Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion doc/api/sqlite.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -1128,7 +1128,7 @@ Finalizes the prepared statement. An exception is thrown if the statement is
already finalized. An [`ERR_INVALID_STATE`][] error is thrown if this statement
is currently executing, which happens when the method is called from a callback
that the statement itself triggered, such as a user-defined function, an
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Other statements
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Idle statements
on the same connection can be finalized from such a callback. This method is a
wrapper around [`sqlite3_finalize()`][].

Expand Down
11 changes: 11 additions & 0 deletions src/node_sqlite.cc
Original file line numberDiff line numberDiff line change
Expand Up@@ -160,6 +160,15 @@ inline MaybeLocal<Value> IntegerToValue(Isolate* isolate,
(db)->IsInAuthorizerCallback(), \
"database cannot be accessed from an authorizer callback")

// Finalizing a busy statement from an authorizer can release its locks and
// change the outer statement's outcome.
#define THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt) \
THROW_AND_RETURN_ON_BAD_STATE( \
(env), \
(stmt)->db_->IsInAuthorizerCallback() && \
sqlite3_stmt_busy((stmt)->statement_.get()), \
"database cannot be accessed from an authorizer callback")

// A statement's virtual machine cannot be reentered while sqlite3_step() is
// running it. Finalizing it frees the VM outright, and re-running it resets the
// VM mid-execution; both are use-after-free rather than merely a contract
Expand DownExpand Up@@ -2900,6 +2909,7 @@ void StatementSync::Close(const FunctionCallbackInfo<Value>& args) {
THROW_AND_RETURN_ON_BAD_STATE(
env, stmt->IsFinalized(), "statement has been finalized");
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand All@@ -2913,6 +2923,7 @@ void StatementSync::Dispose(const FunctionCallbackInfo<Value>& args) {
return;
}
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand Down
5 changes: 2 additions & 3 deletions src/node_sqlite.h
Original file line numberDiff line numberDiff line change
Expand Up@@ -299,9 +299,8 @@ class DatabaseSync : public BaseObject {
void DecrementAuthorizerDepth() { --authorizer_depth_; }
bool IsInAuthorizerCallback() const { return authorizer_depth_ > 0; }

// Finalizing a statement frees its virtual machine, so a callback that
// SQLite invokes from inside sqlite3_step() must not finalize the statement
// being stepped. Other statements on the connection are safe to finalize.
// A callback must not finalize the statement being stepped. Other statements
// are safe unless they are busy during an authorizer callback.
void PushSteppingStatement(sqlite3_stmt* stmt) {
stepping_statements_.push_back(stmt);
}
Expand Down
43 changes: 39 additions & 4 deletions test/parallel/test-sqlite-authz.js
Original file line numberDiff line numberDiff line change
Expand Up@@ -397,10 +397,8 @@ suite('authorizer callback reentrancy', () => {
assert.deepStrictEqual(runInAuthorizer(db, cases), allRejected(cases));
});

// Only the statement being stepped is unsafe to finalize. Other statements
// on the connection have their own virtual machines, so finalizing them from
// a callback is allowed.
it('allows finalizing a statement that is not being executed', () => {
// An idle statement has no virtual-machine state or locks to release.
it('allows finalizing an idle statement', () => {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1)');
Expand All@@ -417,6 +415,43 @@ suite('authorizer callback reentrancy', () => {
});
});

// A paused iterator is busy and may hold locks between sqlite3_step() calls.
it('rejects finalizing another active statement', () => {
for (const method of ['close', 'dispose']) {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1), (2), (3)');
const stmt = db.prepare('SELECT x FROM t');
const iter = stmt.iterate();
iter.next();
let outcome = 'authorizer callback did not run';

db.setAuthorizer((actionCode) => {
if (actionCode === constants.SQLITE_DROP_TABLE) {
try {
if (method === 'close') {
stmt.close();
} else {
stmt[Symbol.dispose]();
}
outcome = 'did not throw';
} catch (err) {
outcome = `${err.code}: ${err.message}`;
}
}
return constants.SQLITE_OK;
});

assert.throws(() => db.exec('DROP TABLE t'), {
code: 'ERR_SQLITE_ERROR',
message: 'database table is locked',
});
assert.strictEqual(outcome, expectedError);
db.setAuthorizer(null);
iter.return();
}
});

// Disposal is idempotent, so a statement that is already finalized must stay
// a no-op even inside a callback. Throwing here would turn a `using` scope's
// real exception into a SuppressedError.
Expand Down
Loading
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Add copy buttons to all
 blocks\n(function() {\n function addCopyButtons() {\n document.querySelectorAll('pre code').forEach(function(codeBlock) {\n if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;\n codeBlock.parentElement.setAttribute('data-copy-added', 'true');\n \n var btn = document.createElement('button');\n btn.textContent = 'Copy';\n btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';\n btn.onmouseover = function() { this.style.opacity = '1'; };\n btn.onmouseout = function() { this.style.opacity = '0.7'; };\n btn.onclick = function() {\n navigator.clipboard.writeText(codeBlock.textContent).then(function() {\n btn.textContent = 'Copied!';\n setTimeout(function() { btn.textContent = 'Copy'; }, 1500);\n });\n };\n codeBlock.parentElement.style.position = 'relative';\n codeBlock.parentElement.appendChild(btn);\n });\n }\n \n addCopyButtons();\n \n // Re-run on dynamic content\n var observer = new MutationObserver(addCopyButtons);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Add Copy Buttons to Code Blocks");
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion doc/api/sqlite.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -1128,7 +1128,7 @@ Finalizes the prepared statement. An exception is thrown if the statement is
already finalized. An [`ERR_INVALID_STATE`][] error is thrown if this statement
is currently executing, which happens when the method is called from a callback
that the statement itself triggered, such as a user-defined function, an
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Other statements
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Idle statements
on the same connection can be finalized from such a callback. This method is a
wrapper around [`sqlite3_finalize()`][].

