# Installer cargo-fuzz avec Homebrew, Nix, pacman

Consultez les chemins d'installation, exécutables, métadonnées et notes de sécurité de cargo-fuzz pour les workflows d'agents IA.

## installation

```sh
sudo av install brew:cargo-fuzz
```

Commandes d'installation supplémentaires:

### macOS

- Homebrew (100%):

```sh
brew install cargo-fuzz
```

  Preuve: local Homebrew formula metadata

### Linux

- Nix (92%):

```sh
nix profile install nixpkgs#cargo-fuzz
```

  Preuve: nixpkgs package indexes: pkgs/by-name/ca/cargo-fuzz/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

- pacman (92%):

```sh
sudo pacman -S cargo-fuzz
```

  Preuve: Arch Linux sync databases: cargo-fuzz from https://geo.mirror.pkgbuild.com/extra/os/x86_64/extra.db.tar.gz

## Faits du paquet

- **Clé du paquet:** brew:cargo-fuzz
- **Gestionnaire de paquets:** Homebrew
- **Page du gestionnaire de paquets:** <https://formulae.brew.sh/formula/cargo-fuzz>
- **Version:** 0.13.2
- **Résumé source:** Command-line helpers for fuzzing
- **Page d'accueil:** <https://rust-fuzz.github.io/book/cargo-fuzz.html>
- **Dépôt:** <https://github.com/rust-fuzz/cargo-fuzz>
- **Docs amont:** <https://rust-fuzz.github.io/book/cargo-fuzz.html>
- **Licence:** Apache-2.0 AND MIT
- **Archive source:** <https://github.com/rust-fuzz/cargo-fuzz/archive/refs/tags/0.13.2.tar.gz>
- **Dernière mise à jour:** 2026-06-09T23:51:17Z
- **Généré:** 2026-08-04T22:13:35+00:00

## exécutables

- cargo-fuzz (cli)
- cargo-fuzz (alias)

## Dépendances de compilation

- rust

## Comportement d'installation

- hook post-installation: non défini
- Bouteille: disponible sur arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux

## Version et fraîcheur

- page générée: 2026-08-04
- version du gestionnaire: 0.13.2
- gestionnaire mis à jour: 2026-06-09
- données locales: OK
- dépôt amont: https://github.com/rust-fuzz/cargo-fuzz
- dernière version détectée: 0.13.2 (à jour)
## Historique du projet et usages

cargo-fuzz is the standard Cargo subcommand for driving libFuzzer against Rust crates. It is part of the rust-fuzz project family and is documented by the Rust Fuzz Book as the recommended tool for fuzz testing Rust code.

The package matters because it made coverage-guided fuzzing feel like an ordinary Rust workflow: initialize a fuzz target, add test harnesses, run them through Cargo, minimize failing inputs, and generate coverage.

### Historique du projet

The cargo-fuzz repository and crate were created in February 2017, early in Rust's effort to make fuzz testing practical for library authors. The README describes it as a Cargo subcommand for fuzzing with libFuzzer, while the Rust Fuzz Book clarifies that cargo-fuzz invokes a fuzzer rather than being a fuzzer itself.

The tool standardized the `fuzz/` directory layout for Rust crates. `cargo fuzz init` creates a fuzzing project, `cargo fuzz add` creates targets, and `cargo fuzz run` executes them through libFuzzer via the libfuzzer-sys crate.

### Historique d'adoption

cargo-fuzz became the mainstream Rust path for libFuzzer-based testing because it followed Cargo conventions and came with an official guide. The Rust Fuzz Book places it alongside afl.rs but explicitly recommends cargo-fuzz for Rust code.

The rust-fuzz ecosystem also keeps a trophy-case repository for bugs found through fuzz testing, reinforcing cargo-fuzz as part of Rust's security and reliability culture rather than a standalone experiment.

### Modes d'utilisation

Typical usage begins with `cargo fuzz init`, then `cargo fuzz add <target>`, and then `cargo fuzz run <target>`. The README also documents commands for formatting generated inputs, minimizing a crashing testcase, minimizing corpora, and collecting coverage.

The README notes important platform constraints: libFuzzer needs LLVM sanitizer support, Unix-like operating systems for the primary workflow, a nightly compiler for unstable flags, and a C++11 compiler.

### Pourquoi les passionnés de paquets s'y intéressent

cargo-fuzz is one of the clearest examples of Cargo's subcommand model turning advanced compiler/runtime machinery into a discoverable package. It hides LLVM sanitizer and libFuzzer details behind a small command set that Rust maintainers can add to CI and security workflows.

For package-history work, it also marks a moment when fuzzing moved from specialist security tooling into normal Rust package maintenance.

