Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 1 | /* |
| 2 | |
| 3 | honggfuzz - cmdline parsing |
| 4 | |
| 5 | ----------------------------------------- |
| 6 | |
| 7 | Copyright 2014 Google Inc. All Rights Reserved. |
| 8 | |
| 9 | Licensed under the Apache License, Version 2.0 (the "License"); |
| 10 | you may not use this file except in compliance with the License. |
| 11 | You may obtain a copy of the License at |
| 12 | |
| 13 | http://www.apache.org/licenses/LICENSE-2.0 |
| 14 | |
| 15 | Unless required by applicable law or agreed to in writing, software |
| 16 | distributed under the License is distributed on an "AS IS" BASIS, |
| 17 | WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 18 | See the License for the specific language governing permissions and |
| 19 | limitations under the License. |
| 20 | |
| 21 | */ |
| 22 | |
| 23 | #include "cmdline.h" |
| 24 | |
| 25 | #include <ctype.h> |
| 26 | #include <errno.h> |
| 27 | #include <getopt.h> |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 28 | #include <inttypes.h> |
| 29 | #include <limits.h> |
Robert Swiecki | 846ccd7 | 2017-01-12 17:52:23 +0100 | [diff] [blame] | 30 | #if defined(_HF_ARCH_LINUX) |
| 31 | #include <sched.h> |
| 32 | #endif /* defined(_HF_ARCH_LINUX) */ |
| 33 | #include <signal.h> |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 34 | #include <stdlib.h> |
| 35 | #include <stdio.h> |
| 36 | #include <string.h> |
Robert Swiecki | 3bfc33c | 2016-03-14 18:12:41 +0100 | [diff] [blame] | 37 | #include <sys/queue.h> |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 38 | #include <unistd.h> |
| 39 | |
Robert Swiecki | 241a741 | 2017-05-24 01:53:15 +0200 | [diff] [blame] | 40 | #include "libcommon/common.h" |
| 41 | #include "libcommon/log.h" |
| 42 | #include "libcommon/files.h" |
| 43 | #include "libcommon/util.h" |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 44 | |
| 45 | struct custom_option { |
| 46 | struct option opt; |
| 47 | const char *descr; |
| 48 | }; |
| 49 | |
| 50 | static bool checkFor_FILE_PLACEHOLDER(char **args) |
| 51 | { |
| 52 | for (int x = 0; args[x]; x++) { |
| 53 | if (strstr(args[x], _HF_FILE_PLACEHOLDER)) |
| 54 | return true; |
| 55 | } |
| 56 | return false; |
| 57 | } |
| 58 | |
| 59 | static const char *cmdlineYesNo(bool yes) |
| 60 | { |
| 61 | return (yes ? "true" : "false"); |
| 62 | } |
| 63 | |
| 64 | static void cmdlineHelp(const char *pname, struct custom_option *opts) |
| 65 | { |
| 66 | LOG_HELP_BOLD("Usage: %s [options] -- path_to_command [args]", pname); |
| 67 | LOG_HELP_BOLD("Options:"); |
| 68 | for (int i = 0; opts[i].opt.name; i++) { |
Robert Swiecki | f3a5f6a | 2016-03-16 14:47:30 +0100 | [diff] [blame] | 69 | if (isprint(opts[i].opt.val) && opts[i].opt.val < 0x80) { |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 70 | LOG_HELP_BOLD(" --%s%s%c %s", opts[i].opt.name, |
| 71 | "|-", opts[i].opt.val, |
Robert Swiecki | bf063db | 2016-02-16 18:42:00 +0100 | [diff] [blame] | 72 | opts[i].opt.has_arg == required_argument ? "VALUE" : ""); |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 73 | } else { |
| 74 | LOG_HELP_BOLD(" --%s %s", opts[i].opt.name, |
Robert Swiecki | bf063db | 2016-02-16 18:42:00 +0100 | [diff] [blame] | 75 | opts[i].opt.has_arg == required_argument ? "VALUE" : ""); |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 76 | } |
| 77 | LOG_HELP("\t%s", opts[i].descr); |
| 78 | } |
Jagger | 3212737 | 2015-10-09 23:07:38 +0200 | [diff] [blame] | 79 | LOG_HELP_BOLD("\nExamples:"); |
| 80 | LOG_HELP(" Run the binary over a mutated file chosen from the directory"); |
| 81 | LOG_HELP_BOLD(" " PROG_NAME " -f input_dir -- /usr/bin/tiffinfo -D " _HF_FILE_PLACEHOLDER); |
| 82 | LOG_HELP(" As above, provide input over STDIN:"); |
Robert Swiecki | 72d2bef | 2016-01-19 14:39:26 +0100 | [diff] [blame] | 83 | LOG_HELP_BOLD(" " PROG_NAME " -f input_dir -s -- /usr/bin/djpeg"); |
Jagger | ba92b4b | 2016-03-16 02:24:17 +0100 | [diff] [blame] | 84 | LOG_HELP(" Use SANCOV to maximize code coverage:"); |
| 85 | LOG_HELP_BOLD(" " PROG_NAME " -f input_dir -C -- /usr/bin/tiffinfo -D " _HF_FILE_PLACEHOLDER); |
Jagger | e848cc7 | 2016-09-19 02:28:52 +0200 | [diff] [blame] | 86 | LOG_HELP(" Use compile-time instrumentation (libhfuzz/instrument.c):"); |
| 87 | LOG_HELP_BOLD(" " PROG_NAME " -f input_dir -z -- /usr/bin/tiffinfo -D " _HF_FILE_PLACEHOLDER); |
Robert Swiecki | a2d5be3 | 2016-10-11 22:52:42 +0200 | [diff] [blame] | 88 | LOG_HELP(" Use persistent mode (libhfuzz/persistent.c):"); |
Jagger | e848cc7 | 2016-09-19 02:28:52 +0200 | [diff] [blame] | 89 | LOG_HELP_BOLD(" " PROG_NAME " -f input_dir -P -- /usr/bin/tiffinfo_persistent"); |
Robert Swiecki | 43f0b28 | 2016-11-01 18:06:40 +0100 | [diff] [blame] | 90 | LOG_HELP |
| 91 | (" Use persistent mode (libhfuzz/persistent.c) and compile-time instrumentation (libhfuzz/instrument.c):"); |
Robert Swiecki | 1412949 | 2016-11-01 18:04:32 +0100 | [diff] [blame] | 92 | LOG_HELP_BOLD(" " PROG_NAME " -f input_dir -P -z -- /usr/bin/tiffinfo_persistent"); |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 93 | #if defined(_HF_ARCH_LINUX) |
Jagger | 3212737 | 2015-10-09 23:07:38 +0200 | [diff] [blame] | 94 | LOG_HELP(" Run the binary over a dynamic file, maximize total no. of instructions:"); |
Jagger | 72f258b | 2015-10-09 23:09:01 +0200 | [diff] [blame] | 95 | LOG_HELP_BOLD(" " PROG_NAME " --linux_perf_instr -- /usr/bin/tiffinfo -D " |
| 96 | _HF_FILE_PLACEHOLDER); |
Jagger | 3212737 | 2015-10-09 23:07:38 +0200 | [diff] [blame] | 97 | LOG_HELP(" Run the binary over a dynamic file, maximize total no. of branches:"); |
Jagger | 72f258b | 2015-10-09 23:09:01 +0200 | [diff] [blame] | 98 | LOG_HELP_BOLD(" " PROG_NAME " --linux_perf_branch -- /usr/bin/tiffinfo -D " |
| 99 | _HF_FILE_PLACEHOLDER); |
Robert Swiecki | 349cb9e | 2016-10-14 21:36:42 +0200 | [diff] [blame] | 100 | LOG_HELP(" Run the binary over a dynamic file, maximize unique branches (edges) via BTS:"); |
Robert Swiecki | 43f0b28 | 2016-11-01 18:06:40 +0100 | [diff] [blame] | 101 | LOG_HELP_BOLD(" " PROG_NAME " --linux_perf_bts_edge -- /usr/bin/tiffinfo -D " |
| 102 | _HF_FILE_PLACEHOLDER); |
Robert Swiecki | 349cb9e | 2016-10-14 21:36:42 +0200 | [diff] [blame] | 103 | LOG_HELP |
Robert Swiecki | 8499c66 | 2016-11-01 18:02:52 +0100 | [diff] [blame] | 104 | (" Run the binary over a dynamic file, maximize unique code blocks via Intel Processor Trace (requires libipt.so):"); |
Robert Swiecki | 349cb9e | 2016-10-14 21:36:42 +0200 | [diff] [blame] | 105 | LOG_HELP_BOLD(" " PROG_NAME " --linux_perf_ipt_block -- /usr/bin/tiffinfo -D " |
Jagger | 72f258b | 2015-10-09 23:09:01 +0200 | [diff] [blame] | 106 | _HF_FILE_PLACEHOLDER); |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 107 | #endif /* defined(_HF_ARCH_LINUX) */ |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 108 | } |
| 109 | |
| 110 | static void cmdlineUsage(const char *pname, struct custom_option *opts) |
| 111 | { |
| 112 | cmdlineHelp(pname, opts); |
| 113 | exit(0); |
| 114 | } |
| 115 | |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 116 | rlim_t cmdlineParseRLimit(int res, const char *optarg, unsigned long mul) |
| 117 | { |
| 118 | struct rlimit cur; |
| 119 | if (getrlimit(res, &cur) == -1) { |
| 120 | PLOG_F("getrlimit(%d)", res); |
| 121 | } |
| 122 | if (strcasecmp(optarg, "max") == 0) { |
| 123 | return cur.rlim_max; |
| 124 | } |
| 125 | if (strcasecmp(optarg, "def") == 0) { |
| 126 | return cur.rlim_cur; |
| 127 | } |
Anestis Bechtsoudis | 413cb13 | 2016-02-07 12:59:00 +0200 | [diff] [blame] | 128 | if (util_isANumber(optarg) == false) { |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 129 | LOG_F("RLIMIT %d needs a numeric or 'max'/'def' value ('%s' provided)", res, optarg); |
| 130 | } |
| 131 | rlim_t val = strtoul(optarg, NULL, 0) * mul; |
Jagger | 2bd61b7 | 2015-10-10 05:23:32 +0200 | [diff] [blame] | 132 | if ((unsigned long)val == ULONG_MAX && errno != 0) { |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 133 | PLOG_F("strtoul('%s', 0)", optarg); |
| 134 | } |
| 135 | return val; |
| 136 | } |
| 137 | |
| 138 | bool cmdlineParse(int argc, char *argv[], honggfuzz_t * hfuzz) |
| 139 | { |
| 140 | /* *INDENT-OFF* */ |
| 141 | (*hfuzz) = (honggfuzz_t) { |
| 142 | .cmdline = NULL, |
Robert Swiecki | 72d2bef | 2016-01-19 14:39:26 +0100 | [diff] [blame] | 143 | .cmdline_txt[0] = '\0', |
Jagger | 1b2d482 | 2016-09-25 16:19:45 +0200 | [diff] [blame] | 144 | .inputDir = NULL, |
Robert Swiecki | 92a3136 | 2017-02-24 16:21:40 +0100 | [diff] [blame] | 145 | .inputDirP = NULL, |
| 146 | .fileCnt = 0, |
| 147 | .fileCntDone = false, |
Robert Swiecki | 4332ae9 | 2017-05-23 23:06:04 +0200 | [diff] [blame] | 148 | .nullifyStdio = true, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 149 | .fuzzStdin = false, |
| 150 | .saveUnique = true, |
Robert Swiecki | 6c9f682 | 2016-03-14 16:12:27 +0100 | [diff] [blame] | 151 | .useScreen = true, |
| 152 | .useVerifier = false, |
| 153 | .timeStart = time(NULL), |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 154 | .fileExtn = "fuzz", |
| 155 | .workDir = ".", |
Jagger | 1b2d482 | 2016-09-25 16:19:45 +0200 | [diff] [blame] | 156 | .covDir = NULL, |
Robert Swiecki | a96d78d | 2016-03-14 16:50:50 +0100 | [diff] [blame] | 157 | .origFlipRate = 0.001f, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 158 | .externalCommand = NULL, |
Robert Swiecki | ee266ac | 2016-10-03 02:25:59 +0200 | [diff] [blame] | 159 | .postExternalCommand = NULL, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 160 | .blacklistFile = NULL, |
| 161 | .blacklistCnt = 0, |
| 162 | .blacklist = NULL, |
Jagger | f4a6056 | 2016-09-25 15:40:23 +0200 | [diff] [blame] | 163 | .maxFileSz = 0UL, |
Jagger | ba92b4b | 2016-03-16 02:24:17 +0100 | [diff] [blame] | 164 | .tmOut = 10, |
Robert Swiecki | c95cf2a | 2017-06-23 15:31:08 +0200 | [diff] [blame^] | 165 | .runEndTime = 0, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 166 | .mutationsMax = 0, |
| 167 | .threadsFinished = 0, |
Jagger | 2664f54 | 2016-09-28 14:37:00 +0200 | [diff] [blame] | 168 | .threadsMax = (sysconf(_SC_NPROCESSORS_ONLN) <= 1) ? 1 : sysconf(_SC_NPROCESSORS_ONLN) / 2, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 169 | .reportFile = NULL, |
| 170 | .asLimit = 0ULL, |
Jagger | 80041fe | 2016-03-10 21:32:35 +0100 | [diff] [blame] | 171 | .clearEnv = false, |
Jagger | ab26e70 | 2016-03-22 04:28:00 +0100 | [diff] [blame] | 172 | .envs = { |
| 173 | [0 ... (ARRAYSIZE(hfuzz->envs) - 1)] = NULL, |
| 174 | }, |
Robert Swiecki | 0f937af | 2016-03-30 18:19:16 +0200 | [diff] [blame] | 175 | .persistent = false, |
Robert Swiecki | e84b645 | 2016-12-12 12:42:04 +0100 | [diff] [blame] | 176 | .tmout_vtalrm = false, |
Robert Swiecki | 44f6b19 | 2017-02-15 20:24:55 +0100 | [diff] [blame] | 177 | .skipFeedbackOnTimeout = false, |
Anestis Bechtsoudis | e5f09f8 | 2016-12-27 16:06:05 +0200 | [diff] [blame] | 178 | .enableSanitizers = false, |
| 179 | #if defined(__ANDROID__) |
| 180 | .monitorSIGABRT = false, |
| 181 | #else |
| 182 | .monitorSIGABRT = true, |
| 183 | #endif |
Robert Swiecki | 0ec9811 | 2017-02-03 02:08:14 +0100 | [diff] [blame] | 184 | .threadsActiveCnt = 0, |
Robert Swiecki | 89b8447 | 2017-02-12 22:20:10 +0100 | [diff] [blame] | 185 | .mainPid = getpid(), |
Robert Swiecki | 8d01b01 | 2017-02-19 15:48:11 +0100 | [diff] [blame] | 186 | .terminating = false, |
Robert Swiecki | c95cf2a | 2017-06-23 15:31:08 +0200 | [diff] [blame^] | 187 | .exitUponCrash = false, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 188 | |
Robert Swiecki | 531438a | 2016-09-13 19:05:11 +0200 | [diff] [blame] | 189 | .dictionaryFile = NULL, |
| 190 | .dictionaryCnt = 0, |
Robert Swiecki | 9f5f943 | 2017-03-09 01:48:04 +0100 | [diff] [blame] | 191 | .dictqCurrent = NULL, |
Robert Swiecki | 531438a | 2016-09-13 19:05:11 +0200 | [diff] [blame] | 192 | |
Robert Swiecki | 6c9f682 | 2016-03-14 16:12:27 +0100 | [diff] [blame] | 193 | .state = _HF_STATE_UNSET, |
Jagger | b7fa3ee | 2016-08-21 19:46:26 +0200 | [diff] [blame] | 194 | .feedback = NULL, |
Robert Swiecki | bc7532e | 2016-08-20 00:34:17 +0200 | [diff] [blame] | 195 | .bbFd = -1, |
Robert Swiecki | 9f5f943 | 2017-03-09 01:48:04 +0100 | [diff] [blame] | 196 | |
Robert Swiecki | e586c1f | 2016-03-14 18:46:03 +0100 | [diff] [blame] | 197 | .dynfileq_mutex = PTHREAD_MUTEX_INITIALIZER, |
Robert Swiecki | 3bfc33c | 2016-03-14 18:12:41 +0100 | [diff] [blame] | 198 | .dynfileqCnt = 0U, |
Robert Swiecki | 9f5f943 | 2017-03-09 01:48:04 +0100 | [diff] [blame] | 199 | .dynfileqCurrent = NULL, |
Robert Swiecki | 6c9f682 | 2016-03-14 16:12:27 +0100 | [diff] [blame] | 200 | |
Robert Swiecki | 37498fd | 2017-03-12 21:12:54 +0100 | [diff] [blame] | 201 | .feedback_mutex = PTHREAD_MUTEX_INITIALIZER, |
| 202 | |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 203 | .mutationsCnt = 0, |
| 204 | .crashesCnt = 0, |
| 205 | .uniqueCrashesCnt = 0, |
Anestis Bechtsoudis | 79b799e | 2015-11-01 00:02:25 +0200 | [diff] [blame] | 206 | .verifiedCrashesCnt = 0, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 207 | .blCrashesCnt = 0, |
| 208 | .timeoutedCnt = 0, |
| 209 | |
Robert Swiecki | 6c9f682 | 2016-03-14 16:12:27 +0100 | [diff] [blame] | 210 | .dynFileMethod = _HF_DYNFILE_NONE, |
Anestis Bechtsoudis | be0ac7b | 2015-12-26 15:38:47 +0200 | [diff] [blame] | 211 | .sanCovCnts = { |
Jagger | ab26e70 | 2016-03-22 04:28:00 +0100 | [diff] [blame] | 212 | .hitBBCnt = 0ULL, |
| 213 | .totalBBCnt = 0ULL, |
| 214 | .dsoCnt = 0ULL, |
| 215 | .iDsoCnt = 0ULL, |
| 216 | .newBBCnt = 0ULL, |
| 217 | .crashesCnt = 0ULL, |
| 218 | }, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 219 | |
Anestis Bechtsoudis | a16f70f | 2016-01-03 13:03:21 +0200 | [diff] [blame] | 220 | .sanCov_mutex = PTHREAD_MUTEX_INITIALIZER, |
Robert Swiecki | 23ec02a | 2016-01-19 18:47:45 +0100 | [diff] [blame] | 221 | .sanOpts = { |
Jagger | ab26e70 | 2016-03-22 04:28:00 +0100 | [diff] [blame] | 222 | .asanOpts = NULL, |
| 223 | .msanOpts = NULL, |
| 224 | .ubsanOpts = NULL, |
Anestis Bechtsoudis | 61b5ab1 | 2016-01-08 16:07:02 +0200 | [diff] [blame] | 225 | }, |
Robert Swiecki | 6c9f682 | 2016-03-14 16:12:27 +0100 | [diff] [blame] | 226 | .useSanCov = false, |
Robert Swiecki | 6c9f682 | 2016-03-14 16:12:27 +0100 | [diff] [blame] | 227 | .covMetadata = NULL, |
Jagger | 247c3b4 | 2016-03-21 23:24:05 +0100 | [diff] [blame] | 228 | .msanReportUMRS = false, |
Robert Swiecki | 6c9f682 | 2016-03-14 16:12:27 +0100 | [diff] [blame] | 229 | |
Haris Andrianakis | c9a7133 | 2016-05-09 21:56:30 -0700 | [diff] [blame] | 230 | .report_mutex = PTHREAD_MUTEX_INITIALIZER, |
| 231 | |
Robert Swiecki | 6c9f682 | 2016-03-14 16:12:27 +0100 | [diff] [blame] | 232 | /* Linux code */ |
Robert Swiecki | fab6916 | 2016-03-31 15:41:36 +0200 | [diff] [blame] | 233 | .linux = { |
Robert Swiecki | 3377e1c | 2017-06-01 18:01:57 +0200 | [diff] [blame] | 234 | .exeFd = -1, |
Jagger | ab26e70 | 2016-03-22 04:28:00 +0100 | [diff] [blame] | 235 | .hwCnts = { |
| 236 | .cpuInstrCnt = 0ULL, |
| 237 | .cpuBranchCnt = 0ULL, |
Jagger | ab26e70 | 2016-03-22 04:28:00 +0100 | [diff] [blame] | 238 | .bbCnt = 0ULL, |
| 239 | .newBBCnt = 0ULL, |
Jagger | 34789a7 | 2016-09-08 00:36:09 +0200 | [diff] [blame] | 240 | .softCntPc = 0ULL, |
| 241 | .softCntCmp = 0ULL, |
Jagger | ab26e70 | 2016-03-22 04:28:00 +0100 | [diff] [blame] | 242 | }, |
| 243 | .dynamicCutOffAddr = ~(0ULL), |
| 244 | .disableRandomization = true, |
| 245 | .ignoreAddr = NULL, |
| 246 | .numMajorFrames = 7, |
| 247 | .pid = 0, |
| 248 | .pidFile = NULL, |
| 249 | .pidCmd = NULL, |
Anestis Bechtsoudis | ba68b38 | 2016-10-29 20:44:15 +0300 | [diff] [blame] | 250 | .symsBlFile = NULL, |
| 251 | .symsBlCnt = 0, |
| 252 | .symsBl = NULL, |
| 253 | .symsWlFile = NULL, |
| 254 | .symsWlCnt = 0, |
| 255 | .symsWl = NULL, |
Robert Swiecki | 846ccd7 | 2017-01-12 17:52:23 +0100 | [diff] [blame] | 256 | .cloneFlags = 0, |
Robert Swiecki | 37d27ca | 2017-03-30 14:43:54 +0200 | [diff] [blame] | 257 | .kernelOnly = false, |
Robert Swiecki | 810d2c9 | 2017-06-01 21:37:27 +0200 | [diff] [blame] | 258 | .useClone = true, |
Jagger | ab26e70 | 2016-03-22 04:28:00 +0100 | [diff] [blame] | 259 | }, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 260 | }; |
| 261 | /* *INDENT-ON* */ |
| 262 | |
Robert Swiecki | afb1610 | 2017-03-13 22:14:31 +0100 | [diff] [blame] | 263 | TAILQ_INIT(&hfuzz->dynfileq); |
| 264 | TAILQ_INIT(&hfuzz->dictq); |
Robert Swiecki | 3bfc33c | 2016-03-14 18:12:41 +0100 | [diff] [blame] | 265 | |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 266 | /* *INDENT-OFF* */ |
| 267 | struct custom_option custom_opts[] = { |
| 268 | {{"help", no_argument, NULL, 'h'}, "Help plz.."}, |
Jagger | 1b2d482 | 2016-09-25 16:19:45 +0200 | [diff] [blame] | 269 | {{"input", required_argument, NULL, 'f'}, "Path to a directory containing initial file corpus"}, |
Robert Swiecki | ebdb2a5 | 2017-05-23 23:00:56 +0200 | [diff] [blame] | 270 | {{"persistent", no_argument, NULL, 'P'}, "Enable persistent fuzzing (use hfuzz_cc/hfuzz-clang to compile code)"}, |
| 271 | {{"instrument", no_argument, NULL, 'z'}, "Enable compile-time instrumentation (use hfuzz_cc/hfuzz-clang to compile code)"}, |
| 272 | {{"sancov", no_argument, NULL, 'C'}, "Enable sanitizer coverage feedback"}, |
Robert Swiecki | 4332ae9 | 2017-05-23 23:06:04 +0200 | [diff] [blame] | 273 | {{"keep_output", no_argument, NULL, 'Q'}, "Don't close children's stdin, stdout, stderr; can be noisy"}, |
Jagger | 54c96a2 | 2016-03-30 23:13:30 +0200 | [diff] [blame] | 274 | {{"timeout", required_argument, NULL, 't'}, "Timeout in seconds (default: '10')"}, |
Jagger | 2664f54 | 2016-09-28 14:37:00 +0200 | [diff] [blame] | 275 | {{"threads", required_argument, NULL, 'n'}, "Number of concurrent fuzzing threads (default: number of CPUs / 2)"}, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 276 | {{"stdin_input", no_argument, NULL, 's'}, "Provide fuzzing input on STDIN, instead of ___FILE___"}, |
Jagger | 54c96a2 | 2016-03-30 23:13:30 +0200 | [diff] [blame] | 277 | {{"mutation_rate", required_argument, NULL, 'r'}, "Maximal mutation rate in relation to the file size, (default: '0.001')"}, |
Robert Swiecki | 03ef531 | 2015-10-09 18:25:40 +0200 | [diff] [blame] | 278 | {{"logfile", required_argument, NULL, 'l'}, "Log file"}, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 279 | {{"verbose", no_argument, NULL, 'v'}, "Disable ANSI console; use simple log output"}, |
Jagger | 5ff08ac | 2016-02-09 22:15:58 +0100 | [diff] [blame] | 280 | {{"verifier", no_argument, NULL, 'V'}, "Enable crashes verifier"}, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 281 | {{"debug_level", required_argument, NULL, 'd'}, "Debug level (0 - FATAL ... 4 - DEBUG), (default: '3' [INFO])"}, |
| 282 | {{"extension", required_argument, NULL, 'e'}, "Input file extension (e.g. 'swf'), (default: 'fuzz')"}, |
Anestis Bechtsoudis | bfcba12 | 2016-04-28 10:55:20 +0300 | [diff] [blame] | 283 | {{"workspace", required_argument, NULL, 'W'}, "Workspace directory to save crashes & runtime files (default: '.')"}, |
Robert Swiecki | d32018f | 2016-10-11 22:58:22 +0200 | [diff] [blame] | 284 | {{"covdir", required_argument, NULL, 0x103}, "New coverage is written to a separate directory (default: use the input directory)"}, |
Robert Swiecki | bf95adc | 2017-06-02 03:55:45 +0200 | [diff] [blame] | 285 | {{"dict", required_argument, NULL, 'w'}, "Dictionary file. Format:http://llvm.org/docs/LibFuzzer.html#dictionaries"}, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 286 | {{"stackhash_bl", required_argument, NULL, 'B'}, "Stackhashes blacklist file (one entry per line)"}, |
Robert Swiecki | ee266ac | 2016-10-03 02:25:59 +0200 | [diff] [blame] | 287 | {{"mutate_cmd", required_argument, NULL, 'c'}, "External command producing fuzz files (instead of internal mutators)"}, |
| 288 | {{"pprocess_cmd", required_argument, NULL, 0x104}, "External command postprocessing files produced by internal mutators"}, |
Robert Swiecki | c95cf2a | 2017-06-23 15:31:08 +0200 | [diff] [blame^] | 289 | {{"run_time", required_argument, NULL, 0x109}, "Number of seconds this fuzzing session will last (default: '0' [no limit])"}, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 290 | {{"iterations", required_argument, NULL, 'N'}, "Number of fuzzing iterations (default: '0' [no limit])"}, |
Robert Swiecki | 03ef531 | 2015-10-09 18:25:40 +0200 | [diff] [blame] | 291 | {{"rlimit_as", required_argument, NULL, 0x100}, "Per process memory limit in MiB (default: '0' [no limit])"}, |
dyjakan | ebfd24e | 2015-10-16 19:24:32 +0100 | [diff] [blame] | 292 | {{"report", required_argument, NULL, 'R'}, "Write report to this file (default: '" _HF_REPORT_FILE "')"}, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 293 | {{"max_file_size", required_argument, NULL, 'F'}, "Maximal size of files processed by the fuzzer in bytes (default: '1048576')"}, |
Jagger | 80041fe | 2016-03-10 21:32:35 +0100 | [diff] [blame] | 294 | {{"clear_env", no_argument, NULL, 0x101}, "Clear all environment variables before executing the binary"}, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 295 | {{"env", required_argument, NULL, 'E'}, "Pass this environment variable, can be used multiple times"}, |
Jagger | 54c96a2 | 2016-03-30 23:13:30 +0200 | [diff] [blame] | 296 | {{"save_all", no_argument, NULL, 'u'}, "Save all test-cases (not only the unique ones) by appending the current time-stamp to the filenames"}, |
Jagger | 7ff92fa | 2016-03-22 04:13:50 +0100 | [diff] [blame] | 297 | {{"msan_report_umrs", no_argument, NULL, 0x102}, "Report MSAN's UMRS (uninitialized memory access)"}, |
Gergely Nagy | 5d47c73 | 2016-12-12 23:51:51 +0100 | [diff] [blame] | 298 | {{"tmout_sigvtalrm", no_argument, NULL, 'T'}, "Use SIGVTALRM to kill timeouting processes (default: use SIGKILL)"}, |
Anestis Bechtsoudis | e5f09f8 | 2016-12-27 16:06:05 +0200 | [diff] [blame] | 299 | {{"sanitizers", no_argument, NULL, 'S'}, "Enable sanitizers settings (default: false)"}, |
| 300 | {{"monitor_sigabrt", required_argument, NULL, 0x105}, "Monitor SIGABRT (default: 'false for Android - 'true for other platforms)"}, |
Robert Swiecki | 44f6b19 | 2017-02-15 20:24:55 +0100 | [diff] [blame] | 301 | {{"no_fb_timeout", required_argument, NULL, 0x106}, "Skip feedback if the process has timeouted (default: 'false')"}, |
Robert Swiecki | 069b48f | 2017-05-31 01:00:08 +0200 | [diff] [blame] | 302 | {{"exit_upon_crash", no_argument, NULL, 0x107}, "Exit upon seeing the first crash (default: 'false')"}, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 303 | |
| 304 | #if defined(_HF_ARCH_LINUX) |
Anestis Bechtsoudis | fafb333 | 2016-10-31 08:57:16 +0200 | [diff] [blame] | 305 | {{"linux_symbols_bl", required_argument, NULL, 0x504}, "Symbols blacklist filter file (one entry per line)"}, |
| 306 | {{"linux_symbols_wl", required_argument, NULL, 0x505}, "Symbols whitelist filter file (one entry per line)"}, |
Anestis Bechtsoudis | 413cb13 | 2016-02-07 12:59:00 +0200 | [diff] [blame] | 307 | {{"linux_pid", required_argument, NULL, 'p'}, "Attach to a pid (and its thread group)"}, |
Robert Swiecki | fab6916 | 2016-03-31 15:41:36 +0200 | [diff] [blame] | 308 | {{"linux_file_pid", required_argument, NULL, 0x502}, "Attach to pid (and its thread group) read from file"}, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 309 | {{"linux_addr_low_limit", required_argument, NULL, 0x500}, "Address limit (from si.si_addr) below which crashes are not reported, (default: '0')"}, |
| 310 | {{"linux_keep_aslr", no_argument, NULL, 0x501}, "Don't disable ASLR randomization, might be useful with MSAN"}, |
Jagger | ae6a445 | 2015-10-14 17:34:43 +0200 | [diff] [blame] | 311 | {{"linux_perf_ignore_above", required_argument, NULL, 0x503}, "Ignore perf events which report IPs above this address"}, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 312 | {{"linux_perf_instr", no_argument, NULL, 0x510}, "Use PERF_COUNT_HW_INSTRUCTIONS perf"}, |
| 313 | {{"linux_perf_branch", no_argument, NULL, 0x511}, "Use PERF_COUNT_HW_BRANCH_INSTRUCTIONS perf"}, |
Jagger | 39bd2b0 | 2016-02-04 01:16:15 +0100 | [diff] [blame] | 314 | {{"linux_perf_bts_edge", no_argument, NULL, 0x513}, "Use Intel BTS to count unique edges"}, |
Robert Swiecki | 8499c66 | 2016-11-01 18:02:52 +0100 | [diff] [blame] | 315 | {{"linux_perf_ipt_block", no_argument, NULL, 0x514}, "Use Intel Processor Trace to count unique blocks (requires libipt.so)"}, |
Robert Swiecki | 37d27ca | 2017-03-30 14:43:54 +0200 | [diff] [blame] | 316 | {{"linux_perf_kernel_only", no_argument, NULL, 0x515}, "Gather kernel-only coverage with Intel PT and with Intel BTS"}, |
Robert Swiecki | 846ccd7 | 2017-01-12 17:52:23 +0100 | [diff] [blame] | 317 | {{"linux_ns_net", no_argument, NULL, 0x0530}, "Use Linux NET namespace isolation"}, |
| 318 | {{"linux_ns_pid", no_argument, NULL, 0x0531}, "Use Linux PID namespace isolation"}, |
| 319 | {{"linux_ns_ipc", no_argument, NULL, 0x0532}, "Use Linux IPC namespace isolation"}, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 320 | #endif // defined(_HF_ARCH_LINUX) |
| 321 | {{0, 0, 0, 0}, NULL}, |
| 322 | }; |
| 323 | /* *INDENT-ON* */ |
| 324 | |
| 325 | struct option opts[ARRAYSIZE(custom_opts)]; |
| 326 | for (unsigned i = 0; i < ARRAYSIZE(custom_opts); i++) { |
| 327 | opts[i] = custom_opts[i].opt; |
| 328 | } |
| 329 | |
| 330 | enum llevel_t ll = INFO; |
| 331 | const char *logfile = NULL; |
| 332 | int opt_index = 0; |
| 333 | for (;;) { |
Robert Swiecki | 4332ae9 | 2017-05-23 23:06:04 +0200 | [diff] [blame] | 334 | int c = getopt_long(argc, argv, "-?hQvVsuPf:d:e:W:r:c:F:t:R:n:N:l:p:g:E:w:B:CzTS", opts, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 335 | &opt_index); |
| 336 | if (c < 0) |
| 337 | break; |
| 338 | |
| 339 | switch (c) { |
| 340 | case 'h': |
| 341 | case '?': |
| 342 | cmdlineUsage(argv[0], custom_opts); |
| 343 | break; |
| 344 | case 'f': |
Jagger | 1b2d482 | 2016-09-25 16:19:45 +0200 | [diff] [blame] | 345 | hfuzz->inputDir = optarg; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 346 | break; |
Robert Swiecki | 4332ae9 | 2017-05-23 23:06:04 +0200 | [diff] [blame] | 347 | case 'Q': |
| 348 | hfuzz->nullifyStdio = false; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 349 | break; |
| 350 | case 'v': |
| 351 | hfuzz->useScreen = false; |
| 352 | break; |
Anestis Bechtsoudis | 0cde66f | 2015-10-11 19:37:11 -0700 | [diff] [blame] | 353 | case 'V': |
| 354 | hfuzz->useVerifier = true; |
| 355 | break; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 356 | case 's': |
| 357 | hfuzz->fuzzStdin = true; |
| 358 | break; |
| 359 | case 'u': |
| 360 | hfuzz->saveUnique = false; |
| 361 | break; |
Robert Swiecki | 03ef531 | 2015-10-09 18:25:40 +0200 | [diff] [blame] | 362 | case 'l': |
| 363 | logfile = optarg; |
| 364 | break; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 365 | case 'd': |
| 366 | ll = atoi(optarg); |
| 367 | break; |
| 368 | case 'e': |
| 369 | hfuzz->fileExtn = optarg; |
| 370 | break; |
| 371 | case 'W': |
| 372 | hfuzz->workDir = optarg; |
| 373 | break; |
| 374 | case 'r': |
Robert Swiecki | a96d78d | 2016-03-14 16:50:50 +0100 | [diff] [blame] | 375 | hfuzz->origFlipRate = strtod(optarg, NULL); |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 376 | break; |
| 377 | case 'c': |
| 378 | hfuzz->externalCommand = optarg; |
| 379 | break; |
Anestis Bechtsoudis | be0ac7b | 2015-12-26 15:38:47 +0200 | [diff] [blame] | 380 | case 'C': |
| 381 | hfuzz->useSanCov = true; |
| 382 | break; |
Anestis Bechtsoudis | e5f09f8 | 2016-12-27 16:06:05 +0200 | [diff] [blame] | 383 | case 'S': |
| 384 | hfuzz->enableSanitizers = true; |
| 385 | break; |
Jagger | 4aac9fe | 2016-08-28 17:35:48 +0200 | [diff] [blame] | 386 | case 'z': |
| 387 | hfuzz->dynFileMethod |= _HF_DYNFILE_SOFT; |
| 388 | break; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 389 | case 'F': |
| 390 | hfuzz->maxFileSz = strtoul(optarg, NULL, 0); |
| 391 | break; |
| 392 | case 't': |
| 393 | hfuzz->tmOut = atol(optarg); |
| 394 | break; |
| 395 | case 'R': |
| 396 | hfuzz->reportFile = optarg; |
| 397 | break; |
| 398 | case 'n': |
| 399 | hfuzz->threadsMax = atol(optarg); |
| 400 | break; |
Robert Swiecki | c95cf2a | 2017-06-23 15:31:08 +0200 | [diff] [blame^] | 401 | case 0x109: |
| 402 | { |
| 403 | time_t p = atol(optarg); |
| 404 | if (p > 0) { |
| 405 | hfuzz->runEndTime = time(NULL) + p; |
| 406 | } |
| 407 | } |
| 408 | break; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 409 | case 'N': |
| 410 | hfuzz->mutationsMax = atol(optarg); |
| 411 | break; |
Robert Swiecki | 03ef531 | 2015-10-09 18:25:40 +0200 | [diff] [blame] | 412 | case 0x100: |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 413 | hfuzz->asLimit = strtoull(optarg, NULL, 0); |
| 414 | break; |
Jagger | 80041fe | 2016-03-10 21:32:35 +0100 | [diff] [blame] | 415 | case 0x101: |
| 416 | hfuzz->clearEnv = true; |
| 417 | break; |
Jagger | 7ff92fa | 2016-03-22 04:13:50 +0100 | [diff] [blame] | 418 | case 0x102: |
| 419 | hfuzz->msanReportUMRS = true; |
| 420 | break; |
Robert Swiecki | dac8cf1 | 2016-09-22 15:36:28 +0200 | [diff] [blame] | 421 | case 0x103: |
Jagger | 1b2d482 | 2016-09-25 16:19:45 +0200 | [diff] [blame] | 422 | hfuzz->covDir = optarg; |
Robert Swiecki | dac8cf1 | 2016-09-22 15:36:28 +0200 | [diff] [blame] | 423 | break; |
Robert Swiecki | ee266ac | 2016-10-03 02:25:59 +0200 | [diff] [blame] | 424 | case 0x104: |
| 425 | hfuzz->postExternalCommand = optarg; |
| 426 | break; |
Anestis Bechtsoudis | e5f09f8 | 2016-12-27 16:06:05 +0200 | [diff] [blame] | 427 | case 0x105: |
| 428 | if ((strcasecmp(optarg, "0") == 0) || (strcasecmp(optarg, "false") == 0)) { |
| 429 | hfuzz->monitorSIGABRT = false; |
| 430 | } else { |
| 431 | hfuzz->monitorSIGABRT = true; |
| 432 | } |
| 433 | break; |
Robert Swiecki | 44f6b19 | 2017-02-15 20:24:55 +0100 | [diff] [blame] | 434 | case 0x106: |
| 435 | hfuzz->skipFeedbackOnTimeout = true; |
| 436 | break; |
Robert Swiecki | 069b48f | 2017-05-31 01:00:08 +0200 | [diff] [blame] | 437 | case 0x107: |
| 438 | hfuzz->exitUponCrash = true; |
| 439 | break; |
Robert Swiecki | fab6916 | 2016-03-31 15:41:36 +0200 | [diff] [blame] | 440 | case 'P': |
Robert Swiecki | 0f937af | 2016-03-30 18:19:16 +0200 | [diff] [blame] | 441 | hfuzz->persistent = true; |
| 442 | break; |
Gergely Nagy | 5d47c73 | 2016-12-12 23:51:51 +0100 | [diff] [blame] | 443 | case 'T': |
Robert Swiecki | e84b645 | 2016-12-12 12:42:04 +0100 | [diff] [blame] | 444 | hfuzz->tmout_vtalrm = true; |
| 445 | break; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 446 | case 'p': |
Anestis Bechtsoudis | 413cb13 | 2016-02-07 12:59:00 +0200 | [diff] [blame] | 447 | if (util_isANumber(optarg) == false) { |
Jagger | 9c4d162 | 2015-10-16 01:40:17 +0200 | [diff] [blame] | 448 | LOG_E("-p '%s' is not a number", optarg); |
| 449 | return false; |
| 450 | } |
Jagger | 247c3b4 | 2016-03-21 23:24:05 +0100 | [diff] [blame] | 451 | hfuzz->linux.pid = atoi(optarg); |
| 452 | if (hfuzz->linux.pid < 1) { |
| 453 | LOG_E("-p '%d' is invalid", hfuzz->linux.pid); |
Jagger | 9c4d162 | 2015-10-16 01:40:17 +0200 | [diff] [blame] | 454 | return false; |
| 455 | } |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 456 | break; |
Robert Swiecki | fab6916 | 2016-03-31 15:41:36 +0200 | [diff] [blame] | 457 | case 0x502: |
Jagger | 247c3b4 | 2016-03-21 23:24:05 +0100 | [diff] [blame] | 458 | hfuzz->linux.pidFile = optarg; |
Anestis Bechtsoudis | 413cb13 | 2016-02-07 12:59:00 +0200 | [diff] [blame] | 459 | break; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 460 | case 'E': |
| 461 | for (size_t i = 0; i < ARRAYSIZE(hfuzz->envs); i++) { |
| 462 | if (hfuzz->envs[i] == NULL) { |
| 463 | hfuzz->envs[i] = optarg; |
| 464 | break; |
| 465 | } |
| 466 | } |
| 467 | break; |
| 468 | case 'w': |
| 469 | hfuzz->dictionaryFile = optarg; |
| 470 | break; |
| 471 | case 'B': |
| 472 | hfuzz->blacklistFile = optarg; |
| 473 | break; |
Robert Swiecki | 846ccd7 | 2017-01-12 17:52:23 +0100 | [diff] [blame] | 474 | #if defined(_HF_ARCH_LINUX) |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 475 | case 0x500: |
Jagger | 247c3b4 | 2016-03-21 23:24:05 +0100 | [diff] [blame] | 476 | hfuzz->linux.ignoreAddr = (void *)strtoul(optarg, NULL, 0); |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 477 | break; |
| 478 | case 0x501: |
Jagger | 247c3b4 | 2016-03-21 23:24:05 +0100 | [diff] [blame] | 479 | hfuzz->linux.disableRandomization = false; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 480 | break; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 481 | case 0x503: |
Jagger | 247c3b4 | 2016-03-21 23:24:05 +0100 | [diff] [blame] | 482 | hfuzz->linux.dynamicCutOffAddr = strtoull(optarg, NULL, 0); |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 483 | break; |
Anestis Bechtsoudis | ba68b38 | 2016-10-29 20:44:15 +0300 | [diff] [blame] | 484 | case 0x504: |
| 485 | hfuzz->linux.symsBlFile = optarg; |
| 486 | break; |
| 487 | case 0x505: |
| 488 | hfuzz->linux.symsWlFile = optarg; |
| 489 | break; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 490 | case 0x510: |
| 491 | hfuzz->dynFileMethod |= _HF_DYNFILE_INSTR_COUNT; |
| 492 | break; |
| 493 | case 0x511: |
| 494 | hfuzz->dynFileMethod |= _HF_DYNFILE_BRANCH_COUNT; |
| 495 | break; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 496 | case 0x513: |
Jagger | 3abc560 | 2016-02-04 00:53:43 +0100 | [diff] [blame] | 497 | hfuzz->dynFileMethod |= _HF_DYNFILE_BTS_EDGE; |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 498 | break; |
| 499 | case 0x514: |
Jagger | 39bd2b0 | 2016-02-04 01:16:15 +0100 | [diff] [blame] | 500 | hfuzz->dynFileMethod |= _HF_DYNFILE_IPT_BLOCK; |
| 501 | break; |
Robert Swiecki | 37d27ca | 2017-03-30 14:43:54 +0200 | [diff] [blame] | 502 | case 0x515: |
| 503 | hfuzz->linux.kernelOnly = true; |
| 504 | break; |
Robert Swiecki | 846ccd7 | 2017-01-12 17:52:23 +0100 | [diff] [blame] | 505 | case 0x530: |
| 506 | hfuzz->linux.cloneFlags |= (CLONE_NEWUSER | CLONE_NEWNET); |
| 507 | break; |
| 508 | case 0x531: |
| 509 | hfuzz->linux.cloneFlags |= (CLONE_NEWUSER | CLONE_NEWPID); |
| 510 | break; |
| 511 | case 0x532: |
| 512 | hfuzz->linux.cloneFlags |= (CLONE_NEWUSER | CLONE_NEWIPC); |
| 513 | break; |
| 514 | #endif /* defined(_HF_ARCH_LINUX) */ |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 515 | default: |
| 516 | cmdlineUsage(argv[0], custom_opts); |
| 517 | return false; |
| 518 | break; |
| 519 | } |
| 520 | } |
Jagger | 72f258b | 2015-10-09 23:09:01 +0200 | [diff] [blame] | 521 | |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 522 | if (logInitLogFile(logfile, ll) == false) { |
| 523 | return false; |
| 524 | } |
| 525 | |
| 526 | hfuzz->cmdline = &argv[optind]; |
| 527 | if (hfuzz->cmdline[0] == NULL) { |
| 528 | LOG_E("No fuzz command provided"); |
| 529 | cmdlineUsage(argv[0], custom_opts); |
| 530 | return false; |
| 531 | } |
| 532 | |
Robert Swiecki | 0f937af | 2016-03-30 18:19:16 +0200 | [diff] [blame] | 533 | if (!hfuzz->fuzzStdin && !hfuzz->persistent && !checkFor_FILE_PLACEHOLDER(hfuzz->cmdline)) { |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 534 | LOG_E("You must specify '" _HF_FILE_PLACEHOLDER |
Robert Swiecki | 0f937af | 2016-03-30 18:19:16 +0200 | [diff] [blame] | 535 | "' when the -s (stdin fuzzing) or --persistent options are not set"); |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 536 | return false; |
| 537 | } |
| 538 | |
Robert Swiecki | 5b775b2 | 2017-04-28 16:19:15 +0200 | [diff] [blame] | 539 | if (hfuzz->fuzzStdin && hfuzz->persistent) { |
Robert Swiecki | d633fe0 | 2017-04-28 17:40:27 +0200 | [diff] [blame] | 540 | LOG_E |
| 541 | ("Stdin fuzzing (-s) and persistent fuzzing (-P) cannot be specified at the same time"); |
| 542 | return false; |
Robert Swiecki | 5b775b2 | 2017-04-28 16:19:15 +0200 | [diff] [blame] | 543 | } |
| 544 | |
Robert Swiecki | 71b7372 | 2016-09-05 15:18:25 +0200 | [diff] [blame] | 545 | if (hfuzz->threadsMax >= _HF_THREAD_MAX) { |
| 546 | LOG_E("Too many fuzzing threads specified %zu (>= _HF_THREAD_MAX (%u))", hfuzz->threadsMax, |
| 547 | _HF_THREAD_MAX); |
| 548 | return false; |
| 549 | } |
| 550 | |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 551 | if (strchr(hfuzz->fileExtn, '/')) { |
| 552 | LOG_E("The file extension contains the '/' character: '%s'", hfuzz->fileExtn); |
| 553 | return false; |
| 554 | } |
Anestis Bechtsoudis | be0ac7b | 2015-12-26 15:38:47 +0200 | [diff] [blame] | 555 | |
Anestis Bechtsoudis | 8f4aa61 | 2015-12-27 12:06:19 +0200 | [diff] [blame] | 556 | if (hfuzz->workDir[0] != '.' || strlen(hfuzz->workDir) > 2) { |
Anestis Bechtsoudis | c8e7f6e | 2015-12-26 14:48:48 +0200 | [diff] [blame] | 557 | if (!files_exists(hfuzz->workDir)) { |
| 558 | LOG_E("Provided workspace directory '%s' doesn't exist", hfuzz->workDir); |
| 559 | return false; |
| 560 | } |
| 561 | } |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 562 | |
Jagger | 247c3b4 | 2016-03-21 23:24:05 +0100 | [diff] [blame] | 563 | if (hfuzz->linux.pid > 0 || hfuzz->linux.pidFile) { |
| 564 | LOG_I("PID=%d specified, lowering maximum number of concurrent threads to 1", |
| 565 | hfuzz->linux.pid); |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 566 | hfuzz->threadsMax = 1; |
| 567 | } |
| 568 | |
Robert Swiecki | a96d78d | 2016-03-14 16:50:50 +0100 | [diff] [blame] | 569 | if (hfuzz->origFlipRate == 0.0L && hfuzz->useVerifier) { |
Anestis Bechtsoudis | c8e7f6e | 2015-12-26 14:48:48 +0200 | [diff] [blame] | 570 | LOG_I("Verifier enabled with 0.0 flipRate, activating dry run mode"); |
Anestis Bechtsoudis | 46ea10e | 2015-11-07 18:16:25 +0200 | [diff] [blame] | 571 | } |
| 572 | |
Anestis Bechtsoudis | c1a0d9f | 2016-12-29 11:34:10 +0200 | [diff] [blame] | 573 | /* |
| 574 | * 'enableSanitizers' can be auto enabled when 'useSanCov', although it's probably |
| 575 | * better to let user know about the features that each flag control. |
| 576 | */ |
| 577 | if (hfuzz->useSanCov == true && hfuzz->enableSanitizers == false) { |
| 578 | LOG_E("Sanitizer coverage cannot be used without enabling sanitizers '-S/--sanitizers'"); |
| 579 | return false; |
| 580 | } |
| 581 | |
Robert Swiecki | aa87aae | 2017-02-09 03:04:51 +0100 | [diff] [blame] | 582 | LOG_I("PID: %d, inputDir '%s', nullifyStdio: %s, fuzzStdin: %s, saveUnique: %s, flipRate: %lf, " |
Robert Swiecki | c95cf2a | 2017-06-23 15:31:08 +0200 | [diff] [blame^] | 583 | "externalCommand: '%s', runEndTime: %d tmOut: %ld, mutationsMax: %zu, threadsMax: %zu, fileExtn: '%s', " |
Anestis Bechtsoudis | ecab776 | 2016-12-27 18:27:30 +0200 | [diff] [blame] | 584 | "memoryLimit: 0x%" PRIx64 "(MiB), fuzzExe: '%s', fuzzedPid: %d, monitorSIGABRT: '%s'", |
Robert Swiecki | aa87aae | 2017-02-09 03:04:51 +0100 | [diff] [blame] | 585 | (int)getpid(), hfuzz->inputDir, |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 586 | cmdlineYesNo(hfuzz->nullifyStdio), cmdlineYesNo(hfuzz->fuzzStdin), |
Robert Swiecki | a96d78d | 2016-03-14 16:50:50 +0100 | [diff] [blame] | 587 | cmdlineYesNo(hfuzz->saveUnique), hfuzz->origFlipRate, |
Robert Swiecki | c95cf2a | 2017-06-23 15:31:08 +0200 | [diff] [blame^] | 588 | hfuzz->externalCommand == NULL ? "NULL" : hfuzz->externalCommand, (int)hfuzz->runEndTime, |
| 589 | hfuzz->tmOut, hfuzz->mutationsMax, hfuzz->threadsMax, hfuzz->fileExtn, hfuzz->asLimit, |
| 590 | hfuzz->cmdline[0], hfuzz->linux.pid, cmdlineYesNo(hfuzz->monitorSIGABRT)); |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 591 | |
Robert Swiecki | 2aaa52b | 2016-01-19 14:40:47 +0100 | [diff] [blame] | 592 | snprintf(hfuzz->cmdline_txt, sizeof(hfuzz->cmdline_txt), "%s", hfuzz->cmdline[0]); |
Robert Swiecki | 72d2bef | 2016-01-19 14:39:26 +0100 | [diff] [blame] | 593 | for (size_t i = 1; hfuzz->cmdline[i]; i++) { |
| 594 | util_ssnprintf(hfuzz->cmdline_txt, sizeof(hfuzz->cmdline_txt), " %s", hfuzz->cmdline[i]); |
Robert Swiecki | f2d9c3a | 2016-11-03 02:13:54 +0100 | [diff] [blame] | 595 | if (strlen(hfuzz->cmdline_txt) == (sizeof(hfuzz->cmdline_txt) - 1)) { |
| 596 | hfuzz->cmdline_txt[sizeof(hfuzz->cmdline_txt) - 3] = '.'; |
| 597 | hfuzz->cmdline_txt[sizeof(hfuzz->cmdline_txt) - 2] = '.'; |
| 598 | hfuzz->cmdline_txt[sizeof(hfuzz->cmdline_txt) - 1] = '.'; |
| 599 | } |
Robert Swiecki | 72d2bef | 2016-01-19 14:39:26 +0100 | [diff] [blame] | 600 | } |
| 601 | |
Robert Swiecki | a88f96f | 2015-10-09 16:47:39 +0200 | [diff] [blame] | 602 | return true; |
| 603 | } |