blob: 05152b7ce8efe6b5a1fc4279241501cd0a72aad8 [file] [log] [blame]
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00001// Copyright 2012 the V8 project authors. All rights reserved.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002// Redistribution and use in source and binary forms, with or without
3// modification, are permitted provided that the following conditions are
4// met:
5//
6// * Redistributions of source code must retain the above copyright
7// notice, this list of conditions and the following disclaimer.
8// * Redistributions in binary form must reproduce the above
9// copyright notice, this list of conditions and the following
10// disclaimer in the documentation and/or other materials provided
11// with the distribution.
12// * Neither the name of Google Inc. nor the names of its
13// contributors may be used to endorse or promote products derived
14// from this software without specific prior written permission.
15//
16// THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
17// "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
18// LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
19// A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
20// OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
21// SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
22// LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
23// DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
24// THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
25// (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
26// OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
27
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +000028#include "v8.h"
29
30#if defined(V8_TARGET_ARCH_IA32)
31
kasperl@chromium.orga5551262010-12-07 12:49:48 +000032#include "ia32/lithium-codegen-ia32.h"
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +000033#include "ic.h"
kasperl@chromium.orga5551262010-12-07 12:49:48 +000034#include "code-stubs.h"
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +000035#include "deoptimizer.h"
kasperl@chromium.orga5551262010-12-07 12:49:48 +000036#include "stub-cache.h"
erikcorry0ad885c2011-11-21 13:51:57 +000037#include "codegen.h"
kasperl@chromium.orga5551262010-12-07 12:49:48 +000038
39namespace v8 {
40namespace internal {
41
42
kmillikin@chromium.org31b12772011-02-02 16:08:26 +000043// When invoking builtins, we need to record the safepoint in the middle of
44// the invoke instruction sequence generated by the macro assembler.
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +000045class SafepointGenerator : public CallWrapper {
kasperl@chromium.orga5551262010-12-07 12:49:48 +000046 public:
47 SafepointGenerator(LCodeGen* codegen,
48 LPointerMap* pointers,
ricow@chromium.org27bf2882011-11-17 08:34:43 +000049 Safepoint::DeoptMode mode)
kasperl@chromium.orga5551262010-12-07 12:49:48 +000050 : codegen_(codegen),
51 pointers_(pointers),
ricow@chromium.org27bf2882011-11-17 08:34:43 +000052 deopt_mode_(mode) {}
kasperl@chromium.orga5551262010-12-07 12:49:48 +000053 virtual ~SafepointGenerator() { }
54
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +000055 virtual void BeforeCall(int call_size) const {}
56
57 virtual void AfterCall() const {
ricow@chromium.org27bf2882011-11-17 08:34:43 +000058 codegen_->RecordSafepoint(pointers_, deopt_mode_);
kasperl@chromium.orga5551262010-12-07 12:49:48 +000059 }
60
61 private:
62 LCodeGen* codegen_;
63 LPointerMap* pointers_;
ricow@chromium.org27bf2882011-11-17 08:34:43 +000064 Safepoint::DeoptMode deopt_mode_;
kasperl@chromium.orga5551262010-12-07 12:49:48 +000065};
66
67
68#define __ masm()->
69
70bool LCodeGen::GenerateCode() {
ulan@chromium.org9a21ec42012-03-06 08:42:24 +000071 HPhase phase("Z_Code generation", chunk());
kasperl@chromium.orga5551262010-12-07 12:49:48 +000072 ASSERT(is_unused());
73 status_ = GENERATING;
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +000074
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +000075 // Open a frame scope to indicate that there is a frame on the stack. The
76 // MANUAL indicates that the scope shouldn't actually generate code to set up
77 // the frame (that is done in GeneratePrologue).
78 FrameScope frame_scope(masm_, StackFrame::MANUAL);
79
danno@chromium.org94b0d6f2013-02-04 13:33:20 +000080 support_aligned_spilled_doubles_ = info()->IsOptimizing();
81
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +000082 dynamic_frame_alignment_ = info()->IsOptimizing() &&
83 ((chunk()->num_double_slots() > 2 &&
84 !chunk()->graph()->is_recursive()) ||
85 !info()->osr_ast_id().IsNone());
mmassi@chromium.org7028c052012-06-13 11:51:58 +000086
kasperl@chromium.orga5551262010-12-07 12:49:48 +000087 return GeneratePrologue() &&
88 GenerateBody() &&
89 GenerateDeferredCode() &&
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +000090 GenerateJumpTable() &&
kasperl@chromium.orga5551262010-12-07 12:49:48 +000091 GenerateSafepointTable();
92}
93
94
95void LCodeGen::FinishCode(Handle<Code> code) {
96 ASSERT(is_done());
danno@chromium.org160a7b02011-04-18 15:51:38 +000097 code->set_stack_slots(GetStackSlotCount());
ricow@chromium.org83aa5492011-02-07 12:42:56 +000098 code->set_safepoint_table_offset(safepoints_.GetCodeOffset());
kasperl@chromium.orga5551262010-12-07 12:49:48 +000099 PopulateDeoptimizationData(code);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000100 if (!info()->IsStub()) {
101 Deoptimizer::EnsureRelocSpaceForLazyDeoptimization(code);
102 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000103}
104
105
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000106void LCodeGen::Abort(const char* reason) {
107 info()->set_bailout_reason(reason);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000108 status_ = ABORTED;
109}
110
111
112void LCodeGen::Comment(const char* format, ...) {
113 if (!FLAG_code_comments) return;
114 char buffer[4 * KB];
115 StringBuilder builder(buffer, ARRAY_SIZE(buffer));
116 va_list arguments;
117 va_start(arguments, format);
118 builder.AddFormattedList(format, arguments);
119 va_end(arguments);
120
121 // Copy the string before recording it in the assembler to avoid
122 // issues when the stack allocated buffer goes out of scope.
123 size_t length = builder.position();
124 Vector<char> copy = Vector<char>::New(length + 1);
125 memcpy(copy.start(), builder.Finalize(), copy.length());
126 masm()->RecordComment(copy.start());
127}
128
129
130bool LCodeGen::GeneratePrologue() {
131 ASSERT(is_generating());
132
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000133 if (info()->IsOptimizing()) {
134 ProfileEntryHookStub::MaybeCallEntryHook(masm_);
verwaest@chromium.org753aee42012-07-17 16:15:42 +0000135
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000136#ifdef DEBUG
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000137 if (strlen(FLAG_stop_at) > 0 &&
jkummerow@chromium.org59297c72013-01-09 16:32:23 +0000138 info_->function()->name()->IsUtf8EqualTo(CStrVector(FLAG_stop_at))) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000139 __ int3();
140 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000141#endif
142
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000143 // Strict mode functions and builtins need to replace the receiver
144 // with undefined when called as functions (without an explicit
145 // receiver object). ecx is zero for method calls and non-zero for
146 // function calls.
147 if (!info_->is_classic_mode() || info_->is_native()) {
148 Label ok;
149 __ test(ecx, Operand(ecx));
150 __ j(zero, &ok, Label::kNear);
151 // +1 for return address.
152 int receiver_offset = (scope()->num_parameters() + 1) * kPointerSize;
153 __ mov(Operand(esp, receiver_offset),
154 Immediate(isolate()->factory()->undefined_value()));
155 __ bind(&ok);
156 }
danno@chromium.org40cb8782011-05-25 07:58:50 +0000157
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000158 if (support_aligned_spilled_doubles_ && dynamic_frame_alignment_) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000159 // Move state of dynamic frame alignment into edx.
160 __ mov(edx, Immediate(kNoAlignmentPadding));
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000161
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000162 Label do_not_pad, align_loop;
163 STATIC_ASSERT(kDoubleSize == 2 * kPointerSize);
164 // Align esp + 4 to a multiple of 2 * kPointerSize.
165 __ test(esp, Immediate(kPointerSize));
166 __ j(not_zero, &do_not_pad, Label::kNear);
167 __ push(Immediate(0));
168 __ mov(ebx, esp);
169 __ mov(edx, Immediate(kAlignmentPaddingPushed));
170 // Copy arguments, receiver, and return address.
171 __ mov(ecx, Immediate(scope()->num_parameters() + 2));
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000172
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000173 __ bind(&align_loop);
174 __ mov(eax, Operand(ebx, 1 * kPointerSize));
175 __ mov(Operand(ebx, 0), eax);
176 __ add(Operand(ebx), Immediate(kPointerSize));
177 __ dec(ecx);
178 __ j(not_zero, &align_loop, Label::kNear);
179 __ mov(Operand(ebx, 0), Immediate(kAlignmentZapValue));
180 __ bind(&do_not_pad);
181 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000182 }
183
svenpanne@chromium.org83130cf2012-11-30 10:13:25 +0000184 info()->set_prologue_offset(masm_->pc_offset());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000185 if (NeedsEagerFrame()) {
186 ASSERT(!frame_is_built_);
187 frame_is_built_ = true;
188 __ push(ebp); // Caller's frame pointer.
189 __ mov(ebp, esp);
190 __ push(esi); // Callee's context.
191 if (info()->IsStub()) {
192 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
193 } else {
194 __ push(edi); // Callee's JS function.
195 }
196 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000197
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000198 if (info()->IsOptimizing() &&
199 dynamic_frame_alignment_ &&
200 FLAG_debug_code) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000201 __ test(esp, Immediate(kPointerSize));
202 __ Assert(zero, "frame is expected to be aligned");
203 }
204
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000205 // Reserve space for the stack slots needed by the code.
danno@chromium.org160a7b02011-04-18 15:51:38 +0000206 int slots = GetStackSlotCount();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000207 ASSERT(slots != 0 || !info()->IsOptimizing());
208 if (slots > 0) {
209 if (slots == 1) {
210 if (dynamic_frame_alignment_) {
211 __ push(edx);
212 } else {
213 __ push(Immediate(kNoAlignmentPadding));
mstarzinger@chromium.org32280cf2012-12-06 17:32:37 +0000214 }
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +0000215 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000216 if (FLAG_debug_code) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000217 __ sub(Operand(esp), Immediate(slots * kPointerSize));
218 __ push(eax);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000219 __ mov(Operand(eax), Immediate(slots));
220 Label loop;
221 __ bind(&loop);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000222 __ mov(MemOperand(esp, eax, times_4, 0),
223 Immediate(kSlotsZapValue));
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000224 __ dec(eax);
225 __ j(not_zero, &loop);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000226 __ pop(eax);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000227 } else {
228 __ sub(Operand(esp), Immediate(slots * kPointerSize));
229#ifdef _MSC_VER
230 // On windows, you may not access the stack more than one page below
231 // the most recently mapped page. To make the allocated area randomly
232 // accessible, we write to each page in turn (the value is irrelevant).
233 const int kPageSize = 4 * KB;
234 for (int offset = slots * kPointerSize - kPageSize;
235 offset > 0;
236 offset -= kPageSize) {
237 __ mov(Operand(esp, offset), eax);
238 }
239#endif
240 }
241
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000242 if (support_aligned_spilled_doubles_) {
243 Comment(";;; Store dynamic frame alignment tag for spilled doubles");
244 // Store dynamic frame alignment state in the first local.
245 int offset = JavaScriptFrameConstants::kDynamicAlignmentStateOffset;
246 if (dynamic_frame_alignment_) {
247 __ mov(Operand(ebp, offset), edx);
248 } else {
249 __ mov(Operand(ebp, offset), Immediate(kNoAlignmentPadding));
250 }
251 }
252 }
253
254 if (info()->saves_caller_doubles() && CpuFeatures::IsSupported(SSE2)) {
255 Comment(";;; Save clobbered callee double registers");
256 CpuFeatures::Scope scope(SSE2);
257 int count = 0;
258 BitVector* doubles = chunk()->allocated_double_registers();
259 BitVector::Iterator save_iterator(doubles);
260 while (!save_iterator.Done()) {
261 __ movdbl(MemOperand(esp, count * kDoubleSize),
262 XMMRegister::FromAllocationIndex(save_iterator.Current()));
263 save_iterator.Advance();
264 count++;
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000265 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000266 }
267 }
268
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000269 // Possibly allocate a local context.
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000270 int heap_slots = info_->num_heap_slots() - Context::MIN_CONTEXT_SLOTS;
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000271 if (heap_slots > 0) {
272 Comment(";;; Allocate local context");
273 // Argument to NewContext is the function, which is still in edi.
274 __ push(edi);
275 if (heap_slots <= FastNewContextStub::kMaximumSlots) {
276 FastNewContextStub stub(heap_slots);
277 __ CallStub(&stub);
278 } else {
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +0000279 __ CallRuntime(Runtime::kNewFunctionContext, 1);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000280 }
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000281 RecordSafepoint(Safepoint::kNoLazyDeopt);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000282 // Context is returned in both eax and esi. It replaces the context
283 // passed to us. It's saved in the stack and kept live in esi.
284 __ mov(Operand(ebp, StandardFrameConstants::kContextOffset), esi);
285
286 // Copy parameters into context if necessary.
287 int num_parameters = scope()->num_parameters();
288 for (int i = 0; i < num_parameters; i++) {
jkummerow@chromium.org486075a2011-09-07 12:44:28 +0000289 Variable* var = scope()->parameter(i);
290 if (var->IsContextSlot()) {
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000291 int parameter_offset = StandardFrameConstants::kCallerSPOffset +
292 (num_parameters - 1 - i) * kPointerSize;
293 // Load parameter from stack.
294 __ mov(eax, Operand(ebp, parameter_offset));
295 // Store it in the context.
jkummerow@chromium.org486075a2011-09-07 12:44:28 +0000296 int context_offset = Context::SlotOffset(var->index());
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000297 __ mov(Operand(esi, context_offset), eax);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000298 // Update the write barrier. This clobbers eax and ebx.
299 __ RecordWriteContextSlot(esi,
300 context_offset,
301 eax,
302 ebx,
303 kDontSaveFPRegs);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +0000304 }
305 }
306 Comment(";;; End allocate local context");
307 }
308
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000309 // Trace the call.
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000310 if (FLAG_trace && info()->IsOptimizing()) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +0000311 // We have not executed any compiled code yet, so esi still holds the
312 // incoming context.
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000313 __ CallRuntime(Runtime::kTraceEnter, 0);
314 }
315 return !is_aborted();
316}
317
318
319bool LCodeGen::GenerateBody() {
320 ASSERT(is_generating());
321 bool emit_instructions = true;
322 for (current_instruction_ = 0;
323 !is_aborted() && current_instruction_ < instructions_->length();
324 current_instruction_++) {
325 LInstruction* instr = instructions_->at(current_instruction_);
326 if (instr->IsLabel()) {
327 LLabel* label = LLabel::cast(instr);
328 emit_instructions = !label->HasReplacement();
329 }
330
331 if (emit_instructions) {
yangguo@chromium.orgfb377212012-11-16 14:43:43 +0000332 if (FLAG_code_comments) {
333 HValue* hydrogen = instr->hydrogen_value();
334 if (hydrogen != NULL) {
335 if (hydrogen->IsChange()) {
336 HValue* changed_value = HChange::cast(hydrogen)->value();
337 int use_id = 0;
338 const char* use_mnemo = "dead";
339 if (hydrogen->UseCount() >= 1) {
340 HValue* use_value = hydrogen->uses().value();
341 use_id = use_value->id();
342 use_mnemo = use_value->Mnemonic();
343 }
344 Comment(";;; @%d: %s. <of #%d %s for #%d %s>",
345 current_instruction_, instr->Mnemonic(),
346 changed_value->id(), changed_value->Mnemonic(),
347 use_id, use_mnemo);
348 } else {
349 Comment(";;; @%d: %s. <#%d>", current_instruction_,
350 instr->Mnemonic(), hydrogen->id());
351 }
352 } else {
353 Comment(";;; @%d: %s.", current_instruction_, instr->Mnemonic());
354 }
355 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000356 instr->CompileToNative(this);
357 }
358 }
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000359 EnsureSpaceForLazyDeopt();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000360 return !is_aborted();
361}
362
363
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000364bool LCodeGen::GenerateJumpTable() {
365 Label needs_frame_not_call;
366 Label needs_frame_is_call;
367 for (int i = 0; i < jump_table_.length(); i++) {
368 __ bind(&jump_table_[i].label);
369 Address entry = jump_table_[i].address;
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +0000370 bool is_lazy_deopt = jump_table_[i].is_lazy_deopt;
371 Deoptimizer::BailoutType type =
372 is_lazy_deopt ? Deoptimizer::LAZY : Deoptimizer::EAGER;
373 int id = Deoptimizer::GetDeoptimizationId(entry, type);
374 if (id == Deoptimizer::kNotDeoptimizationEntry) {
375 Comment(";;; jump table entry %d.", i);
376 } else {
377 Comment(";;; jump table entry %d: deoptimization bailout %d.", i, id);
378 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000379 if (jump_table_[i].needs_frame) {
380 __ push(Immediate(ExternalReference::ForDeoptEntry(entry)));
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +0000381 if (is_lazy_deopt) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000382 if (needs_frame_is_call.is_bound()) {
383 __ jmp(&needs_frame_is_call);
384 } else {
385 __ bind(&needs_frame_is_call);
386 __ push(MemOperand(ebp, StandardFrameConstants::kContextOffset));
387 // This variant of deopt can only be used with stubs. Since we don't
388 // have a function pointer to install in the stack frame that we're
389 // building, install a special marker there instead.
390 ASSERT(info()->IsStub());
391 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
392 // Push a PC inside the function so that the deopt code can find where
393 // the deopt comes from. It doesn't have to be the precise return
394 // address of a "calling" LAZY deopt, it only has to be somewhere
395 // inside the code body.
396 Label push_approx_pc;
397 __ call(&push_approx_pc);
398 __ bind(&push_approx_pc);
399 // Push the continuation which was stashed were the ebp should
400 // be. Replace it with the saved ebp.
401 __ push(MemOperand(esp, 3 * kPointerSize));
402 __ mov(MemOperand(esp, 4 * kPointerSize), ebp);
403 __ lea(ebp, MemOperand(esp, 4 * kPointerSize));
404 __ ret(0); // Call the continuation without clobbering registers.
405 }
406 } else {
407 if (needs_frame_not_call.is_bound()) {
408 __ jmp(&needs_frame_not_call);
409 } else {
410 __ bind(&needs_frame_not_call);
411 __ push(MemOperand(ebp, StandardFrameConstants::kContextOffset));
412 // This variant of deopt can only be used with stubs. Since we don't
413 // have a function pointer to install in the stack frame that we're
414 // building, install a special marker there instead.
415 ASSERT(info()->IsStub());
416 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
417 // Push the continuation which was stashed were the ebp should
418 // be. Replace it with the saved ebp.
419 __ push(MemOperand(esp, 2 * kPointerSize));
420 __ mov(MemOperand(esp, 3 * kPointerSize), ebp);
421 __ lea(ebp, MemOperand(esp, 3 * kPointerSize));
422 __ ret(0); // Call the continuation without clobbering registers.
423 }
424 }
425 } else {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +0000426 if (is_lazy_deopt) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000427 __ call(entry, RelocInfo::RUNTIME_ENTRY);
428 } else {
429 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
430 }
431 }
432 }
433 return !is_aborted();
434}
435
436
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000437bool LCodeGen::GenerateDeferredCode() {
438 ASSERT(is_generating());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000439 if (deferred_.length() > 0) {
440 for (int i = 0; !is_aborted() && i < deferred_.length(); i++) {
441 LDeferredCode* code = deferred_[i];
442 __ bind(code->entry());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000443 if (NeedsDeferredFrame()) {
444 Comment(";;; Deferred build frame",
445 code->instruction_index(),
446 code->instr()->Mnemonic());
447 ASSERT(!frame_is_built_);
448 ASSERT(info()->IsStub());
449 frame_is_built_ = true;
450 // Build the frame in such a way that esi isn't trashed.
451 __ push(ebp); // Caller's frame pointer.
452 __ push(Operand(ebp, StandardFrameConstants::kContextOffset));
453 __ push(Immediate(Smi::FromInt(StackFrame::STUB)));
454 __ lea(ebp, Operand(esp, 2 * kPointerSize));
455 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000456 Comment(";;; Deferred code @%d: %s.",
457 code->instruction_index(),
458 code->instr()->Mnemonic());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000459 code->Generate();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000460 if (NeedsDeferredFrame()) {
461 Comment(";;; Deferred destroy frame",
462 code->instruction_index(),
463 code->instr()->Mnemonic());
464 ASSERT(frame_is_built_);
465 frame_is_built_ = false;
466 __ mov(esp, ebp);
467 __ pop(ebp);
468 }
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000469 __ jmp(code->exit());
470 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000471 }
472
473 // Deferred code is the last part of the instruction sequence. Mark
474 // the generated code as done unless we bailed out.
475 if (!is_aborted()) status_ = DONE;
476 return !is_aborted();
477}
478
479
480bool LCodeGen::GenerateSafepointTable() {
481 ASSERT(is_done());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000482 if (!info()->IsStub()) {
483 // For lazy deoptimization we need space to patch a call after every call.
484 // Ensure there is always space for such patching, even if the code ends
485 // in a call.
486 int target_offset = masm()->pc_offset() + Deoptimizer::patch_size();
487 while (masm()->pc_offset() < target_offset) {
488 masm()->nop();
489 }
490 }
danno@chromium.org160a7b02011-04-18 15:51:38 +0000491 safepoints_.Emit(masm(), GetStackSlotCount());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000492 return !is_aborted();
493}
494
495
496Register LCodeGen::ToRegister(int index) const {
497 return Register::FromAllocationIndex(index);
498}
499
500
501XMMRegister LCodeGen::ToDoubleRegister(int index) const {
502 return XMMRegister::FromAllocationIndex(index);
503}
504
505
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000506bool LCodeGen::IsX87TopOfStack(LOperand* op) const {
507 return op->IsDoubleRegister();
508}
509
510
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000511Register LCodeGen::ToRegister(LOperand* op) const {
512 ASSERT(op->IsRegister());
513 return ToRegister(op->index());
514}
515
516
517XMMRegister LCodeGen::ToDoubleRegister(LOperand* op) const {
518 ASSERT(op->IsDoubleRegister());
519 return ToDoubleRegister(op->index());
520}
521
522
523int LCodeGen::ToInteger32(LConstantOperand* op) const {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000524 HConstant* constant = chunk_->LookupConstant(op);
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000525 return constant->Integer32Value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000526}
527
528
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +0000529Handle<Object> LCodeGen::ToHandle(LConstantOperand* op) const {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000530 HConstant* constant = chunk_->LookupConstant(op);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +0000531 ASSERT(chunk_->LookupLiteralRepresentation(op).IsTagged());
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000532 return constant->handle();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +0000533}
534
535
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +0000536double LCodeGen::ToDouble(LConstantOperand* op) const {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000537 HConstant* constant = chunk_->LookupConstant(op);
538 ASSERT(constant->HasDoubleValue());
539 return constant->DoubleValue();
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +0000540}
541
542
danno@chromium.orgbf0c8202011-12-27 10:09:42 +0000543bool LCodeGen::IsInteger32(LConstantOperand* op) const {
544 return chunk_->LookupLiteralRepresentation(op).IsInteger32();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000545}
546
547
548Operand LCodeGen::ToOperand(LOperand* op) const {
549 if (op->IsRegister()) return Operand(ToRegister(op));
550 if (op->IsDoubleRegister()) return Operand(ToDoubleRegister(op));
551 ASSERT(op->IsStackSlot() || op->IsDoubleStackSlot());
jkummerow@chromium.orgac360712013-02-11 09:00:07 +0000552 return Operand(ebp, StackSlotOffset(op->index()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000553}
554
555
erik.corry@gmail.com0511e242011-01-19 11:11:08 +0000556Operand LCodeGen::HighOperand(LOperand* op) {
557 ASSERT(op->IsDoubleStackSlot());
jkummerow@chromium.orgac360712013-02-11 09:00:07 +0000558 return Operand(ebp, StackSlotOffset(op->index()) + kPointerSize);
erik.corry@gmail.com0511e242011-01-19 11:11:08 +0000559}
560
561
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000562void LCodeGen::WriteTranslation(LEnvironment* environment,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000563 Translation* translation,
564 int* arguments_index,
565 int* arguments_count) {
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000566 if (environment == NULL) return;
567
568 // The translation includes one command per value in the environment.
569 int translation_size = environment->values()->length();
570 // The output frame height does not include the parameters.
571 int height = translation_size - environment->parameter_count();
572
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000573 // Function parameters are arguments to the outermost environment. The
574 // arguments index points to the first element of a sequence of tagged
575 // values on the stack that represent the arguments. This needs to be
576 // kept in sync with the LArgumentsElements implementation.
577 *arguments_index = -environment->parameter_count();
578 *arguments_count = environment->parameter_count();
579
580 WriteTranslation(environment->outer(),
581 translation,
582 arguments_index,
583 arguments_count);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000584 bool has_closure_id = !info()->closure().is_null() &&
585 *info()->closure() != *environment->closure();
586 int closure_id = has_closure_id
yangguo@chromium.org5a11aaf2012-06-20 11:29:00 +0000587 ? DefineDeoptimizationLiteral(environment->closure())
588 : Translation::kSelfLiteralId;
ulan@chromium.org967e2702012-02-28 09:49:15 +0000589 switch (environment->frame_type()) {
590 case JS_FUNCTION:
591 translation->BeginJSFrame(environment->ast_id(), closure_id, height);
592 break;
593 case JS_CONSTRUCT:
594 translation->BeginConstructStubFrame(closure_id, translation_size);
595 break;
mstarzinger@chromium.orgde886792012-09-11 13:22:37 +0000596 case JS_GETTER:
597 ASSERT(translation_size == 1);
598 ASSERT(height == 0);
599 translation->BeginGetterStubFrame(closure_id);
600 break;
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000601 case JS_SETTER:
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000602 ASSERT(translation_size == 2);
603 ASSERT(height == 0);
604 translation->BeginSetterStubFrame(closure_id);
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000605 break;
ulan@chromium.org967e2702012-02-28 09:49:15 +0000606 case ARGUMENTS_ADAPTOR:
607 translation->BeginArgumentsAdaptorFrame(closure_id, translation_size);
608 break;
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000609 case STUB:
610 translation->BeginCompiledStubFrame();
611 break;
612 default:
613 UNREACHABLE();
yangguo@chromium.org659ceec2012-01-26 07:37:54 +0000614 }
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000615
616 // Inlined frames which push their arguments cause the index to be
617 // bumped and another stack area to be used for materialization.
618 if (environment->entry() != NULL &&
619 environment->entry()->arguments_pushed()) {
620 *arguments_index = *arguments_index < 0
621 ? GetStackSlotCount()
622 : *arguments_index + *arguments_count;
623 *arguments_count = environment->entry()->arguments_count() + 1;
624 }
625
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000626 for (int i = 0; i < translation_size; ++i) {
627 LOperand* value = environment->values()->at(i);
628 // spilled_registers_ and spilled_double_registers_ are either
629 // both NULL or both set.
630 if (environment->spilled_registers() != NULL && value != NULL) {
631 if (value->IsRegister() &&
632 environment->spilled_registers()[value->index()] != NULL) {
633 translation->MarkDuplicate();
634 AddToTranslation(translation,
635 environment->spilled_registers()[value->index()],
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000636 environment->HasTaggedValueAt(i),
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000637 environment->HasUint32ValueAt(i),
638 *arguments_index,
639 *arguments_count);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000640 } else if (
641 value->IsDoubleRegister() &&
642 environment->spilled_double_registers()[value->index()] != NULL) {
643 translation->MarkDuplicate();
644 AddToTranslation(
645 translation,
646 environment->spilled_double_registers()[value->index()],
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000647 false,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000648 false,
649 *arguments_index,
650 *arguments_count);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000651 }
652 }
653
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000654 AddToTranslation(translation,
655 value,
656 environment->HasTaggedValueAt(i),
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000657 environment->HasUint32ValueAt(i),
658 *arguments_index,
659 *arguments_count);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +0000660 }
661}
662
663
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000664void LCodeGen::AddToTranslation(Translation* translation,
665 LOperand* op,
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000666 bool is_tagged,
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000667 bool is_uint32,
668 int arguments_index,
669 int arguments_count) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000670 if (op == NULL) {
671 // TODO(twuerthinger): Introduce marker operands to indicate that this value
672 // is not present and must be reconstructed from the deoptimizer. Currently
673 // this is only used for the arguments object.
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000674 translation->StoreArgumentsObject(arguments_index, arguments_count);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000675 } else if (op->IsStackSlot()) {
676 if (is_tagged) {
677 translation->StoreStackSlot(op->index());
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000678 } else if (is_uint32) {
679 translation->StoreUint32StackSlot(op->index());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000680 } else {
681 translation->StoreInt32StackSlot(op->index());
682 }
683 } else if (op->IsDoubleStackSlot()) {
684 translation->StoreDoubleStackSlot(op->index());
685 } else if (op->IsArgument()) {
686 ASSERT(is_tagged);
danno@chromium.org160a7b02011-04-18 15:51:38 +0000687 int src_index = GetStackSlotCount() + op->index();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000688 translation->StoreStackSlot(src_index);
689 } else if (op->IsRegister()) {
690 Register reg = ToRegister(op);
691 if (is_tagged) {
692 translation->StoreRegister(reg);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +0000693 } else if (is_uint32) {
694 translation->StoreUint32Register(reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000695 } else {
696 translation->StoreInt32Register(reg);
697 }
698 } else if (op->IsDoubleRegister()) {
699 XMMRegister reg = ToDoubleRegister(op);
700 translation->StoreDoubleRegister(reg);
701 } else if (op->IsConstantOperand()) {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000702 HConstant* constant = chunk()->LookupConstant(LConstantOperand::cast(op));
703 int src_index = DefineDeoptimizationLiteral(constant->handle());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000704 translation->StoreLiteral(src_index);
705 } else {
706 UNREACHABLE();
707 }
708}
709
710
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000711void LCodeGen::CallCodeGeneric(Handle<Code> code,
712 RelocInfo::Mode mode,
713 LInstruction* instr,
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000714 SafepointMode safepoint_mode) {
kmillikin@chromium.org31b12772011-02-02 16:08:26 +0000715 ASSERT(instr != NULL);
716 LPointerMap* pointers = instr->pointer_map();
717 RecordPosition(pointers->position());
718 __ call(code, mode);
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000719 RecordSafepointWithLazyDeopt(instr, safepoint_mode);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +0000720
721 // Signal that we don't inline smi code before these stubs in the
722 // optimizing code generator.
danno@chromium.org40cb8782011-05-25 07:58:50 +0000723 if (code->kind() == Code::BINARY_OP_IC ||
ager@chromium.org5f0c45f2010-12-17 08:51:21 +0000724 code->kind() == Code::COMPARE_IC) {
725 __ nop();
726 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000727}
728
729
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000730void LCodeGen::CallCode(Handle<Code> code,
731 RelocInfo::Mode mode,
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000732 LInstruction* instr) {
733 CallCodeGeneric(code, mode, instr, RECORD_SIMPLE_SAFEPOINT);
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000734}
735
736
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +0000737void LCodeGen::CallRuntime(const Runtime::Function* fun,
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +0000738 int argc,
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000739 LInstruction* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000740 ASSERT(instr != NULL);
kmillikin@chromium.org31b12772011-02-02 16:08:26 +0000741 ASSERT(instr->HasPointerMap());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000742 LPointerMap* pointers = instr->pointer_map();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000743 RecordPosition(pointers->position());
744
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +0000745 __ CallRuntime(fun, argc);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +0000746
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000747 RecordSafepointWithLazyDeopt(instr, RECORD_SIMPLE_SAFEPOINT);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000748
749 ASSERT(info()->is_calling());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000750}
751
752
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000753void LCodeGen::LoadContextFromDeferred(LOperand* context) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000754 if (context->IsRegister()) {
755 if (!ToRegister(context).is(esi)) {
756 __ mov(esi, ToRegister(context));
757 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000758 } else if (context->IsStackSlot()) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000759 __ mov(esi, ToOperand(context));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000760 } else if (context->IsConstantOperand()) {
rossberg@chromium.org657d53b2012-07-12 11:06:03 +0000761 HConstant* constant =
762 chunk_->LookupConstant(LConstantOperand::cast(context));
763 __ LoadHeapObject(esi, Handle<Context>::cast(constant->handle()));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000764 } else {
765 UNREACHABLE();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000766 }
danno@chromium.org94b0d6f2013-02-04 13:33:20 +0000767}
768
769void LCodeGen::CallRuntimeFromDeferred(Runtime::FunctionId id,
770 int argc,
771 LInstruction* instr,
772 LOperand* context) {
773 LoadContextFromDeferred(context);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +0000774
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000775 __ CallRuntimeSaveDoubles(id);
776 RecordSafepointWithRegisters(
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000777 instr->pointer_map(), argc, Safepoint::kNoLazyDeopt);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000778
779 ASSERT(info()->is_calling());
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000780}
781
782
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000783void LCodeGen::RegisterEnvironmentForDeoptimization(
784 LEnvironment* environment, Safepoint::DeoptMode mode) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000785 if (!environment->HasBeenRegistered()) {
786 // Physical stack frame layout:
787 // -x ............. -4 0 ..................................... y
788 // [incoming arguments] [spill slots] [pushed outgoing arguments]
789
790 // Layout of the environment:
791 // 0 ..................................................... size-1
792 // [parameters] [locals] [expression stack including arguments]
793
794 // Layout of the translation:
795 // 0 ........................................................ size - 1 + 4
796 // [expression stack including arguments] [locals] [4 words] [parameters]
797 // |>------------ translation_size ------------<|
798
799 int frame_count = 0;
yangguo@chromium.org659ceec2012-01-26 07:37:54 +0000800 int jsframe_count = 0;
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000801 int args_index = 0;
802 int args_count = 0;
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000803 for (LEnvironment* e = environment; e != NULL; e = e->outer()) {
804 ++frame_count;
ulan@chromium.org967e2702012-02-28 09:49:15 +0000805 if (e->frame_type() == JS_FUNCTION) {
yangguo@chromium.org659ceec2012-01-26 07:37:54 +0000806 ++jsframe_count;
807 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000808 }
ulan@chromium.org56c14af2012-09-20 12:51:09 +0000809 Translation translation(&translations_, frame_count, jsframe_count, zone());
810 WriteTranslation(environment, &translation, &args_index, &args_count);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000811 int deoptimization_index = deoptimizations_.length();
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000812 int pc_offset = masm()->pc_offset();
813 environment->Register(deoptimization_index,
814 translation.index(),
815 (mode == Safepoint::kLazyDeopt) ? pc_offset : -1);
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000816 deoptimizations_.Add(environment, zone());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000817 }
818}
819
820
821void LCodeGen::DeoptimizeIf(Condition cc, LEnvironment* environment) {
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000822 RegisterEnvironmentForDeoptimization(environment, Safepoint::kNoLazyDeopt);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000823 ASSERT(environment->HasBeenRegistered());
824 int id = environment->deoptimization_index();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000825 ASSERT(info()->IsOptimizing() || info()->IsStub());
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +0000826 Deoptimizer::BailoutType bailout_type = info()->IsStub()
827 ? Deoptimizer::LAZY
828 : Deoptimizer::EAGER;
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000829 Address entry = Deoptimizer::GetDeoptimizationEntry(id, bailout_type);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000830 if (entry == NULL) {
831 Abort("bailout was not prepared");
832 return;
833 }
834
835 if (FLAG_deopt_every_n_times != 0) {
836 Handle<SharedFunctionInfo> shared(info_->shared_info());
837 Label no_deopt;
838 __ pushfd();
839 __ push(eax);
840 __ push(ebx);
841 __ mov(ebx, shared);
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000842 __ mov(eax,
843 FieldOperand(ebx, SharedFunctionInfo::kStressDeoptCounterOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000844 __ sub(Operand(eax), Immediate(Smi::FromInt(1)));
karlklose@chromium.org83a47282011-05-11 11:54:09 +0000845 __ j(not_zero, &no_deopt, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000846 if (FLAG_trap_on_deopt) __ int3();
847 __ mov(eax, Immediate(Smi::FromInt(FLAG_deopt_every_n_times)));
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000848 __ mov(FieldOperand(ebx, SharedFunctionInfo::kStressDeoptCounterOffset),
849 eax);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000850 __ pop(ebx);
851 __ pop(eax);
852 __ popfd();
853 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
854
855 __ bind(&no_deopt);
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000856 __ mov(FieldOperand(ebx, SharedFunctionInfo::kStressDeoptCounterOffset),
857 eax);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000858 __ pop(ebx);
859 __ pop(eax);
860 __ popfd();
861 }
862
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000863 ASSERT(info()->IsStub() || frame_is_built_);
864 bool lazy_deopt_needed = info()->IsStub();
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000865 if (cc == no_condition) {
866 if (FLAG_trap_on_deopt) __ int3();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000867 if (lazy_deopt_needed) {
868 __ call(entry, RelocInfo::RUNTIME_ENTRY);
869 } else {
870 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
871 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000872 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000873 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000874 if (FLAG_trap_on_deopt) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +0000875 __ j(NegateCondition(cc), &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000876 __ int3();
mstarzinger@chromium.org32280cf2012-12-06 17:32:37 +0000877 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +0000878 if (!lazy_deopt_needed && frame_is_built_) {
879 if (FLAG_trap_on_deopt) {
880 __ jmp(entry, RelocInfo::RUNTIME_ENTRY);
881 } else {
882 __ j(cc, entry, RelocInfo::RUNTIME_ENTRY);
883 }
884 } else {
885 // We often have several deopts to the same entry, reuse the last
886 // jump entry if this is the case.
