FuzzBench: 2023-10-25-fishfuzz report

experiment summary

We show two different aggregate (cross-benchmark) rankings of fuzzers. The first is based on the average of per-benchmarks scores, where the score represents the percentage of the highest reached median code-coverage on a given benchmark (higher value is better). The second ranking shows the average rank of fuzzers, after we rank them on each benchmark according to their median reached code-covereges (lower value is better).
By avg. score
average normalized score
fuzzer
libafl 97.62
aflplusplus 96.69
libfuzzer 93.58
honggfuzz 91.15
aflplusplus_ff_cmp 86.20
aflplusplus_fishfuzz_noexploit 85.92
afl 85.58
aflplusplus_fishfuzz 85.53
mopt 85.31
eclipser 84.63
aflsmart 83.98
aflfast 82.33
fairfuzz 79.77
centipede 68.44
By avg. rank
average rank
fuzzer
aflplusplus 2.74
libafl 4.87
aflplusplus_ff_cmp 5.30
libfuzzer 5.91
aflplusplus_fishfuzz_noexploit 6.22
honggfuzz 6.39
aflplusplus_fishfuzz 6.65
eclipser 6.65
aflsmart 7.52
afl 8.39
mopt 8.61
centipede 10.65
fairfuzz 10.83
aflfast 11.35
  • Critical difference diagram
    The diagram visualizes the average rank of fuzzers (second ranking above) while showing the significance of the differences as well. What is considered a "critical difference" (CD) is based on the Friedman/Nemenyi post-hoc test. See more in the documentation.
    Note: If a fuzzer does not support all benchmarks, its ranking as shown in this diagram can be lower than it should be. So please check the list of supported benchmarks for the fuzzer(s) of your interest. The list could be specified in the fuzzer's README.md like this.
  • Median relative code-coverages on each benchmark

    Note: The relative coverage summary table shows the median relative performance of each fuzzer to the experiment maximum. Thus the highest relative performance may not be 100%.
    trial_relative_coverage = trial_coverage / experiment_max_coverage

      libafl aflplusplus honggfuzz libfuzzer eclipser aflplusplus_ff_cmp aflplusplus_fishfuzz_noexploit afl aflplusplus_fishfuzz mopt aflsmart aflfast centipede fairfuzz
    FuzzerMedian 96.00 96.00 96.50 92.00 94.00 94.00 94.00 93.00 94.00 93.00 93.00 93.00 88.00 85.00
    FuzzerMean 93.74 92.91 91.95 90.13 88.95 83.17 82.96 82.65 82.43 82.22 81.04 79.43 79.16 76.87
    bloaty_fuzz_target 98.00 98.00 94.00 91.00 94.00 97.00 97.00 94.00 97.00 96.00 95.00 93.00 nan 80.00
    curl_curl_fuzzer_http 97.00 98.00 98.00 91.00 94.00 94.00 94.00 93.00 94.00 93.00 94.00 93.00 nan 83.00
    freetype2_ftfuzzer 89.00 89.00 89.00 77.00 72.00 65.00 66.00 65.00 65.00 65.00 65.00 62.00 56.00 61.00
    harfbuzz_hb-shape-fuzzer 99.00 98.00 95.00 94.00 96.00 97.00 97.00 96.00 97.00 96.00 96.00 95.00 nan 87.00
    jsoncpp_jsoncpp_fuzzer 98.00 99.00 99.00 100.00 98.00 98.00 98.00 98.00 98.00 98.00 98.00 98.00 98.00 98.00
    lcms_cms_transform_fuzzer 96.00 89.00 73.00 88.00 80.00 77.00 76.00 68.00 69.00 65.00 41.00 29.00 40.00 51.00
    libjpeg-turbo_libjpeg_turbo_fuzzer 82.00 82.00 99.00 99.00 nan 82.00 82.00 99.00 82.00 99.00 82.00 82.00 82.00 82.00
    libpcap_fuzz_both 85.00 91.00 nan 79.00 78.00 1.00 1.00 1.00 1.00 1.00 1.00 1.00 88.00 1.00
    libpng_libpng_read_fuzzer 95.00 95.00 95.00 96.00 94.00 95.00 95.00 94.00 94.00 94.00 95.00 93.00 96.00 94.00
    libxml2_xml 98.00 99.00 98.00 97.00 97.00 99.00 98.00 97.00 98.00 96.00 97.00 96.00 92.00 89.00
    libxslt_xpath 96.00 98.00 97.00 92.00 95.00 97.00 96.00 94.00 95.00 92.00 95.00 93.00 93.00 96.00
    mbedtls_fuzz_dtlsclient 84.00 72.00 70.00 70.00 71.00 70.00 70.00 70.00 70.00 70.00 71.00 68.00 68.00 72.00
    openh264_decoder_fuzzer 99.00 99.00 99.00 98.00 99.00 99.00 99.00 99.00 99.00 99.00 99.00 99.00 nan 90.00
    openssl_x509 99.00 99.00 99.00 99.00 99.00 99.00 99.00 99.00 99.00 99.00 99.00 99.00 99.00 99.00
    openthread_ot-ip6-send-fuzzer 85.00 75.00 74.00 75.00 74.00 71.00 71.00 71.00 71.00 71.00 71.00 71.00 70.00 67.00
    proj4_proj_crs_to_crs_fuzzer 88.00 86.00 97.00 91.00 59.00 9.00 9.00 9.00 9.00 9.00 9.00 9.00 9.00 9.00
    re2_fuzzer 98.00 99.00 98.00 99.00 99.00 99.00 99.00 99.00 99.00 98.00 99.00 99.00 95.00 99.00
    sqlite3_ossfuzz 90.00 90.00 71.00 80.00 93.00 97.00 96.00 91.00 95.00 91.00 93.00 90.00 64.00 65.00
    stb_stbi_read_fuzzer 98.00 95.00 95.00 90.00 94.00 90.00 90.00 90.00 90.00 89.00 90.00 89.00 88.00 89.00
    systemd_fuzz-link-parser 98.00 99.00 97.00 80.00 92.00 94.00 93.00 92.00 93.00 91.00 91.00 91.00 97.00 85.00
    vorbis_decode_fuzzer 93.00 94.00 93.00 94.00 93.00 94.00 94.00 93.00 94.00 93.00 93.00 93.00 85.00 93.00
    woff2_convert_woff2ttf_fuzzer 96.00 96.00 96.00 93.00 nan 93.00 92.00 92.00 91.00 90.00 93.00 89.00 88.00 81.00
    zlib_zlib_uncompress_fuzzer 95.00 97.00 97.00 100.00 97.00 96.00 96.00 97.00 96.00 96.00 97.00 95.00 96.00 97.00
    • Fuzzers are sorted by "FuzzerMean" (average median relative coverage), highest on the left.
    • Green background = highest relative median coverage.
    • Blue gradient background = greater than 95% relative median coverage.

