1 // RUN: %clang_analyze_cc1 -std=c++11 -Wno-conversion-null -analyzer-checker=core,debug.ExprInspection -analyzer-store region -analyzer-output=text -verify %s
3 void clang_analyzer_eval(int);
5 // test to see if nullptr is detected as a null pointer
7 char *np
= nullptr; // expected-note{{'np' initialized to a null pointer value}}
8 *np
= 0; // expected-warning{{Dereference of null pointer}}
9 // expected-note@-1{{Dereference of null pointer}}
12 // check if comparing nullptr to nullptr is detected properly
19 *np1
= 0; // no-warning
22 // invoving a nullptr in a more complex operation should be cause a warning
27 char *np
= nullptr; // expected-note{{'np' initialized to a null pointer value}}
28 // casting a nullptr to anything should be caught eventually
29 int *ip
= &(((struct foo
*)np
)->f
); // expected-note{{'ip' initialized to a null pointer value}}
30 *ip
= 0; // expected-warning{{Dereference of null pointer}}
31 // expected-note@-1{{Dereference of null pointer}}
32 // should be error here too, but analysis gets stopped
36 // nullptr is implemented as a zero integer value, so should be able to compare
40 *np
= 0; // no-warning
43 *np
= 0; // no-warning
46 int pr10372(void *& x
) {
47 // GNU null is a pointer-sized integer, not a pointer.
49 // This used to crash.
54 char **p
= 0; // expected-note{{'p' initialized to a null pointer value}}
55 delete *(p
+ 0); // expected-warning{{Dereference of null pointer}}
56 // expected-note@-1{{Dereference of null pointer}}
59 void zoo1backwards() {
60 char **p
= 0; // expected-note{{'p' initialized to a null pointer value}}
61 delete *(0 + p
); // expected-warning{{Dereference of null pointer}}
62 // expected-note@-1{{Dereference of null pointer}}
65 typedef __INTPTR_TYPE__
intptr_t;
67 char **p
= 0; // expected-note{{'p' initialized to a null pointer value}}
68 delete *((char **)((intptr_t)p
* 2)); // expected-warning{{Dereference of null pointer}}
69 // expected-note@-1{{Dereference of null pointer}}
74 int **b
= 0; // expected-note{{'b' initialized to a null pointer value}}
77 :"0"(*b
) // expected-warning{{Dereference of null pointer}}
78 // expected-note@-1{{Dereference of null pointer}}
82 int exprWithCleanups() {
90 int *x
= 0; // expected-note{{'x' initialized to a null pointer value}}
91 return S(*x
).a
; // expected-warning{{Dereference of null pointer}}
92 // expected-note@-1{{Dereference of null pointer}}
95 int materializeTempExpr() {
96 int *n
= 0; // expected-note{{'n' initialized to a null pointer value}}
101 const S
&s
= S(*n
); // expected-warning{{Dereference of null pointer}}
102 // expected-note@-1{{Dereference of null pointer}}
106 typedef decltype(nullptr) nullptr_t
;
107 void testMaterializeTemporaryExprWithNullPtr() {
108 // Create MaterializeTemporaryExpr with a nullptr inside.
109 const nullptr_t
&r
= nullptr;
119 x
->f(); // expected-warning{{Called C++ object pointer is null}}
120 // expected-note@-1{{Called C++ object pointer is null}}
127 void shouldNotCrash() {
128 decltype(nullptr) p
; // expected-note{{'p' declared without an initial value}}
129 if (getSymbol()) // expected-note {{Assuming the condition is false}}
130 // expected-note@-1{{Taking false branch}}
131 // expected-note@-2{{Assuming the condition is true}}
132 // expected-note@-3{{Taking true branch}}
133 invokeF(p
); // expected-note {{Calling 'invokeF'}}
134 // expected-note@-1{{Passing null pointer value via 1st parameter 'x'}}
135 if (getSymbol()) { // expected-note {{Assuming the condition is true}}
136 // expected-note@-1{{Taking true branch}}
137 X
*xx
= Type().x
; // expected-note {{Null pointer value stored to field 'x'}}
138 // expected-note@-1{{'xx' initialized to a null pointer value}}
139 xx
->f(); // expected-warning{{Called C++ object pointer is null}}
140 // expected-note@-1{{Called C++ object pointer is null}}
144 void f(decltype(nullptr) p
) {
146 clang_analyzer_eval(p
== 0); // expected-warning{{TRUE}}
147 // expected-note@-1{{TRUE}}
148 clang_analyzer_eval(q
== 0); // expected-warning{{TRUE}}
149 // expected-note@-1{{TRUE}}
152 decltype(nullptr) returnsNullPtrType();
153 void fromReturnType() {
154 ((X
*)returnsNullPtrType())->f(); // expected-warning{{Called C++ object pointer is null}}
155 // expected-note@-1{{Called C++ object pointer is null}}
158 #define AS_ATTRIBUTE __attribute__((address_space(256)))
163 int AS_ATTRIBUTE
*x
= 0;
164 *x
= 3; // no-warning
167 void test_address_space_field_access() {
168 AS1 AS_ATTRIBUTE
*pa
= 0;
169 pa
->x
= 0; // no-warning
171 void test_address_space_bind() {
172 AS1 AS_ATTRIBUTE
*pa
= 0;
173 AS1 AS_ATTRIBUTE
&r
= *pa
;
174 r
.x
= 0; // no-warning