Creating test case using base program. Added an environment variable read to the function definition. Completed injection. UNSPECIFIED UNSPECIFIED $SS_TC_ROOT/$SS_TC_INSTALL/bin/tree make install CC="$SS_CC" LD="$SS_LNK" CFLAGS="$CFLAGS" CPPFLAGS="$CPPFLAGS" LDFLAGS="$LDFLAGS" prefix="$SS_TC_ROOT/$SS_TC_INSTALL" LIBS="$LIBS" Has a buffer declared on the stack and populated from input data via strncpy. If input begins with a lower case letter oor a higher ascii value, it will crash NONE AAAAAAAAAAAAAAAAAAAAAAA $SS_TC_ROOT/logs/execute/lttng $SS_TC_DEPS/lib64/liblttng-stonesoup-c.so:$SS_TC_DEPS/lib64/liblttng-ust-fork.so 1 --charset ASCII --sort=name -n -q input/good-01 STDOUT-REPORT-01 AND STDOUT-CONTENT-LENGTH-01 AND NOT TIMEOUT AND NOT CONTROLLED_EXIT 5 directories, 10 files SIMILAR DOES_NOT_RETURN CONTROLLED_EXIT Has a buffer declared on the stack and populated from input data via strncpy. If input begins with a lower case letter oor a higher ascii value, it will crash NONE Hello World! $SS_TC_ROOT/logs/execute/lttng $SS_TC_DEPS/lib64/liblttng-stonesoup-c.so:$SS_TC_DEPS/lib64/liblttng-ust-fork.so 1 --charset ASCII --sort=name -n -q -L 2 input/good-02 STDOUT-REPORT-02 AND STDOUT-CONTENT-LENGTH-02 AND NOT TIMEOUT AND NOT CONTROLLED_EXIT 5 directories, 4 files SIMILAR DOES_NOT_RETURN CONTROLLED_EXIT Has a buffer declared on the stack and populated from input data via strncpy. If input begins with a lower case letter oor a higher ascii value, it will crash NONE many characters are good, but most are bad $SS_TC_ROOT/logs/execute/lttng $SS_TC_DEPS/lib64/liblttng-stonesoup-c.so:$SS_TC_DEPS/lib64/liblttng-ust-fork.so 1 --charset ASCII --sort=name -n -q -J input/good-03 STDOUT-REPORT-03 AND STDOUT-CONTENT-LENGTH-03 AND NOT TIMEOUT AND NOT CONTROLLED_EXIT {"type":"report","directories":7,"files":367} SIMILAR DOES_NOT_RETURN CONTROLLED_EXIT Has a buffer declared on the stack and populated from input data via strncpy. If input begins with a lower case letter oor a higher ascii value, it will crash NONE AAAAAAAAAAAAAAAAAAAAAAA $SS_TC_ROOT/logs/execute/lttng $SS_TC_DEPS/lib64/liblttng-stonesoup-c.so:$SS_TC_DEPS/lib64/liblttng-ust-fork.so 1 --charset ASCII --sort=name -n -q -P "test*" -F input/good-03 STDOUT-REPORT-04 AND STDOUT-CONTENT-LENGTH-04 AND NOT TIMEOUT AND NOT CONTROLLED_EXIT 7 directories, 62 files SIMILAR DOES_NOT_RETURN CONTROLLED_EXIT Has a buffer declared on the stack and populated from input data via strncpy. If input begins with a lower case letter oor a higher ascii value, it will crash NONE Hello World! $SS_TC_ROOT/logs/execute/lttng $SS_TC_DEPS/lib64/liblttng-stonesoup-c.so:$SS_TC_DEPS/lib64/liblttng-ust-fork.so 1 --charset ASCII --sort=name -n -q -H "" input/good-01 STDOUT-REPORT-05 AND STDOUT-CONTENT-LENGTH-05 AND NOT TIMEOUT AND NOT CONTROLLED_EXIT 5 directories, 10 files SIMILAR DOES_NOT_RETURN CONTROLLED_EXIT Has a buffer declared on the stack and populated from input data via strncpy. If input begins with a lower case letter oor a higher ascii value, it will crash DOS_UNCONTROLLED_EXIT starting with an s is bad $SS_TC_ROOT/logs/execute/lttng $SS_TC_DEPS/lib64/liblttng-stonesoup-c.so:$SS_TC_DEPS/lib64/liblttng-ust-fork.so 1 --charset ASCII --sort=name -n -q -L 2 input/good-02 weakness_started_jz2xopvS7WYv6T5b9LPg AND ((NOT PERFORMER AND (segfault_code_fpzjQHvgHy OR segfault_code_OrBdy1kz2I OR segfault_code_bvuAUcATzO OR segfault_code_VtBo5CV2mG OR segfault_code_n5T7PlQ4Aj OR segfault_msg_EKjfIa4xWW OR illegal_inst_msg_KqSxU74fBe OR segfault_glibc_QbEaj3w8wp) AND NOT timeout_iXCdBsP4Bd) or (PERFORMER AND NOT ((segfault_code_fpzjQHvgHy OR segfault_code_OrBdy1kz2I OR segfault_code_bvuAUcATzO OR segfault_code_VtBo5CV2mG OR segfault_code_n5T7PlQ4Aj OR segfault_msg_EKjfIa4xWW OR illegal_inst_msg_KqSxU74fBe OR segfault_glibc_QbEaj3w8wp) OR timeout_iXCdBsP4Bd))) (NOT PERFORMER AND (segfault_code_fpzjQHvgHy OR segfault_code_OrBdy1kz2I OR segfault_code_bvuAUcATzO OR segfault_code_VtBo5CV2mG OR segfault_code_n5T7PlQ4Aj OR segfault_msg_EKjfIa4xWW OR illegal_inst_msg_KqSxU74fBe OR segfault_glibc_QbEaj3w8wp) AND NOT timeout_iXCdBsP4Bd) or (PERFORMER AND NOT ((segfault_code_fpzjQHvgHy OR segfault_code_OrBdy1kz2I OR segfault_code_bvuAUcATzO OR segfault_code_VtBo5CV2mG OR segfault_code_n5T7PlQ4Aj OR segfault_msg_EKjfIa4xWW OR illegal_inst_msg_KqSxU74fBe OR segfault_glibc_QbEaj3w8wp) OR timeout_iXCdBsP4Bd)) DOES_NOT_RETURN CONTROLLED_EXIT CONTINUED_EXECUTION None 132 None 134 None 135 None 136 None 139 None Segmentation fault None Illegal instruction None glibc detected None stonesoup_trace:weakness_start Has a buffer declared on the stack and populated from input data via strncpy. If input begins with a lower case letter oor a higher ascii value, it will crash DOS_UNCONTROLLED_EXIT zebras have stripes $SS_TC_ROOT/logs/execute/lttng $SS_TC_DEPS/lib64/liblttng-stonesoup-c.so:$SS_TC_DEPS/lib64/liblttng-ust-fork.so 1 --charset ASCII --sort=name -n -q -J input/good-03 weakness_started_IwvY08qN6Gyg4jE5vKr3 AND ((NOT PERFORMER AND (segfault_code_FojIlt2ukh OR segfault_code_uwoi1jvGxl OR segfault_code_qOOfJencFi OR segfault_code_A6swIiIkYS OR segfault_code_ytU7WQKPTy OR segfault_msg_YM26mkwdy0 OR illegal_inst_msg_4Tk28txv16 OR segfault_glibc_Sk2NcLTdRb) AND NOT timeout_If58DGiL8S) or (PERFORMER AND NOT ((segfault_code_FojIlt2ukh OR segfault_code_uwoi1jvGxl OR segfault_code_qOOfJencFi OR segfault_code_A6swIiIkYS OR segfault_code_ytU7WQKPTy OR segfault_msg_YM26mkwdy0 OR illegal_inst_msg_4Tk28txv16 OR segfault_glibc_Sk2NcLTdRb) OR timeout_If58DGiL8S))) (NOT PERFORMER AND (segfault_code_FojIlt2ukh OR segfault_code_uwoi1jvGxl OR segfault_code_qOOfJencFi OR segfault_code_A6swIiIkYS OR segfault_code_ytU7WQKPTy OR segfault_msg_YM26mkwdy0 OR illegal_inst_msg_4Tk28txv16 OR segfault_glibc_Sk2NcLTdRb) AND NOT timeout_If58DGiL8S) or (PERFORMER AND NOT ((segfault_code_FojIlt2ukh OR segfault_code_uwoi1jvGxl OR segfault_code_qOOfJencFi OR segfault_code_A6swIiIkYS OR segfault_code_ytU7WQKPTy OR segfault_msg_YM26mkwdy0 OR illegal_inst_msg_4Tk28txv16 OR segfault_glibc_Sk2NcLTdRb) OR timeout_If58DGiL8S)) DOES_NOT_RETURN CONTROLLED_EXIT CONTINUED_EXECUTION None 132 None 134 None 135 None 136 None 139 None Segmentation fault None Illegal instruction None glibc detected None stonesoup_trace:weakness_start