smatch_param_limit: extra: store parameter implications in return_states
[smatch.git] / smatch.h
blobb7b13af16b275f36656ade7bbd790bd5016f4790
1 /*
2 * sparse/smatch.h
4 * Copyright (C) 2006 Dan Carpenter.
6 * Licensed under the Open Software License version 1.1
8 */
10 #ifndef SMATCH_H_
11 # define SMATCH_H_
13 #include <stdio.h>
14 #include <string.h>
15 #include <limits.h>
16 #include "lib.h"
17 #include "allocate.h"
18 #include "parse.h"
19 #include "expression.h"
21 typedef struct {
22 struct symbol *type;
23 union {
24 long long value;
25 unsigned long long uvalue;
27 } sval_t;
29 struct smatch_state {
30 const char *name;
31 void *data;
33 #define STATE(_x) static struct smatch_state _x = { .name = #_x }
34 extern struct smatch_state undefined;
35 extern struct smatch_state merged;
36 extern struct smatch_state true_state;
37 extern struct smatch_state false_state;
38 DECLARE_ALLOCATOR(smatch_state);
40 static inline void *INT_PTR(int i)
42 return (void *)(long)i;
45 static inline int PTR_INT(void *p)
47 return (int)(long)p;
50 struct sm_state {
51 unsigned short owner;
52 unsigned int merged:1;
53 unsigned int implied:1;
54 const char *name;
55 struct symbol *sym;
56 struct smatch_state *state;
57 unsigned int line;
58 struct state_list *pool;
59 struct sm_state *left;
60 struct sm_state *right;
61 unsigned int nr_children;
62 struct state_list *possible;
65 struct tracker {
66 int owner;
67 char *name;
68 struct symbol *sym;
70 DECLARE_ALLOCATOR(tracker);
71 DECLARE_PTR_LIST(tracker_list, struct tracker);
73 enum hook_type {
74 EXPR_HOOK,
75 STMT_HOOK,
76 SYM_HOOK,
77 STRING_HOOK,
78 DECLARATION_HOOK,
79 ASSIGNMENT_HOOK,
80 RAW_ASSIGNMENT_HOOK,
81 GLOBAL_ASSIGNMENT_HOOK,
82 LOGIC_HOOK,
83 CONDITION_HOOK,
84 PRELOOP_HOOK,
85 SELECT_HOOK,
86 WHOLE_CONDITION_HOOK,
87 FUNCTION_CALL_HOOK,
88 CALL_ASSIGNMENT_HOOK,
89 MACRO_ASSIGNMENT_HOOK,
90 BINOP_HOOK,
91 OP_HOOK,
92 DEREF_HOOK,
93 CASE_HOOK,
94 ASM_HOOK,
95 CAST_HOOK,
96 SIZEOF_HOOK,
97 BASE_HOOK,
98 FUNC_DEF_HOOK,
99 END_FUNC_HOOK,
100 RETURN_HOOK,
101 END_FILE_HOOK,
104 #define TRUE 1
105 #define FALSE 0
107 struct range_list;
109 void add_hook(void *func, enum hook_type type);
110 typedef struct smatch_state *(merge_func_t)(struct smatch_state *s1, struct smatch_state *s2);
111 typedef struct smatch_state *(unmatched_func_t)(struct sm_state *state);
112 void add_merge_hook(int client_id, merge_func_t *func);
113 void add_unmatched_state_hook(int client_id, unmatched_func_t *func);
114 typedef void (scope_hook)(void *data);
115 void add_scope_hook(scope_hook *hook, void *data);
116 typedef void (func_hook)(const char *fn, struct expression *expr, void *data);
117 typedef void (implication_hook)(const char *fn, struct expression *call_expr,
118 struct expression *assign_expr, void *data);
119 typedef void (return_implies_hook)(struct expression *call_expr,
120 int param, char *key, char *value);
121 typedef int (implied_return_hook)(struct expression *call_expr, void *info, struct range_list **rl);
122 void add_function_hook(const char *look_for, func_hook *call_back, void *data);
124 void add_function_assign_hook(const char *look_for, func_hook *call_back,
125 void *info);
126 void add_implied_return_hook(const char *look_for,
127 implied_return_hook *call_back,
128 void *info);
129 void add_macro_assign_hook(const char *look_for, func_hook *call_back,
130 void *info);
131 void add_macro_assign_hook_extra(const char *look_for, func_hook *call_back,
132 void *info);
133 void return_implies_state(const char *look_for, long long start, long long end,
134 implication_hook *call_back, void *info);
135 void add_db_return_implies_callback(int type, return_implies_hook *callback);
136 void add_db_return_states_callback(int type, return_implies_hook *callback);
137 int get_implied_return(struct expression *expr, struct range_list **rl);
139 typedef void (modification_hook)(struct sm_state *sm);
140 void add_modification_hook(int owner, modification_hook *call_back);
141 void add_indirect_modification_hook(int owner, modification_hook *call_back);
143 const char *get_filename(void);
144 char *get_function(void);
145 int get_lineno(void);
146 extern int final_pass;
147 extern struct symbol *cur_func_sym;
148 extern int option_debug;
149 extern int local_debug;
151 extern FILE *sm_outfd;
152 #define sm_printf(msg...) do { if (final_pass) fprintf(sm_outfd, msg); } while (0)
154 static inline void sm_prefix(void)
156 sm_printf("%s:%d %s() ", get_filename(), get_lineno(), get_function());
159 static inline void print_implied_debug_msg();
161 #define sm_msg(msg...) \
162 do { \
163 print_implied_debug_msg(); \
164 if (!option_debug && !final_pass) \
165 break; \
166 sm_prefix(); \
167 sm_printf(msg); \
168 sm_printf("\n"); \
169 } while (0)
171 extern char *implied_debug_msg;
172 static inline void print_implied_debug_msg()
174 static struct symbol *last_printed = NULL;
176 if (!implied_debug_msg)
177 return;
178 if (last_printed == cur_func_sym)
179 return;
180 last_printed = cur_func_sym;
181 sm_msg("%s", implied_debug_msg);
184 #define sm_debug(msg...) do { if (option_debug) sm_printf(msg); } while (0)
186 #define sm_info(msg...) do { \
187 if (option_debug || (option_info && final_pass)) { \
188 sm_prefix(); \
189 sm_printf("info: "); \
190 sm_printf(msg); \
191 sm_printf("\n"); \
193 } while(0)
195 struct smatch_state *get_state(int owner, const char *name, struct symbol *sym);
196 struct smatch_state *get_state_expr(int owner, struct expression *expr);
197 struct state_list *get_possible_states(int owner, const char *name,
198 struct symbol *sym);
199 struct state_list *get_possible_states_expr(int owner, struct expression *expr);
200 struct sm_state *set_state(int owner, const char *name, struct symbol *sym,
201 struct smatch_state *state);
202 struct sm_state *set_state_expr(int owner, struct expression *expr,
203 struct smatch_state *state);
204 void delete_state(int owner, const char *name, struct symbol *sym);
205 void delete_state_expr(int owner, struct expression *expr);
206 void set_true_false_states(int owner, const char *name, struct symbol *sym,
207 struct smatch_state *true_state,
208 struct smatch_state *false_state);
209 void set_true_false_states_expr(int owner, struct expression *expr,
210 struct smatch_state *true_state,
211 struct smatch_state *false_state);
213 struct state_list *get_all_states_slist(int owner, struct state_list *source);
214 struct state_list *get_all_states(int id);
215 int is_reachable(void);
217 /* smatch_helper.c */
218 char *alloc_string(const char *str);
219 void free_string(char *str);
220 struct smatch_state *alloc_state_num(int num);
221 struct expression *get_argument_from_call_expr(struct expression_list *args,
222 int num);
223 char *get_variable_from_expr_complex(struct expression *expr,
224 struct symbol **sym_ptr);
225 char *get_variable_from_expr(struct expression *expr,
226 struct symbol **sym_ptr);
227 int sym_name_is(const char *name, struct expression *expr);
228 int get_value(struct expression *expr, sval_t *val);
229 int get_implied_value(struct expression *expr, sval_t *val);
230 int get_implied_min(struct expression *expr, sval_t *sval);
231 int get_implied_max(struct expression *expr, sval_t *val);
232 int get_hard_max(struct expression *expr, sval_t *sval);
233 int get_fuzzy_min(struct expression *expr, sval_t *min);
234 int get_fuzzy_max(struct expression *expr, sval_t *max);
235 int get_absolute_min(struct expression *expr, sval_t *sval);
236 int get_absolute_max(struct expression *expr, sval_t *sval);
237 int parse_call_math(struct expression *expr, char *math, sval_t *val);
238 int is_zero(struct expression *expr);
239 int known_condition_true(struct expression *expr);
240 int known_condition_false(struct expression *expr);
241 int implied_condition_true(struct expression *expr);
242 int implied_condition_false(struct expression *expr);
244 int is_array(struct expression *expr);
245 struct expression *get_array_name(struct expression *expr);
246 struct expression *get_array_offset(struct expression *expr);
247 const char *show_state(struct smatch_state *state);
248 struct statement *get_expression_statement(struct expression *expr);
249 struct expression *strip_parens(struct expression *expr);
250 struct expression *strip_expr(struct expression *expr);
251 void scoped_state(int my_id, const char *name, struct symbol *sym);
252 int is_error_return(struct expression *expr);
253 int getting_address(void);
254 char *get_member_name(struct expression *expr);
255 char *get_fnptr_name(struct expression *expr);
256 int positions_eq(struct position pos1, struct position pos2);
257 struct statement *get_current_statement(void);
258 int get_param_num_from_sym(struct symbol *sym);
260 /* smatch_type.c */
261 struct symbol *get_real_base_type(struct symbol *sym);
262 int type_bits(struct symbol *type);
263 int type_positive_bits(struct symbol *type);
264 struct symbol *get_pointer_type(struct expression *expr);
265 struct symbol *get_type(struct expression *expr);
266 int type_unsigned(struct symbol *base_type);
267 int type_signed(struct symbol *base_type);
268 int expr_unsigned(struct expression *expr);
269 int returns_unsigned(struct symbol *base_type);
270 int is_pointer(struct expression *expr);
271 int returns_pointer(struct symbol *base_type);
272 sval_t sval_type_max(struct symbol *base_type);
273 sval_t sval_type_min(struct symbol *base_type);
274 int nr_bits(struct expression *expr);
275 int is_static(struct expression *expr);
276 int types_equiv(struct symbol *one, struct symbol *two);
277 const char *global_static();
278 struct symbol *cur_func_return_type(void);
279 struct symbol *get_arg_type(struct expression *fn, int arg);
280 struct symbol *get_member_type_from_key(struct symbol *sym, char *key);
282 /* smatch_ignore.c */
283 void add_ignore(int owner, const char *name, struct symbol *sym);
284 int is_ignored(int owner, const char *name, struct symbol *sym);
286 /* smatch_tracker */
287 struct tracker *alloc_tracker(int owner, const char *name, struct symbol *sym);
288 void add_tracker(struct tracker_list **list, int owner, const char *name,
289 struct symbol *sym);
290 void add_tracker_expr(struct tracker_list **list, int owner, struct expression *expr);
291 void del_tracker(struct tracker_list **list, int owner, const char *name,
292 struct symbol *sym);
293 int in_tracker_list(struct tracker_list *list, int owner, const char *name,
294 struct symbol *sym);
295 void free_tracker_list(struct tracker_list **list);
296 void free_trackers_and_list(struct tracker_list **list);
298 /* smatch_conditions */
299 int in_condition(void);
301 /* smatch_flow.c */
303 void smatch (int argc, char **argv);
304 int inside_loop(void);
305 int in_expression_statement(void);
306 void __split_expr(struct expression *expr);
307 void __split_stmt(struct statement *stmt);
308 extern int option_assume_loops;
309 extern int option_known_conditions;
310 extern int option_two_passes;
311 extern int option_no_db;
312 extern int option_file_output;
313 extern struct expression_list *big_expression_stack;
314 extern struct statement_list *big_statement_stack;
315 extern int __in_pre_condition;
316 extern int __bail_on_rest_of_function;
318 /* smatch_conditions */
319 void __split_whole_condition(struct expression *expr);
320 void __handle_logic(struct expression *expr);
321 int is_condition(struct expression *expr);
322 int __handle_condition_assigns(struct expression *expr);
323 int __handle_select_assigns(struct expression *expr);
324 int __handle_expr_statement_assigns(struct expression *expr);
326 /* smatch_implied.c */
327 extern int option_debug_implied;
328 extern int option_debug_related;
329 extern int option_no_implied;
330 void get_implications(char *name, struct symbol *sym, int comparison, long long num,
331 struct state_list **true_states,
332 struct state_list **false_states);
333 struct range_list_stack;
334 struct state_list *__implied_case_slist(struct expression *switch_expr,
335 struct expression *case_expr,
336 struct range_list_stack **remaining_cases,
337 struct state_list **raw_slist);
338 struct range_list *__get_implied_values(struct expression *switch_expr);
339 void overwrite_states_using_pool(struct sm_state *sm);
341 /* smatch_extras.c */
342 #define SMATCH_EXTRA 1 /* this is my_id from smatch extra set in smatch.c */
344 struct data_range {
345 sval_t min;
346 sval_t max;
349 static const long long valid_ptr_max = LONG_MAX;
350 static const long long valid_ptr_min = 4096;
351 static const sval_t valid_ptr_max_sval = {
352 .type = &ptr_ctype,
353 .value = LONG_MAX,
355 static const sval_t valid_ptr_min_sval = {
356 .type = &ptr_ctype,
357 .value = 4096,
360 /* smatch_absolute.c */
361 int get_absolute_min_helper(struct expression *expr, sval_t *sval);
362 int get_absolute_max_helper(struct expression *expr, sval_t *sval);
364 /* smatch_states.c */
365 void __push_fake_cur_slist();
366 struct state_list *__pop_fake_cur_slist();
367 void __merge_slist_into_cur(struct state_list *slist);
369 int unreachable(void);
370 void __set_sm(struct sm_state *sm);
371 struct state_list *__get_cur_slist(void);
372 void __set_true_false_sm(struct sm_state *true_state,
373 struct sm_state *false_state);
374 void nullify_path(void);
375 void __match_nullify_path_hook(const char *fn, struct expression *expr,
376 void *unused);
377 void __unnullify_path(void);
378 int __path_is_null(void);
379 void clear_all_states(void);
381 struct sm_state *get_sm_state(int owner, const char *name,
382 struct symbol *sym);
383 struct sm_state *get_sm_state_expr(int owner, struct expression *expr);
384 void __push_true_states(void);
385 void __use_false_states(void);
386 void __discard_false_states(void);
387 void __merge_false_states(void);
388 void __merge_true_states(void);
390 void __negate_cond_stacks(void);
391 void __use_pre_cond_states(void);
392 void __use_cond_true_states(void);
393 void __use_cond_false_states(void);
394 void __push_cond_stacks(void);
395 struct state_list *__copy_cond_true_states(void);
396 struct state_list *__copy_cond_false_states(void);
397 struct state_list *__pop_cond_true_stack(void);
398 struct state_list *__pop_cond_false_stack(void);
399 void __and_cond_states(void);
400 void __or_cond_states(void);
401 void __save_pre_cond_states(void);
402 void __discard_pre_cond_states(void);
403 void __use_cond_states(void);
404 extern struct state_list *__last_base_slist;
406 void __warn_on_silly_pre_loops(void);
408 void __push_continues(void);
409 void __discard_continues(void);
410 void __process_continues(void);
411 void __merge_continues(void);
413 void __push_breaks(void);
414 void __process_breaks(void);
415 int __has_breaks(void);
416 void __merge_breaks(void);
417 void __use_breaks(void);
419 void __save_switch_states(struct expression *switch_expr);
420 void __discard_switches(void);
421 void __merge_switches(struct expression *switch_expr, struct expression *case_expr);
422 void __push_default(void);
423 void __set_default(void);
424 int __pop_default(void);
426 void __push_conditions(void);
427 void __discard_conditions(void);
429 void __save_gotos(const char *name);
430 void __merge_gotos(const char *name);
432 void __print_cur_slist(void);
434 /* smatch_hooks.c */
435 void __pass_to_client(void *data, enum hook_type type);
436 void __pass_to_client_no_data(enum hook_type type);
437 void __pass_case_to_client(struct expression *switch_expr,
438 struct expression *case_expr);
439 int __has_merge_function(int client_id);
440 struct smatch_state *__client_merge_function(int owner,
441 struct smatch_state *s1,
442 struct smatch_state *s2);
443 struct smatch_state *__client_unmatched_state_function(struct sm_state *sm);
