`M14-6-1`: enhancement to cover types
まだ誰も着手していません。
評価
調査の方向性
リンクされた issue 192 と M14-6-1 クエリのドラフトから始め、NameInDependentBase、TypeUses、TemplatesPackage を含めて確認します。C++ の例に示されている typedef と型使用の動作を調査し、そのうえで、そのクエリが修飾付きと修飾なしの依存基底クラスにおける typedef の使用を正確に、かつ古いライブラリのパフォーマンス問題なしにカバーできるかどうかを判断します。
索引モデルが issue の本文から書いたものです。
説明
as noted in this issue this rule does not address the types case
the reason was that at the time of writing this query it was discovered that we dont have fully qualified typenames for typedefs:
typedef int TYPE;
template<typename T>
class B {
public:
typedef T TYPE;
};
template<typename T>
class A : B<T> {
public:
void m2(){
TYPE t = 0; // NON_COMPLIANT
::TYPE t1 = 0; //COMPLIANT
typename B<T>::TYPE t2 = 0; // COMPLIANT
}
};
void f(){
A<int> a;
a.m2();
}
example, trying to get full names of types present:
from TypedefType t
select t, t.getQualifiedName(), t.getATypeNameUse()
result:
+| test.cpp:1:13:1:16 | TYPE | TYPE | test.cpp:20:14:20:14 | definition of t |
+| test.cpp:1:13:1:16 | TYPE | TYPE | test.cpp:26:16:26:17 | definition of t1 |
and initial audit level query was written but it was imprecise and used the old lib (so also non performat). would need cleanup or rewriting
/**
* @id cpp/autosar/name-not-referred-using-a-qualified-id-or-this-type-def-type
* @name M14-6-1: In a class template with a dependent base, any typedef type name that may be found in that dependent base shall shall be referred to using a qualified-id or this->
* @description Not using a qualified-id or `this->` syntax for typedef type uses in a class
* template makes the code more difficult to understand.
* @kind problem
* @precision very-high
* @problem.severity warning
* @tags external/autosar/id/m14-6-1
* maintainability
* readability
* external/autosar/allocated-target/implementation
* external/autosar/enforcement/automated
* external/autosar/obligation/required
*/
import cpp
import codingstandards.cpp.autosar
import codingstandards.cpp.TypeUses
import NameInDependentBase
/**
* `Locatable`s exists only in some `MemberFunction`
* this class is required to speed up `TypeUses.getATypeUse`
*/
class LocatablesInChild extends Locatable {
Class child;
LocatablesInChild() { this.getEnclosingElement() = child.getAMemberFunction() }
predicate isInThisChild(Class c) { c = child }
}
/**
* `TypedefType`s that are declared in a `Class`
* that is a parent of any other `Class`
*/
class ParentTypedefType extends TypedefType {
Class parent;
Class child;
ParentTypedefType() {
this.getDeclaringType() = parent and
getParent(child) = parent
}
predicate thisIsMyChild(Class c) { c = child }
}
/**
* All pairs of `TypedefType` and `ParentTypedefType`
* with a same name
*/
predicate sameNameTypeDefPairs(TypedefType v, ParentTypedefType parentType) {
v.getName() = parentType.getName()
}
from Class c, TypedefType v, ParentTypedefType parentType, LocatablesInChild l
where
not isExcluded(l, TemplatesPackage::nameNotReferredUsingAQualifiedIdOrThisTypeDefTypeQuery()) and
l.isInThisChild(c) and
parentType.thisIsMyChild(c) and
l = getATypeUse(v) and
//two TypedefTypes with same name but one was declared in the dependent base
sameNameTypeDefPairs(v, parentType)
select l,
"Use of typedef type name that also exists in a base class that may not be fully qualified."
- 主要言語
- CodeQL
- スター
- 227
- フォーク
- 82
- 平均マージ
- 6日 7時間
- マージ済み PR(30日)
- 9
コントリビューションガイド
はじめの一歩
- issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
- 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
- リポジトリをフォークし、ブランチを切って変更します。
- issue 番号を参照したプルリクエストを送ります。
github/codeql-coding-standards のほかの issue
-
false positive/false negative Stardard-MISRA-C++
難易度 2/5 1〜3時間 初心者へのやさしさ 72/100
github/codeql-coding-standards#1172 ·
-
Difficulty-Low false positive/false negative false-negative Impact-Low Standard-MISRA-C
難易度 2/5 1〜3時間 初心者へのやさしさ 68/100
-
Difficulty-Medium false positive/false negative false-positive Impact-Medium Standard-CERT-C
難易度 4/5 3〜5日 初心者へのやさしさ 48/100
github/codeql-coding-standards#1200 ·
-
`RULE-0-0-1`: "unreachable statement" false positives due to over-pruning of the control-flow graph オープンfalse positive/false negative
難易度 4/5 3〜5日 初心者へのやさしさ 48/100
github/codeql-coding-standards#1190 ·
-
false positive/false negative
難易度 3/5 1〜2日 初心者へのやさしさ 65/100
github/codeql-coding-standards#1175 ·
github/codeql-coding-standards の issue をすべて見る
似ている issue
-
難易度 2/5 1〜3時間 初心者へのやさしさ 75/100
palladius/rails8-app-on-gcp#145 ·
-
難易度 2/5 1〜3時間 初心者へのやさしさ 75/100
elastic/gradle-plugins#156 ·
-
area:workflow bug ready-for-agent
難易度 2/5 1〜3時間 初心者へのやさしさ 75/100
fil-donadoni/tolaria#4409 ·
-
難易度 2/5 1〜3時間 初心者へのやさしさ 65/100
dotenvx/dotenv-vscode#139 ·
-
難易度 2/5 1〜3時間 初心者へのやさしさ 70/100
Fission-AI/OpenSpec#1960 ·