Closed Bug 1331426 Opened 8 years ago Closed 3 years ago

Investigate using GRR fuzzer for JS engine

Categories

(Core :: Fuzzing, defect, P3)

defect

Tracking

()

VERIFIED WONTFIX

People

(Reporter: mayankleoboy1, Unassigned)

Details

(Keywords: triage-deferred)

User Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:53.0) Gecko/20100101 Firefox/53.0 Build ID: 20170115030210 Steps to reproduce: https://blog.trailofbits.com/2016/11/02/shin-grr-make-fuzzing-fast-again/ has been released to public, and opensourced. From the description: "GRR eats JIT compilers and self-modifying code for breakfast" It might be useful to investigate this as another fuzzer for the JS engine Actual results: Tentative ni? , based on JS+fuzzing.
Flags: needinfo?(gary)
Flags: needinfo?(fuzzing)
Flags: needinfo?(choller)
Flags: needinfo?(fuzzing)
Not getting to this anytime soon.
Flags: needinfo?(gary)
Keywords: triage-deferred
Priority: -- → P3
Status: UNCONFIRMED → NEW
Ever confirmed: true
Flags: needinfo?(choller)
Component: JavaScript Engine → Fuzzing

Any interest in this? Else im happy to close it

Flags: needinfo?(choller)
Flags: needinfo?(choller)
Status: NEW → RESOLVED
Closed: 3 years ago
Resolution: --- → INVALID
Status: RESOLVED → VERIFIED
Resolution: INVALID → WONTFIX
You need to log in before you can comment on or make changes to this bug.