Crash in TIntermTraverser::traverseBlock |
|||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=6620753492705280 Fuzzer: libfuzzer_angle_translator_fuzzer Job Type: libfuzzer_chrome_asan Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x000000000000 Crash State: TIntermTraverser::traverseBlock SimplifyLoopConditionsTraverser::traverseLoop TIntermTraverser::traverseBlock Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=420334:420440 Minimized Testcase (0.97 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95xeoUh_ReQiqgc0iF7YZwIIHR_yrUDMzTsoFaBd-fH5rrzUcsuc3poipVSv4NuezakE39hsKyNVvOc0RxJJx0MSzLhqZDa2r3fpB6f-90g38Ia3e_j8fUA3LD5mnwQZcsxB5OeUzdX9tc96u4N3ICt3axKmg?testcase_id=6620753492705280 Issue filed automatically. See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Nov 2 2016
,
Nov 2 2016
,
Nov 2 2016
Looking at it.
,
Nov 8 2016
The following revision refers to this bug: https://chromium.googlesource.com/angle/angle/+/71d4c026d72cecd7fbb13623a6fda3b66f3a81b5 commit 71d4c026d72cecd7fbb13623a6fda3b66f3a81b5 Author: Corentin Wallez <cwallez@chromium.org> Date: Wed Nov 02 23:51:08 2016 SimplifyLoopConditions: handle empty for expressions BUG= 661558 Change-Id: I7a4af71fafacc31aeae0c52d79641ea5e61d6b24 Reviewed-on: https://chromium-review.googlesource.com/406545 Commit-Queue: Corentin Wallez <cwallez@chromium.org> Reviewed-by: Olli Etuaho <oetuaho@nvidia.com> Reviewed-by: Geoff Lang <geofflang@chromium.org> [modify] https://crrev.com/71d4c026d72cecd7fbb13623a6fda3b66f3a81b5/src/compiler/translator/SimplifyLoopConditions.cpp
,
Nov 8 2016
The following revision refers to this bug: https://chromium.googlesource.com/chromium/src.git/+/2b481c3b47780ed2b22f87f97afb396de2ef3c06 commit 2b481c3b47780ed2b22f87f97afb396de2ef3c06 Author: geofflang <geofflang@chromium.org> Date: Tue Nov 08 18:04:29 2016 Roll ANGLE 20c97ca..e5c53e3 https://chromium.googlesource.com/angle/angle.git/+log/20c97ca..e5c53e3 BUG=None,661558 TBR=jmadill@chromium.org TEST=bots CQ_INCLUDE_TRYBOTS=master.tryserver.chromium.win:win_optional_gpu_tests_rel;master.tryserver.chromium.mac:mac_optional_gpu_tests_rel;master.tryserver.chromium.linux:linux_optional_gpu_tests_rel;master.tryserver.chromium.android:android_optional_gpu_tests_rel Review-Url: https://codereview.chromium.org/2490513003 Cr-Commit-Position: refs/heads/master@{#430649} [modify] https://crrev.com/2b481c3b47780ed2b22f87f97afb396de2ef3c06/DEPS
,
Nov 9 2016
ClusterFuzz has detected this issue as fixed in range 430639:430691. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6620753492705280 Fuzzer: libfuzzer_angle_translator_fuzzer Job Type: libfuzzer_chrome_asan Platform Id: linux Crash Type: UNKNOWN READ Crash Address: 0x000000000000 Crash State: TIntermTraverser::traverseBlock SimplifyLoopConditionsTraverser::traverseLoop TIntermTraverser::traverseBlock Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=420334:420440 Fixed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=430639:430691 Minimized Testcase (0.97 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95xeoUh_ReQiqgc0iF7YZwIIHR_yrUDMzTsoFaBd-fH5rrzUcsuc3poipVSv4NuezakE39hsKyNVvOc0RxJJx0MSzLhqZDa2r3fpB6f-90g38Ia3e_j8fUA3LD5mnwQZcsxB5OeUzdX9tc96u4N3ICt3axKmg?testcase_id=6620753492705280 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Nov 9 2016
ClusterFuzz testcase is verified as fixed, closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||||
►
Sign in to add a comment |
|||||
Comment 1 by mmohammad@chromium.org
, Nov 2 2016Status: Assigned (was: Untriaged)