apache / apache/arrow-java

[Java] FuzzIpcStream: Uncaught exception in org.apache.arrow.memory.BaseAllocator.buffer

未關閉
#354 0 則留言 0 個 reaction 已指派 0 人 在 GitHub 檢視
Type: bug
主要語言
Java
星號
94
分支
152
平均合併
3 天 16 小時
30 天內合併 PR
11

描述

Detailed Report: https://oss-fuzz.com/testcase?key=6427573486223360

Project: arrow-java
Fuzzing Engine: libFuzzer
Fuzz Target: FuzzIpcStream
Job Type: libfuzzer_asan_arrow-java
Platform Id: linux

Crash Type: Uncaught exception
Crash Address:
Crash State:
org.apache.arrow.memory.BaseAllocator.buffer
org.apache.arrow.memory.RootAllocator.buffer
org.apache.arrow.memory.BaseAllocator.buffer

Sanitizer: address (ASAN)

Crash Revision: https://oss-fuzz.com/revisions?job=libfuzzer_asan_arrow-java&revision=202201310606

Reproducer Testcase: https://oss-fuzz.com/download?testcase_id=6427573486223360

Issue filed automatically.

See https://google.github.io/oss-fuzz/advanced-topics/reproducing for instructions to reproduce this bug locally.
When you fix this bug, please
- mention the fix revision(s).
- state whether the bug was a short-lived regression or an old bug in any stable releases.
- add any other useful information.
This information can help downstream consumers.

If you need to contact the OSS-Fuzz team with a question, concern, or any other feedback, please file an issue at https://github.com/google/oss-fuzz/issues. Comments on individual Monorail issues are not monitored.

This bug is subject to a 90 day disclosure deadline. If 90 days elapse
without an upstream patch, then the bug report will automatically
become visible to the public.

**Reporter**: [Liya Fan](https://issues.apache.org/jira/browse/ARROW-15561) / @liyafan82

**Note**: *This issue was originally created as [ARROW-15561](https://issues.apache.org/jira/browse/ARROW-15561). Please see the [migration documentation](https://github.com/apache/arrow/issues/14542) for further details.*

貢獻指南

開啟貢獻指南

研究方向

先按照 OSS-Fuzz 針對目標 FuzzIpcStream 和所連結 testcase 的重現說明進行操作,然後檢查 BaseAllocator.buffer 的堆疊追蹤。payload 沒有指定原始檔案或測試;完成的標準是重現未捕捉的例外,並驗證 upstream fix 能夠阻止該例外。

由索引模型根據 Issue 內容生成。

評估

技術堆疊
java
領域
data-engineering
Issue 類型
缺陷
難度
5/5
預估耗時
一週以上
活躍度
停滯
描述清晰度
需要釐清
新手友好度
20/100

把新 issue 寄到你的電子郵件信箱

精選適合新手參與的 GitHub issue 摘要。