Fuzz introspector: libwget_ocsp_fuzzer
For issues and ideas: https://github.com/ossf/fuzz-introspector/issues

Fuzz blockers

The followings are the branches where fuzzer fails to bypass.

Unique non-covered Complexity Unique Reachable Complexities Unique Reachable Functions All non-covered Complexity All Reachable Complexity Function Name Function Callsite Blocked Branch
33 33 5 :

['__freading', 'fileno', 'rpl_fflush', '__errno_location', 'lseek']

35 35 rpl_fclose call site: 00147 /src/wget2/lib/fclose.c:66
16 16 1 :

['wget_hashmap_remove']

16 30 ocsp_db_add_fingerprint_entry call site: 00231 /src/wget2/libwget/ocsp.c:282
16 16 1 :

['wget_hashmap_remove']

16 30 ocsp_db_add_host_entry call site: 00210 /src/wget2/libwget/ocsp.c:347
11 11 1 :

['buffer_realloc']

11 11 wget_buffer_memcat call site: 00039 /src/wget2/libwget/buffer.c:384
10 10 4 :

['close', 'open', 'fdopen', '__errno_location']

10 10 rpl_fopen call site: 00132 /src/wget2/lib/fopen.c:211
6 6 2 :

['__errno_location', 'gettext']

6 6 getline_internal call site: 00190 /src/wget2/libwget/io.c:123
2 2 1 :

['gettext']

2 2 wget_ocsp_db_load call site: 00249 /src/wget2/libwget/ocsp.c:521
0 34 1 :

['rpl_fclose']

2 36 wget_update_file call site: 00178 /src/wget2/libwget/io.c:520
0 0 None 161 645 wget_buffer_vprintf_append call site: 00038 /src/wget2/libwget/buffer_printf.c:346
0 0 None 161 645 wget_buffer_vprintf_append call site: 00043 /src/wget2/libwget/buffer_printf.c:368
0 0 None 161 645 wget_buffer_vprintf_append call site: 00046 /src/wget2/libwget/buffer_printf.c:372
0 0 None 161 645 wget_buffer_vprintf_append call site: 00048 /src/wget2/libwget/buffer_printf.c:377

Fuzzer calltree

0 LLVMFuzzerTestOneInput [function] [call site] 00000
1 wget_ocsp_db_init [function] [call site] 00001
2 wget_strdup [function] [call site] 00002
3 strlen [call site] 00003
3 wget_memdup [function] [call site] 00004
4 wget_malloc [function] [call site] 00005
2 wget_hashmap_create [function] [call site] 00006
3 wget_malloc [function] [call site] 00007
3 wget_calloc [function] [call site] 00008
3 rpl_free [function] [call site] 00009
4 __errno_location [call site] 00010
4 __errno_location [call site] 00011
2 hash_ocsp [function] [call site] 00013
2 wget_hashmap_create [function] [call site] 00014
2 hash_ocsp [function] [call site] 00015
2 wget_hashmap_free [function] [call site] 00016
3 wget_hashmap_clear [function] [call site] 00017
2 wget_hashmap_free [function] [call site] 00018
2 wget_calloc [function] [call site] 00019
2 wget_hashmap_set_key_destructor [function] [call site] 00020
2 free_ocsp [function] [call site] 00021
3 deinit_ocsp [function] [call site] 00022
2 wget_hashmap_set_value_destructor [function] [call site] 00023
2 free_ocsp [function] [call site] 00024
2 wget_hashmap_set_key_destructor [function] [call site] 00025
2 free_ocsp [function] [call site] 00026
2 wget_hashmap_set_value_destructor [function] [call site] 00027
2 free_ocsp [function] [call site] 00028
2 wget_thread_mutex_init [function] [call site] 00029
3 wget_malloc [function] [call site] 00030
3 pthread_mutex_init [call site] 00031
1 wget_ocsp_db_load [function] [call site] 00032
2 wget_aprintf [function] [call site] 00033
3 wget_vasprintf [function] [call site] 00034
4 wget_buffer_init [function] [call site] 00035
5 wget_malloc [function] [call site] 00036
4 wget_buffer_vprintf [function] [call site] 00037
5 wget_buffer_vprintf_append [function] [call site] 00038
6 wget_buffer_memcat [function] [call site] 00039
7 buffer_realloc [function] [call site] 00040
8 wget_realloc [function] [call site] 00041
8 wget_malloc [function] [call site] 00042
6 wget_buffer_strcat [function] [call site] 00043
7 strlen [call site] 00044
7 wget_buffer_memcat [function] [call site] 00045
6 convert_dec_fast [function] [call site] 00046
7 wget_buffer_memcat [function] [call site] 00047
6 wget_buffer_memcat [function] [call site] 00048
6 convert_pointer [function] [call site] 00049
7 wget_buffer_memcat [function] [call site] 00050
7 wget_buffer_memcat [function] [call site] 00051
7 wget_buffer_memcat [function] [call site] 00052
6 wget_buffer_memset_append [function] [call site] 00053
7 buffer_realloc [function] [call site] 00054
6 read_flag_chars [function] [call site] 00055
6 read_field_width [function] [call site] 00056
7 c_isdigit [function] [call site] 00057
6 read_field_width [function] [call site] 00058
6 read_precision [function] [call site] 00059
6 read_precision [function] [call site] 00062
6 copy_string [function] [call site] 00063
7 wget_buffer_strcat [function] [call site] 00064
7 strnlen [call site] 00065
7 strlen [call site] 00066
7 wget_buffer_memcat [function] [call site] 00067
7 wget_buffer_memset_append [function] [call site] 00068
7 wget_buffer_memset_append [function] [call site] 00069
7 wget_buffer_memcat [function] [call site] 00070
7 wget_buffer_memcat [function] [call site] 00071
7 wget_buffer_memcat [function] [call site] 00072
6 copy_string [function] [call site] 00073
6 convert_dec [function] [call site] 00074
7 wget_buffer_memset_append [function] [call site] 00075
7 wget_buffer_memset_append [function] [call site] 00076
7 wget_buffer_memcat [function] [call site] 00077
7 wget_buffer_memset_append [function] [call site] 00078
7 wget_buffer_memcat [function] [call site] 00079
7 wget_buffer_memset_append [function] [call site] 00080
7 wget_buffer_memset_append [function] [call site] 00081
7 wget_buffer_memset_append [function] [call site] 00082
7 wget_buffer_memset_append [function] [call site] 00083
7 wget_buffer_memset_append [function] [call site] 00084
7 wget_buffer_memset_append [function] [call site] 00085
7 wget_buffer_memset_append [function] [call site] 00086
7 wget_buffer_memset_append [function] [call site] 00087
7 wget_buffer_memset_append [function] [call site] 00088
7 wget_buffer_memset_append [function] [call site] 00089
7 wget_buffer_memset_append [function] [call site] 00090
7 wget_buffer_memcat [function] [call site] 00091
7 wget_buffer_memset_append [function] [call site] 00092
7 wget_buffer_memset_append [function] [call site] 00093
7 wget_buffer_memcat [function] [call site] 00094
7 wget_buffer_memset_append [function] [call site] 00095
7 wget_buffer_memset_append [function] [call site] 00096
7 wget_buffer_memcat [function] [call site] 00097
6 convert_dec [function] [call site] 00098
6 convert_dec [function] [call site] 00099
6 convert_dec [function] [call site] 00100
6 convert_dec [function] [call site] 00101
6 convert_dec [function] [call site] 00102
6 wget_buffer_memset_append [function] [call site] 00103
4 wget_realloc [function] [call site] 00104
2 wget_update_file [function] [call site] 00105
3 wget_aprintf [function] [call site] 00106
3 base_name [function] [call site] 00107
4 last_component [function] [call site] 00108
4 base_len [function] [call site] 00109
5 strlen [call site] 00110
4 ximalloc [function] [call site] 00112
5 imalloc [function] [call site] 00113
6 _gl_alloc_nomem [function] [call site] 00114
7 __errno_location [call site] 00115
5 check_nonnull [function] [call site] 00116
6 xalloc_die [function] [call site] 00117
7 gettext [call site] 00118
7 abort [call site] 00119
3 getenv [call site] 00120
3 getenv [call site] 00121
3 getuid [call site] 00122
3 wget_aprintf [function] [call site] 00123
3 getuid [call site] 00124
3 wget_aprintf [function] [call site] 00125
3 open [call site] 00126
3 wget_error_printf [function] [call site] 00127
3 flock [call site] 00128
3 gettext [call site] 00129
3 wget_error_printf [function] [call site] 00130
3 rpl_fopen [function] [call site] 00131
4 strlen [call site] 00132
4 open [call site] 00133
4 fdopen [call site] 00134
4 __errno_location [call site] 00135
4 close [call site] 00136
4 __errno_location [call site] 00137
4 orig_fopen [function] [call site] 00138
5 fopen [function] [call site] 00139
6 dlsym [call site] 00140
6 strcmp [call site] 00141
6 fmemopen [call site] 00142
3 __errno_location [call site] 00143
3 gettext [call site] 00144
3 wget_error_printf [function] [call site] 00145
3 rpl_fclose [function] [call site] 00146
4 fileno [call site] 00147
4 __freading [call site] 00148
4 rpl_fflush [function] [call site] 00149
5 __freading [call site] 00150
5 fflush [call site] 00151
5 clear_ungetc_buffer_preserving_position [function] [call site] 00152
6 rpl_fseeko [function] [call site] 00153
7 fileno [call site] 00154
7 fseeko [call site] 00155
5 fflush [call site] 00156
4 __errno_location [call site] 00157
4 fclose [call site] 00158
4 __errno_location [call site] 00159
3 mkstemp [call site] 00160
3 gettext [call site] 00161
3 wget_error_printf [function] [call site] 00162
3 fdopen [call site] 00163
3 unlink [call site] 00164
3 close [call site] 00165
3 gettext [call site] 00166
3 wget_error_printf [function] [call site] 00167
3 unlink [call site] 00168
3 rpl_fclose [function] [call site] 00169
3 unlink [call site] 00170
3 gettext [call site] 00171
3 wget_error_printf [function] [call site] 00172
3 rename [call site] 00173
3 gettext [call site] 00174
3 wget_error_printf [function] [call site] 00175
3 gettext [call site] 00176
3 wget_error_printf [function] [call site] 00177
3 wget_debug_printf [function] [call site] 00178
3 rpl_fclose [function] [call site] 00179
3 close [call site] 00180
2 ocsp_db_load_hosts [function] [call site] 00181
3 ocsp_db_load [function] [call site] 00182
4 time [call site] 00183
4 wget_getline [function] [call site] 00184
5 getline_internal [function] [call site] 00185
6 wget_malloc [function] [call site] 00186
6 memchr [call site] 00187
6 memchr [call site] 00188
6 wget_realloc [function] [call site] 00189
6 __errno_location [call site] 00190
6 __errno_location [call site] 00191
6 gettext [call site] 00192
6 wget_error_printf [function] [call site] 00193
4 __ctype_b_loc [call site] 00194
4 init_ocsp [function] [call site] 00195
5 wget_calloc [function] [call site] 00196
5 time [call site] 00197
4 __ctype_b_loc [call site] 00198
4 wget_strmemdup [function] [call site] 00199
5 wget_malloc [function] [call site] 00200
4 __ctype_b_loc [call site] 00201
4 atoll [call site] 00202
4 deinit_ocsp [function] [call site] 00203
4 __ctype_b_loc [call site] 00204
4 __ctype_b_loc [call site] 00205
4 atoi [call site] 00206
4 wget_memdup [function] [call site] 00207
4 ocsp_db_add_host_entry [function] [call site] 00208
5 free_ocsp [function] [call site] 00209
5 wget_thread_mutex_lock [function] [call site] 00210
5 wget_hashmap_remove [function] [call site] 00211
6 hashmap_remove_entry [function] [call site] 00212
5 wget_debug_printf [function] [call site] 00213
5 free_ocsp [function] [call site] 00214
5 wget_hashmap_get [function] [call site] 00215
6 hashmap_find_entry [function] [call site] 00216
5 wget_debug_printf [function] [call site] 00217
5 free_ocsp [function] [call site] 00218
5 wget_hashmap_put [function] [call site] 00219
6 hashmap_find_entry [function] [call site] 00220
6 hashmap_new_entry [function] [call site] 00221
7 wget_malloc [function] [call site] 00222
7 wget_calloc [function] [call site] 00223
7 hashmap_rehash [function] [call site] 00224
5 wget_debug_printf [function] [call site] 00225
5 wget_thread_mutex_unlock [function] [call site] 00226
6 pthread_mutex_unlock [call site] 00227
4 wget_memdup [function] [call site] 00228
4 ocsp_db_add_fingerprint_entry [function] [call site] 00229
5 free_ocsp [function] [call site] 00230
5 wget_thread_mutex_lock [function] [call site] 00231
5 wget_hashmap_remove [function] [call site] 00232
5 wget_debug_printf [function] [call site] 00233
5 free_ocsp [function] [call site] 00234
5 wget_hashmap_get [function] [call site] 00235
5 wget_debug_printf [function] [call site] 00236
5 free_ocsp [function] [call site] 00237
5 wget_debug_printf [function] [call site] 00238
5 wget_hashmap_put [function] [call site] 00239
5 wget_thread_mutex_unlock [function] [call site] 00240
4 deinit_ocsp [function] [call site] 00241
4 gettext [call site] 00242
4 wget_error_printf [function] [call site] 00243
4 ferror [call site] 00244
2 gettext [call site] 00245
2 wget_error_printf [function] [call site] 00246
2 wget_debug_printf [function] [call site] 00247
2 wget_update_file [function] [call site] 00248
2 ocsp_db_load_fingerprints [function] [call site] 00249
3 ocsp_db_load [function] [call site] 00250
2 gettext [call site] 00251
2 wget_error_printf [function] [call site] 00252
2 wget_debug_printf [function] [call site] 00253
1 wget_ocsp_hostname_is_valid [function] [call site] 00254
2 wget_hashmap_get [function] [call site] 00255
2 time [call site] 00256
1 wget_ocsp_fingerprint_in_cache [function] [call site] 00257
2 wget_hashmap_get [function] [call site] 00258
2 time [call site] 00259
1 wget_ocsp_db_free [function] [call site] 00260
2 wget_ocsp_db_deinit [function] [call site] 00261
3 wget_thread_mutex_lock [function] [call site] 00262
3 wget_hashmap_free [function] [call site] 00263
3 wget_hashmap_free [function] [call site] 00264
3 wget_thread_mutex_unlock [function] [call site] 00265
3 wget_thread_mutex_destroy [function] [call site] 00266
4 pthread_mutex_destroy [call site] 00267