<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "https://bugs.webkit.org/page.cgi?id=bugzilla.dtd">

<bugzilla version="5.0.4.1"
          urlbase="https://bugs.webkit.org/"
          
          maintainer="admin@webkit.org"
>

    <bug>
          <bug_id>191353</bug_id>
          
          <creation_ts>2018-11-07 01:39:48 -0800</creation_ts>
          <short_desc>[GTK] Crash when running with sandbox enabled</short_desc>
          <delta_ts>2018-11-08 00:29:04 -0800</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>WebKit</product>
          <component>WebKitGTK</component>
          <version>WebKit Nightly Build</version>
          <rep_platform>Unspecified</rep_platform>
          <op_sys>Unspecified</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          <bug_file_loc></bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords>Gtk</keywords>
          <priority>P2</priority>
          <bug_severity>Normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Carlos Garcia Campos">cgarcia</reporter>
          <assigned_to name="Nobody">webkit-unassigned</assigned_to>
          <cc>bugs-noreply</cc>
    
    <cc>mcatanzaro</cc>
          

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>1475921</commentid>
    <comment_count>0</comment_count>
    <who name="Carlos Garcia Campos">cgarcia</who>
    <bug_when>2018-11-07 01:39:48 -0800</bug_when>
    <thetext>Thread 1 &quot;MiniBrowser&quot; received signal SIGSEGV, Segmentation fault.
__strlen_avx2 () at ../sysdeps/x86_64/multiarch/strlen-avx2.S:93
93	../sysdeps/x86_64/multiarch/strlen-avx2.S: No existe el fichero o el directorio.
(gdb) bt
#0  __strlen_avx2 () at ../sysdeps/x86_64/multiarch/strlen-avx2.S:93
#1  0x00007ffff14084c1 in g_key_file_parse_string_as_value (key_file=key_file@entry=0x555555c38f80, string=0x2f7273752f3a6769 &lt;error: Cannot access memory at address 0x2f7273752f3a6769&gt;, 
    escape_separator=escape_separator@entry=1) at gkeyfile.c:4340
#2  0x00007ffff140b6fc in g_key_file_set_string_list (key_file=0x555555c38f80, group_name=0x7ffff70b8d7a &quot;Context&quot;, key=0x7ffff70bbe81 &quot;shared&quot;, list=0x7fffffffcea0, length=8)
    at gkeyfile.c:2129
#3  0x00007ffff527e94f in WebKit::bubblewrapSpawn(_GSubprocessLauncher*, WebKit::ProcessLauncher::LaunchOptions const&amp;, char**, _GError**) ()
   from /home/cgarcia/src/git/gnome/WebKit/WebKitBuild/Release/lib/libwebkit2gtk-4.0.so.37
#4  0x00007ffff52834a3 in WebKit::ProcessLauncher::launchProcess() () from /home/cgarcia/src/git/gnome/WebKit/WebKitBuild/Release/lib/libwebkit2gtk-4.0.so.37
#5  0x00007ffff5133e08 in WebKit::ChildProcessProxy::connect() () from /home/cgarcia/src/git/gnome/WebKit/WebKitBuild/Release/lib/libwebkit2gtk-4.0.so.37
#6  0x00007ffff51b738e in WebKit::WebProcessProxy::create(WebKit::WebProcessPool&amp;, WebKit::WebsiteDataStore&amp;, WebKit::WebProcessProxy::IsPrewarmed) ()
   from /home/cgarcia/src/git/gnome/WebKit/WebKitBuild/Release/lib/libwebkit2gtk-4.0.so.37
#7  0x00007ffff5199d45 in WebKit::WebProcessPool::createNewWebProcess(WebKit::WebsiteDataStore&amp;, WebKit::WebProcessProxy::IsPrewarmed) ()
   from /home/cgarcia/src/git/gnome/WebKit/WebKitBuild/Release/lib/libwebkit2gtk-4.0.so.37
#8  0x00007ffff519ceb4 in WebKit::WebProcessPool::createWebPage(WebKit::PageClient&amp;, WTF::Ref&lt;API::PageConfiguration, WTF::DumbPtrTraits&lt;API::PageConfiguration&gt; &gt;&amp;&amp;) ()
   from /home/cgarcia/src/git/gnome/WebKit/WebKitBuild/Release/lib/libwebkit2gtk-4.0.so.37
#9  0x00007ffff5251c83 in webkitWebViewBaseCreateWebPage(_WebKitWebViewBase*, WTF::Ref&lt;API::PageConfiguration, WTF::DumbPtrTraits&lt;API::PageConfiguration&gt; &gt;&amp;&amp;) ()
   from /home/cgarcia/src/git/gnome/WebKit/WebKitBuild/Release/lib/libwebkit2gtk-4.0.so.37
#10 0x00007ffff522ee54 in webkitWebContextCreatePageForWebView(_WebKitWebContext*, _WebKitWebView*, _WebKitUserContentManager*, _WebKitWebView*) ()
   from /home/cgarcia/src/git/gnome/WebKit/WebKitBuild/Release/lib/libwebkit2gtk-4.0.so.37
#11 0x00007ffff5235ec0 in webkitWebViewConstructed(_GObject*) () from /home/cgarcia/src/git/gnome/WebKit/WebKitBuild/Release/lib/libwebkit2gtk-4.0.so.37
#12 0x00007ffff16f10b0 in g_object_new_internal (class=class@entry=0x555555c102c0, params=params@entry=0x7fffffffd680, n_params=n_params@entry=4) at gobject.c:1845
#13 0x00007ffff16f2c60 in g_object_new_valist (object_type=&lt;optimized out&gt;, first_property_name=&lt;optimized out&gt;, var_args=var_args@entry=0x7fffffffd7c8) at gobject.c:2128
#14 0x00007ffff16f2fbc in g_object_new (object_type=&lt;optimized out&gt;, first_property_name=&lt;optimized out&gt;) at gobject.c:1648
#15 0x00005555555617ca in main ()

This is in createFlatpakInfo() because g_key_file_set_string_list() is receiving an non null-terminated array.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1475923</commentid>
    <comment_count>1</comment_count>
      <attachid>354074</attachid>
    <who name="Carlos Garcia Campos">cgarcia</who>
    <bug_when>2018-11-07 01:43:59 -0800</bug_when>
    <thetext>Created attachment 354074
Patch</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1476446</commentid>
    <comment_count>2</comment_count>
    <who name="Carlos Garcia Campos">cgarcia</who>
    <bug_when>2018-11-08 00:29:04 -0800</bug_when>
    <thetext>Committed r237982: &lt;https://trac.webkit.org/changeset/237982&gt;</thetext>
  </long_desc>
      
          <attachment
              isobsolete="0"
              ispatch="1"
              isprivate="0"
          >
            <attachid>354074</attachid>
            <date>2018-11-07 01:43:59 -0800</date>
            <delta_ts>2018-11-07 08:22:57 -0800</delta_ts>
            <desc>Patch</desc>
            <filename>wk-sandbox-crash.diff</filename>
            <type>text/plain</type>
            <size>1483</size>
            <attacher name="Carlos Garcia Campos">cgarcia</attacher>
            
              <data encoding="base64">ZGlmZiAtLWdpdCBhL1NvdXJjZS9XZWJLaXQvQ2hhbmdlTG9nIGIvU291cmNlL1dlYktpdC9DaGFu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</data>
<flag name="review"
          id="371292"
          type_id="1"
          status="+"
          setter="mcatanzaro"
    />
          </attachment>
      

    </bug>

</bugzilla>