blob: a1b467d7821df22b7ae8e51a45ce89847cf6f3f7 [file] [log] [blame]
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00001// Copyright 2012 the V8 project authors. All rights reserved.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002// Redistribution and use in source and binary forms, with or without
3// modification, are permitted provided that the following conditions are
4// met:
5//
6// * Redistributions of source code must retain the above copyright
7// notice, this list of conditions and the following disclaimer.
8// * Redistributions in binary form must reproduce the above
9// copyright notice, this list of conditions and the following
10// disclaimer in the documentation and/or other materials provided
11// with the distribution.
12// * Neither the name of Google Inc. nor the names of its
13// contributors may be used to endorse or promote products derived
14// from this software without specific prior written permission.
15//
16// THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
17// "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
18// LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
19// A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
20// OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
21// SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
22// LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
23// DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
24// THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
25// (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
26// OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
27
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +000028#include "v8.h"
29
30#if defined(V8_TARGET_ARCH_IA32)
31
kasperl@chromium.orga5551262010-12-07 12:49:48 +000032#include "ia32/lithium-codegen-ia32.h"
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +000033#include "ic.h"
kasperl@chromium.orga5551262010-12-07 12:49:48 +000034#include "code-stubs.h"
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +000035#include "deoptimizer.h"
kasperl@chromium.orga5551262010-12-07 12:49:48 +000036#include "stub-cache.h"
erikcorry0ad885c2011-11-21 13:51:57 +000037#include "codegen.h"
kasperl@chromium.orga5551262010-12-07 12:49:48 +000038
39namespace v8 {
40namespace internal {
41
42
kmillikin@chromium.org31b12772011-02-02 16:08:26 +000043// When invoking builtins, we need to record the safepoint in the middle of
44// the invoke instruction sequence generated by the macro assembler.
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +000045class SafepointGenerator : public CallWrapper {
kasperl@chromium.orga5551262010-12-07 12:49:48 +000046 public:
47 SafepointGenerator(LCodeGen* codegen,
48 LPointerMap* pointers,
ricow@chromium.org27bf2882011-11-17 08:34:43 +000049 Safepoint::DeoptMode mode)
kasperl@chromium.orga5551262010-12-07 12:49:48 +000050 : codegen_(codegen),
51 pointers_(pointers),
ricow@chromium.org27bf2882011-11-17 08:34:43 +000052 deopt_mode_(mode) {}
kasperl@chromium.orga5551262010-12-07 12:49:48 +000053 virtual ~SafepointGenerator() { }
54
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +000055 virtual void BeforeCall(int call_size) const {}
56
57 virtual void AfterCall() const {
ricow@chromium.org27bf2882011-11-17 08:34:43 +000058 codegen_->RecordSafepoint(pointers_, deopt_mode_);
kasperl@chromium.orga5551262010-12-07 12:49:48 +000059 }
60
61 private:
62 LCodeGen* codegen_;
63 LPointerMap* pointers_;
ricow@chromium.org27bf2882011-11-17 08:34:43 +000064 Safepoint::DeoptMode deopt_mode_;
kasperl@chromium.orga5551262010-12-07 12:49:48 +000065};
66
67
68#define __ masm()->
69
70bool LCodeGen::GenerateCode() {
ulan@chromium.org9a21ec42012-03-06 08:42:24 +000071 HPhase phase("Z_Code generation", chunk());
kasperl@chromium.orga5551262010-12-07 12:49:48 +000072 ASSERT(is_unused());
73 status_ = GENERATING;
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +000074
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +000075 // Open a frame scope to indicate that there is a frame on the stack. The
76 // MANUAL indicates that the scope shouldn't actually generate code to set up
77 // the frame (that is done in GeneratePrologue).
78 FrameScope frame_scope(masm_, StackFrame::MANUAL);
79
danno@chromium.org94b0d6f2013-02-04 13:33:20 +000080 support_aligned_spilled_doubles_ = info()->IsOptimizing();
81
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +000082 dynamic_frame_alignment_ = info()->IsOptimizing() &&
83 ((chunk()->num_double_slots() > 2 &&
84 !chunk()->graph()->is_recursive()) ||
85 !info()->osr_ast_id().IsNone());
mmassi@chromium.org7028c052012-06-13 11:51:58 +000086
kasperl@chromium.orga5551262010-12-07 12:49:48 +000087 return GeneratePrologue() &&
88 GenerateBody() &&
89 GenerateDeferredCode() &&
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +000090 GenerateJumpTable() &&
kasperl@chromium.orga5551262010-12-07 12:49:48 +000091 GenerateSafepointTable();
92}
93
94
95void LCodeGen::FinishCode(Handle<Code> code) {
96 ASSERT(is_done());
danno@chromium.org160a7b02011-04-18 15:51:38 +000097 code->set_stack_slots(GetStackSlotCount());
ricow@chromium.org83aa5492011-02-07 12:42:56 +000098 code->set_safepoint_table_offset(safepoints_.GetCodeOffset());
kasperl@chromium.orga5551262010-12-07 12:49:48 +000099 PopulateDeoptimizationData(code);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000100 if (!info()->IsStub()) {
101 Deoptimizer::EnsureRelocSpaceForLazyDeoptimization(code);
102 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000103}
104
105
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000106void LCodeGen::Abort(const char* reason) {
107 info()->set_bailout_reason(reason);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000108 status_ = ABORTED;
109}
110
111
112void LCodeGen::Comment(const char* format, ...) {
113 if (!FLAG_code_comments) return;
114 char buffer[4 * KB];
115 StringBuilder builder(buffer, ARRAY_SIZE(buffer));
116 va_list arguments;
117 va_start(arguments, format);
118 builder.AddFormattedList(format, arguments);
119 va_end(arguments);
120
121 // Copy the string before recording it in the assembler to avoid
122 // issues when the stack allocated buffer goes out of scope.
123 size_t length = builder.position();
124 Vector<char> copy = Vector<char>::New(length + 1);
125 memcpy(copy.start(), builder.Finalize(), copy.length());
126 masm()->RecordComment(copy.start());
127}
128
129
130bool LCodeGen::GeneratePrologue() {
131 ASSERT(is_generating());
132
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000133 if (info()->IsOptimizing()) {
134 ProfileEntryHookStub::MaybeCallEntryHook(masm_);
verwaest@chromium.org753aee42012-07-17 16:15:42 +0000135
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000136#ifdef DEBUG
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000137 if (strlen(FLAG_stop_at) > 0 &&
jkummerow@chromium.org59297c72013-01-09 16:32:23 +0000138 info_->function()->name()->IsUtf8EqualTo(CStrVector(FLAG_stop_at))) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000139 __ int3();
140 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000141#endif
142
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000143 // Strict mode functions and builtins need to replace the receiver
144 // with undefined when called as functions (without an explicit
145 // receiver object). ecx is zero for method calls and non-zero for
146 // function calls.
147 if (!info_->is_classic_mode() || info_->is_native()) {
148 Label ok;
149 __ test(ecx, Operand(ecx));
150 __ j(zero, &ok, Label::kNear);
151 // +1 for return address.
152 int receiver_offset = (scope()->num_parameters() + 1) * kPointerSize;
153 __ mov(Operand(esp, receiver_offset),
154 Immediate(isolate()->factory()->undefined_value()));
155 __ bind(&ok);
156 }
danno@chromium.org40cb8782011-05-25 07:58:50 +0000157
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000158 if (support_aligned_spilled_doubles_ && dynamic_frame_alignment_) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000159 // Move state of dynamic frame alignment into edx.
160 __ mov(edx, Immediate(kNoAlignmentPadding));
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000161
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000162 Label do_not_pad, align_loop;
163 STATIC_ASSERT(kDoubleSize == 2 * kPointerSize);
164 // Align esp + 4 to a multiple of 2 * kPointerSize.
165 __ test(esp, Immediate(kPointerSize));
166 __ j(not_zero, &do_not_pad, Label::kNear);
167 __ push(Immediate(0));
168 __ mov(ebx, esp);
169 __ mov(edx, Immediate(kAlignmentPaddingPushed));
170 // Copy arguments, receiver, and return address.
171 __ mov(ecx, Immediate(scope()->num_parameters() + 2));
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000172
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000173 __ bind(&align_loop);
174 __ mov(eax, Operand(ebx, 1 * kPointerSize));
175 __ mov(Operand(ebx, 0), eax);
176 __ add(Operand(ebx), Immediate(kPointerSize));
177 __ dec(ecx);
178 __ j(not_zero, &align_loop, Label::kNear);
179 __ mov(Operand(ebx, 0), Immediate(kAlignmentZapValue));
180 __ bind(&do_not_pad);
181 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000182 }
183
svenpanne@chromium.org83130cf2012-11-30 10:13:25 +0000184 info()->set_prologue_offset(masm_->pc_offset());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000185 if (NeedsEagerFrame()) {
186 ASSERT(!frame_is_built_);
187 frame_is_built_ = true;
188 __ push(ebp); // Caller's frame pointer.
189 __ mov(ebp, esp);
190 __ push(esi); // Callee's context.
191 if (info()->IsStub()) {
192 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
193 } else {
194 __ push(edi); // Callee's JS function.
195 }
196 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000197
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000198 if (info()->IsOptimizing() &&
199 dynamic_frame_alignment_ &&
200 FLAG_debug_code) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000201 __ test(esp, Immediate(kPointerSize));
202 __ Assert(zero, "frame is expected to be aligned");
203 }
204
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000205 // Reserve space for the stack slots needed by the code.
danno@chromium.org160a7b02011-04-18 15:51:38 +0000206 int slots = GetStackSlotCount();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000207 ASSERT(slots != 0 || !info()->IsOptimizing());
208 if (slots > 0) {
209 if (slots == 1) {
210 if (dynamic_frame_alignment_) {
211 __ push(edx);
212 } else {
213 __ push(Immediate(kNoAlignmentPadding));
mstarzinger@chromium.org32280cf2012-12-06 17:32:37 +0000214 }
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +0000215 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000216 if (FLAG_debug_code) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000217 __ sub(Operand(esp), Immediate(slots * kPointerSize));
218 __ push(eax);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000219 __ mov(Operand(eax), Immediate(slots));
220 Label loop;
221 __ bind(&loop);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000222 __ mov(MemOperand(esp, eax, times_4, 0),
223 Immediate(kSlotsZapValue));
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000224 __ dec(eax);
225 __ j(not_zero, &loop);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000226 __ pop(eax);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000227 } else {
228 __ sub(Operand(esp), Immediate(slots * kPointerSize));
229#ifdef _MSC_VER
230 // On windows, you may not access the stack more than one page below
231 // the most recently mapped page. To make the allocated area randomly
232 // accessible, we write to each page in turn (the value is irrelevant).
233 const int kPageSize = 4 * KB;
234 for (int offset = slots * kPointerSize - kPageSize;
235 offset > 0;
236 offset -= kPageSize) {
237 __ mov(Operand(esp, offset), eax);
238 }
239#endif
240 }
241
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000242 if (support_aligned_spilled_doubles_) {
243 Comment(";;; Store dynamic frame alignment tag for spilled doubles");
244 // Store dynamic frame alignment state in the first local.
245 int offset = JavaScriptFrameConstants::kDynamicAlignmentStateOffset;
246 if (dynamic_frame_alignment_) {
247 __ mov(Operand(ebp, offset), edx);
248 } else {
249 __ mov(Operand(ebp, offset), Immediate(kNoAlignmentPadding));
250 }
251 }
252 }
253
254 if (info()->saves_caller_doubles() && CpuFeatures::IsSupported(SSE2)) {
255 Comment(";;; Save clobbered callee double registers");
256 CpuFeatures::Scope scope(SSE2);
257 int count = 0;
258 BitVector* doubles = chunk()->allocated_double_registers();
259 BitVector::Iterator save_iterator(doubles);
260 while (!save_iterator.Done()) {
261 __ movdbl(MemOperand(esp, count * kDoubleSize),
262 XMMRegister::FromAllocationIndex(save_iterator.Current()));
263 save_iterator.Advance();
264 count++;
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000265 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000266 }
267 }
268
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000269 // Possibly allocate a local context.
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000270 int heap_slots = info_->num_heap_slots() - Context::MIN_CONTEXT_SLOTS;
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000271 if (heap_slots > 0) {
272 Comment(";;; Allocate local context");
273 // Argument to NewContext is the function, which is still in edi.
274 __ push(edi);
275 if (heap_slots <= FastNewContextStub::kMaximumSlots) {
276 FastNewContextStub stub(heap_slots);
277 __ CallStub(&stub);
278 } else {
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +0000279 __ CallRuntime(Runtime::kNewFunctionContext, 1);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000280 }
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000281 RecordSafepoint(Safepoint::kNoLazyDeopt);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000282 // Context is returned in both eax and esi. It replaces the context
283 // passed to us. It's saved in the stack and kept live in esi.
284 __ mov(Operand(ebp, StandardFrameConstants::kContextOffset), esi);
285
286 // Copy parameters into context if necessary.
287 int num_parameters = scope()->num_parameters();
288 for (int i = 0; i < num_parameters; i++) {
jkummerow@chromium.org486075a2011-09-07 12:44:28 +0000289 Variable* var = scope()->parameter(i);
290 if (var->IsContextSlot()) {
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000291 int parameter_offset = StandardFrameConstants::kCallerSPOffset +
292 (num_parameters - 1 - i) * kPointerSize;
293 // Load parameter from stack.
294 __ mov(eax, Operand(ebp, parameter_offset));
295 // Store it in the context.
jkummerow@chromium.org486075a2011-09-07 12:44:28 +0000296 int context_offset = Context::SlotOffset(var->index());
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000297 __ mov(Operand(esi, context_offset), eax);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000298 // Update the write barrier. This clobbers eax and ebx.
299 __ RecordWriteContextSlot(esi,
300 context_offset,
301 eax,
302 ebx,
303 kDontSaveFPRegs);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000304 }
305 }
306 Comment(";;; End allocate local context");
307 }
308
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000309 // Trace the call.
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000310 if (FLAG_trace && info()->IsOptimizing()) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +0000311 // We have not executed any compiled code yet, so esi still holds the
312 // incoming context.
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000313 __ CallRuntime(Runtime::kTraceEnter, 0);
314 }
315 return !is_aborted();
316}
317
318
319bool LCodeGen::GenerateBody() {
320 ASSERT(is_generating());
321 bool emit_instructions = true;
322 for (current_instruction_ = 0;
323 !is_aborted() && current_instruction_ < instructions_->length();
324 current_instruction_++) {
325 LInstruction* instr = instructions_->at(current_instruction_);
326 if (instr->IsLabel()) {
327 LLabel* label = LLabel::cast(instr);
328 emit_instructions = !label->HasReplacement();
329 }
330
331 if (emit_instructions) {
yangguo@chromium.orgfb377212012-11-16 14:43:43 +0000332 if (FLAG_code_comments) {
333 HValue* hydrogen = instr->hydrogen_value();
334 if (hydrogen != NULL) {
335 if (hydrogen->IsChange()) {
336 HValue* changed_value = HChange::cast(hydrogen)->value();
337 int use_id = 0;
338 const char* use_mnemo = "dead";
339 if (hydrogen->UseCount() >= 1) {
340 HValue* use_value = hydrogen->uses().value();
341 use_id = use_value->id();
342 use_mnemo = use_value->Mnemonic();
343 }
344 Comment(";;; @%d: %s. <of #%d %s for #%d %s>",
345 current_instruction_, instr->Mnemonic(),
346 changed_value->id(), changed_value->Mnemonic(),
347 use_id, use_mnemo);
348 } else {
349 Comment(";;; @%d: %s. <#%d>", current_instruction_,
350 instr->Mnemonic(), hydrogen->id());
351 }
352 } else {
353 Comment(";;; @%d: %s.", current_instruction_, instr->Mnemonic());
354 }
355 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000356 instr->CompileToNative(this);
357 }
358 }
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000359 EnsureSpaceForLazyDeopt();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000360 return !is_aborted();
361}
362
363
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000364bool LCodeGen::GenerateJumpTable() {
365 Label needs_frame_not_call;
366 Label needs_frame_is_call;
367 for (int i = 0; i < jump_table_.length(); i++) {
368 __ bind(&jump_table_[i].label);
369 Address entry = jump_table_[i].address;
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +0000370 bool is_lazy_deopt = jump_table_[i].is_lazy_deopt;
371 Deoptimizer::BailoutType type =
372 is_lazy_deopt ? Deoptimizer::LAZY : Deoptimizer::EAGER;
373 int id = Deoptimizer::GetDeoptimizationId(entry, type);
374 if (id == Deoptimizer::kNotDeoptimizationEntry) {
375 Comment(";;; jump table entry %d.", i);
376 } else {
377 Comment(";;; jump table entry %d: deoptimization bailout %d.", i, id);
378 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000379 if (jump_table_[i].needs_frame) {
380 __ push(Immediate(ExternalReference::ForDeoptEntry(entry)));
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +0000381 if (is_lazy_deopt) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000382 if (needs_frame_is_call.is_bound()) {
383 __ jmp(&needs_frame_is_call);
384 } else {
385 __ bind(&needs_frame_is_call);
386 __ push(MemOperand(ebp, StandardFrameConstants::kContextOffset));
387 // This variant of deopt can only be used with stubs. Since we don't
388 // have a function pointer to install in the stack frame that we're
389 // building, install a special marker there instead.
390 ASSERT(info()->IsStub());
391 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
392 // Push a PC inside the function so that the deopt code can find where
393 // the deopt comes from. It doesn't have to be the precise return
394 // address of a "calling" LAZY deopt, it only has to be somewhere
395 // inside the code body.
396 Label push_approx_pc;
397 __ call(&push_approx_pc);
398 __ bind(&push_approx_pc);
399 // Push the continuation which was stashed were the ebp should
400 // be. Replace it with the saved ebp.
401 __ push(MemOperand(esp, 3 * kPointerSize));
402 __ mov(MemOperand(esp, 4 * kPointerSize), ebp);
403 __ lea(ebp, MemOperand(esp, 4 * kPointerSize));
404 __ ret(0); // Call the continuation without clobbering registers.
405 }
406 } else {
407 if (needs_frame_not_call.is_bound()) {
408 __ jmp(&needs_frame_not_call);
409 } else {
410 __ bind(&needs_frame_not_call);
411 __ push(MemOperand(ebp, StandardFrameConstants::kContextOffset));
412 // This variant of deopt can only be used with stubs. Since we don't
413 // have a function pointer to install in the stack frame that we're
414 // building, install a special marker there instead.
415 ASSERT(info()->IsStub());
416 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
417 // Push the continuation which was stashed were the ebp should
418 // be. Replace it with the saved ebp.
419 __ push(MemOperand(esp, 2 * kPointerSize));
420 __ mov(MemOperand(esp, 3 * kPointerSize), ebp);
421 __ lea(ebp, MemOperand(esp, 3 * kPointerSize));
422 __ ret(0); // Call the continuation without clobbering registers.
423 }
424 }
425 } else {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +0000426 if (is_lazy_deopt) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000427 __ call(entry, RelocInfo::RUNTIME_ENTRY);
428 } else {
429 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
430 }
431 }
432 }
433 return !is_aborted();
434}
435
436
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000437bool LCodeGen::GenerateDeferredCode() {
438 ASSERT(is_generating());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000439 if (deferred_.length() > 0) {
440 for (int i = 0; !is_aborted() && i < deferred_.length(); i++) {
441 LDeferredCode* code = deferred_[i];
442 __ bind(code->entry());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000443 if (NeedsDeferredFrame()) {
444 Comment(";;; Deferred build frame",
445 code->instruction_index(),
446 code->instr()->Mnemonic());
447 ASSERT(!frame_is_built_);
448 ASSERT(info()->IsStub());
449 frame_is_built_ = true;
450 // Build the frame in such a way that esi isn't trashed.
451 __ push(ebp); // Caller's frame pointer.
452 __ push(Operand(ebp, StandardFrameConstants::kContextOffset));
453 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
454 __ lea(ebp, Operand(esp, 2 * kPointerSize));
455 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000456 Comment(";;; Deferred code @%d: %s.",
457 code->instruction_index(),
458 code->instr()->Mnemonic());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000459 code->Generate();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000460 if (NeedsDeferredFrame()) {
461 Comment(";;; Deferred destroy frame",
462 code->instruction_index(),
463 code->instr()->Mnemonic());
464 ASSERT(frame_is_built_);
465 frame_is_built_ = false;
466 __ mov(esp, ebp);
467 __ pop(ebp);
468 }
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000469 __ jmp(code->exit());
470 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000471 }
472
473 // Deferred code is the last part of the instruction sequence. Mark
474 // the generated code as done unless we bailed out.
475 if (!is_aborted()) status_ = DONE;
476 return !is_aborted();
477}
478
479
480bool LCodeGen::GenerateSafepointTable() {
481 ASSERT(is_done());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000482 if (!info()->IsStub()) {
483 // For lazy deoptimization we need space to patch a call after every call.
484 // Ensure there is always space for such patching, even if the code ends
485 // in a call.
486 int target_offset = masm()->pc_offset() + Deoptimizer::patch_size();
487 while (masm()->pc_offset() < target_offset) {
488 masm()->nop();
489 }
490 }
danno@chromium.org160a7b02011-04-18 15:51:38 +0000491 safepoints_.Emit(masm(), GetStackSlotCount());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000492 return !is_aborted();
493}
494
495
496Register LCodeGen::ToRegister(int index) const {
497 return Register::FromAllocationIndex(index);
498}
499
500
501XMMRegister LCodeGen::ToDoubleRegister(int index) const {
502 return XMMRegister::FromAllocationIndex(index);
503}
504
505
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000506bool LCodeGen::IsX87TopOfStack(LOperand* op) const {
507 return op->IsDoubleRegister();
508}
509
510
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000511Register LCodeGen::ToRegister(LOperand* op) const {
512 ASSERT(op->IsRegister());
513 return ToRegister(op->index());
514}
515
516
517XMMRegister LCodeGen::ToDoubleRegister(LOperand* op) const {
518 ASSERT(op->IsDoubleRegister());
519 return ToDoubleRegister(op->index());
520}
521
522
523int LCodeGen::ToInteger32(LConstantOperand* op) const {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000524 HConstant* constant = chunk_->LookupConstant(op);
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000525 return constant->Integer32Value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000526}
527
528
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +0000529Handle<Object> LCodeGen::ToHandle(LConstantOperand* op) const {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000530 HConstant* constant = chunk_->LookupConstant(op);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +0000531 ASSERT(chunk_->LookupLiteralRepresentation(op).IsTagged());
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000532 return constant->handle();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +0000533}
534
535
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +0000536double LCodeGen::ToDouble(LConstantOperand* op) const {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000537 HConstant* constant = chunk_->LookupConstant(op);
538 ASSERT(constant->HasDoubleValue());
539 return constant->DoubleValue();
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +0000540}
541
542
danno@chromium.orgbf0c8202011-12-27 10:09:42 +0000543bool LCodeGen::IsInteger32(LConstantOperand* op) const {
544 return chunk_->LookupLiteralRepresentation(op).IsInteger32();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000545}
546
547
548Operand LCodeGen::ToOperand(LOperand* op) const {
549 if (op->IsRegister()) return Operand(ToRegister(op));
550 if (op->IsDoubleRegister()) return Operand(ToDoubleRegister(op));
551 ASSERT(op->IsStackSlot() || op->IsDoubleStackSlot());
jkummerow@chromium.orgac360712013-02-11 09:00:07 +0000552 return Operand(ebp, StackSlotOffset(op->index()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000553}
554
555
erik.corry@gmail.com0511e242011-01-19 11:11:08 +0000556Operand LCodeGen::HighOperand(LOperand* op) {
557 ASSERT(op->IsDoubleStackSlot());
jkummerow@chromium.orgac360712013-02-11 09:00:07 +0000558 return Operand(ebp, StackSlotOffset(op->index()) + kPointerSize);
erik.corry@gmail.com0511e242011-01-19 11:11:08 +0000559}
560
561
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000562void LCodeGen::WriteTranslation(LEnvironment* environment,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000563 Translation* translation,
564 int* arguments_index,
565 int* arguments_count) {
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000566 if (environment == NULL) return;
567
568 // The translation includes one command per value in the environment.
569 int translation_size = environment->values()->length();
570 // The output frame height does not include the parameters.
571 int height = translation_size - environment->parameter_count();
572
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000573 // Function parameters are arguments to the outermost environment. The
574 // arguments index points to the first element of a sequence of tagged
575 // values on the stack that represent the arguments. This needs to be
576 // kept in sync with the LArgumentsElements implementation.
577 *arguments_index = -environment->parameter_count();
578 *arguments_count = environment->parameter_count();
579
580 WriteTranslation(environment->outer(),
581 translation,
582 arguments_index,
583 arguments_count);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000584 bool has_closure_id = !info()->closure().is_null() &&
585 *info()->closure() != *environment->closure();
586 int closure_id = has_closure_id
yangguo@chromium.org5a11aaf2012-06-20 11:29:00 +0000587 ? DefineDeoptimizationLiteral(environment->closure())
588 : Translation::kSelfLiteralId;
ulan@chromium.org967e2702012-02-28 09:49:15 +0000589 switch (environment->frame_type()) {
590 case JS_FUNCTION:
591 translation->BeginJSFrame(environment->ast_id(), closure_id, height);
592 break;
593 case JS_CONSTRUCT:
594 translation->BeginConstructStubFrame(closure_id, translation_size);
595 break;
mstarzinger@chromium.orgde886792012-09-11 13:22:37 +0000596 case JS_GETTER:
597 ASSERT(translation_size == 1);
598 ASSERT(height == 0);
599 translation->BeginGetterStubFrame(closure_id);
600 break;
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000601 case JS_SETTER:
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000602 ASSERT(translation_size == 2);
603 ASSERT(height == 0);
604 translation->BeginSetterStubFrame(closure_id);
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000605 break;
ulan@chromium.org967e2702012-02-28 09:49:15 +0000606 case ARGUMENTS_ADAPTOR:
607 translation->BeginArgumentsAdaptorFrame(closure_id, translation_size);
608 break;
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000609 case STUB:
610 translation->BeginCompiledStubFrame();
611 break;
612 default:
613 UNREACHABLE();
yangguo@chromium.org659ceec2012-01-26 07:37:54 +0000614 }
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000615
616 // Inlined frames which push their arguments cause the index to be
617 // bumped and another stack area to be used for materialization.
618 if (environment->entry() != NULL &&
619 environment->entry()->arguments_pushed()) {
620 *arguments_index = *arguments_index < 0
621 ? GetStackSlotCount()
622 : *arguments_index + *arguments_count;
623 *arguments_count = environment->entry()->arguments_count() + 1;
624 }
625
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000626 for (int i = 0; i < translation_size; ++i) {
627 LOperand* value = environment->values()->at(i);
628 // spilled_registers_ and spilled_double_registers_ are either
629 // both NULL or both set.
630 if (environment->spilled_registers() != NULL && value != NULL) {
631 if (value->IsRegister() &&
632 environment->spilled_registers()[value->index()] != NULL) {
633 translation->MarkDuplicate();
634 AddToTranslation(translation,
635 environment->spilled_registers()[value->index()],
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000636 environment->HasTaggedValueAt(i),
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000637 environment->HasUint32ValueAt(i),
638 *arguments_index,
639 *arguments_count);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000640 } else if (
641 value->IsDoubleRegister() &&
642 environment->spilled_double_registers()[value->index()] != NULL) {
643 translation->MarkDuplicate();
644 AddToTranslation(
645 translation,
646 environment->spilled_double_registers()[value->index()],
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000647 false,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000648 false,
649 *arguments_index,
650 *arguments_count);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000651 }
652 }
653
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000654 AddToTranslation(translation,
655 value,
656 environment->HasTaggedValueAt(i),
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000657 environment->HasUint32ValueAt(i),
658 *arguments_index,
659 *arguments_count);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000660 }
661}
662
663
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000664void LCodeGen::AddToTranslation(Translation* translation,
665 LOperand* op,
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000666 bool is_tagged,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000667 bool is_uint32,
668 int arguments_index,
669 int arguments_count) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000670 if (op == NULL) {
671 // TODO(twuerthinger): Introduce marker operands to indicate that this value
672 // is not present and must be reconstructed from the deoptimizer. Currently
673 // this is only used for the arguments object.
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000674 translation->StoreArgumentsObject(arguments_index, arguments_count);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000675 } else if (op->IsStackSlot()) {
676 if (is_tagged) {
677 translation->StoreStackSlot(op->index());
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000678 } else if (is_uint32) {
679 translation->StoreUint32StackSlot(op->index());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000680 } else {
681 translation->StoreInt32StackSlot(op->index());
682 }
683 } else if (op->IsDoubleStackSlot()) {
684 translation->StoreDoubleStackSlot(op->index());
685 } else if (op->IsArgument()) {
686 ASSERT(is_tagged);
danno@chromium.org160a7b02011-04-18 15:51:38 +0000687 int src_index = GetStackSlotCount() + op->index();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000688 translation->StoreStackSlot(src_index);
689 } else if (op->IsRegister()) {
690 Register reg = ToRegister(op);
691 if (is_tagged) {
692 translation->StoreRegister(reg);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000693 } else if (is_uint32) {
694 translation->StoreUint32Register(reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000695 } else {
696 translation->StoreInt32Register(reg);
697 }
698 } else if (op->IsDoubleRegister()) {
699 XMMRegister reg = ToDoubleRegister(op);
700 translation->StoreDoubleRegister(reg);
701 } else if (op->IsConstantOperand()) {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000702 HConstant* constant = chunk()->LookupConstant(LConstantOperand::cast(op));
703 int src_index = DefineDeoptimizationLiteral(constant->handle());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000704 translation->StoreLiteral(src_index);
705 } else {
706 UNREACHABLE();
707 }
708}
709
710
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000711void LCodeGen::CallCodeGeneric(Handle<Code> code,
712 RelocInfo::Mode mode,
713 LInstruction* instr,
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000714 SafepointMode safepoint_mode) {
kmillikin@chromium.org31b12772011-02-02 16:08:26 +0000715 ASSERT(instr != NULL);
716 LPointerMap* pointers = instr->pointer_map();
717 RecordPosition(pointers->position());
718 __ call(code, mode);
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000719 RecordSafepointWithLazyDeopt(instr, safepoint_mode);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +0000720
721 // Signal that we don't inline smi code before these stubs in the
722 // optimizing code generator.
danno@chromium.org40cb8782011-05-25 07:58:50 +0000723 if (code->kind() == Code::BINARY_OP_IC ||
ager@chromium.org5f0c45f2010-12-17 08:51:21 +0000724 code->kind() == Code::COMPARE_IC) {
725 __ nop();
726 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000727}
728
729
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000730void LCodeGen::CallCode(Handle<Code> code,
731 RelocInfo::Mode mode,
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000732 LInstruction* instr) {
733 CallCodeGeneric(code, mode, instr, RECORD_SIMPLE_SAFEPOINT);
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000734}
735
736
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +0000737void LCodeGen::CallRuntime(const Runtime::Function* fun,
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +0000738 int argc,
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000739 LInstruction* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000740 ASSERT(instr != NULL);
kmillikin@chromium.org31b12772011-02-02 16:08:26 +0000741 ASSERT(instr->HasPointerMap());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000742 LPointerMap* pointers = instr->pointer_map();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000743 RecordPosition(pointers->position());
744
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +0000745 __ CallRuntime(fun, argc);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +0000746
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000747 RecordSafepointWithLazyDeopt(instr, RECORD_SIMPLE_SAFEPOINT);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000748
749 ASSERT(info()->is_calling());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000750}
751
752
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000753void LCodeGen::LoadContextFromDeferred(LOperand* context) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000754 if (context->IsRegister()) {
755 if (!ToRegister(context).is(esi)) {
756 __ mov(esi, ToRegister(context));
757 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000758 } else if (context->IsStackSlot()) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000759 __ mov(esi, ToOperand(context));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000760 } else if (context->IsConstantOperand()) {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000761 HConstant* constant =
762 chunk_->LookupConstant(LConstantOperand::cast(context));
763 __ LoadHeapObject(esi, Handle<Context>::cast(constant->handle()));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000764 } else {
765 UNREACHABLE();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000766 }
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000767}
768
769void LCodeGen::CallRuntimeFromDeferred(Runtime::FunctionId id,
770 int argc,
771 LInstruction* instr,
772 LOperand* context) {
773 LoadContextFromDeferred(context);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000774
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000775 __ CallRuntimeSaveDoubles(id);
776 RecordSafepointWithRegisters(
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000777 instr->pointer_map(), argc, Safepoint::kNoLazyDeopt);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000778
779 ASSERT(info()->is_calling());
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000780}
781
782
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000783void LCodeGen::RegisterEnvironmentForDeoptimization(
784 LEnvironment* environment, Safepoint::DeoptMode mode) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000785 if (!environment->HasBeenRegistered()) {
786 // Physical stack frame layout:
787 // -x ............. -4 0 ..................................... y
788 // [incoming arguments] [spill slots] [pushed outgoing arguments]
789
790 // Layout of the environment:
791 // 0 ..................................................... size-1
792 // [parameters] [locals] [expression stack including arguments]
793
794 // Layout of the translation:
795 // 0 ........................................................ size - 1 + 4
796 // [expression stack including arguments] [locals] [4 words] [parameters]
797 // |>------------ translation_size ------------<|
798
799 int frame_count = 0;
yangguo@chromium.org659ceec2012-01-26 07:37:54 +0000800 int jsframe_count = 0;
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000801 int args_index = 0;
802 int args_count = 0;
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000803 for (LEnvironment* e = environment; e != NULL; e = e->outer()) {
804 ++frame_count;
ulan@chromium.org967e2702012-02-28 09:49:15 +0000805 if (e->frame_type() == JS_FUNCTION) {
yangguo@chromium.org659ceec2012-01-26 07:37:54 +0000806 ++jsframe_count;
807 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000808 }
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000809 Translation translation(&translations_, frame_count, jsframe_count, zone());
810 WriteTranslation(environment, &translation, &args_index, &args_count);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000811 int deoptimization_index = deoptimizations_.length();
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000812 int pc_offset = masm()->pc_offset();
813 environment->Register(deoptimization_index,
814 translation.index(),
815 (mode == Safepoint::kLazyDeopt) ? pc_offset : -1);
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000816 deoptimizations_.Add(environment, zone());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000817 }
818}
819
820
821void LCodeGen::DeoptimizeIf(Condition cc, LEnvironment* environment) {
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000822 RegisterEnvironmentForDeoptimization(environment, Safepoint::kNoLazyDeopt);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000823 ASSERT(environment->HasBeenRegistered());
824 int id = environment->deoptimization_index();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000825 ASSERT(info()->IsOptimizing() || info()->IsStub());
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +0000826 Deoptimizer::BailoutType bailout_type = info()->IsStub()
827 ? Deoptimizer::LAZY
828 : Deoptimizer::EAGER;
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000829 Address entry = Deoptimizer::GetDeoptimizationEntry(id, bailout_type);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000830 if (entry == NULL) {
831 Abort("bailout was not prepared");
832 return;
833 }
834
835 if (FLAG_deopt_every_n_times != 0) {
836 Handle<SharedFunctionInfo> shared(info_->shared_info());
837 Label no_deopt;
838 __ pushfd();
839 __ push(eax);
840 __ push(ebx);
841 __ mov(ebx, shared);
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000842 __ mov(eax,
843 FieldOperand(ebx, SharedFunctionInfo::kStressDeoptCounterOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000844 __ sub(Operand(eax), Immediate(Smi::FromInt(1)));
karlklose@chromium.org83a47282011-05-11 11:54:09 +0000845 __ j(not_zero, &no_deopt, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000846 if (FLAG_trap_on_deopt) __ int3();
847 __ mov(eax, Immediate(Smi::FromInt(FLAG_deopt_every_n_times)));
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000848 __ mov(FieldOperand(ebx, SharedFunctionInfo::kStressDeoptCounterOffset),
849 eax);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000850 __ pop(ebx);
851 __ pop(eax);
852 __ popfd();
853 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
854
855 __ bind(&no_deopt);
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000856 __ mov(FieldOperand(ebx, SharedFunctionInfo::kStressDeoptCounterOffset),
857 eax);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000858 __ pop(ebx);
859 __ pop(eax);
860 __ popfd();
861 }
862
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000863 if (FLAG_trap_on_deopt) {
864 Label done;
865 if (cc != no_condition) {
866 __ j(NegateCondition(cc), &done, Label::kNear);
867 }
868 __ int3();
869 __ bind(&done);
870 }
871
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000872 ASSERT(info()->IsStub() || frame_is_built_);
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000873 bool needs_lazy_deopt = info()->IsStub();
874 if (cc == no_condition && frame_is_built_) {
875 if (needs_lazy_deopt) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000876 __ call(entry, RelocInfo::RUNTIME_ENTRY);
877 } else {
878 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
879 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000880 } else {
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000881 // We often have several deopts to the same entry, reuse the last
882 // jump entry if this is the case.
883 if (jump_table_.is_empty() ||
884 jump_table_.last().address != entry ||
885 jump_table_.last().needs_frame != !frame_is_built_ ||
886 jump_table_.last().is_lazy_deopt != needs_lazy_deopt) {
887 JumpTableEntry table_entry(entry, !frame_is_built_, needs_lazy_deopt);
888 jump_table_.Add(table_entry, zone());
mstarzinger@chromium.org32280cf2012-12-06 17:32:37 +0000889 }
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000890 if (cc == no_condition) {
891 __ jmp(&jump_table_.last().label);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000892 } else {
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000893 __ j(cc, &jump_table_.last().label);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000894 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000895 }
896}
897
898
899void LCodeGen::PopulateDeoptimizationData(Handle<Code> code) {
900 int length = deoptimizations_.length();
901 if (length == 0) return;
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000902 Handle<DeoptimizationInputData> data =
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +0000903 factory()->NewDeoptimizationInputData(length, TENURED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000904
ager@chromium.org9ee27ae2011-03-02 13:43:26 +0000905 Handle<ByteArray> translations = translations_.CreateByteArray();
906 data->SetTranslationByteArray(*translations);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000907 data->SetInlinedFunctionCount(Smi::FromInt(inlined_function_count_));
908
909 Handle<FixedArray> literals =
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +0000910 factory()->NewFixedArray(deoptimization_literals_.length(), TENURED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000911 for (int i = 0; i < deoptimization_literals_.length(); i++) {
912 literals->set(i, *deoptimization_literals_[i]);
913 }
914 data->SetLiteralArray(*literals);
915
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000916 data->SetOsrAstId(Smi::FromInt(info_->osr_ast_id().ToInt()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000917 data->SetOsrPcOffset(Smi::FromInt(osr_pc_offset_));
918
919 // Populate the deoptimization entries.
920 for (int i = 0; i < length; i++) {
921 LEnvironment* env = deoptimizations_[i];
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000922 data->SetAstId(i, env->ast_id());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000923 data->SetTranslationIndex(i, Smi::FromInt(env->translation_index()));
924 data->SetArgumentsStackHeight(i,
925 Smi::FromInt(env->arguments_stack_height()));
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000926 data->SetPc(i, Smi::FromInt(env->pc_offset()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000927 }
928 code->set_deoptimization_data(*data);
929}
930
931
932int LCodeGen::DefineDeoptimizationLiteral(Handle<Object> literal) {
933 int result = deoptimization_literals_.length();
934 for (int i = 0; i < deoptimization_literals_.length(); ++i) {
935 if (deoptimization_literals_[i].is_identical_to(literal)) return i;
936 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000937 deoptimization_literals_.Add(literal, zone());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000938 return result;
939}
940
941
942void LCodeGen::PopulateDeoptimizationLiteralsWithInlinedFunctions() {
943 ASSERT(deoptimization_literals_.length() == 0);
944
945 const ZoneList<Handle<JSFunction> >* inlined_closures =
946 chunk()->inlined_closures();
947
948 for (int i = 0, length = inlined_closures->length();
949 i < length;
950 i++) {
951 DefineDeoptimizationLiteral(inlined_closures->at(i));
952 }
953
954 inlined_function_count_ = deoptimization_literals_.length();
955}
956
957
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000958void LCodeGen::RecordSafepointWithLazyDeopt(
959 LInstruction* instr, SafepointMode safepoint_mode) {
960 if (safepoint_mode == RECORD_SIMPLE_SAFEPOINT) {
961 RecordSafepoint(instr->pointer_map(), Safepoint::kLazyDeopt);
962 } else {
963 ASSERT(safepoint_mode == RECORD_SAFEPOINT_WITH_REGISTERS_AND_NO_ARGUMENTS);
964 RecordSafepointWithRegisters(
965 instr->pointer_map(), 0, Safepoint::kLazyDeopt);
966 }
967}
968
969
ager@chromium.org378b34e2011-01-28 08:04:38 +0000970void LCodeGen::RecordSafepoint(
971 LPointerMap* pointers,
972 Safepoint::Kind kind,
973 int arguments,
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000974 Safepoint::DeoptMode deopt_mode) {
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000975 ASSERT(kind == expected_safepoint_kind_);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000976 const ZoneList<LOperand*>* operands = pointers->GetNormalizedOperands();
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000977 Safepoint safepoint =
978 safepoints_.DefineSafepoint(masm(), kind, arguments, deopt_mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000979 for (int i = 0; i < operands->length(); i++) {
980 LOperand* pointer = operands->at(i);
981 if (pointer->IsStackSlot()) {
rossberg@chromium.org400388e2012-06-06 09:29:22 +0000982 safepoint.DefinePointerSlot(pointer->index(), zone());
ager@chromium.org378b34e2011-01-28 08:04:38 +0000983 } else if (pointer->IsRegister() && (kind & Safepoint::kWithRegisters)) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000984 safepoint.DefinePointerRegister(ToRegister(pointer), zone());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000985 }
986 }
ager@chromium.org378b34e2011-01-28 08:04:38 +0000987}
988
989
990void LCodeGen::RecordSafepoint(LPointerMap* pointers,
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000991 Safepoint::DeoptMode mode) {
992 RecordSafepoint(pointers, Safepoint::kSimple, 0, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000993}
994
995
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000996void LCodeGen::RecordSafepoint(Safepoint::DeoptMode mode) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000997 LPointerMap empty_pointers(RelocInfo::kNoPosition, zone());
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000998 RecordSafepoint(&empty_pointers, mode);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000999}
1000
1001
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001002void LCodeGen::RecordSafepointWithRegisters(LPointerMap* pointers,
1003 int arguments,
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001004 Safepoint::DeoptMode mode) {
1005 RecordSafepoint(pointers, Safepoint::kWithRegisters, arguments, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001006}
1007
1008
1009void LCodeGen::RecordPosition(int position) {
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00001010 if (position == RelocInfo::kNoPosition) return;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001011 masm()->positions_recorder()->RecordPosition(position);
1012}
1013
1014
1015void LCodeGen::DoLabel(LLabel* label) {
1016 if (label->is_loop_header()) {
1017 Comment(";;; B%d - LOOP entry", label->block_id());
1018 } else {
1019 Comment(";;; B%d", label->block_id());
1020 }
1021 __ bind(label->label());
1022 current_block_ = label->block_id();
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001023 DoGap(label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001024}
1025
1026
1027void LCodeGen::DoParallelMove(LParallelMove* move) {
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00001028 resolver_.Resolve(move);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001029}
1030
1031
1032void LCodeGen::DoGap(LGap* gap) {
1033 for (int i = LGap::FIRST_INNER_POSITION;
1034 i <= LGap::LAST_INNER_POSITION;
1035 i++) {
1036 LGap::InnerPosition inner_pos = static_cast<LGap::InnerPosition>(i);
1037 LParallelMove* move = gap->GetParallelMove(inner_pos);
1038 if (move != NULL) DoParallelMove(move);
1039 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001040}
1041
1042
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001043void LCodeGen::DoInstructionGap(LInstructionGap* instr) {
1044 DoGap(instr);
1045}
1046
1047
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001048void LCodeGen::DoParameter(LParameter* instr) {
1049 // Nothing to do.
1050}
1051
1052
1053void LCodeGen::DoCallStub(LCallStub* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00001054 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001055 ASSERT(ToRegister(instr->result()).is(eax));
1056 switch (instr->hydrogen()->major_key()) {
1057 case CodeStub::RegExpConstructResult: {
1058 RegExpConstructResultStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001059 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001060 break;
1061 }
1062 case CodeStub::RegExpExec: {
1063 RegExpExecStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001064 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001065 break;
1066 }
1067 case CodeStub::SubString: {
1068 SubStringStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001069 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001070 break;
1071 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001072 case CodeStub::NumberToString: {
1073 NumberToStringStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001074 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001075 break;
1076 }
1077 case CodeStub::StringAdd: {
1078 StringAddStub stub(NO_STRING_ADD_FLAGS);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001079 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001080 break;
1081 }
1082 case CodeStub::StringCompare: {
1083 StringCompareStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001084 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001085 break;
1086 }
1087 case CodeStub::TranscendentalCache: {
whesse@chromium.org023421e2010-12-21 12:19:12 +00001088 TranscendentalCacheStub stub(instr->transcendental_type(),
1089 TranscendentalCacheStub::TAGGED);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001090 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001091 break;
1092 }
1093 default:
1094 UNREACHABLE();
1095 }
1096}
1097
1098
1099void LCodeGen::DoUnknownOSRValue(LUnknownOSRValue* instr) {
1100 // Nothing to do.
1101}
1102
1103
1104void LCodeGen::DoModI(LModI* instr) {
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001105 if (instr->hydrogen()->HasPowerOf2Divisor()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001106 Register dividend = ToRegister(instr->left());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001107
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001108 int32_t divisor =
1109 HConstant::cast(instr->hydrogen()->right())->Integer32Value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001110
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001111 if (divisor < 0) divisor = -divisor;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001112
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001113 Label positive_dividend, done;
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001114 __ test(dividend, Operand(dividend));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001115 __ j(not_sign, &positive_dividend, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001116 __ neg(dividend);
1117 __ and_(dividend, divisor - 1);
1118 __ neg(dividend);
1119 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001120 __ j(not_zero, &done, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001121 DeoptimizeIf(no_condition, instr->environment());
whesse@chromium.org7b260152011-06-20 15:33:18 +00001122 } else {
1123 __ jmp(&done, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001124 }
1125 __ bind(&positive_dividend);
1126 __ and_(dividend, divisor - 1);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001127 __ bind(&done);
1128 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001129 Label done, remainder_eq_dividend, slow, do_subtraction, both_positive;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001130 Register left_reg = ToRegister(instr->left());
1131 Register right_reg = ToRegister(instr->right());
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001132 Register result_reg = ToRegister(instr->result());
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001133
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001134 ASSERT(left_reg.is(eax));
1135 ASSERT(result_reg.is(edx));
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001136 ASSERT(!right_reg.is(eax));
1137 ASSERT(!right_reg.is(edx));
1138
1139 // Check for x % 0.
1140 if (instr->hydrogen()->CheckFlag(HValue::kCanBeDivByZero)) {
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001141 __ test(right_reg, Operand(right_reg));
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001142 DeoptimizeIf(zero, instr->environment());
1143 }
1144
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001145 __ test(left_reg, Operand(left_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001146 __ j(zero, &remainder_eq_dividend, Label::kNear);
1147 __ j(sign, &slow, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001148
1149 __ test(right_reg, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001150 __ j(not_sign, &both_positive, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001151 // The sign of the divisor doesn't matter.
1152 __ neg(right_reg);
1153
1154 __ bind(&both_positive);
1155 // If the dividend is smaller than the nonnegative
1156 // divisor, the dividend is the result.
1157 __ cmp(left_reg, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001158 __ j(less, &remainder_eq_dividend, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001159
1160 // Check if the divisor is a PowerOfTwo integer.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001161 Register scratch = ToRegister(instr->temp());
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001162 __ mov(scratch, right_reg);
1163 __ sub(Operand(scratch), Immediate(1));
1164 __ test(scratch, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001165 __ j(not_zero, &do_subtraction, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001166 __ and_(left_reg, Operand(scratch));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001167 __ jmp(&remainder_eq_dividend, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001168
1169 __ bind(&do_subtraction);
1170 const int kUnfolds = 3;
1171 // Try a few subtractions of the dividend.
1172 __ mov(scratch, left_reg);
1173 for (int i = 0; i < kUnfolds; i++) {
1174 // Reduce the dividend by the divisor.
1175 __ sub(left_reg, Operand(right_reg));
1176 // Check if the dividend is less than the divisor.
1177 __ cmp(left_reg, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001178 __ j(less, &remainder_eq_dividend, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001179 }
1180 __ mov(left_reg, scratch);
1181
1182 // Slow case, using idiv instruction.
1183 __ bind(&slow);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001184
1185 // Check for (kMinInt % -1).
1186 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1187 Label left_not_min_int;
1188 __ cmp(left_reg, kMinInt);
1189 __ j(not_zero, &left_not_min_int, Label::kNear);
1190 __ cmp(right_reg, -1);
1191 DeoptimizeIf(zero, instr->environment());
1192 __ bind(&left_not_min_int);
1193 }
1194
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001195 // Sign extend to edx.
1196 __ cdq();
1197
1198 // Check for (0 % -x) that will produce negative zero.
1199 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001200 Label positive_left;
1201 Label done;
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001202 __ test(left_reg, Operand(left_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001203 __ j(not_sign, &positive_left, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001204 __ idiv(right_reg);
1205
1206 // Test the remainder for 0, because then the result would be -0.
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001207 __ test(result_reg, Operand(result_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001208 __ j(not_zero, &done, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001209
1210 DeoptimizeIf(no_condition, instr->environment());
1211 __ bind(&positive_left);
1212 __ idiv(right_reg);
1213 __ bind(&done);
1214 } else {
1215 __ idiv(right_reg);
1216 }
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001217 __ jmp(&done, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001218
1219 __ bind(&remainder_eq_dividend);
1220 __ mov(result_reg, left_reg);
1221
1222 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001223 }
1224}
1225
1226
1227void LCodeGen::DoDivI(LDivI* instr) {
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001228 if (!instr->is_flooring() && instr->hydrogen()->HasPowerOf2Divisor()) {
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +00001229 Register dividend = ToRegister(instr->left());
1230 int32_t divisor =
1231 HConstant::cast(instr->hydrogen()->right())->Integer32Value();
1232 int32_t test_value = 0;
1233 int32_t power = 0;
1234
1235 if (divisor > 0) {
1236 test_value = divisor - 1;
1237 power = WhichPowerOf2(divisor);
1238 } else {
1239 // Check for (0 / -x) that will produce negative zero.
1240 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1241 __ test(dividend, Operand(dividend));
1242 DeoptimizeIf(zero, instr->environment());
1243 }
1244 // Check for (kMinInt / -1).
1245 if (divisor == -1 && instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1246 __ cmp(dividend, kMinInt);
1247 DeoptimizeIf(zero, instr->environment());
1248 }
1249 test_value = - divisor - 1;
1250 power = WhichPowerOf2(-divisor);
1251 }
1252
1253 if (test_value != 0) {
1254 // Deoptimize if remainder is not 0.
1255 __ test(dividend, Immediate(test_value));
1256 DeoptimizeIf(not_zero, instr->environment());
1257 __ sar(dividend, power);
1258 }
1259
1260 if (divisor < 0) __ neg(dividend);
1261
1262 return;
1263 }
1264
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001265 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001266 ASSERT(ToRegister(instr->result()).is(eax));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001267 ASSERT(ToRegister(instr->left()).is(eax));
1268 ASSERT(!ToRegister(instr->right()).is(eax));
1269 ASSERT(!ToRegister(instr->right()).is(edx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001270
1271 Register left_reg = eax;
1272
1273 // Check for x / 0.
1274 Register right_reg = ToRegister(right);
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001275 if (instr->hydrogen_value()->CheckFlag(HValue::kCanBeDivByZero)) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001276 __ test(right_reg, ToOperand(right));
1277 DeoptimizeIf(zero, instr->environment());
1278 }
1279
1280 // Check for (0 / -x) that will produce negative zero.
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001281 if (instr->hydrogen_value()->CheckFlag(HValue::kBailoutOnMinusZero)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001282 Label left_not_zero;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001283 __ test(left_reg, Operand(left_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001284 __ j(not_zero, &left_not_zero, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001285 __ test(right_reg, ToOperand(right));
1286 DeoptimizeIf(sign, instr->environment());
1287 __ bind(&left_not_zero);
1288 }
1289
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +00001290 // Check for (kMinInt / -1).
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001291 if (instr->hydrogen_value()->CheckFlag(HValue::kCanOverflow)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001292 Label left_not_min_int;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001293 __ cmp(left_reg, kMinInt);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001294 __ j(not_zero, &left_not_min_int, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001295 __ cmp(right_reg, -1);
1296 DeoptimizeIf(zero, instr->environment());
1297 __ bind(&left_not_min_int);
1298 }
1299
1300 // Sign extend to edx.
1301 __ cdq();
1302 __ idiv(right_reg);
1303
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001304 if (!instr->is_flooring()) {
1305 // Deoptimize if remainder is not 0.
1306 __ test(edx, Operand(edx));
1307 DeoptimizeIf(not_zero, instr->environment());
1308 } else {
1309 Label done;
1310 __ test(edx, edx);
1311 __ j(zero, &done, Label::kNear);
1312 __ xor_(edx, right_reg);
1313 __ sar(edx, 31);
1314 __ add(eax, edx);
1315 __ bind(&done);
1316 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001317}
1318
1319
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001320void LCodeGen::DoMathFloorOfDiv(LMathFloorOfDiv* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001321 ASSERT(instr->right()->IsConstantOperand());
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001322
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001323 Register dividend = ToRegister(instr->left());
1324 int32_t divisor = ToInteger32(LConstantOperand::cast(instr->right()));
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001325 Register result = ToRegister(instr->result());
1326
1327 switch (divisor) {
1328 case 0:
1329 DeoptimizeIf(no_condition, instr->environment());
1330 return;
1331
1332 case 1:
1333 __ Move(result, dividend);
1334 return;
1335
1336 case -1:
1337 __ Move(result, dividend);
1338 __ neg(result);
1339 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1340 DeoptimizeIf(zero, instr->environment());
1341 }
1342 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1343 DeoptimizeIf(overflow, instr->environment());
1344 }
1345 return;
1346 }
1347
1348 uint32_t divisor_abs = abs(divisor);
1349 if (IsPowerOf2(divisor_abs)) {
1350 int32_t power = WhichPowerOf2(divisor_abs);
1351 if (divisor < 0) {
1352 // Input[dividend] is clobbered.
1353 // The sequence is tedious because neg(dividend) might overflow.
1354 __ mov(result, dividend);
1355 __ sar(dividend, 31);
1356 __ neg(result);
1357 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1358 DeoptimizeIf(zero, instr->environment());
1359 }
1360 __ shl(dividend, 32 - power);
1361 __ sar(result, power);
1362 __ not_(dividend);
1363 // Clear result.sign if dividend.sign is set.
1364 __ and_(result, dividend);
1365 } else {
1366 __ Move(result, dividend);
1367 __ sar(result, power);
1368 }
1369 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001370 ASSERT(ToRegister(instr->left()).is(eax));
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001371 ASSERT(ToRegister(instr->result()).is(edx));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001372 Register scratch = ToRegister(instr->temp());
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001373
1374 // Find b which: 2^b < divisor_abs < 2^(b+1).
1375 unsigned b = 31 - CompilerIntrinsics::CountLeadingZeros(divisor_abs);
1376 unsigned shift = 32 + b; // Precision +1bit (effectively).
1377 double multiplier_f =
1378 static_cast<double>(static_cast<uint64_t>(1) << shift) / divisor_abs;
1379 int64_t multiplier;
1380 if (multiplier_f - floor(multiplier_f) < 0.5) {
1381 multiplier = static_cast<int64_t>(floor(multiplier_f));
1382 } else {
1383 multiplier = static_cast<int64_t>(floor(multiplier_f)) + 1;
1384 }
1385 // The multiplier is a uint32.
1386 ASSERT(multiplier > 0 &&
1387 multiplier < (static_cast<int64_t>(1) << 32));
1388 __ mov(scratch, dividend);
1389 if (divisor < 0 &&
1390 instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1391 __ test(dividend, dividend);
1392 DeoptimizeIf(zero, instr->environment());
1393 }
1394 __ mov(edx, static_cast<int32_t>(multiplier));
1395 __ imul(edx);
1396 if (static_cast<int32_t>(multiplier) < 0) {
1397 __ add(edx, scratch);
1398 }
1399 Register reg_lo = eax;
1400 Register reg_byte_scratch = scratch;
1401 if (!reg_byte_scratch.is_byte_register()) {
1402 __ xchg(reg_lo, reg_byte_scratch);
1403 reg_lo = scratch;
1404 reg_byte_scratch = eax;
1405 }
1406 if (divisor < 0) {
1407 __ xor_(reg_byte_scratch, reg_byte_scratch);
1408 __ cmp(reg_lo, 0x40000000);
1409 __ setcc(above, reg_byte_scratch);
1410 __ neg(edx);
1411 __ sub(edx, reg_byte_scratch);
1412 } else {
1413 __ xor_(reg_byte_scratch, reg_byte_scratch);
1414 __ cmp(reg_lo, 0xC0000000);
1415 __ setcc(above_equal, reg_byte_scratch);
1416 __ add(edx, reg_byte_scratch);
1417 }
1418 __ sar(edx, shift - 32);
1419 }
1420}
1421
1422
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001423void LCodeGen::DoMulI(LMulI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001424 Register left = ToRegister(instr->left());
1425 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001426
1427 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001428 __ mov(ToRegister(instr->temp()), left);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001429 }
1430
1431 if (right->IsConstantOperand()) {
ricow@chromium.orgbadaffc2011-03-17 12:15:27 +00001432 // Try strength reductions on the multiplication.
1433 // All replacement instructions are at most as long as the imul
1434 // and have better latency.
1435 int constant = ToInteger32(LConstantOperand::cast(right));
1436 if (constant == -1) {
1437 __ neg(left);
1438 } else if (constant == 0) {
1439 __ xor_(left, Operand(left));
1440 } else if (constant == 2) {
1441 __ add(left, Operand(left));
1442 } else if (!instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1443 // If we know that the multiplication can't overflow, it's safe to
1444 // use instructions that don't set the overflow flag for the
1445 // multiplication.
1446 switch (constant) {
1447 case 1:
1448 // Do nothing.
1449 break;
1450 case 3:
1451 __ lea(left, Operand(left, left, times_2, 0));
1452 break;
1453 case 4:
1454 __ shl(left, 2);
1455 break;
1456 case 5:
1457 __ lea(left, Operand(left, left, times_4, 0));
1458 break;
1459 case 8:
1460 __ shl(left, 3);
1461 break;
1462 case 9:
1463 __ lea(left, Operand(left, left, times_8, 0));
1464 break;
1465 case 16:
1466 __ shl(left, 4);
1467 break;
1468 default:
1469 __ imul(left, left, constant);
1470 break;
1471 }
1472 } else {
1473 __ imul(left, left, constant);
1474 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001475 } else {
1476 __ imul(left, ToOperand(right));
1477 }
1478
1479 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1480 DeoptimizeIf(overflow, instr->environment());
1481 }
1482
1483 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1484 // Bail out if the result is supposed to be negative zero.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001485 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001486 __ test(left, Operand(left));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001487 __ j(not_zero, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001488 if (right->IsConstantOperand()) {
verwaest@chromium.org33e09c82012-10-10 17:07:22 +00001489 if (ToInteger32(LConstantOperand::cast(right)) < 0) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001490 DeoptimizeIf(no_condition, instr->environment());
verwaest@chromium.org33e09c82012-10-10 17:07:22 +00001491 } else if (ToInteger32(LConstantOperand::cast(right)) == 0) {
1492 __ cmp(ToRegister(instr->temp()), Immediate(0));
1493 DeoptimizeIf(less, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001494 }
1495 } else {
1496 // Test the non-zero operand for negative sign.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001497 __ or_(ToRegister(instr->temp()), ToOperand(right));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001498 DeoptimizeIf(sign, instr->environment());
1499 }
1500 __ bind(&done);
1501 }
1502}
1503
1504
1505void LCodeGen::DoBitI(LBitI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001506 LOperand* left = instr->left();
1507 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001508 ASSERT(left->Equals(instr->result()));
1509 ASSERT(left->IsRegister());
1510
1511 if (right->IsConstantOperand()) {
1512 int right_operand = ToInteger32(LConstantOperand::cast(right));
1513 switch (instr->op()) {
1514 case Token::BIT_AND:
1515 __ and_(ToRegister(left), right_operand);
1516 break;
1517 case Token::BIT_OR:
1518 __ or_(ToRegister(left), right_operand);
1519 break;
1520 case Token::BIT_XOR:
1521 __ xor_(ToRegister(left), right_operand);
1522 break;
1523 default:
1524 UNREACHABLE();
1525 break;
1526 }
1527 } else {
1528 switch (instr->op()) {
1529 case Token::BIT_AND:
1530 __ and_(ToRegister(left), ToOperand(right));
1531 break;
1532 case Token::BIT_OR:
1533 __ or_(ToRegister(left), ToOperand(right));
1534 break;
1535 case Token::BIT_XOR:
1536 __ xor_(ToRegister(left), ToOperand(right));
1537 break;
1538 default:
1539 UNREACHABLE();
1540 break;
1541 }
1542 }
1543}
1544
1545
1546void LCodeGen::DoShiftI(LShiftI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001547 LOperand* left = instr->left();
1548 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001549 ASSERT(left->Equals(instr->result()));
1550 ASSERT(left->IsRegister());
1551 if (right->IsRegister()) {
1552 ASSERT(ToRegister(right).is(ecx));
1553
1554 switch (instr->op()) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00001555 case Token::ROR:
1556 __ ror_cl(ToRegister(left));
1557 if (instr->can_deopt()) {
1558 __ test(ToRegister(left), Immediate(0x80000000));
1559 DeoptimizeIf(not_zero, instr->environment());
1560 }
1561 break;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001562 case Token::SAR:
1563 __ sar_cl(ToRegister(left));
1564 break;
1565 case Token::SHR:
1566 __ shr_cl(ToRegister(left));
1567 if (instr->can_deopt()) {
1568 __ test(ToRegister(left), Immediate(0x80000000));
1569 DeoptimizeIf(not_zero, instr->environment());
1570 }
1571 break;
1572 case Token::SHL:
1573 __ shl_cl(ToRegister(left));
1574 break;
1575 default:
1576 UNREACHABLE();
1577 break;
1578 }
1579 } else {
1580 int value = ToInteger32(LConstantOperand::cast(right));
1581 uint8_t shift_count = static_cast<uint8_t>(value & 0x1F);
1582 switch (instr->op()) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00001583 case Token::ROR:
1584 if (shift_count == 0 && instr->can_deopt()) {
1585 __ test(ToRegister(left), Immediate(0x80000000));
1586 DeoptimizeIf(not_zero, instr->environment());
1587 } else {
1588 __ ror(ToRegister(left), shift_count);
1589 }
1590 break;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001591 case Token::SAR:
1592 if (shift_count != 0) {
1593 __ sar(ToRegister(left), shift_count);
1594 }
1595 break;
1596 case Token::SHR:
1597 if (shift_count == 0 && instr->can_deopt()) {
1598 __ test(ToRegister(left), Immediate(0x80000000));
1599 DeoptimizeIf(not_zero, instr->environment());
1600 } else {
1601 __ shr(ToRegister(left), shift_count);
1602 }
1603 break;
1604 case Token::SHL:
1605 if (shift_count != 0) {
1606 __ shl(ToRegister(left), shift_count);
1607 }
1608 break;
1609 default:
1610 UNREACHABLE();
1611 break;
1612 }
1613 }
1614}
1615
1616
1617void LCodeGen::DoSubI(LSubI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001618 LOperand* left = instr->left();
1619 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001620 ASSERT(left->Equals(instr->result()));
1621
1622 if (right->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00001623 __ sub(ToOperand(left), ToInteger32Immediate(right));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001624 } else {
1625 __ sub(ToRegister(left), ToOperand(right));
1626 }
1627 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1628 DeoptimizeIf(overflow, instr->environment());
1629 }
1630}
1631
1632
1633void LCodeGen::DoConstantI(LConstantI* instr) {
1634 ASSERT(instr->result()->IsRegister());
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001635 __ Set(ToRegister(instr->result()), Immediate(instr->value()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001636}
1637
1638
1639void LCodeGen::DoConstantD(LConstantD* instr) {
1640 ASSERT(instr->result()->IsDoubleRegister());
1641 XMMRegister res = ToDoubleRegister(instr->result());
1642 double v = instr->value();
1643 // Use xor to produce +0.0 in a fast and compact way, but avoid to
1644 // do so if the constant is -0.0.
1645 if (BitCast<uint64_t, double>(v) == 0) {
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00001646 __ xorps(res, res);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001647 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001648 Register temp = ToRegister(instr->temp());
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001649 uint64_t int_val = BitCast<uint64_t, double>(v);
1650 int32_t lower = static_cast<int32_t>(int_val);
1651 int32_t upper = static_cast<int32_t>(int_val >> (kBitsPerInt));
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00001652 if (CpuFeatures::IsSupported(SSE4_1)) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001653 CpuFeatures::Scope scope1(SSE2);
1654 CpuFeatures::Scope scope2(SSE4_1);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001655 if (lower != 0) {
1656 __ Set(temp, Immediate(lower));
1657 __ movd(res, Operand(temp));
1658 __ Set(temp, Immediate(upper));
1659 __ pinsrd(res, Operand(temp), 1);
1660 } else {
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00001661 __ xorps(res, res);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001662 __ Set(temp, Immediate(upper));
1663 __ pinsrd(res, Operand(temp), 1);
1664 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001665 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001666 CpuFeatures::Scope scope(SSE2);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001667 __ Set(temp, Immediate(upper));
1668 __ movd(res, Operand(temp));
1669 __ psllq(res, 32);
1670 if (lower != 0) {
1671 __ Set(temp, Immediate(lower));
1672 __ movd(xmm0, Operand(temp));
1673 __ por(res, xmm0);
1674 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001675 }
1676 }
1677}
1678
1679
1680void LCodeGen::DoConstantT(LConstantT* instr) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00001681 Register reg = ToRegister(instr->result());
1682 Handle<Object> handle = instr->value();
1683 if (handle->IsHeapObject()) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00001684 __ LoadHeapObject(reg, Handle<HeapObject>::cast(handle));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00001685 } else {
1686 __ Set(reg, Immediate(handle));
1687 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001688}
1689
1690
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001691void LCodeGen::DoJSArrayLength(LJSArrayLength* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001692 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001693 Register array = ToRegister(instr->value());
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001694 __ mov(result, FieldOperand(array, JSArray::kLengthOffset));
1695}
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001696
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001697
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00001698void LCodeGen::DoFixedArrayBaseLength(
1699 LFixedArrayBaseLength* instr) {
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001700 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001701 Register array = ToRegister(instr->value());
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00001702 __ mov(result, FieldOperand(array, FixedArrayBase::kLengthOffset));
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00001703}
1704
1705
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00001706void LCodeGen::DoMapEnumLength(LMapEnumLength* instr) {
1707 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001708 Register map = ToRegister(instr->value());
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00001709 __ EnumLength(result, map);
1710}
1711
1712
whesse@chromium.org7b260152011-06-20 15:33:18 +00001713void LCodeGen::DoElementsKind(LElementsKind* instr) {
1714 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001715 Register input = ToRegister(instr->value());
whesse@chromium.org7b260152011-06-20 15:33:18 +00001716
1717 // Load map into |result|.
1718 __ mov(result, FieldOperand(input, HeapObject::kMapOffset));
1719 // Load the map's "bit field 2" into |result|. We only need the first byte,
1720 // but the following masking takes care of that anyway.
1721 __ mov(result, FieldOperand(result, Map::kBitField2Offset));
1722 // Retrieve elements_kind from bit field 2.
1723 __ and_(result, Map::kElementsKindMask);
1724 __ shr(result, Map::kElementsKindShift);
1725}
1726
1727
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001728void LCodeGen::DoValueOf(LValueOf* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001729 Register input = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001730 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001731 Register map = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001732 ASSERT(input.is(result));
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001733
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001734 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001735 // If the object is a smi return the object.
whesse@chromium.org7b260152011-06-20 15:33:18 +00001736 __ JumpIfSmi(input, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001737
1738 // If the object is not a value type, return the object.
1739 __ CmpObjectType(input, JS_VALUE_TYPE, map);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001740 __ j(not_equal, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001741 __ mov(result, FieldOperand(input, JSValue::kValueOffset));
1742
1743 __ bind(&done);
1744}
1745
1746
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001747void LCodeGen::DoDateField(LDateField* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001748 Register object = ToRegister(instr->date());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001749 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001750 Register scratch = ToRegister(instr->temp());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001751 Smi* index = instr->index();
1752 Label runtime, done;
1753 ASSERT(object.is(result));
1754 ASSERT(object.is(eax));
1755
mstarzinger@chromium.orgde886792012-09-11 13:22:37 +00001756 __ test(object, Immediate(kSmiTagMask));
1757 DeoptimizeIf(zero, instr->environment());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001758 __ CmpObjectType(object, JS_DATE_TYPE, scratch);
mstarzinger@chromium.orgde886792012-09-11 13:22:37 +00001759 DeoptimizeIf(not_equal, instr->environment());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001760
1761 if (index->value() == 0) {
1762 __ mov(result, FieldOperand(object, JSDate::kValueOffset));
1763 } else {
1764 if (index->value() < JSDate::kFirstUncachedField) {
1765 ExternalReference stamp = ExternalReference::date_cache_stamp(isolate());
1766 __ mov(scratch, Operand::StaticVariable(stamp));
1767 __ cmp(scratch, FieldOperand(object, JSDate::kCacheStampOffset));
1768 __ j(not_equal, &runtime, Label::kNear);
1769 __ mov(result, FieldOperand(object, JSDate::kValueOffset +
1770 kPointerSize * index->value()));
1771 __ jmp(&done);
1772 }
1773 __ bind(&runtime);
1774 __ PrepareCallCFunction(2, scratch);
1775 __ mov(Operand(esp, 0), object);
1776 __ mov(Operand(esp, 1 * kPointerSize), Immediate(index));
1777 __ CallCFunction(ExternalReference::get_date_field_function(isolate()), 2);
1778 __ bind(&done);
1779 }
1780}
1781
1782
mstarzinger@chromium.org32280cf2012-12-06 17:32:37 +00001783void LCodeGen::DoSeqStringSetChar(LSeqStringSetChar* instr) {
1784 SeqStringSetCharGenerator::Generate(masm(),
1785 instr->encoding(),
1786 ToRegister(instr->string()),
1787 ToRegister(instr->index()),
1788 ToRegister(instr->value()));
1789}
1790
1791
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001792void LCodeGen::DoBitNotI(LBitNotI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001793 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001794 ASSERT(input->Equals(instr->result()));
1795 __ not_(ToRegister(input));
1796}
1797
1798
1799void LCodeGen::DoThrow(LThrow* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001800 __ push(ToOperand(instr->value()));
1801 ASSERT(ToRegister(instr->context()).is(esi));
1802 CallRuntime(Runtime::kThrow, 1, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001803
1804 if (FLAG_debug_code) {
1805 Comment("Unreachable code.");
1806 __ int3();
1807 }
1808}
1809
1810
1811void LCodeGen::DoAddI(LAddI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001812 LOperand* left = instr->left();
1813 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001814 ASSERT(left->Equals(instr->result()));
1815
1816 if (right->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00001817 __ add(ToOperand(left), ToInteger32Immediate(right));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001818 } else {
1819 __ add(ToRegister(left), ToOperand(right));
1820 }
1821
1822 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1823 DeoptimizeIf(overflow, instr->environment());
1824 }
1825}
1826
1827
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +00001828void LCodeGen::DoMathMinMax(LMathMinMax* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001829 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001830 LOperand* left = instr->left();
1831 LOperand* right = instr->right();
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +00001832 ASSERT(left->Equals(instr->result()));
1833 HMathMinMax::Operation operation = instr->hydrogen()->operation();
1834 if (instr->hydrogen()->representation().IsInteger32()) {
1835 Label return_left;
1836 Condition condition = (operation == HMathMinMax::kMathMin)
1837 ? less_equal
1838 : greater_equal;
1839 if (right->IsConstantOperand()) {
1840 Operand left_op = ToOperand(left);
1841 Immediate right_imm = ToInteger32Immediate(right);
1842 __ cmp(left_op, right_imm);
1843 __ j(condition, &return_left, Label::kNear);
1844 __ mov(left_op, right_imm);
1845 } else {
1846 Register left_reg = ToRegister(left);
1847 Operand right_op = ToOperand(right);
1848 __ cmp(left_reg, right_op);
1849 __ j(condition, &return_left, Label::kNear);
1850 __ mov(left_reg, right_op);
1851 }
1852 __ bind(&return_left);
1853 } else {
1854 ASSERT(instr->hydrogen()->representation().IsDouble());
1855 Label check_nan_left, check_zero, return_left, return_right;
1856 Condition condition = (operation == HMathMinMax::kMathMin) ? below : above;
1857 XMMRegister left_reg = ToDoubleRegister(left);
1858 XMMRegister right_reg = ToDoubleRegister(right);
1859 __ ucomisd(left_reg, right_reg);
1860 __ j(parity_even, &check_nan_left, Label::kNear); // At least one NaN.
1861 __ j(equal, &check_zero, Label::kNear); // left == right.
1862 __ j(condition, &return_left, Label::kNear);
1863 __ jmp(&return_right, Label::kNear);
1864
1865 __ bind(&check_zero);
1866 XMMRegister xmm_scratch = xmm0;
1867 __ xorps(xmm_scratch, xmm_scratch);
1868 __ ucomisd(left_reg, xmm_scratch);
1869 __ j(not_equal, &return_left, Label::kNear); // left == right != 0.
1870 // At this point, both left and right are either 0 or -0.
1871 if (operation == HMathMinMax::kMathMin) {
1872 __ orpd(left_reg, right_reg);
1873 } else {
1874 // Since we operate on +0 and/or -0, addsd and andsd have the same effect.
1875 __ addsd(left_reg, right_reg);
1876 }
1877 __ jmp(&return_left, Label::kNear);
1878
1879 __ bind(&check_nan_left);
1880 __ ucomisd(left_reg, left_reg); // NaN check.
1881 __ j(parity_even, &return_left, Label::kNear); // left == NaN.
1882 __ bind(&return_right);
1883 __ movsd(left_reg, right_reg);
1884
1885 __ bind(&return_left);
1886 }
1887}
1888
1889
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001890void LCodeGen::DoArithmeticD(LArithmeticD* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001891 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001892 XMMRegister left = ToDoubleRegister(instr->left());
1893 XMMRegister right = ToDoubleRegister(instr->right());
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001894 XMMRegister result = ToDoubleRegister(instr->result());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001895 // Modulo uses a fixed result register.
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001896 ASSERT(instr->op() == Token::MOD || left.is(result));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001897 switch (instr->op()) {
1898 case Token::ADD:
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001899 __ addsd(left, right);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001900 break;
1901 case Token::SUB:
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001902 __ subsd(left, right);
1903 break;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001904 case Token::MUL:
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001905 __ mulsd(left, right);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001906 break;
1907 case Token::DIV:
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001908 __ divsd(left, right);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001909 break;
1910 case Token::MOD: {
1911 // Pass two doubles as arguments on the stack.
1912 __ PrepareCallCFunction(4, eax);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001913 __ movdbl(Operand(esp, 0 * kDoubleSize), left);
1914 __ movdbl(Operand(esp, 1 * kDoubleSize), right);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00001915 __ CallCFunction(
1916 ExternalReference::double_fp_operation(Token::MOD, isolate()),
1917 4);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001918
1919 // Return value is in st(0) on ia32.
1920 // Store it into the (fixed) result register.
1921 __ sub(Operand(esp), Immediate(kDoubleSize));
1922 __ fstp_d(Operand(esp, 0));
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001923 __ movdbl(result, Operand(esp, 0));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001924 __ add(Operand(esp), Immediate(kDoubleSize));
1925 break;
1926 }
1927 default:
1928 UNREACHABLE();
1929 break;
1930 }
1931}
1932
1933
1934void LCodeGen::DoArithmeticT(LArithmeticT* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001935 ASSERT(ToRegister(instr->context()).is(esi));
1936 ASSERT(ToRegister(instr->left()).is(edx));
1937 ASSERT(ToRegister(instr->right()).is(eax));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001938 ASSERT(ToRegister(instr->result()).is(eax));
1939
danno@chromium.org40cb8782011-05-25 07:58:50 +00001940 BinaryOpStub stub(instr->op(), NO_OVERWRITE);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001941 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
whesse@chromium.org030d38e2011-07-13 13:23:34 +00001942 __ nop(); // Signals no inlined code.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001943}
1944
1945
1946int LCodeGen::GetNextEmittedBlock(int block) {
1947 for (int i = block + 1; i < graph()->blocks()->length(); ++i) {
1948 LLabel* label = chunk_->GetLabel(i);
1949 if (!label->HasReplacement()) return i;
1950 }
1951 return -1;
1952}
1953
1954
1955void LCodeGen::EmitBranch(int left_block, int right_block, Condition cc) {
1956 int next_block = GetNextEmittedBlock(current_block_);
1957 right_block = chunk_->LookupDestination(right_block);
1958 left_block = chunk_->LookupDestination(left_block);
1959
1960 if (right_block == left_block) {
1961 EmitGoto(left_block);
1962 } else if (left_block == next_block) {
1963 __ j(NegateCondition(cc), chunk_->GetAssemblyLabel(right_block));
1964 } else if (right_block == next_block) {
1965 __ j(cc, chunk_->GetAssemblyLabel(left_block));
1966 } else {
1967 __ j(cc, chunk_->GetAssemblyLabel(left_block));
1968 __ jmp(chunk_->GetAssemblyLabel(right_block));
1969 }
1970}
1971
1972
1973void LCodeGen::DoBranch(LBranch* instr) {
1974 int true_block = chunk_->LookupDestination(instr->true_block_id());
1975 int false_block = chunk_->LookupDestination(instr->false_block_id());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001976 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001977
ricow@chromium.org4f693d62011-07-04 14:01:31 +00001978 Representation r = instr->hydrogen()->value()->representation();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001979 if (r.IsInteger32()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001980 Register reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001981 __ test(reg, Operand(reg));
1982 EmitBranch(true_block, false_block, not_zero);
1983 } else if (r.IsDouble()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001984 XMMRegister reg = ToDoubleRegister(instr->value());
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00001985 __ xorps(xmm0, xmm0);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001986 __ ucomisd(reg, xmm0);
1987 EmitBranch(true_block, false_block, not_equal);
1988 } else {
1989 ASSERT(r.IsTagged());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001990 Register reg = ToRegister(instr->value());
lrn@chromium.orgd4e9e222011-08-03 12:01:58 +00001991 HType type = instr->hydrogen()->value()->type();
1992 if (type.IsBoolean()) {
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00001993 __ cmp(reg, factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001994 EmitBranch(true_block, false_block, equal);
lrn@chromium.orgd4e9e222011-08-03 12:01:58 +00001995 } else if (type.IsSmi()) {
1996 __ test(reg, Operand(reg));
1997 EmitBranch(true_block, false_block, not_equal);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001998 } else {
1999 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2000 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2001
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002002 ToBooleanStub::Types expected = instr->hydrogen()->expected_input_types();
2003 // Avoid deopts in the case where we've never executed this path before.
2004 if (expected.IsEmpty()) expected = ToBooleanStub::all_types();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002005
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002006 if (expected.Contains(ToBooleanStub::UNDEFINED)) {
2007 // undefined -> false.
2008 __ cmp(reg, factory()->undefined_value());
2009 __ j(equal, false_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002010 }
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002011 if (expected.Contains(ToBooleanStub::BOOLEAN)) {
2012 // true -> true.
2013 __ cmp(reg, factory()->true_value());
2014 __ j(equal, true_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002015 // false -> false.
2016 __ cmp(reg, factory()->false_value());
2017 __ j(equal, false_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002018 }
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002019 if (expected.Contains(ToBooleanStub::NULL_TYPE)) {
2020 // 'null' -> false.
2021 __ cmp(reg, factory()->null_value());
2022 __ j(equal, false_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002023 }
2024
2025 if (expected.Contains(ToBooleanStub::SMI)) {
2026 // Smis: 0 -> false, all other -> true.
2027 __ test(reg, Operand(reg));
2028 __ j(equal, false_label);
2029 __ JumpIfSmi(reg, true_label);
2030 } else if (expected.NeedsMap()) {
2031 // If we need a map later and have a Smi -> deopt.
2032 __ test(reg, Immediate(kSmiTagMask));
2033 DeoptimizeIf(zero, instr->environment());
2034 }
2035
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00002036 Register map = no_reg; // Keep the compiler happy.
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002037 if (expected.NeedsMap()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002038 map = ToRegister(instr->temp());
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002039 ASSERT(!map.is(reg));
2040 __ mov(map, FieldOperand(reg, HeapObject::kMapOffset));
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00002041
2042 if (expected.CanBeUndetectable()) {
2043 // Undetectable -> false.
2044 __ test_b(FieldOperand(map, Map::kBitFieldOffset),
2045 1 << Map::kIsUndetectable);
2046 __ j(not_zero, false_label);
2047 }
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002048 }
2049
2050 if (expected.Contains(ToBooleanStub::SPEC_OBJECT)) {
2051 // spec object -> true.
2052 __ CmpInstanceType(map, FIRST_SPEC_OBJECT_TYPE);
2053 __ j(above_equal, true_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002054 }
2055
2056 if (expected.Contains(ToBooleanStub::STRING)) {
2057 // String value -> false iff empty.
2058 Label not_string;
2059 __ CmpInstanceType(map, FIRST_NONSTRING_TYPE);
2060 __ j(above_equal, &not_string, Label::kNear);
2061 __ cmp(FieldOperand(reg, String::kLengthOffset), Immediate(0));
2062 __ j(not_zero, true_label);
2063 __ jmp(false_label);
2064 __ bind(&not_string);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002065 }
2066
2067 if (expected.Contains(ToBooleanStub::HEAP_NUMBER)) {
2068 // heap number -> false iff +0, -0, or NaN.
2069 Label not_heap_number;
2070 __ cmp(FieldOperand(reg, HeapObject::kMapOffset),
2071 factory()->heap_number_map());
2072 __ j(not_equal, &not_heap_number, Label::kNear);
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +00002073 __ xorps(xmm0, xmm0);
2074 __ ucomisd(xmm0, FieldOperand(reg, HeapNumber::kValueOffset));
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002075 __ j(zero, false_label);
2076 __ jmp(true_label);
2077 __ bind(&not_heap_number);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002078 }
2079
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00002080 // We've seen something for the first time -> deopt.
2081 DeoptimizeIf(no_condition, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002082 }
2083 }
2084}
2085
2086
ager@chromium.org04921a82011-06-27 13:21:41 +00002087void LCodeGen::EmitGoto(int block) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002088 block = chunk_->LookupDestination(block);
2089 int next_block = GetNextEmittedBlock(current_block_);
2090 if (block != next_block) {
ager@chromium.org04921a82011-06-27 13:21:41 +00002091 __ jmp(chunk_->GetAssemblyLabel(block));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002092 }
2093}
2094
2095
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002096void LCodeGen::DoGoto(LGoto* instr) {
ager@chromium.org04921a82011-06-27 13:21:41 +00002097 EmitGoto(instr->block_id());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002098}
2099
2100
2101Condition LCodeGen::TokenToCondition(Token::Value op, bool is_unsigned) {
2102 Condition cond = no_condition;
2103 switch (op) {
2104 case Token::EQ:
2105 case Token::EQ_STRICT:
2106 cond = equal;
2107 break;
2108 case Token::LT:
2109 cond = is_unsigned ? below : less;
2110 break;
2111 case Token::GT:
2112 cond = is_unsigned ? above : greater;
2113 break;
2114 case Token::LTE:
2115 cond = is_unsigned ? below_equal : less_equal;
2116 break;
2117 case Token::GTE:
2118 cond = is_unsigned ? above_equal : greater_equal;
2119 break;
2120 case Token::IN:
2121 case Token::INSTANCEOF:
2122 default:
2123 UNREACHABLE();
2124 }
2125 return cond;
2126}
2127
2128
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002129void LCodeGen::DoCmpIDAndBranch(LCmpIDAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002130 LOperand* left = instr->left();
2131 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002132 int false_block = chunk_->LookupDestination(instr->false_block_id());
2133 int true_block = chunk_->LookupDestination(instr->true_block_id());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002134 Condition cc = TokenToCondition(instr->op(), instr->is_double());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002135 CpuFeatures::Scope scope(SSE2);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002136
2137 if (left->IsConstantOperand() && right->IsConstantOperand()) {
2138 // We can statically evaluate the comparison.
2139 double left_val = ToDouble(LConstantOperand::cast(left));
2140 double right_val = ToDouble(LConstantOperand::cast(right));
2141 int next_block =
2142 EvalComparison(instr->op(), left_val, right_val) ? true_block
2143 : false_block;
2144 EmitGoto(next_block);
2145 } else {
2146 if (instr->is_double()) {
2147 // Don't base result on EFLAGS when a NaN is involved. Instead
2148 // jump to the false block.
2149 __ ucomisd(ToDoubleRegister(left), ToDoubleRegister(right));
2150 __ j(parity_even, chunk_->GetAssemblyLabel(false_block));
2151 } else {
2152 if (right->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00002153 __ cmp(ToRegister(left), ToInteger32Immediate(right));
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002154 } else if (left->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00002155 __ cmp(ToOperand(right), ToInteger32Immediate(left));
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002156 // We transposed the operands. Reverse the condition.
2157 cc = ReverseCondition(cc);
2158 } else {
2159 __ cmp(ToRegister(left), ToOperand(right));
2160 }
2161 }
2162 EmitBranch(true_block, false_block, cc);
2163 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002164}
2165
2166
lrn@chromium.orgac2828d2011-06-23 06:29:21 +00002167void LCodeGen::DoCmpObjectEqAndBranch(LCmpObjectEqAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002168 Register left = ToRegister(instr->left());
2169 Operand right = ToOperand(instr->right());
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002170 int false_block = chunk_->LookupDestination(instr->false_block_id());
2171 int true_block = chunk_->LookupDestination(instr->true_block_id());
2172
2173 __ cmp(left, Operand(right));
2174 EmitBranch(true_block, false_block, equal);
2175}
2176
2177
whesse@chromium.org7b260152011-06-20 15:33:18 +00002178void LCodeGen::DoCmpConstantEqAndBranch(LCmpConstantEqAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002179 Register left = ToRegister(instr->left());
whesse@chromium.org7b260152011-06-20 15:33:18 +00002180 int true_block = chunk_->LookupDestination(instr->true_block_id());
2181 int false_block = chunk_->LookupDestination(instr->false_block_id());
2182
2183 __ cmp(left, instr->hydrogen()->right());
2184 EmitBranch(true_block, false_block, equal);
2185}
2186
2187
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002188void LCodeGen::DoIsNilAndBranch(LIsNilAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002189 Register reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002190 int false_block = chunk_->LookupDestination(instr->false_block_id());
2191
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002192 // If the expression is known to be untagged or a smi, then it's definitely
2193 // not null, and it can't be a an undetectable object.
2194 if (instr->hydrogen()->representation().IsSpecialization() ||
2195 instr->hydrogen()->type().IsSmi()) {
2196 EmitGoto(false_block);
2197 return;
2198 }
2199
2200 int true_block = chunk_->LookupDestination(instr->true_block_id());
2201 Handle<Object> nil_value = instr->nil() == kNullValue ?
2202 factory()->null_value() :
2203 factory()->undefined_value();
2204 __ cmp(reg, nil_value);
2205 if (instr->kind() == kStrictEquality) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002206 EmitBranch(true_block, false_block, equal);
2207 } else {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002208 Handle<Object> other_nil_value = instr->nil() == kNullValue ?
2209 factory()->undefined_value() :
2210 factory()->null_value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002211 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2212 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2213 __ j(equal, true_label);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002214 __ cmp(reg, other_nil_value);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002215 __ j(equal, true_label);
whesse@chromium.org7b260152011-06-20 15:33:18 +00002216 __ JumpIfSmi(reg, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002217 // Check for undetectable objects by looking in the bit field in
2218 // the map. The object has already been smi checked.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002219 Register scratch = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002220 __ mov(scratch, FieldOperand(reg, HeapObject::kMapOffset));
2221 __ movzx_b(scratch, FieldOperand(scratch, Map::kBitFieldOffset));
2222 __ test(scratch, Immediate(1 << Map::kIsUndetectable));
2223 EmitBranch(true_block, false_block, not_zero);
2224 }
2225}
2226
2227
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002228Condition LCodeGen::EmitIsObject(Register input,
2229 Register temp1,
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002230 Label* is_not_object,
2231 Label* is_object) {
whesse@chromium.org7b260152011-06-20 15:33:18 +00002232 __ JumpIfSmi(input, is_not_object);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002233
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002234 __ cmp(input, isolate()->factory()->null_value());
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002235 __ j(equal, is_object);
2236
2237 __ mov(temp1, FieldOperand(input, HeapObject::kMapOffset));
2238 // Undetectable objects behave like undefined.
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002239 __ test_b(FieldOperand(temp1, Map::kBitFieldOffset),
2240 1 << Map::kIsUndetectable);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002241 __ j(not_zero, is_not_object);
2242
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002243 __ movzx_b(temp1, FieldOperand(temp1, Map::kInstanceTypeOffset));
2244 __ cmp(temp1, FIRST_NONCALLABLE_SPEC_OBJECT_TYPE);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002245 __ j(below, is_not_object);
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002246 __ cmp(temp1, LAST_NONCALLABLE_SPEC_OBJECT_TYPE);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002247 return below_equal;
2248}
2249
2250
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002251void LCodeGen::DoIsObjectAndBranch(LIsObjectAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002252 Register reg = ToRegister(instr->value());
2253 Register temp = ToRegister(instr->temp());
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002254
2255 int true_block = chunk_->LookupDestination(instr->true_block_id());
2256 int false_block = chunk_->LookupDestination(instr->false_block_id());
2257 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2258 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2259
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002260 Condition true_cond = EmitIsObject(reg, temp, false_label, true_label);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002261
2262 EmitBranch(true_block, false_block, true_cond);
2263}
2264
2265
erikcorry0ad885c2011-11-21 13:51:57 +00002266Condition LCodeGen::EmitIsString(Register input,
2267 Register temp1,
2268 Label* is_not_string) {
2269 __ JumpIfSmi(input, is_not_string);
2270
2271 Condition cond = masm_->IsObjectStringType(input, temp1, temp1);
2272
2273 return cond;
2274}
2275
2276
2277void LCodeGen::DoIsStringAndBranch(LIsStringAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002278 Register reg = ToRegister(instr->value());
2279 Register temp = ToRegister(instr->temp());
erikcorry0ad885c2011-11-21 13:51:57 +00002280
2281 int true_block = chunk_->LookupDestination(instr->true_block_id());
2282 int false_block = chunk_->LookupDestination(instr->false_block_id());
2283 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2284
2285 Condition true_cond = EmitIsString(reg, temp, false_label);
2286
2287 EmitBranch(true_block, false_block, true_cond);
2288}
2289
2290
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002291void LCodeGen::DoIsSmiAndBranch(LIsSmiAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002292 Operand input = ToOperand(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002293
2294 int true_block = chunk_->LookupDestination(instr->true_block_id());
2295 int false_block = chunk_->LookupDestination(instr->false_block_id());
2296
2297 __ test(input, Immediate(kSmiTagMask));
2298 EmitBranch(true_block, false_block, zero);
2299}
2300
2301
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002302void LCodeGen::DoIsUndetectableAndBranch(LIsUndetectableAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002303 Register input = ToRegister(instr->value());
2304 Register temp = ToRegister(instr->temp());
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002305
2306 int true_block = chunk_->LookupDestination(instr->true_block_id());
2307 int false_block = chunk_->LookupDestination(instr->false_block_id());
2308
2309 STATIC_ASSERT(kSmiTag == 0);
whesse@chromium.org7b260152011-06-20 15:33:18 +00002310 __ JumpIfSmi(input, chunk_->GetAssemblyLabel(false_block));
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002311 __ mov(temp, FieldOperand(input, HeapObject::kMapOffset));
2312 __ test_b(FieldOperand(temp, Map::kBitFieldOffset),
2313 1 << Map::kIsUndetectable);
2314 EmitBranch(true_block, false_block, not_zero);
2315}
2316
2317
erikcorry0ad885c2011-11-21 13:51:57 +00002318static Condition ComputeCompareCondition(Token::Value op) {
2319 switch (op) {
2320 case Token::EQ_STRICT:
2321 case Token::EQ:
2322 return equal;
2323 case Token::LT:
2324 return less;
2325 case Token::GT:
2326 return greater;
2327 case Token::LTE:
2328 return less_equal;
2329 case Token::GTE:
2330 return greater_equal;
2331 default:
2332 UNREACHABLE();
2333 return no_condition;
2334 }
2335}
2336
2337
2338void LCodeGen::DoStringCompareAndBranch(LStringCompareAndBranch* instr) {
2339 Token::Value op = instr->op();
2340 int true_block = chunk_->LookupDestination(instr->true_block_id());
2341 int false_block = chunk_->LookupDestination(instr->false_block_id());
2342
2343 Handle<Code> ic = CompareIC::GetUninitialized(op);
2344 CallCode(ic, RelocInfo::CODE_TARGET, instr);
2345
2346 Condition condition = ComputeCompareCondition(op);
2347 __ test(eax, Operand(eax));
2348
2349 EmitBranch(true_block, false_block, condition);
2350}
2351
2352
ricow@chromium.org4f693d62011-07-04 14:01:31 +00002353static InstanceType TestType(HHasInstanceTypeAndBranch* instr) {
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00002354 InstanceType from = instr->from();
2355 InstanceType to = instr->to();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002356 if (from == FIRST_TYPE) return to;
2357 ASSERT(from == to || to == LAST_TYPE);
2358 return from;
2359}
2360
2361
ricow@chromium.org4f693d62011-07-04 14:01:31 +00002362static Condition BranchCondition(HHasInstanceTypeAndBranch* instr) {
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00002363 InstanceType from = instr->from();
2364 InstanceType to = instr->to();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002365 if (from == to) return equal;
2366 if (to == LAST_TYPE) return above_equal;
2367 if (from == FIRST_TYPE) return below_equal;
2368 UNREACHABLE();
2369 return equal;
2370}
2371
2372
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002373void LCodeGen::DoHasInstanceTypeAndBranch(LHasInstanceTypeAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002374 Register input = ToRegister(instr->value());
2375 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002376
2377 int true_block = chunk_->LookupDestination(instr->true_block_id());
2378 int false_block = chunk_->LookupDestination(instr->false_block_id());
2379
2380 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2381
whesse@chromium.org7b260152011-06-20 15:33:18 +00002382 __ JumpIfSmi(input, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002383
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00002384 __ CmpObjectType(input, TestType(instr->hydrogen()), temp);
2385 EmitBranch(true_block, false_block, BranchCondition(instr->hydrogen()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002386}
2387
2388
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002389void LCodeGen::DoGetCachedArrayIndex(LGetCachedArrayIndex* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002390 Register input = ToRegister(instr->value());
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002391 Register result = ToRegister(instr->result());
2392
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00002393 __ AssertString(input);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002394
2395 __ mov(result, FieldOperand(input, String::kHashFieldOffset));
2396 __ IndexFromHash(result, result);
2397}
2398
2399
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002400void LCodeGen::DoHasCachedArrayIndexAndBranch(
2401 LHasCachedArrayIndexAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002402 Register input = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002403
2404 int true_block = chunk_->LookupDestination(instr->true_block_id());
2405 int false_block = chunk_->LookupDestination(instr->false_block_id());
2406
2407 __ test(FieldOperand(input, String::kHashFieldOffset),
2408 Immediate(String::kContainsCachedArrayIndexMask));
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002409 EmitBranch(true_block, false_block, equal);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002410}
2411
2412
2413// Branches to a label or falls through with the answer in the z flag. Trashes
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002414// the temp registers, but not the input.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002415void LCodeGen::EmitClassOfTest(Label* is_true,
2416 Label* is_false,
2417 Handle<String>class_name,
2418 Register input,
2419 Register temp,
2420 Register temp2) {
2421 ASSERT(!input.is(temp));
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002422 ASSERT(!input.is(temp2));
2423 ASSERT(!temp.is(temp2));
whesse@chromium.org7b260152011-06-20 15:33:18 +00002424 __ JumpIfSmi(input, is_false);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002425
jkummerow@chromium.org59297c72013-01-09 16:32:23 +00002426 if (class_name->IsOneByteEqualTo(STATIC_ASCII_VECTOR("Function"))) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002427 // Assuming the following assertions, we can use the same compares to test
2428 // for both being a function type and being in the object type range.
2429 STATIC_ASSERT(NUM_OF_CALLABLE_SPEC_OBJECT_TYPES == 2);
2430 STATIC_ASSERT(FIRST_NONCALLABLE_SPEC_OBJECT_TYPE ==
2431 FIRST_SPEC_OBJECT_TYPE + 1);
2432 STATIC_ASSERT(LAST_NONCALLABLE_SPEC_OBJECT_TYPE ==
2433 LAST_SPEC_OBJECT_TYPE - 1);
2434 STATIC_ASSERT(LAST_SPEC_OBJECT_TYPE == LAST_TYPE);
2435 __ CmpObjectType(input, FIRST_SPEC_OBJECT_TYPE, temp);
2436 __ j(below, is_false);
2437 __ j(equal, is_true);
2438 __ CmpInstanceType(temp, LAST_SPEC_OBJECT_TYPE);
2439 __ j(equal, is_true);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002440 } else {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002441 // Faster code path to avoid two compares: subtract lower bound from the
2442 // actual type and do a signed compare with the width of the type range.
2443 __ mov(temp, FieldOperand(input, HeapObject::kMapOffset));
yangguo@chromium.org56454712012-02-16 15:33:53 +00002444 __ movzx_b(temp2, FieldOperand(temp, Map::kInstanceTypeOffset));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002445 __ sub(Operand(temp2), Immediate(FIRST_NONCALLABLE_SPEC_OBJECT_TYPE));
yangguo@chromium.org56454712012-02-16 15:33:53 +00002446 __ cmp(Operand(temp2), Immediate(LAST_NONCALLABLE_SPEC_OBJECT_TYPE -
2447 FIRST_NONCALLABLE_SPEC_OBJECT_TYPE));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002448 __ j(above, is_false);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002449 }
2450
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002451 // Now we are in the FIRST-LAST_NONCALLABLE_SPEC_OBJECT_TYPE range.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002452 // Check if the constructor in the map is a function.
2453 __ mov(temp, FieldOperand(temp, Map::kConstructorOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002454 // Objects with a non-function constructor have class 'Object'.
2455 __ CmpObjectType(temp, JS_FUNCTION_TYPE, temp2);
jkummerow@chromium.org59297c72013-01-09 16:32:23 +00002456 if (class_name->IsOneByteEqualTo(STATIC_ASCII_VECTOR("Object"))) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002457 __ j(not_equal, is_true);
2458 } else {
2459 __ j(not_equal, is_false);
2460 }
2461
2462 // temp now contains the constructor function. Grab the
2463 // instance class name from there.
2464 __ mov(temp, FieldOperand(temp, JSFunction::kSharedFunctionInfoOffset));
2465 __ mov(temp, FieldOperand(temp,
2466 SharedFunctionInfo::kInstanceClassNameOffset));
2467 // The class name we are testing against is a symbol because it's a literal.
2468 // The name in the constructor is a symbol because of the way the context is
2469 // booted. This routine isn't expected to work for random API-created
2470 // classes and it doesn't have to because you can't access it with natives
2471 // syntax. Since both sides are symbols it is sufficient to use an identity
2472 // comparison.
2473 __ cmp(temp, class_name);
2474 // End with the answer in the z flag.
2475}
2476
2477
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002478void LCodeGen::DoClassOfTestAndBranch(LClassOfTestAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002479 Register input = ToRegister(instr->value());
2480 Register temp = ToRegister(instr->temp());
2481 Register temp2 = ToRegister(instr->temp2());
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002482
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002483 Handle<String> class_name = instr->hydrogen()->class_name();
2484
2485 int true_block = chunk_->LookupDestination(instr->true_block_id());
2486 int false_block = chunk_->LookupDestination(instr->false_block_id());
2487
2488 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2489 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2490
2491 EmitClassOfTest(true_label, false_label, class_name, input, temp, temp2);
2492
2493 EmitBranch(true_block, false_block, equal);
2494}
2495
2496
2497void LCodeGen::DoCmpMapAndBranch(LCmpMapAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002498 Register reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002499 int true_block = instr->true_block_id();
2500 int false_block = instr->false_block_id();
2501
2502 __ cmp(FieldOperand(reg, HeapObject::kMapOffset), instr->map());
2503 EmitBranch(true_block, false_block, equal);
2504}
2505
2506
2507void LCodeGen::DoInstanceOf(LInstanceOf* instr) {
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002508 // Object and function are in fixed registers defined by the stub.
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002509 ASSERT(ToRegister(instr->context()).is(esi));
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002510 InstanceofStub stub(InstanceofStub::kArgsInRegisters);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002511 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002512
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002513 Label true_value, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002514 __ test(eax, Operand(eax));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002515 __ j(zero, &true_value, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002516 __ mov(ToRegister(instr->result()), factory()->false_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002517 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002518 __ bind(&true_value);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002519 __ mov(ToRegister(instr->result()), factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002520 __ bind(&done);
2521}
2522
2523
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002524void LCodeGen::DoInstanceOfKnownGlobal(LInstanceOfKnownGlobal* instr) {
2525 class DeferredInstanceOfKnownGlobal: public LDeferredCode {
2526 public:
2527 DeferredInstanceOfKnownGlobal(LCodeGen* codegen,
2528 LInstanceOfKnownGlobal* instr)
2529 : LDeferredCode(codegen), instr_(instr) { }
2530 virtual void Generate() {
ricow@chromium.org27bf2882011-11-17 08:34:43 +00002531 codegen()->DoDeferredInstanceOfKnownGlobal(instr_, &map_check_);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002532 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002533 virtual LInstruction* instr() { return instr_; }
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002534 Label* map_check() { return &map_check_; }
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002535 private:
2536 LInstanceOfKnownGlobal* instr_;
2537 Label map_check_;
2538 };
2539
2540 DeferredInstanceOfKnownGlobal* deferred;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002541 deferred = new(zone()) DeferredInstanceOfKnownGlobal(this, instr);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002542
2543 Label done, false_result;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002544 Register object = ToRegister(instr->value());
2545 Register temp = ToRegister(instr->temp());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002546
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002547 // A Smi is not an instance of anything.
whesse@chromium.org7b260152011-06-20 15:33:18 +00002548 __ JumpIfSmi(object, &false_result);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002549
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002550 // This is the inlined call site instanceof cache. The two occurences of the
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002551 // hole value will be patched to the last map/result pair generated by the
2552 // instanceof stub.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002553 Label cache_miss;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002554 Register map = ToRegister(instr->temp());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002555 __ mov(map, FieldOperand(object, HeapObject::kMapOffset));
2556 __ bind(deferred->map_check()); // Label for calculating code patching.
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002557 Handle<JSGlobalPropertyCell> cache_cell =
2558 factory()->NewJSGlobalPropertyCell(factory()->the_hole_value());
2559 __ cmp(map, Operand::Cell(cache_cell)); // Patched to cached map.
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002560 __ j(not_equal, &cache_miss, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002561 __ mov(eax, factory()->the_hole_value()); // Patched to either true or false.
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002562 __ jmp(&done);
2563
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002564 // The inlined call site cache did not match. Check for null and string
2565 // before calling the deferred code.
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002566 __ bind(&cache_miss);
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002567 // Null is not an instance of anything.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002568 __ cmp(object, factory()->null_value());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002569 __ j(equal, &false_result);
2570
2571 // String values are not instances of anything.
2572 Condition is_string = masm_->IsObjectStringType(object, temp, temp);
2573 __ j(is_string, &false_result);
2574
2575 // Go to the deferred code.
2576 __ jmp(deferred->entry());
2577
2578 __ bind(&false_result);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002579 __ mov(ToRegister(instr->result()), factory()->false_value());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002580
2581 // Here result has either true or false. Deferred code also produces true or
2582 // false object.
2583 __ bind(deferred->exit());
2584 __ bind(&done);
2585}
2586
2587
ricow@chromium.org27bf2882011-11-17 08:34:43 +00002588void LCodeGen::DoDeferredInstanceOfKnownGlobal(LInstanceOfKnownGlobal* instr,
2589 Label* map_check) {
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002590 PushSafepointRegistersScope scope(this);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002591
2592 InstanceofStub::Flags flags = InstanceofStub::kNoFlags;
2593 flags = static_cast<InstanceofStub::Flags>(
2594 flags | InstanceofStub::kArgsInRegisters);
2595 flags = static_cast<InstanceofStub::Flags>(
2596 flags | InstanceofStub::kCallSiteInlineCheck);
2597 flags = static_cast<InstanceofStub::Flags>(
2598 flags | InstanceofStub::kReturnTrueFalseObject);
2599 InstanceofStub stub(flags);
2600
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002601 // Get the temp register reserved by the instruction. This needs to be a
2602 // register which is pushed last by PushSafepointRegisters as top of the
2603 // stack is used to pass the offset to the location of the map check to
2604 // the stub.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002605 Register temp = ToRegister(instr->temp());
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002606 ASSERT(MacroAssembler::SafepointRegisterStackIndex(temp) == 0);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002607 __ LoadHeapObject(InstanceofStub::right(), instr->function());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002608 static const int kAdditionalDelta = 13;
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002609 int delta = masm_->SizeOfCodeGeneratedSince(map_check) + kAdditionalDelta;
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002610 __ mov(temp, Immediate(delta));
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00002611 __ StoreToSafepointRegisterSlot(temp, temp);
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002612 CallCodeGeneric(stub.GetCode(),
2613 RelocInfo::CODE_TARGET,
2614 instr,
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002615 RECORD_SAFEPOINT_WITH_REGISTERS_AND_NO_ARGUMENTS);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00002616 // Get the deoptimization index of the LLazyBailout-environment that
2617 // corresponds to this instruction.
2618 LEnvironment* env = instr->GetDeferredLazyDeoptimizationEnvironment();
ricow@chromium.org27bf2882011-11-17 08:34:43 +00002619 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
2620
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002621 // Put the result value into the eax slot and restore all registers.
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00002622 __ StoreToSafepointRegisterSlot(eax, eax);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002623}
2624
2625
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002626void LCodeGen::DoCmpT(LCmpT* instr) {
2627 Token::Value op = instr->op();
2628
2629 Handle<Code> ic = CompareIC::GetUninitialized(op);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002630 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002631
2632 Condition condition = ComputeCompareCondition(op);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002633 Label true_value, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002634 __ test(eax, Operand(eax));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002635 __ j(condition, &true_value, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002636 __ mov(ToRegister(instr->result()), factory()->false_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002637 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002638 __ bind(&true_value);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002639 __ mov(ToRegister(instr->result()), factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002640 __ bind(&done);
2641}
2642
2643
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002644void LCodeGen::DoReturn(LReturn* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002645 if (FLAG_trace && info()->IsOptimizing()) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002646 // Preserve the return value on the stack and rely on the runtime call
2647 // to return the value in the same register. We're leaving the code
2648 // managed by the register allocator and tearing down the frame, it's
2649 // safe to write to the context register.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002650 __ push(eax);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002651 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002652 __ CallRuntime(Runtime::kTraceExit, 1);
2653 }
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00002654 if (info()->saves_caller_doubles() && CpuFeatures::IsSupported(SSE2)) {
2655 ASSERT(NeedsEagerFrame());
2656 CpuFeatures::Scope scope(SSE2);
2657 BitVector* doubles = chunk()->allocated_double_registers();
2658 BitVector::Iterator save_iterator(doubles);
2659 int count = 0;
2660 while (!save_iterator.Done()) {
2661 __ movdbl(XMMRegister::FromAllocationIndex(save_iterator.Current()),
2662 MemOperand(esp, count * kDoubleSize));
2663 save_iterator.Advance();
2664 count++;
2665 }
2666 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002667 if (dynamic_frame_alignment_) {
2668 // Fetch the state of the dynamic frame alignment.
2669 __ mov(edx, Operand(ebp,
2670 JavaScriptFrameConstants::kDynamicAlignmentStateOffset));
2671 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002672 if (NeedsEagerFrame()) {
2673 __ mov(esp, ebp);
2674 __ pop(ebp);
2675 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002676 if (dynamic_frame_alignment_) {
2677 Label no_padding;
2678 __ cmp(edx, Immediate(kNoAlignmentPadding));
2679 __ j(equal, &no_padding);
2680 if (FLAG_debug_code) {
2681 __ cmp(Operand(esp, (GetParameterCount() + 2) * kPointerSize),
2682 Immediate(kAlignmentZapValue));
2683 __ Assert(equal, "expected alignment marker");
2684 }
2685 __ Ret((GetParameterCount() + 2) * kPointerSize, ecx);
2686 __ bind(&no_padding);
2687 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002688 if (info()->IsStub()) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002689 __ Ret();
2690 } else {
2691 __ Ret((GetParameterCount() + 1) * kPointerSize, ecx);
2692 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002693}
2694
2695
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002696void LCodeGen::DoLoadGlobalCell(LLoadGlobalCell* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002697 Register result = ToRegister(instr->result());
2698 __ mov(result, Operand::Cell(instr->hydrogen()->cell()));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002699 if (instr->hydrogen()->RequiresHoleCheck()) {
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002700 __ cmp(result, factory()->the_hole_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002701 DeoptimizeIf(equal, instr->environment());
2702 }
2703}
2704
2705
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002706void LCodeGen::DoLoadGlobalGeneric(LLoadGlobalGeneric* instr) {
2707 ASSERT(ToRegister(instr->context()).is(esi));
danno@chromium.org1044a4d2012-04-30 12:34:39 +00002708 ASSERT(ToRegister(instr->global_object()).is(edx));
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002709 ASSERT(ToRegister(instr->result()).is(eax));
2710
2711 __ mov(ecx, instr->name());
2712 RelocInfo::Mode mode = instr->for_typeof() ? RelocInfo::CODE_TARGET :
2713 RelocInfo::CODE_TARGET_CONTEXT;
2714 Handle<Code> ic = isolate()->builtins()->LoadIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002715 CallCode(ic, mode, instr);
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002716}
2717
2718
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00002719void LCodeGen::DoStoreGlobalCell(LStoreGlobalCell* instr) {
danno@chromium.orge78f9fc2011-12-21 08:29:34 +00002720 Register value = ToRegister(instr->value());
2721 Handle<JSGlobalPropertyCell> cell_handle = instr->hydrogen()->cell();
ager@chromium.org378b34e2011-01-28 08:04:38 +00002722
2723 // If the cell we are storing to contains the hole it could have
2724 // been deleted from the property dictionary. In that case, we need
2725 // to update the property details in the property dictionary to mark
2726 // it as no longer deleted. We deoptimize in that case.
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002727 if (instr->hydrogen()->RequiresHoleCheck()) {
danno@chromium.orge78f9fc2011-12-21 08:29:34 +00002728 __ cmp(Operand::Cell(cell_handle), factory()->the_hole_value());
ager@chromium.org378b34e2011-01-28 08:04:38 +00002729 DeoptimizeIf(equal, instr->environment());
2730 }
2731
2732 // Store the value.
danno@chromium.orge78f9fc2011-12-21 08:29:34 +00002733 __ mov(Operand::Cell(cell_handle), value);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002734 // Cells are always rescanned, so no write barrier here.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002735}
2736
2737
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00002738void LCodeGen::DoStoreGlobalGeneric(LStoreGlobalGeneric* instr) {
2739 ASSERT(ToRegister(instr->context()).is(esi));
2740 ASSERT(ToRegister(instr->global_object()).is(edx));
2741 ASSERT(ToRegister(instr->value()).is(eax));
2742
2743 __ mov(ecx, instr->name());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00002744 Handle<Code> ic = (instr->strict_mode_flag() == kStrictMode)
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002745 ? isolate()->builtins()->StoreIC_Initialize_Strict()
2746 : isolate()->builtins()->StoreIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002747 CallCode(ic, RelocInfo::CODE_TARGET_CONTEXT, instr);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00002748}
2749
2750
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00002751void LCodeGen::DoLoadContextSlot(LLoadContextSlot* instr) {
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002752 Register context = ToRegister(instr->context());
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00002753 Register result = ToRegister(instr->result());
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002754 __ mov(result, ContextOperand(context, instr->slot_index()));
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002755
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002756 if (instr->hydrogen()->RequiresHoleCheck()) {
2757 __ cmp(result, factory()->the_hole_value());
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002758 if (instr->hydrogen()->DeoptimizesOnHole()) {
2759 DeoptimizeIf(equal, instr->environment());
2760 } else {
2761 Label is_not_hole;
2762 __ j(not_equal, &is_not_hole, Label::kNear);
2763 __ mov(result, factory()->undefined_value());
2764 __ bind(&is_not_hole);
2765 }
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002766 }
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002767}
2768
2769
2770void LCodeGen::DoStoreContextSlot(LStoreContextSlot* instr) {
2771 Register context = ToRegister(instr->context());
2772 Register value = ToRegister(instr->value());
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002773
2774 Label skip_assignment;
2775
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002776 Operand target = ContextOperand(context, instr->slot_index());
2777 if (instr->hydrogen()->RequiresHoleCheck()) {
2778 __ cmp(target, factory()->the_hole_value());
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002779 if (instr->hydrogen()->DeoptimizesOnHole()) {
2780 DeoptimizeIf(equal, instr->environment());
2781 } else {
2782 __ j(not_equal, &skip_assignment, Label::kNear);
2783 }
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002784 }
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002785
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002786 __ mov(target, value);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002787 if (instr->hydrogen()->NeedsWriteBarrier()) {
2788 HType type = instr->hydrogen()->value()->type();
2789 SmiCheck check_needed =
2790 type.IsHeapObject() ? OMIT_SMI_CHECK : INLINE_SMI_CHECK;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002791 Register temp = ToRegister(instr->temp());
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002792 int offset = Context::SlotOffset(instr->slot_index());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002793 __ RecordWriteContextSlot(context,
2794 offset,
2795 value,
2796 temp,
2797 kSaveFPRegs,
2798 EMIT_REMEMBERED_SET,
2799 check_needed);
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002800 }
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002801
2802 __ bind(&skip_assignment);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00002803}
2804
2805
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002806void LCodeGen::DoLoadNamedField(LLoadNamedField* instr) {
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002807 Register object = ToRegister(instr->object());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002808 Register result = ToRegister(instr->result());
2809 if (instr->hydrogen()->is_in_object()) {
2810 __ mov(result, FieldOperand(object, instr->hydrogen()->offset()));
2811 } else {
2812 __ mov(result, FieldOperand(object, JSObject::kPropertiesOffset));
2813 __ mov(result, FieldOperand(result, instr->hydrogen()->offset()));
2814 }
2815}
2816
2817
lrn@chromium.org1c092762011-05-09 09:42:16 +00002818void LCodeGen::EmitLoadFieldOrConstantFunction(Register result,
2819 Register object,
2820 Handle<Map> type,
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002821 Handle<String> name,
2822 LEnvironment* env) {
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002823 LookupResult lookup(isolate());
verwaest@chromium.org753aee42012-07-17 16:15:42 +00002824 type->LookupDescriptor(NULL, *name, &lookup);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002825 ASSERT(lookup.IsFound() || lookup.IsCacheable());
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002826 if (lookup.IsField()) {
lrn@chromium.org1c092762011-05-09 09:42:16 +00002827 int index = lookup.GetLocalFieldIndexFromMap(*type);
2828 int offset = index * kPointerSize;
2829 if (index < 0) {
2830 // Negative property indices are in-object properties, indexed
2831 // from the end of the fixed part of the object.
2832 __ mov(result, FieldOperand(object, offset + type->instance_size()));
2833 } else {
2834 // Non-negative property indices are in the properties array.
2835 __ mov(result, FieldOperand(object, JSObject::kPropertiesOffset));
2836 __ mov(result, FieldOperand(result, offset + FixedArray::kHeaderSize));
2837 }
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002838 } else if (lookup.IsConstantFunction()) {
lrn@chromium.org1c092762011-05-09 09:42:16 +00002839 Handle<JSFunction> function(lookup.GetConstantFunctionFromMap(*type));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002840 __ LoadHeapObject(result, function);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002841 } else {
2842 // Negative lookup.
2843 // Check prototypes.
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002844 Handle<HeapObject> current(HeapObject::cast((*type)->prototype()));
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002845 Heap* heap = type->GetHeap();
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002846 while (*current != heap->null_value()) {
2847 __ LoadHeapObject(result, current);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002848 __ cmp(FieldOperand(result, HeapObject::kMapOffset),
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002849 Handle<Map>(current->map()));
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002850 DeoptimizeIf(not_equal, env);
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002851 current =
2852 Handle<HeapObject>(HeapObject::cast(current->map()->prototype()));
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002853 }
2854 __ mov(result, factory()->undefined_value());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002855 }
2856}
2857
2858
2859void LCodeGen::EmitPushTaggedOperand(LOperand* operand) {
2860 ASSERT(!operand->IsDoubleRegister());
2861 if (operand->IsConstantOperand()) {
2862 Handle<Object> object = ToHandle(LConstantOperand::cast(operand));
2863 if (object->IsSmi()) {
2864 __ Push(Handle<Smi>::cast(object));
2865 } else {
2866 __ PushHeapObject(Handle<HeapObject>::cast(object));
2867 }
2868 } else if (operand->IsRegister()) {
2869 __ push(ToRegister(operand));
2870 } else {
2871 __ push(ToOperand(operand));
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002872 }
2873}
2874
2875
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002876// Check for cases where EmitLoadFieldOrConstantFunction needs to walk the
2877// prototype chain, which causes unbounded code generation.
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002878static bool CompactEmit(SmallMapList* list,
2879 Handle<String> name,
2880 int i,
2881 Isolate* isolate) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002882 Handle<Map> map = list->at(i);
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002883 // If the map has ElementsKind transitions, we will generate map checks
2884 // for each kind in __ CompareMap(..., ALLOW_ELEMENTS_TRANSITION_MAPS).
yangguo@chromium.org99aa4902012-07-06 16:21:55 +00002885 if (map->HasElementsTransition()) return false;
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002886 LookupResult lookup(isolate);
yangguo@chromium.org99aa4902012-07-06 16:21:55 +00002887 map->LookupDescriptor(NULL, *name, &lookup);
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002888 return lookup.IsField() || lookup.IsConstantFunction();
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002889}
2890
2891
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002892void LCodeGen::DoLoadNamedFieldPolymorphic(LLoadNamedFieldPolymorphic* instr) {
2893 Register object = ToRegister(instr->object());
2894 Register result = ToRegister(instr->result());
2895
2896 int map_count = instr->hydrogen()->types()->length();
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002897 bool need_generic = instr->hydrogen()->need_generic();
2898
2899 if (map_count == 0 && !need_generic) {
2900 DeoptimizeIf(no_condition, instr->environment());
2901 return;
2902 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002903 Handle<String> name = instr->hydrogen()->name();
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002904 Label done;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002905 bool all_are_compact = true;
2906 for (int i = 0; i < map_count; ++i) {
2907 if (!CompactEmit(instr->hydrogen()->types(), name, i, isolate())) {
2908 all_are_compact = false;
2909 break;
2910 }
2911 }
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002912 for (int i = 0; i < map_count; ++i) {
2913 bool last = (i == map_count - 1);
2914 Handle<Map> map = instr->hydrogen()->types()->at(i);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002915 Label check_passed;
2916 __ CompareMap(object, map, &check_passed, ALLOW_ELEMENT_TRANSITION_MAPS);
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002917 if (last && !need_generic) {
2918 DeoptimizeIf(not_equal, instr->environment());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002919 __ bind(&check_passed);
2920 EmitLoadFieldOrConstantFunction(
2921 result, object, map, name, instr->environment());
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002922 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002923 Label next;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002924 bool compact = all_are_compact ? true :
2925 CompactEmit(instr->hydrogen()->types(), name, i, isolate());
2926 __ j(not_equal, &next, compact ? Label::kNear : Label::kFar);
2927 __ bind(&check_passed);
2928 EmitLoadFieldOrConstantFunction(
2929 result, object, map, name, instr->environment());
2930 __ jmp(&done, all_are_compact ? Label::kNear : Label::kFar);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002931 __ bind(&next);
2932 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002933 }
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002934 if (need_generic) {
2935 __ mov(ecx, name);
2936 Handle<Code> ic = isolate()->builtins()->LoadIC_Initialize();
2937 CallCode(ic, RelocInfo::CODE_TARGET, instr);
2938 }
2939 __ bind(&done);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002940}
2941
2942
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002943void LCodeGen::DoLoadNamedGeneric(LLoadNamedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002944 ASSERT(ToRegister(instr->context()).is(esi));
danno@chromium.org1044a4d2012-04-30 12:34:39 +00002945 ASSERT(ToRegister(instr->object()).is(edx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002946 ASSERT(ToRegister(instr->result()).is(eax));
2947
2948 __ mov(ecx, instr->name());
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002949 Handle<Code> ic = isolate()->builtins()->LoadIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002950 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002951}
2952
2953
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002954void LCodeGen::DoLoadFunctionPrototype(LLoadFunctionPrototype* instr) {
2955 Register function = ToRegister(instr->function());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002956 Register temp = ToRegister(instr->temp());
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002957 Register result = ToRegister(instr->result());
2958
2959 // Check that the function really is a function.
2960 __ CmpObjectType(function, JS_FUNCTION_TYPE, result);
2961 DeoptimizeIf(not_equal, instr->environment());
2962
2963 // Check whether the function has an instance prototype.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002964 Label non_instance;
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002965 __ test_b(FieldOperand(result, Map::kBitFieldOffset),
2966 1 << Map::kHasNonInstancePrototype);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002967 __ j(not_zero, &non_instance, Label::kNear);
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002968
2969 // Get the prototype or initial map from the function.
2970 __ mov(result,
2971 FieldOperand(function, JSFunction::kPrototypeOrInitialMapOffset));
2972
2973 // Check that the function has a prototype or an initial map.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002974 __ cmp(Operand(result), Immediate(factory()->the_hole_value()));
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002975 DeoptimizeIf(equal, instr->environment());
2976
2977 // If the function does not have an initial map, we're done.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002978 Label done;
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002979 __ CmpObjectType(result, MAP_TYPE, temp);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002980 __ j(not_equal, &done, Label::kNear);
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002981
2982 // Get the prototype from the initial map.
2983 __ mov(result, FieldOperand(result, Map::kPrototypeOffset));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002984 __ jmp(&done, Label::kNear);
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002985
2986 // Non-instance prototype: Fetch prototype from constructor field
2987 // in the function's map.
2988 __ bind(&non_instance);
2989 __ mov(result, FieldOperand(result, Map::kConstructorOffset));
2990
2991 // All done.
2992 __ bind(&done);
2993}
2994
2995
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002996void LCodeGen::DoLoadElements(LLoadElements* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002997 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002998 Register input = ToRegister(instr->object());
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002999 __ mov(result, FieldOperand(input, JSObject::kElementsOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003000 if (FLAG_debug_code) {
whesse@chromium.org7b260152011-06-20 15:33:18 +00003001 Label done, ok, fail;
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003002 __ cmp(FieldOperand(result, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003003 Immediate(factory()->fixed_array_map()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003004 __ j(equal, &done, Label::kNear);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003005 __ cmp(FieldOperand(result, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003006 Immediate(factory()->fixed_cow_array_map()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003007 __ j(equal, &done, Label::kNear);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003008 Register temp((result.is(eax)) ? ebx : eax);
3009 __ push(temp);
3010 __ mov(temp, FieldOperand(result, HeapObject::kMapOffset));
whesse@chromium.org7b260152011-06-20 15:33:18 +00003011 __ movzx_b(temp, FieldOperand(temp, Map::kBitField2Offset));
3012 __ and_(temp, Map::kElementsKindMask);
3013 __ shr(temp, Map::kElementsKindShift);
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00003014 __ cmp(temp, GetInitialFastElementsKind());
3015 __ j(less, &fail, Label::kNear);
3016 __ cmp(temp, TERMINAL_FAST_ELEMENTS_KIND);
3017 __ j(less_equal, &ok, Label::kNear);
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003018 __ cmp(temp, FIRST_EXTERNAL_ARRAY_ELEMENTS_KIND);
whesse@chromium.org7b260152011-06-20 15:33:18 +00003019 __ j(less, &fail, Label::kNear);
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003020 __ cmp(temp, LAST_EXTERNAL_ARRAY_ELEMENTS_KIND);
whesse@chromium.org7b260152011-06-20 15:33:18 +00003021 __ j(less_equal, &ok, Label::kNear);
3022 __ bind(&fail);
3023 __ Abort("Check for fast or external elements failed.");
3024 __ bind(&ok);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003025 __ pop(temp);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003026 __ bind(&done);
3027 }
3028}
3029
3030
danno@chromium.org4d3fe4e2011-03-10 10:14:28 +00003031void LCodeGen::DoLoadExternalArrayPointer(
3032 LLoadExternalArrayPointer* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003033 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003034 Register input = ToRegister(instr->object());
danno@chromium.org4d3fe4e2011-03-10 10:14:28 +00003035 __ mov(result, FieldOperand(input,
3036 ExternalArray::kExternalPointerOffset));
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003037}
3038
3039
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003040void LCodeGen::DoAccessArgumentsAt(LAccessArgumentsAt* instr) {
3041 Register arguments = ToRegister(instr->arguments());
3042 Register length = ToRegister(instr->length());
3043 Operand index = ToOperand(instr->index());
3044 Register result = ToRegister(instr->result());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00003045 // There are two words between the frame pointer and the last argument.
3046 // Subtracting from length accounts for one of them add one more.
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00003047 __ sub(length, index);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003048 __ mov(result, Operand(arguments, length, times_4, kPointerSize));
3049}
3050
3051
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003052void LCodeGen::DoLoadKeyedExternalArray(LLoadKeyed* instr) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003053 ElementsKind elements_kind = instr->elements_kind();
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00003054 LOperand* key = instr->key();
3055 if (!key->IsConstantOperand() &&
3056 ExternalArrayOpRequiresTemp(instr->hydrogen()->key()->representation(),
3057 elements_kind)) {
3058 __ SmiUntag(ToRegister(key));
yangguo@chromium.org304cc332012-07-24 07:59:48 +00003059 }
3060 Operand operand(BuildFastArrayOperand(
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003061 instr->elements(),
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00003062 key,
yangguo@chromium.org304cc332012-07-24 07:59:48 +00003063 instr->hydrogen()->key()->representation(),
3064 elements_kind,
3065 0,
3066 instr->additional_index()));
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003067 if (elements_kind == EXTERNAL_FLOAT_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003068 if (CpuFeatures::IsSupported(SSE2)) {
3069 CpuFeatures::Scope scope(SSE2);
3070 XMMRegister result(ToDoubleRegister(instr->result()));
3071 __ movss(result, operand);
3072 __ cvtss2sd(result, result);
3073 } else {
3074 __ fld_s(operand);
3075 HandleX87FPReturnValue(instr);
3076 }
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003077 } else if (elements_kind == EXTERNAL_DOUBLE_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003078 if (CpuFeatures::IsSupported(SSE2)) {
3079 CpuFeatures::Scope scope(SSE2);
3080 __ movdbl(ToDoubleRegister(instr->result()), operand);
3081 } else {
3082 __ fld_d(operand);
3083 HandleX87FPReturnValue(instr);
3084 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003085 } else {
3086 Register result(ToRegister(instr->result()));
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00003087 switch (elements_kind) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003088 case EXTERNAL_BYTE_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003089 __ movsx_b(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003090 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003091 case EXTERNAL_PIXEL_ELEMENTS:
3092 case EXTERNAL_UNSIGNED_BYTE_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003093 __ movzx_b(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003094 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003095 case EXTERNAL_SHORT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003096 __ movsx_w(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003097 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003098 case EXTERNAL_UNSIGNED_SHORT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003099 __ movzx_w(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003100 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003101 case EXTERNAL_INT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003102 __ mov(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003103 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003104 case EXTERNAL_UNSIGNED_INT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003105 __ mov(result, operand);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003106 if (!instr->hydrogen()->CheckFlag(HInstruction::kUint32)) {
3107 __ test(result, Operand(result));
3108 DeoptimizeIf(negative, instr->environment());
3109 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003110 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003111 case EXTERNAL_FLOAT_ELEMENTS:
3112 case EXTERNAL_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00003113 case FAST_SMI_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003114 case FAST_ELEMENTS:
3115 case FAST_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00003116 case FAST_HOLEY_SMI_ELEMENTS:
3117 case FAST_HOLEY_ELEMENTS:
3118 case FAST_HOLEY_DOUBLE_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003119 case DICTIONARY_ELEMENTS:
3120 case NON_STRICT_ARGUMENTS_ELEMENTS:
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003121 UNREACHABLE();
3122 break;
3123 }
3124 }
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003125}
3126
3127
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003128void LCodeGen::HandleX87FPReturnValue(LInstruction* instr) {
3129 if (IsX87TopOfStack(instr->result())) {
3130 // Return value is already on stack. If the value has no uses, then
3131 // pop it off the FP stack. Otherwise, make sure that there are enough
3132 // copies of the value on the stack to feed all of the usages, e.g.
3133 // when the following instruction uses the return value in multiple
3134 // inputs.
3135 int count = instr->hydrogen_value()->UseCount();
3136 if (count == 0) {
3137 __ fstp(0);
3138 } else {
3139 count--;
3140 ASSERT(count <= 7);
3141 while (count-- > 0) {
3142 __ fld(0);
3143 }
3144 }
3145 } else {
3146 __ fstp_d(ToOperand(instr->result()));
3147 }
3148}
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +00003149
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003150
3151void LCodeGen::DoLoadKeyedFixedDoubleArray(LLoadKeyed* instr) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003152 if (instr->hydrogen()->RequiresHoleCheck()) {
3153 int offset = FixedDoubleArray::kHeaderSize - kHeapObjectTag +
3154 sizeof(kHoleNanLower32);
3155 Operand hole_check_operand = BuildFastArrayOperand(
3156 instr->elements(), instr->key(),
3157 instr->hydrogen()->key()->representation(),
3158 FAST_DOUBLE_ELEMENTS,
3159 offset,
3160 instr->additional_index());
3161 __ cmp(hole_check_operand, Immediate(kHoleNanUpper32));
3162 DeoptimizeIf(equal, instr->environment());
3163 }
3164
3165 Operand double_load_operand = BuildFastArrayOperand(
3166 instr->elements(),
3167 instr->key(),
3168 instr->hydrogen()->key()->representation(),
3169 FAST_DOUBLE_ELEMENTS,
3170 FixedDoubleArray::kHeaderSize - kHeapObjectTag,
3171 instr->additional_index());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003172 if (CpuFeatures::IsSupported(SSE2)) {
3173 CpuFeatures::Scope scope(SSE2);
3174 XMMRegister result = ToDoubleRegister(instr->result());
3175 __ movdbl(result, double_load_operand);
3176 } else {
3177 __ fld_d(double_load_operand);
3178 HandleX87FPReturnValue(instr);
3179 }
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003180}
3181
3182
3183void LCodeGen::DoLoadKeyedFixedArray(LLoadKeyed* instr) {
3184 Register result = ToRegister(instr->result());
3185
3186 // Load the result.
3187 __ mov(result,
3188 BuildFastArrayOperand(instr->elements(),
3189 instr->key(),
3190 instr->hydrogen()->key()->representation(),
3191 FAST_ELEMENTS,
3192 FixedArray::kHeaderSize - kHeapObjectTag,
3193 instr->additional_index()));
3194
3195 // Check for the hole value.
3196 if (instr->hydrogen()->RequiresHoleCheck()) {
3197 if (IsFastSmiElementsKind(instr->hydrogen()->elements_kind())) {
3198 __ test(result, Immediate(kSmiTagMask));
3199 DeoptimizeIf(not_equal, instr->environment());
3200 } else {
3201 __ cmp(result, factory()->the_hole_value());
3202 DeoptimizeIf(equal, instr->environment());
3203 }
3204 }
3205}
3206
3207
3208void LCodeGen::DoLoadKeyed(LLoadKeyed* instr) {
3209 if (instr->is_external()) {
3210 DoLoadKeyedExternalArray(instr);
3211 } else if (instr->hydrogen()->representation().IsDouble()) {
3212 DoLoadKeyedFixedDoubleArray(instr);
3213 } else {
3214 DoLoadKeyedFixedArray(instr);
3215 }
3216}
3217
3218
3219Operand LCodeGen::BuildFastArrayOperand(
3220 LOperand* elements_pointer,
3221 LOperand* key,
3222 Representation key_representation,
3223 ElementsKind elements_kind,
3224 uint32_t offset,
3225 uint32_t additional_index) {
3226 Register elements_pointer_reg = ToRegister(elements_pointer);
3227 int shift_size = ElementsKindToShiftSize(elements_kind);
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003228 if (key->IsConstantOperand()) {
3229 int constant_value = ToInteger32(LConstantOperand::cast(key));
3230 if (constant_value & 0xF0000000) {
3231 Abort("array index constant value too big");
3232 }
3233 return Operand(elements_pointer_reg,
3234 ((constant_value + additional_index) << shift_size)
3235 + offset);
3236 } else {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +00003237 // Take the tag bit into account while computing the shift size.
3238 if (key_representation.IsTagged() && (shift_size >= 1)) {
3239 shift_size -= kSmiTagSize;
3240 }
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003241 ScaleFactor scale_factor = static_cast<ScaleFactor>(shift_size);
3242 return Operand(elements_pointer_reg,
3243 ToRegister(key),
3244 scale_factor,
3245 offset + (additional_index << shift_size));
3246 }
3247}
3248
3249
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003250void LCodeGen::DoLoadKeyedGeneric(LLoadKeyedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003251 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003252 ASSERT(ToRegister(instr->object()).is(edx));
danno@chromium.org1044a4d2012-04-30 12:34:39 +00003253 ASSERT(ToRegister(instr->key()).is(ecx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003254
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003255 Handle<Code> ic = isolate()->builtins()->KeyedLoadIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003256 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003257}
3258
3259
3260void LCodeGen::DoArgumentsElements(LArgumentsElements* instr) {
3261 Register result = ToRegister(instr->result());
3262
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003263 if (instr->hydrogen()->from_inlined()) {
3264 __ lea(result, Operand(esp, -2 * kPointerSize));
3265 } else {
3266 // Check for arguments adapter frame.
3267 Label done, adapted;
3268 __ mov(result, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
3269 __ mov(result, Operand(result, StandardFrameConstants::kContextOffset));
3270 __ cmp(Operand(result),
3271 Immediate(Smi::FromInt(StackFrame::ARGUMENTS_ADAPTOR)));
3272 __ j(equal, &adapted, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003273
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003274 // No arguments adaptor frame.
3275 __ mov(result, Operand(ebp));
3276 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003277
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003278 // Arguments adaptor frame present.
3279 __ bind(&adapted);
3280 __ mov(result, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003281
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003282 // Result is the frame pointer for the frame if not adapted and for the real
3283 // frame below the adaptor frame if adapted.
3284 __ bind(&done);
3285 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003286}
3287
3288
3289void LCodeGen::DoArgumentsLength(LArgumentsLength* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003290 Operand elem = ToOperand(instr->elements());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003291 Register result = ToRegister(instr->result());
3292
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003293 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003294
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00003295 // If no arguments adaptor frame the number of arguments is fixed.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003296 __ cmp(ebp, elem);
3297 __ mov(result, Immediate(scope()->num_parameters()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003298 __ j(equal, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003299
3300 // Arguments adaptor frame present. Get argument length from there.
3301 __ mov(result, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
3302 __ mov(result, Operand(result,
3303 ArgumentsAdaptorFrameConstants::kLengthOffset));
3304 __ SmiUntag(result);
3305
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00003306 // Argument length is in result register.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003307 __ bind(&done);
3308}
3309
3310
yangguo@chromium.org154ff992012-03-13 08:09:54 +00003311void LCodeGen::DoWrapReceiver(LWrapReceiver* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003312 Register receiver = ToRegister(instr->receiver());
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003313 Register function = ToRegister(instr->function());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003314 Register scratch = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003315
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003316 // If the receiver is null or undefined, we have to pass the global
3317 // object as a receiver to normal functions. Values have to be
3318 // passed unchanged to builtins and strict-mode functions.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003319 Label global_object, receiver_ok;
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003320
3321 // Do not transform the receiver to object for strict mode
3322 // functions.
3323 __ mov(scratch,
3324 FieldOperand(function, JSFunction::kSharedFunctionInfoOffset));
3325 __ test_b(FieldOperand(scratch, SharedFunctionInfo::kStrictModeByteOffset),
3326 1 << SharedFunctionInfo::kStrictModeBitWithinByte);
danno@chromium.org412fa512012-09-14 13:28:26 +00003327 __ j(not_equal, &receiver_ok); // A near jump is not sufficient here!
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003328
3329 // Do not transform the receiver to object for builtins.
3330 __ test_b(FieldOperand(scratch, SharedFunctionInfo::kNativeByteOffset),
3331 1 << SharedFunctionInfo::kNativeBitWithinByte);
danno@chromium.org412fa512012-09-14 13:28:26 +00003332 __ j(not_equal, &receiver_ok);
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003333
3334 // Normal function. Replace undefined or null with global receiver.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003335 __ cmp(receiver, factory()->null_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003336 __ j(equal, &global_object, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003337 __ cmp(receiver, factory()->undefined_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003338 __ j(equal, &global_object, Label::kNear);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003339
3340 // The receiver should be a JS object.
3341 __ test(receiver, Immediate(kSmiTagMask));
3342 DeoptimizeIf(equal, instr->environment());
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003343 __ CmpObjectType(receiver, FIRST_SPEC_OBJECT_TYPE, scratch);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003344 DeoptimizeIf(below, instr->environment());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003345 __ jmp(&receiver_ok, Label::kNear);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003346
3347 __ bind(&global_object);
3348 // TODO(kmillikin): We have a hydrogen value for the global object. See
3349 // if it's better to use it than to explicitly fetch it from the context
3350 // here.
3351 __ mov(receiver, Operand(ebp, StandardFrameConstants::kContextOffset));
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003352 __ mov(receiver, ContextOperand(receiver, Context::GLOBAL_OBJECT_INDEX));
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003353 __ mov(receiver,
3354 FieldOperand(receiver, JSGlobalObject::kGlobalReceiverOffset));
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003355 __ bind(&receiver_ok);
yangguo@chromium.org154ff992012-03-13 08:09:54 +00003356}
3357
3358
3359void LCodeGen::DoApplyArguments(LApplyArguments* instr) {
3360 Register receiver = ToRegister(instr->receiver());
3361 Register function = ToRegister(instr->function());
3362 Register length = ToRegister(instr->length());
3363 Register elements = ToRegister(instr->elements());
3364 ASSERT(receiver.is(eax)); // Used for parameter count.
3365 ASSERT(function.is(edi)); // Required by InvokeFunction.
3366 ASSERT(ToRegister(instr->result()).is(eax));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003367
3368 // Copy the arguments to this function possibly from the
3369 // adaptor frame below it.
3370 const uint32_t kArgumentsLimit = 1 * KB;
3371 __ cmp(length, kArgumentsLimit);
3372 DeoptimizeIf(above, instr->environment());
3373
3374 __ push(receiver);
3375 __ mov(receiver, length);
3376
3377 // Loop through the arguments pushing them onto the execution
3378 // stack.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003379 Label invoke, loop;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003380 // length is a small non-negative integer, due to the test above.
3381 __ test(length, Operand(length));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003382 __ j(zero, &invoke, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003383 __ bind(&loop);
3384 __ push(Operand(elements, length, times_pointer_size, 1 * kPointerSize));
3385 __ dec(length);
3386 __ j(not_zero, &loop);
3387
3388 // Invoke the function.
3389 __ bind(&invoke);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00003390 ASSERT(instr->HasPointerMap());
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00003391 LPointerMap* pointers = instr->pointer_map();
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00003392 RecordPosition(pointers->position());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00003393 SafepointGenerator safepoint_generator(
3394 this, pointers, Safepoint::kLazyDeopt);
danno@chromium.org160a7b02011-04-18 15:51:38 +00003395 ParameterCount actual(eax);
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003396 __ InvokeFunction(function, actual, CALL_FUNCTION,
3397 safepoint_generator, CALL_AS_METHOD);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003398}
3399
3400
3401void LCodeGen::DoPushArgument(LPushArgument* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003402 LOperand* argument = instr->value();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003403 EmitPushTaggedOperand(argument);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003404}
3405
3406
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003407void LCodeGen::DoDrop(LDrop* instr) {
3408 __ Drop(instr->count());
3409}
3410
3411
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003412void LCodeGen::DoThisFunction(LThisFunction* instr) {
3413 Register result = ToRegister(instr->result());
yangguo@chromium.org5a11aaf2012-06-20 11:29:00 +00003414 __ mov(result, Operand(ebp, JavaScriptFrameConstants::kFunctionOffset));
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003415}
3416
3417
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003418void LCodeGen::DoContext(LContext* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003419 Register result = ToRegister(instr->result());
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00003420 if (info()->IsOptimizing()) {
3421 __ mov(result, Operand(ebp, StandardFrameConstants::kContextOffset));
3422 } else {
3423 // If there is no frame, the context must be in esi.
3424 ASSERT(result.is(esi));
3425 }
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003426}
3427
3428
3429void LCodeGen::DoOuterContext(LOuterContext* instr) {
3430 Register context = ToRegister(instr->context());
3431 Register result = ToRegister(instr->result());
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00003432 __ mov(result,
3433 Operand(context, Context::SlotOffset(Context::PREVIOUS_INDEX)));
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003434}
3435
3436
yangguo@chromium.org56454712012-02-16 15:33:53 +00003437void LCodeGen::DoDeclareGlobals(LDeclareGlobals* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003438 ASSERT(ToRegister(instr->context()).is(esi));
yangguo@chromium.org56454712012-02-16 15:33:53 +00003439 __ push(esi); // The context is the first argument.
3440 __ push(Immediate(instr->hydrogen()->pairs()));
3441 __ push(Immediate(Smi::FromInt(instr->hydrogen()->flags())));
3442 CallRuntime(Runtime::kDeclareGlobals, 3, instr);
3443}
3444
3445
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003446void LCodeGen::DoGlobalObject(LGlobalObject* instr) {
3447 Register context = ToRegister(instr->context());
3448 Register result = ToRegister(instr->result());
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003449 __ mov(result,
3450 Operand(context, Context::SlotOffset(Context::GLOBAL_OBJECT_INDEX)));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003451}
3452
3453
3454void LCodeGen::DoGlobalReceiver(LGlobalReceiver* instr) {
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003455 Register global = ToRegister(instr->global());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003456 Register result = ToRegister(instr->result());
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003457 __ mov(result, FieldOperand(global, GlobalObject::kGlobalReceiverOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003458}
3459
3460
3461void LCodeGen::CallKnownFunction(Handle<JSFunction> function,
3462 int arity,
danno@chromium.org40cb8782011-05-25 07:58:50 +00003463 LInstruction* instr,
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003464 CallKind call_kind,
3465 EDIState edi_state) {
ulan@chromium.org2efb9002012-01-19 15:36:35 +00003466 bool can_invoke_directly = !function->NeedsArgumentsAdaption() ||
3467 function->shared()->formal_parameter_count() == arity;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003468
3469 LPointerMap* pointers = instr->pointer_map();
3470 RecordPosition(pointers->position());
3471
ulan@chromium.org2efb9002012-01-19 15:36:35 +00003472 if (can_invoke_directly) {
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003473 if (edi_state == EDI_UNINITIALIZED) {
3474 __ LoadHeapObject(edi, function);
3475 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003476
verwaest@chromium.orgb6d052d2012-07-27 08:03:27 +00003477 // Change context.
3478 __ mov(esi, FieldOperand(edi, JSFunction::kContextOffset));
ulan@chromium.org2efb9002012-01-19 15:36:35 +00003479
3480 // Set eax to arguments count if adaption is not needed. Assumes that eax
3481 // is available to write to at this point.
3482 if (!function->NeedsArgumentsAdaption()) {
3483 __ mov(eax, arity);
3484 }
3485
3486 // Invoke function directly.
3487 __ SetCallKind(ecx, call_kind);
3488 if (*function == *info()->closure()) {
3489 __ CallSelf();
3490 } else {
3491 __ call(FieldOperand(edi, JSFunction::kCodeEntryOffset));
3492 }
3493 RecordSafepointWithLazyDeopt(instr, RECORD_SIMPLE_SAFEPOINT);
3494 } else {
3495 // We need to adapt arguments.
3496 SafepointGenerator generator(
3497 this, pointers, Safepoint::kLazyDeopt);
3498 ParameterCount count(arity);
3499 __ InvokeFunction(function, count, CALL_FUNCTION, generator, call_kind);
3500 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003501}
3502
3503
3504void LCodeGen::DoCallConstantFunction(LCallConstantFunction* instr) {
3505 ASSERT(ToRegister(instr->result()).is(eax));
danno@chromium.org40cb8782011-05-25 07:58:50 +00003506 CallKnownFunction(instr->function(),
3507 instr->arity(),
3508 instr,
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003509 CALL_AS_METHOD,
3510 EDI_UNINITIALIZED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003511}
3512
3513
3514void LCodeGen::DoDeferredMathAbsTaggedHeapNumber(LUnaryMathOperation* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003515 Register input_reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003516 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003517 factory()->heap_number_map());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003518 DeoptimizeIf(not_equal, instr->environment());
3519
3520 Label done;
3521 Register tmp = input_reg.is(eax) ? ecx : eax;
3522 Register tmp2 = tmp.is(ecx) ? edx : input_reg.is(ecx) ? edx : ecx;
3523
3524 // Preserve the value of all registers.
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00003525 PushSafepointRegistersScope scope(this);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003526
3527 Label negative;
3528 __ mov(tmp, FieldOperand(input_reg, HeapNumber::kExponentOffset));
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003529 // Check the sign of the argument. If the argument is positive, just
3530 // return it. We do not need to patch the stack since |input| and
3531 // |result| are the same register and |input| will be restored
3532 // unchanged by popping safepoint registers.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003533 __ test(tmp, Immediate(HeapNumber::kSignMask));
3534 __ j(not_zero, &negative);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003535 __ jmp(&done);
3536
3537 __ bind(&negative);
3538
3539 Label allocated, slow;
3540 __ AllocateHeapNumber(tmp, tmp2, no_reg, &slow);
3541 __ jmp(&allocated);
3542
3543 // Slow case: Call the runtime system to do the number allocation.
3544 __ bind(&slow);
3545
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003546 CallRuntimeFromDeferred(Runtime::kAllocateHeapNumber, 0,
3547 instr, instr->context());
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00003548
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003549 // Set the pointer to the new heap number in tmp.
3550 if (!tmp.is(eax)) __ mov(tmp, eax);
3551
3552 // Restore input_reg after call to runtime.
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00003553 __ LoadFromSafepointRegisterSlot(input_reg, input_reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003554
3555 __ bind(&allocated);
3556 __ mov(tmp2, FieldOperand(input_reg, HeapNumber::kExponentOffset));
3557 __ and_(tmp2, ~HeapNumber::kSignMask);
3558 __ mov(FieldOperand(tmp, HeapNumber::kExponentOffset), tmp2);
3559 __ mov(tmp2, FieldOperand(input_reg, HeapNumber::kMantissaOffset));
3560 __ mov(FieldOperand(tmp, HeapNumber::kMantissaOffset), tmp2);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00003561 __ StoreToSafepointRegisterSlot(input_reg, tmp);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003562
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003563 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003564}
3565
3566
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003567void LCodeGen::EmitIntegerMathAbs(LUnaryMathOperation* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003568 Register input_reg = ToRegister(instr->value());
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003569 __ test(input_reg, Operand(input_reg));
3570 Label is_positive;
3571 __ j(not_sign, &is_positive);
3572 __ neg(input_reg);
3573 __ test(input_reg, Operand(input_reg));
3574 DeoptimizeIf(negative, instr->environment());
3575 __ bind(&is_positive);
3576}
3577
3578
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003579void LCodeGen::DoMathAbs(LUnaryMathOperation* instr) {
3580 // Class for deferred case.
3581 class DeferredMathAbsTaggedHeapNumber: public LDeferredCode {
3582 public:
3583 DeferredMathAbsTaggedHeapNumber(LCodeGen* codegen,
3584 LUnaryMathOperation* instr)
3585 : LDeferredCode(codegen), instr_(instr) { }
3586 virtual void Generate() {
3587 codegen()->DoDeferredMathAbsTaggedHeapNumber(instr_);
3588 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00003589 virtual LInstruction* instr() { return instr_; }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003590 private:
3591 LUnaryMathOperation* instr_;
3592 };
3593
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003594 ASSERT(instr->value()->Equals(instr->result()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003595 Representation r = instr->hydrogen()->value()->representation();
3596
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003597 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003598 if (r.IsDouble()) {
3599 XMMRegister scratch = xmm0;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003600 XMMRegister input_reg = ToDoubleRegister(instr->value());
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00003601 __ xorps(scratch, scratch);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003602 __ subsd(scratch, input_reg);
3603 __ pand(input_reg, scratch);
3604 } else if (r.IsInteger32()) {
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003605 EmitIntegerMathAbs(instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003606 } else { // Tagged case.
3607 DeferredMathAbsTaggedHeapNumber* deferred =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00003608 new(zone()) DeferredMathAbsTaggedHeapNumber(this, instr);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003609 Register input_reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003610 // Smi check.
whesse@chromium.org7b260152011-06-20 15:33:18 +00003611 __ JumpIfNotSmi(input_reg, deferred->entry());
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003612 EmitIntegerMathAbs(instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003613 __ bind(deferred->exit());
3614 }
3615}
3616
3617
3618void LCodeGen::DoMathFloor(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003619 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003620 XMMRegister xmm_scratch = xmm0;
3621 Register output_reg = ToRegister(instr->result());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003622 XMMRegister input_reg = ToDoubleRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003623
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003624 if (CpuFeatures::IsSupported(SSE4_1)) {
3625 CpuFeatures::Scope scope(SSE4_1);
3626 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
3627 // Deoptimize on negative zero.
3628 Label non_zero;
3629 __ xorps(xmm_scratch, xmm_scratch); // Zero the register.
3630 __ ucomisd(input_reg, xmm_scratch);
3631 __ j(not_equal, &non_zero, Label::kNear);
3632 __ movmskpd(output_reg, input_reg);
3633 __ test(output_reg, Immediate(1));
3634 DeoptimizeIf(not_zero, instr->environment());
3635 __ bind(&non_zero);
3636 }
3637 __ roundsd(xmm_scratch, input_reg, Assembler::kRoundDown);
3638 __ cvttsd2si(output_reg, Operand(xmm_scratch));
3639 // Overflow is signalled with minint.
3640 __ cmp(output_reg, 0x80000000u);
3641 DeoptimizeIf(equal, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003642 } else {
jkummerow@chromium.org7a6fc812012-06-27 11:12:38 +00003643 Label negative_sign, done;
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003644 // Deoptimize on unordered.
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003645 __ xorps(xmm_scratch, xmm_scratch); // Zero the register.
3646 __ ucomisd(input_reg, xmm_scratch);
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003647 DeoptimizeIf(parity_even, instr->environment());
3648 __ j(below, &negative_sign, Label::kNear);
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003649
3650 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
3651 // Check for negative zero.
3652 Label positive_sign;
3653 __ j(above, &positive_sign, Label::kNear);
3654 __ movmskpd(output_reg, input_reg);
3655 __ test(output_reg, Immediate(1));
3656 DeoptimizeIf(not_zero, instr->environment());
3657 __ Set(output_reg, Immediate(0));
3658 __ jmp(&done, Label::kNear);
3659 __ bind(&positive_sign);
3660 }
3661
3662 // Use truncating instruction (OK because input is positive).
3663 __ cvttsd2si(output_reg, Operand(input_reg));
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003664 // Overflow is signalled with minint.
3665 __ cmp(output_reg, 0x80000000u);
3666 DeoptimizeIf(equal, instr->environment());
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003667 __ jmp(&done, Label::kNear);
3668
jkummerow@chromium.org7a6fc812012-06-27 11:12:38 +00003669 // Non-zero negative reaches here.
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003670 __ bind(&negative_sign);
jkummerow@chromium.org7a6fc812012-06-27 11:12:38 +00003671 // Truncate, then compare and compensate.
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003672 __ cvttsd2si(output_reg, Operand(input_reg));
3673 __ cvtsi2sd(xmm_scratch, output_reg);
3674 __ ucomisd(input_reg, xmm_scratch);
3675 __ j(equal, &done, Label::kNear);
3676 __ sub(output_reg, Immediate(1));
3677 DeoptimizeIf(overflow, instr->environment());
3678
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003679 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003680 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003681}
3682
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003683void LCodeGen::DoMathRound(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003684 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003685 XMMRegister xmm_scratch = xmm0;
3686 Register output_reg = ToRegister(instr->result());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003687 XMMRegister input_reg = ToDoubleRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003688
danno@chromium.org160a7b02011-04-18 15:51:38 +00003689 Label below_half, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003690 // xmm_scratch = 0.5
3691 ExternalReference one_half = ExternalReference::address_of_one_half();
3692 __ movdbl(xmm_scratch, Operand::StaticVariable(one_half));
danno@chromium.org160a7b02011-04-18 15:51:38 +00003693 __ ucomisd(xmm_scratch, input_reg);
3694 __ j(above, &below_half);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003695 // xmm_scratch = input + 0.5
3696 __ addsd(xmm_scratch, input_reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003697
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003698 // Compute Math.floor(value + 0.5).
3699 // Use truncating instruction (OK because input is positive).
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003700 __ cvttsd2si(output_reg, Operand(xmm_scratch));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003701
3702 // Overflow is signalled with minint.
3703 __ cmp(output_reg, 0x80000000u);
3704 DeoptimizeIf(equal, instr->environment());
danno@chromium.org160a7b02011-04-18 15:51:38 +00003705 __ jmp(&done);
3706
3707 __ bind(&below_half);
3708
3709 // We return 0 for the input range [+0, 0.5[, or [-0.5, 0.5[ if
3710 // we can ignore the difference between a result of -0 and +0.
3711 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
3712 // If the sign is positive, we return +0.
3713 __ movmskpd(output_reg, input_reg);
3714 __ test(output_reg, Immediate(1));
3715 DeoptimizeIf(not_zero, instr->environment());
3716 } else {
3717 // If the input is >= -0.5, we return +0.
3718 __ mov(output_reg, Immediate(0xBF000000));
3719 __ movd(xmm_scratch, Operand(output_reg));
3720 __ cvtss2sd(xmm_scratch, xmm_scratch);
3721 __ ucomisd(input_reg, xmm_scratch);
3722 DeoptimizeIf(below, instr->environment());
3723 }
3724 __ Set(output_reg, Immediate(0));
3725 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003726}
3727
3728
3729void LCodeGen::DoMathSqrt(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003730 CpuFeatures::Scope scope(SSE2);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003731 XMMRegister input_reg = ToDoubleRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003732 ASSERT(ToDoubleRegister(instr->result()).is(input_reg));
3733 __ sqrtsd(input_reg, input_reg);
3734}
3735
3736
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003737void LCodeGen::DoMathPowHalf(LMathPowHalf* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003738 CpuFeatures::Scope scope(SSE2);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003739 XMMRegister xmm_scratch = xmm0;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003740 XMMRegister input_reg = ToDoubleRegister(instr->value());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003741 Register scratch = ToRegister(instr->temp());
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003742 ASSERT(ToDoubleRegister(instr->result()).is(input_reg));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003743
3744 // Note that according to ECMA-262 15.8.2.13:
3745 // Math.pow(-Infinity, 0.5) == Infinity
3746 // Math.sqrt(-Infinity) == NaN
3747 Label done, sqrt;
3748 // Check base for -Infinity. According to IEEE-754, single-precision
3749 // -Infinity has the highest 9 bits set and the lowest 23 bits cleared.
3750 __ mov(scratch, 0xFF800000);
3751 __ movd(xmm_scratch, scratch);
3752 __ cvtss2sd(xmm_scratch, xmm_scratch);
3753 __ ucomisd(input_reg, xmm_scratch);
3754 // Comparing -Infinity with NaN results in "unordered", which sets the
3755 // zero flag as if both were equal. However, it also sets the carry flag.
3756 __ j(not_equal, &sqrt, Label::kNear);
3757 __ j(carry, &sqrt, Label::kNear);
3758 // If input is -Infinity, return Infinity.
3759 __ xorps(input_reg, input_reg);
3760 __ subsd(input_reg, xmm_scratch);
3761 __ jmp(&done, Label::kNear);
3762
3763 // Square root.
3764 __ bind(&sqrt);
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00003765 __ xorps(xmm_scratch, xmm_scratch);
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00003766 __ addsd(input_reg, xmm_scratch); // Convert -0 to +0.
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003767 __ sqrtsd(input_reg, input_reg);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003768 __ bind(&done);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003769}
3770
3771
3772void LCodeGen::DoPower(LPower* instr) {
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003773 Representation exponent_type = instr->hydrogen()->right()->representation();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003774 // Having marked this as a call, we can use any registers.
3775 // Just make sure that the input/output registers are the expected ones.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003776 ASSERT(!instr->right()->IsDoubleRegister() ||
3777 ToDoubleRegister(instr->right()).is(xmm1));
3778 ASSERT(!instr->right()->IsRegister() ||
3779 ToRegister(instr->right()).is(eax));
3780 ASSERT(ToDoubleRegister(instr->left()).is(xmm2));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003781 ASSERT(ToDoubleRegister(instr->result()).is(xmm3));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003782
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003783 if (exponent_type.IsTagged()) {
3784 Label no_deopt;
3785 __ JumpIfSmi(eax, &no_deopt);
3786 __ CmpObjectType(eax, HEAP_NUMBER_TYPE, ecx);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003787 DeoptimizeIf(not_equal, instr->environment());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003788 __ bind(&no_deopt);
3789 MathPowStub stub(MathPowStub::TAGGED);
3790 __ CallStub(&stub);
3791 } else if (exponent_type.IsInteger32()) {
3792 MathPowStub stub(MathPowStub::INTEGER);
3793 __ CallStub(&stub);
3794 } else {
3795 ASSERT(exponent_type.IsDouble());
3796 MathPowStub stub(MathPowStub::DOUBLE);
3797 __ CallStub(&stub);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003798 }
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003799}
3800
3801
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003802void LCodeGen::DoRandom(LRandom* instr) {
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003803 class DeferredDoRandom: public LDeferredCode {
3804 public:
3805 DeferredDoRandom(LCodeGen* codegen, LRandom* instr)
3806 : LDeferredCode(codegen), instr_(instr) { }
3807 virtual void Generate() { codegen()->DoDeferredRandom(instr_); }
3808 virtual LInstruction* instr() { return instr_; }
3809 private:
3810 LRandom* instr_;
3811 };
3812
mmassi@chromium.org7028c052012-06-13 11:51:58 +00003813 DeferredDoRandom* deferred = new(zone()) DeferredDoRandom(this, instr);
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003814
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003815 CpuFeatures::Scope scope(SSE2);
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003816 // Having marked this instruction as a call we can use any
3817 // registers.
3818 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003819 ASSERT(ToRegister(instr->global_object()).is(eax));
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003820 // Assert that the register size is indeed the size of each seed.
3821 static const int kSeedSize = sizeof(uint32_t);
3822 STATIC_ASSERT(kPointerSize == kSeedSize);
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003823
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003824 __ mov(eax, FieldOperand(eax, GlobalObject::kNativeContextOffset));
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003825 static const int kRandomSeedOffset =
3826 FixedArray::kHeaderSize + Context::RANDOM_SEED_INDEX * kPointerSize;
3827 __ mov(ebx, FieldOperand(eax, kRandomSeedOffset));
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003828 // ebx: FixedArray of the native context's random seeds
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003829
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003830 // Load state[0].
3831 __ mov(ecx, FieldOperand(ebx, ByteArray::kHeaderSize));
3832 // If state[0] == 0, call runtime to initialize seeds.
3833 __ test(ecx, ecx);
3834 __ j(zero, deferred->entry());
3835 // Load state[1].
3836 __ mov(eax, FieldOperand(ebx, ByteArray::kHeaderSize + kSeedSize));
3837 // ecx: state[0]
3838 // eax: state[1]
3839
3840 // state[0] = 18273 * (state[0] & 0xFFFF) + (state[0] >> 16)
3841 __ movzx_w(edx, ecx);
3842 __ imul(edx, edx, 18273);
3843 __ shr(ecx, 16);
3844 __ add(ecx, edx);
3845 // Save state[0].
3846 __ mov(FieldOperand(ebx, ByteArray::kHeaderSize), ecx);
3847
3848 // state[1] = 36969 * (state[1] & 0xFFFF) + (state[1] >> 16)
3849 __ movzx_w(edx, eax);
3850 __ imul(edx, edx, 36969);
3851 __ shr(eax, 16);
3852 __ add(eax, edx);
3853 // Save state[1].
3854 __ mov(FieldOperand(ebx, ByteArray::kHeaderSize + kSeedSize), eax);
3855
3856 // Random bit pattern = (state[0] << 14) + (state[1] & 0x3FFFF)
3857 __ shl(ecx, 14);
3858 __ and_(eax, Immediate(0x3FFFF));
3859 __ add(eax, ecx);
3860
3861 __ bind(deferred->exit());
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003862 // Convert 32 random bits in eax to 0.(32 random bits) in a double
3863 // by computing:
3864 // ( 1.(20 0s)(32 random bits) x 2^20 ) - (1.0 x 2^20)).
3865 __ mov(ebx, Immediate(0x49800000)); // 1.0 x 2^20 as single.
3866 __ movd(xmm2, ebx);
3867 __ movd(xmm1, eax);
3868 __ cvtss2sd(xmm2, xmm2);
3869 __ xorps(xmm1, xmm2);
3870 __ subsd(xmm1, xmm2);
3871}
3872
3873
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003874void LCodeGen::DoDeferredRandom(LRandom* instr) {
3875 __ PrepareCallCFunction(1, ebx);
3876 __ mov(Operand(esp, 0), eax);
3877 __ CallCFunction(ExternalReference::random_uint32_function(isolate()), 1);
3878 // Return value is in eax.
3879}
3880
3881
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003882void LCodeGen::DoMathLog(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003883 CpuFeatures::Scope scope(SSE2);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003884 ASSERT(instr->value()->Equals(instr->result()));
3885 XMMRegister input_reg = ToDoubleRegister(instr->value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003886 Label positive, done, zero;
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00003887 __ xorps(xmm0, xmm0);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003888 __ ucomisd(input_reg, xmm0);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003889 __ j(above, &positive, Label::kNear);
3890 __ j(equal, &zero, Label::kNear);
svenpanne@chromium.org84bcc552011-07-18 09:50:57 +00003891 ExternalReference nan =
3892 ExternalReference::address_of_canonical_non_hole_nan();
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003893 __ movdbl(input_reg, Operand::StaticVariable(nan));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003894 __ jmp(&done, Label::kNear);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003895 __ bind(&zero);
3896 __ push(Immediate(0xFFF00000));
3897 __ push(Immediate(0));
3898 __ movdbl(input_reg, Operand(esp, 0));
3899 __ add(Operand(esp), Immediate(kDoubleSize));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003900 __ jmp(&done, Label::kNear);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003901 __ bind(&positive);
3902 __ fldln2();
3903 __ sub(Operand(esp), Immediate(kDoubleSize));
3904 __ movdbl(Operand(esp, 0), input_reg);
3905 __ fld_d(Operand(esp, 0));
3906 __ fyl2x();
3907 __ fstp_d(Operand(esp, 0));
3908 __ movdbl(input_reg, Operand(esp, 0));
3909 __ add(Operand(esp), Immediate(kDoubleSize));
3910 __ bind(&done);
whesse@chromium.org023421e2010-12-21 12:19:12 +00003911}
3912
3913
danno@chromium.org1f34ad32012-11-26 14:53:56 +00003914void LCodeGen::DoMathExp(LMathExp* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003915 CpuFeatures::Scope scope(SSE2);
danno@chromium.org1f34ad32012-11-26 14:53:56 +00003916 XMMRegister input = ToDoubleRegister(instr->value());
3917 XMMRegister result = ToDoubleRegister(instr->result());
3918 Register temp1 = ToRegister(instr->temp1());
3919 Register temp2 = ToRegister(instr->temp2());
3920
3921 MathExpGenerator::EmitMathExp(masm(), input, result, xmm0, temp1, temp2);
3922}
3923
3924
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00003925void LCodeGen::DoMathTan(LUnaryMathOperation* instr) {
3926 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
3927 TranscendentalCacheStub stub(TranscendentalCache::TAN,
3928 TranscendentalCacheStub::UNTAGGED);
3929 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
3930}
3931
3932
whesse@chromium.org023421e2010-12-21 12:19:12 +00003933void LCodeGen::DoMathCos(LUnaryMathOperation* instr) {
3934 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
3935 TranscendentalCacheStub stub(TranscendentalCache::COS,
3936 TranscendentalCacheStub::UNTAGGED);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003937 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
whesse@chromium.org023421e2010-12-21 12:19:12 +00003938}
3939
3940
3941void LCodeGen::DoMathSin(LUnaryMathOperation* instr) {
3942 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
3943 TranscendentalCacheStub stub(TranscendentalCache::SIN,
3944 TranscendentalCacheStub::UNTAGGED);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003945 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003946}
3947
3948
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003949void LCodeGen::DoUnaryMathOperation(LUnaryMathOperation* instr) {
3950 switch (instr->op()) {
3951 case kMathAbs:
3952 DoMathAbs(instr);
3953 break;
3954 case kMathFloor:
3955 DoMathFloor(instr);
3956 break;
3957 case kMathRound:
3958 DoMathRound(instr);
3959 break;
3960 case kMathSqrt:
3961 DoMathSqrt(instr);
3962 break;
whesse@chromium.org023421e2010-12-21 12:19:12 +00003963 case kMathCos:
3964 DoMathCos(instr);
3965 break;
3966 case kMathSin:
3967 DoMathSin(instr);
3968 break;
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00003969 case kMathTan:
3970 DoMathTan(instr);
3971 break;
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003972 case kMathLog:
3973 DoMathLog(instr);
3974 break;
3975
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003976 default:
3977 UNREACHABLE();
3978 }
3979}
3980
3981
danno@chromium.org160a7b02011-04-18 15:51:38 +00003982void LCodeGen::DoInvokeFunction(LInvokeFunction* instr) {
3983 ASSERT(ToRegister(instr->context()).is(esi));
3984 ASSERT(ToRegister(instr->function()).is(edi));
3985 ASSERT(instr->HasPointerMap());
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003986
3987 if (instr->known_function().is_null()) {
3988 LPointerMap* pointers = instr->pointer_map();
3989 RecordPosition(pointers->position());
3990 SafepointGenerator generator(
3991 this, pointers, Safepoint::kLazyDeopt);
3992 ParameterCount count(instr->arity());
3993 __ InvokeFunction(edi, count, CALL_FUNCTION, generator, CALL_AS_METHOD);
3994 } else {
3995 CallKnownFunction(instr->known_function(),
3996 instr->arity(),
3997 instr,
3998 CALL_AS_METHOD,
3999 EDI_CONTAINS_TARGET);
4000 }
danno@chromium.org160a7b02011-04-18 15:51:38 +00004001}
4002
4003
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004004void LCodeGen::DoCallKeyed(LCallKeyed* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004005 ASSERT(ToRegister(instr->context()).is(esi));
4006 ASSERT(ToRegister(instr->key()).is(ecx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004007 ASSERT(ToRegister(instr->result()).is(eax));
4008
4009 int arity = instr->arity();
lrn@chromium.org34e60782011-09-15 07:25:40 +00004010 Handle<Code> ic =
4011 isolate()->stub_cache()->ComputeKeyedCallInitialize(arity);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004012 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004013}
4014
4015
4016void LCodeGen::DoCallNamed(LCallNamed* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004017 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004018 ASSERT(ToRegister(instr->result()).is(eax));
4019
4020 int arity = instr->arity();
danno@chromium.org40cb8782011-05-25 07:58:50 +00004021 RelocInfo::Mode mode = RelocInfo::CODE_TARGET;
4022 Handle<Code> ic =
lrn@chromium.org34e60782011-09-15 07:25:40 +00004023 isolate()->stub_cache()->ComputeCallInitialize(arity, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004024 __ mov(ecx, instr->name());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004025 CallCode(ic, mode, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004026}
4027
4028
4029void LCodeGen::DoCallFunction(LCallFunction* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004030 ASSERT(ToRegister(instr->context()).is(esi));
danno@chromium.orgc612e022011-11-10 11:38:15 +00004031 ASSERT(ToRegister(instr->function()).is(edi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004032 ASSERT(ToRegister(instr->result()).is(eax));
4033
4034 int arity = instr->arity();
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004035 CallFunctionStub stub(arity, NO_CALL_FUNCTION_FLAGS);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004036 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004037}
4038
4039
4040void LCodeGen::DoCallGlobal(LCallGlobal* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004041 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004042 ASSERT(ToRegister(instr->result()).is(eax));
4043
4044 int arity = instr->arity();
danno@chromium.org40cb8782011-05-25 07:58:50 +00004045 RelocInfo::Mode mode = RelocInfo::CODE_TARGET_CONTEXT;
4046 Handle<Code> ic =
lrn@chromium.org34e60782011-09-15 07:25:40 +00004047 isolate()->stub_cache()->ComputeCallInitialize(arity, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004048 __ mov(ecx, instr->name());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004049 CallCode(ic, mode, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004050}
4051
4052
4053void LCodeGen::DoCallKnownGlobal(LCallKnownGlobal* instr) {
4054 ASSERT(ToRegister(instr->result()).is(eax));
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00004055 CallKnownFunction(instr->target(),
4056 instr->arity(),
4057 instr,
4058 CALL_AS_FUNCTION,
4059 EDI_UNINITIALIZED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004060}
4061
4062
4063void LCodeGen::DoCallNew(LCallNew* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004064 ASSERT(ToRegister(instr->context()).is(esi));
4065 ASSERT(ToRegister(instr->constructor()).is(edi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004066 ASSERT(ToRegister(instr->result()).is(eax));
4067
danno@chromium.orgfa458e42012-02-01 10:48:36 +00004068 CallConstructStub stub(NO_CALL_FUNCTION_FLAGS);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004069 __ Set(eax, Immediate(instr->arity()));
danno@chromium.orgfa458e42012-02-01 10:48:36 +00004070 CallCode(stub.GetCode(), RelocInfo::CONSTRUCT_CALL, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004071}
4072
4073
4074void LCodeGen::DoCallRuntime(LCallRuntime* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004075 CallRuntime(instr->function(), instr->arity(), instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004076}
4077
4078
4079void LCodeGen::DoStoreNamedField(LStoreNamedField* instr) {
4080 Register object = ToRegister(instr->object());
4081 Register value = ToRegister(instr->value());
4082 int offset = instr->offset();
4083
4084 if (!instr->transition().is_null()) {
verwaest@chromium.org37141392012-05-31 13:27:02 +00004085 if (!instr->hydrogen()->NeedsWriteBarrierForMap()) {
4086 __ mov(FieldOperand(object, HeapObject::kMapOffset), instr->transition());
4087 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004088 Register temp = ToRegister(instr->temp());
4089 Register temp_map = ToRegister(instr->temp_map());
verwaest@chromium.org37141392012-05-31 13:27:02 +00004090 __ mov(temp_map, instr->transition());
4091 __ mov(FieldOperand(object, HeapObject::kMapOffset), temp_map);
4092 // Update the write barrier for the map field.
4093 __ RecordWriteField(object,
4094 HeapObject::kMapOffset,
4095 temp_map,
4096 temp,
4097 kSaveFPRegs,
4098 OMIT_REMEMBERED_SET,
4099 OMIT_SMI_CHECK);
4100 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004101 }
4102
4103 // Do the store.
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004104 HType type = instr->hydrogen()->value()->type();
4105 SmiCheck check_needed =
4106 type.IsHeapObject() ? OMIT_SMI_CHECK : INLINE_SMI_CHECK;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004107 if (instr->is_in_object()) {
4108 __ mov(FieldOperand(object, offset), value);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004109 if (instr->hydrogen()->NeedsWriteBarrier()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004110 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004111 // Update the write barrier for the object for in-object properties.
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004112 __ RecordWriteField(object,
4113 offset,
4114 value,
4115 temp,
4116 kSaveFPRegs,
4117 EMIT_REMEMBERED_SET,
4118 check_needed);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004119 }
4120 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004121 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004122 __ mov(temp, FieldOperand(object, JSObject::kPropertiesOffset));
4123 __ mov(FieldOperand(temp, offset), value);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004124 if (instr->hydrogen()->NeedsWriteBarrier()) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004125 // Update the write barrier for the properties array.
4126 // object is used as a scratch register.
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004127 __ RecordWriteField(temp,
4128 offset,
4129 value,
4130 object,
4131 kSaveFPRegs,
4132 EMIT_REMEMBERED_SET,
4133 check_needed);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004134 }
4135 }
4136}
4137
4138
4139void LCodeGen::DoStoreNamedGeneric(LStoreNamedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004140 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004141 ASSERT(ToRegister(instr->object()).is(edx));
4142 ASSERT(ToRegister(instr->value()).is(eax));
4143
4144 __ mov(ecx, instr->name());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004145 Handle<Code> ic = (instr->strict_mode_flag() == kStrictMode)
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004146 ? isolate()->builtins()->StoreIC_Initialize_Strict()
4147 : isolate()->builtins()->StoreIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004148 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004149}
4150
4151
4152void LCodeGen::DoBoundsCheck(LBoundsCheck* instr) {
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +00004153 if (instr->hydrogen()->skip_check()) return;
4154
danno@chromium.orgb6451162011-08-17 14:33:23 +00004155 if (instr->index()->IsConstantOperand()) {
jkummerow@chromium.org000f7fb2012-08-01 11:14:42 +00004156 int constant_index =
4157 ToInteger32(LConstantOperand::cast(instr->index()));
4158 if (instr->hydrogen()->length()->representation().IsTagged()) {
4159 __ cmp(ToOperand(instr->length()),
4160 Immediate(Smi::FromInt(constant_index)));
4161 } else {
4162 __ cmp(ToOperand(instr->length()), Immediate(constant_index));
4163 }
danno@chromium.orgb6451162011-08-17 14:33:23 +00004164 DeoptimizeIf(below_equal, instr->environment());
4165 } else {
4166 __ cmp(ToRegister(instr->index()), ToOperand(instr->length()));
4167 DeoptimizeIf(above_equal, instr->environment());
4168 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004169}
4170
4171
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004172void LCodeGen::DoStoreKeyedExternalArray(LStoreKeyed* instr) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004173 ElementsKind elements_kind = instr->elements_kind();
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00004174 LOperand* key = instr->key();
4175 if (!key->IsConstantOperand() &&
4176 ExternalArrayOpRequiresTemp(instr->hydrogen()->key()->representation(),
4177 elements_kind)) {
4178 __ SmiUntag(ToRegister(key));
yangguo@chromium.org304cc332012-07-24 07:59:48 +00004179 }
4180 Operand operand(BuildFastArrayOperand(
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004181 instr->elements(),
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00004182 key,
yangguo@chromium.org304cc332012-07-24 07:59:48 +00004183 instr->hydrogen()->key()->representation(),
4184 elements_kind,
4185 0,
4186 instr->additional_index()));
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004187 if (elements_kind == EXTERNAL_FLOAT_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004188 CpuFeatures::Scope scope(SSE2);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004189 __ cvtsd2ss(xmm0, ToDoubleRegister(instr->value()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004190 __ movss(operand, xmm0);
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004191 } else if (elements_kind == EXTERNAL_DOUBLE_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004192 CpuFeatures::Scope scope(SSE2);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004193 __ movdbl(operand, ToDoubleRegister(instr->value()));
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004194 } else {
4195 Register value = ToRegister(instr->value());
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004196 switch (elements_kind) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004197 case EXTERNAL_PIXEL_ELEMENTS:
4198 case EXTERNAL_UNSIGNED_BYTE_ELEMENTS:
4199 case EXTERNAL_BYTE_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004200 __ mov_b(operand, value);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004201 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004202 case EXTERNAL_SHORT_ELEMENTS:
4203 case EXTERNAL_UNSIGNED_SHORT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004204 __ mov_w(operand, value);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004205 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004206 case EXTERNAL_INT_ELEMENTS:
4207 case EXTERNAL_UNSIGNED_INT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004208 __ mov(operand, value);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004209 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004210 case EXTERNAL_FLOAT_ELEMENTS:
4211 case EXTERNAL_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004212 case FAST_SMI_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004213 case FAST_ELEMENTS:
4214 case FAST_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004215 case FAST_HOLEY_SMI_ELEMENTS:
4216 case FAST_HOLEY_ELEMENTS:
4217 case FAST_HOLEY_DOUBLE_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004218 case DICTIONARY_ELEMENTS:
4219 case NON_STRICT_ARGUMENTS_ELEMENTS:
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004220 UNREACHABLE();
4221 break;
4222 }
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004223 }
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004224}
4225
4226
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004227void LCodeGen::DoStoreKeyedFixedDoubleArray(LStoreKeyed* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004228 CpuFeatures::Scope scope(SSE2);
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004229 XMMRegister value = ToDoubleRegister(instr->value());
4230
4231 if (instr->NeedsCanonicalization()) {
4232 Label have_value;
4233
4234 __ ucomisd(value, value);
4235 __ j(parity_odd, &have_value); // NaN.
4236
4237 ExternalReference canonical_nan_reference =
4238 ExternalReference::address_of_canonical_non_hole_nan();
4239 __ movdbl(value, Operand::StaticVariable(canonical_nan_reference));
4240 __ bind(&have_value);
4241 }
4242
4243 Operand double_store_operand = BuildFastArrayOperand(
4244 instr->elements(),
4245 instr->key(),
4246 instr->hydrogen()->key()->representation(),
4247 FAST_DOUBLE_ELEMENTS,
4248 FixedDoubleArray::kHeaderSize - kHeapObjectTag,
4249 instr->additional_index());
4250 __ movdbl(double_store_operand, value);
4251}
4252
4253
4254void LCodeGen::DoStoreKeyedFixedArray(LStoreKeyed* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004255 Register value = ToRegister(instr->value());
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004256 Register elements = ToRegister(instr->elements());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004257 Register key = instr->key()->IsRegister() ? ToRegister(instr->key()) : no_reg;
4258
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004259 Operand operand = BuildFastArrayOperand(
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004260 instr->elements(),
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004261 instr->key(),
yangguo@chromium.org304cc332012-07-24 07:59:48 +00004262 instr->hydrogen()->key()->representation(),
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004263 FAST_ELEMENTS,
4264 FixedArray::kHeaderSize - kHeapObjectTag,
4265 instr->additional_index());
4266 __ mov(operand, value);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004267
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004268 if (instr->hydrogen()->NeedsWriteBarrier()) {
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004269 ASSERT(!instr->key()->IsConstantOperand());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004270 HType type = instr->hydrogen()->value()->type();
4271 SmiCheck check_needed =
4272 type.IsHeapObject() ? OMIT_SMI_CHECK : INLINE_SMI_CHECK;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004273 // Compute address of modified element and store it into key register.
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004274 __ lea(key, operand);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004275 __ RecordWrite(elements,
4276 key,
4277 value,
4278 kSaveFPRegs,
4279 EMIT_REMEMBERED_SET,
4280 check_needed);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004281 }
4282}
4283
4284
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004285void LCodeGen::DoStoreKeyed(LStoreKeyed* instr) {
4286 // By cases...external, fast-double, fast
4287 if (instr->is_external()) {
4288 DoStoreKeyedExternalArray(instr);
4289 } else if (instr->hydrogen()->value()->representation().IsDouble()) {
4290 DoStoreKeyedFixedDoubleArray(instr);
4291 } else {
4292 DoStoreKeyedFixedArray(instr);
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00004293 }
rossberg@chromium.org717967f2011-07-20 13:44:42 +00004294}
4295
4296
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004297void LCodeGen::DoStoreKeyedGeneric(LStoreKeyedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004298 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004299 ASSERT(ToRegister(instr->object()).is(edx));
4300 ASSERT(ToRegister(instr->key()).is(ecx));
4301 ASSERT(ToRegister(instr->value()).is(eax));
4302
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004303 Handle<Code> ic = (instr->strict_mode_flag() == kStrictMode)
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004304 ? isolate()->builtins()->KeyedStoreIC_Initialize_Strict()
4305 : isolate()->builtins()->KeyedStoreIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004306 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004307}
4308
4309
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004310void LCodeGen::DoTrapAllocationMemento(LTrapAllocationMemento* instr) {
4311 Register object = ToRegister(instr->object());
4312 Register temp = ToRegister(instr->temp());
4313 __ TestJSArrayForAllocationSiteInfo(object, temp);
4314 DeoptimizeIf(equal, instr->environment());
4315}
4316
4317
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004318void LCodeGen::DoTransitionElementsKind(LTransitionElementsKind* instr) {
4319 Register object_reg = ToRegister(instr->object());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004320
4321 Handle<Map> from_map = instr->original_map();
4322 Handle<Map> to_map = instr->transitioned_map();
yangguo@chromium.org003650e2013-01-24 16:31:08 +00004323 ElementsKind from_kind = instr->from_kind();
4324 ElementsKind to_kind = instr->to_kind();
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004325
4326 Label not_applicable;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004327 bool is_simple_map_transition =
4328 IsSimpleMapChangeTransition(from_kind, to_kind);
4329 Label::Distance branch_distance =
4330 is_simple_map_transition ? Label::kNear : Label::kFar;
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004331 __ cmp(FieldOperand(object_reg, HeapObject::kMapOffset), from_map);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004332 __ j(not_equal, &not_applicable, branch_distance);
4333 if (is_simple_map_transition) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004334 Register new_map_reg = ToRegister(instr->new_map_temp());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004335 Handle<Map> map = instr->hydrogen()->transitioned_map();
4336 __ mov(FieldOperand(object_reg, HeapObject::kMapOffset),
4337 Immediate(map));
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004338 // Write barrier.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004339 ASSERT_NE(instr->temp(), NULL);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004340 __ RecordWriteForMap(object_reg, to_map, new_map_reg,
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004341 ToRegister(instr->temp()),
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004342 kDontSaveFPRegs);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004343 } else if (FLAG_compiled_transitions) {
4344 PushSafepointRegistersScope scope(this);
4345 if (!object_reg.is(eax)) {
4346 __ push(object_reg);
4347 }
4348 LoadContextFromDeferred(instr->context());
4349 if (!object_reg.is(eax)) {
4350 __ pop(eax);
4351 }
4352 __ mov(ebx, to_map);
4353 TransitionElementsKindStub stub(from_kind, to_kind);
4354 __ CallStub(&stub);
4355 RecordSafepointWithRegisters(
4356 instr->pointer_map(), 0, Safepoint::kNoLazyDeopt);
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004357 } else if (IsFastSmiElementsKind(from_kind) &&
4358 IsFastDoubleElementsKind(to_kind)) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004359 Register new_map_reg = ToRegister(instr->new_map_temp());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004360 __ mov(new_map_reg, to_map);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004361 Register fixed_object_reg = ToRegister(instr->temp());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004362 ASSERT(fixed_object_reg.is(edx));
4363 ASSERT(new_map_reg.is(ebx));
4364 __ mov(fixed_object_reg, object_reg);
4365 CallCode(isolate()->builtins()->TransitionElementsSmiToDouble(),
4366 RelocInfo::CODE_TARGET, instr);
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004367 } else if (IsFastDoubleElementsKind(from_kind) &&
4368 IsFastObjectElementsKind(to_kind)) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004369 Register new_map_reg = ToRegister(instr->new_map_temp());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004370 __ mov(new_map_reg, to_map);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004371 Register fixed_object_reg = ToRegister(instr->temp());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004372 ASSERT(fixed_object_reg.is(edx));
4373 ASSERT(new_map_reg.is(ebx));
4374 __ mov(fixed_object_reg, object_reg);
4375 CallCode(isolate()->builtins()->TransitionElementsDoubleToObject(),
4376 RelocInfo::CODE_TARGET, instr);
4377 } else {
4378 UNREACHABLE();
4379 }
4380 __ bind(&not_applicable);
4381}
4382
4383
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004384void LCodeGen::DoStringCharCodeAt(LStringCharCodeAt* instr) {
4385 class DeferredStringCharCodeAt: public LDeferredCode {
4386 public:
4387 DeferredStringCharCodeAt(LCodeGen* codegen, LStringCharCodeAt* instr)
4388 : LDeferredCode(codegen), instr_(instr) { }
4389 virtual void Generate() { codegen()->DoDeferredStringCharCodeAt(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004390 virtual LInstruction* instr() { return instr_; }
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004391 private:
4392 LStringCharCodeAt* instr_;
4393 };
4394
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004395 DeferredStringCharCodeAt* deferred =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004396 new(zone()) DeferredStringCharCodeAt(this, instr);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004397
erikcorry0ad885c2011-11-21 13:51:57 +00004398 StringCharLoadGenerator::Generate(masm(),
4399 factory(),
4400 ToRegister(instr->string()),
4401 ToRegister(instr->index()),
4402 ToRegister(instr->result()),
4403 deferred->entry());
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004404 __ bind(deferred->exit());
4405}
4406
4407
4408void LCodeGen::DoDeferredStringCharCodeAt(LStringCharCodeAt* instr) {
4409 Register string = ToRegister(instr->string());
4410 Register result = ToRegister(instr->result());
4411
4412 // TODO(3095996): Get rid of this. For now, we need to make the
4413 // result register contain a valid pointer because it is already
4414 // contained in the register pointer map.
4415 __ Set(result, Immediate(0));
4416
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004417 PushSafepointRegistersScope scope(this);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004418 __ push(string);
4419 // Push the index as a smi. This is safe because of the checks in
4420 // DoStringCharCodeAt above.
4421 STATIC_ASSERT(String::kMaxLength <= Smi::kMaxValue);
4422 if (instr->index()->IsConstantOperand()) {
4423 int const_index = ToInteger32(LConstantOperand::cast(instr->index()));
4424 __ push(Immediate(Smi::FromInt(const_index)));
4425 } else {
4426 Register index = ToRegister(instr->index());
4427 __ SmiTag(index);
4428 __ push(index);
4429 }
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004430 CallRuntimeFromDeferred(Runtime::kStringCharCodeAt, 2,
4431 instr, instr->context());
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00004432 __ AssertSmi(eax);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004433 __ SmiUntag(eax);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004434 __ StoreToSafepointRegisterSlot(result, eax);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004435}
4436
4437
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004438void LCodeGen::DoStringCharFromCode(LStringCharFromCode* instr) {
4439 class DeferredStringCharFromCode: public LDeferredCode {
4440 public:
4441 DeferredStringCharFromCode(LCodeGen* codegen, LStringCharFromCode* instr)
4442 : LDeferredCode(codegen), instr_(instr) { }
4443 virtual void Generate() { codegen()->DoDeferredStringCharFromCode(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004444 virtual LInstruction* instr() { return instr_; }
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004445 private:
4446 LStringCharFromCode* instr_;
4447 };
4448
4449 DeferredStringCharFromCode* deferred =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004450 new(zone()) DeferredStringCharFromCode(this, instr);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004451
4452 ASSERT(instr->hydrogen()->value()->representation().IsInteger32());
4453 Register char_code = ToRegister(instr->char_code());
4454 Register result = ToRegister(instr->result());
4455 ASSERT(!char_code.is(result));
4456
jkummerow@chromium.org59297c72013-01-09 16:32:23 +00004457 __ cmp(char_code, String::kMaxOneByteCharCode);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004458 __ j(above, deferred->entry());
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004459 __ Set(result, Immediate(factory()->single_character_string_cache()));
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004460 __ mov(result, FieldOperand(result,
4461 char_code, times_pointer_size,
4462 FixedArray::kHeaderSize));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004463 __ cmp(result, factory()->undefined_value());
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004464 __ j(equal, deferred->entry());
4465 __ bind(deferred->exit());
4466}
4467
4468
4469void LCodeGen::DoDeferredStringCharFromCode(LStringCharFromCode* instr) {
4470 Register char_code = ToRegister(instr->char_code());
4471 Register result = ToRegister(instr->result());
4472
4473 // TODO(3095996): Get rid of this. For now, we need to make the
4474 // result register contain a valid pointer because it is already
4475 // contained in the register pointer map.
4476 __ Set(result, Immediate(0));
4477
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004478 PushSafepointRegistersScope scope(this);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004479 __ SmiTag(char_code);
4480 __ push(char_code);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004481 CallRuntimeFromDeferred(Runtime::kCharFromCode, 1, instr, instr->context());
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004482 __ StoreToSafepointRegisterSlot(result, eax);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004483}
4484
4485
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004486void LCodeGen::DoStringLength(LStringLength* instr) {
4487 Register string = ToRegister(instr->string());
4488 Register result = ToRegister(instr->result());
4489 __ mov(result, FieldOperand(string, String::kLengthOffset));
4490}
4491
4492
danno@chromium.org160a7b02011-04-18 15:51:38 +00004493void LCodeGen::DoStringAdd(LStringAdd* instr) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00004494 EmitPushTaggedOperand(instr->left());
4495 EmitPushTaggedOperand(instr->right());
danno@chromium.org160a7b02011-04-18 15:51:38 +00004496 StringAddStub stub(NO_STRING_CHECK_IN_STUB);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004497 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
danno@chromium.org160a7b02011-04-18 15:51:38 +00004498}
4499
4500
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004501void LCodeGen::DoInteger32ToDouble(LInteger32ToDouble* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004502 if (CpuFeatures::IsSupported(SSE2)) {
4503 CpuFeatures::Scope scope(SSE2);
4504 LOperand* input = instr->value();
4505 ASSERT(input->IsRegister() || input->IsStackSlot());
4506 LOperand* output = instr->result();
4507 ASSERT(output->IsDoubleRegister());
4508 __ cvtsi2sd(ToDoubleRegister(output), ToOperand(input));
4509 } else {
4510 UNREACHABLE();
4511 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004512}
4513
4514
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004515void LCodeGen::DoUint32ToDouble(LUint32ToDouble* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004516 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004517 LOperand* input = instr->value();
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004518 LOperand* output = instr->result();
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004519 LOperand* temp = instr->temp();
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004520
4521 __ LoadUint32(ToDoubleRegister(output),
4522 ToRegister(input),
4523 ToDoubleRegister(temp));
4524}
4525
4526
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004527void LCodeGen::DoNumberTagI(LNumberTagI* instr) {
4528 class DeferredNumberTagI: public LDeferredCode {
4529 public:
4530 DeferredNumberTagI(LCodeGen* codegen, LNumberTagI* instr)
4531 : LDeferredCode(codegen), instr_(instr) { }
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004532 virtual void Generate() {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004533 codegen()->DoDeferredNumberTagI(instr_, instr_->value(), SIGNED_INT32);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004534 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004535 virtual LInstruction* instr() { return instr_; }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004536 private:
4537 LNumberTagI* instr_;
4538 };
4539
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004540 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004541 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4542 Register reg = ToRegister(input);
4543
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004544 DeferredNumberTagI* deferred = new(zone()) DeferredNumberTagI(this, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004545 __ SmiTag(reg);
4546 __ j(overflow, deferred->entry());
4547 __ bind(deferred->exit());
4548}
4549
4550
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004551void LCodeGen::DoNumberTagU(LNumberTagU* instr) {
4552 class DeferredNumberTagU: public LDeferredCode {
4553 public:
4554 DeferredNumberTagU(LCodeGen* codegen, LNumberTagU* instr)
4555 : LDeferredCode(codegen), instr_(instr) { }
4556 virtual void Generate() {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004557 codegen()->DoDeferredNumberTagI(instr_, instr_->value(), UNSIGNED_INT32);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004558 }
4559 virtual LInstruction* instr() { return instr_; }
4560 private:
4561 LNumberTagU* instr_;
4562 };
4563
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004564 LOperand* input = instr->value();
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004565 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4566 Register reg = ToRegister(input);
4567
4568 DeferredNumberTagU* deferred = new(zone()) DeferredNumberTagU(this, instr);
4569 __ cmp(reg, Immediate(Smi::kMaxValue));
4570 __ j(above, deferred->entry());
4571 __ SmiTag(reg);
4572 __ bind(deferred->exit());
4573}
4574
4575
4576void LCodeGen::DoDeferredNumberTagI(LInstruction* instr,
4577 LOperand* value,
4578 IntegerSignedness signedness) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004579 Label slow;
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004580 Register reg = ToRegister(value);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004581 Register tmp = reg.is(eax) ? ecx : eax;
4582
4583 // Preserve the value of all registers.
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004584 PushSafepointRegistersScope scope(this);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004585
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004586 Label done;
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004587
4588 if (signedness == SIGNED_INT32) {
4589 // There was overflow, so bits 30 and 31 of the original integer
4590 // disagree. Try to allocate a heap number in new space and store
4591 // the value in there. If that fails, call the runtime system.
4592 __ SmiUntag(reg);
4593 __ xor_(reg, 0x80000000);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004594 if (CpuFeatures::IsSupported(SSE2)) {
4595 CpuFeatures::Scope feature_scope(SSE2);
4596 __ cvtsi2sd(xmm0, Operand(reg));
4597 } else {
4598 __ push(reg);
4599 __ fild_s(Operand(esp, 0));
4600 __ pop(reg);
4601 }
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004602 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004603 if (CpuFeatures::IsSupported(SSE2)) {
4604 CpuFeatures::Scope feature_scope(SSE2);
4605 __ LoadUint32(xmm0, reg, xmm1);
4606 } else {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +00004607 // There's no fild variant for unsigned values, so zero-extend to a 64-bit
4608 // int manually.
4609 __ push(Immediate(0));
4610 __ push(reg);
4611 __ fild_d(Operand(esp, 0));
4612 __ pop(reg);
4613 __ pop(reg);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004614 }
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004615 }
4616
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004617 if (FLAG_inline_new) {
4618 __ AllocateHeapNumber(reg, tmp, no_reg, &slow);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004619 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004620 }
4621
4622 // Slow case: Call the runtime system to do the number allocation.
4623 __ bind(&slow);
4624
4625 // TODO(3095996): Put a valid pointer value in the stack slot where the result
4626 // register is stored, as this register is in the pointer map, but contains an
4627 // integer value.
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004628 __ StoreToSafepointRegisterSlot(reg, Immediate(0));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004629 // NumberTagI and NumberTagD use the context from the frame, rather than
4630 // the environment's HContext or HInlinedContext value.
4631 // They only call Runtime::kAllocateHeapNumber.
4632 // The corresponding HChange instructions are added in a phase that does
4633 // not have easy access to the local context.
4634 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
4635 __ CallRuntimeSaveDoubles(Runtime::kAllocateHeapNumber);
4636 RecordSafepointWithRegisters(
ricow@chromium.org27bf2882011-11-17 08:34:43 +00004637 instr->pointer_map(), 0, Safepoint::kNoLazyDeopt);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004638 if (!reg.is(eax)) __ mov(reg, eax);
4639
4640 // Done. Put the value in xmm0 into the value of the allocated heap
4641 // number.
4642 __ bind(&done);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004643 if (CpuFeatures::IsSupported(SSE2)) {
4644 CpuFeatures::Scope feature_scope(SSE2);
4645 __ movdbl(FieldOperand(reg, HeapNumber::kValueOffset), xmm0);
4646 } else {
4647 __ fstp_d(FieldOperand(reg, HeapNumber::kValueOffset));
4648 }
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004649 __ StoreToSafepointRegisterSlot(reg, reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004650}
4651
4652
4653void LCodeGen::DoNumberTagD(LNumberTagD* instr) {
4654 class DeferredNumberTagD: public LDeferredCode {
4655 public:
4656 DeferredNumberTagD(LCodeGen* codegen, LNumberTagD* instr)
4657 : LDeferredCode(codegen), instr_(instr) { }
4658 virtual void Generate() { codegen()->DoDeferredNumberTagD(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004659 virtual LInstruction* instr() { return instr_; }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004660 private:
4661 LNumberTagD* instr_;
4662 };
4663
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004664 Register reg = ToRegister(instr->result());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004665
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004666 bool convert_hole = false;
4667 HValue* change_input = instr->hydrogen()->value();
4668 if (change_input->IsLoadKeyed()) {
4669 HLoadKeyed* load = HLoadKeyed::cast(change_input);
4670 convert_hole = load->UsesMustHandleHole();
4671 }
4672
4673 Label no_special_nan_handling;
4674 Label done;
4675 if (convert_hole) {
4676 bool use_sse2 = CpuFeatures::IsSupported(SSE2);
4677 if (use_sse2) {
4678 CpuFeatures::Scope scope(SSE2);
4679 XMMRegister input_reg = ToDoubleRegister(instr->value());
4680 __ ucomisd(input_reg, input_reg);
4681 } else {
4682 if (!IsX87TopOfStack(instr->value())) {
4683 __ fld_d(ToOperand(instr->value()));
4684 }
4685 __ fld(0);
4686 __ fld(0);
4687 __ FCmp();
4688 }
4689
4690 __ j(parity_odd, &no_special_nan_handling);
4691 __ sub(esp, Immediate(kDoubleSize));
4692 if (use_sse2) {
4693 CpuFeatures::Scope scope(SSE2);
4694 XMMRegister input_reg = ToDoubleRegister(instr->value());
4695 __ movdbl(MemOperand(esp, 0), input_reg);
4696 } else {
4697 __ fld(0);
4698 __ fstp_d(MemOperand(esp, 0));
4699 }
4700 __ cmp(MemOperand(esp, sizeof(kHoleNanLower32)),
4701 Immediate(kHoleNanUpper32));
4702 Label canonicalize;
4703 __ j(not_equal, &canonicalize);
4704 __ add(esp, Immediate(kDoubleSize));
4705 __ mov(reg, factory()->the_hole_value());
4706 __ jmp(&done);
4707 __ bind(&canonicalize);
4708 __ add(esp, Immediate(kDoubleSize));
4709 ExternalReference nan =
4710 ExternalReference::address_of_canonical_non_hole_nan();
4711 if (use_sse2) {
4712 CpuFeatures::Scope scope(SSE2);
4713 XMMRegister input_reg = ToDoubleRegister(instr->value());
4714 __ movdbl(input_reg, Operand::StaticVariable(nan));
4715 } else {
4716 __ fstp(0);
4717 __ fld_d(Operand::StaticVariable(nan));
4718 }
4719 }
4720
4721 __ bind(&no_special_nan_handling);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004722 DeferredNumberTagD* deferred = new(zone()) DeferredNumberTagD(this, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004723 if (FLAG_inline_new) {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +00004724 Register tmp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004725 __ AllocateHeapNumber(reg, tmp, no_reg, deferred->entry());
4726 } else {
4727 __ jmp(deferred->entry());
4728 }
4729 __ bind(deferred->exit());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004730 if (CpuFeatures::IsSupported(SSE2)) {
4731 CpuFeatures::Scope scope(SSE2);
4732 XMMRegister input_reg = ToDoubleRegister(instr->value());
4733 __ movdbl(FieldOperand(reg, HeapNumber::kValueOffset), input_reg);
4734 } else {
4735 if (!IsX87TopOfStack(instr->value())) {
4736 __ fld_d(ToOperand(instr->value()));
4737 }
4738 __ fstp_d(FieldOperand(reg, HeapNumber::kValueOffset));
4739 }
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004740 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004741}
4742
4743
4744void LCodeGen::DoDeferredNumberTagD(LNumberTagD* instr) {
4745 // TODO(3095996): Get rid of this. For now, we need to make the
4746 // result register contain a valid pointer because it is already
4747 // contained in the register pointer map.
4748 Register reg = ToRegister(instr->result());
4749 __ Set(reg, Immediate(0));
4750
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004751 PushSafepointRegistersScope scope(this);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004752 // NumberTagI and NumberTagD use the context from the frame, rather than
4753 // the environment's HContext or HInlinedContext value.
4754 // They only call Runtime::kAllocateHeapNumber.
4755 // The corresponding HChange instructions are added in a phase that does
4756 // not have easy access to the local context.
4757 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
4758 __ CallRuntimeSaveDoubles(Runtime::kAllocateHeapNumber);
ricow@chromium.org27bf2882011-11-17 08:34:43 +00004759 RecordSafepointWithRegisters(
4760 instr->pointer_map(), 0, Safepoint::kNoLazyDeopt);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004761 __ StoreToSafepointRegisterSlot(reg, eax);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004762}
4763
4764
4765void LCodeGen::DoSmiTag(LSmiTag* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004766 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004767 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4768 ASSERT(!instr->hydrogen_value()->CheckFlag(HValue::kCanOverflow));
4769 __ SmiTag(ToRegister(input));
4770}
4771
4772
4773void LCodeGen::DoSmiUntag(LSmiUntag* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004774 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004775 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4776 if (instr->needs_check()) {
4777 __ test(ToRegister(input), Immediate(kSmiTagMask));
4778 DeoptimizeIf(not_zero, instr->environment());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004779 } else {
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00004780 __ AssertSmi(ToRegister(input));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004781 }
4782 __ SmiUntag(ToRegister(input));
4783}
4784
4785
4786void LCodeGen::EmitNumberUntagD(Register input_reg,
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00004787 Register temp_reg,
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004788 XMMRegister result_reg,
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004789 bool deoptimize_on_undefined,
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00004790 bool deoptimize_on_minus_zero,
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004791 LEnvironment* env,
4792 NumberUntagDMode mode) {
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004793 Label load_smi, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004794
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004795 if (mode == NUMBER_CANDIDATE_IS_ANY_TAGGED) {
4796 // Smi check.
4797 __ JumpIfSmi(input_reg, &load_smi, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004798
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004799 // Heap number map check.
4800 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
4801 factory()->heap_number_map());
4802 if (deoptimize_on_undefined) {
4803 DeoptimizeIf(not_equal, env);
4804 } else {
4805 Label heap_number;
4806 __ j(equal, &heap_number, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004807
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004808 __ cmp(input_reg, factory()->undefined_value());
4809 DeoptimizeIf(not_equal, env);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004810
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004811 // Convert undefined to NaN.
4812 ExternalReference nan =
4813 ExternalReference::address_of_canonical_non_hole_nan();
4814 __ movdbl(result_reg, Operand::StaticVariable(nan));
4815 __ jmp(&done, Label::kNear);
4816
4817 __ bind(&heap_number);
4818 }
4819 // Heap number to XMM conversion.
4820 __ movdbl(result_reg, FieldOperand(input_reg, HeapNumber::kValueOffset));
4821 if (deoptimize_on_minus_zero) {
4822 XMMRegister xmm_scratch = xmm0;
4823 __ xorps(xmm_scratch, xmm_scratch);
4824 __ ucomisd(result_reg, xmm_scratch);
4825 __ j(not_zero, &done, Label::kNear);
4826 __ movmskpd(temp_reg, result_reg);
4827 __ test_b(temp_reg, 1);
4828 DeoptimizeIf(not_zero, env);
4829 }
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004830 __ jmp(&done, Label::kNear);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004831 } else if (mode == NUMBER_CANDIDATE_IS_SMI_OR_HOLE) {
4832 __ test(input_reg, Immediate(kSmiTagMask));
4833 DeoptimizeIf(not_equal, env);
4834 } else if (mode == NUMBER_CANDIDATE_IS_SMI_CONVERT_HOLE) {
4835 __ test(input_reg, Immediate(kSmiTagMask));
4836 __ j(zero, &load_smi);
4837 ExternalReference hole_nan_reference =
4838 ExternalReference::address_of_the_hole_nan();
4839 __ movdbl(result_reg, Operand::StaticVariable(hole_nan_reference));
4840 __ jmp(&done, Label::kNear);
4841 } else {
4842 ASSERT(mode == NUMBER_CANDIDATE_IS_SMI);
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004843 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004844
4845 // Smi to XMM conversion
4846 __ bind(&load_smi);
4847 __ SmiUntag(input_reg); // Untag smi before converting to float.
4848 __ cvtsi2sd(result_reg, Operand(input_reg));
4849 __ SmiTag(input_reg); // Retag smi.
4850 __ bind(&done);
4851}
4852
4853
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004854void LCodeGen::DoDeferredTaggedToI(LTaggedToI* instr) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004855 Label done, heap_number;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004856 Register input_reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004857
4858 // Heap number map check.
4859 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004860 factory()->heap_number_map());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004861
4862 if (instr->truncating()) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004863 __ j(equal, &heap_number, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004864 // Check for undefined. Undefined is converted to zero for truncating
4865 // conversions.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004866 __ cmp(input_reg, factory()->undefined_value());
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004867 __ RecordComment("Deferred TaggedToI: cannot truncate");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004868 DeoptimizeIf(not_equal, instr->environment());
4869 __ mov(input_reg, 0);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004870 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004871
4872 __ bind(&heap_number);
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00004873 if (CpuFeatures::IsSupported(SSE3)) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004874 CpuFeatures::Scope scope(SSE3);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004875 Label convert;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004876 // Use more powerful conversion when sse3 is available.
4877 // Load x87 register with heap number.
4878 __ fld_d(FieldOperand(input_reg, HeapNumber::kValueOffset));
4879 // Get exponent alone and check for too-big exponent.
4880 __ mov(input_reg, FieldOperand(input_reg, HeapNumber::kExponentOffset));
4881 __ and_(input_reg, HeapNumber::kExponentMask);
4882 const uint32_t kTooBigExponent =
4883 (HeapNumber::kExponentBias + 63) << HeapNumber::kExponentShift;
4884 __ cmp(Operand(input_reg), Immediate(kTooBigExponent));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004885 __ j(less, &convert, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004886 // Pop FPU stack before deoptimizing.
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004887 __ fstp(0);
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004888 __ RecordComment("Deferred TaggedToI: exponent too big");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004889 DeoptimizeIf(no_condition, instr->environment());
4890
4891 // Reserve space for 64 bit answer.
4892 __ bind(&convert);
4893 __ sub(Operand(esp), Immediate(kDoubleSize));
4894 // Do conversion, which cannot fail because we checked the exponent.
4895 __ fisttp_d(Operand(esp, 0));
4896 __ mov(input_reg, Operand(esp, 0)); // Low word of answer is the result.
4897 __ add(Operand(esp), Immediate(kDoubleSize));
4898 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004899 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004900 XMMRegister xmm_temp = ToDoubleRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004901 __ movdbl(xmm0, FieldOperand(input_reg, HeapNumber::kValueOffset));
4902 __ cvttsd2si(input_reg, Operand(xmm0));
4903 __ cmp(input_reg, 0x80000000u);
4904 __ j(not_equal, &done);
4905 // Check if the input was 0x8000000 (kMinInt).
4906 // If no, then we got an overflow and we deoptimize.
4907 ExternalReference min_int = ExternalReference::address_of_min_int();
4908 __ movdbl(xmm_temp, Operand::StaticVariable(min_int));
4909 __ ucomisd(xmm_temp, xmm0);
4910 DeoptimizeIf(not_equal, instr->environment());
4911 DeoptimizeIf(parity_even, instr->environment()); // NaN.
4912 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004913 } else if (CpuFeatures::IsSupported(SSE2)) {
4914 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004915 // Deoptimize if we don't have a heap number.
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004916 __ RecordComment("Deferred TaggedToI: not a heap number");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004917 DeoptimizeIf(not_equal, instr->environment());
4918
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004919 XMMRegister xmm_temp = ToDoubleRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004920 __ movdbl(xmm0, FieldOperand(input_reg, HeapNumber::kValueOffset));
4921 __ cvttsd2si(input_reg, Operand(xmm0));
4922 __ cvtsi2sd(xmm_temp, Operand(input_reg));
4923 __ ucomisd(xmm0, xmm_temp);
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004924 __ RecordComment("Deferred TaggedToI: lost precision");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004925 DeoptimizeIf(not_equal, instr->environment());
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004926 __ RecordComment("Deferred TaggedToI: NaN");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004927 DeoptimizeIf(parity_even, instr->environment()); // NaN.
4928 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
4929 __ test(input_reg, Operand(input_reg));
4930 __ j(not_zero, &done);
4931 __ movmskpd(input_reg, xmm0);
4932 __ and_(input_reg, 1);
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004933 __ RecordComment("Deferred TaggedToI: minus zero");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004934 DeoptimizeIf(not_zero, instr->environment());
4935 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004936 } else {
4937 UNREACHABLE();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004938 }
4939 __ bind(&done);
4940}
4941
4942
4943void LCodeGen::DoTaggedToI(LTaggedToI* instr) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004944 class DeferredTaggedToI: public LDeferredCode {
4945 public:
4946 DeferredTaggedToI(LCodeGen* codegen, LTaggedToI* instr)
4947 : LDeferredCode(codegen), instr_(instr) { }
4948 virtual void Generate() { codegen()->DoDeferredTaggedToI(instr_); }
4949 virtual LInstruction* instr() { return instr_; }
4950 private:
4951 LTaggedToI* instr_;
4952 };
4953
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004954 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004955 ASSERT(input->IsRegister());
4956 ASSERT(input->Equals(instr->result()));
4957
4958 Register input_reg = ToRegister(input);
4959
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004960 DeferredTaggedToI* deferred = new(zone()) DeferredTaggedToI(this, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004961
4962 // Smi check.
whesse@chromium.org7b260152011-06-20 15:33:18 +00004963 __ JumpIfNotSmi(input_reg, deferred->entry());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004964
4965 // Smi to int32 conversion
4966 __ SmiUntag(input_reg); // Untag smi.
4967
4968 __ bind(deferred->exit());
4969}
4970
4971
4972void LCodeGen::DoNumberUntagD(LNumberUntagD* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004973 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004974 ASSERT(input->IsRegister());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004975 LOperand* temp = instr->temp();
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00004976 ASSERT(temp == NULL || temp->IsRegister());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004977 LOperand* result = instr->result();
4978 ASSERT(result->IsDoubleRegister());
4979
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004980 if (CpuFeatures::IsSupported(SSE2)) {
4981 CpuFeatures::Scope scope(SSE2);
4982 Register input_reg = ToRegister(input);
4983 XMMRegister result_reg = ToDoubleRegister(result);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004984
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004985 bool deoptimize_on_minus_zero =
4986 instr->hydrogen()->deoptimize_on_minus_zero();
4987 Register temp_reg = deoptimize_on_minus_zero ? ToRegister(temp) : no_reg;
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00004988
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004989 NumberUntagDMode mode = NUMBER_CANDIDATE_IS_ANY_TAGGED;
4990 HValue* value = instr->hydrogen()->value();
4991 if (value->type().IsSmi()) {
4992 if (value->IsLoadKeyed()) {
4993 HLoadKeyed* load = HLoadKeyed::cast(value);
4994 if (load->UsesMustHandleHole()) {
4995 if (load->hole_mode() == ALLOW_RETURN_HOLE) {
4996 mode = NUMBER_CANDIDATE_IS_SMI_CONVERT_HOLE;
4997 } else {
4998 mode = NUMBER_CANDIDATE_IS_SMI_OR_HOLE;
4999 }
5000 } else {
5001 mode = NUMBER_CANDIDATE_IS_SMI;
5002 }
5003 }
5004 }
5005
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005006 EmitNumberUntagD(input_reg,
5007 temp_reg,
5008 result_reg,
5009 instr->hydrogen()->deoptimize_on_undefined(),
5010 deoptimize_on_minus_zero,
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005011 instr->environment(),
5012 mode);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005013 } else {
5014 UNIMPLEMENTED();
5015 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005016}
5017
5018
5019void LCodeGen::DoDoubleToI(LDoubleToI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005020 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005021 ASSERT(input->IsDoubleRegister());
5022 LOperand* result = instr->result();
5023 ASSERT(result->IsRegister());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005024 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005025
5026 XMMRegister input_reg = ToDoubleRegister(input);
5027 Register result_reg = ToRegister(result);
5028
5029 if (instr->truncating()) {
5030 // Performs a truncating conversion of a floating point number as used by
5031 // the JS bitwise operations.
5032 __ cvttsd2si(result_reg, Operand(input_reg));
5033 __ cmp(result_reg, 0x80000000u);
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00005034 if (CpuFeatures::IsSupported(SSE3)) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005035 // This will deoptimize if the exponent of the input in out of range.
5036 CpuFeatures::Scope scope(SSE3);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005037 Label convert, done;
5038 __ j(not_equal, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005039 __ sub(Operand(esp), Immediate(kDoubleSize));
5040 __ movdbl(Operand(esp, 0), input_reg);
5041 // Get exponent alone and check for too-big exponent.
5042 __ mov(result_reg, Operand(esp, sizeof(int32_t)));
5043 __ and_(result_reg, HeapNumber::kExponentMask);
5044 const uint32_t kTooBigExponent =
5045 (HeapNumber::kExponentBias + 63) << HeapNumber::kExponentShift;
5046 __ cmp(Operand(result_reg), Immediate(kTooBigExponent));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005047 __ j(less, &convert, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005048 __ add(Operand(esp), Immediate(kDoubleSize));
5049 DeoptimizeIf(no_condition, instr->environment());
5050 __ bind(&convert);
5051 // Do conversion, which cannot fail because we checked the exponent.
5052 __ fld_d(Operand(esp, 0));
5053 __ fisttp_d(Operand(esp, 0));
5054 __ mov(result_reg, Operand(esp, 0)); // Low word of answer is the result.
5055 __ add(Operand(esp), Immediate(kDoubleSize));
5056 __ bind(&done);
5057 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005058 Label done;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005059 Register temp_reg = ToRegister(instr->temp());
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00005060 XMMRegister xmm_scratch = xmm0;
5061
5062 // If cvttsd2si succeeded, we're done. Otherwise, we attempt
5063 // manual conversion.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005064 __ j(not_equal, &done, Label::kNear);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00005065
5066 // Get high 32 bits of the input in result_reg and temp_reg.
5067 __ pshufd(xmm_scratch, input_reg, 1);
5068 __ movd(Operand(temp_reg), xmm_scratch);
5069 __ mov(result_reg, temp_reg);
5070
5071 // Prepare negation mask in temp_reg.
5072 __ sar(temp_reg, kBitsPerInt - 1);
5073
5074 // Extract the exponent from result_reg and subtract adjusted
5075 // bias from it. The adjustment is selected in a way such that
5076 // when the difference is zero, the answer is in the low 32 bits
5077 // of the input, otherwise a shift has to be performed.
5078 __ shr(result_reg, HeapNumber::kExponentShift);
5079 __ and_(result_reg,
5080 HeapNumber::kExponentMask >> HeapNumber::kExponentShift);
5081 __ sub(Operand(result_reg),
5082 Immediate(HeapNumber::kExponentBias +
5083 HeapNumber::kExponentBits +
5084 HeapNumber::kMantissaBits));
5085 // Don't handle big (> kMantissaBits + kExponentBits == 63) or
5086 // special exponents.
5087 DeoptimizeIf(greater, instr->environment());
5088
5089 // Zero out the sign and the exponent in the input (by shifting
5090 // it to the left) and restore the implicit mantissa bit,
5091 // i.e. convert the input to unsigned int64 shifted left by
5092 // kExponentBits.
5093 ExternalReference minus_zero = ExternalReference::address_of_minus_zero();
5094 // Minus zero has the most significant bit set and the other
5095 // bits cleared.
5096 __ movdbl(xmm_scratch, Operand::StaticVariable(minus_zero));
5097 __ psllq(input_reg, HeapNumber::kExponentBits);
5098 __ por(input_reg, xmm_scratch);
5099
5100 // Get the amount to shift the input right in xmm_scratch.
5101 __ neg(result_reg);
5102 __ movd(xmm_scratch, Operand(result_reg));
5103
5104 // Shift the input right and extract low 32 bits.
5105 __ psrlq(input_reg, xmm_scratch);
5106 __ movd(Operand(result_reg), input_reg);
5107
5108 // Use the prepared mask in temp_reg to negate the result if necessary.
5109 __ xor_(result_reg, Operand(temp_reg));
5110 __ sub(result_reg, Operand(temp_reg));
5111 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005112 }
5113 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005114 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005115 __ cvttsd2si(result_reg, Operand(input_reg));
5116 __ cvtsi2sd(xmm0, Operand(result_reg));
5117 __ ucomisd(xmm0, input_reg);
5118 DeoptimizeIf(not_equal, instr->environment());
5119 DeoptimizeIf(parity_even, instr->environment()); // NaN.
5120 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
5121 // The integer converted back is equal to the original. We
5122 // only have to test if we got -0 as an input.
5123 __ test(result_reg, Operand(result_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005124 __ j(not_zero, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005125 __ movmskpd(result_reg, input_reg);
5126 // Bit 0 contains the sign of the double in input_reg.
5127 // If input was positive, we are ok and return 0, otherwise
5128 // deoptimize.
5129 __ and_(result_reg, 1);
5130 DeoptimizeIf(not_zero, instr->environment());
5131 }
5132 __ bind(&done);
5133 }
5134}
5135
5136
5137void LCodeGen::DoCheckSmi(LCheckSmi* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005138 LOperand* input = instr->value();
ricow@chromium.org4f693d62011-07-04 14:01:31 +00005139 __ test(ToOperand(input), Immediate(kSmiTagMask));
ricow@chromium.orgbadaffc2011-03-17 12:15:27 +00005140 DeoptimizeIf(not_zero, instr->environment());
5141}
5142
5143
5144void LCodeGen::DoCheckNonSmi(LCheckNonSmi* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005145 LOperand* input = instr->value();
ricow@chromium.org4f693d62011-07-04 14:01:31 +00005146 __ test(ToOperand(input), Immediate(kSmiTagMask));
ricow@chromium.orgbadaffc2011-03-17 12:15:27 +00005147 DeoptimizeIf(zero, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005148}
5149
5150
5151void LCodeGen::DoCheckInstanceType(LCheckInstanceType* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005152 Register input = ToRegister(instr->value());
5153 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005154
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005155 __ mov(temp, FieldOperand(input, HeapObject::kMapOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005156
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005157 if (instr->hydrogen()->is_interval_check()) {
5158 InstanceType first;
5159 InstanceType last;
5160 instr->hydrogen()->GetCheckInterval(&first, &last);
5161
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00005162 __ cmpb(FieldOperand(temp, Map::kInstanceTypeOffset),
5163 static_cast<int8_t>(first));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005164
5165 // If there is only one type in the interval check for equality.
5166 if (first == last) {
5167 DeoptimizeIf(not_equal, instr->environment());
5168 } else {
5169 DeoptimizeIf(below, instr->environment());
5170 // Omit check for the last type.
5171 if (last != LAST_TYPE) {
5172 __ cmpb(FieldOperand(temp, Map::kInstanceTypeOffset),
5173 static_cast<int8_t>(last));
5174 DeoptimizeIf(above, instr->environment());
5175 }
5176 }
5177 } else {
5178 uint8_t mask;
5179 uint8_t tag;
5180 instr->hydrogen()->GetCheckMaskAndTag(&mask, &tag);
5181
5182 if (IsPowerOf2(mask)) {
5183 ASSERT(tag == 0 || IsPowerOf2(tag));
5184 __ test_b(FieldOperand(temp, Map::kInstanceTypeOffset), mask);
5185 DeoptimizeIf(tag == 0 ? not_zero : zero, instr->environment());
5186 } else {
5187 __ movzx_b(temp, FieldOperand(temp, Map::kInstanceTypeOffset));
5188 __ and_(temp, mask);
yangguo@chromium.org56454712012-02-16 15:33:53 +00005189 __ cmp(temp, tag);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005190 DeoptimizeIf(not_equal, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005191 }
5192 }
5193}
5194
5195
5196void LCodeGen::DoCheckFunction(LCheckFunction* instr) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005197 Handle<JSFunction> target = instr->hydrogen()->target();
yangguo@chromium.org003650e2013-01-24 16:31:08 +00005198 if (instr->hydrogen()->target_in_new_space()) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005199 Register reg = ToRegister(instr->value());
5200 Handle<JSGlobalPropertyCell> cell =
5201 isolate()->factory()->NewJSGlobalPropertyCell(target);
5202 __ cmp(reg, Operand::Cell(cell));
5203 } else {
5204 Operand operand = ToOperand(instr->value());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005205 __ cmp(operand, target);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005206 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005207 DeoptimizeIf(not_equal, instr->environment());
5208}
5209
5210
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005211void LCodeGen::DoCheckMapCommon(Register reg,
5212 Handle<Map> map,
5213 CompareMapMode mode,
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005214 LInstruction* instr) {
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005215 Label success;
5216 __ CompareMap(reg, map, &success, mode);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005217 DeoptimizeIf(not_equal, instr->environment());
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005218 __ bind(&success);
5219}
5220
5221
jkummerow@chromium.org1456e702012-03-30 08:38:13 +00005222void LCodeGen::DoCheckMaps(LCheckMaps* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005223 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005224 ASSERT(input->IsRegister());
5225 Register reg = ToRegister(input);
jkummerow@chromium.org1456e702012-03-30 08:38:13 +00005226
5227 Label success;
5228 SmallMapList* map_set = instr->hydrogen()->map_set();
5229 for (int i = 0; i < map_set->length() - 1; i++) {
5230 Handle<Map> map = map_set->at(i);
5231 __ CompareMap(reg, map, &success, REQUIRE_EXACT_MAP);
5232 __ j(equal, &success);
5233 }
5234 Handle<Map> map = map_set->last();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005235 DoCheckMapCommon(reg, map, REQUIRE_EXACT_MAP, instr);
jkummerow@chromium.org1456e702012-03-30 08:38:13 +00005236 __ bind(&success);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005237}
5238
5239
kmillikin@chromium.orgc53e10d2011-05-18 09:12:58 +00005240void LCodeGen::DoClampDToUint8(LClampDToUint8* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005241 CpuFeatures::Scope scope(SSE2);
kmillikin@chromium.orgc53e10d2011-05-18 09:12:58 +00005242 XMMRegister value_reg = ToDoubleRegister(instr->unclamped());
5243 Register result_reg = ToRegister(instr->result());
5244 __ ClampDoubleToUint8(value_reg, xmm0, result_reg);
5245}
5246
5247
5248void LCodeGen::DoClampIToUint8(LClampIToUint8* instr) {
5249 ASSERT(instr->unclamped()->Equals(instr->result()));
5250 Register value_reg = ToRegister(instr->result());
5251 __ ClampUint8(value_reg);
5252}
5253
5254
5255void LCodeGen::DoClampTToUint8(LClampTToUint8* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005256 CpuFeatures::Scope scope(SSE2);
5257
kmillikin@chromium.orgc53e10d2011-05-18 09:12:58 +00005258 ASSERT(instr->unclamped()->Equals(instr->result()));
5259 Register input_reg = ToRegister(instr->unclamped());
5260 Label is_smi, done, heap_number;
5261
5262 __ JumpIfSmi(input_reg, &is_smi);
5263
5264 // Check for heap number
5265 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
5266 factory()->heap_number_map());
5267 __ j(equal, &heap_number, Label::kNear);
5268
5269 // Check for undefined. Undefined is converted to zero for clamping
5270 // conversions.
5271 __ cmp(input_reg, factory()->undefined_value());
5272 DeoptimizeIf(not_equal, instr->environment());
5273 __ mov(input_reg, 0);
5274 __ jmp(&done, Label::kNear);
5275
5276 // Heap number
5277 __ bind(&heap_number);
5278 __ movdbl(xmm0, FieldOperand(input_reg, HeapNumber::kValueOffset));
5279 __ ClampDoubleToUint8(xmm0, xmm1, input_reg);
5280 __ jmp(&done, Label::kNear);
5281
5282 // smi
5283 __ bind(&is_smi);
5284 __ SmiUntag(input_reg);
5285 __ ClampUint8(input_reg);
5286
5287 __ bind(&done);
5288}
5289
5290
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005291void LCodeGen::DoCheckPrototypeMaps(LCheckPrototypeMaps* instr) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00005292 ASSERT(instr->temp()->Equals(instr->result()));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005293 Register reg = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005294
mvstanton@chromium.org6bec0092013-01-23 13:46:53 +00005295 ZoneList<Handle<JSObject> >* prototypes = instr->prototypes();
5296 ZoneList<Handle<Map> >* maps = instr->maps();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005297
mvstanton@chromium.org6bec0092013-01-23 13:46:53 +00005298 ASSERT(prototypes->length() == maps->length());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005299
mvstanton@chromium.org6bec0092013-01-23 13:46:53 +00005300 for (int i = 0; i < prototypes->length(); i++) {
5301 __ LoadHeapObject(reg, prototypes->at(i));
5302 DoCheckMapCommon(reg, maps->at(i), ALLOW_ELEMENT_TRANSITION_MAPS, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005303 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005304}
5305
5306
ulan@chromium.org967e2702012-02-28 09:49:15 +00005307void LCodeGen::DoAllocateObject(LAllocateObject* instr) {
5308 class DeferredAllocateObject: public LDeferredCode {
5309 public:
5310 DeferredAllocateObject(LCodeGen* codegen, LAllocateObject* instr)
5311 : LDeferredCode(codegen), instr_(instr) { }
5312 virtual void Generate() { codegen()->DoDeferredAllocateObject(instr_); }
5313 virtual LInstruction* instr() { return instr_; }
5314 private:
5315 LAllocateObject* instr_;
5316 };
5317
mmassi@chromium.org7028c052012-06-13 11:51:58 +00005318 DeferredAllocateObject* deferred =
5319 new(zone()) DeferredAllocateObject(this, instr);
ulan@chromium.org967e2702012-02-28 09:49:15 +00005320
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005321 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005322 Register scratch = ToRegister(instr->temp());
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005323 Handle<JSFunction> constructor = instr->hydrogen()->constructor();
5324 Handle<Map> initial_map(constructor->initial_map());
5325 int instance_size = initial_map->instance_size();
5326 ASSERT(initial_map->pre_allocated_property_fields() +
5327 initial_map->unused_property_fields() -
5328 initial_map->inobject_properties() == 0);
5329
5330 // Allocate memory for the object. The initial map might change when
5331 // the constructor's prototype changes, but instance size and property
5332 // counts remain unchanged (if slack tracking finished).
5333 ASSERT(!constructor->shared()->IsInobjectSlackTrackingInProgress());
5334 __ AllocateInNewSpace(instance_size,
5335 result,
5336 no_reg,
5337 scratch,
5338 deferred->entry(),
5339 TAG_OBJECT);
5340
fschneider@chromium.org7d10be52012-04-10 12:30:14 +00005341 __ bind(deferred->exit());
5342 if (FLAG_debug_code) {
5343 Label is_in_new_space;
5344 __ JumpIfInNewSpace(result, scratch, &is_in_new_space);
5345 __ Abort("Allocated object is not in new-space");
5346 __ bind(&is_in_new_space);
5347 }
5348
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005349 // Load the initial map.
5350 Register map = scratch;
5351 __ LoadHeapObject(scratch, constructor);
5352 __ mov(map, FieldOperand(scratch, JSFunction::kPrototypeOrInitialMapOffset));
5353
5354 if (FLAG_debug_code) {
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00005355 __ AssertNotSmi(map);
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005356 __ cmpb(FieldOperand(map, Map::kInstanceSizeOffset),
5357 instance_size >> kPointerSizeLog2);
5358 __ Assert(equal, "Unexpected instance size");
5359 __ cmpb(FieldOperand(map, Map::kPreAllocatedPropertyFieldsOffset),
5360 initial_map->pre_allocated_property_fields());
5361 __ Assert(equal, "Unexpected pre-allocated property fields count");
5362 __ cmpb(FieldOperand(map, Map::kUnusedPropertyFieldsOffset),
5363 initial_map->unused_property_fields());
5364 __ Assert(equal, "Unexpected unused property fields count");
5365 __ cmpb(FieldOperand(map, Map::kInObjectPropertiesOffset),
5366 initial_map->inobject_properties());
5367 __ Assert(equal, "Unexpected in-object property fields count");
5368 }
5369
5370 // Initialize map and fields of the newly allocated object.
5371 ASSERT(initial_map->instance_type() == JS_OBJECT_TYPE);
5372 __ mov(FieldOperand(result, JSObject::kMapOffset), map);
5373 __ mov(scratch, factory()->empty_fixed_array());
5374 __ mov(FieldOperand(result, JSObject::kElementsOffset), scratch);
5375 __ mov(FieldOperand(result, JSObject::kPropertiesOffset), scratch);
5376 if (initial_map->inobject_properties() != 0) {
5377 __ mov(scratch, factory()->undefined_value());
5378 for (int i = 0; i < initial_map->inobject_properties(); i++) {
5379 int property_offset = JSObject::kHeaderSize + i * kPointerSize;
5380 __ mov(FieldOperand(result, property_offset), scratch);
5381 }
5382 }
ulan@chromium.org967e2702012-02-28 09:49:15 +00005383}
5384
5385
5386void LCodeGen::DoDeferredAllocateObject(LAllocateObject* instr) {
5387 Register result = ToRegister(instr->result());
5388 Handle<JSFunction> constructor = instr->hydrogen()->constructor();
fschneider@chromium.org7d10be52012-04-10 12:30:14 +00005389 Handle<Map> initial_map(constructor->initial_map());
5390 int instance_size = initial_map->instance_size();
ulan@chromium.org967e2702012-02-28 09:49:15 +00005391
5392 // TODO(3095996): Get rid of this. For now, we need to make the
5393 // result register contain a valid pointer because it is already
5394 // contained in the register pointer map.
5395 __ Set(result, Immediate(0));
5396
5397 PushSafepointRegistersScope scope(this);
fschneider@chromium.org7d10be52012-04-10 12:30:14 +00005398 __ push(Immediate(Smi::FromInt(instance_size)));
5399 CallRuntimeFromDeferred(
5400 Runtime::kAllocateInNewSpace, 1, instr, instr->context());
ulan@chromium.org967e2702012-02-28 09:49:15 +00005401 __ StoreToSafepointRegisterSlot(result, eax);
5402}
5403
5404
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005405void LCodeGen::DoAllocate(LAllocate* instr) {
5406 class DeferredAllocate: public LDeferredCode {
5407 public:
5408 DeferredAllocate(LCodeGen* codegen, LAllocate* instr)
5409 : LDeferredCode(codegen), instr_(instr) { }
5410 virtual void Generate() { codegen()->DoDeferredAllocate(instr_); }
5411 virtual LInstruction* instr() { return instr_; }
5412 private:
5413 LAllocate* instr_;
5414 };
5415
5416 DeferredAllocate* deferred =
5417 new(zone()) DeferredAllocate(this, instr);
5418
5419 Register size = ToRegister(instr->size());
5420 Register result = ToRegister(instr->result());
5421 Register temp = ToRegister(instr->temp());
5422
5423 HAllocate* original_instr = instr->hydrogen();
5424 if (original_instr->size()->IsConstant()) {
5425 UNREACHABLE();
5426 } else {
5427 // Allocate memory for the object.
5428 AllocationFlags flags = TAG_OBJECT;
5429 if (original_instr->MustAllocateDoubleAligned()) {
5430 flags = static_cast<AllocationFlags>(flags | DOUBLE_ALIGNMENT);
5431 }
5432 __ AllocateInNewSpace(size, result, temp, no_reg,
5433 deferred->entry(), flags);
5434 }
5435
5436 __ bind(deferred->exit());
5437}
5438
5439
5440void LCodeGen::DoDeferredAllocate(LAllocate* instr) {
5441 Register size = ToRegister(instr->size());
5442 Register result = ToRegister(instr->result());
5443
5444 __ SmiTag(size);
5445 PushSafepointRegistersScope scope(this);
5446 // TODO(3095996): Get rid of this. For now, we need to make the
5447 // result register contain a valid pointer because it is already
5448 // contained in the register pointer map.
5449 if (!size.is(result)) {
5450 __ StoreToSafepointRegisterSlot(result, size);
5451 }
5452 __ push(size);
5453 CallRuntimeFromDeferred(
5454 Runtime::kAllocateInNewSpace, 1, instr, instr->context());
5455 __ StoreToSafepointRegisterSlot(result, eax);
5456}
5457
5458
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005459void LCodeGen::DoArrayLiteral(LArrayLiteral* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005460 ASSERT(ToRegister(instr->context()).is(esi));
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005461 Handle<FixedArray> literals(instr->environment()->closure()->literals());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005462 ElementsKind boilerplate_elements_kind =
5463 instr->hydrogen()->boilerplate_elements_kind();
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005464 AllocationSiteMode allocation_site_mode =
5465 instr->hydrogen()->allocation_site_mode();
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00005466
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005467 // Deopt if the array literal boilerplate ElementsKind is of a type different
5468 // than the expected one. The check isn't necessary if the boilerplate has
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00005469 // already been converted to TERMINAL_FAST_ELEMENTS_KIND.
5470 if (CanTransitionToMoreGeneralFastElementsKind(
5471 boilerplate_elements_kind, true)) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005472 __ LoadHeapObject(eax, instr->hydrogen()->boilerplate_object());
5473 __ mov(ebx, FieldOperand(eax, HeapObject::kMapOffset));
5474 // Load the map's "bit field 2". We only need the first byte,
5475 // but the following masking takes care of that anyway.
5476 __ mov(ebx, FieldOperand(ebx, Map::kBitField2Offset));
5477 // Retrieve elements_kind from bit field 2.
5478 __ and_(ebx, Map::kElementsKindMask);
5479 __ cmp(ebx, boilerplate_elements_kind << Map::kElementsKindShift);
5480 DeoptimizeIf(not_equal, instr->environment());
5481 }
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00005482
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005483 // Set up the parameters to the stub/runtime call.
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005484 __ PushHeapObject(literals);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005485 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005486 // Boilerplate already exists, constant elements are never accessed.
5487 // Pass an empty fixed array.
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005488 __ push(Immediate(isolate()->factory()->empty_fixed_array()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005489
5490 // Pick the right runtime function or stub to call.
5491 int length = instr->hydrogen()->length();
5492 if (instr->hydrogen()->IsCopyOnWrite()) {
5493 ASSERT(instr->hydrogen()->depth() == 1);
5494 FastCloneShallowArrayStub::Mode mode =
5495 FastCloneShallowArrayStub::COPY_ON_WRITE_ELEMENTS;
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005496 FastCloneShallowArrayStub stub(mode, DONT_TRACK_ALLOCATION_SITE, length);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005497 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005498 } else if (instr->hydrogen()->depth() > 1) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005499 CallRuntime(Runtime::kCreateArrayLiteral, 3, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005500 } else if (length > FastCloneShallowArrayStub::kMaximumClonedLength) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005501 CallRuntime(Runtime::kCreateArrayLiteralShallow, 3, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005502 } else {
5503 FastCloneShallowArrayStub::Mode mode =
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005504 boilerplate_elements_kind == FAST_DOUBLE_ELEMENTS
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005505 ? FastCloneShallowArrayStub::CLONE_DOUBLE_ELEMENTS
5506 : FastCloneShallowArrayStub::CLONE_ELEMENTS;
5507 FastCloneShallowArrayStub stub(mode, allocation_site_mode, length);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005508 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005509 }
5510}
5511
5512
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005513void LCodeGen::EmitDeepCopy(Handle<JSObject> object,
5514 Register result,
5515 Register source,
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005516 int* offset,
5517 AllocationSiteMode mode) {
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005518 ASSERT(!source.is(ecx));
5519 ASSERT(!result.is(ecx));
5520
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005521 bool create_allocation_site_info = mode == TRACK_ALLOCATION_SITE &&
5522 object->map()->CanTrackAllocationSite();
5523
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005524 if (FLAG_debug_code) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005525 __ LoadHeapObject(ecx, object);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005526 __ cmp(source, ecx);
5527 __ Assert(equal, "Unexpected object literal boilerplate");
danno@chromium.org2c26cb12012-05-03 09:06:43 +00005528 __ mov(ecx, FieldOperand(source, HeapObject::kMapOffset));
5529 __ cmp(ecx, Handle<Map>(object->map()));
5530 __ Assert(equal, "Unexpected boilerplate map");
5531 __ mov(ecx, FieldOperand(ecx, Map::kBitField2Offset));
5532 __ and_(ecx, Map::kElementsKindMask);
5533 __ cmp(ecx, object->GetElementsKind() << Map::kElementsKindShift);
5534 __ Assert(equal, "Unexpected boilerplate elements kind");
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005535 }
5536
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005537 // Only elements backing stores for non-COW arrays need to be copied.
5538 Handle<FixedArrayBase> elements(object->elements());
5539 bool has_elements = elements->length() > 0 &&
5540 elements->map() != isolate()->heap()->fixed_cow_array_map();
5541
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005542 // Increase the offset so that subsequent objects end up right after
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005543 // this object and its backing store.
5544 int object_offset = *offset;
5545 int object_size = object->map()->instance_size();
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005546 int elements_size = has_elements ? elements->Size() : 0;
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005547 int elements_offset = *offset + object_size;
5548 if (create_allocation_site_info) {
5549 elements_offset += AllocationSiteInfo::kSize;
5550 *offset += AllocationSiteInfo::kSize;
5551 }
5552
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005553 *offset += object_size + elements_size;
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005554
5555 // Copy object header.
5556 ASSERT(object->properties()->length() == 0);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005557 int inobject_properties = object->map()->inobject_properties();
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005558 int header_size = object_size - inobject_properties * kPointerSize;
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005559 for (int i = 0; i < header_size; i += kPointerSize) {
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005560 if (has_elements && i == JSObject::kElementsOffset) {
5561 __ lea(ecx, Operand(result, elements_offset));
5562 } else {
5563 __ mov(ecx, FieldOperand(source, i));
5564 }
5565 __ mov(FieldOperand(result, object_offset + i), ecx);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005566 }
5567
5568 // Copy in-object properties.
5569 for (int i = 0; i < inobject_properties; i++) {
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005570 int total_offset = object_offset + object->GetInObjectPropertyOffset(i);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005571 Handle<Object> value = Handle<Object>(object->InObjectPropertyAt(i));
5572 if (value->IsJSObject()) {
5573 Handle<JSObject> value_object = Handle<JSObject>::cast(value);
5574 __ lea(ecx, Operand(result, *offset));
5575 __ mov(FieldOperand(result, total_offset), ecx);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005576 __ LoadHeapObject(source, value_object);
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005577 EmitDeepCopy(value_object, result, source, offset,
5578 DONT_TRACK_ALLOCATION_SITE);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005579 } else if (value->IsHeapObject()) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005580 __ LoadHeapObject(ecx, Handle<HeapObject>::cast(value));
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005581 __ mov(FieldOperand(result, total_offset), ecx);
5582 } else {
5583 __ mov(FieldOperand(result, total_offset), Immediate(value));
5584 }
5585 }
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005586
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005587 // Build Allocation Site Info if desired
5588 if (create_allocation_site_info) {
5589 __ mov(FieldOperand(result, object_size),
5590 Immediate(Handle<Map>(isolate()->heap()->
5591 allocation_site_info_map())));
5592 __ mov(FieldOperand(result, object_size + kPointerSize), source);
5593 }
5594
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005595 if (has_elements) {
danno@chromium.org88aa0582012-03-23 15:11:57 +00005596 // Copy elements backing store header.
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005597 __ LoadHeapObject(source, elements);
5598 for (int i = 0; i < FixedArray::kHeaderSize; i += kPointerSize) {
5599 __ mov(ecx, FieldOperand(source, i));
5600 __ mov(FieldOperand(result, elements_offset + i), ecx);
5601 }
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005602
danno@chromium.org88aa0582012-03-23 15:11:57 +00005603 // Copy elements backing store content.
5604 int elements_length = elements->length();
5605 if (elements->IsFixedDoubleArray()) {
5606 Handle<FixedDoubleArray> double_array =
5607 Handle<FixedDoubleArray>::cast(elements);
5608 for (int i = 0; i < elements_length; i++) {
5609 int64_t value = double_array->get_representation(i);
jkummerow@chromium.org78502a92012-09-06 13:50:42 +00005610 int32_t value_low = static_cast<int32_t>(value & 0xFFFFFFFF);
5611 int32_t value_high = static_cast<int32_t>(value >> 32);
danno@chromium.org88aa0582012-03-23 15:11:57 +00005612 int total_offset =
5613 elements_offset + FixedDoubleArray::OffsetOfElementAt(i);
5614 __ mov(FieldOperand(result, total_offset), Immediate(value_low));
5615 __ mov(FieldOperand(result, total_offset + 4), Immediate(value_high));
5616 }
5617 } else if (elements->IsFixedArray()) {
erik.corry@gmail.comed49e962012-04-17 11:57:53 +00005618 Handle<FixedArray> fast_elements = Handle<FixedArray>::cast(elements);
danno@chromium.org88aa0582012-03-23 15:11:57 +00005619 for (int i = 0; i < elements_length; i++) {
5620 int total_offset = elements_offset + FixedArray::OffsetOfElementAt(i);
erik.corry@gmail.comed49e962012-04-17 11:57:53 +00005621 Handle<Object> value(fast_elements->get(i));
danno@chromium.org88aa0582012-03-23 15:11:57 +00005622 if (value->IsJSObject()) {
5623 Handle<JSObject> value_object = Handle<JSObject>::cast(value);
5624 __ lea(ecx, Operand(result, *offset));
5625 __ mov(FieldOperand(result, total_offset), ecx);
5626 __ LoadHeapObject(source, value_object);
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005627 EmitDeepCopy(value_object, result, source, offset,
5628 DONT_TRACK_ALLOCATION_SITE);
danno@chromium.org88aa0582012-03-23 15:11:57 +00005629 } else if (value->IsHeapObject()) {
5630 __ LoadHeapObject(ecx, Handle<HeapObject>::cast(value));
5631 __ mov(FieldOperand(result, total_offset), ecx);
5632 } else {
5633 __ mov(FieldOperand(result, total_offset), Immediate(value));
5634 }
5635 }
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005636 } else {
danno@chromium.org88aa0582012-03-23 15:11:57 +00005637 UNREACHABLE();
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005638 }
5639 }
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005640}
5641
5642
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005643void LCodeGen::DoFastLiteral(LFastLiteral* instr) {
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005644 ASSERT(ToRegister(instr->context()).is(esi));
5645 int size = instr->hydrogen()->total_size();
danno@chromium.org2c26cb12012-05-03 09:06:43 +00005646 ElementsKind boilerplate_elements_kind =
5647 instr->hydrogen()->boilerplate()->GetElementsKind();
5648
5649 // Deopt if the literal boilerplate ElementsKind is of a type different than
5650 // the expected one. The check isn't necessary if the boilerplate has already
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00005651 // already been converted to TERMINAL_FAST_ELEMENTS_KIND.
5652 if (CanTransitionToMoreGeneralFastElementsKind(
5653 boilerplate_elements_kind, true)) {
danno@chromium.org2c26cb12012-05-03 09:06:43 +00005654 __ LoadHeapObject(ebx, instr->hydrogen()->boilerplate());
5655 __ mov(ecx, FieldOperand(ebx, HeapObject::kMapOffset));
5656 // Load the map's "bit field 2". We only need the first byte,
5657 // but the following masking takes care of that anyway.
5658 __ mov(ecx, FieldOperand(ecx, Map::kBitField2Offset));
5659 // Retrieve elements_kind from bit field 2.
5660 __ and_(ecx, Map::kElementsKindMask);
5661 __ cmp(ecx, boilerplate_elements_kind << Map::kElementsKindShift);
5662 DeoptimizeIf(not_equal, instr->environment());
5663 }
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005664
5665 // Allocate all objects that are part of the literal in one big
5666 // allocation. This avoids multiple limit checks.
5667 Label allocated, runtime_allocate;
5668 __ AllocateInNewSpace(size, eax, ecx, edx, &runtime_allocate, TAG_OBJECT);
5669 __ jmp(&allocated);
5670
5671 __ bind(&runtime_allocate);
5672 __ push(Immediate(Smi::FromInt(size)));
5673 CallRuntime(Runtime::kAllocateInNewSpace, 1, instr);
5674
5675 __ bind(&allocated);
5676 int offset = 0;
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005677 __ LoadHeapObject(ebx, instr->hydrogen()->boilerplate());
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005678 EmitDeepCopy(instr->hydrogen()->boilerplate(), eax, ebx, &offset,
5679 instr->hydrogen()->allocation_site_mode());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005680 ASSERT_EQ(size, offset);
5681}
5682
5683
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005684void LCodeGen::DoObjectLiteral(LObjectLiteral* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00005685 ASSERT(ToRegister(instr->context()).is(esi));
ulan@chromium.org65a89c22012-02-14 11:46:07 +00005686 Handle<FixedArray> literals(instr->environment()->closure()->literals());
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005687 Handle<FixedArray> constant_properties =
5688 instr->hydrogen()->constant_properties();
5689
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005690 // Set up the parameters to the stub/runtime call.
ulan@chromium.org65a89c22012-02-14 11:46:07 +00005691 __ PushHeapObject(literals);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005692 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005693 __ push(Immediate(constant_properties));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005694 int flags = instr->hydrogen()->fast_elements()
5695 ? ObjectLiteral::kFastElements
5696 : ObjectLiteral::kNoFlags;
5697 flags |= instr->hydrogen()->has_function()
5698 ? ObjectLiteral::kHasFunction
5699 : ObjectLiteral::kNoFlags;
5700 __ push(Immediate(Smi::FromInt(flags)));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005701
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005702 // Pick the right runtime function or stub to call.
5703 int properties_count = constant_properties->length() / 2;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005704 if (instr->hydrogen()->depth() > 1) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005705 CallRuntime(Runtime::kCreateObjectLiteral, 4, instr);
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005706 } else if (flags != ObjectLiteral::kFastElements ||
5707 properties_count > FastCloneShallowObjectStub::kMaximumClonedProperties) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005708 CallRuntime(Runtime::kCreateObjectLiteralShallow, 4, instr);
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005709 } else {
5710 FastCloneShallowObjectStub stub(properties_count);
5711 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005712 }
5713}
5714
5715
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005716void LCodeGen::DoToFastProperties(LToFastProperties* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005717 ASSERT(ToRegister(instr->value()).is(eax));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005718 __ push(eax);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005719 CallRuntime(Runtime::kToFastProperties, 1, instr);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005720}
5721
5722
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005723void LCodeGen::DoRegExpLiteral(LRegExpLiteral* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005724 ASSERT(ToRegister(instr->context()).is(esi));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005725 Label materialized;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005726 // Registers will be used as follows:
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005727 // ecx = literals array.
5728 // ebx = regexp literal.
5729 // eax = regexp literal clone.
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005730 // esi = context.
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005731 int literal_offset =
5732 FixedArray::OffsetOfElementAt(instr->hydrogen()->literal_index());
5733 __ LoadHeapObject(ecx, instr->hydrogen()->literals());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005734 __ mov(ebx, FieldOperand(ecx, literal_offset));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005735 __ cmp(ebx, factory()->undefined_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005736 __ j(not_equal, &materialized, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005737
5738 // Create regexp literal using runtime function
5739 // Result will be in eax.
5740 __ push(ecx);
5741 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
5742 __ push(Immediate(instr->hydrogen()->pattern()));
5743 __ push(Immediate(instr->hydrogen()->flags()));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005744 CallRuntime(Runtime::kMaterializeRegExpLiteral, 4, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005745 __ mov(ebx, eax);
5746
5747 __ bind(&materialized);
5748 int size = JSRegExp::kSize + JSRegExp::kInObjectFieldCount * kPointerSize;
5749 Label allocated, runtime_allocate;
5750 __ AllocateInNewSpace(size, eax, ecx, edx, &runtime_allocate, TAG_OBJECT);
5751 __ jmp(&allocated);
5752
5753 __ bind(&runtime_allocate);
5754 __ push(ebx);
5755 __ push(Immediate(Smi::FromInt(size)));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005756 CallRuntime(Runtime::kAllocateInNewSpace, 1, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005757 __ pop(ebx);
5758
5759 __ bind(&allocated);
5760 // Copy the content into the newly allocated memory.
5761 // (Unroll copy loop once for better throughput).
5762 for (int i = 0; i < size - kPointerSize; i += 2 * kPointerSize) {
5763 __ mov(edx, FieldOperand(ebx, i));
5764 __ mov(ecx, FieldOperand(ebx, i + kPointerSize));
5765 __ mov(FieldOperand(eax, i), edx);
5766 __ mov(FieldOperand(eax, i + kPointerSize), ecx);
5767 }
5768 if ((size % (2 * kPointerSize)) != 0) {
5769 __ mov(edx, FieldOperand(ebx, size - kPointerSize));
5770 __ mov(FieldOperand(eax, size - kPointerSize), edx);
5771 }
5772}
5773
5774
5775void LCodeGen::DoFunctionLiteral(LFunctionLiteral* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005776 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005777 // Use the fast case closure allocation code that allocates in new
5778 // space for nested functions that don't need literals cloning.
5779 Handle<SharedFunctionInfo> shared_info = instr->shared_info();
ricow@chromium.org83aa5492011-02-07 12:42:56 +00005780 bool pretenure = instr->hydrogen()->pretenure();
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005781 if (!pretenure && shared_info->num_literals() == 0) {
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005782 FastNewClosureStub stub(shared_info->language_mode());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005783 __ push(Immediate(shared_info));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005784 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005785 } else {
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00005786 __ push(esi);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005787 __ push(Immediate(shared_info));
5788 __ push(Immediate(pretenure
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005789 ? factory()->true_value()
5790 : factory()->false_value()));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005791 CallRuntime(Runtime::kNewClosure, 3, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005792 }
5793}
5794
5795
5796void LCodeGen::DoTypeof(LTypeof* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005797 LOperand* input = instr->value();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005798 EmitPushTaggedOperand(input);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005799 CallRuntime(Runtime::kTypeof, 1, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005800}
5801
5802
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005803void LCodeGen::DoTypeofIsAndBranch(LTypeofIsAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005804 Register input = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005805 int true_block = chunk_->LookupDestination(instr->true_block_id());
5806 int false_block = chunk_->LookupDestination(instr->false_block_id());
5807 Label* true_label = chunk_->GetAssemblyLabel(true_block);
5808 Label* false_label = chunk_->GetAssemblyLabel(false_block);
5809
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00005810 Condition final_branch_condition =
5811 EmitTypeofIs(true_label, false_label, input, instr->type_literal());
5812 if (final_branch_condition != no_condition) {
5813 EmitBranch(true_block, false_block, final_branch_condition);
5814 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005815}
5816
5817
5818Condition LCodeGen::EmitTypeofIs(Label* true_label,
5819 Label* false_label,
5820 Register input,
5821 Handle<String> type_name) {
5822 Condition final_branch_condition = no_condition;
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005823 if (type_name->Equals(heap()->number_symbol())) {
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005824 __ JumpIfSmi(input, true_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005825 __ cmp(FieldOperand(input, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005826 factory()->heap_number_map());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005827 final_branch_condition = equal;
5828
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005829 } else if (type_name->Equals(heap()->string_symbol())) {
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005830 __ JumpIfSmi(input, false_label);
5831 __ CmpObjectType(input, FIRST_NONSTRING_TYPE, input);
5832 __ j(above_equal, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005833 __ test_b(FieldOperand(input, Map::kBitFieldOffset),
5834 1 << Map::kIsUndetectable);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005835 final_branch_condition = zero;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005836
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005837 } else if (type_name->Equals(heap()->boolean_symbol())) {
5838 __ cmp(input, factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005839 __ j(equal, true_label);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005840 __ cmp(input, factory()->false_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005841 final_branch_condition = equal;
5842
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00005843 } else if (FLAG_harmony_typeof && type_name->Equals(heap()->null_symbol())) {
5844 __ cmp(input, factory()->null_value());
5845 final_branch_condition = equal;
5846
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005847 } else if (type_name->Equals(heap()->undefined_symbol())) {
5848 __ cmp(input, factory()->undefined_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005849 __ j(equal, true_label);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005850 __ JumpIfSmi(input, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005851 // Check for undetectable objects => true.
5852 __ mov(input, FieldOperand(input, HeapObject::kMapOffset));
5853 __ test_b(FieldOperand(input, Map::kBitFieldOffset),
5854 1 << Map::kIsUndetectable);
5855 final_branch_condition = not_zero;
5856
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005857 } else if (type_name->Equals(heap()->function_symbol())) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005858 STATIC_ASSERT(NUM_OF_CALLABLE_SPEC_OBJECT_TYPES == 2);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005859 __ JumpIfSmi(input, false_label);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005860 __ CmpObjectType(input, JS_FUNCTION_TYPE, input);
5861 __ j(equal, true_label);
5862 __ CmpInstanceType(input, JS_FUNCTION_PROXY_TYPE);
5863 final_branch_condition = equal;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005864
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005865 } else if (type_name->Equals(heap()->object_symbol())) {
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005866 __ JumpIfSmi(input, false_label);
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00005867 if (!FLAG_harmony_typeof) {
5868 __ cmp(input, factory()->null_value());
5869 __ j(equal, true_label);
5870 }
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00005871 __ CmpObjectType(input, FIRST_NONCALLABLE_SPEC_OBJECT_TYPE, input);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005872 __ j(below, false_label);
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00005873 __ CmpInstanceType(input, LAST_NONCALLABLE_SPEC_OBJECT_TYPE);
5874 __ j(above, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005875 // Check for undetectable objects => false.
5876 __ test_b(FieldOperand(input, Map::kBitFieldOffset),
5877 1 << Map::kIsUndetectable);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005878 final_branch_condition = zero;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005879
5880 } else {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005881 __ jmp(false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005882 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005883 return final_branch_condition;
5884}
5885
5886
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005887void LCodeGen::DoIsConstructCallAndBranch(LIsConstructCallAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005888 Register temp = ToRegister(instr->temp());
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005889 int true_block = chunk_->LookupDestination(instr->true_block_id());
5890 int false_block = chunk_->LookupDestination(instr->false_block_id());
5891
5892 EmitIsConstructCall(temp);
5893 EmitBranch(true_block, false_block, equal);
5894}
5895
5896
5897void LCodeGen::EmitIsConstructCall(Register temp) {
5898 // Get the frame pointer for the calling frame.
5899 __ mov(temp, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
5900
5901 // Skip the arguments adaptor frame if it exists.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005902 Label check_frame_marker;
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005903 __ cmp(Operand(temp, StandardFrameConstants::kContextOffset),
5904 Immediate(Smi::FromInt(StackFrame::ARGUMENTS_ADAPTOR)));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005905 __ j(not_equal, &check_frame_marker, Label::kNear);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005906 __ mov(temp, Operand(temp, StandardFrameConstants::kCallerFPOffset));
5907
5908 // Check the marker in the calling frame.
5909 __ bind(&check_frame_marker);
5910 __ cmp(Operand(temp, StandardFrameConstants::kMarkerOffset),
5911 Immediate(Smi::FromInt(StackFrame::CONSTRUCT)));
5912}
5913
5914
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005915void LCodeGen::EnsureSpaceForLazyDeopt() {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005916 if (!info()->IsStub()) {
5917 // Ensure that we have enough space after the previous lazy-bailout
5918 // instruction for patching the code here.
5919 int current_pc = masm()->pc_offset();
5920 int patch_size = Deoptimizer::patch_size();
5921 if (current_pc < last_lazy_deopt_pc_ + patch_size) {
5922 int padding_size = last_lazy_deopt_pc_ + patch_size - current_pc;
5923 __ Nop(padding_size);
5924 }
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005925 }
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005926 last_lazy_deopt_pc_ = masm()->pc_offset();
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005927}
5928
5929
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005930void LCodeGen::DoLazyBailout(LLazyBailout* instr) {
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005931 EnsureSpaceForLazyDeopt();
5932 ASSERT(instr->HasEnvironment());
5933 LEnvironment* env = instr->environment();
5934 RegisterEnvironmentForDeoptimization(env, Safepoint::kLazyDeopt);
5935 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005936}
5937
5938
5939void LCodeGen::DoDeoptimize(LDeoptimize* instr) {
5940 DeoptimizeIf(no_condition, instr->environment());
5941}
5942
5943
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005944void LCodeGen::DoDummyUse(LDummyUse* instr) {
5945 // Nothing to see here, move on!
5946}
5947
5948
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005949void LCodeGen::DoDeleteProperty(LDeleteProperty* instr) {
5950 LOperand* obj = instr->object();
5951 LOperand* key = instr->key();
5952 __ push(ToOperand(obj));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005953 EmitPushTaggedOperand(key);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00005954 ASSERT(instr->HasPointerMap());
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00005955 LPointerMap* pointers = instr->pointer_map();
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00005956 RecordPosition(pointers->position());
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00005957 // Create safepoint generator that will also ensure enough space in the
5958 // reloc info for patching in deoptimization (since this is invoking a
5959 // builtin)
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005960 SafepointGenerator safepoint_generator(
5961 this, pointers, Safepoint::kLazyDeopt);
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00005962 __ push(Immediate(Smi::FromInt(strict_mode_flag())));
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00005963 __ InvokeBuiltin(Builtins::DELETE, CALL_FUNCTION, safepoint_generator);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005964}
5965
5966
ager@chromium.org04921a82011-06-27 13:21:41 +00005967void LCodeGen::DoDeferredStackCheck(LStackCheck* instr) {
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005968 PushSafepointRegistersScope scope(this);
5969 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
5970 __ CallRuntimeSaveDoubles(Runtime::kStackGuard);
5971 RecordSafepointWithLazyDeopt(
5972 instr, RECORD_SAFEPOINT_WITH_REGISTERS_AND_NO_ARGUMENTS);
5973 ASSERT(instr->HasEnvironment());
5974 LEnvironment* env = instr->environment();
5975 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
ager@chromium.org04921a82011-06-27 13:21:41 +00005976}
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005977
ager@chromium.org04921a82011-06-27 13:21:41 +00005978
5979void LCodeGen::DoStackCheck(LStackCheck* instr) {
5980 class DeferredStackCheck: public LDeferredCode {
5981 public:
5982 DeferredStackCheck(LCodeGen* codegen, LStackCheck* instr)
5983 : LDeferredCode(codegen), instr_(instr) { }
5984 virtual void Generate() { codegen()->DoDeferredStackCheck(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005985 virtual LInstruction* instr() { return instr_; }
ager@chromium.org04921a82011-06-27 13:21:41 +00005986 private:
5987 LStackCheck* instr_;
5988 };
5989
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005990 ASSERT(instr->HasEnvironment());
5991 LEnvironment* env = instr->environment();
5992 // There is no LLazyBailout instruction for stack-checks. We have to
5993 // prepare for lazy deoptimization explicitly here.
ager@chromium.org04921a82011-06-27 13:21:41 +00005994 if (instr->hydrogen()->is_function_entry()) {
5995 // Perform stack overflow check.
5996 Label done;
5997 ExternalReference stack_limit =
5998 ExternalReference::address_of_stack_limit(isolate());
5999 __ cmp(esp, Operand::StaticVariable(stack_limit));
6000 __ j(above_equal, &done, Label::kNear);
6001
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00006002 ASSERT(instr->context()->IsRegister());
6003 ASSERT(ToRegister(instr->context()).is(esi));
ager@chromium.org04921a82011-06-27 13:21:41 +00006004 StackCheckStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00006005 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006006 EnsureSpaceForLazyDeopt();
ager@chromium.org04921a82011-06-27 13:21:41 +00006007 __ bind(&done);
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006008 RegisterEnvironmentForDeoptimization(env, Safepoint::kLazyDeopt);
6009 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
ager@chromium.org04921a82011-06-27 13:21:41 +00006010 } else {
6011 ASSERT(instr->hydrogen()->is_backwards_branch());
6012 // Perform stack overflow check if this goto needs it before jumping.
6013 DeferredStackCheck* deferred_stack_check =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00006014 new(zone()) DeferredStackCheck(this, instr);
ager@chromium.org04921a82011-06-27 13:21:41 +00006015 ExternalReference stack_limit =
6016 ExternalReference::address_of_stack_limit(isolate());
6017 __ cmp(esp, Operand::StaticVariable(stack_limit));
6018 __ j(below, deferred_stack_check->entry());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006019 EnsureSpaceForLazyDeopt();
ager@chromium.org04921a82011-06-27 13:21:41 +00006020 __ bind(instr->done_label());
6021 deferred_stack_check->SetExit(instr->done_label());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006022 RegisterEnvironmentForDeoptimization(env, Safepoint::kLazyDeopt);
6023 // Don't record a deoptimization index for the safepoint here.
6024 // This will be done explicitly when emitting call and the safepoint in
6025 // the deferred code.
ager@chromium.org04921a82011-06-27 13:21:41 +00006026 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006027}
6028
6029
6030void LCodeGen::DoOsrEntry(LOsrEntry* instr) {
6031 // This is a pseudo-instruction that ensures that the environment here is
6032 // properly registered for deoptimization and records the assembler's PC
6033 // offset.
6034 LEnvironment* environment = instr->environment();
6035 environment->SetSpilledRegisters(instr->SpilledRegisterArray(),
6036 instr->SpilledDoubleRegisterArray());
6037
6038 // If the environment were already registered, we would have no way of
6039 // backpatching it with the spill slot operands.
6040 ASSERT(!environment->HasBeenRegistered());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006041 RegisterEnvironmentForDeoptimization(environment, Safepoint::kNoLazyDeopt);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006042 ASSERT(osr_pc_offset_ == -1);
6043 osr_pc_offset_ = masm()->pc_offset();
6044}
6045
6046
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006047void LCodeGen::DoIn(LIn* instr) {
6048 LOperand* obj = instr->object();
6049 LOperand* key = instr->key();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00006050 EmitPushTaggedOperand(key);
6051 EmitPushTaggedOperand(obj);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00006052 ASSERT(instr->HasPointerMap());
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006053 LPointerMap* pointers = instr->pointer_map();
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006054 RecordPosition(pointers->position());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006055 SafepointGenerator safepoint_generator(
6056 this, pointers, Safepoint::kLazyDeopt);
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00006057 __ InvokeBuiltin(Builtins::IN, CALL_FUNCTION, safepoint_generator);
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006058}
6059
6060
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006061void LCodeGen::DoForInPrepareMap(LForInPrepareMap* instr) {
6062 __ cmp(eax, isolate()->factory()->undefined_value());
6063 DeoptimizeIf(equal, instr->environment());
6064
6065 __ cmp(eax, isolate()->factory()->null_value());
6066 DeoptimizeIf(equal, instr->environment());
6067
6068 __ test(eax, Immediate(kSmiTagMask));
6069 DeoptimizeIf(zero, instr->environment());
6070
6071 STATIC_ASSERT(FIRST_JS_PROXY_TYPE == FIRST_SPEC_OBJECT_TYPE);
6072 __ CmpObjectType(eax, LAST_JS_PROXY_TYPE, ecx);
6073 DeoptimizeIf(below_equal, instr->environment());
6074
6075 Label use_cache, call_runtime;
6076 __ CheckEnumCache(&call_runtime);
6077
6078 __ mov(eax, FieldOperand(eax, HeapObject::kMapOffset));
6079 __ jmp(&use_cache, Label::kNear);
6080
6081 // Get the set of properties to enumerate.
6082 __ bind(&call_runtime);
6083 __ push(eax);
6084 CallRuntime(Runtime::kGetPropertyNamesFast, 1, instr);
6085
6086 __ cmp(FieldOperand(eax, HeapObject::kMapOffset),
6087 isolate()->factory()->meta_map());
6088 DeoptimizeIf(not_equal, instr->environment());
6089 __ bind(&use_cache);
6090}
6091
6092
6093void LCodeGen::DoForInCacheArray(LForInCacheArray* instr) {
6094 Register map = ToRegister(instr->map());
6095 Register result = ToRegister(instr->result());
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00006096 Label load_cache, done;
6097 __ EnumLength(result, map);
6098 __ cmp(result, Immediate(Smi::FromInt(0)));
6099 __ j(not_equal, &load_cache);
6100 __ mov(result, isolate()->factory()->empty_fixed_array());
6101 __ jmp(&done);
6102
6103 __ bind(&load_cache);
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006104 __ LoadInstanceDescriptors(map, result);
6105 __ mov(result,
yangguo@chromium.org304cc332012-07-24 07:59:48 +00006106 FieldOperand(result, DescriptorArray::kEnumCacheOffset));
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006107 __ mov(result,
6108 FieldOperand(result, FixedArray::SizeFor(instr->idx())));
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00006109 __ bind(&done);
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006110 __ test(result, result);
6111 DeoptimizeIf(equal, instr->environment());
6112}
6113
6114
6115void LCodeGen::DoCheckMapValue(LCheckMapValue* instr) {
6116 Register object = ToRegister(instr->value());
6117 __ cmp(ToRegister(instr->map()),
6118 FieldOperand(object, HeapObject::kMapOffset));
6119 DeoptimizeIf(not_equal, instr->environment());
6120}
6121
6122
6123void LCodeGen::DoLoadFieldByIndex(LLoadFieldByIndex* instr) {
6124 Register object = ToRegister(instr->object());
6125 Register index = ToRegister(instr->index());
6126
6127 Label out_of_object, done;
6128 __ cmp(index, Immediate(0));
6129 __ j(less, &out_of_object);
6130 __ mov(object, FieldOperand(object,
6131 index,
6132 times_half_pointer_size,
6133 JSObject::kHeaderSize));
6134 __ jmp(&done, Label::kNear);
6135
6136 __ bind(&out_of_object);
6137 __ mov(object, FieldOperand(object, JSObject::kPropertiesOffset));
6138 __ neg(index);
6139 // Index is now equal to out of object property index plus 1.
6140 __ mov(object, FieldOperand(object,
6141 index,
6142 times_half_pointer_size,
6143 FixedArray::kHeaderSize - kPointerSize));
6144 __ bind(&done);
6145}
6146
6147
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006148#undef __
6149
6150} } // namespace v8::internal
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00006151
6152#endif // V8_TARGET_ARCH_IA32