csv2 icon indicating copy to clipboard operation
csv2 copied to clipboard

Add fuzzing by way of ClusterFuzzLite

Open DavidKorczynski opened this issue 1 year ago • 0 comments

This adds fuzzing by way of ClusterFuzzLite, which is a GitHub action that will perform a short amount of fuzzing for new PRs. The goal is to use fuzzing to catch bugs that may be introduced by new PRs.

I added a fuzzer that targets iterating through rows and cells of a string seeded with fuzz data, and currently set the timeout of CFLite to 100 seconds. CFLite will flag if the fuzzer finds any issues in the code introduced by a PR.

To reproduce this set up the way ClusterFuzzLite does it (by way of OSS-Fuzz) you can do:

git clone https://github.com/google/oss-fuzz
git clone https://github.com/DavidKorczynski/csv2
cd csv2
git checkout clusterfuzzlite

# Build the fuzzers in .clusterfuzzlite
python3 ../oss-fuzz/infra/helper.py build_fuzzers --external $PWD

# Run the fuzzer for 10 seconds
python3 ../oss-fuzz/infra/helper.py run_fuzzer --external $PWD reader_fuzzer-- -max_total_time=10

DavidKorczynski avatar Dec 23 '23 10:12 DavidKorczynski