[Webkit-unassigned] [Bug 279313] A WebKitWebProcess crashes in GNOME Evolution after inserting a second image into a table

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Mon Sep 9 01:54:06 PDT 2024


https://bugs.webkit.org/show_bug.cgi?id=279313

Milan Crha <mcrha at redhat.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |mcrha at redhat.com

--- Comment #2 from Milan Crha <mcrha at redhat.com> ---
I'm adding top of the backtrace inline, for easier searching:

#3  0x000070a410c3983f in __GI_abort () at abort.c:79
        save_stage = 1
        act = {__sigaction_handler = {sa_handler = 0x20, sa_sigaction = 0x20}, sa_mask = {__val = {0, 2, 123841087012864, 140734759226625, 0, 140733193388034, 0, 4284323490867183618, 140734759226624, 123848083142656, 1035087118338, 123848083142656, 2, 140677358813185, 123849951528193, 0}}, sa_flags = 86097140, sa_restorer = 0x100000000}
#4  0x000070a41171000d in WTF::CrashOnOverflow::crash () at WTF/Headers/wtf/CheckedArithmetic.h:109
#5  0x000070a41170fffd in WTF::CrashOnOverflow::overflowed () at WTF/Headers/wtf/CheckedArithmetic.h:102
#6  0x000070a412acf8dd in WTF::Vector<unsigned int, 128ul, WTF::CrashOnOverflow, 16ul, WTF::FastMalloc>::at (this=0x7fff5d54cd78, i=2) at WTF/Headers/wtf/Vector.h:807
#7  WTF::Vector<unsigned int, 128ul, WTF::CrashOnOverflow, 16ul, WTF::FastMalloc>::operator[] (this=0x7fff5d54cd78, i=2) at WTF/Headers/wtf/Vector.h:812
#8  WebCore::UTF16OffsetToUTF8 (mapping=..., offset=2) at /buildstream/gnome/sdk/webkit2gtk-4.1.bst/Source/WebCore/accessibility/atspi/AccessibilityObjectTextAtspi.cpp:255
#9  WebCore::AccessibilityObjectAtspi::selectionChanged (this=0x70a405231800, selection=...)
    at /buildstream/gnome/sdk/webkit2gtk-4.1.bst/Source/WebCore/accessibility/atspi/AccessibilityObjectTextAtspi.cpp:752
        utf16Text = {static allowCompactPointers = true, static MaxLength = 2147483647, m_impl = {static isRefPtr = <optimized out>, m_ptr = 0x70a40521bce0}}
        utf8Text = {m_buffer = {static isRefPtr = <optimized out>, m_ptr = 0x70a40524d540}}
        mapping = {<WTF::VectorBuffer<unsigned int, 128ul, WTF::FastMalloc>> = {<WTF::VectorBufferBase<unsigned int, WTF::FastMalloc>> = {m_buffer = 0x7fff5d54cd88, m_capacity = 128, m_size = 2}, m_inlineBuffer = {{__data = "\000\000\000", __align = {<No data fields>}}, {__data = "\001\000\000", __align = {<No data fields>}}, {__data = "\000\000\000", __align = {<No data fields>}}, {__data = "\000\000\000", __align = {<No data fields>}}, {__data = "h\337\376\022", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\000u|\241", __align = {<No data fields>}}, {__data = "\204\371t;", __align = {<No data fields>}}, {__data = "\004\000\000", __align = {<No data fields>}}, {__data = "\000\000\000", __align = {<No data fields>}}, {__data = "\274ҩ\020", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\000u|\241", __align = {<No data fields>}}, {__data = "\204\371t;", __align = {<No data fields>}}, {__data = "\000u|\241", __align = {<No data fields>}}, {__data = "\204\371t;", __align = {<No data fields>}}, {__data = "\000\016", <incomplete sequence \375>, __align = {<No data fields>}}, {__data = "\243p\000", __align = {<No data fields>}}, {__data = "\000x\000\241", __align = {<No data fields>}}, {__data = "\243p\000", __align = {<No data fields>}}, {__data = "\001\000\000", __align = {<No data fields>}}, {__data = "\000\000\000", __align = {<No data fields>}}, {__data = "\000\000\000", __align = {<No data fields>}}, {__data = "\000\000\000", __align = {<No data fields>}}, {__data = "\000\000\000", __align = {<No data fields>}}, {__data = "\000\000\000", __align = {<No data fields>}}, {__data = "0\316T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "\000u|\241", __align = {<No data fields>}}, {__data = "\204\371t;", __align = {<No data fields>}}, {__data = "\230\316T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "\021\000\000", __align = {<No data fields>}}, {__data = "\000\000\000", __align = {<No data fields>}}, {__data = "\000\310\024\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\020\366\036\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\200\316T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "\000u|\241", __align = {<No data fields>}}, {__data = "\204\371t;", __align = {<No data fields>}}, {__data = "\000u|\241", __align = {<No data fields>}}, {__data = "\204\371t;", __align = {<No data fields>}}, {__data = "\000\016", <incomplete sequence \375>, __align = {<No data fields>}}, {__data = "\243p\000", __align = {<No data fields>}}, {__data = "\000x\000\241", __align = {<No data fields>}}, {__data = "\243p\000", __align = {<No data fields>}}, {__data = "\000u|\241", __align = {<No data fields>}}, {__data = "\204\371t;", __align = {<No data fields>}}, {__data = "\350\316T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "\021\000\000", __align = {<No data fields>}}, {__data = "\000\000\000", __align = {<No data fields>}}, {__data = "\000\344\t\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\020\366\036\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\320\316T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "\n\020\251\022", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\000\310\024\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\020\366\036\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\360\316T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "\n\020\251\022", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\020\317T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "f%\244\022", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\000\344\t\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\020\366\036\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\000\344\t\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data field--Type <RET> for more, q to quit, c to continue without paging--c
s>}}, {__data = "\001\347\031\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\020\317T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "\241\353\246\022", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\000u|\241", __align = {<No data fields>}}, {__data = "\204\371t;", __align = {<No data fields>}}, {__data = "p\324\035\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\000\317T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "AԦ\022", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = " \317T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "@\357\247\022", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\bG@\025", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\000\344\t\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "@\317T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "i\261\243\022", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\000\344\t\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\000n\023\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\200\317T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "\t\372\243\022", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\000\344\t\005", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\311!>\024", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\360!\000\241", __align = {<No data fields>}}, {__data = "\243p\000", __align = {<No data fields>}}, {__data = "\a\000\000", __align = {<No data fields>}}, {__data = "\001\000\000", __align = {<No data fields>}}, {__data = "\260\317T]", __align = {<No data fields>}}, {__data = "\377\177\000", __align = {<No data fields>}}, {__data = "\231.\252\022", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}, {__data = "\240 @\025", __align = {<No data fields>}}, {__data = "\244p\000", __align = {<No data fields>}}}}, <No data fields>}
        bounds = {m_x = <optimized out>, m_y = 2}
        length = 1
        caretOffset = <optimized out>
#10 0x000070a412a47002 in WebCore::AXObjectCache::postTextStateChangeNotification (this=0x70a4051ef610, object=<optimized out>, intent=..., selection=...)
    at /buildstream/gnome/sdk/webkit2gtk-4.1.bst/Source/WebCore/accessibility/AXObjectCache.cpp:2020
        newIntent = @0x70a4051ef7d0: {type = WebCore::AXTextStateChangeTypeUnknown, {selection = {direction = WebCore::AXTextSelectionDirectionUnknown, granularity = WebCore::AXTextSelectionGranularityUnknown, focusChange = false}, change = WebCore::AXTextEditTypeUnknown}}
#11 0x000070a412a47141 in WebCore::AXObjectCache::postTextStateChangeNotification (this=0x70a4051ef610, position=<optimized out>, intent=..., selection=...)
    at /buildstream/gnome/sdk/webkit2gtk-4.1.bst/Source/WebCore/accessibility/AXObjectCache.cpp:1994
        node = {static isRefPtr = <optimized out>, m_ptr = 0x70a3a100cd00}
        object = 0x70a40509e400

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.webkit.org/pipermail/webkit-unassigned/attachments/20240909/4d61d9d3/attachment-0001.htm>


More information about the webkit-unassigned mailing list