[avocado-utils] : add validation for perf binary in ensure_tool()#6272
[avocado-utils] : add validation for perf binary in ensure_tool()#6272Sumitupadhyay1 wants to merge 3 commits intoavocado-framework:masterfrom
Conversation
- Added ensure_tool() function to validate availability of tools from either a custom binary path or distro packages. - Returns tool version string after validation. - Handles error cases: * Missing custom path * Non-functional binary * Missing package map - Integrates with install_distro_packages() for dependency handling. Signed-off-by: Sumit Kumar <sumitkum@amd.com>
Summary of ChangesHello @Sumitupadhyay1, I'm Gemini Code Assist1! I'm currently reviewing this pull request and will post my feedback shortly. In the meantime, here's a summary to help you and other reviewers quickly get up to speed! This pull request enhances the Highlights
Changelog
Using Gemini Code AssistThe full guide for Gemini Code Assist can be found on our documentation page, here are some quick tips. Invoking Gemini You can request assistance from Gemini at any point by creating a comment using either
Customization To customize Gemini Code Assist for GitHub experience, repository maintainers can create a configuration file and/or provide a custom code review style guide (such as PEP-8 for Python) by creating and adding files to a Limitations & Feedback Gemini Code Assist may make mistakes. Please leave feedback on any instances where its feedback is incorrect or counter productive. You can react with 👍 and 👎 on @gemini-code-assist comments. If you're interested in giving your feedback about your experience with Gemini Code Assist for Github and other Google products, sign up here. You can also get AI-powered code generation, chat, as well as code reviews directly in the IDE at no cost with the Gemini Code Assist IDE Extension. Footnotes
|
There was a problem hiding this comment.
Code Review
The pull request introduces a new ensure_tool function to validate the availability and functionality of a given tool, either from a custom path or by installing it via distro packages, which improves the reliability and reproducibility of tests. However, this new utility function is vulnerable to command injection due to the use of shell=True with unvalidated user input (tool_name and custom_path). It is recommended to remove shell=True to prevent the shell from interpreting metacharacters and consider using shlex.quote() for inputs that might contain spaces. The error handling for missing paths, non-functional binaries, and missing package maps is otherwise clear and appropriate.
Co-authored-by: gemini-code-assist[bot] <176961590+gemini-code-assist[bot]@users.noreply.github.com>
|
The failing docs checks are upstream issues, not caused by this PR. They match the problem already fixed in PR: #6273 and applying those changes locally makes the build pass. |
|
@richtja Could you please review this Pull Request. |
|
@richtja, Could you please review the pull request? Merging it would help with testing the avocado-misc-tests. |
|
@richtja Could you please review this Pull Request. |
richtja
left a comment
There was a problem hiding this comment.
Hi @Sumitupadhyay1, thanks for your contribution, and sorry for late reply. I have few comments which you can look into.
51f9458 to
a4022c3
Compare
Co-authored-by: gemini-code-assist[bot] <176961590+gemini-code-assist[bot]@users.noreply.github.com>
a4022c3 to
ece60cd
Compare
|
Hi @richtja, thanks for the review. I have moved the imports to the top of the file and added error handling for the package installation failure case. Could you please take another look on this pull request? |
richtja
left a comment
There was a problem hiding this comment.
Hi @Sumitupadhyay1, thank you for the changes. It almost LGTM, we just need to make CI happy. The Packit failures IMO are not related to this, but the static check failures need fixes. You can use pre-commit to run static checks locally to fix it. Please look into that. Thank you.
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## master #6272 +/- ##
==========================================
- Coverage 75.02% 73.81% -1.21%
==========================================
Files 206 205 -1
Lines 22510 22585 +75
==========================================
- Hits 16888 16671 -217
- Misses 5622 5914 +292 ☔ View full report in Codecov by Sentry. 🚀 New features to boost your workflow:
|
Testcases that depend on tools like perf, which may be a part of distro packages or custom-installed in a specific location, fail in an ungraceful manner when the binary of those tools is missing or non-functional.