Green Sky
aae086cc65
b03b571272 fix: flaky tcp test This only fixes the symptoms, not the real problem. Sometimes or consistently on some platforms a socket might need a moment before it can be written to. 32e67ab4c2 cleanup: use typedef for private message ID's in callback 7b1db6adc1 feat: add message IDs to private group messages 99e0bcc27d refactor: Observers/ignored peers can now send and receive custom packets b3c3c49d26 fix: Disable IPv6 in Windows cross-compilation tests e742deddff feat: Check hashes of Windows dependencies when cross-compiling dfb9a0b02b fix: Test the current Windows Dockerfile, not an old Dockerhub image 14de93ccec chore: Use WineHQ's Wine as Debian Bookworm's crashes ed37616249 docs: Update the Windows cross-compilation section 9bb79c174f cleanup: Remove a couple of unnecessary misc_tools dependencies 19475adb70 chore: Statically link OpenMP into the cracker fun util on Windows 1be311e51f feat: Build the fun utils when cross-compiling to Windows 88133f8446 chore: Strip Windows binaries 3cc0ae7535 refactor: Copy over all of the required static dependencies c4fa8f7fb1 feat: Generate .def, .exp and .lib files when building for Windows 74bbac5363 feat: Let CMake create the dll instead of doing so ourselves 246642e9ae feat: Harden Windows cross-compilation 8d431c0d11 chore: Bump Windows build dependency versions e519f7998b fix: Remove unnecessary wsock32 dependency on Windows ed2b60c217 chore: Use a specific non-broken slimcc version. d7f21010a1 chore: Update github actions. e71a68b7f2 docs: Update the list of CMake options 77e08876ff chore: Remove mod and founder from group API naming scheme 12bc042767 docs: add the experimental api build option to INSTALL.md e1fa5cae96 refactor: Rename Queries to Query to align with other enums. be82a3ea30 fix: Correct type for conference offline peer numbers. 0627c36716 test: Add pkgsrc build. 92578afe4b test: Add FreeBSD VM action on GitHub. 52ece0f57b test: Build toxcore on NetBSD (VM). 3fe8ee2c11 chore: Only install tox_private.h on request. 9a8dfa06ab fix: save_compatibility_test failing on big-endian systems 86f5e55578 fix: Don't serve files from websockify. 710eb674a5 fix: Correctly pass extended public keys to group moderation code. 021db7031c refactor: Use `struct`s for extended public/secret keys. a1e999fd80 chore: Compile libsodium reference implementation with compcert. fbe3c19cf5 cleanup: correct a few nullable annotations 623e3ee5c3 cleanup: Don't use `memcpy` to cast arbitrary `struct`s to `uint8_t[]`. c71567dc18 fix: Pass array, not array pointer, to `memcmp`. 9b46a08144 cleanup: Never pass `void*` directly to `memcpy`. 5d7b7a7bbc refactor: Use tox rng to seed the keypair generation. 961891d568 cleanup: Small improvements found by PVS Studio. 8201019f0d chore: Disable NGC saving by default, enable through Tox_Options. 5dd9ee3f65 cleanup: Replace pointer arithmetic with explicit `&arr[i]`. ca4606d49d refactor: Use strong typedef for NGC peer id. 442213b722 cleanup: Simplify custom packet length check in NGC. 08d3393def fix: Correct a few potential null derefs in bootstrap daemon. b9877b32b0 fix: Add missing memunlock of local variable when it goes out of scope. dab5fe44b9 fix: Zero out stack-allocated secret key before return. f058103299 refactor: Make prune_gc_sanctions_list more obviously correct. 3ba7a0dec9 docs: Add static analysis tool list to README. 8d0811a0f3 docs: Run prettier-markdown on markdown files. 969e3a2bfc refactor: Fix network test not using the strong typedef 93c83fbc7c refactor: Use strong typedef instead of struct for `Socket`. 9fe18b176f fix: Fix some false positive from PVS Studio. 7c44379ccb cleanup: Check that WINXP macro exists before comparing it. 5c93231bef refactor: Make tox mutex non-recursive. aacff73939 docs: Fix up doxyfile. d55fc85ff5 docs: Add more documentation to crypto_core. 5bdaaaedb6 refactor: Remove `Tox *` from `tox_dispatch`. e202341e76 refactor: Don't rely on tox_dispatch passing tox in tests. 34df938f52 chore: Use C++ mode for clang-tidy. 8b05296a78 chore: Check that both gtest and gmock exist for tests. 42010660e1 test: Add slimcc compiler compatibility test. b473630321 chore: Add some comments to the astyle config. b7404f24f6 cleanup: Remove implicit bool conversions. 4e2dba4d9f chore: Reformat sources with astyle. 4359e3a6bc chore: Rename C++ headers to .hh suffixes. 0c05566e58 cleanup: Further `#include` cleanups. 8d29935b7a chore: Only check the bootstrap daemon checksum on release. f70e588bc6 cleanup: Add more `const` where possible. 511bfe39c8 cleanup: Use Bazel modules to enforce proper `#include` hygiene. 1710a0d091 refactor: Move pack/unpack `IP_Port` from DHT into network module. a975943564 chore: Really fix coverage docker image build. c08409390f chore: Fix post-submit coverage image. 39aadf8922 fix: Don't use `memcmp` to compare `IP_Port`s. d94246a906 fix: partially fix a bug that prevented group part messages from sending. eeaa039222 chore: Fix rpm build; add a CI check for it. 8328449c1a chore: Speed up docker builds a bit by reducing layer count. d6d67d56f3 cleanup: Add `const` where possible in auto tests. 6aa9e6850d cleanup: Minor cleanup of event unpack code. bdf460a3a9 refactor: Rename `system_{memory,...}` to `os_{memory,...}`. 203e1af81e fix: a few off by one errors in group autotests 5c093c4888 cleanup: Remove all uses of `SIZEOF_VLA`. 662c2140f3 test: Add goblint static analyser. 8f07755834 cleanup: Use `memzero(x, s)` instead of `memset(x, 0, s)`. a7258e40cf cleanup: Use explicit 0 instead of `PACKET_ID_PADDING`. 6370d0f15d cleanup: Expand the `Tox_Options` accessor macros. 14a1a0b9bd cleanup: Remove plan9 support. a05dccad13 test: Add a simple new/delete test for Tox. 1cdcf938b9 cleanup: Add comment after every `#endif`. ba99d4dc4b test: Fix comment I broke in the events test PR. e07248debb refactor: Migrate auto_tests to new events API. bdd42b5452 refactor: Add common msgpack array packer with callback. 3c659f5288 cleanup: Rename group to conference in groupav documentation. 89957be230 cleanup: Ensure handler params are named after callback params. c650d9d345 refactor: Pass `this` pointer as first param to s11n callbacks. e7fb91ddb8 refactor: Allow NULL pointers for byte arrays in events. 5e2c8cabc1 cleanup: make some improvements to group moderation test 259de4867e cleanup: Remove `bin_pack_{new,free}`. 21a8ff5895 cleanup: skip a do_gc iteration before removing peers marked for deletion 16809dc36e feat: Add dht_get_nodes_response event to the events system. git-subtree-dir: external/toxcore/c-toxcore git-subtree-split: b03b5712720de9a9901ea12fd741f177327a7021
334 lines
13 KiB
C++
334 lines
13 KiB
C++
/** @file
|
|
* @brief Generates a valid input for e2e_fuzz_test.
|
|
*
|
|
* This bootstraps 2 toxes tox1 and tox2, adds tox1 as tox2's friend, waits for
|
|
* the friend request, then tox1 adds tox2 in response, waits for the friend to
|
|
* come online, sends a 2-message exchange, and waits for the read receipt.
|
|
*
|
|
* All random inputs and network traffic is recorded and dumped to files at the
|
|
* end. This can then be fed to e2e_fuzz_test for replay (only of tox1) and
|
|
* further code path exploration using fuzzer mutations.
|
|
*
|
|
* We write 2 files: an init file that contains all the inputs needed to reach
|
|
* the "friend online" state, and a smaller file containing things to mutate
|
|
* once the tox instance is in that state. This allows for more specific
|
|
* exploration of code paths starting from "friend is online". DHT and onion
|
|
* packet parsing is explored more in bootstrap_fuzz_test.
|
|
*
|
|
* Usage:
|
|
*
|
|
* bazel build //c-toxcore/testing/fuzzing:protodump && \
|
|
* bazel-bin/c-toxcore/testing/fuzzing/protodump
|
|
*/
|
|
#include <array>
|
|
#include <cassert>
|
|
#include <cstdio>
|
|
#include <cstring>
|
|
#include <fstream>
|
|
#include <memory>
|
|
|
|
#include "../../toxcore/tox.h"
|
|
#include "../../toxcore/tox_dispatch.h"
|
|
#include "../../toxcore/tox_events.h"
|
|
#include "../../toxcore/tox_private.h"
|
|
#include "../../toxcore/tox_struct.h"
|
|
#include "../../toxcore/util.h"
|
|
#include "fuzz_support.hh"
|
|
|
|
namespace {
|
|
|
|
/** @brief Number of messages to exchange between tox1 and tox2.
|
|
*
|
|
* The higher this number, the more room we give the fuzzer to mutate the
|
|
* exchange into something more interesting. If it's too high, the fuzzer will
|
|
* be slow.
|
|
*/
|
|
constexpr uint32_t MESSAGE_COUNT = 5;
|
|
|
|
struct State {
|
|
Tox *tox;
|
|
uint32_t done;
|
|
};
|
|
|
|
void setup_callbacks(Tox_Dispatch *dispatch)
|
|
{
|
|
tox_events_callback_conference_connected(
|
|
dispatch, [](const Tox_Event_Conference_Connected *event, void *user_data) {
|
|
assert(event == nullptr);
|
|
});
|
|
tox_events_callback_conference_connected(
|
|
dispatch, [](const Tox_Event_Conference_Connected *event, void *user_data) {
|
|
assert(event == nullptr);
|
|
});
|
|
tox_events_callback_conference_invite(
|
|
dispatch, [](const Tox_Event_Conference_Invite *event, void *user_data) {
|
|
assert(event == nullptr);
|
|
});
|
|
tox_events_callback_conference_message(
|
|
dispatch, [](const Tox_Event_Conference_Message *event, void *user_data) {
|
|
assert(event == nullptr);
|
|
});
|
|
tox_events_callback_conference_peer_list_changed(
|
|
dispatch, [](const Tox_Event_Conference_Peer_List_Changed *event, void *user_data) {
|
|
assert(event == nullptr);
|
|
});
|
|
tox_events_callback_conference_peer_name(
|
|
dispatch, [](const Tox_Event_Conference_Peer_Name *event, void *user_data) {
|
|
assert(event == nullptr);
|
|
});
|
|
tox_events_callback_conference_title(dispatch,
|
|
[](const Tox_Event_Conference_Title *event, void *user_data) { assert(event == nullptr); });
|
|
tox_events_callback_file_chunk_request(
|
|
dispatch, [](const Tox_Event_File_Chunk_Request *event, void *user_data) {
|
|
assert(event == nullptr);
|
|
});
|
|
tox_events_callback_file_recv(dispatch,
|
|
[](const Tox_Event_File_Recv *event, void *user_data) { assert(event == nullptr); });
|
|
tox_events_callback_file_recv_chunk(dispatch,
|
|
[](const Tox_Event_File_Recv_Chunk *event, void *user_data) { assert(event == nullptr); });
|
|
tox_events_callback_file_recv_control(
|
|
dispatch, [](const Tox_Event_File_Recv_Control *event, void *user_data) {
|
|
assert(event == nullptr);
|
|
});
|
|
tox_events_callback_friend_connection_status(
|
|
dispatch, [](const Tox_Event_Friend_Connection_Status *event, void *user_data) {
|
|
State *state = static_cast<State *>(user_data);
|
|
// OK: friend came online.
|
|
const uint32_t friend_number
|
|
= tox_event_friend_connection_status_get_friend_number(event);
|
|
assert(friend_number == 0);
|
|
const uint8_t message = 'A';
|
|
Tox_Err_Friend_Send_Message err;
|
|
tox_friend_send_message(
|
|
state->tox, friend_number, TOX_MESSAGE_TYPE_NORMAL, &message, 1, &err);
|
|
assert(err == TOX_ERR_FRIEND_SEND_MESSAGE_OK);
|
|
});
|
|
tox_events_callback_friend_lossless_packet(
|
|
dispatch, [](const Tox_Event_Friend_Lossless_Packet *event, void *user_data) {
|
|
assert(event == nullptr);
|
|
});
|
|
tox_events_callback_friend_lossy_packet(
|
|
dispatch, [](const Tox_Event_Friend_Lossy_Packet *event, void *user_data) {
|
|
assert(event == nullptr);
|
|
});
|
|
tox_events_callback_friend_message(
|
|
dispatch, [](const Tox_Event_Friend_Message *event, void *user_data) {
|
|
State *state = static_cast<State *>(user_data);
|
|
const uint32_t friend_number = tox_event_friend_message_get_friend_number(event);
|
|
assert(friend_number == 0);
|
|
const uint32_t message_length = tox_event_friend_message_get_message_length(event);
|
|
assert(message_length == 1);
|
|
const uint8_t *message = tox_event_friend_message_get_message(event);
|
|
const uint8_t reply = message[0] + 1;
|
|
Tox_Err_Friend_Send_Message err;
|
|
tox_friend_send_message(
|
|
state->tox, friend_number, TOX_MESSAGE_TYPE_NORMAL, &reply, 1, &err);
|
|
assert(err == TOX_ERR_FRIEND_SEND_MESSAGE_OK);
|
|
});
|
|
tox_events_callback_friend_name(
|
|
dispatch, [](const Tox_Event_Friend_Name *event, void *user_data) {
|
|
const uint32_t friend_number = tox_event_friend_name_get_friend_number(event);
|
|
assert(friend_number == 0);
|
|
});
|
|
tox_events_callback_friend_read_receipt(
|
|
dispatch, [](const Tox_Event_Friend_Read_Receipt *event, void *user_data) {
|
|
State *state = static_cast<State *>(user_data);
|
|
const uint32_t friend_number = tox_event_friend_read_receipt_get_friend_number(event);
|
|
assert(friend_number == 0);
|
|
const uint32_t message_id = tox_event_friend_read_receipt_get_message_id(event);
|
|
state->done = std::max(state->done, message_id);
|
|
});
|
|
tox_events_callback_friend_request(
|
|
dispatch, [](const Tox_Event_Friend_Request *event, void *user_data) {
|
|
State *state = static_cast<State *>(user_data);
|
|
Tox_Err_Friend_Add err;
|
|
tox_friend_add_norequest(
|
|
state->tox, tox_event_friend_request_get_public_key(event), &err);
|
|
assert(err == TOX_ERR_FRIEND_ADD_OK || err == TOX_ERR_FRIEND_ADD_OWN_KEY
|
|
|| err == TOX_ERR_FRIEND_ADD_ALREADY_SENT
|
|
|| err == TOX_ERR_FRIEND_ADD_BAD_CHECKSUM);
|
|
});
|
|
tox_events_callback_friend_status(
|
|
dispatch, [](const Tox_Event_Friend_Status *event, void *user_data) {
|
|
const uint32_t friend_number = tox_event_friend_status_get_friend_number(event);
|
|
assert(friend_number == 0);
|
|
});
|
|
tox_events_callback_friend_status_message(
|
|
dispatch, [](const Tox_Event_Friend_Status_Message *event, void *user_data) {
|
|
const uint32_t friend_number = tox_event_friend_status_message_get_friend_number(event);
|
|
assert(friend_number == 0);
|
|
});
|
|
tox_events_callback_friend_typing(
|
|
dispatch, [](const Tox_Event_Friend_Typing *event, void *user_data) {
|
|
const uint32_t friend_number = tox_event_friend_typing_get_friend_number(event);
|
|
assert(friend_number == 0);
|
|
assert(!tox_event_friend_typing_get_typing(event));
|
|
});
|
|
tox_events_callback_self_connection_status(
|
|
dispatch, [](const Tox_Event_Self_Connection_Status *event, void *user_data) {
|
|
// OK: we got connected.
|
|
});
|
|
}
|
|
|
|
void dump(std::vector<uint8_t> recording, const char *filename)
|
|
{
|
|
std::printf("%zu bytes: %s\n", recording.size(), filename);
|
|
std::ofstream(filename, std::ios::binary)
|
|
.write(reinterpret_cast<const char *>(recording.data()), recording.size());
|
|
}
|
|
|
|
void RecordBootstrap(const char *init, const char *bootstrap)
|
|
{
|
|
Record_System::Global global;
|
|
|
|
Tox_Options *opts = tox_options_new(nullptr);
|
|
assert(opts != nullptr);
|
|
|
|
tox_options_set_local_discovery_enabled(opts, false);
|
|
|
|
tox_options_set_log_callback(opts,
|
|
[](Tox *tox, Tox_Log_Level level, const char *file, uint32_t line, const char *func,
|
|
const char *message, void *user_data) {
|
|
// Log to stdout.
|
|
std::printf("[%s] %c %s:%d(%s): %s\n", static_cast<Record_System *>(user_data)->name_,
|
|
tox_log_level_name(level), file, line, func, message);
|
|
});
|
|
|
|
Tox_Err_New error_new;
|
|
|
|
Record_System sys1(global, 4, "tox1"); // fair dice roll
|
|
tox_options_set_log_user_data(opts, &sys1);
|
|
tox_options_set_operating_system(opts, sys1.sys.get());
|
|
Tox *tox1 = tox_new(opts, &error_new);
|
|
assert(tox1 != nullptr);
|
|
assert(error_new == TOX_ERR_NEW_OK);
|
|
std::array<uint8_t, TOX_ADDRESS_SIZE> address1;
|
|
tox_self_get_address(tox1, address1.data());
|
|
std::array<uint8_t, TOX_PUBLIC_KEY_SIZE> pk1;
|
|
tox_self_get_public_key(tox1, pk1.data());
|
|
std::array<uint8_t, TOX_PUBLIC_KEY_SIZE> dht_key1;
|
|
tox_self_get_dht_id(tox1, dht_key1.data());
|
|
|
|
Record_System sys2(global, 5, "tox2"); // unfair dice roll
|
|
tox_options_set_log_user_data(opts, &sys2);
|
|
tox_options_set_operating_system(opts, sys2.sys.get());
|
|
Tox *tox2 = tox_new(opts, &error_new);
|
|
assert(tox2 != nullptr);
|
|
assert(error_new == TOX_ERR_NEW_OK);
|
|
std::array<uint8_t, TOX_ADDRESS_SIZE> address2;
|
|
tox_self_get_address(tox2, address2.data());
|
|
std::array<uint8_t, TOX_PUBLIC_KEY_SIZE> pk2;
|
|
tox_self_get_public_key(tox2, pk2.data());
|
|
std::array<uint8_t, TOX_PUBLIC_KEY_SIZE> dht_key2;
|
|
tox_self_get_dht_id(tox2, dht_key2.data());
|
|
|
|
assert(address1 != address2);
|
|
assert(pk1 != pk2);
|
|
assert(dht_key1 != dht_key2);
|
|
|
|
tox_options_free(opts);
|
|
|
|
const uint16_t port = tox_self_get_udp_port(tox1, nullptr);
|
|
|
|
const bool udp_success = tox_bootstrap(tox2, "127.0.0.2", port, dht_key1.data(), nullptr);
|
|
assert(udp_success);
|
|
|
|
tox_events_init(tox1);
|
|
tox_events_init(tox2);
|
|
|
|
Tox_Dispatch *dispatch = tox_dispatch_new(nullptr);
|
|
assert(dispatch != nullptr);
|
|
setup_callbacks(dispatch);
|
|
|
|
State state1 = {tox1, 0};
|
|
State state2 = {tox2, 0};
|
|
|
|
const auto iterate = [&](uint8_t clock_increment) {
|
|
Tox_Err_Events_Iterate error_iterate;
|
|
Tox_Events *events;
|
|
|
|
events = tox_events_iterate(tox1, true, &error_iterate);
|
|
assert(tox_events_equal(sys1.sys.get(), events, events));
|
|
tox_dispatch_invoke(dispatch, events, &state1);
|
|
tox_events_free(events);
|
|
|
|
events = tox_events_iterate(tox2, true, &error_iterate);
|
|
assert(tox_events_equal(sys2.sys.get(), events, events));
|
|
tox_dispatch_invoke(dispatch, events, &state2);
|
|
tox_events_free(events);
|
|
|
|
// Move the clock forward a decent amount so all the time-based checks
|
|
// trigger more quickly.
|
|
sys1.clock += clock_increment;
|
|
sys2.clock += clock_increment;
|
|
|
|
if (Fuzz_Data::DEBUG) {
|
|
printf("tox1: rng: %d (for clock)\n", clock_increment);
|
|
printf("tox2: rng: %d (for clock)\n", clock_increment);
|
|
}
|
|
sys1.push(clock_increment);
|
|
sys2.push(clock_increment);
|
|
};
|
|
|
|
while (tox_self_get_connection_status(tox1) == TOX_CONNECTION_NONE
|
|
|| tox_self_get_connection_status(tox2) == TOX_CONNECTION_NONE) {
|
|
if (Fuzz_Data::DEBUG) {
|
|
std::printf("tox1: %d, tox2: %d\n", tox_self_get_connection_status(tox1),
|
|
tox_self_get_connection_status(tox2));
|
|
}
|
|
iterate(System::BOOTSTRAP_ITERATION_INTERVAL);
|
|
}
|
|
|
|
std::printf("toxes are online\n");
|
|
|
|
const uint8_t msg = 'A';
|
|
const uint32_t friend_number = tox_friend_add(tox2, address1.data(), &msg, 1, nullptr);
|
|
assert(friend_number == 0);
|
|
|
|
while (tox_friend_get_connection_status(tox2, friend_number, nullptr) == TOX_CONNECTION_NONE
|
|
|| tox_friend_get_connection_status(tox1, 0, nullptr) == TOX_CONNECTION_NONE) {
|
|
if (Fuzz_Data::DEBUG) {
|
|
std::printf("tox1: %d, tox2: %d, tox1 -> tox2: %d, tox2 -> tox1: %d\n",
|
|
tox_self_get_connection_status(tox1), tox_self_get_connection_status(tox2),
|
|
tox_friend_get_connection_status(tox1, 0, nullptr),
|
|
tox_friend_get_connection_status(tox2, 0, nullptr));
|
|
}
|
|
iterate(System::BOOTSTRAP_ITERATION_INTERVAL);
|
|
}
|
|
|
|
std::printf("tox clients connected\n");
|
|
|
|
dump(sys1.take_recording(), init);
|
|
|
|
while (state1.done < MESSAGE_COUNT && state2.done < MESSAGE_COUNT) {
|
|
if (Fuzz_Data::DEBUG) {
|
|
std::printf("tox1: %d, tox2: %d, tox1 -> tox2: %d, tox2 -> tox1: %d\n",
|
|
tox_self_get_connection_status(tox1), tox_self_get_connection_status(tox2),
|
|
tox_friend_get_connection_status(tox1, 0, nullptr),
|
|
tox_friend_get_connection_status(tox2, 0, nullptr));
|
|
}
|
|
iterate(System::MESSAGE_ITERATION_INTERVAL);
|
|
}
|
|
|
|
std::printf("test complete\n");
|
|
|
|
tox_dispatch_free(dispatch);
|
|
tox_kill(tox2);
|
|
tox_kill(tox1);
|
|
|
|
dump(sys1.recording(), bootstrap);
|
|
}
|
|
|
|
}
|
|
|
|
int main(int argc, char *argv[])
|
|
{
|
|
const char *init = "tools/toktok-fuzzer/init/e2e_fuzz_test.dat";
|
|
const char *bootstrap = "tools/toktok-fuzzer/corpus/e2e_fuzz_test/bootstrap.dat";
|
|
if (argc == 3) {
|
|
init = argv[1];
|
|
bootstrap = argv[2];
|
|
}
|
|
RecordBootstrap(init, bootstrap);
|
|
}
|