blob: 678c425e9439b76c24acfab1638b286ada81ed73 [file] [log] [blame]
jbates@chromium.org0fc87362012-03-08 05:42:56 +09001// Copyright (c) 2012 The Chromium Authors. All rights reserved.
license.botf003cfe2008-08-24 09:55:55 +09002// Use of this source code is governed by a BSD-style license that can be
3// found in the LICENSE file.
initial.commit3f4a7322008-07-27 06:49:38 +09004
initial.commit3f4a7322008-07-27 06:49:38 +09005#include "base/pickle.h"
6
maruel@google.com825f8792008-08-07 05:35:17 +09007#include <stdlib.h>
8
thestig@chromium.orgeb9afb42009-10-28 13:21:01 +09009#include <algorithm> // for max()
dskibaaa08dcb2015-10-01 02:24:30 +090010#include <limits>
maruel@google.com825f8792008-08-07 05:35:17 +090011
primiano47c69062015-07-25 05:13:32 +090012#include "base/bits.h"
13#include "base/macros.h"
14
brettwd0d62652015-06-04 01:20:14 +090015namespace base {
brettw@chromium.org5b040852013-12-03 09:39:26 +090016
initial.commit3f4a7322008-07-27 06:49:38 +090017// static
18const int Pickle::kPayloadUnit = 64;
19
thestig@chromium.orgf0c8f442011-10-11 07:20:33 +090020static const size_t kCapacityReadOnly = static_cast<size_t>(-1);
deanm@google.com19650de2008-08-13 23:57:51 +090021
jbates@chromium.org0fc87362012-03-08 05:42:56 +090022PickleIterator::PickleIterator(const Pickle& pickle)
halyavin@google.com0398c722014-06-03 08:23:49 +090023 : payload_(pickle.payload()),
24 read_index_(0),
25 end_index_(pickle.payload_size()) {
jbates@chromium.org0fc87362012-03-08 05:42:56 +090026}
27
28template <typename Type>
29inline bool PickleIterator::ReadBuiltinType(Type* result) {
30 const char* read_from = GetReadPointerAndAdvance<Type>();
31 if (!read_from)
32 return false;
avi27b40072015-12-05 07:38:52 +090033 if (sizeof(Type) > sizeof(uint32_t))
jbates@chromium.org0fc87362012-03-08 05:42:56 +090034 memcpy(result, read_from, sizeof(*result));
35 else
36 *result = *reinterpret_cast<const Type*>(read_from);
37 return true;
38}
39
halyavin@google.com0398c722014-06-03 08:23:49 +090040inline void PickleIterator::Advance(size_t size) {
primiano47c69062015-07-25 05:13:32 +090041 size_t aligned_size = bits::Align(size, sizeof(uint32_t));
halyavin@google.com0398c722014-06-03 08:23:49 +090042 if (end_index_ - read_index_ < aligned_size) {
43 read_index_ = end_index_;
44 } else {
45 read_index_ += aligned_size;
46 }
47}
48
jbates@chromium.org0fc87362012-03-08 05:42:56 +090049template<typename Type>
50inline const char* PickleIterator::GetReadPointerAndAdvance() {
halyavin@google.com0398c722014-06-03 08:23:49 +090051 if (sizeof(Type) > end_index_ - read_index_) {
52 read_index_ = end_index_;
jbates@chromium.org0fc87362012-03-08 05:42:56 +090053 return NULL;
halyavin@google.com0398c722014-06-03 08:23:49 +090054 }
55 const char* current_read_ptr = payload_ + read_index_;
56 Advance(sizeof(Type));
jbates@chromium.org0fc87362012-03-08 05:42:56 +090057 return current_read_ptr;
58}
59
60const char* PickleIterator::GetReadPointerAndAdvance(int num_bytes) {
halyavin@google.com0398c722014-06-03 08:23:49 +090061 if (num_bytes < 0 ||
62 end_index_ - read_index_ < static_cast<size_t>(num_bytes)) {
63 read_index_ = end_index_;
glider@chromium.orgfcfb8252012-03-14 02:17:56 +090064 return NULL;
halyavin@google.com0398c722014-06-03 08:23:49 +090065 }
66 const char* current_read_ptr = payload_ + read_index_;
67 Advance(num_bytes);
jbates@chromium.org0fc87362012-03-08 05:42:56 +090068 return current_read_ptr;
69}
70
halyavin@google.com0398c722014-06-03 08:23:49 +090071inline const char* PickleIterator::GetReadPointerAndAdvance(
72 int num_elements,
73 size_t size_element) {
jbates@chromium.org0fc87362012-03-08 05:42:56 +090074 // Check for int32 overflow.
avi27b40072015-12-05 07:38:52 +090075 int64_t num_bytes = static_cast<int64_t>(num_elements) * size_element;
jbates@chromium.org0fc87362012-03-08 05:42:56 +090076 int num_bytes32 = static_cast<int>(num_bytes);
avi27b40072015-12-05 07:38:52 +090077 if (num_bytes != static_cast<int64_t>(num_bytes32))
jbates@chromium.org0fc87362012-03-08 05:42:56 +090078 return NULL;
79 return GetReadPointerAndAdvance(num_bytes32);
80}
81
82bool PickleIterator::ReadBool(bool* result) {
83 return ReadBuiltinType(result);
84}
85
86bool PickleIterator::ReadInt(int* result) {
87 return ReadBuiltinType(result);
88}
89
90bool PickleIterator::ReadLong(long* result) {
91 return ReadBuiltinType(result);
92}
93
avi27b40072015-12-05 07:38:52 +090094bool PickleIterator::ReadUInt16(uint16_t* result) {
jbates@chromium.org0fc87362012-03-08 05:42:56 +090095 return ReadBuiltinType(result);
96}
97
avi27b40072015-12-05 07:38:52 +090098bool PickleIterator::ReadUInt32(uint32_t* result) {
jbates@chromium.org0fc87362012-03-08 05:42:56 +090099 return ReadBuiltinType(result);
100}
101
avi27b40072015-12-05 07:38:52 +0900102bool PickleIterator::ReadInt64(int64_t* result) {
jbates@chromium.org0fc87362012-03-08 05:42:56 +0900103 return ReadBuiltinType(result);
104}
105
avi27b40072015-12-05 07:38:52 +0900106bool PickleIterator::ReadUInt64(uint64_t* result) {
jbates@chromium.org0fc87362012-03-08 05:42:56 +0900107 return ReadBuiltinType(result);
108}
109
pkasting7ed1f882014-10-02 12:01:04 +0900110bool PickleIterator::ReadSizeT(size_t* result) {
111 // Always read size_t as a 64-bit value to ensure compatibility between 32-bit
112 // and 64-bit processes.
avi27b40072015-12-05 07:38:52 +0900113 uint64_t result_uint64 = 0;
pkasting7ed1f882014-10-02 12:01:04 +0900114 bool success = ReadBuiltinType(&result_uint64);
115 *result = static_cast<size_t>(result_uint64);
116 // Fail if the cast above truncates the value.
117 return success && (*result == result_uint64);
118}
119
rbyers@chromium.orga1f0b982012-11-29 00:40:58 +0900120bool PickleIterator::ReadFloat(float* result) {
piman@chromium.org2135b962013-11-18 09:50:25 +0900121 // crbug.com/315213
122 // The source data may not be properly aligned, and unaligned float reads
123 // cause SIGBUS on some ARM platforms, so force using memcpy to copy the data
124 // into the result.
125 const char* read_from = GetReadPointerAndAdvance<float>();
126 if (!read_from)
127 return false;
128 memcpy(result, read_from, sizeof(*result));
129 return true;
rbyers@chromium.orga1f0b982012-11-29 00:40:58 +0900130}
131
mostynb@opera.comf0b78532014-07-15 07:50:32 +0900132bool PickleIterator::ReadDouble(double* result) {
133 // crbug.com/315213
134 // The source data may not be properly aligned, and unaligned double reads
135 // cause SIGBUS on some ARM platforms, so force using memcpy to copy the data
136 // into the result.
