Coverage Report

Created: 2026-01-10 06:59

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/flac/oss-fuzz/reencoder.cc
Line
Count
Source
1
/* Copyright 2019 Guido Vranken
2
 *
3
 * Permission is hereby granted, free of charge, to any person obtaining
4
 * a copy of this software and associated documentation files (the
5
 * "Software"), to deal in the Software without restriction, including
6
 * without limitation the rights to use, copy, modify, merge, publish,
7
 * distribute, sublicense, and/or sell copies of the Software, and to
8
 * permit persons to whom the Software is furnished to do so, subject
9
 * to the following conditions:
10
 *
11
 * The above copyright notice and this permission notice shall be
12
 * included in all copies or substantial portions of the Software.
13
 *
14
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
15
 * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
16
 * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
17
 * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS
18
 * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN
19
 * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN
20
 * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
21
 * SOFTWARE.
22
 */
23
24
#include <cstddef>
25
#include <cstdint>
26
#include <limits>
27
28
#include <fuzzing/datasource/datasource.hpp>
29
#include <fuzzing/memory.hpp>
30
31
#include "FLAC++/encoder.h"
32
#include "FLAC++/decoder.h"
33
#include "FLAC++/metadata.h"
34
#include "common.h"
35
36
46.8k
#define MAX_NUM_METADATA_BLOCKS 2048
37
38
namespace FLAC {
39
     namespace Encoder {
40
         class FuzzerStream : public Stream {
41
            private:
42
                // fuzzing::datasource::Datasource& ds;
43
            public:
44
                FuzzerStream(fuzzing::datasource::Datasource&) :
45
8.25k
                    Stream() { }
46
47
2.37M
                ::FLAC__StreamEncoderWriteStatus write_callback(const FLAC__byte buffer[], size_t bytes, uint32_t /* samples */, uint32_t /* current_frame */) override {
48
2.37M
                    fuzzing::memory::memory_test(buffer, bytes);
49
2.37M
                    return FLAC__STREAM_ENCODER_WRITE_STATUS_OK;
50
2.37M
                }
51
         };
52
    }
53
    namespace Decoder {
54
        class FuzzerDecoder : public Stream {
55
        private:
56
            fuzzing::datasource::Datasource& ds;
57
            FLAC::Encoder::FuzzerStream& encoder;
58
        public:
59
            FuzzerDecoder(fuzzing::datasource::Datasource& dsrc, FLAC::Encoder::FuzzerStream& encoder_arg) :
60
8.25k
                Stream(), ds(dsrc), encoder(encoder_arg) { }
61
62
            ::FLAC__StreamMetadata * metadata_blocks[MAX_NUM_METADATA_BLOCKS] = {0};
63
            int num_metadata_blocks = 0;
64
65
46.8k
            void metadata_callback(const ::FLAC__StreamMetadata *metadata) override {
66
46.8k
    if(num_metadata_blocks < MAX_NUM_METADATA_BLOCKS)
67
46.6k
                  if((metadata_blocks[num_metadata_blocks] = FLAC__metadata_object_clone(metadata)) != NULL)
68
46.5k
        num_metadata_blocks++;
69
46.8k
            }
70
71
38.8k
            ::FLAC__StreamDecoderReadStatus read_callback(FLAC__byte buffer[], size_t *bytes)  override {
72
38.8k
                try {
73
38.8k
                    const size_t maxCopySize = *bytes;
74
75
38.8k
                    if ( maxCopySize > 0 ) {
76
                        /* memset just to test if this overwrites anything, and triggers ASAN */
77
38.8k
                        memset(buffer, 0, maxCopySize);
78
38.8k
                    }
79
80
38.8k
                    const auto data = ds.GetData(0);
81
38.8k
                    const auto dataSize = data.size();
82
38.8k
                    const auto copySize = std::min(maxCopySize, dataSize);
83
84
38.8k
                    if ( copySize > 0 ) {
85
14.9k
                        memcpy(buffer, data.data(), copySize);
86
14.9k
                    }
87
88
38.8k
                    *bytes = copySize;
89
90
38.8k
                    return FLAC__STREAM_DECODER_READ_STATUS_CONTINUE;
91
38.8k
                } catch ( ... ) {
92
7.35k
                        return FLAC__STREAM_DECODER_READ_STATUS_ABORT;
93
7.35k
                }
94
38.8k
            }
95
96
44.0k
            ::FLAC__StreamDecoderWriteStatus write_callback(const ::FLAC__Frame *frame, const FLAC__int32 * const buffer[])  override {
97
44.0k
                {
98
44.0k
                    fuzzing::memory::memory_test(&(frame->header), sizeof(frame->header));
99
44.0k
                    fuzzing::memory::memory_test(&(frame->footer), sizeof(frame->footer));
100
44.0k
                }
101
102
44.0k
                {
103
44.0k
                    const auto numChannels = get_channels();
104
44.0k
                    const size_t bytesPerChannel = frame->header.blocksize * sizeof(FLAC__int32);
105
135k
                    for (size_t i = 0; i < numChannels; i++) {
106
91.7k
                        fuzzing::memory::memory_test(buffer[i], bytesPerChannel);
107
91.7k
                    }
108
44.0k
                }
109
110
    /* Data is checked, now pass it towards encoder */
111
44.0k
                if(encoder.get_state() == FLAC__STREAM_ENCODER_OK) {
112
44.0k
                    if(encoder.get_channels() != get_channels())
113
54
                         return FLAC__STREAM_DECODER_WRITE_STATUS_ABORT;
114
43.9k
                    if(encoder.get_bits_per_sample() != get_bits_per_sample())
115
11
                         return FLAC__STREAM_DECODER_WRITE_STATUS_ABORT;
116
43.9k
                    encoder.process(buffer, frame->header.blocksize);
117
43.9k
                    return FLAC__STREAM_DECODER_WRITE_STATUS_CONTINUE;
118
43.9k
                }
119
0
                else
120
0
                    return FLAC__STREAM_DECODER_WRITE_STATUS_ABORT;
121
44.0k
            }
122
68.9k
            void error_callback(::FLAC__StreamDecoderErrorStatus status)  override {
123
68.9k
                fuzzing::memory::memory_test(status);
124
68.9k
            }
125
        };
126
    }
127
}
128
129
8.25k
extern "C" int LLVMFuzzerTestOneInput(const uint8_t *data, size_t size) {
130
8.25k
    fuzzing::datasource::Datasource ds(data, size);
131
8.25k
    FLAC::Encoder::FuzzerStream encoder(ds);
132
8.25k
    FLAC::Decoder::FuzzerDecoder decoder(ds, encoder);
133
134
8.25k
    try {
135
8.25k
            const int channels = ds.Get<uint8_t>();
136
8.25k
            const int bps = ds.Get<uint8_t>();
137
8.25k
            encoder.set_channels(channels);
138
8.25k
            encoder.set_bits_per_sample(bps);
139
140
8.25k
        {
141
8.25k
            const bool res = encoder.set_streamable_subset(ds.Get<bool>());
142
8.25k
            fuzzing::memory::memory_test(res);
143
8.25k
        }
144
8.25k
        {
145
8.25k
            const bool res = encoder.set_ogg_serial_number(ds.Get<long>());
146
8.25k
            fuzzing::memory::memory_test(res);
147
8.25k
        }
148
8.25k
        {
149
8.25k
            const bool res = encoder.set_verify(ds.Get<bool>());
150
8.25k
            fuzzing::memory::memory_test(res);
151
8.25k
        }
152
8.25k
        {
153
8.25k
            const bool res = encoder.set_compression_level(ds.Get<uint8_t>());
154
8.25k
            fuzzing::memory::memory_test(res);
155
8.25k
        }
156
8.25k
        {
157
8.25k
            const bool res = encoder.set_do_mid_side_stereo(ds.Get<bool>());
158
8.25k
            fuzzing::memory::memory_test(res);
159
8.25k
        }
160
8.25k
        {
161
8.25k
            const bool res = encoder.set_loose_mid_side_stereo(ds.Get<bool>());
162
8.25k
            fuzzing::memory::memory_test(res);
163
8.25k
        }
164
8.25k
        {
165
8.25k
            const bool res = encoder.set_max_lpc_order(ds.Get<uint8_t>());
166
8.25k
            fuzzing::memory::memory_test(res);
167
8.25k
        }
168
8.25k
        {
169
8.25k
            const bool res = encoder.set_qlp_coeff_precision(ds.Get<uint32_t>());
170
8.25k
            fuzzing::memory::memory_test(res);
171
8.25k
        }
172
8.25k
        {
173
8.25k
            const bool res = encoder.set_do_escape_coding(ds.Get<bool>());
174
8.25k
            fuzzing::memory::memory_test(res);
175
8.25k
        }
176
8.25k
        {
177
8.25k
            const bool res = encoder.set_min_residual_partition_order(ds.Get<uint32_t>());
178
8.25k
            fuzzing::memory::memory_test(res);
179
8.25k
        }
180
8.25k
        {
181
8.25k
            const bool res = encoder.set_max_residual_partition_order(ds.Get<uint32_t>());
182
8.25k
            fuzzing::memory::memory_test(res);
183
8.25k
        }
184
8.25k
        {
185
8.25k
            const bool res = encoder.set_total_samples_estimate(ds.Get<uint64_t>());
186
8.25k
            fuzzing::memory::memory_test(res);
187
8.25k
        }
188
8.25k
        {
189
8.25k
            const bool res = encoder.set_blocksize(ds.Get<uint16_t>());
190
8.25k
            fuzzing::memory::memory_test(res);
191
8.25k
        }
192
8.25k
        {
193
8.25k
            const bool res = encoder.set_limit_min_bitrate(ds.Get<bool>());
194
8.25k
            fuzzing::memory::memory_test(res);
195
8.25k
        }
196
8.25k
        {
197
8.25k
            const bool res = encoder.set_sample_rate(ds.Get<uint32_t>());
198
8.25k
            fuzzing::memory::memory_test(res);
199
8.25k
        }
200
8.25k
        {
201
8.25k
            const bool res = encoder.set_num_threads(ds.Get<uint32_t>());
202
8.25k
            fuzzing::memory::memory_test(res);
203
8.25k
        }
204
205
8.25k
        decoder.set_metadata_respond_all();
206
207
8.25k
        {
208
8.25k
            ::FLAC__StreamDecoderInitStatus ret;
209
8.25k
            if ( ds.Get<bool>() ) {
210
7.17k
                ret = decoder.init();
211
7.17k
            } else {
212
1.08k
                ret = decoder.init_ogg();
213
1.08k
            }
214
215
8.25k
            if ( ret != FLAC__STREAM_DECODER_INIT_STATUS_OK ) {
216
0
                goto end;
217
0
            }
218
219
8.25k
            decoder.process_until_end_of_metadata();
220
8.25k
            if(decoder.num_metadata_blocks > 0)
221
941
                encoder.set_metadata(decoder.metadata_blocks, decoder.num_metadata_blocks);
222
8.25k
        }
223
224
0
        {
225
8.25k
            ::FLAC__StreamEncoderInitStatus ret;
226
8.25k
            if ( ds.Get<bool>() ) {
227
3.07k
                ret = encoder.init();
228
5.17k
            } else {
229
5.17k
                ret = encoder.init_ogg();
230
5.17k
            }
231
232
8.25k
            if ( ret != FLAC__STREAM_ENCODER_INIT_STATUS_OK ) {
233
693
                goto end;
234
693
            }
235
8.25k
        }
236
237
  /* These sets must fail, because encoder is already initialized */
238
7.56k
        {
239
7.56k
            bool res = false;
240
7.56k
            res = res || encoder.set_streamable_subset(true);
241
7.56k
            res = res || encoder.set_ogg_serial_number(0);
242
7.56k
            res = res || encoder.set_verify(true);
243
7.56k
            res = res || encoder.set_compression_level(0);
244
7.56k
            res = res || encoder.set_do_exhaustive_model_search(true);
245
7.56k
            res = res || encoder.set_do_mid_side_stereo(true);
246
7.56k
            res = res || encoder.set_loose_mid_side_stereo(true);
247
7.56k
            res = res || encoder.set_apodization("test");
248
7.56k
            res = res || encoder.set_max_lpc_order(0);
249
7.56k
            res = res || encoder.set_qlp_coeff_precision(0);
250
7.56k
            res = res || encoder.set_do_qlp_coeff_prec_search(true);
251
7.56k
            res = res || encoder.set_do_escape_coding(true);
252
7.56k
            res = res || encoder.set_min_residual_partition_order(0);
253
7.56k
            res = res || encoder.set_max_residual_partition_order(0);
254
7.56k
            res = res || encoder.set_rice_parameter_search_dist(0);
255
7.56k
            res = res || encoder.set_total_samples_estimate(0);
256
7.56k
            res = res || encoder.set_channels(channels);
257
7.56k
            res = res || encoder.set_bits_per_sample(16);
258
7.56k
            res = res || encoder.set_limit_min_bitrate(true);
259
7.56k
            res = res || encoder.set_blocksize(3021);
260
7.56k
            res = res || encoder.set_sample_rate(44100);
261
7.56k
            res = res || (encoder.set_num_threads(4) == FLAC__STREAM_ENCODER_SET_NUM_THREADS_OK);
262
7.56k
            fuzzing::memory::memory_test(res);
263
7.56k
            if(res)
264
0
                abort();
265
7.56k
        }
266
267
268
7.56k
        {
269
            /* XORing values as otherwise compiler will optimize, apparently */
270
7.56k
            bool res = false;
271
7.56k
            res = res != encoder.get_streamable_subset();
272
7.56k
            res = res != encoder.get_verify();
273
7.56k
            res = res != encoder.get_do_exhaustive_model_search();
274
7.56k
            res = res != encoder.get_do_mid_side_stereo();
275
7.56k
            res = res != encoder.get_loose_mid_side_stereo();
276
7.56k
            res = res != encoder.get_max_lpc_order();
277
7.56k
            res = res != encoder.get_qlp_coeff_precision();
278
7.56k
            res = res != encoder.get_do_qlp_coeff_prec_search();
279
7.56k
            res = res != encoder.get_do_escape_coding();
280
7.56k
            res = res != encoder.get_min_residual_partition_order();
281
7.56k
            res = res != encoder.get_max_residual_partition_order();
282
7.56k
            res = res != encoder.get_rice_parameter_search_dist();
283
7.56k
            res = res != encoder.get_total_samples_estimate();
284
7.56k
            res = res != encoder.get_channels();
285
7.56k
            res = res != encoder.get_bits_per_sample();
286
7.56k
            res = res != encoder.get_limit_min_bitrate();
287
7.56k
            res = res != encoder.get_blocksize();
288
7.56k
            res = res != encoder.get_sample_rate();
289
7.56k
            res = res != encoder.get_num_threads();
290
7.56k
            fuzzing::memory::memory_test(res);
291
7.56k
        }
292
293
7.56k
        decoder.process_until_end_of_stream();
294
295
7.56k
    } catch ( ... ) { }
296
297
8.25k
end:
298
8.25k
    {
299
8.25k
        const bool res = encoder.finish();
300
8.25k
        fuzzing::memory::memory_test(res);
301
8.25k
    }
302
8.25k
    {
303
8.25k
        const bool res = decoder.finish();
304
8.25k
        fuzzing::memory::memory_test(res);
305
8.25k
    }
306
54.7k
    for(int i = 0; i < decoder.num_metadata_blocks; i++)
307
46.5k
        FLAC__metadata_object_delete(decoder.metadata_blocks[i]);
308
309
8.25k
    return 0;
310
8.25k
}