parse_call_math: silence "internal bug: pop_val popping empty list"
[smatch.git] / smatch.h
blob77f236dbf88c94cb4c2add6a07da2d881e0f6f37
1 /*
2 * sparse/smatch.h
4 * Copyright (C) 2006 Dan Carpenter.
6 * Licensed under the Open Software License version 1.1
8 */
10 #ifndef SMATCH_H_
11 # define SMATCH_H_
13 #include <stdio.h>
14 #include <string.h>
15 #include <limits.h>
16 #include "lib.h"
17 #include "allocate.h"
18 #include "parse.h"
19 #include "expression.h"
21 typedef struct {
22 struct symbol *type;
23 union {
24 long long value;
25 unsigned long long uvalue;
27 } sval_t;
29 struct smatch_state {
30 const char *name;
31 void *data;
33 #define STATE(_x) static struct smatch_state _x = { .name = #_x }
34 extern struct smatch_state undefined;
35 extern struct smatch_state merged;
36 extern struct smatch_state true_state;
37 extern struct smatch_state false_state;
38 DECLARE_ALLOCATOR(smatch_state);
40 static inline void *INT_PTR(int i)
42 return (void *)(long)i;
45 static inline int PTR_INT(void *p)
47 return (int)(long)p;
50 struct sm_state {
51 unsigned short owner;
52 unsigned int merged:1;
53 unsigned int implied:1;
54 const char *name;
55 struct symbol *sym;
56 struct smatch_state *state;
57 unsigned int line;
58 struct state_list *pool;
59 struct sm_state *left;
60 struct sm_state *right;
61 unsigned int nr_children;
62 struct state_list *possible;
65 struct tracker {
66 int owner;
67 char *name;
68 struct symbol *sym;
70 DECLARE_ALLOCATOR(tracker);
71 DECLARE_PTR_LIST(tracker_list, struct tracker);
73 enum hook_type {
74 EXPR_HOOK,
75 STMT_HOOK,
76 SYM_HOOK,
77 STRING_HOOK,
78 DECLARATION_HOOK,
79 ASSIGNMENT_HOOK,
80 RAW_ASSIGNMENT_HOOK,
81 GLOBAL_ASSIGNMENT_HOOK,
82 LOGIC_HOOK,
83 CONDITION_HOOK,
84 PRELOOP_HOOK,
85 SELECT_HOOK,
86 WHOLE_CONDITION_HOOK,
87 FUNCTION_CALL_HOOK,
88 CALL_ASSIGNMENT_HOOK,
89 MACRO_ASSIGNMENT_HOOK,
90 BINOP_HOOK,
91 OP_HOOK,
92 DEREF_HOOK,
93 CASE_HOOK,
94 ASM_HOOK,
95 CAST_HOOK,
96 SIZEOF_HOOK,
97 BASE_HOOK,
98 FUNC_DEF_HOOK,
99 AFTER_DEF_HOOK,
100 END_FUNC_HOOK,
101 RETURN_HOOK,
102 END_FILE_HOOK,
105 #define TRUE 1
106 #define FALSE 0
108 struct range_list;
110 void add_hook(void *func, enum hook_type type);
111 typedef struct smatch_state *(merge_func_t)(struct smatch_state *s1, struct smatch_state *s2);
112 typedef struct smatch_state *(unmatched_func_t)(struct sm_state *state);
113 void add_merge_hook(int client_id, merge_func_t *func);
114 void add_unmatched_state_hook(int client_id, unmatched_func_t *func);
115 typedef void (scope_hook)(void *data);
116 void add_scope_hook(scope_hook *hook, void *data);
117 typedef void (func_hook)(const char *fn, struct expression *expr, void *data);
118 typedef void (implication_hook)(const char *fn, struct expression *call_expr,
119 struct expression *assign_expr, void *data);
120 typedef void (return_implies_hook)(struct expression *call_expr,
121 int param, char *key, char *value);
122 typedef int (implied_return_hook)(struct expression *call_expr, void *info, struct range_list **rl);
123 void add_function_hook(const char *look_for, func_hook *call_back, void *data);
125 void add_function_assign_hook(const char *look_for, func_hook *call_back,
126 void *info);
127 void add_implied_return_hook(const char *look_for,
128 implied_return_hook *call_back,
129 void *info);
130 void add_macro_assign_hook(const char *look_for, func_hook *call_back,
131 void *info);
132 void add_macro_assign_hook_extra(const char *look_for, func_hook *call_back,
133 void *info);
134 void return_implies_state(const char *look_for, long long start, long long end,
135 implication_hook *call_back, void *info);
136 void add_db_return_states_callback(int type, return_implies_hook *callback);
137 void add_db_return_states_before(void (*fn)(void));
138 void add_db_return_states_after(void (*fn)(void));
139 int get_implied_return(struct expression *expr, struct range_list **rl);
141 typedef void (modification_hook)(struct sm_state *sm);
142 void add_modification_hook(int owner, modification_hook *call_back);
143 void add_indirect_modification_hook(int owner, modification_hook *call_back);
145 const char *get_filename(void);
146 char *get_function(void);
147 int get_lineno(void);
148 extern int final_pass;
149 extern struct symbol *cur_func_sym;
150 extern int option_debug;
151 extern int local_debug;
153 extern FILE *sm_outfd;
154 #define sm_printf(msg...) do { if (final_pass) fprintf(sm_outfd, msg); } while (0)
156 static inline void sm_prefix(void)
158 sm_printf("%s:%d %s() ", get_filename(), get_lineno(), get_function());
161 static inline void print_implied_debug_msg();
163 #define sm_msg(msg...) \
164 do { \
165 print_implied_debug_msg(); \
166 if (!option_debug && !final_pass) \
167 break; \
168 sm_prefix(); \
169 sm_printf(msg); \
170 sm_printf("\n"); \
171 } while (0)
173 #define local_debug(msg...) \
174 do { \
175 if (local_debug) \
176 sm_msg(msg); \
177 } while (0)
179 extern char *implied_debug_msg;
180 static inline void print_implied_debug_msg()
182 static struct symbol *last_printed = NULL;
184 if (!implied_debug_msg)
185 return;
186 if (last_printed == cur_func_sym)
187 return;
188 last_printed = cur_func_sym;
189 sm_msg("%s", implied_debug_msg);
192 #define sm_debug(msg...) do { if (option_debug) sm_printf(msg); } while (0)
194 #define sm_info(msg...) do { \
195 if (option_debug || (option_info && final_pass)) { \
196 sm_prefix(); \
197 sm_printf("info: "); \
198 sm_printf(msg); \
199 sm_printf("\n"); \
201 } while(0)
203 struct smatch_state *get_state(int owner, const char *name, struct symbol *sym);
204 struct smatch_state *get_state_expr(int owner, struct expression *expr);
205 struct state_list *get_possible_states(int owner, const char *name,
206 struct symbol *sym);
207 struct state_list *get_possible_states_expr(int owner, struct expression *expr);
208 struct sm_state *set_state(int owner, const char *name, struct symbol *sym,
209 struct smatch_state *state);
210 struct sm_state *set_state_expr(int owner, struct expression *expr,
211 struct smatch_state *state);
212 void delete_state(int owner, const char *name, struct symbol *sym);
213 void delete_state_expr(int owner, struct expression *expr);
214 void set_true_false_states(int owner, const char *name, struct symbol *sym,
215 struct smatch_state *true_state,
216 struct smatch_state *false_state);
217 void set_true_false_states_expr(int owner, struct expression *expr,
218 struct smatch_state *true_state,
219 struct smatch_state *false_state);
221 struct state_list *get_all_states_slist(int owner, struct state_list *source);
222 struct state_list *get_all_states(int id);
223 int is_reachable(void);
225 /* smatch_helper.c */
226 char *alloc_string(const char *str);
227 void free_string(char *str);
228 struct smatch_state *alloc_state_num(int num);
229 struct expression *get_argument_from_call_expr(struct expression_list *args,
230 int num);
232 char *expr_to_var(struct expression *expr);
233 char *expr_to_str(struct expression *expr);
234 char *expr_to_str_sym(struct expression *expr,
235 struct symbol **sym_ptr);
236 char *expr_to_var_sym(struct expression *expr,
237 struct symbol **sym_ptr);
239 int sym_name_is(const char *name, struct expression *expr);
240 int get_value(struct expression *expr, sval_t *val);
241 int get_implied_value(struct expression *expr, sval_t *val);
242 int get_implied_min(struct expression *expr, sval_t *sval);
243 int get_implied_max(struct expression *expr, sval_t *val);
244 int get_hard_max(struct expression *expr, sval_t *sval);
245 int get_fuzzy_min(struct expression *expr, sval_t *min);
246 int get_fuzzy_max(struct expression *expr, sval_t *max);
247 int get_absolute_min(struct expression *expr, sval_t *sval);
248 int get_absolute_max(struct expression *expr, sval_t *sval);
249 int parse_call_math(struct expression *expr, char *math, sval_t *val);
250 int is_zero(struct expression *expr);
251 int known_condition_true(struct expression *expr);
252 int known_condition_false(struct expression *expr);
253 int implied_condition_true(struct expression *expr);
254 int implied_condition_false(struct expression *expr);
256 int is_array(struct expression *expr);
