[Webkit-unassigned] [Bug 46411] New: REGRESSION(r67643-r67838): Crash (reproducible): JSC::RegExp::match: with flick.com

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Thu Sep 23 15:00:17 PDT 2010


https://bugs.webkit.org/show_bug.cgi?id=46411

           Summary: REGRESSION(r67643-r67838): Crash (reproducible):
                    JSC::RegExp::match: with flick.com
           Product: WebKit
           Version: 528+ (Nightly build)
          Platform: Macintosh Intel
               URL: http://www.flickr.com/photos/tambako/5004503919/
        OS/Version: Mac OS X 10.6
            Status: UNCONFIRMED
          Severity: Critical
          Priority: P1
         Component: New Bugs
        AssignedTo: webkit-unassigned at lists.webkit.org
        ReportedBy: maccinema at yahoo.com


Starting with WebKit r67838 a reproducible crash can be seen with:

visit http://www.flickr.com/photos/tambako/5004503919/ 
and then click the Zoom (+) icon which should result in a crash.

The problem started in nightly build r67838 and still exists in current nightly (r68077).
Running Max OS 10.6.4

Top stack trace from r68077:

Thread 0 Crashed:  Dispatch queue: com.apple.main-thread
0   ???                               0x00002570a91fe5ee 0 + 41165804004846
1   com.apple.JavaScriptCore          0x00000001008dfedc JSC::RegExp::match(JSC::UString const&, int, WTF::Vector<int, 32ul>*) + 764
2   ???                               0x00000001ffffffff 0 + 8589934591

-- 
Configure bugmail: https://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.



More information about the webkit-unassigned mailing list