librpc ndr: Stack-overflow in ndr_pull_drsuapi_DsaAddressListItem_V1
authorGary Lockyer <gary@catalyst.net.nz>
Wed, 29 Jan 2020 20:47:11 +0000 (09:47 +1300)
committerAndrew Bartlett <abartlet@samba.org>
Thu, 27 Feb 2020 01:02:32 +0000 (01:02 +0000)
commit23d285d34900270fe171f06f3fbad9879004d4a4
treef7ef8be80632a7f7c359b0ec934405364f74df89
parent3e072b3fb78f0d3132b1d3ce719b8f3706e8491a
librpc ndr: Stack-overflow in ndr_pull_drsuapi_DsaAddressListItem_V1

Reproducer for oss-fuzz Issue 19280

Project: samba
Fuzzing Engine: libFuzzer
Fuzz Target: fuzz_ndr_drsuapi_TYPE_OUT
Job Type: libfuzzer_asan_samba
Platform Id: linux

Crash Type: Stack-overflow
Crash Address: 0x7ffcb4cc2ff8
Crash State:
  ndr_pull_drsuapi_DsaAddressListItem_V1

Sanitizer: address (ASAN)

Credit to OSS-Fuzz

REF: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=19280
BUG: https://bugzilla.samba.org/show_bug.cgi?id=14254

Signed-off-by: Gary Lockyer <gary@catalyst.net.nz>
Reviewed-by: Andrew Bartlett <abartlet@samba.org>
python/samba/tests/blackbox/ndrdump.py
selftest/knownfail.d/bug-14254 [new file with mode: 0644]
source4/librpc/tests/fuzzed_drsuapi_DsaAddressListItem_V1-in.b64.txt [new file with mode: 0755]