[c-ares] Use the second fuzzer + its seed corpus from c-ares repo. (#185)

This commit is contained in:
Max Moroz 2016-12-15 16:48:03 +01:00 committed by inferno-chromium
parent 2de24fc520
commit 848a1dd74b
3 changed files with 8 additions and 37 deletions

View File

@ -19,4 +19,4 @@ MAINTAINER mmoroz@chromium.org
RUN apt-get install -y make autoconf automake libtool
RUN git clone --depth 1 https://github.com/c-ares/c-ares.git
WORKDIR c-ares
COPY build.sh *_fuzzer.cc $SRC/
COPY build.sh $SRC/

View File

@ -1,32 +0,0 @@
// Copyright 2016 Google Inc.
//
// Licensed under the Apache License, Version 2.0 (the "License");
// you may not use this file except in compliance with the License.
// You may obtain a copy of the License at
//
// http://www.apache.org/licenses/LICENSE-2.0
//
// Unless required by applicable law or agreed to in writing, software
// distributed under the License is distributed on an "AS IS" BASIS,
// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
// See the License for the specific language governing permissions and
// limitations under the License.
#include <stdint.h>
#include <stdlib.h>
#include <arpa/nameser.h>
#include <string>
#include <ares.h>
extern "C" int LLVMFuzzerTestOneInput(const uint8_t *data, size_t size) {
unsigned char *buf;
int buflen;
std::string s(reinterpret_cast<const char *>(data), size);
ares_create_query(s.c_str(), ns_c_in, ns_t_a, 0x1234, 0, &buf, &buflen, 0);
ares_free_string(buf);
return 0;
}

View File

@ -23,14 +23,17 @@ make -j$(nproc) V=1 all
# Build the fuzzers.
$CC $CFLAGS -I. -c $SRC/c-ares/test/ares-test-fuzz.c -o $WORK/ares-test-fuzz.o
$CXX $CXXFLAGS -std=c++11 \
$WORK/ares-test-fuzz.o \
$CXX $CXXFLAGS -std=c++11 $WORK/ares-test-fuzz.o \
-o $OUT/ares_parse_reply_fuzzer \
-lFuzzingEngine $SRC/c-ares/.libs/libcares.a
$CXX $CXXFLAGS -std=c++11 -I. \
$SRC/ares_create_query_fuzzer.cc \
$CC $CFLAGS -I. -c $SRC/c-ares/test/ares-test-fuzz-name.c \
-o $WORK/ares-test-fuzz-name.o
$CXX $CXXFLAGS -std=c++11 $WORK/ares-test-fuzz-name.o \
-o $OUT/ares_create_query_fuzzer \
-lFuzzingEngine $SRC/c-ares/.libs/libcares.a
# Archive and copy to $OUT seed corpus if the build succeeded.
zip -j $OUT/ares_parse_reply_fuzzer_seed_corpus.zip $SRC/c-ares/test/fuzzinput/*
zip -j $OUT/ares_create_query_fuzzer_seed_corpus.zip \
$SRC/c-ares/test/fuzznames/*