Experiment with comparison tracing
Opened this issue · 0 comments
jryans commented
LibFuzzer supports a -use_cmp=1
option which relies and compiler instrumentation of comparison instructions (-fsanitize-coverage-trace-cmp
). Which should experiment with this.