Skip to content

Commit

Permalink
Add ClusterFuzzLite set up
Browse files Browse the repository at this point in the history
Adds [ClusterFuzzLite](https://github.com/google/clusterfuzzlite)
integration with an accompanying fuzzer. In short, this will run the fuzzer on
each PR and report if any issues are found in the code.

Signed-off-by: David Korczynski <[email protected]>
  • Loading branch information
DavidKorczynski committed Dec 21, 2023
1 parent 05d2b4e commit 1c4a22c
Show file tree
Hide file tree
Showing 6 changed files with 68 additions and 0 deletions.
6 changes: 6 additions & 0 deletions .clusterfuzzlite/Dockerfile
Original file line number Diff line number Diff line change
@@ -0,0 +1,6 @@
FROM gcr.io/oss-fuzz-base/base-builder
RUN apt-get update && apt-get install -y make autoconf automake libtool

COPY . $SRC/yazi-json
COPY .clusterfuzzlite/build.sh $SRC/build.sh
WORKDIR $SRC/yazi-json
3 changes: 3 additions & 0 deletions .clusterfuzzlite/README.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
# ClusterFuzzLite set up
This folder contains a fuzzing set for [ClusterFuzzLite](https://google.github.io/clusterfuzzlite).

11 changes: 11 additions & 0 deletions .clusterfuzzlite/build.sh
Original file line number Diff line number Diff line change
@@ -0,0 +1,11 @@
#!/bin/bash -eu
sed -i 's/g++/${CXX}/g' Makefile
sed -i 's/-Werror//g' Makefile
make

# Copy all fuzzer executables to $OUT/
$CXX $CFLAGS $LIB_FUZZING_ENGINE \
$SRC/yazi-json/.clusterfuzzlite/parse_fuzzer.cpp \
-o $OUT/parse_fuzzer \
-I$SRC/yazi-json/json \
json/Parser.o json/Json.o
17 changes: 17 additions & 0 deletions .clusterfuzzlite/parse_fuzzer.cpp
Original file line number Diff line number Diff line change
@@ -0,0 +1,17 @@
#include <Json.h>
#include <string>

using namespace yazi::json;

extern "C" int LLVMFuzzerTestOneInput(const uint8_t *data, size_t size) {
std::string fuzz_input(reinterpret_cast<const char *>(data), size);

Json json;
try {
json.parse(fuzz_input.c_str());
} catch (...) {
}
json.clear();

return 0;
}
1 change: 1 addition & 0 deletions .clusterfuzzlite/project.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
language: c++
30 changes: 30 additions & 0 deletions .github/workflows/cflite_pr.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,30 @@
#name: ClusterFuzzLite PR fuzzing
on:
workflow_dispatch:
pull_request:
branches: [ main ]
permissions: read-all
jobs:
PR:
runs-on: ubuntu-latest
strategy:
fail-fast: false
matrix:
sanitizer: [address]
steps:
- name: Build Fuzzers (${{ matrix.sanitizer }})
id: build
uses: google/clusterfuzzlite/actions/build_fuzzers@v1
with:
sanitizer: ${{ matrix.sanitizer }}
language: c++
bad-build-check: false
- name: Run Fuzzers (${{ matrix.sanitizer }})
id: run
uses: google/clusterfuzzlite/actions/run_fuzzers@v1
with:
github-token: ${{ secrets.GITHUB_TOKEN }}
fuzz-seconds: 100
mode: 'code-change'
report-unreproducible-crashes: false
sanitizer: ${{ matrix.sanitizer }}

0 comments on commit 1c4a22c

Please sign in to comment.