oss-sec mailing list archives

Re: Go programming language invalid modular exponentiation result (Exp() in math/big pkg)


From: Michal Zalewski <lcamtuf () coredump cx>
Date: Wed, 22 Nov 2017 08:34:23 -0800

Is this fuzzer freely available?  I'd love to try it out on the bignum
support I added to the CHICKEN Scheme implementation for its upcoming
new major release (probably somewhere mid-2018).  Being able to release
it with a bit higher confidence in its correctness would be nice, as this
is almost all brand new code.

Not the same tool, but Hanno released a bignum fuzzer that found quite
a few issues back in the day:

https://github.com/hannob/bignum-fuzz/

/mz


Current thread: