Justin Bogner | 7f28d73 | 2017-09-02 23:43:04 +0000 | [diff] [blame] | 1 | //===-- FuzzerCLI.cpp -----------------------------------------------------===// |
| 2 | // |
Chandler Carruth | 2946cd7 | 2019-01-19 08:50:56 +0000 | [diff] [blame] | 3 | // Part of the LLVM Project, under the Apache License v2.0 with LLVM Exceptions. |
| 4 | // See https://llvm.org/LICENSE.txt for license information. |
| 5 | // SPDX-License-Identifier: Apache-2.0 WITH LLVM-exception |
Justin Bogner | 7f28d73 | 2017-09-02 23:43:04 +0000 | [diff] [blame] | 6 | // |
| 7 | //===----------------------------------------------------------------------===// |
| 8 | |
| 9 | #include "llvm/FuzzMutate/FuzzerCLI.h" |
Justin Bogner | 9ea7fbd | 2017-10-12 04:35:32 +0000 | [diff] [blame] | 10 | #include "llvm/ADT/Triple.h" |
Igor Laevsky | e714ef4 | 2017-11-16 15:23:08 +0000 | [diff] [blame] | 11 | #include "llvm/Bitcode/BitcodeReader.h" |
| 12 | #include "llvm/Bitcode/BitcodeWriter.h" |
| 13 | #include "llvm/IR/LLVMContext.h" |
Justin Bogner | 7f28d73 | 2017-09-02 23:43:04 +0000 | [diff] [blame] | 14 | #include "llvm/Support/CommandLine.h" |
| 15 | #include "llvm/Support/Compiler.h" |
| 16 | #include "llvm/Support/Error.h" |
| 17 | #include "llvm/Support/MemoryBuffer.h" |
Igor Laevsky | e714ef4 | 2017-11-16 15:23:08 +0000 | [diff] [blame] | 18 | #include "llvm/Support/SourceMgr.h" |
Justin Bogner | 7f28d73 | 2017-09-02 23:43:04 +0000 | [diff] [blame] | 19 | #include "llvm/Support/raw_ostream.h" |
Igor Laevsky | 14c979d | 2018-02-05 11:05:47 +0000 | [diff] [blame] | 20 | #include "llvm/IR/Verifier.h" |
Justin Bogner | 7f28d73 | 2017-09-02 23:43:04 +0000 | [diff] [blame] | 21 | |
| 22 | using namespace llvm; |
| 23 | |
| 24 | void llvm::parseFuzzerCLOpts(int ArgC, char *ArgV[]) { |
| 25 | std::vector<const char *> CLArgs; |
| 26 | CLArgs.push_back(ArgV[0]); |
| 27 | |
| 28 | int I = 1; |
| 29 | while (I < ArgC) |
| 30 | if (StringRef(ArgV[I++]).equals("-ignore_remaining_args=1")) |
| 31 | break; |
| 32 | while (I < ArgC) |
| 33 | CLArgs.push_back(ArgV[I++]); |
| 34 | |
| 35 | cl::ParseCommandLineOptions(CLArgs.size(), CLArgs.data()); |
| 36 | } |
| 37 | |
Justin Bogner | 9ea7fbd | 2017-10-12 04:35:32 +0000 | [diff] [blame] | 38 | void llvm::handleExecNameEncodedBEOpts(StringRef ExecName) { |
| 39 | std::vector<std::string> Args{ExecName}; |
| 40 | |
Matt Morehouse | 8bc23ab | 2017-10-13 00:18:32 +0000 | [diff] [blame] | 41 | auto NameAndArgs = ExecName.split("--"); |
Justin Bogner | 9ea7fbd | 2017-10-12 04:35:32 +0000 | [diff] [blame] | 42 | if (NameAndArgs.second.empty()) |
| 43 | return; |
| 44 | |
| 45 | SmallVector<StringRef, 4> Opts; |
| 46 | NameAndArgs.second.split(Opts, '-'); |
| 47 | for (StringRef Opt : Opts) { |
| 48 | if (Opt.equals("gisel")) { |
| 49 | Args.push_back("-global-isel"); |
| 50 | // For now we default GlobalISel to -O0 |
| 51 | Args.push_back("-O0"); |
| 52 | } else if (Opt.startswith("O")) { |
| 53 | Args.push_back("-" + Opt.str()); |
Justin Bogner | 45623bd | 2017-10-17 02:39:40 +0000 | [diff] [blame] | 54 | } else if (Triple(Opt).getArch()) { |
Justin Bogner | 9ea7fbd | 2017-10-12 04:35:32 +0000 | [diff] [blame] | 55 | Args.push_back("-mtriple=" + Opt.str()); |
| 56 | } else { |
| 57 | errs() << ExecName << ": Unknown option: " << Opt << ".\n"; |
| 58 | exit(1); |
| 59 | } |
| 60 | } |
| 61 | errs() << NameAndArgs.first << ": Injected args:"; |
| 62 | for (int I = 1, E = Args.size(); I < E; ++I) |
| 63 | errs() << " " << Args[I]; |
| 64 | errs() << "\n"; |
| 65 | |
| 66 | std::vector<const char *> CLArgs; |
| 67 | CLArgs.reserve(Args.size()); |
| 68 | for (std::string &S : Args) |
| 69 | CLArgs.push_back(S.c_str()); |
| 70 | |
| 71 | cl::ParseCommandLineOptions(CLArgs.size(), CLArgs.data()); |
| 72 | } |
| 73 | |
Igor Laevsky | 13cc995 | 2017-11-10 12:19:08 +0000 | [diff] [blame] | 74 | void llvm::handleExecNameEncodedOptimizerOpts(StringRef ExecName) { |
| 75 | // TODO: Refactor parts common with the 'handleExecNameEncodedBEOpts' |
| 76 | std::vector<std::string> Args{ExecName}; |
| 77 | |
| 78 | auto NameAndArgs = ExecName.split("--"); |
| 79 | if (NameAndArgs.second.empty()) |
| 80 | return; |
| 81 | |
| 82 | SmallVector<StringRef, 4> Opts; |
| 83 | NameAndArgs.second.split(Opts, '-'); |
| 84 | for (StringRef Opt : Opts) { |
Igor Laevsky | fd3a56e | 2018-02-19 11:57:07 +0000 | [diff] [blame] | 85 | if (Opt == "instcombine") { |
Igor Laevsky | 13cc995 | 2017-11-10 12:19:08 +0000 | [diff] [blame] | 86 | Args.push_back("-passes=instcombine"); |
Igor Laevsky | fd3a56e | 2018-02-19 11:57:07 +0000 | [diff] [blame] | 87 | } else if (Opt == "earlycse") { |
Igor Laevsky | 50acecf | 2018-01-24 09:57:17 +0000 | [diff] [blame] | 88 | Args.push_back("-passes=early-cse"); |
Igor Laevsky | fd3a56e | 2018-02-19 11:57:07 +0000 | [diff] [blame] | 89 | } else if (Opt == "simplifycfg") { |
Igor Laevsky | 50acecf | 2018-01-24 09:57:17 +0000 | [diff] [blame] | 90 | Args.push_back("-passes=simplify-cfg"); |
Igor Laevsky | fd3a56e | 2018-02-19 11:57:07 +0000 | [diff] [blame] | 91 | } else if (Opt == "gvn") { |
Igor Laevsky | 50acecf | 2018-01-24 09:57:17 +0000 | [diff] [blame] | 92 | Args.push_back("-passes=gvn"); |
Igor Laevsky | fd3a56e | 2018-02-19 11:57:07 +0000 | [diff] [blame] | 93 | } else if (Opt == "sccp") { |
Igor Laevsky | 50acecf | 2018-01-24 09:57:17 +0000 | [diff] [blame] | 94 | Args.push_back("-passes=sccp"); |
Fangrui Song | f78650a | 2018-07-30 19:41:25 +0000 | [diff] [blame] | 95 | |
Igor Laevsky | fd3a56e | 2018-02-19 11:57:07 +0000 | [diff] [blame] | 96 | } else if (Opt == "loop_predication") { |
| 97 | Args.push_back("-passes=loop-predication"); |
| 98 | } else if (Opt == "guard_widening") { |
| 99 | Args.push_back("-passes=guard-widening"); |
| 100 | } else if (Opt == "loop_rotate") { |
| 101 | Args.push_back("-passes=loop(rotate)"); |
| 102 | } else if (Opt == "loop_unswitch") { |
| 103 | Args.push_back("-passes=loop(unswitch)"); |
| 104 | } else if (Opt == "loop_unroll") { |
| 105 | Args.push_back("-passes=unroll"); |
| 106 | } else if (Opt == "loop_vectorize") { |
| 107 | Args.push_back("-passes=loop-vectorize"); |
| 108 | } else if (Opt == "licm") { |
| 109 | Args.push_back("-passes=licm"); |
| 110 | } else if (Opt == "indvars") { |
| 111 | Args.push_back("-passes=indvars"); |
| 112 | } else if (Opt == "strength_reduce") { |
| 113 | Args.push_back("-passes=strength-reduce"); |
Igor Laevsky | 3ce2d7f | 2018-03-20 11:32:13 +0000 | [diff] [blame] | 114 | } else if (Opt == "irce") { |
| 115 | Args.push_back("-passes=irce"); |
Fangrui Song | f78650a | 2018-07-30 19:41:25 +0000 | [diff] [blame] | 116 | |
Igor Laevsky | 13cc995 | 2017-11-10 12:19:08 +0000 | [diff] [blame] | 117 | } else if (Triple(Opt).getArch()) { |
| 118 | Args.push_back("-mtriple=" + Opt.str()); |
| 119 | } else { |
| 120 | errs() << ExecName << ": Unknown option: " << Opt << ".\n"; |
| 121 | exit(1); |
| 122 | } |
| 123 | } |
| 124 | |
| 125 | errs() << NameAndArgs.first << ": Injected args:"; |
| 126 | for (int I = 1, E = Args.size(); I < E; ++I) |
| 127 | errs() << " " << Args[I]; |
| 128 | errs() << "\n"; |
| 129 | |
| 130 | std::vector<const char *> CLArgs; |
| 131 | CLArgs.reserve(Args.size()); |
| 132 | for (std::string &S : Args) |
| 133 | CLArgs.push_back(S.c_str()); |
| 134 | |
| 135 | cl::ParseCommandLineOptions(CLArgs.size(), CLArgs.data()); |
| 136 | } |
| 137 | |
Justin Bogner | 7f28d73 | 2017-09-02 23:43:04 +0000 | [diff] [blame] | 138 | int llvm::runFuzzerOnInputs(int ArgC, char *ArgV[], FuzzerTestFun TestOne, |
| 139 | FuzzerInitFun Init) { |
| 140 | errs() << "*** This tool was not linked to libFuzzer.\n" |
| 141 | << "*** No fuzzing will be performed.\n"; |
| 142 | if (int RC = Init(&ArgC, &ArgV)) { |
| 143 | errs() << "Initialization failed\n"; |
| 144 | return RC; |
| 145 | } |
| 146 | |
| 147 | for (int I = 1; I < ArgC; ++I) { |
| 148 | StringRef Arg(ArgV[I]); |
| 149 | if (Arg.startswith("-")) { |
| 150 | if (Arg.equals("-ignore_remaining_args=1")) |
| 151 | break; |
| 152 | continue; |
| 153 | } |
| 154 | |
| 155 | auto BufOrErr = MemoryBuffer::getFile(Arg, /*FileSize-*/ -1, |
| 156 | /*RequiresNullTerminator=*/false); |
| 157 | if (std::error_code EC = BufOrErr.getError()) { |
| 158 | errs() << "Error reading file: " << Arg << ": " << EC.message() << "\n"; |
| 159 | return 1; |
| 160 | } |
| 161 | std::unique_ptr<MemoryBuffer> Buf = std::move(BufOrErr.get()); |
| 162 | errs() << "Running: " << Arg << " (" << Buf->getBufferSize() << " bytes)\n"; |
| 163 | TestOne(reinterpret_cast<const uint8_t *>(Buf->getBufferStart()), |
| 164 | Buf->getBufferSize()); |
| 165 | } |
| 166 | return 0; |
| 167 | } |
Igor Laevsky | e714ef4 | 2017-11-16 15:23:08 +0000 | [diff] [blame] | 168 | |
| 169 | std::unique_ptr<Module> llvm::parseModule( |
| 170 | const uint8_t *Data, size_t Size, LLVMContext &Context) { |
| 171 | |
| 172 | if (Size <= 1) |
| 173 | // We get bogus data given an empty corpus - just create a new module. |
Jonas Devlieghere | 0eaee54 | 2019-08-15 15:54:37 +0000 | [diff] [blame] | 174 | return std::make_unique<Module>("M", Context); |
Igor Laevsky | e714ef4 | 2017-11-16 15:23:08 +0000 | [diff] [blame] | 175 | |
| 176 | auto Buffer = MemoryBuffer::getMemBuffer( |
| 177 | StringRef(reinterpret_cast<const char *>(Data), Size), "Fuzzer input", |
| 178 | /*RequiresNullTerminator=*/false); |
| 179 | |
| 180 | SMDiagnostic Err; |
| 181 | auto M = parseBitcodeFile(Buffer->getMemBufferRef(), Context); |
| 182 | if (Error E = M.takeError()) { |
| 183 | errs() << toString(std::move(E)) << "\n"; |
| 184 | return nullptr; |
| 185 | } |
| 186 | return std::move(M.get()); |
| 187 | } |
| 188 | |
| 189 | size_t llvm::writeModule(const Module &M, uint8_t *Dest, size_t MaxSize) { |
| 190 | std::string Buf; |
| 191 | { |
| 192 | raw_string_ostream OS(Buf); |
Rafael Espindola | 6a86e25 | 2018-02-14 19:11:32 +0000 | [diff] [blame] | 193 | WriteBitcodeToFile(M, OS); |
Igor Laevsky | e714ef4 | 2017-11-16 15:23:08 +0000 | [diff] [blame] | 194 | } |
| 195 | if (Buf.size() > MaxSize) |
| 196 | return 0; |
| 197 | memcpy(Dest, Buf.data(), Buf.size()); |
| 198 | return Buf.size(); |
| 199 | } |
Igor Laevsky | 14c979d | 2018-02-05 11:05:47 +0000 | [diff] [blame] | 200 | |
| 201 | std::unique_ptr<Module> llvm::parseAndVerify(const uint8_t *Data, size_t Size, |
| 202 | LLVMContext &Context) { |
| 203 | auto M = parseModule(Data, Size, Context); |
| 204 | if (!M || verifyModule(*M, &errs())) |
| 205 | return nullptr; |
Fangrui Song | f78650a | 2018-07-30 19:41:25 +0000 | [diff] [blame] | 206 | |
Igor Laevsky | 14c979d | 2018-02-05 11:05:47 +0000 | [diff] [blame] | 207 | return M; |
| 208 | } |