git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: [PATCH 0/3] fuzz: port OSS-Fuzz tests back to Git

From
Junio C Hamano <gitster@pobox.com>
Date
Oct 10, 2024, 21:34 UTC
Message-ID
<xmqq4j5jk5h0.fsf@gitster.g>
In-Reply-To
<cover.1728594659.git.steadmon@google.com>
Josh Steadmon <steadmon@google.com> writes:
Show 14 quoted lines
> Git's fuzz tests are run continuously as part of OSS-Fuzz [1]. Several
> additional fuzz tests have been contributed directly to OSS-Fuzz;
> however, these tests are vulnerable to bitrot because they are not built
> during Git's CI runs, and thus breaking changes are much less likely to
> be noticed by Git contributors.
>
> OSS-Fuzz's recommended setup is for tests to live in the repository of
> the code they test and to be built along with other tests [1].
>
> Port some of these tests back to the Git project, so that they can be
> built and tested during our normal development workflow and CI, and as
> such avoid future bitrot.
>
> [1] https://google.github.io/oss-fuzz/advanced-topics/ideal-integration/
Thanks!  Very much appreciated.
Show 20 quoted lines
> Eric Sesterhenn (3):
>   fuzz: port fuzz-credential-from-url-gently from OSS-Fuzz
>   fuzz: port fuzz-parse-attr-line from OSS-Fuzz
>   fuzz: port fuzz-url-decode-mem from OSS-Fuzz
>
>  Makefile                                   |  3 ++
>  attr.c                                     | 38 +------------------
>  attr.h                                     | 43 ++++++++++++++++++++++
>  ci/run-build-and-minimal-fuzzers.sh        | 15 +++++++-
>  oss-fuzz/.gitignore                        |  3 ++
>  oss-fuzz/fuzz-credential-from-url-gently.c | 32 ++++++++++++++++
>  oss-fuzz/fuzz-parse-attr-line.c            | 39 ++++++++++++++++++++
>  oss-fuzz/fuzz-url-decode-mem.c             | 43 ++++++++++++++++++++++
>  8 files changed, 177 insertions(+), 39 deletions(-)
>  create mode 100644 oss-fuzz/fuzz-credential-from-url-gently.c
>  create mode 100644 oss-fuzz/fuzz-parse-attr-line.c
>  create mode 100644 oss-fuzz/fuzz-url-decode-mem.c
>
>
> base-commit: 159f2d50e75c17382c9f4eb7cbda671a6fa612d1
Previous: Josh SteadmonNext: Josh Steadmon
Message 9 of 13 in “fuzz: port OSS-Fuzz tests back to Git”
  1. 0/3 fuzz: port OSS-Fuzz tests back to GitJosh Steadmon, Oct 10, 2024
  2. 1/3 fuzz: port fuzz-credential-from-url-gently from OSS-FuzzJosh Steadmon, Oct 10, 2024
  3. Oswald BuddenhagenOct 11, 2024
  4. Junio C HamanoOct 11, 2024
  5. Josh SteadmonOct 14, 2024
  6. Josh SteadmonOct 14, 2024
  7. 2/3 fuzz: port fuzz-parse-attr-line from OSS-FuzzJosh Steadmon, Oct 10, 2024
  8. 3/3 fuzz: port fuzz-url-decode-mem from OSS-FuzzJosh Steadmon, Oct 10, 2024
  9. Junio C HamanoOct 10, 2024
  10. 0/3 fuzz: port OSS-Fuzz tests back to GitJosh Steadmon, Oct 14, 2024
  11. 1/3 fuzz: port fuzz-credential-from-url-gently from OSS-FuzzJosh Steadmon, Oct 14, 2024
  12. 2/3 fuzz: port fuzz-parse-attr-line from OSS-FuzzJosh Steadmon, Oct 14, 2024
  13. 3/3 fuzz: port fuzz-url-decode-mem from OSS-FuzzJosh Steadmon, Oct 14, 2024

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.