A crash can happen due to a failed ImageBuffer allocation in SVGImage::drawPatternForContainer(). Added a check for that failed allocation. Committed: https://src.chromium.org/viewvc/blink?revision=152268&view=revision
Created attachment 204434 [details] Patch
Comment on attachment 204434 [details] Patch View in context: https://bugs.webkit.org/attachment.cgi?id=204434&action=review > Source/WebCore/ChangeLog:8 > + From Blink r152268 by <wolenetz@chromium.org> This Blink revision seems to be from Philip Rogers <pdr@chromium.org>?
Created attachment 204438 [details] Patch
(In reply to comment #2) > (From update of attachment 204434 [details]) > View in context: https://bugs.webkit.org/attachment.cgi?id=204434&action=review > > > Source/WebCore/ChangeLog:8 > > + From Blink r152268 by <wolenetz@chromium.org> > > This Blink revision seems to be from Philip Rogers <pdr@chromium.org>? Oops, my bad. Thanks.
Comment on attachment 204438 [details] Patch Clearing flags on attachment: 204438 Committed r151525: <http://trac.webkit.org/changeset/151525>
All reviewed patches have been landed. Closing bug.