2009-10-28 04:05:49 +08:00
|
|
|
//===------ MemoryBuiltins.cpp - Identify calls to memory builtins --------===//
|
2009-09-10 12:36:43 +08:00
|
|
|
//
|
|
|
|
// The LLVM Compiler Infrastructure
|
|
|
|
//
|
|
|
|
// This file is distributed under the University of Illinois Open Source
|
|
|
|
// License. See LICENSE.TXT for details.
|
|
|
|
//
|
|
|
|
//===----------------------------------------------------------------------===//
|
|
|
|
//
|
2009-10-28 04:05:49 +08:00
|
|
|
// This family of functions identifies calls to builtin functions that allocate
|
|
|
|
// or free memory.
|
2009-09-10 12:36:43 +08:00
|
|
|
//
|
|
|
|
//===----------------------------------------------------------------------===//
|
|
|
|
|
2009-10-28 04:05:49 +08:00
|
|
|
#include "llvm/Analysis/MemoryBuiltins.h"
|
2009-09-10 12:36:43 +08:00
|
|
|
#include "llvm/Constants.h"
|
|
|
|
#include "llvm/Instructions.h"
|
|
|
|
#include "llvm/Module.h"
|
2009-09-19 03:20:02 +08:00
|
|
|
#include "llvm/Analysis/ConstantFolding.h"
|
2009-11-05 08:03:03 +08:00
|
|
|
#include "llvm/Target/TargetData.h"
|
2009-09-10 12:36:43 +08:00
|
|
|
using namespace llvm;
|
|
|
|
|
|
|
|
//===----------------------------------------------------------------------===//
|
|
|
|
// malloc Call Utility Functions.
|
|
|
|
//
|
|
|
|
|
|
|
|
/// isMalloc - Returns true if the the value is either a malloc call or a
|
|
|
|
/// bitcast of the result of a malloc call.
|
2009-11-04 04:02:35 +08:00
|
|
|
bool llvm::isMalloc(const Value *I) {
|
2009-09-10 12:36:43 +08:00
|
|
|
return extractMallocCall(I) || extractMallocCallFromBitCast(I);
|
|
|
|
}
|
|
|
|
|
|
|
|
static bool isMallocCall(const CallInst *CI) {
|
|
|
|
if (!CI)
|
|
|
|
return false;
|
|
|
|
|
2009-11-04 04:39:35 +08:00
|
|
|
Function *Callee = CI->getCalledFunction();
|
|
|
|
if (Callee == 0 || !Callee->isDeclaration() || Callee->getName() != "malloc")
|
2009-09-10 12:36:43 +08:00
|
|
|
return false;
|
|
|
|
|
2009-10-06 05:15:43 +08:00
|
|
|
// Check malloc prototype.
|
2009-10-07 17:22:55 +08:00
|
|
|
// FIXME: workaround for PR5130, this will be obsolete when a nobuiltin
|
|
|
|
// attribute will exist.
|
2009-11-04 04:39:35 +08:00
|
|
|
const FunctionType *FTy = Callee->getFunctionType();
|
2009-10-06 05:15:43 +08:00
|
|
|
if (FTy->getNumParams() != 1)
|
|
|
|
return false;
|
|
|
|
if (IntegerType *ITy = dyn_cast<IntegerType>(FTy->param_begin()->get())) {
|
|
|
|
if (ITy->getBitWidth() != 32 && ITy->getBitWidth() != 64)
|
|
|
|
return false;
|
|
|
|
return true;
|
|
|
|
}
|
|
|
|
|
|
|
|
return false;
|
2009-09-10 12:36:43 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
/// extractMallocCall - Returns the corresponding CallInst if the instruction
|
|
|
|
/// is a malloc call. Since CallInst::CreateMalloc() only creates calls, we
|
|
|
|
/// ignore InvokeInst here.
|
2009-11-04 04:02:35 +08:00
|
|
|
const CallInst *llvm::extractMallocCall(const Value *I) {
|
2009-09-10 12:36:43 +08:00
|
|
|
const CallInst *CI = dyn_cast<CallInst>(I);
|
|
|
|
return (isMallocCall(CI)) ? CI : NULL;
|
|
|
|
}
|
|
|
|
|
2009-11-04 04:02:35 +08:00
|
|
|
CallInst *llvm::extractMallocCall(Value *I) {
|
2009-09-10 12:36:43 +08:00
|
|
|
CallInst *CI = dyn_cast<CallInst>(I);
|
|
|
|
return (isMallocCall(CI)) ? CI : NULL;
|
|
|
|
}
|
|
|
|
|
2009-11-04 04:02:35 +08:00
|
|
|
static bool isBitCastOfMallocCall(const BitCastInst *BCI) {
|
2009-09-10 12:36:43 +08:00
|
|
|
if (!BCI)
|
|
|
|
return false;
|
|
|
|
|
|
|
|
return isMallocCall(dyn_cast<CallInst>(BCI->getOperand(0)));
|
|
|
|
}
|
|
|
|
|
|
|
|
/// extractMallocCallFromBitCast - Returns the corresponding CallInst if the
|
|
|
|
/// instruction is a bitcast of the result of a malloc call.
|
2009-11-04 04:02:35 +08:00
|
|
|
CallInst *llvm::extractMallocCallFromBitCast(Value *I) {
|
2009-09-10 12:36:43 +08:00
|
|
|
BitCastInst *BCI = dyn_cast<BitCastInst>(I);
|
2009-09-11 04:18:57 +08:00
|
|
|
return (isBitCastOfMallocCall(BCI)) ? cast<CallInst>(BCI->getOperand(0))
|
|
|
|
: NULL;
|
2009-09-10 12:36:43 +08:00
|
|
|
}
|
|
|
|
|
2009-11-04 04:02:35 +08:00
|
|
|
const CallInst *llvm::extractMallocCallFromBitCast(const Value *I) {
|
2009-09-10 12:36:43 +08:00
|
|
|
const BitCastInst *BCI = dyn_cast<BitCastInst>(I);
|
2009-09-11 04:18:57 +08:00
|
|
|
return (isBitCastOfMallocCall(BCI)) ? cast<CallInst>(BCI->getOperand(0))
|
|
|
|
: NULL;
|
2009-09-10 12:36:43 +08:00
|
|
|
}
|
|
|
|
|
2009-10-29 04:18:55 +08:00
|
|
|
/// isConstantOne - Return true only if val is constant int 1.
|
|
|
|
static bool isConstantOne(Value *val) {
|
|
|
|
return isa<ConstantInt>(val) && cast<ConstantInt>(val)->isOne();
|
|
|
|
}
|
|
|
|
|
2009-11-04 04:02:35 +08:00
|
|
|
static Value *isArrayMallocHelper(const CallInst *CI, LLVMContext &Context,
|
|
|
|
const TargetData *TD) {
|
2009-09-10 12:36:43 +08:00
|
|
|
if (!CI)
|
2009-10-29 04:18:55 +08:00
|
|
|
return NULL;
|
2009-09-10 12:36:43 +08:00
|
|
|
|
2009-11-05 08:03:03 +08:00
|
|
|
// The size of the malloc's result type must be known to determine array size.
|
2009-11-04 04:02:35 +08:00
|
|
|
const Type *T = getMallocAllocatedType(CI);
|
2009-11-05 08:03:03 +08:00
|
|
|
if (!T || !T->isSized() || !TD)
|
2009-10-29 04:18:55 +08:00
|
|
|
return NULL;
|
2009-09-10 12:36:43 +08:00
|
|
|
|
2009-11-04 04:02:35 +08:00
|
|
|
Value *MallocArg = CI->getOperand(1);
|
2009-11-05 08:03:03 +08:00
|
|
|
const Type *ArgType = MallocArg->getType();
|
2009-11-04 04:02:35 +08:00
|
|
|
ConstantExpr *CO = dyn_cast<ConstantExpr>(MallocArg);
|
|
|
|
BinaryOperator *BO = dyn_cast<BinaryOperator>(MallocArg);
|
2009-10-29 04:18:55 +08:00
|
|
|
|
2009-11-05 08:03:03 +08:00
|
|
|
unsigned ElementSizeInt = TD->getTypeAllocSize(T);
|
|
|
|
if (const StructType *ST = dyn_cast<StructType>(T))
|
|
|
|
ElementSizeInt = TD->getStructLayout(ST)->getSizeInBytes();
|
|
|
|
Constant *ElementSize = ConstantInt::get(ArgType, ElementSizeInt);
|
2009-10-29 04:18:55 +08:00
|
|
|
|
|
|
|
// First, check if CI is a non-array malloc.
|
2009-11-05 08:03:03 +08:00
|
|
|
if (CO && CO == ElementSize)
|
2009-10-29 04:18:55 +08:00
|
|
|
// Match CreateMalloc's use of constant 1 array-size for non-array mallocs.
|
2009-11-05 08:03:03 +08:00
|
|
|
return ConstantInt::get(ArgType, 1);
|
2009-10-29 04:18:55 +08:00
|
|
|
|
|
|
|
// Second, check if CI is an array malloc whose array size can be determined.
|
2009-11-05 08:03:03 +08:00
|
|
|
if (isConstantOne(ElementSize))
|
2009-10-29 04:18:55 +08:00
|
|
|
return MallocArg;
|
2009-09-10 12:36:43 +08:00
|
|
|
|
2009-11-05 08:03:03 +08:00
|
|
|
if (ConstantInt *CInt = dyn_cast<ConstantInt>(MallocArg))
|
|
|
|
if (CInt->getZExtValue() % ElementSizeInt == 0)
|
|
|
|
return ConstantInt::get(ArgType, CInt->getZExtValue() / ElementSizeInt);
|
|
|
|
|
2009-10-29 04:18:55 +08:00
|
|
|
if (!CO && !BO)
|
|
|
|
return NULL;
|
2009-09-10 12:36:43 +08:00
|
|
|
|
2009-11-04 04:02:35 +08:00
|
|
|
Value *Op0 = NULL;
|
|
|
|
Value *Op1 = NULL;
|
2009-10-29 04:18:55 +08:00
|
|
|
unsigned Opcode = 0;
|
2009-11-05 08:03:03 +08:00
|
|
|
if (CO && ((CO->getOpcode() == Instruction::Mul) ||
|
2009-10-29 04:18:55 +08:00
|
|
|
(CO->getOpcode() == Instruction::Shl))) {
|
|
|
|
Op0 = CO->getOperand(0);
|
|
|
|
Op1 = CO->getOperand(1);
|
|
|
|
Opcode = CO->getOpcode();
|
|
|
|
}
|
2009-11-05 08:03:03 +08:00
|
|
|
if (BO && ((BO->getOpcode() == Instruction::Mul) ||
|
2009-10-29 04:18:55 +08:00
|
|
|
(BO->getOpcode() == Instruction::Shl))) {
|
|
|
|
Op0 = BO->getOperand(0);
|
|
|
|
Op1 = BO->getOperand(1);
|
|
|
|
Opcode = BO->getOpcode();
|
|
|
|
}
|
2009-09-19 03:20:02 +08:00
|
|
|
|
2009-10-29 04:18:55 +08:00
|
|
|
// Determine array size if malloc's argument is the product of a mul or shl.
|
|
|
|
if (Op0) {
|
|
|
|
if (Opcode == Instruction::Mul) {
|
2009-11-05 08:03:03 +08:00
|
|
|
if (Op1 == ElementSize)
|
2009-10-29 04:18:55 +08:00
|
|
|
// ArraySize * ElementSize
|
|
|
|
return Op0;
|
2009-11-05 08:03:03 +08:00
|
|
|
if (Op0 == ElementSize)
|
2009-10-29 04:18:55 +08:00
|
|
|
// ElementSize * ArraySize
|
|
|
|
return Op1;
|
|
|
|
}
|
|
|
|
if (Opcode == Instruction::Shl) {
|
2009-11-04 04:02:35 +08:00
|
|
|
ConstantInt *Op1CI = dyn_cast<ConstantInt>(Op1);
|
2009-11-03 02:51:28 +08:00
|
|
|
if (!Op1CI) return NULL;
|
|
|
|
|
|
|
|
APInt Op1Int = Op1CI->getValue();
|
2009-11-04 04:02:35 +08:00
|
|
|
uint64_t BitToSet = Op1Int.getLimitedValue(Op1Int.getBitWidth() - 1);
|
|
|
|
Value *Op1Pow = ConstantInt::get(Context,
|
|
|
|
APInt(Op1Int.getBitWidth(), 0).set(BitToSet));
|
2009-11-05 08:03:03 +08:00
|
|
|
if (Op0 == ElementSize)
|
2009-10-29 04:18:55 +08:00
|
|
|
// ArraySize << log2(ElementSize)
|
|
|
|
return Op1Pow;
|
2009-11-05 08:03:03 +08:00
|
|
|
if (Op1Pow == ElementSize)
|
2009-10-29 04:18:55 +08:00
|
|
|
// ElementSize << log2(ArraySize)
|
|
|
|
return Op0;
|
|
|
|
}
|
|
|
|
}
|
2009-09-19 03:20:02 +08:00
|
|
|
|
2009-10-29 04:18:55 +08:00
|
|
|
// We could not determine the malloc array size from MallocArg.
|
|
|
|
return NULL;
|
2009-09-10 12:36:43 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
/// isArrayMalloc - Returns the corresponding CallInst if the instruction
|
2009-10-29 04:18:55 +08:00
|
|
|
/// is a call to malloc whose array size can be determined and the array size
|
|
|
|
/// is not constant 1. Otherwise, return NULL.
|
2009-11-04 04:02:35 +08:00
|
|
|
CallInst *llvm::isArrayMalloc(Value *I, LLVMContext &Context,
|
|
|
|
const TargetData *TD) {
|
2009-09-10 12:36:43 +08:00
|
|
|
CallInst *CI = extractMallocCall(I);
|
2009-11-04 04:02:35 +08:00
|
|
|
Value *ArraySize = isArrayMallocHelper(CI, Context, TD);
|
2009-10-29 04:18:55 +08:00
|
|
|
|
|
|
|
if (ArraySize &&
|
|
|
|
ArraySize != ConstantInt::get(CI->getOperand(1)->getType(), 1))
|
|
|
|
return CI;
|
|
|
|
|
|
|
|
// CI is a non-array malloc or we can't figure out that it is an array malloc.
|
|
|
|
return NULL;
|
2009-09-10 12:36:43 +08:00
|
|
|
}
|
|
|
|
|
2009-11-04 04:02:35 +08:00
|
|
|
const CallInst *llvm::isArrayMalloc(const Value *I, LLVMContext &Context,
|
|
|
|
const TargetData *TD) {
|
2009-09-10 12:36:43 +08:00
|
|
|
const CallInst *CI = extractMallocCall(I);
|
2009-11-04 04:02:35 +08:00
|
|
|
Value *ArraySize = isArrayMallocHelper(CI, Context, TD);
|
2009-10-29 04:18:55 +08:00
|
|
|
|
|
|
|
if (ArraySize &&
|
|
|
|
ArraySize != ConstantInt::get(CI->getOperand(1)->getType(), 1))
|
|
|
|
return CI;
|
|
|
|
|
|
|
|
// CI is a non-array malloc or we can't figure out that it is an array malloc.
|
|
|
|
return NULL;
|
2009-09-10 12:36:43 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
/// getMallocType - Returns the PointerType resulting from the malloc call.
|
2009-11-05 08:03:03 +08:00
|
|
|
/// The PointerType depends on the number of bitcast uses of the malloc call:
|
|
|
|
/// 0: PointerType is the calls' return type.
|
|
|
|
/// 1: PointerType is the bitcast's result type.
|
|
|
|
/// >1: Unique PointerType cannot be determined, return NULL.
|
2009-11-04 04:02:35 +08:00
|
|
|
const PointerType *llvm::getMallocType(const CallInst *CI) {
|
2009-09-10 12:36:43 +08:00
|
|
|
assert(isMalloc(CI) && "GetMallocType and not malloc call");
|
|
|
|
|
2009-11-05 08:03:03 +08:00
|
|
|
const PointerType *MallocType = NULL;
|
|
|
|
unsigned NumOfBitCastUses = 0;
|
|
|
|
|
2009-09-19 03:20:02 +08:00
|
|
|
// Determine if CallInst has a bitcast use.
|
|
|
|
for (Value::use_const_iterator UI = CI->use_begin(), E = CI->use_end();
|
|
|
|
UI != E; )
|
2009-11-05 08:03:03 +08:00
|
|
|
if (const BitCastInst *BCI = dyn_cast<BitCastInst>(*UI++)) {
|
|
|
|
MallocType = cast<PointerType>(BCI->getDestTy());
|
|
|
|
NumOfBitCastUses++;
|
|
|
|
}
|
2009-09-19 03:20:02 +08:00
|
|
|
|
2009-11-05 08:03:03 +08:00
|
|
|
// Malloc call has 1 bitcast use, so type is the bitcast's destination type.
|
|
|
|
if (NumOfBitCastUses == 1)
|
|
|
|
return MallocType;
|
2009-09-10 12:36:43 +08:00
|
|
|
|
2009-09-23 02:50:03 +08:00
|
|
|
// Malloc call was not bitcast, so type is the malloc function's return type.
|
2009-11-05 08:03:03 +08:00
|
|
|
if (NumOfBitCastUses == 0)
|
2009-09-19 03:20:02 +08:00
|
|
|
return cast<PointerType>(CI->getType());
|
2009-09-10 12:36:43 +08:00
|
|
|
|
2009-09-19 03:20:02 +08:00
|
|
|
// Type could not be determined.
|
|
|
|
return NULL;
|
2009-09-10 12:36:43 +08:00
|
|
|
}
|
|
|
|
|
2009-11-05 08:03:03 +08:00
|
|
|
/// getMallocAllocatedType - Returns the Type allocated by malloc call.
|
|
|
|
/// The Type depends on the number of bitcast uses of the malloc call:
|
|
|
|
/// 0: PointerType is the malloc calls' return type.
|
|
|
|
/// 1: PointerType is the bitcast's result type.
|
|
|
|
/// >1: Unique PointerType cannot be determined, return NULL.
|
2009-11-04 04:02:35 +08:00
|
|
|
const Type *llvm::getMallocAllocatedType(const CallInst *CI) {
|
|
|
|
const PointerType *PT = getMallocType(CI);
|
2009-09-10 12:36:43 +08:00
|
|
|
return PT ? PT->getElementType() : NULL;
|
|
|
|
}
|
|
|
|
|
2009-10-29 04:18:55 +08:00
|
|
|
/// getMallocArraySize - Returns the array size of a malloc call. If the
|
|
|
|
/// argument passed to malloc is a multiple of the size of the malloced type,
|
|
|
|
/// then return that multiple. For non-array mallocs, the multiple is
|
|
|
|
/// constant 1. Otherwise, return NULL for mallocs whose array size cannot be
|
2009-10-16 04:14:52 +08:00
|
|
|
/// determined.
|
2009-11-04 04:02:35 +08:00
|
|
|
Value *llvm::getMallocArraySize(CallInst *CI, LLVMContext &Context,
|
|
|
|
const TargetData *TD) {
|
2009-10-29 04:18:55 +08:00
|
|
|
return isArrayMallocHelper(CI, Context, TD);
|
2009-09-10 12:36:43 +08:00
|
|
|
}
|
2009-10-24 12:23:03 +08:00
|
|
|
|
2009-10-27 07:43:48 +08:00
|
|
|
//===----------------------------------------------------------------------===//
|
|
|
|
// free Call Utility Functions.
|
|
|
|
//
|
|
|
|
|
2009-10-24 12:23:03 +08:00
|
|
|
/// isFreeCall - Returns true if the the value is a call to the builtin free()
|
2009-11-04 04:02:35 +08:00
|
|
|
bool llvm::isFreeCall(const Value *I) {
|
2009-10-24 12:23:03 +08:00
|
|
|
const CallInst *CI = dyn_cast<CallInst>(I);
|
|
|
|
if (!CI)
|
|
|
|
return false;
|
2009-11-04 04:39:35 +08:00
|
|
|
Function *Callee = CI->getCalledFunction();
|
|
|
|
if (Callee == 0 || !Callee->isDeclaration() || Callee->getName() != "free")
|
2009-10-24 12:23:03 +08:00
|
|
|
return false;
|
|
|
|
|
|
|
|
// Check free prototype.
|
|
|
|
// FIXME: workaround for PR5130, this will be obsolete when a nobuiltin
|
|
|
|
// attribute will exist.
|
2009-11-04 04:39:35 +08:00
|
|
|
const FunctionType *FTy = Callee->getFunctionType();
|
|
|
|
if (!FTy->getReturnType()->isVoidTy())
|
2009-10-24 12:23:03 +08:00
|
|
|
return false;
|
|
|
|
if (FTy->getNumParams() != 1)
|
|
|
|
return false;
|
2009-11-04 04:39:35 +08:00
|
|
|
if (FTy->param_begin()->get() != Type::getInt8PtrTy(Callee->getContext()))
|
2009-10-24 12:23:03 +08:00
|
|
|
return false;
|
|
|
|
|
|
|
|
return true;
|
|
|
|
}
|