You can not select more than 25 topics Topics must start with a chinese character,a letter or number, can include dashes ('-') and can be up to 35 characters long.

ChangeLog 22 kB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478
  1. Next Release 0.15
  2. =====================
  3. Deprecated and removed features:
  4. --------------------------------
  5. ...none yet...
  6. Other changes
  7. --------------
  8. * Add a json_parse binary, for use in testing changes (not installed).
  9. * Issue #471: always create directories with mode 0755, regardless of umask.
  10. * Added a JSON_TOKENER_ALLOW_TRAILING_CHARS flag to allow multiple objects
  11. to be parsed even when JSON_TOKENER_STRICT is set.
  12. ***
  13. 0.14 (up to commit 9ed00a6, 2020/04/14)
  14. =========================================
  15. Deprecated and removed features:
  16. --------------------------------
  17. * bits.h has been removed
  18. * lh_abort() has been removed
  19. * lh_table_lookup() has been removed, use lh_table_lookup_ex() instead.
  20. * Remove TRUE and FALSE defines, use 1 and 0 instead.
  21. Build changes:
  22. --------------
  23. ## Deprecated and removed features:
  24. * bits.h has been removed
  25. * lh_abort() has been removed
  26. * lh_table_lookup() has been removed, use lh_table_lookup_ex() instead.
  27. * Remove TRUE and FALSE defines, use 1 and 0 instead.
  28. * autoconf support, including autogen.sh, has been removed. See details about cmake, below.
  29. * With the addition of json_tokener_get_parse_end(), access to internal fields of json_tokener, as well as use of many other symbols and types in json_tokener.h, is deprecated now.
  30. * The use of Android.configure.mk to build for Android no longer works, and it is unknown how (or if) the new cmake-based build machinery can be used.
  31. * Reports of success, or pull requests to correct issues are welcome.
  32. ## Notable improvements and new features
  33. ### Builds and documentation
  34. * Build machinery has been switched to CMake. See README.md for details about how to build.
  35. * TL;DR: `mkdir build ; cd build ; cmake -DCMAKE_INSTALL_PREFIX=/some/path ../json-c ; make all test install`
  36. * To ease the transition, there is a `cmake-configure` wrapper that emulates the old autoconf-based configure script.
  37. * This has enabled improvements to the build on Windows system; also all public functions have been fixed to be properly exported. For best results, use Visual Studio 2015 or newer.
  38. * The json-c style guide has been updated to specify the use of clang-format, and all code has been reformatted.
  39. * Since many lines of code have trivial changes now, when using git blame, be sure to specify -w
  40. * Numerous improvements have been made to the documentation including function effects on refcounts, when passing a NULL is safe, and so on.
  41. ### json_tokener changes
  42. * Added a json_tokener_get_parse_end() function to replace direct access of tok->char_offset.
  43. * The char_offset field, and the rest of the json_tokener structure remain exposed for now, but expect a future release to hide it like is done with json_object_private.h
  44. * json_tokener_parse_ex() now accepts a new JSON_TOKENER_VALIDATE_UTF8 flag to validate that input is UTF8.
  45. * If validation fails, json_tokener_get_error(tok) will return json_tokener_error_parse_utf8_string (see enum json_tokener_error).
  46. ### Other changes and additions
  47. * Add support for unsigned 64-bit integers, uint64_t, to gain one extra bit of magnitude for positive ints.
  48. * json_tokener will now parse values up to UINT64_MAX (18446744073709551615)
  49. * Existing methods returning int32_t or int64_t will cap out-of-range values at INT32_MAX or INT64_MAX, preserving existing behavior.
  50. * The implementation includes the possibility of easily extending this to larger sizes in the future.
  51. * A total of 7 new functions were added:
  52. * json_object_get_uint64 ( struct json_object const* jso )
  53. * json_object_new_uint64 ( uint64_t i )
  54. * json_object_set_uint64 ( struct json_object* jso, uint64_t new_value )
  55. * json_parse_uint64 ( char const* buf, uint64_t* retval )
  56. * See description of uint64 support, above.
  57. * json_tokener_get_parse_end ( struct json_tokener* tok )
  58. * See details under "json_tokener changes", above.
  59. * json_object_from_fd_ex ( int fd, int in_depth )
  60. * Allows the max nesting depth to be specified.
  61. * json_object_new_null ( )
  62. * Simply returns NULL. Its use is not recommended.
  63. * The size of struct json_object has decreased from 96 bytes to 88 bytes.
  64. ### Testing
  65. * Many updates were made to test cases, increasing code coverage.
  66. * There is now a quick way (JSONC_TEST_TRACE=1) to turn on shell tracing in tests.
  67. * To run tests, use `make test`; the old "check" target no longer exists.
  68. ## Significant bug fixes
  69. For the full list of issues and pull requests since the previous release, please see issues_closed_for_0.14.md
  70. * [Issue #389](https://github.com/json-c/json-c/issues/389): Add an assert to explicitly crash when _ref_count is corrupted, instead of a later "double free" error.
  71. * [Issue #407](https://github.com/json-c/json-c/issues/407): fix incorrect casts in calls to ctype functions (isdigit and isspace) so we don't crash when asserts are enabled on certain platforms and characters > 128 are parsed.
  72. * [Issue #418](https://github.com/json-c/json-c/issues/418): Fix docs for json_util_from_fd and json_util_from_file to say that they return NULL on failures.
  73. * [Issue #422](https://github.com/json-c/json-c/issues/422): json_object.c:set errno in json_object_get_double() when called on a json_type_string object with bad content.
  74. * [Issue #453](https://github.com/json-c/json-c/issues/453): Fixed misalignment in JSON serialization when JSON_C_TO_STRING_SPACED and JSON_C_TO_STRING_PRETTY are used together.
  75. * [Issue #463](https://github.com/json-c/json-c/issues/463): fix newlocale() call to use LC_NUMERIC_MASK instead of LC_NUMERIC, and remove incorrect comment.
  76. * [Issue #486](https://github.com/json-c/json-c/issues/486): append a missing ".0" to negative double values to ensure they are serialized as floating point numbers.
  77. * [Issue #488](https://github.com/json-c/json-c/issues/488): use JSON_EXPORT on functions so they are properly exported on Windows.
  78. * [Issue #539](https://github.com/json-c/json-c/issues/539): use an internal-only serializer function in json_object_new_double_s() to avoid potential conflicts with user code that uses the json_object_userdata_to_json_string serializer.
  79. ***
  80. 0.13.1 (up to commit 0f814e5, 2018/03/04)
  81. =========================================
  82. * Bump the major version of the .so library generated up to 4.0 to avoid
  83. conflicts because some downstream packagers of json-c had already done
  84. their own bump to ".so.3" for a much older 0.12 release.
  85. * Add const size_t json_c_object_sizeof()
  86. * Avoid invalid free (and thus a segfault) when ref_count gets < 0
  87. * PR#394: fix handling of custom double formats that include a ".0"
  88. * Avoid uninitialized variable warnings in json_object_object_foreach
  89. * Issue #396: fix build for certain uClibc based systems.
  90. * Add a top level fuzz directory for fuzzers run by OSS-Fuzz
  91. 0.13 (up to commit 5dae561, 2017/11/29)
  92. =================================
  93. This release, being three and a half years after the 0.12 branch (f84d9c),
  94. has quite a number of changes included. The following is a sampling of
  95. the most significant ones.
  96. Since the 0.12 release, 250 issues and pull requests have been closed.
  97. See issues_closed_for_0.13.md for a complete list.
  98. Deprecated and removed features:
  99. --------------------------------
  100. * All internal use of bits.h has been eliminated. The file will be removed.
  101. Do not use: hexdigit(), error_ptr(), error_descrition() and it_error()
  102. * lh_abort() is deprecated. It will be removed.
  103. Behavior changes:
  104. -----------------
  105. * Tighten the number parsing algorithm to raise errors instead of truncating
  106. the results. For example 12.3.4 or 2015-01-15, which now return null.
