Wireshark-bugs: [Wireshark-bugs] [Bug 13063] New: Buildbot crash output: fuzz-2016-10-27-29315.p
Date: Fri, 28 Oct 2016 05:00:04 +0000
Bug ID | 13063 |
---|---|
Summary | Buildbot crash output: fuzz-2016-10-27-29315.pcap |
Product | Wireshark |
Version | unspecified |
Hardware | x86-64 |
URL | https://www.wireshark.org/download/automated/captures/fuzz-2016-10-27-29315.pcap |
OS | Ubuntu |
Status | CONFIRMED |
Severity | Major |
Priority | High |
Component | Dissection engine (libwireshark) |
Assignee | [email protected] |
Reporter | [email protected] |
Problems have been found with the following capture file: https://www.wireshark.org/download/automated/captures/fuzz-2016-10-27-29315.pcap stderr: Input file: /home/wireshark/menagerie/menagerie/ECE_229_4_29_2pm_to_248pm.pcap Build host information: Linux wsbb04 4.4.0-45-generic #66-Ubuntu SMP Wed Oct 19 14:12:37 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux Distributor ID: Ubuntu Description: Ubuntu 16.04.1 LTS Release: 16.04 Codename: xenial Buildbot information: BUILDBOT_REPOSITORY=ssh://[email protected]:29418/wireshark BUILDBOT_WORKERNAME=clang-code-analysis BUILDBOT_BUILDNUMBER=3766 BUILDBOT_URL=http://buildbot.wireshark.org/wireshark-master/ BUILDBOT_BUILDERNAME=Clang Code Analysis BUILDBOT_GOT_REVISION=1fae14257a8a7ade813930097a12dd3e555a9f76 Return value: 0 Dissector bug: 0 Valgrind error count: 0 Git commit commit 1fae14257a8a7ade813930097a12dd3e555a9f76 Author: Pascal Quantin <[email protected]> Date: Thu Oct 27 23:41:51 2016 +0200 merge.c: do not give a NULL pointer when saving SHB comment option Bug: 13060 Change-Id: Ib3dd019f73305e4006b312d324502e4a138c6a16 Reviewed-on: https://code.wireshark.org/review/18514 Reviewed-by: Pascal Quantin <[email protected]> Petri-Dish: Pascal Quantin <[email protected]> Reviewed-by: Guy Harris <[email protected]> ================================================================= ==22514==ERROR: AddressSanitizer: heap-buffer-overflow on address 0x61d00015ca80 at pc 0x000000440c13 bp 0x7fff203d1110 sp 0x7fff203d08c0 READ of size 1995 at 0x61d00015ca80 thread T0 #0 0x440c12 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/bin/tshark+0x440c12) #1 0x7f32515a20cf (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x841e0cf) #2 0x7f3250b0c9fc (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x79889fc) #3 0x7f3250b0c6ca (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x79886ca) #4 0x7f325188e764 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x870a764) #5 0x7f3251892061 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x870e061) #6 0x7f325188fffc (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x870bffc) #7 0x7f3251899764 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x8715764) #8 0x7f3250b0c9fc (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x79889fc) #9 0x7f3250b0c6ca (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x79886ca) #10 0x7f325125e393 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x80da393) #11 0x7f3250b0c9fc (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x79889fc) #12 0x7f3250b0ccc8 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x7988cc8) #13 0x7f3251078ef8 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x7ef4ef8) #14 0x7f3250b0c9fc (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x79889fc) #15 0x7f3250b0a1fc (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x79861fc) #16 0x7f3251077508 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x7ef3508) #17 0x7f3251075e30 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x7ef1e30) #18 0x7f3250b0c9fc (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x79889fc) #19 0x7f3250b0c6ca (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x79886ca) #20 0x7f32510c1992 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x7f3d992) #21 0x7f3250b0c9fc (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x79889fc) #22 0x7f3250b0a1fc (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x79861fc) #23 0x7f3250b099ca (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x79859ca) #24 0x7f3250aefb6e (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/lib/libwireshark.so.0+0x796bb6e) #25 0x50e744 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/bin/tshark+0x50e744) #26 0x508e15 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/bin/tshark+0x508e15) #27 0x7f3246a3b82f (/lib/x86_64-linux-gnu/libc.so.6+0x2082f) #28 0x423038 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/bin/tshark+0x423038) 0x61d00015ca80 is located 0 bytes to the right of 2048-byte region [0x61d00015c280,0x61d00015ca80) allocated by thread T0 here: #0 0x4c3168 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/bin/tshark+0x4c3168) #1 0x7f3248856728 (/lib/x86_64-linux-gnu/libglib-2.0.so.0+0x4f728) #2 0x50c426 (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/bin/tshark+0x50c426) #3 0x50747c (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/bin/tshark+0x50747c) #4 0x7f3246a3b82f (/lib/x86_64-linux-gnu/libc.so.6+0x2082f) SUMMARY: AddressSanitizer: heap-buffer-overflow (/home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.asan/bin/tshark+0x440c12) Shadow bytes around the buggy address: 0x0c3a80023900: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0x0c3a80023910: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0x0c3a80023920: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0x0c3a80023930: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0x0c3a80023940: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 =>0x0c3a80023950:[fa]fa fa fa fa fa fa fa fa fa fa fa fa fa fa fa 0x0c3a80023960: fa fa fa fa fa fa fa fa fa fa fa fa fa fa fa fa 0x0c3a80023970: fa fa fa fa fa fa fa fa fa fa fa fa fa fa fa fa 0x0c3a80023980: fa fa fa fa fa fa fa fa fa fa fa fa fa fa fa fa 0x0c3a80023990: fa fa fa fa fa fa fa fa fa fa fa fa fa fa fa fa 0x0c3a800239a0: fa fa fa fa fa fa fa fa fa fa fa fa fa fa fa fa Shadow byte legend (one shadow byte represents 8 application bytes): Addressable: 00 Partially addressable: 01 02 03 04 05 06 07 Heap left redzone: fa Heap right redzone: fb Freed heap region: fd Stack left redzone: f1 Stack mid redzone: f2 Stack right redzone: f3 Stack partial redzone: f4 Stack after return: f5 Stack use after scope: f8 Global redzone: f9 Global init order: f6 Poisoned by user: f7 Container overflow: fc Array cookie: ac Intra object redzone: bb ASan internal: fe Left alloca redzone: ca Right alloca redzone: cb ==22514==ABORTING [ no debug trace ]
You are receiving this mail because:
- You are watching all bug changes.
- Follow-Ups:
- [Wireshark-bugs] [Bug 13063] Buildbot crash output: fuzz-2016-10-27-29315.pcap
- From: bugzilla-daemon
- [Wireshark-bugs] [Bug 13063] Buildbot crash output: fuzz-2016-10-27-29315.pcap
- Prev by Date: [Wireshark-bugs] [Bug 13062] New: Buildbot crash output: fuzz-2016-10-27-20662.pcap
- Next by Date: [Wireshark-bugs] [Bug 13054] Buildbot crash output: fuzz-2016-10-26-15841.pcap
- Previous by thread: [Wireshark-bugs] [Bug 13062] Buildbot crash output: fuzz-2016-10-27-20662.pcap
- Next by thread: [Wireshark-bugs] [Bug 13063] Buildbot crash output: fuzz-2016-10-27-29315.pcap
- Index(es):