From: Markus Armbruster <armbru@redhat.com>
To: qemu-devel@nongnu.org
Subject: [Qemu-devel] [PATCH v2 09/24] option: Fix to reject invalid and overflowing numbers
Date: Tue, 21 Feb 2017 21:13:53 +0100 [thread overview]
Message-ID: <1487708048-2131-10-git-send-email-armbru@redhat.com> (raw)
In-Reply-To: <1487708048-2131-1-git-send-email-armbru@redhat.com>
parse_option_number() fails to check for these errors after
strtoull(). Has always been broken. Fix that.
Signed-off-by: Markus Armbruster <armbru@redhat.com>
Reviewed-by: Eric Blake <eblake@redhat.com>
---
tests/test-qemu-opts.c | 19 ++++++++-----------
util/qemu-option.c | 11 ++++++++---
2 files changed, 16 insertions(+), 14 deletions(-)
diff --git a/tests/test-qemu-opts.c b/tests/test-qemu-opts.c
index d5dab12..47f287f 100644
--- a/tests/test-qemu-opts.c
+++ b/tests/test-qemu-opts.c
@@ -585,17 +585,15 @@ static void test_opts_parse_number(void)
/* Above upper limit */
opts = qemu_opts_parse(&opts_list_01, "number1=18446744073709551616",
- false, &error_abort);
- /* BUG: should reject */
- g_assert_cmpuint(opts_count(opts), ==, 1);
- g_assert_cmpuint(qemu_opt_get_number(opts, "number1", 1), ==, UINT64_MAX);
+ false, &err);
+ error_free_or_abort(&err);
+ g_assert(!opts);
/* Below lower limit */
opts = qemu_opts_parse(&opts_list_01, "number1=-18446744073709551616",
- false, &error_abort);
- /* BUG: should reject */
- g_assert_cmpuint(opts_count(opts), ==, 1);
- g_assert_cmpuint(qemu_opt_get_number(opts, "number1", 1), ==, UINT64_MAX);
+ false, &err);
+ error_free_or_abort(&err);
+ g_assert(!opts);
/* Hex and octal */
opts = qemu_opts_parse(&opts_list_01, "number1=0x2a,number2=052",
@@ -606,9 +604,8 @@ static void test_opts_parse_number(void)
/* Invalid */
opts = qemu_opts_parse(&opts_list_01, "number1=", false, &err);
- /* BUG: should reject */
- g_assert_cmpuint(opts_count(opts), ==, 1);
- g_assert_cmpuint(qemu_opt_get_number(opts, "number1", 1), ==, 0);
+ error_free_or_abort(&err);
+ g_assert(!opts);
opts = qemu_opts_parse(&opts_list_01, "number1=eins", false, &err);
error_free_or_abort(&err);
g_assert(!opts);
diff --git a/util/qemu-option.c b/util/qemu-option.c
index 9708668..273d00d 100644
--- a/util/qemu-option.c
+++ b/util/qemu-option.c
@@ -141,11 +141,16 @@ static void parse_option_bool(const char *name, const char *value, bool *ret,
static void parse_option_number(const char *name, const char *value,
uint64_t *ret, Error **errp)
{
- char *postfix;
uint64_t number;
+ int err;
- number = strtoull(value, &postfix, 0);
- if (*postfix != '\0') {
+ err = qemu_strtou64(value, NULL, 0, &number);
+ if (err == -ERANGE) {
+ error_setg(errp, "Value '%s' is too large for parameter '%s'",
+ value, name);
+ return;
+ }
+ if (err) {
error_setg(errp, QERR_INVALID_PARAMETER_VALUE, name, "a number");
return;
}
--
2.7.4
next prev parent reply other threads:[~2017-02-21 20:14 UTC|newest]
Thread overview: 27+ messages / expand[flat|nested] mbox.gz Atom feed top
2017-02-21 20:13 [Qemu-devel] [PATCH v2 00/24] QemuOpts util/cutils: Fix and clean up number conversions Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 01/24] test-qemu-opts: Cover qemu_opts_parse() Markus Armbruster
2017-02-23 10:41 ` Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 02/24] option: Assert value string isn't null Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 03/24] test-cutils: Add missing qemu_strtol()... endptr checks Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 04/24] test-cutils: Clean up qemu_strtoul() result checks Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 05/24] util/cutils: Rewrite documentation of qemu_strtol() & friends Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 06/24] util/cutils: Rename qemu_strtoll(), qemu_strtoull() Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 07/24] util/cutils: Clean up variable names around qemu_strtol() Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 08/24] util/cutils: Clean up control flow around qemu_strtol() a bit Markus Armbruster
2017-02-21 20:13 ` Markus Armbruster [this message]
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 10/24] test-cutils: Add missing qemu_strtosz()... endptr checks Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 11/24] test-cutils: Cover qemu_strtosz() invalid input Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 12/24] test-cutils: Cover qemu_strtosz() with trailing crap Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 13/24] test-cutils: Cover qemu_strtosz() around range limits Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 14/24] util/cutils: New qemu_strtosz_metric() Markus Armbruster
2017-02-21 20:13 ` [Qemu-devel] [PATCH v2 15/24] util/cutils: Rename qemu_strtosz() to qemu_strtosz_MiB() Markus Armbruster
2017-02-21 20:14 ` [Qemu-devel] [PATCH v2 16/24] util/cutils: New qemu_strtosz() Markus Armbruster
2017-02-21 20:14 ` [Qemu-devel] [PATCH v2 17/24] util/cutils: Drop QEMU_STRTOSZ_DEFSUFFIX_* macros Markus Armbruster
2017-02-21 20:14 ` [Qemu-devel] [PATCH v2 18/24] test-cutils: Use qemu_strtosz() more often Markus Armbruster
2017-02-21 20:14 ` [Qemu-devel] [PATCH v2 19/24] test-cutils: Drop suffix from test_qemu_strtosz_simple() Markus Armbruster
2017-02-21 20:14 ` [Qemu-devel] [PATCH v2 20/24] qemu-img: Wrap cvtnum() around qemu_strtosz() Markus Armbruster
2017-02-21 20:14 ` [Qemu-devel] [PATCH v2 21/24] util/cutils: Let qemu_strtosz*() optionally reject trailing crap Markus Armbruster
2017-02-21 20:14 ` [Qemu-devel] [PATCH v2 22/24] util/cutils: Return qemu_strtosz*() error and value separately Markus Armbruster
2017-02-21 20:14 ` [Qemu-devel] [PATCH v2 23/24] util/cutils: Change qemu_strtosz*() from int64_t to uint64_t Markus Armbruster
2017-02-21 20:14 ` [Qemu-devel] [PATCH v2 24/24] option: Fix checking of sizes for overflow and trailing crap Markus Armbruster
2017-02-21 20:47 ` [Qemu-devel] [PATCH v2 00/24] QemuOpts util/cutils: Fix and clean up number conversions no-reply
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=1487708048-2131-10-git-send-email-armbru@redhat.com \
--to=armbru@redhat.com \
--cc=qemu-devel@nongnu.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).