Site icon API Security Blog

grpc: Bad-cast to const std::__1::__less *_start

Project:
https://github.com/grpc/grpc.git

Detailed report: https://oss-fuzz.com/testcase?key=5138174202347520

Project: grpc
Fuzzer: libFuzzer_grpc_uri_fuzzer_test
Fuzz target binary: uri_fuzzer_test
Job Type: libfuzzer_ubsan_grpc
Platform Id: linux

Crash Type: Bad-cast
Crash Address: 0x7fff5af703d0
Crash State:
Bad-cast to const std::__1::__less *_start

Sanitizer: undefined (UBSAN)

Recommended Security Severity: High

Regressed: https://oss-fuzz.com/revisions?job=libfuzzer_ubsan_grpc&range=201702170124:201702170522

Reproducer Testcase: https://oss-fuzz.com/download/AMIfv95odJx77aNFavxeezo6wp6V3ccrdGQCyU92eB4eh08ZzIJ1Z6UPAvdreXMIq8UBZOLtZO0K3MeSi-EUlvwvpSZ5uTijVGKyn0YVjKSDQYTPXBiFbF6W_apUp41QvIZJoMvqum4gok7llU1CD2-AuPyynZGCikWgTMnUbuvkPRURe_WTu9xrj64LHuQaQQ4Nk1xLZOb8yNZ0ih3auw2RpDqgvJagnSDFOEUozudn9J3xalgycBXAQD0gf2lLnyWK_EIQ41R6eWDEd_6FOkWdMJ22MyIyFEczNEadkHpKswdduKXSThuWL5Il1gqBRohglmsqYZ7DX2HgT4ArBV3OlIITKkNT5gAkJ1FLV89kRAnpdYMvIeI3Pd4ZU88ibSfZ5L6dYHnZ04k3-vplWc7pBuQS0SNHaKT6s81OAhMTg-7asyVxy2o?testcase_id=5138174202347520

Issue filed automatically.

See https://github.com/google/oss-fuzz/blob/master/docs/reproducing.md for more information.

This bug is subject to a 90 day disclosure deadline. If 90 days elapse
without an upstream patch, then the bug report will automatically
become visible to the public.Read More

Exit mobile version