Expand Down
11 changes: 11 additions & 0 deletions src/node_sqlite.cc
Original file line numberDiff line numberDiff line change
Expand Up@@ -160,6 +160,15 @@ inline MaybeLocal<Value> IntegerToValue(Isolate* isolate,
(db)->IsInAuthorizerCallback(), \
"database cannot be accessed from an authorizer callback")

// Finalizing a busy statement from an authorizer can release its locks and
// change the outer statement's outcome.
#define THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt) \
THROW_AND_RETURN_ON_BAD_STATE( \
(env), \
(stmt)->db_->IsInAuthorizerCallback() && \
sqlite3_stmt_busy((stmt)->statement_.get()), \
"database cannot be accessed from an authorizer callback")

// A statement's virtual machine cannot be reentered while sqlite3_step() is
// running it. Finalizing it frees the VM outright, and re-running it resets the
// VM mid-execution; both are use-after-free rather than merely a contract
Expand DownExpand Up@@ -2900,6 +2909,7 @@ void StatementSync::Close(const FunctionCallbackInfo<Value>& args) {
THROW_AND_RETURN_ON_BAD_STATE(
env, stmt->IsFinalized(), "statement has been finalized");
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand All@@ -2913,6 +2923,7 @@ void StatementSync::Dispose(const FunctionCallbackInfo<Value>& args) {
return;
}
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand Down
5 changes: 2 additions & 3 deletions src/node_sqlite.h
Original file line numberDiff line numberDiff line change
Expand Up@@ -299,9 +299,8 @@ class DatabaseSync : public BaseObject {
void DecrementAuthorizerDepth() { --authorizer_depth_; }
bool IsInAuthorizerCallback() const { return authorizer_depth_ > 0; }

// Finalizing a statement frees its virtual machine, so a callback that
// SQLite invokes from inside sqlite3_step() must not finalize the statement
// being stepped. Other statements on the connection are safe to finalize.
// A callback must not finalize the statement being stepped. Other statements
// are safe unless they are busy during an authorizer callback.
void PushSteppingStatement(sqlite3_stmt* stmt) {
stepping_statements_.push_back(stmt);
}
Expand Down
43 changes: 39 additions & 4 deletions test/parallel/test-sqlite-authz.js
Original file line numberDiff line numberDiff line change
Expand Up@@ -397,10 +397,8 @@ suite('authorizer callback reentrancy', () => {
assert.deepStrictEqual(runInAuthorizer(db, cases), allRejected(cases));
});

// Only the statement being stepped is unsafe to finalize. Other statements
// on the connection have their own virtual machines, so finalizing them from
// a callback is allowed.
it('allows finalizing a statement that is not being executed', () => {
// An idle statement has no virtual-machine state or locks to release.
it('allows finalizing an idle statement', () => {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1)');
Expand All@@ -417,6 +415,43 @@ suite('authorizer callback reentrancy', () => {
});
});

// A paused iterator is busy and may hold locks between sqlite3_step() calls.
it('rejects finalizing another active statement', () => {
for (const method of ['close', 'dispose']) {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1), (2), (3)');
const stmt = db.prepare('SELECT x FROM t');
const iter = stmt.iterate();
iter.next();
let outcome = 'authorizer callback did not run';

db.setAuthorizer((actionCode) => {
if (actionCode === constants.SQLITE_DROP_TABLE) {
try {
if (method === 'close') {
stmt.close();
} else {
stmt[Symbol.dispose]();
}
outcome = 'did not throw';
} catch (err) {
outcome = `${err.code}: ${err.message}`;
}
}
return constants.SQLITE_OK;
});

assert.throws(() => db.exec('DROP TABLE t'), {
code: 'ERR_SQLITE_ERROR',
message: 'database table is locked',
});
assert.strictEqual(outcome, expectedError);
db.setAuthorizer(null);
iter.return();
}
});

// Disposal is idempotent, so a statement that is already finalized must stay
// a no-op even inside a callback. Throwing here would turn a `using` scope's
// real exception into a SuppressedError.
Expand Down
Loading
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Force GitHub README to respect dark mode\n(function() {\n var style = document.createElement('style');\n style.textContent = '\n .markdown-body {\n color-scheme: dark light;\n }\n .markdown-body pre { background: #161b22 !important; }\n .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; }\n .markdown-body table th, .markdown-body table td { border-color: #30363d !important; }\n .markdown-body img { background: #0d1117; }\n .markdown-body blockquote { border-left-color: #8b949e; }\n .markdown-body hr { border-color: #30363d; }\n ';\n document.head.appendChild(style);\n})();", "GitHub Dark Mode README Fix"); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion doc/api/sqlite.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -1128,7 +1128,7 @@ Finalizes the prepared statement. An exception is thrown if the statement is
already finalized. An [`ERR_INVALID_STATE`][] error is thrown if this statement
is currently executing, which happens when the method is called from a callback
that the statement itself triggered, such as a user-defined function, an
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Other statements
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Idle statements
on the same connection can be finalized from such a callback. This method is a
wrapper around [`sqlite3_finalize()`][].

Expand Down
11 changes: 11 additions & 0 deletions src/node_sqlite.cc
Original file line numberDiff line numberDiff line change
Expand Up@@ -160,6 +160,15 @@ inline MaybeLocal<Value> IntegerToValue(Isolate* isolate,
(db)->IsInAuthorizerCallback(), \
"database cannot be accessed from an authorizer callback")

// Finalizing a busy statement from an authorizer can release its locks and
// change the outer statement's outcome.
#define THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt) \
THROW_AND_RETURN_ON_BAD_STATE( \
(env), \
(stmt)->db_->IsInAuthorizerCallback() && \
sqlite3_stmt_busy((stmt)->statement_.get()), \
"database cannot be accessed from an authorizer callback")

// A statement's virtual machine cannot be reentered while sqlite3_step() is
// running it. Finalizing it frees the VM outright, and re-running it resets the
// VM mid-execution; both are use-after-free rather than merely a contract
Expand DownExpand Up@@ -2900,6 +2909,7 @@ void StatementSync::Close(const FunctionCallbackInfo<Value>& args) {
THROW_AND_RETURN_ON_BAD_STATE(
env, stmt->IsFinalized(), "statement has been finalized");
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand All@@ -2913,6 +2923,7 @@ void StatementSync::Dispose(const FunctionCallbackInfo<Value>& args) {
return;
}
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand Down
5 changes: 2 additions & 3 deletions src/node_sqlite.h
Original file line numberDiff line numberDiff line change
Expand Up@@ -299,9 +299,8 @@ class DatabaseSync : public BaseObject {
void DecrementAuthorizerDepth() { --authorizer_depth_; }
bool IsInAuthorizerCallback() const { return authorizer_depth_ > 0; }

// Finalizing a statement frees its virtual machine, so a callback that
// SQLite invokes from inside sqlite3_step() must not finalize the statement
// being stepped. Other statements on the connection are safe to finalize.
// A callback must not finalize the statement being stepped. Other statements
// are safe unless they are busy during an authorizer callback.
void PushSteppingStatement(sqlite3_stmt* stmt) {
stepping_statements_.push_back(stmt);
}
Expand Down
43 changes: 39 additions & 4 deletions test/parallel/test-sqlite-authz.js
Original file line numberDiff line numberDiff line change
Expand Up@@ -397,10 +397,8 @@ suite('authorizer callback reentrancy', () => {
assert.deepStrictEqual(runInAuthorizer(db, cases), allRejected(cases));
});

// Only the statement being stepped is unsafe to finalize. Other statements
// on the connection have their own virtual machines, so finalizing them from
// a callback is allowed.
it('allows finalizing a statement that is not being executed', () => {
// An idle statement has no virtual-machine state or locks to release.
it('allows finalizing an idle statement', () => {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1)');
Expand All@@ -417,6 +415,43 @@ suite('authorizer callback reentrancy', () => {
});
});

// A paused iterator is busy and may hold locks between sqlite3_step() calls.
it('rejects finalizing another active statement', () => {
for (const method of ['close', 'dispose']) {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1), (2), (3)');
const stmt = db.prepare('SELECT x FROM t');
const iter = stmt.iterate();
iter.next();
let outcome = 'authorizer callback did not run';

db.setAuthorizer((actionCode) => {
if (actionCode === constants.SQLITE_DROP_TABLE) {
try {
if (method === 'close') {
stmt.close();
} else {
stmt[Symbol.dispose]();
}
outcome = 'did not throw';
} catch (err) {
outcome = `${err.code}: ${err.message}`;
}
}
return constants.SQLITE_OK;
});

assert.throws(() => db.exec('DROP TABLE t'), {
code: 'ERR_SQLITE_ERROR',
message: 'database table is locked',
});
assert.strictEqual(outcome, expectedError);
db.setAuthorizer(null);
iter.return();
}
});

// Disposal is idempotent, so a statement that is already finalized must stay
// a no-op even inside a callback. Throwing here would turn a `using` scope's
// real exception into a SuppressedError.
Expand Down
Loading
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Highlight search terms from Google/DuckDuckGo/Bing referrer\n(function() {\n var ref = document.referrer;\n var terms = [];\n \n if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) {\n var url = new URL(ref);\n var q = url.searchParams.get('q') || url.searchParams.get('p');\n if (q) {\n terms = q.split(/\\s+/).filter(function(t) { return t.length > 2; });\n }\n }\n \n if (terms.length === 0) return;\n \n var style = document.createElement('style');\n style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }';\n document.head.appendChild(style);\n \n function highlight(node) {\n if (node.nodeType === 3) { // text node\n var text = node.textContent;\n var found = false;\n terms.forEach(function(term) {\n var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\\]\\\\]/g, '\\\\') + ')', 'gi');\n if (regex.test(text)) {\n found = true;\n var frag = document.createDocumentFragment();\n var parts = text.split(regex);\n parts.forEach(function(part, i) {\n if (i % 2 === 0) {\n frag.appendChild(document.createTextNode(part));\n } else {\n var span = document.createElement('span');\n span.className = 'userscript-highlight';\n span.textContent = part;\n frag.appendChild(span);\n }\n });\n node.parentNode.replaceChild(frag, node);\n }\n });\n } else if (node.nodeType === 1 && node.childNodes) { // element\n var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT'];\n if (!skipTags.includes(node.tagName)) {\n Array.from(node.childNodes).forEach(highlight);\n }\n }\n }\n \n highlight(document.body);\n \n // Re-highlight on dynamic content\n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1 || node.nodeType === 3) highlight(node);\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Highlight Search Terms"); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion doc/api/sqlite.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -1128,7 +1128,7 @@ Finalizes the prepared statement. An exception is thrown if the statement is
already finalized. An [`ERR_INVALID_STATE`][] error is thrown if this statement
is currently executing, which happens when the method is called from a callback
that the statement itself triggered, such as a user-defined function, an
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Other statements
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Idle statements
on the same connection can be finalized from such a callback. This method is a
wrapper around [`sqlite3_finalize()`][].

Expand Down
11 changes: 11 additions & 0 deletions src/node_sqlite.cc
Original file line numberDiff line numberDiff line change
Expand Up@@ -160,6 +160,15 @@ inline MaybeLocal<Value> IntegerToValue(Isolate* isolate,
(db)->IsInAuthorizerCallback(), \
"database cannot be accessed from an authorizer callback")

// Finalizing a busy statement from an authorizer can release its locks and
// change the outer statement's outcome.
#define THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt) \
THROW_AND_RETURN_ON_BAD_STATE( \
(env), \
(stmt)->db_->IsInAuthorizerCallback() && \
sqlite3_stmt_busy((stmt)->statement_.get()), \
"database cannot be accessed from an authorizer callback")

// A statement's virtual machine cannot be reentered while sqlite3_step() is
// running it. Finalizing it frees the VM outright, and re-running it resets the
// VM mid-execution; both are use-after-free rather than merely a contract
Expand DownExpand Up@@ -2900,6 +2909,7 @@ void StatementSync::Close(const FunctionCallbackInfo<Value>& args) {
THROW_AND_RETURN_ON_BAD_STATE(
env, stmt->IsFinalized(), "statement has been finalized");
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand All@@ -2913,6 +2923,7 @@ void StatementSync::Dispose(const FunctionCallbackInfo<Value>& args) {
return;
}
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand Down
5 changes: 2 additions & 3 deletions src/node_sqlite.h
Original file line numberDiff line numberDiff line change
Expand Up@@ -299,9 +299,8 @@ class DatabaseSync : public BaseObject {
void DecrementAuthorizerDepth() { --authorizer_depth_; }
bool IsInAuthorizerCallback() const { return authorizer_depth_ > 0; }

// Finalizing a statement frees its virtual machine, so a callback that
// SQLite invokes from inside sqlite3_step() must not finalize the statement
// being stepped. Other statements on the connection are safe to finalize.
// A callback must not finalize the statement being stepped. Other statements
// are safe unless they are busy during an authorizer callback.
void PushSteppingStatement(sqlite3_stmt* stmt) {
stepping_statements_.push_back(stmt);
}
Expand Down
43 changes: 39 additions & 4 deletions test/parallel/test-sqlite-authz.js
Original file line numberDiff line numberDiff line change
Expand Up@@ -397,10 +397,8 @@ suite('authorizer callback reentrancy', () => {
assert.deepStrictEqual(runInAuthorizer(db, cases), allRejected(cases));
});

// Only the statement being stepped is unsafe to finalize. Other statements
// on the connection have their own virtual machines, so finalizing them from
// a callback is allowed.
it('allows finalizing a statement that is not being executed', () => {
// An idle statement has no virtual-machine state or locks to release.
it('allows finalizing an idle statement', () => {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1)');
Expand All@@ -417,6 +415,43 @@ suite('authorizer callback reentrancy', () => {
});
});

// A paused iterator is busy and may hold locks between sqlite3_step() calls.
it('rejects finalizing another active statement', () => {
for (const method of ['close', 'dispose']) {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1), (2), (3)');
const stmt = db.prepare('SELECT x FROM t');
const iter = stmt.iterate();
iter.next();
let outcome = 'authorizer callback did not run';

db.setAuthorizer((actionCode) => {
if (actionCode === constants.SQLITE_DROP_TABLE) {
try {
if (method === 'close') {
stmt.close();
} else {
stmt[Symbol.dispose]();
}
outcome = 'did not throw';
} catch (err) {
outcome = `${err.code}: ${err.message}`;
}
}
return constants.SQLITE_OK;
});

assert.throws(() => db.exec('DROP TABLE t'), {
code: 'ERR_SQLITE_ERROR',
message: 'database table is locked',
});
assert.strictEqual(outcome, expectedError);
db.setAuthorizer(null);
iter.return();
}
});

// Disposal is idempotent, so a statement that is already finalized must stay
// a no-op even inside a callback. Throwing here would turn a `using` scope's
// real exception into a SuppressedError.
Expand Down
Loading
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Strip utm_, fbclid, gclid, etc. from all links on page\n(function() {\n var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content',\n 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid',\n 'ref', 'ref_src', 'source', 'medium', 'campaign'];\n \n function cleanUrl(url) {\n try {\n var u = new URL(url, window.location.origin);\n var changed = false;\n trackingParams.forEach(function(p) {\n if (u.searchParams.has(p)) {\n u.searchParams.delete(p);\n changed = true;\n }\n });\n return changed ? u.toString() : url;\n } catch (e) {\n return url;\n }\n }\n \n function cleanLinks() {\n document.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n \n cleanLinks();\n \n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1) {\n if (node.tagName === 'A') cleanLinks();\n node.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Remove Tracking Parameters from Links"); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + '
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion doc/api/sqlite.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -1128,7 +1128,7 @@ Finalizes the prepared statement. An exception is thrown if the statement is
already finalized. An [`ERR_INVALID_STATE`][] error is thrown if this statement
is currently executing, which happens when the method is called from a callback
that the statement itself triggered, such as a user-defined function, an
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Other statements
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Idle statements
on the same connection can be finalized from such a callback. This method is a
wrapper around [`sqlite3_finalize()`][].

Expand Down
11 changes: 11 additions & 0 deletions src/node_sqlite.cc
Original file line numberDiff line numberDiff line change
Expand Up@@ -160,6 +160,15 @@ inline MaybeLocal<Value> IntegerToValue(Isolate* isolate,
(db)->IsInAuthorizerCallback(), \
"database cannot be accessed from an authorizer callback")

// Finalizing a busy statement from an authorizer can release its locks and
// change the outer statement's outcome.
#define THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt) \
THROW_AND_RETURN_ON_BAD_STATE( \
(env), \
(stmt)->db_->IsInAuthorizerCallback() && \
sqlite3_stmt_busy((stmt)->statement_.get()), \
"database cannot be accessed from an authorizer callback")

// A statement's virtual machine cannot be reentered while sqlite3_step() is
// running it. Finalizing it frees the VM outright, and re-running it resets the
// VM mid-execution; both are use-after-free rather than merely a contract
Expand DownExpand Up@@ -2900,6 +2909,7 @@ void StatementSync::Close(const FunctionCallbackInfo<Value>& args) {
THROW_AND_RETURN_ON_BAD_STATE(
env, stmt->IsFinalized(), "statement has been finalized");
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand All@@ -2913,6 +2923,7 @@ void StatementSync::Dispose(const FunctionCallbackInfo<Value>& args) {
return;
}
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand Down
5 changes: 2 additions & 3 deletions src/node_sqlite.h
Original file line numberDiff line numberDiff line change
Expand Up@@ -299,9 +299,8 @@ class DatabaseSync : public BaseObject {
void DecrementAuthorizerDepth() { --authorizer_depth_; }
bool IsInAuthorizerCallback() const { return authorizer_depth_ > 0; }

// Finalizing a statement frees its virtual machine, so a callback that
// SQLite invokes from inside sqlite3_step() must not finalize the statement
// being stepped. Other statements on the connection are safe to finalize.
// A callback must not finalize the statement being stepped. Other statements
// are safe unless they are busy during an authorizer callback.
void PushSteppingStatement(sqlite3_stmt* stmt) {
stepping_statements_.push_back(stmt);
}
Expand Down
43 changes: 39 additions & 4 deletions test/parallel/test-sqlite-authz.js
Original file line numberDiff line numberDiff line change
Expand Up@@ -397,10 +397,8 @@ suite('authorizer callback reentrancy', () => {
assert.deepStrictEqual(runInAuthorizer(db, cases), allRejected(cases));
});

// Only the statement being stepped is unsafe to finalize. Other statements
// on the connection have their own virtual machines, so finalizing them from
// a callback is allowed.
it('allows finalizing a statement that is not being executed', () => {
// An idle statement has no virtual-machine state or locks to release.
it('allows finalizing an idle statement', () => {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1)');
Expand All@@ -417,6 +415,43 @@ suite('authorizer callback reentrancy', () => {
});
});

// A paused iterator is busy and may hold locks between sqlite3_step() calls.
it('rejects finalizing another active statement', () => {
for (const method of ['close', 'dispose']) {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1), (2), (3)');
const stmt = db.prepare('SELECT x FROM t');
const iter = stmt.iterate();
iter.next();
let outcome = 'authorizer callback did not run';

db.setAuthorizer((actionCode) => {
if (actionCode === constants.SQLITE_DROP_TABLE) {
try {
if (method === 'close') {
stmt.close();
} else {
stmt[Symbol.dispose]();
}
outcome = 'did not throw';
} catch (err) {
outcome = `${err.code}: ${err.message}`;
}
}
return constants.SQLITE_OK;
});

assert.throws(() => db.exec('DROP TABLE t'), {
code: 'ERR_SQLITE_ERROR',
message: 'database table is locked',
});
assert.strictEqual(outcome, expectedError);
db.setAuthorizer(null);
iter.return();
}
});

// Disposal is idempotent, so a statement that is already finalized must stay
// a no-op even inside a callback. Throwing here would turn a `using` scope's
// real exception into a SuppressedError.
Expand Down
Loading
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Auto-enable theater mode on YouTube\n(function() {\n function tryTheater() {\n var btn = document.querySelector('button[aria-label=\"Theater mode\"], ytd-player #player button[title=\"Theater mode\"]');\n if (btn && !btn.classList.contains('activated')) {\n btn.click();\n }\n }\n \n // Try immediately\n tryTheater();\n \n // Try after navigation (SPA)\n var lastUrl = location.href;\n setInterval(function() {\n if (location.href !== lastUrl) {\n lastUrl = location.href;\n setTimeout(tryTheater, 500);\n }\n }, 1000);\n \n // Also try on player load\n var observer = new MutationObserver(tryTheater);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "YouTube Theater Mode Default"); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion doc/api/sqlite.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -1128,7 +1128,7 @@ Finalizes the prepared statement. An exception is thrown if the statement is
already finalized. An [`ERR_INVALID_STATE`][] error is thrown if this statement
is currently executing, which happens when the method is called from a callback
that the statement itself triggered, such as a user-defined function, an
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Other statements
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Idle statements
on the same connection can be finalized from such a callback. This method is a
wrapper around [`sqlite3_finalize()`][].