444 void __push_scope_hooks(void);
445 void __call_scope_hooks(void);
447 /* smatch_function_hooks.c */
448 void create_function_hook_hash(void);
449 void __match_initializer_call(struct symbol *sym);
451 /* smatch_db.c */
452 enum info_type {
453 INTERNAL = 0,
454 PARAM_VALUE,
455 BUF_SIZE,
456 USER_DATA,
457 CAPPED_DATA,
458 RETURN_VALUE,
459 DEREFERENCE,
460 RANGE_CAP,
461 LOCK_HELD,
462 LOCK_RELEASED,
463 ABSOLUTE_LIMITS,
464 LIMITED_VALUE,
467 void add_definition_db_callback(void (*callback)(const char *name, struct symbol *sym, char *key, char *value), int type);
468 void add_member_info_callback(int owner, void (*callback)(char *fn, char *global_static, int param, char *printed_name, struct smatch_state *state));
469 void add_returned_state_callback(void (*fn)(int return_id, char *return_ranges, struct expression *returned_expr, struct state_list *slist));
470 void add_returned_member_callback(int owner, void (*callback)(int return_id, char *return_ranges, char *printed_name, struct smatch_state *state));
471 void add_db_fn_call_callback(int type, void (*callback)(struct expression *arg, char *value));
472 struct range_list *db_return_vals(struct expression *expr);
474 #define run_sql(call_back, sql...) \
475 do { \
476 char sql_txt[1024]; \
477 snprintf(sql_txt, 1024, sql); \
478 sm_debug("%s\n", sql_txt); \
479 sql_exec(call_back, sql_txt); \
480 } while (0)
482 void sql_exec(int (*callback)(void*, int, char**, char**), const char *sql);
483 void open_smatch_db(void);
485 /* smatch_files.c */
486 struct token *get_tokens_file(const char *filename);
488 /* smatch.c */
489 extern char *option_project_str;
490 extern char *data_dir;
491 extern int option_no_data;
492 extern int option_spammy;
493 extern int option_full_path;
494 extern int option_param_mapper;
495 extern int option_info;
496 extern int option_call_tree;
497 extern int num_checks;
499 enum project_type {
500 PROJ_NONE,
501 PROJ_KERNEL,
502 PROJ_WINE,
504 extern enum project_type option_project;
505 const char *check_name(unsigned short id);
508 /* smatch_buf_size.c */
509 int get_array_size(struct expression *expr);
510 int get_array_size_bytes(struct expression *expr);
511 int get_array_size_bytes_min(struct expression *expr);
513 /* smatch_capped.c */
514 int is_capped(struct expression *expr);
516 /* check_user_data.c */
517 int is_user_data(struct expression *expr);
519 /* check_locking.c */
520 void print_held_locks();
522 /* check_assigned_expr.c */
523 struct expression *get_assigned_expr(struct expression *expr);
525 /* smatch_sval.c */
526 sval_t *sval_alloc(sval_t sval);
527 sval_t *sval_alloc_permanent(sval_t sval);
528 sval_t sval_blank(struct expression *expr);
529 sval_t sval_type_val(struct symbol *type, long long val);
530 sval_t sval_from_val(struct expression *expr, long long val);
531 int sval_unsigned(sval_t sval);
532 int sval_signed(sval_t sval);
533 int sval_bits(sval_t sval);
534 int sval_positive_bits(sval_t sval);
535 int sval_bits_used(sval_t sval);
536 int sval_is_negative(sval_t sval);
537 int sval_is_positive(sval_t sval);
538 int sval_is_min(sval_t sval);
539 int sval_is_max(sval_t sval);
540 int sval_is_a_min(sval_t sval);
541 int sval_is_a_max(sval_t sval);
542 int sval_cmp(sval_t one, sval_t two);
543 int sval_cmp_t(struct symbol *type, sval_t one, sval_t two);
544 int sval_cmp_val(sval_t one, long long val);
545 int sval_too_low(struct symbol *type, sval_t sval);
546 int sval_too_high(struct symbol *type, sval_t sval);
547 int sval_fits(struct symbol *type, sval_t sval);
548 sval_t sval_cast(struct symbol *type, sval_t sval);
549 sval_t sval_preop(sval_t sval, int op);
550 sval_t sval_binop(sval_t left, int op, sval_t right);
551 int sval_binop_overflows(sval_t left, int op, sval_t right);
552 const char *sval_to_str(sval_t sval);
553 const char *sval_to_numstr(sval_t sval);
554 sval_t ll_to_sval(long long val);
556 #endif /* !SMATCH_H_ */