blob: 32b186b269c7bcef818081f13f66b7246e7523fd [file] [log] [blame]
Ted Kremenekc62abc12009-04-21 21:51:34 +00001//== Store.cpp - Interface for maps from Locations to Values ----*- C++ -*--==//
2//
3// The LLVM Compiler Infrastructure
4//
5// This file is distributed under the University of Illinois Open Source
6// License. See LICENSE.TXT for details.
7//
8//===----------------------------------------------------------------------===//
9//
10// This file defined the types Store and StoreManager.
11//
12//===----------------------------------------------------------------------===//
13
14#include "clang/Analysis/PathSensitive/Store.h"
15#include "clang/Analysis/PathSensitive/GRState.h"
16
17using namespace clang;
18
19StoreManager::StoreManager(GRStateManager &stateMgr)
20 : ValMgr(stateMgr.getValueManager()),
21 StateMgr(stateMgr),
22 MRMgr(ValMgr.getRegionManager()) {}
23
24StoreManager::CastResult
25StoreManager::CastRegion(const GRState* state, const MemRegion* R,
Ted Kremenekfd6b4f32009-05-04 06:35:49 +000026 QualType CastToTy) {
Ted Kremenekc62abc12009-04-21 21:51:34 +000027
Ted Kremenek30d1b992009-04-21 23:31:46 +000028 ASTContext& Ctx = StateMgr.getContext();
29
30 // We need to know the real type of CastToTy.
31 QualType ToTy = Ctx.getCanonicalType(CastToTy);
32
Ted Kremenekc62abc12009-04-21 21:51:34 +000033 // Return the same region if the region types are compatible.
34 if (const TypedRegion* TR = dyn_cast<TypedRegion>(R)) {
Ted Kremenekc62abc12009-04-21 21:51:34 +000035 QualType Ta = Ctx.getCanonicalType(TR->getLValueType(Ctx));
Ted Kremenek30d1b992009-04-21 23:31:46 +000036
37 if (Ta == ToTy)
Ted Kremenekc62abc12009-04-21 21:51:34 +000038 return CastResult(state, R);
39 }
40
Ted Kremenekfd6b4f32009-05-04 06:35:49 +000041 if (const PointerType* PTy = dyn_cast<PointerType>(ToTy.getTypePtr())) {
42 // Check if we are casting to 'void*'.
43 // FIXME: Handle arbitrary upcasts.
44 QualType Pointee = PTy->getPointeeType();
45 if (Pointee->isVoidType()) {
Ted Kremenek30d1b992009-04-21 23:31:46 +000046
47 // Casts to void* only removes TypedViewRegion. If there is no
48 // TypedViewRegion, leave the region untouched. This happens when:
49 //
50 // void foo(void*);
51 // ...
52 // void bar() {
53 // int x;
54 // foo(&x);
55 // }
56
57 if (const TypedViewRegion *TR = dyn_cast<TypedViewRegion>(R))
58 R = TR->removeViews();
59
60 return CastResult(state, R);
61 }
Ted Kremenekfd6b4f32009-05-04 06:35:49 +000062 else if (Pointee->isIntegerType()) {
63 // FIXME: At some point, it stands to reason that this 'dyn_cast' should
64 // become a 'cast' and that 'R' will always be a TypedRegion.
65 if (const TypedRegion *TR = dyn_cast<TypedRegion>(R)) {
66 // Check if we are casting to a region with an integer type. We now
67 // the types aren't the same, so we construct an ElementRegion.
Ted Kremenekcd9392f2009-05-04 15:17:38 +000068 SVal Idx = ValMgr.makeZeroArrayIndex();
Ted Kremenek20bd7462009-05-04 07:04:36 +000069
70 // If the super region is an element region, strip it away.
71 // FIXME: Is this the right thing to do in all cases?
72 const TypedRegion *Base = isa<ElementRegion>(TR) ?
73 cast<TypedRegion>(TR->getSuperRegion()) : TR;
74 ElementRegion* ER = MRMgr.getElementRegion(Pointee, Idx, Base);
Ted Kremenekfd6b4f32009-05-04 06:35:49 +000075 return CastResult(state, ER);
76 }
77 }
78 }
Ted Kremenek30d1b992009-04-21 23:31:46 +000079
Ted Kremeneka8607d12009-05-01 19:22:20 +000080 // FIXME: Need to handle arbitrary downcasts.
81 // FIXME: Handle the case where a TypedViewRegion (layering a SymbolicRegion
82 // or an AllocaRegion is cast to another view, thus causing the memory
83 // to be re-used for a different purpose.
Ted Kremenek30d1b992009-04-21 23:31:46 +000084
Ted Kremeneka8607d12009-05-01 19:22:20 +000085 if (isa<SymbolicRegion>(R) || isa<AllocaRegion>(R)) {
86 const MemRegion* ViewR = MRMgr.getTypedViewRegion(CastToTy, R);
87 return CastResult(AddRegionView(state, ViewR, R), ViewR);
88 }
89
90 return CastResult(state, R);
Ted Kremenekc62abc12009-04-21 21:51:34 +000091}