db: export get_static_filter()
[smatch.git] / smatch_ranges.c
blob555a00e0364eadcfe634a385225eee02b519eae1
1 /*
2 * Copyright (C) 2009 Dan Carpenter.
4 * This program is free software; you can redistribute it and/or
5 * modify it under the terms of the GNU General Public License
6 * as published by the Free Software Foundation; either version 2
7 * of the License, or (at your option) any later version.
9 * This program is distributed in the hope that it will be useful,
10 * but WITHOUT ANY WARRANTY; without even the implied warranty of
11 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12 * GNU General Public License for more details.
14 * You should have received a copy of the GNU General Public License
15 * along with this program; if not, see http://www.gnu.org/copyleft/gpl.txt
18 #include "parse.h"
19 #include "smatch.h"
20 #include "smatch_extra.h"
21 #include "smatch_slist.h"
23 ALLOCATOR(data_info, "smatch extra data");
24 ALLOCATOR(data_range, "data range");
25 __DO_ALLOCATOR(struct data_range, sizeof(struct data_range), __alignof__(struct data_range),
26 "permanent ranges", perm_data_range);
28 char *show_rl(struct range_list *list)
30 struct data_range *tmp;
31 char full[256];
32 int i = 0;
34 full[0] = '\0';
35 full[255] = '\0';
36 FOR_EACH_PTR(list, tmp) {
37 if (i++)
38 strncat(full, ",", 254 - strlen(full));
39 if (sval_cmp(tmp->min, tmp->max) == 0) {
40 strncat(full, sval_to_str(tmp->min), 254 - strlen(full));
41 continue;
43 strncat(full, sval_to_str(tmp->min), 254 - strlen(full));
44 strncat(full, "-", 254 - strlen(full));
45 strncat(full, sval_to_str(tmp->max), 254 - strlen(full));
46 } END_FOR_EACH_PTR(tmp);
47 return alloc_sname(full);
50 static int str_to_comparison_arg_helper(const char *str,
51 struct expression *call, int *comparison,
52 struct expression **arg, char **endp)
54 int param;
55 char *c = (char *)str;
57 if (*c != '[')
58 return 0;
59 c++;
61 if (*c == '<') {
62 c++;
63 if (*c == '=') {
64 *comparison = SPECIAL_LTE;
65 c++;
66 } else {
67 *comparison = '<';
69 } else if (*c == '=') {
70 c++;
71 c++;
72 *comparison = SPECIAL_EQUAL;
73 } else if (*c == '>') {
74 c++;
75 if (*c == '=') {
76 *comparison = SPECIAL_GTE;
77 c++;
78 } else {
79 *comparison = '>';
81 } else if (*c == '!') {
82 c++;
83 c++;
84 *comparison = SPECIAL_NOTEQUAL;
85 } else {
86 return 0;
89 if (*c != '$')
90 return 0;
91 c++;
93 param = strtoll(c, &c, 10);
94 c++; /* skip the ']' character */
95 if (endp)
96 *endp = (char *)c;
98 if (!call)
99 return 0;
100 *arg = get_argument_from_call_expr(call->args, param);
101 if (!*arg)
102 return 0;
103 return 1;
106 int str_to_comparison_arg(const char *str, struct expression *call, int *comparison, struct expression **arg)
108 while (1) {
109 if (!*str)
110 return 0;
111 if (*str == '[')
112 break;
113 str++;
115 return str_to_comparison_arg_helper(str, call, comparison, arg, NULL);
118 static int get_val_from_key(int use_max, struct symbol *type, char *c, struct expression *call, char **endp, sval_t *sval)
120 struct expression *arg;
121 int comparison;
122 sval_t ret, tmp;
124 if (use_max)
125 ret = sval_type_max(type);
126 else
127 ret = sval_type_min(type);
129 if (!str_to_comparison_arg_helper(c, call, &comparison, &arg, endp)) {
130 *sval = ret;
131 return 0;
134 if (use_max && get_implied_max(arg, &tmp)) {
135 ret = tmp;
136 if (comparison == '<') {
137 tmp.value = 1;
138 ret = sval_binop(ret, '-', tmp);
141 if (!use_max && get_implied_min(arg, &tmp)) {
142 ret = tmp;
143 if (comparison == '>') {
144 tmp.value = 1;
145 ret = sval_binop(ret, '+', tmp);
149 *sval = ret;
150 return 1;
153 static sval_t add_one(sval_t sval)
155 sval.value++;
156 return sval;
159 static sval_t sub_one(sval_t sval)
161 sval.value--;
162 return sval;
165 void filter_by_comparison(struct range_list **rl, int comparison, struct range_list *right)
167 struct range_list *left_orig = *rl;
168 struct range_list *right_orig = right;
169 struct range_list *ret_rl = *rl;
170 struct symbol *cast_type;
171 sval_t min, max;
173 cast_type = rl_type(left_orig);
174 if (sval_type_max(rl_type(left_orig)).uvalue < sval_type_max(rl_type(right_orig)).uvalue)
175 cast_type = rl_type(right_orig);
176 if (sval_type_max(cast_type).uvalue < INT_MAX)
177 cast_type = &int_ctype;
179 min = sval_type_min(cast_type);
180 max = sval_type_max(cast_type);
181 left_orig = cast_rl(cast_type, left_orig);
182 right_orig = cast_rl(cast_type, right_orig);
184 switch (comparison) {
185 case '<':
186 case SPECIAL_UNSIGNED_LT:
187 ret_rl = remove_range(left_orig, rl_max(right_orig), max);
188 break;
189 case SPECIAL_LTE:
190 case SPECIAL_UNSIGNED_LTE:
191 if (!sval_is_max(rl_max(right_orig)))
192 ret_rl = remove_range(left_orig, add_one(rl_max(right_orig)), max);
193 break;
194 case SPECIAL_EQUAL:
195 if (!sval_is_max(rl_max(right_orig)))
196 ret_rl = remove_range(ret_rl, add_one(rl_max(right_orig)), max);
197 if (!sval_is_min(rl_min(right_orig)))
198 ret_rl = remove_range(ret_rl, min, sub_one(rl_min(right_orig)));
199 break;
200 case SPECIAL_GTE:
201 case SPECIAL_UNSIGNED_GTE:
202 if (!sval_is_min(rl_min(right_orig)))
203 ret_rl = remove_range(left_orig, min, sub_one(rl_min(right_orig)));
204 break;
205 case '>':
206 case SPECIAL_UNSIGNED_GT:
207 ret_rl = remove_range(left_orig, min, rl_min(right_orig));
208 break;
209 case SPECIAL_NOTEQUAL:
210 if (sval_cmp(rl_min(right_orig), rl_max(right_orig)) == 0)
211 ret_rl = remove_range(left_orig, rl_min(right_orig), rl_min(right_orig));
212 break;
213 default:
214 sm_msg("internal error: unhandled comparison %s", show_special(comparison));
215 return;
218 *rl = cast_rl(rl_type(*rl), ret_rl);
221 static struct range_list *filter_by_comparison_call(char *c, struct expression *call, char **endp, struct range_list *start_rl)
223 struct expression *arg;
224 struct range_list *right_orig;
225 int comparison;
227 if (!str_to_comparison_arg_helper(c, call, &comparison, &arg, endp))
228 return 0;
230 if (!get_implied_rl(arg, &right_orig))
231 return 0;
233 filter_by_comparison(&start_rl, comparison, right_orig);
234 return start_rl;
237 static sval_t parse_val(int use_max, struct expression *call, struct symbol *type, char *c, char **endp)
239 char *start = c;
240 sval_t ret;
242 if (!strncmp(start, "max", 3)) {
243 ret = sval_type_max(type);
244 c += 3;
245 } else if (!strncmp(start, "u64max", 6)) {
246 ret = sval_type_val(type, ULLONG_MAX);
247 c += 6;
248 } else if (!strncmp(start, "s64max", 6)) {
249 ret = sval_type_val(type, LLONG_MAX);
250 c += 6;
251 } else if (!strncmp(start, "u32max", 6)) {
252 ret = sval_type_val(type, UINT_MAX);
253 c += 6;
254 } else if (!strncmp(start, "s32max", 6)) {
255 ret = sval_type_val(type, INT_MAX);
256 c += 6;
257 } else if (!strncmp(start, "u16max", 6)) {
258 ret = sval_type_val(type, USHRT_MAX);
259 c += 6;
260 } else if (!strncmp(start, "s16max", 6)) {
261 ret = sval_type_val(type, SHRT_MAX);
262 c += 6;
263 } else if (!strncmp(start, "min", 3)) {
264 ret = sval_type_min(type);
265 c += 3;
266 } else if (!strncmp(start, "s64min", 6)) {
267 ret = sval_type_val(type, LLONG_MIN);
268 c += 6;
269 } else if (!strncmp(start, "s32min", 6)) {
270 ret = sval_type_val(type, INT_MIN);
271 c += 6;
272 } else if (!strncmp(start, "s16min", 6)) {
273 ret = sval_type_val(type, SHRT_MIN);
274 c += 6;
275 } else if (!strncmp(start, "long_min", 8)) {
276 ret = sval_type_val(type, LONG_MIN);
277 c += 8;
278 } else if (!strncmp(start, "long_max", 8)) {
279 ret = sval_type_val(type, LONG_MAX);
280 c += 8;
281 } else if (!strncmp(start, "ulong_max", 9)) {
282 ret = sval_type_val(type, ULONG_MAX);
283 c += 8;
284 } else if (!strncmp(start, "ptr_max", 7)) {
285 ret = sval_type_val(type, valid_ptr_max);
286 c += 8;
287 } else if (start[0] == '[') {
288 /* this parses [==p0] comparisons */
289 get_val_from_key(1, type, start, call, &c, &ret);
290 } else {
291 ret = sval_type_val(type, strtoll(start, &c, 10));
293 *endp = c;
294 return ret;
297 static char *jump_to_call_math(char *value)
299 char *c = value;
301 while (*c && *c != '[')
302 c++;
304 if (!*c)
305 return NULL;
306 c++;
307 if (*c == '<' || *c == '=' || *c == '>' || *c == '!')
308 return NULL;
310 return c;
313 static void str_to_rl_helper(struct expression *call, struct symbol *type, char *str, char **endp, struct range_list **rl)
315 struct range_list *rl_tmp = NULL;
316 sval_t min, max;
317 char *c;
319 min = sval_type_min(type);
320 max = sval_type_max(type);
321 c = str;
322 while (*c != '\0' && *c != '[') {
323 if (*c == '(')
324 c++;
325 min = parse_val(0, call, type, c, &c);
326 max = min;
327 if (*c == ')')
328 c++;
329 if (*c == '\0' || *c == '[') {
330 add_range(&rl_tmp, min, min);
331 break;
333 if (*c == ',') {
334 add_range(&rl_tmp, min, min);
335 c++;
336 continue;
338 if (*c != '-') {
339 sm_msg("debug XXX: trouble parsing %s c = %s", str, c);
340 break;
342 c++;
343 if (*c == '(')
344 c++;
345 max = parse_val(1, call, type, c, &c);
346 add_range(&rl_tmp, min, max);
347 if (*c == ')')
348 c++;
349 if (*c == ',')
350 c++;
353 *rl = rl_tmp;
354 *endp = c;
357 static void str_to_dinfo(struct expression *call, struct symbol *type, char *value, struct data_info *dinfo)
359 struct range_list *math_rl;
360 char *call_math;
361 char *c;
362 struct range_list *rl = NULL;
364 if (!type)
365 type = &llong_ctype;
367 if (strcmp(value, "empty") == 0)
368 return;
370 if (strncmp(value, "[==$", 4) == 0) {
371 struct expression *arg;
372 int comparison;
374 if (!str_to_comparison_arg(value, call, &comparison, &arg))
375 return;
376 if (!get_implied_rl(arg, &rl))
377 return;
378 goto cast;
381 str_to_rl_helper(call, type, value, &c, &rl);
382 if (*c == '\0')
383 goto cast;
385 call_math = jump_to_call_math(value);
386 if (call_math && parse_call_math_rl(call, call_math, &math_rl)) {
387 rl = rl_intersection(rl, math_rl);
388 goto cast;
392 * For now if we already tried to handle the call math and couldn't
393 * figure it out then bail.
395 if (jump_to_call_math(c) == c + 1)
396 goto cast;
398 rl = filter_by_comparison_call(c, call, &c, rl);
400 cast:
401 rl = cast_rl(type, rl);
402 dinfo->value_ranges = rl;
405 void str_to_rl(struct symbol *type, char *value, struct range_list **rl)
407 struct data_info dinfo = {};
409 str_to_dinfo(NULL, type, value, &dinfo);
410 *rl = dinfo.value_ranges;
413 void call_results_to_rl(struct expression *expr, struct symbol *type, char *value, struct range_list **rl)
415 struct data_info dinfo = {};
417 str_to_dinfo(strip_expr(expr), type, value, &dinfo);
418 *rl = dinfo.value_ranges;
421 int is_whole_rl(struct range_list *rl)
423 struct data_range *drange;
425 if (ptr_list_empty(rl))
426 return 0;
427 drange = first_ptr_list((struct ptr_list *)rl);
428 if (sval_is_min(drange->min) && sval_is_max(drange->max))
429 return 1;
430 return 0;
433 sval_t rl_min(struct range_list *rl)
435 struct data_range *drange;
436 sval_t ret;
438 ret.type = &llong_ctype;
439 ret.value = LLONG_MIN;
440 if (ptr_list_empty(rl))
441 return ret;
442 drange = first_ptr_list((struct ptr_list *)rl);
443 return drange->min;
446 sval_t rl_max(struct range_list *rl)
448 struct data_range *drange;
449 sval_t ret;
451 ret.type = &llong_ctype;
452 ret.value = LLONG_MAX;
453 if (ptr_list_empty(rl))
454 return ret;
455 drange = last_ptr_list((struct ptr_list *)rl);
456 return drange->max;
459 int rl_to_sval(struct range_list *rl, sval_t *sval)
461 sval_t min, max;
463 if (!rl)
464 return 0;
466 min = rl_min(rl);
467 max = rl_max(rl);
468 if (sval_cmp(min, max) != 0)
469 return 0;
470 *sval = min;
471 return 1;
474 struct symbol *rl_type(struct range_list *rl)
476 if (!rl)
477 return NULL;
478 return rl_min(rl).type;
481 static struct data_range *alloc_range_helper_sval(sval_t min, sval_t max, int perm)
483 struct data_range *ret;
485 if (perm)
486 ret = __alloc_perm_data_range(0);
487 else
488 ret = __alloc_data_range(0);
489 ret->min = min;
490 ret->max = max;
491 return ret;
494 struct data_range *alloc_range(sval_t min, sval_t max)
496 return alloc_range_helper_sval(min, max, 0);
499 struct data_range *alloc_range_perm(sval_t min, sval_t max)
501 return alloc_range_helper_sval(min, max, 1);
504 struct range_list *alloc_rl(sval_t min, sval_t max)
506 struct range_list *rl = NULL;
508 if (sval_cmp(min, max) > 0)
509 return alloc_whole_rl(min.type);
511 add_range(&rl, min, max);
512 return rl;
515 struct range_list *alloc_whole_rl(struct symbol *type)
517 if (!type || type_positive_bits(type) < 0)
518 type = &llong_ctype;
519 if (type->type == SYM_ARRAY)
520 type = &ptr_ctype;
522 return alloc_rl(sval_type_min(type), sval_type_max(type));
525 void add_range(struct range_list **list, sval_t min, sval_t max)
527 struct data_range *tmp = NULL;
528 struct data_range *new = NULL;
529 int check_next = 0;
532 * FIXME: This has a problem merging a range_list like: min-0,3-max
533 * with a range like 1-2. You end up with min-2,3-max instead of
534 * just min-max.
536 FOR_EACH_PTR(*list, tmp) {
537 if (check_next) {
538 /* Sometimes we overlap with more than one range
539 so we have to delete or modify the next range. */
540 if (max.value + 1 == tmp->min.value) {
541 /* join 2 ranges here */
542 new->max = tmp->max;
543 DELETE_CURRENT_PTR(tmp);
544 return;
547 /* Doesn't overlap with the next one. */
548 if (sval_cmp(max, tmp->min) < 0)
549 return;
550 /* Partially overlaps with the next one. */
551 if (sval_cmp(max, tmp->max) < 0) {
552 tmp->min.value = max.value + 1;
553 return;
555 /* Completely overlaps with the next one. */
556 if (sval_cmp(max, tmp->max) >= 0) {
557 DELETE_CURRENT_PTR(tmp);
558 /* there could be more ranges to delete */
559 continue;
562 if (!sval_is_max(max) && max.value + 1 == tmp->min.value) {
563 /* join 2 ranges into a big range */
564 new = alloc_range(min, tmp->max);
565 REPLACE_CURRENT_PTR(tmp, new);
566 return;
568 if (sval_cmp(max, tmp->min) < 0) { /* new range entirely below */
569 new = alloc_range(min, max);
570 INSERT_CURRENT(new, tmp);
571 return;
573 if (sval_cmp(min, tmp->min) < 0) { /* new range partially below */
574 if (sval_cmp(max, tmp->max) < 0)
575 max = tmp->max;
576 else
577 check_next = 1;
578 new = alloc_range(min, max);
579 REPLACE_CURRENT_PTR(tmp, new);
580 if (!check_next)
581 return;
582 continue;
584 if (sval_cmp(max, tmp->max) <= 0) /* new range already included */
585 return;
586 if (sval_cmp(min, tmp->max) <= 0) { /* new range partially above */
587 min = tmp->min;
588 new = alloc_range(min, max);
589 REPLACE_CURRENT_PTR(tmp, new);
590 check_next = 1;
591 continue;
593 if (!sval_is_min(min) && min.value - 1 == tmp->max.value) {
594 /* join 2 ranges into a big range */
595 new = alloc_range(tmp->min, max);
596 REPLACE_CURRENT_PTR(tmp, new);
597 check_next = 1;
598 continue;
600 /* the new range is entirely above the existing ranges */
601 } END_FOR_EACH_PTR(tmp);
602 if (check_next)
603 return;
604 new = alloc_range(min, max);
605 add_ptr_list(list, new);
608 struct range_list *clone_rl(struct range_list *list)
610 struct data_range *tmp;
611 struct range_list *ret = NULL;
613 FOR_EACH_PTR(list, tmp) {
614 add_ptr_list(&ret, tmp);
615 } END_FOR_EACH_PTR(tmp);
616 return ret;
619 struct range_list *clone_rl_permanent(struct range_list *list)
621 struct data_range *tmp;
622 struct data_range *new;
623 struct range_list *ret = NULL;
625 FOR_EACH_PTR(list, tmp) {
626 new = alloc_range_perm(tmp->min, tmp->max);
627 add_ptr_list(&ret, new);
628 } END_FOR_EACH_PTR(tmp);
629 return ret;
632 struct range_list *rl_union(struct range_list *one, struct range_list *two)
634 struct data_range *tmp;
635 struct range_list *ret = NULL;
637 FOR_EACH_PTR(one, tmp) {
638 add_range(&ret, tmp->min, tmp->max);
639 } END_FOR_EACH_PTR(tmp);
640 FOR_EACH_PTR(two, tmp) {
641 add_range(&ret, tmp->min, tmp->max);
642 } END_FOR_EACH_PTR(tmp);
643 return ret;
646 struct range_list *remove_range(struct range_list *list, sval_t min, sval_t max)
648 struct data_range *tmp;
649 struct range_list *ret = NULL;
651 FOR_EACH_PTR(list, tmp) {
652 if (sval_cmp(tmp->max, min) < 0) {
653 add_range(&ret, tmp->min, tmp->max);
654 continue;
656 if (sval_cmp(tmp->min, max) > 0) {
657 add_range(&ret, tmp->min, tmp->max);
658 continue;
660 if (sval_cmp(tmp->min, min) >= 0 && sval_cmp(tmp->max, max) <= 0)
661 continue;
662 if (sval_cmp(tmp->min, min) >= 0) {
663 max.value++;
664 add_range(&ret, max, tmp->max);
665 } else if (sval_cmp(tmp->max, max) <= 0) {
666 min.value--;
667 add_range(&ret, tmp->min, min);
668 } else {
669 min.value--;
670 max.value++;
671 add_range(&ret, tmp->min, min);
672 add_range(&ret, max, tmp->max);
674 } END_FOR_EACH_PTR(tmp);
675 return ret;
678 int ranges_equiv(struct data_range *one, struct data_range *two)
680 if (!one && !two)
681 return 1;
682 if (!one || !two)
683 return 0;
684 if (sval_cmp(one->min, two->min) != 0)
685 return 0;
686 if (sval_cmp(one->max, two->max) != 0)
687 return 0;
688 return 1;
691 int rl_equiv(struct range_list *one, struct range_list *two)
693 struct data_range *one_range;
694 struct data_range *two_range;
696 if (one == two)
697 return 1;
699 PREPARE_PTR_LIST(one, one_range);
700 PREPARE_PTR_LIST(two, two_range);
701 for (;;) {
702 if (!one_range && !two_range)
703 return 1;
704 if (!ranges_equiv(one_range, two_range))
705 return 0;
706 NEXT_PTR_LIST(one_range);
707 NEXT_PTR_LIST(two_range);
709 FINISH_PTR_LIST(two_range);
710 FINISH_PTR_LIST(one_range);
712 return 1;
715 int true_comparison_range(struct data_range *left, int comparison, struct data_range *right)
717 switch (comparison) {
718 case '<':
719 case SPECIAL_UNSIGNED_LT:
720 if (sval_cmp(left->min, right->max) < 0)
721 return 1;
722 return 0;
723 case SPECIAL_UNSIGNED_LTE:
724 case SPECIAL_LTE:
725 if (sval_cmp(left->min, right->max) <= 0)
726 return 1;
727 return 0;
728 case SPECIAL_EQUAL:
729 if (sval_cmp(left->max, right->min) < 0)
730 return 0;
731 if (sval_cmp(left->min, right->max) > 0)
732 return 0;
733 return 1;
734 case SPECIAL_UNSIGNED_GTE:
735 case SPECIAL_GTE:
736 if (sval_cmp(left->max, right->min) >= 0)
737 return 1;
738 return 0;
739 case '>':
740 case SPECIAL_UNSIGNED_GT:
741 if (sval_cmp(left->max, right->min) > 0)
742 return 1;
743 return 0;
744 case SPECIAL_NOTEQUAL:
745 if (sval_cmp(left->min, left->max) != 0)
746 return 1;
747 if (sval_cmp(right->min, right->max) != 0)
748 return 1;
749 if (sval_cmp(left->min, right->min) != 0)
750 return 1;
751 return 0;
752 default:
753 sm_msg("unhandled comparison %d\n", comparison);
754 return 0;
756 return 0;
759 int true_comparison_range_LR(int comparison, struct data_range *var, struct data_range *val, int left)
761 if (left)
762 return true_comparison_range(var, comparison, val);
763 else
764 return true_comparison_range(val, comparison, var);
767 static int false_comparison_range_sval(struct data_range *left, int comparison, struct data_range *right)
769 switch (comparison) {
770 case '<':
771 case SPECIAL_UNSIGNED_LT:
772 if (sval_cmp(left->max, right->min) >= 0)
773 return 1;
774 return 0;
775 case SPECIAL_UNSIGNED_LTE:
776 case SPECIAL_LTE:
777 if (sval_cmp(left->max, right->min) > 0)
778 return 1;
779 return 0;
780 case SPECIAL_EQUAL:
781 if (sval_cmp(left->min, left->max) != 0)
782 return 1;
783 if (sval_cmp(right->min, right->max) != 0)
784 return 1;
785 if (sval_cmp(left->min, right->min) != 0)
786 return 1;
787 return 0;
788 case SPECIAL_UNSIGNED_GTE:
789 case SPECIAL_GTE:
790 if (sval_cmp(left->min, right->max) < 0)
791 return 1;
792 return 0;
793 case '>':
794 case SPECIAL_UNSIGNED_GT:
795 if (sval_cmp(left->min, right->max) <= 0)
796 return 1;
797 return 0;
798 case SPECIAL_NOTEQUAL:
799 if (sval_cmp(left->max, right->min) < 0)
800 return 0;
801 if (sval_cmp(left->min, right->max) > 0)
802 return 0;
803 return 1;
804 default:
805 sm_msg("unhandled comparison %d\n", comparison);
806 return 0;
808 return 0;
811 int false_comparison_range_LR(int comparison, struct data_range *var, struct data_range *val, int left)
813 if (left)
814 return false_comparison_range_sval(var, comparison, val);
815 else
816 return false_comparison_range_sval(val, comparison, var);
819 int possibly_true(struct expression *left, int comparison, struct expression *right)
821 struct range_list *rl_left, *rl_right;
822 struct data_range *tmp_left, *tmp_right;
823 struct symbol *type;
825 if (!get_implied_rl(left, &rl_left))
826 return 1;
827 if (!get_implied_rl(right, &rl_right))
828 return 1;
830 type = rl_type(rl_left);
831 if (type_positive_bits(type) < type_positive_bits(rl_type(rl_right)))
832 type = rl_type(rl_right);
833 if (type_positive_bits(type) < 31)
834 type = &int_ctype;
836 rl_left = cast_rl(type, rl_left);
837 rl_right = cast_rl(type, rl_right);
839 FOR_EACH_PTR(rl_left, tmp_left) {
840 FOR_EACH_PTR(rl_right, tmp_right) {
841 if (true_comparison_range(tmp_left, comparison, tmp_right))
842 return 1;
843 } END_FOR_EACH_PTR(tmp_right);
844 } END_FOR_EACH_PTR(tmp_left);
845 return 0;
848 int possibly_false(struct expression *left, int comparison, struct expression *right)
850 struct range_list *rl_left, *rl_right;
851 struct data_range *tmp_left, *tmp_right;
852 struct symbol *type;
854 if (!get_implied_rl(left, &rl_left))
855 return 1;
856 if (!get_implied_rl(right, &rl_right))
857 return 1;
859 type = rl_type(rl_left);
860 if (type_positive_bits(type) < type_positive_bits(rl_type(rl_right)))
861 type = rl_type(rl_right);
862 if (type_positive_bits(type) < 31)
863 type = &int_ctype;
865 rl_left = cast_rl(type, rl_left);
866 rl_right = cast_rl(type, rl_right);
868 FOR_EACH_PTR(rl_left, tmp_left) {
869 FOR_EACH_PTR(rl_right, tmp_right) {
870 if (false_comparison_range_sval(tmp_left, comparison, tmp_right))
871 return 1;
872 } END_FOR_EACH_PTR(tmp_right);
873 } END_FOR_EACH_PTR(tmp_left);
874 return 0;
877 int possibly_true_rl(struct range_list *left_ranges, int comparison, struct range_list *right_ranges)
879 struct data_range *left_tmp, *right_tmp;
881 if (!left_ranges || !right_ranges)
882 return 1;
884 FOR_EACH_PTR(left_ranges, left_tmp) {
885 FOR_EACH_PTR(right_ranges, right_tmp) {
886 if (true_comparison_range(left_tmp, comparison, right_tmp))
887 return 1;
888 } END_FOR_EACH_PTR(right_tmp);
889 } END_FOR_EACH_PTR(left_tmp);
890 return 0;
893 int possibly_false_rl(struct range_list *left_ranges, int comparison, struct range_list *right_ranges)
895 struct data_range *left_tmp, *right_tmp;
897 if (!left_ranges || !right_ranges)
898 return 1;
900 FOR_EACH_PTR(left_ranges, left_tmp) {
901 FOR_EACH_PTR(right_ranges, right_tmp) {
902 if (false_comparison_range_sval(left_tmp, comparison, right_tmp))
903 return 1;
904 } END_FOR_EACH_PTR(right_tmp);
905 } END_FOR_EACH_PTR(left_tmp);
906 return 0;
909 /* FIXME: the _rl here stands for right left so really it should be _lr */
910 int possibly_true_rl_LR(int comparison, struct range_list *a, struct range_list *b, int left)
912 if (left)
913 return possibly_true_rl(a, comparison, b);
914 else
915 return possibly_true_rl(b, comparison, a);
918 int possibly_false_rl_LR(int comparison, struct range_list *a, struct range_list *b, int left)
920 if (left)
921 return possibly_false_rl(a, comparison, b);
922 else
923 return possibly_false_rl(b, comparison, a);
926 int rl_has_sval(struct range_list *rl, sval_t sval)
928 struct data_range *tmp;
930 FOR_EACH_PTR(rl, tmp) {
931 if (sval_cmp(tmp->min, sval) <= 0 &&
932 sval_cmp(tmp->max, sval) >= 0)
933 return 1;
934 } END_FOR_EACH_PTR(tmp);
935 return 0;
938 void tack_on(struct range_list **list, struct data_range *drange)
940 add_ptr_list(list, drange);
943 void push_rl(struct range_list_stack **rl_stack, struct range_list *rl)
945 add_ptr_list(rl_stack, rl);
948 struct range_list *pop_rl(struct range_list_stack **rl_stack)
950 struct range_list *rl;
952 rl = last_ptr_list((struct ptr_list *)*rl_stack);
953 delete_ptr_list_last((struct ptr_list **)rl_stack);
954 return rl;
957 struct range_list *top_rl(struct range_list_stack *rl_stack)
959 struct range_list *rl;
961 rl = last_ptr_list((struct ptr_list *)rl_stack);
962 return rl;
965 void filter_top_rl(struct range_list_stack **rl_stack, sval_t sval)
967 struct range_list *rl;
969 rl = pop_rl(rl_stack);
970 rl = remove_range(rl, sval, sval);
971 push_rl(rl_stack, rl);
974 static int sval_too_big(struct symbol *type, sval_t sval)
976 if (type_bits(type) == 64)
977 return 0;
978 if (sval.uvalue > ((1ULL << type_bits(type)) - 1))
979 return 1;
980 return 0;
983 static void add_range_t(struct symbol *type, struct range_list **rl, sval_t min, sval_t max)
985 /* If we're just adding a number, cast it and add it */
986 if (sval_cmp(min, max) == 0) {
987 add_range(rl, sval_cast(type, min), sval_cast(type, max));
988 return;
991 /* If the range is within the type range then add it */
992 if (sval_fits(type, min) && sval_fits(type, max)) {
993 add_range(rl, sval_cast(type, min), sval_cast(type, max));
994 return;
998 * If the range we are adding has more bits than the range type then
999 * add the whole range type. Eg:
1000 * 0x8000000000000000 - 0xf000000000000000 -> cast to int
1001 * This isn't totally the right thing to do. We could be more granular.
1003 if (sval_too_big(type, min) || sval_too_big(type, max)) {
1004 add_range(rl, sval_type_min(type), sval_type_max(type));
1005 return;
1008 /* Cast negative values to high positive values */
1009 if (sval_is_negative(min) && type_unsigned(type)) {
1010 if (sval_is_positive(max)) {
1011 if (sval_too_high(type, max)) {
1012 add_range(rl, sval_type_min(type), sval_type_max(type));
1013 return;
1015 add_range(rl, sval_type_val(type, 0), sval_cast(type, max));
1016 max = sval_type_max(type);
1017 } else {
1018 max = sval_cast(type, max);
1020 min = sval_cast(type, min);
1021 add_range(rl, min, max);
1024 /* Cast high positive numbers to negative */
1025 if (sval_unsigned(max) && sval_is_negative(sval_cast(type, max))) {
1026 if (!sval_is_negative(sval_cast(type, min))) {
1027 add_range(rl, sval_cast(type, min), sval_type_max(type));
1028 min = sval_type_min(type);
1029 } else {
1030 min = sval_cast(type, min);
1032 max = sval_cast(type, max);
1033 add_range(rl, min, max);
1036 add_range(rl, min, max);
1037 return;
1040 struct range_list *rl_truncate_cast(struct symbol *type, struct range_list *rl)
1042 struct data_range *tmp;
1043 struct range_list *ret = NULL;
1044 sval_t min, max;
1046 if (!rl)
1047 return NULL;
1049 if (!type || type == rl_type(rl))
1050 return rl;
1052 FOR_EACH_PTR(rl, tmp) {
1053 min = tmp->min;
1054 max = tmp->max;
1055 if (type_bits(type) < type_bits(rl_type(rl))) {
1056 min.uvalue = tmp->min.uvalue & ((1ULL << type_bits(type)) - 1);
1057 max.uvalue = tmp->max.uvalue & ((1ULL << type_bits(type)) - 1);
1059 if (sval_cmp(min, max) > 0) {
1060 min = sval_cast(type, min);
1061 max = sval_cast(type, max);
1063 add_range_t(type, &ret, min, max);
1064 } END_FOR_EACH_PTR(tmp);
1066 return ret;
1069 static int rl_is_sane(struct range_list *rl)
1071 struct data_range *tmp;
1072 struct symbol *type;
1074 type = rl_type(rl);
1075 FOR_EACH_PTR(rl, tmp) {
1076 if (!sval_fits(type, tmp->min))
1077 return 0;
1078 if (!sval_fits(type, tmp->max))
1079 return 0;
1080 if (sval_cmp(tmp->min, tmp->max) > 0)
1081 return 0;
1082 } END_FOR_EACH_PTR(tmp);
1084 return 1;
1087 static int rl_type_consistent(struct range_list *rl)
1089 struct data_range *tmp;
1090 struct symbol *type;
1092 type = rl_type(rl);
1093 FOR_EACH_PTR(rl, tmp) {
1094 if (type != tmp->min.type || type != tmp->max.type)
1095 return 0;
1096 } END_FOR_EACH_PTR(tmp);
1097 return 1;
1100 struct range_list *cast_rl(struct symbol *type, struct range_list *rl)
1102 struct data_range *tmp;
1103 struct range_list *ret = NULL;
1105 if (!rl)
1106 return NULL;
1108 if (!type)
1109 return rl;
1110 if (!rl_is_sane(rl))
1111 return alloc_whole_rl(type);
1112 if (type == rl_type(rl) && rl_type_consistent(rl))
1113 return rl;
1115 FOR_EACH_PTR(rl, tmp) {
1116 add_range_t(type, &ret, tmp->min, tmp->max);
1117 } END_FOR_EACH_PTR(tmp);
1119 if (!ret)
1120 return alloc_whole_rl(type);
1122 return ret;
1125 struct range_list *rl_invert(struct range_list *orig)
1127 struct range_list *ret = NULL;
1128 struct data_range *tmp;
1129 sval_t gap_min, abs_max, sval;
1131 if (!orig)
1132 return NULL;
1134 gap_min = sval_type_min(rl_min(orig).type);
1135 abs_max = sval_type_max(rl_max(orig).type);
1137 FOR_EACH_PTR(orig, tmp) {
1138 if (sval_cmp(tmp->min, gap_min) > 0) {
1139 sval = sval_type_val(tmp->min.type, tmp->min.value - 1);
1140 add_range(&ret, gap_min, sval);
1142 gap_min = sval_type_val(tmp->max.type, tmp->max.value + 1);
1143 if (sval_cmp(tmp->max, abs_max) == 0)
1144 gap_min = abs_max;
1145 } END_FOR_EACH_PTR(tmp);
1147 if (sval_cmp(gap_min, abs_max) < 0)
1148 add_range(&ret, gap_min, abs_max);
1150 return ret;
1153 struct range_list *rl_filter(struct range_list *rl, struct range_list *filter)
1155 struct data_range *tmp;
1157 FOR_EACH_PTR(filter, tmp) {
1158 rl = remove_range(rl, tmp->min, tmp->max);
1159 } END_FOR_EACH_PTR(tmp);
1161 return rl;
1164 struct range_list *rl_intersection(struct range_list *one, struct range_list *two)
1166 struct range_list *one_orig;
1167 struct range_list *two_orig;
1168 struct range_list *ret;
1169 struct symbol *ret_type;
1170 struct symbol *small_type;
1171 struct symbol *large_type;
1173 if (!two)
1174 return NULL;
1175 if (!one)
1176 return NULL;
1178 one_orig = one;
1179 two_orig = two;
1181 ret_type = rl_type(one);
1182 small_type = rl_type(one);
1183 large_type = rl_type(two);
1185 if (type_bits(rl_type(two)) < type_bits(small_type)) {
1186 small_type = rl_type(two);
1187 large_type = rl_type(one);
1190 one = cast_rl(large_type, one);
1191 two = cast_rl(large_type, two);
1193 ret = one;
1194 one = rl_invert(one);
1195 two = rl_invert(two);
1197 ret = rl_filter(ret, one);
1198 ret = rl_filter(ret, two);
1200 one = cast_rl(small_type, one_orig);
1201 two = cast_rl(small_type, two_orig);
1203 one = rl_invert(one);
1204 two = rl_invert(two);
1206 ret = cast_rl(small_type, ret);
1207 ret = rl_filter(ret, one);
