New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 659472 link

Starred by 1 user

Issue metadata

Status: Fixed
Owner:
Closed: Nov 2016
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug



Sign in to add a comment

atGlobalLevel()

Project Member Reported by ClusterFuzz, Oct 26 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6439404404211712

Fuzzer: libfuzzer_angle_translator_fuzzer
Job Type: libfuzzer_chrome_asan_debug
Platform Id: linux

Crash Type: ASSERT
Crash Address: 
Crash State:
  atGlobalLevel()
  TSymbolTable::isVaryingInvariant
  void sh::GetVariableTraverser::setTypeSpecificInfo<sh::Varying>
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan_debug&range=420312:420423

Minimized Testcase (0.26 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95R8VzWK0Z6AWGGwX_AsbDSvJtU74sOgn4iIFFhLSZGFGZATd2UefNTGKGAEXsnN1zxYcWz64OGYxIZ8ff5B7NZEOLQ_Efj-I7EvK7UOEmddr2NOIpXMLKN3ks_T-qMfEMD4VYvt2lWF6urt4QDxXIg7EYSsQ?testcase_id=6439404404211712

Issue filed automatically.

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
 
Cc: kbr@chromium.org
Owner: zmo@chromium.org
Status: Assigned (was: Untriaged)
zmo@/kbr@ could you please look into this.please feel free to re-assigned back if needed. thanks in advance !

Comment 2 by kbr@chromium.org, Oct 26 2016

Cc: qiangchen@chromium.org geoffl...@chromium.org jmad...@chromium.org
Components: Internals>GPU>ANGLE Blink>WebGL
Is this a recent regression? I don't see ANGLE revision c287ea6e0a64e36d0bb1e87dcc2e0f24876b88c9 in the change log.

Cc: zmo@chromium.org
Owner: cwallez@chromium.org
No, it's from the new fuzzer than Corentin added not long ago. Sending it his way.
Project Member

Comment 6 by bugdroid1@chromium.org, Oct 31 2016

The following revision refers to this bug:
  https://chromium.googlesource.com/chromium/src.git/+/5a8e6fdfe6fc127842878381cd15844d9ce3411d

commit 5a8e6fdfe6fc127842878381cd15844d9ce3411d
Author: jmadill <jmadill@chromium.org>
Date: Mon Oct 31 22:20:35 2016

Roll ANGLE 705a919..60e6edf

https://chromium.googlesource.com/angle/angle.git/+log/705a919..60e6edf

BUG= chromium:655534 , chromium:659472 , chromium:660670 

TBR=kbr@chromium.org

TEST=bots

CQ_INCLUDE_TRYBOTS=master.tryserver.chromium.win:win_optional_gpu_tests_rel;master.tryserver.chromium.mac:mac_optional_gpu_tests_rel;master.tryserver.chromium.linux:linux_optional_gpu_tests_rel;master.tryserver.chromium.android:android_optional_gpu_tests_rel

Review-Url: https://codereview.chromium.org/2470533002
Cr-Commit-Position: refs/heads/master@{#428839}

[modify] https://crrev.com/5a8e6fdfe6fc127842878381cd15844d9ce3411d/DEPS

Project Member

Comment 7 by ClusterFuzz, Nov 2 2016

ClusterFuzz has detected this issue as fixed in range 428837:429212.

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6439404404211712

Fuzzer: libfuzzer_angle_translator_fuzzer
Job Type: libfuzzer_chrome_asan_debug
Platform Id: linux

Crash Type: ASSERT
Crash Address: 
Crash State:
  atGlobalLevel()
  TSymbolTable::isVaryingInvariant
  void sh::GetVariableTraverser::setTypeSpecificInfo<sh::Varying>
  
Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan_debug&range=420312:420423
Fixed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan_debug&range=428837:429212

Minimized Testcase (0.26 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95R8VzWK0Z6AWGGwX_AsbDSvJtU74sOgn4iIFFhLSZGFGZATd2UefNTGKGAEXsnN1zxYcWz64OGYxIZ8ff5B7NZEOLQ_Efj-I7EvK7UOEmddr2NOIpXMLKN3ks_T-qMfEMD4VYvt2lWF6urt4QDxXIg7EYSsQ?testcase_id=6439404404211712

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
Status: Fixed (was: Assigned)
Project Member

Comment 9 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment