New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 917622 link

Starred by 3 users

Issue metadata

Status: Assigned
Owner:
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux , Chrome
Pri: 1
Type: Bug

Blocked on:
issue 916298



Sign in to add a comment

Indirect-leak in av_buffer_realloc

Project Member Reported by ClusterFuzz, Dec 23

Issue description

Detailed report: https://clusterfuzz.com/testcase?key=5649187601121280

Fuzzer: libFuzzer_audio_decoder_fuzzer
Fuzz target binary: audio_decoder_fuzzer
Job Type: libfuzzer_chrome_asan
Platform Id: linux

Crash Type: Indirect-leak
Crash Address: 
Crash State:
  av_buffer_realloc
  ebml_read_binary
  ebml_parse_elem
  
Sanitizer: address (ASAN)

Regressed: https://clusterfuzz.com/revisions?job=libfuzzer_chrome_asan&range=560371:560389

Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5649187601121280

Issue filed automatically.

See https://github.com/google/clusterfuzz-tools for instructions to reproduce this bug locally.
 
Project Member

Comment 1 by ClusterFuzz, Dec 23

Components: Internals>Media>FFmpeg
Labels: Test-Predator-Auto-Components
Automatically applying components based on crash stacktrace and information from OWNERS files.

If this is incorrect, please apply the Test-Predator-Wrong-Components label.
Project Member

Comment 2 by ClusterFuzz, Dec 23

Cc: mmoroz@chromium.org
Labels: ClusterFuzz-Auto-CC
Automatically adding ccs based on OWNERS file / target commit history.

If this is incorrect, please add ClusterFuzz-Wrong label.
Project Member

Comment 3 by ClusterFuzz, Dec 23

Cc: jamr...@gmail.com
Labels: Test-Predator-Auto-CC
Automatically adding ccs based on suspected regression changelists:

avformat/matroskadec: use refcounted buffers in EbmlBin by jamrial@gmail.com - https://chromium.googlesource.com/chromium/third_party/ffmpeg/+/a61886650b598c98b7f8b44b3c186e33873913cd

If this is incorrect, please let us know why and apply the Test-Predator-Wrong-CLs label.
Cc: -mmoroz@chromium.org dalecur...@chromium.org
Owner: chcunningham@chromium.org
Blockedon: 916298
Project Member

Comment 6 by ClusterFuzz, Jan 9

Labels: OS-Chrome
Status: Assigned (was: Untriaged)
This issue has an owner, a component and a priority, but is still listed as untriaged or unconfirmed. By definition, this bug is triaged. Changing status to "assigned". Please reach out to me if you disagree with how I've done this.

Sign in to add a comment