Null-dereference READ in blink::ScriptState::From |
|||||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=5643180838748160 Fuzzer: lcamtuf_cross_fuzz Job Type: linux_cfi_chrome Platform Id: linux Crash Type: Null-dereference READ Crash Address: 0x000000000000 Crash State: blink::ScriptState::From blink::CallbackInterfaceBase::CallbackInterfaceBase blink::V8EntryCallback::V8EntryCallback Sanitizer: cfi (CFI) Regressed: https://clusterfuzz.com/revisions?job=linux_cfi_chrome&range=570924:570982 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5643180838748160 Issue filed automatically. See https://github.com/google/clusterfuzz-tools for more information.
,
Jun 30 2018
Tentatively cc'ing yukishiino due to the callback part of the backtrace.
,
Jul 3
,
Jul 4
,
Jul 4
ClusterFuzz testcase 5643180838748160 appears to be flaky, updating reproducibility label.
,
Jul 11
Not reproducible on ToT.
,
Jul 13
ClusterFuzz testcase 5643180838748160 is flaky and no longer crashes, so closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
|||||||
►
Sign in to add a comment |
|||||||
Comment 1 by ClusterFuzz
, Jun 29 2018Labels: Test-Predator-Auto-Components