New issue
Advanced search Search tips

Issue 793600 link

Starred by 1 user

Issue metadata

Status: Duplicate
Merged: issue 793087
Owner:
Closed: Dec 2017
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug



Sign in to add a comment

Null-dereference READ in blink::PositionIteratorAlgorithm<blink::EditingAlgorithm<blink::NodeTraversal> >

Project Member Reported by ClusterFuzz, Dec 9 2017

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=6071858196905984

Fuzzer: ochang_domfuzzer
Job Type: linux_msan_content_shell_drt
Platform Id: linux

Crash Type: Null-dereference READ
Crash Address: 0x000000000010
Crash State:
  blink::PositionIteratorAlgorithm<blink::EditingAlgorithm<blink::NodeTraversal> >
  blink::MostBackwardCaretPosition
  blink::CanonicalPositionOf
  
Sanitizer: memory (MSAN)

Regressed: https://clusterfuzz.com/revisions?job=linux_msan_content_shell_drt&range=518240:518474

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6071858196905984

Issue filed automatically.

See https://github.com/google/clusterfuzz-tools for more information.
 
Project Member

Comment 1 by ClusterFuzz, Dec 9 2017

Components: Blink>Editing
Labels: Test-Predator-Auto-Components
Automatically applying components based on crash stacktrace and information from OWNERS files.

If this is incorrect, please apply the Test-Predator-Wrong-Components label.
Cc: kkaluri@chromium.org ice...@yandex-team.ru
Labels: M-65 Test-Predator-Wrong
Owner: yosin@chromium.org
Status: Assigned (was: Untriaged)
Predator and CL could not provide any possible suspects.
Using the code search for the file, “PositionIterator.cpp” assigning to concern owner from GIT blame.
Suspecting Commit# https://chromium.googlesource.com/chromium/src/+/3292bf38eb80cb87d701ce761dd36584318926ea

Since the author is not chromium user, assigning it to the reviewer 

 -- Assigning this issue to you as you were the reviewer. Could you please look into this issue and kindly reassign if it has nothing to do with the above changes.

Thank You.
Mergedinto: 793087
Status: Duplicate (was: Assigned)
The testcase can be minimized to the same one as  issue 793087 

Sign in to add a comment