Coverage Report

Created: 2025-11-24 06:18

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/nanopb/pb_common.c
Line
Count
Source
1
/* pb_common.c: Common support functions for pb_encode.c and pb_decode.c.
2
 *
3
 * 2014 Petteri Aimonen <jpa@kapsi.fi>
4
 */
5
6
#include "pb_common.h"
7
8
static bool load_descriptor_values(pb_field_iter_t *iter)
9
4.91M
{
10
4.91M
    uint32_t word0;
11
4.91M
    uint32_t data_offset;
12
4.91M
    int_least8_t size_offset;
13
14
4.91M
    if (iter->index >= iter->descriptor->field_count)
15
215k
        return false;
16
17
4.69M
    word0 = PB_PROGMEM_READU32(iter->descriptor->field_info[iter->field_info_index]);
18
4.69M
    iter->type = (pb_type_t)((word0 >> 8) & 0xFF);
19
20
4.69M
    switch(word0 & 3)
21
4.69M
    {
22
789k
        case 0: {
23
            /* 1-word format */
24
789k
            iter->array_size = 1;
25
789k
            iter->tag = (pb_size_t)((word0 >> 2) & 0x3F);
26
789k
            size_offset = (int_least8_t)((word0 >> 24) & 0x0F);
27
789k
            data_offset = (word0 >> 16) & 0xFF;
28
789k
            iter->data_size = (pb_size_t)((word0 >> 28) & 0x0F);
29
789k
            break;
30
0
        }
31
32
3.23M
        case 1: {
33
            /* 2-word format */
34
3.23M
            uint32_t word1 = PB_PROGMEM_READU32(iter->descriptor->field_info[iter->field_info_index + 1]);
35
36
3.23M
            iter->array_size = (pb_size_t)((word0 >> 16) & 0x0FFF);
37
3.23M
            iter->tag = (pb_size_t)(((word0 >> 2) & 0x3F) | ((word1 >> 28) << 6));
38
3.23M
            size_offset = (int_least8_t)((word0 >> 28) & 0x0F);
39
3.23M
            data_offset = word1 & 0xFFFF;
40
3.23M
            iter->data_size = (pb_size_t)((word1 >> 16) & 0x0FFF);
41
3.23M
            break;
42
0
        }
43
44
509k
        case 2: {
45
            /* 4-word format */
46
509k
            uint32_t word1 = PB_PROGMEM_READU32(iter->descriptor->field_info[iter->field_info_index + 1]);
47
509k
            uint32_t word2 = PB_PROGMEM_READU32(iter->descriptor->field_info[iter->field_info_index + 2]);
48
509k
            uint32_t word3 = PB_PROGMEM_READU32(iter->descriptor->field_info[iter->field_info_index + 3]);
49
50
509k
            iter->array_size = (pb_size_t)(word0 >> 16);
51
509k
            iter->tag = (pb_size_t)(((word0 >> 2) & 0x3F) | ((word1 >> 8) << 6));
52
509k
            size_offset = (int_least8_t)(word1 & 0xFF);
53
509k
            data_offset = word2;
54
509k
            iter->data_size = (pb_size_t)word3;
55
509k
            break;
56
0
        }
57
58
164k
        default: {
59
            /* 8-word format */
60
164k
            uint32_t word1 = PB_PROGMEM_READU32(iter->descriptor->field_info[iter->field_info_index + 1]);
61
164k
            uint32_t word2 = PB_PROGMEM_READU32(iter->descriptor->field_info[iter->field_info_index + 2]);
62
164k
            uint32_t word3 = PB_PROGMEM_READU32(iter->descriptor->field_info[iter->field_info_index + 3]);
63
164k
            uint32_t word4 = PB_PROGMEM_READU32(iter->descriptor->field_info[iter->field_info_index + 4]);
64
65
164k
            iter->array_size = (pb_size_t)word4;
66
164k
            iter->tag = (pb_size_t)(((word0 >> 2) & 0x3F) | ((word1 >> 8) << 6));
67
164k
            size_offset = (int_least8_t)(word1 & 0xFF);
68
164k
            data_offset = word2;
69
164k
            iter->data_size = (pb_size_t)word3;
70
164k
            break;
71
0
        }
72
4.69M
    }
73
74
4.69M
    if (!iter->message)
75
0
    {
76
        /* Avoid doing arithmetic on null pointers, it is undefined */
77
0
        iter->pField = NULL;
78
0
        iter->pSize = NULL;
79
0
    }
80
4.69M
    else
81
4.69M
    {
82
4.69M
        iter->pField = (char*)iter->message + data_offset;
83
84
4.69M
        if (size_offset)
85
822k
        {
86
822k
            iter->pSize = (char*)iter->pField - size_offset;
87
822k
        }
88
3.87M
        else if (PB_HTYPE(iter->type) == PB_HTYPE_REPEATED &&
89
75.7k
                 (PB_ATYPE(iter->type) == PB_ATYPE_STATIC ||
90
75.7k
                  PB_ATYPE(iter->type) == PB_ATYPE_POINTER))
91
75.7k
        {
92
            /* Fixed count array */
93
75.7k
            iter->pSize = &iter->array_size;
94
75.7k
        }
95
3.79M
        else
96
3.79M
        {
97
3.79M
            iter->pSize = NULL;
98
3.79M
        }
99
100
4.69M
        if (PB_ATYPE(iter->type) == PB_ATYPE_POINTER && iter->pField != NULL)
101
4.47M
        {
102
4.47M
            iter->pData = *(void**)iter->pField;
103
4.47M
        }
104
223k
        else
105
223k
        {
106
223k
            iter->pData = iter->pField;
107
223k
        }
108
4.69M
    }
109
110
4.69M
    if (PB_LTYPE_IS_SUBMSG(iter->type))
111
576k
    {
112
576k
        iter->submsg_desc = iter->descriptor->submsg_info[iter->submessage_index];
113
576k
    }
114
4.12M
    else
115
4.12M
    {
116
4.12M
        iter->submsg_desc = NULL;
117
4.12M
    }
118
119
4.69M
    return true;
120
4.69M
}
121
122
static void advance_iterator(pb_field_iter_t *iter)
123
16.8M
{
124
16.8M
    iter->index++;
125
126
16.8M
    if (iter->index >= iter->descriptor->field_count)
127
717k
    {
128
        /* Restart */
129
717k
        iter->index = 0;
130
717k
        iter->field_info_index = 0;
131
717k
        iter->submessage_index = 0;
132
717k
        iter->required_field_index = 0;
133
717k
    }
134
16.1M
    else
135
16.1M
    {
136
        /* Increment indexes based on previous field type.
137
         * All field info formats have the following fields:
138
         * - lowest 2 bits tell the amount of words in the descriptor (2^n words)
139
         * - bits 2..7 give the lowest bits of tag number.
140
         * - bits 8..15 give the field type.
141
         */
142
16.1M
        uint32_t prev_descriptor = PB_PROGMEM_READU32(iter->descriptor->field_info[iter->field_info_index]);
143
16.1M
        pb_type_t prev_type = (prev_descriptor >> 8) & 0xFF;
144
16.1M
        pb_size_t descriptor_len = (pb_size_t)(1 << (prev_descriptor & 3));
145
146
        /* Add to fields.
147
         * The cast to pb_size_t is needed to avoid -Wconversion warning.
148
         * Because the data is is constants from generator, there is no danger of overflow.
149
         */
150
16.1M
        iter->field_info_index = (pb_size_t)(iter->field_info_index + descriptor_len);
151
16.1M
        iter->required_field_index = (pb_size_t)(iter->required_field_index + (PB_HTYPE(prev_type) == PB_HTYPE_REQUIRED));
152
16.1M
        iter->submessage_index = (pb_size_t)(iter->submessage_index + PB_LTYPE_IS_SUBMSG(prev_type));
153
16.1M
    }
154
16.8M
}
155
156
bool pb_field_iter_begin(pb_field_iter_t *iter, const pb_msgdesc_t *desc, void *message)
157
691k
{
158
691k
    memset(iter, 0, sizeof(*iter));
159
160
691k
    iter->descriptor = desc;
161
691k
    iter->message = message;
162
163
691k
    return load_descriptor_values(iter);
164
691k
}
165
166
bool pb_field_iter_begin_extension(pb_field_iter_t *iter, pb_extension_t *extension)
167
110k
{
168
110k
    const pb_msgdesc_t *msg = (const pb_msgdesc_t*)extension->type->arg;
169
110k
    bool status;
170
171
110k
    uint32_t word0 = PB_PROGMEM_READU32(msg->field_info[0]);
172
110k
    if (PB_ATYPE(word0 >> 8) == PB_ATYPE_POINTER)
173
0
    {
174
        /* For pointer extensions, the pointer is stored directly
175
         * in the extension structure. This avoids having an extra
176
         * indirection. */
177
0
        status = pb_field_iter_begin(iter, msg, &extension->dest);
178
0
    }
179
110k
    else
180
110k
    {
181
110k
        status = pb_field_iter_begin(iter, msg, extension->dest);
182
110k
    }
183
184
110k
    iter->pSize = &extension->found;
185
110k
    return status;
186
110k
}
187
188
bool pb_field_iter_next(pb_field_iter_t *iter)
189
3.02M
{
190
3.02M
    advance_iterator(iter);
191
3.02M
    (void)load_descriptor_values(iter);
192
3.02M
    return iter->index != 0;
193
3.02M
}
194
195
bool pb_field_iter_find(pb_field_iter_t *iter, uint32_t tag)
196
30.1M
{
197
30.1M
    if (iter->tag == tag)
198
28.6M
    {
199
28.6M
        return true; /* Nothing to do, correct field already. */
200
28.6M
    }
201
1.48M
    else if (tag > iter->descriptor->largest_tag)
202
447k
    {
203
447k
        return false;
204
447k
    }
205
1.04M
    else
206
1.04M
    {
207
1.04M
        pb_size_t start = iter->index;
208
1.04M
        uint32_t fieldinfo;
209
210
1.04M
        if (tag < iter->tag)
211
252k
        {
212
            /* Fields are in tag number order, so we know that tag is between
213
             * 0 and our start position. Setting index to end forces
214
             * advance_iterator() call below to restart from beginning. */
215
252k
            iter->index = iter->descriptor->field_count;
216
252k
        }
217
218
1.04M
        do
219
13.7M
        {
220
            /* Advance iterator but don't load values yet */
221
13.7M
            advance_iterator(iter);
222
223
            /* Do fast check for tag number match */
224
13.7M
            fieldinfo = PB_PROGMEM_READU32(iter->descriptor->field_info[iter->field_info_index]);
225
226
13.7M
            if (((fieldinfo >> 2) & 0x3F) == (tag & 0x3F))
227
1.09M
            {
228
                /* Good candidate, check further */
229
1.09M
                (void)load_descriptor_values(iter);
230
231
1.09M
                if (iter->tag == tag &&
232
955k
                    PB_LTYPE(iter->type) != PB_LTYPE_EXTENSION)
233
951k
                {
234
                    /* Found it */
235
951k
                    return true;
236
951k
                }
237
1.09M
            }
238
13.7M
        } while (iter->index != start);
239
240
        /* Searched all the way back to start, and found nothing. */
241
89.3k
        (void)load_descriptor_values(iter);
242
89.3k
        return false;
243
1.04M
    }
244
30.1M
}
245
246
bool pb_field_iter_find_extension(pb_field_iter_t *iter)
247
11.3k
{
248
11.3k
    if (PB_LTYPE(iter->type) == PB_LTYPE_EXTENSION)
249
0
    {
250
0
        return true;
251
0
    }
252
11.3k
    else
253
11.3k
    {
254
11.3k
        pb_size_t start = iter->index;
255
11.3k
        uint32_t fieldinfo;
256
257
11.3k
        do
258
118k
        {
259
            /* Advance iterator but don't load values yet */
260
118k
            advance_iterator(iter);
261
262
            /* Do fast check for field type */
263
118k
            fieldinfo = PB_PROGMEM_READU32(iter->descriptor->field_info[iter->field_info_index]);
264
265
118k
            if (PB_LTYPE((fieldinfo >> 8) & 0xFF) == PB_LTYPE_EXTENSION)
266
3.63k
            {
267
3.63k
                return load_descriptor_values(iter);
268
3.63k
            }
269
118k
        } while (iter->index != start);
270
271
        /* Searched all the way back to start, and found nothing. */
272
7.69k
        (void)load_descriptor_values(iter);
273
7.69k
        return false;
274
11.3k
    }
275
11.3k
}
276
277
static void *pb_const_cast(const void *p)
278
203k
{
279
    /* Note: this casts away const, in order to use the common field iterator
280
     * logic for both encoding and decoding. The cast is done using union
281
     * to avoid spurious compiler warnings. */
282
203k
    union {
283
203k
        void *p1;
284
203k
        const void *p2;
285
203k
    } t;
286
203k
    t.p2 = p;
287
203k
    return t.p1;
288
203k
}
289
290
bool pb_field_iter_begin_const(pb_field_iter_t *iter, const pb_msgdesc_t *desc, const void *message)
291
200k
{
292
200k
    return pb_field_iter_begin(iter, desc, pb_const_cast(message));
293
200k
}
294
295
bool pb_field_iter_begin_extension_const(pb_field_iter_t *iter, const pb_extension_t *extension)
296
2.76k
{
297
2.76k
    return pb_field_iter_begin_extension(iter, (pb_extension_t*)pb_const_cast(extension));
298
2.76k
}
299
300
bool pb_default_field_callback(pb_istream_t *istream, pb_ostream_t *ostream, const pb_field_t *field)
301
0
{
302
0
    if (field->data_size == sizeof(pb_callback_t))
303
0
    {
304
0
        pb_callback_t *pCallback = (pb_callback_t*)field->pData;
305
306
0
        if (pCallback != NULL)
307
0
        {
308
0
            if (istream != NULL && pCallback->funcs.decode != NULL)
309
0
            {
310
0
                return pCallback->funcs.decode(istream, field, &pCallback->arg);
311
0
            }
312
313
0
            if (ostream != NULL && pCallback->funcs.encode != NULL)
314
0
            {
315
0
                return pCallback->funcs.encode(ostream, field, &pCallback->arg);
316
0
            }
317
0
        }
318
0
    }
319
320
0
    return true; /* Success, but didn't do anything */
321
322
0
}
323
324
#ifdef PB_VALIDATE_UTF8
325
326
/* This function checks whether a string is valid UTF-8 text.
327
 *
328
 * Algorithm is adapted from https://www.cl.cam.ac.uk/~mgk25/ucs/utf8_check.c
329
 * Original copyright: Markus Kuhn <http://www.cl.cam.ac.uk/~mgk25/> 2005-03-30
330
 * Licensed under "Short code license", which allows use under MIT license or
331
 * any compatible with it.
332
 */
333
334
bool pb_validate_utf8(const char *str)
335
{
336
    const pb_byte_t *s = (const pb_byte_t*)str;
337
    while (*s)
338
    {
339
        if (*s < 0x80)
340
        {
341
            /* 0xxxxxxx */
342
            s++;
343
        }
344
        else if ((s[0] & 0xe0) == 0xc0)
345
        {
346
            /* 110XXXXx 10xxxxxx */
347
            if ((s[1] & 0xc0) != 0x80 ||
348
                (s[0] & 0xfe) == 0xc0)                        /* overlong? */
349
                return false;
350
            else
351
                s += 2;
352
        }
353
        else if ((s[0] & 0xf0) == 0xe0)
354
        {
355
            /* 1110XXXX 10Xxxxxx 10xxxxxx */
356
            if ((s[1] & 0xc0) != 0x80 ||
357
                (s[2] & 0xc0) != 0x80 ||
358
                (s[0] == 0xe0 && (s[1] & 0xe0) == 0x80) ||    /* overlong? */
359
                (s[0] == 0xed && (s[1] & 0xe0) == 0xa0) ||    /* surrogate? */
360
                (s[0] == 0xef && s[1] == 0xbf &&
361
                (s[2] & 0xfe) == 0xbe))                 /* U+FFFE or U+FFFF? */
362
                return false;
363
            else
364
                s += 3;
365
        }
366
        else if ((s[0] & 0xf8) == 0xf0)
367
        {
368
            /* 11110XXX 10XXxxxx 10xxxxxx 10xxxxxx */
369
            if ((s[1] & 0xc0) != 0x80 ||
370
                (s[2] & 0xc0) != 0x80 ||
371
                (s[3] & 0xc0) != 0x80 ||
372
                (s[0] == 0xf0 && (s[1] & 0xf0) == 0x80) ||    /* overlong? */
373
                (s[0] == 0xf4 && s[1] > 0x8f) || s[0] > 0xf4) /* > U+10FFFF? */
374
                return false;
375
            else
376
                s += 4;
377
        }
378
        else
379
        {
380
            return false;
381
        }
382
    }
383
384
    return true;
385
}
386
387
#endif
388