six: initial integration (#9961)

Signed-off-by: David Korczynski <david@adalogics.com>
This commit is contained in:
DavidKorczynski 2023-03-20 15:25:09 +00:00 committed by GitHub
parent d43dc77d31
commit 2e2209588c
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
4 changed files with 122 additions and 0 deletions

22
projects/six/Dockerfile Normal file
View File

@ -0,0 +1,22 @@
#!/usr/bin/python3
# Copyright 2023 Google LLC
#
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
#
##########################################################################
FROM gcr.io/oss-fuzz-base/base-builder-python
RUN pip3 install --upgrade pip HTMLParser
RUN git clone https://github.com/benjaminp/six six
COPY *.sh *py $SRC/
WORKDIR $SRC/six

21
projects/six/build.sh Normal file
View File

@ -0,0 +1,21 @@
#!/bin/bash -eu
# Copyright 2023 Google LLC
#
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
#
##########################################################################
pip3 install .
for fuzzer in $(find $SRC -name 'fuzz_*.py'); do
compile_python_fuzzer $fuzzer --hidden-import=html.parser
done

69
projects/six/fuzz_six.py Normal file
View File

@ -0,0 +1,69 @@
#!/usr/bin/python3
# Copyright 2023 Google LLC
#
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
#
##########################################################################
import sys
import atheris
import six
import json
@atheris.instrument_func
def TestOneInput(data):
fdp = atheris.FuzzedDataProvider(data)
val_1 = fdp.ConsumeUnicodeNoSurrogates(24)
try:
six.remove_move(val_1)
six.u(fdp.ConsumeString(fdp.ConsumeIntInRange(1, 24)))
six.ensure_text(fdp.ConsumeUnicodeNoSurrogates(fdp.ConsumeIntInRange(1,
24)))
except (AttributeError,):
pass
try:
json_val = json.loads(
fdp.ConsumeUnicodeNoSurrogates(fdp.ConsueIntInRange(1, 1024)))
except:
json_val = None
if json_val != None:
try:
six.ensure_str(json_val)
six.ensure_binary(json_val)
six.ensure_text(json_val)
except TypeError:
pass
try:
six.ensure_str(data)
six.ensure_binary(data)
six.ensure_text(data)
except (TypeError, UnicodeDecodeError):
pass
six.moves.html_parser.HTMLParser().unescape(
fdp.ConsumeUnicodeNoSurrogates(fdp.ConsumeIntInRange(1, 1024)))
def main():
atheris.instrument_all()
atheris.Setup(sys.argv, TestOneInput)
atheris.Fuzz()
if __name__ == "__main__":
main()

10
projects/six/project.yaml Normal file
View File

@ -0,0 +1,10 @@
fuzzing_engines:
- libfuzzer
homepage: https://github.com/benjaminp/six
language: python
main_repo: https://github.com/benjaminp/six
sanitizers:
- address
- undefined
vendor_ccs:
- david@adalogics.com