1 /*
2  * Copyright (c) 2022-2024 Huawei Device Co., Ltd.
3  * Licensed under the Apache License, Version 2.0 (the "License");
4  * you may not use this file except in compliance with the License.
5  * You may obtain a copy of the License at
6  *
7  *     http://www.apache.org/licenses/LICENSE-2.0
8  *
9  * Unless required by applicable law or agreed to in writing, software
10  * distributed under the License is distributed on an "AS IS" BASIS,
11  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12  * See the License for the specific language governing permissions and
13  * limitations under the License.
14  */
15 
16 #include "updatehaptoken_fuzzer.h"
17 
18 #include <string>
19 #include <vector>
20 #include <thread>
21 #include "accesstoken_fuzzdata.h"
22 #undef private
23 #include "accesstoken_kit.h"
24 
25 using namespace std;
26 using namespace OHOS::Security::AccessToken;
27 
28 namespace OHOS {
UpdateHapTokenFuzzTest(const uint8_t * data,size_t size)29     bool UpdateHapTokenFuzzTest(const uint8_t* data, size_t size)
30     {
31         if ((data == nullptr) || (size == 0)) {
32             return false;
33         }
34 
35         AccessTokenFuzzData fuzzData(data, size);
36         AccessTokenIDEx tokenIDex = {
37             .tokenIdExStruct.tokenID = fuzzData.GetData<AccessTokenID>(),
38             .tokenIdExStruct.tokenAttr = fuzzData.GetData<AccessTokenAttr>(),
39         };
40 
41         std::string permissionName = fuzzData.GenerateRandomString();
42         PermissionDef testPermDef;
43         testPermDef.permissionName = permissionName;
44         testPermDef.bundleName = fuzzData.GenerateRandomString();
45         testPermDef.grantMode = 1;
46         testPermDef.availableLevel = APL_NORMAL;
47         testPermDef.label = fuzzData.GenerateRandomString();
48         testPermDef.labelId = 1;
49         testPermDef.description = fuzzData.GenerateRandomString();
50         testPermDef.descriptionId = 1;
51 
52         PermissionStateFull testState;
53         testState.permissionName = permissionName;
54         testState.isGeneral = true;
55         testState.resDeviceID = {fuzzData.GenerateRandomString()};
56         testState.grantStatus = {PermissionState::PERMISSION_GRANTED};
57         testState.grantFlags = {1};
58         HapPolicyParams TestPolicyParams = {
59             .apl = APL_NORMAL,
60             .domain = fuzzData.GenerateRandomString(),
61             .permList = {testPermDef},
62             .permStateList = {testState}
63         };
64         UpdateHapInfoParams info;
65         info.appIDDesc = fuzzData.GenerateRandomString();
66         info.apiVersion = 8; // 8 means the version
67         info.isSystemApp = false;
68 
69         int32_t result = AccessTokenKit::UpdateHapToken(
70             tokenIDex, info, TestPolicyParams);
71 
72         return result == RET_SUCCESS;
73     }
74 }
75 
76 /* Fuzzer entry point */
LLVMFuzzerTestOneInput(const uint8_t * data,size_t size)77 extern "C" int LLVMFuzzerTestOneInput(const uint8_t* data, size_t size)
78 {
79     /* Run your code on data */
80     OHOS::UpdateHapTokenFuzzTest(data, size);
81     return 0;
82 }
83