Wireshark-bugs: [Wireshark-bugs] [Bug 11527] New: Buildbot crash output: fuzz-2015-09-14-12129.p

Date: Wed, 16 Sep 2015 00:10:03 +0000
Bug ID 11527
Summary Buildbot crash output: fuzz-2015-09-14-12129.pcap
Product Wireshark
Version unspecified
Hardware x86-64
URL https://www.wireshark.org/download/automated/captures/fuzz-2015-09-14-12129.pcap
OS Ubuntu
Status CONFIRMED
Severity Major
Priority High
Component Dissection engine (libwireshark)
Assignee [email protected]
Reporter [email protected]

Problems have been found with the following capture file:

https://www.wireshark.org/download/automated/captures/fuzz-2015-09-14-12129.pcap

stderr:
Input file:
/home/wireshark/menagerie/menagerie/3873-wpa2-aes_pass_63_cant_decode_fil.pcap

Build host information:
Linux wsbb04 3.13.0-61-generic #100-Ubuntu SMP Wed Jul 29 11:21:34 UTC 2015
x86_64 x86_64 x86_64 GNU/Linux
Distributor ID:    Ubuntu
Description:    Ubuntu 14.04.3 LTS
Release:    14.04
Codename:    trusty

Buildbot information:
BUILDBOT_REPOSITORY=ssh://[email protected]:29418/wireshark
BUILDBOT_BUILDNUMBER=3311
BUILDBOT_URL=http://buildbot.wireshark.org/trunk/
BUILDBOT_BUILDERNAME=Clang Code Analysis
BUILDBOT_SLAVENAME=clang-code-analysis
BUILDBOT_GOT_REVISION=e4c0e510b8468861ec03f29859bf29c5c15edb99

Return value:  0

Dissector bug:  0

Valgrind error count:  2



Git commit
commit e4c0e510b8468861ec03f29859bf29c5c15edb99
Author: João Valverde <[email protected]>
Date:   Sat Sep 12 15:16:31 2015 +0100

    IPv4: Add missing space to format string

    Change-Id: Iac602d9417a5af8f762043e5d743713fbeb8e339
    Reviewed-on: https://code.wireshark.org/review/10503
    Reviewed-by: Michael Mann <[email protected]>


Command and args: ./tools/valgrind-wireshark.sh 

==16247== Memcheck, a memory error detector
==16247== Copyright (C) 2002-2013, and GNU GPL'd, by Julian Seward et al.
==16247== Using Valgrind-3.10.0.SVN and LibVEX; rerun with -h for copyright
info
==16247== Command:
/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install/bin/tshark
-nr /fuzz/buildbot/clangcodeanalysis/valgrind-fuzz/fuzz-2015-09-14-12129.pcap
==16247== 
==16247== Conditional jump or move depends on uninitialised value(s)
==16247==    at 0x6823095: AirPDcapDecryptWPABroadcastKey (airpdcap.c:415)
==16247==    by 0x68222E3: AirPDcapScanForKeys (airpdcap.c:1428)
==16247==    by 0x6BABF7E: dissect_ieee80211_common (packet-ieee80211.c:17688)
==16247==    by 0x6BA7D35: dissect_ieee80211 (packet-ieee80211.c:18295)
==16247==    by 0x67D7BAF: call_dissector_work (packet.c:618)
==16247==    by 0x67D716C: call_dissector_with_data (packet.c:2570)
==16247==    by 0x67D7BAF: call_dissector_work (packet.c:618)
==16247==    by 0x67D716C: call_dissector_with_data (packet.c:2570)
==16247==    by 0x6DBE6EB: dissect_ppi (packet-ppi.c:1129)
==16247==    by 0x67D7BCD: call_dissector_work (packet.c:620)
==16247==    by 0x67D7A4E: dissector_try_uint_new (packet.c:1163)
==16247==    by 0x6AC0DBF: dissect_frame (packet-frame.c:499)
==16247== 
==16247== Conditional jump or move depends on uninitialised value(s)
==16247==    at 0x6823082: AirPDcapDecryptWPABroadcastKey (airpdcap.c:409)
==16247==    by 0x68222E3: AirPDcapScanForKeys (airpdcap.c:1428)
==16247==    by 0x6BABF7E: dissect_ieee80211_common (packet-ieee80211.c:17688)
==16247==    by 0x6BA7D35: dissect_ieee80211 (packet-ieee80211.c:18295)
==16247==    by 0x67D7BAF: call_dissector_work (packet.c:618)
==16247==    by 0x67D716C: call_dissector_with_data (packet.c:2570)
==16247==    by 0x67D7BAF: call_dissector_work (packet.c:618)
==16247==    by 0x67D716C: call_dissector_with_data (packet.c:2570)
==16247==    by 0x6DBE6EB: dissect_ppi (packet-ppi.c:1129)
==16247==    by 0x67D7BCD: call_dissector_work (packet.c:620)
==16247==    by 0x67D7A4E: dissector_try_uint_new (packet.c:1163)
==16247==    by 0x6AC0DBF: dissect_frame (packet-frame.c:499)
==16247== 
==16247== 
==16247== HEAP SUMMARY:
==16247==     in use at exit: 1,037,233 bytes in 28,190 blocks
==16247==   total heap usage: 639,845 allocs, 611,655 frees, 52,708,334 bytes
allocated
==16247== 
==16247== LEAK SUMMARY:
==16247==    definitely lost: 2,932 bytes in 126 blocks
==16247==    indirectly lost: 36,456 bytes in 49 blocks
==16247==      possibly lost: 0 bytes in 0 blocks
==16247==    still reachable: 997,845 bytes in 28,015 blocks
==16247==         suppressed: 0 bytes in 0 blocks
==16247== Rerun with --leak-check=full to see details of leaked memory
==16247== 
==16247== For counts of detected and suppressed errors, rerun with: -v
==16247== Use --track-origins=yes to see where uninitialised values come from
==16247== ERROR SUMMARY: 2 errors from 2 contexts (suppressed: 0 from 0)

[ no debug trace ]


You are receiving this mail because:
  • You are watching all bug changes.