Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(624)

Side by Side Diff: courgette/encoded_program_fuzz_unittest.cc

Issue 2854113002: [Courgette] Reduce AssemblyProgram to reduce Courgette-apply RAM floor and disk churn. (Closed)
Patch Set: Update courgette_fuzzer in libfuzzer. Created 3 years, 7 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View unified diff | Download patch
« no previous file with comments | « courgette/encoded_program.cc ('k') | courgette/instruction_utils.h » ('j') | no next file with comments »
Toggle Intra-line Diffs ('i') | Expand Comments ('e') | Collapse Comments ('c') | Show Comments Hide Comments ('s')
OLDNEW
1 // Copyright (c) 2011 The Chromium Authors. All rights reserved. 1 // Copyright (c) 2011 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be 2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file. 3 // found in the LICENSE file.
4 4
5 // Fuzz testing for EncodedProgram serialized format and assembly. 5 // Fuzz testing for EncodedProgram serialized format and assembly.
6 // 6 //
7 // We would like some assurance that if an EncodedProgram is malformed we will 7 // We would like some assurance that if an EncodedProgram is malformed we will
8 // not crash. The EncodedProgram could be malformed either due to malicious 8 // not crash. The EncodedProgram could be malformed either due to malicious
9 // attack to due to an error in patch generation. 9 // attack to due to an error in patch generation.
10 // 10 //
(...skipping 28 matching lines...) Expand all
39 // Loads an executable and does fuzz testing in the serialized format. 39 // Loads an executable and does fuzz testing in the serialized format.
40 void DecodeFuzzTest::FuzzExe(const char* file_name) const { 40 void DecodeFuzzTest::FuzzExe(const char* file_name) const {
41 std::string file1 = FileContents(file_name); 41 std::string file1 = FileContents(file_name);
42 42
43 const uint8_t* original_data = reinterpret_cast<const uint8_t*>(file1.data()); 43 const uint8_t* original_data = reinterpret_cast<const uint8_t*>(file1.data());
44 size_t original_length = file1.length(); 44 size_t original_length = file1.length();
45 courgette::CourgetteFlow flow; 45 courgette::CourgetteFlow flow;
46 46
47 courgette::RegionBuffer original_buffer( 47 courgette::RegionBuffer original_buffer(
48 courgette::Region(original_data, original_length)); 48 courgette::Region(original_data, original_length));
49 flow.ReadAssemblyProgramFromBuffer(flow.ONLY, original_buffer, false); 49 flow.ReadDisassemblerFromBuffer(flow.ONLY, original_buffer);
50 EXPECT_EQ(courgette::C_OK, flow.status());
51 EXPECT_TRUE(nullptr != flow.data(flow.ONLY)->disassembler.get());
52
53 flow.CreateAssemblyProgramFromDisassembler(flow.ONLY, false);
50 EXPECT_EQ(courgette::C_OK, flow.status()); 54 EXPECT_EQ(courgette::C_OK, flow.status());
51 EXPECT_TRUE(nullptr != flow.data(flow.ONLY)->program.get()); 55 EXPECT_TRUE(nullptr != flow.data(flow.ONLY)->program.get());
52 56
53 flow.CreateEncodedProgramFromAssemblyProgram(flow.ONLY); 57 flow.CreateEncodedProgramFromDisassemblerAndAssemblyProgram(flow.ONLY);
54 EXPECT_EQ(courgette::C_OK, flow.status()); 58 EXPECT_EQ(courgette::C_OK, flow.status());
55 EXPECT_TRUE(nullptr != flow.data(flow.ONLY)->encoded.get()); 59 EXPECT_TRUE(nullptr != flow.data(flow.ONLY)->encoded.get());
56 60
57 flow.DestroyAssemblyProgram(flow.ONLY); 61 flow.DestroyAssemblyProgram(flow.ONLY);
58 EXPECT_EQ(courgette::C_OK, flow.status()); 62 EXPECT_EQ(courgette::C_OK, flow.status());
59 EXPECT_TRUE(nullptr == flow.data(flow.ONLY)->program.get()); 63 EXPECT_TRUE(nullptr == flow.data(flow.ONLY)->program.get());
60 64
65 flow.DestroyDisassembler(flow.ONLY);
66 EXPECT_EQ(courgette::C_OK, flow.status());
67 EXPECT_TRUE(nullptr == flow.data(flow.ONLY)->disassembler.get());
68
61 flow.WriteSinkStreamSetFromEncodedProgram(flow.ONLY); 69 flow.WriteSinkStreamSetFromEncodedProgram(flow.ONLY);
62 EXPECT_EQ(courgette::C_OK, flow.status()); 70 EXPECT_EQ(courgette::C_OK, flow.status());
63 71
64 flow.DestroyEncodedProgram(flow.ONLY); 72 flow.DestroyEncodedProgram(flow.ONLY);
65 EXPECT_EQ(courgette::C_OK, flow.status()); 73 EXPECT_EQ(courgette::C_OK, flow.status());
66 EXPECT_TRUE(nullptr == flow.data(flow.ONLY)->encoded.get()); 74 EXPECT_TRUE(nullptr == flow.data(flow.ONLY)->encoded.get());
67 75
68 courgette::SinkStream sink; 76 courgette::SinkStream sink;
69 flow.WriteSinkStreamFromSinkStreamSet(flow.ONLY, &sink); 77 flow.WriteSinkStreamFromSinkStreamSet(flow.ONLY, &sink);
70 EXPECT_EQ(courgette::C_OK, flow.status()); 78 EXPECT_EQ(courgette::C_OK, flow.status());
(...skipping 129 matching lines...) Expand 10 before | Expand all | Expand 10 after
200 } 208 }
201 209
202 TEST_F(DecodeFuzzTest, All) { 210 TEST_F(DecodeFuzzTest, All) {
203 FuzzExe("setup1.exe"); 211 FuzzExe("setup1.exe");
204 FuzzExe("elf-32-1.exe"); 212 FuzzExe("elf-32-1.exe");
205 } 213 }
206 214
207 int main(int argc, char** argv) { 215 int main(int argc, char** argv) {
208 return base::TestSuite(argc, argv).Run(); 216 return base::TestSuite(argc, argv).Run();
209 } 217 }
OLDNEW
« no previous file with comments | « courgette/encoded_program.cc ('k') | courgette/instruction_utils.h » ('j') | no next file with comments »

Powered by Google App Engine
This is Rietveld 408576698