137 const char* read_from = GetReadPointerAndAdvance<double>();
138 if (!read_from)
139 return false;
140 memcpy(result, read_from, sizeof(*result));
141 return true;
142}
143
jbates@chromium.org0fc87362012-03-08 05:42:56 +0900144bool PickleIterator::ReadString(std::string* result) {
145 int len;
146 if (!ReadInt(&len))
147 return false;
148 const char* read_from = GetReadPointerAndAdvance(len);
149 if (!read_from)
150 return false;
151
152 result->assign(read_from, len);
153 return true;
154}
155
brettwd0d62652015-06-04 01:20:14 +0900156bool PickleIterator::ReadStringPiece(StringPiece* result) {
brucedawson0fff3892015-03-10 10:46:50 +0900157 int len;
158 if (!ReadInt(&len))
159 return false;
160 const char* read_from = GetReadPointerAndAdvance(len);
161 if (!read_from)
162 return false;
163
brettwd0d62652015-06-04 01:20:14 +0900164 *result = StringPiece(read_from, len);
brucedawson0fff3892015-03-10 10:46:50 +0900165 return true;
166}
167
jbates@chromium.org0fc87362012-03-08 05:42:56 +0900168bool PickleIterator::ReadString16(string16* result) {
169 int len;
170 if (!ReadInt(&len))
171 return false;
172 const char* read_from = GetReadPointerAndAdvance(len, sizeof(char16));
173 if (!read_from)
174 return false;
175
176 result->assign(reinterpret_cast<const char16*>(read_from), len);
177 return true;
178}
179
brettwd0d62652015-06-04 01:20:14 +0900180bool PickleIterator::ReadStringPiece16(StringPiece16* result) {
brucedawson0fff3892015-03-10 10:46:50 +0900181 int len;
182 if (!ReadInt(&len))
183 return false;
184 const char* read_from = GetReadPointerAndAdvance(len, sizeof(char16));
185 if (!read_from)
186 return false;
187
brettwd0d62652015-06-04 01:20:14 +0900188 *result = StringPiece16(reinterpret_cast<const char16*>(read_from), len);
brucedawson0fff3892015-03-10 10:46:50 +0900189 return true;
190}
191
jbates@chromium.org0fc87362012-03-08 05:42:56 +0900192bool PickleIterator::ReadData(const char** data, int* length) {
193 *length = 0;
194 *data = 0;
195
196 if (!ReadInt(length))
197 return false;
198
199 return ReadBytes(data, *length);
200}
201
202bool PickleIterator::ReadBytes(const char** data, int length) {
203 const char* read_from = GetReadPointerAndAdvance(length);
204 if (!read_from)
205 return false;
206 *data = read_from;
207 return true;
208}
209
avi27b40072015-12-05 07:38:52 +0900210// Payload is uint32_t aligned.
initial.commit3f4a7322008-07-27 06:49:38 +0900211
212Pickle::Pickle()
213 : header_(NULL),
214 header_size_(sizeof(Header)),
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900215 capacity_after_header_(0),
216 write_offset_(0) {
primiano47c69062015-07-25 05:13:32 +0900217 static_assert((Pickle::kPayloadUnit & (Pickle::kPayloadUnit - 1)) == 0,
218 "Pickle::kPayloadUnit must be a power of two");
initial.commit3f4a7322008-07-27 06:49:38 +0900219 Resize(kPayloadUnit);
220 header_->payload_size = 0;
221}
222
223Pickle::Pickle(int header_size)
224 : header_(NULL),
avi27b40072015-12-05 07:38:52 +0900225 header_size_(bits::Align(header_size, sizeof(uint32_t))),
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900226 capacity_after_header_(0),
227 write_offset_(0) {
pkasting@chromium.orgd23fe1a2011-04-01 05:34:25 +0900228 DCHECK_GE(static_cast<size_t>(header_size), sizeof(Header));
kushi.p@gmail.come4869772011-04-22 22:13:07 +0900229 DCHECK_LE(header_size, kPayloadUnit);
initial.commit3f4a7322008-07-27 06:49:38 +0900230 Resize(kPayloadUnit);
231 header_->payload_size = 0;
232}
233
bbudge@chromium.orgab4c6bc2013-11-05 07:28:12 +0900234Pickle::Pickle(const char* data, int data_len)
initial.commit3f4a7322008-07-27 06:49:38 +0900235 : header_(reinterpret_cast<Header*>(const_cast<char*>(data))),
rvargas@google.com8d9b2b92010-11-16 04:31:23 +0900236 header_size_(0),
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900237 capacity_after_header_(kCapacityReadOnly),
238 write_offset_(0) {
bbudge@chromium.orgab4c6bc2013-11-05 07:28:12 +0900239 if (data_len >= static_cast<int>(sizeof(Header)))
rvargas@google.com8d9b2b92010-11-16 04:31:23 +0900240 header_size_ = data_len - header_->payload_size;
241
bbudge@chromium.orgab4c6bc2013-11-05 07:28:12 +0900242 if (header_size_ > static_cast<unsigned int>(data_len))
rvargas@google.com8d9b2b92010-11-16 04:31:23 +0900243 header_size_ = 0;
244
avi27b40072015-12-05 07:38:52 +0900245 if (header_size_ != bits::Align(header_size_, sizeof(uint32_t)))
rvargas@google.com8d9b2b92010-11-16 04:31:23 +0900246 header_size_ = 0;
247
248 // If there is anything wrong with the data, we're not going to use it.
249 if (!header_size_)
250 header_ = NULL;
initial.commit3f4a7322008-07-27 06:49:38 +0900251}
252
253Pickle::Pickle(const Pickle& other)
254 : header_(NULL),
255 header_size_(other.header_size_),
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900256 capacity_after_header_(0),
257 write_offset_(other.write_offset_) {
erikchenb2ca7762015-09-09 08:36:29 +0900258 Resize(other.header_->payload_size);
259 memcpy(header_, other.header_, header_size_ + other.header_->payload_size);
initial.commit3f4a7322008-07-27 06:49:38 +0900260}
261
262Pickle::~Pickle() {
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900263 if (capacity_after_header_ != kCapacityReadOnly)
initial.commit3f4a7322008-07-27 06:49:38 +0900264 free(header_);
265}
266
267Pickle& Pickle::operator=(const Pickle& other) {
jar@chromium.org4e105f12009-08-08 08:13:35 +0900268 if (this == &other) {
269 NOTREACHED();
270 return *this;
271 }
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900272 if (capacity_after_header_ == kCapacityReadOnly) {
jar@chromium.org766c5a02009-08-03 16:01:47 +0900273 header_ = NULL;
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900274 capacity_after_header_ = 0;
jar@chromium.org766c5a02009-08-03 16:01:47 +0900275 }
276 if (header_size_ != other.header_size_) {
initial.commit3f4a7322008-07-27 06:49:38 +0900277 free(header_);
278 header_ = NULL;
279 header_size_ = other.header_size_;
280 }
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900281 Resize(other.header_->payload_size);
jar@chromium.org4e105f12009-08-08 08:13:35 +0900282 memcpy(header_, other.header_,
283 other.header_size_ + other.header_->payload_size);
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900284 write_offset_ = other.write_offset_;
initial.commit3f4a7322008-07-27 06:49:38 +0900285 return *this;
286}
287
brettwd0d62652015-06-04 01:20:14 +0900288bool Pickle::WriteString(const StringPiece& value) {
initial.commit3f4a7322008-07-27 06:49:38 +0900289 if (!WriteInt(static_cast<int>(value.size())))
290 return false;
291
292 return WriteBytes(value.data(), static_cast<int>(value.size()));
293}
294
brettwd0d62652015-06-04 01:20:14 +0900295bool Pickle::WriteString16(const StringPiece16& value) {
estade@chromium.org38a18bf2009-03-04 12:36:36 +0900296 if (!WriteInt(static_cast<int>(value.size())))
297 return false;
298
299 return WriteBytes(value.data(),
300 static_cast<int>(value.size()) * sizeof(char16));
initial.commit3f4a7322008-07-27 06:49:38 +0900301}
302
303bool Pickle::WriteData(const char* data, int length) {
wtc@chromium.orgc2f15c52009-07-29 06:00:03 +0900304 return length >= 0 && WriteInt(length) && WriteBytes(data, length);
initial.commit3f4a7322008-07-27 06:49:38 +0900305}
306
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900307bool Pickle::WriteBytes(const void* data, int length) {
308 WriteBytesCommon(data, length);
erg@google.com67a25432011-01-08 05:23:43 +0900309 return true;
310}
311
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900312void Pickle::Reserve(size_t length) {
avi27b40072015-12-05 07:38:52 +0900313 size_t data_len = bits::Align(length, sizeof(uint32_t));
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900314 DCHECK_GE(data_len, length);
erg@google.com67a25432011-01-08 05:23:43 +0900315#ifdef ARCH_CPU_64_BITS
avi27b40072015-12-05 07:38:52 +0900316 DCHECK_LE(data_len, std::numeric_limits<uint32_t>::max());
erg@google.com67a25432011-01-08 05:23:43 +0900317#endif
avi27b40072015-12-05 07:38:52 +0900318 DCHECK_LE(write_offset_, std::numeric_limits<uint32_t>::max() - data_len);
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900319 size_t new_size = write_offset_ + data_len;
320 if (new_size > capacity_after_header_)
321 Resize(capacity_after_header_ * 2 + new_size);
erg@google.com67a25432011-01-08 05:23:43 +0900322}
323
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900324void Pickle::Resize(size_t new_capacity) {
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900325 CHECK_NE(capacity_after_header_, kCapacityReadOnly);
primiano47c69062015-07-25 05:13:32 +0900326 capacity_after_header_ = bits::Align(new_capacity, kPayloadUnit);
primiano03f77502015-06-12 06:40:10 +0900327 void* p = realloc(header_, GetTotalAllocatedSize());
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900328 CHECK(p);
initial.commit3f4a7322008-07-27 06:49:38 +0900329 header_ = reinterpret_cast<Header*>(p);
primiano03f77502015-06-12 06:40:10 +0900330}
331
rockot76180b02015-12-17 15:19:49 +0900332void* Pickle::ClaimBytes(size_t num_bytes) {
333 void* p = ClaimUninitializedBytesInternal(num_bytes);
334 CHECK(p);
335 memset(p, 0, num_bytes);
336 return p;
337}
338
primiano03f77502015-06-12 06:40:10 +0900339size_t Pickle::GetTotalAllocatedSize() const {
340 if (capacity_after_header_ == kCapacityReadOnly)
341 return 0;
342 return header_size_ + capacity_after_header_;
initial.commit3f4a7322008-07-27 06:49:38 +0900343}
344
345// static
346const char* Pickle::FindNext(size_t header_size,
347 const char* start,
348 const char* end) {
dskibaaa08dcb2015-10-01 02:24:30 +0900349 size_t pickle_size = 0;
350 if (!PeekNext(header_size, start, end, &pickle_size))
351 return NULL;
352
353 if (pickle_size > static_cast<size_t>(end - start))
354 return NULL;
355
356 return start + pickle_size;
357}
358
359// static
360bool Pickle::PeekNext(size_t header_size,
361 const char* start,
362 const char* end,
363 size_t* pickle_size) {
avi27b40072015-12-05 07:38:52 +0900364 DCHECK_EQ(header_size, bits::Align(header_size, sizeof(uint32_t)));
dskibaaa08dcb2015-10-01 02:24:30 +0900365 DCHECK_GE(header_size, sizeof(Header));
kushi.p@gmail.come4869772011-04-22 22:13:07 +0900366 DCHECK_LE(header_size, static_cast<size_t>(kPayloadUnit));
initial.commit3f4a7322008-07-27 06:49:38 +0900367
halyavin@google.com893e5bb2013-11-01 18:06:26 +0900368 size_t length = static_cast<size_t>(end - start);
369 if (length < sizeof(Header))
dskibaaa08dcb2015-10-01 02:24:30 +0900370 return false;
glider@chromium.org8b725fa2011-01-26 22:02:27 +0900371
initial.commit3f4a7322008-07-27 06:49:38 +0900372 const Header* hdr = reinterpret_cast<const Header*>(start);
dskibaaa08dcb2015-10-01 02:24:30 +0900373 if (length < header_size)
374 return false;
375
376 if (hdr->payload_size > std::numeric_limits<size_t>::max() - header_size) {
377 // If payload_size causes an overflow, we return maximum possible
378 // pickle size to indicate that.
379 *pickle_size = std::numeric_limits<size_t>::max();
380 } else {
381 *pickle_size = header_size + hdr->payload_size;
382 }
383 return true;
initial.commit3f4a7322008-07-27 06:49:38 +0900384}
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900385
386template <size_t length> void Pickle::WriteBytesStatic(const void* data) {
387 WriteBytesCommon(data, length);
388}
389
390template void Pickle::WriteBytesStatic<2>(const void* data);
391template void Pickle::WriteBytesStatic<4>(const void* data);
392template void Pickle::WriteBytesStatic<8>(const void* data);
393
rockot76180b02015-12-17 15:19:49 +0900394inline void* Pickle::ClaimUninitializedBytesInternal(size_t length) {
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900395 DCHECK_NE(kCapacityReadOnly, capacity_after_header_)
396 << "oops: pickle is readonly";
avi27b40072015-12-05 07:38:52 +0900397 size_t data_len = bits::Align(length, sizeof(uint32_t));
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900398 DCHECK_GE(data_len, length);
399#ifdef ARCH_CPU_64_BITS
avi27b40072015-12-05 07:38:52 +0900400 DCHECK_LE(data_len, std::numeric_limits<uint32_t>::max());
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900401#endif
avi27b40072015-12-05 07:38:52 +0900402 DCHECK_LE(write_offset_, std::numeric_limits<uint32_t>::max() - data_len);
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900403 size_t new_size = write_offset_ + data_len;
404 if (new_size > capacity_after_header_) {
primiano47c69062015-07-25 05:13:32 +0900405 size_t new_capacity = capacity_after_header_ * 2;
406 const size_t kPickleHeapAlign = 4096;
407 if (new_capacity > kPickleHeapAlign)
408 new_capacity = bits::Align(new_capacity, kPickleHeapAlign) - kPayloadUnit;
409 Resize(std::max(new_capacity, new_size));
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900410 }
411
412 char* write = mutable_payload() + write_offset_;
rockot76180b02015-12-17 15:19:49 +0900413 memset(write + length, 0, data_len - length); // Always initialize padding
avi27b40072015-12-05 07:38:52 +0900414 header_->payload_size = static_cast<uint32_t>(new_size);
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900415 write_offset_ = new_size;
rockot76180b02015-12-17 15:19:49 +0900416 return write;
417}
418
419inline void Pickle::WriteBytesCommon(const void* data, size_t length) {
420 DCHECK_NE(kCapacityReadOnly, capacity_after_header_)
421 << "oops: pickle is readonly";
422 MSAN_CHECK_MEM_IS_INITIALIZED(data, length);
423 void* write = ClaimUninitializedBytesInternal(length);
424 memcpy(write, data, length);
piman@chromium.org5d3eee22013-10-31 13:03:02 +0900425}
brettwd0d62652015-06-04 01:20:14 +0900426
427} // namespace base