Fuzz introspector
For issues and ideas: https://github.com/ossf/fuzz-introspector/issues
Report generation date: 2026-08-14

Project overview: libcoap

High level conclusions

Reachability and coverage overview

Functions statically reachable by fuzzers
70.0%
712 / 1010
Cyclomatic complexity statically reachable by fuzzers
85.0%
8093 / 9536
Runtime code coverage of functions
55.0%
559 / 1010

Fuzzers overview

Fuzzer Fuzzer filename Functions Reached Functions unreached Fuzzer depth Files reached Basic blocks reached Cyclomatic complexity Details
split_uri_fuzzer tests/oss-fuzz/split_uri_target.c 28 1196 5 7 344 152 split_uri_target.c
oscore_conf_parse_fuzzer tests/oss-fuzz/oscore_conf_parse_target.c 61 1163 8 12 804 329 oscore_conf_parse_target.c
get_asn1_tag_fuzzer tests/oss-fuzz/get_asn1_tag_target.c 25 1204 7 6 140 85 get_asn1_tag_target.c
pdu_parse_tcp_fuzzer tests/oss-fuzz/pdu_parse_tcp_target.c 98 1126 7 15 2062 679 pdu_parse_tcp_target.c
async_fuzzer tests/oss-fuzz/async_target.c 810 421 49 41 21806 7593 async_target.c
cache_key_fuzzer tests/oss-fuzz/cache_key_target.c 792 432 49 39 21550 7480 cache_key_target.c
proxy_fuzzer tests/oss-fuzz/proxy_target.c 797 433 49 40 21651 7536 proxy_target.c
block_check_fuzzer tests/oss-fuzz/block_check_target.c 803 425 49 40 21740 7567 block_check_target.c
observe_fuzzer tests/oss-fuzz/observe_target.c 799 432 49 41 21664 7541 observe_target.c
ws_frame_fuzzer tests/oss-fuzz/ws_frame_target.c 806 428 49 40 22029 7685 ws_frame_target.c
oscore_cbor_fuzzer tests/oss-fuzz/oscore_cbor_target.c 45 1179 4 9 201 121 oscore_cbor_target.c
pdu_parse_udp_fuzzer tests/oss-fuzz/pdu_parse_udp_target.c 98 1126 7 15 2062 679 pdu_parse_udp_target.c
dtls_define_fuzzer tests/oss-fuzz/dtls_define_target.c 21 1203 4 4 209 78 dtls_define_target.c
network_message_fuzzer tests/oss-fuzz/network_message_target.c 812 418 49 39 21684 7591 network_message_target.c
pdu_parse_ws_fuzzer tests/oss-fuzz/pdu_parse_ws_target.c 98 1126 7 15 2062 679 pdu_parse_ws_target.c
block_fuzzer tests/oss-fuzz/block_target.c 805 426 49 41 21732 7562 block_target.c
uri_extended_fuzzer tests/oss-fuzz/uri_extended_target.c 82 1142 6 14 1249 463 uri_extended_target.c
oscore_decrypt_fuzzer tests/oss-fuzz/oscore_decrypt_target.c 801 423 49 39 22048 7672 oscore_decrypt_target.c
persist_fuzzer tests/oss-fuzz/persist_target.c 825 405 49 39 22033 7709 persist_target.c

Project functions overview

The following table shows data about each function in the project. The functions included in this table correspond to all functions that exist in the executables of the fuzzers. As such, there may be functions that are from third-party libraries.

For further technical details on the meaning of columns in the below table, please see the Glossary .

Func name Functions filename Args Function call depth Reached by Fuzzers Runtime reached by Fuzzers Combined reached by Fuzzers Fuzzers runtime hit Func lines hit % I Count BB Count Cyclomatic complexity Functions reached Reached by functions Accumulated cyclomatic complexity Undiscovered complexity

Fuzzer details

Fuzzer: split_uri_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 22 33.3%
gold [1:9] 13 19.6%
yellow [10:29] 0 0.0%
greenyellow [30:49] 4 6.06%
lawngreen 50+ 27 40.9%
All colors 66 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
4 28 coap_dtls_is_supported call site: 00028 coap_log_impl
4 40 coap_tls_is_supported call site: 00040 coap_log_impl
4 50 coap_wss_is_supported call site: 00050 coap_log_impl
2 25 coap_dtls_is_supported call site: 00025 coap_log_impl
2 33 coap_split_uri_sub call site: 00033 coap_log_impl
2 37 coap_tls_is_supported call site: 00037 coap_log_impl
2 46 coap_ws_is_supported call site: 00046 coap_log_impl
1 6 coap_split_uri_sub call site: 00006 vsnprintf
1 17 coap_log_impl call site: 00017 snprintf

Runtime coverage analysis

Covered functions
15
Functions that are reachable but not covered
13
Reachable functions
28
Percentage of reachable functions covered
53.57%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/split_uri_target.c 1
src/coap_uri.c 2
src/coap_debug.c 4
src/coap_time.c 3
src/coap_openssl.c 2
src/coap_strm_posix.c 1
src/coap_ws.c 2

Fuzzer: oscore_conf_parse_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 30 17.2%
gold [1:9] 20 11.4%
yellow [10:29] 10 5.74%
greenyellow [30:49] 5 2.87%
lawngreen 50+ 109 62.6%
All colors 174 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
16 41 coap_new_string call site: 00041 coap_log_impl
4 94 coap_delete_bin_const call site: 00094 coap_log_impl
4 126 coap_parse_oscore_rcp_conf_mem call site: 00126 coap_log_impl
2 16 coap_cleanup call site: 00016 ENGINE_finish
1 11 coap_dtls_startup call site: 00011 OPENSSL_init_crypto
1 14 LLVMFuzzerTestOneInput call site: 00014 coap_cleanup
1 20 coap_cleanup call site: 00020 coap_free_type
1 148 coap_parse_oscore_conf_mem call site: 00148 __assert_fail

Runtime coverage analysis

Covered functions
40
Functions that are reachable but not covered
22
Reachable functions
61
Percentage of reachable functions covered
63.93%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/oscore_conf_parse_target.c 1
src/coap_net.c 2
src/coap_time.c 4
src/coap_prng.c 2
src/coap_mem.c 3
src/coap_openssl.c 3
src/coap_debug.c 6
src/coap_uri.c 1
src/coap_oscore.c 10
src/coap_str.c 6
src/oscore/oscore_cose.c 4
src/oscore/oscore.c 1

Fuzzer: get_asn1_tag_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 17 53.1%
gold [1:9] 0 0.0%
yellow [10:29] 0 0.0%
greenyellow [30:49] 0 0.0%
lawngreen 50+ 15 46.8%
All colors 32 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
17 9 coap_new_string call site: 00009 coap_log_impl

Runtime coverage analysis

Covered functions
10
Functions that are reachable but not covered
15
Reachable functions
25
Percentage of reachable functions covered
40.0%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/get_asn1_tag_target.c 1
src/coap_asn1.c 4
src/coap_str.c 3
src/coap_mem.c 2
src/coap_debug.c 4
src/coap_time.c 3

Fuzzer: pdu_parse_tcp_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 242 54.0%
gold [1:9] 14 3.12%
yellow [10:29] 15 3.34%
greenyellow [30:49] 4 0.89%
lawngreen 50+ 173 38.6%
All colors 448 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
159 247 coap_show_pdu call site: 00247 coap_option_next
17 31 coap_pdu_parse2 call site: 00031 coap_log_impl
5 407 LLVMFuzzerTestOneInput call site: 00407 coap_log_impl
4 103 coap_pdu_parse_opt call site: 00103 coap_log_impl
4 108 coap_pdu_parse_opt call site: 00108 coap_log_impl
4 194 coap_dtls_is_supported call site: 00194 coap_log_impl
4 206 coap_tls_is_supported call site: 00206 coap_log_impl
4 216 coap_wss_is_supported call site: 00216 coap_log_impl
4 425 coap_pdu_encode_header call site: 00425 coap_log_impl
3 53 coap_pdu_parse2 call site: 00053 coap_log_impl
3 57 coap_pdu_parse_header call site: 00057 coap_log_impl
3 175 coap_get_uri_path call site: 00175 coap_new_string

Runtime coverage analysis

Covered functions
68
Functions that are reachable but not covered
31
Reachable functions
98
Percentage of reachable functions covered
68.37%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/pdu_parse_tcp_target.c 1
src/coap_net.c 2
src/coap_time.c 4
src/coap_prng.c 2
src/coap_mem.c 4
src/coap_openssl.c 5
src/coap_pdu.c 18
src/coap_debug.c 13
src/coap_option.c 12
src/coap_encode.c 3
src/coap_uri.c 9
src/coap_str.c 3
src/coap_strm_posix.c 1
src/coap_ws.c 2
src/coap_block.c 1

Fuzzer: async_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 4389 87.5%
gold [1:9] 95 1.89%
yellow [10:29] 359 7.15%
greenyellow [30:49] 45 0.89%
lawngreen 50+ 127 2.53%
All colors 5015 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
608 2278 coap_make_str_const call site: 02278 coap_session_release_lkd
316 3822 coap_dispatch call site: 03822 coap_oscore_decrypt_pdu
282 1858 coap_session_connected call site: 01858 coap_handle_event_lkd
265 4223 coap_dispatch call site: 04223 coap_send_ack_lkd
259 1053 coap_pdu_encode_header call site: 01053 coap_proxy_forward_request_lkd
255 3462 coap_session_free call site: 03462 coap_dtls_handle_timeout
253 4576 coap_handle_dgram call site: 04576 coap_handle_event_lkd
233 3096 handle_request call site: 03096 coap_handle_request_put_block
214 1380 coap_send_internal call site: 01380 coap_oscore_new_pdu_encrypted_lkd
157 712 coap_show_pdu call site: 00712 coap_session_release_lkd
70 111 coap_dtls_new_context call site: 00111 coap_session_str
70 1597 coap_pdu_duplicate_lkd call site: 01597 oscore_new_association

Runtime coverage analysis

Covered functions
203
Functions that are reachable but not covered
614
Reachable functions
810
Percentage of reachable functions covered
24.2%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/async_target.c 3
src/coap_net.c 60
src/coap_time.c 5
src/coap_prng.c 2
src/coap_mem.c 5
src/coap_openssl.c 65
src/coap_debug.c 17
src/coap_io.c 10
src/coap_session.c 55
src/coap_address.c 16
src/coap_netif.c 11
src/coap_strm_posix.c 6
src/coap_ws.c 2
src/coap_dgrm_posix.c 5
src/coap_io_posix.c 4
src/coap_proxy.c 22
src/coap_uri.c 20
src/coap_option.c 21
src/coap_encode.c 6
src/coap_str.c 10
src/coap_pdu.c 35
src/coap_cache.c 5
src/coap_block.c 53
src/coap_resource.c 24
./include/coap3/coap_pdu_internal.h 1
./include/coap3/coap_resource_internal.h 1
src/coap_oscore.c 19
./include/coap3/coap_uri.h 1
src/oscore/oscore_cose.c 19
src/oscore/oscore_context.c 27
src/oscore/oscore.c 8
src/oscore/oscore_cbor.c 11
./include/coap3/coap_block_internal.h 6
src/oscore/oscore_crypto.c 4
/usr/include/openssl/ssl.h 3
src/coap_dtls.c 5
/usr/include/openssl/x509v3.h 3
src/coap_async.c 15
src/coap_subscribe.c 3
src/coap_event.c 1
tests/oss-fuzz/coap_fuzz_helper.c 2

Fuzzer: cache_key_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 4596 93.3%
gold [1:9] 39 0.79%
yellow [10:29] 29 0.58%
greenyellow [30:49] 213 4.32%
lawngreen 50+ 49 0.99%
All colors 4926 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
991 3761 coap_pdu_parse_opt call site: 03761 coap_handle_event_lkd
660 2780 coap_cache_derive_key_w_ignore call site: 02780 coap_cancel_observe_lkd
540 2227 coap_session_check_connect call site: 02227 coap_session_release_lkd
385 1329 coap_check_dots call site: 01329 coap_oscore_new_pdu_encrypted_lkd
318 1009 coap_socket_connect_udp call site: 01009 coap_session_reestablished
314 614 coap_pdu_resize call site: 00614 coap_session_release_lkd
264 3450 coap_session_free call site: 03450 coap_dtls_handle_timeout
224 1904 coap_digest_free call site: 01904 coap_handle_event_lkd
128 1715 coap_delete_str_const call site: 01715 coap_cancel_session_messages
87 429 coap_option_next call site: 00429 coap_split_proxy_uri
70 99 coap_dtls_new_context call site: 00099 coap_session_str
69 250 coap_dtls_free_context call site: 00250 coap_new_endpoint_lkd

Runtime coverage analysis

Covered functions
117
Functions that are reachable but not covered
678
Reachable functions
792
Percentage of reachable functions covered
14.39%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/cache_key_target.c 1
src/coap_net.c 60
src/coap_time.c 5
src/coap_prng.c 2
src/coap_mem.c 5
src/coap_openssl.c 65
src/coap_debug.c 15
src/coap_io.c 10
src/coap_session.c 54
src/coap_address.c 16
src/coap_netif.c 11
src/coap_strm_posix.c 6
src/coap_ws.c 2
src/coap_dgrm_posix.c 5
src/coap_io_posix.c 4
src/coap_proxy.c 22
src/coap_uri.c 20
src/coap_option.c 21
src/coap_encode.c 6
src/coap_str.c 10
src/coap_pdu.c 35
src/coap_cache.c 11
src/coap_block.c 53
src/coap_resource.c 20
./include/coap3/coap_pdu_internal.h 1
./include/coap3/coap_resource_internal.h 1
src/coap_oscore.c 19
./include/coap3/coap_uri.h 1
src/oscore/oscore_cose.c 19
src/oscore/oscore_context.c 27
src/oscore/oscore.c 8
src/oscore/oscore_cbor.c 11
./include/coap3/coap_block_internal.h 6
src/oscore/oscore_crypto.c 4
/usr/include/openssl/ssl.h 3
src/coap_dtls.c 5
/usr/include/openssl/x509v3.h 3
src/coap_async.c 4
src/coap_subscribe.c 3

Fuzzer: proxy_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 4438 89.5%
gold [1:9] 103 2.07%
yellow [10:29] 257 5.18%
greenyellow [30:49] 95 1.91%
lawngreen 50+ 65 1.31%
All colors 4958 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
1367 3463 coap_session_free call site: 03463 coap_dtls_handle_timeout
422 3031 coap_free_resource call site: 03031 coap_check_async
387 2384 coap_proxy_get_ongoing_session call site: 02384 coap_new_client_session_oscore_pki3_lkd
214 1381 coap_send_internal call site: 01381 coap_oscore_new_pdu_encrypted_lkd
157 713 coap_show_pdu call site: 00713 coap_session_release_lkd
146 2875 coap_proxy_forward_request_lkd call site: 02875 coap_proxy_call_response_handler
143 2240 coap_session_check_connect call site: 02240 coap_session_release_lkd
115 1899 coap_add_data_large_internal call site: 01899 coap_handle_event_lkd
97 2015 coap_add_data_large_internal call site: 02015 coap_add_data_large_request_lkd
83 1230 coap_new_bin_const call site: 01230 coap_send_internal
70 112 coap_dtls_new_context call site: 00112 coap_session_str
69 263 coap_dtls_free_context call site: 00263 coap_new_endpoint_lkd

Runtime coverage analysis

Covered functions
189
Functions that are reachable but not covered
615
Reachable functions
797
Percentage of reachable functions covered
22.84%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/proxy_target.c 4
src/coap_net.c 60
src/coap_time.c 5
src/coap_prng.c 2
src/coap_mem.c 5
src/coap_openssl.c 65
src/coap_debug.c 17
src/coap_io.c 10
src/coap_session.c 54
src/coap_address.c 16
src/coap_netif.c 11
src/coap_strm_posix.c 6
src/coap_ws.c 2
src/coap_dgrm_posix.c 5
src/coap_io_posix.c 4
src/coap_proxy.c 23
src/coap_uri.c 20
src/coap_option.c 21
src/coap_encode.c 6
src/coap_str.c 10
src/coap_pdu.c 35
src/coap_cache.c 5
src/coap_block.c 53
src/coap_resource.c 23
./include/coap3/coap_pdu_internal.h 1
./include/coap3/coap_resource_internal.h 1
src/coap_oscore.c 19
./include/coap3/coap_uri.h 1
src/oscore/oscore_cose.c 19
src/oscore/oscore_context.c 27
src/oscore/oscore.c 8
src/oscore/oscore_cbor.c 11
./include/coap3/coap_block_internal.h 6
src/oscore/oscore_crypto.c 4
/usr/include/openssl/ssl.h 3
src/coap_dtls.c 5
/usr/include/openssl/x509v3.h 3
src/coap_async.c 4
src/coap_subscribe.c 3
src/coap_event.c 1

Fuzzer: block_check_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 4481 89.1%
gold [1:9] 8 0.15%
yellow [10:29] 384 7.63%
greenyellow [30:49] 49 0.97%
lawngreen 50+ 107 2.12%
All colors 5029 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
1227 3581 coap_io_do_epoll_lkd call site: 03581 coap_read_endpoint
697 2279 coap_make_str_const call site: 02279 coap_session_release_lkd
376 1341 coap_pdu_parse_opt_base call site: 01341 coap_oscore_new_pdu_encrypted_lkd
201 1022 coap_socket_connect_udp call site: 01022 coap_session_reestablished
181 3075 coap_get_resource_from_uri_path_lkd call site: 03075 coap_session_max_pdu_size_lkd
161 713 coap_show_pdu call site: 00713 coap_session_release_lkd
131 3257 coap_add_block_b_data call site: 03257 coap_send_internal
89 2052 coap_add_block call site: 02052 coap_send_internal
72 1772 coap_add_option call site: 01772 coap_send_internal
70 112 coap_dtls_new_context call site: 00112 coap_session_str
66 461 coap_new_string call site: 00461 coap_split_proxy_uri
57 884 coap_find_lg_xmit_response call site: 00884 coap_delete_observer

Runtime coverage analysis

Covered functions
187
Functions that are reachable but not covered
619
Reachable functions
803
Percentage of reachable functions covered
22.91%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/block_check_target.c 2
src/coap_net.c 60
src/coap_time.c 5
src/coap_prng.c 2
src/coap_mem.c 5
src/coap_openssl.c 65
src/coap_debug.c 17
src/coap_io.c 10
src/coap_session.c 55
src/coap_address.c 16
src/coap_netif.c 11
src/coap_strm_posix.c 6
src/coap_ws.c 2
src/coap_dgrm_posix.c 5
src/coap_io_posix.c 5
src/coap_proxy.c 22
src/coap_uri.c 20
src/coap_option.c 21
src/coap_encode.c 6
src/coap_str.c 10
src/coap_pdu.c 35
src/coap_cache.c 5
src/coap_block.c 60
src/coap_resource.c 23
./include/coap3/coap_pdu_internal.h 1
./include/coap3/coap_resource_internal.h 1
src/coap_oscore.c 19
./include/coap3/coap_uri.h 1
src/oscore/oscore_cose.c 19
src/oscore/oscore_context.c 27
src/oscore/oscore.c 8
src/oscore/oscore_cbor.c 11
./include/coap3/coap_block_internal.h 6
src/oscore/oscore_crypto.c 4
/usr/include/openssl/ssl.h 3
src/coap_dtls.c 5
/usr/include/openssl/x509v3.h 3
src/coap_async.c 4
src/coap_subscribe.c 3
src/coap_event.c 1

Fuzzer: observe_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 4292 86.3%
gold [1:9] 84 1.69%
yellow [10:29] 69 1.38%
greenyellow [30:49] 237 4.77%
lawngreen 50+ 286 5.75%
All colors 4968 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
501 2278 coap_make_str_const call site: 02278 coap_session_release_lkd
316 3822 coap_dispatch call site: 03822 coap_oscore_decrypt_pdu
265 4223 coap_dispatch call site: 04223 coap_send_ack_lkd
259 1053 coap_pdu_encode_header call site: 01053 coap_proxy_forward_request_lkd
255 3462 coap_session_free call site: 03462 coap_dtls_handle_timeout
253 4576 coap_handle_dgram call site: 04576 coap_handle_event_lkd
224 1916 coap_digest_free call site: 01916 coap_handle_event_lkd
214 1380 coap_send_internal call site: 01380 coap_oscore_new_pdu_encrypted_lkd
168 3097 handle_request call site: 03097 coap_handle_request_put_block
148 712 coap_show_pdu call site: 00712 coap_option_next
94 2792 coap_cache_derive_key_w_ignore call site: 02792 coap_cancel_observe_lkd
72 3380 handle_request call site: 03380 coap_resource_release_lkd

Runtime coverage analysis

Covered functions
205
Functions that are reachable but not covered
601
Reachable functions
799
Percentage of reachable functions covered
24.78%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/observe_target.c 3
src/coap_net.c 60
src/coap_time.c 5
src/coap_prng.c 2
src/coap_mem.c 5
src/coap_openssl.c 65
src/coap_debug.c 17
src/coap_io.c 10
src/coap_session.c 54
src/coap_address.c 16
src/coap_netif.c 11
src/coap_strm_posix.c 6
src/coap_ws.c 2
src/coap_dgrm_posix.c 5
src/coap_io_posix.c 4
src/coap_proxy.c 22
src/coap_uri.c 20
src/coap_option.c 21
src/coap_encode.c 6
src/coap_str.c 10
src/coap_pdu.c 35
src/coap_cache.c 5
src/coap_block.c 53
src/coap_resource.c 25
./include/coap3/coap_pdu_internal.h 1
./include/coap3/coap_resource_internal.h 1
src/coap_oscore.c 19
./include/coap3/coap_uri.h 1
src/oscore/oscore_cose.c 19
src/oscore/oscore_context.c 27
src/oscore/oscore.c 8
src/oscore/oscore_cbor.c 11
./include/coap3/coap_block_internal.h 6
src/oscore/oscore_crypto.c 4
/usr/include/openssl/ssl.h 3
src/coap_dtls.c 5
/usr/include/openssl/x509v3.h 3
src/coap_async.c 4
src/coap_subscribe.c 3
src/coap_event.c 1
tests/oss-fuzz/coap_fuzz_helper.c 2

Fuzzer: ws_frame_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 4795 94.5%
gold [1:9] 56 1.10%
yellow [10:29] 10 0.19%
greenyellow [30:49] 203 4.00%
lawngreen 50+ 9 0.17%
All colors 5073 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
1369 3450 coap_session_free call site: 03450 coap_dtls_handle_timeout
1213 2227 coap_session_check_connect call site: 02227 coap_session_release_lkd
677 1009 coap_socket_connect_udp call site: 01009 coap_session_reestablished
389 539 coap_session_free call site: 00539 coap_delete_proxy_subscriber
282 1846 coap_session_connected call site: 01846 coap_handle_event_lkd
135 386 coap_handle_event_lkd call site: 00386 coap_proxy_remove_association
121 1722 coap_session_disconnected_lkd call site: 01722 coap_delete_node_lkd
70 99 coap_dtls_new_context call site: 00099 coap_session_str
69 250 coap_dtls_free_context call site: 00250 coap_new_endpoint_lkd
46 328 coap_socket_dgrm_close call site: 00328 coap_netif_strm_listen
41 2177 coap_session_create_client call site: 02177 coap_netif_strm_connect1
40 4905 coap_ws_rd_http_header_client call site: 04905 coap_ws_build_key_hash

Runtime coverage analysis

Covered functions
93
Functions that are reachable but not covered
719
Reachable functions
806
Percentage of reachable functions covered
10.79%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/ws_frame_target.c 4
src/coap_net.c 60
src/coap_time.c 5
src/coap_prng.c 2
src/coap_mem.c 5
src/coap_openssl.c 67
src/coap_debug.c 15
src/coap_io.c 10
src/coap_session.c 53
src/coap_address.c 16
src/coap_netif.c 11
src/coap_strm_posix.c 6
src/coap_ws.c 15
src/coap_dgrm_posix.c 5
src/coap_io_posix.c 4
src/coap_proxy.c 22
src/coap_uri.c 20
src/coap_option.c 21
src/coap_encode.c 6
src/coap_str.c 10
src/coap_pdu.c 34
src/coap_cache.c 5
src/coap_block.c 53
src/coap_resource.c 20
./include/coap3/coap_pdu_internal.h 1
./include/coap3/coap_resource_internal.h 1
src/coap_oscore.c 19
./include/coap3/coap_uri.h 1
src/oscore/oscore_cose.c 19
src/oscore/oscore_context.c 27
src/oscore/oscore.c 8
src/oscore/oscore_cbor.c 11
./include/coap3/coap_block_internal.h 6
src/oscore/oscore_crypto.c 4
/usr/include/openssl/ssl.h 3
src/coap_dtls.c 5
/usr/include/openssl/x509v3.h 3
src/coap_async.c 4
src/coap_subscribe.c 3
src/coap_event.c 1

Fuzzer: oscore_cbor_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 19 28.7%
gold [1:9] 0 0.0%
yellow [10:29] 0 0.0%
greenyellow [30:49] 0 0.0%
lawngreen 50+ 47 71.2%
All colors 66 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
14 40 oscore_cbor_elem_contained call site: 00040 print_timestamp
2 16 coap_cleanup call site: 00016 ENGINE_finish
1 11 coap_dtls_startup call site: 00011 OPENSSL_init_crypto
1 14 LLVMFuzzerTestOneInput call site: 00014 coap_cleanup
1 20 coap_cleanup call site: 00020 coap_free_type

Runtime coverage analysis

Covered functions
31
Functions that are reachable but not covered
15
Reachable functions
45
Percentage of reachable functions covered
66.67%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/oscore_cbor_target.c 1
src/coap_net.c 2
src/coap_time.c 4
src/coap_prng.c 2
src/coap_mem.c 3
src/coap_openssl.c 3
src/coap_debug.c 6
src/coap_uri.c 1
src/oscore/oscore_cbor.c 12

Fuzzer: pdu_parse_udp_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 244 54.4%
gold [1:9] 17 3.79%
yellow [10:29] 18 4.01%
greenyellow [30:49] 0 0.0%
lawngreen 50+ 169 37.7%
All colors 448 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
159 247 coap_show_pdu call site: 00247 coap_option_next
19 410 coap_pdu_encode_header call site: 00410 coap_log_impl
17 31 coap_pdu_parse2 call site: 00031 coap_log_impl
4 56 coap_pdu_parse_header call site: 00056 coap_log_impl
4 103 coap_pdu_parse_opt call site: 00103 coap_log_impl
4 108 coap_pdu_parse_opt call site: 00108 coap_log_impl
4 194 coap_dtls_is_supported call site: 00194 coap_log_impl
4 206 coap_tls_is_supported call site: 00206 coap_log_impl
4 216 coap_wss_is_supported call site: 00216 coap_log_impl
3 175 coap_get_uri_path call site: 00175 coap_new_string
2 50 coap_realloc_type call site: 00050 coap_log_impl
2 156 coap_new_string call site: 00156 coap_log_impl

Runtime coverage analysis

Covered functions
68
Functions that are reachable but not covered
31
Reachable functions
98
Percentage of reachable functions covered
68.37%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/pdu_parse_udp_target.c 1
src/coap_net.c 2
src/coap_time.c 4
src/coap_prng.c 2
src/coap_mem.c 4
src/coap_openssl.c 5
src/coap_pdu.c 18
src/coap_debug.c 13
src/coap_option.c 12
src/coap_encode.c 3
src/coap_uri.c 9
src/coap_str.c 3
src/coap_strm_posix.c 1
src/coap_ws.c 2
src/coap_block.c 1

Fuzzer: dtls_define_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 15 25.0%
gold [1:9] 0 0.0%
yellow [10:29] 0 0.0%
greenyellow [30:49] 0 0.0%
lawngreen 50+ 45 75.0%
All colors 60 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
15 10 coap_dtls_define_issue call site: 00010 print_timestamp

Runtime coverage analysis

Covered functions
5
Functions that are reachable but not covered
16
Reachable functions
21
Percentage of reachable functions covered
23.81%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/dtls_define_target.c 1
src/coap_debug.c 5
src/coap_dtls.c 3
src/coap_time.c 3

Fuzzer: network_message_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 4210 84.5%
gold [1:9] 39 0.78%
yellow [10:29] 52 1.04%
greenyellow [30:49] 39 0.78%
lawngreen 50+ 641 12.8%
All colors 4981 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
419 2468 setup_pki_ssl call site: 02468 coap_session_release_lkd
316 3823 coap_dispatch call site: 03823 coap_oscore_decrypt_pdu
282 1859 coap_session_connected call site: 01859 coap_handle_event_lkd
265 4224 coap_dispatch call site: 04224 coap_send_ack_lkd
258 3081 handle_request call site: 03081 coap_session_max_pdu_size_lkd
255 3463 coap_session_free call site: 03463 coap_dtls_handle_timeout
252 1385 coap_send_internal call site: 01385 coap_oscore_new_pdu_encrypted_lkd
223 2240 coap_session_check_connect call site: 02240 coap_session_release_lkd
214 1063 coap_pdu_encode_header call site: 01063 coap_proxy_forward_request_lkd
157 714 coap_show_pdu call site: 00714 coap_session_release_lkd
143 4679 coap_epoll_ctl_mod call site: 04679 coap_accept_endpoint
84 2952 coap_send_error_lkd call site: 02952 coap_pdu_duplicate_lkd

Runtime coverage analysis

Covered functions
230
Functions that are reachable but not covered
595
Reachable functions
812
Percentage of reachable functions covered
26.72%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/network_message_target.c 7
src/coap_net.c 74
src/coap_time.c 5
src/coap_prng.c 2
src/coap_mem.c 5
src/coap_openssl.c 66
src/coap_debug.c 17
src/coap_address.c 16
src/coap_io.c 10
src/coap_session.c 54
src/coap_netif.c 11
src/coap_strm_posix.c 6
src/coap_ws.c 2
src/coap_dgrm_posix.c 5
src/coap_io_posix.c 4
src/coap_proxy.c 22
src/coap_uri.c 20
src/coap_option.c 21
src/coap_encode.c 6
src/coap_str.c 10
src/coap_pdu.c 35
src/coap_cache.c 5
src/coap_block.c 53
src/coap_resource.c 20
./include/coap3/coap_pdu_internal.h 1
./include/coap3/coap_resource_internal.h 1
src/coap_oscore.c 19
./include/coap3/coap_uri.h 1
src/oscore/oscore_cose.c 19
src/oscore/oscore_context.c 27
src/oscore/oscore.c 8
src/oscore/oscore_cbor.c 11
./include/coap3/coap_block_internal.h 6
src/oscore/oscore_crypto.c 4
/usr/include/openssl/ssl.h 3
src/coap_dtls.c 5
/usr/include/openssl/x509v3.h 3
src/coap_async.c 4
src/coap_subscribe.c 3

Fuzzer: pdu_parse_ws_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 245 54.6%
gold [1:9] 17 3.79%
yellow [10:29] 14 3.12%
greenyellow [30:49] 2 0.44%
lawngreen 50+ 170 37.9%
All colors 448 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
159 247 coap_show_pdu call site: 00247 coap_option_next
17 31 coap_pdu_parse2 call site: 00031 coap_log_impl
13 416 coap_pdu_encode_header call site: 00416 coap_log_impl
5 407 LLVMFuzzerTestOneInput call site: 00407 coap_log_impl
4 53 coap_pdu_parse2 call site: 00053 coap_log_impl
4 103 coap_pdu_parse_opt call site: 00103 coap_log_impl
4 108 coap_pdu_parse_opt call site: 00108 coap_log_impl
4 194 coap_dtls_is_supported call site: 00194 coap_log_impl
4 206 coap_tls_is_supported call site: 00206 coap_log_impl
4 216 coap_wss_is_supported call site: 00216 coap_log_impl
3 175 coap_get_uri_path call site: 00175 coap_new_string
2 50 coap_realloc_type call site: 00050 coap_log_impl

Runtime coverage analysis

Covered functions
68
Functions that are reachable but not covered
31
Reachable functions
98
Percentage of reachable functions covered
68.37%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/pdu_parse_ws_target.c 1
src/coap_net.c 2
src/coap_time.c 4
src/coap_prng.c 2
src/coap_mem.c 4
src/coap_openssl.c 5
src/coap_pdu.c 18
src/coap_debug.c 13
src/coap_option.c 12
src/coap_encode.c 3
src/coap_uri.c 9
src/coap_str.c 3
src/coap_strm_posix.c 1
src/coap_ws.c 2
src/coap_block.c 1

Fuzzer: block_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 4234 84.8%
gold [1:9] 161 3.22%
yellow [10:29] 32 0.64%
greenyellow [30:49] 92 1.84%
lawngreen 50+ 469 9.40%
All colors 4988 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
608 2278 coap_make_str_const call site: 02278 coap_session_release_lkd
287 1380 coap_send_internal call site: 01380 coap_oscore_new_pdu_encrypted_lkd
255 3462 coap_session_free call site: 03462 coap_dtls_handle_timeout
253 4576 coap_handle_dgram call site: 04576 coap_handle_event_lkd
243 3822 coap_dispatch call site: 03822 coap_oscore_decrypt_pdu
193 1053 coap_pdu_encode_header call site: 01053 coap_proxy_forward_request_lkd
157 712 coap_show_pdu call site: 00712 coap_session_release_lkd
141 4347 coap_handle_response_get_block call site: 04347 coap_send_rst_lkd
126 2014 coap_add_data_large_internal call site: 02014 coap_add_data_large_request_lkd
123 3203 coap_handle_request_send_block call site: 03203 coap_pdu_duplicate_lkd
98 4247 coap_find_lg_xmit call site: 04247 coap_send_q_blocks
72 3380 handle_request call site: 03380 coap_resource_release_lkd

Runtime coverage analysis

Covered functions
228
Functions that are reachable but not covered
589
Reachable functions
805
Percentage of reachable functions covered
26.83%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/block_target.c 3
src/coap_net.c 60
src/coap_time.c 5
src/coap_prng.c 2
src/coap_mem.c 5
src/coap_openssl.c 65
src/coap_debug.c 17
src/coap_io.c 10
src/coap_session.c 55
src/coap_address.c 16
src/coap_netif.c 11
src/coap_strm_posix.c 6
src/coap_ws.c 2
src/coap_dgrm_posix.c 5
src/coap_io_posix.c 4
src/coap_proxy.c 22
src/coap_uri.c 20
src/coap_option.c 21
src/coap_encode.c 6
src/coap_str.c 10
src/coap_pdu.c 35
src/coap_cache.c 5
src/coap_block.c 58
src/coap_resource.c 25
./include/coap3/coap_pdu_internal.h 1
./include/coap3/coap_resource_internal.h 1
src/coap_oscore.c 19
./include/coap3/coap_uri.h 1
src/oscore/oscore_cose.c 19
src/oscore/oscore_context.c 27
src/oscore/oscore.c 8
src/oscore/oscore_cbor.c 11
./include/coap3/coap_block_internal.h 6
src/oscore/oscore_crypto.c 4
/usr/include/openssl/ssl.h 3
src/coap_dtls.c 5
/usr/include/openssl/x509v3.h 3
src/coap_async.c 4
src/coap_subscribe.c 3
src/coap_event.c 1
tests/oss-fuzz/coap_fuzz_helper.c 2

Fuzzer: uri_extended_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 83 38.0%
gold [1:9] 5 2.29%
yellow [10:29] 0 0.0%
greenyellow [30:49] 4 1.83%
lawngreen 50+ 126 57.7%
All colors 218 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
15 186 coap_uri_into_optlist_abbrev call site: 00186 coap_new_optlist
14 20 coap_split_uri_sub call site: 00020 print_timestamp
12 91 coap_opt_parse call site: 00091 coap_log_impl
6 136 LLVMFuzzerTestOneInput call site: 00136 coap_path_into_optlist_abbrev
5 147 coap_new_optlist call site: 00147 coap_insert_optlist
4 41 coap_dtls_is_supported call site: 00041 coap_log_impl
4 53 coap_tls_is_supported call site: 00053 coap_log_impl
4 63 coap_wss_is_supported call site: 00063 coap_log_impl
4 120 coap_opt_setheader call site: 00120 coap_log_impl
2 38 coap_dtls_is_supported call site: 00038 coap_log_impl
2 46 coap_split_uri_sub call site: 00046 coap_log_impl
2 50 coap_tls_is_supported call site: 00050 coap_log_impl

Runtime coverage analysis

Covered functions
58
Functions that are reachable but not covered
25
Reachable functions
82
Percentage of reachable functions covered
69.51%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/uri_extended_target.c 1
src/coap_net.c 2
src/coap_time.c 4
src/coap_prng.c 2
src/coap_mem.c 3
src/coap_openssl.c 5
src/coap_debug.c 7
src/coap_uri.c 26
src/coap_strm_posix.c 1
src/coap_ws.c 2
src/coap_option.c 7
src/coap_encode.c 1
src/coap_pdu.c 1
./include/coap3/coap_uri.h 1

Fuzzer: oscore_decrypt_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 4518 89.8%
gold [1:9] 133 2.64%
yellow [10:29] 31 0.61%
greenyellow [30:49] 282 5.60%
lawngreen 50+ 67 1.33%
All colors 5031 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
1075 2486 oscore_context_release_recipients call site: 02486 coap_session_release_lkd
702 4236 coap_oscore_decrypt_pdu call site: 04236 coap_delete_node_lkd
368 3571 coap_session_free call site: 03571 coap_dtls_handle_timeout
282 1977 coap_session_connected call site: 01977 coap_handle_event_lkd
255 1177 coap_pdu_encode_header call site: 01177 coap_proxy_forward_request_lkd
228 836 coap_show_pdu call site: 00836 coap_session_release_lkd
88 4146 coap_oscore_decrypt_pdu call site: 04146 coap_handle_event_lkd
82 572 coap_option_filter_get call site: 00572 coap_split_proxy_uri
70 85 coap_delete_bin_const call site: 00085 coap_parse_oscore_rcp_conf_mem
70 240 coap_dtls_new_context call site: 00240 coap_session_str
69 391 coap_dtls_free_context call site: 00391 coap_new_endpoint_lkd
61 1437 coap_add_data_after call site: 01437 coap_rebuild_pdu_for_proxy

Runtime coverage analysis

Covered functions
194
Functions that are reachable but not covered
614
Reachable functions
801
Percentage of reachable functions covered
23.35%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/oscore_decrypt_target.c 1
src/coap_net.c 60
src/coap_time.c 5
src/coap_prng.c 2
src/coap_mem.c 5
src/coap_openssl.c 65
src/coap_debug.c 17
src/coap_oscore.c 28
src/coap_str.c 10
src/coap_io.c 10
src/coap_session.c 54
src/coap_address.c 16
src/coap_netif.c 11
src/coap_strm_posix.c 6
src/coap_ws.c 2
src/coap_dgrm_posix.c 5
src/coap_io_posix.c 4
src/coap_proxy.c 22
src/coap_uri.c 20
src/coap_option.c 21
src/coap_encode.c 6
src/coap_pdu.c 35
src/coap_cache.c 5
src/coap_block.c 53
src/coap_resource.c 20
./include/coap3/coap_pdu_internal.h 1
./include/coap3/coap_resource_internal.h 1
./include/coap3/coap_uri.h 1
src/oscore/oscore_cose.c 19
src/oscore/oscore_context.c 27
src/oscore/oscore.c 8
src/oscore/oscore_cbor.c 11
./include/coap3/coap_block_internal.h 6
src/oscore/oscore_crypto.c 4
/usr/include/openssl/ssl.h 3
src/coap_dtls.c 5
/usr/include/openssl/x509v3.h 3
src/coap_async.c 4
src/coap_subscribe.c 3

Fuzzer: persist_fuzzer

Call tree

The calltree shows the control flow of the fuzzer. This is overlaid with coverage information to display how much of the potential code a fuzzer can reach is in fact covered at runtime. In the following there is a link to a detailed calltree visualisation as well as a bitmap showing a high-level view of the calltree. For further information about these topics please see the glossary for full calltree and calltree overview

Call tree overview bitmap:

The distribution of callsites in terms of coloring is
Color Runtime hitcount Callsite count Percentage
red 0 4506 88.0%
gold [1:9] 4 0.07%
yellow [10:29] 2 0.03%
greenyellow [30:49] 6 0.11%
lawngreen 50+ 598 11.6%
All colors 5116 100

Fuzz blockers

The following nodes represent call sites where fuzz blockers occur.

Amount of callsites blocked Calltree index Parent function Callsite Largest blocked function
989 3782 coap_pdu_parse_opt call site: 03782 coap_handle_event_lkd
501 2285 coap_make_str_const call site: 02285 coap_session_release_lkd
264 3469 coap_session_free call site: 03469 coap_dtls_handle_timeout
224 1923 coap_digest_free call site: 01923 coap_handle_event_lkd
221 2799 coap_cache_derive_key_w_ignore call site: 02799 coap_cancel_observe_lkd
214 1387 coap_send_internal call site: 01387 coap_oscore_new_pdu_encrypted_lkd
197 3081 coap_get_resource_from_uri_path_lkd call site: 03081 coap_session_max_pdu_size_lkd
169 1060 coap_pdu_encode_header call site: 01060 coap_proxy_forward_request_lkd
148 719 coap_show_pdu call site: 00719 coap_option_next
137 3322 coap_touch_observer call site: 03322 coap_delete_observer_request
110 1236 coap_new_bin_const call site: 01236 coap_send_internal
77 1785 coap_send_internal call site: 01785 coap_io_process_lkd

Runtime coverage analysis

Covered functions
202
Functions that are reachable but not covered
633
Reachable functions
825
Percentage of reachable functions covered
23.27%
NB: The sum of covered functions and functions that are reachable but not covered need not be equal to Reachable functions . This is because the reachability analysis is an approximation and thus at runtime some functions may be covered that are not included in the reachability analysis. This is a limitation of our static analysis capabilities.
Function name source code lines source lines hit percentage hit

Files reached

filename functions hit
tests/oss-fuzz/persist_target.c 5
src/coap_subscribe.c 15
src/coap_net.c 60
src/coap_time.c 5
src/coap_prng.c 2
src/coap_mem.c 5
src/coap_openssl.c 65
src/coap_debug.c 16
src/coap_io.c 10
src/coap_session.c 54
src/coap_address.c 16
src/coap_netif.c 11
src/coap_strm_posix.c 6
src/coap_ws.c 2
src/coap_dgrm_posix.c 5
src/coap_io_posix.c 4
src/coap_proxy.c 22
src/coap_uri.c 20
src/coap_option.c 21
src/coap_encode.c 6
src/coap_str.c 10
src/coap_pdu.c 35
src/coap_cache.c 5
src/coap_block.c 53
src/coap_resource.c 29
./include/coap3/coap_pdu_internal.h 1
./include/coap3/coap_resource_internal.h 1
src/coap_oscore.c 19
./include/coap3/coap_uri.h 1
src/oscore/oscore_cose.c 19
src/oscore/oscore_context.c 27
src/oscore/oscore.c 8
src/oscore/oscore_cbor.c 13
./include/coap3/coap_block_internal.h 6
src/oscore/oscore_crypto.c 4
/usr/include/openssl/ssl.h 3
src/coap_dtls.c 5
/usr/include/openssl/x509v3.h 3
src/coap_async.c 4

Analyses and suggestions

Optimal target analysis

Remaining optimal interesting functions

The following table shows a list of functions that are optimal targets. Optimal targets are identified by finding the functions that in combination, yield a high code coverage.

Func name Functions filename Arg count Args Function depth hitcount instr count bb count cyclomatic complexity Reachable functions Incoming references total cyclomatic complexity Unreached complexity
hnd_get_wellknown_lkd /src/libcoap/src/coap_net.c 5 ['N/A', 'N/A', 'N/A', 'N/A', 'N/A'] 64 0 304 50 16 690 0 7116 121
coap_netif_dgrm_write /src/libcoap/src/coap_netif.c 3 ['N/A', 'N/A', 'size_t'] 8 0 179 33 10 67 0 336 72
coap_tls_engine_configure /src/libcoap/src/coap_openssl.c 1 ['N/A'] 6 0 575 124 34 32 0 121 52
coap_endpoint_join_mcast_group_intf /src/libcoap/src/coap_net.c 3 ['N/A', 'N/A', 'N/A'] 6 0 52 9 4 37 0 133 42
coap_op_resource_deleted /src/libcoap/src/coap_subscribe.c 3 ['N/A', 'N/A', 'N/A'] 6 0 252 40 16 37 0 129 40
coap_session_set_type_server /src/libcoap/src/coap_session.c 1 ['N/A'] 73 0 18 3 2 686 0 7031 36

Implementing fuzzers that target the above functions will improve reachability such that it becomes:

Functions statically reachable by fuzzers
73.0%
733 / 1010
Cyclomatic complexity statically reachable by fuzzers
89.0%
8448 / 9536

All functions overview

If you implement fuzzers for these functions, the status of all functions in the project will be:

Func name Functions filename Args Function call depth Reached by Fuzzers Runtime reached by Fuzzers Combined reached by Fuzzers Fuzzers runtime hit Func lines hit % I Count BB Count Cyclomatic complexity Functions reached Reached by functions Accumulated cyclomatic complexity Undiscovered complexity

Fuzz engine guidance

This sections provides heuristics that can be used as input to a fuzz engine when running a given fuzz target. The current focus is on providing input that is usable by libFuzzer.

tests/oss-fuzz/split_uri_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_dtls_is_supported', 'coap_tls_is_supported', 'coap_wss_is_supported', 'coap_split_uri_sub', 'coap_ws_is_supported', 'coap_log_impl']

tests/oss-fuzz/oscore_conf_parse_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_new_string', 'coap_delete_bin_const', 'coap_parse_oscore_rcp_conf_mem', 'coap_cleanup', 'coap_dtls_startup', 'LLVMFuzzerTestOneInput', 'coap_parse_oscore_conf_mem']

tests/oss-fuzz/get_asn1_tag_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_new_string']

tests/oss-fuzz/pdu_parse_tcp_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_show_pdu', 'coap_pdu_parse2', 'LLVMFuzzerTestOneInput', 'coap_pdu_parse_opt', 'coap_dtls_is_supported', 'coap_tls_is_supported', 'coap_wss_is_supported', 'coap_pdu_encode_header']

tests/oss-fuzz/async_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_make_str_const', 'coap_dispatch', 'coap_session_connected', 'coap_pdu_encode_header', 'coap_session_free', 'coap_handle_dgram', 'handle_request', 'coap_send_internal', 'coap_show_pdu']

tests/oss-fuzz/cache_key_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_pdu_parse_opt', 'coap_cache_derive_key_w_ignore', 'coap_session_check_connect', 'coap_check_dots', 'coap_socket_connect_udp', 'coap_pdu_resize', 'coap_session_free', 'coap_digest_free', 'coap_delete_str_const', 'coap_option_next']

tests/oss-fuzz/proxy_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_session_free', 'coap_free_resource', 'coap_proxy_get_ongoing_session', 'coap_send_internal', 'coap_show_pdu', 'coap_proxy_forward_request_lkd', 'coap_session_check_connect', 'coap_add_data_large_internal', 'coap_new_bin_const']

tests/oss-fuzz/block_check_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_io_do_epoll_lkd', 'coap_make_str_const', 'coap_pdu_parse_opt_base', 'coap_socket_connect_udp', 'coap_get_resource_from_uri_path_lkd', 'coap_show_pdu', 'coap_add_block_b_data', 'coap_add_block', 'coap_add_option', 'coap_dtls_new_context']

tests/oss-fuzz/observe_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_make_str_const', 'coap_dispatch', 'coap_pdu_encode_header', 'coap_session_free', 'coap_handle_dgram', 'coap_digest_free', 'coap_send_internal', 'handle_request', 'coap_show_pdu']

tests/oss-fuzz/ws_frame_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_session_free', 'coap_session_check_connect', 'coap_socket_connect_udp', 'coap_session_connected', 'coap_handle_event_lkd', 'coap_session_disconnected_lkd', 'coap_dtls_new_context', 'coap_dtls_free_context', 'coap_socket_dgrm_close']

tests/oss-fuzz/oscore_cbor_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['oscore_cbor_elem_contained', 'coap_cleanup', 'coap_dtls_startup', 'LLVMFuzzerTestOneInput']

tests/oss-fuzz/pdu_parse_udp_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_show_pdu', 'coap_pdu_encode_header', 'coap_pdu_parse2', 'coap_pdu_parse_header', 'coap_pdu_parse_opt', 'coap_dtls_is_supported', 'coap_tls_is_supported', 'coap_wss_is_supported', 'coap_get_uri_path']

tests/oss-fuzz/dtls_define_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_dtls_define_issue']

tests/oss-fuzz/network_message_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['setup_pki_ssl', 'coap_dispatch', 'coap_session_connected', 'handle_request', 'coap_session_free', 'coap_send_internal', 'coap_session_check_connect', 'coap_pdu_encode_header', 'coap_show_pdu']

tests/oss-fuzz/pdu_parse_ws_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_show_pdu', 'coap_pdu_parse2', 'coap_pdu_encode_header', 'LLVMFuzzerTestOneInput', 'coap_pdu_parse_opt', 'coap_dtls_is_supported', 'coap_tls_is_supported', 'coap_wss_is_supported']

tests/oss-fuzz/block_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_make_str_const', 'coap_send_internal', 'coap_session_free', 'coap_handle_dgram', 'coap_dispatch', 'coap_pdu_encode_header', 'coap_show_pdu', 'coap_handle_response_get_block', 'coap_add_data_large_internal', 'coap_handle_request_send_block']

tests/oss-fuzz/uri_extended_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_uri_into_optlist_abbrev', 'coap_split_uri_sub', 'coap_opt_parse', 'LLVMFuzzerTestOneInput', 'coap_new_optlist', 'coap_dtls_is_supported', 'coap_tls_is_supported', 'coap_wss_is_supported', 'coap_opt_setheader']

tests/oss-fuzz/oscore_decrypt_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['oscore_context_release_recipients', 'coap_oscore_decrypt_pdu', 'coap_session_free', 'coap_session_connected', 'coap_pdu_encode_header', 'coap_show_pdu', 'coap_option_filter_get', 'coap_delete_bin_const', 'coap_dtls_new_context']

tests/oss-fuzz/persist_target.c

Dictionary

Use this with the libFuzzer -dict=DICT.file flag


Fuzzer function priority

Use one of these functions as input to libfuzzer with flag: -focus_function name

-focus_function=['coap_pdu_parse_opt', 'coap_make_str_const', 'coap_session_free', 'coap_digest_free', 'coap_cache_derive_key_w_ignore', 'coap_send_internal', 'coap_get_resource_from_uri_path_lkd', 'coap_pdu_encode_header', 'coap_show_pdu', 'coap_touch_observer']

Runtime coverage analysis

This section shows analysis of runtime coverage data.

For futher technical details on how this section is generated, please see the Glossary .

Complex functions with low coverage

Func name Function total lines Lines covered at runtime percentage covered Reached by fuzzers
coap_show_pdu 327 20 6.116% ['pdu_parse_udp_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'block_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'pdu_parse_tcp_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_debug_set_packet_loss 39 13 33.33% ['block_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_debug_send_packet 42 22 52.38% ['block_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'async_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_debug_set_packet_fail 39 13 33.33% ['block_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_socket_connect_udp 165 62 37.57% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_socket_send 118 16 13.55% ['block_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'async_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_test_cid_tuple_change 31 4 12.90% ['block_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'async_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_new_context 69 37 53.62% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_send_internal 164 77 46.95% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_remove_from_queue 38 6 15.78% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_cancel_session_messages 32 5 15.62% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_call_response_handler 43 18 41.86% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_dispatch 399 180 45.11% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_handle_event_lkd 71 24 33.80% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_is_session_proxy 58 10 17.24% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_remove_from_queue_token 45 4 8.888% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
handle_response 74 21 28.37% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_pdu_duplicate_lkd 75 31 41.33% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_remove_option 78 11 14.10% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_add_resource_lkd 38 20 52.63% ['block_fuzzer', 'observe_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'persist_fuzzer', 'proxy_fuzzer']
coap_session_connected 60 11 18.33% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_resolve_address_info_lkd 132 71 53.78% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
get_coap_addr_info 55 16 29.09% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
update_coap_addr_port 39 8 20.51% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_client_delay_first 47 5 10.63% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_send_lkd 290 32 11.03% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_proxy_log_entry 32 3 9.375% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_proxy_del_req 34 10 29.41% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_verify_proxy_scheme_supported 45 7 15.55% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_proxy_forward_request_lkd 243 115 47.32% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_proxy_get_ongoing_session 162 63 38.88% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_get_uri_proxy_scheme_info 51 16 31.37% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_resource_proxy_uri_init2 37 16 43.24% ['proxy_fuzzer']
coap_add_data_blocked_response 101 51 50.49% ['block_check_fuzzer']
coap_cancel_observe_lkd 72 13 18.05% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_block_check_lg_crcv_timeouts 55 19 34.54% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_block_check_lg_srcv_timeouts 80 19 23.75% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_block_check_q_block1_xmit 49 13 26.53% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_block_check_q_block2_xmit 50 13 26.0% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
setup_block_b 35 18 51.42% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_socket_bind_udp 75 29 38.66% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_io_prepare_io_lkd 344 77 22.38% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_io_do_epoll_lkd 69 10 14.49% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_proxy_check_timeouts 44 7 15.90% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_new_endpoint_lkd 97 34 35.05% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_add_observer 143 62 43.35% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_delete_observer_internal 40 17 42.5% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_ws_write 71 9 12.67% ['ws_frame_fuzzer']
coap_ws_rd_http_header_server 79 22 27.84% ['ws_frame_fuzzer']
coap_ws_rd_http_header_client 62 11 17.74% ['ws_frame_fuzzer']
coap_print_addr 40 15 37.5% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_print_ip_addr 49 15 30.61% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'uri_extended_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
prepend_508_ip 90 35 38.88% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
handle_signaling 77 33 42.85% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_dtls_send 41 18 43.90% ['network_message_fuzzer']
coap_dtls_info_callback 66 26 39.39% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_dgram_ctrl 61 31 50.81% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
setup_pki_ssl 291 13 4.467% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_delete_proxy_subscriber 39 5 12.82% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_session_delay_pdu 38 17 44.73% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_socket_connect_tcp1 102 36 35.29% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_socket_write 39 20 51.28% ['network_message_fuzzer']
coap_find_lg_xmit 57 10 17.54% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_find_lg_crcv 31 10 32.25% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_handle_request_send_block 258 28 10.85% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_handle_request_put_block 401 128 31.92% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_handle_response_send_block 252 11 4.365% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_handle_response_get_block 563 29 5.150% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_print_wellknown_lkd 143 75 52.44% ['block_fuzzer']
coap_oscore_decrypt_pdu 677 163 24.07% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
oscore_validate_sender_seq 51 18 35.29% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
oscore_cbor_put_unsigned 47 10 21.27% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
oscore_find_context 105 30 28.57% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
oscore_log_context 39 4 10.25% ['block_fuzzer', 'cache_key_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_check_fuzzer', 'async_fuzzer', 'ws_frame_fuzzer', 'persist_fuzzer', 'oscore_decrypt_fuzzer', 'proxy_fuzzer']
coap_persist_observe_add_lkd 202 30 14.85% ['persist_fuzzer']

Files and Directories in report

This section shows which files and directories are considered in this report. The main reason for showing this is fuzz introspector may include more code in the reasoning than is desired. This section helps identify if too many files/directories are included, e.g. third party code, which may be irrelevant for the threat model. In the event too much is included, fuzz introspector supports a configuration file that can exclude data from the report. See the following link for more information on how to create a config file: link

