public inbox for elfutils@sourceware.org
 help / color / mirror / Atom feed
* Issue 45646 in oss-fuzz: elfutils:fuzz-libdwfl: Misaligned-address in __libdw_image_header
       [not found] <0=71cc74a7ba1af446b7ed6b9a08b414d9=1f7922c08a4ad559eae053cc22756846=oss-fuzz@monorail-prod.appspotmail.com>
@ 2022-03-17 11:57 ` ClusterFuzz-External via monorail
  2022-03-20 10:03 ` da… via monorail
                   ` (2 subsequent siblings)
  3 siblings, 0 replies; 4+ messages in thread
From: ClusterFuzz-External via monorail @ 2022-03-17 11:57 UTC (permalink / raw)
  To: elfutils-devel

Status: New
Owner: ----
CC: elfut...@sourceware.org, da...@adalogics.com, evv...@gmail.com, izzeem@google.com 
Labels: ClusterFuzz Reproducible Stability-UndefinedBehaviorSanitizer Engine-libfuzzer OS-Linux Proj-elfutils Reported-2022-03-17
Type: Bug

New issue 45646 by ClusterFuzz-External: elfutils:fuzz-libdwfl: Misaligned-address in __libdw_image_header
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=45646

Detailed Report: https://oss-fuzz.com/testcase?key=5699171619831808

Project: elfutils
Fuzzing Engine: libFuzzer
Fuzz Target: fuzz-libdwfl
Job Type: libfuzzer_ubsan_elfutils
Platform Id: linux

Crash Type: Misaligned-address
Crash Address: 
Crash State:
  __libdw_image_header
  libdw_open_elf
  __libdw_open_file
  
Sanitizer: undefined (UBSAN)

Regressed: https://oss-fuzz.com/revisions?job=libfuzzer_ubsan_elfutils&range=202203161800:202203170000

Reproducer Testcase: https://oss-fuzz.com/download?testcase_id=5699171619831808

Issue filed automatically.

See https://google.github.io/oss-fuzz/advanced-topics/reproducing for instructions to reproduce this bug locally.
When you fix this bug, please
  * mention the fix revision(s).
  * state whether the bug was a short-lived regression or an old bug in any stable releases.
  * add any other useful information.
This information can help downstream consumers.

If you need to contact the OSS-Fuzz team with a question, concern, or any other feedback, please file an issue at https://github.com/google/oss-fuzz/issues. Comments on individual Monorail issues are not monitored.

-- 
You received this message because:
  1. You were specifically CC'd on the issue

You may adjust your notification preferences at:
https://bugs.chromium.org/hosting/settings

Reply to this email to add a comment.

^ permalink raw reply	[flat|nested] 4+ messages in thread

* Issue 45646 in oss-fuzz: elfutils:fuzz-libdwfl: Misaligned-address in __libdw_image_header
       [not found] <0=71cc74a7ba1af446b7ed6b9a08b414d9=1f7922c08a4ad559eae053cc22756846=oss-fuzz@monorail-prod.appspotmail.com>
  2022-03-17 11:57 ` Issue 45646 in oss-fuzz: elfutils:fuzz-libdwfl: Misaligned-address in __libdw_image_header ClusterFuzz-External via monorail
@ 2022-03-20 10:03 ` da… via monorail
  2022-03-20 10:04 ` da… via monorail
  2022-03-22 14:34 ` ClusterFuzz-External via monorail
  3 siblings, 0 replies; 4+ messages in thread
From: da… via monorail @ 2022-03-20 10:03 UTC (permalink / raw)
  To: elfutils-devel


Comment #1 on issue 45646 by da...@adalogics.com: elfutils:fuzz-libdwfl: Misaligned-address in __libdw_image_header
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=45646#c1

