New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 617923 link

Starred by 0 users

Issue metadata

Status: WontFix
Owner:
Closed: Jul 2016
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 2
Type: Bug



Sign in to add a comment

Direct-leak in Update

Project Member Reported by ClusterFuzz, Jun 7 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4613518720761856

Fuzzer: libfuzzer_v8_regexp_parser_fuzzer
Job Type: libfuzzer_chrome_asan
Platform Id: linux

Crash Type: Direct-leak
Crash Address: 
Crash State:
  Update
  v8::internal::PagedSpace::AllocateRawUnaligned
  v8::internal::Heap::AllocateRaw
  

Unminimized Testcase: https://cluster-fuzz.appspot.com/download/AMIfv97XCUPwvS5jEcFzpz2RGpSJWGtdOequ1nzbssXsW8G3ZiRUfwyrj88L38XB57weWFkallnHNNbTZ1UqQS5P3m9pgBw2orxdZQ0oBc3VJTOUuTE9EZiGjY-Fd32vOuSjKWDPMcGuWjxvkW7nKwZxgEIiFr-QpQ


Filer: ashejole

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
 
Cc: ashej...@chromium.org
Components: Blink>JavaScript Tools>Test>FindIt>NoResult
Labels: Te-Logged
Unable to find the exact culprit. Request someone from V8 team to look into the issue.

Appreciate the help.

Thank you!
Project Member

Comment 2 by ClusterFuzz, Jul 13 2016

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5436342024798208

Fuzzer: libfuzzer_v8_regexp_parser_fuzzer
Job Type: libfuzzer_chrome_asan
Platform Id: linux

Crash Type: Direct-leak
Crash Address: 
Crash State:
  Update
  v8::internal::PagedSpace::AllocateRawUnaligned
  v8::internal::Heap::AllocateRaw
  

Unminimized Testcase: https://cluster-fuzz.appspot.com/download/AMIfv94DKwhd0razY1jZd36UgS4IcASFkmLlqLNuYW_RPq77-nV63cFgKwvLLadFIzkkgTAO6_gHf99l0adrNuwAMJ6hecO4T7aXzCrLu-3euD4eBaDu0XpGNU5XeYUiar3-aMPpegHtEFpqWqQdFWbY88RxyWSFsg?testcase_id=5436342024798208


Filer: mmohammad

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
Project Member

Comment 3 by ClusterFuzz, Jul 14 2016

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5515456731676672

Fuzzer: libfuzzer_v8_regexp_parser_fuzzer
Job Type: libfuzzer_chrome_asan
Platform Id: linux

Crash Type: Direct-leak
Crash Address: 
Crash State:
  Update
  v8::internal::PagedSpace::AllocateRawUnaligned
  v8::internal::Heap::AllocateRaw
  

Unminimized Testcase: https://cluster-fuzz.appspot.com/download/AMIfv96rNXXfANLBgIw2MT33-N07oiTj0ObSxl6yRxvQ-urYb4NYiV5kwUd8cQHFxmJNUDwfW4ttP4Qivvag7j9VNSSVfaCTTyCuGga6PdoBlWuVxckQ8FkGGluESaneXCfVPDceTRKFR8dW5wwAYZQCbhYbSTeOAg?testcase_id=5515456731676672


Additional requirements: Requires Gestures

Filer: mmohammad

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
Project Member

Comment 4 by ClusterFuzz, Jul 15 2016

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5619600628908032

Fuzzer: libfuzzer_v8_regexp_parser_fuzzer
Job Type: libfuzzer_chrome_asan
Platform Id: linux

Crash Type: Direct-leak
Crash Address: 
Crash State:
  Update
  v8::internal::PagedSpace::AllocateRawUnaligned
  v8::internal::Heap::AllocateRaw
  

Unminimized Testcase: https://cluster-fuzz.appspot.com/download/AMIfv94fl5tqRD2PV9u_zFNeytjerzYhK0_26mGTgxmi2IJPH2UpRbthS4nRCOqwBVqwmrDYR-afrq12U0d_tCpEnBVgg-155Zu83ZANen1RNYDujHDTWrMZK5_mmBKdiXe5NkiyMmynY9R1jeY7yooA003uigU0Fg?testcase_id=5619600628908032


Filer: mmohammad

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
Project Member

Comment 5 by ClusterFuzz, Jul 19 2016

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5136537469845504

Fuzzer: libfuzzer_v8_regexp_parser_fuzzer
Job Type: libfuzzer_chrome_asan
Platform Id: linux

Crash Type: Direct-leak
Crash Address: 
Crash State:
  Update
  v8::internal::PagedSpace::AllocateRawUnaligned
  v8::internal::Heap::AllocateRaw
  

Unminimized Testcase: https://cluster-fuzz.appspot.com/download/AMIfv96G1d_cRudmsVENDLDgClAwZcgB2J6MkM3-98IgZDDhQwyQ-xvsoK16lp3ic1LS70U-f4LdGdX1DWfxT2knXTreEokerOhXPZfkN__xhbdL_BheY5-pIy0wY4_ktoDoYr6WgH4ZgxePeTOLI6P_N1JvGGkw1w?testcase_id=5136537469845504


Filer: mummareddy

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.

Comment 6 by ishell@chromium.org, Jul 25 2016

Cc: jarin@chromium.org
Labels: -ClusterFuzz Clusterfuzz
Owner: jochen@chromium.org
Status: Assigned (was: Available)
It looks like the v8_fuzzer::DeleteFuzzerSupport() is never called which causes this leak.

Comment 7 by jochen@chromium.org, Jul 25 2016

Cc: jochen@chromium.org
Owner: mmoroz@chromium.org
mmoroz@ can you help me to reproduce this locally please?

Comment 8 by mmoroz@chromium.org, Jul 26 2016

Cc: kcc@chromium.org aizatsky@chromium.org
Sorry for the delay, trying to reproduce it now.

Comment 9 by mmoroz@chromium.org, Jul 26 2016

Hm, all CF reports linked to this issue are not reproducible.
Status: WontFix (was: Assigned)
Well, looks like those reports could be incorrectly marked as reproducible for some time period, but actually they are not (just checked manually). Also there were few updates to CF to improve reproducibility and grouping, so we should expect less problems like that one in future.
Components: -Tools>Test>FindIt>NoResult
Project Member

Comment 12 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment