CHECK failure: !std::isnan(static_cast<double>(value)) in MathExtras.h |
|||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=6464587770888192 Job Type: linux_debug_content_shell_drt Crash Type: CHECK failure Crash Address: Crash State: !std::isnan(static_cast<double>(value)) in MathExtras.h int clampTo<int, float> blink::FlooredIntPoint Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=linux_debug_content_shell_drt&range=409173:409180 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6464587770888192 Issue filed automatically. See https://github.com/google/clusterfuzz-tools for more information.
,
Jul 31 2017
Issue 750516 has been merged into this issue.
,
Jul 31 2017
This should be layout or compositor related. [1:1:0730/114453.334047:1034229756219:FATAL:MathExtras.h(368)] Check failed: !std::isnan(static_cast<double>(value)). #0 0x0000004f08e1 in __interceptor_backtrace #1 0x7f4ba777462d in base::debug::StackTrace::StackTrace(unsigned long) base/debug/stack_trace_posix.cc:757:41 #2 0x7f4ba776d823 in base::debug::StackTrace::StackTrace() base/debug/stack_trace.cc:199:28 #3 0x7f4ba7928d46 in logging::LogMessage::~LogMessage() base/logging.cc:553:29 #4 0x7f4b865f52ff in int clampTo<int, float>(float, int, int) third_party/WebKit/Source/platform/wtf/MathExtras.h:368:3 #5 0x7f4b8747c153 in blink::FlooredIntPoint(blink::FloatPoint const&) third_party/WebKit/Source/platform/geometry/FloatPoint.h:222:19 #6 0x7f4b8747bb89 in blink::EnclosingIntRect(blink::FloatRect const&) third_party/WebKit/Source/platform/geometry/FloatRect.h:256:23 #7 0x7f4b89dcec1d in blink::LayoutGeometryMap::MapToAncestor(blink::FloatRect const&, blink::LayoutBoxModelObject const*) const third_party/WebKit/Source/core/layout/LayoutGeometryMap.cpp:189:5 #8 0x7f4b89e6aaa4 in blink::LayoutGeometryMap::AbsoluteRect(blink::FloatRect const&) const third_party/WebKit/Source/core/layout/LayoutGeometryMap.h:61:12 #9 0x7f4b8a1f94d6 in blink::CompositingInputsUpdater::UpdateRecursive(blink::PaintLayer*, blink::CompositingInputsUpdater::UpdateType, blink::CompositingInputsUpdater::AncestorInfo) third_party/WebKit/Source/core/layout/compositing/CompositingInputsUpdater.cpp:163:44 #10 0x7f4b8a1faf56 in blink::CompositingInputsUpdater::UpdateRecursive(blink::PaintLayer*, blink::CompositingInputsUpdater::UpdateType, blink::CompositingInputsUpdater::AncestorInfo) third_party/WebKit/Source/core/layout/compositing/CompositingInputsUpdater.cpp:264:5 #11 0x7f4b8a1faf56 in blink::CompositingInputsUpdater::UpdateRecursive(blink::PaintLayer*, blink::CompositingInputsUpdater::UpdateType, blink::CompositingInputsUpdater::AncestorInfo) third_party/WebKit/Source/core/layout/compositing/CompositingInputsUpdater.cpp:264:5 #12 0x7f4b8a1f7fb5 in blink::CompositingInputsUpdater::Update() third_party/WebKit/Source/core/layout/compositing/CompositingInputsUpdater.cpp:26:3
,
Aug 1 2017
Crashing with a bogus huge number is not a problem. Not a release problem either.
,
Aug 8 2017
ClusterFuzz testcase 6464587770888192 is still reproducing on tip-of-tree build (trunk). If this testcase was not reproducible locally or unworkable, ignore this notification and we will file another bug soon with hopefully a better and workable testcase. Otherwise, if this is not intended to be fixed (e.g. this is an intentional crash), please add ClusterFuzz-Ignore label to prevent future bug filing with similar crash stacktrace.
,
Aug 8 2017
|
|||||
►
Sign in to add a comment |
|||||
Comment 1 by msrchandra@chromium.org
, Jul 31 2017Labels: M-60 Test-Predator-Wrong
Owner: yutak@chromium.org
Status: Assigned (was: Untriaged)