123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440144114421443144414451446144714481449145014511452145314541455145614571458145914601461146214631464146514661467146814691470147114721473147414751476147714781479148014811482148314841485148614871488148914901491149214931494149514961497149814991500150115021503150415051506150715081509151015111512151315141515151615171518151915201521152215231524152515261527152815291530153115321533153415351536153715381539154015411542154315441545154615471548154915501551155215531554155515561557155815591560156115621563156415651566156715681569157015711572157315741575157615771578157915801581158215831584158515861587158815891590159115921593159415951596159715981599160016011602160316041605160616071608160916101611161216131614161516161617161816191620162116221623162416251626162716281629163016311632163316341635163616371638163916401641164216431644164516461647164816491650165116521653165416551656165716581659166016611662166316641665166616671668166916701671167216731674167516761677167816791680168116821683168416851686168716881689169016911692169316941695169616971698169917001701170217031704170517061707170817091710171117121713171417151716171717181719172017211722172317241725172617271728172917301731173217331734173517361737173817391740174117421743174417451746174717481749 |
- /*
- +----------------------------------------------------------------------+
- | Zend OPcache |
- +----------------------------------------------------------------------+
- | Copyright (c) The PHP Group |
- +----------------------------------------------------------------------+
- | This source file is subject to version 3.01 of the PHP license, |
- | that is bundled with this package in the file LICENSE, and is |
- | available through the world-wide-web at the following url: |
- | https://www.php.net/license/3_01.txt |
- | If you did not receive a copy of the PHP license and are unable to |
- | obtain it through the world-wide-web, please send a note to |
- | license@php.net so we can mail you a copy immediately. |
- +----------------------------------------------------------------------+
- | Authors: Dmitry Stogov <dmitry@php.net> |
- +----------------------------------------------------------------------+
- */
- #include "Optimizer/zend_optimizer.h"
- #include "Optimizer/zend_optimizer_internal.h"
- #include "zend_API.h"
- #include "zend_constants.h"
- #include "zend_execute.h"
- #include "zend_vm.h"
- #include "zend_bitset.h"
- #include "zend_cfg.h"
- #include "zend_ssa.h"
- #include "zend_func_info.h"
- #include "zend_call_graph.h"
- #include "zend_inference.h"
- #include "zend_dump.h"
- #ifndef ZEND_DEBUG_DFA
- # define ZEND_DEBUG_DFA ZEND_DEBUG
- #endif
- #if ZEND_DEBUG_DFA
- # include "ssa_integrity.c"
- #endif
- int zend_dfa_analyze_op_array(zend_op_array *op_array, zend_optimizer_ctx *ctx, zend_ssa *ssa)
- {
- uint32_t build_flags;
- if (op_array->last_try_catch) {
- /* TODO: we can't analyze functions with try/catch/finally ??? */
- return FAILURE;
- }
- /* Build SSA */
- memset(ssa, 0, sizeof(zend_ssa));
- if (zend_build_cfg(&ctx->arena, op_array, ZEND_CFG_NO_ENTRY_PREDECESSORS, &ssa->cfg) != SUCCESS) {
- return FAILURE;
- }
- if ((ssa->cfg.flags & ZEND_FUNC_INDIRECT_VAR_ACCESS)) {
- /* TODO: we can't analyze functions with indirect variable access ??? */
- return FAILURE;
- }
- if (zend_cfg_build_predecessors(&ctx->arena, &ssa->cfg) != SUCCESS) {
- return FAILURE;
- }
- if (ctx->debug_level & ZEND_DUMP_DFA_CFG) {
- zend_dump_op_array(op_array, ZEND_DUMP_CFG, "dfa cfg", &ssa->cfg);
- }
- /* Compute Dominators Tree */
- if (zend_cfg_compute_dominators_tree(op_array, &ssa->cfg) != SUCCESS) {
- return FAILURE;
- }
- /* Identify reducible and irreducible loops */
- if (zend_cfg_identify_loops(op_array, &ssa->cfg) != SUCCESS) {
- return FAILURE;
- }
- if (ctx->debug_level & ZEND_DUMP_DFA_DOMINATORS) {
- zend_dump_dominators(op_array, &ssa->cfg);
- }
- build_flags = 0;
- if (ctx->debug_level & ZEND_DUMP_DFA_LIVENESS) {
- build_flags |= ZEND_SSA_DEBUG_LIVENESS;
- }
- if (ctx->debug_level & ZEND_DUMP_DFA_PHI) {
- build_flags |= ZEND_SSA_DEBUG_PHI_PLACEMENT;
- }
- if (zend_build_ssa(&ctx->arena, ctx->script, op_array, build_flags, ssa) != SUCCESS) {
- return FAILURE;
- }
- if (ctx->debug_level & ZEND_DUMP_DFA_SSA) {
- zend_dump_op_array(op_array, ZEND_DUMP_SSA, "dfa ssa", ssa);
- }
- if (zend_ssa_compute_use_def_chains(&ctx->arena, op_array, ssa) != SUCCESS){
- return FAILURE;
- }
- if (zend_ssa_find_false_dependencies(op_array, ssa) != SUCCESS) {
- return FAILURE;
- }
- if (zend_ssa_find_sccs(op_array, ssa) != SUCCESS){
- return FAILURE;
- }
- if (zend_ssa_inference(&ctx->arena, op_array, ctx->script, ssa, ctx->optimization_level) != SUCCESS) {
- return FAILURE;
- }
- if (zend_ssa_escape_analysis(ctx->script, op_array, ssa) != SUCCESS) {
- return FAILURE;
- }
- if (ctx->debug_level & ZEND_DUMP_DFA_SSA_VARS) {
- zend_dump_ssa_variables(op_array, ssa, 0);
- }
- return SUCCESS;
- }
- static void zend_ssa_remove_nops(zend_op_array *op_array, zend_ssa *ssa, zend_optimizer_ctx *ctx)
- {
- zend_basic_block *blocks = ssa->cfg.blocks;
- zend_basic_block *blocks_end = blocks + ssa->cfg.blocks_count;
- zend_basic_block *b;
- zend_func_info *func_info;
- int j;
- uint32_t i = 0;
- uint32_t target = 0;
- uint32_t *shiftlist;
- ALLOCA_FLAG(use_heap);
- shiftlist = (uint32_t *)do_alloca(sizeof(uint32_t) * op_array->last, use_heap);
- memset(shiftlist, 0, sizeof(uint32_t) * op_array->last);
- /* remove empty callee_info */
- func_info = ZEND_FUNC_INFO(op_array);
- if (func_info) {
- zend_call_info **call_info = &func_info->callee_info;
- while ((*call_info)) {
- if ((*call_info)->caller_init_opline->opcode == ZEND_NOP) {
- *call_info = (*call_info)->next_callee;
- } else {
- call_info = &(*call_info)->next_callee;
- }
- }
- }
- for (b = blocks; b < blocks_end; b++) {
- if (b->flags & (ZEND_BB_REACHABLE|ZEND_BB_UNREACHABLE_FREE)) {
- if (b->len) {
- uint32_t new_start, old_end;
- while (i < b->start) {
- shiftlist[i] = i - target;
- i++;
- }
- if (b->flags & ZEND_BB_UNREACHABLE_FREE) {
- /* Only keep the FREE for the loop var */
- ZEND_ASSERT(op_array->opcodes[b->start].opcode == ZEND_FREE
- || op_array->opcodes[b->start].opcode == ZEND_FE_FREE);
- b->len = 1;
- }
- new_start = target;
- old_end = b->start + b->len;
- while (i < old_end) {
- shiftlist[i] = i - target;
- if (EXPECTED(op_array->opcodes[i].opcode != ZEND_NOP)) {
- if (i != target) {
- op_array->opcodes[target] = op_array->opcodes[i];
- ssa->ops[target] = ssa->ops[i];
- ssa->cfg.map[target] = b - blocks;
- }
- target++;
- }
- i++;
- }
- b->start = new_start;
- if (target != old_end) {
- zend_op *opline;
- zend_op *new_opline;
- b->len = target - b->start;
- opline = op_array->opcodes + old_end - 1;
- if (opline->opcode == ZEND_NOP) {
- continue;
- }
- new_opline = op_array->opcodes + target - 1;
- zend_optimizer_migrate_jump(op_array, new_opline, opline);
- }
- } else {
- b->start = target;
- }
- } else {
- b->start = target;
- b->len = 0;
- }
- }
- if (target != op_array->last) {
- /* reset rest opcodes */
- for (i = target; i < op_array->last; i++) {
- MAKE_NOP(op_array->opcodes + i);
- }
- /* update SSA variables */
- for (j = 0; j < ssa->vars_count; j++) {
- if (ssa->vars[j].definition >= 0) {
- ssa->vars[j].definition -= shiftlist[ssa->vars[j].definition];
- }
- if (ssa->vars[j].use_chain >= 0) {
- ssa->vars[j].use_chain -= shiftlist[ssa->vars[j].use_chain];
- }
- }
- for (i = 0; i < op_array->last; i++) {
- if (ssa->ops[i].op1_use_chain >= 0) {
- ssa->ops[i].op1_use_chain -= shiftlist[ssa->ops[i].op1_use_chain];
- }
- if (ssa->ops[i].op2_use_chain >= 0) {
- ssa->ops[i].op2_use_chain -= shiftlist[ssa->ops[i].op2_use_chain];
- }
- if (ssa->ops[i].res_use_chain >= 0) {
- ssa->ops[i].res_use_chain -= shiftlist[ssa->ops[i].res_use_chain];
- }
- }
- /* update branch targets */
- for (b = blocks; b < blocks_end; b++) {
- if ((b->flags & ZEND_BB_REACHABLE) && b->len != 0) {
- zend_op *opline = op_array->opcodes + b->start + b->len - 1;
- zend_optimizer_shift_jump(op_array, opline, shiftlist);
- }
- }
- /* update try/catch array */
- for (j = 0; j < op_array->last_try_catch; j++) {
- op_array->try_catch_array[j].try_op -= shiftlist[op_array->try_catch_array[j].try_op];
- op_array->try_catch_array[j].catch_op -= shiftlist[op_array->try_catch_array[j].catch_op];
- if (op_array->try_catch_array[j].finally_op) {
- op_array->try_catch_array[j].finally_op -= shiftlist[op_array->try_catch_array[j].finally_op];
- op_array->try_catch_array[j].finally_end -= shiftlist[op_array->try_catch_array[j].finally_end];
- }
- }
- /* update early binding list */
- if (op_array->fn_flags & ZEND_ACC_EARLY_BINDING) {
- uint32_t *opline_num = &ctx->script->first_early_binding_opline;
- ZEND_ASSERT(op_array == &ctx->script->main_op_array);
- do {
- *opline_num -= shiftlist[*opline_num];
- opline_num = &op_array->opcodes[*opline_num].result.opline_num;
- } while (*opline_num != (uint32_t)-1);
- }
- /* update call graph */
- if (func_info) {
- zend_call_info *call_info = func_info->callee_info;
- while (call_info) {
- call_info->caller_init_opline -=
- shiftlist[call_info->caller_init_opline - op_array->opcodes];
- if (call_info->caller_call_opline) {
- call_info->caller_call_opline -=
- shiftlist[call_info->caller_call_opline - op_array->opcodes];
- }
- call_info = call_info->next_callee;
- }
- }
- op_array->last = target;
- }
- free_alloca(shiftlist, use_heap);
- }
- static bool safe_instanceof(zend_class_entry *ce1, zend_class_entry *ce2) {
- if (ce1 == ce2) {
- return 1;
- }
- if (!(ce1->ce_flags & ZEND_ACC_LINKED)) {
- /* This case could be generalized, similarly to unlinked_instanceof */
- return 0;
- }
- return instanceof_function(ce1, ce2);
- }
- static inline bool can_elide_return_type_check(
- const zend_script *script, zend_op_array *op_array, zend_ssa *ssa, zend_ssa_op *ssa_op) {
- zend_arg_info *arg_info = &op_array->arg_info[-1];
- zend_ssa_var_info *use_info = &ssa->var_info[ssa_op->op1_use];
- uint32_t use_type = use_info->type & (MAY_BE_ANY|MAY_BE_UNDEF);
- if (use_type & MAY_BE_REF) {
- return 0;
- }
- if (use_type & MAY_BE_UNDEF) {
- use_type &= ~MAY_BE_UNDEF;
- use_type |= MAY_BE_NULL;
- }
- uint32_t disallowed_types = use_type & ~ZEND_TYPE_PURE_MASK(arg_info->type);
- if (!disallowed_types) {
- /* Only contains allowed types. */
- return true;
- }
- if (disallowed_types == MAY_BE_OBJECT && use_info->ce && ZEND_TYPE_IS_COMPLEX(arg_info->type)) {
- zend_type *single_type;
- /* For intersection: result==false is failure, default is success.
- * For union: result==true is success, default is failure. */
- bool is_intersection = ZEND_TYPE_IS_INTERSECTION(arg_info->type);
- ZEND_TYPE_FOREACH(arg_info->type, single_type) {
- if (ZEND_TYPE_HAS_NAME(*single_type)) {
- zend_string *lcname = zend_string_tolower(ZEND_TYPE_NAME(*single_type));
- zend_class_entry *ce = zend_optimizer_get_class_entry(script, lcname);
- zend_string_release(lcname);
- bool result = ce && safe_instanceof(use_info->ce, ce);
- if (result == !is_intersection) {
- return result;
- }
- }
- } ZEND_TYPE_FOREACH_END();
- return is_intersection;
- }
- return false;
- }
- static bool opline_supports_assign_contraction(
- zend_op_array *op_array, zend_ssa *ssa, zend_op *opline, int src_var, uint32_t cv_var) {
- if (opline->opcode == ZEND_NEW) {
- /* see Zend/tests/generators/aborted_yield_during_new.phpt */
- return 0;
- }
- if (opline->opcode == ZEND_DO_ICALL || opline->opcode == ZEND_DO_UCALL
- || opline->opcode == ZEND_DO_FCALL || opline->opcode == ZEND_DO_FCALL_BY_NAME) {
- /* Function calls may dtor the return value after it has already been written -- allow
- * direct assignment only for types where a double-dtor does not matter. */
- uint32_t type = ssa->var_info[src_var].type;
- uint32_t simple = MAY_BE_NULL|MAY_BE_FALSE|MAY_BE_TRUE|MAY_BE_LONG|MAY_BE_DOUBLE;
- return !((type & MAY_BE_ANY) & ~simple);
- }
- if (opline->opcode == ZEND_POST_INC || opline->opcode == ZEND_POST_DEC) {
- /* POST_INC/DEC write the result variable before performing the inc/dec. For $i = $i++
- * eliding the temporary variable would thus yield an incorrect result. */
- return opline->op1_type != IS_CV || opline->op1.var != cv_var;
- }
- if (opline->opcode == ZEND_INIT_ARRAY) {
- /* INIT_ARRAY initializes the result array before reading key/value. */
- return (opline->op1_type != IS_CV || opline->op1.var != cv_var)
- && (opline->op2_type != IS_CV || opline->op2.var != cv_var);
- }
- if (opline->opcode == ZEND_CAST
- && (opline->extended_value == IS_ARRAY || opline->extended_value == IS_OBJECT)) {
- /* CAST to array/object may initialize the result to an empty array/object before
- * reading the expression. */
- return opline->op1_type != IS_CV || opline->op1.var != cv_var;
- }
- if ((opline->opcode == ZEND_ASSIGN_OP
- || opline->opcode == ZEND_ASSIGN_OBJ
- || opline->opcode == ZEND_ASSIGN_DIM)
- && opline->op1_type == IS_CV
- && opline->op1.var == cv_var
- && zend_may_throw(opline, &ssa->ops[ssa->vars[src_var].definition], op_array, ssa)) {
- return 0;
- }
- return 1;
- }
- static bool variable_defined_or_used_in_range(zend_ssa *ssa, int var, int start, int end)
- {
- while (start < end) {
- const zend_ssa_op *ssa_op = &ssa->ops[start];
- if ((ssa_op->op1_def >= 0 && ssa->vars[ssa_op->op1_def].var == var) ||
- (ssa_op->op2_def >= 0 && ssa->vars[ssa_op->op2_def].var == var) ||
- (ssa_op->result_def >= 0 && ssa->vars[ssa_op->result_def].var == var) ||
- (ssa_op->op1_use >= 0 && ssa->vars[ssa_op->op1_use].var == var) ||
- (ssa_op->op2_use >= 0 && ssa->vars[ssa_op->op2_use].var == var) ||
- (ssa_op->result_use >= 0 && ssa->vars[ssa_op->result_use].var == var)
- ) {
- return 1;
- }
- start++;
- }
- return 0;
- }
- int zend_dfa_optimize_calls(zend_op_array *op_array, zend_ssa *ssa)
- {
- zend_func_info *func_info = ZEND_FUNC_INFO(op_array);
- int removed_ops = 0;
- if (func_info->callee_info) {
- zend_call_info *call_info = func_info->callee_info;
- do {
- if (call_info->caller_call_opline
- && call_info->caller_call_opline->opcode == ZEND_DO_ICALL
- && call_info->callee_func
- && zend_string_equals_literal(call_info->callee_func->common.function_name, "in_array")
- && (call_info->caller_init_opline->extended_value == 2
- || (call_info->caller_init_opline->extended_value == 3
- && (call_info->caller_call_opline - 1)->opcode == ZEND_SEND_VAL
- && (call_info->caller_call_opline - 1)->op1_type == IS_CONST))) {
- zend_op *send_array;
- zend_op *send_needly;
- bool strict = 0;
- ZEND_ASSERT(!call_info->is_prototype);
- if (call_info->caller_init_opline->extended_value == 2) {
- send_array = call_info->caller_call_opline - 1;
- send_needly = call_info->caller_call_opline - 2;
- } else {
- if (zend_is_true(CT_CONSTANT_EX(op_array, (call_info->caller_call_opline - 1)->op1.constant))) {
- strict = 1;
- }
- send_array = call_info->caller_call_opline - 2;
- send_needly = call_info->caller_call_opline - 3;
- }
- if (send_array->opcode == ZEND_SEND_VAL
- && send_array->op1_type == IS_CONST
- && Z_TYPE_P(CT_CONSTANT_EX(op_array, send_array->op1.constant)) == IS_ARRAY
- && (send_needly->opcode == ZEND_SEND_VAL
- || send_needly->opcode == ZEND_SEND_VAR)
- ) {
- int ok = 1;
- HashTable *src = Z_ARRVAL_P(CT_CONSTANT_EX(op_array, send_array->op1.constant));
- HashTable *dst;
- zval *val, tmp;
- zend_ulong idx;
- ZVAL_TRUE(&tmp);
- dst = zend_new_array(zend_hash_num_elements(src));
- if (strict) {
- ZEND_HASH_FOREACH_VAL(src, val) {
- if (Z_TYPE_P(val) == IS_STRING) {
- zend_hash_add(dst, Z_STR_P(val), &tmp);
- } else if (Z_TYPE_P(val) == IS_LONG) {
- zend_hash_index_add(dst, Z_LVAL_P(val), &tmp);
- } else {
- zend_array_destroy(dst);
- ok = 0;
- break;
- }
- } ZEND_HASH_FOREACH_END();
- } else {
- ZEND_HASH_FOREACH_VAL(src, val) {
- if (Z_TYPE_P(val) != IS_STRING || ZEND_HANDLE_NUMERIC(Z_STR_P(val), idx)) {
- zend_array_destroy(dst);
- ok = 0;
- break;
- }
- zend_hash_add(dst, Z_STR_P(val), &tmp);
- } ZEND_HASH_FOREACH_END();
- }
- if (ok) {
- uint32_t op_num = send_needly - op_array->opcodes;
- zend_ssa_op *ssa_op = ssa->ops + op_num;
- if (ssa_op->op1_use >= 0) {
- /* Reconstruct SSA */
- int var_num = ssa_op->op1_use;
- zend_ssa_var *var = ssa->vars + var_num;
- ZEND_ASSERT(ssa_op->op1_def < 0);
- zend_ssa_unlink_use_chain(ssa, op_num, ssa_op->op1_use);
- ssa_op->op1_use = -1;
- ssa_op->op1_use_chain = -1;
- op_num = call_info->caller_call_opline - op_array->opcodes;
- ssa_op = ssa->ops + op_num;
- ssa_op->op1_use = var_num;
- ssa_op->op1_use_chain = var->use_chain;
- var->use_chain = op_num;
- }
- ZVAL_ARR(&tmp, dst);
- /* Update opcode */
- call_info->caller_call_opline->opcode = ZEND_IN_ARRAY;
- call_info->caller_call_opline->extended_value = strict;
- call_info->caller_call_opline->op1_type = send_needly->op1_type;
- call_info->caller_call_opline->op1.num = send_needly->op1.num;
- call_info->caller_call_opline->op2_type = IS_CONST;
- call_info->caller_call_opline->op2.constant = zend_optimizer_add_literal(op_array, &tmp);
- if (call_info->caller_init_opline->extended_value == 3) {
- MAKE_NOP(call_info->caller_call_opline - 1);
- }
- MAKE_NOP(call_info->caller_init_opline);
- MAKE_NOP(send_needly);
- MAKE_NOP(send_array);
- removed_ops++;
- op_num = call_info->caller_call_opline - op_array->opcodes;
- ssa_op = ssa->ops + op_num;
- if (ssa_op->result_def >= 0) {
- int var = ssa_op->result_def;
- int use = ssa->vars[var].use_chain;
- /* If the result is used only in a JMPZ/JMPNZ, replace result type with
- * IS_TMP_VAR, which will enable use of smart branches. Don't do this
- * in other cases, as not all opcodes support both VAR and TMP. */
- if (ssa->vars[var].phi_use_chain == NULL
- && ssa->ops[use].op1_use == var
- && ssa->ops[use].op1_use_chain == -1
- && (op_array->opcodes[use].opcode == ZEND_JMPZ
- || op_array->opcodes[use].opcode == ZEND_JMPNZ)) {
- call_info->caller_call_opline->result_type = IS_TMP_VAR;
- op_array->opcodes[use].op1_type = IS_TMP_VAR;
- }
- }
- }
- }
- }
- call_info = call_info->next_callee;
- } while (call_info);
- }
- return removed_ops;
- }
- static zend_always_inline void take_successor_0(zend_ssa *ssa, int block_num, zend_basic_block *block)
- {
- if (block->successors_count == 2) {
- if (block->successors[1] != block->successors[0]) {
- zend_ssa_remove_predecessor(ssa, block_num, block->successors[1]);
- }
- block->successors_count = 1;
- }
- }
- static zend_always_inline void take_successor_1(zend_ssa *ssa, int block_num, zend_basic_block *block)
- {
- if (block->successors_count == 2) {
- if (block->successors[1] != block->successors[0]) {
- zend_ssa_remove_predecessor(ssa, block_num, block->successors[0]);
- block->successors[0] = block->successors[1];
- }
- block->successors_count = 1;
- }
- }
- static zend_always_inline void take_successor_ex(zend_ssa *ssa, int block_num, zend_basic_block *block, int target_block)
- {
- int i;
- for (i = 0; i < block->successors_count; i++) {
- if (block->successors[i] != target_block) {
- zend_ssa_remove_predecessor(ssa, block_num, block->successors[i]);
- }
- }
- block->successors[0] = target_block;
- block->successors_count = 1;
- }
- static void compress_block(zend_op_array *op_array, zend_basic_block *block)
- {
- while (block->len > 0) {
- zend_op *opline = &op_array->opcodes[block->start + block->len - 1];
- if (opline->opcode == ZEND_NOP) {
- block->len--;
- } else {
- break;
- }
- }
- }
- static void replace_predecessor(zend_ssa *ssa, int block_id, int old_pred, int new_pred) {
- zend_basic_block *block = &ssa->cfg.blocks[block_id];
- int *predecessors = &ssa->cfg.predecessors[block->predecessor_offset];
- zend_ssa_phi *phi;
- int i;
- int old_pred_idx = -1;
- int new_pred_idx = -1;
- for (i = 0; i < block->predecessors_count; i++) {
- if (predecessors[i] == old_pred) {
- old_pred_idx = i;
- }
- if (predecessors[i] == new_pred) {
- new_pred_idx = i;
- }
- }
- ZEND_ASSERT(old_pred_idx != -1);
- if (new_pred_idx == -1) {
- /* If the new predecessor doesn't exist yet, simply rewire the old one */
- predecessors[old_pred_idx] = new_pred;
- } else {
- /* Otherwise, rewiring the old predecessor would make the new predecessor appear
- * twice, which violates our CFG invariants. Remove the old predecessor instead. */
- memmove(
- predecessors + old_pred_idx,
- predecessors + old_pred_idx + 1,
- sizeof(int) * (block->predecessors_count - old_pred_idx - 1)
- );
- /* Also remove the corresponding phi node entries */
- for (phi = ssa->blocks[block_id].phis; phi; phi = phi->next) {
- if (phi->pi >= 0) {
- if (phi->pi == old_pred || phi->pi == new_pred) {
- zend_ssa_rename_var_uses(
- ssa, phi->ssa_var, phi->sources[0], /* update_types */ 0);
- zend_ssa_remove_phi(ssa, phi);
- }
- } else {
- memmove(
- phi->sources + old_pred_idx,
- phi->sources + old_pred_idx + 1,
- sizeof(int) * (block->predecessors_count - old_pred_idx - 1)
- );
- }
- }
- block->predecessors_count--;
- }
- }
- static void zend_ssa_replace_control_link(zend_op_array *op_array, zend_ssa *ssa, int from, int to, int new_to)
- {
- zend_basic_block *src = &ssa->cfg.blocks[from];
- zend_basic_block *old = &ssa->cfg.blocks[to];
- zend_basic_block *dst = &ssa->cfg.blocks[new_to];
- int i;
- zend_op *opline;
- for (i = 0; i < src->successors_count; i++) {
- if (src->successors[i] == to) {
- src->successors[i] = new_to;
- }
- }
- if (src->len > 0) {
- opline = op_array->opcodes + src->start + src->len - 1;
- switch (opline->opcode) {
- case ZEND_JMP:
- case ZEND_FAST_CALL:
- ZEND_ASSERT(ZEND_OP1_JMP_ADDR(opline) == op_array->opcodes + old->start);
- ZEND_SET_OP_JMP_ADDR(opline, opline->op1, op_array->opcodes + dst->start);
- break;
- case ZEND_JMPZNZ:
- if (ZEND_OFFSET_TO_OPLINE_NUM(op_array, opline, opline->extended_value) == old->start) {
- opline->extended_value = ZEND_OPLINE_NUM_TO_OFFSET(op_array, opline, dst->start);
- }
- ZEND_FALLTHROUGH;
- case ZEND_JMPZ:
- case ZEND_JMPNZ:
- case ZEND_JMPZ_EX:
- case ZEND_JMPNZ_EX:
- case ZEND_FE_RESET_R:
- case ZEND_FE_RESET_RW:
- case ZEND_JMP_SET:
- case ZEND_COALESCE:
- case ZEND_ASSERT_CHECK:
- case ZEND_JMP_NULL:
- if (ZEND_OP2_JMP_ADDR(opline) == op_array->opcodes + old->start) {
- ZEND_SET_OP_JMP_ADDR(opline, opline->op2, op_array->opcodes + dst->start);
- }
- break;
- case ZEND_CATCH:
- if (!(opline->extended_value & ZEND_LAST_CATCH)) {
- if (ZEND_OP2_JMP_ADDR(opline) == op_array->opcodes + old->start) {
- ZEND_SET_OP_JMP_ADDR(opline, opline->op2, op_array->opcodes + dst->start);
- }
- }
- break;
- case ZEND_FE_FETCH_R:
- case ZEND_FE_FETCH_RW:
- if (ZEND_OFFSET_TO_OPLINE_NUM(op_array, opline, opline->extended_value) == old->start) {
- opline->extended_value = ZEND_OPLINE_NUM_TO_OFFSET(op_array, opline, dst->start);
- }
- break;
- case ZEND_SWITCH_LONG:
- case ZEND_SWITCH_STRING:
- case ZEND_MATCH:
- {
- HashTable *jumptable = Z_ARRVAL(ZEND_OP2_LITERAL(opline));
- zval *zv;
- ZEND_HASH_FOREACH_VAL(jumptable, zv) {
- if (ZEND_OFFSET_TO_OPLINE_NUM(op_array, opline, Z_LVAL_P(zv)) == old->start) {
- Z_LVAL_P(zv) = ZEND_OPLINE_NUM_TO_OFFSET(op_array, opline, dst->start);
- }