Files in report

Source file Reached by Covered by
[] []
/src/libcoap/src/coap_mem.c ['oscore_conf_parse_fuzzer', 'get_asn1_tag_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['oscore_conf_parse_fuzzer', 'get_asn1_tag_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/src/coap_dgrm_posix.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/src/oscore/oscore_crypto.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['oscore_decrypt_fuzzer']
/src/libcoap/src/coap_encode.c ['pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/tests/oss-fuzz/pdu_parse_udp_target.c ['pdu_parse_udp_fuzzer'] ['pdu_parse_udp_fuzzer']
/src/libcoap/src/coap_subscribe.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/src/coap_session.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/src/coap_cache.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'persist_fuzzer']
/src/libcoap/./include/coap3/coap_address.h [] []
/src/libcoap/src/coap_io.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['async_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'persist_fuzzer']
/src/libcoap/tests/oss-fuzz/network_message_target.c ['network_message_fuzzer'] ['network_message_fuzzer']
/src/libcoap/src/coap_net.c ['oscore_conf_parse_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['oscore_conf_parse_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/src/coap_resource.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/./include/coap3/coap_uri.h ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] []
/src/libcoap/src/coap_io_posix.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/src/coap_debug.c ['split_uri_fuzzer', 'oscore_conf_parse_fuzzer', 'get_asn1_tag_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'dtls_define_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['split_uri_fuzzer', 'oscore_conf_parse_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'dtls_define_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/tests/oss-fuzz/pdu_parse_tcp_target.c ['pdu_parse_tcp_fuzzer'] ['pdu_parse_tcp_fuzzer']
/src/libcoap/tests/oss-fuzz/ws_frame_target.c ['ws_frame_fuzzer'] ['ws_frame_fuzzer']
/src/libcoap/./include/coap3/coap_pdu_internal.h ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] []
/src/libcoap/src/coap_async.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/src/coap_pdu.c ['pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/src/coap_option.c ['pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/tests/oss-fuzz/async_target.c ['async_fuzzer'] ['async_fuzzer']
/src/libcoap/src/coap_asn1.c ['get_asn1_tag_fuzzer'] ['get_asn1_tag_fuzzer']
/src/libcoap/src/coap_event.c ['async_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'block_fuzzer'] ['async_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'block_fuzzer']
/usr/include/openssl/ssl.h ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] []
/src/libcoap/src/coap_netif.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/./include/coap3/coap_resource_internal.h ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] []
/src/libcoap/src/coap_prng.c ['oscore_conf_parse_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['oscore_conf_parse_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/tests/oss-fuzz/get_asn1_tag_target.c ['get_asn1_tag_fuzzer'] ['get_asn1_tag_fuzzer']
/src/libcoap/src/coap_strm_posix.c ['split_uri_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['split_uri_fuzzer', 'pdu_parse_tcp_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'uri_extended_fuzzer']
/src/libcoap/src/coap_oscore.c ['oscore_conf_parse_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['oscore_conf_parse_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/src/coap_uri.c ['split_uri_fuzzer', 'oscore_conf_parse_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['split_uri_fuzzer', 'oscore_conf_parse_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/tests/oss-fuzz/oscore_conf_parse_target.c ['oscore_conf_parse_fuzzer'] ['oscore_conf_parse_fuzzer']
/src/libcoap/tests/oss-fuzz/oscore_cbor_target.c ['oscore_cbor_fuzzer'] ['oscore_cbor_fuzzer']
/src/libcoap/tests/oss-fuzz/oscore_decrypt_target.c ['oscore_decrypt_fuzzer'] ['oscore_decrypt_fuzzer']
/src/libcoap/tests/oss-fuzz/block_target.c ['block_fuzzer'] ['block_fuzzer']
/usr/include/openssl/x509v3.h ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] []
/src/libcoap/src/coap_dtls.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'dtls_define_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['dtls_define_fuzzer', 'network_message_fuzzer']
/src/libcoap/./include/coap3/coap_block_internal.h ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] []
/src/libcoap/src/coap_block.c ['pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['async_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'persist_fuzzer']
/src/libcoap/tests/oss-fuzz/observe_target.c ['observe_fuzzer'] ['observe_fuzzer']
/src/libcoap/tests/oss-fuzz/coap_fuzz_helper.c ['async_fuzzer', 'observe_fuzzer', 'block_fuzzer'] ['async_fuzzer', 'observe_fuzzer', 'block_fuzzer']
/src/libcoap/tests/oss-fuzz/block_check_target.c ['block_check_fuzzer'] ['block_check_fuzzer']
/src/libcoap/tests/oss-fuzz/uri_extended_target.c ['uri_extended_fuzzer'] ['uri_extended_fuzzer']
/src/libcoap/tests/oss-fuzz/proxy_target.c ['proxy_fuzzer'] ['proxy_fuzzer']
/src/libcoap/tests/oss-fuzz/persist_target.c ['persist_fuzzer'] ['persist_fuzzer']
/src/libcoap/src/coap_ws.c ['split_uri_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['split_uri_fuzzer', 'pdu_parse_tcp_fuzzer', 'ws_frame_fuzzer', 'pdu_parse_udp_fuzzer', 'pdu_parse_ws_fuzzer', 'uri_extended_fuzzer']
/src/libcoap/src/coap_time.c ['split_uri_fuzzer', 'oscore_conf_parse_fuzzer', 'get_asn1_tag_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'dtls_define_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['split_uri_fuzzer', 'oscore_conf_parse_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/tests/oss-fuzz/pdu_parse_ws_target.c ['pdu_parse_ws_fuzzer'] ['pdu_parse_ws_fuzzer']
/src/libcoap/src/oscore/oscore.c ['oscore_conf_parse_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['oscore_conf_parse_fuzzer', 'oscore_decrypt_fuzzer']
/src/libcoap/tests/oss-fuzz/cache_key_target.c ['cache_key_fuzzer'] ['cache_key_fuzzer']
/src/libcoap/tests/oss-fuzz/split_uri_target.c ['split_uri_fuzzer'] ['split_uri_fuzzer']
/src/libcoap/src/coap_proxy.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/src/oscore/oscore_cbor.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['oscore_cbor_fuzzer', 'oscore_decrypt_fuzzer']
/src/libcoap/src/coap_openssl.c ['split_uri_fuzzer', 'oscore_conf_parse_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['split_uri_fuzzer', 'oscore_conf_parse_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'oscore_cbor_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'uri_extended_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/src/oscore/oscore_context.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/tests/oss-fuzz/dtls_define_target.c ['dtls_define_fuzzer'] ['dtls_define_fuzzer']
/src/libcoap/src/coap_str.c ['oscore_conf_parse_fuzzer', 'get_asn1_tag_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['oscore_conf_parse_fuzzer', 'get_asn1_tag_fuzzer', 'pdu_parse_tcp_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'pdu_parse_udp_fuzzer', 'network_message_fuzzer', 'pdu_parse_ws_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']
/src/libcoap/src/oscore/oscore_cose.c ['oscore_conf_parse_fuzzer', 'async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['oscore_conf_parse_fuzzer', 'oscore_decrypt_fuzzer']
/src/libcoap/src/coap_address.c ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer'] ['async_fuzzer', 'cache_key_fuzzer', 'proxy_fuzzer', 'block_check_fuzzer', 'observe_fuzzer', 'ws_frame_fuzzer', 'network_message_fuzzer', 'block_fuzzer', 'oscore_decrypt_fuzzer', 'persist_fuzzer']

Directories in report

Directory
/src/libcoap/tests/oss-fuzz/
/src/libcoap/src/
/src/libcoap/./include/coap3/
/usr/include/openssl/
/src/libcoap/src/oscore/

Metadata section

This sections shows the raw data that is used to produce this report. This is mainly used for further processing and developer debugging.

Fuzzer Calltree file Program data file Coverage file
split_uri_fuzzer fuzzerLogFile-0-mc2YYmRvuK.data fuzzerLogFile-0-mc2YYmRvuK.data.yaml split_uri_fuzzer.covreport
oscore_conf_parse_fuzzer fuzzerLogFile-0-99UcDpRNuT.data fuzzerLogFile-0-99UcDpRNuT.data.yaml oscore_conf_parse_fuzzer.covreport
get_asn1_tag_fuzzer fuzzerLogFile-0-Kq3HOIZi63.data fuzzerLogFile-0-Kq3HOIZi63.data.yaml get_asn1_tag_fuzzer.covreport
pdu_parse_tcp_fuzzer fuzzerLogFile-0-IxmKHktxey.data fuzzerLogFile-0-IxmKHktxey.data.yaml pdu_parse_tcp_fuzzer.covreport
async_fuzzer fuzzerLogFile-0-6oj3tPmKWW.data fuzzerLogFile-0-6oj3tPmKWW.data.yaml async_fuzzer.covreport
cache_key_fuzzer fuzzerLogFile-0-VyyEnfdNyS.data fuzzerLogFile-0-VyyEnfdNyS.data.yaml cache_key_fuzzer.covreport
proxy_fuzzer fuzzerLogFile-0-4JSq1jgXrk.data fuzzerLogFile-0-4JSq1jgXrk.data.yaml proxy_fuzzer.covreport
block_check_fuzzer fuzzerLogFile-0-VAwKeaid2R.data fuzzerLogFile-0-VAwKeaid2R.data.yaml block_check_fuzzer.covreport
observe_fuzzer fuzzerLogFile-0-zgzwhBsvkJ.data fuzzerLogFile-0-zgzwhBsvkJ.data.yaml observe_fuzzer.covreport
ws_frame_fuzzer fuzzerLogFile-0-tlAEg0GIeU.data fuzzerLogFile-0-tlAEg0GIeU.data.yaml ws_frame_fuzzer.covreport
oscore_cbor_fuzzer fuzzerLogFile-0-O59YTDVs6s.data fuzzerLogFile-0-O59YTDVs6s.data.yaml oscore_cbor_fuzzer.covreport
pdu_parse_udp_fuzzer fuzzerLogFile-0-6hVm6tyJJZ.data fuzzerLogFile-0-6hVm6tyJJZ.data.yaml pdu_parse_udp_fuzzer.covreport
dtls_define_fuzzer fuzzerLogFile-0-SHxOsV2AtQ.data fuzzerLogFile-0-SHxOsV2AtQ.data.yaml dtls_define_fuzzer.covreport
network_message_fuzzer fuzzerLogFile-0-Fvw9RlIEOt.data fuzzerLogFile-0-Fvw9RlIEOt.data.yaml network_message_fuzzer.covreport
pdu_parse_ws_fuzzer fuzzerLogFile-0-Gn5aXsxeIW.data fuzzerLogFile-0-Gn5aXsxeIW.data.yaml pdu_parse_ws_fuzzer.covreport
block_fuzzer fuzzerLogFile-0-mI5XWKll7g.data fuzzerLogFile-0-mI5XWKll7g.data.yaml block_fuzzer.covreport
uri_extended_fuzzer fuzzerLogFile-0-Z6HLE63caB.data fuzzerLogFile-0-Z6HLE63caB.data.yaml uri_extended_fuzzer.covreport
oscore_decrypt_fuzzer fuzzerLogFile-0-Yf5GNqTTsy.data fuzzerLogFile-0-Yf5GNqTTsy.data.yaml oscore_decrypt_fuzzer.covreport
persist_fuzzer fuzzerLogFile-0-c5yjudOxjr.data fuzzerLogFile-0-c5yjudOxjr.data.yaml persist_fuzzer.covreport