From: Phil Sutter <phil@nwl.cc>
To: Vitaly Chikunov <vt@altlinux.org>
Cc: Pablo Neira Ayuso <pablo@netfilter.org>,
Florian Westphal <fw@strlen.de>,
netfilter-devel@vger.kernel.org, Jan Engelhardt <jengelh@inai.de>,
Gleb Fotengauer-Malinovskiy <glebfm@altlinux.org>
Subject: Re: [PATCH iptables] libxtables: Fix xtables_ipaddr_to_numeric calls with xtables_ipmask_to_numeric
Date: Sun, 24 Mar 2024 14:50:51 +0100 [thread overview]
Message-ID: <ZgAvu7pD4PJhyxB-@orbyte.nwl.cc> (raw)
In-Reply-To: <20240323213753.cqockivt4fwan52a@altlinux.org>
On Sun, Mar 24, 2024 at 12:37:53AM +0300, Vitaly Chikunov wrote:
> On Sat, Mar 23, 2024 at 02:56:43PM +0100, Phil Sutter wrote:
> > On Sat, Mar 23, 2024 at 06:06:41AM +0300, Vitaly Chikunov wrote:
> > > Frequently when addr/mask is printed xtables_ipaddr_to_numeric and
> > > xtables_ipmask_to_numeric are called together in one printf call but
> > > xtables_ipmask_to_numeric internally calls xtables_ipaddr_to_numeric
> > > which prints into the same static buffer causing buffer to be
> > > overwritten and addr/mask incorrectly printed in such call scenarios.
> > >
> > > Make xtables_ipaddr_to_numeric to use two static buffers rotating their
> > > use. This simplistic approach will leave ABI not changed and cover all
> > > such use cases.
> >
> > I don't quite like the cat'n'mouse game this opens, although it's
> > unlikely someone calls it a third time before copying the buffer.
> >
> > What do you think about the attached solution?
>
> Your approach is indeed much better. But why double underscore prefix
> to a function name, this sounds like reserved identifiers.
Well, for once it was just a quick sketch. Also, when refactoring into
an inner function it is not uncommon to prefix it this way, at least if
it's an internal-only function.
Another option I could think of is _r suffix, typically used for
reentrant variants.
Cheers, Phil
prev parent reply other threads:[~2024-03-24 13:51 UTC|newest]
Thread overview: 5+ messages / expand[flat|nested] mbox.gz Atom feed top
2024-03-23 3:06 [PATCH iptables] libxtables: Fix xtables_ipaddr_to_numeric calls with xtables_ipmask_to_numeric Vitaly Chikunov
2024-03-23 9:17 ` Vitaly Chikunov
2024-03-23 13:56 ` Phil Sutter
2024-03-23 21:37 ` Vitaly Chikunov
2024-03-24 13:50 ` Phil Sutter [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=ZgAvu7pD4PJhyxB-@orbyte.nwl.cc \
--to=phil@nwl.cc \
--cc=fw@strlen.de \
--cc=glebfm@altlinux.org \
--cc=jengelh@inai.de \
--cc=netfilter-devel@vger.kernel.org \
--cc=pablo@netfilter.org \
--cc=vt@altlinux.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.