Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 1 | #include <errno.h> |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 2 | #include <fcntl.h> |
| 3 | #include <limits.h> |
| 4 | #include <stdbool.h> |
| 5 | #include <stdint.h> |
| 6 | #include <stdio.h> |
| 7 | #include <stdlib.h> |
| 8 | #include <signal.h> |
| 9 | #include <sys/stat.h> |
| 10 | #include <sys/types.h> |
| 11 | #include <unistd.h> |
| 12 | |
Robert Swiecki | 61c8dcb | 2016-03-30 19:27:15 +0200 | [diff] [blame] | 13 | #define HF_FUZZ_FD 1023 |
Robert Swiecki | 00afa05 | 2016-03-30 19:52:52 +0200 | [diff] [blame] | 14 | #define HF_BUF_SIZE (1024 * 1024 * 16) |
Robert Swiecki | 61c8dcb | 2016-03-30 19:27:15 +0200 | [diff] [blame] | 15 | |
Jagger | a72ac9d | 2016-04-01 23:48:12 +0200 | [diff] [blame] | 16 | static inline ssize_t readFromFd(int fd, uint8_t * buf, size_t len) |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 17 | { |
Jagger | a72ac9d | 2016-04-01 23:48:12 +0200 | [diff] [blame] | 18 | size_t readSz = 0; |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 19 | while (readSz < len) { |
| 20 | ssize_t sz = read(fd, &buf[readSz], len - readSz); |
| 21 | if (sz < 0 && errno == EINTR) |
| 22 | continue; |
| 23 | |
Jagger | 799a4d4 | 2016-04-01 23:27:51 +0200 | [diff] [blame] | 24 | if (sz == 0) |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 25 | break; |
| 26 | |
Jagger | 799a4d4 | 2016-04-01 23:27:51 +0200 | [diff] [blame] | 27 | if (sz < 0) |
| 28 | return -1; |
| 29 | |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 30 | readSz += sz; |
| 31 | } |
Jagger | 35f476e | 2016-04-02 00:07:26 +0200 | [diff] [blame] | 32 | return (ssize_t) readSz; |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 33 | } |
| 34 | |
Jagger | a72ac9d | 2016-04-01 23:48:12 +0200 | [diff] [blame] | 35 | static inline bool readFromFdAll(int fd, uint8_t * buf, size_t len) |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 36 | { |
Jagger | 35f476e | 2016-04-02 00:07:26 +0200 | [diff] [blame] | 37 | return (readFromFd(fd, buf, len) == (ssize_t) len); |
Robert Swiecki | 61c8dcb | 2016-03-30 19:27:15 +0200 | [diff] [blame] | 38 | } |
| 39 | |
Jagger | a72ac9d | 2016-04-01 23:48:12 +0200 | [diff] [blame] | 40 | static bool writeToFd(int fd, uint8_t * buf, size_t len) |
Robert Swiecki | 61c8dcb | 2016-03-30 19:27:15 +0200 | [diff] [blame] | 41 | { |
Jagger | a72ac9d | 2016-04-01 23:48:12 +0200 | [diff] [blame] | 42 | size_t writtenSz = 0; |
Robert Swiecki | 61c8dcb | 2016-03-30 19:27:15 +0200 | [diff] [blame] | 43 | while (writtenSz < len) { |
| 44 | ssize_t sz = write(fd, &buf[writtenSz], len - writtenSz); |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 45 | if (sz < 0 && errno == EINTR) |
| 46 | continue; |
| 47 | |
| 48 | if (sz < 0) |
| 49 | return false; |
| 50 | |
| 51 | writtenSz += sz; |
| 52 | } |
Robert Swiecki | 61c8dcb | 2016-03-30 19:27:15 +0200 | [diff] [blame] | 53 | return (writtenSz == len); |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 54 | } |
| 55 | |
| 56 | int LLVMFuzzerTestOneInput(uint8_t * buf, size_t len); |
Jagger | 88c51a1 | 2016-04-01 23:19:57 +0200 | [diff] [blame] | 57 | __attribute__ ((weak)) |
| 58 | int LLVMFuzzerInitialize(int *argc, char ***argv); |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 59 | |
Jagger | a72ac9d | 2016-04-01 23:48:12 +0200 | [diff] [blame] | 60 | int main(int argc, char **argv) |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 61 | { |
Robert Swiecki | 39a0373 | 2016-04-01 15:43:37 +0200 | [diff] [blame] | 62 | uint8_t *buf = (uint8_t *) malloc(HF_BUF_SIZE); |
Robert Swiecki | 00afa05 | 2016-03-30 19:52:52 +0200 | [diff] [blame] | 63 | if (buf == NULL) { |
| 64 | perror("malloc"); |
Robert Swiecki | a93f5b9 | 2016-03-30 20:39:34 +0200 | [diff] [blame] | 65 | _exit(1); |
Robert Swiecki | 00afa05 | 2016-03-30 19:52:52 +0200 | [diff] [blame] | 66 | } |
| 67 | |
Jagger | 88c51a1 | 2016-04-01 23:19:57 +0200 | [diff] [blame] | 68 | if (LLVMFuzzerInitialize) { |
| 69 | LLVMFuzzerInitialize(&argc, &argv); |
| 70 | } |
| 71 | |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 72 | for (;;) { |
Jagger | 04d8482 | 2016-04-03 21:54:49 +0200 | [diff] [blame] | 73 | uint32_t rlen; |
Jagger | 1d74338 | 2016-04-02 02:09:41 +0200 | [diff] [blame] | 74 | if (readFromFdAll(HF_FUZZ_FD, (uint8_t *) & rlen, sizeof(rlen)) == false) { |
| 75 | fprintf(stderr, "readFromFdAll(size) failed"); |
| 76 | _exit(1); |
| 77 | } |
| 78 | size_t len = (size_t) rlen; |
| 79 | if (len > HF_BUF_SIZE) { |
| 80 | fprintf(stderr, "len (%zu) > buf_size (%zu)", len, (size_t) HF_BUF_SIZE); |
Robert Swiecki | a93f5b9 | 2016-03-30 20:39:34 +0200 | [diff] [blame] | 81 | _exit(1); |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 82 | } |
| 83 | |
Jagger | 1d74338 | 2016-04-02 02:09:41 +0200 | [diff] [blame] | 84 | if (readFromFdAll(HF_FUZZ_FD, buf, len) == false) { |
| 85 | fprintf(stderr, "readFromFdAll(buf) failed"); |
Robert Swiecki | a93f5b9 | 2016-03-30 20:39:34 +0200 | [diff] [blame] | 86 | _exit(1); |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 87 | } |
| 88 | |
Jagger | 1d74338 | 2016-04-02 02:09:41 +0200 | [diff] [blame] | 89 | int ret = LLVMFuzzerTestOneInput(buf, len); |
Robert Swiecki | 00afa05 | 2016-03-30 19:52:52 +0200 | [diff] [blame] | 90 | if (ret != 0) { |
Jagger | 799a4d4 | 2016-04-01 23:27:51 +0200 | [diff] [blame] | 91 | printf("LLVMFuzzerTestOneInput() returned '%d'", ret); |
Robert Swiecki | a93f5b9 | 2016-03-30 20:39:34 +0200 | [diff] [blame] | 92 | _exit(1); |
Robert Swiecki | 00afa05 | 2016-03-30 19:52:52 +0200 | [diff] [blame] | 93 | } |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 94 | |
Robert Swiecki | 3047cd3 | 2016-03-31 16:26:01 +0200 | [diff] [blame] | 95 | /* |
| 96 | * Send the 'done' marker to the parent */ |
Robert Swiecki | 61c8dcb | 2016-03-30 19:27:15 +0200 | [diff] [blame] | 97 | uint8_t z = 'A'; |
| 98 | if (writeToFd(HF_FUZZ_FD, &z, sizeof(z)) == false) { |
Jagger | 799a4d4 | 2016-04-01 23:27:51 +0200 | [diff] [blame] | 99 | fprintf(stderr, "readFromFdAll() failed"); |
Robert Swiecki | a93f5b9 | 2016-03-30 20:39:34 +0200 | [diff] [blame] | 100 | _exit(1); |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 101 | } |
Robert Swiecki | 3047cd3 | 2016-03-31 16:26:01 +0200 | [diff] [blame] | 102 | /* |
| 103 | * Inform the parent that we're done, so it can break out of its wait() |
Jagger | 88c51a1 | 2016-04-01 23:19:57 +0200 | [diff] [blame] | 104 | * sleep cycle |
Robert Swiecki | 3047cd3 | 2016-03-31 16:26:01 +0200 | [diff] [blame] | 105 | * */ |
Robert Swiecki | 42d932a | 2016-03-30 19:18:33 +0200 | [diff] [blame] | 106 | raise(SIGCONT); |
| 107 | } |
| 108 | } |