Closed
Bug 1718099
Opened 3 years ago
Closed 3 years ago
AddressSanitizer: heap-use-after-free [@ GetMozContainer] with READ of size 8 on nsBaseWidget
Categories
(Core :: Widget: Gtk, defect)
Tracking
()
RESOLVED
DUPLICATE
of bug 1716796
Tracking | Status | |
---|---|---|
firefox90 | --- | unaffected |
firefox91 | --- | fixed |
People
(Reporter: decoder, Unassigned)
Details
(Keywords: crash, csectype-uaf, regression)
Crash Data
Attachments
(1 file)
15.55 KB,
text/plain
|
Details |
The attached crash information was submitted via the ASan Nightly Reporter on mozilla-central-asan-nightly revision 91.0a1-20210618092056-https://hg.mozilla.org/mozilla-central/rev/d70c3d846c395717c429cd3f3433457f5f92dced.
For detailed crash information, see attachment.
This was reported anonymously.
Reporter | ||
Comment 1•3 years ago
|
||
Reporter | ||
Updated•3 years ago
|
Component: General → Widget: Gtk
Reporter | ||
Updated•3 years ago
|
Crash Signature: [@ GetMozContainer][@ mozilla::widget::WindowSurfaceWayland::FlushPendingCommitsLocked]
Comment 2•3 years ago
|
||
Martin: you've been poking around in this file, possibly related to any recent changes?
Comment 3•3 years ago
|
||
Dupe of 1716796.
Status: NEW → RESOLVED
Closed: 3 years ago
Flags: needinfo?(stransky)
Resolution: --- → DUPLICATE
Updated•3 years ago
|
status-firefox90:
--- → unaffected
Updated•4 months ago
|
Group: core-security-release
You need to log in
before you can comment on or make changes to this bug.
Description
•