New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 801982 link

Starred by 2 users

Issue metadata

Status: WontFix
Owner:
Closed: Apr 2018
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux , Mac
Pri: 1
Type: Bug



Sign in to add a comment

Out-of-memory in css_parser_proto_fuzzer

Project Member Reported by ClusterFuzz, Jan 15 2018

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=4728368921837568

Fuzzer: libFuzzer_css_parser_proto_fuzzer
Job Type: libfuzzer_chrome_msan
Platform Id: linux

Crash Type: Out-of-memory (exceeds 2048 MB)
Crash Address: 
Crash State:
  css_parser_proto_fuzzer
  
Sanitizer: memory (MSAN)

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=4728368921837568

Issue filed automatically.

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reference.md for more information.

Note: This crash might not be reproducible with the provided testcase. That said, for the past 14 days we've been seeing this crash frequently. If you are unable to reproduce this, please try a speculative fix based on the crash stacktrace in the report. The fix can be verified by looking at the crash statistics in the report, a day after the fix is deployed. We will auto-close the bug if the crash is not seen for 14 days.
 
Project Member

Comment 1 by ClusterFuzz, Jan 15 2018

Labels: OS-Mac
Cc: brajkumar@chromium.org
Components: Blink>CSS
Labels: Test-Predator-Wrong CF-NeedsTriage
Unable to perform code search since there is no '.cc' or .cpp' files are available in the stack trace and also no CL file is available to find the suspect, hence adding appropriate label and marking it as untriaged.

Thanks!

Comment 3 by shend@chromium.org, Jan 17 2018

Owner: metzman@chromium.org
Status: Assigned (was: Untriaged)
Hi metzman, I think you were working on the css_parser_proto_fuzzer? It'd be interesting to see if this is the same issue as https://bugs.chromium.org/p/chromium/issues/detail?id=772612

Comment 4 by e...@chromium.org, Jan 31 2018

Components: -Blink>CSS Tools>Stability>libFuzzer
Status: WontFix (was: Assigned)
We are closing all ooms and timeouts that are unreproducible. We won't be filing such bugs in future.

Sign in to add a comment