Integer-overflow in SkBlurMask::BoxBlur |
||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=6197915128430592 Fuzzer: ifratric-browserfuzzer-v3 Job Type: linux_ubsan_chrome Platform Id: linux Crash Type: Integer-overflow Crash Address: Crash State: SkBlurMask::BoxBlur compute_bounds SkDraw::DrawToMask Regressed: https://cluster-fuzz.appspot.com/revisions?job=linux_ubsan_chrome&range=368790:368799 Minimized Testcase (0.55 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95NCmrCe5XHLH0yFw80alaQ58yDUAMsJI9G1C12PrXUk-aondB8AEPmP9chFsZLmnbeG3O61c4wHsfS7lrj5n4xwEVxSn9MOi2e5JpSiI8vOD6W442pjRRBXWKK5SlpL6C5cHt9bezSCnXBRMgRV03upjMZgw?testcase_id=6197915128430592 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Jul 19 2017
ClusterFuzz has detected this issue as fixed in range 486753:487317. Detailed report: https://clusterfuzz.com/testcase?key=6197915128430592 Fuzzer: ifratric-browserfuzzer-v3 Job Type: linux_ubsan_chrome Platform Id: linux Crash Type: Integer-overflow Crash Address: Crash State: SkBlurMask::BoxBlur compute_bounds SkDraw::DrawToMask Sanitizer: undefined (UBSAN) Regressed: https://clusterfuzz.com/revisions?job=linux_ubsan_chrome&range=368790:368799 Fixed: https://clusterfuzz.com/revisions?job=linux_ubsan_chrome&range=486753:487317 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6197915128430592 See https://github.com/google/clusterfuzz-tools for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Jul 19 2017
ClusterFuzz testcase 6197915128430592 is verified as fixed, so closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
||
►
Sign in to add a comment |
||
Comment 1 by msrchandra@chromium.org
, Dec 23 2016Labels: Test-Predator-Wrong-CLs