File: realloc-large-origin.cc

package info (click to toggle)
llvm-toolchain-6.0 1%3A6.0.1-10
  • links: PTS, VCS
  • area: main
  • in suites: buster
  • size: 598,080 kB
  • sloc: cpp: 3,046,253; ansic: 595,057; asm: 271,965; python: 128,926; objc: 106,554; sh: 21,906; lisp: 10,191; pascal: 6,094; ml: 5,544; perl: 5,265; makefile: 2,227; cs: 2,027; xml: 686; php: 212; csh: 117
file content (31 lines) | stat: -rw-r--r-- 1,242 bytes parent folder | download | duplicates (7)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
// RUN: %clangxx_msan -fsanitize-memory-track-origins=2 -O0 %s -o %t && not %run %t >%t.out 2>&1
// RUN: FileCheck --check-prefix=CHECK --check-prefix=CHECK-%short-stack %s < %t.out
// RUN: %clangxx_msan -fsanitize-memory-track-origins=2 -O2 %s -o %t && not %run %t >%t.out 2>&1
// RUN: FileCheck --check-prefix=CHECK --check-prefix=CHECK-%short-stack %s < %t.out

// This is a regression test: there used to be broken "stored to memory at"
// stacks with
//   in __msan_memcpy
//   in __msan::MsanReallocate
// and nothing below that.

#include <stdlib.h>
int main(int argc, char **argv) {
  char *p = (char *)malloc(100);
  p = (char *)realloc(p, 10000);
  char x = p[50];
  free(p);
  return x;

// CHECK: WARNING: MemorySanitizer: use-of-uninitialized-value
// CHECK:   {{#0 0x.* in main .*realloc-large-origin.cc:}}[[@LINE-3]]

// CHECK:  Uninitialized value was stored to memory at
// CHECK-FULL-STACK:   {{#0 0x.* in .*realloc}}
// CHECK-FULL-STACK:   {{#1 0x.* in main .*realloc-large-origin.cc:}}[[@LINE-10]]
// CHECK-SHORT-STACK:   {{#0 0x.* in .*realloc}}

// CHECK:   Uninitialized value was created by a heap allocation
// CHECK:   {{#0 0x.* in .*malloc}}
// CHECK:   {{#1 0x.* in main .*realloc-large-origin.cc:}}[[@LINE-16]]
}