Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6440904627060736 Fuzzer: foozzie_js_mutation Job Type: foozzie_ignition_staging Platform Id: linux Crash Type: V8 correctness failure Crash Address: Crash State: configs: x64,fullcode:x64,ignition_staging sources: cd626806 Sanitizer: address (ASAN) Minimized Testcase (0.45 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95UKo0Fjt_BE25zo4r0Qx2NkHwvGrpwNbr3zZWXECD2n7nLVxvJ2s_jRelcEfjfGPKO4AFkjRqVrNpXPviD8HTlFZVXXBDpKe98-Fy2YJ0pj3i7y0-OObRbc3SOvuEiYvPREhaAV_sH8ek6i_bT31v2Lkuy1tUlf3HTJ-FQspeIWvvNnxJtlICJEm2fGK8QIWlHiYzLERzxAsNGx4iXSkZKv7KZDfm98_ZT3HToXgPN5lElEaH_LCQYbX9YTTL23dboeF2Bi7vMuBA88olFS3buNRMCxxoJgfYUqZIVZUrabFpnLqlKzbBSTvSgfU_ivm2Y5gATbB6ACtHt9gaWi9Hzu6XjzRGFWTshb6kPSjnmaqL1-hZNRTf4O_rDSj9HqYFHvLq78bSisahUn8fYVd1heKM5iw?testcase_id=6440904627060736 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
ClusterFuzz has detected this issue as fixed in range 42299:42300. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6440904627060736 Fuzzer: foozzie_js_mutation Job Type: foozzie_ignition_staging Platform Id: linux Crash Type: V8 correctness failure Crash Address: Crash State: configs: x64,fullcode:x64,ignition_staging sources: cd626806 Sanitizer: address (ASAN) Fixed: V8: r42299:42300 Minimized Testcase (0.45 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95UKo0Fjt_BE25zo4r0Qx2NkHwvGrpwNbr3zZWXECD2n7nLVxvJ2s_jRelcEfjfGPKO4AFkjRqVrNpXPviD8HTlFZVXXBDpKe98-Fy2YJ0pj3i7y0-OObRbc3SOvuEiYvPREhaAV_sH8ek6i_bT31v2Lkuy1tUlf3HTJ-FQspeIWvvNnxJtlICJEm2fGK8QIWlHiYzLERzxAsNGx4iXSkZKv7KZDfm98_ZT3HToXgPN5lElEaH_LCQYbX9YTTL23dboeF2Bi7vMuBA88olFS3buNRMCxxoJgfYUqZIVZUrabFpnLqlKzbBSTvSgfU_ivm2Y5gATbB6ACtHt9gaWi9Hzu6XjzRGFWTshb6kPSjnmaqL1-hZNRTf4O_rDSj9HqYFHvLq78bSisahUn8fYVd1heKM5iw?testcase_id=6440904627060736 See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
Comment 1 by machenb...@chromium.org
, Jan 11 2017Components: -Blink>JavaScript Blink>JavaScript>WebAssembly
Labels: v8-foozzie-failure