RFR: 8361868: [GCC static analyzer] complains about missing calloc - NULL checks in p11_util.c

Matthias Baesken mbaesken at openjdk.org
Thu Jul 17 07:45:49 UTC 2025


On Tue, 15 Jul 2025 14:23:19 GMT, Matthias Baesken <mbaesken at openjdk.org> wrote:

> When using the GCC -fanalyzer flag (see https://developers.redhat.com/articles/2022/04/12/state-static-analysis-gcc-12-compiler# ) , we get some complaints about missing calloc return value checks for NULL (we check at some code locations but in p11_util.c we do not do it).

Thanks Lutz for the reviews !

May I have a second review ?

@tstuefe  maybe ?

-------------

PR Comment: https://git.openjdk.org/jdk/pull/26319#issuecomment-3082978911


More information about the security-dev mailing list