1 | <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
|
---|
2 | <html>
|
---|
3 | <!-- Copyright (C) 2022 Richard Stallman and Free Software Foundation, Inc.
|
---|
4 |
|
---|
5 | (The work of Trevis Rothwell and Nelson Beebe has been assigned or
|
---|
6 | licensed to the FSF.)
|
---|
7 |
|
---|
8 | Permission is granted to copy, distribute and/or modify this document
|
---|
9 | under the terms of the GNU Free Documentation License, Version 1.3 or
|
---|
10 | any later version published by the Free Software Foundation; with the
|
---|
11 | Invariant Sections being "GNU General Public License," with the
|
---|
12 | Front-Cover Texts being "A GNU Manual," and with the Back-Cover
|
---|
13 | Texts as in (a) below. A copy of the license is included in the
|
---|
14 | section entitled "GNU Free Documentation License."
|
---|
15 |
|
---|
16 | (a) The FSF's Back-Cover Text is: "You have the freedom to copy and
|
---|
17 | modify this GNU manual. Buying copies from the FSF supports it in
|
---|
18 | developing GNU and promoting software freedom." -->
|
---|
19 | <!-- Created by GNU Texinfo 6.7, http://www.gnu.org/software/texinfo/ -->
|
---|
20 | <head>
|
---|
21 | <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
|
---|
22 | <title>Pointer Arithmetic Drawbacks (GNU C Language Manual)</title>
|
---|
23 |
|
---|
24 | <meta name="description" content="Pointer Arithmetic Drawbacks (GNU C Language Manual)">
|
---|
25 | <meta name="keywords" content="Pointer Arithmetic Drawbacks (GNU C Language Manual)">
|
---|
26 | <meta name="resource-type" content="document">
|
---|
27 | <meta name="distribution" content="global">
|
---|
28 | <meta name="Generator" content="makeinfo">
|
---|
29 | <link href="index.html" rel="start" title="Top">
|
---|
30 | <link href="Symbol-Index.html" rel="index" title="Symbol Index">
|
---|
31 | <link href="index.html#SEC_Contents" rel="contents" title="Table of Contents">
|
---|
32 | <link href="Pointers.html" rel="up" title="Pointers">
|
---|
33 | <link href="Pointer_002dInteger-Conversion.html" rel="next" title="Pointer-Integer Conversion">
|
---|
34 | <link href="Pointer-Increment_002fDecrement.html" rel="prev" title="Pointer Increment/Decrement">
|
---|
35 | <style type="text/css">
|
---|
36 | <!--
|
---|
37 | a.summary-letter {text-decoration: none}
|
---|
38 | blockquote.indentedblock {margin-right: 0em}
|
---|
39 | div.display {margin-left: 3.2em}
|
---|
40 | div.example {margin-left: 3.2em}
|
---|
41 | div.lisp {margin-left: 3.2em}
|
---|
42 | kbd {font-style: oblique}
|
---|
43 | pre.display {font-family: inherit}
|
---|
44 | pre.format {font-family: inherit}
|
---|
45 | pre.menu-comment {font-family: serif}
|
---|
46 | pre.menu-preformatted {font-family: serif}
|
---|
47 | span.nolinebreak {white-space: nowrap}
|
---|
48 | span.roman {font-family: initial; font-weight: normal}
|
---|
49 | span.sansserif {font-family: sans-serif; font-weight: normal}
|
---|
50 | ul.no-bullet {list-style: none}
|
---|
51 | -->
|
---|
52 | </style>
|
---|
53 |
|
---|
54 |
|
---|
55 | </head>
|
---|
56 |
|
---|
57 | <body lang="en">
|
---|
58 | <span id="Pointer-Arithmetic-Drawbacks"></span><div class="header">
|
---|
59 | <p>
|
---|
60 | Next: <a href="Pointer_002dInteger-Conversion.html" accesskey="n" rel="next">Pointer-Integer Conversion</a>, Previous: <a href="Pointer-Increment_002fDecrement.html" accesskey="p" rel="prev">Pointer Increment/Decrement</a>, Up: <a href="Pointers.html" accesskey="u" rel="up">Pointers</a> [<a href="index.html#SEC_Contents" title="Table of contents" rel="contents">Contents</a>][<a href="Symbol-Index.html" title="Index" rel="index">Index</a>]</p>
|
---|
61 | </div>
|
---|
62 | <hr>
|
---|
63 | <span id="Drawbacks-of-Pointer-Arithmetic"></span><h3 class="section">14.14 Drawbacks of Pointer Arithmetic</h3>
|
---|
64 | <span id="index-drawbacks-of-pointer-arithmetic"></span>
|
---|
65 | <span id="index-pointer-arithmetic_002c-drawbacks"></span>
|
---|
66 |
|
---|
67 | <p>Pointer arithmetic is clean and elegant, but it is also the cause of a
|
---|
68 | major security flaw in the C language. Theoretically, it is only
|
---|
69 | valid to adjust a pointer within one object allocated as a unit in
|
---|
70 | memory. However, if you unintentionally adjust a pointer across the
|
---|
71 | bounds of the object and into some other object, the system has no way
|
---|
72 | to detect this error.
|
---|
73 | </p>
|
---|
74 | <p>A bug which does that can easily result in clobbering part of another
|
---|
75 | object. For example, with <code>array[-1]</code> you can read or write the
|
---|
76 | nonexistent element before the beginning of an array—probably part
|
---|
77 | of some other data.
|
---|
78 | </p>
|
---|
79 | <p>Combining pointer arithmetic with casts between pointer types, you can
|
---|
80 | create a pointer that fails to be properly aligned for its type. For
|
---|
81 | example,
|
---|
82 | </p>
|
---|
83 | <div class="example">
|
---|
84 | <pre class="example">int a[2];
|
---|
85 | char *pa = (char *)a;
|
---|
86 | int *p = (int *)(pa + 1);
|
---|
87 | </pre></div>
|
---|
88 |
|
---|
89 | <p>gives <code>p</code> a value pointing to an “integer” that includes part
|
---|
90 | of <code>a[0]</code> and part of <code>a[1]</code>. Dereferencing that with
|
---|
91 | <code>*p</code> can cause a fatal <code>SIGSEGV</code> signal or it can return the
|
---|
92 | contents of that badly aligned <code>int</code> (see <a href="Signals.html">Signals</a>. If it
|
---|
93 | “works,” it may be quite slow. It can also cause aliasing
|
---|
94 | confusions (see <a href="Aliasing.html">Aliasing</a>).
|
---|
95 | </p>
|
---|
96 | <p><strong>Warning:</strong> Using improperly aligned pointers is risky—don’t do it
|
---|
97 | unless it is really necessary.
|
---|
98 | </p>
|
---|
99 |
|
---|
100 |
|
---|
101 |
|
---|
102 | </body>
|
---|
103 | </html>
|
---|