• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1 /*
2  * Copyright (c) 2022 Huawei Device Co., Ltd.
3  * Licensed under the Apache License, Version 2.0 (the "License");
4  * you may not use this file except in compliance with the License.
5  * You may obtain a copy of the License at
6  *
7  *     http://www.apache.org/licenses/LICENSE-2.0
8  *
9  * Unless required by applicable law or agreed to in writing, software
10  * distributed under the License is distributed on an "AS IS" BASIS,
11  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12  * See the License for the specific language governing permissions and
13  * limitations under the License.
14  */
15 
16 #include "setshowname_fuzzer.h"
17 
18 #include <cstddef>
19 #include <cstdint>
20 #include <thread>
21 
22 #define private public
23 #include "addcoreservicetoken_fuzzer.h"
24 #include "core_service.h"
25 #include "core_service_stub.h"
26 #include "napi_util.h"
27 #include "string_ex.h"
28 #include "system_ability_definition.h"
29 #include "tel_event_handler.h"
30 #include "unistd.h"
31 
32 using namespace OHOS::Telephony;
33 namespace OHOS {
34 static bool g_isInited = false;
35 constexpr int32_t SLOT_NUM = 2;
36 
IsServiceInited()37 bool IsServiceInited()
38 {
39     if (!g_isInited) {
40         DelayedSingleton<CoreService>::GetInstance()->OnStart();
41         if (DelayedSingleton<CoreService>::GetInstance()->GetServiceRunningState() ==
42             static_cast<int32_t>(ServiceRunningState::STATE_RUNNING)) {
43             g_isInited = true;
44         }
45     }
46     return g_isInited;
47 }
48 
GetShowName(const uint8_t * data,size_t size)49 void GetShowName(const uint8_t *data, size_t size)
50 {
51     if (!IsServiceInited()) {
52         return;
53     }
54 
55     int32_t slotId = static_cast<int32_t>(*data % SLOT_NUM);
56     MessageParcel dataMessageParcel;
57     dataMessageParcel.WriteInt32(slotId);
58     dataMessageParcel.WriteBuffer(data, size);
59     dataMessageParcel.RewindRead(0);
60     MessageParcel reply;
61     DelayedSingleton<CoreService>::GetInstance()->OnGetShowName(dataMessageParcel, reply);
62 }
63 
GetSimSpn(const uint8_t * data,size_t size)64 void GetSimSpn(const uint8_t *data, size_t size)
65 {
66     if (!IsServiceInited()) {
67         return;
68     }
69 
70     int32_t slotId = static_cast<int32_t>(*data % SLOT_NUM);
71     MessageParcel dataMessageParcel;
72     dataMessageParcel.WriteInt32(slotId);
73     dataMessageParcel.WriteBuffer(data, size);
74     dataMessageParcel.RewindRead(0);
75     MessageParcel reply;
76     DelayedSingleton<CoreService>::GetInstance()->OnGetSimSpn(dataMessageParcel, reply);
77 }
78 
GetSimIccId(const uint8_t * data,size_t size)79 void GetSimIccId(const uint8_t *data, size_t size)
80 {
81     if (!IsServiceInited()) {
82         return;
83     }
84 
85     int32_t slotId = static_cast<int32_t>(*data % SLOT_NUM);
86     MessageParcel dataMessageParcel;
87     dataMessageParcel.WriteInt32(slotId);
88     dataMessageParcel.WriteBuffer(data, size);
89     dataMessageParcel.RewindRead(0);
90     MessageParcel reply;
91     DelayedSingleton<CoreService>::GetInstance()->OnGetSimIccId(dataMessageParcel, reply);
92 }
93 
GetIMSI(const uint8_t * data,size_t size)94 void GetIMSI(const uint8_t *data, size_t size)
95 {
96     if (!IsServiceInited()) {
97         return;
98     }
99 
100     int32_t slotId = static_cast<int32_t>(*data % SLOT_NUM);
101     MessageParcel dataMessageParcel;
102     dataMessageParcel.WriteInt32(slotId);
103     dataMessageParcel.WriteBuffer(data, size);
104     dataMessageParcel.RewindRead(0);
105     MessageParcel reply;
106     DelayedSingleton<CoreService>::GetInstance()->OnGetIMSI(dataMessageParcel, reply);
107 }
108 
IsSimActive(const uint8_t * data,size_t size)109 void IsSimActive(const uint8_t *data, size_t size)
110 {
111     if (!IsServiceInited()) {
112         return;
113     }
114 
115     int32_t slotId = static_cast<int32_t>(*data % SLOT_NUM);
116     MessageParcel dataMessageParcel;
117     dataMessageParcel.WriteInt32(slotId);
118     dataMessageParcel.WriteBuffer(data, size);
119     dataMessageParcel.RewindRead(0);
120     MessageParcel reply;
121     DelayedSingleton<CoreService>::GetInstance()->OnIsSimActive(dataMessageParcel, reply);
122 }
123 
SetShowName(const uint8_t * data,size_t size)124 void SetShowName(const uint8_t *data, size_t size)
125 {
126     if (!IsServiceInited()) {
127         return;
128     }
129     int32_t slotId = static_cast<int32_t>(*data % SLOT_NUM);
130     std::string message(reinterpret_cast<const char *>(data), size);
131     MessageParcel dataMessageParcel;
132     dataMessageParcel.WriteInt32(slotId);
133     dataMessageParcel.WriteString16(Str8ToStr16(message));
134     dataMessageParcel.RewindRead(0);
135     MessageParcel reply;
136     DelayedSingleton<CoreService>::GetInstance()->OnSetShowName(dataMessageParcel, reply);
137 }
138 
DoSomethingInterestingWithMyAPI(const uint8_t * data,size_t size)139 void DoSomethingInterestingWithMyAPI(const uint8_t *data, size_t size)
140 {
141     if (data == nullptr || size == 0) {
142         return;
143     }
144 
145     GetShowName(data, size);
146     GetSimSpn(data, size);
147     GetSimIccId(data, size);
148     GetIMSI(data, size);
149     IsSimActive(data, size);
150     SetShowName(data, size);
151     auto telRilManager = DelayedSingleton<CoreService>::GetInstance()->telRilManager_;
152     if (telRilManager == nullptr || telRilManager->handler_ == nullptr) {
153         return;
154     }
155     telRilManager->handler_->ClearFfrt(false);
156     telRilManager->handler_->queue_ = nullptr;
157     return;
158 }
159 } // namespace OHOS
160 
161 /* Fuzzer entry point */
LLVMFuzzerInitialize(int * argc,char *** argv)162 extern "C" int LLVMFuzzerInitialize(int *argc, char ***argv)
163 {
164     OHOS::AddCoreServiceTokenFuzzer token;
165     return 0;
166 }
167 
168 /* Fuzzer entry point */
LLVMFuzzerTestOneInput(const uint8_t * data,size_t size)169 extern "C" int LLVMFuzzerTestOneInput(const uint8_t *data, size_t size)
170 {
171     /* Run your code on data */
172     OHOS::DoSomethingInterestingWithMyAPI(data, size);
173     OHOS::DelayedSingleton<CoreService>::DestroyInstance();
174     return 0;
175 }
176