xref: /dragonfly/contrib/gcc-8.0/gcc/asan.h (revision 58e805e6)
138fd1498Szrj /* AddressSanitizer, a fast memory error detector.
238fd1498Szrj    Copyright (C) 2011-2018 Free Software Foundation, Inc.
338fd1498Szrj    Contributed by Kostya Serebryany <kcc@google.com>
438fd1498Szrj 
538fd1498Szrj This file is part of GCC.
638fd1498Szrj 
738fd1498Szrj GCC is free software; you can redistribute it and/or modify it under
838fd1498Szrj the terms of the GNU General Public License as published by the Free
938fd1498Szrj Software Foundation; either version 3, or (at your option) any later
1038fd1498Szrj version.
1138fd1498Szrj 
1238fd1498Szrj GCC is distributed in the hope that it will be useful, but WITHOUT ANY
1338fd1498Szrj WARRANTY; without even the implied warranty of MERCHANTABILITY or
1438fd1498Szrj FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
1538fd1498Szrj for more details.
1638fd1498Szrj 
1738fd1498Szrj You should have received a copy of the GNU General Public License
1838fd1498Szrj along with GCC; see the file COPYING3.  If not see
1938fd1498Szrj <http://www.gnu.org/licenses/>.  */
2038fd1498Szrj 
2138fd1498Szrj #ifndef TREE_ASAN
2238fd1498Szrj #define TREE_ASAN
2338fd1498Szrj 
2438fd1498Szrj extern void asan_function_start (void);
2538fd1498Szrj extern void asan_finish_file (void);
2638fd1498Szrj extern rtx_insn *asan_emit_stack_protection (rtx, rtx, unsigned int,
2738fd1498Szrj 					     HOST_WIDE_INT *, tree *, int);
2838fd1498Szrj extern rtx_insn *asan_emit_allocas_unpoison (rtx, rtx, rtx_insn *);
2938fd1498Szrj extern bool asan_protect_global (tree, bool ignore_decl_rtl_set_p = false);
3038fd1498Szrj extern void initialize_sanitizer_builtins (void);
3138fd1498Szrj extern tree asan_dynamic_init_call (bool);
3238fd1498Szrj extern bool asan_expand_check_ifn (gimple_stmt_iterator *, bool);
3338fd1498Szrj extern bool asan_expand_mark_ifn (gimple_stmt_iterator *);
3438fd1498Szrj extern bool asan_expand_poison_ifn (gimple_stmt_iterator *, bool *,
3538fd1498Szrj 				    hash_map<tree, tree> &);
3638fd1498Szrj 
3738fd1498Szrj extern gimple_stmt_iterator create_cond_insert_point
3838fd1498Szrj      (gimple_stmt_iterator *, bool, bool, bool, basic_block *, basic_block *);
3938fd1498Szrj 
4038fd1498Szrj /* Alias set for accessing the shadow memory.  */
4138fd1498Szrj extern alias_set_type asan_shadow_set;
4238fd1498Szrj 
4338fd1498Szrj /* Hash set of labels that are either used in a goto, or their address
4438fd1498Szrj    has been taken.  */
4538fd1498Szrj extern hash_set <tree> *asan_used_labels;
4638fd1498Szrj 
4738fd1498Szrj /* Shadow memory is found at
4838fd1498Szrj    (address >> ASAN_SHADOW_SHIFT) + asan_shadow_offset ().  */
4938fd1498Szrj #define ASAN_SHADOW_SHIFT	3
5038fd1498Szrj #define ASAN_SHADOW_GRANULARITY (1UL << ASAN_SHADOW_SHIFT)
5138fd1498Szrj 
5238fd1498Szrj /* Red zone size, stack and global variables are padded by ASAN_RED_ZONE_SIZE
5338fd1498Szrj    up to 2 * ASAN_RED_ZONE_SIZE - 1 bytes.  */
5438fd1498Szrj #define ASAN_RED_ZONE_SIZE	32
5538fd1498Szrj 
5638fd1498Szrj /* Shadow memory values for stack protection.  Left is below protected vars,
5738fd1498Szrj    the first pointer in stack corresponding to that offset contains
5838fd1498Szrj    ASAN_STACK_FRAME_MAGIC word, the second pointer to a string describing
5938fd1498Szrj    the frame.  Middle is for padding in between variables, right is
6038fd1498Szrj    above the last protected variable and partial immediately after variables
6138fd1498Szrj    up to ASAN_RED_ZONE_SIZE alignment.  */
6238fd1498Szrj #define ASAN_STACK_MAGIC_LEFT		  0xf1
6338fd1498Szrj #define ASAN_STACK_MAGIC_MIDDLE		  0xf2
6438fd1498Szrj #define ASAN_STACK_MAGIC_RIGHT		  0xf3
6538fd1498Szrj #define ASAN_STACK_MAGIC_USE_AFTER_RET	  0xf5
6638fd1498Szrj #define ASAN_STACK_MAGIC_USE_AFTER_SCOPE  0xf8
6738fd1498Szrj 
6838fd1498Szrj #define ASAN_STACK_FRAME_MAGIC		0x41b58ab3
6938fd1498Szrj #define ASAN_STACK_RETIRED_MAGIC	0x45e0360e
7038fd1498Szrj 
7138fd1498Szrj #define ASAN_USE_AFTER_SCOPE_ATTRIBUTE	"use after scope memory"
7238fd1498Szrj 
7338fd1498Szrj /* Various flags for Asan builtins.  */
7438fd1498Szrj enum asan_check_flags
7538fd1498Szrj {
7638fd1498Szrj   ASAN_CHECK_STORE = 1 << 0,
7738fd1498Szrj   ASAN_CHECK_SCALAR_ACCESS = 1 << 1,
7838fd1498Szrj   ASAN_CHECK_NON_ZERO_LEN = 1 << 2,
7938fd1498Szrj   ASAN_CHECK_LAST = 1 << 3
8038fd1498Szrj };
8138fd1498Szrj 
8238fd1498Szrj /* Flags for Asan check builtins.  */
8338fd1498Szrj #define IFN_ASAN_MARK_FLAGS DEF(POISON), DEF(UNPOISON)
8438fd1498Szrj 
8538fd1498Szrj enum asan_mark_flags
8638fd1498Szrj {
8738fd1498Szrj #define DEF(X) ASAN_MARK_##X
8838fd1498Szrj   IFN_ASAN_MARK_FLAGS
8938fd1498Szrj #undef DEF
9038fd1498Szrj };
9138fd1498Szrj 
9238fd1498Szrj /* Return true if STMT is ASAN_MARK with FLAG as first argument.  */
9338fd1498Szrj extern bool asan_mark_p (gimple *stmt, enum asan_mark_flags flag);
9438fd1498Szrj 
9538fd1498Szrj /* Return the size of padding needed to insert after a protected
9638fd1498Szrj    decl of SIZE.  */
9738fd1498Szrj 
9838fd1498Szrj static inline unsigned int
asan_red_zone_size(unsigned int size)9938fd1498Szrj asan_red_zone_size (unsigned int size)
10038fd1498Szrj {
10138fd1498Szrj   unsigned int c = size & (ASAN_RED_ZONE_SIZE - 1);
10238fd1498Szrj   return c ? 2 * ASAN_RED_ZONE_SIZE - c : ASAN_RED_ZONE_SIZE;
10338fd1498Szrj }
10438fd1498Szrj 
10538fd1498Szrj extern bool set_asan_shadow_offset (const char *);
10638fd1498Szrj 
10738fd1498Szrj extern void set_sanitized_sections (const char *);
10838fd1498Szrj 
10938fd1498Szrj extern bool asan_sanitize_stack_p (void);
11038fd1498Szrj 
11138fd1498Szrj extern bool asan_sanitize_allocas_p (void);
11238fd1498Szrj 
113*58e805e6Szrj extern hash_set<tree> *asan_handled_variables;
114*58e805e6Szrj 
11538fd1498Szrj /* Return TRUE if builtin with given FCODE will be intercepted by
11638fd1498Szrj    libasan.  */
11738fd1498Szrj 
11838fd1498Szrj static inline bool
asan_intercepted_p(enum built_in_function fcode)11938fd1498Szrj asan_intercepted_p (enum built_in_function fcode)
12038fd1498Szrj {
12138fd1498Szrj   return fcode == BUILT_IN_INDEX
12238fd1498Szrj 	 || fcode == BUILT_IN_MEMCHR
12338fd1498Szrj 	 || fcode == BUILT_IN_MEMCMP
12438fd1498Szrj 	 || fcode == BUILT_IN_MEMCPY
12538fd1498Szrj 	 || fcode == BUILT_IN_MEMMOVE
12638fd1498Szrj 	 || fcode == BUILT_IN_MEMSET
12738fd1498Szrj 	 || fcode == BUILT_IN_STRCASECMP
12838fd1498Szrj 	 || fcode == BUILT_IN_STRCAT
12938fd1498Szrj 	 || fcode == BUILT_IN_STRCHR
13038fd1498Szrj 	 || fcode == BUILT_IN_STRCMP
13138fd1498Szrj 	 || fcode == BUILT_IN_STRCPY
13238fd1498Szrj 	 || fcode == BUILT_IN_STRDUP
13338fd1498Szrj 	 || fcode == BUILT_IN_STRLEN
13438fd1498Szrj 	 || fcode == BUILT_IN_STRNCASECMP
13538fd1498Szrj 	 || fcode == BUILT_IN_STRNCAT
13638fd1498Szrj 	 || fcode == BUILT_IN_STRNCMP
13738fd1498Szrj 	 || fcode == BUILT_IN_STRCSPN
13838fd1498Szrj 	 || fcode == BUILT_IN_STRPBRK
13938fd1498Szrj 	 || fcode == BUILT_IN_STRSPN
14038fd1498Szrj 	 || fcode == BUILT_IN_STRSTR
14138fd1498Szrj 	 || fcode == BUILT_IN_STRNCPY;
14238fd1498Szrj }
14338fd1498Szrj 
14438fd1498Szrj /* Return TRUE if we should instrument for use-after-scope sanity checking.  */
14538fd1498Szrj 
14638fd1498Szrj static inline bool
asan_sanitize_use_after_scope(void)14738fd1498Szrj asan_sanitize_use_after_scope (void)
14838fd1498Szrj {
14938fd1498Szrj   return (flag_sanitize_address_use_after_scope && asan_sanitize_stack_p ());
15038fd1498Szrj }
15138fd1498Szrj 
15238fd1498Szrj /* Return true if DECL should be guarded on the stack.  */
15338fd1498Szrj 
15438fd1498Szrj static inline bool
asan_protect_stack_decl(tree decl)15538fd1498Szrj asan_protect_stack_decl (tree decl)
15638fd1498Szrj {
15738fd1498Szrj   return DECL_P (decl)
15838fd1498Szrj     && (!DECL_ARTIFICIAL (decl)
15938fd1498Szrj 	|| (asan_sanitize_use_after_scope () && TREE_ADDRESSABLE (decl)));
16038fd1498Szrj }
16138fd1498Szrj 
16238fd1498Szrj /* Return true when flag_sanitize & FLAG is non-zero.  If FN is non-null,
16338fd1498Szrj    remove all flags mentioned in "no_sanitize" of DECL_ATTRIBUTES.  */
16438fd1498Szrj 
16538fd1498Szrj static inline bool
16638fd1498Szrj sanitize_flags_p (unsigned int flag, const_tree fn = current_function_decl)
16738fd1498Szrj {
16838fd1498Szrj   unsigned int result_flags = flag_sanitize & flag;
16938fd1498Szrj   if (result_flags == 0)
17038fd1498Szrj     return false;
17138fd1498Szrj 
17238fd1498Szrj   if (fn != NULL_TREE)
17338fd1498Szrj     {
17438fd1498Szrj       tree value = lookup_attribute ("no_sanitize", DECL_ATTRIBUTES (fn));
17538fd1498Szrj       if (value)
17638fd1498Szrj 	result_flags &= ~tree_to_uhwi (TREE_VALUE (value));
17738fd1498Szrj     }
17838fd1498Szrj 
17938fd1498Szrj   return result_flags;
18038fd1498Szrj }
18138fd1498Szrj 
18238fd1498Szrj #endif /* TREE_ASAN */
183