Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

3 unique crashes while fuzzing using american fuzzy lop #225

Closed
yetipenguin opened this issue Apr 10, 2018 · 2 comments
Closed

3 unique crashes while fuzzing using american fuzzy lop #225

yetipenguin opened this issue Apr 10, 2018 · 2 comments

Comments

@yetipenguin
Copy link

I was able to create 3 unique crashes while fuzzing with american fuzzy lop.

In the attachment you finde the three files that cause sassc to crash.
The fuzzing was done against sassc commit 548744e and libsass commit 9266d26fe6b1c79e8fa677c845fa85c9ab41b711 (both from today).
Just use the txt files as input-sass file for sassc.

crash1.txt
crash2.txt
crash3.txt

xzyfer added a commit to xzyfer/libsass that referenced this issue Apr 16, 2018
@xzyfer
Copy link
Contributor

xzyfer commented Apr 16, 2018

Thanks for the report @yetipenguin. I was unable to reproduce crashes 2 and 3.

Crash 1 is a bug in LibSass which is being patched (sass/libsass#2631)

xzyfer added a commit to xzyfer/libsass that referenced this issue Apr 16, 2018
xzyfer added a commit to sass/libsass that referenced this issue Apr 16, 2018
xzyfer added a commit to sass/libsass that referenced this issue Apr 16, 2018
@yetipenguin
Copy link
Author

@xzyfer Looks good with the patch! I think the other two files were false positives on my site.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants