New issue
Advanced search Search tips

Issue 798963 link

Starred by 1 user

Issue metadata

Status: Duplicate
Merged: issue 798697
Owner: ----
Closed: Jan 2018
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug



Sign in to add a comment

Stack-overflow in CFX_XMLNode::DeleteChildren

Project Member Reported by ClusterFuzz, Jan 4 2018

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=6241710849130496

Fuzzer: libFuzzer_pdf_xml_fuzzer
Job Type: libfuzzer_chrome_ubsan
Platform Id: linux

Crash Type: Stack-overflow
Crash Address: 0x7ffe676a9ff8
Crash State:
  CFX_XMLNode::DeleteChildren
  CFX_XMLElement::~CFX_XMLElement
  
Sanitizer: undefined (UBSAN)

Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_ubsan&range=508791:508824

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6241710849130496

Issue filed automatically.

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reference.md for more information.
 
Project Member

Comment 1 by ClusterFuzz, Jan 4 2018

Components: Internals>Plugins>PDF
Labels: Test-Predator-Auto-Components
Automatically applying components based on crash stacktrace and information from OWNERS files.

If this is incorrect, please apply the Test-Predator-Wrong-Components label.
Cc: kkaluri@chromium.org
Labels: M-64 Test-Predator-Wrong
Mergedinto: 798697
Status: Duplicate (was: Untriaged)
This looks similar to  Issue 798697 , hence merging into it

Sign in to add a comment