Changeset 196965 in webkit
- Timestamp:
- Feb 22, 2016, 4:48:48 PM (11 years ago)
- Location:
- trunk/Source/WebCore
- Files:
-
- 2 edited
-
ChangeLog (modified) (1 diff)
-
loader/DocumentLoader.cpp (modified) (1 diff)
Legend:
- Unmodified
- Added
- Removed
-
trunk/Source/WebCore/ChangeLog
r196964 r196965 1 2016-02-22 Daniel Bates <dabates@apple.com> 2 3 REGRESSION (r196892): Crash in DocumentLoader::startLoadingMainResource() 4 https://bugs.webkit.org/show_bug.cgi?id=154563 5 <rdar://problem/24780678> 6 7 Reviewed by Alexey Proskuryakov. 8 9 Fixes an issue where the provisional loader may be deallocated when starting 10 a load. One example where this can occur is when cancelling the provisional load 11 as part of a form submission because the Content Security Policy of the page 12 blocks the submission (it violates the directive form-action). 13 14 This crash is covered by the test http/tests/security/contentSecurityPolicy/1.1/form-action-src-blocked.html. 15 16 * loader/DocumentLoader.cpp: 17 (WebCore::DocumentLoader::startLoadingMainResource): Take a ref before calling 18 DocumentLoader::willSendRequest(). 19 1 20 2016-02-16 Ada Chan <adachan@apple.com> 2 21 -
trunk/Source/WebCore/loader/DocumentLoader.cpp
r196622 r196965 1465 1465 ASSERT(!timing().fetchStart()); 1466 1466 timing().markFetchStart(); 1467 1468 Ref<DocumentLoader> protect(*this); // willSendRequest() may deallocate the provisional loader (which may be us) if it cancels the load. 1467 1469 willSendRequest(m_request, ResourceResponse()); 1468 1470
Note:
See TracChangeset
for help on using the changeset viewer.