blob: 58bdc894a0f54931b121d151adb9ad66801fbbdd [file] [log] [blame]
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00001// Copyright 2012 the V8 project authors. All rights reserved.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002// Redistribution and use in source and binary forms, with or without
3// modification, are permitted provided that the following conditions are
4// met:
5//
6// * Redistributions of source code must retain the above copyright
7// notice, this list of conditions and the following disclaimer.
8// * Redistributions in binary form must reproduce the above
9// copyright notice, this list of conditions and the following
10// disclaimer in the documentation and/or other materials provided
11// with the distribution.
12// * Neither the name of Google Inc. nor the names of its
13// contributors may be used to endorse or promote products derived
14// from this software without specific prior written permission.
15//
16// THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
17// "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
18// LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
19// A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
20// OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
21// SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
22// LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
23// DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
24// THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
25// (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
26// OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
27
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +000028#include "v8.h"
29
30#if defined(V8_TARGET_ARCH_IA32)
31
kasperl@chromium.orga5551262010-12-07 12:49:48 +000032#include "ia32/lithium-codegen-ia32.h"
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +000033#include "ic.h"
kasperl@chromium.orga5551262010-12-07 12:49:48 +000034#include "code-stubs.h"
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +000035#include "deoptimizer.h"
kasperl@chromium.orga5551262010-12-07 12:49:48 +000036#include "stub-cache.h"
erikcorry0ad885c2011-11-21 13:51:57 +000037#include "codegen.h"
kasperl@chromium.orga5551262010-12-07 12:49:48 +000038
39namespace v8 {
40namespace internal {
41
42
kmillikin@chromium.org31b12772011-02-02 16:08:26 +000043// When invoking builtins, we need to record the safepoint in the middle of
44// the invoke instruction sequence generated by the macro assembler.
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +000045class SafepointGenerator : public CallWrapper {
kasperl@chromium.orga5551262010-12-07 12:49:48 +000046 public:
47 SafepointGenerator(LCodeGen* codegen,
48 LPointerMap* pointers,
ricow@chromium.org27bf2882011-11-17 08:34:43 +000049 Safepoint::DeoptMode mode)
kasperl@chromium.orga5551262010-12-07 12:49:48 +000050 : codegen_(codegen),
51 pointers_(pointers),
ricow@chromium.org27bf2882011-11-17 08:34:43 +000052 deopt_mode_(mode) {}
kasperl@chromium.orga5551262010-12-07 12:49:48 +000053 virtual ~SafepointGenerator() { }
54
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +000055 virtual void BeforeCall(int call_size) const {}
56
57 virtual void AfterCall() const {
ricow@chromium.org27bf2882011-11-17 08:34:43 +000058 codegen_->RecordSafepoint(pointers_, deopt_mode_);
kasperl@chromium.orga5551262010-12-07 12:49:48 +000059 }
60
61 private:
62 LCodeGen* codegen_;
63 LPointerMap* pointers_;
ricow@chromium.org27bf2882011-11-17 08:34:43 +000064 Safepoint::DeoptMode deopt_mode_;
kasperl@chromium.orga5551262010-12-07 12:49:48 +000065};
66
67
68#define __ masm()->
69
70bool LCodeGen::GenerateCode() {
ulan@chromium.org9a21ec42012-03-06 08:42:24 +000071 HPhase phase("Z_Code generation", chunk());
kasperl@chromium.orga5551262010-12-07 12:49:48 +000072 ASSERT(is_unused());
73 status_ = GENERATING;
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +000074
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +000075 // Open a frame scope to indicate that there is a frame on the stack. The
76 // MANUAL indicates that the scope shouldn't actually generate code to set up
77 // the frame (that is done in GeneratePrologue).
78 FrameScope frame_scope(masm_, StackFrame::MANUAL);
79
danno@chromium.org94b0d6f2013-02-04 13:33:20 +000080 support_aligned_spilled_doubles_ = info()->IsOptimizing();
81
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +000082 dynamic_frame_alignment_ = info()->IsOptimizing() &&
83 ((chunk()->num_double_slots() > 2 &&
84 !chunk()->graph()->is_recursive()) ||
85 !info()->osr_ast_id().IsNone());
mmassi@chromium.org7028c052012-06-13 11:51:58 +000086
kasperl@chromium.orga5551262010-12-07 12:49:48 +000087 return GeneratePrologue() &&
88 GenerateBody() &&
89 GenerateDeferredCode() &&
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +000090 GenerateJumpTable() &&
kasperl@chromium.orga5551262010-12-07 12:49:48 +000091 GenerateSafepointTable();
92}
93
94
95void LCodeGen::FinishCode(Handle<Code> code) {
96 ASSERT(is_done());
danno@chromium.org160a7b02011-04-18 15:51:38 +000097 code->set_stack_slots(GetStackSlotCount());
ricow@chromium.org83aa5492011-02-07 12:42:56 +000098 code->set_safepoint_table_offset(safepoints_.GetCodeOffset());
ulan@chromium.org6ba1fd02013-02-14 14:56:11 +000099 if (FLAG_weak_embedded_maps_in_optimized_code) {
100 RegisterDependentCodeForEmbeddedMaps(code);
101 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000102 PopulateDeoptimizationData(code);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000103 if (!info()->IsStub()) {
104 Deoptimizer::EnsureRelocSpaceForLazyDeoptimization(code);
105 }
ulan@chromium.org2e04b582013-02-21 14:06:02 +0000106 for (int i = 0 ; i < prototype_maps_.length(); i++) {
107 prototype_maps_.at(i)->AddDependentCode(
108 DependentCode::kPrototypeCheckGroup, code);
109 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000110}
111
112
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000113void LCodeGen::Abort(const char* reason) {
114 info()->set_bailout_reason(reason);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000115 status_ = ABORTED;
116}
117
118
119void LCodeGen::Comment(const char* format, ...) {
120 if (!FLAG_code_comments) return;
121 char buffer[4 * KB];
122 StringBuilder builder(buffer, ARRAY_SIZE(buffer));
123 va_list arguments;
124 va_start(arguments, format);
125 builder.AddFormattedList(format, arguments);
126 va_end(arguments);
127
128 // Copy the string before recording it in the assembler to avoid
129 // issues when the stack allocated buffer goes out of scope.
130 size_t length = builder.position();
131 Vector<char> copy = Vector<char>::New(length + 1);
132 memcpy(copy.start(), builder.Finalize(), copy.length());
133 masm()->RecordComment(copy.start());
134}
135
136
137bool LCodeGen::GeneratePrologue() {
138 ASSERT(is_generating());
139
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000140 if (info()->IsOptimizing()) {
141 ProfileEntryHookStub::MaybeCallEntryHook(masm_);
verwaest@chromium.org753aee42012-07-17 16:15:42 +0000142
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000143#ifdef DEBUG
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000144 if (strlen(FLAG_stop_at) > 0 &&
jkummerow@chromium.org59297c72013-01-09 16:32:23 +0000145 info_->function()->name()->IsUtf8EqualTo(CStrVector(FLAG_stop_at))) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000146 __ int3();
147 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000148#endif
149
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000150 // Strict mode functions and builtins need to replace the receiver
151 // with undefined when called as functions (without an explicit
152 // receiver object). ecx is zero for method calls and non-zero for
153 // function calls.
154 if (!info_->is_classic_mode() || info_->is_native()) {
155 Label ok;
156 __ test(ecx, Operand(ecx));
157 __ j(zero, &ok, Label::kNear);
158 // +1 for return address.
159 int receiver_offset = (scope()->num_parameters() + 1) * kPointerSize;
160 __ mov(Operand(esp, receiver_offset),
161 Immediate(isolate()->factory()->undefined_value()));
162 __ bind(&ok);
163 }
danno@chromium.org40cb8782011-05-25 07:58:50 +0000164
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000165 if (support_aligned_spilled_doubles_ && dynamic_frame_alignment_) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000166 // Move state of dynamic frame alignment into edx.
167 __ mov(edx, Immediate(kNoAlignmentPadding));
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000168
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000169 Label do_not_pad, align_loop;
170 STATIC_ASSERT(kDoubleSize == 2 * kPointerSize);
171 // Align esp + 4 to a multiple of 2 * kPointerSize.
172 __ test(esp, Immediate(kPointerSize));
173 __ j(not_zero, &do_not_pad, Label::kNear);
174 __ push(Immediate(0));
175 __ mov(ebx, esp);
176 __ mov(edx, Immediate(kAlignmentPaddingPushed));
177 // Copy arguments, receiver, and return address.
178 __ mov(ecx, Immediate(scope()->num_parameters() + 2));
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000179
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000180 __ bind(&align_loop);
181 __ mov(eax, Operand(ebx, 1 * kPointerSize));
182 __ mov(Operand(ebx, 0), eax);
183 __ add(Operand(ebx), Immediate(kPointerSize));
184 __ dec(ecx);
185 __ j(not_zero, &align_loop, Label::kNear);
186 __ mov(Operand(ebx, 0), Immediate(kAlignmentZapValue));
187 __ bind(&do_not_pad);
188 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000189 }
190
svenpanne@chromium.org83130cf2012-11-30 10:13:25 +0000191 info()->set_prologue_offset(masm_->pc_offset());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000192 if (NeedsEagerFrame()) {
193 ASSERT(!frame_is_built_);
194 frame_is_built_ = true;
195 __ push(ebp); // Caller's frame pointer.
196 __ mov(ebp, esp);
197 __ push(esi); // Callee's context.
198 if (info()->IsStub()) {
199 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
200 } else {
201 __ push(edi); // Callee's JS function.
202 }
203 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000204
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000205 if (info()->IsOptimizing() &&
206 dynamic_frame_alignment_ &&
207 FLAG_debug_code) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000208 __ test(esp, Immediate(kPointerSize));
209 __ Assert(zero, "frame is expected to be aligned");
210 }
211
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000212 // Reserve space for the stack slots needed by the code.
danno@chromium.org160a7b02011-04-18 15:51:38 +0000213 int slots = GetStackSlotCount();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000214 ASSERT(slots != 0 || !info()->IsOptimizing());
215 if (slots > 0) {
216 if (slots == 1) {
217 if (dynamic_frame_alignment_) {
218 __ push(edx);
219 } else {
220 __ push(Immediate(kNoAlignmentPadding));
mstarzinger@chromium.org32280cf2012-12-06 17:32:37 +0000221 }
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +0000222 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000223 if (FLAG_debug_code) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000224 __ sub(Operand(esp), Immediate(slots * kPointerSize));
225 __ push(eax);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000226 __ mov(Operand(eax), Immediate(slots));
227 Label loop;
228 __ bind(&loop);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000229 __ mov(MemOperand(esp, eax, times_4, 0),
230 Immediate(kSlotsZapValue));
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000231 __ dec(eax);
232 __ j(not_zero, &loop);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000233 __ pop(eax);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000234 } else {
235 __ sub(Operand(esp), Immediate(slots * kPointerSize));
236#ifdef _MSC_VER
237 // On windows, you may not access the stack more than one page below
238 // the most recently mapped page. To make the allocated area randomly
239 // accessible, we write to each page in turn (the value is irrelevant).
240 const int kPageSize = 4 * KB;
241 for (int offset = slots * kPointerSize - kPageSize;
242 offset > 0;
243 offset -= kPageSize) {
244 __ mov(Operand(esp, offset), eax);
245 }
246#endif
247 }
248
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000249 if (support_aligned_spilled_doubles_) {
250 Comment(";;; Store dynamic frame alignment tag for spilled doubles");
251 // Store dynamic frame alignment state in the first local.
252 int offset = JavaScriptFrameConstants::kDynamicAlignmentStateOffset;
253 if (dynamic_frame_alignment_) {
254 __ mov(Operand(ebp, offset), edx);
255 } else {
256 __ mov(Operand(ebp, offset), Immediate(kNoAlignmentPadding));
257 }
258 }
259 }
260
261 if (info()->saves_caller_doubles() && CpuFeatures::IsSupported(SSE2)) {
262 Comment(";;; Save clobbered callee double registers");
263 CpuFeatures::Scope scope(SSE2);
264 int count = 0;
265 BitVector* doubles = chunk()->allocated_double_registers();
266 BitVector::Iterator save_iterator(doubles);
267 while (!save_iterator.Done()) {
268 __ movdbl(MemOperand(esp, count * kDoubleSize),
269 XMMRegister::FromAllocationIndex(save_iterator.Current()));
270 save_iterator.Advance();
271 count++;
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000272 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000273 }
274 }
275
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000276 // Possibly allocate a local context.
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000277 int heap_slots = info_->num_heap_slots() - Context::MIN_CONTEXT_SLOTS;
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000278 if (heap_slots > 0) {
279 Comment(";;; Allocate local context");
280 // Argument to NewContext is the function, which is still in edi.
281 __ push(edi);
282 if (heap_slots <= FastNewContextStub::kMaximumSlots) {
283 FastNewContextStub stub(heap_slots);
284 __ CallStub(&stub);
285 } else {
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +0000286 __ CallRuntime(Runtime::kNewFunctionContext, 1);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000287 }
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000288 RecordSafepoint(Safepoint::kNoLazyDeopt);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000289 // Context is returned in both eax and esi. It replaces the context
290 // passed to us. It's saved in the stack and kept live in esi.
291 __ mov(Operand(ebp, StandardFrameConstants::kContextOffset), esi);
292
293 // Copy parameters into context if necessary.
294 int num_parameters = scope()->num_parameters();
295 for (int i = 0; i < num_parameters; i++) {
jkummerow@chromium.org486075a2011-09-07 12:44:28 +0000296 Variable* var = scope()->parameter(i);
297 if (var->IsContextSlot()) {
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000298 int parameter_offset = StandardFrameConstants::kCallerSPOffset +
299 (num_parameters - 1 - i) * kPointerSize;
300 // Load parameter from stack.
301 __ mov(eax, Operand(ebp, parameter_offset));
302 // Store it in the context.
jkummerow@chromium.org486075a2011-09-07 12:44:28 +0000303 int context_offset = Context::SlotOffset(var->index());
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000304 __ mov(Operand(esi, context_offset), eax);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000305 // Update the write barrier. This clobbers eax and ebx.
306 __ RecordWriteContextSlot(esi,
307 context_offset,
308 eax,
309 ebx,
310 kDontSaveFPRegs);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000311 }
312 }
313 Comment(";;; End allocate local context");
314 }
315
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000316 // Trace the call.
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000317 if (FLAG_trace && info()->IsOptimizing()) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +0000318 // We have not executed any compiled code yet, so esi still holds the
319 // incoming context.
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000320 __ CallRuntime(Runtime::kTraceEnter, 0);
321 }
322 return !is_aborted();
323}
324
325
326bool LCodeGen::GenerateBody() {
327 ASSERT(is_generating());
328 bool emit_instructions = true;
329 for (current_instruction_ = 0;
330 !is_aborted() && current_instruction_ < instructions_->length();
331 current_instruction_++) {
332 LInstruction* instr = instructions_->at(current_instruction_);
333 if (instr->IsLabel()) {
334 LLabel* label = LLabel::cast(instr);
335 emit_instructions = !label->HasReplacement();
336 }
337
338 if (emit_instructions) {
yangguo@chromium.orgfb377212012-11-16 14:43:43 +0000339 if (FLAG_code_comments) {
340 HValue* hydrogen = instr->hydrogen_value();
341 if (hydrogen != NULL) {
342 if (hydrogen->IsChange()) {
343 HValue* changed_value = HChange::cast(hydrogen)->value();
344 int use_id = 0;
345 const char* use_mnemo = "dead";
346 if (hydrogen->UseCount() >= 1) {
347 HValue* use_value = hydrogen->uses().value();
348 use_id = use_value->id();
349 use_mnemo = use_value->Mnemonic();
350 }
351 Comment(";;; @%d: %s. <of #%d %s for #%d %s>",
352 current_instruction_, instr->Mnemonic(),
353 changed_value->id(), changed_value->Mnemonic(),
354 use_id, use_mnemo);
355 } else {
356 Comment(";;; @%d: %s. <#%d>", current_instruction_,
357 instr->Mnemonic(), hydrogen->id());
358 }
359 } else {
360 Comment(";;; @%d: %s.", current_instruction_, instr->Mnemonic());
361 }
362 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000363 instr->CompileToNative(this);
364 }
365 }
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000366 EnsureSpaceForLazyDeopt();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000367 return !is_aborted();
368}
369
370
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000371bool LCodeGen::GenerateJumpTable() {
372 Label needs_frame_not_call;
373 Label needs_frame_is_call;
374 for (int i = 0; i < jump_table_.length(); i++) {
375 __ bind(&jump_table_[i].label);
376 Address entry = jump_table_[i].address;
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +0000377 bool is_lazy_deopt = jump_table_[i].is_lazy_deopt;
378 Deoptimizer::BailoutType type =
379 is_lazy_deopt ? Deoptimizer::LAZY : Deoptimizer::EAGER;
380 int id = Deoptimizer::GetDeoptimizationId(entry, type);
381 if (id == Deoptimizer::kNotDeoptimizationEntry) {
382 Comment(";;; jump table entry %d.", i);
383 } else {
384 Comment(";;; jump table entry %d: deoptimization bailout %d.", i, id);
385 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000386 if (jump_table_[i].needs_frame) {
387 __ push(Immediate(ExternalReference::ForDeoptEntry(entry)));
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +0000388 if (is_lazy_deopt) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000389 if (needs_frame_is_call.is_bound()) {
390 __ jmp(&needs_frame_is_call);
391 } else {
392 __ bind(&needs_frame_is_call);
393 __ push(MemOperand(ebp, StandardFrameConstants::kContextOffset));
394 // This variant of deopt can only be used with stubs. Since we don't
395 // have a function pointer to install in the stack frame that we're
396 // building, install a special marker there instead.
397 ASSERT(info()->IsStub());
398 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
399 // Push a PC inside the function so that the deopt code can find where
400 // the deopt comes from. It doesn't have to be the precise return
401 // address of a "calling" LAZY deopt, it only has to be somewhere
402 // inside the code body.
403 Label push_approx_pc;
404 __ call(&push_approx_pc);
405 __ bind(&push_approx_pc);
406 // Push the continuation which was stashed were the ebp should
407 // be. Replace it with the saved ebp.
408 __ push(MemOperand(esp, 3 * kPointerSize));
409 __ mov(MemOperand(esp, 4 * kPointerSize), ebp);
410 __ lea(ebp, MemOperand(esp, 4 * kPointerSize));
411 __ ret(0); // Call the continuation without clobbering registers.
412 }
413 } else {
414 if (needs_frame_not_call.is_bound()) {
415 __ jmp(&needs_frame_not_call);
416 } else {
417 __ bind(&needs_frame_not_call);
418 __ push(MemOperand(ebp, StandardFrameConstants::kContextOffset));
419 // This variant of deopt can only be used with stubs. Since we don't
420 // have a function pointer to install in the stack frame that we're
421 // building, install a special marker there instead.
422 ASSERT(info()->IsStub());
423 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
424 // Push the continuation which was stashed were the ebp should
425 // be. Replace it with the saved ebp.
426 __ push(MemOperand(esp, 2 * kPointerSize));
427 __ mov(MemOperand(esp, 3 * kPointerSize), ebp);
428 __ lea(ebp, MemOperand(esp, 3 * kPointerSize));
429 __ ret(0); // Call the continuation without clobbering registers.
430 }
431 }
432 } else {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +0000433 if (is_lazy_deopt) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000434 __ call(entry, RelocInfo::RUNTIME_ENTRY);
435 } else {
436 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
437 }
438 }
439 }
440 return !is_aborted();
441}
442
443
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000444bool LCodeGen::GenerateDeferredCode() {
445 ASSERT(is_generating());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000446 if (deferred_.length() > 0) {
447 for (int i = 0; !is_aborted() && i < deferred_.length(); i++) {
448 LDeferredCode* code = deferred_[i];
449 __ bind(code->entry());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000450 if (NeedsDeferredFrame()) {
451 Comment(";;; Deferred build frame",
452 code->instruction_index(),
453 code->instr()->Mnemonic());
454 ASSERT(!frame_is_built_);
455 ASSERT(info()->IsStub());
456 frame_is_built_ = true;
457 // Build the frame in such a way that esi isn't trashed.
458 __ push(ebp); // Caller's frame pointer.
459 __ push(Operand(ebp, StandardFrameConstants::kContextOffset));
460 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
461 __ lea(ebp, Operand(esp, 2 * kPointerSize));
462 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000463 Comment(";;; Deferred code @%d: %s.",
464 code->instruction_index(),
465 code->instr()->Mnemonic());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000466 code->Generate();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000467 if (NeedsDeferredFrame()) {
468 Comment(";;; Deferred destroy frame",
469 code->instruction_index(),
470 code->instr()->Mnemonic());
471 ASSERT(frame_is_built_);
472 frame_is_built_ = false;
473 __ mov(esp, ebp);
474 __ pop(ebp);
475 }
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000476 __ jmp(code->exit());
477 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000478 }
479
480 // Deferred code is the last part of the instruction sequence. Mark
481 // the generated code as done unless we bailed out.
482 if (!is_aborted()) status_ = DONE;
483 return !is_aborted();
484}
485
486
487bool LCodeGen::GenerateSafepointTable() {
488 ASSERT(is_done());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000489 if (!info()->IsStub()) {
490 // For lazy deoptimization we need space to patch a call after every call.
491 // Ensure there is always space for such patching, even if the code ends
492 // in a call.
493 int target_offset = masm()->pc_offset() + Deoptimizer::patch_size();
494 while (masm()->pc_offset() < target_offset) {
495 masm()->nop();
496 }
497 }
danno@chromium.org160a7b02011-04-18 15:51:38 +0000498 safepoints_.Emit(masm(), GetStackSlotCount());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000499 return !is_aborted();
500}
501
502
503Register LCodeGen::ToRegister(int index) const {
504 return Register::FromAllocationIndex(index);
505}
506
507
508XMMRegister LCodeGen::ToDoubleRegister(int index) const {
509 return XMMRegister::FromAllocationIndex(index);
510}
511
512
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000513bool LCodeGen::IsX87TopOfStack(LOperand* op) const {
514 return op->IsDoubleRegister();
515}
516
517
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000518Register LCodeGen::ToRegister(LOperand* op) const {
519 ASSERT(op->IsRegister());
520 return ToRegister(op->index());
521}
522
523
524XMMRegister LCodeGen::ToDoubleRegister(LOperand* op) const {
525 ASSERT(op->IsDoubleRegister());
526 return ToDoubleRegister(op->index());
527}
528
529
530int LCodeGen::ToInteger32(LConstantOperand* op) const {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000531 HConstant* constant = chunk_->LookupConstant(op);
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000532 return constant->Integer32Value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000533}
534
535
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +0000536Handle<Object> LCodeGen::ToHandle(LConstantOperand* op) const {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000537 HConstant* constant = chunk_->LookupConstant(op);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +0000538 ASSERT(chunk_->LookupLiteralRepresentation(op).IsTagged());
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000539 return constant->handle();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +0000540}
541
542
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +0000543double LCodeGen::ToDouble(LConstantOperand* op) const {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000544 HConstant* constant = chunk_->LookupConstant(op);
545 ASSERT(constant->HasDoubleValue());
546 return constant->DoubleValue();
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +0000547}
548
549
danno@chromium.orgbf0c8202011-12-27 10:09:42 +0000550bool LCodeGen::IsInteger32(LConstantOperand* op) const {
551 return chunk_->LookupLiteralRepresentation(op).IsInteger32();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000552}
553
554
555Operand LCodeGen::ToOperand(LOperand* op) const {
556 if (op->IsRegister()) return Operand(ToRegister(op));
557 if (op->IsDoubleRegister()) return Operand(ToDoubleRegister(op));
558 ASSERT(op->IsStackSlot() || op->IsDoubleStackSlot());
jkummerow@chromium.orgac360712013-02-11 09:00:07 +0000559 return Operand(ebp, StackSlotOffset(op->index()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000560}
561
562
erik.corry@gmail.com0511e242011-01-19 11:11:08 +0000563Operand LCodeGen::HighOperand(LOperand* op) {
564 ASSERT(op->IsDoubleStackSlot());
jkummerow@chromium.orgac360712013-02-11 09:00:07 +0000565 return Operand(ebp, StackSlotOffset(op->index()) + kPointerSize);
erik.corry@gmail.com0511e242011-01-19 11:11:08 +0000566}
567
568
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000569void LCodeGen::WriteTranslation(LEnvironment* environment,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000570 Translation* translation,
hpayer@chromium.org8432c912013-02-28 15:55:26 +0000571 int* pushed_arguments_index,
572 int* pushed_arguments_count) {
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000573 if (environment == NULL) return;
574
575 // The translation includes one command per value in the environment.
576 int translation_size = environment->values()->length();
577 // The output frame height does not include the parameters.
578 int height = translation_size - environment->parameter_count();
579
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000580 // Function parameters are arguments to the outermost environment. The
581 // arguments index points to the first element of a sequence of tagged
582 // values on the stack that represent the arguments. This needs to be
583 // kept in sync with the LArgumentsElements implementation.
hpayer@chromium.org8432c912013-02-28 15:55:26 +0000584 *pushed_arguments_index = -environment->parameter_count();
585 *pushed_arguments_count = environment->parameter_count();
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000586
587 WriteTranslation(environment->outer(),
588 translation,
hpayer@chromium.org8432c912013-02-28 15:55:26 +0000589 pushed_arguments_index,
590 pushed_arguments_count);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000591 bool has_closure_id = !info()->closure().is_null() &&
592 *info()->closure() != *environment->closure();
593 int closure_id = has_closure_id
yangguo@chromium.org5a11aaf2012-06-20 11:29:00 +0000594 ? DefineDeoptimizationLiteral(environment->closure())
595 : Translation::kSelfLiteralId;
ulan@chromium.org967e2702012-02-28 09:49:15 +0000596 switch (environment->frame_type()) {
597 case JS_FUNCTION:
598 translation->BeginJSFrame(environment->ast_id(), closure_id, height);
599 break;
600 case JS_CONSTRUCT:
601 translation->BeginConstructStubFrame(closure_id, translation_size);
602 break;
mstarzinger@chromium.orgde886792012-09-11 13:22:37 +0000603 case JS_GETTER:
604 ASSERT(translation_size == 1);
605 ASSERT(height == 0);
606 translation->BeginGetterStubFrame(closure_id);
607 break;
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000608 case JS_SETTER:
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000609 ASSERT(translation_size == 2);
610 ASSERT(height == 0);
611 translation->BeginSetterStubFrame(closure_id);
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000612 break;
ulan@chromium.org967e2702012-02-28 09:49:15 +0000613 case ARGUMENTS_ADAPTOR:
614 translation->BeginArgumentsAdaptorFrame(closure_id, translation_size);
615 break;
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000616 case STUB:
617 translation->BeginCompiledStubFrame();
618 break;
619 default:
620 UNREACHABLE();
yangguo@chromium.org659ceec2012-01-26 07:37:54 +0000621 }
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000622
623 // Inlined frames which push their arguments cause the index to be
hpayer@chromium.org8432c912013-02-28 15:55:26 +0000624 // bumped and another stack area to be used for materialization,
625 // otherwise actual argument values are unknown for inlined frames.
626 bool arguments_known = true;
627 int arguments_index = *pushed_arguments_index;
628 int arguments_count = *pushed_arguments_count;
629 if (environment->entry() != NULL) {
630 arguments_known = environment->entry()->arguments_pushed();
631 arguments_index = arguments_index < 0
632 ? GetStackSlotCount() : arguments_index + arguments_count;
633 arguments_count = environment->entry()->arguments_count() + 1;
634 if (environment->entry()->arguments_pushed()) {
635 *pushed_arguments_index = arguments_index;
636 *pushed_arguments_count = arguments_count;
637 }
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000638 }
639
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000640 for (int i = 0; i < translation_size; ++i) {
641 LOperand* value = environment->values()->at(i);
642 // spilled_registers_ and spilled_double_registers_ are either
643 // both NULL or both set.
644 if (environment->spilled_registers() != NULL && value != NULL) {
645 if (value->IsRegister() &&
646 environment->spilled_registers()[value->index()] != NULL) {
647 translation->MarkDuplicate();
648 AddToTranslation(translation,
649 environment->spilled_registers()[value->index()],
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000650 environment->HasTaggedValueAt(i),
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000651 environment->HasUint32ValueAt(i),
hpayer@chromium.org8432c912013-02-28 15:55:26 +0000652 arguments_known,
653 arguments_index,
654 arguments_count);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000655 } else if (
656 value->IsDoubleRegister() &&
657 environment->spilled_double_registers()[value->index()] != NULL) {
658 translation->MarkDuplicate();
659 AddToTranslation(
660 translation,
661 environment->spilled_double_registers()[value->index()],
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000662 false,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000663 false,
hpayer@chromium.org8432c912013-02-28 15:55:26 +0000664 arguments_known,
665 arguments_index,
666 arguments_count);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000667 }
668 }
669
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000670 AddToTranslation(translation,
671 value,
672 environment->HasTaggedValueAt(i),
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000673 environment->HasUint32ValueAt(i),
hpayer@chromium.org8432c912013-02-28 15:55:26 +0000674 arguments_known,
675 arguments_index,
676 arguments_count);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000677 }
678}
679
680
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000681void LCodeGen::AddToTranslation(Translation* translation,
682 LOperand* op,
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000683 bool is_tagged,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000684 bool is_uint32,
hpayer@chromium.org8432c912013-02-28 15:55:26 +0000685 bool arguments_known,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000686 int arguments_index,
687 int arguments_count) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000688 if (op == NULL) {
689 // TODO(twuerthinger): Introduce marker operands to indicate that this value
690 // is not present and must be reconstructed from the deoptimizer. Currently
691 // this is only used for the arguments object.
hpayer@chromium.org8432c912013-02-28 15:55:26 +0000692 translation->StoreArgumentsObject(
693 arguments_known, arguments_index, arguments_count);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000694 } else if (op->IsStackSlot()) {
695 if (is_tagged) {
696 translation->StoreStackSlot(op->index());
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000697 } else if (is_uint32) {
698 translation->StoreUint32StackSlot(op->index());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000699 } else {
700 translation->StoreInt32StackSlot(op->index());
701 }
702 } else if (op->IsDoubleStackSlot()) {
703 translation->StoreDoubleStackSlot(op->index());
704 } else if (op->IsArgument()) {
705 ASSERT(is_tagged);
danno@chromium.org160a7b02011-04-18 15:51:38 +0000706 int src_index = GetStackSlotCount() + op->index();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000707 translation->StoreStackSlot(src_index);
708 } else if (op->IsRegister()) {
709 Register reg = ToRegister(op);
710 if (is_tagged) {
711 translation->StoreRegister(reg);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000712 } else if (is_uint32) {
713 translation->StoreUint32Register(reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000714 } else {
715 translation->StoreInt32Register(reg);
716 }
717 } else if (op->IsDoubleRegister()) {
718 XMMRegister reg = ToDoubleRegister(op);
719 translation->StoreDoubleRegister(reg);
720 } else if (op->IsConstantOperand()) {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000721 HConstant* constant = chunk()->LookupConstant(LConstantOperand::cast(op));
722 int src_index = DefineDeoptimizationLiteral(constant->handle());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000723 translation->StoreLiteral(src_index);
724 } else {
725 UNREACHABLE();
726 }
727}
728
729
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000730void LCodeGen::CallCodeGeneric(Handle<Code> code,
731 RelocInfo::Mode mode,
732 LInstruction* instr,
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000733 SafepointMode safepoint_mode) {
kmillikin@chromium.org31b12772011-02-02 16:08:26 +0000734 ASSERT(instr != NULL);
735 LPointerMap* pointers = instr->pointer_map();
736 RecordPosition(pointers->position());
737 __ call(code, mode);
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000738 RecordSafepointWithLazyDeopt(instr, safepoint_mode);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +0000739
740 // Signal that we don't inline smi code before these stubs in the
741 // optimizing code generator.
danno@chromium.org40cb8782011-05-25 07:58:50 +0000742 if (code->kind() == Code::BINARY_OP_IC ||
ager@chromium.org5f0c45f2010-12-17 08:51:21 +0000743 code->kind() == Code::COMPARE_IC) {
744 __ nop();
745 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000746}
747
748
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000749void LCodeGen::CallCode(Handle<Code> code,
750 RelocInfo::Mode mode,
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000751 LInstruction* instr) {
752 CallCodeGeneric(code, mode, instr, RECORD_SIMPLE_SAFEPOINT);
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000753}
754
755
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +0000756void LCodeGen::CallRuntime(const Runtime::Function* fun,
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +0000757 int argc,
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000758 LInstruction* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000759 ASSERT(instr != NULL);
kmillikin@chromium.org31b12772011-02-02 16:08:26 +0000760 ASSERT(instr->HasPointerMap());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000761 LPointerMap* pointers = instr->pointer_map();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000762 RecordPosition(pointers->position());
763
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +0000764 __ CallRuntime(fun, argc);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +0000765
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000766 RecordSafepointWithLazyDeopt(instr, RECORD_SIMPLE_SAFEPOINT);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000767
768 ASSERT(info()->is_calling());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000769}
770
771
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000772void LCodeGen::LoadContextFromDeferred(LOperand* context) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000773 if (context->IsRegister()) {
774 if (!ToRegister(context).is(esi)) {
775 __ mov(esi, ToRegister(context));
776 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000777 } else if (context->IsStackSlot()) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000778 __ mov(esi, ToOperand(context));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000779 } else if (context->IsConstantOperand()) {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000780 HConstant* constant =
781 chunk_->LookupConstant(LConstantOperand::cast(context));
782 __ LoadHeapObject(esi, Handle<Context>::cast(constant->handle()));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000783 } else {
784 UNREACHABLE();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000785 }
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000786}
787
788void LCodeGen::CallRuntimeFromDeferred(Runtime::FunctionId id,
789 int argc,
790 LInstruction* instr,
791 LOperand* context) {
792 LoadContextFromDeferred(context);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000793
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000794 __ CallRuntimeSaveDoubles(id);
795 RecordSafepointWithRegisters(
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000796 instr->pointer_map(), argc, Safepoint::kNoLazyDeopt);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000797
798 ASSERT(info()->is_calling());
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000799}
800
801
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000802void LCodeGen::RegisterEnvironmentForDeoptimization(
803 LEnvironment* environment, Safepoint::DeoptMode mode) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000804 if (!environment->HasBeenRegistered()) {
805 // Physical stack frame layout:
806 // -x ............. -4 0 ..................................... y
807 // [incoming arguments] [spill slots] [pushed outgoing arguments]
808
809 // Layout of the environment:
810 // 0 ..................................................... size-1
811 // [parameters] [locals] [expression stack including arguments]
812
813 // Layout of the translation:
814 // 0 ........................................................ size - 1 + 4
815 // [expression stack including arguments] [locals] [4 words] [parameters]
816 // |>------------ translation_size ------------<|
817
818 int frame_count = 0;
yangguo@chromium.org659ceec2012-01-26 07:37:54 +0000819 int jsframe_count = 0;
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000820 int args_index = 0;
821 int args_count = 0;
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000822 for (LEnvironment* e = environment; e != NULL; e = e->outer()) {
823 ++frame_count;
ulan@chromium.org967e2702012-02-28 09:49:15 +0000824 if (e->frame_type() == JS_FUNCTION) {
yangguo@chromium.org659ceec2012-01-26 07:37:54 +0000825 ++jsframe_count;
826 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000827 }
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000828 Translation translation(&translations_, frame_count, jsframe_count, zone());
829 WriteTranslation(environment, &translation, &args_index, &args_count);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000830 int deoptimization_index = deoptimizations_.length();
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000831 int pc_offset = masm()->pc_offset();
832 environment->Register(deoptimization_index,
833 translation.index(),
834 (mode == Safepoint::kLazyDeopt) ? pc_offset : -1);
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000835 deoptimizations_.Add(environment, zone());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000836 }
837}
838
839
840void LCodeGen::DeoptimizeIf(Condition cc, LEnvironment* environment) {
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000841 RegisterEnvironmentForDeoptimization(environment, Safepoint::kNoLazyDeopt);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000842 ASSERT(environment->HasBeenRegistered());
843 int id = environment->deoptimization_index();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000844 ASSERT(info()->IsOptimizing() || info()->IsStub());
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +0000845 Deoptimizer::BailoutType bailout_type = info()->IsStub()
846 ? Deoptimizer::LAZY
847 : Deoptimizer::EAGER;
hpayer@chromium.org8432c912013-02-28 15:55:26 +0000848 Address entry =
849 Deoptimizer::GetDeoptimizationEntry(isolate(), id, bailout_type);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000850 if (entry == NULL) {
851 Abort("bailout was not prepared");
852 return;
853 }
854
855 if (FLAG_deopt_every_n_times != 0) {
856 Handle<SharedFunctionInfo> shared(info_->shared_info());
857 Label no_deopt;
858 __ pushfd();
859 __ push(eax);
860 __ push(ebx);
861 __ mov(ebx, shared);
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000862 __ mov(eax,
863 FieldOperand(ebx, SharedFunctionInfo::kStressDeoptCounterOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000864 __ sub(Operand(eax), Immediate(Smi::FromInt(1)));
karlklose@chromium.org83a47282011-05-11 11:54:09 +0000865 __ j(not_zero, &no_deopt, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000866 if (FLAG_trap_on_deopt) __ int3();
867 __ mov(eax, Immediate(Smi::FromInt(FLAG_deopt_every_n_times)));
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000868 __ mov(FieldOperand(ebx, SharedFunctionInfo::kStressDeoptCounterOffset),
869 eax);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000870 __ pop(ebx);
871 __ pop(eax);
872 __ popfd();
873 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
874
875 __ bind(&no_deopt);
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000876 __ mov(FieldOperand(ebx, SharedFunctionInfo::kStressDeoptCounterOffset),
877 eax);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000878 __ pop(ebx);
879 __ pop(eax);
880 __ popfd();
881 }
882
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000883 if (FLAG_trap_on_deopt) {
884 Label done;
885 if (cc != no_condition) {
886 __ j(NegateCondition(cc), &done, Label::kNear);
887 }
888 __ int3();
889 __ bind(&done);
890 }
891
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000892 ASSERT(info()->IsStub() || frame_is_built_);
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000893 bool needs_lazy_deopt = info()->IsStub();
894 if (cc == no_condition && frame_is_built_) {
895 if (needs_lazy_deopt) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000896 __ call(entry, RelocInfo::RUNTIME_ENTRY);
897 } else {
898 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
899 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000900 } else {
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000901 // We often have several deopts to the same entry, reuse the last
902 // jump entry if this is the case.
903 if (jump_table_.is_empty() ||
904 jump_table_.last().address != entry ||
905 jump_table_.last().needs_frame != !frame_is_built_ ||
906 jump_table_.last().is_lazy_deopt != needs_lazy_deopt) {
907 JumpTableEntry table_entry(entry, !frame_is_built_, needs_lazy_deopt);
908 jump_table_.Add(table_entry, zone());
mstarzinger@chromium.org32280cf2012-12-06 17:32:37 +0000909 }
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000910 if (cc == no_condition) {
911 __ jmp(&jump_table_.last().label);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000912 } else {
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +0000913 __ j(cc, &jump_table_.last().label);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000914 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000915 }
916}
917
918
ulan@chromium.org6ba1fd02013-02-14 14:56:11 +0000919void LCodeGen::RegisterDependentCodeForEmbeddedMaps(Handle<Code> code) {
920 ZoneList<Handle<Map> > maps(1, zone());
921 int mode_mask = RelocInfo::ModeMask(RelocInfo::EMBEDDED_OBJECT);
922 for (RelocIterator it(*code, mode_mask); !it.done(); it.next()) {
923 RelocInfo::Mode mode = it.rinfo()->rmode();
924 if (mode == RelocInfo::EMBEDDED_OBJECT &&
925 it.rinfo()->target_object()->IsMap()) {
926 Handle<Map> map(Map::cast(it.rinfo()->target_object()));
927 if (map->CanTransition()) {
928 maps.Add(map, zone());
929 }
930 }
931 }
932#ifdef VERIFY_HEAP
933 // This disables verification of weak embedded maps after full GC.
934 // AddDependentCode can cause a GC, which would observe the state where
935 // this code is not yet in the depended code lists of the embedded maps.
936 NoWeakEmbeddedMapsVerificationScope disable_verification_of_embedded_maps;
937#endif
938 for (int i = 0; i < maps.length(); i++) {
ulan@chromium.org2e04b582013-02-21 14:06:02 +0000939 maps.at(i)->AddDependentCode(DependentCode::kWeaklyEmbeddedGroup, code);
ulan@chromium.org6ba1fd02013-02-14 14:56:11 +0000940 }
941}
942
943
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000944void LCodeGen::PopulateDeoptimizationData(Handle<Code> code) {
945 int length = deoptimizations_.length();
946 if (length == 0) return;
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000947 Handle<DeoptimizationInputData> data =
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +0000948 factory()->NewDeoptimizationInputData(length, TENURED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000949
ager@chromium.org9ee27ae2011-03-02 13:43:26 +0000950 Handle<ByteArray> translations = translations_.CreateByteArray();
951 data->SetTranslationByteArray(*translations);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000952 data->SetInlinedFunctionCount(Smi::FromInt(inlined_function_count_));
953
954 Handle<FixedArray> literals =
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +0000955 factory()->NewFixedArray(deoptimization_literals_.length(), TENURED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000956 for (int i = 0; i < deoptimization_literals_.length(); i++) {
957 literals->set(i, *deoptimization_literals_[i]);
958 }
959 data->SetLiteralArray(*literals);
960
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000961 data->SetOsrAstId(Smi::FromInt(info_->osr_ast_id().ToInt()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000962 data->SetOsrPcOffset(Smi::FromInt(osr_pc_offset_));
963
964 // Populate the deoptimization entries.
965 for (int i = 0; i < length; i++) {
966 LEnvironment* env = deoptimizations_[i];
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000967 data->SetAstId(i, env->ast_id());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000968 data->SetTranslationIndex(i, Smi::FromInt(env->translation_index()));
969 data->SetArgumentsStackHeight(i,
970 Smi::FromInt(env->arguments_stack_height()));
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000971 data->SetPc(i, Smi::FromInt(env->pc_offset()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000972 }
973 code->set_deoptimization_data(*data);
974}
975
976
977int LCodeGen::DefineDeoptimizationLiteral(Handle<Object> literal) {
978 int result = deoptimization_literals_.length();
979 for (int i = 0; i < deoptimization_literals_.length(); ++i) {
980 if (deoptimization_literals_[i].is_identical_to(literal)) return i;
981 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000982 deoptimization_literals_.Add(literal, zone());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000983 return result;
984}
985
986
987void LCodeGen::PopulateDeoptimizationLiteralsWithInlinedFunctions() {
988 ASSERT(deoptimization_literals_.length() == 0);
989
990 const ZoneList<Handle<JSFunction> >* inlined_closures =
991 chunk()->inlined_closures();
992
993 for (int i = 0, length = inlined_closures->length();
994 i < length;
995 i++) {
996 DefineDeoptimizationLiteral(inlined_closures->at(i));
997 }
998
999 inlined_function_count_ = deoptimization_literals_.length();
1000}
1001
1002
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001003void LCodeGen::RecordSafepointWithLazyDeopt(
1004 LInstruction* instr, SafepointMode safepoint_mode) {
1005 if (safepoint_mode == RECORD_SIMPLE_SAFEPOINT) {
1006 RecordSafepoint(instr->pointer_map(), Safepoint::kLazyDeopt);
1007 } else {
1008 ASSERT(safepoint_mode == RECORD_SAFEPOINT_WITH_REGISTERS_AND_NO_ARGUMENTS);
1009 RecordSafepointWithRegisters(
1010 instr->pointer_map(), 0, Safepoint::kLazyDeopt);
1011 }
1012}
1013
1014
ager@chromium.org378b34e2011-01-28 08:04:38 +00001015void LCodeGen::RecordSafepoint(
1016 LPointerMap* pointers,
1017 Safepoint::Kind kind,
1018 int arguments,
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001019 Safepoint::DeoptMode deopt_mode) {
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00001020 ASSERT(kind == expected_safepoint_kind_);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00001021 const ZoneList<LOperand*>* operands = pointers->GetNormalizedOperands();
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001022 Safepoint safepoint =
1023 safepoints_.DefineSafepoint(masm(), kind, arguments, deopt_mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001024 for (int i = 0; i < operands->length(); i++) {
1025 LOperand* pointer = operands->at(i);
1026 if (pointer->IsStackSlot()) {
rossberg@chromium.org400388e2012-06-06 09:29:22 +00001027 safepoint.DefinePointerSlot(pointer->index(), zone());
ager@chromium.org378b34e2011-01-28 08:04:38 +00001028 } else if (pointer->IsRegister() && (kind & Safepoint::kWithRegisters)) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +00001029 safepoint.DefinePointerRegister(ToRegister(pointer), zone());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001030 }
1031 }
ager@chromium.org378b34e2011-01-28 08:04:38 +00001032}
1033
1034
1035void LCodeGen::RecordSafepoint(LPointerMap* pointers,
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001036 Safepoint::DeoptMode mode) {
1037 RecordSafepoint(pointers, Safepoint::kSimple, 0, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001038}
1039
1040
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001041void LCodeGen::RecordSafepoint(Safepoint::DeoptMode mode) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +00001042 LPointerMap empty_pointers(RelocInfo::kNoPosition, zone());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001043 RecordSafepoint(&empty_pointers, mode);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00001044}
1045
1046
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001047void LCodeGen::RecordSafepointWithRegisters(LPointerMap* pointers,
1048 int arguments,
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001049 Safepoint::DeoptMode mode) {
1050 RecordSafepoint(pointers, Safepoint::kWithRegisters, arguments, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001051}
1052
1053
1054void LCodeGen::RecordPosition(int position) {
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00001055 if (position == RelocInfo::kNoPosition) return;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001056 masm()->positions_recorder()->RecordPosition(position);
1057}
1058
1059
1060void LCodeGen::DoLabel(LLabel* label) {
1061 if (label->is_loop_header()) {
1062 Comment(";;; B%d - LOOP entry", label->block_id());
1063 } else {
1064 Comment(";;; B%d", label->block_id());
1065 }
1066 __ bind(label->label());
1067 current_block_ = label->block_id();
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001068 DoGap(label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001069}
1070
1071
1072void LCodeGen::DoParallelMove(LParallelMove* move) {
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00001073 resolver_.Resolve(move);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001074}
1075
1076
1077void LCodeGen::DoGap(LGap* gap) {
1078 for (int i = LGap::FIRST_INNER_POSITION;
1079 i <= LGap::LAST_INNER_POSITION;
1080 i++) {
1081 LGap::InnerPosition inner_pos = static_cast<LGap::InnerPosition>(i);
1082 LParallelMove* move = gap->GetParallelMove(inner_pos);
1083 if (move != NULL) DoParallelMove(move);
1084 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001085}
1086
1087
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001088void LCodeGen::DoInstructionGap(LInstructionGap* instr) {
1089 DoGap(instr);
1090}
1091
1092
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001093void LCodeGen::DoParameter(LParameter* instr) {
1094 // Nothing to do.
1095}
1096
1097
1098void LCodeGen::DoCallStub(LCallStub* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00001099 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001100 ASSERT(ToRegister(instr->result()).is(eax));
1101 switch (instr->hydrogen()->major_key()) {
1102 case CodeStub::RegExpConstructResult: {
1103 RegExpConstructResultStub stub;
hpayer@chromium.org8432c912013-02-28 15:55:26 +00001104 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001105 break;
1106 }
1107 case CodeStub::RegExpExec: {
1108 RegExpExecStub stub;
hpayer@chromium.org8432c912013-02-28 15:55:26 +00001109 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001110 break;
1111 }
1112 case CodeStub::SubString: {
1113 SubStringStub stub;
hpayer@chromium.org8432c912013-02-28 15:55:26 +00001114 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001115 break;
1116 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001117 case CodeStub::NumberToString: {
1118 NumberToStringStub stub;
hpayer@chromium.org8432c912013-02-28 15:55:26 +00001119 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001120 break;
1121 }
1122 case CodeStub::StringAdd: {
1123 StringAddStub stub(NO_STRING_ADD_FLAGS);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00001124 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001125 break;
1126 }
1127 case CodeStub::StringCompare: {
1128 StringCompareStub stub;
hpayer@chromium.org8432c912013-02-28 15:55:26 +00001129 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001130 break;
1131 }
1132 case CodeStub::TranscendentalCache: {
whesse@chromium.org023421e2010-12-21 12:19:12 +00001133 TranscendentalCacheStub stub(instr->transcendental_type(),
1134 TranscendentalCacheStub::TAGGED);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00001135 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001136 break;
1137 }
1138 default:
1139 UNREACHABLE();
1140 }
1141}
1142
1143
1144void LCodeGen::DoUnknownOSRValue(LUnknownOSRValue* instr) {
1145 // Nothing to do.
1146}
1147
1148
1149void LCodeGen::DoModI(LModI* instr) {
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001150 if (instr->hydrogen()->HasPowerOf2Divisor()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001151 Register dividend = ToRegister(instr->left());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001152
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001153 int32_t divisor =
1154 HConstant::cast(instr->hydrogen()->right())->Integer32Value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001155
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001156 if (divisor < 0) divisor = -divisor;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001157
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001158 Label positive_dividend, done;
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001159 __ test(dividend, Operand(dividend));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001160 __ j(not_sign, &positive_dividend, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001161 __ neg(dividend);
1162 __ and_(dividend, divisor - 1);
1163 __ neg(dividend);
1164 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001165 __ j(not_zero, &done, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001166 DeoptimizeIf(no_condition, instr->environment());
whesse@chromium.org7b260152011-06-20 15:33:18 +00001167 } else {
1168 __ jmp(&done, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001169 }
1170 __ bind(&positive_dividend);
1171 __ and_(dividend, divisor - 1);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001172 __ bind(&done);
1173 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001174 Label done, remainder_eq_dividend, slow, do_subtraction, both_positive;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001175 Register left_reg = ToRegister(instr->left());
1176 Register right_reg = ToRegister(instr->right());
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001177 Register result_reg = ToRegister(instr->result());
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001178
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001179 ASSERT(left_reg.is(eax));
1180 ASSERT(result_reg.is(edx));
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001181 ASSERT(!right_reg.is(eax));
1182 ASSERT(!right_reg.is(edx));
1183
1184 // Check for x % 0.
1185 if (instr->hydrogen()->CheckFlag(HValue::kCanBeDivByZero)) {
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001186 __ test(right_reg, Operand(right_reg));
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001187 DeoptimizeIf(zero, instr->environment());
1188 }
1189
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001190 __ test(left_reg, Operand(left_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001191 __ j(zero, &remainder_eq_dividend, Label::kNear);
1192 __ j(sign, &slow, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001193
1194 __ test(right_reg, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001195 __ j(not_sign, &both_positive, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001196 // The sign of the divisor doesn't matter.
1197 __ neg(right_reg);
1198
1199 __ bind(&both_positive);
1200 // If the dividend is smaller than the nonnegative
1201 // divisor, the dividend is the result.
1202 __ cmp(left_reg, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001203 __ j(less, &remainder_eq_dividend, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001204
1205 // Check if the divisor is a PowerOfTwo integer.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001206 Register scratch = ToRegister(instr->temp());
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001207 __ mov(scratch, right_reg);
1208 __ sub(Operand(scratch), Immediate(1));
1209 __ test(scratch, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001210 __ j(not_zero, &do_subtraction, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001211 __ and_(left_reg, Operand(scratch));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001212 __ jmp(&remainder_eq_dividend, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001213
1214 __ bind(&do_subtraction);
1215 const int kUnfolds = 3;
1216 // Try a few subtractions of the dividend.
1217 __ mov(scratch, left_reg);
1218 for (int i = 0; i < kUnfolds; i++) {
1219 // Reduce the dividend by the divisor.
1220 __ sub(left_reg, Operand(right_reg));
1221 // Check if the dividend is less than the divisor.
1222 __ cmp(left_reg, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001223 __ j(less, &remainder_eq_dividend, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001224 }
1225 __ mov(left_reg, scratch);
1226
1227 // Slow case, using idiv instruction.
1228 __ bind(&slow);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001229
1230 // Check for (kMinInt % -1).
1231 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1232 Label left_not_min_int;
1233 __ cmp(left_reg, kMinInt);
1234 __ j(not_zero, &left_not_min_int, Label::kNear);
1235 __ cmp(right_reg, -1);
1236 DeoptimizeIf(zero, instr->environment());
1237 __ bind(&left_not_min_int);
1238 }
1239
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001240 // Sign extend to edx.
1241 __ cdq();
1242
1243 // Check for (0 % -x) that will produce negative zero.
1244 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001245 Label positive_left;
1246 Label done;
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001247 __ test(left_reg, Operand(left_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001248 __ j(not_sign, &positive_left, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001249 __ idiv(right_reg);
1250
1251 // Test the remainder for 0, because then the result would be -0.
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001252 __ test(result_reg, Operand(result_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001253 __ j(not_zero, &done, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001254
1255 DeoptimizeIf(no_condition, instr->environment());
1256 __ bind(&positive_left);
1257 __ idiv(right_reg);
1258 __ bind(&done);
1259 } else {
1260 __ idiv(right_reg);
1261 }
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001262 __ jmp(&done, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001263
1264 __ bind(&remainder_eq_dividend);
1265 __ mov(result_reg, left_reg);
1266
1267 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001268 }
1269}
1270
1271
1272void LCodeGen::DoDivI(LDivI* instr) {
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001273 if (!instr->is_flooring() && instr->hydrogen()->HasPowerOf2Divisor()) {
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +00001274 Register dividend = ToRegister(instr->left());
1275 int32_t divisor =
1276 HConstant::cast(instr->hydrogen()->right())->Integer32Value();
1277 int32_t test_value = 0;
1278 int32_t power = 0;
1279
1280 if (divisor > 0) {
1281 test_value = divisor - 1;
1282 power = WhichPowerOf2(divisor);
1283 } else {
1284 // Check for (0 / -x) that will produce negative zero.
1285 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1286 __ test(dividend, Operand(dividend));
1287 DeoptimizeIf(zero, instr->environment());
1288 }
1289 // Check for (kMinInt / -1).
1290 if (divisor == -1 && instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1291 __ cmp(dividend, kMinInt);
1292 DeoptimizeIf(zero, instr->environment());
1293 }
1294 test_value = - divisor - 1;
1295 power = WhichPowerOf2(-divisor);
1296 }
1297
1298 if (test_value != 0) {
1299 // Deoptimize if remainder is not 0.
1300 __ test(dividend, Immediate(test_value));
1301 DeoptimizeIf(not_zero, instr->environment());
1302 __ sar(dividend, power);
1303 }
1304
1305 if (divisor < 0) __ neg(dividend);
1306
1307 return;
1308 }
1309
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001310 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001311 ASSERT(ToRegister(instr->result()).is(eax));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001312 ASSERT(ToRegister(instr->left()).is(eax));
1313 ASSERT(!ToRegister(instr->right()).is(eax));
1314 ASSERT(!ToRegister(instr->right()).is(edx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001315
1316 Register left_reg = eax;
1317
1318 // Check for x / 0.
1319 Register right_reg = ToRegister(right);
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001320 if (instr->hydrogen_value()->CheckFlag(HValue::kCanBeDivByZero)) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001321 __ test(right_reg, ToOperand(right));
1322 DeoptimizeIf(zero, instr->environment());
1323 }
1324
1325 // Check for (0 / -x) that will produce negative zero.
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001326 if (instr->hydrogen_value()->CheckFlag(HValue::kBailoutOnMinusZero)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001327 Label left_not_zero;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001328 __ test(left_reg, Operand(left_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001329 __ j(not_zero, &left_not_zero, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001330 __ test(right_reg, ToOperand(right));
1331 DeoptimizeIf(sign, instr->environment());
1332 __ bind(&left_not_zero);
1333 }
1334
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +00001335 // Check for (kMinInt / -1).
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001336 if (instr->hydrogen_value()->CheckFlag(HValue::kCanOverflow)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001337 Label left_not_min_int;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001338 __ cmp(left_reg, kMinInt);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001339 __ j(not_zero, &left_not_min_int, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001340 __ cmp(right_reg, -1);
1341 DeoptimizeIf(zero, instr->environment());
1342 __ bind(&left_not_min_int);
1343 }
1344
1345 // Sign extend to edx.
1346 __ cdq();
1347 __ idiv(right_reg);
1348
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001349 if (!instr->is_flooring()) {
1350 // Deoptimize if remainder is not 0.
1351 __ test(edx, Operand(edx));
1352 DeoptimizeIf(not_zero, instr->environment());
1353 } else {
1354 Label done;
1355 __ test(edx, edx);
1356 __ j(zero, &done, Label::kNear);
1357 __ xor_(edx, right_reg);
1358 __ sar(edx, 31);
1359 __ add(eax, edx);
1360 __ bind(&done);
1361 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001362}
1363
1364
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001365void LCodeGen::DoMathFloorOfDiv(LMathFloorOfDiv* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001366 ASSERT(instr->right()->IsConstantOperand());
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001367
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001368 Register dividend = ToRegister(instr->left());
1369 int32_t divisor = ToInteger32(LConstantOperand::cast(instr->right()));
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001370 Register result = ToRegister(instr->result());
1371
1372 switch (divisor) {
1373 case 0:
1374 DeoptimizeIf(no_condition, instr->environment());
1375 return;
1376
1377 case 1:
1378 __ Move(result, dividend);
1379 return;
1380
1381 case -1:
1382 __ Move(result, dividend);
1383 __ neg(result);
1384 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1385 DeoptimizeIf(zero, instr->environment());
1386 }
1387 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1388 DeoptimizeIf(overflow, instr->environment());
1389 }
1390 return;
1391 }
1392
1393 uint32_t divisor_abs = abs(divisor);
1394 if (IsPowerOf2(divisor_abs)) {
1395 int32_t power = WhichPowerOf2(divisor_abs);
1396 if (divisor < 0) {
1397 // Input[dividend] is clobbered.
1398 // The sequence is tedious because neg(dividend) might overflow.
1399 __ mov(result, dividend);
1400 __ sar(dividend, 31);
1401 __ neg(result);
1402 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1403 DeoptimizeIf(zero, instr->environment());
1404 }
1405 __ shl(dividend, 32 - power);
1406 __ sar(result, power);
1407 __ not_(dividend);
1408 // Clear result.sign if dividend.sign is set.
1409 __ and_(result, dividend);
1410 } else {
1411 __ Move(result, dividend);
1412 __ sar(result, power);
1413 }
1414 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001415 ASSERT(ToRegister(instr->left()).is(eax));
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001416 ASSERT(ToRegister(instr->result()).is(edx));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001417 Register scratch = ToRegister(instr->temp());
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001418
1419 // Find b which: 2^b < divisor_abs < 2^(b+1).
1420 unsigned b = 31 - CompilerIntrinsics::CountLeadingZeros(divisor_abs);
1421 unsigned shift = 32 + b; // Precision +1bit (effectively).
1422 double multiplier_f =
1423 static_cast<double>(static_cast<uint64_t>(1) << shift) / divisor_abs;
1424 int64_t multiplier;
1425 if (multiplier_f - floor(multiplier_f) < 0.5) {
1426 multiplier = static_cast<int64_t>(floor(multiplier_f));
1427 } else {
1428 multiplier = static_cast<int64_t>(floor(multiplier_f)) + 1;
1429 }
1430 // The multiplier is a uint32.
1431 ASSERT(multiplier > 0 &&
1432 multiplier < (static_cast<int64_t>(1) << 32));
1433 __ mov(scratch, dividend);
1434 if (divisor < 0 &&
1435 instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1436 __ test(dividend, dividend);
1437 DeoptimizeIf(zero, instr->environment());
1438 }
1439 __ mov(edx, static_cast<int32_t>(multiplier));
1440 __ imul(edx);
1441 if (static_cast<int32_t>(multiplier) < 0) {
1442 __ add(edx, scratch);
1443 }
1444 Register reg_lo = eax;
1445 Register reg_byte_scratch = scratch;
1446 if (!reg_byte_scratch.is_byte_register()) {
1447 __ xchg(reg_lo, reg_byte_scratch);
1448 reg_lo = scratch;
1449 reg_byte_scratch = eax;
1450 }
1451 if (divisor < 0) {
1452 __ xor_(reg_byte_scratch, reg_byte_scratch);
1453 __ cmp(reg_lo, 0x40000000);
1454 __ setcc(above, reg_byte_scratch);
1455 __ neg(edx);
1456 __ sub(edx, reg_byte_scratch);
1457 } else {
1458 __ xor_(reg_byte_scratch, reg_byte_scratch);
1459 __ cmp(reg_lo, 0xC0000000);
1460 __ setcc(above_equal, reg_byte_scratch);
1461 __ add(edx, reg_byte_scratch);
1462 }
1463 __ sar(edx, shift - 32);
1464 }
1465}
1466
1467
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001468void LCodeGen::DoMulI(LMulI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001469 Register left = ToRegister(instr->left());
1470 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001471
1472 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001473 __ mov(ToRegister(instr->temp()), left);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001474 }
1475
1476 if (right->IsConstantOperand()) {
ricow@chromium.orgbadaffc2011-03-17 12:15:27 +00001477 // Try strength reductions on the multiplication.
1478 // All replacement instructions are at most as long as the imul
1479 // and have better latency.
1480 int constant = ToInteger32(LConstantOperand::cast(right));
1481 if (constant == -1) {
1482 __ neg(left);
1483 } else if (constant == 0) {
1484 __ xor_(left, Operand(left));
1485 } else if (constant == 2) {
1486 __ add(left, Operand(left));
1487 } else if (!instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1488 // If we know that the multiplication can't overflow, it's safe to
1489 // use instructions that don't set the overflow flag for the
1490 // multiplication.
1491 switch (constant) {
1492 case 1:
1493 // Do nothing.
1494 break;
1495 case 3:
1496 __ lea(left, Operand(left, left, times_2, 0));
1497 break;
1498 case 4:
1499 __ shl(left, 2);
1500 break;
1501 case 5:
1502 __ lea(left, Operand(left, left, times_4, 0));
1503 break;
1504 case 8:
1505 __ shl(left, 3);
1506 break;
1507 case 9:
1508 __ lea(left, Operand(left, left, times_8, 0));
1509 break;
1510 case 16:
1511 __ shl(left, 4);
1512 break;
1513 default:
1514 __ imul(left, left, constant);
1515 break;
1516 }
1517 } else {
1518 __ imul(left, left, constant);
1519 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001520 } else {
1521 __ imul(left, ToOperand(right));
1522 }
1523
1524 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1525 DeoptimizeIf(overflow, instr->environment());
1526 }
1527
1528 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1529 // Bail out if the result is supposed to be negative zero.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001530 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001531 __ test(left, Operand(left));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001532 __ j(not_zero, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001533 if (right->IsConstantOperand()) {
verwaest@chromium.org33e09c82012-10-10 17:07:22 +00001534 if (ToInteger32(LConstantOperand::cast(right)) < 0) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001535 DeoptimizeIf(no_condition, instr->environment());
verwaest@chromium.org33e09c82012-10-10 17:07:22 +00001536 } else if (ToInteger32(LConstantOperand::cast(right)) == 0) {
1537 __ cmp(ToRegister(instr->temp()), Immediate(0));
1538 DeoptimizeIf(less, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001539 }
1540 } else {
1541 // Test the non-zero operand for negative sign.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001542 __ or_(ToRegister(instr->temp()), ToOperand(right));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001543 DeoptimizeIf(sign, instr->environment());
1544 }
1545 __ bind(&done);
1546 }
1547}
1548
1549
1550void LCodeGen::DoBitI(LBitI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001551 LOperand* left = instr->left();
1552 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001553 ASSERT(left->Equals(instr->result()));
1554 ASSERT(left->IsRegister());
1555
1556 if (right->IsConstantOperand()) {
1557 int right_operand = ToInteger32(LConstantOperand::cast(right));
1558 switch (instr->op()) {
1559 case Token::BIT_AND:
1560 __ and_(ToRegister(left), right_operand);
1561 break;
1562 case Token::BIT_OR:
1563 __ or_(ToRegister(left), right_operand);
1564 break;
1565 case Token::BIT_XOR:
1566 __ xor_(ToRegister(left), right_operand);
1567 break;
1568 default:
1569 UNREACHABLE();
1570 break;
1571 }
1572 } else {
1573 switch (instr->op()) {
1574 case Token::BIT_AND:
1575 __ and_(ToRegister(left), ToOperand(right));
1576 break;
1577 case Token::BIT_OR:
1578 __ or_(ToRegister(left), ToOperand(right));
1579 break;
1580 case Token::BIT_XOR:
1581 __ xor_(ToRegister(left), ToOperand(right));
1582 break;
1583 default:
1584 UNREACHABLE();
1585 break;
1586 }
1587 }
1588}
1589
1590
1591void LCodeGen::DoShiftI(LShiftI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001592 LOperand* left = instr->left();
1593 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001594 ASSERT(left->Equals(instr->result()));
1595 ASSERT(left->IsRegister());
1596 if (right->IsRegister()) {
1597 ASSERT(ToRegister(right).is(ecx));
1598
1599 switch (instr->op()) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00001600 case Token::ROR:
1601 __ ror_cl(ToRegister(left));
1602 if (instr->can_deopt()) {
1603 __ test(ToRegister(left), Immediate(0x80000000));
1604 DeoptimizeIf(not_zero, instr->environment());
1605 }
1606 break;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001607 case Token::SAR:
1608 __ sar_cl(ToRegister(left));
1609 break;
1610 case Token::SHR:
1611 __ shr_cl(ToRegister(left));
1612 if (instr->can_deopt()) {
1613 __ test(ToRegister(left), Immediate(0x80000000));
1614 DeoptimizeIf(not_zero, instr->environment());
1615 }
1616 break;
1617 case Token::SHL:
1618 __ shl_cl(ToRegister(left));
1619 break;
1620 default:
1621 UNREACHABLE();
1622 break;
1623 }
1624 } else {
1625 int value = ToInteger32(LConstantOperand::cast(right));
1626 uint8_t shift_count = static_cast<uint8_t>(value & 0x1F);
1627 switch (instr->op()) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00001628 case Token::ROR:
1629 if (shift_count == 0 && instr->can_deopt()) {
1630 __ test(ToRegister(left), Immediate(0x80000000));
1631 DeoptimizeIf(not_zero, instr->environment());
1632 } else {
1633 __ ror(ToRegister(left), shift_count);
1634 }
1635 break;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001636 case Token::SAR:
1637 if (shift_count != 0) {
1638 __ sar(ToRegister(left), shift_count);
1639 }
1640 break;
1641 case Token::SHR:
1642 if (shift_count == 0 && instr->can_deopt()) {
1643 __ test(ToRegister(left), Immediate(0x80000000));
1644 DeoptimizeIf(not_zero, instr->environment());
1645 } else {
1646 __ shr(ToRegister(left), shift_count);
1647 }
1648 break;
1649 case Token::SHL:
1650 if (shift_count != 0) {
1651 __ shl(ToRegister(left), shift_count);
1652 }
1653 break;
1654 default:
1655 UNREACHABLE();
1656 break;
1657 }
1658 }
1659}
1660
1661
1662void LCodeGen::DoSubI(LSubI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001663 LOperand* left = instr->left();
1664 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001665 ASSERT(left->Equals(instr->result()));
1666
1667 if (right->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00001668 __ sub(ToOperand(left), ToInteger32Immediate(right));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001669 } else {
1670 __ sub(ToRegister(left), ToOperand(right));
1671 }
1672 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1673 DeoptimizeIf(overflow, instr->environment());
1674 }
1675}
1676
1677
1678void LCodeGen::DoConstantI(LConstantI* instr) {
1679 ASSERT(instr->result()->IsRegister());
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001680 __ Set(ToRegister(instr->result()), Immediate(instr->value()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001681}
1682
1683
1684void LCodeGen::DoConstantD(LConstantD* instr) {
1685 ASSERT(instr->result()->IsDoubleRegister());
1686 XMMRegister res = ToDoubleRegister(instr->result());
1687 double v = instr->value();
1688 // Use xor to produce +0.0 in a fast and compact way, but avoid to
1689 // do so if the constant is -0.0.
1690 if (BitCast<uint64_t, double>(v) == 0) {
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00001691 __ xorps(res, res);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001692 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001693 Register temp = ToRegister(instr->temp());
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001694 uint64_t int_val = BitCast<uint64_t, double>(v);
1695 int32_t lower = static_cast<int32_t>(int_val);
1696 int32_t upper = static_cast<int32_t>(int_val >> (kBitsPerInt));
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00001697 if (CpuFeatures::IsSupported(SSE4_1)) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001698 CpuFeatures::Scope scope1(SSE2);
1699 CpuFeatures::Scope scope2(SSE4_1);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001700 if (lower != 0) {
1701 __ Set(temp, Immediate(lower));
1702 __ movd(res, Operand(temp));
1703 __ Set(temp, Immediate(upper));
1704 __ pinsrd(res, Operand(temp), 1);
1705 } else {
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00001706 __ xorps(res, res);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001707 __ Set(temp, Immediate(upper));
1708 __ pinsrd(res, Operand(temp), 1);
1709 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001710 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001711 CpuFeatures::Scope scope(SSE2);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001712 __ Set(temp, Immediate(upper));
1713 __ movd(res, Operand(temp));
1714 __ psllq(res, 32);
1715 if (lower != 0) {
1716 __ Set(temp, Immediate(lower));
1717 __ movd(xmm0, Operand(temp));
1718 __ por(res, xmm0);
1719 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001720 }
1721 }
1722}
1723
1724
1725void LCodeGen::DoConstantT(LConstantT* instr) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00001726 Register reg = ToRegister(instr->result());
1727 Handle<Object> handle = instr->value();
1728 if (handle->IsHeapObject()) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00001729 __ LoadHeapObject(reg, Handle<HeapObject>::cast(handle));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00001730 } else {
1731 __ Set(reg, Immediate(handle));
1732 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001733}
1734
1735
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001736void LCodeGen::DoJSArrayLength(LJSArrayLength* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001737 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001738 Register array = ToRegister(instr->value());
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001739 __ mov(result, FieldOperand(array, JSArray::kLengthOffset));
1740}
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001741
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001742
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00001743void LCodeGen::DoFixedArrayBaseLength(
1744 LFixedArrayBaseLength* instr) {
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001745 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001746 Register array = ToRegister(instr->value());
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00001747 __ mov(result, FieldOperand(array, FixedArrayBase::kLengthOffset));
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00001748}
1749
1750
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00001751void LCodeGen::DoMapEnumLength(LMapEnumLength* instr) {
1752 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001753 Register map = ToRegister(instr->value());
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00001754 __ EnumLength(result, map);
1755}
1756
1757
whesse@chromium.org7b260152011-06-20 15:33:18 +00001758void LCodeGen::DoElementsKind(LElementsKind* instr) {
1759 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001760 Register input = ToRegister(instr->value());
whesse@chromium.org7b260152011-06-20 15:33:18 +00001761
1762 // Load map into |result|.
1763 __ mov(result, FieldOperand(input, HeapObject::kMapOffset));
1764 // Load the map's "bit field 2" into |result|. We only need the first byte,
1765 // but the following masking takes care of that anyway.
1766 __ mov(result, FieldOperand(result, Map::kBitField2Offset));
1767 // Retrieve elements_kind from bit field 2.
1768 __ and_(result, Map::kElementsKindMask);
1769 __ shr(result, Map::kElementsKindShift);
1770}
1771
1772
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001773void LCodeGen::DoValueOf(LValueOf* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001774 Register input = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001775 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001776 Register map = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001777 ASSERT(input.is(result));
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001778
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001779 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001780 // If the object is a smi return the object.
whesse@chromium.org7b260152011-06-20 15:33:18 +00001781 __ JumpIfSmi(input, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001782
1783 // If the object is not a value type, return the object.
1784 __ CmpObjectType(input, JS_VALUE_TYPE, map);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001785 __ j(not_equal, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001786 __ mov(result, FieldOperand(input, JSValue::kValueOffset));
1787
1788 __ bind(&done);
1789}
1790
1791
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001792void LCodeGen::DoDateField(LDateField* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001793 Register object = ToRegister(instr->date());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001794 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001795 Register scratch = ToRegister(instr->temp());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001796 Smi* index = instr->index();
1797 Label runtime, done;
1798 ASSERT(object.is(result));
1799 ASSERT(object.is(eax));
1800
mstarzinger@chromium.orgde886792012-09-11 13:22:37 +00001801 __ test(object, Immediate(kSmiTagMask));
1802 DeoptimizeIf(zero, instr->environment());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001803 __ CmpObjectType(object, JS_DATE_TYPE, scratch);
mstarzinger@chromium.orgde886792012-09-11 13:22:37 +00001804 DeoptimizeIf(not_equal, instr->environment());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001805
1806 if (index->value() == 0) {
1807 __ mov(result, FieldOperand(object, JSDate::kValueOffset));
1808 } else {
1809 if (index->value() < JSDate::kFirstUncachedField) {
1810 ExternalReference stamp = ExternalReference::date_cache_stamp(isolate());
1811 __ mov(scratch, Operand::StaticVariable(stamp));
1812 __ cmp(scratch, FieldOperand(object, JSDate::kCacheStampOffset));
1813 __ j(not_equal, &runtime, Label::kNear);
1814 __ mov(result, FieldOperand(object, JSDate::kValueOffset +
1815 kPointerSize * index->value()));
1816 __ jmp(&done);
1817 }
1818 __ bind(&runtime);
1819 __ PrepareCallCFunction(2, scratch);
1820 __ mov(Operand(esp, 0), object);
1821 __ mov(Operand(esp, 1 * kPointerSize), Immediate(index));
1822 __ CallCFunction(ExternalReference::get_date_field_function(isolate()), 2);
1823 __ bind(&done);
1824 }
1825}
1826
1827
mstarzinger@chromium.org32280cf2012-12-06 17:32:37 +00001828void LCodeGen::DoSeqStringSetChar(LSeqStringSetChar* instr) {
1829 SeqStringSetCharGenerator::Generate(masm(),
1830 instr->encoding(),
1831 ToRegister(instr->string()),
1832 ToRegister(instr->index()),
1833 ToRegister(instr->value()));
1834}
1835
1836
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001837void LCodeGen::DoBitNotI(LBitNotI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001838 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001839 ASSERT(input->Equals(instr->result()));
1840 __ not_(ToRegister(input));
1841}
1842
1843
1844void LCodeGen::DoThrow(LThrow* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001845 __ push(ToOperand(instr->value()));
1846 ASSERT(ToRegister(instr->context()).is(esi));
1847 CallRuntime(Runtime::kThrow, 1, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001848
1849 if (FLAG_debug_code) {
1850 Comment("Unreachable code.");
1851 __ int3();
1852 }
1853}
1854
1855
1856void LCodeGen::DoAddI(LAddI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001857 LOperand* left = instr->left();
1858 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001859 ASSERT(left->Equals(instr->result()));
1860
1861 if (right->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00001862 __ add(ToOperand(left), ToInteger32Immediate(right));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001863 } else {
1864 __ add(ToRegister(left), ToOperand(right));
1865 }
1866
1867 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1868 DeoptimizeIf(overflow, instr->environment());
1869 }
1870}
1871
1872
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +00001873void LCodeGen::DoMathMinMax(LMathMinMax* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001874 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001875 LOperand* left = instr->left();
1876 LOperand* right = instr->right();
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +00001877 ASSERT(left->Equals(instr->result()));
1878 HMathMinMax::Operation operation = instr->hydrogen()->operation();
1879 if (instr->hydrogen()->representation().IsInteger32()) {
1880 Label return_left;
1881 Condition condition = (operation == HMathMinMax::kMathMin)
1882 ? less_equal
1883 : greater_equal;
1884 if (right->IsConstantOperand()) {
1885 Operand left_op = ToOperand(left);
1886 Immediate right_imm = ToInteger32Immediate(right);
1887 __ cmp(left_op, right_imm);
1888 __ j(condition, &return_left, Label::kNear);
1889 __ mov(left_op, right_imm);
1890 } else {
1891 Register left_reg = ToRegister(left);
1892 Operand right_op = ToOperand(right);
1893 __ cmp(left_reg, right_op);
1894 __ j(condition, &return_left, Label::kNear);
1895 __ mov(left_reg, right_op);
1896 }
1897 __ bind(&return_left);
1898 } else {
1899 ASSERT(instr->hydrogen()->representation().IsDouble());
1900 Label check_nan_left, check_zero, return_left, return_right;
1901 Condition condition = (operation == HMathMinMax::kMathMin) ? below : above;
1902 XMMRegister left_reg = ToDoubleRegister(left);
1903 XMMRegister right_reg = ToDoubleRegister(right);
1904 __ ucomisd(left_reg, right_reg);
1905 __ j(parity_even, &check_nan_left, Label::kNear); // At least one NaN.
1906 __ j(equal, &check_zero, Label::kNear); // left == right.
1907 __ j(condition, &return_left, Label::kNear);
1908 __ jmp(&return_right, Label::kNear);
1909
1910 __ bind(&check_zero);
1911 XMMRegister xmm_scratch = xmm0;
1912 __ xorps(xmm_scratch, xmm_scratch);
1913 __ ucomisd(left_reg, xmm_scratch);
1914 __ j(not_equal, &return_left, Label::kNear); // left == right != 0.
1915 // At this point, both left and right are either 0 or -0.
1916 if (operation == HMathMinMax::kMathMin) {
1917 __ orpd(left_reg, right_reg);
1918 } else {
1919 // Since we operate on +0 and/or -0, addsd and andsd have the same effect.
1920 __ addsd(left_reg, right_reg);
1921 }
1922 __ jmp(&return_left, Label::kNear);
1923
1924 __ bind(&check_nan_left);
1925 __ ucomisd(left_reg, left_reg); // NaN check.
1926 __ j(parity_even, &return_left, Label::kNear); // left == NaN.
1927 __ bind(&return_right);
1928 __ movsd(left_reg, right_reg);
1929
1930 __ bind(&return_left);
1931 }
1932}
1933
1934
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001935void LCodeGen::DoArithmeticD(LArithmeticD* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001936 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001937 XMMRegister left = ToDoubleRegister(instr->left());
1938 XMMRegister right = ToDoubleRegister(instr->right());
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001939 XMMRegister result = ToDoubleRegister(instr->result());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001940 // Modulo uses a fixed result register.
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001941 ASSERT(instr->op() == Token::MOD || left.is(result));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001942 switch (instr->op()) {
1943 case Token::ADD:
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001944 __ addsd(left, right);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001945 break;
1946 case Token::SUB:
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001947 __ subsd(left, right);
1948 break;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001949 case Token::MUL:
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001950 __ mulsd(left, right);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001951 break;
1952 case Token::DIV:
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001953 __ divsd(left, right);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001954 break;
1955 case Token::MOD: {
1956 // Pass two doubles as arguments on the stack.
1957 __ PrepareCallCFunction(4, eax);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001958 __ movdbl(Operand(esp, 0 * kDoubleSize), left);
1959 __ movdbl(Operand(esp, 1 * kDoubleSize), right);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00001960 __ CallCFunction(
1961 ExternalReference::double_fp_operation(Token::MOD, isolate()),
1962 4);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001963
1964 // Return value is in st(0) on ia32.
1965 // Store it into the (fixed) result register.
1966 __ sub(Operand(esp), Immediate(kDoubleSize));
1967 __ fstp_d(Operand(esp, 0));
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001968 __ movdbl(result, Operand(esp, 0));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001969 __ add(Operand(esp), Immediate(kDoubleSize));
1970 break;
1971 }
1972 default:
1973 UNREACHABLE();
1974 break;
1975 }
1976}
1977
1978
1979void LCodeGen::DoArithmeticT(LArithmeticT* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001980 ASSERT(ToRegister(instr->context()).is(esi));
1981 ASSERT(ToRegister(instr->left()).is(edx));
1982 ASSERT(ToRegister(instr->right()).is(eax));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001983 ASSERT(ToRegister(instr->result()).is(eax));
1984
danno@chromium.org40cb8782011-05-25 07:58:50 +00001985 BinaryOpStub stub(instr->op(), NO_OVERWRITE);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00001986 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
whesse@chromium.org030d38e2011-07-13 13:23:34 +00001987 __ nop(); // Signals no inlined code.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001988}
1989
1990
1991int LCodeGen::GetNextEmittedBlock(int block) {
1992 for (int i = block + 1; i < graph()->blocks()->length(); ++i) {
1993 LLabel* label = chunk_->GetLabel(i);
1994 if (!label->HasReplacement()) return i;
1995 }
1996 return -1;
1997}
1998
1999
2000void LCodeGen::EmitBranch(int left_block, int right_block, Condition cc) {
2001 int next_block = GetNextEmittedBlock(current_block_);
2002 right_block = chunk_->LookupDestination(right_block);
2003 left_block = chunk_->LookupDestination(left_block);
2004
2005 if (right_block == left_block) {
2006 EmitGoto(left_block);
2007 } else if (left_block == next_block) {
2008 __ j(NegateCondition(cc), chunk_->GetAssemblyLabel(right_block));
2009 } else if (right_block == next_block) {
2010 __ j(cc, chunk_->GetAssemblyLabel(left_block));
2011 } else {
2012 __ j(cc, chunk_->GetAssemblyLabel(left_block));
2013 __ jmp(chunk_->GetAssemblyLabel(right_block));
2014 }
2015}
2016
2017
2018void LCodeGen::DoBranch(LBranch* instr) {
2019 int true_block = chunk_->LookupDestination(instr->true_block_id());
2020 int false_block = chunk_->LookupDestination(instr->false_block_id());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002021 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002022
ricow@chromium.org4f693d62011-07-04 14:01:31 +00002023 Representation r = instr->hydrogen()->value()->representation();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002024 if (r.IsInteger32()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002025 Register reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002026 __ test(reg, Operand(reg));
2027 EmitBranch(true_block, false_block, not_zero);
2028 } else if (r.IsDouble()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002029 XMMRegister reg = ToDoubleRegister(instr->value());
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00002030 __ xorps(xmm0, xmm0);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002031 __ ucomisd(reg, xmm0);
2032 EmitBranch(true_block, false_block, not_equal);
2033 } else {
2034 ASSERT(r.IsTagged());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002035 Register reg = ToRegister(instr->value());
lrn@chromium.orgd4e9e222011-08-03 12:01:58 +00002036 HType type = instr->hydrogen()->value()->type();
2037 if (type.IsBoolean()) {
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002038 __ cmp(reg, factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002039 EmitBranch(true_block, false_block, equal);
lrn@chromium.orgd4e9e222011-08-03 12:01:58 +00002040 } else if (type.IsSmi()) {
2041 __ test(reg, Operand(reg));
2042 EmitBranch(true_block, false_block, not_equal);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002043 } else {
2044 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2045 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2046
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002047 ToBooleanStub::Types expected = instr->hydrogen()->expected_input_types();
2048 // Avoid deopts in the case where we've never executed this path before.
2049 if (expected.IsEmpty()) expected = ToBooleanStub::all_types();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002050
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002051 if (expected.Contains(ToBooleanStub::UNDEFINED)) {
2052 // undefined -> false.
2053 __ cmp(reg, factory()->undefined_value());
2054 __ j(equal, false_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002055 }
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002056 if (expected.Contains(ToBooleanStub::BOOLEAN)) {
2057 // true -> true.
2058 __ cmp(reg, factory()->true_value());
2059 __ j(equal, true_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002060 // false -> false.
2061 __ cmp(reg, factory()->false_value());
2062 __ j(equal, false_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002063 }
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002064 if (expected.Contains(ToBooleanStub::NULL_TYPE)) {
2065 // 'null' -> false.
2066 __ cmp(reg, factory()->null_value());
2067 __ j(equal, false_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002068 }
2069
2070 if (expected.Contains(ToBooleanStub::SMI)) {
2071 // Smis: 0 -> false, all other -> true.
2072 __ test(reg, Operand(reg));
2073 __ j(equal, false_label);
2074 __ JumpIfSmi(reg, true_label);
2075 } else if (expected.NeedsMap()) {
2076 // If we need a map later and have a Smi -> deopt.
2077 __ test(reg, Immediate(kSmiTagMask));
2078 DeoptimizeIf(zero, instr->environment());
2079 }
2080
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00002081 Register map = no_reg; // Keep the compiler happy.
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002082 if (expected.NeedsMap()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002083 map = ToRegister(instr->temp());
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002084 ASSERT(!map.is(reg));
2085 __ mov(map, FieldOperand(reg, HeapObject::kMapOffset));
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00002086
2087 if (expected.CanBeUndetectable()) {
2088 // Undetectable -> false.
2089 __ test_b(FieldOperand(map, Map::kBitFieldOffset),
2090 1 << Map::kIsUndetectable);
2091 __ j(not_zero, false_label);
2092 }
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002093 }
2094
2095 if (expected.Contains(ToBooleanStub::SPEC_OBJECT)) {
2096 // spec object -> true.
2097 __ CmpInstanceType(map, FIRST_SPEC_OBJECT_TYPE);
2098 __ j(above_equal, true_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002099 }
2100
2101 if (expected.Contains(ToBooleanStub::STRING)) {
2102 // String value -> false iff empty.
2103 Label not_string;
2104 __ CmpInstanceType(map, FIRST_NONSTRING_TYPE);
2105 __ j(above_equal, &not_string, Label::kNear);
2106 __ cmp(FieldOperand(reg, String::kLengthOffset), Immediate(0));
2107 __ j(not_zero, true_label);
2108 __ jmp(false_label);
2109 __ bind(&not_string);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002110 }
2111
2112 if (expected.Contains(ToBooleanStub::HEAP_NUMBER)) {
2113 // heap number -> false iff +0, -0, or NaN.
2114 Label not_heap_number;
2115 __ cmp(FieldOperand(reg, HeapObject::kMapOffset),
2116 factory()->heap_number_map());
2117 __ j(not_equal, &not_heap_number, Label::kNear);
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +00002118 __ xorps(xmm0, xmm0);
2119 __ ucomisd(xmm0, FieldOperand(reg, HeapNumber::kValueOffset));
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002120 __ j(zero, false_label);
2121 __ jmp(true_label);
2122 __ bind(&not_heap_number);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002123 }
2124
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00002125 // We've seen something for the first time -> deopt.
2126 DeoptimizeIf(no_condition, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002127 }
2128 }
2129}
2130
2131
ager@chromium.org04921a82011-06-27 13:21:41 +00002132void LCodeGen::EmitGoto(int block) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002133 block = chunk_->LookupDestination(block);
2134 int next_block = GetNextEmittedBlock(current_block_);
2135 if (block != next_block) {
ager@chromium.org04921a82011-06-27 13:21:41 +00002136 __ jmp(chunk_->GetAssemblyLabel(block));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002137 }
2138}
2139
2140
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002141void LCodeGen::DoGoto(LGoto* instr) {
ager@chromium.org04921a82011-06-27 13:21:41 +00002142 EmitGoto(instr->block_id());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002143}
2144
2145
2146Condition LCodeGen::TokenToCondition(Token::Value op, bool is_unsigned) {
2147 Condition cond = no_condition;
2148 switch (op) {
2149 case Token::EQ:
2150 case Token::EQ_STRICT:
2151 cond = equal;
2152 break;
2153 case Token::LT:
2154 cond = is_unsigned ? below : less;
2155 break;
2156 case Token::GT:
2157 cond = is_unsigned ? above : greater;
2158 break;
2159 case Token::LTE:
2160 cond = is_unsigned ? below_equal : less_equal;
2161 break;
2162 case Token::GTE:
2163 cond = is_unsigned ? above_equal : greater_equal;
2164 break;
2165 case Token::IN:
2166 case Token::INSTANCEOF:
2167 default:
2168 UNREACHABLE();
2169 }
2170 return cond;
2171}
2172
2173
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002174void LCodeGen::DoCmpIDAndBranch(LCmpIDAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002175 LOperand* left = instr->left();
2176 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002177 int false_block = chunk_->LookupDestination(instr->false_block_id());
2178 int true_block = chunk_->LookupDestination(instr->true_block_id());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002179 Condition cc = TokenToCondition(instr->op(), instr->is_double());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002180
2181 if (left->IsConstantOperand() && right->IsConstantOperand()) {
2182 // We can statically evaluate the comparison.
2183 double left_val = ToDouble(LConstantOperand::cast(left));
2184 double right_val = ToDouble(LConstantOperand::cast(right));
2185 int next_block =
2186 EvalComparison(instr->op(), left_val, right_val) ? true_block
2187 : false_block;
2188 EmitGoto(next_block);
2189 } else {
2190 if (instr->is_double()) {
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00002191 CpuFeatures::Scope scope(SSE2);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002192 // Don't base result on EFLAGS when a NaN is involved. Instead
2193 // jump to the false block.
2194 __ ucomisd(ToDoubleRegister(left), ToDoubleRegister(right));
2195 __ j(parity_even, chunk_->GetAssemblyLabel(false_block));
2196 } else {
2197 if (right->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00002198 __ cmp(ToRegister(left), ToInteger32Immediate(right));
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002199 } else if (left->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00002200 __ cmp(ToOperand(right), ToInteger32Immediate(left));
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002201 // We transposed the operands. Reverse the condition.
2202 cc = ReverseCondition(cc);
2203 } else {
2204 __ cmp(ToRegister(left), ToOperand(right));
2205 }
2206 }
2207 EmitBranch(true_block, false_block, cc);
2208 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002209}
2210
2211
lrn@chromium.orgac2828d2011-06-23 06:29:21 +00002212void LCodeGen::DoCmpObjectEqAndBranch(LCmpObjectEqAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002213 Register left = ToRegister(instr->left());
2214 Operand right = ToOperand(instr->right());
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002215 int false_block = chunk_->LookupDestination(instr->false_block_id());
2216 int true_block = chunk_->LookupDestination(instr->true_block_id());
2217
2218 __ cmp(left, Operand(right));
2219 EmitBranch(true_block, false_block, equal);
2220}
2221
2222
whesse@chromium.org7b260152011-06-20 15:33:18 +00002223void LCodeGen::DoCmpConstantEqAndBranch(LCmpConstantEqAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002224 Register left = ToRegister(instr->left());
whesse@chromium.org7b260152011-06-20 15:33:18 +00002225 int true_block = chunk_->LookupDestination(instr->true_block_id());
2226 int false_block = chunk_->LookupDestination(instr->false_block_id());
2227
2228 __ cmp(left, instr->hydrogen()->right());
2229 EmitBranch(true_block, false_block, equal);
2230}
2231
2232
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002233void LCodeGen::DoIsNilAndBranch(LIsNilAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002234 Register reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002235 int false_block = chunk_->LookupDestination(instr->false_block_id());
2236
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002237 // If the expression is known to be untagged or a smi, then it's definitely
2238 // not null, and it can't be a an undetectable object.
2239 if (instr->hydrogen()->representation().IsSpecialization() ||
2240 instr->hydrogen()->type().IsSmi()) {
2241 EmitGoto(false_block);
2242 return;
2243 }
2244
2245 int true_block = chunk_->LookupDestination(instr->true_block_id());
2246 Handle<Object> nil_value = instr->nil() == kNullValue ?
2247 factory()->null_value() :
2248 factory()->undefined_value();
2249 __ cmp(reg, nil_value);
2250 if (instr->kind() == kStrictEquality) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002251 EmitBranch(true_block, false_block, equal);
2252 } else {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002253 Handle<Object> other_nil_value = instr->nil() == kNullValue ?
2254 factory()->undefined_value() :
2255 factory()->null_value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002256 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2257 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2258 __ j(equal, true_label);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002259 __ cmp(reg, other_nil_value);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002260 __ j(equal, true_label);
whesse@chromium.org7b260152011-06-20 15:33:18 +00002261 __ JumpIfSmi(reg, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002262 // Check for undetectable objects by looking in the bit field in
2263 // the map. The object has already been smi checked.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002264 Register scratch = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002265 __ mov(scratch, FieldOperand(reg, HeapObject::kMapOffset));
2266 __ movzx_b(scratch, FieldOperand(scratch, Map::kBitFieldOffset));
2267 __ test(scratch, Immediate(1 << Map::kIsUndetectable));
2268 EmitBranch(true_block, false_block, not_zero);
2269 }
2270}
2271
2272
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002273Condition LCodeGen::EmitIsObject(Register input,
2274 Register temp1,
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002275 Label* is_not_object,
2276 Label* is_object) {
whesse@chromium.org7b260152011-06-20 15:33:18 +00002277 __ JumpIfSmi(input, is_not_object);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002278
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002279 __ cmp(input, isolate()->factory()->null_value());
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002280 __ j(equal, is_object);
2281
2282 __ mov(temp1, FieldOperand(input, HeapObject::kMapOffset));
2283 // Undetectable objects behave like undefined.
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002284 __ test_b(FieldOperand(temp1, Map::kBitFieldOffset),
2285 1 << Map::kIsUndetectable);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002286 __ j(not_zero, is_not_object);
2287
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002288 __ movzx_b(temp1, FieldOperand(temp1, Map::kInstanceTypeOffset));
2289 __ cmp(temp1, FIRST_NONCALLABLE_SPEC_OBJECT_TYPE);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002290 __ j(below, is_not_object);
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002291 __ cmp(temp1, LAST_NONCALLABLE_SPEC_OBJECT_TYPE);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002292 return below_equal;
2293}
2294
2295
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002296void LCodeGen::DoIsObjectAndBranch(LIsObjectAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002297 Register reg = ToRegister(instr->value());
2298 Register temp = ToRegister(instr->temp());
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002299
2300 int true_block = chunk_->LookupDestination(instr->true_block_id());
2301 int false_block = chunk_->LookupDestination(instr->false_block_id());
2302 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2303 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2304
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002305 Condition true_cond = EmitIsObject(reg, temp, false_label, true_label);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002306
2307 EmitBranch(true_block, false_block, true_cond);
2308}
2309
2310
erikcorry0ad885c2011-11-21 13:51:57 +00002311Condition LCodeGen::EmitIsString(Register input,
2312 Register temp1,
2313 Label* is_not_string) {
2314 __ JumpIfSmi(input, is_not_string);
2315
2316 Condition cond = masm_->IsObjectStringType(input, temp1, temp1);
2317
2318 return cond;
2319}
2320
2321
2322void LCodeGen::DoIsStringAndBranch(LIsStringAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002323 Register reg = ToRegister(instr->value());
2324 Register temp = ToRegister(instr->temp());
erikcorry0ad885c2011-11-21 13:51:57 +00002325
2326 int true_block = chunk_->LookupDestination(instr->true_block_id());
2327 int false_block = chunk_->LookupDestination(instr->false_block_id());
2328 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2329
2330 Condition true_cond = EmitIsString(reg, temp, false_label);
2331
2332 EmitBranch(true_block, false_block, true_cond);
2333}
2334
2335
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002336void LCodeGen::DoIsSmiAndBranch(LIsSmiAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002337 Operand input = ToOperand(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002338
2339 int true_block = chunk_->LookupDestination(instr->true_block_id());
2340 int false_block = chunk_->LookupDestination(instr->false_block_id());
2341
2342 __ test(input, Immediate(kSmiTagMask));
2343 EmitBranch(true_block, false_block, zero);
2344}
2345
2346
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002347void LCodeGen::DoIsUndetectableAndBranch(LIsUndetectableAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002348 Register input = ToRegister(instr->value());
2349 Register temp = ToRegister(instr->temp());
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002350
2351 int true_block = chunk_->LookupDestination(instr->true_block_id());
2352 int false_block = chunk_->LookupDestination(instr->false_block_id());
2353
2354 STATIC_ASSERT(kSmiTag == 0);
whesse@chromium.org7b260152011-06-20 15:33:18 +00002355 __ JumpIfSmi(input, chunk_->GetAssemblyLabel(false_block));
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002356 __ mov(temp, FieldOperand(input, HeapObject::kMapOffset));
2357 __ test_b(FieldOperand(temp, Map::kBitFieldOffset),
2358 1 << Map::kIsUndetectable);
2359 EmitBranch(true_block, false_block, not_zero);
2360}
2361
2362
erikcorry0ad885c2011-11-21 13:51:57 +00002363static Condition ComputeCompareCondition(Token::Value op) {
2364 switch (op) {
2365 case Token::EQ_STRICT:
2366 case Token::EQ:
2367 return equal;
2368 case Token::LT:
2369 return less;
2370 case Token::GT:
2371 return greater;
2372 case Token::LTE:
2373 return less_equal;
2374 case Token::GTE:
2375 return greater_equal;
2376 default:
2377 UNREACHABLE();
2378 return no_condition;
2379 }
2380}
2381
2382
2383void LCodeGen::DoStringCompareAndBranch(LStringCompareAndBranch* instr) {
2384 Token::Value op = instr->op();
2385 int true_block = chunk_->LookupDestination(instr->true_block_id());
2386 int false_block = chunk_->LookupDestination(instr->false_block_id());
2387
hpayer@chromium.org8432c912013-02-28 15:55:26 +00002388 Handle<Code> ic = CompareIC::GetUninitialized(isolate(), op);
erikcorry0ad885c2011-11-21 13:51:57 +00002389 CallCode(ic, RelocInfo::CODE_TARGET, instr);
2390
2391 Condition condition = ComputeCompareCondition(op);
2392 __ test(eax, Operand(eax));
2393
2394 EmitBranch(true_block, false_block, condition);
2395}
2396
2397
ricow@chromium.org4f693d62011-07-04 14:01:31 +00002398static InstanceType TestType(HHasInstanceTypeAndBranch* instr) {
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00002399 InstanceType from = instr->from();
2400 InstanceType to = instr->to();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002401 if (from == FIRST_TYPE) return to;
2402 ASSERT(from == to || to == LAST_TYPE);
2403 return from;
2404}
2405
2406
ricow@chromium.org4f693d62011-07-04 14:01:31 +00002407static Condition BranchCondition(HHasInstanceTypeAndBranch* instr) {
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00002408 InstanceType from = instr->from();
2409 InstanceType to = instr->to();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002410 if (from == to) return equal;
2411 if (to == LAST_TYPE) return above_equal;
2412 if (from == FIRST_TYPE) return below_equal;
2413 UNREACHABLE();
2414 return equal;
2415}
2416
2417
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002418void LCodeGen::DoHasInstanceTypeAndBranch(LHasInstanceTypeAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002419 Register input = ToRegister(instr->value());
2420 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002421
2422 int true_block = chunk_->LookupDestination(instr->true_block_id());
2423 int false_block = chunk_->LookupDestination(instr->false_block_id());
2424
2425 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2426
whesse@chromium.org7b260152011-06-20 15:33:18 +00002427 __ JumpIfSmi(input, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002428
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00002429 __ CmpObjectType(input, TestType(instr->hydrogen()), temp);
2430 EmitBranch(true_block, false_block, BranchCondition(instr->hydrogen()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002431}
2432
2433
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002434void LCodeGen::DoGetCachedArrayIndex(LGetCachedArrayIndex* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002435 Register input = ToRegister(instr->value());
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002436 Register result = ToRegister(instr->result());
2437
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00002438 __ AssertString(input);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002439
2440 __ mov(result, FieldOperand(input, String::kHashFieldOffset));
2441 __ IndexFromHash(result, result);
2442}
2443
2444
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002445void LCodeGen::DoHasCachedArrayIndexAndBranch(
2446 LHasCachedArrayIndexAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002447 Register input = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002448
2449 int true_block = chunk_->LookupDestination(instr->true_block_id());
2450 int false_block = chunk_->LookupDestination(instr->false_block_id());
2451
2452 __ test(FieldOperand(input, String::kHashFieldOffset),
2453 Immediate(String::kContainsCachedArrayIndexMask));
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002454 EmitBranch(true_block, false_block, equal);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002455}
2456
2457
2458// Branches to a label or falls through with the answer in the z flag. Trashes
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002459// the temp registers, but not the input.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002460void LCodeGen::EmitClassOfTest(Label* is_true,
2461 Label* is_false,
2462 Handle<String>class_name,
2463 Register input,
2464 Register temp,
2465 Register temp2) {
2466 ASSERT(!input.is(temp));
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002467 ASSERT(!input.is(temp2));
2468 ASSERT(!temp.is(temp2));
whesse@chromium.org7b260152011-06-20 15:33:18 +00002469 __ JumpIfSmi(input, is_false);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002470
jkummerow@chromium.org59297c72013-01-09 16:32:23 +00002471 if (class_name->IsOneByteEqualTo(STATIC_ASCII_VECTOR("Function"))) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002472 // Assuming the following assertions, we can use the same compares to test
2473 // for both being a function type and being in the object type range.
2474 STATIC_ASSERT(NUM_OF_CALLABLE_SPEC_OBJECT_TYPES == 2);
2475 STATIC_ASSERT(FIRST_NONCALLABLE_SPEC_OBJECT_TYPE ==
2476 FIRST_SPEC_OBJECT_TYPE + 1);
2477 STATIC_ASSERT(LAST_NONCALLABLE_SPEC_OBJECT_TYPE ==
2478 LAST_SPEC_OBJECT_TYPE - 1);
2479 STATIC_ASSERT(LAST_SPEC_OBJECT_TYPE == LAST_TYPE);
2480 __ CmpObjectType(input, FIRST_SPEC_OBJECT_TYPE, temp);
2481 __ j(below, is_false);
2482 __ j(equal, is_true);
2483 __ CmpInstanceType(temp, LAST_SPEC_OBJECT_TYPE);
2484 __ j(equal, is_true);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002485 } else {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002486 // Faster code path to avoid two compares: subtract lower bound from the
2487 // actual type and do a signed compare with the width of the type range.
2488 __ mov(temp, FieldOperand(input, HeapObject::kMapOffset));
yangguo@chromium.org56454712012-02-16 15:33:53 +00002489 __ movzx_b(temp2, FieldOperand(temp, Map::kInstanceTypeOffset));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002490 __ sub(Operand(temp2), Immediate(FIRST_NONCALLABLE_SPEC_OBJECT_TYPE));
yangguo@chromium.org56454712012-02-16 15:33:53 +00002491 __ cmp(Operand(temp2), Immediate(LAST_NONCALLABLE_SPEC_OBJECT_TYPE -
2492 FIRST_NONCALLABLE_SPEC_OBJECT_TYPE));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002493 __ j(above, is_false);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002494 }
2495
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002496 // Now we are in the FIRST-LAST_NONCALLABLE_SPEC_OBJECT_TYPE range.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002497 // Check if the constructor in the map is a function.
2498 __ mov(temp, FieldOperand(temp, Map::kConstructorOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002499 // Objects with a non-function constructor have class 'Object'.
2500 __ CmpObjectType(temp, JS_FUNCTION_TYPE, temp2);
jkummerow@chromium.org59297c72013-01-09 16:32:23 +00002501 if (class_name->IsOneByteEqualTo(STATIC_ASCII_VECTOR("Object"))) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002502 __ j(not_equal, is_true);
2503 } else {
2504 __ j(not_equal, is_false);
2505 }
2506
2507 // temp now contains the constructor function. Grab the
2508 // instance class name from there.
2509 __ mov(temp, FieldOperand(temp, JSFunction::kSharedFunctionInfoOffset));
2510 __ mov(temp, FieldOperand(temp,
2511 SharedFunctionInfo::kInstanceClassNameOffset));
2512 // The class name we are testing against is a symbol because it's a literal.
2513 // The name in the constructor is a symbol because of the way the context is
2514 // booted. This routine isn't expected to work for random API-created
2515 // classes and it doesn't have to because you can't access it with natives
2516 // syntax. Since both sides are symbols it is sufficient to use an identity
2517 // comparison.
2518 __ cmp(temp, class_name);
2519 // End with the answer in the z flag.
2520}
2521
2522
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002523void LCodeGen::DoClassOfTestAndBranch(LClassOfTestAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002524 Register input = ToRegister(instr->value());
2525 Register temp = ToRegister(instr->temp());
2526 Register temp2 = ToRegister(instr->temp2());
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002527
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002528 Handle<String> class_name = instr->hydrogen()->class_name();
2529
2530 int true_block = chunk_->LookupDestination(instr->true_block_id());
2531 int false_block = chunk_->LookupDestination(instr->false_block_id());
2532
2533 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2534 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2535
2536 EmitClassOfTest(true_label, false_label, class_name, input, temp, temp2);
2537
2538 EmitBranch(true_block, false_block, equal);
2539}
2540
2541
2542void LCodeGen::DoCmpMapAndBranch(LCmpMapAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002543 Register reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002544 int true_block = instr->true_block_id();
2545 int false_block = instr->false_block_id();
2546
2547 __ cmp(FieldOperand(reg, HeapObject::kMapOffset), instr->map());
2548 EmitBranch(true_block, false_block, equal);
2549}
2550
2551
2552void LCodeGen::DoInstanceOf(LInstanceOf* instr) {
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002553 // Object and function are in fixed registers defined by the stub.
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002554 ASSERT(ToRegister(instr->context()).is(esi));
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002555 InstanceofStub stub(InstanceofStub::kArgsInRegisters);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00002556 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002557
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002558 Label true_value, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002559 __ test(eax, Operand(eax));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002560 __ j(zero, &true_value, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002561 __ mov(ToRegister(instr->result()), factory()->false_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002562 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002563 __ bind(&true_value);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002564 __ mov(ToRegister(instr->result()), factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002565 __ bind(&done);
2566}
2567
2568
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002569void LCodeGen::DoInstanceOfKnownGlobal(LInstanceOfKnownGlobal* instr) {
2570 class DeferredInstanceOfKnownGlobal: public LDeferredCode {
2571 public:
2572 DeferredInstanceOfKnownGlobal(LCodeGen* codegen,
2573 LInstanceOfKnownGlobal* instr)
2574 : LDeferredCode(codegen), instr_(instr) { }
2575 virtual void Generate() {
ricow@chromium.org27bf2882011-11-17 08:34:43 +00002576 codegen()->DoDeferredInstanceOfKnownGlobal(instr_, &map_check_);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002577 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002578 virtual LInstruction* instr() { return instr_; }
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002579 Label* map_check() { return &map_check_; }
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002580 private:
2581 LInstanceOfKnownGlobal* instr_;
2582 Label map_check_;
2583 };
2584
2585 DeferredInstanceOfKnownGlobal* deferred;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002586 deferred = new(zone()) DeferredInstanceOfKnownGlobal(this, instr);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002587
2588 Label done, false_result;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002589 Register object = ToRegister(instr->value());
2590 Register temp = ToRegister(instr->temp());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002591
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002592 // A Smi is not an instance of anything.
whesse@chromium.org7b260152011-06-20 15:33:18 +00002593 __ JumpIfSmi(object, &false_result);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002594
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002595 // This is the inlined call site instanceof cache. The two occurences of the
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002596 // hole value will be patched to the last map/result pair generated by the
2597 // instanceof stub.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002598 Label cache_miss;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002599 Register map = ToRegister(instr->temp());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002600 __ mov(map, FieldOperand(object, HeapObject::kMapOffset));
2601 __ bind(deferred->map_check()); // Label for calculating code patching.
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002602 Handle<JSGlobalPropertyCell> cache_cell =
2603 factory()->NewJSGlobalPropertyCell(factory()->the_hole_value());
2604 __ cmp(map, Operand::Cell(cache_cell)); // Patched to cached map.
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002605 __ j(not_equal, &cache_miss, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002606 __ mov(eax, factory()->the_hole_value()); // Patched to either true or false.
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002607 __ jmp(&done);
2608
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002609 // The inlined call site cache did not match. Check for null and string
2610 // before calling the deferred code.
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002611 __ bind(&cache_miss);
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002612 // Null is not an instance of anything.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002613 __ cmp(object, factory()->null_value());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002614 __ j(equal, &false_result);
2615
2616 // String values are not instances of anything.
2617 Condition is_string = masm_->IsObjectStringType(object, temp, temp);
2618 __ j(is_string, &false_result);
2619
2620 // Go to the deferred code.
2621 __ jmp(deferred->entry());
2622
2623 __ bind(&false_result);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002624 __ mov(ToRegister(instr->result()), factory()->false_value());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002625
2626 // Here result has either true or false. Deferred code also produces true or
2627 // false object.
2628 __ bind(deferred->exit());
2629 __ bind(&done);
2630}
2631
2632
ricow@chromium.org27bf2882011-11-17 08:34:43 +00002633void LCodeGen::DoDeferredInstanceOfKnownGlobal(LInstanceOfKnownGlobal* instr,
2634 Label* map_check) {
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002635 PushSafepointRegistersScope scope(this);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002636
2637 InstanceofStub::Flags flags = InstanceofStub::kNoFlags;
2638 flags = static_cast<InstanceofStub::Flags>(
2639 flags | InstanceofStub::kArgsInRegisters);
2640 flags = static_cast<InstanceofStub::Flags>(
2641 flags | InstanceofStub::kCallSiteInlineCheck);
2642 flags = static_cast<InstanceofStub::Flags>(
2643 flags | InstanceofStub::kReturnTrueFalseObject);
2644 InstanceofStub stub(flags);
2645
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002646 // Get the temp register reserved by the instruction. This needs to be a
2647 // register which is pushed last by PushSafepointRegisters as top of the
2648 // stack is used to pass the offset to the location of the map check to
2649 // the stub.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002650 Register temp = ToRegister(instr->temp());
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002651 ASSERT(MacroAssembler::SafepointRegisterStackIndex(temp) == 0);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002652 __ LoadHeapObject(InstanceofStub::right(), instr->function());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002653 static const int kAdditionalDelta = 13;
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002654 int delta = masm_->SizeOfCodeGeneratedSince(map_check) + kAdditionalDelta;
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002655 __ mov(temp, Immediate(delta));
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00002656 __ StoreToSafepointRegisterSlot(temp, temp);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00002657 CallCodeGeneric(stub.GetCode(isolate()),
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002658 RelocInfo::CODE_TARGET,
2659 instr,
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002660 RECORD_SAFEPOINT_WITH_REGISTERS_AND_NO_ARGUMENTS);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00002661 // Get the deoptimization index of the LLazyBailout-environment that
2662 // corresponds to this instruction.
2663 LEnvironment* env = instr->GetDeferredLazyDeoptimizationEnvironment();
ricow@chromium.org27bf2882011-11-17 08:34:43 +00002664 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
2665
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002666 // Put the result value into the eax slot and restore all registers.
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00002667 __ StoreToSafepointRegisterSlot(eax, eax);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002668}
2669
2670
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00002671void LCodeGen::DoInstanceSize(LInstanceSize* instr) {
2672 Register object = ToRegister(instr->object());
2673 Register result = ToRegister(instr->result());
2674 __ mov(result, FieldOperand(object, HeapObject::kMapOffset));
2675 __ movzx_b(result, FieldOperand(result, Map::kInstanceSizeOffset));
2676}
2677
2678
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002679void LCodeGen::DoCmpT(LCmpT* instr) {
2680 Token::Value op = instr->op();
2681
hpayer@chromium.org8432c912013-02-28 15:55:26 +00002682 Handle<Code> ic = CompareIC::GetUninitialized(isolate(), op);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002683 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002684
2685 Condition condition = ComputeCompareCondition(op);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002686 Label true_value, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002687 __ test(eax, Operand(eax));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002688 __ j(condition, &true_value, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002689 __ mov(ToRegister(instr->result()), factory()->false_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002690 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002691 __ bind(&true_value);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002692 __ mov(ToRegister(instr->result()), factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002693 __ bind(&done);
2694}
2695
2696
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002697void LCodeGen::DoReturn(LReturn* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002698 if (FLAG_trace && info()->IsOptimizing()) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002699 // Preserve the return value on the stack and rely on the runtime call
2700 // to return the value in the same register. We're leaving the code
2701 // managed by the register allocator and tearing down the frame, it's
2702 // safe to write to the context register.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002703 __ push(eax);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002704 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002705 __ CallRuntime(Runtime::kTraceExit, 1);
2706 }
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00002707 if (info()->saves_caller_doubles() && CpuFeatures::IsSupported(SSE2)) {
2708 ASSERT(NeedsEagerFrame());
2709 CpuFeatures::Scope scope(SSE2);
2710 BitVector* doubles = chunk()->allocated_double_registers();
2711 BitVector::Iterator save_iterator(doubles);
2712 int count = 0;
2713 while (!save_iterator.Done()) {
2714 __ movdbl(XMMRegister::FromAllocationIndex(save_iterator.Current()),
2715 MemOperand(esp, count * kDoubleSize));
2716 save_iterator.Advance();
2717 count++;
2718 }
2719 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002720 if (dynamic_frame_alignment_) {
2721 // Fetch the state of the dynamic frame alignment.
2722 __ mov(edx, Operand(ebp,
2723 JavaScriptFrameConstants::kDynamicAlignmentStateOffset));
2724 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002725 if (NeedsEagerFrame()) {
2726 __ mov(esp, ebp);
2727 __ pop(ebp);
2728 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002729 if (dynamic_frame_alignment_) {
2730 Label no_padding;
2731 __ cmp(edx, Immediate(kNoAlignmentPadding));
2732 __ j(equal, &no_padding);
2733 if (FLAG_debug_code) {
2734 __ cmp(Operand(esp, (GetParameterCount() + 2) * kPointerSize),
2735 Immediate(kAlignmentZapValue));
2736 __ Assert(equal, "expected alignment marker");
2737 }
2738 __ Ret((GetParameterCount() + 2) * kPointerSize, ecx);
2739 __ bind(&no_padding);
2740 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002741 if (info()->IsStub()) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002742 __ Ret();
2743 } else {
2744 __ Ret((GetParameterCount() + 1) * kPointerSize, ecx);
2745 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002746}
2747
2748
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002749void LCodeGen::DoLoadGlobalCell(LLoadGlobalCell* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002750 Register result = ToRegister(instr->result());
2751 __ mov(result, Operand::Cell(instr->hydrogen()->cell()));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002752 if (instr->hydrogen()->RequiresHoleCheck()) {
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002753 __ cmp(result, factory()->the_hole_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002754 DeoptimizeIf(equal, instr->environment());
2755 }
2756}
2757
2758
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002759void LCodeGen::DoLoadGlobalGeneric(LLoadGlobalGeneric* instr) {
2760 ASSERT(ToRegister(instr->context()).is(esi));
danno@chromium.org1044a4d2012-04-30 12:34:39 +00002761 ASSERT(ToRegister(instr->global_object()).is(edx));
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002762 ASSERT(ToRegister(instr->result()).is(eax));
2763
2764 __ mov(ecx, instr->name());
2765 RelocInfo::Mode mode = instr->for_typeof() ? RelocInfo::CODE_TARGET :
2766 RelocInfo::CODE_TARGET_CONTEXT;
2767 Handle<Code> ic = isolate()->builtins()->LoadIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002768 CallCode(ic, mode, instr);
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002769}
2770
2771
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00002772void LCodeGen::DoStoreGlobalCell(LStoreGlobalCell* instr) {
danno@chromium.orge78f9fc2011-12-21 08:29:34 +00002773 Register value = ToRegister(instr->value());
2774 Handle<JSGlobalPropertyCell> cell_handle = instr->hydrogen()->cell();
ager@chromium.org378b34e2011-01-28 08:04:38 +00002775
2776 // If the cell we are storing to contains the hole it could have
2777 // been deleted from the property dictionary. In that case, we need
2778 // to update the property details in the property dictionary to mark
2779 // it as no longer deleted. We deoptimize in that case.
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002780 if (instr->hydrogen()->RequiresHoleCheck()) {
danno@chromium.orge78f9fc2011-12-21 08:29:34 +00002781 __ cmp(Operand::Cell(cell_handle), factory()->the_hole_value());
ager@chromium.org378b34e2011-01-28 08:04:38 +00002782 DeoptimizeIf(equal, instr->environment());
2783 }
2784
2785 // Store the value.
danno@chromium.orge78f9fc2011-12-21 08:29:34 +00002786 __ mov(Operand::Cell(cell_handle), value);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002787 // Cells are always rescanned, so no write barrier here.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002788}
2789
2790
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00002791void LCodeGen::DoStoreGlobalGeneric(LStoreGlobalGeneric* instr) {
2792 ASSERT(ToRegister(instr->context()).is(esi));
2793 ASSERT(ToRegister(instr->global_object()).is(edx));
2794 ASSERT(ToRegister(instr->value()).is(eax));
2795
2796 __ mov(ecx, instr->name());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00002797 Handle<Code> ic = (instr->strict_mode_flag() == kStrictMode)
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002798 ? isolate()->builtins()->StoreIC_Initialize_Strict()
2799 : isolate()->builtins()->StoreIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002800 CallCode(ic, RelocInfo::CODE_TARGET_CONTEXT, instr);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00002801}
2802
2803
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00002804void LCodeGen::DoLoadContextSlot(LLoadContextSlot* instr) {
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002805 Register context = ToRegister(instr->context());
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00002806 Register result = ToRegister(instr->result());
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002807 __ mov(result, ContextOperand(context, instr->slot_index()));
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002808
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002809 if (instr->hydrogen()->RequiresHoleCheck()) {
2810 __ cmp(result, factory()->the_hole_value());
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002811 if (instr->hydrogen()->DeoptimizesOnHole()) {
2812 DeoptimizeIf(equal, instr->environment());
2813 } else {
2814 Label is_not_hole;
2815 __ j(not_equal, &is_not_hole, Label::kNear);
2816 __ mov(result, factory()->undefined_value());
2817 __ bind(&is_not_hole);
2818 }
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002819 }
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002820}
2821
2822
2823void LCodeGen::DoStoreContextSlot(LStoreContextSlot* instr) {
2824 Register context = ToRegister(instr->context());
2825 Register value = ToRegister(instr->value());
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002826
2827 Label skip_assignment;
2828
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002829 Operand target = ContextOperand(context, instr->slot_index());
2830 if (instr->hydrogen()->RequiresHoleCheck()) {
2831 __ cmp(target, factory()->the_hole_value());
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002832 if (instr->hydrogen()->DeoptimizesOnHole()) {
2833 DeoptimizeIf(equal, instr->environment());
2834 } else {
2835 __ j(not_equal, &skip_assignment, Label::kNear);
2836 }
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002837 }
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002838
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002839 __ mov(target, value);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002840 if (instr->hydrogen()->NeedsWriteBarrier()) {
2841 HType type = instr->hydrogen()->value()->type();
2842 SmiCheck check_needed =
2843 type.IsHeapObject() ? OMIT_SMI_CHECK : INLINE_SMI_CHECK;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002844 Register temp = ToRegister(instr->temp());
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002845 int offset = Context::SlotOffset(instr->slot_index());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002846 __ RecordWriteContextSlot(context,
2847 offset,
2848 value,
2849 temp,
2850 kSaveFPRegs,
2851 EMIT_REMEMBERED_SET,
2852 check_needed);
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002853 }
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002854
2855 __ bind(&skip_assignment);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00002856}
2857
2858
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002859void LCodeGen::DoLoadNamedField(LLoadNamedField* instr) {
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002860 Register object = ToRegister(instr->object());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002861 Register result = ToRegister(instr->result());
2862 if (instr->hydrogen()->is_in_object()) {
2863 __ mov(result, FieldOperand(object, instr->hydrogen()->offset()));
2864 } else {
2865 __ mov(result, FieldOperand(object, JSObject::kPropertiesOffset));
2866 __ mov(result, FieldOperand(result, instr->hydrogen()->offset()));
2867 }
2868}
2869
2870
lrn@chromium.org1c092762011-05-09 09:42:16 +00002871void LCodeGen::EmitLoadFieldOrConstantFunction(Register result,
2872 Register object,
2873 Handle<Map> type,
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002874 Handle<String> name,
2875 LEnvironment* env) {
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002876 LookupResult lookup(isolate());
verwaest@chromium.org753aee42012-07-17 16:15:42 +00002877 type->LookupDescriptor(NULL, *name, &lookup);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002878 ASSERT(lookup.IsFound() || lookup.IsCacheable());
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002879 if (lookup.IsField()) {
lrn@chromium.org1c092762011-05-09 09:42:16 +00002880 int index = lookup.GetLocalFieldIndexFromMap(*type);
2881 int offset = index * kPointerSize;
2882 if (index < 0) {
2883 // Negative property indices are in-object properties, indexed
2884 // from the end of the fixed part of the object.
2885 __ mov(result, FieldOperand(object, offset + type->instance_size()));
2886 } else {
2887 // Non-negative property indices are in the properties array.
2888 __ mov(result, FieldOperand(object, JSObject::kPropertiesOffset));
2889 __ mov(result, FieldOperand(result, offset + FixedArray::kHeaderSize));
2890 }
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002891 } else if (lookup.IsConstantFunction()) {
lrn@chromium.org1c092762011-05-09 09:42:16 +00002892 Handle<JSFunction> function(lookup.GetConstantFunctionFromMap(*type));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002893 __ LoadHeapObject(result, function);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002894 } else {
2895 // Negative lookup.
2896 // Check prototypes.
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002897 Handle<HeapObject> current(HeapObject::cast((*type)->prototype()));
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002898 Heap* heap = type->GetHeap();
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002899 while (*current != heap->null_value()) {
2900 __ LoadHeapObject(result, current);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002901 __ cmp(FieldOperand(result, HeapObject::kMapOffset),
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002902 Handle<Map>(current->map()));
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002903 DeoptimizeIf(not_equal, env);
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002904 current =
2905 Handle<HeapObject>(HeapObject::cast(current->map()->prototype()));
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002906 }
2907 __ mov(result, factory()->undefined_value());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002908 }
2909}
2910
2911
2912void LCodeGen::EmitPushTaggedOperand(LOperand* operand) {
2913 ASSERT(!operand->IsDoubleRegister());
2914 if (operand->IsConstantOperand()) {
2915 Handle<Object> object = ToHandle(LConstantOperand::cast(operand));
2916 if (object->IsSmi()) {
2917 __ Push(Handle<Smi>::cast(object));
2918 } else {
2919 __ PushHeapObject(Handle<HeapObject>::cast(object));
2920 }
2921 } else if (operand->IsRegister()) {
2922 __ push(ToRegister(operand));
2923 } else {
2924 __ push(ToOperand(operand));
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002925 }
2926}
2927
2928
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002929// Check for cases where EmitLoadFieldOrConstantFunction needs to walk the
2930// prototype chain, which causes unbounded code generation.
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002931static bool CompactEmit(SmallMapList* list,
2932 Handle<String> name,
2933 int i,
2934 Isolate* isolate) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002935 Handle<Map> map = list->at(i);
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002936 // If the map has ElementsKind transitions, we will generate map checks
2937 // for each kind in __ CompareMap(..., ALLOW_ELEMENTS_TRANSITION_MAPS).
yangguo@chromium.org99aa4902012-07-06 16:21:55 +00002938 if (map->HasElementsTransition()) return false;
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002939 LookupResult lookup(isolate);
yangguo@chromium.org99aa4902012-07-06 16:21:55 +00002940 map->LookupDescriptor(NULL, *name, &lookup);
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002941 return lookup.IsField() || lookup.IsConstantFunction();
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002942}
2943
2944
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002945void LCodeGen::DoLoadNamedFieldPolymorphic(LLoadNamedFieldPolymorphic* instr) {
2946 Register object = ToRegister(instr->object());
2947 Register result = ToRegister(instr->result());
2948
2949 int map_count = instr->hydrogen()->types()->length();
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002950 bool need_generic = instr->hydrogen()->need_generic();
2951
2952 if (map_count == 0 && !need_generic) {
2953 DeoptimizeIf(no_condition, instr->environment());
2954 return;
2955 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002956 Handle<String> name = instr->hydrogen()->name();
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002957 Label done;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002958 bool all_are_compact = true;
2959 for (int i = 0; i < map_count; ++i) {
2960 if (!CompactEmit(instr->hydrogen()->types(), name, i, isolate())) {
2961 all_are_compact = false;
2962 break;
2963 }
2964 }
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002965 for (int i = 0; i < map_count; ++i) {
2966 bool last = (i == map_count - 1);
2967 Handle<Map> map = instr->hydrogen()->types()->at(i);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002968 Label check_passed;
2969 __ CompareMap(object, map, &check_passed, ALLOW_ELEMENT_TRANSITION_MAPS);
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002970 if (last && !need_generic) {
2971 DeoptimizeIf(not_equal, instr->environment());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002972 __ bind(&check_passed);
2973 EmitLoadFieldOrConstantFunction(
2974 result, object, map, name, instr->environment());
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002975 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002976 Label next;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002977 bool compact = all_are_compact ? true :
2978 CompactEmit(instr->hydrogen()->types(), name, i, isolate());
2979 __ j(not_equal, &next, compact ? Label::kNear : Label::kFar);
2980 __ bind(&check_passed);
2981 EmitLoadFieldOrConstantFunction(
2982 result, object, map, name, instr->environment());
2983 __ jmp(&done, all_are_compact ? Label::kNear : Label::kFar);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002984 __ bind(&next);
2985 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002986 }
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002987 if (need_generic) {
2988 __ mov(ecx, name);
2989 Handle<Code> ic = isolate()->builtins()->LoadIC_Initialize();
2990 CallCode(ic, RelocInfo::CODE_TARGET, instr);
2991 }
2992 __ bind(&done);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002993}
2994
2995
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002996void LCodeGen::DoLoadNamedGeneric(LLoadNamedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002997 ASSERT(ToRegister(instr->context()).is(esi));
danno@chromium.org1044a4d2012-04-30 12:34:39 +00002998 ASSERT(ToRegister(instr->object()).is(edx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002999 ASSERT(ToRegister(instr->result()).is(eax));
3000
3001 __ mov(ecx, instr->name());
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003002 Handle<Code> ic = isolate()->builtins()->LoadIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003003 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003004}
3005
3006
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003007void LCodeGen::DoLoadFunctionPrototype(LLoadFunctionPrototype* instr) {
3008 Register function = ToRegister(instr->function());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003009 Register temp = ToRegister(instr->temp());
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003010 Register result = ToRegister(instr->result());
3011
3012 // Check that the function really is a function.
3013 __ CmpObjectType(function, JS_FUNCTION_TYPE, result);
3014 DeoptimizeIf(not_equal, instr->environment());
3015
3016 // Check whether the function has an instance prototype.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003017 Label non_instance;
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003018 __ test_b(FieldOperand(result, Map::kBitFieldOffset),
3019 1 << Map::kHasNonInstancePrototype);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003020 __ j(not_zero, &non_instance, Label::kNear);
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003021
3022 // Get the prototype or initial map from the function.
3023 __ mov(result,
3024 FieldOperand(function, JSFunction::kPrototypeOrInitialMapOffset));
3025
3026 // Check that the function has a prototype or an initial map.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003027 __ cmp(Operand(result), Immediate(factory()->the_hole_value()));
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003028 DeoptimizeIf(equal, instr->environment());
3029
3030 // If the function does not have an initial map, we're done.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003031 Label done;
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003032 __ CmpObjectType(result, MAP_TYPE, temp);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003033 __ j(not_equal, &done, Label::kNear);
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003034
3035 // Get the prototype from the initial map.
3036 __ mov(result, FieldOperand(result, Map::kPrototypeOffset));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003037 __ jmp(&done, Label::kNear);
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00003038
3039 // Non-instance prototype: Fetch prototype from constructor field
3040 // in the function's map.
3041 __ bind(&non_instance);
3042 __ mov(result, FieldOperand(result, Map::kConstructorOffset));
3043
3044 // All done.
3045 __ bind(&done);
3046}
3047
3048
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003049void LCodeGen::DoLoadElements(LLoadElements* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003050 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003051 Register input = ToRegister(instr->object());
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003052 __ mov(result, FieldOperand(input, JSObject::kElementsOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003053 if (FLAG_debug_code) {
whesse@chromium.org7b260152011-06-20 15:33:18 +00003054 Label done, ok, fail;
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003055 __ cmp(FieldOperand(result, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003056 Immediate(factory()->fixed_array_map()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003057 __ j(equal, &done, Label::kNear);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003058 __ cmp(FieldOperand(result, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003059 Immediate(factory()->fixed_cow_array_map()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003060 __ j(equal, &done, Label::kNear);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003061 Register temp((result.is(eax)) ? ebx : eax);
3062 __ push(temp);
3063 __ mov(temp, FieldOperand(result, HeapObject::kMapOffset));
whesse@chromium.org7b260152011-06-20 15:33:18 +00003064 __ movzx_b(temp, FieldOperand(temp, Map::kBitField2Offset));
3065 __ and_(temp, Map::kElementsKindMask);
3066 __ shr(temp, Map::kElementsKindShift);
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00003067 __ cmp(temp, GetInitialFastElementsKind());
3068 __ j(less, &fail, Label::kNear);
3069 __ cmp(temp, TERMINAL_FAST_ELEMENTS_KIND);
3070 __ j(less_equal, &ok, Label::kNear);
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003071 __ cmp(temp, FIRST_EXTERNAL_ARRAY_ELEMENTS_KIND);
whesse@chromium.org7b260152011-06-20 15:33:18 +00003072 __ j(less, &fail, Label::kNear);
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003073 __ cmp(temp, LAST_EXTERNAL_ARRAY_ELEMENTS_KIND);
whesse@chromium.org7b260152011-06-20 15:33:18 +00003074 __ j(less_equal, &ok, Label::kNear);
3075 __ bind(&fail);
3076 __ Abort("Check for fast or external elements failed.");
3077 __ bind(&ok);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003078 __ pop(temp);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003079 __ bind(&done);
3080 }
3081}
3082
3083
danno@chromium.org4d3fe4e2011-03-10 10:14:28 +00003084void LCodeGen::DoLoadExternalArrayPointer(
3085 LLoadExternalArrayPointer* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003086 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003087 Register input = ToRegister(instr->object());
danno@chromium.org4d3fe4e2011-03-10 10:14:28 +00003088 __ mov(result, FieldOperand(input,
3089 ExternalArray::kExternalPointerOffset));
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003090}
3091
3092
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003093void LCodeGen::DoAccessArgumentsAt(LAccessArgumentsAt* instr) {
3094 Register arguments = ToRegister(instr->arguments());
3095 Register length = ToRegister(instr->length());
3096 Operand index = ToOperand(instr->index());
3097 Register result = ToRegister(instr->result());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00003098 // There are two words between the frame pointer and the last argument.
3099 // Subtracting from length accounts for one of them add one more.
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00003100 __ sub(length, index);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003101 __ mov(result, Operand(arguments, length, times_4, kPointerSize));
3102}
3103
3104
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003105void LCodeGen::DoLoadKeyedExternalArray(LLoadKeyed* instr) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003106 ElementsKind elements_kind = instr->elements_kind();
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00003107 LOperand* key = instr->key();
3108 if (!key->IsConstantOperand() &&
3109 ExternalArrayOpRequiresTemp(instr->hydrogen()->key()->representation(),
3110 elements_kind)) {
3111 __ SmiUntag(ToRegister(key));
yangguo@chromium.org304cc332012-07-24 07:59:48 +00003112 }
3113 Operand operand(BuildFastArrayOperand(
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003114 instr->elements(),
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00003115 key,
yangguo@chromium.org304cc332012-07-24 07:59:48 +00003116 instr->hydrogen()->key()->representation(),
3117 elements_kind,
3118 0,
3119 instr->additional_index()));
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003120 if (elements_kind == EXTERNAL_FLOAT_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003121 if (CpuFeatures::IsSupported(SSE2)) {
3122 CpuFeatures::Scope scope(SSE2);
3123 XMMRegister result(ToDoubleRegister(instr->result()));
3124 __ movss(result, operand);
3125 __ cvtss2sd(result, result);
3126 } else {
3127 __ fld_s(operand);
3128 HandleX87FPReturnValue(instr);
3129 }
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003130 } else if (elements_kind == EXTERNAL_DOUBLE_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003131 if (CpuFeatures::IsSupported(SSE2)) {
3132 CpuFeatures::Scope scope(SSE2);
3133 __ movdbl(ToDoubleRegister(instr->result()), operand);
3134 } else {
3135 __ fld_d(operand);
3136 HandleX87FPReturnValue(instr);
3137 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003138 } else {
3139 Register result(ToRegister(instr->result()));
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00003140 switch (elements_kind) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003141 case EXTERNAL_BYTE_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003142 __ movsx_b(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003143 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003144 case EXTERNAL_PIXEL_ELEMENTS:
3145 case EXTERNAL_UNSIGNED_BYTE_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003146 __ movzx_b(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003147 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003148 case EXTERNAL_SHORT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003149 __ movsx_w(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003150 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003151 case EXTERNAL_UNSIGNED_SHORT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003152 __ movzx_w(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003153 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003154 case EXTERNAL_INT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003155 __ mov(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003156 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003157 case EXTERNAL_UNSIGNED_INT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003158 __ mov(result, operand);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003159 if (!instr->hydrogen()->CheckFlag(HInstruction::kUint32)) {
3160 __ test(result, Operand(result));
3161 DeoptimizeIf(negative, instr->environment());
3162 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003163 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003164 case EXTERNAL_FLOAT_ELEMENTS:
3165 case EXTERNAL_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00003166 case FAST_SMI_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003167 case FAST_ELEMENTS:
3168 case FAST_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00003169 case FAST_HOLEY_SMI_ELEMENTS:
3170 case FAST_HOLEY_ELEMENTS:
3171 case FAST_HOLEY_DOUBLE_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003172 case DICTIONARY_ELEMENTS:
3173 case NON_STRICT_ARGUMENTS_ELEMENTS:
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003174 UNREACHABLE();
3175 break;
3176 }
3177 }
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003178}
3179
3180
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003181void LCodeGen::HandleX87FPReturnValue(LInstruction* instr) {
3182 if (IsX87TopOfStack(instr->result())) {
3183 // Return value is already on stack. If the value has no uses, then
3184 // pop it off the FP stack. Otherwise, make sure that there are enough
3185 // copies of the value on the stack to feed all of the usages, e.g.
3186 // when the following instruction uses the return value in multiple
3187 // inputs.
3188 int count = instr->hydrogen_value()->UseCount();
3189 if (count == 0) {
3190 __ fstp(0);
3191 } else {
3192 count--;
3193 ASSERT(count <= 7);
3194 while (count-- > 0) {
3195 __ fld(0);
3196 }
3197 }
3198 } else {
3199 __ fstp_d(ToOperand(instr->result()));
3200 }
3201}
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +00003202
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003203
3204void LCodeGen::DoLoadKeyedFixedDoubleArray(LLoadKeyed* instr) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003205 if (instr->hydrogen()->RequiresHoleCheck()) {
3206 int offset = FixedDoubleArray::kHeaderSize - kHeapObjectTag +
3207 sizeof(kHoleNanLower32);
3208 Operand hole_check_operand = BuildFastArrayOperand(
3209 instr->elements(), instr->key(),
3210 instr->hydrogen()->key()->representation(),
3211 FAST_DOUBLE_ELEMENTS,
3212 offset,
3213 instr->additional_index());
3214 __ cmp(hole_check_operand, Immediate(kHoleNanUpper32));
3215 DeoptimizeIf(equal, instr->environment());
3216 }
3217
3218 Operand double_load_operand = BuildFastArrayOperand(
3219 instr->elements(),
3220 instr->key(),
3221 instr->hydrogen()->key()->representation(),
3222 FAST_DOUBLE_ELEMENTS,
3223 FixedDoubleArray::kHeaderSize - kHeapObjectTag,
3224 instr->additional_index());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003225 if (CpuFeatures::IsSupported(SSE2)) {
3226 CpuFeatures::Scope scope(SSE2);
3227 XMMRegister result = ToDoubleRegister(instr->result());
3228 __ movdbl(result, double_load_operand);
3229 } else {
3230 __ fld_d(double_load_operand);
3231 HandleX87FPReturnValue(instr);
3232 }
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003233}
3234
3235
3236void LCodeGen::DoLoadKeyedFixedArray(LLoadKeyed* instr) {
3237 Register result = ToRegister(instr->result());
3238
3239 // Load the result.
3240 __ mov(result,
3241 BuildFastArrayOperand(instr->elements(),
3242 instr->key(),
3243 instr->hydrogen()->key()->representation(),
3244 FAST_ELEMENTS,
3245 FixedArray::kHeaderSize - kHeapObjectTag,
3246 instr->additional_index()));
3247
3248 // Check for the hole value.
3249 if (instr->hydrogen()->RequiresHoleCheck()) {
3250 if (IsFastSmiElementsKind(instr->hydrogen()->elements_kind())) {
3251 __ test(result, Immediate(kSmiTagMask));
3252 DeoptimizeIf(not_equal, instr->environment());
3253 } else {
3254 __ cmp(result, factory()->the_hole_value());
3255 DeoptimizeIf(equal, instr->environment());
3256 }
3257 }
3258}
3259
3260
3261void LCodeGen::DoLoadKeyed(LLoadKeyed* instr) {
3262 if (instr->is_external()) {
3263 DoLoadKeyedExternalArray(instr);
3264 } else if (instr->hydrogen()->representation().IsDouble()) {
3265 DoLoadKeyedFixedDoubleArray(instr);
3266 } else {
3267 DoLoadKeyedFixedArray(instr);
3268 }
3269}
3270
3271
3272Operand LCodeGen::BuildFastArrayOperand(
3273 LOperand* elements_pointer,
3274 LOperand* key,
3275 Representation key_representation,
3276 ElementsKind elements_kind,
3277 uint32_t offset,
3278 uint32_t additional_index) {
3279 Register elements_pointer_reg = ToRegister(elements_pointer);
3280 int shift_size = ElementsKindToShiftSize(elements_kind);
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003281 if (key->IsConstantOperand()) {
3282 int constant_value = ToInteger32(LConstantOperand::cast(key));
3283 if (constant_value & 0xF0000000) {
3284 Abort("array index constant value too big");
3285 }
3286 return Operand(elements_pointer_reg,
3287 ((constant_value + additional_index) << shift_size)
3288 + offset);
3289 } else {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +00003290 // Take the tag bit into account while computing the shift size.
3291 if (key_representation.IsTagged() && (shift_size >= 1)) {
3292 shift_size -= kSmiTagSize;
3293 }
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003294 ScaleFactor scale_factor = static_cast<ScaleFactor>(shift_size);
3295 return Operand(elements_pointer_reg,
3296 ToRegister(key),
3297 scale_factor,
3298 offset + (additional_index << shift_size));
3299 }
3300}
3301
3302
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003303void LCodeGen::DoLoadKeyedGeneric(LLoadKeyedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003304 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003305 ASSERT(ToRegister(instr->object()).is(edx));
danno@chromium.org1044a4d2012-04-30 12:34:39 +00003306 ASSERT(ToRegister(instr->key()).is(ecx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003307
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003308 Handle<Code> ic = isolate()->builtins()->KeyedLoadIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003309 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003310}
3311
3312
3313void LCodeGen::DoArgumentsElements(LArgumentsElements* instr) {
3314 Register result = ToRegister(instr->result());
3315
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003316 if (instr->hydrogen()->from_inlined()) {
3317 __ lea(result, Operand(esp, -2 * kPointerSize));
3318 } else {
3319 // Check for arguments adapter frame.
3320 Label done, adapted;
3321 __ mov(result, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
3322 __ mov(result, Operand(result, StandardFrameConstants::kContextOffset));
3323 __ cmp(Operand(result),
3324 Immediate(Smi::FromInt(StackFrame::ARGUMENTS_ADAPTOR)));
3325 __ j(equal, &adapted, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003326
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003327 // No arguments adaptor frame.
3328 __ mov(result, Operand(ebp));
3329 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003330
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003331 // Arguments adaptor frame present.
3332 __ bind(&adapted);
3333 __ mov(result, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003334
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003335 // Result is the frame pointer for the frame if not adapted and for the real
3336 // frame below the adaptor frame if adapted.
3337 __ bind(&done);
3338 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003339}
3340
3341
3342void LCodeGen::DoArgumentsLength(LArgumentsLength* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003343 Operand elem = ToOperand(instr->elements());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003344 Register result = ToRegister(instr->result());
3345
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003346 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003347
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00003348 // If no arguments adaptor frame the number of arguments is fixed.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003349 __ cmp(ebp, elem);
3350 __ mov(result, Immediate(scope()->num_parameters()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003351 __ j(equal, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003352
3353 // Arguments adaptor frame present. Get argument length from there.
3354 __ mov(result, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
3355 __ mov(result, Operand(result,
3356 ArgumentsAdaptorFrameConstants::kLengthOffset));
3357 __ SmiUntag(result);
3358
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00003359 // Argument length is in result register.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003360 __ bind(&done);
3361}
3362
3363
yangguo@chromium.org154ff992012-03-13 08:09:54 +00003364void LCodeGen::DoWrapReceiver(LWrapReceiver* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003365 Register receiver = ToRegister(instr->receiver());
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003366 Register function = ToRegister(instr->function());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003367 Register scratch = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003368
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003369 // If the receiver is null or undefined, we have to pass the global
3370 // object as a receiver to normal functions. Values have to be
3371 // passed unchanged to builtins and strict-mode functions.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003372 Label global_object, receiver_ok;
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003373
3374 // Do not transform the receiver to object for strict mode
3375 // functions.
3376 __ mov(scratch,
3377 FieldOperand(function, JSFunction::kSharedFunctionInfoOffset));
3378 __ test_b(FieldOperand(scratch, SharedFunctionInfo::kStrictModeByteOffset),
3379 1 << SharedFunctionInfo::kStrictModeBitWithinByte);
danno@chromium.org412fa512012-09-14 13:28:26 +00003380 __ j(not_equal, &receiver_ok); // A near jump is not sufficient here!
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003381
3382 // Do not transform the receiver to object for builtins.
3383 __ test_b(FieldOperand(scratch, SharedFunctionInfo::kNativeByteOffset),
3384 1 << SharedFunctionInfo::kNativeBitWithinByte);
danno@chromium.org412fa512012-09-14 13:28:26 +00003385 __ j(not_equal, &receiver_ok);
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003386
3387 // Normal function. Replace undefined or null with global receiver.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003388 __ cmp(receiver, factory()->null_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003389 __ j(equal, &global_object, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003390 __ cmp(receiver, factory()->undefined_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003391 __ j(equal, &global_object, Label::kNear);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003392
3393 // The receiver should be a JS object.
3394 __ test(receiver, Immediate(kSmiTagMask));
3395 DeoptimizeIf(equal, instr->environment());
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003396 __ CmpObjectType(receiver, FIRST_SPEC_OBJECT_TYPE, scratch);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003397 DeoptimizeIf(below, instr->environment());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003398 __ jmp(&receiver_ok, Label::kNear);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003399
3400 __ bind(&global_object);
3401 // TODO(kmillikin): We have a hydrogen value for the global object. See
3402 // if it's better to use it than to explicitly fetch it from the context
3403 // here.
3404 __ mov(receiver, Operand(ebp, StandardFrameConstants::kContextOffset));
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003405 __ mov(receiver, ContextOperand(receiver, Context::GLOBAL_OBJECT_INDEX));
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003406 __ mov(receiver,
3407 FieldOperand(receiver, JSGlobalObject::kGlobalReceiverOffset));
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003408 __ bind(&receiver_ok);
yangguo@chromium.org154ff992012-03-13 08:09:54 +00003409}
3410
3411
3412void LCodeGen::DoApplyArguments(LApplyArguments* instr) {
3413 Register receiver = ToRegister(instr->receiver());
3414 Register function = ToRegister(instr->function());
3415 Register length = ToRegister(instr->length());
3416 Register elements = ToRegister(instr->elements());
3417 ASSERT(receiver.is(eax)); // Used for parameter count.
3418 ASSERT(function.is(edi)); // Required by InvokeFunction.
3419 ASSERT(ToRegister(instr->result()).is(eax));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003420
3421 // Copy the arguments to this function possibly from the
3422 // adaptor frame below it.
3423 const uint32_t kArgumentsLimit = 1 * KB;
3424 __ cmp(length, kArgumentsLimit);
3425 DeoptimizeIf(above, instr->environment());
3426
3427 __ push(receiver);
3428 __ mov(receiver, length);
3429
3430 // Loop through the arguments pushing them onto the execution
3431 // stack.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003432 Label invoke, loop;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003433 // length is a small non-negative integer, due to the test above.
3434 __ test(length, Operand(length));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003435 __ j(zero, &invoke, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003436 __ bind(&loop);
3437 __ push(Operand(elements, length, times_pointer_size, 1 * kPointerSize));
3438 __ dec(length);
3439 __ j(not_zero, &loop);
3440
3441 // Invoke the function.
3442 __ bind(&invoke);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00003443 ASSERT(instr->HasPointerMap());
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00003444 LPointerMap* pointers = instr->pointer_map();
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00003445 RecordPosition(pointers->position());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00003446 SafepointGenerator safepoint_generator(
3447 this, pointers, Safepoint::kLazyDeopt);
danno@chromium.org160a7b02011-04-18 15:51:38 +00003448 ParameterCount actual(eax);
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003449 __ InvokeFunction(function, actual, CALL_FUNCTION,
3450 safepoint_generator, CALL_AS_METHOD);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003451}
3452
3453
3454void LCodeGen::DoPushArgument(LPushArgument* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003455 LOperand* argument = instr->value();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003456 EmitPushTaggedOperand(argument);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003457}
3458
3459
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003460void LCodeGen::DoDrop(LDrop* instr) {
3461 __ Drop(instr->count());
3462}
3463
3464
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003465void LCodeGen::DoThisFunction(LThisFunction* instr) {
3466 Register result = ToRegister(instr->result());
yangguo@chromium.org5a11aaf2012-06-20 11:29:00 +00003467 __ mov(result, Operand(ebp, JavaScriptFrameConstants::kFunctionOffset));
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003468}
3469
3470
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003471void LCodeGen::DoContext(LContext* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003472 Register result = ToRegister(instr->result());
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00003473 if (info()->IsOptimizing()) {
3474 __ mov(result, Operand(ebp, StandardFrameConstants::kContextOffset));
3475 } else {
3476 // If there is no frame, the context must be in esi.
3477 ASSERT(result.is(esi));
3478 }
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003479}
3480
3481
3482void LCodeGen::DoOuterContext(LOuterContext* instr) {
3483 Register context = ToRegister(instr->context());
3484 Register result = ToRegister(instr->result());
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00003485 __ mov(result,
3486 Operand(context, Context::SlotOffset(Context::PREVIOUS_INDEX)));
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003487}
3488
3489
yangguo@chromium.org56454712012-02-16 15:33:53 +00003490void LCodeGen::DoDeclareGlobals(LDeclareGlobals* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003491 ASSERT(ToRegister(instr->context()).is(esi));
yangguo@chromium.org56454712012-02-16 15:33:53 +00003492 __ push(esi); // The context is the first argument.
3493 __ push(Immediate(instr->hydrogen()->pairs()));
3494 __ push(Immediate(Smi::FromInt(instr->hydrogen()->flags())));
3495 CallRuntime(Runtime::kDeclareGlobals, 3, instr);
3496}
3497
3498
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003499void LCodeGen::DoGlobalObject(LGlobalObject* instr) {
3500 Register context = ToRegister(instr->context());
3501 Register result = ToRegister(instr->result());
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003502 __ mov(result,
3503 Operand(context, Context::SlotOffset(Context::GLOBAL_OBJECT_INDEX)));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003504}
3505
3506
3507void LCodeGen::DoGlobalReceiver(LGlobalReceiver* instr) {
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003508 Register global = ToRegister(instr->global());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003509 Register result = ToRegister(instr->result());
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003510 __ mov(result, FieldOperand(global, GlobalObject::kGlobalReceiverOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003511}
3512
3513
3514void LCodeGen::CallKnownFunction(Handle<JSFunction> function,
3515 int arity,
danno@chromium.org40cb8782011-05-25 07:58:50 +00003516 LInstruction* instr,
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003517 CallKind call_kind,
3518 EDIState edi_state) {
ulan@chromium.org2efb9002012-01-19 15:36:35 +00003519 bool can_invoke_directly = !function->NeedsArgumentsAdaption() ||
3520 function->shared()->formal_parameter_count() == arity;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003521
3522 LPointerMap* pointers = instr->pointer_map();
3523 RecordPosition(pointers->position());
3524
ulan@chromium.org2efb9002012-01-19 15:36:35 +00003525 if (can_invoke_directly) {
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003526 if (edi_state == EDI_UNINITIALIZED) {
3527 __ LoadHeapObject(edi, function);
3528 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003529
verwaest@chromium.orgb6d052d2012-07-27 08:03:27 +00003530 // Change context.
3531 __ mov(esi, FieldOperand(edi, JSFunction::kContextOffset));
ulan@chromium.org2efb9002012-01-19 15:36:35 +00003532
3533 // Set eax to arguments count if adaption is not needed. Assumes that eax
3534 // is available to write to at this point.
3535 if (!function->NeedsArgumentsAdaption()) {
3536 __ mov(eax, arity);
3537 }
3538
3539 // Invoke function directly.
3540 __ SetCallKind(ecx, call_kind);
3541 if (*function == *info()->closure()) {
3542 __ CallSelf();
3543 } else {
3544 __ call(FieldOperand(edi, JSFunction::kCodeEntryOffset));
3545 }
3546 RecordSafepointWithLazyDeopt(instr, RECORD_SIMPLE_SAFEPOINT);
3547 } else {
3548 // We need to adapt arguments.
3549 SafepointGenerator generator(
3550 this, pointers, Safepoint::kLazyDeopt);
3551 ParameterCount count(arity);
3552 __ InvokeFunction(function, count, CALL_FUNCTION, generator, call_kind);
3553 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003554}
3555
3556
3557void LCodeGen::DoCallConstantFunction(LCallConstantFunction* instr) {
3558 ASSERT(ToRegister(instr->result()).is(eax));
danno@chromium.org40cb8782011-05-25 07:58:50 +00003559 CallKnownFunction(instr->function(),
3560 instr->arity(),
3561 instr,
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003562 CALL_AS_METHOD,
3563 EDI_UNINITIALIZED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003564}
3565
3566
3567void LCodeGen::DoDeferredMathAbsTaggedHeapNumber(LUnaryMathOperation* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003568 Register input_reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003569 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003570 factory()->heap_number_map());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003571 DeoptimizeIf(not_equal, instr->environment());
3572
3573 Label done;
3574 Register tmp = input_reg.is(eax) ? ecx : eax;
3575 Register tmp2 = tmp.is(ecx) ? edx : input_reg.is(ecx) ? edx : ecx;
3576
3577 // Preserve the value of all registers.
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00003578 PushSafepointRegistersScope scope(this);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003579
3580 Label negative;
3581 __ mov(tmp, FieldOperand(input_reg, HeapNumber::kExponentOffset));
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003582 // Check the sign of the argument. If the argument is positive, just
3583 // return it. We do not need to patch the stack since |input| and
3584 // |result| are the same register and |input| will be restored
3585 // unchanged by popping safepoint registers.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003586 __ test(tmp, Immediate(HeapNumber::kSignMask));
3587 __ j(not_zero, &negative);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003588 __ jmp(&done);
3589
3590 __ bind(&negative);
3591
3592 Label allocated, slow;
3593 __ AllocateHeapNumber(tmp, tmp2, no_reg, &slow);
3594 __ jmp(&allocated);
3595
3596 // Slow case: Call the runtime system to do the number allocation.
3597 __ bind(&slow);
3598
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003599 CallRuntimeFromDeferred(Runtime::kAllocateHeapNumber, 0,
3600 instr, instr->context());
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00003601
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003602 // Set the pointer to the new heap number in tmp.
3603 if (!tmp.is(eax)) __ mov(tmp, eax);
3604
3605 // Restore input_reg after call to runtime.
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00003606 __ LoadFromSafepointRegisterSlot(input_reg, input_reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003607
3608 __ bind(&allocated);
3609 __ mov(tmp2, FieldOperand(input_reg, HeapNumber::kExponentOffset));
3610 __ and_(tmp2, ~HeapNumber::kSignMask);
3611 __ mov(FieldOperand(tmp, HeapNumber::kExponentOffset), tmp2);
3612 __ mov(tmp2, FieldOperand(input_reg, HeapNumber::kMantissaOffset));
3613 __ mov(FieldOperand(tmp, HeapNumber::kMantissaOffset), tmp2);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00003614 __ StoreToSafepointRegisterSlot(input_reg, tmp);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003615
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003616 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003617}
3618
3619
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003620void LCodeGen::EmitIntegerMathAbs(LUnaryMathOperation* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003621 Register input_reg = ToRegister(instr->value());
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003622 __ test(input_reg, Operand(input_reg));
3623 Label is_positive;
3624 __ j(not_sign, &is_positive);
3625 __ neg(input_reg);
3626 __ test(input_reg, Operand(input_reg));
3627 DeoptimizeIf(negative, instr->environment());
3628 __ bind(&is_positive);
3629}
3630
3631
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003632void LCodeGen::DoMathAbs(LUnaryMathOperation* instr) {
3633 // Class for deferred case.
3634 class DeferredMathAbsTaggedHeapNumber: public LDeferredCode {
3635 public:
3636 DeferredMathAbsTaggedHeapNumber(LCodeGen* codegen,
3637 LUnaryMathOperation* instr)
3638 : LDeferredCode(codegen), instr_(instr) { }
3639 virtual void Generate() {
3640 codegen()->DoDeferredMathAbsTaggedHeapNumber(instr_);
3641 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00003642 virtual LInstruction* instr() { return instr_; }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003643 private:
3644 LUnaryMathOperation* instr_;
3645 };
3646
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003647 ASSERT(instr->value()->Equals(instr->result()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003648 Representation r = instr->hydrogen()->value()->representation();
3649
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003650 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003651 if (r.IsDouble()) {
3652 XMMRegister scratch = xmm0;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003653 XMMRegister input_reg = ToDoubleRegister(instr->value());
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00003654 __ xorps(scratch, scratch);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003655 __ subsd(scratch, input_reg);
3656 __ pand(input_reg, scratch);
3657 } else if (r.IsInteger32()) {
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003658 EmitIntegerMathAbs(instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003659 } else { // Tagged case.
3660 DeferredMathAbsTaggedHeapNumber* deferred =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00003661 new(zone()) DeferredMathAbsTaggedHeapNumber(this, instr);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003662 Register input_reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003663 // Smi check.
whesse@chromium.org7b260152011-06-20 15:33:18 +00003664 __ JumpIfNotSmi(input_reg, deferred->entry());
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003665 EmitIntegerMathAbs(instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003666 __ bind(deferred->exit());
3667 }
3668}
3669
3670
3671void LCodeGen::DoMathFloor(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003672 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003673 XMMRegister xmm_scratch = xmm0;
3674 Register output_reg = ToRegister(instr->result());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003675 XMMRegister input_reg = ToDoubleRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003676
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003677 if (CpuFeatures::IsSupported(SSE4_1)) {
3678 CpuFeatures::Scope scope(SSE4_1);
3679 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
3680 // Deoptimize on negative zero.
3681 Label non_zero;
3682 __ xorps(xmm_scratch, xmm_scratch); // Zero the register.
3683 __ ucomisd(input_reg, xmm_scratch);
3684 __ j(not_equal, &non_zero, Label::kNear);
3685 __ movmskpd(output_reg, input_reg);
3686 __ test(output_reg, Immediate(1));
3687 DeoptimizeIf(not_zero, instr->environment());
3688 __ bind(&non_zero);
3689 }
3690 __ roundsd(xmm_scratch, input_reg, Assembler::kRoundDown);
3691 __ cvttsd2si(output_reg, Operand(xmm_scratch));
3692 // Overflow is signalled with minint.
3693 __ cmp(output_reg, 0x80000000u);
3694 DeoptimizeIf(equal, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003695 } else {
jkummerow@chromium.org7a6fc812012-06-27 11:12:38 +00003696 Label negative_sign, done;
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003697 // Deoptimize on unordered.
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003698 __ xorps(xmm_scratch, xmm_scratch); // Zero the register.
3699 __ ucomisd(input_reg, xmm_scratch);
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003700 DeoptimizeIf(parity_even, instr->environment());
3701 __ j(below, &negative_sign, Label::kNear);
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003702
3703 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
3704 // Check for negative zero.
3705 Label positive_sign;
3706 __ j(above, &positive_sign, Label::kNear);
3707 __ movmskpd(output_reg, input_reg);
3708 __ test(output_reg, Immediate(1));
3709 DeoptimizeIf(not_zero, instr->environment());
3710 __ Set(output_reg, Immediate(0));
3711 __ jmp(&done, Label::kNear);
3712 __ bind(&positive_sign);
3713 }
3714
3715 // Use truncating instruction (OK because input is positive).
3716 __ cvttsd2si(output_reg, Operand(input_reg));
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003717 // Overflow is signalled with minint.
3718 __ cmp(output_reg, 0x80000000u);
3719 DeoptimizeIf(equal, instr->environment());
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003720 __ jmp(&done, Label::kNear);
3721
jkummerow@chromium.org7a6fc812012-06-27 11:12:38 +00003722 // Non-zero negative reaches here.
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003723 __ bind(&negative_sign);
jkummerow@chromium.org7a6fc812012-06-27 11:12:38 +00003724 // Truncate, then compare and compensate.
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003725 __ cvttsd2si(output_reg, Operand(input_reg));
3726 __ cvtsi2sd(xmm_scratch, output_reg);
3727 __ ucomisd(input_reg, xmm_scratch);
3728 __ j(equal, &done, Label::kNear);
3729 __ sub(output_reg, Immediate(1));
3730 DeoptimizeIf(overflow, instr->environment());
3731
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003732 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003733 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003734}
3735
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003736void LCodeGen::DoMathRound(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003737 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003738 Register output_reg = ToRegister(instr->result());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003739 XMMRegister input_reg = ToDoubleRegister(instr->value());
hpayer@chromium.org8432c912013-02-28 15:55:26 +00003740 XMMRegister xmm_scratch = xmm0;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003741 ExternalReference one_half = ExternalReference::address_of_one_half();
hpayer@chromium.org8432c912013-02-28 15:55:26 +00003742 ExternalReference minus_one_half =
3743 ExternalReference::address_of_minus_one_half();
3744 bool minus_zero_check =
3745 instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero);
3746
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003747 __ movdbl(xmm_scratch, Operand::StaticVariable(one_half));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003748
hpayer@chromium.org8432c912013-02-28 15:55:26 +00003749 if (CpuFeatures::IsSupported(SSE4_1) && !minus_zero_check) {
3750 CpuFeatures::Scope scope(SSE4_1);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003751
hpayer@chromium.org8432c912013-02-28 15:55:26 +00003752 __ addsd(xmm_scratch, input_reg);
3753 __ roundsd(xmm_scratch, xmm_scratch, Assembler::kRoundDown);
3754 __ cvttsd2si(output_reg, Operand(xmm_scratch));
3755 // Overflow is signalled with minint.
3756 __ cmp(output_reg, 0x80000000u);
3757 __ RecordComment("D2I conversion overflow");
3758 DeoptimizeIf(equal, instr->environment());
danno@chromium.org160a7b02011-04-18 15:51:38 +00003759 } else {
hpayer@chromium.org8432c912013-02-28 15:55:26 +00003760 Label done, round_to_zero, below_one_half, do_not_compensate;
3761 __ ucomisd(xmm_scratch, input_reg);
3762 __ j(above, &below_one_half);
3763
3764 // CVTTSD2SI rounds towards zero, since 0.5 <= x, we use floor(0.5 + x).
3765 __ addsd(xmm_scratch, input_reg);
3766 __ cvttsd2si(output_reg, Operand(xmm_scratch));
3767 // Overflow is signalled with minint.
3768 __ cmp(output_reg, 0x80000000u);
3769 __ RecordComment("D2I conversion overflow");
3770 DeoptimizeIf(equal, instr->environment());
3771 __ jmp(&done);
3772
3773 __ bind(&below_one_half);
3774 __ movdbl(xmm_scratch, Operand::StaticVariable(minus_one_half));
3775 __ ucomisd(xmm_scratch, input_reg);
3776 __ j(below_equal, &round_to_zero);
3777
3778 // CVTTSD2SI rounds towards zero, we use ceil(x - (-0.5)) and then
3779 // compare and compensate.
3780 __ subsd(input_reg, xmm_scratch);
3781 __ cvttsd2si(output_reg, Operand(input_reg));
3782 // Catch minint due to overflow, and to prevent overflow when compensating.
3783 __ cmp(output_reg, 0x80000000u);
3784 __ RecordComment("D2I conversion overflow");
3785 DeoptimizeIf(equal, instr->environment());
3786
3787 __ cvtsi2sd(xmm_scratch, output_reg);
3788 __ ucomisd(xmm_scratch, input_reg);
3789 __ j(equal, &done);
3790 __ sub(output_reg, Immediate(1));
3791 // No overflow because we already ruled out minint.
3792 __ jmp(&done);
3793
3794 __ bind(&round_to_zero);
3795 // We return 0 for the input range [+0, 0.5[, or [-0.5, 0.5[ if
3796 // we can ignore the difference between a result of -0 and +0.
3797 if (minus_zero_check) {
3798 // If the sign is positive, we return +0.
3799 __ movmskpd(output_reg, input_reg);
3800 __ test(output_reg, Immediate(1));
3801 __ RecordComment("Minus zero");
3802 DeoptimizeIf(not_zero, instr->environment());
3803 }
3804 __ Set(output_reg, Immediate(0));
3805 __ bind(&done);
danno@chromium.org160a7b02011-04-18 15:51:38 +00003806 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003807}
3808
3809
3810void LCodeGen::DoMathSqrt(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003811 CpuFeatures::Scope scope(SSE2);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003812 XMMRegister input_reg = ToDoubleRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003813 ASSERT(ToDoubleRegister(instr->result()).is(input_reg));
3814 __ sqrtsd(input_reg, input_reg);
3815}
3816
3817
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003818void LCodeGen::DoMathPowHalf(LMathPowHalf* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003819 CpuFeatures::Scope scope(SSE2);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003820 XMMRegister xmm_scratch = xmm0;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003821 XMMRegister input_reg = ToDoubleRegister(instr->value());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003822 Register scratch = ToRegister(instr->temp());
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003823 ASSERT(ToDoubleRegister(instr->result()).is(input_reg));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003824
3825 // Note that according to ECMA-262 15.8.2.13:
3826 // Math.pow(-Infinity, 0.5) == Infinity
3827 // Math.sqrt(-Infinity) == NaN
3828 Label done, sqrt;
3829 // Check base for -Infinity. According to IEEE-754, single-precision
3830 // -Infinity has the highest 9 bits set and the lowest 23 bits cleared.
3831 __ mov(scratch, 0xFF800000);
3832 __ movd(xmm_scratch, scratch);
3833 __ cvtss2sd(xmm_scratch, xmm_scratch);
3834 __ ucomisd(input_reg, xmm_scratch);
3835 // Comparing -Infinity with NaN results in "unordered", which sets the
3836 // zero flag as if both were equal. However, it also sets the carry flag.
3837 __ j(not_equal, &sqrt, Label::kNear);
3838 __ j(carry, &sqrt, Label::kNear);
3839 // If input is -Infinity, return Infinity.
3840 __ xorps(input_reg, input_reg);
3841 __ subsd(input_reg, xmm_scratch);
3842 __ jmp(&done, Label::kNear);
3843
3844 // Square root.
3845 __ bind(&sqrt);
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00003846 __ xorps(xmm_scratch, xmm_scratch);
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00003847 __ addsd(input_reg, xmm_scratch); // Convert -0 to +0.
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003848 __ sqrtsd(input_reg, input_reg);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003849 __ bind(&done);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003850}
3851
3852
3853void LCodeGen::DoPower(LPower* instr) {
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003854 Representation exponent_type = instr->hydrogen()->right()->representation();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003855 // Having marked this as a call, we can use any registers.
3856 // Just make sure that the input/output registers are the expected ones.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003857 ASSERT(!instr->right()->IsDoubleRegister() ||
3858 ToDoubleRegister(instr->right()).is(xmm1));
3859 ASSERT(!instr->right()->IsRegister() ||
3860 ToRegister(instr->right()).is(eax));
3861 ASSERT(ToDoubleRegister(instr->left()).is(xmm2));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003862 ASSERT(ToDoubleRegister(instr->result()).is(xmm3));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003863
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003864 if (exponent_type.IsTagged()) {
3865 Label no_deopt;
3866 __ JumpIfSmi(eax, &no_deopt);
3867 __ CmpObjectType(eax, HEAP_NUMBER_TYPE, ecx);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003868 DeoptimizeIf(not_equal, instr->environment());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003869 __ bind(&no_deopt);
3870 MathPowStub stub(MathPowStub::TAGGED);
3871 __ CallStub(&stub);
3872 } else if (exponent_type.IsInteger32()) {
3873 MathPowStub stub(MathPowStub::INTEGER);
3874 __ CallStub(&stub);
3875 } else {
3876 ASSERT(exponent_type.IsDouble());
3877 MathPowStub stub(MathPowStub::DOUBLE);
3878 __ CallStub(&stub);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003879 }
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003880}
3881
3882
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003883void LCodeGen::DoRandom(LRandom* instr) {
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003884 class DeferredDoRandom: public LDeferredCode {
3885 public:
3886 DeferredDoRandom(LCodeGen* codegen, LRandom* instr)
3887 : LDeferredCode(codegen), instr_(instr) { }
3888 virtual void Generate() { codegen()->DoDeferredRandom(instr_); }
3889 virtual LInstruction* instr() { return instr_; }
3890 private:
3891 LRandom* instr_;
3892 };
3893
mmassi@chromium.org7028c052012-06-13 11:51:58 +00003894 DeferredDoRandom* deferred = new(zone()) DeferredDoRandom(this, instr);
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003895
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003896 CpuFeatures::Scope scope(SSE2);
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003897 // Having marked this instruction as a call we can use any
3898 // registers.
3899 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003900 ASSERT(ToRegister(instr->global_object()).is(eax));
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003901 // Assert that the register size is indeed the size of each seed.
3902 static const int kSeedSize = sizeof(uint32_t);
3903 STATIC_ASSERT(kPointerSize == kSeedSize);
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003904
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003905 __ mov(eax, FieldOperand(eax, GlobalObject::kNativeContextOffset));
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003906 static const int kRandomSeedOffset =
3907 FixedArray::kHeaderSize + Context::RANDOM_SEED_INDEX * kPointerSize;
3908 __ mov(ebx, FieldOperand(eax, kRandomSeedOffset));
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003909 // ebx: FixedArray of the native context's random seeds
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003910
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003911 // Load state[0].
3912 __ mov(ecx, FieldOperand(ebx, ByteArray::kHeaderSize));
3913 // If state[0] == 0, call runtime to initialize seeds.
3914 __ test(ecx, ecx);
3915 __ j(zero, deferred->entry());
3916 // Load state[1].
3917 __ mov(eax, FieldOperand(ebx, ByteArray::kHeaderSize + kSeedSize));
3918 // ecx: state[0]
3919 // eax: state[1]
3920
3921 // state[0] = 18273 * (state[0] & 0xFFFF) + (state[0] >> 16)
3922 __ movzx_w(edx, ecx);
3923 __ imul(edx, edx, 18273);
3924 __ shr(ecx, 16);
3925 __ add(ecx, edx);
3926 // Save state[0].
3927 __ mov(FieldOperand(ebx, ByteArray::kHeaderSize), ecx);
3928
3929 // state[1] = 36969 * (state[1] & 0xFFFF) + (state[1] >> 16)
3930 __ movzx_w(edx, eax);
3931 __ imul(edx, edx, 36969);
3932 __ shr(eax, 16);
3933 __ add(eax, edx);
3934 // Save state[1].
3935 __ mov(FieldOperand(ebx, ByteArray::kHeaderSize + kSeedSize), eax);
3936
3937 // Random bit pattern = (state[0] << 14) + (state[1] & 0x3FFFF)
3938 __ shl(ecx, 14);
3939 __ and_(eax, Immediate(0x3FFFF));
3940 __ add(eax, ecx);
3941
3942 __ bind(deferred->exit());
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003943 // Convert 32 random bits in eax to 0.(32 random bits) in a double
3944 // by computing:
3945 // ( 1.(20 0s)(32 random bits) x 2^20 ) - (1.0 x 2^20)).
3946 __ mov(ebx, Immediate(0x49800000)); // 1.0 x 2^20 as single.
3947 __ movd(xmm2, ebx);
3948 __ movd(xmm1, eax);
3949 __ cvtss2sd(xmm2, xmm2);
3950 __ xorps(xmm1, xmm2);
3951 __ subsd(xmm1, xmm2);
3952}
3953
3954
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003955void LCodeGen::DoDeferredRandom(LRandom* instr) {
3956 __ PrepareCallCFunction(1, ebx);
3957 __ mov(Operand(esp, 0), eax);
3958 __ CallCFunction(ExternalReference::random_uint32_function(isolate()), 1);
3959 // Return value is in eax.
3960}
3961
3962
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003963void LCodeGen::DoMathLog(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003964 CpuFeatures::Scope scope(SSE2);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003965 ASSERT(instr->value()->Equals(instr->result()));
3966 XMMRegister input_reg = ToDoubleRegister(instr->value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003967 Label positive, done, zero;
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00003968 __ xorps(xmm0, xmm0);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003969 __ ucomisd(input_reg, xmm0);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003970 __ j(above, &positive, Label::kNear);
3971 __ j(equal, &zero, Label::kNear);
svenpanne@chromium.org84bcc552011-07-18 09:50:57 +00003972 ExternalReference nan =
3973 ExternalReference::address_of_canonical_non_hole_nan();
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003974 __ movdbl(input_reg, Operand::StaticVariable(nan));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003975 __ jmp(&done, Label::kNear);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003976 __ bind(&zero);
3977 __ push(Immediate(0xFFF00000));
3978 __ push(Immediate(0));
3979 __ movdbl(input_reg, Operand(esp, 0));
3980 __ add(Operand(esp), Immediate(kDoubleSize));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003981 __ jmp(&done, Label::kNear);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003982 __ bind(&positive);
3983 __ fldln2();
3984 __ sub(Operand(esp), Immediate(kDoubleSize));
3985 __ movdbl(Operand(esp, 0), input_reg);
3986 __ fld_d(Operand(esp, 0));
3987 __ fyl2x();
3988 __ fstp_d(Operand(esp, 0));
3989 __ movdbl(input_reg, Operand(esp, 0));
3990 __ add(Operand(esp), Immediate(kDoubleSize));
3991 __ bind(&done);
whesse@chromium.org023421e2010-12-21 12:19:12 +00003992}
3993
3994
danno@chromium.org1f34ad32012-11-26 14:53:56 +00003995void LCodeGen::DoMathExp(LMathExp* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003996 CpuFeatures::Scope scope(SSE2);
danno@chromium.org1f34ad32012-11-26 14:53:56 +00003997 XMMRegister input = ToDoubleRegister(instr->value());
3998 XMMRegister result = ToDoubleRegister(instr->result());
3999 Register temp1 = ToRegister(instr->temp1());
4000 Register temp2 = ToRegister(instr->temp2());
4001
4002 MathExpGenerator::EmitMathExp(masm(), input, result, xmm0, temp1, temp2);
4003}
4004
4005
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004006void LCodeGen::DoMathTan(LUnaryMathOperation* instr) {
4007 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
4008 TranscendentalCacheStub stub(TranscendentalCache::TAN,
4009 TranscendentalCacheStub::UNTAGGED);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00004010 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004011}
4012
4013
whesse@chromium.org023421e2010-12-21 12:19:12 +00004014void LCodeGen::DoMathCos(LUnaryMathOperation* instr) {
4015 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
4016 TranscendentalCacheStub stub(TranscendentalCache::COS,
4017 TranscendentalCacheStub::UNTAGGED);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00004018 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
whesse@chromium.org023421e2010-12-21 12:19:12 +00004019}
4020
4021
4022void LCodeGen::DoMathSin(LUnaryMathOperation* instr) {
4023 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
4024 TranscendentalCacheStub stub(TranscendentalCache::SIN,
4025 TranscendentalCacheStub::UNTAGGED);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00004026 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00004027}
4028
4029
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004030void LCodeGen::DoUnaryMathOperation(LUnaryMathOperation* instr) {
4031 switch (instr->op()) {
4032 case kMathAbs:
4033 DoMathAbs(instr);
4034 break;
4035 case kMathFloor:
4036 DoMathFloor(instr);
4037 break;
4038 case kMathRound:
4039 DoMathRound(instr);
4040 break;
4041 case kMathSqrt:
4042 DoMathSqrt(instr);
4043 break;
whesse@chromium.org023421e2010-12-21 12:19:12 +00004044 case kMathCos:
4045 DoMathCos(instr);
4046 break;
4047 case kMathSin:
4048 DoMathSin(instr);
4049 break;
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004050 case kMathTan:
4051 DoMathTan(instr);
4052 break;
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00004053 case kMathLog:
4054 DoMathLog(instr);
4055 break;
4056
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004057 default:
4058 UNREACHABLE();
4059 }
4060}
4061
4062
danno@chromium.org160a7b02011-04-18 15:51:38 +00004063void LCodeGen::DoInvokeFunction(LInvokeFunction* instr) {
4064 ASSERT(ToRegister(instr->context()).is(esi));
4065 ASSERT(ToRegister(instr->function()).is(edi));
4066 ASSERT(instr->HasPointerMap());
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00004067
4068 if (instr->known_function().is_null()) {
4069 LPointerMap* pointers = instr->pointer_map();
4070 RecordPosition(pointers->position());
4071 SafepointGenerator generator(
4072 this, pointers, Safepoint::kLazyDeopt);
4073 ParameterCount count(instr->arity());
4074 __ InvokeFunction(edi, count, CALL_FUNCTION, generator, CALL_AS_METHOD);
4075 } else {
4076 CallKnownFunction(instr->known_function(),
4077 instr->arity(),
4078 instr,
4079 CALL_AS_METHOD,
4080 EDI_CONTAINS_TARGET);
4081 }
danno@chromium.org160a7b02011-04-18 15:51:38 +00004082}
4083
4084
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004085void LCodeGen::DoCallKeyed(LCallKeyed* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004086 ASSERT(ToRegister(instr->context()).is(esi));
4087 ASSERT(ToRegister(instr->key()).is(ecx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004088 ASSERT(ToRegister(instr->result()).is(eax));
4089
4090 int arity = instr->arity();
lrn@chromium.org34e60782011-09-15 07:25:40 +00004091 Handle<Code> ic =
4092 isolate()->stub_cache()->ComputeKeyedCallInitialize(arity);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004093 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004094}
4095
4096
4097void LCodeGen::DoCallNamed(LCallNamed* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004098 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004099 ASSERT(ToRegister(instr->result()).is(eax));
4100
4101 int arity = instr->arity();
danno@chromium.org40cb8782011-05-25 07:58:50 +00004102 RelocInfo::Mode mode = RelocInfo::CODE_TARGET;
4103 Handle<Code> ic =
lrn@chromium.org34e60782011-09-15 07:25:40 +00004104 isolate()->stub_cache()->ComputeCallInitialize(arity, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004105 __ mov(ecx, instr->name());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004106 CallCode(ic, mode, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004107}
4108
4109
4110void LCodeGen::DoCallFunction(LCallFunction* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004111 ASSERT(ToRegister(instr->context()).is(esi));
danno@chromium.orgc612e022011-11-10 11:38:15 +00004112 ASSERT(ToRegister(instr->function()).is(edi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004113 ASSERT(ToRegister(instr->result()).is(eax));
4114
4115 int arity = instr->arity();
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004116 CallFunctionStub stub(arity, NO_CALL_FUNCTION_FLAGS);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00004117 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004118}
4119
4120
4121void LCodeGen::DoCallGlobal(LCallGlobal* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004122 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004123 ASSERT(ToRegister(instr->result()).is(eax));
4124
4125 int arity = instr->arity();
danno@chromium.org40cb8782011-05-25 07:58:50 +00004126 RelocInfo::Mode mode = RelocInfo::CODE_TARGET_CONTEXT;
4127 Handle<Code> ic =
lrn@chromium.org34e60782011-09-15 07:25:40 +00004128 isolate()->stub_cache()->ComputeCallInitialize(arity, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004129 __ mov(ecx, instr->name());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004130 CallCode(ic, mode, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004131}
4132
4133
4134void LCodeGen::DoCallKnownGlobal(LCallKnownGlobal* instr) {
4135 ASSERT(ToRegister(instr->result()).is(eax));
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00004136 CallKnownFunction(instr->target(),
4137 instr->arity(),
4138 instr,
4139 CALL_AS_FUNCTION,
4140 EDI_UNINITIALIZED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004141}
4142
4143
4144void LCodeGen::DoCallNew(LCallNew* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004145 ASSERT(ToRegister(instr->context()).is(esi));
4146 ASSERT(ToRegister(instr->constructor()).is(edi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004147 ASSERT(ToRegister(instr->result()).is(eax));
4148
danno@chromium.orgfa458e42012-02-01 10:48:36 +00004149 CallConstructStub stub(NO_CALL_FUNCTION_FLAGS);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004150 __ Set(eax, Immediate(instr->arity()));
hpayer@chromium.org8432c912013-02-28 15:55:26 +00004151 CallCode(stub.GetCode(isolate()), RelocInfo::CONSTRUCT_CALL, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004152}
4153
4154
4155void LCodeGen::DoCallRuntime(LCallRuntime* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004156 CallRuntime(instr->function(), instr->arity(), instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004157}
4158
4159
4160void LCodeGen::DoStoreNamedField(LStoreNamedField* instr) {
4161 Register object = ToRegister(instr->object());
4162 Register value = ToRegister(instr->value());
4163 int offset = instr->offset();
4164
4165 if (!instr->transition().is_null()) {
verwaest@chromium.org37141392012-05-31 13:27:02 +00004166 if (!instr->hydrogen()->NeedsWriteBarrierForMap()) {
4167 __ mov(FieldOperand(object, HeapObject::kMapOffset), instr->transition());
4168 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004169 Register temp = ToRegister(instr->temp());
4170 Register temp_map = ToRegister(instr->temp_map());
verwaest@chromium.org37141392012-05-31 13:27:02 +00004171 __ mov(temp_map, instr->transition());
4172 __ mov(FieldOperand(object, HeapObject::kMapOffset), temp_map);
4173 // Update the write barrier for the map field.
4174 __ RecordWriteField(object,
4175 HeapObject::kMapOffset,
4176 temp_map,
4177 temp,
4178 kSaveFPRegs,
4179 OMIT_REMEMBERED_SET,
4180 OMIT_SMI_CHECK);
4181 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004182 }
4183
4184 // Do the store.
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004185 HType type = instr->hydrogen()->value()->type();
4186 SmiCheck check_needed =
4187 type.IsHeapObject() ? OMIT_SMI_CHECK : INLINE_SMI_CHECK;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004188 if (instr->is_in_object()) {
4189 __ mov(FieldOperand(object, offset), value);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004190 if (instr->hydrogen()->NeedsWriteBarrier()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004191 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004192 // Update the write barrier for the object for in-object properties.
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004193 __ RecordWriteField(object,
4194 offset,
4195 value,
4196 temp,
4197 kSaveFPRegs,
4198 EMIT_REMEMBERED_SET,
4199 check_needed);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004200 }
4201 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004202 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004203 __ mov(temp, FieldOperand(object, JSObject::kPropertiesOffset));
4204 __ mov(FieldOperand(temp, offset), value);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004205 if (instr->hydrogen()->NeedsWriteBarrier()) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004206 // Update the write barrier for the properties array.
4207 // object is used as a scratch register.
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004208 __ RecordWriteField(temp,
4209 offset,
4210 value,
4211 object,
4212 kSaveFPRegs,
4213 EMIT_REMEMBERED_SET,
4214 check_needed);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004215 }
4216 }
4217}
4218
4219
4220void LCodeGen::DoStoreNamedGeneric(LStoreNamedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004221 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004222 ASSERT(ToRegister(instr->object()).is(edx));
4223 ASSERT(ToRegister(instr->value()).is(eax));
4224
4225 __ mov(ecx, instr->name());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004226 Handle<Code> ic = (instr->strict_mode_flag() == kStrictMode)
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004227 ? isolate()->builtins()->StoreIC_Initialize_Strict()
4228 : isolate()->builtins()->StoreIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004229 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004230}
4231
4232
4233void LCodeGen::DoBoundsCheck(LBoundsCheck* instr) {
hpayer@chromium.org7c3372b2013-02-13 17:26:04 +00004234 if (instr->hydrogen()->skip_check()) return;
4235
danno@chromium.orgb6451162011-08-17 14:33:23 +00004236 if (instr->index()->IsConstantOperand()) {
jkummerow@chromium.org000f7fb2012-08-01 11:14:42 +00004237 int constant_index =
4238 ToInteger32(LConstantOperand::cast(instr->index()));
4239 if (instr->hydrogen()->length()->representation().IsTagged()) {
4240 __ cmp(ToOperand(instr->length()),
4241 Immediate(Smi::FromInt(constant_index)));
4242 } else {
4243 __ cmp(ToOperand(instr->length()), Immediate(constant_index));
4244 }
danno@chromium.orgb6451162011-08-17 14:33:23 +00004245 DeoptimizeIf(below_equal, instr->environment());
4246 } else {
4247 __ cmp(ToRegister(instr->index()), ToOperand(instr->length()));
4248 DeoptimizeIf(above_equal, instr->environment());
4249 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004250}
4251
4252
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004253void LCodeGen::DoStoreKeyedExternalArray(LStoreKeyed* instr) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004254 ElementsKind elements_kind = instr->elements_kind();
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00004255 LOperand* key = instr->key();
4256 if (!key->IsConstantOperand() &&
4257 ExternalArrayOpRequiresTemp(instr->hydrogen()->key()->representation(),
4258 elements_kind)) {
4259 __ SmiUntag(ToRegister(key));
yangguo@chromium.org304cc332012-07-24 07:59:48 +00004260 }
4261 Operand operand(BuildFastArrayOperand(
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004262 instr->elements(),
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00004263 key,
yangguo@chromium.org304cc332012-07-24 07:59:48 +00004264 instr->hydrogen()->key()->representation(),
4265 elements_kind,
4266 0,
4267 instr->additional_index()));
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004268 if (elements_kind == EXTERNAL_FLOAT_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004269 CpuFeatures::Scope scope(SSE2);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004270 __ cvtsd2ss(xmm0, ToDoubleRegister(instr->value()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004271 __ movss(operand, xmm0);
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004272 } else if (elements_kind == EXTERNAL_DOUBLE_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004273 CpuFeatures::Scope scope(SSE2);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004274 __ movdbl(operand, ToDoubleRegister(instr->value()));
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004275 } else {
4276 Register value = ToRegister(instr->value());
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004277 switch (elements_kind) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004278 case EXTERNAL_PIXEL_ELEMENTS:
4279 case EXTERNAL_UNSIGNED_BYTE_ELEMENTS:
4280 case EXTERNAL_BYTE_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004281 __ mov_b(operand, value);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004282 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004283 case EXTERNAL_SHORT_ELEMENTS:
4284 case EXTERNAL_UNSIGNED_SHORT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004285 __ mov_w(operand, value);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004286 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004287 case EXTERNAL_INT_ELEMENTS:
4288 case EXTERNAL_UNSIGNED_INT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004289 __ mov(operand, value);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004290 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004291 case EXTERNAL_FLOAT_ELEMENTS:
4292 case EXTERNAL_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004293 case FAST_SMI_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004294 case FAST_ELEMENTS:
4295 case FAST_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004296 case FAST_HOLEY_SMI_ELEMENTS:
4297 case FAST_HOLEY_ELEMENTS:
4298 case FAST_HOLEY_DOUBLE_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004299 case DICTIONARY_ELEMENTS:
4300 case NON_STRICT_ARGUMENTS_ELEMENTS:
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004301 UNREACHABLE();
4302 break;
4303 }
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004304 }
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004305}
4306
4307
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004308void LCodeGen::DoStoreKeyedFixedDoubleArray(LStoreKeyed* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004309 CpuFeatures::Scope scope(SSE2);
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004310 XMMRegister value = ToDoubleRegister(instr->value());
4311
4312 if (instr->NeedsCanonicalization()) {
4313 Label have_value;
4314
4315 __ ucomisd(value, value);
4316 __ j(parity_odd, &have_value); // NaN.
4317
4318 ExternalReference canonical_nan_reference =
4319 ExternalReference::address_of_canonical_non_hole_nan();
4320 __ movdbl(value, Operand::StaticVariable(canonical_nan_reference));
4321 __ bind(&have_value);
4322 }
4323
4324 Operand double_store_operand = BuildFastArrayOperand(
4325 instr->elements(),
4326 instr->key(),
4327 instr->hydrogen()->key()->representation(),
4328 FAST_DOUBLE_ELEMENTS,
4329 FixedDoubleArray::kHeaderSize - kHeapObjectTag,
4330 instr->additional_index());
4331 __ movdbl(double_store_operand, value);
4332}
4333
4334
4335void LCodeGen::DoStoreKeyedFixedArray(LStoreKeyed* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004336 Register value = ToRegister(instr->value());
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004337 Register elements = ToRegister(instr->elements());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004338 Register key = instr->key()->IsRegister() ? ToRegister(instr->key()) : no_reg;
4339
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004340 Operand operand = BuildFastArrayOperand(
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004341 instr->elements(),
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004342 instr->key(),
yangguo@chromium.org304cc332012-07-24 07:59:48 +00004343 instr->hydrogen()->key()->representation(),
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004344 FAST_ELEMENTS,
4345 FixedArray::kHeaderSize - kHeapObjectTag,
4346 instr->additional_index());
4347 __ mov(operand, value);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004348
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004349 if (instr->hydrogen()->NeedsWriteBarrier()) {
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004350 ASSERT(!instr->key()->IsConstantOperand());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004351 HType type = instr->hydrogen()->value()->type();
4352 SmiCheck check_needed =
4353 type.IsHeapObject() ? OMIT_SMI_CHECK : INLINE_SMI_CHECK;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004354 // Compute address of modified element and store it into key register.
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004355 __ lea(key, operand);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004356 __ RecordWrite(elements,
4357 key,
4358 value,
4359 kSaveFPRegs,
4360 EMIT_REMEMBERED_SET,
4361 check_needed);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004362 }
4363}
4364
4365
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004366void LCodeGen::DoStoreKeyed(LStoreKeyed* instr) {
4367 // By cases...external, fast-double, fast
4368 if (instr->is_external()) {
4369 DoStoreKeyedExternalArray(instr);
4370 } else if (instr->hydrogen()->value()->representation().IsDouble()) {
4371 DoStoreKeyedFixedDoubleArray(instr);
4372 } else {
4373 DoStoreKeyedFixedArray(instr);
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00004374 }
rossberg@chromium.org717967f2011-07-20 13:44:42 +00004375}
4376
4377
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004378void LCodeGen::DoStoreKeyedGeneric(LStoreKeyedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004379 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004380 ASSERT(ToRegister(instr->object()).is(edx));
4381 ASSERT(ToRegister(instr->key()).is(ecx));
4382 ASSERT(ToRegister(instr->value()).is(eax));
4383
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004384 Handle<Code> ic = (instr->strict_mode_flag() == kStrictMode)
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004385 ? isolate()->builtins()->KeyedStoreIC_Initialize_Strict()
4386 : isolate()->builtins()->KeyedStoreIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004387 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004388}
4389
4390
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004391void LCodeGen::DoTrapAllocationMemento(LTrapAllocationMemento* instr) {
4392 Register object = ToRegister(instr->object());
4393 Register temp = ToRegister(instr->temp());
4394 __ TestJSArrayForAllocationSiteInfo(object, temp);
4395 DeoptimizeIf(equal, instr->environment());
4396}
4397
4398
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004399void LCodeGen::DoTransitionElementsKind(LTransitionElementsKind* instr) {
4400 Register object_reg = ToRegister(instr->object());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004401
4402 Handle<Map> from_map = instr->original_map();
4403 Handle<Map> to_map = instr->transitioned_map();
yangguo@chromium.org003650e2013-01-24 16:31:08 +00004404 ElementsKind from_kind = instr->from_kind();
4405 ElementsKind to_kind = instr->to_kind();
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004406
4407 Label not_applicable;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004408 bool is_simple_map_transition =
4409 IsSimpleMapChangeTransition(from_kind, to_kind);
4410 Label::Distance branch_distance =
4411 is_simple_map_transition ? Label::kNear : Label::kFar;
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004412 __ cmp(FieldOperand(object_reg, HeapObject::kMapOffset), from_map);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004413 __ j(not_equal, &not_applicable, branch_distance);
4414 if (is_simple_map_transition) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004415 Register new_map_reg = ToRegister(instr->new_map_temp());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004416 Handle<Map> map = instr->hydrogen()->transitioned_map();
4417 __ mov(FieldOperand(object_reg, HeapObject::kMapOffset),
4418 Immediate(map));
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004419 // Write barrier.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004420 ASSERT_NE(instr->temp(), NULL);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004421 __ RecordWriteForMap(object_reg, to_map, new_map_reg,
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004422 ToRegister(instr->temp()),
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004423 kDontSaveFPRegs);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004424 } else if (FLAG_compiled_transitions) {
4425 PushSafepointRegistersScope scope(this);
4426 if (!object_reg.is(eax)) {
4427 __ push(object_reg);
4428 }
4429 LoadContextFromDeferred(instr->context());
4430 if (!object_reg.is(eax)) {
4431 __ pop(eax);
4432 }
4433 __ mov(ebx, to_map);
4434 TransitionElementsKindStub stub(from_kind, to_kind);
4435 __ CallStub(&stub);
4436 RecordSafepointWithRegisters(
4437 instr->pointer_map(), 0, Safepoint::kNoLazyDeopt);
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004438 } else if (IsFastSmiElementsKind(from_kind) &&
4439 IsFastDoubleElementsKind(to_kind)) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004440 Register new_map_reg = ToRegister(instr->new_map_temp());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004441 __ mov(new_map_reg, to_map);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004442 Register fixed_object_reg = ToRegister(instr->temp());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004443 ASSERT(fixed_object_reg.is(edx));
4444 ASSERT(new_map_reg.is(ebx));
4445 __ mov(fixed_object_reg, object_reg);
4446 CallCode(isolate()->builtins()->TransitionElementsSmiToDouble(),
4447 RelocInfo::CODE_TARGET, instr);
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004448 } else if (IsFastDoubleElementsKind(from_kind) &&
4449 IsFastObjectElementsKind(to_kind)) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004450 Register new_map_reg = ToRegister(instr->new_map_temp());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004451 __ mov(new_map_reg, to_map);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004452 Register fixed_object_reg = ToRegister(instr->temp());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004453 ASSERT(fixed_object_reg.is(edx));
4454 ASSERT(new_map_reg.is(ebx));
4455 __ mov(fixed_object_reg, object_reg);
4456 CallCode(isolate()->builtins()->TransitionElementsDoubleToObject(),
4457 RelocInfo::CODE_TARGET, instr);
4458 } else {
4459 UNREACHABLE();
4460 }
4461 __ bind(&not_applicable);
4462}
4463
4464
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004465void LCodeGen::DoStringCharCodeAt(LStringCharCodeAt* instr) {
4466 class DeferredStringCharCodeAt: public LDeferredCode {
4467 public:
4468 DeferredStringCharCodeAt(LCodeGen* codegen, LStringCharCodeAt* instr)
4469 : LDeferredCode(codegen), instr_(instr) { }
4470 virtual void Generate() { codegen()->DoDeferredStringCharCodeAt(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004471 virtual LInstruction* instr() { return instr_; }
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004472 private:
4473 LStringCharCodeAt* instr_;
4474 };
4475
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004476 DeferredStringCharCodeAt* deferred =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004477 new(zone()) DeferredStringCharCodeAt(this, instr);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004478
erikcorry0ad885c2011-11-21 13:51:57 +00004479 StringCharLoadGenerator::Generate(masm(),
4480 factory(),
4481 ToRegister(instr->string()),
4482 ToRegister(instr->index()),
4483 ToRegister(instr->result()),
4484 deferred->entry());
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004485 __ bind(deferred->exit());
4486}
4487
4488
4489void LCodeGen::DoDeferredStringCharCodeAt(LStringCharCodeAt* instr) {
4490 Register string = ToRegister(instr->string());
4491 Register result = ToRegister(instr->result());
4492
4493 // TODO(3095996): Get rid of this. For now, we need to make the
4494 // result register contain a valid pointer because it is already
4495 // contained in the register pointer map.
4496 __ Set(result, Immediate(0));
4497
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004498 PushSafepointRegistersScope scope(this);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004499 __ push(string);
4500 // Push the index as a smi. This is safe because of the checks in
4501 // DoStringCharCodeAt above.
4502 STATIC_ASSERT(String::kMaxLength <= Smi::kMaxValue);
4503 if (instr->index()->IsConstantOperand()) {
4504 int const_index = ToInteger32(LConstantOperand::cast(instr->index()));
4505 __ push(Immediate(Smi::FromInt(const_index)));
4506 } else {
4507 Register index = ToRegister(instr->index());
4508 __ SmiTag(index);
4509 __ push(index);
4510 }
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004511 CallRuntimeFromDeferred(Runtime::kStringCharCodeAt, 2,
4512 instr, instr->context());
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00004513 __ AssertSmi(eax);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004514 __ SmiUntag(eax);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004515 __ StoreToSafepointRegisterSlot(result, eax);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004516}
4517
4518
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004519void LCodeGen::DoStringCharFromCode(LStringCharFromCode* instr) {
4520 class DeferredStringCharFromCode: public LDeferredCode {
4521 public:
4522 DeferredStringCharFromCode(LCodeGen* codegen, LStringCharFromCode* instr)
4523 : LDeferredCode(codegen), instr_(instr) { }
4524 virtual void Generate() { codegen()->DoDeferredStringCharFromCode(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004525 virtual LInstruction* instr() { return instr_; }
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004526 private:
4527 LStringCharFromCode* instr_;
4528 };
4529
4530 DeferredStringCharFromCode* deferred =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004531 new(zone()) DeferredStringCharFromCode(this, instr);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004532
4533 ASSERT(instr->hydrogen()->value()->representation().IsInteger32());
4534 Register char_code = ToRegister(instr->char_code());
4535 Register result = ToRegister(instr->result());
4536 ASSERT(!char_code.is(result));
4537
jkummerow@chromium.org59297c72013-01-09 16:32:23 +00004538 __ cmp(char_code, String::kMaxOneByteCharCode);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004539 __ j(above, deferred->entry());
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004540 __ Set(result, Immediate(factory()->single_character_string_cache()));
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004541 __ mov(result, FieldOperand(result,
4542 char_code, times_pointer_size,
4543 FixedArray::kHeaderSize));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004544 __ cmp(result, factory()->undefined_value());
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004545 __ j(equal, deferred->entry());
4546 __ bind(deferred->exit());
4547}
4548
4549
4550void LCodeGen::DoDeferredStringCharFromCode(LStringCharFromCode* instr) {
4551 Register char_code = ToRegister(instr->char_code());
4552 Register result = ToRegister(instr->result());
4553
4554 // TODO(3095996): Get rid of this. For now, we need to make the
4555 // result register contain a valid pointer because it is already
4556 // contained in the register pointer map.
4557 __ Set(result, Immediate(0));
4558
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004559 PushSafepointRegistersScope scope(this);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004560 __ SmiTag(char_code);
4561 __ push(char_code);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004562 CallRuntimeFromDeferred(Runtime::kCharFromCode, 1, instr, instr->context());
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004563 __ StoreToSafepointRegisterSlot(result, eax);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004564}
4565
4566
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004567void LCodeGen::DoStringLength(LStringLength* instr) {
4568 Register string = ToRegister(instr->string());
4569 Register result = ToRegister(instr->result());
4570 __ mov(result, FieldOperand(string, String::kLengthOffset));
4571}
4572
4573
danno@chromium.org160a7b02011-04-18 15:51:38 +00004574void LCodeGen::DoStringAdd(LStringAdd* instr) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00004575 EmitPushTaggedOperand(instr->left());
4576 EmitPushTaggedOperand(instr->right());
danno@chromium.org160a7b02011-04-18 15:51:38 +00004577 StringAddStub stub(NO_STRING_CHECK_IN_STUB);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00004578 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
danno@chromium.org160a7b02011-04-18 15:51:38 +00004579}
4580
4581
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004582void LCodeGen::DoInteger32ToDouble(LInteger32ToDouble* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004583 if (CpuFeatures::IsSupported(SSE2)) {
4584 CpuFeatures::Scope scope(SSE2);
4585 LOperand* input = instr->value();
4586 ASSERT(input->IsRegister() || input->IsStackSlot());
4587 LOperand* output = instr->result();
4588 ASSERT(output->IsDoubleRegister());
4589 __ cvtsi2sd(ToDoubleRegister(output), ToOperand(input));
4590 } else {
4591 UNREACHABLE();
4592 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004593}
4594
4595
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004596void LCodeGen::DoUint32ToDouble(LUint32ToDouble* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004597 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004598 LOperand* input = instr->value();
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004599 LOperand* output = instr->result();
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004600 LOperand* temp = instr->temp();
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004601
4602 __ LoadUint32(ToDoubleRegister(output),
4603 ToRegister(input),
4604 ToDoubleRegister(temp));
4605}
4606
4607
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004608void LCodeGen::DoNumberTagI(LNumberTagI* instr) {
4609 class DeferredNumberTagI: public LDeferredCode {
4610 public:
4611 DeferredNumberTagI(LCodeGen* codegen, LNumberTagI* instr)
4612 : LDeferredCode(codegen), instr_(instr) { }
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004613 virtual void Generate() {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004614 codegen()->DoDeferredNumberTagI(instr_, instr_->value(), SIGNED_INT32);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004615 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004616 virtual LInstruction* instr() { return instr_; }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004617 private:
4618 LNumberTagI* instr_;
4619 };
4620
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004621 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004622 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4623 Register reg = ToRegister(input);
4624
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004625 DeferredNumberTagI* deferred = new(zone()) DeferredNumberTagI(this, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004626 __ SmiTag(reg);
4627 __ j(overflow, deferred->entry());
4628 __ bind(deferred->exit());
4629}
4630
4631
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004632void LCodeGen::DoNumberTagU(LNumberTagU* instr) {
4633 class DeferredNumberTagU: public LDeferredCode {
4634 public:
4635 DeferredNumberTagU(LCodeGen* codegen, LNumberTagU* instr)
4636 : LDeferredCode(codegen), instr_(instr) { }
4637 virtual void Generate() {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004638 codegen()->DoDeferredNumberTagI(instr_, instr_->value(), UNSIGNED_INT32);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004639 }
4640 virtual LInstruction* instr() { return instr_; }
4641 private:
4642 LNumberTagU* instr_;
4643 };
4644
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004645 LOperand* input = instr->value();
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004646 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4647 Register reg = ToRegister(input);
4648
4649 DeferredNumberTagU* deferred = new(zone()) DeferredNumberTagU(this, instr);
4650 __ cmp(reg, Immediate(Smi::kMaxValue));
4651 __ j(above, deferred->entry());
4652 __ SmiTag(reg);
4653 __ bind(deferred->exit());
4654}
4655
4656
4657void LCodeGen::DoDeferredNumberTagI(LInstruction* instr,
4658 LOperand* value,
4659 IntegerSignedness signedness) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004660 Label slow;
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004661 Register reg = ToRegister(value);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004662 Register tmp = reg.is(eax) ? ecx : eax;
4663
4664 // Preserve the value of all registers.
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004665 PushSafepointRegistersScope scope(this);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004666
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004667 Label done;
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004668
4669 if (signedness == SIGNED_INT32) {
4670 // There was overflow, so bits 30 and 31 of the original integer
4671 // disagree. Try to allocate a heap number in new space and store
4672 // the value in there. If that fails, call the runtime system.
4673 __ SmiUntag(reg);
4674 __ xor_(reg, 0x80000000);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004675 if (CpuFeatures::IsSupported(SSE2)) {
4676 CpuFeatures::Scope feature_scope(SSE2);
4677 __ cvtsi2sd(xmm0, Operand(reg));
4678 } else {
4679 __ push(reg);
4680 __ fild_s(Operand(esp, 0));
4681 __ pop(reg);
4682 }
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004683 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004684 if (CpuFeatures::IsSupported(SSE2)) {
4685 CpuFeatures::Scope feature_scope(SSE2);
4686 __ LoadUint32(xmm0, reg, xmm1);
4687 } else {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +00004688 // There's no fild variant for unsigned values, so zero-extend to a 64-bit
4689 // int manually.
4690 __ push(Immediate(0));
4691 __ push(reg);
4692 __ fild_d(Operand(esp, 0));
4693 __ pop(reg);
4694 __ pop(reg);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004695 }
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004696 }
4697
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004698 if (FLAG_inline_new) {
4699 __ AllocateHeapNumber(reg, tmp, no_reg, &slow);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004700 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004701 }
4702
4703 // Slow case: Call the runtime system to do the number allocation.
4704 __ bind(&slow);
4705
4706 // TODO(3095996): Put a valid pointer value in the stack slot where the result
4707 // register is stored, as this register is in the pointer map, but contains an
4708 // integer value.
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004709 __ StoreToSafepointRegisterSlot(reg, Immediate(0));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004710 // NumberTagI and NumberTagD use the context from the frame, rather than
4711 // the environment's HContext or HInlinedContext value.
4712 // They only call Runtime::kAllocateHeapNumber.
4713 // The corresponding HChange instructions are added in a phase that does
4714 // not have easy access to the local context.
4715 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
4716 __ CallRuntimeSaveDoubles(Runtime::kAllocateHeapNumber);
4717 RecordSafepointWithRegisters(
ricow@chromium.org27bf2882011-11-17 08:34:43 +00004718 instr->pointer_map(), 0, Safepoint::kNoLazyDeopt);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004719 if (!reg.is(eax)) __ mov(reg, eax);
4720
4721 // Done. Put the value in xmm0 into the value of the allocated heap
4722 // number.
4723 __ bind(&done);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004724 if (CpuFeatures::IsSupported(SSE2)) {
4725 CpuFeatures::Scope feature_scope(SSE2);
4726 __ movdbl(FieldOperand(reg, HeapNumber::kValueOffset), xmm0);
4727 } else {
4728 __ fstp_d(FieldOperand(reg, HeapNumber::kValueOffset));
4729 }
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004730 __ StoreToSafepointRegisterSlot(reg, reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004731}
4732
4733
4734void LCodeGen::DoNumberTagD(LNumberTagD* instr) {
4735 class DeferredNumberTagD: public LDeferredCode {
4736 public:
4737 DeferredNumberTagD(LCodeGen* codegen, LNumberTagD* instr)
4738 : LDeferredCode(codegen), instr_(instr) { }
4739 virtual void Generate() { codegen()->DoDeferredNumberTagD(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004740 virtual LInstruction* instr() { return instr_; }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004741 private:
4742 LNumberTagD* instr_;
4743 };
4744
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004745 Register reg = ToRegister(instr->result());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004746
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004747 bool convert_hole = false;
4748 HValue* change_input = instr->hydrogen()->value();
4749 if (change_input->IsLoadKeyed()) {
4750 HLoadKeyed* load = HLoadKeyed::cast(change_input);
4751 convert_hole = load->UsesMustHandleHole();
4752 }
4753
4754 Label no_special_nan_handling;
4755 Label done;
4756 if (convert_hole) {
4757 bool use_sse2 = CpuFeatures::IsSupported(SSE2);
4758 if (use_sse2) {
4759 CpuFeatures::Scope scope(SSE2);
4760 XMMRegister input_reg = ToDoubleRegister(instr->value());
4761 __ ucomisd(input_reg, input_reg);
4762 } else {
4763 if (!IsX87TopOfStack(instr->value())) {
4764 __ fld_d(ToOperand(instr->value()));
4765 }
4766 __ fld(0);
4767 __ fld(0);
4768 __ FCmp();
4769 }
4770
4771 __ j(parity_odd, &no_special_nan_handling);
4772 __ sub(esp, Immediate(kDoubleSize));
4773 if (use_sse2) {
4774 CpuFeatures::Scope scope(SSE2);
4775 XMMRegister input_reg = ToDoubleRegister(instr->value());
4776 __ movdbl(MemOperand(esp, 0), input_reg);
4777 } else {
4778 __ fld(0);
4779 __ fstp_d(MemOperand(esp, 0));
4780 }
4781 __ cmp(MemOperand(esp, sizeof(kHoleNanLower32)),
4782 Immediate(kHoleNanUpper32));
4783 Label canonicalize;
4784 __ j(not_equal, &canonicalize);
4785 __ add(esp, Immediate(kDoubleSize));
4786 __ mov(reg, factory()->the_hole_value());
4787 __ jmp(&done);
4788 __ bind(&canonicalize);
4789 __ add(esp, Immediate(kDoubleSize));
4790 ExternalReference nan =
4791 ExternalReference::address_of_canonical_non_hole_nan();
4792 if (use_sse2) {
4793 CpuFeatures::Scope scope(SSE2);
4794 XMMRegister input_reg = ToDoubleRegister(instr->value());
4795 __ movdbl(input_reg, Operand::StaticVariable(nan));
4796 } else {
4797 __ fstp(0);
4798 __ fld_d(Operand::StaticVariable(nan));
4799 }
4800 }
4801
4802 __ bind(&no_special_nan_handling);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004803 DeferredNumberTagD* deferred = new(zone()) DeferredNumberTagD(this, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004804 if (FLAG_inline_new) {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +00004805 Register tmp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004806 __ AllocateHeapNumber(reg, tmp, no_reg, deferred->entry());
4807 } else {
4808 __ jmp(deferred->entry());
4809 }
4810 __ bind(deferred->exit());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004811 if (CpuFeatures::IsSupported(SSE2)) {
4812 CpuFeatures::Scope scope(SSE2);
4813 XMMRegister input_reg = ToDoubleRegister(instr->value());
4814 __ movdbl(FieldOperand(reg, HeapNumber::kValueOffset), input_reg);
4815 } else {
4816 if (!IsX87TopOfStack(instr->value())) {
4817 __ fld_d(ToOperand(instr->value()));
4818 }
4819 __ fstp_d(FieldOperand(reg, HeapNumber::kValueOffset));
4820 }
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004821 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004822}
4823
4824
4825void LCodeGen::DoDeferredNumberTagD(LNumberTagD* instr) {
4826 // TODO(3095996): Get rid of this. For now, we need to make the
4827 // result register contain a valid pointer because it is already
4828 // contained in the register pointer map.
