Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Report matio issues to primary contact of hdf5 group #11806

Draft
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

tbeu
Copy link
Contributor

@tbeu tbeu commented Apr 14, 2024

This is due to HDFGroup/hdf5#272 and the recently disclosed issues HDFGroup/hdf5#4350 and HDFGroup/hdf5#4351. Many of the found issues actually address libhdf5. I know that libhdf5 has its own oss-fuzz setup, but I cannot be sure if the reported issues for libmatio are also found there.

@derobins Being primary contact for hdf5 fuzzing report, do you approve?

Copy link

tbeu has previously contributed to projects/matio. The previous PR was #6018

@DonggeLiu
Copy link
Contributor

Thanks @tbeu.
I will convert this to a draft for now until @derobins approves.

@DonggeLiu DonggeLiu marked this pull request as draft April 18, 2024 01:20
@tbeu
Copy link
Contributor Author

tbeu commented Apr 30, 2024

@DonggeLiu Feel free to close if there is no response/approval by @derobins.

@derobins
Copy link
Contributor

You can report them to us, but I'm not going to make any promises about debugging issues through 3rd-party software until we've managed to close all of our own oss-fuzz issues. Hopefully, most of your issues will get closed as we work on our oss-fuzz issues over the summer.

@DonggeLiu
Copy link
Contributor

You can report them to us, but I'm not going to make any promises about debugging issues through 3rd-party software until we've managed to close all of our own oss-fuzz issues.

Hi @derobins, we appreciate the effort to maintain the project, and do not require immediate fixes.

Just to clarify: OSS-Fuzz has a 90-day disclosure policy. Would that be acceptable for your situation?
Thanks : )

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants