2
0
mirror of https://gitlab.isc.org/isc-projects/bind9 synced 2025-08-22 18:19:42 +00:00
bind/lib/isc/tests/safe_test.c

106 lines
2.2 KiB
C
Raw Normal View History

/*
* Copyright (C) Internet Systems Consortium, Inc. ("ISC")
*
* This Source Code Form is subject to the terms of the Mozilla Public
* License, v. 2.0. If a copy of the MPL was not distributed with this
* file, you can obtain one at https://mozilla.org/MPL/2.0/.
*
* See the COPYRIGHT file distributed with this work for additional
* information regarding copyright ownership.
*/
/* ! \file */
2018-10-23 22:26:42 -07:00
#if HAVE_CMOCKA
#include <sched.h> /* IWYU pragma: keep */
#include <setjmp.h>
2018-10-23 22:26:42 -07:00
#include <stdarg.h>
#include <stddef.h>
#include <stdlib.h>
Include <sched.h> where necessary for musl libc All unit tests define the UNIT_TESTING macro, which causes <cmocka.h> to replace malloc(), calloc(), realloc(), and free() with its own functions tracking memory allocations. In order for this not to break compilation, the system header declaring the prototypes for these standard functions must be included before <cmocka.h>. Normally, these prototypes are only present in <stdlib.h>, so we make sure it is included before <cmocka.h>. However, musl libc also defines the prototypes for calloc() and free() in <sched.h>, which is included by <pthread.h>, which is included e.g. by <isc/mutex.h>. Thus, unit tests including "dnstest.h" (which includes <isc/mem.h>, which includes <isc/mutex.h>) after <cmocka.h> will not compile with musl libc as for these programs, <sched.h> will be included after <cmocka.h>. Always including <cmocka.h> after all other header files is not a feasible solution as that causes the mock assertion macros defined in <isc/util.h> to mangle the contents of <cmocka.h>, thus breaking compilation. We cannot really use the __noreturn__ or analyzer_noreturn attributes with cmocka assertion functions because they do return if the tested condition is true. The problem is that what BIND unit tests do is incompatible with Clang Static Analyzer's assumptions: since we use cmocka, our custom assertion handlers are present in a shared library (i.e. it is the cmocka library that checks the assertion condition, not a macro in unit test code). Redefining cmocka's assertion macros in <isc/util.h> is an ugly hack to overcome that problem - unfortunately, this is the only way we can think of to make Clang Static Analyzer properly process unit test code. Giving up on Clang Static Analyzer being able to properly process unit test code is not a satisfactory solution. Undefining _GNU_SOURCE for unit test code could work around the problem (musl libc's <sched.h> only defines the prototypes for calloc() and free() when _GNU_SOURCE is defined), but doing that could introduce discrepancies for unit tests including entire *.c files, so it is also not a good solution. All in all, including <sched.h> before <cmocka.h> for all affected unit tests seems to be the most benign way of working around this musl libc quirk. While quite an ugly solution, it achieves our goals here, which are to keep the benefit of proper static analysis of unit test code and to fix compilation against musl libc.
2019-07-30 21:08:40 +02:00
#include <string.h>
2018-10-23 22:26:42 -07:00
#define UNIT_TESTING
#include <cmocka.h>
#include <isc/safe.h>
#include <isc/util.h>
2018-10-23 22:26:42 -07:00
/* test isc_safe_memequal() */
static void
2020-02-13 14:44:37 -08:00
isc_safe_memequal_test(void **state) {
2018-10-23 22:26:42 -07:00
UNUSED(state);
assert_true(isc_safe_memequal("test", "test", 4));
assert_true(!isc_safe_memequal("test", "tesc", 4));
assert_true(
isc_safe_memequal("\x00\x00\x00\x00", "\x00\x00\x00\x00", 4));
assert_true(
!isc_safe_memequal("\x00\x00\x00\x00", "\x00\x00\x00\x01", 4));
assert_true(
!isc_safe_memequal("\x00\x00\x00\x02", "\x00\x00\x00\x00", 4));
}
2018-10-23 22:26:42 -07:00
/* test isc_safe_memwipe() */
static void
2020-02-13 14:44:37 -08:00
isc_safe_memwipe_test(void **state) {
2018-10-23 22:26:42 -07:00
UNUSED(state);
/* These should pass. */
isc_safe_memwipe(NULL, 0);
isc_safe_memwipe((void *)-1, 0);
/*
* isc_safe_memwipe(ptr, size) should function same as
* memset(ptr, 0, size);
*/
{
char buf1[4] = { 1, 2, 3, 4 };
char buf2[4] = { 1, 2, 3, 4 };
isc_safe_memwipe(buf1, sizeof(buf1));
memset(buf2, 0, sizeof(buf2));
2018-10-23 22:26:42 -07:00
assert_int_equal(memcmp(buf1, buf2, sizeof(buf1)), 0);
}
/*
* Boundary test.
*/
{
char buf1[4] = { 1, 2, 3, 4 };
char buf2[4] = { 1, 2, 3, 4 };
/*
* We wipe 3 elements on purpose, keeping the 4th in
* place.
*/
isc_safe_memwipe(buf1, 3);
memset(buf2, 0, 3);
2018-10-23 22:26:42 -07:00
assert_int_equal(memcmp(buf1, buf2, sizeof(buf1)), 0);
}
}
2018-10-23 22:26:42 -07:00
int
2020-02-13 14:44:37 -08:00
main(void) {
2018-10-23 22:26:42 -07:00
const struct CMUnitTest tests[] = {
cmocka_unit_test(isc_safe_memequal_test),
cmocka_unit_test(isc_safe_memwipe_test),
};
return (cmocka_run_group_tests(tests, NULL, NULL));
}
2018-10-23 22:26:42 -07:00
#else /* HAVE_CMOCKA */
#include <stdio.h>
int
2020-02-13 14:44:37 -08:00
main(void) {
2018-10-23 22:26:42 -07:00
printf("1..0 # Skipped: cmocka not available\n");
return (SKIPPED_TEST_EXIT_CODE);
2018-10-23 22:26:42 -07:00
}
#endif /* if HAVE_CMOCKA */