Null-dereference READ in blink::Internals::textAffinity() |
||||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=6406327088971776 Fuzzer: inferno_layout_test_fuzzer Job Type: windows_asan_content_shell Platform Id: windows Crash Type: Null-dereference READ Crash Address: 0x00000014 Crash State: blink::DateTimeSymbolicFieldElement::IndexOfSelectedOption blink::Internals::textAffinity blink::V8Internals::textAffinityAttributeGetterCallback Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=windows_asan_content_shell&range=502854:502878 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6406327088971776 Issue filed automatically. See https://github.com/google/clusterfuzz-tools for more information.
,
Oct 1 2017
Automatically applying components based on information from OWNERS files. If this seems incorrect, please apply the Test-Predator-Wrong-Components label.
,
Oct 2 2017
Internals::textAffinity() misses null check for GetFrame() and GetPage().
,
Oct 3 2017
,
Oct 20 2017
ClusterFuzz has detected this issue as fixed in range 510178:510268. Detailed report: https://clusterfuzz.com/testcase?key=6406327088971776 Fuzzer: inferno_layout_test_fuzzer Job Type: windows_asan_content_shell Platform Id: windows Crash Type: Null-dereference READ Crash Address: 0x00000014 Crash State: blink::DateTimeSymbolicFieldElement::IndexOfSelectedOption blink::Internals::textAffinity blink::V8Internals::textAffinityAttributeGetterCallback Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=windows_asan_content_shell&range=502854:502878 Fixed: https://clusterfuzz.com/revisions?job=windows_asan_content_shell&range=510178:510268 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6406327088971776 See https://github.com/google/clusterfuzz-tools for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Oct 20 2017
ClusterFuzz testcase 6406327088971776 is verified as fixed, so closing issue as verified. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
,
Nov 7 2017
|
||||||
►
Sign in to add a comment |
||||||
Comment 1 by pnangunoori@chromium.org
, Sep 26 2017Labels: M-63 Test-Predator-Wrong