Bug 199377 - konqueror javascript crash in khtml::HTMLTokenizer::scriptHandler
Summary: konqueror javascript crash in khtml::HTMLTokenizer::scriptHandler
Status: RESOLVED DUPLICATE of bug 209107
Alias: None
Product: konqueror
Classification: Applications
Component: general (show other bugs)
Version: unspecified
Platform: Unlisted Binaries Linux
: NOR crash
Target Milestone: ---
Assignee: Konqueror Developers
URL:
Keywords:
: 201988 (view as bug list)
Depends on:
Blocks:
 
Reported: 2009-07-08 05:01 UTC by bugs.crash
Modified: 2009-10-02 00:45 UTC (History)
3 users (show)

See Also:
Latest Commit:
Version Fixed In:
Sentry Crash Report:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description bugs.crash 2009-07-08 05:01:37 UTC
Application that crashed: konqueror
Version of the application: 4.2.95 (KDE 4.2.95 (KDE 4.3 RC1))
KDE Version: 4.2.95 (KDE 4.2.95 (KDE 4.3 RC1))
Qt Version: 4.5.0
Operating System: Linux 2.6.28-13-generic i686
Distribution: Ubuntu 9.04

What I was doing when the application crashed:
With javascript enabled, konqueror crashed immediately after it appeared to have finished loading the following web page:
http://www.level8technology.com/servlet/the-2261/dell-inspiron-8600-ac/Detail

This also happens when the javascript debugger is enabled.  There is an error while loading the page, where it complains about a Reference Error to Iterator, or something like that (unfortunately my previous attempt to submit bug report failed w/ Unknown Error).

 -- Backtrace:
Application: Konqueror (kdeinit4), signal: Segmentation fault
[Current thread is 0 (LWP 21087)]

Thread 3 (Thread 0xb1911b90 (LWP 21099)):
#0  0xb807d430 in __kernel_vsyscall ()
#1  0xb654a412 in pthread_cond_timedwait@@GLIBC_2.3.2 () from /lib/tls/i686/cmov/libpthread.so.0
#2  0xb672a344 in pthread_cond_timedwait () from /lib/tls/i686/cmov/libc.so.6
#3  0xb7e7d98c in QWaitCondition::wait (this=0x923b800, mutex=0x923b7fc, time=30000) at thread/qwaitcondition_unix.cpp:85
#4  0xb7e72e76 in QThreadPoolThread::run (this=0x923ec10) at concurrent/qthreadpool.cpp:140
#5  0xb7e7c96e in QThreadPrivate::start (arg=0x923ec10) at thread/qthread_unix.cpp:189
#6  0xb65464ff in start_thread () from /lib/tls/i686/cmov/libpthread.so.0
#7  0xb671b49e in clone () from /lib/tls/i686/cmov/libc.so.6

Thread 2 (Thread 0xabe79b90 (LWP 21103)):
#0  0xb807d430 in __kernel_vsyscall ()
#1  0xb654a412 in pthread_cond_timedwait@@GLIBC_2.3.2 () from /lib/tls/i686/cmov/libpthread.so.0
#2  0xb672a344 in pthread_cond_timedwait () from /lib/tls/i686/cmov/libc.so.6
#3  0xb7e7d98c in QWaitCondition::wait (this=0x923b800, mutex=0x923b7fc, time=30000) at thread/qwaitcondition_unix.cpp:85
#4  0xb7e72e76 in QThreadPoolThread::run (this=0x95f5cf8) at concurrent/qthreadpool.cpp:140
#5  0xb7e7c96e in QThreadPrivate::start (arg=0x95f5cf8) at thread/qthread_unix.cpp:189
#6  0xb65464ff in start_thread () from /lib/tls/i686/cmov/libpthread.so.0
#7  0xb671b49e in clone () from /lib/tls/i686/cmov/libc.so.6

Thread 1 (Thread 0xb6054a10 (LWP 21087)):
[KCrash Handler]
#6  khtml::HTMLTokenizer::scriptHandler (this=0x97e1b48) at /build/buildd/kde4libs-4.2.95/khtml/html/htmltokenizer.cpp:469
#7  0xb237425d in khtml::HTMLTokenizer::parseSpecial (this=0x97e1b48, src=@0x97e2048) at /build/buildd/kde4libs-4.2.95/khtml/html/htmltokenizer.cpp:369
#8  0xb23761c7 in khtml::HTMLTokenizer::parseTag (this=0x97e1b48, src=@0x97e2048) at /build/buildd/kde4libs-4.2.95/khtml/html/htmltokenizer.cpp:1550
#9  0xb237767e in khtml::HTMLTokenizer::write (this=0x97e1b48, str=@0xbfc95cbc, appendData=false) at /build/buildd/kde4libs-4.2.95/khtml/html/htmltokenizer.cpp:1810
#10 0xb231d03c in DOM::DocumentImpl::write (this=0xa290208, text=@0xbfc95d2c) at /build/buildd/kde4libs-4.2.95/khtml/xml/dom_docimpl.cpp:1679
#11 0xb24fc6d1 in KJS::HTMLDocFunction::callAsFunction (this=0xafc6a280, exec=0xbfc9640c, thisObj=0xafc62600, args=@0xbfc96394) at /build/buildd/kde4libs-4.2.95/khtml/ecma/kjs_html.cpp:137
#12 0xb215cd3d in KJS::JSObject::call (this=0xffffffff, exec=0xbfc9640c, thisObj=0xafc62600, args=@0xbfc96394) at /build/buildd/kde4libs-4.2.95/kjs/object.cpp:69
#13 0xb2179d0b in KJS::Machine::runBlock (exec=0xbfc9640c, codeBlock=@0x97e1b48, parentExec=0xbfc96c30) at codes.def:1192
#14 0xb2158fa3 in KJS::FunctionImp::callAsFunction (this=0xafc69280, exec=0xbfc96c30, thisObj=0xafc70000, args=@0xbfc96b34) at /build/buildd/kde4libs-4.2.95/kjs/function.cpp:144
#15 0xb215cd3d in KJS::JSObject::call (this=0xffffffff, exec=0xbfc96c30, thisObj=0xafc70000, args=@0xbfc96b34) at /build/buildd/kde4libs-4.2.95/kjs/object.cpp:69
#16 0xb2179d0b in KJS::Machine::runBlock (exec=0xbfc96c30, codeBlock=@0x97e1b48, parentExec=0x0) at codes.def:1192
#17 0xb212bc40 in KJS::FunctionBodyNode::execute (this=0x96b8e20, exec=0xbfc96c30) at /build/buildd/kde4libs-4.2.95/kjs/nodes.cpp:928
#18 0xb215fe12 in KJS::Interpreter::evaluate (this=0x9606ba8, sourceURL=@0xbfc96db4, startingLineNumber=0, code=0xa26c248, codeLength=29039, thisV=0xafc70000)
    at /build/buildd/kde4libs-4.2.95/kjs/interpreter.cpp:556
#19 0xb215ffb7 in KJS::Interpreter::evaluate (this=0x9606ba8, sourceURL=@0xbfc96db4, startingLineNumber=0, code=@0xbfc96db8, thisV=0xafc70000) at /build/buildd/kde4libs-4.2.95/kjs/interpreter.cpp:496
#20 0xb25345f9 in KJS::KJSProxyImpl::evaluate (this=0x921a6f0, filename=
      {static null = {<No data fields>}, static shared_null = {ref = {_q_value = 23864}, alloc = 0, size = 0, data = 0x80532da, clean = 0, simpletext = 0, righttoleft = 0, asciiCache = 0, capacity = 0, reserved = 0, array = {0}}, static shared_empty = {ref = {_q_value = 243}, alloc = 0, size = 0, data = 0xb8065a6e, clean = 0, simpletext = 0, righttoleft = 0, asciiCache = 0, capacity = 0, reserved = 0, array = {0}}, d = 0xbfc96e14, static codecForCStrings = 0x0}, baseLine=0, str=@0xbfc96e18, n=@0xbfc96e0c, completion=0x0) at /build/buildd/kde4libs-4.2.95/khtml/ecma/kjs_proxy.cpp:158
#21 0xb2381aea in DOM::HTMLScriptElementImpl::evaluateScript (this=0x938d130, URL=@0xbfc96e58, script=@0xbfc96e50) at /build/buildd/kde4libs-4.2.95/khtml/html/html_headimpl.cpp:479
#22 0xb2381c86 in DOM::HTMLScriptElementImpl::notifyFinished (this=0x938d130, o=0xa08d7a8) at /build/buildd/kde4libs-4.2.95/khtml/html/html_headimpl.cpp:463
