New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 681187 link

Starred by 1 user

Issue metadata

Status: Duplicate
Merged: issue 681707
Owner:
Last visit > 30 days ago
Closed: Jan 2017
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug



Sign in to add a comment

Crash in v8::internal::String::ToCString

Project Member Reported by ClusterFuzz, Jan 13 2017

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5034845815439360

Fuzzer: decoder_langfuzz
Job Type: linux_asan_chrome_v8_d8
Platform Id: linux

Crash Type: UNKNOWN READ
Crash Address: 0x000000000013
Crash State:
  v8::internal::String::ToCString
  v8::internal::String::ToCString
  v8::internal::wasm::AsmTyper::ImportLookup
  
Sanitizer: address (ASAN)

Regressed: V8: r42212:42308

Minimized Testcase (4.95 Kb): https://cluster-fuzz.appspot.com/download/AMIfv94mOC5BO3VzdKd5_RhxbNHmn1HMdwLP-X4XbFlapV-DPqaS3L6P-RZPrNxS00sYFxTS5c0OSdr3N8ls66ygp7AW2nCAPoYgsYlrzzpY9zea-d-GLi2s0yH1GgAWFRyPJ2eGqKLutcGvZIDl3dJUQF6yI5IiPpXs4EoBlCsitse0PjMNSbuhRXSoe_hKKN99Ek9MyCDm6I_tzNfjzhSmDOtljNoWe6DIf0mqWvKrzWY4iChnO83oghFvhkfXN8Bgxa1HE9cCVLBIFUM-y-bXfJEzydaZMcXBCMCD-uEl8dWgJe0Iy5L5PVyKMrXnwHruUmIS5AipvATxpXDELRTft-vQeDZ6ZFVQYoRya4mkw-EStbgJwXE?testcase_id=5034845815439360

Issue filed automatically.

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
 
Owner: bradnelson@chromium.org
Status: Assigned (was: Untriaged)
Mergedinto: 681707
Status: Duplicate (was: Assigned)
Project Member

Comment 3 by ClusterFuzz, Jan 19 2017

ClusterFuzz has detected this issue as fixed in range 42432:42456.

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5034845815439360

Fuzzer: decoder_langfuzz
Job Type: linux_asan_chrome_v8_d8
Platform Id: linux

Crash Type: UNKNOWN READ
Crash Address: 0x000000000013
Crash State:
  v8::internal::String::ToCString
  v8::internal::String::ToCString
  v8::internal::wasm::AsmTyper::ImportLookup
  
Sanitizer: address (ASAN)

Regressed: V8: 42212:42308
Fixed: V8: 42432:42456

Minimized Testcase (4.95 Kb): https://cluster-fuzz.appspot.com/download/AMIfv94mOC5BO3VzdKd5_RhxbNHmn1HMdwLP-X4XbFlapV-DPqaS3L6P-RZPrNxS00sYFxTS5c0OSdr3N8ls66ygp7AW2nCAPoYgsYlrzzpY9zea-d-GLi2s0yH1GgAWFRyPJ2eGqKLutcGvZIDl3dJUQF6yI5IiPpXs4EoBlCsitse0PjMNSbuhRXSoe_hKKN99Ek9MyCDm6I_tzNfjzhSmDOtljNoWe6DIf0mqWvKrzWY4iChnO83oghFvhkfXN8Bgxa1HE9cCVLBIFUM-y-bXfJEzydaZMcXBCMCD-uEl8dWgJe0Iy5L5PVyKMrXnwHruUmIS5AipvATxpXDELRTft-vQeDZ6ZFVQYoRya4mkw-EStbgJwXE?testcase_id=5034845815439360

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.

Sign in to add a comment