Integer-overflow in SkOpSegment::updateOppWinding |
|||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5377977116524544 Fuzzer: libfuzzer_skia_pathop_fuzzer Job Type: libfuzzer_chrome_ubsan Platform Id: linux Crash Type: Integer-overflow Crash Address: Crash State: SkOpSegment::updateOppWinding SkOpSegment::activeOp bridgeOp Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=415770:415865 Minimized Testcase (0.44 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95-IfBqLcoLjaG6GHzgMRV3AXsi_vZaNqMpJNhHE4xlQxAwinbFhxl_78QP5L59cZrTrQJsb_8I7QSgrpje7GMy2azRSbpL_7_t6WDfMopEDVMu7iW2DPiXOSo_do_JIyxY3fyH8K_otS5le4G8SjFgSwVRNg?testcase_id=5377977116524544 Issue manually filed by: mmoroz See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Sep 7 2016
ClusterFuzz has detected this issue as fixed in range 416628:416688. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5377977116524544 Fuzzer: libfuzzer_skia_pathop_fuzzer Job Type: libfuzzer_chrome_ubsan Platform Id: linux Crash Type: Integer-overflow Crash Address: Crash State: SkOpSegment::updateOppWinding SkOpSegment::activeOp bridgeOp Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=415770:415865 Fixed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=416628:416688 Minimized Testcase (0.44 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95-IfBqLcoLjaG6GHzgMRV3AXsi_vZaNqMpJNhHE4xlQxAwinbFhxl_78QP5L59cZrTrQJsb_8I7QSgrpje7GMy2azRSbpL_7_t6WDfMopEDVMu7iW2DPiXOSo_do_JIyxY3fyH8K_otS5le4G8SjFgSwVRNg?testcase_id=5377977116524544 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Sep 7 2016
ClusterFuzz testcase is verified as fixed, closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||
►
Sign in to add a comment |
|||
Comment 1 by mmoroz@chromium.org
, Sep 7 2016Components: Internals>Skia
Owner: caryclark@chromium.org