The following nodes represent call sites where fuzz blockers occur.
Amount of callsites blocked | Calltree index | Parent function | Callsite | Largest blocked function |
---|---|---|---|---|
350 | 0 | EP | call site: 00000 | model_signing.verifying.Config.verify |
...model-transparency.tests.fuzzing.fuzz_sign_with_valid_key_verify_with_invalid_key.TestOneInput
[function]
[call site]
00000
atheris.FuzzedDataProvider
[function]
[call site]
00001
fdp.ConsumeIntInRange
[function]
[call site]
00002
fdp.ConsumeBytes
[function]
[call site]
00003
tempfile.TemporaryDirectory
[function]
[call site]
00004
tempfile.TemporaryDirectory
[function]
[call site]
00005
pathlib.Path
[function]
[call site]
00006
utils.create_fuzz_files
[function]
[call site]
00007
utils.any_files
[function]
[call site]
00008
<builtin>.str
[function]
[call site]
00009
os.path.join
[function]
[call site]
00010
scfg.use_elliptic_key_signer
[function]
[call site]
00011
signer.sign
[function]
[call site]
00012
os.path.join
[function]
[call site]
00013
<builtin>.open
[function]
[call site]
00014
f.write
[function]
[call site]
00015
model_signing.verifying.Config.__init__
[function]
[call site]
00016
model_signing.verifying.Config.use_elliptic_key_verifier
[function]
[call site]
00017
pathlib.Path
[function]
[call site]
00018
model_signing._signing.sign_ec_key.Verifier.__init__
[function]
[call site]
00019
public_key_path.read_bytes
[function]
[call site]
00020
model_signing._signing.sign_ec_key._check_supported_ec_key
[function]
[call site]
00021
model_signing.verifying.Config.verify
[function]
[call site]
00022
pathlib.Path
[function]
[call site]
00023
model_signing._signing.sign_sigstore.Signature.read
[function]
[call site]
00024
path.read_text
[function]
[call site]
00025
sigstore.models.Bundle.from_json
[function]
[call site]
00026
sigstore_models.bundle.v1.Bundle.from_json
[function]
[call site]
00027
sigstore.models.Bundle.__init__
[function]
[call site]
00028
sigstore.models.Bundle._verify
[function]
[call site]
00029
enum.Enum.__init__
[function]
[call site]
00030
cryptography.hazmat.bindings._rust.x509.load_der_x509_certificate
[function]
[call site]
00031
cryptography.hazmat.bindings._rust.x509.load_der_x509_certificate
[function]
[call site]
00032
sigstore._utils.cert_is_leaf
[function]
[call site]
00033
sigstore._utils.cert_is_ca
[function]
[call site]
00034
cert.extensions.get_extension_for_oid
[function]
[call site]
00035
cert.extensions.get_extension_for_oid
[function]
[call site]
00036
cert.extensions.get_extension_for_oid
[function]
[call site]
00037
cert.extensions.get_extension_for_oid
[function]
[call site]
00038
sigstore._utils.cert_is_root_ca
[function]
[call site]
00039
sigstore._utils.cert_is_ca
[function]
[call site]
00040
cert.verify_directly_issued_by
[function]
[call site]
00041
_logger.warning
[function]
[call site]
00042
<builtin>.len
[function]
[call site]
00043
sigstore.models.TransparencyLogEntry.__init__
[function]
[call site]
00044
sigstore.models.TransparencyLogEntry._validate
[function]
[call site]
00045
_logger.debug
[function]
[call site]
00046
model_signing._signing.sign_sigstore.Signature.__init__
[function]
[call site]
00047
pathlib.Path
[function]
[call site]
00048
model_signing._signing.sign_sigstore_pb.Signature.read
[function]
[call site]
00049
path.read_text
[function]
[call site]
00050
json.loads
[function]
[call site]
00051
sigstore_models.bundle.v1.Bundle.from_dict
[function]
[call site]
00052
model_signing._signing.sign_sigstore_pb.Signature.__init__
