blob: 3f034206576986f0f8ffb1e73d9e7ef57ef9fc91 [file] [log] [blame]
Ted Kremeneka2e77b42010-01-27 23:43:25 +00001//= PrintfFormatStrings.cpp - Analysis of printf format strings --*- C++ -*-==//
2//
3// The LLVM Compiler Infrastructure
4//
5// This file is distributed under the University of Illinois Open Source
6// License. See LICENSE.TXT for details.
7//
8//===----------------------------------------------------------------------===//
9//
10// Handling of format string in printf and friends. The structure of format
11// strings for fprintf() are described in C99 7.19.6.1.
12//
13//===----------------------------------------------------------------------===//
14
15#include "clang/Analysis/Analyses/PrintfFormatString.h"
16
Ted Kremenek176f7d62010-01-29 02:13:53 +000017using clang::analyze_printf::FormatSpecifier;
18using clang::analyze_printf::OptionalAmount;
Ted Kremeneka2e77b42010-01-27 23:43:25 +000019
20namespace {
21class FormatSpecifierResult {
22 FormatSpecifier FS;
23 const char *Start;
Ted Kremenek94af5752010-01-29 02:40:24 +000024 bool Stop;
Ted Kremeneka2e77b42010-01-27 23:43:25 +000025public:
Ted Kremenek94af5752010-01-29 02:40:24 +000026 FormatSpecifierResult(bool stop = false)
27 : Start(0), Stop(stop) {}
Ted Kremeneka2e77b42010-01-27 23:43:25 +000028 FormatSpecifierResult(const char *start,
Ted Kremenek08ad1cc2010-01-28 02:02:59 +000029 const FormatSpecifier &fs)
Ted Kremenek94af5752010-01-29 02:40:24 +000030 : FS(fs), Start(start), Stop(false) {}
Ted Kremeneka2e77b42010-01-27 23:43:25 +000031
32
33 const char *getStart() const { return Start; }
Ted Kremenek94af5752010-01-29 02:40:24 +000034 bool shouldStop() const { return Stop; }
Ted Kremeneka2e77b42010-01-27 23:43:25 +000035 bool hasValue() const { return Start != 0; }
36 const FormatSpecifier &getValue() const {
37 assert(hasValue());
38 return FS;
39 }
Ted Kremenek08ad1cc2010-01-28 02:02:59 +000040 const FormatSpecifier &getValue() { return FS; }
Ted Kremeneka2e77b42010-01-27 23:43:25 +000041};
42} // end anonymous namespace
43
44template <typename T>
45class UpdateOnReturn {
46 T &ValueToUpdate;
47 const T &ValueToCopy;
48public:
49 UpdateOnReturn(T &valueToUpdate, const T &valueToCopy)
50 : ValueToUpdate(valueToUpdate), ValueToCopy(valueToCopy) {}
51
52 ~UpdateOnReturn() {
53 ValueToUpdate = ValueToCopy;
54 }
55};
56
57static OptionalAmount ParseAmount(const char *&Beg, const char *E) {
58 const char *I = Beg;
59 UpdateOnReturn <const char*> UpdateBeg(Beg, I);
60
61 bool foundDigits = false;
62 unsigned accumulator = 0;
63
64 for ( ; I != E; ++I) {
65 char c = *I;
66 if (c >= '0' && c <= '9') {
67 foundDigits = true;
68 accumulator += (accumulator * 10) + (c - '0');
69 continue;
70 }
71
72 if (foundDigits)
Ted Kremenek5739de72010-01-29 01:06:55 +000073 return OptionalAmount(accumulator, Beg);
Ted Kremeneka2e77b42010-01-27 23:43:25 +000074
Ted Kremenek5739de72010-01-29 01:06:55 +000075 if (c == '*') {
76 ++I;
77 return OptionalAmount(OptionalAmount::Arg, Beg);
78 }
Ted Kremeneka2e77b42010-01-27 23:43:25 +000079
80 break;
81 }
82
83 return OptionalAmount();
84}
85
Ted Kremenek176f7d62010-01-29 02:13:53 +000086static FormatSpecifierResult
87ParseFormatSpecifier(clang::analyze_printf::FormatStringHandler &H,
88 const char *&Beg, const char *E) {
89
90 using namespace clang::analyze_printf;
Ted Kremeneka2e77b42010-01-27 23:43:25 +000091
92 const char *I = Beg;
Ted Kremenekc8d9c012010-01-28 00:02:05 +000093 const char *Start = 0;
Ted Kremeneka2e77b42010-01-27 23:43:25 +000094 UpdateOnReturn <const char*> UpdateBeg(Beg, I);
95
96 // Look for a '%' character that indicates the start of a format specifier.
