Detailed report: https://clusterfuzz.com/testcase?key=6577965606633472 Fuzzer: miaubiz_svg_fuzzer Job Type: linux_ubsan_chrome Platform Id: linux Crash Type: Integer-overflow Crash Address: Crash State: SkIRect::width SkNoPixelsDevice::resetForNextPicture SkCanvas::resetForNextPicture Sanitizer: undefined (UBSAN) Regressed: https://clusterfuzz.com/revisions?job=linux_ubsan_chrome&range=455516:455540 Reproducer Testcase: https://clusterfuzz.com/download/AMIfv96gqEtYLa9JgELxFl032kcHX2m72--gB0XWDo7Wr89_x845UKRZ5fAdsJW5Ij-jwj3Kg5HzpczSRY6IIP2lZm0-XXxZbnaN2K3BGJUZoof7WbB_6XoS9t0IQUjT0bIF7e8yeOL_8biHPI4Dd2POp4KarjoPBIO97cfZEa1PEEZtFnp3P2lzMBatiGFTMl-hRxO2uptNIqbgkE5Z3Tr52QEky52iRW-tiFw45d8fXPH55MoaaB8uYYSySMX8U4etufBvC2acel-UGTiANk2sKMMWKTQ2Rj30vXfu2K2ISUDX8u4Jc6PW2YQM3Qr1KR_VKomLPqVAKgVq5q7B8U4ny2xylFnag3ax0dvRLxjx8snzp27qezI?testcase_id=6577965606633472 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
Possible suspect from the findit CL. https://skia.googlesource.com/skia.git/+/139e5e08a5d276b8dc988f7dee1b9c0467fcf607 reed@: Could you please take a look into this.
ClusterFuzz has detected this issue as fixed in range 464807:464815. Detailed report: https://clusterfuzz.com/testcase?key=6577965606633472 Fuzzer: miaubiz_svg_fuzzer Job Type: linux_ubsan_chrome Platform Id: linux Crash Type: Integer-overflow Crash Address: Crash State: SkIRect::width SkNoPixelsDevice::resetForNextPicture SkCanvas::resetForNextPicture Sanitizer: undefined (UBSAN) Regressed: https://clusterfuzz.com/revisions?job=linux_ubsan_chrome&range=455516:455540 Fixed: https://clusterfuzz.com/revisions?job=linux_ubsan_chrome&range=464807:464815 Reproducer Testcase: https://clusterfuzz.com/download/AMIfv96gqEtYLa9JgELxFl032kcHX2m72--gB0XWDo7Wr89_x845UKRZ5fAdsJW5Ij-jwj3Kg5HzpczSRY6IIP2lZm0-XXxZbnaN2K3BGJUZoof7WbB_6XoS9t0IQUjT0bIF7e8yeOL_8biHPI4Dd2POp4KarjoPBIO97cfZEa1PEEZtFnp3P2lzMBatiGFTMl-hRxO2uptNIqbgkE5Z3Tr52QEky52iRW-tiFw45d8fXPH55MoaaB8uYYSySMX8U4etufBvC2acel-UGTiANk2sKMMWKTQ2Rj30vXfu2K2ISUDX8u4Jc6PW2YQM3Qr1KR_VKomLPqVAKgVq5q7B8U4ny2xylFnag3ax0dvRLxjx8snzp27qezI?testcase_id=6577965606633472 See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
ClusterFuzz testcase 6577965606633472 is verified as fixed, so closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
Comment 1 by durga.behera@chromium.org
, Mar 9 2017Components: Internals>Skia
Labels: Test-Predator-Correct-CLs M-59
Owner: reed@chromium.org
Status: Assigned (was: Untriaged)