- } ZEND_HASH_FOREACH_END();
- if (ZEND_OFFSET_TO_OPLINE_NUM(op_array, opline, opline->extended_value) == old->start) {
- opline->extended_value = ZEND_OPLINE_NUM_TO_OFFSET(op_array, opline, dst->start);
- }
- break;
- }
- }
- }
- replace_predecessor(ssa, new_to, to, from);
- }
- static void zend_ssa_unlink_block(zend_op_array *op_array, zend_ssa *ssa, zend_basic_block *block, int block_num)
- {
- if (block->predecessors_count == 1 && ssa->blocks[block_num].phis == NULL) {
- int *predecessors, i;
- zend_basic_block *fe_fetch_block = NULL;
- ZEND_ASSERT(block->successors_count == 1);
- predecessors = &ssa->cfg.predecessors[block->predecessor_offset];
- if (block->predecessors_count == 1 && (block->flags & ZEND_BB_FOLLOW)) {
- zend_basic_block *pred_block = &ssa->cfg.blocks[predecessors[0]];
- if (pred_block->len > 0 && (pred_block->flags & ZEND_BB_REACHABLE)) {
- if ((op_array->opcodes[pred_block->start + pred_block->len - 1].opcode == ZEND_FE_FETCH_R
- || op_array->opcodes[pred_block->start + pred_block->len - 1].opcode == ZEND_FE_FETCH_RW)
- && op_array->opcodes[pred_block->start + pred_block->len - 1].op2_type == IS_CV) {
- fe_fetch_block = pred_block;
- }
- }
- }
- for (i = 0; i < block->predecessors_count; i++) {
- zend_ssa_replace_control_link(op_array, ssa, predecessors[i], block_num, block->successors[0]);
- }
- zend_ssa_remove_block(op_array, ssa, block_num);
- if (fe_fetch_block && fe_fetch_block->successors[0] == fe_fetch_block->successors[1]) {
- /* The body of "foreach" loop was removed */
- int ssa_var = ssa->ops[fe_fetch_block->start + fe_fetch_block->len - 1].op2_def;
- if (ssa_var >= 0) {
- zend_ssa_remove_uses_of_var(ssa, ssa_var);
- }
- }
- }
- }
- static int zend_dfa_optimize_jmps(zend_op_array *op_array, zend_ssa *ssa)
- {
- int removed_ops = 0;
- int block_num = 0;
- for (block_num = 1; block_num < ssa->cfg.blocks_count; block_num++) {
- zend_basic_block *block = &ssa->cfg.blocks[block_num];
- if (!(block->flags & ZEND_BB_REACHABLE)) {
- continue;
- }
- compress_block(op_array, block);
- if (block->len == 0) {
- zend_ssa_unlink_block(op_array, ssa, block, block_num);
- }
- }
- block_num = 0;
- while (block_num < ssa->cfg.blocks_count
- && !(ssa->cfg.blocks[block_num].flags & ZEND_BB_REACHABLE)) {
- block_num++;
- }
- while (block_num < ssa->cfg.blocks_count) {
- int next_block_num = block_num + 1;
- zend_basic_block *block = &ssa->cfg.blocks[block_num];
- uint32_t op_num;
- zend_op *opline;
- zend_ssa_op *ssa_op;
- bool can_follow = 1;
- while (next_block_num < ssa->cfg.blocks_count
- && !(ssa->cfg.blocks[next_block_num].flags & ZEND_BB_REACHABLE)) {
- if (ssa->cfg.blocks[next_block_num].flags & ZEND_BB_UNREACHABLE_FREE) {
- can_follow = 0;
- }
- next_block_num++;
- }
- if (block->len) {
- op_num = block->start + block->len - 1;
- opline = op_array->opcodes + op_num;
- ssa_op = ssa->ops + op_num;
- switch (opline->opcode) {
- case ZEND_JMP:
- optimize_jmp:
- if (block->successors[0] == next_block_num && can_follow) {
- MAKE_NOP(opline);
- removed_ops++;
- goto optimize_nop;
- }
- break;
- case ZEND_JMPZ:
- optimize_jmpz:
- if (opline->op1_type == IS_CONST) {
- if (zend_is_true(CT_CONSTANT_EX(op_array, opline->op1.constant))) {
- MAKE_NOP(opline);
- removed_ops++;
- take_successor_1(ssa, block_num, block);
- goto optimize_nop;
- } else {
- opline->opcode = ZEND_JMP;
- COPY_NODE(opline->op1, opline->op2);
- take_successor_0(ssa, block_num, block);
- goto optimize_jmp;
- }
- } else {
- if (block->successors[0] == next_block_num && can_follow) {
- take_successor_0(ssa, block_num, block);
- if (opline->op1_type == IS_CV && (OP1_INFO() & MAY_BE_UNDEF)) {
- opline->opcode = ZEND_CHECK_VAR;
- opline->op2.num = 0;
- } else if (opline->op1_type == IS_CV || !(OP1_INFO() & (MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))) {
- zend_ssa_remove_instr(ssa, opline, ssa_op);
- removed_ops++;
- goto optimize_nop;
- } else {
- opline->opcode = ZEND_FREE;
- opline->op2.num = 0;
- }
- }
- }
- break;
- case ZEND_JMPNZ:
- optimize_jmpnz:
- if (opline->op1_type == IS_CONST) {
- if (zend_is_true(CT_CONSTANT_EX(op_array, opline->op1.constant))) {
- opline->opcode = ZEND_JMP;
- COPY_NODE(opline->op1, opline->op2);
- take_successor_0(ssa, block_num, block);
- goto optimize_jmp;
- } else {
- MAKE_NOP(opline);
- removed_ops++;
- take_successor_1(ssa, block_num, block);
- goto optimize_nop;
- }
- } else if (block->successors_count == 2) {
- if (block->successors[0] == next_block_num && can_follow) {
- take_successor_0(ssa, block_num, block);
- if (opline->op1_type == IS_CV && (OP1_INFO() & MAY_BE_UNDEF)) {
- opline->opcode = ZEND_CHECK_VAR;
- opline->op2.num = 0;
- } else if (opline->op1_type == IS_CV || !(OP1_INFO() & (MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))) {
- zend_ssa_remove_instr(ssa, opline, ssa_op);
- removed_ops++;
- goto optimize_nop;
- } else {
- opline->opcode = ZEND_FREE;
- opline->op2.num = 0;
- }
- }
- }
- break;
- case ZEND_JMPZNZ:
- if (opline->op1_type == IS_CONST) {
- if (zend_is_true(CT_CONSTANT_EX(op_array, opline->op1.constant))) {
- zend_op *target_opline = ZEND_OFFSET_TO_OPLINE(opline, opline->extended_value);
- ZEND_SET_OP_JMP_ADDR(opline, opline->op1, target_opline);
- take_successor_1(ssa, block_num, block);
- } else {
- zend_op *target_opline = ZEND_OP2_JMP_ADDR(opline);
- ZEND_SET_OP_JMP_ADDR(opline, opline->op1, target_opline);
- take_successor_0(ssa, block_num, block);
- }
- opline->op1_type = IS_UNUSED;
- opline->extended_value = 0;
- opline->opcode = ZEND_JMP;
- goto optimize_jmp;
- } else if (block->successors_count == 2) {
- if (block->successors[0] == block->successors[1]) {
- take_successor_0(ssa, block_num, block);
- if (block->successors[0] == next_block_num && can_follow) {
- if (opline->op1_type == IS_CV && (OP1_INFO() & MAY_BE_UNDEF)) {
- opline->opcode = ZEND_CHECK_VAR;
- opline->op2.num = 0;
- } else if (opline->op1_type == IS_CV || !(OP1_INFO() & (MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))) {
- zend_ssa_remove_instr(ssa, opline, ssa_op);
- removed_ops++;
- goto optimize_nop;
- } else {
- opline->opcode = ZEND_FREE;
- opline->op2.num = 0;
- }
- } else if ((opline->op1_type == IS_CV && !(OP1_INFO() & MAY_BE_UNDEF)) || !(OP1_INFO() & (MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))) {
- ZEND_ASSERT(ssa_op->op1_use >= 0);
- zend_ssa_unlink_use_chain(ssa, op_num, ssa_op->op1_use);
- ssa_op->op1_use = -1;
- ssa_op->op1_use_chain = -1;
- opline->opcode = ZEND_JMP;
- opline->op1_type = IS_UNUSED;
- opline->op1.num = opline->op2.num;
- goto optimize_jmp;
- }
- }
- }
- break;
- case ZEND_JMPZ_EX:
- if (ssa->vars[ssa_op->result_def].use_chain < 0
- && ssa->vars[ssa_op->result_def].phi_use_chain == NULL) {
- opline->opcode = ZEND_JMPZ;
- opline->result_type = IS_UNUSED;
- zend_ssa_remove_result_def(ssa, ssa_op);
- goto optimize_jmpz;
- } else if (opline->op1_type == IS_CONST) {
- if (zend_is_true(CT_CONSTANT_EX(op_array, opline->op1.constant))) {
- opline->opcode = ZEND_QM_ASSIGN;
- take_successor_1(ssa, block_num, block);
- }
- }
- break;
- case ZEND_JMPNZ_EX:
- if (ssa->vars[ssa_op->result_def].use_chain < 0
- && ssa->vars[ssa_op->result_def].phi_use_chain == NULL) {
- opline->opcode = ZEND_JMPNZ;
- opline->result_type = IS_UNUSED;
- zend_ssa_remove_result_def(ssa, ssa_op);
- goto optimize_jmpnz;
- } else if (opline->op1_type == IS_CONST) {
- if (!zend_is_true(CT_CONSTANT_EX(op_array, opline->op1.constant))) {
- opline->opcode = ZEND_QM_ASSIGN;
- take_successor_1(ssa, block_num, block);
- }
- }
- break;
- case ZEND_JMP_SET:
- if (ssa->vars[ssa_op->result_def].use_chain < 0
- && ssa->vars[ssa_op->result_def].phi_use_chain == NULL) {
- opline->opcode = ZEND_JMPNZ;
- opline->result_type = IS_UNUSED;
- zend_ssa_remove_result_def(ssa, ssa_op);
- goto optimize_jmpnz;
- } else if (opline->op1_type == IS_CONST) {
- if (!zend_is_true(CT_CONSTANT_EX(op_array, opline->op1.constant))) {
- MAKE_NOP(opline);
- removed_ops++;
- take_successor_1(ssa, block_num, block);
- zend_ssa_remove_result_def(ssa, ssa_op);
- goto optimize_nop;
- }
- }
- break;
- case ZEND_COALESCE:
- {
- zend_ssa_var *var = &ssa->vars[ssa_op->result_def];
- if (opline->op1_type == IS_CONST
- && var->use_chain < 0 && var->phi_use_chain == NULL) {
- if (Z_TYPE_P(CT_CONSTANT_EX(op_array, opline->op1.constant)) == IS_NULL) {
- zend_ssa_remove_result_def(ssa, ssa_op);
- MAKE_NOP(opline);
- removed_ops++;
- take_successor_1(ssa, block_num, block);
- goto optimize_nop;
- } else {
- opline->opcode = ZEND_JMP;
- opline->result_type = IS_UNUSED;
- zend_ssa_remove_result_def(ssa, ssa_op);
- COPY_NODE(opline->op1, opline->op2);
- take_successor_0(ssa, block_num, block);
- goto optimize_jmp;
- }
- }
- break;
- }
- case ZEND_JMP_NULL:
- {
- zend_ssa_var *var = &ssa->vars[ssa_op->result_def];
- if (opline->op1_type == IS_CONST
- && var->use_chain < 0 && var->phi_use_chain == NULL) {
- if (Z_TYPE_P(CT_CONSTANT_EX(op_array, opline->op1.constant)) == IS_NULL) {
- opline->opcode = ZEND_JMP;
- opline->result_type = IS_UNUSED;
- zend_ssa_remove_result_def(ssa, ssa_op);
- COPY_NODE(opline->op1, opline->op2);
- take_successor_0(ssa, block_num, block);
- goto optimize_jmp;
- } else {
- zend_ssa_remove_result_def(ssa, ssa_op);
- MAKE_NOP(opline);
- removed_ops++;
- take_successor_1(ssa, block_num, block);
- goto optimize_nop;
- }
- }
- break;
- }
- case ZEND_SWITCH_LONG:
- case ZEND_SWITCH_STRING:
- case ZEND_MATCH:
- if (opline->op1_type == IS_CONST) {
- zval *zv = CT_CONSTANT_EX(op_array, opline->op1.constant);
- zend_uchar type = Z_TYPE_P(zv);
- bool correct_type =
- (opline->opcode == ZEND_SWITCH_LONG && type == IS_LONG)
- || (opline->opcode == ZEND_SWITCH_STRING && type == IS_STRING)
- || (opline->opcode == ZEND_MATCH && (type == IS_LONG || type == IS_STRING));
- if (!correct_type) {
- removed_ops++;
- MAKE_NOP(opline);
- opline->extended_value = 0;
- take_successor_ex(ssa, block_num, block, block->successors[block->successors_count - 1]);
- goto optimize_nop;
- } else {
- HashTable *jmptable = Z_ARRVAL_P(CT_CONSTANT_EX(op_array, opline->op2.constant));
- zval *jmp_zv = type == IS_LONG
- ? zend_hash_index_find(jmptable, Z_LVAL_P(zv))
- : zend_hash_find(jmptable, Z_STR_P(zv));
- uint32_t target;
- if (jmp_zv) {
- target = ZEND_OFFSET_TO_OPLINE_NUM(op_array, opline, Z_LVAL_P(jmp_zv));
- } else {
- target = ZEND_OFFSET_TO_OPLINE_NUM(op_array, opline, opline->extended_value);
- }
- opline->opcode = ZEND_JMP;
- opline->extended_value = 0;
- SET_UNUSED(opline->op1);
- ZEND_SET_OP_JMP_ADDR(opline, opline->op1, op_array->opcodes + target);
- SET_UNUSED(opline->op2);
- take_successor_ex(ssa, block_num, block, ssa->cfg.map[target]);
- goto optimize_jmp;
- }
- }
- break;
- case ZEND_NOP:
- optimize_nop:
- compress_block(op_array, block);
- if (block->len == 0) {
- if (block_num > 0) {
- zend_ssa_unlink_block(op_array, ssa, block, block_num);
- /* backtrack to previous basic block */
- do {
- block_num--;
- } while (block_num >= 0
- && !(ssa->cfg.blocks[block_num].flags & ZEND_BB_REACHABLE));
- if (block_num >= 0) {
- continue;
- }
- }
- }
- break;
- default:
- break;
- }
- }
- block_num = next_block_num;
- }
- return removed_ops;
- }
- static int zend_dfa_try_to_replace_result(zend_op_array *op_array, zend_ssa *ssa, int def, int cv_var)
- {
- int result_var = ssa->ops[def].result_def;
- int cv = EX_NUM_TO_VAR(ssa->vars[cv_var].var);
- if (result_var >= 0
- && !(ssa->var_info[cv_var].type & MAY_BE_REF)
- && ssa->vars[cv_var].alias == NO_ALIAS
- && ssa->vars[result_var].phi_use_chain == NULL
- && ssa->vars[result_var].sym_use_chain == NULL) {
- int use = ssa->vars[result_var].use_chain;
- if (use >= 0
- && zend_ssa_next_use(ssa->ops, result_var, use) < 0
- && op_array->opcodes[use].opcode != ZEND_FREE
- && op_array->opcodes[use].opcode != ZEND_SEND_VAL
- && op_array->opcodes[use].opcode != ZEND_SEND_VAL_EX
- && op_array->opcodes[use].opcode != ZEND_VERIFY_RETURN_TYPE
- && op_array->opcodes[use].opcode != ZEND_YIELD) {
- if (use > def) {
- int i = use;
- const zend_op *opline = &op_array->opcodes[use];
- while (i > def) {
- if ((opline->op1_type == IS_CV && opline->op1.var == cv)
- || (opline->op2_type == IS_CV && opline->op2.var == cv)
- || (opline->result_type == IS_CV && opline->result.var == cv)) {
- return 0;
- }
- opline--;
- i--;
- }
- /* Update opcodes and reconstruct SSA */
- ssa->vars[result_var].definition = -1;
- ssa->vars[result_var].use_chain = -1;
- ssa->ops[def].result_def = -1;
- op_array->opcodes[def].result_type = IS_UNUSED;
- op_array->opcodes[def].result.var = 0;
- if (ssa->ops[use].op1_use == result_var) {
- ssa->ops[use].op1_use = cv_var;
- ssa->ops[use].op1_use_chain = ssa->vars[cv_var].use_chain;
- ssa->vars[cv_var].use_chain = use;
- op_array->opcodes[use].op1_type = IS_CV;
- op_array->opcodes[use].op1.var = cv;
- } else if (ssa->ops[use].op2_use == result_var) {
- ssa->ops[use].op2_use = cv_var;
- ssa->ops[use].op2_use_chain = ssa->vars[cv_var].use_chain;
- ssa->vars[cv_var].use_chain = use;
- op_array->opcodes[use].op2_type = IS_CV;
- op_array->opcodes[use].op2.var = cv;
- } else if (ssa->ops[use].result_use == result_var) {
- ssa->ops[use].result_use = cv_var;
- ssa->ops[use].res_use_chain = ssa->vars[cv_var].use_chain;
- ssa->vars[cv_var].use_chain = use;
- op_array->opcodes[use].result_type = IS_CV;
- op_array->opcodes[use].result.var = cv;
- }
- return 1;
- }
- }
- }
- return 0;
- }
- void zend_dfa_optimize_op_array(zend_op_array *op_array, zend_optimizer_ctx *ctx, zend_ssa *ssa, zend_call_info **call_map)
- {
- if (ctx->debug_level & ZEND_DUMP_BEFORE_DFA_PASS) {
- zend_dump_op_array(op_array, ZEND_DUMP_SSA, "before dfa pass", ssa);
- }
- if (ssa->var_info) {
- int op_1;
- int v;
- int remove_nops = 0;
- zend_op *opline;
- zend_ssa_op *ssa_op;
- zval tmp;
- #if ZEND_DEBUG_DFA
- ssa_verify_integrity(op_array, ssa, "before dfa");
- #endif
- if (ZEND_OPTIMIZER_PASS_8 & ctx->optimization_level) {
- if (sccp_optimize_op_array(ctx, op_array, ssa, call_map)) {
- remove_nops = 1;
- }
- if (zend_dfa_optimize_jmps(op_array, ssa)) {
- remove_nops = 1;
- }
- #if ZEND_DEBUG_DFA
- ssa_verify_integrity(op_array, ssa, "after sccp");
- #endif
- if (ZEND_FUNC_INFO(op_array)) {
- if (zend_dfa_optimize_calls(op_array, ssa)) {
- remove_nops = 1;
- }
- }
- if (ctx->debug_level & ZEND_DUMP_AFTER_PASS_8) {
- zend_dump_op_array(op_array, ZEND_DUMP_SSA, "after sccp pass", ssa);
- }
- #if ZEND_DEBUG_DFA
- ssa_verify_integrity(op_array, ssa, "after calls");
- #endif
- }
- if (ZEND_OPTIMIZER_PASS_14 & ctx->optimization_level) {
- if (dce_optimize_op_array(op_array, ssa, 0)) {
- remove_nops = 1;
- }
- if (zend_dfa_optimize_jmps(op_array, ssa)) {
- remove_nops = 1;
- }
- if (ctx->debug_level & ZEND_DUMP_AFTER_PASS_14) {
- zend_dump_op_array(op_array, ZEND_DUMP_SSA, "after dce pass", ssa);
- }
- #if ZEND_DEBUG_DFA
- ssa_verify_integrity(op_array, ssa, "after dce");
- #endif
- }
- for (v = op_array->last_var; v < ssa->vars_count; v++) {
- op_1 = ssa->vars[v].definition;
- if (op_1 < 0) {
- continue;
- }
- opline = op_array->opcodes + op_1;
- ssa_op = &ssa->ops[op_1];
- /* Convert LONG constants to DOUBLE */
- if (ssa->var_info[v].use_as_double) {
- if (opline->opcode == ZEND_ASSIGN
- && opline->op2_type == IS_CONST
- && ssa->ops[op_1].op1_def == v
- && !RETURN_VALUE_USED(opline)
- ) {
- // op_1: ASSIGN ? -> #v [use_as_double], long(?) => ASSIGN ? -> #v, double(?)
- zval *zv = CT_CONSTANT_EX(op_array, opline->op2.constant);
- ZEND_ASSERT(Z_TYPE_INFO_P(zv) == IS_LONG);
- ZVAL_DOUBLE(&tmp, zval_get_double(zv));
- opline->op2.constant = zend_optimizer_add_literal(op_array, &tmp);
- } else if (opline->opcode == ZEND_QM_ASSIGN
- && opline->op1_type == IS_CONST
- ) {
- // op_1: QM_ASSIGN #v [use_as_double], long(?) => QM_ASSIGN #v, double(?)
- zval *zv = CT_CONSTANT_EX(op_array, opline->op1.constant);
- ZEND_ASSERT(Z_TYPE_INFO_P(zv) == IS_LONG);
- ZVAL_DOUBLE(&tmp, zval_get_double(zv));
- opline->op1.constant = zend_optimizer_add_literal(op_array, &tmp);
- }
- } else {
- if (opline->opcode == ZEND_ADD
- || opline->opcode == ZEND_SUB
- || opline->opcode == ZEND_MUL
- || opline->opcode == ZEND_IS_EQUAL
- || opline->opcode == ZEND_IS_NOT_EQUAL
- || opline->opcode == ZEND_IS_SMALLER
- || opline->opcode == ZEND_IS_SMALLER_OR_EQUAL
- ) {
- if (opline->op1_type == IS_CONST && opline->op2_type != IS_CONST) {
- zval *zv = CT_CONSTANT_EX(op_array, opline->op1.constant);
- if ((OP2_INFO() & MAY_BE_ANY) == MAY_BE_DOUBLE
- && Z_TYPE_INFO_P(zv) == IS_LONG) {
- // op_1: #v.? = ADD long(?), #?.? [double] => #v.? = ADD double(?), #?.? [double]
- ZVAL_DOUBLE(&tmp, zval_get_double(zv));
- opline->op1.constant = zend_optimizer_add_literal(op_array, &tmp);
- zv = CT_CONSTANT_EX(op_array, opline->op1.constant);
- }
- if (opline->opcode == ZEND_ADD) {
- zv = CT_CONSTANT_EX(op_array, opline->op1.constant);
- if (((OP2_INFO() & (MAY_BE_ANY|MAY_BE_UNDEF)) == MAY_BE_LONG
- && Z_TYPE_INFO_P(zv) == IS_LONG
- && Z_LVAL_P(zv) == 0)
- || ((OP2_INFO() & (MAY_BE_ANY|MAY_BE_UNDEF)) == MAY_BE_DOUBLE
- && Z_TYPE_INFO_P(zv) == IS_DOUBLE
- && Z_DVAL_P(zv) == 0.0)) {
- // op_1: #v.? = ADD 0, #?.? [double,long] => #v.? = QM_ASSIGN #?.?
- opline->opcode = ZEND_QM_ASSIGN;
- opline->op1_type = opline->op2_type;
- opline->op1.var = opline->op2.var;
- opline->op2_type = IS_UNUSED;
- opline->op2.num = 0;
- ssa->ops[op_1].op1_use = ssa->ops[op_1].op2_use;
- ssa->ops[op_1].op1_use_chain = ssa->ops[op_1].op2_use_chain;
- ssa->ops[op_1].op2_use = -1;
- ssa->ops[op_1].op2_use_chain = -1;
- }
- } else if (opline->opcode == ZEND_MUL
- && (OP2_INFO() & ((MAY_BE_ANY|MAY_BE_UNDEF)-(MAY_BE_LONG|MAY_BE_DOUBLE))) == 0) {
- zv = CT_CONSTANT_EX(op_array, opline->op1.constant);
- if ((Z_TYPE_INFO_P(zv) == IS_LONG
- && Z_LVAL_P(zv) == 2)
- || (Z_TYPE_INFO_P(zv) == IS_DOUBLE
- && Z_DVAL_P(zv) == 2.0
- && !(OP2_INFO() & MAY_BE_LONG))) {
- // op_1: #v.? = MUL 2, #x.? [double,long] => #v.? = ADD #x.?, #x.?
- opline->opcode = ZEND_ADD;
- opline->op1_type = opline->op2_type;
- opline->op1.var = opline->op2.var;
- ssa->ops[op_1].op1_use = ssa->ops[op_1].op2_use;
- ssa->ops[op_1].op1_use_chain = ssa->ops[op_1].op2_use_chain;
- }
- }
- } else if (opline->op1_type != IS_CONST && opline->op2_type == IS_CONST) {
- zval *zv = CT_CONSTANT_EX(op_array, opline->op2.constant);
- if ((OP1_INFO() & MAY_BE_ANY) == MAY_BE_DOUBLE
- && Z_TYPE_INFO_P(CT_CONSTANT_EX(op_array, opline->op2.constant)) == IS_LONG) {
- // op_1: #v.? = ADD #?.? [double], long(?) => #v.? = ADD #?.? [double], double(?)
- ZVAL_DOUBLE(&tmp, zval_get_double(zv));
- opline->op2.constant = zend_optimizer_add_literal(op_array, &tmp);
- zv = CT_CONSTANT_EX(op_array, opline->op2.constant);
- }
- if (opline->opcode == ZEND_ADD || opline->opcode == ZEND_SUB) {
- if (((OP1_INFO() & (MAY_BE_ANY|MAY_BE_UNDEF)) == MAY_BE_LONG
- && Z_TYPE_INFO_P(zv) == IS_LONG
- && Z_LVAL_P(zv) == 0)
- || ((OP1_INFO() & (MAY_BE_ANY|MAY_BE_UNDEF)) == MAY_BE_DOUBLE
- && Z_TYPE_INFO_P(zv) == IS_DOUBLE
- && Z_DVAL_P(zv) == 0.0)) {
- // op_1: #v.? = ADD #?.? [double,long], 0 => #v.? = QM_ASSIGN #?.?
- opline->opcode = ZEND_QM_ASSIGN;
- opline->op2_type = IS_UNUSED;
- opline->op2.num = 0;
- }
- } else if (opline->opcode == ZEND_MUL
- && (OP1_INFO() & ((MAY_BE_ANY|MAY_BE_UNDEF)-(MAY_BE_LONG|MAY_BE_DOUBLE))) == 0) {
- zv = CT_CONSTANT_EX(op_array, opline->op2.constant);
- if ((Z_TYPE_INFO_P(zv) == IS_LONG
- && Z_LVAL_P(zv) == 2)
- || (Z_TYPE_INFO_P(zv) == IS_DOUBLE
- && Z_DVAL_P(zv) == 2.0
- && !(OP1_INFO() & MAY_BE_LONG))) {
- // op_1: #v.? = MUL #x.? [double,long], 2 => #v.? = ADD #x.?, #x.?
- opline->opcode = ZEND_ADD;
- opline->op2_type = opline->op1_type;
- opline->op2.var = opline->op1.var;
- ssa->ops[op_1].op2_use = ssa->ops[op_1].op1_use;
- ssa->ops[op_1].op2_use_chain = ssa->ops[op_1].op1_use_chain;
- }
- }
- }
- } else if (opline->opcode == ZEND_CONCAT) {
- if (!(OP1_INFO() & MAY_BE_OBJECT)
- && !(OP2_INFO() & MAY_BE_OBJECT)) {
- opline->opcode = ZEND_FAST_CONCAT;
- }
- } else if (opline->opcode == ZEND_VERIFY_RETURN_TYPE
- && opline->op1_type != IS_CONST
- && ssa->ops[op_1].op1_def == v
- && ssa->ops[op_1].op1_use >= 0
- && ssa->ops[op_1].op1_use_chain == -1
- && can_elide_return_type_check(ctx->script, op_array, ssa, &ssa->ops[op_1])) {
- // op_1: VERIFY_RETURN_TYPE #orig_var.? [T] -> #v.? [T] => NOP
- int orig_var = ssa->ops[op_1].op1_use;
- if (zend_ssa_unlink_use_chain(ssa, op_1, orig_var)) {
- int ret = ssa->vars[v].use_chain;
- if (ret >= 0) {
- ssa->ops[ret].op1_use = orig_var;
- ssa->ops[ret].op1_use_chain = ssa->vars[orig_var].use_chain;
- ssa->vars[orig_var].use_chain = ret;
- }
- ssa->vars[v].definition = -1;
- ssa->vars[v].use_chain = -1;
- ssa->ops[op_1].op1_def = -1;
- ssa->ops[op_1].op1_use = -1;
- MAKE_NOP(opline);
- remove_nops = 1;
- }
- }
- }
- if (opline->opcode == ZEND_QM_ASSIGN
- && ssa->ops[op_1].result_def == v
- && opline->op1_type & (IS_TMP_VAR|IS_VAR)
- && !(ssa->var_info[v].type & (MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))
- ) {
- int src_var = ssa->ops[op_1].op1_use;
- if (src_var >= 0
- && !(ssa->var_info[src_var].type & MAY_BE_REF)
- && (ssa->var_info[src_var].type & (MAY_BE_UNDEF|MAY_BE_ANY))
- && ssa->vars[src_var].definition >= 0
- && ssa->ops[ssa->vars[src_var].definition].result_def == src_var
- && ssa->ops[ssa->vars[src_var].definition].result_use < 0
- && ssa->vars[src_var].use_chain == op_1
- && ssa->ops[op_1].op1_use_chain < 0
- && !ssa->vars[src_var].phi_use_chain
- && !ssa->vars[src_var].sym_use_chain
- && opline_supports_assign_contraction(
- op_array, ssa, &op_array->opcodes[ssa->vars[src_var].definition],
- src_var, opline->result.var)
- && !variable_defined_or_used_in_range(ssa, EX_VAR_TO_NUM(opline->result.var),
- ssa->vars[src_var].definition+1, op_1)
- ) {
- int orig_var = ssa->ops[op_1].result_use;
- int op_2 = ssa->vars[src_var].definition;
- // op_2: #src_var.T = OP ... => #v.CV = OP ...
