Stack overflow detected during fuzzing

未关闭
#405 1 条评论 0 个 reaction 已指派 0 人 在 GitHub 查看

还没有人认领这个 Issue。

评估

难度
4/5
预计耗时
3-5 天
新手友好度
35/100
Issue 类型
缺陷
描述清晰度
需要澄清
活跃度
停滞
技术栈
rust
领域
web-dev

调研方向

从 cssparser fuzz target 开始,使用附加的输入重现崩溃,该输入包含约 17,500 个左括号。追踪 parser 中的 stack overflow 并添加回归覆盖;当该输入不再导致 stack overflow 或 core dump 时即表示完成。

由索引模型根据 Issue 内容生成。

描述

While fuzzing the cssparser fuzz target I encountered a stack overflow leading to a core dump.
The overflow occurs when the input contains ~17500 (or more) opening brackets, i.e., (, [, {.

I attached an example input that was generated by the fuzzer.

64a4f3d80c6f9598cfc40255f7410db68675019d5c2be9eb5555ca5721c29516.txt

主要语言
Rust
星标
869
派生
152
平均合并
15 小时 8 分钟
30 天内合并 PR
12

贡献指南

这个仓库没有索引到贡献指南

从这里开始

  1. 先读完整个 Issue,再读项目的贡献指南。
  2. 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
  3. Fork 仓库,在一个分支上完成修改。
  4. 提交 Pull Request,并在描述里引用这个 Issue 编号。

servo/rust-cssparser 的其他 Issue

查看 servo/rust-cssparser 的全部 Issue

相似的 Issue

更多 Rust Issue

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。