Issue metadata
Sign in to add a comment
|
Integer-overflow in compute_int_quad_dist |
||||||||||||||||||||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5814506468147200 Fuzzer: libfuzzer_skia_path_fuzzer Job Type: libfuzzer_chrome_ubsan Platform Id: linux Crash Type: Integer-overflow Crash Address: Crash State: compute_int_quad_dist compute_quad_level void hair_path< Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_ubsan&range=415587:415619 Minimized Testcase (0.13 Kb): https://cluster-fuzz.appspot.com/download/AMIfv94C0DdN06yUGQdWj0JydCWr-O3jc0Fs-Qzh01klT2KhDuyWQFJA87frUnXY43WjZQRHhRiiNDAPqvtNIKNhID8JEzF3V2dx5nHjEXyEnzNJKYZ-xIDVziTngeUU6_kSDEV3pl_y8qJXhaZ5TuBG1pYkRacPRg?testcase_id=5814506468147200 Issue filed automatically. See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Feb 6 2017
assigning to skia team, requesting to check the issue and help.
,
Feb 6 2017
,
Jul 30 2017
Detailed report: https://clusterfuzz.com/testcase?key=5246927448047616 Fuzzer: skia_path_fuzzer Job Type: libfuzzer_chrome_ubsan Crash Type: Integer-overflow Crash Address: Crash State: compute_int_quad_dist compute_quad_level void hair_path< Sanitizer: undefined (UBSAN) Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5246927448047616 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Jul 31 2017
Detailed report: https://clusterfuzz.com/testcase?key=5246927448047616 Fuzzer: skia_path_fuzzer Job Type: libfuzzer_chrome_ubsan Crash Type: Integer-overflow Crash Address: Crash State: compute_int_quad_dist compute_quad_level void hair_path< Sanitizer: undefined (UBSAN) Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_ubsan&range=423338:423416 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5246927448047616 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Oct 11 2017
ClusterFuzz has detected this issue as fixed in range 507652:507664. Detailed report: https://clusterfuzz.com/testcase?key=5246927448047616 Fuzzer: skia_path_fuzzer Job Type: libfuzzer_chrome_ubsan Crash Type: Integer-overflow Crash Address: Crash State: compute_int_quad_dist compute_quad_level void hair_path< Sanitizer: undefined (UBSAN) Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_ubsan&range=423338:423416 Fixed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_ubsan&range=507652:507664 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5246927448047616 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Oct 11 2017
ClusterFuzz testcase 5246927448047616 is verified as fixed, so closing issue as verified. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
|||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||
Comment 1 by mummare...@chromium.org
, Dec 1 2016