Coverage Report

Created: 2026-09-02 06:54

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/libxml2/hash.c
Line
Count
Source
1
/*
2
 * hash.c: hash tables
3
 *
4
 * Hash table with open addressing, linear probing and
5
 * Robin Hood reordering.
6
 *
7
 * See Copyright for the status of this software.
8
 */
9
10
#define IN_LIBXML
11
#include "libxml.h"
12
13
#include <string.h>
14
#include <limits.h>
15
16
#include <libxml/parser.h>
17
#include <libxml/hash.h>
18
#include <libxml/dict.h>
19
#include <libxml/xmlmemory.h>
20
#include <libxml/xmlstring.h>
21
22
#include "private/dict.h"
23
24
#ifndef SIZE_MAX
25
  #define SIZE_MAX ((size_t) -1)
26
#endif
27
28
65.2k
#define MAX_FILL_NUM 7
29
65.2k
#define MAX_FILL_DENOM 8
30
69.2k
#define MIN_HASH_SIZE 8
31
1.75M
#define MAX_HASH_SIZE (1u << 31)
32
33
/*
34
 * A single entry in the hash table
35
 */
36
typedef struct {
37
    unsigned hashValue; /* 0 means unoccupied, occupied entries have the
38
                         * MAX_HASH_SIZE bit set to 1 */
39
    xmlChar *key;
40
    xmlChar *key2; /* TODO: Don't allocate possibly empty keys */
41
    xmlChar *key3;
42
    void *payload;
43
} xmlHashEntry;
44
45
/*
46
 * The entire hash table
47
 */
48
struct _xmlHashTable {
49
    xmlHashEntry *table;
50
    unsigned size; /* power of two */
51
    unsigned nbElems;
52
    xmlDictPtr dict;
53
    unsigned randomSeed;
54
};
55
56
static int
57
xmlHashGrow(xmlHashTablePtr hash, unsigned size);
58
59
ATTRIBUTE_NO_SANITIZE_INTEGER
60
static unsigned
61
xmlHashValue(unsigned seed, const xmlChar *key, const xmlChar *key2,
62
2.03M
             const xmlChar *key3, size_t *lengths) {
63
2.03M
    unsigned h1, h2;
64
2.03M
    size_t i;
65
66
2.03M
    HASH_INIT(h1, h2, seed);
67
68
23.9M
    for (i = 0; key[i] != 0; i++) {
69
21.9M
        HASH_UPDATE(h1, h2, key[i]);
70
21.9M
    }
71
2.03M
    if (lengths)
72
123k
        lengths[0] = i;
73
74
2.03M
    HASH_UPDATE(h1, h2, 0);
75
76
2.03M
    if (key2 != NULL) {
77
9.44M
        for (i = 0; key2[i] != 0; i++) {
78
9.34M
            HASH_UPDATE(h1, h2, key2[i]);
79
9.34M
        }
80
108k
        if (lengths)
81
45.5k
            lengths[1] = i;
82
108k
    }
83
84
2.03M
    HASH_UPDATE(h1, h2, 0);
85
86
2.03M
    if (key3 != NULL) {
87
3.28M
        for (i = 0; key3[i] != 0; i++) {
88
3.04M
            HASH_UPDATE(h1, h2, key3[i]);
89
3.04M
        }
90
238k
        if (lengths)
91
16.2k
            lengths[2] = i;
92
238k
    }
93
94
2.03M
    HASH_FINISH(h1, h2);
95
96
2.03M
    return(h2);
97
2.03M
}
98
99
ATTRIBUTE_NO_SANITIZE_INTEGER
100
static unsigned
101
xmlHashQNameValue(unsigned seed,
102
                  const xmlChar *prefix, const xmlChar *name,
103
                  const xmlChar *prefix2, const xmlChar *name2,
104
199k
                  const xmlChar *prefix3, const xmlChar *name3) {
105
199k
    unsigned h1, h2, ch;
106
107
199k
    HASH_INIT(h1, h2, seed);
108
109
199k
    if (prefix != NULL) {
110
129k
        while ((ch = *prefix++) != 0) {
111
125k
            HASH_UPDATE(h1, h2, ch);
112
125k
        }
113
3.14k
        HASH_UPDATE(h1, h2, ':');
114
3.14k
    }
115
199k
    if (name != NULL) {
116
1.80M
        while ((ch = *name++) != 0) {
117
1.60M
            HASH_UPDATE(h1, h2, ch);
118
1.60M
        }
119
199k
    }
120
199k
    HASH_UPDATE(h1, h2, 0);
121
199k
    if (prefix2 != NULL) {
122
111k
        while ((ch = *prefix2++) != 0) {
123
90.4k
            HASH_UPDATE(h1, h2, ch);
124
90.4k
        }
125
21.4k
        HASH_UPDATE(h1, h2, ':');
126
21.4k
    }
127
199k
    if (name2 != NULL) {
128
954k
        while ((ch = *name2++) != 0) {
129
754k
            HASH_UPDATE(h1, h2, ch);
130
754k
        }
131
199k
    }
132
199k
    HASH_UPDATE(h1, h2, 0);
133
199k
    if (prefix3 != NULL) {
134
0
        while ((ch = *prefix3++) != 0) {
135
0
            HASH_UPDATE(h1, h2, ch);
136
0
        }
137
0
        HASH_UPDATE(h1, h2, ':');
138
0
    }
139
199k
    if (name3 != NULL) {
140
0
        while ((ch = *name3++) != 0) {
141
0
            HASH_UPDATE(h1, h2, ch);
142
0
        }
143
0
    }
144
145
199k
    HASH_FINISH(h1, h2);
146
147
199k
    return(h2);
148
199k
}
149
150
/**
151
 * Create a new hash table. Set size to zero if the number of entries
152
 * can't be estimated.
153
 *
154
 * @param size  initial size of the hash table
155
 * @returns the newly created object, or NULL if a memory allocation failed.
156
 */
157
xmlHashTable *
158
34.6k
xmlHashCreate(int size) {
159
34.6k
    xmlHashTablePtr hash;
160
161
34.6k
    xmlInitParser();
162
163
34.6k
    hash = xmlMalloc(sizeof(*hash));
164
34.6k
    if (hash == NULL)
165
0
        return(NULL);
166
34.6k
    hash->dict = NULL;
167
34.6k
    hash->size = 0;
168
34.6k
    hash->table = NULL;
169
34.6k
    hash->nbElems = 0;
170
34.6k
    hash->randomSeed = xmlRandom();
171
34.6k
#ifdef FUZZING_BUILD_MODE_UNSAFE_FOR_PRODUCTION
172
34.6k
    hash->randomSeed = 0;
173
34.6k
#endif
174
175
    /*
176
     * Unless a larger size is passed, the backing table is created
177
     * lazily with MIN_HASH_SIZE capacity. In practice, there are many
178
     * hash tables which are never filled.
179
     */
180
34.6k
    if (size > MIN_HASH_SIZE) {
181
9.11k
        unsigned newSize = MIN_HASH_SIZE * 2;
182
183
9.11k
        while ((newSize < (unsigned) size) && (newSize < MAX_HASH_SIZE))
184
0
            newSize *= 2;
185
186
9.11k
        if (xmlHashGrow(hash, newSize) != 0) {
187
0
            xmlFree(hash);
188
0
            return(NULL);
189
0
        }
190
9.11k
    }
191
192
34.6k
    return(hash);
193
34.6k
}
194
195
/**
196
 * Create a new hash table backed by a dictionary. This can reduce
197
 * resource usage considerably if most keys passed to API functions
198
 * originate from this dictionary.
199
 *
200
 * @param size  the size of the hash table
201
 * @param dict  a dictionary to use for the hash
202
 * @returns the newly created object, or NULL if a memory allocation failed.
203
 */
204
xmlHashTable *
205
22.2k
xmlHashCreateDict(int size, xmlDict *dict) {
206
22.2k
    xmlHashTablePtr hash;
207
208
22.2k
    hash = xmlHashCreate(size);
209
22.2k
    if (hash != NULL) {
210
22.2k
        hash->dict = dict;
211
22.2k
        xmlDictReference(dict);
212
22.2k
    }
213
22.2k
    return(hash);
214
22.2k
}
215
216
/**
217
 * Free the hash and its contents. The payload is deallocated with
218
 * `dealloc` if provided.
219
 *
220
 * @param hash  hash table
221
 * @param dealloc  deallocator function or NULL
222
 */
223
void
224
48.7k
xmlHashFree(xmlHashTable *hash, xmlHashDeallocator dealloc) {
225
48.7k
    if (hash == NULL)
226
14.1k
        return;
227
228
34.6k
    if (hash->table) {
229
34.6k
        const xmlHashEntry *end = &hash->table[hash->size];
230
34.6k
        const xmlHashEntry *entry;
231
232
441k
        for (entry = hash->table; entry < end; entry++) {
233
407k
            if (entry->hashValue == 0)
234
320k
                continue;
235
86.8k
            if ((dealloc != NULL) && (entry->payload != NULL))
236
58.7k
                dealloc(entry->payload, entry->key);
237
86.8k
            if (hash->dict == NULL) {
238
53.6k
                if (entry->key)
239
53.6k
                    xmlFree(entry->key);
240
53.6k
                if (entry->key2)
241
1.43k
                    xmlFree(entry->key2);
242
53.6k
                if (entry->key3)
243
6.47k
                    xmlFree(entry->key3);
244
53.6k
            }
245
86.8k
        }
246
247
34.6k
        xmlFree(hash->table);
248
34.6k
    }
249
250
34.6k
    if (hash->dict)
251
13.5k
        xmlDictFree(hash->dict);
252
253
34.6k
    xmlFree(hash);
254
34.6k
}
255
256
/**
257
 * Compare two strings for equality, allowing NULL values.
258
 *
259
 * @param s1  string
260
 * @param s2  string
261
 */
262
static int
263
2.19M
xmlFastStrEqual(const xmlChar *s1, const xmlChar *s2) {
264
2.19M
    if (s1 == NULL)
265
2.15M
        return(s2 == NULL);
266
44.4k
    else
267
44.4k
        return((s2 != NULL) &&
268
44.4k
               (strcmp((const char *) s1, (const char *) s2) == 0));
269
2.19M
}
270
271
/**
272
 * Try to find a matching hash table entry. If an entry was found, set
273
 * `found` to 1 and return the entry. Otherwise, set `found` to 0 and return
274
 * the location where a new entry should be inserted.
275
 *
276
 * @param hash  hash table, non-NULL, size > 0
277
 * @param key  first string key, non-NULL
278
 * @param key2  second string key
279
 * @param key3  third string key
280
 * @param hashValue  valid hash value of keys
281
 * @param pfound  result of search
282
 */
283
ATTRIBUTE_NO_SANITIZE_INTEGER
284
static xmlHashEntry *
285
xmlHashFindEntry(const xmlHashTable *hash, const xmlChar *key,
286
                 const xmlChar *key2, const xmlChar *key3,
287
2.01M
                 unsigned hashValue, int *pfound) {
288
2.01M
    xmlHashEntry *entry;
289
2.01M
    unsigned mask, pos, displ;
290
2.01M
    int found = 0;
291
292
2.01M
    mask = hash->size - 1;
293
2.01M
    pos = hashValue & mask;
294
2.01M
    entry = &hash->table[pos];
295
296
2.01M
    if (entry->hashValue != 0) {
297
        /*
298
         * Robin hood hashing: abort if the displacement of the entry
299
         * is smaller than the displacement of the key we look for.
300
         * This also stops at the correct position when inserting.
301
         */
302
1.58M
        displ = 0;
303
1.58M
        hashValue |= MAX_HASH_SIZE;
304
305
1.68M
        do {
306
1.68M
            if (entry->hashValue == hashValue) {
307
1.44M
                if (hash->dict) {
308
347k
                    if ((entry->key == key) &&
309
347k
                        (entry->key2 == key2) &&
310
344k
                        (entry->key3 == key3)) {
311
344k
                        found = 1;
312
344k
                        break;
313
344k
                    }
314
347k
                }
315
1.09M
                if ((strcmp((const char *) entry->key,
316
1.09M
                            (const char *) key) == 0) &&
317
1.09M
                    (xmlFastStrEqual(entry->key2, key2)) &&
318
1.09M
                    (xmlFastStrEqual(entry->key3, key3))) {
319
1.09M
                    found = 1;
320
1.09M
                    break;
321
1.09M
                }
322
1.09M
            }
323
324
245k
            displ++;
325
245k
            pos++;
326
245k
            entry++;
327
245k
            if ((pos & mask) == 0)
328
18.5k
                entry = hash->table;
329
245k
        } while ((entry->hashValue != 0) &&
330
166k
                 (((pos - entry->hashValue) & mask) >= displ));
331
1.58M
    }
332
333
2.01M
    *pfound = found;
334
2.01M
    return(entry);
335
2.01M
}
336
337
/**
338
 * Resize the hash table.
339
 *
340
 * @param hash  hash table
341
 * @param size  new size of the hash table
342
 * @returns 0 in case of success, -1 if a memory allocation failed.
343
 */
344
static int
345
38.3k
xmlHashGrow(xmlHashTablePtr hash, unsigned size) {
346
38.3k
    const xmlHashEntry *oldentry, *oldend, *end;
347
38.3k
    xmlHashEntry *table;
348
38.3k
    unsigned oldsize, i;
349
350
    /* Add 0 to avoid spurious -Wtype-limits warning on 64-bit GCC */
351
38.3k
    if ((size_t) size + 0 > SIZE_MAX / sizeof(table[0]))
352
0
        return(-1);
353
38.3k
    table = xmlMalloc(size * sizeof(table[0]));
354
38.3k
    if (table == NULL)
355
0
        return(-1);
356
38.3k
    memset(table, 0, size * sizeof(table[0]));
357
358
38.3k
    oldsize = hash->size;
359
38.3k
    if (oldsize == 0)
360
34.6k
        goto done;
361
362
3.67k
    oldend = &hash->table[oldsize];
363
3.67k
    end = &table[size];
364
365
    /*
366
     * Robin Hood sorting order is maintained if we
367
     *
368
     * - compute hash indices with modulo
369
     * - resize by an integer factor
370
     * - start to copy from the beginning of a probe sequence
371
     */
372
3.67k
    oldentry = hash->table;
373
21.9k
    while (oldentry->hashValue != 0) {
374
18.2k
        if (++oldentry >= oldend)
375
0
            oldentry = hash->table;
376
18.2k
    }
377
378
60.8k
    for (i = 0; i < oldsize; i++) {
379
57.1k
        if (oldentry->hashValue != 0) {
380
50.0k
            xmlHashEntry *entry = &table[oldentry->hashValue & (size - 1)];
381
382
74.2k
            while (entry->hashValue != 0) {
383
24.1k
                if (++entry >= end)
384
2.42k
                    entry = table;
385
24.1k
            }
386
50.0k
            *entry = *oldentry;
387
50.0k
        }
388
389
57.1k
        if (++oldentry >= oldend)
390
3.67k
            oldentry = hash->table;
391
57.1k
    }
392
393
3.67k
    xmlFree(hash->table);
394
395
38.3k
done:
396
38.3k
    hash->table = table;
397
38.3k
    hash->size = size;
398
399
38.3k
    return(0);
400
3.67k
}
401
402
/**
403
 * Internal function to add or update hash entries.
404
 *
405
 * @param hash  hash table
406
 * @param key  first string key
407
 * @param key2  second string key
408
 * @param key3  third string key
409
 * @param payload  pointer to the payload
410
 * @param dealloc  deallocator function for replaced item or NULL
411
 * @param update  whether existing entries should be updated
412
 */
413
ATTRIBUTE_NO_SANITIZE_INTEGER
414
static int
415
xmlHashUpdateInternal(xmlHashTable *hash, const xmlChar *key,
416
                      const xmlChar *key2, const xmlChar *key3,
417
123k
                      void *payload, xmlHashDeallocator dealloc, int update) {
418
123k
    xmlChar *copy, *copy2, *copy3;
419
123k
    xmlHashEntry *entry = NULL;
420
123k
    size_t lengths[3] = {0, 0, 0};
421
123k
    unsigned hashValue, newSize;
422
423
123k
    if ((hash == NULL) || (key == NULL))
424
0
        return(-1);
425
426
123k
    hashValue = xmlHashValue(hash->randomSeed, key, key2, key3, lengths);
427
428
    /*
429
     * Check for an existing entry
430
     */
431
123k
    if (hash->size == 0) {
432
25.5k
        newSize = MIN_HASH_SIZE;
433
98.0k
    } else {
434
98.0k
        int found = 0;
435
436
98.0k
        entry = xmlHashFindEntry(hash, key, key2, key3, hashValue, &found);
437
438
98.0k
        if (found) {
439
32.8k
            if (update) {
440
3.38k
                if (dealloc)
441
898
                    dealloc(entry->payload, entry->key);
442
3.38k
                entry->payload = payload;
443
3.38k
            }
444
445
32.8k
            return(0);
446
32.8k
        }
447
448
65.2k
        if (hash->nbElems + 1 > hash->size / MAX_FILL_DENOM * MAX_FILL_NUM) {
449
            /* This guarantees that nbElems < INT_MAX */
450
3.67k
            if (hash->size >= MAX_HASH_SIZE)
451
0
                return(-1);
452
3.67k
            newSize = hash->size * 2;
453
61.5k
        } else {
454
61.5k
            newSize = 0;
455
61.5k
        }
456
65.2k
    }
457
458
    /*
459
     * Grow the hash table if needed
460
     */
461
90.7k
    if (newSize > 0) {
462
29.2k
        unsigned mask, displ, pos;
463
464
29.2k
        if (xmlHashGrow(hash, newSize) != 0)
465
0
            return(-1);
466
467
        /*
468
         * Find new entry
469
         */
470
29.2k
        mask = hash->size - 1;
471
29.2k
        displ = 0;
472
29.2k
        pos = hashValue & mask;
473
29.2k
        entry = &hash->table[pos];
474
475
29.2k
        if (entry->hashValue != 0) {
476
3.17k
            do {
477
3.17k
                displ++;
478
3.17k
                pos++;
479
3.17k
                entry++;
480
3.17k
                if ((pos & mask) == 0)
481
407
                    entry = hash->table;
482
3.17k
            } while ((entry->hashValue != 0) &&
483
2.12k
                     ((pos - entry->hashValue) & mask) >= displ);
484
1.92k
        }
485
29.2k
    }
486
487
    /*
488
     * Copy keys
489
     */
490
90.7k
    if (hash->dict != NULL) {
491
37.0k
        if (xmlDictOwns(hash->dict, key)) {
492
37.0k
            copy = (xmlChar *) key;
493
37.0k
        } else {
494
0
            copy = (xmlChar *) xmlDictLookup(hash->dict, key, -1);
495
0
            if (copy == NULL)
496
0
                return(-1);
497
0
        }
498
499
37.0k
        if ((key2 == NULL) || (xmlDictOwns(hash->dict, key2))) {
500
36.6k
            copy2 = (xmlChar *) key2;
501
36.6k
        } else {
502
386
            copy2 = (xmlChar *) xmlDictLookup(hash->dict, key2, -1);
503
386
            if (copy2 == NULL)
504
0
                return(-1);
505
386
        }
506
37.0k
        if ((key3 == NULL) || (xmlDictOwns(hash->dict, key3))) {
507
37.0k
            copy3 = (xmlChar *) key3;
508
37.0k
        } else {
509
0
            copy3 = (xmlChar *) xmlDictLookup(hash->dict, key3, -1);
510
0
            if (copy3 == NULL)
511
0
                return(-1);
512
0
        }
513
53.6k
    } else {
514
53.6k
        copy = xmlMalloc(lengths[0] + 1);
515
53.6k
        if (copy == NULL)
516
0
            return(-1);
517
53.6k
        memcpy(copy, key, lengths[0] + 1);
518
519
53.6k
        if (key2 != NULL) {
520
1.43k
            copy2 = xmlMalloc(lengths[1] + 1);
521
1.43k
            if (copy2 == NULL) {
522
0
                xmlFree(copy);
523
0
                return(-1);
524
0
            }
525
1.43k
            memcpy(copy2, key2, lengths[1] + 1);
526
52.2k
        } else {
527
52.2k
            copy2 = NULL;
528
52.2k
        }
529
530
53.6k
        if (key3 != NULL) {
531
6.47k
            copy3 = xmlMalloc(lengths[2] + 1);
532
6.47k
            if (copy3 == NULL) {
533
0
                xmlFree(copy);
534
0
                xmlFree(copy2);
535
0
                return(-1);
536
0
            }
537
6.47k
            memcpy(copy3, key3, lengths[2] + 1);
538
47.1k
        } else {
539
47.1k
            copy3 = NULL;
540
47.1k
        }
541
53.6k
    }
542
543
    /*
544
     * Shift the remainder of the probe sequence to the right
545
     */
546
90.7k
    if (entry->hashValue != 0) {
547
13.4k
        const xmlHashEntry *end = &hash->table[hash->size];
548
13.4k
        const xmlHashEntry *cur = entry;
549
550
53.9k
        do {
551
53.9k
            cur++;
552
53.9k
            if (cur >= end)
553
2.38k
                cur = hash->table;
554
53.9k
        } while (cur->hashValue != 0);
555
556
13.4k
        if (cur < entry) {
557
            /*
558
             * If we traversed the end of the buffer, handle the part
559
             * at the start of the buffer.
560
             */
561
2.38k
            memmove(&hash->table[1], hash->table,
562
2.38k
                    (char *) cur - (char *) hash->table);
563
2.38k
            cur = end - 1;
564
2.38k
            hash->table[0] = *cur;
565
2.38k
        }
566
567
13.4k
        memmove(&entry[1], entry, (char *) cur - (char *) entry);
568
13.4k
    }
569
570
    /*
571
     * Populate entry
572
     */
573
90.7k
    entry->key = copy;
574
90.7k
    entry->key2 = copy2;
575
90.7k
    entry->key3 = copy3;
576
90.7k
    entry->payload = payload;
577
    /* OR with MAX_HASH_SIZE to make sure that the value is non-zero */
578
90.7k
    entry->hashValue = hashValue | MAX_HASH_SIZE;
579
580
90.7k
    hash->nbElems++;
581
582
90.7k
    return(1);
583
90.7k
}
584
585
/**
586
 * Free a hash table entry with xmlFree.
587
 *
588
 * @param entry  hash table entry
589
 * @param key  the entry's string key
590
 */
591
void
592
5.49k
xmlHashDefaultDeallocator(void *entry, const xmlChar *key ATTRIBUTE_UNUSED) {
593
5.49k
    xmlFree(entry);
594
5.49k
}
595
596
/**
597
 * Add a hash table entry. If an entry with this key already exists,
598
 * payload will not be updated and 0 is returned. This return value
599
 * can't be distinguished from out-of-memory errors, so this function
600
 * should be used with care.
601
 *
602
 * @since 2.13.0
603
 *
604
 * @param hash  hash table
605
 * @param key  string key
606
 * @param payload  pointer to the payload
607
 * @returns 1 on success, 0 if an entry exists and -1 in case of error.
608
 */
609
int
610
19.9k
xmlHashAdd(xmlHashTable *hash, const xmlChar *key, void *payload) {
611
19.9k
    return(xmlHashUpdateInternal(hash, key, NULL, NULL, payload, NULL, 0));
612
19.9k
}
613
614
/**
615
 * Add a hash table entry with two strings as key.
616
 *
617
 * See #xmlHashAdd.
618
 *
619
 * @since 2.13.0
620
 *
621
 * @param hash  hash table
622
 * @param key  first string key
623
 * @param key2  second string key
624
 * @param payload  pointer to the payload
625
 * @returns 1 on success, 0 if an entry exists and -1 in case of error.
626
 */
627
int
628
xmlHashAdd2(xmlHashTable *hash, const xmlChar *key,
629
45.2k
                 const xmlChar *key2, void *payload) {
630
45.2k
    return(xmlHashUpdateInternal(hash, key, key2, NULL, payload, NULL, 0));
631
45.2k
}
632
633
/**
634
 * Add a hash table entry with three strings as key.
635
 *
636
 * See #xmlHashAdd.
637
 *
638
 * @since 2.13.0
639
 *
640
 * @param hash  hash table
641
 * @param key  first string key
642
 * @param key2  second string key
643
 * @param key3  third string key
644
 * @param payload  pointer to the payload
645
 * @returns 1 on success, 0 if an entry exists and -1 in case of error.
646
 */
647
int
648
xmlHashAdd3(xmlHashTable *hash, const xmlChar *key,
649
                 const xmlChar *key2, const xmlChar *key3,
650
16.2k
                 void *payload) {
651
16.2k
    return(xmlHashUpdateInternal(hash, key, key2, key3, payload, NULL, 0));
652
16.2k
}
653
654
/**
655
 * Add a hash table entry. If an entry with this key already exists,
656
 * payload will not be updated and -1 is returned. This return value
657
 * can't be distinguished from out-of-memory errors, so this function
658
 * should be used with care.
659
 *
660
 * NOTE: This function doesn't allow to distinguish malloc failures from
661
 *       existing entries. Use #xmlHashAdd instead.
662
 *
663
 * @param hash  hash table
664
 * @param key  string key
665
 * @param payload  pointer to the payload
666
 * @returns 0 on success and -1 in case of error.
667
 */
668
int
669
26.9k
xmlHashAddEntry(xmlHashTable *hash, const xmlChar *key, void *payload) {
670
26.9k
    int res = xmlHashUpdateInternal(hash, key, NULL, NULL, payload, NULL, 0);
671
672
26.9k
    if (res == 0)
673
0
        res = -1;
674
26.9k
    else if (res == 1)
675
26.9k
        res = 0;
676
677
26.9k
    return(res);
678
26.9k
}
679
680
/**
681
 * Add a hash table entry with two strings as key.
682
 *
683
 * See #xmlHashAddEntry.
684
 *
685
 * @param hash  hash table
686
 * @param key  first string key
687
 * @param key2  second string key
688
 * @param payload  pointer to the payload
689
 * @returns 0 on success and -1 in case of error.
690
 */
691
int
692
xmlHashAddEntry2(xmlHashTable *hash, const xmlChar *key,
693
7.19k
                 const xmlChar *key2, void *payload) {
694
7.19k
    int res = xmlHashUpdateInternal(hash, key, key2, NULL, payload, NULL, 0);
695
696
7.19k
    if (res == 0)
697
0
        res = -1;
698
7.19k
    else if (res == 1)
699
7.19k
        res = 0;
700
701
7.19k
    return(res);
702
7.19k
}
703
704
/**
705
 * Add a hash table entry with three strings as key.
706
 *
707
 * See #xmlHashAddEntry.
708
 *
709
 * @param hash  hash table
710
 * @param key  first string key
711
 * @param key2  second string key
712
 * @param key3  third string key
713
 * @param payload  pointer to the payload
714
 * @returns 0 on success and -1 in case of error.
715
 */
716
int
717
xmlHashAddEntry3(xmlHashTable *hash, const xmlChar *key,
718
                 const xmlChar *key2, const xmlChar *key3,
719
0
                 void *payload) {
720
0
    int res = xmlHashUpdateInternal(hash, key, key2, key3, payload, NULL, 0);
721
722
0
    if (res == 0)
723
0
        res = -1;
724
0
    else if (res == 1)
725
0
        res = 0;
726
727
0
    return(res);
728
0
}
729
730
/**
731
 * Add a hash table entry. If an entry with this key already exists,
732
 * the old payload will be freed and updated with the new value.
733
 *
734
 * @param hash  hash table
735
 * @param key  string key
736
 * @param payload  pointer to the payload
737
 * @param dealloc  deallocator function for replaced item or NULL
738
 * @returns 0 in case of success, -1 if a memory allocation failed.
739
 */
740
int
741
xmlHashUpdateEntry(xmlHashTable *hash, const xmlChar *key,
742
1.21k
                   void *payload, xmlHashDeallocator dealloc) {
743
1.21k
    int res = xmlHashUpdateInternal(hash, key, NULL, NULL, payload,
744
1.21k
                                    dealloc, 1);
745
746
1.21k
    if (res == 1)
747
313
        res = 0;
748
749
1.21k
    return(res);
750
1.21k
}
751
752
/**
753
 * Add a hash table entry with two strings as key.
754
 *
755
 * See #xmlHashUpdateEntry.
756
 *
757
 * @param hash  hash table
758
 * @param key  first string key
759
 * @param key2  second string key
760
 * @param payload  pointer to the payload
761
 * @param dealloc  deallocator function for replaced item or NULL
762
 * @returns 0 on success and -1 in case of error.
763
 */
764
int
765
xmlHashUpdateEntry2(xmlHashTable *hash, const xmlChar *key,
766
                   const xmlChar *key2, void *payload,
767
6.77k
                   xmlHashDeallocator dealloc) {
768
6.77k
    int res = xmlHashUpdateInternal(hash, key, key2, NULL, payload,
769
6.77k
                                    dealloc, 1);
770
771
6.77k
    if (res == 1)
772
4.27k
        res = 0;
773
774
6.77k
    return(res);
775
6.77k
}
776
777
/**
778
 * Add a hash table entry with three strings as key.
779
 *
780
 * See #xmlHashUpdateEntry.
781
 *
782
 * @param hash  hash table
783
 * @param key  first string key
784
 * @param key2  second string key
785
 * @param key3  third string key
786
 * @param payload  pointer to the payload
787
 * @param dealloc  deallocator function for replaced item or NULL
788
 * @returns 0 on success and -1 in case of error.
789
 */
790
int
791
xmlHashUpdateEntry3(xmlHashTable *hash, const xmlChar *key,
792
                   const xmlChar *key2, const xmlChar *key3,
793
0
                   void *payload, xmlHashDeallocator dealloc) {
794
0
    int res = xmlHashUpdateInternal(hash, key, key2, key3, payload,
795
0
                                    dealloc, 1);
796
797
0
    if (res == 1)
798
0
        res = 0;
799
800
0
    return(res);
801
0
}
802
803
/**
804
 * Find the entry specified by `key`.
805
 *
806
 * @param hash  hash table
807
 * @param key  string key
808
 * @returns a pointer to the payload or NULL if no entry was found.
809
 */
810
void *
811
1.22M
xmlHashLookup(xmlHashTable *hash, const xmlChar *key) {
812
1.22M
    return(xmlHashLookup3(hash, key, NULL, NULL));
813
1.22M
}
814
815
/**
816
 * Find the payload specified by the (`key`, `key2`) tuple.
817
 *
818
 * @param hash  hash table
819
 * @param key  first string key
820
 * @param key2  second string key
821
 * @returns a pointer to the payload or NULL if no entry was found.
822
 */
823
void *
824
xmlHashLookup2(xmlHashTable *hash, const xmlChar *key,
825
468k
              const xmlChar *key2) {
826
468k
    return(xmlHashLookup3(hash, key, key2, NULL));
827
468k
}
828
829
/**
830
 * Find the payload specified by the QName `prefix:name` or `name`.
831
 *
832
 * @param hash  hash table
833
 * @param prefix  prefix of the string key
834
 * @param name  local name of the string key
835
 * @returns a pointer to the payload or NULL if no entry was found.
836
 */
837
void *
838
xmlHashQLookup(xmlHashTable *hash, const xmlChar *prefix,
839
0
               const xmlChar *name) {
840
0
    return(xmlHashQLookup3(hash, prefix, name, NULL, NULL, NULL, NULL));
841
0
}
842
843
/**
844
 * Find the payload specified by the QNames tuple.
845
 *
846
 * @param hash  hash table
847
 * @param prefix  first prefix
848
 * @param name  first local name
849
 * @param prefix2  second prefix
850
 * @param name2  second local name
851
 * @returns a pointer to the payload or NULL if no entry was found.
852
 */
853
void *
854
xmlHashQLookup2(xmlHashTable *hash, const xmlChar *prefix,
855
                const xmlChar *name, const xmlChar *prefix2,
856
199k
                const xmlChar *name2) {
857
199k
    return(xmlHashQLookup3(hash, prefix, name, prefix2, name2, NULL, NULL));
858
199k
}
859
860
/**
861
 * Find the payload specified by the (`key`, `key2`, `key3`) tuple.
862
 *
863
 * @param hash  hash table
864
 * @param key  first string key
865
 * @param key2  second string key
866
 * @param key3  third string key
867
 * @returns a pointer to the payload or NULL if no entry was found.
868
 */
869
void *
870
xmlHashLookup3(xmlHashTable *hash, const xmlChar *key,
871
1.91M
               const xmlChar *key2, const xmlChar *key3) {
872
1.91M
    const xmlHashEntry *entry;
873
1.91M
    unsigned hashValue;
874
1.91M
    int found;
875
876
1.91M
    if ((hash == NULL) || (hash->size == 0) || (key == NULL))
877
3.74k
        return(NULL);
878
1.91M
    hashValue = xmlHashValue(hash->randomSeed, key, key2, key3, NULL);
879
1.91M
    entry = xmlHashFindEntry(hash, key, key2, key3, hashValue, &found);
880
1.91M
    if (found)
881
1.40M
        return(entry->payload);
882
505k
    return(NULL);
883
1.91M
}
884
885
/**
886
 * Find the payload specified by the QNames tuple.
887
 *
888
 * @param hash  hash table
889
 * @param prefix  first prefix
890
 * @param name  first local name
891
 * @param prefix2  second prefix
892
 * @param name2  second local name
893
 * @param prefix3  third prefix
894
 * @param name3  third local name
895
 * @returns a pointer to the payload or NULL if no entry was found.
896
 */
897
ATTRIBUTE_NO_SANITIZE_INTEGER
898
void *
899
xmlHashQLookup3(xmlHashTable *hash,
900
                const xmlChar *prefix, const xmlChar *name,
901
                const xmlChar *prefix2, const xmlChar *name2,
902
199k
                const xmlChar *prefix3, const xmlChar *name3) {
903
199k
    const xmlHashEntry *entry;
904
199k
    unsigned hashValue, mask, pos, displ;
905
906
199k
    if ((hash == NULL) || (hash->size == 0) || (name == NULL))
907
0
        return(NULL);
908
909
199k
    hashValue = xmlHashQNameValue(hash->randomSeed, prefix, name, prefix2,
910
199k
                                  name2, prefix3, name3);
911
199k
    mask = hash->size - 1;
912
199k
    pos = hashValue & mask;
913
199k
    entry = &hash->table[pos];
914
915
199k
    if (entry->hashValue != 0) {
916
74.8k
        displ = 0;
917
74.8k
        hashValue |= MAX_HASH_SIZE;
918
919
185k
        do {
920
185k
            if ((hashValue == entry->hashValue) &&
921
9.26k
                (xmlStrQEqual(prefix, name, entry->key)) &&
922
9.06k
                (xmlStrQEqual(prefix2, name2, entry->key2)) &&
923
8.85k
                (xmlStrQEqual(prefix3, name3, entry->key3)))
924
8.85k
                return(entry->payload);
925
926
176k
            displ++;
927
176k
            pos++;
928
176k
            entry++;
929
176k
            if ((pos & mask) == 0)
930
3.01k
                entry = hash->table;
931
176k
        } while ((entry->hashValue != 0) &&
932
165k
                 (((pos - entry->hashValue) & mask) >= displ));
933
74.8k
    }
934
935
190k
    return(NULL);
936
199k
}
937
938
typedef struct {
939
    xmlHashScanner scan;
940
    void *data;
941
} stubData;
942
943
static void
944
stubHashScannerFull(void *payload, void *data, const xmlChar *key,
945
                    const xmlChar *key2 ATTRIBUTE_UNUSED,
946
0
                    const xmlChar *key3 ATTRIBUTE_UNUSED) {
947
0
    stubData *sdata = (stubData *) data;
948
0
    sdata->scan(payload, sdata->data, key);
949
0
}
950
951
/**
952
 * Scan the hash `table` and apply `scan` to each value.
953
 *
954
 * @param hash  hash table
955
 * @param scan  scanner function for items in the hash
956
 * @param data  extra data passed to `scan`
957
 */
958
void
959
0
xmlHashScan(xmlHashTable *hash, xmlHashScanner scan, void *data) {
960
0
    stubData sdata;
961
0
    sdata.data = data;
962
0
    sdata.scan = scan;
963
0
    xmlHashScanFull(hash, stubHashScannerFull, &sdata);
964
0
}
965
966
/**
967
 * Scan the hash `table` and apply `scan` to each value.
968
 *
969
 * @param hash  hash table
970
 * @param scan  scanner function for items in the hash
971
 * @param data  extra data passed to `scan`
972
 */
973
void
974
5.74k
xmlHashScanFull(xmlHashTable *hash, xmlHashScannerFull scan, void *data) {
975
5.74k
    const xmlHashEntry *entry, *end;
976
5.74k
    xmlHashEntry old;
977
5.74k
    unsigned i;
978
979
5.74k
    if ((hash == NULL) || (hash->size == 0) || (scan == NULL))
980
0
        return;
981
982
    /*
983
     * We must handle the case that a scanned entry is removed when executing
984
     * the callback (xmlCleanSpecialAttr and possibly other places).
985
     *
986
     * Find the start of a probe sequence to avoid scanning entries twice if
987
     * a deletion happens.
988
     */
989
5.74k
    entry = hash->table;
990
5.74k
    end = &hash->table[hash->size];
991
8.48k
    while (entry->hashValue != 0) {
992
2.74k
        if (++entry >= end)
993
0
            entry = hash->table;
994
2.74k
    }
995
996
115k
    for (i = 0; i < hash->size; i++) {
997
110k
        if ((entry->hashValue != 0) && (entry->payload != NULL)) {
998
            /*
999
             * Make sure to rescan after a possible deletion.
1000
             */
1001
24.7k
            do {
1002
24.7k
                old = *entry;
1003
24.7k
                scan(entry->payload, data, entry->key, entry->key2, entry->key3);
1004
24.7k
            } while ((entry->hashValue != 0) &&
1005
21.9k
                     (entry->payload != NULL) &&
1006
21.9k
                     ((entry->key != old.key) ||
1007
21.3k
                      (entry->key2 != old.key2) ||
1008
20.8k
                      (entry->key3 != old.key3)));
1009
23.6k
        }
1010
110k
        if (++entry >= end)
1011
5.74k
            entry = hash->table;
1012
110k
    }
1013
5.74k
}
1014
1015
/**
1016
 * Scan the hash `table` and apply `scan` to each value matching
1017
 * (`key`, `key2`, `key3`) tuple. If one of the keys is null,
1018
 * the comparison is considered to match.
1019
 *
1020
 * @param hash  hash table
1021
 * @param key  first string key or NULL
1022
 * @param key2  second string key or NULL
1023
 * @param key3  third string key or NULL
1024
 * @param scan  scanner function for items in the hash
1025
 * @param data  extra data passed to `scan`
1026
 */
1027
void
1028
xmlHashScan3(xmlHashTable *hash, const xmlChar *key,
1029
             const xmlChar *key2, const xmlChar *key3,
1030
0
             xmlHashScanner scan, void *data) {
1031
0
    stubData sdata;
1032
0
    sdata.data = data;
1033
0
    sdata.scan = scan;
1034
0
    xmlHashScanFull3(hash, key, key2, key3, stubHashScannerFull, &sdata);
1035
0
}
1036
1037
/**
1038
 * Scan the hash `table` and apply `scan` to each value matching
1039
 * (`key`, `key2`, `key3`) tuple. If one of the keys is null,
1040
 * the comparison is considered to match.
1041
 *
1042
 * @param hash  hash table
1043
 * @param key  first string key or NULL
1044
 * @param key2  second string key or NULL
1045
 * @param key3  third string key or NULL
1046
 * @param scan  scanner function for items in the hash
1047
 * @param data  extra data passed to `scan`
1048
 */
1049
void
1050
xmlHashScanFull3(xmlHashTable *hash, const xmlChar *key,
1051
                 const xmlChar *key2, const xmlChar *key3,
1052
0
                 xmlHashScannerFull scan, void *data) {
1053
0
    const xmlHashEntry *entry, *end;
1054
0
    xmlHashEntry old;
1055
0
    unsigned i;
1056
1057
0
    if ((hash == NULL) || (hash->size == 0) || (scan == NULL))
1058
0
        return;
1059
1060
    /*
1061
     * We must handle the case that a scanned entry is removed when executing
1062
     * the callback (xmlCleanSpecialAttr and possibly other places).
1063
     *
1064
     * Find the start of a probe sequence to avoid scanning entries twice if
1065
     * a deletion happens.
1066
     */
1067
0
    entry = hash->table;
1068
0
    end = &hash->table[hash->size];
1069
0
    while (entry->hashValue != 0) {
1070
0
        if (++entry >= end)
1071
0
            entry = hash->table;
1072
0
    }
1073
1074
0
    for (i = 0; i < hash->size; i++) {
1075
0
        if ((entry->hashValue != 0) && (entry->payload != NULL)) {
1076
            /*
1077
             * Make sure to rescan after a possible deletion.
1078
             */
1079
0
            do {
1080
0
                if (((key != NULL) && (strcmp((const char *) key,
1081
0
                                              (const char *) entry->key) != 0)) ||
1082
0
                    ((key2 != NULL) && (!xmlFastStrEqual(key2, entry->key2))) ||
1083
0
                    ((key3 != NULL) && (!xmlFastStrEqual(key3, entry->key3))))
1084
0
                    break;
1085
0
                old = *entry;
1086
0
                scan(entry->payload, data, entry->key, entry->key2, entry->key3);
1087
0
            } while ((entry->hashValue != 0) &&
1088
0
                     (entry->payload != NULL) &&
1089
0
                     ((entry->key != old.key) ||
1090
0
                      (entry->key2 != old.key2) ||
1091
0
                      (entry->key3 != old.key3)));
1092
0
        }
1093
0
        if (++entry >= end)
1094
0
            entry = hash->table;
1095
0
    }
1096
0
}
1097
1098
/**
1099
 * @param hash  hash table
1100
 * @param copyFunc  copier function for items in the hash
1101
 * @param deallocFunc  deallocation function in case of errors
1102
 *
1103
 * Copy the hash table using `copyFunc` to copy payloads.
1104
 *
1105
 * @since 2.13.0
1106
 *
1107
 * @returns the new table or NULL if a memory allocation failed.
1108
 */
1109
xmlHashTable *
1110
xmlHashCopySafe(xmlHashTable *hash, xmlHashCopier copyFunc,
1111
0
                xmlHashDeallocator deallocFunc) {
1112
0
    const xmlHashEntry *entry, *end;
1113
0
    xmlHashTablePtr ret;
1114
1115
0
    if ((hash == NULL) || (copyFunc == NULL))
1116
0
        return(NULL);
1117
1118
0
    ret = xmlHashCreate(hash->size);
1119
0
    if (ret == NULL)
1120
0
        return(NULL);
1121
1122
0
    if (hash->size == 0)
1123
0
        return(ret);
1124
1125
0
    end = &hash->table[hash->size];
1126
1127
0
    for (entry = hash->table; entry < end; entry++) {
1128
0
        if (entry->hashValue != 0) {
1129
0
            void *copy;
1130
1131
0
            copy = copyFunc(entry->payload, entry->key);
1132
0
            if (copy == NULL)
1133
0
                goto error;
1134
0
            if (xmlHashAdd3(ret, entry->key, entry->key2, entry->key3,
1135
0
                            copy) <= 0) {
1136
0
                if (deallocFunc != NULL)
1137
0
                    deallocFunc(copy, entry->key);
1138
0
                goto error;
1139
0
            }
1140
0
        }
1141
0
    }
1142
1143
0
    return(ret);
1144
1145
0
error:
1146
0
    xmlHashFree(ret, deallocFunc);
1147
0
    return(NULL);
1148
0
}
1149
1150
/**
1151
 * @param hash  hash table
1152
 * @param copy  copier function for items in the hash
1153
 *
1154
 * @deprecated Leaks memory in error case.
1155
 *
1156
 * Copy the hash table using `copy` to copy payloads.
1157
 *
1158
 * @returns the new table or NULL if a memory allocation failed.
1159
 */
1160
xmlHashTable *
1161
0
xmlHashCopy(xmlHashTable *hash, xmlHashCopier copy) {
1162
0
    return(xmlHashCopySafe(hash, copy, NULL));
1163
0
}
1164
1165
/**
1166
 * Query the number of elements in the hash table.
1167
 *
1168
 * @param hash  hash table
1169
 * @returns the number of elements in the hash table or
1170
 * -1 in case of error.
1171
 */
1172
int
1173
5.74k
xmlHashSize(xmlHashTable *hash) {
1174
5.74k
    if (hash == NULL)
1175
0
        return(-1);
1176
5.74k
    return(hash->nbElems);
1177
5.74k
}
1178
1179
/**
1180
 * Find the entry specified by the `key` and remove it from the hash table.
1181
 * Payload will be freed with `dealloc`.
1182
 *
1183
 * @param hash  hash table
1184
 * @param key  string key
1185
 * @param dealloc  deallocator function for removed item or NULL
1186
 * @returns 0 on success and -1 if no entry was found.
1187
 */
1188
int xmlHashRemoveEntry(xmlHashTable *hash, const xmlChar *key,
1189
34
                       xmlHashDeallocator dealloc) {
1190
34
    return(xmlHashRemoveEntry3(hash, key, NULL, NULL, dealloc));
1191
34
}
1192
1193
/**
1194
 * Remove an entry with two strings as key.
1195
 *
1196
 * See #xmlHashRemoveEntry.
1197
 *
1198
 * @param hash  hash table
1199
 * @param key  first string key
1200
 * @param key2  second string key
1201
 * @param dealloc  deallocator function for removed item or NULL
1202
 * @returns 0 on success and -1 in case of error.
1203
 */
1204
int
1205
xmlHashRemoveEntry2(xmlHashTable *hash, const xmlChar *key,
1206
3.87k
                    const xmlChar *key2, xmlHashDeallocator dealloc) {
1207
3.87k
    return(xmlHashRemoveEntry3(hash, key, key2, NULL, dealloc));
1208
3.87k
}
1209
1210
/**
1211
 * Remove an entry with three strings as key.
1212
 *
1213
 * See #xmlHashRemoveEntry.
1214
 *
1215
 * @param hash  hash table
1216
 * @param key  first string key
1217
 * @param key2  second string key
1218
 * @param key3  third string key
1219
 * @param dealloc  deallocator function for removed item or NULL
1220
 * @returns 0 on success and -1 in case of error.
1221
 */
1222
ATTRIBUTE_NO_SANITIZE_INTEGER
1223
int
1224
xmlHashRemoveEntry3(xmlHashTable *hash, const xmlChar *key,
1225
                    const xmlChar *key2, const xmlChar *key3,
1226
3.91k
                    xmlHashDeallocator dealloc) {
1227
3.91k
    xmlHashEntry *entry, *cur, *next;
1228
3.91k
    unsigned hashValue, mask, pos, nextpos;
1229
3.91k
    int found;
1230
1231
3.91k
    if ((hash == NULL) || (hash->size == 0) || (key == NULL))
1232
0
        return(-1);
1233
1234
3.91k
    hashValue = xmlHashValue(hash->randomSeed, key, key2, key3, NULL);
1235
3.91k
    entry = xmlHashFindEntry(hash, key, key2, key3, hashValue, &found);
1236
3.91k
    if (!found)
1237
0
        return(-1);
1238
1239
3.91k
    if ((dealloc != NULL) && (entry->payload != NULL))
1240
34
        dealloc(entry->payload, entry->key);
1241
3.91k
    if (hash->dict == NULL) {
1242
35
        if (entry->key)
1243
35
            xmlFree(entry->key);
1244
35
        if (entry->key2)
1245
0
            xmlFree(entry->key2);
1246
35
        if (entry->key3)
1247
0
            xmlFree(entry->key3);
1248
35
    }
1249
1250
    /*
1251
     * Find end of probe sequence. Entries at their initial probe
1252
     * position start a new sequence.
1253
     */
1254
3.91k
    mask = hash->size - 1;
1255
3.91k
    pos = entry - hash->table;
1256
3.91k
    cur = entry;
1257
1258
10.7k
    while (1) {
1259
10.7k
        nextpos = pos + 1;
1260
10.7k
        next = cur + 1;
1261
10.7k
        if ((nextpos & mask) == 0)
1262
360
            next = hash->table;
1263
1264
10.7k
        if ((next->hashValue == 0) ||
1265
8.39k
            (((next->hashValue - nextpos) & mask) == 0))
1266
3.91k
            break;
1267
1268
6.87k
        cur = next;
1269
6.87k
        pos = nextpos;
1270
6.87k
    }
1271
1272
    /*
1273
     * Backward shift
1274
     */
1275
3.91k
    next = entry + 1;
1276
1277
3.91k
    if (cur < entry) {
1278
238
        xmlHashEntry *end = &hash->table[hash->size];
1279
1280
238
        memmove(entry, next, (char *) end - (char *) next);
1281
238
        entry = hash->table;
1282
238
        end[-1] = *entry;
1283
238
        next = entry + 1;
1284
238
    }
1285
1286
3.91k
    memmove(entry, next, (char *) cur - (char *) entry);
1287
1288
    /*
1289
     * Update entry
1290
     */
1291
3.91k
    cur->hashValue = 0;
1292
1293
3.91k
    hash->nbElems--;
1294
1295
3.91k
    return(0);
1296
3.91k
}
1297