257 struct expression *get_array_name(struct expression *expr);
258 struct expression *get_array_offset(struct expression *expr);
259 const char *show_state(struct smatch_state *state);
260 struct statement *get_expression_statement(struct expression *expr);
261 struct expression *strip_parens(struct expression *expr);
262 struct expression *strip_expr(struct expression *expr);
263 void scoped_state(int my_id, const char *name, struct symbol *sym);
264 int is_error_return(struct expression *expr);
265 int getting_address(void);
266 char *get_member_name(struct expression *expr);
267 char *get_fnptr_name(struct expression *expr);
268 int positions_eq(struct position pos1, struct position pos2);
269 struct statement *get_current_statement(void);
270 int get_param_num_from_sym(struct symbol *sym);
272 /* smatch_type.c */
273 struct symbol *get_real_base_type(struct symbol *sym);
274 int type_bits(struct symbol *type);
275 int type_positive_bits(struct symbol *type);
276 struct symbol *get_pointer_type(struct expression *expr);
277 struct symbol *get_type(struct expression *expr);
278 int type_unsigned(struct symbol *base_type);
279 int type_signed(struct symbol *base_type);
280 int expr_unsigned(struct expression *expr);
281 int returns_unsigned(struct symbol *base_type);
282 int is_pointer(struct expression *expr);
283 int returns_pointer(struct symbol *base_type);
284 sval_t sval_type_max(struct symbol *base_type);
285 sval_t sval_type_min(struct symbol *base_type);
286 int nr_bits(struct expression *expr);
287 int is_void_pointer(struct expression *expr);
288 int is_char_pointer(struct expression *expr);
289 int is_static(struct expression *expr);
290 int types_equiv(struct symbol *one, struct symbol *two);
291 const char *global_static();
292 struct symbol *cur_func_return_type(void);
293 struct symbol *get_arg_type(struct expression *fn, int arg);
294 struct symbol *get_member_type_from_key(struct expression *expr, char *key);
296 /* smatch_ignore.c */
297 void add_ignore(int owner, const char *name, struct symbol *sym);
298 int is_ignored(int owner, const char *name, struct symbol *sym);
300 /* smatch_tracker */
301 struct tracker *alloc_tracker(int owner, const char *name, struct symbol *sym);
302 void add_tracker(struct tracker_list **list, int owner, const char *name,
303 struct symbol *sym);
304 void add_tracker_expr(struct tracker_list **list, int owner, struct expression *expr);
305 void del_tracker(struct tracker_list **list, int owner, const char *name,
306 struct symbol *sym);
307 int in_tracker_list(struct tracker_list *list, int owner, const char *name,
308 struct symbol *sym);
309 void free_tracker_list(struct tracker_list **list);
310 void free_trackers_and_list(struct tracker_list **list);
312 /* smatch_conditions */
313 int in_condition(void);
315 /* smatch_flow.c */
317 void smatch (int argc, char **argv);
318 int inside_loop(void);
319 struct expression *get_switch_expr(void);
320 int in_expression_statement(void);
321 void __split_expr(struct expression *expr);
322 void __split_stmt(struct statement *stmt);
323 extern int option_assume_loops;
324 extern int option_known_conditions;
325 extern int option_two_passes;
326 extern int option_no_db;
327 extern int option_file_output;
328 extern struct expression_list *big_expression_stack;
329 extern struct statement_list *big_statement_stack;
330 extern int __in_pre_condition;
331 extern int __bail_on_rest_of_function;
333 /* smatch_conditions */
334 void __split_whole_condition(struct expression *expr);
335 void __handle_logic(struct expression *expr);
336 int is_condition(struct expression *expr);
337 int __handle_condition_assigns(struct expression *expr);
338 int __handle_select_assigns(struct expression *expr);
339 int __handle_expr_statement_assigns(struct expression *expr);
341 /* smatch_implied.c */
342 extern int option_debug_implied;
343 extern int option_debug_related;
344 extern int option_no_implied;
345 void get_implications(char *name, struct symbol *sym, int comparison, long long num,
346 struct state_list **true_states,
347 struct state_list **false_states);
348 struct range_list_stack;
349 struct state_list *__implied_case_slist(struct expression *switch_expr,
350 struct expression *case_expr,
351 struct range_list_stack **remaining_cases,
352 struct state_list **raw_slist);
353 struct range_list *__get_implied_values(struct expression *switch_expr);
354 void overwrite_states_using_pool(struct sm_state *sm);
356 /* smatch_extras.c */
357 #define SMATCH_EXTRA 1 /* this is my_id from smatch extra set in smatch.c */
359 struct data_range {
360 sval_t min;
361 sval_t max;
364 static const long long valid_ptr_max = LONG_MAX;
365 static const long long valid_ptr_min = 4096;
366 static const sval_t valid_ptr_max_sval = {
367 .type = &ptr_ctype,
368 {.value = LONG_MAX},
370 static const sval_t valid_ptr_min_sval = {
371 .type = &ptr_ctype,
372 {.value = 4096},
375 /* smatch_absolute.c */
376 int get_absolute_min_helper(struct expression *expr, sval_t *sval);
377 int get_absolute_max_helper(struct expression *expr, sval_t *sval);
379 /* smatch_states.c */
380 void __push_fake_cur_slist();
381 struct state_list *__pop_fake_cur_slist();
382 void __merge_slist_into_cur(struct state_list *slist);
384 int unreachable(void);
385 void __set_sm(struct sm_state *sm);
386 struct state_list *__get_cur_slist(void);
387 void __set_true_false_sm(struct sm_state *true_state,
388 struct sm_state *false_state);
389 void nullify_path(void);
390 void __match_nullify_path_hook(const char *fn, struct expression *expr,
391 void *unused);
392 void __unnullify_path(void);
393 int __path_is_null(void);
394 void clear_all_states(void);
396 struct sm_state *get_sm_state(int owner, const char *name,
397 struct symbol *sym);
398 struct sm_state *get_sm_state_expr(int owner, struct expression *expr);
399 void __push_true_states(void);
400 void __use_false_states(void);
401 void __discard_false_states(void);
402 void __merge_false_states(void);
403 void __merge_true_states(void);
405 void __negate_cond_stacks(void);
406 void __use_pre_cond_states(void);
407 void __use_cond_true_states(void);
408 void __use_cond_false_states(void);
409 void __push_cond_stacks(void);
410 struct state_list *__copy_cond_true_states(void);
411 struct state_list *__copy_cond_false_states(void);
412 struct state_list *__pop_cond_true_stack(void);
413 struct state_list *__pop_cond_false_stack(void);
414 void __and_cond_states(void);
415 void __or_cond_states(void);
416 void __save_pre_cond_states(void);
417 void __discard_pre_cond_states(void);
418 void __use_cond_states(void);
419 extern struct state_list *__last_base_slist;
421 void __warn_on_silly_pre_loops(void);
423 void __push_continues(void);
424 void __discard_continues(void);
425 void __process_continues(void);
426 void __merge_continues(void);
428 void __push_breaks(void);
429 void __process_breaks(void);
430 int __has_breaks(void);
431 void __merge_breaks(void);
432 void __use_breaks(void);
434 void __save_switch_states(struct expression *switch_expr);
435 void __discard_switches(void);
436 void __merge_switches(struct expression *switch_expr, struct expression *case_expr);
437 void __push_default(void);
438 void __set_default(void);
439 int __pop_default(void);
441 void __push_conditions(void);
442 void __discard_conditions(void);
444 void __save_gotos(const char *name);
445 void __merge_gotos(const char *name);
447 void __print_cur_slist(void);
449 /* smatch_hooks.c */
450 void __pass_to_client(void *data, enum hook_type type);
451 void __pass_to_client_no_data(enum hook_type type);
452 void __pass_case_to_client(struct expression *switch_expr,
453 struct expression *case_expr);
454 int __has_merge_function(int client_id);
455 struct smatch_state *__client_merge_function(int owner,
456 struct smatch_state *s1,
457 struct smatch_state *s2);
458 struct smatch_state *__client_unmatched_state_function(struct sm_state *sm);
459 void __push_scope_hooks(void);
460 void __call_scope_hooks(void);
462 /* smatch_function_hooks.c */
463 void create_function_hook_hash(void);
464 void __match_initializer_call(struct symbol *sym);
