NEW208150
Crash in Document::dispatchDisabledAdaptationsDidChangeForMainFrame
https://bugs.webkit.org/show_bug.cgi?id=208150
Summary Crash in Document::dispatchDisabledAdaptationsDidChangeForMainFrame
Pinki Gyanchandani
Reported 2020-02-24 12:26:08 PST
Initial crash is due to re-entrancy in function didBecomeCurrentDocumentInFrame. The re-entrancy was addressed with below change Style::PostResolutionCallbackDisabler disabler(*newDocument); WidgetHierarchyUpdatesSuspensionScope suspendWidgetHierarchyUpdates; ScriptDisallowedScope::InMainThread scriptDisallowedScope; But due to an orphan frame access later the crash was observed in initContentSecurityPolicy.
Attachments
Patch (6.24 KB, patch)
2020-02-24 13:51 PST, Pinki Gyanchandani
rniwa: review-
Pinki Gyanchandani
Comment 1 2020-02-24 13:51:29 PST
Ryosuke Niwa
Comment 2 2020-02-24 19:31:57 PST
Ugh... looks like this patch broke WK1 :(
Ryosuke Niwa
Comment 3 2020-02-24 19:32:13 PST
Comment on attachment 391574 [details] Patch r- because tests are failing. We need to figure out why.
Ryosuke Niwa
Comment 4 2020-02-24 19:32:26 PST
Note You need to log in before you can comment on or make changes to this bug.