diff options
| author | MarcoFalke <[email protected]> | 2019-10-16 08:47:12 -0400 |
|---|---|---|
| committer | MarcoFalke <[email protected]> | 2019-10-16 08:48:10 -0400 |
| commit | 1f6638630ef8e196e9a7dd6a3e417c186e2cc7b9 (patch) | |
| tree | 910947a1d1df3814fdaf05ac93f69fab344f2d30 /src/test | |
| parent | Merge #17118: build: depends macOS: point --sysroot to SDK (diff) | |
| parent | tests: Add fuzzing harness for descriptor Span-parsing helpers (diff) | |
| download | discoin-1f6638630ef8e196e9a7dd6a3e417c186e2cc7b9.tar.xz discoin-1f6638630ef8e196e9a7dd6a3e417c186e2cc7b9.zip | |
Merge #17113: tests: Add fuzzing harness for descriptor Span-parsing helpers
58d67f1cc068c3779e309dc8a82ce33158c3e5b2 tests: Add fuzzing harness for descriptor Span-parsing helpers (practicalswift)
Pull request description:
Add fuzzing harness for descriptor Span-parsing helpers (`spanparsing`).
As suggested by a fuzz testing enthusiast in https://github.com/bitcoin/bitcoin/pull/16887#issuecomment-540655816.
**Testing this PR**
Run:
```
$ CC=clang CXX=clang++ ./configure --enable-fuzz \
--with-sanitizers=address,fuzzer,undefined
$ make
$ src/test/fuzz/spanparsing
```
ACKs for top commit:
MarcoFalke:
re-ACK 58d67f1cc068c3779e309dc8a82ce33158c3e5b2
Tree-SHA512: 5eaca9fcda2856e0dcfeb4a98a2dc97051ae6251f7642b92fdae3ff96bb95ccb0377ee4e6c6b531e59061983b8d9485a5282467f2ab1d614861f60202a893b1c
Diffstat (limited to 'src/test')
| -rw-r--r-- | src/test/fuzz/spanparsing.cpp | 30 |
1 files changed, 30 insertions, 0 deletions
diff --git a/src/test/fuzz/spanparsing.cpp b/src/test/fuzz/spanparsing.cpp new file mode 100644 index 000000000..8e5e7dad1 --- /dev/null +++ b/src/test/fuzz/spanparsing.cpp @@ -0,0 +1,30 @@ +// Copyright (c) 2019 The Bitcoin Core developers +// Distributed under the MIT software license, see the accompanying +// file COPYING or http://www.opensource.org/licenses/mit-license.php. + +#include <test/fuzz/FuzzedDataProvider.h> +#include <test/fuzz/fuzz.h> +#include <util/spanparsing.h> + +void test_one_input(const std::vector<uint8_t>& buffer) +{ + FuzzedDataProvider fuzzed_data_provider(buffer.data(), buffer.size()); + const size_t query_size = fuzzed_data_provider.ConsumeIntegral<size_t>(); + const std::string query = fuzzed_data_provider.ConsumeBytesAsString(std::min<size_t>(query_size, 1024 * 1024)); + const std::string span_str = fuzzed_data_provider.ConsumeRemainingBytesAsString(); + const Span<const char> const_span = MakeSpan(span_str); + + Span<const char> mut_span = const_span; + (void)spanparsing::Const(query, mut_span); + + mut_span = const_span; + (void)spanparsing::Func(query, mut_span); + + mut_span = const_span; + (void)spanparsing::Expr(mut_span); + + if (!query.empty()) { + mut_span = const_span; + (void)spanparsing::Split(mut_span, query.front()); + } +} |