Skip to content

Commit 88250d7

Browse files
author
Enrico Steffinlongo
committed
Add shadow memory pointer check regression tests
1 parent eda8bf8 commit 88250d7

File tree

4 files changed

+55
-0
lines changed

4 files changed

+55
-0
lines changed
Lines changed: 18 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,18 @@
1+
#include <assert.h>
2+
3+
extern _Bool nondet();
4+
5+
int main()
6+
{
7+
__CPROVER_field_decl_local("field1", (_Bool)0);
8+
9+
char *buffer[10];
10+
11+
__CPROVER_set_field(&buffer[9], "field1", 1);
12+
assert(__CPROVER_get_field(&buffer[9], "field1") == 1);
13+
__CPROVER_set_field(&buffer[10], "field1", 1);
14+
if(nondet())
15+
{
16+
assert(__CPROVER_get_field(&buffer[10], "field1") == 1);
17+
}
18+
}
Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,12 @@
1+
CORE
2+
main.c
3+
--verbosity 10 --pointer-check
4+
^EXIT=10$
5+
^SIGNAL=0$
6+
^VERIFICATION FAILED$
7+
line 13 dereference failure: pointer outside object bounds.*: FAILURE
8+
line 16 dereference failure: pointer outside object bounds.*: FAILURE
9+
--
10+
^warning: ignoring
11+
line 11 dereference failure: pointer outside object bounds.*: FAILURE
12+
line 12 dereference failure: pointer outside object bounds.*: FAILURE
Lines changed: 15 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,15 @@
1+
#include <assert.h>
2+
3+
int main()
4+
{
5+
__CPROVER_field_decl_local("uninitialized", (char)0);
6+
7+
char a;
8+
int *i = &a;
9+
10+
__CPROVER_set_field(i, "uninitialized", 1); // should this fail?
11+
12+
assert(__CPROVER_get_field(&a, "uninitialized") == 1);
13+
assert(__CPROVER_get_field(&a + 1, "uninitialized") == 1);
14+
assert(__CPROVER_get_field(i, "uninitialized") == 1);
15+
}
Lines changed: 10 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,10 @@
1+
CORE
2+
main.c
3+
--verbosity 10 --pointer-check
4+
^EXIT=10$
5+
^SIGNAL=0$
6+
^VERIFICATION FAILED$
7+
line 10 dereference failure: pointer outside object bounds in \*i.*: FAILURE
8+
line 13 dereference failure: pointer outside object bounds in \(&a\).*: FAILURE
9+
line 14 dereference failure: pointer outside object bounds in \*i.*: FAILURE
10+
--

0 commit comments

Comments
 (0)