New issue
Advanced search Search tips

Issue 835419 link

Starred by 1 user

Issue metadata

Status: Duplicate
Merged: issue 839201
Owner:
Closed: May 2018
Cc:
EstimatedDays: ----
NextAction: ----
OS: Chrome
Pri: 1
Type: Bug



Sign in to add a comment

Out-of-memory in puffin_fuzzer

Project Member Reported by ClusterFuzz, Apr 20 2018

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=6393087786745856

Fuzzer: libFuzzer_puffin_fuzzer
Job Type: libfuzzer_asan_chromeos
Platform Id: linux

Crash Type: Out-of-memory (exceeds 2048 MB)
Crash Address: 
Crash State:
  puffin_fuzzer
  
Sanitizer: address (ASAN)

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6393087786745856

Issue filed automatically.

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reference.md for more information.
 
Project Member

Comment 1 by ClusterFuzz, Apr 20 2018

Cc: ahass...@google.com senj@google.com
Labels: ClusterFuzz-Auto-CC
Automatically adding ccs based on OWNERS file.

If this is incorrect, please add ClusterFuzz-Wrong label.
Cc: ahass...@chromium.org
 Issue 833116  has been merged into this issue.
Cc: -ahass...@chromium.org -ahass...@google.com
Owner: ahass...@chromium.org
Status: Assigned (was: Untriaged)
ahassani@, please note that we create one crash state for an oom and timeout crashes. so if fix one, these can be different variant of oom, timeout. please look at stacktrace for more info.
Project Member

Comment 4 by ClusterFuzz, Apr 27 2018

Labels: -Reproducible Unreproducible
ClusterFuzz testcase 6393087786745856 appears to be flaky, updating reproducibility label.
Cc: -senj@google.com
Same as  crbug.com/835415  this issue is request for large buffer. This won't fix. Is there any way we can skip these kind of issues?
Specify a testcase size limit, see last point in https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/getting_started.md#improving-your-fuzz-target. then mark this fixed.
It is not the testcase size itself. It is the content of the test case that creates causes us to request a large buffer. For example somewhere in the test case, an integer constitutes a very large number and we use that to create a buffer we need. If these errors cannot be skipped, I see no other way except to remove the puffpatch fuzzer. (We can still keep puff and huff fuzzers).
Mergedinto: 839201
Status: Duplicate (was: Assigned)

Sign in to add a comment