The following nodes represent call sites where fuzz blockers occur.
Amount of callsites blocked | Calltree index | Parent function | Callsite | Largest blocked function |
---|---|---|---|---|
74 | 119 | sigstore._internal.sct._pack_signed_entry | call site: 00119 | sigstore.verify.verifier._validate_dsse_v002_entry_body |
39 | 54 | model_signing._signing.signing.Verifier.verify | call site: 00054 | sigstore.verify.verifier.Verifier.verify_dsse |
22 | 20 | ...model-transparency.tests.fuzzing.fuzz_sign_verify_with_valid_key.TestOneInput | call site: 00020 | sigstore.models.Bundle.__init__ |
11 | 94 | sigstore._internal.sct._get_signed_certificate_timestamp | call site: 00094 | sigstore._internal.sct._cert_is_ca |
6 | 107 | sigstore._utils.key_id | call site: 00107 | sigstore._internal.sct._pack_digitally_signed |
4 | 198 | model_signing.manifest.SerializationType.from_args | call site: 00198 | bytes.fromhex |
3 | 213 | model_signing.verifying.Config.verify | call site: 00213 | model_signing.manifest.Manifest.resource_descriptors |
3 | 224 | model_signing.verifying.Config._get_manifest_diff | call site: 00224 | expected_hashes.keys |
3 | 230 | model_signing.verifying.Config._get_manifest_diff | call site: 00230 | actual_hashes.keys |
2 | 1 | ...model-transparency.tests.fuzzing.fuzz_sign_verify_with_valid_key.TestOneInput | call site: 00001 | tempfile.TemporaryDirectory |
2 | 43 | sigstore.models.TransparencyLogEntry.__init__ | call site: 00043 | _logger.debug |
2 | 116 | sigstore._internal.sct._pack_signed_entry | call site: 00116 |
|
...model-transparency.tests.fuzzing.fuzz_sign_verify_with_valid_key.TestOneInput
[function]
[call site]
00000
atheris.FuzzedDataProvider
[function]
[call site]
00001
tempfile.TemporaryDirectory
[function]
[call site]
00002
tempfile.TemporaryDirectory
[function]
[call site]
00003
pathlib.Path
[function]
[call site]
00004
utils.create_fuzz_files
[function]
[call site]
00005
utils.any_files
[function]
[call site]
00006
<builtin>.str
[function]
[call site]
00007
os.path.join
[function]
[call site]
00008
...model-transparency.tests.fuzzing.fuzz_sign_verify_with_valid_key._pick_key_spec
[function]
[call site]
00009
<builtin>.len
[function]
[call site]
00010
fdp.ConsumeIntInRange
[function]
[call site]
00011
scfg.use_elliptic_key_signer
[function]
[call site]
00012
signer.sign
[function]
[call site]
00013
model_signing.verifying.Config.__init__
[function]
[call site]
00014
model_signing.verifying.Config.use_elliptic_key_verifier
[function]
[call site]
00015
pathlib.Path
[function]
[call site]
00016
model_signing._signing.sign_ec_key.Verifier.__init__
[function]
[call site]
00017
public_key_path.read_bytes
[function]
[call site]
00018
model_signing._signing.sign_ec_key._check_supported_ec_key
[function]
[call site]
00019
model_signing.verifying.Config.verify
[function]
[call site]
00020
pathlib.Path
[function]
[call site]
00021
model_signing._signing.sign_sigstore.Signature.read
[function]
[call site]
00022
path.read_text
[function]
[call site]
00023
sigstore.models.Bundle.from_json
[function]
[call site]
00024
sigstore_models.bundle.v1.Bundle.from_json
[function]
[call site]
00025
sigstore.models.Bundle.__init__
[function]
[call site]
00026
sigstore.models.Bundle._verify
[function]
[call site]
00027
enum.Enum.__init__
[function]
[call site]
00028
cryptography.hazmat.bindings._rust.x509.load_der_x509_certificate
[function]
[call site]
00029
cryptography.hazmat.bindings._rust.x509.load_der_x509_certificate
[function]
[call site]
00030
sigstore._utils.cert_is_leaf
[function]
[call site]
00031
sigstore._utils.cert_is_ca
[function]
[call site]
00032
cert.extensions.get_extension_for_oid
[function]
[call site]
00033
cert.extensions.get_extension_for_oid
[function]
[call site]
00034
cert.extensions.get_extension_for_oid
[function]
[call site]
00035
cert.extensions.get_extension_for_oid
[function]
[call site]
00036
sigstore._utils.cert_is_root_ca
[function]
[call site]
00037
sigstore._utils.cert_is_ca
[function]
[call site]
00038
cert.verify_directly_issued_by
[function]
[call site]
00039
_logger.warning
[function]
[call site]
00040
<builtin>.len
[function]
[call site]
00041
sigstore.models.TransparencyLogEntry.__init__
[function]
[call site]
00042
sigstore.models.TransparencyLogEntry._validate
[function]
[call site]
00043
_logger.debug
[function]
[call site]
00044
model_signing._signing.sign_sigstore.Signature.__init__
[function]
[call site]
00045
pathlib.Path
[function]
[call site]
00046
model_signing._signing.sign_sigstore_pb.Signature.read
[function]
[call site]
00047
path.read_text
[function]
[call site]
00048
json.loads
[function]
[call site]
00049
sigstore_models.bundle.v1.Bundle.from_dict
[function]
[call site]
00050
model_signing._signing.sign_sigstore_pb.Signature.__init__
[function]
[call site]
00051
model_signing._signing.signing.Verifier.verify
[function]
[call site]
00052
model_signing._signing.signing.Verifier._verify_signed_content
[function]
[call site]
00053
model_signing._signing.sign_sigstore.Verifier._verify_signed_content
[function]
[call site]
00054
typing.cast
[function]
[call site]
00055
sigstore.verify.verifier.Verifier.verify_dsse
[function]
[call site]
00056
sigstore.verify.verifier.Verifier._verify_common_signing_cert
[function]
[call site]
00057
OpenSSL.crypto.X509Store
[function]
[call site]
00058
OpenSSL.crypto.X509Store.set_flags
[function]
[call site]
00059
OpenSSL.crypto.X509Store.add_cert
[function]
[call site]
00060
sigstore.verify.verifier.Verifier._establish_time
[function]
[call site]
00061
sigstore.verify.verifier.Verifier._verify_timestamp_authority
[function]
[call site]
00062
<builtin>.len
[function]
[call site]
00063
<builtin>.len
[function]
[call site]
00064
<builtin>.set
[function]
[call site]
00065
<builtin>.len
[function]
[call site]
00066
<builtin>.len
[function]
[call site]
00067
sigstore.verify.verifier.Verifier._verify_signed_timestamp
[function]
[call site]
00068
certificate_authority.certificates
[function]
[call site]
00069
<builtin>.len
[function]
[call site]
00070
_logger.debug
[function]
[call site]
00071
rfc3161_client.VerifierBuilder
[function]
[call site]
00072
rfc3161_client.VerifierBuilder.tsa_certificate
[function]
[call site]
00073
builder.add_intermediate_certificate
[function]
[call site]
00074
builder.build
[function]
[call site]
00075
verifier.verify_message
[function]
[call site]
00076
_logger.debug
[function]
[call site]
00077
_logger.debug
[function]
[call site]
00078
verified_timestamps.extend
[function]
[call site]
00079
verified_timestamps.append
[function]
[call site]
00080
datetime.datetime.fromtimestamp
[function]
[call site]
00081
<builtin>.len
[function]
[call site]
00082
OpenSSL.crypto.X509.from_cryptography
[function]
[call site]
00083
sigstore.verify.verifier.Verifier._verify_chain_at_time
[function]
[call site]
00084
OpenSSL.crypto.X509Store
[function]
[call site]
00085
OpenSSL.crypto.X509Store.set_flags
[function]
[call site]
00086
OpenSSL.crypto.X509Store.add_cert
[function]
[call site]
00087
OpenSSL.crypto.X509Store.set_time
[function]
[call site]
00088
OpenSSL.crypto.X509StoreContext
[function]
[call site]
00089
OpenSSL.crypto.X509StoreContext.get_verified_chain
[function]
[call site]
00090
sigstore._internal.sct.verify_sct
[function]
[call site]
00091
sigstore._internal.sct._get_signed_certificate_timestamp
[function]
[call site]
00092
typing.cast.bundle.signing_certificate.extensions.get_extension_for_class
[function]
[call site]
00093
<builtin>.len
[function]
[call site]
00094
sigstore._internal.sct._get_issuer_cert
[function]
[call site]
00095
sigstore._internal.sct._is_preissuer
[function]
[call site]
00096
issuer.extensions.get_extension_for_class
[function]
[call site]
00097
issuer_cert.public_key
[function]
[call site]
00098
sigstore._internal.sct._cert_is_ca
[function]
[call site]
00099
_logger.debug
[function]
[call site]
00100
sigstore._utils.cert_is_ca
[function]
[call site]
00101
_logger.debug
[function]
[call site]
00102
<builtin>.isinstance
[function]
[call site]
00103
sigstore._utils.key_id
[function]
[call site]
00104
key.public_bytes
[function]
[call site]
00105
hashlib.sha256
[function]
[call site]
00106
typing.NewType
[function]
[call site]
00107
sigstore._internal.sct._pack_digitally_signed
[function]
[call site]
00108
<builtin>.len
[function]
[call site]
00109
sigstore._internal.sct._pack_signed_entry
[function]
[call site]
00110
typing.cast.bundle.signing_certificate.public_bytes
[function]
[call site]
00111
<builtin>.len
[function]
[call site]
00112
fields.append
[function]
[call site]
00113
struct.unpack
[function]
[call site]
00114
<builtin>.len
[function]
[call site]
00115
struct.pack
[function]
[call site]
00116
<builtin>.len
[function]
[call site]
00117
pack_format.format
[function]
[call site]
00118
fields.extend
[function]
[call site]
00119
struct.pack
[function]
[call site]
00120
<builtin>.len
[function]
[call site]
00121
sct.timestamp.replace
[function]
[call site]
00122
struct.pack
[function]
[call site]
00123
timestamp.timestamp
[function]
[call site]
00124
<builtin>.int
[function]
[call site]
00125
<builtin>.len
[function]
[call site]
00126
<builtin>.isinstance
[function]
[call site]
00127
sct.log_id.hex
[function]
[call site]
00128
_logger.debug
[function]
[call site]
00129
ct_keyring.verify
[function]
[call site]
00130
typing.NewType
[function]
[call site]
00131
parent_cert.to_cryptography
[function]
[call site]
00132
typing.cast.bundle.signing_certificate.extensions.get_extension_for_class
[function]
[call site]
00133
typing.cast.bundle.signing_certificate.extensions.get_extension_for_class
[function]
[call site]
00134
sigstore.verify.policy.Identity.verify
[function]
[call site]
00135
sigstore.verify.policy._SingleX509ExtPolicy.verify
[function]
[call site]
00136
typing.cast.bundle.signing_certificate.extensions.get_extension_for_oid
[function]
[call site]
00137
ext.value.decode
[function]
[call site]
00138
typing.cast.bundle.signing_certificate.extensions.get_extension_for_class
[function]
[call site]
00139
san_ext.get_values_for_type
[function]
[call site]
00140
<builtin>.set
[function]
[call site]
00141
san_ext.get_values_for_type
[function]
[call site]
00142
all_sans.update
[function]
[call site]
00143
all_sans.update
[function]
[call site]
00144
on.value.decode
[function]
[call site]
00145
san_ext.get_values_for_type
[function]
[call site]
00146
_logger.debug
[function]
[call site]
00147
typing.cast.bundle.log_entry._verify
[function]
[call site]
00148
typing.cast.bundle.signing_certificate.public_key
[function]
[call site]
00149
typing.cast
[function]
[call site]
00150
sigstore.dsse._verify
[function]
[call site]
00151
sigstore.dsse._pae
[function]
[call site]
00152
<builtin>.len
[function]
[call site]
00153
<builtin>.len
[function]
[call site]
00154
cryptography.hazmat.primitives.asymmetric.ec.ECDSA.__init__
[function]
[call site]
00155
cryptography.hazmat.backends.openssl.backend.Backend.ecdsa_deterministic_supported
[function]
[call site]
00156
typing.cast.verify
[function]
[call site]
00157
sigstore.verify.verifier._validate_dsse_v002_entry_body
[function]
[call site]
00158
sigstore_models.rekor.v2.entry.Entry.from_json
[function]
[call site]
00159
sigstore._utils.sha256_digest
[function]
[call site]
00160
<builtin>.isinstance
[function]
[call site]
00161
<builtin>.isinstance
[function]
[call site]
00162
hashlib.sha256
[function]
[call site]
00163
sigstore._utils._sha256_streaming
[function]
[call site]
00164
hashlib.sha256
[function]
[call site]
00165
<builtin>.bytearray
[function]
[call site]
00166
<builtin>.memoryview
[function]
[call site]
00167
io.readinto
[function]
[call site]
00168
sha256.update
[function]
[call site]
00169
io.readinto
[function]
[call site]
00170
sha256.digest
[function]
[call site]
00171
sigstore_models.rekor.v2.verifier.Signature
[function]
[call site]
00172
base64.b64encode
[function]
[call site]
00173
sigstore.verify.verifier._v2_verifier_from_certificate
[function]
[call site]
00174
typing.cast.bundle.signing_certificate.public_key
[function]
[call site]
00175
<builtin>.isinstance
[function]
[call site]
00176
<builtin>.isinstance
[function]
[call site]
00177
<builtin>.isinstance
[function]
[call site]
00178
<builtin>.isinstance
[function]
[call site]
00179
sigstore_models.rekor.v2.verifier.Verifier
[function]
[call site]
00180
sigstore_models.common.v1.X509Certificate
[function]
[call site]
00181
base64.b64encode
[function]
[call site]
00182
typing.cast.bundle.signing_certificate.public_bytes
[function]
[call site]
00183
sigstore.verify.verifier._validate_dsse_v001_entry_body
[function]
[call site]
00184
rekor_types.Dsse.model_validate_json
[function]
[call site]
00185
sigstore._utils.sha256_digest
[function]
[call site]
00186
typing.cast.bundle._dsse_envelope._inner.payload.digest.hex
[function]
[call site]
00187
rekor_types.dsse.Signature
[function]
[call site]
00188
base64.b64encode
[function]
[call site]
00189
sigstore._utils.base64_encode_pem_cert
[function]
[call site]
00190
typing.NewType
[function]
[call site]
00191
typing.cast.bundle.signing_certificate.public_bytes
[function]
[call site]
00192
base64.b64encode
[function]
[call site]
00193
json.loads
[function]
[call site]
00194
model_signing._signing.signing.dsse_payload_to_manifest
[function]
[call site]
00195
model_signing._signing.signing.dsse_payload_to_manifest_compat
[function]
[call site]
00196
model_signing.manifest.SerializationType.from_args
[function]
[call site]
00197
subclass._from_args
[function]
[call site]
00198
bytes.fromhex
[function]
[call site]
00199
serialization.new_item
[function]
[call site]
00200
items.append
[function]
[call site]
00201
model_signing.manifest.Manifest.__init__
[function]
[call site]
00202
<builtin>.len
[function]
[call site]
00203
model_signing.manifest.SerializationType.from_args
[function]
[call site]
00204
model_signing._hashing.memory.SHA256.__init__
[function]
[call site]
00205
hashlib.sha256
[function]
[call site]
00206
bytes.fromhex
[function]
[call site]
00207
model_signing._hashing.memory.SHA256.update
[function]
[call site]
00208
serialization.new_item
[function]
[call site]
00209
items.append
[function]
[call site]
00210
model_signing._hashing.memory.SHA256.compute
[function]
[call site]
00211
model_signing.manifest.Manifest.__init__
[function]
[call site]
00212
model_signing.verifying.Config._guess_hashing_config
[function]
[call site]
00213
<builtin>.frozenset
[function]
[call site]
00214
<builtin>.frozenset
[function]
[call site]
00215
model_signing.manifest.Manifest.resource_descriptors
[function]
[call site]
00216
<builtin>.sorted
[function]
[call site]
00217
<builtin>.str
[function]
[call site]
00218
model_signing.verifying.Config._get_manifest_diff
[function]
[call site]
00219
actual.resource_descriptors
[function]
[call site]
00220
model_signing.manifest.Manifest.resource_descriptors
[function]
[call site]
00221
actual_hashes.keys
[function]
[call site]
00222
<builtin>.set
[function]
[call site]
00223
<builtin>.set
[function]
[call site]
00224
expected_hashes.keys
[function]
[call site]
00225
diffs.append
[function]
[call site]
00226
<builtin>.sorted
[function]
[call site]
00227
expected_hashes.keys
[function]
[call site]
00228
<builtin>.set
[function]
[call site]
00229
<builtin>.set
[function]
[call site]
00230
actual_hashes.keys
[function]
[call site]
00231
diffs.append
[function]
[call site]
00232
<builtin>.sorted
[function]
[call site]
00233
actual_hashes.keys
[function]
[call site]
00234
<builtin>.set
[function]
[call site]
00235
expected_hashes.keys
[function]
[call site]
00236
<builtin>.set
[function]
[call site]
00237
<builtin>.sorted
[function]
[call site]
00238
diffs.append
[function]
[call site]
00239