1 //! Global machine state as well as implementation of the interpreter engine
5 use std::cell::RefCell;
8 use rand::rngs::StdRng;
11 use rustc_ast::ast::Mutability;
12 use rustc_const_eval::const_eval::CheckAlignment;
13 use rustc_data_structures::fx::{FxHashMap, FxHashSet};
15 use rustc_data_structures::static_assert_size;
20 layout::{LayoutCx, LayoutError, LayoutOf, TyAndLayout},
21 Instance, Ty, TyCtxt, TypeAndMut,
24 use rustc_span::def_id::{CrateNum, DefId};
25 use rustc_span::Symbol;
26 use rustc_target::abi::{Align, Size};
27 use rustc_target::spec::abi::Abi;
30 concurrency::{data_race, weak_memory},
31 shims::unix::FileHandler,
35 /// The number of the available real-time signal with the lowest priority.
36 /// Dummy constant related to epoll, must be between 32 and 64.
37 pub const SIGRTMAX: i32 = 42;
39 /// Extra data stored with each stack frame
40 pub struct FrameExtra<'tcx> {
41 /// Extra data for Stacked Borrows.
42 pub borrow_tracker: Option<borrow_tracker::FrameState>,
44 /// If this is Some(), then this is a special "catch unwind" frame (the frame of `try_fn`
45 /// called by `try`). When this frame is popped during unwinding a panic,
46 /// we stop unwinding, use the `CatchUnwindData` to handle catching.
47 pub catch_unwind: Option<CatchUnwindData<'tcx>>,
49 /// If `measureme` profiling is enabled, holds timing information
50 /// for the start of this frame. When we finish executing this frame,
51 /// we use this to register a completed event with `measureme`.
52 pub timing: Option<measureme::DetachedTiming>,
54 /// Indicates whether a `Frame` is part of a workspace-local crate and is also not
55 /// `#[track_caller]`. We compute this once on creation and store the result, as an
57 /// This is used by `MiriMachine::current_span` and `MiriMachine::caller_span`
58 pub is_user_relevant: bool,
61 impl<'tcx> std::fmt::Debug for FrameExtra<'tcx> {
62 fn fmt(&self, f: &mut std::fmt::Formatter<'_>) -> std::fmt::Result {
63 // Omitting `timing`, it does not support `Debug`.
64 let FrameExtra { borrow_tracker, catch_unwind, timing: _, is_user_relevant: _ } = self;
65 f.debug_struct("FrameData")
66 .field("borrow_tracker", borrow_tracker)
67 .field("catch_unwind", catch_unwind)
72 impl VisitTags for FrameExtra<'_> {
73 fn visit_tags(&self, visit: &mut dyn FnMut(BorTag)) {
74 let FrameExtra { catch_unwind, borrow_tracker, timing: _, is_user_relevant: _ } = self;
76 catch_unwind.visit_tags(visit);
77 borrow_tracker.visit_tags(visit);
81 /// Extra memory kinds
82 #[derive(Debug, Copy, Clone, PartialEq, Eq)]
83 pub enum MiriMemoryKind {
84 /// `__rust_alloc` memory.
86 /// `miri_alloc` memory.
90 /// Windows `HeapAlloc` memory.
92 /// Memory for args, errno, and other parts of the machine-managed environment.
93 /// This memory may leak.
95 /// Memory allocated by the runtime (e.g. env vars). Separate from `Machine`
96 /// because we clean it up and leak-check it.
98 /// Globals copied from `tcx`.
99 /// This memory may leak.
101 /// Memory for extern statics.
102 /// This memory may leak.
104 /// Memory for thread-local statics.
105 /// This memory may leak.
109 impl From<MiriMemoryKind> for MemoryKind<MiriMemoryKind> {
111 fn from(kind: MiriMemoryKind) -> MemoryKind<MiriMemoryKind> {
112 MemoryKind::Machine(kind)
116 impl MayLeak for MiriMemoryKind {
118 fn may_leak(self) -> bool {
119 use self::MiriMemoryKind::*;
121 Rust | Miri | C | WinHeap | Runtime => false,
122 Machine | Global | ExternStatic | Tls => true,
127 impl fmt::Display for MiriMemoryKind {
128 fn fmt(&self, f: &mut fmt::Formatter<'_>) -> fmt::Result {
129 use self::MiriMemoryKind::*;
131 Rust => write!(f, "Rust heap"),
132 Miri => write!(f, "Miri bare-metal heap"),
133 C => write!(f, "C heap"),
134 WinHeap => write!(f, "Windows heap"),
135 Machine => write!(f, "machine-managed memory"),
136 Runtime => write!(f, "language runtime memory"),
137 Global => write!(f, "global (static or const)"),
138 ExternStatic => write!(f, "extern static"),
139 Tls => write!(f, "thread-local static"),
144 /// Pointer provenance.
145 #[derive(Clone, Copy)]
146 pub enum Provenance {
149 /// Stacked Borrows tag.
155 // This needs to be `Eq`+`Hash` because the `Machine` trait needs that because validity checking
156 // *might* be recursive and then it has to track which places have already been visited.
157 // However, comparing provenance is meaningless, since `Wildcard` might be any provenance -- and of
158 // course we don't actually do recursive checking.
159 // We could change `RefTracking` to strip provenance for its `seen` set but that type is generic so that is quite annoying.
160 // Instead owe add the required instances but make them panic.
161 impl PartialEq for Provenance {
162 fn eq(&self, _other: &Self) -> bool {
163 panic!("Provenance must not be compared")
166 impl Eq for Provenance {}
167 impl std::hash::Hash for Provenance {
168 fn hash<H: std::hash::Hasher>(&self, _state: &mut H) {
169 panic!("Provenance must not be hashed")
173 /// The "extra" information a pointer has over a regular AllocId.
174 #[derive(Copy, Clone, PartialEq)]
175 pub enum ProvenanceExtra {
180 #[cfg(all(target_arch = "x86_64", target_pointer_width = "64"))]
181 static_assert_size!(Pointer<Provenance>, 24);
182 // FIXME: this would with in 24bytes but layout optimizations are not smart enough
183 // #[cfg(all(target_arch = "x86_64", target_pointer_width = "64"))]
184 //static_assert_size!(Pointer<Option<Provenance>>, 24);
185 #[cfg(all(target_arch = "x86_64", target_pointer_width = "64"))]
186 static_assert_size!(Scalar<Provenance>, 32);
188 impl fmt::Debug for Provenance {
189 fn fmt(&self, f: &mut std::fmt::Formatter<'_>) -> std::fmt::Result {
191 Provenance::Concrete { alloc_id, tag } => {
192 // Forward `alternate` flag to `alloc_id` printing.
194 write!(f, "[{alloc_id:#?}]")?;
196 write!(f, "[{alloc_id:?}]")?;
198 // Print Stacked Borrows tag.
199 write!(f, "{tag:?}")?;
201 Provenance::Wildcard => {
202 write!(f, "[wildcard]")?;
209 impl interpret::Provenance for Provenance {
210 /// We use absolute addresses in the `offset` of a `Pointer<Provenance>`.
211 const OFFSET_IS_ADDR: bool = true;
213 fn get_alloc_id(self) -> Option<AllocId> {
215 Provenance::Concrete { alloc_id, .. } => Some(alloc_id),
216 Provenance::Wildcard => None,
220 fn join(left: Option<Self>, right: Option<Self>) -> Option<Self> {
221 match (left, right) {
222 // If both are the *same* concrete tag, that is the result.
224 Some(Provenance::Concrete { alloc_id: left_alloc, tag: left_tag }),
225 Some(Provenance::Concrete { alloc_id: right_alloc, tag: right_tag }),
226 ) if left_alloc == right_alloc && left_tag == right_tag => left,
227 // If one side is a wildcard, the best possible outcome is that it is equal to the other
228 // one, and we use that.
229 (Some(Provenance::Wildcard), o) | (o, Some(Provenance::Wildcard)) => o,
230 // Otherwise, fall back to `None`.
236 impl fmt::Debug for ProvenanceExtra {
237 fn fmt(&self, f: &mut fmt::Formatter<'_>) -> fmt::Result {
239 ProvenanceExtra::Concrete(pid) => write!(f, "{pid:?}"),
240 ProvenanceExtra::Wildcard => write!(f, "<wildcard>"),
245 impl ProvenanceExtra {
246 pub fn and_then<T>(self, f: impl FnOnce(BorTag) -> Option<T>) -> Option<T> {
248 ProvenanceExtra::Concrete(pid) => f(pid),
249 ProvenanceExtra::Wildcard => None,
254 /// Extra per-allocation data
255 #[derive(Debug, Clone)]
256 pub struct AllocExtra {
257 /// Global state of the borrow tracker, if enabled.
258 pub borrow_tracker: Option<borrow_tracker::AllocState>,
259 /// Data race detection via the use of a vector-clock,
260 /// this is only added if it is enabled.
261 pub data_race: Option<data_race::AllocState>,
262 /// Weak memory emulation via the use of store buffers,
263 /// this is only added if it is enabled.
264 pub weak_memory: Option<weak_memory::AllocState>,
267 impl VisitTags for AllocExtra {
268 fn visit_tags(&self, visit: &mut dyn FnMut(BorTag)) {
269 let AllocExtra { borrow_tracker, data_race, weak_memory } = self;
271 borrow_tracker.visit_tags(visit);
272 data_race.visit_tags(visit);
273 weak_memory.visit_tags(visit);
277 /// Precomputed layouts of primitive types
278 pub struct PrimitiveLayouts<'tcx> {
279 pub unit: TyAndLayout<'tcx>,
280 pub i8: TyAndLayout<'tcx>,
281 pub i16: TyAndLayout<'tcx>,
282 pub i32: TyAndLayout<'tcx>,
283 pub i64: TyAndLayout<'tcx>,
284 pub i128: TyAndLayout<'tcx>,
285 pub isize: TyAndLayout<'tcx>,
286 pub u8: TyAndLayout<'tcx>,
287 pub u16: TyAndLayout<'tcx>,
288 pub u32: TyAndLayout<'tcx>,
289 pub u64: TyAndLayout<'tcx>,
290 pub u128: TyAndLayout<'tcx>,
291 pub usize: TyAndLayout<'tcx>,
292 pub bool: TyAndLayout<'tcx>,
293 pub mut_raw_ptr: TyAndLayout<'tcx>, // *mut ()
294 pub const_raw_ptr: TyAndLayout<'tcx>, // *const ()
297 impl<'mir, 'tcx: 'mir> PrimitiveLayouts<'tcx> {
298 fn new(layout_cx: LayoutCx<'tcx, TyCtxt<'tcx>>) -> Result<Self, LayoutError<'tcx>> {
299 let tcx = layout_cx.tcx;
300 let mut_raw_ptr = tcx.mk_ptr(TypeAndMut { ty: tcx.types.unit, mutbl: Mutability::Mut });
301 let const_raw_ptr = tcx.mk_ptr(TypeAndMut { ty: tcx.types.unit, mutbl: Mutability::Not });
303 unit: layout_cx.layout_of(tcx.mk_unit())?,
304 i8: layout_cx.layout_of(tcx.types.i8)?,
305 i16: layout_cx.layout_of(tcx.types.i16)?,
306 i32: layout_cx.layout_of(tcx.types.i32)?,
307 i64: layout_cx.layout_of(tcx.types.i64)?,
308 i128: layout_cx.layout_of(tcx.types.i128)?,
309 isize: layout_cx.layout_of(tcx.types.isize)?,
310 u8: layout_cx.layout_of(tcx.types.u8)?,
311 u16: layout_cx.layout_of(tcx.types.u16)?,
312 u32: layout_cx.layout_of(tcx.types.u32)?,
313 u64: layout_cx.layout_of(tcx.types.u64)?,
314 u128: layout_cx.layout_of(tcx.types.u128)?,
315 usize: layout_cx.layout_of(tcx.types.usize)?,
316 bool: layout_cx.layout_of(tcx.types.bool)?,
317 mut_raw_ptr: layout_cx.layout_of(mut_raw_ptr)?,
318 const_raw_ptr: layout_cx.layout_of(const_raw_ptr)?,
322 pub fn uint(&self, size: Size) -> Option<TyAndLayout<'tcx>> {
325 16 => Some(self.u16),
326 32 => Some(self.u32),
327 64 => Some(self.u64),
328 128 => Some(self.u128),
333 pub fn int(&self, size: Size) -> Option<TyAndLayout<'tcx>> {
336 16 => Some(self.i16),
337 32 => Some(self.i32),
338 64 => Some(self.i64),
339 128 => Some(self.i128),
345 /// The machine itself.
