Blame fuzz/main.c

Packit Service 4684c1
/*
Packit Service 4684c1
 * Copyright(c) 2017 Tim Ruehsen
Packit Service 4684c1
 *
Packit Service 4684c1
 * Permission is hereby granted, free of charge, to any person obtaining a
Packit Service 4684c1
 * copy of this software and associated documentation files (the "Software"),
Packit Service 4684c1
 * to deal in the Software without restriction, including without limitation
Packit Service 4684c1
 * the rights to use, copy, modify, merge, publish, distribute, sublicense,
Packit Service 4684c1
 * and/or sell copies of the Software, and to permit persons to whom the
Packit Service 4684c1
 * Software is furnished to do so, subject to the following conditions:
Packit Service 4684c1
 *
Packit Service 4684c1
 * The above copyright notice and this permission notice shall be included in
Packit Service 4684c1
 * all copies or substantial portions of the Software.
Packit Service 4684c1
 *
Packit Service 4684c1
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
Packit Service 4684c1
 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
Packit Service 4684c1
 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
Packit Service 4684c1
 * AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
Packit Service 4684c1
 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING
Packit Service 4684c1
 * FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER
Packit Service 4684c1
 * DEALINGS IN THE SOFTWARE.
Packit Service 4684c1
 */
Packit Service 4684c1
Packit Service 4684c1
#include <config.h>
Packit Service 4684c1
Packit Service 4684c1
#include <stdio.h>
Packit Service 4684c1
#include <unistd.h>
Packit Service 4684c1
#include <stdlib.h>
Packit Service 4684c1
#include <stdint.h>
Packit Service 4684c1
#include <string.h>
Packit Service 4684c1
#include <fcntl.h>
Packit Service 4684c1
#include <errno.h>
Packit Service 4684c1
#include <sys/stat.h>
Packit Service 4684c1
Packit Service 4684c1
#include "fuzzer.h"
Packit Service 4684c1
Packit Service 4684c1
#ifdef TEST_RUN
Packit Service 4684c1
Packit Service 4684c1
#include <dirent.h>
Packit Service 4684c1
Packit Service 4684c1
#ifdef _WIN32
Packit Service 4684c1
#  define SLASH '\\'
Packit Service 4684c1
#else
Packit Service 4684c1
#  define SLASH '/'
Packit Service 4684c1
#endif
Packit Service 4684c1
Packit Service 4684c1
static int test_single_file(const char *fname)
Packit Service 4684c1
{
Packit Service 4684c1
	int fd, ret;
Packit Service 4684c1
	struct stat st;
Packit Service 4684c1
	uint8_t *data;
Packit Service 4684c1
	ssize_t n;
Packit Service 4684c1
Packit Service 4684c1
	if ((fd = open(fname, O_RDONLY)) == -1) {
Packit Service 4684c1
		fprintf(stderr, "Failed to open %s (%d)\n", fname, errno);
Packit Service 4684c1
		return -1;
Packit Service 4684c1
	}
Packit Service 4684c1
Packit Service 4684c1
	if (fstat(fd, &st) != 0) {
Packit Service 4684c1
		fprintf(stderr, "Failed to stat %d (%d)\n", fd, errno);
Packit Service 4684c1
		close(fd);
Packit Service 4684c1
		return -1;
Packit Service 4684c1
	}
Packit Service 4684c1
Packit Service 4684c1
	data = malloc(st.st_size);
Packit Service 4684c1
	if ((n = read(fd, data, st.st_size)) == st.st_size) {
Packit Service 4684c1
		printf("testing %llu bytes from '%s'\n", (unsigned long long) st.st_size, fname);
Packit Service 4684c1
		fflush(stdout);
Packit Service 4684c1
		LLVMFuzzerTestOneInput(data, st.st_size);
Packit Service 4684c1
		fflush(stderr);
Packit Service 4684c1
		ret = 0;
Packit Service 4684c1
	} else {
Packit Service 4684c1
		fprintf(stderr, "Failed to read %llu bytes from %s (%d), got %zd\n", (unsigned long long) st.st_size, fname, errno, n);
Packit Service 4684c1
		ret = -1;
Packit Service 4684c1
	}
Packit Service 4684c1
Packit Service 4684c1
	free(data);
Packit Service 4684c1
	close(fd);
Packit Service 4684c1
	return ret;
Packit Service 4684c1
}
Packit Service 4684c1
Packit Service 4684c1
static int test_all_from(const char *dirname)
Packit Service 4684c1
{
Packit Service 4684c1
	DIR *dirp;
Packit Service 4684c1
	struct dirent *dp;
Packit Service 4684c1
Packit Service 4684c1
	if ((dirp = opendir(dirname))) {
Packit Service 4684c1
		while ((dp = readdir(dirp))) {
Packit Service 4684c1
			if (*dp->d_name == '.') continue;
Packit Service 4684c1
Packit Service 4684c1
			char fname[strlen(dirname) + strlen(dp->d_name) + 2];
Packit Service 4684c1
			snprintf(fname, sizeof(fname), "%s/%s", dirname, dp->d_name);
Packit Service 4684c1
Packit Service 4684c1
			if (test_single_file(fname) < 0)
Packit Service 4684c1
				continue;
Packit Service 4684c1
		}
Packit Service 4684c1
		closedir(dirp);
Packit Service 4684c1
		return 0;
Packit Service 4684c1
	}
Packit Service 4684c1
Packit Service 4684c1
	return 1;
Packit Service 4684c1
}
Packit Service 4684c1
Packit Service 4684c1
int main(int argc, char **argv)
Packit Service 4684c1
{
Packit Service 4684c1
	const char *target;
Packit Service 4684c1
	size_t target_len;
Packit Service 4684c1
Packit Service 4684c1
	if ((target = strrchr(argv[0], SLASH)))
Packit Service 4684c1
		target = strrchr(target, '/');
Packit Service 4684c1
	else
Packit Service 4684c1
		target = strrchr(argv[0], '/');
Packit Service 4684c1
	target = target ? target + 1 : argv[0];
Packit Service 4684c1
Packit Service 4684c1
	if (strncmp(target, "lt-", 3) == 0)
Packit Service 4684c1
		target += 3;
Packit Service 4684c1
Packit Service 4684c1
	target_len = strlen(target);
Packit Service 4684c1
Packit Service 4684c1
#ifdef _WIN32
Packit Service 4684c1
	target_len -= 4; // ignore .exe
Packit Service 4684c1
#endif
Packit Service 4684c1
Packit Service 4684c1
	if (argc > 1) { /* test a single file */
Packit Service 4684c1
		test_single_file(argv[1]);
Packit Service 4684c1
	} else { /* test the target directory */
Packit Service 4684c1
		int rc;
Packit Service 4684c1
		char corporadir[sizeof(SRCDIR) + 1 + target_len + 8];
Packit Service 4684c1
		snprintf(corporadir, sizeof(corporadir), SRCDIR "/%.*s.in", (int) target_len, target);
Packit Service 4684c1
Packit Service 4684c1
		rc = test_all_from(corporadir);
Packit Service 4684c1
		if (rc)
Packit Service 4684c1
			fprintf(stderr, "Failed to find %s\n", corporadir);
Packit Service 4684c1
Packit Service 4684c1
		snprintf(corporadir, sizeof(corporadir), SRCDIR "/%.*s.repro", (int) target_len, target);
Packit Service 4684c1
Packit Service 4684c1
		if (test_all_from(corporadir) && rc)
Packit Service 4684c1
			return 77;
Packit Service 4684c1
	}
Packit Service 4684c1
Packit Service 4684c1
	return 0;
Packit Service 4684c1
}
Packit Service 4684c1
Packit Service 4684c1
#else
Packit Service 4684c1
Packit Service 4684c1
#ifndef __AFL_LOOP
Packit Service 4684c1
static int __AFL_LOOP(int n)
Packit Service 4684c1
{
Packit Service 4684c1
	static int first = 1;
Packit Service 4684c1
Packit Service 4684c1
	if (first) {
Packit Service 4684c1
		first = 0;
Packit Service 4684c1
		return 1;
Packit Service 4684c1
	}
Packit Service 4684c1
Packit Service 4684c1
	return 0;
Packit Service 4684c1
}
Packit Service 4684c1
#endif
Packit Service 4684c1
Packit Service 4684c1
int main(int argc, char **argv)
Packit Service 4684c1
{
Packit Service 4684c1
	int ret;
Packit Service 4684c1
	unsigned char buf[64 * 1024];
Packit Service 4684c1
Packit Service 4684c1
	while (__AFL_LOOP(10000)) { // only works with afl-clang-fast
Packit Service 4684c1
		ret = fread(buf, 1, sizeof(buf), stdin);
Packit Service 4684c1
		if (ret < 0)
Packit Service 4684c1
			return 0;
Packit Service 4684c1
Packit Service 4684c1
		LLVMFuzzerTestOneInput(buf, ret);
Packit Service 4684c1
	}
Packit Service 4684c1
Packit Service 4684c1
	return 0;
Packit Service 4684c1
}
Packit Service 4684c1
Packit Service 4684c1
#endif /* TEST_RUN */