Crash in blink::Member<blink::IdTargetObserver> const* WTF::HashTable<blink::Member<blink |
||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=6696576878903296 Fuzzer: ifratric-browserfuzzer-v3 Job Type: linux_asan_chrome_mp Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x000000000000 Crash State: blink::Member<blink::IdTargetObserver> const* WTF::HashTable<blink::Member<blink blink::IdTargetObserverRegistry::removeObserver blink::SVGElementProxy::removeClient Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_asan_chrome_mp&range=430516:430550 Minimized Testcase (0.43 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95KjQ-L4nejHKhojITzFNxzy4GFYpM7tURvpTHsvc746b9k9KpG-hFJiXaR-T7TJNOLl5-8ODINN3GTThIaF7Bc7X0IB9Qe0QUWX_r_imaBzGkEtTsvIt5euVCs5hf8vOEfWeqb2l1icxKJ173oPTPegjyS1Q?testcase_id=6696576878903296 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Nov 9 2016
,
Nov 9 2016
,
Nov 9 2016
(Culprit reverted in 11759c7f36706a115c03b9fc98a6060dd73a71e9)
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
||||
►
Sign in to add a comment |
||||
Comment 1 by ClusterFuzz
, Nov 9 2016