blob: 0e836154d350e0c0ae84fe3a7b8beb8d413f14fe [file] [log] [blame]
kasperl@chromium.org71affb52009-05-26 05:44:31 +00001// Copyright 2006-2009 the V8 project authors. All rights reserved.
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00002// Redistribution and use in source and binary forms, with or without
3// modification, are permitted provided that the following conditions are
4// met:
5//
6// * Redistributions of source code must retain the above copyright
7// notice, this list of conditions and the following disclaimer.
8// * Redistributions in binary form must reproduce the above
9// copyright notice, this list of conditions and the following
10// disclaimer in the documentation and/or other materials provided
11// with the distribution.
12// * Neither the name of Google Inc. nor the names of its
13// contributors may be used to endorse or promote products derived
14// from this software without specific prior written permission.
15//
16// THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
17// "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
18// LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
19// A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
20// OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
21// SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
22// LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
23// DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
24// THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
25// (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
26// OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
27
28#include "v8.h"
29
30#include "ic-inl.h"
31#include "codegen-inl.h"
32#include "stub-cache.h"
33
kasperl@chromium.org71affb52009-05-26 05:44:31 +000034namespace v8 {
35namespace internal {
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +000036
ager@chromium.org65dad4b2009-04-23 08:48:43 +000037#define __ ACCESS_MASM(masm)
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +000038
39
40static void ProbeTable(MacroAssembler* masm,
41 Code::Flags flags,
42 StubCache::Table table,
43 Register name,
kasperl@chromium.org86f77b72009-07-06 08:21:57 +000044 Register offset,
45 Register extra) {
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +000046 ExternalReference key_offset(SCTableReference::keyReference(table));
47 ExternalReference value_offset(SCTableReference::valueReference(table));
48
49 Label miss;
50
kasperl@chromium.org86f77b72009-07-06 08:21:57 +000051 if (extra.is_valid()) {
52 // Get the code entry from the cache.
53 __ mov(extra, Operand::StaticArray(offset, times_2, value_offset));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +000054
kasperl@chromium.org86f77b72009-07-06 08:21:57 +000055 // Check that the key in the entry matches the name.
56 __ cmp(name, Operand::StaticArray(offset, times_2, key_offset));
57 __ j(not_equal, &miss, not_taken);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +000058
kasperl@chromium.org86f77b72009-07-06 08:21:57 +000059 // Check that the flags match what we're looking for.
60 __ mov(offset, FieldOperand(extra, Code::kFlagsOffset));
61 __ and_(offset, ~Code::kFlagsNotUsedInLookup);
62 __ cmp(offset, flags);
63 __ j(not_equal, &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +000064
kasperl@chromium.org86f77b72009-07-06 08:21:57 +000065 // Jump to the first instruction in the code stub.
66 __ add(Operand(extra), Immediate(Code::kHeaderSize - kHeapObjectTag));
67 __ jmp(Operand(extra));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +000068
kasperl@chromium.org86f77b72009-07-06 08:21:57 +000069 __ bind(&miss);
70 } else {
71 // Save the offset on the stack.
72 __ push(offset);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +000073
kasperl@chromium.org86f77b72009-07-06 08:21:57 +000074 // Check that the key in the entry matches the name.
75 __ cmp(name, Operand::StaticArray(offset, times_2, key_offset));
76 __ j(not_equal, &miss, not_taken);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +000077
kasperl@chromium.org86f77b72009-07-06 08:21:57 +000078 // Get the code entry from the cache.
79 __ mov(offset, Operand::StaticArray(offset, times_2, value_offset));
80
81 // Check that the flags match what we're looking for.
82 __ mov(offset, FieldOperand(offset, Code::kFlagsOffset));
83 __ and_(offset, ~Code::kFlagsNotUsedInLookup);
84 __ cmp(offset, flags);
85 __ j(not_equal, &miss);
86
87 // Restore offset and re-load code entry from cache.
88 __ pop(offset);
89 __ mov(offset, Operand::StaticArray(offset, times_2, value_offset));
90
91 // Jump to the first instruction in the code stub.
92 __ add(Operand(offset), Immediate(Code::kHeaderSize - kHeapObjectTag));
93 __ jmp(Operand(offset));
94
95 // Pop at miss.
96 __ bind(&miss);
97 __ pop(offset);
98 }
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +000099}
100
101
102void StubCache::GenerateProbe(MacroAssembler* masm,
103 Code::Flags flags,
104 Register receiver,
105 Register name,
kasperl@chromium.org86f77b72009-07-06 08:21:57 +0000106 Register scratch,
107 Register extra) {
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000108 Label miss;
109
110 // Make sure that code is valid. The shifting code relies on the
111 // entry size being 8.
112 ASSERT(sizeof(Entry) == 8);
113
114 // Make sure the flags does not name a specific type.
115 ASSERT(Code::ExtractTypeFromFlags(flags) == 0);
116
117 // Make sure that there are no register conflicts.
118 ASSERT(!scratch.is(receiver));
119 ASSERT(!scratch.is(name));
kasperl@chromium.org86f77b72009-07-06 08:21:57 +0000120 ASSERT(!extra.is(receiver));
121 ASSERT(!extra.is(name));
122 ASSERT(!extra.is(scratch));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000123
124 // Check that the receiver isn't a smi.
125 __ test(receiver, Immediate(kSmiTagMask));
126 __ j(zero, &miss, not_taken);
127
128 // Get the map of the receiver and compute the hash.
sgjesse@chromium.orgac6aa172009-12-04 12:29:05 +0000129 __ mov(scratch, FieldOperand(name, String::kHashFieldOffset));
ager@chromium.org7c537e22008-10-16 08:43:32 +0000130 __ add(scratch, FieldOperand(receiver, HeapObject::kMapOffset));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000131 __ xor_(scratch, flags);
132 __ and_(scratch, (kPrimaryTableSize - 1) << kHeapObjectTagSize);
133
134 // Probe the primary table.
kasperl@chromium.org86f77b72009-07-06 08:21:57 +0000135 ProbeTable(masm, flags, kPrimary, name, scratch, extra);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000136
137 // Primary miss: Compute hash for secondary probe.
sgjesse@chromium.orgac6aa172009-12-04 12:29:05 +0000138 __ mov(scratch, FieldOperand(name, String::kHashFieldOffset));
kasperl@chromium.org86f77b72009-07-06 08:21:57 +0000139 __ add(scratch, FieldOperand(receiver, HeapObject::kMapOffset));
140 __ xor_(scratch, flags);
141 __ and_(scratch, (kPrimaryTableSize - 1) << kHeapObjectTagSize);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000142 __ sub(scratch, Operand(name));
143 __ add(Operand(scratch), Immediate(flags));
144 __ and_(scratch, (kSecondaryTableSize - 1) << kHeapObjectTagSize);
145
146 // Probe the secondary table.
kasperl@chromium.org86f77b72009-07-06 08:21:57 +0000147 ProbeTable(masm, flags, kSecondary, name, scratch, extra);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000148
149 // Cache miss: Fall-through and let caller handle the miss by
150 // entering the runtime system.
151 __ bind(&miss);
152}
153
154
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000155static void PushInterceptorArguments(MacroAssembler* masm,
156 Register receiver,
157 Register holder,
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000158 Register name,
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000159 JSObject* holder_obj) {
160 __ push(receiver);
161 __ push(holder);
162 __ push(name);
163 InterceptorInfo* interceptor = holder_obj->GetNamedInterceptor();
164 __ mov(receiver, Immediate(Handle<Object>(interceptor)));
165 __ push(receiver);
166 __ push(FieldOperand(receiver, InterceptorInfo::kDataOffset));
167}
168
169
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000170void StubCompiler::GenerateLoadGlobalFunctionPrototype(MacroAssembler* masm,
171 int index,
172 Register prototype) {
173 // Load the global or builtins object from the current context.
174 __ mov(prototype, Operand(esi, Context::SlotOffset(Context::GLOBAL_INDEX)));
175 // Load the global context from the global or builtins object.
176 __ mov(prototype,
177 FieldOperand(prototype, GlobalObject::kGlobalContextOffset));
178 // Load the function from the global context.
179 __ mov(prototype, Operand(prototype, Context::SlotOffset(index)));
180 // Load the initial map. The global functions all have initial maps.
181 __ mov(prototype,
182 FieldOperand(prototype, JSFunction::kPrototypeOrInitialMapOffset));
183 // Load the prototype from the initial map.
184 __ mov(prototype, FieldOperand(prototype, Map::kPrototypeOffset));
185}
186
187
188void StubCompiler::GenerateLoadArrayLength(MacroAssembler* masm,
189 Register receiver,
190 Register scratch,
191 Label* miss_label) {
192 // Check that the receiver isn't a smi.
193 __ test(receiver, Immediate(kSmiTagMask));
194 __ j(zero, miss_label, not_taken);
195
196 // Check that the object is a JS array.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +0000197 __ CmpObjectType(receiver, JS_ARRAY_TYPE, scratch);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000198 __ j(not_equal, miss_label, not_taken);
199
200 // Load length directly from the JS array.
201 __ mov(eax, FieldOperand(receiver, JSArray::kLengthOffset));
202 __ ret(0);
203}
204
205
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000206// Generate code to check if an object is a string. If the object is
207// a string, the map's instance type is left in the scratch register.
208static void GenerateStringCheck(MacroAssembler* masm,
209 Register receiver,
210 Register scratch,
211 Label* smi,
212 Label* non_string_object) {
213 // Check that the object isn't a smi.
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000214 __ test(receiver, Immediate(kSmiTagMask));
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000215 __ j(zero, smi, not_taken);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000216
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000217 // Check that the object is a string.
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000218 __ mov(scratch, FieldOperand(receiver, HeapObject::kMapOffset));
219 __ movzx_b(scratch, FieldOperand(scratch, Map::kInstanceTypeOffset));
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000220 ASSERT(kNotStringTag != 0);
221 __ test(scratch, Immediate(kNotStringTag));
222 __ j(not_zero, non_string_object, not_taken);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000223}
224
225
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000226void StubCompiler::GenerateLoadStringLength(MacroAssembler* masm,
227 Register receiver,
228 Register scratch,
229 Label* miss) {
230 Label load_length, check_wrapper;
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000231
kasperl@chromium.org9bbf9682008-10-30 11:53:07 +0000232 // Check if the object is a string leaving the instance type in the
233 // scratch register.
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000234 GenerateStringCheck(masm, receiver, scratch, miss, &check_wrapper);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000235
sgjesse@chromium.orgac6aa172009-12-04 12:29:05 +0000236 // Load length from the string and convert to a smi.
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000237 __ bind(&load_length);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000238 __ mov(eax, FieldOperand(receiver, String::kLengthOffset));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000239 __ shl(eax, kSmiTagSize);
240 __ ret(0);
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000241
242 // Check if the object is a JSValue wrapper.
243 __ bind(&check_wrapper);
kasperl@chromium.org9bbf9682008-10-30 11:53:07 +0000244 __ cmp(scratch, JS_VALUE_TYPE);
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000245 __ j(not_equal, miss, not_taken);
246
247 // Check if the wrapped value is a string and load the length
248 // directly if it is.
249 __ mov(receiver, FieldOperand(receiver, JSValue::kValueOffset));
250 GenerateStringCheck(masm, receiver, scratch, miss, miss);
251 __ jmp(&load_length);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000252}
253
254
255void StubCompiler::GenerateLoadFunctionPrototype(MacroAssembler* masm,
256 Register receiver,
257 Register scratch1,
258 Register scratch2,
259 Label* miss_label) {
ager@chromium.org7c537e22008-10-16 08:43:32 +0000260 __ TryGetFunctionPrototype(receiver, scratch1, scratch2, miss_label);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000261 __ mov(eax, Operand(scratch1));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000262 __ ret(0);
ager@chromium.org7c537e22008-10-16 08:43:32 +0000263}
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000264
ager@chromium.org7c537e22008-10-16 08:43:32 +0000265
266// Load a fast property out of a holder object (src). In-object properties
267// are loaded directly otherwise the property is loaded from the properties
268// fixed array.
269void StubCompiler::GenerateFastPropertyLoad(MacroAssembler* masm,
christian.plesner.hansen@gmail.com37abdec2009-01-06 14:43:28 +0000270 Register dst, Register src,
271 JSObject* holder, int index) {
ager@chromium.org7c537e22008-10-16 08:43:32 +0000272 // Adjust for the number of properties stored in the holder.
273 index -= holder->map()->inobject_properties();
274 if (index < 0) {
275 // Get the property straight out of the holder.
276 int offset = holder->map()->instance_size() + (index * kPointerSize);
277 __ mov(dst, FieldOperand(src, offset));
278 } else {
279 // Calculate the offset into the properties array.
kasperl@chromium.orge959c182009-07-27 08:59:04 +0000280 int offset = index * kPointerSize + FixedArray::kHeaderSize;
ager@chromium.org7c537e22008-10-16 08:43:32 +0000281 __ mov(dst, FieldOperand(src, JSObject::kPropertiesOffset));
282 __ mov(dst, FieldOperand(dst, offset));
283 }
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000284}
285
286
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000287static void CompileCallLoadPropertyWithInterceptor(MacroAssembler* masm,
288 Register receiver,
289 Register holder,
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000290 Register name,
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000291 JSObject* holder_obj) {
292 PushInterceptorArguments(masm, receiver, holder, name, holder_obj);
293
294 ExternalReference ref =
295 ExternalReference(IC_Utility(IC::kLoadPropertyWithInterceptorOnly));
296 __ mov(eax, Immediate(5));
297 __ mov(ebx, Immediate(ref));
298
ager@chromium.orga1645e22009-09-09 19:27:10 +0000299 CEntryStub stub(1);
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000300 __ CallStub(&stub);
301}
302
303
304template <class Compiler>
305static void CompileLoadInterceptor(Compiler* compiler,
306 StubCompiler* stub_compiler,
307 MacroAssembler* masm,
308 JSObject* object,
309 JSObject* holder,
310 String* name,
311 LookupResult* lookup,
312 Register receiver,
313 Register scratch1,
314 Register scratch2,
315 Label* miss) {
316 ASSERT(holder->HasNamedInterceptor());
317 ASSERT(!holder->GetNamedInterceptor()->getter()->IsUndefined());
318
319 // Check that the receiver isn't a smi.
320 __ test(receiver, Immediate(kSmiTagMask));
321 __ j(zero, miss, not_taken);
322
323 // Check that the maps haven't changed.
324 Register reg =
325 stub_compiler->CheckPrototypes(object, receiver, holder,
326 scratch1, scratch2, name, miss);
327
328 if (lookup->IsValid() && lookup->IsCacheable()) {
329 compiler->CompileCacheable(masm,
330 stub_compiler,
331 receiver,
332 reg,
333 scratch1,
334 scratch2,
335 holder,
336 lookup,
337 name,
338 miss);
339 } else {
340 compiler->CompileRegular(masm,
341 receiver,
342 reg,
343 scratch2,
344 holder,
345 miss);
346 }
347}
348
349
350static void LookupPostInterceptor(JSObject* holder,
351 String* name,
352 LookupResult* lookup) {
353 holder->LocalLookupRealNamedProperty(name, lookup);
354 if (lookup->IsNotFound()) {
355 Object* proto = holder->GetPrototype();
356 if (proto != Heap::null_value()) {
357 proto->Lookup(name, lookup);
358 }
359 }
360}
361
362
363class LoadInterceptorCompiler BASE_EMBEDDED {
364 public:
365 explicit LoadInterceptorCompiler(Register name) : name_(name) {}
366
367 void CompileCacheable(MacroAssembler* masm,
368 StubCompiler* stub_compiler,
369 Register receiver,
370 Register holder,
371 Register scratch1,
372 Register scratch2,
373 JSObject* holder_obj,
374 LookupResult* lookup,
375 String* name,
376 Label* miss_label) {
377 AccessorInfo* callback = 0;
378 bool optimize = false;
379 // So far the most popular follow ups for interceptor loads are FIELD
380 // and CALLBACKS, so inline only them, other cases may be added
381 // later.
382 if (lookup->type() == FIELD) {
383 optimize = true;
384 } else if (lookup->type() == CALLBACKS) {
385 Object* callback_object = lookup->GetCallbackObject();
386 if (callback_object->IsAccessorInfo()) {
387 callback = AccessorInfo::cast(callback_object);
388 optimize = callback->getter() != NULL;
389 }
390 }
391
392 if (!optimize) {
393 CompileRegular(masm, receiver, holder, scratch2, holder_obj, miss_label);
394 return;
395 }
396
397 // Note: starting a frame here makes GC aware of pointers pushed below.
398 __ EnterInternalFrame();
399
400 if (lookup->type() == CALLBACKS) {
401 __ push(receiver);
402 }
403 __ push(holder);
404 __ push(name_);
405
406 CompileCallLoadPropertyWithInterceptor(masm,
407 receiver,
408 holder,
409 name_,
410 holder_obj);
411
412 Label interceptor_failed;
413 __ cmp(eax, Factory::no_interceptor_result_sentinel());
414 __ j(equal, &interceptor_failed);
415 __ LeaveInternalFrame();
416 __ ret(0);
417
418 __ bind(&interceptor_failed);
419 __ pop(name_);
420 __ pop(holder);
421 if (lookup->type() == CALLBACKS) {
422 __ pop(receiver);
423 }
424
425 __ LeaveInternalFrame();
426
427 if (lookup->type() == FIELD) {
428 holder = stub_compiler->CheckPrototypes(holder_obj, holder,
429 lookup->holder(), scratch1,
430 scratch2,
431 name,
432 miss_label);
433 stub_compiler->GenerateFastPropertyLoad(masm, eax,
434 holder, lookup->holder(),
435 lookup->GetFieldIndex());
436 __ ret(0);
437 } else {
438 ASSERT(lookup->type() == CALLBACKS);
439 ASSERT(lookup->GetCallbackObject()->IsAccessorInfo());
440 ASSERT(callback != NULL);
441 ASSERT(callback->getter() != NULL);
442
443 Label cleanup;
444 __ pop(scratch2);
445 __ push(receiver);
446 __ push(scratch2);
447
448 holder = stub_compiler->CheckPrototypes(holder_obj, holder,
449 lookup->holder(), scratch1,
450 scratch2,
451 name,
452 &cleanup);
453
454 __ pop(scratch2); // save old return address
455 __ push(holder);
456 __ mov(holder, Immediate(Handle<AccessorInfo>(callback)));
457 __ push(holder);
458 __ push(FieldOperand(holder, AccessorInfo::kDataOffset));
459 __ push(name_);
460 __ push(scratch2); // restore old return address
461
462 ExternalReference ref =
463 ExternalReference(IC_Utility(IC::kLoadCallbackProperty));
ager@chromium.orga1645e22009-09-09 19:27:10 +0000464 __ TailCallRuntime(ref, 5, 1);
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000465
466 __ bind(&cleanup);
467 __ pop(scratch1);
468 __ pop(scratch2);
469 __ push(scratch1);
470 }
471 }
472
473
474 void CompileRegular(MacroAssembler* masm,
475 Register receiver,
476 Register holder,
477 Register scratch,
478 JSObject* holder_obj,
479 Label* miss_label) {
480 __ pop(scratch); // save old return address
481 PushInterceptorArguments(masm, receiver, holder, name_, holder_obj);
482 __ push(scratch); // restore old return address
483
484 ExternalReference ref = ExternalReference(
485 IC_Utility(IC::kLoadPropertyWithInterceptorForLoad));
ager@chromium.orga1645e22009-09-09 19:27:10 +0000486 __ TailCallRuntime(ref, 5, 1);
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000487 }
488
489 private:
490 Register name_;
491};
492
493
494class CallInterceptorCompiler BASE_EMBEDDED {
495 public:
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000496 CallInterceptorCompiler(const ParameterCount& arguments, Register name)
497 : arguments_(arguments), argc_(arguments.immediate()), name_(name) {}
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000498
499 void CompileCacheable(MacroAssembler* masm,
500 StubCompiler* stub_compiler,
501 Register receiver,
502 Register holder,
503 Register scratch1,
504 Register scratch2,
505 JSObject* holder_obj,
506 LookupResult* lookup,
507 String* name,
508 Label* miss_label) {
509 JSFunction* function = 0;
510 bool optimize = false;
511 // So far the most popular case for failed interceptor is
512 // CONSTANT_FUNCTION sitting below.
513 if (lookup->type() == CONSTANT_FUNCTION) {
514 function = lookup->GetConstantFunction();
515 // JSArray holder is a special case for call constant function
516 // (see the corresponding code).
517 if (function->is_compiled() && !holder_obj->IsJSArray()) {
518 optimize = true;
519 }
520 }
521
522 if (!optimize) {
523 CompileRegular(masm, receiver, holder, scratch2, holder_obj, miss_label);
524 return;
525 }
526
527 __ EnterInternalFrame();
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000528 __ push(holder); // Save the holder.
529 __ push(name_); // Save the name.
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000530
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000531 CompileCallLoadPropertyWithInterceptor(masm,
532 receiver,
533 holder,
534 name_,
535 holder_obj);
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000536
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000537 __ pop(name_); // Restore the name.
538 __ pop(receiver); // Restore the holder.
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000539 __ LeaveInternalFrame();
540
541 __ cmp(eax, Factory::no_interceptor_result_sentinel());
542 Label invoke;
543 __ j(not_equal, &invoke);
544
545 stub_compiler->CheckPrototypes(holder_obj, receiver,
546 lookup->holder(), scratch1,
547 scratch2,
548 name,
549 miss_label);
550 if (lookup->holder()->IsGlobalObject()) {
551 __ mov(edx, Operand(esp, (argc_ + 1) * kPointerSize));
552 __ mov(edx, FieldOperand(edx, GlobalObject::kGlobalReceiverOffset));
553 __ mov(Operand(esp, (argc_ + 1) * kPointerSize), edx);
554 }
555
556 ASSERT(function->is_compiled());
557 // Get the function and setup the context.
558 __ mov(edi, Immediate(Handle<JSFunction>(function)));
559 __ mov(esi, FieldOperand(edi, JSFunction::kContextOffset));
560
561 // Jump to the cached code (tail call).
562 ASSERT(function->is_compiled());
563 Handle<Code> code(function->code());
564 ParameterCount expected(function->shared()->formal_parameter_count());
565 __ InvokeCode(code, expected, arguments_,
566 RelocInfo::CODE_TARGET, JUMP_FUNCTION);
567
568 __ bind(&invoke);
569 }
570
571 void CompileRegular(MacroAssembler* masm,
572 Register receiver,
573 Register holder,
574 Register scratch,
575 JSObject* holder_obj,
576 Label* miss_label) {
577 __ EnterInternalFrame();
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000578 // Save the name_ register across the call.
579 __ push(name_);
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000580
581 PushInterceptorArguments(masm,
582 receiver,
583 holder,
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000584 name_,
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000585 holder_obj);
586
587 ExternalReference ref = ExternalReference(
588 IC_Utility(IC::kLoadPropertyWithInterceptorForCall));
589 __ mov(eax, Immediate(5));
590 __ mov(ebx, Immediate(ref));
591
ager@chromium.orga1645e22009-09-09 19:27:10 +0000592 CEntryStub stub(1);
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000593 __ CallStub(&stub);
594
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000595 // Restore the name_ register.
596 __ pop(name_);
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000597 __ LeaveInternalFrame();
598 }
599
600 private:
601 const ParameterCount& arguments_;
602 int argc_;
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000603 Register name_;
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000604};
605
606
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000607void StubCompiler::GenerateLoadMiss(MacroAssembler* masm, Code::Kind kind) {
608 ASSERT(kind == Code::LOAD_IC || kind == Code::KEYED_LOAD_IC);
609 Code* code = NULL;
610 if (kind == Code::LOAD_IC) {
611 code = Builtins::builtin(Builtins::LoadIC_Miss);
612 } else {
613 code = Builtins::builtin(Builtins::KeyedLoadIC_Miss);
614 }
615
616 Handle<Code> ic(code);
ager@chromium.org236ad962008-09-25 09:45:57 +0000617 __ jmp(ic, RelocInfo::CODE_TARGET);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000618}
619
620
621void StubCompiler::GenerateStoreField(MacroAssembler* masm,
kasperl@chromium.org1accd572008-10-07 10:57:21 +0000622 Builtins::Name storage_extend,
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000623 JSObject* object,
624 int index,
625 Map* transition,
626 Register receiver_reg,
627 Register name_reg,
628 Register scratch,
629 Label* miss_label) {
630 // Check that the object isn't a smi.
631 __ test(receiver_reg, Immediate(kSmiTagMask));
632 __ j(zero, miss_label, not_taken);
633
634 // Check that the map of the object hasn't changed.
635 __ cmp(FieldOperand(receiver_reg, HeapObject::kMapOffset),
636 Immediate(Handle<Map>(object->map())));
637 __ j(not_equal, miss_label, not_taken);
638
639 // Perform global security token check if needed.
kasperl@chromium.org5a8ca6c2008-10-23 13:57:19 +0000640 if (object->IsJSGlobalProxy()) {
641 __ CheckAccessGlobalProxy(receiver_reg, scratch, miss_label);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000642 }
643
644 // Stub never generated for non-global objects that require access
645 // checks.
kasperl@chromium.org5a8ca6c2008-10-23 13:57:19 +0000646 ASSERT(object->IsJSGlobalProxy() || !object->IsAccessCheckNeeded());
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000647
kasperl@chromium.org1accd572008-10-07 10:57:21 +0000648 // Perform map transition for the receiver if necessary.
649 if ((transition != NULL) && (object->map()->unused_property_fields() == 0)) {
650 // The properties must be extended before we can store the value.
ager@chromium.org32912102009-01-16 10:38:43 +0000651 // We jump to a runtime call that extends the properties array.
ager@chromium.org3bf7b912008-11-17 09:09:45 +0000652 __ mov(ecx, Immediate(Handle<Map>(transition)));
kasperl@chromium.org1accd572008-10-07 10:57:21 +0000653 Handle<Code> ic(Builtins::builtin(storage_extend));
654 __ jmp(ic, RelocInfo::CODE_TARGET);
655 return;
656 }
657
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000658 if (transition != NULL) {
kasperl@chromium.org1accd572008-10-07 10:57:21 +0000659 // Update the map of the object; no write barrier updating is
660 // needed because the map is never in new space.
661 __ mov(FieldOperand(receiver_reg, HeapObject::kMapOffset),
662 Immediate(Handle<Map>(transition)));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000663 }
664
ager@chromium.orga74f0da2008-12-03 16:05:52 +0000665 // Adjust for the number of properties stored in the object. Even in the
666 // face of a transition we can use the old map here because the size of the
667 // object and the number of in-object properties is not going to change.
668 index -= object->map()->inobject_properties();
669
ager@chromium.org7c537e22008-10-16 08:43:32 +0000670 if (index < 0) {
671 // Set the property straight into the object.
672 int offset = object->map()->instance_size() + (index * kPointerSize);
673 __ mov(FieldOperand(receiver_reg, offset), eax);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000674
ager@chromium.org7c537e22008-10-16 08:43:32 +0000675 // Update the write barrier for the array address.
676 // Pass the value being stored in the now unused name_reg.
677 __ mov(name_reg, Operand(eax));
678 __ RecordWrite(receiver_reg, offset, name_reg, scratch);
679 } else {
680 // Write to the properties array.
kasperl@chromium.orge959c182009-07-27 08:59:04 +0000681 int offset = index * kPointerSize + FixedArray::kHeaderSize;
ager@chromium.orga74f0da2008-12-03 16:05:52 +0000682 // Get the properties array (optimistically).
683 __ mov(scratch, FieldOperand(receiver_reg, JSObject::kPropertiesOffset));
ager@chromium.org7c537e22008-10-16 08:43:32 +0000684 __ mov(FieldOperand(scratch, offset), eax);
685
686 // Update the write barrier for the array address.
687 // Pass the value being stored in the now unused name_reg.
688 __ mov(name_reg, Operand(eax));
689 __ RecordWrite(scratch, offset, name_reg, receiver_reg);
690 }
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000691
692 // Return the value (register eax).
693 __ ret(0);
694}
695
696
697#undef __
ager@chromium.org65dad4b2009-04-23 08:48:43 +0000698#define __ ACCESS_MASM(masm())
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000699
700
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +0000701Register StubCompiler::CheckPrototypes(JSObject* object,
702 Register object_reg,
703 JSObject* holder,
704 Register holder_reg,
705 Register scratch,
706 String* name,
707 Label* miss) {
708 // Check that the maps haven't changed.
709 Register result =
710 masm()->CheckMaps(object, object_reg, holder, holder_reg, scratch, miss);
711
712 // If we've skipped any global objects, it's not enough to verify
713 // that their maps haven't changed.
714 while (object != holder) {
715 if (object->IsGlobalObject()) {
716 GlobalObject* global = GlobalObject::cast(object);
717 Object* probe = global->EnsurePropertyCell(name);
718 if (probe->IsFailure()) {
719 set_failure(Failure::cast(probe));
720 return result;
721 }
722 JSGlobalPropertyCell* cell = JSGlobalPropertyCell::cast(probe);
723 ASSERT(cell->value()->IsTheHole());
724 __ mov(scratch, Immediate(Handle<Object>(cell)));
725 __ cmp(FieldOperand(scratch, JSGlobalPropertyCell::kValueOffset),
726 Immediate(Factory::the_hole_value()));
727 __ j(not_equal, miss, not_taken);
728 }
729 object = JSObject::cast(object->GetPrototype());
730 }
731
732 // Return the register containin the holder.
733 return result;
734}
735
736
737void StubCompiler::GenerateLoadField(JSObject* object,
738 JSObject* holder,
739 Register receiver,
740 Register scratch1,
741 Register scratch2,
742 int index,
743 String* name,
744 Label* miss) {
745 // Check that the receiver isn't a smi.
746 __ test(receiver, Immediate(kSmiTagMask));
747 __ j(zero, miss, not_taken);
748
749 // Check the prototype chain.
750 Register reg =
751 CheckPrototypes(object, receiver, holder,
752 scratch1, scratch2, name, miss);
753
754 // Get the value from the properties.
755 GenerateFastPropertyLoad(masm(), eax, reg, holder, index);
756 __ ret(0);
757}
758
759
kmillikin@chromium.org13bd2942009-12-16 15:36:05 +0000760bool StubCompiler::GenerateLoadCallback(JSObject* object,
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +0000761 JSObject* holder,
762 Register receiver,
763 Register name_reg,
764 Register scratch1,
765 Register scratch2,
766 AccessorInfo* callback,
767 String* name,
kmillikin@chromium.org13bd2942009-12-16 15:36:05 +0000768 Label* miss,
769 Failure** failure) {
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +0000770 // Check that the receiver isn't a smi.
771 __ test(receiver, Immediate(kSmiTagMask));
772 __ j(zero, miss, not_taken);
773
774 // Check that the maps haven't changed.
775 Register reg =
776 CheckPrototypes(object, receiver, holder,
777 scratch1, scratch2, name, miss);
778
ager@chromium.orgc4c92722009-11-18 14:12:51 +0000779 Handle<AccessorInfo> callback_handle(callback);
780
781 Register other = reg.is(scratch1) ? scratch2 : scratch1;
782 __ EnterInternalFrame();
783 __ PushHandleScope(other);
784 // Push the stack address where the list of arguments ends
785 __ mov(other, esp);
786 __ sub(Operand(other), Immediate(2 * kPointerSize));
787 __ push(other);
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +0000788 __ push(receiver); // receiver
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +0000789 __ push(reg); // holder
ager@chromium.orgc4c92722009-11-18 14:12:51 +0000790 __ mov(other, Immediate(callback_handle));
791 __ push(other);
792 __ push(FieldOperand(other, AccessorInfo::kDataOffset)); // data
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000793 __ push(name_reg); // name
ager@chromium.orgc4c92722009-11-18 14:12:51 +0000794 // Save a pointer to where we pushed the arguments pointer.
795 // This will be passed as the const Arguments& to the C++ callback.
796 __ mov(eax, esp);
797 __ add(Operand(eax), Immediate(5 * kPointerSize));
798 __ mov(ebx, esp);
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +0000799
ager@chromium.orgc4c92722009-11-18 14:12:51 +0000800 // Do call through the api.
801 ASSERT_EQ(6, ApiGetterEntryStub::kStackSpace);
802 Address getter_address = v8::ToCData<Address>(callback->getter());
803 ApiFunction fun(getter_address);
804 ApiGetterEntryStub stub(callback_handle, &fun);
kmillikin@chromium.org13bd2942009-12-16 15:36:05 +0000805 // Calling the stub may try to allocate (if the code is not already
806 // generated). Do not allow the call to perform a garbage
807 // collection but instead return the allocation failure object.
808 Object* result = masm()->TryCallStub(&stub);
809 if (result->IsFailure()) {
810 *failure = Failure::cast(result);
811 return false;
812 }
ager@chromium.orgc4c92722009-11-18 14:12:51 +0000813
814 // We need to avoid using eax since that now holds the result.
815 Register tmp = other.is(eax) ? reg : other;
816 __ PopHandleScope(eax, tmp);
817 __ LeaveInternalFrame();
818
819 __ ret(0);
kmillikin@chromium.org13bd2942009-12-16 15:36:05 +0000820 return true;
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +0000821}
822
823
824void StubCompiler::GenerateLoadConstant(JSObject* object,
825 JSObject* holder,
826 Register receiver,
827 Register scratch1,
828 Register scratch2,
829 Object* value,
830 String* name,
831 Label* miss) {
832 // Check that the receiver isn't a smi.
833 __ test(receiver, Immediate(kSmiTagMask));
834 __ j(zero, miss, not_taken);
835
836 // Check that the maps haven't changed.
837 Register reg =
838 CheckPrototypes(object, receiver, holder,
839 scratch1, scratch2, name, miss);
840
841 // Return the constant value.
842 __ mov(eax, Handle<Object>(value));
843 __ ret(0);
844}
845
846
847void StubCompiler::GenerateLoadInterceptor(JSObject* object,
848 JSObject* holder,
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000849 LookupResult* lookup,
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +0000850 Register receiver,
851 Register name_reg,
852 Register scratch1,
853 Register scratch2,
854 String* name,
855 Label* miss) {
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +0000856 LoadInterceptorCompiler compiler(name_reg);
857 CompileLoadInterceptor(&compiler,
858 this,
859 masm(),
860 object,
861 holder,
862 name,
863 lookup,
864 receiver,
865 scratch1,
866 scratch2,
867 miss);
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +0000868}
869
870
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000871// TODO(1241006): Avoid having lazy compile stubs specialized by the
872// number of arguments. It is not needed anymore.
873Object* StubCompiler::CompileLazyCompile(Code::Flags flags) {
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000874 // Enter an internal frame.
kasperl@chromium.orgb9123622008-09-17 14:05:56 +0000875 __ EnterInternalFrame();
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000876
877 // Push a copy of the function onto the stack.
878 __ push(edi);
879
880 __ push(edi); // function is also the parameter to the runtime call
881 __ CallRuntime(Runtime::kLazyCompile, 1);
882 __ pop(edi);
883
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000884 // Tear down temporary frame.
ager@chromium.org236ad962008-09-25 09:45:57 +0000885 __ LeaveInternalFrame();
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000886
887 // Do a tail-call of the compiled function.
888 __ lea(ecx, FieldOperand(eax, Code::kHeaderSize));
889 __ jmp(Operand(ecx));
890
kasperl@chromium.org7be3c992009-03-12 07:19:55 +0000891 return GetCodeWithFlags(flags, "LazyCompileStub");
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000892}
893
894
895Object* CallStubCompiler::CompileCallField(Object* object,
896 JSObject* holder,
kasperl@chromium.org7be3c992009-03-12 07:19:55 +0000897 int index,
kasperl@chromium.org2abc4502009-07-02 07:00:29 +0000898 String* name) {
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000899 // ----------- S t a t e -------------
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000900 // -- ecx : name
901 // -- esp[0] : return address
902 // -- esp[(argc - n) * 4] : arg[n] (zero-based)
903 // -- ...
904 // -- esp[(argc + 1) * 4] : receiver
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000905 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000906 Label miss;
907
908 // Get the receiver from the stack.
909 const int argc = arguments().immediate();
910 __ mov(edx, Operand(esp, (argc + 1) * kPointerSize));
911
912 // Check that the receiver isn't a smi.
913 __ test(edx, Immediate(kSmiTagMask));
914 __ j(zero, &miss, not_taken);
915
916 // Do the right check and compute the holder register.
917 Register reg =
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +0000918 CheckPrototypes(JSObject::cast(object), edx, holder,
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000919 ebx, eax, name, &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000920
ager@chromium.org7c537e22008-10-16 08:43:32 +0000921 GenerateFastPropertyLoad(masm(), edi, reg, holder, index);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000922
923 // Check that the function really is a function.
924 __ test(edi, Immediate(kSmiTagMask));
925 __ j(zero, &miss, not_taken);
kasperl@chromium.org7be3c992009-03-12 07:19:55 +0000926 __ CmpObjectType(edi, JS_FUNCTION_TYPE, ebx);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000927 __ j(not_equal, &miss, not_taken);
928
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000929 // Patch the receiver on the stack with the global proxy if
930 // necessary.
931 if (object->IsGlobalObject()) {
932 __ mov(edx, FieldOperand(edx, GlobalObject::kGlobalReceiverOffset));
933 __ mov(Operand(esp, (argc + 1) * kPointerSize), edx);
934 }
935
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000936 // Invoke the function.
937 __ InvokeFunction(edi, arguments(), JUMP_FUNCTION);
938
939 // Handle call cache miss.
940 __ bind(&miss);
941 Handle<Code> ic = ComputeCallMiss(arguments().immediate());
ager@chromium.org236ad962008-09-25 09:45:57 +0000942 __ jmp(ic, RelocInfo::CODE_TARGET);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000943
944 // Return the generated code.
kasperl@chromium.org2abc4502009-07-02 07:00:29 +0000945 return GetCode(FIELD, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000946}
947
948
949Object* CallStubCompiler::CompileCallConstant(Object* object,
950 JSObject* holder,
951 JSFunction* function,
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +0000952 String* name,
kasperl@chromium.org2abc4502009-07-02 07:00:29 +0000953 CheckType check) {
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000954 // ----------- S t a t e -------------
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000955 // -- ecx : name
956 // -- esp[0] : return address
957 // -- esp[(argc - n) * 4] : arg[n] (zero-based)
958 // -- ...
959 // -- esp[(argc + 1) * 4] : receiver
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000960 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000961 Label miss;
962
963 // Get the receiver from the stack.
964 const int argc = arguments().immediate();
965 __ mov(edx, Operand(esp, (argc + 1) * kPointerSize));
966
967 // Check that the receiver isn't a smi.
968 if (check != NUMBER_CHECK) {
969 __ test(edx, Immediate(kSmiTagMask));
970 __ j(zero, &miss, not_taken);
971 }
972
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000973 // Make sure that it's okay not to patch the on stack receiver
974 // unless we're doing a receiver map check.
975 ASSERT(!object->IsGlobalObject() || check == RECEIVER_MAP_CHECK);
976
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000977 switch (check) {
978 case RECEIVER_MAP_CHECK:
979 // Check that the maps haven't changed.
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +0000980 CheckPrototypes(JSObject::cast(object), edx, holder,
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000981 ebx, eax, name, &miss);
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +0000982
983 // Patch the receiver on the stack with the global proxy if
984 // necessary.
985 if (object->IsGlobalObject()) {
986 __ mov(edx, FieldOperand(edx, GlobalObject::kGlobalReceiverOffset));
987 __ mov(Operand(esp, (argc + 1) * kPointerSize), edx);
988 }
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000989 break;
990
991 case STRING_CHECK:
992 // Check that the object is a two-byte string or a symbol.
sgjesse@chromium.org846fb742009-12-18 08:56:33 +0000993 __ mov(eax, FieldOperand(edx, HeapObject::kMapOffset));
994 __ movzx_b(eax, FieldOperand(eax, Map::kInstanceTypeOffset));
995 __ cmp(eax, FIRST_NONSTRING_TYPE);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +0000996 __ j(above_equal, &miss, not_taken);
997 // Check that the maps starting from the prototype haven't changed.
998 GenerateLoadGlobalFunctionPrototype(masm(),
999 Context::STRING_FUNCTION_INDEX,
sgjesse@chromium.org846fb742009-12-18 08:56:33 +00001000 eax);
1001 CheckPrototypes(JSObject::cast(object->GetPrototype()), eax, holder,
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001002 ebx, edx, name, &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001003 break;
1004
1005 case NUMBER_CHECK: {
1006 Label fast;
1007 // Check that the object is a smi or a heap number.
1008 __ test(edx, Immediate(kSmiTagMask));
1009 __ j(zero, &fast, taken);
sgjesse@chromium.org846fb742009-12-18 08:56:33 +00001010 __ CmpObjectType(edx, HEAP_NUMBER_TYPE, eax);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001011 __ j(not_equal, &miss, not_taken);
1012 __ bind(&fast);
1013 // Check that the maps starting from the prototype haven't changed.
1014 GenerateLoadGlobalFunctionPrototype(masm(),
1015 Context::NUMBER_FUNCTION_INDEX,
sgjesse@chromium.org846fb742009-12-18 08:56:33 +00001016 eax);
1017 CheckPrototypes(JSObject::cast(object->GetPrototype()), eax, holder,
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001018 ebx, edx, name, &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001019 break;
1020 }
1021
1022 case BOOLEAN_CHECK: {
1023 Label fast;
1024 // Check that the object is a boolean.
1025 __ cmp(edx, Factory::true_value());
1026 __ j(equal, &fast, taken);
1027 __ cmp(edx, Factory::false_value());
1028 __ j(not_equal, &miss, not_taken);
1029 __ bind(&fast);
1030 // Check that the maps starting from the prototype haven't changed.
1031 GenerateLoadGlobalFunctionPrototype(masm(),
1032 Context::BOOLEAN_FUNCTION_INDEX,
sgjesse@chromium.org846fb742009-12-18 08:56:33 +00001033 eax);
1034 CheckPrototypes(JSObject::cast(object->GetPrototype()), eax, holder,
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001035 ebx, edx, name, &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001036 break;
1037 }
1038
1039 case JSARRAY_HAS_FAST_ELEMENTS_CHECK:
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001040 CheckPrototypes(JSObject::cast(object), edx, holder,
sgjesse@chromium.org846fb742009-12-18 08:56:33 +00001041 ebx, eax, name, &miss);
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001042 // Make sure object->HasFastElements().
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001043 // Get the elements array of the object.
1044 __ mov(ebx, FieldOperand(edx, JSObject::kElementsOffset));
1045 // Check that the object is in fast mode (not dictionary).
1046 __ cmp(FieldOperand(ebx, HeapObject::kMapOffset),
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001047 Immediate(Factory::fixed_array_map()));
1048 __ j(not_equal, &miss, not_taken);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001049 break;
1050
1051 default:
1052 UNREACHABLE();
1053 }
1054
1055 // Get the function and setup the context.
ager@chromium.org3bf7b912008-11-17 09:09:45 +00001056 __ mov(edi, Immediate(Handle<JSFunction>(function)));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001057 __ mov(esi, FieldOperand(edi, JSFunction::kContextOffset));
1058
1059 // Jump to the cached code (tail call).
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001060 ASSERT(function->is_compiled());
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001061 Handle<Code> code(function->code());
1062 ParameterCount expected(function->shared()->formal_parameter_count());
ager@chromium.org236ad962008-09-25 09:45:57 +00001063 __ InvokeCode(code, expected, arguments(),
1064 RelocInfo::CODE_TARGET, JUMP_FUNCTION);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001065
1066 // Handle call cache miss.
1067 __ bind(&miss);
1068 Handle<Code> ic = ComputeCallMiss(arguments().immediate());
ager@chromium.org236ad962008-09-25 09:45:57 +00001069 __ jmp(ic, RelocInfo::CODE_TARGET);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001070
1071 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001072 String* function_name = NULL;
1073 if (function->shared()->name()->IsString()) {
1074 function_name = String::cast(function->shared()->name());
1075 }
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001076 return GetCode(CONSTANT_FUNCTION, function_name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001077}
1078
1079
1080Object* CallStubCompiler::CompileCallInterceptor(Object* object,
1081 JSObject* holder,
1082 String* name) {
1083 // ----------- S t a t e -------------
sgjesse@chromium.org846fb742009-12-18 08:56:33 +00001084 // -- ecx : name
1085 // -- esp[0] : return address
1086 // -- esp[(argc - n) * 4] : arg[n] (zero-based)
1087 // -- ...
1088 // -- esp[(argc + 1) * 4] : receiver
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001089 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001090 Label miss;
1091
1092 // Get the number of arguments.
1093 const int argc = arguments().immediate();
1094
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001095 LookupResult lookup;
1096 LookupPostInterceptor(holder, name, &lookup);
1097
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001098 // Get the receiver from the stack.
1099 __ mov(edx, Operand(esp, (argc + 1) * kPointerSize));
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +00001100
sgjesse@chromium.org846fb742009-12-18 08:56:33 +00001101 CallInterceptorCompiler compiler(arguments(), ecx);
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001102 CompileLoadInterceptor(&compiler,
1103 this,
1104 masm(),
1105 JSObject::cast(object),
1106 holder,
1107 name,
1108 &lookup,
1109 edx,
1110 ebx,
sgjesse@chromium.org846fb742009-12-18 08:56:33 +00001111 edi,
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001112 &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001113
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001114 // Restore receiver.
1115 __ mov(edx, Operand(esp, (argc + 1) * kPointerSize));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001116
1117 // Check that the function really is a function.
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001118 __ test(eax, Immediate(kSmiTagMask));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001119 __ j(zero, &miss, not_taken);
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001120 __ CmpObjectType(eax, JS_FUNCTION_TYPE, ebx);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001121 __ j(not_equal, &miss, not_taken);
1122
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +00001123 // Patch the receiver on the stack with the global proxy if
1124 // necessary.
1125 if (object->IsGlobalObject()) {
1126 __ mov(edx, FieldOperand(edx, GlobalObject::kGlobalReceiverOffset));
1127 __ mov(Operand(esp, (argc + 1) * kPointerSize), edx);
1128 }
1129
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001130 // Invoke the function.
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001131 __ mov(edi, eax);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001132 __ InvokeFunction(edi, arguments(), JUMP_FUNCTION);
1133
1134 // Handle load cache miss.
1135 __ bind(&miss);
1136 Handle<Code> ic = ComputeCallMiss(argc);
ager@chromium.org236ad962008-09-25 09:45:57 +00001137 __ jmp(ic, RelocInfo::CODE_TARGET);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001138
1139 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001140 return GetCode(INTERCEPTOR, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001141}
1142
1143
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001144Object* CallStubCompiler::CompileCallGlobal(JSObject* object,
1145 GlobalObject* holder,
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001146 JSGlobalPropertyCell* cell,
1147 JSFunction* function,
1148 String* name) {
1149 // ----------- S t a t e -------------
sgjesse@chromium.org846fb742009-12-18 08:56:33 +00001150 // -- ecx : name
1151 // -- esp[0] : return address
1152 // -- esp[(argc - n) * 4] : arg[n] (zero-based)
1153 // -- ...
1154 // -- esp[(argc + 1) * 4] : receiver
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001155 // -----------------------------------
1156 Label miss;
1157
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001158 // Get the number of arguments.
1159 const int argc = arguments().immediate();
1160
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001161 // Get the receiver from the stack.
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001162 __ mov(edx, Operand(esp, (argc + 1) * kPointerSize));
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001163
1164 // If the object is the holder then we know that it's a global
1165 // object which can only happen for contextual calls. In this case,
1166 // the receiver cannot be a smi.
1167 if (object != holder) {
1168 __ test(edx, Immediate(kSmiTagMask));
1169 __ j(zero, &miss, not_taken);
1170 }
1171
1172 // Check that the maps haven't changed.
sgjesse@chromium.org846fb742009-12-18 08:56:33 +00001173 CheckPrototypes(object, edx, holder, ebx, eax, name, &miss);
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001174
1175 // Get the value from the cell.
1176 __ mov(edi, Immediate(Handle<JSGlobalPropertyCell>(cell)));
1177 __ mov(edi, FieldOperand(edi, JSGlobalPropertyCell::kValueOffset));
1178
1179 // Check that the cell contains the same function.
sgjesse@chromium.org846fb742009-12-18 08:56:33 +00001180 if (Heap::InNewSpace(function)) {
1181 // We can't embed a pointer to a function in new space so we have
1182 // to verify that the shared function info is unchanged. This has
1183 // the nice side effect that multiple closures based on the same
1184 // function can all use this call IC. Before we load through the
1185 // function, we have to verify that it still is a function.
1186 __ test(edi, Immediate(kSmiTagMask));
1187 __ j(zero, &miss, not_taken);
1188 __ CmpObjectType(edi, JS_FUNCTION_TYPE, ebx);
1189 __ j(not_equal, &miss, not_taken);
1190
1191 // Check the shared function info. Make sure it hasn't changed.
1192 __ cmp(FieldOperand(edi, JSFunction::kSharedFunctionInfoOffset),
1193 Immediate(Handle<SharedFunctionInfo>(function->shared())));
1194 __ j(not_equal, &miss, not_taken);
1195 } else {
1196 __ cmp(Operand(edi), Immediate(Handle<JSFunction>(function)));
1197 __ j(not_equal, &miss, not_taken);
1198 }
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001199
1200 // Patch the receiver on the stack with the global proxy.
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001201 if (object->IsGlobalObject()) {
1202 __ mov(edx, FieldOperand(edx, GlobalObject::kGlobalReceiverOffset));
1203 __ mov(Operand(esp, (argc + 1) * kPointerSize), edx);
1204 }
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001205
1206 // Setup the context (function already in edi).
1207 __ mov(esi, FieldOperand(edi, JSFunction::kContextOffset));
1208
1209 // Jump to the cached code (tail call).
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001210 __ IncrementCounter(&Counters::call_global_inline, 1);
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001211 ASSERT(function->is_compiled());
1212 Handle<Code> code(function->code());
1213 ParameterCount expected(function->shared()->formal_parameter_count());
1214 __ InvokeCode(code, expected, arguments(),
1215 RelocInfo::CODE_TARGET, JUMP_FUNCTION);
1216
1217 // Handle call cache miss.
1218 __ bind(&miss);
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001219 __ IncrementCounter(&Counters::call_global_inline_miss, 1);
1220 Handle<Code> ic = ComputeCallMiss(arguments().immediate());
1221 __ jmp(ic, RelocInfo::CODE_TARGET);
1222
1223 // Return the generated code.
1224 return GetCode(NORMAL, name);
1225}
1226
1227
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001228Object* StoreStubCompiler::CompileStoreField(JSObject* object,
1229 int index,
1230 Map* transition,
1231 String* name) {
1232 // ----------- S t a t e -------------
1233 // -- eax : value
1234 // -- ecx : name
1235 // -- esp[0] : return address
1236 // -- esp[4] : receiver
1237 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001238 Label miss;
1239
1240 // Get the object from the stack.
1241 __ mov(ebx, Operand(esp, 1 * kPointerSize));
1242
1243 // Generate store field code. Trashes the name register.
kasperl@chromium.org1accd572008-10-07 10:57:21 +00001244 GenerateStoreField(masm(),
1245 Builtins::StoreIC_ExtendStorage,
1246 object,
1247 index,
1248 transition,
1249 ebx, ecx, edx,
1250 &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001251
1252 // Handle store cache miss.
1253 __ bind(&miss);
ager@chromium.org3bf7b912008-11-17 09:09:45 +00001254 __ mov(ecx, Immediate(Handle<String>(name))); // restore name
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001255 Handle<Code> ic(Builtins::builtin(Builtins::StoreIC_Miss));
ager@chromium.org236ad962008-09-25 09:45:57 +00001256 __ jmp(ic, RelocInfo::CODE_TARGET);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001257
1258 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001259 return GetCode(transition == NULL ? FIELD : MAP_TRANSITION, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001260}
1261
1262
1263Object* StoreStubCompiler::CompileStoreCallback(JSObject* object,
1264 AccessorInfo* callback,
1265 String* name) {
1266 // ----------- S t a t e -------------
1267 // -- eax : value
1268 // -- ecx : name
1269 // -- esp[0] : return address
1270 // -- esp[4] : receiver
1271 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001272 Label miss;
1273
1274 // Get the object from the stack.
1275 __ mov(ebx, Operand(esp, 1 * kPointerSize));
1276
1277 // Check that the object isn't a smi.
1278 __ test(ebx, Immediate(kSmiTagMask));
1279 __ j(zero, &miss, not_taken);
1280
1281 // Check that the map of the object hasn't changed.
1282 __ cmp(FieldOperand(ebx, HeapObject::kMapOffset),
1283 Immediate(Handle<Map>(object->map())));
1284 __ j(not_equal, &miss, not_taken);
1285
1286 // Perform global security token check if needed.
kasperl@chromium.org5a8ca6c2008-10-23 13:57:19 +00001287 if (object->IsJSGlobalProxy()) {
1288 __ CheckAccessGlobalProxy(ebx, edx, &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001289 }
1290
1291 // Stub never generated for non-global objects that require access
1292 // checks.
kasperl@chromium.org5a8ca6c2008-10-23 13:57:19 +00001293 ASSERT(object->IsJSGlobalProxy() || !object->IsAccessCheckNeeded());
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001294
1295 __ pop(ebx); // remove the return address
1296 __ push(Operand(esp, 0)); // receiver
1297 __ push(Immediate(Handle<AccessorInfo>(callback))); // callback info
1298 __ push(ecx); // name
1299 __ push(eax); // value
1300 __ push(ebx); // restore return address
1301
mads.s.ager31e71382008-08-13 09:32:07 +00001302 // Do tail-call to the runtime system.
1303 ExternalReference store_callback_property =
1304 ExternalReference(IC_Utility(IC::kStoreCallbackProperty));
ager@chromium.orga1645e22009-09-09 19:27:10 +00001305 __ TailCallRuntime(store_callback_property, 4, 1);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001306
1307 // Handle store cache miss.
1308 __ bind(&miss);
ager@chromium.org3bf7b912008-11-17 09:09:45 +00001309 __ mov(ecx, Immediate(Handle<String>(name))); // restore name
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001310 Handle<Code> ic(Builtins::builtin(Builtins::StoreIC_Miss));
ager@chromium.org236ad962008-09-25 09:45:57 +00001311 __ jmp(ic, RelocInfo::CODE_TARGET);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001312
1313 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001314 return GetCode(CALLBACKS, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001315}
1316
1317
1318Object* StoreStubCompiler::CompileStoreInterceptor(JSObject* receiver,
1319 String* name) {
1320 // ----------- S t a t e -------------
1321 // -- eax : value
1322 // -- ecx : name
1323 // -- esp[0] : return address
1324 // -- esp[4] : receiver
1325 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001326 Label miss;
1327
1328 // Get the object from the stack.
1329 __ mov(ebx, Operand(esp, 1 * kPointerSize));
1330
1331 // Check that the object isn't a smi.
1332 __ test(ebx, Immediate(kSmiTagMask));
1333 __ j(zero, &miss, not_taken);
1334
1335 // Check that the map of the object hasn't changed.
1336 __ cmp(FieldOperand(ebx, HeapObject::kMapOffset),
1337 Immediate(Handle<Map>(receiver->map())));
1338 __ j(not_equal, &miss, not_taken);
1339
1340 // Perform global security token check if needed.
kasperl@chromium.org5a8ca6c2008-10-23 13:57:19 +00001341 if (receiver->IsJSGlobalProxy()) {
1342 __ CheckAccessGlobalProxy(ebx, edx, &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001343 }
1344
1345 // Stub never generated for non-global objects that require access
1346 // checks.
kasperl@chromium.org5a8ca6c2008-10-23 13:57:19 +00001347 ASSERT(receiver->IsJSGlobalProxy() || !receiver->IsAccessCheckNeeded());
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001348
1349 __ pop(ebx); // remove the return address
1350 __ push(Operand(esp, 0)); // receiver
1351 __ push(ecx); // name
1352 __ push(eax); // value
1353 __ push(ebx); // restore return address
1354
mads.s.ager31e71382008-08-13 09:32:07 +00001355 // Do tail-call to the runtime system.
1356 ExternalReference store_ic_property =
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001357 ExternalReference(IC_Utility(IC::kStoreInterceptorProperty));
ager@chromium.orga1645e22009-09-09 19:27:10 +00001358 __ TailCallRuntime(store_ic_property, 3, 1);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001359
1360 // Handle store cache miss.
1361 __ bind(&miss);
ager@chromium.org3bf7b912008-11-17 09:09:45 +00001362 __ mov(ecx, Immediate(Handle<String>(name))); // restore name
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001363 Handle<Code> ic(Builtins::builtin(Builtins::StoreIC_Miss));
ager@chromium.org236ad962008-09-25 09:45:57 +00001364 __ jmp(ic, RelocInfo::CODE_TARGET);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001365
1366 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001367 return GetCode(INTERCEPTOR, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001368}
1369
1370
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001371Object* StoreStubCompiler::CompileStoreGlobal(GlobalObject* object,
1372 JSGlobalPropertyCell* cell,
1373 String* name) {
1374 // ----------- S t a t e -------------
1375 // -- eax : value
1376 // -- ecx : name
1377 // -- esp[0] : return address
1378 // -- esp[4] : receiver
1379 // -----------------------------------
1380 Label miss;
1381
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001382 // Check that the map of the global has not changed.
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001383 __ mov(ebx, Operand(esp, kPointerSize));
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001384 __ cmp(FieldOperand(ebx, HeapObject::kMapOffset),
1385 Immediate(Handle<Map>(object->map())));
1386 __ j(not_equal, &miss, not_taken);
1387
1388 // Store the value in the cell.
1389 __ mov(ecx, Immediate(Handle<JSGlobalPropertyCell>(cell)));
1390 __ mov(FieldOperand(ecx, JSGlobalPropertyCell::kValueOffset), eax);
1391
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001392 // Return the value (register eax).
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001393 __ IncrementCounter(&Counters::named_store_global_inline, 1);
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001394 __ ret(0);
1395
1396 // Handle store cache miss.
1397 __ bind(&miss);
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001398 __ IncrementCounter(&Counters::named_store_global_inline_miss, 1);
1399 Handle<Code> ic(Builtins::builtin(Builtins::StoreIC_Miss));
1400 __ jmp(ic, RelocInfo::CODE_TARGET);
1401
1402 // Return the generated code.
1403 return GetCode(NORMAL, name);
1404}
1405
1406
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001407Object* KeyedStoreStubCompiler::CompileStoreField(JSObject* object,
1408 int index,
1409 Map* transition,
1410 String* name) {
1411 // ----------- S t a t e -------------
1412 // -- eax : value
1413 // -- esp[0] : return address
1414 // -- esp[4] : key
1415 // -- esp[8] : receiver
1416 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001417 Label miss;
1418
1419 __ IncrementCounter(&Counters::keyed_store_field, 1);
1420
1421 // Get the name from the stack.
1422 __ mov(ecx, Operand(esp, 1 * kPointerSize));
1423 // Check that the name has not changed.
1424 __ cmp(Operand(ecx), Immediate(Handle<String>(name)));
1425 __ j(not_equal, &miss, not_taken);
1426
1427 // Get the object from the stack.
1428 __ mov(ebx, Operand(esp, 2 * kPointerSize));
1429
1430 // Generate store field code. Trashes the name register.
kasperl@chromium.org1accd572008-10-07 10:57:21 +00001431 GenerateStoreField(masm(),
1432 Builtins::KeyedStoreIC_ExtendStorage,
1433 object,
1434 index,
1435 transition,
1436 ebx, ecx, edx,
1437 &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001438
1439 // Handle store cache miss.
1440 __ bind(&miss);
1441 __ DecrementCounter(&Counters::keyed_store_field, 1);
1442 Handle<Code> ic(Builtins::builtin(Builtins::KeyedStoreIC_Miss));
ager@chromium.org236ad962008-09-25 09:45:57 +00001443 __ jmp(ic, RelocInfo::CODE_TARGET);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001444
1445 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001446 return GetCode(transition == NULL ? FIELD : MAP_TRANSITION, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001447}
1448
1449
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001450
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001451Object* LoadStubCompiler::CompileLoadField(JSObject* object,
1452 JSObject* holder,
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001453 int index,
1454 String* name) {
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001455 // ----------- S t a t e -------------
1456 // -- ecx : name
1457 // -- esp[0] : return address
1458 // -- esp[4] : receiver
1459 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001460 Label miss;
1461
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001462 __ mov(eax, Operand(esp, kPointerSize));
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001463 GenerateLoadField(object, holder, eax, ebx, edx, index, name, &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001464 __ bind(&miss);
1465 GenerateLoadMiss(masm(), Code::LOAD_IC);
1466
1467 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001468 return GetCode(FIELD, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001469}
1470
1471
kmillikin@chromium.org13bd2942009-12-16 15:36:05 +00001472Object* LoadStubCompiler::CompileLoadCallback(String* name,
1473 JSObject* object,
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001474 JSObject* holder,
kmillikin@chromium.org13bd2942009-12-16 15:36:05 +00001475 AccessorInfo* callback) {
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001476 // ----------- S t a t e -------------
1477 // -- ecx : name
1478 // -- esp[0] : return address
1479 // -- esp[4] : receiver
1480 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001481 Label miss;
1482
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001483 __ mov(eax, Operand(esp, kPointerSize));
kmillikin@chromium.org13bd2942009-12-16 15:36:05 +00001484 Failure* failure = Failure::InternalError();
1485 bool success = GenerateLoadCallback(object, holder, eax, ecx, ebx, edx,
1486 callback, name, &miss, &failure);
1487 if (!success) return failure;
1488
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001489 __ bind(&miss);
1490 GenerateLoadMiss(masm(), Code::LOAD_IC);
1491
1492 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001493 return GetCode(CALLBACKS, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001494}
1495
1496
1497Object* LoadStubCompiler::CompileLoadConstant(JSObject* object,
1498 JSObject* holder,
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001499 Object* value,
1500 String* name) {
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001501 // ----------- S t a t e -------------
1502 // -- ecx : name
1503 // -- esp[0] : return address
1504 // -- esp[4] : receiver
1505 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001506 Label miss;
1507
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001508 __ mov(eax, Operand(esp, kPointerSize));
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001509 GenerateLoadConstant(object, holder, eax, ebx, edx, value, name, &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001510 __ bind(&miss);
1511 GenerateLoadMiss(masm(), Code::LOAD_IC);
1512
1513 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001514 return GetCode(CONSTANT_FUNCTION, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001515}
1516
1517
1518Object* LoadStubCompiler::CompileLoadInterceptor(JSObject* receiver,
1519 JSObject* holder,
1520 String* name) {
1521 // ----------- S t a t e -------------
1522 // -- ecx : name
1523 // -- esp[0] : return address
1524 // -- esp[4] : receiver
1525 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001526 Label miss;
1527
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001528 LookupResult lookup;
1529 LookupPostInterceptor(holder, name, &lookup);
1530
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001531 __ mov(eax, Operand(esp, kPointerSize));
ager@chromium.orge2902be2009-06-08 12:21:35 +00001532 // TODO(368): Compile in the whole chain: all the interceptors in
1533 // prototypes and ultimate answer.
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001534 GenerateLoadInterceptor(receiver,
ager@chromium.orge2902be2009-06-08 12:21:35 +00001535 holder,
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001536 &lookup,
ager@chromium.orge2902be2009-06-08 12:21:35 +00001537 eax,
1538 ecx,
1539 edx,
1540 ebx,
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001541 name,
ager@chromium.orge2902be2009-06-08 12:21:35 +00001542 &miss);
1543
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001544 __ bind(&miss);
1545 GenerateLoadMiss(masm(), Code::LOAD_IC);
1546
1547 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001548 return GetCode(INTERCEPTOR, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001549}
1550
1551
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001552Object* LoadStubCompiler::CompileLoadGlobal(JSObject* object,
1553 GlobalObject* holder,
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001554 JSGlobalPropertyCell* cell,
1555 String* name,
1556 bool is_dont_delete) {
1557 // ----------- S t a t e -------------
1558 // -- ecx : name
1559 // -- esp[0] : return address
1560 // -- esp[4] : receiver
1561 // -----------------------------------
1562 Label miss;
1563
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001564 // Get the receiver from the stack.
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001565 __ mov(eax, Operand(esp, kPointerSize));
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001566
1567 // If the object is the holder then we know that it's a global
1568 // object which can only happen for contextual loads. In this case,
1569 // the receiver cannot be a smi.
1570 if (object != holder) {
1571 __ test(eax, Immediate(kSmiTagMask));
1572 __ j(zero, &miss, not_taken);
1573 }
1574
1575 // Check that the maps haven't changed.
1576 CheckPrototypes(object, eax, holder, ebx, edx, name, &miss);
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001577
1578 // Get the value from the cell.
1579 __ mov(eax, Immediate(Handle<JSGlobalPropertyCell>(cell)));
1580 __ mov(eax, FieldOperand(eax, JSGlobalPropertyCell::kValueOffset));
1581
1582 // Check for deleted property if property can actually be deleted.
1583 if (!is_dont_delete) {
1584 __ cmp(eax, Factory::the_hole_value());
1585 __ j(equal, &miss, not_taken);
kasperl@chromium.org68ac0092009-07-09 06:00:35 +00001586 } else if (FLAG_debug_code) {
1587 __ cmp(eax, Factory::the_hole_value());
1588 __ Check(not_equal, "DontDelete cells can't contain the hole");
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001589 }
1590
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001591 __ IncrementCounter(&Counters::named_load_global_inline, 1);
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001592 __ ret(0);
1593
1594 __ bind(&miss);
kasperl@chromium.org2abc4502009-07-02 07:00:29 +00001595 __ IncrementCounter(&Counters::named_load_global_inline_miss, 1);
1596 GenerateLoadMiss(masm(), Code::LOAD_IC);
1597
1598 // Return the generated code.
1599 return GetCode(NORMAL, name);
1600}
1601
1602
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001603Object* KeyedLoadStubCompiler::CompileLoadField(String* name,
1604 JSObject* receiver,
1605 JSObject* holder,
1606 int index) {
1607 // ----------- S t a t e -------------
1608 // -- esp[0] : return address
1609 // -- esp[4] : name
1610 // -- esp[8] : receiver
1611 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001612 Label miss;
1613
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001614 __ mov(eax, Operand(esp, kPointerSize));
1615 __ mov(ecx, Operand(esp, 2 * kPointerSize));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001616 __ IncrementCounter(&Counters::keyed_load_field, 1);
1617
1618 // Check that the name has not changed.
1619 __ cmp(Operand(eax), Immediate(Handle<String>(name)));
1620 __ j(not_equal, &miss, not_taken);
1621
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001622 GenerateLoadField(receiver, holder, ecx, ebx, edx, index, name, &miss);
1623
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001624 __ bind(&miss);
1625 __ DecrementCounter(&Counters::keyed_load_field, 1);
1626 GenerateLoadMiss(masm(), Code::KEYED_LOAD_IC);
1627
1628 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001629 return GetCode(FIELD, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001630}
1631
1632
1633Object* KeyedLoadStubCompiler::CompileLoadCallback(String* name,
1634 JSObject* receiver,
1635 JSObject* holder,
1636 AccessorInfo* callback) {
1637 // ----------- S t a t e -------------
1638 // -- esp[0] : return address
1639 // -- esp[4] : name
1640 // -- esp[8] : receiver
1641 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001642 Label miss;
1643
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001644 __ mov(eax, Operand(esp, kPointerSize));
1645 __ mov(ecx, Operand(esp, 2 * kPointerSize));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001646 __ IncrementCounter(&Counters::keyed_load_callback, 1);
1647
1648 // Check that the name has not changed.
1649 __ cmp(Operand(eax), Immediate(Handle<String>(name)));
1650 __ j(not_equal, &miss, not_taken);
1651
kmillikin@chromium.org13bd2942009-12-16 15:36:05 +00001652 Failure* failure = Failure::InternalError();
1653 bool success = GenerateLoadCallback(receiver, holder, ecx, eax, ebx, edx,
1654 callback, name, &miss, &failure);
1655 if (!success) return failure;
1656
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001657 __ bind(&miss);
1658 __ DecrementCounter(&Counters::keyed_load_callback, 1);
1659 GenerateLoadMiss(masm(), Code::KEYED_LOAD_IC);
1660
1661 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001662 return GetCode(CALLBACKS, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001663}
1664
1665
1666Object* KeyedLoadStubCompiler::CompileLoadConstant(String* name,
1667 JSObject* receiver,
1668 JSObject* holder,
1669 Object* value) {
1670 // ----------- S t a t e -------------
1671 // -- esp[0] : return address
1672 // -- esp[4] : name
1673 // -- esp[8] : receiver
1674 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001675 Label miss;
1676
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001677 __ mov(eax, Operand(esp, kPointerSize));
1678 __ mov(ecx, Operand(esp, 2 * kPointerSize));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001679 __ IncrementCounter(&Counters::keyed_load_constant_function, 1);
1680
1681 // Check that the name has not changed.
1682 __ cmp(Operand(eax), Immediate(Handle<String>(name)));
1683 __ j(not_equal, &miss, not_taken);
1684
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001685 GenerateLoadConstant(receiver, holder, ecx, ebx, edx,
1686 value, name, &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001687 __ bind(&miss);
1688 __ DecrementCounter(&Counters::keyed_load_constant_function, 1);
1689 GenerateLoadMiss(masm(), Code::KEYED_LOAD_IC);
1690
1691 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001692 return GetCode(CONSTANT_FUNCTION, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001693}
1694
1695
1696Object* KeyedLoadStubCompiler::CompileLoadInterceptor(JSObject* receiver,
1697 JSObject* holder,
1698 String* name) {
1699 // ----------- S t a t e -------------
1700 // -- esp[0] : return address
1701 // -- esp[4] : name
1702 // -- esp[8] : receiver
1703 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001704 Label miss;
1705
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001706 __ mov(eax, Operand(esp, kPointerSize));
1707 __ mov(ecx, Operand(esp, 2 * kPointerSize));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001708 __ IncrementCounter(&Counters::keyed_load_interceptor, 1);
1709
1710 // Check that the name has not changed.
