New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 808924 link

Starred by 2 users

Issue metadata

Status: WontFix
Owner: ----
Closed: Feb 2018
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug



Sign in to add a comment

Null-dereference READ in SpaceGlyph

Project Member Reported by ClusterFuzz, Feb 5 2018

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=6446057308028928

Fuzzer: inferno_twister_c
Job Type: linux_lsan_chrome_mp
Platform Id: linux

Crash Type: Null-dereference READ
Crash Address: 0x000000000128
Crash State:
  SpaceGlyph
  blink::ShapeResult::CreateForTabulationCharacters
  blink::CachingWordShapeIterator::NextForAllowTabs
  
Sanitizer: address (ASAN)

Regressed: https://clusterfuzz.com/revisions?job=linux_lsan_chrome_mp&range=478007:478121

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6446057308028928

Issue filed automatically.

See https://github.com/google/clusterfuzz-tools for more information.
 
Project Member

Comment 1 by ClusterFuzz, Feb 5 2018

Components: Platform
Labels: Test-Predator-Auto-Components
Automatically applying components based on crash stacktrace and information from OWNERS files.

If this is incorrect, please apply the Test-Predator-Wrong-Components label.
Cc: brajkumar@chromium.org
Components: Blink
Labels: M-64 Test-Predator-Wrong CF-NeedsTriage
Unable to find actual suspect through code search and also from the provided CL under regression range, hence adding appropriate label and leaving it as untriaged for more updates on this isuse.

Thanks!
Components: -Blink -Platform Blink>Fonts

Comment 4 by e...@chromium.org, Feb 6 2018

Status: WontFix (was: Untriaged)
Unable to repro. As it's not a security issue and as CachingWordShapeIterator is going away I'll go ahead and mark this as WontFix.

Sign in to add a comment