[documentliberation-discuss] [ANN] libabw 0.1.1 has been released

Hanno Böck hanno at hboeck.de
Sat Dec 20 08:44:50 PST 2014


Hi,

I did a quick run with american fuzzy lop on libabw and it found the
attached crasher.
Attached both sample exposing segfault and asan/valgrind output. It's
an invalid memory read access.

As here are a lot of people working on import filters: These are very
suspectible to these type of memory access errors and they can often
easily be found with fuzzing. You may wanna have a look at
https://fuzzing-project.org

cu,
-- 
Hanno Böck
http://hboeck.de/

mail/jabber: hanno at hboeck.de
GPG: BBB51E42
-------------- next part --------------
A non-text attachment was scrubbed...
Name: libabw-segfault.tar.xz
Type: application/x-xz
Size: 1892 bytes
Desc: not available
URL: <http://lists.freedesktop.org/archives/libreoffice/attachments/20141220/db943632/attachment.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <http://lists.freedesktop.org/archives/libreoffice/attachments/20141220/db943632/attachment.sig>


More information about the LibreOffice mailing list