Undefined-shift in l3_unscale |
|||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5868467942326272 Fuzzer: libfuzzer_media_pipeline_integration_fuzzer Job Type: libfuzzer_chrome_ubsan Platform Id: linux Crash Type: Undefined-shift Crash Address: Crash State: l3_unscale huffman_decode mp_decode_layer3 Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=433019:433116 Minimized Testcase (3.42 Kb): https://cluster-fuzz.appspot.com/download/AMIfv977pWPlRx7u4JjTVadHNLPW9uBtUN6hUIO70pjtsEC0wV7X66TQY-2UkkN8c3HuuNU3h3WsG4A_vqmaWXswzSzkmO6VD12IikIeR3J2tMYqHguSjV7P9MRH92riU_zocZ9gEPIS2Xlb0-au3YEWznUn62G87w?testcase_id=5868467942326272 Issue filed automatically. See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Nov 21 2016
Assigning to the concern owner from find it, below are the results, Suspected CLs The result is a list of CLs that change the crashed files. Author: Sasi Inguva Project: chromium-ffmpeg Changelist: https://chromium.googlesource.com/chromium/third_party/ffmpeg.git/+/7e0235bdb145cf7975bda240acb629991c4b7048 Time: Tue Sep 27 01:41:01 2016 Lines 2378-2384 of file utils.c which potentially caused crash are changed in this cl (frame #5, "avcodec_decode_audio4"). Minimum distance from crash line to modified line: 0. (file: utils.c, crashed on: 2378, modified: 2378). Suspected Project: chromium-ffmpeg @Sasi Inguva -- Could you please take a look into the issue, kindly re-assign if this is not related to your change. Thank You.
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Mar 4 2017
Had an offline chat with isasi@ and he would be able to look into this. Thank you!
,
Jun 7 2017
ClusterFuzz has detected this issue as fixed in range 477380:477461. Detailed report: https://clusterfuzz.com/testcase?key=5868467942326272 Fuzzer: libFuzzer_media_pipeline_integration_fuzzer Job Type: libfuzzer_chrome_ubsan Platform Id: linux Crash Type: Undefined-shift Crash Address: Crash State: l3_unscale huffman_decode mp_decode_layer3 Sanitizer: undefined (UBSAN) Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_ubsan&range=433019:433116 Fixed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_ubsan&range=477380:477461 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5868467942326272 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Jun 7 2017
ClusterFuzz testcase 5868467942326272 is verified as fixed, so closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
|||||
►
Sign in to add a comment |
|||||
Comment 1 by ajha@chromium.org
, Nov 21 2016