random: return empty string instead of spinning when length is 0#63
Open
c-tonneslan wants to merge 1 commit into
Open
random: return empty string instead of spinning when length is 0#63c-tonneslan wants to merge 1 commit into
c-tonneslan wants to merge 1 commit into
Conversation
Random.String(0) allocates a zero-length result buffer and a zero-length read buffer, then enters the read loop. io.ReadFull on a 0-length slice returns immediately, the inner range loop does nothing, and the outer loop just spins forever without making progress. Easy to hit because the input type is uint8 so callers passing a variable can land on 0. Return "" up front when length is 0. Added a 0-length case to TestRandomString. Signed-off-by: Charlie Tonneslan <cst0520@gmail.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
`Random.String(0)` allocates a zero-length result buffer and a zero-length read buffer, then enters the read loop. `io.ReadFull` on a zero-length slice returns immediately, the inner range over the empty buffer does nothing, and the outer for-loop spins forever without making progress.
Easy to hit since the input type is `uint8` so any caller passing a length computed at runtime can land on 0.
```go
random.String(0) // hangs
```
Returns "" up front when `length == 0`. Added a 0-length case to `TestRandomString`.