Data race in void base::internal::FunctorTraits<void |
|||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=5694539412275200 Fuzzer: inferno_layout_test_unmodified Job Type: linux_tsan_chrome_mp Platform Id: linux Crash Type: Data race READ 8 Crash Address: 0x7b3c0001a9c8 Crash State: void base::internal::FunctorTraits<void base::internal::Invoker<base::internal::BindState<void blink::runCrossThreadClosure Sanitizer: thread (TSAN) Regressed: https://clusterfuzz.com/revisions?job=linux_tsan_chrome_mp&range=452175:452475 Reproducer Testcase: https://clusterfuzz.com/download/AMIfv977ggvsjX47KiuTxajxl8i2_giAd6G9DU15ODQTdhm9i0Uu32gY-GWNaLa_e0dB6Q_RpCpLSAEQivT_lxdwfvPap-0hLoh5OaLHSzhj3TzCD0UBMRCXbH0DM6M0fhUTsQ3g_pEJFkzLMWXGuBOBqr_xK-Y23b1pFAwjzdyLy351Zi5efWVw3v86CDoAdllQZHEQsYkqfLTwVyEUCXL1tvex_qp7pjBgJfupxgrH-OJ0MXrSdWH4Kmv0HMImyBOCi5RP0j5EnTAsc3vAG6rufaYoa1NK82U66mY16USXPy9t_0OFe7Sme53BN5xg1-t1iW7auA8DQzgv2apey_8GNt7RL1BrUj87KraNbVmAnTbPPPO_sj_i4z3j34NuKRcv-oSnAXc7MHuCKQGu-VuVX4DwadHIjQ?testcase_id=5694539412275200 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Mar 31 2017
Assigning to the concern owner from Predator results -- The result is a list of CLs that change the crashed files. Author: kinuko Project: chromium Changelist: https://chromium.googlesource.com/chromium/src/+/2a4d9d1f74a04c1122bc7ca32027da87cb14d3bd Time: Thu Feb 23 11:14:07 2017 Lines 238 of file WorkerThreadableLoader.cpp which potentially caused crash are changed in this cl (frame #3, "blink::WorkerThreadableLoader::start"). Minimum distance from crash line to modified line: 0. (file: WorkerThreadableLoader.cpp, crashed on: 238, modified: 238). @kinuko -- Could you please look into the issue, kindly re-assign if this is not related to your changes. Thank You.
,
Aug 3 2017
ClusterFuzz has detected this issue as fixed in range 491526:491565. Detailed report: https://clusterfuzz.com/testcase?key=5694539412275200 Fuzzer: inferno_layout_test_unmodified Job Type: linux_tsan_chrome_mp Platform Id: linux Crash Type: Data race READ 8 Crash Address: 0x7b3c0001a9c8 Crash State: void base::internal::FunctorTraits<void base::internal::Invoker<base::internal::BindState<void blink::runCrossThreadClosure Sanitizer: thread (TSAN) Regressed: https://clusterfuzz.com/revisions?job=linux_tsan_chrome_mp&range=452175:452475 Fixed: https://clusterfuzz.com/revisions?job=linux_tsan_chrome_mp&range=491526:491565 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5694539412275200 See https://github.com/google/clusterfuzz-tools for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Aug 3 2017
ClusterFuzz testcase 5694539412275200 is verified as fixed, so closing issue as verified. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
|||
►
Sign in to add a comment |
|||
Comment 1 by msrchandra@chromium.org
, Mar 31 2017Components: Blink>Loader
Labels: Test-Predator-Correct-CLs M-59
Owner: kinuko@chromium.org
Status: Assigned (was: Untriaged)