1*59c8e88eSDag-Erling Smørgrav /* $OpenBSD: recallocarray.c,v 1.1 2017/03/06 18:44:21 otto Exp $ */
2*59c8e88eSDag-Erling Smørgrav /*
3*59c8e88eSDag-Erling Smørgrav * Copyright (c) 2008, 2017 Otto Moerbeek <otto@drijf.net>
4*59c8e88eSDag-Erling Smørgrav *
5*59c8e88eSDag-Erling Smørgrav * Permission to use, copy, modify, and distribute this software for any
6*59c8e88eSDag-Erling Smørgrav * purpose with or without fee is hereby granted, provided that the above
7*59c8e88eSDag-Erling Smørgrav * copyright notice and this permission notice appear in all copies.
8*59c8e88eSDag-Erling Smørgrav *
9*59c8e88eSDag-Erling Smørgrav * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
10*59c8e88eSDag-Erling Smørgrav * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
11*59c8e88eSDag-Erling Smørgrav * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
12*59c8e88eSDag-Erling Smørgrav * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
13*59c8e88eSDag-Erling Smørgrav * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
14*59c8e88eSDag-Erling Smørgrav * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
15*59c8e88eSDag-Erling Smørgrav * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
16*59c8e88eSDag-Erling Smørgrav */
17*59c8e88eSDag-Erling Smørgrav
18*59c8e88eSDag-Erling Smørgrav #include <errno.h>
19*59c8e88eSDag-Erling Smørgrav #include <stdlib.h>
20*59c8e88eSDag-Erling Smørgrav #include <stdint.h>
21*59c8e88eSDag-Erling Smørgrav #include <string.h>
22*59c8e88eSDag-Erling Smørgrav #include <unistd.h>
23*59c8e88eSDag-Erling Smørgrav
24*59c8e88eSDag-Erling Smørgrav /*
25*59c8e88eSDag-Erling Smørgrav * This is sqrt(SIZE_MAX+1), as s1*s2 <= SIZE_MAX
26*59c8e88eSDag-Erling Smørgrav * if both s1 < MUL_NO_OVERFLOW and s2 < MUL_NO_OVERFLOW
27*59c8e88eSDag-Erling Smørgrav */
28*59c8e88eSDag-Erling Smørgrav #define MUL_NO_OVERFLOW ((size_t)1 << (sizeof(size_t) * 4))
29*59c8e88eSDag-Erling Smørgrav
30*59c8e88eSDag-Erling Smørgrav void *
recallocarray(void * ptr,size_t oldnmemb,size_t newnmemb,size_t size)31*59c8e88eSDag-Erling Smørgrav recallocarray(void *ptr, size_t oldnmemb, size_t newnmemb, size_t size)
32*59c8e88eSDag-Erling Smørgrav {
33*59c8e88eSDag-Erling Smørgrav size_t oldsize, newsize;
34*59c8e88eSDag-Erling Smørgrav void *newptr;
35*59c8e88eSDag-Erling Smørgrav
36*59c8e88eSDag-Erling Smørgrav if (ptr == NULL)
37*59c8e88eSDag-Erling Smørgrav return calloc(newnmemb, size);
38*59c8e88eSDag-Erling Smørgrav
39*59c8e88eSDag-Erling Smørgrav if ((newnmemb >= MUL_NO_OVERFLOW || size >= MUL_NO_OVERFLOW) &&
40*59c8e88eSDag-Erling Smørgrav newnmemb > 0 && SIZE_MAX / newnmemb < size) {
41*59c8e88eSDag-Erling Smørgrav errno = ENOMEM;
42*59c8e88eSDag-Erling Smørgrav return NULL;
43*59c8e88eSDag-Erling Smørgrav }
44*59c8e88eSDag-Erling Smørgrav newsize = newnmemb * size;
45*59c8e88eSDag-Erling Smørgrav
46*59c8e88eSDag-Erling Smørgrav if ((oldnmemb >= MUL_NO_OVERFLOW || size >= MUL_NO_OVERFLOW) &&
47*59c8e88eSDag-Erling Smørgrav oldnmemb > 0 && SIZE_MAX / oldnmemb < size) {
48*59c8e88eSDag-Erling Smørgrav errno = EINVAL;
49*59c8e88eSDag-Erling Smørgrav return NULL;
50*59c8e88eSDag-Erling Smørgrav }
51*59c8e88eSDag-Erling Smørgrav oldsize = oldnmemb * size;
52*59c8e88eSDag-Erling Smørgrav
53*59c8e88eSDag-Erling Smørgrav /*
54*59c8e88eSDag-Erling Smørgrav * Don't bother too much if we're shrinking just a bit,
55*59c8e88eSDag-Erling Smørgrav * we do not shrink for series of small steps, oh well.
56*59c8e88eSDag-Erling Smørgrav */
57*59c8e88eSDag-Erling Smørgrav if (newsize <= oldsize) {
58*59c8e88eSDag-Erling Smørgrav size_t d = oldsize - newsize;
59*59c8e88eSDag-Erling Smørgrav
60*59c8e88eSDag-Erling Smørgrav if (d < oldsize / 2 && d < getpagesize()) {
61*59c8e88eSDag-Erling Smørgrav memset((char *)ptr + newsize, 0, d);
62*59c8e88eSDag-Erling Smørgrav return ptr;
63*59c8e88eSDag-Erling Smørgrav }
64*59c8e88eSDag-Erling Smørgrav }
65*59c8e88eSDag-Erling Smørgrav
66*59c8e88eSDag-Erling Smørgrav newptr = malloc(newsize);
67*59c8e88eSDag-Erling Smørgrav if (newptr == NULL)
68*59c8e88eSDag-Erling Smørgrav return NULL;
69*59c8e88eSDag-Erling Smørgrav
70*59c8e88eSDag-Erling Smørgrav if (newsize > oldsize) {
71*59c8e88eSDag-Erling Smørgrav memcpy(newptr, ptr, oldsize);
72*59c8e88eSDag-Erling Smørgrav memset((char *)newptr + oldsize, 0, newsize - oldsize);
73*59c8e88eSDag-Erling Smørgrav } else
74*59c8e88eSDag-Erling Smørgrav memcpy(newptr, ptr, newsize);
75*59c8e88eSDag-Erling Smørgrav
76*59c8e88eSDag-Erling Smørgrav explicit_bzero(ptr, oldsize);
77*59c8e88eSDag-Erling Smørgrav free(ptr);
78*59c8e88eSDag-Erling Smørgrav
79*59c8e88eSDag-Erling Smørgrav return newptr;
80*59c8e88eSDag-Erling Smørgrav }
81