887 if (jump_table_.is_empty() ||
888 jump_table_.last().address != entry ||
889 jump_table_.last().needs_frame != !frame_is_built_ ||
890 jump_table_.last().is_lazy_deopt != lazy_deopt_needed) {
891 JumpTableEntry table_entry(entry, !frame_is_built_, lazy_deopt_needed);
892 jump_table_.Add(table_entry, zone());
893 }
894 if (FLAG_trap_on_deopt) {
895 __ jmp(&jump_table_.last().label);
896 } else {
897 __ j(cc, &jump_table_.last().label);
898 }
899 }
900 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000901 }
902}
903
904
905void LCodeGen::PopulateDeoptimizationData(Handle<Code> code) {
906 int length = deoptimizations_.length();
907 if (length == 0) return;
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000908 Handle<DeoptimizationInputData> data =
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +0000909 factory()->NewDeoptimizationInputData(length, TENURED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000910
ager@chromium.org9ee27ae2011-03-02 13:43:26 +0000911 Handle<ByteArray> translations = translations_.CreateByteArray();
912 data->SetTranslationByteArray(*translations);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000913 data->SetInlinedFunctionCount(Smi::FromInt(inlined_function_count_));
914
915 Handle<FixedArray> literals =
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +0000916 factory()->NewFixedArray(deoptimization_literals_.length(), TENURED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000917 for (int i = 0; i < deoptimization_literals_.length(); i++) {
918 literals->set(i, *deoptimization_literals_[i]);
919 }
920 data->SetLiteralArray(*literals);
921
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000922 data->SetOsrAstId(Smi::FromInt(info_->osr_ast_id().ToInt()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000923 data->SetOsrPcOffset(Smi::FromInt(osr_pc_offset_));
924
925 // Populate the deoptimization entries.
926 for (int i = 0; i < length; i++) {
927 LEnvironment* env = deoptimizations_[i];
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +0000928 data->SetAstId(i, env->ast_id());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000929 data->SetTranslationIndex(i, Smi::FromInt(env->translation_index()));
930 data->SetArgumentsStackHeight(i,
931 Smi::FromInt(env->arguments_stack_height()));
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000932 data->SetPc(i, Smi::FromInt(env->pc_offset()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000933 }
934 code->set_deoptimization_data(*data);
935}
936
937
938int LCodeGen::DefineDeoptimizationLiteral(Handle<Object> literal) {
939 int result = deoptimization_literals_.length();
940 for (int i = 0; i < deoptimization_literals_.length(); ++i) {
941 if (deoptimization_literals_[i].is_identical_to(literal)) return i;
942 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000943 deoptimization_literals_.Add(literal, zone());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000944 return result;
945}
946
947
948void LCodeGen::PopulateDeoptimizationLiteralsWithInlinedFunctions() {
949 ASSERT(deoptimization_literals_.length() == 0);
950
951 const ZoneList<Handle<JSFunction> >* inlined_closures =
952 chunk()->inlined_closures();
953
954 for (int i = 0, length = inlined_closures->length();
955 i < length;
956 i++) {
957 DefineDeoptimizationLiteral(inlined_closures->at(i));
958 }
959
960 inlined_function_count_ = deoptimization_literals_.length();
961}
962
963
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000964void LCodeGen::RecordSafepointWithLazyDeopt(
965 LInstruction* instr, SafepointMode safepoint_mode) {
966 if (safepoint_mode == RECORD_SIMPLE_SAFEPOINT) {
967 RecordSafepoint(instr->pointer_map(), Safepoint::kLazyDeopt);
968 } else {
969 ASSERT(safepoint_mode == RECORD_SAFEPOINT_WITH_REGISTERS_AND_NO_ARGUMENTS);
970 RecordSafepointWithRegisters(
971 instr->pointer_map(), 0, Safepoint::kLazyDeopt);
972 }
973}
974
975
ager@chromium.org378b34e2011-01-28 08:04:38 +0000976void LCodeGen::RecordSafepoint(
977 LPointerMap* pointers,
978 Safepoint::Kind kind,
979 int arguments,
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000980 Safepoint::DeoptMode deopt_mode) {
karlklose@chromium.org44bc7082011-04-11 12:33:05 +0000981 ASSERT(kind == expected_safepoint_kind_);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +0000982 const ZoneList<LOperand*>* operands = pointers->GetNormalizedOperands();
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000983 Safepoint safepoint =
984 safepoints_.DefineSafepoint(masm(), kind, arguments, deopt_mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000985 for (int i = 0; i < operands->length(); i++) {
986 LOperand* pointer = operands->at(i);
987 if (pointer->IsStackSlot()) {
rossberg@chromium.org400388e2012-06-06 09:29:22 +0000988 safepoint.DefinePointerSlot(pointer->index(), zone());
ager@chromium.org378b34e2011-01-28 08:04:38 +0000989 } else if (pointer->IsRegister() && (kind & Safepoint::kWithRegisters)) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +0000990 safepoint.DefinePointerRegister(ToRegister(pointer), zone());
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000991 }
992 }
ager@chromium.org378b34e2011-01-28 08:04:38 +0000993}
994
995
996void LCodeGen::RecordSafepoint(LPointerMap* pointers,
ricow@chromium.org27bf2882011-11-17 08:34:43 +0000997 Safepoint::DeoptMode mode) {
998 RecordSafepoint(pointers, Safepoint::kSimple, 0, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +0000999}
1000
1001
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001002void LCodeGen::RecordSafepoint(Safepoint::DeoptMode mode) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +00001003 LPointerMap empty_pointers(RelocInfo::kNoPosition, zone());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001004 RecordSafepoint(&empty_pointers, mode);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00001005}
1006
1007
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001008void LCodeGen::RecordSafepointWithRegisters(LPointerMap* pointers,
1009 int arguments,
ricow@chromium.org27bf2882011-11-17 08:34:43 +00001010 Safepoint::DeoptMode mode) {
1011 RecordSafepoint(pointers, Safepoint::kWithRegisters, arguments, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001012}
1013
1014
1015void LCodeGen::RecordPosition(int position) {
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00001016 if (position == RelocInfo::kNoPosition) return;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001017 masm()->positions_recorder()->RecordPosition(position);
1018}
1019
1020
1021void LCodeGen::DoLabel(LLabel* label) {
1022 if (label->is_loop_header()) {
1023 Comment(";;; B%d - LOOP entry", label->block_id());
1024 } else {
1025 Comment(";;; B%d", label->block_id());
1026 }
1027 __ bind(label->label());
1028 current_block_ = label->block_id();
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001029 DoGap(label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001030}
1031
1032
1033void LCodeGen::DoParallelMove(LParallelMove* move) {
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00001034 resolver_.Resolve(move);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001035}
1036
1037
1038void LCodeGen::DoGap(LGap* gap) {
1039 for (int i = LGap::FIRST_INNER_POSITION;
1040 i <= LGap::LAST_INNER_POSITION;
1041 i++) {
1042 LGap::InnerPosition inner_pos = static_cast<LGap::InnerPosition>(i);
1043 LParallelMove* move = gap->GetParallelMove(inner_pos);
1044 if (move != NULL) DoParallelMove(move);
1045 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001046}
1047
1048
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001049void LCodeGen::DoInstructionGap(LInstructionGap* instr) {
1050 DoGap(instr);
1051}
1052
1053
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001054void LCodeGen::DoParameter(LParameter* instr) {
1055 // Nothing to do.
1056}
1057
1058
1059void LCodeGen::DoCallStub(LCallStub* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00001060 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001061 ASSERT(ToRegister(instr->result()).is(eax));
1062 switch (instr->hydrogen()->major_key()) {
1063 case CodeStub::RegExpConstructResult: {
1064 RegExpConstructResultStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001065 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001066 break;
1067 }
1068 case CodeStub::RegExpExec: {
1069 RegExpExecStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001070 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001071 break;
1072 }
1073 case CodeStub::SubString: {
1074 SubStringStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001075 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001076 break;
1077 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001078 case CodeStub::NumberToString: {
1079 NumberToStringStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001080 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001081 break;
1082 }
1083 case CodeStub::StringAdd: {
1084 StringAddStub stub(NO_STRING_ADD_FLAGS);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001085 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001086 break;
1087 }
1088 case CodeStub::StringCompare: {
1089 StringCompareStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001090 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001091 break;
1092 }
1093 case CodeStub::TranscendentalCache: {
whesse@chromium.org023421e2010-12-21 12:19:12 +00001094 TranscendentalCacheStub stub(instr->transcendental_type(),
1095 TranscendentalCacheStub::TAGGED);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001096 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001097 break;
1098 }
1099 default:
1100 UNREACHABLE();
1101 }
1102}
1103
1104
1105void LCodeGen::DoUnknownOSRValue(LUnknownOSRValue* instr) {
1106 // Nothing to do.
1107}
1108
1109
1110void LCodeGen::DoModI(LModI* instr) {
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001111 if (instr->hydrogen()->HasPowerOf2Divisor()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001112 Register dividend = ToRegister(instr->left());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001113
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001114 int32_t divisor =
1115 HConstant::cast(instr->hydrogen()->right())->Integer32Value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001116
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001117 if (divisor < 0) divisor = -divisor;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001118
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001119 Label positive_dividend, done;
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001120 __ test(dividend, Operand(dividend));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001121 __ j(not_sign, &positive_dividend, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001122 __ neg(dividend);
1123 __ and_(dividend, divisor - 1);
1124 __ neg(dividend);
1125 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001126 __ j(not_zero, &done, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001127 DeoptimizeIf(no_condition, instr->environment());
whesse@chromium.org7b260152011-06-20 15:33:18 +00001128 } else {
1129 __ jmp(&done, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001130 }
1131 __ bind(&positive_dividend);
1132 __ and_(dividend, divisor - 1);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001133 __ bind(&done);
1134 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001135 Label done, remainder_eq_dividend, slow, do_subtraction, both_positive;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001136 Register left_reg = ToRegister(instr->left());
1137 Register right_reg = ToRegister(instr->right());
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001138 Register result_reg = ToRegister(instr->result());
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001139
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001140 ASSERT(left_reg.is(eax));
1141 ASSERT(result_reg.is(edx));
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001142 ASSERT(!right_reg.is(eax));
1143 ASSERT(!right_reg.is(edx));
1144
1145 // Check for x % 0.
1146 if (instr->hydrogen()->CheckFlag(HValue::kCanBeDivByZero)) {
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001147 __ test(right_reg, Operand(right_reg));
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001148 DeoptimizeIf(zero, instr->environment());
1149 }
1150
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001151 __ test(left_reg, Operand(left_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001152 __ j(zero, &remainder_eq_dividend, Label::kNear);
1153 __ j(sign, &slow, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001154
1155 __ test(right_reg, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001156 __ j(not_sign, &both_positive, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001157 // The sign of the divisor doesn't matter.
1158 __ neg(right_reg);
1159
1160 __ bind(&both_positive);
1161 // If the dividend is smaller than the nonnegative
1162 // divisor, the dividend is the result.
1163 __ cmp(left_reg, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001164 __ j(less, &remainder_eq_dividend, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001165
1166 // Check if the divisor is a PowerOfTwo integer.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001167 Register scratch = ToRegister(instr->temp());
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001168 __ mov(scratch, right_reg);
1169 __ sub(Operand(scratch), Immediate(1));
1170 __ test(scratch, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001171 __ j(not_zero, &do_subtraction, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001172 __ and_(left_reg, Operand(scratch));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001173 __ jmp(&remainder_eq_dividend, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001174
1175 __ bind(&do_subtraction);
1176 const int kUnfolds = 3;
1177 // Try a few subtractions of the dividend.
1178 __ mov(scratch, left_reg);
1179 for (int i = 0; i < kUnfolds; i++) {
1180 // Reduce the dividend by the divisor.
1181 __ sub(left_reg, Operand(right_reg));
1182 // Check if the dividend is less than the divisor.
1183 __ cmp(left_reg, Operand(right_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001184 __ j(less, &remainder_eq_dividend, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001185 }
1186 __ mov(left_reg, scratch);
1187
1188 // Slow case, using idiv instruction.
1189 __ bind(&slow);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001190
1191 // Check for (kMinInt % -1).
1192 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1193 Label left_not_min_int;
1194 __ cmp(left_reg, kMinInt);
1195 __ j(not_zero, &left_not_min_int, Label::kNear);
1196 __ cmp(right_reg, -1);
1197 DeoptimizeIf(zero, instr->environment());
1198 __ bind(&left_not_min_int);
1199 }
1200
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001201 // Sign extend to edx.
1202 __ cdq();
1203
1204 // Check for (0 % -x) that will produce negative zero.
1205 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001206 Label positive_left;
1207 Label done;
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001208 __ test(left_reg, Operand(left_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001209 __ j(not_sign, &positive_left, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001210 __ idiv(right_reg);
1211
1212 // Test the remainder for 0, because then the result would be -0.
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001213 __ test(result_reg, Operand(result_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001214 __ j(not_zero, &done, Label::kNear);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00001215
1216 DeoptimizeIf(no_condition, instr->environment());
1217 __ bind(&positive_left);
1218 __ idiv(right_reg);
1219 __ bind(&done);
1220 } else {
1221 __ idiv(right_reg);
1222 }
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001223 __ jmp(&done, Label::kNear);
sgjesse@chromium.org8e8294a2011-05-02 14:30:53 +00001224
1225 __ bind(&remainder_eq_dividend);
1226 __ mov(result_reg, left_reg);
1227
1228 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001229 }
1230}
1231
1232
1233void LCodeGen::DoDivI(LDivI* instr) {
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001234 if (!instr->is_flooring() && instr->hydrogen()->HasPowerOf2Divisor()) {
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +00001235 Register dividend = ToRegister(instr->left());
1236 int32_t divisor =
1237 HConstant::cast(instr->hydrogen()->right())->Integer32Value();
1238 int32_t test_value = 0;
1239 int32_t power = 0;
1240
1241 if (divisor > 0) {
1242 test_value = divisor - 1;
1243 power = WhichPowerOf2(divisor);
1244 } else {
1245 // Check for (0 / -x) that will produce negative zero.
1246 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1247 __ test(dividend, Operand(dividend));
1248 DeoptimizeIf(zero, instr->environment());
1249 }
1250 // Check for (kMinInt / -1).
1251 if (divisor == -1 && instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1252 __ cmp(dividend, kMinInt);
1253 DeoptimizeIf(zero, instr->environment());
1254 }
1255 test_value = - divisor - 1;
1256 power = WhichPowerOf2(-divisor);
1257 }
1258
1259 if (test_value != 0) {
1260 // Deoptimize if remainder is not 0.
1261 __ test(dividend, Immediate(test_value));
1262 DeoptimizeIf(not_zero, instr->environment());
1263 __ sar(dividend, power);
1264 }
1265
1266 if (divisor < 0) __ neg(dividend);
1267
1268 return;
1269 }
1270
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001271 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001272 ASSERT(ToRegister(instr->result()).is(eax));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001273 ASSERT(ToRegister(instr->left()).is(eax));
1274 ASSERT(!ToRegister(instr->right()).is(eax));
1275 ASSERT(!ToRegister(instr->right()).is(edx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001276
1277 Register left_reg = eax;
1278
1279 // Check for x / 0.
1280 Register right_reg = ToRegister(right);
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001281 if (instr->hydrogen_value()->CheckFlag(HValue::kCanBeDivByZero)) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001282 __ test(right_reg, ToOperand(right));
1283 DeoptimizeIf(zero, instr->environment());
1284 }
1285
1286 // Check for (0 / -x) that will produce negative zero.
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001287 if (instr->hydrogen_value()->CheckFlag(HValue::kBailoutOnMinusZero)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001288 Label left_not_zero;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001289 __ test(left_reg, Operand(left_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001290 __ j(not_zero, &left_not_zero, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001291 __ test(right_reg, ToOperand(right));
1292 DeoptimizeIf(sign, instr->environment());
1293 __ bind(&left_not_zero);
1294 }
1295
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +00001296 // Check for (kMinInt / -1).
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001297 if (instr->hydrogen_value()->CheckFlag(HValue::kCanOverflow)) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001298 Label left_not_min_int;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001299 __ cmp(left_reg, kMinInt);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001300 __ j(not_zero, &left_not_min_int, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001301 __ cmp(right_reg, -1);
1302 DeoptimizeIf(zero, instr->environment());
1303 __ bind(&left_not_min_int);
1304 }
1305
1306 // Sign extend to edx.
1307 __ cdq();
1308 __ idiv(right_reg);
1309
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00001310 if (!instr->is_flooring()) {
1311 // Deoptimize if remainder is not 0.
1312 __ test(edx, Operand(edx));
1313 DeoptimizeIf(not_zero, instr->environment());
1314 } else {
1315 Label done;
1316 __ test(edx, edx);
1317 __ j(zero, &done, Label::kNear);
1318 __ xor_(edx, right_reg);
1319 __ sar(edx, 31);
1320 __ add(eax, edx);
1321 __ bind(&done);
1322 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001323}
1324
1325
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001326void LCodeGen::DoMathFloorOfDiv(LMathFloorOfDiv* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001327 ASSERT(instr->right()->IsConstantOperand());
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001328
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001329 Register dividend = ToRegister(instr->left());
1330 int32_t divisor = ToInteger32(LConstantOperand::cast(instr->right()));
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001331 Register result = ToRegister(instr->result());
1332
1333 switch (divisor) {
1334 case 0:
1335 DeoptimizeIf(no_condition, instr->environment());
1336 return;
1337
1338 case 1:
1339 __ Move(result, dividend);
1340 return;
1341
1342 case -1:
1343 __ Move(result, dividend);
1344 __ neg(result);
1345 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1346 DeoptimizeIf(zero, instr->environment());
1347 }
1348 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1349 DeoptimizeIf(overflow, instr->environment());
1350 }
1351 return;
1352 }
1353
1354 uint32_t divisor_abs = abs(divisor);
1355 if (IsPowerOf2(divisor_abs)) {
1356 int32_t power = WhichPowerOf2(divisor_abs);
1357 if (divisor < 0) {
1358 // Input[dividend] is clobbered.
1359 // The sequence is tedious because neg(dividend) might overflow.
1360 __ mov(result, dividend);
1361 __ sar(dividend, 31);
1362 __ neg(result);
1363 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1364 DeoptimizeIf(zero, instr->environment());
1365 }
1366 __ shl(dividend, 32 - power);
1367 __ sar(result, power);
1368 __ not_(dividend);
1369 // Clear result.sign if dividend.sign is set.
1370 __ and_(result, dividend);
1371 } else {
1372 __ Move(result, dividend);
1373 __ sar(result, power);
1374 }
1375 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001376 ASSERT(ToRegister(instr->left()).is(eax));
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001377 ASSERT(ToRegister(instr->result()).is(edx));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001378 Register scratch = ToRegister(instr->temp());
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00001379
1380 // Find b which: 2^b < divisor_abs < 2^(b+1).
1381 unsigned b = 31 - CompilerIntrinsics::CountLeadingZeros(divisor_abs);
1382 unsigned shift = 32 + b; // Precision +1bit (effectively).
1383 double multiplier_f =
1384 static_cast<double>(static_cast<uint64_t>(1) << shift) / divisor_abs;
1385 int64_t multiplier;
1386 if (multiplier_f - floor(multiplier_f) < 0.5) {
1387 multiplier = static_cast<int64_t>(floor(multiplier_f));
1388 } else {
1389 multiplier = static_cast<int64_t>(floor(multiplier_f)) + 1;
1390 }
1391 // The multiplier is a uint32.
1392 ASSERT(multiplier > 0 &&
1393 multiplier < (static_cast<int64_t>(1) << 32));
1394 __ mov(scratch, dividend);
1395 if (divisor < 0 &&
1396 instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1397 __ test(dividend, dividend);
1398 DeoptimizeIf(zero, instr->environment());
1399 }
1400 __ mov(edx, static_cast<int32_t>(multiplier));
1401 __ imul(edx);
1402 if (static_cast<int32_t>(multiplier) < 0) {
1403 __ add(edx, scratch);
1404 }
1405 Register reg_lo = eax;
1406 Register reg_byte_scratch = scratch;
1407 if (!reg_byte_scratch.is_byte_register()) {
1408 __ xchg(reg_lo, reg_byte_scratch);
1409 reg_lo = scratch;
1410 reg_byte_scratch = eax;
1411 }
1412 if (divisor < 0) {
1413 __ xor_(reg_byte_scratch, reg_byte_scratch);
1414 __ cmp(reg_lo, 0x40000000);
1415 __ setcc(above, reg_byte_scratch);
1416 __ neg(edx);
1417 __ sub(edx, reg_byte_scratch);
1418 } else {
1419 __ xor_(reg_byte_scratch, reg_byte_scratch);
1420 __ cmp(reg_lo, 0xC0000000);
1421 __ setcc(above_equal, reg_byte_scratch);
1422 __ add(edx, reg_byte_scratch);
1423 }
1424 __ sar(edx, shift - 32);
1425 }
1426}
1427
1428
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001429void LCodeGen::DoMulI(LMulI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001430 Register left = ToRegister(instr->left());
1431 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001432
1433 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001434 __ mov(ToRegister(instr->temp()), left);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001435 }
1436
1437 if (right->IsConstantOperand()) {
ricow@chromium.orgbadaffc2011-03-17 12:15:27 +00001438 // Try strength reductions on the multiplication.
1439 // All replacement instructions are at most as long as the imul
1440 // and have better latency.
1441 int constant = ToInteger32(LConstantOperand::cast(right));
1442 if (constant == -1) {
1443 __ neg(left);
1444 } else if (constant == 0) {
1445 __ xor_(left, Operand(left));
1446 } else if (constant == 2) {
1447 __ add(left, Operand(left));
1448 } else if (!instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1449 // If we know that the multiplication can't overflow, it's safe to
1450 // use instructions that don't set the overflow flag for the
1451 // multiplication.
1452 switch (constant) {
1453 case 1:
1454 // Do nothing.
1455 break;
1456 case 3:
1457 __ lea(left, Operand(left, left, times_2, 0));
1458 break;
1459 case 4:
1460 __ shl(left, 2);
1461 break;
1462 case 5:
1463 __ lea(left, Operand(left, left, times_4, 0));
1464 break;
1465 case 8:
1466 __ shl(left, 3);
1467 break;
1468 case 9:
1469 __ lea(left, Operand(left, left, times_8, 0));
1470 break;
1471 case 16:
1472 __ shl(left, 4);
1473 break;
1474 default:
1475 __ imul(left, left, constant);
1476 break;
1477 }
1478 } else {
1479 __ imul(left, left, constant);
1480 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001481 } else {
1482 __ imul(left, ToOperand(right));
1483 }
1484
1485 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1486 DeoptimizeIf(overflow, instr->environment());
1487 }
1488
1489 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
1490 // Bail out if the result is supposed to be negative zero.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001491 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001492 __ test(left, Operand(left));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001493 __ j(not_zero, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001494 if (right->IsConstantOperand()) {
verwaest@chromium.org33e09c82012-10-10 17:07:22 +00001495 if (ToInteger32(LConstantOperand::cast(right)) < 0) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001496 DeoptimizeIf(no_condition, instr->environment());
verwaest@chromium.org33e09c82012-10-10 17:07:22 +00001497 } else if (ToInteger32(LConstantOperand::cast(right)) == 0) {
1498 __ cmp(ToRegister(instr->temp()), Immediate(0));
1499 DeoptimizeIf(less, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001500 }
1501 } else {
1502 // Test the non-zero operand for negative sign.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001503 __ or_(ToRegister(instr->temp()), ToOperand(right));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001504 DeoptimizeIf(sign, instr->environment());
1505 }
1506 __ bind(&done);
1507 }
1508}
1509
1510
1511void LCodeGen::DoBitI(LBitI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001512 LOperand* left = instr->left();
1513 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001514 ASSERT(left->Equals(instr->result()));
1515 ASSERT(left->IsRegister());
1516
1517 if (right->IsConstantOperand()) {
1518 int right_operand = ToInteger32(LConstantOperand::cast(right));
1519 switch (instr->op()) {
1520 case Token::BIT_AND:
1521 __ and_(ToRegister(left), right_operand);
1522 break;
1523 case Token::BIT_OR:
1524 __ or_(ToRegister(left), right_operand);
1525 break;
1526 case Token::BIT_XOR:
1527 __ xor_(ToRegister(left), right_operand);
1528 break;
1529 default:
1530 UNREACHABLE();
1531 break;
1532 }
1533 } else {
1534 switch (instr->op()) {
1535 case Token::BIT_AND:
1536 __ and_(ToRegister(left), ToOperand(right));
1537 break;
1538 case Token::BIT_OR:
1539 __ or_(ToRegister(left), ToOperand(right));
1540 break;
1541 case Token::BIT_XOR:
1542 __ xor_(ToRegister(left), ToOperand(right));
1543 break;
1544 default:
1545 UNREACHABLE();
1546 break;
1547 }
1548 }
1549}
1550
1551
1552void LCodeGen::DoShiftI(LShiftI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001553 LOperand* left = instr->left();
1554 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001555 ASSERT(left->Equals(instr->result()));
1556 ASSERT(left->IsRegister());
1557 if (right->IsRegister()) {
1558 ASSERT(ToRegister(right).is(ecx));
1559
1560 switch (instr->op()) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00001561 case Token::ROR:
1562 __ ror_cl(ToRegister(left));
1563 if (instr->can_deopt()) {
1564 __ test(ToRegister(left), Immediate(0x80000000));
1565 DeoptimizeIf(not_zero, instr->environment());
1566 }
1567 break;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001568 case Token::SAR:
1569 __ sar_cl(ToRegister(left));
1570 break;
1571 case Token::SHR:
1572 __ shr_cl(ToRegister(left));
1573 if (instr->can_deopt()) {
1574 __ test(ToRegister(left), Immediate(0x80000000));
1575 DeoptimizeIf(not_zero, instr->environment());
1576 }
1577 break;
1578 case Token::SHL:
1579 __ shl_cl(ToRegister(left));
1580 break;
1581 default:
1582 UNREACHABLE();
1583 break;
1584 }
1585 } else {
1586 int value = ToInteger32(LConstantOperand::cast(right));
1587 uint8_t shift_count = static_cast<uint8_t>(value & 0x1F);
1588 switch (instr->op()) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00001589 case Token::ROR:
1590 if (shift_count == 0 && instr->can_deopt()) {
1591 __ test(ToRegister(left), Immediate(0x80000000));
1592 DeoptimizeIf(not_zero, instr->environment());
1593 } else {
1594 __ ror(ToRegister(left), shift_count);
1595 }
1596 break;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001597 case Token::SAR:
1598 if (shift_count != 0) {
1599 __ sar(ToRegister(left), shift_count);
1600 }
1601 break;
1602 case Token::SHR:
1603 if (shift_count == 0 && instr->can_deopt()) {
1604 __ test(ToRegister(left), Immediate(0x80000000));
1605 DeoptimizeIf(not_zero, instr->environment());
1606 } else {
1607 __ shr(ToRegister(left), shift_count);
1608 }
1609 break;
1610 case Token::SHL:
1611 if (shift_count != 0) {
1612 __ shl(ToRegister(left), shift_count);
1613 }
1614 break;
1615 default:
1616 UNREACHABLE();
1617 break;
1618 }
1619 }
1620}
1621
1622
1623void LCodeGen::DoSubI(LSubI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001624 LOperand* left = instr->left();
1625 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001626 ASSERT(left->Equals(instr->result()));
1627
1628 if (right->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00001629 __ sub(ToOperand(left), ToInteger32Immediate(right));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001630 } else {
1631 __ sub(ToRegister(left), ToOperand(right));
1632 }
1633 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1634 DeoptimizeIf(overflow, instr->environment());
1635 }
1636}
1637
1638
1639void LCodeGen::DoConstantI(LConstantI* instr) {
1640 ASSERT(instr->result()->IsRegister());
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001641 __ Set(ToRegister(instr->result()), Immediate(instr->value()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001642}
1643
1644
1645void LCodeGen::DoConstantD(LConstantD* instr) {
1646 ASSERT(instr->result()->IsDoubleRegister());
1647 XMMRegister res = ToDoubleRegister(instr->result());
1648 double v = instr->value();
1649 // Use xor to produce +0.0 in a fast and compact way, but avoid to
1650 // do so if the constant is -0.0.
1651 if (BitCast<uint64_t, double>(v) == 0) {
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00001652 __ xorps(res, res);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001653 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001654 Register temp = ToRegister(instr->temp());
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001655 uint64_t int_val = BitCast<uint64_t, double>(v);
1656 int32_t lower = static_cast<int32_t>(int_val);
1657 int32_t upper = static_cast<int32_t>(int_val >> (kBitsPerInt));
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00001658 if (CpuFeatures::IsSupported(SSE4_1)) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001659 CpuFeatures::Scope scope1(SSE2);
1660 CpuFeatures::Scope scope2(SSE4_1);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001661 if (lower != 0) {
1662 __ Set(temp, Immediate(lower));
1663 __ movd(res, Operand(temp));
1664 __ Set(temp, Immediate(upper));
1665 __ pinsrd(res, Operand(temp), 1);
1666 } else {
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00001667 __ xorps(res, res);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001668 __ Set(temp, Immediate(upper));
1669 __ pinsrd(res, Operand(temp), 1);
1670 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001671 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001672 CpuFeatures::Scope scope(SSE2);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00001673 __ Set(temp, Immediate(upper));
1674 __ movd(res, Operand(temp));
1675 __ psllq(res, 32);
1676 if (lower != 0) {
1677 __ Set(temp, Immediate(lower));
1678 __ movd(xmm0, Operand(temp));
1679 __ por(res, xmm0);
1680 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001681 }
1682 }
1683}
1684
1685
1686void LCodeGen::DoConstantT(LConstantT* instr) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00001687 Register reg = ToRegister(instr->result());
1688 Handle<Object> handle = instr->value();
1689 if (handle->IsHeapObject()) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00001690 __ LoadHeapObject(reg, Handle<HeapObject>::cast(handle));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00001691 } else {
1692 __ Set(reg, Immediate(handle));
1693 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001694}
1695
1696
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001697void LCodeGen::DoJSArrayLength(LJSArrayLength* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001698 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001699 Register array = ToRegister(instr->value());
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001700 __ mov(result, FieldOperand(array, JSArray::kLengthOffset));
1701}
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001702
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001703
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00001704void LCodeGen::DoFixedArrayBaseLength(
1705 LFixedArrayBaseLength* instr) {
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00001706 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001707 Register array = ToRegister(instr->value());
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00001708 __ mov(result, FieldOperand(array, FixedArrayBase::kLengthOffset));
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00001709}
1710
1711
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00001712void LCodeGen::DoMapEnumLength(LMapEnumLength* instr) {
1713 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001714 Register map = ToRegister(instr->value());
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00001715 __ EnumLength(result, map);
1716}
1717
1718
whesse@chromium.org7b260152011-06-20 15:33:18 +00001719void LCodeGen::DoElementsKind(LElementsKind* instr) {
1720 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001721 Register input = ToRegister(instr->value());
whesse@chromium.org7b260152011-06-20 15:33:18 +00001722
1723 // Load map into |result|.
1724 __ mov(result, FieldOperand(input, HeapObject::kMapOffset));
1725 // Load the map's "bit field 2" into |result|. We only need the first byte,
1726 // but the following masking takes care of that anyway.
1727 __ mov(result, FieldOperand(result, Map::kBitField2Offset));
1728 // Retrieve elements_kind from bit field 2.
1729 __ and_(result, Map::kElementsKindMask);
1730 __ shr(result, Map::kElementsKindShift);
1731}
1732
1733
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001734void LCodeGen::DoValueOf(LValueOf* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001735 Register input = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001736 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001737 Register map = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001738 ASSERT(input.is(result));
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001739
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001740 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001741 // If the object is a smi return the object.
whesse@chromium.org7b260152011-06-20 15:33:18 +00001742 __ JumpIfSmi(input, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001743
1744 // If the object is not a value type, return the object.
1745 __ CmpObjectType(input, JS_VALUE_TYPE, map);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00001746 __ j(not_equal, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001747 __ mov(result, FieldOperand(input, JSValue::kValueOffset));
1748
1749 __ bind(&done);
1750}
1751
1752
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001753void LCodeGen::DoDateField(LDateField* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001754 Register object = ToRegister(instr->date());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001755 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001756 Register scratch = ToRegister(instr->temp());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001757 Smi* index = instr->index();
1758 Label runtime, done;
1759 ASSERT(object.is(result));
1760 ASSERT(object.is(eax));
1761
mstarzinger@chromium.orgde886792012-09-11 13:22:37 +00001762 __ test(object, Immediate(kSmiTagMask));
1763 DeoptimizeIf(zero, instr->environment());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001764 __ CmpObjectType(object, JS_DATE_TYPE, scratch);
mstarzinger@chromium.orgde886792012-09-11 13:22:37 +00001765 DeoptimizeIf(not_equal, instr->environment());
svenpanne@chromium.org4efbdb12012-03-12 08:18:42 +00001766
1767 if (index->value() == 0) {
1768 __ mov(result, FieldOperand(object, JSDate::kValueOffset));
1769 } else {
1770 if (index->value() < JSDate::kFirstUncachedField) {
1771 ExternalReference stamp = ExternalReference::date_cache_stamp(isolate());
1772 __ mov(scratch, Operand::StaticVariable(stamp));
1773 __ cmp(scratch, FieldOperand(object, JSDate::kCacheStampOffset));
1774 __ j(not_equal, &runtime, Label::kNear);
1775 __ mov(result, FieldOperand(object, JSDate::kValueOffset +
1776 kPointerSize * index->value()));
1777 __ jmp(&done);
1778 }
1779 __ bind(&runtime);
1780 __ PrepareCallCFunction(2, scratch);
1781 __ mov(Operand(esp, 0), object);
1782 __ mov(Operand(esp, 1 * kPointerSize), Immediate(index));
1783 __ CallCFunction(ExternalReference::get_date_field_function(isolate()), 2);
1784 __ bind(&done);
1785 }
1786}
1787
1788
mstarzinger@chromium.org32280cf2012-12-06 17:32:37 +00001789void LCodeGen::DoSeqStringSetChar(LSeqStringSetChar* instr) {
1790 SeqStringSetCharGenerator::Generate(masm(),
1791 instr->encoding(),
1792 ToRegister(instr->string()),
1793 ToRegister(instr->index()),
1794 ToRegister(instr->value()));
1795}
1796
1797
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001798void LCodeGen::DoBitNotI(LBitNotI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001799 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001800 ASSERT(input->Equals(instr->result()));
1801 __ not_(ToRegister(input));
1802}
1803
1804
1805void LCodeGen::DoThrow(LThrow* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001806 __ push(ToOperand(instr->value()));
1807 ASSERT(ToRegister(instr->context()).is(esi));
1808 CallRuntime(Runtime::kThrow, 1, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001809
1810 if (FLAG_debug_code) {
1811 Comment("Unreachable code.");
1812 __ int3();
1813 }
1814}
1815
1816
1817void LCodeGen::DoAddI(LAddI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001818 LOperand* left = instr->left();
1819 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001820 ASSERT(left->Equals(instr->result()));
1821
1822 if (right->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00001823 __ add(ToOperand(left), ToInteger32Immediate(right));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001824 } else {
1825 __ add(ToRegister(left), ToOperand(right));
1826 }
1827
1828 if (instr->hydrogen()->CheckFlag(HValue::kCanOverflow)) {
1829 DeoptimizeIf(overflow, instr->environment());
1830 }
1831}
1832
1833
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +00001834void LCodeGen::DoMathMinMax(LMathMinMax* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001835 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001836 LOperand* left = instr->left();
1837 LOperand* right = instr->right();
mstarzinger@chromium.org471f2f12012-08-10 14:46:33 +00001838 ASSERT(left->Equals(instr->result()));
1839 HMathMinMax::Operation operation = instr->hydrogen()->operation();
1840 if (instr->hydrogen()->representation().IsInteger32()) {
1841 Label return_left;
1842 Condition condition = (operation == HMathMinMax::kMathMin)
1843 ? less_equal
1844 : greater_equal;
1845 if (right->IsConstantOperand()) {
1846 Operand left_op = ToOperand(left);
1847 Immediate right_imm = ToInteger32Immediate(right);
1848 __ cmp(left_op, right_imm);
1849 __ j(condition, &return_left, Label::kNear);
1850 __ mov(left_op, right_imm);
1851 } else {
1852 Register left_reg = ToRegister(left);
1853 Operand right_op = ToOperand(right);
1854 __ cmp(left_reg, right_op);
1855 __ j(condition, &return_left, Label::kNear);
1856 __ mov(left_reg, right_op);
1857 }
1858 __ bind(&return_left);
1859 } else {
1860 ASSERT(instr->hydrogen()->representation().IsDouble());
1861 Label check_nan_left, check_zero, return_left, return_right;
1862 Condition condition = (operation == HMathMinMax::kMathMin) ? below : above;
1863 XMMRegister left_reg = ToDoubleRegister(left);
1864 XMMRegister right_reg = ToDoubleRegister(right);
1865 __ ucomisd(left_reg, right_reg);
1866 __ j(parity_even, &check_nan_left, Label::kNear); // At least one NaN.
1867 __ j(equal, &check_zero, Label::kNear); // left == right.
1868 __ j(condition, &return_left, Label::kNear);
1869 __ jmp(&return_right, Label::kNear);
1870
1871 __ bind(&check_zero);
1872 XMMRegister xmm_scratch = xmm0;
1873 __ xorps(xmm_scratch, xmm_scratch);
1874 __ ucomisd(left_reg, xmm_scratch);
1875 __ j(not_equal, &return_left, Label::kNear); // left == right != 0.
1876 // At this point, both left and right are either 0 or -0.
1877 if (operation == HMathMinMax::kMathMin) {
1878 __ orpd(left_reg, right_reg);
1879 } else {
1880 // Since we operate on +0 and/or -0, addsd and andsd have the same effect.
1881 __ addsd(left_reg, right_reg);
1882 }
1883 __ jmp(&return_left, Label::kNear);
1884
1885 __ bind(&check_nan_left);
1886 __ ucomisd(left_reg, left_reg); // NaN check.
1887 __ j(parity_even, &return_left, Label::kNear); // left == NaN.
1888 __ bind(&return_right);
1889 __ movsd(left_reg, right_reg);
1890
1891 __ bind(&return_left);
1892 }
1893}
1894
1895
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001896void LCodeGen::DoArithmeticD(LArithmeticD* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001897 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001898 XMMRegister left = ToDoubleRegister(instr->left());
1899 XMMRegister right = ToDoubleRegister(instr->right());
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001900 XMMRegister result = ToDoubleRegister(instr->result());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001901 // Modulo uses a fixed result register.
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001902 ASSERT(instr->op() == Token::MOD || left.is(result));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001903 switch (instr->op()) {
1904 case Token::ADD:
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001905 __ addsd(left, right);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001906 break;
1907 case Token::SUB:
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001908 __ subsd(left, right);
1909 break;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001910 case Token::MUL:
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001911 __ mulsd(left, right);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001912 break;
1913 case Token::DIV:
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001914 __ divsd(left, right);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001915 break;
1916 case Token::MOD: {
1917 // Pass two doubles as arguments on the stack.
1918 __ PrepareCallCFunction(4, eax);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001919 __ movdbl(Operand(esp, 0 * kDoubleSize), left);
1920 __ movdbl(Operand(esp, 1 * kDoubleSize), right);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00001921 __ CallCFunction(
1922 ExternalReference::double_fp_operation(Token::MOD, isolate()),
1923 4);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001924
1925 // Return value is in st(0) on ia32.
1926 // Store it into the (fixed) result register.
1927 __ sub(Operand(esp), Immediate(kDoubleSize));
1928 __ fstp_d(Operand(esp, 0));
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00001929 __ movdbl(result, Operand(esp, 0));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001930 __ add(Operand(esp), Immediate(kDoubleSize));
1931 break;
1932 }
1933 default:
1934 UNREACHABLE();
1935 break;
1936 }
1937}
1938
1939
1940void LCodeGen::DoArithmeticT(LArithmeticT* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001941 ASSERT(ToRegister(instr->context()).is(esi));
1942 ASSERT(ToRegister(instr->left()).is(edx));
1943 ASSERT(ToRegister(instr->right()).is(eax));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001944 ASSERT(ToRegister(instr->result()).is(eax));
1945
danno@chromium.org40cb8782011-05-25 07:58:50 +00001946 BinaryOpStub stub(instr->op(), NO_OVERWRITE);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00001947 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
whesse@chromium.org030d38e2011-07-13 13:23:34 +00001948 __ nop(); // Signals no inlined code.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001949}
1950
1951
1952int LCodeGen::GetNextEmittedBlock(int block) {
1953 for (int i = block + 1; i < graph()->blocks()->length(); ++i) {
1954 LLabel* label = chunk_->GetLabel(i);
1955 if (!label->HasReplacement()) return i;
1956 }
1957 return -1;
1958}
1959
1960
1961void LCodeGen::EmitBranch(int left_block, int right_block, Condition cc) {
1962 int next_block = GetNextEmittedBlock(current_block_);
1963 right_block = chunk_->LookupDestination(right_block);
1964 left_block = chunk_->LookupDestination(left_block);
1965
1966 if (right_block == left_block) {
1967 EmitGoto(left_block);
1968 } else if (left_block == next_block) {
1969 __ j(NegateCondition(cc), chunk_->GetAssemblyLabel(right_block));
1970 } else if (right_block == next_block) {
1971 __ j(cc, chunk_->GetAssemblyLabel(left_block));
1972 } else {
1973 __ j(cc, chunk_->GetAssemblyLabel(left_block));
1974 __ jmp(chunk_->GetAssemblyLabel(right_block));
1975 }
1976}
1977
1978
1979void LCodeGen::DoBranch(LBranch* instr) {
1980 int true_block = chunk_->LookupDestination(instr->true_block_id());
1981 int false_block = chunk_->LookupDestination(instr->false_block_id());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00001982 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001983
ricow@chromium.org4f693d62011-07-04 14:01:31 +00001984 Representation r = instr->hydrogen()->value()->representation();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001985 if (r.IsInteger32()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001986 Register reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001987 __ test(reg, Operand(reg));
1988 EmitBranch(true_block, false_block, not_zero);
1989 } else if (r.IsDouble()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001990 XMMRegister reg = ToDoubleRegister(instr->value());
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00001991 __ xorps(xmm0, xmm0);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00001992 __ ucomisd(reg, xmm0);
1993 EmitBranch(true_block, false_block, not_equal);
1994 } else {
1995 ASSERT(r.IsTagged());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00001996 Register reg = ToRegister(instr->value());
lrn@chromium.orgd4e9e222011-08-03 12:01:58 +00001997 HType type = instr->hydrogen()->value()->type();
1998 if (type.IsBoolean()) {
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00001999 __ cmp(reg, factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002000 EmitBranch(true_block, false_block, equal);
lrn@chromium.orgd4e9e222011-08-03 12:01:58 +00002001 } else if (type.IsSmi()) {
2002 __ test(reg, Operand(reg));
2003 EmitBranch(true_block, false_block, not_equal);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002004 } else {
2005 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2006 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2007
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002008 ToBooleanStub::Types expected = instr->hydrogen()->expected_input_types();
2009 // Avoid deopts in the case where we've never executed this path before.
2010 if (expected.IsEmpty()) expected = ToBooleanStub::all_types();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002011
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002012 if (expected.Contains(ToBooleanStub::UNDEFINED)) {
2013 // undefined -> false.
2014 __ cmp(reg, factory()->undefined_value());
2015 __ j(equal, false_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002016 }
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002017 if (expected.Contains(ToBooleanStub::BOOLEAN)) {
2018 // true -> true.
2019 __ cmp(reg, factory()->true_value());
2020 __ j(equal, true_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002021 // false -> false.
2022 __ cmp(reg, factory()->false_value());
2023 __ j(equal, false_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002024 }
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002025 if (expected.Contains(ToBooleanStub::NULL_TYPE)) {
2026 // 'null' -> false.
2027 __ cmp(reg, factory()->null_value());
2028 __ j(equal, false_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002029 }
2030
2031 if (expected.Contains(ToBooleanStub::SMI)) {
2032 // Smis: 0 -> false, all other -> true.
2033 __ test(reg, Operand(reg));
2034 __ j(equal, false_label);
2035 __ JumpIfSmi(reg, true_label);
2036 } else if (expected.NeedsMap()) {
2037 // If we need a map later and have a Smi -> deopt.
2038 __ test(reg, Immediate(kSmiTagMask));
2039 DeoptimizeIf(zero, instr->environment());
2040 }
2041
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00002042 Register map = no_reg; // Keep the compiler happy.
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002043 if (expected.NeedsMap()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002044 map = ToRegister(instr->temp());
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002045 ASSERT(!map.is(reg));
2046 __ mov(map, FieldOperand(reg, HeapObject::kMapOffset));
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00002047
2048 if (expected.CanBeUndetectable()) {
2049 // Undetectable -> false.
2050 __ test_b(FieldOperand(map, Map::kBitFieldOffset),
2051 1 << Map::kIsUndetectable);
2052 __ j(not_zero, false_label);
2053 }
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002054 }
2055
2056 if (expected.Contains(ToBooleanStub::SPEC_OBJECT)) {
2057 // spec object -> true.
2058 __ CmpInstanceType(map, FIRST_SPEC_OBJECT_TYPE);
2059 __ j(above_equal, true_label);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002060 }
2061
2062 if (expected.Contains(ToBooleanStub::STRING)) {
2063 // String value -> false iff empty.
2064 Label not_string;
2065 __ CmpInstanceType(map, FIRST_NONSTRING_TYPE);
2066 __ j(above_equal, &not_string, Label::kNear);
2067 __ cmp(FieldOperand(reg, String::kLengthOffset), Immediate(0));
2068 __ j(not_zero, true_label);
2069 __ jmp(false_label);
2070 __ bind(&not_string);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002071 }
2072
2073 if (expected.Contains(ToBooleanStub::HEAP_NUMBER)) {
2074 // heap number -> false iff +0, -0, or NaN.
2075 Label not_heap_number;
2076 __ cmp(FieldOperand(reg, HeapObject::kMapOffset),
2077 factory()->heap_number_map());
2078 __ j(not_equal, &not_heap_number, Label::kNear);
2079 __ fldz();
2080 __ fld_d(FieldOperand(reg, HeapNumber::kValueOffset));
2081 __ FCmp();
2082 __ j(zero, false_label);
2083 __ jmp(true_label);
2084 __ bind(&not_heap_number);
vegorov@chromium.org7943d462011-08-01 11:41:52 +00002085 }
2086
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00002087 // We've seen something for the first time -> deopt.
2088 DeoptimizeIf(no_condition, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002089 }
2090 }
2091}
2092
2093
ager@chromium.org04921a82011-06-27 13:21:41 +00002094void LCodeGen::EmitGoto(int block) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002095 block = chunk_->LookupDestination(block);
2096 int next_block = GetNextEmittedBlock(current_block_);
2097 if (block != next_block) {
ager@chromium.org04921a82011-06-27 13:21:41 +00002098 __ jmp(chunk_->GetAssemblyLabel(block));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002099 }
2100}
2101
2102
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002103void LCodeGen::DoGoto(LGoto* instr) {
ager@chromium.org04921a82011-06-27 13:21:41 +00002104 EmitGoto(instr->block_id());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002105}
2106
2107
2108Condition LCodeGen::TokenToCondition(Token::Value op, bool is_unsigned) {
2109 Condition cond = no_condition;
2110 switch (op) {
2111 case Token::EQ:
2112 case Token::EQ_STRICT:
2113 cond = equal;
2114 break;
2115 case Token::LT:
2116 cond = is_unsigned ? below : less;
2117 break;
2118 case Token::GT:
2119 cond = is_unsigned ? above : greater;
2120 break;
2121 case Token::LTE:
2122 cond = is_unsigned ? below_equal : less_equal;
2123 break;
2124 case Token::GTE:
2125 cond = is_unsigned ? above_equal : greater_equal;
2126 break;
2127 case Token::IN:
2128 case Token::INSTANCEOF:
2129 default:
2130 UNREACHABLE();
2131 }
2132 return cond;
2133}
2134
2135
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002136void LCodeGen::DoCmpIDAndBranch(LCmpIDAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002137 LOperand* left = instr->left();
2138 LOperand* right = instr->right();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002139 int false_block = chunk_->LookupDestination(instr->false_block_id());
2140 int true_block = chunk_->LookupDestination(instr->true_block_id());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002141 Condition cc = TokenToCondition(instr->op(), instr->is_double());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002142 CpuFeatures::Scope scope(SSE2);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002143
2144 if (left->IsConstantOperand() && right->IsConstantOperand()) {
2145 // We can statically evaluate the comparison.
2146 double left_val = ToDouble(LConstantOperand::cast(left));
2147 double right_val = ToDouble(LConstantOperand::cast(right));
2148 int next_block =
2149 EvalComparison(instr->op(), left_val, right_val) ? true_block
2150 : false_block;
2151 EmitGoto(next_block);
2152 } else {
2153 if (instr->is_double()) {
2154 // Don't base result on EFLAGS when a NaN is involved. Instead
2155 // jump to the false block.
2156 __ ucomisd(ToDoubleRegister(left), ToDoubleRegister(right));
2157 __ j(parity_even, chunk_->GetAssemblyLabel(false_block));
2158 } else {
2159 if (right->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00002160 __ cmp(ToRegister(left), ToInteger32Immediate(right));
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002161 } else if (left->IsConstantOperand()) {
danno@chromium.orgbf0c8202011-12-27 10:09:42 +00002162 __ cmp(ToOperand(right), ToInteger32Immediate(left));
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002163 // We transposed the operands. Reverse the condition.
2164 cc = ReverseCondition(cc);
2165 } else {
2166 __ cmp(ToRegister(left), ToOperand(right));
2167 }
2168 }
2169 EmitBranch(true_block, false_block, cc);
2170 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002171}
2172
2173
lrn@chromium.orgac2828d2011-06-23 06:29:21 +00002174void LCodeGen::DoCmpObjectEqAndBranch(LCmpObjectEqAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002175 Register left = ToRegister(instr->left());
2176 Operand right = ToOperand(instr->right());
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002177 int false_block = chunk_->LookupDestination(instr->false_block_id());
2178 int true_block = chunk_->LookupDestination(instr->true_block_id());
2179
2180 __ cmp(left, Operand(right));
2181 EmitBranch(true_block, false_block, equal);
2182}
2183
2184
whesse@chromium.org7b260152011-06-20 15:33:18 +00002185void LCodeGen::DoCmpConstantEqAndBranch(LCmpConstantEqAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002186 Register left = ToRegister(instr->left());
whesse@chromium.org7b260152011-06-20 15:33:18 +00002187 int true_block = chunk_->LookupDestination(instr->true_block_id());
2188 int false_block = chunk_->LookupDestination(instr->false_block_id());
2189
2190 __ cmp(left, instr->hydrogen()->right());
2191 EmitBranch(true_block, false_block, equal);
2192}
2193
2194
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002195void LCodeGen::DoIsNilAndBranch(LIsNilAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002196 Register reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002197 int false_block = chunk_->LookupDestination(instr->false_block_id());
2198
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002199 // If the expression is known to be untagged or a smi, then it's definitely
2200 // not null, and it can't be a an undetectable object.
2201 if (instr->hydrogen()->representation().IsSpecialization() ||
2202 instr->hydrogen()->type().IsSmi()) {
2203 EmitGoto(false_block);
2204 return;
2205 }
2206
2207 int true_block = chunk_->LookupDestination(instr->true_block_id());
2208 Handle<Object> nil_value = instr->nil() == kNullValue ?
2209 factory()->null_value() :
2210 factory()->undefined_value();
2211 __ cmp(reg, nil_value);
2212 if (instr->kind() == kStrictEquality) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002213 EmitBranch(true_block, false_block, equal);
2214 } else {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002215 Handle<Object> other_nil_value = instr->nil() == kNullValue ?
2216 factory()->undefined_value() :
2217 factory()->null_value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002218 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2219 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2220 __ j(equal, true_label);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002221 __ cmp(reg, other_nil_value);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002222 __ j(equal, true_label);
whesse@chromium.org7b260152011-06-20 15:33:18 +00002223 __ JumpIfSmi(reg, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002224 // Check for undetectable objects by looking in the bit field in
2225 // the map. The object has already been smi checked.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002226 Register scratch = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002227 __ mov(scratch, FieldOperand(reg, HeapObject::kMapOffset));
2228 __ movzx_b(scratch, FieldOperand(scratch, Map::kBitFieldOffset));
2229 __ test(scratch, Immediate(1 << Map::kIsUndetectable));
2230 EmitBranch(true_block, false_block, not_zero);
2231 }
2232}
2233
2234
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002235Condition LCodeGen::EmitIsObject(Register input,
2236 Register temp1,
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002237 Label* is_not_object,
2238 Label* is_object) {
whesse@chromium.org7b260152011-06-20 15:33:18 +00002239 __ JumpIfSmi(input, is_not_object);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002240
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002241 __ cmp(input, isolate()->factory()->null_value());
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002242 __ j(equal, is_object);
2243
2244 __ mov(temp1, FieldOperand(input, HeapObject::kMapOffset));
2245 // Undetectable objects behave like undefined.
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002246 __ test_b(FieldOperand(temp1, Map::kBitFieldOffset),
2247 1 << Map::kIsUndetectable);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002248 __ j(not_zero, is_not_object);
2249
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002250 __ movzx_b(temp1, FieldOperand(temp1, Map::kInstanceTypeOffset));
2251 __ cmp(temp1, FIRST_NONCALLABLE_SPEC_OBJECT_TYPE);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002252 __ j(below, is_not_object);
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002253 __ cmp(temp1, LAST_NONCALLABLE_SPEC_OBJECT_TYPE);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002254 return below_equal;
2255}
2256
2257
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002258void LCodeGen::DoIsObjectAndBranch(LIsObjectAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002259 Register reg = ToRegister(instr->value());
2260 Register temp = ToRegister(instr->temp());
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002261
2262 int true_block = chunk_->LookupDestination(instr->true_block_id());
2263 int false_block = chunk_->LookupDestination(instr->false_block_id());
2264 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2265 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2266
vegorov@chromium.org3cf47312011-06-29 13:20:01 +00002267 Condition true_cond = EmitIsObject(reg, temp, false_label, true_label);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002268
2269 EmitBranch(true_block, false_block, true_cond);
2270}
2271
2272
erikcorry0ad885c2011-11-21 13:51:57 +00002273Condition LCodeGen::EmitIsString(Register input,
2274 Register temp1,
2275 Label* is_not_string) {
2276 __ JumpIfSmi(input, is_not_string);
2277
2278 Condition cond = masm_->IsObjectStringType(input, temp1, temp1);
2279
2280 return cond;
2281}
2282
2283
2284void LCodeGen::DoIsStringAndBranch(LIsStringAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002285 Register reg = ToRegister(instr->value());
2286 Register temp = ToRegister(instr->temp());
erikcorry0ad885c2011-11-21 13:51:57 +00002287
2288 int true_block = chunk_->LookupDestination(instr->true_block_id());
2289 int false_block = chunk_->LookupDestination(instr->false_block_id());
2290 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2291
2292 Condition true_cond = EmitIsString(reg, temp, false_label);
2293
2294 EmitBranch(true_block, false_block, true_cond);
2295}
2296
2297
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002298void LCodeGen::DoIsSmiAndBranch(LIsSmiAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002299 Operand input = ToOperand(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002300
2301 int true_block = chunk_->LookupDestination(instr->true_block_id());
2302 int false_block = chunk_->LookupDestination(instr->false_block_id());
2303
2304 __ test(input, Immediate(kSmiTagMask));
2305 EmitBranch(true_block, false_block, zero);
2306}
2307
2308
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002309void LCodeGen::DoIsUndetectableAndBranch(LIsUndetectableAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002310 Register input = ToRegister(instr->value());
2311 Register temp = ToRegister(instr->temp());
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002312
2313 int true_block = chunk_->LookupDestination(instr->true_block_id());
2314 int false_block = chunk_->LookupDestination(instr->false_block_id());
2315
2316 STATIC_ASSERT(kSmiTag == 0);
whesse@chromium.org7b260152011-06-20 15:33:18 +00002317 __ JumpIfSmi(input, chunk_->GetAssemblyLabel(false_block));
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002318 __ mov(temp, FieldOperand(input, HeapObject::kMapOffset));
2319 __ test_b(FieldOperand(temp, Map::kBitFieldOffset),
2320 1 << Map::kIsUndetectable);
2321 EmitBranch(true_block, false_block, not_zero);
2322}
2323
2324
erikcorry0ad885c2011-11-21 13:51:57 +00002325static Condition ComputeCompareCondition(Token::Value op) {
2326 switch (op) {
2327 case Token::EQ_STRICT:
2328 case Token::EQ:
2329 return equal;
2330 case Token::LT:
2331 return less;
2332 case Token::GT:
2333 return greater;
2334 case Token::LTE:
2335 return less_equal;
2336 case Token::GTE:
2337 return greater_equal;
2338 default:
2339 UNREACHABLE();
2340 return no_condition;
2341 }
2342}
2343
2344
2345void LCodeGen::DoStringCompareAndBranch(LStringCompareAndBranch* instr) {
2346 Token::Value op = instr->op();
2347 int true_block = chunk_->LookupDestination(instr->true_block_id());
2348 int false_block = chunk_->LookupDestination(instr->false_block_id());
2349
2350 Handle<Code> ic = CompareIC::GetUninitialized(op);
2351 CallCode(ic, RelocInfo::CODE_TARGET, instr);
2352
2353 Condition condition = ComputeCompareCondition(op);
2354 __ test(eax, Operand(eax));
2355
2356 EmitBranch(true_block, false_block, condition);
2357}
2358
2359
ricow@chromium.org4f693d62011-07-04 14:01:31 +00002360static InstanceType TestType(HHasInstanceTypeAndBranch* instr) {
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00002361 InstanceType from = instr->from();
2362 InstanceType to = instr->to();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002363 if (from == FIRST_TYPE) return to;
2364 ASSERT(from == to || to == LAST_TYPE);
2365 return from;
2366}
2367
2368
ricow@chromium.org4f693d62011-07-04 14:01:31 +00002369static Condition BranchCondition(HHasInstanceTypeAndBranch* instr) {
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00002370 InstanceType from = instr->from();
2371 InstanceType to = instr->to();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002372 if (from == to) return equal;
2373 if (to == LAST_TYPE) return above_equal;
2374 if (from == FIRST_TYPE) return below_equal;
2375 UNREACHABLE();
2376 return equal;
2377}
2378
2379
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002380void LCodeGen::DoHasInstanceTypeAndBranch(LHasInstanceTypeAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002381 Register input = ToRegister(instr->value());
2382 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002383
2384 int true_block = chunk_->LookupDestination(instr->true_block_id());
2385 int false_block = chunk_->LookupDestination(instr->false_block_id());
2386
2387 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2388
whesse@chromium.org7b260152011-06-20 15:33:18 +00002389 __ JumpIfSmi(input, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002390
erik.corry@gmail.com0511e242011-01-19 11:11:08 +00002391 __ CmpObjectType(input, TestType(instr->hydrogen()), temp);
2392 EmitBranch(true_block, false_block, BranchCondition(instr->hydrogen()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002393}
2394
2395
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002396void LCodeGen::DoGetCachedArrayIndex(LGetCachedArrayIndex* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002397 Register input = ToRegister(instr->value());
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002398 Register result = ToRegister(instr->result());
2399
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00002400 __ AssertString(input);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002401
2402 __ mov(result, FieldOperand(input, String::kHashFieldOffset));
2403 __ IndexFromHash(result, result);
2404}
2405
2406
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002407void LCodeGen::DoHasCachedArrayIndexAndBranch(
2408 LHasCachedArrayIndexAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002409 Register input = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002410
2411 int true_block = chunk_->LookupDestination(instr->true_block_id());
2412 int false_block = chunk_->LookupDestination(instr->false_block_id());
2413
2414 __ test(FieldOperand(input, String::kHashFieldOffset),
2415 Immediate(String::kContainsCachedArrayIndexMask));
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00002416 EmitBranch(true_block, false_block, equal);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002417}
2418
2419
2420// Branches to a label or falls through with the answer in the z flag. Trashes
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002421// the temp registers, but not the input.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002422void LCodeGen::EmitClassOfTest(Label* is_true,
2423 Label* is_false,
2424 Handle<String>class_name,
2425 Register input,
2426 Register temp,
2427 Register temp2) {
2428 ASSERT(!input.is(temp));
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002429 ASSERT(!input.is(temp2));
2430 ASSERT(!temp.is(temp2));
whesse@chromium.org7b260152011-06-20 15:33:18 +00002431 __ JumpIfSmi(input, is_false);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002432
jkummerow@chromium.org59297c72013-01-09 16:32:23 +00002433 if (class_name->IsOneByteEqualTo(STATIC_ASCII_VECTOR("Function"))) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002434 // Assuming the following assertions, we can use the same compares to test
2435 // for both being a function type and being in the object type range.
2436 STATIC_ASSERT(NUM_OF_CALLABLE_SPEC_OBJECT_TYPES == 2);
2437 STATIC_ASSERT(FIRST_NONCALLABLE_SPEC_OBJECT_TYPE ==
2438 FIRST_SPEC_OBJECT_TYPE + 1);
2439 STATIC_ASSERT(LAST_NONCALLABLE_SPEC_OBJECT_TYPE ==
2440 LAST_SPEC_OBJECT_TYPE - 1);
2441 STATIC_ASSERT(LAST_SPEC_OBJECT_TYPE == LAST_TYPE);
2442 __ CmpObjectType(input, FIRST_SPEC_OBJECT_TYPE, temp);
2443 __ j(below, is_false);
2444 __ j(equal, is_true);
2445 __ CmpInstanceType(temp, LAST_SPEC_OBJECT_TYPE);
2446 __ j(equal, is_true);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002447 } else {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002448 // Faster code path to avoid two compares: subtract lower bound from the
2449 // actual type and do a signed compare with the width of the type range.
2450 __ mov(temp, FieldOperand(input, HeapObject::kMapOffset));
yangguo@chromium.org56454712012-02-16 15:33:53 +00002451 __ movzx_b(temp2, FieldOperand(temp, Map::kInstanceTypeOffset));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002452 __ sub(Operand(temp2), Immediate(FIRST_NONCALLABLE_SPEC_OBJECT_TYPE));
yangguo@chromium.org56454712012-02-16 15:33:53 +00002453 __ cmp(Operand(temp2), Immediate(LAST_NONCALLABLE_SPEC_OBJECT_TYPE -
2454 FIRST_NONCALLABLE_SPEC_OBJECT_TYPE));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002455 __ j(above, is_false);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002456 }
2457
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002458 // Now we are in the FIRST-LAST_NONCALLABLE_SPEC_OBJECT_TYPE range.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002459 // Check if the constructor in the map is a function.
2460 __ mov(temp, FieldOperand(temp, Map::kConstructorOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002461 // Objects with a non-function constructor have class 'Object'.
2462 __ CmpObjectType(temp, JS_FUNCTION_TYPE, temp2);
jkummerow@chromium.org59297c72013-01-09 16:32:23 +00002463 if (class_name->IsOneByteEqualTo(STATIC_ASCII_VECTOR("Object"))) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002464 __ j(not_equal, is_true);
2465 } else {
2466 __ j(not_equal, is_false);
2467 }
2468
2469 // temp now contains the constructor function. Grab the
2470 // instance class name from there.
2471 __ mov(temp, FieldOperand(temp, JSFunction::kSharedFunctionInfoOffset));
2472 __ mov(temp, FieldOperand(temp,
2473 SharedFunctionInfo::kInstanceClassNameOffset));
2474 // The class name we are testing against is a symbol because it's a literal.
2475 // The name in the constructor is a symbol because of the way the context is
2476 // booted. This routine isn't expected to work for random API-created
2477 // classes and it doesn't have to because you can't access it with natives
2478 // syntax. Since both sides are symbols it is sufficient to use an identity
2479 // comparison.
2480 __ cmp(temp, class_name);
2481 // End with the answer in the z flag.
2482}
2483
2484
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002485void LCodeGen::DoClassOfTestAndBranch(LClassOfTestAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002486 Register input = ToRegister(instr->value());
2487 Register temp = ToRegister(instr->temp());
2488 Register temp2 = ToRegister(instr->temp2());
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002489
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002490 Handle<String> class_name = instr->hydrogen()->class_name();
2491
2492 int true_block = chunk_->LookupDestination(instr->true_block_id());
2493 int false_block = chunk_->LookupDestination(instr->false_block_id());
2494
2495 Label* true_label = chunk_->GetAssemblyLabel(true_block);
2496 Label* false_label = chunk_->GetAssemblyLabel(false_block);
2497
2498 EmitClassOfTest(true_label, false_label, class_name, input, temp, temp2);
2499
2500 EmitBranch(true_block, false_block, equal);
2501}
2502
2503
2504void LCodeGen::DoCmpMapAndBranch(LCmpMapAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002505 Register reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002506 int true_block = instr->true_block_id();
2507 int false_block = instr->false_block_id();
2508
2509 __ cmp(FieldOperand(reg, HeapObject::kMapOffset), instr->map());
2510 EmitBranch(true_block, false_block, equal);
2511}
2512
2513
2514void LCodeGen::DoInstanceOf(LInstanceOf* instr) {
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002515 // Object and function are in fixed registers defined by the stub.
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002516 ASSERT(ToRegister(instr->context()).is(esi));
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00002517 InstanceofStub stub(InstanceofStub::kArgsInRegisters);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002518 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002519
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002520 Label true_value, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002521 __ test(eax, Operand(eax));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002522 __ j(zero, &true_value, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002523 __ mov(ToRegister(instr->result()), factory()->false_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002524 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002525 __ bind(&true_value);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002526 __ mov(ToRegister(instr->result()), factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002527 __ bind(&done);
2528}
2529
2530
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002531void LCodeGen::DoInstanceOfKnownGlobal(LInstanceOfKnownGlobal* instr) {
2532 class DeferredInstanceOfKnownGlobal: public LDeferredCode {
2533 public:
2534 DeferredInstanceOfKnownGlobal(LCodeGen* codegen,
2535 LInstanceOfKnownGlobal* instr)
2536 : LDeferredCode(codegen), instr_(instr) { }
2537 virtual void Generate() {
ricow@chromium.org27bf2882011-11-17 08:34:43 +00002538 codegen()->DoDeferredInstanceOfKnownGlobal(instr_, &map_check_);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002539 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002540 virtual LInstruction* instr() { return instr_; }
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002541 Label* map_check() { return &map_check_; }
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002542 private:
2543 LInstanceOfKnownGlobal* instr_;
2544 Label map_check_;
2545 };
2546
2547 DeferredInstanceOfKnownGlobal* deferred;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002548 deferred = new(zone()) DeferredInstanceOfKnownGlobal(this, instr);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002549
2550 Label done, false_result;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002551 Register object = ToRegister(instr->value());
2552 Register temp = ToRegister(instr->temp());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002553
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002554 // A Smi is not an instance of anything.
whesse@chromium.org7b260152011-06-20 15:33:18 +00002555 __ JumpIfSmi(object, &false_result);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002556
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002557 // This is the inlined call site instanceof cache. The two occurences of the
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002558 // hole value will be patched to the last map/result pair generated by the
2559 // instanceof stub.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002560 Label cache_miss;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002561 Register map = ToRegister(instr->temp());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002562 __ mov(map, FieldOperand(object, HeapObject::kMapOffset));
2563 __ bind(deferred->map_check()); // Label for calculating code patching.
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00002564 Handle<JSGlobalPropertyCell> cache_cell =
2565 factory()->NewJSGlobalPropertyCell(factory()->the_hole_value());
2566 __ cmp(map, Operand::Cell(cache_cell)); // Patched to cached map.
vegorov@chromium.org7304bca2011-05-16 12:14:13 +00002567 __ j(not_equal, &cache_miss, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002568 __ mov(eax, factory()->the_hole_value()); // Patched to either true or false.
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002569 __ jmp(&done);
2570
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002571 // The inlined call site cache did not match. Check for null and string
2572 // before calling the deferred code.
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002573 __ bind(&cache_miss);
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00002574 // Null is not an instance of anything.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002575 __ cmp(object, factory()->null_value());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002576 __ j(equal, &false_result);
2577
2578 // String values are not instances of anything.
2579 Condition is_string = masm_->IsObjectStringType(object, temp, temp);
2580 __ j(is_string, &false_result);
2581
2582 // Go to the deferred code.
2583 __ jmp(deferred->entry());
2584
2585 __ bind(&false_result);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002586 __ mov(ToRegister(instr->result()), factory()->false_value());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002587
2588 // Here result has either true or false. Deferred code also produces true or
2589 // false object.
2590 __ bind(deferred->exit());
2591 __ bind(&done);
2592}
2593
2594
ricow@chromium.org27bf2882011-11-17 08:34:43 +00002595void LCodeGen::DoDeferredInstanceOfKnownGlobal(LInstanceOfKnownGlobal* instr,
2596 Label* map_check) {
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002597 PushSafepointRegistersScope scope(this);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002598
2599 InstanceofStub::Flags flags = InstanceofStub::kNoFlags;
2600 flags = static_cast<InstanceofStub::Flags>(
2601 flags | InstanceofStub::kArgsInRegisters);
2602 flags = static_cast<InstanceofStub::Flags>(
2603 flags | InstanceofStub::kCallSiteInlineCheck);
2604 flags = static_cast<InstanceofStub::Flags>(
2605 flags | InstanceofStub::kReturnTrueFalseObject);
2606 InstanceofStub stub(flags);
2607
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002608 // Get the temp register reserved by the instruction. This needs to be a
2609 // register which is pushed last by PushSafepointRegisters as top of the
2610 // stack is used to pass the offset to the location of the map check to
2611 // the stub.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002612 Register temp = ToRegister(instr->temp());
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002613 ASSERT(MacroAssembler::SafepointRegisterStackIndex(temp) == 0);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002614 __ LoadHeapObject(InstanceofStub::right(), instr->function());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002615 static const int kAdditionalDelta = 13;
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002616 int delta = masm_->SizeOfCodeGeneratedSince(map_check) + kAdditionalDelta;
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002617 __ mov(temp, Immediate(delta));
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00002618 __ StoreToSafepointRegisterSlot(temp, temp);
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002619 CallCodeGeneric(stub.GetCode(),
2620 RelocInfo::CODE_TARGET,
2621 instr,
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002622 RECORD_SAFEPOINT_WITH_REGISTERS_AND_NO_ARGUMENTS);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00002623 // Get the deoptimization index of the LLazyBailout-environment that
2624 // corresponds to this instruction.
2625 LEnvironment* env = instr->GetDeferredLazyDeoptimizationEnvironment();
ricow@chromium.org27bf2882011-11-17 08:34:43 +00002626 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
2627
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002628 // Put the result value into the eax slot and restore all registers.
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00002629 __ StoreToSafepointRegisterSlot(eax, eax);
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00002630}
2631
2632
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002633void LCodeGen::DoCmpT(LCmpT* instr) {
2634 Token::Value op = instr->op();
2635
2636 Handle<Code> ic = CompareIC::GetUninitialized(op);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002637 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002638
2639 Condition condition = ComputeCompareCondition(op);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002640 Label true_value, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002641 __ test(eax, Operand(eax));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002642 __ j(condition, &true_value, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002643 __ mov(ToRegister(instr->result()), factory()->false_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002644 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002645 __ bind(&true_value);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002646 __ mov(ToRegister(instr->result()), factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002647 __ bind(&done);
2648}
2649
2650
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002651void LCodeGen::DoReturn(LReturn* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002652 if (FLAG_trace && info()->IsOptimizing()) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002653 // Preserve the return value on the stack and rely on the runtime call
2654 // to return the value in the same register. We're leaving the code
2655 // managed by the register allocator and tearing down the frame, it's
2656 // safe to write to the context register.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002657 __ push(eax);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002658 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002659 __ CallRuntime(Runtime::kTraceExit, 1);
2660 }
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00002661 if (info()->saves_caller_doubles() && CpuFeatures::IsSupported(SSE2)) {
2662 ASSERT(NeedsEagerFrame());
2663 CpuFeatures::Scope scope(SSE2);
2664 BitVector* doubles = chunk()->allocated_double_registers();
2665 BitVector::Iterator save_iterator(doubles);
2666 int count = 0;
2667 while (!save_iterator.Done()) {
2668 __ movdbl(XMMRegister::FromAllocationIndex(save_iterator.Current()),
2669 MemOperand(esp, count * kDoubleSize));
2670 save_iterator.Advance();
2671 count++;
2672 }
2673 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002674 if (dynamic_frame_alignment_) {
2675 // Fetch the state of the dynamic frame alignment.
2676 __ mov(edx, Operand(ebp,
2677 JavaScriptFrameConstants::kDynamicAlignmentStateOffset));
2678 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002679 if (NeedsEagerFrame()) {
2680 __ mov(esp, ebp);
2681 __ pop(ebp);
2682 }
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002683 if (dynamic_frame_alignment_) {
2684 Label no_padding;
2685 __ cmp(edx, Immediate(kNoAlignmentPadding));
2686 __ j(equal, &no_padding);
2687 if (FLAG_debug_code) {
2688 __ cmp(Operand(esp, (GetParameterCount() + 2) * kPointerSize),
2689 Immediate(kAlignmentZapValue));
2690 __ Assert(equal, "expected alignment marker");
2691 }
2692 __ Ret((GetParameterCount() + 2) * kPointerSize, ecx);
2693 __ bind(&no_padding);
2694 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002695 if (info()->IsStub()) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00002696 __ Ret();
2697 } else {
2698 __ Ret((GetParameterCount() + 1) * kPointerSize, ecx);
2699 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002700}
2701
2702
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002703void LCodeGen::DoLoadGlobalCell(LLoadGlobalCell* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002704 Register result = ToRegister(instr->result());
2705 __ mov(result, Operand::Cell(instr->hydrogen()->cell()));
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002706 if (instr->hydrogen()->RequiresHoleCheck()) {
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002707 __ cmp(result, factory()->the_hole_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002708 DeoptimizeIf(equal, instr->environment());
2709 }
2710}
2711
2712
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002713void LCodeGen::DoLoadGlobalGeneric(LLoadGlobalGeneric* instr) {
2714 ASSERT(ToRegister(instr->context()).is(esi));
danno@chromium.org1044a4d2012-04-30 12:34:39 +00002715 ASSERT(ToRegister(instr->global_object()).is(edx));
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002716 ASSERT(ToRegister(instr->result()).is(eax));
2717
2718 __ mov(ecx, instr->name());
2719 RelocInfo::Mode mode = instr->for_typeof() ? RelocInfo::CODE_TARGET :
2720 RelocInfo::CODE_TARGET_CONTEXT;
2721 Handle<Code> ic = isolate()->builtins()->LoadIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002722 CallCode(ic, mode, instr);
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00002723}
2724
2725
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00002726void LCodeGen::DoStoreGlobalCell(LStoreGlobalCell* instr) {
danno@chromium.orge78f9fc2011-12-21 08:29:34 +00002727 Register value = ToRegister(instr->value());
2728 Handle<JSGlobalPropertyCell> cell_handle = instr->hydrogen()->cell();
ager@chromium.org378b34e2011-01-28 08:04:38 +00002729
2730 // If the cell we are storing to contains the hole it could have
2731 // been deleted from the property dictionary. In that case, we need
2732 // to update the property details in the property dictionary to mark
2733 // it as no longer deleted. We deoptimize in that case.
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00002734 if (instr->hydrogen()->RequiresHoleCheck()) {
danno@chromium.orge78f9fc2011-12-21 08:29:34 +00002735 __ cmp(Operand::Cell(cell_handle), factory()->the_hole_value());
ager@chromium.org378b34e2011-01-28 08:04:38 +00002736 DeoptimizeIf(equal, instr->environment());
2737 }
2738
2739 // Store the value.
danno@chromium.orge78f9fc2011-12-21 08:29:34 +00002740 __ mov(Operand::Cell(cell_handle), value);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002741 // Cells are always rescanned, so no write barrier here.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002742}
2743
2744
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00002745void LCodeGen::DoStoreGlobalGeneric(LStoreGlobalGeneric* instr) {
2746 ASSERT(ToRegister(instr->context()).is(esi));
2747 ASSERT(ToRegister(instr->global_object()).is(edx));
2748 ASSERT(ToRegister(instr->value()).is(eax));
2749
2750 __ mov(ecx, instr->name());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00002751 Handle<Code> ic = (instr->strict_mode_flag() == kStrictMode)
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00002752 ? isolate()->builtins()->StoreIC_Initialize_Strict()
2753 : isolate()->builtins()->StoreIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002754 CallCode(ic, RelocInfo::CODE_TARGET_CONTEXT, instr);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00002755}
2756
2757
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00002758void LCodeGen::DoLoadContextSlot(LLoadContextSlot* instr) {
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002759 Register context = ToRegister(instr->context());
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00002760 Register result = ToRegister(instr->result());
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002761 __ mov(result, ContextOperand(context, instr->slot_index()));
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002762
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002763 if (instr->hydrogen()->RequiresHoleCheck()) {
2764 __ cmp(result, factory()->the_hole_value());
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002765 if (instr->hydrogen()->DeoptimizesOnHole()) {
2766 DeoptimizeIf(equal, instr->environment());
2767 } else {
2768 Label is_not_hole;
2769 __ j(not_equal, &is_not_hole, Label::kNear);
2770 __ mov(result, factory()->undefined_value());
2771 __ bind(&is_not_hole);
2772 }
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002773 }
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002774}
2775
2776
2777void LCodeGen::DoStoreContextSlot(LStoreContextSlot* instr) {
2778 Register context = ToRegister(instr->context());
2779 Register value = ToRegister(instr->value());
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002780
2781 Label skip_assignment;
2782
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002783 Operand target = ContextOperand(context, instr->slot_index());
2784 if (instr->hydrogen()->RequiresHoleCheck()) {
2785 __ cmp(target, factory()->the_hole_value());
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002786 if (instr->hydrogen()->DeoptimizesOnHole()) {
2787 DeoptimizeIf(equal, instr->environment());
2788 } else {
2789 __ j(not_equal, &skip_assignment, Label::kNear);
2790 }
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002791 }
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002792
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002793 __ mov(target, value);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002794 if (instr->hydrogen()->NeedsWriteBarrier()) {
2795 HType type = instr->hydrogen()->value()->type();
2796 SmiCheck check_needed =
2797 type.IsHeapObject() ? OMIT_SMI_CHECK : INLINE_SMI_CHECK;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002798 Register temp = ToRegister(instr->temp());
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002799 int offset = Context::SlotOffset(instr->slot_index());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002800 __ RecordWriteContextSlot(context,
2801 offset,
2802 value,
2803 temp,
2804 kSaveFPRegs,
2805 EMIT_REMEMBERED_SET,
2806 check_needed);
ricow@chromium.org83aa5492011-02-07 12:42:56 +00002807 }
ricow@chromium.org7ad65222011-12-19 12:13:11 +00002808
2809 __ bind(&skip_assignment);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00002810}
2811
2812
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002813void LCodeGen::DoLoadNamedField(LLoadNamedField* instr) {
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002814 Register object = ToRegister(instr->object());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002815 Register result = ToRegister(instr->result());
2816 if (instr->hydrogen()->is_in_object()) {
2817 __ mov(result, FieldOperand(object, instr->hydrogen()->offset()));
2818 } else {
2819 __ mov(result, FieldOperand(object, JSObject::kPropertiesOffset));
2820 __ mov(result, FieldOperand(result, instr->hydrogen()->offset()));
2821 }
2822}
2823
2824
lrn@chromium.org1c092762011-05-09 09:42:16 +00002825void LCodeGen::EmitLoadFieldOrConstantFunction(Register result,
2826 Register object,
2827 Handle<Map> type,
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002828 Handle<String> name,
2829 LEnvironment* env) {
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00002830 LookupResult lookup(isolate());
verwaest@chromium.org753aee42012-07-17 16:15:42 +00002831 type->LookupDescriptor(NULL, *name, &lookup);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002832 ASSERT(lookup.IsFound() || lookup.IsCacheable());
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002833 if (lookup.IsField()) {
lrn@chromium.org1c092762011-05-09 09:42:16 +00002834 int index = lookup.GetLocalFieldIndexFromMap(*type);
2835 int offset = index * kPointerSize;
2836 if (index < 0) {
2837 // Negative property indices are in-object properties, indexed
2838 // from the end of the fixed part of the object.
2839 __ mov(result, FieldOperand(object, offset + type->instance_size()));
2840 } else {
2841 // Non-negative property indices are in the properties array.
2842 __ mov(result, FieldOperand(object, JSObject::kPropertiesOffset));
2843 __ mov(result, FieldOperand(result, offset + FixedArray::kHeaderSize));
2844 }
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002845 } else if (lookup.IsConstantFunction()) {
lrn@chromium.org1c092762011-05-09 09:42:16 +00002846 Handle<JSFunction> function(lookup.GetConstantFunctionFromMap(*type));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002847 __ LoadHeapObject(result, function);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002848 } else {
2849 // Negative lookup.
2850 // Check prototypes.
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002851 Handle<HeapObject> current(HeapObject::cast((*type)->prototype()));
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002852 Heap* heap = type->GetHeap();
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002853 while (*current != heap->null_value()) {
2854 __ LoadHeapObject(result, current);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002855 __ cmp(FieldOperand(result, HeapObject::kMapOffset),
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002856 Handle<Map>(current->map()));
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002857 DeoptimizeIf(not_equal, env);
yangguo@chromium.orgd2899aa2012-06-21 11:16:20 +00002858 current =
2859 Handle<HeapObject>(HeapObject::cast(current->map()->prototype()));
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002860 }
2861 __ mov(result, factory()->undefined_value());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00002862 }
2863}
2864
2865
2866void LCodeGen::EmitPushTaggedOperand(LOperand* operand) {
2867 ASSERT(!operand->IsDoubleRegister());
2868 if (operand->IsConstantOperand()) {
2869 Handle<Object> object = ToHandle(LConstantOperand::cast(operand));
2870 if (object->IsSmi()) {
2871 __ Push(Handle<Smi>::cast(object));
2872 } else {
2873 __ PushHeapObject(Handle<HeapObject>::cast(object));
2874 }
2875 } else if (operand->IsRegister()) {
2876 __ push(ToRegister(operand));
2877 } else {
2878 __ push(ToOperand(operand));
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002879 }
2880}
2881
2882
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002883// Check for cases where EmitLoadFieldOrConstantFunction needs to walk the
2884// prototype chain, which causes unbounded code generation.
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002885static bool CompactEmit(SmallMapList* list,
2886 Handle<String> name,
2887 int i,
2888 Isolate* isolate) {
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002889 Handle<Map> map = list->at(i);
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002890 // If the map has ElementsKind transitions, we will generate map checks
2891 // for each kind in __ CompareMap(..., ALLOW_ELEMENTS_TRANSITION_MAPS).
yangguo@chromium.org99aa4902012-07-06 16:21:55 +00002892 if (map->HasElementsTransition()) return false;
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002893 LookupResult lookup(isolate);
yangguo@chromium.org99aa4902012-07-06 16:21:55 +00002894 map->LookupDescriptor(NULL, *name, &lookup);
yangguo@chromium.orgde0db002012-06-22 13:44:28 +00002895 return lookup.IsField() || lookup.IsConstantFunction();
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002896}
2897
2898
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002899void LCodeGen::DoLoadNamedFieldPolymorphic(LLoadNamedFieldPolymorphic* instr) {
2900 Register object = ToRegister(instr->object());
2901 Register result = ToRegister(instr->result());
2902
2903 int map_count = instr->hydrogen()->types()->length();
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002904 bool need_generic = instr->hydrogen()->need_generic();
2905
2906 if (map_count == 0 && !need_generic) {
2907 DeoptimizeIf(no_condition, instr->environment());
2908 return;
2909 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002910 Handle<String> name = instr->hydrogen()->name();
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002911 Label done;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002912 bool all_are_compact = true;
2913 for (int i = 0; i < map_count; ++i) {
2914 if (!CompactEmit(instr->hydrogen()->types(), name, i, isolate())) {
2915 all_are_compact = false;
2916 break;
2917 }
2918 }
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002919 for (int i = 0; i < map_count; ++i) {
2920 bool last = (i == map_count - 1);
2921 Handle<Map> map = instr->hydrogen()->types()->at(i);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002922 Label check_passed;
2923 __ CompareMap(object, map, &check_passed, ALLOW_ELEMENT_TRANSITION_MAPS);
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002924 if (last && !need_generic) {
2925 DeoptimizeIf(not_equal, instr->environment());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002926 __ bind(&check_passed);
2927 EmitLoadFieldOrConstantFunction(
2928 result, object, map, name, instr->environment());
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002929 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002930 Label next;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00002931 bool compact = all_are_compact ? true :
2932 CompactEmit(instr->hydrogen()->types(), name, i, isolate());
2933 __ j(not_equal, &next, compact ? Label::kNear : Label::kFar);
2934 __ bind(&check_passed);
2935 EmitLoadFieldOrConstantFunction(
2936 result, object, map, name, instr->environment());
2937 __ jmp(&done, all_are_compact ? Label::kNear : Label::kFar);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002938 __ bind(&next);
2939 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002940 }
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00002941 if (need_generic) {
2942 __ mov(ecx, name);
2943 Handle<Code> ic = isolate()->builtins()->LoadIC_Initialize();
2944 CallCode(ic, RelocInfo::CODE_TARGET, instr);
2945 }
2946 __ bind(&done);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002947}
2948
2949
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002950void LCodeGen::DoLoadNamedGeneric(LLoadNamedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00002951 ASSERT(ToRegister(instr->context()).is(esi));
danno@chromium.org1044a4d2012-04-30 12:34:39 +00002952 ASSERT(ToRegister(instr->object()).is(edx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002953 ASSERT(ToRegister(instr->result()).is(eax));
2954
2955 __ mov(ecx, instr->name());
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00002956 Handle<Code> ic = isolate()->builtins()->LoadIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00002957 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00002958}
2959
2960
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002961void LCodeGen::DoLoadFunctionPrototype(LLoadFunctionPrototype* instr) {
2962 Register function = ToRegister(instr->function());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00002963 Register temp = ToRegister(instr->temp());
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002964 Register result = ToRegister(instr->result());
2965
2966 // Check that the function really is a function.
2967 __ CmpObjectType(function, JS_FUNCTION_TYPE, result);
2968 DeoptimizeIf(not_equal, instr->environment());
2969
2970 // Check whether the function has an instance prototype.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002971 Label non_instance;
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002972 __ test_b(FieldOperand(result, Map::kBitFieldOffset),
2973 1 << Map::kHasNonInstancePrototype);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002974 __ j(not_zero, &non_instance, Label::kNear);
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002975
2976 // Get the prototype or initial map from the function.
2977 __ mov(result,
2978 FieldOperand(function, JSFunction::kPrototypeOrInitialMapOffset));
2979
2980 // Check that the function has a prototype or an initial map.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00002981 __ cmp(Operand(result), Immediate(factory()->the_hole_value()));
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002982 DeoptimizeIf(equal, instr->environment());
2983
2984 // If the function does not have an initial map, we're done.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002985 Label done;
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002986 __ CmpObjectType(result, MAP_TYPE, temp);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002987 __ j(not_equal, &done, Label::kNear);
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002988
2989 // Get the prototype from the initial map.
2990 __ mov(result, FieldOperand(result, Map::kPrototypeOffset));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00002991 __ jmp(&done, Label::kNear);
fschneider@chromium.org9e3e0b62011-01-03 10:16:46 +00002992
2993 // Non-instance prototype: Fetch prototype from constructor field
2994 // in the function's map.
2995 __ bind(&non_instance);
2996 __ mov(result, FieldOperand(result, Map::kConstructorOffset));
2997
2998 // All done.
2999 __ bind(&done);
3000}
3001
3002
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003003void LCodeGen::DoLoadElements(LLoadElements* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003004 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003005 Register input = ToRegister(instr->object());
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003006 __ mov(result, FieldOperand(input, JSObject::kElementsOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003007 if (FLAG_debug_code) {
whesse@chromium.org7b260152011-06-20 15:33:18 +00003008 Label done, ok, fail;
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003009 __ cmp(FieldOperand(result, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003010 Immediate(factory()->fixed_array_map()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003011 __ j(equal, &done, Label::kNear);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003012 __ cmp(FieldOperand(result, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003013 Immediate(factory()->fixed_cow_array_map()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003014 __ j(equal, &done, Label::kNear);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003015 Register temp((result.is(eax)) ? ebx : eax);
3016 __ push(temp);
3017 __ mov(temp, FieldOperand(result, HeapObject::kMapOffset));
whesse@chromium.org7b260152011-06-20 15:33:18 +00003018 __ movzx_b(temp, FieldOperand(temp, Map::kBitField2Offset));
3019 __ and_(temp, Map::kElementsKindMask);
3020 __ shr(temp, Map::kElementsKindShift);
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00003021 __ cmp(temp, GetInitialFastElementsKind());
3022 __ j(less, &fail, Label::kNear);
3023 __ cmp(temp, TERMINAL_FAST_ELEMENTS_KIND);
3024 __ j(less_equal, &ok, Label::kNear);
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003025 __ cmp(temp, FIRST_EXTERNAL_ARRAY_ELEMENTS_KIND);
whesse@chromium.org7b260152011-06-20 15:33:18 +00003026 __ j(less, &fail, Label::kNear);
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003027 __ cmp(temp, LAST_EXTERNAL_ARRAY_ELEMENTS_KIND);
whesse@chromium.org7b260152011-06-20 15:33:18 +00003028 __ j(less_equal, &ok, Label::kNear);
3029 __ bind(&fail);
3030 __ Abort("Check for fast or external elements failed.");
3031 __ bind(&ok);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003032 __ pop(temp);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003033 __ bind(&done);
3034 }
3035}
3036
3037
danno@chromium.org4d3fe4e2011-03-10 10:14:28 +00003038void LCodeGen::DoLoadExternalArrayPointer(
3039 LLoadExternalArrayPointer* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003040 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003041 Register input = ToRegister(instr->object());
danno@chromium.org4d3fe4e2011-03-10 10:14:28 +00003042 __ mov(result, FieldOperand(input,
3043 ExternalArray::kExternalPointerOffset));
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003044}
3045
3046
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003047void LCodeGen::DoAccessArgumentsAt(LAccessArgumentsAt* instr) {
3048 Register arguments = ToRegister(instr->arguments());
3049 Register length = ToRegister(instr->length());
3050 Operand index = ToOperand(instr->index());
3051 Register result = ToRegister(instr->result());
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00003052 // There are two words between the frame pointer and the last argument.
3053 // Subtracting from length accounts for one of them add one more.
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00003054 __ sub(length, index);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003055 __ mov(result, Operand(arguments, length, times_4, kPointerSize));
3056}
3057
3058
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003059void LCodeGen::DoLoadKeyedExternalArray(LLoadKeyed* instr) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003060 ElementsKind elements_kind = instr->elements_kind();
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00003061 LOperand* key = instr->key();
3062 if (!key->IsConstantOperand() &&
3063 ExternalArrayOpRequiresTemp(instr->hydrogen()->key()->representation(),
3064 elements_kind)) {
3065 __ SmiUntag(ToRegister(key));
yangguo@chromium.org304cc332012-07-24 07:59:48 +00003066 }
3067 Operand operand(BuildFastArrayOperand(
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003068 instr->elements(),
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00003069 key,
yangguo@chromium.org304cc332012-07-24 07:59:48 +00003070 instr->hydrogen()->key()->representation(),
3071 elements_kind,
3072 0,
3073 instr->additional_index()));
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003074 if (elements_kind == EXTERNAL_FLOAT_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003075 if (CpuFeatures::IsSupported(SSE2)) {
3076 CpuFeatures::Scope scope(SSE2);
3077 XMMRegister result(ToDoubleRegister(instr->result()));
3078 __ movss(result, operand);
3079 __ cvtss2sd(result, result);
3080 } else {
3081 __ fld_s(operand);
3082 HandleX87FPReturnValue(instr);
3083 }
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003084 } else if (elements_kind == EXTERNAL_DOUBLE_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003085 if (CpuFeatures::IsSupported(SSE2)) {
3086 CpuFeatures::Scope scope(SSE2);
3087 __ movdbl(ToDoubleRegister(instr->result()), operand);
3088 } else {
3089 __ fld_d(operand);
3090 HandleX87FPReturnValue(instr);
3091 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003092 } else {
3093 Register result(ToRegister(instr->result()));
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00003094 switch (elements_kind) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003095 case EXTERNAL_BYTE_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003096 __ movsx_b(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003097 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003098 case EXTERNAL_PIXEL_ELEMENTS:
3099 case EXTERNAL_UNSIGNED_BYTE_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003100 __ movzx_b(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003101 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003102 case EXTERNAL_SHORT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003103 __ movsx_w(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003104 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003105 case EXTERNAL_UNSIGNED_SHORT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003106 __ movzx_w(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003107 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003108 case EXTERNAL_INT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003109 __ mov(result, operand);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003110 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003111 case EXTERNAL_UNSIGNED_INT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003112 __ mov(result, operand);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003113 if (!instr->hydrogen()->CheckFlag(HInstruction::kUint32)) {
3114 __ test(result, Operand(result));
3115 DeoptimizeIf(negative, instr->environment());
3116 }
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003117 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003118 case EXTERNAL_FLOAT_ELEMENTS:
3119 case EXTERNAL_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00003120 case FAST_SMI_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003121 case FAST_ELEMENTS:
3122 case FAST_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00003123 case FAST_HOLEY_SMI_ELEMENTS:
3124 case FAST_HOLEY_ELEMENTS:
3125 case FAST_HOLEY_DOUBLE_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00003126 case DICTIONARY_ELEMENTS:
3127 case NON_STRICT_ARGUMENTS_ELEMENTS:
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003128 UNREACHABLE();
3129 break;
3130 }
3131 }
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003132}
3133
3134
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003135void LCodeGen::HandleX87FPReturnValue(LInstruction* instr) {
3136 if (IsX87TopOfStack(instr->result())) {
3137 // Return value is already on stack. If the value has no uses, then
3138 // pop it off the FP stack. Otherwise, make sure that there are enough
3139 // copies of the value on the stack to feed all of the usages, e.g.
3140 // when the following instruction uses the return value in multiple
3141 // inputs.
3142 int count = instr->hydrogen_value()->UseCount();
3143 if (count == 0) {
3144 __ fstp(0);
3145 } else {
3146 count--;
3147 ASSERT(count <= 7);
3148 while (count-- > 0) {
3149 __ fld(0);
3150 }
3151 }
3152 } else {
3153 __ fstp_d(ToOperand(instr->result()));
3154 }
3155}
jkummerow@chromium.org5323a9c2012-12-10 19:00:50 +00003156
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003157
3158void LCodeGen::DoLoadKeyedFixedDoubleArray(LLoadKeyed* instr) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003159 if (instr->hydrogen()->RequiresHoleCheck()) {
3160 int offset = FixedDoubleArray::kHeaderSize - kHeapObjectTag +
3161 sizeof(kHoleNanLower32);
3162 Operand hole_check_operand = BuildFastArrayOperand(
3163 instr->elements(), instr->key(),
3164 instr->hydrogen()->key()->representation(),
3165 FAST_DOUBLE_ELEMENTS,
3166 offset,
3167 instr->additional_index());
3168 __ cmp(hole_check_operand, Immediate(kHoleNanUpper32));
3169 DeoptimizeIf(equal, instr->environment());
3170 }
3171
3172 Operand double_load_operand = BuildFastArrayOperand(
3173 instr->elements(),
3174 instr->key(),
3175 instr->hydrogen()->key()->representation(),
3176 FAST_DOUBLE_ELEMENTS,
3177 FixedDoubleArray::kHeaderSize - kHeapObjectTag,
3178 instr->additional_index());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003179 if (CpuFeatures::IsSupported(SSE2)) {
3180 CpuFeatures::Scope scope(SSE2);
3181 XMMRegister result = ToDoubleRegister(instr->result());
3182 __ movdbl(result, double_load_operand);
3183 } else {
3184 __ fld_d(double_load_operand);
3185 HandleX87FPReturnValue(instr);
3186 }
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003187}
3188
3189
3190void LCodeGen::DoLoadKeyedFixedArray(LLoadKeyed* instr) {
3191 Register result = ToRegister(instr->result());
3192
3193 // Load the result.
3194 __ mov(result,
3195 BuildFastArrayOperand(instr->elements(),
3196 instr->key(),
3197 instr->hydrogen()->key()->representation(),
3198 FAST_ELEMENTS,
3199 FixedArray::kHeaderSize - kHeapObjectTag,
3200 instr->additional_index()));
3201
3202 // Check for the hole value.
3203 if (instr->hydrogen()->RequiresHoleCheck()) {
3204 if (IsFastSmiElementsKind(instr->hydrogen()->elements_kind())) {
3205 __ test(result, Immediate(kSmiTagMask));
3206 DeoptimizeIf(not_equal, instr->environment());
3207 } else {
3208 __ cmp(result, factory()->the_hole_value());
3209 DeoptimizeIf(equal, instr->environment());
3210 }
3211 }
3212}
3213
3214
3215void LCodeGen::DoLoadKeyed(LLoadKeyed* instr) {
3216 if (instr->is_external()) {
3217 DoLoadKeyedExternalArray(instr);
3218 } else if (instr->hydrogen()->representation().IsDouble()) {
3219 DoLoadKeyedFixedDoubleArray(instr);
3220 } else {
3221 DoLoadKeyedFixedArray(instr);
3222 }
3223}
3224
3225
3226Operand LCodeGen::BuildFastArrayOperand(
3227 LOperand* elements_pointer,
3228 LOperand* key,
3229 Representation key_representation,
3230 ElementsKind elements_kind,
3231 uint32_t offset,
3232 uint32_t additional_index) {
3233 Register elements_pointer_reg = ToRegister(elements_pointer);
3234 int shift_size = ElementsKindToShiftSize(elements_kind);
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003235 if (key->IsConstantOperand()) {
3236 int constant_value = ToInteger32(LConstantOperand::cast(key));
3237 if (constant_value & 0xF0000000) {
3238 Abort("array index constant value too big");
3239 }
3240 return Operand(elements_pointer_reg,
3241 ((constant_value + additional_index) << shift_size)
3242 + offset);
3243 } else {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +00003244 // Take the tag bit into account while computing the shift size.
3245 if (key_representation.IsTagged() && (shift_size >= 1)) {
3246 shift_size -= kSmiTagSize;
3247 }
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00003248 ScaleFactor scale_factor = static_cast<ScaleFactor>(shift_size);
3249 return Operand(elements_pointer_reg,
3250 ToRegister(key),
3251 scale_factor,
3252 offset + (additional_index << shift_size));
3253 }
3254}
3255
3256
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003257void LCodeGen::DoLoadKeyedGeneric(LLoadKeyedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003258 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003259 ASSERT(ToRegister(instr->object()).is(edx));
danno@chromium.org1044a4d2012-04-30 12:34:39 +00003260 ASSERT(ToRegister(instr->key()).is(ecx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003261
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00003262 Handle<Code> ic = isolate()->builtins()->KeyedLoadIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003263 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003264}
3265
3266
3267void LCodeGen::DoArgumentsElements(LArgumentsElements* instr) {
3268 Register result = ToRegister(instr->result());
3269
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003270 if (instr->hydrogen()->from_inlined()) {
3271 __ lea(result, Operand(esp, -2 * kPointerSize));
3272 } else {
3273 // Check for arguments adapter frame.
3274 Label done, adapted;
3275 __ mov(result, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
3276 __ mov(result, Operand(result, StandardFrameConstants::kContextOffset));
3277 __ cmp(Operand(result),
3278 Immediate(Smi::FromInt(StackFrame::ARGUMENTS_ADAPTOR)));
3279 __ j(equal, &adapted, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003280
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003281 // No arguments adaptor frame.
3282 __ mov(result, Operand(ebp));
3283 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003284
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003285 // Arguments adaptor frame present.
3286 __ bind(&adapted);
3287 __ mov(result, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003288
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003289 // Result is the frame pointer for the frame if not adapted and for the real
3290 // frame below the adaptor frame if adapted.
3291 __ bind(&done);
3292 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003293}
3294
3295
3296void LCodeGen::DoArgumentsLength(LArgumentsLength* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003297 Operand elem = ToOperand(instr->elements());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003298 Register result = ToRegister(instr->result());
3299
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003300 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003301
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00003302 // If no arguments adaptor frame the number of arguments is fixed.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003303 __ cmp(ebp, elem);
3304 __ mov(result, Immediate(scope()->num_parameters()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003305 __ j(equal, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003306
3307 // Arguments adaptor frame present. Get argument length from there.
3308 __ mov(result, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
3309 __ mov(result, Operand(result,
3310 ArgumentsAdaptorFrameConstants::kLengthOffset));
3311 __ SmiUntag(result);
3312
kmillikin@chromium.orgd2c22f02011-01-10 08:15:37 +00003313 // Argument length is in result register.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003314 __ bind(&done);
3315}
3316
3317
yangguo@chromium.org154ff992012-03-13 08:09:54 +00003318void LCodeGen::DoWrapReceiver(LWrapReceiver* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003319 Register receiver = ToRegister(instr->receiver());
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003320 Register function = ToRegister(instr->function());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003321 Register scratch = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003322
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003323 // If the receiver is null or undefined, we have to pass the global
3324 // object as a receiver to normal functions. Values have to be
3325 // passed unchanged to builtins and strict-mode functions.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003326 Label global_object, receiver_ok;
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003327
3328 // Do not transform the receiver to object for strict mode
3329 // functions.
3330 __ mov(scratch,
3331 FieldOperand(function, JSFunction::kSharedFunctionInfoOffset));
3332 __ test_b(FieldOperand(scratch, SharedFunctionInfo::kStrictModeByteOffset),
3333 1 << SharedFunctionInfo::kStrictModeBitWithinByte);
danno@chromium.org412fa512012-09-14 13:28:26 +00003334 __ j(not_equal, &receiver_ok); // A near jump is not sufficient here!
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003335
3336 // Do not transform the receiver to object for builtins.
3337 __ test_b(FieldOperand(scratch, SharedFunctionInfo::kNativeByteOffset),
3338 1 << SharedFunctionInfo::kNativeBitWithinByte);
danno@chromium.org412fa512012-09-14 13:28:26 +00003339 __ j(not_equal, &receiver_ok);
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003340
3341 // Normal function. Replace undefined or null with global receiver.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003342 __ cmp(receiver, factory()->null_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003343 __ j(equal, &global_object, Label::kNear);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003344 __ cmp(receiver, factory()->undefined_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003345 __ j(equal, &global_object, Label::kNear);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003346
3347 // The receiver should be a JS object.
3348 __ test(receiver, Immediate(kSmiTagMask));
3349 DeoptimizeIf(equal, instr->environment());
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003350 __ CmpObjectType(receiver, FIRST_SPEC_OBJECT_TYPE, scratch);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003351 DeoptimizeIf(below, instr->environment());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003352 __ jmp(&receiver_ok, Label::kNear);
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003353
3354 __ bind(&global_object);
3355 // TODO(kmillikin): We have a hydrogen value for the global object. See
3356 // if it's better to use it than to explicitly fetch it from the context
3357 // here.
3358 __ mov(receiver, Operand(ebp, StandardFrameConstants::kContextOffset));
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003359 __ mov(receiver, ContextOperand(receiver, Context::GLOBAL_OBJECT_INDEX));
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003360 __ mov(receiver,
3361 FieldOperand(receiver, JSGlobalObject::kGlobalReceiverOffset));
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00003362 __ bind(&receiver_ok);
yangguo@chromium.org154ff992012-03-13 08:09:54 +00003363}
3364
3365
3366void LCodeGen::DoApplyArguments(LApplyArguments* instr) {
3367 Register receiver = ToRegister(instr->receiver());
3368 Register function = ToRegister(instr->function());
3369 Register length = ToRegister(instr->length());
3370 Register elements = ToRegister(instr->elements());
3371 ASSERT(receiver.is(eax)); // Used for parameter count.
3372 ASSERT(function.is(edi)); // Required by InvokeFunction.
3373 ASSERT(ToRegister(instr->result()).is(eax));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003374
3375 // Copy the arguments to this function possibly from the
3376 // adaptor frame below it.
3377 const uint32_t kArgumentsLimit = 1 * KB;
3378 __ cmp(length, kArgumentsLimit);
3379 DeoptimizeIf(above, instr->environment());
3380
3381 __ push(receiver);
3382 __ mov(receiver, length);
3383
3384 // Loop through the arguments pushing them onto the execution
3385 // stack.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003386 Label invoke, loop;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003387 // length is a small non-negative integer, due to the test above.
3388 __ test(length, Operand(length));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003389 __ j(zero, &invoke, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003390 __ bind(&loop);
3391 __ push(Operand(elements, length, times_pointer_size, 1 * kPointerSize));
3392 __ dec(length);
3393 __ j(not_zero, &loop);
3394
3395 // Invoke the function.
3396 __ bind(&invoke);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00003397 ASSERT(instr->HasPointerMap());
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00003398 LPointerMap* pointers = instr->pointer_map();
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00003399 RecordPosition(pointers->position());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00003400 SafepointGenerator safepoint_generator(
3401 this, pointers, Safepoint::kLazyDeopt);
danno@chromium.org160a7b02011-04-18 15:51:38 +00003402 ParameterCount actual(eax);
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003403 __ InvokeFunction(function, actual, CALL_FUNCTION,
3404 safepoint_generator, CALL_AS_METHOD);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003405}
3406
3407
3408void LCodeGen::DoPushArgument(LPushArgument* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003409 LOperand* argument = instr->value();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003410 EmitPushTaggedOperand(argument);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003411}
3412
3413
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00003414void LCodeGen::DoDrop(LDrop* instr) {
3415 __ Drop(instr->count());
3416}
3417
3418
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003419void LCodeGen::DoThisFunction(LThisFunction* instr) {
3420 Register result = ToRegister(instr->result());
yangguo@chromium.org5a11aaf2012-06-20 11:29:00 +00003421 __ mov(result, Operand(ebp, JavaScriptFrameConstants::kFunctionOffset));
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00003422}
3423
3424
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003425void LCodeGen::DoContext(LContext* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003426 Register result = ToRegister(instr->result());
yangguo@chromium.org4cd70b42013-01-04 08:57:54 +00003427 if (info()->IsOptimizing()) {
3428 __ mov(result, Operand(ebp, StandardFrameConstants::kContextOffset));
3429 } else {
3430 // If there is no frame, the context must be in esi.
3431 ASSERT(result.is(esi));
3432 }
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003433}
3434
3435
3436void LCodeGen::DoOuterContext(LOuterContext* instr) {
3437 Register context = ToRegister(instr->context());
3438 Register result = ToRegister(instr->result());
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00003439 __ mov(result,
3440 Operand(context, Context::SlotOffset(Context::PREVIOUS_INDEX)));
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003441}
3442
3443
yangguo@chromium.org56454712012-02-16 15:33:53 +00003444void LCodeGen::DoDeclareGlobals(LDeclareGlobals* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003445 ASSERT(ToRegister(instr->context()).is(esi));
yangguo@chromium.org56454712012-02-16 15:33:53 +00003446 __ push(esi); // The context is the first argument.
3447 __ push(Immediate(instr->hydrogen()->pairs()));
3448 __ push(Immediate(Smi::FromInt(instr->hydrogen()->flags())));
3449 CallRuntime(Runtime::kDeclareGlobals, 3, instr);
3450}
3451
3452
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003453void LCodeGen::DoGlobalObject(LGlobalObject* instr) {
3454 Register context = ToRegister(instr->context());
3455 Register result = ToRegister(instr->result());
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003456 __ mov(result,
3457 Operand(context, Context::SlotOffset(Context::GLOBAL_OBJECT_INDEX)));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003458}
3459
3460
3461void LCodeGen::DoGlobalReceiver(LGlobalReceiver* instr) {
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003462 Register global = ToRegister(instr->global());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003463 Register result = ToRegister(instr->result());
ricow@chromium.org83aa5492011-02-07 12:42:56 +00003464 __ mov(result, FieldOperand(global, GlobalObject::kGlobalReceiverOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003465}
3466
3467
3468void LCodeGen::CallKnownFunction(Handle<JSFunction> function,
3469 int arity,
danno@chromium.org40cb8782011-05-25 07:58:50 +00003470 LInstruction* instr,
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003471 CallKind call_kind,
3472 EDIState edi_state) {
ulan@chromium.org2efb9002012-01-19 15:36:35 +00003473 bool can_invoke_directly = !function->NeedsArgumentsAdaption() ||
3474 function->shared()->formal_parameter_count() == arity;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003475
3476 LPointerMap* pointers = instr->pointer_map();
3477 RecordPosition(pointers->position());
3478
ulan@chromium.org2efb9002012-01-19 15:36:35 +00003479 if (can_invoke_directly) {
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003480 if (edi_state == EDI_UNINITIALIZED) {
3481 __ LoadHeapObject(edi, function);
3482 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003483
verwaest@chromium.orgb6d052d2012-07-27 08:03:27 +00003484 // Change context.
3485 __ mov(esi, FieldOperand(edi, JSFunction::kContextOffset));
ulan@chromium.org2efb9002012-01-19 15:36:35 +00003486
3487 // Set eax to arguments count if adaption is not needed. Assumes that eax
3488 // is available to write to at this point.
3489 if (!function->NeedsArgumentsAdaption()) {
3490 __ mov(eax, arity);
3491 }
3492
3493 // Invoke function directly.
3494 __ SetCallKind(ecx, call_kind);
3495 if (*function == *info()->closure()) {
3496 __ CallSelf();
3497 } else {
3498 __ call(FieldOperand(edi, JSFunction::kCodeEntryOffset));
3499 }
3500 RecordSafepointWithLazyDeopt(instr, RECORD_SIMPLE_SAFEPOINT);
3501 } else {
3502 // We need to adapt arguments.
3503 SafepointGenerator generator(
3504 this, pointers, Safepoint::kLazyDeopt);
3505 ParameterCount count(arity);
3506 __ InvokeFunction(function, count, CALL_FUNCTION, generator, call_kind);
3507 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003508}
3509
3510
3511void LCodeGen::DoCallConstantFunction(LCallConstantFunction* instr) {
3512 ASSERT(ToRegister(instr->result()).is(eax));
danno@chromium.org40cb8782011-05-25 07:58:50 +00003513 CallKnownFunction(instr->function(),
3514 instr->arity(),
3515 instr,
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003516 CALL_AS_METHOD,
3517 EDI_UNINITIALIZED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003518}
3519
3520
3521void LCodeGen::DoDeferredMathAbsTaggedHeapNumber(LUnaryMathOperation* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003522 Register input_reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003523 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003524 factory()->heap_number_map());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003525 DeoptimizeIf(not_equal, instr->environment());
3526
3527 Label done;
3528 Register tmp = input_reg.is(eax) ? ecx : eax;
3529 Register tmp2 = tmp.is(ecx) ? edx : input_reg.is(ecx) ? edx : ecx;
3530
3531 // Preserve the value of all registers.
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00003532 PushSafepointRegistersScope scope(this);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003533
3534 Label negative;
3535 __ mov(tmp, FieldOperand(input_reg, HeapNumber::kExponentOffset));
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003536 // Check the sign of the argument. If the argument is positive, just
3537 // return it. We do not need to patch the stack since |input| and
3538 // |result| are the same register and |input| will be restored
3539 // unchanged by popping safepoint registers.
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003540 __ test(tmp, Immediate(HeapNumber::kSignMask));
3541 __ j(not_zero, &negative);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003542 __ jmp(&done);
3543
3544 __ bind(&negative);
3545
3546 Label allocated, slow;
3547 __ AllocateHeapNumber(tmp, tmp2, no_reg, &slow);
3548 __ jmp(&allocated);
3549
3550 // Slow case: Call the runtime system to do the number allocation.
3551 __ bind(&slow);
3552
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003553 CallRuntimeFromDeferred(Runtime::kAllocateHeapNumber, 0,
3554 instr, instr->context());
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00003555
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003556 // Set the pointer to the new heap number in tmp.
3557 if (!tmp.is(eax)) __ mov(tmp, eax);
3558
3559 // Restore input_reg after call to runtime.
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00003560 __ LoadFromSafepointRegisterSlot(input_reg, input_reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003561
3562 __ bind(&allocated);
3563 __ mov(tmp2, FieldOperand(input_reg, HeapNumber::kExponentOffset));
3564 __ and_(tmp2, ~HeapNumber::kSignMask);
3565 __ mov(FieldOperand(tmp, HeapNumber::kExponentOffset), tmp2);
3566 __ mov(tmp2, FieldOperand(input_reg, HeapNumber::kMantissaOffset));
3567 __ mov(FieldOperand(tmp, HeapNumber::kMantissaOffset), tmp2);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00003568 __ StoreToSafepointRegisterSlot(input_reg, tmp);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003569
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003570 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003571}
3572
3573
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003574void LCodeGen::EmitIntegerMathAbs(LUnaryMathOperation* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003575 Register input_reg = ToRegister(instr->value());
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003576 __ test(input_reg, Operand(input_reg));
3577 Label is_positive;
3578 __ j(not_sign, &is_positive);
3579 __ neg(input_reg);
3580 __ test(input_reg, Operand(input_reg));
3581 DeoptimizeIf(negative, instr->environment());
3582 __ bind(&is_positive);
3583}
3584
3585
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003586void LCodeGen::DoMathAbs(LUnaryMathOperation* instr) {
3587 // Class for deferred case.
3588 class DeferredMathAbsTaggedHeapNumber: public LDeferredCode {
3589 public:
3590 DeferredMathAbsTaggedHeapNumber(LCodeGen* codegen,
3591 LUnaryMathOperation* instr)
3592 : LDeferredCode(codegen), instr_(instr) { }
3593 virtual void Generate() {
3594 codegen()->DoDeferredMathAbsTaggedHeapNumber(instr_);
3595 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00003596 virtual LInstruction* instr() { return instr_; }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003597 private:
3598 LUnaryMathOperation* instr_;
3599 };
3600
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003601 ASSERT(instr->value()->Equals(instr->result()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003602 Representation r = instr->hydrogen()->value()->representation();
3603
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003604 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003605 if (r.IsDouble()) {
3606 XMMRegister scratch = xmm0;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003607 XMMRegister input_reg = ToDoubleRegister(instr->value());
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00003608 __ xorps(scratch, scratch);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003609 __ subsd(scratch, input_reg);
3610 __ pand(input_reg, scratch);
3611 } else if (r.IsInteger32()) {
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003612 EmitIntegerMathAbs(instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003613 } else { // Tagged case.
3614 DeferredMathAbsTaggedHeapNumber* deferred =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00003615 new(zone()) DeferredMathAbsTaggedHeapNumber(this, instr);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003616 Register input_reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003617 // Smi check.
whesse@chromium.org7b260152011-06-20 15:33:18 +00003618 __ JumpIfNotSmi(input_reg, deferred->entry());
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00003619 EmitIntegerMathAbs(instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003620 __ bind(deferred->exit());
3621 }
3622}
3623
3624
3625void LCodeGen::DoMathFloor(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003626 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003627 XMMRegister xmm_scratch = xmm0;
3628 Register output_reg = ToRegister(instr->result());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003629 XMMRegister input_reg = ToDoubleRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003630
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003631 if (CpuFeatures::IsSupported(SSE4_1)) {
3632 CpuFeatures::Scope scope(SSE4_1);
3633 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
3634 // Deoptimize on negative zero.
3635 Label non_zero;
3636 __ xorps(xmm_scratch, xmm_scratch); // Zero the register.
3637 __ ucomisd(input_reg, xmm_scratch);
3638 __ j(not_equal, &non_zero, Label::kNear);
3639 __ movmskpd(output_reg, input_reg);
3640 __ test(output_reg, Immediate(1));
3641 DeoptimizeIf(not_zero, instr->environment());
3642 __ bind(&non_zero);
3643 }
3644 __ roundsd(xmm_scratch, input_reg, Assembler::kRoundDown);
3645 __ cvttsd2si(output_reg, Operand(xmm_scratch));
3646 // Overflow is signalled with minint.
3647 __ cmp(output_reg, 0x80000000u);
3648 DeoptimizeIf(equal, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003649 } else {
jkummerow@chromium.org7a6fc812012-06-27 11:12:38 +00003650 Label negative_sign, done;
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003651 // Deoptimize on unordered.
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003652 __ xorps(xmm_scratch, xmm_scratch); // Zero the register.
3653 __ ucomisd(input_reg, xmm_scratch);
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003654 DeoptimizeIf(parity_even, instr->environment());
3655 __ j(below, &negative_sign, Label::kNear);
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003656
3657 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
3658 // Check for negative zero.
3659 Label positive_sign;
3660 __ j(above, &positive_sign, Label::kNear);
3661 __ movmskpd(output_reg, input_reg);
3662 __ test(output_reg, Immediate(1));
3663 DeoptimizeIf(not_zero, instr->environment());
3664 __ Set(output_reg, Immediate(0));
3665 __ jmp(&done, Label::kNear);
3666 __ bind(&positive_sign);
3667 }
3668
3669 // Use truncating instruction (OK because input is positive).
3670 __ cvttsd2si(output_reg, Operand(input_reg));
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003671 // Overflow is signalled with minint.
3672 __ cmp(output_reg, 0x80000000u);
3673 DeoptimizeIf(equal, instr->environment());
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003674 __ jmp(&done, Label::kNear);
3675
jkummerow@chromium.org7a6fc812012-06-27 11:12:38 +00003676 // Non-zero negative reaches here.
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003677 __ bind(&negative_sign);
jkummerow@chromium.org7a6fc812012-06-27 11:12:38 +00003678 // Truncate, then compare and compensate.
jkummerow@chromium.org212d9642012-05-11 15:02:09 +00003679 __ cvttsd2si(output_reg, Operand(input_reg));
3680 __ cvtsi2sd(xmm_scratch, output_reg);
3681 __ ucomisd(input_reg, xmm_scratch);
3682 __ j(equal, &done, Label::kNear);
3683 __ sub(output_reg, Immediate(1));
3684 DeoptimizeIf(overflow, instr->environment());
3685
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00003686 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003687 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003688}
3689
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003690void LCodeGen::DoMathRound(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003691 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003692 XMMRegister xmm_scratch = xmm0;
3693 Register output_reg = ToRegister(instr->result());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003694 XMMRegister input_reg = ToDoubleRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003695
danno@chromium.org160a7b02011-04-18 15:51:38 +00003696 Label below_half, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003697 // xmm_scratch = 0.5
3698 ExternalReference one_half = ExternalReference::address_of_one_half();
3699 __ movdbl(xmm_scratch, Operand::StaticVariable(one_half));
danno@chromium.org160a7b02011-04-18 15:51:38 +00003700 __ ucomisd(xmm_scratch, input_reg);
3701 __ j(above, &below_half);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003702 // xmm_scratch = input + 0.5
3703 __ addsd(xmm_scratch, input_reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003704
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003705 // Compute Math.floor(value + 0.5).
3706 // Use truncating instruction (OK because input is positive).
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003707 __ cvttsd2si(output_reg, Operand(xmm_scratch));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003708
3709 // Overflow is signalled with minint.
3710 __ cmp(output_reg, 0x80000000u);
3711 DeoptimizeIf(equal, instr->environment());
danno@chromium.org160a7b02011-04-18 15:51:38 +00003712 __ jmp(&done);
3713
3714 __ bind(&below_half);
3715
3716 // We return 0 for the input range [+0, 0.5[, or [-0.5, 0.5[ if
3717 // we can ignore the difference between a result of -0 and +0.
3718 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
3719 // If the sign is positive, we return +0.
3720 __ movmskpd(output_reg, input_reg);
3721 __ test(output_reg, Immediate(1));
3722 DeoptimizeIf(not_zero, instr->environment());
3723 } else {
3724 // If the input is >= -0.5, we return +0.
3725 __ mov(output_reg, Immediate(0xBF000000));
3726 __ movd(xmm_scratch, Operand(output_reg));
3727 __ cvtss2sd(xmm_scratch, xmm_scratch);
3728 __ ucomisd(input_reg, xmm_scratch);
3729 DeoptimizeIf(below, instr->environment());
3730 }
3731 __ Set(output_reg, Immediate(0));
3732 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003733}
3734
3735
3736void LCodeGen::DoMathSqrt(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003737 CpuFeatures::Scope scope(SSE2);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003738 XMMRegister input_reg = ToDoubleRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003739 ASSERT(ToDoubleRegister(instr->result()).is(input_reg));
3740 __ sqrtsd(input_reg, input_reg);
3741}
3742
3743
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003744void LCodeGen::DoMathPowHalf(LMathPowHalf* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003745 CpuFeatures::Scope scope(SSE2);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003746 XMMRegister xmm_scratch = xmm0;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003747 XMMRegister input_reg = ToDoubleRegister(instr->value());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003748 Register scratch = ToRegister(instr->temp());
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003749 ASSERT(ToDoubleRegister(instr->result()).is(input_reg));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003750
3751 // Note that according to ECMA-262 15.8.2.13:
3752 // Math.pow(-Infinity, 0.5) == Infinity
3753 // Math.sqrt(-Infinity) == NaN
3754 Label done, sqrt;
3755 // Check base for -Infinity. According to IEEE-754, single-precision
3756 // -Infinity has the highest 9 bits set and the lowest 23 bits cleared.
3757 __ mov(scratch, 0xFF800000);
3758 __ movd(xmm_scratch, scratch);
3759 __ cvtss2sd(xmm_scratch, xmm_scratch);
3760 __ ucomisd(input_reg, xmm_scratch);
3761 // Comparing -Infinity with NaN results in "unordered", which sets the
3762 // zero flag as if both were equal. However, it also sets the carry flag.
3763 __ j(not_equal, &sqrt, Label::kNear);
3764 __ j(carry, &sqrt, Label::kNear);
3765 // If input is -Infinity, return Infinity.
3766 __ xorps(input_reg, input_reg);
3767 __ subsd(input_reg, xmm_scratch);
3768 __ jmp(&done, Label::kNear);
3769
3770 // Square root.
3771 __ bind(&sqrt);
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00003772 __ xorps(xmm_scratch, xmm_scratch);
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00003773 __ addsd(input_reg, xmm_scratch); // Convert -0 to +0.
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003774 __ sqrtsd(input_reg, input_reg);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003775 __ bind(&done);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003776}
3777
3778
3779void LCodeGen::DoPower(LPower* instr) {
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003780 Representation exponent_type = instr->hydrogen()->right()->representation();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003781 // Having marked this as a call, we can use any registers.
3782 // Just make sure that the input/output registers are the expected ones.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003783 ASSERT(!instr->right()->IsDoubleRegister() ||
3784 ToDoubleRegister(instr->right()).is(xmm1));
3785 ASSERT(!instr->right()->IsRegister() ||
3786 ToRegister(instr->right()).is(eax));
3787 ASSERT(ToDoubleRegister(instr->left()).is(xmm2));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003788 ASSERT(ToDoubleRegister(instr->result()).is(xmm3));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00003789
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003790 if (exponent_type.IsTagged()) {
3791 Label no_deopt;
3792 __ JumpIfSmi(eax, &no_deopt);
3793 __ CmpObjectType(eax, HEAP_NUMBER_TYPE, ecx);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003794 DeoptimizeIf(not_equal, instr->environment());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00003795 __ bind(&no_deopt);
3796 MathPowStub stub(MathPowStub::TAGGED);
3797 __ CallStub(&stub);
3798 } else if (exponent_type.IsInteger32()) {
3799 MathPowStub stub(MathPowStub::INTEGER);
3800 __ CallStub(&stub);
3801 } else {
3802 ASSERT(exponent_type.IsDouble());
3803 MathPowStub stub(MathPowStub::DOUBLE);
3804 __ CallStub(&stub);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003805 }
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003806}
3807
3808
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003809void LCodeGen::DoRandom(LRandom* instr) {
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003810 class DeferredDoRandom: public LDeferredCode {
3811 public:
3812 DeferredDoRandom(LCodeGen* codegen, LRandom* instr)
3813 : LDeferredCode(codegen), instr_(instr) { }
3814 virtual void Generate() { codegen()->DoDeferredRandom(instr_); }
3815 virtual LInstruction* instr() { return instr_; }
3816 private:
3817 LRandom* instr_;
3818 };
3819
mmassi@chromium.org7028c052012-06-13 11:51:58 +00003820 DeferredDoRandom* deferred = new(zone()) DeferredDoRandom(this, instr);
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003821
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003822 CpuFeatures::Scope scope(SSE2);
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003823 // Having marked this instruction as a call we can use any
3824 // registers.
3825 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00003826 ASSERT(ToRegister(instr->global_object()).is(eax));
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003827 // Assert that the register size is indeed the size of each seed.
3828 static const int kSeedSize = sizeof(uint32_t);
3829 STATIC_ASSERT(kPointerSize == kSeedSize);
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003830
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003831 __ mov(eax, FieldOperand(eax, GlobalObject::kNativeContextOffset));
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003832 static const int kRandomSeedOffset =
3833 FixedArray::kHeaderSize + Context::RANDOM_SEED_INDEX * kPointerSize;
3834 __ mov(ebx, FieldOperand(eax, kRandomSeedOffset));
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00003835 // ebx: FixedArray of the native context's random seeds
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003836
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003837 // Load state[0].
3838 __ mov(ecx, FieldOperand(ebx, ByteArray::kHeaderSize));
3839 // If state[0] == 0, call runtime to initialize seeds.
3840 __ test(ecx, ecx);
3841 __ j(zero, deferred->entry());
3842 // Load state[1].
3843 __ mov(eax, FieldOperand(ebx, ByteArray::kHeaderSize + kSeedSize));
3844 // ecx: state[0]
3845 // eax: state[1]
3846
3847 // state[0] = 18273 * (state[0] & 0xFFFF) + (state[0] >> 16)
3848 __ movzx_w(edx, ecx);
3849 __ imul(edx, edx, 18273);
3850 __ shr(ecx, 16);
3851 __ add(ecx, edx);
3852 // Save state[0].
3853 __ mov(FieldOperand(ebx, ByteArray::kHeaderSize), ecx);
3854
3855 // state[1] = 36969 * (state[1] & 0xFFFF) + (state[1] >> 16)
3856 __ movzx_w(edx, eax);
3857 __ imul(edx, edx, 36969);
3858 __ shr(eax, 16);
3859 __ add(eax, edx);
3860 // Save state[1].
3861 __ mov(FieldOperand(ebx, ByteArray::kHeaderSize + kSeedSize), eax);
3862
3863 // Random bit pattern = (state[0] << 14) + (state[1] & 0x3FFFF)
3864 __ shl(ecx, 14);
3865 __ and_(eax, Immediate(0x3FFFF));
3866 __ add(eax, ecx);
3867
3868 __ bind(deferred->exit());
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00003869 // Convert 32 random bits in eax to 0.(32 random bits) in a double
3870 // by computing:
3871 // ( 1.(20 0s)(32 random bits) x 2^20 ) - (1.0 x 2^20)).
3872 __ mov(ebx, Immediate(0x49800000)); // 1.0 x 2^20 as single.
3873 __ movd(xmm2, ebx);
3874 __ movd(xmm1, eax);
3875 __ cvtss2sd(xmm2, xmm2);
3876 __ xorps(xmm1, xmm2);
3877 __ subsd(xmm1, xmm2);
3878}
3879
3880
erik.corry@gmail.combbceb572012-03-09 10:52:05 +00003881void LCodeGen::DoDeferredRandom(LRandom* instr) {
3882 __ PrepareCallCFunction(1, ebx);
3883 __ mov(Operand(esp, 0), eax);
3884 __ CallCFunction(ExternalReference::random_uint32_function(isolate()), 1);
3885 // Return value is in eax.
3886}
3887
3888
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003889void LCodeGen::DoMathLog(LUnaryMathOperation* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003890 CpuFeatures::Scope scope(SSE2);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003891 ASSERT(instr->value()->Equals(instr->result()));
3892 XMMRegister input_reg = ToDoubleRegister(instr->value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003893 Label positive, done, zero;
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00003894 __ xorps(xmm0, xmm0);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003895 __ ucomisd(input_reg, xmm0);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003896 __ j(above, &positive, Label::kNear);
3897 __ j(equal, &zero, Label::kNear);
svenpanne@chromium.org84bcc552011-07-18 09:50:57 +00003898 ExternalReference nan =
3899 ExternalReference::address_of_canonical_non_hole_nan();
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003900 __ movdbl(input_reg, Operand::StaticVariable(nan));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003901 __ jmp(&done, Label::kNear);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003902 __ bind(&zero);
3903 __ push(Immediate(0xFFF00000));
3904 __ push(Immediate(0));
3905 __ movdbl(input_reg, Operand(esp, 0));
3906 __ add(Operand(esp), Immediate(kDoubleSize));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00003907 __ jmp(&done, Label::kNear);
vegorov@chromium.org74f333b2011-04-06 11:17:46 +00003908 __ bind(&positive);
3909 __ fldln2();
3910 __ sub(Operand(esp), Immediate(kDoubleSize));
3911 __ movdbl(Operand(esp, 0), input_reg);
3912 __ fld_d(Operand(esp, 0));
3913 __ fyl2x();
3914 __ fstp_d(Operand(esp, 0));
3915 __ movdbl(input_reg, Operand(esp, 0));
3916 __ add(Operand(esp), Immediate(kDoubleSize));
3917 __ bind(&done);
whesse@chromium.org023421e2010-12-21 12:19:12 +00003918}
3919
3920
danno@chromium.org1f34ad32012-11-26 14:53:56 +00003921void LCodeGen::DoMathExp(LMathExp* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00003922 CpuFeatures::Scope scope(SSE2);
danno@chromium.org1f34ad32012-11-26 14:53:56 +00003923 XMMRegister input = ToDoubleRegister(instr->value());
3924 XMMRegister result = ToDoubleRegister(instr->result());
3925 Register temp1 = ToRegister(instr->temp1());
3926 Register temp2 = ToRegister(instr->temp2());
3927
3928 MathExpGenerator::EmitMathExp(masm(), input, result, xmm0, temp1, temp2);
3929}
3930
3931
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00003932void LCodeGen::DoMathTan(LUnaryMathOperation* instr) {
3933 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
3934 TranscendentalCacheStub stub(TranscendentalCache::TAN,
3935 TranscendentalCacheStub::UNTAGGED);
3936 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
3937}
3938
3939
whesse@chromium.org023421e2010-12-21 12:19:12 +00003940void LCodeGen::DoMathCos(LUnaryMathOperation* instr) {
3941 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
3942 TranscendentalCacheStub stub(TranscendentalCache::COS,
3943 TranscendentalCacheStub::UNTAGGED);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003944 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
whesse@chromium.org023421e2010-12-21 12:19:12 +00003945}
3946
3947
3948void LCodeGen::DoMathSin(LUnaryMathOperation* instr) {
3949 ASSERT(ToDoubleRegister(instr->result()).is(xmm1));
3950 TranscendentalCacheStub stub(TranscendentalCache::SIN,
3951 TranscendentalCacheStub::UNTAGGED);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00003952 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003953}
3954
3955
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003956void LCodeGen::DoUnaryMathOperation(LUnaryMathOperation* instr) {
3957 switch (instr->op()) {
3958 case kMathAbs:
3959 DoMathAbs(instr);
3960 break;
3961 case kMathFloor:
3962 DoMathFloor(instr);
3963 break;
3964 case kMathRound:
3965 DoMathRound(instr);
3966 break;
3967 case kMathSqrt:
3968 DoMathSqrt(instr);
3969 break;
whesse@chromium.org023421e2010-12-21 12:19:12 +00003970 case kMathCos:
3971 DoMathCos(instr);
3972 break;
3973 case kMathSin:
3974 DoMathSin(instr);
3975 break;
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00003976 case kMathTan:
3977 DoMathTan(instr);
3978 break;
ager@chromium.org5f0c45f2010-12-17 08:51:21 +00003979 case kMathLog:
3980 DoMathLog(instr);
3981 break;
3982
kasperl@chromium.orga5551262010-12-07 12:49:48 +00003983 default:
3984 UNREACHABLE();
3985 }
3986}
3987
3988
danno@chromium.org160a7b02011-04-18 15:51:38 +00003989void LCodeGen::DoInvokeFunction(LInvokeFunction* instr) {
3990 ASSERT(ToRegister(instr->context()).is(esi));
3991 ASSERT(ToRegister(instr->function()).is(edi));
3992 ASSERT(instr->HasPointerMap());
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00003993
3994 if (instr->known_function().is_null()) {
3995 LPointerMap* pointers = instr->pointer_map();
3996 RecordPosition(pointers->position());
3997 SafepointGenerator generator(
3998 this, pointers, Safepoint::kLazyDeopt);
3999 ParameterCount count(instr->arity());
4000 __ InvokeFunction(edi, count, CALL_FUNCTION, generator, CALL_AS_METHOD);
4001 } else {
4002 CallKnownFunction(instr->known_function(),
4003 instr->arity(),
4004 instr,
4005 CALL_AS_METHOD,
4006 EDI_CONTAINS_TARGET);
4007 }
danno@chromium.org160a7b02011-04-18 15:51:38 +00004008}
4009
4010
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004011void LCodeGen::DoCallKeyed(LCallKeyed* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004012 ASSERT(ToRegister(instr->context()).is(esi));
4013 ASSERT(ToRegister(instr->key()).is(ecx));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004014 ASSERT(ToRegister(instr->result()).is(eax));
4015
4016 int arity = instr->arity();
lrn@chromium.org34e60782011-09-15 07:25:40 +00004017 Handle<Code> ic =
4018 isolate()->stub_cache()->ComputeKeyedCallInitialize(arity);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004019 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004020}
4021
4022
4023void LCodeGen::DoCallNamed(LCallNamed* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004024 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004025 ASSERT(ToRegister(instr->result()).is(eax));
4026
4027 int arity = instr->arity();
danno@chromium.org40cb8782011-05-25 07:58:50 +00004028 RelocInfo::Mode mode = RelocInfo::CODE_TARGET;
4029 Handle<Code> ic =
lrn@chromium.org34e60782011-09-15 07:25:40 +00004030 isolate()->stub_cache()->ComputeCallInitialize(arity, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004031 __ mov(ecx, instr->name());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004032 CallCode(ic, mode, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004033}
4034
4035
4036void LCodeGen::DoCallFunction(LCallFunction* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004037 ASSERT(ToRegister(instr->context()).is(esi));
danno@chromium.orgc612e022011-11-10 11:38:15 +00004038 ASSERT(ToRegister(instr->function()).is(edi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004039 ASSERT(ToRegister(instr->result()).is(eax));
4040
4041 int arity = instr->arity();
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004042 CallFunctionStub stub(arity, NO_CALL_FUNCTION_FLAGS);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004043 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004044}
4045
4046
4047void LCodeGen::DoCallGlobal(LCallGlobal* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004048 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004049 ASSERT(ToRegister(instr->result()).is(eax));
4050
4051 int arity = instr->arity();
danno@chromium.org40cb8782011-05-25 07:58:50 +00004052 RelocInfo::Mode mode = RelocInfo::CODE_TARGET_CONTEXT;
4053 Handle<Code> ic =
lrn@chromium.org34e60782011-09-15 07:25:40 +00004054 isolate()->stub_cache()->ComputeCallInitialize(arity, mode);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004055 __ mov(ecx, instr->name());
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004056 CallCode(ic, mode, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004057}
4058
4059
4060void LCodeGen::DoCallKnownGlobal(LCallKnownGlobal* instr) {
4061 ASSERT(ToRegister(instr->result()).is(eax));
svenpanne@chromium.orgfb046332012-04-19 12:02:44 +00004062 CallKnownFunction(instr->target(),
4063 instr->arity(),
4064 instr,
4065 CALL_AS_FUNCTION,
4066 EDI_UNINITIALIZED);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004067}
4068
4069
4070void LCodeGen::DoCallNew(LCallNew* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004071 ASSERT(ToRegister(instr->context()).is(esi));
4072 ASSERT(ToRegister(instr->constructor()).is(edi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004073 ASSERT(ToRegister(instr->result()).is(eax));
4074
danno@chromium.orgfa458e42012-02-01 10:48:36 +00004075 CallConstructStub stub(NO_CALL_FUNCTION_FLAGS);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004076 __ Set(eax, Immediate(instr->arity()));
danno@chromium.orgfa458e42012-02-01 10:48:36 +00004077 CallCode(stub.GetCode(), RelocInfo::CONSTRUCT_CALL, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004078}
4079
4080
4081void LCodeGen::DoCallRuntime(LCallRuntime* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004082 CallRuntime(instr->function(), instr->arity(), instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004083}
4084
4085
4086void LCodeGen::DoStoreNamedField(LStoreNamedField* instr) {
4087 Register object = ToRegister(instr->object());
4088 Register value = ToRegister(instr->value());
4089 int offset = instr->offset();
4090
4091 if (!instr->transition().is_null()) {
verwaest@chromium.org37141392012-05-31 13:27:02 +00004092 if (!instr->hydrogen()->NeedsWriteBarrierForMap()) {
4093 __ mov(FieldOperand(object, HeapObject::kMapOffset), instr->transition());
4094 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004095 Register temp = ToRegister(instr->temp());
4096 Register temp_map = ToRegister(instr->temp_map());
verwaest@chromium.org37141392012-05-31 13:27:02 +00004097 __ mov(temp_map, instr->transition());
4098 __ mov(FieldOperand(object, HeapObject::kMapOffset), temp_map);
4099 // Update the write barrier for the map field.
4100 __ RecordWriteField(object,
4101 HeapObject::kMapOffset,
4102 temp_map,
4103 temp,
4104 kSaveFPRegs,
4105 OMIT_REMEMBERED_SET,
4106 OMIT_SMI_CHECK);
4107 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004108 }
4109
4110 // Do the store.
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004111 HType type = instr->hydrogen()->value()->type();
4112 SmiCheck check_needed =
4113 type.IsHeapObject() ? OMIT_SMI_CHECK : INLINE_SMI_CHECK;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004114 if (instr->is_in_object()) {
4115 __ mov(FieldOperand(object, offset), value);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004116 if (instr->hydrogen()->NeedsWriteBarrier()) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004117 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004118 // Update the write barrier for the object for in-object properties.
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004119 __ RecordWriteField(object,
4120 offset,
4121 value,
4122 temp,
4123 kSaveFPRegs,
4124 EMIT_REMEMBERED_SET,
4125 check_needed);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004126 }
4127 } else {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004128 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004129 __ mov(temp, FieldOperand(object, JSObject::kPropertiesOffset));
4130 __ mov(FieldOperand(temp, offset), value);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004131 if (instr->hydrogen()->NeedsWriteBarrier()) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004132 // Update the write barrier for the properties array.
4133 // object is used as a scratch register.
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004134 __ RecordWriteField(temp,
4135 offset,
4136 value,
4137 object,
4138 kSaveFPRegs,
4139 EMIT_REMEMBERED_SET,
4140 check_needed);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004141 }
4142 }
4143}
4144
4145
4146void LCodeGen::DoStoreNamedGeneric(LStoreNamedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004147 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004148 ASSERT(ToRegister(instr->object()).is(edx));
4149 ASSERT(ToRegister(instr->value()).is(eax));
4150
4151 __ mov(ecx, instr->name());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004152 Handle<Code> ic = (instr->strict_mode_flag() == kStrictMode)
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004153 ? isolate()->builtins()->StoreIC_Initialize_Strict()
4154 : isolate()->builtins()->StoreIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004155 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004156}
4157
4158
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004159void LCodeGen::DeoptIfTaggedButNotSmi(LEnvironment* environment,
4160 HValue* value,
4161 LOperand* operand) {
4162 if (value->representation().IsTagged() && !value->type().IsSmi()) {
4163 if (operand->IsRegister()) {
4164 __ test(ToRegister(operand), Immediate(kSmiTagMask));
4165 } else {
4166 __ test(ToOperand(operand), Immediate(kSmiTagMask));
4167 }
4168 DeoptimizeIf(not_zero, environment);
4169 }
4170}
4171
4172
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004173void LCodeGen::DoBoundsCheck(LBoundsCheck* instr) {
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004174 DeoptIfTaggedButNotSmi(instr->environment(),
4175 instr->hydrogen()->length(),
4176 instr->length());
4177 DeoptIfTaggedButNotSmi(instr->environment(),
4178 instr->hydrogen()->index(),
4179 instr->index());
danno@chromium.orgb6451162011-08-17 14:33:23 +00004180 if (instr->index()->IsConstantOperand()) {
jkummerow@chromium.org000f7fb2012-08-01 11:14:42 +00004181 int constant_index =
4182 ToInteger32(LConstantOperand::cast(instr->index()));
4183 if (instr->hydrogen()->length()->representation().IsTagged()) {
4184 __ cmp(ToOperand(instr->length()),
4185 Immediate(Smi::FromInt(constant_index)));
4186 } else {
4187 __ cmp(ToOperand(instr->length()), Immediate(constant_index));
4188 }
danno@chromium.orgb6451162011-08-17 14:33:23 +00004189 DeoptimizeIf(below_equal, instr->environment());
4190 } else {
4191 __ cmp(ToRegister(instr->index()), ToOperand(instr->length()));
4192 DeoptimizeIf(above_equal, instr->environment());
4193 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004194}
4195
4196
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004197void LCodeGen::DoStoreKeyedExternalArray(LStoreKeyed* instr) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004198 ElementsKind elements_kind = instr->elements_kind();
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00004199 LOperand* key = instr->key();
4200 if (!key->IsConstantOperand() &&
4201 ExternalArrayOpRequiresTemp(instr->hydrogen()->key()->representation(),
4202 elements_kind)) {
4203 __ SmiUntag(ToRegister(key));
yangguo@chromium.org304cc332012-07-24 07:59:48 +00004204 }
4205 Operand operand(BuildFastArrayOperand(
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004206 instr->elements(),
yangguo@chromium.orgeeb44b62012-11-13 13:56:09 +00004207 key,
yangguo@chromium.org304cc332012-07-24 07:59:48 +00004208 instr->hydrogen()->key()->representation(),
4209 elements_kind,
4210 0,
4211 instr->additional_index()));
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004212 if (elements_kind == EXTERNAL_FLOAT_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004213 CpuFeatures::Scope scope(SSE2);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004214 __ cvtsd2ss(xmm0, ToDoubleRegister(instr->value()));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004215 __ movss(operand, xmm0);
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004216 } else if (elements_kind == EXTERNAL_DOUBLE_ELEMENTS) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004217 CpuFeatures::Scope scope(SSE2);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004218 __ movdbl(operand, ToDoubleRegister(instr->value()));
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004219 } else {
4220 Register value = ToRegister(instr->value());
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004221 switch (elements_kind) {
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004222 case EXTERNAL_PIXEL_ELEMENTS:
4223 case EXTERNAL_UNSIGNED_BYTE_ELEMENTS:
4224 case EXTERNAL_BYTE_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004225 __ mov_b(operand, value);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004226 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004227 case EXTERNAL_SHORT_ELEMENTS:
4228 case EXTERNAL_UNSIGNED_SHORT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004229 __ mov_w(operand, value);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004230 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004231 case EXTERNAL_INT_ELEMENTS:
4232 case EXTERNAL_UNSIGNED_INT_ELEMENTS:
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004233 __ mov(operand, value);
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004234 break;
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004235 case EXTERNAL_FLOAT_ELEMENTS:
4236 case EXTERNAL_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004237 case FAST_SMI_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004238 case FAST_ELEMENTS:
4239 case FAST_DOUBLE_ELEMENTS:
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004240 case FAST_HOLEY_SMI_ELEMENTS:
4241 case FAST_HOLEY_ELEMENTS:
4242 case FAST_HOLEY_DOUBLE_ELEMENTS:
kmillikin@chromium.org83e16822011-09-13 08:21:47 +00004243 case DICTIONARY_ELEMENTS:
4244 case NON_STRICT_ARGUMENTS_ELEMENTS:
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004245 UNREACHABLE();
4246 break;
4247 }
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004248 }
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004249}
4250
4251
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004252void LCodeGen::DoStoreKeyedFixedDoubleArray(LStoreKeyed* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004253 CpuFeatures::Scope scope(SSE2);
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004254 XMMRegister value = ToDoubleRegister(instr->value());
4255
4256 if (instr->NeedsCanonicalization()) {
4257 Label have_value;
4258
4259 __ ucomisd(value, value);
4260 __ j(parity_odd, &have_value); // NaN.
4261
4262 ExternalReference canonical_nan_reference =
4263 ExternalReference::address_of_canonical_non_hole_nan();
4264 __ movdbl(value, Operand::StaticVariable(canonical_nan_reference));
4265 __ bind(&have_value);
4266 }
4267
4268 Operand double_store_operand = BuildFastArrayOperand(
4269 instr->elements(),
4270 instr->key(),
4271 instr->hydrogen()->key()->representation(),
4272 FAST_DOUBLE_ELEMENTS,
4273 FixedDoubleArray::kHeaderSize - kHeapObjectTag,
4274 instr->additional_index());
4275 __ movdbl(double_store_operand, value);
4276}
4277
4278
4279void LCodeGen::DoStoreKeyedFixedArray(LStoreKeyed* instr) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004280 Register value = ToRegister(instr->value());
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004281 Register elements = ToRegister(instr->elements());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004282 Register key = instr->key()->IsRegister() ? ToRegister(instr->key()) : no_reg;
4283
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004284 Operand operand = BuildFastArrayOperand(
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004285 instr->elements(),
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004286 instr->key(),
yangguo@chromium.org304cc332012-07-24 07:59:48 +00004287 instr->hydrogen()->key()->representation(),
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004288 FAST_ELEMENTS,
4289 FixedArray::kHeaderSize - kHeapObjectTag,
4290 instr->additional_index());
4291 __ mov(operand, value);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004292
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004293 if (instr->hydrogen()->NeedsWriteBarrier()) {
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004294 ASSERT(!instr->key()->IsConstantOperand());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004295 HType type = instr->hydrogen()->value()->type();
4296 SmiCheck check_needed =
4297 type.IsHeapObject() ? OMIT_SMI_CHECK : INLINE_SMI_CHECK;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004298 // Compute address of modified element and store it into key register.
ulan@chromium.org0e3f88b2012-05-22 09:16:05 +00004299 __ lea(key, operand);
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004300 __ RecordWrite(elements,
4301 key,
4302 value,
4303 kSaveFPRegs,
4304 EMIT_REMEMBERED_SET,
4305 check_needed);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004306 }
4307}
4308
4309
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00004310void LCodeGen::DoStoreKeyed(LStoreKeyed* instr) {
4311 // By cases...external, fast-double, fast
4312 if (instr->is_external()) {
4313 DoStoreKeyedExternalArray(instr);
4314 } else if (instr->hydrogen()->value()->representation().IsDouble()) {
4315 DoStoreKeyedFixedDoubleArray(instr);
4316 } else {
4317 DoStoreKeyedFixedArray(instr);
jkummerow@chromium.org28faa982012-04-13 09:58:30 +00004318 }
rossberg@chromium.org717967f2011-07-20 13:44:42 +00004319}
4320
4321
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004322void LCodeGen::DoStoreKeyedGeneric(LStoreKeyedGeneric* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00004323 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004324 ASSERT(ToRegister(instr->object()).is(edx));
4325 ASSERT(ToRegister(instr->key()).is(ecx));
4326 ASSERT(ToRegister(instr->value()).is(eax));
4327
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004328 Handle<Code> ic = (instr->strict_mode_flag() == kStrictMode)
fschneider@chromium.org7979bbb2011-03-28 10:47:03 +00004329 ? isolate()->builtins()->KeyedStoreIC_Initialize_Strict()
4330 : isolate()->builtins()->KeyedStoreIC_Initialize();
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004331 CallCode(ic, RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004332}
4333
4334
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004335void LCodeGen::DoTrapAllocationMemento(LTrapAllocationMemento* instr) {
4336 Register object = ToRegister(instr->object());
4337 Register temp = ToRegister(instr->temp());
4338 __ TestJSArrayForAllocationSiteInfo(object, temp);
4339 DeoptimizeIf(equal, instr->environment());
4340}
4341
4342
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004343void LCodeGen::DoTransitionElementsKind(LTransitionElementsKind* instr) {
4344 Register object_reg = ToRegister(instr->object());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004345
4346 Handle<Map> from_map = instr->original_map();
4347 Handle<Map> to_map = instr->transitioned_map();
yangguo@chromium.org003650e2013-01-24 16:31:08 +00004348 ElementsKind from_kind = instr->from_kind();
4349 ElementsKind to_kind = instr->to_kind();
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004350
4351 Label not_applicable;
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004352 bool is_simple_map_transition =
4353 IsSimpleMapChangeTransition(from_kind, to_kind);
4354 Label::Distance branch_distance =
4355 is_simple_map_transition ? Label::kNear : Label::kFar;
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004356 __ cmp(FieldOperand(object_reg, HeapObject::kMapOffset), from_map);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004357 __ j(not_equal, &not_applicable, branch_distance);
4358 if (is_simple_map_transition) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004359 Register new_map_reg = ToRegister(instr->new_map_temp());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004360 Handle<Map> map = instr->hydrogen()->transitioned_map();
4361 __ mov(FieldOperand(object_reg, HeapObject::kMapOffset),
4362 Immediate(map));
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004363 // Write barrier.
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004364 ASSERT_NE(instr->temp(), NULL);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004365 __ RecordWriteForMap(object_reg, to_map, new_map_reg,
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004366 ToRegister(instr->temp()),
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004367 kDontSaveFPRegs);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004368 } else if (FLAG_compiled_transitions) {
4369 PushSafepointRegistersScope scope(this);
4370 if (!object_reg.is(eax)) {
4371 __ push(object_reg);
4372 }
4373 LoadContextFromDeferred(instr->context());
4374 if (!object_reg.is(eax)) {
4375 __ pop(eax);
4376 }
4377 __ mov(ebx, to_map);
4378 TransitionElementsKindStub stub(from_kind, to_kind);
4379 __ CallStub(&stub);
4380 RecordSafepointWithRegisters(
4381 instr->pointer_map(), 0, Safepoint::kNoLazyDeopt);
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004382 } else if (IsFastSmiElementsKind(from_kind) &&
4383 IsFastDoubleElementsKind(to_kind)) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004384 Register new_map_reg = ToRegister(instr->new_map_temp());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004385 __ mov(new_map_reg, to_map);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004386 Register fixed_object_reg = ToRegister(instr->temp());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004387 ASSERT(fixed_object_reg.is(edx));
4388 ASSERT(new_map_reg.is(ebx));
4389 __ mov(fixed_object_reg, object_reg);
4390 CallCode(isolate()->builtins()->TransitionElementsSmiToDouble(),
4391 RelocInfo::CODE_TARGET, instr);
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00004392 } else if (IsFastDoubleElementsKind(from_kind) &&
4393 IsFastObjectElementsKind(to_kind)) {
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004394 Register new_map_reg = ToRegister(instr->new_map_temp());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004395 __ mov(new_map_reg, to_map);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004396 Register fixed_object_reg = ToRegister(instr->temp());
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00004397 ASSERT(fixed_object_reg.is(edx));
4398 ASSERT(new_map_reg.is(ebx));
4399 __ mov(fixed_object_reg, object_reg);
4400 CallCode(isolate()->builtins()->TransitionElementsDoubleToObject(),
4401 RelocInfo::CODE_TARGET, instr);
4402 } else {
4403 UNREACHABLE();
4404 }
4405 __ bind(&not_applicable);
4406}
4407
4408
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004409void LCodeGen::DoStringCharCodeAt(LStringCharCodeAt* instr) {
4410 class DeferredStringCharCodeAt: public LDeferredCode {
4411 public:
4412 DeferredStringCharCodeAt(LCodeGen* codegen, LStringCharCodeAt* instr)
4413 : LDeferredCode(codegen), instr_(instr) { }
4414 virtual void Generate() { codegen()->DoDeferredStringCharCodeAt(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004415 virtual LInstruction* instr() { return instr_; }
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004416 private:
4417 LStringCharCodeAt* instr_;
4418 };
4419
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004420 DeferredStringCharCodeAt* deferred =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004421 new(zone()) DeferredStringCharCodeAt(this, instr);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004422
erikcorry0ad885c2011-11-21 13:51:57 +00004423 StringCharLoadGenerator::Generate(masm(),
4424 factory(),
4425 ToRegister(instr->string()),
4426 ToRegister(instr->index()),
4427 ToRegister(instr->result()),
4428 deferred->entry());
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004429 __ bind(deferred->exit());
4430}
4431
4432
4433void LCodeGen::DoDeferredStringCharCodeAt(LStringCharCodeAt* instr) {
4434 Register string = ToRegister(instr->string());
4435 Register result = ToRegister(instr->result());
4436
4437 // TODO(3095996): Get rid of this. For now, we need to make the
4438 // result register contain a valid pointer because it is already
4439 // contained in the register pointer map.
4440 __ Set(result, Immediate(0));
4441
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004442 PushSafepointRegistersScope scope(this);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004443 __ push(string);
4444 // Push the index as a smi. This is safe because of the checks in
4445 // DoStringCharCodeAt above.
4446 STATIC_ASSERT(String::kMaxLength <= Smi::kMaxValue);
4447 if (instr->index()->IsConstantOperand()) {
4448 int const_index = ToInteger32(LConstantOperand::cast(instr->index()));
4449 __ push(Immediate(Smi::FromInt(const_index)));
4450 } else {
4451 Register index = ToRegister(instr->index());
4452 __ SmiTag(index);
4453 __ push(index);
4454 }
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004455 CallRuntimeFromDeferred(Runtime::kStringCharCodeAt, 2,
4456 instr, instr->context());
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00004457 __ AssertSmi(eax);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004458 __ SmiUntag(eax);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004459 __ StoreToSafepointRegisterSlot(result, eax);
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004460}
4461
4462
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004463void LCodeGen::DoStringCharFromCode(LStringCharFromCode* instr) {
4464 class DeferredStringCharFromCode: public LDeferredCode {
4465 public:
4466 DeferredStringCharFromCode(LCodeGen* codegen, LStringCharFromCode* instr)
4467 : LDeferredCode(codegen), instr_(instr) { }
4468 virtual void Generate() { codegen()->DoDeferredStringCharFromCode(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004469 virtual LInstruction* instr() { return instr_; }
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004470 private:
4471 LStringCharFromCode* instr_;
4472 };
4473
4474 DeferredStringCharFromCode* deferred =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004475 new(zone()) DeferredStringCharFromCode(this, instr);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004476
4477 ASSERT(instr->hydrogen()->value()->representation().IsInteger32());
4478 Register char_code = ToRegister(instr->char_code());
4479 Register result = ToRegister(instr->result());
4480 ASSERT(!char_code.is(result));
4481
jkummerow@chromium.org59297c72013-01-09 16:32:23 +00004482 __ cmp(char_code, String::kMaxOneByteCharCode);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004483 __ j(above, deferred->entry());
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004484 __ Set(result, Immediate(factory()->single_character_string_cache()));
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004485 __ mov(result, FieldOperand(result,
4486 char_code, times_pointer_size,
4487 FixedArray::kHeaderSize));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004488 __ cmp(result, factory()->undefined_value());
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004489 __ j(equal, deferred->entry());
4490 __ bind(deferred->exit());
4491}
4492
4493
4494void LCodeGen::DoDeferredStringCharFromCode(LStringCharFromCode* instr) {
4495 Register char_code = ToRegister(instr->char_code());
4496 Register result = ToRegister(instr->result());
4497
4498 // TODO(3095996): Get rid of this. For now, we need to make the
4499 // result register contain a valid pointer because it is already
4500 // contained in the register pointer map.
4501 __ Set(result, Immediate(0));
4502
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004503 PushSafepointRegistersScope scope(this);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004504 __ SmiTag(char_code);
4505 __ push(char_code);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004506 CallRuntimeFromDeferred(Runtime::kCharFromCode, 1, instr, instr->context());
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004507 __ StoreToSafepointRegisterSlot(result, eax);
whesse@chromium.orgb08986c2011-03-14 16:13:42 +00004508}
4509
4510
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00004511void LCodeGen::DoStringLength(LStringLength* instr) {
4512 Register string = ToRegister(instr->string());
4513 Register result = ToRegister(instr->result());
4514 __ mov(result, FieldOperand(string, String::kLengthOffset));
4515}
4516
4517
danno@chromium.org160a7b02011-04-18 15:51:38 +00004518void LCodeGen::DoStringAdd(LStringAdd* instr) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00004519 EmitPushTaggedOperand(instr->left());
4520 EmitPushTaggedOperand(instr->right());
danno@chromium.org160a7b02011-04-18 15:51:38 +00004521 StringAddStub stub(NO_STRING_CHECK_IN_STUB);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004522 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
danno@chromium.org160a7b02011-04-18 15:51:38 +00004523}
4524
4525
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004526void LCodeGen::DoInteger32ToDouble(LInteger32ToDouble* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004527 if (CpuFeatures::IsSupported(SSE2)) {
4528 CpuFeatures::Scope scope(SSE2);
4529 LOperand* input = instr->value();
4530 ASSERT(input->IsRegister() || input->IsStackSlot());
4531 LOperand* output = instr->result();
4532 ASSERT(output->IsDoubleRegister());
4533 __ cvtsi2sd(ToDoubleRegister(output), ToOperand(input));
4534 } else {
4535 UNREACHABLE();
4536 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004537}
4538
4539
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004540void LCodeGen::DoUint32ToDouble(LUint32ToDouble* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004541 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004542 LOperand* input = instr->value();
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004543 LOperand* output = instr->result();
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004544 LOperand* temp = instr->temp();
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004545
4546 __ LoadUint32(ToDoubleRegister(output),
4547 ToRegister(input),
4548 ToDoubleRegister(temp));
4549}
4550
4551
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004552void LCodeGen::DoNumberTagI(LNumberTagI* instr) {
4553 class DeferredNumberTagI: public LDeferredCode {
4554 public:
4555 DeferredNumberTagI(LCodeGen* codegen, LNumberTagI* instr)
4556 : LDeferredCode(codegen), instr_(instr) { }
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004557 virtual void Generate() {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004558 codegen()->DoDeferredNumberTagI(instr_, instr_->value(), SIGNED_INT32);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004559 }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004560 virtual LInstruction* instr() { return instr_; }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004561 private:
4562 LNumberTagI* instr_;
4563 };
4564
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004565 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004566 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4567 Register reg = ToRegister(input);
4568
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004569 DeferredNumberTagI* deferred = new(zone()) DeferredNumberTagI(this, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004570 __ SmiTag(reg);
4571 __ j(overflow, deferred->entry());
4572 __ bind(deferred->exit());
4573}
4574
4575
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004576void LCodeGen::DoNumberTagU(LNumberTagU* instr) {
4577 class DeferredNumberTagU: public LDeferredCode {
4578 public:
4579 DeferredNumberTagU(LCodeGen* codegen, LNumberTagU* instr)
4580 : LDeferredCode(codegen), instr_(instr) { }
4581 virtual void Generate() {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004582 codegen()->DoDeferredNumberTagI(instr_, instr_->value(), UNSIGNED_INT32);
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004583 }
4584 virtual LInstruction* instr() { return instr_; }
4585 private:
4586 LNumberTagU* instr_;
4587 };
4588
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004589 LOperand* input = instr->value();
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004590 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4591 Register reg = ToRegister(input);
4592
4593 DeferredNumberTagU* deferred = new(zone()) DeferredNumberTagU(this, instr);
4594 __ cmp(reg, Immediate(Smi::kMaxValue));
4595 __ j(above, deferred->entry());
4596 __ SmiTag(reg);
4597 __ bind(deferred->exit());
4598}
4599
4600
4601void LCodeGen::DoDeferredNumberTagI(LInstruction* instr,
4602 LOperand* value,
4603 IntegerSignedness signedness) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004604 Label slow;
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004605 Register reg = ToRegister(value);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004606 Register tmp = reg.is(eax) ? ecx : eax;
4607
4608 // Preserve the value of all registers.
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004609 PushSafepointRegistersScope scope(this);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004610
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004611 Label done;
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004612
4613 if (signedness == SIGNED_INT32) {
4614 // There was overflow, so bits 30 and 31 of the original integer
4615 // disagree. Try to allocate a heap number in new space and store
4616 // the value in there. If that fails, call the runtime system.
4617 __ SmiUntag(reg);
4618 __ xor_(reg, 0x80000000);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004619 if (CpuFeatures::IsSupported(SSE2)) {
4620 CpuFeatures::Scope feature_scope(SSE2);
4621 __ cvtsi2sd(xmm0, Operand(reg));
4622 } else {
4623 __ push(reg);
4624 __ fild_s(Operand(esp, 0));
4625 __ pop(reg);
4626 }
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004627 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004628 if (CpuFeatures::IsSupported(SSE2)) {
4629 CpuFeatures::Scope feature_scope(SSE2);
4630 __ LoadUint32(xmm0, reg, xmm1);
4631 } else {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +00004632 // There's no fild variant for unsigned values, so zero-extend to a 64-bit
4633 // int manually.
4634 __ push(Immediate(0));
4635 __ push(reg);
4636 __ fild_d(Operand(esp, 0));
4637 __ pop(reg);
4638 __ pop(reg);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004639 }
yangguo@chromium.org46839fb2012-08-28 09:06:19 +00004640 }
4641
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004642 if (FLAG_inline_new) {
4643 __ AllocateHeapNumber(reg, tmp, no_reg, &slow);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004644 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004645 }
4646
4647 // Slow case: Call the runtime system to do the number allocation.
4648 __ bind(&slow);
4649
4650 // TODO(3095996): Put a valid pointer value in the stack slot where the result
4651 // register is stored, as this register is in the pointer map, but contains an
4652 // integer value.
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004653 __ StoreToSafepointRegisterSlot(reg, Immediate(0));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004654 // NumberTagI and NumberTagD use the context from the frame, rather than
4655 // the environment's HContext or HInlinedContext value.
4656 // They only call Runtime::kAllocateHeapNumber.
4657 // The corresponding HChange instructions are added in a phase that does
4658 // not have easy access to the local context.
4659 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
4660 __ CallRuntimeSaveDoubles(Runtime::kAllocateHeapNumber);
4661 RecordSafepointWithRegisters(
ricow@chromium.org27bf2882011-11-17 08:34:43 +00004662 instr->pointer_map(), 0, Safepoint::kNoLazyDeopt);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004663 if (!reg.is(eax)) __ mov(reg, eax);
4664
4665 // Done. Put the value in xmm0 into the value of the allocated heap
4666 // number.
4667 __ bind(&done);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004668 if (CpuFeatures::IsSupported(SSE2)) {
4669 CpuFeatures::Scope feature_scope(SSE2);
4670 __ movdbl(FieldOperand(reg, HeapNumber::kValueOffset), xmm0);
4671 } else {
4672 __ fstp_d(FieldOperand(reg, HeapNumber::kValueOffset));
4673 }
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004674 __ StoreToSafepointRegisterSlot(reg, reg);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004675}
4676
4677
4678void LCodeGen::DoNumberTagD(LNumberTagD* instr) {
4679 class DeferredNumberTagD: public LDeferredCode {
4680 public:
4681 DeferredNumberTagD(LCodeGen* codegen, LNumberTagD* instr)
4682 : LDeferredCode(codegen), instr_(instr) { }
4683 virtual void Generate() { codegen()->DoDeferredNumberTagD(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004684 virtual LInstruction* instr() { return instr_; }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004685 private:
4686 LNumberTagD* instr_;
4687 };
4688
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004689 Register reg = ToRegister(instr->result());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004690
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004691 bool convert_hole = false;
4692 HValue* change_input = instr->hydrogen()->value();
4693 if (change_input->IsLoadKeyed()) {
4694 HLoadKeyed* load = HLoadKeyed::cast(change_input);
4695 convert_hole = load->UsesMustHandleHole();
4696 }
4697
4698 Label no_special_nan_handling;
4699 Label done;
4700 if (convert_hole) {
4701 bool use_sse2 = CpuFeatures::IsSupported(SSE2);
4702 if (use_sse2) {
4703 CpuFeatures::Scope scope(SSE2);
4704 XMMRegister input_reg = ToDoubleRegister(instr->value());
4705 __ ucomisd(input_reg, input_reg);
4706 } else {
4707 if (!IsX87TopOfStack(instr->value())) {
4708 __ fld_d(ToOperand(instr->value()));
4709 }
4710 __ fld(0);
4711 __ fld(0);
4712 __ FCmp();
4713 }
4714
4715 __ j(parity_odd, &no_special_nan_handling);
4716 __ sub(esp, Immediate(kDoubleSize));
4717 if (use_sse2) {
4718 CpuFeatures::Scope scope(SSE2);
4719 XMMRegister input_reg = ToDoubleRegister(instr->value());
4720 __ movdbl(MemOperand(esp, 0), input_reg);
4721 } else {
4722 __ fld(0);
4723 __ fstp_d(MemOperand(esp, 0));
4724 }
4725 __ cmp(MemOperand(esp, sizeof(kHoleNanLower32)),
4726 Immediate(kHoleNanUpper32));
4727 Label canonicalize;
4728 __ j(not_equal, &canonicalize);
4729 __ add(esp, Immediate(kDoubleSize));
4730 __ mov(reg, factory()->the_hole_value());
4731 __ jmp(&done);
4732 __ bind(&canonicalize);
4733 __ add(esp, Immediate(kDoubleSize));
4734 ExternalReference nan =
4735 ExternalReference::address_of_canonical_non_hole_nan();
4736 if (use_sse2) {
4737 CpuFeatures::Scope scope(SSE2);
4738 XMMRegister input_reg = ToDoubleRegister(instr->value());
4739 __ movdbl(input_reg, Operand::StaticVariable(nan));
4740 } else {
4741 __ fstp(0);
4742 __ fld_d(Operand::StaticVariable(nan));
4743 }
4744 }
4745
4746 __ bind(&no_special_nan_handling);
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004747 DeferredNumberTagD* deferred = new(zone()) DeferredNumberTagD(this, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004748 if (FLAG_inline_new) {
mstarzinger@chromium.org068ea0a2013-01-30 09:39:44 +00004749 Register tmp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004750 __ AllocateHeapNumber(reg, tmp, no_reg, deferred->entry());
4751 } else {
4752 __ jmp(deferred->entry());
4753 }
4754 __ bind(deferred->exit());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004755 if (CpuFeatures::IsSupported(SSE2)) {
4756 CpuFeatures::Scope scope(SSE2);
4757 XMMRegister input_reg = ToDoubleRegister(instr->value());
4758 __ movdbl(FieldOperand(reg, HeapNumber::kValueOffset), input_reg);
4759 } else {
4760 if (!IsX87TopOfStack(instr->value())) {
4761 __ fld_d(ToOperand(instr->value()));
4762 }
4763 __ fstp_d(FieldOperand(reg, HeapNumber::kValueOffset));
4764 }
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004765 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004766}
4767
4768
4769void LCodeGen::DoDeferredNumberTagD(LNumberTagD* instr) {
4770 // TODO(3095996): Get rid of this. For now, we need to make the
4771 // result register contain a valid pointer because it is already
4772 // contained in the register pointer map.
4773 Register reg = ToRegister(instr->result());
4774 __ Set(reg, Immediate(0));
4775
karlklose@chromium.org44bc7082011-04-11 12:33:05 +00004776 PushSafepointRegistersScope scope(this);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00004777 // NumberTagI and NumberTagD use the context from the frame, rather than
4778 // the environment's HContext or HInlinedContext value.
4779 // They only call Runtime::kAllocateHeapNumber.
4780 // The corresponding HChange instructions are added in a phase that does
4781 // not have easy access to the local context.
4782 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
4783 __ CallRuntimeSaveDoubles(Runtime::kAllocateHeapNumber);
ricow@chromium.org27bf2882011-11-17 08:34:43 +00004784 RecordSafepointWithRegisters(
4785 instr->pointer_map(), 0, Safepoint::kNoLazyDeopt);
fschneider@chromium.org3a5fd782011-02-24 10:10:44 +00004786 __ StoreToSafepointRegisterSlot(reg, eax);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004787}
4788
4789
4790void LCodeGen::DoSmiTag(LSmiTag* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004791 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004792 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4793 ASSERT(!instr->hydrogen_value()->CheckFlag(HValue::kCanOverflow));
4794 __ SmiTag(ToRegister(input));
4795}
4796
4797
4798void LCodeGen::DoSmiUntag(LSmiUntag* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004799 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004800 ASSERT(input->IsRegister() && input->Equals(instr->result()));
4801 if (instr->needs_check()) {
4802 __ test(ToRegister(input), Immediate(kSmiTagMask));
4803 DeoptimizeIf(not_zero, instr->environment());
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004804 } else {
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00004805 __ AssertSmi(ToRegister(input));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004806 }
4807 __ SmiUntag(ToRegister(input));
4808}
4809
4810
4811void LCodeGen::EmitNumberUntagD(Register input_reg,
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00004812 Register temp_reg,
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004813 XMMRegister result_reg,
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004814 bool deoptimize_on_undefined,
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00004815 bool deoptimize_on_minus_zero,
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004816 LEnvironment* env,
4817 NumberUntagDMode mode) {
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004818 Label load_smi, done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004819
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004820 if (mode == NUMBER_CANDIDATE_IS_ANY_TAGGED) {
4821 // Smi check.
4822 __ JumpIfSmi(input_reg, &load_smi, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004823
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004824 // Heap number map check.
4825 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
4826 factory()->heap_number_map());
4827 if (deoptimize_on_undefined) {
4828 DeoptimizeIf(not_equal, env);
4829 } else {
4830 Label heap_number;
4831 __ j(equal, &heap_number, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004832
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004833 __ cmp(input_reg, factory()->undefined_value());
4834 DeoptimizeIf(not_equal, env);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004835
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004836 // Convert undefined to NaN.
4837 ExternalReference nan =
4838 ExternalReference::address_of_canonical_non_hole_nan();
4839 __ movdbl(result_reg, Operand::StaticVariable(nan));
4840 __ jmp(&done, Label::kNear);
4841
4842 __ bind(&heap_number);
4843 }
4844 // Heap number to XMM conversion.
4845 __ movdbl(result_reg, FieldOperand(input_reg, HeapNumber::kValueOffset));
4846 if (deoptimize_on_minus_zero) {
4847 XMMRegister xmm_scratch = xmm0;
4848 __ xorps(xmm_scratch, xmm_scratch);
4849 __ ucomisd(result_reg, xmm_scratch);
4850 __ j(not_zero, &done, Label::kNear);
4851 __ movmskpd(temp_reg, result_reg);
4852 __ test_b(temp_reg, 1);
4853 DeoptimizeIf(not_zero, env);
4854 }
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004855 __ jmp(&done, Label::kNear);
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00004856 } else if (mode == NUMBER_CANDIDATE_IS_SMI_OR_HOLE) {
4857 __ test(input_reg, Immediate(kSmiTagMask));
4858 DeoptimizeIf(not_equal, env);
4859 } else if (mode == NUMBER_CANDIDATE_IS_SMI_CONVERT_HOLE) {
4860 __ test(input_reg, Immediate(kSmiTagMask));
4861 __ j(zero, &load_smi);
4862 ExternalReference hole_nan_reference =
4863 ExternalReference::address_of_the_hole_nan();
4864 __ movdbl(result_reg, Operand::StaticVariable(hole_nan_reference));
4865 __ jmp(&done, Label::kNear);
4866 } else {
4867 ASSERT(mode == NUMBER_CANDIDATE_IS_SMI);
svenpanne@chromium.org6d786c92011-06-15 10:58:27 +00004868 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004869
4870 // Smi to XMM conversion
4871 __ bind(&load_smi);
4872 __ SmiUntag(input_reg); // Untag smi before converting to float.
4873 __ cvtsi2sd(result_reg, Operand(input_reg));
4874 __ SmiTag(input_reg); // Retag smi.
4875 __ bind(&done);
4876}
4877
4878
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004879void LCodeGen::DoDeferredTaggedToI(LTaggedToI* instr) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004880 Label done, heap_number;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004881 Register input_reg = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004882
4883 // Heap number map check.
4884 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004885 factory()->heap_number_map());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004886
4887 if (instr->truncating()) {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004888 __ j(equal, &heap_number, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004889 // Check for undefined. Undefined is converted to zero for truncating
4890 // conversions.
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00004891 __ cmp(input_reg, factory()->undefined_value());
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004892 __ RecordComment("Deferred TaggedToI: cannot truncate");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004893 DeoptimizeIf(not_equal, instr->environment());
4894 __ mov(input_reg, 0);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004895 __ jmp(&done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004896
4897 __ bind(&heap_number);
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00004898 if (CpuFeatures::IsSupported(SSE3)) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004899 CpuFeatures::Scope scope(SSE3);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004900 Label convert;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004901 // Use more powerful conversion when sse3 is available.
4902 // Load x87 register with heap number.
4903 __ fld_d(FieldOperand(input_reg, HeapNumber::kValueOffset));
4904 // Get exponent alone and check for too-big exponent.
4905 __ mov(input_reg, FieldOperand(input_reg, HeapNumber::kExponentOffset));
4906 __ and_(input_reg, HeapNumber::kExponentMask);
4907 const uint32_t kTooBigExponent =
4908 (HeapNumber::kExponentBias + 63) << HeapNumber::kExponentShift;
4909 __ cmp(Operand(input_reg), Immediate(kTooBigExponent));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00004910 __ j(less, &convert, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004911 // Pop FPU stack before deoptimizing.
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00004912 __ fstp(0);
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004913 __ RecordComment("Deferred TaggedToI: exponent too big");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004914 DeoptimizeIf(no_condition, instr->environment());
4915
4916 // Reserve space for 64 bit answer.
4917 __ bind(&convert);
4918 __ sub(Operand(esp), Immediate(kDoubleSize));
4919 // Do conversion, which cannot fail because we checked the exponent.
4920 __ fisttp_d(Operand(esp, 0));
4921 __ mov(input_reg, Operand(esp, 0)); // Low word of answer is the result.
4922 __ add(Operand(esp), Immediate(kDoubleSize));
4923 } else {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004924 CpuFeatures::Scope scope(SSE2);
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004925 XMMRegister xmm_temp = ToDoubleRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004926 __ movdbl(xmm0, FieldOperand(input_reg, HeapNumber::kValueOffset));
4927 __ cvttsd2si(input_reg, Operand(xmm0));
4928 __ cmp(input_reg, 0x80000000u);
4929 __ j(not_equal, &done);
4930 // Check if the input was 0x8000000 (kMinInt).
4931 // If no, then we got an overflow and we deoptimize.
4932 ExternalReference min_int = ExternalReference::address_of_min_int();
4933 __ movdbl(xmm_temp, Operand::StaticVariable(min_int));
4934 __ ucomisd(xmm_temp, xmm0);
4935 DeoptimizeIf(not_equal, instr->environment());
4936 DeoptimizeIf(parity_even, instr->environment()); // NaN.
4937 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004938 } else if (CpuFeatures::IsSupported(SSE2)) {
4939 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004940 // Deoptimize if we don't have a heap number.
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004941 __ RecordComment("Deferred TaggedToI: not a heap number");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004942 DeoptimizeIf(not_equal, instr->environment());
4943
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004944 XMMRegister xmm_temp = ToDoubleRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004945 __ movdbl(xmm0, FieldOperand(input_reg, HeapNumber::kValueOffset));
4946 __ cvttsd2si(input_reg, Operand(xmm0));
4947 __ cvtsi2sd(xmm_temp, Operand(input_reg));
4948 __ ucomisd(xmm0, xmm_temp);
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004949 __ RecordComment("Deferred TaggedToI: lost precision");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004950 DeoptimizeIf(not_equal, instr->environment());
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004951 __ RecordComment("Deferred TaggedToI: NaN");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004952 DeoptimizeIf(parity_even, instr->environment()); // NaN.
4953 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
4954 __ test(input_reg, Operand(input_reg));
4955 __ j(not_zero, &done);
4956 __ movmskpd(input_reg, xmm0);
4957 __ and_(input_reg, 1);
yangguo@chromium.orgfb377212012-11-16 14:43:43 +00004958 __ RecordComment("Deferred TaggedToI: minus zero");
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004959 DeoptimizeIf(not_zero, instr->environment());
4960 }
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00004961 } else {
4962 UNREACHABLE();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004963 }
4964 __ bind(&done);
4965}
4966
4967
4968void LCodeGen::DoTaggedToI(LTaggedToI* instr) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00004969 class DeferredTaggedToI: public LDeferredCode {
4970 public:
4971 DeferredTaggedToI(LCodeGen* codegen, LTaggedToI* instr)
4972 : LDeferredCode(codegen), instr_(instr) { }
4973 virtual void Generate() { codegen()->DoDeferredTaggedToI(instr_); }
4974 virtual LInstruction* instr() { return instr_; }
4975 private:
4976 LTaggedToI* instr_;
4977 };
4978
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004979 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004980 ASSERT(input->IsRegister());
4981 ASSERT(input->Equals(instr->result()));
4982
4983 Register input_reg = ToRegister(input);
4984
mmassi@chromium.org7028c052012-06-13 11:51:58 +00004985 DeferredTaggedToI* deferred = new(zone()) DeferredTaggedToI(this, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004986
4987 // Smi check.
whesse@chromium.org7b260152011-06-20 15:33:18 +00004988 __ JumpIfNotSmi(input_reg, deferred->entry());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004989
4990 // Smi to int32 conversion
4991 __ SmiUntag(input_reg); // Untag smi.
4992
4993 __ bind(deferred->exit());
4994}
4995
4996
4997void LCodeGen::DoNumberUntagD(LNumberUntagD* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00004998 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00004999 ASSERT(input->IsRegister());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005000 LOperand* temp = instr->temp();
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005001 ASSERT(temp == NULL || temp->IsRegister());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005002 LOperand* result = instr->result();
5003 ASSERT(result->IsDoubleRegister());
5004
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005005 if (CpuFeatures::IsSupported(SSE2)) {
5006 CpuFeatures::Scope scope(SSE2);
5007 Register input_reg = ToRegister(input);
5008 XMMRegister result_reg = ToDoubleRegister(result);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005009
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005010 bool deoptimize_on_minus_zero =
5011 instr->hydrogen()->deoptimize_on_minus_zero();
5012 Register temp_reg = deoptimize_on_minus_zero ? ToRegister(temp) : no_reg;
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005013
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005014 NumberUntagDMode mode = NUMBER_CANDIDATE_IS_ANY_TAGGED;
5015 HValue* value = instr->hydrogen()->value();
5016 if (value->type().IsSmi()) {
5017 if (value->IsLoadKeyed()) {
5018 HLoadKeyed* load = HLoadKeyed::cast(value);
5019 if (load->UsesMustHandleHole()) {
5020 if (load->hole_mode() == ALLOW_RETURN_HOLE) {
5021 mode = NUMBER_CANDIDATE_IS_SMI_CONVERT_HOLE;
5022 } else {
5023 mode = NUMBER_CANDIDATE_IS_SMI_OR_HOLE;
5024 }
5025 } else {
5026 mode = NUMBER_CANDIDATE_IS_SMI;
5027 }
5028 }
5029 }
5030
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005031 EmitNumberUntagD(input_reg,
5032 temp_reg,
5033 result_reg,
5034 instr->hydrogen()->deoptimize_on_undefined(),
5035 deoptimize_on_minus_zero,
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005036 instr->environment(),
5037 mode);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005038 } else {
5039 UNIMPLEMENTED();
5040 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005041}
5042
5043
5044void LCodeGen::DoDoubleToI(LDoubleToI* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005045 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005046 ASSERT(input->IsDoubleRegister());
5047 LOperand* result = instr->result();
5048 ASSERT(result->IsRegister());
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005049 CpuFeatures::Scope scope(SSE2);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005050
5051 XMMRegister input_reg = ToDoubleRegister(input);
5052 Register result_reg = ToRegister(result);
5053
5054 if (instr->truncating()) {
5055 // Performs a truncating conversion of a floating point number as used by
5056 // the JS bitwise operations.
5057 __ cvttsd2si(result_reg, Operand(input_reg));
5058 __ cmp(result_reg, 0x80000000u);
kmillikin@chromium.orgc36ce6e2011-04-04 08:25:31 +00005059 if (CpuFeatures::IsSupported(SSE3)) {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005060 // This will deoptimize if the exponent of the input in out of range.
5061 CpuFeatures::Scope scope(SSE3);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005062 Label convert, done;
5063 __ j(not_equal, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005064 __ sub(Operand(esp), Immediate(kDoubleSize));
5065 __ movdbl(Operand(esp, 0), input_reg);
5066 // Get exponent alone and check for too-big exponent.
5067 __ mov(result_reg, Operand(esp, sizeof(int32_t)));
5068 __ and_(result_reg, HeapNumber::kExponentMask);
5069 const uint32_t kTooBigExponent =
5070 (HeapNumber::kExponentBias + 63) << HeapNumber::kExponentShift;
5071 __ cmp(Operand(result_reg), Immediate(kTooBigExponent));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005072 __ j(less, &convert, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005073 __ add(Operand(esp), Immediate(kDoubleSize));
5074 DeoptimizeIf(no_condition, instr->environment());
5075 __ bind(&convert);
5076 // Do conversion, which cannot fail because we checked the exponent.
5077 __ fld_d(Operand(esp, 0));
5078 __ fisttp_d(Operand(esp, 0));
5079 __ mov(result_reg, Operand(esp, 0)); // Low word of answer is the result.
5080 __ add(Operand(esp), Immediate(kDoubleSize));
5081 __ bind(&done);
5082 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005083 Label done;
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005084 Register temp_reg = ToRegister(instr->temp());
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00005085 XMMRegister xmm_scratch = xmm0;
5086
5087 // If cvttsd2si succeeded, we're done. Otherwise, we attempt
5088 // manual conversion.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005089 __ j(not_equal, &done, Label::kNear);
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00005090
5091 // Get high 32 bits of the input in result_reg and temp_reg.
5092 __ pshufd(xmm_scratch, input_reg, 1);
5093 __ movd(Operand(temp_reg), xmm_scratch);
5094 __ mov(result_reg, temp_reg);
5095
5096 // Prepare negation mask in temp_reg.
5097 __ sar(temp_reg, kBitsPerInt - 1);
5098
5099 // Extract the exponent from result_reg and subtract adjusted
5100 // bias from it. The adjustment is selected in a way such that
5101 // when the difference is zero, the answer is in the low 32 bits
5102 // of the input, otherwise a shift has to be performed.
5103 __ shr(result_reg, HeapNumber::kExponentShift);
5104 __ and_(result_reg,
5105 HeapNumber::kExponentMask >> HeapNumber::kExponentShift);
5106 __ sub(Operand(result_reg),
5107 Immediate(HeapNumber::kExponentBias +
5108 HeapNumber::kExponentBits +
5109 HeapNumber::kMantissaBits));
5110 // Don't handle big (> kMantissaBits + kExponentBits == 63) or
5111 // special exponents.
5112 DeoptimizeIf(greater, instr->environment());
5113
5114 // Zero out the sign and the exponent in the input (by shifting
5115 // it to the left) and restore the implicit mantissa bit,
5116 // i.e. convert the input to unsigned int64 shifted left by
5117 // kExponentBits.
5118 ExternalReference minus_zero = ExternalReference::address_of_minus_zero();
5119 // Minus zero has the most significant bit set and the other
5120 // bits cleared.
5121 __ movdbl(xmm_scratch, Operand::StaticVariable(minus_zero));
5122 __ psllq(input_reg, HeapNumber::kExponentBits);
5123 __ por(input_reg, xmm_scratch);
5124
5125 // Get the amount to shift the input right in xmm_scratch.
5126 __ neg(result_reg);
5127 __ movd(xmm_scratch, Operand(result_reg));
5128
5129 // Shift the input right and extract low 32 bits.
5130 __ psrlq(input_reg, xmm_scratch);
5131 __ movd(Operand(result_reg), input_reg);
5132
5133 // Use the prepared mask in temp_reg to negate the result if necessary.
5134 __ xor_(result_reg, Operand(temp_reg));
5135 __ sub(result_reg, Operand(temp_reg));
5136 __ bind(&done);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005137 }
5138 } else {
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005139 Label done;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005140 __ cvttsd2si(result_reg, Operand(input_reg));
5141 __ cvtsi2sd(xmm0, Operand(result_reg));
5142 __ ucomisd(xmm0, input_reg);
5143 DeoptimizeIf(not_equal, instr->environment());
5144 DeoptimizeIf(parity_even, instr->environment()); // NaN.
5145 if (instr->hydrogen()->CheckFlag(HValue::kBailoutOnMinusZero)) {
5146 // The integer converted back is equal to the original. We
5147 // only have to test if we got -0 as an input.
5148 __ test(result_reg, Operand(result_reg));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005149 __ j(not_zero, &done, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005150 __ movmskpd(result_reg, input_reg);
5151 // Bit 0 contains the sign of the double in input_reg.
5152 // If input was positive, we are ok and return 0, otherwise
5153 // deoptimize.
5154 __ and_(result_reg, 1);
5155 DeoptimizeIf(not_zero, instr->environment());
5156 }
5157 __ bind(&done);
5158 }
5159}
5160
5161
5162void LCodeGen::DoCheckSmi(LCheckSmi* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005163 LOperand* input = instr->value();
ricow@chromium.org4f693d62011-07-04 14:01:31 +00005164 __ test(ToOperand(input), Immediate(kSmiTagMask));
ricow@chromium.orgbadaffc2011-03-17 12:15:27 +00005165 DeoptimizeIf(not_zero, instr->environment());
5166}
5167
5168
5169void LCodeGen::DoCheckNonSmi(LCheckNonSmi* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005170 LOperand* input = instr->value();
ricow@chromium.org4f693d62011-07-04 14:01:31 +00005171 __ test(ToOperand(input), Immediate(kSmiTagMask));
ricow@chromium.orgbadaffc2011-03-17 12:15:27 +00005172 DeoptimizeIf(zero, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005173}
5174
5175
5176void LCodeGen::DoCheckInstanceType(LCheckInstanceType* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005177 Register input = ToRegister(instr->value());
5178 Register temp = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005179
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005180 __ mov(temp, FieldOperand(input, HeapObject::kMapOffset));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005181
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005182 if (instr->hydrogen()->is_interval_check()) {
5183 InstanceType first;
5184 InstanceType last;
5185 instr->hydrogen()->GetCheckInterval(&first, &last);
5186
vegorov@chromium.org0a4e9012011-01-24 12:33:13 +00005187 __ cmpb(FieldOperand(temp, Map::kInstanceTypeOffset),
5188 static_cast<int8_t>(first));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005189
5190 // If there is only one type in the interval check for equality.
5191 if (first == last) {
5192 DeoptimizeIf(not_equal, instr->environment());
5193 } else {
5194 DeoptimizeIf(below, instr->environment());
5195 // Omit check for the last type.
5196 if (last != LAST_TYPE) {
5197 __ cmpb(FieldOperand(temp, Map::kInstanceTypeOffset),
5198 static_cast<int8_t>(last));
5199 DeoptimizeIf(above, instr->environment());
5200 }
5201 }
5202 } else {
5203 uint8_t mask;
5204 uint8_t tag;
5205 instr->hydrogen()->GetCheckMaskAndTag(&mask, &tag);
5206
5207 if (IsPowerOf2(mask)) {
5208 ASSERT(tag == 0 || IsPowerOf2(tag));
5209 __ test_b(FieldOperand(temp, Map::kInstanceTypeOffset), mask);
5210 DeoptimizeIf(tag == 0 ? not_zero : zero, instr->environment());
5211 } else {
5212 __ movzx_b(temp, FieldOperand(temp, Map::kInstanceTypeOffset));
5213 __ and_(temp, mask);
yangguo@chromium.org56454712012-02-16 15:33:53 +00005214 __ cmp(temp, tag);
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005215 DeoptimizeIf(not_equal, instr->environment());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005216 }
5217 }
5218}
5219
5220
5221void LCodeGen::DoCheckFunction(LCheckFunction* instr) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005222 Handle<JSFunction> target = instr->hydrogen()->target();
yangguo@chromium.org003650e2013-01-24 16:31:08 +00005223 if (instr->hydrogen()->target_in_new_space()) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005224 Register reg = ToRegister(instr->value());
5225 Handle<JSGlobalPropertyCell> cell =
5226 isolate()->factory()->NewJSGlobalPropertyCell(target);
5227 __ cmp(reg, Operand::Cell(cell));
5228 } else {
5229 Operand operand = ToOperand(instr->value());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005230 __ cmp(operand, target);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005231 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005232 DeoptimizeIf(not_equal, instr->environment());
5233}
5234
5235
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005236void LCodeGen::DoCheckMapCommon(Register reg,
5237 Handle<Map> map,
5238 CompareMapMode mode,
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005239 LInstruction* instr) {
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005240 Label success;
5241 __ CompareMap(reg, map, &success, mode);
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005242 DeoptimizeIf(not_equal, instr->environment());
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005243 __ bind(&success);
5244}
5245
5246
jkummerow@chromium.org1456e702012-03-30 08:38:13 +00005247void LCodeGen::DoCheckMaps(LCheckMaps* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005248 LOperand* input = instr->value();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005249 ASSERT(input->IsRegister());
5250 Register reg = ToRegister(input);
jkummerow@chromium.org1456e702012-03-30 08:38:13 +00005251
5252 Label success;
5253 SmallMapList* map_set = instr->hydrogen()->map_set();
5254 for (int i = 0; i < map_set->length() - 1; i++) {
5255 Handle<Map> map = map_set->at(i);
5256 __ CompareMap(reg, map, &success, REQUIRE_EXACT_MAP);
5257 __ j(equal, &success);
5258 }
5259 Handle<Map> map = map_set->last();
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005260 DoCheckMapCommon(reg, map, REQUIRE_EXACT_MAP, instr);
jkummerow@chromium.org1456e702012-03-30 08:38:13 +00005261 __ bind(&success);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005262}
5263
5264
kmillikin@chromium.orgc53e10d2011-05-18 09:12:58 +00005265void LCodeGen::DoClampDToUint8(LClampDToUint8* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005266 CpuFeatures::Scope scope(SSE2);
kmillikin@chromium.orgc53e10d2011-05-18 09:12:58 +00005267 XMMRegister value_reg = ToDoubleRegister(instr->unclamped());
5268 Register result_reg = ToRegister(instr->result());
5269 __ ClampDoubleToUint8(value_reg, xmm0, result_reg);
5270}
5271
5272
5273void LCodeGen::DoClampIToUint8(LClampIToUint8* instr) {
5274 ASSERT(instr->unclamped()->Equals(instr->result()));
5275 Register value_reg = ToRegister(instr->result());
5276 __ ClampUint8(value_reg);
5277}
5278
5279
5280void LCodeGen::DoClampTToUint8(LClampTToUint8* instr) {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005281 CpuFeatures::Scope scope(SSE2);
5282
kmillikin@chromium.orgc53e10d2011-05-18 09:12:58 +00005283 ASSERT(instr->unclamped()->Equals(instr->result()));
5284 Register input_reg = ToRegister(instr->unclamped());
5285 Label is_smi, done, heap_number;
5286
5287 __ JumpIfSmi(input_reg, &is_smi);
5288
5289 // Check for heap number
5290 __ cmp(FieldOperand(input_reg, HeapObject::kMapOffset),
5291 factory()->heap_number_map());
5292 __ j(equal, &heap_number, Label::kNear);
5293
5294 // Check for undefined. Undefined is converted to zero for clamping
5295 // conversions.
5296 __ cmp(input_reg, factory()->undefined_value());
5297 DeoptimizeIf(not_equal, instr->environment());
5298 __ mov(input_reg, 0);
5299 __ jmp(&done, Label::kNear);
5300
5301 // Heap number
5302 __ bind(&heap_number);
5303 __ movdbl(xmm0, FieldOperand(input_reg, HeapNumber::kValueOffset));
5304 __ ClampDoubleToUint8(xmm0, xmm1, input_reg);
5305 __ jmp(&done, Label::kNear);
5306
5307 // smi
5308 __ bind(&is_smi);
5309 __ SmiUntag(input_reg);
5310 __ ClampUint8(input_reg);
5311
5312 __ bind(&done);
5313}
5314
5315
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005316void LCodeGen::DoCheckPrototypeMaps(LCheckPrototypeMaps* instr) {
verwaest@chromium.orge4ee6de2012-11-06 12:13:00 +00005317 ASSERT(instr->temp()->Equals(instr->result()));
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005318 Register reg = ToRegister(instr->temp());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005319
mvstanton@chromium.org6bec0092013-01-23 13:46:53 +00005320 ZoneList<Handle<JSObject> >* prototypes = instr->prototypes();
5321 ZoneList<Handle<Map> >* maps = instr->maps();
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005322
mvstanton@chromium.org6bec0092013-01-23 13:46:53 +00005323 ASSERT(prototypes->length() == maps->length());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005324
mvstanton@chromium.org6bec0092013-01-23 13:46:53 +00005325 for (int i = 0; i < prototypes->length(); i++) {
5326 __ LoadHeapObject(reg, prototypes->at(i));
5327 DoCheckMapCommon(reg, maps->at(i), ALLOW_ELEMENT_TRANSITION_MAPS, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005328 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005329}
5330
5331
ulan@chromium.org967e2702012-02-28 09:49:15 +00005332void LCodeGen::DoAllocateObject(LAllocateObject* instr) {
5333 class DeferredAllocateObject: public LDeferredCode {
5334 public:
5335 DeferredAllocateObject(LCodeGen* codegen, LAllocateObject* instr)
5336 : LDeferredCode(codegen), instr_(instr) { }
5337 virtual void Generate() { codegen()->DoDeferredAllocateObject(instr_); }
5338 virtual LInstruction* instr() { return instr_; }
5339 private:
5340 LAllocateObject* instr_;
5341 };
5342
mmassi@chromium.org7028c052012-06-13 11:51:58 +00005343 DeferredAllocateObject* deferred =
5344 new(zone()) DeferredAllocateObject(this, instr);
ulan@chromium.org967e2702012-02-28 09:49:15 +00005345
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005346 Register result = ToRegister(instr->result());
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005347 Register scratch = ToRegister(instr->temp());
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005348 Handle<JSFunction> constructor = instr->hydrogen()->constructor();
5349 Handle<Map> initial_map(constructor->initial_map());
5350 int instance_size = initial_map->instance_size();
5351 ASSERT(initial_map->pre_allocated_property_fields() +
5352 initial_map->unused_property_fields() -
5353 initial_map->inobject_properties() == 0);
5354
5355 // Allocate memory for the object. The initial map might change when
5356 // the constructor's prototype changes, but instance size and property
5357 // counts remain unchanged (if slack tracking finished).
5358 ASSERT(!constructor->shared()->IsInobjectSlackTrackingInProgress());
5359 __ AllocateInNewSpace(instance_size,
5360 result,
5361 no_reg,
5362 scratch,
5363 deferred->entry(),
5364 TAG_OBJECT);
5365
fschneider@chromium.org7d10be52012-04-10 12:30:14 +00005366 __ bind(deferred->exit());
5367 if (FLAG_debug_code) {
5368 Label is_in_new_space;
5369 __ JumpIfInNewSpace(result, scratch, &is_in_new_space);
5370 __ Abort("Allocated object is not in new-space");
5371 __ bind(&is_in_new_space);
5372 }
5373
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005374 // Load the initial map.
5375 Register map = scratch;
5376 __ LoadHeapObject(scratch, constructor);
5377 __ mov(map, FieldOperand(scratch, JSFunction::kPrototypeOrInitialMapOffset));
5378
5379 if (FLAG_debug_code) {
svenpanne@chromium.orgc859c4f2012-10-15 11:51:39 +00005380 __ AssertNotSmi(map);
fschneider@chromium.org35814e52012-03-01 15:43:35 +00005381 __ cmpb(FieldOperand(map, Map::kInstanceSizeOffset),
5382 instance_size >> kPointerSizeLog2);
5383 __ Assert(equal, "Unexpected instance size");
5384 __ cmpb(FieldOperand(map, Map::kPreAllocatedPropertyFieldsOffset),
5385 initial_map->pre_allocated_property_fields());
5386 __ Assert(equal, "Unexpected pre-allocated property fields count");
5387 __ cmpb(FieldOperand(map, Map::kUnusedPropertyFieldsOffset),
5388 initial_map->unused_property_fields());
5389 __ Assert(equal, "Unexpected unused property fields count");
5390 __ cmpb(FieldOperand(map, Map::kInObjectPropertiesOffset),
5391 initial_map->inobject_properties());
5392 __ Assert(equal, "Unexpected in-object property fields count");
5393 }
5394
5395 // Initialize map and fields of the newly allocated object.
5396 ASSERT(initial_map->instance_type() == JS_OBJECT_TYPE);
5397 __ mov(FieldOperand(result, JSObject::kMapOffset), map);
5398 __ mov(scratch, factory()->empty_fixed_array());
5399 __ mov(FieldOperand(result, JSObject::kElementsOffset), scratch);
5400 __ mov(FieldOperand(result, JSObject::kPropertiesOffset), scratch);
5401 if (initial_map->inobject_properties() != 0) {
5402 __ mov(scratch, factory()->undefined_value());
5403 for (int i = 0; i < initial_map->inobject_properties(); i++) {
5404 int property_offset = JSObject::kHeaderSize + i * kPointerSize;
5405 __ mov(FieldOperand(result, property_offset), scratch);
5406 }
5407 }
ulan@chromium.org967e2702012-02-28 09:49:15 +00005408}
5409
5410
5411void LCodeGen::DoDeferredAllocateObject(LAllocateObject* instr) {
5412 Register result = ToRegister(instr->result());
5413 Handle<JSFunction> constructor = instr->hydrogen()->constructor();
fschneider@chromium.org7d10be52012-04-10 12:30:14 +00005414 Handle<Map> initial_map(constructor->initial_map());
5415 int instance_size = initial_map->instance_size();
ulan@chromium.org967e2702012-02-28 09:49:15 +00005416
5417 // TODO(3095996): Get rid of this. For now, we need to make the
5418 // result register contain a valid pointer because it is already
5419 // contained in the register pointer map.
5420 __ Set(result, Immediate(0));
5421
5422 PushSafepointRegistersScope scope(this);
fschneider@chromium.org7d10be52012-04-10 12:30:14 +00005423 __ push(Immediate(Smi::FromInt(instance_size)));
5424 CallRuntimeFromDeferred(
5425 Runtime::kAllocateInNewSpace, 1, instr, instr->context());
ulan@chromium.org967e2702012-02-28 09:49:15 +00005426 __ StoreToSafepointRegisterSlot(result, eax);
5427}
5428
5429
danno@chromium.org94b0d6f2013-02-04 13:33:20 +00005430void LCodeGen::DoAllocate(LAllocate* instr) {
5431 class DeferredAllocate: public LDeferredCode {
5432 public:
5433 DeferredAllocate(LCodeGen* codegen, LAllocate* instr)
5434 : LDeferredCode(codegen), instr_(instr) { }
5435 virtual void Generate() { codegen()->DoDeferredAllocate(instr_); }
5436 virtual LInstruction* instr() { return instr_; }
5437 private:
5438 LAllocate* instr_;
5439 };
5440
5441 DeferredAllocate* deferred =
5442 new(zone()) DeferredAllocate(this, instr);
5443
5444 Register size = ToRegister(instr->size());
5445 Register result = ToRegister(instr->result());
5446 Register temp = ToRegister(instr->temp());
5447
5448 HAllocate* original_instr = instr->hydrogen();
5449 if (original_instr->size()->IsConstant()) {
5450 UNREACHABLE();
5451 } else {
5452 // Allocate memory for the object.
5453 AllocationFlags flags = TAG_OBJECT;
5454 if (original_instr->MustAllocateDoubleAligned()) {
5455 flags = static_cast<AllocationFlags>(flags | DOUBLE_ALIGNMENT);
5456 }
5457 __ AllocateInNewSpace(size, result, temp, no_reg,
5458 deferred->entry(), flags);
5459 }
5460
5461 __ bind(deferred->exit());
5462}
5463
5464
5465void LCodeGen::DoDeferredAllocate(LAllocate* instr) {
5466 Register size = ToRegister(instr->size());
5467 Register result = ToRegister(instr->result());
5468
5469 __ SmiTag(size);
5470 PushSafepointRegistersScope scope(this);
5471 // TODO(3095996): Get rid of this. For now, we need to make the
5472 // result register contain a valid pointer because it is already
5473 // contained in the register pointer map.
5474 if (!size.is(result)) {
5475 __ StoreToSafepointRegisterSlot(result, size);
5476 }
5477 __ push(size);
5478 CallRuntimeFromDeferred(
5479 Runtime::kAllocateInNewSpace, 1, instr, instr->context());
5480 __ StoreToSafepointRegisterSlot(result, eax);
5481}
5482
5483
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005484void LCodeGen::DoArrayLiteral(LArrayLiteral* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005485 ASSERT(ToRegister(instr->context()).is(esi));
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005486 Handle<FixedArray> literals(instr->environment()->closure()->literals());
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005487 ElementsKind boilerplate_elements_kind =
5488 instr->hydrogen()->boilerplate_elements_kind();
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005489 AllocationSiteMode allocation_site_mode =
5490 instr->hydrogen()->allocation_site_mode();
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00005491
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005492 // Deopt if the array literal boilerplate ElementsKind is of a type different
5493 // than the expected one. The check isn't necessary if the boilerplate has
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00005494 // already been converted to TERMINAL_FAST_ELEMENTS_KIND.
5495 if (CanTransitionToMoreGeneralFastElementsKind(
5496 boilerplate_elements_kind, true)) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005497 __ LoadHeapObject(eax, instr->hydrogen()->boilerplate_object());
5498 __ mov(ebx, FieldOperand(eax, HeapObject::kMapOffset));
5499 // Load the map's "bit field 2". We only need the first byte,
5500 // but the following masking takes care of that anyway.
5501 __ mov(ebx, FieldOperand(ebx, Map::kBitField2Offset));
5502 // Retrieve elements_kind from bit field 2.
5503 __ and_(ebx, Map::kElementsKindMask);
5504 __ cmp(ebx, boilerplate_elements_kind << Map::kElementsKindShift);
5505 DeoptimizeIf(not_equal, instr->environment());
5506 }
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00005507
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005508 // Set up the parameters to the stub/runtime call.
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005509 __ PushHeapObject(literals);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005510 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005511 // Boilerplate already exists, constant elements are never accessed.
5512 // Pass an empty fixed array.
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005513 __ push(Immediate(isolate()->factory()->empty_fixed_array()));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005514
5515 // Pick the right runtime function or stub to call.
5516 int length = instr->hydrogen()->length();
5517 if (instr->hydrogen()->IsCopyOnWrite()) {
5518 ASSERT(instr->hydrogen()->depth() == 1);
5519 FastCloneShallowArrayStub::Mode mode =
5520 FastCloneShallowArrayStub::COPY_ON_WRITE_ELEMENTS;
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005521 FastCloneShallowArrayStub stub(mode, DONT_TRACK_ALLOCATION_SITE, length);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005522 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005523 } else if (instr->hydrogen()->depth() > 1) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005524 CallRuntime(Runtime::kCreateArrayLiteral, 3, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005525 } else if (length > FastCloneShallowArrayStub::kMaximumClonedLength) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005526 CallRuntime(Runtime::kCreateArrayLiteralShallow, 3, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005527 } else {
5528 FastCloneShallowArrayStub::Mode mode =
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005529 boilerplate_elements_kind == FAST_DOUBLE_ELEMENTS
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005530 ? FastCloneShallowArrayStub::CLONE_DOUBLE_ELEMENTS
5531 : FastCloneShallowArrayStub::CLONE_ELEMENTS;
5532 FastCloneShallowArrayStub stub(mode, allocation_site_mode, length);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005533 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005534 }
5535}
5536
5537
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005538void LCodeGen::EmitDeepCopy(Handle<JSObject> object,
5539 Register result,
5540 Register source,
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005541 int* offset,
5542 AllocationSiteMode mode) {
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005543 ASSERT(!source.is(ecx));
5544 ASSERT(!result.is(ecx));
5545
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005546 bool create_allocation_site_info = mode == TRACK_ALLOCATION_SITE &&
5547 object->map()->CanTrackAllocationSite();
5548
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005549 if (FLAG_debug_code) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005550 __ LoadHeapObject(ecx, object);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005551 __ cmp(source, ecx);
5552 __ Assert(equal, "Unexpected object literal boilerplate");
danno@chromium.org2c26cb12012-05-03 09:06:43 +00005553 __ mov(ecx, FieldOperand(source, HeapObject::kMapOffset));
5554 __ cmp(ecx, Handle<Map>(object->map()));
5555 __ Assert(equal, "Unexpected boilerplate map");
5556 __ mov(ecx, FieldOperand(ecx, Map::kBitField2Offset));
5557 __ and_(ecx, Map::kElementsKindMask);
5558 __ cmp(ecx, object->GetElementsKind() << Map::kElementsKindShift);
5559 __ Assert(equal, "Unexpected boilerplate elements kind");
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005560 }
5561
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005562 // Only elements backing stores for non-COW arrays need to be copied.
5563 Handle<FixedArrayBase> elements(object->elements());
5564 bool has_elements = elements->length() > 0 &&
5565 elements->map() != isolate()->heap()->fixed_cow_array_map();
5566
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005567 // Increase the offset so that subsequent objects end up right after
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005568 // this object and its backing store.
5569 int object_offset = *offset;
5570 int object_size = object->map()->instance_size();
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005571 int elements_size = has_elements ? elements->Size() : 0;
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005572 int elements_offset = *offset + object_size;
5573 if (create_allocation_site_info) {
5574 elements_offset += AllocationSiteInfo::kSize;
5575 *offset += AllocationSiteInfo::kSize;
5576 }
5577
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005578 *offset += object_size + elements_size;
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005579
5580 // Copy object header.
5581 ASSERT(object->properties()->length() == 0);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005582 int inobject_properties = object->map()->inobject_properties();
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005583 int header_size = object_size - inobject_properties * kPointerSize;
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005584 for (int i = 0; i < header_size; i += kPointerSize) {
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005585 if (has_elements && i == JSObject::kElementsOffset) {
5586 __ lea(ecx, Operand(result, elements_offset));
5587 } else {
5588 __ mov(ecx, FieldOperand(source, i));
5589 }
5590 __ mov(FieldOperand(result, object_offset + i), ecx);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005591 }
5592
5593 // Copy in-object properties.
5594 for (int i = 0; i < inobject_properties; i++) {
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005595 int total_offset = object_offset + object->GetInObjectPropertyOffset(i);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005596 Handle<Object> value = Handle<Object>(object->InObjectPropertyAt(i));
5597 if (value->IsJSObject()) {
5598 Handle<JSObject> value_object = Handle<JSObject>::cast(value);
5599 __ lea(ecx, Operand(result, *offset));
5600 __ mov(FieldOperand(result, total_offset), ecx);
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005601 __ LoadHeapObject(source, value_object);
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005602 EmitDeepCopy(value_object, result, source, offset,
5603 DONT_TRACK_ALLOCATION_SITE);
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005604 } else if (value->IsHeapObject()) {
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005605 __ LoadHeapObject(ecx, Handle<HeapObject>::cast(value));
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005606 __ mov(FieldOperand(result, total_offset), ecx);
5607 } else {
5608 __ mov(FieldOperand(result, total_offset), Immediate(value));
5609 }
5610 }
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005611
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005612 // Build Allocation Site Info if desired
5613 if (create_allocation_site_info) {
5614 __ mov(FieldOperand(result, object_size),
5615 Immediate(Handle<Map>(isolate()->heap()->
5616 allocation_site_info_map())));
5617 __ mov(FieldOperand(result, object_size + kPointerSize), source);
5618 }
5619
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005620 if (has_elements) {
danno@chromium.org88aa0582012-03-23 15:11:57 +00005621 // Copy elements backing store header.
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005622 __ LoadHeapObject(source, elements);
5623 for (int i = 0; i < FixedArray::kHeaderSize; i += kPointerSize) {
5624 __ mov(ecx, FieldOperand(source, i));
5625 __ mov(FieldOperand(result, elements_offset + i), ecx);
5626 }
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005627
danno@chromium.org88aa0582012-03-23 15:11:57 +00005628 // Copy elements backing store content.
5629 int elements_length = elements->length();
5630 if (elements->IsFixedDoubleArray()) {
5631 Handle<FixedDoubleArray> double_array =
5632 Handle<FixedDoubleArray>::cast(elements);
5633 for (int i = 0; i < elements_length; i++) {
5634 int64_t value = double_array->get_representation(i);
jkummerow@chromium.org78502a92012-09-06 13:50:42 +00005635 int32_t value_low = static_cast<int32_t>(value & 0xFFFFFFFF);
5636 int32_t value_high = static_cast<int32_t>(value >> 32);
danno@chromium.org88aa0582012-03-23 15:11:57 +00005637 int total_offset =
5638 elements_offset + FixedDoubleArray::OffsetOfElementAt(i);
5639 __ mov(FieldOperand(result, total_offset), Immediate(value_low));
5640 __ mov(FieldOperand(result, total_offset + 4), Immediate(value_high));
5641 }
5642 } else if (elements->IsFixedArray()) {
erik.corry@gmail.comed49e962012-04-17 11:57:53 +00005643 Handle<FixedArray> fast_elements = Handle<FixedArray>::cast(elements);
danno@chromium.org88aa0582012-03-23 15:11:57 +00005644 for (int i = 0; i < elements_length; i++) {
5645 int total_offset = elements_offset + FixedArray::OffsetOfElementAt(i);
erik.corry@gmail.comed49e962012-04-17 11:57:53 +00005646 Handle<Object> value(fast_elements->get(i));
danno@chromium.org88aa0582012-03-23 15:11:57 +00005647 if (value->IsJSObject()) {
5648 Handle<JSObject> value_object = Handle<JSObject>::cast(value);
5649 __ lea(ecx, Operand(result, *offset));
5650 __ mov(FieldOperand(result, total_offset), ecx);
5651 __ LoadHeapObject(source, value_object);
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005652 EmitDeepCopy(value_object, result, source, offset,
5653 DONT_TRACK_ALLOCATION_SITE);
danno@chromium.org88aa0582012-03-23 15:11:57 +00005654 } else if (value->IsHeapObject()) {
5655 __ LoadHeapObject(ecx, Handle<HeapObject>::cast(value));
5656 __ mov(FieldOperand(result, total_offset), ecx);
5657 } else {
5658 __ mov(FieldOperand(result, total_offset), Immediate(value));
5659 }
5660 }
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005661 } else {
danno@chromium.org88aa0582012-03-23 15:11:57 +00005662 UNREACHABLE();
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005663 }
5664 }
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005665}
5666
5667
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005668void LCodeGen::DoFastLiteral(LFastLiteral* instr) {
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005669 ASSERT(ToRegister(instr->context()).is(esi));
5670 int size = instr->hydrogen()->total_size();
danno@chromium.org2c26cb12012-05-03 09:06:43 +00005671 ElementsKind boilerplate_elements_kind =
5672 instr->hydrogen()->boilerplate()->GetElementsKind();
5673
5674 // Deopt if the literal boilerplate ElementsKind is of a type different than
5675 // the expected one. The check isn't necessary if the boilerplate has already
svenpanne@chromium.org830d30c2012-05-29 13:20:14 +00005676 // already been converted to TERMINAL_FAST_ELEMENTS_KIND.
5677 if (CanTransitionToMoreGeneralFastElementsKind(
5678 boilerplate_elements_kind, true)) {
danno@chromium.org2c26cb12012-05-03 09:06:43 +00005679 __ LoadHeapObject(ebx, instr->hydrogen()->boilerplate());
5680 __ mov(ecx, FieldOperand(ebx, HeapObject::kMapOffset));
5681 // Load the map's "bit field 2". We only need the first byte,
5682 // but the following masking takes care of that anyway.
5683 __ mov(ecx, FieldOperand(ecx, Map::kBitField2Offset));
5684 // Retrieve elements_kind from bit field 2.
5685 __ and_(ecx, Map::kElementsKindMask);
5686 __ cmp(ecx, boilerplate_elements_kind << Map::kElementsKindShift);
5687 DeoptimizeIf(not_equal, instr->environment());
5688 }
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005689
5690 // Allocate all objects that are part of the literal in one big
5691 // allocation. This avoids multiple limit checks.
5692 Label allocated, runtime_allocate;
5693 __ AllocateInNewSpace(size, eax, ecx, edx, &runtime_allocate, TAG_OBJECT);
5694 __ jmp(&allocated);
5695
5696 __ bind(&runtime_allocate);
5697 __ push(Immediate(Smi::FromInt(size)));
5698 CallRuntime(Runtime::kAllocateInNewSpace, 1, instr);
5699
5700 __ bind(&allocated);
5701 int offset = 0;
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005702 __ LoadHeapObject(ebx, instr->hydrogen()->boilerplate());
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005703 EmitDeepCopy(instr->hydrogen()->boilerplate(), eax, ebx, &offset,
5704 instr->hydrogen()->allocation_site_mode());
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005705 ASSERT_EQ(size, offset);
5706}
5707
5708
jkummerow@chromium.orgf7a58842012-02-21 10:08:21 +00005709void LCodeGen::DoObjectLiteral(LObjectLiteral* instr) {
sgjesse@chromium.org496c03a2011-02-14 12:05:43 +00005710 ASSERT(ToRegister(instr->context()).is(esi));
ulan@chromium.org65a89c22012-02-14 11:46:07 +00005711 Handle<FixedArray> literals(instr->environment()->closure()->literals());
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005712 Handle<FixedArray> constant_properties =
5713 instr->hydrogen()->constant_properties();
5714
erik.corry@gmail.comf2038fb2012-01-16 11:42:08 +00005715 // Set up the parameters to the stub/runtime call.
ulan@chromium.org65a89c22012-02-14 11:46:07 +00005716 __ PushHeapObject(literals);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005717 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005718 __ push(Immediate(constant_properties));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005719 int flags = instr->hydrogen()->fast_elements()
5720 ? ObjectLiteral::kFastElements
5721 : ObjectLiteral::kNoFlags;
5722 flags |= instr->hydrogen()->has_function()
5723 ? ObjectLiteral::kHasFunction
5724 : ObjectLiteral::kNoFlags;
5725 __ push(Immediate(Smi::FromInt(flags)));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005726
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005727 // Pick the right runtime function or stub to call.
5728 int properties_count = constant_properties->length() / 2;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005729 if (instr->hydrogen()->depth() > 1) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005730 CallRuntime(Runtime::kCreateObjectLiteral, 4, instr);
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005731 } else if (flags != ObjectLiteral::kFastElements ||
5732 properties_count > FastCloneShallowObjectStub::kMaximumClonedProperties) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005733 CallRuntime(Runtime::kCreateObjectLiteralShallow, 4, instr);
mstarzinger@chromium.orgf8c6bd52011-11-23 12:13:52 +00005734 } else {
5735 FastCloneShallowObjectStub stub(properties_count);
5736 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005737 }
5738}
5739
5740
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005741void LCodeGen::DoToFastProperties(LToFastProperties* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005742 ASSERT(ToRegister(instr->value()).is(eax));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005743 __ push(eax);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005744 CallRuntime(Runtime::kToFastProperties, 1, instr);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005745}
5746
5747
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005748void LCodeGen::DoRegExpLiteral(LRegExpLiteral* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005749 ASSERT(ToRegister(instr->context()).is(esi));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005750 Label materialized;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005751 // Registers will be used as follows:
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005752 // ecx = literals array.
5753 // ebx = regexp literal.
5754 // eax = regexp literal clone.
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005755 // esi = context.
yangguo@chromium.org9c741c82012-06-28 15:04:22 +00005756 int literal_offset =
5757 FixedArray::OffsetOfElementAt(instr->hydrogen()->literal_index());
5758 __ LoadHeapObject(ecx, instr->hydrogen()->literals());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005759 __ mov(ebx, FieldOperand(ecx, literal_offset));
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005760 __ cmp(ebx, factory()->undefined_value());
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005761 __ j(not_equal, &materialized, Label::kNear);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005762
5763 // Create regexp literal using runtime function
5764 // Result will be in eax.
5765 __ push(ecx);
5766 __ push(Immediate(Smi::FromInt(instr->hydrogen()->literal_index())));
5767 __ push(Immediate(instr->hydrogen()->pattern()));
5768 __ push(Immediate(instr->hydrogen()->flags()));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005769 CallRuntime(Runtime::kMaterializeRegExpLiteral, 4, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005770 __ mov(ebx, eax);
5771
5772 __ bind(&materialized);
5773 int size = JSRegExp::kSize + JSRegExp::kInObjectFieldCount * kPointerSize;
5774 Label allocated, runtime_allocate;
5775 __ AllocateInNewSpace(size, eax, ecx, edx, &runtime_allocate, TAG_OBJECT);
5776 __ jmp(&allocated);
5777
5778 __ bind(&runtime_allocate);
5779 __ push(ebx);
5780 __ push(Immediate(Smi::FromInt(size)));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005781 CallRuntime(Runtime::kAllocateInNewSpace, 1, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005782 __ pop(ebx);
5783
5784 __ bind(&allocated);
5785 // Copy the content into the newly allocated memory.
5786 // (Unroll copy loop once for better throughput).
5787 for (int i = 0; i < size - kPointerSize; i += 2 * kPointerSize) {
5788 __ mov(edx, FieldOperand(ebx, i));
5789 __ mov(ecx, FieldOperand(ebx, i + kPointerSize));
5790 __ mov(FieldOperand(eax, i), edx);
5791 __ mov(FieldOperand(eax, i + kPointerSize), ecx);
5792 }
5793 if ((size % (2 * kPointerSize)) != 0) {
5794 __ mov(edx, FieldOperand(ebx, size - kPointerSize));
5795 __ mov(FieldOperand(eax, size - kPointerSize), edx);
5796 }
5797}
5798
5799
5800void LCodeGen::DoFunctionLiteral(LFunctionLiteral* instr) {
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005801 ASSERT(ToRegister(instr->context()).is(esi));
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005802 // Use the fast case closure allocation code that allocates in new
5803 // space for nested functions that don't need literals cloning.
5804 Handle<SharedFunctionInfo> shared_info = instr->shared_info();
ricow@chromium.org83aa5492011-02-07 12:42:56 +00005805 bool pretenure = instr->hydrogen()->pretenure();
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005806 if (!pretenure && shared_info->num_literals() == 0) {
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005807 FastNewClosureStub stub(shared_info->language_mode());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005808 __ push(Immediate(shared_info));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005809 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005810 } else {
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00005811 __ push(esi);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005812 __ push(Immediate(shared_info));
5813 __ push(Immediate(pretenure
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005814 ? factory()->true_value()
5815 : factory()->false_value()));
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005816 CallRuntime(Runtime::kNewClosure, 3, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005817 }
5818}
5819
5820
5821void LCodeGen::DoTypeof(LTypeof* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005822 LOperand* input = instr->value();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005823 EmitPushTaggedOperand(input);
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00005824 CallRuntime(Runtime::kTypeof, 1, instr);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005825}
5826
5827
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005828void LCodeGen::DoTypeofIsAndBranch(LTypeofIsAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005829 Register input = ToRegister(instr->value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005830 int true_block = chunk_->LookupDestination(instr->true_block_id());
5831 int false_block = chunk_->LookupDestination(instr->false_block_id());
5832 Label* true_label = chunk_->GetAssemblyLabel(true_block);
5833 Label* false_label = chunk_->GetAssemblyLabel(false_block);
5834
erik.corry@gmail.com394dbcf2011-10-27 07:38:48 +00005835 Condition final_branch_condition =
5836 EmitTypeofIs(true_label, false_label, input, instr->type_literal());
5837 if (final_branch_condition != no_condition) {
5838 EmitBranch(true_block, false_block, final_branch_condition);
5839 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005840}
5841
5842
5843Condition LCodeGen::EmitTypeofIs(Label* true_label,
5844 Label* false_label,
5845 Register input,
5846 Handle<String> type_name) {
5847 Condition final_branch_condition = no_condition;
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005848 if (type_name->Equals(heap()->number_symbol())) {
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005849 __ JumpIfSmi(input, true_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005850 __ cmp(FieldOperand(input, HeapObject::kMapOffset),
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005851 factory()->heap_number_map());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005852 final_branch_condition = equal;
5853
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005854 } else if (type_name->Equals(heap()->string_symbol())) {
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005855 __ JumpIfSmi(input, false_label);
5856 __ CmpObjectType(input, FIRST_NONSTRING_TYPE, input);
5857 __ j(above_equal, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005858 __ test_b(FieldOperand(input, Map::kBitFieldOffset),
5859 1 << Map::kIsUndetectable);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005860 final_branch_condition = zero;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005861
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005862 } else if (type_name->Equals(heap()->boolean_symbol())) {
5863 __ cmp(input, factory()->true_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005864 __ j(equal, true_label);
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005865 __ cmp(input, factory()->false_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005866 final_branch_condition = equal;
5867
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00005868 } else if (FLAG_harmony_typeof && type_name->Equals(heap()->null_symbol())) {
5869 __ cmp(input, factory()->null_value());
5870 final_branch_condition = equal;
5871
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005872 } else if (type_name->Equals(heap()->undefined_symbol())) {
5873 __ cmp(input, factory()->undefined_value());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005874 __ j(equal, true_label);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005875 __ JumpIfSmi(input, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005876 // Check for undetectable objects => true.
5877 __ mov(input, FieldOperand(input, HeapObject::kMapOffset));
5878 __ test_b(FieldOperand(input, Map::kBitFieldOffset),
5879 1 << Map::kIsUndetectable);
5880 final_branch_condition = not_zero;
5881
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005882 } else if (type_name->Equals(heap()->function_symbol())) {
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005883 STATIC_ASSERT(NUM_OF_CALLABLE_SPEC_OBJECT_TYPES == 2);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005884 __ JumpIfSmi(input, false_label);
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00005885 __ CmpObjectType(input, JS_FUNCTION_TYPE, input);
5886 __ j(equal, true_label);
5887 __ CmpInstanceType(input, JS_FUNCTION_PROXY_TYPE);
5888 final_branch_condition = equal;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005889
sgjesse@chromium.orgea88ce92011-03-23 11:19:56 +00005890 } else if (type_name->Equals(heap()->object_symbol())) {
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005891 __ JumpIfSmi(input, false_label);
whesse@chromium.org4acdc2c2011-08-15 13:01:23 +00005892 if (!FLAG_harmony_typeof) {
5893 __ cmp(input, factory()->null_value());
5894 __ j(equal, true_label);
5895 }
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00005896 __ CmpObjectType(input, FIRST_NONCALLABLE_SPEC_OBJECT_TYPE, input);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005897 __ j(below, false_label);
ricow@chromium.orgd2be9012011-06-01 06:00:58 +00005898 __ CmpInstanceType(input, LAST_NONCALLABLE_SPEC_OBJECT_TYPE);
5899 __ j(above, false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005900 // Check for undetectable objects => false.
5901 __ test_b(FieldOperand(input, Map::kBitFieldOffset),
5902 1 << Map::kIsUndetectable);
karlklose@chromium.org8f806e82011-03-07 14:06:08 +00005903 final_branch_condition = zero;
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005904
5905 } else {
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005906 __ jmp(false_label);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005907 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005908 return final_branch_condition;
5909}
5910
5911
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005912void LCodeGen::DoIsConstructCallAndBranch(LIsConstructCallAndBranch* instr) {
ulan@chromium.org56c14af2012-09-20 12:51:09 +00005913 Register temp = ToRegister(instr->temp());
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005914 int true_block = chunk_->LookupDestination(instr->true_block_id());
5915 int false_block = chunk_->LookupDestination(instr->false_block_id());
5916
5917 EmitIsConstructCall(temp);
5918 EmitBranch(true_block, false_block, equal);
5919}
5920
5921
5922void LCodeGen::EmitIsConstructCall(Register temp) {
5923 // Get the frame pointer for the calling frame.
5924 __ mov(temp, Operand(ebp, StandardFrameConstants::kCallerFPOffset));
5925
5926 // Skip the arguments adaptor frame if it exists.
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005927 Label check_frame_marker;
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005928 __ cmp(Operand(temp, StandardFrameConstants::kContextOffset),
5929 Immediate(Smi::FromInt(StackFrame::ARGUMENTS_ADAPTOR)));
karlklose@chromium.org83a47282011-05-11 11:54:09 +00005930 __ j(not_equal, &check_frame_marker, Label::kNear);
erik.corry@gmail.comd91075f2011-02-10 07:45:38 +00005931 __ mov(temp, Operand(temp, StandardFrameConstants::kCallerFPOffset));
5932
5933 // Check the marker in the calling frame.
5934 __ bind(&check_frame_marker);
5935 __ cmp(Operand(temp, StandardFrameConstants::kMarkerOffset),
5936 Immediate(Smi::FromInt(StackFrame::CONSTRUCT)));
5937}
5938
5939
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005940void LCodeGen::EnsureSpaceForLazyDeopt() {
yangguo@chromium.orga6bbcc82012-12-21 12:35:02 +00005941 if (!info()->IsStub()) {
5942 // Ensure that we have enough space after the previous lazy-bailout
5943 // instruction for patching the code here.
5944 int current_pc = masm()->pc_offset();
5945 int patch_size = Deoptimizer::patch_size();
5946 if (current_pc < last_lazy_deopt_pc_ + patch_size) {
5947 int padding_size = last_lazy_deopt_pc_ + patch_size - current_pc;
5948 __ Nop(padding_size);
5949 }
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005950 }
mstarzinger@chromium.org1b3afd12011-11-29 14:28:56 +00005951 last_lazy_deopt_pc_ = masm()->pc_offset();
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005952}
5953
5954
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005955void LCodeGen::DoLazyBailout(LLazyBailout* instr) {
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005956 EnsureSpaceForLazyDeopt();
5957 ASSERT(instr->HasEnvironment());
5958 LEnvironment* env = instr->environment();
5959 RegisterEnvironmentForDeoptimization(env, Safepoint::kLazyDeopt);
5960 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005961}
5962
5963
5964void LCodeGen::DoDeoptimize(LDeoptimize* instr) {
5965 DeoptimizeIf(no_condition, instr->environment());
5966}
5967
5968
yangguo@chromium.org46a2a512013-01-18 16:29:40 +00005969void LCodeGen::DoDummyUse(LDummyUse* instr) {
5970 // Nothing to see here, move on!
5971}
5972
5973
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005974void LCodeGen::DoDeleteProperty(LDeleteProperty* instr) {
5975 LOperand* obj = instr->object();
5976 LOperand* key = instr->key();
5977 __ push(ToOperand(obj));
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00005978 EmitPushTaggedOperand(key);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00005979 ASSERT(instr->HasPointerMap());
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00005980 LPointerMap* pointers = instr->pointer_map();
kmillikin@chromium.org31b12772011-02-02 16:08:26 +00005981 RecordPosition(pointers->position());
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00005982 // Create safepoint generator that will also ensure enough space in the
5983 // reloc info for patching in deoptimization (since this is invoking a
5984 // builtin)
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005985 SafepointGenerator safepoint_generator(
5986 this, pointers, Safepoint::kLazyDeopt);
kmillikin@chromium.org49edbdf2011-02-16 12:32:18 +00005987 __ push(Immediate(Smi::FromInt(strict_mode_flag())));
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00005988 __ InvokeBuiltin(Builtins::DELETE, CALL_FUNCTION, safepoint_generator);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00005989}
5990
5991
ager@chromium.org04921a82011-06-27 13:21:41 +00005992void LCodeGen::DoDeferredStackCheck(LStackCheck* instr) {
ricow@chromium.org27bf2882011-11-17 08:34:43 +00005993 PushSafepointRegistersScope scope(this);
5994 __ mov(esi, Operand(ebp, StandardFrameConstants::kContextOffset));
5995 __ CallRuntimeSaveDoubles(Runtime::kStackGuard);
5996 RecordSafepointWithLazyDeopt(
5997 instr, RECORD_SAFEPOINT_WITH_REGISTERS_AND_NO_ARGUMENTS);
5998 ASSERT(instr->HasEnvironment());
5999 LEnvironment* env = instr->environment();
6000 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
ager@chromium.org04921a82011-06-27 13:21:41 +00006001}
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006002
ager@chromium.org04921a82011-06-27 13:21:41 +00006003
6004void LCodeGen::DoStackCheck(LStackCheck* instr) {
6005 class DeferredStackCheck: public LDeferredCode {
6006 public:
6007 DeferredStackCheck(LCodeGen* codegen, LStackCheck* instr)
6008 : LDeferredCode(codegen), instr_(instr) { }
6009 virtual void Generate() { codegen()->DoDeferredStackCheck(instr_); }
erik.corry@gmail.comc3b670f2011-10-05 21:44:48 +00006010 virtual LInstruction* instr() { return instr_; }
ager@chromium.org04921a82011-06-27 13:21:41 +00006011 private:
6012 LStackCheck* instr_;
6013 };
6014
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006015 ASSERT(instr->HasEnvironment());
6016 LEnvironment* env = instr->environment();
6017 // There is no LLazyBailout instruction for stack-checks. We have to
6018 // prepare for lazy deoptimization explicitly here.
ager@chromium.org04921a82011-06-27 13:21:41 +00006019 if (instr->hydrogen()->is_function_entry()) {
6020 // Perform stack overflow check.
6021 Label done;
6022 ExternalReference stack_limit =
6023 ExternalReference::address_of_stack_limit(isolate());
6024 __ cmp(esp, Operand::StaticVariable(stack_limit));
6025 __ j(above_equal, &done, Label::kNear);
6026
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00006027 ASSERT(instr->context()->IsRegister());
6028 ASSERT(ToRegister(instr->context()).is(esi));
ager@chromium.org04921a82011-06-27 13:21:41 +00006029 StackCheckStub stub;
jkummerow@chromium.orgddda9e82011-07-06 11:27:02 +00006030 CallCode(stub.GetCode(), RelocInfo::CODE_TARGET, instr);
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006031 EnsureSpaceForLazyDeopt();
ager@chromium.org04921a82011-06-27 13:21:41 +00006032 __ bind(&done);
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006033 RegisterEnvironmentForDeoptimization(env, Safepoint::kLazyDeopt);
6034 safepoints_.RecordLazyDeoptimizationIndex(env->deoptimization_index());
ager@chromium.org04921a82011-06-27 13:21:41 +00006035 } else {
6036 ASSERT(instr->hydrogen()->is_backwards_branch());
6037 // Perform stack overflow check if this goto needs it before jumping.
6038 DeferredStackCheck* deferred_stack_check =
mmassi@chromium.org7028c052012-06-13 11:51:58 +00006039 new(zone()) DeferredStackCheck(this, instr);
ager@chromium.org04921a82011-06-27 13:21:41 +00006040 ExternalReference stack_limit =
6041 ExternalReference::address_of_stack_limit(isolate());
6042 __ cmp(esp, Operand::StaticVariable(stack_limit));
6043 __ j(below, deferred_stack_check->entry());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006044 EnsureSpaceForLazyDeopt();
ager@chromium.org04921a82011-06-27 13:21:41 +00006045 __ bind(instr->done_label());
6046 deferred_stack_check->SetExit(instr->done_label());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006047 RegisterEnvironmentForDeoptimization(env, Safepoint::kLazyDeopt);
6048 // Don't record a deoptimization index for the safepoint here.
6049 // This will be done explicitly when emitting call and the safepoint in
6050 // the deferred code.
ager@chromium.org04921a82011-06-27 13:21:41 +00006051 }
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006052}
6053
6054
6055void LCodeGen::DoOsrEntry(LOsrEntry* instr) {
6056 // This is a pseudo-instruction that ensures that the environment here is
6057 // properly registered for deoptimization and records the assembler's PC
6058 // offset.
6059 LEnvironment* environment = instr->environment();
6060 environment->SetSpilledRegisters(instr->SpilledRegisterArray(),
6061 instr->SpilledDoubleRegisterArray());
6062
6063 // If the environment were already registered, we would have no way of
6064 // backpatching it with the spill slot operands.
6065 ASSERT(!environment->HasBeenRegistered());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006066 RegisterEnvironmentForDeoptimization(environment, Safepoint::kNoLazyDeopt);
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006067 ASSERT(osr_pc_offset_ == -1);
6068 osr_pc_offset_ = masm()->pc_offset();
6069}
6070
6071
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006072void LCodeGen::DoIn(LIn* instr) {
6073 LOperand* obj = instr->object();
6074 LOperand* key = instr->key();
ricow@chromium.org64e3a4b2011-12-13 08:07:27 +00006075 EmitPushTaggedOperand(key);
6076 EmitPushTaggedOperand(obj);
danno@chromium.org1044a4d2012-04-30 12:34:39 +00006077 ASSERT(instr->HasPointerMap());
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006078 LPointerMap* pointers = instr->pointer_map();
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006079 RecordPosition(pointers->position());
ricow@chromium.org27bf2882011-11-17 08:34:43 +00006080 SafepointGenerator safepoint_generator(
6081 this, pointers, Safepoint::kLazyDeopt);
fschneider@chromium.orgfb144a02011-05-04 12:43:48 +00006082 __ InvokeBuiltin(Builtins::IN, CALL_FUNCTION, safepoint_generator);
erik.corry@gmail.com3847bd52011-04-27 10:38:56 +00006083}
6084
6085
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006086void LCodeGen::DoForInPrepareMap(LForInPrepareMap* instr) {
6087 __ cmp(eax, isolate()->factory()->undefined_value());
6088 DeoptimizeIf(equal, instr->environment());
6089
6090 __ cmp(eax, isolate()->factory()->null_value());
6091 DeoptimizeIf(equal, instr->environment());
6092
6093 __ test(eax, Immediate(kSmiTagMask));
6094 DeoptimizeIf(zero, instr->environment());
6095
6096 STATIC_ASSERT(FIRST_JS_PROXY_TYPE == FIRST_SPEC_OBJECT_TYPE);
6097 __ CmpObjectType(eax, LAST_JS_PROXY_TYPE, ecx);
6098 DeoptimizeIf(below_equal, instr->environment());
6099
6100 Label use_cache, call_runtime;
6101 __ CheckEnumCache(&call_runtime);
6102
6103 __ mov(eax, FieldOperand(eax, HeapObject::kMapOffset));
6104 __ jmp(&use_cache, Label::kNear);
6105
6106 // Get the set of properties to enumerate.
6107 __ bind(&call_runtime);
6108 __ push(eax);
6109 CallRuntime(Runtime::kGetPropertyNamesFast, 1, instr);
6110
6111 __ cmp(FieldOperand(eax, HeapObject::kMapOffset),
6112 isolate()->factory()->meta_map());
6113 DeoptimizeIf(not_equal, instr->environment());
6114 __ bind(&use_cache);
6115}
6116
6117
6118void LCodeGen::DoForInCacheArray(LForInCacheArray* instr) {
6119 Register map = ToRegister(instr->map());
6120 Register result = ToRegister(instr->result());
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00006121 Label load_cache, done;
6122 __ EnumLength(result, map);
6123 __ cmp(result, Immediate(Smi::FromInt(0)));
6124 __ j(not_equal, &load_cache);
6125 __ mov(result, isolate()->factory()->empty_fixed_array());
6126 __ jmp(&done);
6127
6128 __ bind(&load_cache);
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006129 __ LoadInstanceDescriptors(map, result);
6130 __ mov(result,
yangguo@chromium.org304cc332012-07-24 07:59:48 +00006131 FieldOperand(result, DescriptorArray::kEnumCacheOffset));
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006132 __ mov(result,
6133 FieldOperand(result, FixedArray::SizeFor(instr->idx())));
yangguo@chromium.org355cfd12012-08-29 15:32:24 +00006134 __ bind(&done);
kmillikin@chromium.orgbe6bd102012-02-23 08:45:21 +00006135 __ test(result, result);
6136 DeoptimizeIf(equal, instr->environment());
6137}
6138
6139
6140void LCodeGen::DoCheckMapValue(LCheckMapValue* instr) {
6141 Register object = ToRegister(instr->value());
6142 __ cmp(ToRegister(instr->map()),
6143 FieldOperand(object, HeapObject::kMapOffset));
6144 DeoptimizeIf(not_equal, instr->environment());
6145}
6146
6147
6148void LCodeGen::DoLoadFieldByIndex(LLoadFieldByIndex* instr) {
6149 Register object = ToRegister(instr->object());
6150 Register index = ToRegister(instr->index());
6151
6152 Label out_of_object, done;
6153 __ cmp(index, Immediate(0));
6154 __ j(less, &out_of_object);
6155 __ mov(object, FieldOperand(object,
6156 index,
6157 times_half_pointer_size,
6158 JSObject::kHeaderSize));
6159 __ jmp(&done, Label::kNear);
6160
6161 __ bind(&out_of_object);
6162 __ mov(object, FieldOperand(object, JSObject::kPropertiesOffset));
6163 __ neg(index);
6164 // Index is now equal to out of object property index plus 1.
6165 __ mov(object, FieldOperand(object,
6166 index,
6167 times_half_pointer_size,
6168 FixedArray::kHeaderSize - kPointerSize));
6169 __ bind(&done);
6170}
6171
6172
kasperl@chromium.orga5551262010-12-07 12:49:48 +00006173#undef __
6174
6175} } // namespace v8::internal
sgjesse@chromium.orgc6c57182011-01-17 12:24:25 +00006176
6177#endif // V8_TARGET_ARCH_IA32