blob: e20307bb85f19cec7fe92b5adbc40824a7a04313 [file] [log] [blame]
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00001// Copyright 2012 the V8 project authors. All rights reserved.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002// Redistribution and use in source and binary forms, with or without
3// modification, are permitted provided that the following conditions are
4// met:
5//
6// * Redistributions of source code must retain the above copyright
7// notice, this list of conditions and the following disclaimer.
8// * Redistributions in binary form must reproduce the above
9// copyright notice, this list of conditions and the following
10// disclaimer in the documentation and/or other materials provided
11// with the distribution.
12// * Neither the name of Google Inc. nor the names of its
13// contributors may be used to endorse or promote products derived
14// from this software without specific prior written permission.
15//
16// THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
17// "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
18// LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
19// A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
20// OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
21// SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
22// LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
23// DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
24// THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
25// (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
26// OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
27
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +000028#include "v8.h"
29
30#if defined(V8_TARGET_ARCH_IA32)
31
kasperl@chromium.orga5551262010-12-07 12:49:48 +000032#include "ia32/lithium-codegen-ia32.h"
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +000033#include "ic.h"
kasperl@chromium.orga5551262010-12-07 12:49:48 +000034#include "code-stubs.h"
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +000035#include "deoptimizer.h"
kasperl@chromium.orga5551262010-12-07 12:49:48 +000036#include "stub-cache.h"
erikcorry0ad885c2011-11-21 13:51:57 +000037#include "codegen.h"
kasperl@chromium.orga5551262010-12-07 12:49:48 +000038
39namespace v8 {
40namespace internal {
41
42
kmillikin@chromium.org31b12772011-02-02 16:08:26 +000043// When invoking builtins, we need to record the safepoint in the middle of
44// the invoke instruction sequence generated by the macro assembler.
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +000045class SafepointGenerator : public CallWrapper {
kasperl@chromium.orga5551262010-12-07 12:49:48 +000046 public:
47 SafepointGenerator(LCodeGen* codegen,
48 LPointerMap* pointers,
ricow@chromium.org27bf2882011-11-17 08:34:43 +000049 Safepoint::DeoptMode mode)
kasperl@chromium.orga5551262010-12-07 12:49:48 +000050 : codegen_(codegen),
51 pointers_(pointers),
ricow@chromium.org27bf2882011-11-17 08:34:43 +000052 deopt_mode_(mode) {}
kasperl@chromium.orga5551262010-12-07 12:49:48 +000053 virtual ~SafepointGenerator() { }
54
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +000055 virtual void BeforeCall(int call_size) const {}
56
57 virtual void AfterCall() const {
ricow@chromium.org27bf2882011-11-17 08:34:43 +000058 codegen_->RecordSafepoint(pointers_, deopt_mode_);
kasperl@chromium.orga5551262010-12-07 12:49:48 +000059 }
60
61 private:
62 LCodeGen* codegen_;
63 LPointerMap* pointers_;
ricow@chromium.org27bf2882011-11-17 08:34:43 +000064 Safepoint::DeoptMode deopt_mode_;
kasperl@chromium.orga5551262010-12-07 12:49:48 +000065};
66
67
68#define __ masm()->
69
70bool LCodeGen::GenerateCode() {
ulan@chromium.org9a21ec42012-03-06 08:42:24 +000071 HPhase phase("Z_Code generation", chunk());
kasperl@chromium.orga5551262010-12-07 12:49:48 +000072 ASSERT(is_unused());
73 status_ = GENERATING;
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +000074
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +000075 // Open a frame scope to indicate that there is a frame on the stack. The
76 // MANUAL indicates that the scope shouldn't actually generate code to set up
77 // the frame (that is done in GeneratePrologue).
78 FrameScope frame_scope(masm_, StackFrame::MANUAL);
79
danno@chromium.org94b0d6f2013-02-04 13:33:20 +000080 support_aligned_spilled_doubles_ = info()->IsOptimizing();
81
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +000082 dynamic_frame_alignment_ = info()->IsOptimizing() &&
83 ((chunk()->num_double_slots() > 2 &&
84 !chunk()->graph()->is_recursive()) ||
85 !info()->osr_ast_id().IsNone());
mmassi@chromium.org7028c052012-06-13 11:51:58 +000086
kasperl@chromium.orga5551262010-12-07 12:49:48 +000087 return GeneratePrologue() &&
88 GenerateBody() &&
89 GenerateDeferredCode() &&
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +000090 GenerateJumpTable() &&
kasperl@chromium.orga5551262010-12-07 12:49:48 +000091 GenerateSafepointTable();
92}
93
94
95void LCodeGen::FinishCode(Handle<Code> code) {
96 ASSERT(is_done());
danno@chromium.org160a7b02011-04-18 15:51:38 +000097 code->set_stack_slots(GetStackSlotCount());
ricow@chromium.org83aa5492011-02-07 12:42:56 +000098 code->set_safepoint_table_offset(safepoints_.GetCodeOffset());
ulan@chromium.org6ba1fd02013-02-14 14:56:11 +000099 if (FLAG_weak_embedded_maps_in_optimized_code) {
100 RegisterDependentCodeForEmbeddedMaps(code);
101 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000102 PopulateDeoptimizationData(code);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000103 if (!info()->IsStub()) {
104 Deoptimizer::EnsureRelocSpaceForLazyDeoptimization(code);
105 }
ulan@chromium.org2e04b582013-02-21 14:06:02 +0000106 for (int i = 0 ; i < prototype_maps_.length(); i++) {
107 prototype_maps_.at(i)->AddDependentCode(
108 DependentCode::kPrototypeCheckGroup, code);
109 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000110}
111
112
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000113void LCodeGen::Abort(const char* reason) {
114 info()->set_bailout_reason(reason);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000115 status_ = ABORTED;
116}
117
118
119void LCodeGen::Comment(const char* format, ...) {
120 if (!FLAG_code_comments) return;
121 char buffer[4 * KB];
122 StringBuilder builder(buffer, ARRAY_SIZE(buffer));
123 va_list arguments;
124 va_start(arguments, format);
125 builder.AddFormattedList(format, arguments);
126 va_end(arguments);
127
128 // Copy the string before recording it in the assembler to avoid
129 // issues when the stack allocated buffer goes out of scope.
130 size_t length = builder.position();
131 Vector<char> copy = Vector<char>::New(length + 1);
132 memcpy(copy.start(), builder.Finalize(), copy.length());
133 masm()->RecordComment(copy.start());
134}
135
136
137bool LCodeGen::GeneratePrologue() {
138 ASSERT(is_generating());
139
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000140 if (info()->IsOptimizing()) {
141 ProfileEntryHookStub::MaybeCallEntryHook(masm_);
verwaest@chromium.org753aee42012-07-17 16:15:42 +0000142
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000143#ifdef DEBUG
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000144 if (strlen(FLAG_stop_at) > 0 &&
jkummerow@chromium.org59297c72013-01-09 16:32:23 +0000145 info_->function()->name()->IsUtf8EqualTo(CStrVector(FLAG_stop_at))) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000146 __ int3();
147 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000148#endif
149
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000150 // Strict mode functions and builtins need to replace the receiver
151 // with undefined when called as functions (without an explicit
152 // receiver object). ecx is zero for method calls and non-zero for
153 // function calls.
154 if (!info_->is_classic_mode() || info_->is_native()) {
155 Label ok;
156 __ test(ecx, Operand(ecx));
157 __ j(zero, &ok, Label::kNear);
158 // +1 for return address.
159 int receiver_offset = (scope()->num_parameters() + 1) * kPointerSize;
160 __ mov(Operand(esp, receiver_offset),
161 Immediate(isolate()->factory()->undefined_value()));
162 __ bind(&ok);
163 }
danno@chromium.org40cb8782011-05-25 07:58:50 +0000164
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000165 if (support_aligned_spilled_doubles_ && dynamic_frame_alignment_) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000166 // Move state of dynamic frame alignment into edx.
167 __ mov(edx, Immediate(kNoAlignmentPadding));
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000168
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000169 Label do_not_pad, align_loop;
170 STATIC_ASSERT(kDoubleSize == 2 * kPointerSize);
171 // Align esp + 4 to a multiple of 2 * kPointerSize.
172 __ test(esp, Immediate(kPointerSize));
173 __ j(not_zero, &do_not_pad, Label::kNear);
174 __ push(Immediate(0));
175 __ mov(ebx, esp);
176 __ mov(edx, Immediate(kAlignmentPaddingPushed));
177 // Copy arguments, receiver, and return address.
178 __ mov(ecx, Immediate(scope()->num_parameters() + 2));
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000179
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000180 __ bind(&align_loop);
181 __ mov(eax, Operand(ebx, 1 * kPointerSize));
182 __ mov(Operand(ebx, 0), eax);
183 __ add(Operand(ebx), Immediate(kPointerSize));
184 __ dec(ecx);
185 __ j(not_zero, &align_loop, Label::kNear);
186 __ mov(Operand(ebx, 0), Immediate(kAlignmentZapValue));
187 __ bind(&do_not_pad);
188 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000189 }
190
svenpanne@chromium.org83130cf2012-11-30 10:13:25 +0000191 info()->set_prologue_offset(masm_->pc_offset());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000192 if (NeedsEagerFrame()) {
193 ASSERT(!frame_is_built_);
194 frame_is_built_ = true;
195 __ push(ebp); // Caller's frame pointer.
196 __ mov(ebp, esp);
197 __ push(esi); // Callee's context.
198 if (info()->IsStub()) {
199 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
200 } else {
201 __ push(edi); // Callee's JS function.
202 }
203 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000204
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000205 if (info()->IsOptimizing() &&
206 dynamic_frame_alignment_ &&
207 FLAG_debug_code) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000208 __ test(esp, Immediate(kPointerSize));
209 __ Assert(zero, "frame is expected to be aligned");
210 }
211
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000212 // Reserve space for the stack slots needed by the code.
danno@chromium.org160a7b02011-04-18 15:51:38 +0000213 int slots = GetStackSlotCount();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000214 ASSERT(slots != 0 || !info()->IsOptimizing());
215 if (slots > 0) {
216 if (slots == 1) {
217 if (dynamic_frame_alignment_) {
218 __ push(edx);
219 } else {
220 __ push(Immediate(kNoAlignmentPadding));
mstarzinger@chromium.org32280cf2012-12-06 17:32:37 +0000221 }
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +0000222 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000223 if (FLAG_debug_code) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000224 __ sub(Operand(esp), Immediate(slots * kPointerSize));
225 __ push(eax);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000226 __ mov(Operand(eax), Immediate(slots));
227 Label loop;
228 __ bind(&loop);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000229 __ mov(MemOperand(esp, eax, times_4, 0),
230 Immediate(kSlotsZapValue));
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000231 __ dec(eax);
232 __ j(not_zero, &loop);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000233 __ pop(eax);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000234 } else {
235 __ sub(Operand(esp), Immediate(slots * kPointerSize));
236#ifdef _MSC_VER
237 // On windows, you may not access the stack more than one page below
238 // the most recently mapped page. To make the allocated area randomly
239 // accessible, we write to each page in turn (the value is irrelevant).
240 const int kPageSize = 4 * KB;
241 for (int offset = slots * kPointerSize - kPageSize;
242 offset > 0;
243 offset -= kPageSize) {
244 __ mov(Operand(esp, offset), eax);
245 }
246#endif
247 }
248
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000249 if (support_aligned_spilled_doubles_) {
250 Comment(";;; Store dynamic frame alignment tag for spilled doubles");
251 // Store dynamic frame alignment state in the first local.
252 int offset = JavaScriptFrameConstants::kDynamicAlignmentStateOffset;
253 if (dynamic_frame_alignment_) {
254 __ mov(Operand(ebp, offset), edx);
255 } else {
256 __ mov(Operand(ebp, offset), Immediate(kNoAlignmentPadding));
257 }
258 }
259 }
260
261 if (info()->saves_caller_doubles() && CpuFeatures::IsSupported(SSE2)) {
262 Comment(";;; Save clobbered callee double registers");
263 CpuFeatures::Scope scope(SSE2);
264 int count = 0;
265 BitVector* doubles = chunk()->allocated_double_registers();
266 BitVector::Iterator save_iterator(doubles);
267 while (!save_iterator.Done()) {
268 __ movdbl(MemOperand(esp, count * kDoubleSize),
269 XMMRegister::FromAllocationIndex(save_iterator.Current()));
270 save_iterator.Advance();
271 count++;
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000272 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000273 }
274 }
275
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000276 // Possibly allocate a local context.
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000277 int heap_slots = info_->num_heap_slots() - Context::MIN_CONTEXT_SLOTS;
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000278 if (heap_slots > 0) {
279 Comment(";;; Allocate local context");
280 // Argument to NewContext is the function, which is still in edi.
281 __ push(edi);
282 if (heap_slots <= FastNewContextStub::kMaximumSlots) {
283 FastNewContextStub stub(heap_slots);
284 __ CallStub(&stub);
285 } else {
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +0000286 __ CallRuntime(Runtime::kNewFunctionContext, 1);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000287 }
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000288 RecordSafepoint(Safepoint::kNoLazyDeopt);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000289 // Context is returned in both eax and esi. It replaces the context
290 // passed to us. It's saved in the stack and kept live in esi.
291 __ mov(Operand(ebp, StandardFrameConstants::kContextOffset), esi);
292
293 // Copy parameters into context if necessary.
294 int num_parameters = scope()->num_parameters();
295 for (int i = 0; i < num_parameters; i++) {
jkummerow@chromium.org486075a2011-09-07 12:44:28 +0000296 Variable* var = scope()->parameter(i);
297 if (var->IsContextSlot()) {
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000298 int parameter_offset = StandardFrameConstants::kCallerSPOffset +
299 (num_parameters - 1 - i) * kPointerSize;
300 // Load parameter from stack.
301 __ mov(eax, Operand(ebp, parameter_offset));
302 // Store it in the context.
jkummerow@chromium.org486075a2011-09-07 12:44:28 +0000303 int context_offset = Context::SlotOffset(var->index());
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000304 __ mov(Operand(esi, context_offset), eax);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000305 // Update the write barrier. This clobbers eax and ebx.
306 __ RecordWriteContextSlot(esi,
307 context_offset,
308 eax,
309 ebx,
310 kDontSaveFPRegs);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000311 }
312 }
313 Comment(";;; End allocate local context");
314 }
315
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000316 // Trace the call.
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000317 if (FLAG_trace && info()->IsOptimizing()) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +0000318 // We have not executed any compiled code yet, so esi still holds the
319 // incoming context.
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000320 __ CallRuntime(Runtime::kTraceEnter, 0);
321 }
322 return !is_aborted();
323}
324
325
326bool LCodeGen::GenerateBody() {
327 ASSERT(is_generating());
328 bool emit_instructions = true;
329 for (current_instruction_ = 0;
330 !is_aborted() && current_instruction_ < instructions_->length();
331 current_instruction_++) {
332 LInstruction* instr = instructions_->at(current_instruction_);
333 if (instr->IsLabel()) {
334 LLabel* label = LLabel::cast(instr);
335 emit_instructions = !label->HasReplacement();
336 }
337
338 if (emit_instructions) {
yangguo@chromium.orgfb377212012-11-16 14:43:43 +0000339 if (FLAG_code_comments) {
340 HValue* hydrogen = instr->hydrogen_value();
341 if (hydrogen != NULL) {
342 if (hydrogen->IsChange()) {
343 HValue* changed_value = HChange::cast(hydrogen)->value();
344 int use_id = 0;
345 const char* use_mnemo = "dead";
346 if (hydrogen->UseCount() >= 1) {
347 HValue* use_value = hydrogen->uses().value();
348 use_id = use_value->id();
349 use_mnemo = use_value->Mnemonic();
350 }
351 Comment(";;; @%d: %s. <of #%d %s for #%d %s>",
352 current_instruction_, instr->Mnemonic(),
353 changed_value->id(), changed_value->Mnemonic(),
354 use_id, use_mnemo);
355 } else {
356 Comment(";;; @%d: %s. <#%d>", current_instruction_,
357 instr->Mnemonic(), hydrogen->id());
358 }
359 } else {
360 Comment(";;; @%d: %s.", current_instruction_, instr->Mnemonic());
361 }
362 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000363 instr->CompileToNative(this);
364 }
365 }
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000366 EnsureSpaceForLazyDeopt();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000367 return !is_aborted();
368}
369
370
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000371bool LCodeGen::GenerateJumpTable() {
372 Label needs_frame_not_call;
373 Label needs_frame_is_call;
374 for (int i = 0; i < jump_table_.length(); i++) {
375 __ bind(&jump_table_[i].label);
376 Address entry = jump_table_[i].address;
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +0000377 bool is_lazy_deopt = jump_table_[i].is_lazy_deopt;
378 Deoptimizer::BailoutType type =
379 is_lazy_deopt ? Deoptimizer::LAZY : Deoptimizer::EAGER;
380 int id = Deoptimizer::GetDeoptimizationId(entry, type);
381 if (id == Deoptimizer::kNotDeoptimizationEntry) {
382 Comment(";;; jump table entry %d.", i);
383 } else {
384 Comment(";;; jump table entry %d: deoptimization bailout %d.", i, id);
385 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000386 if (jump_table_[i].needs_frame) {
387 __ push(Immediate(ExternalReference::ForDeoptEntry(entry)));
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +0000388 if (is_lazy_deopt) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000389 if (needs_frame_is_call.is_bound()) {
390 __ jmp(&needs_frame_is_call);
391 } else {
392 __ bind(&needs_frame_is_call);
393 __ push(MemOperand(ebp, StandardFrameConstants::kContextOffset));
394 // This variant of deopt can only be used with stubs. Since we don't
395 // have a function pointer to install in the stack frame that we're
396 // building, install a special marker there instead.
397 ASSERT(info()->IsStub());
398 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
399 // Push a PC inside the function so that the deopt code can find where
400 // the deopt comes from. It doesn't have to be the precise return
401 // address of a "calling" LAZY deopt, it only has to be somewhere
402 // inside the code body.
403 Label push_approx_pc;
404 __ call(&push_approx_pc);
405 __ bind(&push_approx_pc);
406 // Push the continuation which was stashed were the ebp should
407 // be. Replace it with the saved ebp.
408 __ push(MemOperand(esp, 3 * kPointerSize));
409 __ mov(MemOperand(esp, 4 * kPointerSize), ebp);
410 __ lea(ebp, MemOperand(esp, 4 * kPointerSize));
411 __ ret(0); // Call the continuation without clobbering registers.
412 }
413 } else {
414 if (needs_frame_not_call.is_bound()) {
415 __ jmp(&needs_frame_not_call);
416 } else {
417 __ bind(&needs_frame_not_call);
418 __ push(MemOperand(ebp, StandardFrameConstants::kContextOffset));
419 // This variant of deopt can only be used with stubs. Since we don't
420 // have a function pointer to install in the stack frame that we're
421 // building, install a special marker there instead.
422 ASSERT(info()->IsStub());
423 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
424 // Push the continuation which was stashed were the ebp should
425 // be. Replace it with the saved ebp.
426 __ push(MemOperand(esp, 2 * kPointerSize));
427 __ mov(MemOperand(esp, 3 * kPointerSize), ebp);
428 __ lea(ebp, MemOperand(esp, 3 * kPointerSize));
429 __ ret(0); // Call the continuation without clobbering registers.
430 }
431 }
432 } else {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +0000433 if (is_lazy_deopt) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000434 __ call(entry, RelocInfo::RUNTIME_ENTRY);
435 } else {
436 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
437 }
438 }
439 }
440 return !is_aborted();
441}
442
443
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000444bool LCodeGen::GenerateDeferredCode() {
445 ASSERT(is_generating());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000446 if (deferred_.length() > 0) {
447 for (int i = 0; !is_aborted() && i < deferred_.length(); i++) {
448 LDeferredCode* code = deferred_[i];
449 __ bind(code->entry());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000450 if (NeedsDeferredFrame()) {
451 Comment(";;; Deferred build frame",
452 code->instruction_index(),
453 code->instr()->Mnemonic());
454 ASSERT(!frame_is_built_);
455 ASSERT(info()->IsStub());
456 frame_is_built_ = true;
457 // Build the frame in such a way that esi isn't trashed.
458 __ push(ebp); // Caller's frame pointer.
459 __ push(Operand(ebp, StandardFrameConstants::kContextOffset));
460 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
461 __ lea(ebp, Operand(esp, 2 * kPointerSize));
462 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000463 Comment(";;; Deferred code @%d: %s.",
464 code->instruction_index(),
465 code->instr()->Mnemonic());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000466 code->Generate();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000467 if (NeedsDeferredFrame()) {
468 Comment(";;; Deferred destroy frame",
469 code->instruction_index(),
470 code->instr()->Mnemonic());
471 ASSERT(frame_is_built_);
472 frame_is_built_ = false;
473 __ mov(esp, ebp);
474 __ pop(ebp);
475 }
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000476 __ jmp(code->exit());
477 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000478 }
479
480 // Deferred code is the last part of the instruction sequence. Mark
481 // the generated code as done unless we bailed out.
482 if (!is_aborted()) status_ = DONE;
483 return !is_aborted();
484}
485
486
487bool LCodeGen::GenerateSafepointTable() {
488 ASSERT(is_done());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000489 if (!info()->IsStub()) {
490 // For lazy deoptimization we need space to patch a call after every call.
491 // Ensure there is always space for such patching, even if the code ends
492 // in a call.
493 int target_offset = masm()->pc_offset() + Deoptimizer::patch_size();
494 while (masm()->pc_offset() < target_offset) {
495 masm()->nop();
496 }
497 }
danno@chromium.org160a7b02011-04-18 15:51:38 +0000498 safepoints_.Emit(masm(), GetStackSlotCount());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000499 return !is_aborted();
500}
501
502
503Register LCodeGen::ToRegister(int index) const {
504 return Register::FromAllocationIndex(index);
505}
506
507
508XMMRegister LCodeGen::ToDoubleRegister(int index) const {
509 return XMMRegister::FromAllocationIndex(index);
510}
511
512
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000513bool LCodeGen::IsX87TopOfStack(LOperand* op) const {
514 return op->IsDoubleRegister();
515}
516
517
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000518Register LCodeGen::ToRegister(LOperand* op) const {
519 ASSERT(op->IsRegister());
520 return ToRegister(op->index());
521}
522
523
524XMMRegister LCodeGen::ToDoubleRegister(LOperand* op) const {
525 ASSERT(op->IsDoubleRegister());
526 return ToDoubleRegister(op->index());
527}
528
529
530int LCodeGen::ToInteger32(LConstantOperand* op) const {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000531 HConstant* constant = chunk_->LookupConstant(op);
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000532 return constant->Integer32Value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000533}
534
535
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +0000536Handle<Object> LCodeGen::ToHandle(LConstantOperand* op) const {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000537 HConstant* constant = chunk_->LookupConstant(op);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +0000538 ASSERT(chunk_->LookupLiteralRepresentation(op).IsTagged());
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000539 return constant->handle();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +0000540}
541
542
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +0000543double LCodeGen::ToDouble(LConstantOperand* op) const {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000544 HConstant* constant = chunk_->LookupConstant(op);
545 ASSERT(constant->HasDoubleValue());
546 return constant->DoubleValue();
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +0000547}
548
549
danno@chromium.orgbf0c8202011-12-27 10:09:42 +0000550bool LCodeGen::IsInteger32(LConstantOperand* op) const {
551 return chunk_->LookupLiteralRepresentation(op).IsInteger32();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000552}
553
554
555Operand LCodeGen::ToOperand(LOperand* op) const {
556 if (op->IsRegister()) return Operand(ToRegister(op));
557 if (op->IsDoubleRegister()) return Operand(ToDoubleRegister(op));
558 ASSERT(op->IsStackSlot() || op->IsDoubleStackSlot());
jkummerow@chromium.orgac360712013-02-11 09:00:07 +0000559 return Operand(ebp, StackSlotOffset(op->index()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000560}
561
562
erik.corry@gmail.com0511e242011-01-19 11:11:08 +0000563Operand LCodeGen::HighOperand(LOperand* op) {
564 ASSERT(op->IsDoubleStackSlot());
jkummerow@chromium.orgac360712013-02-11 09:00:07 +0000565 return Operand(ebp, StackSlotOffset(op->index()) + kPointerSize);
erik.corry@gmail.com0511e242011-01-19 11:11:08 +0000566}
567
568
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000569void LCodeGen::WriteTranslation(LEnvironment* environment,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000570 Translation* translation,
571 int* arguments_index,
572 int* arguments_count) {
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000573 if (environment == NULL) return;
574
575 // The translation includes one command per value in the environment.
576 int translation_size = environment->values()->length();
577 // The output frame height does not include the parameters.
578 int height = translation_size - environment->parameter_count();
579
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000580 // Function parameters are arguments to the outermost environment. The
581 // arguments index points to the first element of a sequence of tagged
582 // values on the stack that represent the arguments. This needs to be
583 // kept in sync with the LArgumentsElements implementation.
584 *arguments_index = -environment->parameter_count();
585 *arguments_count = environment->parameter_count();
586
587 WriteTranslation(environment->outer(),
588 translation,
589 arguments_index,
590 arguments_count);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000591 bool has_closure_id = !info()->closure().is_null() &&
592 *info()->closure() != *environment->closure();
593 int closure_id = has_closure_id
yangguo@chromium.org5a11aaf2012-06-20 11:29:00 +0000594 ? DefineDeoptimizationLiteral(environment->closure())
595 : Translation::kSelfLiteralId;
ulan@chromium.org967e2702012-02-28 09:49:15 +0000596 switch (environment->frame_type()) {
597 case JS_FUNCTION:
598 translation->BeginJSFrame(environment->ast_id(), closure_id, height);
599 break;
600 case JS_CONSTRUCT:
601 translation->BeginConstructStubFrame(closure_id, translation_size);
602 break;
mstarzinger@chromium.orgde886792012-09-11 13:22:37 +0000603 case JS_GETTER:
604 ASSERT(translation_size == 1);
605 ASSERT(height == 0);
606 translation->BeginGetterStubFrame(closure_id);
607 break;
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000608 case JS_SETTER:
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000609 ASSERT(translation_size == 2);
610 ASSERT(height == 0);
611 translation->BeginSetterStubFrame(closure_id);
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000612 break;
ulan@chromium.org967e2702012-02-28 09:49:15 +0000613 case ARGUMENTS_ADAPTOR:
614 translation->BeginArgumentsAdaptorFrame(closure_id, translation_size);
615 break;
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000616 case STUB:
617 translation->BeginCompiledStubFrame();
618 break;
619 default:
620 UNREACHABLE();
yangguo@chromium.org659ceec2012-01-26 07:37:54 +0000621 }
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000622
623 // Inlined frames which push their arguments cause the index to be
624 // bumped and another stack area to be used for materialization.
625 if (environment->entry() != NULL &&
626 environment->entry()->arguments_pushed()) {
627 *arguments_index = *arguments_index < 0
628 ? GetStackSlotCount()
629 : *arguments_index + *arguments_count;
630 *arguments_count = environment->entry()->arguments_count() + 1;
631 }
632
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000633 for (int i = 0; i < translation_size; ++i) {
634 LOperand* value = environment->values()->at(i);
635 // spilled_registers_ and spilled_double_registers_ are either
636 // both NULL or both set.
637 if (environment->spilled_registers() != NULL && value != NULL) {
638 if (value->IsRegister() &&
639 environment->spilled_registers()[value->index()] != NULL) {
640 translation->MarkDuplicate();
641 AddToTranslation(translation,
642 environment->spilled_registers()[value->index()],
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000643 environment->HasTaggedValueAt(i),
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000644 environment->HasUint32ValueAt(i),
645 *arguments_index,
646 *arguments_count);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000647 } else if (
648 value->IsDoubleRegister() &&
649 environment->spilled_double_registers()[value->index()] != NULL) {
650 translation->MarkDuplicate();
651 AddToTranslation(
652 translation,
653 environment->spilled_double_registers()[value->index()],
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000654 false,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000655 false,
656 *arguments_index,
657 *arguments_count);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000658 }
659 }
660
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000661 AddToTranslation(translation,
662 value,
663 environment->HasTaggedValueAt(i),
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000664 environment->HasUint32ValueAt(i),
665 *arguments_index,
666 *arguments_count);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000667 }
668}
669
670
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000671void LCodeGen::AddToTranslation(Translation* translation,
672 LOperand* op,
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000673 bool is_tagged,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000674 bool is_uint32,
675 int arguments_index,
676 int arguments_count) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000677 if (op == NULL) {
678 // TODO(twuerthinger): Introduce marker operands to indicate that this value
679 // is not present and must be reconstructed from the deoptimizer. Currently
680 // this is only used for the arguments object.
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000681 translation->StoreArgumentsObject(arguments_index, arguments_count);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000682 } else if (op->IsStackSlot()) {
683 if (is_tagged) {
684 translation->StoreStackSlot(op->index());
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000685 } else if (is_uint32) {
686 translation->StoreUint32StackSlot(op->index());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000687 } else {
688 translation->StoreInt32StackSlot(op->index());
689 }
690 } else if (op->IsDoubleStackSlot()) {
691 translation->StoreDoubleStackSlot(op->index());
692 } else if (op->IsArgument()) {
693 ASSERT(is_tagged);
danno@chromium.org160a7b02011-04-18 15:51:38 +0000694 int src_index = GetStackSlotCount() + op->index();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000695 translation->StoreStackSlot(src_index);
696 } else if (op->IsRegister()) {
697 Register reg = ToRegister(op);
698 if (is_tagged) {
699 translation->StoreRegister(reg);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000700 } else if (is_uint32) {
701 translation->StoreUint32Register(reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000702 } else {
703 translation->StoreInt32Register(reg);
704 }
705 } else if (op->IsDoubleRegister()) {
706 XMMRegister reg = ToDoubleRegister(op);
707 translation->StoreDoubleRegister(reg);
708 } else if (op->IsConstantOperand()) {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000709 HConstant* constant = chunk()->LookupConstant(LConstantOperand::cast(op));
710 int src_index = DefineDeoptimizationLiteral(constant->handle());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000711 translation->StoreLiteral(src_index);
712 } else {
713 UNREACHABLE();
714 }
715}
716
717
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000718void LCodeGen::CallCodeGeneric(Handle<Code> code,
719 RelocInfo::Mode mode,
720 LInstruction* instr,
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000721 SafepointMode safepoint_mode) {
kmillikin@chromium.org31b12772011-02-02 16:08:26 +0000722 ASSERT(instr != NULL);
723 LPointerMap* pointers = instr->pointer_map();
724 RecordPosition(pointers->position());
725 __ call(code, mode);
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000726 RecordSafepointWithLazyDeopt(instr, safepoint_mode);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +0000727
728 // Signal that we don't inline smi code before these stubs in the
729 // optimizing code generator.
danno@chromium.org40cb8782011-05-25 07:58:50 +0000730 if (code->kind() == Code::BINARY_OP_IC ||
ager@chromium.org5f0c45f2010-12-17 08:51:21 +0000731 code->kind() == Code::COMPARE_IC) {
732 __ nop();
733 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000734}
735
736
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000737void LCodeGen::CallCode(Handle<Code> code,
738 RelocInfo::Mode mode,
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000739 LInstruction* instr) {
740 CallCodeGeneric(code, mode, instr, RECORD_SIMPLE_SAFEPOINT);
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000741}
742
743
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +0000744void LCodeGen::CallRuntime(const Runtime::Function* fun,
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +0000745 int argc,
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000746 LInstruction* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000747 ASSERT(instr != NULL);
kmillikin@chromium.org31b12772011-02-02 16:08:26 +0000748 ASSERT(instr->HasPointerMap());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000749 LPointerMap* pointers = instr->pointer_map();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000750 RecordPosition(pointers->position());
751
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +0000752 __ CallRuntime(fun, argc);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +0000753
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000754 RecordSafepointWithLazyDeopt(instr, RECORD_SIMPLE_SAFEPOINT);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000755
756 ASSERT(info()->is_calling());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000757}
758
759
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000760void LCodeGen::LoadContextFromDeferred(LOperand* context) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000761 if (context->IsRegister()) {
762 if (!ToRegister(context).is(esi)) {
763 __ mov(esi, ToRegister(context));
764 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000765 } else if (context->IsStackSlot()) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000766 __ mov(esi, ToOperand(context));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000767 } else if (context->IsConstantOperand()) {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000768 HConstant* constant =
769 chunk_->LookupConstant(LConstantOperand::cast(context));
770 __ LoadHeapObject(esi, Handle<Context>::cast(constant->handle()));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000771 } else {
772 UNREACHABLE();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000773 }
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000774}
775
776void LCodeGen::CallRuntimeFromDeferred(Runtime::FunctionId id,
777 int argc,
778 LInstruction* instr,
779 LOperand* context) {
780 LoadContextFromDeferred(context);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000781
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000782 __ CallRuntimeSaveDoubles(id);
783 RecordSafepointWithRegisters(
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000784 instr->pointer_map(), argc, Safepoint::kNoLazyDeopt);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000785
786 ASSERT(info()->is_calling());
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000787}
788
789
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000790void LCodeGen::RegisterEnvironmentForDeoptimization(
791 LEnvironment* environment, Safepoint::DeoptMode mode) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000792 if (!environment->HasBeenRegistered()) {
793 // Physical stack frame layout:
794 // -x ............. -4 0 ..................................... y
795 // [incoming arguments] [spill slots] [pushed outgoing arguments]
796
797 // Layout of the environment:
798 // 0 ..................................................... size-1
799 // [parameters] [locals] [expression stack including arguments]
800
801 // Layout of the translation:
802 // 0 ........................................................ size - 1 + 4
803 // [expression stack including arguments] [locals] [4 words] [parameters]
804 // |>------------ translation_size ------------<|
805
806 int frame_count = 0;
yangguo@chromium.org659ceec2012-01-26 07:37:54 +0000807 int jsframe_count = 0;
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000808 int args_index = 0;
809 int args_count = 0;
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000810 for (LEnvironment* e = environment; e != NULL; e = e->outer()) {
811 ++frame_count;
ulan@chromium.org967e2702012-02-28 09:49:15 +0000812 if (e->frame_type() == JS_FUNCTION) {
yangguo@chromium.org659ceec2012-01-26 07:37:54 +0000813 ++jsframe_count;
814 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000815 }
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000816 Translation translation(&translations_, frame_count, jsframe_count, zone());
817 WriteTranslation(environment, &translation, &args_index, &args_count);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000818 int deoptimization_index = deoptimizations_.length();
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000819 int pc_offset = masm()->pc_offset();
820 environment->Register(deoptimization_index,
821 translation.index(),
822 (mode == Safepoint::kLazyDeopt) ? pc_offset : -1);
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000823 deoptimizations_.Add(environment, zone());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000824 }
825}
826
827
828void LCodeGen::DeoptimizeIf(Condition cc, LEnvironment* environment) {
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000829 RegisterEnvironmentForDeoptimization(environment, Safepoint::kNoLazyDeopt);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000830 ASSERT(environment->HasBeenRegistered());
831 int id = environment->deoptimization_index();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000832 ASSERT(info()->IsOptimizing() || info()->IsStub());
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +0000833 Deoptimizer::BailoutType bailout_type = info()->IsStub()
834 ? Deoptimizer::LAZY
835 : Deoptimizer::EAGER;
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000836 Address entry = Deoptimizer::GetDeoptimizationEntry(id, bailout_type);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000837 if (entry == NULL) {
838 Abort("bailout was not prepared");
839 return;
840 }
841
842 if (FLAG_deopt_every_n_times != 0) {
843 Handle<SharedFunctionInfo> shared(info_->shared_info());
844 Label no_deopt;
845 __ pushfd();
846 __ push(eax);
847 __ push(ebx);
848 __ mov(ebx, shared);
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000849 __ mov(eax,
850 FieldOperand(ebx, SharedFunctionInfo::kStressDeoptCounterOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000851 __ sub(Operand(eax), Immediate(Smi::FromInt(1)));
karlklose@chromium.org83a47282011-05-11 11:54:09 +0000852 __ j(not_zero, &no_deopt, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000853 if (FLAG_trap_on_deopt) __ int3();
854 __ mov(eax, Immediate(Smi::FromInt(FLAG_deopt_every_n_times)));
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000855 __ mov(FieldOperand(ebx, SharedFunctionInfo::kStressDeoptCounterOffset),
856 eax);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000857 __ pop(ebx);
858 __ pop(eax);
859 __ popfd();
860 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
861
862 __ bind(&no_deopt);
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000863 __ mov(FieldOperand(ebx, SharedFunctionInfo::kStressDeoptCounterOffset),
864 eax);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000865 __ pop(ebx);
866 __ pop(eax);
867 __ popfd();
868 }
869
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000870 if (FLAG_trap_on_deopt) {
871 Label done;
872 if (cc != no_condition) {
873 __ j(NegateCondition(cc), &done, Label::kNear);
874 }
875 __ int3();
876 __ bind(&done);
877 }
878
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000879 ASSERT(info()->IsStub() || frame_is_built_);
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000880 bool needs_lazy_deopt = info()->IsStub();
881 if (cc == no_condition && frame_is_built_) {
882 if (needs_lazy_deopt) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000883 __ call(entry, RelocInfo::RUNTIME_ENTRY);
884 } else {
885 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
886 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000887 } else {
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000888 // We often have several deopts to the same entry, reuse the last
889 // jump entry if this is the case.
890 if (jump_table_.is_empty() ||
891 jump_table_.last().address != entry ||
892 jump_table_.last().needs_frame != !frame_is_built_ ||
893 jump_table_.last().is_lazy_deopt != needs_lazy_deopt) {
894 JumpTableEntry table_entry(entry, !frame_is_built_, needs_lazy_deopt);
895 jump_table_.Add(table_entry, zone());
mstarzinger@chromium.org32280cf2012-12-06 17:32:37 +0000896 }
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000897 if (cc == no_condition) {
898 __ jmp(&jump_table_.last().label);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000899 } else {
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000900 __ j(cc, &jump_table_.last().label);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000901 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000902 }
903}
904
905
ulan@chromium.org6ba1fd02013-02-14 14:56:11 +0000906void LCodeGen::RegisterDependentCodeForEmbeddedMaps(Handle<Code> code) {
907 ZoneList<Handle<Map> > maps(1, zone());
908 int mode_mask = RelocInfo::ModeMask(RelocInfo::EMBEDDED_OBJECT);
909 for (RelocIterator it(*code, mode_mask); !it.done(); it.next()) {
910 RelocInfo::Mode mode = it.rinfo()->rmode();
911 if (mode == RelocInfo::EMBEDDED_OBJECT &&
912 it.rinfo()->target_object()->IsMap()) {
913 Handle<Map> map(Map::cast(it.rinfo()->target_object()));
914 if (map->CanTransition()) {
915 maps.Add(map, zone());
916 }
917 }
918 }
919#ifdef VERIFY_HEAP
920 // This disables verification of weak embedded maps after full GC.
921 // AddDependentCode can cause a GC, which would observe the state where
922 // this code is not yet in the depended code lists of the embedded maps.
923 NoWeakEmbeddedMapsVerificationScope disable_verification_of_embedded_maps;
924#endif
925 for (int i = 0; i < maps.length(); i++) {
ulan@chromium.org2e04b582013-02-21 14:06:02 +0000926 maps.at(i)->AddDependentCode(DependentCode::kWeaklyEmbeddedGroup, code);
ulan@chromium.org6ba1fd02013-02-14 14:56:11 +0000927 }
928}
929
930
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000931void LCodeGen::PopulateDeoptimizationData(Handle<Code> code) {
932 int length = deoptimizations_.length();
933 if (length == 0) return;
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000934 Handle<DeoptimizationInputData> data =
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +0000935 factory()->NewDeoptimizationInputData(length, TENURED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000936
ager@chromium.org9ee27ae2011-03-02 13:43:26 +0000937 Handle<ByteArray> translations = translations_.CreateByteArray();
938 data->SetTranslationByteArray(*translations);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000939 data->SetInlinedFunctionCount(Smi::FromInt(inlined_function_count_));
940
941 Handle<FixedArray> literals =
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +0000942 factory()->NewFixedArray(deoptimization_literals_.length(), TENURED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000943 for (int i = 0; i < deoptimization_literals_.length(); i++) {
944 literals->set(i, *deoptimization_literals_[i]);
945 }
946 data->SetLiteralArray(*literals);
947
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000948 data->SetOsrAstId(Smi::FromInt(info_->osr_ast_id().ToInt()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000949 data->SetOsrPcOffset(Smi::FromInt(osr_pc_offset_));
950
951 // Populate the deoptimization entries.
952 for (int i = 0; i < length; i++) {
953 LEnvironment* env = deoptimizations_[i];
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000954 data->SetAstId(i, env->ast_id());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000955 data->SetTranslationIndex(i, Smi::FromInt(env->translation_index()));
956 data->SetArgumentsStackHeight(i,
957 Smi::FromInt(env->arguments_stack_height()));
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000958 data->SetPc(i, Smi::FromInt(env->pc_offset()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000959 }
960 code->set_deoptimization_data(*data);
961}
962
963
964int LCodeGen::DefineDeoptimizationLiteral(Handle<Object> literal) {
965 int result = deoptimization_literals_.length();
966 for (int i = 0; i < deoptimization_literals_.length(); ++i) {
967 if (deoptimization_literals_[i].is_identical_to(literal)) return i;
968 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000969 deoptimization_literals_.Add(literal, zone());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000970 return result;
971}
972
973
974void LCodeGen::PopulateDeoptimizationLiteralsWithInlinedFunctions() {
975 ASSERT(deoptimization_literals_.length() == 0);
976
977 const ZoneList<Handle<JSFunction> >* inlined_closures =
978 chunk()->inlined_closures();
979
980 for (int i = 0, length = inlined_closures->length();
981 i < length;
982 i++) {
983 DefineDeoptimizationLiteral(inlined_closures->at(i));
984 }
985
986 inlined_function_count_ = deoptimization_literals_.length();
987}
988
989
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000990void LCodeGen::RecordSafepointWithLazyDeopt(
991 LInstruction* instr, SafepointMode safepoint_mode) {
992 if (safepoint_mode == RECORD_SIMPLE_SAFEPOINT) {
993 RecordSafepoint(instr->pointer_map(), Safepoint::kLazyDeopt);
994 } else {
995 ASSERT(safepoint_mode == RECORD_SAFEPOINT_WITH_REGISTERS_AND_NO_ARGUMENTS);
996 RecordSafepointWithRegisters(
997 instr->pointer_map(), 0, Safepoint::kLazyDeopt);
998 }
999}
1000
1001
ager@chromium.org378b34e2011-01-28 08:04:38 +00001002void LCodeGen::RecordSafepoint(
1003 LPointerMap* pointers,
1004 Safepoint::Kind kind,
1005 int arguments,
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001006 Safepoint::DeoptMode deopt_mode) {
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00001007 ASSERT(kind == expected_safepoint_kind_);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00001008 const ZoneList<LOperand*>* operands = pointers->GetNormalizedOperands();
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001009 Safepoint safepoint =
1010 safepoints_.DefineSafepoint(masm(), kind, arguments, deopt_mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001011 for (int i = 0; i < operands->length(); i++) {
1012 LOperand* pointer = operands->at(i);
1013 if (pointer->IsStackSlot()) {
rossberg@chromium.org400388e2012-06-06 09:29:22 +00001014 safepoint.DefinePointerSlot(pointer->index(), zone());
ager@chromium.org378b34e2011-01-28 08:04:38 +00001015 } else if (pointer->IsRegister() && (kind & Safepoint::kWithRegisters)) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +00001016 safepoint.DefinePointerRegister(ToRegister(pointer), zone());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001017 }
1018 }
ager@chromium.org378b34e2011-01-28 08:04:38 +00001019}
1020
1021
1022void LCodeGen::RecordSafepoint(LPointerMap* pointers,
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001023 Safepoint::DeoptMode mode) {
1024 RecordSafepoint(pointers, Safepoint::kSimple, 0, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001025}
1026
1027
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001028void LCodeGen::RecordSafepoint(Safepoint::DeoptMode mode) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +00001029 LPointerMap empty_pointers(RelocInfo::kNoPosition, zone());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001030 RecordSafepoint(&empty_pointers, mode);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00001031}
1032
1033
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001034void LCodeGen::RecordSafepointWithRegisters(LPointerMap* pointers,
1035 int arguments,
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001036 Safepoint::DeoptMode mode) {
1037 RecordSafepoint(pointers, Safepoint::kWithRegisters, arguments, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001038}
1039
1040
1041void LCodeGen::RecordPosition(int position) {
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00001042 if (position == RelocInfo::kNoPosition) return;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001043 masm()->positions_recorder()->RecordPosition(position);
1044}
1045
1046
1047void LCodeGen::DoLabel(LLabel* label) {
1048 if (label->is_loop_header()) {
1049 Comment(";;; B%d - LOOP entry", label->block_id());
1050 } else {
1051 Comment(";;; B%d", label->block_id());
1052 }
1053 __ bind(label->label());
1054 current_block_ = label->block_id();
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001055 DoGap(label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001056}
1057
1058
1059void LCodeGen::DoParallelMove(LParallelMove* move) {
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00001060 resolver_.Resolve(move);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001061}
1062
1063
1064void LCodeGen::DoGap(LGap* gap) {
1065 for (int i = LGap::FIRST_INNER_POSITION;
1066 i <= LGap::LAST_INNER_POSITION;
1067 i++) {
1068 LGap::InnerPosition inner_pos = static_cast<LGap::InnerPosition>(i);
1069 LParallelMove* move = gap->GetParallelMove(inner_pos);
1070 if (move != NULL) DoParallelMove(move);
1071 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001072}
1073
1074
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001075void LCodeGen::DoInstructionGap(LInstructionGap* instr) {
1076 DoGap(instr);
1077}
1078
1079
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001080void LCodeGen::DoParameter(LParameter* instr) {
1081 // Nothing to do.
1082}
1083
1084
1085void LCodeGen::DoCallStub(LCallStub* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00001086 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001087 ASSERT(ToRegister(instr->result()).is(eax));
1088 switch (instr->hydrogen()->major_key()) {
1089 case CodeStub::RegExpConstructResult: {
1090 RegExpConstructResultStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001091 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001092 break;
1093 }
1094 case CodeStub::RegExpExec: {
1095 RegExpExecStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001096 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001097 break;
1098 }
1099 case CodeStub::SubString: {
1100 SubStringStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001101 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001102 break;
1103 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001104 case CodeStub::NumberToString: {
1105 NumberToStringStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001106 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001107 break;
1108 }
1109 case CodeStub::StringAdd: {
1110 StringAddStub stub(NO_STRING_ADD_FLAGS);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001111 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001112 break;
1113 }
1114 case CodeStub::StringCompare: {
1115 StringCompareStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001116 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001117 break;
1118 }
1119 case CodeStub::TranscendentalCache: {
whesse@chromium.org023421e2010-12-21 12:19:12 +00001120 TranscendentalCacheStub stub(instr->transcendental_type(),
1121 TranscendentalCacheStub::TAGGED);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001122 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001123 break;
1124 }
1125 default:
1126 UNREACHABLE();
1127 }
1128}
1129
1130
1131void LCodeGen::DoUnknownOSRValue(LUnknownOSRValue* instr) {
1132 // Nothing to do.
1133}
1134
1135
1136void LCodeGen::DoModI(LModI* instr) {
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001137 if (instr->hydrogen()->HasPowerOf2Divisor()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001138 Register dividend = ToRegister(instr->left());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001139
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001140 int32_t divisor =
1141 HConstant::cast(instr->hydrogen()->right())->Integer32Value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001142
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001143 if (divisor < 0) divisor = -divisor;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001144
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001145 Label positive_dividend, done;
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001146 __ test(dividend, Operand(dividend));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001147 __ j(not_sign, &positive_dividend, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001148 __ neg(dividend);
1149 __ and_(dividend, divisor - 1);
1150 __ neg(dividend);
1151 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001152 __ j(not_zero, &done, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001153 DeoptimizeIf(no_condition, instr->environment());
whesse@chromium.org7b260152011-06-20 15:33:18 +00001154 } else {
1155 __ jmp(&done, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001156 }
1157 __ bind(&positive_dividend);
1158 __ and_(dividend, divisor - 1);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001159 __ bind(&done);
1160 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001161 Label done, remainder_eq_dividend, slow, do_subtraction, both_positive;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001162 Register left_reg = ToRegister(instr->left());
1163 Register right_reg = ToRegister(instr->right());
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001164 Register result_reg = ToRegister(instr->result());
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001165
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001166 ASSERT(left_reg.is(eax));
1167 ASSERT(result_reg.is(edx));
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001168 ASSERT(!right_reg.is(eax));
1169 ASSERT(!right_reg.is(edx));
1170
1171 // Check for x % 0.
1172 if (instr->hydrogen()->CheckFlag(HValue::kCanBeDivByZero)) {
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001173 __ test(right_reg, Operand(right_reg));
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001174 DeoptimizeIf(zero, instr->environment());
1175 }
1176
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001177 __ test(left_reg, Operand(left_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001178 __ j(zero, &remainder_eq_dividend, Label::kNear);
1179 __ j(sign, &slow, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001180
1181 __ test(right_reg, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001182 __ j(not_sign, &both_positive, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001183 // The sign of the divisor doesn't matter.
1184 __ neg(right_reg);
1185
1186 __ bind(&both_positive);
1187 // If the dividend is smaller than the nonnegative
1188 // divisor, the dividend is the result.
1189 __ cmp(left_reg, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001190 __ j(less, &remainder_eq_dividend, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001191
1192 // Check if the divisor is a PowerOfTwo integer.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001193 Register scratch = ToRegister(instr->temp());
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001194 __ mov(scratch, right_reg);
1195 __ sub(Operand(scratch), Immediate(1));
1196 __ test(scratch, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001197 __ j(not_zero, &do_subtraction, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001198 __ and_(left_reg, Operand(scratch));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001199 __ jmp(&remainder_eq_dividend, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001200
1201 __ bind(&do_subtraction);
1202 const int kUnfolds = 3;
1203 // Try a few subtractions of the dividend.
1204 __ mov(scratch, left_reg);
1205 for (int i = 0; i < kUnfolds; i++) {
1206 // Reduce the dividend by the divisor.
1207 __ sub(left_reg, Operand(right_reg));
1208 // Check if the dividend is less than the divisor.
1209 __ cmp(left_reg, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001210 __ j(less, &remainder_eq_dividend, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001211 }
1212 __ mov(left_reg, scratch);
1213
1214 // Slow case, using idiv instruction.
1215 __ bind(&slow);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001216
1217 // Check for (kMinInt % -1).
1218 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1219 Label left_not_min_int;
1220 __ cmp(left_reg, kMinInt);
1221 __ j(not_zero, &left_not_min_int, Label::kNear);
1222 __ cmp(right_reg, -1);
1223 DeoptimizeIf(zero, instr->environment());
1224 __ bind(&left_not_min_int);
1225 }
1226
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001227 // Sign extend to edx.
1228 __ cdq();
1229
1230 // Check for (0 % -x) that will produce negative zero.
1231 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001232 Label positive_left;
1233 Label done;
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001234 __ test(left_reg, Operand(left_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001235 __ j(not_sign, &positive_left, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001236 __ idiv(right_reg);
1237
1238 // Test the remainder for 0, because then the result would be -0.
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001239 __ test(result_reg, Operand(result_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001240 __ j(not_zero, &done, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001241
1242 DeoptimizeIf(no_condition, instr->environment());
1243 __ bind(&positive_left);
1244 __ idiv(right_reg);
1245 __ bind(&done);
1246 } else {
1247 __ idiv(right_reg);
1248 }
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001249 __ jmp(&done, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001250
1251 __ bind(&remainder_eq_dividend);
1252 __ mov(result_reg, left_reg);
1253
1254 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001255 }
1256}
1257
1258
1259void LCodeGen::DoDivI(LDivI* instr) {
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001260 if (!instr->is_flooring() && instr->hydrogen()->HasPowerOf2Divisor()) {
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +00001261 Register dividend = ToRegister(instr->left());
1262 int32_t divisor =
1263 HConstant::cast(instr->hydrogen()->right())->Integer32Value();
1264 int32_t test_value = 0;
1265 int32_t power = 0;
1266
1267 if (divisor > 0) {
1268 test_value = divisor - 1;
1269 power = WhichPowerOf2(divisor);
1270 } else {
1271 // Check for (0 / -x) that will produce negative zero.
1272 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1273 __ test(dividend, Operand(dividend));
1274 DeoptimizeIf(zero, instr->environment());
1275 }
1276 // Check for (kMinInt / -1).
1277 if (divisor == -1 && instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1278 __ cmp(dividend, kMinInt);
1279 DeoptimizeIf(zero, instr->environment());
1280 }
1281 test_value = - divisor - 1;
1282 power = WhichPowerOf2(-divisor);
1283 }
1284
1285 if (test_value != 0) {
1286 // Deoptimize if remainder is not 0.
1287 __ test(dividend, Immediate(test_value));
1288 DeoptimizeIf(not_zero, instr->environment());
1289 __ sar(dividend, power);
1290 }
1291
1292 if (divisor < 0) __ neg(dividend);
1293
1294 return;
1295 }
1296
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001297 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001298 ASSERT(ToRegister(instr->result()).is(eax));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001299 ASSERT(ToRegister(instr->left()).is(eax));
1300 ASSERT(!ToRegister(instr->right()).is(eax));
1301 ASSERT(!ToRegister(instr->right()).is(edx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001302
1303 Register left_reg = eax;
1304
1305 // Check for x / 0.
1306 Register right_reg = ToRegister(right);
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001307 if (instr->hydrogen_value()->CheckFlag(HValue::kCanBeDivByZero)) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001308 __ test(right_reg, ToOperand(right));
1309 DeoptimizeIf(zero, instr->environment());
1310 }
1311
1312 // Check for (0 / -x) that will produce negative zero.
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001313 if (instr->hydrogen_value()->CheckFlag(HValue::kBailoutOnMinusZero)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001314 Label left_not_zero;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001315 __ test(left_reg, Operand(left_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001316 __ j(not_zero, &left_not_zero, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001317 __ test(right_reg, ToOperand(right));
1318 DeoptimizeIf(sign, instr->environment());
1319 __ bind(&left_not_zero);
1320 }
1321
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +00001322 // Check for (kMinInt / -1).
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001323 if (instr->hydrogen_value()->CheckFlag(HValue::kCanOverflow)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001324 Label left_not_min_int;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001325 __ cmp(left_reg, kMinInt);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001326 __ j(not_zero, &left_not_min_int, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001327 __ cmp(right_reg, -1);
1328 DeoptimizeIf(zero, instr->environment());
1329 __ bind(&left_not_min_int);
1330 }
1331
1332 // Sign extend to edx.
1333 __ cdq();
1334 __ idiv(right_reg);
1335
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001336 if (!instr->is_flooring()) {
1337 // Deoptimize if remainder is not 0.
1338 __ test(edx, Operand(edx));
1339 DeoptimizeIf(not_zero, instr->environment());
1340 } else {
1341 Label done;
1342 __ test(edx, edx);
1343 __ j(zero, &done, Label::kNear);
1344 __ xor_(edx, right_reg);
1345 __ sar(edx, 31);
1346 __ add(eax, edx);
1347 __ bind(&done);
1348 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001349}
1350
1351
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001352void LCodeGen::DoMathFloorOfDiv(LMathFloorOfDiv* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001353 ASSERT(instr->right()->IsConstantOperand());
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001354
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001355 Register dividend = ToRegister(instr->left());
1356 int32_t divisor = ToInteger32(LConstantOperand::cast(instr->right()));
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001357 Register result = ToRegister(instr->result());
1358
1359 switch (divisor) {
1360 case 0:
1361 DeoptimizeIf(no_condition, instr->environment());
1362 return;
1363
1364 case 1:
1365 __ Move(result, dividend);
1366 return;
1367
1368 case -1:
1369 __ Move(result, dividend);
1370 __ neg(result);
1371 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1372 DeoptimizeIf(zero, instr->environment());
1373 }
1374 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1375 DeoptimizeIf(overflow, instr->environment());
1376 }
1377 return;
1378 }
1379
1380 uint32_t divisor_abs = abs(divisor);
1381 if (IsPowerOf2(divisor_abs)) {
1382 int32_t power = WhichPowerOf2(divisor_abs);
1383 if (divisor < 0) {
1384 // Input[dividend] is clobbered.
1385 // The sequence is tedious because neg(dividend) might overflow.
1386 __ mov(result, dividend);
1387 __ sar(dividend, 31);
1388 __ neg(result);
1389 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1390 DeoptimizeIf(zero, instr->environment());
1391 }
1392 __ shl(dividend, 32 - power);
1393 __ sar(result, power);
1394 __ not_(dividend);
1395 // Clear result.sign if dividend.sign is set.
1396 __ and_(result, dividend);
1397 } else {
1398 __ Move(result, dividend);
1399 __ sar(result, power);
1400 }
1401 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001402 ASSERT(ToRegister(instr->left()).is(eax));
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001403 ASSERT(ToRegister(instr->result()).is(edx));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001404 Register scratch = ToRegister(instr->temp());
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001405
1406 // Find b which: 2^b < divisor_abs < 2^(b+1).
1407 unsigned b = 31 - CompilerIntrinsics::CountLeadingZeros(divisor_abs);
1408 unsigned shift = 32 + b; // Precision +1bit (effectively).
1409 double multiplier_f =
1410 static_cast<double>(static_cast<uint64_t>(1) << shift) / divisor_abs;
1411 int64_t multiplier;
1412 if (multiplier_f - floor(multiplier_f) < 0.5) {
1413 multiplier = static_cast<int64_t>(floor(multiplier_f));
1414 } else {
1415 multiplier = static_cast<int64_t>(floor(multiplier_f)) + 1;
1416 }
1417 // The multiplier is a uint32.
1418 ASSERT(multiplier > 0 &&
1419 multiplier < (static_cast<int64_t>(1) << 32));
1420 __ mov(scratch, dividend);
1421 if (divisor < 0 &&
1422 instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1423 __ test(dividend, dividend);
1424 DeoptimizeIf(zero, instr->environment());
1425 }
1426 __ mov(edx, static_cast<int32_t>(multiplier));
1427 __ imul(edx);
1428 if (static_cast<int32_t>(multiplier) < 0) {
1429 __ add(edx, scratch);
1430 }
1431 Register reg_lo = eax;
1432 Register reg_byte_scratch = scratch;
1433 if (!reg_byte_scratch.is_byte_register()) {
1434 __ xchg(reg_lo, reg_byte_scratch);
1435 reg_lo = scratch;
1436 reg_byte_scratch = eax;
1437 }
1438 if (divisor < 0) {
1439 __ xor_(reg_byte_scratch, reg_byte_scratch);
1440 __ cmp(reg_lo, 0x40000000);
1441 __ setcc(above, reg_byte_scratch);
1442 __ neg(edx);
1443 __ sub(edx, reg_byte_scratch);
1444 } else {
1445 __ xor_(reg_byte_scratch, reg_byte_scratch);
1446 __ cmp(reg_lo, 0xC0000000);
1447 __ setcc(above_equal, reg_byte_scratch);
1448 __ add(edx, reg_byte_scratch);
1449 }
1450 __ sar(edx, shift - 32);
1451 }
1452}
1453
1454
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001455void LCodeGen::DoMulI(LMulI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001456 Register left = ToRegister(instr->left());
1457 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001458
1459 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001460 __ mov(ToRegister(instr->temp()), left);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001461 }
1462
1463 if (right->IsConstantOperand()) {
ricow@chromium.orgbadaffc2011-03-17 12:15:27 +00001464 // Try strength reductions on the multiplication.
1465 // All replacement instructions are at most as long as the imul
1466 // and have better latency.
1467 int constant = ToInteger32(LConstantOperand::cast(right));
1468 if (constant == -1) {
1469 __ neg(left);
1470 } else if (constant == 0) {
1471 __ xor_(left, Operand(left));
1472 } else if (constant == 2) {
1473 __ add(left, Operand(left));
1474 } else if (!instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1475 // If we know that the multiplication can't overflow, it's safe to
1476 // use instructions that don't set the overflow flag for the
1477 // multiplication.
1478 switch (constant) {
1479 case 1:
1480 // Do nothing.
1481 break;
1482 case 3:
1483 __ lea(left, Operand(left, left, times_2, 0));
1484 break;
1485 case 4:
1486 __ shl(left, 2);
1487 break;
1488 case 5:
1489 __ lea(left, Operand(left, left, times_4, 0));
1490 break;
1491 case 8:
1492 __ shl(left, 3);
1493 break;
1494 case 9:
1495 __ lea(left, Operand(left, left, times_8, 0));
1496 break;
1497 case 16:
1498 __ shl(left, 4);
1499 break;
1500 default:
1501 __ imul(left, left, constant);
1502 break;
1503 }
1504 } else {
1505 __ imul(left, left, constant);
1506 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001507 } else {
1508 __ imul(left, ToOperand(right));
1509 }
1510
1511 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1512 DeoptimizeIf(overflow, instr->environment());
1513 }
1514
1515 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1516 // Bail out if the result is supposed to be negative zero.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001517 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001518 __ test(left, Operand(left));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001519 __ j(not_zero, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001520 if (right->IsConstantOperand()) {
verwaest@chromium.org33e09c82012-10-10 17:07:22 +00001521 if (ToInteger32(LConstantOperand::cast(right)) < 0) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001522 DeoptimizeIf(no_condition, instr->environment());
verwaest@chromium.org33e09c82012-10-10 17:07:22 +00001523 } else if (ToInteger32(LConstantOperand::cast(right)) == 0) {
1524 __ cmp(ToRegister(instr->temp()), Immediate(0));
1525 DeoptimizeIf(less, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001526 }
1527 } else {
1528 // Test the non-zero operand for negative sign.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001529 __ or_(ToRegister(instr->temp()), ToOperand(right));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001530 DeoptimizeIf(sign, instr->environment());
1531 }
1532 __ bind(&done);
1533 }
1534}
1535
1536
1537void LCodeGen::DoBitI(LBitI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001538 LOperand* left = instr->left();
1539 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001540 ASSERT(left->Equals(instr->result()));
1541 ASSERT(left->IsRegister());
1542
1543 if (right->IsConstantOperand()) {
1544 int right_operand = ToInteger32(LConstantOperand::cast(right));
1545 switch (instr->op()) {
1546 case Token::BIT_AND:
1547 __ and_(ToRegister(left), right_operand);
1548 break;
1549 case Token::BIT_OR:
1550 __ or_(ToRegister(left), right_operand);
1551 break;
1552 case Token::BIT_XOR:
1553 __ xor_(ToRegister(left), right_operand);
1554 break;
1555 default:
1556 UNREACHABLE();
1557 break;
1558 }
1559 } else {
1560 switch (instr->op()) {
1561 case Token::BIT_AND:
1562 __ and_(ToRegister(left), ToOperand(right));
1563 break;
1564 case Token::BIT_OR:
1565 __ or_(ToRegister(left), ToOperand(right));
1566 break;
1567 case Token::BIT_XOR:
1568 __ xor_(ToRegister(left), ToOperand(right));
1569 break;
1570 default:
1571 UNREACHABLE();
1572 break;
1573 }
1574 }
1575}
1576
1577
1578void LCodeGen::DoShiftI(LShiftI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001579 LOperand* left = instr->left();
1580 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001581 ASSERT(left->Equals(instr->result()));
1582 ASSERT(left->IsRegister());
1583 if (right->IsRegister()) {
1584 ASSERT(ToRegister(right).is(ecx));
1585
1586 switch (instr->op()) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00001587 case Token::ROR:
1588 __ ror_cl(ToRegister(left));
1589 if (instr->can_deopt()) {
1590 __ test(ToRegister(left), Immediate(0x80000000));
1591 DeoptimizeIf(not_zero, instr->environment());
1592 }
1593 break;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001594 case Token::SAR:
1595 __ sar_cl(ToRegister(left));
1596 break;
1597 case Token::SHR:
1598 __ shr_cl(ToRegister(left));
1599 if (instr->can_deopt()) {
1600 __ test(ToRegister(left), Immediate(0x80000000));
1601 DeoptimizeIf(not_zero, instr->environment());
1602 }
1603 break;
1604 case Token::SHL:
1605 __ shl_cl(ToRegister(left));
1606 break;
1607 default:
1608 UNREACHABLE();
1609 break;
1610 }
1611 } else {
1612 int value = ToInteger32(LConstantOperand::cast(right));
1613 uint8_t shift_count = static_cast<uint8_t>(value & 0x1F);
1614 switch (instr->op()) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00001615 case Token::ROR:
1616 if (shift_count == 0 && instr->can_deopt()) {
1617 __ test(ToRegister(left), Immediate(0x80000000));
1618 DeoptimizeIf(not_zero, instr->environment());
1619 } else {
1620 __ ror(ToRegister(left), shift_count);
1621 }
1622 break;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001623 case Token::SAR:
1624 if (shift_count != 0) {
1625 __ sar(ToRegister(left), shift_count);
1626 }
1627 break;
1628 case Token::SHR:
1629 if (shift_count == 0 && instr->can_deopt()) {
1630 __ test(ToRegister(left), Immediate(0x80000000));
1631 DeoptimizeIf(not_zero, instr->environment());
1632 } else {
1633 __ shr(ToRegister(left), shift_count);
1634 }
1635 break;
1636 case Token::SHL:
1637 if (shift_count != 0) {
1638 __ shl(ToRegister(left), shift_count);
1639 }
1640 break;
1641 default:
1642 UNREACHABLE();
1643 break;
1644 }
1645 }
1646}
1647
1648
1649void LCodeGen::DoSubI(LSubI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001650 LOperand* left = instr->left();
1651 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001652 ASSERT(left->Equals(instr->result()));
1653
1654 if (right->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00001655 __ sub(ToOperand(left), ToInteger32Immediate(right));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001656 } else {
1657 __ sub(ToRegister(left), ToOperand(right));
1658 }
1659 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1660 DeoptimizeIf(overflow, instr->environment());
1661 }
1662}
1663
1664
1665void LCodeGen::DoConstantI(LConstantI* instr) {
1666 ASSERT(instr->result()->IsRegister());
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001667 __ Set(ToRegister(instr->result()), Immediate(instr->value()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001668}
1669
1670
1671void LCodeGen::DoConstantD(LConstantD* instr) {
1672 ASSERT(instr->result()->IsDoubleRegister());
1673 XMMRegister res = ToDoubleRegister(instr->result());
1674 double v = instr->value();
1675 // Use xor to produce +0.0 in a fast and compact way, but avoid to
1676 // do so if the constant is -0.0.
1677 if (BitCast<uint64_t, double>(v) == 0) {
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00001678 __ xorps(res, res);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001679 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001680 Register temp = ToRegister(instr->temp());
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001681 uint64_t int_val = BitCast<uint64_t, double>(v);
1682 int32_t lower = static_cast<int32_t>(int_val);
1683 int32_t upper = static_cast<int32_t>(int_val >> (kBitsPerInt));
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00001684 if (CpuFeatures::IsSupported(SSE4_1)) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001685 CpuFeatures::Scope scope1(SSE2);
1686 CpuFeatures::Scope scope2(SSE4_1);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001687 if (lower != 0) {
1688 __ Set(temp, Immediate(lower));
1689 __ movd(res, Operand(temp));
1690 __ Set(temp, Immediate(upper));
1691 __ pinsrd(res, Operand(temp), 1);
1692 } else {
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00001693 __ xorps(res, res);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001694 __ Set(temp, Immediate(upper));
1695 __ pinsrd(res, Operand(temp), 1);
1696 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001697 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001698 CpuFeatures::Scope scope(SSE2);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001699 __ Set(temp, Immediate(upper));
1700 __ movd(res, Operand(temp));
1701 __ psllq(res, 32);
1702 if (lower != 0) {
1703 __ Set(temp, Immediate(lower));
1704 __ movd(xmm0, Operand(temp));
1705 __ por(res, xmm0);
1706 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001707 }
1708 }
1709}
1710
1711
1712void LCodeGen::DoConstantT(LConstantT* instr) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00001713 Register reg = ToRegister(instr->result());
1714 Handle<Object> handle = instr->value();
1715 if (handle->IsHeapObject()) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00001716 __ LoadHeapObject(reg, Handle<HeapObject>::cast(handle));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00001717 } else {
1718 __ Set(reg, Immediate(handle));
1719 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001720}
1721
1722
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001723void LCodeGen::DoJSArrayLength(LJSArrayLength* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001724 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001725 Register array = ToRegister(instr->value());
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001726 __ mov(result, FieldOperand(array, JSArray::kLengthOffset));
1727}
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001728
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001729
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00001730void LCodeGen::DoFixedArrayBaseLength(
1731 LFixedArrayBaseLength* instr) {
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001732 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001733 Register array = ToRegister(instr->value());
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00001734 __ mov(result, FieldOperand(array, FixedArrayBase::kLengthOffset));
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00001735}
1736
1737
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00001738void LCodeGen::DoMapEnumLength(LMapEnumLength* instr) {
1739 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001740 Register map = ToRegister(instr->value());
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00001741 __ EnumLength(result, map);
1742}
1743
1744
whesse@chromium.org7b260152011-06-20 15:33:18 +00001745void LCodeGen::DoElementsKind(LElementsKind* instr) {
1746 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001747 Register input = ToRegister(instr->value());
whesse@chromium.org7b260152011-06-20 15:33:18 +00001748
1749 // Load map into |result|.
1750 __ mov(result, FieldOperand(input, HeapObject::kMapOffset));
1751 // Load the map's "bit field 2" into |result|. We only need the first byte,
1752 // but the following masking takes care of that anyway.
1753 __ mov(result, FieldOperand(result, Map::kBitField2Offset));
1754 // Retrieve elements_kind from bit field 2.
1755 __ and_(result, Map::kElementsKindMask);
1756 __ shr(result, Map::kElementsKindShift);
1757}
1758
1759
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001760void LCodeGen::DoValueOf(LValueOf* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001761 Register input = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001762 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001763 Register map = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001764 ASSERT(input.is(result));
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001765
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001766 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001767 // If the object is a smi return the object.
whesse@chromium.org7b260152011-06-20 15:33:18 +00001768 __ JumpIfSmi(input, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001769
1770 // If the object is not a value type, return the object.
1771 __ CmpObjectType(input, JS_VALUE_TYPE, map);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001772 __ j(not_equal, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001773 __ mov(result, FieldOperand(input, JSValue::kValueOffset));
1774
1775 __ bind(&done);
1776}
1777
1778
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001779void LCodeGen::DoDateField(LDateField* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001780 Register object = ToRegister(instr->date());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001781 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001782 Register scratch = ToRegister(instr->temp());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001783 Smi* index = instr->index();
1784 Label runtime, done;
1785 ASSERT(object.is(result));
1786 ASSERT(object.is(eax));
1787
mstarzinger@chromium.orgde886792012-09-11 13:22:37 +00001788 __ test(object, Immediate(kSmiTagMask));
1789 DeoptimizeIf(zero, instr->environment());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001790 __ CmpObjectType(object, JS_DATE_TYPE, scratch);
mstarzinger@chromium.orgde886792012-09-11 13:22:37 +00001791 DeoptimizeIf(not_equal, instr->environment());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001792
1793 if (index->value() == 0) {
1794 __ mov(result, FieldOperand(object, JSDate::kValueOffset));
1795 } else {
1796 if (index->value() < JSDate::kFirstUncachedField) {
1797 ExternalReference stamp = ExternalReference::date_cache_stamp(isolate());
1798 __ mov(scratch, Operand::StaticVariable(stamp));
1799 __ cmp(scratch, FieldOperand(object, JSDate::kCacheStampOffset));
1800 __ j(not_equal, &runtime, Label::kNear);
1801 __ mov(result, FieldOperand(object, JSDate::kValueOffset +
1802 kPointerSize * index->value()));
1803 __ jmp(&done);
1804 }
1805 __ bind(&runtime);
1806 __ PrepareCallCFunction(2, scratch);
1807 __ mov(Operand(esp, 0), object);
1808 __ mov(Operand(esp, 1 * kPointerSize), Immediate(index));
1809 __ CallCFunction(ExternalReference::get_date_field_function(isolate()), 2);
1810 __ bind(&done);
1811 }
1812}
1813
1814
mstarzinger@chromium.org32280cf2012-12-06 17:32:37 +00001815void LCodeGen::DoSeqStringSetChar(LSeqStringSetChar* instr) {
1816 SeqStringSetCharGenerator::Generate(masm(),
1817 instr->encoding(),
1818 ToRegister(instr->string()),
1819 ToRegister(instr->index()),
1820 ToRegister(instr->value()));
1821}
1822
1823
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001824void LCodeGen::DoBitNotI(LBitNotI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001825 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001826 ASSERT(input->Equals(instr->result()));
1827 __ not_(ToRegister(input));
1828}
1829
1830
1831void LCodeGen::DoThrow(LThrow* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001832 __ push(ToOperand(instr->value()));
1833 ASSERT(ToRegister(instr->context()).is(esi));
1834 CallRuntime(Runtime::kThrow, 1, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001835
1836 if (FLAG_debug_code) {
1837 Comment("Unreachable code.");
1838 __ int3();
1839 }
1840}
1841
1842
1843void LCodeGen::DoAddI(LAddI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001844 LOperand* left = instr->left();
1845 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001846 ASSERT(left->Equals(instr->result()));
1847
1848 if (right->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00001849 __ add(ToOperand(left), ToInteger32Immediate(right));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001850 } else {
1851 __ add(ToRegister(left), ToOperand(right));
1852 }
1853
1854 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1855 DeoptimizeIf(overflow, instr->environment());
1856 }
1857}
1858
1859
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +00001860void LCodeGen::DoMathMinMax(LMathMinMax* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001861 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001862 LOperand* left = instr->left();
1863 LOperand* right = instr->right();
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +00001864 ASSERT(left->Equals(instr->result()));
1865 HMathMinMax::Operation operation = instr->hydrogen()->operation();
1866 if (instr->hydrogen()->representation().IsInteger32()) {
1867 Label return_left;
1868 Condition condition = (operation == HMathMinMax::kMathMin)
1869 ? less_equal
1870 : greater_equal;
1871 if (right->IsConstantOperand()) {
1872 Operand left_op = ToOperand(left);
1873 Immediate right_imm = ToInteger32Immediate(right);
1874 __ cmp(left_op, right_imm);
1875 __ j(condition, &return_left, Label::kNear);
1876 __ mov(left_op, right_imm);
1877 } else {
1878 Register left_reg = ToRegister(left);
1879 Operand right_op = ToOperand(right);
1880 __ cmp(left_reg, right_op);
1881 __ j(condition, &return_left, Label::kNear);
1882 __ mov(left_reg, right_op);
1883 }
1884 __ bind(&return_left);
1885 } else {
1886 ASSERT(instr->hydrogen()->representation().IsDouble());
1887 Label check_nan_left, check_zero, return_left, return_right;
1888 Condition condition = (operation == HMathMinMax::kMathMin) ? below : above;
1889 XMMRegister left_reg = ToDoubleRegister(left);
1890 XMMRegister right_reg = ToDoubleRegister(right);
1891 __ ucomisd(left_reg, right_reg);
1892 __ j(parity_even, &check_nan_left, Label::kNear); // At least one NaN.
1893 __ j(equal, &check_zero, Label::kNear); // left == right.
1894 __ j(condition, &return_left, Label::kNear);
1895 __ jmp(&return_right, Label::kNear);
1896
1897 __ bind(&check_zero);
1898 XMMRegister xmm_scratch = xmm0;
1899 __ xorps(xmm_scratch, xmm_scratch);
1900 __ ucomisd(left_reg, xmm_scratch);
1901 __ j(not_equal, &return_left, Label::kNear); // left == right != 0.
1902 // At this point, both left and right are either 0 or -0.
1903 if (operation == HMathMinMax::kMathMin) {
1904 __ orpd(left_reg, right_reg);
1905 } else {
1906 // Since we operate on +0 and/or -0, addsd and andsd have the same effect.
1907 __ addsd(left_reg, right_reg);
1908 }
1909 __ jmp(&return_left, Label::kNear);
1910
1911 __ bind(&check_nan_left);
1912 __ ucomisd(left_reg, left_reg); // NaN check.
1913 __ j(parity_even, &return_left, Label::kNear); // left == NaN.
1914 __ bind(&return_right);
1915 __ movsd(left_reg, right_reg);
1916
1917 __ bind(&return_left);
1918 }
1919}
1920
1921
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001922void LCodeGen::DoArithmeticD(LArithmeticD* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001923 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001924 XMMRegister left = ToDoubleRegister(instr->left());
1925 XMMRegister right = ToDoubleRegister(instr->right());
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001926 XMMRegister result = ToDoubleRegister(instr->result());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001927 // Modulo uses a fixed result register.
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001928 ASSERT(instr->op() == Token::MOD || left.is(result));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001929 switch (instr->op()) {
1930 case Token::ADD:
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001931 __ addsd(left, right);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001932 break;
1933 case Token::SUB:
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001934 __ subsd(left, right);
1935 break;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001936 case Token::MUL:
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001937 __ mulsd(left, right);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001938 break;
1939 case Token::DIV:
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001940 __ divsd(left, right);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001941 break;
1942 case Token::MOD: {
1943 // Pass two doubles as arguments on the stack.
1944 __ PrepareCallCFunction(4, eax);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001945 __ movdbl(Operand(esp, 0 * kDoubleSize), left);
1946 __ movdbl(Operand(esp, 1 * kDoubleSize), right);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00001947 __ CallCFunction(
1948 ExternalReference::double_fp_operation(Token::MOD, isolate()),
1949 4);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001950
1951 // Return value is in st(0) on ia32.
1952 // Store it into the (fixed) result register.
1953 __ sub(Operand(esp), Immediate(kDoubleSize));
1954 __ fstp_d(Operand(esp, 0));
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001955 __ movdbl(result, Operand(esp, 0));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001956 __ add(Operand(esp), Immediate(kDoubleSize));
1957 break;
1958 }
1959 default:
1960 UNREACHABLE();
1961 break;
1962 }
1963}
1964
1965
1966void LCodeGen::DoArithmeticT(LArithmeticT* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001967 ASSERT(ToRegister(instr->context()).is(esi));
1968 ASSERT(ToRegister(instr->left()).is(edx));
1969 ASSERT(ToRegister(instr->right()).is(eax));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001970 ASSERT(ToRegister(instr->result()).is(eax));
1971
danno@chromium.org40cb8782011-05-25 07:58:50 +00001972 BinaryOpStub stub(instr->op(), NO_OVERWRITE);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001973 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
whesse@chromium.org030d38e2011-07-13 13:23:34 +00001974 __ nop(); // Signals no inlined code.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001975}
1976
1977
1978int LCodeGen::GetNextEmittedBlock(int block) {
1979 for (int i = block + 1; i < graph()->blocks()->length(); ++i) {
1980 LLabel* label = chunk_->GetLabel(i);
1981 if (!label->HasReplacement()) return i;
1982 }
1983 return -1;
1984}
1985
1986
1987void LCodeGen::EmitBranch(int left_block, int right_block, Condition cc) {
1988 int next_block = GetNextEmittedBlock(current_block_);
1989 right_block = chunk_->LookupDestination(right_block);
1990 left_block = chunk_->LookupDestination(left_block);
1991
1992 if (right_block == left_block) {
1993 EmitGoto(left_block);
1994 } else if (left_block == next_block) {
1995 __ j(NegateCondition(cc), chunk_->GetAssemblyLabel(right_block));
1996 } else if (right_block == next_block) {
1997 __ j(cc, chunk_->GetAssemblyLabel(left_block));
1998 } else {
1999 __ j(cc, chunk_->GetAssemblyLabel(left_block));
2000 __ jmp(chunk_->GetAssemblyLabel(right_block));
2001 }
2002}
2003
2004
2005void LCodeGen::DoBranch(LBranch* instr) {
2006 int true_block = chunk_->LookupDestination(instr->true_block_id());
2007 int false_block = chunk_->LookupDestination(instr->false_block_id());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002008 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002009
ricow@chromium.org4f693d62011-07-04 14:01:31 +00002010 Representation r = instr->hydrogen()->value()->representation();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002011 if (r.IsInteger32()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002012 Register reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002013 __ test(reg, Operand(reg));
2014 EmitBranch(true_block, false_block, not_zero);
2015 } else if (r.IsDouble()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002016 XMMRegister reg = ToDoubleRegister(instr->value());
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00002017 __ xorps(xmm0, xmm0);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002018 __ ucomisd(reg, xmm0);
2019 EmitBranch(true_block, false_block, not_equal);
2020 } else {
2021 ASSERT(r.IsTagged());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002022 Register reg = ToRegister(instr->value());
lrn@chromium.orgd4e9e222011-08-03 12:01:58 +00002023 HType type = instr->hydrogen()->value()->type();
2024 if (type.IsBoolean()) {
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002025 __ cmp(reg, factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002026 EmitBranch(true_block, false_block, equal);
lrn@chromium.orgd4e9e222011-08-03 12:01:58 +00002027 } else if (type.IsSmi()) {
2028 __ test(reg, Operand(reg));
2029 EmitBranch(true_block, false_block, not_equal);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002030 } else {
2031 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2032 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2033
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002034 ToBooleanStub::Types expected = instr->hydrogen()->expected_input_types();
2035 // Avoid deopts in the case where we've never executed this path before.
2036 if (expected.IsEmpty()) expected = ToBooleanStub::all_types();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002037
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002038 if (expected.Contains(ToBooleanStub::UNDEFINED)) {
2039 // undefined -> false.
2040 __ cmp(reg, factory()->undefined_value());
2041 __ j(equal, false_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002042 }
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002043 if (expected.Contains(ToBooleanStub::BOOLEAN)) {
2044 // true -> true.
2045 __ cmp(reg, factory()->true_value());
2046 __ j(equal, true_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002047 // false -> false.
2048 __ cmp(reg, factory()->false_value());
2049 __ j(equal, false_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002050 }
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002051 if (expected.Contains(ToBooleanStub::NULL_TYPE)) {
2052 // 'null' -> false.
2053 __ cmp(reg, factory()->null_value());
2054 __ j(equal, false_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002055 }
2056
2057 if (expected.Contains(ToBooleanStub::SMI)) {
2058 // Smis: 0 -> false, all other -> true.
2059 __ test(reg, Operand(reg));
2060 __ j(equal, false_label);
2061 __ JumpIfSmi(reg, true_label);
2062 } else if (expected.NeedsMap()) {
2063 // If we need a map later and have a Smi -> deopt.
2064 __ test(reg, Immediate(kSmiTagMask));
2065 DeoptimizeIf(zero, instr->environment());
2066 }
2067
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00002068 Register map = no_reg; // Keep the compiler happy.
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002069 if (expected.NeedsMap()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002070 map = ToRegister(instr->temp());
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002071 ASSERT(!map.is(reg));
2072 __ mov(map, FieldOperand(reg, HeapObject::kMapOffset));
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00002073
2074 if (expected.CanBeUndetectable()) {
2075 // Undetectable -> false.
2076 __ test_b(FieldOperand(map, Map::kBitFieldOffset),
2077 1 << Map::kIsUndetectable);
2078 __ j(not_zero, false_label);
2079 }
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002080 }
2081
2082 if (expected.Contains(ToBooleanStub::SPEC_OBJECT)) {
2083 // spec object -> true.
2084 __ CmpInstanceType(map, FIRST_SPEC_OBJECT_TYPE);
2085 __ j(above_equal, true_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002086 }
2087
2088 if (expected.Contains(ToBooleanStub::STRING)) {
2089 // String value -> false iff empty.
2090 Label not_string;
2091 __ CmpInstanceType(map, FIRST_NONSTRING_TYPE);
2092 __ j(above_equal, &not_string, Label::kNear);
2093 __ cmp(FieldOperand(reg, String::kLengthOffset), Immediate(0));
2094 __ j(not_zero, true_label);
2095 __ jmp(false_label);
2096 __ bind(&not_string);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002097 }
2098
2099 if (expected.Contains(ToBooleanStub::HEAP_NUMBER)) {
2100 // heap number -> false iff +0, -0, or NaN.
2101 Label not_heap_number;
2102 __ cmp(FieldOperand(reg, HeapObject::kMapOffset),
2103 factory()->heap_number_map());
2104 __ j(not_equal, &not_heap_number, Label::kNear);
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +00002105 __ xorps(xmm0, xmm0);
2106 __ ucomisd(xmm0, FieldOperand(reg, HeapNumber::kValueOffset));
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002107 __ j(zero, false_label);
2108 __ jmp(true_label);
2109 __ bind(&not_heap_number);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002110 }
2111
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00002112 // We've seen something for the first time -> deopt.
2113 DeoptimizeIf(no_condition, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002114 }
2115 }
2116}
2117
2118
ager@chromium.org04921a82011-06-27 13:21:41 +00002119void LCodeGen::EmitGoto(int block) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002120 block = chunk_->LookupDestination(block);
2121 int next_block = GetNextEmittedBlock(current_block_);
2122 if (block != next_block) {
ager@chromium.org04921a82011-06-27 13:21:41 +00002123 __ jmp(chunk_->GetAssemblyLabel(block));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002124 }
2125}
2126
2127
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002128void LCodeGen::DoGoto(LGoto* instr) {
ager@chromium.org04921a82011-06-27 13:21:41 +00002129 EmitGoto(instr->block_id());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002130}
2131
2132
2133Condition LCodeGen::TokenToCondition(Token::Value op, bool is_unsigned) {
2134 Condition cond = no_condition;
2135 switch (op) {
2136 case Token::EQ:
2137 case Token::EQ_STRICT:
2138 cond = equal;
2139 break;
2140 case Token::LT:
2141 cond = is_unsigned ? below : less;
2142 break;
2143 case Token::GT:
2144 cond = is_unsigned ? above : greater;
2145 break;
2146 case Token::LTE:
2147 cond = is_unsigned ? below_equal : less_equal;
2148 break;
2149 case Token::GTE:
2150 cond = is_unsigned ? above_equal : greater_equal;
2151 break;
2152 case Token::IN:
2153 case Token::INSTANCEOF:
2154 default:
2155 UNREACHABLE();
2156 }
2157 return cond;
2158}
2159
2160
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002161void LCodeGen::DoCmpIDAndBranch(LCmpIDAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002162 LOperand* left = instr->left();
2163 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002164 int false_block = chunk_->LookupDestination(instr->false_block_id());
2165 int true_block = chunk_->LookupDestination(instr->true_block_id());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002166 Condition cc = TokenToCondition(instr->op(), instr->is_double());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002167
2168 if (left->IsConstantOperand() && right->IsConstantOperand()) {
2169 // We can statically evaluate the comparison.
2170 double left_val = ToDouble(LConstantOperand::cast(left));
2171 double right_val = ToDouble(LConstantOperand::cast(right));
2172 int next_block =
2173 EvalComparison(instr->op(), left_val, right_val) ? true_block
2174 : false_block;
2175 EmitGoto(next_block);
2176 } else {
2177 if (instr->is_double()) {
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00002178 CpuFeatures::Scope scope(SSE2);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002179 // Don't base result on EFLAGS when a NaN is involved. Instead
2180 // jump to the false block.
2181 __ ucomisd(ToDoubleRegister(left), ToDoubleRegister(right));
2182 __ j(parity_even, chunk_->GetAssemblyLabel(false_block));
2183 } else {
2184 if (right->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00002185 __ cmp(ToRegister(left), ToInteger32Immediate(right));
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002186 } else if (left->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00002187 __ cmp(ToOperand(right), ToInteger32Immediate(left));
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002188 // We transposed the operands. Reverse the condition.
2189 cc = ReverseCondition(cc);
2190 } else {
2191 __ cmp(ToRegister(left), ToOperand(right));
2192 }
2193 }
2194 EmitBranch(true_block, false_block, cc);
2195 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002196}
2197
2198
lrn@chromium.orgac2828d2011-06-23 06:29:21 +00002199void LCodeGen::DoCmpObjectEqAndBranch(LCmpObjectEqAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002200 Register left = ToRegister(instr->left());
2201 Operand right = ToOperand(instr->right());
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002202 int false_block = chunk_->LookupDestination(instr->false_block_id());
2203 int true_block = chunk_->LookupDestination(instr->true_block_id());
2204
2205 __ cmp(left, Operand(right));
2206 EmitBranch(true_block, false_block, equal);
2207}
2208
2209
whesse@chromium.org7b260152011-06-20 15:33:18 +00002210void LCodeGen::DoCmpConstantEqAndBranch(LCmpConstantEqAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002211 Register left = ToRegister(instr->left());
whesse@chromium.org7b260152011-06-20 15:33:18 +00002212 int true_block = chunk_->LookupDestination(instr->true_block_id());
2213 int false_block = chunk_->LookupDestination(instr->false_block_id());
2214
2215 __ cmp(left, instr->hydrogen()->right());
2216 EmitBranch(true_block, false_block, equal);
2217}
2218
2219
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002220void LCodeGen::DoIsNilAndBranch(LIsNilAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002221 Register reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002222 int false_block = chunk_->LookupDestination(instr->false_block_id());
2223
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002224 // If the expression is known to be untagged or a smi, then it's definitely
2225 // not null, and it can't be a an undetectable object.
2226 if (instr->hydrogen()->representation().IsSpecialization() ||
2227 instr->hydrogen()->type().IsSmi()) {
2228 EmitGoto(false_block);
2229 return;
2230 }
2231
2232 int true_block = chunk_->LookupDestination(instr->true_block_id());
2233 Handle<Object> nil_value = instr->nil() == kNullValue ?
2234 factory()->null_value() :
2235 factory()->undefined_value();
2236 __ cmp(reg, nil_value);
2237 if (instr->kind() == kStrictEquality) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002238 EmitBranch(true_block, false_block, equal);
2239 } else {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002240 Handle<Object> other_nil_value = instr->nil() == kNullValue ?
2241 factory()->undefined_value() :
2242 factory()->null_value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002243 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2244 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2245 __ j(equal, true_label);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002246 __ cmp(reg, other_nil_value);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002247 __ j(equal, true_label);
whesse@chromium.org7b260152011-06-20 15:33:18 +00002248 __ JumpIfSmi(reg, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002249 // Check for undetectable objects by looking in the bit field in
2250 // the map. The object has already been smi checked.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002251 Register scratch = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002252 __ mov(scratch, FieldOperand(reg, HeapObject::kMapOffset));
2253 __ movzx_b(scratch, FieldOperand(scratch, Map::kBitFieldOffset));
2254 __ test(scratch, Immediate(1 << Map::kIsUndetectable));
2255 EmitBranch(true_block, false_block, not_zero);
2256 }
2257}
2258
2259
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002260Condition LCodeGen::EmitIsObject(Register input,
2261 Register temp1,
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002262 Label* is_not_object,
2263 Label* is_object) {
whesse@chromium.org7b260152011-06-20 15:33:18 +00002264 __ JumpIfSmi(input, is_not_object);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002265
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002266 __ cmp(input, isolate()->factory()->null_value());
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002267 __ j(equal, is_object);
2268
2269 __ mov(temp1, FieldOperand(input, HeapObject::kMapOffset));
2270 // Undetectable objects behave like undefined.
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002271 __ test_b(FieldOperand(temp1, Map::kBitFieldOffset),
2272 1 << Map::kIsUndetectable);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002273 __ j(not_zero, is_not_object);
2274
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002275 __ movzx_b(temp1, FieldOperand(temp1, Map::kInstanceTypeOffset));
2276 __ cmp(temp1, FIRST_NONCALLABLE_SPEC_OBJECT_TYPE);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002277 __ j(below, is_not_object);
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002278 __ cmp(temp1, LAST_NONCALLABLE_SPEC_OBJECT_TYPE);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002279 return below_equal;
2280}
2281
2282
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002283void LCodeGen::DoIsObjectAndBranch(LIsObjectAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002284 Register reg = ToRegister(instr->value());
2285 Register temp = ToRegister(instr->temp());
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002286
2287 int true_block = chunk_->LookupDestination(instr->true_block_id());
2288 int false_block = chunk_->LookupDestination(instr->false_block_id());
2289 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2290 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2291
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002292 Condition true_cond = EmitIsObject(reg, temp, false_label, true_label);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002293
2294 EmitBranch(true_block, false_block, true_cond);
2295}
2296
2297
erikcorry0ad885c2011-11-21 13:51:57 +00002298Condition LCodeGen::EmitIsString(Register input,
2299 Register temp1,
2300 Label* is_not_string) {
2301 __ JumpIfSmi(input, is_not_string);
2302
2303 Condition cond = masm_->IsObjectStringType(input, temp1, temp1);
2304
2305 return cond;
2306}
2307
2308
2309void LCodeGen::DoIsStringAndBranch(LIsStringAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002310 Register reg = ToRegister(instr->value());
2311 Register temp = ToRegister(instr->temp());
erikcorry0ad885c2011-11-21 13:51:57 +00002312
2313 int true_block = chunk_->LookupDestination(instr->true_block_id());
2314 int false_block = chunk_->LookupDestination(instr->false_block_id());
2315 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2316
2317 Condition true_cond = EmitIsString(reg, temp, false_label);
2318
2319 EmitBranch(true_block, false_block, true_cond);
2320}
2321
2322
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002323void LCodeGen::DoIsSmiAndBranch(LIsSmiAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002324 Operand input = ToOperand(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002325
2326 int true_block = chunk_->LookupDestination(instr->true_block_id());
2327 int false_block = chunk_->LookupDestination(instr->false_block_id());
2328
2329 __ test(input, Immediate(kSmiTagMask));
2330 EmitBranch(true_block, false_block, zero);
2331}
2332
2333
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002334void LCodeGen::DoIsUndetectableAndBranch(LIsUndetectableAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002335 Register input = ToRegister(instr->value());
2336 Register temp = ToRegister(instr->temp());
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002337
2338 int true_block = chunk_->LookupDestination(instr->true_block_id());
2339 int false_block = chunk_->LookupDestination(instr->false_block_id());
2340
2341 STATIC_ASSERT(kSmiTag == 0);
whesse@chromium.org7b260152011-06-20 15:33:18 +00002342 __ JumpIfSmi(input, chunk_->GetAssemblyLabel(false_block));
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002343 __ mov(temp, FieldOperand(input, HeapObject::kMapOffset));
2344 __ test_b(FieldOperand(temp, Map::kBitFieldOffset),
2345 1 << Map::kIsUndetectable);
2346 EmitBranch(true_block, false_block, not_zero);
2347}
2348
2349
erikcorry0ad885c2011-11-21 13:51:57 +00002350static Condition ComputeCompareCondition(Token::Value op) {
2351 switch (op) {
2352 case Token::EQ_STRICT:
2353 case Token::EQ:
2354 return equal;
2355 case Token::LT:
2356 return less;
2357 case Token::GT:
2358 return greater;
2359 case Token::LTE:
2360 return less_equal;
2361 case Token::GTE:
2362 return greater_equal;
2363 default:
2364 UNREACHABLE();
2365 return no_condition;
2366 }
2367}
2368
2369
2370void LCodeGen::DoStringCompareAndBranch(LStringCompareAndBranch* instr) {
2371 Token::Value op = instr->op();
2372 int true_block = chunk_->LookupDestination(instr->true_block_id());
2373 int false_block = chunk_->LookupDestination(instr->false_block_id());
2374
2375 Handle<Code> ic = CompareIC::GetUninitialized(op);
2376 CallCode(ic, RelocInfo::CODE_TARGET, instr);
2377
2378 Condition condition = ComputeCompareCondition(op);
2379 __ test(eax, Operand(eax));
2380
2381 EmitBranch(true_block, false_block, condition);
2382}
2383
2384
ricow@chromium.org4f693d62011-07-04 14:01:31 +00002385static InstanceType TestType(HHasInstanceTypeAndBranch* instr) {
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00002386 InstanceType from = instr->from();
2387 InstanceType to = instr->to();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002388 if (from == FIRST_TYPE) return to;
2389 ASSERT(from == to || to == LAST_TYPE);
2390 return from;
2391}
2392
2393
ricow@chromium.org4f693d62011-07-04 14:01:31 +00002394static Condition BranchCondition(HHasInstanceTypeAndBranch* instr) {
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00002395 InstanceType from = instr->from();
2396 InstanceType to = instr->to();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002397 if (from == to) return equal;
2398 if (to == LAST_TYPE) return above_equal;
2399 if (from == FIRST_TYPE) return below_equal;
2400 UNREACHABLE();
2401 return equal;
2402}
2403
2404
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002405void LCodeGen::DoHasInstanceTypeAndBranch(LHasInstanceTypeAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002406 Register input = ToRegister(instr->value());
2407 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002408
2409 int true_block = chunk_->LookupDestination(instr->true_block_id());
2410 int false_block = chunk_->LookupDestination(instr->false_block_id());
2411
2412 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2413
whesse@chromium.org7b260152011-06-20 15:33:18 +00002414 __ JumpIfSmi(input, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002415
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00002416 __ CmpObjectType(input, TestType(instr->hydrogen()), temp);
2417 EmitBranch(true_block, false_block, BranchCondition(instr->hydrogen()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002418}
2419
2420
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002421void LCodeGen::DoGetCachedArrayIndex(LGetCachedArrayIndex* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002422 Register input = ToRegister(instr->value());
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002423 Register result = ToRegister(instr->result());
2424
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00002425 __ AssertString(input);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002426
2427 __ mov(result, FieldOperand(input, String::kHashFieldOffset));
2428 __ IndexFromHash(result, result);
2429}
2430
2431
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002432void LCodeGen::DoHasCachedArrayIndexAndBranch(
2433 LHasCachedArrayIndexAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002434 Register input = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002435
2436 int true_block = chunk_->LookupDestination(instr->true_block_id());
2437 int false_block = chunk_->LookupDestination(instr->false_block_id());
2438
2439 __ test(FieldOperand(input, String::kHashFieldOffset),
2440 Immediate(String::kContainsCachedArrayIndexMask));
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002441 EmitBranch(true_block, false_block, equal);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002442}
2443
2444
2445// Branches to a label or falls through with the answer in the z flag. Trashes
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002446// the temp registers, but not the input.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002447void LCodeGen::EmitClassOfTest(Label* is_true,
2448 Label* is_false,
2449 Handle<String>class_name,
2450 Register input,
2451 Register temp,
2452 Register temp2) {
2453 ASSERT(!input.is(temp));
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002454 ASSERT(!input.is(temp2));
2455 ASSERT(!temp.is(temp2));
whesse@chromium.org7b260152011-06-20 15:33:18 +00002456 __ JumpIfSmi(input, is_false);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002457
jkummerow@chromium.org59297c72013-01-09 16:32:23 +00002458 if (class_name->IsOneByteEqualTo(STATIC_ASCII_VECTOR("Function"))) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002459 // Assuming the following assertions, we can use the same compares to test
2460 // for both being a function type and being in the object type range.
2461 STATIC_ASSERT(NUM_OF_CALLABLE_SPEC_OBJECT_TYPES == 2);
2462 STATIC_ASSERT(FIRST_NONCALLABLE_SPEC_OBJECT_TYPE ==
2463 FIRST_SPEC_OBJECT_TYPE + 1);
2464 STATIC_ASSERT(LAST_NONCALLABLE_SPEC_OBJECT_TYPE ==
2465 LAST_SPEC_OBJECT_TYPE - 1);
2466 STATIC_ASSERT(LAST_SPEC_OBJECT_TYPE == LAST_TYPE);
2467 __ CmpObjectType(input, FIRST_SPEC_OBJECT_TYPE, temp);
2468 __ j(below, is_false);
2469 __ j(equal, is_true);
2470 __ CmpInstanceType(temp, LAST_SPEC_OBJECT_TYPE);
2471 __ j(equal, is_true);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002472 } else {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002473 // Faster code path to avoid two compares: subtract lower bound from the
2474 // actual type and do a signed compare with the width of the type range.
2475 __ mov(temp, FieldOperand(input, HeapObject::kMapOffset));
yangguo@chromium.org56454712012-02-16 15:33:53 +00002476 __ movzx_b(temp2, FieldOperand(temp, Map::kInstanceTypeOffset));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002477 __ sub(Operand(temp2), Immediate(FIRST_NONCALLABLE_SPEC_OBJECT_TYPE));
yangguo@chromium.org56454712012-02-16 15:33:53 +00002478 __ cmp(Operand(temp2), Immediate(LAST_NONCALLABLE_SPEC_OBJECT_TYPE -
2479 FIRST_NONCALLABLE_SPEC_OBJECT_TYPE));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002480 __ j(above, is_false);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002481 }
2482
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002483 // Now we are in the FIRST-LAST_NONCALLABLE_SPEC_OBJECT_TYPE range.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002484 // Check if the constructor in the map is a function.
2485 __ mov(temp, FieldOperand(temp, Map::kConstructorOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002486 // Objects with a non-function constructor have class 'Object'.
2487 __ CmpObjectType(temp, JS_FUNCTION_TYPE, temp2);
jkummerow@chromium.org59297c72013-01-09 16:32:23 +00002488 if (class_name->IsOneByteEqualTo(STATIC_ASCII_VECTOR("Object"))) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002489 __ j(not_equal, is_true);
2490 } else {
2491 __ j(not_equal, is_false);
2492 }
2493
2494 // temp now contains the constructor function. Grab the
2495 // instance class name from there.
