New issue
Advanced search Search tips

Issue 650277 link

Starred by 1 user

Issue metadata

Status: Fixed
Owner:
Closed: Sep 2016
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 2
Type: Bug



Sign in to add a comment

Direct-leak in _cmsMallocZero

Project Member Reported by ClusterFuzz, Sep 26 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6089714019074048

Fuzzer: libfuzzer_pdf_codec_icc_fuzzer
Job Type: libfuzzer_chrome_asan
Platform Id: linux

Crash Type: Direct-leak
Crash Address: 
Crash State:
  _cmsMallocZero
  _cmsCalloc
  Type_MPEmatrix_Read
  

Unminimized Testcase: https://cluster-fuzz.appspot.com/download/AMIfv97EKG5ytvXPSlu35jpZrM4e6HEk5iNY5DhZNP16jjzp-dPfJYPX-iV-GBlxxBwjMqgnSqjz2vRKH62omz5pP-1TRRTNUHv4H2f3pwhmYhLTwbbSFP22xgO5wSw3Kt60mNKbS932GSxmsr19tHDwRcPVGj2rgg?testcase_id=6089714019074048


Issue manually filed by: kcwu

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
 

Comment 1 by kcwu@chromium.org, Sep 26 2016

Components: Internals>Plugins>PDF
Owner: kcwu@chromium.org
Let me take this bug.

Project Member

Comment 2 by bugdroid1@chromium.org, Sep 26 2016

The following revision refers to this bug:
  https://chromium.googlesource.com/chromium/src.git/+/17d6deddab3a2ffb59ab972e46595341c942e3c9

commit 17d6deddab3a2ffb59ab972e46595341c942e3c9
Author: pdfium-deps-roller <pdfium-deps-roller@chromium.org>
Date: Mon Sep 26 22:22:46 2016

Roll src/third_party/pdfium/ bfe9afc2a..a177d1c08 (2 commits).

https://pdfium.googlesource.com/pdfium.git/+log/bfe9afc2ab1d..a177d1c08e60

$ git log bfe9afc2a..a177d1c08 --date=short --no-merges --format='%ad %ae %s'
2016-09-26 kcwu Add fuzzer for cmap parsing
2016-09-26 kcwu Fix memory leak in lcms, MPEmatrix_Read

BUG= 650277 

TBR=dsinclair@chromium.org

Review-Url: https://codereview.chromium.org/2370013002
Cr-Commit-Position: refs/heads/master@{#421020}

[modify] https://crrev.com/17d6deddab3a2ffb59ab972e46595341c942e3c9/DEPS

Comment 3 by kcwu@chromium.org, Sep 28 2016

Status: Fixed (was: Untriaged)
Project Member

Comment 4 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment