/src/php-src/Zend/zend_execute.c
Line | Count | Source |
1 | | /* |
2 | | +----------------------------------------------------------------------+ |
3 | | | Zend Engine | |
4 | | +----------------------------------------------------------------------+ |
5 | | | Copyright (c) Zend Technologies Ltd. (http://www.zend.com) | |
6 | | +----------------------------------------------------------------------+ |
7 | | | This source file is subject to version 2.00 of the Zend license, | |
8 | | | that is bundled with this package in the file LICENSE, and is | |
9 | | | available through the world-wide-web at the following url: | |
10 | | | http://www.zend.com/license/2_00.txt. | |
11 | | | If you did not receive a copy of the Zend license and are unable to | |
12 | | | obtain it through the world-wide-web, please send a note to | |
13 | | | license@zend.com so we can mail you a copy immediately. | |
14 | | +----------------------------------------------------------------------+ |
15 | | | Authors: Andi Gutmans <andi@php.net> | |
16 | | | Zeev Suraski <zeev@php.net> | |
17 | | | Dmitry Stogov <dmitry@php.net> | |
18 | | +----------------------------------------------------------------------+ |
19 | | */ |
20 | | |
21 | | #define ZEND_INTENSIVE_DEBUGGING 0 |
22 | | |
23 | | #include <stdio.h> |
24 | | #include <signal.h> |
25 | | |
26 | | #include "zend.h" |
27 | | #include "zend_compile.h" |
28 | | #include "zend_execute.h" |
29 | | #include "zend_API.h" |
30 | | #include "zend_ptr_stack.h" |
31 | | #include "zend_constants.h" |
32 | | #include "zend_extensions.h" |
33 | | #include "zend_ini.h" |
34 | | #include "zend_exceptions.h" |
35 | | #include "zend_interfaces.h" |
36 | | #include "zend_closures.h" |
37 | | #include "zend_generators.h" |
38 | | #include "zend_vm.h" |
39 | | #include "zend_dtrace.h" |
40 | | #include "zend_inheritance.h" |
41 | | #include "zend_type_info.h" |
42 | | #include "zend_smart_str.h" |
43 | | #include "zend_observer.h" |
44 | | #include "zend_system_id.h" |
45 | | #include "zend_call_stack.h" |
46 | | #include "zend_attributes.h" |
47 | | #include "Optimizer/zend_func_info.h" |
48 | | |
49 | | /* Virtual current working directory support */ |
50 | | #include "zend_virtual_cwd.h" |
51 | | |
52 | | #ifdef HAVE_GCC_GLOBAL_REGS |
53 | | # if defined(__GNUC__) && ZEND_GCC_VERSION >= 4008 && defined(i386) |
54 | | # define ZEND_VM_FP_GLOBAL_REG "%esi" |
55 | | # define ZEND_VM_IP_GLOBAL_REG "%edi" |
56 | | # elif defined(__GNUC__) && ZEND_GCC_VERSION >= 4008 && defined(__x86_64__) |
57 | | # define ZEND_VM_FP_GLOBAL_REG "%r14" |
58 | | # define ZEND_VM_IP_GLOBAL_REG "%r15" |
59 | | # elif defined(__GNUC__) && ZEND_GCC_VERSION >= 4008 && defined(__powerpc64__) |
60 | | # define ZEND_VM_FP_GLOBAL_REG "r14" |
61 | | # define ZEND_VM_IP_GLOBAL_REG "r15" |
62 | | # elif defined(__IBMC__) && ZEND_GCC_VERSION >= 4002 && defined(__powerpc64__) |
63 | | # define ZEND_VM_FP_GLOBAL_REG "r14" |
64 | | # define ZEND_VM_IP_GLOBAL_REG "r15" |
65 | | # elif defined(__GNUC__) && ZEND_GCC_VERSION >= 4008 && defined(__aarch64__) |
66 | | # define ZEND_VM_FP_GLOBAL_REG "x27" |
67 | | # define ZEND_VM_IP_GLOBAL_REG "x28" |
68 | | #elif defined(__GNUC__) && ZEND_GCC_VERSION >= 4008 && defined(__riscv) && __riscv_xlen == 64 |
69 | | # define ZEND_VM_FP_GLOBAL_REG "x18" |
70 | | # define ZEND_VM_IP_GLOBAL_REG "x19" |
71 | | # endif |
72 | | #endif |
73 | | |
74 | | #if defined(ZEND_VM_FP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
75 | | # pragma GCC diagnostic ignored "-Wvolatile-register-var" |
76 | | register zend_execute_data* volatile execute_data __asm__(ZEND_VM_FP_GLOBAL_REG); |
77 | | # pragma GCC diagnostic warning "-Wvolatile-register-var" |
78 | | #endif |
79 | | |
80 | | #if defined(ZEND_VM_FP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
81 | | # define EXECUTE_DATA_D void |
82 | | # define EXECUTE_DATA_C |
83 | | # define EXECUTE_DATA_DC |
84 | | # define EXECUTE_DATA_CC |
85 | | # define NO_EXECUTE_DATA_CC |
86 | | #else |
87 | | # define EXECUTE_DATA_D zend_execute_data* execute_data |
88 | 0 | # define EXECUTE_DATA_C execute_data |
89 | | # define EXECUTE_DATA_DC , EXECUTE_DATA_D |
90 | 0 | # define EXECUTE_DATA_CC , EXECUTE_DATA_C |
91 | 0 | # define NO_EXECUTE_DATA_CC , NULL |
92 | | #endif |
93 | | |
94 | | #if defined(ZEND_VM_FP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
95 | | # define OPLINE_D void |
96 | | # define OPLINE_C |
97 | | # define OPLINE_DC |
98 | | # define OPLINE_CC |
99 | | #else |
100 | | # define OPLINE_D const zend_op* opline |
101 | 0 | # define OPLINE_C opline |
102 | | # define OPLINE_DC , OPLINE_D |
103 | 0 | # define OPLINE_CC , OPLINE_C |
104 | | #endif |
105 | | |
106 | | #if defined(ZEND_VM_IP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
107 | | # pragma GCC diagnostic ignored "-Wvolatile-register-var" |
108 | | register const zend_op* volatile opline __asm__(ZEND_VM_IP_GLOBAL_REG); |
109 | | # pragma GCC diagnostic warning "-Wvolatile-register-var" |
110 | | #else |
111 | | #endif |
112 | | |
113 | 8 | #define _CONST_CODE 0 |
114 | 8 | #define _TMP_CODE 1 |
115 | 8 | #define _VAR_CODE 2 |
116 | 40 | #define _UNUSED_CODE 3 |
117 | 8 | #define _CV_CODE 4 |
118 | | |
119 | | typedef int (ZEND_FASTCALL *incdec_t)(zval *); |
120 | | |
121 | 0 | #define get_zval_ptr(op_type, node, type) _get_zval_ptr(op_type, node, type EXECUTE_DATA_CC OPLINE_CC) |
122 | 0 | #define get_zval_ptr_deref(op_type, node, type) _get_zval_ptr_deref(op_type, node, type EXECUTE_DATA_CC OPLINE_CC) |
123 | 0 | #define get_zval_ptr_undef(op_type, node, type) _get_zval_ptr_undef(op_type, node, type EXECUTE_DATA_CC OPLINE_CC) |
124 | 0 | #define get_op_data_zval_ptr_r(op_type, node) _get_op_data_zval_ptr_r(op_type, node EXECUTE_DATA_CC OPLINE_CC) |
125 | 0 | #define get_op_data_zval_ptr_deref_r(op_type, node) _get_op_data_zval_ptr_deref_r(op_type, node EXECUTE_DATA_CC OPLINE_CC) |
126 | 0 | #define get_zval_ptr_ptr(op_type, node, type) _get_zval_ptr_ptr(op_type, node, type EXECUTE_DATA_CC) |
127 | | #define get_zval_ptr_ptr_undef(op_type, node, type) _get_zval_ptr_ptr(op_type, node, type EXECUTE_DATA_CC) |
128 | | #define get_obj_zval_ptr(op_type, node, type) _get_obj_zval_ptr(op_type, node, type EXECUTE_DATA_CC OPLINE_CC) |
129 | | #define get_obj_zval_ptr_deref(op_type, node, type) _get_obj_zval_ptr_deref(op_type, node, type EXECUTE_DATA_CC OPLINE_CC) |
130 | | #define get_obj_zval_ptr_undef(op_type, node, type) _get_obj_zval_ptr_undef(op_type, node, type EXECUTE_DATA_CC OPLINE_CC) |
131 | | #define get_obj_zval_ptr_ptr(op_type, node, type) _get_obj_zval_ptr_ptr(op_type, node, type EXECUTE_DATA_CC) |
132 | | |
133 | 0 | #define RETURN_VALUE_USED(opline) ((opline)->result_type != IS_UNUSED) |
134 | | |
135 | | static ZEND_FUNCTION(pass) |
136 | 0 | { |
137 | 0 | } |
138 | | |
139 | | ZEND_BEGIN_ARG_INFO_EX(zend_pass_function_arg_info, 0, 0, 0) |
140 | | ZEND_END_ARG_INFO() |
141 | | |
142 | | ZEND_API const zend_internal_function zend_pass_function = { |
143 | | ZEND_INTERNAL_FUNCTION, /* type */ |
144 | | {0, 0, 0}, /* arg_flags */ |
145 | | 0, /* fn_flags */ |
146 | | NULL, /* name */ |
147 | | NULL, /* scope */ |
148 | | NULL, /* prototype */ |
149 | | 0, /* num_args */ |
150 | | 0, /* required_num_args */ |
151 | | (zend_internal_arg_info *) zend_pass_function_arg_info + 1, /* arg_info */ |
152 | | NULL, /* attributes */ |
153 | | NULL, /* run_time_cache */ |
154 | | NULL, /* doc_comment */ |
155 | | 0, /* T */ |
156 | | 0, /* fn_flags2 */ |
157 | | NULL, /* prop_info */ |
158 | | ZEND_FN(pass), /* handler */ |
159 | | NULL, /* module */ |
160 | | NULL, /* frameless_function_infos */ |
161 | | {NULL,NULL,NULL,NULL} /* reserved */ |
162 | | }; |
163 | | |
164 | 0 | #define FREE_VAR_PTR_AND_EXTRACT_RESULT_IF_NECESSARY(free_var) do { \ |
165 | 0 | zval *__container_to_free = EX_VAR(free_var); \ |
166 | 0 | if (UNEXPECTED(Z_REFCOUNTED_P(__container_to_free))) { \ |
167 | 0 | zend_refcounted *__ref = Z_COUNTED_P(__container_to_free); \ |
168 | 0 | if (UNEXPECTED(!GC_DELREF(__ref))) { \ |
169 | 0 | zval *__zv = EX_VAR(opline->result.var); \ |
170 | 0 | if (EXPECTED(Z_TYPE_P(__zv) == IS_INDIRECT)) { \ |
171 | 0 | ZVAL_COPY(__zv, Z_INDIRECT_P(__zv)); \ |
172 | 0 | } \ |
173 | 0 | rc_dtor_func(__ref); \ |
174 | 0 | } \ |
175 | 0 | } \ |
176 | 0 | } while (0) |
177 | | |
178 | | #define FREE_OP(type, var) \ |
179 | 0 | if ((type) & (IS_TMP_VAR|IS_VAR)) { \ |
180 | 0 | zval_ptr_dtor_nogc(EX_VAR(var)); \ |
181 | 0 | } |
182 | | |
183 | 0 | #define CV_DEF_OF(i) (EX(func)->op_array.vars[i]) |
184 | | |
185 | 12.2k | #define ZEND_VM_STACK_PAGE_SLOTS (16 * 1024) /* should be a power of 2 */ |
186 | | |
187 | 12.2k | #define ZEND_VM_STACK_PAGE_SIZE (ZEND_VM_STACK_PAGE_SLOTS * sizeof(zval)) |
188 | | |
189 | | #define ZEND_VM_STACK_PAGE_ALIGNED_SIZE(size, page_size) \ |
190 | 0 | (((size) + ZEND_VM_STACK_HEADER_SLOTS * sizeof(zval) \ |
191 | 0 | + ((page_size) - 1)) & ~((page_size) - 1)) |
192 | | |
193 | | ZEND_API void zend_vm_stack_init(void) |
194 | 6.10k | { |
195 | 6.10k | EG(vm_stack_page_size) = ZEND_VM_STACK_PAGE_SIZE; |
196 | 6.10k | EG(vm_stack) = zend_vm_stack_new_page(ZEND_VM_STACK_PAGE_SIZE, NULL); |
197 | 6.10k | EG(vm_stack_top) = EG(vm_stack)->top; |
198 | 6.10k | EG(vm_stack_end) = EG(vm_stack)->end; |
199 | 6.10k | } |
200 | | |
201 | | ZEND_API void zend_vm_stack_init_ex(size_t page_size) |
202 | 0 | { |
203 | | /* page_size must be a power of 2 */ |
204 | 0 | ZEND_ASSERT(page_size > 0 && (page_size & (page_size - 1)) == 0); |
205 | 0 | EG(vm_stack_page_size) = page_size; |
206 | 0 | EG(vm_stack) = zend_vm_stack_new_page(page_size, NULL); |
207 | 0 | EG(vm_stack_top) = EG(vm_stack)->top; |
208 | 0 | EG(vm_stack_end) = EG(vm_stack)->end; |
209 | 0 | } |
210 | | |
211 | | ZEND_API void zend_vm_stack_destroy(void) |
212 | 6.10k | { |
213 | 6.10k | zend_vm_stack stack = EG(vm_stack); |
214 | | |
215 | 12.2k | while (stack != NULL) { |
216 | 6.10k | zend_vm_stack p = stack->prev; |
217 | 6.10k | efree(stack); |
218 | 6.10k | stack = p; |
219 | 6.10k | } |
220 | 6.10k | } |
221 | | |
222 | | ZEND_API void* zend_vm_stack_extend(size_t size) |
223 | 0 | { |
224 | 0 | zend_vm_stack stack; |
225 | 0 | void *ptr; |
226 | |
|
227 | 0 | stack = EG(vm_stack); |
228 | 0 | stack->top = EG(vm_stack_top); |
229 | 0 | EG(vm_stack) = stack = zend_vm_stack_new_page( |
230 | 0 | EXPECTED(size < EG(vm_stack_page_size) - (ZEND_VM_STACK_HEADER_SLOTS * sizeof(zval))) ? |
231 | 0 | EG(vm_stack_page_size) : ZEND_VM_STACK_PAGE_ALIGNED_SIZE(size, EG(vm_stack_page_size)), |
232 | 0 | stack); |
233 | 0 | ptr = stack->top; |
234 | 0 | EG(vm_stack_top) = (void*)(((char*)ptr) + size); |
235 | 0 | EG(vm_stack_end) = stack->end; |
236 | 0 | return ptr; |
237 | 0 | } |
238 | | |
239 | | ZEND_API zval* zend_get_compiled_variable_value(const zend_execute_data *execute_data, uint32_t var) |
240 | 0 | { |
241 | 0 | return EX_VAR(var); |
242 | 0 | } |
243 | | |
244 | | ZEND_API bool zend_gcc_global_regs(void) |
245 | 0 | { |
246 | | #if defined(HAVE_GCC_GLOBAL_REGS) |
247 | | return 1; |
248 | | #else |
249 | 0 | return 0; |
250 | 0 | #endif |
251 | 0 | } |
252 | | |
253 | | static zend_always_inline zval *_get_zval_ptr_tmp(uint32_t var EXECUTE_DATA_DC) |
254 | 0 | { |
255 | 0 | zval *ret = EX_VAR(var); |
256 | |
|
257 | 0 | ZEND_ASSERT(Z_TYPE_P(ret) != IS_REFERENCE); |
258 | |
|
259 | 0 | return ret; |
260 | 0 | } |
261 | | |
262 | | static zend_always_inline zval *_get_zval_ptr_var(uint32_t var EXECUTE_DATA_DC) |
263 | 0 | { |
264 | 0 | zval *ret = EX_VAR(var); |
265 | |
|
266 | 0 | return ret; |
267 | 0 | } |
268 | | |
269 | | static zend_always_inline zval *_get_zval_ptr_var_deref(uint32_t var EXECUTE_DATA_DC) |
270 | 0 | { |
271 | 0 | zval *ret = EX_VAR(var); |
272 | |
|
273 | 0 | ZVAL_DEREF(ret); |
274 | 0 | return ret; |
275 | 0 | } |
276 | | |
277 | | static zend_never_inline ZEND_COLD zval* zval_undefined_cv(uint32_t var EXECUTE_DATA_DC) |
278 | 0 | { |
279 | 0 | if (EXPECTED(EG(exception) == NULL)) { |
280 | 0 | zend_string *cv = CV_DEF_OF(EX_VAR_TO_NUM(var)); |
281 | 0 | zend_error_unchecked(E_WARNING, "Undefined variable $%S", cv); |
282 | 0 | } |
283 | 0 | return &EG(uninitialized_zval); |
284 | 0 | } |
285 | | |
286 | | static zend_never_inline ZEND_COLD zval* ZEND_FASTCALL _zval_undefined_op1(EXECUTE_DATA_D) |
287 | 0 | { |
288 | 0 | return zval_undefined_cv(EX(opline)->op1.var EXECUTE_DATA_CC); |
289 | 0 | } |
290 | | |
291 | | static zend_never_inline ZEND_COLD zval* ZEND_FASTCALL _zval_undefined_op2(EXECUTE_DATA_D) |
292 | 0 | { |
293 | 0 | return zval_undefined_cv(EX(opline)->op2.var EXECUTE_DATA_CC); |
294 | 0 | } |
295 | | |
296 | 0 | #define ZVAL_UNDEFINED_OP1() _zval_undefined_op1(EXECUTE_DATA_C) |
297 | 0 | #define ZVAL_UNDEFINED_OP2() _zval_undefined_op2(EXECUTE_DATA_C) |
298 | | |
299 | | static zend_never_inline ZEND_COLD zval *_get_zval_cv_lookup(zval *ptr, uint32_t var, int type EXECUTE_DATA_DC) |
300 | 0 | { |
301 | 0 | switch (type) { |
302 | 0 | case BP_VAR_R: |
303 | 0 | case BP_VAR_UNSET: |
304 | 0 | ptr = zval_undefined_cv(var EXECUTE_DATA_CC); |
305 | 0 | break; |
306 | 0 | case BP_VAR_IS: |
307 | 0 | ptr = &EG(uninitialized_zval); |
308 | 0 | break; |
309 | 0 | case BP_VAR_RW: |
310 | 0 | zval_undefined_cv(var EXECUTE_DATA_CC); |
311 | 0 | ZEND_FALLTHROUGH; |
312 | 0 | case BP_VAR_W: |
313 | 0 | ZVAL_NULL(ptr); |
314 | 0 | break; |
315 | 0 | } |
316 | 0 | return ptr; |
317 | 0 | } |
318 | | |
319 | | static zend_always_inline zval *_get_zval_ptr_cv(uint32_t var, int type EXECUTE_DATA_DC) |
320 | 0 | { |
321 | 0 | zval *ret = EX_VAR(var); |
322 | |
|
323 | 0 | if (UNEXPECTED(Z_TYPE_P(ret) == IS_UNDEF)) { |
324 | 0 | if (type == BP_VAR_W) { |
325 | 0 | ZVAL_NULL(ret); |
326 | 0 | } else { |
327 | 0 | return _get_zval_cv_lookup(ret, var, type EXECUTE_DATA_CC); |
328 | 0 | } |
329 | 0 | } |
330 | 0 | return ret; |
331 | 0 | } |
332 | | |
333 | | static zend_always_inline zval *_get_zval_ptr_cv_deref(uint32_t var, int type EXECUTE_DATA_DC) |
334 | 0 | { |
335 | 0 | zval *ret = EX_VAR(var); |
336 | |
|
337 | 0 | if (UNEXPECTED(Z_TYPE_P(ret) == IS_UNDEF)) { |
338 | 0 | if (type == BP_VAR_W) { |
339 | 0 | ZVAL_NULL(ret); |
340 | 0 | return ret; |
341 | 0 | } else { |
342 | 0 | return _get_zval_cv_lookup(ret, var, type EXECUTE_DATA_CC); |
343 | 0 | } |
344 | 0 | } |
345 | 0 | ZVAL_DEREF(ret); |
346 | 0 | return ret; |
347 | 0 | } |
348 | | |
349 | | static zend_always_inline zval *_get_zval_ptr_cv_BP_VAR_R(uint32_t var EXECUTE_DATA_DC) |
350 | 0 | { |
351 | 0 | zval *ret = EX_VAR(var); |
352 | |
|
353 | 0 | if (UNEXPECTED(Z_TYPE_P(ret) == IS_UNDEF)) { |
354 | 0 | return zval_undefined_cv(var EXECUTE_DATA_CC); |
355 | 0 | } |
356 | 0 | return ret; |
357 | 0 | } |
358 | | |
359 | | static zend_always_inline zval *_get_zval_ptr_cv_deref_BP_VAR_R(uint32_t var EXECUTE_DATA_DC) |
360 | 0 | { |
361 | 0 | zval *ret = EX_VAR(var); |
362 | |
|
363 | 0 | if (UNEXPECTED(Z_TYPE_P(ret) == IS_UNDEF)) { |
364 | 0 | return zval_undefined_cv(var EXECUTE_DATA_CC); |
365 | 0 | } |
366 | 0 | ZVAL_DEREF(ret); |
367 | 0 | return ret; |
368 | 0 | } |
369 | | |
370 | | static zend_always_inline zval *_get_zval_ptr_cv_BP_VAR_IS(uint32_t var EXECUTE_DATA_DC) |
371 | 0 | { |
372 | 0 | zval *ret = EX_VAR(var); |
373 | |
|
374 | 0 | return ret; |
375 | 0 | } |
376 | | |
377 | | static zend_always_inline zval *_get_zval_ptr_cv_BP_VAR_RW(uint32_t var EXECUTE_DATA_DC) |
378 | 0 | { |
379 | 0 | zval *ret = EX_VAR(var); |
380 | |
|
381 | 0 | if (UNEXPECTED(Z_TYPE_P(ret) == IS_UNDEF)) { |
382 | 0 | zval_undefined_cv(var EXECUTE_DATA_CC); |
383 | 0 | ZVAL_NULL(ret); |
384 | 0 | return ret; |
385 | 0 | } |
386 | 0 | return ret; |
387 | 0 | } |
388 | | |
389 | | static zend_always_inline zval *_get_zval_ptr_cv_BP_VAR_W(uint32_t var EXECUTE_DATA_DC) |
390 | 0 | { |
391 | 0 | zval *ret = EX_VAR(var); |
392 | |
|
393 | 0 | if (Z_TYPE_P(ret) == IS_UNDEF) { |
394 | 0 | ZVAL_NULL(ret); |
395 | 0 | } |
396 | 0 | return ret; |
397 | 0 | } |
398 | | |
399 | | static zend_always_inline zval *_get_zval_ptr_tmpvarcv(int op_type, znode_op node, int type EXECUTE_DATA_DC) |
400 | 0 | { |
401 | 0 | if (op_type & (IS_TMP_VAR|IS_VAR)) { |
402 | 0 | if (op_type == IS_TMP_VAR) { |
403 | 0 | return _get_zval_ptr_tmp(node.var EXECUTE_DATA_CC); |
404 | 0 | } else { |
405 | 0 | ZEND_ASSERT(op_type == IS_VAR); |
406 | 0 | return _get_zval_ptr_var_deref(node.var EXECUTE_DATA_CC); |
407 | 0 | } |
408 | 0 | } else { |
409 | 0 | ZEND_ASSERT(op_type == IS_CV); |
410 | 0 | return _get_zval_ptr_cv_deref(node.var, type EXECUTE_DATA_CC); |
411 | 0 | } |
412 | 0 | } |
413 | | |
414 | | static zend_always_inline zval *_get_zval_ptr(int op_type, znode_op node, int type EXECUTE_DATA_DC OPLINE_DC) |
415 | 0 | { |
416 | 0 | if (op_type & (IS_TMP_VAR|IS_VAR)) { |
417 | 0 | if (!ZEND_DEBUG || op_type == IS_VAR) { |
418 | 0 | return _get_zval_ptr_var(node.var EXECUTE_DATA_CC); |
419 | 0 | } else { |
420 | 0 | ZEND_ASSERT(op_type == IS_TMP_VAR); |
421 | 0 | return _get_zval_ptr_tmp(node.var EXECUTE_DATA_CC); |
422 | 0 | } |
423 | 0 | } else { |
424 | 0 | if (op_type == IS_CONST) { |
425 | 0 | return RT_CONSTANT(opline, node); |
426 | 0 | } else if (op_type == IS_CV) { |
427 | 0 | return _get_zval_ptr_cv(node.var, type EXECUTE_DATA_CC); |
428 | 0 | } else { |
429 | 0 | return NULL; |
430 | 0 | } |
431 | 0 | } |
432 | 0 | } |
433 | | |
434 | | static zend_always_inline zval *_get_op_data_zval_ptr_r(int op_type, znode_op node EXECUTE_DATA_DC OPLINE_DC) |
435 | 0 | { |
436 | 0 | if (op_type & (IS_TMP_VAR|IS_VAR)) { |
437 | 0 | if (!ZEND_DEBUG || op_type == IS_VAR) { |
438 | 0 | return _get_zval_ptr_var(node.var EXECUTE_DATA_CC); |
439 | 0 | } else { |
440 | 0 | ZEND_ASSERT(op_type == IS_TMP_VAR); |
441 | 0 | return _get_zval_ptr_tmp(node.var EXECUTE_DATA_CC); |
442 | 0 | } |
443 | 0 | } else { |
444 | 0 | if (op_type == IS_CONST) { |
445 | 0 | return RT_CONSTANT(opline + 1, node); |
446 | 0 | } else if (op_type == IS_CV) { |
447 | 0 | return _get_zval_ptr_cv_BP_VAR_R(node.var EXECUTE_DATA_CC); |
448 | 0 | } else { |
449 | 0 | return NULL; |
450 | 0 | } |
451 | 0 | } |
452 | 0 | } |
453 | | |
454 | | static zend_always_inline ZEND_ATTRIBUTE_UNUSED zval *_get_zval_ptr_deref(int op_type, znode_op node, int type EXECUTE_DATA_DC OPLINE_DC) |
455 | 0 | { |
456 | 0 | if (op_type & (IS_TMP_VAR|IS_VAR)) { |
457 | 0 | if (op_type == IS_TMP_VAR) { |
458 | 0 | return _get_zval_ptr_tmp(node.var EXECUTE_DATA_CC); |
459 | 0 | } else { |
460 | 0 | ZEND_ASSERT(op_type == IS_VAR); |
461 | 0 | return _get_zval_ptr_var_deref(node.var EXECUTE_DATA_CC); |
462 | 0 | } |
463 | 0 | } else { |
464 | 0 | if (op_type == IS_CONST) { |
465 | 0 | return RT_CONSTANT(opline, node); |
466 | 0 | } else if (op_type == IS_CV) { |
467 | 0 | return _get_zval_ptr_cv_deref(node.var, type EXECUTE_DATA_CC); |
468 | 0 | } else { |
469 | 0 | return NULL; |
470 | 0 | } |
471 | 0 | } |
472 | 0 | } |
473 | | |
474 | | static zend_always_inline ZEND_ATTRIBUTE_UNUSED zval *_get_op_data_zval_ptr_deref_r(int op_type, znode_op node EXECUTE_DATA_DC OPLINE_DC) |
475 | 0 | { |
476 | 0 | if (op_type & (IS_TMP_VAR|IS_VAR)) { |
477 | 0 | if (op_type == IS_TMP_VAR) { |
478 | 0 | return _get_zval_ptr_tmp(node.var EXECUTE_DATA_CC); |
479 | 0 | } else { |
480 | 0 | ZEND_ASSERT(op_type == IS_VAR); |
481 | 0 | return _get_zval_ptr_var_deref(node.var EXECUTE_DATA_CC); |
482 | 0 | } |
483 | 0 | } else { |
484 | 0 | if (op_type == IS_CONST) { |
485 | 0 | return RT_CONSTANT(opline + 1, node); |
486 | 0 | } else if (op_type == IS_CV) { |
487 | 0 | return _get_zval_ptr_cv_deref_BP_VAR_R(node.var EXECUTE_DATA_CC); |
488 | 0 | } else { |
489 | 0 | return NULL; |
490 | 0 | } |
491 | 0 | } |
492 | 0 | } |
493 | | |
494 | | static zend_always_inline zval *_get_zval_ptr_undef(int op_type, znode_op node, int type EXECUTE_DATA_DC OPLINE_DC) |
495 | 0 | { |
496 | 0 | if (op_type & (IS_TMP_VAR|IS_VAR)) { |
497 | 0 | if (!ZEND_DEBUG || op_type == IS_VAR) { |
498 | 0 | return _get_zval_ptr_var(node.var EXECUTE_DATA_CC); |
499 | 0 | } else { |
500 | 0 | ZEND_ASSERT(op_type == IS_TMP_VAR); |
501 | 0 | return _get_zval_ptr_tmp(node.var EXECUTE_DATA_CC); |
502 | 0 | } |
503 | 0 | } else { |
504 | 0 | if (op_type == IS_CONST) { |
505 | 0 | return RT_CONSTANT(opline, node); |
506 | 0 | } else if (op_type == IS_CV) { |
507 | 0 | return EX_VAR(node.var); |
508 | 0 | } else { |
509 | 0 | return NULL; |
510 | 0 | } |
511 | 0 | } |
512 | 0 | } |
513 | | |
514 | | static zend_always_inline zval *_get_zval_ptr_ptr_var(uint32_t var EXECUTE_DATA_DC) |
515 | 0 | { |
516 | 0 | zval *ret = EX_VAR(var); |
517 | |
|
518 | 0 | if (EXPECTED(Z_TYPE_P(ret) == IS_INDIRECT)) { |
519 | 0 | ret = Z_INDIRECT_P(ret); |
520 | 0 | } |
521 | 0 | return ret; |
522 | 0 | } |
523 | | |
524 | | static inline zval *_get_zval_ptr_ptr(int op_type, znode_op node, int type EXECUTE_DATA_DC) |
525 | 0 | { |
526 | 0 | if (op_type == IS_CV) { |
527 | 0 | return _get_zval_ptr_cv(node.var, type EXECUTE_DATA_CC); |
528 | 0 | } else /* if (op_type == IS_VAR) */ { |
529 | 0 | ZEND_ASSERT(op_type == IS_VAR); |
530 | 0 | return _get_zval_ptr_ptr_var(node.var EXECUTE_DATA_CC); |
531 | 0 | } |
532 | 0 | } |
533 | | |
534 | | static inline ZEND_ATTRIBUTE_UNUSED zval *_get_obj_zval_ptr(int op_type, znode_op op, int type EXECUTE_DATA_DC OPLINE_DC) |
535 | 0 | { |
536 | 0 | if (op_type == IS_UNUSED) { |
537 | 0 | return &EX(This); |
538 | 0 | } |
539 | 0 | return get_zval_ptr(op_type, op, type); |
540 | 0 | } |
541 | | |
542 | | static inline ZEND_ATTRIBUTE_UNUSED zval *_get_obj_zval_ptr_deref(int op_type, znode_op op, int type EXECUTE_DATA_DC OPLINE_DC) |
543 | 0 | { |
544 | 0 | if (op_type == IS_UNUSED) { |
545 | 0 | return &EX(This); |
546 | 0 | } |
547 | 0 | return get_zval_ptr_deref(op_type, op, type); |
548 | 0 | } |
549 | | |
550 | | static inline ZEND_ATTRIBUTE_UNUSED zval *_get_obj_zval_ptr_undef(int op_type, znode_op op, int type EXECUTE_DATA_DC OPLINE_DC) |
551 | 0 | { |
552 | 0 | if (op_type == IS_UNUSED) { |
553 | 0 | return &EX(This); |
554 | 0 | } |
555 | 0 | return get_zval_ptr_undef(op_type, op, type); |
556 | 0 | } |
557 | | |
558 | | static inline ZEND_ATTRIBUTE_UNUSED zval *_get_obj_zval_ptr_ptr(int op_type, znode_op node, int type EXECUTE_DATA_DC) |
559 | 0 | { |
560 | 0 | if (op_type == IS_UNUSED) { |
561 | 0 | return &EX(This); |
562 | 0 | } |
563 | 0 | return get_zval_ptr_ptr(op_type, node, type); |
564 | 0 | } |
565 | | |
566 | | static inline void zend_assign_to_variable_reference(zval *variable_ptr, zval *value_ptr, zend_refcounted **garbage_ptr) |
567 | 0 | { |
568 | 0 | zend_reference *ref; |
569 | |
|
570 | 0 | if (EXPECTED(!Z_ISREF_P(value_ptr))) { |
571 | 0 | ZVAL_NEW_REF(value_ptr, value_ptr); |
572 | 0 | } else if (UNEXPECTED(variable_ptr == value_ptr)) { |
573 | 0 | return; |
574 | 0 | } |
575 | | |
576 | 0 | ref = Z_REF_P(value_ptr); |
577 | 0 | GC_ADDREF(ref); |
578 | 0 | if (Z_REFCOUNTED_P(variable_ptr)) { |
579 | 0 | *garbage_ptr = Z_COUNTED_P(variable_ptr); |
580 | 0 | } |
581 | 0 | ZVAL_REF(variable_ptr, ref); |
582 | 0 | } |
583 | | |
584 | | static zend_never_inline zval* zend_assign_to_typed_property_reference(zend_property_info *prop_info, zval *prop, zval *value_ptr, zend_refcounted **garbage_ptr EXECUTE_DATA_DC) |
585 | 0 | { |
586 | 0 | if (!zend_verify_prop_assignable_by_ref(prop_info, value_ptr, EX_USES_STRICT_TYPES())) { |
587 | 0 | return &EG(uninitialized_zval); |
588 | 0 | } |
589 | 0 | if (Z_ISREF_P(prop)) { |
590 | 0 | ZEND_REF_DEL_TYPE_SOURCE(Z_REF_P(prop), prop_info); |
591 | 0 | } |
592 | 0 | zend_assign_to_variable_reference(prop, value_ptr, garbage_ptr); |
593 | 0 | ZEND_REF_ADD_TYPE_SOURCE(Z_REF_P(prop), prop_info); |
594 | 0 | return prop; |
595 | 0 | } |
596 | | |
597 | | static zend_never_inline ZEND_COLD zval *zend_wrong_assign_to_variable_reference(zval *variable_ptr, zval *value_ptr, zend_refcounted **garbage_ptr OPLINE_DC EXECUTE_DATA_DC) |
598 | 0 | { |
599 | 0 | zend_error(E_NOTICE, "Only variables should be assigned by reference"); |
600 | 0 | if (UNEXPECTED(EG(exception) != NULL)) { |
601 | 0 | return &EG(uninitialized_zval); |
602 | 0 | } |
603 | | |
604 | | /* Use IS_TMP_VAR instead of IS_VAR to avoid ISREF check */ |
605 | 0 | Z_TRY_ADDREF_P(value_ptr); |
606 | 0 | return zend_assign_to_variable_ex(variable_ptr, value_ptr, IS_TMP_VAR, EX_USES_STRICT_TYPES(), garbage_ptr); |
607 | 0 | } |
608 | | |
609 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_cannot_pass_by_reference(uint32_t arg_num) |
610 | 0 | { |
611 | 0 | const zend_execute_data *execute_data = EG(current_execute_data); |
612 | 0 | zend_string *func_name = get_function_or_method_name(EX(call)->func); |
613 | 0 | const char *param_name = get_function_arg_name(EX(call)->func, arg_num); |
614 | |
|
615 | 0 | zend_throw_error(NULL, "%s(): Argument #%d%s%s%s could not be passed by reference", |
616 | 0 | ZSTR_VAL(func_name), arg_num, param_name ? " ($" : "", param_name ? param_name : "", param_name ? ")" : "" |
617 | 0 | ); |
618 | |
|
619 | 0 | zend_string_release(func_name); |
620 | 0 | } |
621 | | |
622 | 0 | static zend_never_inline ZEND_COLD void zend_throw_auto_init_in_prop_error(const zend_property_info *prop) { |
623 | 0 | zend_string *type_str = zend_type_to_string(prop->type); |
624 | 0 | zend_type_error( |
625 | 0 | "Cannot auto-initialize an array inside property %s::$%s of type %s", |
626 | 0 | ZSTR_VAL(prop->ce->name), zend_get_unmangled_property_name(prop->name), |
627 | 0 | ZSTR_VAL(type_str) |
628 | 0 | ); |
629 | 0 | zend_string_release(type_str); |
630 | 0 | } |
631 | | |
632 | 0 | static zend_never_inline ZEND_COLD void zend_throw_auto_init_in_ref_error(const zend_property_info *prop) { |
633 | 0 | zend_string *type_str = zend_type_to_string(prop->type); |
634 | 0 | zend_type_error( |
635 | 0 | "Cannot auto-initialize an array inside a reference held by property %s::$%s of type %s", |
636 | 0 | ZSTR_VAL(prop->ce->name), zend_get_unmangled_property_name(prop->name), |
637 | 0 | ZSTR_VAL(type_str) |
638 | 0 | ); |
639 | 0 | zend_string_release(type_str); |
640 | 0 | } |
641 | | |
642 | | static zend_never_inline ZEND_COLD void zend_throw_access_uninit_prop_by_ref_error( |
643 | 0 | const zend_property_info *prop) { |
644 | 0 | zend_throw_error(NULL, |
645 | 0 | "Cannot access uninitialized non-nullable property %s::$%s by reference", |
646 | 0 | ZSTR_VAL(prop->ce->name), |
647 | 0 | zend_get_unmangled_property_name(prop->name)); |
648 | 0 | } |
649 | | |
650 | | /* this should modify object only if it's empty */ |
651 | | static zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_throw_non_object_error(const zval *object, zval *property OPLINE_DC EXECUTE_DATA_DC) |
652 | 0 | { |
653 | 0 | zend_string *tmp_property_name; |
654 | 0 | zend_string *property_name = zval_get_tmp_string(property, &tmp_property_name); |
655 | |
|
656 | 0 | if (opline->opcode == ZEND_PRE_INC_OBJ |
657 | 0 | || opline->opcode == ZEND_PRE_DEC_OBJ |
658 | 0 | || opline->opcode == ZEND_POST_INC_OBJ |
659 | 0 | || opline->opcode == ZEND_POST_DEC_OBJ) { |
660 | 0 | zend_throw_error(NULL, |
661 | 0 | "Attempt to increment/decrement property \"%s\" on %s", |
662 | 0 | ZSTR_VAL(property_name), zend_zval_value_name(object) |
663 | 0 | ); |
664 | 0 | } else if (opline->opcode == ZEND_FETCH_OBJ_W |
665 | 0 | || opline->opcode == ZEND_FETCH_OBJ_RW |
666 | 0 | || opline->opcode == ZEND_FETCH_OBJ_FUNC_ARG |
667 | 0 | || opline->opcode == ZEND_ASSIGN_OBJ_REF) { |
668 | 0 | zend_throw_error(NULL, |
669 | 0 | "Attempt to modify property \"%s\" on %s", |
670 | 0 | ZSTR_VAL(property_name), zend_zval_value_name(object) |
671 | 0 | ); |
672 | 0 | } else { |
673 | 0 | zend_throw_error(NULL, |
674 | 0 | "Attempt to assign property \"%s\" on %s", |
675 | 0 | ZSTR_VAL(property_name), zend_zval_value_name(object) |
676 | 0 | ); |
677 | 0 | } |
678 | 0 | zend_tmp_string_release(tmp_property_name); |
679 | |
|
680 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
681 | 0 | ZVAL_NULL(EX_VAR(opline->result.var)); |
682 | 0 | } |
683 | 0 | } |
684 | | |
685 | | static ZEND_COLD void zend_verify_type_error_common( |
686 | | const zend_function *zf, const zend_arg_info *arg_info, const zval *value, |
687 | | const char **fname, const char **fsep, const char **fclass, |
688 | | zend_string **need_msg, const char **given_kind) |
689 | 0 | { |
690 | 0 | *fname = ZSTR_VAL(zf->common.function_name); |
691 | 0 | if (zf->common.scope) { |
692 | 0 | *fsep = "::"; |
693 | 0 | *fclass = ZSTR_VAL(zf->common.scope->name); |
694 | 0 | } else { |
695 | 0 | *fsep = ""; |
696 | 0 | *fclass = ""; |
697 | 0 | } |
698 | |
|
699 | 0 | *need_msg = zend_type_to_string_resolved(arg_info->type, zf->common.scope); |
700 | |
|
701 | 0 | if (value) { |
702 | 0 | *given_kind = zend_zval_value_name(value); |
703 | 0 | } else { |
704 | 0 | *given_kind = "none"; |
705 | 0 | } |
706 | 0 | } |
707 | | |
708 | | ZEND_API ZEND_COLD void zend_verify_arg_error( |
709 | | const zend_function *zf, const zend_arg_info *arg_info, uint32_t arg_num, const zval *value) |
710 | 0 | { |
711 | 0 | const zend_execute_data *ptr = EG(current_execute_data)->prev_execute_data; |
712 | 0 | const char *fname, *fsep, *fclass; |
713 | 0 | zend_string *need_msg; |
714 | 0 | const char *given_msg; |
715 | |
|
716 | 0 | zend_verify_type_error_common( |
717 | 0 | zf, arg_info, value, &fname, &fsep, &fclass, &need_msg, &given_msg); |
718 | |
|
719 | 0 | ZEND_ASSERT(zf->common.type == ZEND_USER_FUNCTION |
720 | 0 | && "Arginfo verification is not performed for internal functions"); |
721 | 0 | if (ptr && ptr->func && ZEND_USER_CODE(ptr->func->common.type)) { |
722 | 0 | zend_argument_type_error(arg_num, "must be of type %s, %s given, called in %s on line %d", |
723 | 0 | ZSTR_VAL(need_msg), given_msg, |
724 | 0 | ZSTR_VAL(ptr->func->op_array.filename), ptr->opline->lineno |
725 | 0 | ); |
726 | 0 | } else { |
727 | 0 | zend_argument_type_error(arg_num, |
728 | 0 | "must be of type %s, %s given", ZSTR_VAL(need_msg), given_msg); |
729 | 0 | } |
730 | |
|
731 | 0 | zend_string_release(need_msg); |
732 | 0 | } |
733 | | |
734 | | static bool zend_verify_weak_scalar_type_hint(uint32_t type_mask, zval *arg) |
735 | 0 | { |
736 | 0 | zend_long lval; |
737 | 0 | double dval; |
738 | 0 | zend_string *str; |
739 | 0 | bool bval; |
740 | | |
741 | | /* Type preference order: int -> float -> string -> bool */ |
742 | 0 | if (type_mask & MAY_BE_LONG) { |
743 | | /* For an int|float union type and string value, |
744 | | * determine chosen type by is_numeric_string() semantics. */ |
745 | 0 | if ((type_mask & MAY_BE_DOUBLE) && Z_TYPE_P(arg) == IS_STRING) { |
746 | 0 | uint8_t type = is_numeric_str_function(Z_STR_P(arg), &lval, &dval); |
747 | 0 | if (type == IS_LONG) { |
748 | 0 | zend_string_release(Z_STR_P(arg)); |
749 | 0 | ZVAL_LONG(arg, lval); |
750 | 0 | return true; |
751 | 0 | } |
752 | 0 | if (type == IS_DOUBLE) { |
753 | 0 | zend_string_release(Z_STR_P(arg)); |
754 | 0 | ZVAL_DOUBLE(arg, dval); |
755 | 0 | return true; |
756 | 0 | } |
757 | 0 | } else if (zend_parse_arg_long_weak(arg, &lval, 0)) { |
758 | 0 | zval_ptr_dtor(arg); |
759 | 0 | ZVAL_LONG(arg, lval); |
760 | 0 | return true; |
761 | 0 | } else if (UNEXPECTED(EG(exception))) { |
762 | 0 | return false; |
763 | 0 | } |
764 | 0 | } |
765 | 0 | if ((type_mask & MAY_BE_DOUBLE) && zend_parse_arg_double_weak(arg, &dval, 0)) { |
766 | 0 | zval_ptr_dtor(arg); |
767 | 0 | ZVAL_DOUBLE(arg, dval); |
768 | 0 | return true; |
769 | 0 | } |
770 | 0 | if ((type_mask & MAY_BE_STRING) && zend_parse_arg_str_weak(arg, &str, 0)) { |
771 | | /* on success "arg" is converted to IS_STRING */ |
772 | 0 | return true; |
773 | 0 | } |
774 | 0 | if ((type_mask & MAY_BE_BOOL) == MAY_BE_BOOL && zend_parse_arg_bool_weak(arg, &bval, 0)) { |
775 | 0 | zval_ptr_dtor(arg); |
776 | 0 | ZVAL_BOOL(arg, bval); |
777 | 0 | return true; |
778 | 0 | } |
779 | 0 | return false; |
780 | 0 | } |
781 | | |
782 | | #if ZEND_DEBUG |
783 | 0 | static bool can_convert_to_string(const zval *zv) { |
784 | | /* We don't call cast_object here, because this check must be side-effect free. As this |
785 | | * is only used for a sanity check of arginfo/zpp consistency, it's okay if we accept |
786 | | * more than actually allowed here. */ |
787 | 0 | if (Z_TYPE_P(zv) == IS_OBJECT) { |
788 | 0 | return Z_OBJ_HT_P(zv)->cast_object != zend_std_cast_object_tostring |
789 | 0 | || Z_OBJCE_P(zv)->__tostring; |
790 | 0 | } |
791 | 0 | return Z_TYPE_P(zv) <= IS_STRING; |
792 | 0 | } |
793 | | |
794 | | /* Used to sanity-check internal arginfo types without performing any actual type conversions. */ |
795 | | static bool zend_verify_weak_scalar_type_hint_no_sideeffect(uint32_t type_mask, const zval *arg) |
796 | 0 | { |
797 | 0 | zend_long lval; |
798 | 0 | double dval; |
799 | 0 | bool bval; |
800 | | |
801 | | /* Pass (uint32_t)-1 as arg_num to indicate to ZPP not to emit any deprecation notice, |
802 | | * this is needed because the version with side effects also uses 0 (e.g. for typed properties) */ |
803 | 0 | if ((type_mask & MAY_BE_LONG) && zend_parse_arg_long_weak(arg, &lval, (uint32_t)-1)) { |
804 | 0 | return true; |
805 | 0 | } |
806 | 0 | if ((type_mask & MAY_BE_DOUBLE) && zend_parse_arg_double_weak(arg, &dval, (uint32_t)-1)) { |
807 | 0 | return true; |
808 | 0 | } |
809 | 0 | if ((type_mask & MAY_BE_STRING) && can_convert_to_string(arg)) { |
810 | 0 | return true; |
811 | 0 | } |
812 | 0 | if ((type_mask & MAY_BE_BOOL) == MAY_BE_BOOL && zend_parse_arg_bool_weak(arg, &bval, (uint32_t)-1)) { |
813 | 0 | return true; |
814 | 0 | } |
815 | 0 | return false; |
816 | 0 | } |
817 | | #endif |
818 | | |
819 | | ZEND_API bool zend_verify_scalar_type_hint(uint32_t type_mask, zval *arg, bool strict, bool is_internal_arg) |
820 | 0 | { |
821 | 0 | if (UNEXPECTED(strict)) { |
822 | | /* SSTH Exception: IS_LONG may be accepted as IS_DOUBLE (converted) */ |
823 | 0 | if (!(type_mask & MAY_BE_DOUBLE) || Z_TYPE_P(arg) != IS_LONG) { |
824 | 0 | return 0; |
825 | 0 | } |
826 | 0 | } else if (UNEXPECTED(Z_TYPE_P(arg) == IS_NULL)) { |
827 | | /* NULL may be accepted only by nullable hints (this is already checked). |
828 | | * As an exception for internal functions, null is allowed for scalar types in weak mode. */ |
829 | 0 | return is_internal_arg |
830 | 0 | && (type_mask & (MAY_BE_TRUE|MAY_BE_FALSE|MAY_BE_LONG|MAY_BE_DOUBLE|MAY_BE_STRING)); |
831 | 0 | } |
832 | 0 | #if ZEND_DEBUG |
833 | 0 | if (is_internal_arg) { |
834 | 0 | return zend_verify_weak_scalar_type_hint_no_sideeffect(type_mask, arg); |
835 | 0 | } |
836 | 0 | #endif |
837 | 0 | return zend_verify_weak_scalar_type_hint(type_mask, arg); |
838 | 0 | } |
839 | | |
840 | | ZEND_COLD zend_never_inline void zend_verify_class_constant_type_error(const zend_class_constant *c, const zend_string *name, const zval *constant) |
841 | 0 | { |
842 | 0 | zend_string *type_str = zend_type_to_string(c->type); |
843 | |
|
844 | 0 | zend_type_error("Cannot assign %s to class constant %s::%s of type %s", |
845 | 0 | zend_zval_type_name(constant), ZSTR_VAL(c->ce->name), ZSTR_VAL(name), ZSTR_VAL(type_str)); |
846 | |
|
847 | 0 | zend_string_release(type_str); |
848 | 0 | } |
849 | | |
850 | | ZEND_COLD zend_never_inline void zend_verify_property_type_error(const zend_property_info *info, const zval *property) |
851 | 0 | { |
852 | 0 | zend_string *type_str; |
853 | | |
854 | | /* we _may_ land here in case reading already errored and runtime cache thus has not been updated (i.e. it contains a valid but unrelated info) */ |
855 | 0 | if (EG(exception)) { |
856 | 0 | return; |
857 | 0 | } |
858 | | |
859 | 0 | type_str = zend_type_to_string(info->type); |
860 | 0 | zend_type_error("Cannot assign %s to property %s::$%s of type %s", |
861 | 0 | zend_zval_value_name(property), |
862 | 0 | ZSTR_VAL(info->ce->name), |
863 | 0 | zend_get_unmangled_property_name(info->name), |
864 | 0 | ZSTR_VAL(type_str)); |
865 | 0 | zend_string_release(type_str); |
866 | 0 | } |
867 | | |
868 | | ZEND_COLD zend_never_inline void zend_magic_get_property_type_inconsistency_error(const zend_property_info *info, const zval *property) |
869 | 0 | { |
870 | | /* we _may_ land here in case reading already errored and runtime cache thus has not been updated (i.e. it contains a valid but unrelated info) */ |
871 | 0 | if (EG(exception)) { |
872 | 0 | return; |
873 | 0 | } |
874 | | |
875 | 0 | zend_string *type_str = zend_type_to_string(info->type); |
876 | 0 | zend_type_error("Value of type %s returned from %s::__get() must be compatible with unset property %s::$%s of type %s", |
877 | 0 | zend_zval_type_name(property), |
878 | 0 | ZSTR_VAL(info->ce->name), |
879 | 0 | ZSTR_VAL(info->ce->name), |
880 | 0 | zend_get_unmangled_property_name(info->name), |
881 | 0 | ZSTR_VAL(type_str)); |
882 | 0 | zend_string_release(type_str); |
883 | 0 | } |
884 | | |
885 | | ZEND_COLD void zend_match_unhandled_error(const zval *value) |
886 | 0 | { |
887 | 0 | zend_long max_len = EG(exception_string_param_max_len); |
888 | 0 | smart_str msg = {0}; |
889 | 0 | if ( |
890 | 0 | EG(exception_ignore_args) |
891 | 0 | || (Z_TYPE_P(value) == IS_STRING && max_len == 0) |
892 | 0 | || smart_str_append_zval(&msg, value, max_len) != SUCCESS |
893 | 0 | ) { |
894 | 0 | smart_str_appendl(&msg, "of type ", sizeof("of type ")-1); |
895 | 0 | smart_str_appends(&msg, zend_zval_type_name(value)); |
896 | 0 | } |
897 | 0 | smart_str_0(&msg); |
898 | |
|
899 | 0 | zend_throw_exception_ex( |
900 | 0 | zend_ce_unhandled_match_error, 0, "Unhandled match case %s", ZSTR_VAL(msg.s)); |
901 | |
|
902 | 0 | smart_str_free(&msg); |
903 | 0 | } |
904 | | |
905 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_readonly_property_modification_error( |
906 | 0 | const zend_property_info *info) { |
907 | 0 | zend_readonly_property_modification_error_ex( |
908 | 0 | ZSTR_VAL(info->ce->name), zend_get_unmangled_property_name(info->name)); |
909 | 0 | } |
910 | | |
911 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_readonly_property_modification_error_ex( |
912 | 0 | const char *class_name, const char *prop_name) { |
913 | 0 | zend_throw_error(NULL, "Cannot modify readonly property %s::$%s", class_name, prop_name); |
914 | 0 | } |
915 | | |
916 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_readonly_property_indirect_modification_error(const zend_property_info *info) |
917 | 0 | { |
918 | 0 | zend_throw_error(NULL, "Cannot indirectly modify readonly property %s::$%s", |
919 | 0 | ZSTR_VAL(info->ce->name), zend_get_unmangled_property_name(info->name)); |
920 | 0 | } |
921 | | |
922 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_invalid_class_constant_type_error(const uint8_t type) |
923 | 0 | { |
924 | 0 | zend_type_error("Cannot use value of type %s as class constant name", zend_get_type_by_const(type)); |
925 | 0 | } |
926 | | |
927 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_object_released_while_assigning_to_property_error(const zend_property_info *info) |
928 | 0 | { |
929 | 0 | zend_throw_error(NULL, "Object was released while assigning to property %s::$%s", |
930 | 0 | ZSTR_VAL(info->ce->name), zend_get_unmangled_property_name(info->name)); |
931 | 0 | } |
932 | | |
933 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_asymmetric_visibility_property_modification_error( |
934 | | const zend_property_info *prop_info, const char *operation |
935 | 0 | ) { |
936 | 0 | const zend_class_entry *scope; |
937 | 0 | if (EG(fake_scope)) { |
938 | 0 | scope = EG(fake_scope); |
939 | 0 | } else { |
940 | 0 | scope = zend_get_called_scope(EG(current_execute_data)); |
941 | 0 | } |
942 | |
|
943 | 0 | const char *visibility; |
944 | 0 | if (prop_info->flags & ZEND_ACC_PRIVATE_SET) { |
945 | 0 | visibility = "private(set)"; |
946 | 0 | } else { |
947 | 0 | ZEND_ASSERT(prop_info->flags & ZEND_ACC_PROTECTED_SET); |
948 | 0 | if (prop_info->flags & ZEND_ACC_READONLY) { |
949 | 0 | visibility = "protected(set) readonly"; |
950 | 0 | } else { |
951 | 0 | visibility = "protected(set)"; |
952 | 0 | } |
953 | 0 | } |
954 | |
|
955 | 0 | zend_throw_error(NULL, "Cannot %s %s property %s::$%s from %s%s", |
956 | 0 | operation, |
957 | 0 | visibility, |
958 | 0 | ZSTR_VAL(prop_info->ce->name), |
959 | 0 | ZSTR_VAL(prop_info->name), |
960 | 0 | scope ? "scope " : "global scope", scope ? ZSTR_VAL(scope->name) : ""); |
961 | 0 | } |
962 | | |
963 | 0 | static const zend_class_entry *resolve_single_class_type(zend_string *name, const zend_class_entry *self_ce) { |
964 | 0 | if (zend_string_equals_ci(name, ZSTR_KNOWN(ZEND_STR_SELF))) { |
965 | 0 | return self_ce; |
966 | 0 | } else if (zend_string_equals_ci(name, ZSTR_KNOWN(ZEND_STR_PARENT))) { |
967 | 0 | return self_ce->parent; |
968 | 0 | } else { |
969 | 0 | return zend_lookup_class_ex(name, NULL, ZEND_FETCH_CLASS_NO_AUTOLOAD); |
970 | 0 | } |
971 | 0 | } |
972 | | |
973 | | static zend_always_inline const zend_class_entry *zend_ce_from_type( |
974 | 0 | const zend_class_entry *scope, const zend_type *type) { |
975 | 0 | ZEND_ASSERT(ZEND_TYPE_HAS_NAME(*type)); |
976 | 0 | zend_string *name = ZEND_TYPE_NAME(*type); |
977 | 0 | if (ZSTR_HAS_CE_CACHE(name)) { |
978 | 0 | zend_class_entry *ce = ZSTR_GET_CE_CACHE(name); |
979 | 0 | if (!ce) { |
980 | 0 | ce = zend_lookup_class_ex(name, NULL, ZEND_FETCH_CLASS_NO_AUTOLOAD); |
981 | 0 | } |
982 | 0 | return ce; |
983 | 0 | } |
984 | 0 | return resolve_single_class_type(name, scope); |
985 | 0 | } |
986 | | |
987 | | static bool zend_check_intersection_for_property_or_class_constant_class_type( |
