marshal.c 47.7 KB
Newer Older
Guido van Rossum's avatar
Guido van Rossum committed
1 2

/* Write Python objects to files and read them back.
3 4 5 6 7
   This is primarily intended for writing and reading compiled Python code,
   even though dicts, lists, sets and frozensets, not commonly seen in
   code objects, are supported.
   Version 3 of this protocol properly supports circular links
   and sharing. */
Guido van Rossum's avatar
Guido van Rossum committed
8

Thomas Wouters's avatar
Thomas Wouters committed
9 10
#define PY_SSIZE_T_CLEAN

11
#include "Python.h"
Guido van Rossum's avatar
Guido van Rossum committed
12
#include "longintrepr.h"
Jeremy Hylton's avatar
Jeremy Hylton committed
13
#include "code.h"
Guido van Rossum's avatar
Guido van Rossum committed
14 15
#include "marshal.h"

16 17 18
/* High water mark to determine when the marshalled object is dangerously deep
 * and risks coring the interpreter.  When the object stack gets this deep,
 * raise an exception instead of continuing.
19
 * On Windows debug builds, reduce this value.
20
 */
21 22 23
#if defined(MS_WINDOWS) && defined(_DEBUG)
#define MAX_MARSHAL_STACK_DEPTH 1500
#else
24
#define MAX_MARSHAL_STACK_DEPTH 2000
25
#endif
26

27 28 29 30 31 32 33 34 35 36 37 38 39
#define TYPE_NULL               '0'
#define TYPE_NONE               'N'
#define TYPE_FALSE              'F'
#define TYPE_TRUE               'T'
#define TYPE_STOPITER           'S'
#define TYPE_ELLIPSIS           '.'
#define TYPE_INT                'i'
#define TYPE_FLOAT              'f'
#define TYPE_BINARY_FLOAT       'g'
#define TYPE_COMPLEX            'x'
#define TYPE_BINARY_COMPLEX     'y'
#define TYPE_LONG               'l'
#define TYPE_STRING             's'
40 41
#define TYPE_INTERNED           't'
#define TYPE_REF                'r'
42 43 44 45 46 47 48 49
#define TYPE_TUPLE              '('
#define TYPE_LIST               '['
#define TYPE_DICT               '{'
#define TYPE_CODE               'c'
#define TYPE_UNICODE            'u'
#define TYPE_UNKNOWN            '?'
#define TYPE_SET                '<'
#define TYPE_FROZENSET          '>'
50
#define FLAG_REF                '\x80' /* with a type, add obj to index */
Guido van Rossum's avatar
Guido van Rossum committed
51

52 53 54 55 56 57
#define TYPE_ASCII              'a'
#define TYPE_ASCII_INTERNED     'A'
#define TYPE_SMALL_TUPLE        ')'
#define TYPE_SHORT_ASCII        'z'
#define TYPE_SHORT_ASCII_INTERNED 'Z'

58 59 60 61 62
#define WFERR_OK 0
#define WFERR_UNMARSHALLABLE 1
#define WFERR_NESTEDTOODEEP 2
#define WFERR_NOMEMORY 3

63
typedef struct {
64 65 66 67
    FILE *fp;
    int error;  /* see WFERR_* values */
    int depth;
    /* If fp == NULL, the following are valid: */
68
    PyObject *readable;    /* Stream-like object being read from */
69
    PyObject *str;
70
    PyObject *current_filename;
71 72
    char *ptr;
    char *end;
73 74
    char *buf;
    Py_ssize_t buf_size;
75
    PyObject *refs; /* dict on marshal, list on unmarshal */
76
    int version;
77
} WFILE;
Guido van Rossum's avatar
Guido van Rossum committed
78

79
#define w_byte(c, p) if (((p)->fp)) putc((c), (p)->fp); \
80
                      else if ((p)->ptr != (p)->end) *(p)->ptr++ = (c); \
81
                           else w_more((c), p)
82 83

static void
84
w_more(char c, WFILE *p)
85
{
86 87 88 89 90 91 92 93 94 95 96 97 98 99 100
    Py_ssize_t size, newsize;
    if (p->str == NULL)
        return; /* An error already occurred */
    size = PyBytes_Size(p->str);
    newsize = size + size + 1024;
    if (newsize > 32*1024*1024) {
        newsize = size + (size >> 3);           /* 12.5% overallocation */
    }
    if (_PyBytes_Resize(&p->str, newsize) != 0) {
        p->ptr = p->end = NULL;
    }
    else {
        p->ptr = PyBytes_AS_STRING((PyBytesObject *)p->str) + size;
        p->end =
            PyBytes_AS_STRING((PyBytesObject *)p->str) + newsize;
101
        *p->ptr++ = c;
102
    }
103 104 105
}

static void
106
w_string(const char *s, Py_ssize_t n, WFILE *p)
107
{
108 109 110 111 112 113 114 115 116
    if (p->fp != NULL) {
        fwrite(s, 1, n, p->fp);
    }
    else {
        while (--n >= 0) {
            w_byte(*s, p);
            s++;
        }
    }
117 118 119
}

static void
120
w_short(int x, WFILE *p)
Guido van Rossum's avatar
Guido van Rossum committed
121
{
122 123
    w_byte((char)( x      & 0xff), p);
    w_byte((char)((x>> 8) & 0xff), p);
Guido van Rossum's avatar
Guido van Rossum committed
124 125
}

126
static void
127
w_long(long x, WFILE *p)
Guido van Rossum's avatar
Guido van Rossum committed
128
{
129 130 131 132
    w_byte((char)( x      & 0xff), p);
    w_byte((char)((x>> 8) & 0xff), p);
    w_byte((char)((x>>16) & 0xff), p);
    w_byte((char)((x>>24) & 0xff), p);
Guido van Rossum's avatar
Guido van Rossum committed
133 134
}

135 136 137 138 139 140 141 142 143 144 145 146 147 148 149
#define SIZE32_MAX  0x7FFFFFFF

#if SIZEOF_SIZE_T > 4
# define W_SIZE(n, p)  do {                     \
        if ((n) > SIZE32_MAX) {                 \
            (p)->depth--;                       \
            (p)->error = WFERR_UNMARSHALLABLE;  \
            return;                             \
        }                                       \
        w_long((long)(n), p);                   \
    } while(0)
#else
# define W_SIZE  w_long
#endif

150 151 152 153 154 155 156
static void
w_pstring(const char *s, Py_ssize_t n, WFILE *p)
{
        W_SIZE(n, p);
        w_string(s, n, p);
}

157 158 159
static void
w_short_pstring(const char *s, Py_ssize_t n, WFILE *p)
{
160
    w_byte(Py_SAFE_DOWNCAST(n, Py_ssize_t, unsigned char), p);
161 162 163
    w_string(s, n, p);
}

164
/* We assume that Python ints are stored internally in base some power of
165 166 167 168 169 170 171 172 173 174 175
   2**15; for the sake of portability we'll always read and write them in base
   exactly 2**15. */

#define PyLong_MARSHAL_SHIFT 15
#define PyLong_MARSHAL_BASE ((short)1 << PyLong_MARSHAL_SHIFT)
#define PyLong_MARSHAL_MASK (PyLong_MARSHAL_BASE - 1)
#if PyLong_SHIFT % PyLong_MARSHAL_SHIFT != 0
#error "PyLong_SHIFT must be a multiple of PyLong_MARSHAL_SHIFT"
#endif
#define PyLong_MARSHAL_RATIO (PyLong_SHIFT / PyLong_MARSHAL_SHIFT)

176 177 178 179
#define W_TYPE(t, p) do { \
    w_byte((t) | flag, (p)); \
} while(0)

180
static void
181
w_PyLong(const PyLongObject *ob, char flag, WFILE *p)
182
{
183 184 185
    Py_ssize_t i, j, n, l;
    digit d;

186
    W_TYPE(TYPE_LONG, p);
187 188 189 190 191 192
    if (Py_SIZE(ob) == 0) {
        w_long((long)0, p);
        return;
    }

    /* set l to number of base PyLong_MARSHAL_BASE digits */
193
    n = Py_ABS(Py_SIZE(ob));
194 195 196 197 198 199 200
    l = (n-1) * PyLong_MARSHAL_RATIO;
    d = ob->ob_digit[n-1];
    assert(d != 0); /* a PyLong is always normalized */
    do {
        d >>= PyLong_MARSHAL_SHIFT;
        l++;
    } while (d != 0);
201 202 203 204 205
    if (l > SIZE32_MAX) {
        p->depth--;
        p->error = WFERR_UNMARSHALLABLE;
        return;
    }
206 207 208 209 210 211 212 213 214 215 216 217 218 219 220
    w_long((long)(Py_SIZE(ob) > 0 ? l : -l), p);

    for (i=0; i < n-1; i++) {
        d = ob->ob_digit[i];
        for (j=0; j < PyLong_MARSHAL_RATIO; j++) {
            w_short(d & PyLong_MARSHAL_MASK, p);
            d >>= PyLong_MARSHAL_SHIFT;
        }
        assert (d == 0);
    }
    d = ob->ob_digit[n-1];
    do {
        w_short(d & PyLong_MARSHAL_MASK, p);
        d >>= PyLong_MARSHAL_SHIFT;
    } while (d != 0);
221 222
}

223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276
static int
w_ref(PyObject *v, char *flag, WFILE *p)
{
    PyObject *id;
    PyObject *idx;

    if (p->version < 3 || p->refs == NULL)
        return 0; /* not writing object references */

    /* if it has only one reference, it definitely isn't shared */
    if (Py_REFCNT(v) == 1)
        return 0;

    id = PyLong_FromVoidPtr((void*)v);
    if (id == NULL)
        goto err;
    idx = PyDict_GetItem(p->refs, id);
    if (idx != NULL) {
        /* write the reference index to the stream */
        long w = PyLong_AsLong(idx);
        Py_DECREF(id);
        if (w == -1 && PyErr_Occurred()) {
            goto err;
        }
        /* we don't store "long" indices in the dict */
        assert(0 <= w && w <= 0x7fffffff);
        w_byte(TYPE_REF, p);
        w_long(w, p);
        return 1;
    } else {
        int ok;
        Py_ssize_t s = PyDict_Size(p->refs);
        /* we don't support long indices */
        if (s >= 0x7fffffff) {
            PyErr_SetString(PyExc_ValueError, "too many objects");
            goto err;
        }
        idx = PyLong_FromSsize_t(s);
        ok = idx && PyDict_SetItem(p->refs, id, idx) == 0;
        Py_DECREF(id);
        Py_XDECREF(idx);
        if (!ok)
            goto err;
        *flag |= FLAG_REF;
        return 0;
    }
err:
    p->error = WFERR_UNMARSHALLABLE;
    return 1;
}

static void
w_complex_object(PyObject *v, char flag, WFILE *p);

277
static void
278
w_object(PyObject *v, WFILE *p)
Guido van Rossum's avatar
Guido van Rossum committed
279
{
280
    char flag = '\0';
281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304

    p->depth++;

    if (p->depth > MAX_MARSHAL_STACK_DEPTH) {
        p->error = WFERR_NESTEDTOODEEP;
    }
    else if (v == NULL) {
        w_byte(TYPE_NULL, p);
    }
    else if (v == Py_None) {
        w_byte(TYPE_NONE, p);
    }
    else if (v == PyExc_StopIteration) {
        w_byte(TYPE_STOPITER, p);
    }
    else if (v == Py_Ellipsis) {
        w_byte(TYPE_ELLIPSIS, p);
    }
    else if (v == Py_False) {
        w_byte(TYPE_FALSE, p);
    }
    else if (v == Py_True) {
        w_byte(TYPE_TRUE, p);
    }
305 306 307 308 309 310 311 312 313 314 315 316
    else if (!w_ref(v, &flag, p))
        w_complex_object(v, flag, p);

    p->depth--;
}

static void
w_complex_object(PyObject *v, char flag, WFILE *p)
{
    Py_ssize_t i, n;

    if (PyLong_CheckExact(v)) {
317 318 319 320
        long x = PyLong_AsLong(v);
        if ((x == -1)  && PyErr_Occurred()) {
            PyLongObject *ob = (PyLongObject *)v;
            PyErr_Clear();
321
            w_PyLong(ob, flag, p);
322 323
        }
        else {
324
#if SIZEOF_LONG > 4
325 326
            long y = Py_ARITHMETIC_RIGHT_SHIFT(long, x, 31);
            if (y && y != -1) {
327
                /* Too large for TYPE_INT */
328
                w_PyLong((PyLongObject*)v, flag, p);
329 330
            }
            else
331
#endif
332
            {
333
                W_TYPE(TYPE_INT, p);
334 335 336 337 338 339 340 341 342 343 344 345
                w_long(x, p);
            }
        }
    }
    else if (PyFloat_CheckExact(v)) {
        if (p->version > 1) {
            unsigned char buf[8];
            if (_PyFloat_Pack8(PyFloat_AsDouble(v),
                               buf, 1) < 0) {
                p->error = WFERR_UNMARSHALLABLE;
                return;
            }
346
            W_TYPE(TYPE_BINARY_FLOAT, p);
347 348 349 350 351 352 353 354 355 356
            w_string((char*)buf, 8, p);
        }
        else {
            char *buf = PyOS_double_to_string(PyFloat_AS_DOUBLE(v),
                                              'g', 17, 0, NULL);
            if (!buf) {
                p->error = WFERR_NOMEMORY;
                return;
            }
            n = strlen(buf);
357
            W_TYPE(TYPE_FLOAT, p);
358
            w_byte((int)n, p);
359
            w_string(buf, n, p);
360 361 362 363 364 365 366 367 368 369 370
            PyMem_Free(buf);
        }
    }
    else if (PyComplex_CheckExact(v)) {
        if (p->version > 1) {
            unsigned char buf[8];
            if (_PyFloat_Pack8(PyComplex_RealAsDouble(v),
                               buf, 1) < 0) {
                p->error = WFERR_UNMARSHALLABLE;
                return;
            }
371
            W_TYPE(TYPE_BINARY_COMPLEX, p);
372 373 374 375 376 377 378 379 380 381
            w_string((char*)buf, 8, p);
            if (_PyFloat_Pack8(PyComplex_ImagAsDouble(v),
                               buf, 1) < 0) {
                p->error = WFERR_UNMARSHALLABLE;
                return;
            }
            w_string((char*)buf, 8, p);
        }
        else {
            char *buf;
382
            W_TYPE(TYPE_COMPLEX, p);
383 384 385 386 387 388 389 390
            buf = PyOS_double_to_string(PyComplex_RealAsDouble(v),
                                        'g', 17, 0, NULL);
            if (!buf) {
                p->error = WFERR_NOMEMORY;
                return;
            }
            n = strlen(buf);
            w_byte((int)n, p);
391
            w_string(buf, n, p);
392 393 394 395 396 397 398 399 400
            PyMem_Free(buf);
            buf = PyOS_double_to_string(PyComplex_ImagAsDouble(v),
                                        'g', 17, 0, NULL);
            if (!buf) {
                p->error = WFERR_NOMEMORY;
                return;
            }
            n = strlen(buf);
            w_byte((int)n, p);
401
            w_string(buf, n, p);
402 403 404 405
            PyMem_Free(buf);
        }
    }
    else if (PyBytes_CheckExact(v)) {
406
        W_TYPE(TYPE_STRING, p);
407
        w_pstring(PyBytes_AS_STRING(v), PyBytes_GET_SIZE(v), p);
408 409
    }
    else if (PyUnicode_CheckExact(v)) {
410 411 412 413 414 415 416 417 418 419 420 421 422 423 424 425 426 427 428 429 430 431 432 433 434 435 436 437 438 439 440 441 442
        if (p->version >= 4 && PyUnicode_IS_ASCII(v)) {
            int is_short = PyUnicode_GET_LENGTH(v) < 256;
            if (is_short) {
                if (PyUnicode_CHECK_INTERNED(v))
                    W_TYPE(TYPE_SHORT_ASCII_INTERNED, p);
                else
                    W_TYPE(TYPE_SHORT_ASCII, p);
                w_short_pstring((char *) PyUnicode_1BYTE_DATA(v),
                                PyUnicode_GET_LENGTH(v), p);
            }
            else {
                if (PyUnicode_CHECK_INTERNED(v))
                    W_TYPE(TYPE_ASCII_INTERNED, p);
                else
                    W_TYPE(TYPE_ASCII, p);
                w_pstring((char *) PyUnicode_1BYTE_DATA(v),
                          PyUnicode_GET_LENGTH(v), p);
            }
        }
        else {
            PyObject *utf8;
            utf8 = PyUnicode_AsEncodedString(v, "utf8", "surrogatepass");
            if (utf8 == NULL) {
                p->depth--;
                p->error = WFERR_UNMARSHALLABLE;
                return;
            }
            if (p->version >= 3 &&  PyUnicode_CHECK_INTERNED(v))
                W_TYPE(TYPE_INTERNED, p);
            else
                W_TYPE(TYPE_UNICODE, p);
            w_pstring(PyBytes_AS_STRING(utf8), PyBytes_GET_SIZE(utf8), p);
            Py_DECREF(utf8);
443 444 445 446
        }
    }
    else if (PyTuple_CheckExact(v)) {
        n = PyTuple_Size(v);
447 448
        if (p->version >= 4 && n < 256) {
            W_TYPE(TYPE_SMALL_TUPLE, p);
449
            w_byte((unsigned char)n, p);
450 451 452 453 454
        }
        else {
            W_TYPE(TYPE_TUPLE, p);
            W_SIZE(n, p);
        }
455 456 457 458 459
        for (i = 0; i < n; i++) {
            w_object(PyTuple_GET_ITEM(v, i), p);
        }
    }
    else if (PyList_CheckExact(v)) {
460
        W_TYPE(TYPE_LIST, p);
461
        n = PyList_GET_SIZE(v);
462
        W_SIZE(n, p);
463 464 465 466 467 468 469
        for (i = 0; i < n; i++) {
            w_object(PyList_GET_ITEM(v, i), p);
        }
    }
    else if (PyDict_CheckExact(v)) {
        Py_ssize_t pos;
        PyObject *key, *value;
470
        W_TYPE(TYPE_DICT, p);
471 472 473 474 475 476 477 478 479 480 481 482
        /* This one is NULL object terminated! */
        pos = 0;
        while (PyDict_Next(v, &pos, &key, &value)) {
            w_object(key, p);
            w_object(value, p);
        }
        w_object((PyObject *)NULL, p);
    }
    else if (PyAnySet_CheckExact(v)) {
        PyObject *value, *it;

        if (PyObject_TypeCheck(v, &PySet_Type))
483
            W_TYPE(TYPE_SET, p);
484
        else
485
            W_TYPE(TYPE_FROZENSET, p);
486 487 488 489 490 491
        n = PyObject_Size(v);
        if (n == -1) {
            p->depth--;
            p->error = WFERR_UNMARSHALLABLE;
            return;
        }
492
        W_SIZE(n, p);
493 494 495 496 497 498 499 500 501 502 503 504 505 506 507 508 509 510 511
        it = PyObject_GetIter(v);
        if (it == NULL) {
            p->depth--;
            p->error = WFERR_UNMARSHALLABLE;
            return;
        }
        while ((value = PyIter_Next(it)) != NULL) {
            w_object(value, p);
            Py_DECREF(value);
        }
        Py_DECREF(it);
        if (PyErr_Occurred()) {
            p->depth--;
            p->error = WFERR_UNMARSHALLABLE;
            return;
        }
    }
    else if (PyCode_Check(v)) {
        PyCodeObject *co = (PyCodeObject *)v;
512
        W_TYPE(TYPE_CODE, p);
513 514 515 516 517 518 519 520 521 522 523 524 525 526 527 528 529 530 531
        w_long(co->co_argcount, p);
        w_long(co->co_kwonlyargcount, p);
        w_long(co->co_nlocals, p);
        w_long(co->co_stacksize, p);
        w_long(co->co_flags, p);
        w_object(co->co_code, p);
        w_object(co->co_consts, p);
        w_object(co->co_names, p);
        w_object(co->co_varnames, p);
        w_object(co->co_freevars, p);
        w_object(co->co_cellvars, p);
        w_object(co->co_filename, p);
        w_object(co->co_name, p);
        w_long(co->co_firstlineno, p);
        w_object(co->co_lnotab, p);
    }
    else if (PyObject_CheckBuffer(v)) {
        /* Write unknown buffer-style objects as a string */
        Py_buffer view;
532
        if (PyObject_GetBuffer(v, &view, PyBUF_SIMPLE) != 0) {
533
            w_byte(TYPE_UNKNOWN, p);
534
            p->depth--;
535
            p->error = WFERR_UNMARSHALLABLE;
536
            return;
537
        }
538
        W_TYPE(TYPE_STRING, p);
539
        w_pstring(view.buf, view.len, p);
540
        PyBuffer_Release(&view);
541 542
    }
    else {
543
        W_TYPE(TYPE_UNKNOWN, p);
544 545
        p->error = WFERR_UNMARSHALLABLE;
    }
Guido van Rossum's avatar
Guido van Rossum committed
546 547
}

548
/* version currently has no effect for writing ints. */
549
void
550
PyMarshal_WriteLongToFile(long x, FILE *fp, int version)
551
{
552 553 554 555
    WFILE wf;
    wf.fp = fp;
    wf.error = WFERR_OK;
    wf.depth = 0;
556
    wf.refs = NULL;
557 558
    wf.version = version;
    w_long(x, &wf);
559
}
Guido van Rossum's avatar
Guido van Rossum committed
560

561
void
562
PyMarshal_WriteObjectToFile(PyObject *x, FILE *fp, int version)
563
{
564 565 566 567
    WFILE wf;
    wf.fp = fp;
    wf.error = WFERR_OK;
    wf.depth = 0;
568 569 570 571 572
    if (version >= 3) {
        if ((wf.refs = PyDict_New()) == NULL)
            return; /* caller mush check PyErr_Occurred() */
    } else
        wf.refs = NULL;
573 574
    wf.version = version;
    w_object(x, &wf);
575
    Py_XDECREF(wf.refs);
576 577 578 579
}

typedef WFILE RFILE; /* Same struct with different invariants */

580 581
static char *
r_string(Py_ssize_t n, RFILE *p)
582
{
583 584 585 586 587 588 589 590 591 592
    Py_ssize_t read = -1;

    if (p->ptr != NULL) {
        /* Fast path for loads() */
        char *res = p->ptr;
        Py_ssize_t left = p->end - p->ptr;
        if (left < n) {
            PyErr_SetString(PyExc_EOFError,
                            "marshal data too short");
            return NULL;
593
        }
594 595 596 597 598 599 600 601 602 603 604 605 606 607 608 609 610 611 612
        p->ptr += n;
        return res;
    }
    if (p->buf == NULL) {
        p->buf = PyMem_MALLOC(n);
        if (p->buf == NULL) {
            PyErr_NoMemory();
            return NULL;
        }
        p->buf_size = n;
    }
    else if (p->buf_size < n) {
        p->buf = PyMem_REALLOC(p->buf, n);
        if (p->buf == NULL) {
            PyErr_NoMemory();
            return NULL;
        }
        p->buf_size = n;
    }
613

614 615 616
    if (!p->readable) {
        assert(p->fp != NULL);
        read = fread(p->buf, 1, n, p->fp);
617 618
    }
    else {
619 620 621 622 623 624 625 626 627 628 629 630 631 632
        _Py_IDENTIFIER(readinto);
        PyObject *res, *mview;
        Py_buffer buf;

        if (PyBuffer_FillInfo(&buf, NULL, p->buf, n, 0, PyBUF_CONTIG) == -1)
            return NULL;
        mview = PyMemoryView_FromBuffer(&buf);
        if (mview == NULL)
            return NULL;

        res = _PyObject_CallMethodId(p->readable, &PyId_readinto, "N", mview);
        if (res != NULL) {
            read = PyNumber_AsSsize_t(res, PyExc_ValueError);
            Py_DECREF(res);
633 634
        }
    }
635 636 637 638 639 640 641 642 643 644 645 646
    if (read != n) {
        if (!PyErr_Occurred()) {
            if (read > n)
                PyErr_Format(PyExc_ValueError,
                             "read() returned too much data: "
                             "%zd bytes requested, %zd returned",
                             n, read);
            else
                PyErr_SetString(PyExc_EOFError,
                                "EOF read where not expected");
        }
        return NULL;
647
    }
648
    return p->buf;
649 650 651 652 653 654 655
}

static int
r_byte(RFILE *p)
{
    int c = EOF;

656 657 658 659 660 661 662 663 664
    if (p->ptr != NULL) {
        if (p->ptr < p->end)
            c = (unsigned char) *p->ptr++;
        return c;
    }
    if (!p->readable) {
        assert(p->fp);
        c = getc(p->fp);
    }
665
    else {
666 667 668
        char *ptr = r_string(1, p);
        if (ptr != NULL)
            c = *(unsigned char *) ptr;
669 670
    }
    return c;
671 672 673
}

static int
674
r_short(RFILE *p)
Guido van Rossum's avatar
Guido van Rossum committed
675
{
676 677 678 679 680 681 682 683 684 685
    short x = -1;
    unsigned char *buffer;

    buffer = (unsigned char *) r_string(2, p);
    if (buffer != NULL) {
        x = buffer[0];
        x |= buffer[1] << 8;
        /* Sign-extension, in case short greater than 16 bits */
        x |= -(x & 0x8000);
    }
686
    return x;
Guido van Rossum's avatar
Guido van Rossum committed
687 688
}

689
static long
690
r_long(RFILE *p)
Guido van Rossum's avatar
Guido van Rossum committed
691
{
692 693 694 695 696 697 698 699 700
    long x = -1;
    unsigned char *buffer;

    buffer = (unsigned char *) r_string(4, p);
    if (buffer != NULL) {
        x = buffer[0];
        x |= (long)buffer[1] << 8;
        x |= (long)buffer[2] << 16;
        x |= (long)buffer[3] << 24;
701
#if SIZEOF_LONG > 4
702 703
        /* Sign extension for 64-bit machines */
        x |= -(x & 0x80000000L);
704
#endif
705
    }
706
    return x;
707 708
}

709 710 711
static PyObject *
r_PyLong(RFILE *p)
{
712
    PyLongObject *ob;
713 714
    long n, size, i;
    int j, md, shorts_in_top_digit;
715 716 717
    digit d;

    n = r_long(p);
718 719
    if (PyErr_Occurred())
        return NULL;
720 721
    if (n == 0)
        return (PyObject *)_PyLong_New(0);
722
    if (n < -SIZE32_MAX || n > SIZE32_MAX) {
723 724 725 726 727
        PyErr_SetString(PyExc_ValueError,
                       "bad marshal data (long size out of range)");
        return NULL;
    }

728 729
    size = 1 + (Py_ABS(n) - 1) / PyLong_MARSHAL_RATIO;
    shorts_in_top_digit = 1 + (Py_ABS(n) - 1) % PyLong_MARSHAL_RATIO;
730 731 732
    ob = _PyLong_New(size);
    if (ob == NULL)
        return NULL;
733

734 735 736 737 738 739
    Py_SIZE(ob) = n > 0 ? size : -size;

    for (i = 0; i < size-1; i++) {
        d = 0;
        for (j=0; j < PyLong_MARSHAL_RATIO; j++) {
            md = r_short(p);
740 741 742 743
            if (PyErr_Occurred()) {
                Py_DECREF(ob);
                return NULL;
            }
744 745 746 747 748 749
            if (md < 0 || md > PyLong_MARSHAL_BASE)
                goto bad_digit;
            d += (digit)md << j*PyLong_MARSHAL_SHIFT;
        }
        ob->ob_digit[i] = d;
    }
750

751 752 753
    d = 0;
    for (j=0; j < shorts_in_top_digit; j++) {
        md = r_short(p);
754 755 756 757
        if (PyErr_Occurred()) {
            Py_DECREF(ob);
            return NULL;
        }
758 759 760 761 762 763 764 765 766 767 768
        if (md < 0 || md > PyLong_MARSHAL_BASE)
            goto bad_digit;
        /* topmost marshal digit should be nonzero */
        if (md == 0 && j == shorts_in_top_digit - 1) {
            Py_DECREF(ob);
            PyErr_SetString(PyExc_ValueError,
                "bad marshal data (unnormalized long data)");
            return NULL;
        }
        d += (digit)md << j*PyLong_MARSHAL_SHIFT;
    }
769 770 771 772
    if (PyErr_Occurred()) {
        Py_DECREF(ob);
        return NULL;
    }
773 774 775 776
    /* top digit should be nonzero, else the resulting PyLong won't be
       normalized */
    ob->ob_digit[size-1] = d;
    return (PyObject *)ob;
777
  bad_digit:
778 779 780 781
    Py_DECREF(ob);
    PyErr_SetString(PyExc_ValueError,
                    "bad marshal data (digit out of range in long)");
    return NULL;
782 783
}

784 785 786
/* allocate the reflist index for a new object. Return -1 on failure */
static Py_ssize_t
r_ref_reserve(int flag, RFILE *p)
787 788
{
    if (flag) { /* currently only FLAG_REF is defined */
789
        Py_ssize_t idx = PyList_GET_SIZE(p->refs);
790
        if (idx >= 0x7ffffffe) {
791
            PyErr_SetString(PyExc_ValueError, "bad marshal data (index list too large)");
792
            return -1;
793 794
        }
        if (PyList_Append(p->refs, Py_None) < 0)
795 796
            return -1;
        return idx;
797
    } else
798
        return 0;
799 800
}

801 802 803 804 805 806 807 808
/* insert the new object 'o' to the reflist at previously
 * allocated index 'idx'.
 * 'o' can be NULL, in which case nothing is done.
 * if 'o' was non-NULL, and the function succeeds, 'o' is returned.
 * if 'o' was non-NULL, and the function fails, 'o' is released and
 * NULL returned. This simplifies error checking at the call site since
 * a single test for NULL for the function result is enough.
 */
809 810 811
static PyObject *
r_ref_insert(PyObject *o, Py_ssize_t idx, int flag, RFILE *p)
{
812
    if (o != NULL && flag) { /* currently only FLAG_REF is defined */
813 814 815 816
        PyObject *tmp = PyList_GET_ITEM(p->refs, idx);
        Py_INCREF(o);
        PyList_SET_ITEM(p->refs, idx, o);
        Py_DECREF(tmp);
817 818 819 820 821 822 823 824 825 826 827
    }
    return o;
}

/* combination of both above, used when an object can be
 * created whenever it is seen in the file, as opposed to
 * after having loaded its sub-objects.
 */
static PyObject *
r_ref(PyObject *o, int flag, RFILE *p)
{
828 829 830 831 832 833
    assert(flag & FLAG_REF);
    if (o == NULL)
        return NULL;
    if (PyList_Append(p->refs, o) < 0) {
        Py_DECREF(o); /* release the new object */
        return NULL;
834 835 836
    }
    return o;
}
837

838
static PyObject *
839
r_object(RFILE *p)
Guido van Rossum's avatar
Guido van Rossum committed
840
{
841 842 843
    /* NULL is a valid return value, it does not necessarily means that
       an exception is set. */
    PyObject *v, *v2;
Benjamin Peterson's avatar
Benjamin Peterson committed
844
    Py_ssize_t idx = 0;
845
    long i, n;
846
    int type, code = r_byte(p);
847
    int flag, is_interned = 0;
848
    PyObject *retval = NULL;
849

850 851 852 853 854 855
    if (code == EOF) {
        PyErr_SetString(PyExc_EOFError,
                        "EOF read where object expected");
        return NULL;
    }

856 857 858 859 860 861 862 863
    p->depth++;

    if (p->depth > MAX_MARSHAL_STACK_DEPTH) {
        p->depth--;
        PyErr_SetString(PyExc_ValueError, "recursion limit exceeded");
        return NULL;
    }

864 865
    flag = code & FLAG_REF;
    type = code & ~FLAG_REF;
866 867

#define R_REF(O) do{\
868 869
    if (flag) \
        O = r_ref(O, flag, p);\
870 871
} while (0)

872 873 874 875 876 877 878 879 880 881 882 883 884 885 886 887 888 889 890 891 892 893 894 895 896 897 898 899 900 901 902
    switch (type) {

    case TYPE_NULL:
        break;

    case TYPE_NONE:
        Py_INCREF(Py_None);
        retval = Py_None;
        break;

    case TYPE_STOPITER:
        Py_INCREF(PyExc_StopIteration);
        retval = PyExc_StopIteration;
        break;

    case TYPE_ELLIPSIS:
        Py_INCREF(Py_Ellipsis);
        retval = Py_Ellipsis;
        break;

    case TYPE_FALSE:
        Py_INCREF(Py_False);
        retval = Py_False;
        break;

    case TYPE_TRUE:
        Py_INCREF(Py_True);
        retval = Py_True;
        break;

    case TYPE_INT:
903 904
        n = r_long(p);
        retval = PyErr_Occurred() ? NULL : PyLong_FromLong(n);
905
        R_REF(retval);
906 907 908 909
        break;

    case TYPE_LONG:
        retval = r_PyLong(p);
910
        R_REF(retval);
911 912 913 914
        break;

    case TYPE_FLOAT:
        {
915
            char buf[256], *ptr;
916 917
            double dx;
            n = r_byte(p);
918
            if (n == EOF) {
919 920 921 922
                PyErr_SetString(PyExc_EOFError,
                    "EOF read where object expected");
                break;
            }
923 924
            ptr = r_string(n, p);
            if (ptr == NULL)
925
                break;
926
            memcpy(buf, ptr, n);
927 928 929 930 931
            buf[n] = '\0';
            dx = PyOS_string_to_double(buf, NULL, NULL);
            if (dx == -1.0 && PyErr_Occurred())
                break;
            retval = PyFloat_FromDouble(dx);
932
            R_REF(retval);
933 934 935 936 937
            break;
        }

    case TYPE_BINARY_FLOAT:
        {
938
            unsigned char *buf;
939
            double x;
940
            buf = (unsigned char *) r_string(8, p);
941
            if (buf == NULL)
942 943
                break;
            x = _PyFloat_Unpack8(buf, 1);
944
            if (x == -1.0 && PyErr_Occurred())
945 946
                break;
            retval = PyFloat_FromDouble(x);
947
            R_REF(retval);
948 949 950 951 952
            break;
        }

    case TYPE_COMPLEX:
        {
953
            char buf[256], *ptr;
954 955
            Py_complex c;
            n = r_byte(p);
956
            if (n == EOF) {
957 958 959 960
                PyErr_SetString(PyExc_EOFError,
                    "EOF read where object expected");
                break;
            }
961 962
            ptr = r_string(n, p);
            if (ptr == NULL)
963
                break;
964
            memcpy(buf, ptr, n);
965 966 967 968 969
            buf[n] = '\0';
            c.real = PyOS_string_to_double(buf, NULL, NULL);
            if (c.real == -1.0 && PyErr_Occurred())
                break;
            n = r_byte(p);
970
            if (n == EOF) {
971 972 973 974
                PyErr_SetString(PyExc_EOFError,
                    "EOF read where object expected");
                break;
            }
975 976
            ptr = r_string(n, p);
            if (ptr == NULL)
977
                break;
978
            memcpy(buf, ptr, n);
979 980 981 982 983
            buf[n] = '\0';
            c.imag = PyOS_string_to_double(buf, NULL, NULL);
            if (c.imag == -1.0 && PyErr_Occurred())
                break;
            retval = PyComplex_FromCComplex(c);
984
            R_REF(retval);
985 986 987 988 989
            break;
        }

    case TYPE_BINARY_COMPLEX:
        {
990
            unsigned char *buf;
991
            Py_complex c;
992
            buf = (unsigned char *) r_string(8, p);
993
            if (buf == NULL)
994 995
                break;
            c.real = _PyFloat_Unpack8(buf, 1);
996
            if (c.real == -1.0 && PyErr_Occurred())
997
                break;
998
            buf = (unsigned char *) r_string(8, p);
999
            if (buf == NULL)
1000 1001
                break;
            c.imag = _PyFloat_Unpack8(buf, 1);
1002
            if (c.imag == -1.0 && PyErr_Occurred())
1003 1004
                break;
            retval = PyComplex_FromCComplex(c);
1005
            R_REF(retval);
1006 1007 1008 1009
            break;
        }

    case TYPE_STRING:
1010 1011 1012
        {
            char *ptr;
            n = r_long(p);
1013
            if (PyErr_Occurred())
1014 1015 1016 1017 1018 1019
                break;
            if (n < 0 || n > SIZE32_MAX) {
                PyErr_SetString(PyExc_ValueError, "bad marshal data (string size out of range)");
                break;
            }
            v = PyBytes_FromStringAndSize((char *)NULL, n);
1020
            if (v == NULL)
1021 1022 1023 1024 1025 1026 1027 1028 1029 1030 1031 1032 1033 1034 1035
                break;
            ptr = r_string(n, p);
            if (ptr == NULL) {
                Py_DECREF(v);
                break;
            }
            memcpy(PyBytes_AS_STRING(v), ptr, n);
            retval = v;
            R_REF(retval);
            break;
        }

    case TYPE_ASCII_INTERNED:
        is_interned = 1;
    case TYPE_ASCII:
1036
        n = r_long(p);
1037
        if (PyErr_Occurred())
1038
            break;
1039
        if (n < 0 || n > SIZE32_MAX) {
1040
            PyErr_SetString(PyExc_ValueError, "bad marshal data (unicode size out of range)");
1041 1042
            break;
        }
1043 1044 1045 1046 1047 1048 1049 1050 1051
        goto _read_ascii;

    case TYPE_SHORT_ASCII_INTERNED:
        is_interned = 1;
    case TYPE_SHORT_ASCII:
        n = r_byte(p);
        if (n == EOF) {
            PyErr_SetString(PyExc_EOFError,
                "EOF read where object expected");
1052 1053
            break;
        }
1054 1055 1056 1057
    _read_ascii:
        {
            char *ptr;
            ptr = r_string(n, p);
1058
            if (ptr == NULL)
1059 1060
                break;
            v = PyUnicode_FromKindAndData(PyUnicode_1BYTE_KIND, ptr, n);
1061
            if (v == NULL)
1062 1063 1064 1065 1066
                break;
            if (is_interned)
                PyUnicode_InternInPlace(&v);
            retval = v;
            R_REF(retval);
1067 1068 1069
            break;
        }

1070
    case TYPE_INTERNED:
1071 1072
        is_interned = 1;
    case TYPE_UNICODE:
1073 1074 1075 1076
        {
        char *buffer;

        n = r_long(p);
1077
        if (PyErr_Occurred())
1078
            break;
1079
        if (n < 0 || n > SIZE32_MAX) {
1080 1081 1082
            PyErr_SetString(PyExc_ValueError, "bad marshal data (unicode size out of range)");
            break;
        }
1083
        if (n != 0) {
1084
            buffer = r_string(n, p);
1085
            if (buffer == NULL)
1086 1087
                break;
            v = PyUnicode_DecodeUTF8(buffer, n, "surrogatepass");
1088
        }
1089 1090 1091
        else {
            v = PyUnicode_New(0, 0);
        }
1092
        if (v == NULL)
1093
            break;
1094
        if (is_interned)
1095
            PyUnicode_InternInPlace(&v);
1096
        retval = v;
1097
        R_REF(retval);
1098 1099 1100
        break;
        }

1101 1102
    case TYPE_SMALL_TUPLE:
        n = (unsigned char) r_byte(p);
1103 1104
        if (PyErr_Occurred())
            break;
1105
        goto _read_tuple;
1106 1107
    case TYPE_TUPLE:
        n = r_long(p);
1108
        if (PyErr_Occurred())
1109
            break;
1110
        if (n < 0 || n > SIZE32_MAX) {
1111 1112 1113
            PyErr_SetString(PyExc_ValueError, "bad marshal data (tuple size out of range)");
            break;
        }
1114
    _read_tuple:
1115
        v = PyTuple_New(n);
1116
        R_REF(v);
1117
        if (v == NULL)
1118
            break;
1119

1120 1121 1122 1123 1124 1125 1126 1127 1128 1129
        for (i = 0; i < n; i++) {
            v2 = r_object(p);
            if ( v2 == NULL ) {
                if (!PyErr_Occurred())
                    PyErr_SetString(PyExc_TypeError,
                        "NULL object in marshal data for tuple");
                Py_DECREF(v);
                v = NULL;
                break;
            }
1130
            PyTuple_SET_ITEM(v, i, v2);
1131 1132 1133 1134 1135 1136
        }
        retval = v;
        break;

    case TYPE_LIST:
        n = r_long(p);
1137
        if (PyErr_Occurred())
1138
            break;
1139
        if (n < 0 || n > SIZE32_MAX) {
1140 1141 1142
            PyErr_SetString(PyExc_ValueError, "bad marshal data (list size out of range)");
            break;
        }
1143
        v = PyList_New(n);
1144
        R_REF(v);
1145
        if (v == NULL)
1146 1147 1148 1149 1150 1151 1152 1153 1154 1155 1156
            break;
        for (i = 0; i < n; i++) {
            v2 = r_object(p);
            if ( v2 == NULL ) {
                if (!PyErr_Occurred())
                    PyErr_SetString(PyExc_TypeError,
                        "NULL object in marshal data for list");
                Py_DECREF(v);
                v = NULL;
                break;
            }
1157
            PyList_SET_ITEM(v, i, v2);
1158 1159 1160 1161 1162 1163
        }
        retval = v;
        break;

    case TYPE_DICT:
        v = PyDict_New();
1164
        R_REF(v);
1165
        if (v == NULL)
1166 1167 1168 1169 1170 1171 1172
            break;
        for (;;) {
            PyObject *key, *val;
            key = r_object(p);
            if (key == NULL)
                break;
            val = r_object(p);
1173 1174 1175 1176 1177 1178 1179 1180 1181
            if (val == NULL) {
                Py_DECREF(key);
                break;
            }
            if (PyDict_SetItem(v, key, val) < 0) {
                Py_DECREF(key);
                Py_DECREF(val);
                break;
            }
1182
            Py_DECREF(key);
1183
            Py_DECREF(val);
1184 1185 1186 1187 1188 1189 1190 1191 1192 1193 1194
        }
        if (PyErr_Occurred()) {
            Py_DECREF(v);
            v = NULL;
        }
        retval = v;
        break;

    case TYPE_SET:
    case TYPE_FROZENSET:
        n = r_long(p);
1195
        if (PyErr_Occurred())
1196
            break;
1197
        if (n < 0 || n > SIZE32_MAX) {
1198 1199 1200 1201
            PyErr_SetString(PyExc_ValueError, "bad marshal data (set size out of range)");
            break;
        }
        v = (type == TYPE_SET) ? PySet_New(NULL) : PyFrozenSet_New(NULL);
1202
        if (type == TYPE_SET) {
1203
            R_REF(v);
1204 1205 1206 1207 1208 1209 1210 1211
        } else {
            /* must use delayed registration of frozensets because they must
             * be init with a refcount of 1
             */
            idx = r_ref_reserve(flag, p);
            if (idx < 0)
                Py_CLEAR(v); /* signal error */
        }
1212
        if (v == NULL)
1213
            break;
1214

1215 1216 1217 1218 1219 1220 1221 1222 1223 1224 1225 1226 1227 1228 1229 1230 1231 1232
        for (i = 0; i < n; i++) {
            v2 = r_object(p);
            if ( v2 == NULL ) {
                if (!PyErr_Occurred())
                    PyErr_SetString(PyExc_TypeError,
                        "NULL object in marshal data for set");
                Py_DECREF(v);
                v = NULL;
                break;
            }
            if (PySet_Add(v, v2) == -1) {
                Py_DECREF(v);
                Py_DECREF(v2);
                v = NULL;
                break;
            }
            Py_DECREF(v2);
        }
1233 1234
        if (type != TYPE_SET)
            v = r_ref_insert(v, idx, flag, p);
1235 1236 1237 1238 1239 1240 1241 1242 1243 1244 1245 1246 1247 1248 1249 1250 1251 1252 1253 1254
        retval = v;
        break;

    case TYPE_CODE:
        {
            int argcount;
            int kwonlyargcount;
            int nlocals;
            int stacksize;
            int flags;
            PyObject *code = NULL;
            PyObject *consts = NULL;
            PyObject *names = NULL;
            PyObject *varnames = NULL;
            PyObject *freevars = NULL;
            PyObject *cellvars = NULL;
            PyObject *filename = NULL;
            PyObject *name = NULL;
            int firstlineno;
            PyObject *lnotab = NULL;
1255

1256
            idx = r_ref_reserve(flag, p);
1257
            if (idx < 0)
1258
                break;
1259 1260 1261 1262 1263

            v = NULL;

            /* XXX ignore long->int overflows for now */
            argcount = (int)r_long(p);
1264 1265
            if (PyErr_Occurred())
                goto code_error;
1266
            kwonlyargcount = (int)r_long(p);
1267 1268
            if (PyErr_Occurred())
                goto code_error;
1269
            nlocals = (int)r_long(p);
1270 1271
            if (PyErr_Occurred())
                goto code_error;
1272
            stacksize = (int)r_long(p);
1273 1274
            if (PyErr_Occurred())
                goto code_error;
1275
            flags = (int)r_long(p);
1276 1277
            if (PyErr_Occurred())
                goto code_error;
1278 1279 1280 1281 1282 1283 1284 1285 1286 1287 1288 1289 1290 1291 1292 1293 1294 1295 1296 1297 1298
            code = r_object(p);
            if (code == NULL)
                goto code_error;
            consts = r_object(p);
            if (consts == NULL)
                goto code_error;
            names = r_object(p);
            if (names == NULL)
                goto code_error;
            varnames = r_object(p);
            if (varnames == NULL)
                goto code_error;
            freevars = r_object(p);
            if (freevars == NULL)
                goto code_error;
            cellvars = r_object(p);
            if (cellvars == NULL)
                goto code_error;
            filename = r_object(p);
            if (filename == NULL)
                goto code_error;
1299 1300 1301 1302 1303 1304 1305 1306 1307 1308 1309 1310
            if (PyUnicode_CheckExact(filename)) {
                if (p->current_filename != NULL) {
                    if (!PyUnicode_Compare(filename, p->current_filename)) {
                        Py_DECREF(filename);
                        Py_INCREF(p->current_filename);
                        filename = p->current_filename;
                    }
                }
                else {
                    p->current_filename = filename;
                }
            }
1311 1312 1313 1314
            name = r_object(p);
            if (name == NULL)
                goto code_error;
            firstlineno = (int)r_long(p);
1315 1316
            if (firstlineno == -1 && PyErr_Occurred())
                break;
1317 1318 1319 1320 1321 1322 1323 1324 1325 1326
            lnotab = r_object(p);
            if (lnotab == NULL)
                goto code_error;

            v = (PyObject *) PyCode_New(
                            argcount, kwonlyargcount,
                            nlocals, stacksize, flags,
                            code, consts, names, varnames,
                            freevars, cellvars, filename, name,
                            firstlineno, lnotab);
1327
            v = r_ref_insert(v, idx, flag, p);
1328 1329 1330 1331 1332 1333 1334 1335 1336 1337 1338 1339 1340 1341 1342

          code_error:
            Py_XDECREF(code);
            Py_XDECREF(consts);
            Py_XDECREF(names);
            Py_XDECREF(varnames);
            Py_XDECREF(freevars);
            Py_XDECREF(cellvars);
            Py_XDECREF(filename);
            Py_XDECREF(name);
            Py_XDECREF(lnotab);
        }
        retval = v;
        break;

1343 1344 1345
    case TYPE_REF:
        n = r_long(p);
        if (n < 0 || n >= PyList_GET_SIZE(p->refs)) {
1346 1347
            if (n == -1 && PyErr_Occurred())
                break;
1348 1349 1350 1351 1352 1353 1354 1355 1356 1357 1358 1359
            PyErr_SetString(PyExc_ValueError, "bad marshal data (invalid reference)");
            break;
        }
        v = PyList_GET_ITEM(p->refs, n);
        if (v == Py_None) {
            PyErr_SetString(PyExc_ValueError, "bad marshal data (invalid reference)");
            break;
        }
        Py_INCREF(v);
        retval = v;
        break;

1360 1361 1362 1363 1364 1365 1366 1367 1368
    default:
        /* Bogus data got written, which isn't ideal.
           This will let you keep working and recover. */
        PyErr_SetString(PyExc_ValueError, "bad marshal data (unknown type code)");
        break;

    }
    p->depth--;
    return retval;
Guido van Rossum's avatar
Guido van Rossum committed
1369 1370
}

1371
static PyObject *
1372 1373
read_object(RFILE *p)
{
1374 1375 1376 1377 1378 1379 1380 1381 1382
    PyObject *v;
    if (PyErr_Occurred()) {
        fprintf(stderr, "XXX readobject called with exception set\n");
        return NULL;
    }
    v = r_object(p);
    if (v == NULL && !PyErr_Occurred())
        PyErr_SetString(PyExc_TypeError, "NULL object in marshal data for object");
    return v;
1383 1384
}

1385 1386 1387
int
PyMarshal_ReadShortFromFile(FILE *fp)
{
1388
    RFILE rf;
1389
    int res;
1390
    assert(fp);
1391
    rf.readable = NULL;
1392
    rf.fp = fp;
1393
    rf.current_filename = NULL;
1394
    rf.end = rf.ptr = NULL;
1395 1396 1397 1398 1399
    rf.buf = NULL;
    res = r_short(&rf);
    if (rf.buf != NULL)
        PyMem_FREE(rf.buf);
    return res;
1400 1401
}

1402
long
1403
PyMarshal_ReadLongFromFile(FILE *fp)
1404
{
1405
    RFILE rf;
1406
    long res;
1407
    rf.fp = fp;
1408
    rf.readable = NULL;
1409
    rf.current_filename = NULL;
1410
    rf.ptr = rf.end = NULL;
1411 1412 1413 1414 1415
    rf.buf = NULL;
    res = r_long(&rf);
    if (rf.buf != NULL)
        PyMem_FREE(rf.buf);
    return res;
1416 1417
}

1418 1419 1420 1421 1422
#ifdef HAVE_FSTAT
/* Return size of file in bytes; < 0 if unknown. */
static off_t
getfilesize(FILE *fp)
{
1423 1424 1425 1426 1427
    struct stat st;
    if (fstat(fileno(fp), &st) != 0)
        return -1;
    else
        return st.st_size;
1428 1429
}
#endif
1430

1431 1432 1433
/* If we can get the size of the file up-front, and it's reasonably small,
 * read it in one gulp and delegate to ...FromString() instead.  Much quicker
 * than reading a byte at a time from file; speeds .pyc imports.
1434 1435
 * CAUTION:  since this may read the entire remainder of the file, don't
 * call it unless you know you're done with the file.
1436
 */
1437
PyObject *
1438
PyMarshal_ReadLastObjectFromFile(FILE *fp)
1439
{
1440
/* REASONABLE_FILE_LIMIT is by defn something big enough for Tkinter.pyc. */
1441 1442
#define REASONABLE_FILE_LIMIT (1L << 18)
#ifdef HAVE_FSTAT
1443 1444 1445 1446 1447
    off_t filesize;
    filesize = getfilesize(fp);
    if (filesize > 0 && filesize <= REASONABLE_FILE_LIMIT) {
        char* pBuf = (char *)PyMem_MALLOC(filesize);
        if (pBuf != NULL) {
1448 1449
            size_t n = fread(pBuf, 1, (size_t)filesize, fp);
            PyObject* v = PyMarshal_ReadObjectFromString(pBuf, n);
1450 1451 1452 1453 1454
            PyMem_FREE(pBuf);
            return v;
        }

    }
1455
#endif
1456 1457 1458 1459
    /* We don't have fstat, or we do but the file is larger than
     * REASONABLE_FILE_LIMIT or malloc failed -- read a byte at a time.
     */
    return PyMarshal_ReadObjectFromFile(fp);
1460

1461
#undef REASONABLE_FILE_LIMIT
1462 1463
}

1464 1465 1466
PyObject *
PyMarshal_ReadObjectFromFile(FILE *fp)
{
1467 1468 1469
    RFILE rf;
    PyObject *result;
    rf.fp = fp;
1470
    rf.readable = NULL;
1471
    rf.current_filename = NULL;
1472 1473
    rf.depth = 0;
    rf.ptr = rf.end = NULL;
1474
    rf.buf = NULL;
1475 1476 1477
    rf.refs = PyList_New(0);
    if (rf.refs == NULL)
        return NULL;
1478
    result = r_object(&rf);
1479
    Py_DECREF(rf.refs);
1480 1481
    if (rf.buf != NULL)
        PyMem_FREE(rf.buf);
1482
    return result;
1483 1484
}

1485
PyObject *
1486
PyMarshal_ReadObjectFromString(const char *str, Py_ssize_t len)
1487
{
1488 1489 1490
    RFILE rf;
    PyObject *result;
    rf.fp = NULL;
1491
    rf.readable = NULL;
1492
    rf.current_filename = NULL;
1493 1494
    rf.ptr = (char *)str;
    rf.end = (char *)str + len;
1495
    rf.buf = NULL;
1496
    rf.depth = 0;
1497 1498 1499
    rf.refs = PyList_New(0);
    if (rf.refs == NULL)
        return NULL;
1500
    result = r_object(&rf);
1501
    Py_DECREF(rf.refs);
1502 1503
    if (rf.buf != NULL)
        PyMem_FREE(rf.buf);
1504
    return result;
1505 1506
}

1507
PyObject *
1508
PyMarshal_WriteObjectToString(PyObject *x, int version)
1509
{
1510 1511 1512
    WFILE wf;

    wf.fp = NULL;
1513
    wf.readable = NULL;
1514 1515 1516 1517 1518 1519 1520 1521
    wf.str = PyBytes_FromStringAndSize((char *)NULL, 50);
    if (wf.str == NULL)
        return NULL;
    wf.ptr = PyBytes_AS_STRING((PyBytesObject *)wf.str);
    wf.end = wf.ptr + PyBytes_Size(wf.str);
    wf.error = WFERR_OK;
    wf.depth = 0;
    wf.version = version;
1522 1523 1524 1525 1526
    if (version >= 3) {
        if ((wf.refs = PyDict_New()) == NULL)
            return NULL;
    } else
        wf.refs = NULL;
1527
    w_object(x, &wf);
1528
    Py_XDECREF(wf.refs);
1529 1530 1531 1532 1533 1534 1535 1536 1537 1538 1539 1540 1541 1542 1543 1544 1545 1546 1547 1548 1549
    if (wf.str != NULL) {
        char *base = PyBytes_AS_STRING((PyBytesObject *)wf.str);
        if (wf.ptr - base > PY_SSIZE_T_MAX) {
            Py_DECREF(wf.str);
            PyErr_SetString(PyExc_OverflowError,
                            "too much marshal data for a string");
            return NULL;
        }
        if (_PyBytes_Resize(&wf.str, (Py_ssize_t)(wf.ptr - base)) < 0)
            return NULL;
    }
    if (wf.error != WFERR_OK) {
        Py_XDECREF(wf.str);
        if (wf.error == WFERR_NOMEMORY)
            PyErr_NoMemory();
        else
            PyErr_SetString(PyExc_ValueError,
              (wf.error==WFERR_UNMARSHALLABLE)?"unmarshallable object"
               :"object too deeply nested to marshal");
        return NULL;
    }
1550
    return wf.str;
1551 1552
}

1553
/* And an interface for Python programs... */
Guido van Rossum's avatar
Guido van Rossum committed
1554

1555
static PyObject *
1556
marshal_dump(PyObject *self, PyObject *args)
Guido van Rossum's avatar
Guido van Rossum committed
1557
{
1558 1559 1560 1561 1562 1563
    /* XXX Quick hack -- need to do this differently */
    PyObject *x;
    PyObject *f;
    int version = Py_MARSHAL_VERSION;
    PyObject *s;
    PyObject *res;
1564
    _Py_IDENTIFIER(write);
1565

1566 1567 1568 1569 1570
    if (!PyArg_ParseTuple(args, "OO|i:dump", &x, &f, &version))
        return NULL;
    s = PyMarshal_WriteObjectToString(x, version);
    if (s == NULL)
        return NULL;
1571
    res = _PyObject_CallMethodId(f, &PyId_write, "O", s);
1572 1573
    Py_DECREF(s);
    return res;
Guido van Rossum's avatar
Guido van Rossum committed
1574 1575
}

1576 1577 1578 1579 1580 1581 1582 1583 1584 1585 1586 1587 1588
PyDoc_STRVAR(dump_doc,
"dump(value, file[, version])\n\
\n\
Write the value on the open file. The value must be a supported type.\n\
The file must be an open file object such as sys.stdout or returned by\n\
open() or os.popen(). It must be opened in binary mode ('wb' or 'w+b').\n\
\n\
If the value has (or contains an object that has) an unsupported type, a\n\
ValueError exception is raised — but garbage data will also be written\n\
to the file. The object will not be properly read back by load()\n\
\n\
The version argument indicates the data format that dump should use.");

1589
static PyObject *
1590
marshal_load(PyObject *self, PyObject *f)
Guido van Rossum's avatar
Guido van Rossum committed
1591
{
1592
    PyObject *data, *result;
1593
    _Py_IDENTIFIER(read);
1594
    RFILE rf;
1595 1596 1597 1598 1599

    /*
     * Make a call to the read method, but read zero bytes.
     * This is to ensure that the object passed in at least
     * has a read method which returns bytes.
1600 1601
     * This can be removed if we guarantee good error handling
     * for r_string()
1602
     */
1603
    data = _PyObject_CallMethodId(f, &PyId_read, "i", 0);
1604 1605
    if (data == NULL)
        return NULL;
1606
    if (!PyBytes_Check(data)) {
1607
        PyErr_Format(PyExc_TypeError,
1608
                     "f.read() returned not bytes but %.100s",
1609
                     data->ob_type->tp_name);
1610 1611 1612 1613 1614 1615
        result = NULL;
    }
    else {
        rf.depth = 0;
        rf.fp = NULL;
        rf.readable = f;
1616
        rf.current_filename = NULL;
1617 1618
        rf.ptr = rf.end = NULL;
        rf.buf = NULL;
1619 1620 1621
        if ((rf.refs = PyList_New(0)) != NULL) {
            result = read_object(&rf);
            Py_DECREF(rf.refs);
1622 1623
            if (rf.buf != NULL)
                PyMem_FREE(rf.buf);
1624 1625
        } else
            result = NULL;
1626 1627 1628
    }
    Py_DECREF(data);
    return result;
1629 1630
}

1631 1632 1633 1634 1635 1636 1637 1638 1639 1640 1641 1642 1643
PyDoc_STRVAR(load_doc,
"load(file)\n\
\n\
Read one value from the open file and return it. If no valid value is\n\
read (e.g. because the data has a different Python version’s\n\
incompatible marshal format), raise EOFError, ValueError or TypeError.\n\
The file must be an open file object opened in binary mode ('rb' or\n\
'r+b').\n\
\n\
Note: If an object containing an unsupported type was marshalled with\n\
dump(), load() will substitute None for the unmarshallable type.");


1644
static PyObject *
1645
marshal_dumps(PyObject *self, PyObject *args)
1646
{
1647 1648 1649 1650 1651
    PyObject *x;
    int version = Py_MARSHAL_VERSION;
    if (!PyArg_ParseTuple(args, "O|i:dumps", &x, &version))
        return NULL;
    return PyMarshal_WriteObjectToString(x, version);
1652 1653
}

1654 1655 1656 1657 1658 1659 1660 1661 1662 1663
PyDoc_STRVAR(dumps_doc,
"dumps(value[, version])\n\
\n\
Return the string that would be written to a file by dump(value, file).\n\
The value must be a supported type. Raise a ValueError exception if\n\
value has (or contains an object that has) an unsupported type.\n\
\n\
The version argument indicates the data format that dumps should use.");


1664
static PyObject *
1665
marshal_loads(PyObject *self, PyObject *args)
1666
{
1667 1668 1669 1670 1671
    RFILE rf;
    Py_buffer p;
    char *s;
    Py_ssize_t n;
    PyObject* result;
1672
    if (!PyArg_ParseTuple(args, "y*:loads", &p))
1673 1674 1675 1676
        return NULL;
    s = p.buf;
    n = p.len;
    rf.fp = NULL;
1677
    rf.readable = NULL;
1678
    rf.current_filename = NULL;
1679 1680 1681
    rf.ptr = s;
    rf.end = s + n;
    rf.depth = 0;
1682 1683
    if ((rf.refs = PyList_New(0)) == NULL)
        return NULL;
1684 1685
    result = read_object(&rf);
    PyBuffer_Release(&p);
1686
    Py_DECREF(rf.refs);
1687
    return result;
Guido van Rossum's avatar
Guido van Rossum committed
1688 1689
}

1690
PyDoc_STRVAR(loads_doc,
1691
"loads(bytes)\n\
1692
\n\
1693 1694
Convert the bytes object to a value. If no valid value is found, raise\n\
EOFError, ValueError or TypeError. Extra characters in the input are\n\
1695 1696
ignored.");

1697
static PyMethodDef marshal_methods[] = {
1698 1699 1700 1701 1702
    {"dump",            marshal_dump,   METH_VARARGS,   dump_doc},
    {"load",            marshal_load,   METH_O,         load_doc},
    {"dumps",           marshal_dumps,  METH_VARARGS,   dumps_doc},
    {"loads",           marshal_loads,  METH_VARARGS,   loads_doc},
    {NULL,              NULL}           /* sentinel */
Guido van Rossum's avatar
Guido van Rossum committed
1703 1704
};

1705 1706 1707 1708 1709 1710 1711 1712 1713 1714 1715 1716 1717 1718 1719 1720 1721 1722 1723 1724 1725

PyDoc_STRVAR(module_doc,
"This module contains functions that can read and write Python values in\n\
a binary format. The format is specific to Python, but independent of\n\
machine architecture issues.\n\
\n\
Not all Python object types are supported; in general, only objects\n\
whose value is independent from a particular invocation of Python can be\n\
written and read by this module. The following types are supported:\n\
None, integers, floating point numbers, strings, bytes, bytearrays,\n\
tuples, lists, sets, dictionaries, and code objects, where it\n\
should be understood that tuples, lists and dictionaries are only\n\
supported as long as the values contained therein are themselves\n\
supported; and recursive lists and dictionaries should not be written\n\
(they will cause infinite loops).\n\
\n\
Variables:\n\
\n\
version -- indicates the format that the module uses. Version 0 is the\n\
    historical format, version 1 shares interned strings and version 2\n\
    uses a binary format for floating point numbers.\n\
1726
    Version 3 shares common object references (New in version 3.4).\n\
1727 1728 1729 1730 1731 1732 1733 1734 1735 1736
\n\
Functions:\n\
\n\
dump() -- write value to a file\n\
load() -- read value from a file\n\
dumps() -- write value to a string\n\
loads() -- read value from a string");



1737
static struct PyModuleDef marshalmodule = {
1738 1739 1740 1741 1742 1743 1744 1745 1746
    PyModuleDef_HEAD_INIT,
    "marshal",
    module_doc,
    0,
    marshal_methods,
    NULL,
    NULL,
    NULL,
    NULL
1747 1748
};

1749
PyMODINIT_FUNC
1750
PyMarshal_Init(void)
Guido van Rossum's avatar
Guido van Rossum committed
1751
{
1752 1753 1754 1755 1756
    PyObject *mod = PyModule_Create(&marshalmodule);
    if (mod == NULL)
        return NULL;
    PyModule_AddIntConstant(mod, "version", Py_MARSHAL_VERSION);
    return mod;
Guido van Rossum's avatar
Guido van Rossum committed
1757
}