The followings are the branches where fuzzer fails to bypass.
Unique non-covered Complexity | Unique Reachable Complexities | Unique Reachable Functions | All non-covered Complexity | All Reachable Complexity | Function Name | Function Callsite | Blocked Branch |
---|---|---|---|---|---|---|---|
0 | 0 | None | 0 | 6 | libusb_alloc_transfer | call site: 00003 | /src/libusb/libusb/io.c:1308 |
0 | 0 | None | 0 | 0 | libusb_alloc_transfer | call site: 00002 | /src/libusb/libusb/io.c:1299 |
LLVMFuzzerTestOneInput
[function]
[call site]
00000
libusb_alloc_transfer
[function]
[call site]
00001
__assert_fail
[call site]
00002
calloc
[call site]
00003
usbi_mutex_init
[function]
[call site]
00004
pthread_mutex_init
[call site]
00005
libusb_fill_control_setup(unsigned char*, unsigned char, unsigned char, unsigned short, unsigned short, unsigned short)
[function]
[call site]
00006
libusb_cpu_to_le16(unsigned short)
[function]
[call site]
00007
libusb_cpu_to_le16(unsigned short)
[function]
[call site]
00008
libusb_cpu_to_le16(unsigned short)
[function]
[call site]
00009
usbi_mutex_destroy(pthread_mutex_t*)
[function]
[call site]
00010
pthread_mutex_destroy
[call site]
00011