{{ message }}
Fix UB in vector<bool> by adding missing special case#5726
Merged
Conversation
vector<bool> by adding missing special case
Contributor
|
Looks like that the affect statements can be executed in constant execution. Can we add a |
Contributor
Author
Adding But I'm against a test case for this specific branch. Think that we should be systematic, and make the entire coverage constexpr, except huge and random. And this larger change looks like out of scope, I want to fix specific bug, for which there is already expected ubsan coverage. |
AlexGuteniev
commented
Sep 17, 2025
StephanTLavavej
approved these changes
Sep 17, 2025
Member
|
Thanks for the quick fix and clear explanation! 😻 |
Member
|
I'm mirroring this to the MSVC-internal repo - please notify me if any further changes are pushed. |
Member
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.

Fixes #5720.
_IsSingleBlockDesthas special case when that single block touches edge, and_DestEndis greater that_Dest, and_DestEnd._Myoff == 0. This is handled elsewhere:STL/stl/inc/vector
Line 3834 in 43e96b2
STL/stl/inc/vector
Line 3843 in 43e96b2
STL/stl/inc/vector
Line 3860 in 43e96b2
Now we need to add missing handling in the UB causing line. If
_DestEnd._Myoff == 0, we have the only case when the subtraction result is negative. We actually need to subtract from full 32 bits in this case.The UB didn't cause runtime behavior difference, as the shift instruction just ignores high bits.