4829 Register reg = ToRegister(instr->result());
4830 __ Set(reg, Immediate(0));
4831
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004832 PushSafepointRegistersScope scope(this);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004833 // NumberTagI and NumberTagD use the context from the frame, rather than
4834 // the environment's HContext or HInlinedContext value.
4835 // They only call Runtime::kAllocateHeapNumber.
4836 // The corresponding HChange instructions are added in a phase that does
4837 // not have easy access to the local context.
4838 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
4839 __ CallRuntimeSaveDoubles(Runtime::kAllocateHeapNumber);
ricow@chromium.org27bf2882011-11-17 08:34:43 +00004840 RecordSafepointWithRegisters(
4841 instr->pointer_map(), 0, Safepoint::kNoLazyDeopt);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004842 __ StoreToSafepointRegisterSlot(reg, eax);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004843}
4844
4845
4846void LCodeGen::DoSmiTag(LSmiTag* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004847 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004848 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4849 ASSERT(!instr->hydrogen_value()->CheckFlag(HValue::kCanOverflow));
4850 __ SmiTag(ToRegister(input));
4851}
4852
4853
4854void LCodeGen::DoSmiUntag(LSmiUntag* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004855 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004856 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4857 if (instr->needs_check()) {
4858 __ test(ToRegister(input), Immediate(kSmiTagMask));
4859 DeoptimizeIf(not_zero, instr->environment());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004860 } else {
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00004861 __ AssertSmi(ToRegister(input));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004862 }
4863 __ SmiUntag(ToRegister(input));
4864}
4865
4866
4867void LCodeGen::EmitNumberUntagD(Register input_reg,
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00004868 Register temp_reg,
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004869 XMMRegister result_reg,
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004870 bool deoptimize_on_undefined,
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00004871 bool deoptimize_on_minus_zero,
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004872 LEnvironment* env,
4873 NumberUntagDMode mode) {
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004874 Label load_smi, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004875
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004876 if (mode == NUMBER_CANDIDATE_IS_ANY_TAGGED) {
4877 // Smi check.
4878 __ JumpIfSmi(input_reg, &load_smi, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004879
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004880 // Heap number map check.
4881 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
4882 factory()->heap_number_map());
4883 if (deoptimize_on_undefined) {
4884 DeoptimizeIf(not_equal, env);
4885 } else {
4886 Label heap_number;
4887 __ j(equal, &heap_number, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004888
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004889 __ cmp(input_reg, factory()->undefined_value());
4890 DeoptimizeIf(not_equal, env);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004891
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004892 // Convert undefined to NaN.
4893 ExternalReference nan =
4894 ExternalReference::address_of_canonical_non_hole_nan();
4895 __ movdbl(result_reg, Operand::StaticVariable(nan));
4896 __ jmp(&done, Label::kNear);
4897
4898 __ bind(&heap_number);
4899 }
4900 // Heap number to XMM conversion.
4901 __ movdbl(result_reg, FieldOperand(input_reg, HeapNumber::kValueOffset));
4902 if (deoptimize_on_minus_zero) {
4903 XMMRegister xmm_scratch = xmm0;
4904 __ xorps(xmm_scratch, xmm_scratch);
4905 __ ucomisd(result_reg, xmm_scratch);
4906 __ j(not_zero, &done, Label::kNear);
4907 __ movmskpd(temp_reg, result_reg);
4908 __ test_b(temp_reg, 1);
4909 DeoptimizeIf(not_zero, env);
4910 }
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004911 __ jmp(&done, Label::kNear);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004912 } else if (mode == NUMBER_CANDIDATE_IS_SMI_OR_HOLE) {
4913 __ test(input_reg, Immediate(kSmiTagMask));
4914 DeoptimizeIf(not_equal, env);
4915 } else if (mode == NUMBER_CANDIDATE_IS_SMI_CONVERT_HOLE) {
4916 __ test(input_reg, Immediate(kSmiTagMask));
4917 __ j(zero, &load_smi);
4918 ExternalReference hole_nan_reference =
4919 ExternalReference::address_of_the_hole_nan();
4920 __ movdbl(result_reg, Operand::StaticVariable(hole_nan_reference));
4921 __ jmp(&done, Label::kNear);
4922 } else {
4923 ASSERT(mode == NUMBER_CANDIDATE_IS_SMI);
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004924 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004925
4926 // Smi to XMM conversion
4927 __ bind(&load_smi);
4928 __ SmiUntag(input_reg); // Untag smi before converting to float.
4929 __ cvtsi2sd(result_reg, Operand(input_reg));
4930 __ SmiTag(input_reg); // Retag smi.
4931 __ bind(&done);
4932}
4933
4934
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004935void LCodeGen::DoDeferredTaggedToI(LTaggedToI* instr) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004936 Label done, heap_number;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004937 Register input_reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004938
4939 // Heap number map check.
4940 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004941 factory()->heap_number_map());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004942
4943 if (instr->truncating()) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004944 __ j(equal, &heap_number, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004945 // Check for undefined. Undefined is converted to zero for truncating
4946 // conversions.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004947 __ cmp(input_reg, factory()->undefined_value());
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004948 __ RecordComment("Deferred TaggedToI: cannot truncate");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004949 DeoptimizeIf(not_equal, instr->environment());
4950 __ mov(input_reg, 0);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004951 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004952
4953 __ bind(&heap_number);
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00004954 if (CpuFeatures::IsSupported(SSE3)) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004955 CpuFeatures::Scope scope(SSE3);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004956 Label convert;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004957 // Use more powerful conversion when sse3 is available.
4958 // Load x87 register with heap number.
4959 __ fld_d(FieldOperand(input_reg, HeapNumber::kValueOffset));
4960 // Get exponent alone and check for too-big exponent.
4961 __ mov(input_reg, FieldOperand(input_reg, HeapNumber::kExponentOffset));
4962 __ and_(input_reg, HeapNumber::kExponentMask);
4963 const uint32_t kTooBigExponent =
4964 (HeapNumber::kExponentBias + 63) << HeapNumber::kExponentShift;
4965 __ cmp(Operand(input_reg), Immediate(kTooBigExponent));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004966 __ j(less, &convert, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004967 // Pop FPU stack before deoptimizing.
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004968 __ fstp(0);
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004969 __ RecordComment("Deferred TaggedToI: exponent too big");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004970 DeoptimizeIf(no_condition, instr->environment());
4971
4972 // Reserve space for 64 bit answer.
4973 __ bind(&convert);
4974 __ sub(Operand(esp), Immediate(kDoubleSize));
4975 // Do conversion, which cannot fail because we checked the exponent.
4976 __ fisttp_d(Operand(esp, 0));
4977 __ mov(input_reg, Operand(esp, 0)); // Low word of answer is the result.
4978 __ add(Operand(esp), Immediate(kDoubleSize));
4979 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004980 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004981 XMMRegister xmm_temp = ToDoubleRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004982 __ movdbl(xmm0, FieldOperand(input_reg, HeapNumber::kValueOffset));
4983 __ cvttsd2si(input_reg, Operand(xmm0));
4984 __ cmp(input_reg, 0x80000000u);
4985 __ j(not_equal, &done);
4986 // Check if the input was 0x8000000 (kMinInt).
4987 // If no, then we got an overflow and we deoptimize.
4988 ExternalReference min_int = ExternalReference::address_of_min_int();
4989 __ movdbl(xmm_temp, Operand::StaticVariable(min_int));
4990 __ ucomisd(xmm_temp, xmm0);
4991 DeoptimizeIf(not_equal, instr->environment());
4992 DeoptimizeIf(parity_even, instr->environment()); // NaN.
4993 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004994 } else if (CpuFeatures::IsSupported(SSE2)) {
4995 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004996 // Deoptimize if we don't have a heap number.
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004997 __ RecordComment("Deferred TaggedToI: not a heap number");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004998 DeoptimizeIf(not_equal, instr->environment());
4999
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005000 XMMRegister xmm_temp = ToDoubleRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005001 __ movdbl(xmm0, FieldOperand(input_reg, HeapNumber::kValueOffset));
5002 __ cvttsd2si(input_reg, Operand(xmm0));
5003 __ cvtsi2sd(xmm_temp, Operand(input_reg));
5004 __ ucomisd(xmm0, xmm_temp);
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00005005 __ RecordComment("Deferred TaggedToI: lost precision");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005006 DeoptimizeIf(not_equal, instr->environment());
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00005007 __ RecordComment("Deferred TaggedToI: NaN");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005008 DeoptimizeIf(parity_even, instr->environment()); // NaN.
5009 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
5010 __ test(input_reg, Operand(input_reg));
5011 __ j(not_zero, &done);
5012 __ movmskpd(input_reg, xmm0);
5013 __ and_(input_reg, 1);
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00005014 __ RecordComment("Deferred TaggedToI: minus zero");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005015 DeoptimizeIf(not_zero, instr->environment());
5016 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005017 } else {
5018 UNREACHABLE();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005019 }
5020 __ bind(&done);
5021}
5022
5023
5024void LCodeGen::DoTaggedToI(LTaggedToI* instr) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005025 class DeferredTaggedToI: public LDeferredCode {
5026 public:
5027 DeferredTaggedToI(LCodeGen* codegen, LTaggedToI* instr)
5028 : LDeferredCode(codegen), instr_(instr) { }
5029 virtual void Generate() { codegen()->DoDeferredTaggedToI(instr_); }
5030 virtual LInstruction* instr() { return instr_; }
5031 private:
5032 LTaggedToI* instr_;
5033 };
5034
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005035 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005036 ASSERT(input->IsRegister());
5037 ASSERT(input->Equals(instr->result()));
5038
5039 Register input_reg = ToRegister(input);
5040
mmassi@chromium.org7028c052012-06-13 11:51:58 +00005041 DeferredTaggedToI* deferred = new(zone()) DeferredTaggedToI(this, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005042
5043 // Smi check.
whesse@chromium.org7b260152011-06-20 15:33:18 +00005044 __ JumpIfNotSmi(input_reg, deferred->entry());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005045
5046 // Smi to int32 conversion
5047 __ SmiUntag(input_reg); // Untag smi.
5048
5049 __ bind(deferred->exit());
5050}
5051
5052
5053void LCodeGen::DoNumberUntagD(LNumberUntagD* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005054 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005055 ASSERT(input->IsRegister());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005056 LOperand* temp = instr->temp();
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005057 ASSERT(temp == NULL || temp->IsRegister());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005058 LOperand* result = instr->result();
5059 ASSERT(result->IsDoubleRegister());
5060
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005061 if (CpuFeatures::IsSupported(SSE2)) {
5062 CpuFeatures::Scope scope(SSE2);
5063 Register input_reg = ToRegister(input);
5064 XMMRegister result_reg = ToDoubleRegister(result);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005065
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005066 bool deoptimize_on_minus_zero =
5067 instr->hydrogen()->deoptimize_on_minus_zero();
5068 Register temp_reg = deoptimize_on_minus_zero ? ToRegister(temp) : no_reg;
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005069
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005070 NumberUntagDMode mode = NUMBER_CANDIDATE_IS_ANY_TAGGED;
5071 HValue* value = instr->hydrogen()->value();
5072 if (value->type().IsSmi()) {
5073 if (value->IsLoadKeyed()) {
5074 HLoadKeyed* load = HLoadKeyed::cast(value);
5075 if (load->UsesMustHandleHole()) {
5076 if (load->hole_mode() == ALLOW_RETURN_HOLE) {
5077 mode = NUMBER_CANDIDATE_IS_SMI_CONVERT_HOLE;
5078 } else {
5079 mode = NUMBER_CANDIDATE_IS_SMI_OR_HOLE;
5080 }
5081 } else {
5082 mode = NUMBER_CANDIDATE_IS_SMI;
5083 }
5084 }
5085 }
5086
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005087 EmitNumberUntagD(input_reg,
5088 temp_reg,
5089 result_reg,
5090 instr->hydrogen()->deoptimize_on_undefined(),
5091 deoptimize_on_minus_zero,
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005092 instr->environment(),
5093 mode);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005094 } else {
5095 UNIMPLEMENTED();
5096 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005097}
5098
5099
5100void LCodeGen::DoDoubleToI(LDoubleToI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005101 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005102 ASSERT(input->IsDoubleRegister());
5103 LOperand* result = instr->result();
5104 ASSERT(result->IsRegister());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005105 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005106
5107 XMMRegister input_reg = ToDoubleRegister(input);
5108 Register result_reg = ToRegister(result);
5109
5110 if (instr->truncating()) {
5111 // Performs a truncating conversion of a floating point number as used by
5112 // the JS bitwise operations.
5113 __ cvttsd2si(result_reg, Operand(input_reg));
5114 __ cmp(result_reg, 0x80000000u);
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00005115 if (CpuFeatures::IsSupported(SSE3)) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005116 // This will deoptimize if the exponent of the input in out of range.
5117 CpuFeatures::Scope scope(SSE3);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005118 Label convert, done;
5119 __ j(not_equal, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005120 __ sub(Operand(esp), Immediate(kDoubleSize));
5121 __ movdbl(Operand(esp, 0), input_reg);
5122 // Get exponent alone and check for too-big exponent.
5123 __ mov(result_reg, Operand(esp, sizeof(int32_t)));
5124 __ and_(result_reg, HeapNumber::kExponentMask);
5125 const uint32_t kTooBigExponent =
5126 (HeapNumber::kExponentBias + 63) << HeapNumber::kExponentShift;
5127 __ cmp(Operand(result_reg), Immediate(kTooBigExponent));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005128 __ j(less, &convert, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005129 __ add(Operand(esp), Immediate(kDoubleSize));
5130 DeoptimizeIf(no_condition, instr->environment());
5131 __ bind(&convert);
5132 // Do conversion, which cannot fail because we checked the exponent.
5133 __ fld_d(Operand(esp, 0));
5134 __ fisttp_d(Operand(esp, 0));
5135 __ mov(result_reg, Operand(esp, 0)); // Low word of answer is the result.
5136 __ add(Operand(esp), Immediate(kDoubleSize));
5137 __ bind(&done);
5138 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005139 Label done;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005140 Register temp_reg = ToRegister(instr->temp());
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00005141 XMMRegister xmm_scratch = xmm0;
5142
5143 // If cvttsd2si succeeded, we're done. Otherwise, we attempt
5144 // manual conversion.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005145 __ j(not_equal, &done, Label::kNear);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00005146
5147 // Get high 32 bits of the input in result_reg and temp_reg.
5148 __ pshufd(xmm_scratch, input_reg, 1);
5149 __ movd(Operand(temp_reg), xmm_scratch);
5150 __ mov(result_reg, temp_reg);
5151
5152 // Prepare negation mask in temp_reg.
5153 __ sar(temp_reg, kBitsPerInt - 1);
5154
5155 // Extract the exponent from result_reg and subtract adjusted
5156 // bias from it. The adjustment is selected in a way such that
5157 // when the difference is zero, the answer is in the low 32 bits
5158 // of the input, otherwise a shift has to be performed.
5159 __ shr(result_reg, HeapNumber::kExponentShift);
5160 __ and_(result_reg,
5161 HeapNumber::kExponentMask >> HeapNumber::kExponentShift);
5162 __ sub(Operand(result_reg),
5163 Immediate(HeapNumber::kExponentBias +
5164 HeapNumber::kExponentBits +
5165 HeapNumber::kMantissaBits));
5166 // Don't handle big (> kMantissaBits + kExponentBits == 63) or
5167 // special exponents.
5168 DeoptimizeIf(greater, instr->environment());
5169
5170 // Zero out the sign and the exponent in the input (by shifting
5171 // it to the left) and restore the implicit mantissa bit,
5172 // i.e. convert the input to unsigned int64 shifted left by
5173 // kExponentBits.
5174 ExternalReference minus_zero = ExternalReference::address_of_minus_zero();
5175 // Minus zero has the most significant bit set and the other
5176 // bits cleared.
5177 __ movdbl(xmm_scratch, Operand::StaticVariable(minus_zero));
5178 __ psllq(input_reg, HeapNumber::kExponentBits);
5179 __ por(input_reg, xmm_scratch);
5180
5181 // Get the amount to shift the input right in xmm_scratch.
5182 __ neg(result_reg);
5183 __ movd(xmm_scratch, Operand(result_reg));
5184
5185 // Shift the input right and extract low 32 bits.
5186 __ psrlq(input_reg, xmm_scratch);
5187 __ movd(Operand(result_reg), input_reg);
5188
5189 // Use the prepared mask in temp_reg to negate the result if necessary.
5190 __ xor_(result_reg, Operand(temp_reg));
5191 __ sub(result_reg, Operand(temp_reg));
5192 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005193 }
5194 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005195 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005196 __ cvttsd2si(result_reg, Operand(input_reg));
5197 __ cvtsi2sd(xmm0, Operand(result_reg));
5198 __ ucomisd(xmm0, input_reg);
5199 DeoptimizeIf(not_equal, instr->environment());
5200 DeoptimizeIf(parity_even, instr->environment()); // NaN.
5201 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
5202 // The integer converted back is equal to the original. We
5203 // only have to test if we got -0 as an input.
5204 __ test(result_reg, Operand(result_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005205 __ j(not_zero, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005206 __ movmskpd(result_reg, input_reg);
5207 // Bit 0 contains the sign of the double in input_reg.
5208 // If input was positive, we are ok and return 0, otherwise
5209 // deoptimize.
5210 __ and_(result_reg, 1);
5211 DeoptimizeIf(not_zero, instr->environment());
5212 }
5213 __ bind(&done);
5214 }
5215}
5216
5217
5218void LCodeGen::DoCheckSmi(LCheckSmi* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005219 LOperand* input = instr->value();
ricow@chromium.org4f693d62011-07-04 14:01:31 +00005220 __ test(ToOperand(input), Immediate(kSmiTagMask));
ricow@chromium.orgbadaffc2011-03-17 12:15:27 +00005221 DeoptimizeIf(not_zero, instr->environment());
5222}
5223
5224
5225void LCodeGen::DoCheckNonSmi(LCheckNonSmi* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005226 LOperand* input = instr->value();
ricow@chromium.org4f693d62011-07-04 14:01:31 +00005227 __ test(ToOperand(input), Immediate(kSmiTagMask));
ricow@chromium.orgbadaffc2011-03-17 12:15:27 +00005228 DeoptimizeIf(zero, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005229}
5230
5231
5232void LCodeGen::DoCheckInstanceType(LCheckInstanceType* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005233 Register input = ToRegister(instr->value());
5234 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005235
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005236 __ mov(temp, FieldOperand(input, HeapObject::kMapOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005237
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005238 if (instr->hydrogen()->is_interval_check()) {
5239 InstanceType first;
5240 InstanceType last;
5241 instr->hydrogen()->GetCheckInterval(&first, &last);
5242
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00005243 __ cmpb(FieldOperand(temp, Map::kInstanceTypeOffset),
5244 static_cast<int8_t>(first));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005245
5246 // If there is only one type in the interval check for equality.
5247 if (first == last) {
5248 DeoptimizeIf(not_equal, instr->environment());
5249 } else {
5250 DeoptimizeIf(below, instr->environment());
5251 // Omit check for the last type.
5252 if (last != LAST_TYPE) {
5253 __ cmpb(FieldOperand(temp, Map::kInstanceTypeOffset),
5254 static_cast<int8_t>(last));
5255 DeoptimizeIf(above, instr->environment());
5256 }
5257 }
5258 } else {
5259 uint8_t mask;
5260 uint8_t tag;
5261 instr->hydrogen()->GetCheckMaskAndTag(&mask, &tag);
5262
5263 if (IsPowerOf2(mask)) {
5264 ASSERT(tag == 0 || IsPowerOf2(tag));
5265 __ test_b(FieldOperand(temp, Map::kInstanceTypeOffset), mask);
5266 DeoptimizeIf(tag == 0 ? not_zero : zero, instr->environment());
5267 } else {
5268 __ movzx_b(temp, FieldOperand(temp, Map::kInstanceTypeOffset));
5269 __ and_(temp, mask);
yangguo@chromium.org56454712012-02-16 15:33:53 +00005270 __ cmp(temp, tag);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005271 DeoptimizeIf(not_equal, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005272 }
5273 }
5274}
5275
5276
5277void LCodeGen::DoCheckFunction(LCheckFunction* instr) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005278 Handle<JSFunction> target = instr->hydrogen()->target();
yangguo@chromium.org003650e2013-01-24 16:31:08 +00005279 if (instr->hydrogen()->target_in_new_space()) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005280 Register reg = ToRegister(instr->value());
5281 Handle<JSGlobalPropertyCell> cell =
5282 isolate()->factory()->NewJSGlobalPropertyCell(target);
5283 __ cmp(reg, Operand::Cell(cell));
5284 } else {
5285 Operand operand = ToOperand(instr->value());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005286 __ cmp(operand, target);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005287 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005288 DeoptimizeIf(not_equal, instr->environment());
5289}
5290
5291
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005292void LCodeGen::DoCheckMapCommon(Register reg,
5293 Handle<Map> map,
5294 CompareMapMode mode,
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005295 LInstruction* instr) {
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005296 Label success;
5297 __ CompareMap(reg, map, &success, mode);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005298 DeoptimizeIf(not_equal, instr->environment());
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005299 __ bind(&success);
5300}
5301
5302
jkummerow@chromium.org1456e702012-03-30 08:38:13 +00005303void LCodeGen::DoCheckMaps(LCheckMaps* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005304 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005305 ASSERT(input->IsRegister());
5306 Register reg = ToRegister(input);
jkummerow@chromium.org1456e702012-03-30 08:38:13 +00005307
5308 Label success;
5309 SmallMapList* map_set = instr->hydrogen()->map_set();
5310 for (int i = 0; i < map_set->length() - 1; i++) {
5311 Handle<Map> map = map_set->at(i);
5312 __ CompareMap(reg, map, &success, REQUIRE_EXACT_MAP);
5313 __ j(equal, &success);
5314 }
5315 Handle<Map> map = map_set->last();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005316 DoCheckMapCommon(reg, map, REQUIRE_EXACT_MAP, instr);
jkummerow@chromium.org1456e702012-03-30 08:38:13 +00005317 __ bind(&success);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005318}
5319
5320
kmillikin@chromium.orgc53e10d2011-05-18 09:12:58 +00005321void LCodeGen::DoClampDToUint8(LClampDToUint8* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005322 CpuFeatures::Scope scope(SSE2);
kmillikin@chromium.orgc53e10d2011-05-18 09:12:58 +00005323 XMMRegister value_reg = ToDoubleRegister(instr->unclamped());
5324 Register result_reg = ToRegister(instr->result());
5325 __ ClampDoubleToUint8(value_reg, xmm0, result_reg);
5326}
5327
5328
5329void LCodeGen::DoClampIToUint8(LClampIToUint8* instr) {
5330 ASSERT(instr->unclamped()->Equals(instr->result()));
5331 Register value_reg = ToRegister(instr->result());
5332 __ ClampUint8(value_reg);
5333}
5334
5335
5336void LCodeGen::DoClampTToUint8(LClampTToUint8* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005337 CpuFeatures::Scope scope(SSE2);
5338
kmillikin@chromium.orgc53e10d2011-05-18 09:12:58 +00005339 ASSERT(instr->unclamped()->Equals(instr->result()));
5340 Register input_reg = ToRegister(instr->unclamped());
5341 Label is_smi, done, heap_number;
5342
5343 __ JumpIfSmi(input_reg, &is_smi);
5344
5345 // Check for heap number
5346 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
5347 factory()->heap_number_map());
5348 __ j(equal, &heap_number, Label::kNear);
5349
5350 // Check for undefined. Undefined is converted to zero for clamping
5351 // conversions.
5352 __ cmp(input_reg, factory()->undefined_value());
5353 DeoptimizeIf(not_equal, instr->environment());
5354 __ mov(input_reg, 0);
5355 __ jmp(&done, Label::kNear);
5356
5357 // Heap number
5358 __ bind(&heap_number);
5359 __ movdbl(xmm0, FieldOperand(input_reg, HeapNumber::kValueOffset));
5360 __ ClampDoubleToUint8(xmm0, xmm1, input_reg);
5361 __ jmp(&done, Label::kNear);
5362
5363 // smi
5364 __ bind(&is_smi);
5365 __ SmiUntag(input_reg);
5366 __ ClampUint8(input_reg);
5367
5368 __ bind(&done);
5369}
5370
5371
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005372void LCodeGen::DoCheckPrototypeMaps(LCheckPrototypeMaps* instr) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00005373 ASSERT(instr->temp()->Equals(instr->result()));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005374 Register reg = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005375
mvstanton@chromium.org6bec0092013-01-23 13:46:53 +00005376 ZoneList<Handle<JSObject> >* prototypes = instr->prototypes();
5377 ZoneList<Handle<Map> >* maps = instr->maps();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005378
mvstanton@chromium.org6bec0092013-01-23 13:46:53 +00005379 ASSERT(prototypes->length() == maps->length());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005380
ulan@chromium.org2e04b582013-02-21 14:06:02 +00005381 // TODO(ulan): Move this check to hydrogen and split HCheckPrototypeMaps
5382 // into two instruction: one that checks the prototypes and another that
5383 // loads the holder (HConstant). Find a way to do it without breaking
5384 // parallel recompilation.
5385 if (instr->hydrogen()->CanOmitPrototypeChecks()) {
5386 for (int i = 0; i < maps->length(); i++) {
5387 prototype_maps_.Add(maps->at(i), info()->zone());
5388 }
5389 __ LoadHeapObject(reg, prototypes->at(prototypes->length() - 1));
5390 } else {
5391 for (int i = 0; i < prototypes->length(); i++) {
5392 __ LoadHeapObject(reg, prototypes->at(i));
5393 DoCheckMapCommon(reg, maps->at(i), ALLOW_ELEMENT_TRANSITION_MAPS, instr);
5394 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005395 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005396}
5397
5398
ulan@chromium.org967e2702012-02-28 09:49:15 +00005399void LCodeGen::DoAllocateObject(LAllocateObject* instr) {
5400 class DeferredAllocateObject: public LDeferredCode {
5401 public:
5402 DeferredAllocateObject(LCodeGen* codegen, LAllocateObject* instr)
5403 : LDeferredCode(codegen), instr_(instr) { }
5404 virtual void Generate() { codegen()->DoDeferredAllocateObject(instr_); }
5405 virtual LInstruction* instr() { return instr_; }
5406 private:
5407 LAllocateObject* instr_;
5408 };
5409
mmassi@chromium.org7028c052012-06-13 11:51:58 +00005410 DeferredAllocateObject* deferred =
5411 new(zone()) DeferredAllocateObject(this, instr);
ulan@chromium.org967e2702012-02-28 09:49:15 +00005412
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005413 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005414 Register scratch = ToRegister(instr->temp());
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005415 Handle<JSFunction> constructor = instr->hydrogen()->constructor();
5416 Handle<Map> initial_map(constructor->initial_map());
5417 int instance_size = initial_map->instance_size();
5418 ASSERT(initial_map->pre_allocated_property_fields() +
5419 initial_map->unused_property_fields() -
5420 initial_map->inobject_properties() == 0);
5421
5422 // Allocate memory for the object. The initial map might change when
5423 // the constructor's prototype changes, but instance size and property
5424 // counts remain unchanged (if slack tracking finished).
5425 ASSERT(!constructor->shared()->IsInobjectSlackTrackingInProgress());
5426 __ AllocateInNewSpace(instance_size,
5427 result,
5428 no_reg,
5429 scratch,
5430 deferred->entry(),
5431 TAG_OBJECT);
5432
fschneider@chromium.org7d10be52012-04-10 12:30:14 +00005433 __ bind(deferred->exit());
5434 if (FLAG_debug_code) {
5435 Label is_in_new_space;
5436 __ JumpIfInNewSpace(result, scratch, &is_in_new_space);
5437 __ Abort("Allocated object is not in new-space");
5438 __ bind(&is_in_new_space);
5439 }
5440
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005441 // Load the initial map.
5442 Register map = scratch;
5443 __ LoadHeapObject(scratch, constructor);
5444 __ mov(map, FieldOperand(scratch, JSFunction::kPrototypeOrInitialMapOffset));
5445
5446 if (FLAG_debug_code) {
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00005447 __ AssertNotSmi(map);
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005448 __ cmpb(FieldOperand(map, Map::kInstanceSizeOffset),
5449 instance_size >> kPointerSizeLog2);
5450 __ Assert(equal, "Unexpected instance size");
5451 __ cmpb(FieldOperand(map, Map::kPreAllocatedPropertyFieldsOffset),
5452 initial_map->pre_allocated_property_fields());
5453 __ Assert(equal, "Unexpected pre-allocated property fields count");
5454 __ cmpb(FieldOperand(map, Map::kUnusedPropertyFieldsOffset),
5455 initial_map->unused_property_fields());
5456 __ Assert(equal, "Unexpected unused property fields count");
5457 __ cmpb(FieldOperand(map, Map::kInObjectPropertiesOffset),
5458 initial_map->inobject_properties());
5459 __ Assert(equal, "Unexpected in-object property fields count");
5460 }
5461
5462 // Initialize map and fields of the newly allocated object.
5463 ASSERT(initial_map->instance_type() == JS_OBJECT_TYPE);
5464 __ mov(FieldOperand(result, JSObject::kMapOffset), map);
5465 __ mov(scratch, factory()->empty_fixed_array());
5466 __ mov(FieldOperand(result, JSObject::kElementsOffset), scratch);
5467 __ mov(FieldOperand(result, JSObject::kPropertiesOffset), scratch);
5468 if (initial_map->inobject_properties() != 0) {
5469 __ mov(scratch, factory()->undefined_value());
5470 for (int i = 0; i < initial_map->inobject_properties(); i++) {
5471 int property_offset = JSObject::kHeaderSize + i * kPointerSize;
5472 __ mov(FieldOperand(result, property_offset), scratch);
5473 }
5474 }
ulan@chromium.org967e2702012-02-28 09:49:15 +00005475}
5476
5477
5478void LCodeGen::DoDeferredAllocateObject(LAllocateObject* instr) {
5479 Register result = ToRegister(instr->result());
5480 Handle<JSFunction> constructor = instr->hydrogen()->constructor();
fschneider@chromium.org7d10be52012-04-10 12:30:14 +00005481 Handle<Map> initial_map(constructor->initial_map());
5482 int instance_size = initial_map->instance_size();
ulan@chromium.org967e2702012-02-28 09:49:15 +00005483
5484 // TODO(3095996): Get rid of this. For now, we need to make the
5485 // result register contain a valid pointer because it is already
5486 // contained in the register pointer map.
5487 __ Set(result, Immediate(0));
5488
5489 PushSafepointRegistersScope scope(this);
fschneider@chromium.org7d10be52012-04-10 12:30:14 +00005490 __ push(Immediate(Smi::FromInt(instance_size)));
5491 CallRuntimeFromDeferred(
5492 Runtime::kAllocateInNewSpace, 1, instr, instr->context());
ulan@chromium.org967e2702012-02-28 09:49:15 +00005493 __ StoreToSafepointRegisterSlot(result, eax);
5494}
5495
5496
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005497void LCodeGen::DoAllocate(LAllocate* instr) {
5498 class DeferredAllocate: public LDeferredCode {
5499 public:
5500 DeferredAllocate(LCodeGen* codegen, LAllocate* instr)
5501 : LDeferredCode(codegen), instr_(instr) { }
5502 virtual void Generate() { codegen()->DoDeferredAllocate(instr_); }
5503 virtual LInstruction* instr() { return instr_; }
5504 private:
5505 LAllocate* instr_;
5506 };
5507
5508 DeferredAllocate* deferred =
5509 new(zone()) DeferredAllocate(this, instr);
5510
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005511 Register result = ToRegister(instr->result());
5512 Register temp = ToRegister(instr->temp());
5513
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00005514 // Allocate memory for the object.
5515 AllocationFlags flags = TAG_OBJECT;
5516 if (instr->hydrogen()->MustAllocateDoubleAligned()) {
5517 flags = static_cast<AllocationFlags>(flags | DOUBLE_ALIGNMENT);
5518 }
5519 if (instr->size()->IsConstantOperand()) {
5520 int32_t size = ToInteger32(LConstantOperand::cast(instr->size()));
5521 __ AllocateInNewSpace(size, result, temp, no_reg, deferred->entry(), flags);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005522 } else {
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00005523 Register size = ToRegister(instr->size());
5524 __ AllocateInNewSpace(size, result, temp, no_reg, deferred->entry(), flags);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005525 }
5526
5527 __ bind(deferred->exit());
5528}
5529
5530
5531void LCodeGen::DoDeferredAllocate(LAllocate* instr) {
5532 Register size = ToRegister(instr->size());
5533 Register result = ToRegister(instr->result());
5534
5535 __ SmiTag(size);
5536 PushSafepointRegistersScope scope(this);
5537 // TODO(3095996): Get rid of this. For now, we need to make the
5538 // result register contain a valid pointer because it is already
5539 // contained in the register pointer map.
5540 if (!size.is(result)) {
5541 __ StoreToSafepointRegisterSlot(result, size);
5542 }
5543 __ push(size);
5544 CallRuntimeFromDeferred(
5545 Runtime::kAllocateInNewSpace, 1, instr, instr->context());
5546 __ StoreToSafepointRegisterSlot(result, eax);
5547}
5548
5549
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005550void LCodeGen::DoArrayLiteral(LArrayLiteral* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005551 ASSERT(ToRegister(instr->context()).is(esi));
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005552 Handle<FixedArray> literals(instr->environment()->closure()->literals());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005553 ElementsKind boilerplate_elements_kind =
5554 instr->hydrogen()->boilerplate_elements_kind();
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005555 AllocationSiteMode allocation_site_mode =
5556 instr->hydrogen()->allocation_site_mode();
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00005557
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005558 // Deopt if the array literal boilerplate ElementsKind is of a type different
5559 // than the expected one. The check isn't necessary if the boilerplate has
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00005560 // already been converted to TERMINAL_FAST_ELEMENTS_KIND.
