You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Repository navigation
[test] add new fuzz targets for tbor KDF/HMAC/RSA crypto commands - #766
This target does not exercise KBKDF: it sends the same HkdfDerive request as fuzz_tbor_hkdf, whose handler always runs HKDF extract/expand. SP800-108 counter-HMAC KBKDF uses the distinct sp800_108_kdf path (fw/core/lib/src/ddi/mbor/kbkdf_derive.rs:73-80), so mapping label/context to salt/info only duplicates HKDF coverage and leaves the advertised KBKDF behavior unfuzzed. Add a real TBOR KBKDF command/selector, or remove/rename this target so it does not claim that coverage.
This success predicate rejects two valid permission sets: UnwrapKey also accepts encrypt+decrypt for RSA/RSA-CRT and derive for ECC (fw/core/lib/src/ddi/tbor/unwrap_key.rs:118-125). If Fuzzed produces either set, the firmware correctly succeeds but this target reports a crash. Classify every accepted usage group rather than only the canonical generated one.
import_rsa_key always calls GetUnwrappingKey, but this setup provisions that key only for Ephemeral, Local, and SecurityDomain. Session, Unspecified, and Internal therefore hit the helper's expect with PendingKeyGeneration before UnwrapKey or RsaModExp is fuzzed. Finalize the partition for every non-SecurityDomain case so both valid Session requests and invalid-scope rejection paths reach the commands under test.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Adds four new fuzz targets as well as a fix for a test issue found in fuzz_tbor_attest_key