Closed greek-stasia closed 9 months ago
certain fuzzing strategies have mechanisms to detect if ebpf programs ran successfully or not (e.g set a dummy value to a map entry).
If the program does not write these control values we mark them as "flaky" or that for any reason they did not run successfully https://github.com/google/buzzer/blob/main/pkg/strategies/parse_verifier/parse_verifier.go#L127
Are there ways to tie back coverage to an input(s)?
not yet, I am actually working on a code change for something somewhat similar.
Actually the coverage information is available as part of every run program response: https://github.com/google/buzzer/blob/main/proto/ebpf_fuzzer.proto#L58
Hi there! I keep getting:
program xxxx flaked
does this indicate a crash ?