[Java] FuzzIpcFile: Uncaught exception in java.base/java.nio.Buffer.checkIndex
- Ngôn ngữ chính
- Java
- Star
- 94
- Fork
- 152
- Merge trung bình
- 3 ngày 16 giờ
- Pull request đã merge (30 ngày)
- 11
Mô tả
Detailed Report: https://oss-fuzz.com/testcase?key=5518211972464640
Project: arrow-java
Fuzzing Engine: libFuzzer
Fuzz Target: FuzzIpcFile
Job Type: libfuzzer_asan_arrow-java
Platform Id: linux
Crash Type: Uncaught exception
Crash Address:
Crash State:
java.base/java.nio.Buffer.checkIndex
java.base/java.nio.HeapByteBuffer.getInt
com.google.flatbuffers.Table.__reset
Sanitizer: address (ASAN)
Crash Revision: https://oss-fuzz.com/revisions?job=libfuzzer_asan_arrow-java&revision=202201300605
Reproducer Testcase: https://oss-fuzz.com/download?testcase_id=5518211972464640
Issue filed automatically.
See https://google.github.io/oss-fuzz/advanced-topics/reproducing for instructions to reproduce this bug locally.
When you fix this bug, please
- mention the fix revision(s).
- state whether the bug was a short-lived regression or an old bug in any stable releases.
- add any other useful information.
This information can help downstream consumers.
If you need to contact the OSS-Fuzz team with a question, concern, or any other feedback, please file an issue at https://github.com/google/oss-fuzz/issues. Comments on individual Monorail issues are not monitored.
This bug is subject to a 90 day disclosure deadline. If 90 days elapse
without an upstream patch, then the bug report will automatically
become visible to the public.
**Reporter**: [Liya Fan](https://issues.apache.org/jira/browse/ARROW-15558) / @liyafan82
**Note**: *This issue was originally created as [ARROW-15558](https://issues.apache.org/jira/browse/ARROW-15558). Please see the [migration documentation](https://github.com/apache/arrow/issues/14542) for further details.*
Hướng dẫn đóng góp
Hướng nghiên cứu
Bắt đầu với trình tái hiện OSS-Fuzz cho FuzzIpcFile và các hướng dẫn tái hiện được liên kết. Theo dõi stack được báo cáo của Buffer.checkIndex, HeapByteBuffer.getInt và Table.__reset trong arrow-java; hoàn tất khi testcase không còn gây ra ngoại lệ không được bắt nữa.
Do mô hình lập chỉ mục viết ra từ nội dung của issue.
Đánh giá
- Công nghệ
- java
- Lĩnh vực
- data, testing
- Loại issue
- Lỗi
- Độ khó
- 4/5
- Thời gian dự kiến
- 3-5 ngày
- Mức độ hoạt động
- Đình trệ
- Độ rõ ràng
- Cần làm rõ
- Mức phù hợp với người mới
- 32/100