<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "https://bugs.webkit.org/page.cgi?id=bugzilla.dtd">

<bugzilla version="5.0.4.1"
          urlbase="https://bugs.webkit.org/"
          
          maintainer="admin@webkit.org"
>

    <bug>
          <bug_id>160563</bug_id>
          
          <creation_ts>2016-08-04 12:32:42 -0700</creation_ts>
          <short_desc>Crash under NavigationState::NavigationClient::processDidCrash()</short_desc>
          <delta_ts>2016-08-04 19:54:12 -0700</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>WebKit</product>
          <component>WebKit2</component>
          <version>WebKit Nightly Build</version>
          <rep_platform>Unspecified</rep_platform>
          <op_sys>Unspecified</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          <bug_file_loc></bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords>InRadar</keywords>
          <priority>P1</priority>
          <bug_severity>Normal</bug_severity>
          <target_milestone>---</target_milestone>
          <dependson>160587</dependson>
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Chris Dumez">cdumez</reporter>
          <assigned_to name="Chris Dumez">cdumez</assigned_to>
          <cc>andersca</cc>
    
    <cc>beidson</cc>
    
    <cc>sam</cc>
    
    <cc>webkit-bug-importer</cc>
          

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>1217525</commentid>
    <comment_count>0</comment_count>
    <who name="Chris Dumez">cdumez</who>
    <bug_when>2016-08-04 12:32:42 -0700</bug_when>
    <thetext>Exception Type:  EXC_BAD_ACCESS (SIGSEGV)
Exception Subtype: KERN_INVALID_ADDRESS at 0x3032373245313424
Crash under NavigationState::NavigationClient::processDidCrash():

Termination Signal: Segmentation fault: 11
Termination Reason: Namespace SIGNAL, Code 0xb
Terminating Process: exc handler [0]
Triggered by Thread:  0

Filtered syslog:
None found
Thread 0 name:  Dispatch queue: com.apple.main-thread
Thread 0 Crashed ↩:
0   libobjc.A.dylib               	0x000000018fc90ab4 objc_loadWeakRetained + 148 (objc-object.h:161)
1   WebKit                        	0x000000019a78e7e4 WebKit::NavigationState::NavigationClient::processDidCrash(WebKit::WebPageProxy&amp;) + 48 (WeakObjCPtr.h:90)
2   WebKit                        	0x000000019a78e7e4 WebKit::NavigationState::NavigationClient::processDidCrash(WebKit::WebPageProxy&amp;) + 48 (WeakObjCPtr.h:90)
3   WebKit                        	0x000000019a8b64d0 WebKit::WebPageProxy::processDidCrash() + 88 (WebPageProxy.cpp:5188)
4   WebKit                        	0x000000019a90b754 WebKit::WebProcessProxy::didClose(IPC::Connection&amp;) + 244 (WebProcessProxy.cpp:541)
5   JavaScriptCore                	0x00000001959dea04 WTF::RunLoop::performWork() + 172 (Function.h:50)
6   JavaScriptCore                	0x00000001959dec30 WTF::RunLoop::performWork(void*) + 36 (RunLoopCF.cpp:38)
7   CoreFoundation                	0x00000001911e966c __CFRUNLOOP_IS_CALLING_OUT_TO_A_SOURCE0_PERFORM_FUNCTION__ + 24 (CFRunLoop.c:1943)
8   CoreFoundation                	0x00000001911e8fb4 __CFRunLoopDoSources0 + 524 (CFRunLoop.c:1989)
9   CoreFoundation                	0x00000001911e6bb4 __CFRunLoopRun + 804 (CFRunLoop.c:2821)
10  CoreFoundation                	0x0000000191115598 CFRunLoopRunSpecific + 444 (CFRunLoop.c:3113)
11  GraphicsServices              	0x0000000192b8f188 GSEventRunModal + 180 (GSEvent.c:2245)
12  UIKit                         	0x00000001971226e8 -[UIApplication _run] + 684 (UIApplication.m:2649)
13  UIKit                         	0x000000019711d420 UIApplicationMain + 208 (UIApplication.m:4091)
14  MobileSafari                  	0x000000010006d000 main + 1996 (main.m:168)
15  libdyld.dylib                 	0x00000001900fc5b8 start + 4</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1217526</commentid>
    <comment_count>1</comment_count>
    <who name="Chris Dumez">cdumez</who>
    <bug_when>2016-08-04 12:33:04 -0700</bug_when>
    <thetext>&lt;rdar://problem/19814215&gt;</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1217531</commentid>
    <comment_count>2</comment_count>
      <attachid>285348</attachid>
    <who name="Chris Dumez">cdumez</who>
    <bug_when>2016-08-04 12:43:13 -0700</bug_when>
    <thetext>Created attachment 285348
Patch</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1217548</commentid>
    <comment_count>3</comment_count>
      <attachid>285348</attachid>
    <who name="Sam Weinig">sam</who>
    <bug_when>2016-08-04 13:10:20 -0700</bug_when>
    <thetext>Comment on attachment 285348
Patch

Can you add an API test for this?</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1217549</commentid>
    <comment_count>4</comment_count>
    <who name="Chris Dumez">cdumez</who>
    <bug_when>2016-08-04 13:11:30 -0700</bug_when>
    <thetext>(In reply to comment #3)
&gt; Comment on attachment 285348 [details]
&gt; Patch
&gt; 
&gt; Can you add an API test for this?

