The following nodes represent call sites where fuzz blockers occur.
| Amount of callsites blocked | Calltree index | Parent function | Callsite | Largest blocked function |
|---|---|---|---|---|
| 252 | 0 | EP | call site: 00000 | model_signing.verifying.Config.verify |
...model-transparency.tests.fuzzing.fuzz_sign_then_mutate_verify_with_valid_key.TestOneInput
[function]
[call site]
00000
atheris.FuzzedDataProvider
[function]
[call site]
00001
tempfile.TemporaryDirectory
[function]
[call site]
00002
tempfile.TemporaryDirectory
[function]
[call site]
00003
pathlib.Path
[function]
[call site]
00004
utils.create_fuzz_files
[function]
[call site]
00005
utils.any_files
[function]
[call site]
00006
<builtin>.str
[function]
[call site]
00007
os.path.join
[function]
[call site]
00008
...model-transparency.tests.fuzzing.fuzz_sign_then_mutate_verify_with_valid_key._pick_key_spec
[function]
[call site]
00009
<builtin>.len
[function]
[call site]
00010
fdp.ConsumeIntInRange
[function]
[call site]
00011
utils._build_hashing_config_from_fdp
[function]
[call site]
00012
scfg.set_hashing_config
[function]
[call site]
00013
scfg.use_elliptic_key_signer
[function]
[call site]
00014
signer.sign
[function]
[call site]
00015
pathlib.Path.rglob
[function]
[call site]
00016
p.is_file
[function]
[call site]
00017
<builtin>.len
[function]
[call site]
00018
fdp.ConsumeIntInRange
[function]
[call site]
00019
target.read_bytes
[function]
[call site]
00020
fdp.ConsumeIntInRange
[function]
[call site]
00021
fdp.ConsumeBytes
[function]
[call site]
00022
target.relative_to
[function]
[call site]
00023
utils.safe_write
[function]
[call site]
00024
model_signing.verifying.Config.__init__
[function]
[call site]
00025
model_signing.verifying.Config.set_hashing_config
[function]
[call site]
00026
model_signing.verifying.Config.use_elliptic_key_verifier
[function]
[call site]
00027
pathlib.Path
[function]
[call site]
00028
model_signing._signing.sign_ec_key.Verifier.__init__
[function]
[call site]
00029
public_key_path.read_bytes
[function]
[call site]
00030
model_signing._signing.sign_ec_key._check_supported_ec_key
[function]
[call site]
00031
model_signing.verifying.Config.verify
[function]
[call site]
00032
pathlib.Path
[function]
[call site]
00033
model_signing._signing.sign_sigstore.Signature.read
[function]
[call site]
00034
path.read_text
[function]
[call site]
00035
sigstore.models.Bundle.from_json
[function]
[call site]
00036
sigstore_models.bundle.v1.Bundle.from_json
[function]
[call site]
00037
sigstore.models.Bundle.__init__
[function]
[call site]
00038
sigstore.models.Bundle._verify
[function]
[call site]
00039
enum.Enum.__init__
[function]
[call site]
00040
cryptography.hazmat.bindings._rust.x509.load_der_x509_certificate
[function]
[call site]
00041
cryptography.hazmat.bindings._rust.x509.load_der_x509_certificate
[function]
[call site]
00042
sigstore._utils.cert_is_leaf
[function]
[call site]
00043
sigstore._utils.cert_is_ca
[function]
[call site]
00044
cert.extensions.get_extension_for_oid
[function]
[call site]
00045
cert.extensions.get_extension_for_oid
[function]
[call site]
00046
cert.extensions.get_extension_for_oid
[function]
[call site]
00047
cert.extensions.get_extension_for_oid
[function]
[call site]
00048
sigstore._utils.cert_is_root_ca
[function]
[call site]
00049
sigstore._utils.cert_is_ca
[function]
[call site]
00050
cert.verify_directly_issued_by
[function]
[call site]
00051
_logger.warning
[function]
[call site]
00052
<builtin>.len
[function]
[call site]
00053
sigstore.models.TransparencyLogEntry.__init__
[function]
[call site]
00054
sigstore.models.TransparencyLogEntry._validate
[function]
[call site]
00055
_logger.debug
[function]
[call site]
00056
model_signing._signing.sign_sigstore.Signature.__init__
[function]