### Chronologie

- 2017-02-21: GitHub repository created and cargo-fuzz 0.1.0 published to crates.io.
- 2017: Rust Fuzz Book documents cargo-fuzz as a recommended Rust fuzzing path.
- 2020s: The tool grows commands for testcase minimization, corpus minimization, and coverage reporting.
- 2026: Crate has more than 3 million crates.io downloads and remains active under rust-fuzz.

### Related projects

- libFuzzer is the fuzzing engine invoked by cargo-fuzz through libfuzzer-sys.
- The Rust Fuzz Book also documents afl.rs as another Rust fuzzing tool.
- rust-fuzz/trophy-case collects bugs found by cargo-fuzz and other fuzzing tools.

### Sources

- <https://api.github.com/repos/rust-fuzz/cargo-fuzz>
- <https://crates.io/crates/cargo-fuzz>
- <https://github.com/rust-fuzz/cargo-fuzz#readme>
- <https://rust-fuzz.github.io/book/cargo-fuzz.html>
- <https://rust-fuzz.github.io/book/introduction.html>


## Notes de sécurité

narrow executable package without higher-risk signals.

- **Risque Geiger:** vert / faible
- narrow executable package without higher-risk signals


## Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.


## Configuration files

- Unix: fuzz/Cargo.toml
## Détails de la base source

- **Source Database:** Homebrew formula API
- **Tap:** homebrew/core
- **Full Name:** cargo-fuzz
- **Version Scheme:** 0
- **Revision:** 0
- **Bottle Stable Root URL:** <https://ghcr.io/v2/homebrew/core>
- **Deprecated:** no
- **Disabled:** no
- **Keg Only:** no
- **URL Keys:** stable

## Autres enregistrements de gestionnaires de paquets

- Nix - cargo-fuzz: normalized package name match | nixpkgs package indexes: pkgs/by-name/ca/cargo-fuzz/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
- pacman - cargo-fuzz - 0.13.2-1: normalized package name match | Arch Linux sync databases: cargo-fuzz from https://geo.mirror.pkgbuild.com/extra/os/x86_64/extra.db.tar.gz | Command line helpers for fuzzing rust | https://github.com/rust-fuzz/cargo-fuzz


## Liens liés

- [Source-control packages](https://pkg.so/fr/source-control-tools/) - Belongs to a source-control command family.
- [Package publisher tools](https://pkg.so/fr/package-publishers/) - Belongs to a package publishing or registry command family.
- [Terminal utility packages](https://pkg.so/fr/terminal-utilities/) - Matched terminal and command-line workflow metadata.
- [Text processing packages](https://pkg.so/fr/text-processing-tools/) - Matched text, document, or structured-data processing metadata.
- [rust](https://pkg.so/fr/brew/rust/) - Build dependency declared by Homebrew.
- [cargo-nextest](https://pkg.so/fr/brew/cargo-nextest/) - Shares pkgdb curated category or tags: cargo, cli, developer-tools, rust, testing.
- [cargo-llvm-cov](https://pkg.so/fr/brew/cargo-llvm-cov/) - Shares pkgdb curated category or tags: cargo, cli, developer-tools, rust, testing.
- [cargo-hack](https://pkg.so/fr/brew/cargo-hack/) - Shares pkgdb curated category or tags: cargo, cli, developer-tools, rust, testing.
- [cargo-insta](https://pkg.so/fr/brew/cargo-insta/) - Shares pkgdb curated category or tags: cargo, cli, developer-tools, rust, testing.
- [cargo-binstall](https://pkg.so/fr/brew/cargo-binstall/) - Shares pkgdb curated category or tags: cargo, cli, developer-tools, rust.
- [cargo-c](https://pkg.so/fr/brew/cargo-c/) - Shares pkgdb curated category or tags: cargo, cli, developer-tools, rust.
- [cargo-edit](https://pkg.so/fr/brew/cargo-edit/) - Shares pkgdb curated category or tags: cargo, cli, developer-tools, rust.
- [cargo-update](https://pkg.so/fr/brew/cargo-update/) - Shares pkgdb curated category or tags: cargo, cli, developer-tools, rust.
- [cargo-fuzz](https://pkg.so/fr/cargo/cargo-fuzz/) - Same normalized package name exists in another local package ecosystem.

## Combined YAML source

View the package source record on GitHub. [combined/cargo-fuzz.yml](https://github.com/mxcl/pkgdb/blob/main/combined/cargo-fuzz.yml)


## Sources

- pkg.so package database
- Geiger risk classifier
- package-page enrichment
- curated configuration and credential file locations
- curated package history
- package version freshness
- pkgdb category and tag curation
- package relationship graph
- external package-manager database matches
- cross-ecosystem install command graph
