I attempted to execute afl/afl++ on the program under test in Magma. Some unexpected issues occur with some of the programs.
In essence, no new seeds are produced in the queues directory throughout 24 hours of fuzzing, apart from the original seeds. The log illustrates that the fuzzing process repeatedly cycles through a single test case. Do you have any insights or suggestions regarding this? Thank you!
^[[1;93m[!] ^[[1;97mWARNING: ^[[0m^[[1;91mSome test cases look useless. Consider using a smaller set.^[[0m
^[[1;93m[!] ^[[1;97mWARNING: ^[[0mYou have lots of input files; try starting small.^[[0m
^[[1;92m[+] ^[[0mHere are some useful stats:
^[[1;90m Test case count : ^[[0m1 favored, 0 variable, 20 ignored, 21 total
^[[1;90m Bitmap range : ^[[0m138 to 138 bits (average: 138.00 bits)
^[[1;90m Exec timing : ^[[0m643 to 643 us (average: 603 us)
^[[0m
^[[1;94m[] ^[[0mNo -t option specified, so I'll use exec timeout of 20 ms.^[[0m
^[[1;92m[+] ^[[0mAll set and ready to roll!^[[0m
^[[1;94m[] ^[[0mEntering queue cycle 1.^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=100, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mEntering queue cycle 2.^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mEntering queue cycle 3.^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
^[[1;94m[*] ^[[0mFuzzing test case #0 (21 total, 0 uniq crashes found, perf_score=459, exec_us=643, hits=0, map=138)...^[[0m
Hi Adrian,
I attempted to execute afl/afl++ on the program under test in Magma. Some unexpected issues occur with some of the programs.
In essence, no new seeds are produced in the queues directory throughout 24 hours of fuzzing, apart from the original seeds. The log illustrates that the fuzzing process repeatedly cycles through a single test case. Do you have any insights or suggestions regarding this? Thank you!
libpng log: