diff options
author | Eric Blake <eblake@redhat.com> | 2011-04-28 17:25:49 -0600 |
---|---|---|
committer | Eric Blake <eblake@redhat.com> | 2011-04-29 11:06:29 -0600 |
commit | aaf62c6aa8069d9a79fae845e1cab86755e5c763 (patch) | |
tree | 1af9c5250fa895a9bebc76511b461996f3bd5b10 /lib | |
parent | e82aa5d1a3c12cf3bbc7148182a2d1af33aa209d (diff) | |
download | gnulib-aaf62c6aa8069d9a79fae845e1cab86755e5c763.tar.gz |
quotearg: avoid uninitialized variable use
Coverity correctly deduced:
Error: UNINIT:
m4-1.4.16/lib/quotearg.c:171: var_decl: Declaring variable "o" without initializer.
m4-1.4.16/lib/quotearg.c:175: uninit_use: Using uninitialized value "o": field "o".right_quote is uninitialized.
When custom_quoting_style was introduced in commit 12247f77,
this method was not updated, and any caller that passed
the new enum value to any of the existing quotearg_*style
functions could trigger a crash from the uninitialized memory.
That was already documented as unspecified behavior, though,
so changing to an abort makes it easier to spot bad code that
passes the wrong enum value, rather than waiting for the
eventual bad memory dereference later on.
Most callers of quotearg_*style were using quoting_style_args
and quoting_style_vals to map strings to particular enum
values, and custom_quoting_style is (intentionally) not covered
by these arrays, so the pre-patch bug/post-patch abort are not
possible with those callers.
* lib/quotearg.c (quoting_options_from_style): Initialize
remaining fields, and ensure that custom styles are only used via
quoting_options rather than quoting_style.
Signed-off-by: Eric Blake <eblake@redhat.com>
Diffstat (limited to 'lib')
-rw-r--r-- | lib/quotearg.c | 6 |
1 files changed, 3 insertions, 3 deletions
diff --git a/lib/quotearg.c b/lib/quotearg.c index fb4955993e..da8ba1eac6 100644 --- a/lib/quotearg.c +++ b/lib/quotearg.c @@ -168,10 +168,10 @@ set_custom_quoting (struct quoting_options *o, static struct quoting_options quoting_options_from_style (enum quoting_style style) { - struct quoting_options o; + struct quoting_options o = { 0 }; + if (style == custom_quoting_style) + abort (); o.style = style; - o.flags = 0; - memset (o.quote_these_too, 0, sizeof o.quote_these_too); return o; } |