New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 897530 link

Starred by 2 users

Issue metadata

Status: Assigned
Owner:
Cc:
EstimatedDays: ----
NextAction: ----
OS: Linux , Chrome , Mac
Pri: 1
Type: Bug



Sign in to add a comment

Timeout in mediasource_MP4_AV1_pipeline_integration_fuzzer

Project Member Reported by ClusterFuzz, Oct 21

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=6206367504007168

Fuzzer: libFuzzer_mediasource_MP4_AV1_pipeline_integration_fuzzer
Job Type: libfuzzer_chrome_msan
Platform Id: linux

Crash Type: Timeout (exceeds 25 secs)
Crash Address: 
Crash State:
  mediasource_MP4_AV1_pipeline_integration_fuzzer
  
Sanitizer: memory (MSAN)

Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_msan&range=578801:578809

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=6206367504007168

Issue filed automatically.

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reference.md for more information.
 
Project Member

Comment 1 by ClusterFuzz, Oct 21

Cc: xhw...@chromium.org
Labels: ClusterFuzz-Auto-CC
Automatically adding ccs based on OWNERS file / target commit history.

If this is incorrect, please add ClusterFuzz-Wrong label.
Project Member

Comment 2 by ClusterFuzz, Oct 21

Labels: Test-Predator-Auto-Owner
Owner: johannko...@google.com
Status: Assigned (was: Untriaged)
Automatically assigning owner based on suspected regression changelist https://chromium.googlesource.com/chromium/src/+/f2813ce352ac65a2d4259ae7aba9fa739d3903aa (enable av1 playback by default).

If this is incorrect, please let us know why and apply the Test-Predator-Wrong-CLs label. If you aren't the correct owner for this issue, please unassign yourself as soon as possible so it can be re-triaged.
Cc: johannko...@google.com
Owner: wtc@google.com
Wan-Teh, would you take a look at this please?
Cc: yaowu@chromium.org
Hi Johann,

It seems that the suspected regression CL in comment 2 was committed on
July 27 and cherry-picked to branch refs/branch-heads/3497. Why was this
bug reported only yesterday?

Do you know how to reproduce the test timeout? This bug report looks
quite different from the oss-fuzz bugs I have been working on, so I
don't know how to reproduce this bug.
The regression CL is the first time AV1 was turned on by default. That just means it's existed since the original AV1 commit.

The test case appears to be use the mp4 container which makes it tricky to reproduce with aomdec, which only reads .webm/.mkv and .ivf.

The initial comment has repro instructions for building within chromium.

As for why this was just reported, fuzzing is continuous and can uncover old bugs.
Project Member

Comment 6 by ClusterFuzz, Oct 30

Labels: OS-Mac
Project Member

Comment 7 by ClusterFuzz, Dec 1

Labels: -Reproducible Unreproducible
ClusterFuzz testcase 6206367504007168 appears to be flaky, updating reproducibility label.
Labels: -Unreproducible Reproducible
Please ignore the last comment about testcase being unreproducible. The testcase is still reproducible. This happened due to a code refactoring on ClusterFuzz side, and the underlying root cause is now fixed. Resetting the label back to Reproducible. Sorry about the inconvenience caused from these incorrect notifications.
Labels: -Unreproducible Reproducible
Please ignore the last comment about testcase being unreproducible. The testcase is still reproducible. This happened due to a code refactoring on ClusterFuzz side, and the underlying root cause is now fixed. Resetting the label back to Reproducible. Sorry about the inconvenience caused from these incorrect notifications.
Project Member

Comment 10 by ClusterFuzz, Dec 14

Labels: OS-Chrome

Sign in to add a comment