fs: cpSync copyDir fast path can terminate on filesystem errors
Nessuno ha ancora preso questa issue.
- Lingua principale
- JavaScript
- Stelle
- 122k
- Fork
- 37.3k
- Merge medio
- 4g 2h
- PR unite (30g)
- 283
Descrizione
Version
v22.17.0 and later; verified against v27.0.0-pre built from current main.
Platform
Microsoft Windows NT 10.0.26100.0 x64
Subsystem
fs
What steps will reproduce the bug?
Run this script on Windows:
'use strict';
const assert = require('node:assert');
const { execFileSync, spawnSync } = require('node:child_process');
const {
cpSync,
existsSync,
mkdirSync,
rmSync,
writeFileSync,
} = require('node:fs');
const { tmpdir } = require('node:os');
const { join } = require('node:path');
function run(command, args) {
return execFileSync(command, args, {
encoding: 'utf8',
stdio: ['ignore', 'pipe', 'pipe'],
});
}
function currentWindowsUser() {
return run('whoami', []).trim();
}
function restrictDirectory(dir) {
run('icacls', [dir, '/deny', `${currentWindowsUser()}:(OI)(CI)(RX)`]);
}
function restoreDirectory(dir) {
if (existsSync(dir)) {
run('icacls', [dir, '/remove:d', currentWindowsUser()]);
}
}
if (process.argv[2] === 'child') {
assert.throws(() => {
cpSync(process.argv[3], process.argv[4], { recursive: true });
});
process.exit(0);
}
const root = join(tmpdir(), `node-cpsync-${process.pid}`);
const src = join(root, 'src');
const dest = join(root, 'dest');
const restrictedDir = join(src, 'restricted');
mkdirSync(restrictedDir, { recursive: true });
writeFileSync(join(src, 'readable.txt'), 'readable\n');
writeFileSync(join(restrictedDir, 'blocked.txt'), 'blocked\n');
restrictDirectory(restrictedDir);
try {
const child = spawnSync(process.execPath, [__filename, 'child', src, dest], {
encoding: 'utf8',
});
console.log({
status: child.status,
signal: child.signal,
stdout: child.stdout,
stderr: child.stderr,
});
} finally {
restoreDirectory(restrictedDir);
rmSync(root, { recursive: true, force: true });
}
The important part is that fs.cpSync(src, dest, { recursive: true }) is called without a filter option, so it uses the native copyDir fast path.
How often does it reproduce? Is there a required condition?
It reproduces when the native fs.cpSync() copyDir fast path encounters a filesystem error during directory iteration, path canonicalization, or file type checks.
The fast path is used for recursive directory copies when no filter option is provided. Passing filter: () => true avoids this path and falls back to the JavaScript implementation.
What is the expected behavior? Why is that the expected behavior?
fs.cpSync() should report the filesystem failure as a JavaScript exception that callers can catch with try/catch or assert.throws().
Filesystem APIs should convert native filesystem failures into JavaScript errors instead of terminating the process.
What do you see instead?
Some std::filesystem calls in the native copyDir implementation use throwing overloads. When those operations fail, the C++ exception can bypass Node's normal error conversion.
Instead of a catchable JavaScript exception, the process can terminate in the native layer.
Additional information
This appears to come from src/node_file.cc's CpSyncCopyDir implementation. Some calls already use std::error_code, but others use throwing std::filesystem overloads, including directory iteration and file type/path checks.
The fix is to use non-throwing std::filesystem overloads throughout the copyDir path and convert each failure with ThrowStdErrException.
Guida per i contributori
Apri la guida per i contributori
Come iniziare
- Leggi tutta la issue e poi la guida ai contributi del progetto.
- Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
- Fai un fork del repository e lavora su un branch.
- Apri una pull request che faccia riferimento al numero della issue.
Direzione di ricerca
Riproduci il problema di Windows con lo script nell’issue, quindi esamina src/node_file.cc e l’implementazione di CpSyncCopyDir. Segui l’iterazione delle directory, la canonicalizzazione dei percorsi e i controlli del tipo di file, e verifica che gli errori del filesystem diventino eccezioni JavaScript intercettabili invece di terminare il processo.
Scritto dal modello di indicizzazione a partire dal testo della issue.
Valutazione
- Stack tecnologico
- cpp, javascript, node.js
- Ambito
- backend, operating-systems
- Tipo di issue
- Bug
- Difficoltà
- 4/5
- Tempo stimato
- 3-5 giorni
- Stato di attività
- Tranquilla
- Chiarezza
- Abbastanza chiara
- Idoneità per principianti
- 64/100