347 /// If you add anything here that stores machine values, remember to update
348 /// `visit_all_machine_values`!
349 pub struct MiriMachine<'mir, 'tcx> {
350 // We carry a copy of the global `TyCtxt` for convenience, so methods taking just `&Evaluator` have `tcx` access.
351 pub tcx: TyCtxt<'tcx>,
353 /// Global data for borrow tracking.
354 pub borrow_tracker: Option<borrow_tracker::GlobalState>,
356 /// Data race detector global data.
357 pub data_race: Option<data_race::GlobalState>,
359 /// Ptr-int-cast module global data.
360 pub intptrcast: intptrcast::GlobalState,
362 /// Environment variables set by `setenv`.
363 /// Miri does not expose env vars from the host to the emulated program.
364 pub(crate) env_vars: EnvVars<'tcx>,
366 /// Return place of the main function.
367 pub(crate) main_fn_ret_place: Option<MemPlace<Provenance>>,
369 /// Program arguments (`Option` because we can only initialize them after creating the ecx).
370 /// These are *pointers* to argc/argv because macOS.
371 /// We also need the full command line as one string because of Windows.
372 pub(crate) argc: Option<MemPlace<Provenance>>,
373 pub(crate) argv: Option<MemPlace<Provenance>>,
374 pub(crate) cmd_line: Option<MemPlace<Provenance>>,
377 pub(crate) tls: TlsData<'tcx>,
379 /// What should Miri do when an op requires communicating with the host,
380 /// such as accessing host env vars, random number generation, and
381 /// file system access.
382 pub(crate) isolated_op: IsolatedOp,
384 /// Whether to enforce the validity invariant.
385 pub(crate) validate: bool,
387 /// Whether to enforce [ABI](Abi) of function calls.
388 pub(crate) enforce_abi: bool,
390 /// The table of file descriptors.
391 pub(crate) file_handler: shims::unix::FileHandler,
392 /// The table of directory descriptors.
393 pub(crate) dir_handler: shims::unix::DirHandler,
395 /// This machine's monotone clock.
396 pub(crate) clock: Clock,
398 /// The set of threads.
399 pub(crate) threads: ThreadManager<'mir, 'tcx>,
401 /// Precomputed `TyLayout`s for primitive data types that are commonly used inside Miri.
402 pub(crate) layouts: PrimitiveLayouts<'tcx>,
404 /// Allocations that are considered roots of static memory (that may leak).
405 pub(crate) static_roots: Vec<AllocId>,
407 /// The `measureme` profiler used to record timing information about
408 /// the emulated program.
409 profiler: Option<measureme::Profiler>,
410 /// Used with `profiler` to cache the `StringId`s for event names
411 /// uesd with `measureme`.
412 string_cache: FxHashMap<String, measureme::StringId>,
414 /// Cache of `Instance` exported under the given `Symbol` name.
415 /// `None` means no `Instance` exported under the given name is found.
416 pub(crate) exported_symbols_cache: FxHashMap<Symbol, Option<Instance<'tcx>>>,
418 /// Whether to raise a panic in the context of the evaluated process when unsupported
419 /// functionality is encountered. If `false`, an error is propagated in the Miri application context
420 /// instead (default behavior)
421 pub(crate) panic_on_unsupported: bool,
423 /// Equivalent setting as RUST_BACKTRACE on encountering an error.
424 pub(crate) backtrace_style: BacktraceStyle,
426 /// Crates which are considered local for the purposes of error reporting.
427 pub(crate) local_crates: Vec<CrateNum>,
429 /// Mapping extern static names to their base pointer.
430 extern_statics: FxHashMap<Symbol, Pointer<Provenance>>,
432 /// The random number generator used for resolving non-determinism.
433 /// Needs to be queried by ptr_to_int, hence needs interior mutability.
434 pub(crate) rng: RefCell<StdRng>,
436 /// The allocation IDs to report when they are being allocated
437 /// (helps for debugging memory leaks and use after free bugs).
438 tracked_alloc_ids: FxHashSet<AllocId>,
440 /// Controls whether alignment of memory accesses is being checked.
441 pub(crate) check_alignment: AlignmentCheck,
443 /// Failure rate of compare_exchange_weak, between 0.0 and 1.0
444 pub(crate) cmpxchg_weak_failure_rate: f64,
446 /// Corresponds to -Zmiri-mute-stdout-stderr and doesn't write the output but acts as if it succeeded.
447 pub(crate) mute_stdout_stderr: bool,
449 /// Whether weak memory emulation is enabled
450 pub(crate) weak_memory: bool,
452 /// The probability of the active thread being preempted at the end of each basic block.
453 pub(crate) preemption_rate: f64,
455 /// If `Some`, we will report the current stack every N basic blocks.
456 pub(crate) report_progress: Option<u32>,
457 // The total number of blocks that have been executed.
458 pub(crate) basic_block_count: u64,
460 /// Handle of the optional shared object file for external functions.
461 #[cfg(target_os = "linux")]
462 pub external_so_lib: Option<(libloading::Library, std::path::PathBuf)>,
463 #[cfg(not(target_os = "linux"))]
464 pub external_so_lib: Option<!>,
466 /// Run a garbage collector for BorTags every N basic blocks.
467 pub(crate) gc_interval: u32,
468 /// The number of blocks that passed since the last BorTag GC pass.
469 pub(crate) since_gc: u32,
470 /// The number of CPUs to be reported by miri.
471 pub(crate) num_cpus: u32,
472 /// Determines Miri's page size and associated values
473 pub(crate) page_size: u64,
474 pub(crate) stack_addr: u64,
475 pub(crate) stack_size: u64,
478 impl<'mir, 'tcx> MiriMachine<'mir, 'tcx> {
479 pub(crate) fn new(config: &MiriConfig, layout_cx: LayoutCx<'tcx, TyCtxt<'tcx>>) -> Self {
480 let local_crates = helpers::get_local_crates(layout_cx.tcx);
482 PrimitiveLayouts::new(layout_cx).expect("Couldn't get layouts of primitive types");
483 let profiler = config.measureme_out.as_ref().map(|out| {
484 measureme::Profiler::new(out).expect("Couldn't create `measureme` profiler")
486 let rng = StdRng::seed_from_u64(config.seed.unwrap_or(0));
487 let borrow_tracker = config.borrow_tracker.map(|bt| bt.instanciate_global_state(config));
488 let data_race = config.data_race_detector.then(|| data_race::GlobalState::new(config));
489 let page_size = if let Some(page_size) = config.page_size {
492 let target = &layout_cx.tcx.sess.target;
493 match target.arch.as_ref() {
494 "wasm32" | "wasm64" => 64 * 1024, // https://webassembly.github.io/spec/core/exec/runtime.html#memory-instances
496 if target.options.vendor.as_ref() == "apple" {
497 // No "definitive" source, but see:
498 // https://www.wwdcnotes.com/notes/wwdc20/10214/
499 // https://github.com/ziglang/zig/issues/11308 etc.
507 let stack_addr = page_size * 32;
508 let stack_size = page_size * 16;
513 intptrcast: RefCell::new(intptrcast::GlobalStateInner::new(config, stack_addr)),
514 // `env_vars` depends on a full interpreter so we cannot properly initialize it yet.
515 env_vars: EnvVars::default(),
516 main_fn_ret_place: None,
520 tls: TlsData::default(),
521 isolated_op: config.isolated_op,
522 validate: config.validate,
523 enforce_abi: config.check_abi,
524 file_handler: FileHandler::new(config.mute_stdout_stderr),
525 dir_handler: Default::default(),
527 threads: ThreadManager::default(),
528 static_roots: Vec::new(),
530 string_cache: Default::default(),
531 exported_symbols_cache: FxHashMap::default(),
532 panic_on_unsupported: config.panic_on_unsupported,
533 backtrace_style: config.backtrace_style,
535 extern_statics: FxHashMap::default(),
536 rng: RefCell::new(rng),
537 tracked_alloc_ids: config.tracked_alloc_ids.clone(),
538 check_alignment: config.check_alignment,
539 cmpxchg_weak_failure_rate: config.cmpxchg_weak_failure_rate,
540 mute_stdout_stderr: config.mute_stdout_stderr,
541 weak_memory: config.weak_memory_emulation,
542 preemption_rate: config.preemption_rate,
543 report_progress: config.report_progress,
544 basic_block_count: 0,
545 clock: Clock::new(config.isolated_op == IsolatedOp::Allow),
546 #[cfg(target_os = "linux")]
547 external_so_lib: config.external_so_file.as_ref().map(|lib_file_path| {
548 let target_triple = layout_cx.tcx.sess.opts.target_triple.triple();
549 // Check if host target == the session target.
550 if env!("TARGET") != target_triple {
552 "calling external C functions in linked .so file requires host and target to be the same: host={}, target={}",
557 // Note: it is the user's responsibility to provide a correct SO file.
558 // WATCH OUT: If an invalid/incorrect SO file is specified, this can cause
559 // undefined behaviour in Miri itself!
562 libloading::Library::new(lib_file_path)
563 .expect("failed to read specified extern shared object file")
565 lib_file_path.clone(),
568 #[cfg(not(target_os = "linux"))]
569 external_so_lib: config.external_so_file.as_ref().map(|_| {
570 panic!("loading external .so files is only supported on Linux")
572 gc_interval: config.gc_interval,
574 num_cpus: config.num_cpus,
581 pub(crate) fn late_init(
582 this: &mut MiriInterpCx<'mir, 'tcx>,
584 on_main_stack_empty: StackEmptyCallback<'mir, 'tcx>,
585 ) -> InterpResult<'tcx> {
586 EnvVars::init(this, config)?;
587 MiriMachine::init_extern_statics(this)?;
588 ThreadManager::init(this, on_main_stack_empty);
592 fn add_extern_static(
593 this: &mut MiriInterpCx<'mir, 'tcx>,
595 ptr: Pointer<Option<Provenance>>,
597 // This got just allocated, so there definitely is a pointer here.
598 let ptr = ptr.into_pointer_or_addr().unwrap();
599 this.machine.extern_statics.try_insert(Symbol::intern(name), ptr).unwrap();
602 fn alloc_extern_static(
603 this: &mut MiriInterpCx<'mir, 'tcx>,
605 val: ImmTy<'tcx, Provenance>,
606 ) -> InterpResult<'tcx> {
607 let place = this.allocate(val.layout, MiriMemoryKind::ExternStatic.into())?;
608 this.write_immediate(*val, &place.into())?;
609 Self::add_extern_static(this, name, place.ptr);
613 /// Sets up the "extern statics" for this machine.
614 fn init_extern_statics(this: &mut MiriInterpCx<'mir, 'tcx>) -> InterpResult<'tcx> {
615 match this.tcx.sess.target.os.as_ref() {
618 Self::add_extern_static(
621 this.machine.env_vars.environ.unwrap().ptr,
623 // A couple zero-initialized pointer-sized extern statics.
624 // Most of them are for weak symbols, which we all set to null (indicating that the
625 // symbol is not supported, and triggering fallback code which ends up calling a
626 // syscall that we do support).
627 for name in &["__cxa_thread_atexit_impl", "getrandom", "statx", "__clock_gettime64"]
629 let val = ImmTy::from_int(0, this.machine.layouts.usize);
630 Self::alloc_extern_static(this, name, val)?;
635 Self::add_extern_static(
638 this.machine.env_vars.environ.unwrap().ptr,
643 let layout = this.machine.layouts.const_raw_ptr;
644 let dlsym = Dlsym::from_str("signal".as_bytes(), &this.tcx.sess.target.os)?
645 .expect("`signal` must be an actual dlsym on android");
646 let ptr = this.create_fn_alloc_ptr(FnVal::Other(dlsym));
647 let val = ImmTy::from_scalar(Scalar::from_pointer(ptr, this), layout);
648 Self::alloc_extern_static(this, "signal", val)?;
649 // A couple zero-initialized pointer-sized extern statics.
650 // Most of them are for weak symbols, which we all set to null (indicating that the
651 // symbol is not supported, and triggering fallback code.)
652 for name in &["bsd_signal"] {
653 let val = ImmTy::from_int(0, this.machine.layouts.usize);
654 Self::alloc_extern_static(this, name, val)?;
659 // This is some obscure hack that is part of the Windows TLS story. It's a `u8`.
660 let val = ImmTy::from_int(0, this.machine.layouts.u8);
661 Self::alloc_extern_static(this, "_tls_used", val)?;
663 _ => {} // No "extern statics" supported on this target
668 pub(crate) fn communicate(&self) -> bool {
669 self.isolated_op == IsolatedOp::Allow
672 /// Check whether the stack frame that this `FrameInfo` refers to is part of a local crate.
673 pub(crate) fn is_local(&self, frame: &FrameInfo<'_>) -> bool {
674 let def_id = frame.instance.def_id();
675 def_id.is_local() || self.local_crates.contains(&def_id.krate)
679 impl VisitTags for MiriMachine<'_, '_> {
680 fn visit_tags(&self, visit: &mut dyn FnMut(BorTag)) {
705 exported_symbols_cache: _,
706 panic_on_unsupported: _,
710 tracked_alloc_ids: _,
712 cmpxchg_weak_failure_rate: _,
713 mute_stdout_stderr: _,
717 basic_block_count: _,
727 threads.visit_tags(visit);
728 tls.visit_tags(visit);
729 env_vars.visit_tags(visit);
730 dir_handler.visit_tags(visit);
731 file_handler.visit_tags(visit);
732 data_race.visit_tags(visit);
733 borrow_tracker.visit_tags(visit);
734 intptrcast.visit_tags(visit);
735 main_fn_ret_place.visit_tags(visit);
736 argc.visit_tags(visit);
737 argv.visit_tags(visit);
738 cmd_line.visit_tags(visit);
739 for ptr in extern_statics.values() {
740 ptr.visit_tags(visit);
745 /// A rustc InterpCx for Miri.
746 pub type MiriInterpCx<'mir, 'tcx> = InterpCx<'mir, 'tcx, MiriMachine<'mir, 'tcx>>;
748 /// A little trait that's useful to be inherited by extension traits.
749 pub trait MiriInterpCxExt<'mir, 'tcx> {
750 fn eval_context_ref<'a>(&'a self) -> &'a MiriInterpCx<'mir, 'tcx>;
751 fn eval_context_mut<'a>(&'a mut self) -> &'a mut MiriInterpCx<'mir, 'tcx>;
753 impl<'mir, 'tcx> MiriInterpCxExt<'mir, 'tcx> for MiriInterpCx<'mir, 'tcx> {
755 fn eval_context_ref(&self) -> &MiriInterpCx<'mir, 'tcx> {
759 fn eval_context_mut(&mut self) -> &mut MiriInterpCx<'mir, 'tcx> {
764 /// Machine hook implementations.
765 impl<'mir, 'tcx> Machine<'mir, 'tcx> for MiriMachine<'mir, 'tcx> {
766 type MemoryKind = MiriMemoryKind;
767 type ExtraFnVal = Dlsym;
769 type FrameExtra = FrameExtra<'tcx>;
770 type AllocExtra = AllocExtra;
772 type Provenance = Provenance;
773 type ProvenanceExtra = ProvenanceExtra;
775 type MemoryMap = MonoHashMap<
777 (MemoryKind<MiriMemoryKind>, Allocation<Provenance, Self::AllocExtra>),
780 const GLOBAL_KIND: Option<MiriMemoryKind> = Some(MiriMemoryKind::Global);
782 const PANIC_ON_ALLOC_FAIL: bool = false;
785 fn enforce_alignment(ecx: &MiriInterpCx<'mir, 'tcx>) -> CheckAlignment {
786 if ecx.machine.check_alignment == AlignmentCheck::None {
789 CheckAlignment::Error
794 fn use_addr_for_alignment_check(ecx: &MiriInterpCx<'mir, 'tcx>) -> bool {
795 ecx.machine.check_alignment == AlignmentCheck::Int
798 fn alignment_check_failed(
799 _ecx: &InterpCx<'mir, 'tcx, Self>,
802 _check: CheckAlignment,
803 ) -> InterpResult<'tcx, ()> {
804 throw_ub!(AlignmentCheckFailed { has, required })
808 fn enforce_validity(ecx: &MiriInterpCx<'mir, 'tcx>) -> bool {
813 fn enforce_abi(ecx: &MiriInterpCx<'mir, 'tcx>) -> bool {
814 ecx.machine.enforce_abi
818 fn checked_binop_checks_overflow(ecx: &MiriInterpCx<'mir, 'tcx>) -> bool {
819 ecx.tcx.sess.overflow_checks()
823 fn find_mir_or_eval_fn(
824 ecx: &mut MiriInterpCx<'mir, 'tcx>,
825 instance: ty::Instance<'tcx>,
827 args: &[OpTy<'tcx, Provenance>],
828 dest: &PlaceTy<'tcx, Provenance>,
829 ret: Option<mir::BasicBlock>,
830 unwind: StackPopUnwind,
831 ) -> InterpResult<'tcx, Option<(&'mir mir::Body<'tcx>, ty::Instance<'tcx>)>> {
832 ecx.find_mir_or_eval_fn(instance, abi, args, dest, ret, unwind)
837 ecx: &mut MiriInterpCx<'mir, 'tcx>,
840 args: &[OpTy<'tcx, Provenance>],
841 dest: &PlaceTy<'tcx, Provenance>,
842 ret: Option<mir::BasicBlock>,
843 _unwind: StackPopUnwind,
844 ) -> InterpResult<'tcx> {
845 ecx.call_dlsym(fn_val, abi, args, dest, ret)
850 ecx: &mut MiriInterpCx<'mir, 'tcx>,
851 instance: ty::Instance<'tcx>,
852 args: &[OpTy<'tcx, Provenance>],
853 dest: &PlaceTy<'tcx, Provenance>,
854 ret: Option<mir::BasicBlock>,
855 unwind: StackPopUnwind,
856 ) -> InterpResult<'tcx> {
857 ecx.call_intrinsic(instance, args, dest, ret, unwind)
862 ecx: &mut MiriInterpCx<'mir, 'tcx>,
863 msg: &mir::AssertMessage<'tcx>,
864 unwind: Option<mir::BasicBlock>,
865 ) -> InterpResult<'tcx> {
866 ecx.assert_panic(msg, unwind)
870 fn abort(_ecx: &mut MiriInterpCx<'mir, 'tcx>, msg: String) -> InterpResult<'tcx, !> {
871 throw_machine_stop!(TerminationInfo::Abort(msg))
876 ecx: &MiriInterpCx<'mir, 'tcx>,
878 left: &ImmTy<'tcx, Provenance>,
879 right: &ImmTy<'tcx, Provenance>,
880 ) -> InterpResult<'tcx, (Scalar<Provenance>, bool, Ty<'tcx>)> {
881 ecx.binary_ptr_op(bin_op, left, right)
884 fn thread_local_static_base_pointer(
885 ecx: &mut MiriInterpCx<'mir, 'tcx>,
887 ) -> InterpResult<'tcx, Pointer<Provenance>> {
888 ecx.get_or_create_thread_local_alloc(def_id)
891 fn extern_static_base_pointer(
892 ecx: &MiriInterpCx<'mir, 'tcx>,
894 ) -> InterpResult<'tcx, Pointer<Provenance>> {
895 let link_name = ecx.item_link_name(def_id);
896 if let Some(&ptr) = ecx.machine.extern_statics.get(&link_name) {
897 // Various parts of the engine rely on `get_alloc_info` for size and alignment
898 // information. That uses the type information of this static.
899 // Make sure it matches the Miri allocation for this.
900 let Provenance::Concrete { alloc_id, .. } = ptr.provenance else {
901 panic!("extern_statics cannot contain wildcards")
903 let (shim_size, shim_align, _kind) = ecx.get_alloc_info(alloc_id);
904 let extern_decl_layout =
905 ecx.tcx.layout_of(ty::ParamEnv::empty().and(ecx.tcx.type_of(def_id))).unwrap();
906 if extern_decl_layout.size != shim_size || extern_decl_layout.align.abi != shim_align {
908 "`extern` static `{name}` from crate `{krate}` has been declared \
909 with a size of {decl_size} bytes and alignment of {decl_align} bytes, \
910 but Miri emulates it via an extern static shim \
911 with a size of {shim_size} bytes and alignment of {shim_align} bytes",
912 name = ecx.tcx.def_path_str(def_id),
913 krate = ecx.tcx.crate_name(def_id.krate),
914 decl_size = extern_decl_layout.size.bytes(),
915 decl_align = extern_decl_layout.align.abi.bytes(),
916 shim_size = shim_size.bytes(),
917 shim_align = shim_align.bytes(),
923 "`extern` static `{name}` from crate `{krate}` is not supported by Miri",
924 name = ecx.tcx.def_path_str(def_id),
925 krate = ecx.tcx.crate_name(def_id.krate),
930 fn adjust_allocation<'b>(
931 ecx: &MiriInterpCx<'mir, 'tcx>,
933 alloc: Cow<'b, Allocation>,
934 kind: Option<MemoryKind<Self::MemoryKind>>,
935 ) -> InterpResult<'tcx, Cow<'b, Allocation<Self::Provenance, Self::AllocExtra>>> {
936 let kind = kind.expect("we set our STATIC_KIND so this cannot be None");
937 if ecx.machine.tracked_alloc_ids.contains(&id) {
938 ecx.emit_diagnostic(NonHaltingDiagnostic::CreatedAlloc(
946 let alloc = alloc.into_owned();
947 let borrow_tracker = ecx
951 .map(|bt| bt.borrow_mut().new_allocation(id, alloc.size(), kind, &ecx.machine));
953 let race_alloc = ecx.machine.data_race.as_ref().map(|data_race| {
954 data_race::AllocState::new_allocation(
956 &ecx.machine.threads,
961 let buffer_alloc = ecx.machine.weak_memory.then(weak_memory::AllocState::new_allocation);
962 let alloc: Allocation<Provenance, Self::AllocExtra> = alloc.adjust_from_tcx(
964 AllocExtra { borrow_tracker, data_race: race_alloc, weak_memory: buffer_alloc },
965 |ptr| ecx.global_base_pointer(ptr),
967 Ok(Cow::Owned(alloc))
970 fn adjust_alloc_base_pointer(
971 ecx: &MiriInterpCx<'mir, 'tcx>,
972 ptr: Pointer<AllocId>,
973 ) -> Pointer<Provenance> {
974 if cfg!(debug_assertions) {
975 // The machine promises to never call us on thread-local or extern statics.
976 let alloc_id = ptr.provenance;
977 match ecx.tcx.try_get_global_alloc(alloc_id) {
978 Some(GlobalAlloc::Static(def_id)) if ecx.tcx.is_thread_local_static(def_id) => {
979 panic!("adjust_alloc_base_pointer called on thread-local static")
981 Some(GlobalAlloc::Static(def_id)) if ecx.tcx.is_foreign_item(def_id) => {
982 panic!("adjust_alloc_base_pointer called on extern static")
987 let absolute_addr = intptrcast::GlobalStateInner::rel_ptr_to_addr(ecx, ptr);
988 let tag = if let Some(borrow_tracker) = &ecx.machine.borrow_tracker {
989 borrow_tracker.borrow_mut().base_ptr_tag(ptr.provenance, &ecx.machine)
991 // Value does not matter, SB is disabled
995 Provenance::Concrete { alloc_id: ptr.provenance, tag },
996 Size::from_bytes(absolute_addr),
1001 fn ptr_from_addr_cast(
1002 ecx: &MiriInterpCx<'mir, 'tcx>,
1004 ) -> InterpResult<'tcx, Pointer<Option<Self::Provenance>>> {
1005 intptrcast::GlobalStateInner::ptr_from_addr_cast(ecx, addr)
1009 ecx: &mut InterpCx<'mir, 'tcx, Self>,
1010 ptr: Pointer<Self::Provenance>,
1011 ) -> InterpResult<'tcx> {
1012 match ptr.provenance {
1013 Provenance::Concrete { alloc_id, tag } =>
1014 intptrcast::GlobalStateInner::expose_ptr(ecx, alloc_id, tag),
1015 Provenance::Wildcard => {
1016 // No need to do anything for wildcard pointers as
1017 // their provenances have already been previously exposed.
1023 /// Convert a pointer with provenance into an allocation-offset pair,
1024 /// or a `None` with an absolute address if that conversion is not possible.
1026 ecx: &MiriInterpCx<'mir, 'tcx>,
1027 ptr: Pointer<Self::Provenance>,
1028 ) -> Option<(AllocId, Size, Self::ProvenanceExtra)> {
1029 let rel = intptrcast::GlobalStateInner::abs_ptr_to_rel(ecx, ptr);
1031 rel.map(|(alloc_id, size)| {
1032 let tag = match ptr.provenance {
1033 Provenance::Concrete { tag, .. } => ProvenanceExtra::Concrete(tag),
1034 Provenance::Wildcard => ProvenanceExtra::Wildcard,
1036 (alloc_id, size, tag)
1041 fn before_memory_read(
1044 alloc_extra: &AllocExtra,
1045 (alloc_id, prov_extra): (AllocId, Self::ProvenanceExtra),
1047 ) -> InterpResult<'tcx> {
1048 if let Some(data_race) = &alloc_extra.data_race {
1049 data_race.read(alloc_id, range, machine)?;
1051 if let Some(borrow_tracker) = &alloc_extra.borrow_tracker {
1052 borrow_tracker.before_memory_read(alloc_id, prov_extra, range, machine)?;
1054 if let Some(weak_memory) = &alloc_extra.weak_memory {
1055 weak_memory.memory_accessed(range, machine.data_race.as_ref().unwrap());
1061 fn before_memory_write(
1064 alloc_extra: &mut AllocExtra,
1065 (alloc_id, prov_extra): (AllocId, Self::ProvenanceExtra),
1067 ) -> InterpResult<'tcx> {
1068 if let Some(data_race) = &mut alloc_extra.data_race {
1069 data_race.write(alloc_id, range, machine)?;
1071 if let Some(borrow_tracker) = &mut alloc_extra.borrow_tracker {
1072 borrow_tracker.before_memory_write(alloc_id, prov_extra, range, machine)?;
1074 if let Some(weak_memory) = &alloc_extra.weak_memory {
1075 weak_memory.memory_accessed(range, machine.data_race.as_ref().unwrap());
1081 fn before_memory_deallocation(
1084 alloc_extra: &mut AllocExtra,
1085 (alloc_id, prove_extra): (AllocId, Self::ProvenanceExtra),
1087 ) -> InterpResult<'tcx> {
1088 if machine.tracked_alloc_ids.contains(&alloc_id) {
1089 machine.emit_diagnostic(NonHaltingDiagnostic::FreedAlloc(alloc_id));
1091 if let Some(data_race) = &mut alloc_extra.data_race {
1092 data_race.deallocate(alloc_id, range, machine)?;
1094 if let Some(borrow_tracker) = &mut alloc_extra.borrow_tracker {
1095 borrow_tracker.before_memory_deallocation(alloc_id, prove_extra, range, machine)?;
1102 ecx: &mut InterpCx<'mir, 'tcx, Self>,
1103 kind: mir::RetagKind,
1104 val: &ImmTy<'tcx, Provenance>,
1105 ) -> InterpResult<'tcx, ImmTy<'tcx, Provenance>> {
1106 if ecx.machine.borrow_tracker.is_some() {
1107 ecx.retag_ptr_value(kind, val)
1114 fn retag_place_contents(
1115 ecx: &mut InterpCx<'mir, 'tcx, Self>,
