Issue metadata
Sign in to add a comment
|
Crash in __pthread_kill |
||||||||||||||||||||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=6174987843272704 Fuzzer: libfuzzer_pdfium_fuzzer Job Type: mac_libfuzzer_chrome_asan Platform Id: mac Crash Type: UNKNOWN Crash Address: 0x7fff8ad68f06 Crash State: __pthread_kill abort abort_message Regressed: https://cluster-fuzz.appspot.com/revisions?job=mac_libfuzzer_chrome_asan&range=419764:419788 Minimized Testcase (0.00 Kb): https://cluster-fuzz.appspot.com/download/AMIfv97T6snAPxddbD0JdBVrRCgUqxV7tgl9ram_4esUYZ5k5es3GIwzRb6jl51IlgSpfBy9eHCD80YoQDk9JTceYxEVoApLx2YJ_ly6wIVayOqDPo2J22_FRXT2icvJxviaXgvZuW0AElnK_kkYpjdl5kM_cvrIiw?testcase_id=6174987843272704 Issue manually filed by: ranjitkan See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Oct 22 2016
Wrong owner assignment. Mike is a memory tool author.
,
Oct 26 2016
I think that assignment is right. https://chromium.googlesource.com/chromium/src/+/3c482cd2ad66372133cb411d5a0f9f8480497b09 was a change to start trying to get the program name from /proc/self/exe, which doesn't exist on Mac.
,
Oct 26 2016
Issue 657447 has been merged into this issue.
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Apr 21 2017
Robert, could you please suggest an appropriate solution for Mac? aizatsky@ is not at Google anymore, so we have to find a new owner. Tanin, I remember you were interested in doing some libFuzzer stuff, as well as you have macbook. This issue might be a good candidate, in case if you're interested :)
,
Apr 21 2017
Can you use PathService and base::FILE_EXE? That will do the right thing on all platforms.
,
Aug 17 2017
This is a pdfium fuzzer bug, there is no /proc/self/exe, so we are crashing. Dan, can you please fix as per suggestion in c#7.
,
Aug 17 2017
hnakashima@ can you take a look at fixing this issue per comment #7?
,
Oct 1 2017
Automatically applying components based on information from OWNERS files. If this seems incorrect, please apply the Test-Predator-Wrong-Components label.
,
Oct 24 2017
For more information, please see https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reference.md. The link referenced in the description is no longer valid. (bulk edit)
,
Nov 2 2017
ClusterFuzz has detected this issue as fixed in range 513206:513315. Detailed report: https://clusterfuzz.com/testcase?key=6174987843272704 Fuzzer: libFuzzer_pdfium_fuzzer Job Type: mac_libfuzzer_chrome_asan Platform Id: mac Crash Type: UNKNOWN Crash Address: 0x7fff89f67f06 Crash State: /usr/lib/libc++abi.dylib /usr/lib/libc++abi.dylib _objc_terminate Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=mac_libfuzzer_chrome_asan&range=419764:419788 Fixed: https://clusterfuzz.com/revisions?job=mac_libfuzzer_chrome_asan&range=513206:513315 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6174987843272704 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reference.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Nov 2 2017
ClusterFuzz testcase 6174987843272704 is verified as fixed, so closing issue as verified. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
,
Nov 2 2017
I fixed this when fixing a similar issue for the XFA fuzzers. https://chromium-review.googlesource.com/c/chromium/src/+/740344
,
Nov 7 2017
,
Nov 9 2017
ClusterFuzz testcase 5078278429999104 is still reproducing on tip-of-tree build (trunk). Please re-test your fix against this testcase and if the fix was incorrect or incomplete, please re-open the bug. Otherwise, ignore this notification and add ClusterFuzz-Wrong label.
,
Nov 9 2017
Max, I think there might be something up with ClusterFuzz here. Testcase 5078278429999104 in #16 isn't related to this issue, though it is caused by an abort, the call stack is completely different from the original report.
,
Nov 9 2017
Thanks for catching! CF testcase 5078278429999104 was reported as issue 657447 , but then it was manually duplicated into this issue (c#4). Due to that, CF posts comments here rather than on the initial report. However, duplication seems wrong here, so I'm de-duping it back into a separate issue. Thanks Ryan! |
|||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||
Comment 1 by ranjitkan@chromium.org
, Oct 3 2016Components: Tools>Test>FindIt>CorrectResult
Labels: -Pri-1 -Type-Bug Findit-for-crash M-55 Te-Logged Pri-2 Type-Bug-Regression
Owner: aizatsky@chromium.org
Status: Assigned (was: Untriaged)