]> git.proxmox.com Git - mirror_qemu.git/blame - qobject/json-parser.c
json: Reject invalid \uXXXX, fix \u0000
[mirror_qemu.git] / qobject / json-parser.c
CommitLineData
4a5fcab7 1/*
6e8e5cb9 2 * JSON Parser
4a5fcab7
AL
3 *
4 * Copyright IBM, Corp. 2009
5 *
6 * Authors:
7 * Anthony Liguori <aliguori@us.ibm.com>
8 *
9 * This work is licensed under the terms of the GNU LGPL, version 2.1 or later.
10 * See the COPYING.LIB file in the top-level directory.
11 *
12 */
13
f2ad72b3 14#include "qemu/osdep.h"
2bc7cfea 15#include "qemu/cutils.h"
e59f39d4 16#include "qemu/unicode.h"
da34e65c 17#include "qapi/error.h"
4a5fcab7 18#include "qemu-common.h"
6b673957 19#include "qapi/qmp/qbool.h"
452fcdbc 20#include "qapi/qmp/qdict.h"
47e6b297 21#include "qapi/qmp/qlist.h"
15280c36
MA
22#include "qapi/qmp/qnull.h"
23#include "qapi/qmp/qnum.h"
6b673957 24#include "qapi/qmp/qstring.h"
7b1b5d19
PB
25#include "qapi/qmp/json-parser.h"
26#include "qapi/qmp/json-lexer.h"
9bada897 27#include "qapi/qmp/json-streamer.h"
4a5fcab7
AL
28
29typedef struct JSONParserContext
30{
ef749d07 31 Error *err;
9bada897 32 JSONToken *current;
95385fe9 33 GQueue *buf;
4a5fcab7
AL
34} JSONParserContext;
35
36#define BUG_ON(cond) assert(!(cond))
37
38/**
39 * TODO
40 *
41 * 0) make errors meaningful again
42 * 1) add geometry information to tokens
43 * 3) should we return a parsed size?
44 * 4) deal with premature EOI
45 */
46
65c0f1e9 47static QObject *parse_value(JSONParserContext *ctxt, va_list *ap);
4a5fcab7 48
4a5fcab7
AL
49/**
50 * Error handler
51 */
8b7968f7 52static void GCC_FMT_ATTR(3, 4) parse_error(JSONParserContext *ctxt,
9bada897 53 JSONToken *token, const char *msg, ...)
4a5fcab7 54{
c96c84a9 55 va_list ap;
ef749d07 56 char message[1024];
574bf16f
MA
57
58 if (ctxt->err) {
59 return;
60 }
c96c84a9 61 va_start(ap, msg);
ef749d07 62 vsnprintf(message, sizeof(message), msg, ap);
c96c84a9 63 va_end(ap);
f231b88d 64 error_setg(&ctxt->err, "JSON parse error, %s", message);
4a5fcab7
AL
65}
66
4a5fcab7
AL
67static int hex2decimal(char ch)
68{
69 if (ch >= '0' && ch <= '9') {
70 return (ch - '0');
71 } else if (ch >= 'a' && ch <= 'f') {
72 return 10 + (ch - 'a');
73 } else if (ch >= 'A' && ch <= 'F') {
74 return 10 + (ch - 'A');
75 }
de6decfe 76 abort();
4a5fcab7
AL
77}
78
79/**
b2da4a4d 80 * parse_string(): Parse a JSON string
4a5fcab7 81 *
b2da4a4d
MA
82 * From RFC 8259 "The JavaScript Object Notation (JSON) Data
83 * Interchange Format":
84 *
85 * char = unescaped /
86 * escape (
87 * %x22 / ; " quotation mark U+0022
88 * %x5C / ; \ reverse solidus U+005C
89 * %x2F / ; / solidus U+002F
90 * %x62 / ; b backspace U+0008
91 * %x66 / ; f form feed U+000C
92 * %x6E / ; n line feed U+000A
93 * %x72 / ; r carriage return U+000D
94 * %x74 / ; t tab U+0009
95 * %x75 4HEXDIG ) ; uXXXX U+XXXX
96 * escape = %x5C ; \
97 * quotation-mark = %x22 ; "
98 * unescaped = %x20-21 / %x23-5B / %x5D-10FFFF
99 *
100 * Extensions over RFC 8259:
101 * - Extra escape sequence in strings:
102 * 0x27 (apostrophe) is recognized after escape, too
103 * - Single-quoted strings:
104 * Like double-quoted strings, except they're delimited by %x27
105 * (apostrophe) instead of %x22 (quotation mark), and can't contain
106 * unescaped apostrophe, but can contain unescaped quotation mark.
107 *
108 * Note:
109 * - Encoding is modified UTF-8.
110 * - Invalid Unicode characters are rejected.
111 * - Control characters \x00..\x1F are rejected by the lexer.
4a5fcab7 112 */
b2da4a4d 113static QString *parse_string(JSONParserContext *ctxt, JSONToken *token)
4a5fcab7 114{
9bada897 115 const char *ptr = token->str;
4a5fcab7 116 QString *str;
00ea57fa 117 char quote;
de6decfe 118 int cp, i;
e59f39d4
MA
119 char *end;
120 ssize_t len;
121 char utf8_buf[5];
4a5fcab7 122
00ea57fa
MA
123 assert(*ptr == '"' || *ptr == '\'');
124 quote = *ptr++;
4a5fcab7 125 str = qstring_new();
00ea57fa
MA
126
127 while (*ptr != quote) {
128 assert(*ptr);
4a5fcab7
AL
129 if (*ptr == '\\') {
130 ptr++;
00ea57fa 131 switch (*ptr++) {
4a5fcab7 132 case '"':
de6decfe 133 qstring_append_chr(str, '"');
4a5fcab7
AL
134 break;
135 case '\'':
de6decfe 136 qstring_append_chr(str, '\'');
4a5fcab7
AL
137 break;
138 case '\\':
de6decfe 139 qstring_append_chr(str, '\\');
4a5fcab7
AL
140 break;
141 case '/':
de6decfe 142 qstring_append_chr(str, '/');
4a5fcab7
AL
143 break;
144 case 'b':
de6decfe 145 qstring_append_chr(str, '\b');
4a5fcab7 146 break;
bd032695 147 case 'f':
de6decfe 148 qstring_append_chr(str, '\f');
bd032695 149 break;
4a5fcab7 150 case 'n':
de6decfe 151 qstring_append_chr(str, '\n');
4a5fcab7
AL
152 break;
153 case 'r':
de6decfe 154 qstring_append_chr(str, '\r');
4a5fcab7
AL
155 break;
156 case 't':
de6decfe 157 qstring_append_chr(str, '\t');
4a5fcab7 158 break;
de6decfe
MA
159 case 'u':
160 cp = 0;
4a5fcab7 161 for (i = 0; i < 4; i++) {
de6decfe 162 if (!qemu_isxdigit(*ptr)) {
4a5fcab7
AL
163 parse_error(ctxt, token,
164 "invalid hex escape sequence in string");
165 goto out;
166 }
de6decfe
MA
167 cp <<= 4;
168 cp |= hex2decimal(*ptr);
4a5fcab7
AL
169 ptr++;
170 }
171
46a628b1
MA
172 if (mod_utf8_encode(utf8_buf, sizeof(utf8_buf), cp) < 0) {
173 parse_error(ctxt, token,
174 "\\u%.4s is not a valid Unicode character",
175 ptr - 3);
176 goto out;
177 }
de6decfe
MA
178 qstring_append(str, utf8_buf);
179 break;
4a5fcab7
AL
180 default:
181 parse_error(ctxt, token, "invalid escape sequence in string");
182 goto out;
183 }
184 } else {
e59f39d4 185 cp = mod_utf8_codepoint(ptr, 6, &end);
4b1c0cd7 186 if (cp < 0) {
e59f39d4
MA
187 parse_error(ctxt, token, "invalid UTF-8 sequence in string");
188 goto out;
189 }
190 ptr = end;
191 len = mod_utf8_encode(utf8_buf, sizeof(utf8_buf), cp);
192 assert(len >= 0);
193 qstring_append(str, utf8_buf);
4a5fcab7
AL
194 }
195 }
196
4a5fcab7
AL
197 return str;
198
199out:
cb3e7f08 200 qobject_unref(str);
4a5fcab7
AL
201 return NULL;
202}
203
9bada897
PB
204/* Note: the token object returned by parser_context_peek_token or
205 * parser_context_pop_token is deleted as soon as parser_context_pop_token
206 * is called again.