Expand Down
11 changes: 11 additions & 0 deletions src/node_sqlite.cc
Original file line numberDiff line numberDiff line change
Expand Up@@ -160,6 +160,15 @@ inline MaybeLocal<Value> IntegerToValue(Isolate* isolate,
(db)->IsInAuthorizerCallback(), \
"database cannot be accessed from an authorizer callback")

// Finalizing a busy statement from an authorizer can release its locks and
// change the outer statement's outcome.
#define THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt) \
THROW_AND_RETURN_ON_BAD_STATE( \
(env), \
(stmt)->db_->IsInAuthorizerCallback() && \
sqlite3_stmt_busy((stmt)->statement_.get()), \
"database cannot be accessed from an authorizer callback")

// A statement's virtual machine cannot be reentered while sqlite3_step() is
// running it. Finalizing it frees the VM outright, and re-running it resets the
// VM mid-execution; both are use-after-free rather than merely a contract
Expand DownExpand Up@@ -2900,6 +2909,7 @@ void StatementSync::Close(const FunctionCallbackInfo<Value>& args) {
THROW_AND_RETURN_ON_BAD_STATE(
env, stmt->IsFinalized(), "statement has been finalized");
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand All@@ -2913,6 +2923,7 @@ void StatementSync::Dispose(const FunctionCallbackInfo<Value>& args) {
return;
}
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand Down
5 changes: 2 additions & 3 deletions src/node_sqlite.h
Original file line numberDiff line numberDiff line change
Expand Up@@ -299,9 +299,8 @@ class DatabaseSync : public BaseObject {
void DecrementAuthorizerDepth() { --authorizer_depth_; }
bool IsInAuthorizerCallback() const { return authorizer_depth_ > 0; }

// Finalizing a statement frees its virtual machine, so a callback that
// SQLite invokes from inside sqlite3_step() must not finalize the statement
// being stepped. Other statements on the connection are safe to finalize.
// A callback must not finalize the statement being stepped. Other statements
// are safe unless they are busy during an authorizer callback.
void PushSteppingStatement(sqlite3_stmt* stmt) {
stepping_statements_.push_back(stmt);
}
Expand Down
43 changes: 39 additions & 4 deletions test/parallel/test-sqlite-authz.js
Original file line numberDiff line numberDiff line change
Expand Up@@ -397,10 +397,8 @@ suite('authorizer callback reentrancy', () => {
assert.deepStrictEqual(runInAuthorizer(db, cases), allRejected(cases));
});

// Only the statement being stepped is unsafe to finalize. Other statements
// on the connection have their own virtual machines, so finalizing them from
// a callback is allowed.
it('allows finalizing a statement that is not being executed', () => {
// An idle statement has no virtual-machine state or locks to release.
it('allows finalizing an idle statement', () => {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1)');
Expand All@@ -417,6 +415,43 @@ suite('authorizer callback reentrancy', () => {
});
});

// A paused iterator is busy and may hold locks between sqlite3_step() calls.
it('rejects finalizing another active statement', () => {
for (const method of ['close', 'dispose']) {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1), (2), (3)');
const stmt = db.prepare('SELECT x FROM t');
const iter = stmt.iterate();
iter.next();
let outcome = 'authorizer callback did not run';

db.setAuthorizer((actionCode) => {
if (actionCode === constants.SQLITE_DROP_TABLE) {
try {
if (method === 'close') {
stmt.close();
} else {
stmt[Symbol.dispose]();
}
outcome = 'did not throw';
} catch (err) {
outcome = `${err.code}: ${err.message}`;
}
}
return constants.SQLITE_OK;
});

assert.throws(() => db.exec('DROP TABLE t'), {
code: 'ERR_SQLITE_ERROR',
message: 'database table is locked',
});
assert.strictEqual(outcome, expectedError);
db.setAuthorizer(null);
iter.return();
}
});

// Disposal is idempotent, so a statement that is already finalized must stay
// a no-op even inside a callback. Throwing here would turn a `using` scope's
// real exception into a SuppressedError.
Expand Down
Loading
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Remove or un-stick sticky/fixed headers that block content\n(function() {\n function unstick() {\n document.querySelectorAll('header, nav, [role=\"banner\"], .header, .navbar, .sticky, .fixed-top, [style*=\"position: fixed\"], [style*=\"position:sticky\"]').forEach(function(el) {\n if (el.style.position === 'fixed' || el.style.position === 'sticky' || \n getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') {\n el.style.position = 'static';\n el.style.top = 'auto';\n el.style.zIndex = 'auto';\n }\n });\n }\n \n unstick();\n \n var observer = new MutationObserver(unstick);\n observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] });\n})();", "Kill Sticky Headers"); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion doc/api/sqlite.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -1128,7 +1128,7 @@ Finalizes the prepared statement. An exception is thrown if the statement is
already finalized. An [`ERR_INVALID_STATE`][] error is thrown if this statement
is currently executing, which happens when the method is called from a callback
that the statement itself triggered, such as a user-defined function, an
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Other statements
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Idle statements
on the same connection can be finalized from such a callback. This method is a
wrapper around [`sqlite3_finalize()`][].

