Issue metadata
Sign in to add a comment
|
Stack-overflow in blink::SelectorFilterParentScope::PushParentIfNeeded |
||||||||||||||||||||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=4510361670909952 Fuzzer: bj_broddelwerk Job Type: mac_asan_chrome Platform Id: mac Crash Type: Stack-overflow Crash Address: 0x7fff596ccff8 Crash State: blink::SelectorFilterParentScope::PushParentIfNeeded Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=mac_asan_chrome&range=471987:472016 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=4510361670909952 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Jun 5 2017
,
Jun 6 2017
,
Jun 6 2017
,
Jun 6 2017
,
Jun 6 2017
This issue is marked as a release blocker with no milestone associated. Please add an appropriate milestone. All release blocking issues should have milestones associated to it, so that the issue can tracked and the fixes can be pushed promptly. Thanks for your time! To disable nags, add the Disable-Nags label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Jun 6 2017
,
Jun 6 2017
,
Jun 6 2017
,
Jun 7 2017
,
Jun 8 2017
,
Jun 8 2017
,
Jun 16 2017
meade@ - Could you please provide any update on this issue as it has been marked as a stable blocker. Thanks...!!
,
Jun 22 2017
I don't think we can do much about stack overflows... ccing dstockwell and inferno for further comment
,
Jun 24 2017
ClusterFuzz has detected this issue as fixed in range 481851:481863. Detailed report: https://clusterfuzz.com/testcase?key=4510361670909952 Fuzzer: bj_broddelwerk Job Type: mac_asan_chrome Platform Id: mac Crash Type: Stack-overflow Crash Address: 0x7fff596ccff8 Crash State: blink::SelectorFilterParentScope::PushParentIfNeeded Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=mac_asan_chrome&range=471987:472016 Fixed: https://clusterfuzz.com/revisions?job=mac_asan_chrome&range=481851:481863 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=4510361670909952 See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Jun 24 2017
ClusterFuzz testcase 4510361670909952 is verified as fixed, so closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
,
Jun 24 2017
[Auto-generated comment by a script] We noticed that this issue is targeted for M-60; it appears the fix may have landed after branch point, meaning a merge might be required. Please confirm if a merge is required here - if so add Merge-Request-60 label, otherwise remove Merge-TBD label. Thanks.
,
Jul 7 2017
There doesn't seem like there was any fix for this. Removing Merge-TBD label. |
|||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||
Comment 1 by shrike@chromium.org
, Jun 3 2017