Crash in CXFA_FMNegExpression::ToJavaScript |
||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=6661732577050624 Fuzzer: libfuzzer_pdf_fm2js_fuzzer Job Type: libfuzzer_chrome_asan Platform Id: linux Crash Type: UNKNOWN Crash Address: 0x000000000000 Crash State: CXFA_FMNegExpression::ToJavaScript CXFA_FMEqualityExpression::ToJavaScript CXFA_FMExpExpression::ToImpliedReturnJS Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=375725:375769 Minimized Testcase (0.03 Kb): Download: https://cluster-fuzz.appspot.com/download/AMIfv96MopwIk79fa894GGspONunHLB3VJ-g_Xlbso-Togf6AKORqejQwBkXLLJSHWRS4nWlDzkM3bSUaw0cLJUCoEhey1dCBNZF6ORoAD4ueWTPLBlnGWbTlIeIPRYClMHeMP9gdJkvM9r3pcF6ezaexaRMB-j91w -()==:ne;f>endfor:';*;;;fr;"*�* Filer: pbommana See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Mar 17 2016
Assigning to ochang@ to confirm if this is same as Issue 594904 and fixed by Pdfium Issue 404 . Note: Seeing 2 other variants of Crash state and test case also which could probably be same and fixed by Pdfium Issue 404 1. https://cluster-fuzz.appspot.com/testcase?key=5940034055700480 2. https://cluster-fuzz.appspot.com/testcase?key=5310099121242112
,
Mar 17 2016
ClusterFuzz has detected this issue as fixed in range 379054:379821. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6661732577050624 Fuzzer: libfuzzer_pdf_fm2js_fuzzer Job Type: libfuzzer_chrome_asan Platform Id: linux Crash Type: UNKNOWN Crash Address: 0x000000000000 Crash State: CXFA_FMNegExpression::ToJavaScript CXFA_FMEqualityExpression::ToJavaScript CXFA_FMExpExpression::ToImpliedReturnJS Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=375725:375769 Fixed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=379054:379821 Minimized Testcase (0.03 Kb): Download: https://cluster-fuzz.appspot.com/download/AMIfv96MopwIk79fa894GGspONunHLB3VJ-g_Xlbso-Togf6AKORqejQwBkXLLJSHWRS4nWlDzkM3bSUaw0cLJUCoEhey1dCBNZF6ORoAD4ueWTPLBlnGWbTlIeIPRYClMHeMP9gdJkvM9r3pcF6ezaexaRMB-j91w -()==:ne;f>endfor:';*;;;fr;"*�* See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Mar 17 2016
This was already fixed.
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
||||
►
Sign in to add a comment |
||||
Comment 1 by pbomm...@chromium.org
, Mar 16 2016