ejson4cpp icon indicating copy to clipboard operation
ejson4cpp copied to clipboard

Add fuzzing by way of ClusterFuzzLite

Open DavidKorczynski opened this issue 1 year ago • 0 comments

This adds fuzzing by way of ClusterFuzzLite, which is a GitHub action that will perform a short amount of fuzzing for new PRs. The goal is to use fuzzing to catch bugs that may be introduced by new PRs.

I added a fuzzer that targets ejson::Parser::FromJSON and currently set the timeout of CFLite to 100 seconds. CFLite will flag if the fuzzer finds any issues in the code introduced by a PR.

To reproduce this set up the way ClusterFuzzLite does it (by way of OSS-Fuzz) you can do:

git clone https://github.com/google/oss-fuzz
git clone https://github.com/DavidKorczynski/ejson4cpp
cd ejson4cpp
git checkout clusterfuzzlite

# Build the fuzzers in .clusterfuzzlite
python3 ../oss-fuzz/infra/helper.py build_fuzzers --external $PWD

# Run the fuzzer for 10 seconds
python3 ../oss-fuzz/infra/helper.py run_fuzzer --external $PWD doc_fuzzer-- -max_total_time=10

DavidKorczynski avatar Dec 22 '23 15:12 DavidKorczynski