Expand Down
11 changes: 11 additions & 0 deletions src/node_sqlite.cc
Original file line numberDiff line numberDiff line change
Expand Up@@ -160,6 +160,15 @@ inline MaybeLocal<Value> IntegerToValue(Isolate* isolate,
(db)->IsInAuthorizerCallback(), \
"database cannot be accessed from an authorizer callback")

// Finalizing a busy statement from an authorizer can release its locks and
// change the outer statement's outcome.
#define THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt) \
THROW_AND_RETURN_ON_BAD_STATE( \
(env), \
(stmt)->db_->IsInAuthorizerCallback() && \
sqlite3_stmt_busy((stmt)->statement_.get()), \
"database cannot be accessed from an authorizer callback")

// A statement's virtual machine cannot be reentered while sqlite3_step() is
// running it. Finalizing it frees the VM outright, and re-running it resets the
// VM mid-execution; both are use-after-free rather than merely a contract
Expand DownExpand Up@@ -2900,6 +2909,7 @@ void StatementSync::Close(const FunctionCallbackInfo<Value>& args) {
THROW_AND_RETURN_ON_BAD_STATE(
env, stmt->IsFinalized(), "statement has been finalized");
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand All@@ -2913,6 +2923,7 @@ void StatementSync::Dispose(const FunctionCallbackInfo<Value>& args) {
return;
}
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand Down
5 changes: 2 additions & 3 deletions src/node_sqlite.h
Original file line numberDiff line numberDiff line change
Expand Up@@ -299,9 +299,8 @@ class DatabaseSync : public BaseObject {
void DecrementAuthorizerDepth() { --authorizer_depth_; }
bool IsInAuthorizerCallback() const { return authorizer_depth_ > 0; }

// Finalizing a statement frees its virtual machine, so a callback that
// SQLite invokes from inside sqlite3_step() must not finalize the statement
// being stepped. Other statements on the connection are safe to finalize.
// A callback must not finalize the statement being stepped. Other statements
// are safe unless they are busy during an authorizer callback.
void PushSteppingStatement(sqlite3_stmt* stmt) {
stepping_statements_.push_back(stmt);
}
Expand Down
43 changes: 39 additions & 4 deletions test/parallel/test-sqlite-authz.js
Original file line numberDiff line numberDiff line change
Expand Up@@ -397,10 +397,8 @@ suite('authorizer callback reentrancy', () => {
assert.deepStrictEqual(runInAuthorizer(db, cases), allRejected(cases));
});

// Only the statement being stepped is unsafe to finalize. Other statements
// on the connection have their own virtual machines, so finalizing them from
// a callback is allowed.
it('allows finalizing a statement that is not being executed', () => {
// An idle statement has no virtual-machine state or locks to release.
it('allows finalizing an idle statement', () => {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1)');
Expand All@@ -417,6 +415,43 @@ suite('authorizer callback reentrancy', () => {
});
});

// A paused iterator is busy and may hold locks between sqlite3_step() calls.
it('rejects finalizing another active statement', () => {
for (const method of ['close', 'dispose']) {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1), (2), (3)');
const stmt = db.prepare('SELECT x FROM t');
const iter = stmt.iterate();
iter.next();
let outcome = 'authorizer callback did not run';

db.setAuthorizer((actionCode) => {
if (actionCode === constants.SQLITE_DROP_TABLE) {
try {
if (method === 'close') {
stmt.close();
} else {
stmt[Symbol.dispose]();
}
outcome = 'did not throw';
} catch (err) {
outcome = `${err.code}: ${err.message}`;
}
}
return constants.SQLITE_OK;
});

assert.throws(() => db.exec('DROP TABLE t'), {
code: 'ERR_SQLITE_ERROR',
message: 'database table is locked',
});
assert.strictEqual(outcome, expectedError);
db.setAuthorizer(null);
iter.return();
}
});

// Disposal is idempotent, so a statement that is already finalized must stay
// a no-op even inside a callback. Throwing here would turn a `using` scope's
// real exception into a SuppressedError.
Expand Down
Loading
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Universal Dark Mode - works on any site\n(function() {\n var enabled = true;\n \n function applyDarkMode() {\n if (!enabled) return;\n \n // Create style element if it doesn't exist\n var style = document.getElementById('universal-dark-mode-style');\n if (!style) {\n style = document.createElement('style');\n style.id = 'universal-dark-mode-style';\n document.head.appendChild(style);\n }\n \n // Dark mode CSS - inverts colors but preserves images/video\n style.textContent = '\n /* Invert everything except media */\n html {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #1a1a2e !important;\n }\n \n /* Restore images, videos, iframes, canvas */\n img, video, iframe, canvas, svg, picture, [style*=\"background-image\"] {\n filter: invert(1) hue-rotate(180deg) !important;\n }\n \n /* Preserve specific elements that should not be inverted */\n .no-dark-mode, .no-dark-mode *,\n [data-theme=\"light\"], [data-theme=\"light\"],\n .ace_editor, .ace_editor *,\n .CodeMirror, .CodeMirror *,\n .monaco-editor, .monaco-editor *,\n .markdown-body pre, .markdown-body pre *,\n .highlight, .highlight *,\n pre code, pre code * {\n filter: none !important;\n }\n \n /* Fix common UI elements */\n .modal, .popup, .dropdown-menu, .tooltip, .popover {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #2d2d44 !important;\n border-color: #444 !important;\n }\n \n /* Scrollbars */\n ::-webkit-scrollbar { background: #1a1a2e !important; }\n ::-webkit-scrollbar-thumb { background: #444 !important; }\n ::-webkit-scrollbar-thumb:hover { background: #555 !important; }\n \n /* Selection */\n ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ';\n }\n \n function removeDarkMode() {\n var style = document.getElementById('universal-dark-mode-style');\n if (style) style.remove();\n }\n \n // Toggle with Alt+Shift+D\n document.addEventListener('keydown', function(e) {\n if (e.altKey && e.shiftKey && e.key === 'D') {\n e.preventDefault();\n enabled = !enabled;\n if (enabled) {\n applyDarkMode();\n console.log('[Universal Dark Mode] Enabled');\n } else {\n removeDarkMode();\n console.log('[Universal Dark Mode] Disabled');\n }\n }\n });\n \n // Apply on load\n applyDarkMode();\n \n // Re-apply on dynamic content\n var observer = new MutationObserver(function(mutations) {\n if (enabled && !document.getElementById('universal-dark-mode-style')) {\n applyDarkMode();\n }\n });\n observer.observe(document.head, { childList: true });\n \n console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle');\n})();", "Universal Dark Mode"); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })();
Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion doc/api/sqlite.md
Original file line numberDiff line numberDiff line change
Expand Up@@ -1128,7 +1128,7 @@ Finalizes the prepared statement. An exception is thrown if the statement is
already finalized. An [`ERR_INVALID_STATE`][] error is thrown if this statement
is currently executing, which happens when the method is called from a callback
that the statement itself triggered, such as a user-defined function, an
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Other statements
aggregate function, or a [`'sqlite.db.query'`][] subscriber. Idle statements
on the same connection can be finalized from such a callback. This method is a
wrapper around [`sqlite3_finalize()`][].