95385fe9 207 */
9bada897 208static JSONToken *parser_context_pop_token(JSONParserContext *ctxt)
65c0f1e9 209{
9bada897 210 g_free(ctxt->current);
95385fe9
PB
211 assert(!g_queue_is_empty(ctxt->buf));
212 ctxt->current = g_queue_pop_head(ctxt->buf);
213 return ctxt->current;
65c0f1e9
MR
214}
215
9bada897 216static JSONToken *parser_context_peek_token(JSONParserContext *ctxt)
65c0f1e9 217{
95385fe9
PB
218 assert(!g_queue_is_empty(ctxt->buf));
219 return g_queue_peek_head(ctxt->buf);
65c0f1e9
MR
220}
221
95385fe9 222static JSONParserContext *parser_context_new(GQueue *tokens)
65c0f1e9
MR
223{
224 JSONParserContext *ctxt;
65c0f1e9
MR
225
226 if (!tokens) {
227 return NULL;
228 }
229
65c0f1e9 230 ctxt = g_malloc0(sizeof(JSONParserContext));
95385fe9 231 ctxt->buf = tokens;
65c0f1e9
MR
232
233 return ctxt;
234}
235
236/* to support error propagation, ctxt->err must be freed separately */
237static void parser_context_free(JSONParserContext *ctxt)
238{
65c0f1e9 239 if (ctxt) {
95385fe9
PB
240 while (!g_queue_is_empty(ctxt->buf)) {
241 parser_context_pop_token(ctxt);
65c0f1e9 242 }
9bada897 243 g_free(ctxt->current);
95385fe9 244 g_queue_free(ctxt->buf);
65c0f1e9
MR
245 g_free(ctxt);
246 }
247}
248
4a5fcab7
AL
249/**
250 * Parsing rules
251 */
65c0f1e9 252static int parse_pair(JSONParserContext *ctxt, QDict *dict, va_list *ap)
4a5fcab7 253{
532fb532
HR
254 QObject *value;
255 QString *key = NULL;
9bada897 256 JSONToken *peek, *token;
4a5fcab7 257
65c0f1e9 258 peek = parser_context_peek_token(ctxt);
11e8a46c
AL
259 if (peek == NULL) {
260 parse_error(ctxt, NULL, "premature EOI");
261 goto out;
262 }
263
532fb532
HR
264 key = qobject_to(QString, parse_value(ctxt, ap));
265 if (!key) {
4a5fcab7
AL
266 parse_error(ctxt, peek, "key is not a string in object");
267 goto out;
268 }
269
65c0f1e9 270 token = parser_context_pop_token(ctxt);
11e8a46c
AL
271 if (token == NULL) {
272 parse_error(ctxt, NULL, "premature EOI");
273 goto out;
274 }
275
9bada897 276 if (token->type != JSON_COLON) {
4a5fcab7
AL
277 parse_error(ctxt, token, "missing : in object pair");
278 goto out;
279 }
280
65c0f1e9 281 value = parse_value(ctxt, ap);
4a5fcab7
AL
282 if (value == NULL) {
283 parse_error(ctxt, token, "Missing value in dict");
284 goto out;
285 }
286
532fb532 287 qdict_put_obj(dict, qstring_get_str(key), value);
4a5fcab7 288
cb3e7f08 289 qobject_unref(key);
4a5fcab7
AL
290
291 return 0;
292
293out:
cb3e7f08 294 qobject_unref(key);
4a5fcab7
AL
295
296 return -1;
297}
298
65c0f1e9 299static QObject *parse_object(JSONParserContext *ctxt, va_list *ap)
4a5fcab7
AL
300{
301 QDict *dict = NULL;
9bada897 302 JSONToken *token, *peek;
4a5fcab7 303
65c0f1e9 304 token = parser_context_pop_token(ctxt);
9bada897 305 assert(token && token->type == JSON_LCURLY);
4a5fcab7
AL
306
307 dict = qdict_new();
308
65c0f1e9 309 peek = parser_context_peek_token(ctxt);
11e8a46c
AL
310 if (peek == NULL) {
311 parse_error(ctxt, NULL, "premature EOI");
312 goto out;
313 }
314
9bada897 315 if (peek->type != JSON_RCURLY) {
65c0f1e9 316 if (parse_pair(ctxt, dict, ap) == -1) {
4a5fcab7
AL
317 goto out;
318 }
319
65c0f1e9 320 token = parser_context_pop_token(ctxt);
11e8a46c
AL
321 if (token == NULL) {
322 parse_error(ctxt, NULL, "premature EOI");
323 goto out;
324 }
325
9bada897
PB
326 while (token->type != JSON_RCURLY) {
327 if (token->type != JSON_COMMA) {
4a5fcab7
AL
328 parse_error(ctxt, token, "expected separator in dict");
329 goto out;
330 }
4a5fcab7 331
65c0f1e9 332 if (parse_pair(ctxt, dict, ap) == -1) {
4a5fcab7
AL
333 goto out;
334 }
335
65c0f1e9 336 token = parser_context_pop_token(ctxt);
11e8a46c
AL
337 if (token == NULL) {
338 parse_error(ctxt, NULL, "premature EOI");
339 goto out;
340 }
4a5fcab7 341 }
4a5fcab7 342 } else {
a491af47 343 (void)parser_context_pop_token(ctxt);
4a5fcab7
AL
344 }
345
4a5fcab7
AL
346 return QOBJECT(dict);
347
348out:
cb3e7f08 349 qobject_unref(dict);
4a5fcab7
AL
350 return NULL;
351}
352
65c0f1e9 353static QObject *parse_array(JSONParserContext *ctxt, va_list *ap)
4a5fcab7
AL
354{
355 QList *list = NULL;
9bada897 356 JSONToken *token, *peek;
4a5fcab7 357
65c0f1e9 358 token = parser_context_pop_token(ctxt);
9bada897 359 assert(token && token->type == JSON_LSQUARE);
4a5fcab7
AL
360
361 list = qlist_new();
362
65c0f1e9 363 peek = parser_context_peek_token(ctxt);
11e8a46c
AL
364 if (peek == NULL) {
365 parse_error(ctxt, NULL, "premature EOI");
366 goto out;
367 }
368
9bada897 369 if (peek->type != JSON_RSQUARE) {
4a5fcab7
AL
370 QObject *obj;
371
65c0f1e9 372 obj = parse_value(ctxt, ap);
4a5fcab7
AL
373 if (obj == NULL) {
374 parse_error(ctxt, token, "expecting value");
375 goto out;
376 }
377
378 qlist_append_obj(list, obj);
379
65c0f1e9 380 token = parser_context_pop_token(ctxt);
11e8a46c
AL
381 if (token == NULL) {
382 parse_error(ctxt, NULL, "premature EOI");
383 goto out;
384 }
385
9bada897
PB
386 while (token->type != JSON_RSQUARE) {
387 if (token->type != JSON_COMMA) {
4a5fcab7
AL
388 parse_error(ctxt, token, "expected separator in list");
389 goto out;
390 }
391
65c0f1e9 392 obj = parse_value(ctxt, ap);
4a5fcab7
AL
393 if (obj == NULL) {
394 parse_error(ctxt, token, "expecting value");
395 goto out;
396 }
397
398 qlist_append_obj(list, obj);
399
65c0f1e9 400 token = parser_context_pop_token(ctxt);
11e8a46c
AL
401 if (token == NULL) {
402 parse_error(ctxt, NULL, "premature EOI");
403 goto out;
404 }
4a5fcab7 405 }
4a5fcab7 406 } else {
a491af47 407 (void)parser_context_pop_token(ctxt);
4a5fcab7
AL
408 }
409
4a5fcab7
AL
410 return QOBJECT(list);
411
412out:
cb3e7f08 413 qobject_unref(list);
4a5fcab7
AL
414 return NULL;
415}
416
65c0f1e9 417static QObject *parse_keyword(JSONParserContext *ctxt)
4a5fcab7 418{
9bada897 419 JSONToken *token;
4a5fcab7 420
65c0f1e9 421 token = parser_context_pop_token(ctxt);
9bada897 422 assert(token && token->type == JSON_KEYWORD);
50e2a467 423
9bada897 424 if (!strcmp(token->str, "true")) {
d538b255 425 return QOBJECT(qbool_from_bool(true));
9bada897 426 } else if (!strcmp(token->str, "false")) {
d538b255 427 return QOBJECT(qbool_from_bool(false));
9bada897 428 } else if (!strcmp(token->str, "null")) {
006ca09f 429 return QOBJECT(qnull());
4a5fcab7 430 }
9bada897 431 parse_error(ctxt, token, "invalid keyword '%s'", token->str);
4a5fcab7
AL
432 return NULL;
433}
434
65c0f1e9 435static QObject *parse_escape(JSONParserContext *ctxt, va_list *ap)
4a5fcab7 436{
9bada897 437 JSONToken *token;
4a5fcab7
AL
438
439 if (ap == NULL) {
d538b255 440 return NULL;
4a5fcab7
AL
441 }
442
65c0f1e9 443 token = parser_context_pop_token(ctxt);
9bada897 444 assert(token && token->type == JSON_ESCAPE);
6b9606f6 445
9bada897 446 if (!strcmp(token->str, "%p")) {
d538b255 447 return va_arg(*ap, QObject *);
9bada897 448 } else if (!strcmp(token->str, "%i")) {
d538b255 449 return QOBJECT(qbool_from_bool(va_arg(*ap, int)));
9bada897 450 } else if (!strcmp(token->str, "%d")) {
01b2ffce 451 return QOBJECT(qnum_from_int(va_arg(*ap, int)));
9bada897 452 } else if (!strcmp(token->str, "%ld")) {
01b2ffce 453 return QOBJECT(qnum_from_int(va_arg(*ap, long)));
9bada897
PB
454 } else if (!strcmp(token->str, "%lld") ||
455 !strcmp(token->str, "%I64d")) {
01b2ffce 456 return QOBJECT(qnum_from_int(va_arg(*ap, long long)));
2bc7cfea
MAL
457 } else if (!strcmp(token->str, "%u")) {
458 return QOBJECT(qnum_from_uint(va_arg(*ap, unsigned int)));
459 } else if (!strcmp(token->str, "%lu")) {
460 return QOBJECT(qnum_from_uint(va_arg(*ap, unsigned long)));
461 } else if (!strcmp(token->str, "%llu") ||
462 !strcmp(token->str, "%I64u")) {
463 return QOBJECT(qnum_from_uint(va_arg(*ap, unsigned long long)));
9bada897 464 } else if (!strcmp(token->str, "%s")) {
d538b255 465 return QOBJECT(qstring_from_str(va_arg(*ap, const char *)));
9bada897 466 } else if (!strcmp(token->str, "%f")) {
01b2ffce 467 return QOBJECT(qnum_from_double(va_arg(*ap, double)));
4a5fcab7 468 }
4a5fcab7
AL
469 return NULL;
470}
471
65c0f1e9 472static QObject *parse_literal(JSONParserContext *ctxt)
4a5fcab7 473{
9bada897 474 JSONToken *token;
4a5fcab7 475
65c0f1e9 476 token = parser_context_pop_token(ctxt);
d538b255 477 assert(token);
11e8a46c 478
9bada897 479 switch (token->type) {
4a5fcab7 480 case JSON_STRING:
b2da4a4d 481 return QOBJECT(parse_string(ctxt, token));
3d5b3ec6 482 case JSON_INTEGER: {
01b2ffce
MAL
483 /*
484 * Represent JSON_INTEGER as QNUM_I64 if possible, else as
2bc7cfea
MAL
485 * QNUM_U64, else as QNUM_DOUBLE. Note that qemu_strtoi64()
486 * and qemu_strtou64() fail with ERANGE when it's not
487 * possible.
3d5b3ec6 488 *
01b2ffce 489 * qnum_get_int() will then work for any signed 64-bit
2bc7cfea
MAL
490 * JSON_INTEGER, qnum_get_uint() for any unsigned 64-bit
491 * integer, and qnum_get_double() both for any JSON_INTEGER
492 * and any JSON_FLOAT (with precision loss for integers beyond
493 * 53 bits)
3d5b3ec6 494 */
2bc7cfea 495 int ret;
3d5b3ec6 496 int64_t value;
2bc7cfea 497 uint64_t uvalue;
3d5b3ec6 498
2bc7cfea
MAL
499 ret = qemu_strtoi64(token->str, NULL, 10, &value);
500 if (!ret) {
01b2ffce 501 return QOBJECT(qnum_from_int(value));
3d5b3ec6 502 }
2bc7cfea
MAL
503 assert(ret == -ERANGE);
504
505 if (token->str[0] != '-') {
506 ret = qemu_strtou64(token->str, NULL, 10, &uvalue);
507 if (!ret) {
508 return QOBJECT(qnum_from_uint(uvalue));
509 }
510 assert(ret == -ERANGE);
511 }
3d5b3ec6
MR
512 /* fall through to JSON_FLOAT */
513 }
4a5fcab7 514 case JSON_FLOAT:
6e8e5cb9
EB
515 /* FIXME dependent on locale; a pervasive issue in QEMU */
516 /* FIXME our lexer matches RFC 7159 in forbidding Inf or NaN,
517 * but those might be useful extensions beyond JSON */
01b2ffce 518 return QOBJECT(qnum_from_double(strtod(token->str, NULL)));
4a5fcab7 519 default:
d538b255 520 abort();
4a5fcab7 521 }
4a5fcab7
AL
522}
523
65c0f1e9 524static QObject *parse_value(JSONParserContext *ctxt, va_list *ap)
4a5fcab7 525{
9bada897 526 JSONToken *token;
4a5fcab7 527
d538b255
MA
528 token = parser_context_peek_token(ctxt);
529 if (token == NULL) {
530 parse_error(ctxt, NULL, "premature EOI");
531 return NULL;
4a5fcab7
AL
532 }
533
9bada897 534 switch (token->type) {
d538b255
MA
535 case JSON_LCURLY:
536 return parse_object(ctxt, ap);
537 case JSON_LSQUARE:
538 return parse_array(ctxt, ap);
539 case JSON_ESCAPE:
540 return parse_escape(ctxt, ap);
541 case JSON_INTEGER:
542 case JSON_FLOAT:
543 case JSON_STRING:
544 return parse_literal(ctxt);
545 case JSON_KEYWORD:
546 return parse_keyword(ctxt);
547 default:
548 parse_error(ctxt, token, "expecting value");
549 return NULL;
550 }
4a5fcab7
AL
551}
552
95385fe9 553QObject *json_parser_parse(GQueue *tokens, va_list *ap)
ef749d07
AL
554{
555 return json_parser_parse_err(tokens, ap, NULL);
556}
557
95385fe9 558QObject *json_parser_parse_err(GQueue *tokens, va_list *ap, Error **errp)
4a5fcab7 559{
65c0f1e9 560 JSONParserContext *ctxt = parser_context_new(tokens);
4a5fcab7
AL
561 QObject *result;
562
65c0f1e9 563 if (!ctxt) {
c1990ebf
MR
564 return NULL;
565 }
4a5fcab7 566
65c0f1e9
MR
567 result = parse_value(ctxt, ap);
568
569 error_propagate(errp, ctxt->err);
4a5fcab7 570
65c0f1e9 571 parser_context_free(ctxt);
ef749d07 572
4a5fcab7
AL
573 return result;
574}