| Summary: | [GTK] webkit2gtk3: magazine_chain_pop_head(): WebKitWebProcess killed by SIGSEGV | ||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Product: | WebKit | Reporter: | Ryan Farmer <rfarmer84> | ||||||||||||||||||||||||||
| Component: | WebKitGTK | Assignee: | Nobody <webkit-unassigned> | ||||||||||||||||||||||||||
| Status: | NEW --- | ||||||||||||||||||||||||||||
| Severity: | Normal | CC: | bugs-noreply, mcatanzaro | ||||||||||||||||||||||||||
| Priority: | P2 | ||||||||||||||||||||||||||||
| Version: | WebKit Nightly Build | ||||||||||||||||||||||||||||
| Hardware: | PC | ||||||||||||||||||||||||||||
| OS: | Linux | ||||||||||||||||||||||||||||
| See Also: | https://bugzilla.redhat.com/show_bug.cgi?id=1687186 | ||||||||||||||||||||||||||||
| Attachments: |
|
||||||||||||||||||||||||||||
|
Description
Ryan Farmer
2019-03-10 11:53:58 PDT
Created attachment 364184 [details]
cgroup
Created attachment 364185 [details]
core backtrace
Created attachment 364186 [details]
cpu info
Created attachment 364187 [details]
dso list
Created attachment 364188 [details]
environ
Created attachment 364189 [details]
exploitable
Created attachment 364190 [details]
limits
Created attachment 364191 [details]
maps
Created attachment 364192 [details]
mountinfo
Created attachment 364193 [details]
open fds
Created attachment 364194 [details]
proc pid status
I can't reproduce. I wrote in the downstream bug: Web process memory corruption. This is going to be hard or impossible to debug. :/ * If you're able to reproduce the crash somehow, that gives us only a vague chance of tracking this down. Otherwise: no chance. * Actual code bug might be in the surrounding GStreamer MediaPlayer code, or it might be somewhere completely unrelated and the GStreamer code is just getting unlucky. No way to know from the backtrace. * To catch memory corruption, we can use asan or valgrind. I believe asan is currently broken with WebKit. That means instructing the WebKit UI process to launch the web process under valgrind, which requires a debug build of WebKit (not provided by Fedora, and no guarantee the crash would even occur in a custom build, either) and messing with debug environment variables. Memory corruption is the absolute worst. Sadly there's nothing actionable here, and getting anything actionable would be hard. |