Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > gnu.bash.bug > #14329

Crash on jobs 2^32-2

Path csiph.com!xmission!news.snarked.org!news.linkpendium.com!news.linkpendium.com!panix!usenet.stanford.edu!not-for-mail
From Simon Wörner <simon.woerner@rub.de>
Newsgroups gnu.bash.bug
Subject Crash on jobs 2^32-2
Date Wed, 11 Jul 2018 15:41:38 +0200
Lines 21
Approved bug-bash@gnu.org
Message-ID <mailman.3426.1531317204.1292.bug-bash@gnu.org> (permalink)
NNTP-Posting-Host lists.gnu.org
Mime-Version 1.0
Content-Type text/plain; charset=utf-8
Content-Transfer-Encoding quoted-printable
X-Trace usenet.stanford.edu 1531317205 13346 208.118.235.17 (11 Jul 2018 13:53:25 GMT)
X-Complaints-To action@cs.stanford.edu
To bug-bash@gnu.org
Envelope-to bug-bash@gnu.org
DKIM-Signature v=1; a=rsa-sha256; c=relaxed/simple; d=rub.de; s=mail-2017; t=1531316499; bh=iGKX+jPTpxK/CqlyAbwruFcTdo2vbnqmSCbJHRV8Hus=; h=To:From:Subject:Date:From; b=h0DfaALz2g5DjMVpLd1OSIsBLTeQwHqbPB+wiu6zM6slBkpUlB+BZi5AN2bWsnsSR noD6AmZMRl/vNSV2SndwYF0rSOmV50fvSWvlojiWYa872wzrWBtjyDQ68eGcCznJxX ygIcqQ7G5rocNygGRdqr0Xi1hmqDz2j4C7bclraY=
X-Envelope-Sender <simon.woerner@rub.de>
X-RUB-Notes Internal origin=134.147.42.227
Openpgp preference=signencrypt
Autocrypt addr=simon.woerner@rub.de; keydata= xsFNBFbfLogBEADWsLJgg/cgg6ogMjv6bbHUzOL0borLMCXb/PyWTrrsVtfk9Be4YWnCEkyA RAoJQzbP9daaYwpo9bnFY5nmFVHYYN77AScTu6kFYFPk3dQ2iRI9lmpy84RETMpvUZ1XFfu0 h7Hmq/ymZK73y3qwYThzh+3nQj29yry/Dz99DdohFFiluY8HeJ5BQdjvsjfwvLO5mEVBMfeF Iu3/YXAg3uViAGTva2/+rKj1/App+TmZkC/5PM9mLWUZ80HE6z0WKW4FNwABx0W2BPIMa6vA XX03CKkjUfRGCayVBcZKNSV3cbI9c8h6GWQ9aH/+lHnA3Y3qQynTcsnf0Lq90BwpTKwZe+NU dMzTWuR/Z+ZvkR/3HogsZ9EbhhB/a+2yQTxjjILDounw6T/R7bFiQcRgiVPV+95Rtu6H8xpB Mfdya+LnFqHbL9PzSPu4+GgiplTHBJSU1BgcZnDIPfs8h8uHPD2CY9kFxJi/oTc1iihXZUdB /kqzxmffG0L5ljwtoMYBfiSYVKT4cy4NzrXSU5yQUT5yRjGlkg7+Xd9GD1B+53C5xxgMgHfu +nAx475n1QIb/bg9IrkgDZW93IB9/wmHk/m/Po5RXw9/i7zwo0GLA7fh8hHDCbv6LqtpRBWp glepNe7ZgLVB4EQJHwGvOifSV6EiX3ebGjmRjKVqvWgtDZrkOwARAQABzSVTaW1vbiBXw7Zy bmVyIDxtYWlsQHNpbW9uLXdvZXJuZXIuZGU+wsF3BBMBCgAhBQJW3y6IAhsDBQsJCAcDBRUK CQgLBRYCAwEAAh4BAheAAAoJECjqCpLGlQmILBIQAJlwev1gNLdwJ7gJ09mGb3bVCOT2jIFY UyteNB4BigkJCMNLEcax++ifSxLd6vxIrNFXRrppAvZ+IuCW36S+Tb3u+ZiVAbbQCxPSBsGF xPyKBGux2vc6eqUn/bqHDX8Vd9AOT4qrDqV6A7Y/Gk1BXyWzochfmstVGCuFP9THRRmKzRRH S12HLYsZpIZMdeJxvrnYaQLfnGn9O6G04JCOrJskCLK27b5hius7elx9XwCN3zTbbewnYGgY qL303z3ZZqA7auVsYgQxDXRp/X1754pUK+toMwZZunOrrA2pzR+0JxY4pLR4HnMtr06GP8BT XpnsFM5rKZStT6o1guFtXJrbhO5W80IP84HRvrH3l/0rScbgHjIjJYs1G+ERgcE94v86eEhH t70X7NlYNI+q/8QHCjmMgAaUO2NPnx3qrZ5lGO53Yn3iHVkl6yNbJ/TCwvcYVhBWR1q48kyp Jn6QTzgE0NDswKwgxLVUBjnslN2E97URAaElmJoLdvv1xlcqFUgJfxGROSZmaI+p5SDU9ZlO ZKIJexFh3BbxC5MJp7TQjNQjJV3fv/6LYpeTMC9Shi+PRb79BItuiSH5M+nqbnWAsj9L7gyJ mWTsV7C4epvfrE/mt1XTI8Y4kC8SB100SjSj/iLfyW4tU6hLqQt7Kx9ujO3YHoVeu9T5+Hfs 8w8/zsFNBFbfLogBEACzAK2n+YIMrJK0qO7KajnmxtVFAkZ5pvDxIe3H7qd620mOl5KymZfC APVvhoe5Bk5BrHFr4TwBkqwL1jPK4ZTioh6i4jzk+P2qnxjWEAtYz+3cNYR2nizSda86c8ue 0r9Ql+ISyWZX1jNXLRNCd1LZaTyJgzMZtvKUPrIDtSfjYOcqK7N9ZUUWP/rT/rFctbwhd/JL 