apache / apache/arrow-java

[Java] FuzzIpcFile: Uncaught exception in java.base/java.nio.Buffer.checkIndex

Abierto
#357 0 comentarios 0 reacciones 0 asignados Ver en GitHub
Type: bug
Lenguaje dominante
Java
Estrellas
94
Forks
152
Merge medio
3 d 16 h
PR fusionados (30 d)
11

Descripción

Detailed Report: https://oss-fuzz.com/testcase?key=5518211972464640

Project: arrow-java
Fuzzing Engine: libFuzzer
Fuzz Target: FuzzIpcFile
Job Type: libfuzzer_asan_arrow-java
Platform Id: linux

Crash Type: Uncaught exception
Crash Address:
Crash State:
java.base/java.nio.Buffer.checkIndex
java.base/java.nio.HeapByteBuffer.getInt
com.google.flatbuffers.Table.__reset

Sanitizer: address (ASAN)

Crash Revision: https://oss-fuzz.com/revisions?job=libfuzzer_asan_arrow-java&revision=202201300605

Reproducer Testcase: https://oss-fuzz.com/download?testcase_id=5518211972464640

Issue filed automatically.

See https://google.github.io/oss-fuzz/advanced-topics/reproducing for instructions to reproduce this bug locally.
When you fix this bug, please
- mention the fix revision(s).
- state whether the bug was a short-lived regression or an old bug in any stable releases.
- add any other useful information.
This information can help downstream consumers.

If you need to contact the OSS-Fuzz team with a question, concern, or any other feedback, please file an issue at https://github.com/google/oss-fuzz/issues. Comments on individual Monorail issues are not monitored.

This bug is subject to a 90 day disclosure deadline. If 90 days elapse
without an upstream patch, then the bug report will automatically
become visible to the public.

**Reporter**: [Liya Fan](https://issues.apache.org/jira/browse/ARROW-15558) / @liyafan82

**Note**: *This issue was originally created as [ARROW-15558](https://issues.apache.org/jira/browse/ARROW-15558). Please see the [migration documentation](https://github.com/apache/arrow/issues/14542) for further details.*

Guía de contribución

Abrir la guía de contribución

Línea de trabajo

Comienza con el reproductor de OSS-Fuzz para FuzzIpcFile y las instrucciones de reproducción enlazadas. Rastrea el stack reportado de Buffer.checkIndex, HeapByteBuffer.getInt y Table.__reset en arrow-java; se considera terminado cuando el caso de prueba ya no provoca una excepción no capturada.

Escrito por el modelo de indexación a partir del texto del issue.

Evaluación

Stack tecnológico
java
Área
data, testing
Tipo de issue
Error
Dificultad
4/5
Tiempo estimado
3-5 días
Estado de actividad
Estancado
Claridad
Necesita aclaración
Aptitud para principiantes
32/100

Recibe los nuevos issues en tu correo

Un resumen breve de issues de GitHub para principiantes.