#include #include #include #include #include #include #include int LLVMFuzzerTestOneInput(const uint8_t *buf, size_t i) { if (i < 15) return -1; if (buf[0] != 'A') return 0; int *icmp = (int *)(buf + 1); if (*icmp != 0x69694141) return 0; if (memcmp(buf + 5, "1234EF", 6) == 0) abort(); return 0; } #ifdef __AFL_COMPILER int main(int argc, char *argv[]) { unsigned char buf[1024]; ssize_t i; while (__AFL_LOOP(1000)) { i = read(0, (char *)buf, sizeof(buf) - 1); if (i > 0) buf[i] = 0; LLVMFuzzerTestOneInput(buf, i); } return 0; } #endif