Closed
Bug 1785991
Opened 2 years ago
Closed 2 years ago
Build a COLRv1 fuzzer
Categories
(Core :: Layout: Text and Fonts, task)
Tracking
()
RESOLVED
FIXED
106 Branch
Tracking | Status | |
---|---|---|
firefox-esr91 | --- | unaffected |
firefox-esr102 | --- | unaffected |
firefox104 | --- | unaffected |
firefox105 | --- | wontfix |
firefox106 | --- | fixed |
People
(Reporter: decoder, Assigned: decoder)
References
Details
(Keywords: sec-other, Whiteboard: [post-critsmash-triage][adv-main106-])
Attachments
(1 file, 2 obsolete files)
COLRv1 is a high risk feature that needs fuzzing coverage (likely through FuzzingInterface with libFuzzer). Our implementation is independent of the freetype implementation already tested in oss-fuzz.
Assignee | ||
Comment 1•2 years ago
|
||
Comment 2•2 years ago
|
||
Comment 3•2 years ago
|
||
Comment 4•2 years ago
|
||
Comment on attachment 9292225 [details]
Bug 1785991 - Check for bad outerIndex value. r=lsalzman
Revision D155958 was moved to bug 1788005. Setting attachment 9292225 [details] to obsolete.
Attachment #9292225 -
Attachment is obsolete: true
Updated•2 years ago
|
Attachment #9290607 -
Attachment description: WIP: Bug 1785991 - Add COLRv1 fuzzer. r=jkew → Bug 1785991 - Add COLRv1 fuzzer. r=jfkthame
Updated•2 years ago
|
Attachment #9290885 -
Attachment is obsolete: true
Comment 5•2 years ago
|
||
Add COLRv1 fuzzer. r=jfkthame
https://hg.mozilla.org/integration/autoland/rev/91edb8eb2baea8a7326c8014c685eca1848a187d
https://hg.mozilla.org/mozilla-central/rev/91edb8eb2bae
Status: NEW → RESOLVED
Closed: 2 years ago
status-firefox106:
--- → fixed
Resolution: --- → FIXED
Target Milestone: --- → 106 Branch
Updated•2 years ago
|
status-firefox104:
--- → unaffected
status-firefox-esr102:
--- → unaffected
status-firefox-esr91:
--- → unaffected
Updated•2 years ago
|
Flags: qe-verify-
Whiteboard: [post-critsmash-triage]
Updated•2 years ago
|
Whiteboard: [post-critsmash-triage] → [post-critsmash-triage][adv-main106-]
Updated•1 year ago
|
Group: core-security-release
You need to log in
before you can comment on or make changes to this bug.
Description
•