New issue
Advanced search Search tips

Issue 664578 link

Starred by 1 user

Issue metadata

Status: Fixed
Owner:
Closed: Nov 2016
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug



Sign in to add a comment

Crash in content::WebContentsUserData<extensions::BookmarkManagerPrivateDragEventRouter>:

Project Member Reported by ClusterFuzz, Nov 11 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6592062725292032

Fuzzer: inferno_webbot
Job Type: linux_asan_chrome_v8
Platform Id: linux

Crash Type: UNKNOWN WRITE
Crash Address: 0x000000000040
Crash State:
  content::WebContentsUserData<extensions::BookmarkManagerPrivateDragEventRouter>:
  extensions::TabHelper::TabHelper
  extensions::TabHelper::DidCloneToNewWebContents
  
Regressed: V8: r40881:40906

Minimized Testcase (0.00 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95tPCl9nmurmGNTsfTMdTTaSOGt4-cYNeepk4iLznld3vpwTVZPDjtkiPYLm-uH2YVLV5gpWt99w0uTVaYVSW9q26cdPANeALdwtzw1qVVObWmPXM7052fqmTTlkgVHvo-yQk5nNLN-otpKu6knwmct6yVBNA?testcase_id=6592062725292032

Additional requirements: Requires Gestures

Issue filed automatically.

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
 
Components: Platform>Extensions
Labels: Test-Predator-Wrong M-56
Owner: rdevlin....@chromium.org
Status: Assigned (was: Untriaged)
Suspected CL is 
https://chromium.googlesource.com/chromium/src/+/a32a0900c104b2143e6462febc81e6900dbd2104
rdevlin.cronin@, could you please take a look and help us to find correct owner if it is not related your changes.
This seems like a duplicate of either issue 664371 or  issue 664419 , both of which should be fixed by revision 62fa72cbd02ff4e279efe12145dd4b1a3d221821.

I think clusterfuzz will pick up the fix automatically and close this issue, so not closing yet.
Status: Fixed (was: Assigned)
Project Member

Comment 4 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Comment 5 Deleted

Cc: dgn@chromium.org
FYI, dgn@, looks like #5 was a typo in the associated bug?

Comment 7 by dgn@chromium.org, Sep 28 2017

Cc: -dgn@chromium.org
Right, thank you very much. I should have linked issue 762932, not sure how this happened.

Comment 8 Deleted

Sign in to add a comment