Expand Down
11 changes: 11 additions & 0 deletions src/node_sqlite.cc
Original file line numberDiff line numberDiff line change
Expand Up@@ -160,6 +160,15 @@ inline MaybeLocal<Value> IntegerToValue(Isolate* isolate,
(db)->IsInAuthorizerCallback(), \
"database cannot be accessed from an authorizer callback")

// Finalizing a busy statement from an authorizer can release its locks and
// change the outer statement's outcome.
#define THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt) \
THROW_AND_RETURN_ON_BAD_STATE( \
(env), \
(stmt)->db_->IsInAuthorizerCallback() && \
sqlite3_stmt_busy((stmt)->statement_.get()), \
"database cannot be accessed from an authorizer callback")

// A statement's virtual machine cannot be reentered while sqlite3_step() is
// running it. Finalizing it frees the VM outright, and re-running it resets the
// VM mid-execution; both are use-after-free rather than merely a contract
Expand DownExpand Up@@ -2900,6 +2909,7 @@ void StatementSync::Close(const FunctionCallbackInfo<Value>& args) {
THROW_AND_RETURN_ON_BAD_STATE(
env, stmt->IsFinalized(), "statement has been finalized");
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand All@@ -2913,6 +2923,7 @@ void StatementSync::Dispose(const FunctionCallbackInfo<Value>& args) {
return;
}
THROW_AND_RETURN_IF_STEPPING(env, stmt);
THROW_AND_RETURN_IF_BUSY_IN_AUTHORIZER(env, stmt);
stmt->Close();
}

Expand Down
5 changes: 2 additions & 3 deletions src/node_sqlite.h
Original file line numberDiff line numberDiff line change
Expand Up@@ -299,9 +299,8 @@ class DatabaseSync : public BaseObject {
void DecrementAuthorizerDepth() { --authorizer_depth_; }
bool IsInAuthorizerCallback() const { return authorizer_depth_ > 0; }

// Finalizing a statement frees its virtual machine, so a callback that
// SQLite invokes from inside sqlite3_step() must not finalize the statement
// being stepped. Other statements on the connection are safe to finalize.
// A callback must not finalize the statement being stepped. Other statements
// are safe unless they are busy during an authorizer callback.
void PushSteppingStatement(sqlite3_stmt* stmt) {
stepping_statements_.push_back(stmt);
}
Expand Down
43 changes: 39 additions & 4 deletions test/parallel/test-sqlite-authz.js
Original file line numberDiff line numberDiff line change
Expand Up@@ -397,10 +397,8 @@ suite('authorizer callback reentrancy', () => {
assert.deepStrictEqual(runInAuthorizer(db, cases), allRejected(cases));
});

// Only the statement being stepped is unsafe to finalize. Other statements
// on the connection have their own virtual machines, so finalizing them from
// a callback is allowed.
it('allows finalizing a statement that is not being executed', () => {
// An idle statement has no virtual-machine state or locks to release.
it('allows finalizing an idle statement', () => {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1)');
Expand All@@ -417,6 +415,43 @@ suite('authorizer callback reentrancy', () => {
});
});

// A paused iterator is busy and may hold locks between sqlite3_step() calls.
it('rejects finalizing another active statement', () => {
for (const method of ['close', 'dispose']) {
const db = new DatabaseSync(':memory:');
db.exec('CREATE TABLE t (x INTEGER)');
db.exec('INSERT INTO t VALUES (1), (2), (3)');
const stmt = db.prepare('SELECT x FROM t');
const iter = stmt.iterate();
iter.next();
let outcome = 'authorizer callback did not run';

db.setAuthorizer((actionCode) => {
if (actionCode === constants.SQLITE_DROP_TABLE) {
try {
if (method === 'close') {
stmt.close();
} else {
stmt[Symbol.dispose]();
}
outcome = 'did not throw';
} catch (err) {
outcome = `${err.code}: ${err.message}`;
}
}
return constants.SQLITE_OK;
});

assert.throws(() => db.exec('DROP TABLE t'), {
code: 'ERR_SQLITE_ERROR',
message: 'database table is locked',
});
assert.strictEqual(outcome, expectedError);
db.setAuthorizer(null);
iter.return();
}
});

// Disposal is idempotent, so a statement that is already finalized must stay
// a no-op even inside a callback. Throwing here would turn a `using` scope's
// real exception into a SuppressedError.
Expand Down
Loading