Issue metadata
Sign in to add a comment
|
Heap-buffer-overflow in TetrahedralInterpFloat |
||||||||||||||||||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5976201475915776 Fuzzer: libfuzzer_pdf_codec_icc_fuzzer Job Type: libfuzzer_chrome_asan Platform Id: linux Crash Type: Heap-buffer-overflow READ 4 Crash Address: 0x60800000098c Crash State: TetrahedralInterpFloat _LUTevalFloat XFormSampler16 Recommended Security Severity: Medium Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=420440:420580 Minimized Testcase (0.94 Kb): https://cluster-fuzz.appspot.com/download/AMIfv94P6dCsJ9_J5_4lObFqY7JEJ_YqOICx9-LpwmizPAR7dy-jxjX99HU9emhyJ3jWUYonZnG3l8sjv-Xgc2BUPAKkghVk-co3u42knDt3HYmHn7q5jEWYr5Oqh2iRhbKp-hxDt_SH6YqwAuxHvqhJsdZi6doNlA?testcase_id=5976201475915776 Issue filed automatically. See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Dec 17 2016
ClusterFuzz has detected this issue as fixed in range 439277:439328. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5976201475915776 Fuzzer: libfuzzer_pdf_codec_icc_fuzzer Job Type: libfuzzer_chrome_asan Platform Id: linux Crash Type: Heap-buffer-overflow READ 4 Crash Address: 0x60800000098c Crash State: TetrahedralInterpFloat _LUTevalFloat XFormSampler16 Recommended Security Severity: Medium Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=420440:420580 Fixed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=439277:439328 Minimized Testcase (0.94 Kb): https://cluster-fuzz.appspot.com/download/AMIfv94P6dCsJ9_J5_4lObFqY7JEJ_YqOICx9-LpwmizPAR7dy-jxjX99HU9emhyJ3jWUYonZnG3l8sjv-Xgc2BUPAKkghVk-co3u42knDt3HYmHn7q5jEWYr5Oqh2iRhbKp-hxDt_SH6YqwAuxHvqhJsdZi6doNlA?testcase_id=5976201475915776 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Mar 27 2017
This bug has been closed for more than 14 weeks. Removing security view restrictions. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||
Comment 1 by aarya@google.com
, Nov 23 2016Status: Duplicate (was: Untriaged)