From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: by sourceware.org (Postfix, from userid 48) id 84F653858D38; Mon, 25 Mar 2024 18:25:23 +0000 (GMT) DKIM-Filter: OpenDKIM Filter v2.11.0 sourceware.org 84F653858D38 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gcc.gnu.org; s=default; t=1711391123; bh=H/ibgmXR2BZwoUKWW/47T3FkvXHZfiCuW9pA6cnVkh8=; h=From:To:Subject:Date:From; b=rRpZomcaM/8JV+2GaQwf8IRYDyLOx8xBbWe/Yu2XB3c91G9Vq7npsvKvMSCCGacgd DsC+O24Cv8Ywx7UPBHsBD+Uhm3B2bW1kl/fUowIs6kBex2k7RFDA5Refs7sJ7VJ0Qb SmQpEBPlLSgwehK6fOi1oh1prrBVsGSk0gLkK2qU= From: "zsojka at seznam dot cz" To: gcc-bugs@gcc.gnu.org Subject: [Bug analyzer/114472] New: [14 Regression] ICE: in falls_short_of_p, at analyzer/store.cc:365 (in exceeds_p, at analyzer/store.cc:342) with -fanalyzer Date: Mon, 25 Mar 2024 18:25:22 +0000 X-Bugzilla-Reason: CC X-Bugzilla-Type: new X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: gcc X-Bugzilla-Component: analyzer X-Bugzilla-Version: 14.0 X-Bugzilla-Keywords: ice-on-valid-code X-Bugzilla-Severity: normal X-Bugzilla-Who: zsojka at seznam dot cz X-Bugzilla-Status: UNCONFIRMED X-Bugzilla-Resolution: X-Bugzilla-Priority: P3 X-Bugzilla-Assigned-To: dmalcolm at gcc dot gnu.org X-Bugzilla-Target-Milestone: --- X-Bugzilla-Flags: X-Bugzilla-Changed-Fields: bug_id short_desc product version bug_status keywords bug_severity priority component assigned_to reporter target_milestone cf_gcchost cf_gcctarget attachments.created Message-ID: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: http://gcc.gnu.org/bugzilla/ Auto-Submitted: auto-generated MIME-Version: 1.0 List-Id: https://gcc.gnu.org/bugzilla/show_bug.cgi?id=3D114472 Bug ID: 114472 Summary: [14 Regression] ICE: in falls_short_of_p, at analyzer/store.cc:365 (in exceeds_p, at analyzer/store.cc:342) with -fanalyzer Product: gcc Version: 14.0 Status: UNCONFIRMED Keywords: ice-on-valid-code Severity: normal Priority: P3 Component: analyzer Assignee: dmalcolm at gcc dot gnu.org Reporter: zsojka at seznam dot cz Target Milestone: --- Host: x86_64-pc-linux-gnu Target: x86_64-pc-linux-gnu Created attachment 57813 --> https://gcc.gnu.org/bugzilla/attachment.cgi?id=3D57813&action=3Dedit reduced testcase Compiler output: $ x86_64-pc-linux-gnu-gcc -fanalyzer testcase.c=20 during IPA pass: analyzer testcase.c: In function 'bar': testcase.c:13:3: internal compiler error: in falls_short_of_p, at analyzer/store.cc:365 13 | __builtin_strncpy(&d, &s - 3, -1); | ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 0x8ca06b ana::bit_range::falls_short_of_p(generic_wide_int >, ana::bit_range*) const /repo/gcc-trunk/gcc/analyzer/store.cc:365 0x28c0d6e ana::region_model::check_region_bounds(ana::region const*, ana::access_direction, ana::svalue const*, ana::region_model_context*) const /repo/gcc-trunk/gcc/analyzer/bounds-checking.cc:1438 0x19622b9 ana::region_model::check_region_access(ana::region const*, ana::access_direction, ana::svalue const*, ana::region_model_context*) const /repo/gcc-trunk/gcc/analyzer/region-model.cc:3095 0x19622b9 ana::region_model::check_region_access(ana::region const*, ana::access_direction, ana::svalue const*, ana::region_model_context*) const /repo/gcc-trunk/gcc/analyzer/region-model.cc:3084 0x19622b9 ana::region_model::check_region_for_read(ana::region const*, ana::region_model_context*) const /repo/gcc-trunk/gcc/analyzer/region-model.cc:3129 0x19622b9 ana::region_model::check_region_for_read(ana::region const*, ana::region_model_context*) const /repo/gcc-trunk/gcc/analyzer/region-model.cc:3126 0x19622b9 ana::region_model::get_store_value(ana::region const*, ana::region_model_context*) const /repo/gcc-trunk/gcc/analyzer/region-model.cc:2690 0x19688d2 ana::region_model::get_store_value(ana::region const*, ana::region_model_context*) const /repo/gcc-trunk/gcc/analyzer/region-model.cc:2686 0x19688d2 ana::region_model::read_bytes(ana::region const*, tree_node*, ana::svalue const*, ana::region_model_context*) const /repo/gcc-trunk/gcc/analyzer/region-model.cc:4462 0x19688d2 ana::region_model::read_bytes(ana::region const*, tree_node*, ana::svalue const*, ana::region_model_context*) const /repo/gcc-trunk/gcc/analyzer/region-model.cc:4453 0x1945a2a update_model /repo/gcc-trunk/gcc/analyzer/kf.cc:1609 0x193397a ana::exploded_graph::process_node(ana::exploded_node*) /repo/gcc-trunk/gcc/analyzer/engine.cc:4241 0x193442a ana::exploded_graph::process_worklist() /repo/gcc-trunk/gcc/analyzer/engine.cc:3516 0x1936b9b ana::impl_run_checkers(ana::logger*) /repo/gcc-trunk/gcc/analyzer/engine.cc:6210 0x1937b66 ana::run_checkers() /repo/gcc-trunk/gcc/analyzer/engine.cc:6308 0x1926458 execute /repo/gcc-trunk/gcc/analyzer/analyzer-pass.cc:87 Please submit a full bug report, with preprocessed source (by using -freport-bug). Please include the complete backtrace with any bug report. See for instructions. $ x86_64-pc-linux-gnu-gcc -v Using built-in specs. COLLECT_GCC=3D/repo/gcc-trunk/binary-latest-amd64/bin/x86_64-pc-linux-gnu-g= cc COLLECT_LTO_WRAPPER=3D/repo/gcc-trunk/binary-trunk-r14-9652-20240325121350-= gcf3fc6f414f-checking-yes-rtl-df-extra-amd64/bin/../libexec/gcc/x86_64-pc-l= inux-gnu/14.0.1/lto-wrapper Target: x86_64-pc-linux-gnu Configured with: /repo/gcc-trunk//configure --enable-languages=3Dc,c++ --enable-valgrind-annotations --disable-nls --enable-checking=3Dyes,rtl,df,= extra --with-cloog --with-ppl --with-isl --build=3Dx86_64-pc-linux-gnu --host=3Dx86_64-pc-linux-gnu --target=3Dx86_64-pc-linux-gnu --with-ld=3D/usr/bin/x86_64-pc-linux-gnu-ld --with-as=3D/usr/bin/x86_64-pc-linux-gnu-as --enable-libsanitizer --disable-libstdcxx-pch --prefix=3D/repo/gcc-trunk//binary-trunk-r14-9652-20240325121350-gcf3fc6f41= 4f-checking-yes-rtl-df-extra-amd64 Thread model: posix Supported LTO compression algorithms: zlib zstd gcc version 14.0.1 20240325 (experimental) (GCC)=