Issue metadata
Sign in to add a comment
|
Crash in v8::internal::Invoke |
||||||||||||||||||||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=6179211666784256 Fuzzer: afl_v8_wasm_code_fuzzer Job Type: afl_chrome_asan Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x7f18687ff7ff Crash State: v8::internal::Invoke v8::internal::Execution::Call v8::internal::wasm::testing::CallFunction Recommended Security Severity: Medium Regressed: https://cluster-fuzz.appspot.com/revisions?job=afl_chrome_asan&range=415614:415641 Minimized Testcase (0.01 Kb): https://cluster-fuzz.appspot.com/download/AMIfv96jT9xr_2bUq2MaWGEXHnEgGM0ffG5jPkbupcLr2N1lgN1WM_X9WJv7f3_Gk2leEa7OEsXDpbFwIQZTarhgRS7T9HmMxNxghXcX8Mrl_MeoYCB2RuFuH_Yuru3-09rihq7U_8fHtfoNu9v60jv4qHPuW-PBQw?testcase_id=6179211666784256 Issue filed automatically. See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Sep 1 2016
ClusterFuzz has detected this issue as fixed in range 415641:415741. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6179211666784256 Fuzzer: afl_v8_wasm_code_fuzzer Job Type: afl_chrome_asan Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x7f18687ff7ff Crash State: v8::internal::Invoke v8::internal::Execution::Call v8::internal::wasm::testing::CallFunction Recommended Security Severity: Medium Regressed: https://cluster-fuzz.appspot.com/revisions?job=afl_chrome_asan&range=415614:415641 Fixed: https://cluster-fuzz.appspot.com/revisions?job=afl_chrome_asan&range=415641:415741 Minimized Testcase (0.01 Kb): https://cluster-fuzz.appspot.com/download/AMIfv96jT9xr_2bUq2MaWGEXHnEgGM0ffG5jPkbupcLr2N1lgN1WM_X9WJv7f3_Gk2leEa7OEsXDpbFwIQZTarhgRS7T9HmMxNxghXcX8Mrl_MeoYCB2RuFuH_Yuru3-09rihq7U_8fHtfoNu9v60jv4qHPuW-PBQw?testcase_id=6179211666784256 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Sep 1 2016
ClusterFuzz testcase is verified as fixed, closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
,
Sep 1 2016
,
Sep 1 2016
,
Sep 1 2016
Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5183332029825024 Fuzzer: afl_v8_wasm_code_fuzzer Job Type: afl_chrome_asan Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x7f38d21e37ff Crash State: v8::internal::Invoke v8::internal::Execution::Call v8::internal::wasm::testing::CallFunction Recommended Security Severity: Medium Minimized Testcase (0.19 Kb): https://cluster-fuzz.appspot.com/download/AMIfv9632CKmL9dD9fqJwFPc5svTFkdiJgABBjUGc1bLw0sQr_jmP0uOTyHzwq6YlKZmvdK-ypnar4y9f2nD6jaLPmZBNZvxuXK81SLBOowxXqwhWkFG7n9G9vyuucCjnItan4-YcJJllg1PmsI6YFS-Plf0QbJ-4A?testcase_id=5183332029825024 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Sep 1 2016
Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6554367262195712 Fuzzer: afl_v8_wasm_code_fuzzer Job Type: afl_chrome_asan Platform Id: linux Crash Type: UNKNOWN WRITE Crash Address: 0x7f0ac114e254 Crash State: v8::internal::Invoke v8::internal::Execution::Call v8::internal::wasm::testing::CallFunction Recommended Security Severity: High Minimized Testcase (0.23 Kb): https://cluster-fuzz.appspot.com/download/AMIfv97JxWEAvCbOSPfvx99G-0Djr1VQkWFiFmgqtSpRMWqqDs5phkrOfirV-1G2ORhoAmqhuoZJ1AjGLrl30xUhH0ye6X1WKm2ma4CzbuUztML1Azhp88bQuIj1Ec6G_UIG72moAGG8MDpt7VKkqpW8s_dj22Tw9Q?testcase_id=6554367262195712 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Sep 1 2016
,
Sep 2 2016
,
Sep 2 2016
This issue is a security regression. If you are not able to fix this quickly, please revert the change that introduced it. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Sep 2 2016
,
Sep 3 2016
ClusterFuzz has detected this issue as fixed in range 416213:416251. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6554367262195712 Fuzzer: afl_v8_wasm_code_fuzzer Job Type: afl_chrome_asan Platform Id: linux Crash Type: UNKNOWN WRITE Crash Address: 0x7f0ac114e254 Crash State: v8::internal::Invoke v8::internal::Execution::Call v8::internal::wasm::testing::CallFunction Recommended Security Severity: High Regressed: https://cluster-fuzz.appspot.com/revisions?job=afl_chrome_asan&range=415641:415741 Fixed: https://cluster-fuzz.appspot.com/revisions?job=afl_chrome_asan&range=416213:416251 Minimized Testcase (0.23 Kb): https://cluster-fuzz.appspot.com/download/AMIfv97JxWEAvCbOSPfvx99G-0Djr1VQkWFiFmgqtSpRMWqqDs5phkrOfirV-1G2ORhoAmqhuoZJ1AjGLrl30xUhH0ye6X1WKm2ma4CzbuUztML1Azhp88bQuIj1Ec6G_UIG72moAGG8MDpt7VKkqpW8s_dj22Tw9Q?testcase_id=6554367262195712 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Sep 3 2016
ClusterFuzz has detected this issue as fixed in range 416251:416282. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5183332029825024 Fuzzer: afl_v8_wasm_code_fuzzer Job Type: afl_chrome_asan Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x7f38d21e37ff Crash State: v8::internal::Invoke v8::internal::Execution::Call v8::internal::wasm::testing::CallFunction Recommended Security Severity: Medium Regressed: https://cluster-fuzz.appspot.com/revisions?job=afl_chrome_asan&range=415614:415641 Fixed: https://cluster-fuzz.appspot.com/revisions?job=afl_chrome_asan&range=416251:416282 Minimized Testcase (0.19 Kb): https://cluster-fuzz.appspot.com/download/AMIfv9632CKmL9dD9fqJwFPc5svTFkdiJgABBjUGc1bLw0sQr_jmP0uOTyHzwq6YlKZmvdK-ypnar4y9f2nD6jaLPmZBNZvxuXK81SLBOowxXqwhWkFG7n9G9vyuucCjnItan4-YcJJllg1PmsI6YFS-Plf0QbJ-4A?testcase_id=5183332029825024 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Sep 3 2016
,
Sep 5 2016
Since this appears to be fixed, removing the ReleaseBlock-Beta label.
,
Sep 9 2016
,
Sep 13 2016
I also cannot reproduce this issue anymore. I think it got fixed.
,
Oct 10 2016
,
Dec 20 2016
This bug has been closed for more than 14 weeks. Removing security view restrictions. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||
Comment 1 by infe...@chromium.org
, Sep 1 2016Owner: ahaas@chromium.org
Status: Assigned (was: Untriaged)