Fatal error in v8::internal::compiler::EscapeStatusAnalysis::CheckUsesForEscape |
||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5797500947791872 Fuzzer: attekett_dom_fuzzer Job Type: linux_tsan_chrome_mp Platform Id: linux Crash Type: Fatal error Crash Address: Crash State: __tsan::CallUserSignalHandler rtl_sigaction v8::internal::compiler::EscapeStatusAnalysis::CheckUsesForEscape Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_tsan_chrome_mp&range=434407:434418 Minimized Testcase (1.45 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95m8Z-I5ddALMoOlmYZClKUc3KcbzS0UPDHIKp4cK-QbIkHz5qvxzKP6qADx6rf97eFbZZ2exdP3MvlAR7kK2fBLosVkbBVF2Lzvp10x3lbz_SbHO8KEAvdeUec6tFyPk1CoJ_c_zJ2ihoAFAO2Ohk2ESoStQ?testcase_id=5797500947791872 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Nov 30 2016
,
Nov 30 2016
Most likely a dupe of issue 669451 .
,
Dec 1 2016
ClusterFuzz has detected this issue as fixed in range 435209:435261. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5797500947791872 Fuzzer: attekett_dom_fuzzer Job Type: linux_tsan_chrome_mp Platform Id: linux Crash Type: Fatal error Crash Address: Crash State: __tsan::CallUserSignalHandler rtl_sigaction v8::internal::compiler::EscapeStatusAnalysis::CheckUsesForEscape Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_tsan_chrome_mp&range=434407:434418 Fixed: https://cluster-fuzz.appspot.com/revisions?job=linux_tsan_chrome_mp&range=435209:435261 Minimized Testcase (1.45 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95m8Z-I5ddALMoOlmYZClKUc3KcbzS0UPDHIKp4cK-QbIkHz5qvxzKP6qADx6rf97eFbZZ2exdP3MvlAR7kK2fBLosVkbBVF2Lzvp10x3lbz_SbHO8KEAvdeUec6tFyPk1CoJ_c_zJ2ihoAFAO2Ohk2ESoStQ?testcase_id=5797500947791872 See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Dec 1 2016
ClusterFuzz testcase is verified as fixed, closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
||||
►
Sign in to add a comment |
||||
Comment 1 by ajha@chromium.org
, Nov 28 2016