2016-04-12 09:05:05 +00:00
|
|
|
// Copyright 2016 the V8 project authors. All rights reserved. Use of this
|
|
|
|
// source code is governed by a BSD-style license that can be found in the
|
|
|
|
// LICENSE file.
|
|
|
|
|
|
|
|
#include <cmath>
|
|
|
|
#include <functional>
|
|
|
|
#include <limits>
|
|
|
|
|
|
|
|
#include "src/base/bits.h"
|
|
|
|
#include "src/base/utils/random-number-generator.h"
|
|
|
|
#include "src/codegen.h"
|
2017-02-23 11:46:29 +00:00
|
|
|
#include "src/objects-inl.h"
|
[wasm] Introduce the WasmContext
The WasmContext struct introduced in this CL is used to store the
mem_size and mem_start address of the wasm memory. These variables can
be accessed at C++ level at graph build time (e.g., initialized during
instance building). When the GrowMemory runtime is invoked, the context
variables can be changed in the WasmContext at C++ level so that the
generated code will load the correct values.
This requires to insert a relocatable pointer only in the
JSToWasmWrapper (and in the other wasm entry points), the value is then
passed from function to function as an automatically added additional
parameter. The WasmContext is then dropped when creating an Interpreter
Entry or when invoking a JavaScript function. This removes the need of
patching the generated code at runtime (i.e., when the memory grows)
with respect to WASM_MEMORY_REFERENCE and WASM_MEMORY_SIZE_REFERENCE.
However, we still need to patch the code at instance build time to patch
the JSToWasmWrappers; in fact the address of the WasmContext is not
known during compilation, but only when the instance is built.
The WasmContext address is passed as the first parameter. This has the
advantage of not having to move the WasmContext around if the function
does not use many registers. This CL also changes the wasm calling
convention so that the first parameter register is different from the
return value register. The WasmContext is attached to every
WasmMemoryObject, to share the same context with multiple instances
sharing the same memory. Moreover, the nodes representing the
WasmContext variables are cached in the SSA environment, similarly to
other local variables that might change during execution. The nodes are
created when initializing the SSA environment and refreshed every time a
grow_memory or a function call happens, so that we are sure that they
always represent the correct mem_size and mem_start variables.
This CL also removes the WasmMemorySize runtime (since it's now possible
to directly retrieve mem_size from the context) and simplifies the
GrowMemory runtime (since every instance now has a memory_object).
R=ahaas@chromium.org,clemensh@chromium.org
CC=gdeepti@chromium.org
Change-Id: I3f058e641284f5a1bbbfc35a64c88da6ff08e240
Reviewed-on: https://chromium-review.googlesource.com/671008
Commit-Queue: Enrico Bacis <enricobacis@google.com>
Reviewed-by: Clemens Hammacher <clemensh@chromium.org>
Reviewed-by: Andreas Haas <ahaas@chromium.org>
Cr-Commit-Position: refs/heads/master@{#48209}
2017-09-28 14:59:37 +00:00
|
|
|
#include "src/wasm/wasm-objects.h"
|
2016-04-12 09:05:05 +00:00
|
|
|
#include "test/cctest/cctest.h"
|
|
|
|
#include "test/cctest/compiler/codegen-tester.h"
|
|
|
|
#include "test/cctest/compiler/graph-builder-tester.h"
|
|
|
|
#include "test/cctest/compiler/value-helper.h"
|
|
|
|
|
2017-08-11 11:22:28 +00:00
|
|
|
namespace v8 {
|
|
|
|
namespace internal {
|
|
|
|
namespace compiler {
|
2016-04-12 09:05:05 +00:00
|
|
|
|
2017-01-10 19:07:34 +00:00
|
|
|
static void UpdateFunctionTableSizeReferences(Handle<Code> code,
|
|
|
|
uint32_t old_size,
|
|
|
|
uint32_t new_size) {
|
|
|
|
Isolate* isolate = CcTest::i_isolate();
|
2017-11-07 10:29:52 +00:00
|
|
|
// TODO(6792): No longer needed once WebAssembly code is off heap.
|
|
|
|
CodeSpaceMemoryModificationScope modification_scope(isolate->heap());
|
2017-01-10 19:07:34 +00:00
|
|
|
bool modified = false;
|
|
|
|
int mode_mask =
|
|
|
|
RelocInfo::ModeMask(RelocInfo::WASM_FUNCTION_TABLE_SIZE_REFERENCE);
|
|
|
|
for (RelocIterator it(*code, mode_mask); !it.done(); it.next()) {
|
|
|
|
RelocInfo::Mode mode = it.rinfo()->rmode();
|
|
|
|
if (RelocInfo::IsWasmFunctionTableSizeReference(mode)) {
|
2017-03-17 11:18:06 +00:00
|
|
|
it.rinfo()->update_wasm_function_table_size_reference(isolate, old_size,
|
|
|
|
new_size);
|
2017-01-10 19:07:34 +00:00
|
|
|
modified = true;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
if (modified) {
|
|
|
|
Assembler::FlushICache(isolate, code->instruction_start(),
|
|
|
|
code->instruction_size());
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2016-04-12 09:05:05 +00:00
|
|
|
template <typename CType>
|
|
|
|
static void RunLoadStoreRelocation(MachineType rep) {
|
|
|
|
const int kNumElems = 2;
|
|
|
|
CType buffer[kNumElems];
|
|
|
|
CType new_buffer[kNumElems];
|
|
|
|
byte* raw = reinterpret_cast<byte*>(buffer);
|
|
|
|
byte* new_raw = reinterpret_cast<byte*>(new_buffer);
|
2017-12-15 19:47:29 +00:00
|
|
|
WasmContext wasm_context;
|
|
|
|
wasm_context.SetRawMemory(raw, sizeof(buffer));
|
2016-04-12 09:05:05 +00:00
|
|
|
for (size_t i = 0; i < sizeof(buffer); i++) {
|
|
|
|
raw[i] = static_cast<byte>((i + sizeof(CType)) ^ 0xAA);
|
|
|
|
new_raw[i] = static_cast<byte>((i + sizeof(CType)) ^ 0xAA);
|
|
|
|
}
|
2016-11-11 12:00:34 +00:00
|
|
|
uint32_t OK = 0x29000;
|
2016-04-12 09:05:05 +00:00
|
|
|
RawMachineAssemblerTester<uint32_t> m;
|
[wasm] Introduce the WasmContext
The WasmContext struct introduced in this CL is used to store the
mem_size and mem_start address of the wasm memory. These variables can
be accessed at C++ level at graph build time (e.g., initialized during
instance building). When the GrowMemory runtime is invoked, the context
variables can be changed in the WasmContext at C++ level so that the
generated code will load the correct values.
This requires to insert a relocatable pointer only in the
JSToWasmWrapper (and in the other wasm entry points), the value is then
passed from function to function as an automatically added additional
parameter. The WasmContext is then dropped when creating an Interpreter
Entry or when invoking a JavaScript function. This removes the need of
patching the generated code at runtime (i.e., when the memory grows)
with respect to WASM_MEMORY_REFERENCE and WASM_MEMORY_SIZE_REFERENCE.
However, we still need to patch the code at instance build time to patch
the JSToWasmWrappers; in fact the address of the WasmContext is not
known during compilation, but only when the instance is built.
The WasmContext address is passed as the first parameter. This has the
advantage of not having to move the WasmContext around if the function
does not use many registers. This CL also changes the wasm calling
convention so that the first parameter register is different from the
return value register. The WasmContext is attached to every
WasmMemoryObject, to share the same context with multiple instances
sharing the same memory. Moreover, the nodes representing the
WasmContext variables are cached in the SSA environment, similarly to
other local variables that might change during execution. The nodes are
created when initializing the SSA environment and refreshed every time a
grow_memory or a function call happens, so that we are sure that they
always represent the correct mem_size and mem_start variables.
This CL also removes the WasmMemorySize runtime (since it's now possible
to directly retrieve mem_size from the context) and simplifies the
GrowMemory runtime (since every instance now has a memory_object).
R=ahaas@chromium.org,clemensh@chromium.org
CC=gdeepti@chromium.org
Change-Id: I3f058e641284f5a1bbbfc35a64c88da6ff08e240
Reviewed-on: https://chromium-review.googlesource.com/671008
Commit-Queue: Enrico Bacis <enricobacis@google.com>
Reviewed-by: Clemens Hammacher <clemensh@chromium.org>
Reviewed-by: Andreas Haas <ahaas@chromium.org>
Cr-Commit-Position: refs/heads/master@{#48209}
2017-09-28 14:59:37 +00:00
|
|
|
Node* wasm_context_node =
|
|
|
|
m.RelocatableIntPtrConstant(reinterpret_cast<uintptr_t>(&wasm_context),
|
|
|
|
RelocInfo::WASM_CONTEXT_REFERENCE);
|
|
|
|
Node* offset = m.Int32Constant(offsetof(WasmContext, mem_start));
|
|
|
|
Node* base = m.Load(MachineType::UintPtr(), wasm_context_node, offset);
|
|
|
|
Node* base1 = m.IntPtrAdd(base, m.Int32Constant(sizeof(CType)));
|
2016-04-12 09:05:05 +00:00
|
|
|
Node* index = m.Int32Constant(0);
|
|
|
|
Node* load = m.Load(rep, base, index);
|
|
|
|
m.Store(rep.representation(), base1, index, load, kNoWriteBarrier);
|
|
|
|
m.Return(m.Int32Constant(OK));
|
|
|
|
CHECK(buffer[0] != buffer[1]);
|
|
|
|
CHECK_EQ(OK, m.Call());
|
|
|
|
CHECK(buffer[0] == buffer[1]);
|
2017-12-15 19:47:29 +00:00
|
|
|
wasm_context.SetRawMemory(new_raw, sizeof(new_buffer));
|
2016-04-12 09:05:05 +00:00
|
|
|
CHECK(new_buffer[0] != new_buffer[1]);
|
|
|
|
CHECK_EQ(OK, m.Call());
|
|
|
|
CHECK(new_buffer[0] == new_buffer[1]);
|
|
|
|
}
|
|
|
|
|
|
|
|
TEST(RunLoadStoreRelocation) {
|
|
|
|
RunLoadStoreRelocation<int8_t>(MachineType::Int8());
|
|
|
|
RunLoadStoreRelocation<uint8_t>(MachineType::Uint8());
|
|
|
|
RunLoadStoreRelocation<int16_t>(MachineType::Int16());
|
|
|
|
RunLoadStoreRelocation<uint16_t>(MachineType::Uint16());
|
|
|
|
RunLoadStoreRelocation<int32_t>(MachineType::Int32());
|
|
|
|
RunLoadStoreRelocation<uint32_t>(MachineType::Uint32());
|
|
|
|
RunLoadStoreRelocation<void*>(MachineType::AnyTagged());
|
|
|
|
RunLoadStoreRelocation<float>(MachineType::Float32());
|
|
|
|
RunLoadStoreRelocation<double>(MachineType::Float64());
|
|
|
|
}
|
|
|
|
|
|
|
|
template <typename CType>
|
|
|
|
static void RunLoadStoreRelocationOffset(MachineType rep) {
|
|
|
|
RawMachineAssemblerTester<int32_t> r(MachineType::Int32());
|
|
|
|
const int kNumElems = 4;
|
|
|
|
CType buffer[kNumElems];
|
|
|
|
CType new_buffer[kNumElems + 1];
|
[wasm] Introduce the WasmContext
The WasmContext struct introduced in this CL is used to store the
mem_size and mem_start address of the wasm memory. These variables can
be accessed at C++ level at graph build time (e.g., initialized during
instance building). When the GrowMemory runtime is invoked, the context
variables can be changed in the WasmContext at C++ level so that the
generated code will load the correct values.
This requires to insert a relocatable pointer only in the
JSToWasmWrapper (and in the other wasm entry points), the value is then
passed from function to function as an automatically added additional
parameter. The WasmContext is then dropped when creating an Interpreter
Entry or when invoking a JavaScript function. This removes the need of
patching the generated code at runtime (i.e., when the memory grows)
with respect to WASM_MEMORY_REFERENCE and WASM_MEMORY_SIZE_REFERENCE.
However, we still need to patch the code at instance build time to patch
the JSToWasmWrappers; in fact the address of the WasmContext is not
known during compilation, but only when the instance is built.
The WasmContext address is passed as the first parameter. This has the
advantage of not having to move the WasmContext around if the function
does not use many registers. This CL also changes the wasm calling
convention so that the first parameter register is different from the
return value register. The WasmContext is attached to every
WasmMemoryObject, to share the same context with multiple instances
sharing the same memory. Moreover, the nodes representing the
WasmContext variables are cached in the SSA environment, similarly to
other local variables that might change during execution. The nodes are
created when initializing the SSA environment and refreshed every time a
grow_memory or a function call happens, so that we are sure that they
always represent the correct mem_size and mem_start variables.
This CL also removes the WasmMemorySize runtime (since it's now possible
to directly retrieve mem_size from the context) and simplifies the
GrowMemory runtime (since every instance now has a memory_object).
R=ahaas@chromium.org,clemensh@chromium.org
CC=gdeepti@chromium.org
Change-Id: I3f058e641284f5a1bbbfc35a64c88da6ff08e240
Reviewed-on: https://chromium-review.googlesource.com/671008
Commit-Queue: Enrico Bacis <enricobacis@google.com>
Reviewed-by: Clemens Hammacher <clemensh@chromium.org>
Reviewed-by: Andreas Haas <ahaas@chromium.org>
Cr-Commit-Position: refs/heads/master@{#48209}
2017-09-28 14:59:37 +00:00
|
|
|
WasmContext wasm_context;
|
2016-04-12 09:05:05 +00:00
|
|
|
|
|
|
|
for (int32_t x = 0; x < kNumElems; x++) {
|
|
|
|
int32_t y = kNumElems - x - 1;
|
|
|
|
// initialize the buffer with raw data.
|
|
|
|
byte* raw = reinterpret_cast<byte*>(buffer);
|
2017-12-15 19:47:29 +00:00
|
|
|
wasm_context.SetRawMemory(raw, sizeof(buffer));
|
2016-04-12 09:05:05 +00:00
|
|
|
for (size_t i = 0; i < sizeof(buffer); i++) {
|
|
|
|
raw[i] = static_cast<byte>((i + sizeof(buffer)) ^ 0xAA);
|
|
|
|
}
|
|
|
|
|
|
|
|
RawMachineAssemblerTester<int32_t> m;
|
|
|
|
int32_t OK = 0x29000 + x;
|
[wasm] Introduce the WasmContext
The WasmContext struct introduced in this CL is used to store the
mem_size and mem_start address of the wasm memory. These variables can
be accessed at C++ level at graph build time (e.g., initialized during
instance building). When the GrowMemory runtime is invoked, the context
variables can be changed in the WasmContext at C++ level so that the
generated code will load the correct values.
This requires to insert a relocatable pointer only in the
JSToWasmWrapper (and in the other wasm entry points), the value is then
passed from function to function as an automatically added additional
parameter. The WasmContext is then dropped when creating an Interpreter
Entry or when invoking a JavaScript function. This removes the need of
patching the generated code at runtime (i.e., when the memory grows)
with respect to WASM_MEMORY_REFERENCE and WASM_MEMORY_SIZE_REFERENCE.
However, we still need to patch the code at instance build time to patch
the JSToWasmWrappers; in fact the address of the WasmContext is not
known during compilation, but only when the instance is built.
The WasmContext address is passed as the first parameter. This has the
advantage of not having to move the WasmContext around if the function
does not use many registers. This CL also changes the wasm calling
convention so that the first parameter register is different from the
return value register. The WasmContext is attached to every
WasmMemoryObject, to share the same context with multiple instances
sharing the same memory. Moreover, the nodes representing the
WasmContext variables are cached in the SSA environment, similarly to
other local variables that might change during execution. The nodes are
created when initializing the SSA environment and refreshed every time a
grow_memory or a function call happens, so that we are sure that they
always represent the correct mem_size and mem_start variables.
This CL also removes the WasmMemorySize runtime (since it's now possible
to directly retrieve mem_size from the context) and simplifies the
GrowMemory runtime (since every instance now has a memory_object).
R=ahaas@chromium.org,clemensh@chromium.org
CC=gdeepti@chromium.org
Change-Id: I3f058e641284f5a1bbbfc35a64c88da6ff08e240
Reviewed-on: https://chromium-review.googlesource.com/671008
Commit-Queue: Enrico Bacis <enricobacis@google.com>
Reviewed-by: Clemens Hammacher <clemensh@chromium.org>
Reviewed-by: Andreas Haas <ahaas@chromium.org>
Cr-Commit-Position: refs/heads/master@{#48209}
2017-09-28 14:59:37 +00:00
|
|
|
Node* wasm_context_node =
|
|
|
|
m.RelocatableIntPtrConstant(reinterpret_cast<uintptr_t>(&wasm_context),
|
|
|
|
RelocInfo::WASM_CONTEXT_REFERENCE);
|
|
|
|
Node* offset = m.Int32Constant(offsetof(WasmContext, mem_start));
|
|
|
|
Node* base = m.Load(MachineType::UintPtr(), wasm_context_node, offset);
|
2016-04-12 09:05:05 +00:00
|
|
|
Node* index0 = m.IntPtrConstant(x * sizeof(buffer[0]));
|
|
|
|
Node* load = m.Load(rep, base, index0);
|
|
|
|
Node* index1 = m.IntPtrConstant(y * sizeof(buffer[0]));
|
|
|
|
m.Store(rep.representation(), base, index1, load, kNoWriteBarrier);
|
|
|
|
m.Return(m.Int32Constant(OK));
|
|
|
|
|
|
|
|
CHECK(buffer[x] != buffer[y]);
|
|
|
|
CHECK_EQ(OK, m.Call());
|
|
|
|
CHECK(buffer[x] == buffer[y]);
|
|
|
|
|
|
|
|
// Initialize new buffer and set old_buffer to 0
|
|
|
|
byte* new_raw = reinterpret_cast<byte*>(new_buffer);
|
|
|
|
for (size_t i = 0; i < sizeof(buffer); i++) {
|
|
|
|
raw[i] = 0;
|
|
|
|
new_raw[i] = static_cast<byte>((i + sizeof(buffer)) ^ 0xAA);
|
|
|
|
}
|
|
|
|
|
2017-12-15 19:47:29 +00:00
|
|
|
wasm_context.SetRawMemory(new_raw, sizeof(new_buffer));
|
2016-04-12 09:05:05 +00:00
|
|
|
|
|
|
|
CHECK(new_buffer[x] != new_buffer[y]);
|
|
|
|
CHECK_EQ(OK, m.Call());
|
|
|
|
CHECK(new_buffer[x] == new_buffer[y]);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
TEST(RunLoadStoreRelocationOffset) {
|
|
|
|
RunLoadStoreRelocationOffset<int8_t>(MachineType::Int8());
|
|
|
|