[call site]
00057
pathlib.Path
[function]
[call site]
00058
model_signing._signing.sign_sigstore_pb.Signature.read
[function]
[call site]
00059
path.read_text
[function]
[call site]
00060
json.loads
[function]
[call site]
00061
sigstore_models.bundle.v1.Bundle.from_dict
[function]
[call site]
00062
model_signing._signing.sign_sigstore_pb.Signature.__init__
[function]
[call site]
00063
model_signing._signing.signing.Verifier.verify
[function]
[call site]
00064
model_signing._signing.sign_sigstore.Verifier._verify_signed_content
[function]
[call site]
00065
typing.cast
[function]
[call site]
00066
sigstore.verify.verifier.Verifier.verify_dsse
[function]
[call site]
00067
sigstore.verify.verifier.Verifier._verify_common_signing_cert
[function]
[call site]
00068
OpenSSL.crypto.X509Store
[function]
[call site]
00069
OpenSSL.crypto.X509Store.set_flags
[function]
[call site]
00070
OpenSSL.crypto.X509Store.add_cert
[function]
[call site]
00071
sigstore.verify.verifier.Verifier._establish_time
[function]
[call site]
00072
sigstore.verify.verifier.Verifier._verify_timestamp_authority
[function]
[call site]
00073
<builtin>.len
[function]
[call site]
00074
<builtin>.len
[function]
[call site]
00075
<builtin>.set
[function]
[call site]
00076
<builtin>.len
[function]
[call site]
00077
<builtin>.len
[function]
[call site]
00078
sigstore.verify.verifier.Verifier._verify_signed_timestamp
[function]
[call site]
00079
certificate_authority.certificates
[function]
[call site]
00080
<builtin>.len
[function]
[call site]
00081
_logger.debug
[function]
[call site]
00082
rfc3161_client.VerifierBuilder
[function]
[call site]
00083
rfc3161_client.VerifierBuilder.tsa_certificate
[function]
[call site]
00084
builder.add_intermediate_certificate
[function]
[call site]
00085
builder.build
[function]
[call site]
00086
verifier.verify_message
[function]
[call site]
00087
_logger.debug
[function]
[call site]
00088
_logger.debug
[function]
[call site]
00089
verified_timestamps.extend
[function]
[call site]
00090
verified_timestamps.append
[function]
[call site]
00091
datetime.datetime.fromtimestamp
[function]
[call site]
00092
<builtin>.len
[function]
[call site]
00093
OpenSSL.crypto.X509.from_cryptography
[function]
[call site]
00094
sigstore.verify.verifier.Verifier._verify_chain_at_time
[function]
[call site]
00095
OpenSSL.crypto.X509Store
[function]
[call site]
00096
OpenSSL.crypto.X509Store.set_flags
[function]
[call site]
00097
OpenSSL.crypto.X509Store.add_cert
[function]
[call site]
00098
OpenSSL.crypto.X509Store.set_time
[function]
[call site]
00099
OpenSSL.crypto.X509StoreContext
[function]
[call site]
00100
OpenSSL.crypto.X509StoreContext.get_verified_chain
[function]
[call site]
00101
sigstore._internal.sct.verify_sct
[function]
[call site]
00102
sigstore._internal.sct._get_signed_certificate_timestamp
[function]
[call site]
00103
typing.cast.bundle.signing_certificate.extensions.get_extension_for_class
[function]
[call site]
00104
<builtin>.len
[function]
[call site]
00105
sigstore._internal.sct._get_issuer_cert
[function]
[call site]
00106
sigstore._internal.sct._is_preissuer
[function]
[call site]
00107
issuer.extensions.get_extension_for_class
[function]
[call site]
00108
issuer_cert.public_key
[function]
[call site]
00109
sigstore._internal.sct._cert_is_ca
[function]
[call site]
00110
_logger.debug
[function]
[call site]
00111
sigstore._utils.cert_is_ca
[function]
[call site]
00112
_logger.debug
[function]
[call site]
00113
<builtin>.isinstance
[function]
[call site]
00114
sigstore._utils.key_id
[function]
[call site]
00115
key.public_bytes
[function]
[call site]
00116
hashlib.sha256
[function]
[call site]
00117
typing.NewType
[function]
[call site]
00118
sigstore._internal.sct._pack_digitally_signed
[function]
[call site]
00119
<builtin>.len
[function]
[call site]
00120
sigstore._internal.sct._pack_signed_entry
[function]
[call site]
00121
typing.cast.bundle.signing_certificate.public_bytes
[function]
[call site]
00122
<builtin>.len
[function]
[call site]
00123
fields.append
[function]
[call site]
00124
struct.unpack
[function]
[call site]
00125
<builtin>.len
[function]
[call site]
00126
struct.pack
[function]
[call site]
00127
<builtin>.len
[function]
[call site]
00128
pack_format.format
[function]
[call site]
00129
fields.extend
[function]
[call site]
00130
struct.pack
[function]
[call site]
00131
<builtin>.len
[function]
[call site]
00132
sct.timestamp.replace
[function]
[call site]
00133
struct.pack
[function]
[call site]
00134
timestamp.timestamp
[function]
[call site]
00135
<builtin>.int
[function]
[call site]
00136
<builtin>.len
[function]
[call site]
00137
<builtin>.isinstance
[function]
[call site]
00138
sct.log_id.hex
[function]
[call site]
00139
_logger.debug
[function]
[call site]
00140
ct_keyring.verify
[function]
[call site]
00141
typing.NewType
[function]
[call site]
00142
parent_cert.to_cryptography
[function]
[call site]
00143
typing.cast.bundle.signing_certificate.extensions.get_extension_for_class
[function]
[call site]
00144
typing.cast.bundle.signing_certificate.extensions.get_extension_for_class
[function]
[call site]
00145
sigstore.verify.policy.Identity.verify
[function]
[call site]
00146
sigstore.verify.policy._SingleX509ExtPolicy.verify
[function]
[call site]
00147
typing.cast.bundle.signing_certificate.extensions.get_extension_for_oid
[function]
[call site]
00148
ext.value.decode
[function]
[call site]
00149
typing.cast.bundle.signing_certificate.extensions.get_extension_for_class
[function]
[call site]
00150
san_ext.get_values_for_type
[function]
[call site]
00151
<builtin>.set
[function]
[call site]
00152
san_ext.get_values_for_type
[function]
[call site]
00153
all_sans.update
[function]
[call site]
00154
all_sans.update
[function]
[call site]
00155
on.value.decode
[function]
[call site]
00156
san_ext.get_values_for_type
[function]
[call site]
00157
_logger.debug
[function]
[call site]
00158
typing.cast.bundle.log_entry._verify
[function]
[call site]
00159
typing.cast.bundle.signing_certificate.public_key
[function]
[call site]
00160
typing.cast
[function]
[call site]
00161
sigstore.dsse._verify
[function]
[call site]
00162
sigstore.dsse._pae
[function]
[call site]
00163
<builtin>.len
[function]
[call site]
00164
<builtin>.len
[function]
[call site]
00165
cryptography.hazmat.primitives.asymmetric.ec.ECDSA.__init__
[function]
[call site]
00166
cryptography.hazmat.backends.openssl.backend.Backend.ecdsa_deterministic_supported
[function]
[call site]
00167
typing.cast.verify
[function]
[call site]
00168
sigstore.verify.verifier._validate_dsse_v002_entry_body
[function]
[call site]
00169
sigstore_models.rekor.v2.entry.Entry.from_json
[function]
[call site]
00170
sigstore._utils.sha256_digest
[function]
[call site]
00171
<builtin>.isinstance
[function]
[call site]
00172
<builtin>.isinstance
[function]
[call site]
00173
hashlib.sha256
[function]
[call site]
00174
sigstore._utils._sha256_streaming
[function]
[call site]
00175
hashlib.sha256
[function]
[call site]
00176
<builtin>.bytearray
[function]
[call site]
00177
<builtin>.memoryview
[function]
[call site]
00178
io.readinto
[function]
[call site]
00179
sha256.update
[function]
[call site]
00180
io.readinto
[function]
[call site]
00181
sha256.digest
[function]
[call site]
00182
sigstore_models.rekor.v2.verifier.Signature
[function]
[call site]
00183
base64.b64encode
[function]
[call site]
00184
sigstore.verify.verifier._v2_verifier_from_certificate
[function]
[call site]
00185
typing.cast.bundle.signing_certificate.public_key
[function]
[call site]
00186
<builtin>.isinstance
[function]
[call site]
00187
<builtin>.isinstance
[function]
[call site]
00188
<builtin>.isinstance
[function]
[call site]
00189
<builtin>.isinstance
[function]
[call site]
00190
sigstore_models.rekor.v2.verifier.Verifier
[function]
[call site]
00191
sigstore_models.common.v1.X509Certificate
[function]
[call site]
00192
base64.b64encode
[function]
[call site]
00193
typing.cast.bundle.signing_certificate.public_bytes
[function]
[call site]
00194
sigstore.verify.verifier._validate_dsse_v001_entry_body
[function]
[call site]
00195
rekor_types.Dsse.model_validate_json
[function]
[call site]
00196
sigstore._utils.sha256_digest
[function]
[call site]
00197
typing.cast.bundle._dsse_envelope._inner.payload.digest.hex
[function]
[call site]
00198
rekor_types.dsse.Signature
[function]
[call site]
00199
base64.b64encode
[function]
[call site]
00200
sigstore._utils.base64_encode_pem_cert
[function]
[call site]
00201
typing.NewType
[function]
[call site]
00202
typing.cast.bundle.signing_certificate.public_bytes
[function]
[call site]
00203
base64.b64encode
[function]
[call site]
00204
json.loads
[function]
[call site]
00205
model_signing._signing.signing.dsse_payload_to_manifest
[function]
[call site]
00206
model_signing._signing.signing.dsse_payload_to_manifest_compat
[function]
[call site]
00207
model_signing.manifest.SerializationType.from_args
[function]
[call site]
00208
subclass._from_args
[function]
[call site]
00209
bytes.fromhex
[function]
[call site]
00210
serialization.new_item
[function]
[call site]
00211
items.append
[function]
[call site]
00212
model_signing.manifest.Manifest.__init__
[function]
[call site]
00213
<builtin>.len
[function]
[call site]
00214
model_signing.manifest.SerializationType.from_args
[function]
[call site]
00215
model_signing._hashing.memory.SHA256.__init__
[function]
[call site]
00216
hashlib.sha256
[function]
[call site]
00217
bytes.fromhex
[function]
[call site]
00218
model_signing._hashing.memory.SHA256.update
[function]
[call site]
00219
serialization.new_item
[function]
[call site]
00220
items.append
[function]
[call site]
00221
model_signing._hashing.memory.SHA256.compute
[function]
[call site]
00222
model_signing.manifest.Manifest.__init__
[function]
[call site]
00223
model_signing.verifying.Config._guess_hashing_config
[function]
[call site]
00224
<builtin>.frozenset
[function]
[call site]
00225
<builtin>.frozenset
[function]
[call site]
00226
utils._build_hashing_config_from_fdp.add_ignored_paths
[function]
[call site]
00227
model_signing.manifest.Manifest.resource_descriptors
[function]
[call site]
00228
<builtin>.sorted
[function]
[call site]
00229
<builtin>.str
[function]
[call site]
00230
model_signing.verifying.Config._hashing_config.hash
[function]
[call site]
00231
model_signing.verifying.Config._get_manifest_diff
[function]
[call site]
00232
actual.resource_descriptors
[function]
[call site]
00233
model_signing.manifest.Manifest.resource_descriptors
[function]
[call site]
00234
actual_hashes.keys
[function]
[call site]
00235
<builtin>.set
[function]
[call site]
00236
<builtin>.set
[function]
[call site]
00237
expected_hashes.keys
[function]
[call site]
00238
diffs.append
[function]
[call site]
00239
<builtin>.sorted
[function]
[call site]
00240
expected_hashes.keys
[function]
[call site]
00241
<builtin>.set
[function]
[call site]
00242
<builtin>.set
[function]
[call site]
00243
actual_hashes.keys
[function]
[call site]
00244
diffs.append
[function]
[call site]
00245
<builtin>.sorted
[function]
[call site]
00246
actual_hashes.keys
[function]
[call site]
00247
<builtin>.set
[function]
[call site]
00248
expected_hashes.keys
[function]
[call site]
00249
<builtin>.set
[function]
[call site]
00250
<builtin>.sorted
[function]
[call site]
00251
diffs.append
[function]
[call site]
00252