5561 if (CanTransitionToMoreGeneralFastElementsKind(
5562 boilerplate_elements_kind, true)) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005563 __ LoadHeapObject(eax, instr->hydrogen()->boilerplate_object());
5564 __ mov(ebx, FieldOperand(eax, HeapObject::kMapOffset));
5565 // Load the map's "bit field 2". We only need the first byte,
5566 // but the following masking takes care of that anyway.
5567 __ mov(ebx, FieldOperand(ebx, Map::kBitField2Offset));
5568 // Retrieve elements_kind from bit field 2.
5569 __ and_(ebx, Map::kElementsKindMask);
5570 __ cmp(ebx, boilerplate_elements_kind << Map::kElementsKindShift);
5571 DeoptimizeIf(not_equal, instr->environment());
5572 }
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00005573
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005574 // Set up the parameters to the stub/runtime call.
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005575 __ PushHeapObject(literals);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005576 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005577 // Boilerplate already exists, constant elements are never accessed.
5578 // Pass an empty fixed array.
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005579 __ push(Immediate(isolate()->factory()->empty_fixed_array()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005580
5581 // Pick the right runtime function or stub to call.
5582 int length = instr->hydrogen()->length();
5583 if (instr->hydrogen()->IsCopyOnWrite()) {
5584 ASSERT(instr->hydrogen()->depth() == 1);
5585 FastCloneShallowArrayStub::Mode mode =
5586 FastCloneShallowArrayStub::COPY_ON_WRITE_ELEMENTS;
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005587 FastCloneShallowArrayStub stub(mode, DONT_TRACK_ALLOCATION_SITE, length);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00005588 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005589 } else if (instr->hydrogen()->depth() > 1) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005590 CallRuntime(Runtime::kCreateArrayLiteral, 3, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005591 } else if (length > FastCloneShallowArrayStub::kMaximumClonedLength) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005592 CallRuntime(Runtime::kCreateArrayLiteralShallow, 3, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005593 } else {
5594 FastCloneShallowArrayStub::Mode mode =
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005595 boilerplate_elements_kind == FAST_DOUBLE_ELEMENTS
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005596 ? FastCloneShallowArrayStub::CLONE_DOUBLE_ELEMENTS
5597 : FastCloneShallowArrayStub::CLONE_ELEMENTS;
5598 FastCloneShallowArrayStub stub(mode, allocation_site_mode, length);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00005599 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005600 }
5601}
5602
5603
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005604void LCodeGen::EmitDeepCopy(Handle<JSObject> object,
5605 Register result,
5606 Register source,
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005607 int* offset,
5608 AllocationSiteMode mode) {
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005609 ASSERT(!source.is(ecx));
5610 ASSERT(!result.is(ecx));
5611
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005612 bool create_allocation_site_info = mode == TRACK_ALLOCATION_SITE &&
5613 object->map()->CanTrackAllocationSite();
5614
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005615 if (FLAG_debug_code) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005616 __ LoadHeapObject(ecx, object);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005617 __ cmp(source, ecx);
5618 __ Assert(equal, "Unexpected object literal boilerplate");
danno@chromium.org2c26cb12012-05-03 09:06:43 +00005619 __ mov(ecx, FieldOperand(source, HeapObject::kMapOffset));
5620 __ cmp(ecx, Handle<Map>(object->map()));
5621 __ Assert(equal, "Unexpected boilerplate map");
5622 __ mov(ecx, FieldOperand(ecx, Map::kBitField2Offset));
5623 __ and_(ecx, Map::kElementsKindMask);
5624 __ cmp(ecx, object->GetElementsKind() << Map::kElementsKindShift);
5625 __ Assert(equal, "Unexpected boilerplate elements kind");
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005626 }
5627
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005628 // Only elements backing stores for non-COW arrays need to be copied.
5629 Handle<FixedArrayBase> elements(object->elements());
5630 bool has_elements = elements->length() > 0 &&
5631 elements->map() != isolate()->heap()->fixed_cow_array_map();
5632
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005633 // Increase the offset so that subsequent objects end up right after
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005634 // this object and its backing store.
5635 int object_offset = *offset;
5636 int object_size = object->map()->instance_size();
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005637 int elements_size = has_elements ? elements->Size() : 0;
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005638 int elements_offset = *offset + object_size;
5639 if (create_allocation_site_info) {
5640 elements_offset += AllocationSiteInfo::kSize;
5641 *offset += AllocationSiteInfo::kSize;
5642 }
5643
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005644 *offset += object_size + elements_size;
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005645
5646 // Copy object header.
5647 ASSERT(object->properties()->length() == 0);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005648 int inobject_properties = object->map()->inobject_properties();
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005649 int header_size = object_size - inobject_properties * kPointerSize;
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005650 for (int i = 0; i < header_size; i += kPointerSize) {
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005651 if (has_elements && i == JSObject::kElementsOffset) {
5652 __ lea(ecx, Operand(result, elements_offset));
5653 } else {
5654 __ mov(ecx, FieldOperand(source, i));
5655 }
5656 __ mov(FieldOperand(result, object_offset + i), ecx);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005657 }
5658
5659 // Copy in-object properties.
5660 for (int i = 0; i < inobject_properties; i++) {
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005661 int total_offset = object_offset + object->GetInObjectPropertyOffset(i);
ulan@chromium.org09d7ab52013-02-25 15:50:35 +00005662 Handle<Object> value = Handle<Object>(object->InObjectPropertyAt(i),
5663 isolate());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005664 if (value->IsJSObject()) {
5665 Handle<JSObject> value_object = Handle<JSObject>::cast(value);
5666 __ lea(ecx, Operand(result, *offset));
5667 __ mov(FieldOperand(result, total_offset), ecx);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005668 __ LoadHeapObject(source, value_object);
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005669 EmitDeepCopy(value_object, result, source, offset,
5670 DONT_TRACK_ALLOCATION_SITE);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005671 } else if (value->IsHeapObject()) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005672 __ LoadHeapObject(ecx, Handle<HeapObject>::cast(value));
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005673 __ mov(FieldOperand(result, total_offset), ecx);
5674 } else {
5675 __ mov(FieldOperand(result, total_offset), Immediate(value));
5676 }
5677 }
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005678
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005679 // Build Allocation Site Info if desired
5680 if (create_allocation_site_info) {
5681 __ mov(FieldOperand(result, object_size),
5682 Immediate(Handle<Map>(isolate()->heap()->
5683 allocation_site_info_map())));
5684 __ mov(FieldOperand(result, object_size + kPointerSize), source);
5685 }
5686
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005687 if (has_elements) {
danno@chromium.org88aa0582012-03-23 15:11:57 +00005688 // Copy elements backing store header.
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005689 __ LoadHeapObject(source, elements);
5690 for (int i = 0; i < FixedArray::kHeaderSize; i += kPointerSize) {
5691 __ mov(ecx, FieldOperand(source, i));
5692 __ mov(FieldOperand(result, elements_offset + i), ecx);
5693 }
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005694
danno@chromium.org88aa0582012-03-23 15:11:57 +00005695 // Copy elements backing store content.
5696 int elements_length = elements->length();
5697 if (elements->IsFixedDoubleArray()) {
5698 Handle<FixedDoubleArray> double_array =
5699 Handle<FixedDoubleArray>::cast(elements);
5700 for (int i = 0; i < elements_length; i++) {
5701 int64_t value = double_array->get_representation(i);
jkummerow@chromium.org78502a92012-09-06 13:50:42 +00005702 int32_t value_low = static_cast<int32_t>(value & 0xFFFFFFFF);
5703 int32_t value_high = static_cast<int32_t>(value >> 32);
danno@chromium.org88aa0582012-03-23 15:11:57 +00005704 int total_offset =
5705 elements_offset + FixedDoubleArray::OffsetOfElementAt(i);
5706 __ mov(FieldOperand(result, total_offset), Immediate(value_low));
5707 __ mov(FieldOperand(result, total_offset + 4), Immediate(value_high));
5708 }
5709 } else if (elements->IsFixedArray()) {
erik.corry@gmail.comed49e962012-04-17 11:57:53 +00005710 Handle<FixedArray> fast_elements = Handle<FixedArray>::cast(elements);
danno@chromium.org88aa0582012-03-23 15:11:57 +00005711 for (int i = 0; i < elements_length; i++) {
5712 int total_offset = elements_offset + FixedArray::OffsetOfElementAt(i);
ulan@chromium.org09d7ab52013-02-25 15:50:35 +00005713 Handle<Object> value(fast_elements->get(i), isolate());
danno@chromium.org88aa0582012-03-23 15:11:57 +00005714 if (value->IsJSObject()) {
5715 Handle<JSObject> value_object = Handle<JSObject>::cast(value);
5716 __ lea(ecx, Operand(result, *offset));
5717 __ mov(FieldOperand(result, total_offset), ecx);
5718 __ LoadHeapObject(source, value_object);
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005719 EmitDeepCopy(value_object, result, source, offset,
5720 DONT_TRACK_ALLOCATION_SITE);
danno@chromium.org88aa0582012-03-23 15:11:57 +00005721 } else if (value->IsHeapObject()) {
5722 __ LoadHeapObject(ecx, Handle<HeapObject>::cast(value));
5723 __ mov(FieldOperand(result, total_offset), ecx);
5724 } else {
5725 __ mov(FieldOperand(result, total_offset), Immediate(value));
5726 }
5727 }
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005728 } else {
danno@chromium.org88aa0582012-03-23 15:11:57 +00005729 UNREACHABLE();
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005730 }
5731 }
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005732}
5733
5734
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005735void LCodeGen::DoFastLiteral(LFastLiteral* instr) {
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005736 ASSERT(ToRegister(instr->context()).is(esi));
5737 int size = instr->hydrogen()->total_size();
danno@chromium.org2c26cb12012-05-03 09:06:43 +00005738 ElementsKind boilerplate_elements_kind =
5739 instr->hydrogen()->boilerplate()->GetElementsKind();
5740
5741 // Deopt if the literal boilerplate ElementsKind is of a type different than
5742 // the expected one. The check isn't necessary if the boilerplate has already
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00005743 // already been converted to TERMINAL_FAST_ELEMENTS_KIND.
5744 if (CanTransitionToMoreGeneralFastElementsKind(
5745 boilerplate_elements_kind, true)) {
danno@chromium.org2c26cb12012-05-03 09:06:43 +00005746 __ LoadHeapObject(ebx, instr->hydrogen()->boilerplate());
5747 __ mov(ecx, FieldOperand(ebx, HeapObject::kMapOffset));
5748 // Load the map's "bit field 2". We only need the first byte,
5749 // but the following masking takes care of that anyway.
5750 __ mov(ecx, FieldOperand(ecx, Map::kBitField2Offset));
5751 // Retrieve elements_kind from bit field 2.
5752 __ and_(ecx, Map::kElementsKindMask);
5753 __ cmp(ecx, boilerplate_elements_kind << Map::kElementsKindShift);
5754 DeoptimizeIf(not_equal, instr->environment());
5755 }
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005756
5757 // Allocate all objects that are part of the literal in one big
5758 // allocation. This avoids multiple limit checks.
5759 Label allocated, runtime_allocate;
5760 __ AllocateInNewSpace(size, eax, ecx, edx, &runtime_allocate, TAG_OBJECT);
5761 __ jmp(&allocated);
5762
5763 __ bind(&runtime_allocate);
5764 __ push(Immediate(Smi::FromInt(size)));
5765 CallRuntime(Runtime::kAllocateInNewSpace, 1, instr);
5766
5767 __ bind(&allocated);
5768 int offset = 0;
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005769 __ LoadHeapObject(ebx, instr->hydrogen()->boilerplate());
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005770 EmitDeepCopy(instr->hydrogen()->boilerplate(), eax, ebx, &offset,
5771 instr->hydrogen()->allocation_site_mode());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005772 ASSERT_EQ(size, offset);
5773}
5774
5775
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005776void LCodeGen::DoObjectLiteral(LObjectLiteral* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00005777 ASSERT(ToRegister(instr->context()).is(esi));
ulan@chromium.org65a89c22012-02-14 11:46:07 +00005778 Handle<FixedArray> literals(instr->environment()->closure()->literals());
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005779 Handle<FixedArray> constant_properties =
5780 instr->hydrogen()->constant_properties();
5781
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005782 int flags = instr->hydrogen()->fast_elements()
5783 ? ObjectLiteral::kFastElements
5784 : ObjectLiteral::kNoFlags;
5785 flags |= instr->hydrogen()->has_function()
5786 ? ObjectLiteral::kHasFunction
5787 : ObjectLiteral::kNoFlags;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005788
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00005789 // Set up the parameters to the stub/runtime call and pick the right
5790 // runtime function or stub to call.
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005791 int properties_count = constant_properties->length() / 2;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005792 if (instr->hydrogen()->depth() > 1) {
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00005793 __ PushHeapObject(literals);
5794 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
5795 __ push(Immediate(constant_properties));
5796 __ push(Immediate(Smi::FromInt(flags)));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005797 CallRuntime(Runtime::kCreateObjectLiteral, 4, instr);
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005798 } else if (flags != ObjectLiteral::kFastElements ||
5799 properties_count > FastCloneShallowObjectStub::kMaximumClonedProperties) {
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00005800 __ PushHeapObject(literals);
5801 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
5802 __ push(Immediate(constant_properties));
5803 __ push(Immediate(Smi::FromInt(flags)));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005804 CallRuntime(Runtime::kCreateObjectLiteralShallow, 4, instr);
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005805 } else {
mstarzinger@chromium.org71fc3462013-02-27 09:34:27 +00005806 __ LoadHeapObject(eax, literals);
5807 __ mov(ebx, Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
5808 __ mov(ecx, Immediate(constant_properties));
5809 __ mov(edx, Immediate(Smi::FromInt(flags)));
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005810 FastCloneShallowObjectStub stub(properties_count);
hpayer@chromium.org8432c912013-02-28 15:55:26 +00005811 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005812 }
5813}
5814
5815
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005816void LCodeGen::DoToFastProperties(LToFastProperties* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005817 ASSERT(ToRegister(instr->value()).is(eax));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005818 __ push(eax);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005819 CallRuntime(Runtime::kToFastProperties, 1, instr);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005820}
5821
5822
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005823void LCodeGen::DoRegExpLiteral(LRegExpLiteral* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005824 ASSERT(ToRegister(instr->context()).is(esi));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005825 Label materialized;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005826 // Registers will be used as follows:
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005827 // ecx = literals array.
5828 // ebx = regexp literal.
5829 // eax = regexp literal clone.
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005830 // esi = context.
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005831 int literal_offset =
5832 FixedArray::OffsetOfElementAt(instr->hydrogen()->literal_index());
5833 __ LoadHeapObject(ecx, instr->hydrogen()->literals());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005834 __ mov(ebx, FieldOperand(ecx, literal_offset));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005835 __ cmp(ebx, factory()->undefined_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005836 __ j(not_equal, &materialized, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005837
5838 // Create regexp literal using runtime function
5839 // Result will be in eax.
5840 __ push(ecx);
5841 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
5842 __ push(Immediate(instr->hydrogen()->pattern()));
5843 __ push(Immediate(instr->hydrogen()->flags()));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005844 CallRuntime(Runtime::kMaterializeRegExpLiteral, 4, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005845 __ mov(ebx, eax);
5846
5847 __ bind(&materialized);
5848 int size = JSRegExp::kSize + JSRegExp::kInObjectFieldCount * kPointerSize;
5849 Label allocated, runtime_allocate;
5850 __ AllocateInNewSpace(size, eax, ecx, edx, &runtime_allocate, TAG_OBJECT);
5851 __ jmp(&allocated);
5852
5853 __ bind(&runtime_allocate);
5854 __ push(ebx);
5855 __ push(Immediate(Smi::FromInt(size)));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005856 CallRuntime(Runtime::kAllocateInNewSpace, 1, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005857 __ pop(ebx);
5858
5859 __ bind(&allocated);
5860 // Copy the content into the newly allocated memory.
5861 // (Unroll copy loop once for better throughput).
5862 for (int i = 0; i < size - kPointerSize; i += 2 * kPointerSize) {
5863 __ mov(edx, FieldOperand(ebx, i));
5864 __ mov(ecx, FieldOperand(ebx, i + kPointerSize));
5865 __ mov(FieldOperand(eax, i), edx);
5866 __ mov(FieldOperand(eax, i + kPointerSize), ecx);
5867 }
5868 if ((size % (2 * kPointerSize)) != 0) {
5869 __ mov(edx, FieldOperand(ebx, size - kPointerSize));
5870 __ mov(FieldOperand(eax, size - kPointerSize), edx);
5871 }
5872}
5873
5874
5875void LCodeGen::DoFunctionLiteral(LFunctionLiteral* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005876 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005877 // Use the fast case closure allocation code that allocates in new
5878 // space for nested functions that don't need literals cloning.
5879 Handle<SharedFunctionInfo> shared_info = instr->shared_info();
ricow@chromium.org83aa5492011-02-07 12:42:56 +00005880 bool pretenure = instr->hydrogen()->pretenure();
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005881 if (!pretenure && shared_info->num_literals() == 0) {
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005882 FastNewClosureStub stub(shared_info->language_mode());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005883 __ push(Immediate(shared_info));
hpayer@chromium.org8432c912013-02-28 15:55:26 +00005884 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005885 } else {
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00005886 __ push(esi);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005887 __ push(Immediate(shared_info));
5888 __ push(Immediate(pretenure
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005889 ? factory()->true_value()
5890 : factory()->false_value()));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005891 CallRuntime(Runtime::kNewClosure, 3, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005892 }
5893}
5894
5895
5896void LCodeGen::DoTypeof(LTypeof* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005897 LOperand* input = instr->value();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005898 EmitPushTaggedOperand(input);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005899 CallRuntime(Runtime::kTypeof, 1, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005900}
5901
5902
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005903void LCodeGen::DoTypeofIsAndBranch(LTypeofIsAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005904 Register input = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005905 int true_block = chunk_->LookupDestination(instr->true_block_id());
5906 int false_block = chunk_->LookupDestination(instr->false_block_id());
5907 Label* true_label = chunk_->GetAssemblyLabel(true_block);
5908 Label* false_label = chunk_->GetAssemblyLabel(false_block);
5909
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00005910 Condition final_branch_condition =
5911 EmitTypeofIs(true_label, false_label, input, instr->type_literal());
5912 if (final_branch_condition != no_condition) {
5913 EmitBranch(true_block, false_block, final_branch_condition);
5914 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005915}
5916
5917
5918Condition LCodeGen::EmitTypeofIs(Label* true_label,
5919 Label* false_label,
5920 Register input,
5921 Handle<String> type_name) {
5922 Condition final_branch_condition = no_condition;
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005923 if (type_name->Equals(heap()->number_symbol())) {
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005924 __ JumpIfSmi(input, true_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005925 __ cmp(FieldOperand(input, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005926 factory()->heap_number_map());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005927 final_branch_condition = equal;
5928
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005929 } else if (type_name->Equals(heap()->string_symbol())) {
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005930 __ JumpIfSmi(input, false_label);
5931 __ CmpObjectType(input, FIRST_NONSTRING_TYPE, input);
5932 __ j(above_equal, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005933 __ test_b(FieldOperand(input, Map::kBitFieldOffset),
5934 1 << Map::kIsUndetectable);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005935 final_branch_condition = zero;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005936
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005937 } else if (type_name->Equals(heap()->boolean_symbol())) {
5938 __ cmp(input, factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005939 __ j(equal, true_label);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005940 __ cmp(input, factory()->false_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005941 final_branch_condition = equal;
5942
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00005943 } else if (FLAG_harmony_typeof && type_name->Equals(heap()->null_symbol())) {
5944 __ cmp(input, factory()->null_value());
5945 final_branch_condition = equal;
5946
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005947 } else if (type_name->Equals(heap()->undefined_symbol())) {
5948 __ cmp(input, factory()->undefined_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005949 __ j(equal, true_label);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005950 __ JumpIfSmi(input, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005951 // Check for undetectable objects => true.
5952 __ mov(input, FieldOperand(input, HeapObject::kMapOffset));
5953 __ test_b(FieldOperand(input, Map::kBitFieldOffset),
5954 1 << Map::kIsUndetectable);
5955 final_branch_condition = not_zero;
5956
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005957 } else if (type_name->Equals(heap()->function_symbol())) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005958 STATIC_ASSERT(NUM_OF_CALLABLE_SPEC_OBJECT_TYPES == 2);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005959 __ JumpIfSmi(input, false_label);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005960 __ CmpObjectType(input, JS_FUNCTION_TYPE, input);
5961 __ j(equal, true_label);
5962 __ CmpInstanceType(input, JS_FUNCTION_PROXY_TYPE);
5963 final_branch_condition = equal;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005964
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005965 } else if (type_name->Equals(heap()->object_symbol())) {
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005966 __ JumpIfSmi(input, false_label);
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00005967 if (!FLAG_harmony_typeof) {
5968 __ cmp(input, factory()->null_value());
5969 __ j(equal, true_label);
5970 }
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00005971 __ CmpObjectType(input, FIRST_NONCALLABLE_SPEC_OBJECT_TYPE, input);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005972 __ j(below, false_label);
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00005973 __ CmpInstanceType(input, LAST_NONCALLABLE_SPEC_OBJECT_TYPE);
5974 __ j(above, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005975 // Check for undetectable objects => false.
5976 __ test_b(FieldOperand(input, Map::kBitFieldOffset),
5977 1 << Map::kIsUndetectable);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005978 final_branch_condition = zero;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005979
5980 } else {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005981 __ jmp(false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005982 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005983 return final_branch_condition;
5984}
5985
5986
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005987void LCodeGen::DoIsConstructCallAndBranch(LIsConstructCallAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005988 Register temp = ToRegister(instr->temp());
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005989 int true_block = chunk_->LookupDestination(instr->true_block_id());
5990 int false_block = chunk_->LookupDestination(instr->false_block_id());
5991
5992 EmitIsConstructCall(temp);
5993 EmitBranch(true_block, false_block, equal);
5994}
5995
5996
5997void LCodeGen::EmitIsConstructCall(Register temp) {
5998 // Get the frame pointer for the calling frame.
5999 __ mov(temp, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
6000
6001 // Skip the arguments adaptor frame if it exists.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00006002 Label check_frame_marker;
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00006003 __ cmp(Operand(temp, StandardFrameConstants::kContextOffset),
6004 Immediate(Smi::FromInt(StackFrame::ARGUMENTS_ADAPTOR)));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00006005 __ j(not_equal, &check_frame_marker, Label::kNear);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00006006 __ mov(temp, Operand(temp, StandardFrameConstants::kCallerFPOffset));
6007
6008 // Check the marker in the calling frame.
6009 __ bind(&check_frame_marker);
6010 __ cmp(Operand(temp, StandardFrameConstants::kMarkerOffset),
6011 Immediate(Smi::FromInt(StackFrame::CONSTRUCT)));
6012}
6013
6014
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006015void LCodeGen::EnsureSpaceForLazyDeopt() {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00006016 if (!info()->IsStub()) {
6017 // Ensure that we have enough space after the previous lazy-bailout
6018 // instruction for patching the code here.
6019 int current_pc = masm()->pc_offset();
6020 int patch_size = Deoptimizer::patch_size();
6021 if (current_pc < last_lazy_deopt_pc_ + patch_size) {
6022 int padding_size = last_lazy_deopt_pc_ + patch_size - current_pc;
6023 __ Nop(padding_size);
6024 }
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006025 }
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00006026 last_lazy_deopt_pc_ = masm()->pc_offset();
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006027}
6028
6029
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006030void LCodeGen::DoLazyBailout(LLazyBailout* instr) {
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006031 EnsureSpaceForLazyDeopt();
6032 ASSERT(instr->HasEnvironment());
6033 LEnvironment* env = instr->environment();
6034 RegisterEnvironmentForDeoptimization(env, Safepoint::kLazyDeopt);
6035 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006036}
6037
6038
6039void LCodeGen::DoDeoptimize(LDeoptimize* instr) {
6040 DeoptimizeIf(no_condition, instr->environment());
6041}
6042
6043
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00006044void LCodeGen::DoDummyUse(LDummyUse* instr) {
6045 // Nothing to see here, move on!
6046}
6047
6048
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006049void LCodeGen::DoDeleteProperty(LDeleteProperty* instr) {
6050 LOperand* obj = instr->object();
6051 LOperand* key = instr->key();
6052 __ push(ToOperand(obj));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00006053 EmitPushTaggedOperand(key);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00006054 ASSERT(instr->HasPointerMap());
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00006055 LPointerMap* pointers = instr->pointer_map();
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00006056 RecordPosition(pointers->position());
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00006057 // Create safepoint generator that will also ensure enough space in the
6058 // reloc info for patching in deoptimization (since this is invoking a
6059 // builtin)
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006060 SafepointGenerator safepoint_generator(
6061 this, pointers, Safepoint::kLazyDeopt);
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00006062 __ push(Immediate(Smi::FromInt(strict_mode_flag())));
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00006063 __ InvokeBuiltin(Builtins::DELETE, CALL_FUNCTION, safepoint_generator);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006064}
6065
6066
ager@chromium.org04921a82011-06-27 13:21:41 +00006067void LCodeGen::DoDeferredStackCheck(LStackCheck* instr) {
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006068 PushSafepointRegistersScope scope(this);
6069 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
6070 __ CallRuntimeSaveDoubles(Runtime::kStackGuard);
6071 RecordSafepointWithLazyDeopt(
6072 instr, RECORD_SAFEPOINT_WITH_REGISTERS_AND_NO_ARGUMENTS);
6073 ASSERT(instr->HasEnvironment());
6074 LEnvironment* env = instr->environment();
6075 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
ager@chromium.org04921a82011-06-27 13:21:41 +00006076}
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006077
ager@chromium.org04921a82011-06-27 13:21:41 +00006078
6079void LCodeGen::DoStackCheck(LStackCheck* instr) {
6080 class DeferredStackCheck: public LDeferredCode {
6081 public:
6082 DeferredStackCheck(LCodeGen* codegen, LStackCheck* instr)
6083 : LDeferredCode(codegen), instr_(instr) { }
6084 virtual void Generate() { codegen()->DoDeferredStackCheck(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00006085 virtual LInstruction* instr() { return instr_; }
ager@chromium.org04921a82011-06-27 13:21:41 +00006086 private:
6087 LStackCheck* instr_;
6088 };
6089
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006090 ASSERT(instr->HasEnvironment());
6091 LEnvironment* env = instr->environment();
6092 // There is no LLazyBailout instruction for stack-checks. We have to
6093 // prepare for lazy deoptimization explicitly here.
ager@chromium.org04921a82011-06-27 13:21:41 +00006094 if (instr->hydrogen()->is_function_entry()) {
6095 // Perform stack overflow check.
6096 Label done;
6097 ExternalReference stack_limit =
6098 ExternalReference::address_of_stack_limit(isolate());
6099 __ cmp(esp, Operand::StaticVariable(stack_limit));
6100 __ j(above_equal, &done, Label::kNear);
6101
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00006102 ASSERT(instr->context()->IsRegister());
6103 ASSERT(ToRegister(instr->context()).is(esi));
ager@chromium.org04921a82011-06-27 13:21:41 +00006104 StackCheckStub stub;
hpayer@chromium.org8432c912013-02-28 15:55:26 +00006105 CallCode(stub.GetCode(isolate()), RelocInfo::CODE_TARGET, instr);
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006106 EnsureSpaceForLazyDeopt();
ager@chromium.org04921a82011-06-27 13:21:41 +00006107 __ bind(&done);
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006108 RegisterEnvironmentForDeoptimization(env, Safepoint::kLazyDeopt);
6109 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
ager@chromium.org04921a82011-06-27 13:21:41 +00006110 } else {
6111 ASSERT(instr->hydrogen()->is_backwards_branch());
6112 // Perform stack overflow check if this goto needs it before jumping.
6113 DeferredStackCheck* deferred_stack_check =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00006114 new(zone()) DeferredStackCheck(this, instr);
ager@chromium.org04921a82011-06-27 13:21:41 +00006115 ExternalReference stack_limit =
6116 ExternalReference::address_of_stack_limit(isolate());
6117 __ cmp(esp, Operand::StaticVariable(stack_limit));
6118 __ j(below, deferred_stack_check->entry());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006119 EnsureSpaceForLazyDeopt();
ager@chromium.org04921a82011-06-27 13:21:41 +00006120 __ bind(instr->done_label());
6121 deferred_stack_check->SetExit(instr->done_label());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006122 RegisterEnvironmentForDeoptimization(env, Safepoint::kLazyDeopt);
6123 // Don't record a deoptimization index for the safepoint here.
6124 // This will be done explicitly when emitting call and the safepoint in
6125 // the deferred code.
ager@chromium.org04921a82011-06-27 13:21:41 +00006126 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006127}
6128
6129
6130void LCodeGen::DoOsrEntry(LOsrEntry* instr) {
6131 // This is a pseudo-instruction that ensures that the environment here is
6132 // properly registered for deoptimization and records the assembler's PC
6133 // offset.
6134 LEnvironment* environment = instr->environment();
6135 environment->SetSpilledRegisters(instr->SpilledRegisterArray(),
6136 instr->SpilledDoubleRegisterArray());
6137
6138 // If the environment were already registered, we would have no way of
6139 // backpatching it with the spill slot operands.
6140 ASSERT(!environment->HasBeenRegistered());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006141 RegisterEnvironmentForDeoptimization(environment, Safepoint::kNoLazyDeopt);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006142 ASSERT(osr_pc_offset_ == -1);
6143 osr_pc_offset_ = masm()->pc_offset();
6144}
6145
6146
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006147void LCodeGen::DoIn(LIn* instr) {
6148 LOperand* obj = instr->object();
6149 LOperand* key = instr->key();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00006150 EmitPushTaggedOperand(key);
6151 EmitPushTaggedOperand(obj);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00006152 ASSERT(instr->HasPointerMap());
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006153 LPointerMap* pointers = instr->pointer_map();
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006154 RecordPosition(pointers->position());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006155 SafepointGenerator safepoint_generator(
6156 this, pointers, Safepoint::kLazyDeopt);
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00006157 __ InvokeBuiltin(Builtins::IN, CALL_FUNCTION, safepoint_generator);
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006158}
6159
6160
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006161void LCodeGen::DoForInPrepareMap(LForInPrepareMap* instr) {
6162 __ cmp(eax, isolate()->factory()->undefined_value());
6163 DeoptimizeIf(equal, instr->environment());
6164
6165 __ cmp(eax, isolate()->factory()->null_value());
6166 DeoptimizeIf(equal, instr->environment());
6167
6168 __ test(eax, Immediate(kSmiTagMask));
6169 DeoptimizeIf(zero, instr->environment());
6170
6171 STATIC_ASSERT(FIRST_JS_PROXY_TYPE == FIRST_SPEC_OBJECT_TYPE);
6172 __ CmpObjectType(eax, LAST_JS_PROXY_TYPE, ecx);
6173 DeoptimizeIf(below_equal, instr->environment());
6174
6175 Label use_cache, call_runtime;
6176 __ CheckEnumCache(&call_runtime);
6177
6178 __ mov(eax, FieldOperand(eax, HeapObject::kMapOffset));
6179 __ jmp(&use_cache, Label::kNear);
6180
6181 // Get the set of properties to enumerate.
6182 __ bind(&call_runtime);
6183 __ push(eax);
6184 CallRuntime(Runtime::kGetPropertyNamesFast, 1, instr);
6185
6186 __ cmp(FieldOperand(eax, HeapObject::kMapOffset),
6187 isolate()->factory()->meta_map());
6188 DeoptimizeIf(not_equal, instr->environment());
6189 __ bind(&use_cache);
6190}
6191
6192
6193void LCodeGen::DoForInCacheArray(LForInCacheArray* instr) {
6194 Register map = ToRegister(instr->map());
6195 Register result = ToRegister(instr->result());
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00006196 Label load_cache, done;
6197 __ EnumLength(result, map);
6198 __ cmp(result, Immediate(Smi::FromInt(0)));
6199 __ j(not_equal, &load_cache);
6200 __ mov(result, isolate()->factory()->empty_fixed_array());
6201 __ jmp(&done);
6202
6203 __ bind(&load_cache);
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006204 __ LoadInstanceDescriptors(map, result);
6205 __ mov(result,
yangguo@chromium.org304cc332012-07-24 07:59:48 +00006206 FieldOperand(result, DescriptorArray::kEnumCacheOffset));
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006207 __ mov(result,
6208 FieldOperand(result, FixedArray::SizeFor(instr->idx())));
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00006209 __ bind(&done);
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006210 __ test(result, result);
6211 DeoptimizeIf(equal, instr->environment());
6212}
6213
6214
6215void LCodeGen::DoCheckMapValue(LCheckMapValue* instr) {
6216 Register object = ToRegister(instr->value());
6217 __ cmp(ToRegister(instr->map()),
6218 FieldOperand(object, HeapObject::kMapOffset));
6219 DeoptimizeIf(not_equal, instr->environment());
6220}
6221
6222
6223void LCodeGen::DoLoadFieldByIndex(LLoadFieldByIndex* instr) {
6224 Register object = ToRegister(instr->object());
6225 Register index = ToRegister(instr->index());
6226
6227 Label out_of_object, done;
6228 __ cmp(index, Immediate(0));
6229 __ j(less, &out_of_object);
6230 __ mov(object, FieldOperand(object,
6231 index,
6232 times_half_pointer_size,
6233 JSObject::kHeaderSize));
6234 __ jmp(&done, Label::kNear);
6235
6236 __ bind(&out_of_object);
6237 __ mov(object, FieldOperand(object, JSObject::kPropertiesOffset));
6238 __ neg(index);
6239 // Index is now equal to out of object property index plus 1.
6240 __ mov(object, FieldOperand(object,
6241 index,
6242 times_half_pointer_size,
6243 FixedArray::kHeaderSize - kPointerSize));
6244 __ bind(&done);
6245}
6246
6247
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006248#undef __
6249
6250} } // namespace v8::internal
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00006251
6252#endif // V8_TARGET_ARCH_IA32