Stack-overflow in blink::LayoutObject::MapLocalToAncestor |
||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=6405901779730432 Fuzzer: inferno_layout_test_unmodified Job Type: mac_asan_content_shell Platform Id: mac Crash Type: Stack-overflow Crash Address: 0x7fff5c1e4ff8 Crash State: blink::LayoutObject::MapLocalToAncestor Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=mac_asan_content_shell&range=530905:530957 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6405901779730432 Issue filed automatically. See https://github.com/google/clusterfuzz-tools for more information.
,
Feb 10 2018
Automatically adding ccs based on suspected regression changelists: [LayoutNG] Adapt LayoutInline::FirstLineBoxTopLeft() to LayoutNG by yosin@chromium.org - https://chromium.googlesource.com/chromium/src/+/d1d2866e7908d7b5f37c8518f0127d1ebd020c42 [Reland] Add implicit rootScroller feature by bokan@chromium.org - https://chromium.googlesource.com/chromium/src/+/e9aa1ff150cc50a295227f280d50a7b023938cbd If this is incorrect, please let us know why and apply the Test-Predator-Wrong-CLs label.
,
Feb 12 2018
Stack overflows due to deeply nested content are considered WontFix.
,
Feb 19 2018
ClusterFuzz testcase 6405901779730432 is still reproducing on tip-of-tree build (trunk). If this testcase was not reproducible locally or unworkable, ignore this notification and we will file another bug soon with hopefully a better and workable testcase. Otherwise, if this is not intended to be fixed (e.g. this is an intentional crash), please add ClusterFuzz-Ignore label to prevent future bug filing with similar crash stacktrace.
,
Feb 22 2018
ClusterFuzz has detected this issue as fixed in range 538211:538233. Detailed report: https://clusterfuzz.com/testcase?key=6405901779730432 Fuzzer: inferno_layout_test_unmodified Job Type: mac_asan_content_shell Platform Id: mac Crash Type: Stack-overflow Crash Address: 0x7fff5c1e4ff8 Crash State: blink::LayoutObject::MapLocalToAncestor Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=mac_asan_content_shell&range=530905:530957 Fixed: https://clusterfuzz.com/revisions?job=mac_asan_content_shell&range=538211:538233 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6405901779730432 See https://github.com/google/clusterfuzz-tools for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page. |
||||
►
Sign in to add a comment |
||||
Comment 1 by ClusterFuzz
, Feb 10 2018Labels: Test-Predator-Auto-Components