Null-dereference READ in net::HttpCache::Writers::DoNetworkRead |
||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=5724819393609728 Fuzzer: attekett_dom_fuzzer Job Type: linux_asan_chrome_media Platform Id: linux Crash Type: Null-dereference READ Crash Address: 0x000000000000 Crash State: net::HttpCache::Writers::DoNetworkRead net::HttpCache::Writers::DoLoop net::HttpCache::Writers::Read Sanitizer: address (ASAN) Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5724819393609728 Issue filed automatically. See https://github.com/google/clusterfuzz-tools for more information.
,
Dec 4
,
Dec 4
Thanks, not sure of the culprit CLs, but it would be great to see it reproduced. It has also come up in the past (840862) but got fixed then. Maks, assigning as you are looking into cache code. Please feel free to assign it to someone else on the team (if applicable).
,
Dec 4
This does show up occasionally in crash data, so if clusterfuzz has a way of reproducing it, it would be quite valuable
,
Dec 4
Hmm, can't reproduce it via fuzzing, but from minidumps in crash, it looks like network_transaction_ is null?
,
Dec 9
ClusterFuzz has detected this issue as fixed in range 614984:614985. Detailed report: https://clusterfuzz.com/testcase?key=5724819393609728 Fuzzer: attekett_dom_fuzzer Job Type: linux_asan_chrome_media Platform Id: linux Crash Type: Null-dereference READ Crash Address: 0x000000000000 Crash State: net::HttpCache::Writers::DoNetworkRead net::HttpCache::Writers::DoLoop net::HttpCache::Writers::Read Sanitizer: address (ASAN) Fixed: https://clusterfuzz.com/revisions?job=linux_asan_chrome_media&range=614984:614985 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5724819393609728 See https://github.com/google/clusterfuzz-tools for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Dec 9
ClusterFuzz testcase 5724819393609728 is verified as fixed, so closing issue as verified. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue. |
||||
►
Sign in to add a comment |
||||
Comment 1 by kkaluri@chromium.org
, Dec 3Labels: M-72 Test-Predator-Wrong
Owner: shivanisha@chromium.org
Status: Assigned (was: Untriaged)