diff --git a/gatekeeperd/Android.bp b/gatekeeperd/Android.bp index 145a74c5f..534fc1a9c 100644 --- a/gatekeeperd/Android.bp +++ b/gatekeeperd/Android.bp @@ -98,3 +98,20 @@ cc_library_shared { "libbinder", ], } + +cc_fuzz { + name: "gatekeeperd_service_fuzzer", + defaults: [ + "gatekeeperd_defaults", + "service_fuzzer_defaults" + ], + srcs: [ + "fuzzer/GateKeeperServiceFuzzer.cpp", + ], + fuzz_config: { + cc: [ + "subrahmanyaman@google.com", + "swillden@google.com", + ], + }, +} \ No newline at end of file diff --git a/gatekeeperd/fuzzer/GateKeeperServiceFuzzer.cpp b/gatekeeperd/fuzzer/GateKeeperServiceFuzzer.cpp new file mode 100644 index 000000000..bc0d5fe05 --- /dev/null +++ b/gatekeeperd/fuzzer/GateKeeperServiceFuzzer.cpp @@ -0,0 +1,28 @@ +/* + * Copyright (C) 2023 The Android Open Source Project + * + * Licensed under the Apache License, Version 2.0 (the "License"); + * you may not use this file except in compliance with the License. + * You may obtain a copy of the License at + * + * http://www.apache.org/licenses/LICENSE-2.0 + * + * Unless required by applicable law or agreed to in writing, software + * distributed under the License is distributed on an "AS IS" BASIS, + * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. + * See the License for the specific language governing permissions and + * limitations under the License. + */ + +#include + +#include "gatekeeperd.h" + +using android::fuzzService; +using android::GateKeeperProxy; + +extern "C" int LLVMFuzzerTestOneInput(const uint8_t* data, size_t size) { + auto gatekeeperService = new GateKeeperProxy(); + fuzzService(gatekeeperService, FuzzedDataProvider(data, size)); + return 0; +} \ No newline at end of file