[starnix][ebpf] use i64 for pointer offsets

Previously pointer offsets were stored as u64. This is error prone -
there were several cases array bounds were not checked correctly. It
possible to bypass array size checks.
Changes the verified to use i64 for these offsets and updated the
verifier to use checked signed math for bounds checks. Added a test
for array bounds check bypass.

Bug: 376284982
Change-Id: I82bc2aa4ee25bb08a9ab52693383c1740e010594
Reviewed-on: https://fuchsia-review.googlesource.com/c/fuchsia/+/1149587
Reviewed-by: Benjamin Lerman <qsr@google.com>
Commit-Queue: Sergey Ulanov <sergeyu@google.com>
2 files changed
tree: b352494c5f6b3951cf85fc809d5ceb7375f5fe35
  1. boards/
  2. build/
  3. bundles/
  4. docs/
  5. examples/
  6. infra/
  7. products/
  8. scripts/
  9. sdk/
  10. src/
  11. third_party/
  12. tools/
  13. zircon/
  14. .clang-format
  15. .clang-tidy
  16. .editorconfig
  17. .git-blame-ignore-revs
  18. .gitattributes
  19. .gitignore
  20. .gitmodules
  21. .gn
  22. .ignore
  23. analysis_options.yaml
  24. AUTHORS
  25. BUILD.gn
  26. CODE_OF_CONDUCT.md
  27. CONTRIBUTING.md
  28. fuchsia.code-workspace
  29. LICENSE
  30. OWNERS
  31. PATENTS
  32. pyproject.toml
  33. pyrightconfig.json
  34. README.md
  35. rustfmt.toml
  36. shac.star
  37. shac.textproto
README.md

Fuchsia

What is Fuchsia?

Fuchsia is an open source, general purpose operating system supporting modern 64-bit Intel and ARM processors.

We expect everyone interacting with our project to respect our code of conduct.

Read more about Fuchsia's principles.

How can I build and run Fuchsia?

See Getting Started.

Where can I learn more about Fuchsia?

See fuchsia.dev.