-
-
Notifications
You must be signed in to change notification settings - Fork 359
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Multiple nullptr reads in dwarf_process.c #2971
Milestone
Comments
wargio
added a commit
that referenced
this issue
Aug 22, 2022
wargio
added a commit
that referenced
this issue
Aug 22, 2022
wargio
added a commit
that referenced
this issue
Aug 22, 2022
wargio
added a commit
that referenced
this issue
Aug 23, 2022
wargio
added a commit
that referenced
this issue
Aug 23, 2022
wargio
added a commit
that referenced
this issue
Aug 23, 2022
XVilka
pushed a commit
that referenced
this issue
Aug 24, 2022
XVilka
pushed a commit
that referenced
this issue
Aug 24, 2022
XVilka
pushed a commit
that referenced
this issue
Aug 24, 2022
imbillow
pushed a commit
that referenced
this issue
Aug 24, 2022
XVilka
pushed a commit
that referenced
this issue
Aug 30, 2022
XVilka
pushed a commit
that referenced
this issue
Aug 30, 2022
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Hi! We've been fuzzing your project and found the following errors in
librz/analysis/dwarf_process.c
Work environment
OS: Ubuntu 20.04
File format: -
rizin version: 4b38597
Bug description
Nullptr read in
dwarf_process.c:1271:20
, Crash file: crash-bbb0f10c5d022afa379a12bd43e3d51400b45669.zipNullptr read in
dwarf_process.c:1282:19
, Crash file: crash-6124bc2a5882871f594be1a2cab2507f0b6a1e0e.zipSteps to reproduce
Build docker container from https://github.com/ispras/oss-sydr-fuzz/tree/master/projects/rizin:
sudo docker build -t oss-sydr-fuzz-rizin .
Run docker container:
sudo docker run --privileged --network host -v /etc/localtime:/etc/localtime:ro --rm -it -v $PWD:/fuzz oss-sydr-fuzz-rizin /bin/bash
Execute rizin with crashing input:
/rizin-fuzzing/libfuzzer-asan/bin/rizin -qq crash-bbb0f10c5d022afa379a12bd43e3d51400b45669
You will see the following output:
The second crash is similar
The text was updated successfully, but these errors were encountered: