New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 842896 link

Starred by 1 user

Issue metadata

Status: Verified
Owner: ----
Closed: May 2018
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Mac
Pri: 1
Type: Bug



Sign in to add a comment

Null-dereference READ in ui::ContextProviderCommandBuffer::OnLostContext

Project Member Reported by ClusterFuzz, May 14 2018

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=6144181026947072

Fuzzer: marty_html_twiddler
Job Type: mac_asan_chrome
Platform Id: mac

Crash Type: Null-dereference READ
Crash Address: 0x000000000008
Crash State:
  ui::ContextProviderCommandBuffer::OnLostContext
  gpu::CommandBufferProxyImpl::OnChannelError
  _pthread_start
  
Sanitizer: address (ASAN)

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6144181026947072

Issue filed automatically.

See https://github.com/google/clusterfuzz-tools for more information.
 
Project Member

Comment 1 by ClusterFuzz, May 14 2018

Components: Internals>GPU>Internals Internals>Services>WindowService
Labels: Test-Predator-Auto-Components
Automatically applying components based on crash stacktrace and information from OWNERS files.

If this is incorrect, please apply the Test-Predator-Wrong-Components label.
Cc: brajkumar@chromium.org
Labels: M-66 CF-NeedsTriage
> Predator was unable to identify any culprit changelists for this test case. 

> Unable to find actual suspect through code search and also observing no CL under regression range, hence requesting someone from gpu team to look in to it.

Thanks!
Project Member

Comment 3 by ClusterFuzz, May 17 2018

ClusterFuzz has detected this issue as fixed in range 559349:559378.

Detailed report: https://clusterfuzz.com/testcase?key=6144181026947072

Fuzzer: marty_html_twiddler
Job Type: mac_asan_chrome
Platform Id: mac

Crash Type: Null-dereference READ
Crash Address: 0x000000000008
Crash State:
  ui::ContextProviderCommandBuffer::OnLostContext
  gpu::CommandBufferProxyImpl::OnChannelError
  _pthread_start
  
Sanitizer: address (ASAN)

Fixed: https://clusterfuzz.com/revisions?job=mac_asan_chrome&range=559349:559378

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6144181026947072

See https://github.com/google/clusterfuzz-tools for more information.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
Project Member

Comment 4 by ClusterFuzz, May 17 2018

Labels: ClusterFuzz-Verified
Status: Verified (was: Untriaged)
ClusterFuzz testcase 6144181026947072 is verified as fixed, so closing issue as verified.

If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.

Sign in to add a comment