Closed
Bug 1202936
Opened 9 years ago
Closed 9 years ago
ASan: heap-buffer-overflow in sec_asn1d_parse_identifier()
Categories
(NSS :: Libraries, defect)
Tracking
(firefox43 affected)
RESOLVED
INVALID
Tracking | Status | |
---|---|---|
firefox43 | --- | affected |
People
(Reporter: tsmith, Unassigned)
References
(Blocks 1 open bug)
Details
(4 keywords)
Attachments
(2 files, 1 obsolete file)
I created a fuzzing harness by modifying the test attached to bug 1202868 to read from a file.
Reporter | ||
Comment 1•9 years ago
|
||
Reporter | ||
Updated•9 years ago
|
Summary: ASan: heap-buffer-overflow in sec_asn1d_parse_more_identifier() → ASan: heap-buffer-overflow in sec_asn1d_parse_identifier()
Reporter | ||
Comment 2•9 years ago
|
||
Attachment #8658469 -
Attachment is obsolete: true
Comment 3•9 years ago
|
||
Tyson: I believe this is a harness bug. I'm unable to reproduce with the fix from https://bugzilla.mozilla.org/show_bug.cgi?id=1202868#c8 applied.
Flags: needinfo?(twsmith)
Reporter | ||
Comment 4•9 years ago
|
||
Thanks for catching that Ryan. The harness has been updated and I no longer see this failure.
Status: NEW → RESOLVED
Closed: 9 years ago
Flags: needinfo?(twsmith)
Resolution: --- → INVALID
Updated•9 years ago
|
Group: crypto-core-security
You need to log in
before you can comment on or make changes to this bug.
Description
•