New issue
Advanced search Search tips

Issue 793655 link

Starred by 1 user

Issue metadata

Status: WontFix
Owner:
Closed: Dec 2017
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 2
Type: Bug-Security



Sign in to add a comment

Yasm - heap-buffer-overflow and stack-overflow

Reported by gy741....@gmail.com, Dec 10 2017

Issue description

UserAgent: Mozilla/5.0 (Linux; Android 6.0.1; SAMSUNG SM-J510K/KKU1AQK1 Build/MMB29M) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/6.2 Chrome/56.0.2924.87 Mobile Safari/537.36

Steps to reproduce the problem:
1. PoC Download
2. ./yasm $PoC
3. 

What is the expected behavior?

What went wrong?
Hello.

I found a yasm bug.

Is the yasm bug in the scope of impact?

chromium third_party has yasm.

Thanks.

Ref :
https://github.com/yasm/yasm/issues/98
https://github.com/yasm/yasm/issues/99

Did this work before? N/A 

Chrome version: 56.0.2924.87  Channel: n/a
OS Version: 
Flash Version:
 
Owner: dalecur...@chromium.org
Summary: Yasm - heap-buffer-overflow and stack-overflow (was: Yasm bug )
dalecurtis@, can you help me understand the impact of these issues? Is yasm used by anything at runtime, or only as part of a build process? Does it take untrusted input?
Owner: elawrence@chromium.org
Yasm is only used as part of the build process. It only processes things in a yasm_assemble() GN block AFAIK, so it depends on whether you consider our checked in code untrusted or not :)
Labels: Security_Impact-None
Status: WontFix (was: Unconfirmed)
Thanks for reporting this issue to us and to the upstream maintainers. 

Because of the limited way in which Chromium is using yasm, we do not need to pick up a fix with any urgency; we'll get the update after the fix is available upstream.

Thanks again!
Project Member

Comment 4 by sheriffbot@chromium.org, Mar 20 2018

Labels: -Restrict-View-SecurityTeam allpublic
This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment