SUMMARY: AddressSanitizer: stack-use-after-return third_party/dav1d/src/film_grain_tmpl.c:282:17 in apply_to_row_y
Using Dav1d at 36b807af
Sanitizer report:
=================================================================
==96597==ERROR: AddressSanitizer: stack-use-after-return on address 0x7f332c09ac2e at pc 0x565298f1e99c bp 0x7ffc62784af0 sp 0x7ffc62784ae8
READ of size 1 at 0x7f332c09ac2e thread T0
#0 0x565298f1e99b in apply_to_row_y third_party/dav1d/src/film_grain_tmpl.c:282:17
#1 0x565298f1b080 in dav1d_apply_grain_10bpc third_party/dav1d/src/film_grain_tmpl.c:482:13
#2 0x565298f13ede in output_image third_party/dav1d/src/lib.c:267:9
#3 0x565298f13a68 in dav1d_get_picture third_party/dav1d/src/lib.c
#4 0x565298e8992f in LLVMFuzzerTestOneInput third_party/dav1d/tests/libfuzzer/dav1d_fuzzer.c:129:19
#5 0x565299020e0a in fuzzer::Fuzzer::ExecuteCallback(unsigned char const*, unsigned long) third_party/llvm/llvm/projects/compiler-rt/lib/fuzzer/FuzzerLoop.cpp:571:15
#6 0x56529900ea98 in fuzzer::RunOneTest(fuzzer::Fuzzer*, char const*, unsigned long) third_party/llvm/llvm/projects/compiler-rt/lib/fuzzer/FuzzerDriver.cpp:280:6
#7 0x565299015821 in fuzzer::FuzzerDriver(int*, char***, int (*)(unsigned char const*, unsigned long)) third_party/llvm/llvm/projects/compiler-rt/lib/fuzzer/FuzzerDriver.cpp:713:9
#8 0x56529902e202 in main third_party/llvm/llvm/projects/compiler-rt/lib/fuzzer/FuzzerMain.cpp:20:10
#9 0x7f332ecb7bbc in __libc_start_main (/usr/grte/v4/lib64/libc.so.6+0x38bbc)
#10 0x565298dae2d8 in _start /usr/grte/v4/debug-src/src/csu/../sysdeps/x86_64/start.S:108
poc-fd54f42a4b812d4159f88c0e165a0acf1a3b5604a4926fdd7445c29db207e6ea__1_