RESOLVED DUPLICATE of bug 16898 161899
Null-pointer dereference in WebCore::MediaPlayer::getStartDate
https://bugs.webkit.org/show_bug.cgi?id=161899
Summary Null-pointer dereference in WebCore::MediaPlayer::getStartDate
codecolorist
Reported 2016-09-13 02:29:23 PDT
In webkit/Source/WebCore/html/HTMLMediaElement.cpp, the method HTMLMediaElement::getStartDate doesn't check if m_player is null: double HTMLMediaElement::getStartDate() const { return m_player->getStartDate().toDouble(); } So this simple one line javascript can crash the browser: document.createElement('video').getStartDate()
Attachments
codecolorist
Comment 1 2016-09-13 02:51:56 PDT
*** This bug has been marked as a duplicate of bug 16898 ***
Note You need to log in before you can comment on or make changes to this bug.