Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

I've made Coverity scan #175

Open
chipitsine opened this issue Aug 28, 2024 · 11 comments
Open

I've made Coverity scan #175

chipitsine opened this issue Aug 28, 2024 · 11 comments

Comments

@chipitsine
Copy link
Contributor

image image image

let me know if you are interested in examining findings

@lurcher
Copy link
Owner

lurcher commented Aug 28, 2024 via email

@chipitsine
Copy link
Contributor Author

great. I'd suggest to have a look and decide whether Coverity scan is useful (maybe it is not)

please register at https://scan.coverity.com/projects/chipitsine-unixodbc?tab=overview
and apply there for adding yourself to the project. once I approve it, you'll have an access to view findings

@chipitsine
Copy link
Contributor Author

permission granted. you should be able to see "view defects" button.
be kind to Coverity, it tries best, but UX sometimes is suprising

image

@lurcher
Copy link
Owner

lurcher commented Aug 28, 2024 via email

@chipitsine
Copy link
Contributor Author

Story behind that is https://www.zabbix.com/forum/zabbix-troubleshooting-and-problems/470258-zabbix-odbc-issue-with-monitoring-oracle-db

We observe something that looks like an issue either on unixODBC side or zabbix side

I'll be back :)

@chipitsine
Copy link
Contributor Author

I've noticed some fixes: 9135558

I'll rerun analysis later today. Due to coverrity limits we can run as much as 3 scan daily.

@chipitsine
Copy link
Contributor Author

@lurcher , what do you think if I'll create a pull request which will set up weekly (or monthly) run of Coverity scan ?
after all it was somewhat useful

@lurcher
Copy link
Owner

lurcher commented Nov 11, 2024

Are there more changes like this left to do?

@chipitsine
Copy link
Contributor Author

"like this" you mean introducing new workflow ? or addressing coverity findings ?

@lurcher
Copy link
Owner

lurcher commented Nov 11, 2024

No, I mean if you ran it now, would it suggest things to do?

@chipitsine
Copy link
Contributor Author

there are 129 findings. I'm afraid to touch that code, it is too complicated and fragile (for me) to change it without tests. Maybe, I'll try it after I implement some tests

image

currently, I'm done with reviewing findings. I would like to setup monthly scan workflow (no need to run often taking into account that changes are infrequent)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants