False positive - Unused static function
- 主要語言
- CodeQL
- 星號
- 10.1k
- 分支
- 2.1k
- 平均合併
- 2 天 15 小時
- 30 天內合併 PR
- 141
描述
In a project using CodeQL scanning, all 4 "Unused static function" complaints look like false positives.
The easier two are:
https://github.com/andyhhp/xtf/security/code-scanning/51
https://github.com/andyhhp/xtf/security/code-scanning/52
Where the caller is the subsequent function.
Two others are also false positives, but the analysis might be suffering from weak functions.
https://github.com/andyhhp/xtf/security/code-scanning/47
https://github.com/andyhhp/xtf/security/code-scanning/48
In these two examples, there is a weak form of `arch_fmt_pointer()` which doesn't call `x86_decode_exinfo()` that could be interfering with analysis.
In reality, compilers are fairly hot on warnings about unused static functions,and this project is -Wall/-Werror on both GCC and Clang
貢獻指南
評估
這個 Issue 還沒有評估資料。