Files
sousa-gecko/testing/web-platform/tests/css/css-ruby/ruby-overhang-spaces-crash.html
T
Minseong Kim 4586bd918b Bug 2045978 [wpt PR 60488] - [ruby-overhang] Fix crash when computing overhang without an open tag, a=testonly
Automatic update from web-platform-tests
[ruby-overhang] Fix crash when computing overhang without an open tag

Fuzzer found a crash that occurs during ruby-overhang calculations when
the layout engine makes a ruby that doesn't have a preceding open tag in
its inline items.

So, this CL replaces the DCHECK with a guarding if ruby_index is zero in
GetOverhang.

Bug: 520181855
Change-Id: I1f6d460f12c24aadac5e6e5fb052d0a1e68af346
Reviewed-on: https://chromium-review.googlesource.com/c/chromium/src/+/7902135
Commit-Queue: Minseong Kim <jja08111@gmail.com>
Reviewed-by: Kent Tamura <tkent@chromium.org>
Reviewed-by: Koji Ishii <kojii@chromium.org>
Cr-Commit-Position: refs/heads/main@{#1643719}

--

wpt-commits: 74c2bf66bfe6a170e3fb090ba1604d2d1a962daf
wpt-pr: 60488
2026-06-11 08:49:32 +00:00

14 lines
270 B
HTML

<!DOCTYPE html>
<link rel="help" href="https://crbug.com/520181855">
<style>
ruby { ruby-overhang: spaces; }
</style>
<body>
<svg></svg>
<ruby>
<rb>AAAAAAAAAAAAAAAAAAAAAAAAAAA<ul></ul></rb>
<rt>AAAAAAAAAAAAAAAAAAAAAAAAAAA<ul></ul><svg></svg>
</ruby>
</body>
</html>