[Bug libstdc++/81891] [5/6/7 Regression] heap-use-after-free if inserting element in std::unordered_map(InputIt, InputIt) throws

redi at gcc dot gnu.org gcc-bugzilla@gcc.gnu.org
Mon Sep 4 12:25:00 GMT 2017


https://gcc.gnu.org/bugzilla/show_bug.cgi?id=81891

--- Comment #6 from Jonathan Wakely <redi at gcc dot gnu.org> ---
Author: redi
Date: Mon Sep  4 12:24:42 2017
New Revision: 251654

URL: https://gcc.gnu.org/viewcvs?rev=251654&root=gcc&view=rev
Log:
PR libstdc++/81891 fix double-free in hashtable constructor

Backport from mainline
2017-08-18  Jonathan Wakely  <jwakely@redhat.com>

        PR libstdc++/81891
        * include/bits/hashtable.h (_Hashtable(_InputIterator, _InputIterator,
        size_type, const _H1&, const _H2&, const _Hash&, const _Equal&,
        const _ExtractKey&, const allocator_type&)): Let destructor do clean
        up if an exception is thrown.
        * testsuite/23_containers/unordered_map/cons/81891.cc: New.

Added:
   
branches/gcc-7-branch/libstdc++-v3/testsuite/23_containers/unordered_map/cons/81891.cc
Modified:
    branches/gcc-7-branch/libstdc++-v3/ChangeLog
    branches/gcc-7-branch/libstdc++-v3/include/bits/hashtable.h


More information about the Gcc-bugs mailing list