1711 __ cmp(Operand(eax), Immediate(Handle<String>(name)));
1712 __ j(not_equal, &miss, not_taken);
1713
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001714 LookupResult lookup;
1715 LookupPostInterceptor(holder, name, &lookup);
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001716 GenerateLoadInterceptor(receiver,
ager@chromium.orge2902be2009-06-08 12:21:35 +00001717 holder,
sgjesse@chromium.org0b6db592009-07-30 14:48:31 +00001718 &lookup,
ager@chromium.orge2902be2009-06-08 12:21:35 +00001719 ecx,
1720 eax,
1721 edx,
1722 ebx,
kasperl@chromium.orgdefbd102009-07-13 14:04:26 +00001723 name,
ager@chromium.orge2902be2009-06-08 12:21:35 +00001724 &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001725 __ bind(&miss);
1726 __ DecrementCounter(&Counters::keyed_load_interceptor, 1);
1727 GenerateLoadMiss(masm(), Code::KEYED_LOAD_IC);
1728
1729 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001730 return GetCode(INTERCEPTOR, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001731}
1732
1733
1734
1735
1736Object* KeyedLoadStubCompiler::CompileLoadArrayLength(String* name) {
1737 // ----------- S t a t e -------------
1738 // -- esp[0] : return address
1739 // -- esp[4] : name
1740 // -- esp[8] : receiver
1741 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001742 Label miss;
1743
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001744 __ mov(eax, Operand(esp, kPointerSize));
1745 __ mov(ecx, Operand(esp, 2 * kPointerSize));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001746 __ IncrementCounter(&Counters::keyed_load_array_length, 1);
1747
1748 // Check that the name has not changed.
1749 __ cmp(Operand(eax), Immediate(Handle<String>(name)));
1750 __ j(not_equal, &miss, not_taken);
1751
1752 GenerateLoadArrayLength(masm(), ecx, edx, &miss);
1753 __ bind(&miss);
1754 __ DecrementCounter(&Counters::keyed_load_array_length, 1);
1755 GenerateLoadMiss(masm(), Code::KEYED_LOAD_IC);
1756
1757 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001758 return GetCode(CALLBACKS, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001759}
1760
1761
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +00001762Object* KeyedLoadStubCompiler::CompileLoadStringLength(String* name) {
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001763 // ----------- S t a t e -------------
1764 // -- esp[0] : return address
1765 // -- esp[4] : name
1766 // -- esp[8] : receiver
1767 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001768 Label miss;
1769
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001770 __ mov(eax, Operand(esp, kPointerSize));
1771 __ mov(ecx, Operand(esp, 2 * kPointerSize));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001772 __ IncrementCounter(&Counters::keyed_load_string_length, 1);
1773
1774 // Check that the name has not changed.
1775 __ cmp(Operand(eax), Immediate(Handle<String>(name)));
1776 __ j(not_equal, &miss, not_taken);
1777
kasperl@chromium.org9fe21c62008-10-28 08:53:51 +00001778 GenerateLoadStringLength(masm(), ecx, edx, &miss);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001779 __ bind(&miss);
1780 __ DecrementCounter(&Counters::keyed_load_string_length, 1);
1781 GenerateLoadMiss(masm(), Code::KEYED_LOAD_IC);
1782
1783 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001784 return GetCode(CALLBACKS, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001785}
1786
1787
1788Object* KeyedLoadStubCompiler::CompileLoadFunctionPrototype(String* name) {
1789 // ----------- S t a t e -------------
1790 // -- esp[0] : return address
1791 // -- esp[4] : name
1792 // -- esp[8] : receiver
1793 // -----------------------------------
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001794 Label miss;
1795
kasperl@chromium.orge959c182009-07-27 08:59:04 +00001796 __ mov(eax, Operand(esp, kPointerSize));
1797 __ mov(ecx, Operand(esp, 2 * kPointerSize));
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001798 __ IncrementCounter(&Counters::keyed_load_function_prototype, 1);
1799
1800 // Check that the name has not changed.
1801 __ cmp(Operand(eax), Immediate(Handle<String>(name)));
1802 __ j(not_equal, &miss, not_taken);
1803
1804 GenerateLoadFunctionPrototype(masm(), ecx, edx, ebx, &miss);
1805 __ bind(&miss);
1806 __ DecrementCounter(&Counters::keyed_load_function_prototype, 1);
1807 GenerateLoadMiss(masm(), Code::KEYED_LOAD_IC);
1808
1809 // Return the generated code.
kasperl@chromium.org7be3c992009-03-12 07:19:55 +00001810 return GetCode(CALLBACKS, name);
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001811}
1812
1813
ager@chromium.org18ad94b2009-09-02 08:22:29 +00001814// Specialized stub for constructing objects from functions which only have only
1815// simple assignments of the form this.x = ...; in their body.
1816Object* ConstructStubCompiler::CompileConstructStub(
1817 SharedFunctionInfo* shared) {
1818 // ----------- S t a t e -------------
1819 // -- eax : argc
1820 // -- edi : constructor
1821 // -- esp[0] : return address
1822 // -- esp[4] : last argument
1823 // -----------------------------------
1824 Label generic_stub_call;
1825#ifdef ENABLE_DEBUGGER_SUPPORT
1826 // Check to see whether there are any break points in the function code. If
1827 // there are jump to the generic constructor stub which calls the actual
1828 // code for the function thereby hitting the break points.
1829 __ mov(ebx, FieldOperand(edi, JSFunction::kSharedFunctionInfoOffset));
1830 __ mov(ebx, FieldOperand(ebx, SharedFunctionInfo::kDebugInfoOffset));
1831 __ cmp(ebx, Factory::undefined_value());
1832 __ j(not_equal, &generic_stub_call, not_taken);
1833#endif
1834
1835 // Load the initial map and verify that it is in fact a map.
1836 __ mov(ebx, FieldOperand(edi, JSFunction::kPrototypeOrInitialMapOffset));
1837 // Will both indicate a NULL and a Smi.
1838 __ test(ebx, Immediate(kSmiTagMask));
1839 __ j(zero, &generic_stub_call);
1840 __ CmpObjectType(ebx, MAP_TYPE, ecx);
1841 __ j(not_equal, &generic_stub_call);
1842
1843#ifdef DEBUG
1844 // Cannot construct functions this way.
1845 // edi: constructor
1846 // ebx: initial map
1847 __ CmpInstanceType(ebx, JS_FUNCTION_TYPE);
1848 __ Assert(not_equal, "Function constructed by construct stub.");
1849#endif
1850
1851 // Now allocate the JSObject on the heap by moving the new space allocation
1852 // top forward.
1853 // edi: constructor
1854 // ebx: initial map
1855 __ movzx_b(ecx, FieldOperand(ebx, Map::kInstanceSizeOffset));
1856 __ shl(ecx, kPointerSizeLog2);
sgjesse@chromium.orgc5145742009-10-07 09:00:33 +00001857 __ AllocateInNewSpace(ecx,
1858 edx,
1859 ecx,
1860 no_reg,
1861 &generic_stub_call,
1862 NO_ALLOCATION_FLAGS);
ager@chromium.org18ad94b2009-09-02 08:22:29 +00001863
1864 // Allocated the JSObject, now initialize the fields and add the heap tag.
1865 // ebx: initial map
1866 // edx: JSObject (untagged)
1867 __ mov(Operand(edx, JSObject::kMapOffset), ebx);
1868 __ mov(ebx, Factory::empty_fixed_array());
1869 __ mov(Operand(edx, JSObject::kPropertiesOffset), ebx);
1870 __ mov(Operand(edx, JSObject::kElementsOffset), ebx);
1871
1872 // Push the allocated object to the stack. This is the object that will be
1873 // returned (after it is tagged).
1874 __ push(edx);
1875
1876 // eax: argc
1877 // edx: JSObject (untagged)
1878 // Load the address of the first in-object property into edx.
1879 __ lea(edx, Operand(edx, JSObject::kHeaderSize));
1880 // Calculate the location of the first argument. The stack contains the
1881 // allocated object and the return address on top of the argc arguments.
1882 __ lea(ecx, Operand(esp, eax, times_4, 1 * kPointerSize));
1883
1884 // Use edi for holding undefined which is used in several places below.
1885 __ mov(edi, Factory::undefined_value());
1886
1887 // eax: argc
1888 // ecx: first argument
1889 // edx: first in-object property of the JSObject
1890 // edi: undefined
1891 // Fill the initialized properties with a constant value or a passed argument
1892 // depending on the this.x = ...; assignment in the function.
1893 for (int i = 0; i < shared->this_property_assignments_count(); i++) {
1894 if (shared->IsThisPropertyAssignmentArgument(i)) {
1895 Label not_passed;
1896 // Set the property to undefined.
1897 __ mov(Operand(edx, i * kPointerSize), edi);
1898 // Check if the argument assigned to the property is actually passed.
1899 int arg_number = shared->GetThisPropertyAssignmentArgument(i);
1900 __ cmp(eax, arg_number);
1901 __ j(below_equal, &not_passed);
1902 // Argument passed - find it on the stack.
1903 __ mov(ebx, Operand(ecx, arg_number * -kPointerSize));
1904 __ mov(Operand(edx, i * kPointerSize), ebx);
1905 __ bind(&not_passed);
1906 } else {
1907 // Set the property to the constant value.
1908 Handle<Object> constant(shared->GetThisPropertyAssignmentConstant(i));
1909 __ mov(Operand(edx, i * kPointerSize), Immediate(constant));
1910 }
1911 }
1912
1913 // Fill the unused in-object property fields with undefined.
1914 for (int i = shared->this_property_assignments_count();
1915 i < shared->CalculateInObjectProperties();
1916 i++) {
1917 __ mov(Operand(edx, i * kPointerSize), edi);
1918 }
1919
1920 // Move argc to ebx and retrieve and tag the JSObject to return.
1921 __ mov(ebx, eax);
1922 __ pop(eax);
1923 __ or_(Operand(eax), Immediate(kHeapObjectTag));
1924
1925 // Remove caller arguments and receiver from the stack and return.
1926 __ pop(ecx);
1927 __ lea(esp, Operand(esp, ebx, times_pointer_size, 1 * kPointerSize));
1928 __ push(ecx);
1929 __ IncrementCounter(&Counters::constructed_objects, 1);
1930 __ IncrementCounter(&Counters::constructed_objects_stub, 1);
1931 __ ret(0);
1932
1933 // Jump to the generic stub in case the specialized code cannot handle the
1934 // construction.
1935 __ bind(&generic_stub_call);
1936 Code* code = Builtins::builtin(Builtins::JSConstructStubGeneric);
1937 Handle<Code> generic_construct_stub(code);
1938 __ jmp(generic_construct_stub, RelocInfo::CODE_TARGET);
1939
1940 // Return the generated code.
1941 return GetCode();
1942}
1943
1944
christian.plesner.hansen43d26ec2008-07-03 15:10:15 +00001945#undef __
1946
1947} } // namespace v8::internal