RunLoadStoreRelocationOffset<uint8_t>(MachineType::Uint8());
|
|
|
|
RunLoadStoreRelocationOffset<int16_t>(MachineType::Int16());
|
|
|
|
RunLoadStoreRelocationOffset<uint16_t>(MachineType::Uint16());
|
|
|
|
RunLoadStoreRelocationOffset<int32_t>(MachineType::Int32());
|
|
|
|
RunLoadStoreRelocationOffset<uint32_t>(MachineType::Uint32());
|
|
|
|
RunLoadStoreRelocationOffset<void*>(MachineType::AnyTagged());
|
|
|
|
RunLoadStoreRelocationOffset<float>(MachineType::Float32());
|
|
|
|
RunLoadStoreRelocationOffset<double>(MachineType::Float64());
|
|
|
|
}
|
2016-05-04 20:19:28 +00:00
|
|
|
|
2017-01-10 19:07:34 +00:00
|
|
|
TEST(Uint32LessThanMemoryRelocation) {
|
2016-05-04 20:19:28 +00:00
|
|
|
RawMachineAssemblerTester<uint32_t> m;
|
|
|
|
RawMachineLabel within_bounds, out_of_bounds;
|
2017-12-15 19:47:29 +00:00
|
|
|
WasmContext wasm_context;
|
|
|
|
wasm_context.SetRawMemory(reinterpret_cast<void*>(1234), 0x200);
|
2016-05-04 20:19:28 +00:00
|
|
|
Node* index = m.Int32Constant(0x200);
|
[wasm] Introduce the WasmContext
The WasmContext struct introduced in this CL is used to store the
mem_size and mem_start address of the wasm memory. These variables can
be accessed at C++ level at graph build time (e.g., initialized during
instance building). When the GrowMemory runtime is invoked, the context
variables can be changed in the WasmContext at C++ level so that the
generated code will load the correct values.
This requires to insert a relocatable pointer only in the
JSToWasmWrapper (and in the other wasm entry points), the value is then
passed from function to function as an automatically added additional
parameter. The WasmContext is then dropped when creating an Interpreter
Entry or when invoking a JavaScript function. This removes the need of
patching the generated code at runtime (i.e., when the memory grows)
with respect to WASM_MEMORY_REFERENCE and WASM_MEMORY_SIZE_REFERENCE.
However, we still need to patch the code at instance build time to patch
the JSToWasmWrappers; in fact the address of the WasmContext is not
known during compilation, but only when the instance is built.
The WasmContext address is passed as the first parameter. This has the
advantage of not having to move the WasmContext around if the function
does not use many registers. This CL also changes the wasm calling
convention so that the first parameter register is different from the
return value register. The WasmContext is attached to every
WasmMemoryObject, to share the same context with multiple instances
sharing the same memory. Moreover, the nodes representing the
WasmContext variables are cached in the SSA environment, similarly to
other local variables that might change during execution. The nodes are
created when initializing the SSA environment and refreshed every time a
grow_memory or a function call happens, so that we are sure that they
always represent the correct mem_size and mem_start variables.
This CL also removes the WasmMemorySize runtime (since it's now possible
to directly retrieve mem_size from the context) and simplifies the
GrowMemory runtime (since every instance now has a memory_object).
R=ahaas@chromium.org,clemensh@chromium.org
CC=gdeepti@chromium.org
Change-Id: I3f058e641284f5a1bbbfc35a64c88da6ff08e240
Reviewed-on: https://chromium-review.googlesource.com/671008
Commit-Queue: Enrico Bacis <enricobacis@google.com>
Reviewed-by: Clemens Hammacher <clemensh@chromium.org>
Reviewed-by: Andreas Haas <ahaas@chromium.org>
Cr-Commit-Position: refs/heads/master@{#48209}
2017-09-28 14:59:37 +00:00
|
|
|
Node* wasm_context_node =
|
|
|
|
m.RelocatableIntPtrConstant(reinterpret_cast<uintptr_t>(&wasm_context),
|
|
|
|
RelocInfo::WASM_CONTEXT_REFERENCE);
|
|
|
|
Node* offset = m.Int32Constant(offsetof(WasmContext, mem_size));
|
|
|
|
Node* limit = m.Load(MachineType::Uint32(), wasm_context_node, offset);
|
2016-05-04 20:19:28 +00:00
|
|
|
Node* cond = m.AddNode(m.machine()->Uint32LessThan(), index, limit);
|
|
|
|
m.Branch(cond, &within_bounds, &out_of_bounds);
|
|
|
|
m.Bind(&within_bounds);
|
2017-12-02 00:30:37 +00:00
|
|
|
m.Return(m.Int32Constant(0xACED));
|
2016-05-04 20:19:28 +00:00
|
|
|
m.Bind(&out_of_bounds);
|
2017-12-02 00:30:37 +00:00
|
|
|
m.Return(m.Int32Constant(0xDEADBEEF));
|
2016-05-04 20:19:28 +00:00
|
|
|
// Check that index is out of bounds with current size
|
2017-12-02 00:30:37 +00:00
|
|
|
CHECK_EQ(0xDEADBEEF, m.Call());
|
2017-12-15 19:47:29 +00:00
|
|
|
wasm_context.SetRawMemory(wasm_context.mem_start, 0x400);
|
2016-05-04 20:19:28 +00:00
|
|
|
// Check that after limit is increased, index is within bounds.
|
2017-12-02 00:30:37 +00:00
|
|
|
CHECK_EQ(0xACEDu, m.Call());
|
2016-05-04 20:19:28 +00:00
|
|
|
}
|
2017-01-10 19:07:34 +00:00
|
|
|
|
|
|
|
TEST(Uint32LessThanFunctionTableRelocation) {
|
|
|
|
RawMachineAssemblerTester<uint32_t> m;
|
|
|
|
RawMachineLabel within_bounds, out_of_bounds;
|
|
|
|
Node* index = m.Int32Constant(0x200);
|
|
|
|
Node* limit = m.RelocatableInt32Constant(
|
|
|
|
0x200, RelocInfo::WASM_FUNCTION_TABLE_SIZE_REFERENCE);
|
|
|
|
Node* cond = m.AddNode(m.machine()->Uint32LessThan(), index, limit);
|
|
|
|
m.Branch(cond, &within_bounds, &out_of_bounds);
|
|
|
|
m.Bind(&within_bounds);
|
2017-12-02 00:30:37 +00:00
|
|
|
m.Return(m.Int32Constant(0xACED));
|
2017-01-10 19:07:34 +00:00
|
|
|
m.Bind(&out_of_bounds);
|
2017-12-02 00:30:37 +00:00
|
|
|
m.Return(m.Int32Constant(0xDEADBEEF));
|
2017-01-10 19:07:34 +00:00
|
|
|
// Check that index is out of bounds with current size
|
2017-12-02 00:30:37 +00:00
|
|
|
CHECK_EQ(0xDEADBEEF, m.Call());
|
2017-01-10 19:07:34 +00:00
|
|
|
m.GenerateCode();
|
|
|
|
|
|
|
|
Handle<Code> code = m.GetCode();
|
|
|
|
UpdateFunctionTableSizeReferences(code, 0x200, 0x400);
|
|
|
|
// Check that after limit is increased, index is within bounds.
|
2017-12-02 00:30:37 +00:00
|
|
|
CHECK_EQ(0xACED, m.Call());
|
2017-01-10 19:07:34 +00:00
|
|
|
}
|
2017-08-11 11:22:28 +00:00
|
|
|
|
|
|
|
} // namespace compiler
|
|
|
|
} // namespace internal
|
|
|
|
} // namespace v8
|