Skip to content

Commit

Permalink
[ubsan] Detect invalid unsigned pointer index expression (compiler-rt)
Browse files Browse the repository at this point in the history
Compiler-rt part of: https://reviews.llvm.org/D33910

Differential Revision: https://reviews.llvm.org/D33911

llvm-svn: 305217
  • Loading branch information
vedantk committed Jun 12, 2017
1 parent 6dbf427 commit 8c31c2a
Show file tree
Hide file tree
Showing 2 changed files with 21 additions and 2 deletions.
10 changes: 8 additions & 2 deletions compiler-rt/lib/ubsan/ubsan_handlers.cc
Expand Up @@ -566,8 +566,14 @@ static void handlePointerOverflowImpl(PointerOverflowData *Data,

ScopedReport R(Opts, Loc, ET);

Diag(Loc, DL_Error, "pointer index expression with base %0 overflowed to %1")
<< (void *)Base << (void*)Result;
if ((sptr(Base) >= 0) == (sptr(Result) >= 0))
Diag(Loc, DL_Error, "unsigned pointer index expression result is %0, "
"preceding its base %1")
<< (void *)Result << (void *)Base;
else
Diag(Loc, DL_Error,
"pointer index expression with base %0 overflowed to %1")
<< (void *)Base << (void *)Result;
}

void __ubsan::__ubsan_handle_pointer_overflow(PointerOverflowData *Data,
Expand Down
@@ -0,0 +1,13 @@
// RUN: %clangxx -fsanitize=pointer-overflow %s -o %t
// RUN: %t 2>&1 | FileCheck %s

int main(int argc, char *argv[]) {
char c;
char *p = &c;
unsigned long long offset = -1;

// CHECK: unsigned-index-expression.cpp:[[@LINE+1]]:15: runtime error: unsigned pointer index expression result is 0x{{.*}}, preceding its base 0x{{.*}}
char *q = p + offset;

return 0;
}

0 comments on commit 8c31c2a

Please sign in to comment.