-
Type:
Task
-
Resolution: Unresolved
-
Priority:
Major - P3
-
None
-
Affects Version/s: None
-
Component/s: None
-
None
-
Not Needed
-
None
-
None
-
None
-
None
-
None
-
None
-
None
Queryable Encryption moves trust, and hence threat surface, from MongoDB Server to applications. Thus, the security of user data depends on the integrity of libmongocrypt. We should ensure that libmongocrypt can resist adversarial inputs provided by MongoDB Server.
To achieve this, we should introduce new fuzzer tests which generate adversarial inputs, and validates that libmongocrypt tolerates them.
- is duplicated by
-
MONGOCRYPT-119 Add fuzz testing to libmongocrypt
-
- Closed
-
- is related to
-
MONGOCRYPT-186 Implement entry points suitable for libfuzzer
-
- Backlog
-