[Webkit-unassigned] [Bug 14764] New: Javascript object created on the stack causes seg fault.

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Wed Jul 25 14:06:18 PDT 2007


http://bugs.webkit.org/show_bug.cgi?id=14764

           Summary: Javascript object created on the stack causes seg fault.
           Product: WebKit
           Version: 522+ (nightly)
          Platform: Macintosh
        OS/Version: Mac OS X 10.4
            Status: UNCONFIRMED
          Severity: Normal
          Priority: P2
         Component: JavaScriptCore
        AssignedTo: webkit-unassigned at lists.webkit.org
        ReportedBy: phanna at email.unc.edu


PluginFunc::callAsFunction creates a PluginBase object on the stack and
Collector tries to access the CollectorBitmap for an invalid address.


-- 
Configure bugmail: http://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.



More information about the webkit-unassigned mailing list