Author: dcoughlin Date: Tue Apr 12 14:29:52 2016 New Revision: 266109 URL: http://llvm.org/viewvc/llvm-project?rev=266109&view=rev Log: [analyzer] Nullability: Suppress return diagnostics in inlined functions.
The nullability checker can sometimes miss detecting nullability precondition violations in inlined functions because the binding for the parameter that violated the precondition becomes dead before the return: int * _Nonnull callee(int * _Nonnull p2) { if (!p2) // p2 becomes dead here, so binding removed. return 0; // warning here because value stored in p2 is symbolic. else return p2; } int *caller(int * _Nonnull p1) { return callee(p1); } The fix, which is quite blunt, is to not warn about null returns in inlined methods/functions. This won’t lose much coverage for ObjC because the analyzer always analyzes each ObjC method at the top level in addition to inlined. It *will* lose coverage for C — but there aren’t that many codebases with C nullability annotations. rdar://problem/25615050 Modified: cfe/trunk/lib/StaticAnalyzer/Checkers/NullabilityChecker.cpp cfe/trunk/test/Analysis/nullability.mm Modified: cfe/trunk/lib/StaticAnalyzer/Checkers/NullabilityChecker.cpp URL: http://llvm.org/viewvc/llvm-project/cfe/trunk/lib/StaticAnalyzer/Checkers/NullabilityChecker.cpp?rev=266109&r1=266108&r2=266109&view=diff ============================================================================== --- cfe/trunk/lib/StaticAnalyzer/Checkers/NullabilityChecker.cpp (original) +++ cfe/trunk/lib/StaticAnalyzer/Checkers/NullabilityChecker.cpp Tue Apr 12 14:29:52 2016 @@ -562,7 +562,8 @@ void NullabilityChecker::checkPreStmt(co if (Filter.CheckNullReturnedFromNonnull && NullReturnedFromNonNull && RetExprTypeLevelNullability != Nullability::Nonnull && - !InSuppressedMethodFamily) { + !InSuppressedMethodFamily && + C.getLocationContext()->inTopFrame()) { static CheckerProgramPointTag Tag(this, "NullReturnedFromNonnull"); ExplodedNode *N = C.generateErrorNode(State, &Tag); if (!N) Modified: cfe/trunk/test/Analysis/nullability.mm URL: http://llvm.org/viewvc/llvm-project/cfe/trunk/test/Analysis/nullability.mm?rev=266109&r1=266108&r2=266109&view=diff ============================================================================== --- cfe/trunk/test/Analysis/nullability.mm (original) +++ cfe/trunk/test/Analysis/nullability.mm Tue Apr 12 14:29:52 2016 @@ -238,6 +238,41 @@ void testPreconditionViolationInInlinedF doNotWarnWhenPreconditionIsViolated(p); } +@interface TestInlinedPreconditionViolationClass : NSObject +@end + +@implementation TestInlinedPreconditionViolationClass +-(Dummy * _Nonnull) calleeWithParam:(Dummy * _Nonnull) p2 { + Dummy *x = 0; + if (!p2) // p2 binding becomes dead at this point. + return x; // no-warning + else + return p2; +} + +-(Dummy *)callerWithParam:(Dummy * _Nonnull) p1 { + return [self calleeWithParam:p1]; +} + +@end + +int * _Nonnull InlinedPreconditionViolationInFunctionCallee(int * _Nonnull p2) { + int *x = 0; + if (!p2) // p2 binding becomes dead at this point. + return x; // no-warning + else + return p2; +} + +int * _Nonnull InlinedReturnNullOverSuppressionCallee(int * _Nonnull p2) { + int *result = 0; + return result; // no-warning; but this is an over suppression +} + +int *InlinedReturnNullOverSuppressionCaller(int * _Nonnull p1) { + return InlinedReturnNullOverSuppressionCallee(p1); +} + void inlinedNullable(Dummy *_Nullable p) { if (p) return; } _______________________________________________ cfe-commits mailing list cfe-commits@lists.llvm.org http://lists.llvm.org/cgi-bin/mailman/listinfo/cfe-commits