pos34-c-fp-suppression.cpp
1.01 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
// RUN: %clang_analyze_cc1 \
// RUN: -analyzer-checker=alpha.security.cert.pos.34c\
// RUN: -verify %s
#include "../Inputs/system-header-simulator.h"
void free(void *memblock);
void *malloc(size_t size);
int putenv(char *);
int rand();
namespace test_auto_var_used_good {
extern char *ex;
int test_extern() {
return putenv(ex); // no-warning: extern storage class.
}
void foo(void) {
char *buffer = (char *)"huttah!";
if (rand() % 2 == 0) {
buffer = (char *)malloc(5);
strcpy(buffer, "woot");
}
putenv(buffer);
}
void bar(void) {
char *buffer = (char *)malloc(5);
strcpy(buffer, "woot");
if (rand() % 2 == 0) {
free(buffer);
buffer = (char *)"blah blah blah";
}
putenv(buffer);
}
void baz() {
char env[] = "NAME=value";
// TODO: False Positive
putenv(env);
// expected-warning@-1 {{The 'putenv' function should not be called with arguments that have automatic storage}}
/*
DO SOMETHING
*/
putenv((char *)"NAME=anothervalue");
}
} // namespace test_auto_var_used_good