0Xf5DQ9S0X7W0MjEizikh95Y8c1foixK6qzPGtXx2239O/90VTg/lPDCF8qkegdOwR6dqNx0 +6BA6WBvXQT2sK+uU51ulVfxuHseuXJ1j6JuQ55Zp/0UkW7lMNWl6doYwmnw7zG9a6nrrCEY 86vT0W6zNU94IQYEe7B1m/m7AkXx4rKkOltprrkfMc0390cknNBi5enh4My1WhSu9eEZdsTr QF/yEdyJ+UvEFCeYdKVHAg0iuk0qaQ11Pujm4OEpdDMcVQHLuyeMHxl/Fp2CIk2vuu92HSpu 4PkfRxscWtB5/ywMhnvYi33+TWF/vwgkLTS0e6aP318fvB4folkSKJAg/cz2GPAUSX51kPxW WwO2uFK9oKzGKRRya3ax2EJwtgyfx5yL1UNoWKb5i7FIIQserkxUMt93htPO6wXGNN2G0dY9 iHFiW/GHkwGsx1jz39heq9Mi592D5LiOHEJN3UmAjIuNC3ntgaY4ZQARAQABwsFfBBgBCgAJ BQJW3y6IAhsMAAoJECjqCpLGlQmI8o8P+wbLcipm+tJrZ6lzm4WYAhwFLAv9XWBtc64SEhYt trL3EKJKqeSy5pvN4kQJ8d0sGjHQkiejjriU3zOeJbaKGZ0XlNjtJtic+mQELQlt1reUyJWA qs1B8cvaJCS2rFEpjaExtcwPozhnljv/h87+TVDV9IH+15gQZp7KOD2iWdylQBwuKpwoUeRm HVN7au5rhaDko0GgKeLTldchy8Zm1G8gbe4j+I7fJaJ6HclDdWNRZ+pG0aA1jfzIIhHan8xq p+4mw3e7bdlA3H9NmlJo1j+EmBpNxtz4kh8q5lRlMhfUsr8dODMTuWh7qPlVLEaoc/EI9rNz p21iWklKZGCpSqvxLs5w2O3Ixthpy7Q/GbvBMoZANeir1cgRrsDPMuExtgTWfl45HC/mvIxJ QDb1s7dD2f268gum1iRa8F/oct398AXS0go13lFdbahN7GSD2zGYJK0BECkP7oLm471bqH8G cvgqZBjceoQJBdXKO3w/lYlthdTiSNYP1+EE+KbHzvfAYPrp4PF2RBHYKPz+lS8Jpq670msh OafZ6uoy5Y62NhE0AjluBkO0n7iIzaCa3kJSMw1uZbAOA2Lj1F9NZRQpJnWs6xRnvdlHQOWh LUfstZc4Z+++SsEqz9xpv4xMzA/Ddt9ajf6hQSo5A2wzBw27xrrPv9BXZBF4sk3Nh6g0
User-Agent Mozilla/5.0 (Macintosh; Intel Mac OS X 10.13; rv:52.0) Gecko/20100101 Thunderbird/52.9.0
Content-Language de-DE
X-Virus-Scanned clamav-milter 0.99.4 at mail1.mail.ruhr-uni-bochum.de
X-Virus-Status Clean
X-detected-operating-system by eggs.gnu.org: GNU/Linux 2.2.x-3.x [generic] [fuzzy]
X-Received-From 134.147.42.229
X-Mailman-Approved-At Wed, 11 Jul 2018 09:53:21 -0400
X-BeenThere bug-bash@gnu.org
X-Mailman-Version 2.1.21
Precedence list
List-Id Bug reports for the GNU Bourne Again SHell <bug-bash.gnu.org>
List-Unsubscribe <https://lists.gnu.org/mailman/options/bug-bash>, <mailto:bug-bash-request@gnu.org?subject=unsubscribe>
List-Archive <http://lists.gnu.org/archive/html/bug-bash/>
List-Post <mailto:bug-bash@gnu.org>
List-Help <mailto:bug-bash-request@gnu.org?subject=help>
List-Subscribe <https://lists.gnu.org/mailman/listinfo/bug-bash>, <mailto:bug-bash-request@gnu.org?subject=subscribe>
Xref csiph.com gnu.bash.bug:14329

Show key headers only | View raw


Dear all,
The following crash was found by a modified
version of the kAFL fuzzer (https://github.com/RUB-SysSec/kAFL).

The crash can be reproduced by running:
$ ls
$ jobs 4278190079 # 2^32-2

We can the crash for
- GNU bash, version 4.4.19(1)-release (x86_64-pc-linux-gnu)
- GNU bash, version 4.4.23(2) (x86_64-unknown-linux-gnu)
- git master branch (commit 64447609994bfddeef1061948022c074093e9a9f)
- git devel branch (commit a078e04c3d9163541cce590c3fd00f243fe77613)

Credits: Simon Wörner, Sergej Schumilo, Cornelius Aschermann (all of
Ruhr-Universität Bochum)

Best regards,
Simon Wörner

Back to gnu.bash.bug | Previous | Next | Find similar | Unroll thread


Thread

Crash on jobs 2^32-2 Simon Wörner <simon.woerner@rub.de> - 2018-07-11 15:41 +0200

csiph-web