<html>
<body>
<script type="application/ld+json">
{
"@context": "http://schema.org",
"@type": "EmailMessage",
"potentialAction": {
"@type": "ViewAction",
"name": "View Issue",
"url": "https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=3661"
},
"description": ""
}
</script>
<div style="font-family: arial, sans-serif"><br/>Comment #2 on issue 3661 by <a href="mailto:kcc@google.com">kcc@google.com</a>: llvm/clang-proto-fuzzer: Null-dereference READ in llvm::SCEV::getType<br/><a href="https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=3661#c2">https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=3661#c2</a><br/><br/>C++ reproducer: <br/><br/>void foo(int *a) {<br/> while (1) {<br/> a[60] = ((1 + a[60]) + a[0]);<br/> while ((a[60] + a[0])) {<br/> a[0] = (a[0] + 1);<br/> }<br/> }<br/>}<br/><br/>% clang -cc1 -triple x86_64-unknown-linux-gnu -O2 -emit-obj z.cc<br/><br/>-- <br/>You received this message because:<br/> 1. You were specifically CC'd on the issue<br/><br/>You may adjust your notification preferences at:<br/><a href="https://bugs.chromium.org/hosting/settings">https://bugs.chromium.org/hosting/settings</a><br/><br/>Reply to this email to add a comment.</div>
</body>
</html>