From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: <3Rvw2Yg0bADMbdcdgPXa-egdSPeeXS.VddVaTjhTgRdciTci.Rdb@M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com> Received: from mail-io1-xd46.google.com (mail-io1-xd46.google.com [IPv6:2607:f8b0:4864:20::d46]) by sourceware.org (Postfix) with ESMTPS id A04143858407 for ; Sun, 20 Mar 2022 10:04:54 +0000 (GMT) DMARC-Filter: OpenDMARC Filter v1.4.1 sourceware.org A04143858407 Received: by mail-io1-xd46.google.com with SMTP id y3-20020a056602178300b00645d25c30c1so8531019iox.6 for ; Sun, 20 Mar 2022 03:04:54 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:date:reply-to:references:message-id :subject:from:to; bh=POK3eGK8ashmZZDzfM39KLktrxJtMuq5tOlyKusTCvc=; b=36UejndWXvI4To/BY6N39+MwZtZ4DhX1fWUOb7Q8+6tITBeOdKKzP4aY1MkcEruEzU LWW8yZyOmu2jfyOgGRc0ghaHlPSirxM+nNC1OavEEG5/DNDD3I4hql7sqTIhS1FGL090 LIXWFRvmybs1ujUKbaRy148ezyWIXCjAwVH48UnuCcJ0TbUYUrWVD7sDcDEH6mmyVJS+ gGwd6X9OFYwUXmLt/V1e04lX6o5LGihp6CLuCzsNfKMfCWNtRSbSNc5GRXJAvHe7ddJ3 ftWrzLMqkX4vXCRse6cq36U/cBjjU4oHU78zFkzBRNc28HcvvkRPmonvbcjz77mTxfP5 D72Q== X-Gm-Message-State: AOAM533NEwduXUpR7NW3aYGV7UCdCDAWxI7XAdNUel7kUmEZd/IUU9rR 7EXjuymQdjOw+iH4MYSJkWKHNLCADJO990lI6lVs1U66b0/y X-Google-Smtp-Source: ABdhPJxAhlbzgK7ENUaIAqhrKq5zwlrP5wbm0kHn5wWtCknyeK/6rj3xYZxVm/FtDwvEYQnwq/xsLJDOOz1xqqF6kOBYwMz3D2Bp MIME-Version: 1.0 X-Received: by 2002:a05:6e02:b46:b0:2c6:38f2:36cc with SMTP id f6-20020a056e020b4600b002c638f236ccmr8341001ilu.153.1647770694087; Sun, 20 Mar 2022 03:04:54 -0700 (PDT) Date: Sun, 20 Mar 2022 03:04:54 -0700 Reply-To: oss-fuzz@monorail-prod.appspotmail.com References: <0=71cc74a7ba1af446b7ed6b9a08b414d9=a85441926cb00ec9ce25fb4e2b57efdb=oss-fuzz@monorail-prod.appspotmail.com> X-Google-Appengine-App-Id: s~monorail-prod X-Google-Appengine-App-Id-Alias: monorail-prod Message-ID: <000000000000e47d2805daa382d9@google.com> Subject: Issue 45682 in oss-fuzz: elfutils:fuzz-libelf: Misaligned-address in elf_cvt_Verneed From: =?UTF-8?B?ZGHigKYgdmlhIG1vbm9yYWls?= To: elfutils-devel@sourceware.org X-Spam-Status: No, score=-1.3 required=5.0 tests=BAYES_00, DKIMWL_WL_HIGH, DKIM_SIGNED, DKIM_VALID, DKIM_VALID_AU, HEADER_FROM_DIFFERENT_DOMAINS, HTML_MESSAGE, RCVD_IN_DNSWL_NONE, SPF_HELO_NONE, SPF_PASS, TXREP, T_SCC_BODY_TEXT_LINE autolearn=ham autolearn_force=no version=3.4.4 X-Spam-Checker-Version: SpamAssassin 3.4.4 (2020-01-24) on server2.sourceware.org Content-Type: text/plain; charset="UTF-8" X-Content-Filtered-By: Mailman/MimeDel 2.1.29 X-BeenThere: elfutils-devel@sourceware.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: Elfutils-devel mailing list List-Unsubscribe: , List-Archive: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 20 Mar 2022 10:04:56 -0000 Comment #1 on issue 45682 by da...@adalogics.com: elfutils:fuzz-libelf: Misaligned-address in elf_cvt_Verneed https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=45682#c1 UBSAN report Running: /mnt/scratch0/clusterfuzz/bot/inputs/fuzzer-testcases/crash-cf18cd9802d6953b96a96cb2364e46ade2dccddc version_xlate.h:204:22: runtime error: member access within misaligned address 0x000002dfee46 for type 'GElf_Vernaux' (aka 'Elf64_Vernaux'), which requires 4 byte alignment 0x000002dfee46: note: pointer points here 4c 46 01 02 01 20 00 00 00 04 20 20 20 20 00 00 00 02 20 20 20 20 20 20 20 20 20 20 20 20 00 00 ^ #0 0x4c63b6 in elf_cvt_Verneed /src/elfutils/libelf/version_xlate.h:204:22 #1 0x4be96f in convert_data /src/elfutils/libelf/elf_getdata.c:192:7 #2 0x4be96f in __libelf_set_data_list_rdlock /src/elfutils/libelf/elf_getdata.c:453:7 #3 0x4bf17e in __elf_getdata_rdlock /src/elfutils/libelf/elf_getdata.c:560:5 #4 0x4bf39e in elf_getdata /src/elfutils/libelf/elf_getdata.c:578:12 #5 0x4c2d88 in elf_compress_gnu /src/elfutils/libelf/elf_compress_gnu.c:150:24 #6 0x4b2e03 in fuzz_logic_one /src/fuzz-libelf.c:48:15 #7 0x4b303f in LLVMFuzzerTestOneInput /src/fuzz-libelf.c:81:3 #8 0x43d812 in fuzzer::Fuzzer::ExecuteCallback(unsigned char const*, unsigned long) /src/llvm-project/compiler-rt/lib/fuzzer/FuzzerLoop.cpp:611:15 #9 0x4293c2 in fuzzer::RunOneTest(fuzzer::Fuzzer*, char const*, unsigned long) /src/llvm-project/compiler-rt/lib/fuzzer/FuzzerDriver.cpp:324:6 #10 0x42ec2c in fuzzer::FuzzerDriver(int*, char***, int (*)(unsigned char const*, unsigned long)) /src/llvm-project/compiler-rt/lib/fuzzer/FuzzerDriver.cpp:860:9 #11 0x4575c2 in main /src/llvm-project/compiler-rt/lib/fuzzer/FuzzerMain.cpp:20:10 #12 0x7f20c9b5d0b2 in __libc_start_main /build/glibc-eX1tMB/glibc-2.31/csu/libc-start.c:308:16 #13 0x407b0d in _start SUMMARY: UndefinedBehaviorSanitizer: undefined-behavior version_xlate.h:204:22 in -- You received this message because: 1. You were specifically CC'd on the issue You may adjust your notification preferences at: https://bugs.chromium.org/hosting/settings Reply to this email to add a comment.