Issue metadata
Sign in to add a comment
|
Crash in chrome::GetURLAndTitleToBookmark |
||||||||||||||||||||||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5425251732422656 Fuzzer: inferno_layout_test_unmodified Job Type: linux_asan_chrome_v8_arm Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x00000000 Crash State: chrome::GetURLAndTitleToBookmark chrome::BookmarkCurrentPageIgnoringExtensionOverrides StarView::ExecuteCommand Sanitizer: address (ASAN) Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_asan_chrome_v8_arm&range=400431:400830 Reproducer Testcase: https://cluster-fuzz.appspot.com/download/AMIfv94okM6gS73Mr5q_lc8y-v5V14hojpASs_HBTwW_OA_ymFWL80hH53Uf9LD27SBO4X8fYK7pFPWIQdnSmGmYyw2zfrMHbT0arU4cGb2PlDiiDtMBvPt513KgUfuhhc22_N9HZT-7pTsshR7bZ5uLEn_T8WPvR4M_FFtcKjiS__7XFNbWdHBzohJpxIMI_jBLjs0RgNPvOBY3scS4VSWmgd5aEx4ZwW5P5h3N9RR1-SFGgBhUmVGmFxtAYXvL-E-c1CbmkN9sgEzsxIzgLqzIsdEO1pfnhJe_bSawgdBpXGOh79lTmIzUD7qScx-ohSLvr73RoAen3wPUuWTFvnP9yqKHftkysCWNWN7LqAaguXL5KC-ExNaFoZwjWzO456wXTtgFubnU0nLhla_PdSZHOeoHuRXVrA?testcase_id=5425251732422656 Additional requirements: Requires Gestures Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Feb 9 2017
I'm pretty sure this crash isn't related to my change. It appears that |web_contents| is null in 'GetURLToBookmark chrome/browser/ui/bookmarks/bookmark_utils.cc:109:61'. Following up the stack trace |web_contents| is retrieved in chrome::BookmarkCurrentPageIgnoringExtensionOverrides(Browser*) chrome/browser/ui/browser_commands.cc on line 772 via TabStripModel::GetActiveWebContents(). I suspect the TabStripModel::active_index() is getting out of sync and TabStripModel::GetWebContentsAt() is returning null. Assigning to sky@ as an OWNER of tab_strip_model.cc to help triage further.
,
Feb 9 2017
|
|||||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||||
Comment 1 by msrchandra@chromium.org
, Feb 9 2017Components: Internals>Views
Labels: M-57 Test-Predator-Correct-CLs
Owner: bruthig@chromium.org
Status: Assigned (was: Untriaged)