shallow: give write_one_shallow() its own hex buffer

The previous fix reuses the local `hex` variable that is already computed at the top of `write_one_shallow()`. That works today, but `oid_to_hex()` returns a pointer into a small rotating buffer, so it is not stable across an unrelated call to `oid_to_hex()` from the same thread. A future edit that adds such a call between the assignment and the last user of `hex` would silently corrupt the output. Move `write_one_shallow()` off the rotating buffer entirely by using a local buffer instead. The current users of that `hex` variable are unchanged. Suggested-by: Junio C Hamano <gitster@pobox.com> Assisted-by: Claude Opus 4.7 Signed-off-by: Johannes Schindelin <johannes.schindelin@gmx.de> Signed-off-by: Junio C Hamano <gitster@pobox.com>

Johannes Schindelin committed Jul 10, 2026 at 11:39 UTC 764255357846d79f9f960cd0bf0cdbbe21ed0f72
1 file changed +3 -1
shallow.c
+3 -1
@@ -359,7 +359,9 @@ struct write_shallow_data {
359 static int write_one_shallow(const struct commit_graft *graft, void *cb_data)
360 {
361 struct write_shallow_data *data = cb_data;
362 - const char *hex = oid_to_hex(&graft->oid);
362 + char hex[GIT_MAX_HEXSZ + 1];
363 +
364 + oid_to_hex_r(hex, &graft->oid);
365 if (graft->nr_parent != -1)
366 return 0;
367 if (data->flags & QUICK) {