466 /* smatch_db.c */
467 enum info_type {
468 INTERNAL = 0,
469 PARAM_VALUE = 1,
470 BUF_SIZE = 2,
471 USER_DATA = 3,
472 CAPPED_DATA = 4,
473 RETURN_VALUE = 5,
474 DEREFERENCE = 6,
475 RANGE_CAP = 7,
476 LOCK_HELD = 8,
477 LOCK_RELEASED = 9,
478 ABSOLUTE_LIMITS = 10,
479 LIMITED_VALUE = 11,
480 ADDED_VALUE = 12,
481 FILTER_VALUE = 13,
484 void add_definition_db_callback(void (*callback)(const char *name, struct symbol *sym, char *key, char *value), int type);
485 void add_member_info_callback(int owner, void (*callback)(char *fn, char *global_static, int param, char *printed_name, struct smatch_state *state));
486 void add_returned_state_callback(void (*fn)(int return_id, char *return_ranges, struct expression *returned_expr, struct state_list *slist));
487 void add_returned_member_callback(int owner, void (*callback)(int return_id, char *return_ranges, char *printed_name, struct smatch_state *state));
488 void add_db_fn_call_callback(int type, void (*callback)(struct expression *arg, char *value));
489 struct range_list *db_return_vals(struct expression *expr);
490 char *get_variable_from_key(struct expression *arg, char *key, struct symbol **sym);
492 #define run_sql(call_back, sql...) \
493 do { \
494 char sql_txt[1024]; \
495 snprintf(sql_txt, 1024, sql); \
496 sm_debug("%s\n", sql_txt); \
497 sql_exec(call_back, sql_txt); \
498 } while (0)
500 void sql_exec(int (*callback)(void*, int, char**, char**), const char *sql);
501 void open_smatch_db(void);
503 /* smatch_files.c */
504 struct token *get_tokens_file(const char *filename);
506 /* smatch.c */
507 extern char *option_project_str;
508 extern char *data_dir;
509 extern int option_no_data;
510 extern int option_spammy;
511 extern int option_full_path;
512 extern int option_param_mapper;
513 extern int option_info;
514 extern int option_call_tree;
515 extern int num_checks;
517 enum project_type {
518 PROJ_NONE,
519 PROJ_KERNEL,
520 PROJ_WINE,
522 extern enum project_type option_project;
523 const char *check_name(unsigned short id);
526 /* smatch_buf_size.c */
527 int get_array_size(struct expression *expr);
528 int get_array_size_bytes(struct expression *expr);
529 int get_array_size_bytes_min(struct expression *expr);
531 /* smatch_capped.c */
532 int is_capped(struct expression *expr);
534 /* check_user_data.c */
535 int is_user_data(struct expression *expr);
537 /* check_locking.c */
538 void print_held_locks();
540 /* check_assigned_expr.c */
541 struct expression *get_assigned_expr(struct expression *expr);
543 /* smatch_comparison.c */
544 int get_comparison(struct expression *left, struct expression *right);
546 /* smatch_sval.c */
547 sval_t *sval_alloc(sval_t sval);
548 sval_t *sval_alloc_permanent(sval_t sval);
549 sval_t sval_blank(struct expression *expr);
550 sval_t sval_type_val(struct symbol *type, long long val);
551 sval_t sval_from_val(struct expression *expr, long long val);
552 int sval_unsigned(sval_t sval);
553 int sval_signed(sval_t sval);
554 int sval_bits(sval_t sval);
555 int sval_positive_bits(sval_t sval);
556 int sval_bits_used(sval_t sval);
557 int sval_is_negative(sval_t sval);
558 int sval_is_positive(sval_t sval);
559 int sval_is_min(sval_t sval);
560 int sval_is_max(sval_t sval);
561 int sval_is_a_min(sval_t sval);
562 int sval_is_a_max(sval_t sval);
563 int sval_cmp(sval_t one, sval_t two);
564 int sval_cmp_t(struct symbol *type, sval_t one, sval_t two);
565 int sval_cmp_val(sval_t one, long long val);
566 sval_t sval_min(sval_t one, sval_t two);
567 sval_t sval_max(sval_t one, sval_t two);
568 int sval_too_low(struct symbol *type, sval_t sval);
569 int sval_too_high(struct symbol *type, sval_t sval);
570 int sval_fits(struct symbol *type, sval_t sval);
571 sval_t sval_cast(struct symbol *type, sval_t sval);
572 sval_t sval_preop(sval_t sval, int op);
573 sval_t sval_binop(sval_t left, int op, sval_t right);
574 int sval_binop_overflows(sval_t left, int op, sval_t right);
575 const char *sval_to_str(sval_t sval);
576 const char *sval_to_numstr(sval_t sval);
577 sval_t ll_to_sval(long long val);
579 #endif /* !SMATCH_H_ */