1 //! Compiler intrinsics.
3 //! The corresponding definitions are in <https://github.com/rust-lang/rust/blob/master/compiler/rustc_codegen_llvm/src/intrinsic.rs>.
4 //! The corresponding const implementations are in <https://github.com/rust-lang/rust/blob/master/compiler/rustc_const_eval/src/interpret/intrinsics.rs>.
8 //! Note: any changes to the constness of intrinsics should be discussed with the language team.
9 //! This includes changes in the stability of the constness.
11 //! In order to make an intrinsic usable at compile-time, one needs to copy the implementation
12 //! from <https://github.com/rust-lang/miri/blob/master/src/shims/intrinsics.rs> to
13 //! <https://github.com/rust-lang/rust/blob/master/compiler/rustc_const_eval/src/interpret/intrinsics.rs> and add a
14 //! `#[rustc_const_unstable(feature = "const_such_and_such", issue = "01234")]` to the intrinsic declaration.
16 //! If an intrinsic is supposed to be used from a `const fn` with a `rustc_const_stable` attribute,
17 //! the intrinsic's attribute must be `rustc_const_stable`, too. Such a change should not be done
18 //! without T-lang consultation, because it bakes a feature into the language that cannot be
19 //! replicated in user code without compiler support.
23 //! The volatile intrinsics provide operations intended to act on I/O
24 //! memory, which are guaranteed to not be reordered by the compiler
25 //! across other volatile intrinsics. See the LLVM documentation on
28 //! [volatile]: https://llvm.org/docs/LangRef.html#volatile-memory-accesses
32 //! The atomic intrinsics provide common atomic operations on machine
33 //! words, with multiple possible memory orderings. They obey the same
34 //! semantics as C++11. See the LLVM documentation on [[atomics]].
36 //! [atomics]: https://llvm.org/docs/Atomics.html
38 //! A quick refresher on memory ordering:
40 //! * Acquire - a barrier for acquiring a lock. Subsequent reads and writes
41 //! take place after the barrier.
42 //! * Release - a barrier for releasing a lock. Preceding reads and writes
43 //! take place before the barrier.
44 //! * Sequentially consistent - sequentially consistent operations are
45 //! guaranteed to happen in order. This is the standard mode for working
46 //! with atomic types and is equivalent to Java's `volatile`.
49 feature = "core_intrinsics",
50 reason = "intrinsics are unlikely to ever be stabilized, instead \
51 they should be used through stabilized interfaces \
52 in the rest of the standard library",
55 #![allow(missing_docs)]
57 use crate::marker::{Destruct, DiscriminantKind};
60 // These imports are used for simplifying intra-doc links
61 #[allow(unused_imports)]
62 #[cfg(all(target_has_atomic = "8", target_has_atomic = "32", target_has_atomic = "ptr"))]
63 use crate::sync::atomic::{self, AtomicBool, AtomicI32, AtomicIsize, AtomicU32, Ordering};
65 #[stable(feature = "drop_in_place", since = "1.8.0")]
66 #[deprecated(note = "no longer an intrinsic - use `ptr::drop_in_place` directly", since = "1.52.0")]
68 pub unsafe fn drop_in_place<T: ?Sized>(to_drop: *mut T) {
69 // SAFETY: see `ptr::drop_in_place`
70 unsafe { crate::ptr::drop_in_place(to_drop) }
73 extern "rust-intrinsic" {
74 // N.B., these intrinsics take raw pointers because they mutate aliased
75 // memory, which is not valid for either `&` or `&mut`.
77 /// Stores a value if the current value is the same as the `old` value.
79 /// The stabilized version of this intrinsic is available on the
80 /// [`atomic`] types via the `compare_exchange` method by passing
81 /// [`Ordering::SeqCst`] as both the `success` and `failure` parameters.
82 /// For example, [`AtomicBool::compare_exchange`].
83 pub fn atomic_cxchg<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
84 /// Stores a value if the current value is the same as the `old` value.
86 /// The stabilized version of this intrinsic is available on the
87 /// [`atomic`] types via the `compare_exchange` method by passing
88 /// [`Ordering::Acquire`] as both the `success` and `failure` parameters.
89 /// For example, [`AtomicBool::compare_exchange`].
90 pub fn atomic_cxchg_acq<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
91 /// Stores a value if the current value is the same as the `old` value.
93 /// The stabilized version of this intrinsic is available on the
94 /// [`atomic`] types via the `compare_exchange` method by passing
95 /// [`Ordering::Release`] as the `success` and [`Ordering::Relaxed`] as the
96 /// `failure` parameters. For example, [`AtomicBool::compare_exchange`].
97 pub fn atomic_cxchg_rel<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
98 /// Stores a value if the current value is the same as the `old` value.
100 /// The stabilized version of this intrinsic is available on the
101 /// [`atomic`] types via the `compare_exchange` method by passing
102 /// [`Ordering::AcqRel`] as the `success` and [`Ordering::Acquire`] as the
103 /// `failure` parameters. For example, [`AtomicBool::compare_exchange`].
104 pub fn atomic_cxchg_acqrel<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
105 /// Stores a value if the current value is the same as the `old` value.
107 /// The stabilized version of this intrinsic is available on the
108 /// [`atomic`] types via the `compare_exchange` method by passing
109 /// [`Ordering::Relaxed`] as both the `success` and `failure` parameters.
110 /// For example, [`AtomicBool::compare_exchange`].
111 pub fn atomic_cxchg_relaxed<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
112 /// Stores a value if the current value is the same as the `old` value.
114 /// The stabilized version of this intrinsic is available on the
115 /// [`atomic`] types via the `compare_exchange` method by passing
116 /// [`Ordering::SeqCst`] as the `success` and [`Ordering::Relaxed`] as the
117 /// `failure` parameters. For example, [`AtomicBool::compare_exchange`].
118 pub fn atomic_cxchg_failrelaxed<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
119 /// Stores a value if the current value is the same as the `old` value.
121 /// The stabilized version of this intrinsic is available on the
122 /// [`atomic`] types via the `compare_exchange` method by passing
123 /// [`Ordering::SeqCst`] as the `success` and [`Ordering::Acquire`] as the
124 /// `failure` parameters. For example, [`AtomicBool::compare_exchange`].
125 pub fn atomic_cxchg_failacq<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
126 /// Stores a value if the current value is the same as the `old` value.
128 /// The stabilized version of this intrinsic is available on the
129 /// [`atomic`] types via the `compare_exchange` method by passing
130 /// [`Ordering::Acquire`] as the `success` and [`Ordering::Relaxed`] as the
131 /// `failure` parameters. For example, [`AtomicBool::compare_exchange`].
132 pub fn atomic_cxchg_acq_failrelaxed<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
133 /// Stores a value if the current value is the same as the `old` value.
135 /// The stabilized version of this intrinsic is available on the
136 /// [`atomic`] types via the `compare_exchange` method by passing
137 /// [`Ordering::AcqRel`] as the `success` and [`Ordering::Relaxed`] as the
138 /// `failure` parameters. For example, [`AtomicBool::compare_exchange`].
139 pub fn atomic_cxchg_acqrel_failrelaxed<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
141 /// Stores a value if the current value is the same as the `old` value.
143 /// The stabilized version of this intrinsic is available on the
144 /// [`atomic`] types via the `compare_exchange_weak` method by passing
145 /// [`Ordering::SeqCst`] as both the `success` and `failure` parameters.
146 /// For example, [`AtomicBool::compare_exchange_weak`].
147 pub fn atomic_cxchgweak<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
148 /// Stores a value if the current value is the same as the `old` value.
150 /// The stabilized version of this intrinsic is available on the
151 /// [`atomic`] types via the `compare_exchange_weak` method by passing
152 /// [`Ordering::Acquire`] as both the `success` and `failure` parameters.
153 /// For example, [`AtomicBool::compare_exchange_weak`].
154 pub fn atomic_cxchgweak_acq<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
155 /// Stores a value if the current value is the same as the `old` value.
157 /// The stabilized version of this intrinsic is available on the
158 /// [`atomic`] types via the `compare_exchange_weak` method by passing
159 /// [`Ordering::Release`] as the `success` and [`Ordering::Relaxed`] as the
160 /// `failure` parameters. For example, [`AtomicBool::compare_exchange_weak`].
161 pub fn atomic_cxchgweak_rel<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
162 /// Stores a value if the current value is the same as the `old` value.
164 /// The stabilized version of this intrinsic is available on the
165 /// [`atomic`] types via the `compare_exchange_weak` method by passing
166 /// [`Ordering::AcqRel`] as the `success` and [`Ordering::Acquire`] as the
167 /// `failure` parameters. For example, [`AtomicBool::compare_exchange_weak`].
168 pub fn atomic_cxchgweak_acqrel<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
169 /// Stores a value if the current value is the same as the `old` value.
171 /// The stabilized version of this intrinsic is available on the
172 /// [`atomic`] types via the `compare_exchange_weak` method by passing
173 /// [`Ordering::Relaxed`] as both the `success` and `failure` parameters.
174 /// For example, [`AtomicBool::compare_exchange_weak`].
175 pub fn atomic_cxchgweak_relaxed<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
176 /// Stores a value if the current value is the same as the `old` value.
178 /// The stabilized version of this intrinsic is available on the
179 /// [`atomic`] types via the `compare_exchange_weak` method by passing
180 /// [`Ordering::SeqCst`] as the `success` and [`Ordering::Relaxed`] as the
181 /// `failure` parameters. For example, [`AtomicBool::compare_exchange_weak`].
182 pub fn atomic_cxchgweak_failrelaxed<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
183 /// Stores a value if the current value is the same as the `old` value.
185 /// The stabilized version of this intrinsic is available on the
186 /// [`atomic`] types via the `compare_exchange_weak` method by passing
187 /// [`Ordering::SeqCst`] as the `success` and [`Ordering::Acquire`] as the
188 /// `failure` parameters. For example, [`AtomicBool::compare_exchange_weak`].
189 pub fn atomic_cxchgweak_failacq<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
190 /// Stores a value if the current value is the same as the `old` value.
192 /// The stabilized version of this intrinsic is available on the
193 /// [`atomic`] types via the `compare_exchange_weak` method by passing
194 /// [`Ordering::Acquire`] as the `success` and [`Ordering::Relaxed`] as the
195 /// `failure` parameters. For example, [`AtomicBool::compare_exchange_weak`].
196 pub fn atomic_cxchgweak_acq_failrelaxed<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
197 /// Stores a value if the current value is the same as the `old` value.
199 /// The stabilized version of this intrinsic is available on the
200 /// [`atomic`] types via the `compare_exchange_weak` method by passing
201 /// [`Ordering::AcqRel`] as the `success` and [`Ordering::Relaxed`] as the
202 /// `failure` parameters. For example, [`AtomicBool::compare_exchange_weak`].
203 pub fn atomic_cxchgweak_acqrel_failrelaxed<T: Copy>(dst: *mut T, old: T, src: T) -> (T, bool);
205 /// Loads the current value of the pointer.
207 /// The stabilized version of this intrinsic is available on the
208 /// [`atomic`] types via the `load` method by passing
209 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicBool::load`].
210 pub fn atomic_load<T: Copy>(src: *const T) -> T;
211 /// Loads the current value of the pointer.
213 /// The stabilized version of this intrinsic is available on the
214 /// [`atomic`] types via the `load` method by passing
215 /// [`Ordering::Acquire`] as the `order`. For example, [`AtomicBool::load`].
216 pub fn atomic_load_acq<T: Copy>(src: *const T) -> T;
217 /// Loads the current value of the pointer.
219 /// The stabilized version of this intrinsic is available on the
220 /// [`atomic`] types via the `load` method by passing
221 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicBool::load`].
222 pub fn atomic_load_relaxed<T: Copy>(src: *const T) -> T;
223 pub fn atomic_load_unordered<T: Copy>(src: *const T) -> T;
225 /// Stores the value at the specified memory location.
227 /// The stabilized version of this intrinsic is available on the
228 /// [`atomic`] types via the `store` method by passing
229 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicBool::store`].
230 pub fn atomic_store<T: Copy>(dst: *mut T, val: T);
231 /// Stores the value at the specified memory location.
233 /// The stabilized version of this intrinsic is available on the
234 /// [`atomic`] types via the `store` method by passing
235 /// [`Ordering::Release`] as the `order`. For example, [`AtomicBool::store`].
236 pub fn atomic_store_rel<T: Copy>(dst: *mut T, val: T);
237 /// Stores the value at the specified memory location.
239 /// The stabilized version of this intrinsic is available on the
240 /// [`atomic`] types via the `store` method by passing
241 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicBool::store`].
242 pub fn atomic_store_relaxed<T: Copy>(dst: *mut T, val: T);
243 pub fn atomic_store_unordered<T: Copy>(dst: *mut T, val: T);
245 /// Stores the value at the specified memory location, returning the old value.
247 /// The stabilized version of this intrinsic is available on the
248 /// [`atomic`] types via the `swap` method by passing
249 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicBool::swap`].
250 pub fn atomic_xchg<T: Copy>(dst: *mut T, src: T) -> T;
251 /// Stores the value at the specified memory location, returning the old value.
253 /// The stabilized version of this intrinsic is available on the
254 /// [`atomic`] types via the `swap` method by passing
255 /// [`Ordering::Acquire`] as the `order`. For example, [`AtomicBool::swap`].
256 pub fn atomic_xchg_acq<T: Copy>(dst: *mut T, src: T) -> T;
257 /// Stores the value at the specified memory location, returning the old value.
259 /// The stabilized version of this intrinsic is available on the
260 /// [`atomic`] types via the `swap` method by passing
261 /// [`Ordering::Release`] as the `order`. For example, [`AtomicBool::swap`].
262 pub fn atomic_xchg_rel<T: Copy>(dst: *mut T, src: T) -> T;
263 /// Stores the value at the specified memory location, returning the old value.
265 /// The stabilized version of this intrinsic is available on the
266 /// [`atomic`] types via the `swap` method by passing
267 /// [`Ordering::AcqRel`] as the `order`. For example, [`AtomicBool::swap`].
268 pub fn atomic_xchg_acqrel<T: Copy>(dst: *mut T, src: T) -> T;
269 /// Stores the value at the specified memory location, returning the old value.
271 /// The stabilized version of this intrinsic is available on the
272 /// [`atomic`] types via the `swap` method by passing
273 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicBool::swap`].
274 pub fn atomic_xchg_relaxed<T: Copy>(dst: *mut T, src: T) -> T;
276 /// Adds to the current value, returning the previous value.
278 /// The stabilized version of this intrinsic is available on the
279 /// [`atomic`] types via the `fetch_add` method by passing
280 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicIsize::fetch_add`].
281 pub fn atomic_xadd<T: Copy>(dst: *mut T, src: T) -> T;
282 /// Adds to the current value, returning the previous value.
284 /// The stabilized version of this intrinsic is available on the
285 /// [`atomic`] types via the `fetch_add` method by passing
286 /// [`Ordering::Acquire`] as the `order`. For example, [`AtomicIsize::fetch_add`].
287 pub fn atomic_xadd_acq<T: Copy>(dst: *mut T, src: T) -> T;
288 /// Adds to the current value, returning the previous value.
290 /// The stabilized version of this intrinsic is available on the
291 /// [`atomic`] types via the `fetch_add` method by passing
292 /// [`Ordering::Release`] as the `order`. For example, [`AtomicIsize::fetch_add`].
293 pub fn atomic_xadd_rel<T: Copy>(dst: *mut T, src: T) -> T;
294 /// Adds to the current value, returning the previous value.
296 /// The stabilized version of this intrinsic is available on the
297 /// [`atomic`] types via the `fetch_add` method by passing
298 /// [`Ordering::AcqRel`] as the `order`. For example, [`AtomicIsize::fetch_add`].
299 pub fn atomic_xadd_acqrel<T: Copy>(dst: *mut T, src: T) -> T;
300 /// Adds to the current value, returning the previous value.
302 /// The stabilized version of this intrinsic is available on the
303 /// [`atomic`] types via the `fetch_add` method by passing
304 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicIsize::fetch_add`].
305 pub fn atomic_xadd_relaxed<T: Copy>(dst: *mut T, src: T) -> T;
307 /// Subtract from the current value, returning the previous value.
309 /// The stabilized version of this intrinsic is available on the
310 /// [`atomic`] types via the `fetch_sub` method by passing
311 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicIsize::fetch_sub`].
312 pub fn atomic_xsub<T: Copy>(dst: *mut T, src: T) -> T;
313 /// Subtract from the current value, returning the previous value.
315 /// The stabilized version of this intrinsic is available on the
316 /// [`atomic`] types via the `fetch_sub` method by passing
317 /// [`Ordering::Acquire`] as the `order`. For example, [`AtomicIsize::fetch_sub`].
318 pub fn atomic_xsub_acq<T: Copy>(dst: *mut T, src: T) -> T;
319 /// Subtract from the current value, returning the previous value.
321 /// The stabilized version of this intrinsic is available on the
322 /// [`atomic`] types via the `fetch_sub` method by passing
323 /// [`Ordering::Release`] as the `order`. For example, [`AtomicIsize::fetch_sub`].
324 pub fn atomic_xsub_rel<T: Copy>(dst: *mut T, src: T) -> T;
325 /// Subtract from the current value, returning the previous value.
327 /// The stabilized version of this intrinsic is available on the
328 /// [`atomic`] types via the `fetch_sub` method by passing
329 /// [`Ordering::AcqRel`] as the `order`. For example, [`AtomicIsize::fetch_sub`].
330 pub fn atomic_xsub_acqrel<T: Copy>(dst: *mut T, src: T) -> T;
331 /// Subtract from the current value, returning the previous value.
333 /// The stabilized version of this intrinsic is available on the
334 /// [`atomic`] types via the `fetch_sub` method by passing
335 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicIsize::fetch_sub`].
336 pub fn atomic_xsub_relaxed<T: Copy>(dst: *mut T, src: T) -> T;
338 /// Bitwise and with the current value, returning the previous value.
340 /// The stabilized version of this intrinsic is available on the
341 /// [`atomic`] types via the `fetch_and` method by passing
342 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicBool::fetch_and`].
343 pub fn atomic_and<T: Copy>(dst: *mut T, src: T) -> T;
344 /// Bitwise and with the current value, returning the previous value.
346 /// The stabilized version of this intrinsic is available on the
347 /// [`atomic`] types via the `fetch_and` method by passing
348 /// [`Ordering::Acquire`] as the `order`. For example, [`AtomicBool::fetch_and`].
349 pub fn atomic_and_acq<T: Copy>(dst: *mut T, src: T) -> T;
350 /// Bitwise and with the current value, returning the previous value.
352 /// The stabilized version of this intrinsic is available on the
353 /// [`atomic`] types via the `fetch_and` method by passing
354 /// [`Ordering::Release`] as the `order`. For example, [`AtomicBool::fetch_and`].
355 pub fn atomic_and_rel<T: Copy>(dst: *mut T, src: T) -> T;
356 /// Bitwise and with the current value, returning the previous value.
358 /// The stabilized version of this intrinsic is available on the
359 /// [`atomic`] types via the `fetch_and` method by passing
360 /// [`Ordering::AcqRel`] as the `order`. For example, [`AtomicBool::fetch_and`].
361 pub fn atomic_and_acqrel<T: Copy>(dst: *mut T, src: T) -> T;
362 /// Bitwise and with the current value, returning the previous value.
364 /// The stabilized version of this intrinsic is available on the
365 /// [`atomic`] types via the `fetch_and` method by passing
366 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicBool::fetch_and`].
367 pub fn atomic_and_relaxed<T: Copy>(dst: *mut T, src: T) -> T;
369 /// Bitwise nand with the current value, returning the previous value.
371 /// The stabilized version of this intrinsic is available on the
372 /// [`AtomicBool`] type via the `fetch_nand` method by passing
373 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicBool::fetch_nand`].
374 pub fn atomic_nand<T: Copy>(dst: *mut T, src: T) -> T;
375 /// Bitwise nand with the current value, returning the previous value.
377 /// The stabilized version of this intrinsic is available on the
378 /// [`AtomicBool`] type via the `fetch_nand` method by passing
379 /// [`Ordering::Acquire`] as the `order`. For example, [`AtomicBool::fetch_nand`].
380 pub fn atomic_nand_acq<T: Copy>(dst: *mut T, src: T) -> T;
381 /// Bitwise nand with the current value, returning the previous value.
383 /// The stabilized version of this intrinsic is available on the
384 /// [`AtomicBool`] type via the `fetch_nand` method by passing
385 /// [`Ordering::Release`] as the `order`. For example, [`AtomicBool::fetch_nand`].
386 pub fn atomic_nand_rel<T: Copy>(dst: *mut T, src: T) -> T;
387 /// Bitwise nand with the current value, returning the previous value.
389 /// The stabilized version of this intrinsic is available on the
390 /// [`AtomicBool`] type via the `fetch_nand` method by passing
391 /// [`Ordering::AcqRel`] as the `order`. For example, [`AtomicBool::fetch_nand`].
392 pub fn atomic_nand_acqrel<T: Copy>(dst: *mut T, src: T) -> T;
393 /// Bitwise nand with the current value, returning the previous value.
395 /// The stabilized version of this intrinsic is available on the
396 /// [`AtomicBool`] type via the `fetch_nand` method by passing
397 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicBool::fetch_nand`].
398 pub fn atomic_nand_relaxed<T: Copy>(dst: *mut T, src: T) -> T;
400 /// Bitwise or with the current value, returning the previous value.
402 /// The stabilized version of this intrinsic is available on the
403 /// [`atomic`] types via the `fetch_or` method by passing
404 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicBool::fetch_or`].
405 pub fn atomic_or<T: Copy>(dst: *mut T, src: T) -> T;
406 /// Bitwise or with the current value, returning the previous value.
408 /// The stabilized version of this intrinsic is available on the
409 /// [`atomic`] types via the `fetch_or` method by passing
410 /// [`Ordering::Acquire`] as the `order`. For example, [`AtomicBool::fetch_or`].
411 pub fn atomic_or_acq<T: Copy>(dst: *mut T, src: T) -> T;
412 /// Bitwise or with the current value, returning the previous value.
414 /// The stabilized version of this intrinsic is available on the
415 /// [`atomic`] types via the `fetch_or` method by passing
416 /// [`Ordering::Release`] as the `order`. For example, [`AtomicBool::fetch_or`].
417 pub fn atomic_or_rel<T: Copy>(dst: *mut T, src: T) -> T;
418 /// Bitwise or with the current value, returning the previous value.
420 /// The stabilized version of this intrinsic is available on the
421 /// [`atomic`] types via the `fetch_or` method by passing
422 /// [`Ordering::AcqRel`] as the `order`. For example, [`AtomicBool::fetch_or`].
423 pub fn atomic_or_acqrel<T: Copy>(dst: *mut T, src: T) -> T;
424 /// Bitwise or with the current value, returning the previous value.
426 /// The stabilized version of this intrinsic is available on the
427 /// [`atomic`] types via the `fetch_or` method by passing
428 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicBool::fetch_or`].
429 pub fn atomic_or_relaxed<T: Copy>(dst: *mut T, src: T) -> T;
431 /// Bitwise xor with the current value, returning the previous value.
433 /// The stabilized version of this intrinsic is available on the
434 /// [`atomic`] types via the `fetch_xor` method by passing
435 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicBool::fetch_xor`].
436 pub fn atomic_xor<T: Copy>(dst: *mut T, src: T) -> T;
437 /// Bitwise xor with the current value, returning the previous value.
439 /// The stabilized version of this intrinsic is available on the
440 /// [`atomic`] types via the `fetch_xor` method by passing
441 /// [`Ordering::Acquire`] as the `order`. For example, [`AtomicBool::fetch_xor`].
442 pub fn atomic_xor_acq<T: Copy>(dst: *mut T, src: T) -> T;
443 /// Bitwise xor with the current value, returning the previous value.
445 /// The stabilized version of this intrinsic is available on the
446 /// [`atomic`] types via the `fetch_xor` method by passing
447 /// [`Ordering::Release`] as the `order`. For example, [`AtomicBool::fetch_xor`].
448 pub fn atomic_xor_rel<T: Copy>(dst: *mut T, src: T) -> T;
449 /// Bitwise xor with the current value, returning the previous value.
451 /// The stabilized version of this intrinsic is available on the
452 /// [`atomic`] types via the `fetch_xor` method by passing
453 /// [`Ordering::AcqRel`] as the `order`. For example, [`AtomicBool::fetch_xor`].
454 pub fn atomic_xor_acqrel<T: Copy>(dst: *mut T, src: T) -> T;
455 /// Bitwise xor with the current value, returning the previous value.
457 /// The stabilized version of this intrinsic is available on the
458 /// [`atomic`] types via the `fetch_xor` method by passing
459 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicBool::fetch_xor`].
460 pub fn atomic_xor_relaxed<T: Copy>(dst: *mut T, src: T) -> T;
462 /// Maximum with the current value using a signed comparison.
464 /// The stabilized version of this intrinsic is available on the
465 /// [`atomic`] signed integer types via the `fetch_max` method by passing
466 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicI32::fetch_max`].
467 pub fn atomic_max<T: Copy>(dst: *mut T, src: T) -> T;
468 /// Maximum with the current value using a signed comparison.
470 /// The stabilized version of this intrinsic is available on the
471 /// [`atomic`] signed integer types via the `fetch_max` method by passing
472 /// [`Ordering::Acquire`] as the `order`. For example, [`AtomicI32::fetch_max`].
473 pub fn atomic_max_acq<T: Copy>(dst: *mut T, src: T) -> T;
474 /// Maximum with the current value using a signed comparison.
476 /// The stabilized version of this intrinsic is available on the
477 /// [`atomic`] signed integer types via the `fetch_max` method by passing
478 /// [`Ordering::Release`] as the `order`. For example, [`AtomicI32::fetch_max`].
479 pub fn atomic_max_rel<T: Copy>(dst: *mut T, src: T) -> T;
480 /// Maximum with the current value using a signed comparison.
482 /// The stabilized version of this intrinsic is available on the
483 /// [`atomic`] signed integer types via the `fetch_max` method by passing
484 /// [`Ordering::AcqRel`] as the `order`. For example, [`AtomicI32::fetch_max`].
485 pub fn atomic_max_acqrel<T: Copy>(dst: *mut T, src: T) -> T;
486 /// Maximum with the current value.
488 /// The stabilized version of this intrinsic is available on the
489 /// [`atomic`] signed integer types via the `fetch_max` method by passing
490 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicI32::fetch_max`].
491 pub fn atomic_max_relaxed<T: Copy>(dst: *mut T, src: T) -> T;
493 /// Minimum with the current value using a signed comparison.
495 /// The stabilized version of this intrinsic is available on the
496 /// [`atomic`] signed integer types via the `fetch_min` method by passing
497 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicI32::fetch_min`].
498 pub fn atomic_min<T: Copy>(dst: *mut T, src: T) -> T;
499 /// Minimum with the current value using a signed comparison.
501 /// The stabilized version of this intrinsic is available on the
502 /// [`atomic`] signed integer types via the `fetch_min` method by passing
503 /// [`Ordering::Acquire`] as the `order`. For example, [`AtomicI32::fetch_min`].
504 pub fn atomic_min_acq<T: Copy>(dst: *mut T, src: T) -> T;
505 /// Minimum with the current value using a signed comparison.
507 /// The stabilized version of this intrinsic is available on the
508 /// [`atomic`] signed integer types via the `fetch_min` method by passing
509 /// [`Ordering::Release`] as the `order`. For example, [`AtomicI32::fetch_min`].
510 pub fn atomic_min_rel<T: Copy>(dst: *mut T, src: T) -> T;
511 /// Minimum with the current value using a signed comparison.
513 /// The stabilized version of this intrinsic is available on the
514 /// [`atomic`] signed integer types via the `fetch_min` method by passing
515 /// [`Ordering::AcqRel`] as the `order`. For example, [`AtomicI32::fetch_min`].
516 pub fn atomic_min_acqrel<T: Copy>(dst: *mut T, src: T) -> T;
517 /// Minimum with the current value using a signed comparison.
519 /// The stabilized version of this intrinsic is available on the
520 /// [`atomic`] signed integer types via the `fetch_min` method by passing
521 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicI32::fetch_min`].
522 pub fn atomic_min_relaxed<T: Copy>(dst: *mut T, src: T) -> T;
524 /// Minimum with the current value using an unsigned comparison.
526 /// The stabilized version of this intrinsic is available on the
527 /// [`atomic`] unsigned integer types via the `fetch_min` method by passing
528 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicU32::fetch_min`].
529 pub fn atomic_umin<T: Copy>(dst: *mut T, src: T) -> T;
530 /// Minimum with the current value using an unsigned comparison.
532 /// The stabilized version of this intrinsic is available on the
533 /// [`atomic`] unsigned integer types via the `fetch_min` method by passing
534 /// [`Ordering::Acquire`] as the `order`. For example, [`AtomicU32::fetch_min`].
535 pub fn atomic_umin_acq<T: Copy>(dst: *mut T, src: T) -> T;
536 /// Minimum with the current value using an unsigned comparison.
538 /// The stabilized version of this intrinsic is available on the
539 /// [`atomic`] unsigned integer types via the `fetch_min` method by passing
540 /// [`Ordering::Release`] as the `order`. For example, [`AtomicU32::fetch_min`].
541 pub fn atomic_umin_rel<T: Copy>(dst: *mut T, src: T) -> T;
542 /// Minimum with the current value using an unsigned comparison.
544 /// The stabilized version of this intrinsic is available on the
545 /// [`atomic`] unsigned integer types via the `fetch_min` method by passing
546 /// [`Ordering::AcqRel`] as the `order`. For example, [`AtomicU32::fetch_min`].
547 pub fn atomic_umin_acqrel<T: Copy>(dst: *mut T, src: T) -> T;
548 /// Minimum with the current value using an unsigned comparison.
550 /// The stabilized version of this intrinsic is available on the
551 /// [`atomic`] unsigned integer types via the `fetch_min` method by passing
552 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicU32::fetch_min`].
553 pub fn atomic_umin_relaxed<T: Copy>(dst: *mut T, src: T) -> T;
555 /// Maximum with the current value using an unsigned comparison.
557 /// The stabilized version of this intrinsic is available on the
558 /// [`atomic`] unsigned integer types via the `fetch_max` method by passing
559 /// [`Ordering::SeqCst`] as the `order`. For example, [`AtomicU32::fetch_max`].
560 pub fn atomic_umax<T: Copy>(dst: *mut T, src: T) -> T;
561 /// Maximum with the current value using an unsigned comparison.
563 /// The stabilized version of this intrinsic is available on the
564 /// [`atomic`] unsigned integer types via the `fetch_max` method by passing
565 /// [`Ordering::Acquire`] as the `order`. For example, [`AtomicU32::fetch_max`].
566 pub fn atomic_umax_acq<T: Copy>(dst: *mut T, src: T) -> T;
567 /// Maximum with the current value using an unsigned comparison.
569 /// The stabilized version of this intrinsic is available on the
570 /// [`atomic`] unsigned integer types via the `fetch_max` method by passing
571 /// [`Ordering::Release`] as the `order`. For example, [`AtomicU32::fetch_max`].
572 pub fn atomic_umax_rel<T: Copy>(dst: *mut T, src: T) -> T;
573 /// Maximum with the current value using an unsigned comparison.
575 /// The stabilized version of this intrinsic is available on the
576 /// [`atomic`] unsigned integer types via the `fetch_max` method by passing
577 /// [`Ordering::AcqRel`] as the `order`. For example, [`AtomicU32::fetch_max`].
578 pub fn atomic_umax_acqrel<T: Copy>(dst: *mut T, src: T) -> T;
579 /// Maximum with the current value using an unsigned comparison.
581 /// The stabilized version of this intrinsic is available on the
582 /// [`atomic`] unsigned integer types via the `fetch_max` method by passing
583 /// [`Ordering::Relaxed`] as the `order`. For example, [`AtomicU32::fetch_max`].
584 pub fn atomic_umax_relaxed<T: Copy>(dst: *mut T, src: T) -> T;
586 /// The `prefetch` intrinsic is a hint to the code generator to insert a prefetch instruction
587 /// if supported; otherwise, it is a no-op.
588 /// Prefetches have no effect on the behavior of the program but can change its performance
591 /// The `locality` argument must be a constant integer and is a temporal locality specifier
592 /// ranging from (0) - no locality, to (3) - extremely local keep in cache.
594 /// This intrinsic does not have a stable counterpart.
595 pub fn prefetch_read_data<T>(data: *const T, locality: i32);
596 /// The `prefetch` intrinsic is a hint to the code generator to insert a prefetch instruction
597 /// if supported; otherwise, it is a no-op.
598 /// Prefetches have no effect on the behavior of the program but can change its performance
601 /// The `locality` argument must be a constant integer and is a temporal locality specifier
602 /// ranging from (0) - no locality, to (3) - extremely local keep in cache.
604 /// This intrinsic does not have a stable counterpart.
605 pub fn prefetch_write_data<T>(data: *const T, locality: i32);
606 /// The `prefetch` intrinsic is a hint to the code generator to insert a prefetch instruction
607 /// if supported; otherwise, it is a no-op.
608 /// Prefetches have no effect on the behavior of the program but can change its performance
611 /// The `locality` argument must be a constant integer and is a temporal locality specifier
612 /// ranging from (0) - no locality, to (3) - extremely local keep in cache.
614 /// This intrinsic does not have a stable counterpart.
615 pub fn prefetch_read_instruction<T>(data: *const T, locality: i32);
616 /// The `prefetch` intrinsic is a hint to the code generator to insert a prefetch instruction
617 /// if supported; otherwise, it is a no-op.
618 /// Prefetches have no effect on the behavior of the program but can change its performance
621 /// The `locality` argument must be a constant integer and is a temporal locality specifier
622 /// ranging from (0) - no locality, to (3) - extremely local keep in cache.
624 /// This intrinsic does not have a stable counterpart.
625 pub fn prefetch_write_instruction<T>(data: *const T, locality: i32);
628 extern "rust-intrinsic" {
631 /// The stabilized version of this intrinsic is available in
632 /// [`atomic::fence`] by passing [`Ordering::SeqCst`]
634 pub fn atomic_fence();
637 /// The stabilized version of this intrinsic is available in
638 /// [`atomic::fence`] by passing [`Ordering::Acquire`]
640 pub fn atomic_fence_acq();
643 /// The stabilized version of this intrinsic is available in
644 /// [`atomic::fence`] by passing [`Ordering::Release`]
646 pub fn atomic_fence_rel();
649 /// The stabilized version of this intrinsic is available in
650 /// [`atomic::fence`] by passing [`Ordering::AcqRel`]
652 pub fn atomic_fence_acqrel();
654 /// A compiler-only memory barrier.
656 /// Memory accesses will never be reordered across this barrier by the
657 /// compiler, but no instructions will be emitted for it. This is
658 /// appropriate for operations on the same thread that may be preempted,
659 /// such as when interacting with signal handlers.
661 /// The stabilized version of this intrinsic is available in
662 /// [`atomic::compiler_fence`] by passing [`Ordering::SeqCst`]
664 pub fn atomic_singlethreadfence();
665 /// A compiler-only memory barrier.
667 /// Memory accesses will never be reordered across this barrier by the
668 /// compiler, but no instructions will be emitted for it. This is
669 /// appropriate for operations on the same thread that may be preempted,
670 /// such as when interacting with signal handlers.
672 /// The stabilized version of this intrinsic is available in
673 /// [`atomic::compiler_fence`] by passing [`Ordering::Acquire`]
675 pub fn atomic_singlethreadfence_acq();
676 /// A compiler-only memory barrier.
678 /// Memory accesses will never be reordered across this barrier by the
679 /// compiler, but no instructions will be emitted for it. This is
680 /// appropriate for operations on the same thread that may be preempted,
681 /// such as when interacting with signal handlers.
683 /// The stabilized version of this intrinsic is available in
684 /// [`atomic::compiler_fence`] by passing [`Ordering::Release`]
686 pub fn atomic_singlethreadfence_rel();
687 /// A compiler-only memory barrier.
689 /// Memory accesses will never be reordered across this barrier by the
690 /// compiler, but no instructions will be emitted for it. This is
691 /// appropriate for operations on the same thread that may be preempted,
692 /// such as when interacting with signal handlers.
694 /// The stabilized version of this intrinsic is available in
695 /// [`atomic::compiler_fence`] by passing [`Ordering::AcqRel`]
697 pub fn atomic_singlethreadfence_acqrel();
699 /// Magic intrinsic that derives its meaning from attributes
700 /// attached to the function.
702 /// For example, dataflow uses this to inject static assertions so
703 /// that `rustc_peek(potentially_uninitialized)` would actually
704 /// double-check that dataflow did indeed compute that it is
705 /// uninitialized at that point in the control flow.
707 /// This intrinsic should not be used outside of the compiler.
708 pub fn rustc_peek<T>(_: T) -> T;
710 /// Aborts the execution of the process.
712 /// Note that, unlike most intrinsics, this is safe to call;
713 /// it does not require an `unsafe` block.
714 /// Therefore, implementations must not require the user to uphold
715 /// any safety invariants.
717 /// [`std::process::abort`](../../std/process/fn.abort.html) is to be preferred if possible,
718 /// as its behavior is more user-friendly and more stable.
720 /// The current implementation of `intrinsics::abort` is to invoke an invalid instruction,
721 /// on most platforms.
723 /// process will probably terminate with a signal like `SIGABRT`, `SIGILL`, `SIGTRAP`, `SIGSEGV` or
724 /// `SIGBUS`. The precise behaviour is not guaranteed and not stable.
727 /// Informs the optimizer that this point in the code is not reachable,
728 /// enabling further optimizations.
730 /// N.B., this is very different from the `unreachable!()` macro: Unlike the
731 /// macro, which panics when it is executed, it is *undefined behavior* to
732 /// reach code marked with this function.
734 /// The stabilized version of this intrinsic is [`core::hint::unreachable_unchecked`].
735 #[rustc_const_stable(feature = "const_unreachable_unchecked", since = "1.57.0")]
736 pub fn unreachable() -> !;
738 /// Informs the optimizer that a condition is always true.
739 /// If the condition is false, the behavior is undefined.
741 /// No code is generated for this intrinsic, but the optimizer will try
742 /// to preserve it (and its condition) between passes, which may interfere
743 /// with optimization of surrounding code and reduce performance. It should
744 /// not be used if the invariant can be discovered by the optimizer on its
745 /// own, or if it does not enable any significant optimizations.
747 /// This intrinsic does not have a stable counterpart.
748 #[rustc_const_unstable(feature = "const_assume", issue = "76972")]
749 pub fn assume(b: bool);
751 /// Hints to the compiler that branch condition is likely to be true.
752 /// Returns the value passed to it.
754 /// Any use other than with `if` statements will probably not have an effect.
756 /// Note that, unlike most intrinsics, this is safe to call;
757 /// it does not require an `unsafe` block.
758 /// Therefore, implementations must not require the user to uphold
759 /// any safety invariants.
761 /// This intrinsic does not have a stable counterpart.
762 #[rustc_const_unstable(feature = "const_likely", issue = "none")]
763 pub fn likely(b: bool) -> bool;
765 /// Hints to the compiler that branch condition is likely to be false.
766 /// Returns the value passed to it.
768 /// Any use other than with `if` statements will probably not have an effect.
770 /// Note that, unlike most intrinsics, this is safe to call;
771 /// it does not require an `unsafe` block.
772 /// Therefore, implementations must not require the user to uphold
773 /// any safety invariants.
775 /// This intrinsic does not have a stable counterpart.
776 #[rustc_const_unstable(feature = "const_likely", issue = "none")]
777 pub fn unlikely(b: bool) -> bool;
779 /// Executes a breakpoint trap, for inspection by a debugger.
781 /// This intrinsic does not have a stable counterpart.
784 /// The size of a type in bytes.
786 /// Note that, unlike most intrinsics, this is safe to call;
787 /// it does not require an `unsafe` block.
788 /// Therefore, implementations must not require the user to uphold
789 /// any safety invariants.
791 /// More specifically, this is the offset in bytes between successive
792 /// items of the same type, including alignment padding.
794 /// The stabilized version of this intrinsic is [`core::mem::size_of`].
795 #[rustc_const_stable(feature = "const_size_of", since = "1.40.0")]
796 pub fn size_of<T>() -> usize;
798 /// The minimum alignment of a type.
800 /// Note that, unlike most intrinsics, this is safe to call;
801 /// it does not require an `unsafe` block.
802 /// Therefore, implementations must not require the user to uphold
803 /// any safety invariants.
805 /// The stabilized version of this intrinsic is [`core::mem::align_of`].
806 #[rustc_const_stable(feature = "const_min_align_of", since = "1.40.0")]
807 pub fn min_align_of<T>() -> usize;
808 /// The preferred alignment of a type.
810 /// This intrinsic does not have a stable counterpart.
811 /// It's "tracking issue" is [#91971](https://github.com/rust-lang/rust/issues/91971).
812 #[rustc_const_unstable(feature = "const_pref_align_of", issue = "91971")]
813 pub fn pref_align_of<T>() -> usize;
815 /// The size of the referenced value in bytes.
817 /// The stabilized version of this intrinsic is [`mem::size_of_val`].
818 #[rustc_const_unstable(feature = "const_size_of_val", issue = "46571")]
819 pub fn size_of_val<T: ?Sized>(_: *const T) -> usize;
820 /// The required alignment of the referenced value.
822 /// The stabilized version of this intrinsic is [`core::mem::align_of_val`].
823 #[rustc_const_unstable(feature = "const_align_of_val", issue = "46571")]
824 pub fn min_align_of_val<T: ?Sized>(_: *const T) -> usize;
826 /// Gets a static string slice containing the name of a type.
828 /// Note that, unlike most intrinsics, this is safe to call;
829 /// it does not require an `unsafe` block.
830 /// Therefore, implementations must not require the user to uphold
831 /// any safety invariants.
833 /// The stabilized version of this intrinsic is [`core::any::type_name`].
834 #[rustc_const_unstable(feature = "const_type_name", issue = "63084")]
835 pub fn type_name<T: ?Sized>() -> &'static str;
837 /// Gets an identifier which is globally unique to the specified type. This
838 /// function will return the same value for a type regardless of whichever
839 /// crate it is invoked in.
841 /// Note that, unlike most intrinsics, this is safe to call;
842 /// it does not require an `unsafe` block.
843 /// Therefore, implementations must not require the user to uphold
844 /// any safety invariants.
846 /// The stabilized version of this intrinsic is [`core::any::TypeId::of`].
847 #[rustc_const_unstable(feature = "const_type_id", issue = "77125")]
848 pub fn type_id<T: ?Sized + 'static>() -> u64;
850 /// A guard for unsafe functions that cannot ever be executed if `T` is uninhabited:
851 /// This will statically either panic, or do nothing.
853 /// This intrinsic does not have a stable counterpart.
854 #[rustc_const_stable(feature = "const_assert_type", since = "1.59.0")]
855 pub fn assert_inhabited<T>();
857 /// A guard for unsafe functions that cannot ever be executed if `T` does not permit
858 /// zero-initialization: This will statically either panic, or do nothing.
860 /// This intrinsic does not have a stable counterpart.
861 #[rustc_const_unstable(feature = "const_assert_type2", issue = "none")]
862 pub fn assert_zero_valid<T>();
864 /// A guard for unsafe functions that cannot ever be executed if `T` has invalid
865 /// bit patterns: This will statically either panic, or do nothing.
867 /// This intrinsic does not have a stable counterpart.
868 #[rustc_const_unstable(feature = "const_assert_type2", issue = "none")]
869 pub fn assert_uninit_valid<T>();
871 /// Gets a reference to a static `Location` indicating where it was called.
873 /// Note that, unlike most intrinsics, this is safe to call;
874 /// it does not require an `unsafe` block.
875 /// Therefore, implementations must not require the user to uphold
876 /// any safety invariants.
878 /// Consider using [`core::panic::Location::caller`] instead.
879 #[rustc_const_unstable(feature = "const_caller_location", issue = "76156")]
880 pub fn caller_location() -> &'static crate::panic::Location<'static>;
882 /// Moves a value out of scope without running drop glue.
884 /// This exists solely for [`mem::forget_unsized`]; normal `forget` uses
885 /// `ManuallyDrop` instead.
887 /// Note that, unlike most intrinsics, this is safe to call;
888 /// it does not require an `unsafe` block.
889 /// Therefore, implementations must not require the user to uphold
890 /// any safety invariants.
891 #[rustc_const_unstable(feature = "const_intrinsic_forget", issue = "none")]
892 pub fn forget<T: ?Sized>(_: T);
894 /// Reinterprets the bits of a value of one type as another type.
896 /// Both types must have the same size. Neither the original, nor the result,
897 /// may be an [invalid value](../../nomicon/what-unsafe-does.html).
899 /// `transmute` is semantically equivalent to a bitwise move of one type
900 /// into another. It copies the bits from the source value into the
901 /// destination value, then forgets the original. It's equivalent to C's
902 /// `memcpy` under the hood, just like `transmute_copy`.
904 /// Because `transmute` is a by-value operation, alignment of the *transmuted values
905 /// themselves* is not a concern. As with any other function, the compiler already ensures
906 /// both `T` and `U` are properly aligned. However, when transmuting values that *point
907 /// elsewhere* (such as pointers, references, boxes…), the caller has to ensure proper
908 /// alignment of the pointed-to values.
910 /// `transmute` is **incredibly** unsafe. There are a vast number of ways to
911 /// cause [undefined behavior][ub] with this function. `transmute` should be
912 /// the absolute last resort.
914 /// Transmuting pointers to integers in a `const` context is [undefined behavior][ub].
915 /// Any attempt to use the resulting value for integer operations will abort const-evaluation.
917 /// The [nomicon](../../nomicon/transmutes.html) has additional
920 /// [ub]: ../../reference/behavior-considered-undefined.html
924 /// There are a few things that `transmute` is really useful for.
926 /// Turning a pointer into a function pointer. This is *not* portable to
927 /// machines where function pointers and data pointers have different sizes.
930 /// fn foo() -> i32 {
933 /// // Crucially, we `as`-cast to a raw pointer before `transmute`ing to a function pointer.
934 /// // This avoids an integer-to-pointer `transmute`, which can be problematic.
935 /// // Transmuting between raw pointers and function pointers (i.e., two pointer types) is fine.
936 /// let pointer = foo as *const ();
937 /// let function = unsafe {
938 /// std::mem::transmute::<*const (), fn() -> i32>(pointer)
940 /// assert_eq!(function(), 0);
943 /// Extending a lifetime, or shortening an invariant lifetime. This is
944 /// advanced, very unsafe Rust!
947 /// struct R<'a>(&'a i32);
948 /// unsafe fn extend_lifetime<'b>(r: R<'b>) -> R<'static> {
949 /// std::mem::transmute::<R<'b>, R<'static>>(r)
952 /// unsafe fn shorten_invariant_lifetime<'b, 'c>(r: &'b mut R<'static>)
953 /// -> &'b mut R<'c> {
954 /// std::mem::transmute::<&'b mut R<'static>, &'b mut R<'c>>(r)
960 /// Don't despair: many uses of `transmute` can be achieved through other means.
961 /// Below are common applications of `transmute` which can be replaced with safer
964 /// Turning raw bytes (`&[u8]`) into `u32`, `f64`, etc.:
967 /// let raw_bytes = [0x78, 0x56, 0x34, 0x12];
969 /// let num = unsafe {
970 /// std::mem::transmute::<[u8; 4], u32>(raw_bytes)
973 /// // use `u32::from_ne_bytes` instead
974 /// let num = u32::from_ne_bytes(raw_bytes);
975 /// // or use `u32::from_le_bytes` or `u32::from_be_bytes` to specify the endianness
976 /// let num = u32::from_le_bytes(raw_bytes);
977 /// assert_eq!(num, 0x12345678);
978 /// let num = u32::from_be_bytes(raw_bytes);
979 /// assert_eq!(num, 0x78563412);
982 /// Turning a pointer into a `usize`:
986 /// let ptr_num_transmute = unsafe {
987 /// std::mem::transmute::<&i32, usize>(ptr)
990 /// // Use an `as` cast instead
991 /// let ptr_num_cast = ptr as *const i32 as usize;
994 /// Note that using `transmute` to turn a pointer to a `usize` is (as noted above) [undefined
995 /// behavior][ub] in `const` contexts. Also outside of consts, this operation might not behave
996 /// as expected -- this is touching on many unspecified aspects of the Rust memory model.
997 /// Depending on what the code is doing, the following alternatives are preferrable to
998 /// pointer-to-integer transmutation:
999 /// - If the code just wants to store data of arbitrary type in some buffer and needs to pick a
1000 /// type for that buffer, it can use [`MaybeUninit`][mem::MaybeUninit].
1001 /// - If the code actually wants to work on the address the pointer points to, it can use `as`
1002 /// casts or [`ptr.addr()`][pointer::addr].
1004 /// Turning a `*mut T` into an `&mut T`:
1007 /// let ptr: *mut i32 = &mut 0;
1008 /// let ref_transmuted = unsafe {
1009 /// std::mem::transmute::<*mut i32, &mut i32>(ptr)
1012 /// // Use a reborrow instead
1013 /// let ref_casted = unsafe { &mut *ptr };
1016 /// Turning an `&mut T` into an `&mut U`:
1019 /// let ptr = &mut 0;
1020 /// let val_transmuted = unsafe {
1021 /// std::mem::transmute::<&mut i32, &mut u32>(ptr)
1024 /// // Now, put together `as` and reborrowing - note the chaining of `as`
1025 /// // `as` is not transitive
1026 /// let val_casts = unsafe { &mut *(ptr as *mut i32 as *mut u32) };
1029 /// Turning an `&str` into a `&[u8]`:
1032 /// // this is not a good way to do this.
1033 /// let slice = unsafe { std::mem::transmute::<&str, &[u8]>("Rust") };
1034 /// assert_eq!(slice, &[82, 117, 115, 116]);
1036 /// // You could use `str::as_bytes`
1037 /// let slice = "Rust".as_bytes();
1038 /// assert_eq!(slice, &[82, 117, 115, 116]);
1040 /// // Or, just use a byte string, if you have control over the string
1042 /// assert_eq!(b"Rust", &[82, 117, 115, 116]);
1045 /// Turning a `Vec<&T>` into a `Vec<Option<&T>>`.
1047 /// To transmute the inner type of the contents of a container, you must make sure to not
1048 /// violate any of the container's invariants. For `Vec`, this means that both the size
1049 /// *and alignment* of the inner types have to match. Other containers might rely on the
1050 /// size of the type, alignment, or even the `TypeId`, in which case transmuting wouldn't
1051 /// be possible at all without violating the container invariants.
1054 /// let store = [0, 1, 2, 3];
1055 /// let v_orig = store.iter().collect::<Vec<&i32>>();
1057 /// // clone the vector as we will reuse them later
1058 /// let v_clone = v_orig.clone();
1060 /// // Using transmute: this relies on the unspecified data layout of `Vec`, which is a
1061 /// // bad idea and could cause Undefined Behavior.
1062 /// // However, it is no-copy.
1063 /// let v_transmuted = unsafe {
1064 /// std::mem::transmute::<Vec<&i32>, Vec<Option<&i32>>>(v_clone)
1067 /// let v_clone = v_orig.clone();
1069 /// // This is the suggested, safe way.
1070 /// // It does copy the entire vector, though, into a new array.
1071 /// let v_collected = v_clone.into_iter()
1073 /// .collect::<Vec<Option<&i32>>>();
1075 /// let v_clone = v_orig.clone();
1077 /// // This is the proper no-copy, unsafe way of "transmuting" a `Vec`, without relying on the
1078 /// // data layout. Instead of literally calling `transmute`, we perform a pointer cast, but
1079 /// // in terms of converting the original inner type (`&i32`) to the new one (`Option<&i32>`),
1080 /// // this has all the same caveats. Besides the information provided above, also consult the
1081 /// // [`from_raw_parts`] documentation.
1082 /// let v_from_raw = unsafe {
1083 // FIXME Update this when vec_into_raw_parts is stabilized
1084 /// // Ensure the original vector is not dropped.
1085 /// let mut v_clone = std::mem::ManuallyDrop::new(v_clone);
1086 /// Vec::from_raw_parts(v_clone.as_mut_ptr() as *mut Option<&i32>,
1088 /// v_clone.capacity())
1092 /// [`from_raw_parts`]: ../../std/vec/struct.Vec.html#method.from_raw_parts
1094 /// Implementing `split_at_mut`:
1097 /// use std::{slice, mem};
1099 /// // There are multiple ways to do this, and there are multiple problems
1100 /// // with the following (transmute) way.
1101 /// fn split_at_mut_transmute<T>(slice: &mut [T], mid: usize)
1102 /// -> (&mut [T], &mut [T]) {
1103 /// let len = slice.len();
1104 /// assert!(mid <= len);
1106 /// let slice2 = mem::transmute::<&mut [T], &mut [T]>(slice);
1107 /// // first: transmute is not type safe; all it checks is that T and
1108 /// // U are of the same size. Second, right here, you have two
1109 /// // mutable references pointing to the same memory.
1110 /// (&mut slice[0..mid], &mut slice2[mid..len])
1114 /// // This gets rid of the type safety problems; `&mut *` will *only* give
1115 /// // you an `&mut T` from an `&mut T` or `*mut T`.
1116 /// fn split_at_mut_casts<T>(slice: &mut [T], mid: usize)
1117 /// -> (&mut [T], &mut [T]) {
1118 /// let len = slice.len();
1119 /// assert!(mid <= len);
1121 /// let slice2 = &mut *(slice as *mut [T]);
1122 /// // however, you still have two mutable references pointing to
1123 /// // the same memory.
1124 /// (&mut slice[0..mid], &mut slice2[mid..len])
1128 /// // This is how the standard library does it. This is the best method, if
1129 /// // you need to do something like this
1130 /// fn split_at_stdlib<T>(slice: &mut [T], mid: usize)
1131 /// -> (&mut [T], &mut [T]) {
1132 /// let len = slice.len();
1133 /// assert!(mid <= len);
1135 /// let ptr = slice.as_mut_ptr();
1136 /// // This now has three mutable references pointing at the same
1137 /// // memory. `slice`, the rvalue ret.0, and the rvalue ret.1.
1138 /// // `slice` is never used after `let ptr = ...`, and so one can
1139 /// // treat it as "dead", and therefore, you only have two real
1140 /// // mutable slices.
1141 /// (slice::from_raw_parts_mut(ptr, mid),
1142 /// slice::from_raw_parts_mut(ptr.add(mid), len - mid))
1146 #[stable(feature = "rust1", since = "1.0.0")]
1147 #[rustc_const_stable(feature = "const_transmute", since = "1.46.0")]
1148 #[rustc_diagnostic_item = "transmute"]
1149 pub fn transmute<T, U>(e: T) -> U;
1151 /// Returns `true` if the actual type given as `T` requires drop
1152 /// glue; returns `false` if the actual type provided for `T`
1153 /// implements `Copy`.
1155 /// If the actual type neither requires drop glue nor implements
1156 /// `Copy`, then the return value of this function is unspecified.
1158 /// Note that, unlike most intrinsics, this is safe to call;
1159 /// it does not require an `unsafe` block.
1160 /// Therefore, implementations must not require the user to uphold
1161 /// any safety invariants.
1163 /// The stabilized version of this intrinsic is [`mem::needs_drop`](crate::mem::needs_drop).
1164 #[rustc_const_stable(feature = "const_needs_drop", since = "1.40.0")]
1165 pub fn needs_drop<T>() -> bool;
1167 /// Calculates the offset from a pointer.
1169 /// This is implemented as an intrinsic to avoid converting to and from an
1170 /// integer, since the conversion would throw away aliasing information.
1174 /// Both the starting and resulting pointer must be either in bounds or one
1175 /// byte past the end of an allocated object. If either pointer is out of
1176 /// bounds or arithmetic overflow occurs then any further use of the
1177 /// returned value will result in undefined behavior.
1179 /// The stabilized version of this intrinsic is [`pointer::offset`].
1180 #[must_use = "returns a new pointer rather than modifying its argument"]
1181 #[rustc_const_stable(feature = "const_ptr_offset", since = "1.61.0")]
1182 pub fn offset<T>(dst: *const T, offset: isize) -> *const T;
1184 /// Calculates the offset from a pointer, potentially wrapping.
1186 /// This is implemented as an intrinsic to avoid converting to and from an
1187 /// integer, since the conversion inhibits certain optimizations.
1191 /// Unlike the `offset` intrinsic, this intrinsic does not restrict the
1192 /// resulting pointer to point into or one byte past the end of an allocated
1193 /// object, and it wraps with two's complement arithmetic. The resulting
1194 /// value is not necessarily valid to be used to actually access memory.
1196 /// The stabilized version of this intrinsic is [`pointer::wrapping_offset`].
1197 #[must_use = "returns a new pointer rather than modifying its argument"]
1198 #[rustc_const_stable(feature = "const_ptr_offset", since = "1.61.0")]
1199 pub fn arith_offset<T>(dst: *const T, offset: isize) -> *const T;
1201 /// Equivalent to the appropriate `llvm.memcpy.p0i8.0i8.*` intrinsic, with
1202 /// a size of `count` * `size_of::<T>()` and an alignment of
1203 /// `min_align_of::<T>()`
1205 /// The volatile parameter is set to `true`, so it will not be optimized out
1206 /// unless size is equal to zero.
1208 /// This intrinsic does not have a stable counterpart.
1209 pub fn volatile_copy_nonoverlapping_memory<T>(dst: *mut T, src: *const T, count: usize);
1210 /// Equivalent to the appropriate `llvm.memmove.p0i8.0i8.*` intrinsic, with
1211 /// a size of `count * size_of::<T>()` and an alignment of
1212 /// `min_align_of::<T>()`
1214 /// The volatile parameter is set to `true`, so it will not be optimized out
1215 /// unless size is equal to zero.
1217 /// This intrinsic does not have a stable counterpart.
1218 pub fn volatile_copy_memory<T>(dst: *mut T, src: *const T, count: usize);
1219 /// Equivalent to the appropriate `llvm.memset.p0i8.*` intrinsic, with a
1220 /// size of `count * size_of::<T>()` and an alignment of
1221 /// `min_align_of::<T>()`.
1223 /// The volatile parameter is set to `true`, so it will not be optimized out
1224 /// unless size is equal to zero.
1226 /// This intrinsic does not have a stable counterpart.
1227 pub fn volatile_set_memory<T>(dst: *mut T, val: u8, count: usize);
1229 /// Performs a volatile load from the `src` pointer.
1231 /// The stabilized version of this intrinsic is [`core::ptr::read_volatile`].
1232 pub fn volatile_load<T>(src: *const T) -> T;
1233 /// Performs a volatile store to the `dst` pointer.
1235 /// The stabilized version of this intrinsic is [`core::ptr::write_volatile`].
1236 pub fn volatile_store<T>(dst: *mut T, val: T);
1238 /// Performs a volatile load from the `src` pointer
1239 /// The pointer is not required to be aligned.
1241 /// This intrinsic does not have a stable counterpart.
1242 pub fn unaligned_volatile_load<T>(src: *const T) -> T;
1243 /// Performs a volatile store to the `dst` pointer.
1244 /// The pointer is not required to be aligned.
1246 /// This intrinsic does not have a stable counterpart.
1247 pub fn unaligned_volatile_store<T>(dst: *mut T, val: T);
1249 /// Returns the square root of an `f32`
1251 /// The stabilized version of this intrinsic is
1252 /// [`f32::sqrt`](../../std/primitive.f32.html#method.sqrt)
1253 pub fn sqrtf32(x: f32) -> f32;
1254 /// Returns the square root of an `f64`
1256 /// The stabilized version of this intrinsic is
1257 /// [`f64::sqrt`](../../std/primitive.f64.html#method.sqrt)
1258 pub fn sqrtf64(x: f64) -> f64;
1260 /// Raises an `f32` to an integer power.
1262 /// The stabilized version of this intrinsic is
1263 /// [`f32::powi`](../../std/primitive.f32.html#method.powi)
1264 pub fn powif32(a: f32, x: i32) -> f32;
1265 /// Raises an `f64` to an integer power.
1267 /// The stabilized version of this intrinsic is
1268 /// [`f64::powi`](../../std/primitive.f64.html#method.powi)
1269 pub fn powif64(a: f64, x: i32) -> f64;
1271 /// Returns the sine of an `f32`.
1273 /// The stabilized version of this intrinsic is
1274 /// [`f32::sin`](../../std/primitive.f32.html#method.sin)
1275 pub fn sinf32(x: f32) -> f32;
1276 /// Returns the sine of an `f64`.
1278 /// The stabilized version of this intrinsic is
1279 /// [`f64::sin`](../../std/primitive.f64.html#method.sin)
1280 pub fn sinf64(x: f64) -> f64;
1282 /// Returns the cosine of an `f32`.
1284 /// The stabilized version of this intrinsic is
1285 /// [`f32::cos`](../../std/primitive.f32.html#method.cos)
1286 pub fn cosf32(x: f32) -> f32;
1287 /// Returns the cosine of an `f64`.
1289 /// The stabilized version of this intrinsic is
1290 /// [`f64::cos`](../../std/primitive.f64.html#method.cos)
1291 pub fn cosf64(x: f64) -> f64;
1293 /// Raises an `f32` to an `f32` power.
1295 /// The stabilized version of this intrinsic is
1296 /// [`f32::powf`](../../std/primitive.f32.html#method.powf)
1297 pub fn powf32(a: f32, x: f32) -> f32;
1298 /// Raises an `f64` to an `f64` power.
1300 /// The stabilized version of this intrinsic is
1301 /// [`f64::powf`](../../std/primitive.f64.html#method.powf)
1302 pub fn powf64(a: f64, x: f64) -> f64;
1304 /// Returns the exponential of an `f32`.
1306 /// The stabilized version of this intrinsic is
1307 /// [`f32::exp`](../../std/primitive.f32.html#method.exp)
1308 pub fn expf32(x: f32) -> f32;
1309 /// Returns the exponential of an `f64`.
1311 /// The stabilized version of this intrinsic is
1312 /// [`f64::exp`](../../std/primitive.f64.html#method.exp)
1313 pub fn expf64(x: f64) -> f64;
1315 /// Returns 2 raised to the power of an `f32`.
1317 /// The stabilized version of this intrinsic is
1318 /// [`f32::exp2`](../../std/primitive.f32.html#method.exp2)
1319 pub fn exp2f32(x: f32) -> f32;
1320 /// Returns 2 raised to the power of an `f64`.
1322 /// The stabilized version of this intrinsic is
1323 /// [`f64::exp2`](../../std/primitive.f64.html#method.exp2)
1324 pub fn exp2f64(x: f64) -> f64;
1326 /// Returns the natural logarithm of an `f32`.
1328 /// The stabilized version of this intrinsic is
1329 /// [`f32::ln`](../../std/primitive.f32.html#method.ln)
1330 pub fn logf32(x: f32) -> f32;
1331 /// Returns the natural logarithm of an `f64`.
1333 /// The stabilized version of this intrinsic is
1334 /// [`f64::ln`](../../std/primitive.f64.html#method.ln)
1335 pub fn logf64(x: f64) -> f64;
1337 /// Returns the base 10 logarithm of an `f32`.
1339 /// The stabilized version of this intrinsic is
1340 /// [`f32::log10`](../../std/primitive.f32.html#method.log10)
1341 pub fn log10f32(x: f32) -> f32;
1342 /// Returns the base 10 logarithm of an `f64`.
1344 /// The stabilized version of this intrinsic is
1345 /// [`f64::log10`](../../std/primitive.f64.html#method.log10)
1346 pub fn log10f64(x: f64) -> f64;
1348 /// Returns the base 2 logarithm of an `f32`.
1350 /// The stabilized version of this intrinsic is
1351 /// [`f32::log2`](../../std/primitive.f32.html#method.log2)
1352 pub fn log2f32(x: f32) -> f32;
1353 /// Returns the base 2 logarithm of an `f64`.
1355 /// The stabilized version of this intrinsic is
1356 /// [`f64::log2`](../../std/primitive.f64.html#method.log2)
1357 pub fn log2f64(x: f64) -> f64;
1359 /// Returns `a * b + c` for `f32` values.
1361 /// The stabilized version of this intrinsic is
1362 /// [`f32::mul_add`](../../std/primitive.f32.html#method.mul_add)
1363 pub fn fmaf32(a: f32, b: f32, c: f32) -> f32;
1364 /// Returns `a * b + c` for `f64` values.
1366 /// The stabilized version of this intrinsic is
1367 /// [`f64::mul_add`](../../std/primitive.f64.html#method.mul_add)
1368 pub fn fmaf64(a: f64, b: f64, c: f64) -> f64;
1370 /// Returns the absolute value of an `f32`.
1372 /// The stabilized version of this intrinsic is
1373 /// [`f32::abs`](../../std/primitive.f32.html#method.abs)
1374 pub fn fabsf32(x: f32) -> f32;
1375 /// Returns the absolute value of an `f64`.
1377 /// The stabilized version of this intrinsic is
1378 /// [`f64::abs`](../../std/primitive.f64.html#method.abs)
1379 pub fn fabsf64(x: f64) -> f64;
1381 /// Returns the minimum of two `f32` values.
1383 /// Note that, unlike most intrinsics, this is safe to call;
1384 /// it does not require an `unsafe` block.
1385 /// Therefore, implementations must not require the user to uphold
1386 /// any safety invariants.
1388 /// The stabilized version of this intrinsic is
1390 pub fn minnumf32(x: f32, y: f32) -> f32;
1391 /// Returns the minimum of two `f64` values.
1393 /// Note that, unlike most intrinsics, this is safe to call;
1394 /// it does not require an `unsafe` block.
1395 /// Therefore, implementations must not require the user to uphold
1396 /// any safety invariants.
1398 /// The stabilized version of this intrinsic is
1400 pub fn minnumf64(x: f64, y: f64) -> f64;
1401 /// Returns the maximum of two `f32` values.
1403 /// Note that, unlike most intrinsics, this is safe to call;
1404 /// it does not require an `unsafe` block.
1405 /// Therefore, implementations must not require the user to uphold
1406 /// any safety invariants.
1408 /// The stabilized version of this intrinsic is
1410 pub fn maxnumf32(x: f32, y: f32) -> f32;
1411 /// Returns the maximum of two `f64` values.
1413 /// Note that, unlike most intrinsics, this is safe to call;
1414 /// it does not require an `unsafe` block.
1415 /// Therefore, implementations must not require the user to uphold
1416 /// any safety invariants.
1418 /// The stabilized version of this intrinsic is
1420 pub fn maxnumf64(x: f64, y: f64) -> f64;
1422 /// Copies the sign from `y` to `x` for `f32` values.
1424 /// The stabilized version of this intrinsic is
1425 /// [`f32::copysign`](../../std/primitive.f32.html#method.copysign)
1426 pub fn copysignf32(x: f32, y: f32) -> f32;
1427 /// Copies the sign from `y` to `x` for `f64` values.
1429 /// The stabilized version of this intrinsic is
1430 /// [`f64::copysign`](../../std/primitive.f64.html#method.copysign)
1431 pub fn copysignf64(x: f64, y: f64) -> f64;
1433 /// Returns the largest integer less than or equal to an `f32`.
1435 /// The stabilized version of this intrinsic is
1436 /// [`f32::floor`](../../std/primitive.f32.html#method.floor)
1437 pub fn floorf32(x: f32) -> f32;
1438 /// Returns the largest integer less than or equal to an `f64`.
1440 /// The stabilized version of this intrinsic is
1441 /// [`f64::floor`](../../std/primitive.f64.html#method.floor)
1442 pub fn floorf64(x: f64) -> f64;
1444 /// Returns the smallest integer greater than or equal to an `f32`.
1446 /// The stabilized version of this intrinsic is
1447 /// [`f32::ceil`](../../std/primitive.f32.html#method.ceil)
1448 pub fn ceilf32(x: f32) -> f32;
1449 /// Returns the smallest integer greater than or equal to an `f64`.
1451 /// The stabilized version of this intrinsic is
1452 /// [`f64::ceil`](../../std/primitive.f64.html#method.ceil)
1453 pub fn ceilf64(x: f64) -> f64;
1455 /// Returns the integer part of an `f32`.
1457 /// The stabilized version of this intrinsic is
1458 /// [`f32::trunc`](../../std/primitive.f32.html#method.trunc)
1459 pub fn truncf32(x: f32) -> f32;
1460 /// Returns the integer part of an `f64`.
1462 /// The stabilized version of this intrinsic is
1463 /// [`f64::trunc`](../../std/primitive.f64.html#method.trunc)
1464 pub fn truncf64(x: f64) -> f64;
1466 /// Returns the nearest integer to an `f32`. May raise an inexact floating-point exception
1467 /// if the argument is not an integer.
1468 pub fn rintf32(x: f32) -> f32;
1469 /// Returns the nearest integer to an `f64`. May raise an inexact floating-point exception
1470 /// if the argument is not an integer.
1471 pub fn rintf64(x: f64) -> f64;
1473 /// Returns the nearest integer to an `f32`.
1475 /// This intrinsic does not have a stable counterpart.
1476 pub fn nearbyintf32(x: f32) -> f32;
1477 /// Returns the nearest integer to an `f64`.
1479 /// This intrinsic does not have a stable counterpart.
1480 pub fn nearbyintf64(x: f64) -> f64;
1482 /// Returns the nearest integer to an `f32`. Rounds half-way cases away from zero.
1484 /// The stabilized version of this intrinsic is
1485 /// [`f32::round`](../../std/primitive.f32.html#method.round)
1486 pub fn roundf32(x: f32) -> f32;
1487 /// Returns the nearest integer to an `f64`. Rounds half-way cases away from zero.
1489 /// The stabilized version of this intrinsic is
1490 /// [`f64::round`](../../std/primitive.f64.html#method.round)
1491 pub fn roundf64(x: f64) -> f64;
1493 /// Float addition that allows optimizations based on algebraic rules.
1494 /// May assume inputs are finite.
1496 /// This intrinsic does not have a stable counterpart.
1497 pub fn fadd_fast<T: Copy>(a: T, b: T) -> T;
1499 /// Float subtraction that allows optimizations based on algebraic rules.
1500 /// May assume inputs are finite.
1502 /// This intrinsic does not have a stable counterpart.
1503 pub fn fsub_fast<T: Copy>(a: T, b: T) -> T;
1505 /// Float multiplication that allows optimizations based on algebraic rules.
1506 /// May assume inputs are finite.
1508 /// This intrinsic does not have a stable counterpart.
1509 pub fn fmul_fast<T: Copy>(a: T, b: T) -> T;
1511 /// Float division that allows optimizations based on algebraic rules.
1512 /// May assume inputs are finite.
1514 /// This intrinsic does not have a stable counterpart.
1515 pub fn fdiv_fast<T: Copy>(a: T, b: T) -> T;
1517 /// Float remainder that allows optimizations based on algebraic rules.
1518 /// May assume inputs are finite.
1520 /// This intrinsic does not have a stable counterpart.
1521 pub fn frem_fast<T: Copy>(a: T, b: T) -> T;
1523 /// Convert with LLVM’s fptoui/fptosi, which may return undef for values out of range
1524 /// (<https://github.com/rust-lang/rust/issues/10184>)
1526 /// Stabilized as [`f32::to_int_unchecked`] and [`f64::to_int_unchecked`].
1527 pub fn float_to_int_unchecked<Float: Copy, Int: Copy>(value: Float) -> Int;
1529 /// Returns the number of bits set in an integer type `T`
1531 /// Note that, unlike most intrinsics, this is safe to call;
1532 /// it does not require an `unsafe` block.
1533 /// Therefore, implementations must not require the user to uphold
1534 /// any safety invariants.
1536 /// The stabilized versions of this intrinsic are available on the integer
1537 /// primitives via the `count_ones` method. For example,
1538 /// [`u32::count_ones`]
1539 #[rustc_const_stable(feature = "const_ctpop", since = "1.40.0")]
1540 pub fn ctpop<T: Copy>(x: T) -> T;
1542 /// Returns the number of leading unset bits (zeroes) in an integer type `T`.
1544 /// Note that, unlike most intrinsics, this is safe to call;
1545 /// it does not require an `unsafe` block.
1546 /// Therefore, implementations must not require the user to uphold
1547 /// any safety invariants.
1549 /// The stabilized versions of this intrinsic are available on the integer
1550 /// primitives via the `leading_zeros` method. For example,
1551 /// [`u32::leading_zeros`]
1556 /// #![feature(core_intrinsics)]
1558 /// use std::intrinsics::ctlz;
1560 /// let x = 0b0001_1100_u8;
1561 /// let num_leading = ctlz(x);
1562 /// assert_eq!(num_leading, 3);
1565 /// An `x` with value `0` will return the bit width of `T`.
1568 /// #![feature(core_intrinsics)]
1570 /// use std::intrinsics::ctlz;
1573 /// let num_leading = ctlz(x);
1574 /// assert_eq!(num_leading, 16);
1576 #[rustc_const_stable(feature = "const_ctlz", since = "1.40.0")]
1577 pub fn ctlz<T: Copy>(x: T) -> T;
1579 /// Like `ctlz`, but extra-unsafe as it returns `undef` when
1580 /// given an `x` with value `0`.
1582 /// This intrinsic does not have a stable counterpart.
1587 /// #![feature(core_intrinsics)]
1589 /// use std::intrinsics::ctlz_nonzero;
1591 /// let x = 0b0001_1100_u8;
1592 /// let num_leading = unsafe { ctlz_nonzero(x) };
1593 /// assert_eq!(num_leading, 3);
1595 #[rustc_const_stable(feature = "constctlz", since = "1.50.0")]
1596 pub fn ctlz_nonzero<T: Copy>(x: T) -> T;
1598 /// Returns the number of trailing unset bits (zeroes) in an integer type `T`.
1600 /// Note that, unlike most intrinsics, this is safe to call;
1601 /// it does not require an `unsafe` block.
1602 /// Therefore, implementations must not require the user to uphold
1603 /// any safety invariants.
1605 /// The stabilized versions of this intrinsic are available on the integer
1606 /// primitives via the `trailing_zeros` method. For example,
1607 /// [`u32::trailing_zeros`]
1612 /// #![feature(core_intrinsics)]
1614 /// use std::intrinsics::cttz;
1616 /// let x = 0b0011_1000_u8;
1617 /// let num_trailing = cttz(x);
1618 /// assert_eq!(num_trailing, 3);
1621 /// An `x` with value `0` will return the bit width of `T`:
1624 /// #![feature(core_intrinsics)]
1626 /// use std::intrinsics::cttz;
1629 /// let num_trailing = cttz(x);
1630 /// assert_eq!(num_trailing, 16);
1632 #[rustc_const_stable(feature = "const_cttz", since = "1.40.0")]
1633 pub fn cttz<T: Copy>(x: T) -> T;
1635 /// Like `cttz`, but extra-unsafe as it returns `undef` when
1636 /// given an `x` with value `0`.
1638 /// This intrinsic does not have a stable counterpart.
1643 /// #![feature(core_intrinsics)]
1645 /// use std::intrinsics::cttz_nonzero;
1647 /// let x = 0b0011_1000_u8;
1648 /// let num_trailing = unsafe { cttz_nonzero(x) };
1649 /// assert_eq!(num_trailing, 3);
1651 #[rustc_const_stable(feature = "const_cttz_nonzero", since = "1.53.0")]
1652 pub fn cttz_nonzero<T: Copy>(x: T) -> T;
1654 /// Reverses the bytes in an integer type `T`.
1656 /// Note that, unlike most intrinsics, this is safe to call;
1657 /// it does not require an `unsafe` block.
1658 /// Therefore, implementations must not require the user to uphold
1659 /// any safety invariants.
1661 /// The stabilized versions of this intrinsic are available on the integer
1662 /// primitives via the `swap_bytes` method. For example,
1663 /// [`u32::swap_bytes`]
1664 #[rustc_const_stable(feature = "const_bswap", since = "1.40.0")]
1665 pub fn bswap<T: Copy>(x: T) -> T;
1667 /// Reverses the bits in an integer type `T`.
1669 /// Note that, unlike most intrinsics, this is safe to call;
1670 /// it does not require an `unsafe` block.
1671 /// Therefore, implementations must not require the user to uphold
1672 /// any safety invariants.
1674 /// The stabilized versions of this intrinsic are available on the integer
1675 /// primitives via the `reverse_bits` method. For example,
1676 /// [`u32::reverse_bits`]
1677 #[rustc_const_stable(feature = "const_bitreverse", since = "1.40.0")]
1678 pub fn bitreverse<T: Copy>(x: T) -> T;
1680 /// Performs checked integer addition.
1682 /// Note that, unlike most intrinsics, this is safe to call;
1683 /// it does not require an `unsafe` block.
1684 /// Therefore, implementations must not require the user to uphold
1685 /// any safety invariants.
1687 /// The stabilized versions of this intrinsic are available on the integer
1688 /// primitives via the `overflowing_add` method. For example,
1689 /// [`u32::overflowing_add`]
1690 #[rustc_const_stable(feature = "const_int_overflow", since = "1.40.0")]
1691 pub fn add_with_overflow<T: Copy>(x: T, y: T) -> (T, bool);
1693 /// Performs checked integer subtraction
1695 /// Note that, unlike most intrinsics, this is safe to call;
1696 /// it does not require an `unsafe` block.
1697 /// Therefore, implementations must not require the user to uphold
1698 /// any safety invariants.
1700 /// The stabilized versions of this intrinsic are available on the integer
1701 /// primitives via the `overflowing_sub` method. For example,
1702 /// [`u32::overflowing_sub`]
1703 #[rustc_const_stable(feature = "const_int_overflow", since = "1.40.0")]
1704 pub fn sub_with_overflow<T: Copy>(x: T, y: T) -> (T, bool);
1706 /// Performs checked integer multiplication
1708 /// Note that, unlike most intrinsics, this is safe to call;
1709 /// it does not require an `unsafe` block.
1710 /// Therefore, implementations must not require the user to uphold
1711 /// any safety invariants.
1713 /// The stabilized versions of this intrinsic are available on the integer
1714 /// primitives via the `overflowing_mul` method. For example,
1715 /// [`u32::overflowing_mul`]
1716 #[rustc_const_stable(feature = "const_int_overflow", since = "1.40.0")]
1717 pub fn mul_with_overflow<T: Copy>(x: T, y: T) -> (T, bool);
1719 /// Performs an exact division, resulting in undefined behavior where
1720 /// `x % y != 0` or `y == 0` or `x == T::MIN && y == -1`
1722 /// This intrinsic does not have a stable counterpart.
1723 pub fn exact_div<T: Copy>(x: T, y: T) -> T;
1725 /// Performs an unchecked division, resulting in undefined behavior
1726 /// where `y == 0` or `x == T::MIN && y == -1`
1728 /// Safe wrappers for this intrinsic are available on the integer
1729 /// primitives via the `checked_div` method. For example,
1730 /// [`u32::checked_div`]
1731 #[rustc_const_stable(feature = "const_int_unchecked_div", since = "1.52.0")]
1732 pub fn unchecked_div<T: Copy>(x: T, y: T) -> T;
1733 /// Returns the remainder of an unchecked division, resulting in
1734 /// undefined behavior when `y == 0` or `x == T::MIN && y == -1`
1736 /// Safe wrappers for this intrinsic are available on the integer
1737 /// primitives via the `checked_rem` method. For example,
1738 /// [`u32::checked_rem`]
1739 #[rustc_const_stable(feature = "const_int_unchecked_rem", since = "1.52.0")]
1740 pub fn unchecked_rem<T: Copy>(x: T, y: T) -> T;
1742 /// Performs an unchecked left shift, resulting in undefined behavior when
1743 /// `y < 0` or `y >= N`, where N is the width of T in bits.
1745 /// Safe wrappers for this intrinsic are available on the integer
1746 /// primitives via the `checked_shl` method. For example,
1747 /// [`u32::checked_shl`]
1748 #[rustc_const_stable(feature = "const_int_unchecked", since = "1.40.0")]
1749 pub fn unchecked_shl<T: Copy>(x: T, y: T) -> T;
1750 /// Performs an unchecked right shift, resulting in undefined behavior when
1751 /// `y < 0` or `y >= N`, where N is the width of T in bits.
1753 /// Safe wrappers for this intrinsic are available on the integer
1754 /// primitives via the `checked_shr` method. For example,
1755 /// [`u32::checked_shr`]
1756 #[rustc_const_stable(feature = "const_int_unchecked", since = "1.40.0")]
1757 pub fn unchecked_shr<T: Copy>(x: T, y: T) -> T;
1759 /// Returns the result of an unchecked addition, resulting in
1760 /// undefined behavior when `x + y > T::MAX` or `x + y < T::MIN`.
1762 /// This intrinsic does not have a stable counterpart.
1763 #[rustc_const_unstable(feature = "const_int_unchecked_arith", issue = "none")]
1764 pub fn unchecked_add<T: Copy>(x: T, y: T) -> T;
1766 /// Returns the result of an unchecked subtraction, resulting in
1767 /// undefined behavior when `x - y > T::MAX` or `x - y < T::MIN`.
1769 /// This intrinsic does not have a stable counterpart.
1770 #[rustc_const_unstable(feature = "const_int_unchecked_arith", issue = "none")]
1771 pub fn unchecked_sub<T: Copy>(x: T, y: T) -> T;
1773 /// Returns the result of an unchecked multiplication, resulting in
1774 /// undefined behavior when `x * y > T::MAX` or `x * y < T::MIN`.
1776 /// This intrinsic does not have a stable counterpart.
1777 #[rustc_const_unstable(feature = "const_int_unchecked_arith", issue = "none")]
1778 pub fn unchecked_mul<T: Copy>(x: T, y: T) -> T;
1780 /// Performs rotate left.
1782 /// Note that, unlike most intrinsics, this is safe to call;
1783 /// it does not require an `unsafe` block.
1784 /// Therefore, implementations must not require the user to uphold
1785 /// any safety invariants.
1787 /// The stabilized versions of this intrinsic are available on the integer
1788 /// primitives via the `rotate_left` method. For example,
1789 /// [`u32::rotate_left`]
1790 #[rustc_const_stable(feature = "const_int_rotate", since = "1.40.0")]
1791 pub fn rotate_left<T: Copy>(x: T, y: T) -> T;
1793 /// Performs rotate right.
1795 /// Note that, unlike most intrinsics, this is safe to call;
1796 /// it does not require an `unsafe` block.
1797 /// Therefore, implementations must not require the user to uphold
1798 /// any safety invariants.
1800 /// The stabilized versions of this intrinsic are available on the integer
1801 /// primitives via the `rotate_right` method. For example,
1802 /// [`u32::rotate_right`]
1803 #[rustc_const_stable(feature = "const_int_rotate", since = "1.40.0")]
1804 pub fn rotate_right<T: Copy>(x: T, y: T) -> T;
1806 /// Returns (a + b) mod 2<sup>N</sup>, where N is the width of T in bits.
1808 /// Note that, unlike most intrinsics, this is safe to call;
1809 /// it does not require an `unsafe` block.
1810 /// Therefore, implementations must not require the user to uphold
1811 /// any safety invariants.
1813 /// The stabilized versions of this intrinsic are available on the integer
1814 /// primitives via the `wrapping_add` method. For example,
1815 /// [`u32::wrapping_add`]
1816 #[rustc_const_stable(feature = "const_int_wrapping", since = "1.40.0")]
1817 pub fn wrapping_add<T: Copy>(a: T, b: T) -> T;
1818 /// Returns (a - b) mod 2<sup>N</sup>, where N is the width of T in bits.
1820 /// Note that, unlike most intrinsics, this is safe to call;
1821 /// it does not require an `unsafe` block.
1822 /// Therefore, implementations must not require the user to uphold
1823 /// any safety invariants.
1825 /// The stabilized versions of this intrinsic are available on the integer
1826 /// primitives via the `wrapping_sub` method. For example,
1827 /// [`u32::wrapping_sub`]
1828 #[rustc_const_stable(feature = "const_int_wrapping", since = "1.40.0")]
1829 pub fn wrapping_sub<T: Copy>(a: T, b: T) -> T;
1830 /// Returns (a * b) mod 2<sup>N</sup>, where N is the width of T in bits.
1832 /// Note that, unlike most intrinsics, this is safe to call;
1833 /// it does not require an `unsafe` block.
1834 /// Therefore, implementations must not require the user to uphold
1835 /// any safety invariants.
1837 /// The stabilized versions of this intrinsic are available on the integer
1838 /// primitives via the `wrapping_mul` method. For example,
1839 /// [`u32::wrapping_mul`]
1840 #[rustc_const_stable(feature = "const_int_wrapping", since = "1.40.0")]
1841 pub fn wrapping_mul<T: Copy>(a: T, b: T) -> T;
1843 /// Computes `a + b`, saturating at numeric bounds.
1845 /// Note that, unlike most intrinsics, this is safe to call;
1846 /// it does not require an `unsafe` block.
1847 /// Therefore, implementations must not require the user to uphold
1848 /// any safety invariants.
1850 /// The stabilized versions of this intrinsic are available on the integer
1851 /// primitives via the `saturating_add` method. For example,
1852 /// [`u32::saturating_add`]
1853 #[rustc_const_stable(feature = "const_int_saturating", since = "1.40.0")]
1854 pub fn saturating_add<T: Copy>(a: T, b: T) -> T;
1855 /// Computes `a - b`, saturating at numeric bounds.
1857 /// Note that, unlike most intrinsics, this is safe to call;
1858 /// it does not require an `unsafe` block.
1859 /// Therefore, implementations must not require the user to uphold
1860 /// any safety invariants.
1862 /// The stabilized versions of this intrinsic are available on the integer
1863 /// primitives via the `saturating_sub` method. For example,
1864 /// [`u32::saturating_sub`]
1865 #[rustc_const_stable(feature = "const_int_saturating", since = "1.40.0")]
1866 pub fn saturating_sub<T: Copy>(a: T, b: T) -> T;
1868 /// Returns the value of the discriminant for the variant in 'v';
1869 /// if `T` has no discriminant, returns `0`.
1871 /// Note that, unlike most intrinsics, this is safe to call;
1872 /// it does not require an `unsafe` block.
1873 /// Therefore, implementations must not require the user to uphold
1874 /// any safety invariants.
1876 /// The stabilized version of this intrinsic is [`core::mem::discriminant`].
1877 #[rustc_const_unstable(feature = "const_discriminant", issue = "69821")]
1878 pub fn discriminant_value<T>(v: &T) -> <T as DiscriminantKind>::Discriminant;
1880 /// Returns the number of variants of the type `T` cast to a `usize`;
1881 /// if `T` has no variants, returns `0`. Uninhabited variants will be counted.
1883 /// Note that, unlike most intrinsics, this is safe to call;
1884 /// it does not require an `unsafe` block.
1885 /// Therefore, implementations must not require the user to uphold
1886 /// any safety invariants.
1888 /// The to-be-stabilized version of this intrinsic is [`mem::variant_count`].
1889 #[rustc_const_unstable(feature = "variant_count", issue = "73662")]
1890 pub fn variant_count<T>() -> usize;
1892 /// Rust's "try catch" construct which invokes the function pointer `try_fn`
1893 /// with the data pointer `data`.
1895 /// The third argument is a function called if a panic occurs. This function
1896 /// takes the data pointer and a pointer to the target-specific exception
1897 /// object that was caught. For more information see the compiler's
1898 /// source as well as std's catch implementation.
1899 pub fn r#try(try_fn: fn(*mut u8), data: *mut u8, catch_fn: fn(*mut u8, *mut u8)) -> i32;
1901 /// Emits a `!nontemporal` store according to LLVM (see their docs).
1902 /// Probably will never become stable.
1903 pub fn nontemporal_store<T>(ptr: *mut T, val: T);
1905 /// See documentation of `<*const T>::offset_from` for details.
1906 #[rustc_const_unstable(feature = "const_ptr_offset_from", issue = "92980")]
1907 pub fn ptr_offset_from<T>(ptr: *const T, base: *const T) -> isize;
1909 /// See documentation of `<*const T>::sub_ptr` for details.
1910 #[rustc_const_unstable(feature = "const_ptr_offset_from", issue = "92980")]
1911 #[cfg(not(bootstrap))]
1912 pub fn ptr_offset_from_unsigned<T>(ptr: *const T, base: *const T) -> usize;
1914 /// See documentation of `<*const T>::guaranteed_eq` for details.
1916 /// Note that, unlike most intrinsics, this is safe to call;
1917 /// it does not require an `unsafe` block.
1918 /// Therefore, implementations must not require the user to uphold
1919 /// any safety invariants.
1920 #[rustc_const_unstable(feature = "const_raw_ptr_comparison", issue = "53020")]
1921 pub fn ptr_guaranteed_eq<T>(ptr: *const T, other: *const T) -> bool;
1923 /// See documentation of `<*const T>::guaranteed_ne` for details.
1925 /// Note that, unlike most intrinsics, this is safe to call;
1926 /// it does not require an `unsafe` block.
1927 /// Therefore, implementations must not require the user to uphold
1928 /// any safety invariants.
1929 #[rustc_const_unstable(feature = "const_raw_ptr_comparison", issue = "53020")]
1930 pub fn ptr_guaranteed_ne<T>(ptr: *const T, other: *const T) -> bool;
1932 /// Allocates a block of memory at compile time.
1933 /// At runtime, just returns a null pointer.
1937 /// - The `align` argument must be a power of two.
1938 /// - At compile time, a compile error occurs if this constraint is violated.
1939 /// - At runtime, it is not checked.
1940 #[rustc_const_unstable(feature = "const_heap", issue = "79597")]
1941 pub fn const_allocate(size: usize, align: usize) -> *mut u8;
1943 /// Deallocates a memory which allocated by `intrinsics::const_allocate` at compile time.
1944 /// At runtime, does nothing.
1948 /// - The `align` argument must be a power of two.
1949 /// - At compile time, a compile error occurs if this constraint is violated.
1950 /// - At runtime, it is not checked.
1951 /// - If the `ptr` is created in an another const, this intrinsic doesn't deallocate it.
1952 /// - If the `ptr` is pointing to a local variable, this intrinsic doesn't deallocate it.
1953 #[rustc_const_unstable(feature = "const_heap", issue = "79597")]
1954 pub fn const_deallocate(ptr: *mut u8, size: usize, align: usize);
1956 /// Determines whether the raw bytes of the two values are equal.
1958 /// This is particularly handy for arrays, since it allows things like just
1959 /// comparing `i96`s instead of forcing `alloca`s for `[6 x i16]`.
1961 /// Above some backend-decided threshold this will emit calls to `memcmp`,
1962 /// like slice equality does, instead of causing massive code size.
1966 /// It's UB to call this if any of the *bytes* in `*a` or `*b` are uninitialized.
1967 /// Note that this is a stricter criterion than just the *values* being
1968 /// fully-initialized: if `T` has padding, it's UB to call this intrinsic.
1970 /// (The implementation is allowed to branch on the results of comparisons,
1971 /// which is UB if any of their inputs are `undef`.)
1972 #[rustc_const_unstable(feature = "const_intrinsic_raw_eq", issue = "none")]
1973 pub fn raw_eq<T>(a: &T, b: &T) -> bool;
1975 /// See documentation of [`std::hint::black_box`] for details.
1977 /// [`std::hint::black_box`]: crate::hint::black_box
1978 #[rustc_const_unstable(feature = "const_black_box", issue = "none")]
1979 pub fn black_box<T>(dummy: T) -> T;
1982 // Some functions are defined here because they accidentally got made
1983 // available in this module on stable. See <https://github.com/rust-lang/rust/issues/15702>.
1984 // (`transmute` also falls into this category, but it cannot be wrapped due to the
1985 // check that `T` and `U` have the same size.)
1987 /// Check that the preconditions of an unsafe function are followed, if debug_assertions are on,
1988 /// and only at runtime.
1992 /// Invoking this macro is only sound if the following code is already UB when the passed
1993 /// expression evaluates to false.
1995 /// This macro expands to a check at runtime if debug_assertions is set. It has no effect at
1996 /// compile time, but the semantics of the contained `const_eval_select` must be the same at
1997 /// runtime and at compile time. Thus if the expression evaluates to false, this macro produces
1998 /// different behavior at compile time and at runtime, and invoking it is incorrect.
2000 /// So in a sense it is UB if this macro is useful, but we expect callers of `unsafe fn` to make
2001 /// the occasional mistake, and this check should help them figure things out.
2002 #[allow_internal_unstable(const_eval_select)] // permit this to be called in stably-const fn
2003 macro_rules! assert_unsafe_precondition {
2005 if cfg!(debug_assertions) {
2006 // Use a closure so that we can capture arbitrary expressions from the invocation
2009 // abort instead of panicking to reduce impact on code size
2010 ::core::intrinsics::abort();
2013 const fn comptime() {}
2015 ::core::intrinsics::const_eval_select((), comptime, runtime);
2019 pub(crate) use assert_unsafe_precondition;
2021 /// Checks whether `ptr` is properly aligned with respect to
2022 /// `align_of::<T>()`.
2023 pub(crate) fn is_aligned_and_not_null<T>(ptr: *const T) -> bool {
2024 !ptr.is_null() && ptr.addr() % mem::align_of::<T>() == 0
2027 /// Checks whether the regions of memory starting at `src` and `dst` of size
2028 /// `count * size_of::<T>()` do *not* overlap.
2029 pub(crate) fn is_nonoverlapping<T>(src: *const T, dst: *const T, count: usize) -> bool {
2030 let src_usize = src.addr();
2031 let dst_usize = dst.addr();
2032 let size = mem::size_of::<T>().checked_mul(count).unwrap();
2033 let diff = if src_usize > dst_usize { src_usize - dst_usize } else { dst_usize - src_usize };
2034 // If the absolute distance between the ptrs is at least as big as the size of the buffer,
2035 // they do not overlap.
2039 /// Copies `count * size_of::<T>()` bytes from `src` to `dst`. The source
2040 /// and destination must *not* overlap.
2042 /// For regions of memory which might overlap, use [`copy`] instead.
2044 /// `copy_nonoverlapping` is semantically equivalent to C's [`memcpy`], but
2045 /// with the argument order swapped.
2047 /// [`memcpy`]: https://en.cppreference.com/w/c/string/byte/memcpy
2051 /// Behavior is undefined if any of the following conditions are violated:
2053 /// * `src` must be [valid] for reads of `count * size_of::<T>()` bytes.
2055 /// * `dst` must be [valid] for writes of `count * size_of::<T>()` bytes.
2057 /// * Both `src` and `dst` must be properly aligned.
2059 /// * The region of memory beginning at `src` with a size of `count *
2060 /// size_of::<T>()` bytes must *not* overlap with the region of memory
2061 /// beginning at `dst` with the same size.
2063 /// Like [`read`], `copy_nonoverlapping` creates a bitwise copy of `T`, regardless of
2064 /// whether `T` is [`Copy`]. If `T` is not [`Copy`], using *both* the values
2065 /// in the region beginning at `*src` and the region beginning at `*dst` can
2066 /// [violate memory safety][read-ownership].
2068 /// Note that even if the effectively copied size (`count * size_of::<T>()`) is
2069 /// `0`, the pointers must be non-null and properly aligned.
2071 /// [`read`]: crate::ptr::read
2072 /// [read-ownership]: crate::ptr::read#ownership-of-the-returned-value
2073 /// [valid]: crate::ptr#safety
2077 /// Manually implement [`Vec::append`]:
2082 /// /// Moves all the elements of `src` into `dst`, leaving `src` empty.
2083 /// fn append<T>(dst: &mut Vec<T>, src: &mut Vec<T>) {
2084 /// let src_len = src.len();
2085 /// let dst_len = dst.len();
2087 /// // Ensure that `dst` has enough capacity to hold all of `src`.
2088 /// dst.reserve(src_len);
2091 /// // The call to offset is always safe because `Vec` will never
2092 /// // allocate more than `isize::MAX` bytes.
2093 /// let dst_ptr = dst.as_mut_ptr().offset(dst_len as isize);
2094 /// let src_ptr = src.as_ptr();
2096 /// // Truncate `src` without dropping its contents. We do this first,
2097 /// // to avoid problems in case something further down panics.
2100 /// // The two regions cannot overlap because mutable references do
2101 /// // not alias, and two different vectors cannot own the same
2103 /// ptr::copy_nonoverlapping(src_ptr, dst_ptr, src_len);
2105 /// // Notify `dst` that it now holds the contents of `src`.
2106 /// dst.set_len(dst_len + src_len);
2110 /// let mut a = vec!['r'];
2111 /// let mut b = vec!['u', 's', 't'];
2113 /// append(&mut a, &mut b);
2115 /// assert_eq!(a, &['r', 'u', 's', 't']);
2116 /// assert!(b.is_empty());
2119 /// [`Vec::append`]: ../../std/vec/struct.Vec.html#method.append
2120 #[doc(alias = "memcpy")]
2121 #[stable(feature = "rust1", since = "1.0.0")]
2122 #[rustc_const_unstable(feature = "const_intrinsic_copy", issue = "80697")]
2124 pub const unsafe fn copy_nonoverlapping<T>(src: *const T, dst: *mut T, count: usize) {
2125 extern "rust-intrinsic" {
2126 #[rustc_const_unstable(feature = "const_intrinsic_copy", issue = "80697")]
2127 pub fn copy_nonoverlapping<T>(src: *const T, dst: *mut T, count: usize);
2130 // SAFETY: the safety contract for `copy_nonoverlapping` must be
2131 // upheld by the caller.
2133 assert_unsafe_precondition!(
2134 is_aligned_and_not_null(src)
2135 && is_aligned_and_not_null(dst)
2136 && is_nonoverlapping(src, dst, count)
2138 copy_nonoverlapping(src, dst, count)
2142 /// Copies `count * size_of::<T>()` bytes from `src` to `dst`. The source
2143 /// and destination may overlap.
2145 /// If the source and destination will *never* overlap,
2146 /// [`copy_nonoverlapping`] can be used instead.
2148 /// `copy` is semantically equivalent to C's [`memmove`], but with the argument
2149 /// order swapped. Copying takes place as if the bytes were copied from `src`
2150 /// to a temporary array and then copied from the array to `dst`.
2152 /// [`memmove`]: https://en.cppreference.com/w/c/string/byte/memmove
2156 /// Behavior is undefined if any of the following conditions are violated:
2158 /// * `src` must be [valid] for reads of `count * size_of::<T>()` bytes.
2160 /// * `dst` must be [valid] for writes of `count * size_of::<T>()` bytes.
2162 /// * Both `src` and `dst` must be properly aligned.
2164 /// Like [`read`], `copy` creates a bitwise copy of `T`, regardless of
2165 /// whether `T` is [`Copy`]. If `T` is not [`Copy`], using both the values
2166 /// in the region beginning at `*src` and the region beginning at `*dst` can
2167 /// [violate memory safety][read-ownership].
2169 /// Note that even if the effectively copied size (`count * size_of::<T>()`) is
2170 /// `0`, the pointers must be non-null and properly aligned.
2172 /// [`read`]: crate::ptr::read
2173 /// [read-ownership]: crate::ptr::read#ownership-of-the-returned-value
2174 /// [valid]: crate::ptr#safety
2178 /// Efficiently create a Rust vector from an unsafe buffer:
2185 /// /// * `ptr` must be correctly aligned for its type and non-zero.
2186 /// /// * `ptr` must be valid for reads of `elts` contiguous elements of type `T`.
2187 /// /// * Those elements must not be used after calling this function unless `T: Copy`.
2188 /// # #[allow(dead_code)]
2189 /// unsafe fn from_buf_raw<T>(ptr: *const T, elts: usize) -> Vec<T> {
2190 /// let mut dst = Vec::with_capacity(elts);
2192 /// // SAFETY: Our precondition ensures the source is aligned and valid,
2193 /// // and `Vec::with_capacity` ensures that we have usable space to write them.
2194 /// ptr::copy(ptr, dst.as_mut_ptr(), elts);
2196 /// // SAFETY: We created it with this much capacity earlier,
2197 /// // and the previous `copy` has initialized these elements.
2198 /// dst.set_len(elts);
2202 #[doc(alias = "memmove")]
2203 #[stable(feature = "rust1", since = "1.0.0")]
2204 #[rustc_const_unstable(feature = "const_intrinsic_copy", issue = "80697")]
2206 pub const unsafe fn copy<T>(src: *const T, dst: *mut T, count: usize) {
2207 extern "rust-intrinsic" {
2208 #[rustc_const_unstable(feature = "const_intrinsic_copy", issue = "80697")]
2209 fn copy<T>(src: *const T, dst: *mut T, count: usize);
2212 // SAFETY: the safety contract for `copy` must be upheld by the caller.
2214 assert_unsafe_precondition!(is_aligned_and_not_null(src) && is_aligned_and_not_null(dst));
2215 copy(src, dst, count)
2219 /// Sets `count * size_of::<T>()` bytes of memory starting at `dst` to
2222 /// `write_bytes` is similar to C's [`memset`], but sets `count *
2223 /// size_of::<T>()` bytes to `val`.
2225 /// [`memset`]: https://en.cppreference.com/w/c/string/byte/memset
2229 /// Behavior is undefined if any of the following conditions are violated:
2231 /// * `dst` must be [valid] for writes of `count * size_of::<T>()` bytes.
2233 /// * `dst` must be properly aligned.
2235 /// Additionally, the caller must ensure that writing `count *
2236 /// size_of::<T>()` bytes to the given region of memory results in a valid
2237 /// value of `T`. Using a region of memory typed as a `T` that contains an
2238 /// invalid value of `T` is undefined behavior.
2240 /// Note that even if the effectively copied size (`count * size_of::<T>()`) is
2241 /// `0`, the pointer must be non-null and properly aligned.
2243 /// [valid]: crate::ptr#safety
2252 /// let mut vec = vec![0u32; 4];
2254 /// let vec_ptr = vec.as_mut_ptr();
2255 /// ptr::write_bytes(vec_ptr, 0xfe, 2);
2257 /// assert_eq!(vec, [0xfefefefe, 0xfefefefe, 0, 0]);
2260 /// Creating an invalid value:
2265 /// let mut v = Box::new(0i32);
2268 /// // Leaks the previously held value by overwriting the `Box<T>` with
2269 /// // a null pointer.
2270 /// ptr::write_bytes(&mut v as *mut Box<i32>, 0, 1);
2273 /// // At this point, using or dropping `v` results in undefined behavior.
2274 /// // drop(v); // ERROR
2276 /// // Even leaking `v` "uses" it, and hence is undefined behavior.
2277 /// // mem::forget(v); // ERROR
2279 /// // In fact, `v` is invalid according to basic type layout invariants, so *any*
2280 /// // operation touching it is undefined behavior.
2281 /// // let v2 = v; // ERROR
2284 /// // Let us instead put in a valid value
2285 /// ptr::write(&mut v as *mut Box<i32>, Box::new(42i32));
2288 /// // Now the box is fine
2289 /// assert_eq!(*v, 42);
2291 #[stable(feature = "rust1", since = "1.0.0")]
2292 #[rustc_const_unstable(feature = "const_ptr_write", issue = "86302")]
2294 pub const unsafe fn write_bytes<T>(dst: *mut T, val: u8, count: usize) {
2295 extern "rust-intrinsic" {
2296 #[rustc_const_unstable(feature = "const_ptr_write", issue = "86302")]
2297 fn write_bytes<T>(dst: *mut T, val: u8, count: usize);
2300 // SAFETY: the safety contract for `write_bytes` must be upheld by the caller.
2302 assert_unsafe_precondition!(is_aligned_and_not_null(dst));
2303 write_bytes(dst, val, count)
2307 /// Selects which function to call depending on the context.
2309 /// If this function is evaluated at compile-time, then a call to this
2310 /// intrinsic will be replaced with a call to `called_in_const`. It gets
2311 /// replaced with a call to `called_at_rt` otherwise.
2313 /// # Type Requirements
2315 /// The two functions must be both function items. They cannot be function
2316 /// pointers or closures.
2318 /// `arg` will be the arguments that will be passed to either one of the
2319 /// two functions, therefore, both functions must accept the same type of
2320 /// arguments. Both functions must return RET.
2324 /// The two functions must behave observably equivalent. Safe code in other
2325 /// crates may assume that calling a `const fn` at compile-time and at run-time
2326 /// produces the same result. A function that produces a different result when
2327 /// evaluated at run-time, or has any other observable side-effects, is
2330 /// Here is an example of how this could cause a problem:
2332 /// #![feature(const_eval_select)]
2333 /// use std::hint::unreachable_unchecked;
2334 /// use std::intrinsics::const_eval_select;
2337 /// pub const fn inconsistent() -> i32 {
2338 /// fn runtime() -> i32 { 1 }
2339 /// const fn compiletime() -> i32 { 2 }
2342 // // ⚠ This code violates the required equivalence of `compiletime`
2343 /// // and `runtime`.
2344 /// const_eval_select((), compiletime, runtime)
2349 /// const X: i32 = inconsistent();
2350 /// let x = inconsistent();
2351 /// if x != X { unsafe { unreachable_unchecked(); }}
2354 /// This code causes Undefined Behavior when being run, since the
2355 /// `unreachable_unchecked` is actually being reached. The bug is in *crate A*,
2356 /// which violates the principle that a `const fn` must behave the same at
2357 /// compile-time and at run-time. The unsafe code in crate B is fine.
2359 feature = "const_eval_select",
2361 reason = "const_eval_select will never be stable"
2363 #[rustc_const_unstable(feature = "const_eval_select", issue = "none")]
2364 #[lang = "const_eval_select"]
2365 #[rustc_do_not_const_check]
2366 pub const unsafe fn const_eval_select<ARG, F, G, RET>(
2368 _called_in_const: F,
2372 F: ~const FnOnce<ARG, Output = RET>,
2373 G: FnOnce<ARG, Output = RET> + ~const Destruct,
2375 called_at_rt.call_once(arg)
2379 feature = "const_eval_select",
2381 reason = "const_eval_select will never be stable"
2383 #[rustc_const_unstable(feature = "const_eval_select", issue = "none")]
2384 #[lang = "const_eval_select_ct"]
2385 pub const unsafe fn const_eval_select_ct<ARG, F, G, RET>(
2391 F: ~const FnOnce<ARG, Output = RET>,
2392 G: FnOnce<ARG, Output = RET> + ~const Destruct,
2394 called_in_const.call_once(arg)
2397 /// Bootstrap polyfill
2399 pub const unsafe fn ptr_offset_from_unsigned<T>(ptr: *const T, base: *const T) -> usize {
2400 // SAFETY: we have stricter preconditions than `ptr_offset_from`, so can
2401 // call it, and its output has to be positive, so we can just cast.
2402 unsafe { ptr_offset_from(ptr, base) as _ }