Closed Bug 1168009 Opened 9 years ago Closed 9 years ago

heap-use-after-free (ASAN build) in updater.cpp mstrtok

Categories

(Toolkit :: Application Update, defect)

defect
Not set
normal

Tracking

()

RESOLVED FIXED
mozilla41
Tracking Status
firefox41 --- fixed

People

(Reporter: robert.strong.bugs, Assigned: robert.strong.bugs)

References

Details

(Keywords: csectype-uaf)

Attachments

(1 file)

00:38:39     INFO -  ==2579==ERROR: AddressSanitizer: heap-use-after-free on address 0x60e000030f60 at pc 0x493798 bp 0x7f9ba0ffd070 sp 0x7f9ba0ffd068
00:38:39     INFO -  READ of size 1 at 0x60e000030f60 thread T3
00:38:39     INFO -      #0 0x493797 in mstrtok /builds/slave/try-l64-asan-00000000000000000/build/src/toolkit/mozapps/update/updater/updater.cpp:310
00:38:39     INFO -      #1 0x493797 in DoUpdate /builds/slave/try-l64-asan-00000000000000000/build/src/toolkit/mozapps/update/updater/updater.cpp:3768
Attached patch patchSplinter Review
Assignee: nobody → robert.strong.bugs
Status: NEW → ASSIGNED
Attachment #8609927 - Flags: review?(spohl.mozilla.bugs)
Attachment #8609927 - Flags: review?(spohl.mozilla.bugs) → review+
https://hg.mozilla.org/mozilla-central/rev/23410ef11a4a
Status: ASSIGNED → RESOLVED
Closed: 9 years ago
Resolution: --- → FIXED
Target Milestone: --- → mozilla41
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Created:
Updated:
Size: