Undefined-shift in WebRtcIlbcfix_EnhancerInterface |
||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5450451406815232 Fuzzer: libfuzzer_audio_decoder_ilbc_fuzzer Job Type: libfuzzer_chrome_ubsan Platform Id: linux Crash Type: Undefined-shift Crash Address: Crash State: WebRtcIlbcfix_EnhancerInterface WebRtcIlbcfix_DecodeImpl WebRtcIlbcfix_Decode Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=386932:386961 Minimized Testcase (0.04 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95pROeExe0ncZgnF4-Kw4gEf1pUK3sLIGTgF39sbfFytiN7VLRqpdoGo-1RJi4FIjQaQqAzM6p8JVqh9GVh-2SuBjs-JYW2YwnDJWG9b-UzOUSQ_8GUBmaLDMWgtHYQqKU5GHQ2O_ykenjIww1-SbUaaRkBVQ Filer: mmoroz See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
May 23 2016
,
Jun 9 2016
ClusterFuzz has detected this issue as fixed in range 396407:396452. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5450451406815232 Fuzzer: libfuzzer_audio_decoder_ilbc_fuzzer Job Type: libfuzzer_chrome_ubsan Platform Id: linux Crash Type: Undefined-shift Crash Address: Crash State: WebRtcIlbcfix_EnhancerInterface WebRtcIlbcfix_DecodeImpl WebRtcIlbcfix_Decode Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=386932:386961 Fixed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=396407:396452 Minimized Testcase (0.04 Kb): https://cluster-fuzz.appspot.com/download/AMIfv97tb7-F58lqP07y8wM18lBKLnre-8Jt6L5HUONE14IWp26ySJNuEXkmSOxY08AFQc_sJuULJDkOUoSiWGtYTDavIOnE1bdYBtUHImhwuBD6Jq393M8vChUIj7i-AhcjGB0jt0ZsIXf2rbvO-MhLFkoM28mq8g See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Jun 10 2016
That this bug has been fixed sounds legit---the line where we left shifted a negative value now does a multiplication instead. (Because another fuzzer bug was failing on the same thing, no doubt.)
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
||||
►
Sign in to add a comment |
||||
Comment 1 by mmoroz@chromium.org
, May 23 2016Owner: kwiberg@chromium.org