New issue
Advanced search Search tips

Issue 817340 link

Starred by 1 user

Issue metadata

Status: Duplicate
Merged: issue 808227
Owner: ----
Closed: Mar 2018
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug



Sign in to add a comment

Bus in blink::CopyPixels

Project Member Reported by ClusterFuzz, Feb 28 2018

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=5833372186968064

Fuzzer: noel-image-surku
Job Type: linux_cfi_chrome
Platform Id: linux

Crash Type: Bus
Crash Address: 0x7f281e70d000
Crash State:
  blink::CopyPixels
  base::PersistentMemoryAllocator::AllocateImpl
  blink::ImageFrameGenerator::DecodeAndScale
  
Sanitizer: cfi (CFI)

Regressed: https://clusterfuzz.com/revisions?job=linux_cfi_chrome&range=460469:460505

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5833372186968064

Issue filed automatically.

See https://github.com/google/clusterfuzz-tools for more information.
 
Project Member

Comment 1 by ClusterFuzz, Feb 28 2018

Components: Blink>Paint Internals>Metrics
Labels: Test-Predator-Auto-Components
Automatically applying components based on crash stacktrace and information from OWNERS files.

If this is incorrect, please apply the Test-Predator-Wrong-Components label.
Project Member

Comment 2 by ClusterFuzz, Feb 28 2018

Labels: Test-Predator-Auto-Owner
Owner: xlai@chromium.org
Status: Assigned (was: Untriaged)
Automatically assigning owner based on suspected regression changelist https://chromium.googlesource.com/chromium/src/+/d49d131187ed4e0c3dd5124cdd6ba41cbc06a2a9 (Fix error msg of OffscreenCanvas.commit() on gpu compositing).

If this is incorrect, please let us know why and apply the Test-Predator-Wrong-CLs label. If you aren't the correct owner for this issue, please unassign yourself as soon as possible so it can be re-triaged.

Comment 3 by xlai@chromium.org, Feb 28 2018

Labels: Test-Predator-Wrong-CLs
Owner: ----
Status: Untriaged (was: Assigned)
My CL is a change on an unshipped feature and is only accessible to users when --enable-experimental-canvas-features flag is turned on. But the running of Chrome in this test case does not turn on the experimental flag.

I've kicked out another round of bisecting on the clusterfuzz
Components: -Internals>Metrics
Mergedinto: 808227
Status: Duplicate (was: Untriaged)
This issue looks similar to  bug 808227  , hence merging in to it. Feel free to undupe if it's a different issue.

Thanks!

Sign in to add a comment