From 5305143491945e9440d1ca11e3f7a921c5b65656 Mon Sep 17 00:00:00 2001 From: Vladimir Levin Date: Fri, 10 Sep 2021 07:21:15 -0700 Subject: [PATCH] content-visibility: Add a clipper fix for content-visibility. MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit This patch adds a few checks in the svg painting code which may access a content-visibility locked element via an svg reference. R=fs@opera.com,jarhar@chromium.org Bug: 1247196 Change-Id: I4dcb4ef298fb8d51aa0ec1a3b3bc130cfb560791 Reviewed-on: https://chromium-review.googlesource.com/c/chromium/src/+/3149811 Reviewed-by: Fredrik Söderquist Reviewed-by: Joey Arhar Commit-Queue: vmpstr Cr-Commit-Position: refs/heads/main@{#920209} --- .../content-visibility-in-svg-000-crash.html | 30 +++++++++++++++++++ 1 file changed, 30 insertions(+) create mode 100644 css/css-contain/content-visibility/content-visibility-in-svg-000-crash.html diff --git a/css/css-contain/content-visibility/content-visibility-in-svg-000-crash.html b/css/css-contain/content-visibility/content-visibility-in-svg-000-crash.html new file mode 100644 index 00000000000000..d1084f72165103 --- /dev/null +++ b/css/css-contain/content-visibility/content-visibility-in-svg-000-crash.html @@ -0,0 +1,30 @@ + + + + + + + + + + + + + + + + + + + + +