.org
Status: Assigned (was: Untriaged)