1 /*
2  * FreeRTOS memory safety proofs with CBMC.
3  * Copyright (C) 2022 Amazon.com, Inc. or its affiliates.  All Rights Reserved.
4  *
5  * Permission is hereby granted, free of charge, to any person
6  * obtaining a copy of this software and associated documentation
7  * files (the "Software"), to deal in the Software without
8  * restriction, including without limitation the rights to use, copy,
9  * modify, merge, publish, distribute, sublicense, and/or sell copies
10  * of the Software, and to permit persons to whom the Software is
11  * furnished to do so, subject to the following conditions:
12  *
13  * The above copyright notice and this permission notice shall be
14  * included in all copies or substantial portions of the Software.
15  *
16  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
17  * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
18  * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
19  * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS
20  * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN
21  * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN
22  * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
23  * SOFTWARE.
24  *
25  * http://aws.amazon.com/freertos
26  * http://www.FreeRTOS.org
27  */
28 
29 #include <stdint.h>
30 
31 /* FreeRTOS includes. */
32 #include "FreeRTOS.h"
33 #include "task.h"
34 
35 /* FreeRTOS+TCP includes. */
36 #include "FreeRTOS_IP.h"
37 #include "FreeRTOS_IP_Private.h"
38 
39 #include "cbmc.h"
40 
41 /* Abstraction of FreeRTOS_FindEndPointOnMAC */
FreeRTOS_FindEndPointOnMAC(const MACAddress_t * pxMACAddress,const NetworkInterface_t * pxInterface)42 NetworkEndPoint_t * FreeRTOS_FindEndPointOnMAC( const MACAddress_t * pxMACAddress,
43                                                 const NetworkInterface_t * pxInterface )
44 {
45     NetworkEndPoint_t * pxEndPoint;
46 
47     __CPROVER_assert( pxMACAddress != NULL, "pxMACAddress != NULL" );
48 
49     /* pxInterface can be NULL. */
50 
51     pxEndPoint = safeMalloc( sizeof( pxEndPoint ) );
52 
53     return pxEndPoint;
54 }
55 
56 /* The harness test proceeds to call eConsiderFrameForProcessing with an unconstrained buffer */
harness()57 void harness()
58 {
59     BaseType_t uBuffSize;
60 
61     /* Assume minimum and maximum buffer size expected */
62     __CPROVER_assume( uBuffSize >= sizeof( EthernetHeader_t ) && uBuffSize < ipconfigNETWORK_MTU );
63     const uint8_t * const pucEthernetBuffer = safeMalloc( uBuffSize );
64 
65     eConsiderFrameForProcessing( pucEthernetBuffer );
66 }
67