Skip to content

Commit

Permalink
bndiv fuzzer: move new and free calls to the init and cleanup function.
Browse files Browse the repository at this point in the history
Reviewed-by: Rich Salz <[email protected]>
GH: openssl#2023
  • Loading branch information
kroeckx committed Dec 2, 2016
1 parent 7d22cce commit 8087bcb
Showing 1 changed file with 20 additions and 14 deletions.
34 changes: 20 additions & 14 deletions fuzz/bndiv.c
Original file line number Diff line number Diff line change
Expand Up @@ -17,32 +17,32 @@
#include <openssl/bn.h>
#include "fuzzer.h"

static BN_CTX *ctx;
static BIGNUM *b1;
static BIGNUM *b2;
static BIGNUM *b3;
static BIGNUM *b4;
static BIGNUM *b5;

int FuzzerInitialize(int *argc, char ***argv)
{
b1 = BN_new();
b2 = BN_new();
b3 = BN_new();
b4 = BN_new();
b5 = BN_new();
ctx = BN_CTX_new();

return 1;
}

int FuzzerTestOneInput(const uint8_t *buf, size_t len)
{
static BN_CTX *ctx;
static BIGNUM *b1;
static BIGNUM *b2;
static BIGNUM *b3;
static BIGNUM *b4;
static BIGNUM *b5;
int success = 0;
size_t l1 = 0, l2 = 0;
/* s1 and s2 will be the signs for b1 and b2. */
int s1 = 0, s2 = 0;

if (ctx == NULL) {
b1 = BN_new();
b2 = BN_new();
b3 = BN_new();
b4 = BN_new();
b5 = BN_new();
ctx = BN_CTX_new();
}
/* We are going to split the buffer in two, sizes l1 and l2, giving b1 and
* b2.
*/
Expand Down Expand Up @@ -110,4 +110,10 @@ int FuzzerTestOneInput(const uint8_t *buf, size_t len)

void FuzzerCleanup(void)
{
BN_free(b1);
BN_free(b2);
BN_free(b3);
BN_free(b4);
BN_free(b5);
BN_CTX_free(ctx);
}

0 comments on commit 8087bcb

Please sign in to comment.