[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[bug-gawk] two crashes in 4.1.1 found with afl fuzzer
From: |
Alexander Nasonov |
Subject: |
[bug-gawk] two crashes in 4.1.1 found with afl fuzzer |
Date: |
Mon, 9 Feb 2015 23:30:46 +0000 |
User-agent: |
Mutt/1.5.23 (2014-03-12) |
Hi,
Two short awk programs below crash on NetBSD amd64 box.
I found them with the american fuzzy lop http://lcamtuf.coredump.cx/afl/
echo | gawk 'address@hidden(/\r$/,"")};1'
gawk: cmd. line:1: warning: regexp constant for parameter #1 yields
boolean value
gawk: cmd. line:1: (FILENAME=- FNR=1) fatal error: internal error
Abort (core dumped)
gdb /usr/pkg/bin/gawk /var/crash/alnsn/gawk.core
GNU gdb (GDB) 7.7.1
...
Reading symbols from /usr/pkg/bin/gawk...(no debugging symbols
found)...done.
[New process 1]
Core was generated by `gawk'.
Program terminated with signal SIGABRT, Aborted.
#0 0x00007f7ff750e73a in _lwp_kill () from /usr/lib/libc.so.12
(gdb) bt
#0 0x00007f7ff750e73a in _lwp_kill () from /usr/lib/libc.so.12
#1 0x00007f7ff750e3c5 in abort () from /usr/lib/libc.so.12
#2 0x000000000044cdc6 in ?? ()
#3 0x00007f7ff749fbd0 in opendir () from /usr/lib/libc.so.12
#4 0x000000010000000b in ?? ()
#5 0x0000000000000000 in ?? ()
$ echo | gawk 'address@hidden(NF? ++a " :" :"") $0}'
gawk: cmd. line:1: (FILENAME=- FNR=1) fatal error: internal error
Abort (core dumped)
$ gdb /usr/pkg/bin/gawk /var/crash/alnsn/gawk.core
GNU gdb (GDB) 7.7.1
...
Reading symbols from /usr/pkg/bin/gawk...(no debugging symbols
found)...done.
[New process 1]
Core was generated by `gawk'.
Program terminated with signal SIGABRT, Aborted.
#0 0x00007f7ff750e73a in _lwp_kill () from /usr/lib/libc.so.12
(gdb) bt
#0 0x00007f7ff750e73a in _lwp_kill () from /usr/lib/libc.so.12
#1 0x00007f7ff750e3c5 in abort () from /usr/lib/libc.so.12
#2 0x000000000044cdc6 in ?? ()
#3 0x00007f7ff749fbd0 in opendir () from /usr/lib/libc.so.12
#4 0x000000010000000b in ?? ()
#5 0x0000000000000000 in ?? ()
Alex
pgpnIBhWNhcPv.pgp
Description: PGP signature
- [bug-gawk] two crashes in 4.1.1 found with afl fuzzer,
Alexander Nasonov <=