Update log.c to Solve High CodeQL alert Time-of-check time-of-use filesystem race condition

Fixes a bug found in how log files worked. Feel free to make any changes.
This commit is contained in:
Collin 2025-06-26 19:34:54 -05:00 committed by GitHub
parent 3e1c2d5456
commit 4967b25b95
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194

View File

@ -178,10 +178,10 @@ LogFilePrep(const char *fname, const char *backup, const char *idstring)
if (asprintf(&logFileName, fname, idstring) == -1)
FatalError("Cannot allocate space for the log file name\n");
if (backup && *backup) {
int fd = open(logFileName, O_RDWR | O_NOFOLLOW);Add commentMore actions
if (fd != -1) {
struct stat buf;
if (!stat(logFileName, &buf) && S_ISREG(buf.st_mode)) {
if (fstat(fd, &buf) == 0 && S_ISREG(buf.st_mode)) {
char *suffix;
char *oldLog;
@ -191,12 +191,15 @@ LogFilePrep(const char *fname, const char *backup, const char *idstring)
}
free(suffix);
if (rename(logFileName, oldLog) == -1) {
if (renameat(AT_FDCWD, logFileName, AT_FDCWD, oldLog) == -1) {
FatalError("Cannot move old log file \"%s\" to \"%s\"\n",
logFileName, oldLog);
}
free(oldLog);
}
free(oldLog);
close(fd);
}
}
else {
if (remove(logFileName) != 0 && errno != ENOENT) {