<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "https://bugs.webkit.org/page.cgi?id=bugzilla.dtd">

<bugzilla version="5.0.4.1"
          urlbase="https://bugs.webkit.org/"
          
          maintainer="admin@webkit.org"
>

    <bug>
          <bug_id>127650</bug_id>
          
          <creation_ts>2014-01-26 05:29:30 -0800</creation_ts>
          <short_desc>[SOUP] WebProcess sometimes crashes when a download is cancelled</short_desc>
          <delta_ts>2014-01-27 00:22:36 -0800</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>WebKit</product>
          <component>WebKit2</component>
          <version>528+ (Nightly build)</version>
          <rep_platform>Unspecified</rep_platform>
          <op_sys>Unspecified</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          <bug_file_loc></bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords>Gtk</keywords>
          <priority>P2</priority>
          <bug_severity>Normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Carlos Garcia Campos">cgarcia</reporter>
          <assigned_to name="Nobody">webkit-unassigned</assigned_to>
          <cc>gustavo</cc>
          

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>972184</commentid>
    <comment_count>0</comment_count>
    <who name="Carlos Garcia Campos">cgarcia</who>
    <bug_when>2014-01-26 05:29:30 -0800</bug_when>
    <thetext>Program received signal SIGSEGV, Segmentation fault.
0x00007ffca626a00b in WebKit::Download::cancel() () from WebKit/WebKitBuild/Release/.libs/libwebkit2gtk-3.0.so.25
(gdb) bt
#0  0x00007ffca626a00b in WebKit::Download::cancel() () fromWebKit/WebKitBuild/Release/.libs/libwebkit2gtk-3.0.so.25
#1  0x00007ffca6402d90 in WebKit::WebProcess::didReceiveWebProcessMessage(IPC::Connection*, IPC::MessageDecoder&amp;) ()
   from WebKit/WebKitBuild/Release/.libs/libwebkit2gtk-3.0.so.25
#2  0x00007ffca7769f8b in IPC::Connection::dispatchMessage(std::unique_ptr&lt;IPC::MessageDecoder, std::default_delete&lt;IPC::MessageDecoder&gt; &gt;) ()
   from WebKit/WebKitBuild/Release/.libs/libwebkit2gtk-3.0.so.25
#3  0x00007ffca776a0d3 in IPC::Connection::dispatchOneMessage() () from WebKit/WebKitBuild/Release/.libs/libwebkit2gtk-3.0.so.25
#4  0x00007ffca89c45b6 in WTF::RunLoop::performWork() () from WebKit/WebKitBuild/Release/.libs/libjavascriptcoregtk-3.0.so.0
#5  0x00007ffca89d10e9 in WTF::RunLoop::queueWork(WTF::RunLoop*) () from WebKit/WebKitBuild/Release/.libs/libjavascriptcoregtk-3.0.so.0
#6  0x00007ffca25084b5 in g_main_dispatch (context=0x1d80a20) at gmain.c:3068
#7  g_main_context_dispatch (context=context@entry=0x1d80a20) at gmain.c:3643
#8  0x00007ffca2508818 in g_main_context_iterate (context=0x1d80a20, block=block@entry=1, dispatch=dispatch@entry=1, self=&lt;optimized out&gt;) at gmain.c:3714
#9  0x00007ffca2508c1a in g_main_loop_run (loop=0x1e64af0) at gmain.c:3908
#10 0x00007ffca635e914 in WebProcessMainGtk () from WebKit/WebKitBuild/Release/.libs/libwebkit2gtk-3.0.so.25
#11 0x00007ffca14fa995 in __libc_start_main (main=0x400890 &lt;main&gt;, argc=2, ubp_av=0x7fffe13e1728, init=&lt;optimized out&gt;, fini=&lt;optimized out&gt;, rtld_fini=&lt;optimized out&gt;, 
    stack_end=0x7fffe13e1718) at libc-start.c:276
#12 0x00000000004008be in _start ()</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>972185</commentid>
    <comment_count>1</comment_count>
      <attachid>222269</attachid>
    <who name="Carlos Garcia Campos">cgarcia</who>
    <bug_when>2014-01-26 05:39:15 -0800</bug_when>
    <thetext>Created attachment 222269
Patch</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>972194</commentid>
    <comment_count>2</comment_count>
      <attachid>222269</attachid>
    <who name="Martin Robinson">mrobinson</who>
    <bug_when>2014-01-26 08:30:15 -0800</bug_when>
    <thetext>Comment on attachment 222269
Patch

View in context: https://bugs.webkit.org/attachment.cgi?id=222269&amp;action=review

&gt; Source/WebKit2/Shared/Downloads/soup/DownloadSoup.cpp:241
&gt; +    RefPtr&lt;ResourceHandle&gt; resourceHandle = m_resourceHandle;
&gt; +    m_resourceHandle = nullptr;

You should use m_resourceHandle.release() here.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>972352</commentid>
    <comment_count>3</comment_count>
    <who name="Carlos Garcia Campos">cgarcia</who>
    <bug_when>2014-01-27 00:22:36 -0800</bug_when>
    <thetext>Committed r162830: &lt;http://trac.webkit.org/changeset/162830&gt;</thetext>
  </long_desc>
      
          <attachment
              isobsolete="0"
              ispatch="1"
              isprivate="0"
          >
            <attachid>222269</attachid>
            <date>2014-01-26 05:39:15 -0800</date>
            <delta_ts>2014-01-26 08:30:14 -0800</delta_ts>
            <desc>Patch</desc>
            <filename>wk-download-cancel-crash.diff</filename>
            <type>text/plain</type>
            <size>2254</size>
            <attacher name="Carlos Garcia Campos">cgarcia</attacher>
            
              <data encoding="base64">ZGlmZiAtLWdpdCBhL1NvdXJjZS9XZWJLaXQyL0NoYW5nZUxvZyBiL1NvdXJjZS9XZWJLaXQyL0No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</data>
<flag name="review"
          id="246246"
          type_id="1"
          status="+"
          setter="mrobinson"
    />
          </attachment>
      

    </bug>

</bugzilla>