CHECK failure: false in PaintController.cpp |
||||||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=5746486005202944 Fuzzer: inferno_twister Job Type: windows_asan_content_shell Platform Id: windows Crash Type: CHECK failure Crash Address: Crash State: false in PaintController.cpp blink::PaintController::CheckUnderInvalidation blink::PaintController::ProcessNewItem Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=windows_asan_content_shell&range=537371:537402 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5746486005202944 Issue filed automatically. See https://github.com/google/clusterfuzz-tools for more information.
,
Feb 19 2018
Automatically adding ccs based on suspected regression changelists: [SPv175] Clear paint property tree node change flags after painting by wangxianzhu@chromium.org - https://chromium.googlesource.com/chromium/src/+/297ee9e2ac0fea6624373b0a17b7b78a4b08c033 [SPv175] Enable SlimmingPaintV175 for experimental by wangxianzhu@chromium.org - https://chromium.googlesource.com/chromium/src/+/bf54c05ccf13ff3b26a180f81186426bc56e4ccb If this is incorrect, please let us know why and apply the Test-Predator-Wrong-CLs label.
,
Feb 19 2018
,
Feb 20 2018
Assigning SPv1.75 bugs.
,
Feb 21 2018
,
Feb 21 2018
The following revision refers to this bug: https://chromium.googlesource.com/chromium/src.git/+/fa8a9ae6d703921b684c36884d06bb1889d60867 commit fa8a9ae6d703921b684c36884d06bb1889d60867 Author: Xianzhu Wang <wangxianzhu@chromium.org> Date: Wed Feb 21 16:53:08 2018 [SPv175] Invalidate GraphicsLayer as a DisplayItemClient on resize We use GraphicsLayer as DisplayItemClient when painting e.g. child clipping mask. Should invalidate it on resize. Bug: 813535 Cq-Include-Trybots: master.tryserver.blink:linux_trusty_blink_rel;master.tryserver.chromium.linux:linux_layout_tests_slimming_paint_v2 Change-Id: Id319fa74826b5e8b8dd14a233a69522a202c3848 Reviewed-on: https://chromium-review.googlesource.com/927702 Reviewed-by: Stephen Chenney <schenney@chromium.org> Commit-Queue: Xianzhu Wang <wangxianzhu@chromium.org> Cr-Commit-Position: refs/heads/master@{#538135} [add] https://crrev.com/fa8a9ae6d703921b684c36884d06bb1889d60867/third_party/WebKit/LayoutTests/paint/invalidation/compositing/frame-child-clipping-mask-resize-crash.html [modify] https://crrev.com/fa8a9ae6d703921b684c36884d06bb1889d60867/third_party/WebKit/Source/platform/graphics/GraphicsLayer.cpp
,
Feb 21 2018
,
Feb 21 2018
,
Feb 22 2018
ClusterFuzz has detected this issue as fixed in range 538124:538135. Detailed report: https://clusterfuzz.com/testcase?key=5746486005202944 Fuzzer: inferno_twister Job Type: windows_asan_content_shell Platform Id: windows Crash Type: CHECK failure Crash Address: Crash State: false in PaintController.cpp blink::PaintController::CheckUnderInvalidation blink::PaintController::ProcessNewItem Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=windows_asan_content_shell&range=537371:537402 Fixed: https://clusterfuzz.com/revisions?job=windows_asan_content_shell&range=538124:538135 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5746486005202944 See https://github.com/google/clusterfuzz-tools for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Feb 22 2018
ClusterFuzz testcase 5746486005202944 is verified as fixed, so closing issue as verified. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
||||||||
►
Sign in to add a comment |
||||||||
Comment 1 by ClusterFuzz
, Feb 19 2018Labels: Test-Predator-Auto-Components