New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 750188 link

Starred by 3 users

Issue metadata

Status: WontFix
Owner: ----
Closed: Oct 2017
Cc:
EstimatedDays: ----
NextAction: ----
OS: Windows
Pri: 2
Type: Bug



Sign in to add a comment

Chrome crashes when paste specific content from clipboard

Reported by lysio...@gmail.com, Jul 28 2017

Issue description

UserAgent: Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.78 Safari/537.36

Steps to reproduce the problem:
Steps are following:
1. Open  bug2 .pdf
2. Copy one line (last in my case)
3. Paste it in Chrome's navigation bar (probably in any input)
4. Whole browser crashes and is being closed

What is the expected behavior?
No crash

What went wrong?
Browser crashes

Crashed report ID: 6b907c6268000000 (43514d12-2646-4987-a95a-f6241f59e26b local)

How much crashed? Whole browser

Is it a problem with a plugin? No 

Did this work before? N/A 

Chrome version: 60.0.3112.78  Channel: stable
OS Version: 6.1 (Windows 7, Windows Server 2008 R2)
Flash Version: 

Looks very easy but I was not able to reproduce it every time. This bug is about clipboard content which is most probably a malicious one (most probably similar to RTF).
Something really bad happens to clipboard since even InsideClipboard has crashed. What is not on a video is that, later I got an exception message from this app saying that:
"Exception C0000005 at address XXXXXXXX in module ntdll.dll
Registers: 
...
Stack Data:
...
"

Additional info:
1. If I paste this in AcrobatReader then red-border rectangle appears with a text inside.
2. This bug can't be observed on latest chromium build with asan for windows (asan-win32-release-490315)
3. C0000005 stays for ACCESS_VIOLATION exception (memory reference denial)
4. Take a look at rtf.bin to see RTF exact value
5. You need PATIENCE to reproduce it, if you copy line which doesn't crash Chrome, copy different one a try one more time. Sometimes I spent few minutes to catch a problem.

Crash IDs:
43514d12-2646-4987-a95a-f6241f59e26b
006529c3-16ae-46db-aab0-d76d319415b8
 
bug.pdf
5.9 KB Download
bug2.pdf
6.0 KB Download
rtf.bin
169 bytes Download

Comment 1 by lysio...@gmail.com, Jul 28 2017

Enjoy attached video!
750188-clipboard.mp4
917 KB View Download

Comment 2 by lysio...@gmail.com, Jul 28 2017

I was also able to reproduce it with built-in PDF viewer however this is much more time-consuming than with AcrobatReader.
Labels: Needs-Feedback
lysiol41@, thank you for the report. Can you please try to reproduce it with clean chrome profile? Without any extensions/apps if possible? Also this used to work in previous stable#59.0.3071.115?

Comment 4 by lysio...@gmail.com, Jul 28 2017

Hi! 
I tried with clean profile and reproduced that witohut any problems. I found this bug about week ago when a stable version was #59.0.3071.115, so I can confirm that this bug was present there.
Project Member

Comment 5 by sheriffbot@chromium.org, Jul 28 2017

Cc: manoranj...@chromium.org
Labels: -Needs-Feedback
Thank you for providing more feedback. Adding requester "manoranjanr@chromium.org" to the cc list and removing "Needs-Feedback" label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
Thank you for the confirmation. Can you please provide the latest crash id (from chrome://crashes)? since the above one seems to be corrupted.

Comment 7 by lysio...@gmail.com, Jul 28 2017

Be my guest, latest three:
b865088140000000
e5f5088140000000 
667cc81588000000 
Labels: Needs-Triage-M60
Cc: hdodda@chromium.org
Labels: Needs-Feedback
Tested the issue on windows 7 & 10 using chrome M60 #60.0.3112.90 & M62 #62.0.3176.0 and issue is not reproduced with the steps mentioned in commet #0.

And as per the crash id provided in comment #7 , all the crash id's says that it has occured due to third party.dll .

@lysio41 -- Please try disabling third party extensions and flags and update with your observations.

Thanks!
750188.mp4
808 KB View Download
Cc: kkaluri@chromium.org
Status: WontFix (was: Unconfirmed)
Since reporter doesn't responded to comment #9, Closing this issue for now.

lysiol41@@ Could you please file a new bug if issue still exists in latest chrome builds.

Sign in to add a comment