关键信息 漏洞编号: #67072 漏洞类型: Bad-Free Vulnerability in pspp-convert: Uninitialized Memory Free Attempt 提交者: Nez 提交时间: Sat 03 May 2025 11:35:47 AM UTC 严重性: 5 - Average 状态: Open 环境: - PSPP version: master in Git Repository - OS: Ubuntu 20.04.4 LTS - Compiler: Clang-12.0.1 重现步骤: - 使用特定的编译选项和配置进行编译和安装。 - 运行命令 触发错误。 错误信息: - AddressSanitizer: attempting free on address which was not malloc()-ed: 0x7fddccal3088 in thread T0 - SUMMARY: AddressSanitizer: bad-free /new-test/fuzzdir/fuz-pspp/pspp-0581-new/pspp-82fb509/utilities/pspp-convert+0x423fa4) 附件: 无 依赖项: 无 相关链接: - POC: https://drive.google.com/file/d/1YPJLi8ZrDwVTcc2FZdwWyx8JWGuJwqy7o/view?usp=sharing 贡献者: Xudong Cao (UCAS)