1208 ret = rl_filter(ret, two);
1210 return cast_rl(ret_type, ret);
1213 static struct range_list *handle_mod_rl(struct range_list *left, struct range_list *right)
1215 sval_t zero;
1216 sval_t max;
1218 max = rl_max(right);
1219 if (sval_is_max(max))
1220 return left;
1221 if (max.value == 0)
1222 return NULL;
1223 max.value--;
1224 if (sval_is_negative(max))
1225 return NULL;
1226 if (sval_cmp(rl_max(left), max) < 0)
1227 return left;
1228 zero = max;
1229 zero.value = 0;
1230 return alloc_rl(zero, max);
1233 static struct range_list *handle_divide_rl(struct range_list *left, struct range_list *right)
1235 sval_t min, max;
1237 if (sval_is_max(rl_max(left)))
1238 return NULL;
1239 if (sval_is_max(rl_max(right)))
1240 return NULL;
1242 if (sval_is_negative(rl_min(left)))
1243 return NULL;
1244 if (sval_cmp_val(rl_min(right), 0) <= 0)
1245 return NULL;
1247 max = sval_binop(rl_max(left), '/', rl_min(right));
1248 min = sval_binop(rl_min(left), '/', rl_max(right));
1250 return alloc_rl(min, max);
1253 static struct range_list *handle_add_mult_rl(struct range_list *left, int op, struct range_list *right)
1255 sval_t min, max;
1257 if (sval_binop_overflows(rl_min(left), op, rl_min(right)))
1258 return NULL;
1259 min = sval_binop(rl_min(left), op, rl_min(right));
1261 if (sval_binop_overflows(rl_max(left), op, rl_max(right)))
1262 return NULL;
1263 max = sval_binop(rl_max(left), op, rl_max(right));
1265 return alloc_rl(min, max);
1268 static unsigned long long sval_fls_mask(sval_t sval)
1270 unsigned long long uvalue = sval.uvalue;
1271 unsigned long long high_bit = 0;
1273 while (uvalue) {
1274 uvalue >>= 1;
1275 high_bit++;
1278 if (high_bit == 0)
1279 return 0;
1281 return ((unsigned long long)-1) >> (64 - high_bit);
1284 static unsigned long long rl_bits_always_set(struct range_list *rl)
1286 return sval_fls_mask(rl_min(rl));
1289 static unsigned long long rl_bits_maybe_set(struct range_list *rl)
1291 return sval_fls_mask(rl_max(rl));
1294 static struct range_list *handle_OR_rl(struct range_list *left, struct range_list *right)
1296 unsigned long long left_min, left_max, right_min, right_max;
1297 sval_t min, max;
1298 sval_t sval;
1300 if ((rl_to_sval(left, &sval) || rl_to_sval(right, &sval)) &&
1301 !sval_binop_overflows(rl_max(left), '+', rl_max(right)))
1302 return rl_binop(left, '+', right);
1304 left_min = rl_bits_always_set(left);
1305 left_max = rl_bits_maybe_set(left);
1306 right_min = rl_bits_always_set(right);
1307 right_max = rl_bits_maybe_set(right);
1309 min.type = max.type = &ullong_ctype;
1310 min.uvalue = left_min | right_min;
1311 max.uvalue = left_max | right_max;
1313 return cast_rl(rl_type(left), alloc_rl(min, max));
1316 struct range_list *rl_binop(struct range_list *left, int op, struct range_list *right)
1318 struct symbol *cast_type;
1319 sval_t left_sval, right_sval;
1320 struct range_list *ret = NULL;
1322 cast_type = rl_type(left);
1323 if (sval_type_max(rl_type(left)).uvalue < sval_type_max(rl_type(right)).uvalue)
1324 cast_type = rl_type(right);
1325 if (sval_type_max(cast_type).uvalue < INT_MAX)
1326 cast_type = &int_ctype;
1328 left = cast_rl(cast_type, left);
1329 right = cast_rl(cast_type, right);
1331 if (!left || !right)
1332 return alloc_whole_rl(cast_type);
1334 if (rl_to_sval(left, &left_sval) && rl_to_sval(right, &right_sval)) {
1335 sval_t val = sval_binop(left_sval, op, right_sval);
1336 return alloc_rl(val, val);
1339 switch (op) {
1340 case '%':
1341 ret = handle_mod_rl(left, right);
1342 break;
1343 case '/':
1344 ret = handle_divide_rl(left, right);
1345 break;
1346 case '*':
1347 case '+':
1348 ret = handle_add_mult_rl(left, op, right);
1349 break;
1350 case '|':
1351 ret = handle_OR_rl(left, right);
1352 break;
1354 /* FIXME: Do the rest as well */
1355 case '-':
1356 case '&':
1357 case SPECIAL_RIGHTSHIFT:
1358 case SPECIAL_LEFTSHIFT:
1359 case '^':
1360 break;
1363 if (!ret)
1364 ret = alloc_whole_rl(cast_type);
1365 return ret;
1368 void free_rl(struct range_list **rlist)
1370 __free_ptr_list((struct ptr_list **)rlist);
1373 static void free_single_dinfo(struct data_info *dinfo)
1375 free_rl(&dinfo->value_ranges);
1378 static void free_dinfos(struct allocation_blob *blob)
1380 unsigned int size = sizeof(struct data_info);
1381 unsigned int offset = 0;
1383 while (offset < blob->offset) {
1384 free_single_dinfo((struct data_info *)(blob->data + offset));
1385 offset += size;
1389 void free_data_info_allocs(void)
1391 struct allocator_struct *desc = &data_info_allocator;
1392 struct allocation_blob *blob = desc->blobs;
1394 desc->blobs = NULL;
1395 desc->allocations = 0;
1396 desc->total_bytes = 0;
1397 desc->useful_bytes = 0;
1398 desc->freelist = NULL;
1399 while (blob) {
1400 struct allocation_blob *next = blob->next;
1401 free_dinfos(blob);
1402 blob_free(blob, desc->chunking);
1403 blob = next;
1405 clear_data_range_alloc();