* Fixes symbolic reentrancy example * Fix coverage Issue# 527 * Remove debug unused code * New solidity biased API and reporting * Updated examples to new api WIP * simple_mapping FIXED. new api * Simple transaction example added. msg.value can be symbolic now * Reentrancy symbolic now updated to new API + bugfixes * Doc and cleanups in evm assembler * EVMInstruction -> Instruction * cleanups * typo * deepcopy in Constant * Better EVM-asm api and doc * some docs * More evm asm docs * Initial seth in place refactor * Fix import * * typo * newline between text and param * similar phrasing to all the other flags * typo * typo * fix function name in comment * sphinx newline * documentation fixes * documentation fixes * refactors * EVMAssembler to EVMAsm * Fix evm @hook signature * EVMAsm * WIP seth doc * WIP move seth * seth moved to manticore module * Fixed DUP and typo * Slightly better evm reporting * review * review * Removed unfinished refactor * Various refactors. Auxiliar for calculating % coverage * Change report in examples * Detailed transactions and reporting accessible to the user2 * Fix on Expression Array * Some documentation * Get full ABI from solc compiler * evm/examples -> bugfixes * Clarify try/except blocks * Code review * Code review
40 lines
1.1 KiB
Python
40 lines
1.1 KiB
Python
from manticore.seth import ManticoreEVM
|
|
seth = ManticoreEVM()
|
|
#And now make the contract account to analyze
|
|
source_code = '''
|
|
pragma solidity ^0.4.15;
|
|
contract Overflow {
|
|
uint private sellerBalance=0;
|
|
|
|
function add(uint value) returns (bool){
|
|
sellerBalance += value; // complicated math with possible overflow
|
|
|
|
// possible auditor assert
|
|
assert(sellerBalance >= value);
|
|
}
|
|
}
|
|
'''
|
|
#Initialize user and contracts
|
|
user_account = seth.create_account(balance=1000)
|
|
contract_account = seth.solidity_create_contract(source_code, owner=user_account, balance=0)
|
|
|
|
#First add won't overflow uint256 representation
|
|
contract_account.add(seth.SValue)
|
|
|
|
#Potential overflow
|
|
contract_account.add(seth.SValue)
|
|
|
|
|
|
print "[+] There are %d reverted states now"% len(seth.final_state_ids)
|
|
for state_id in seth.final_state_ids:
|
|
print seth.report(state_id)
|
|
|
|
print "[+] There are %d alive states now"% len(seth.running_state_ids)
|
|
for state_id in seth.running_state_ids:
|
|
print seth.report(state_id)
|
|
|
|
print "[+] Global coverage: %x"% contract_account
|
|
print seth.coverage(contract_account)
|
|
|
|
|