1*60b67249SAndroid Build Coastguard Worker // Copyright 2021 Google LLC
2*60b67249SAndroid Build Coastguard Worker //
3*60b67249SAndroid Build Coastguard Worker // Licensed under the Apache License, Version 2.0 (the "License"); you may not
4*60b67249SAndroid Build Coastguard Worker // use this file except in compliance with the License. You may obtain a copy of
5*60b67249SAndroid Build Coastguard Worker // the License at
6*60b67249SAndroid Build Coastguard Worker //
7*60b67249SAndroid Build Coastguard Worker // https://www.apache.org/licenses/LICENSE-2.0
8*60b67249SAndroid Build Coastguard Worker //
9*60b67249SAndroid Build Coastguard Worker // Unless required by applicable law or agreed to in writing, software
10*60b67249SAndroid Build Coastguard Worker // distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
11*60b67249SAndroid Build Coastguard Worker // WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the
12*60b67249SAndroid Build Coastguard Worker // License for the specific language governing permissions and limitations under
13*60b67249SAndroid Build Coastguard Worker // the License.
14*60b67249SAndroid Build Coastguard Worker
15*60b67249SAndroid Build Coastguard Worker #include "dice/dice.h"
16*60b67249SAndroid Build Coastguard Worker #include "dice/fuzz_utils.h"
17*60b67249SAndroid Build Coastguard Worker #include "dice/utils.h"
18*60b67249SAndroid Build Coastguard Worker #include "fuzzer/FuzzedDataProvider.h"
19*60b67249SAndroid Build Coastguard Worker
20*60b67249SAndroid Build Coastguard Worker using dice::fuzz::ConsumeRandomLengthStringAsBytesFrom;
21*60b67249SAndroid Build Coastguard Worker using dice::fuzz::FuzzedInputValues;
22*60b67249SAndroid Build Coastguard Worker
LLVMFuzzerTestOneInput(const uint8_t * data,size_t size)23*60b67249SAndroid Build Coastguard Worker extern "C" int LLVMFuzzerTestOneInput(const uint8_t* data, size_t size) {
24*60b67249SAndroid Build Coastguard Worker // Exit early if there might not be enough data to fill buffers.
25*60b67249SAndroid Build Coastguard Worker if (size < 512) {
26*60b67249SAndroid Build Coastguard Worker return 0;
27*60b67249SAndroid Build Coastguard Worker }
28*60b67249SAndroid Build Coastguard Worker
29*60b67249SAndroid Build Coastguard Worker FuzzedDataProvider fdp(data, size);
30*60b67249SAndroid Build Coastguard Worker
31*60b67249SAndroid Build Coastguard Worker // Prepare the fuzzed inputs.
32*60b67249SAndroid Build Coastguard Worker auto input_values = FuzzedInputValues::ConsumeFrom(fdp);
33*60b67249SAndroid Build Coastguard Worker uint8_t current_cdi_attest[DICE_CDI_SIZE] = {};
34*60b67249SAndroid Build Coastguard Worker uint8_t current_cdi_seal[DICE_CDI_SIZE] = {};
35*60b67249SAndroid Build Coastguard Worker
36*60b67249SAndroid Build Coastguard Worker fdp.ConsumeData(¤t_cdi_attest, sizeof(current_cdi_attest));
37*60b67249SAndroid Build Coastguard Worker fdp.ConsumeData(¤t_cdi_seal, sizeof(current_cdi_seal));
38*60b67249SAndroid Build Coastguard Worker
39*60b67249SAndroid Build Coastguard Worker // Initialize output parameters with fuzz data in case they are wrongly being
40*60b67249SAndroid Build Coastguard Worker // read from.
41*60b67249SAndroid Build Coastguard Worker constexpr size_t kNextCdiCertificateBufferSize = 1024;
42*60b67249SAndroid Build Coastguard Worker auto next_cdi_certificate_actual_size = fdp.ConsumeIntegral<size_t>();
43*60b67249SAndroid Build Coastguard Worker uint8_t next_cdi_certificate[kNextCdiCertificateBufferSize] = {};
44*60b67249SAndroid Build Coastguard Worker uint8_t next_cdi_attest[DICE_CDI_SIZE] = {};
45*60b67249SAndroid Build Coastguard Worker uint8_t next_cdi_seal[DICE_CDI_SIZE] = {};
46*60b67249SAndroid Build Coastguard Worker
47*60b67249SAndroid Build Coastguard Worker fdp.ConsumeData(&next_cdi_certificate, kNextCdiCertificateBufferSize);
48*60b67249SAndroid Build Coastguard Worker fdp.ConsumeData(&next_cdi_attest, DICE_CDI_SIZE);
49*60b67249SAndroid Build Coastguard Worker fdp.ConsumeData(&next_cdi_seal, DICE_CDI_SIZE);
50*60b67249SAndroid Build Coastguard Worker
51*60b67249SAndroid Build Coastguard Worker // Fuzz the main flow.
52*60b67249SAndroid Build Coastguard Worker DiceMainFlow(/*context=*/NULL, current_cdi_attest, current_cdi_seal,
53*60b67249SAndroid Build Coastguard Worker input_values, kNextCdiCertificateBufferSize,
54*60b67249SAndroid Build Coastguard Worker next_cdi_certificate, &next_cdi_certificate_actual_size,
55*60b67249SAndroid Build Coastguard Worker next_cdi_attest, next_cdi_seal);
56*60b67249SAndroid Build Coastguard Worker return 0;
57*60b67249SAndroid Build Coastguard Worker }
58