Crash in ash::PaletteTray::ShowPalette |
|||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=5246543889432576 Fuzzer: noel-image-flip Job Type: linux_asan_chrome_chromeos Platform Id: linux Crash Type: UNKNOWN Crash Address: 0x000000000418 Crash State: ash::PaletteTray::ShowPalette ash::AcceleratorController::PerformAction ash::AcceleratorController::AcceleratorPressed Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=linux_asan_chrome_chromeos&range=448729:448967 Reproducer Testcase: https://clusterfuzz.com/download/AMIfv94rUrGX52gqt-_p0sT3YdJ_2QmlLyig0_CFO43xtp4yC5wJ4yaMg8CSaS83KwriV57K9IMMN-yx77EU5cPtWtEsOlnHhsD-42mYGNi2SKocsNfTZXWK9aYmrJFf3dsyNJsK_RapJr4T8X7ZTpXvvhRwu1SsnzetiOrwIE1MeDzEHQbduuJ1p1bxPDH37oa1MM3Bpz7S9S-ZPwRXFbb6IXQDDZvqoodpzA8iD0FgJ2mNLKWygE4of2u7lulcW6KNeHBS0JLF5LzZZzfKKDbXSBZhYnSPidC182UiM9D0_MnIqo7lRA1zHJ6HaFlSWsV7xUpS38XpALn79IXfO7OG0KRrsK6yvpqh-CrTO88mOqI3VOG0fWFBZQpk3tmHW74szrcfkJoX_RIFf0VKqab50s0vbGfVGA?testcase_id=5246543889432576 Additional requirements: Requires Gestures Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Mar 17 2017
,
Mar 17 2017
The following revision refers to this bug: https://chromium.googlesource.com/chromium/src.git/+/8a9f744dfa2a4299d50b3474b0d9699070158e0f commit 8a9f744dfa2a4299d50b3474b0d9699070158e0f Author: jamescook <jamescook@chromium.org> Date: Fri Mar 17 18:39:18 2017 cros: Fix clusterfuzz crash opening stylus palette Clusterfuzz skips the login pathway and injects keystrokes immediately on startup. This can trigger accelerators before the status area is initialized. Add a null check -- this case doesn't happen in production. BUG= 702480 TEST=clusterfuzz Review-Url: https://codereview.chromium.org/2758863002 Cr-Commit-Position: refs/heads/master@{#457827} [modify] https://crrev.com/8a9f744dfa2a4299d50b3474b0d9699070158e0f/ash/common/accelerators/accelerator_controller.cc
,
Mar 17 2017
,
May 2 2017
,
May 3 2017
ClusterFuzz has detected this issue as fixed in range 468630:468676. Detailed report: https://clusterfuzz.com/testcase?key=5246543889432576 Fuzzer: noel-image-flip Job Type: linux_asan_chrome_chromeos Platform Id: linux Crash Type: UNKNOWN Crash Address: 0x000000000418 Crash State: ash::PaletteTray::ShowPalette ash::AcceleratorController::PerformAction ash::AcceleratorController::AcceleratorPressed Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=linux_asan_chrome_chromeos&range=448729:448967 Fixed: https://clusterfuzz.com/revisions?job=linux_asan_chrome_chromeos&range=468630:468676 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5246543889432576 Additional requirements: Requires Gestures See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page. |
|||
►
Sign in to add a comment |
|||
Comment 1 by msrchandra@chromium.org
, Mar 17 2017Labels: Test-Predator-Wrong M-58
Owner: jamescook@chromium.org
Status: Assigned (was: Untriaged)