Integer-overflow in opj_int_ceildiv |
|||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5300873555345408 Fuzzer: libfuzzer_pdf_jpx_fuzzer Job Type: libfuzzer_chrome_ubsan Platform Id: linux Crash Type: Integer-overflow Crash Address: Crash State: opj_int_ceildiv opj_j2k_read_siz opj_j2k_read_header_procedure Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=395640:395746 Minimized Testcase (0.04 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95FvrUZguVZlinEx6_XKpO2eQbwgpUPY5m3tg2V9dOVG3t0AtCxp_JGBW8bW-N-Cc2xcQL-wwmI0cUA7fz6A51Y43ELpNLUKIatbV2Xb-pZO5XM7Qah8CrIrMhszc6Sm0mRVzaNthyIJEIKq8cwJ_Zq5CdV5g?testcase_id=5300873555345408 Filer: ajha See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Jul 14 2016
,
Jul 29 2016
Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5734383973826560 Fuzzer: libfuzzer_pdf_jpx_fuzzer Job Type: libfuzzer_chrome_ubsan Platform Id: linux Crash Type: Undefined-shift Crash Address: Crash State: opj_j2k_read_siz opj_j2k_read_header_procedure opj_j2k_exec Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=395640:395746 Minimized Testcase (0.06 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95wEQgt0ThIhYMPpA8IPpaT-nMUuuwT8GAFKoGmY_mTdP_BU_wtedglC4ljTqtaxC1z0S6R4WS047qmW0CdzhYvrHUd7NZTC2DNT4QwU_XuySvc3hHv1l3i_O87KeLwKQ9h9wPMSjNqF3VxvJLmxz3wKoxlkw?testcase_id=5734383973826560 Filer: rnimmagadda See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Jul 29 2016
Gentle Ping. @ochang: Could you please provide some update on this issue. Thank you.
,
Oct 18 2016
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Jan 26 2017
ClusterFuzz has detected this issue as fixed in range 445846:445971. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5300873555345408 Fuzzer: libfuzzer_pdf_jpx_fuzzer Job Type: libfuzzer_chrome_ubsan Platform Id: linux Crash Type: Integer-overflow Crash Address: Crash State: opj_int_ceildiv opj_j2k_read_siz opj_j2k_read_header_procedure Sanitizer: undefined (UBSAN) Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=395640:395746 Fixed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=445846:445971 Minimized Testcase (0.04 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95FvrUZguVZlinEx6_XKpO2eQbwgpUPY5m3tg2V9dOVG3t0AtCxp_JGBW8bW-N-Cc2xcQL-wwmI0cUA7fz6A51Y43ELpNLUKIatbV2Xb-pZO5XM7Qah8CrIrMhszc6Sm0mRVzaNthyIJEIKq8cwJ_Zq5CdV5g?testcase_id=5300873555345408 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Mar 2 2017
ClusterFuzz has detected this issue as fixed in range 453958:453992. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5734383973826560 Fuzzer: libfuzzer_pdf_jpx_fuzzer Job Type: libfuzzer_chrome_ubsan Platform Id: linux Crash Type: Undefined-shift Crash Address: Crash State: opj_j2k_read_siz opj_j2k_read_header_procedure opj_j2k_read_header Sanitizer: undefined (UBSAN) Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=395640:395746 Fixed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=453958:453992 Reproducer Testcase: https://cluster-fuzz.appspot.com/download/AMIfv97t9uX2KK9m0xt4QRA8gCbp2w8yRoMPixjdENQMEt9th4mBVPhxM8dBG45opk6cZd3JuekMSh4sHnTsZ16mEL_osghUTlDb1lYqmIlWt2gKKjOc9Ow3XHvcj4boGichZ-bOO5a3bPRJ6ZSguKZ1Lz2fqRTJ2p4RmTobLPMsa5FyYLI8X2IYjmCCjzK6s-Jyofxpx1TQez5LD1CynYEmCelADHndkcxdWv3QGxAUI3qycQ9CTnjzQiNUseboowUfpuwKjr1yJMAHQKv1TchJNvV3d__W5subwyM5HE91FT2soATvWKP04Lm3tEQ6HiCMiTS4ilTNtyUUFc_Y62O6GK7Y7a2-KZQEEWTktQGM92LN67RAeec?testcase_id=5734383973826560 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Mar 2 2017
ClusterFuzz testcase 5300873555345408 is verified as fixed, so closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
|||||
►
Sign in to add a comment |
|||||
Comment 1 by ajha@chromium.org
, Jul 12 2016Components: Tools>Test>FindIt>NoResult Internals>Plugins>PDF
Labels: M-54 Te-Logged
Owner: tsepez@chromium.org
Status: Assigned (was: Available)