Bug 1585064 - [abrt] webkit2gtk3: WebKit::CoordinatedBackingStoreTile::setBackBuffer(): WebKitWebProcess killed by SIGSEGV
Summary: [abrt] webkit2gtk3: WebKit::CoordinatedBackingStoreTile::setBackBuffer(): Web...
Keywords:
Status: CLOSED UPSTREAM
Alias: None
Product: Fedora
Classification: Fedora
Component: webkit2gtk3
Version: 28
Hardware: x86_64
OS: Unspecified
unspecified
unspecified
Target Milestone: ---
Assignee: Tomas Popela
QA Contact: Fedora Extras Quality Assurance
URL: https://retrace.fedoraproject.org/faf...
Whiteboard: abrt_hash:7c98b15c6d429175fadcb2b56a2...
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2018-06-01 08:41 UTC by Ryan Farmer
Modified: 2018-07-29 15:49 UTC (History)
3 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2018-06-02 01:04:08 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)
File: backtrace (47.77 KB, text/plain)
2018-06-01 08:42 UTC, Ryan Farmer
no flags Details
File: cgroup (195 bytes, text/plain)
2018-06-01 08:42 UTC, Ryan Farmer
no flags Details
File: core_backtrace (56.28 KB, text/plain)
2018-06-01 08:42 UTC, Ryan Farmer
no flags Details
File: cpuinfo (1.39 KB, text/plain)
2018-06-01 08:42 UTC, Ryan Farmer
no flags Details
File: environ (3.59 KB, text/plain)
2018-06-01 08:42 UTC, Ryan Farmer
no flags Details
File: exploitable (82 bytes, text/plain)
2018-06-01 08:42 UTC, Ryan Farmer
no flags Details
File: limits (1.29 KB, text/plain)
2018-06-01 08:42 UTC, Ryan Farmer
no flags Details
File: maps (139.52 KB, text/plain)
2018-06-01 08:42 UTC, Ryan Farmer
no flags Details
File: mountinfo (4.48 KB, text/plain)
2018-06-01 08:42 UTC, Ryan Farmer
no flags Details
File: open_fds (2.65 KB, text/plain)
2018-06-01 08:42 UTC, Ryan Farmer
no flags Details
File: proc_pid_status (1.31 KB, text/plain)
2018-06-01 08:43 UTC, Ryan Farmer
no flags Details
Backtrace from Chase website tab crash. (42.17 KB, text/plain)
2018-06-01 20:06 UTC, Ryan Farmer
no flags Details


Links
System ID Private Priority Status Summary Last Updated
WebKit Project 186206 0 None None None 2018-06-02 01:04:08 UTC

Description Ryan Farmer 2018-06-01 08:41:56 UTC
Description of problem:
Opened a new tab and went to news.google.com.

Version-Release number of selected component:
webkit2gtk3-2.20.2-1.fc28

Additional info:
reporter:       libreport-2.9.5
backtrace_rating: 4
cmdline:        /usr/libexec/webkit2gtk-4.0/WebKitWebProcess 20 20
crash_function: WebKit::CoordinatedBackingStoreTile::setBackBuffer
dso_list:       /usr/libexec/webkit2gtk-4.0/WebKitWebProcess webkit2gtk3-2.20.2-1.fc28.x86_64 (Fedora Project) 1527579441
executable:     /usr/libexec/webkit2gtk-4.0/WebKitWebProcess
journald_cursor: s=bd177fc2519f430089736339a9cde97d;i=132d6;b=c54c5810972f43908950c3fb9c902232;m=4001b3d4c;t=56d906bf46878;x=17c86b7f317afba6
kernel:         4.16.13-300.fc28.x86_64
rootdir:        /
runlevel:       N 5
type:           CCpp
uid:            1000

Truncated backtrace:
Thread no. 1 (10 frames)
 #0 WebKit::CoordinatedBackingStoreTile::setBackBuffer at /usr/src/debug/webkit2gtk3-2.20.2-1.fc28.x86_64/Source/WebKit/Shared/CoordinatedGraphics/CoordinatedBackingStore.cpp:58
 #1 WebKit::CoordinatedBackingStore::updateTile at /usr/src/debug/webkit2gtk3-2.20.2-1.fc28.x86_64/Source/WebKit/Shared/CoordinatedGraphics/CoordinatedBackingStore.cpp:84
 #2 WebKit::CoordinatedGraphicsScene::updateTilesIfNeeded at /usr/src/debug/webkit2gtk3-2.20.2-1.fc28.x86_64/x86_64-redhat-linux-gnu/DerivedSources/ForwardingHeaders/wtf/ThreadSafeRefCounted.h:42
 #3 WebKit::CoordinatedGraphicsScene::setLayerState at /usr/src/debug/webkit2gtk3-2.20.2-1.fc28.x86_64/Source/WebKit/Shared/CoordinatedGraphics/CoordinatedGraphicsScene.cpp:292
 #4 WebKit::CoordinatedGraphicsScene::commitSceneState at /usr/src/debug/webkit2gtk3-2.20.2-1.fc28.x86_64/Source/WebKit/Shared/CoordinatedGraphics/CoordinatedGraphicsScene.cpp:556
 #5 WebKit::CoordinatedGraphicsScene::applyStateChanges at /usr/src/debug/webkit2gtk3-2.20.2-1.fc28.x86_64/Source/WebKit/Shared/CoordinatedGraphics/CoordinatedGraphicsScene.cpp:91
 #6 WebKit::ThreadedCompositor::renderLayerTree at /usr/src/debug/webkit2gtk3-2.20.2-1.fc28.x86_64/Source/WebKit/Shared/CoordinatedGraphics/threadedcompositor/ThreadedCompositor.cpp:259
 #7 WTF::RunLoop::TimerBase::<lambda(gpointer)>::operator() at /usr/src/debug/webkit2gtk3-2.20.2-1.fc28.x86_64/Source/WTF/wtf/glib/RunLoopGLib.cpp:170
 #8 WTF::RunLoop::TimerBase::<lambda(gpointer)>::_FUN(gpointer) at /usr/src/debug/webkit2gtk3-2.20.2-1.fc28.x86_64/Source/WTF/wtf/glib/RunLoopGLib.cpp:176
 #13 WTF::RunLoop::run at /usr/src/debug/webkit2gtk3-2.20.2-1.fc28.x86_64/Source/WTF/wtf/glib/RunLoopGLib.cpp:96

Comment 1 Ryan Farmer 2018-06-01 08:42:02 UTC
Created attachment 1446568 [details]
File: backtrace

Comment 2 Ryan Farmer 2018-06-01 08:42:05 UTC
Created attachment 1446569 [details]
File: cgroup

Comment 3 Ryan Farmer 2018-06-01 08:42:22 UTC
Created attachment 1446570 [details]
File: core_backtrace

Comment 4 Ryan Farmer 2018-06-01 08:42:24 UTC
Created attachment 1446571 [details]
File: cpuinfo

Comment 5 Ryan Farmer 2018-06-01 08:42:26 UTC
Created attachment 1446572 [details]
File: environ

Comment 6 Ryan Farmer 2018-06-01 08:42:28 UTC
Created attachment 1446573 [details]
File: exploitable

Comment 7 Ryan Farmer 2018-06-01 08:42:30 UTC
Created attachment 1446574 [details]
File: limits

Comment 8 Ryan Farmer 2018-06-01 08:42:47 UTC
Created attachment 1446575 [details]
File: maps

Comment 9 Ryan Farmer 2018-06-01 08:42:51 UTC
Created attachment 1446576 [details]
File: mountinfo

Comment 10 Ryan Farmer 2018-06-01 08:42:58 UTC
Created attachment 1446577 [details]
File: open_fds

Comment 11 Ryan Farmer 2018-06-01 08:43:04 UTC
Created attachment 1446578 [details]
File: proc_pid_status

Comment 12 Ryan Farmer 2018-06-01 20:05:16 UTC
I got a similar crash while trying to load Chase Bank's website in Epiphany this morning.

ABRT won't let me report it, but I'm going to tack it on here as "backtracechase.txt".

Comment 13 Ryan Farmer 2018-06-01 20:06:24 UTC
Created attachment 1446793 [details]
Backtrace from Chase website tab crash.

Backtrace from similar-looking crash on Chase website.

Comment 14 Michael Catanzaro 2018-06-01 20:12:19 UTC
They are the same crash, yes.

Since you have a WebKit Bugzilla account already, can you report it upstream, please? I copy the full backtrace (attachment 1446568 [details]) and submit it as an attachment on WebKit Bugzilla. And I copy the truncated backtrace from comment #0 into my description of the problem.

Here's a random example of such a generic crash report: https://bugs.webkit.org/show_bug.cgi?id=184548

Comment 15 Ryan Farmer 2018-06-01 20:21:52 UTC
Hi,

I copied it over there as this:

https://bugs.webkit.org/show_bug.cgi?id=186206

Is that good?

Comment 16 Michael Catanzaro 2018-06-02 01:04:08 UTC
Yes, thanks!


Note You need to log in before you can comment on or make changes to this bug.