par*_*bit 5 python unicode encoding utf-8
我正在尝试编写一个脚本,通过创建随机的utf-8编码字符串然后将其解码为unicode来生成随机unicode.它适用于单个字节,但有两个字节就失败了.
例如,如果我在python shell中运行以下命令:
>>> a = str()
>>> a += chr(0xc0) + chr(0xaf)
>>> print a.decode('utf-8')
UnicodeDecodeError: 'utf8' codec can't decode byte 0xc0 in position 0: invalid start byte
Run Code Online (Sandbox Code Playgroud)
根据utf-8方案https://en.wikipedia.org/wiki/UTF-8#Description,字节序列0xc0 0xaf应该以0xc0开头110和0xaf开头有效10.
这是我的python脚本:
def unicode(self):
'''returns a random (astral) utf encoded byte string'''
num_bytes = random.randint(1,4)
if num_bytes == 1:
return self.gen_utf8(num_bytes, 0x00, 0x7F)
elif num_bytes == 2:
return self.gen_utf8(num_bytes, 0xC0, 0xDF)
elif num_bytes == 3:
return self.gen_utf8(num_bytes, 0xE0, 0xEF)
elif num_bytes == 4:
return self.gen_utf8(num_bytes, 0xF0, 0xF7)
def gen_utf8(self, num_bytes, start_val, end_val):
byte_str = list()
byte_str.append(random.randrange(start_val, end_val)) # start byte
for i in range(0,num_bytes-1):
byte_str.append(random.randrange(0x80,0xBF)) # trailing bytes
a = str()
sum = int()
for b in byte_str:
a += chr(b)
ret = a.decode('utf-8')
return ret
if __name__ == "__main__":
g = GenFuzz()
print g.gen_utf8(2,0xC0,0xDF)
Run Code Online (Sandbox Code Playgroud)
这确实是无效的UTF-8.在UTF-8中,只能使用两个字节对U + 0080到U + 07FF范围内的代码点进行编码.更仔细地阅读维基百科文章,你会看到同样的事情.因此,该字节0xc0可能不会出现在UTF-8中.同样如此0xc1.
一些UTF-8解码器错误地解码了C0 AF有效的UTF-8 序列,这在过去导致了安全漏洞.