Ted Kremenekb5c98ef2010-01-28 23:56:52 +000097 for ( ; I != E ; ++I) {
Ted Kremeneka2e77b42010-01-27 23:43:25 +000098 char c = *I;
Ted Kremeneka2e77b42010-01-27 23:43:25 +000099 if (c == '\0') {
100 // Detect spurious null characters, which are likely errors.
101 H.HandleNullChar(I);
102 return true;
103 }
104 if (c == '%') {
Ted Kremenekb5c98ef2010-01-28 23:56:52 +0000105 Start = I++; // Record the start of the format specifier.
Ted Kremeneka2e77b42010-01-27 23:43:25 +0000106 break;
107 }
108 }
109
110 // No format specifier found?
111 if (!Start)
112 return false;
113
114 if (I == E) {
115 // No more characters left?
116 H.HandleIncompleteFormatSpecifier(Start, E);
117 return true;
118 }
119
120 FormatSpecifier FS;
121
122 // Look for flags (if any).
123 bool hasMore = true;
124 for ( ; I != E; ++I) {
125 switch (*I) {
126 default: hasMore = false; break;
127 case '-': FS.setIsLeftJustified(); break;
128 case '+': FS.setHasPlusPrefix(); break;
129 case ' ': FS.setHasSpacePrefix(); break;
130 case '#': FS.setHasAlternativeForm(); break;
131 case '0': FS.setHasLeadingZeros(); break;
132 }
133 if (!hasMore)
134 break;
135 }
136
137 if (I == E) {
138 // No more characters left?
139 H.HandleIncompleteFormatSpecifier(Start, E);
140 return true;
141 }
142
143 // Look for the field width (if any).
144 FS.setFieldWidth(ParseAmount(I, E));
145
146 if (I == E) {
147 // No more characters left?
148 H.HandleIncompleteFormatSpecifier(Start, E);
149 return true;
150 }
151
152 // Look for the precision (if any).
153 if (*I == '.') {
154 const char *startPrecision = I++;
155 if (I == E) {
156 H.HandleIncompletePrecision(I - 1);
157 return true;
158 }
159
160 FS.setPrecision(ParseAmount(I, E));
161
162 if (I == E) {
163 // No more characters left?
164 H.HandleIncompletePrecision(startPrecision);
165 return true;
166 }
167 }
168
169 // Look for the length modifier.
170 LengthModifier lm = None;
171 switch (*I) {
172 default:
173 break;
174 case 'h':
175 ++I;
176 lm = (I != E && *I == 'h') ? ++I, AsChar : AsShort;
177 break;
178 case 'l':
179 ++I;
180 lm = (I != E && *I == 'l') ? ++I, AsLongLong : AsLong;
181 break;
182 case 'j': lm = AsIntMax; ++I; break;
183 case 'z': lm = AsSizeT; ++I; break;
184 case 't': lm = AsPtrDiff; ++I; break;
185 case 'L': lm = AsLongDouble; ++I; break;
186 }
187 FS.setLengthModifier(lm);
188
189 if (I == E) {
190 // No more characters left?
191 H.HandleIncompleteFormatSpecifier(Start, E);
192 return true;
193 }
194
195 // Finally, look for the conversion specifier.
Ted Kremenekfee0e962010-01-28 02:46:17 +0000196 const char *conversionPosition = I++;
Ted Kremenek94af5752010-01-29 02:40:24 +0000197 ConversionSpecifier::Kind k = ConversionSpecifier::InvalidSpecifier;
Ted Kremenekfee0e962010-01-28 02:46:17 +0000198 switch (*conversionPosition) {
Ted Kremeneka2e77b42010-01-27 23:43:25 +0000199 default:
Ted Kremenek94af5752010-01-29 02:40:24 +0000200 break;
Ted Kremenekc06ead62010-01-28 00:55:28 +0000201 // C99: 7.19.6.1 (section 8).
Ted Kremenekfee0e962010-01-28 02:46:17 +0000202 case 'd': k = ConversionSpecifier::dArg; break;
203 case 'i': k = ConversionSpecifier::iArg; break;
204 case 'o': k = ConversionSpecifier::oArg; break;
205 case 'u': k = ConversionSpecifier::uArg; break;
206 case 'x': k = ConversionSpecifier::xArg; break;
207 case 'X': k = ConversionSpecifier::XArg; break;
208 case 'f': k = ConversionSpecifier::fArg; break;
209 case 'F': k = ConversionSpecifier::FArg; break;
210 case 'e': k = ConversionSpecifier::eArg; break;
211 case 'E': k = ConversionSpecifier::EArg; break;
212 case 'g': k = ConversionSpecifier::gArg; break;
213 case 'G': k = ConversionSpecifier::GArg; break;
214 case 'a': k = ConversionSpecifier::aArg; break;
215 case 'A': k = ConversionSpecifier::AArg; break;
216 case 'c': k = ConversionSpecifier::IntAsCharArg; break;
217 case 's': k = ConversionSpecifier::CStrArg; break;
218 case 'p': k = ConversionSpecifier::VoidPtrArg; break;
219 case 'n': k = ConversionSpecifier::OutIntPtrArg; break;
220 case '%': k = ConversionSpecifier::PercentArg; break;
Ted Kremenekc06ead62010-01-28 00:55:28 +0000221 // Objective-C.
Ted Kremenekfee0e962010-01-28 02:46:17 +0000222 case '@': k = ConversionSpecifier::ObjCObjArg; break;
Ted Kremeneka2e77b42010-01-27 23:43:25 +0000223 }
Ted Kremenekfee0e962010-01-28 02:46:17 +0000224 FS.setConversionSpecifier(ConversionSpecifier(conversionPosition, k));
Ted Kremenek94af5752010-01-29 02:40:24 +0000225
226 if (k == ConversionSpecifier::InvalidSpecifier) {
227 H.HandleInvalidConversionSpecifier(FS, Beg, I - Beg);
228 return false; // Keep processing format specifiers.
229 }
Ted Kremeneka2e77b42010-01-27 23:43:25 +0000230 return FormatSpecifierResult(Start, FS);
231}
232
Ted Kremenekfee0e962010-01-28 02:46:17 +0000233namespace clang { namespace analyze_printf {
234bool ParseFormatString(FormatStringHandler &H,
235 const char *I, const char *E) {
Ted Kremeneka2e77b42010-01-27 23:43:25 +0000236 // Keep looking for a format specifier until we have exhausted the string.
237 while (I != E) {
238 const FormatSpecifierResult &FSR = ParseFormatSpecifier(H, I, E);
Ted Kremenek94af5752010-01-29 02:40:24 +0000239 // Did a fail-stop error of any kind occur when parsing the specifier?
240 // If so, don't do any more processing.
241 if (FSR.shouldStop())
Ted Kremeneka2e77b42010-01-27 23:43:25 +0000242 return true;;
Ted Kremenek94af5752010-01-29 02:40:24 +0000243 // Did we exhaust the string or encounter an error that
244 // we can recover from?
Ted Kremeneka2e77b42010-01-27 23:43:25 +0000245 if (!FSR.hasValue())
Ted Kremenek94af5752010-01-29 02:40:24 +0000246 continue;
Ted Kremeneka2e77b42010-01-27 23:43:25 +0000247 // We have a format specifier. Pass it to the callback.
Ted Kremenekfee0e962010-01-28 02:46:17 +0000248 if (!H.HandleFormatSpecifier(FSR.getValue(), FSR.getStart(),
249 I - FSR.getStart()))
Ted Kremenekbcbdaea2010-01-28 01:00:59 +0000250 return false;
Ted Kremeneka2e77b42010-01-27 23:43:25 +0000251 }
252 assert(I == E && "Format string not exhausted");
253 return false;
254}
Ted Kremeneka2e77b42010-01-27 23:43:25 +0000255
256FormatStringHandler::~FormatStringHandler() {}
Ted Kremenek559d89a2010-01-29 01:37:52 +0000257}} // end namespace clang::analyze_printf