Summary: | fuzzing under openSUSE11.4 MS5 | ||
---|---|---|---|
Product: | [Applications] konqueror | Reporter: | maninred |
Component: | khtml | Assignee: | Konqueror Developers <konq-bugs> |
Status: | RESOLVED DUPLICATE | ||
Severity: | crash | CC: | maninred |
Priority: | NOR | ||
Version: | unspecified | ||
Target Milestone: | --- | ||
Platform: | openSUSE | ||
OS: | Linux | ||
Latest Commit: | Version Fixed In: | ||
Sentry Crash Report: | |||
Attachments: |
New crash information added by DrKonqi
New crash information added by DrKonqi |
Description
maninred
2011-01-10 16:06:29 UTC
Created attachment 55828 [details] New crash information added by DrKonqi konqueror (4.5.85 (4.6 Beta2)) on KDE Platform 4.5.85 (4.6 Beta2) using Qt 4.7.1 - What I was doing when the application crashed: Also the fuzzer: http://lcamtuf.coredump.cx/cross_fuzz/ It´s the same crash. -- Backtrace (Reduced): #7 0xaf85d458 in DOM::RangeImpl::insertNode (this=0x8a91138, newNode=0x0, exceptioncode=@0xbfb173ec) at /usr/src/debug/kdelibs-4.5.85/khtml/xml/dom2_rangeimpl.cpp:747 #8 0xafa557b5 in KJS::DOMRangeProtoFunc::callAsFunction (this=0x88fd0cc, exec=0xbfb177bc, thisObj=0x4, args=...) at /usr/src/debug/kdelibs-4.5.85/khtml/ecma/kjs_range.cpp:163 #9 0xaf617a4b in call (exec=0xbfb177bc, codeBlock=..., parentExec=0x0) at /usr/src/debug/kdelibs-4.5.85/kjs/object.h:626 #10 KJS::Machine::runBlock (exec=0xbfb177bc, codeBlock=..., parentExec=0x0) at codes.def:1204 #11 0xaf5cc05c in KJS::FunctionBodyNode::execute (this=0x891abe0, exec=0xbfb177bc) at /usr/src/debug/kdelibs-4.5.85/kjs/nodes.cpp:927 Created attachment 55829 [details] New crash information added by DrKonqi konqueror (4.5.85 (4.6 Beta2)) on KDE Platform 4.5.85 (4.6 Beta2) using Qt 4.7.1 - What I was doing when the application crashed: fuzzing: http://lcamtuf.coredump.cx/cross_fuzz/ It crashed every time because of the same. -- Backtrace (Reduced): #7 0xaf85f458 in DOM::RangeImpl::insertNode (this=0x8b90638, newNode=0x0, exceptioncode=@0xbfb173ec) at /usr/src/debug/kdelibs-4.5.85/khtml/xml/dom2_rangeimpl.cpp:747 #8 0xafa577b5 in KJS::DOMRangeProtoFunc::callAsFunction (this=0x8b70af4, exec=0xbfb177bc, thisObj=0x4, args=...) at /usr/src/debug/kdelibs-4.5.85/khtml/ecma/kjs_range.cpp:163 #9 0xaf619a4b in call (exec=0xbfb177bc, codeBlock=..., parentExec=0x0) at /usr/src/debug/kdelibs-4.5.85/kjs/object.h:626 #10 KJS::Machine::runBlock (exec=0xbfb177bc, codeBlock=..., parentExec=0x0) at codes.def:1204 #11 0xaf5ce05c in KJS::FunctionBodyNode::execute (this=0x8d25c58, exec=0xbfb177bc) at /usr/src/debug/kdelibs-4.5.85/kjs/nodes.cpp:927 *** This bug has been marked as a duplicate of bug 262040 *** |