2 * Copyright (C) 2012 Oracle.
4 * This program is free software; you can redistribute it and/or
5 * modify it under the terms of the GNU General Public License
6 * as published by the Free Software Foundation; either version 2
7 * of the License, or (at your option) any later version.
9 * This program is distributed in the hope that it will be useful,
10 * but WITHOUT ANY WARRANTY; without even the implied warranty of
11 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12 * GNU General Public License for more details.
14 * You should have received a copy of the GNU General Public License
15 * along with this program; if not, see http://www.gnu.org/copyleft/gpl.txt
24 static void set_undefined(struct sm_state
*sm
, struct expression
*mod_expr
)
26 if (sm
->state
== &size_in_bytes
)
27 set_state(my_id
, sm
->name
, sm
->sym
, &undefined
);
30 static int is_sizeof(struct expression
*expr
)
32 return (expr
->type
== EXPR_SIZEOF
);
35 static int is_macro(struct expression
*expr
, const char *macro_name
)
38 struct expression
*outside_expr
;
40 /* check that we aren't inside the macro itself */
41 outside_expr
= last_ptr_list((struct ptr_list
*)big_expression_stack
);
42 if (outside_expr
&& positions_eq(expr
->pos
, outside_expr
->pos
))
45 name
= get_macro_name(expr
->pos
);
46 if (name
&& strcmp(name
, macro_name
) == 0)
51 static int is_size_in_bytes(struct expression
*expr
)
56 if (is_macro(expr
, "offsetof"))
58 if (is_macro(expr
, "PAGE_SIZE"))
61 if (get_state_expr(my_id
, expr
) == &size_in_bytes
)
67 static void match_binop(struct expression
*expr
)
75 type
= get_pointer_type(expr
->left
);
78 if (type_bits(type
) <= 8) /* ignore void, bool and char pointers*/
80 if (!is_size_in_bytes(expr
->right
))
83 /* if we know it's within bounds then don't complain */
84 size
= get_array_size(expr
->left
);
88 get_absolute_max(expr
->right
, &max
);
89 if (max
.uvalue
< size
)
93 name
= expr_to_str(expr
->left
);
94 sm_warning("potential pointer math issue ('%s' is a %d bit pointer)",
95 name
, type_bits(type
));
99 static void match_assign(struct expression
*expr
)
104 if (!is_size_in_bytes(expr
->right
))
106 set_state_expr(my_id
, expr
->left
, &size_in_bytes
);
109 static void check_assign(struct expression
*expr
)
114 if (expr
->op
!= SPECIAL_ADD_ASSIGN
&& expr
->op
!= SPECIAL_SUB_ASSIGN
)
117 type
= get_pointer_type(expr
->left
);
120 if (type_bits(type
) == 8 || type_bits(type
) == -1)
122 if (!is_size_in_bytes(expr
->right
))
124 name
= expr_to_var(expr
->left
);
125 sm_warning("potential pointer math issue ('%s' is a %d bit pointer)",
126 name
, type_bits(type
));
130 void check_pointer_math(int id
)
133 add_hook(&match_binop
, BINOP_HOOK
);
134 add_hook(&match_assign
, ASSIGNMENT_HOOK
);
135 add_hook(&check_assign
, ASSIGNMENT_HOOK
);
136 add_modification_hook(my_id
, &set_undefined
);