  107. See commit 99d8fc
  108. * Use size_t for array length and size. Platforms where sizeof(size_t) != sizeof(int) may not be backwards compatible
  109. See commits 45c56b, 92e9a5 and others.
  110. * Check for failue when allocating memory, returning NULL and errno=ENOMEM.
  111. See commit 2149a04.
  112. * Change json_object_object_add() return type from void to int, and will return -1 on failures, instead of exiting. (Note: this is not an ABI change)
  113. New features:
  114. -------------
  115. * We're aiming to follow RFC 7159 now.
  116. * Add a couple of additional option to json_object_to_json_string_ext:
  117. JSON_C_TO_STRING_PRETTY_TAB
  118. JSON_C_TO_STRING_NOSLASHESCAPE
  119. * Add a json_object_object_add_ex() function to allow for performance
  120. improvements when certain constraints are known to be true.
  121. * Make serialization format of doubles configurable, in two different ways:
  122. Call json_object_set_serializer with json_object_double_to_json_string and a custom
  123. format on each double object, or
  124. Call json_c_set_serialization_double_format() to set a global or thread-wide format.
  125. * Add utility function for comparing json_objects - json_object_equal()
  126. * Add a way to copy entire object trees: json_object_deep_copy()
  127. * Add json_object_set_<type> function to modify the value of existing json_object's
  128. without the need to recreate them. Also add a json_object_int_inc function to
  129. adjust an int's value.
  130. * Add support for JSON pointer, RFC 6901. See json_pointer.h
  131. * Add a json_util_get_last_err() function to retrieve the string describing the
  132. cause of errors, instead of printing to stderr.
  133. * Add perllike hash function for strings, and json_global_set_string_hash() 8f8d03d
  134. * Add a json_c_visit() function to provide a way to iterate over a tree of json-c objects.
  135. Notable bug fixes and other improvements:
  136. -----------------------------------------
  137. * Make reference increment and decrement atomic to allow passing json objects between threads.
  138. * Fix json_object_object_foreach to avoid uninitialized variable warnings.
  139. * Improve performance by removing unneeded data items from hashtable code and reducing duplicate hash computation.
  140. * Improve performance by storing small strings inside json_object
  141. * Improve performance of json_object_to_json_string by removing variadic printf. commit 9ff0f49
  142. * Issue #371: fix parsing of "-Infinity", and avoid needlessly copying the input when doing so.
  143. * Fix stack buffer overflow in json_object_double_to_json_string_format() - commit 2c2deb87
  144. * Fix various potential null ptr deref and int32 overflows
  145. * Issue #332: fix a long-standing bug in array_list_put_idx() where it would attempt to free previously free'd entries due to not checking the current array length.
  146. * Issue #195: use uselocale() instead of setlocale() in json_tokener to behave better in threaded environments.
  147. * Issue #275: fix out of bounds read when handling unicode surrogate pairs.
  148. * Ensure doubles that happen to be a whole number are emitted with ".0" - commit ca7a19
  149. * PR#331: for Visual Studio, use a snprintf/vsnprintf wrapper that ensures the string is terminated.
  150. * Fix double to int cast overflow in json_object_get_int64.
  151. * Clamp double to int32 when narrowing in json_object_get_int.
  152. * Use strtoll() to parse ints - instead of sscanf
  153. * Miscellaneous smaller changes, including removing unused variables, fixing warning
  154. about uninitialized variables adding const qualifiers, reformatting code, etc...
  155. Build changes:
  156. --------------
  157. * Add Appveyor and Travis build support
  158. * Switch to using CMake when building on Windows with Visual Studio.
  159. A dynamic .dll is generated instead of a .lib
  160. config.h is now generated, config.h.win32 should no longer be manually copied
  161. * Add support for MacOS through CMake too.
  162. * Enable silent build by default
  163. * Link against libm when needed
  164. * Add support for building with AddressSanitizer
  165. * Add support for building with Clang
  166. * Add a --enable-threading configure option, and only use the (slower) __sync_add_and_fetch()/__sync_sub_and_fetch() function when it is specified.
  167. List of new functions added:
  168. ----------------------------
  169. ### json_object.h
  170. * array_list_bsearch()
  171. * array_list_del_idx()
  172. * json_object_to_json_string_length()
  173. * json_object_get_userdata()
  174. * json_object_set_userdata()
  175. * json_object_object_add_ex()
  176. * json_object_array_bsearch()
  177. * json_object_array_del_idx()
  178. * json_object_set_boolean()
  179. * json_object_set_int()
  180. * json_object_int_inc()
  181. * json_object_set_int64()
  182. * json_c_set_serialization_double_format()
  183. * json_object_double_to_json_string()
  184. * json_object_set_double()
  185. * json_object_set_string()
  186. * json_object_set_string_len()
  187. * json_object_equal()
  188. * json_object_deep_copy()
  189. ### json_pointer.h
  190. * json_pointer_get()
  191. * json_pointer_getf()
  192. * json_pointer_set()
  193. * json_pointer_setf()
  194. ### json_util.h
  195. * json_object_from_fd()
  196. * json_object_to_fd()
  197. * json_util_get_last_err()
  198. ### json_visit.h
  199. * json_c_visit()
  200. ### linkhash.h
  201. * json_global_set_string_hash()
  202. * lh_table_resize()
  203. ### printbuf.h
  204. * printbuf_strappend()
  205. 0.12.1
  206. ======
  207. * Minimal changes to address compile issues.
  208. 0.12
  209. ====
  210. * Address security issues:
  211. * CVE-2013-6371: hash collision denial of service
  212. * CVE-2013-6370: buffer overflow if size_t is larger than int
  213. * Avoid potential overflow in json_object_get_double
  214. * Eliminate the mc_abort() function and MC_ABORT macro.
  215. * Make the json_tokener_errors array local. It has been deprecated for
  216. a while, and json_tokener_error_desc() should be used instead.
  217. * change the floating point output format to %.17g so values with
  218. more than 6 digits show up in the output.
  219. * Remove the old libjson.so name compatibility support. The library is
  220. only created as libjson-c.so now and headers are only installed
  221. into the ${prefix}/json-c directory.
  222. * When supported by the linker, add the -Bsymbolic-functions flag.
  223. * Various changes to fix the build on MSVC.
  224. * Make strict mode more strict:
  225. * number must not start with 0
  226. * no single-quote strings
  227. * no comments
  228. * trailing char not allowed
  229. * only allow lowercase literals
  230. * Added a json_object_new_double_s() convenience function to allow
  231. an exact string representation of a double to be specified when
  232. creating the object and use it in json_tokener_parse_ex() so
  233. a re-serialized object more exactly matches the input.
  234. * Add support NaN and Infinity
  235. 0.11
  236. ====
  237. * IMPORTANT: the name of the library has changed to libjson-c.so and
  238. the header files are now in include/json-c.
  239. The pkgconfig name has also changed from json to json-c.
  240. You should change your build to use appropriate -I and -l options.
  241. A compatibility shim is in place so builds using the old name will
  242. continue to work, but that will be removed in the next release.
  243. * Maximum recursion depth is now a runtime option.
  244. json_tokener_new() is provided for compatibility.
  245. json_tokener_new_ex(depth)
  246. * Include json_object_iterator.h in the installed headers.
  247. * Add support for building on Android.
  248. * Rewrite json_object_object_add to replace just the value if the key already exists so keys remain valid.
  249. * Make it safe to delete keys while iterating with the json_object_object_foreach macro.
  250. * Add a json_set_serializer() function to allow the string output of a json_object to be customized.
  251. * Make float parsing locale independent.
  252. * Add a json_tokener_set_flags() function and a JSON_TOKENER_STRICT flag.
  253. * Enable -Werror when building.
  254. * speed improvements to parsing 64-bit integers on systems with working sscanf
  255. * Add a json_object_object_length function.
  256. * Fix a bug (buffer overrun) when expanding arrays to more than 64 entries.
  257. 0.10
  258. ====
  259. * Add a json_object_to_json_string_ext() function to allow output to be
  260. formatted in a more human readable form.
  261. * Add json_object_object_get_ex(), a NULL-safe get object method, to be able
  262. to distinguish between a key not present and the value being NULL.
  263. * Add an alternative iterator implementation, see json_object_iterator.h
  264. * Make json_object_iter public to enable external use of the
  265. json_object_object_foreachC macro.
  266. * Add a printbuf_memset() function to provide an effecient way to set and
  267. append things like whitespace indentation.
  268. * Adjust json_object_is_type and json_object_get_type so they return
  269. json_type_null for NULL objects and handle NULL passed to
  270. json_objct_object_get().
  271. * Rename boolean type to json_bool.
  272. * Fix various compile issues for Visual Studio and MinGW.
  273. * Allow json_tokener_parse_ex() to be re-used to parse multiple object.
  274. Also, fix some parsing issues with capitalized hexadecimal numbers and
  275. number in E notation.
  276. * Add json_tokener_get_error() and json_tokener_error_desc() to better
  277. encapsulate the process of retrieving errors while parsing.
  278. * Various improvements to the documentation of many functions.
  279. * Add new json_object_array_sort() function.
  280. * Fix a bug in json_object_get_int(), which would incorrectly return 0
  281. when called on a string type object.
  282. Eric Haszlakiewicz
  283. * Add a json_type_to_name() function.
  284. Eric Haszlakiewicz
  285. * Add a json_tokener_parse_verbose() function.
  286. Jehiah Czebotar
  287. * Improve support for null bytes within JSON strings.
  288. Jehiah Czebotar
  289. * Fix file descriptor leak if memory allocation fails in json_util
  290. Zachary Blair, zack_blair at hotmail dot com
  291. * Add int64 support. Two new functions json_object_net_int64 and
  292. json_object_get_int64. Binary compatibility preserved.
  293. Eric Haszlakiewicz, EHASZLA at transunion com
  294. Rui Miguel Silva Seabra, rms at 1407 dot org
  295. * Fix subtle bug in linkhash where lookup could hang after all slots
  296. were filled then successively freed.
  297. Spotted by Jean-Marc Naud, j dash m at newtraxtech dot com
  298. * Make json_object_from_file take const char *filename
  299. Spotted by Vikram Raj V, vsagar at attinteractive dot com
  300. * Add handling of surrogate pairs (json_tokener.c, test4.c, Makefile.am)
  301. Brent Miller, bdmiller at yahoo dash inc dot com
  302. * Correction to comment describing printbuf_memappend in printbuf.h
  303. Brent Miller, bdmiller at yahoo dash inc dot com
  304. 0.9
  305. ===
  306. * Add README.html README-WIN32.html config.h.win32 to Makefile.am
  307. Michael Clark, <michael@metaparadigm.com>
  308. * Add const qualifier to the json_tokener_parse functions
  309. Eric Haszlakiewicz, EHASZLA at transunion dot com
  310. * Rename min and max so we can never clash with C or C++ std library
  311. Ian Atha, thatha at yahoo dash inc dot com
  312. * Fix any noticeable spelling or grammar errors.
  313. * Make sure every va_start has a va_end.
  314. * Check all pointers for validity.
  315. Erik Hovland, erik at hovland dot org
  316. * Fix json_object_get_boolean to return false for empty string
  317. Spotted by Vitaly Kruglikov, Vitaly dot Kruglikov at palm dot com
  318. * optimizations to json_tokener_parse_ex(), printbuf_memappend()
  319. Brent Miller, bdmiller at yahoo dash inc dot com
  320. * Disable REFCOUNT_DEBUG by default in json_object.c
  321. * Don't use this as a variable, so we can compile with a C++ compiler
  322. * Add casts from void* to type of assignment when using malloc
  323. * Add #ifdef __cplusplus guards to all of the headers
  324. * Add typedefs for json_object, json_tokener, array_list, printbuf, lh_table
  325. Michael Clark, <michael@metaparadigm.com>
  326. * Null pointer dereference fix. Fix json_object_get_boolean strlen test
  327. to not return TRUE for zero length string. Remove redundant includes.
