8158d2d
From daf4ef50c88c2b9a6bf2c40b537eebc202caad6e Mon Sep 17 00:00:00 2001
8158d2d
From: =?UTF-8?q?S=C3=A9bastien=20Gonzalve?=
8158d2d
 <sebastien.gonzalve@aliceadsl.fr>
8158d2d
Date: Sat, 14 Nov 2020 10:39:47 +0100
8158d2d
Subject: [PATCH] Do not try to access element when vector is empty
8158d2d
8158d2d
Trying to access tmp[0] causes a crash on Fedora when assertion on STL
8158d2d
are enabled.
8158d2d
8158d2d
/usr/include/c++/10/bits/stl_vector.h:1045: std::vector<_Tp, _Alloc>::reference std::vector<_Tp, _Alloc>::operator[](std::vector<_Tp, _Alloc>::size_type) [with _Tp = unsigned char; _Alloc = std::allocator<unsigned char>; std::vector<_Tp, _Alloc>::reference = unsigned char&; std::vector<_Tp, _Alloc>::size_type = long unsigned int]: Assertion '__builtin_expect(__n < this->size(), true)' failed.
8158d2d
8158d2d
This patch just passes nullptr as pointer to getSortKey() when tmp size
8158d2d
is 0, preventing dereferencing elements in empty vector.
8158d2d
8158d2d
I guess that &tmp[0] should be optimized as 'no real access' when
8158d2d
disabling assertion, but actually leads to crash when assert are
8158d2d
enabled.
8158d2d
---
8158d2d
 src/icu/collator.cpp | 2 +-
8158d2d
 1 file changed, 1 insertion(+), 1 deletion(-)
8158d2d
8158d2d
diff --git a/libs/locale/src/icu/collator.cpp b/libs/locale/src/icu/collator.cpp
8158d2d
index 7f1ea6a..dc59e8c 100644
8158d2d
--- a/libs/locale/src/icu/collator.cpp
8158d2d
+++ b/libs/locale/src/icu/collator.cpp
8158d2d
@@ -93,7 +93,7 @@ namespace boost {
8158d2d
                     std::vector<uint8_t> tmp;
8158d2d
                     tmp.resize(str.length());
8158d2d
                     icu::Collator *collate = get_collator(level);
8158d2d
-                    int len = collate->getSortKey(str,&tmp[0],tmp.size());
aa5af67
+                    int len = collate->getSortKey(str,tmp.empty()?nullptr:&tmp[0],tmp.size());
8158d2d
                     if(len > int(tmp.size())) {
8158d2d
                         tmp.resize(len);
8158d2d
                         collate->getSortKey(str,&tmp[0],tmp.size());
8158d2d
-- 
8158d2d
2.26.2
8158d2d