New issue
Advanced search Search tips

Issue 842493 link

Starred by 3 users

Issue metadata

Status: Untriaged
Owner: ----
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 2
Type: Bug



Sign in to add a comment

Integer-overflow in computeAlphaBelowLine

Project Member Reported by ClusterFuzz, May 13 2018

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=6257133700775936

Fuzzer: libFuzzer_skia_path_fuzzer
Job Type: libfuzzer_chrome_ubsan
Platform Id: linux

Crash Type: Integer-overflow
Crash Address: 
Crash State:
  computeAlphaBelowLine
  blit_aaa_trapezoid_row
  aaa_walk_edges
  
Sanitizer: undefined (UBSAN)

Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_ubsan&range=479170:479259

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6257133700775936

Issue filed automatically.

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reference.md for more information.
 
Project Member

Comment 1 by ClusterFuzz, May 13 2018

Components: Internals>Skia
Labels: Test-Predator-Auto-Components
Automatically applying components based on crash stacktrace and information from OWNERS files.

If this is incorrect, please apply the Test-Predator-Wrong-Components label.
Project Member

Comment 2 by ClusterFuzz, May 13 2018

Cc: mbarbe...@chromium.org
Labels: ClusterFuzz-Auto-CC
Automatically adding ccs based on OWNERS file / target commit history.

If this is incorrect, please add ClusterFuzz-Wrong label.
Project Member

Comment 3 by ClusterFuzz, May 13 2018

Cc: mtklein@chromium.org robertph...@google.com reed@google.com
Labels: Test-Predator-Auto-CC
Automatically adding ccs based on suspected regression changelists:

use pipeline for non-opt xfermodes by reed@google.com - https://skia.googlesource.com/skia/+/e93cf97175d348ce1400762bdd8d9acabdd29766

Revert "use pipeline for non-opt xfermodes" by mtklein@chromium.org - https://skia.googlesource.com/skia/+/4f8c695736c8ae4fed2190a8e1301a4f4a979898

Retract GrTexture*.h & GrRenderTarget*.h from other headers by robertphillips@google.com - https://skia.googlesource.com/skia/+/646e4293f06d9de6d44dbfa3c32cdc15a6f5906e

If this is incorrect, please let us know why and apply the Test-Predator-Wrong-CLs label.
Project Member

Comment 4 by ClusterFuzz, Dec 1

Labels: -Reproducible Unreproducible
ClusterFuzz testcase 6257133700775936 appears to be flaky, updating reproducibility label.
Labels: -Unreproducible Reproducible
Please ignore the last comment about testcase being unreproducible. The testcase is still reproducible. This happened due to a code refactoring on ClusterFuzz side, and the underlying root cause is now fixed. Resetting the label back to Reproducible. Sorry about the inconvenience caused from these incorrect notifications.
Please ignore the last comment about testcase being unreproducible. The testcase is still reproducible. This happened due to a code refactoring on ClusterFuzz side, and the underlying root cause is now fixed. Resetting the label back to Reproducible. Sorry about the inconvenience caused from these incorrect notifications.

Sign in to add a comment