1 /*
2  * Copyright (c) 2024 Huawei Device Co., Ltd.
3  * Licensed under the Apache License, Version 2.0 (the "License");
4  * you may not use this file except in compliance with the License.
5  * You may obtain a copy of the License at
6  *
7  *     http://www.apache.org/licenses/LICENSE-2.0
8  *
9  * Unless required by applicable law or agreed to in writing, software
10  * distributed under the License is distributed on an "AS IS" BASIS,
11  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12  * See the License for the specific language governing permissions and
13  * limitations under the License.
14  */
15 
16 #include "loadremotesystemability_fuzzer.h"
17 
18 #include "fuzztest_utils.h"
19 #include "samgr_ipc_interface_code.h"
20 namespace OHOS {
21 namespace Samgr {
22 namespace {
23 constexpr size_t THRESHOLD = 4;
24 const std::u16string SAMGR_INTERFACE_TOKEN = u"ohos.samgr.accessToken";
25 }
26 
FuzzLoadSystemAbility(const uint8_t * data,size_t size)27 void FuzzLoadSystemAbility(const uint8_t *data, size_t size)
28 {
29     sptr<MockSystemAbilityLoadCallback> saLoadCb = new(std::nothrow) MockSystemAbilityLoadCallback();
30     if (saLoadCb == nullptr) {
31         return;
32     }
33     MessageParcel parcelData;
34     parcelData.WriteInterfaceToken(SAMGR_INTERFACE_TOKEN);
35     int32_t systemAbilityId = FuzzTestUtils::BuildInt32FromData(data, size);
36     parcelData.WriteInt32(systemAbilityId);
37     parcelData.WriteRemoteObject(saLoadCb);
38     FuzzTestUtils::FuzzTestRemoteRequest(parcelData,
39         static_cast<uint32_t>(SamgrInterfaceCode::LOAD_SYSTEM_ABILITY_TRANSACTION));
40 }
41 
FuzzLoadRemoteSystemAbility(const uint8_t * data,size_t size)42 void FuzzLoadRemoteSystemAbility(const uint8_t *data, size_t size)
43 {
44     FuzzTestUtils::FuzzTestRemoteRequest(data, size,
45         static_cast<uint32_t>(SamgrInterfaceCode::LOAD_REMOTE_SYSTEM_ABILITY_TRANSACTION));
46 }
47 }
48 }
49 /* Fuzzer entry point */
LLVMFuzzerTestOneInput(const uint8_t * data,size_t size)50 extern "C" int LLVMFuzzerTestOneInput(const uint8_t *data, size_t size)
51 {
52     if (size < OHOS::Samgr::THRESHOLD) {
53         return 0;
54     }
55     OHOS::Samgr::FuzzLoadSystemAbility(data, size);
56     OHOS::Samgr::FuzzLoadRemoteSystemAbility(data, size);
57     return 0;
58 }