Timeout in harfbuzz_fuzzer |
|||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=6107935408390144 Fuzzer: libfuzzer_harfbuzz_fuzzer Job Type: libfuzzer_chrome_asan Platform Id: linux Crash Type: Timeout (exceeds 25 secs) Crash Address: Crash State: harfbuzz_fuzzer Sanitizer: address (ASAN) Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan&range=395675:395769 Minimized Testcase (16.41 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95I1tlRUvq-sRM3uL8LPGTKSMXXnNcIde_CaBdRFI7r3GP3LHlQnMsqXSURWOY56YOqYehDGmC0iM10cdneT_IGHB1rEPzpRokhqfFCwEqcIV1KmQnxHMQXIHH0LzBpwjnbQkJaKbBWz6H1tHCQmVHd-M3xnXb3pxaOvH1wdqJytfTjP4cFj-8sCn1w53n-kh0YmUVvMQ5SkW8w4UmsxdMji8QDEjIeirarguDyRnXEjwE2HGh-xsmshagZP2HrNXSYW21pyaONEt1y8BT2IVunjHPvYD1G0eH0uR8bs0SNCsVH-DWqKv-xGvDuSzQeabSzRVvDq74MU20y3y8fSGpIj0Wjf3JkWZ3Ff_sBr97guRaj2EA?testcase_id=6107935408390144 Issue filed automatically. See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Jan 7 2017
Passing it over to behdad@ as an owner of harfbuzz.
,
Jan 26 2017
Not sure if there is much else we can do with that content.
,
Jan 27 2017
Still reproduces for me, all time is spent in OT::apply_lookup
,
Feb 23 2017
Thanks. Reproduced. Working on it.
,
Feb 23 2017
Ok, this is a hard one. Basically, I have to bite the bullet and add an instruction count to the GSUB/GPOS "virtual machine". There's no other way to meaningfully shut down slow paths without limiting legitimate fonts. Filed tracker bug upstream: https://github.com/behdad/harfbuzz/issues/429
,
Mar 16 2017
,
Mar 20 2017
ClusterFuzz has detected this issue as fixed in range 457466:457505. Detailed report: https://clusterfuzz.com/testcase?key=6107935408390144 Fuzzer: libfuzzer_harfbuzz_fuzzer Job Type: libfuzzer_chrome_asan Platform Id: linux Crash Type: Timeout (exceeds 25 secs) Crash Address: Crash State: harfbuzz_fuzzer Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_asan&range=395675:395769 Fixed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_asan&range=457466:457505 Reproducer Testcase: https://clusterfuzz.com/download/AMIfv96BqldRj9ZHSs9uziylBu98PlbMZQ3R_tm_1Hcpoy2O-rg_fhMT2GFu6Iu05X0IDq1sWP740Fx_vK0A0TA2qLcIDVfge4cp8G5PcxFdf_mlDbPkdHYZTZLWDJyjF5EQpcTxnQ3F5KJ95HToLj7Lr-IGbpHB6ziBzF6ZaXnBMqXCZ1rR_zwQo6B7FR7JTHHpx1vAT-jIW58FaKSa-aHGzlfVWzSh4FC3aZS764A15JSRFm70WaX8IDZMiuCwOKUL8FlLvi5GKAI-ZkWL8Mtrc6SorT7rIA0DHYW6qyXTNu7smKZCzt5LtAhaWHaGd1uTiwrp0dcaGCTG77If8JjktLjB7CpsHs_E1YB5uLYTw5dwGcQhjIs?testcase_id=6107935408390144 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Mar 20 2017
ClusterFuzz testcase 6107935408390144 is verified as fixed, so closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
|||||
►
Sign in to add a comment |
|||||
Comment 1 by msrchandra@chromium.org
, Jan 6 2017Components: Blink>Fonts
Labels: Test-Predator-Wrong-CLs
Owner: mmoroz@chromium.org
Status: Assigned (was: Untriaged)