- // op_1: QM_ASSIGN #src_var.T #orig_var.CV [undef,scalar] -> #v.CV, NOP
- if (orig_var < 0 || zend_ssa_unlink_use_chain(ssa, op_1, orig_var)) {
- /* Reconstruct SSA */
- ssa->vars[v].definition = op_2;
- ssa->ops[op_2].result_def = v;
- ssa->vars[src_var].definition = -1;
- ssa->vars[src_var].use_chain = -1;
- ssa->ops[op_1].op1_use = -1;
- ssa->ops[op_1].op1_def = -1;
- ssa->ops[op_1].op1_use_chain = -1;
- ssa->ops[op_1].result_use = -1;
- ssa->ops[op_1].result_def = -1;
- ssa->ops[op_1].res_use_chain = -1;
- /* Update opcodes */
- op_array->opcodes[op_2].result_type = opline->result_type;
- op_array->opcodes[op_2].result.var = opline->result.var;
- MAKE_NOP(opline);
- remove_nops = 1;
- if (op_array->opcodes[op_2].opcode == ZEND_SUB
- && op_array->opcodes[op_2].op1_type == op_array->opcodes[op_2].result_type
- && op_array->opcodes[op_2].op1.var == op_array->opcodes[op_2].result.var
- && op_array->opcodes[op_2].op2_type == IS_CONST
- && Z_TYPE_P(CT_CONSTANT_EX(op_array, op_array->opcodes[op_2].op2.constant)) == IS_LONG
- && Z_LVAL_P(CT_CONSTANT_EX(op_array, op_array->opcodes[op_2].op2.constant)) == 1
- && ssa->ops[op_2].op1_use >= 0
- && !(ssa->var_info[ssa->ops[op_2].op1_use].type & (MAY_BE_FALSE|MAY_BE_TRUE|MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))) {
- op_array->opcodes[op_2].opcode = ZEND_PRE_DEC;
- SET_UNUSED(op_array->opcodes[op_2].op2);
- SET_UNUSED(op_array->opcodes[op_2].result);
- ssa->ops[op_2].result_def = -1;
- ssa->ops[op_2].op1_def = v;
- } else if (op_array->opcodes[op_2].opcode == ZEND_ADD
- && op_array->opcodes[op_2].op1_type == op_array->opcodes[op_2].result_type
- && op_array->opcodes[op_2].op1.var == op_array->opcodes[op_2].result.var
- && op_array->opcodes[op_2].op2_type == IS_CONST
- && Z_TYPE_P(CT_CONSTANT_EX(op_array, op_array->opcodes[op_2].op2.constant)) == IS_LONG
- && Z_LVAL_P(CT_CONSTANT_EX(op_array, op_array->opcodes[op_2].op2.constant)) == 1
- && ssa->ops[op_2].op1_use >= 0
- && !(ssa->var_info[ssa->ops[op_2].op1_use].type & (MAY_BE_FALSE|MAY_BE_TRUE|MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))) {
- op_array->opcodes[op_2].opcode = ZEND_PRE_INC;
- SET_UNUSED(op_array->opcodes[op_2].op2);
- SET_UNUSED(op_array->opcodes[op_2].result);
- ssa->ops[op_2].result_def = -1;
- ssa->ops[op_2].op1_def = v;
- } else if (op_array->opcodes[op_2].opcode == ZEND_ADD
- && op_array->opcodes[op_2].op2_type == op_array->opcodes[op_2].result_type
- && op_array->opcodes[op_2].op2.var == op_array->opcodes[op_2].result.var
- && op_array->opcodes[op_2].op1_type == IS_CONST
- && Z_TYPE_P(CT_CONSTANT_EX(op_array, op_array->opcodes[op_2].op1.constant)) == IS_LONG
- && Z_LVAL_P(CT_CONSTANT_EX(op_array, op_array->opcodes[op_2].op1.constant)) == 1
- && ssa->ops[op_2].op2_use >= 0
- && !(ssa->var_info[ssa->ops[op_2].op2_use].type & (MAY_BE_FALSE|MAY_BE_TRUE|MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))) {
- op_array->opcodes[op_2].opcode = ZEND_PRE_INC;
- op_array->opcodes[op_2].op1_type = op_array->opcodes[op_2].op2_type;
- op_array->opcodes[op_2].op1.var = op_array->opcodes[op_2].op2.var;
- SET_UNUSED(op_array->opcodes[op_2].op2);
- SET_UNUSED(op_array->opcodes[op_2].result);
- ssa->ops[op_2].result_def = -1;
- ssa->ops[op_2].op1_def = v;
- ssa->ops[op_2].op1_use = ssa->ops[op_2].op2_use;
- ssa->ops[op_2].op1_use_chain = ssa->ops[op_2].op2_use_chain;
- ssa->ops[op_2].op2_use = -1;
- ssa->ops[op_2].op2_use_chain = -1;
- }
- }
- }
- }
- if (ssa->vars[v].var >= op_array->last_var) {
- /* skip TMP and VAR */
- continue;
- }
- if (ssa->ops[op_1].op1_def == v
- && RETURN_VALUE_USED(opline)) {
- if (opline->opcode == ZEND_ASSIGN
- || opline->opcode == ZEND_ASSIGN_OP
- || opline->opcode == ZEND_PRE_INC
- || opline->opcode == ZEND_PRE_DEC) {
- zend_dfa_try_to_replace_result(op_array, ssa, op_1, v);
- } else if (opline->opcode == ZEND_POST_INC) {
- int result_var = ssa->ops[op_1].result_def;
- if (result_var >= 0
- && (ssa->var_info[result_var].type & ((MAY_BE_ANY|MAY_BE_REF|MAY_BE_UNDEF) - (MAY_BE_LONG|MAY_BE_DOUBLE))) == 0) {
- int use = ssa->vars[result_var].use_chain;
- if (use >= 0 && op_array->opcodes[use].opcode == ZEND_IS_SMALLER
- && ssa->ops[use].op1_use == result_var
- && zend_dfa_try_to_replace_result(op_array, ssa, op_1, v)) {
- opline->opcode = ZEND_PRE_INC;
- op_array->opcodes[use].opcode = ZEND_IS_SMALLER_OR_EQUAL;
- }
- }
- } else if (opline->opcode == ZEND_POST_DEC) {
- int result_var = ssa->ops[op_1].result_def;
- if (result_var >= 0
- && (ssa->var_info[result_var].type & ((MAY_BE_ANY|MAY_BE_REF|MAY_BE_UNDEF) - (MAY_BE_LONG|MAY_BE_DOUBLE))) == 0) {
- int use = ssa->vars[result_var].use_chain;
- if (use >= 0 && op_array->opcodes[use].opcode == ZEND_IS_SMALLER
- && ssa->ops[use].op2_use == result_var
- && zend_dfa_try_to_replace_result(op_array, ssa, op_1, v)) {
- opline->opcode = ZEND_PRE_DEC;
- op_array->opcodes[use].opcode = ZEND_IS_SMALLER_OR_EQUAL;
- }
- }
- }
- }
- if (opline->opcode == ZEND_ASSIGN
- && ssa->ops[op_1].op1_def == v
- && !RETURN_VALUE_USED(opline)
- ) {
- int orig_var = ssa->ops[op_1].op1_use;
- if (orig_var >= 0
- && !(ssa->var_info[orig_var].type & (MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))
- ) {
- int src_var = ssa->ops[op_1].op2_use;
- if ((opline->op2_type & (IS_TMP_VAR|IS_VAR))
- && src_var >= 0
- && !(ssa->var_info[src_var].type & MAY_BE_REF)
- && (ssa->var_info[src_var].type & (MAY_BE_UNDEF|MAY_BE_ANY))
- && ssa->vars[src_var].definition >= 0
- && ssa->ops[ssa->vars[src_var].definition].result_def == src_var
- && ssa->ops[ssa->vars[src_var].definition].result_use < 0
- && ssa->vars[src_var].use_chain == op_1
- && ssa->ops[op_1].op2_use_chain < 0
- && !ssa->vars[src_var].phi_use_chain
- && !ssa->vars[src_var].sym_use_chain
- && opline_supports_assign_contraction(
- op_array, ssa, &op_array->opcodes[ssa->vars[src_var].definition],
- src_var, opline->op1.var)
- && !variable_defined_or_used_in_range(ssa, EX_VAR_TO_NUM(opline->op1.var),
- ssa->vars[src_var].definition+1, op_1)
- ) {
- int op_2 = ssa->vars[src_var].definition;
- // op_2: #src_var.T = OP ... => #v.CV = OP ...
