avoid-arithmetic-comparisons
Use when code uses arithmetic operations (like subtraction) to check character ranges or ASCII values
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Use when code uses arithmetic operations (like subtraction) to check character ranges or ASCII values
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
Use when printf statements output strings without trailing newlines
Use when array is accessed with direct user input as index (0-based indexing)
Use when the program accesses a precomputed table using an offset (e.g., arr[n-1]) that introduces an arithmetic operation between the symbolic input and the index
Use when loop variables iterate over character values (e.g., ASCII codes) to represent different operations or choices
Use when code uses a loop to search for an input value in an array and then uses the found index for further computation
Use when code reads a fixed number of characters into an array and only accesses individual elements
基于 SOC 职业分类
| name | avoid-arithmetic-comparisons |
| description | Use when code uses arithmetic operations (like subtraction) to check character ranges or ASCII values |
A KLEE-coverage code transformation. Applying it rewrites C source so symbolic execution explores more of the program's behavior.
When code uses arithmetic operations (like subtraction) to check character ranges or ASCII values
Replace arithmetic comparisons with direct character literal comparisons (e.g., replace 'a - 97 >= 0' with 'a >= 'a'')
Direct character comparisons create simpler symbolic constraints that are easier for KLEE to reason about, while arithmetic operations introduce additional symbolic expressions that complicate constraint solving
Before:
#include<stdio.h>
int main() {
char a; scanf("%c",&a);
if (a - 97 >= 0) printf("a");
else printf("A");
return 0;
}
After:
#include <stdio.h>
int main()
{
char S[10]; scanf ("%s",S);
putchar(S[0]>='a'?'a':'A');
return 0;
}
4e04bb42