diff options
Diffstat (limited to 'testing/libfuzzer/pdf_font_fuzzer.cc')
-rw-r--r-- | testing/libfuzzer/pdf_font_fuzzer.cc | 33 |
1 files changed, 33 insertions, 0 deletions
diff --git a/testing/libfuzzer/pdf_font_fuzzer.cc b/testing/libfuzzer/pdf_font_fuzzer.cc new file mode 100644 index 0000000000..aed66613fa --- /dev/null +++ b/testing/libfuzzer/pdf_font_fuzzer.cc @@ -0,0 +1,33 @@ +// Copyright 2017 The PDFium Authors. All rights reserved. +// Use of this source code is governed by a BSD-style license that can be +// found in the LICENSE file. + +#include <cstring> +#include <memory> + +#include "public/cpp/fpdf_deleters.h" +#include "public/fpdf_edit.h" +#include "public/fpdfview.h" + +extern "C" int LLVMFuzzerTestOneInput(const uint8_t* data, size_t size) { + if (size < 2) + return 0; + + std::unique_ptr<void, FPDFDocumentDeleter> doc(FPDF_CreateNewDocument()); + std::unique_ptr<void, FPDFPageDeleter> page( + FPDFPage_New(doc.get(), 0, 612, 792)); + int font_type = data[0]; + FPDF_BOOL cid = data[1]; + data += 2; + size -= 2; + std::unique_ptr<void, FPDFFontDeleter> font( + FPDFText_LoadFont(doc.get(), data, size, font_type, cid)); + if (!font) + return 0; + + FPDF_PAGEOBJECT text_object = + FPDFPageObj_CreateTextObj(doc.get(), font.get(), 12.0f); + FPDFPage_InsertObject(page.get(), text_object); + FPDFPage_GenerateContent(page.get()); + return 0; +} |