Kostya Serebryany | da63c1d | 2016-02-26 21:33:56 +0000 | [diff] [blame] | 1 | //===- FuzzerTracePC.cpp - PC tracing--------------------------------------===// |
| 2 | // |
| 3 | // The LLVM Compiler Infrastructure |
| 4 | // |
| 5 | // This file is distributed under the University of Illinois Open Source |
| 6 | // License. See LICENSE.TXT for details. |
| 7 | // |
| 8 | //===----------------------------------------------------------------------===// |
| 9 | // Trace PCs. |
| 10 | // This module implements __sanitizer_cov_trace_pc, a callback required |
| 11 | // for -fsanitize-coverage=trace-pc instrumentation. |
| 12 | // |
Kostya Serebryany | da63c1d | 2016-02-26 21:33:56 +0000 | [diff] [blame] | 13 | //===----------------------------------------------------------------------===// |
| 14 | |
| 15 | #include "FuzzerInternal.h" |
| 16 | |
| 17 | namespace fuzzer { |
Mike Aizatsky | 1aa501e | 2016-05-10 23:43:15 +0000 | [diff] [blame] | 18 | |
Kostya Serebryany | c98ef71 | 2016-08-16 17:37:13 +0000 | [diff] [blame] | 19 | static size_t PreviouslyComputedPCHash; |
| 20 | static ValueBitMap CurrentPCMap; |
Mike Aizatsky | 1aa501e | 2016-05-10 23:43:15 +0000 | [diff] [blame] | 21 | |
Kostya Serebryany | c98ef71 | 2016-08-16 17:37:13 +0000 | [diff] [blame] | 22 | // Merges CurrentPCMap into M, returns the number of new bits. |
| 23 | size_t PCMapMergeFromCurrent(ValueBitMap &M) { |
| 24 | if (!PreviouslyComputedPCHash) |
Mike Aizatsky | 1aa501e | 2016-05-10 23:43:15 +0000 | [diff] [blame] | 25 | return 0; |
Kostya Serebryany | c98ef71 | 2016-08-16 17:37:13 +0000 | [diff] [blame] | 26 | PreviouslyComputedPCHash = 0; |
| 27 | return M.MergeFrom(CurrentPCMap); |
Kostya Serebryany | da63c1d | 2016-02-26 21:33:56 +0000 | [diff] [blame] | 28 | } |
| 29 | |
Kostya Serebryany | 2d4f8f1 | 2016-02-27 01:50:16 +0000 | [diff] [blame] | 30 | static void HandlePC(uint32_t PC) { |
Kostya Serebryany | da63c1d | 2016-02-26 21:33:56 +0000 | [diff] [blame] | 31 | // We take 12 bits of PC and mix it with the previous PCs. |
Kostya Serebryany | c98ef71 | 2016-08-16 17:37:13 +0000 | [diff] [blame] | 32 | uintptr_t Next = (PreviouslyComputedPCHash << 5) ^ (PC & 4095); |
| 33 | CurrentPCMap.AddValue(Next); |
| 34 | PreviouslyComputedPCHash = Next; |
Kostya Serebryany | da63c1d | 2016-02-26 21:33:56 +0000 | [diff] [blame] | 35 | } |
| 36 | |
| 37 | } // namespace fuzzer |
| 38 | |
Dan Liew | 5914407 | 2016-06-06 20:27:09 +0000 | [diff] [blame] | 39 | extern "C" { |
Kostya Serebryany | 32661f9 | 2016-08-18 20:52:52 +0000 | [diff] [blame] | 40 | __attribute__((visibility("default"))) |
Dan Liew | 5914407 | 2016-06-06 20:27:09 +0000 | [diff] [blame] | 41 | void __sanitizer_cov_trace_pc() { |
Kostya Serebryany | 2d4f8f1 | 2016-02-27 01:50:16 +0000 | [diff] [blame] | 42 | fuzzer::HandlePC(static_cast<uint32_t>( |
| 43 | reinterpret_cast<uintptr_t>(__builtin_return_address(0)))); |
Kostya Serebryany | da63c1d | 2016-02-26 21:33:56 +0000 | [diff] [blame] | 44 | } |
Dan Liew | 5914407 | 2016-06-06 20:27:09 +0000 | [diff] [blame] | 45 | |
Kostya Serebryany | 32661f9 | 2016-08-18 20:52:52 +0000 | [diff] [blame] | 46 | __attribute__((visibility("default"))) |
Dan Liew | 5914407 | 2016-06-06 20:27:09 +0000 | [diff] [blame] | 47 | void __sanitizer_cov_trace_pc_indir(int *) { |
| 48 | // Stub to allow linking with code built with |
| 49 | // -fsanitize=indirect-calls,trace-pc. |
| 50 | // This isn't used currently. |
| 51 | } |
| 52 | } |