2496 __ mov(temp, FieldOperand(temp, JSFunction::kSharedFunctionInfoOffset));
2497 __ mov(temp, FieldOperand(temp,
2498 SharedFunctionInfo::kInstanceClassNameOffset));
2499 // The class name we are testing against is a symbol because it's a literal.
2500 // The name in the constructor is a symbol because of the way the context is
2501 // booted. This routine isn't expected to work for random API-created
2502 // classes and it doesn't have to because you can't access it with natives
2503 // syntax. Since both sides are symbols it is sufficient to use an identity
2504 // comparison.
2505 __ cmp(temp, class_name);
2506 // End with the answer in the z flag.
2507}
2508
2509
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002510void LCodeGen::DoClassOfTestAndBranch(LClassOfTestAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002511 Register input = ToRegister(instr->value());
2512 Register temp = ToRegister(instr->temp());
2513 Register temp2 = ToRegister(instr->temp2());
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002514
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002515 Handle<String> class_name = instr->hydrogen()->class_name();
2516
2517 int true_block = chunk_->LookupDestination(instr->true_block_id());
2518 int false_block = chunk_->LookupDestination(instr->false_block_id());
2519
2520 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2521 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2522
2523 EmitClassOfTest(true_label, false_label, class_name, input, temp, temp2);
2524
2525 EmitBranch(true_block, false_block, equal);
2526}
2527
2528
2529void LCodeGen::DoCmpMapAndBranch(LCmpMapAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002530 Register reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002531 int true_block = instr->true_block_id();
2532 int false_block = instr->false_block_id();
2533
2534 __ cmp(FieldOperand(reg, HeapObject::kMapOffset), instr->map());
2535 EmitBranch(true_block, false_block, equal);
2536}
2537
2538
2539void LCodeGen::DoInstanceOf(LInstanceOf* instr) {
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002540 // Object and function are in fixed registers defined by the stub.
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002541 ASSERT(ToRegister(instr->context()).is(esi));
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002542 InstanceofStub stub(InstanceofStub::kArgsInRegisters);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002543 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002544
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002545 Label true_value, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002546 __ test(eax, Operand(eax));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002547 __ j(zero, &true_value, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002548 __ mov(ToRegister(instr->result()), factory()->false_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002549 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002550 __ bind(&true_value);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002551 __ mov(ToRegister(instr->result()), factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002552 __ bind(&done);
2553}
2554
2555
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002556void LCodeGen::DoInstanceOfKnownGlobal(LInstanceOfKnownGlobal* instr) {
2557 class DeferredInstanceOfKnownGlobal: public LDeferredCode {
2558 public:
2559 DeferredInstanceOfKnownGlobal(LCodeGen* codegen,
2560 LInstanceOfKnownGlobal* instr)
2561 : LDeferredCode(codegen), instr_(instr) { }
2562 virtual void Generate() {
ricow@chromium.org27bf2882011-11-17 08:34:43 +00002563 codegen()->DoDeferredInstanceOfKnownGlobal(instr_, &map_check_);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002564 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002565 virtual LInstruction* instr() { return instr_; }
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002566 Label* map_check() { return &map_check_; }
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002567 private:
2568 LInstanceOfKnownGlobal* instr_;
2569 Label map_check_;
2570 };
2571
2572 DeferredInstanceOfKnownGlobal* deferred;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002573 deferred = new(zone()) DeferredInstanceOfKnownGlobal(this, instr);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002574
2575 Label done, false_result;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002576 Register object = ToRegister(instr->value());
2577 Register temp = ToRegister(instr->temp());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002578
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002579 // A Smi is not an instance of anything.
whesse@chromium.org7b260152011-06-20 15:33:18 +00002580 __ JumpIfSmi(object, &false_result);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002581
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002582 // This is the inlined call site instanceof cache. The two occurences of the
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002583 // hole value will be patched to the last map/result pair generated by the
2584 // instanceof stub.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002585 Label cache_miss;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002586 Register map = ToRegister(instr->temp());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002587 __ mov(map, FieldOperand(object, HeapObject::kMapOffset));
2588 __ bind(deferred->map_check()); // Label for calculating code patching.
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002589 Handle<JSGlobalPropertyCell> cache_cell =
2590 factory()->NewJSGlobalPropertyCell(factory()->the_hole_value());
2591 __ cmp(map, Operand::Cell(cache_cell)); // Patched to cached map.
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002592 __ j(not_equal, &cache_miss, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002593 __ mov(eax, factory()->the_hole_value()); // Patched to either true or false.
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002594 __ jmp(&done);
2595
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002596 // The inlined call site cache did not match. Check for null and string
2597 // before calling the deferred code.
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002598 __ bind(&cache_miss);
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002599 // Null is not an instance of anything.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002600 __ cmp(object, factory()->null_value());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002601 __ j(equal, &false_result);
2602
2603 // String values are not instances of anything.
2604 Condition is_string = masm_->IsObjectStringType(object, temp, temp);
2605 __ j(is_string, &false_result);
2606
2607 // Go to the deferred code.
2608 __ jmp(deferred->entry());
2609
2610 __ bind(&false_result);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002611 __ mov(ToRegister(instr->result()), factory()->false_value());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002612
2613 // Here result has either true or false. Deferred code also produces true or
2614 // false object.
2615 __ bind(deferred->exit());
2616 __ bind(&done);
2617}
2618
2619
ricow@chromium.org27bf2882011-11-17 08:34:43 +00002620void LCodeGen::DoDeferredInstanceOfKnownGlobal(LInstanceOfKnownGlobal* instr,
2621 Label* map_check) {
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002622 PushSafepointRegistersScope scope(this);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002623
2624 InstanceofStub::Flags flags = InstanceofStub::kNoFlags;
2625 flags = static_cast<InstanceofStub::Flags>(
2626 flags | InstanceofStub::kArgsInRegisters);
2627 flags = static_cast<InstanceofStub::Flags>(
2628 flags | InstanceofStub::kCallSiteInlineCheck);
2629 flags = static_cast<InstanceofStub::Flags>(
2630 flags | InstanceofStub::kReturnTrueFalseObject);
2631 InstanceofStub stub(flags);
2632
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002633 // Get the temp register reserved by the instruction. This needs to be a
2634 // register which is pushed last by PushSafepointRegisters as top of the
2635 // stack is used to pass the offset to the location of the map check to
2636 // the stub.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002637 Register temp = ToRegister(instr->temp());
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002638 ASSERT(MacroAssembler::SafepointRegisterStackIndex(temp) == 0);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002639 __ LoadHeapObject(InstanceofStub::right(), instr->function());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002640 static const int kAdditionalDelta = 13;
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002641 int delta = masm_->SizeOfCodeGeneratedSince(map_check) + kAdditionalDelta;
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002642 __ mov(temp, Immediate(delta));
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00002643 __ StoreToSafepointRegisterSlot(temp, temp);
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002644 CallCodeGeneric(stub.GetCode(),
2645 RelocInfo::CODE_TARGET,
2646 instr,
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002647 RECORD_SAFEPOINT_WITH_REGISTERS_AND_NO_ARGUMENTS);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00002648 // Get the deoptimization index of the LLazyBailout-environment that
2649 // corresponds to this instruction.
2650 LEnvironment* env = instr->GetDeferredLazyDeoptimizationEnvironment();
ricow@chromium.org27bf2882011-11-17 08:34:43 +00002651 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
2652
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002653 // Put the result value into the eax slot and restore all registers.
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00002654 __ StoreToSafepointRegisterSlot(eax, eax);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002655}
2656
2657
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00002658void LCodeGen::DoInstanceSize(LInstanceSize* instr) {
2659 Register object = ToRegister(instr->object());
2660 Register result = ToRegister(instr->result());
2661 __ mov(result, FieldOperand(object, HeapObject::kMapOffset));
2662 __ movzx_b(result, FieldOperand(result, Map::kInstanceSizeOffset));
2663}
2664
2665
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002666void LCodeGen::DoCmpT(LCmpT* instr) {
2667 Token::Value op = instr->op();
2668
2669 Handle<Code> ic = CompareIC::GetUninitialized(op);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002670 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002671
2672 Condition condition = ComputeCompareCondition(op);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002673 Label true_value, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002674 __ test(eax, Operand(eax));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002675 __ j(condition, &true_value, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002676 __ mov(ToRegister(instr->result()), factory()->false_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002677 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002678 __ bind(&true_value);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002679 __ mov(ToRegister(instr->result()), factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002680 __ bind(&done);
2681}
2682
2683
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002684void LCodeGen::DoReturn(LReturn* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002685 if (FLAG_trace && info()->IsOptimizing()) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002686 // Preserve the return value on the stack and rely on the runtime call
2687 // to return the value in the same register. We're leaving the code
2688 // managed by the register allocator and tearing down the frame, it's
2689 // safe to write to the context register.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002690 __ push(eax);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002691 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002692 __ CallRuntime(Runtime::kTraceExit, 1);
2693 }
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00002694 if (info()->saves_caller_doubles() && CpuFeatures::IsSupported(SSE2)) {
2695 ASSERT(NeedsEagerFrame());
2696 CpuFeatures::Scope scope(SSE2);
2697 BitVector* doubles = chunk()->allocated_double_registers();
2698 BitVector::Iterator save_iterator(doubles);
2699 int count = 0;
2700 while (!save_iterator.Done()) {
2701 __ movdbl(XMMRegister::FromAllocationIndex(save_iterator.Current()),
2702 MemOperand(esp, count * kDoubleSize));
2703 save_iterator.Advance();
2704 count++;
2705 }
2706 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002707 if (dynamic_frame_alignment_) {
2708 // Fetch the state of the dynamic frame alignment.
2709 __ mov(edx, Operand(ebp,
2710 JavaScriptFrameConstants::kDynamicAlignmentStateOffset));
2711 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002712 if (NeedsEagerFrame()) {
2713 __ mov(esp, ebp);
2714 __ pop(ebp);
2715 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002716 if (dynamic_frame_alignment_) {
2717 Label no_padding;
2718 __ cmp(edx, Immediate(kNoAlignmentPadding));
2719 __ j(equal, &no_padding);
2720 if (FLAG_debug_code) {
2721 __ cmp(Operand(esp, (GetParameterCount() + 2) * kPointerSize),
2722 Immediate(kAlignmentZapValue));
2723 __ Assert(equal, "expected alignment marker");
2724 }
2725 __ Ret((GetParameterCount() + 2) * kPointerSize, ecx);
2726 __ bind(&no_padding);
2727 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002728 if (info()->IsStub()) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002729 __ Ret();
2730 } else {
2731 __ Ret((GetParameterCount() + 1) * kPointerSize, ecx);
2732 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002733}
2734
2735
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002736void LCodeGen::DoLoadGlobalCell(LLoadGlobalCell* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002737 Register result = ToRegister(instr->result());
2738 __ mov(result, Operand::Cell(instr->hydrogen()->cell()));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002739 if (instr->hydrogen()->RequiresHoleCheck()) {
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002740 __ cmp(result, factory()->the_hole_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002741 DeoptimizeIf(equal, instr->environment());
2742 }
2743}
2744
2745
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002746void LCodeGen::DoLoadGlobalGeneric(LLoadGlobalGeneric* instr) {
2747 ASSERT(ToRegister(instr->context()).is(esi));
danno@chromium.org1044a4d2012-04-30 12:34:39 +00002748 ASSERT(ToRegister(instr->global_object()).is(edx));
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002749 ASSERT(ToRegister(instr->result()).is(eax));
2750
2751 __ mov(ecx, instr->name());
2752 RelocInfo::Mode mode = instr->for_typeof() ? RelocInfo::CODE_TARGET :
2753 RelocInfo::CODE_TARGET_CONTEXT;
2754 Handle<Code> ic = isolate()->builtins()->LoadIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002755 CallCode(ic, mode, instr);
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002756}
2757
2758
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00002759void LCodeGen::DoStoreGlobalCell(LStoreGlobalCell* instr) {
danno@chromium.orge78f9fc2011-12-21 08:29:34 +00002760 Register value = ToRegister(instr->value());
2761 Handle<JSGlobalPropertyCell> cell_handle = instr->hydrogen()->cell();
ager@chromium.org378b34e2011-01-28 08:04:38 +00002762
2763 // If the cell we are storing to contains the hole it could have
2764 // been deleted from the property dictionary. In that case, we need
2765 // to update the property details in the property dictionary to mark
2766 // it as no longer deleted. We deoptimize in that case.
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002767 if (instr->hydrogen()->RequiresHoleCheck()) {
danno@chromium.orge78f9fc2011-12-21 08:29:34 +00002768 __ cmp(Operand::Cell(cell_handle), factory()->the_hole_value());
ager@chromium.org378b34e2011-01-28 08:04:38 +00002769 DeoptimizeIf(equal, instr->environment());
2770 }
2771
2772 // Store the value.
danno@chromium.orge78f9fc2011-12-21 08:29:34 +00002773 __ mov(Operand::Cell(cell_handle), value);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002774 // Cells are always rescanned, so no write barrier here.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002775}
2776
2777
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00002778void LCodeGen::DoStoreGlobalGeneric(LStoreGlobalGeneric* instr) {
2779 ASSERT(ToRegister(instr->context()).is(esi));
2780 ASSERT(ToRegister(instr->global_object()).is(edx));
2781 ASSERT(ToRegister(instr->value()).is(eax));
2782
2783 __ mov(ecx, instr->name());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00002784 Handle<Code> ic = (instr->strict_mode_flag() == kStrictMode)
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002785 ? isolate()->builtins()->StoreIC_Initialize_Strict()
2786 : isolate()->builtins()->StoreIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002787 CallCode(ic, RelocInfo::CODE_TARGET_CONTEXT, instr);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00002788}
2789
2790
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00002791void LCodeGen::DoLoadContextSlot(LLoadContextSlot* instr) {
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002792 Register context = ToRegister(instr->context());
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00002793 Register result = ToRegister(instr->result());
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002794 __ mov(result, ContextOperand(context, instr->slot_index()));
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002795
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002796 if (instr->hydrogen()->RequiresHoleCheck()) {
2797 __ cmp(result, factory()->the_hole_value());
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002798 if (instr->hydrogen()->DeoptimizesOnHole()) {
2799 DeoptimizeIf(equal, instr->environment());
2800 } else {
2801 Label is_not_hole;
2802 __ j(not_equal, &is_not_hole, Label::kNear);
2803 __ mov(result, factory()->undefined_value());
2804 __ bind(&is_not_hole);
2805 }
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002806 }
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002807}
2808
2809
2810void LCodeGen::DoStoreContextSlot(LStoreContextSlot* instr) {
2811 Register context = ToRegister(instr->context());
2812 Register value = ToRegister(instr->value());
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002813
2814 Label skip_assignment;
2815
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002816 Operand target = ContextOperand(context, instr->slot_index());
2817 if (instr->hydrogen()->RequiresHoleCheck()) {
2818 __ cmp(target, factory()->the_hole_value());
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002819 if (instr->hydrogen()->DeoptimizesOnHole()) {
2820 DeoptimizeIf(equal, instr->environment());
2821 } else {
2822 __ j(not_equal, &skip_assignment, Label::kNear);
2823 }
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002824 }
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002825
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002826 __ mov(target, value);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002827 if (instr->hydrogen()->NeedsWriteBarrier()) {
2828 HType type = instr->hydrogen()->value()->type();
2829 SmiCheck check_needed =
2830 type.IsHeapObject() ? OMIT_SMI_CHECK : INLINE_SMI_CHECK;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002831 Register temp = ToRegister(instr->temp());
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002832 int offset = Context::SlotOffset(instr->slot_index());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002833 __ RecordWriteContextSlot(context,
2834 offset,
2835 value,
2836 temp,
2837 kSaveFPRegs,
2838 EMIT_REMEMBERED_SET,
2839 check_needed);
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002840 }
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002841
2842 __ bind(&skip_assignment);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00002843}
2844
2845
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002846void LCodeGen::DoLoadNamedField(LLoadNamedField* instr) {
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002847 Register object = ToRegister(instr->object());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002848 Register result = ToRegister(instr->result());
2849 if (instr->hydrogen()->is_in_object()) {
2850 __ mov(result, FieldOperand(object, instr->hydrogen()->offset()));
2851 } else {
2852 __ mov(result, FieldOperand(object, JSObject::kPropertiesOffset));
2853 __ mov(result, FieldOperand(result, instr->hydrogen()->offset()));
2854 }
2855}
2856
2857
lrn@chromium.org1c092762011-05-09 09:42:16 +00002858void LCodeGen::EmitLoadFieldOrConstantFunction(Register result,
2859 Register object,
2860 Handle<Map> type,
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002861 Handle<String> name,
2862 LEnvironment* env) {
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002863 LookupResult lookup(isolate());
verwaest@chromium.org753aee42012-07-17 16:15:42 +00002864 type->LookupDescriptor(NULL, *name, &lookup);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002865 ASSERT(lookup.IsFound() || lookup.IsCacheable());
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002866 if (lookup.IsField()) {
lrn@chromium.org1c092762011-05-09 09:42:16 +00002867 int index = lookup.GetLocalFieldIndexFromMap(*type);
2868 int offset = index * kPointerSize;
2869 if (index < 0) {
2870 // Negative property indices are in-object properties, indexed
2871 // from the end of the fixed part of the object.
2872 __ mov(result, FieldOperand(object, offset + type->instance_size()));
2873 } else {
2874 // Non-negative property indices are in the properties array.
2875 __ mov(result, FieldOperand(object, JSObject::kPropertiesOffset));
2876 __ mov(result, FieldOperand(result, offset + FixedArray::kHeaderSize));
2877 }
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002878 } else if (lookup.IsConstantFunction()) {
lrn@chromium.org1c092762011-05-09 09:42:16 +00002879 Handle<JSFunction> function(lookup.GetConstantFunctionFromMap(*type));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002880 __ LoadHeapObject(result, function);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002881 } else {
2882 // Negative lookup.
2883 // Check prototypes.
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002884 Handle<HeapObject> current(HeapObject::cast((*type)->prototype()));
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002885 Heap* heap = type->GetHeap();
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002886 while (*current != heap->null_value()) {
2887 __ LoadHeapObject(result, current);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002888 __ cmp(FieldOperand(result, HeapObject::kMapOffset),
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002889 Handle<Map>(current->map()));
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002890 DeoptimizeIf(not_equal, env);
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002891 current =
2892 Handle<HeapObject>(HeapObject::cast(current->map()->prototype()));
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002893 }
2894 __ mov(result, factory()->undefined_value());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002895 }
2896}
2897
2898
2899void LCodeGen::EmitPushTaggedOperand(LOperand* operand) {
2900 ASSERT(!operand->IsDoubleRegister());
2901 if (operand->IsConstantOperand()) {
2902 Handle<Object> object = ToHandle(LConstantOperand::cast(operand));
2903 if (object->IsSmi()) {
2904 __ Push(Handle<Smi>::cast(object));
2905 } else {
2906 __ PushHeapObject(Handle<HeapObject>::cast(object));
2907 }
2908 } else if (operand->IsRegister()) {
2909 __ push(ToRegister(operand));
2910 } else {
2911 __ push(ToOperand(operand));
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002912 }
2913}
2914
2915
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002916// Check for cases where EmitLoadFieldOrConstantFunction needs to walk the
2917// prototype chain, which causes unbounded code generation.
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002918static bool CompactEmit(SmallMapList* list,
2919 Handle<String> name,
2920 int i,
2921 Isolate* isolate) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002922 Handle<Map> map = list->at(i);
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002923 // If the map has ElementsKind transitions, we will generate map checks
2924 // for each kind in __ CompareMap(..., ALLOW_ELEMENTS_TRANSITION_MAPS).
yangguo@chromium.org99aa4902012-07-06 16:21:55 +00002925 if (map->HasElementsTransition()) return false;
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002926 LookupResult lookup(isolate);
yangguo@chromium.org99aa4902012-07-06 16:21:55 +00002927 map->LookupDescriptor(NULL, *name, &lookup);
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002928 return lookup.IsField() || lookup.IsConstantFunction();
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002929}
2930
2931
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002932void LCodeGen::DoLoadNamedFieldPolymorphic(LLoadNamedFieldPolymorphic* instr) {
2933 Register object = ToRegister(instr->object());
2934 Register result = ToRegister(instr->result());
2935
2936 int map_count = instr->hydrogen()->types()->length();
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002937 bool need_generic = instr->hydrogen()->need_generic();
2938
2939 if (map_count == 0 && !need_generic) {
2940 DeoptimizeIf(no_condition, instr->environment());
2941 return;
2942 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002943 Handle<String> name = instr->hydrogen()->name();
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002944 Label done;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002945 bool all_are_compact = true;
2946 for (int i = 0; i < map_count; ++i) {
2947 if (!CompactEmit(instr->hydrogen()->types(), name, i, isolate())) {
2948 all_are_compact = false;
2949 break;
2950 }
2951 }
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002952 for (int i = 0; i < map_count; ++i) {
2953 bool last = (i == map_count - 1);
2954 Handle<Map> map = instr->hydrogen()->types()->at(i);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002955 Label check_passed;
2956 __ CompareMap(object, map, &check_passed, ALLOW_ELEMENT_TRANSITION_MAPS);
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002957 if (last && !need_generic) {
2958 DeoptimizeIf(not_equal, instr->environment());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002959 __ bind(&check_passed);
2960 EmitLoadFieldOrConstantFunction(
2961 result, object, map, name, instr->environment());
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002962 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002963 Label next;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002964 bool compact = all_are_compact ? true :
2965 CompactEmit(instr->hydrogen()->types(), name, i, isolate());
2966 __ j(not_equal, &next, compact ? Label::kNear : Label::kFar);
2967 __ bind(&check_passed);
2968 EmitLoadFieldOrConstantFunction(
2969 result, object, map, name, instr->environment());
2970 __ jmp(&done, all_are_compact ? Label::kNear : Label::kFar);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002971 __ bind(&next);
2972 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002973 }
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002974 if (need_generic) {
2975 __ mov(ecx, name);
2976 Handle<Code> ic = isolate()->builtins()->LoadIC_Initialize();
2977 CallCode(ic, RelocInfo::CODE_TARGET, instr);
2978 }
2979 __ bind(&done);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002980}
2981
2982
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002983void LCodeGen::DoLoadNamedGeneric(LLoadNamedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002984 ASSERT(ToRegister(instr->context()).is(esi));
danno@chromium.org1044a4d2012-04-30 12:34:39 +00002985 ASSERT(ToRegister(instr->object()).is(edx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002986 ASSERT(ToRegister(instr->result()).is(eax));
2987
2988 __ mov(ecx, instr->name());
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002989 Handle<Code> ic = isolate()->builtins()->LoadIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002990 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002991}
2992
2993
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002994void LCodeGen::DoLoadFunctionPrototype(LLoadFunctionPrototype* instr) {
2995 Register function = ToRegister(instr->function());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002996 Register temp = ToRegister(instr->temp());
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002997 Register result = ToRegister(instr->result());
2998
2999 // Check that the function really is a function.
3000 __ CmpObjectType(function, JS_FUNCTION_TYPE, result);
3001 DeoptimizeIf(not_equal, instr->environment());
3002
3003 // Check whether the function has an instance prototype.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003004 Label non_instance;
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003005 __ test_b(FieldOperand(result, Map::kBitFieldOffset),
3006 1 << Map::kHasNonInstancePrototype);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003007 __ j(not_zero, &non_instance, Label::kNear);
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003008
3009 // Get the prototype or initial map from the function.
3010 __ mov(result,
3011 FieldOperand(function, JSFunction::kPrototypeOrInitialMapOffset));
3012
3013 // Check that the function has a prototype or an initial map.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003014 __ cmp(Operand(result), Immediate(factory()->the_hole_value()));
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003015 DeoptimizeIf(equal, instr->environment());
3016
3017 // If the function does not have an initial map, we're done.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003018 Label done;
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003019 __ CmpObjectType(result, MAP_TYPE, temp);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003020 __ j(not_equal, &done, Label::kNear);
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003021
3022 // Get the prototype from the initial map.
3023 __ mov(result, FieldOperand(result, Map::kPrototypeOffset));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003024 __ jmp(&done, Label::kNear);
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003025
3026 // Non-instance prototype: Fetch prototype from constructor field
3027 // in the function's map.
3028 __ bind(&non_instance);
3029 __ mov(result, FieldOperand(result, Map::kConstructorOffset));
3030
3031 // All done.
3032 __ bind(&done);
3033}
3034
3035
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003036void LCodeGen::DoLoadElements(LLoadElements* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003037 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003038 Register input = ToRegister(instr->object());
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003039 __ mov(result, FieldOperand(input, JSObject::kElementsOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003040 if (FLAG_debug_code) {
whesse@chromium.org7b260152011-06-20 15:33:18 +00003041 Label done, ok, fail;
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003042 __ cmp(FieldOperand(result, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003043 Immediate(factory()->fixed_array_map()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003044 __ j(equal, &done, Label::kNear);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003045 __ cmp(FieldOperand(result, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003046 Immediate(factory()->fixed_cow_array_map()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003047 __ j(equal, &done, Label::kNear);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003048 Register temp((result.is(eax)) ? ebx : eax);
3049 __ push(temp);
3050 __ mov(temp, FieldOperand(result, HeapObject::kMapOffset));
whesse@chromium.org7b260152011-06-20 15:33:18 +00003051 __ movzx_b(temp, FieldOperand(temp, Map::kBitField2Offset));
3052 __ and_(temp, Map::kElementsKindMask);
3053 __ shr(temp, Map::kElementsKindShift);
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00003054 __ cmp(temp, GetInitialFastElementsKind());
3055 __ j(less, &fail, Label::kNear);
3056 __ cmp(temp, TERMINAL_FAST_ELEMENTS_KIND);
3057 __ j(less_equal, &ok, Label::kNear);
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003058 __ cmp(temp, FIRST_EXTERNAL_ARRAY_ELEMENTS_KIND);
whesse@chromium.org7b260152011-06-20 15:33:18 +00003059 __ j(less, &fail, Label::kNear);
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003060 __ cmp(temp, LAST_EXTERNAL_ARRAY_ELEMENTS_KIND);
whesse@chromium.org7b260152011-06-20 15:33:18 +00003061 __ j(less_equal, &ok, Label::kNear);
3062 __ bind(&fail);
3063 __ Abort("Check for fast or external elements failed.");
3064 __ bind(&ok);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003065 __ pop(temp);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003066 __ bind(&done);
3067 }
3068}
3069
3070
danno@chromium.org4d3fe4e2011-03-10 10:14:28 +00003071void LCodeGen::DoLoadExternalArrayPointer(
3072 LLoadExternalArrayPointer* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003073 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003074 Register input = ToRegister(instr->object());
danno@chromium.org4d3fe4e2011-03-10 10:14:28 +00003075 __ mov(result, FieldOperand(input,
3076 ExternalArray::kExternalPointerOffset));
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003077}
3078
3079
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003080void LCodeGen::DoAccessArgumentsAt(LAccessArgumentsAt* instr) {
3081 Register arguments = ToRegister(instr->arguments());
3082 Register length = ToRegister(instr->length());
3083 Operand index = ToOperand(instr->index());
3084 Register result = ToRegister(instr->result());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00003085 // There are two words between the frame pointer and the last argument.
3086 // Subtracting from length accounts for one of them add one more.
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00003087 __ sub(length, index);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003088 __ mov(result, Operand(arguments, length, times_4, kPointerSize));
3089}
3090
3091
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003092void LCodeGen::DoLoadKeyedExternalArray(LLoadKeyed* instr) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003093 ElementsKind elements_kind = instr->elements_kind();
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00003094 LOperand* key = instr->key();
3095 if (!key->IsConstantOperand() &&
3096 ExternalArrayOpRequiresTemp(instr->hydrogen()->key()->representation(),
3097 elements_kind)) {
3098 __ SmiUntag(ToRegister(key));
yangguo@chromium.org304cc332012-07-24 07:59:48 +00003099 }
3100 Operand operand(BuildFastArrayOperand(
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003101 instr->elements(),
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00003102 key,
yangguo@chromium.org304cc332012-07-24 07:59:48 +00003103 instr->hydrogen()->key()->representation(),
3104 elements_kind,
3105 0,
3106 instr->additional_index()));
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003107 if (elements_kind == EXTERNAL_FLOAT_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003108 if (CpuFeatures::IsSupported(SSE2)) {
3109 CpuFeatures::Scope scope(SSE2);
3110 XMMRegister result(ToDoubleRegister(instr->result()));
3111 __ movss(result, operand);
3112 __ cvtss2sd(result, result);
3113 } else {
3114 __ fld_s(operand);
3115 HandleX87FPReturnValue(instr);
3116 }
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003117 } else if (elements_kind == EXTERNAL_DOUBLE_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003118 if (CpuFeatures::IsSupported(SSE2)) {
3119 CpuFeatures::Scope scope(SSE2);
3120 __ movdbl(ToDoubleRegister(instr->result()), operand);
3121 } else {
3122 __ fld_d(operand);
3123 HandleX87FPReturnValue(instr);
3124 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003125 } else {
3126 Register result(ToRegister(instr->result()));
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00003127 switch (elements_kind) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003128 case EXTERNAL_BYTE_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003129 __ movsx_b(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003130 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003131 case EXTERNAL_PIXEL_ELEMENTS:
3132 case EXTERNAL_UNSIGNED_BYTE_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003133 __ movzx_b(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003134 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003135 case EXTERNAL_SHORT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003136 __ movsx_w(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003137 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003138 case EXTERNAL_UNSIGNED_SHORT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003139 __ movzx_w(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003140 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003141 case EXTERNAL_INT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003142 __ mov(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003143 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003144 case EXTERNAL_UNSIGNED_INT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003145 __ mov(result, operand);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003146 if (!instr->hydrogen()->CheckFlag(HInstruction::kUint32)) {
3147 __ test(result, Operand(result));
3148 DeoptimizeIf(negative, instr->environment());
3149 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003150 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003151 case EXTERNAL_FLOAT_ELEMENTS:
3152 case EXTERNAL_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00003153 case FAST_SMI_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003154 case FAST_ELEMENTS:
3155 case FAST_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00003156 case FAST_HOLEY_SMI_ELEMENTS:
3157 case FAST_HOLEY_ELEMENTS:
3158 case FAST_HOLEY_DOUBLE_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003159 case DICTIONARY_ELEMENTS:
3160 case NON_STRICT_ARGUMENTS_ELEMENTS:
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003161 UNREACHABLE();
3162 break;
3163 }
3164 }
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003165}
3166
3167
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003168void LCodeGen::HandleX87FPReturnValue(LInstruction* instr) {
3169 if (IsX87TopOfStack(instr->result())) {
3170 // Return value is already on stack. If the value has no uses, then
3171 // pop it off the FP stack. Otherwise, make sure that there are enough
3172 // copies of the value on the stack to feed all of the usages, e.g.
3173 // when the following instruction uses the return value in multiple
3174 // inputs.
3175 int count = instr->hydrogen_value()->UseCount();
3176 if (count == 0) {
3177 __ fstp(0);
3178 } else {
3179 count--;
3180 ASSERT(count <= 7);
3181 while (count-- > 0) {
3182 __ fld(0);
3183 }
3184 }
3185 } else {
3186 __ fstp_d(ToOperand(instr->result()));
3187 }
3188}
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +00003189
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003190
3191void LCodeGen::DoLoadKeyedFixedDoubleArray(LLoadKeyed* instr) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003192 if (instr->hydrogen()->RequiresHoleCheck()) {
3193 int offset = FixedDoubleArray::kHeaderSize - kHeapObjectTag +
3194 sizeof(kHoleNanLower32);
3195 Operand hole_check_operand = BuildFastArrayOperand(
3196 instr->elements(), instr->key(),
3197 instr->hydrogen()->key()->representation(),
3198 FAST_DOUBLE_ELEMENTS,
3199 offset,
3200 instr->additional_index());
3201 __ cmp(hole_check_operand, Immediate(kHoleNanUpper32));
3202 DeoptimizeIf(equal, instr->environment());
3203 }
3204
3205 Operand double_load_operand = BuildFastArrayOperand(
3206 instr->elements(),
3207 instr->key(),
3208 instr->hydrogen()->key()->representation(),
3209 FAST_DOUBLE_ELEMENTS,
3210 FixedDoubleArray::kHeaderSize - kHeapObjectTag,
3211 instr->additional_index());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003212 if (CpuFeatures::IsSupported(SSE2)) {
3213 CpuFeatures::Scope scope(SSE2);
3214 XMMRegister result = ToDoubleRegister(instr->result());
3215 __ movdbl(result, double_load_operand);
3216 } else {
3217 __ fld_d(double_load_operand);
3218 HandleX87FPReturnValue(instr);
3219 }
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003220}
3221
3222
3223void LCodeGen::DoLoadKeyedFixedArray(LLoadKeyed* instr) {
3224 Register result = ToRegister(instr->result());
3225
3226 // Load the result.
3227 __ mov(result,
3228 BuildFastArrayOperand(instr->elements(),
3229 instr->key(),
3230 instr->hydrogen()->key()->representation(),
3231 FAST_ELEMENTS,
3232 FixedArray::kHeaderSize - kHeapObjectTag,
3233 instr->additional_index()));
3234
3235 // Check for the hole value.
3236 if (instr->hydrogen()->RequiresHoleCheck()) {
3237 if (IsFastSmiElementsKind(instr->hydrogen()->elements_kind())) {
3238 __ test(result, Immediate(kSmiTagMask));
3239 DeoptimizeIf(not_equal, instr->environment());
3240 } else {
3241 __ cmp(result, factory()->the_hole_value());
3242 DeoptimizeIf(equal, instr->environment());
3243 }
3244 }
3245}
3246
3247
3248void LCodeGen::DoLoadKeyed(LLoadKeyed* instr) {
3249 if (instr->is_external()) {
3250 DoLoadKeyedExternalArray(instr);
3251 } else if (instr->hydrogen()->representation().IsDouble()) {
3252 DoLoadKeyedFixedDoubleArray(instr);
3253 } else {
3254 DoLoadKeyedFixedArray(instr);
3255 }
3256}
3257
3258
3259Operand LCodeGen::BuildFastArrayOperand(
3260 LOperand* elements_pointer,
3261 LOperand* key,
3262 Representation key_representation,
3263 ElementsKind elements_kind,
3264 uint32_t offset,
3265 uint32_t additional_index) {
3266 Register elements_pointer_reg = ToRegister(elements_pointer);
3267 int shift_size = ElementsKindToShiftSize(elements_kind);
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003268 if (key->IsConstantOperand()) {
3269 int constant_value = ToInteger32(LConstantOperand::cast(key));
3270 if (constant_value & 0xF0000000) {
3271 Abort("array index constant value too big");
3272 }
3273 return Operand(elements_pointer_reg,
3274 ((constant_value + additional_index) << shift_size)
3275 + offset);
3276 } else {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +00003277 // Take the tag bit into account while computing the shift size.
3278 if (key_representation.IsTagged() && (shift_size >= 1)) {
3279 shift_size -= kSmiTagSize;
3280 }
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003281 ScaleFactor scale_factor = static_cast<ScaleFactor>(shift_size);
3282 return Operand(elements_pointer_reg,
3283 ToRegister(key),
3284 scale_factor,
3285 offset + (additional_index << shift_size));
3286 }
3287}
3288
3289
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003290void LCodeGen::DoLoadKeyedGeneric(LLoadKeyedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003291 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003292 ASSERT(ToRegister(instr->object()).is(edx));
danno@chromium.org1044a4d2012-04-30 12:34:39 +00003293 ASSERT(ToRegister(instr->key()).is(ecx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003294
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003295 Handle<Code> ic = isolate()->builtins()->KeyedLoadIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003296 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003297}
3298
3299
3300void LCodeGen::DoArgumentsElements(LArgumentsElements* instr) {
3301 Register result = ToRegister(instr->result());
3302
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003303 if (instr->hydrogen()->from_inlined()) {
3304 __ lea(result, Operand(esp, -2 * kPointerSize));
3305 } else {
3306 // Check for arguments adapter frame.
3307 Label done, adapted;
3308 __ mov(result, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
3309 __ mov(result, Operand(result, StandardFrameConstants::kContextOffset));
3310 __ cmp(Operand(result),
3311 Immediate(Smi::FromInt(StackFrame::ARGUMENTS_ADAPTOR)));
3312 __ j(equal, &adapted, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003313
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003314 // No arguments adaptor frame.
3315 __ mov(result, Operand(ebp));
3316 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003317
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003318 // Arguments adaptor frame present.
3319 __ bind(&adapted);
3320 __ mov(result, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003321
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003322 // Result is the frame pointer for the frame if not adapted and for the real
3323 // frame below the adaptor frame if adapted.
3324 __ bind(&done);
3325 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003326}
3327
3328
3329void LCodeGen::DoArgumentsLength(LArgumentsLength* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003330 Operand elem = ToOperand(instr->elements());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003331 Register result = ToRegister(instr->result());
3332
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003333 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003334
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00003335 // If no arguments adaptor frame the number of arguments is fixed.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003336 __ cmp(ebp, elem);
3337 __ mov(result, Immediate(scope()->num_parameters()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003338 __ j(equal, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003339
3340 // Arguments adaptor frame present. Get argument length from there.
3341 __ mov(result, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
3342 __ mov(result, Operand(result,
3343 ArgumentsAdaptorFrameConstants::kLengthOffset));
3344 __ SmiUntag(result);
3345
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00003346 // Argument length is in result register.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003347 __ bind(&done);
3348}
3349
3350
yangguo@chromium.org154ff992012-03-13 08:09:54 +00003351void LCodeGen::DoWrapReceiver(LWrapReceiver* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003352 Register receiver = ToRegister(instr->receiver());
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003353 Register function = ToRegister(instr->function());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003354 Register scratch = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003355
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003356 // If the receiver is null or undefined, we have to pass the global
3357 // object as a receiver to normal functions. Values have to be
3358 // passed unchanged to builtins and strict-mode functions.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003359 Label global_object, receiver_ok;
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003360
3361 // Do not transform the receiver to object for strict mode
3362 // functions.
3363 __ mov(scratch,
3364 FieldOperand(function, JSFunction::kSharedFunctionInfoOffset));
3365 __ test_b(FieldOperand(scratch, SharedFunctionInfo::kStrictModeByteOffset),
3366 1 << SharedFunctionInfo::kStrictModeBitWithinByte);
danno@chromium.org412fa512012-09-14 13:28:26 +00003367 __ j(not_equal, &receiver_ok); // A near jump is not sufficient here!
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003368
3369 // Do not transform the receiver to object for builtins.
3370 __ test_b(FieldOperand(scratch, SharedFunctionInfo::kNativeByteOffset),
3371 1 << SharedFunctionInfo::kNativeBitWithinByte);
danno@chromium.org412fa512012-09-14 13:28:26 +00003372 __ j(not_equal, &receiver_ok);
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003373
3374 // Normal function. Replace undefined or null with global receiver.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003375 __ cmp(receiver, factory()->null_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003376 __ j(equal, &global_object, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003377 __ cmp(receiver, factory()->undefined_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003378 __ j(equal, &global_object, Label::kNear);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003379
3380 // The receiver should be a JS object.
3381 __ test(receiver, Immediate(kSmiTagMask));
3382 DeoptimizeIf(equal, instr->environment());
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003383 __ CmpObjectType(receiver, FIRST_SPEC_OBJECT_TYPE, scratch);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003384 DeoptimizeIf(below, instr->environment());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003385 __ jmp(&receiver_ok, Label::kNear);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003386
3387 __ bind(&global_object);
3388 // TODO(kmillikin): We have a hydrogen value for the global object. See
3389 // if it's better to use it than to explicitly fetch it from the context
3390 // here.
3391 __ mov(receiver, Operand(ebp, StandardFrameConstants::kContextOffset));
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003392 __ mov(receiver, ContextOperand(receiver, Context::GLOBAL_OBJECT_INDEX));
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003393 __ mov(receiver,
3394 FieldOperand(receiver, JSGlobalObject::kGlobalReceiverOffset));
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003395 __ bind(&receiver_ok);
yangguo@chromium.org154ff992012-03-13 08:09:54 +00003396}
3397
3398
3399void LCodeGen::DoApplyArguments(LApplyArguments* instr) {
3400 Register receiver = ToRegister(instr->receiver());
3401 Register function = ToRegister(instr->function());
3402 Register length = ToRegister(instr->length());
3403 Register elements = ToRegister(instr->elements());
3404 ASSERT(receiver.is(eax)); // Used for parameter count.
3405 ASSERT(function.is(edi)); // Required by InvokeFunction.
3406 ASSERT(ToRegister(instr->result()).is(eax));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003407
3408 // Copy the arguments to this function possibly from the
3409 // adaptor frame below it.
3410 const uint32_t kArgumentsLimit = 1 * KB;
3411 __ cmp(length, kArgumentsLimit);
3412 DeoptimizeIf(above, instr->environment());
3413
3414 __ push(receiver);
3415 __ mov(receiver, length);
3416
3417 // Loop through the arguments pushing them onto the execution
3418 // stack.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003419 Label invoke, loop;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003420 // length is a small non-negative integer, due to the test above.
3421 __ test(length, Operand(length));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003422 __ j(zero, &invoke, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003423 __ bind(&loop);
3424 __ push(Operand(elements, length, times_pointer_size, 1 * kPointerSize));
3425 __ dec(length);
3426 __ j(not_zero, &loop);
3427
3428 // Invoke the function.
3429 __ bind(&invoke);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00003430 ASSERT(instr->HasPointerMap());
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00003431 LPointerMap* pointers = instr->pointer_map();
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00003432 RecordPosition(pointers->position());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00003433 SafepointGenerator safepoint_generator(
3434 this, pointers, Safepoint::kLazyDeopt);
danno@chromium.org160a7b02011-04-18 15:51:38 +00003435 ParameterCount actual(eax);
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003436 __ InvokeFunction(function, actual, CALL_FUNCTION,
3437 safepoint_generator, CALL_AS_METHOD);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003438}
3439
3440
3441void LCodeGen::DoPushArgument(LPushArgument* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003442 LOperand* argument = instr->value();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003443 EmitPushTaggedOperand(argument);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003444}
3445
3446
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003447void LCodeGen::DoDrop(LDrop* instr) {
3448 __ Drop(instr->count());
3449}
3450
3451
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003452void LCodeGen::DoThisFunction(LThisFunction* instr) {
3453 Register result = ToRegister(instr->result());
yangguo@chromium.org5a11aaf2012-06-20 11:29:00 +00003454 __ mov(result, Operand(ebp, JavaScriptFrameConstants::kFunctionOffset));
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003455}
3456
3457
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003458void LCodeGen::DoContext(LContext* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003459 Register result = ToRegister(instr->result());
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00003460 if (info()->IsOptimizing()) {
3461 __ mov(result, Operand(ebp, StandardFrameConstants::kContextOffset));
3462 } else {
3463 // If there is no frame, the context must be in esi.
3464 ASSERT(result.is(esi));
3465 }
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003466}
3467
3468
3469void LCodeGen::DoOuterContext(LOuterContext* instr) {
3470 Register context = ToRegister(instr->context());
3471 Register result = ToRegister(instr->result());
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00003472 __ mov(result,
3473 Operand(context, Context::SlotOffset(Context::PREVIOUS_INDEX)));
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003474}
3475
3476
yangguo@chromium.org56454712012-02-16 15:33:53 +00003477void LCodeGen::DoDeclareGlobals(LDeclareGlobals* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003478 ASSERT(ToRegister(instr->context()).is(esi));
yangguo@chromium.org56454712012-02-16 15:33:53 +00003479 __ push(esi); // The context is the first argument.
3480 __ push(Immediate(instr->hydrogen()->pairs()));
3481 __ push(Immediate(Smi::FromInt(instr->hydrogen()->flags())));
3482 CallRuntime(Runtime::kDeclareGlobals, 3, instr);
3483}
3484
3485
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003486void LCodeGen::DoGlobalObject(LGlobalObject* instr) {
3487 Register context = ToRegister(instr->context());
3488 Register result = ToRegister(instr->result());
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003489 __ mov(result,
3490 Operand(context, Context::SlotOffset(Context::GLOBAL_OBJECT_INDEX)));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003491}
3492
3493
3494void LCodeGen::DoGlobalReceiver(LGlobalReceiver* instr) {
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003495 Register global = ToRegister(instr->global());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003496 Register result = ToRegister(instr->result());
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003497 __ mov(result, FieldOperand(global, GlobalObject::kGlobalReceiverOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003498}
3499
3500
3501void LCodeGen::CallKnownFunction(Handle<JSFunction> function,
3502 int arity,
danno@chromium.org40cb8782011-05-25 07:58:50 +00003503 LInstruction* instr,
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003504 CallKind call_kind,
3505 EDIState edi_state) {
ulan@chromium.org2efb9002012-01-19 15:36:35 +00003506 bool can_invoke_directly = !function->NeedsArgumentsAdaption() ||
3507 function->shared()->formal_parameter_count() == arity;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003508
3509 LPointerMap* pointers = instr->pointer_map();
3510 RecordPosition(pointers->position());
3511
ulan@chromium.org2efb9002012-01-19 15:36:35 +00003512 if (can_invoke_directly) {
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003513 if (edi_state == EDI_UNINITIALIZED) {
3514 __ LoadHeapObject(edi, function);
3515 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003516
verwaest@chromium.orgb6d052d2012-07-27 08:03:27 +00003517 // Change context.
3518 __ mov(esi, FieldOperand(edi, JSFunction::kContextOffset));
ulan@chromium.org2efb9002012-01-19 15:36:35 +00003519
3520 // Set eax to arguments count if adaption is not needed. Assumes that eax
3521 // is available to write to at this point.
3522 if (!function->NeedsArgumentsAdaption()) {
3523 __ mov(eax, arity);
3524 }
3525
3526 // Invoke function directly.
3527 __ SetCallKind(ecx, call_kind);
3528 if (*function == *info()->closure()) {
3529 __ CallSelf();
3530 } else {
3531 __ call(FieldOperand(edi, JSFunction::kCodeEntryOffset));
3532 }
3533 RecordSafepointWithLazyDeopt(instr, RECORD_SIMPLE_SAFEPOINT);
3534 } else {
3535 // We need to adapt arguments.
3536 SafepointGenerator generator(
3537 this, pointers, Safepoint::kLazyDeopt);
3538 ParameterCount count(arity);
3539 __ InvokeFunction(function, count, CALL_FUNCTION, generator, call_kind);
3540 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003541}
3542
3543
3544void LCodeGen::DoCallConstantFunction(LCallConstantFunction* instr) {
3545 ASSERT(ToRegister(instr->result()).is(eax));
danno@chromium.org40cb8782011-05-25 07:58:50 +00003546 CallKnownFunction(instr->function(),
3547 instr->arity(),
3548 instr,
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003549 CALL_AS_METHOD,
3550 EDI_UNINITIALIZED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003551}
3552
3553
3554void LCodeGen::DoDeferredMathAbsTaggedHeapNumber(LUnaryMathOperation* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003555 Register input_reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003556 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003557 factory()->heap_number_map());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003558 DeoptimizeIf(not_equal, instr->environment());
3559
3560 Label done;
3561 Register tmp = input_reg.is(eax) ? ecx : eax;
3562 Register tmp2 = tmp.is(ecx) ? edx : input_reg.is(ecx) ? edx : ecx;
3563
3564 // Preserve the value of all registers.
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00003565 PushSafepointRegistersScope scope(this);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003566
3567 Label negative;
3568 __ mov(tmp, FieldOperand(input_reg, HeapNumber::kExponentOffset));
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003569 // Check the sign of the argument. If the argument is positive, just
3570 // return it. We do not need to patch the stack since |input| and
3571 // |result| are the same register and |input| will be restored
3572 // unchanged by popping safepoint registers.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003573 __ test(tmp, Immediate(HeapNumber::kSignMask));
3574 __ j(not_zero, &negative);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003575 __ jmp(&done);
3576
3577 __ bind(&negative);
3578
3579 Label allocated, slow;
3580 __ AllocateHeapNumber(tmp, tmp2, no_reg, &slow);
3581 __ jmp(&allocated);
3582
3583 // Slow case: Call the runtime system to do the number allocation.
3584 __ bind(&slow);
3585
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003586 CallRuntimeFromDeferred(Runtime::kAllocateHeapNumber, 0,
3587 instr, instr->context());
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00003588
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003589 // Set the pointer to the new heap number in tmp.
3590 if (!tmp.is(eax)) __ mov(tmp, eax);
3591
3592 // Restore input_reg after call to runtime.
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00003593 __ LoadFromSafepointRegisterSlot(input_reg, input_reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003594
3595 __ bind(&allocated);
3596 __ mov(tmp2, FieldOperand(input_reg, HeapNumber::kExponentOffset));
3597 __ and_(tmp2, ~HeapNumber::kSignMask);
3598 __ mov(FieldOperand(tmp, HeapNumber::kExponentOffset), tmp2);
3599 __ mov(tmp2, FieldOperand(input_reg, HeapNumber::kMantissaOffset));
3600 __ mov(FieldOperand(tmp, HeapNumber::kMantissaOffset), tmp2);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00003601 __ StoreToSafepointRegisterSlot(input_reg, tmp);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003602
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003603 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003604}
3605
3606
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003607void LCodeGen::EmitIntegerMathAbs(LUnaryMathOperation* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003608 Register input_reg = ToRegister(instr->value());
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003609 __ test(input_reg, Operand(input_reg));
3610 Label is_positive;
3611 __ j(not_sign, &is_positive);
3612 __ neg(input_reg);
3613 __ test(input_reg, Operand(input_reg));
3614 DeoptimizeIf(negative, instr->environment());
3615 __ bind(&is_positive);
3616}
3617
3618
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003619void LCodeGen::DoMathAbs(LUnaryMathOperation* instr) {
3620 // Class for deferred case.
3621 class DeferredMathAbsTaggedHeapNumber: public LDeferredCode {
3622 public:
3623 DeferredMathAbsTaggedHeapNumber(LCodeGen* codegen,
3624 LUnaryMathOperation* instr)
3625 : LDeferredCode(codegen), instr_(instr) { }
3626 virtual void Generate() {
3627 codegen()->DoDeferredMathAbsTaggedHeapNumber(instr_);
3628 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00003629 virtual LInstruction* instr() { return instr_; }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003630 private:
3631 LUnaryMathOperation* instr_;
3632 };
3633
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003634 ASSERT(instr->value()->Equals(instr->result()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003635 Representation r = instr->hydrogen()->value()->representation();
3636
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003637 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003638 if (r.IsDouble()) {
3639 XMMRegister scratch = xmm0;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003640 XMMRegister input_reg = ToDoubleRegister(instr->value());
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00003641 __ xorps(scratch, scratch);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003642 __ subsd(scratch, input_reg);
3643 __ pand(input_reg, scratch);
3644 } else if (r.IsInteger32()) {
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003645 EmitIntegerMathAbs(instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003646 } else { // Tagged case.
3647 DeferredMathAbsTaggedHeapNumber* deferred =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00003648 new(zone()) DeferredMathAbsTaggedHeapNumber(this, instr);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003649 Register input_reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003650 // Smi check.
whesse@chromium.org7b260152011-06-20 15:33:18 +00003651 __ JumpIfNotSmi(input_reg, deferred->entry());
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003652 EmitIntegerMathAbs(instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003653 __ bind(deferred->exit());
3654 }
3655}
3656
3657
3658void LCodeGen::DoMathFloor(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003659 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003660 XMMRegister xmm_scratch = xmm0;
3661 Register output_reg = ToRegister(instr->result());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003662 XMMRegister input_reg = ToDoubleRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003663
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003664 if (CpuFeatures::IsSupported(SSE4_1)) {
3665 CpuFeatures::Scope scope(SSE4_1);
3666 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
3667 // Deoptimize on negative zero.
3668 Label non_zero;
3669 __ xorps(xmm_scratch, xmm_scratch); // Zero the register.
3670 __ ucomisd(input_reg, xmm_scratch);
3671 __ j(not_equal, &non_zero, Label::kNear);
3672 __ movmskpd(output_reg, input_reg);
3673 __ test(output_reg, Immediate(1));
3674 DeoptimizeIf(not_zero, instr->environment());
3675 __ bind(&non_zero);
3676 }
3677 __ roundsd(xmm_scratch, input_reg, Assembler::kRoundDown);
3678 __ cvttsd2si(output_reg, Operand(xmm_scratch));
3679 // Overflow is signalled with minint.
3680 __ cmp(output_reg, 0x80000000u);
3681 DeoptimizeIf(equal, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003682 } else {
jkummerow@chromium.org7a6fc812012-06-27 11:12:38 +00003683 Label negative_sign, done;
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003684 // Deoptimize on unordered.
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003685 __ xorps(xmm_scratch, xmm_scratch); // Zero the register.
3686 __ ucomisd(input_reg, xmm_scratch);
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003687 DeoptimizeIf(parity_even, instr->environment());
3688 __ j(below, &negative_sign, Label::kNear);
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003689
3690 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
3691 // Check for negative zero.
3692 Label positive_sign;
3693 __ j(above, &positive_sign, Label::kNear);
3694 __ movmskpd(output_reg, input_reg);
3695 __ test(output_reg, Immediate(1));
3696 DeoptimizeIf(not_zero, instr->environment());
3697 __ Set(output_reg, Immediate(0));
3698 __ jmp(&done, Label::kNear);
3699 __ bind(&positive_sign);
3700 }
3701
3702 // Use truncating instruction (OK because input is positive).
3703 __ cvttsd2si(output_reg, Operand(input_reg));
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003704 // Overflow is signalled with minint.
3705 __ cmp(output_reg, 0x80000000u);
3706 DeoptimizeIf(equal, instr->environment());
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003707 __ jmp(&done, Label::kNear);
3708
jkummerow@chromium.org7a6fc812012-06-27 11:12:38 +00003709 // Non-zero negative reaches here.
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003710 __ bind(&negative_sign);
jkummerow@chromium.org7a6fc812012-06-27 11:12:38 +00003711 // Truncate, then compare and compensate.
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003712 __ cvttsd2si(output_reg, Operand(input_reg));
3713 __ cvtsi2sd(xmm_scratch, output_reg);
3714 __ ucomisd(input_reg, xmm_scratch);
3715 __ j(equal, &done, Label::kNear);
3716 __ sub(output_reg, Immediate(1));
3717 DeoptimizeIf(overflow, instr->environment());
3718
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003719 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003720 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003721}
3722
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003723void LCodeGen::DoMathRound(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003724 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003725 XMMRegister xmm_scratch = xmm0;
3726 Register output_reg = ToRegister(instr->result());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003727 XMMRegister input_reg = ToDoubleRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003728
danno@chromium.org160a7b02011-04-18 15:51:38 +00003729 Label below_half, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003730 // xmm_scratch = 0.5
3731 ExternalReference one_half = ExternalReference::address_of_one_half();
3732 __ movdbl(xmm_scratch, Operand::StaticVariable(one_half));
danno@chromium.org160a7b02011-04-18 15:51:38 +00003733 __ ucomisd(xmm_scratch, input_reg);
3734 __ j(above, &below_half);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003735 // xmm_scratch = input + 0.5
3736 __ addsd(xmm_scratch, input_reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003737
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003738 // Compute Math.floor(value + 0.5).
3739 // Use truncating instruction (OK because input is positive).
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003740 __ cvttsd2si(output_reg, Operand(xmm_scratch));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003741
3742 // Overflow is signalled with minint.
3743 __ cmp(output_reg, 0x80000000u);
3744 DeoptimizeIf(equal, instr->environment());
danno@chromium.org160a7b02011-04-18 15:51:38 +00003745 __ jmp(&done);
3746
3747 __ bind(&below_half);
3748
3749 // We return 0 for the input range [+0, 0.5[, or [-0.5, 0.5[ if
3750 // we can ignore the difference between a result of -0 and +0.
3751 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
3752 // If the sign is positive, we return +0.
3753 __ movmskpd(output_reg, input_reg);
3754 __ test(output_reg, Immediate(1));
3755 DeoptimizeIf(not_zero, instr->environment());
3756 } else {
3757 // If the input is >= -0.5, we return +0.
3758 __ mov(output_reg, Immediate(0xBF000000));
3759 __ movd(xmm_scratch, Operand(output_reg));
3760 __ cvtss2sd(xmm_scratch, xmm_scratch);
3761 __ ucomisd(input_reg, xmm_scratch);
3762 DeoptimizeIf(below, instr->environment());
3763 }
3764 __ Set(output_reg, Immediate(0));
3765 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003766}
3767
3768
3769void LCodeGen::DoMathSqrt(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003770 CpuFeatures::Scope scope(SSE2);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003771 XMMRegister input_reg = ToDoubleRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003772 ASSERT(ToDoubleRegister(instr->result()).is(input_reg));
3773 __ sqrtsd(input_reg, input_reg);
3774}
3775
3776
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003777void LCodeGen::DoMathPowHalf(LMathPowHalf* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003778 CpuFeatures::Scope scope(SSE2);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003779 XMMRegister xmm_scratch = xmm0;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003780 XMMRegister input_reg = ToDoubleRegister(instr->value());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003781 Register scratch = ToRegister(instr->temp());
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003782 ASSERT(ToDoubleRegister(instr->result()).is(input_reg));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003783
3784 // Note that according to ECMA-262 15.8.2.13:
3785 // Math.pow(-Infinity, 0.5) == Infinity
3786 // Math.sqrt(-Infinity) == NaN
3787 Label done, sqrt;
3788 // Check base for -Infinity. According to IEEE-754, single-precision
3789 // -Infinity has the highest 9 bits set and the lowest 23 bits cleared.
3790 __ mov(scratch, 0xFF800000);
3791 __ movd(xmm_scratch, scratch);
3792 __ cvtss2sd(xmm_scratch, xmm_scratch);
3793 __ ucomisd(input_reg, xmm_scratch);
3794 // Comparing -Infinity with NaN results in "unordered", which sets the
3795 // zero flag as if both were equal. However, it also sets the carry flag.
3796 __ j(not_equal, &sqrt, Label::kNear);
3797 __ j(carry, &sqrt, Label::kNear);
3798 // If input is -Infinity, return Infinity.
3799 __ xorps(input_reg, input_reg);
3800 __ subsd(input_reg, xmm_scratch);
3801 __ jmp(&done, Label::kNear);
3802
3803 // Square root.
3804 __ bind(&sqrt);
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00003805 __ xorps(xmm_scratch, xmm_scratch);
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00003806 __ addsd(input_reg, xmm_scratch); // Convert -0 to +0.
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003807 __ sqrtsd(input_reg, input_reg);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003808 __ bind(&done);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003809}
3810
3811
3812void LCodeGen::DoPower(LPower* instr) {
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003813 Representation exponent_type = instr->hydrogen()->right()->representation();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003814 // Having marked this as a call, we can use any registers.
3815 // Just make sure that the input/output registers are the expected ones.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003816 ASSERT(!instr->right()->IsDoubleRegister() ||
3817 ToDoubleRegister(instr->right()).is(xmm1));
3818 ASSERT(!instr->right()->IsRegister() ||
3819 ToRegister(instr->right()).is(eax));
3820 ASSERT(ToDoubleRegister(instr->left()).is(xmm2));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003821 ASSERT(ToDoubleRegister(instr->result()).is(xmm3));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003822
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003823 if (exponent_type.IsTagged()) {
3824 Label no_deopt;
3825 __ JumpIfSmi(eax, &no_deopt);
3826 __ CmpObjectType(eax, HEAP_NUMBER_TYPE, ecx);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003827 DeoptimizeIf(not_equal, instr->environment());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003828 __ bind(&no_deopt);
3829 MathPowStub stub(MathPowStub::TAGGED);
3830 __ CallStub(&stub);
3831 } else if (exponent_type.IsInteger32()) {
3832 MathPowStub stub(MathPowStub::INTEGER);
3833 __ CallStub(&stub);
3834 } else {
3835 ASSERT(exponent_type.IsDouble());
3836 MathPowStub stub(MathPowStub::DOUBLE);
3837 __ CallStub(&stub);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003838 }
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003839}
3840
3841
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003842void LCodeGen::DoRandom(LRandom* instr) {
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003843 class DeferredDoRandom: public LDeferredCode {
3844 public:
3845 DeferredDoRandom(LCodeGen* codegen, LRandom* instr)
3846 : LDeferredCode(codegen), instr_(instr) { }
3847 virtual void Generate() { codegen()->DoDeferredRandom(instr_); }
3848 virtual LInstruction* instr() { return instr_; }
3849 private:
3850 LRandom* instr_;
3851 };
3852
mmassi@chromium.org7028c052012-06-13 11:51:58 +00003853 DeferredDoRandom* deferred = new(zone()) DeferredDoRandom(this, instr);
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003854
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003855 CpuFeatures::Scope scope(SSE2);
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003856 // Having marked this instruction as a call we can use any
3857 // registers.
3858 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003859 ASSERT(ToRegister(instr->global_object()).is(eax));
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003860 // Assert that the register size is indeed the size of each seed.
3861 static const int kSeedSize = sizeof(uint32_t);
3862 STATIC_ASSERT(kPointerSize == kSeedSize);
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003863
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003864 __ mov(eax, FieldOperand(eax, GlobalObject::kNativeContextOffset));
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003865 static const int kRandomSeedOffset =
3866 FixedArray::kHeaderSize + Context::RANDOM_SEED_INDEX * kPointerSize;
3867 __ mov(ebx, FieldOperand(eax, kRandomSeedOffset));
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003868 // ebx: FixedArray of the native context's random seeds
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003869
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003870 // Load state[0].
3871 __ mov(ecx, FieldOperand(ebx, ByteArray::kHeaderSize));
3872 // If state[0] == 0, call runtime to initialize seeds.
3873 __ test(ecx, ecx);
3874 __ j(zero, deferred->entry());
3875 // Load state[1].
3876 __ mov(eax, FieldOperand(ebx, ByteArray::kHeaderSize + kSeedSize));
3877 // ecx: state[0]
3878 // eax: state[1]
3879
3880 // state[0] = 18273 * (state[0] & 0xFFFF) + (state[0] >> 16)
3881 __ movzx_w(edx, ecx);
3882 __ imul(edx, edx, 18273);
3883 __ shr(ecx, 16);
3884 __ add(ecx, edx);
3885 // Save state[0].
3886 __ mov(FieldOperand(ebx, ByteArray::kHeaderSize), ecx);
3887
3888 // state[1] = 36969 * (state[1] & 0xFFFF) + (state[1] >> 16)
3889 __ movzx_w(edx, eax);
3890 __ imul(edx, edx, 36969);
3891 __ shr(eax, 16);
3892 __ add(eax, edx);
3893 // Save state[1].
3894 __ mov(FieldOperand(ebx, ByteArray::kHeaderSize + kSeedSize), eax);
3895
3896 // Random bit pattern = (state[0] << 14) + (state[1] & 0x3FFFF)
3897 __ shl(ecx, 14);
3898 __ and_(eax, Immediate(0x3FFFF));
3899 __ add(eax, ecx);
3900
3901 __ bind(deferred->exit());
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003902 // Convert 32 random bits in eax to 0.(32 random bits) in a double
3903 // by computing:
3904 // ( 1.(20 0s)(32 random bits) x 2^20 ) - (1.0 x 2^20)).
3905 __ mov(ebx, Immediate(0x49800000)); // 1.0 x 2^20 as single.
3906 __ movd(xmm2, ebx);
3907 __ movd(xmm1, eax);
3908 __ cvtss2sd(xmm2, xmm2);
3909 __ xorps(xmm1, xmm2);
3910 __ subsd(xmm1, xmm2);
3911}
3912
3913
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003914void LCodeGen::DoDeferredRandom(LRandom* instr) {
3915 __ PrepareCallCFunction(1, ebx);
3916 __ mov(Operand(esp, 0), eax);
3917 __ CallCFunction(ExternalReference::random_uint32_function(isolate()), 1);
3918 // Return value is in eax.
3919}
3920
3921
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003922void LCodeGen::DoMathLog(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003923 CpuFeatures::Scope scope(SSE2);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003924 ASSERT(instr->value()->Equals(instr->result()));
3925 XMMRegister input_reg = ToDoubleRegister(instr->value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003926 Label positive, done, zero;
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00003927 __ xorps(xmm0, xmm0);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003928 __ ucomisd(input_reg, xmm0);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003929 __ j(above, &positive, Label::kNear);
3930 __ j(equal, &zero, Label::kNear);
svenpanne@chromium.org84bcc552011-07-18 09:50:57 +00003931 ExternalReference nan =
3932 ExternalReference::address_of_canonical_non_hole_nan();
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003933 __ movdbl(input_reg, Operand::StaticVariable(nan));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003934 __ jmp(&done, Label::kNear);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003935 __ bind(&zero);
3936 __ push(Immediate(0xFFF00000));
3937 __ push(Immediate(0));
3938 __ movdbl(input_reg, Operand(esp, 0));
3939 __ add(Operand(esp), Immediate(kDoubleSize));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003940 __ jmp(&done, Label::kNear);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003941 __ bind(&positive);
3942 __ fldln2();
3943 __ sub(Operand(esp), Immediate(kDoubleSize));
3944 __ movdbl(Operand(esp, 0), input_reg);
3945 __ fld_d(Operand(esp, 0));
3946 __ fyl2x();
3947 __ fstp_d(Operand(esp, 0));
3948 __ movdbl(input_reg, Operand(esp, 0));
3949 __ add(Operand(esp), Immediate(kDoubleSize));
3950 __ bind(&done);
whesse@chromium.org023421e2010-12-21 12:19:12 +00003951}
3952
3953
danno@chromium.org1f34ad32012-11-26 14:53:56 +00003954void LCodeGen::DoMathExp(LMathExp* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003955 CpuFeatures::Scope scope(SSE2);
danno@chromium.org1f34ad32012-11-26 14:53:56 +00003956 XMMRegister input = ToDoubleRegister(instr->value());
3957 XMMRegister result = ToDoubleRegister(instr->result());
3958 Register temp1 = ToRegister(instr->temp1());
3959 Register temp2 = ToRegister(instr->temp2());
3960
3961 MathExpGenerator::EmitMathExp(masm(), input, result, xmm0, temp1, temp2);
3962}
3963
3964
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00003965void LCodeGen::DoMathTan(LUnaryMathOperation* instr) {
3966 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
3967 TranscendentalCacheStub stub(TranscendentalCache::TAN,
3968 TranscendentalCacheStub::UNTAGGED);
3969 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
3970}
3971
3972
whesse@chromium.org023421e2010-12-21 12:19:12 +00003973void LCodeGen::DoMathCos(LUnaryMathOperation* instr) {
3974 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
3975 TranscendentalCacheStub stub(TranscendentalCache::COS,
3976 TranscendentalCacheStub::UNTAGGED);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003977 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
whesse@chromium.org023421e2010-12-21 12:19:12 +00003978}
3979
3980
3981void LCodeGen::DoMathSin(LUnaryMathOperation* instr) {
3982 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
3983 TranscendentalCacheStub stub(TranscendentalCache::SIN,
3984 TranscendentalCacheStub::UNTAGGED);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003985 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003986}
3987
3988
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003989void LCodeGen::DoUnaryMathOperation(LUnaryMathOperation* instr) {
3990 switch (instr->op()) {
3991 case kMathAbs:
3992 DoMathAbs(instr);
3993 break;
3994 case kMathFloor:
3995 DoMathFloor(instr);
3996 break;
3997 case kMathRound:
3998 DoMathRound(instr);
3999 break;
4000 case kMathSqrt:
4001 DoMathSqrt(instr);
4002 break;
whesse@chromium.org023421e2010-12-21 12:19:12 +00004003 case kMathCos:
4004 DoMathCos(instr);
4005 break;
4006 case kMathSin:
4007 DoMathSin(instr);
4008 break;
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004009 case kMathTan:
4010 DoMathTan(instr);
4011 break;
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00004012 case kMathLog:
4013 DoMathLog(instr);
4014 break;
4015
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004016 default:
4017 UNREACHABLE();
4018 }
4019}
4020
4021
danno@chromium.org160a7b02011-04-18 15:51:38 +00004022void LCodeGen::DoInvokeFunction(LInvokeFunction* instr) {
4023 ASSERT(ToRegister(instr->context()).is(esi));
4024 ASSERT(ToRegister(instr->function()).is(edi));
4025 ASSERT(instr->HasPointerMap());
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00004026
4027 if (instr->known_function().is_null()) {
4028 LPointerMap* pointers = instr->pointer_map();
4029 RecordPosition(pointers->position());
4030 SafepointGenerator generator(
4031 this, pointers, Safepoint::kLazyDeopt);
4032 ParameterCount count(instr->arity());
4033 __ InvokeFunction(edi, count, CALL_FUNCTION, generator, CALL_AS_METHOD);
4034 } else {
4035 CallKnownFunction(instr->known_function(),
4036 instr->arity(),
4037 instr,
4038 CALL_AS_METHOD,
4039 EDI_CONTAINS_TARGET);
4040 }
danno@chromium.org160a7b02011-04-18 15:51:38 +00004041}
4042
4043
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004044void LCodeGen::DoCallKeyed(LCallKeyed* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004045 ASSERT(ToRegister(instr->context()).is(esi));
4046 ASSERT(ToRegister(instr->key()).is(ecx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004047 ASSERT(ToRegister(instr->result()).is(eax));
4048
4049 int arity = instr->arity();
lrn@chromium.org34e60782011-09-15 07:25:40 +00004050 Handle<Code> ic =
4051 isolate()->stub_cache()->ComputeKeyedCallInitialize(arity);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004052 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004053}
4054
4055
4056void LCodeGen::DoCallNamed(LCallNamed* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004057 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004058 ASSERT(ToRegister(instr->result()).is(eax));
4059
4060 int arity = instr->arity();
danno@chromium.org40cb8782011-05-25 07:58:50 +00004061 RelocInfo::Mode mode = RelocInfo::CODE_TARGET;
4062 Handle<Code> ic =
lrn@chromium.org34e60782011-09-15 07:25:40 +00004063 isolate()->stub_cache()->ComputeCallInitialize(arity, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004064 __ mov(ecx, instr->name());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004065 CallCode(ic, mode, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004066}
4067
4068
4069void LCodeGen::DoCallFunction(LCallFunction* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004070 ASSERT(ToRegister(instr->context()).is(esi));
danno@chromium.orgc612e022011-11-10 11:38:15 +00004071 ASSERT(ToRegister(instr->function()).is(edi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004072 ASSERT(ToRegister(instr->result()).is(eax));
4073
4074 int arity = instr->arity();
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004075 CallFunctionStub stub(arity, NO_CALL_FUNCTION_FLAGS);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004076 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004077}
4078
4079
4080void LCodeGen::DoCallGlobal(LCallGlobal* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004081 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004082 ASSERT(ToRegister(instr->result()).is(eax));
4083
4084 int arity = instr->arity();
danno@chromium.org40cb8782011-05-25 07:58:50 +00004085 RelocInfo::Mode mode = RelocInfo::CODE_TARGET_CONTEXT;
4086 Handle<Code> ic =
lrn@chromium.org34e60782011-09-15 07:25:40 +00004087 isolate()->stub_cache()->ComputeCallInitialize(arity, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004088 __ mov(ecx, instr->name());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004089 CallCode(ic, mode, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004090}
4091
4092
4093void LCodeGen::DoCallKnownGlobal(LCallKnownGlobal* instr) {
4094 ASSERT(ToRegister(instr->result()).is(eax));
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00004095 CallKnownFunction(instr->target(),
4096 instr->arity(),
4097 instr,
4098 CALL_AS_FUNCTION,
4099 EDI_UNINITIALIZED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004100}
4101
4102
4103void LCodeGen::DoCallNew(LCallNew* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004104 ASSERT(ToRegister(instr->context()).is(esi));
4105 ASSERT(ToRegister(instr->constructor()).is(edi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004106 ASSERT(ToRegister(instr->result()).is(eax));
4107
danno@chromium.orgfa458e42012-02-01 10:48:36 +00004108 CallConstructStub stub(NO_CALL_FUNCTION_FLAGS);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004109 __ Set(eax, Immediate(instr->arity()));
danno@chromium.orgfa458e42012-02-01 10:48:36 +00004110 CallCode(stub.GetCode(), RelocInfo::CONSTRUCT_CALL, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004111}
4112
4113
4114void LCodeGen::DoCallRuntime(LCallRuntime* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004115 CallRuntime(instr->function(), instr->arity(), instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004116}
4117
4118
4119void LCodeGen::DoStoreNamedField(LStoreNamedField* instr) {
4120 Register object = ToRegister(instr->object());
4121 Register value = ToRegister(instr->value());
4122 int offset = instr->offset();
4123
4124 if (!instr->transition().is_null()) {
verwaest@chromium.org37141392012-05-31 13:27:02 +00004125 if (!instr->hydrogen()->NeedsWriteBarrierForMap()) {
4126 __ mov(FieldOperand(object, HeapObject::kMapOffset), instr->transition());
4127 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004128 Register temp = ToRegister(instr->temp());
4129 Register temp_map = ToRegister(instr->temp_map());
verwaest@chromium.org37141392012-05-31 13:27:02 +00004130 __ mov(temp_map, instr->transition());
4131 __ mov(FieldOperand(object, HeapObject::kMapOffset), temp_map);
4132 // Update the write barrier for the map field.
4133 __ RecordWriteField(object,
4134 HeapObject::kMapOffset,
4135 temp_map,
4136 temp,
4137 kSaveFPRegs,
4138 OMIT_REMEMBERED_SET,
4139 OMIT_SMI_CHECK);
4140 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004141 }
4142
4143 // Do the store.
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004144 HType type = instr->hydrogen()->value()->type();
4145 SmiCheck check_needed =
4146 type.IsHeapObject() ? OMIT_SMI_CHECK : INLINE_SMI_CHECK;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004147 if (instr->is_in_object()) {
4148 __ mov(FieldOperand(object, offset), value);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004149 if (instr->hydrogen()->NeedsWriteBarrier()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004150 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004151 // Update the write barrier for the object for in-object properties.
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004152 __ RecordWriteField(object,
4153 offset,
4154 value,
4155 temp,
4156 kSaveFPRegs,
4157 EMIT_REMEMBERED_SET,
4158 check_needed);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004159 }
4160 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004161 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004162 __ mov(temp, FieldOperand(object, JSObject::kPropertiesOffset));
4163 __ mov(FieldOperand(temp, offset), value);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004164 if (instr->hydrogen()->NeedsWriteBarrier()) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004165 // Update the write barrier for the properties array.
4166 // object is used as a scratch register.
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004167 __ RecordWriteField(temp,
4168 offset,
4169 value,
4170 object,
4171 kSaveFPRegs,
4172 EMIT_REMEMBERED_SET,
4173 check_needed);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004174 }
4175 }
4176}
4177
4178
4179void LCodeGen::DoStoreNamedGeneric(LStoreNamedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004180 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004181 ASSERT(ToRegister(instr->object()).is(edx));
4182 ASSERT(ToRegister(instr->value()).is(eax));
4183
4184 __ mov(ecx, instr->name());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004185 Handle<Code> ic = (instr->strict_mode_flag() == kStrictMode)
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004186 ? isolate()->builtins()->StoreIC_Initialize_Strict()
4187 : isolate()->builtins()->StoreIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004188 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004189}
4190
4191
4192void LCodeGen::DoBoundsCheck(LBoundsCheck* instr) {
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +00004193 if (instr->hydrogen()->skip_check()) return;
4194
danno@chromium.orgb6451162011-08-17 14:33:23 +00004195 if (instr->index()->IsConstantOperand()) {
jkummerow@chromium.org000f7fb2012-08-01 11:14:42 +00004196 int constant_index =
4197 ToInteger32(LConstantOperand::cast(instr->index()));
4198 if (instr->hydrogen()->length()->representation().IsTagged()) {
4199 __ cmp(ToOperand(instr->length()),
4200 Immediate(Smi::FromInt(constant_index)));
4201 } else {
4202 __ cmp(ToOperand(instr->length()), Immediate(constant_index));
4203 }
danno@chromium.orgb6451162011-08-17 14:33:23 +00004204 DeoptimizeIf(below_equal, instr->environment());
4205 } else {
4206 __ cmp(ToRegister(instr->index()), ToOperand(instr->length()));
4207 DeoptimizeIf(above_equal, instr->environment());
4208 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004209}
4210
4211
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004212void LCodeGen::DoStoreKeyedExternalArray(LStoreKeyed* instr) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004213 ElementsKind elements_kind = instr->elements_kind();
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00004214 LOperand* key = instr->key();
4215 if (!key->IsConstantOperand() &&
4216 ExternalArrayOpRequiresTemp(instr->hydrogen()->key()->representation(),
4217 elements_kind)) {
4218 __ SmiUntag(ToRegister(key));
yangguo@chromium.org304cc332012-07-24 07:59:48 +00004219 }
4220 Operand operand(BuildFastArrayOperand(
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004221 instr->elements(),
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00004222 key,
yangguo@chromium.org304cc332012-07-24 07:59:48 +00004223 instr->hydrogen()->key()->representation(),
4224 elements_kind,
4225 0,
4226 instr->additional_index()));
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004227 if (elements_kind == EXTERNAL_FLOAT_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004228 CpuFeatures::Scope scope(SSE2);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004229 __ cvtsd2ss(xmm0, ToDoubleRegister(instr->value()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004230 __ movss(operand, xmm0);
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004231 } else if (elements_kind == EXTERNAL_DOUBLE_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004232 CpuFeatures::Scope scope(SSE2);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004233 __ movdbl(operand, ToDoubleRegister(instr->value()));
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004234 } else {
4235 Register value = ToRegister(instr->value());
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004236 switch (elements_kind) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004237 case EXTERNAL_PIXEL_ELEMENTS:
4238 case EXTERNAL_UNSIGNED_BYTE_ELEMENTS:
4239 case EXTERNAL_BYTE_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004240 __ mov_b(operand, value);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004241 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004242 case EXTERNAL_SHORT_ELEMENTS:
4243 case EXTERNAL_UNSIGNED_SHORT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004244 __ mov_w(operand, value);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004245 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004246 case EXTERNAL_INT_ELEMENTS:
4247 case EXTERNAL_UNSIGNED_INT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004248 __ mov(operand, value);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004249 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004250 case EXTERNAL_FLOAT_ELEMENTS:
4251 case EXTERNAL_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004252 case FAST_SMI_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004253 case FAST_ELEMENTS:
4254 case FAST_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004255 case FAST_HOLEY_SMI_ELEMENTS:
4256 case FAST_HOLEY_ELEMENTS:
4257 case FAST_HOLEY_DOUBLE_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004258 case DICTIONARY_ELEMENTS:
4259 case NON_STRICT_ARGUMENTS_ELEMENTS:
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004260 UNREACHABLE();
4261 break;
4262 }
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004263 }
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004264}
4265
4266
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004267void LCodeGen::DoStoreKeyedFixedDoubleArray(LStoreKeyed* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004268 CpuFeatures::Scope scope(SSE2);
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004269 XMMRegister value = ToDoubleRegister(instr->value());
4270
4271 if (instr->NeedsCanonicalization()) {
4272 Label have_value;
4273
4274 __ ucomisd(value, value);
4275 __ j(parity_odd, &have_value); // NaN.
4276
4277 ExternalReference canonical_nan_reference =
4278 ExternalReference::address_of_canonical_non_hole_nan();
4279 __ movdbl(value, Operand::StaticVariable(canonical_nan_reference));
4280 __ bind(&have_value);
4281 }
4282
4283 Operand double_store_operand = BuildFastArrayOperand(
4284 instr->elements(),
4285 instr->key(),
4286 instr->hydrogen()->key()->representation(),
4287 FAST_DOUBLE_ELEMENTS,
4288 FixedDoubleArray::kHeaderSize - kHeapObjectTag,
4289 instr->additional_index());
4290 __ movdbl(double_store_operand, value);
4291}
4292
4293
4294void LCodeGen::DoStoreKeyedFixedArray(LStoreKeyed* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004295 Register value = ToRegister(instr->value());
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004296 Register elements = ToRegister(instr->elements());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004297 Register key = instr->key()->IsRegister() ? ToRegister(instr->key()) : no_reg;
4298
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004299 Operand operand = BuildFastArrayOperand(
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004300 instr->elements(),
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004301 instr->key(),
yangguo@chromium.org304cc332012-07-24 07:59:48 +00004302 instr->hydrogen()->key()->representation(),
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004303 FAST_ELEMENTS,
4304 FixedArray::kHeaderSize - kHeapObjectTag,
4305 instr->additional_index());
4306 __ mov(operand, value);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004307
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004308 if (instr->hydrogen()->NeedsWriteBarrier()) {
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004309 ASSERT(!instr->key()->IsConstantOperand());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004310 HType type = instr->hydrogen()->value()->type();
4311 SmiCheck check_needed =
4312 type.IsHeapObject() ? OMIT_SMI_CHECK : INLINE_SMI_CHECK;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004313 // Compute address of modified element and store it into key register.
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004314 __ lea(key, operand);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004315 __ RecordWrite(elements,
4316 key,
4317 value,
4318 kSaveFPRegs,
4319 EMIT_REMEMBERED_SET,
4320 check_needed);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004321 }
4322}
4323
4324
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004325void LCodeGen::DoStoreKeyed(LStoreKeyed* instr) {
4326 // By cases...external, fast-double, fast
4327 if (instr->is_external()) {
4328 DoStoreKeyedExternalArray(instr);
4329 } else if (instr->hydrogen()->value()->representation().IsDouble()) {
4330 DoStoreKeyedFixedDoubleArray(instr);
4331 } else {
4332 DoStoreKeyedFixedArray(instr);
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00004333 }
rossberg@chromium.org717967f2011-07-20 13:44:42 +00004334}
4335
4336
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004337void LCodeGen::DoStoreKeyedGeneric(LStoreKeyedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004338 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004339 ASSERT(ToRegister(instr->object()).is(edx));
4340 ASSERT(ToRegister(instr->key()).is(ecx));
4341 ASSERT(ToRegister(instr->value()).is(eax));
4342
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004343 Handle<Code> ic = (instr->strict_mode_flag() == kStrictMode)
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004344 ? isolate()->builtins()->KeyedStoreIC_Initialize_Strict()
4345 : isolate()->builtins()->KeyedStoreIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004346 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004347}
4348
4349
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004350void LCodeGen::DoTrapAllocationMemento(LTrapAllocationMemento* instr) {
4351 Register object = ToRegister(instr->object());
4352 Register temp = ToRegister(instr->temp());
4353 __ TestJSArrayForAllocationSiteInfo(object, temp);
4354 DeoptimizeIf(equal, instr->environment());
4355}
4356
4357
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004358void LCodeGen::DoTransitionElementsKind(LTransitionElementsKind* instr) {
4359 Register object_reg = ToRegister(instr->object());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004360
4361 Handle<Map> from_map = instr->original_map();
4362 Handle<Map> to_map = instr->transitioned_map();
yangguo@chromium.org003650e2013-01-24 16:31:08 +00004363 ElementsKind from_kind = instr->from_kind();
4364 ElementsKind to_kind = instr->to_kind();
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004365
4366 Label not_applicable;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004367 bool is_simple_map_transition =
4368 IsSimpleMapChangeTransition(from_kind, to_kind);
4369 Label::Distance branch_distance =
4370 is_simple_map_transition ? Label::kNear : Label::kFar;
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004371 __ cmp(FieldOperand(object_reg, HeapObject::kMapOffset), from_map);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004372 __ j(not_equal, &not_applicable, branch_distance);
4373 if (is_simple_map_transition) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004374 Register new_map_reg = ToRegister(instr->new_map_temp());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004375 Handle<Map> map = instr->hydrogen()->transitioned_map();
4376 __ mov(FieldOperand(object_reg, HeapObject::kMapOffset),
4377 Immediate(map));
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004378 // Write barrier.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004379 ASSERT_NE(instr->temp(), NULL);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004380 __ RecordWriteForMap(object_reg, to_map, new_map_reg,
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004381 ToRegister(instr->temp()),
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004382 kDontSaveFPRegs);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004383 } else if (FLAG_compiled_transitions) {
4384 PushSafepointRegistersScope scope(this);
4385 if (!object_reg.is(eax)) {
4386 __ push(object_reg);
4387 }
4388 LoadContextFromDeferred(instr->context());
4389 if (!object_reg.is(eax)) {
4390 __ pop(eax);
4391 }
4392 __ mov(ebx, to_map);
4393 TransitionElementsKindStub stub(from_kind, to_kind);
4394 __ CallStub(&stub);
4395 RecordSafepointWithRegisters(
4396 instr->pointer_map(), 0, Safepoint::kNoLazyDeopt);
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004397 } else if (IsFastSmiElementsKind(from_kind) &&
4398 IsFastDoubleElementsKind(to_kind)) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004399 Register new_map_reg = ToRegister(instr->new_map_temp());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004400 __ mov(new_map_reg, to_map);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004401 Register fixed_object_reg = ToRegister(instr->temp());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004402 ASSERT(fixed_object_reg.is(edx));
4403 ASSERT(new_map_reg.is(ebx));
4404 __ mov(fixed_object_reg, object_reg);
4405 CallCode(isolate()->builtins()->TransitionElementsSmiToDouble(),
4406 RelocInfo::CODE_TARGET, instr);
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004407 } else if (IsFastDoubleElementsKind(from_kind) &&
4408 IsFastObjectElementsKind(to_kind)) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004409 Register new_map_reg = ToRegister(instr->new_map_temp());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004410 __ mov(new_map_reg, to_map);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004411 Register fixed_object_reg = ToRegister(instr->temp());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004412 ASSERT(fixed_object_reg.is(edx));
4413 ASSERT(new_map_reg.is(ebx));
4414 __ mov(fixed_object_reg, object_reg);
4415 CallCode(isolate()->builtins()->TransitionElementsDoubleToObject(),
4416 RelocInfo::CODE_TARGET, instr);
4417 } else {
4418 UNREACHABLE();
4419 }
4420 __ bind(&not_applicable);
4421}
4422
4423
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004424void LCodeGen::DoStringCharCodeAt(LStringCharCodeAt* instr) {
4425 class DeferredStringCharCodeAt: public LDeferredCode {
4426 public:
4427 DeferredStringCharCodeAt(LCodeGen* codegen, LStringCharCodeAt* instr)
4428 : LDeferredCode(codegen), instr_(instr) { }
4429 virtual void Generate() { codegen()->DoDeferredStringCharCodeAt(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004430 virtual LInstruction* instr() { return instr_; }
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004431 private:
4432 LStringCharCodeAt* instr_;
4433 };
4434
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004435 DeferredStringCharCodeAt* deferred =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004436 new(zone()) DeferredStringCharCodeAt(this, instr);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004437
erikcorry0ad885c2011-11-21 13:51:57 +00004438 StringCharLoadGenerator::Generate(masm(),
4439 factory(),
4440 ToRegister(instr->string()),
4441 ToRegister(instr->index()),
4442 ToRegister(instr->result()),
4443 deferred->entry());
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004444 __ bind(deferred->exit());
4445}
4446
4447
4448void LCodeGen::DoDeferredStringCharCodeAt(LStringCharCodeAt* instr) {
4449 Register string = ToRegister(instr->string());
4450 Register result = ToRegister(instr->result());
4451
4452 // TODO(3095996): Get rid of this. For now, we need to make the
4453 // result register contain a valid pointer because it is already
4454 // contained in the register pointer map.
4455 __ Set(result, Immediate(0));
4456
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004457 PushSafepointRegistersScope scope(this);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004458 __ push(string);
4459 // Push the index as a smi. This is safe because of the checks in
4460 // DoStringCharCodeAt above.
4461 STATIC_ASSERT(String::kMaxLength <= Smi::kMaxValue);
4462 if (instr->index()->IsConstantOperand()) {
4463 int const_index = ToInteger32(LConstantOperand::cast(instr->index()));
4464 __ push(Immediate(Smi::FromInt(const_index)));
4465 } else {
4466 Register index = ToRegister(instr->index());
4467 __ SmiTag(index);
4468 __ push(index);
4469 }
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004470 CallRuntimeFromDeferred(Runtime::kStringCharCodeAt, 2,
4471 instr, instr->context());
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00004472 __ AssertSmi(eax);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004473 __ SmiUntag(eax);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004474 __ StoreToSafepointRegisterSlot(result, eax);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004475}
4476
4477
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004478void LCodeGen::DoStringCharFromCode(LStringCharFromCode* instr) {
4479 class DeferredStringCharFromCode: public LDeferredCode {
4480 public:
4481 DeferredStringCharFromCode(LCodeGen* codegen, LStringCharFromCode* instr)
4482 : LDeferredCode(codegen), instr_(instr) { }
4483 virtual void Generate() { codegen()->DoDeferredStringCharFromCode(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004484 virtual LInstruction* instr() { return instr_; }
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004485 private:
4486 LStringCharFromCode* instr_;
4487 };
4488
4489 DeferredStringCharFromCode* deferred =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004490 new(zone()) DeferredStringCharFromCode(this, instr);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004491
4492 ASSERT(instr->hydrogen()->value()->representation().IsInteger32());
4493 Register char_code = ToRegister(instr->char_code());
4494 Register result = ToRegister(instr->result());
4495 ASSERT(!char_code.is(result));
4496
jkummerow@chromium.org59297c72013-01-09 16:32:23 +00004497 __ cmp(char_code, String::kMaxOneByteCharCode);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004498 __ j(above, deferred->entry());
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004499 __ Set(result, Immediate(factory()->single_character_string_cache()));
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004500 __ mov(result, FieldOperand(result,
4501 char_code, times_pointer_size,
4502 FixedArray::kHeaderSize));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004503 __ cmp(result, factory()->undefined_value());
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004504 __ j(equal, deferred->entry());
4505 __ bind(deferred->exit());
4506}
4507
4508
4509void LCodeGen::DoDeferredStringCharFromCode(LStringCharFromCode* instr) {
4510 Register char_code = ToRegister(instr->char_code());
4511 Register result = ToRegister(instr->result());
4512
4513 // TODO(3095996): Get rid of this. For now, we need to make the
4514 // result register contain a valid pointer because it is already
4515 // contained in the register pointer map.
4516 __ Set(result, Immediate(0));
4517
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004518 PushSafepointRegistersScope scope(this);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004519 __ SmiTag(char_code);
4520 __ push(char_code);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004521 CallRuntimeFromDeferred(Runtime::kCharFromCode, 1, instr, instr->context());
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004522 __ StoreToSafepointRegisterSlot(result, eax);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004523}
4524
4525
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004526void LCodeGen::DoStringLength(LStringLength* instr) {
4527 Register string = ToRegister(instr->string());
4528 Register result = ToRegister(instr->result());
4529 __ mov(result, FieldOperand(string, String::kLengthOffset));
4530}
4531
4532
danno@chromium.org160a7b02011-04-18 15:51:38 +00004533void LCodeGen::DoStringAdd(LStringAdd* instr) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00004534 EmitPushTaggedOperand(instr->left());
4535 EmitPushTaggedOperand(instr->right());
danno@chromium.org160a7b02011-04-18 15:51:38 +00004536 StringAddStub stub(NO_STRING_CHECK_IN_STUB);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004537 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
danno@chromium.org160a7b02011-04-18 15:51:38 +00004538}
4539
4540
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004541void LCodeGen::DoInteger32ToDouble(LInteger32ToDouble* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004542 if (CpuFeatures::IsSupported(SSE2)) {
4543 CpuFeatures::Scope scope(SSE2);
4544 LOperand* input = instr->value();
4545 ASSERT(input->IsRegister() || input->IsStackSlot());
4546 LOperand* output = instr->result();
4547 ASSERT(output->IsDoubleRegister());
4548 __ cvtsi2sd(ToDoubleRegister(output), ToOperand(input));
4549 } else {
4550 UNREACHABLE();
4551 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004552}
4553
4554
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004555void LCodeGen::DoUint32ToDouble(LUint32ToDouble* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004556 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004557 LOperand* input = instr->value();
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004558 LOperand* output = instr->result();
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004559 LOperand* temp = instr->temp();
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004560
4561 __ LoadUint32(ToDoubleRegister(output),
4562 ToRegister(input),
4563 ToDoubleRegister(temp));
4564}
4565
4566
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004567void LCodeGen::DoNumberTagI(LNumberTagI* instr) {
4568 class DeferredNumberTagI: public LDeferredCode {
4569 public:
4570 DeferredNumberTagI(LCodeGen* codegen, LNumberTagI* instr)
4571 : LDeferredCode(codegen), instr_(instr) { }
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004572 virtual void Generate() {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004573 codegen()->DoDeferredNumberTagI(instr_, instr_->value(), SIGNED_INT32);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004574 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004575 virtual LInstruction* instr() { return instr_; }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004576 private:
4577 LNumberTagI* instr_;
4578 };
4579
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004580 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004581 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4582 Register reg = ToRegister(input);
4583
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004584 DeferredNumberTagI* deferred = new(zone()) DeferredNumberTagI(this, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004585 __ SmiTag(reg);
4586 __ j(overflow, deferred->entry());
4587 __ bind(deferred->exit());
4588}
4589
4590
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004591void LCodeGen::DoNumberTagU(LNumberTagU* instr) {
4592 class DeferredNumberTagU: public LDeferredCode {
4593 public:
4594 DeferredNumberTagU(LCodeGen* codegen, LNumberTagU* instr)
4595 : LDeferredCode(codegen), instr_(instr) { }
4596 virtual void Generate() {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004597 codegen()->DoDeferredNumberTagI(instr_, instr_->value(), UNSIGNED_INT32);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004598 }
4599 virtual LInstruction* instr() { return instr_; }
4600 private:
4601 LNumberTagU* instr_;
4602 };
4603
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004604 LOperand* input = instr->value();
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004605 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4606 Register reg = ToRegister(input);
4607
4608 DeferredNumberTagU* deferred = new(zone()) DeferredNumberTagU(this, instr);
4609 __ cmp(reg, Immediate(Smi::kMaxValue));
4610 __ j(above, deferred->entry());
4611 __ SmiTag(reg);
4612 __ bind(deferred->exit());
4613}
4614
4615
4616void LCodeGen::DoDeferredNumberTagI(LInstruction* instr,
4617 LOperand* value,
4618 IntegerSignedness signedness) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004619 Label slow;
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004620 Register reg = ToRegister(value);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004621 Register tmp = reg.is(eax) ? ecx : eax;
4622
4623 // Preserve the value of all registers.
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004624 PushSafepointRegistersScope scope(this);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004625
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004626 Label done;
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004627
4628 if (signedness == SIGNED_INT32) {
4629 // There was overflow, so bits 30 and 31 of the original integer
4630 // disagree. Try to allocate a heap number in new space and store
4631 // the value in there. If that fails, call the runtime system.
4632 __ SmiUntag(reg);
4633 __ xor_(reg, 0x80000000);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004634 if (CpuFeatures::IsSupported(SSE2)) {
4635 CpuFeatures::Scope feature_scope(SSE2);
4636 __ cvtsi2sd(xmm0, Operand(reg));
4637 } else {
4638 __ push(reg);
4639 __ fild_s(Operand(esp, 0));
4640 __ pop(reg);
4641 }
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004642 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004643 if (CpuFeatures::IsSupported(SSE2)) {
4644 CpuFeatures::Scope feature_scope(SSE2);
4645 __ LoadUint32(xmm0, reg, xmm1);
4646 } else {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +00004647 // There's no fild variant for unsigned values, so zero-extend to a 64-bit
4648 // int manually.
4649 __ push(Immediate(0));
4650 __ push(reg);
4651 __ fild_d(Operand(esp, 0));
4652 __ pop(reg);
4653 __ pop(reg);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004654 }
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004655 }
4656
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004657 if (FLAG_inline_new) {
4658 __ AllocateHeapNumber(reg, tmp, no_reg, &slow);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004659 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004660 }
4661
4662 // Slow case: Call the runtime system to do the number allocation.
4663 __ bind(&slow);
4664
4665 // TODO(3095996): Put a valid pointer value in the stack slot where the result
4666 // register is stored, as this register is in the pointer map, but contains an
4667 // integer value.
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004668 __ StoreToSafepointRegisterSlot(reg, Immediate(0));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004669 // NumberTagI and NumberTagD use the context from the frame, rather than
4670 // the environment's HContext or HInlinedContext value.
4671 // They only call Runtime::kAllocateHeapNumber.
4672 // The corresponding HChange instructions are added in a phase that does
4673 // not have easy access to the local context.
4674 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
4675 __ CallRuntimeSaveDoubles(Runtime::kAllocateHeapNumber);
4676 RecordSafepointWithRegisters(
ricow@chromium.org27bf2882011-11-17 08:34:43 +00004677 instr->pointer_map(), 0, Safepoint::kNoLazyDeopt);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004678 if (!reg.is(eax)) __ mov(reg, eax);
4679
4680 // Done. Put the value in xmm0 into the value of the allocated heap
4681 // number.
4682 __ bind(&done);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004683 if (CpuFeatures::IsSupported(SSE2)) {
4684 CpuFeatures::Scope feature_scope(SSE2);
4685 __ movdbl(FieldOperand(reg, HeapNumber::kValueOffset), xmm0);
4686 } else {
4687 __ fstp_d(FieldOperand(reg, HeapNumber::kValueOffset));
4688 }
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004689 __ StoreToSafepointRegisterSlot(reg, reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004690}
4691
4692
4693void LCodeGen::DoNumberTagD(LNumberTagD* instr) {
4694 class DeferredNumberTagD: public LDeferredCode {
4695 public:
4696 DeferredNumberTagD(LCodeGen* codegen, LNumberTagD* instr)
4697 : LDeferredCode(codegen), instr_(instr) { }
4698 virtual void Generate() { codegen()->DoDeferredNumberTagD(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004699 virtual LInstruction* instr() { return instr_; }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004700 private:
4701 LNumberTagD* instr_;
4702 };
4703
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004704 Register reg = ToRegister(instr->result());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004705
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004706 bool convert_hole = false;
4707 HValue* change_input = instr->hydrogen()->value();
4708 if (change_input->IsLoadKeyed()) {
4709 HLoadKeyed* load = HLoadKeyed::cast(change_input);
4710 convert_hole = load->UsesMustHandleHole();
4711 }
4712
4713 Label no_special_nan_handling;
4714 Label done;
4715 if (convert_hole) {
4716 bool use_sse2 = CpuFeatures::IsSupported(SSE2);
4717 if (use_sse2) {
4718 CpuFeatures::Scope scope(SSE2);
4719 XMMRegister input_reg = ToDoubleRegister(instr->value());
4720 __ ucomisd(input_reg, input_reg);
4721 } else {
4722 if (!IsX87TopOfStack(instr->value())) {
4723 __ fld_d(ToOperand(instr->value()));
4724 }
4725 __ fld(0);
4726 __ fld(0);
4727 __ FCmp();
4728 }
4729
4730 __ j(parity_odd, &no_special_nan_handling);
4731 __ sub(esp, Immediate(kDoubleSize));
4732 if (use_sse2) {
4733 CpuFeatures::Scope scope(SSE2);
4734 XMMRegister input_reg = ToDoubleRegister(instr->value());
4735 __ movdbl(MemOperand(esp, 0), input_reg);
4736 } else {
4737 __ fld(0);
4738 __ fstp_d(MemOperand(esp, 0));
4739 }
4740 __ cmp(MemOperand(esp, sizeof(kHoleNanLower32)),
4741 Immediate(kHoleNanUpper32));
4742 Label canonicalize;
4743 __ j(not_equal, &canonicalize);
4744 __ add(esp, Immediate(kDoubleSize));
4745 __ mov(reg, factory()->the_hole_value());
4746 __ jmp(&done);
4747 __ bind(&canonicalize);
4748 __ add(esp, Immediate(kDoubleSize));
4749 ExternalReference nan =
4750 ExternalReference::address_of_canonical_non_hole_nan();
4751 if (use_sse2) {
4752 CpuFeatures::Scope scope(SSE2);
4753 XMMRegister input_reg = ToDoubleRegister(instr->value());
4754 __ movdbl(input_reg, Operand::StaticVariable(nan));
4755 } else {
4756 __ fstp(0);
4757 __ fld_d(Operand::StaticVariable(nan));
4758 }
4759 }
4760
4761 __ bind(&no_special_nan_handling);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004762 DeferredNumberTagD* deferred = new(zone()) DeferredNumberTagD(this, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004763 if (FLAG_inline_new) {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +00004764 Register tmp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004765 __ AllocateHeapNumber(reg, tmp, no_reg, deferred->entry());
4766 } else {
4767 __ jmp(deferred->entry());
4768 }
4769 __ bind(deferred->exit());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004770 if (CpuFeatures::IsSupported(SSE2)) {
4771 CpuFeatures::Scope scope(SSE2);
4772 XMMRegister input_reg = ToDoubleRegister(instr->value());
4773 __ movdbl(FieldOperand(reg, HeapNumber::kValueOffset), input_reg);
4774 } else {
4775 if (!IsX87TopOfStack(instr->value())) {
4776 __ fld_d(ToOperand(instr->value()));
4777 }
4778 __ fstp_d(FieldOperand(reg, HeapNumber::kValueOffset));
4779 }
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004780 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004781}
4782
4783
4784void LCodeGen::DoDeferredNumberTagD(LNumberTagD* instr) {
4785 // TODO(3095996): Get rid of this. For now, we need to make the
4786 // result register contain a valid pointer because it is already
4787 // contained in the register pointer map.
4788 Register reg = ToRegister(instr->result());
4789 __ Set(reg, Immediate(0));
4790
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004791 PushSafepointRegistersScope scope(this);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004792 // NumberTagI and NumberTagD use the context from the frame, rather than
4793 // the environment's HContext or HInlinedContext value.
4794 // They only call Runtime::kAllocateHeapNumber.
4795 // The corresponding HChange instructions are added in a phase that does
4796 // not have easy access to the local context.
4797 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
4798 __ CallRuntimeSaveDoubles(Runtime::kAllocateHeapNumber);
ricow@chromium.org27bf2882011-11-17 08:34:43 +00004799 RecordSafepointWithRegisters(
4800 instr->pointer_map(), 0, Safepoint::kNoLazyDeopt);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004801 __ StoreToSafepointRegisterSlot(reg, eax);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004802}
4803
4804
4805void LCodeGen::DoSmiTag(LSmiTag* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004806 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004807 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4808 ASSERT(!instr->hydrogen_value()->CheckFlag(HValue::kCanOverflow));
4809 __ SmiTag(ToRegister(input));
4810}
4811
4812
4813void LCodeGen::DoSmiUntag(LSmiUntag* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004814 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004815 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4816 if (instr->needs_check()) {
4817 __ test(ToRegister(input), Immediate(kSmiTagMask));
4818 DeoptimizeIf(not_zero, instr->environment());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004819 } else {
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00004820 __ AssertSmi(ToRegister(input));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004821 }
4822 __ SmiUntag(ToRegister(input));
4823}
4824
4825
4826void LCodeGen::EmitNumberUntagD(Register input_reg,
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00004827 Register temp_reg,
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004828 XMMRegister result_reg,
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004829 bool deoptimize_on_undefined,
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00004830 bool deoptimize_on_minus_zero,
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004831 LEnvironment* env,
4832 NumberUntagDMode mode) {
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004833 Label load_smi, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004834
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004835 if (mode == NUMBER_CANDIDATE_IS_ANY_TAGGED) {
4836 // Smi check.
4837 __ JumpIfSmi(input_reg, &load_smi, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004838
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004839 // Heap number map check.
4840 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
4841 factory()->heap_number_map());
4842 if (deoptimize_on_undefined) {
4843 DeoptimizeIf(not_equal, env);
4844 } else {
4845 Label heap_number;
4846 __ j(equal, &heap_number, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004847
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004848 __ cmp(input_reg, factory()->undefined_value());
4849 DeoptimizeIf(not_equal, env);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004850
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004851 // Convert undefined to NaN.
4852 ExternalReference nan =
4853 ExternalReference::address_of_canonical_non_hole_nan();
4854 __ movdbl(result_reg, Operand::StaticVariable(nan));
4855 __ jmp(&done, Label::kNear);
4856
4857 __ bind(&heap_number);
4858 }
4859 // Heap number to XMM conversion.
4860 __ movdbl(result_reg, FieldOperand(input_reg, HeapNumber::kValueOffset));
4861 if (deoptimize_on_minus_zero) {
4862 XMMRegister xmm_scratch = xmm0;
4863 __ xorps(xmm_scratch, xmm_scratch);
4864 __ ucomisd(result_reg, xmm_scratch);
4865 __ j(not_zero, &done, Label::kNear);
4866 __ movmskpd(temp_reg, result_reg);
4867 __ test_b(temp_reg, 1);
4868 DeoptimizeIf(not_zero, env);
4869 }
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004870 __ jmp(&done, Label::kNear);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004871 } else if (mode == NUMBER_CANDIDATE_IS_SMI_OR_HOLE) {
4872 __ test(input_reg, Immediate(kSmiTagMask));
4873 DeoptimizeIf(not_equal, env);
4874 } else if (mode == NUMBER_CANDIDATE_IS_SMI_CONVERT_HOLE) {
4875 __ test(input_reg, Immediate(kSmiTagMask));
4876 __ j(zero, &load_smi);
4877 ExternalReference hole_nan_reference =
4878 ExternalReference::address_of_the_hole_nan();
4879 __ movdbl(result_reg, Operand::StaticVariable(hole_nan_reference));
4880 __ jmp(&done, Label::kNear);
4881 } else {
4882 ASSERT(mode == NUMBER_CANDIDATE_IS_SMI);
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004883 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004884
4885 // Smi to XMM conversion
4886 __ bind(&load_smi);
4887 __ SmiUntag(input_reg); // Untag smi before converting to float.
4888 __ cvtsi2sd(result_reg, Operand(input_reg));
4889 __ SmiTag(input_reg); // Retag smi.
4890 __ bind(&done);
4891}
4892
4893
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004894void LCodeGen::DoDeferredTaggedToI(LTaggedToI* instr) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004895 Label done, heap_number;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004896 Register input_reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004897
4898 // Heap number map check.
4899 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004900 factory()->heap_number_map());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004901
4902 if (instr->truncating()) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004903 __ j(equal, &heap_number, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004904 // Check for undefined. Undefined is converted to zero for truncating
4905 // conversions.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004906 __ cmp(input_reg, factory()->undefined_value());
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004907 __ RecordComment("Deferred TaggedToI: cannot truncate");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004908 DeoptimizeIf(not_equal, instr->environment());
4909 __ mov(input_reg, 0);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004910 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004911
4912 __ bind(&heap_number);
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00004913 if (CpuFeatures::IsSupported(SSE3)) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004914 CpuFeatures::Scope scope(SSE3);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004915 Label convert;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004916 // Use more powerful conversion when sse3 is available.
4917 // Load x87 register with heap number.
4918 __ fld_d(FieldOperand(input_reg, HeapNumber::kValueOffset));
4919 // Get exponent alone and check for too-big exponent.
4920 __ mov(input_reg, FieldOperand(input_reg, HeapNumber::kExponentOffset));
4921 __ and_(input_reg, HeapNumber::kExponentMask);
4922 const uint32_t kTooBigExponent =
4923 (HeapNumber::kExponentBias + 63) << HeapNumber::kExponentShift;
4924 __ cmp(Operand(input_reg), Immediate(kTooBigExponent));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004925 __ j(less, &convert, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004926 // Pop FPU stack before deoptimizing.
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004927 __ fstp(0);
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004928 __ RecordComment("Deferred TaggedToI: exponent too big");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004929 DeoptimizeIf(no_condition, instr->environment());
4930
4931 // Reserve space for 64 bit answer.
4932 __ bind(&convert);
4933 __ sub(Operand(esp), Immediate(kDoubleSize));
4934 // Do conversion, which cannot fail because we checked the exponent.
4935 __ fisttp_d(Operand(esp, 0));
4936 __ mov(input_reg, Operand(esp, 0)); // Low word of answer is the result.
4937 __ add(Operand(esp), Immediate(kDoubleSize));
4938 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004939 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004940 XMMRegister xmm_temp = ToDoubleRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004941 __ movdbl(xmm0, FieldOperand(input_reg, HeapNumber::kValueOffset));
4942 __ cvttsd2si(input_reg, Operand(xmm0));
4943 __ cmp(input_reg, 0x80000000u);
4944 __ j(not_equal, &done);
4945 // Check if the input was 0x8000000 (kMinInt).
4946 // If no, then we got an overflow and we deoptimize.
4947 ExternalReference min_int = ExternalReference::address_of_min_int();
4948 __ movdbl(xmm_temp, Operand::StaticVariable(min_int));
4949 __ ucomisd(xmm_temp, xmm0);
4950 DeoptimizeIf(not_equal, instr->environment());
4951 DeoptimizeIf(parity_even, instr->environment()); // NaN.
4952 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004953 } else if (CpuFeatures::IsSupported(SSE2)) {
4954 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004955 // Deoptimize if we don't have a heap number.
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004956 __ RecordComment("Deferred TaggedToI: not a heap number");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004957 DeoptimizeIf(not_equal, instr->environment());
4958
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004959 XMMRegister xmm_temp = ToDoubleRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004960 __ movdbl(xmm0, FieldOperand(input_reg, HeapNumber::kValueOffset));
4961 __ cvttsd2si(input_reg, Operand(xmm0));
4962 __ cvtsi2sd(xmm_temp, Operand(input_reg));
4963 __ ucomisd(xmm0, xmm_temp);
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004964 __ RecordComment("Deferred TaggedToI: lost precision");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004965 DeoptimizeIf(not_equal, instr->environment());
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004966 __ RecordComment("Deferred TaggedToI: NaN");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004967 DeoptimizeIf(parity_even, instr->environment()); // NaN.
4968 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
4969 __ test(input_reg, Operand(input_reg));
4970 __ j(not_zero, &done);
4971 __ movmskpd(input_reg, xmm0);
4972 __ and_(input_reg, 1);
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004973 __ RecordComment("Deferred TaggedToI: minus zero");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004974 DeoptimizeIf(not_zero, instr->environment());
4975 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004976 } else {
4977 UNREACHABLE();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004978 }
4979 __ bind(&done);
4980}
4981
4982
4983void LCodeGen::DoTaggedToI(LTaggedToI* instr) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004984 class DeferredTaggedToI: public LDeferredCode {
4985 public:
4986 DeferredTaggedToI(LCodeGen* codegen, LTaggedToI* instr)
4987 : LDeferredCode(codegen), instr_(instr) { }
4988 virtual void Generate() { codegen()->DoDeferredTaggedToI(instr_); }
4989 virtual LInstruction* instr() { return instr_; }
4990 private:
4991 LTaggedToI* instr_;
4992 };
4993
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004994 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004995 ASSERT(input->IsRegister());
4996 ASSERT(input->Equals(instr->result()));
4997
4998 Register input_reg = ToRegister(input);
4999
mmassi@chromium.org7028c052012-06-13 11:51:58 +00005000 DeferredTaggedToI* deferred = new(zone()) DeferredTaggedToI(this, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005001
5002 // Smi check.
whesse@chromium.org7b260152011-06-20 15:33:18 +00005003 __ JumpIfNotSmi(input_reg, deferred->entry());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005004
5005 // Smi to int32 conversion
5006 __ SmiUntag(input_reg); // Untag smi.
5007
5008 __ bind(deferred->exit());
5009}
5010
5011
5012void LCodeGen::DoNumberUntagD(LNumberUntagD* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005013 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005014 ASSERT(input->IsRegister());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005015 LOperand* temp = instr->temp();
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005016 ASSERT(temp == NULL || temp->IsRegister());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005017 LOperand* result = instr->result();
5018 ASSERT(result->IsDoubleRegister());
5019
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005020 if (CpuFeatures::IsSupported(SSE2)) {
5021 CpuFeatures::Scope scope(SSE2);
5022 Register input_reg = ToRegister(input);
5023 XMMRegister result_reg = ToDoubleRegister(result);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005024
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005025 bool deoptimize_on_minus_zero =
5026 instr->hydrogen()->deoptimize_on_minus_zero();
5027 Register temp_reg = deoptimize_on_minus_zero ? ToRegister(temp) : no_reg;
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005028
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005029 NumberUntagDMode mode = NUMBER_CANDIDATE_IS_ANY_TAGGED;
5030 HValue* value = instr->hydrogen()->value();
5031 if (value->type().IsSmi()) {
5032 if (value->IsLoadKeyed()) {
5033 HLoadKeyed* load = HLoadKeyed::cast(value);
5034 if (load->UsesMustHandleHole()) {
5035 if (load->hole_mode() == ALLOW_RETURN_HOLE) {
5036 mode = NUMBER_CANDIDATE_IS_SMI_CONVERT_HOLE;
5037 } else {
5038 mode = NUMBER_CANDIDATE_IS_SMI_OR_HOLE;
5039 }
5040 } else {
5041 mode = NUMBER_CANDIDATE_IS_SMI;
5042 }
5043 }
5044 }
5045
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005046 EmitNumberUntagD(input_reg,
5047 temp_reg,
5048 result_reg,
5049 instr->hydrogen()->deoptimize_on_undefined(),
5050 deoptimize_on_minus_zero,
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005051 instr->environment(),
5052 mode);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005053 } else {
5054 UNIMPLEMENTED();
5055 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005056}
5057
5058
5059void LCodeGen::DoDoubleToI(LDoubleToI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005060 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005061 ASSERT(input->IsDoubleRegister());
5062 LOperand* result = instr->result();
5063 ASSERT(result->IsRegister());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005064 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005065
5066 XMMRegister input_reg = ToDoubleRegister(input);
5067 Register result_reg = ToRegister(result);
5068
5069 if (instr->truncating()) {
5070 // Performs a truncating conversion of a floating point number as used by
5071 // the JS bitwise operations.
5072 __ cvttsd2si(result_reg, Operand(input_reg));
5073 __ cmp(result_reg, 0x80000000u);
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00005074 if (CpuFeatures::IsSupported(SSE3)) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005075 // This will deoptimize if the exponent of the input in out of range.
5076 CpuFeatures::Scope scope(SSE3);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005077 Label convert, done;
5078 __ j(not_equal, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005079 __ sub(Operand(esp), Immediate(kDoubleSize));
5080 __ movdbl(Operand(esp, 0), input_reg);
5081 // Get exponent alone and check for too-big exponent.
5082 __ mov(result_reg, Operand(esp, sizeof(int32_t)));
5083 __ and_(result_reg, HeapNumber::kExponentMask);
5084 const uint32_t kTooBigExponent =
5085 (HeapNumber::kExponentBias + 63) << HeapNumber::kExponentShift;
5086 __ cmp(Operand(result_reg), Immediate(kTooBigExponent));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005087 __ j(less, &convert, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005088 __ add(Operand(esp), Immediate(kDoubleSize));
5089 DeoptimizeIf(no_condition, instr->environment());
5090 __ bind(&convert);
5091 // Do conversion, which cannot fail because we checked the exponent.
5092 __ fld_d(Operand(esp, 0));
5093 __ fisttp_d(Operand(esp, 0));
5094 __ mov(result_reg, Operand(esp, 0)); // Low word of answer is the result.
5095 __ add(Operand(esp), Immediate(kDoubleSize));
5096 __ bind(&done);
5097 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005098 Label done;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005099 Register temp_reg = ToRegister(instr->temp());
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00005100 XMMRegister xmm_scratch = xmm0;
5101
5102 // If cvttsd2si succeeded, we're done. Otherwise, we attempt
5103 // manual conversion.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005104 __ j(not_equal, &done, Label::kNear);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00005105
5106 // Get high 32 bits of the input in result_reg and temp_reg.
5107 __ pshufd(xmm_scratch, input_reg, 1);
5108 __ movd(Operand(temp_reg), xmm_scratch);
5109 __ mov(result_reg, temp_reg);
5110
5111 // Prepare negation mask in temp_reg.
5112 __ sar(temp_reg, kBitsPerInt - 1);
5113
5114 // Extract the exponent from result_reg and subtract adjusted
5115 // bias from it. The adjustment is selected in a way such that
5116 // when the difference is zero, the answer is in the low 32 bits
5117 // of the input, otherwise a shift has to be performed.
5118 __ shr(result_reg, HeapNumber::kExponentShift);
5119 __ and_(result_reg,
5120 HeapNumber::kExponentMask >> HeapNumber::kExponentShift);
5121 __ sub(Operand(result_reg),
5122 Immediate(HeapNumber::kExponentBias +
5123 HeapNumber::kExponentBits +
5124 HeapNumber::kMantissaBits));
5125 // Don't handle big (> kMantissaBits + kExponentBits == 63) or
5126 // special exponents.
5127 DeoptimizeIf(greater, instr->environment());
5128
5129 // Zero out the sign and the exponent in the input (by shifting
5130 // it to the left) and restore the implicit mantissa bit,
5131 // i.e. convert the input to unsigned int64 shifted left by
5132 // kExponentBits.
5133 ExternalReference minus_zero = ExternalReference::address_of_minus_zero();
5134 // Minus zero has the most significant bit set and the other
5135 // bits cleared.
5136 __ movdbl(xmm_scratch, Operand::StaticVariable(minus_zero));
5137 __ psllq(input_reg, HeapNumber::kExponentBits);
5138 __ por(input_reg, xmm_scratch);
5139
5140 // Get the amount to shift the input right in xmm_scratch.
5141 __ neg(result_reg);
5142 __ movd(xmm_scratch, Operand(result_reg));
5143
5144 // Shift the input right and extract low 32 bits.
5145 __ psrlq(input_reg, xmm_scratch);
5146 __ movd(Operand(result_reg), input_reg);
5147
5148 // Use the prepared mask in temp_reg to negate the result if necessary.
5149 __ xor_(result_reg, Operand(temp_reg));
5150 __ sub(result_reg, Operand(temp_reg));
5151 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005152 }
5153 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005154 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005155 __ cvttsd2si(result_reg, Operand(input_reg));
5156 __ cvtsi2sd(xmm0, Operand(result_reg));
5157 __ ucomisd(xmm0, input_reg);
5158 DeoptimizeIf(not_equal, instr->environment());
5159 DeoptimizeIf(parity_even, instr->environment()); // NaN.
5160 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
5161 // The integer converted back is equal to the original. We
5162 // only have to test if we got -0 as an input.
5163 __ test(result_reg, Operand(result_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005164 __ j(not_zero, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005165 __ movmskpd(result_reg, input_reg);
5166 // Bit 0 contains the sign of the double in input_reg.
5167 // If input was positive, we are ok and return 0, otherwise
5168 // deoptimize.
5169 __ and_(result_reg, 1);
5170 DeoptimizeIf(not_zero, instr->environment());
5171 }
5172 __ bind(&done);
5173 }
5174}
5175
5176
5177void LCodeGen::DoCheckSmi(LCheckSmi* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005178 LOperand* input = instr->value();
ricow@chromium.org4f693d62011-07-04 14:01:31 +00005179 __ test(ToOperand(input), Immediate(kSmiTagMask));
ricow@chromium.orgbadaffc2011-03-17 12:15:27 +00005180 DeoptimizeIf(not_zero, instr->environment());
5181}
5182
5183
5184void LCodeGen::DoCheckNonSmi(LCheckNonSmi* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005185 LOperand* input = instr->value();
ricow@chromium.org4f693d62011-07-04 14:01:31 +00005186 __ test(ToOperand(input), Immediate(kSmiTagMask));
ricow@chromium.orgbadaffc2011-03-17 12:15:27 +00005187 DeoptimizeIf(zero, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005188}
5189
5190
5191void LCodeGen::DoCheckInstanceType(LCheckInstanceType* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005192 Register input = ToRegister(instr->value());
5193 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005194
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005195 __ mov(temp, FieldOperand(input, HeapObject::kMapOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005196
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005197 if (instr->hydrogen()->is_interval_check()) {
5198 InstanceType first;
5199 InstanceType last;
5200 instr->hydrogen()->GetCheckInterval(&first, &last);
5201
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00005202 __ cmpb(FieldOperand(temp, Map::kInstanceTypeOffset),
5203 static_cast<int8_t>(first));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005204
5205 // If there is only one type in the interval check for equality.
5206 if (first == last) {
5207 DeoptimizeIf(not_equal, instr->environment());
5208 } else {
5209 DeoptimizeIf(below, instr->environment());
5210 // Omit check for the last type.
5211 if (last != LAST_TYPE) {
5212 __ cmpb(FieldOperand(temp, Map::kInstanceTypeOffset),
5213 static_cast<int8_t>(last));
5214 DeoptimizeIf(above, instr->environment());
5215 }
5216 }
5217 } else {
5218 uint8_t mask;
5219 uint8_t tag;
5220 instr->hydrogen()->GetCheckMaskAndTag(&mask, &tag);
5221
5222 if (IsPowerOf2(mask)) {
5223 ASSERT(tag == 0 || IsPowerOf2(tag));
5224 __ test_b(FieldOperand(temp, Map::kInstanceTypeOffset), mask);
5225 DeoptimizeIf(tag == 0 ? not_zero : zero, instr->environment());
5226 } else {
5227 __ movzx_b(temp, FieldOperand(temp, Map::kInstanceTypeOffset));
5228 __ and_(temp, mask);
yangguo@chromium.org56454712012-02-16 15:33:53 +00005229 __ cmp(temp, tag);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005230 DeoptimizeIf(not_equal, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005231 }
5232 }
5233}
5234
5235
5236void LCodeGen::DoCheckFunction(LCheckFunction* instr) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005237 Handle<JSFunction> target = instr->hydrogen()->target();
yangguo@chromium.org003650e2013-01-24 16:31:08 +00005238 if (instr->hydrogen()->target_in_new_space()) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005239 Register reg = ToRegister(instr->value());
5240 Handle<JSGlobalPropertyCell> cell =
5241 isolate()->factory()->NewJSGlobalPropertyCell(target);
5242 __ cmp(reg, Operand::Cell(cell));
5243 } else {
5244 Operand operand = ToOperand(instr->value());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005245 __ cmp(operand, target);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005246 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005247 DeoptimizeIf(not_equal, instr->environment());
5248}
5249
5250
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005251void LCodeGen::DoCheckMapCommon(Register reg,
5252 Handle<Map> map,
5253 CompareMapMode mode,
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005254 LInstruction* instr) {
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005255 Label success;
5256 __ CompareMap(reg, map, &success, mode);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005257 DeoptimizeIf(not_equal, instr->environment());
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005258 __ bind(&success);
5259}
5260
5261
jkummerow@chromium.org1456e702012-03-30 08:38:13 +00005262void LCodeGen::DoCheckMaps(LCheckMaps* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005263 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005264 ASSERT(input->IsRegister());
5265 Register reg = ToRegister(input);
jkummerow@chromium.org1456e702012-03-30 08:38:13 +00005266
5267 Label success;
5268 SmallMapList* map_set = instr->hydrogen()->map_set();
5269 for (int i = 0; i < map_set->length() - 1; i++) {
5270 Handle<Map> map = map_set->at(i);
5271 __ CompareMap(reg, map, &success, REQUIRE_EXACT_MAP);
5272 __ j(equal, &success);
5273 }
5274 Handle<Map> map = map_set->last();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005275 DoCheckMapCommon(reg, map, REQUIRE_EXACT_MAP, instr);
jkummerow@chromium.org1456e702012-03-30 08:38:13 +00005276 __ bind(&success);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005277}
5278
5279
kmillikin@chromium.orgc53e10d2011-05-18 09:12:58 +00005280void LCodeGen::DoClampDToUint8(LClampDToUint8* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005281 CpuFeatures::Scope scope(SSE2);
kmillikin@chromium.orgc53e10d2011-05-18 09:12:58 +00005282 XMMRegister value_reg = ToDoubleRegister(instr->unclamped());
5283 Register result_reg = ToRegister(instr->result());
5284 __ ClampDoubleToUint8(value_reg, xmm0, result_reg);
5285}
5286
5287
5288void LCodeGen::DoClampIToUint8(LClampIToUint8* instr) {
5289 ASSERT(instr->unclamped()->Equals(instr->result()));
5290 Register value_reg = ToRegister(instr->result());
5291 __ ClampUint8(value_reg);
5292}
5293
5294
5295void LCodeGen::DoClampTToUint8(LClampTToUint8* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005296 CpuFeatures::Scope scope(SSE2);
5297
kmillikin@chromium.orgc53e10d2011-05-18 09:12:58 +00005298 ASSERT(instr->unclamped()->Equals(instr->result()));
5299 Register input_reg = ToRegister(instr->unclamped());
5300 Label is_smi, done, heap_number;
5301
5302 __ JumpIfSmi(input_reg, &is_smi);
5303
5304 // Check for heap number
5305 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
5306 factory()->heap_number_map());
5307 __ j(equal, &heap_number, Label::kNear);
5308
5309 // Check for undefined. Undefined is converted to zero for clamping
5310 // conversions.
5311 __ cmp(input_reg, factory()->undefined_value());
5312 DeoptimizeIf(not_equal, instr->environment());
5313 __ mov(input_reg, 0);
5314 __ jmp(&done, Label::kNear);
5315
5316 // Heap number
5317 __ bind(&heap_number);
5318 __ movdbl(xmm0, FieldOperand(input_reg, HeapNumber::kValueOffset));
5319 __ ClampDoubleToUint8(xmm0, xmm1, input_reg);
5320 __ jmp(&done, Label::kNear);
5321
5322 // smi
5323 __ bind(&is_smi);
5324 __ SmiUntag(input_reg);
5325 __ ClampUint8(input_reg);
5326
5327 __ bind(&done);
5328}
5329
5330
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005331void LCodeGen::DoCheckPrototypeMaps(LCheckPrototypeMaps* instr) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00005332 ASSERT(instr->temp()->Equals(instr->result()));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005333 Register reg = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005334
mvstanton@chromium.org6bec0092013-01-23 13:46:53 +00005335 ZoneList<Handle<JSObject> >* prototypes = instr->prototypes();
5336 ZoneList<Handle<Map> >* maps = instr->maps();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005337
mvstanton@chromium.org6bec0092013-01-23 13:46:53 +00005338 ASSERT(prototypes->length() == maps->length());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005339
ulan@chromium.org2e04b582013-02-21 14:06:02 +00005340 // TODO(ulan): Move this check to hydrogen and split HCheckPrototypeMaps
5341 // into two instruction: one that checks the prototypes and another that
5342 // loads the holder (HConstant). Find a way to do it without breaking
5343 // parallel recompilation.
5344 if (instr->hydrogen()->CanOmitPrototypeChecks()) {
5345 for (int i = 0; i < maps->length(); i++) {
5346 prototype_maps_.Add(maps->at(i), info()->zone());
5347 }
5348 __ LoadHeapObject(reg, prototypes->at(prototypes->length() - 1));
5349 } else {
5350 for (int i = 0; i < prototypes->length(); i++) {
5351 __ LoadHeapObject(reg, prototypes->at(i));
5352 DoCheckMapCommon(reg, maps->at(i), ALLOW_ELEMENT_TRANSITION_MAPS, instr);
5353 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005354 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005355}
5356
5357
ulan@chromium.org967e2702012-02-28 09:49:15 +00005358void LCodeGen::DoAllocateObject(LAllocateObject* instr) {
5359 class DeferredAllocateObject: public LDeferredCode {
5360 public:
5361 DeferredAllocateObject(LCodeGen* codegen, LAllocateObject* instr)
5362 : LDeferredCode(codegen), instr_(instr) { }
5363 virtual void Generate() { codegen()->DoDeferredAllocateObject(instr_); }
5364 virtual LInstruction* instr() { return instr_; }
5365 private:
5366 LAllocateObject* instr_;
5367 };
5368
mmassi@chromium.org7028c052012-06-13 11:51:58 +00005369 DeferredAllocateObject* deferred =
5370 new(zone()) DeferredAllocateObject(this, instr);
ulan@chromium.org967e2702012-02-28 09:49:15 +00005371
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005372 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005373 Register scratch = ToRegister(instr->temp());
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005374 Handle<JSFunction> constructor = instr->hydrogen()->constructor();
5375 Handle<Map> initial_map(constructor->initial_map());
5376 int instance_size = initial_map->instance_size();
5377 ASSERT(initial_map->pre_allocated_property_fields() +
5378 initial_map->unused_property_fields() -
5379 initial_map->inobject_properties() == 0);
5380
5381 // Allocate memory for the object. The initial map might change when
5382 // the constructor's prototype changes, but instance size and property
5383 // counts remain unchanged (if slack tracking finished).
5384 ASSERT(!constructor->shared()->IsInobjectSlackTrackingInProgress());
5385 __ AllocateInNewSpace(instance_size,
5386 result,
5387 no_reg,
5388 scratch,
5389 deferred->entry(),
5390 TAG_OBJECT);
5391
fschneider@chromium.org7d10be52012-04-10 12:30:14 +00005392 __ bind(deferred->exit());
5393 if (FLAG_debug_code) {
5394 Label is_in_new_space;
5395 __ JumpIfInNewSpace(result, scratch, &is_in_new_space);
5396 __ Abort("Allocated object is not in new-space");
5397 __ bind(&is_in_new_space);
5398 }
5399
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005400 // Load the initial map.
5401 Register map = scratch;
5402 __ LoadHeapObject(scratch, constructor);
5403 __ mov(map, FieldOperand(scratch, JSFunction::kPrototypeOrInitialMapOffset));
5404
5405 if (FLAG_debug_code) {
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00005406 __ AssertNotSmi(map);
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005407 __ cmpb(FieldOperand(map, Map::kInstanceSizeOffset),
5408 instance_size >> kPointerSizeLog2);
5409 __ Assert(equal, "Unexpected instance size");
5410 __ cmpb(FieldOperand(map, Map::kPreAllocatedPropertyFieldsOffset),
5411 initial_map->pre_allocated_property_fields());
5412 __ Assert(equal, "Unexpected pre-allocated property fields count");
5413 __ cmpb(FieldOperand(map, Map::kUnusedPropertyFieldsOffset),
5414 initial_map->unused_property_fields());
5415 __ Assert(equal, "Unexpected unused property fields count");
5416 __ cmpb(FieldOperand(map, Map::kInObjectPropertiesOffset),
5417 initial_map->inobject_properties());
5418 __ Assert(equal, "Unexpected in-object property fields count");
5419 }
5420
5421 // Initialize map and fields of the newly allocated object.
5422 ASSERT(initial_map->instance_type() == JS_OBJECT_TYPE);
5423 __ mov(FieldOperand(result, JSObject::kMapOffset), map);
5424 __ mov(scratch, factory()->empty_fixed_array());
5425 __ mov(FieldOperand(result, JSObject::kElementsOffset), scratch);
5426 __ mov(FieldOperand(result, JSObject::kPropertiesOffset), scratch);
5427 if (initial_map->inobject_properties() != 0) {
5428 __ mov(scratch, factory()->undefined_value());
5429 for (int i = 0; i < initial_map->inobject_properties(); i++) {
5430 int property_offset = JSObject::kHeaderSize + i * kPointerSize;
5431 __ mov(FieldOperand(result, property_offset), scratch);
5432 }
5433 }
ulan@chromium.org967e2702012-02-28 09:49:15 +00005434}
5435
5436
5437void LCodeGen::DoDeferredAllocateObject(LAllocateObject* instr) {
5438 Register result = ToRegister(instr->result());
5439 Handle<JSFunction> constructor = instr->hydrogen()->constructor();
fschneider@chromium.org7d10be52012-04-10 12:30:14 +00005440 Handle<Map> initial_map(constructor->initial_map());
5441 int instance_size = initial_map->instance_size();
ulan@chromium.org967e2702012-02-28 09:49:15 +00005442
5443 // TODO(3095996): Get rid of this. For now, we need to make the
5444 // result register contain a valid pointer because it is already
5445 // contained in the register pointer map.
5446 __ Set(result, Immediate(0));
5447
5448 PushSafepointRegistersScope scope(this);
fschneider@chromium.org7d10be52012-04-10 12:30:14 +00005449 __ push(Immediate(Smi::FromInt(instance_size)));
5450 CallRuntimeFromDeferred(
5451 Runtime::kAllocateInNewSpace, 1, instr, instr->context());
ulan@chromium.org967e2702012-02-28 09:49:15 +00005452 __ StoreToSafepointRegisterSlot(result, eax);
5453}
5454
5455
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005456void LCodeGen::DoAllocate(LAllocate* instr) {
5457 class DeferredAllocate: public LDeferredCode {
5458 public:
5459 DeferredAllocate(LCodeGen* codegen, LAllocate* instr)
5460 : LDeferredCode(codegen), instr_(instr) { }
5461 virtual void Generate() { codegen()->DoDeferredAllocate(instr_); }
5462 virtual LInstruction* instr() { return instr_; }
5463 private:
5464 LAllocate* instr_;
5465 };
5466
5467 DeferredAllocate* deferred =
5468 new(zone()) DeferredAllocate(this, instr);
5469
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005470 Register result = ToRegister(instr->result());
5471 Register temp = ToRegister(instr->temp());
5472
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00005473 // Allocate memory for the object.
5474 AllocationFlags flags = TAG_OBJECT;
5475 if (instr->hydrogen()->MustAllocateDoubleAligned()) {
5476 flags = static_cast<AllocationFlags>(flags | DOUBLE_ALIGNMENT);
5477 }
5478 if (instr->size()->IsConstantOperand()) {
5479 int32_t size = ToInteger32(LConstantOperand::cast(instr->size()));
5480 __ AllocateInNewSpace(size, result, temp, no_reg, deferred->entry(), flags);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005481 } else {
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00005482 Register size = ToRegister(instr->size());
5483 __ AllocateInNewSpace(size, result, temp, no_reg, deferred->entry(), flags);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005484 }
5485
5486 __ bind(deferred->exit());
5487}
5488
5489
5490void LCodeGen::DoDeferredAllocate(LAllocate* instr) {
5491 Register size = ToRegister(instr->size());
5492 Register result = ToRegister(instr->result());
5493
5494 __ SmiTag(size);
5495 PushSafepointRegistersScope scope(this);
5496 // TODO(3095996): Get rid of this. For now, we need to make the
5497 // result register contain a valid pointer because it is already
5498 // contained in the register pointer map.
5499 if (!size.is(result)) {
5500 __ StoreToSafepointRegisterSlot(result, size);
5501 }
5502 __ push(size);
5503 CallRuntimeFromDeferred(
5504 Runtime::kAllocateInNewSpace, 1, instr, instr->context());
5505 __ StoreToSafepointRegisterSlot(result, eax);
5506}
5507
5508
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005509void LCodeGen::DoArrayLiteral(LArrayLiteral* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005510 ASSERT(ToRegister(instr->context()).is(esi));
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005511 Handle<FixedArray> literals(instr->environment()->closure()->literals());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005512 ElementsKind boilerplate_elements_kind =
5513 instr->hydrogen()->boilerplate_elements_kind();
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005514 AllocationSiteMode allocation_site_mode =
5515 instr->hydrogen()->allocation_site_mode();
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00005516
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005517 // Deopt if the array literal boilerplate ElementsKind is of a type different
5518 // than the expected one. The check isn't necessary if the boilerplate has
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00005519 // already been converted to TERMINAL_FAST_ELEMENTS_KIND.
5520 if (CanTransitionToMoreGeneralFastElementsKind(
5521 boilerplate_elements_kind, true)) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005522 __ LoadHeapObject(eax, instr->hydrogen()->boilerplate_object());
5523 __ mov(ebx, FieldOperand(eax, HeapObject::kMapOffset));
5524 // Load the map's "bit field 2". We only need the first byte,
5525 // but the following masking takes care of that anyway.
5526 __ mov(ebx, FieldOperand(ebx, Map::kBitField2Offset));
5527 // Retrieve elements_kind from bit field 2.
5528 __ and_(ebx, Map::kElementsKindMask);
5529 __ cmp(ebx, boilerplate_elements_kind << Map::kElementsKindShift);
5530 DeoptimizeIf(not_equal, instr->environment());
5531 }
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00005532
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005533 // Set up the parameters to the stub/runtime call.
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005534 __ PushHeapObject(literals);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005535 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005536 // Boilerplate already exists, constant elements are never accessed.
5537 // Pass an empty fixed array.
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005538 __ push(Immediate(isolate()->factory()->empty_fixed_array()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005539
5540 // Pick the right runtime function or stub to call.
5541 int length = instr->hydrogen()->length();
5542 if (instr->hydrogen()->IsCopyOnWrite()) {
5543 ASSERT(instr->hydrogen()->depth() == 1);
5544 FastCloneShallowArrayStub::Mode mode =
5545 FastCloneShallowArrayStub::COPY_ON_WRITE_ELEMENTS;
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005546 FastCloneShallowArrayStub stub(mode, DONT_TRACK_ALLOCATION_SITE, length);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005547 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005548 } else if (instr->hydrogen()->depth() > 1) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005549 CallRuntime(Runtime::kCreateArrayLiteral, 3, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005550 } else if (length > FastCloneShallowArrayStub::kMaximumClonedLength) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005551 CallRuntime(Runtime::kCreateArrayLiteralShallow, 3, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005552 } else {
5553 FastCloneShallowArrayStub::Mode mode =
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005554 boilerplate_elements_kind == FAST_DOUBLE_ELEMENTS
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005555 ? FastCloneShallowArrayStub::CLONE_DOUBLE_ELEMENTS
5556 : FastCloneShallowArrayStub::CLONE_ELEMENTS;
5557 FastCloneShallowArrayStub stub(mode, allocation_site_mode, length);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005558 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005559 }
5560}
5561
5562
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005563void LCodeGen::EmitDeepCopy(Handle<JSObject> object,
5564 Register result,
5565 Register source,
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005566 int* offset,
5567 AllocationSiteMode mode) {
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005568 ASSERT(!source.is(ecx));
5569 ASSERT(!result.is(ecx));
5570
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005571 bool create_allocation_site_info = mode == TRACK_ALLOCATION_SITE &&
5572 object->map()->CanTrackAllocationSite();
5573
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005574 if (FLAG_debug_code) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005575 __ LoadHeapObject(ecx, object);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005576 __ cmp(source, ecx);
5577 __ Assert(equal, "Unexpected object literal boilerplate");
danno@chromium.org2c26cb12012-05-03 09:06:43 +00005578 __ mov(ecx, FieldOperand(source, HeapObject::kMapOffset));
5579 __ cmp(ecx, Handle<Map>(object->map()));
5580 __ Assert(equal, "Unexpected boilerplate map");
5581 __ mov(ecx, FieldOperand(ecx, Map::kBitField2Offset));
5582 __ and_(ecx, Map::kElementsKindMask);
5583 __ cmp(ecx, object->GetElementsKind() << Map::kElementsKindShift);
5584 __ Assert(equal, "Unexpected boilerplate elements kind");
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005585 }
5586
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005587 // Only elements backing stores for non-COW arrays need to be copied.
5588 Handle<FixedArrayBase> elements(object->elements());
5589 bool has_elements = elements->length() > 0 &&
5590 elements->map() != isolate()->heap()->fixed_cow_array_map();
5591
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005592 // Increase the offset so that subsequent objects end up right after
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005593 // this object and its backing store.
5594 int object_offset = *offset;
5595 int object_size = object->map()->instance_size();
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005596 int elements_size = has_elements ? elements->Size() : 0;
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005597 int elements_offset = *offset + object_size;
5598 if (create_allocation_site_info) {
5599 elements_offset += AllocationSiteInfo::kSize;
5600 *offset += AllocationSiteInfo::kSize;
5601 }
5602
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005603 *offset += object_size + elements_size;
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005604
5605 // Copy object header.
5606 ASSERT(object->properties()->length() == 0);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005607 int inobject_properties = object->map()->inobject_properties();
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005608 int header_size = object_size - inobject_properties * kPointerSize;
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005609 for (int i = 0; i < header_size; i += kPointerSize) {
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005610 if (has_elements && i == JSObject::kElementsOffset) {
5611 __ lea(ecx, Operand(result, elements_offset));
5612 } else {
5613 __ mov(ecx, FieldOperand(source, i));
5614 }
5615 __ mov(FieldOperand(result, object_offset + i), ecx);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005616 }
5617
5618 // Copy in-object properties.
5619 for (int i = 0; i < inobject_properties; i++) {
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005620 int total_offset = object_offset + object->GetInObjectPropertyOffset(i);
ulan@chromium.org09d7ab52013-02-25 15:50:35 +00005621 Handle<Object> value = Handle<Object>(object->InObjectPropertyAt(i),
5622 isolate());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005623 if (value->IsJSObject()) {
5624 Handle<JSObject> value_object = Handle<JSObject>::cast(value);
5625 __ lea(ecx, Operand(result, *offset));
5626 __ mov(FieldOperand(result, total_offset), ecx);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005627 __ LoadHeapObject(source, value_object);
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005628 EmitDeepCopy(value_object, result, source, offset,
5629 DONT_TRACK_ALLOCATION_SITE);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005630 } else if (value->IsHeapObject()) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005631 __ LoadHeapObject(ecx, Handle<HeapObject>::cast(value));
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005632 __ mov(FieldOperand(result, total_offset), ecx);
5633 } else {
5634 __ mov(FieldOperand(result, total_offset), Immediate(value));
5635 }
5636 }
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005637
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005638 // Build Allocation Site Info if desired
5639 if (create_allocation_site_info) {
5640 __ mov(FieldOperand(result, object_size),
5641 Immediate(Handle<Map>(isolate()->heap()->
5642 allocation_site_info_map())));
5643 __ mov(FieldOperand(result, object_size + kPointerSize), source);
5644 }
5645
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005646 if (has_elements) {
danno@chromium.org88aa0582012-03-23 15:11:57 +00005647 // Copy elements backing store header.
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005648 __ LoadHeapObject(source, elements);
5649 for (int i = 0; i < FixedArray::kHeaderSize; i += kPointerSize) {
5650 __ mov(ecx, FieldOperand(source, i));
5651 __ mov(FieldOperand(result, elements_offset + i), ecx);
5652 }
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005653
danno@chromium.org88aa0582012-03-23 15:11:57 +00005654 // Copy elements backing store content.
5655 int elements_length = elements->length();
5656 if (elements->IsFixedDoubleArray()) {
5657 Handle<FixedDoubleArray> double_array =
5658 Handle<FixedDoubleArray>::cast(elements);
5659 for (int i = 0; i < elements_length; i++) {
5660 int64_t value = double_array->get_representation(i);
jkummerow@chromium.org78502a92012-09-06 13:50:42 +00005661 int32_t value_low = static_cast<int32_t>(value & 0xFFFFFFFF);
5662 int32_t value_high = static_cast<int32_t>(value >> 32);
danno@chromium.org88aa0582012-03-23 15:11:57 +00005663 int total_offset =
5664 elements_offset + FixedDoubleArray::OffsetOfElementAt(i);
5665 __ mov(FieldOperand(result, total_offset), Immediate(value_low));
5666 __ mov(FieldOperand(result, total_offset + 4), Immediate(value_high));
5667 }
5668 } else if (elements->IsFixedArray()) {
erik.corry@gmail.comed49e962012-04-17 11:57:53 +00005669 Handle<FixedArray> fast_elements = Handle<FixedArray>::cast(elements);
danno@chromium.org88aa0582012-03-23 15:11:57 +00005670 for (int i = 0; i < elements_length; i++) {
5671 int total_offset = elements_offset + FixedArray::OffsetOfElementAt(i);
ulan@chromium.org09d7ab52013-02-25 15:50:35 +00005672 Handle<Object> value(fast_elements->get(i), isolate());
danno@chromium.org88aa0582012-03-23 15:11:57 +00005673 if (value->IsJSObject()) {
5674 Handle<JSObject> value_object = Handle<JSObject>::cast(value);
5675 __ lea(ecx, Operand(result, *offset));
5676 __ mov(FieldOperand(result, total_offset), ecx);
5677 __ LoadHeapObject(source, value_object);
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005678 EmitDeepCopy(value_object, result, source, offset,
5679 DONT_TRACK_ALLOCATION_SITE);
danno@chromium.org88aa0582012-03-23 15:11:57 +00005680 } else if (value->IsHeapObject()) {
5681 __ LoadHeapObject(ecx, Handle<HeapObject>::cast(value));
5682 __ mov(FieldOperand(result, total_offset), ecx);
5683 } else {
5684 __ mov(FieldOperand(result, total_offset), Immediate(value));
5685 }
5686 }
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005687 } else {
danno@chromium.org88aa0582012-03-23 15:11:57 +00005688 UNREACHABLE();
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005689 }
5690 }
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005691}
5692
5693
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005694void LCodeGen::DoFastLiteral(LFastLiteral* instr) {
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005695 ASSERT(ToRegister(instr->context()).is(esi));
5696 int size = instr->hydrogen()->total_size();
danno@chromium.org2c26cb12012-05-03 09:06:43 +00005697 ElementsKind boilerplate_elements_kind =
5698 instr->hydrogen()->boilerplate()->GetElementsKind();
5699
5700 // Deopt if the literal boilerplate ElementsKind is of a type different than
5701 // the expected one. The check isn't necessary if the boilerplate has already
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00005702 // already been converted to TERMINAL_FAST_ELEMENTS_KIND.
5703 if (CanTransitionToMoreGeneralFastElementsKind(
5704 boilerplate_elements_kind, true)) {
danno@chromium.org2c26cb12012-05-03 09:06:43 +00005705 __ LoadHeapObject(ebx, instr->hydrogen()->boilerplate());
5706 __ mov(ecx, FieldOperand(ebx, HeapObject::kMapOffset));
5707 // Load the map's "bit field 2". We only need the first byte,
5708 // but the following masking takes care of that anyway.
5709 __ mov(ecx, FieldOperand(ecx, Map::kBitField2Offset));
5710 // Retrieve elements_kind from bit field 2.
5711 __ and_(ecx, Map::kElementsKindMask);
5712 __ cmp(ecx, boilerplate_elements_kind << Map::kElementsKindShift);
5713 DeoptimizeIf(not_equal, instr->environment());
5714 }
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005715
5716 // Allocate all objects that are part of the literal in one big
5717 // allocation. This avoids multiple limit checks.
5718 Label allocated, runtime_allocate;
5719 __ AllocateInNewSpace(size, eax, ecx, edx, &runtime_allocate, TAG_OBJECT);
5720 __ jmp(&allocated);
5721
5722 __ bind(&runtime_allocate);
5723 __ push(Immediate(Smi::FromInt(size)));
5724 CallRuntime(Runtime::kAllocateInNewSpace, 1, instr);
5725
5726 __ bind(&allocated);
5727 int offset = 0;
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005728 __ LoadHeapObject(ebx, instr->hydrogen()->boilerplate());
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005729 EmitDeepCopy(instr->hydrogen()->boilerplate(), eax, ebx, &offset,
5730 instr->hydrogen()->allocation_site_mode());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005731 ASSERT_EQ(size, offset);
5732}
5733
5734
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005735void LCodeGen::DoObjectLiteral(LObjectLiteral* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00005736 ASSERT(ToRegister(instr->context()).is(esi));
ulan@chromium.org65a89c22012-02-14 11:46:07 +00005737 Handle<FixedArray> literals(instr->environment()->closure()->literals());
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005738 Handle<FixedArray> constant_properties =
5739 instr->hydrogen()->constant_properties();
5740
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005741 int flags = instr->hydrogen()->fast_elements()
5742 ? ObjectLiteral::kFastElements
5743 : ObjectLiteral::kNoFlags;
5744 flags |= instr->hydrogen()->has_function()
5745 ? ObjectLiteral::kHasFunction
5746 : ObjectLiteral::kNoFlags;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005747
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00005748 // Set up the parameters to the stub/runtime call and pick the right
5749 // runtime function or stub to call.
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005750 int properties_count = constant_properties->length() / 2;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005751 if (instr->hydrogen()->depth() > 1) {
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00005752 __ PushHeapObject(literals);
5753 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
5754 __ push(Immediate(constant_properties));
5755 __ push(Immediate(Smi::FromInt(flags)));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005756 CallRuntime(Runtime::kCreateObjectLiteral, 4, instr);
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005757 } else if (flags != ObjectLiteral::kFastElements ||
5758 properties_count > FastCloneShallowObjectStub::kMaximumClonedProperties) {
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00005759 __ PushHeapObject(literals);
5760 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
5761 __ push(Immediate(constant_properties));
5762 __ push(Immediate(Smi::FromInt(flags)));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005763 CallRuntime(Runtime::kCreateObjectLiteralShallow, 4, instr);
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005764 } else {
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00005765 __ LoadHeapObject(eax, literals);
5766 __ mov(ebx, Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
5767 __ mov(ecx, Immediate(constant_properties));
5768 __ mov(edx, Immediate(Smi::FromInt(flags)));
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005769 FastCloneShallowObjectStub stub(properties_count);
5770 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005771 }
5772}
5773
5774
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005775void LCodeGen::DoToFastProperties(LToFastProperties* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005776 ASSERT(ToRegister(instr->value()).is(eax));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005777 __ push(eax);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005778 CallRuntime(Runtime::kToFastProperties, 1, instr);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005779}
5780
5781
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005782void LCodeGen::DoRegExpLiteral(LRegExpLiteral* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005783 ASSERT(ToRegister(instr->context()).is(esi));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005784 Label materialized;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005785 // Registers will be used as follows:
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005786 // ecx = literals array.
5787 // ebx = regexp literal.
5788 // eax = regexp literal clone.
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005789 // esi = context.
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005790 int literal_offset =
5791 FixedArray::OffsetOfElementAt(instr->hydrogen()->literal_index());
5792 __ LoadHeapObject(ecx, instr->hydrogen()->literals());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005793 __ mov(ebx, FieldOperand(ecx, literal_offset));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005794 __ cmp(ebx, factory()->undefined_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005795 __ j(not_equal, &materialized, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005796
5797 // Create regexp literal using runtime function
5798 // Result will be in eax.
5799 __ push(ecx);
5800 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
5801 __ push(Immediate(instr->hydrogen()->pattern()));
5802 __ push(Immediate(instr->hydrogen()->flags()));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005803 CallRuntime(Runtime::kMaterializeRegExpLiteral, 4, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005804 __ mov(ebx, eax);
5805
5806 __ bind(&materialized);
5807 int size = JSRegExp::kSize + JSRegExp::kInObjectFieldCount * kPointerSize;
5808 Label allocated, runtime_allocate;
5809 __ AllocateInNewSpace(size, eax, ecx, edx, &runtime_allocate, TAG_OBJECT);
5810 __ jmp(&allocated);
5811
5812 __ bind(&runtime_allocate);
5813 __ push(ebx);
5814 __ push(Immediate(Smi::FromInt(size)));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005815 CallRuntime(Runtime::kAllocateInNewSpace, 1, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005816 __ pop(ebx);
5817
5818 __ bind(&allocated);
5819 // Copy the content into the newly allocated memory.
5820 // (Unroll copy loop once for better throughput).
5821 for (int i = 0; i < size - kPointerSize; i += 2 * kPointerSize) {
5822 __ mov(edx, FieldOperand(ebx, i));
5823 __ mov(ecx, FieldOperand(ebx, i + kPointerSize));
5824 __ mov(FieldOperand(eax, i), edx);
5825 __ mov(FieldOperand(eax, i + kPointerSize), ecx);
5826 }
5827 if ((size % (2 * kPointerSize)) != 0) {
5828 __ mov(edx, FieldOperand(ebx, size - kPointerSize));
5829 __ mov(FieldOperand(eax, size - kPointerSize), edx);
5830 }
5831}
5832
5833
5834void LCodeGen::DoFunctionLiteral(LFunctionLiteral* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005835 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005836 // Use the fast case closure allocation code that allocates in new
5837 // space for nested functions that don't need literals cloning.
5838 Handle<SharedFunctionInfo> shared_info = instr->shared_info();
ricow@chromium.org83aa5492011-02-07 12:42:56 +00005839 bool pretenure = instr->hydrogen()->pretenure();
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005840 if (!pretenure && shared_info->num_literals() == 0) {
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005841 FastNewClosureStub stub(shared_info->language_mode());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005842 __ push(Immediate(shared_info));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005843 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005844 } else {
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00005845 __ push(esi);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005846 __ push(Immediate(shared_info));
5847 __ push(Immediate(pretenure
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005848 ? factory()->true_value()
5849 : factory()->false_value()));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005850 CallRuntime(Runtime::kNewClosure, 3, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005851 }
5852}
5853
5854
5855void LCodeGen::DoTypeof(LTypeof* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005856 LOperand* input = instr->value();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005857 EmitPushTaggedOperand(input);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005858 CallRuntime(Runtime::kTypeof, 1, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005859}
5860
5861
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005862void LCodeGen::DoTypeofIsAndBranch(LTypeofIsAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005863 Register input = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005864 int true_block = chunk_->LookupDestination(instr->true_block_id());
5865 int false_block = chunk_->LookupDestination(instr->false_block_id());
5866 Label* true_label = chunk_->GetAssemblyLabel(true_block);
5867 Label* false_label = chunk_->GetAssemblyLabel(false_block);
5868
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00005869 Condition final_branch_condition =
5870 EmitTypeofIs(true_label, false_label, input, instr->type_literal());
5871 if (final_branch_condition != no_condition) {
5872 EmitBranch(true_block, false_block, final_branch_condition);
5873 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005874}
5875
5876
5877Condition LCodeGen::EmitTypeofIs(Label* true_label,
5878 Label* false_label,
5879 Register input,
5880 Handle<String> type_name) {
5881 Condition final_branch_condition = no_condition;
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005882 if (type_name->Equals(heap()->number_symbol())) {
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005883 __ JumpIfSmi(input, true_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005884 __ cmp(FieldOperand(input, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005885 factory()->heap_number_map());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005886 final_branch_condition = equal;
5887
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005888 } else if (type_name->Equals(heap()->string_symbol())) {
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005889 __ JumpIfSmi(input, false_label);
5890 __ CmpObjectType(input, FIRST_NONSTRING_TYPE, input);
5891 __ j(above_equal, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005892 __ test_b(FieldOperand(input, Map::kBitFieldOffset),
5893 1 << Map::kIsUndetectable);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005894 final_branch_condition = zero;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005895
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005896 } else if (type_name->Equals(heap()->boolean_symbol())) {
5897 __ cmp(input, factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005898 __ j(equal, true_label);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005899 __ cmp(input, factory()->false_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005900 final_branch_condition = equal;
5901
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00005902 } else if (FLAG_harmony_typeof && type_name->Equals(heap()->null_symbol())) {
5903 __ cmp(input, factory()->null_value());
5904 final_branch_condition = equal;
5905
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005906 } else if (type_name->Equals(heap()->undefined_symbol())) {
5907 __ cmp(input, factory()->undefined_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005908 __ j(equal, true_label);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005909 __ JumpIfSmi(input, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005910 // Check for undetectable objects => true.
5911 __ mov(input, FieldOperand(input, HeapObject::kMapOffset));
5912 __ test_b(FieldOperand(input, Map::kBitFieldOffset),
5913 1 << Map::kIsUndetectable);
5914 final_branch_condition = not_zero;
5915
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005916 } else if (type_name->Equals(heap()->function_symbol())) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005917 STATIC_ASSERT(NUM_OF_CALLABLE_SPEC_OBJECT_TYPES == 2);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005918 __ JumpIfSmi(input, false_label);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005919 __ CmpObjectType(input, JS_FUNCTION_TYPE, input);
5920 __ j(equal, true_label);
5921 __ CmpInstanceType(input, JS_FUNCTION_PROXY_TYPE);
5922 final_branch_condition = equal;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005923
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005924 } else if (type_name->Equals(heap()->object_symbol())) {
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005925 __ JumpIfSmi(input, false_label);
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00005926 if (!FLAG_harmony_typeof) {
5927 __ cmp(input, factory()->null_value());
5928 __ j(equal, true_label);
5929 }
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00005930 __ CmpObjectType(input, FIRST_NONCALLABLE_SPEC_OBJECT_TYPE, input);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005931 __ j(below, false_label);
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00005932 __ CmpInstanceType(input, LAST_NONCALLABLE_SPEC_OBJECT_TYPE);
5933 __ j(above, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005934 // Check for undetectable objects => false.
5935 __ test_b(FieldOperand(input, Map::kBitFieldOffset),
5936 1 << Map::kIsUndetectable);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005937 final_branch_condition = zero;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005938
5939 } else {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005940 __ jmp(false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005941 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005942 return final_branch_condition;
5943}
5944
5945
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005946void LCodeGen::DoIsConstructCallAndBranch(LIsConstructCallAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005947 Register temp = ToRegister(instr->temp());
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005948 int true_block = chunk_->LookupDestination(instr->true_block_id());
5949 int false_block = chunk_->LookupDestination(instr->false_block_id());
5950
5951 EmitIsConstructCall(temp);
5952 EmitBranch(true_block, false_block, equal);
5953}
5954
5955
5956void LCodeGen::EmitIsConstructCall(Register temp) {
5957 // Get the frame pointer for the calling frame.
5958 __ mov(temp, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
5959
5960 // Skip the arguments adaptor frame if it exists.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005961 Label check_frame_marker;
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005962 __ cmp(Operand(temp, StandardFrameConstants::kContextOffset),
5963 Immediate(Smi::FromInt(StackFrame::ARGUMENTS_ADAPTOR)));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005964 __ j(not_equal, &check_frame_marker, Label::kNear);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005965 __ mov(temp, Operand(temp, StandardFrameConstants::kCallerFPOffset));
5966
5967 // Check the marker in the calling frame.
5968 __ bind(&check_frame_marker);
5969 __ cmp(Operand(temp, StandardFrameConstants::kMarkerOffset),
5970 Immediate(Smi::FromInt(StackFrame::CONSTRUCT)));
5971}
5972
5973
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005974void LCodeGen::EnsureSpaceForLazyDeopt() {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005975 if (!info()->IsStub()) {
5976 // Ensure that we have enough space after the previous lazy-bailout
5977 // instruction for patching the code here.
5978 int current_pc = masm()->pc_offset();
5979 int patch_size = Deoptimizer::patch_size();
5980 if (current_pc < last_lazy_deopt_pc_ + patch_size) {
5981 int padding_size = last_lazy_deopt_pc_ + patch_size - current_pc;
5982 __ Nop(padding_size);
5983 }
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005984 }
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005985 last_lazy_deopt_pc_ = masm()->pc_offset();
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005986}
5987
5988
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005989void LCodeGen::DoLazyBailout(LLazyBailout* instr) {
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005990 EnsureSpaceForLazyDeopt();
5991 ASSERT(instr->HasEnvironment());
5992 LEnvironment* env = instr->environment();
5993 RegisterEnvironmentForDeoptimization(env, Safepoint::kLazyDeopt);
5994 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005995}
5996
5997
5998void LCodeGen::DoDeoptimize(LDeoptimize* instr) {
5999 DeoptimizeIf(no_condition, instr->environment());
6000}
6001
6002
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00006003void LCodeGen::DoDummyUse(LDummyUse* instr) {
6004 // Nothing to see here, move on!
6005}
6006
6007
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006008void LCodeGen::DoDeleteProperty(LDeleteProperty* instr) {
6009 LOperand* obj = instr->object();
6010 LOperand* key = instr->key();
6011 __ push(ToOperand(obj));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00006012 EmitPushTaggedOperand(key);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00006013 ASSERT(instr->HasPointerMap());
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00006014 LPointerMap* pointers = instr->pointer_map();
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00006015 RecordPosition(pointers->position());
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00006016 // Create safepoint generator that will also ensure enough space in the
6017 // reloc info for patching in deoptimization (since this is invoking a
6018 // builtin)
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006019 SafepointGenerator safepoint_generator(
6020 this, pointers, Safepoint::kLazyDeopt);
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00006021 __ push(Immediate(Smi::FromInt(strict_mode_flag())));
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00006022 __ InvokeBuiltin(Builtins::DELETE, CALL_FUNCTION, safepoint_generator);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006023}
6024
6025
ager@chromium.org04921a82011-06-27 13:21:41 +00006026void LCodeGen::DoDeferredStackCheck(LStackCheck* instr) {
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006027 PushSafepointRegistersScope scope(this);
6028 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
6029 __ CallRuntimeSaveDoubles(Runtime::kStackGuard);
6030 RecordSafepointWithLazyDeopt(
6031 instr, RECORD_SAFEPOINT_WITH_REGISTERS_AND_NO_ARGUMENTS);
6032 ASSERT(instr->HasEnvironment());
6033 LEnvironment* env = instr->environment();
6034 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
ager@chromium.org04921a82011-06-27 13:21:41 +00006035}
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006036
ager@chromium.org04921a82011-06-27 13:21:41 +00006037
6038void LCodeGen::DoStackCheck(LStackCheck* instr) {
6039 class DeferredStackCheck: public LDeferredCode {
6040 public:
6041 DeferredStackCheck(LCodeGen* codegen, LStackCheck* instr)
6042 : LDeferredCode(codegen), instr_(instr) { }
6043 virtual void Generate() { codegen()->DoDeferredStackCheck(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00006044 virtual LInstruction* instr() { return instr_; }
ager@chromium.org04921a82011-06-27 13:21:41 +00006045 private:
6046 LStackCheck* instr_;
6047 };
6048
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006049 ASSERT(instr->HasEnvironment());
6050 LEnvironment* env = instr->environment();
6051 // There is no LLazyBailout instruction for stack-checks. We have to
6052 // prepare for lazy deoptimization explicitly here.
ager@chromium.org04921a82011-06-27 13:21:41 +00006053 if (instr->hydrogen()->is_function_entry()) {
6054 // Perform stack overflow check.
6055 Label done;
6056 ExternalReference stack_limit =
6057 ExternalReference::address_of_stack_limit(isolate());
6058 __ cmp(esp, Operand::StaticVariable(stack_limit));
6059 __ j(above_equal, &done, Label::kNear);
6060
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00006061 ASSERT(instr->context()->IsRegister());
6062 ASSERT(ToRegister(instr->context()).is(esi));
ager@chromium.org04921a82011-06-27 13:21:41 +00006063 StackCheckStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00006064 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006065 EnsureSpaceForLazyDeopt();
ager@chromium.org04921a82011-06-27 13:21:41 +00006066 __ bind(&done);
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006067 RegisterEnvironmentForDeoptimization(env, Safepoint::kLazyDeopt);
6068 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
ager@chromium.org04921a82011-06-27 13:21:41 +00006069 } else {
6070 ASSERT(instr->hydrogen()->is_backwards_branch());
6071 // Perform stack overflow check if this goto needs it before jumping.
6072 DeferredStackCheck* deferred_stack_check =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00006073 new(zone()) DeferredStackCheck(this, instr);
ager@chromium.org04921a82011-06-27 13:21:41 +00006074 ExternalReference stack_limit =
6075 ExternalReference::address_of_stack_limit(isolate());
6076 __ cmp(esp, Operand::StaticVariable(stack_limit));
6077 __ j(below, deferred_stack_check->entry());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006078 EnsureSpaceForLazyDeopt();
ager@chromium.org04921a82011-06-27 13:21:41 +00006079 __ bind(instr->done_label());
6080 deferred_stack_check->SetExit(instr->done_label());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006081 RegisterEnvironmentForDeoptimization(env, Safepoint::kLazyDeopt);
6082 // Don't record a deoptimization index for the safepoint here.
6083 // This will be done explicitly when emitting call and the safepoint in
6084 // the deferred code.
ager@chromium.org04921a82011-06-27 13:21:41 +00006085 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006086}
6087
6088
6089void LCodeGen::DoOsrEntry(LOsrEntry* instr) {
6090 // This is a pseudo-instruction that ensures that the environment here is
6091 // properly registered for deoptimization and records the assembler's PC
6092 // offset.
6093 LEnvironment* environment = instr->environment();
6094 environment->SetSpilledRegisters(instr->SpilledRegisterArray(),
6095 instr->SpilledDoubleRegisterArray());
6096
6097 // If the environment were already registered, we would have no way of
6098 // backpatching it with the spill slot operands.
6099 ASSERT(!environment->HasBeenRegistered());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006100 RegisterEnvironmentForDeoptimization(environment, Safepoint::kNoLazyDeopt);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006101 ASSERT(osr_pc_offset_ == -1);
6102 osr_pc_offset_ = masm()->pc_offset();
6103}
6104
6105
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006106void LCodeGen::DoIn(LIn* instr) {
6107 LOperand* obj = instr->object();
6108 LOperand* key = instr->key();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00006109 EmitPushTaggedOperand(key);
6110 EmitPushTaggedOperand(obj);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00006111 ASSERT(instr->HasPointerMap());
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006112 LPointerMap* pointers = instr->pointer_map();
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006113 RecordPosition(pointers->position());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006114 SafepointGenerator safepoint_generator(
6115 this, pointers, Safepoint::kLazyDeopt);
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00006116 __ InvokeBuiltin(Builtins::IN, CALL_FUNCTION, safepoint_generator);
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006117}
6118
6119
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006120void LCodeGen::DoForInPrepareMap(LForInPrepareMap* instr) {
6121 __ cmp(eax, isolate()->factory()->undefined_value());
6122 DeoptimizeIf(equal, instr->environment());
6123
6124 __ cmp(eax, isolate()->factory()->null_value());
6125 DeoptimizeIf(equal, instr->environment());
6126
6127 __ test(eax, Immediate(kSmiTagMask));
6128 DeoptimizeIf(zero, instr->environment());
6129
6130 STATIC_ASSERT(FIRST_JS_PROXY_TYPE == FIRST_SPEC_OBJECT_TYPE);
6131 __ CmpObjectType(eax, LAST_JS_PROXY_TYPE, ecx);
6132 DeoptimizeIf(below_equal, instr->environment());
6133
6134 Label use_cache, call_runtime;
6135 __ CheckEnumCache(&call_runtime);
6136
6137 __ mov(eax, FieldOperand(eax, HeapObject::kMapOffset));
6138 __ jmp(&use_cache, Label::kNear);
6139
6140 // Get the set of properties to enumerate.
6141 __ bind(&call_runtime);
6142 __ push(eax);
6143 CallRuntime(Runtime::kGetPropertyNamesFast, 1, instr);
6144
6145 __ cmp(FieldOperand(eax, HeapObject::kMapOffset),
6146 isolate()->factory()->meta_map());
6147 DeoptimizeIf(not_equal, instr->environment());
6148 __ bind(&use_cache);
6149}
6150
6151
6152void LCodeGen::DoForInCacheArray(LForInCacheArray* instr) {
6153 Register map = ToRegister(instr->map());
6154 Register result = ToRegister(instr->result());
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00006155 Label load_cache, done;
6156 __ EnumLength(result, map);
6157 __ cmp(result, Immediate(Smi::FromInt(0)));
6158 __ j(not_equal, &load_cache);
6159 __ mov(result, isolate()->factory()->empty_fixed_array());
6160 __ jmp(&done);
6161
6162 __ bind(&load_cache);
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006163 __ LoadInstanceDescriptors(map, result);
6164 __ mov(result,
yangguo@chromium.org304cc332012-07-24 07:59:48 +00006165 FieldOperand(result, DescriptorArray::kEnumCacheOffset));
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006166 __ mov(result,
6167 FieldOperand(result, FixedArray::SizeFor(instr->idx())));
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00006168 __ bind(&done);
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006169 __ test(result, result);
6170 DeoptimizeIf(equal, instr->environment());
6171}
6172
6173
6174void LCodeGen::DoCheckMapValue(LCheckMapValue* instr) {
6175 Register object = ToRegister(instr->value());
6176 __ cmp(ToRegister(instr->map()),
6177 FieldOperand(object, HeapObject::kMapOffset));
6178 DeoptimizeIf(not_equal, instr->environment());
6179}
6180
6181
6182void LCodeGen::DoLoadFieldByIndex(LLoadFieldByIndex* instr) {
6183 Register object = ToRegister(instr->object());
6184 Register index = ToRegister(instr->index());
6185
6186 Label out_of_object, done;
6187 __ cmp(index, Immediate(0));
6188 __ j(less, &out_of_object);
6189 __ mov(object, FieldOperand(object,
6190 index,
6191 times_half_pointer_size,
6192 JSObject::kHeaderSize));
6193 __ jmp(&done, Label::kNear);
6194
6195 __ bind(&out_of_object);
6196 __ mov(object, FieldOperand(object, JSObject::kPropertiesOffset));
6197 __ neg(index);
6198 // Index is now equal to out of object property index plus 1.
6199 __ mov(object, FieldOperand(object,
6200 index,
6201 times_half_pointer_size,
6202 FixedArray::kHeaderSize - kPointerSize));
6203 __ bind(&done);
6204}
6205
6206
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006207#undef __
6208
6209} } // namespace v8::internal
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00006210
6211#endif // V8_TARGET_ARCH_IA32