Issue metadata
Sign in to add a comment
|
Stack-use-after-return in v8::internal::JsonStringifier::Result v8::internal::JsonStringifier::Serialize_< |
||||||||||||||||||||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5073675124736000 Fuzzer: decoder_langfuzz Job Type: linux_asan_chrome_v8_d8 Platform Id: linux Crash Type: Stack-use-after-return READ 8 Crash Address: 0x7fbfb3d96650 Crash State: v8::internal::JsonStringifier::Result v8::internal::JsonStringifier::Serialize_< v8::internal::JsonStringifier::SerializeJSReceiverSlow v8::internal::JsonStringifier::Result v8::internal::JsonStringifier::Serialize_< Regressed: V8: r37168:37191 Minimized Testcase (6.14 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95TzatlVFKg12uNh1MCT2b12pdTwQi21ClrKfoHX3NkNRgNGoeR4lP9nbvcdrQKZxzLrdGQmWv6lSx2p5JKJWFZY1Dk3E5Jtj_Bwby-ny3xs3jj7Cz5FfGAOqVLGnBBxH9k_UpZnkktXNDKSeagkAvLFxYXIw?testcase_id=5073675124736000 Filer: tanin See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Jun 25 2016
ClusterFuzz testcase is verified as fixed, closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
,
Jun 25 2016
Adding Merge-Triage label for tracking purposes. Once your fix had sufficient bake time (on canary, dev as appropriate), please nominate your fix for merge by adding the Merge-Request-XX label, where XX is the Chrome milestone. When your merge is approved by the release manager, please start merging with higher milestone label first. Make sure to re-request merge for every milestone in the label list. You can get branch information on omahaproxy.appspot.com. - Your friendly ClusterFuzz
,
Jun 25 2016
,
Jun 30 2016
,
Sep 13 2016
,
Oct 1 2016
This bug has been closed for more than 14 weeks. Removing security view restrictions. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Oct 2 2016
This bug has been closed for more than 14 weeks. Removing security view restrictions. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Oct 2 2016
,
Oct 10 2016
,
Jul 28
|
|||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||
Comment 1 by ClusterFuzz
, Jun 25 2016