[Webkit-unassigned] [Bug 37589] New: WebCore::Position::getInlineBoxAndOffset RecursionSOV (2ff151b84dcc5cb5ce97a6de6d406158)

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Wed Apr 14 11:21:37 PDT 2010


https://bugs.webkit.org/show_bug.cgi?id=37589

           Summary: WebCore::Position::getInlineBoxAndOffset RecursionSOV
                    (2ff151b84dcc5cb5ce97a6de6d406158)
           Product: WebKit
           Version: 528+ (Nightly build)
          Platform: PC
        OS/Version: Windows Vista
            Status: NEW
          Severity: Normal
          Priority: P1
         Component: HTML Editing
        AssignedTo: webkit-unassigned at lists.webkit.org
        ReportedBy: skylined at chromium.org
                CC: eric at webkit.org


http://code.google.com/p/chromium/issues/detail?id=41494
--- Repro ---------------------------------------------------------------
<object>x</object>
<script>
    document.execCommand("SelectAll", false);
    document.designMode = "on";
    document.execCommand("InsertNewlineInQuotedContent");
</script>
--- Details -------------------------------------------------------------
id:          WebCore::Position::getInlineBoxAndOffset RecursionSOV
(2ff151b84dcc5cb5ce97a6de6d406158)
description: Recursive function call in
WebCore::Position::getInlineBoxAndOffset: 13548 loops
stack:       WebCore::positionInParentBeforeNode
             WebCore::PositionIterator::operator WebCore::Position
             WebCore::Position::upstream
             -- Start of 13548 loops --
               WebCore::Position::getInlineBoxAndOffset
             -- End of loop --
             WebCore::rootBoxForLine
             WebCore::startPositionForLine
             WebCore::startOfLine
             WebCore::isStartOfLine
             WebCore::Position::previousCharacterPosition
             WebCore::Position::leadingWhitespacePosition
             WebCore::DeleteSelectionCommand::initializePositionData
             WebCore::DeleteSelectionCommand::doApply
             WebCore::EditCommand::apply
             WebCore::CompositeEditCommand::applyCommandToComposite
             WebCore::CompositeEditCommand::deleteSelection
             WebCore::BreakBlockquoteCommand::doApply
             WebCore::EditCommand::apply
             WebCore::CompositeEditCommand::applyCommandToComposite
             WebCore::TypingCommand::insertParagraphSeparatorInQuotedContent
             WebCore::EditCommand::apply
             WebCore::applyCommand
             WebCore::TypingCommand::insertParagraphSeparatorInQuotedContent
             WebCore::executeInsertNewlineInQuotedContent
             WebCore::Editor::Command::execute
             WebCore::Document::execCommand
             WebCore::DocumentInternal::execCommandCallback
             v8::internal::HandleApiCallHelper<...>
             v8::internal::Builtin_HandleApiCall
             v8::internal::Invoke
             v8::internal::Execution::Call
             v8::Script::Run
             WebCore::V8Proxy::runScript
             WebCore::V8Proxy::evaluate
             WebCore::ScriptController::evaluate
             WebCore::ScriptController::executeScript
             WebCore::HTMLTokenizer::scriptExecution
             WebCore::HTMLTokenizer::scriptHandler
             WebCore::HTMLTokenizer::parseNonHTMLText
             WebCore::HTMLTokenizer::parseTag
             WebCore::HTMLTokenizer::write
             WebCore::FrameLoader::write
             WebCore::FrameLoader::endIfNotLoadingMainResource
             WebCore::FrameLoader::finishedLoading
             WebCore::MainResourceLoader::didFinishLoading
             WebCore::ResourceLoader::didFinishLoading
             webkit_glue::WebURLLoaderImpl::Context::OnCompletedRequest
             ...etc...

-- 
Configure bugmail: https://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.



More information about the webkit-unassigned mailing list