pub struct MaybeDangling<P>(/* private fields */)
where
P: ?Sized;maybe_dangling)crypto and std only.Expand description
Allows wrapped references and boxes to dangle.
That is, if a reference (or a Box) is wrapped in MaybeDangling (including when in a
(nested) field of a compound type wrapped in MaybeDangling), it does not have to follow
pointer aliasing rules or be dereferenceable.
This can be useful when the value can become dangling while the function holding it is still executing (particularly in concurrent code). As a somewhat absurd example, consider this code:
#![feature(box_as_ptr)]
let mut boxed = Box::new(0_u32);
let ptr = Box::as_mut_ptr(&mut boxed);
// Safety: the pointer comes from a box and thus was allocated before; `box` is not used afterwards
unsafe { dealloc(ptr.cast(), Layout::new::<u32>()) };
mem::forget(boxed); // <-- this is UB!Even though the Boxeโs destructor is not run (and thus we donโt have a double free bug), this
code is still UB. This is because when moving boxed into forget, its validity invariants
are asserted, causing UB since the Box is dangling. The safety comment is as such wrong, as
moving the boxed variable as part of the forget call is a use.
To fix this we could use MaybeDangling:
#![feature(maybe_dangling, box_as_ptr)]
let mut boxed = MaybeDangling::new(Box::new(0_u32));
let ptr = Box::as_mut_ptr(boxed.as_mut());
// Safety: the pointer comes from a box and thus was allocated before; `box` is not used afterwards
unsafe { dealloc(ptr.cast(), Layout::new::<u32>()) };
mem::forget(boxed); // <-- this is OK!Note that the bit pattern must still be valid for the wrapped type. That is, references (and boxes) still must be aligned and non-null.
Additionally note that safe code can still assume that the inner value in a MaybeDangling is
not dangling โ functions like as_ref and into_inner are safe. It is not sound to
return a dangling reference in a MaybeDangling to safe code. However, it is sound
to hold such values internally inside your code โ and thereโs no way to do that without
this type. Note that other types can use this type and thus get the same effect; in particular,
ManuallyDrop will use MaybeDangling.
Note that MaybeDangling doesnโt prevent drops from being run, which can lead to UB if the
drop observes a dangling value. If you need to prevent drops from being run use ManuallyDrop
instead.
Implementationsยง
Sourceยงimpl<P> MaybeDangling<P>where
P: ?Sized,
impl<P> MaybeDangling<P>where
P: ?Sized,
Sourcepub const fn new(x: P) -> MaybeDangling<P>
๐ฌThis is a nightly-only experimental API. (maybe_dangling)Available on (crate features rustls or boring or acme) and crate feature rustls only.
pub const fn new(x: P) -> MaybeDangling<P>
maybe_dangling)rustls or boring or acme) and crate feature rustls only.Wraps a value in a MaybeDangling, allowing it to dangle.
Sourcepub const fn as_ref(&self) -> &P
๐ฌThis is a nightly-only experimental API. (maybe_dangling)Available on (crate features rustls or boring or acme) and crate feature rustls only.
pub const fn as_ref(&self) -> &P
maybe_dangling)rustls or boring or acme) and crate feature rustls only.Returns a reference to the inner value.
Note that this is UB if the inner value is currently dangling.
Sourcepub const fn as_mut(&mut self) -> &mut P
๐ฌThis is a nightly-only experimental API. (maybe_dangling)Available on (crate features rustls or boring or acme) and crate feature rustls only.
pub const fn as_mut(&mut self) -> &mut P
maybe_dangling)rustls or boring or acme) and crate feature rustls only.Returns a mutable reference to the inner value.
Note that this is UB if the inner value is currently dangling.
Sourcepub const fn into_inner(self) -> P
๐ฌThis is a nightly-only experimental API. (maybe_dangling)Available on (crate features rustls or boring or acme) and crate feature rustls only.
pub const fn into_inner(self) -> P
maybe_dangling)rustls or boring or acme) and crate feature rustls only.Extracts the value from the MaybeDangling container.
Note that this is UB if the inner value is currently dangling.
Trait Implementationsยง
Sourceยงimpl<P> Clone for MaybeDangling<P>
impl<P> Clone for MaybeDangling<P>
Sourceยงfn clone(&self) -> MaybeDangling<P>
fn clone(&self) -> MaybeDangling<P>
1.0.0 ยท Sourceยงfn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
source. Read moreSourceยงimpl<P> Debug for MaybeDangling<P>
impl<P> Debug for MaybeDangling<P>
Sourceยงimpl<P> Default for MaybeDangling<P>
impl<P> Default for MaybeDangling<P>
Sourceยงfn default() -> MaybeDangling<P>
fn default() -> MaybeDangling<P>
impl<P> Copy for MaybeDangling<P>
Auto Trait Implementationsยง
impl<P> Freeze for MaybeDangling<P>
impl<P> RefUnwindSafe for MaybeDangling<P>where
P: RefUnwindSafe + ?Sized,
impl<P> Send for MaybeDangling<P>
impl<P> Sync for MaybeDangling<P>
impl<P> Unpin for MaybeDangling<P>
impl<P> UnwindSafe for MaybeDangling<P>where
P: UnwindSafe + ?Sized,
Blanket Implementationsยง
ยงimpl<'a, T, E> AsTaggedExplicit<'a, E> for Twhere
T: 'a,
impl<'a, T, E> AsTaggedExplicit<'a, E> for Twhere
T: 'a,
ยงimpl<'a, T, E> AsTaggedImplicit<'a, E> for Twhere
T: 'a,
impl<'a, T, E> AsTaggedImplicit<'a, E> for Twhere
T: 'a,
Sourceยงimpl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Sourceยงfn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Sourceยงimpl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
ยงimpl<T> FutureExt for T
impl<T> FutureExt for T
ยงfn with_context(self, otel_cx: Context) -> WithContext<Self> โ
fn with_context(self, otel_cx: Context) -> WithContext<Self> โ
ยงfn with_current_context(self) -> WithContext<Self> โ
fn with_current_context(self) -> WithContext<Self> โ
ยงimpl<T> Instrument for T
impl<T> Instrument for T
ยงfn instrument(self, span: Span) -> Instrumented<Self> โ
fn instrument(self, span: Span) -> Instrumented<Self> โ
ยงfn in_current_span(self) -> Instrumented<Self> โ
fn in_current_span(self) -> Instrumented<Self> โ
Sourceยงimpl<T> IntoEither for T
impl<T> IntoEither for T
Sourceยงfn into_either(self, into_left: bool) -> Either<Self, Self> โ
fn into_either(self, into_left: bool) -> Either<Self, Self> โ
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSourceยงfn into_either_with<F>(self, into_left: F) -> Either<Self, Self> โ
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> โ
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreยงimpl<T> Pointable for T
impl<T> Pointable for T
ยงimpl<T> PolicyExt for Twhere
T: ?Sized,
impl<T> PolicyExt for Twhere
T: ?Sized,
ยงfn and<P, B, E>(self, other: P) -> And<T, P>
fn and<P, B, E>(self, other: P) -> And<T, P>
Policy that returns Action::Follow only if self and other return
Action::Follow. Read more