1
    2
    3
    4
    5
    6
    7
    8
    9
   10
   11
   12
   13
   14
   15
   16
   17
   18
   19
   20
   21
   22
   23
   24
   25
   26
   27
   28
   29
   30
   31

content / common / input / actions_parser_fuzzer.cc [blame]

// Copyright 2022 The Chromium Authors
// Use of this source code is governed by a BSD-style license that can be
// found in the LICENSE file.

#include "content/common/input/actions_parser.h"

#include <stdint.h>

#include <optional>
#include <string_view>
#include <tuple>
#include <utility>

#include "base/json/json_reader.h"
#include "base/values.h"

extern "C" int LLVMFuzzerTestOneInput(const uint8_t* data, size_t size) {
  constexpr size_t kMaxInputSize = 100 * 1000;
  if (size > kMaxInputSize) {
    // To avoid spurious timeout and out-of-memory fuzz reports.
    return 0;
  }

  std::optional<base::Value> value = base::JSONReader::Read(
      std::string_view(reinterpret_cast<const char*>(data), size));
  if (!value)
    return 0;
  content::ActionsParser parser(std::move(*value));
  std::ignore = parser.Parse();
  return 0;
}