Cirrus CI / fuzzer,address,undefined,integer, no depends
failed
Feb 21, 2025 in 1h 32m 12s
Task Summary
Instruction ci failed in 01:32:05
Details
✅ 00:03 clone
✅ 00:01 merge_base
❌ 01:32:05 ci
[10:44:23.290] r12 = 0x00007c78cca2c410 r13 = 0x00007ba8cb82fc00 r14 = 0x0000000000000986 r15 = 0x0000000000000000
[10:44:23.290] AddressSanitizer can not provide additional info.
[10:44:23.290] SUMMARY: AddressSanitizer: SEGV (/lib/x86_64-linux-gnu/libevent_core-2.1.so.7+0xdb3a) (BuildId: c2fbb2410dd28aeae41e58c440dd9ca2e6a65d8c) in evbuffer_add
[10:44:23.290] ==5641==ABORTING
[10:44:23.290] MS: 0 ; base unit: 0000000000000000000000000000000000000000
[10:44:23.290] 0x50,0x55,0x54,0x20,0x54,0x20,0x48,0x54,0x54,0x50,0x2f,0x30,0x2e,0x31,0xa,0xa,
[10:44:23.290] PUT T HTTP/0.1\012\012
[10:44:23.290] artifact_prefix='./'; Test unit written to ./crash-13bb210e2c44d018376371b9f4762efa4cdfce6d
[10:44:23.290] Base64: UFVUIFQgSFRUUC8wLjEKCg==
[10:44:23.290]
[10:44:23.290] INFO: Running with entropic power schedule (0xFF, 100).
[10:44:23.290] INFO: Seed: 1609071493
[10:44:23.290] INFO: Loaded 1 modules (622376 inline 8-bit counters): 622376 [0x5578ea1279c8, 0x5578ea1bf8f0),
[10:44:23.290] INFO: Loaded 1 PC tables (622376 PCs): 622376 [0x5578ea1bf8f0,0x5578eab3eb70),
[10:44:23.290] INFO: 92 files found in /ci_container_base/ci/scratch/qa-assets/fuzz_corpora/http_request
[10:44:23.290] INFO: -max_len is not provided; libFuzzer will not generate inputs larger than 127031 bytes
[10:44:23.290] INFO: seed corpus: files: 92 min: 1b max: 127031b total: 165591b rss: 92Mb
[10:44:23.290] AddressSanitizer:DEADLYSIGNAL
[10:44:23.290] =================================================================
[10:44:23.290] ==5641==ERROR: AddressSanitizer: SEGV on unknown address 0x0000000009a6 (pc 0x7fa8cdd03b3a bp 0x7ffc222bc670 sp 0x7ffc222bc630 T0)
[10:44:23.290] ==5641==The signal is caused by a READ memory access.
[10:44:23.290] ==5641==Hint: address points to the zero page.
[10:44:23.290] #0 0x7fa8cdd03b3a in evbuffer_add (/lib/x86_64-linux-gnu/libevent_core-2.1.so.7+0xdb3a) (BuildId: c2fbb2410dd28aeae41e58c440dd9ca2e6a65d8c)
[10:44:23.290] #1 0x5578e8201ea3 in HTTPRequest::WriteReply(int, std::span<std::byte const, 18446744073709551615ul>) /ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/./httpserver.cpp:683:5
[10:44:23.290] #2 0x5578e8200b50 in HTTPRequest::WriteReply(int, std::basic_string_view<char, std::char_traits<char>>) /ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/./httpserver.h:145:9
[10:44:23.290] #3 0x5578e8200b50 in HTTPRequest::~HTTPRequest() /ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/./httpserver.cpp:625:9
[10:44:23.290] #4 0x5578e6f58829 in http_request_fuzz_target(std::span<unsigned char const, 18446744073709551615ul>) /ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/test/fuzz/./test/fuzz/http_request.cpp:68:1
[10:44:23.290] #5 0x5578e744fc2e in std::function<void (std::span<unsigned char const, 18446744073709551615ul>)>::operator()(std::span<unsigned char const, 18446744073709551615ul>) const /usr/lib/gcc/x86_64-linux-gnu/13/../../../../include/c++/13/bits/std_function.h:591:9
[10:44:23.290] #6 0x5578e744fc2e in test_one_input(std::span<unsigned char const, 18446744073709551615ul>) /ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/test/fuzz/util/./test/fuzz/fuzz.cpp:85:5
