fb633ea
From c1b97d6d896b1f22fdf5d28471ef7859ec840a57 Mon Sep 17 00:00:00 2001
fb633ea
From: Andreas Schwab <schwab@redhat.com>
fb633ea
Date: Wed, 1 Sep 2010 17:26:15 +0200
fb633ea
Subject: [PATCH] Fix handling of collating symbols in regexps
fb633ea
fb633ea
[BZ #11561]
fb633ea
* posix/regcomp.c (parse_bracket_exp): When looking up collating
fb633ea
elements compare against the byte sequence of it, not its name.
fb633ea
fb633ea
---
fb633ea
 ChangeLog       |    4 +++
fb633ea
 posix/regcomp.c |   72 ++++++++++++++++++++----------------------------------
fb633ea
 2 files changed, 31 insertions(+), 45 deletions(-)
fb633ea
fb633ea
--- a/posix/regcomp.c
fb633ea
+++ b/posix/regcomp.c
fb633ea
@@ -2772,40 +2772,29 @@ parse_bracket_exp (re_string_t *regexp, re_dfa_t *dfa, re_token_t *token,
fb633ea
 
fb633ea
   /* Local function for parse_bracket_exp used in _LIBC environement.
fb633ea
      Seek the collating symbol entry correspondings to NAME.
fb633ea
-     Return the index of the symbol in the SYMB_TABLE.  */
fb633ea
+     Return the index of the symbol in the SYMB_TABLE,
fb633ea
+     or -1 if not found.  */
fb633ea
 
fb633ea
   auto inline int32_t
fb633ea
   __attribute ((always_inline))
fb633ea
-  seek_collating_symbol_entry (name, name_len)
fb633ea
-	 const unsigned char *name;
fb633ea
-	 size_t name_len;
fb633ea
+  seek_collating_symbol_entry (const unsigned char *name, size_t name_len)
fb633ea
     {
fb633ea
-      int32_t hash = elem_hash ((const char *) name, name_len);
fb633ea
-      int32_t elem = hash % table_size;
fb633ea
-      if (symb_table[2 * elem] != 0)
fb633ea
-	{
fb633ea
-	  int32_t second = hash % (table_size - 2) + 1;
fb633ea
-
fb633ea
-	  do
fb633ea
-	    {
fb633ea
-	      /* First compare the hashing value.  */
fb633ea
-	      if (symb_table[2 * elem] == hash
fb633ea
-		  /* Compare the length of the name.  */
fb633ea
-		  && name_len == extra[symb_table[2 * elem + 1]]
fb633ea
-		  /* Compare the name.  */
fb633ea
-		  && memcmp (name, &extra[symb_table[2 * elem + 1] + 1],
fb633ea
-			     name_len) == 0)
fb633ea
-		{
fb633ea
-		  /* Yep, this is the entry.  */
fb633ea
-		  break;
fb633ea
-		}
fb633ea
+      int32_t elem;
fb633ea
 
fb633ea
-	      /* Next entry.  */
fb633ea
-	      elem += second;
fb633ea
-	    }
fb633ea
-	  while (symb_table[2 * elem] != 0);
fb633ea
-	}
fb633ea
-      return elem;
fb633ea
+      for (elem = 0; elem < table_size; elem++)
fb633ea
+	if (symb_table[2 * elem] != 0)
fb633ea
+	  {
fb633ea
+	    int32_t idx = symb_table[2 * elem + 1];
fb633ea
+	    /* Skip the name of collating element name.  */
fb633ea
+	    idx += 1 + extra[idx];
fb633ea
+	    if (/* Compare the length of the name.  */
fb633ea
+		name_len == extra[idx]
fb633ea
+		/* Compare the name.  */
fb633ea
+		&& memcmp (name, &extra[idx + 1], name_len) == 0)
fb633ea
+	      /* Yep, this is the entry.  */
fb633ea
+	      return elem;
fb633ea
+	  }
fb633ea
+      return -1;
fb633ea
     }
fb633ea
 
fb633ea
   /* Local function for parse_bracket_exp used in _LIBC environment.
fb633ea
@@ -2814,8 +2803,7 @@ parse_bracket_exp (re_string_t *regexp, re_dfa_t *dfa, re_token_t *token,
fb633ea
 
fb633ea
   auto inline unsigned int
fb633ea
   __attribute ((always_inline))
fb633ea
-  lookup_collation_sequence_value (br_elem)
fb633ea
-	 bracket_elem_t *br_elem;
fb633ea
+  lookup_collation_sequence_value (bracket_elem_t *br_elem)
fb633ea
     {
fb633ea
       if (br_elem->type == SB_CHAR)
fb633ea
 	{
fb633ea
@@ -2843,7 +2831,7 @@ parse_bracket_exp (re_string_t *regexp, re_dfa_t *dfa, re_token_t *token,
fb633ea
 	      int32_t elem, idx;
fb633ea
 	      elem = seek_collating_symbol_entry (br_elem->opr.name,
fb633ea
 						  sym_name_len);
fb633ea
-	      if (symb_table[2 * elem] != 0)
fb633ea
+	      if (elem != -1)
fb633ea
 		{
fb633ea
 		  /* We found the entry.  */
fb633ea
 		  idx = symb_table[2 * elem + 1];
fb633ea
@@ -2861,7 +2849,7 @@ parse_bracket_exp (re_string_t *regexp, re_dfa_t *dfa, re_token_t *token,
fb633ea
 		  /* Return the collation sequence value.  */
fb633ea
 		  return *(unsigned int *) (extra + idx);
fb633ea
 		}
fb633ea
-	      else if (symb_table[2 * elem] == 0 && sym_name_len == 1)
fb633ea
+	      else if (sym_name_len == 1)
fb633ea
 		{
fb633ea
 		  /* No valid character.  Match it as a single byte
fb633ea
 		     character.  */
fb633ea
@@ -2883,11 +2871,8 @@ parse_bracket_exp (re_string_t *regexp, re_dfa_t *dfa, re_token_t *token,
fb633ea
 
fb633ea
   auto inline reg_errcode_t
fb633ea
   __attribute ((always_inline))
fb633ea
-  build_range_exp (sbcset, mbcset, range_alloc, start_elem, end_elem)
fb633ea
-	 re_charset_t *mbcset;
fb633ea
-	 int *range_alloc;
fb633ea
-	 bitset_t sbcset;
fb633ea
-	 bracket_elem_t *start_elem, *end_elem;
fb633ea
+  build_range_exp (bitset_t sbcset, re_charset_t *mbcset, int *range_alloc,
fb633ea
+		   bracket_elem_t *start_elem, bracket_elem_t *end_elem)
fb633ea
     {
fb633ea
       unsigned int ch;
fb633ea
       uint32_t start_collseq;
fb633ea
@@ -2966,25 +2951,22 @@ parse_bracket_exp (re_string_t *regexp, re_dfa_t *dfa, re_token_t *token,
fb633ea
 
fb633ea
   auto inline reg_errcode_t
fb633ea
   __attribute ((always_inline))
fb633ea
-  build_collating_symbol (sbcset, mbcset, coll_sym_alloc, name)
fb633ea
-	 re_charset_t *mbcset;
fb633ea
-	 int *coll_sym_alloc;
fb633ea
-	 bitset_t sbcset;
fb633ea
-	 const unsigned char *name;
fb633ea
+  build_collating_symbol (bitset_t sbcset, re_charset_t *mbcset,
fb633ea
+			  int *coll_sym_alloc, const unsigned char *name)
fb633ea
     {
fb633ea
       int32_t elem, idx;
fb633ea
       size_t name_len = strlen ((const char *) name);
fb633ea
       if (nrules != 0)
fb633ea
 	{
fb633ea
 	  elem = seek_collating_symbol_entry (name, name_len);
fb633ea
-	  if (symb_table[2 * elem] != 0)
fb633ea
+	  if (elem != -1)
fb633ea
 	    {
fb633ea
 	      /* We found the entry.  */
fb633ea
 	      idx = symb_table[2 * elem + 1];
fb633ea
 	      /* Skip the name of collating element name.  */
fb633ea
 	      idx += 1 + extra[idx];
fb633ea
 	    }
fb633ea
-	  else if (symb_table[2 * elem] == 0 && name_len == 1)
fb633ea
+	  else if (name_len == 1)
fb633ea
 	    {
fb633ea
 	      /* No valid character, treat it as a normal
fb633ea
 		 character.  */