1116 kind: mir::RetagKind,
1117 place: &PlaceTy<'tcx, Provenance>,
1118 ) -> InterpResult<'tcx> {
1119 if ecx.machine.borrow_tracker.is_some() {
1120 ecx.retag_place_contents(kind, place)?;
1126 fn init_frame_extra(
1127 ecx: &mut InterpCx<'mir, 'tcx, Self>,
1128 frame: Frame<'mir, 'tcx, Provenance>,
1129 ) -> InterpResult<'tcx, Frame<'mir, 'tcx, Provenance, FrameExtra<'tcx>>> {
1130 // Start recording our event before doing anything else
1131 let timing = if let Some(profiler) = ecx.machine.profiler.as_ref() {
1132 let fn_name = frame.instance.to_string();
1133 let entry = ecx.machine.string_cache.entry(fn_name.clone());
1134 let name = entry.or_insert_with(|| profiler.alloc_string(&*fn_name));
1136 Some(profiler.start_recording_interval_event_detached(
1138 measureme::EventId::from_label(*name),
1139 ecx.get_active_thread().to_u32(),
1145 let borrow_tracker = ecx.machine.borrow_tracker.as_ref();
1147 let extra = FrameExtra {
1148 borrow_tracker: borrow_tracker.map(|bt| bt.borrow_mut().new_frame(&ecx.machine)),
1151 is_user_relevant: ecx.machine.is_user_relevant(&frame),
1154 Ok(frame.with_extra(extra))
1158 ecx: &'a InterpCx<'mir, 'tcx, Self>,
1159 ) -> &'a [Frame<'mir, 'tcx, Self::Provenance, Self::FrameExtra>] {
1160 ecx.active_thread_stack()
1164 ecx: &'a mut InterpCx<'mir, 'tcx, Self>,
1165 ) -> &'a mut Vec<Frame<'mir, 'tcx, Self::Provenance, Self::FrameExtra>> {
1166 ecx.active_thread_stack_mut()
1169 fn before_terminator(ecx: &mut InterpCx<'mir, 'tcx, Self>) -> InterpResult<'tcx> {
1170 ecx.machine.basic_block_count += 1u64; // a u64 that is only incremented by 1 will "never" overflow
1171 ecx.machine.since_gc += 1;
1172 // Possibly report our progress.
1173 if let Some(report_progress) = ecx.machine.report_progress {
1174 if ecx.machine.basic_block_count % u64::from(report_progress) == 0 {
1175 ecx.emit_diagnostic(NonHaltingDiagnostic::ProgressReport {
1176 block_count: ecx.machine.basic_block_count,
1181 // Search for BorTags to find all live pointers, then remove all other tags from borrow
1183 // When debug assertions are enabled, run the GC as often as possible so that any cases
1184 // where it mistakenly removes an important tag become visible.
1185 if ecx.machine.gc_interval > 0 && ecx.machine.since_gc >= ecx.machine.gc_interval {
1186 ecx.machine.since_gc = 0;
1187 ecx.garbage_collect_tags()?;
1190 // These are our preemption points.
1191 ecx.maybe_preempt_active_thread();
1193 // Make sure some time passes.
1194 ecx.machine.clock.tick();
1200 fn after_stack_push(ecx: &mut InterpCx<'mir, 'tcx, Self>) -> InterpResult<'tcx> {
1201 if ecx.frame().extra.is_user_relevant {
1202 // We just pushed a local frame, so we know that the topmost local frame is the topmost
1203 // frame. If we push a non-local frame, there's no need to do anything.
1204 let stack_len = ecx.active_thread_stack().len();
1205 ecx.active_thread_mut().set_top_user_relevant_frame(stack_len - 1);
1207 if ecx.machine.borrow_tracker.is_some() {
1208 ecx.retag_return_place()?;
1215 ecx: &mut InterpCx<'mir, 'tcx, Self>,
1216 mut frame: Frame<'mir, 'tcx, Provenance, FrameExtra<'tcx>>,
1218 ) -> InterpResult<'tcx, StackPopJump> {
1219 if frame.extra.is_user_relevant {
1220 // All that we store is whether or not the frame we just removed is local, so now we
1221 // have no idea where the next topmost local frame is. So we recompute it.
1222 // (If this ever becomes a bottleneck, we could have `push` store the previous
1223 // user-relevant frame and restore that here.)
1224 ecx.active_thread_mut().recompute_top_user_relevant_frame();
1226 let timing = frame.extra.timing.take();
1227 if let Some(borrow_tracker) = &ecx.machine.borrow_tracker {
1228 borrow_tracker.borrow_mut().end_call(&frame.extra);
1230 let res = ecx.handle_stack_pop_unwind(frame.extra, unwinding);
1231 if let Some(profiler) = ecx.machine.profiler.as_ref() {
1232 profiler.finish_recording_interval_event(timing.unwrap());