New issue
Advanced search Search tips

Issue 915748 link

Starred by 2 users

Issue metadata

Status: Verified
Owner:
Closed: Jan 14
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Chrome
Pri: 2
Type: Bug



Sign in to add a comment

Undefined-shift in gs_interpret

Project Member Reported by ClusterFuzz, Dec 17

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=5522310251151360

Project: chromeos
Fuzzer: libFuzzer_chromeos_gstoraster_fuzzer
Fuzz target binary: gstoraster_fuzzer
Job Type: libfuzzer_asan_chromeos
Platform Id: linux

Crash Type: Undefined-shift
Crash Address: 
Crash State:
  gs_interpret
  gs_main_run_string_with_length
  run_string
  
Sanitizer: address (ASAN)

Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_asan_chromeos&range=3138110:3138341

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5522310251151360

Issue filed automatically.

See https://chromium.googlesource.com/chromiumos/docs/+/master/fuzzing.md#Reproducing-crashes-from-ClusterFuzz for instructions to reproduce this bug locally.
 
Project Member

Comment 1 by ClusterFuzz, Dec 17

Cc: pawliczek@chromium.org briannorris@chromium.org luum@chromium.org skau@chromium.org
Labels: ClusterFuzz-Auto-CC
Automatically adding ccs based on OWNERS file / target commit history.

If this is incorrect, please add ClusterFuzz-Wrong label.
Owner: skau@chromium.org
Status: Assigned (was: Untriaged)
Components: Internals>Printing>CUPS
Project Member

Comment 4 by ClusterFuzz, Jan 14

ClusterFuzz has detected this issue as fixed in range 3353106:3353589.

Detailed report: https://clusterfuzz.com/testcase?key=5522310251151360

Project: chromeos
Fuzzer: libFuzzer_chromeos_gstoraster_fuzzer
Fuzz target binary: gstoraster_fuzzer
Job Type: libfuzzer_asan_chromeos
Platform Id: linux

Crash Type: Undefined-shift
Crash Address: 
Crash State:
  gs_interpret
  gs_main_run_string_with_length
  run_string
  
Sanitizer: address (ASAN)

Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_asan_chromeos&range=3138110:3138341
Fixed: https://clusterfuzz.com/revisions?job=libfuzzer_asan_chromeos&range=3353106:3353589

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5522310251151360

See https://chromium.googlesource.com/chromiumos/docs/+/master/fuzzing.md#Reproducing-crashes-from-ClusterFuzz for instructions to reproduce this bug locally.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
Project Member

Comment 5 by ClusterFuzz, Jan 14

Labels: ClusterFuzz-Verified
Status: Verified (was: Assigned)
ClusterFuzz testcase 5522310251151360 is verified as fixed, so closing issue as verified.

If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.

Sign in to add a comment