2011-05-17 Cris Neckar <cdn@chromium.org>
authorCris Neckar <cdn@chromium.org>
Wed, 18 May 2011 00:53:22 +0000 (00:53 +0000)
committerAdemar de Souza Reis Jr <ademar.reis@openbossa.org>
Thu, 26 May 2011 20:18:26 +0000 (17:18 -0300)
commit409b9ad091f0e70011a8ef72f6f8edef7d4af4e3
tree433347ed7ccd6c5fdc127920a8d4e81490252230
parent25483fcede212956f4692c8627a7a23828cc3c08
2011-05-17  Cris Neckar  <cdn@chromium.org>

        Reviewed by Adam Barth.

        Clear the image from ImageLoader rather than clearing the ImageLoader in HTMLObjectElement::renderFallbackContent.
        https://bugs.webkit.org/show_bug.cgi?id=61005

        Test: http/tests/loading/nested_bad_objects.php

        * html/HTMLObjectElement.cpp:
        (WebCore::HTMLObjectElement::renderFallbackContent):
2011-05-17  Cris Neckar  <cdn@chromium.org>

        Reviewed by Adam Barth.

        Tests for crash when two nested image objects with invalid data are loaded.
        https://bugs.webkit.org/show_bug.cgi?id=61005

        * http/tests/loading/nested_bad_objects-expected.txt: Added.
        * http/tests/loading/nested_bad_objects.php: Added.

git-svn-id: http://svn.webkit.org/repository/webkit/trunk@86725 268f45cc-cd09-0410-ab3c-d52691b4dbfc
LayoutTests/ChangeLog
LayoutTests/http/tests/loading/nested_bad_objects-expected.txt [new file with mode: 0644]
LayoutTests/http/tests/loading/nested_bad_objects.php [new file with mode: 0644]
Source/WebCore/ChangeLog
Source/WebCore/html/HTMLObjectElement.cpp