My favorites | Sign in
Project Home Downloads Wiki Issues Code Search
New issue   Search
for
  Advanced search   Search tips   Subscriptions
Issue 51458: WebKit roll: 64705:64742 caused new crashes.
1 person starred this issue and may be notified of changes. Back to list
Status:  Duplicate
Merged:  issue 51476
Owner:  abarth@chromium.org
Closed:  Aug 2010
Cc:  nsylv...@chromium.org, esei...@chromium.org

Restricted
  • Only users with Commit permission may comment.


Sign in to add a comment
 
Project Member Reported by pfeld...@chromium.org, Aug 6, 2010
http://buildbot.jail.google.com/buildbot/chromium/builders/Chromium%20Reliability/builds/11520/steps/reliability:%20partial%20result%20of%20current%20build/logs/stdio

Major suspect is the new tree builder, assigning to Adam.
http://trac.webkit.org/changeset/64712

Log:
chrome_2580000!WebCore::RenderBlock::addChildIgnoringAnonymousColumnBlocks+0x143 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\rendering\renderblock.cpp @ 682]
chrome_2580000!WebCore::RenderBlock::addChildIgnoringContinuation+0xa6 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\rendering\renderblock.cpp @ 761]
chrome_2580000!WebCore::RenderBlock::addChild+0x5b [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\rendering\renderblock.cpp @ 754]
chrome_2580000!WebCore::Node::createRendererIfNeeded+0x108 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\dom\node.cpp @ 1418]
chrome_2580000!WebCore::Element::attach+0x14 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\dom\element.cpp @ 816]
chrome_2580000!WebCore::ContainerNode::attach+0x1c [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\dom\containernode.cpp @ 638]
chrome_2580000!WebCore::Element::attach+0x1b [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\dom\element.cpp @ 817]
chrome_2580000!WebCore::ContainerNode::attach+0x1c [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\dom\containernode.cpp @ 638]
chrome_2580000!WebCore::Element::attach+0x1b [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\dom\element.cpp @ 817]
chrome_2580000!WebCore::HTMLTreeBuilder::callTheAdoptionAgency+0x280 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\html\htmltreebuilder.cpp @ 1752]
chrome_2580000!WebCore::HTMLTreeBuilder::processEndTagForInBody+0x3ca [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\html\htmltreebuilder.cpp @ 2077]
chrome_2580000!WebCore::HTMLTreeBuilder::processEndTag+0x1d0 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\html\htmltreebuilder.cpp @ 2402]
chrome_2580000!WebCore::HTMLTreeBuilder::processFakeEndTag+0x3d [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\html\htmltreebuilder.cpp @ 573]
chrome_2580000!WebCore::HTMLTreeBuilder::processStartTagForInBody+0x410 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\html\htmltreebuilder.cpp @ 900]
chrome_2580000!WebCore::HTMLTreeBuilder::processStartTag+0x7b6 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\html\htmltreebuilder.cpp @ 1578]
chrome_2580000!WebCore::HTMLTreeBuilder::constructTreeFromToken+0x37 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\html\htmltreebuilder.cpp @ 516]
chrome_2580000!WebCore::HTMLDocumentParser::pumpTokenizer+0x9d [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\html\htmldocumentparser.cpp @ 173]
chrome_2580000!WebCore::HTMLDocumentParser::resumeParsingAfterScriptExecution+0x59 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\html\htmldocumentparser.cpp @ 352]
chrome_2580000!WebCore::HTMLDocumentParser::notifyFinished+0x37 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\html\htmldocumentparser.cpp @ 387]
chrome_2580000!WebCore::CachedScript::checkNotify+0x3a [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\loader\cachedscript.cpp @ 99]
chrome_2580000!WebCore::CachedScript::data+0x6d [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\loader\cachedscript.cpp @ 90]
chrome_2580000!WebCore::Loader::Host::didFinishLoading+0xad [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\loader\loader.cpp @ 416]
chrome_2580000!WebCore::SubresourceLoader::didFinishLoading+0x26 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\loader\subresourceloader.cpp @ 185]
chrome_2580000!WebCore::ResourceLoader::didFinishLoading+0x7 [c:\b\slave\chromium-rel-xp\build\src\third_party\webkit\webcore\loader\resourceloader.cpp @ 444]
chrome_2580000!webkit_glue::WebURLLoaderImpl::Context::OnCompletedRequest+0x18c [c:\b\slave\chromium-rel-xp\build\src\webkit\glue\weburlloader_impl.cc @ 619]
chrome_2580000!ResourceDispatcher::OnRequestComplete+0x8f [c:\b\slave\chromium-rel-xp\build\src\chrome\common\resource_dispatcher.cc @ 470]
chrome_2580000!IPC::MessageWithTuple<Tuple3<int,URLRequestStatus,std::basic_string<char,std::char_traits<char>,std::allocator<char> > > >::Dispatch<ResourceDispatcher,void (__thiscall ResourceDispatcher::*)(int,URLRequestStatus const &,std::basic_string<char,std::char_traits<char>,std::allocator<char> > const &)>+0x5b [c:\b\slave\chromium-rel-xp\build\src\ipc\ipc_message_utils.h @ 1042]
chrome_2580000!ResourceDispatcher::DispatchMessageW+0xa1 [c:\b\slave\chromium-rel-xp\build\src\chrome\common\resource_dispatcher.cc @ 537]
chrome_2580000!ResourceDispatcher::OnMessageReceived+0x27f [c:\b\slave\chromium-rel-xp\build\src\chrome\common\resource_dispatcher.cc @ 303]
chrome_2580000!ChildThread::OnMessageReceived+0x1d [c:\b\slave\chromium-rel-xp\build\src\chrome\common\child_thread.cc @ 124]
chrome_2580000!RunnableMethod<CancelableRequest<CallbackRunner<Tuple2<int,std::vector<__int64,std::allocator<__int64> > *> > >,void (__thiscall CancelableRequest<CallbackRunner<Tuple2<int,std::vector<__int64,std::allocator<__int64> > *> > >::*)(Tuple2<int,std::vector<__int64,std::allocator<__int64> > *> const &),Tuple1<Tuple2<int,std::vector<__int64,std::allocator<__int64> > *> > >::Run+0x17 [c:\b\slave\chromium-rel-xp\build\src\base\task.h @ 327]
chrome_2580000!MessageLoop::RunTask+0xff [c:\b\slave\chromium-rel-xp\build\src\base\message_loop.cc @ 410]
chrome_2580000!MessageLoop::DoWork+0x176 [c:\b\slave\chromium-rel-xp\build\src\base\message_loop.cc @ 525]
chrome_2580000!base::MessagePumpDefault::Run+0x117 [c:\b\slave\chromium-rel-xp\build\src\base\message_pump_default.cc @ 50]
chrome_2580000!MessageLoop::RunInternal+0x92 [c:\b\slave\chromium-rel-xp\build\src\base\message_loop.cc @ 257]
chrome_2580000!MessageLoop::Run+0x5b [c:\b\slave\chromium-rel-xp\build\src\base\message_loop.cc @ 208]
chrome_2580000!RendererMain+0x314 [c:\b\slave\chromium-rel-xp\build\src\chrome\renderer\renderer_main.cc @ 292]
chrome_2580000!ChromeMain+0x8d8 [c:\b\slave\chromium-rel-xp\build\src\chrome\app\chrome_dll_main.cc @ 786]
chrome!MainDllLoader::Launch+0x199 [c:\b\slave\chromium-rel-xp\build\src\chrome\app\client_util.cc @ 241]
chrome!wWinMain+0x97 [c:\b\slave\chromium-rel-xp\build\src\chrome\app\chrome_exe_main.cc @ 47]
chrome!__tmainCRTStartup+0x112 [f:\dd\vctools\crt_bld\self_x86\crt\src\crt0.c @ 263]
WARNING: Stack unwind information not available. Following frames may be wrong.

Aug 6, 2010
#1 pfeld...@chromium.org
(No comment was entered for this change.)
Cc: esei...@chromium.org
Aug 7, 2010
#2 abarth@chromium.org
https://bugs.webkit.org/show_bug.cgi?id=43663

I don't have VPN access.  Would someone be so kind as to paste some of the repo URLs here or in the WebKit bug?  The one in the webkit bug doesn't generate this stack anymore.
Aug 7, 2010
#4 abarth@chromium.org
The security team came up with a nice reduction.  Yay security team.
Status: Duplicate
Mergedinto: 51476
Oct 12, 2012
#5 bugdroid1@chromium.org
This issue has been closed for some time. No one will pay attention to new comments.
If you are seeing this bug or have new data, please click New Issue to start a new bug.
Labels: Restrict-AddIssueComment-Commit
Mergedinto: chromium:51476
Mar 10, 2013
#6 bugdroid1@chromium.org
(No comment was entered for this change.)
Labels: -Area-WebKit Cr-Content
Apr 5, 2013
#7 bugdroid1@chromium.org
(No comment was entered for this change.)
Labels: -Cr-Content Cr-Blink
Sign in to add a comment

Powered by Google Project Hosting