[Webkit-unassigned] [Bug 14764] New: Javascript object created on the stack causes seg fault.
bugzilla-daemon at webkit.org
bugzilla-daemon at webkit.org
Wed Jul 25 14:06:18 PDT 2007
http://bugs.webkit.org/show_bug.cgi?id=14764
Summary: Javascript object created on the stack causes seg fault.
Product: WebKit
Version: 522+ (nightly)
Platform: Macintosh
OS/Version: Mac OS X 10.4
Status: UNCONFIRMED
Severity: Normal
Priority: P2
Component: JavaScriptCore
AssignedTo: webkit-unassigned at lists.webkit.org
ReportedBy: phanna at email.unc.edu
PluginFunc::callAsFunction creates a PluginBase object on the stack and
Collector tries to access the CollectorBitmap for an invalid address.
--
Configure bugmail: http://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
More information about the webkit-unassigned
mailing list