1 //! Computations on places -- field projections, going from mir::Place, and writing
3 //! All high-level functions to write to memory work on places as destinations.
5 use std::convert::TryFrom;
9 use rustc::mir::interpret::truncate;
10 use rustc::ty::layout::{
11 self, Align, HasDataLayout, LayoutOf, PrimitiveExt, Size, TyLayout, VariantIdx,
13 use rustc::ty::{self, Ty};
14 use rustc_macros::HashStable;
17 AllocId, AllocMap, Allocation, AllocationExtra, ImmTy, Immediate, InterpCx, InterpResult,
18 LocalValue, Machine, MemoryKind, OpTy, Operand, Pointer, PointerArithmetic, RawConst, Scalar,
22 #[derive(Copy, Clone, Debug, Hash, PartialEq, Eq, HashStable)]
23 /// Information required for the sound usage of a `MemPlace`.
24 pub enum MemPlaceMeta<Tag = (), Id = AllocId> {
25 /// The unsized payload (e.g. length for slices or vtable pointer for trait objects).
26 Meta(Scalar<Tag, Id>),
27 /// `Sized` types or unsized `extern type`
29 /// The address of this place may not be taken. This protects the `MemPlace` from coming from
30 /// a ZST Operand with a backing allocation and being converted to an integer address. This
31 /// should be impossible, because you can't take the address of an operand, but this is a second
32 /// protection layer ensuring that we don't mess up.
36 impl<Tag, Id> MemPlaceMeta<Tag, Id> {
37 pub fn unwrap_meta(self) -> Scalar<Tag, Id> {
40 Self::None | Self::Poison => {
41 bug!("expected wide pointer extra data (e.g. slice length or trait object vtable)")
45 fn has_meta(self) -> bool {
47 Self::Meta(_) => true,
48 Self::None | Self::Poison => false,
53 impl<Tag> MemPlaceMeta<Tag> {
54 pub fn erase_tag(self) -> MemPlaceMeta<()> {
56 Self::Meta(s) => MemPlaceMeta::Meta(s.erase_tag()),
57 Self::None => MemPlaceMeta::None,
58 Self::Poison => MemPlaceMeta::Poison,
63 #[derive(Copy, Clone, Debug, Hash, PartialEq, Eq, HashStable)]
64 pub struct MemPlace<Tag = (), Id = AllocId> {
65 /// A place may have an integral pointer for ZSTs, and since it might
66 /// be turned back into a reference before ever being dereferenced.
67 /// However, it may never be undef.
68 pub ptr: Scalar<Tag, Id>,
70 /// Metadata for unsized places. Interpretation is up to the type.
71 /// Must not be present for sized types, but can be missing for unsized types
72 /// (e.g., `extern type`).
73 pub meta: MemPlaceMeta<Tag, Id>,
76 #[derive(Copy, Clone, Debug, Hash, PartialEq, Eq, HashStable)]
77 pub enum Place<Tag = (), Id = AllocId> {
78 /// A place referring to a value allocated in the `Memory` system.
79 Ptr(MemPlace<Tag, Id>),
81 /// To support alloc-free locals, we are able to write directly to a local.
82 /// (Without that optimization, we'd just always be a `MemPlace`.)
83 Local { frame: usize, local: mir::Local },
86 #[derive(Copy, Clone, Debug)]
87 pub struct PlaceTy<'tcx, Tag = ()> {
88 place: Place<Tag>, // Keep this private; it helps enforce invariants.
89 pub layout: TyLayout<'tcx>,
92 impl<'tcx, Tag> ::std::ops::Deref for PlaceTy<'tcx, Tag> {
93 type Target = Place<Tag>;
95 fn deref(&self) -> &Place<Tag> {
100 /// A MemPlace with its layout. Constructing it is only possible in this module.
101 #[derive(Copy, Clone, Debug, Hash, Eq, PartialEq)]
102 pub struct MPlaceTy<'tcx, Tag = ()> {
103 mplace: MemPlace<Tag>,
104 pub layout: TyLayout<'tcx>,
107 impl<'tcx, Tag> ::std::ops::Deref for MPlaceTy<'tcx, Tag> {
108 type Target = MemPlace<Tag>;
110 fn deref(&self) -> &MemPlace<Tag> {
115 impl<'tcx, Tag> From<MPlaceTy<'tcx, Tag>> for PlaceTy<'tcx, Tag> {
117 fn from(mplace: MPlaceTy<'tcx, Tag>) -> Self {
118 PlaceTy { place: Place::Ptr(mplace.mplace), layout: mplace.layout }
122 impl<Tag> MemPlace<Tag> {
123 /// Replace ptr tag, maintain vtable tag (if any)
125 pub fn replace_tag(self, new_tag: Tag) -> Self {
126 MemPlace { ptr: self.ptr.erase_tag().with_tag(new_tag), align: self.align, meta: self.meta }
130 pub fn erase_tag(self) -> MemPlace {
131 MemPlace { ptr: self.ptr.erase_tag(), align: self.align, meta: self.meta.erase_tag() }
135 fn from_scalar_ptr(ptr: Scalar<Tag>, align: Align) -> Self {
136 MemPlace { ptr, align, meta: MemPlaceMeta::None }
139 /// Produces a Place that will error if attempted to be read from or written to
141 fn null(cx: &impl HasDataLayout) -> Self {
142 Self::from_scalar_ptr(Scalar::ptr_null(cx), Align::from_bytes(1).unwrap())
146 pub fn from_ptr(ptr: Pointer<Tag>, align: Align) -> Self {
147 Self::from_scalar_ptr(ptr.into(), align)
150 /// Turn a mplace into a (thin or wide) pointer, as a reference, pointing to the same space.
151 /// This is the inverse of `ref_to_mplace`.
153 pub fn to_ref(self) -> Immediate<Tag> {
155 MemPlaceMeta::None => Immediate::Scalar(self.ptr.into()),
156 MemPlaceMeta::Meta(meta) => Immediate::ScalarPair(self.ptr.into(), meta.into()),
157 MemPlaceMeta::Poison => bug!(
158 "MPlaceTy::dangling may never be used to produce a \
159 place that will have the address of its pointee taken"
167 meta: MemPlaceMeta<Tag>,
168 cx: &impl HasDataLayout,
169 ) -> InterpResult<'tcx, Self> {
171 ptr: self.ptr.ptr_offset(offset, cx)?,
172 align: self.align.restrict_for_offset(offset),
178 impl<'tcx, Tag> MPlaceTy<'tcx, Tag> {
179 /// Produces a MemPlace that works for ZST but nothing else
181 pub fn dangling(layout: TyLayout<'tcx>, cx: &impl HasDataLayout) -> Self {
182 let align = layout.align.abi;
183 let ptr = Scalar::from_uint(align.bytes(), cx.pointer_size());
184 // `Poison` this to make sure that the pointer value `ptr` is never observable by the program.
185 MPlaceTy { mplace: MemPlace { ptr, align, meta: MemPlaceMeta::Poison }, layout }
188 /// Replace ptr tag, maintain vtable tag (if any)
190 pub fn replace_tag(self, new_tag: Tag) -> Self {
191 MPlaceTy { mplace: self.mplace.replace_tag(new_tag), layout: self.layout }
198 meta: MemPlaceMeta<Tag>,
199 layout: TyLayout<'tcx>,
200 cx: &impl HasDataLayout,
201 ) -> InterpResult<'tcx, Self> {
202 Ok(MPlaceTy { mplace: self.mplace.offset(offset, meta, cx)?, layout })
206 fn from_aligned_ptr(ptr: Pointer<Tag>, layout: TyLayout<'tcx>) -> Self {
207 MPlaceTy { mplace: MemPlace::from_ptr(ptr, layout.align.abi), layout }
211 pub(super) fn len(self, cx: &impl HasDataLayout) -> InterpResult<'tcx, u64> {
212 if self.layout.is_unsized() {
213 // We need to consult `meta` metadata
214 match self.layout.ty.kind {
215 ty::Slice(..) | ty::Str => {
216 return self.mplace.meta.unwrap_meta().to_machine_usize(cx);
218 _ => bug!("len not supported on unsized type {:?}", self.layout.ty),
221 // Go through the layout. There are lots of types that support a length,
223 match self.layout.fields {
224 layout::FieldPlacement::Array { count, .. } => Ok(count),
225 _ => bug!("len not supported on sized type {:?}", self.layout.ty),
231 pub(super) fn vtable(self) -> Scalar<Tag> {
232 match self.layout.ty.kind {
233 ty::Dynamic(..) => self.mplace.meta.unwrap_meta(),
234 _ => bug!("vtable not supported on type {:?}", self.layout.ty),
239 // These are defined here because they produce a place.
240 impl<'tcx, Tag: ::std::fmt::Debug + Copy> OpTy<'tcx, Tag> {
242 /// Note: do not call `as_ref` on the resulting place. This function should only be used to
243 /// read from the resulting mplace, not to get its address back.
244 pub fn try_as_mplace(
246 cx: &impl HasDataLayout,
247 ) -> Result<MPlaceTy<'tcx, Tag>, ImmTy<'tcx, Tag>> {
249 Operand::Indirect(mplace) => Ok(MPlaceTy { mplace, layout: self.layout }),
250 Operand::Immediate(_) if self.layout.is_zst() => {
251 Ok(MPlaceTy::dangling(self.layout, cx))
253 Operand::Immediate(imm) => Err(ImmTy { imm, layout: self.layout }),
258 /// Note: do not call `as_ref` on the resulting place. This function should only be used to
259 /// read from the resulting mplace, not to get its address back.
260 pub fn assert_mem_place(self, cx: &impl HasDataLayout) -> MPlaceTy<'tcx, Tag> {
261 self.try_as_mplace(cx).unwrap()
265 impl<Tag: ::std::fmt::Debug> Place<Tag> {
266 /// Produces a Place that will error if attempted to be read from or written to
268 fn null(cx: &impl HasDataLayout) -> Self {
269 Place::Ptr(MemPlace::null(cx))
273 pub fn assert_mem_place(self) -> MemPlace<Tag> {
275 Place::Ptr(mplace) => mplace,
276 _ => bug!("assert_mem_place: expected Place::Ptr, got {:?}", self),
281 impl<'tcx, Tag: ::std::fmt::Debug> PlaceTy<'tcx, Tag> {
283 pub fn assert_mem_place(self) -> MPlaceTy<'tcx, Tag> {
284 MPlaceTy { mplace: self.place.assert_mem_place(), layout: self.layout }
288 // separating the pointer tag for `impl Trait`, see https://github.com/rust-lang/rust/issues/54385
289 impl<'mir, 'tcx, Tag, M> InterpCx<'mir, 'tcx, M>
291 // FIXME: Working around https://github.com/rust-lang/rust/issues/54385
292 Tag: ::std::fmt::Debug + Copy + Eq + Hash + 'static,
293 M: Machine<'mir, 'tcx, PointerTag = Tag>,
294 // FIXME: Working around https://github.com/rust-lang/rust/issues/24159
295 M::MemoryMap: AllocMap<AllocId, (MemoryKind<M::MemoryKinds>, Allocation<Tag, M::AllocExtra>)>,
296 M::AllocExtra: AllocationExtra<Tag>,
298 /// Take a value, which represents a (thin or wide) reference, and make it a place.
299 /// Alignment is just based on the type. This is the inverse of `MemPlace::to_ref()`.
301 /// Only call this if you are sure the place is "valid" (aligned and inbounds), or do not
302 /// want to ever use the place for memory access!
303 /// Generally prefer `deref_operand`.
304 pub fn ref_to_mplace(
306 val: ImmTy<'tcx, M::PointerTag>,
307 ) -> InterpResult<'tcx, MPlaceTy<'tcx, M::PointerTag>> {
309 val.layout.ty.builtin_deref(true).expect("`ref_to_mplace` called on non-ptr type").ty;
310 let layout = self.layout_of(pointee_type)?;
311 let (ptr, meta) = match *val {
312 Immediate::Scalar(ptr) => (ptr.not_undef()?, MemPlaceMeta::None),
313 Immediate::ScalarPair(ptr, meta) => {
314 (ptr.not_undef()?, MemPlaceMeta::Meta(meta.not_undef()?))
318 let mplace = MemPlace {
320 // We could use the run-time alignment here. For now, we do not, because
321 // the point of tracking the alignment here is to make sure that the *static*
322 // alignment information emitted with the loads is correct. The run-time
323 // alignment can only be more restrictive.
324 align: layout.align.abi,
327 Ok(MPlaceTy { mplace, layout })
330 /// Take an operand, representing a pointer, and dereference it to a place -- that
331 /// will always be a MemPlace. Lives in `place.rs` because it creates a place.
332 pub fn deref_operand(
334 src: OpTy<'tcx, M::PointerTag>,
335 ) -> InterpResult<'tcx, MPlaceTy<'tcx, M::PointerTag>> {
336 let val = self.read_immediate(src)?;
337 trace!("deref to {} on {:?}", val.layout.ty, *val);
338 let place = self.ref_to_mplace(val)?;
339 self.mplace_access_checked(place)
342 /// Check if the given place is good for memory access with the given
343 /// size, falling back to the layout's size if `None` (in the latter case,
344 /// this must be a statically sized type).
346 /// On success, returns `None` for zero-sized accesses (where nothing else is
347 /// left to do) and a `Pointer` to use for the actual access otherwise.
349 pub(super) fn check_mplace_access(
351 place: MPlaceTy<'tcx, M::PointerTag>,
353 ) -> InterpResult<'tcx, Option<Pointer<M::PointerTag>>> {
354 let size = size.unwrap_or_else(|| {
355 assert!(!place.layout.is_unsized());
356 assert!(!place.meta.has_meta());
359 self.memory.check_ptr_access(place.ptr, size, place.align)
362 /// Return the "access-checked" version of this `MPlace`, where for non-ZST
363 /// this is definitely a `Pointer`.
364 pub fn mplace_access_checked(
366 mut place: MPlaceTy<'tcx, M::PointerTag>,
367 ) -> InterpResult<'tcx, MPlaceTy<'tcx, M::PointerTag>> {
368 let (size, align) = self
369 .size_and_align_of_mplace(place)?
370 .unwrap_or((place.layout.size, place.layout.align.abi));
371 assert!(place.mplace.align <= align, "dynamic alignment less strict than static one?");
372 place.mplace.align = align; // maximally strict checking
373 // When dereferencing a pointer, it must be non-NULL, aligned, and live.
374 if let Some(ptr) = self.check_mplace_access(place, Some(size))? {
375 place.mplace.ptr = ptr.into();
380 /// Force `place.ptr` to a `Pointer`.
381 /// Can be helpful to avoid lots of `force_ptr` calls later, if this place is used a lot.
382 pub(super) fn force_mplace_ptr(
384 mut place: MPlaceTy<'tcx, M::PointerTag>,
385 ) -> InterpResult<'tcx, MPlaceTy<'tcx, M::PointerTag>> {
386 place.mplace.ptr = self.force_ptr(place.mplace.ptr)?.into();
390 /// Offset a pointer to project to a field. Unlike `place_field`, this is always
391 /// possible without allocating, so it can take `&self`. Also return the field's layout.
392 /// This supports both struct and array fields.
396 base: MPlaceTy<'tcx, M::PointerTag>,
398 ) -> InterpResult<'tcx, MPlaceTy<'tcx, M::PointerTag>> {
399 // Not using the layout method because we want to compute on u64
400 let offset = match base.layout.fields {
401 layout::FieldPlacement::Arbitrary { ref offsets, .. } => {
402 offsets[usize::try_from(field).unwrap()]
404 layout::FieldPlacement::Array { stride, .. } => {
405 let len = base.len(self)?;
407 // This can only be reached in ConstProp and non-rustc-MIR.
408 throw_ub!(BoundsCheckFailed { len, index: field });
412 layout::FieldPlacement::Union(count) => {
414 field < count as u64,
415 "Tried to access field {} of union {:#?} with {} fields",
420 // Offset is always 0
424 // the only way conversion can fail if is this is an array (otherwise we already panicked
425 // above). In that case, all fields are equal.
426 let field_layout = base.layout.field(self, usize::try_from(field).unwrap_or(0))?;
428 // Offset may need adjustment for unsized fields.
429 let (meta, offset) = if field_layout.is_unsized() {
430 // Re-use parent metadata to determine dynamic field layout.
431 // With custom DSTS, this *will* execute user-defined code, but the same
432 // happens at run-time so that's okay.
433 let align = match self.size_and_align_of(base.meta, field_layout)? {
434 Some((_, align)) => align,
435 None if offset == Size::ZERO => {
436 // An extern type at offset 0, we fall back to its static alignment.
437 // FIXME: Once we have made decisions for how to handle size and alignment
438 // of `extern type`, this should be adapted. It is just a temporary hack
439 // to get some code to work that probably ought to work.
440 field_layout.align.abi
442 None => bug!("Cannot compute offset for extern type field at non-0 offset"),
444 (base.meta, offset.align_to(align))
446 // base.meta could be present; we might be accessing a sized field of an unsized
448 (MemPlaceMeta::None, offset)
451 // We do not look at `base.layout.align` nor `field_layout.align`, unlike
452 // codegen -- mostly to see if we can get away with that
453 base.offset(offset, meta, field_layout, self)
456 // Iterates over all fields of an array. Much more efficient than doing the
457 // same by repeatedly calling `mplace_array`.
458 pub(super) fn mplace_array_fields(
460 base: MPlaceTy<'tcx, Tag>,
461 ) -> InterpResult<'tcx, impl Iterator<Item = InterpResult<'tcx, MPlaceTy<'tcx, Tag>>> + 'tcx>
463 let len = base.len(self)?; // also asserts that we have a type where this makes sense
464 let stride = match base.layout.fields {
465 layout::FieldPlacement::Array { stride, .. } => stride,
466 _ => bug!("mplace_array_fields: expected an array layout"),
468 let layout = base.layout.field(self, 0)?;
469 let dl = &self.tcx.data_layout;
470 Ok((0..len).map(move |i| base.offset(i * stride, MemPlaceMeta::None, layout, dl)))
475 base: MPlaceTy<'tcx, M::PointerTag>,
479 ) -> InterpResult<'tcx, MPlaceTy<'tcx, M::PointerTag>> {
480 let len = base.len(self)?; // also asserts that we have a type where this makes sense
481 let actual_to = if from_end {
483 // This can only be reached in ConstProp and non-rustc-MIR.
484 throw_ub!(BoundsCheckFailed { len: len as u64, index: from as u64 + to as u64 });
491 // Not using layout method because that works with usize, and does not work with slices
492 // (that have count 0 in their layout).
493 let from_offset = match base.layout.fields {
494 layout::FieldPlacement::Array { stride, .. } => stride * from,
495 _ => bug!("Unexpected layout of index access: {:#?}", base.layout),
498 // Compute meta and new layout
499 let inner_len = actual_to - from;
500 let (meta, ty) = match base.layout.ty.kind {
501 // It is not nice to match on the type, but that seems to be the only way to
503 ty::Array(inner, _) => (MemPlaceMeta::None, self.tcx.mk_array(inner, inner_len)),
505 let len = Scalar::from_uint(inner_len, self.pointer_size());
506 (MemPlaceMeta::Meta(len), base.layout.ty)
508 _ => bug!("cannot subslice non-array type: `{:?}`", base.layout.ty),
510 let layout = self.layout_of(ty)?;
511 base.offset(from_offset, meta, layout, self)
514 pub(super) fn mplace_downcast(
516 base: MPlaceTy<'tcx, M::PointerTag>,
518 ) -> InterpResult<'tcx, MPlaceTy<'tcx, M::PointerTag>> {
519 // Downcasts only change the layout
520 assert!(!base.meta.has_meta());
521 Ok(MPlaceTy { layout: base.layout.for_variant(self, variant), ..base })
524 /// Project into an mplace
525 pub(super) fn mplace_projection(
527 base: MPlaceTy<'tcx, M::PointerTag>,
528 proj_elem: &mir::PlaceElem<'tcx>,
529 ) -> InterpResult<'tcx, MPlaceTy<'tcx, M::PointerTag>> {
530 use rustc::mir::ProjectionElem::*;
531 Ok(match *proj_elem {
532 Field(field, _) => self.mplace_field(base, field.index() as u64)?,
533 Downcast(_, variant) => self.mplace_downcast(base, variant)?,
534 Deref => self.deref_operand(base.into())?,
537 let layout = self.layout_of(self.tcx.types.usize)?;
538 let n = self.access_local(self.frame(), local, Some(layout))?;
539 let n = self.read_scalar(n)?;
540 let n = self.force_bits(n.not_undef()?, self.tcx.data_layout.pointer_size)?;
541 self.mplace_field(base, u64::try_from(n).unwrap())?
544 ConstantIndex { offset, min_length, from_end } => {
545 let n = base.len(self)?;
546 if n < min_length as u64 {
547 // This can only be reached in ConstProp and non-rustc-MIR.
548 throw_ub!(BoundsCheckFailed { len: min_length as u64, index: n as u64 });
551 let index = if from_end {
552 assert!(0 < offset && offset - 1 < min_length);
553 n - u64::from(offset)
555 assert!(offset < min_length);
559 self.mplace_field(base, index)?
562 Subslice { from, to, from_end } => {
563 self.mplace_subslice(base, u64::from(from), u64::from(to), from_end)?
568 /// Gets the place of a field inside the place, and also the field's type.
569 /// Just a convenience function, but used quite a bit.
570 /// This is the only projection that might have a side-effect: We cannot project
571 /// into the field of a local `ScalarPair`, we have to first allocate it.
574 base: PlaceTy<'tcx, M::PointerTag>,
576 ) -> InterpResult<'tcx, PlaceTy<'tcx, M::PointerTag>> {
577 // FIXME: We could try to be smarter and avoid allocation for fields that span the
579 let mplace = self.force_allocation(base)?;
580 Ok(self.mplace_field(mplace, field)?.into())
583 pub fn place_downcast(
585 base: PlaceTy<'tcx, M::PointerTag>,
587 ) -> InterpResult<'tcx, PlaceTy<'tcx, M::PointerTag>> {
588 // Downcast just changes the layout
589 Ok(match base.place {
590 Place::Ptr(mplace) => {
591 self.mplace_downcast(MPlaceTy { mplace, layout: base.layout }, variant)?.into()
593 Place::Local { .. } => {
594 let layout = base.layout.for_variant(self, variant);
595 PlaceTy { layout, ..base }
600 /// Projects into a place.
601 pub fn place_projection(
603 base: PlaceTy<'tcx, M::PointerTag>,
604 proj_elem: &mir::ProjectionElem<mir::Local, Ty<'tcx>>,
605 ) -> InterpResult<'tcx, PlaceTy<'tcx, M::PointerTag>> {
606 use rustc::mir::ProjectionElem::*;
607 Ok(match *proj_elem {
608 Field(field, _) => self.place_field(base, field.index() as u64)?,
609 Downcast(_, variant) => self.place_downcast(base, variant)?,
610 Deref => self.deref_operand(self.place_to_op(base)?)?.into(),
611 // For the other variants, we have to force an allocation.
612 // This matches `operand_projection`.
613 Subslice { .. } | ConstantIndex { .. } | Index(_) => {
614 let mplace = self.force_allocation(base)?;
615 self.mplace_projection(mplace, proj_elem)?.into()
620 /// Computes a place. You should only use this if you intend to write into this
621 /// place; for reading, a more efficient alternative is `eval_place_for_read`.
624 place: &mir::Place<'tcx>,
625 ) -> InterpResult<'tcx, PlaceTy<'tcx, M::PointerTag>> {
626 let mut place_ty = match place.local {
627 mir::RETURN_PLACE => {
628 // `return_place` has the *caller* layout, but we want to use our
629 // `layout to verify our assumption. The caller will validate
630 // their layout on return.
632 place: match self.frame().return_place {
634 // Even if we don't have a return place, we sometimes need to
635 // create this place, but any attempt to read from / write to it
636 // (even a ZST read/write) needs to error, so let us make this
639 // FIXME: Ideally we'd make sure that the place projections also
641 None => Place::null(&*self),
643 layout: self.layout_of(self.subst_from_frame_and_normalize_erasing_regions(
644 self.frame().body.return_ty(),
649 // This works even for dead/uninitialized locals; we check further when writing
650 place: Place::Local { frame: self.cur_frame(), local: local },
651 layout: self.layout_of_local(self.frame(), local, None)?,
655 for elem in place.projection.iter() {
656 place_ty = self.place_projection(place_ty, elem)?
659 self.dump_place(place_ty.place);
663 /// Write a scalar to a place
667 val: impl Into<ScalarMaybeUndef<M::PointerTag>>,
668 dest: PlaceTy<'tcx, M::PointerTag>,
669 ) -> InterpResult<'tcx> {
670 self.write_immediate(Immediate::Scalar(val.into()), dest)
673 /// Write an immediate to a place
675 pub fn write_immediate(
677 src: Immediate<M::PointerTag>,
678 dest: PlaceTy<'tcx, M::PointerTag>,
679 ) -> InterpResult<'tcx> {
680 self.write_immediate_no_validate(src, dest)?;
682 if M::enforce_validity(self) {
683 // Data got changed, better make sure it matches the type!
684 self.validate_operand(self.place_to_op(dest)?, vec![], None)?;
690 /// Write an `Immediate` to memory.
692 pub fn write_immediate_to_mplace(
694 src: Immediate<M::PointerTag>,
695 dest: MPlaceTy<'tcx, M::PointerTag>,
696 ) -> InterpResult<'tcx> {
697 self.write_immediate_to_mplace_no_validate(src, dest)?;
699 if M::enforce_validity(self) {
700 // Data got changed, better make sure it matches the type!
701 self.validate_operand(dest.into(), vec![], None)?;
707 /// Write an immediate to a place.
708 /// If you use this you are responsible for validating that things got copied at the
710 fn write_immediate_no_validate(
712 src: Immediate<M::PointerTag>,
713 dest: PlaceTy<'tcx, M::PointerTag>,
714 ) -> InterpResult<'tcx> {
715 if cfg!(debug_assertions) {
716 // This is a very common path, avoid some checks in release mode
717 assert!(!dest.layout.is_unsized(), "Cannot write unsized data");
719 Immediate::Scalar(ScalarMaybeUndef::Scalar(Scalar::Ptr(_))) => assert_eq!(
722 "Size mismatch when writing pointer"
724 Immediate::Scalar(ScalarMaybeUndef::Scalar(Scalar::Raw { size, .. })) => {
726 Size::from_bytes(size.into()),
728 "Size mismatch when writing bits"
731 Immediate::Scalar(ScalarMaybeUndef::Undef) => {} // undef can have any size
732 Immediate::ScalarPair(_, _) => {
733 // FIXME: Can we check anything here?
737 trace!("write_immediate: {:?} <- {:?}: {}", *dest, src, dest.layout.ty);
739 // See if we can avoid an allocation. This is the counterpart to `try_read_immediate`,
740 // but not factored as a separate function.
741 let mplace = match dest.place {
742 Place::Local { frame, local } => {
743 match self.stack[frame].locals[local].access_mut()? {
745 // Local can be updated in-place.
746 *local = LocalValue::Live(Operand::Immediate(src));
750 // The local is in memory, go on below.
755 Place::Ptr(mplace) => mplace, // already referring to memory
757 let dest = MPlaceTy { mplace, layout: dest.layout };
759 // This is already in memory, write there.
760 self.write_immediate_to_mplace_no_validate(src, dest)
763 /// Write an immediate to memory.
764 /// If you use this you are responsible for validating that things got copied at the
766 fn write_immediate_to_mplace_no_validate(
768 value: Immediate<M::PointerTag>,
769 dest: MPlaceTy<'tcx, M::PointerTag>,
770 ) -> InterpResult<'tcx> {
771 // Note that it is really important that the type here is the right one, and matches the
772 // type things are read at. In case `src_val` is a `ScalarPair`, we don't do any magic here
773 // to handle padding properly, which is only correct if we never look at this data with the
776 // Invalid places are a thing: the return place of a diverging function
777 let ptr = match self.check_mplace_access(dest, None)? {
779 None => return Ok(()), // zero-sized access
782 let tcx = &*self.tcx;
783 // FIXME: We should check that there are dest.layout.size many bytes available in
784 // memory. The code below is not sufficient, with enough padding it might not
785 // cover all the bytes!
787 Immediate::Scalar(scalar) => {
788 match dest.layout.abi {
789 layout::Abi::Scalar(_) => {} // fine
791 bug!("write_immediate_to_mplace: invalid Scalar layout: {:#?}", dest.layout)
794 self.memory.get_raw_mut(ptr.alloc_id)?.write_scalar(
801 Immediate::ScalarPair(a_val, b_val) => {
802 // We checked `ptr_align` above, so all fields will have the alignment they need.
803 // We would anyway check against `ptr_align.restrict_for_offset(b_offset)`,
804 // which `ptr.offset(b_offset)` cannot possibly fail to satisfy.
805 let (a, b) = match dest.layout.abi {
806 layout::Abi::ScalarPair(ref a, ref b) => (&a.value, &b.value),
808 "write_immediate_to_mplace: invalid ScalarPair layout: {:#?}",
812 let (a_size, b_size) = (a.size(self), b.size(self));
813 let b_offset = a_size.align_to(b.align(self).abi);
814 let b_ptr = ptr.offset(b_offset, self)?;
816 // It is tempting to verify `b_offset` against `layout.fields.offset(1)`,
817 // but that does not work: We could be a newtype around a pair, then the
818 // fields do not match the `ScalarPair` components.
820 self.memory.get_raw_mut(ptr.alloc_id)?.write_scalar(tcx, ptr, a_val, a_size)?;
821 self.memory.get_raw_mut(b_ptr.alloc_id)?.write_scalar(tcx, b_ptr, b_val, b_size)
826 /// Copies the data from an operand to a place. This does not support transmuting!
827 /// Use `copy_op_transmute` if the layouts could disagree.
831 src: OpTy<'tcx, M::PointerTag>,
832 dest: PlaceTy<'tcx, M::PointerTag>,
833 ) -> InterpResult<'tcx> {
834 self.copy_op_no_validate(src, dest)?;
836 if M::enforce_validity(self) {
837 // Data got changed, better make sure it matches the type!
838 self.validate_operand(self.place_to_op(dest)?, vec![], None)?;
844 /// Copies the data from an operand to a place. This does not support transmuting!
845 /// Use `copy_op_transmute` if the layouts could disagree.
846 /// Also, if you use this you are responsible for validating that things get copied at the
848 fn copy_op_no_validate(
850 src: OpTy<'tcx, M::PointerTag>,
851 dest: PlaceTy<'tcx, M::PointerTag>,
852 ) -> InterpResult<'tcx> {
853 // We do NOT compare the types for equality, because well-typed code can
854 // actually "transmute" `&mut T` to `&T` in an assignment without a cast.
856 src.layout.details == dest.layout.details,
857 "Layout mismatch when copying!\nsrc: {:#?}\ndest: {:#?}",
862 // Let us see if the layout is simple so we take a shortcut, avoid force_allocation.
863 let src = match self.try_read_immediate(src)? {
865 assert!(!src.layout.is_unsized(), "cannot have unsized immediates");
866 // Yay, we got a value that we can write directly.
867 // FIXME: Add a check to make sure that if `src` is indirect,
868 // it does not overlap with `dest`.
869 return self.write_immediate_no_validate(*src_val, dest);
871 Err(mplace) => mplace,
873 // Slow path, this does not fit into an immediate. Just memcpy.
874 trace!("copy_op: {:?} <- {:?}: {}", *dest, src, dest.layout.ty);
876 // This interprets `src.meta` with the `dest` local's layout, if an unsized local
877 // is being initialized!
878 let (dest, size) = self.force_allocation_maybe_sized(dest, src.meta)?;
879 let size = size.unwrap_or_else(|| {
881 !dest.layout.is_unsized(),
882 "Cannot copy into already initialized unsized place"
886 assert_eq!(src.meta, dest.meta, "Can only copy between equally-sized instances");
889 .check_mplace_access(src, Some(size))
890 .expect("places should be checked on creation");
892 .check_mplace_access(dest, Some(size))
893 .expect("places should be checked on creation");
894 let (src_ptr, dest_ptr) = match (src, dest) {
895 (Some(src_ptr), Some(dest_ptr)) => (src_ptr, dest_ptr),
896 (None, None) => return Ok(()), // zero-sized copy
897 _ => bug!("The pointers should both be Some or both None"),
900 self.memory.copy(src_ptr, dest_ptr, size, /*nonoverlapping*/ true)
903 /// Copies the data from an operand to a place. The layouts may disagree, but they must
904 /// have the same size.
905 pub fn copy_op_transmute(
907 src: OpTy<'tcx, M::PointerTag>,
908 dest: PlaceTy<'tcx, M::PointerTag>,
909 ) -> InterpResult<'tcx> {
910 if src.layout.details == dest.layout.details {
911 // Fast path: Just use normal `copy_op`
912 return self.copy_op(src, dest);
914 // We still require the sizes to match.
915 if src.layout.size != dest.layout.size {
916 // FIXME: This should be an assert instead of an error, but if we transmute within an
917 // array length computation, `typeck` may not have yet been run and errored out. In fact
918 // most likey we *are* running `typeck` right now. Investigate whether we can bail out
919 // on `typeck_tables().has_errors` at all const eval entry points.
920 debug!("Size mismatch when transmuting!\nsrc: {:#?}\ndest: {:#?}", src, dest);
921 throw_unsup!(TransmuteSizeDiff(src.layout.ty, dest.layout.ty));
923 // Unsized copies rely on interpreting `src.meta` with `dest.layout`, we want
924 // to avoid that here.
926 !src.layout.is_unsized() && !dest.layout.is_unsized(),
927 "Cannot transmute unsized data"
930 // The hard case is `ScalarPair`. `src` is already read from memory in this case,
931 // using `src.layout` to figure out which bytes to use for the 1st and 2nd field.
932 // We have to write them to `dest` at the offsets they were *read at*, which is
933 // not necessarily the same as the offsets in `dest.layout`!
934 // Hence we do the copy with the source layout on both sides. We also make sure to write
935 // into memory, because if `dest` is a local we would not even have a way to write
936 // at the `src` offsets; the fact that we came from a different layout would
938 let dest = self.force_allocation(dest)?;
939 self.copy_op_no_validate(
941 PlaceTy::from(MPlaceTy { mplace: *dest, layout: src.layout }),
944 if M::enforce_validity(self) {
945 // Data got changed, better make sure it matches the type!
946 self.validate_operand(dest.into(), vec![], None)?;
952 /// Ensures that a place is in memory, and returns where it is.
953 /// If the place currently refers to a local that doesn't yet have a matching allocation,
954 /// create such an allocation.
955 /// This is essentially `force_to_memplace`.
957 /// This supports unsized types and returns the computed size to avoid some
958 /// redundant computation when copying; use `force_allocation` for a simpler, sized-only
960 pub fn force_allocation_maybe_sized(
962 place: PlaceTy<'tcx, M::PointerTag>,
963 meta: MemPlaceMeta<M::PointerTag>,
964 ) -> InterpResult<'tcx, (MPlaceTy<'tcx, M::PointerTag>, Option<Size>)> {
965 let (mplace, size) = match place.place {
966 Place::Local { frame, local } => {
967 match self.stack[frame].locals[local].access_mut()? {
968 Ok(&mut local_val) => {
969 // We need to make an allocation.
971 // We need the layout of the local. We can NOT use the layout we got,
972 // that might e.g., be an inner field of a struct with `Scalar` layout,
973 // that has different alignment than the outer field.
974 let local_layout = self.layout_of_local(&self.stack[frame], local, None)?;
975 // We also need to support unsized types, and hence cannot use `allocate`.
976 let (size, align) = self
977 .size_and_align_of(meta, local_layout)?
978 .expect("Cannot allocate for non-dyn-sized type");
979 let ptr = self.memory.allocate(size, align, MemoryKind::Stack);
980 let mplace = MemPlace { ptr: ptr.into(), align, meta };
981 if let LocalValue::Live(Operand::Immediate(value)) = local_val {
982 // Preserve old value.
983 // We don't have to validate as we can assume the local
984 // was already valid for its type.
985 let mplace = MPlaceTy { mplace, layout: local_layout };
986 self.write_immediate_to_mplace_no_validate(value, mplace)?;
988 // Now we can call `access_mut` again, asserting it goes well,
989 // and actually overwrite things.
