[Webkit-unassigned] [Bug 33696] let's cache nodelists instead of dynamicnodelist::cache

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Fri Apr 2 12:46:18 PDT 2010


https://bugs.webkit.org/show_bug.cgi?id=33696





--- Comment #88 from Alexey Proskuryakov <ap at webkit.org>  2010-04-02 12:46:17 PST ---
Could someone recap what testing was performed here? Specifically, comment 77
has made me believe that Eric did get a mysterious crash with this patch when
testing manually. It's great that GuardMalloc tests were performed, but this
didn't seem to be mentioned before.

Can you try running DOM fuzzers (like iexploder, mangleme, jsfunfuzz or one
from bug 29692) with this patch applied?

In the meanwhile, I'll try to run regression tests with this patch applied,
too.

It's certainly painful, and the road forward is not obvious, but it's better to
suffer now than to introduce a memory corruption bug for bad guys to exploit.

-- 
Configure bugmail: https://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.



More information about the webkit-unassigned mailing list