New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 632586 link

Starred by 1 user

Issue metadata

Status: Verified
Owner:
Last visit > 30 days ago
Closed: Aug 2016
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 2
Type: Bug-Regression



Sign in to add a comment

Crash in SkCoincidentSpans::setOppPtTEnd

Project Member Reported by ClusterFuzz, Jul 29 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6432649422045184

Fuzzer: skia_pathop_fuzzer
Job Type: libfuzzer_chrome_asan
Platform Id: linux

Crash Type: UNKNOWN
Crash Address: 0x03e900007b8a
Crash State:
  SkCoincidentSpans::setOppPtTEnd
  SkCoincidentSpans::setEnds
  SkCoincidentSpans::expand
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=408389:408457

Minimized Testcase (0.48 Kb): https://cluster-fuzz.appspot.com/download/AMIfv94U_9Z48MIA1hCuYVVrZ3i1YaYi8GzcPs3ovDppP2DDNJOtpLIPLukJpv9Jg7x2ku1cDUCw3i1d2UkdqmEkwqB3cbzC_n5e4F7WWQTeGmCIhImAzTMlOGtJ7-LMT624le4GsAdi9fg8eMKFCJOVHdm4j1Z7eg?testcase_id=6432649422045184

Filer: rnimmagadda

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
 
Components: Internals>Skia Tools>Test>FindIt>CorrectResult
Labels: -Pri-1 -Type-Bug M-54 Findit-for-crash Te-Logged Pri-2 Type-Bug-Regression
Owner: caryclark@chromium.org
Status: Assigned (was: Untriaged)
Suspecting:

Author: caryclark
Project: chromium-skia
Changelist: https://chromium.googlesource.com/skia.git/+/55888e44171ffd48b591d19256884a969fe4da17
Time: Mon Jul 18 17:01:36 2016
The CL last changed line 97 of file SkOpCoincidence.h, which is stack frame 1.

@caryclark: Could you please look into this issue.

Thank you.
Project Member

Comment 2 by ClusterFuzz, Jul 29 2016

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5946269340270592

Fuzzer: skia_pathop_fuzzer
Job Type: libfuzzer_chrome_asan
Platform Id: linux

Crash Type: UNKNOWN
Crash Address: 0x03e900005776
Crash State:
  SkOpCoincidence::add
  SkOpCoincidence::add
  SkOpCoincidence::addOverlap
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=408389:408457

Minimized Testcase (0.36 Kb): https://cluster-fuzz.appspot.com/download/AMIfv979KAhqhgLslhdr71AWsrcOjZZ0UlZiCRK4vmxn1T00_Zk131OZc3htis6wuNqP_i8X8WxWr5MUlapo8j8QgMgv8OoVOJz2J0a8WAwyn5FAZILDuOJmvqO9sRx8o3zmhhKm0H8BDiQ-vui2ZNHR1wOyHG3BQw?testcase_id=5946269340270592

Filer: rnimmagadda

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
Since there are many issues related to "SkCoincidentSpans" merging them here. Please demerge if it is not the case.

Thank you.
I'm away on vacation. I'll be back August 8th.
Project Member

Comment 5 by ClusterFuzz, Aug 1 2016

ClusterFuzz has detected this issue as fixed in range 408588:408608.

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5946269340270592

Fuzzer: skia_pathop_fuzzer
Job Type: libfuzzer_chrome_asan
Platform Id: linux

Crash Type: UNKNOWN
Crash Address: 0x03e900005776
Crash State:
  SkOpCoincidence::add
  SkOpCoincidence::add
  SkOpCoincidence::addOverlap
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=408389:408457
Fixed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=408588:408608

Minimized Testcase (0.36 Kb): https://cluster-fuzz.appspot.com/download/AMIfv979KAhqhgLslhdr71AWsrcOjZZ0UlZiCRK4vmxn1T00_Zk131OZc3htis6wuNqP_i8X8WxWr5MUlapo8j8QgMgv8OoVOJz2J0a8WAwyn5FAZILDuOJmvqO9sRx8o3zmhhKm0H8BDiQ-vui2ZNHR1wOyHG3BQw?testcase_id=5946269340270592

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
Project Member

Comment 6 by ClusterFuzz, Aug 1 2016

ClusterFuzz has detected this issue as fixed in range 408588:408608.

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6432649422045184

Fuzzer: skia_pathop_fuzzer
Job Type: libfuzzer_chrome_asan
Platform Id: linux

Crash Type: UNKNOWN
Crash Address: 0x03e900007b8a
Crash State:
  SkCoincidentSpans::setOppPtTEnd
  SkCoincidentSpans::setEnds
  SkCoincidentSpans::expand
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=408389:408457
Fixed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=408588:408608

Minimized Testcase (0.48 Kb): https://cluster-fuzz.appspot.com/download/AMIfv94U_9Z48MIA1hCuYVVrZ3i1YaYi8GzcPs3ovDppP2DDNJOtpLIPLukJpv9Jg7x2ku1cDUCw3i1d2UkdqmEkwqB3cbzC_n5e4F7WWQTeGmCIhImAzTMlOGtJ7-LMT624le4GsAdi9fg8eMKFCJOVHdm4j1Z7eg?testcase_id=6432649422045184

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
Project Member

Comment 7 by ClusterFuzz, Aug 1 2016

Labels: ClusterFuzz-Verified
Status: Verified (was: Assigned)
ClusterFuzz testcase is verified as fixed, closing issue.

If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
Project Member

Comment 8 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment