diff options
author | Dean Rasheed <dean.a.rasheed@gmail.com> | 2023-11-09 09:57:52 +0000 |
---|---|---|
committer | Dean Rasheed <dean.a.rasheed@gmail.com> | 2023-11-09 09:57:52 +0000 |
commit | b17a02be27e01d46cf9a74d173009547305d4cf8 (patch) | |
tree | 564a4f5b1eae86d016df19e73b0572f55d29990e /src/include | |
parent | 2fe2d1af14fd2fb5afeee94b94c4d8a34a829e32 (diff) | |
download | postgresql-b17a02be27e01d46cf9a74d173009547305d4cf8.tar.gz postgresql-b17a02be27e01d46cf9a74d173009547305d4cf8.zip |
Fix corner-case 64-bit integer subtraction bug on some platforms.
When computing "0 - INT64_MIN", most platforms would report an
overflow error, which is correct. However, platforms without integer
overflow builtins or 128-bit integers would fail to spot the overflow,
and incorrectly return INT64_MIN.
Back-patch to all supported branches.
Patch be me. Thanks to Jian He for initial investigation, and Laurenz
Albe and Tom Lane for review.
Discussion: https://postgr.es/m/CAEZATCUNK-AZSD0jVdgkk0N%3DNcAXBWeAEX-QU9AnJPensikmdQ%40mail.gmail.com
Diffstat (limited to 'src/include')
-rw-r--r-- | src/include/common/int.h | 6 |
1 files changed, 5 insertions, 1 deletions
diff --git a/src/include/common/int.h b/src/include/common/int.h index d7547985438..b3abce65e93 100644 --- a/src/include/common/int.h +++ b/src/include/common/int.h @@ -211,8 +211,12 @@ pg_sub_s64_overflow(int64 a, int64 b, int64 *result) *result = (int64) res; return false; #else + /* + * Note: overflow is also possible when a == 0 and b < 0 (specifically, + * when b == PG_INT64_MIN). + */ if ((a < 0 && b > 0 && a < PG_INT64_MIN + b) || - (a > 0 && b < 0 && a > PG_INT64_MAX + b)) + (a >= 0 && b < 0 && a > PG_INT64_MAX + b)) { *result = 0x5EED; /* to avoid spurious warnings */ return true; |