Stack-overflow in SkMatrix::setConcat |
||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5080825690849280 Fuzzer: bj_broddelwerk Job Type: linux_asan_chrome_v8_arm Platform Id: linux Crash Type: Stack-overflow Crash Address: 0xff363e9c Crash State: SkMatrix::setConcat SkPaint::TooBigToUseCache SkDraw::ShouldDrawTextAsPaths Unminimized Testcase: https://cluster-fuzz.appspot.com/download/AMIfv97YAR96QwUjxYw2HQOVQ7Tdw7fDVOVJAqvPe8D8oP6awA7rwMFNYtQrsnMOZWu_FD75GEizP34Qv6eGA2VTzV3kOUeI2lniPCG7pw1G0yTIMdwbZ7q3rUYShegVwNd1VIqWfQc5V_latGRMADLXhHfuUVtDiY1tv5-c0uomz9k42gbYJdg Filer: ssamanoori See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Apr 21 2016
Half-Buzz?
,
Apr 21 2016
ssamanoori@, Please do not file 'Stack-overflow' issues. Thank you!
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Mar 9 2017
ClusterFuzz has detected this issue as fixed in range 455091:455392. Detailed report: https://clusterfuzz.com/testcase?key=5080825690849280 Fuzzer: bj_broddelwerk Job Type: linux_asan_chrome_v8_arm Platform Id: linux Crash Type: Stack-overflow Crash Address: 0xff73cf9c Crash State: void hb_ot_map_t::apply<GSUBProxy> hb_ot_map_t::substitute _hb_ot_shape Sanitizer: address (ASAN) Fixed: https://clusterfuzz.com/revisions?job=linux_asan_chrome_v8_arm&range=455091:455392 Reproducer Testcase: https://clusterfuzz.com/download/AMIfv956LNfk3DqgaamTJRR9g4qjXfbA5PzQjOiT0-sJKCNh0mqCrj0XWG62ih6mHgN-QTz4LmoziHgALJF3jPdGQyiROATA4jE_5Id_lank5GuTtvSDkcPkjJ6Ja3j9da_2Y6ru41rnVpFP-BQULr12_OA3Y5bYug?testcase_id=5080825690849280 See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page. |
||||
►
Sign in to add a comment |
||||
Comment 1 by ssamanoori@chromium.org
, Apr 21 2016Labels: M-50 ToolsTestsFindItNoResult Te-Logged
Owner: bashi@chromium.org
Status: Assigned (was: Available)