[10:44:23.290] #7 0x5578e744fc2e in LLVMFuzzerTestOneInput /ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/test/fuzz/util/./test/fuzz/fuzz.cpp:223:5
[10:44:23.290] #8 0x5578e6adaf8f in fuzzer::Fuzzer::ExecuteCallback(unsigned char const*, unsigned long) (/ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/test/fuzz/fuzz+0x1c88f8f) (BuildId: 0d40744fb9b6788d14dd9a7e6772d552b8cbdf25)
[10:44:23.290] #9 0x5578e6ada599 in fuzzer::Fuzzer::RunOne(unsigned char const*, unsigned long, bool, fuzzer::InputInfo*, bool, bool*) (/ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/test/fuzz/fuzz+0x1c88599) (BuildId: 0d40744fb9b6788d14dd9a7e6772d552b8cbdf25)
[10:44:23.290] #10 0x5578e6adc312 in fuzzer::Fuzzer::ReadAndExecuteSeedCorpora(std::vector<fuzzer::SizedFile, std::allocator<fuzzer::SizedFile>>&) (/ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/test/fuzz/fuzz+0x1c8a312) (BuildId: 0d40744fb9b6788d14dd9a7e6772d552b8cbdf25)
[10:44:23.290] #11 0x5578e6adc830 in fuzzer::Fuzzer::Loop(std::vector<fuzzer::SizedFile, std::allocator<fuzzer::SizedFile>>&) (/ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/test/fuzz/fuzz+0x1c8a830) (BuildId: 0d40744fb9b6788d14dd9a7e6772d552b8cbdf25)
[10:44:23.290] #12 0x5578e6ac8e85 in fuzzer::FuzzerDriver(int*, char***, int (*)(unsigned char const*, unsigned long)) (/ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/test/fuzz/fuzz+0x1c76e85) (BuildId: 0d40744fb9b6788d14dd9a7e6772d552b8cbdf25)
[10:44:23.290] #13 0x5578e6af5296 in main (/ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/test/fuzz/fuzz+0x1ca3296) (BuildId: 0d40744fb9b6788d14dd9a7e6772d552b8cbdf25)
[10:44:23.290] #14 0x7fa8cd8231c9 (/lib/x86_64-linux-gnu/libc.so.6+0x2a1c9) (BuildId: 42c84c92e6f98126b3e2230ebfdead22c235b667)
[10:44:23.290] #15 0x7fa8cd82328a in __libc_start_main (/lib/x86_64-linux-gnu/libc.so.6+0x2a28a) (BuildId: 42c84c92e6f98126b3e2230ebfdead22c235b667)
[10:44:23.290] #16 0x5578e6abd2c4 in _start (/ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/test/fuzz/fuzz+0x1c6b2c4) (BuildId: 0d40744fb9b6788d14dd9a7e6772d552b8cbdf25)
[10:44:23.290]
[10:44:23.290] ==5641==Register values:
[10:44:23.290] rax = 0x00007c78cca2c410 rbx = 0x0000000000000011 rcx = 0x000000000000003f rdx = 0x0000000000000011
[10:44:23.290] rdi = 0x00007c78cca2c410 rsi = 0x0000000000000000 rbp = 0x00007ffc222bc670 rsp = 0x00007ffc222bc630
[10:44:23.290] r8 = 0x00005578eacb6600 r9 = 0x0000000000000000 r10 = 0x0000000000000f01 r11 = 0x0000000000000001
[10:44:23.290] r12 = 0x00007c78cca2c410 r13 = 0x00007ba8cb82fc00 r14 = 0x0000000000000986 r15 = 0x0000000000000000
[10:44:23.290] AddressSanitizer can not provide additional info.
[10:44:23.290] SUMMARY: AddressSanitizer: SEGV (/lib/x86_64-linux-gnu/libevent_core-2.1.so.7+0xdb3a) (BuildId: c2fbb2410dd28aeae41e58c440dd9ca2e6a65d8c) in evbuffer_add
[10:44:23.290] ==5641==ABORTING
[10:44:23.290] MS: 0 ; base unit: 0000000000000000000000000000000000000000
[10:44:23.290] 0x50,0x55,0x54,0x20,0x54,0x20,0x48,0x54,0x54,0x50,0x2f,0x30,0x2e,0x31,0xa,0xa,
[10:44:23.290] PUT T HTTP/0.1\012\012
[10:44:23.290] artifact_prefix='./'; Test unit written to ./crash-13bb210e2c44d018376371b9f4762efa4cdfce6d
[10:44:23.290] Base64: UFVUIFQgSFRUUC8wLjEKCg==
[10:44:23.290]
[10:44:23.290] ⚠️ Failure generated from target with exit code 1: ['/ci_container_base/ci/scratch/build-x86_64-pc-linux-gnu/src/test/fuzz/fuzz', '-runs=1', PosixPath('/ci_container_base/ci/scratch/qa-assets/fuzz_corpora/http_request')]
������
Loading