990 *self.stack[frame].locals[local].access_mut().unwrap().unwrap() =
991 LocalValue::Live(Operand::Indirect(mplace));
994 Err(mplace) => (mplace, None), // this already was an indirect local
997 Place::Ptr(mplace) => (mplace, None),
999 // Return with the original layout, so that the caller can go on
1000 Ok((MPlaceTy { mplace, layout: place.layout }, size))
1004 pub fn force_allocation(
1006 place: PlaceTy<'tcx, M::PointerTag>,
1007 ) -> InterpResult<'tcx, MPlaceTy<'tcx, M::PointerTag>> {
1008 Ok(self.force_allocation_maybe_sized(place, MemPlaceMeta::None)?.0)
1013 layout: TyLayout<'tcx>,
1014 kind: MemoryKind<M::MemoryKinds>,
1015 ) -> MPlaceTy<'tcx, M::PointerTag> {
1016 let ptr = self.memory.allocate(layout.size, layout.align.abi, kind);
1017 MPlaceTy::from_aligned_ptr(ptr, layout)
1020 /// Returns a wide MPlace.
1021 pub fn allocate_str(
1024 kind: MemoryKind<M::MemoryKinds>,
1025 ) -> MPlaceTy<'tcx, M::PointerTag> {
1026 let ptr = self.memory.allocate_static_bytes(str.as_bytes(), kind);
1027 let meta = Scalar::from_uint(str.len() as u128, self.pointer_size());
1028 let mplace = MemPlace {
1030 align: Align::from_bytes(1).unwrap(),
1031 meta: MemPlaceMeta::Meta(meta),
1034 let layout = self.layout_of(self.tcx.mk_static_str()).unwrap();
1035 MPlaceTy { mplace, layout }
1038 pub fn write_discriminant_index(
1040 variant_index: VariantIdx,
1041 dest: PlaceTy<'tcx, M::PointerTag>,
1042 ) -> InterpResult<'tcx> {
1043 // Layout computation excludes uninhabited variants from consideration
1044 // therefore there's no way to represent those variants in the given layout.
1045 if dest.layout.for_variant(self, variant_index).abi.is_uninhabited() {
1046 throw_ub!(Unreachable);
1049 match dest.layout.variants {
1050 layout::Variants::Single { index } => {
1051 assert_eq!(index, variant_index);
1053 layout::Variants::Multiple {
1054 discr_kind: layout::DiscriminantKind::Tag,
1055 discr: ref discr_layout,
1059 // No need to validate that the discriminant here because the
1060 // `TyLayout::for_variant()` call earlier already checks the variant is valid.
1063 dest.layout.ty.discriminant_for_variant(*self.tcx, variant_index).unwrap().val;
1065 // raw discriminants for enums are isize or bigger during
1066 // their computation, but the in-memory tag is the smallest possible
1068 let size = discr_layout.value.size(self);
1069 let discr_val = truncate(discr_val, size);
1071 let discr_dest = self.place_field(dest, discr_index as u64)?;
1072 self.write_scalar(Scalar::from_uint(discr_val, size), discr_dest)?;
1074 layout::Variants::Multiple {
1076 layout::DiscriminantKind::Niche { dataful_variant, ref niche_variants, niche_start },
1077 discr: ref discr_layout,
1081 // No need to validate that the discriminant here because the
1082 // `TyLayout::for_variant()` call earlier already checks the variant is valid.
1084 if variant_index != dataful_variant {
1085 let variants_start = niche_variants.start().as_u32();
1086 let variant_index_relative = variant_index
1088 .checked_sub(variants_start)
1089 .expect("overflow computing relative variant idx");
1090 // We need to use machine arithmetic when taking into account `niche_start`:
1091 // discr_val = variant_index_relative + niche_start_val
1092 let discr_layout = self.layout_of(discr_layout.value.to_int_ty(*self.tcx))?;
1093 let niche_start_val = ImmTy::from_uint(niche_start, discr_layout);
1094 let variant_index_relative_val =
1095 ImmTy::from_uint(variant_index_relative, discr_layout);
1096 let discr_val = self.binary_op(
1098 variant_index_relative_val,
1102 let niche_dest = self.place_field(dest, discr_index as u64)?;
1103 self.write_immediate(*discr_val, niche_dest)?;
1111 pub fn raw_const_to_mplace(
1113 raw: RawConst<'tcx>,
1114 ) -> InterpResult<'tcx, MPlaceTy<'tcx, M::PointerTag>> {
1115 // This must be an allocation in `tcx`
1116 assert!(self.tcx.alloc_map.lock().get(raw.alloc_id).is_some());
1117 let ptr = self.tag_static_base_pointer(Pointer::from(raw.alloc_id));
1118 let layout = self.layout_of(raw.ty)?;
1119 Ok(MPlaceTy::from_aligned_ptr(ptr, layout))
1122 /// Turn a place with a `dyn Trait` type into a place with the actual dynamic type.
1123 /// Also return some more information so drop doesn't have to run the same code twice.
1124 pub(super) fn unpack_dyn_trait(
1126 mplace: MPlaceTy<'tcx, M::PointerTag>,
1127 ) -> InterpResult<'tcx, (ty::Instance<'tcx>, MPlaceTy<'tcx, M::PointerTag>)> {
1128 let vtable = mplace.vtable(); // also sanity checks the type
1129 let (instance, ty) = self.read_drop_type_from_vtable(vtable)?;
1130 let layout = self.layout_of(ty)?;
1132 // More sanity checks
1133 if cfg!(debug_assertions) {
1134 let (size, align) = self.read_size_and_align_from_vtable(vtable)?;
1135 assert_eq!(size, layout.size);
1136 // only ABI alignment is preserved
1137 assert_eq!(align, layout.align.abi);
1140 let mplace = MPlaceTy { mplace: MemPlace { meta: MemPlaceMeta::None, ..*mplace }, layout };
1141 Ok((instance, mplace))