cncf / cncf/mentoring

[CNCF LFX Proposal] urunc: Fuzzing and robustness testing for urunc

Open
#2,014 10 comments 1 reaction 0 assignees View on GitHub
2026 CNCF Approved Exported lfx mentorship Maintainer/Contribex Approved Mentors Confirmed Proposal Term 3: Sept-Nov Validation Passed
Dominant language
JavaScript
Stars
3.1k
Forks
816
Avg merge
12h 32m
Merged PRs (30d)
8

Description

### CNCF Project

urunc

### Term

2026 Term 3 (Sep-Nov)

### Program Name

Fuzzing and robustness testing for urunc

### Program Description

## Description

As a container runtime, `urunc` is a crucial component of the whole container stack and as a result it s very important to ensure its robustness, reliability and expected behavior. One of the best ways to do so is with fuzzing

This project aims to extend the current testing suite of urunc, increasing test and fuzzing coverage with the goal of improving its robustness, predictability, and error reporting. Apart of the implementation, the tests should also be included in the CI and even integrating them with [OSS-Fuzz](https://github.com/google/oss-fuzz) (or [ClusterFuzzLite](https://google.github.io/clusterfuzzlite/) so that fuzzing runs continuously and its outcomes are automatically reported.

## Expected Outcome

- A notable increase in testing and fuzzing coverage.
- Code improvements based on testing and fuzzing.
- Integration with OSS-Fuzz or ClusterFuzzLite, ensuring that fuzzing runs continuously and its results (coverage statistics, crashes) are automatically reported.
- Documentation on how to maintain and extend the fuzzing tests as the project evolves.

### Technologies

Go, contianer runtimes, fuzzing, testing

### Skills same as Technologies?

- [x] Yes, the required skills are the same as the technologies listed above.

### Required/Desirable Skills

_No response_

### Mentors

Charalampos Mainas | @cmainas | cmainas@nubificus.co.uk | cmainas
Anastassios Nanos | @ananos | ananos@nubificus.co.uk | ananos

### Upstream Issue URL

https://github.com/urunc-dev/urunc/issues/852

### Application Prerequisites

- [x] Resume
- [x] Cover Letter
- [ ] School Enrollment Verification
- [ ] Participation Permission from school or employer
- [ ] Coding Challenge
- [ ] Custom Prerequisite (fill in details below)

### Coding Challenge URL

_No response_

### Custom Prerequisite Name

_No response_

### Custom Prerequisite Description

_No response_

### Custom Prerequisite — File Upload

- [ ] Yes — completion of this task requires the mentee to submit a file.

---
**LFX program:** [CNCF - urunc: Fuzzing and robustness testing for urunc (2026 Term 3)](https://mentorship.lfx.linuxfoundation.org/project/013ae700-41b4-426c-b265-53edc10b7654)

Contributor guide

Open the contributing guide

Research direction

Start with urunc upstream issue #852 and review the current testing suite and CI configuration. Compare OSS-Fuzz and ClusterFuzzLite integration requirements, then define the fuzzing targets and robustness coverage to add. Done means increased coverage, documented maintenance steps, continuous CI fuzzing, and automatically reported outcomes.

Written by the indexing model from the issue text.

Assessment

Tech stack
go
Domain
ci-cd, testing
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Quiet
Clarity
Needs clarification
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.