[Webkit-unassigned] [Bug 30827] Off-by-one hard-to-trigger memory corruption in CSSParser (seen only with GCC 4.4)

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Fri Oct 30 15:54:38 PDT 2009


https://bugs.webkit.org/show_bug.cgi?id=30827


Evan Martin <evan at chromium.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
         AssignedTo|webkit-unassigned at lists.web |evan at chromium.org
                   |kit.org                     |




--- Comment #17 from Evan Martin <evan at chromium.org>  2009-10-30 15:54:35 PDT ---
After some quality time with Valgrind, I have a fix; will post a patch and an
explanation in a bit.  Going to play around a bit to see if I can make a
reduced test case.

-- 
Configure bugmail: https://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.



More information about the webkit-unassigned mailing list