Closed Bug 1206317 Opened 9 years ago Closed 9 years ago

ASan: heap-buffer-overflow in CERT_DecodeOidSequence()

Categories

(NSS :: Libraries, defect)

x86_64
Unspecified
defect
Not set
critical

Tracking

(firefox43 affected)

RESOLVED INVALID
Tracking Status
firefox43 --- affected

People

(Reporter: tsmith, Unassigned)

References

(Blocks 1 open bug)

Details

(4 keywords)

Attachments

(2 files)

Attached file call_stack.txt
I found this with a new fuzzing harness I am working on. I will share it when it is complete.
Attached file test_case.bin
Keywords: sec-high
Does this still repro with the patches for the other 3 bugs applied?
Flags: needinfo?(twsmith)
This appears to have been caused by a typo in my fuzzing test harness.
Status: NEW → RESOLVED
Closed: 9 years ago
Flags: needinfo?(twsmith)
Resolution: --- → INVALID
Group: crypto-core-security
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Created:
Updated:
Size: