Last Comment Bug 306098 - SVG fuzz testing
: SVG fuzz testing
Status: RESOLVED INVALID
:
Product: Core
Classification: Components
Component: SVG (show other bugs)
: Trunk
: All All
: -- enhancement with 1 vote (vote)
: ---
Assigned To: Jesse Ruderman
:
: Jet Villegas (:jet)
Mentors:
Depends on:
Blocks: 306101
  Show dependency treegraph
 
Reported: 2005-08-26 13:13 PDT by Jesse Ruderman
Modified: 2010-01-14 14:05 PST (History)
4 users (show)
See Also:
Crash Signature:
(edit)
QA Whiteboard:
Iteration: ---
Points: ---
Has Regression Range: ---
Has STR: ---


Attachments

Description Jesse Ruderman 2005-08-26 13:13:07 PDT
It might be useful to have a tool that generates random, weird SVG files.  A
similar tool for HTML, Zalewski's mangleme.cgi, turned up a lot of crash bugs in
Gecko (tracked by bug 264944), including several potential security holes.
Comment 1 Jesse Ruderman 2010-01-13 19:33:27 PST
I've been fuzzing SVG elsewhere.
Comment 2 Helder "Lthere" Magalhães 2010-01-14 13:25:31 PST
(In reply to comment #1)
> I've been fuzzing SVG elsewhere.

Please define "elsewhere": am I missing some project and/or bug which this has been/is currently being done? If so, stating that when closing this bug would have been useful... ;-)


As were at it, I'd also take this opportunity to leave a link to SVG Torture Tests [1], a somehow related initiative. :-)


[1] http://code.google.com/p/svgtorture/
Comment 3 Robert Longson 2010-01-14 14:05:00 PST
Fuzz testers are security sensitive so you won't see them in public bugzilla bugs.

Note You need to log in before you can comment on or make changes to this bug.