Bug 1344157

Summary: [abrt] webkitgtk4: gdk_window_has_impl(): WebKitPluginProcess killed by SIGSEGV
Product: [Fedora] Fedora Reporter: Michael Catanzaro <mcatanzaro+wrong-account-do-not-cc>
Component: webkitgtk4Assignee: Tomas Popela <tpopela>
Status: CLOSED UPSTREAM QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 24CC: dtardon, feborges, klember, mastaizawfm, mcatanzaro+wrong-account-do-not-cc, mhatina, mkasik, pabloganuza, tpopela
Target Milestone: ---   
Target Release: ---   
Hardware: x86_64   
OS: Unspecified   
URL: https://retrace.fedoraproject.org/faf/reports/bthash/864d833affafaea0f36333ebabbdd153ac6a2a26
Whiteboard: abrt_hash:53aa91598dded2bba64f2b1aafc902da5b1d0ac5;VARIANT_ID=workstation;
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2016-10-30 15:15:06 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Attachments:
Description Flags
File: backtrace
none
File: cgroup
none
File: core_backtrace
none
File: dso_list
none
File: environ
none
File: exploitable
none
File: limits
none
File: maps
none
File: mountinfo
none
File: namespaces
none
File: open_fds
none
File: proc_pid_status
none
File: var_log_messages none

Description Michael Catanzaro 2016-06-09 00:54:01 UTC
Version-Release number of selected component:
webkitgtk4-2.12.3-1.fc24

Additional info:
reporter:       libreport-2.7.1
backtrace_rating: 3
cmdline:        /usr/libexec/webkit2gtk-4.0/WebKitPluginProcess 77 /usr/lib64/mozilla/plugins/libevbrowserplugin.so
crash_function: gdk_window_has_impl
executable:     /usr/libexec/webkit2gtk-4.0/WebKitPluginProcess
global_pid:     3212
kernel:         4.5.5-300.fc24.x86_64
pkg_fingerprint: 73BD E983 81B4 6521
pkg_vendor:     Fedora Project
reproducible:   Not sure how to reproduce the problem
runlevel:       N 5
type:           CCpp
uid:            1000

Truncated backtrace:
Thread no. 1 (10 frames)
 #0 gdk_window_has_impl at gdkwindow.c:626
 #1 _gdk_window_has_impl at gdkwindow.c:627
 #2 gdk_x11_window_get_xid at gdkwindow-x11.c:5542
 #3 WebKit::NetscapePluginX11::visibilityDidChange at /usr/src/debug/webkitgtk-2.12.3/Source/WebKit2/WebProcess/Plugins/Netscape/x11/NetscapePluginX11.cpp:267
 #4 WebKit::PluginControllerProxy::visibilityDidChange at /usr/src/debug/webkitgtk-2.12.3/Source/WebKit2/PluginProcess/PluginControllerProxy.cpp:437
 #5 IPC::callMemberFunctionImpl<WebKit::PluginControllerProxy, void (WebKit::PluginControllerProxy::*)(bool), std::tuple<bool>, 0ul>(WebKit::PluginControllerProxy*, void (WebKit::PluginControllerProxy::*)(bool), std::tuple<bool>&&, std::index_sequence<0ul>) at /usr/src/debug/webkitgtk-2.12.3/Source/WebKit2/Platform/IPC/HandleMessage.h:16
 #6 IPC::callMemberFunction<WebKit::PluginControllerProxy, void (WebKit::PluginControllerProxy::*)(bool), std::tuple<bool>, std::make_index_sequence<1ul> >(std::tuple<bool>&&, WebKit::PluginControllerProxy*, void (WebKit::PluginControllerProxy::*)(bool)) at /usr/src/debug/webkitgtk-2.12.3/Source/WebKit2/Platform/IPC/HandleMessage.h:22
 #7 IPC::handleMessage<Messages::PluginControllerProxy::MutedStateChanged, WebKit::PluginControllerProxy, void (WebKit::PluginControllerProxy::*)(bool)> at /usr/src/debug/webkitgtk-2.12.3/Source/WebKit2/Platform/IPC/HandleMessage.h:92
 #8 WebKit::PluginControllerProxy::didReceivePluginControllerProxyMessage at /usr/src/debug/webkitgtk-2.12.3/x86_64-redhat-linux-gnu/DerivedSources/WebKit2/PluginControllerProxyMessageReceiver.cpp:53
 #9 WebKit::WebProcessConnection::didReceiveMessage at /usr/src/debug/webkitgtk-2.12.3/Source/WebKit2/PluginProcess/WebProcessConnection.cpp:141