[function]
[call site]
00053
model_signing._signing.signing.Verifier.verify
[function]
[call site]
00054
model_signing._signing.sign_sigstore.Verifier._verify_signed_content
[function]
[call site]
00055
typing.cast
[function]
[call site]
00056
sigstore.verify.verifier.Verifier.verify_dsse
[function]
[call site]
00057
sigstore.verify.verifier.Verifier._verify_common_signing_cert
[function]
[call site]
00058
OpenSSL.crypto.X509Store
[function]
[call site]
00059
OpenSSL.crypto.X509Store.set_flags
[function]
[call site]
00060
OpenSSL.crypto.X509Store.add_cert
[function]
[call site]
00061
sigstore.verify.verifier.Verifier._establish_time
[function]
[call site]
00062
sigstore.verify.verifier.Verifier._verify_timestamp_authority
[function]
[call site]
00063
<builtin>.len
[function]
[call site]
00064
<builtin>.len
[function]
[call site]
00065
<builtin>.set
[function]
[call site]
00066
<builtin>.len
[function]
[call site]
00067
<builtin>.len
[function]
[call site]
00068
sigstore.verify.verifier.Verifier._verify_signed_timestamp
[function]
[call site]
00069
certificate_authority.certificates
[function]
[call site]
00070
<builtin>.len
[function]
[call site]
00071
_logger.debug
[function]
[call site]
00072
rfc3161_client.VerifierBuilder
[function]
[call site]
00073
rfc3161_client.VerifierBuilder.tsa_certificate
[function]
[call site]
00074
builder.add_intermediate_certificate
[function]
[call site]
00075
builder.build
[function]
[call site]
00076
verifier.verify_message
[function]
[call site]
00077
_logger.debug
[function]
[call site]
00078
_logger.debug
[function]
[call site]
00079
verified_timestamps.extend
[function]
[call site]
00080
verified_timestamps.append
[function]
[call site]
00081
datetime.datetime.fromtimestamp
[function]
[call site]
00082
<builtin>.len
[function]
[call site]
00083
OpenSSL.crypto.X509.from_cryptography
[function]
[call site]
00084
sigstore.verify.verifier.Verifier._verify_chain_at_time
[function]
[call site]
00085
OpenSSL.crypto.X509Store
[function]
[call site]
00086
OpenSSL.crypto.X509Store.set_flags
[function]
[call site]
00087
OpenSSL.crypto.X509Store.add_cert
[function]
[call site]
00088
OpenSSL.crypto.X509Store.set_time
[function]
[call site]
00089
OpenSSL.crypto.X509StoreContext
[function]
[call site]
00090
OpenSSL.crypto.X509StoreContext.get_verified_chain
[function]
[call site]
00091
sigstore._internal.sct.verify_sct
[function]
[call site]
00092
sigstore._internal.sct._get_signed_certificate_timestamp
[function]
[call site]
00093
typing.cast.bundle.signing_certificate.extensions.get_extension_for_class
[function]
[call site]
00094
<builtin>.len
[function]
[call site]
00095
sigstore._internal.sct._get_issuer_cert
[function]
[call site]
00096
sigstore._internal.sct._is_preissuer
[function]
[call site]
00097
issuer.extensions.get_extension_for_class
[function]
[call site]
00098
issuer_cert.public_key
[function]
[call site]
00099
sigstore._internal.sct._cert_is_ca
[function]
[call site]
00100
_logger.debug
[function]
[call site]
00101
sigstore._utils.cert_is_ca
[function]
[call site]
00102
_logger.debug
[function]
[call site]
00103
<builtin>.isinstance
[function]
[call site]
00104
sigstore._utils.key_id
[function]
[call site]
00105
key.public_bytes
[function]
[call site]
00106
hashlib.sha256
[function]
[call site]
00107
typing.NewType
[function]
[call site]
00108
sigstore._internal.sct._pack_digitally_signed
[function]
[call site]
00109
<builtin>.len
[function]
[call site]
00110
sigstore._internal.sct._pack_signed_entry
[function]
[call site]
00111
typing.cast.bundle.signing_certificate.public_bytes
[function]
[call site]
00112
<builtin>.len
[function]
[call site]
00113
fields.append
[function]
[call site]
00114
struct.unpack
[function]
[call site]
00115
<builtin>.len
[function]
[call site]
00116
struct.pack
[function]
[call site]
00117
<builtin>.len
[function]
[call site]
00118
pack_format.format
[function]
[call site]
00119
fields.extend
[function]
[call site]
00120
struct.pack
[function]
[call site]
00121
<builtin>.len
[function]
[call site]
00122
sct.timestamp.replace
[function]
[call site]
00123
struct.pack
[function]
[call site]
00124
timestamp.timestamp
[function]
[call site]
00125
<builtin>.int
[function]
[call site]
00126
<builtin>.len
[function]
[call site]
00127
<builtin>.isinstance
[function]
[call site]
00128
sct.log_id.hex
[function]
[call site]
00129
_logger.debug
[function]
[call site]
00130
ct_keyring.verify
[function]
[call site]
00131
typing.NewType
[function]
[call site]
00132
parent_cert.to_cryptography
[function]
[call site]
00133
typing.cast.bundle.signing_certificate.extensions.get_extension_for_class
[function]
[call site]
00134
typing.cast.bundle.signing_certificate.extensions.get_extension_for_class
[function]
[call site]
00135
sigstore.verify.policy.Identity.verify
[function]
[call site]
00136
sigstore.verify.policy._SingleX509ExtPolicy.verify
[function]
[call site]
00137
typing.cast.bundle.signing_certificate.extensions.get_extension_for_oid
[function]
[call site]
00138
ext.value.decode
[function]
[call site]
00139
typing.cast.bundle.signing_certificate.extensions.get_extension_for_class
[function]
[call site]
00140
san_ext.get_values_for_type
[function]
[call site]
00141
<builtin>.set
[function]
[call site]
00142
san_ext.get_values_for_type
[function]
[call site]
00143
all_sans.update
[function]
[call site]
00144
all_sans.update
[function]
[call site]
00145
on.value.decode
[function]
[call site]
00146
san_ext.get_values_for_type
[function]
[call site]
00147
_logger.debug
[function]
[call site]
00148
typing.cast.bundle.log_entry._verify
[function]
[call site]
00149
typing.cast.bundle.signing_certificate.public_key
[function]
[call site]
00150
typing.cast
[function]
[call site]
00151
sigstore.dsse._verify
[function]
[call site]
00152
sigstore.dsse._pae
[function]
[call site]
00153
<builtin>.len
[function]
[call site]
00154
<builtin>.len
[function]
[call site]
00155
cryptography.hazmat.primitives.asymmetric.ec.ECDSA.__init__
[function]
[call site]
00156
cryptography.hazmat.backends.openssl.backend.Backend.ecdsa_deterministic_supported
[function]
[call site]
00157
typing.cast.verify
[function]
[call site]
00158
sigstore.verify.verifier._validate_dsse_v002_entry_body
[function]
[call site]
00159
sigstore_models.rekor.v2.entry.Entry.from_json
[function]
[call site]
00160
sigstore._utils.sha256_digest
[function]
[call site]
00161
<builtin>.isinstance
[function]
[call site]
00162
<builtin>.isinstance
[function]
[call site]
00163
hashlib.sha256
[function]
[call site]
00164
sigstore._utils._sha256_streaming
[function]
[call site]
00165
hashlib.sha256
[function]
[call site]
00166
<builtin>.bytearray
[function]
[call site]
00167
<builtin>.memoryview
[function]
[call site]
00168
io.readinto
[function]
[call site]
00169
sha256.update
[function]
[call site]
00170
io.readinto
[function]
[call site]
00171
sha256.digest
[function]
[call site]
00172
sigstore_models.rekor.v2.verifier.Signature
[function]
[call site]
00173
base64.b64encode
[function]
[call site]
00174
sigstore.verify.verifier._v2_verifier_from_certificate
[function]
[call site]
00175
typing.cast.bundle.signing_certificate.public_key
[function]
[call site]
00176
<builtin>.isinstance
[function]
[call site]
00177
<builtin>.isinstance
[function]
[call site]
00178
<builtin>.isinstance
[function]
[call site]
00179
<builtin>.isinstance
[function]
[call site]
00180
sigstore_models.rekor.v2.verifier.Verifier
[function]
[call site]
00181
sigstore_models.common.v1.X509Certificate
[function]
[call site]
00182
base64.b64encode
[function]
[call site]
00183
typing.cast.bundle.signing_certificate.public_bytes
[function]
[call site]
00184
sigstore.verify.verifier._validate_dsse_v001_entry_body
[function]
[call site]
00185
rekor_types.Dsse.model_validate_json
[function]
[call site]
00186
sigstore._utils.sha256_digest
[function]
[call site]
00187
typing.cast.bundle._dsse_envelope._inner.payload.digest.hex
[function]
[call site]
00188
rekor_types.dsse.Signature
[function]
[call site]
00189
base64.b64encode
[function]
[call site]
00190
sigstore._utils.base64_encode_pem_cert
[function]
[call site]
00191
typing.NewType
[function]
[call site]
00192
typing.cast.bundle.signing_certificate.public_bytes
[function]
[call site]
00193
base64.b64encode
[function]
[call site]
00194
json.loads
[function]
[call site]
00195
model_signing._signing.signing.dsse_payload_to_manifest
[function]
[call site]
00196
model_signing._signing.signing.dsse_payload_to_manifest_compat
[function]
[call site]
00197
model_signing.manifest.SerializationType.from_args
[function]
[call site]
00198
subclass._from_args
[function]
[call site]
00199
bytes.fromhex
[function]
[call site]
00200
serialization.new_item
[function]
[call site]
00201
items.append
[function]
[call site]
00202
model_signing.manifest.Manifest.__init__
[function]
[call site]
00203
<builtin>.len
[function]
[call site]
00204
model_signing.manifest.SerializationType.from_args
[function]
[call site]
00205
model_signing._hashing.memory.SHA256.__init__
[function]
[call site]
00206
hashlib.sha256
[function]
[call site]
00207
bytes.fromhex
[function]
[call site]
00208
model_signing._hashing.memory.SHA256.update
[function]
[call site]
00209
serialization.new_item
[function]
[call site]
00210
items.append
[function]
[call site]
00211
model_signing._hashing.memory.SHA256.compute
[function]
[call site]
00212
model_signing.manifest.Manifest.__init__
[function]
[call site]
00213
model_signing.verifying.Config._guess_hashing_config
[function]
[call site]
00214
model_signing.hashing.Config.__init__
[function]
[call site]
00215
<builtin>.frozenset
[function]
[call site]
00216
model_signing.hashing.Config.use_file_serialization
[function]
[call site]
00217
model_signing._serialization.file.Serializer.__init__
[function]
[call site]
00218
pathlib.Path
[function]
[call site]
00219
model_signing.hashing.Config._build_file_hasher_factory._factory
[function]
[call site]
00220
model_signing._hashing.io.Blake3FileHasher.__init__
[function]
[call site]
00221
blake3.blake3
[function]
[call site]
00222
model_signing.hashing.Config._build_stream_hasher
[function]
[call site]
00223
model_signing._hashing.memory.SHA256.__init__
[function]
[call site]
00224
model_signing._hashing.memory.BLAKE2.__init__
[function]
[call site]
00225
hashlib.blake2b
[function]
[call site]
00226
model_signing._hashing.memory.BLAKE3.__init__
[function]
[call site]
00227
blake3.blake3
[function]
[call site]
00228
model_signing._hashing.io.SimpleFileHasher.__init__
[function]
[call site]
00229
model_signing.manifest._FileSerialization.__init__
[function]
[call site]
00230
<builtin>.str
[function]
[call site]
00231
model_signing.hashing.Config._build_file_hasher_factory
[function]
[call site]
00232
model_signing.hashing.Config.use_file_serialization
[function]
[call site]
00233
<builtin>.frozenset
[function]
[call site]
00234
model_signing.hashing.Config.__init__
[function]
[call site]
00235
model_signing.hashing.Config.use_shard_serialization
[function]
[call site]
00236
model_signing.hashing.Config.use_file_serialization
[function]
[call site]
00237
model_signing._serialization.file_shard.Serializer.__init__
[function]
[call site]
00238
pathlib.Path
[function]
[call site]
00239
model_signing.hashing.Config._build_sharded_file_hasher_factory._factory
[function]
[call site]
00240
model_signing.hashing.Config._build_stream_hasher
[function]
[call site]
00241
model_signing._hashing.io.ShardedFileHasher.__init__
[function]
[call site]
00242
<builtin>.super
[function]
[call site]
00243
model_signing._hashing.io.ShardedFileHasher.set_shard
[function]
[call site]
00244
model_signing.manifest._ShardSerialization.__init__
[function]
[call site]
00245
<builtin>.str
[function]
[call site]
00246
model_signing.hashing.Config._build_sharded_file_hasher_factory
[function]
[call site]
00247
<builtin>.frozenset
[function]
[call site]
00248
model_signing.hashing.Config.add_ignored_paths
[function]
[call site]
00249
<builtin>.set
[function]
[call site]
00250
pathlib.Path
[function]
[call site]
00251
pathlib.Path
[function]
[call site]
00252
full.relative_to
[function]
[call site]
00253
newset.add
[function]
[call site]
00254
model_signing.manifest.Manifest.resource_descriptors
[function]
[call site]
00255
<builtin>.sorted
[function]
[call site]
00256
<builtin>.str
[function]
[call site]
00257
model_signing.hashing.Config.hash
[function]
[call site]
00258
pathlib.Path
[function]
[call site]
00259
full.relative_to
[function]
[call site]
00260
ignored_paths.append
[function]
[call site]
00261
ignored_paths.extend
[function]
[call site]
00262
model_signing._serialization.file_shard.Serializer.set_allow_symlinks
[function]
[call site]
00263
pathlib.Path
[function]
[call site]
00264
model_signing.hashing.Config._build_sharded_file_hasher_factory._factory
[function]
[call site]
00265
model_signing.manifest._ShardSerialization.__init__
[function]
[call site]
00266
model_signing._serialization.file.Serializer.set_allow_symlinks
[function]
[call site]
00267
pathlib.Path
[function]
[call site]
00268
model_signing.hashing.Config._build_file_hasher_factory._factory
[function]
[call site]
00269
model_signing.manifest._FileSerialization.__init__
[function]
[call site]
00270
model_signing._serialization.file_shard.Serializer.serialize
[function]
[call site]
00271
itertools.chain
[function]
[call site]
00272
model_path.glob
[function]
[call site]
00273
model_signing._serialization.serialization.check_file_or_directory
[function]
[call site]
00274
path.is_symlink
[function]
[call site]
00275
path.is_file
[function]
[call site]
00276
path.is_dir
[function]
[call site]
00277
path.is_file
[function]
[call site]
00278
model_signing._serialization.serialization.should_ignore
[function]
[call site]
00279
path.is_relative_to
[function]
[call site]
00280
<builtin>.any
[function]
[call site]
00281
model_signing._serialization.file_shard.Serializer._get_shards
[function]
[call site]
00282
path.stat
[function]
[call site]
00283
model_signing._serialization.file_shard._endpoints
[function]
[call site]
00284
<builtin>.range
[function]
[call site]
00285
shards.append
[function]
[call site]
00286
shards.extend
[function]
[call site]
00287
concurrent.futures.ThreadPoolExecutor
[function]
[call site]
00288
tpe.submit
[function]
[call site]
00289
concurrent.futures.as_completed
[function]
[call site]
00290
future.result
[function]
[call site]
00291
manifest_items.append
[function]
[call site]
00292
os.path.relpath
[function]
[call site]
00293
rp.startswith
[function]
[call site]
00294
pathlib.Path
[function]
[call site]
00295
rel_ignore_paths.append
[function]
[call site]
00296
pathlib.Path
[function]
[call site]
00297
model_signing.hashing.Config._build_sharded_file_hasher_factory._factory
[function]
[call site]
00298
model_signing.manifest._ShardSerialization.__init__
[function]
[call site]
00299
<builtin>.list
[function]
[call site]
00300
<builtin>.frozenset
[function]
[call site]
00301
model_path.resolve
[function]
[call site]
00302
os.path.basename
[function]
[call site]
00303
model_signing.manifest.Manifest.__init__
[function]
[call site]
00304
model_signing._serialization.file.Serializer.serialize
[function]
[call site]
00305
itertools.chain
[function]
[call site]
00306
model_path.glob
[function]
[call site]
00307
model_signing._serialization.serialization.check_file_or_directory
[function]
[call site]
00308
path.is_file
[function]
[call site]
00309
model_signing._serialization.serialization.should_ignore
[function]
[call site]
00310
paths.append
[function]
[call site]
00311
concurrent.futures.ThreadPoolExecutor
[function]
[call site]
00312
tpe.submit
[function]
[call site]
00313
concurrent.futures.as_completed
[function]
[call site]
00314
future.result
[function]
[call site]
00315
manifest_items.append
[function]
[call site]
00316
os.path.relpath
[function]
[call site]
00317
rp.startswith
[function]
[call site]
00318
pathlib.Path
[function]
[call site]
00319
rel_ignore_paths.append
[function]
[call site]
00320
pathlib.Path
[function]
[call site]
00321
model_signing.hashing.Config._build_file_hasher_factory._factory
[function]
[call site]
00322
model_signing.manifest._FileSerialization.__init__
[function]
[call site]
00323
<builtin>.list
[function]
[call site]
00324
<builtin>.frozenset
[function]
[call site]
00325
model_path.resolve
[function]
[call site]
00326
os.path.basename
[function]
[call site]
00327
model_signing.manifest.Manifest.__init__
[function]
[call site]
00328
pathlib.Path
[function]
[call site]
00329
model_signing.verifying.Config._get_manifest_diff
[function]
[call site]
00330
model_signing.manifest.Manifest.resource_descriptors
[function]
[call site]
00331
model_signing.manifest.Manifest.resource_descriptors
[function]
[call site]
00332
actual_hashes.keys
[function]
[call site]
00333
<builtin>.set
[function]
[call site]
00334
<builtin>.set
[function]
[call site]
00335
expected_hashes.keys
[function]
[call site]
00336
diffs.append
[function]
[call site]
00337
<builtin>.sorted
[function]
[call site]
00338
expected_hashes.keys
[function]
[call site]
00339
<builtin>.set
[function]
[call site]
00340
<builtin>.set
[function]
[call site]
00341
actual_hashes.keys
[function]
[call site]
00342
diffs.append
[function]
[call site]
00343
<builtin>.sorted
[function]
[call site]
00344
actual_hashes.keys
[function]
[call site]
00345
<builtin>.set
[function]
[call site]
00346
expected_hashes.keys
[function]
[call site]
00347
<builtin>.set
[function]
[call site]
00348
<builtin>.sorted
[function]
[call site]
00349
diffs.append
[function]
[call site]
00350