- // op_1: ASSIGN #orig_var.CV [undef,scalar] -> #v.CV, #src_var.T NOP
- if (zend_ssa_unlink_use_chain(ssa, op_1, orig_var)) {
- /* Reconstruct SSA */
- ssa->vars[v].definition = op_2;
- ssa->ops[op_2].result_def = v;
- ssa->vars[src_var].definition = -1;
- ssa->vars[src_var].use_chain = -1;
- ssa->ops[op_1].op1_use = -1;
- ssa->ops[op_1].op2_use = -1;
- ssa->ops[op_1].op1_def = -1;
- ssa->ops[op_1].op1_use_chain = -1;
- /* Update opcodes */
- op_array->opcodes[op_2].result_type = opline->op1_type;
- op_array->opcodes[op_2].result.var = opline->op1.var;
- MAKE_NOP(opline);
- remove_nops = 1;
- if (op_array->opcodes[op_2].opcode == ZEND_SUB
- && op_array->opcodes[op_2].op1_type == op_array->opcodes[op_2].result_type
- && op_array->opcodes[op_2].op1.var == op_array->opcodes[op_2].result.var
- && op_array->opcodes[op_2].op2_type == IS_CONST
- && Z_TYPE_P(CT_CONSTANT_EX(op_array, op_array->opcodes[op_2].op2.constant)) == IS_LONG
- && Z_LVAL_P(CT_CONSTANT_EX(op_array, op_array->opcodes[op_2].op2.constant)) == 1
- && ssa->ops[op_2].op1_use >= 0
- && !(ssa->var_info[ssa->ops[op_2].op1_use].type & (MAY_BE_FALSE|MAY_BE_TRUE|MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))) {
- op_array->opcodes[op_2].opcode = ZEND_PRE_DEC;
- SET_UNUSED(op_array->opcodes[op_2].op2);
- SET_UNUSED(op_array->opcodes[op_2].result);
- ssa->ops[op_2].result_def = -1;
- ssa->ops[op_2].op1_def = v;
- } else if (op_array->opcodes[op_2].opcode == ZEND_ADD
- && op_array->opcodes[op_2].op1_type == op_array->opcodes[op_2].result_type
- && op_array->opcodes[op_2].op1.var == op_array->opcodes[op_2].result.var
- && op_array->opcodes[op_2].op2_type == IS_CONST
- && Z_TYPE_P(CT_CONSTANT_EX(op_array, op_array->opcodes[op_2].op2.constant)) == IS_LONG
- && Z_LVAL_P(CT_CONSTANT_EX(op_array, op_array->opcodes[op_2].op2.constant)) == 1
- && ssa->ops[op_2].op1_use >= 0
- && !(ssa->var_info[ssa->ops[op_2].op1_use].type & (MAY_BE_FALSE|MAY_BE_TRUE|MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))) {
- op_array->opcodes[op_2].opcode = ZEND_PRE_INC;
- SET_UNUSED(op_array->opcodes[op_2].op2);
- SET_UNUSED(op_array->opcodes[op_2].result);
- ssa->ops[op_2].result_def = -1;
- ssa->ops[op_2].op1_def = v;
- } else if (op_array->opcodes[op_2].opcode == ZEND_ADD
- && op_array->opcodes[op_2].op2_type == op_array->opcodes[op_2].result_type
- && op_array->opcodes[op_2].op2.var == op_array->opcodes[op_2].result.var
- && op_array->opcodes[op_2].op1_type == IS_CONST
- && Z_TYPE_P(CT_CONSTANT_EX(op_array, op_array->opcodes[op_2].op1.constant)) == IS_LONG
- && Z_LVAL_P(CT_CONSTANT_EX(op_array, op_array->opcodes[op_2].op1.constant)) == 1
- && ssa->ops[op_2].op2_use >= 0
- && !(ssa->var_info[ssa->ops[op_2].op2_use].type & (MAY_BE_FALSE|MAY_BE_TRUE|MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))) {
- op_array->opcodes[op_2].opcode = ZEND_PRE_INC;
- op_array->opcodes[op_2].op1_type = op_array->opcodes[op_2].op2_type;
- op_array->opcodes[op_2].op1.var = op_array->opcodes[op_2].op2.var;
- SET_UNUSED(op_array->opcodes[op_2].op2);
- SET_UNUSED(op_array->opcodes[op_2].result);
- ssa->ops[op_2].result_def = -1;
- ssa->ops[op_2].op1_def = v;
- ssa->ops[op_2].op1_use = ssa->ops[op_2].op2_use;
- ssa->ops[op_2].op1_use_chain = ssa->ops[op_2].op2_use_chain;
- ssa->ops[op_2].op2_use = -1;
- ssa->ops[op_2].op2_use_chain = -1;
- }
- }
- } else if (opline->op2_type == IS_CONST
- || ((opline->op2_type & (IS_TMP_VAR|IS_VAR|IS_CV))
- && ssa->ops[op_1].op2_use >= 0
- && ssa->ops[op_1].op2_def < 0)
- ) {
- // op_1: ASSIGN #orig_var.CV [undef,scalar] -> #v.CV, CONST|TMPVAR => QM_ASSIGN v.CV, CONST|TMPVAR
- if (ssa->ops[op_1].op1_use != ssa->ops[op_1].op2_use) {
- zend_ssa_unlink_use_chain(ssa, op_1, orig_var);
- } else {
- ssa->ops[op_1].op2_use_chain = ssa->ops[op_1].op1_use_chain;
- }
- /* Reconstruct SSA */
- ssa->ops[op_1].result_def = v;
- ssa->ops[op_1].op1_def = -1;
- ssa->ops[op_1].op1_use = ssa->ops[op_1].op2_use;
- ssa->ops[op_1].op1_use_chain = ssa->ops[op_1].op2_use_chain;
- ssa->ops[op_1].op2_use = -1;
- ssa->ops[op_1].op2_use_chain = -1;
- /* Update opcode */
- opline->result_type = opline->op1_type;
- opline->result.var = opline->op1.var;
- opline->op1_type = opline->op2_type;
- opline->op1.var = opline->op2.var;
- opline->op2_type = IS_UNUSED;
- opline->op2.var = 0;
- opline->opcode = ZEND_QM_ASSIGN;
- }
- }
- } else if (opline->opcode == ZEND_ASSIGN_OP
- && opline->extended_value == ZEND_ADD
- && ssa->ops[op_1].op1_def == v
- && opline->op2_type == IS_CONST
- && Z_TYPE_P(CT_CONSTANT_EX(op_array, opline->op2.constant)) == IS_LONG
- && Z_LVAL_P(CT_CONSTANT_EX(op_array, opline->op2.constant)) == 1
- && ssa->ops[op_1].op1_use >= 0
- && !(ssa->var_info[ssa->ops[op_1].op1_use].type & (MAY_BE_FALSE|MAY_BE_TRUE|MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))) {
- // op_1: ASSIGN_ADD #?.CV [undef,null,int,foat] ->#v.CV, int(1) => PRE_INC #?.CV ->#v.CV
- opline->opcode = ZEND_PRE_INC;
- opline->extended_value = 0;
- SET_UNUSED(opline->op2);
- } else if (opline->opcode == ZEND_ASSIGN_OP
- && opline->extended_value == ZEND_SUB
- && ssa->ops[op_1].op1_def == v
- && opline->op2_type == IS_CONST
- && Z_TYPE_P(CT_CONSTANT_EX(op_array, opline->op2.constant)) == IS_LONG
- && Z_LVAL_P(CT_CONSTANT_EX(op_array, opline->op2.constant)) == 1
- && ssa->ops[op_1].op1_use >= 0
- && !(ssa->var_info[ssa->ops[op_1].op1_use].type & (MAY_BE_FALSE|MAY_BE_TRUE|MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))) {
- // op_1: ASSIGN_SUB #?.CV [undef,null,int,foat] -> #v.CV, int(1) => PRE_DEC #?.CV ->#v.CV
- opline->opcode = ZEND_PRE_DEC;
- opline->extended_value = 0;
- SET_UNUSED(opline->op2);
- } else if (ssa->ops[op_1].op1_def == v
- && !RETURN_VALUE_USED(opline)
- && ssa->ops[op_1].op1_use >= 0
- && !(ssa->var_info[ssa->ops[op_1].op1_use].type & (MAY_BE_STRING|MAY_BE_ARRAY|MAY_BE_OBJECT|MAY_BE_RESOURCE|MAY_BE_REF))
- && opline->opcode == ZEND_ASSIGN_OP
- && opline->extended_value != ZEND_CONCAT) {
- // op_1: ASSIGN_OP #orig_var.CV [undef,null,bool,int,double] -> #v.CV, ? => #v.CV = ADD #orig_var.CV, ?
- /* Reconstruct SSA */
- ssa->ops[op_1].result_def = ssa->ops[op_1].op1_def;
- ssa->ops[op_1].op1_def = -1;
- /* Update opcode */
- opline->opcode = opline->extended_value;
- opline->extended_value = 0;
- opline->result_type = opline->op1_type;
- opline->result.var = opline->op1.var;
- }
- }
- #if ZEND_DEBUG_DFA
- ssa_verify_integrity(op_array, ssa, "after dfa");
- #endif
- if (remove_nops) {
- zend_ssa_remove_nops(op_array, ssa, ctx);
- #if ZEND_DEBUG_DFA
- ssa_verify_integrity(op_array, ssa, "after nop");
- #endif
- }
- }
- if (ctx->debug_level & ZEND_DUMP_AFTER_DFA_PASS) {
- zend_dump_op_array(op_array, ZEND_DUMP_SSA, "after dfa pass", ssa);
- }
- }
- void zend_optimize_dfa(zend_op_array *op_array, zend_optimizer_ctx *ctx)
- {
- void *checkpoint = zend_arena_checkpoint(ctx->arena);
- zend_ssa ssa;
- if (zend_dfa_analyze_op_array(op_array, ctx, &ssa) != SUCCESS) {
- zend_arena_release(&ctx->arena, checkpoint);
- return;
- }
- zend_dfa_optimize_op_array(op_array, ctx, &ssa, NULL);
- /* Destroy SSA */
- zend_arena_release(&ctx->arena, checkpoint);
- }
|