Skip to content

oss-fuzz: use nalloc fuzz target#767

Merged
ctruta merged 1 commit intopnggroup:masterfrom
catenacyber:nalloc-oss
Dec 5, 2025
Merged

oss-fuzz: use nalloc fuzz target#767
ctruta merged 1 commit intopnggroup:masterfrom
catenacyber:nalloc-oss

Conversation

@catenacyber
Copy link
Contributor

#760 was incomplete

Separate target, or augmenting the existing libpng_read_fuzzer?
We can do either, but people preferred a separate target

So, here is the separate target

@ctruta
Copy link
Member

ctruta commented Dec 3, 2025

#760 was incomplete

Separate target, or augmenting the existing libpng_read_fuzzer?
We can do either, but people preferred a separate target

So, here is the separate target

Thanks. I don't know if you've seen the release announcement, so let me just say that it was quite... something...
So we'll catch up with this follow-up at the next release, I guess.

@catenacyber
Copy link
Contributor Author

Thanks for the acknowledgment in the release note, I saw it indeed :-)

so let me just say that it was quite... something...

Did fuzzing find CVE-2025-66293 ? (If not, why ?)

@ctruta ctruta merged commit c225b7d into pnggroup:master Dec 5, 2025
@ctruta
Copy link
Member

ctruta commented Dec 5, 2025

Did fuzzing find CVE-2025-66293 ? (If not, why ?)

They didn't say, but I cannot imagine how this could have been found in any other way. See Issue #764.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants