-
Notifications
You must be signed in to change notification settings - Fork 206
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
fix: audit fixes #1672
base: main
Are you sure you want to change the base?
fix: audit fixes #1672
Conversation
Test Results2 204 tests - 1 2 204 ✅ - 1 24m 22s ⏱️ - 1m 0s Results for commit 9218823. ± Comparison against base commit 6278d1a. This pull request removes 1 test.
♻️ This comment has been updated with latest results. |
@@ -14,6 +14,8 @@ import ( | |||
"golang.org/x/exp/slices" | |||
) | |||
|
|||
// DetectionIndex creates an index for detection instances. | |||
// WARNING: the detection index should not be used for prefixed iteration. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
add why please
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
done. see 9218823
Description
Closes: #XXXX
In this PR I fixed a few issues that came up during an audit of the consensus code.
Added a warning comment on proper use of
DetectionIndex()
Added safety checks to avoid potential nil dereference in the node's code. The potential nil dereference issues were found by Uber's nilaway tool (link).
nilaway's original reports are attached. Note, I did not fix potential errors in test code.
Removed the pairing query cache.
nilaway_reports.zip
Author Checklist
All items are required. Please add a note to the item if the item is not applicable and
please add links to any relevant follow up issues.
I have...
!
in the type prefix if API or client breaking changemain
branchReviewers Checklist
All items are required. Please add a note if the item is not applicable and please add
your handle next to the items reviewed if you only reviewed selected items.
I have...