brintos

brintos / llvm-project-archived public Read only

0
0
Text · 2.6 KiB · 6ca014f Raw
84 lines · c
1// RUN: %clang_analyze_cc1 -analyzer-checker=core,unix.Malloc,debug.ExprInspection -analyzer-config max-nodes=12 -verify %s2 3// Here we test how "suppress on sink" feature of certain bugtypes interacts4// with reaching analysis limits.5 6// If we report a warning of a bug-type with "suppress on sink" attribute set7// (such as MallocChecker's memory leak warning), then failing to reach the8// reason for the sink (eg. no-return function such as "exit()") due to analysis9// limits (eg. max-nodes option), we may produce a false positive.10 11typedef __typeof(sizeof(int)) size_t;12void *malloc(size_t);13 14extern void exit(int) __attribute__ ((__noreturn__));15 16void clang_analyzer_warnIfReached(void);17 18int coin(void);19 20void test_single_cfg_block_sink(void) {21  void *p = malloc(1); // no-warning (wherever the leak warning may occur here)22 23  // Due to max-nodes option in the run line, we should reach the first call24  // but bail out before the second call.25  // If the test on these two lines starts failing, see if modifying26  // the max-nodes run-line helps.27  clang_analyzer_warnIfReached(); // expected-warning{{REACHABLE}}28  clang_analyzer_warnIfReached(); // no-warning29 30  // Even though we do not reach this line, we should still suppress31  // the leak report.32  exit(0);33}34 35// A similar test with more complicated control flow before the no-return thing,36// so that the no-return thing wasn't in the same CFG block.37void test_more_complex_control_flow_before_sink(void) {38  void *p = malloc(1); // no-warning39 40  clang_analyzer_warnIfReached(); // expected-warning{{REACHABLE}}41  clang_analyzer_warnIfReached(); // no-warning42 43  if (coin())44    exit(0);45  else46    exit(1);47}48 49// A loop before the no-return function, to make sure that50// the dominated-by-sink analysis doesn't hang.51void test_loop_before_sink(int n) {52  void *p = malloc(1); // no-warning53 54  clang_analyzer_warnIfReached(); // expected-warning{{REACHABLE}}55  clang_analyzer_warnIfReached(); // no-warning56 57  for (int i = 0; i < n; ++i) {58  }59  exit(1);60}61 62// We're not sure if this is no-return.63void test_loop_with_sink(int n) {64  void *p = malloc(1); // expected-warning@+2{{Potential leak of memory}}65 66  clang_analyzer_warnIfReached(); // expected-warning{{REACHABLE}}67  clang_analyzer_warnIfReached(); // no-warning68 69  for (int i = 0; i < n; ++i)70    if (i == 0)71      exit(1);72}73 74// Handle unreachable blocks correctly.75void test_unreachable_successor_blocks(void) {76  void *p = malloc(1); // no-warning77 78  clang_analyzer_warnIfReached(); // expected-warning{{REACHABLE}}79  clang_analyzer_warnIfReached(); // no-warning80 81  if (1) // no-crash82    exit(1);83}84