UBSAN report
Running: /mnt/scratch0/clusterfuzz/bot/inputs/fuzzer-testcases/crash-137c106fe516c3a5c4d5fb8deeb45c4e982d59a5
image-header.c:84:7: runtime error: load of misaligned address 0x7f2499144202 for type 'uint32_t' (aka 'unsigned int'), which requires 4 byte alignment
0x7f2499144202: note: pointer points here
 55 aa  20 20 20 20 20 20 20 20  20 20 20 20 20 20 20 20  20 20 20 20 20 20 20 20  20 20 20 20 20 20
              ^
    #0 0x4c04de in __libdw_image_header /src/elfutils/libdwfl/image-header.c:84:7
    #1 0x4bf336 in libdw_open_elf /src/elfutils/libdwfl/open.c:141:15
    #2 0x4bf1dc in __libdw_open_file /src/elfutils/libdwfl/open.c:197:10
    #3 0x4b5e6d in __libdwfl_report_offline /src/elfutils/libdwfl/offline.c:281:22
    #4 0x4b5e6d in dwfl_report_offline /src/elfutils/libdwfl/offline.c:316:10
    #5 0x4b2f88 in LLVMFuzzerTestOneInput /src/fuzz-libdwfl.c:47:22
    #6 0x43da32 in fuzzer::Fuzzer::ExecuteCallback(unsigned char const*, unsigned long) /src/llvm-project/compiler-rt/lib/fuzzer/FuzzerLoop.cpp:611:15
    #7 0x4295e2 in fuzzer::RunOneTest(fuzzer::Fuzzer*, char const*, unsigned long) /src/llvm-project/compiler-rt/lib/fuzzer/FuzzerDriver.cpp:324:6
    #8 0x42ee4c in fuzzer::FuzzerDriver(int*, char***, int (*)(unsigned char const*, unsigned long)) /src/llvm-project/compiler-rt/lib/fuzzer/FuzzerDriver.cpp:860:9
    #9 0x4577e2 in main /src/llvm-project/compiler-rt/lib/fuzzer/FuzzerMain.cpp:20:10
    #10 0x7f2498dd90b2 in __libc_start_main /build/glibc-eX1tMB/glibc-2.31/csu/libc-start.c:308:16
    #11 0x407d2d in _start
SUMMARY: UndefinedBehaviorSanitizer: undefined-behavior image-header.c:84:7 in

-- 
You received this message because:
  1. You were specifically CC'd on the issue

You may adjust your notification preferences at:
https://bugs.chromium.org/hosting/settings

Reply to this email to add a comment.

^ permalink raw reply	[flat|nested] 4+ messages in thread

* Issue 45646 in oss-fuzz: elfutils:fuzz-libdwfl: Misaligned-address in __libdw_image_header
       [not found] <0=71cc74a7ba1af446b7ed6b9a08b414d9=1f7922c08a4ad559eae053cc22756846=oss-fuzz@monorail-prod.appspotmail.com>
  2022-03-17 11:57 ` Issue 45646 in oss-fuzz: elfutils:fuzz-libdwfl: Misaligned-address in __libdw_image_header ClusterFuzz-External via monorail
  2022-03-20 10:03 ` da… via monorail
@ 2022-03-20 10:04 ` da… via monorail
  2022-03-22 14:34 ` ClusterFuzz-External via monorail
  3 siblings, 0 replies; 4+ messages in thread
From: da… via monorail @ 2022-03-20 10:04 UTC (permalink / raw)
  To: elfutils-devel


Comment #2 on issue 45646 by da...@adalogics.com: elfutils:fuzz-libdwfl: Misaligned-address in __libdw_image_header
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=45646#c2

(No comment was entered for this change.)

Attachments:
	clusterfuzz-testcase-minimized-fuzz-libdwfl-5699171619831808  593 bytes

-- 
You received this message because:
  1. You were specifically CC'd on the issue

You may adjust your notification preferences at:
https://bugs.chromium.org/hosting/settings

Reply to this email to add a comment.

^ permalink raw reply	[flat|nested] 4+ messages in thread

* Issue 45646 in oss-fuzz: elfutils:fuzz-libdwfl: Misaligned-address in __libdw_image_header
       [not found] <0=71cc74a7ba1af446b7ed6b9a08b414d9=1f7922c08a4ad559eae053cc22756846=oss-fuzz@monorail-prod.appspotmail.com>
                   ` (2 preceding siblings ...)
  2022-03-20 10:04 ` da… via monorail
@ 2022-03-22 14:34 ` ClusterFuzz-External via monorail
  3 siblings, 0 replies; 4+ messages in thread
From: ClusterFuzz-External via monorail @ 2022-03-22 14:34 UTC (permalink / raw)
  To: elfutils-devel

Updates:
	Labels: ClusterFuzz-Verified
	Status: Verified

Comment #3 on issue 45646 by ClusterFuzz-External: elfutils:fuzz-libdwfl: Misaligned-address in __libdw_image_header
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=45646#c3

ClusterFuzz testcase 5699171619831808 is verified as fixed in https://oss-fuzz.com/revisions?job=libfuzzer_ubsan_elfutils&range=202203210605:202203211200

If this is incorrect, please file a bug on https://github.com/google/oss-fuzz/issues/new

-- 
You received this message because:
  1. You were specifically CC'd on the issue

You may adjust your notification preferences at:
https://bugs.chromium.org/hosting/settings

Reply to this email to add a comment.

^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2022-03-22 14:34 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
     [not found] <0=71cc74a7ba1af446b7ed6b9a08b414d9=1f7922c08a4ad559eae053cc22756846=oss-fuzz@monorail-prod.appspotmail.com>
2022-03-17 11:57 ` Issue 45646 in oss-fuzz: elfutils:fuzz-libdwfl: Misaligned-address in __libdw_image_header ClusterFuzz-External via monorail
2022-03-20 10:03 ` da… via monorail
2022-03-20 10:04 ` da… via monorail
2022-03-22 14:34 ` ClusterFuzz-External via monorail

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).