Summary: | Crash in FrameLoader::checkLoadComplete with non-browser client app | ||||||
---|---|---|---|---|---|---|---|
Product: | WebKit | Reporter: | Antti Koivisto <koivisto> | ||||
Component: | Page Loading | Assignee: | Nobody <webkit-unassigned> | ||||
Status: | RESOLVED FIXED | ||||||
Severity: | Normal | CC: | ap, cmarcelo, inferno, macpherson, menard, webkit.review.bot | ||||
Priority: | P2 | Keywords: | InRadar | ||||
Version: | 528+ (Nightly build) | ||||||
Hardware: | Unspecified | ||||||
OS: | Unspecified | ||||||
Attachments: |
|
Description
Antti Koivisto
2012-07-31 11:09:16 PDT
Created attachment 155591 [details]
speculative fix
Comment on attachment 155591 [details] speculative fix View in context: https://bugs.webkit.org/attachment.cgi?id=155591&action=review > Source/WebCore/css/CSSFontSelector.cpp:581 > + // It is possible load calls could cause CSSFontSelector to get deleted synchronously. "CSSFontSelector can be deleted via beginLoadIfNeeded() or loadDone() unless protected." (or better something more specific about how that could happen). Both "possible" and "could" make this difficult to read. > Source/WebCore/css/CSSFontSelector.cpp:582 > + // If detached clearDocument() will get called ensuring m_document is null. I think that you're explaining why m_document won't be a dangling pointer, but that seems excessive. We don't make such comment every time we use a member variable pointing to some other object, and don't make it for every variable that has a clearXXX() method. Is there something unusual here that needs to be explained? *** Bug 91701 has been marked as a duplicate of this bug. *** Confirming at the testcase we had at ClusterFuzz got fixed by your AWESOMENESS :) Great! Can we have the test case landed then? |