/* * Copyright (c) 2022-2023 Huawei Device Co., Ltd. * Licensed under the Apache License, Version 2.0 (the "License"); * you may not use this file except in compliance with the License. * You may obtain a copy of the License at * * http://www.apache.org/licenses/LICENSE-2.0 * * Unless required by applicable law or agreed to in writing, software * distributed under the License is distributed on an "AS IS" BASIS, * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. * See the License for the specific language governing permissions and * limitations under the License. */ #include "cmgetappcert_fuzzer.h" #include "cert_manager_api.h" #include "cm_fuzz_test_common.h" #include "cm_test_common.h" using namespace CmFuzzTest; namespace OHOS { bool DoSomethingInterestingWithMyAPI(const uint8_t* data, size_t size) { uint32_t minSize = sizeof(struct CmBlob) + sizeof(uint32_t) + sizeof(struct Credential); uint8_t *myData = nullptr; if (!CopyMyData(data, size, minSize, &myData)) { return false; } uint32_t remainSize = static_cast(size); uint32_t offset = 0; struct CmBlob appCertUri = { 0, nullptr }; if (!GetCmBlobFromBuffer(myData, &remainSize, &offset, &appCertUri)) { CmFree(myData); return false; } uint32_t store; if (!GetUintFromBuffer(myData, &remainSize, &offset, &store)) { CmFree(myData); return false; } if (remainSize < sizeof(struct Credential)) { CmFree(myData); return false; } struct Credential credCert; (void)memcpy_s(&credCert, sizeof(struct Credential), myData + offset, sizeof(struct Credential)); offset += sizeof(struct Credential); remainSize -= sizeof(struct Credential); if (remainSize < credCert.credData.size) { CmFree(myData); return false; } credCert.credData.data = const_cast(myData + offset); CertmanagerTest::SetATPermission(); (void)CmGetAppCert(&appCertUri, store, &credCert); CmFree(myData); return true; } } /* Fuzzer entry point */ extern "C" int LLVMFuzzerTestOneInput(const uint8_t* data, size_t size) { /* Run your code on data */ OHOS::DoSomethingInterestingWithMyAPI(data, size); return 0; }