blob: d7df3f082c6760ec6628807e76323d4b59fda3e5 [file] [log] [blame]
Dominic Chen184c6242017-03-03 18:02:02 +00001// RUN: %clang_analyze_cc1 -analyzer-checker=unix.cstring.BadSizeArg -analyzer-store=region -Wno-strncat-size -Wno-strlcpy-strlcat-size -Wno-sizeof-array-argument -Wno-sizeof-pointer-memaccess -verify %s
Anna Zaks87b6ff02012-01-31 19:33:39 +00002
3typedef __SIZE_TYPE__ size_t;
4char *strncat(char *, const char *, size_t);
5size_t strlen (const char *s);
David Carlier8e75de22018-07-19 21:50:03 +00006size_t strlcpy(char *, const char *, size_t);
Anna Zaks87b6ff02012-01-31 19:33:39 +00007
8void testStrncat(const char *src) {
9 char dest[10];
10 strncat(dest, "AAAAAAAAAAAAAAAAAAAAAAAAAAAAA", sizeof(dest) - 1); // expected-warning {{Potential buffer overflow. Replace with 'sizeof(dest) - strlen(dest) - 1' or use a safer 'strlcat' API}}
11 strncat(dest, "AAAAAAAAAAAAAAAAAAAAAAAAAAA", sizeof(dest)); // expected-warning {{Potential buffer overflow. Replace with}}
12 strncat(dest, "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA", sizeof(dest) - strlen(dest)); // expected-warning {{Potential buffer overflow. Replace with}}
13 strncat(dest, src, sizeof(src)); // expected-warning {{Potential buffer overflow. Replace with}}
Gabor Horvath3b008532017-02-02 08:20:54 +000014 // Should not crash when sizeof has a type argument.
15 strncat(dest, "AAAAAAAAAAAAAAAAAAAAAAAAAAA", sizeof(char));
Anna Zaks87b6ff02012-01-31 19:33:39 +000016}
David Carlier8e75de22018-07-19 21:50:03 +000017
18void testStrlcpy(const char *src) {
19 char dest[10];
20 size_t destlen = sizeof(dest);
21 size_t srclen = sizeof(src);
22 size_t badlen = 20;
23 size_t ulen;
24 strlcpy(dest, src, sizeof(dest));
25 strlcpy(dest, src, destlen);
26 strlcpy(dest, src, 10);
27 strlcpy(dest, src, 20); // expected-warning {{The third argument is larger than the size of the input buffer. Replace with the value 'sizeof(dest)` or lower}}
28 strlcpy(dest, src, badlen); // expected-warning {{The third argument is larger than the size of the input buffer. Replace with the value 'sizeof(dest)` or lower}}
29 strlcpy(dest, src, ulen);
30}