New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 816286 link

Starred by 1 user

Issue metadata

Status: Duplicate
Merged: issue 811069
Owner:
Closed: Feb 2018
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Mac
Pri: 2
Type: Bug



Sign in to add a comment

CHECK failure: get_interface_object in V8ObjectConstructor.cpp

Project Member Reported by ClusterFuzz, Feb 25 2018

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=6584618741137408

Fuzzer: inferno_twister
Job Type: mac_asan_content_shell
Platform Id: mac

Crash Type: CHECK failure
Crash Address: 
Crash State:
  get_interface_object in V8ObjectConstructor.cpp
  blink::V8ObjectConstructor::CreateInterfaceObject
  blink::V8PerContextData::ConstructorForTypeSlowCase
  
Sanitizer: address (ASAN)

Regressed: https://clusterfuzz.com/revisions?job=mac_asan_content_shell&range=520533:520567

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6584618741137408

Additional requirements: Requires HTTP

Issue filed automatically.

See https://github.com/google/clusterfuzz-tools for more information.
 
Cc: brajkumar@chromium.org
Components: Blink>Bindings
Labels: -Type-Bug M-65 Test-Predator-Wrong Type-Bug-Regression
Owner: peria@chromium.org
Status: Assigned (was: Untriaged)
Predator could not provide any possible suspects.

From the below CL observing some changes related to 'V8ObjectConstructor' hence suspecting the same
https://chromium.googlesource.com/chromium/src/+log/cc140215b906e22d0692804c500f6a5150739339..1fa06605790c5c914f474346417f7eaa8ee23884?pretty=fuller&n=10000

Suspect CL: https://chromium.googlesource.com/chromium/src/+/f47b361887a31cccf42a6e21a82bccf28372bdaa

peria@ -- Could you please check whether this is caused with respect to your change, if not please help us in assigning it to the right owner.

Thanks!

Comment 2 by peria@chromium.org, Feb 27 2018

Labels: -Pri-1 -Type-Bug-Regression Pri-2 Type-Bug
Mergedinto: 811069
Status: Duplicate (was: Assigned)
This issue has been happening for long, so it is not a regression.
Project Member

Comment 3 by ClusterFuzz, Mar 21 2018

ClusterFuzz has detected this issue as fixed in range 544435:544631.

Detailed report: https://clusterfuzz.com/testcase?key=6584618741137408

Fuzzer: inferno_twister
Job Type: mac_asan_content_shell
Platform Id: mac

Crash Type: CHECK failure
Crash Address: 
Crash State:
  get_interface_object in V8ObjectConstructor.cpp
  blink::V8ObjectConstructor::CreateInterfaceObject
  blink::V8PerContextData::ConstructorForTypeSlowCase
  
Sanitizer: address (ASAN)

Regressed: https://clusterfuzz.com/revisions?job=mac_asan_content_shell&range=520533:520567
Fixed: https://clusterfuzz.com/revisions?job=mac_asan_content_shell&range=544435:544631

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6584618741137408

Additional requirements: Requires HTTP

See https://github.com/google/clusterfuzz-tools for more information.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.

Sign in to add a comment