Null-dereference READ in blink::FlatTreeTraversal::TraverseChild |
||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=6424762945110016 Fuzzer: bj_broddelwerk Job Type: linux_lsan_chrome_mp Platform Id: linux Crash Type: Null-dereference READ Crash Address: 0x000000000010 Crash State: blink::FlatTreeTraversal::TraverseChild TraverseLastChild LastWithin Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=linux_lsan_chrome_mp&range=606747:606748 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6424762945110016 Issue filed automatically. See https://github.com/google/clusterfuzz-tools for more information.
,
Nov 13
It looks related to Editing. yosin@, could you have a chance to triage this?
,
Nov 13
xiaochengh@, does http://crrev.com/c/1331571 fix this?
,
Nov 13
ClusterFuzz has detected this issue as fixed in range 607498:607499. Detailed report: https://clusterfuzz.com/testcase?key=6424762945110016 Fuzzer: bj_broddelwerk Job Type: linux_lsan_chrome_mp Platform Id: linux Crash Type: Null-dereference READ Crash Address: 0x000000000010 Crash State: blink::FlatTreeTraversal::TraverseChild TraverseLastChild LastWithin Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=linux_lsan_chrome_mp&range=606747:606748 Fixed: https://clusterfuzz.com/revisions?job=linux_lsan_chrome_mp&range=607498:607499 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6424762945110016 See https://github.com/google/clusterfuzz-tools for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Nov 13
ClusterFuzz testcase 6424762945110016 is verified as fixed, so closing issue as verified. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
||||
►
Sign in to add a comment |
||||
Comment 1 by kkaluri@chromium.org
, Nov 12Labels: M-72 Test-Predator-Wrong
Owner: kymuto@google.com
Status: Assigned (was: Untriaged)