FormatBlock crashes with svg use element |
||||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=6406340204560384 Fuzzer: inferno_layout_test_unmodified Job Type: linux_lsan_chrome_mp Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x000000000010 Crash State: GetFlag isConnected blink::Node::IsDescendantOf Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=linux_lsan_chrome_mp&range=468406:468455 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6406340204560384 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Aug 29 2017
RE-labeling, as per the stack trace.
,
Sep 5 2017
The error message reported from service_manager_connection_impl.cc is unrelated. hayato@, do you know who could triage this bug based on that stack trace?
,
Sep 6 2017
yosin@, could you triage?
,
Sep 6 2017
Lower to Pri-3 since real world usage of "FormatBlack" command is low. This issue is caused by applying "FormatBlock" to svg use element.
,
Sep 11 2017
ClusterFuzz testcase 6406340204560384 is flaky and no longer crashes, so closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
||||||
►
Sign in to add a comment |
||||||
Comment 1 by msrchandra@chromium.org
, Aug 28 2017Components: Blink>DOM
Labels: M-61 Test-Predator-Wrong
Owner: blundell@chromium.org
Status: Assigned (was: Untriaged)