qemu-devel.nongnu.org archive mirror
 help / color / mirror / Atom feed
* [Qemu-devel] [PATCH] usb: Fix build with newer gcc
@ 2017-07-17 15:13 Eric Blake
  2017-07-17 17:11 ` [Qemu-devel] [Qemu-trivial] " Philippe Mathieu-Daudé
  0 siblings, 1 reply; 2+ messages in thread
From: Eric Blake @ 2017-07-17 15:13 UTC (permalink / raw)
  To: qemu-devel; +Cc: dgilbert, kraxel, qemu-trivial

gcc 7 is pickier about our sources:

hw/usb/bus.c: In function ‘usb_port_location’:
hw/usb/bus.c:410:66: error: ‘%d’ directive output may be truncated writing between 1 and 11 bytes into a region of size between 0 and 15 [-Werror=format-truncation=]
         snprintf(downstream->path, sizeof(downstream->path), "%s.%d",
                                                                  ^~
hw/usb/bus.c:410:9: note: ‘snprintf’ output between 3 and 28 bytes into a destination of size 16
         snprintf(downstream->path, sizeof(downstream->path), "%s.%d",
         ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
                  upstream->path, portnr);
                  ~~~~~~~~~~~~~~~~~~~~~~~

But we know that there are at most 5 levels of USB hubs, with at
most two digits per level; that plus the separating dots means we
use at most 15 bytes (including trailing NUL) of our 16-byte field.
Adding an assertion to show gcc that we checked for truncation is
enough to shut up the false-positive warning.

Inspired by an idea by Dr. David Alan Gilbert <dgilbert@redhat.com>.

Signed-off-by: Eric Blake <eblake@redhat.com>
---
 hw/usb/bus.c | 6 ++++--
 1 file changed, 4 insertions(+), 2 deletions(-)

diff --git a/hw/usb/bus.c b/hw/usb/bus.c
index 5939b273b9..d910f849e7 100644
--- a/hw/usb/bus.c
+++ b/hw/usb/bus.c
@@ -407,8 +407,10 @@ void usb_register_companion(const char *masterbus, USBPort *ports[],
 void usb_port_location(USBPort *downstream, USBPort *upstream, int portnr)
 {
     if (upstream) {
-        snprintf(downstream->path, sizeof(downstream->path), "%s.%d",
-                 upstream->path, portnr);
+        int l = snprintf(downstream->path, sizeof(downstream->path), "%s.%d",
+                         upstream->path, portnr);
+        /* Max string is nn.nn.nn.nn.nn, which fits in 16 bytes */
+        assert(l < sizeof(downstream->path));
         downstream->hubcount = upstream->hubcount + 1;
     } else {
         snprintf(downstream->path, sizeof(downstream->path), "%d", portnr);
-- 
2.13.3

^ permalink raw reply related	[flat|nested] 2+ messages in thread

* Re: [Qemu-devel] [Qemu-trivial] [PATCH] usb: Fix build with newer gcc
  2017-07-17 15:13 [Qemu-devel] [PATCH] usb: Fix build with newer gcc Eric Blake
@ 2017-07-17 17:11 ` Philippe Mathieu-Daudé
  0 siblings, 0 replies; 2+ messages in thread
From: Philippe Mathieu-Daudé @ 2017-07-17 17:11 UTC (permalink / raw)
  To: Eric Blake, qemu-devel; +Cc: qemu-trivial, dgilbert, kraxel

On 07/17/2017 12:13 PM, Eric Blake wrote:
> gcc 7 is pickier about our sources:
> 
> hw/usb/bus.c: In function ‘usb_port_location’:
> hw/usb/bus.c:410:66: error: ‘%d’ directive output may be truncated writing between 1 and 11 bytes into a region of size between 0 and 15 [-Werror=format-truncation=]
>           snprintf(downstream->path, sizeof(downstream->path), "%s.%d",
>                                                                    ^~
> hw/usb/bus.c:410:9: note: ‘snprintf’ output between 3 and 28 bytes into a destination of size 16
>           snprintf(downstream->path, sizeof(downstream->path), "%s.%d",
>           ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
>                    upstream->path, portnr);
>                    ~~~~~~~~~~~~~~~~~~~~~~~
> 
> But we know that there are at most 5 levels of USB hubs, with at
> most two digits per level; that plus the separating dots means we
> use at most 15 bytes (including trailing NUL) of our 16-byte field.
> Adding an assertion to show gcc that we checked for truncation is
> enough to shut up the false-positive warning.
> 
> Inspired by an idea by Dr. David Alan Gilbert <dgilbert@redhat.com>.

elegant :)

> 
> Signed-off-by: Eric Blake <eblake@redhat.com>

Reviewed-by: Philippe Mathieu-Daudé <f4bug@amsat.org>

> ---
>   hw/usb/bus.c | 6 ++++--
>   1 file changed, 4 insertions(+), 2 deletions(-)
> 
> diff --git a/hw/usb/bus.c b/hw/usb/bus.c
> index 5939b273b9..d910f849e7 100644
> --- a/hw/usb/bus.c
> +++ b/hw/usb/bus.c
> @@ -407,8 +407,10 @@ void usb_register_companion(const char *masterbus, USBPort *ports[],
>   void usb_port_location(USBPort *downstream, USBPort *upstream, int portnr)
>   {
>       if (upstream) {
> -        snprintf(downstream->path, sizeof(downstream->path), "%s.%d",
> -                 upstream->path, portnr);
> +        int l = snprintf(downstream->path, sizeof(downstream->path), "%s.%d",
> +                         upstream->path, portnr);
> +        /* Max string is nn.nn.nn.nn.nn, which fits in 16 bytes */
> +        assert(l < sizeof(downstream->path));
>           downstream->hubcount = upstream->hubcount + 1;
>       } else {
>           snprintf(downstream->path, sizeof(downstream->path), "%d", portnr);
> 

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2017-07-17 17:11 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2017-07-17 15:13 [Qemu-devel] [PATCH] usb: Fix build with newer gcc Eric Blake
2017-07-17 17:11 ` [Qemu-devel] [Qemu-trivial] " Philippe Mathieu-Daudé

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).