8371647: 7 Integer overflows in mlib_malloc of mlib_sys.c:85 #28560
+42
−0
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
There is a possible overflow when using
mlib_alloc(). For example,mlib_alloc(sizeof(mlib_s32) * (m * n))may overflow if m and n are greater than 46430, since this would be greater than the max value for a signed 32 bit integer. I have addedSAFE_TO_ADDandSAFE_TO_MULTin an attempt to amend this issue. CI testing shows all green.Progress
Issue
Reviewing
Using
gitCheckout this PR locally:
$ git fetch https://git.openjdk.org/jdk.git pull/28560/head:pull/28560$ git checkout pull/28560Update a local copy of the PR:
$ git checkout pull/28560$ git pull https://git.openjdk.org/jdk.git pull/28560/headUsing Skara CLI tools
Checkout this PR locally:
$ git pr checkout 28560View PR using the GUI difftool:
$ git pr show -t 28560Using diff file
Download this PR as a diff file:
https://git.openjdk.org/jdk/pull/28560.diff
Using Webrev
Link to Webrev Comment