-
-
Notifications
You must be signed in to change notification settings - Fork 359
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Multiple heap out-of-bounds reads in ne.c #2972
Milestone
Comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Hi! We've been fuzzing your project and found the following errors in
librz/bin/format/ne/ne.c
Work environment
OS: Ubuntu 20.04
File format: -
rizin version: 4b38597
Bug description
Heap out-of-bounds read of size 1 in
ne.c:432:18
, Crash file: crash-e9f3e4a94499c6730196fbf356896c5811edad4b.zipHeap out-of-bounds read of size 2 in
ne.c:434:19
, Crash file: crash-5d9928f9030dab40fd42c604c140ac3b76dc2fb8.zipHeap out-of-bounds read of size 2 in
ne.c:439:59
, Crash file: crash-sydr_afl_s13-id_009903_time_0_execs_0_orig_id_010279_sync_afl_main-worker_src_010857_out_of_bounds_0.zipHeap out-of-bounds read of size 2 in
ne.c:446:91
, Crash file: crash-9074584bd1bcaabeced6d7060c96538c5017f400.zipSteps to reproduce
Build docker container from https://github.com/ispras/oss-sydr-fuzz/tree/master/projects/rizin:
sudo docker build -t oss-sydr-fuzz-rizin .
Run docker container:
sudo docker run --privileged --network host -v /etc/localtime:/etc/localtime:ro --rm -it -v $PWD:/fuzz oss-sydr-fuzz-rizin /bin/bash
Execute rizin with crashing input:
/rizin-fuzzing/libfuzzer-asan/bin/rizin -qq crash-e9f3e4a94499c6730196fbf356896c5811edad4b
You will see the following output:
The remaining crashes are similar
The text was updated successfully, but these errors were encountered: