Closed
Bug 1808213
Opened 2 years ago
Closed 2 years ago
AddressSanitizer: heap-use-after-free [@ nsQueryObject<nsIStringBundle>::operator] with READ of size 8
Categories
(Core :: DOM: Workers, defect)
Tracking
()
RESOLVED
DUPLICATE
of bug 1806064
People
(Reporter: decoder, Unassigned)
Details
(Keywords: crash, regression, reporter-external)
Attachments
(1 file)
14.72 KB,
text/plain
|
Details |
The attached crash information was submitted via the ASan Nightly Reporter on mozilla-central-asan-nightly revision 110.0a1-20221215195521-https://hg.mozilla.org/mozilla-central/rev/440856ffde519ea98b6c1fca7d461c20cc55a90c.
For detailed crash information, see attachment.
Reporter | ||
Comment 1•2 years ago
|
||
Reporter | ||
Updated•2 years ago
|
Component: General → DOM: Content Processes
Flags: sec-bounty?
Comment 3•2 years ago
|
||
This is a build from 2022-12-15, so this looks like a dupe of bug 1806064 (filed on 12-16).
Group: core-security → core-security-release
Status: NEW → RESOLVED
Closed: 2 years ago
Component: DOM: Content Processes → DOM: Workers
Duplicate of bug: 1806064
Resolution: --- → DUPLICATE
Updated•2 years ago
|
status-firefox110:
affected → ---
Comment 4•2 years ago
|
||
Unfortunately, this is ineligible for a bug bounty, because the regressing patch was identified and fixed within our 4 days grace period.
Flags: sec-bounty? → sec-bounty-
Updated•1 year ago
|
Group: core-security-release
Updated•9 months ago
|
Keywords: reporter-external
You need to log in
before you can comment on or make changes to this bug.
Description
•