CHECK failure: !node.needsStyleRecalc() in Document.cpp |
|||||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=4822808925569024 Fuzzer: bj_broddelwerk Job Type: linux_debug_chrome Platform Id: linux Crash Type: CHECK failure Crash Address: Crash State: !node.needsStyleRecalc() in Document.cpp blink::assertLayoutTreeUpdated blink::Document::updateStyleAndLayoutTree Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=linux_debug_chrome&range=338684:338804 Reproducer Testcase: https://clusterfuzz.com/download/AMIfv96R7iUIH_DOKZ6NzPZlHKO1KPNHpmSHj6Zrq_DPAgPtnOeZHliFjOI-b-ON7wNsa5DQzsL_mfJWgu0lNkCxyyFLY9uY8n5dH0wd4q3WlEEdL84JpgZLW4djWNKvlYQ9gSGsyvgfr40vn6QQAMyODikFNCMABbxAqTrUXO3PQSY1TpSMzU6zOVJZgwT8B2lp2_sUvXkWoogCRORb84JDJznXHsSiZ8w8aISPuPR4CUnbqBDP0a2r4iqJT17CI9YEcxUhQYupeG9L4eLag_ASftGinA1esYThuplvJ8ilgjzr8BxAtiQbLpzSaDz2Z-hGYBlOsUaizZ7vv8dnJlN_CmHX1icd8QlupNPm1VAcypp1h4uPVZ2qoLfJwmBBC01Plaa-ELTF2EjMbzfrvTEWNaUW9BFUPw?testcase_id=4822808925569024 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Mar 24 2017
To blink triage.
,
Mar 24 2017
,
Mar 26 2017
This looks like Squad territory to me. @nainar could you please have a look and reassign if unrelated?
,
Mar 27 2017
The suspected change list is too old to be Squad related. Assigning to Layout TL for further triage.
,
Mar 27 2017
,
Mar 28 2017
Triggered a regression analysis yesterday and it still hasn't gotten back. Will keep an eye on it.
,
Mar 29 2017
Unable to repro and clusterfuzz can't find a regression range. Closing as it is not a security issue.
,
Jun 8 2017
ClusterFuzz has detected this issue as fixed in range 477767:477864. Detailed report: https://clusterfuzz.com/testcase?key=4822808925569024 Fuzzer: bj_broddelwerk Job Type: linux_debug_chrome Platform Id: linux Crash Type: CHECK failure Crash Address: Crash State: !node.needsStyleRecalc() in Document.cpp blink::assertLayoutTreeUpdated blink::Document::updateStyleAndLayoutTree Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=linux_debug_chrome&range=338684:338804 Fixed: https://clusterfuzz.com/revisions?job=linux_debug_chrome&range=477767:477864 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=4822808925569024 See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page. |
|||||||
►
Sign in to add a comment |
|||||||
Comment 1 by msrchandra@chromium.org
, Mar 24 2017Labels: Test-Predator-Wrong M-58
Owner: wittman@chromium.org
Status: Assigned (was: Untriaged)