Issue metadata
Sign in to add a comment
|
Heap-buffer-overflow in interp_lut |
||||||||||||||||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=6060910272839680 Fuzzer: libfuzzer_skia_color_space_fuzzer Job Type: libfuzzer_chrome_asan Platform Id: linux Crash Type: Heap-buffer-overflow READ 4 Crash Address: 0x6140000001c8 Crash State: interp_lut table table_r_kernel Sanitizer: address (ASAN) Recommended Security Severity: Medium Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_asan&range=465882:465900 Reproducer Testcase: https://clusterfuzz.com/download/AMIfv97eHo547p1v0SV1HOO6s9fJGHuAdXk163gF07rrCQX2BqdWcRP7o7U7ZMAaX0AWWd-igLeBMOgWK8avlB9GCc3DU9whvhq9kvoZVnejPAjwvoWQvY56xKiA9zwnaPpBfR7O-60jSRgN-FmcBjd195TuJKpT2nz0ynm5petgcTRws8iJWOYVFzGcG6-Azexh4kqIHpueZNFCoae_wlKcpTWWlFiw-2kA-_CyqLiYAHuywg85IuQVTw-8-608yRLHnzK7xBTvnfIQQ9-Z927Vl2e5aUlKHbyObmZX64d9Sy4w_cyImbJ6xQ5f3GBmSVvE4IHvHYWNOAgAHNzu2NkS41GmG7mIrwhBDbQIeSkEMFbueL0Lkms?testcase_id=6060910272839680 Issue filed automatically. See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information.
,
Apr 20 2017
This issue is a security regression. If you are not able to fix this quickly, please revert the change that introduced it. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Apr 20 2017
,
Apr 21 2017
ClusterFuzz has detected this issue as fixed in range 465900:465919. Detailed report: https://clusterfuzz.com/testcase?key=6060910272839680 Fuzzer: libfuzzer_skia_color_space_fuzzer Job Type: libfuzzer_chrome_asan Platform Id: linux Crash Type: Heap-buffer-overflow READ 4 Crash Address: 0x6140000001c8 Crash State: interp_lut table table_r_kernel Sanitizer: address (ASAN) Recommended Security Severity: Medium Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_asan&range=465882:465900 Fixed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_asan&range=465900:465919 Reproducer Testcase: https://clusterfuzz.com/download/AMIfv97eHo547p1v0SV1HOO6s9fJGHuAdXk163gF07rrCQX2BqdWcRP7o7U7ZMAaX0AWWd-igLeBMOgWK8avlB9GCc3DU9whvhq9kvoZVnejPAjwvoWQvY56xKiA9zwnaPpBfR7O-60jSRgN-FmcBjd195TuJKpT2nz0ynm5petgcTRws8iJWOYVFzGcG6-Azexh4kqIHpueZNFCoae_wlKcpTWWlFiw-2kA-_CyqLiYAHuywg85IuQVTw-8-608yRLHnzK7xBTvnfIQQ9-Z927Vl2e5aUlKHbyObmZX64d9Sy4w_cyImbJ6xQ5f3GBmSVvE4IHvHYWNOAgAHNzu2NkS41GmG7mIrwhBDbQIeSkEMFbueL0Lkms?testcase_id=6060910272839680 See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Apr 21 2017
ClusterFuzz testcase 6060910272839680 is verified as fixed, so closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
,
Apr 21 2017
,
Apr 24 2017
,
Jul 28 2017
This bug has been closed for more than 14 weeks. Removing security view restrictions. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||
Comment 1 by sheriffbot@chromium.org
, Apr 20 2017