  328. Erik Hovland, erik at hovland dot org
  329. * Fixed warning reported by adding -Wstrict-prototypes
  330. -Wold-style-definition to the compilatin flags.
  331. Dotan Barak, dotanba at gmail dot com
  332. * Add const correctness to public interfaces
  333. Gerard Krol, g dot c dot krol at student dot tudelft dot nl
  334. 0.8
  335. ===
  336. * Add va_end for every va_start
  337. Dotan Barak, dotanba at gmail dot com
  338. * Add macros to enable compiling out debug code
  339. Geoffrey Young, geoff at modperlcookbook dot org
  340. * Fix bug with use of capital E in numbers with exponents
  341. Mateusz Loskot, mateusz at loskot dot net
  342. * Add stddef.h include
  343. * Patch allows for json-c compile with -Werror and not fail due to
  344. -Wmissing-prototypes -Wstrict-prototypes -Wmissing-declarations
  345. Geoffrey Young, geoff at modperlcookbook dot org
  346. 0.7
  347. ===
  348. * Add escaping of backslash to json output
  349. * Add escaping of foward slash on tokenizing and output
  350. * Changes to internal tokenizer from using recursion to
  351. using a depth state structure to allow incremental parsing
  352. 0.6
  353. ===
  354. * Fix bug in escaping of control characters
  355. Johan Björklund, johbjo09 at kth dot se
  356. * Remove include "config.h" from headers (should only
  357. be included from .c files)
  358. Michael Clark <michael@metaparadigm.com>
  359. 0.5
  360. ===
  361. * Make headers C++ compatible by change *this to *obj
  362. * Add ifdef C++ extern "C" to headers
  363. * Use simpler definition of min and max in bits.h
  364. Larry Lansing, llansing at fuzzynerd dot com
  365. * Remove automake 1.6 requirement
  366. * Move autogen commands into autogen.sh. Update README
  367. * Remove error pointer special case for Windows
  368. * Change license from LGPL to MIT
  369. Michael Clark <michael@metaparadigm.com>
  370. 0.4
  371. ===
  372. * Fix additional error case in object parsing
  373. * Add back sign reversal in nested object parse as error pointer
  374. value is negative, while error value is positive.
  375. Michael Clark <michael@metaparadigm.com>
  376. 0.3
  377. ===
  378. * fix pointer arithmetic bug for error pointer check in is_error() macro
  379. * fix type passed to printbuf_memappend in json_tokener
  380. * update autotools bootstrap instructions in README
  381. Michael Clark <michael@metaparadigm.com>
  382. 0.2
  383. ===
  384. * printbuf.c - C. Watford (christopher.watford@gmail.com)
  385. Added a Win32/Win64 compliant implementation of vasprintf
  386. * debug.c - C. Watford (christopher.watford@gmail.com)
  387. Removed usage of vsyslog on Win32/Win64 systems, needs to be handled
  388. by a configure script
  389. * json_object.c - C. Watford (christopher.watford@gmail.com)
  390. Added scope operator to wrap usage of json_object_object_foreach, this
  391. needs to be rethought to be more ANSI C friendly
  392. * json_object.h - C. Watford (christopher.watford@gmail.com)
  393. Added Microsoft C friendly version of json_object_object_foreach
  394. * json_tokener.c - C. Watford (christopher.watford@gmail.com)
  395. Added a Win32/Win64 compliant implementation of strndup
  396. * json_util.c - C. Watford (christopher.watford@gmail.com)
  397. Added cast and mask to suffice size_t v. unsigned int conversion
  398. correctness
  399. * json_tokener.c - sign reversal issue on error info for nested object parse
  400. spotted by Johan Björklund (johbjo09 at kth.se)
  401. * json_object.c - escape " in json_escape_str
  402. * Change to automake and libtool to build shared and static library
  403. Michael Clark <michael@metaparadigm.com>
  404. 0.1
  405. ===
  406. * initial release