apache / apache/arrow-java

[Java] FuzzIpcStream: Uncaught exception in java.base/java.nio.Buffer.createCapacityException

Ouverte
#355 0 commentaires 0 réactions 0 personnes assignées Voir sur GitHub
Type: bug
Langage dominant
Java
Étoiles
94
Forks
152
Merge moyen
3 j 16 h
PR mergées (30 j)
11

Description

Detailed Report: https://oss-fuzz.com/testcase?key=5095153130405888

Project: arrow-java
Fuzzing Engine: libFuzzer
Fuzz Target: FuzzIpcStream
Job Type: libfuzzer_asan_arrow-java
Platform Id: linux

Crash Type: Uncaught exception
Crash Address:
Crash State:
java.base/java.nio.Buffer.createCapacityException
java.base/java.nio.ByteBuffer.allocate
org.apache.arrow.vector.ipc.message.MessageSerializer.readMessage

Sanitizer: address (ASAN)

Crash Revision: https://oss-fuzz.com/revisions?job=libfuzzer_asan_arrow-java&revision=202201300605

Reproducer Testcase: https://oss-fuzz.com/download?testcase_id=5095153130405888

Issue filed automatically.

See https://google.github.io/oss-fuzz/advanced-topics/reproducing for instructions to reproduce this bug locally.
When you fix this bug, please
- mention the fix revision(s).
- state whether the bug was a short-lived regression or an old bug in any stable releases.
- add any other useful information.
This information can help downstream consumers.

If you need to contact the OSS-Fuzz team with a question, concern, or any other feedback, please file an issue at https://github.com/google/oss-fuzz/issues. Comments on individual Monorail issues are not monitored.

This bug is subject to a 90 day disclosure deadline. If 90 days elapse
without an upstream patch, then the bug report will automatically
become visible to the public.

**Reporter**: [Liya Fan](https://issues.apache.org/jira/browse/ARROW-15560) / @liyafan82

**Note**: *This issue was originally created as [ARROW-15560](https://issues.apache.org/jira/browse/ARROW-15560). Please see the [migration documentation](https://github.com/apache/arrow/issues/14542) for further details.*

Guide de contribution

Ouvrir le guide de contribution

Piste de recherche

Commencez par org.apache.arrow.vector.ipc.message.MessageSerializer.readMessage et reproduisez le crash de FuzzIpcStream à l’aide de testcase 5095153130405888 et des instructions de reproduction d’OSS-Fuzz. Suivez l’échec signalé de ByteBuffer.allocate et vérifiez que le testcase fourni ne produit plus d’exception non interceptée.

Rédigé par le modèle d'indexation à partir du texte de l'issue.

Évaluation

Stack technique
java
Domaine
data-engineering
Type d'issue
Bug
Difficulté
3/5
Temps estimé
1-2 jours
Activité
À l'abandon
Clarté
Plutôt claire
Accessibilité débutants
35/100

Recevez les nouvelles issues par e-mail

Un résumé court des issues GitHub adaptées aux débutants.