Potential duplicate: bug 1177187

Comment 1 Michael Catanzaro 2016-06-09 00:54:05 UTC
Created attachment 1166115 [details]
File: backtrace

Comment 2 Michael Catanzaro 2016-06-09 00:54:05 UTC
Created attachment 1166116 [details]
File: cgroup

Comment 3 Michael Catanzaro 2016-06-09 00:54:06 UTC
Created attachment 1166117 [details]
File: core_backtrace

Comment 4 Michael Catanzaro 2016-06-09 00:54:07 UTC
Created attachment 1166118 [details]
File: dso_list

Comment 5 Michael Catanzaro 2016-06-09 00:54:08 UTC
Created attachment 1166119 [details]
File: environ

Comment 6 Michael Catanzaro 2016-06-09 00:54:09 UTC
Created attachment 1166120 [details]
File: exploitable

Comment 7 Michael Catanzaro 2016-06-09 00:54:10 UTC
Created attachment 1166121 [details]
File: limits

Comment 8 Michael Catanzaro 2016-06-09 00:54:11 UTC
Created attachment 1166122 [details]
File: maps

Comment 9 Michael Catanzaro 2016-06-09 00:54:12 UTC
Created attachment 1166123 [details]
File: mountinfo

Comment 10 Michael Catanzaro 2016-06-09 00:54:13 UTC
Created attachment 1166124 [details]
File: namespaces

Comment 11 Michael Catanzaro 2016-06-09 00:54:14 UTC
Created attachment 1166125 [details]
File: open_fds

Comment 12 Michael Catanzaro 2016-06-09 00:54:15 UTC
Created attachment 1166126 [details]
File: proc_pid_status

Comment 13 Michael Catanzaro 2016-06-09 00:54:16 UTC
Created attachment 1166127 [details]
File: var_log_messages

Comment 14 Michael Catanzaro 2016-06-09 00:55:32 UTC
*** Bug 1177187 has been marked as a duplicate of this bug. ***

Comment 15 Michael Catanzaro 2016-07-21 16:18:11 UTC
*** Bug 1358867 has been marked as a duplicate of this bug. ***

Comment 16 Fedora Admin XMLRPC Client 2016-10-14 08:09:53 UTC
This package has changed ownership in the Fedora Package Database.  Reassigning to the new owner of this component.

Comment 17 David Tardon 2016-10-30 13:56:13 UTC
There aren't even any evince frames on the stack...

Comment 18 Michael Catanzaro 2016-10-30 15:11:57 UTC
Honestly it doesn't matter whether it gets reported to WebKit or to Evince, since it's going to the same upstream developer either way, we just have to get it to one place or the other. I still think Evince is a more likely culprit since I've never seen this crash from any other plugin and plugin process crashes almost always turn out to be plugin bugs, but we can use WebKit instead, no matter.

Comment 19 Michael Catanzaro 2016-11-18 18:23:28 UTC
*** Bug 1334971 has been marked as a duplicate of this bug. ***

Comment 20 Michael Catanzaro 2016-11-18 18:24:26 UTC
(In reply to David Tardon from comment #17)
> There aren't even any evince frames on the stack...

Turns out you were right, it was a WebKit bug!