mirror of
https://github.com/rosenpass/rosenpass.git
synced 2026-02-27 22:13:12 -08:00
These targets can be used with rust nightly and cargo-fuzz to fuzz several bits of Rosenpass's API. Fuzzing is an automated way of exploring code paths that may not be hit in unit tests or normal operation. For example the `handle_msg` target exposed the DoS condition fixed in 0.2.1. The other targets focus on the FFI with libsodium and liboqs. Co-authored-by: Karolin Varner <karo@cupdev.net>
23 lines
435 B
Rust
23 lines
435 B
Rust
#![no_main]
|
|
extern crate arbitrary;
|
|
extern crate rosenpass;
|
|
|
|
use libfuzzer_sys::fuzz_target;
|
|
|
|
use rosenpass::sodium::mac_into;
|
|
use rosenpass_sodium::init as sodium_init;
|
|
|
|
#[derive(arbitrary::Arbitrary, Debug)]
|
|
pub struct Blake2b {
|
|
pub key: [u8; 32],
|
|
pub data: Box<[u8]>,
|
|
}
|
|
|
|
fuzz_target!(|input: Blake2b| {
|
|
sodium_init().unwrap();
|
|
|
|
let mut out = [0u8; 32];
|
|
|
|
mac_into(&mut out, &input.key, &input.data).unwrap();
|
|
});
|