New issue
Advanced search Search tips

Issue 813627 link

Starred by 1 user

Issue metadata

Status: Duplicate
Owner:
Closed: Feb 2018
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug-Security



Sign in to add a comment

Leaked internal type in Object['__defineSetter__']

Project Member Reported by ClusterFuzz, Feb 19 2018

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=5812934517981184

Fuzzer: v8_builtins_generator
Job Type: linux_cfi_d8
Platform Id: linux

Crash Type: Leaked internal type
Crash Address: 
Crash State:
  Object['__defineSetter__']
  
Sanitizer: cfi (CFI)

Recommended Security Severity: Medium

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5812934517981184

Issue filed automatically.

See https://github.com/google/clusterfuzz-tools for more information.
 
Project Member

Comment 1 by sheriffbot@chromium.org, Feb 20 2018

Labels: Pri-1

Comment 2 by kenrb@chromium.org, Feb 27 2018

Owner: ishell@chromium.org
Status: Assigned (was: Untriaged)
Assigned for triage.

This is similar to issue 813609. Are these real bugs? The repro is basically just:
throw Error("Leaked instance of internal type via: Object['__defineSetter__']");

Comment 3 by ishell@chromium.org, Feb 28 2018

Mergedinto: 813609
Status: Duplicate (was: Assigned)
Project Member

Comment 4 by sheriffbot@chromium.org, Jun 6 2018

Labels: -Restrict-View-SecurityTeam allpublic
This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment