-
Notifications
You must be signed in to change notification settings - Fork 26.2k
column: exit early when indent length is larger than width #1937
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: master
Are you sure you want to change the base?
Conversation
Welcome to GitGitGadgetHi @lavendarlatte, and welcome to GitGitGadget, the GitHub App to send patch series to the Git mailing list from GitHub Pull Requests. Please make sure that either:
You can CC potential reviewers by adding a footer to the PR description with the following syntax:
NOTE: DO NOT copy/paste your CC list from a previous GGG PR's description, Also, it is a good idea to review the commit messages one last time, as the Git project expects them in a quite specific form:
It is in general a good idea to await the automated test ("Checks") in this Pull Request before contributing the patches, e.g. to avoid trivial issues such as unportable code. Contributing the patchesBefore you can contribute the patches, your GitHub username needs to be added to the list of permitted users. Any already-permitted user can do that, by adding a comment to your PR of the form Both the person who commented An alternative is the channel
Once on the list of permitted usernames, you can contribute the patches to the Git mailing list by adding a PR comment If you want to see what email(s) would be sent for a After you submit, GitGitGadget will respond with another comment that contains the link to the cover letter mail in the Git mailing list archive. Please make sure to monitor the discussion in that thread and to address comments and suggestions (while the comments and suggestions will be mirrored into the PR by GitGitGadget, you will still want to reply via mail). If you do not want to subscribe to the Git mailing list just to be able to respond to a mail, you can download the mbox from the Git mailing list archive (click the curl -g --user "<EMailAddress>:<Password>" \
--url "imaps://imap.gmail.com/INBOX" -T /path/to/raw.txt To iterate on your change, i.e. send a revised patch or patch series, you will first want to (force-)push to the same branch. You probably also want to modify your Pull Request description (or title). It is a good idea to summarize the revision by adding something like this to the cover letter (read: by editing the first comment on the PR, i.e. the PR description):
To send a new iteration, just add another PR comment with the contents: Need help?New contributors who want advice are encouraged to join git-mentoring@googlegroups.com, where volunteers who regularly contribute to Git are willing to answer newbie questions, give advice, or otherwise provide mentoring to interested contributors. You must join in order to post or view messages, but anyone can join. You may also be able to find help in real time in the developer IRC channel, |
There are issues in commit 52b1cac: |
/allow |
@lavendarlatte I took the liberty of deleting the boiler plate text from the PR description, as it would have been sent as part of the cover letter (which is clearly undesirable). |
User lavendarlatte is now allowed to use GitGitGadget. WARNING: lavendarlatte has no public email address set on GitHub; GitGitGadget needs an email address to Cc: you on your contribution, so that you receive any feedback on the Git mailing list. Go to https://github.com/settings/profile to make your preferred email public to let GitGitGadget know which email address to use. |
The code exits with "fatal size_t overflow" when indent length is larger than width. This is because when calculating cols of struct column_data, unsigned underflow happens and cols is set to negative value, then converted to size_t when calling REALLOC_ARRAY in shrink_columns() function. This can lead to allocating extremely large chunk of memory when succeeds, or crash when fails. The change exits code early with failure reason to avoid underflow and clarify argument limitations. This change ensures that cols is always positive, making the code clearer. It also eliminates the need for warning suppression related to signed-unsigned comparisons, as cols can be safely converted to size_t. Signed-off-by: Hyunji Choi <hyunjidev@gmail.com>
Error: Could not determine full name of lavendarlatte |
/preview |
Preview email sent as pull.1937.git.git.1743479632864.gitgitgadget@gmail.com |
/submit |
Submitted as pull.1937.git.git.1743558315633.gitgitgadget@gmail.com To fetch this version into
To fetch this version to local tag
|
I have sent this to git-security first for potential security check.
Thank you Patrick for review and reply.
Based on your comment I have updated BUG() to die() and added two tests.
Also confirmed all existing column tests pass with new check.
This is copy of his reply:
Hi, thanks for your report!
The use of both
print_columns()
andrun_column_filter()
is ratherlimited across the Git codebase and only covers across a small set of
builtin commands:
--column
command line option.
wt_longstatus_print_other()
, but the values arehardcoded.
--column
command line option.So only git-branch(1), git-tag(1) and git-column(1) are relevant in this
context, and I cannot think of any way to exploit these in a meaningful
way. I also think that
--column
options are unlikely to be used in anyscripts.
So all in all I think it's fine to discuss this on our normal mailing
list and fix the issue in the open. But I'd maybe wait a day or two for
others to chime in before doing so.
Given that these values are user-controlled we probably shouldn't use
BUG()
because it isn't.die()
would likely be a better fit. Weshould also have one or two tests to verify that things work as
expected.
CC: Patrick Steinhardt ps@pks.im, gitster@pobox.com, code@khaugsbakk.name