qemu with hax to log dma reads & writes
jcs.org/2018/11/12/vfio
1QEMU_PROG_FUZZ=qemu-fuzz-$(TARGET_NAME)$(EXESUF)
2
3fuzz-obj-y += tests/qtest/libqtest.o
4fuzz-obj-y += $(libqos-obj-y)
5fuzz-obj-y += tests/qtest/fuzz/fuzz.o # Fuzzer skeleton
6fuzz-obj-y += tests/qtest/fuzz/fork_fuzz.o
7fuzz-obj-y += tests/qtest/fuzz/qos_fuzz.o
8
9# Targets
10fuzz-obj-y += tests/qtest/fuzz/i440fx_fuzz.o
11fuzz-obj-y += tests/qtest/fuzz/virtio_net_fuzz.o
12fuzz-obj-y += tests/qtest/fuzz/virtio_scsi_fuzz.o
13
14FUZZ_CFLAGS += -I$(SRC_PATH)/tests -I$(SRC_PATH)/tests/qtest
15
16# Linker Script to force coverage-counters into known regions which we can mark
17# shared
18FUZZ_LDFLAGS += -Xlinker -T$(SRC_PATH)/tests/qtest/fuzz/fork_fuzz.ld