fast/images/animated-background-image-crash.html shows vm_allocate error in Safari Safari(23270,0xa000d000) malloc: *** vm_allocate(size=1800003584) failed (error code=3) Safari(23270,0xa000d000) malloc: *** error: can't allocate region Safari(23270,0xa000d000) malloc: *** set a breakpoint in szone_error to debug We should never need to allocate an ImageBuffer that large. Likely this is due to bug 12095, and SVGImage just allocating a maximum size buffer to hold the SVG instead of allocating one at the destination size.
This is possibly just a dup of bug 16164.
Reported test case doesn't crash in the latest Webkit.
(In reply to comment #2) > Reported test case doesn't crash in the latest Webkit. > Beth fixed one of the SVGImage large allocation crashes long ago. It looks like this test has been re-enabled since.