Closed Bug 1524004 Opened 6 years ago Closed 6 years ago

heap-use-after-free in [@ GetCompositionTime]

Categories

(Core :: Graphics: WebRender, defect)

defect
Not set
normal

Tracking

()

RESOLVED DUPLICATE of bug 1529027
Tracking Status
firefox67 --- affected

People

(Reporter: tsmith, Unassigned)

References

(Blocks 2 open bugs)

Details

(Keywords: crash, csectype-uaf, sec-high)

Attachments

(1 file)

Attached file crash_log.txt

This has only been hit once by our fuzzers while running m-c 20190130-58b77413fd91.

The reported test case is not reproducible. I will attach a test case if/when one becomes available.

Blocks: wr-fuzz

Sotaro, can you think of any reason this would happen or a way to prevent it?

Flags: needinfo?(sotaro.ikeda.g)
Flags: needinfo?(sotaro.ikeda.g)

Let's close this as a dup of bug 1529027. Please reopen if you hit it again.

Status: NEW → RESOLVED
Closed: 6 years ago
Resolution: --- → DUPLICATE
Group: gfx-core-security
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Created:
Updated:
Size: