undefect. CWE-407 — 63 sites patched across 27 ecosystems
Authors: russell@unturf.com · brackishbert@gmail.com · foxhop.net · TimeHexOn.com Patches, unit tests, benchmarks, whitepaper, and outreach briefs. Public domain — no copyright claimed. Use freely.
This commit is contained in:
commit
0a580b313d
70422 changed files with 17213626 additions and 0 deletions
176
test/jdk/java/lang/invoke/InvokeMethodHandleWithBadArgument.java
Normal file
176
test/jdk/java/lang/invoke/InvokeMethodHandleWithBadArgument.java
Normal file
|
|
@ -0,0 +1,176 @@
|
|||
/*
|
||||
* Copyright (c) 2017, 2026, Oracle and/or its affiliates. All rights reserved.
|
||||
* DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
|
||||
*
|
||||
* This code is free software; you can redistribute it and/or modify it
|
||||
* under the terms of the GNU General Public License version 2 only, as
|
||||
* published by the Free Software Foundation.
|
||||
*
|
||||
* This code is distributed in the hope that it will be useful, but WITHOUT
|
||||
* ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
|
||||
* FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License
|
||||
* version 2 for more details (a copy is included in the LICENSE file that
|
||||
* accompanied this code).
|
||||
*
|
||||
* You should have received a copy of the GNU General Public License version
|
||||
* 2 along with this work; if not, write to the Free Software Foundation,
|
||||
* Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
|
||||
*
|
||||
* Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
|
||||
* or visit www.oracle.com if you need additional information or have any
|
||||
* questions.
|
||||
*/
|
||||
|
||||
/*
|
||||
* @test
|
||||
* @bug 8157246
|
||||
* @summary Tests invocation of MethodHandle with invalid leading argument
|
||||
* @run junit/othervm test.java.lang.invoke.InvokeMethodHandleWithBadArgument
|
||||
*/
|
||||
|
||||
package test.java.lang.invoke;
|
||||
|
||||
import java.lang.invoke.MethodHandle;
|
||||
import java.lang.invoke.MethodHandles;
|
||||
import java.lang.invoke.MethodHandles.Lookup;
|
||||
import java.lang.invoke.MethodType;
|
||||
import java.lang.invoke.VarHandle;
|
||||
|
||||
import static java.lang.invoke.MethodType.methodType;
|
||||
|
||||
import org.junit.jupiter.api.Test;
|
||||
|
||||
import static org.junit.jupiter.api.Assertions.*;
|
||||
|
||||
/**
|
||||
* Tests invocation of MethodHandle with invalid leading argument such as
|
||||
* MethodHandle, VarHandle, and array object
|
||||
*/
|
||||
public class InvokeMethodHandleWithBadArgument {
|
||||
// ---- null array reference ----
|
||||
|
||||
@Test
|
||||
public void testAsSpreaderPosInvokeWithNull() throws Throwable {
|
||||
MethodHandle spreader = MH_spread.asSpreader(1, int[].class, 3);
|
||||
assertThrows(NullPointerException.class, () -> spreader.invoke("A", null, "B"));
|
||||
}
|
||||
|
||||
@Test
|
||||
public void testAsSpreaderInvokeWithNull() throws Throwable {
|
||||
MethodHandle spreader = MH_String_equals.asSpreader(String[].class, 2);
|
||||
assertTrue((boolean) spreader.invokeExact(new String[]{"me", "me"}));
|
||||
assertThrows(NullPointerException.class, () -> {
|
||||
boolean eq = (boolean) spreader.invokeExact((String[]) null);
|
||||
});
|
||||
}
|
||||
|
||||
// ---- incorrect array element count ----
|
||||
@Test
|
||||
public void testAsSpreaderPosInvokeWithBadElementCount() throws Throwable {
|
||||
MethodHandle spreader = MH_spread.asSpreader(1, int[].class, 3);
|
||||
assertThrows(IllegalArgumentException.class, () -> spreader.invoke("A", new int[]{1, 2}, "B"));
|
||||
}
|
||||
|
||||
@Test
|
||||
public void testAsSpreaderInvokeWithBadElementCount() throws Throwable {
|
||||
MethodHandle spreader = MH_String_equals.asSpreader(String[].class, 2);
|
||||
assertFalse((boolean) spreader.invokeExact(new String[]{"me", "thee"}));
|
||||
assertThrows(IllegalArgumentException.class, () -> {
|
||||
boolean eq = (boolean) spreader.invokeExact(new String[0]);
|
||||
});
|
||||
}
|
||||
|
||||
// ---- spread no argument ----
|
||||
@Test
|
||||
public void testAsSpreaderPosInvokeWithZeroLength() throws Throwable {
|
||||
MethodHandle spreader = MH_spread.asSpreader(1, int[].class, 0);
|
||||
assertEquals("A123B", spreader.invoke("A", (int[]) null, 1, 2, 3, "B"));
|
||||
}
|
||||
|
||||
@Test
|
||||
public void testAsSpreaderInvokeWithZeroLength() throws Throwable {
|
||||
MethodHandle spreader = MH_String_equals.asSpreader(String[].class, 0);
|
||||
assertTrue((boolean) spreader.invokeExact("me", (Object)"me", new String[0]));
|
||||
boolean eq = (boolean) spreader.invokeExact("me", (Object)"me", (String[]) null);
|
||||
}
|
||||
|
||||
// ---- invokers with null method/var handle argument ----
|
||||
@Test
|
||||
public void testInvokerWithNull() throws Throwable {
|
||||
MethodType type = methodType(int.class, int.class, int.class);
|
||||
MethodHandle invoker = MethodHandles.invoker(type);
|
||||
assertEquals(3, (int) invoker.invoke(MH_add, 1, 2));
|
||||
assertThrows(NullPointerException.class, () -> {
|
||||
int sum = (int)invoker.invoke((MethodHandle)null, 1, 2);
|
||||
});
|
||||
}
|
||||
|
||||
@Test
|
||||
public void testExactInvokerWithNull() throws Throwable {
|
||||
MethodType type = methodType(int.class, int.class, int.class);
|
||||
MethodHandle invoker = MethodHandles.exactInvoker(type);
|
||||
assertEquals(3, (int) invoker.invoke(MH_add, 1, 2));
|
||||
assertThrows(NullPointerException.class, () -> {
|
||||
int sum = (int)invoker.invokeExact((MethodHandle)null, 1, 2);
|
||||
});
|
||||
}
|
||||
|
||||
@Test
|
||||
public void testSpreadInvokerWithNull() throws Throwable {
|
||||
MethodType type = methodType(boolean.class, String.class, String.class);
|
||||
MethodHandle invoker = MethodHandles.spreadInvoker(type, 0);
|
||||
assertTrue((boolean) invoker.invoke(MH_String_equals, new String[]{"me", "me"}));
|
||||
assertThrows(NullPointerException.class, () -> {
|
||||
boolean eq = (boolean) invoker.invoke((MethodHandle)null, new String[]{"me", "me"});
|
||||
});
|
||||
}
|
||||
|
||||
@Test
|
||||
public void testVarHandleInvokerWithNull() throws Throwable {
|
||||
VarHandle.AccessMode am = VarHandle.AccessMode.GET;
|
||||
MethodHandle invoker = MethodHandles.varHandleInvoker(am, VH_array.accessModeType(am));
|
||||
assertEquals(3, (int) invoker.invoke(VH_array, array, 3));
|
||||
assertThrows(NullPointerException.class, () -> {
|
||||
int value = (int)invoker.invoke((VarHandle)null, array, 3);
|
||||
});
|
||||
}
|
||||
|
||||
@Test
|
||||
public void testVarHandleExactInvokerWithNull() throws Throwable {
|
||||
VarHandle.AccessMode am = VarHandle.AccessMode.GET;
|
||||
MethodHandle invoker = MethodHandles.varHandleExactInvoker(am, VH_array.accessModeType(am));
|
||||
assertEquals(3, (int) invoker.invoke(VH_array, array, 3));
|
||||
assertThrows(NullPointerException.class, () -> {
|
||||
int value = (int)invoker.invokeExact((VarHandle)null, array, 3);
|
||||
});
|
||||
}
|
||||
|
||||
static final Lookup LOOKUP = MethodHandles.lookup();
|
||||
static final MethodHandle MH_add;
|
||||
static final MethodHandle MH_spread;
|
||||
static final MethodHandle MH_String_equals;
|
||||
static final VarHandle VH_array;
|
||||
|
||||
static final int[] array = new int[] { 0, 1, 2, 3, 4, 5};
|
||||
static {
|
||||
try {
|
||||
Class<?> arrayClass = Class.forName("[I");
|
||||
VH_array = MethodHandles.arrayElementVarHandle(arrayClass);
|
||||
MH_add = LOOKUP.findStatic(InvokeMethodHandleWithBadArgument.class, "add",
|
||||
methodType(int.class, int.class, int.class));
|
||||
MH_spread = LOOKUP.findStatic(InvokeMethodHandleWithBadArgument.class, "spread",
|
||||
methodType(String.class, String.class, int.class, int.class, int.class, String.class));
|
||||
MH_String_equals = LOOKUP.findVirtual(String.class, "equals", methodType(boolean.class, Object.class));
|
||||
} catch (Exception e) {
|
||||
throw new ExceptionInInitializerError(e);
|
||||
}
|
||||
}
|
||||
|
||||
static String spread(String s1, int i1, int i2, int i3, String s2) {
|
||||
return s1 + i1 + i2 + i3 + s2;
|
||||
}
|
||||
|
||||
static int add(int x, int y) {
|
||||
return x+y;
|
||||
}
|
||||
}
|
||||
Loading…
Add table
Add a link
Reference in a new issue