Null-dereference READ in blink::Element::EnsureMutableInlineStyle |
||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=5969637576802304 Fuzzer: inferno_twister Job Type: linux_asan_content_shell_drt Platform Id: linux Crash Type: Null-dereference READ Crash Address: 0x000000000058 Crash State: blink::Element::EnsureMutableInlineStyle blink::Element::SetInlineStyleProperty blink::HTMLDetailsElement::ParseAttribute Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=linux_asan_content_shell_drt&range=268656:269696 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5969637576802304 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Jun 26 2017
,
Aug 28 2017
Redo Task has been performed for new regression range. Thank You.
,
Sep 1 2017
Using window.internals.yougestShadowRoot(). |
||||
►
Sign in to add a comment |
||||
Comment 1 by msrchandra@chromium.org
, Jun 22 2017Components: Blink>HTML
Labels: M-60 Test-Predator-Correct-CLs
Owner: zerny@chromium.org
Status: Assigned (was: Untriaged)