New issue
Advanced search Search tips

Issue 904653 link

Starred by 1 user

Issue metadata

Status: Verified
Owner:
Closed: Dec 15
Components:
EstimatedDays: ----
NextAction: ----
OS: Windows
Pri: 1
Type: Bug



Sign in to add a comment

Out-of-memory in skia_image_decode_incremental_fuzzer

Project Member Reported by ClusterFuzz, Nov 13

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=4747863059595264

Fuzzer: libFuzzer_skia_image_decode_incremental_fuzzer
Job Type: windows_libfuzzer_chrome_asan
Platform Id: windows

Crash Type: Out-of-memory (exceeds 2048 MB)
Crash Address: 
Crash State:
  skia_image_decode_incremental_fuzzer
  
Sanitizer: address (ASAN)

Regressed: https://clusterfuzz.com/revisions?job=windows_libfuzzer_chrome_asan&range=607281:607292

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=4747863059595264

Issue filed automatically.

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing_on_windows.md for more information.
 
Components: Internals>Skia
Cc: -metzman@google.com
Owner: metzman@chromium.org
Status: Assigned (was: Untriaged)
Project Member

Comment 4 by ClusterFuzz, Dec 1

Labels: -Reproducible Unreproducible
ClusterFuzz testcase 4747863059595264 appears to be flaky, updating reproducibility label.
Labels: -Unreproducible Reproducible
Please ignore the last comment about testcase being unreproducible. The testcase is still reproducible. This happened due to a code refactoring on ClusterFuzz side, and the underlying root cause is now fixed. Resetting the label back to Reproducible. Sorry about the inconvenience caused from these incorrect notifications.
The documentation for reproducing on Windows has been moved to https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md
Project Member

Comment 7 by ClusterFuzz, Dec 15

ClusterFuzz has detected this issue as fixed in range 616918:616922.

Detailed report: https://clusterfuzz.com/testcase?key=4747863059595264

Fuzzer: libFuzzer_skia_image_decode_incremental_fuzzer
Fuzz target binary: skia_image_decode_incremental_fuzzer
Job Type: windows_libfuzzer_chrome_asan
Platform Id: windows

Crash Type: Out-of-memory (exceeds 2048 MB)
Crash Address: 
Crash State:
  skia_image_decode_incremental_fuzzer
  
Sanitizer: address (ASAN)

Regressed: https://clusterfuzz.com/revisions?job=windows_libfuzzer_chrome_asan&range=607281:607292
Fixed: https://clusterfuzz.com/revisions?job=windows_libfuzzer_chrome_asan&range=616918:616922

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=4747863059595264

See https://chromium.googlesource.com/chromium/src/+/master/testing/libfuzzer/reproducing.md for instructions to reproduce this bug locally.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
Project Member

Comment 8 by ClusterFuzz, Dec 15

Labels: ClusterFuzz-Verified
Status: Verified (was: Assigned)
ClusterFuzz testcase 4747863059595264 is verified as fixed, so closing issue as verified.

If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.

Sign in to add a comment