This is the mail archive of the
gcc@gcc.gnu.org
mailing list for the GCC project.
Re: memset zero bytes at NULL - isolate-erroneous-paths
- From: Richard Biener <richard dot guenther at gmail dot com>
- To: Florian Weimer <fw at deneb dot enyo dot de>
- Cc: Jeff Law <law at redhat dot com>, Jonathan Wakely <jwakely dot gcc at gmail dot com>, Dominic News <d dot newsgroups at googlemail dot com>, "gcc at gcc dot gnu dot org" <gcc at gcc dot gnu dot org>
- Date: Mon, 18 Nov 2013 12:08:27 +0100
- Subject: Re: memset zero bytes at NULL - isolate-erroneous-paths
- Authentication-results: sourceware.org; auth=none
- References: <CALx3oLxLBCYez=jUiD7sLE-ynVHZ0Dr9QfX3QeLqCP-1p2p1nw at mail dot gmail dot com> <CAH6eHdSS9q-McGntA1+61TSe8EU_GVZ67RiFdLkr2APWVT7Evg at mail dot gmail dot com> <87d2lyn0u8 dot fsf at mid dot deneb dot enyo dot de> <5289980B dot 4080309 at redhat dot com> <87habachfy dot fsf at mid dot deneb dot enyo dot de>
On Mon, Nov 18, 2013 at 8:11 AM, Florian Weimer <fw@deneb.enyo.de> wrote:
> * Jeff Law:
>
>>> Is this new in C11? Does it apply to functions such as strnlen as well?
>
>> No, it's C99 I think. There was a clarification which came in after
>> C99 which clarified that even if the length is zero, the pointers must
>> still be valid.
>
> Okay, I found the language in sections 7.1.4 and 7.21.1 (thanks Marc).
>
> This is a bit unfortunate because it interoperates poorly with
> std::vector<T>::data(), which can return a null pointer if the vector
> is empty.
I'd say that turning memset (0, '\0', 0) into a trap is bad from a QOI
perspective. Jeff, is there an easy way to avoid this? Testcase:
void fn (void *addr, int a)
{
if (a == 0)
addr = (void *)0;
__builtin_memset (addr, '\0', a);
}
I wonder where in isolate-paths you check for builtins at all? ah,
it's probably from the nonnull attribute on memset. Which also
means that trying to catch this case reliably isn't going to work
(you cannot prove the program has len == 0 in this case and
conditionally not trapping would somewhat defeat the purpose
of isolating this path)
Richard.