In this POC (Proof of Concept), we will explore how the Rust language treats race conditions, comparing it with C , a widely used language, but with fewer security guarantees for competition.
Rust Threads safety: A Comparison with C
Threads Safety: Data Races from C to Rust
Index
- 1. Introduction
- 2. Threads
-
3. Implementation in C
- 3.1. Code without Protection Against Race Conditions
- 3.2. Fixing with Mutex
-
4. Implementation in Rust
- 4.1. Problem with Race Conditions
- 4.2. Resolution with Mutex and Arc
- 4.3. Mutex vs. RwLock
- 5. Conclusion
- 6. References
1. Introduction
In computing, threads are used to divide software tasks into subtasks that can be executed concurrently. By using threads, we gain processing time and make better use of the machine's resources, but this competition brings challenges, such as race conditions, which can generate serious inconsistencies in the data.
2. Threads
Threads are execution units that allow you to process tasks simultaneously. We can think of threads as independent flows of execution within a program, illustrated in the image below:
While threads bring performance advantages, they introduce risks, especially when accessing shared resources.
In addition, threads can be used to implement parallelism, where multiple tasks are executed simultaneously on different CPU cores. This allows the program to make better use of the available hardware, speeding up the execution of independent tasks.
3. Implementation in C
Let's create a simple system in C:
- An initial balance of 1000.
- A set of transactions that can be credits or debits.
- Parallel processing of these transactions using threads.
3.1. Code without Protection Against Race Conditions
When we opt for an environment with multithreading processing what we call race conditions can happen, when 2 threads access and modify the same value we have a race condition. This problem occurs because synchronization of the value accessed in each thread is not guaranteed due to competition between calls.
When executing this code several times, the final balance varies, as threads access and change balance simultaneously.
3.2. Fixing with Mutex
Mutex is a synchronization primitive that ensures that only one thread has access to a shared resource at a time. The acronym mutex comes from the English term mutual exclusion, which means "mutual exclusion".
When a thread acquires a mutex, any other thread attempting to acquire the same mutex is suspended until the first thread releases the mutex. This prevents two or more processes (threads) from having simultaneous access to the shared resource.
4. Implementation in Rust
Thinking of Rust as a language absent from data race is not productive, but we can understand how structs and its compiler contribute by bringing great features for memory and thread safety.
Rust treats race conditions with compile-time guarantees, using features such as ownership, borrowing and concurrency-safe structures:
- Arc: Secure sharing of immutable data.
- Mutex and RwLock: Access control for mutable data.
4.1. Problem with Race Conditions
Without the use of Arc and Mutex structs
Rust does not allow direct access to mutable data (balance) from multiple threads without protection.
The compiler will generate an error because balance is being moved to multiple threads (handle1 and handle2) without a safe mechanism.
Error message that will be displayed is:
4.2. Resolution with Mutex and Arc
Using Mutex and Arc we were able to compile and execute our code, with the race condition issues addressed.
4.3. Mutex vs. RwLock
Mutex and RwLock are used to handle race conditions, each with specific advantages:
Mutex: Guarantees exclusive access to a resource for one thread, blocking access to others until it is released. It's simple and effective, but even reads block the resource, making it less efficient in read-heavy scenarios.
RwLock: Allows multiple simultaneous reads with .read() and restricts exclusive writing with .write(). It is Ideal for scenarios with a predominance of reads, as it improves performance by allowing parallelism in read operations.
5. Conclusion
The comparison between C and Rust highlights different approaches to solving race conditions. While C requires attention to avoid race condition errors, Rust reduces these risks at compile time, through tools such as Mutex, RwLock and Arc in addition to the ownership model. This not only makes the code more secure, but also reduces the programmer's mental load by avoiding silent bugs.
In summary, Rust positions itself as an excellent choice for developing competing systems, offering security and reliability.
6. References
- Repo with codes: https://github.com/z4nder/rust-data-races
- https://en.wikipedia.org/wiki/Race_condition
- https://blog.bughunt.com.br/o-que-sao-vulnerabilidades-race-condition/
- https://medium.com/cwi-software/spring-boot-race-condition-e-ambiente-multi-thread-263b21e0042e
- https://learn.microsoft.com/en-us/troubleshoot/developer/visualstudio/visual-basic/language-compilers/race-conditions-deadlocks
- https://www.reddit.com/r/rust/comments/18faxjg/understanding_threadsafety_vs_race_conditions/?rdt=52263
- https://doc.rust-lang.org/nomicon/races.html
- https://news.ycombinator.com/item?id=23599598
The above is the detailed content of Rust Threads safety: A comparison with C.. For more information, please follow other related articles on the PHP Chinese website!

Hot AI Tools

Undress AI Tool
Undress images for free

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Clothoff.io
AI clothes remover

Video Face Swap
Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Article

Hot Tools

Notepad++7.3.1
Easy-to-use and free code editor

SublimeText3 Chinese version
Chinese version, very easy to use

Zend Studio 13.0.1
Powerful PHP integrated development environment

Dreamweaver CS6
Visual web development tools

SublimeText3 Mac version
God-level code editing software (SublimeText3)

std::chrono is used in C to process time, including obtaining the current time, measuring execution time, operation time point and duration, and formatting analysis time. 1. Use std::chrono::system_clock::now() to obtain the current time, which can be converted into a readable string, but the system clock may not be monotonous; 2. Use std::chrono::steady_clock to measure the execution time to ensure monotony, and convert it into milliseconds, seconds and other units through duration_cast; 3. Time point (time_point) and duration (duration) can be interoperable, but attention should be paid to unit compatibility and clock epoch (epoch)

There are mainly the following methods to obtain stack traces in C: 1. Use backtrace and backtrace_symbols functions on Linux platform. By including obtaining the call stack and printing symbol information, the -rdynamic parameter needs to be added when compiling; 2. Use CaptureStackBackTrace function on Windows platform, and you need to link DbgHelp.lib and rely on PDB file to parse the function name; 3. Use third-party libraries such as GoogleBreakpad or Boost.Stacktrace to cross-platform and simplify stack capture operations; 4. In exception handling, combine the above methods to automatically output stack information in catch blocks

In C, the POD (PlainOldData) type refers to a type with a simple structure and compatible with C language data processing. It needs to meet two conditions: it has ordinary copy semantics, which can be copied by memcpy; it has a standard layout and the memory structure is predictable. Specific requirements include: all non-static members are public, no user-defined constructors or destructors, no virtual functions or base classes, and all non-static members themselves are PODs. For example structPoint{intx;inty;} is POD. Its uses include binary I/O, C interoperability, performance optimization, etc. You can check whether the type is POD through std::is_pod, but it is recommended to use std::is_trivia after C 11.

To call Python code in C, you must first initialize the interpreter, and then you can achieve interaction by executing strings, files, or calling specific functions. 1. Initialize the interpreter with Py_Initialize() and close it with Py_Finalize(); 2. Execute string code or PyRun_SimpleFile with PyRun_SimpleFile; 3. Import modules through PyImport_ImportModule, get the function through PyObject_GetAttrString, construct parameters of Py_BuildValue, call the function and process return

In C, there are three main ways to pass functions as parameters: using function pointers, std::function and Lambda expressions, and template generics. 1. Function pointers are the most basic method, suitable for simple scenarios or C interface compatible, but poor readability; 2. Std::function combined with Lambda expressions is a recommended method in modern C, supporting a variety of callable objects and being type-safe; 3. Template generic methods are the most flexible, suitable for library code or general logic, but may increase the compilation time and code volume. Lambdas that capture the context must be passed through std::function or template and cannot be converted directly into function pointers.

AnullpointerinC isaspecialvalueindicatingthatapointerdoesnotpointtoanyvalidmemorylocation,anditisusedtosafelymanageandcheckpointersbeforedereferencing.1.BeforeC 11,0orNULLwasused,butnownullptrispreferredforclarityandtypesafety.2.Usingnullpointershe

std::move does not actually move anything, it just converts the object to an rvalue reference, telling the compiler that the object can be used for a move operation. For example, when string assignment, if the class supports moving semantics, the target object can take over the source object resource without copying. Should be used in scenarios where resources need to be transferred and performance-sensitive, such as returning local objects, inserting containers, or exchanging ownership. However, it should not be abused, because it will degenerate into a copy without a moving structure, and the original object status is not specified after the movement. Appropriate use when passing or returning an object can avoid unnecessary copies, but if the function returns a local variable, RVO optimization may already occur, adding std::move may affect the optimization. Prone to errors include misuse on objects that still need to be used, unnecessary movements, and non-movable types

The key to an abstract class is that it contains at least one pure virtual function. When a pure virtual function is declared in the class (such as virtualvoiddoSomething()=0;), the class becomes an abstract class and cannot directly instantiate the object, but polymorphism can be realized through pointers or references; if the derived class does not implement all pure virtual functions, it will also remain an abstract class. Abstract classes are often used to define interfaces or shared behaviors, such as designing Shape classes in drawing applications and implementing the draw() method by derived classes such as Circle and Rectangle. Scenarios using abstract classes include: designing base classes that should not be instantiated directly, forcing multiple related classes to follow a unified interface, providing default behavior, and requiring subclasses to supplement details. In addition, C
