Add overflow guard in GrpcCacheClient to detect server ignoring `read_offset`. When retrying a download with `read_offset > 0`, some remote cache servers may ignore `read_offset` and stream from offset 0. Extract `readOffset` and detect when received bytes exceed the expected digest size, cancel the gRPC request stream, and fail immediately with an explicit `IOException` rather than corrupting the output stream and hash. Part of https://github.com/bazelbuild/bazel/issues/19005. PiperOrigin-RevId: 969885342 Change-Id: Ida0841c67fb52146f0f0d2ed0f3fd76c9feb519b
{Fast, Correct} - Choose two
Build and test software of any size, quickly and reliably.
Speed up your builds and tests: Bazel rebuilds only what is necessary. With advanced local and distributed caching, optimized dependency analysis and parallel execution, you get fast and incremental builds.
One tool, multiple languages: Build and test Java, C++, Android, iOS, Go, and a wide variety of other language platforms. Bazel runs on Windows, macOS, and Linux.
Scalable: Bazel helps you scale your organization, codebase, and continuous integration solution. It handles codebases of any size, in multiple repositories or a huge monorepo.
Extensible to your needs: Easily add support for new languages and platforms with Bazel's familiar extension language. Share and re-use language rules written by the growing Bazel community.
To report a security issue, please email security@bazel.build with a description of the issue, the steps you took to create the issue, affected versions, and, if known, mitigations for the issue. Our vulnerability management team will respond within 3 working days of your email. If the issue is confirmed as a vulnerability, we will open a Security Advisory. This project follows a 90 day disclosure timeline.
See CONTRIBUTING.md