Direct-leak in xmlStrndup |
||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=6523562581295104 Fuzzer: libfuzzer_libxml_xml_read_memory_fuzzer Job Type: libfuzzer_chrome_asan_debug Platform Id: linux Crash Type: Direct-leak Crash Address: Crash State: xmlStrndup xmlStrdup xmlBufAttrSerializeTxtContent Sanitizer: address (ASAN) Regressed: https://cluster-fuzz.appspot.com/revisions?job=libfuzzer_chrome_asan_debug&range=450685:450714 Reproducer Testcase: https://cluster-fuzz.appspot.com/download/AMIfv95L4PO73F7SuagnwDKzJu6LaCpM93XgcStJ6BnaG-jATr_Sa-xGjWG3tIE7Fd9EzjmAIUQtOaBN5Bk5n7K_Nd1oyhBWWcFAnygYNrhXLvF9xy8xRcwGQLAq8P_iHzwAh3yX1Jo-Cp0SxrlCvoF7poKKoYnVjcJGNFEj-kbH4eVOzvB5zZqrwn95DdPMrdUOSWJdN8YssS1LFLjDnuUEH6fvYw5N723AOSM21lmNGvdz_SHP4uUCGLnAcZ5EqfIO6bZllzvQsyIDwZFRBfub7G6794WJiGzq-V3f_LMcxsNehswMIrSzOnV9367UbSlT3EO-zljn8MYf8CDDRXBXzD5n6Uv5ltSsM88n4-1iMRJQAM6ifoootwuiiCDpx5QpMaeJS2Zsxe1s9N4lxjmwEutuBKuGLQ?testcase_id=6523562581295104 Issue filed automatically. See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Feb 16 2017
Predator and CL did not provide any possible suspects. Using Code Search for the file, "xmlstring.c" assigning to the concern owner. Suspecting Commit# https://chromium.googlesource.com/chromium/src/+/3c53598f981660671a93f9f71e52e5bb58a2b64e @dominicc -- Could you please look into the issue, kindly re-assign if this is not related to your changes. Thank You.
,
Feb 17 2017
Yes, I maintain integrating this third party library. Unfortunately there are more pressing problems than leaks in libxml, and fixing leaks may exacerbate them--it's safer to leak something than to not hold onto it long enough--so let's keep this open but I will lower the priority.
,
Jun 21 2017
ClusterFuzz has detected this issue as fixed in range 480710:480765. Detailed report: https://clusterfuzz.com/testcase?key=6523562581295104 Fuzzer: libFuzzer_libxml_xml_read_memory_fuzzer Job Type: libfuzzer_chrome_asan_debug Platform Id: linux Crash Type: Direct-leak Crash Address: Crash State: xmlStrndup xmlStrdup xmlBufAttrSerializeTxtContent Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_asan_debug&range=450685:450714 Fixed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_asan_debug&range=480710:480765 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6523562581295104 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Jun 21 2017
ClusterFuzz testcase 6523562581295104 is verified as fixed, so closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
||||
►
Sign in to add a comment |
||||
Comment 1 by mummare...@chromium.org
, Feb 15 2017Components: Blink>XML
Labels: Test-Predator-Wrong M-58