[Bug libdw/28660] ASan seems to complain about a "heap-buffer-overflow"

evvers at ya dot ru sourceware-bugzilla@sourceware.org
Thu Dec 9 21:09:52 GMT 2021


--- Comment #3 from Evgeny Vereshchagin <evvers at ya dot ru> ---
Looks like it keeps popping up with all the patches applied
0a2c8345 libdwfl: Don't try to convert too many dyns in dwfl_link_map_report
ea8ce550 libdwfl: Don't install an Elf handle in a Dwfl_Module twice
906e0ca5 libdwfl: Don't trust e_shentsize in dwfl_segment_report_module
a5dc98be libdwfl: Make sure we know the phdr entry size before searching phdrs.
8ae296dc libdwfl: Add overflow check while iterating in
c0dd1c35 libdwfl: Don't try to convert too many bytes in dwfl_link_map_report
5ba884a5 configure: Add --enable-sanitize-address
I'll attach a file triggering it once the fuzz target runs into it again

