]> git.ipfire.org Git - thirdparty/git.git/commitdiff
config: propagate launch_editor() failure in show_editor()
authorJohannes Schindelin <johannes.schindelin@gmx.de>
Tue, 14 Jul 2026 22:48:35 +0000 (22:48 +0000)
committerJunio C Hamano <gitster@pobox.com>
Wed, 15 Jul 2026 01:02:00 +0000 (18:02 -0700)
show_editor() calls launch_editor() to open the user's editor on
the configuration file, but discards the return value and
unconditionally returns 0 (success). When the editor fails to
launch (e.g., $EDITOR is not found, or the editor exits with a
nonzero status), the caller receives no indication that anything
went wrong.

This affects "git config edit" and "git config --edit": the
command silently succeeds even when the editor could not be
started. In contrast, other editor-launching paths in git (such
as "git commit" and "git rebase --edit-todo") properly propagate
editor failures and exit with an error.

Check the return value and propagate the failure by returning -1.
The two callers (cmd_config_edit at line 1315 and the legacy
cmd_config at line 1478) both propagate this return to
handle_builtin, which translates negative returns into an error
exit.

Pointed out by Coverity.

Assisted-by: Claude Opus 4.6
Signed-off-by: Johannes Schindelin <johannes.schindelin@gmx.de>
Signed-off-by: Junio C Hamano <gitster@pobox.com>
builtin/config.c

index 8d8ec0beead22024984fb0b623ef7882de7f9af7..1307fdb0d61afa0673cde5de95ce13254f0a9e92 100644 (file)
@@ -1313,7 +1313,10 @@ static int show_editor(struct config_location_options *opts)
                else if (errno != EEXIST)
                        die_errno(_("cannot create configuration file %s"), config_file);
        }
-       launch_editor(config_file, NULL, NULL);
+       if (launch_editor(config_file, NULL, NULL)) {
+               free(config_file);
+               return -1;
+       }
        free(config_file);
 
        return 0;