bloaty_fuzz_target summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    aflplusplus 82800 20.0 6362.600000 60.751781 6210.0 6345.50 6375.5 6402.50 6437.0
    libafl 82800 19.0 6358.473684 60.036441 6225.0 6324.00 6367.0 6388.00 6458.0
    aflplusplus_fishfuzz_noexploit 82800 19.0 6302.842105 76.720462 6096.0 6270.50 6310.0 6365.00 6404.0
    aflplusplus_fishfuzz 82800 17.0 6302.235294 86.033808 6126.0 6252.00 6302.0 6364.00 6446.0
    aflplusplus_ff_cmp 82800 20.0 6262.600000 122.199319 5986.0 6154.75 6297.5 6372.25 6422.0
    mopt 82800 17.0 6213.117647 107.523766 6002.0 6178.00 6225.0 6261.00 6465.0
    aflsmart 82800 20.0 6198.450000 127.984981 5937.0 6102.25 6205.0 6295.25 6394.0
    honggfuzz 82800 20.0 6100.500000 209.354522 5744.0 5948.25 6131.5 6295.50 6391.0
    eclipser 82800 20.0 6110.200000 114.487232 5900.0 6066.75 6107.0 6144.50 6360.0
    afl 82800 17.0 6125.176471 93.390467 6005.0 6051.00 6096.0 6241.00 6274.0
    aflfast 82800 20.0 6080.100000 119.230824 5858.0 6033.50 6059.0 6136.50 6350.0
    libfuzzer 82800 20.0 5897.050000 169.163414 5559.0 5805.00 5890.5 5988.00 6182.0
    fairfuzz 82800 20.0 5217.750000 121.813868 5060.0 5145.00 5194.5 5272.75 5570.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

curl_curl_fuzzer_http summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    aflplusplus 82800 20.0 10898.050000 52.465001 10830.0 10858.75 10890.0 10917.25 11023.0
    honggfuzz 82800 20.0 10845.700000 108.334327 10689.0 10747.75 10861.0 10926.00 11036.0
    libafl 82800 16.0 10730.812500 52.880014 10633.0 10690.50 10728.0 10765.50 10833.0
    aflplusplus_ff_cmp 82800 19.0 10460.789474 47.851134 10357.0 10442.50 10472.0 10484.00 10545.0
    eclipser 82800 20.0 10463.900000 37.160959 10415.0 10437.00 10454.0 10491.00 10551.0
    aflsmart 82800 20.0 10456.750000 63.366831 10389.0 10399.00 10436.5 10486.75 10575.0
    aflplusplus_fishfuzz_noexploit 82800 17.0 10356.764706 181.498805 9948.0 10305.00 10389.0 10485.00 10582.0
    aflplusplus_fishfuzz 82800 20.0 10382.550000 68.717174 10258.0 10349.00 10383.5 10416.50 10568.0
    afl 82800 18.0 10302.777778 122.983287 9959.0 10236.25 10339.5 10385.75 10444.0
    mopt 82800 19.0 10297.736842 77.128206 10123.0 10254.00 10326.0 10347.00 10413.0
    aflfast 82800 20.0 10272.850000 106.610592 9985.0 10221.25 10305.5 10346.25 10406.0
    libfuzzer 82800 20.0 9985.200000 396.894206 9224.0 9836.25 10063.0 10172.00 10585.0
    fairfuzz 82800 20.0 9200.800000 420.958005 7990.0 9035.75 9266.0 9472.50 9906.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

freetype2_ftfuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    aflplusplus 82800 20.0 11339.550000 463.129228 10460.0 11020.75 11421.5 11781.00 12011.0
    honggfuzz 82800 20.0 11253.850000 623.984925 9786.0 10822.25 11416.5 11720.50 12085.0
    libafl 82800 20.0 11521.250000 759.778422 10370.0 11006.50 11312.5 12274.00 12696.0
    libfuzzer 82800 20.0 9845.700000 650.336035 8730.0 9404.00 9806.0 10147.75 11277.0
    eclipser 82800 20.0 9242.100000 100.454703 9028.0 9198.75 9263.0 9316.75 9423.0
    aflplusplus_fishfuzz_noexploit 82800 18.0 8311.277778 250.056183 7793.0 8106.00 8455.5 8480.00 8544.0
    mopt 82800 18.0 8333.500000 123.284105 7964.0 8282.50 8363.5 8404.75 8486.0
    aflplusplus_fishfuzz 82800 20.0 8258.250000 275.641429 7823.0 7995.25 8359.0 8427.25 8657.0
    afl 82800 19.0 8287.842105 187.350315 7827.0 8293.50 8349.0 8400.00 8437.0
    aflsmart 82800 20.0 8244.000000 202.383690 7800.0 8230.50 8304.5 8374.50 8524.0
    aflplusplus_ff_cmp 82800 20.0 8142.500000 262.280184 7685.0 7850.25 8267.5 8350.00 8398.0
    aflfast 82800 20.0 7976.350000 222.903159 7640.0 7820.50 7916.0 8204.75 8311.0
    fairfuzz 82800 20.0 7832.950000 112.700570 7683.0 7768.00 7816.0 7859.75 8213.0
    centipede 82800 20.0 7160.400000 177.924112 6873.0 7047.00 7140.5 7259.00 7535.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

harfbuzz_hb-shape-fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
error
The following fuzzers do not have enough samples: honggfuzz.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    libafl 82800 17.0 11089.647059 40.004595 11039.0 11059.00 11082.0 11110.00 11165.0
    aflplusplus 82800 20.0 10945.750000 58.432034 10861.0 10886.00 10953.0 10990.75 11057.0
    aflplusplus_ff_cmp 82800 20.0 10919.350000 48.076994 10837.0 10887.00 10922.0 10960.50 11000.0
    aflplusplus_fishfuzz 82800 20.0 10829.750000 55.566816 10675.0 10809.50 10840.5 10864.75 10913.0
    aflplusplus_fishfuzz_noexploit 82800 18.0 10819.166667 95.953573 10603.0 10809.50 10839.0 10883.75 10952.0
    aflsmart 82800 20.0 10815.450000 39.488139 10703.0 10800.25 10821.0 10841.25 10879.0
    eclipser 82800 20.0 10820.150000 43.008292 10754.0 10778.50 10819.5 10861.50 10885.0
    mopt 82800 18.0 10778.222222 58.528581 10631.0 10749.50 10784.5 10815.25 10862.0
    afl 82800 19.0 10755.210526 48.792735 10654.0 10733.50 10757.0 10790.50 10837.0
    honggfuzz 82800 5.0 10670.600000 74.214554 10560.0 10642.00 10682.0 10716.00 10753.0
    aflfast 82800 20.0 10670.700000 51.265152 10567.0 10642.75 10669.0 10702.75 10770.0
    libfuzzer 82800 20.0 10539.650000 52.400557 10425.0 10503.50 10541.5 10578.25 10630.0
    fairfuzz 82800 20.0 9728.250000 323.424257 9130.0 9481.50 9724.0 9986.00 10218.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

jsoncpp_jsoncpp_fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    libfuzzer 82800 20.0 524.950000 0.223607 524.0 525.00 525.0 525.00 525.0
    honggfuzz 82800 20.0 522.450000 1.356272 519.0 522.00 522.0 524.00 524.0
    aflplusplus 82800 20.0 519.900000 0.307794 519.0 520.00 520.0 520.00 520.0
    eclipser 82800 20.0 518.900000 1.252366 516.0 518.00 519.5 520.00 520.0
    aflplusplus_ff_cmp 82800 20.0 519.100000 0.447214 518.0 519.00 519.0 519.00 520.0
    aflplusplus_fishfuzz 82800 19.0 514.842105 6.970279 500.0 513.00 519.0 519.00 519.0
    aflplusplus_fishfuzz_noexploit 82800 19.0 514.368421 9.376155 493.0 519.00 519.0 519.00 519.0
    centipede 82800 20.0 519.650000 1.980829 517.0 518.75 519.0 520.00 524.0
    mopt 82800 19.0 516.578947 4.574273 506.0 517.00 518.0 520.00 520.0
    aflsmart 82800 20.0 517.900000 1.165287 516.0 517.00 517.5 519.00 520.0
    afl 82800 17.0 515.882353 5.134228 505.0 517.00 517.0 519.00 520.0
    aflfast 82800 20.0 513.900000 10.622221 478.0 517.00 517.0 519.00 519.0
    fairfuzz 82800 20.0 517.450000 0.998683 516.0 517.00 517.0 517.25 520.0
    libafl 82800 19.0 517.263158 0.805682 516.0 517.00 517.0 517.00 519.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

lcms_cms_transform_fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    libafl 82800 19.0 2111.894737 64.310786 1945.0 2096.00 2130.0 2146.00 2210.0
    aflplusplus 82800 20.0 1870.950000 256.474370 1532.0 1575.00 1979.5 2076.00 2206.0
    libfuzzer 82800 20.0 1946.000000 97.029024 1790.0 1889.75 1947.5 1983.25 2140.0
    eclipser 82800 20.0 1736.000000 135.909025 1522.0 1573.00 1789.0 1838.50 1904.0
    aflplusplus_ff_cmp 82800 20.0 1650.600000 125.345166 1412.0 1536.50 1713.5 1748.50 1777.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 1652.000000 107.491983 1413.0 1616.25 1682.5 1729.75 1792.0
    honggfuzz 82800 20.0 1377.200000 536.015279 686.0 726.25 1623.5 1811.00 2030.0
    aflplusplus_fishfuzz 82800 20.0 1587.450000 115.717203 1407.0 1502.50 1543.0 1689.00 1784.0
    afl 82800 20.0 1260.100000 448.102890 648.0 795.50 1510.5 1612.75 1812.0
    mopt 82800 20.0 1230.000000 430.050425 651.0 845.25 1439.5 1604.00 1765.0
    fairfuzz 82800 20.0 1181.850000 428.681488 652.0 790.25 1148.5 1575.75 1919.0
    aflsmart 82800 20.0 1123.250000 441.957235 649.0 673.75 918.0 1575.50 1795.0
    centipede 82800 20.0 1058.500000 289.194617 762.0 797.75 890.0 1360.50 1542.0
    aflfast 82800 20.0 635.600000 19.277475 569.0 637.75 642.5 646.00 657.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

libjpeg-turbo_libjpeg_turbo_fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    libfuzzer 82800 20.0 3086.200000 1.507874 3083.0 3085.00 3087.0 3087.00 3088.0
    afl 82800 17.0 3076.705882 9.713166 3046.0 3077.00 3080.0 3082.00 3086.0
    mopt 82800 18.0 3070.388889 21.478139 3001.0 3071.75 3078.0 3080.50 3086.0
    honggfuzz 82800 20.0 3057.050000 19.465151 3007.0 3055.25 3064.0 3067.00 3074.0
    aflplusplus_ff_cmp 82800 20.0 2548.650000 1.954078 2546.0 2547.00 2548.0 2551.00 2552.0
    aflplusplus 82800 20.0 2548.050000 2.038446 2545.0 2547.00 2547.5 2548.75 2552.0
    aflplusplus_fishfuzz 82800 20.0 2546.700000 3.570346 2534.0 2546.75 2547.0 2548.00 2552.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 2546.750000 5.571308 2531.0 2546.00 2547.0 2550.25 2553.0
    centipede 82800 20.0 2546.050000 0.686333 2545.0 2546.00 2546.0 2546.25 2547.0
    aflsmart 82800 20.0 2545.350000 1.980829 2543.0 2544.00 2545.0 2546.00 2551.0
    libafl 82800 19.0 2544.421053 1.865350 2543.0 2543.00 2544.0 2545.00 2550.0
    aflfast 82800 20.0 2543.900000 1.483240 2541.0 2543.00 2543.5 2545.00 2548.0
    fairfuzz 82800 20.0 2539.950000 4.795557 2533.0 2536.00 2542.0 2542.25 2550.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

libpcap_fuzz_both summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    aflplusplus 82800 19.0 2963.210526 116.433853 2782.0 2874.50 2955.0 3049.00 3240.0
    centipede 82800 20.0 2693.100000 641.869219 101.0 2738.50 2876.0 2976.00 3138.0
    libafl 82800 17.0 2781.647059 100.147979 2620.0 2729.00 2778.0 2856.00 2991.0
    libfuzzer 82800 20.0 2521.050000 151.141090 2104.0 2494.25 2562.5 2597.75 2712.0
    eclipser 82800 20.0 2506.050000 205.275547 1990.0 2411.75 2553.5 2590.75 2872.0
    aflfast 82800 20.0 40.300000 4.231461 34.0 34.00 43.0 43.00 43.0
    fairfuzz 82800 20.0 38.850000 4.404244 33.0 33.00 42.0 42.00 42.0
    afl 82800 20.0 37.650000 4.246051 34.0 34.00 34.0 43.00 43.0
    aflplusplus_fishfuzz 82800 20.0 37.050000 4.273234 34.0 34.00 34.0 42.25 43.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 36.950000 4.211201 34.0 34.00 34.0 43.00 43.0
    mopt 82800 20.0 37.400000 4.357691 34.0 34.00 34.0 43.00 43.0
    aflplusplus_ff_cmp 82800 20.0 36.150000 4.404244 33.0 33.00 33.0 42.00 42.0
    aflsmart 82800 20.0 34.800000 3.693522 33.0 33.00 33.0 33.00 42.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

libpng_libpng_read_fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    libfuzzer 82800 20.0 2018.000000 1.169795 2015.0 2018.00 2018.0 2019.00 2020.0
    centipede 82800 20.0 2015.200000 1.704483 2012.0 2013.75 2016.0 2017.00 2017.0
    honggfuzz 82800 20.0 2028.050000 33.887546 2003.0 2010.00 2012.5 2017.25 2099.0
    aflplusplus 82800 20.0 2011.500000 22.549361 1998.0 2003.75 2005.0 2007.25 2090.0
    aflplusplus_ff_cmp 82800 20.0 1999.250000 5.045842 1980.0 1998.75 2000.0 2001.00 2007.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 1987.850000 29.308298 1895.0 1992.00 1998.0 2001.25 2005.0
    aflsmart 82800 20.0 1995.400000 5.490662 1974.0 1994.00 1996.0 1998.25 2000.0
    libafl 82800 19.0 1990.157895 13.056557 1972.0 1977.50 1996.0 2002.00 2006.0
    eclipser 82800 20.0 1990.450000 11.250614 1972.0 1978.00 1994.0 1998.25 2003.0
    aflplusplus_fishfuzz 82800 20.0 1965.000000 55.128558 1791.0 1961.00 1993.0 1998.25 2003.0
    afl 82800 20.0 1976.450000 31.531897 1884.0 1971.75 1990.5 1995.25 2000.0
    mopt 82800 20.0 1978.850000 26.776413 1911.0 1975.00 1990.0 1993.50 2008.0
    fairfuzz 82800 20.0 1984.100000 13.814180 1945.0 1974.75 1988.5 1995.00 2000.0
    aflfast 82800 20.0 1967.600000 20.301413 1943.0 1948.25 1964.0 1989.50 1997.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

libxml2_xml summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    aflplusplus 82800 20.0 15745.450000 30.219330 15683.0 15723.75 15744.5 15768.50 15801.0
    aflplusplus_ff_cmp 82800 20.0 15668.450000 31.807770 15596.0 15648.25 15662.0 15690.25 15730.0
    aflplusplus_fishfuzz 82800 20.0 15617.300000 54.499734 15492.0 15594.00 15622.5 15654.50 15698.0
    libafl 82800 18.0 15626.277778 34.543758 15564.0 15604.75 15622.0 15652.50 15695.0
    aflplusplus_fishfuzz_noexploit 82800 19.0 15593.526316 64.337106 15485.0 15550.00 15606.0 15631.50 15723.0
    honggfuzz 82800 20.0 15569.200000 46.622335 15492.0 15536.00 15573.0 15586.00 15655.0
    eclipser 82800 20.0 15423.450000 79.669366 15257.0 15387.50 15423.5 15463.75 15601.0
    libfuzzer 82800 20.0 15370.200000 103.283259 15096.0 15311.25 15382.0 15427.75 15537.0
    aflsmart 82800 20.0 15366.800000 68.816767 15248.0 15322.50 15366.5 15410.75 15497.0
    afl 82800 20.0 15346.600000 76.391237 15154.0 15289.75 15353.5 15401.25 15482.0
    mopt 82800 20.0 15318.600000 62.704319 15155.0 15285.50 15326.0 15366.25 15397.0
    aflfast 82800 20.0 15320.650000 78.755635 15159.0 15271.75 15318.0 15356.00 15509.0
    centipede 82800 20.0 14698.500000 140.327249 14480.0 14610.75 14689.0 14786.25 14984.0
    fairfuzz 82800 20.0 14146.650000 259.273738 13616.0 14060.75 14144.0 14227.25 14834.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

libxslt_xpath summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    aflplusplus 82800 20.0 11216.650000 91.738344 11100.0 11147.00 11188.5 11317.25 11378.0
    aflplusplus_ff_cmp 82800 20.0 11100.750000 79.791752 10957.0 11034.75 11120.0 11171.75 11214.0
    honggfuzz 82800 20.0 11045.100000 108.722680 10855.0 10983.25 11050.5 11133.00 11226.0
    libafl 82800 19.0 10959.842105 65.139392 10828.0 10916.00 10982.0 11009.50 11053.0
    aflplusplus_fishfuzz_noexploit 82800 19.0 10891.105263 191.016257 10385.0 10821.00 10973.0 11017.50 11078.0
    fairfuzz 82800 20.0 10883.250000 144.964197 10516.0 10827.75 10942.5 10959.25 11047.0
    aflplusplus_fishfuzz 82800 20.0 10918.250000 115.474251 10721.0 10836.00 10920.0 10978.00 11154.0
    aflsmart 82800 20.0 10894.550000 51.799690 10814.0 10859.25 10901.0 10915.00 11026.0
    eclipser 82800 20.0 10895.650000 65.938787 10729.0 10862.50 10897.5 10938.25 11010.0
    afl 82800 20.0 10658.800000 135.384676 10462.0 10529.00 10718.5 10770.25 10865.0
    centipede 82800 20.0 10707.650000 111.331782 10611.0 10631.75 10676.0 10724.25 11038.0
    aflfast 82800 20.0 10636.050000 92.919022 10363.0 10591.25 10649.5 10692.75 10786.0
    mopt 82800 20.0 10571.500000 126.561198 10325.0 10484.75 10580.0 10646.00 10781.0
    libfuzzer 82800 20.0 10508.200000 170.989258 10149.0 10417.50 10530.0 10632.75 10775.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

mbedtls_fuzz_dtlsclient summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    libafl 82800 18.0 3139.055556 395.824303 2709.0 2739.00 3248.5 3485.00 3829.0
    aflplusplus 82800 20.0 2825.600000 151.281334 2739.0 2758.50 2779.0 2821.25 3436.0
    fairfuzz 82800 20.0 2820.700000 203.472771 2730.0 2753.25 2779.0 2794.75 3676.0
    eclipser 82800 20.0 2774.450000 217.678052 2702.0 2715.25 2726.0 2733.25 3697.0
    aflsmart 82800 20.0 2722.050000 16.750412 2697.0 2712.50 2720.0 2728.25 2771.0
    aflplusplus_ff_cmp 82800 20.0 2715.150000 34.159494 2657.0 2697.75 2707.0 2729.25 2811.0
    afl 82800 18.0 2678.277778 64.556228 2529.0 2675.00 2702.0 2712.50 2746.0
    libfuzzer 82800 20.0 2725.500000 145.014518 2654.0 2675.00 2692.5 2709.50 3331.0
    mopt 82800 18.0 2655.777778 61.636081 2512.0 2644.75 2684.0 2700.00 2707.0
    aflplusplus_fishfuzz 82800 20.0 2656.750000 86.455267 2430.0 2659.00 2682.5 2696.00 2771.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 2629.800000 103.809846 2412.0 2506.25 2682.0 2698.75 2733.0
    honggfuzz 82800 20.0 2695.500000 41.359146 2647.0 2670.00 2681.0 2704.50 2802.0
    centipede 82800 20.0 2639.900000 12.531644 2621.0 2630.50 2639.0 2644.50 2673.0
    aflfast 82800 20.0 2638.300000 14.026666 2607.0 2630.75 2638.0 2643.50 2675.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

openh264_decoder_fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    aflplusplus_fishfuzz 82800 18.0 9553.222222 9.680517 9530.0 9549.00 9554.0 9560.00 9567.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 9546.950000 14.485837 9509.0 9543.50 9549.0 9555.50 9564.0
    honggfuzz 82800 20.0 9546.550000 6.549206 9535.0 9543.75 9545.0 9549.00 9559.0
    mopt 82800 20.0 9539.100000 13.540971 9517.0 9525.75 9540.5 9548.25 9563.0
    libafl 82800 20.0 9538.400000 15.547550 9483.0 9533.00 9538.5 9547.00 9559.0
    aflplusplus_ff_cmp 82800 18.0 9538.111111 10.369009 9512.0 9537.00 9537.5 9540.00 9557.0
    aflplusplus 82800 20.0 9529.250000 17.277533 9479.0 9525.75 9534.5 9539.00 9548.0
    aflsmart 82800 20.0 9518.750000 42.213586 9433.0 9511.75 9533.5 9543.00 9582.0
    eclipser 82800 20.0 9518.450000 26.296838 9441.0 9515.25 9526.5 9533.75 9541.0
    aflfast 82800 20.0 9509.100000 52.625689 9380.0 9493.00 9525.5 9551.00 9561.0
    afl 82800 20.0 9511.500000 35.952454 9444.0 9500.75 9524.5 9535.25 9555.0
    libfuzzer 82800 20.0 9424.800000 48.364406 9335.0 9394.00 9420.5 9455.00 9522.0
    fairfuzz 82800 20.0 8690.750000 181.798001 8400.0 8579.25 8713.0 8780.50 9055.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

openssl_x509 summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    aflsmart 82800 20.0 5830.350000 2.539685 5827.0 5829.00 5830.0 5831.00 5840.0
    eclipser 82800 20.0 5829.450000 3.119970 5817.0 5829.00 5830.0 5831.00 5832.0
    libfuzzer 82800 20.0 5827.200000 5.615767 5817.0 5822.50 5829.0 5832.00 5833.0
    libafl 82800 19.0 5826.473684 3.761921 5821.0 5823.00 5827.0 5831.00 5831.0
    aflplusplus_ff_cmp 82800 18.0 5826.166667 7.188635 5805.0 5824.00 5826.0 5830.75 5836.0
    aflplusplus 82800 20.0 5824.600000 7.507190 5811.0 5820.00 5825.0 5831.00 5833.0
    centipede 82800 20.0 5823.800000 5.863356 5810.0 5822.00 5825.0 5828.00 5833.0
    mopt 82800 19.0 5823.000000 5.811865 5810.0 5821.50 5825.0 5827.50 5829.0
    afl 82800 17.0 5821.294118 7.695491 5804.0 5816.00 5824.0 5828.00 5830.0
    aflplusplus_fishfuzz 82800 20.0 5819.850000 8.839356 5796.0 5818.75 5822.0 5824.75 5831.0
    fairfuzz 82800 20.0 5821.500000 2.874571 5817.0 5819.00 5822.0 5823.00 5827.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 5821.400000 7.890034 5803.0 5815.75 5821.5 5827.25 5834.0
    aflfast 82800 20.0 5819.200000 6.304551 5804.0 5816.75 5820.5 5824.00 5827.0
    honggfuzz 82800 20.0 5817.450000 7.917170 5806.0 5810.00 5819.5 5822.00 5834.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

openthread_ot-ip6-send-fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    libafl 82800 18.0 3395.388889 366.443181 3010.0 3038.25 3467.5 3562.75 4072.0
    libfuzzer 82800 20.0 3079.400000 13.287905 3053.0 3070.00 3078.0 3090.00 3108.0
    aflplusplus 82800 20.0 3085.100000 96.451188 3046.0 3056.75 3065.0 3068.25 3493.0
    eclipser 82800 20.0 3022.200000 46.183387 2911.0 3010.75 3038.5 3046.75 3087.0
    honggfuzz 82800 20.0 3067.550000 249.356957 2896.0 2918.75 3037.5 3047.50 3855.0
    mopt 82800 20.0 2945.550000 143.939854 2807.0 2902.25 2914.0 2923.75 3490.0
    aflsmart 82800 20.0 2889.600000 38.982317 2826.0 2836.50 2909.5 2913.25 2934.0
    aflplusplus_ff_cmp 82800 20.0 2925.000000 106.664254 2818.0 2822.00 2909.0 3041.50 3085.0
    afl 82800 20.0 2889.200000 52.609385 2819.0 2831.25 2904.5 2914.50 3006.0
    aflplusplus_fishfuzz 82800 20.0 2920.150000 98.744367 2811.0 2822.25 2904.5 3026.50 3087.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 2893.500000 82.568313 2785.0 2822.75 2902.0 2919.75 3066.0
    aflfast 82800 20.0 2877.300000 39.174508 2824.0 2830.75 2892.5 2908.75 2927.0
    centipede 82800 20.0 2849.850000 60.583370 2728.0 2787.00 2876.0 2896.75 2925.0
    fairfuzz 82800 20.0 2756.100000 75.288847 2628.0 2724.25 2751.5 2788.50 2907.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

proj4_proj_crs_to_crs_fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    honggfuzz 82800 20.0 7932.250000 219.503956 7504.0 7859.00 8002.0 8059.00 8245.0
    libfuzzer 82800 20.0 7556.850000 86.613038 7414.0 7485.75 7543.5 7608.50 7727.0
    libafl 82800 19.0 7311.526316 114.847903 7048.0 7273.50 7299.0 7359.00 7605.0
    aflplusplus 82800 20.0 7147.150000 231.749701 6783.0 7006.50 7165.0 7265.75 7633.0
    eclipser 82800 20.0 4890.400000 462.103247 3876.0 4703.25 4924.5 5103.75 5696.0
    centipede 82800 20.0 839.800000 73.863744 812.0 820.75 824.0 826.50 1153.0
    aflplusplus_ff_cmp 82800 20.0 811.850000 6.115339 805.0 806.75 808.0 819.00 820.0
    aflplusplus_fishfuzz 82800 20.0 809.650000 6.815424 796.0 805.75 807.5 815.00 820.0
    fairfuzz 82800 20.0 780.450000 74.632768 497.0 747.75 807.5 818.25 826.0
    afl 82800 20.0 802.200000 21.060314 740.0 804.00 807.0 809.75 819.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 801.450000 22.345316 734.0 801.50 807.0 811.25 821.0
    aflsmart 82800 20.0 784.000000 73.153767 497.0 805.00 806.5 818.00 819.0
    mopt 82800 20.0 770.300000 74.056948 497.0 740.75 806.5 815.00 820.0
    aflfast 82800 20.0 738.300000 115.000275 475.0 731.75 794.5 806.50 817.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

re2_fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
error
The following fuzzers do not have enough samples: mopt.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    libfuzzer 82800 20.0 2884.000000 2.492093 2880.0 2882.00 2883.5 2885.00 2891.0
    aflplusplus 82800 20.0 2878.400000 3.978892 2868.0 2876.00 2878.5 2881.25 2884.0
    aflplusplus_fishfuzz 82800 20.0 2864.450000 31.933277 2765.0 2869.75 2875.5 2877.25 2881.0
    aflplusplus_ff_cmp 82800 20.0 2873.750000 4.399462 2865.0 2870.00 2874.5 2877.00 2882.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 2856.850000 34.164116 2765.0 2866.75 2870.5 2873.00 2876.0
    aflsmart 82800 20.0 2868.550000 4.936172 2860.0 2865.75 2868.5 2872.50 2876.0
    eclipser 82800 20.0 2860.850000 23.079439 2785.0 2861.50 2867.5 2872.25 2878.0
    aflfast 82800 20.0 2865.450000 6.270021 2849.0 2864.50 2866.5 2870.00 2873.0
    fairfuzz 82800 20.0 2834.650000 73.055332 2631.0 2856.25 2864.0 2869.00 2875.0
    afl 82800 17.0 2851.352941 28.495485 2783.0 2857.00 2863.0 2866.00 2871.0
    mopt 82800 15.0 2853.466667 19.379174 2787.0 2853.00 2859.0 2863.00 2868.0
    libafl 82800 20.0 2858.750000 6.222836 2849.0 2855.75 2858.5 2862.00 2875.0
    honggfuzz 82800 20.0 2851.850000 8.963523 2836.0 2846.50 2850.0 2856.25 2869.0
    centipede 82800 20.0 2772.600000 17.005881 2736.0 2764.75 2772.5 2785.00 2812.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

sqlite3_ossfuzz summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
error
The following fuzzers do not have enough samples: afl.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    aflplusplus_ff_cmp 82800 19.0 19929.789474 317.556046 19072.0 19806.00 20023.0 20138.00 20346.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 19742.500000 325.826964 19140.0 19507.75 19839.0 19936.25 20292.0
    aflplusplus_fishfuzz 82800 20.0 19773.850000 262.104092 19241.0 19584.50 19783.5 19967.25 20216.0
    aflsmart 82800 20.0 19264.550000 284.391590 18652.0 19128.25 19284.0 19399.00 19883.0
    eclipser 82800 20.0 19215.250000 317.380707 18729.0 18953.50 19191.5 19428.00 19939.0
    afl 82800 15.0 18941.800000 220.389655 18566.0 18767.00 18956.0 19109.50 19274.0
    mopt 82800 18.0 18845.333333 329.924412 17901.0 18721.75 18855.5 19067.75 19388.0
    libafl 82800 17.0 18732.000000 104.676287 18540.0 18670.00 18761.0 18813.00 18900.0
    aflplusplus 82800 20.0 18564.200000 1715.240895 14444.0 17920.75 18738.0 19906.25 20620.0
    aflfast 82800 20.0 18711.000000 281.495069 18104.0 18609.25 18713.5 18918.25 19183.0
    libfuzzer 82800 20.0 16541.150000 377.282426 15825.0 16287.00 16548.5 16731.00 17535.0
    honggfuzz 82800 20.0 14800.300000 476.602019 13799.0 14555.75 14765.0 15077.25 15724.0
    fairfuzz 82800 20.0 13246.650000 1692.282646 10991.0 11657.25 13522.5 14776.25 16178.0
    centipede 82800 18.0 13391.333333 312.381554 12856.0 13199.75 13329.0 13560.00 13974.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

stb_stbi_read_fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    libafl 82800 18.0 2178.888889 28.138082 2112.0 2177.50 2191.0 2194.75 2217.0
    aflplusplus 82800 20.0 2142.750000 43.836869 2109.0 2113.75 2117.0 2198.25 2215.0
    honggfuzz 82800 20.0 2129.600000 34.347144 2106.0 2112.00 2114.5 2117.25 2199.0
    eclipser 82800 20.0 2109.450000 30.165290 2080.0 2098.50 2106.0 2109.25 2192.0
    libfuzzer 82800 20.0 2036.150000 51.490699 1988.0 2005.50 2014.0 2079.00 2183.0
    aflplusplus_ff_cmp 82800 19.0 2019.421053 32.624660 1977.0 2005.00 2009.0 2011.50 2093.0
    afl 82800 20.0 2025.700000 53.595070 1982.0 2001.75 2005.5 2010.25 2192.0
    aflsmart 82800 20.0 2016.000000 29.568831 1983.0 2004.00 2005.5 2008.00 2090.0
    aflplusplus_fishfuzz_noexploit 82800 19.0 2000.894737 46.837657 1874.0 2003.00 2005.0 2007.50 2092.0
    aflplusplus_fishfuzz 82800 19.0 1984.736842 50.204960 1896.0 1974.00 2004.0 2007.00 2093.0
    mopt 82800 20.0 2003.600000 38.368573 1953.0 1985.50 1994.0 2004.25 2088.0
    aflfast 82800 20.0 1983.900000 30.450823 1903.0 1974.00 1984.0 2000.25 2065.0
    fairfuzz 82800 20.0 1967.250000 49.496278 1854.0 1938.50 1983.0 1996.50 2086.0
    centipede 82800 20.0 1959.550000 4.547700 1952.0 1956.75 1958.5 1962.75 1967.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

vorbis_decode_fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    aflplusplus 82800 20.0 1267.600000 3.050453 1263.0 1265.75 1267.0 1270.00 1276.0
    libfuzzer 82800 20.0 1272.000000 16.270736 1264.0 1266.00 1267.0 1269.00 1336.0
    aflplusplus_ff_cmp 82800 19.0 1264.894737 2.806634 1258.0 1263.50 1265.0 1266.00 1269.0
    aflplusplus_fishfuzz 82800 20.0 1257.200000 17.683177 1205.0 1260.00 1262.5 1265.00 1268.0
    aflplusplus_fishfuzz_noexploit 82800 19.0 1254.000000 19.278658 1207.0 1256.50 1262.0 1263.50 1268.0
    aflsmart 82800 20.0 1255.000000 2.919986 1250.0 1253.00 1254.5 1257.25 1262.0
    mopt 82800 17.0 1246.941176 18.471162 1203.0 1252.00 1254.0 1256.00 1260.0
    afl 82800 18.0 1252.611111 4.539226 1245.0 1249.25 1253.0 1256.50 1260.0
    aflfast 82800 20.0 1246.800000 15.340349 1196.0 1248.50 1252.0 1254.00 1256.0
    eclipser 82800 20.0 1251.950000 4.358597 1244.0 1249.75 1252.0 1255.25 1259.0
    libafl 82800 20.0 1250.950000 3.677456 1245.0 1247.00 1251.5 1253.25 1257.0
    fairfuzz 82800 20.0 1234.700000 28.252806 1160.0 1222.50 1249.5 1253.50 1258.0
    honggfuzz 82800 20.0 1249.400000 4.805698 1235.0 1248.00 1249.0 1253.00 1258.0
    centipede 82800 20.0 1149.150000 17.263515 1122.0 1138.50 1145.5 1161.75 1181.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

woff2_convert_woff2ttf_fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    aflplusplus 82800 20.0 1175.950000 10.112395 1159.0 1168.00 1176.0 1184.25 1192.0
    libafl 82800 20.0 1175.000000 13.034368 1158.0 1164.00 1173.0 1186.25 1199.0
    honggfuzz 82800 20.0 1165.800000 25.071687 1106.0 1159.75 1172.0 1183.00 1196.0
    libfuzzer 82800 20.0 1135.500000 65.774335 1002.0 1097.00 1139.0 1195.00 1214.0
    aflsmart 82800 20.0 1133.600000 7.036746 1116.0 1130.75 1134.5 1138.25 1144.0
    aflplusplus_ff_cmp 82800 20.0 1130.900000 5.290508 1123.0 1126.75 1131.5 1133.50 1142.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 1113.000000 24.893457 1050.0 1113.50 1122.0 1126.25 1137.0
    afl 82800 19.0 1112.631579 16.479653 1070.0 1107.00 1117.0 1123.00 1131.0
    aflplusplus_fishfuzz 82800 20.0 1111.300000 20.370515 1050.0 1097.50 1114.5 1123.75 1134.0
    mopt 82800 16.0 1095.625000 22.413909 1063.0 1074.00 1100.5 1112.50 1128.0
    aflfast 82800 20.0 1083.300000 26.647998 1025.0 1076.00 1089.5 1101.50 1114.0
    centipede 82800 20.0 1076.800000 12.033287 1056.0 1070.25 1073.0 1085.75 1099.0
    fairfuzz 82800 20.0 996.000000 26.789629 966.0 983.00 988.5 998.50 1080.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

zlib_zlib_uncompress_fuzzer summary

Ranking by median reached code coverage
Reached code coverage distribution
Mean code coverage growth over time
Mean code coverage growth over time
* The error bands show the 95% confidence interval around the mean code coverage.
error
The following fuzzers do not have enough samples: mopt.
  • Sample statistics and statistical significance (code coverage)
    Code coverage sample statistics
    count mean std min 25% median 75% max
    fuzzer time
    libfuzzer 82800 20.0 468.650000 4.487116 462.0 463.00 472.0 472.00 472.0
    aflplusplus 82800 20.0 461.850000 3.587625 456.0 460.75 462.0 463.00 471.0
    fairfuzz 82800 20.0 460.200000 4.162489 455.0 457.50 460.0 461.25 469.0
    honggfuzz 82800 20.0 460.150000 3.513508 456.0 458.00 459.0 461.25 471.0
    afl 82800 16.0 453.437500 13.779060 418.0 454.50 458.5 460.00 468.0
    aflsmart 82800 20.0 458.350000 3.082634 455.0 456.00 458.5 459.25 468.0
    eclipser 82800 20.0 456.400000 7.556106 427.0 455.75 458.0 460.25 462.0
    aflplusplus_ff_cmp 82800 20.0 458.150000 2.942877 451.0 456.75 457.5 460.25 463.0
    aflplusplus_fishfuzz_noexploit 82800 20.0 457.750000 3.567027 451.0 456.00 457.0 459.25 468.0
    aflplusplus_fishfuzz 82800 20.0 452.150000 15.260113 409.0 453.50 456.0 457.75 470.0
    mopt 82800 15.0 454.333333 10.971825 428.0 455.50 456.0 460.00 467.0
    centipede 82800 20.0 454.500000 3.804430 451.0 451.00 454.0 457.00 464.0
    aflfast 82800 20.0 451.050000 5.266328 437.0 448.75 451.0 454.25 459.0
    libafl 82800 18.0 448.777778 5.128416 442.0 445.00 449.0 451.00 461.0

    Vargha-Delaney A12 measure
    The table summarizes the A12 values from the pairwise Vargha-Delaney A measure of effect size. Green cells indicate the probability the fuzzer in the row will outperform the fuzzer in the column.
    Mann-Whitney U test
    The table summarizes the p values of pairwise Mann-Whitney U tests. Green cells indicate that the reached coverage distribution of a given fuzzer pair is significantly different.
  • Unique code coverage plots
    Ranking by unique code branches covered
    Each bar shows the total number of code branches found by a given fuzzer. The colored area shows the number of unique code branches (i.e., branches that were not covered by any other fuzzers).
    Pairwise unique code coverage
    Each cell represents the number of code branches covered by the fuzzer of the column but not by the fuzzer of the row

experiment data

You can download the raw data for this report here.

Check out the documentation on how to create customized reports using this data. Also see some example Colab notebooks for doing custom analysis on the data here.

Experiment Description:

(None,)