14514f5e3Sopenharmony_ci/* 24514f5e3Sopenharmony_ci * Copyright (c) 2022 Huawei Device Co., Ltd. 34514f5e3Sopenharmony_ci * Licensed under the Apache License, Version 2.0 (the "License"); 44514f5e3Sopenharmony_ci * you may not use this file except in compliance with the License. 54514f5e3Sopenharmony_ci * You may obtain a copy of the License at 64514f5e3Sopenharmony_ci * 74514f5e3Sopenharmony_ci * http://www.apache.org/licenses/LICENSE-2.0 84514f5e3Sopenharmony_ci * 94514f5e3Sopenharmony_ci * Unless required by applicable law or agreed to in writing, software 104514f5e3Sopenharmony_ci * distributed under the License is distributed on an "AS IS" BASIS, 114514f5e3Sopenharmony_ci * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 124514f5e3Sopenharmony_ci * See the License for the specific language governing permissions and 134514f5e3Sopenharmony_ci * limitations under the License. 144514f5e3Sopenharmony_ci */ 154514f5e3Sopenharmony_ci 164514f5e3Sopenharmony_ci#include "snapshotserializedeserialize_fuzzer.h" 174514f5e3Sopenharmony_ci 184514f5e3Sopenharmony_ci#include "ecmascript/log_wrapper.h" 194514f5e3Sopenharmony_ci#include "ecmascript/object_factory.h" 204514f5e3Sopenharmony_ci#include "ecmascript/snapshot/mem/snapshot.h" 214514f5e3Sopenharmony_ci 224514f5e3Sopenharmony_ciusing namespace panda; 234514f5e3Sopenharmony_ciusing namespace panda::ecmascript; 244514f5e3Sopenharmony_ci 254514f5e3Sopenharmony_cinamespace OHOS { 264514f5e3Sopenharmony_ci void SnapshotSerializeDeserializeFuzzTest(const uint8_t* data, size_t size) 274514f5e3Sopenharmony_ci { 284514f5e3Sopenharmony_ci RuntimeOption option; 294514f5e3Sopenharmony_ci option.SetLogLevel(RuntimeOption::LOG_LEVEL::ERROR); 304514f5e3Sopenharmony_ci EcmaVM *vm = JSNApi::CreateJSVM(option); 314514f5e3Sopenharmony_ci { 324514f5e3Sopenharmony_ci JsiFastNativeScope scope(vm); 334514f5e3Sopenharmony_ci if (size <= 0) { 344514f5e3Sopenharmony_ci return; 354514f5e3Sopenharmony_ci } 364514f5e3Sopenharmony_ci auto factory = vm->GetFactory(); 374514f5e3Sopenharmony_ci JSHandle<TaggedArray> array = factory->NewTaggedArray(*data); 384514f5e3Sopenharmony_ci if (*data > 0) { 394514f5e3Sopenharmony_ci JSHandle<EcmaString> str = factory->NewFromStdString("str1"); 404514f5e3Sopenharmony_ci array->Set(vm->GetAssociatedJSThread(), 0, str.GetTaggedValue()); 414514f5e3Sopenharmony_ci } 424514f5e3Sopenharmony_ci const CString fileName = "snapshot"; 434514f5e3Sopenharmony_ci Snapshot snapshotSerialize(vm); 444514f5e3Sopenharmony_ci // serialize 454514f5e3Sopenharmony_ci snapshotSerialize.Serialize(*array, nullptr, fileName); 464514f5e3Sopenharmony_ci // deserialize 474514f5e3Sopenharmony_ci Snapshot snapshotDeserialize(vm); 484514f5e3Sopenharmony_ci snapshotDeserialize.Deserialize(SnapshotType::VM_ROOT, fileName); 494514f5e3Sopenharmony_ci // remove snapshot file if exist 504514f5e3Sopenharmony_ci std::remove(fileName.c_str()); 514514f5e3Sopenharmony_ci } 524514f5e3Sopenharmony_ci JSNApi::DestroyJSVM(vm); 534514f5e3Sopenharmony_ci } 544514f5e3Sopenharmony_ci} 554514f5e3Sopenharmony_ci 564514f5e3Sopenharmony_ci// Fuzzer entry point. 574514f5e3Sopenharmony_ciextern "C" int LLVMFuzzerTestOneInput(const uint8_t* data, size_t size) 584514f5e3Sopenharmony_ci{ 594514f5e3Sopenharmony_ci // Run your code on data. 604514f5e3Sopenharmony_ci OHOS::SnapshotSerializeDeserializeFuzzTest(data, size); 614514f5e3Sopenharmony_ci return 0; 624514f5e3Sopenharmony_ci}