[Bug demangler/99188] cxxfilt may exist a uaf

2021-02-22 Thread zyt1024 at bupt dot edu.cn via Gcc-bugs
https://gcc.gnu.org/bugzilla/show_bug.cgi?id=99188 --- Comment #5 from zhangyuntao --- “Ok, the input is a garbage.” Do you mean the input is not a crash to cxxfilt? Why does the program crash?

[Bug demangler/99189] cxxfilt may exist a uaf

2021-02-22 Thread zyt1024 at bupt dot edu.cn via Gcc-bugs
https://gcc.gnu.org/bugzilla/show_bug.cgi?id=99189 --- Comment #2 from zhangyuntao --- Created attachment 50231 --> https://gcc.gnu.org/bugzilla/attachment.cgi?id=50231&action=edit PoC

[Bug demangler/99188] cxxfilt may exist a uaf

2021-02-22 Thread zyt1024 at bupt dot edu.cn via Gcc-bugs
https://gcc.gnu.org/bugzilla/show_bug.cgi?id=99188 --- Comment #3 from zhangyuntao --- Created attachment 50230 --> https://gcc.gnu.org/bugzilla/attachment.cgi?id=50230&action=edit PoC

[Bug c++/99188] cxxfilt may exist a uaf

2021-02-21 Thread zyt1024 at bupt dot edu.cn via Gcc-bugs
https://gcc.gnu.org/bugzilla/show_bug.cgi?id=99188 --- Comment #1 from zhangyuntao --- (In reply to zhangyuntao from comment #0) > In the version 2.26 of cxxfilt, Valgrind reports an invalid write of size 4. > > # valgrind ./cxxfilt `cat > cxxfilt_12.29-12.30-24h-run3/error_level/level-2-double-

[Bug c++/99189] New: cxxfilt may exist a uaf

2021-02-21 Thread zyt1024 at bupt dot edu.cn via Gcc-bugs
https://gcc.gnu.org/bugzilla/show_bug.cgi?id=99189 Bug ID: 99189 Summary: cxxfilt may exist a uaf Product: gcc Version: unknown Status: UNCONFIRMED Severity: normal Priority: P3 Component: c++ Assignee:

[Bug c++/99188] New: cxxfilt may exist a uaf

2021-02-21 Thread zyt1024 at bupt dot edu.cn via Gcc-bugs
https://gcc.gnu.org/bugzilla/show_bug.cgi?id=99188 Bug ID: 99188 Summary: cxxfilt may exist a uaf Product: gcc Version: unknown Status: UNCONFIRMED Severity: normal Priority: P3 Component: c++ Assignee: