]> git.ipfire.org Git - thirdparty/krb5.git/commitdiff
Add cifuzz workflow for PR fuzzing 1350/head
authorArjun <pkillarjun@protonmail.com>
Tue, 4 Jun 2024 06:05:14 +0000 (11:35 +0530)
committerGreg Hudson <ghudson@mit.edu>
Fri, 7 Jun 2024 20:19:04 +0000 (16:19 -0400)
.github/workflows/cifuzz.yml [new file with mode: 0644]

diff --git a/.github/workflows/cifuzz.yml b/.github/workflows/cifuzz.yml
new file mode 100644 (file)
index 0000000..9d29aad
--- /dev/null
@@ -0,0 +1,38 @@
+name: CIFuzz
+
+on:
+    pull_request: {paths: [src/**, .github/workflows/build.yml]}
+
+permissions: {}
+jobs:
+    Fuzzing:
+        runs-on: ubuntu-latest
+        permissions:
+            security-events: write
+        steps:
+        - name: Build Fuzzers
+          id: build
+          uses: google/oss-fuzz/infra/cifuzz/actions/build_fuzzers@master
+          with:
+            oss-fuzz-project-name: 'krb5'
+            language: c
+        - name: Run Fuzzers
+          uses: google/oss-fuzz/infra/cifuzz/actions/run_fuzzers@master
+          with:
+            oss-fuzz-project-name: 'krb5'
+            language: c
+            fuzz-seconds: 300
+            output-sarif: true
+        - name: Upload Crash
+          uses: actions/upload-artifact@v3
+          if: failure() && steps.build.outcome == 'success'
+          with:
+            name: artifacts
+            path: ./out/artifacts
+        - name: Upload Sarif
+          if: always() && steps.build.outcome == 'success'
+          uses: github/codeql-action/upload-sarif@v2
+          with:
+            # Path to SARIF file relative to the root of the repository
+            sarif_file: cifuzz-sarif/results.sarif
+            checkout_path: cifuzz-sarif