xref: /aosp_15_r20/external/open-dice/src/fuzzer.cc (revision 60b67249c2e226f42f35cc6cfe66c6048e0bae6b)
1*60b67249SAndroid Build Coastguard Worker // Copyright 2021 Google LLC
2*60b67249SAndroid Build Coastguard Worker //
3*60b67249SAndroid Build Coastguard Worker // Licensed under the Apache License, Version 2.0 (the "License"); you may not
4*60b67249SAndroid Build Coastguard Worker // use this file except in compliance with the License. You may obtain a copy of
5*60b67249SAndroid Build Coastguard Worker // the License at
6*60b67249SAndroid Build Coastguard Worker //
7*60b67249SAndroid Build Coastguard Worker //     https://www.apache.org/licenses/LICENSE-2.0
8*60b67249SAndroid Build Coastguard Worker //
9*60b67249SAndroid Build Coastguard Worker // Unless required by applicable law or agreed to in writing, software
10*60b67249SAndroid Build Coastguard Worker // distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
11*60b67249SAndroid Build Coastguard Worker // WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the
12*60b67249SAndroid Build Coastguard Worker // License for the specific language governing permissions and limitations under
13*60b67249SAndroid Build Coastguard Worker // the License.
14*60b67249SAndroid Build Coastguard Worker 
15*60b67249SAndroid Build Coastguard Worker #include "dice/dice.h"
16*60b67249SAndroid Build Coastguard Worker #include "dice/fuzz_utils.h"
17*60b67249SAndroid Build Coastguard Worker #include "dice/utils.h"
18*60b67249SAndroid Build Coastguard Worker #include "fuzzer/FuzzedDataProvider.h"
19*60b67249SAndroid Build Coastguard Worker 
20*60b67249SAndroid Build Coastguard Worker using dice::fuzz::ConsumeRandomLengthStringAsBytesFrom;
21*60b67249SAndroid Build Coastguard Worker using dice::fuzz::FuzzedInputValues;
22*60b67249SAndroid Build Coastguard Worker 
LLVMFuzzerTestOneInput(const uint8_t * data,size_t size)23*60b67249SAndroid Build Coastguard Worker extern "C" int LLVMFuzzerTestOneInput(const uint8_t* data, size_t size) {
24*60b67249SAndroid Build Coastguard Worker   // Exit early if there might not be enough data to fill buffers.
25*60b67249SAndroid Build Coastguard Worker   if (size < 512) {
26*60b67249SAndroid Build Coastguard Worker     return 0;
27*60b67249SAndroid Build Coastguard Worker   }
28*60b67249SAndroid Build Coastguard Worker 
29*60b67249SAndroid Build Coastguard Worker   FuzzedDataProvider fdp(data, size);
30*60b67249SAndroid Build Coastguard Worker 
31*60b67249SAndroid Build Coastguard Worker   // Prepare the fuzzed inputs.
32*60b67249SAndroid Build Coastguard Worker   auto input_values = FuzzedInputValues::ConsumeFrom(fdp);
33*60b67249SAndroid Build Coastguard Worker   uint8_t current_cdi_attest[DICE_CDI_SIZE] = {};
34*60b67249SAndroid Build Coastguard Worker   uint8_t current_cdi_seal[DICE_CDI_SIZE] = {};
35*60b67249SAndroid Build Coastguard Worker 
36*60b67249SAndroid Build Coastguard Worker   fdp.ConsumeData(&current_cdi_attest, sizeof(current_cdi_attest));
37*60b67249SAndroid Build Coastguard Worker   fdp.ConsumeData(&current_cdi_seal, sizeof(current_cdi_seal));
38*60b67249SAndroid Build Coastguard Worker 
39*60b67249SAndroid Build Coastguard Worker   // Initialize output parameters with fuzz data in case they are wrongly being
40*60b67249SAndroid Build Coastguard Worker   // read from.
41*60b67249SAndroid Build Coastguard Worker   constexpr size_t kNextCdiCertificateBufferSize = 1024;
42*60b67249SAndroid Build Coastguard Worker   auto next_cdi_certificate_actual_size = fdp.ConsumeIntegral<size_t>();
43*60b67249SAndroid Build Coastguard Worker   uint8_t next_cdi_certificate[kNextCdiCertificateBufferSize] = {};
44*60b67249SAndroid Build Coastguard Worker   uint8_t next_cdi_attest[DICE_CDI_SIZE] = {};
45*60b67249SAndroid Build Coastguard Worker   uint8_t next_cdi_seal[DICE_CDI_SIZE] = {};
46*60b67249SAndroid Build Coastguard Worker 
47*60b67249SAndroid Build Coastguard Worker   fdp.ConsumeData(&next_cdi_certificate, kNextCdiCertificateBufferSize);
48*60b67249SAndroid Build Coastguard Worker   fdp.ConsumeData(&next_cdi_attest, DICE_CDI_SIZE);
49*60b67249SAndroid Build Coastguard Worker   fdp.ConsumeData(&next_cdi_seal, DICE_CDI_SIZE);
50*60b67249SAndroid Build Coastguard Worker 
51*60b67249SAndroid Build Coastguard Worker   // Fuzz the main flow.
52*60b67249SAndroid Build Coastguard Worker   DiceMainFlow(/*context=*/NULL, current_cdi_attest, current_cdi_seal,
53*60b67249SAndroid Build Coastguard Worker                input_values, kNextCdiCertificateBufferSize,
54*60b67249SAndroid Build Coastguard Worker                next_cdi_certificate, &next_cdi_certificate_actual_size,
55*60b67249SAndroid Build Coastguard Worker                next_cdi_attest, next_cdi_seal);
56*60b67249SAndroid Build Coastguard Worker   return 0;
57*60b67249SAndroid Build Coastguard Worker }
58