mirror of
https://github.com/davea42/libdwarf-code.git
synced 2025-10-19 03:03:08 +08:00

of the temp file to start with junk to better match what is routine in the regressiontests. And to something that works just fine with Win msys2. (in msys2 "/tmp/anything" will not work for open( "wb") whereas "anything" will work.) modified: fuzz/fuzz_aranges.c modified: fuzz/fuzz_crc.c modified: fuzz/fuzz_crc_32.c modified: fuzz/fuzz_debug_addr_access.c modified: fuzz/fuzz_debug_str.c modified: fuzz/fuzz_debuglink.c modified: fuzz/fuzz_die_cu.c modified: fuzz/fuzz_die_cu_attrs.c modified: fuzz/fuzz_die_cu_attrs_loclist.c modified: fuzz/fuzz_die_cu_e.c modified: fuzz/fuzz_die_cu_e_print.c modified: fuzz/fuzz_die_cu_info1.c modified: fuzz/fuzz_die_cu_offset.c modified: fuzz/fuzz_die_cu_print.c modified: fuzz/fuzz_dnames.c modified: fuzz/fuzz_findfuncbypc.c modified: fuzz/fuzz_gdbindex.c modified: fuzz/fuzz_globals.c modified: fuzz/fuzz_gnu_index.c modified: fuzz/fuzz_init_b.c modified: fuzz/fuzz_init_binary.c modified: fuzz/fuzz_init_path.c modified: fuzz/fuzz_macro_dwarf4.c modified: fuzz/fuzz_macro_dwarf5.c modified: fuzz/fuzz_rng.c modified: fuzz/fuzz_set_frame_all.c modified: fuzz/fuzz_showsectgrp.c modified: fuzz/fuzz_simplereader_tu.c modified: fuzz/fuzz_srcfiles.c modified: fuzz/fuzz_stack_frame_access.c modified: fuzz/fuzz_str_offsets.c modified: fuzz/fuzz_tie.c modified: fuzz/fuzz_xuindex.c modified: src/lib/libdwarf/libdwarf.h
91 lines
2.4 KiB
C
91 lines
2.4 KiB
C
/* Copyright 2021 Google LLC
|
|
Licensed under the Apache License, Version 2.0 (the "License");
|
|
you may not use this file except in compliance with the License.
|
|
You may obtain a copy of the License at
|
|
http://www.apache.org/licenses/LICENSE-2.0
|
|
Unless required by applicable law or agreed to in writing, software
|
|
distributed under the License is distributed on an "AS IS" BASIS,
|
|
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
See the License for the specific language governing permissions and
|
|
limitations under the License.
|
|
*/
|
|
#include <fcntl.h> /* open() O_RDONLY O_BINARY */
|
|
#include <stdint.h>
|
|
#include <stdio.h>
|
|
#include <stdlib.h>
|
|
#include <string.h>
|
|
#include <sys/stat.h>
|
|
#include <sys/types.h>
|
|
#include <unistd.h>
|
|
/*
|
|
* Libdwarf library callers can only use these headers.
|
|
*/
|
|
#include "dwarf.h"
|
|
#include "libdwarf.h"
|
|
|
|
#ifndef O_BINARY
|
|
#define O_BINARY 0
|
|
#endif
|
|
|
|
/*
|
|
* Fuzzer function
|
|
*/
|
|
int LLVMFuzzerTestOneInput(const uint8_t *data, size_t size) {
|
|
char filename[256];
|
|
#ifdef DWREGRESSIONTEMP
|
|
/* Under msys2, the /tmp/ results in an open fail */
|
|
sprintf(filename, "junklibfuzzer.%d", getpid());
|
|
#else
|
|
sprintf(filename, "/tmp/libfuzzer.%d", getpid());
|
|
#endif
|
|
|
|
FILE *fp = fopen(filename, "wb");
|
|
if (!fp) {
|
|
printf("FAIL libfuzzer cannot open temp as writeable %s\n",
|
|
filename);
|
|
return 0;
|
|
}
|
|
|
|
fwrite(data, size, 1, fp);
|
|
fclose(fp);
|
|
|
|
int fuzz_fd = 0;
|
|
Dwarf_Ptr errarg = 0;
|
|
Dwarf_Handler errhand = 0;
|
|
Dwarf_Error *errp = NULL;
|
|
Dwarf_Debug dbg = 0;
|
|
off_t size_left = 0;
|
|
off_t fsize = 0;
|
|
ssize_t readlen = 1000;
|
|
ssize_t readval = 0;
|
|
unsigned char *readbuf = 0;
|
|
unsigned int tcrc = 0;
|
|
unsigned int init = 0;
|
|
|
|
fuzz_fd = open(filename, O_RDONLY | O_BINARY);
|
|
fsize = size_left = lseek(fuzz_fd, 0L, SEEK_END);
|
|
readbuf = (unsigned char *)malloc(readlen);
|
|
/* The read below will fail, so to avoid
|
|
reading uninitialized data we ensure
|
|
the data is initialized. */
|
|
memset((void *)readbuf,10,(size_t)readlen);
|
|
if (fuzz_fd != -1) {
|
|
while (size_left > 0) {
|
|
if (size_left < readlen) {
|
|
readlen = size_left;
|
|
}
|
|
readval = read(fuzz_fd, readbuf, readlen);
|
|
if (readval != readlen) {
|
|
/* The read failed as it is expected to. */
|
|
}
|
|
size_left -= readlen;
|
|
tcrc = dwarf_basic_crc32(readbuf, readlen, init);
|
|
init = tcrc;
|
|
}
|
|
}
|
|
free(readbuf);
|
|
close(fuzz_fd);
|
|
unlink(filename);
|
|
return 0;
|
|
}
|