#23 0xb24a1b3d in khtml::CachedScript::checkNotify (this=0xa08d7a8) at /build/buildd/kde4libs-4.2.95/khtml/misc/loader.cpp:390
#24 0xb24a545c in khtml::CachedScript::data (this=0xa08d7a8, buffer=@0x967d1cc, eof=true) at /build/buildd/kde4libs-4.2.95/khtml/misc/loader.cpp:382
#25 0xb24a5082 in khtml::Loader::slotFinished (this=0x93a4e38, job=0x963fc28) at /build/buildd/kde4libs-4.2.95/khtml/misc/loader.cpp:1461
#26 0xb24ab4c7 in khtml::Loader::qt_metacall (this=0x93a4e38, _c=QMetaObject::InvokeMetaMethod, _id=3, _a=0xbfc9705c) at /build/buildd/kde4libs-4.2.95/obj-i486-linux-gnu/khtml/loader.moc:131
#27 0xb7f86ca8 in QMetaObject::activate (sender=0x963fc28, from_signal_index=7, to_signal_index=7, argv=0xbfc9705c) at kernel/qobject.cpp:3069
#28 0xb7f87932 in QMetaObject::activate (sender=0x963fc28, m=0xb7e1eda8, local_signal_index=3, argv=0xbfc9705c) at kernel/qobject.cpp:3143
#29 0xb7cc4c23 in KJob::result (this=0x963fc28, _t1=0x963fc28) at /build/buildd/kde4libs-4.2.95/obj-i486-linux-gnu/kdecore/kjob.moc:188
#30 0xb7cc50c9 in KJob::emitResult (this=0x963fc28) at /build/buildd/kde4libs-4.2.95/kdecore/jobs/kjob.cpp:304
#31 0xb79185a5 in KIO::SimpleJob::slotFinished (this=0x963fc28) at /build/buildd/kde4libs-4.2.95/kio/kio/job.cpp:477
#32 0xb7918ee3 in KIO::TransferJob::slotFinished (this=0x963fc28) at /build/buildd/kde4libs-4.2.95/kio/kio/job.cpp:948
#33 0xb791548b in KIO::TransferJob::qt_metacall (this=0x963fc28, _c=QMetaObject::InvokeMetaMethod, _id=7, _a=0xbfc97298) at /build/buildd/kde4libs-4.2.95/obj-i486-linux-gnu/kio/jobclasses.moc:343
#34 0xb7f86ca8 in QMetaObject::activate (sender=0x9701158, from_signal_index=8, to_signal_index=8, argv=0x0) at kernel/qobject.cpp:3069
#35 0xb7f87932 in QMetaObject::activate (sender=0x9701158, m=0xb7ac0f44, local_signal_index=4, argv=0x0) at kernel/qobject.cpp:3143
#36 0xb79de497 in KIO::SlaveInterface::finished (this=0x9701158) at /build/buildd/kde4libs-4.2.95/obj-i486-linux-gnu/kio/slaveinterface.moc:165
#37 0xb79e21d7 in KIO::SlaveInterface::dispatch (this=0x9701158, _cmd=104, rawdata=@0xbfc97464) at /build/buildd/kde4libs-4.2.95/kio/kio/slaveinterface.cpp:175
#38 0xb79de977 in KIO::SlaveInterface::dispatch (this=0x9701158) at /build/buildd/kde4libs-4.2.95/kio/kio/slaveinterface.cpp:91
#39 0xb79d06ed in KIO::Slave::gotInput (this=0x9701158) at /build/buildd/kde4libs-4.2.95/kio/kio/slave.cpp:322
#40 0xb79d2b83 in KIO::Slave::qt_metacall (this=0x9701158, _c=QMetaObject::InvokeMetaMethod, _id=2, _a=0xbfc97578) at /build/buildd/kde4libs-4.2.95/obj-i486-linux-gnu/kio/slave.moc:76
#41 0xb7f86ca8 in QMetaObject::activate (sender=0x963faa8, from_signal_index=4, to_signal_index=4, argv=0x0) at kernel/qobject.cpp:3069
#42 0xb7f87932 in QMetaObject::activate (sender=0x963faa8, m=0xb7abd880, local_signal_index=0, argv=0x0) at kernel/qobject.cpp:3143
#43 0xb78dd147 in KIO::Connection::readyRead (this=0x963faa8) at /build/buildd/kde4libs-4.2.95/obj-i486-linux-gnu/kio/connection.moc:86
#44 0xb78deab3 in KIO::ConnectionPrivate::dequeue (this=0x97011e8) at /build/buildd/kde4libs-4.2.95/kio/kio/connection.cpp:82
#45 0xb78dee96 in KIO::Connection::qt_metacall (this=0x963faa8, _c=QMetaObject::InvokeMetaMethod, _id=1, _a=0xa200160) at /build/buildd/kde4libs-4.2.95/obj-i486-linux-gnu/kio/connection.moc:73
#46 0xb7f7f8fb in QMetaCallEvent::placeMetaCall (this=0xa0b5f60, object=0x963faa8) at kernel/qobject.cpp:489
#47 0xb7f813a0 in QObject::event (this=0x963faa8, e=0xa0b5f60) at kernel/qobject.cpp:1118
#48 0xb6a00e9c in QApplicationPrivate::notify_helper (this=0x8d30688, receiver=0x963faa8, e=0xa0b5f60) at kernel/qapplication.cpp:4084
#49 0xb6a0919e in QApplication::notify (this=0xbfc97ef0, receiver=0x963faa8, e=0xa0b5f60) at kernel/qapplication.cpp:3631
#50 0xb753b3dd in KApplication::notify (this=0xbfc97ef0, receiver=0x963faa8, event=0xa0b5f60) at /build/buildd/kde4libs-4.2.95/kdeui/kernel/kapplication.cpp:302
#51 0xb7f70a3b in QCoreApplication::notifyInternal (this=0xbfc97ef0, receiver=0x963faa8, event=0xa0b5f60) at kernel/qcoreapplication.cpp:602
#52 0xb7f71695 in QCoreApplicationPrivate::sendPostedEvents (receiver=0x0, event_type=0, data=0x8cb12c8) at ../../include/QtCore/../../src/corelib/kernel/qcoreapplication.h:213
#53 0xb7f7188d in QCoreApplication::sendPostedEvents (receiver=0x0, event_type=0) at kernel/qcoreapplication.cpp:1132
#54 0xb7f9c7ef in postEventSourceDispatch (s=0x8d35f88) at ../../include/QtCore/../../src/corelib/kernel/qcoreapplication.h:218
#55 0xb6593b88 in g_main_context_dispatch () from /usr/lib/libglib-2.0.so.0
#56 0xb65970eb in ?? () from /usr/lib/libglib-2.0.so.0
#57 0xb6597268 in g_main_context_iteration () from /usr/lib/libglib-2.0.so.0
#58 0xb7f9c438 in QEventDispatcherGlib::processEvents (this=0x8d30668, flags={i = -1077314552}) at kernel/qeventdispatcher_glib.cpp:323
#59 0xb6aa2365 in QGuiEventDispatcherGlib::processEvents (this=0x8d30668, flags={i = -1077314504}) at kernel/qguieventdispatcher_glib.cpp:202
#60 0xb7f6f06a in QEventLoop::processEvents (this=0xbfc97cb0, flags={i = -1077314440}) at kernel/qeventloop.cpp:149
#61 0xb7f6f4aa in QEventLoop::exec (this=0xbfc97cb0, flags={i = -1077314376}) at kernel/qeventloop.cpp:200
#62 0xb7f71959 in QCoreApplication::exec () at kernel/qcoreapplication.cpp:880
#63 0xb6a00d17 in QApplication::exec () at kernel/qapplication.cpp:3553
#64 0xb4add0e8 in kdemain () from /usr/lib/libkdeinit4_konqueror.so
#65 0x0804e1c0 in launch (argc=2, _name=0x8ce2e0c "/usr/bin/konqueror", args=0x8ce2e27 "", cwd=0x0, envc=0, envs=0x8ce2e2c "", reset_env=false, tty=0x0, avoid_loops=false, 
    startup_id_str=0x8ce2e30 "laptop;1247021587;732189;27674_TIME132960317") at /build/buildd/kde4libs-4.2.95/kinit/kinit.cpp:672
#66 0x0804e99d in handle_launcher_request (sock=7, who=<value optimized out>) at /build/buildd/kde4libs-4.2.95/kinit/kinit.cpp:1164
#67 0x0804ef25 in handle_requests (waitForPid=0) at /build/buildd/kde4libs-4.2.95/kinit/kinit.cpp:1357
#68 0x0804fb0a in main (argc=1, argv=0xbfc988e4, envp=0xbfc988ec) at /build/buildd/kde4libs-4.2.95/kinit/kinit.cpp:1784

Reported using DrKonqi
Comment 1 Carlos Licea 2009-07-09 15:09:25 UTC
I can reproduce this behavior in Kubuntu 9.10 running KDE 4.2.95.
Comment 2 Paul Fee 2009-07-31 23:36:24 UTC
*** Bug 201988 has been marked as a duplicate of this bug. ***
Comment 3 Dario Andres 2009-10-02 00:45:10 UTC

*** This bug has been marked as a duplicate of bug 209107 ***