[Pkg-libburnia-devel] Bug#774152: libisofs6: null pointer dereference

Jakub Wilk jwilk at debian.org
Tue Dec 30 10:25:34 UTC 2014


Hi Thomas!

[Note that Debian BTS doesn't automatically CC bug submitters, so you 
normally should CC them manually if you want them to read your mail.]

* Thomas Schmitt <scdbackup at gmx.net>, 2014-12-29, 18:38:
>How was the ISO image created ? It bears the marks of xorriso but has 
>faulty superblock data.
>Did xorriso create a bad ISO ?
>Did afl modify the image ?

The latter. I fed AFL with a correct input file (which was created, as 
you noticed, by xorriso), and then AFL mutated it.

>Upstream now avoids this particular case of sigsegv by
>
>  http://bazaar.launchpad.net/~libburnia-team/libisofs/scdbackup/revision/1181

Thanks for the quick fix. :-D

>>crash.iso.xz  Application/X-XZ
>
>It is a bit cumbersome for me to uncompress .xz.

Oops. Sorry about that.

>Would .bz2 be possible for future bug reports ?

Sure.

>>http://lcamtuf.coredump.cx/afl/
>Can you tell me your setup for xorriso ?

I'll try to write up something later today.

-- 
Jakub Wilk



More information about the Pkg-libburnia-devel mailing list