New issue
Advanced search Search tips

Issue 858964 link

Starred by 3 users

Issue metadata

Status: WontFix
Owner: ----
Closed: Jul 1
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux , Mac
Pri: 2
Type: Bug



Sign in to add a comment

Integer-overflow in blink::LayoutFrameSet::UpdateLayout

Project Member Reported by ClusterFuzz, Jun 29 2018

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=6054130121179136

Fuzzer: ifratric-browserfuzzer-v3
Job Type: linux_ubsan_chrome
Platform Id: linux

Crash Type: Integer-overflow
Crash Address: 
Crash State:
  blink::LayoutFrameSet::UpdateLayout
  blink::LayoutBlockFlow::PositionAndLayoutOnceIfNeeded
  blink::LayoutBlockFlow::LayoutBlockChild
  
Sanitizer: undefined (UBSAN)

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6054130121179136

Issue filed automatically.

See https://github.com/google/clusterfuzz-tools for more information.
 
Project Member

Comment 1 by ClusterFuzz, Jun 29 2018

Components: Blink>Layout
Labels: Test-Predator-Auto-Components
Automatically applying components based on crash stacktrace and information from OWNERS files.

If this is incorrect, please apply the Test-Predator-Wrong-Components label.
Status: WontFix (was: Untriaged)
Project Member

Comment 3 by ClusterFuzz, Jul 8

Labels: Needs-Feedback
ClusterFuzz testcase 6054130121179136 is still reproducing on tip-of-tree build (trunk).

If this testcase was not reproducible locally or unworkable, ignore this notification and we will file another bug soon with hopefully a better and workable testcase.

Otherwise, if this is not intended to be fixed (e.g. this is an intentional crash), please add ClusterFuzz-Ignore label to prevent future bug filing with similar crash stacktrace.
Cc: kkaluri@chromium.org
 Issue 863738  has been merged into this issue.
 Issue 866238  has been merged into this issue.
Cc: pnangunoori@chromium.org
 Issue 868710  has been merged into this issue.
 Issue 869863  has been merged into this issue.
 Issue 871024  has been merged into this issue.
 Issue 871634  has been merged into this issue.
 Issue 872216  has been merged into this issue.
 Issue 872607  has been merged into this issue.
Project Member

Comment 12 by ClusterFuzz, Aug 10

Labels: OS-Mac
 Issue 873107  has been merged into this issue.
 Issue 877399  has been merged into this issue.
 Issue 879370  has been merged into this issue.
 Issue 879917  has been merged into this issue.
 Issue 880717  has been merged into this issue.

Sign in to add a comment