Raft of wildptr failures in many opus functions
Categories
(Core :: Audio/Video: Playback, defect, P2)
Tracking
()
People
(Reporter: jesup, Unassigned)
References
Details
(Keywords: crash, csectype-wildptr, sec-high)
Crash Data
Reporter | ||
Updated•7 years ago
|
Reporter | ||
Comment 1•7 years ago
|
||
Comment 2•7 years ago
|
||
Comment 3•7 years ago
|
||
Reporter | ||
Comment 4•7 years ago
|
||
Comment 5•7 years ago
|
||
Reporter | ||
Comment 6•7 years ago
|
||
Comment 7•7 years ago
|
||
Comment 8•7 years ago
|
||
Comment 9•7 years ago
|
||
Comment 10•7 years ago
|
||
Reporter | ||
Comment 11•7 years ago
|
||
Comment 12•7 years ago
|
||
Comment 15•7 years ago
|
||
Comment 16•7 years ago
|
||
Comment 17•7 years ago
|
||
Comment 18•7 years ago
|
||
Comment 19•7 years ago
|
||
Comment 20•7 years ago
|
||
Comment 21•7 years ago
|
||
Updated•6 years ago
|
Comment 22•6 years ago
|
||
Comment 24•6 years ago
|
||
Reporter | ||
Comment 25•6 years ago
|
||
Comment 26•6 years ago
|
||
Comment 27•6 years ago
|
||
Comment 28•6 years ago
|
||
Comment 29•6 years ago
|
||
Comment 30•6 years ago
|
||
Comment 31•6 years ago
|
||
Comment 32•6 years ago
|
||
Comment 33•5 years ago
|
||
Removing employee no longer with company from CC list of private bugs.
Comment 34•5 years ago
|
||
I'm no longer with Mozilla. OTOH, I'm still the Opus maintainer.
Comment 35•3 years ago
|
||
The severity field for this bug is set to normal. However, the bug is flagged with the sec-high
keyword.
:jmvalin, could you consider increasing the severity of this security bug?
For more information, please visit auto_nag documentation.
Comment 37•3 years ago
|
||
I've filed bugs to update opus and make it auto-update; but I can't speak to the investigation of the crashes.
Updated•3 years ago
|
Comment 38•2 years ago
|
||
The bug assignee is inactive on Bugzilla, and this bug has priority 'P1'.
:jimm, could you have a look please?
For more information, please visit auto_nag documentation.
Updated•2 years ago
|
Comment 39•2 years ago
•
|
||
(In reply to Tom Ritter [:tjr] from comment #37)
I've filed bugs to update opus and make it auto-update; but I can't speak to the investigation of the crashes.
Hey Tom, curious, how can I check for recent updates via updatebot? Is there some sort of log or dashboard someplace?
We have updatebot configured for libopus -
https://searchfox.org/mozilla-central/source/media/libopus/moz.yaml
If I search bugzilla for update related bugs though I can't find any recent pulls / posts / attempts since you updated it back in March -
Seems like updatebot should have pulled recent changes in? (Looking at the repo, there have been updates since the last time we pulled the lib in.)
As for this bug, I think I'll break the various signatures that still show up into separate sec bugs for tracking.
Comment 40•2 years ago
|
||
Five of these signature are still showing up on crashstats in Fx version 100 or higher. Very low volume in each case.
https://crash-stats.mozilla.org/signature/?signature=opus_encode_native&date=%3E%3D2022-07-27T12%3A42%3A00.000Z&date=%3C2022-10-27T12%3A42%3A00.000Z
https://crash-stats.mozilla.org/signature/?signature=opus_fft_impl&date=%3E%3D2022-07-27T12%3A42%3A00.000Z&date=%3C2022-10-27T12%3A42%3A00.000Z
https://crash-stats.mozilla.org/signature/?signature=abort%20%7C%20celt_fatal
https://crash-stats.mozilla.org/signature/?signature=quant_all_bands&date=%3E%3D2022-07-27T12%3A40%3A00.000Z&date=%3C2022-10-27T12%3A40%3A00.000Z
https://crash-stats.mozilla.org/signature/?signature=celt_decode_with_ec&date=%3E%3D2022-07-27T12%3A40%3A00.000Z&date=%3C2022-10-27T12%3A40%3A00.000Z
Comment 41•1 year ago
|
||
Reviewing stalled bugs - significantly fewer crashes on record, going to close this incomplete, and if a pattern emerges we can open a new bug to dig into it.
Comment 42•1 year ago
|
||
Since the bug is closed, the stalled keyword is now meaningless.
For more information, please visit BugBot documentation.
Updated•1 year ago
|
Description
•