I can try</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1217564</commentid>
    <comment_count>5</comment_count>
      <attachid>285348</attachid>
    <who name="Chris Dumez">cdumez</who>
    <bug_when>2016-08-04 13:35:15 -0700</bug_when>
    <thetext>Comment on attachment 285348
Patch

Clearing flags on attachment: 285348

Committed r204135: &lt;http://trac.webkit.org/changeset/204135&gt;</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1217565</commentid>
    <comment_count>6</comment_count>
    <who name="Chris Dumez">cdumez</who>
    <bug_when>2016-08-04 13:35:19 -0700</bug_when>
    <thetext>All reviewed patches have been landed.  Closing bug.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1217566</commentid>
    <comment_count>7</comment_count>
    <who name="Chris Dumez">cdumez</who>
    <bug_when>2016-08-04 13:35:50 -0700</bug_when>
    <thetext>I am still working on a test.</thetext>
  </long_desc>
      
          <attachment
              isobsolete="0"
              ispatch="1"
              isprivate="0"
          >
            <attachid>285348</attachid>
            <date>2016-08-04 12:43:13 -0700</date>
            <delta_ts>2016-08-04 13:35:15 -0700</delta_ts>
            <desc>Patch</desc>
            <filename>bug-160563-20160804124148.patch</filename>
            <type>text/plain</type>
            <size>2443</size>
            <attacher name="Chris Dumez">cdumez</attacher>
            
              <data encoding="base64">U3VidmVyc2lvbiBSZXZpc2lvbjogMjA0MTAzCmRpZmYgLS1naXQgYS9Tb3VyY2UvV2ViS2l0Mi9D
aGFuZ2VMb2cgYi9Tb3VyY2UvV2ViS2l0Mi9DaGFuZ2VMb2cKaW5kZXggMGUyOTY1NzY3YTA5YjAy
Nzc2MmVlM2ExOTAzMTBhYjhmZmZkNTAyMS4uYWJkYTUxYTI1ZTM1NmU2NGU0ZWQ5YWE3ZWJkNDBh
N2VhNWY4YjdiNCAxMDA2NDQKLS0tIGEvU291cmNlL1dlYktpdDIvQ2hhbmdlTG9nCisrKyBiL1Nv
dXJjZS9XZWJLaXQyL0NoYW5nZUxvZwpAQCAtMSwzICsxLDMxIEBACisyMDE2LTA4LTA0ICBDaHJp
cyBEdW1leiAgPGNkdW1lekBhcHBsZS5jb20+CisKKyAgICAgICAgQ3Jhc2ggdW5kZXIgTmF2aWdh
dGlvblN0YXRlOjpOYXZpZ2F0aW9uQ2xpZW50Ojpwcm9jZXNzRGlkQ3Jhc2goKQorICAgICAgICBo
dHRwczovL2J1Z3Mud2Via2l0Lm9yZy9zaG93X2J1Zy5jZ2k/aWQ9MTYwNTYzCisgICAgICAgIDxy
ZGFyOi8vcHJvYmxlbS8xOTgxNDIxNT4KKworICAgICAgICBSZXZpZXdlZCBieSBOT0JPRFkgKE9P
UFMhKS4KKworICAgICAgICBXaGVuIFdlYlBhZ2VQcm94eTo6Y2xvc2UoKSBnZXRzIGNhbGxlZCwg
bWFrZSBzdXJlIHdlIGRlc3Ryb3kgdGhlIHBhZ2UncworICAgICAgICBuYXZpZ2F0aW9uQ2xpZW50
LiBJZiB3ZSBkb24ndCB0aGVuIHRoZSBuYXZpZ2F0aW9uQ2xpZW50IGNhbiBvdXRsaXZlIHRoZQor
ICAgICAgICBuYXZpZ2F0aW9uU3RhdGUsIGNhdXNpbmcgY3Jhc2hlcyB3aGVuIG5hdmlnYXRpb25D
bGllbnQgdHJpZXMgdG8gdXNlIGl0cworICAgICAgICBzdGFsZSBuYXZpZ2F0aW9uU3RhdGUgbWVt
YmVyIHJlZmVyZW5jZSBsYXRlciBvbi4gVGhpcyBoYXBwZW5zIHdoZW4gdGhlCisgICAgICAgIFdl
YlBhZ2VQcm94eSBvdXRsaXZlcyBpdHMgV0tXZWJWaWV3IGJlY2F1c2U6CisgICAgICAgIDEuIFdl
YlBhZ2VQcm94eSBvd25zIHRoZSBuYXZpZ2F0aW9uQ2xpZW50CisgICAgICAgIDIuIFdLV2ViVmll
dyBvd25zIHRoZSBuYXZpZ2F0aW9uU3RhdGUKKyAgICAgICAgMy4gbmF2aWdhdGlvbkNsaWVudCBo
YXMgYSByZWZlcmVuY2UgdG8gdGhlIG5hdmlnYXRpb25TdGF0ZSBhcyBtZW1iZXIuCisKKyAgICAg
ICAgV2ViUGFnZVByb3h5IGNhbiBvdXRsaXZlIHRoZSBXS1dlYlZpZXcgYmVjYXVzZSBpdCBpcyBy
ZWZDb3VudGVkLiBJdAorICAgICAgICBjYW4gaGFwcGVuIGZvciBleGFtcGxlIHdoZW4gdGhlIGNs
aWVudCBhcHBsaWNhdGlvbiB1c2VzIHRoZQorICAgICAgICBSZWxhdGVkUGFnZSBBUEkgYXMgdGhp
cyBleHRlbmQgdGhlIGxpZmV0aW1lIG9mIHRoZSByZWxhdGVkIFdlYlBhZ2UncworICAgICAgICBw
cm94eSBidXQgdGhlIGFwcGxpY2F0aW9uIG1heSBub3Qga2VlcCB0aGUgcmVsYXRlZCBXS1dlYlZp
ZXcgYWxpdmUuCisKKyAgICAgICAgKiBVSVByb2Nlc3MvV2ViUGFnZVByb3h5LmNwcDoKKyAgICAg
ICAgKFdlYktpdDo6V2ViUGFnZVByb3h5OjpjbG9zZSk6CisgICAgICAgIE5vdGUgdGhhdCBpdCBp
cyBzYWZlIHRvIG51bGwgb3V0IG1fbmF2aWdhdGlvbkNsaWVudCBoZXJlIGluc3RlYWQgb2YKKyAg
ICAgICAgY3JlYXRpbmcgYSBmcmVzaCBvbmUgYmVjYXVzZSB0aGVyZSBpcyBhIG51bGwgY2hlY2sg
YmVmb3JlIGV2ZXJ5IHVzZQorICAgICAgICBvZiBtX25hdmlnYXRpb25DbGllbnQgaW4gV2ViUGFn
ZVByb3h5LgorCiAyMDE2LTA4LTAzICBNaWNoYWVsIENhdGFuemFybyAgPG1jYXRhbnphcm9AaWdh
bGlhLmNvbT4KIAogICAgICAgICBbU09VUF0gRGVkdXBsaWNhdGUgV2ViUHJvY2Vzc1Bvb2w6OnNl
dElnbm9yZVRMU0Vycm9ycwpkaWZmIC0tZ2l0IGEvU291cmNlL1dlYktpdDIvVUlQcm9jZXNzL1dl
YlBhZ2VQcm94eS5jcHAgYi9Tb3VyY2UvV2ViS2l0Mi9VSVByb2Nlc3MvV2ViUGFnZVByb3h5LmNw
cAppbmRleCA3M2I5YjYzYWJjNmIwOGVhY2ViODY0OGQxMjA3MzA3MTliZTNjNmI5Li40NzgzMTQ2
NjEzZDJkOTkyZDMyMjJjMTFkYmRjMWMzNzg2YzY3YTVjIDEwMDY0NAotLS0gYS9Tb3VyY2UvV2Vi
S2l0Mi9VSVByb2Nlc3MvV2ViUGFnZVByb3h5LmNwcAorKysgYi9Tb3VyY2UvV2ViS2l0Mi9VSVBy
b2Nlc3MvV2ViUGFnZVByb3h5LmNwcApAQCAtODUxLDYgKzg1MSw3IEBAIHZvaWQgV2ViUGFnZVBy
b3h5OjpjbG9zZSgpCiAgICAgcmVzZXRTdGF0ZShSZXNldFN0YXRlUmVhc29uOjpQYWdlSW52YWxp
ZGF0ZWQpOwogCiAgICAgbV9sb2FkZXJDbGllbnQgPSBzdGQ6Om1ha2VfdW5pcXVlPEFQSTo6TG9h
ZGVyQ2xpZW50PigpOworICAgIG1fbmF2aWdhdGlvbkNsaWVudCA9IG51bGxwdHI7CiAgICAgbV9w
b2xpY3lDbGllbnQgPSBzdGQ6Om1ha2VfdW5pcXVlPEFQSTo6UG9saWN5Q2xpZW50PigpOwogICAg
IG1fZm9ybUNsaWVudCA9IHN0ZDo6bWFrZV91bmlxdWU8QVBJOjpGb3JtQ2xpZW50PigpOwogICAg
IG1fdWlDbGllbnQgPSBzdGQ6Om1ha2VfdW5pcXVlPEFQSTo6VUlDbGllbnQ+KCk7Cg==
</data>

          </attachment>
      

    </bug>

</bugzilla>