// Global:
const WCHAR g_Table[] = L"AbCdEfGhIjKlMnOpQrStUvWxYzaBcDeFgHiJkLmNoPqRsTuVwXyZ2468013579";
// In function:
void myFunction()
{
WCHAR *randomFileName = NULL;
size_t cchFileName = 7 + (rand() % 7);
randomFileName = HeapAlloc(hHeap, HEAP_ZERO_MEMORY /*Automatically takes care of null terminator*/,
(cchFileName + 1) * sizeof(WCHAR));
if (NULL == randomFileName)
{
goto cleanup;
}
for (i = 0; i < cchFileName; i++)
{
randomFileName[i] = g_Table[rand() % _countof(g_Table)];
}
//use(randomFileName);
cleanup:
if (randomFileName != NULL)
{
HeapFree(hHeap, 0, randomFileName);
}
}
SAL 报告:
warning C6386: Buffer overrun while writing to 'randomFileName': the writable size is '((cchFileName+1))*sizeof(WCHAR)' bytes, but '4' bytes might be written.
这只是 SAL 中的一个错误吗?或者我在这里缺少什么?cchFileName
显然超过 2 个 WCHAR(即 4 个字节)。