From 8b47a686f544018fa6f576b6ed25a89222b43893 Mon Sep 17 00:00:00 2001 From: Jonathan Metzman Date: Thu, 25 Jul 2019 13:35:16 -0700 Subject: [PATCH] [docs] Update section on trace-pc-guard --- llvm_mode/README.llvm | 8 +++----- 1 file changed, 3 insertions(+), 5 deletions(-) diff --git a/llvm_mode/README.llvm b/llvm_mode/README.llvm index 349d0e2f2..b6654b585 100644 --- a/llvm_mode/README.llvm +++ b/llvm_mode/README.llvm @@ -97,7 +97,7 @@ to read the fuzzed input and parse it; in some cases, this can offer a 10x+ performance gain. You can implement delayed initialization in LLVM mode in a fairly simple way. -First, find a suitable location in the code where the delayed cloning can +First, find a suitable location in the code where the delayed cloning can take place. This needs to be done with *extreme* care to avoid breaking the binary. In particular, the program will probably malfunction if you select a location after: @@ -175,10 +175,8 @@ post-process the assembly or install any compiler plugins. See: http://clang.llvm.org/docs/SanitizerCoverage.html#tracing-pcs-with-guards -As of this writing, the feature is only available on SVN trunk, and is yet to -make it to an official release of LLVM. Nevertheless, if you have a -sufficiently recent compiler and want to give it a try, build afl-clang-fast -this way: +If you have a sufficiently recent compiler and want to give it a try, build +afl-clang-fast this way: AFL_TRACE_PC=1 make clean all