33 releases

0.8.0 Sep 11, 2024
0.8.0-pre6 Jan 1, 2024
0.8.0-pre5 Dec 15, 2023
0.8.0-pre1 Nov 4, 2023
0.2.0 Nov 19, 2020

#498 in #validation

Download history 326232/week @ 2024-09-06 288555/week @ 2024-09-13 316192/week @ 2024-09-20 323340/week @ 2024-09-27 321901/week @ 2024-10-04 351590/week @ 2024-10-11 361991/week @ 2024-10-18 353502/week @ 2024-10-25 340907/week @ 2024-11-01 356664/week @ 2024-11-08 376694/week @ 2024-11-15 346918/week @ 2024-11-22 363569/week @ 2024-11-29 383462/week @ 2024-12-06 372119/week @ 2024-12-13 216994/week @ 2024-12-20

1,388,205 downloads per month
Used in 555 crates (via bytecheck)

MIT license

34KB
715 lines

bytecheck

crates.io badge docs badge license badge

bytecheck is a memory validation framework for Rust.

Documentation

Example

use bytecheck::{CheckBytes, check_bytes, rancor::Failure};

#[derive(CheckBytes, Debug)]
#[repr(C)]
struct Test {
    a: u32,
    b: char,
    c: bool,
}

#[repr(C, align(4))]
struct Aligned<const N: usize>([u8; N]);

macro_rules! bytes {
    ($($byte:literal,)*) => {
        (&Aligned([$($byte,)*]).0 as &[u8]).as_ptr()
    };
    ($($byte:literal),*) => {
        bytes!($($byte,)*)
    };
}

// In this example, the architecture is assumed to be little-endian
#[cfg(target_endian = "little")]
unsafe {
    // These are valid bytes for a `Test`
    check_bytes::<Test, Failure>(
        bytes![
            0u8, 0u8, 0u8, 0u8,
            0x78u8, 0u8, 0u8, 0u8,
            1u8, 255u8, 255u8, 255u8,
        ].cast()
    ).unwrap();

    // Changing the bytes for the u32 is OK, any bytes are a valid u32
    check_bytes::<Test, Failure>(
        bytes![
            42u8, 16u8, 20u8, 3u8,
            0x78u8, 0u8, 0u8, 0u8,
            1u8, 255u8, 255u8, 255u8,
        ].cast()
    ).unwrap();

    // Characters outside the valid ranges are invalid
    check_bytes::<Test, Failure>(
        bytes![
            0u8, 0u8, 0u8, 0u8,
            0x00u8, 0xd8u8, 0u8, 0u8,
            1u8, 255u8, 255u8, 255u8,
        ].cast()
    ).unwrap_err();
    check_bytes::<Test, Failure>(
        bytes![
            0u8, 0u8, 0u8, 0u8,
            0x00u8, 0x00u8, 0x11u8, 0u8,
            1u8, 255u8, 255u8, 255u8,
        ].cast()
    ).unwrap_err();

    // 0 is a valid boolean value (false) but 2 is not
    check_bytes::<Test, Failure>(
        bytes![
            0u8, 0u8, 0u8, 0u8,
            0x78u8, 0u8, 0u8, 0u8,
            0u8, 255u8, 255u8, 255u8,
        ].cast()
    ).unwrap();
    check_bytes::<Test, Failure>(
        bytes![
            0u8, 0u8, 0u8, 0u8,
            0x78u8, 0u8, 0u8, 0u8,
            2u8, 255u8, 255u8, 255u8,
        ].cast()
    ).unwrap_err();
}

Dependencies

~260–710KB
~17K SLoC