Closed Bug 1610924 Opened 4 years ago Closed 4 years ago

AddressSanitizer: heap-use-after-free [@ mozilla::dom::quota::QuotaObject::LockedMaybeUpdateSize] with READ of size 8

Categories

(Core :: Storage: Quota Manager, defect)

x86_64
Linux
defect
Not set
critical

Tracking

()

RESOLVED DUPLICATE of bug 1610880

People

(Reporter: decoder, Unassigned)

Details

(Keywords: crash, regression)

Attachments

(1 file)

The attached crash information was submitted via the ASan Nightly Reporter on mozilla-central-asan-nightly revision 74.0a1-20200122094859-https://hg.mozilla.org/mozilla-central/rev/be3a05f615a557fd4c5171f789cc460688d9c3b8.

For detailed crash information, see attachment.

Flags: sec-bounty?
Group: core-security → dom-core-security
Status: NEW → RESOLVED
Closed: 4 years ago
Resolution: --- → DUPLICATE

Duplicate (it's within the same timeframe; but the reporter is the same, so safe to bounty-)

Flags: sec-bounty? → sec-bounty-
Group: dom-core-security
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Created:
Updated:
Size: