Skip to content

Commit 65276c7

Browse files
author
MarcoFalke
committed
Merge #18744: test: Add fuzzing harnesses for various classes/functions in primitives/
fd8e99d tests: Add fuzzing harness for functions in primitives/transaction.h (practicalswift) d5a31b7 tests: Add fuzzing harness for functions in primitives/block.h (practicalswift) Pull request description: Add fuzzing harnesses for various classes/functions in `primitives/`. See [`doc/fuzzing.md`](https://github.com/bitcoin/bitcoin/blob/master/doc/fuzzing.md) for information on how to fuzz Bitcoin Core. Don't forget to contribute any coverage increasing inputs you find to the [Bitcoin Core fuzzing corpus repo](https://github.com/bitcoin-core/qa-assets). Happy fuzzing :) Top commit has no ACKs. Tree-SHA512: ed54bd5b37ff5e40cfa8d3cd8c65d91a2f64fca87b6a5c3b8ddd6becd876ed172735fb53da4d00a86f318fb94517afd179e07cb28a43edf301ffe4dad703cca4
2 parents 3e7c118 + fd8e99d commit 65276c7

File tree

3 files changed

+45
-0
lines changed

3 files changed

+45
-0
lines changed

src/Makefile.test.include

Lines changed: 7 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -69,6 +69,7 @@ FUZZ_TARGETS = \
6969
test/fuzz/partially_signed_transaction_deserialize \
7070
test/fuzz/pow \
7171
test/fuzz/prefilled_transaction_deserialize \
72+
test/fuzz/primitives_transaction \
7273
test/fuzz/process_messages \
7374
test/fuzz/process_message \
7475
test/fuzz/process_message_addr \
@@ -686,6 +687,12 @@ test_fuzz_prefilled_transaction_deserialize_LDADD = $(FUZZ_SUITE_LD_COMMON)
686687
test_fuzz_prefilled_transaction_deserialize_LDFLAGS = $(RELDFLAGS) $(AM_LDFLAGS) $(LIBTOOL_APP_LDFLAGS)
687688
test_fuzz_prefilled_transaction_deserialize_SOURCES = test/fuzz/deserialize.cpp
688689

690+
test_fuzz_primitives_transaction_CPPFLAGS = $(AM_CPPFLAGS) $(BITCOIN_INCLUDES)
691+
test_fuzz_primitives_transaction_CXXFLAGS = $(AM_CXXFLAGS) $(PIE_FLAGS)
692+
test_fuzz_primitives_transaction_LDADD = $(FUZZ_SUITE_LD_COMMON)
693+
test_fuzz_primitives_transaction_LDFLAGS = $(RELDFLAGS) $(AM_LDFLAGS) $(LIBTOOL_APP_LDFLAGS)
694+
test_fuzz_primitives_transaction_SOURCES = test/fuzz/primitives_transaction.cpp
695+
689696
test_fuzz_process_messages_CPPFLAGS = $(AM_CPPFLAGS) $(BITCOIN_INCLUDES)
690697
test_fuzz_process_messages_CXXFLAGS = $(AM_CXXFLAGS) $(PIE_FLAGS)
691698
test_fuzz_process_messages_LDADD = $(FUZZ_SUITE_LD_COMMON)

src/test/fuzz/block.cpp

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -62,4 +62,8 @@ void test_one_input(const std::vector<uint8_t>& buffer)
6262
const size_t raw_memory_size = RecursiveDynamicUsage(block);
6363
const size_t raw_memory_size_as_shared_ptr = RecursiveDynamicUsage(std::make_shared<CBlock>(block));
6464
assert(raw_memory_size_as_shared_ptr > raw_memory_size);
65+
CBlock block_copy = block;
66+
block_copy.SetNull();
67+
const bool is_null = block_copy.IsNull();
68+
assert(is_null);
6569
}
Lines changed: 34 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,34 @@
1+
// Copyright (c) 2020 The Bitcoin Core developers
2+
// Distributed under the MIT software license, see the accompanying
3+
// file COPYING or http://www.opensource.org/licenses/mit-license.php.
4+
5+
#include <optional.h>
6+
#include <primitives/transaction.h>
7+
#include <test/fuzz/FuzzedDataProvider.h>
8+
#include <test/fuzz/fuzz.h>
9+
#include <test/fuzz/util.h>
10+
11+
#include <cstdint>
12+
#include <string>
13+
#include <vector>
14+
15+
void test_one_input(const std::vector<uint8_t>& buffer)
16+
{
17+
FuzzedDataProvider fuzzed_data_provider(buffer.data(), buffer.size());
18+
const CScript script = ConsumeScript(fuzzed_data_provider);
19+
const Optional<COutPoint> out_point = ConsumeDeserializable<COutPoint>(fuzzed_data_provider);
20+
if (out_point) {
21+
const CTxIn tx_in{*out_point, script, fuzzed_data_provider.ConsumeIntegral<uint32_t>()};
22+
(void)tx_in;
23+
}
24+
const CTxOut tx_out_1{ConsumeMoney(fuzzed_data_provider), script};
25+
const CTxOut tx_out_2{ConsumeMoney(fuzzed_data_provider), ConsumeScript(fuzzed_data_provider)};
26+
assert((tx_out_1 == tx_out_2) != (tx_out_1 != tx_out_2));
27+
const Optional<CMutableTransaction> mutable_tx_1 = ConsumeDeserializable<CMutableTransaction>(fuzzed_data_provider);
28+
const Optional<CMutableTransaction> mutable_tx_2 = ConsumeDeserializable<CMutableTransaction>(fuzzed_data_provider);
29+
if (mutable_tx_1 && mutable_tx_2) {
30+
const CTransaction tx_1{*mutable_tx_1};
31+
const CTransaction tx_2{*mutable_tx_2};
32+
assert((tx_1 == tx_2) != (tx_1 != tx_2));
33+
}
34+
}

0 commit comments

Comments
 (0)