Null-dereference READ in test_runner::MockWebSpeechRecognizer::PostRunTaskFromQueue |
||||||||||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=5295758449573888 Fuzzer: inferno_twister Job Type: mac_asan_content_shell Platform Id: mac Crash Type: Null-dereference READ Crash Address: 0x000000000000 Crash State: test_runner::MockWebSpeechRecognizer::PostRunTaskFromQueue base::debug::TaskAnnotator::RunTask blink::scheduler::TaskQueueManager::ProcessTaskFromWorkQueue Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=mac_asan_content_shell&range=454873:455044 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5295758449573888 Issue filed automatically. See https://github.com/google/clusterfuzz-tools for more information.
,
Oct 16 2017
Predator and CL could not provide any possible suspects. Using the code search for the file, “task_queue_manager.cc” assigning to concern owner from GIT blame. Suspecting Commit# https://chromium.googlesource.com/chromium/src/+/b727bada8f2a3225e9e99cb72bbb6141f468c2af @npm -- Could you please look into this issue, kindly reassign if it has nothing to do with your changes. Thank You.
,
Oct 17 2017
Sadly my content_shell is not compiling due to https://github.com/google/sanitizers/issues/856 But in any case looking at testcases from the same Group it seems that there is a problem in TaskAnnotator::RunTask (maybe pending_task->task can be null). Assigning to tzik@ who last touched that line. If you're not the right owner, please assign to the owner of that file.
,
Oct 18 2017
That's likely due to null |delegate_| of MockWebSpeechRecognizer.
,
Oct 24 2017
Unable to provide possible suspect using Predator, CL and Code Search. Could someone please look into the issue. Thank You.
,
Oct 25 2017
sigbjornf@, can you please take a look? since you worked on this kind of code recently? Thanks in-advance!
,
Oct 25 2017
,
Oct 25 2017
Pri-3 because it's in test-only code.
,
Nov 7 2017
,
Nov 7 2017
Automatically adding ccs based on suspected regression changelists: https://chromium.googlesource.com/chromium/src/+/255d25e6d389106b75c90110b4e00b022e472cc5 (Support reftest-wait in web-platform-tests by smcgruer@chromium.org)https://chromium.googlesource.com/chromium/src/+/a9c462ea8bf9588c2a6859e7fe9fde1e4c7f7353 (TestInterfaces: support delegate clearing. by sigbjornf@opera.com) If this is incorrect, please apply the Test-Predator-Wrong-CLs label.
,
Nov 8 2017
Automatically adding ccs based on suspected regression changelists: https://chromium.googlesource.com/chromium/src/+/255d25e6d389106b75c90110b4e00b022e472cc5 (Support reftest-wait in web-platform-tests by smcgruer@chromium.org)https://chromium.googlesource.com/chromium/src/+/a9c462ea8bf9588c2a6859e7fe9fde1e4c7f7353 (TestInterfaces: support delegate clearing. by sigbjornf@opera.com) If this is incorrect, please apply the Test-Predator-Wrong-CLs label.
,
Nov 8 2017
Automatically adding ccs based on suspected regression changelists: https://chromium.googlesource.com/chromium/src/+/255d25e6d389106b75c90110b4e00b022e472cc5 (Support reftest-wait in web-platform-tests by smcgruer@chromium.org)https://chromium.googlesource.com/chromium/src/+/a9c462ea8bf9588c2a6859e7fe9fde1e4c7f7353 (TestInterfaces: support delegate clearing. by sigbjornf@opera.com) If this is incorrect, please apply the Test-Predator-Wrong-CLs label.
,
Nov 8 2017
Automatically adding ccs based on suspected regression changelists: https://chromium.googlesource.com/chromium/src/+/255d25e6d389106b75c90110b4e00b022e472cc5 (Support reftest-wait in web-platform-tests by smcgruer@chromium.org)https://chromium.googlesource.com/chromium/src/+/a9c462ea8bf9588c2a6859e7fe9fde1e4c7f7353 (TestInterfaces: support delegate clearing. by sigbjornf@opera.com) If this is incorrect, please apply the Test-Predator-Wrong-CLs label.
,
Nov 8 2017
Automatically adding ccs based on suspected regression changelists: https://chromium.googlesource.com/chromium/src/+/255d25e6d389106b75c90110b4e00b022e472cc5 (Support reftest-wait in web-platform-tests by smcgruer@chromium.org)https://chromium.googlesource.com/chromium/src/+/a9c462ea8bf9588c2a6859e7fe9fde1e4c7f7353 (TestInterfaces: support delegate clearing. by sigbjornf@opera.com) If this is incorrect, please apply the Test-Predator-Wrong-CLs label.
,
Nov 8 2017
Automatically adding ccs based on suspected regression changelists: https://chromium.googlesource.com/chromium/src/+/255d25e6d389106b75c90110b4e00b022e472cc5 (Support reftest-wait in web-platform-tests by smcgruer@chromium.org)https://chromium.googlesource.com/chromium/src/+/a9c462ea8bf9588c2a6859e7fe9fde1e4c7f7353 (TestInterfaces: support delegate clearing. by sigbjornf@opera.com) If this is incorrect, please apply the Test-Predator-Wrong-CLs label.
,
Nov 8 2017
Automatically adding ccs based on suspected regression changelists: https://chromium.googlesource.com/chromium/src/+/255d25e6d389106b75c90110b4e00b022e472cc5 (Support reftest-wait in web-platform-tests by smcgruer@chromium.org) https://chromium.googlesource.com/chromium/src/+/a9c462ea8bf9588c2a6859e7fe9fde1e4c7f7353 (TestInterfaces: support delegate clearing. by sigbjornf@opera.com) If this is incorrect, please apply the Test-Predator-Wrong-CLs label.
,
Nov 8 2017
Please ignore the Test-Predator-Auto-CC comment spam above, there was a bug in our script that caused it to create same comment multiple times and also didn't add ccs properly.
,
Nov 21 2017
ClusterFuzz has detected this issue as fixed in range 517889:517931. Detailed report: https://clusterfuzz.com/testcase?key=5295758449573888 Fuzzer: inferno_twister Job Type: mac_asan_content_shell Platform Id: mac Crash Type: Null-dereference READ Crash Address: 0x000000000000 Crash State: test_runner::MockWebSpeechRecognizer::PostRunTaskFromQueue base::debug::TaskAnnotator::RunTask blink::scheduler::TaskQueueManager::ProcessTaskFromWorkQueue Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=mac_asan_content_shell&range=454873:455044 Fixed: https://clusterfuzz.com/revisions?job=mac_asan_content_shell&range=517889:517931 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5295758449573888 See https://github.com/google/clusterfuzz-tools for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Nov 21 2017
ClusterFuzz testcase 5295758449573888 is verified as fixed, so closing issue as verified. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
||||||||||||
►
Sign in to add a comment |
||||||||||||
Comment 1 by ClusterFuzz
, Oct 13 2017Labels: Test-Predator-AutoComponents