The crash likely occurs at this line http://trac.webkit.org/browser/trunk/Source/WebCore/bindings/v8/ScriptProfiler.cpp#L86 as we are trying to search for an empty string as a key in the map.
Created attachment 180779 [details] Patch
Comment on attachment 180779 [details] Patch We should merge this to Chromium M25
Comment on attachment 180779 [details] Patch Clearing flags on attachment: 180779 Committed r138494: <http://trac.webkit.org/changeset/138494>
All reviewed patches have been landed. Closing bug.