diff options
Diffstat (limited to 'clang/test')
| -rw-r--r-- | clang/test/Analysis/new-ctor-conservative.cpp | 19 | ||||
| -rw-r--r-- | clang/test/Analysis/new-ctor-null-throw.cpp | 26 | ||||
| -rw-r--r-- | clang/test/Analysis/new-ctor-null.cpp | 15 |
3 files changed, 58 insertions, 2 deletions
diff --git a/clang/test/Analysis/new-ctor-conservative.cpp b/clang/test/Analysis/new-ctor-conservative.cpp index 4500e3a253d..b82df9abf1e 100644 --- a/clang/test/Analysis/new-ctor-conservative.cpp +++ b/clang/test/Analysis/new-ctor-conservative.cpp @@ -1,6 +1,7 @@ -// RUN: %clang_analyze_cc1 -analyzer-checker=core,debug.ExprInspection -analyzer-config c++-allocator-inlining=true -std=c++11 -verify %s +// RUN: %clang_analyze_cc1 -w -analyzer-checker=core,debug.ExprInspection -analyzer-config c++-allocator-inlining=true -std=c++11 -verify %s void clang_analyzer_eval(bool); +void clang_analyzer_warnIfReached(); struct S { int x; @@ -27,3 +28,19 @@ void checkNewArray() { // FIXME: Should be true once we inline array constructors. clang_analyzer_eval(s[0].x == 1); // expected-warning{{UNKNOWN}} } + +struct NullS { + NullS() { + if (this) {} + } + NullS(int x) { + if (!this) { + clang_analyzer_warnIfReached(); // no-warning + } + } +}; + +void checkNullThis() { + NullS *nulls = new NullS(); // no-crash + NullS *nulls2 = new NullS(0); +} diff --git a/clang/test/Analysis/new-ctor-null-throw.cpp b/clang/test/Analysis/new-ctor-null-throw.cpp new file mode 100644 index 00000000000..cdaf01d8de6 --- /dev/null +++ b/clang/test/Analysis/new-ctor-null-throw.cpp @@ -0,0 +1,26 @@ +// RUN: %clang_analyze_cc1 -w -analyzer-checker=core,debug.ExprInspection -analyzer-config c++-allocator-inlining=true -std=c++11 -verify %s + +void clang_analyzer_eval(bool); + +typedef __typeof__(sizeof(int)) size_t; + + +// These are ill-formed. One cannot return nullptr from a throwing version of an +// operator new. +void *operator new(size_t size) { + return nullptr; +} +void *operator new[](size_t size) { + return nullptr; +} + +struct S { + int x; + S() : x(1) {} + ~S() {} +}; + +void testArrays() { + S *s = new S[10]; // no-crash + s[0].x = 2; // expected-warning{{Dereference of null pointer}} +} diff --git a/clang/test/Analysis/new-ctor-null.cpp b/clang/test/Analysis/new-ctor-null.cpp index 301c72a6c18..ac2a39a0284 100644 --- a/clang/test/Analysis/new-ctor-null.cpp +++ b/clang/test/Analysis/new-ctor-null.cpp @@ -1,6 +1,7 @@ // RUN: %clang_analyze_cc1 -analyzer-checker=core,debug.ExprInspection -analyzer-config c++-allocator-inlining=true -std=c++11 -verify %s void clang_analyzer_eval(bool); +void clang_analyzer_warnIfReached(); typedef __typeof__(sizeof(int)) size_t; @@ -13,7 +14,11 @@ void *operator new[](size_t size) throw() { struct S { int x; - S() : x(1) {} + S() : x(1) { + // FIXME: Constructor should not be called with null this, even if it was + // returned by operator new(). + clang_analyzer_warnIfReached(); // expected-warning{{REACHABLE}} + } ~S() {} }; @@ -21,3 +26,11 @@ void testArrays() { S *s = new S[10]; // no-crash s[0].x = 2; // expected-warning{{Dereference of null pointer}} } + +int global; +void testInvalidationOnConstructionIntoNull() { + global = 0; + S *s = new S(); + // FIXME: Should be FALSE - we should not invalidate globals. + clang_analyzer_eval(global); // expected-warning{{UNKNOWN}} +} |

