Open Bug 2015471 Opened 7 months ago Updated 7 months ago

Crash in [@ memcpy | FT_Stream_ReadAt]

Categories

(Core :: Graphics: Text, defect)

defect

Tracking

()

People

(Reporter: gsvelto, Unassigned)

Details

(Keywords: crash)

Crash Data

Crash report: https://crash-stats.mozilla.org/report/index/8a9473f6-3b01-456c-8004-5a2550260209

Reason:

SIGBUS / BUS_ADRERR

Top 10 frames:

0  libc.so.6  __memcpy_avx_unaligned_erms  sysdeps/x86_64/multiarch/memmove-vec-unaligned-erms.S:660
1  libfreetype.so.6  memcpy  /usr/include/x86_64-linux-gnu/bits/string_fortified.h:29
1  libfreetype.so.6  FT_Stream_ReadAt  /usr/src/freetype-2.13.2+dfsg-1build3/src/base/ftstream.c:146
2  libxul.so  gfxFT2FontEntryBase::CopyFaceTable(mozilla::gfx::SharedFTFace*, unsigned int,...  /build/firefox/parts/firefox/build/gfx/thebes/gfxFT2FontBase.cpp:88
3  libxul.so  gfxFontconfigFontEntry::CopyFontTable(unsigned int, nsTArray<unsigned char>&)  /build/firefox/parts/firefox/build/gfx/thebes/gfxFcPlatformFontList.cpp:1067
4  libxul.so  gfxFontEntry::GetFontTable(unsigned int)  /build/firefox/parts/firefox/build/gfx/thebes/gfxFontEntry.cpp:571
5  libxul.so  gfxFontconfigFontEntry::GetFontTable(unsigned int)  /build/firefox/parts/firefox/build/gfx/thebes/gfxFcPlatformFontList.cpp:533
6  libxul.so  hb_face_t::reference_table(unsigned int) const  /build/firefox/parts/firefox/build/gfx/harfbuzz/src/hb-face.hh:83
6  libxul.so  hb_face_reference_table  /build/firefox/parts/firefox/build/gfx/harfbuzz/src/hb-face.cc:700
6  libxul.so  hb_sanitize_context_t::reference_table<OT::glyf>(hb_face_t const*, unsigned int)  /build/firefox/parts/firefox/build/gfx/harfbuzz/src/hb-sanitize.hh:447

This is essentially the same crash as bug 1718358 but for Linux. We're crashing with a SIGBUS / BUS_ADRERR signal which indicates that we failed to access the file, possibly because of an issue with the disk/filesystem or something similar. I don't think we can fix this on our side short of catching the signal and handling it ourselves in a non-catastrophic way which is extremely tricky.

Severity: -- → S3
Blocks: gfx-triage
No longer blocks: gfx-triage
You need to log in before you can comment on or make changes to this bug.