s3: smbd: Deliberately currupt an uninitialized pointer.
[Samba.git] / lib / util / talloc_stack.c
blobfdd0a30441dac3ad90c4eaa4abeba7f945f80f4a
1 /*
2 Unix SMB/CIFS implementation.
3 Implement a stack of talloc contexts
4 Copyright (C) Volker Lendecke 2007
5 Copyright (C) Jeremy Allison 2009 - made thread safe.
7 This program is free software; you can redistribute it and/or modify
8 it under the terms of the GNU General Public License as published by
9 the Free Software Foundation; either version 2 of the License, or
10 (at your option) any later version.
12 This program is distributed in the hope that it will be useful,
13 but WITHOUT ANY WARRANTY; without even the implied warranty of
14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
15 GNU General Public License for more details.
17 You should have received a copy of the GNU General Public License
18 along with this program; if not, write to the Free Software
19 Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
23 * Implement a stack of talloc frames.
25 * When a new talloc stackframe is allocated with talloc_stackframe(), then
26 * the TALLOC_CTX returned with talloc_tos() is reset to that new
27 * frame. Whenever that stack frame is TALLOC_FREE()'ed, then the reverse
28 * happens: The previous talloc_tos() is restored.
30 * This API is designed to be robust in the sense that if someone forgets to
31 * TALLOC_FREE() a stackframe, then the next outer one correctly cleans up and
32 * resets the talloc_tos().
34 * This robustness feature means that we can't rely on a linked list with
35 * talloc destructors because in a hierarchy of talloc destructors the parent
36 * destructor is called before its children destructors. The child destructor
37 * called after the parent would set the talloc_tos() to the wrong value.
40 #include "replace.h"
41 #include <talloc.h>
42 #include "lib/util/talloc_stack.h"
43 #include "lib/util/smb_threads.h"
44 #include "lib/util/smb_threads_internal.h"
45 #include "lib/util/fault.h"
46 #include "lib/util/debug.h"
48 struct talloc_stackframe {
49 int talloc_stacksize;
50 int talloc_stack_arraysize;
51 TALLOC_CTX **talloc_stack;
55 * In the single threaded case this is a pointer
56 * to the global talloc_stackframe. In the MT-case
57 * this is the pointer to the thread-specific key
58 * used to look up the per-thread talloc_stackframe
59 * pointer.
62 static void *global_ts;
64 /* Variable to ensure TLS value is only initialized once. */
65 static smb_thread_once_t ts_initialized = SMB_THREAD_ONCE_INIT;
67 static void talloc_stackframe_init(void * unused)
69 if (SMB_THREAD_CREATE_TLS("talloc_stackframe", global_ts)) {
70 smb_panic("talloc_stackframe_init create_tls failed");
74 static struct talloc_stackframe *talloc_stackframe_create(void)
76 #if defined(PARANOID_MALLOC_CHECKER)
77 #ifdef calloc
78 #undef calloc
79 #endif
80 #endif
81 struct talloc_stackframe *ts = (struct talloc_stackframe *)calloc(
82 1, sizeof(struct talloc_stackframe));
83 #if defined(PARANOID_MALLOC_CHECKER)
84 #define calloc(n, s) __ERROR_DONT_USE_MALLOC_DIRECTLY
85 #endif
87 if (!ts) {
88 smb_panic("talloc_stackframe_init malloc failed");
91 SMB_THREAD_ONCE(&ts_initialized, talloc_stackframe_init, NULL);
93 if (SMB_THREAD_SET_TLS(global_ts, ts)) {
94 smb_panic("talloc_stackframe_init set_tls failed");
96 return ts;
99 static int talloc_pop(TALLOC_CTX *frame)
101 struct talloc_stackframe *ts =
102 (struct talloc_stackframe *)SMB_THREAD_GET_TLS(global_ts);
103 size_t blocks;
104 int i;
106 /* Catch lazy frame-freeing. */
107 if (ts->talloc_stack[ts->talloc_stacksize-1] != frame) {
108 DEBUG(0, ("Freed frame %s, expected %s.\n",
109 talloc_get_name(frame),
110 talloc_get_name(ts->talloc_stack
111 [ts->talloc_stacksize-1])));
112 #ifdef DEVELOPER
113 smb_panic("Frame not freed in order.");
114 #endif
117 for (i=0; i<10; i++) {
120 * We have to free our children first, calling all
121 * destructors. If a destructor hanging deeply off
122 * "frame" uses talloc_tos() itself while freeing the
123 * toplevel frame, we panic because that nested
124 * talloc_tos() in the destructor does not find a
125 * stackframe anymore.
127 * Do it in a loop up to 10 times as the destructors
128 * might use more of talloc_tos().
131 talloc_free_children(frame);
133 blocks = talloc_total_blocks(frame);
134 if (blocks == 1) {
135 break;
139 if (blocks != 1) {
140 DBG_WARNING("Left %zu blocks after %i "
141 "talloc_free_children(frame) calls\n",
142 blocks, i);
145 for (i=ts->talloc_stacksize-1; i>0; i--) {
146 if (frame == ts->talloc_stack[i]) {
147 break;
149 TALLOC_FREE(ts->talloc_stack[i]);
152 ts->talloc_stack[i] = NULL;
153 ts->talloc_stacksize = i;
154 return 0;
158 * Create a new talloc stack frame.
160 * When free'd, it frees all stack frames that were created after this one and
161 * not explicitly freed.
164 static TALLOC_CTX *talloc_stackframe_internal(const char *location,
165 size_t poolsize)
167 TALLOC_CTX **tmp, *top;
168 struct talloc_stackframe *ts =
169 (struct talloc_stackframe *)SMB_THREAD_GET_TLS(global_ts);
171 if (ts == NULL) {
172 ts = talloc_stackframe_create();
175 if (ts->talloc_stack_arraysize < ts->talloc_stacksize + 1) {
176 tmp = talloc_realloc(NULL, ts->talloc_stack, TALLOC_CTX *,
177 ts->talloc_stacksize + 1);
178 if (tmp == NULL) {
179 goto fail;
181 ts->talloc_stack = tmp;
182 ts->talloc_stack_arraysize = ts->talloc_stacksize + 1;
185 if (poolsize) {
186 top = talloc_pool(ts->talloc_stack, poolsize);
187 } else {
188 TALLOC_CTX *parent;
189 /* We chain parentage, so if one is a pool we draw from it. */
190 if (ts->talloc_stacksize == 0) {
191 parent = ts->talloc_stack;
192 } else {
193 parent = ts->talloc_stack[ts->talloc_stacksize-1];
195 top = talloc_new(parent);
198 if (top == NULL) {
199 goto fail;
201 talloc_set_name_const(top, location);
202 talloc_set_destructor(top, talloc_pop);
204 ts->talloc_stack[ts->talloc_stacksize++] = top;
205 return top;
207 fail:
208 smb_panic("talloc_stackframe failed");
209 return NULL;
212 TALLOC_CTX *_talloc_stackframe(const char *location)
214 return talloc_stackframe_internal(location, 0);
217 TALLOC_CTX *_talloc_stackframe_pool(const char *location, size_t poolsize)
219 return talloc_stackframe_internal(location, poolsize);
223 * Get us the current top of the talloc stack.
226 TALLOC_CTX *_talloc_tos(const char *location)
228 struct talloc_stackframe *ts =
229 (struct talloc_stackframe *)SMB_THREAD_GET_TLS(global_ts);
231 if (ts == NULL || ts->talloc_stacksize == 0) {
232 _talloc_stackframe(location);
233 ts = (struct talloc_stackframe *)SMB_THREAD_GET_TLS(global_ts);
234 DEBUG(0, ("no talloc stackframe at %s, leaking memory\n",
235 location));
236 #ifdef DEVELOPER
237 smb_panic("No talloc stackframe");
238 #endif
241 return ts->talloc_stack[ts->talloc_stacksize-1];
245 * return true if a talloc stackframe exists
246 * this can be used to prevent memory leaks for code that can
247 * optionally use a talloc stackframe (eg. nt_errstr())
250 bool talloc_stackframe_exists(void)
252 struct talloc_stackframe *ts =
253 (struct talloc_stackframe *)SMB_THREAD_GET_TLS(global_ts);
255 if (ts == NULL || ts->talloc_stacksize == 0) {
256 return false;
258 return true;