988 | | const zend_class_entry *scope, const zend_type_list *intersection_type_list, const zend_class_entry *value_ce) |
989 | 0 | { |
990 | 0 | const zend_type *list_type; |
991 | |
|
992 | 0 | ZEND_TYPE_LIST_FOREACH(intersection_type_list, list_type) { |
993 | 0 | ZEND_ASSERT(!ZEND_TYPE_HAS_LIST(*list_type)); |
994 | 0 | const zend_class_entry *ce = zend_ce_from_type(scope, list_type); |
995 | 0 | if (!ce || !instanceof_function(value_ce, ce)) { |
996 | 0 | return false; |
997 | 0 | } |
998 | 0 | } ZEND_TYPE_LIST_FOREACH_END(); |
999 | 0 | return true; |
1000 | 0 | } |
1001 | | |
1002 | | static bool zend_check_and_resolve_property_or_class_constant_class_type( |
1003 | 0 | const zend_class_entry *scope, const zend_type member_type, const zend_class_entry *value_ce) { |
1004 | 0 | if (ZEND_TYPE_HAS_LIST(member_type)) { |
1005 | 0 | if (ZEND_TYPE_IS_INTERSECTION(member_type)) { |
1006 | 0 | return zend_check_intersection_for_property_or_class_constant_class_type( |
1007 | 0 | scope, ZEND_TYPE_LIST(member_type), value_ce); |
1008 | 0 | } else { |
1009 | 0 | const zend_type *list_type; |
1010 | 0 | ZEND_TYPE_LIST_FOREACH(ZEND_TYPE_LIST(member_type), list_type) { |
1011 | 0 | if (ZEND_TYPE_IS_INTERSECTION(*list_type)) { |
1012 | 0 | if (zend_check_intersection_for_property_or_class_constant_class_type( |
1013 | 0 | scope, ZEND_TYPE_LIST(*list_type), value_ce)) { |
1014 | 0 | return true; |
1015 | 0 | } |
1016 | 0 | continue; |
1017 | 0 | } |
1018 | 0 | ZEND_ASSERT(!ZEND_TYPE_HAS_LIST(*list_type)); |
1019 | 0 | const zend_class_entry *ce = zend_ce_from_type(scope, list_type); |
1020 | 0 | if (ce && instanceof_function(value_ce, ce)) { |
1021 | 0 | return true; |
1022 | 0 | } |
1023 | 0 | } ZEND_TYPE_LIST_FOREACH_END(); |
1024 | | |
1025 | 0 | if ((ZEND_TYPE_PURE_MASK(member_type) & MAY_BE_STATIC)) { |
1026 | 0 | return value_ce == scope; |
1027 | 0 | } |
1028 | | |
1029 | 0 | return false; |
1030 | 0 | } |
1031 | 0 | } else if ((ZEND_TYPE_PURE_MASK(member_type) & MAY_BE_STATIC) && value_ce == scope) { |
1032 | 0 | return true; |
1033 | 0 | } else if (ZEND_TYPE_HAS_NAME(member_type)) { |
1034 | 0 | const zend_class_entry *ce = zend_ce_from_type(scope, &member_type); |
1035 | 0 | return ce && instanceof_function(value_ce, ce); |
1036 | 0 | } |
1037 | | |
1038 | 0 | return false; |
1039 | 0 | } |
1040 | | |
1041 | | static zend_always_inline bool i_zend_check_property_type(const zend_property_info *info, zval *property, bool strict) |
1042 | 0 | { |
1043 | 0 | ZEND_ASSERT(!Z_ISREF_P(property)); |
1044 | 0 | if (EXPECTED(ZEND_TYPE_CONTAINS_CODE(info->type, Z_TYPE_P(property)))) { |
1045 | 0 | return 1; |
1046 | 0 | } |
1047 | | |
1048 | 0 | if (ZEND_TYPE_IS_COMPLEX(info->type) && Z_TYPE_P(property) == IS_OBJECT |
1049 | 0 | && zend_check_and_resolve_property_or_class_constant_class_type(info->ce, info->type, Z_OBJCE_P(property))) { |
1050 | 0 | return 1; |
1051 | 0 | } |
1052 | | |
1053 | 0 | uint32_t type_mask = ZEND_TYPE_FULL_MASK(info->type); |
1054 | 0 | ZEND_ASSERT(!(type_mask & (MAY_BE_CALLABLE|MAY_BE_STATIC|MAY_BE_NEVER|MAY_BE_VOID))); |
1055 | 0 | return zend_verify_scalar_type_hint(type_mask, property, strict, false); |
1056 | 0 | } |
1057 | | |
1058 | | static zend_always_inline bool i_zend_verify_property_type(const zend_property_info *info, zval *property, bool strict) |
1059 | 0 | { |
1060 | 0 | if (i_zend_check_property_type(info, property, strict)) { |
1061 | 0 | return 1; |
1062 | 0 | } |
1063 | | |
1064 | 0 | zend_verify_property_type_error(info, property); |
1065 | 0 | return 0; |
1066 | 0 | } |
1067 | | |
1068 | 0 | ZEND_API bool zend_never_inline zend_verify_property_type(const zend_property_info *info, zval *property, bool strict) { |
1069 | 0 | return i_zend_verify_property_type(info, property, strict); |
1070 | 0 | } |
1071 | | |
1072 | | static zend_never_inline zval* zend_assign_to_typed_prop(const zend_property_info *info, zval *property_val, zval *value, zend_refcounted **garbage_ptr EXECUTE_DATA_DC) |
1073 | 0 | { |
1074 | 0 | zval tmp; |
1075 | |
|
1076 | 0 | if (UNEXPECTED(info->flags & (ZEND_ACC_READONLY|ZEND_ACC_PPP_SET_MASK))) { |
1077 | 0 | if ((info->flags & ZEND_ACC_READONLY) && !(Z_PROP_FLAG_P(property_val) & IS_PROP_REINITABLE)) { |
1078 | 0 | zend_readonly_property_modification_error(info); |
1079 | 0 | return &EG(uninitialized_zval); |
1080 | 0 | } |
1081 | 0 | if (info->flags & ZEND_ACC_PPP_SET_MASK && !zend_asymmetric_property_has_set_access(info)) { |
1082 | 0 | zend_asymmetric_visibility_property_modification_error(info, "modify"); |
1083 | 0 | return &EG(uninitialized_zval); |
1084 | 0 | } |
1085 | 0 | } |
1086 | | |
1087 | 0 | ZVAL_DEREF(value); |
1088 | 0 | ZVAL_COPY(&tmp, value); |
1089 | |
|
1090 | 0 | if (UNEXPECTED(!i_zend_verify_property_type(info, &tmp, EX_USES_STRICT_TYPES()))) { |
1091 | 0 | zval_ptr_dtor(&tmp); |
1092 | 0 | return &EG(uninitialized_zval); |
1093 | 0 | } |
1094 | | |
1095 | 0 | Z_PROP_FLAG_P(property_val) &= ~IS_PROP_REINITABLE; |
1096 | |
|
1097 | 0 | return zend_assign_to_variable_ex(property_val, &tmp, IS_TMP_VAR, EX_USES_STRICT_TYPES(), garbage_ptr); |
1098 | 0 | } |
1099 | | |
1100 | 0 | static zend_always_inline bool zend_value_instanceof_static(const zval *zv) { |
1101 | 0 | if (Z_TYPE_P(zv) != IS_OBJECT) { |
1102 | 0 | return 0; |
1103 | 0 | } |
1104 | | |
1105 | 0 | zend_class_entry *called_scope = zend_get_called_scope(EG(current_execute_data)); |
1106 | 0 | if (!called_scope) { |
1107 | 0 | return 0; |
1108 | 0 | } |
1109 | 0 | return instanceof_function(Z_OBJCE_P(zv), called_scope); |
1110 | 0 | } |
1111 | | |
1112 | | static zend_always_inline zend_class_entry *zend_fetch_ce_from_type( |
1113 | | const zend_type *type) |
1114 | 0 | { |
1115 | 0 | zend_string *name = ZEND_TYPE_NAME(*type); |
1116 | 0 | zend_class_entry *ce; |
1117 | 0 | if (ZSTR_HAS_CE_CACHE(name)) { |
1118 | 0 | ce = ZSTR_GET_CE_CACHE(name); |
1119 | 0 | if (!ce) { |
1120 | 0 | ce = zend_lookup_class_ex(name, NULL, ZEND_FETCH_CLASS_NO_AUTOLOAD); |
1121 | 0 | if (UNEXPECTED(!ce)) { |
1122 | | /* Cannot resolve */ |
1123 | 0 | return NULL; |
1124 | 0 | } |
1125 | 0 | } |
1126 | 0 | } else { |
1127 | 0 | ce = zend_fetch_class(name, |
1128 | 0 | ZEND_FETCH_CLASS_AUTO | ZEND_FETCH_CLASS_NO_AUTOLOAD | ZEND_FETCH_CLASS_SILENT); |
1129 | 0 | if (UNEXPECTED(!ce)) { |
1130 | 0 | return NULL; |
1131 | 0 | } |
1132 | 0 | } |
1133 | 0 | return ce; |
1134 | 0 | } |
1135 | | |
1136 | | static bool zend_check_intersection_type_from_list( |
1137 | | const zend_type_list *intersection_type_list, |
1138 | | zend_class_entry *arg_ce) |
1139 | 0 | { |
1140 | 0 | zend_class_entry *ce; |
1141 | 0 | const zend_type *list_type; |
1142 | 0 | ZEND_TYPE_LIST_FOREACH(intersection_type_list, list_type) { |
1143 | 0 | ce = zend_fetch_ce_from_type(list_type); |
1144 | | /* If type is not an instance of one of the types taking part in the |
1145 | | * intersection it cannot be a valid instance of the whole intersection type. */ |
1146 | 0 | if (!ce || !instanceof_function(arg_ce, ce)) { |
1147 | 0 | return false; |
1148 | 0 | } |
1149 | 0 | } ZEND_TYPE_LIST_FOREACH_END(); |
1150 | 0 | return true; |
1151 | 0 | } |
1152 | | |
1153 | | static zend_always_inline bool zend_check_type_slow( |
1154 | | const zend_type *type, zval *arg, const zend_reference *ref, |
1155 | | bool is_return_type, bool is_internal) |
1156 | 0 | { |
1157 | 0 | if (ZEND_TYPE_IS_COMPLEX(*type) && EXPECTED(Z_TYPE_P(arg) == IS_OBJECT)) { |
1158 | 0 | zend_class_entry *ce; |
1159 | 0 | if (UNEXPECTED(ZEND_TYPE_HAS_LIST(*type))) { |
1160 | 0 | if (ZEND_TYPE_IS_INTERSECTION(*type)) { |
1161 | 0 | return zend_check_intersection_type_from_list(ZEND_TYPE_LIST(*type), Z_OBJCE_P(arg)); |
1162 | 0 | } else { |
1163 | 0 | const zend_type *list_type; |
1164 | 0 | ZEND_TYPE_LIST_FOREACH(ZEND_TYPE_LIST(*type), list_type) { |
1165 | 0 | if (ZEND_TYPE_IS_INTERSECTION(*list_type)) { |
1166 | 0 | if (zend_check_intersection_type_from_list(ZEND_TYPE_LIST(*list_type), Z_OBJCE_P(arg))) { |
1167 | 0 | return true; |
1168 | 0 | } |
1169 | 0 | } else { |
1170 | 0 | ZEND_ASSERT(!ZEND_TYPE_HAS_LIST(*list_type)); |
1171 | 0 | ce = zend_fetch_ce_from_type(list_type); |
1172 | | /* Instance of a single type part of a union is sufficient to pass the type check */ |
1173 | 0 | if (ce && instanceof_function(Z_OBJCE_P(arg), ce)) { |
1174 | 0 | return true; |
1175 | 0 | } |
1176 | 0 | } |
1177 | 0 | } ZEND_TYPE_LIST_FOREACH_END(); |
1178 | 0 | } |
1179 | 0 | } else { |
1180 | 0 | ce = zend_fetch_ce_from_type(type); |
1181 | | /* If we have a CE we check if it satisfies the type constraint, |
1182 | | * otherwise it will check if a standard type satisfies it. */ |
1183 | 0 | if (ce && instanceof_function(Z_OBJCE_P(arg), ce)) { |
1184 | 0 | return true; |
1185 | 0 | } |
1186 | 0 | } |
1187 | 0 | } |
1188 | | |
1189 | 0 | const uint32_t type_mask = ZEND_TYPE_FULL_MASK(*type); |
1190 | 0 | if ((type_mask & MAY_BE_CALLABLE) && |
1191 | 0 | zend_is_callable(arg, is_internal ? IS_CALLABLE_SUPPRESS_DEPRECATIONS : 0, NULL)) { |
1192 | 0 | return 1; |
1193 | 0 | } |
1194 | 0 | if ((type_mask & MAY_BE_STATIC) && zend_value_instanceof_static(arg)) { |
1195 | 0 | return 1; |
1196 | 0 | } |
1197 | 0 | if (ref && ZEND_REF_HAS_TYPE_SOURCES(ref)) { |
1198 | | /* We cannot have conversions for typed refs. */ |
1199 | 0 | return 0; |
1200 | 0 | } |
1201 | 0 | if (is_internal && is_return_type) { |
1202 | | /* For internal returns, the type has to match exactly, because we're not |
1203 | | * going to check it for non-debug builds, and there will be no chance to |
1204 | | * apply coercions. */ |
1205 | 0 | return 0; |
1206 | 0 | } |
1207 | | |
1208 | 0 | return zend_verify_scalar_type_hint(type_mask, arg, |
1209 | 0 | is_return_type ? ZEND_RET_USES_STRICT_TYPES() : ZEND_ARG_USES_STRICT_TYPES(), |
1210 | 0 | is_internal); |
1211 | | |
1212 | | /* Special handling for IS_VOID is not necessary (for return types), |
1213 | | * because this case is already checked at compile-time. */ |
1214 | 0 | } |
1215 | | |
1216 | | static zend_always_inline bool zend_check_type( |
1217 | | const zend_type *type, zval *arg, zend_class_entry *scope, |
1218 | | bool is_return_type, bool is_internal) |
1219 | 6.10k | { |
1220 | 6.10k | const zend_reference *ref = NULL; |
1221 | 6.10k | ZEND_ASSERT(ZEND_TYPE_IS_SET(*type)); |
1222 | | |
1223 | 6.10k | if (UNEXPECTED(Z_ISREF_P(arg))) { |
1224 | 0 | ref = Z_REF_P(arg); |
1225 | 0 | arg = Z_REFVAL_P(arg); |
1226 | 0 | } |
1227 | | |
1228 | 6.10k | if (EXPECTED(ZEND_TYPE_CONTAINS_CODE(*type, Z_TYPE_P(arg)))) { |
1229 | 6.10k | return 1; |
1230 | 6.10k | } |
1231 | | |
1232 | 0 | return zend_check_type_slow(type, arg, ref, is_return_type, is_internal); |
1233 | 6.10k | } |
1234 | | |
1235 | | ZEND_API bool zend_check_user_type_slow( |
1236 | | const zend_type *type, zval *arg, const zend_reference *ref, bool is_return_type) |
1237 | 0 | { |
1238 | 0 | return zend_check_type_slow( |
1239 | 0 | type, arg, ref, is_return_type, /* is_internal */ false); |
1240 | 0 | } |
1241 | | |
1242 | | static zend_always_inline bool zend_verify_recv_arg_type(const zend_function *zf, uint32_t arg_num, zval *arg) |
1243 | 0 | { |
1244 | 0 | const zend_arg_info *cur_arg_info; |
1245 | |
|
1246 | 0 | ZEND_ASSERT(arg_num <= zf->common.num_args); |
1247 | 0 | cur_arg_info = &zf->common.arg_info[arg_num-1]; |
1248 | |
|
1249 | 0 | if (ZEND_TYPE_IS_SET(cur_arg_info->type) |
1250 | 0 | && UNEXPECTED(!zend_check_type(&cur_arg_info->type, arg, zf->common.scope, false, false))) { |
1251 | 0 | zend_verify_arg_error(zf, cur_arg_info, arg_num, arg); |
1252 | 0 | return 0; |
1253 | 0 | } |
1254 | | |
1255 | 0 | return 1; |
1256 | 0 | } |
1257 | | |
1258 | | static zend_always_inline bool zend_verify_variadic_arg_type( |
1259 | | const zend_function *zf, const zend_arg_info *arg_info, uint32_t arg_num, zval *arg) |
1260 | 0 | { |
1261 | 0 | ZEND_ASSERT(ZEND_TYPE_IS_SET(arg_info->type)); |
1262 | 0 | if (UNEXPECTED(!zend_check_type(&arg_info->type, arg, zf->common.scope, false, false))) { |
1263 | 0 | zend_verify_arg_error(zf, arg_info, arg_num, arg); |
1264 | 0 | return 0; |
1265 | 0 | } |
1266 | | |
1267 | 0 | return 1; |
1268 | 0 | } |
1269 | | |
1270 | | static zend_never_inline ZEND_ATTRIBUTE_UNUSED bool zend_verify_internal_arg_types(const zend_function *fbc, zend_execute_data *call) |
1271 | 6.10k | { |
1272 | 6.10k | uint32_t i; |
1273 | 6.10k | uint32_t num_args = ZEND_CALL_NUM_ARGS(call); |
1274 | 6.10k | zval *arg = ZEND_CALL_ARG(call, 1); |
1275 | | |
1276 | 12.2k | for (i = 0; i < num_args; ++i) { |
1277 | 6.10k | zend_arg_info *cur_arg_info; |
1278 | 6.10k | if (EXPECTED(i < fbc->common.num_args)) { |
1279 | 6.10k | cur_arg_info = &fbc->common.arg_info[i]; |
1280 | 6.10k | } else if (UNEXPECTED(fbc->common.fn_flags & ZEND_ACC_VARIADIC)) { |
1281 | 0 | cur_arg_info = &fbc->common.arg_info[fbc->common.num_args]; |
1282 | 0 | } else { |
1283 | 0 | break; |
1284 | 0 | } |
1285 | | |
1286 | 6.10k | if (ZEND_TYPE_IS_SET(cur_arg_info->type) |
1287 | 0 | && UNEXPECTED(!zend_check_type(&cur_arg_info->type, arg, fbc->common.scope, false, /* is_internal */ true))) { |
1288 | 0 | return 0; |
1289 | 0 | } |
1290 | 6.10k | arg++; |
1291 | 6.10k | } |
1292 | 6.10k | return 1; |
1293 | 6.10k | } |
1294 | | |
1295 | | #if ZEND_DEBUG |
1296 | | /* Determine whether an internal call should throw, because the passed arguments violate |
1297 | | * an arginfo constraint. This is only checked in debug builds. In release builds, we |
1298 | | * trust that arginfo matches what is enforced by zend_parse_parameters. */ |
1299 | | ZEND_API bool zend_internal_call_should_throw(const zend_function *fbc, zend_execute_data *call) |
1300 | 6.10k | { |
1301 | 6.10k | if (fbc->internal_function.handler == ZEND_FN(pass) || (fbc->internal_function.fn_flags & ZEND_ACC_FAKE_CLOSURE)) { |
1302 | | /* Be lenient about the special pass function and about fake closures. */ |
1303 | 0 | return 0; |
1304 | 0 | } |
1305 | | |
1306 | 6.10k | if (fbc->common.required_num_args > ZEND_CALL_NUM_ARGS(call)) { |
1307 | | /* Required argument not passed. */ |
1308 | 0 | return 1; |
1309 | 0 | } |
1310 | | |
1311 | 6.10k | if (fbc->common.num_args < ZEND_CALL_NUM_ARGS(call) |
1312 | 0 | && !(fbc->common.fn_flags & ZEND_ACC_VARIADIC)) { |
1313 | | /* Too many arguments passed. For internal functions (unlike userland functions), |
1314 | | * this should always throw. */ |
1315 | 0 | return 1; |
1316 | 0 | } |
1317 | | |
1318 | 6.10k | if ((fbc->common.fn_flags & ZEND_ACC_HAS_TYPE_HINTS) && |
1319 | 6.10k | !zend_verify_internal_arg_types(fbc, call)) { |
1320 | 0 | return 1; |
1321 | 0 | } |
1322 | | |
1323 | 6.10k | return 0; |
1324 | 6.10k | } |
1325 | | |
1326 | | ZEND_API ZEND_COLD void zend_internal_call_arginfo_violation(const zend_function *fbc) |
1327 | 0 | { |
1328 | 0 | zend_error_noreturn(E_ERROR, "Arginfo / zpp mismatch during call of %s%s%s()", |
1329 | 0 | fbc->common.scope ? ZSTR_VAL(fbc->common.scope->name) : "", |
1330 | 0 | fbc->common.scope ? "::" : "", |
1331 | 0 | ZSTR_VAL(fbc->common.function_name)); |
1332 | 0 | } |
1333 | | |
1334 | | #ifndef ZEND_VERIFY_FUNC_INFO |
1335 | | # define ZEND_VERIFY_FUNC_INFO 0 |
1336 | | #endif |
1337 | | |
1338 | 0 | static void zend_verify_internal_func_info(const zend_function *fn, const zval *retval) { |
1339 | | #if ZEND_VERIFY_FUNC_INFO |
1340 | | zend_string *name = fn->common.function_name; |
1341 | | const uint32_t type_mask = zend_get_internal_func_info(fn, NULL, NULL); |
1342 | | if (!type_mask) { |
1343 | | return; |
1344 | | } |
1345 | | |
1346 | | /* Always check refcount of arrays, as immutable arrays are RCN. */ |
1347 | | if (Z_REFCOUNTED_P(retval) || Z_TYPE_P(retval) == IS_ARRAY) { |
1348 | | if (!(type_mask & MAY_BE_RC1)) { |
1349 | | zend_error_noreturn(E_CORE_ERROR, "%s() missing rc1", ZSTR_VAL(name)); |
1350 | | } |
1351 | | if (Z_REFCOUNT_P(retval) > 1 && !(type_mask & MAY_BE_RCN)) { |
1352 | | zend_error_noreturn(E_CORE_ERROR, "%s() missing rcn", ZSTR_VAL(name)); |
1353 | | } |
1354 | | } |
1355 | | |
1356 | | const uint32_t type = 1u << Z_TYPE_P(retval); |
1357 | | if (!(type_mask & type)) { |
1358 | | zend_error_noreturn(E_CORE_ERROR, "%s() missing type %s", |
1359 | | ZSTR_VAL(name), zend_get_type_by_const(Z_TYPE_P(retval))); |
1360 | | } |
1361 | | |
1362 | | if (Z_TYPE_P(retval) == IS_ARRAY) { |
1363 | | const HashTable *ht = Z_ARRVAL_P(retval); |
1364 | | uint32_t num_checked = 0; |
1365 | | zend_string *str; |
1366 | | zval *val; |
1367 | | ZEND_HASH_FOREACH_STR_KEY_VAL(ht, str, val) { |
1368 | | if (str) { |
1369 | | if (!(type_mask & MAY_BE_ARRAY_KEY_STRING)) { |
1370 | | zend_error_noreturn(E_CORE_ERROR, |
1371 | | "%s() missing array_key_string", ZSTR_VAL(name)); |
1372 | | } |
1373 | | } else { |
1374 | | if (!(type_mask & MAY_BE_ARRAY_KEY_LONG)) { |
1375 | | zend_error_noreturn(E_CORE_ERROR, |
1376 | | "%s() missing array_key_long", ZSTR_VAL(name)); |
1377 | | } |
1378 | | } |
1379 | | |
1380 | | const uint32_t array_type = 1u << (Z_TYPE_P(val) + MAY_BE_ARRAY_SHIFT); |
1381 | | if (!(type_mask & array_type)) { |
1382 | | zend_error_noreturn(E_CORE_ERROR, |
1383 | | "%s() missing array element type %s", |
1384 | | ZSTR_VAL(name), zend_get_type_by_const(Z_TYPE_P(retval))); |
1385 | | } |
1386 | | |
1387 | | /* Don't check all elements of large arrays. */ |
1388 | | if (++num_checked > 16) { |
1389 | | break; |
1390 | | } |
1391 | | } ZEND_HASH_FOREACH_END(); |
1392 | | } |
1393 | | #endif |
1394 | 0 | } |
1395 | | #endif |
1396 | | |
1397 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_missing_arg_error(const zend_execute_data *execute_data) |
1398 | 0 | { |
1399 | 0 | const zend_execute_data *ptr = EX(prev_execute_data); |
1400 | |
|
1401 | 0 | if (ptr && ptr->func && ZEND_USER_CODE(ptr->func->common.type)) { |
1402 | 0 | zend_throw_error(zend_ce_argument_count_error, "Too few arguments to function %s%s%s(), %d passed in %s on line %d and %s %d expected", |
1403 | 0 | EX(func)->common.scope ? ZSTR_VAL(EX(func)->common.scope->name) : "", |
1404 | 0 | EX(func)->common.scope ? "::" : "", |
1405 | 0 | ZSTR_VAL(EX(func)->common.function_name), |
1406 | 0 | EX_NUM_ARGS(), |
1407 | 0 | ZSTR_VAL(ptr->func->op_array.filename), |
1408 | 0 | ptr->opline->lineno, |
1409 | 0 | EX(func)->common.required_num_args == EX(func)->common.num_args ? "exactly" : "at least", |
1410 | 0 | EX(func)->common.required_num_args); |
1411 | 0 | } else { |
1412 | 0 | zend_throw_error(zend_ce_argument_count_error, "Too few arguments to function %s%s%s(), %d passed and %s %d expected", |
1413 | 0 | EX(func)->common.scope ? ZSTR_VAL(EX(func)->common.scope->name) : "", |
1414 | 0 | EX(func)->common.scope ? "::" : "", |
1415 | 0 | ZSTR_VAL(EX(func)->common.function_name), |
1416 | 0 | EX_NUM_ARGS(), |
1417 | 0 | EX(func)->common.required_num_args == EX(func)->common.num_args ? "exactly" : "at least", |
1418 | 0 | EX(func)->common.required_num_args); |
1419 | 0 | } |
1420 | 0 | } |
1421 | | |
1422 | | ZEND_API ZEND_COLD void zend_verify_return_error(const zend_function *zf, const zval *value) |
1423 | 0 | { |
1424 | 0 | const zend_arg_info *arg_info = &zf->common.arg_info[-1]; |
1425 | 0 | const char *fname, *fsep, *fclass; |
1426 | 0 | zend_string *need_msg; |
1427 | 0 | const char *given_msg; |
1428 | |
|
1429 | 0 | zend_verify_type_error_common( |
1430 | 0 | zf, arg_info, value, &fname, &fsep, &fclass, &need_msg, &given_msg); |
1431 | |
|
1432 | 0 | zend_type_error("%s%s%s(): Return value must be of type %s, %s returned", |
1433 | 0 | fclass, fsep, fname, ZSTR_VAL(need_msg), given_msg); |
1434 | |
|
1435 | 0 | zend_string_release(need_msg); |
1436 | 0 | } |
1437 | | |
1438 | | ZEND_API ZEND_COLD void zend_verify_never_error(const zend_function *zf) |
1439 | 0 | { |
1440 | 0 | zend_string *func_name = get_function_or_method_name(zf); |
1441 | |
|
1442 | 0 | zend_type_error("%s(): never-returning %s must not implicitly return", |
1443 | 0 | ZSTR_VAL(func_name), zf->common.scope ? "method" : "function"); |
1444 | |
|
1445 | 0 | zend_string_release(func_name); |
1446 | 0 | } |
1447 | | |
1448 | | #if ZEND_DEBUG |
1449 | | static ZEND_COLD void zend_verify_internal_return_error(const zend_function *zf, const zval *value) |
1450 | 0 | { |
1451 | 0 | const zend_arg_info *arg_info = &zf->common.arg_info[-1]; |
1452 | 0 | const char *fname, *fsep, *fclass; |
1453 | 0 | zend_string *need_msg; |
1454 | 0 | const char *given_msg; |
1455 | |
|
1456 | 0 | zend_verify_type_error_common( |
1457 | 0 | zf, arg_info, value, &fname, &fsep, &fclass, &need_msg, &given_msg); |
1458 | |
|
1459 | 0 | zend_error_noreturn(E_CORE_ERROR, "%s%s%s(): Return value must be of type %s, %s returned", |
1460 | 0 | fclass, fsep, fname, ZSTR_VAL(need_msg), given_msg); |
1461 | 0 | } |
1462 | | |
1463 | | static ZEND_COLD void zend_verify_void_return_error(const zend_function *zf, const char *returned_msg, const char *returned_kind) |
1464 | 0 | { |
1465 | 0 | const char *fname = ZSTR_VAL(zf->common.function_name); |
1466 | 0 | const char *fsep; |
1467 | 0 | const char *fclass; |
1468 | |
|
1469 | 0 | if (zf->common.scope) { |
1470 | 0 | fsep = "::"; |
1471 | 0 | fclass = ZSTR_VAL(zf->common.scope->name); |
1472 | 0 | } else { |
1473 | 0 | fsep = ""; |
1474 | 0 | fclass = ""; |
1475 | 0 | } |
1476 | |
|
1477 | 0 | zend_type_error("%s%s%s() must not return a value, %s%s returned", |
1478 | 0 | fclass, fsep, fname, returned_msg, returned_kind); |
1479 | 0 | } |
1480 | | |
1481 | | ZEND_API bool zend_verify_internal_return_type(const zend_function *zf, zval *ret) |
1482 | 6.10k | { |
1483 | 6.10k | const zend_internal_arg_info *ret_info = zf->internal_function.arg_info - 1; |
1484 | | |
1485 | 6.10k | if (ZEND_TYPE_FULL_MASK(ret_info->type) & MAY_BE_VOID) { |
1486 | 0 | if (UNEXPECTED(Z_TYPE_P(ret) != IS_NULL)) { |
1487 | 0 | zend_verify_void_return_error(zf, zend_zval_value_name(ret), ""); |
1488 | 0 | return 0; |
1489 | 0 | } |
1490 | 0 | return 1; |
1491 | 0 | } |
1492 | | |
1493 | 6.10k | if (UNEXPECTED(!zend_check_type(&ret_info->type, ret, NULL, true, /* is_internal */ true))) { |
1494 | 0 | zend_verify_internal_return_error(zf, ret); |
1495 | 0 | return 0; |
1496 | 0 | } |
1497 | | |
1498 | 6.10k | return 1; |
1499 | 6.10k | } |
1500 | | #endif |
1501 | | |
1502 | | static ZEND_COLD void zend_verify_missing_return_type(const zend_function *zf) |
1503 | 0 | { |
1504 | | /* VERIFY_RETURN_TYPE is not emitted for "void" functions, so this is always an error. */ |
1505 | 0 | zend_verify_return_error(zf, NULL); |
1506 | 0 | } |
1507 | | |
1508 | | static zend_always_inline bool zend_check_class_constant_type(const zend_class_constant *c, zval *constant) |
1509 | 0 | { |
1510 | 0 | ZEND_ASSERT(!Z_ISREF_P(constant)); |
1511 | 0 | if (EXPECTED(ZEND_TYPE_CONTAINS_CODE(c->type, Z_TYPE_P(constant)))) { |
1512 | 0 | return 1; |
1513 | 0 | } |
1514 | | |
1515 | 0 | if (((ZEND_TYPE_PURE_MASK(c->type) & MAY_BE_STATIC) || ZEND_TYPE_IS_COMPLEX(c->type)) && Z_TYPE_P(constant) == IS_OBJECT |
1516 | 0 | && zend_check_and_resolve_property_or_class_constant_class_type(c->ce, c->type, Z_OBJCE_P(constant))) { |
1517 | 0 | return 1; |
1518 | 0 | } |
1519 | | |
1520 | 0 | uint32_t type_mask = ZEND_TYPE_FULL_MASK(c->type); |
1521 | 0 | ZEND_ASSERT(!(type_mask & (MAY_BE_CALLABLE|MAY_BE_NEVER|MAY_BE_VOID))); |
1522 | 0 | return zend_verify_scalar_type_hint(type_mask, constant, true, false); |
1523 | 0 | } |
1524 | | |
1525 | | ZEND_API bool zend_never_inline zend_verify_class_constant_type(const zend_class_constant *c, const zend_string *name, zval *constant) |
1526 | 0 | { |
1527 | 0 | if (!zend_check_class_constant_type(c, constant)) { |
1528 | 0 | zend_verify_class_constant_type_error(c, name, constant); |
1529 | 0 | return 0; |
1530 | 0 | } |
1531 | | |
1532 | 0 | return 1; |
1533 | 0 | } |
1534 | | |
1535 | | static zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_use_object_as_array(const zend_object *object) |
1536 | 0 | { |
1537 | 0 | zend_throw_error(NULL, "Cannot use object of type %s as array", ZSTR_VAL(object->ce->name)); |
1538 | 0 | } |
1539 | | |
1540 | | static zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_illegal_array_offset_access(const zval *offset) |
1541 | 0 | { |
1542 | 0 | zend_illegal_container_offset(ZSTR_KNOWN(ZEND_STR_ARRAY), offset, BP_VAR_RW); |
1543 | 0 | } |
1544 | | |
1545 | | static zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_illegal_array_offset_isset(const zval *offset) |
1546 | 0 | { |
1547 | 0 | zend_illegal_container_offset(ZSTR_KNOWN(ZEND_STR_ARRAY), offset, BP_VAR_IS); |
1548 | 0 | } |
1549 | | |
1550 | | static zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_illegal_array_offset_unset(const zval *offset) |
1551 | 0 | { |
1552 | 0 | zend_illegal_container_offset(ZSTR_KNOWN(ZEND_STR_ARRAY), offset, BP_VAR_UNSET); |
1553 | 0 | } |
1554 | | |
1555 | | static zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_illegal_string_offset(const zval *offset, int type) |
1556 | 0 | { |
1557 | 0 | zend_illegal_container_offset(ZSTR_KNOWN(ZEND_STR_STRING), offset, type); |
1558 | 0 | } |
1559 | | |
1560 | | static zend_never_inline void zend_assign_to_object_dim(zend_object *obj, zval *dim, zval *value OPLINE_DC EXECUTE_DATA_DC) |
1561 | 0 | { |
1562 | 0 | obj->handlers->write_dimension(obj, dim, value); |
1563 | |
|
1564 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
1565 | 0 | ZVAL_COPY(EX_VAR(opline->result.var), value); |
1566 | 0 | } |
1567 | 0 | } |
1568 | | |
1569 | | static void frameless_observed_call_copy(zend_execute_data *call, uint32_t arg, zval *zv) |
1570 | 0 | { |
1571 | 0 | if (Z_ISUNDEF_P(zv)) { |
1572 | 0 | ZVAL_NULL(ZEND_CALL_VAR_NUM(call, arg)); |
1573 | 0 | } else { |
1574 | 0 | ZVAL_COPY_DEREF(ZEND_CALL_VAR_NUM(call, arg), zv); |
1575 | 0 | } |
1576 | 0 | } |
1577 | | |
1578 | | ZEND_API void zend_frameless_observed_call(zend_execute_data *execute_data) |
1579 | 0 | { |
1580 | 0 | const zend_op *opline = EX(opline); |
1581 | 0 | uint8_t num_args = ZEND_FLF_NUM_ARGS(opline->opcode); |
1582 | 0 | zend_function *fbc = ZEND_FLF_FUNC(opline); |
1583 | 0 | zval *result = EX_VAR(opline->result.var); |
1584 | |
|
1585 | 0 | zend_execute_data *call = zend_vm_stack_push_call_frame_ex(zend_vm_calc_used_stack(num_args, fbc), ZEND_CALL_NESTED_FUNCTION, fbc, num_args, NULL); |
1586 | 0 | call->prev_execute_data = execute_data; |
1587 | |
|
1588 | 0 | switch (num_args) { |
1589 | 0 | case 3: frameless_observed_call_copy(call, 2, zend_get_zval_ptr(opline+1, (opline+1)->op1_type, &(opline+1)->op1, execute_data)); ZEND_FALLTHROUGH; |
1590 | 0 | case 2: frameless_observed_call_copy(call, 1, zend_get_zval_ptr(opline, opline->op2_type, &opline->op2, execute_data)); ZEND_FALLTHROUGH; |
1591 | 0 | case 1: frameless_observed_call_copy(call, 0, zend_get_zval_ptr(opline, opline->op1_type, &opline->op1, execute_data)); |
1592 | 0 | } |
1593 | |
|
1594 | 0 | EG(current_execute_data) = call; |
1595 | |
|
1596 | 0 | zend_observer_fcall_begin_prechecked(call, ZEND_OBSERVER_DATA(fbc)); |
1597 | 0 | fbc->internal_function.handler(call, result); |
1598 | 0 | zend_observer_fcall_end(call, result); |
1599 | |
|
1600 | 0 | EG(current_execute_data) = execute_data; |
1601 | |
|
1602 | 0 | if (UNEXPECTED(EG(exception) != NULL)) { |
1603 | 0 | zend_rethrow_exception(execute_data); |
1604 | 0 | } |
1605 | |
|
1606 | 0 | zend_vm_stack_free_args(call); |
1607 | |
|
1608 | 0 | uint32_t call_info = ZEND_CALL_INFO(call); |
1609 | 0 | if (UNEXPECTED(call_info & ZEND_CALL_ALLOCATED)) { |
1610 | 0 | zend_vm_stack_free_call_frame_ex(call_info, call); |
1611 | 0 | } else { |
1612 | 0 | EG(vm_stack_top) = (zval*)call; |
1613 | 0 | } |
1614 | 0 | } |
1615 | | |
1616 | | |
1617 | | static zend_always_inline int zend_binary_op(zval *ret, zval *op1, zval *op2 OPLINE_DC) |
1618 | 0 | { |
1619 | 0 | static const binary_op_type zend_binary_ops[] = { |
1620 | 0 | add_function, |
1621 | 0 | sub_function, |
1622 | 0 | mul_function, |
1623 | 0 | div_function, |
1624 | 0 | mod_function, |
1625 | 0 | shift_left_function, |
1626 | 0 | shift_right_function, |
1627 | 0 | concat_function, |
1628 | 0 | bitwise_or_function, |
1629 | 0 | bitwise_and_function, |
1630 | 0 | bitwise_xor_function, |
1631 | 0 | pow_function |
1632 | 0 | }; |
1633 | | /* size_t cast makes GCC to better optimize 64-bit PIC code */ |
1634 | 0 | size_t opcode = (size_t)opline->extended_value; |
1635 | |
|
1636 | 0 | return zend_binary_ops[opcode - ZEND_ADD](ret, op1, op2); |
1637 | 0 | } |
1638 | | |
1639 | | static zend_never_inline void zend_binary_assign_op_obj_dim(zend_object *obj, zval *property OPLINE_DC EXECUTE_DATA_DC) |
1640 | 0 | { |
1641 | 0 | zval *value; |
1642 | 0 | zval *z; |
1643 | 0 | zval rv, res; |
1644 | |
|
1645 | 0 | GC_ADDREF(obj); |
1646 | 0 | if (property && UNEXPECTED(Z_ISUNDEF_P(property))) { |
1647 | 0 | property = ZVAL_UNDEFINED_OP2(); |
1648 | 0 | } |
1649 | 0 | value = get_op_data_zval_ptr_r((opline+1)->op1_type, (opline+1)->op1); |
1650 | 0 | if ((z = obj->handlers->read_dimension(obj, property, BP_VAR_R, &rv)) != NULL) { |
1651 | |
|
1652 | 0 | if (zend_binary_op(&res, z, value OPLINE_CC) == SUCCESS) { |
1653 | 0 | obj->handlers->write_dimension(obj, property, &res); |
1654 | 0 | } |
1655 | 0 | if (z == &rv) { |
1656 | 0 | zval_ptr_dtor(&rv); |
1657 | 0 | } |
1658 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
1659 | 0 | ZVAL_COPY(EX_VAR(opline->result.var), &res); |
1660 | 0 | } |
1661 | 0 | zval_ptr_dtor(&res); |
1662 | 0 | } else { |
1663 | 0 | zend_use_object_as_array(obj); |
1664 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
1665 | 0 | ZVAL_NULL(EX_VAR(opline->result.var)); |
1666 | 0 | } |
1667 | 0 | } |
1668 | 0 | FREE_OP((opline+1)->op1_type, (opline+1)->op1.var); |
1669 | 0 | if (UNEXPECTED(GC_DELREF(obj) == 0)) { |
1670 | 0 | zend_objects_store_del(obj); |
1671 | 0 | } |
1672 | 0 | } |
1673 | | |
1674 | | static zend_never_inline void zend_binary_assign_op_typed_ref(zend_reference *ref, zval *value OPLINE_DC EXECUTE_DATA_DC) |
1675 | 0 | { |
1676 | 0 | zval z_copy; |
1677 | | |
1678 | | /* Make sure that in-place concatenation is used if the LHS is a string. */ |
1679 | 0 | if (opline->extended_value == ZEND_CONCAT && Z_TYPE(ref->val) == IS_STRING) { |
1680 | 0 | concat_function(&ref->val, &ref->val, value); |
1681 | 0 | ZEND_ASSERT(Z_TYPE(ref->val) == IS_STRING && "Concat should return string"); |
1682 | 0 | return; |
1683 | 0 | } |
1684 | | |
1685 | 0 | zend_binary_op(&z_copy, &ref->val, value OPLINE_CC); |
1686 | 0 | if (EXPECTED(zend_verify_ref_assignable_zval(ref, &z_copy, EX_USES_STRICT_TYPES()))) { |
1687 | 0 | zval_ptr_dtor(&ref->val); |
1688 | 0 | ZVAL_COPY_VALUE(&ref->val, &z_copy); |
1689 | 0 | } else { |
1690 | 0 | zval_ptr_dtor(&z_copy); |
1691 | 0 | } |
1692 | 0 | } |
1693 | | |
1694 | | static zend_never_inline void zend_binary_assign_op_typed_prop(const zend_property_info *prop_info, zval *zptr, zval *value OPLINE_DC EXECUTE_DATA_DC) |
1695 | 0 | { |
1696 | 0 | zval z_copy; |
1697 | | |
1698 | | /* Make sure that in-place concatenation is used if the LHS is a string. */ |
1699 | 0 | if (opline->extended_value == ZEND_CONCAT && Z_TYPE_P(zptr) == IS_STRING) { |
1700 | 0 | concat_function(zptr, zptr, value); |
1701 | 0 | ZEND_ASSERT(Z_TYPE_P(zptr) == IS_STRING && "Concat should return string"); |
1702 | 0 | return; |
1703 | 0 | } |
1704 | | |
1705 | 0 | zend_binary_op(&z_copy, zptr, value OPLINE_CC); |
1706 | 0 | if (EXPECTED(zend_verify_property_type(prop_info, &z_copy, EX_USES_STRICT_TYPES()))) { |
1707 | 0 | zval_ptr_dtor(zptr); |
1708 | 0 | ZVAL_COPY_VALUE(zptr, &z_copy); |
1709 | 0 | } else { |
1710 | 0 | zval_ptr_dtor(&z_copy); |
1711 | 0 | } |
1712 | 0 | } |
1713 | | |
1714 | | static zend_never_inline zend_long zend_check_string_offset(zval *dim, int type EXECUTE_DATA_DC) |
1715 | 0 | { |
1716 | 0 | zend_long offset; |
1717 | |
|
1718 | 0 | try_again: |
1719 | 0 | switch(Z_TYPE_P(dim)) { |
1720 | 0 | case IS_LONG: |
1721 | 0 | return Z_LVAL_P(dim); |
1722 | 0 | case IS_STRING: |
1723 | 0 | { |
1724 | 0 | bool trailing_data = false; |
1725 | | /* For BC reasons we allow errors so that we can warn on leading numeric string */ |
1726 | 0 | if (IS_LONG == is_numeric_string_ex(Z_STRVAL_P(dim), Z_STRLEN_P(dim), &offset, NULL, |
1727 | 0 | /* allow errors */ true, NULL, &trailing_data)) { |
1728 | 0 | if (UNEXPECTED(trailing_data) && type != BP_VAR_UNSET) { |
1729 | 0 | zend_error(E_WARNING, "Illegal string offset \"%s\"", Z_STRVAL_P(dim)); |
1730 | 0 | } |
1731 | 0 | return offset; |
1732 | 0 | } |
1733 | 0 | zend_illegal_string_offset(dim, type); |
1734 | 0 | return 0; |
1735 | 0 | } |
1736 | 0 | case IS_DOUBLE: |
1737 | | /* Suppress potential double warning */ |
1738 | 0 | zend_error(E_WARNING, "String offset cast occurred"); |
1739 | 0 | return zend_dval_to_lval_silent(Z_DVAL_P(dim)); |
1740 | 0 | case IS_UNDEF: |
1741 | 0 | ZVAL_UNDEFINED_OP2(); |
1742 | 0 | ZEND_FALLTHROUGH; |
1743 | 0 | case IS_NULL: |
1744 | 0 | case IS_FALSE: |
1745 | 0 | case IS_TRUE: |
1746 | 0 | zend_error(E_WARNING, "String offset cast occurred"); |
1747 | 0 | break; |
1748 | 0 | case IS_REFERENCE: |
1749 | 0 | dim = Z_REFVAL_P(dim); |
1750 | 0 | goto try_again; |
1751 | 0 | default: |
1752 | 0 | zend_illegal_string_offset(dim, type); |
1753 | 0 | return 0; |
1754 | 0 | } |
1755 | | |
1756 | 0 | return zval_get_long_func(dim, /* is_strict */ false); |
1757 | 0 | } |
1758 | | |
1759 | | ZEND_API ZEND_COLD void zend_wrong_string_offset_error(void) |
1760 | 0 | { |
1761 | 0 | const char *msg = NULL; |
1762 | 0 | const zend_execute_data *execute_data = EG(current_execute_data); |
1763 | 0 | const zend_op *opline = execute_data->opline; |
1764 | |
|
1765 | 0 | if (UNEXPECTED(EG(exception) != NULL)) { |
1766 | 0 | return; |
1767 | 0 | } |
1768 | | |
1769 | 0 | switch (opline->opcode) { |
1770 | 0 | case ZEND_ASSIGN_DIM_OP: |
1771 | 0 | msg = "Cannot use assign-op operators with string offsets"; |
1772 | 0 | break; |
1773 | 0 | case ZEND_FETCH_LIST_W: |
1774 | 0 | msg = "Cannot create references to/from string offsets"; |
1775 | 0 | break; |
1776 | 0 | case ZEND_FETCH_DIM_W: |
1777 | 0 | case ZEND_FETCH_DIM_RW: |
1778 | 0 | case ZEND_FETCH_DIM_FUNC_ARG: |
1779 | 0 | case ZEND_FETCH_DIM_UNSET: |
1780 | 0 | switch (opline->extended_value) { |
1781 | 0 | case ZEND_FETCH_DIM_REF: |
1782 | 0 | msg = "Cannot create references to/from string offsets"; |
1783 | 0 | break; |
1784 | 0 | case ZEND_FETCH_DIM_DIM: |
1785 | 0 | msg = "Cannot use string offset as an array"; |
1786 | 0 | break; |
1787 | 0 | case ZEND_FETCH_DIM_OBJ: |
1788 | 0 | msg = "Cannot use string offset as an object"; |
1789 | 0 | break; |
1790 | 0 | case ZEND_FETCH_DIM_INCDEC: |
1791 | 0 | msg = "Cannot increment/decrement string offsets"; |
1792 | 0 | break; |
1793 | 0 | EMPTY_SWITCH_DEFAULT_CASE(); |
1794 | 0 | } |
1795 | 0 | break; |
1796 | 0 | EMPTY_SWITCH_DEFAULT_CASE(); |
1797 | 0 | } |
1798 | 0 | ZEND_ASSERT(msg != NULL); |
1799 | 0 | zend_throw_error(NULL, "%s", msg); |
1800 | 0 | } |
1801 | | |
1802 | | ZEND_COLD static zend_result ZEND_FASTCALL get_deprecation_suffix_from_attribute(HashTable *attributes, zend_class_entry* scope, zend_string **message_suffix) |
1803 | 0 | { |
1804 | 0 | *message_suffix = ZSTR_EMPTY_ALLOC(); |
1805 | |
|
1806 | 0 | if (!attributes) { |
1807 | 0 | return SUCCESS; |
1808 | 0 | } |
1809 | | |
1810 | 0 | zend_attribute *deprecated = zend_get_attribute_str(attributes, "deprecated", sizeof("deprecated")-1); |
1811 | |
|
1812 | 0 | if (!deprecated) { |
1813 | 0 | return SUCCESS; |
1814 | 0 | } |
1815 | | |
1816 | 0 | if (deprecated->argc == 0) { |
1817 | 0 | return SUCCESS; |
1818 | 0 | } |
1819 | | |
1820 | 0 | zend_result result = FAILURE; |
1821 | |
|
1822 | 0 | zend_string *message = ZSTR_EMPTY_ALLOC(); |
1823 | 0 | zend_string *since = ZSTR_EMPTY_ALLOC(); |
1824 | |
|
1825 | 0 | zval obj; |
1826 | 0 | ZVAL_UNDEF(&obj); |
1827 | 0 | zval *z; |
1828 | | |
1829 | | /* Construct the Deprecated object to correctly handle parameter processing. */ |
1830 | 0 | if (FAILURE == zend_get_attribute_object(&obj, zend_ce_deprecated, deprecated, scope, NULL)) { |
1831 | 0 | goto out; |
1832 | 0 | } |
1833 | | |
1834 | | /* Extract the $message property. */ |
1835 | 0 | z = zend_read_property_ex(zend_ce_deprecated, Z_OBJ_P(&obj), ZSTR_KNOWN(ZEND_STR_MESSAGE), false, NULL); |
1836 | 0 | ZEND_ASSERT(z != &EG(uninitialized_zval)); |
1837 | 0 | if (Z_TYPE_P(z) == IS_STRING) { |
1838 | 0 | message = Z_STR_P(z); |
1839 | 0 | } |
1840 | | |
1841 | | /* Extract the $since property. */ |
1842 | 0 | z = zend_read_property_ex(zend_ce_deprecated, Z_OBJ_P(&obj), ZSTR_KNOWN(ZEND_STR_SINCE), false, NULL); |
1843 | 0 | ZEND_ASSERT(z != &EG(uninitialized_zval)); |
1844 | 0 | if (Z_TYPE_P(z) == IS_STRING) { |
1845 | 0 | since = Z_STR_P(z); |
1846 | 0 | } |
1847 | | |
1848 | | /* Construct the suffix. */ |
1849 | 0 | *message_suffix = zend_strpprintf_unchecked( |
1850 | 0 | 0, |
1851 | 0 | "%s%S%s%S", |
1852 | 0 | ZSTR_LEN(since) > 0 ? " since " : "", |
1853 | 0 | since, |
1854 | 0 | ZSTR_LEN(message) > 0 ? ", " : "", |
1855 | 0 | message |
1856 | 0 | ); |
1857 | |
|
1858 | 0 | result = SUCCESS; |
1859 | |
|
1860 | 0 | out: |
1861 | |
|
1862 | 0 | zval_ptr_dtor(&obj); |
1863 | |
|
1864 | 0 | return result; |
1865 | 0 | } |
1866 | | |
1867 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_deprecated_function(const zend_function *fbc) |
1868 | 0 | { |
1869 | 0 | zend_string *message_suffix = ZSTR_EMPTY_ALLOC(); |
1870 | |
|
1871 | 0 | if (get_deprecation_suffix_from_attribute(fbc->common.attributes, fbc->common.scope, &message_suffix) == FAILURE) { |
1872 | 0 | return; |
1873 | 0 | } |
1874 | | |
1875 | 0 | int code = fbc->type == ZEND_INTERNAL_FUNCTION ? E_DEPRECATED : E_USER_DEPRECATED; |
1876 | |
|
1877 | 0 | if (fbc->common.scope) { |
1878 | 0 | zend_error_unchecked(code, "Method %s::%s() is deprecated%S", |
1879 | 0 | ZSTR_VAL(fbc->common.scope->name), |
1880 | 0 | ZSTR_VAL(fbc->common.function_name), |
1881 | 0 | message_suffix |
1882 | 0 | ); |
1883 | 0 | } else { |
1884 | 0 | zend_error_unchecked(code, "Function %s() is deprecated%S", |
1885 | 0 | ZSTR_VAL(fbc->common.function_name), |
1886 | 0 | message_suffix |
1887 | 0 | ); |
1888 | 0 | } |
1889 | |
|
1890 | 0 | zend_string_release(message_suffix); |
1891 | 0 | } |
1892 | | |
1893 | | ZEND_COLD static zend_result ZEND_FASTCALL get_nodiscard_suffix_from_attribute(HashTable *attributes, zend_class_entry* scope, zend_string **message_suffix) |
1894 | 0 | { |
1895 | 0 | *message_suffix = ZSTR_EMPTY_ALLOC(); |
1896 | |
|
1897 | 0 | if (!attributes) { |
1898 | 0 | return SUCCESS; |
1899 | 0 | } |
1900 | | |
1901 | 0 | zend_attribute *nodiscard = zend_get_attribute_str(attributes, "nodiscard", sizeof("nodiscard")-1); |
1902 | |
|
1903 | 0 | if (!nodiscard) { |
1904 | 0 | return SUCCESS; |
1905 | 0 | } |
1906 | | |
1907 | 0 | if (nodiscard->argc == 0) { |
1908 | 0 | return SUCCESS; |
1909 | 0 | } |
1910 | | |
1911 | 0 | zend_result result = FAILURE; |
1912 | |
|
1913 | 0 | zend_string *message = ZSTR_EMPTY_ALLOC(); |
1914 | |
|
1915 | 0 | zval obj; |
1916 | 0 | ZVAL_UNDEF(&obj); |
1917 | 0 | zval *z; |
1918 | | |
1919 | | /* Construct the NoDiscard object to correctly handle parameter processing. */ |
1920 | 0 | if (FAILURE == zend_get_attribute_object(&obj, zend_ce_nodiscard, nodiscard, scope, NULL)) { |
1921 | 0 | goto out; |
1922 | 0 | } |
1923 | | |
1924 | | /* Extract the $message property. */ |
1925 | 0 | z = zend_read_property_ex(zend_ce_nodiscard, Z_OBJ_P(&obj), ZSTR_KNOWN(ZEND_STR_MESSAGE), false, NULL); |
1926 | 0 | ZEND_ASSERT(z != &EG(uninitialized_zval)); |
1927 | 0 | if (Z_TYPE_P(z) == IS_STRING) { |
1928 | 0 | message = Z_STR_P(z); |
1929 | 0 | } |
1930 | | |
1931 | | /* Construct the suffix. */ |
1932 | 0 | *message_suffix = zend_strpprintf_unchecked( |
1933 | 0 | 0, |
1934 | 0 | "%s%S", |
1935 | 0 | ZSTR_LEN(message) > 0 ? ", " : "", |
1936 | 0 | message |
1937 | 0 | ); |
1938 | |
|
1939 | 0 | result = SUCCESS; |
1940 | |
|
1941 | 0 | out: |
1942 | |
|
1943 | 0 | zval_ptr_dtor(&obj); |
1944 | |
|
1945 | 0 | return result; |
1946 | 0 | } |
1947 | | |
1948 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_nodiscard_function(const zend_function *fbc) |
1949 | 0 | { |
1950 | 0 | zend_string *message_suffix = ZSTR_EMPTY_ALLOC(); |
1951 | |
|
1952 | 0 | if (get_nodiscard_suffix_from_attribute(fbc->common.attributes, fbc->common.scope, &message_suffix) == FAILURE) { |
1953 | 0 | return; |
1954 | 0 | } |
1955 | | |
1956 | 0 | int code = fbc->type == ZEND_INTERNAL_FUNCTION ? E_WARNING : E_USER_WARNING; |
1957 | |
|
1958 | 0 | if (fbc->common.scope) { |
1959 | 0 | zend_error_unchecked(code, "The return value of method %s::%s() should either be used or intentionally ignored by casting it as (void)%S", |
1960 | 0 | ZSTR_VAL(fbc->common.scope->name), |
1961 | 0 | ZSTR_VAL(fbc->common.function_name), |
1962 | 0 | message_suffix |
1963 | 0 | ); |
1964 | 0 | } else { |
1965 | 0 | zend_error_unchecked(code, "The return value of function %s() should either be used or intentionally ignored by casting it as (void)%S", |
1966 | 0 | ZSTR_VAL(fbc->common.function_name), |
1967 | 0 | message_suffix |
1968 | 0 | ); |
1969 | 0 | } |
1970 | |
|
1971 | 0 | zend_string_release(message_suffix); |
1972 | 0 | } |
1973 | | |
1974 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_deprecated_class_constant(const zend_class_constant *c, const zend_string *constant_name) |
1975 | 0 | { |
1976 | 0 | zend_string *message_suffix = ZSTR_EMPTY_ALLOC(); |
1977 | |
|
1978 | 0 | if (get_deprecation_suffix_from_attribute(c->attributes, c->ce, &message_suffix) == FAILURE) { |
1979 | 0 | return; |
1980 | 0 | } |
1981 | | |
1982 | 0 | int code = c->ce->type == ZEND_INTERNAL_CLASS ? E_DEPRECATED : E_USER_DEPRECATED; |
1983 | 0 | char *type = (ZEND_CLASS_CONST_FLAGS(c) & ZEND_CLASS_CONST_IS_CASE) ? "Enum case" : "Constant"; |
1984 | |
|
1985 | 0 | zend_error_unchecked(code, "%s %s::%s is deprecated%S", |
1986 | 0 | type, |
1987 | 0 | ZSTR_VAL(c->ce->name), |
1988 | 0 | ZSTR_VAL(constant_name), |
1989 | 0 | message_suffix |
1990 | 0 | ); |
1991 | |
|
1992 | 0 | zend_string_release(message_suffix); |
1993 | 0 | } |
1994 | | |
1995 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_deprecated_constant(const zend_constant *c, const zend_string *constant_name) |
1996 | 0 | { |
1997 | 0 | zend_string *message_suffix = ZSTR_EMPTY_ALLOC(); |
1998 | |
|
1999 | 0 | if (get_deprecation_suffix_from_attribute(c->attributes, NULL, &message_suffix) == FAILURE) { |
2000 | 0 | return; |
2001 | 0 | } |
2002 | | |
2003 | 0 | int code = ZEND_CONSTANT_MODULE_NUMBER(c) == PHP_USER_CONSTANT ? E_USER_DEPRECATED : E_DEPRECATED; |
2004 | |
|
2005 | 0 | zend_error_unchecked(code, "Constant %s is deprecated%S", |
2006 | 0 | ZSTR_VAL(constant_name), |
2007 | 0 | message_suffix |
2008 | 0 | ); |
2009 | |
|
2010 | 0 | zend_string_release(message_suffix); |
2011 | 0 | } |
2012 | | |
2013 | | ZEND_API ZEND_COLD void zend_use_of_deprecated_trait( |
2014 | | zend_class_entry *trait, |
2015 | | const zend_string *used_by |
2016 | 0 | ) { |
2017 | 0 | zend_string *message_suffix = ZSTR_EMPTY_ALLOC(); |
2018 | |
|
2019 | 0 | if (get_deprecation_suffix_from_attribute(trait->attributes, trait, &message_suffix) == FAILURE) { |
2020 | 0 | return; |
2021 | 0 | } |
2022 | | |
2023 | 0 | int code = trait->type == ZEND_INTERNAL_CLASS ? E_DEPRECATED : E_USER_DEPRECATED; |
2024 | |
|
2025 | 0 | zend_error_unchecked(code, "Trait %s used by %s is deprecated%S", |
2026 | 0 | ZSTR_VAL(trait->name), |
2027 | 0 | ZSTR_VAL(used_by), |
2028 | 0 | message_suffix |
2029 | 0 | ); |
2030 | |
|
2031 | 0 | zend_string_release(message_suffix); |
2032 | 0 | } |
2033 | | |
2034 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_false_to_array_deprecated(void) |
2035 | 0 | { |
2036 | 0 | zend_error(E_DEPRECATED, "Automatic conversion of false to array is deprecated"); |
2037 | 0 | } |
2038 | | |
2039 | | static zend_never_inline void zend_assign_to_string_offset(zval *str, zval *dim, zval *value OPLINE_DC EXECUTE_DATA_DC) |
2040 | 0 | { |
2041 | 0 | zend_uchar c; |
2042 | 0 | size_t string_len; |
2043 | 0 | zend_long offset; |
2044 | 0 | zend_string *s; |
2045 | | |
2046 | | /* separate string */ |
2047 | 0 | if (Z_REFCOUNTED_P(str) && Z_REFCOUNT_P(str) == 1) { |
2048 | 0 | s = Z_STR_P(str); |
2049 | 0 | } else { |
2050 | 0 | s = zend_string_init(Z_STRVAL_P(str), Z_STRLEN_P(str), 0); |
2051 | 0 | ZSTR_H(s) = ZSTR_H(Z_STR_P(str)); |
2052 | 0 | if (Z_REFCOUNTED_P(str)) { |
2053 | 0 | GC_DELREF(Z_STR_P(str)); |
2054 | 0 | } |
2055 | 0 | ZVAL_NEW_STR(str, s); |
2056 | 0 | } |
2057 | |
|
2058 | 0 | if (EXPECTED(Z_TYPE_P(dim) == IS_LONG)) { |
2059 | 0 | offset = Z_LVAL_P(dim); |
2060 | 0 | } else { |
2061 | | /* The string may be destroyed while throwing the notice. |
2062 | | * Temporarily increase the refcount to detect this situation. */ |
2063 | 0 | GC_ADDREF(s); |
2064 | 0 | offset = zend_check_string_offset(dim, BP_VAR_W EXECUTE_DATA_CC); |
2065 | 0 | if (UNEXPECTED(GC_DELREF(s) == 0)) { |
2066 | 0 | zend_string_efree(s); |
2067 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2068 | 0 | ZVAL_NULL(EX_VAR(opline->result.var)); |
2069 | 0 | } |
2070 | 0 | return; |
2071 | 0 | } |
2072 | | /* Illegal offset assignment */ |
2073 | 0 | if (UNEXPECTED(EG(exception) != NULL)) { |
2074 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2075 | 0 | ZVAL_UNDEF(EX_VAR(opline->result.var)); |
2076 | 0 | } |
2077 | 0 | return; |
2078 | 0 | } |
2079 | 0 | } |
2080 | | |
2081 | 0 | if (UNEXPECTED(offset < -(zend_long)ZSTR_LEN(s))) { |
2082 | | /* Error on negative offset */ |
2083 | 0 | zend_error(E_WARNING, "Illegal string offset " ZEND_LONG_FMT, offset); |
2084 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2085 | 0 | ZVAL_NULL(EX_VAR(opline->result.var)); |
2086 | 0 | } |
2087 | 0 | return; |
2088 | 0 | } |
2089 | | |
2090 | 0 | if (offset < 0) { /* Handle negative offset */ |
2091 | 0 | offset += (zend_long)ZSTR_LEN(s); |
2092 | 0 | } |
2093 | |
|
2094 | 0 | if (UNEXPECTED(Z_TYPE_P(value) != IS_STRING)) { |
2095 | 0 | zend_string *tmp; |
2096 | | |
2097 | | /* The string may be destroyed while throwing the notice. |
2098 | | * Temporarily increase the refcount to detect this situation. */ |
2099 | 0 | GC_ADDREF(s); |
2100 | 0 | if (UNEXPECTED(Z_TYPE_P(value) == IS_UNDEF)) { |
2101 | 0 | zval_undefined_cv((opline+1)->op1.var EXECUTE_DATA_CC); |
2102 | 0 | } |
2103 | | /* Convert to string, just the time to pick the 1st byte */ |
2104 | 0 | tmp = zval_try_get_string_func(value); |
2105 | 0 | if (UNEXPECTED(GC_DELREF(s) == 0)) { |
2106 | 0 | zend_string_efree(s); |
2107 | 0 | if (tmp) { |
2108 | 0 | zend_string_release_ex(tmp, 0); |
2109 | 0 | } |
2110 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2111 | 0 | ZVAL_NULL(EX_VAR(opline->result.var)); |
2112 | 0 | } |
2113 | 0 | return; |
2114 | 0 | } |
2115 | 0 | if (UNEXPECTED(!tmp)) { |
2116 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2117 | 0 | ZVAL_UNDEF(EX_VAR(opline->result.var)); |
2118 | 0 | } |
2119 | 0 | return; |
2120 | 0 | } |
2121 | | |
2122 | 0 | string_len = ZSTR_LEN(tmp); |
2123 | 0 | c = (zend_uchar)ZSTR_VAL(tmp)[0]; |
2124 | 0 | zend_string_release_ex(tmp, 0); |
2125 | 0 | } else { |
2126 | 0 | string_len = Z_STRLEN_P(value); |
2127 | 0 | c = (zend_uchar)Z_STRVAL_P(value)[0]; |
2128 | 0 | } |
2129 | | |
2130 | 0 | if (UNEXPECTED(string_len != 1)) { |
2131 | 0 | if (string_len == 0) { |
2132 | | /* Error on empty input string */ |
2133 | 0 | zend_throw_error(NULL, "Cannot assign an empty string to a string offset"); |
2134 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2135 | 0 | ZVAL_NULL(EX_VAR(opline->result.var)); |
2136 | 0 | } |
2137 | 0 | return; |
2138 | 0 | } |
2139 | | |
2140 | | /* The string may be destroyed while throwing the notice. |
2141 | | * Temporarily increase the refcount to detect this situation. */ |
2142 | 0 | GC_ADDREF(s); |
2143 | 0 | zend_error(E_WARNING, "Only the first byte will be assigned to the string offset"); |
2144 | 0 | if (UNEXPECTED(GC_DELREF(s) == 0)) { |
2145 | 0 | zend_string_efree(s); |
2146 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2147 | 0 | ZVAL_NULL(EX_VAR(opline->result.var)); |
2148 | 0 | } |
2149 | 0 | return; |
2150 | 0 | } |
2151 | | /* Illegal offset assignment */ |
2152 | 0 | if (UNEXPECTED(EG(exception) != NULL)) { |
2153 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2154 | 0 | ZVAL_UNDEF(EX_VAR(opline->result.var)); |
2155 | 0 | } |
2156 | 0 | return; |
2157 | 0 | } |
2158 | 0 | } |
2159 | | |
2160 | 0 | if ((size_t)offset >= ZSTR_LEN(s)) { |
2161 | | /* Extend string if needed */ |
2162 | 0 | zend_long old_len = ZSTR_LEN(s); |
2163 | 0 | ZVAL_NEW_STR(str, zend_string_extend(s, (size_t)offset + 1, 0)); |
2164 | 0 | memset(Z_STRVAL_P(str) + old_len, ' ', offset - old_len); |
2165 | 0 | Z_STRVAL_P(str)[offset+1] = 0; |
2166 | 0 | } else { |
2167 | 0 | zend_string_forget_hash_val(Z_STR_P(str)); |
2168 | 0 | } |
2169 | |
|
2170 | 0 | Z_STRVAL_P(str)[offset] = c; |
2171 | |
|
2172 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2173 | | /* Return the new character */ |
2174 | 0 | ZVAL_CHAR(EX_VAR(opline->result.var), c); |
2175 | 0 | } |
2176 | 0 | } |
2177 | | |
2178 | | static zend_property_info *zend_get_prop_not_accepting_double(zend_reference *ref) |
2179 | 0 | { |
2180 | 0 | zend_property_info *prop; |
2181 | 0 | ZEND_REF_FOREACH_TYPE_SOURCES(ref, prop) { |
2182 | 0 | if (!(ZEND_TYPE_FULL_MASK(prop->type) & MAY_BE_DOUBLE)) { |
2183 | 0 | return prop; |
2184 | 0 | } |
2185 | 0 | } ZEND_REF_FOREACH_TYPE_SOURCES_END(); |
2186 | 0 | return NULL; |
2187 | 0 | } |
2188 | | |
2189 | | static ZEND_COLD zend_long zend_throw_incdec_ref_error( |
2190 | | zend_reference *ref, zend_property_info *error_prop OPLINE_DC) |
2191 | 0 | { |
2192 | 0 | zend_string *type_str = zend_type_to_string(error_prop->type); |
2193 | 0 | if (ZEND_IS_INCREMENT(opline->opcode)) { |
2194 | 0 | zend_type_error( |
2195 | 0 | "Cannot increment a reference held by property %s::$%s of type %s past its maximal value", |
2196 | 0 | ZSTR_VAL(error_prop->ce->name), |
2197 | 0 | zend_get_unmangled_property_name(error_prop->name), |
2198 | 0 | ZSTR_VAL(type_str)); |
2199 | 0 | zend_string_release(type_str); |
2200 | 0 | return ZEND_LONG_MAX; |
2201 | 0 | } else { |
2202 | 0 | zend_type_error( |
2203 | 0 | "Cannot decrement a reference held by property %s::$%s of type %s past its minimal value", |
2204 | 0 | ZSTR_VAL(error_prop->ce->name), |
2205 | 0 | zend_get_unmangled_property_name(error_prop->name), |
2206 | 0 | ZSTR_VAL(type_str)); |
2207 | 0 | zend_string_release(type_str); |
2208 | 0 | return ZEND_LONG_MIN; |
2209 | 0 | } |
2210 | 0 | } |
2211 | | |
2212 | 0 | static ZEND_COLD zend_long zend_throw_incdec_prop_error(zend_property_info *prop OPLINE_DC) { |
2213 | 0 | zend_string *type_str = zend_type_to_string(prop->type); |
2214 | 0 | if (ZEND_IS_INCREMENT(opline->opcode)) { |
2215 | 0 | zend_type_error("Cannot increment property %s::$%s of type %s past its maximal value", |
2216 | 0 | ZSTR_VAL(prop->ce->name), |
2217 | 0 | zend_get_unmangled_property_name(prop->name), |
2218 | 0 | ZSTR_VAL(type_str)); |
2219 | 0 | zend_string_release(type_str); |
2220 | 0 | return ZEND_LONG_MAX; |
2221 | 0 | } else { |
2222 | 0 | zend_type_error("Cannot decrement property %s::$%s of type %s past its minimal value", |
2223 | 0 | ZSTR_VAL(prop->ce->name), |
2224 | 0 | zend_get_unmangled_property_name(prop->name), |
2225 | 0 | ZSTR_VAL(type_str)); |
2226 | 0 | zend_string_release(type_str); |
2227 | 0 | return ZEND_LONG_MIN; |
2228 | 0 | } |
2229 | 0 | } |
2230 | | |
2231 | | static void zend_incdec_typed_ref(zend_reference *ref, zval *copy OPLINE_DC EXECUTE_DATA_DC) |
2232 | 0 | { |
2233 | 0 | zval tmp; |
2234 | 0 | zval *var_ptr = &ref->val; |
2235 | |
|
2236 | 0 | if (!copy) { |
2237 | 0 | copy = &tmp; |
2238 | 0 | } |
2239 | |
|
2240 | 0 | ZVAL_COPY(copy, var_ptr); |
2241 | |
|
2242 | 0 | if (ZEND_IS_INCREMENT(opline->opcode)) { |
2243 | 0 | increment_function(var_ptr); |
2244 | 0 | } else { |
2245 | 0 | decrement_function(var_ptr); |
2246 | 0 | } |
2247 | |
|
2248 | 0 | if (UNEXPECTED(Z_TYPE_P(var_ptr) == IS_DOUBLE) && Z_TYPE_P(copy) == IS_LONG) { |
2249 | 0 | zend_property_info *error_prop = zend_get_prop_not_accepting_double(ref); |
2250 | 0 | if (UNEXPECTED(error_prop)) { |
2251 | 0 | zend_long val = zend_throw_incdec_ref_error(ref, error_prop OPLINE_CC); |
2252 | 0 | ZVAL_LONG(var_ptr, val); |
2253 | 0 | } |
2254 | 0 | } else if (UNEXPECTED(!zend_verify_ref_assignable_zval(ref, var_ptr, EX_USES_STRICT_TYPES()))) { |
2255 | 0 | zval_ptr_dtor(var_ptr); |
2256 | 0 | ZVAL_COPY_VALUE(var_ptr, copy); |
2257 | 0 | ZVAL_UNDEF(copy); |
2258 | 0 | } else if (copy == &tmp) { |
2259 | 0 | zval_ptr_dtor(&tmp); |
2260 | 0 | } |
2261 | 0 | } |
2262 | | |
2263 | | static void zend_incdec_typed_prop(zend_property_info *prop_info, zval *var_ptr, zval *copy OPLINE_DC EXECUTE_DATA_DC) |
2264 | 0 | { |
2265 | 0 | zval tmp; |
2266 | |
|
2267 | 0 | if (!copy) { |
2268 | 0 | copy = &tmp; |
2269 | 0 | } |
2270 | |
|
2271 | 0 | ZVAL_COPY(copy, var_ptr); |
2272 | |
|
2273 | 0 | if (ZEND_IS_INCREMENT(opline->opcode)) { |
2274 | 0 | increment_function(var_ptr); |
2275 | 0 | } else { |
2276 | 0 | decrement_function(var_ptr); |
2277 | 0 | } |
2278 | |
|
2279 | 0 | if (UNEXPECTED(Z_TYPE_P(var_ptr) == IS_DOUBLE) && Z_TYPE_P(copy) == IS_LONG) { |
2280 | 0 | if (!(ZEND_TYPE_FULL_MASK(prop_info->type) & MAY_BE_DOUBLE)) { |
2281 | 0 | zend_long val = zend_throw_incdec_prop_error(prop_info OPLINE_CC); |
2282 | 0 | ZVAL_LONG(var_ptr, val); |
2283 | 0 | } |
2284 | 0 | } else if (UNEXPECTED(!zend_verify_property_type(prop_info, var_ptr, EX_USES_STRICT_TYPES()))) { |
2285 | 0 | zval_ptr_dtor(var_ptr); |
2286 | 0 | ZVAL_COPY_VALUE(var_ptr, copy); |
2287 | 0 | ZVAL_UNDEF(copy); |
2288 | 0 | } else if (copy == &tmp) { |
2289 | 0 | zval_ptr_dtor(&tmp); |
2290 | 0 | } |
2291 | 0 | } |
2292 | | |
2293 | | static void zend_pre_incdec_property_zval(zval *prop, zend_property_info *prop_info OPLINE_DC EXECUTE_DATA_DC) |
2294 | 0 | { |
2295 | 0 | if (EXPECTED(Z_TYPE_P(prop) == IS_LONG)) { |
2296 | 0 | if (ZEND_IS_INCREMENT(opline->opcode)) { |
2297 | 0 | fast_long_increment_function(prop); |
2298 | 0 | } else { |
2299 | 0 | fast_long_decrement_function(prop); |
2300 | 0 | } |
2301 | 0 | if (UNEXPECTED(Z_TYPE_P(prop) != IS_LONG) && prop_info |
2302 | 0 | && !(ZEND_TYPE_FULL_MASK(prop_info->type) & MAY_BE_DOUBLE)) { |
2303 | 0 | zend_long val = zend_throw_incdec_prop_error(prop_info OPLINE_CC); |
2304 | 0 | ZVAL_LONG(prop, val); |
2305 | 0 | } |
2306 | 0 | } else { |
2307 | 0 | do { |
2308 | 0 | if (Z_ISREF_P(prop)) { |
2309 | 0 | zend_reference *ref = Z_REF_P(prop); |
2310 | 0 | prop = Z_REFVAL_P(prop); |
2311 | 0 | if (UNEXPECTED(ZEND_REF_HAS_TYPE_SOURCES(ref))) { |
2312 | 0 | zend_incdec_typed_ref(ref, NULL OPLINE_CC EXECUTE_DATA_CC); |
2313 | 0 | break; |
2314 | 0 | } |
2315 | 0 | } |
2316 | | |
2317 | 0 | if (prop_info) { |
2318 | 0 | zend_incdec_typed_prop(prop_info, prop, NULL OPLINE_CC EXECUTE_DATA_CC); |
2319 | 0 | } else if (ZEND_IS_INCREMENT(opline->opcode)) { |
2320 | 0 | increment_function(prop); |
2321 | 0 | } else { |
2322 | 0 | decrement_function(prop); |
2323 | 0 | } |
2324 | 0 | } while (0); |
2325 | 0 | } |
2326 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2327 | 0 | ZVAL_COPY(EX_VAR(opline->result.var), prop); |
2328 | 0 | } |
2329 | 0 | } |
2330 | | |
2331 | | static void zend_post_incdec_property_zval(zval *prop, zend_property_info *prop_info OPLINE_DC EXECUTE_DATA_DC) |
2332 | 0 | { |
2333 | 0 | if (EXPECTED(Z_TYPE_P(prop) == IS_LONG)) { |
2334 | 0 | ZVAL_LONG(EX_VAR(opline->result.var), Z_LVAL_P(prop)); |
2335 | 0 | if (ZEND_IS_INCREMENT(opline->opcode)) { |
2336 | 0 | fast_long_increment_function(prop); |
2337 | 0 | } else { |
2338 | 0 | fast_long_decrement_function(prop); |
2339 | 0 | } |
2340 | 0 | if (UNEXPECTED(Z_TYPE_P(prop) != IS_LONG) && prop_info |
2341 | 0 | && !(ZEND_TYPE_FULL_MASK(prop_info->type) & MAY_BE_DOUBLE)) { |
2342 | 0 | zend_long val = zend_throw_incdec_prop_error(prop_info OPLINE_CC); |
2343 | 0 | ZVAL_LONG(prop, val); |
2344 | 0 | } |
2345 | 0 | } else { |
2346 | 0 | if (Z_ISREF_P(prop)) { |
2347 | 0 | zend_reference *ref = Z_REF_P(prop); |
2348 | 0 | prop = Z_REFVAL_P(prop); |
2349 | 0 | if (ZEND_REF_HAS_TYPE_SOURCES(ref)) { |
2350 | 0 | zend_incdec_typed_ref(ref, EX_VAR(opline->result.var) OPLINE_CC EXECUTE_DATA_CC); |
2351 | 0 | return; |
2352 | 0 | } |
2353 | 0 | } |
2354 | | |
2355 | 0 | if (prop_info) { |
2356 | 0 | zend_incdec_typed_prop(prop_info, prop, EX_VAR(opline->result.var) OPLINE_CC EXECUTE_DATA_CC); |
2357 | 0 | } else { |
2358 | 0 | ZVAL_COPY(EX_VAR(opline->result.var), prop); |
2359 | 0 | if (ZEND_IS_INCREMENT(opline->opcode)) { |
2360 | 0 | increment_function(prop); |
2361 | 0 | } else { |
2362 | 0 | decrement_function(prop); |
2363 | 0 | } |
2364 | 0 | } |
2365 | 0 | } |
2366 | 0 | } |
2367 | | |
2368 | | static zend_never_inline void zend_post_incdec_overloaded_property(zend_object *object, zend_string *name, void **cache_slot OPLINE_DC EXECUTE_DATA_DC) |
2369 | 0 | { |
2370 | 0 | zval rv; |
2371 | 0 | zval *z; |
2372 | 0 | zval z_copy; |
2373 | |
|
2374 | 0 | GC_ADDREF(object); |
2375 | 0 | z =object->handlers->read_property(object, name, BP_VAR_R, cache_slot, &rv); |
2376 | 0 | if (UNEXPECTED(EG(exception))) { |
2377 | 0 | OBJ_RELEASE(object); |
2378 | 0 | ZVAL_UNDEF(EX_VAR(opline->result.var)); |
2379 | 0 | return; |
2380 | 0 | } |
2381 | | |
2382 | 0 | ZVAL_COPY_DEREF(&z_copy, z); |
2383 | 0 | ZVAL_COPY(EX_VAR(opline->result.var), &z_copy); |
2384 | 0 | if (ZEND_IS_INCREMENT(opline->opcode)) { |
2385 | 0 | increment_function(&z_copy); |
2386 | 0 | } else { |
2387 | 0 | decrement_function(&z_copy); |
2388 | 0 | } |
2389 | 0 | object->handlers->write_property(object, name, &z_copy, cache_slot); |
2390 | 0 | OBJ_RELEASE(object); |
2391 | 0 | zval_ptr_dtor(&z_copy); |
2392 | 0 | if (z == &rv) { |
2393 | 0 | zval_ptr_dtor(z); |
2394 | 0 | } |
2395 | 0 | } |
2396 | | |
2397 | | static zend_never_inline void zend_pre_incdec_overloaded_property(zend_object *object, zend_string *name, void **cache_slot OPLINE_DC EXECUTE_DATA_DC) |
2398 | 0 | { |
2399 | 0 | zval rv; |
2400 | 0 | zval *z; |
2401 | 0 | zval z_copy; |
2402 | |
|
2403 | 0 | GC_ADDREF(object); |
2404 | 0 | z = object->handlers->read_property(object, name, BP_VAR_R, cache_slot, &rv); |
2405 | 0 | if (UNEXPECTED(EG(exception))) { |
2406 | 0 | OBJ_RELEASE(object); |
2407 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2408 | 0 | ZVAL_NULL(EX_VAR(opline->result.var)); |
2409 | 0 | } |
2410 | 0 | return; |
2411 | 0 | } |
2412 | | |
2413 | 0 | ZVAL_COPY_DEREF(&z_copy, z); |
2414 | 0 | if (ZEND_IS_INCREMENT(opline->opcode)) { |
2415 | 0 | increment_function(&z_copy); |
2416 | 0 | } else { |
2417 | 0 | decrement_function(&z_copy); |
2418 | 0 | } |
2419 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2420 | 0 | ZVAL_COPY(EX_VAR(opline->result.var), &z_copy); |
2421 | 0 | } |
2422 | 0 | object->handlers->write_property(object, name, &z_copy, cache_slot); |
2423 | 0 | OBJ_RELEASE(object); |
2424 | 0 | zval_ptr_dtor(&z_copy); |
2425 | 0 | if (z == &rv) { |
2426 | 0 | zval_ptr_dtor(z); |
2427 | 0 | } |
2428 | 0 | } |
2429 | | |
2430 | | static zend_never_inline void zend_assign_op_overloaded_property(zend_object *object, zend_string *name, void **cache_slot, zval *value OPLINE_DC EXECUTE_DATA_DC) |
2431 | 0 | { |
2432 | 0 | zval *z; |
2433 | 0 | zval rv, res; |
2434 | |
|
2435 | 0 | GC_ADDREF(object); |
2436 | 0 | z = object->handlers->read_property(object, name, BP_VAR_R, cache_slot, &rv); |
2437 | 0 | if (UNEXPECTED(EG(exception))) { |
2438 | 0 | OBJ_RELEASE(object); |
2439 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2440 | 0 | ZVAL_UNDEF(EX_VAR(opline->result.var)); |
2441 | 0 | } |
2442 | 0 | return; |
2443 | 0 | } |
2444 | 0 | if (zend_binary_op(&res, z, value OPLINE_CC) == SUCCESS) { |
2445 | 0 | object->handlers->write_property(object, name, &res, cache_slot); |
2446 | 0 | } |
2447 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
2448 | 0 | ZVAL_COPY(EX_VAR(opline->result.var), &res); |
2449 | 0 | } |
2450 | 0 | if (z == &rv) { |
2451 | 0 | zval_ptr_dtor(z); |
2452 | 0 | } |
2453 | 0 | zval_ptr_dtor(&res); |
2454 | 0 | OBJ_RELEASE(object); |
2455 | 0 | } |
2456 | | |
2457 | | /* Utility Functions for Extensions */ |
2458 | | static void zend_extension_statement_handler(const zend_extension *extension, zend_execute_data *frame) |
2459 | 0 | { |
2460 | 0 | if (extension->statement_handler) { |
2461 | 0 | extension->statement_handler(frame); |
2462 | 0 | } |
2463 | 0 | } |
2464 | | |
2465 | | |
2466 | | static void zend_extension_fcall_begin_handler(const zend_extension *extension, zend_execute_data *frame) |
2467 | 0 | { |
2468 | 0 | if (extension->fcall_begin_handler) { |
2469 | 0 | extension->fcall_begin_handler(frame); |
2470 | 0 | } |
2471 | 0 | } |
2472 | | |
2473 | | |
2474 | | static void zend_extension_fcall_end_handler(const zend_extension *extension, zend_execute_data *frame) |
2475 | 0 | { |
2476 | 0 | if (extension->fcall_end_handler) { |
2477 | 0 | extension->fcall_end_handler(frame); |
2478 | 0 | } |
2479 | 0 | } |
2480 | | |
2481 | | |
2482 | | static zend_always_inline HashTable *zend_get_target_symbol_table(int fetch_type EXECUTE_DATA_DC) |
2483 | 0 | { |
2484 | 0 | HashTable *ht; |
2485 | |
|
2486 | 0 | if (EXPECTED(fetch_type & (ZEND_FETCH_GLOBAL_LOCK | ZEND_FETCH_GLOBAL))) { |
2487 | 0 | ht = &EG(symbol_table); |
2488 | 0 | } else { |
2489 | 0 | ZEND_ASSERT(fetch_type & ZEND_FETCH_LOCAL); |
2490 | 0 | if (!(EX_CALL_INFO() & ZEND_CALL_HAS_SYMBOL_TABLE)) { |
2491 | 0 | zend_rebuild_symbol_table(); |
2492 | 0 | } |
2493 | 0 | ht = EX(symbol_table); |
2494 | 0 | } |
2495 | 0 | return ht; |
2496 | 0 | } |
2497 | | |
2498 | | static zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_undefined_offset(zend_long lval) |
2499 | 0 | { |
2500 | 0 | zend_error(E_WARNING, "Undefined array key " ZEND_LONG_FMT, lval); |
2501 | 0 | } |
2502 | | |
2503 | | static zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_undefined_index(const zend_string *offset) |
2504 | 0 | { |
2505 | 0 | zend_error(E_WARNING, "Undefined array key \"%s\"", ZSTR_VAL(offset)); |
2506 | 0 | } |
2507 | | |
2508 | | ZEND_API ZEND_COLD zval* ZEND_FASTCALL zend_undefined_offset_write(HashTable *ht, zend_long lval) |
2509 | 0 | { |
2510 | | /* The array may be destroyed while throwing the notice. |
2511 | | * Temporarily increase the refcount to detect this situation. */ |
2512 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE)) { |
2513 | 0 | GC_ADDREF(ht); |
2514 | 0 | } |
2515 | 0 | zend_undefined_offset(lval); |
2516 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && GC_DELREF(ht) != 1) { |
2517 | 0 | if (!GC_REFCOUNT(ht)) { |
2518 | 0 | zend_array_destroy(ht); |
2519 | 0 | } |
2520 | 0 | return NULL; |
2521 | 0 | } |
2522 | 0 | if (EG(exception)) { |
2523 | 0 | return NULL; |
2524 | 0 | } |
2525 | 0 | return zend_hash_index_add_new(ht, lval, &EG(uninitialized_zval)); |
2526 | 0 | } |
2527 | | |
2528 | | ZEND_API ZEND_COLD zval* ZEND_FASTCALL zend_undefined_index_write(HashTable *ht, zend_string *offset) |
2529 | 0 | { |
2530 | 0 | zval *retval; |
2531 | | |
2532 | | /* The array may be destroyed while throwing the notice. |
2533 | | * Temporarily increase the refcount to detect this situation. */ |
2534 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE)) { |
2535 | 0 | GC_ADDREF(ht); |
2536 | 0 | } |
2537 | | /* Key may be released while throwing the undefined index warning. */ |
2538 | 0 | zend_string_addref(offset); |
2539 | 0 | zend_undefined_index(offset); |
2540 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && GC_DELREF(ht) != 1) { |
2541 | 0 | if (!GC_REFCOUNT(ht)) { |
2542 | 0 | zend_array_destroy(ht); |
2543 | 0 | } |
2544 | 0 | retval = NULL; |
2545 | 0 | } else if (EG(exception)) { |
2546 | 0 | retval = NULL; |
2547 | 0 | } else { |
2548 | 0 | retval = zend_hash_add_new(ht, offset, &EG(uninitialized_zval)); |
2549 | 0 | } |
2550 | 0 | zend_string_release(offset); |
2551 | 0 | return retval; |
2552 | 0 | } |
2553 | | |
2554 | | ZEND_API zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_undefined_method(const zend_class_entry *ce, const zend_string *method) |
2555 | 0 | { |
2556 | 0 | zend_throw_error(NULL, "Call to undefined method %s::%s()", ZSTR_VAL(ce->name), ZSTR_VAL(method)); |
2557 | 0 | } |
2558 | | |
2559 | | static zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_invalid_method_call(zval *object, zval *function_name) |
2560 | 0 | { |
2561 | 0 | zend_throw_error(NULL, "Call to a member function %s() on %s", |
2562 | 0 | Z_STRVAL_P(function_name), zend_zval_value_name(object)); |
2563 | 0 | } |
2564 | | |
2565 | | ZEND_API void ZEND_FASTCALL zend_non_static_method_call(const zend_function *fbc) |
2566 | 0 | { |
2567 | 0 | zend_throw_error( |
2568 | 0 | zend_ce_error, |
2569 | 0 | "Non-static method %s::%s() cannot be called statically", |
2570 | 0 | ZSTR_VAL(fbc->common.scope->name), ZSTR_VAL(fbc->common.function_name)); |
2571 | 0 | } |
2572 | | |
2573 | | ZEND_COLD void ZEND_FASTCALL zend_param_must_be_ref(const zend_function *func, uint32_t arg_num) |
2574 | 0 | { |
2575 | 0 | const char *arg_name = get_function_arg_name(func, arg_num); |
2576 | |
|
2577 | 0 | zend_error(E_WARNING, "%s%s%s(): Argument #%d%s%s%s must be passed by reference, value given", |
2578 | 0 | func->common.scope ? ZSTR_VAL(func->common.scope->name) : "", |
2579 | 0 | func->common.scope ? "::" : "", |
2580 | 0 | ZSTR_VAL(func->common.function_name), |
2581 | 0 | arg_num, |
2582 | 0 | arg_name ? " ($" : "", |
2583 | 0 | arg_name ? arg_name : "", |
2584 | 0 | arg_name ? ")" : "" |
2585 | 0 | ); |
2586 | 0 | } |
2587 | | |
2588 | | static zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_use_scalar_as_array(void) |
2589 | 0 | { |
2590 | 0 | zend_throw_error(NULL, "Cannot use a scalar value as an array"); |
2591 | 0 | } |
2592 | | |
2593 | | ZEND_API zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_cannot_add_element(void) |
2594 | 0 | { |
2595 | 0 | zend_throw_error(NULL, "Cannot add element to the array as the next element is already occupied"); |
2596 | 0 | } |
2597 | | |
2598 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_use_resource_as_offset(const zval *dim) |
2599 | 0 | { |
2600 | 0 | zend_error(E_WARNING, |
2601 | 0 | "Resource ID#" ZEND_LONG_FMT " used as offset, casting to integer (" ZEND_LONG_FMT ")", |
2602 | 0 | Z_RES_HANDLE_P(dim), Z_RES_HANDLE_P(dim)); |
2603 | 0 | } |
2604 | | |
2605 | | static zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_use_new_element_for_string(void) |
2606 | 0 | { |
2607 | 0 | zend_throw_error(NULL, "[] operator not supported for strings"); |
2608 | 0 | } |
2609 | | |
2610 | | #ifdef ZEND_CHECK_STACK_LIMIT |
2611 | | ZEND_API zend_never_inline ZEND_COLD void ZEND_FASTCALL zend_call_stack_size_error(void) |
2612 | 0 | { |
2613 | 0 | size_t max_stack_size = 0; |
2614 | 0 | if ((uintptr_t) EG(stack_base) > (uintptr_t) EG(stack_limit)) { |
2615 | 0 | max_stack_size = (size_t) ((uintptr_t) EG(stack_base) - (uintptr_t) EG(stack_limit)); |
2616 | 0 | } |
2617 | |
|
2618 | 0 | zend_throw_error(NULL, "Maximum call stack size of %zu bytes (zend.max_allowed_stack_size - zend.reserved_stack_size) reached. Infinite recursion?", |
2619 | 0 | max_stack_size); |
2620 | 0 | } |
2621 | | #endif /* ZEND_CHECK_STACK_LIMIT */ |
2622 | | |
2623 | | static ZEND_COLD void zend_binary_assign_op_dim_slow(zval *container, zval *dim OPLINE_DC EXECUTE_DATA_DC) |
2624 | 0 | { |
2625 | 0 | if (UNEXPECTED(Z_TYPE_P(container) == IS_STRING)) { |
2626 | 0 | if (opline->op2_type == IS_UNUSED) { |
2627 | 0 | zend_use_new_element_for_string(); |
2628 | 0 | } else { |
2629 | 0 | zend_check_string_offset(dim, BP_VAR_RW EXECUTE_DATA_CC); |
2630 | 0 | zend_wrong_string_offset_error(); |
2631 | 0 | } |
2632 | 0 | } else { |
2633 | 0 | zend_use_scalar_as_array(); |
2634 | 0 | } |
2635 | 0 | } |
2636 | | |
2637 | | static zend_never_inline uint8_t slow_index_convert(HashTable *ht, const zval *dim, zend_value *value EXECUTE_DATA_DC) |
2638 | 0 | { |
2639 | 0 | switch (Z_TYPE_P(dim)) { |
2640 | 0 | case IS_UNDEF: { |
2641 | | /* The array may be destroyed while throwing the notice. |
2642 | | * Temporarily increase the refcount to detect this situation. */ |
2643 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE)) { |
2644 | 0 | GC_ADDREF(ht); |
2645 | 0 | } |
2646 | 0 | ZVAL_UNDEFINED_OP2(); |
2647 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && !GC_DELREF(ht)) { |
2648 | 0 | zend_array_destroy(ht); |
2649 | 0 | return IS_NULL; |
2650 | 0 | } |
2651 | 0 | if (EG(exception)) { |
2652 | 0 | return IS_NULL; |
2653 | 0 | } |
2654 | 0 | ZEND_FALLTHROUGH; |
2655 | 0 | } |
2656 | 0 | case IS_NULL: |
2657 | | /* The array may be destroyed while throwing the notice. |
2658 | | * Temporarily increase the refcount to detect this situation. */ |
2659 | 0 | GC_TRY_ADDREF(ht); |
2660 | |
|
2661 | 0 | zend_error(E_DEPRECATED, "Using null as an array offset is deprecated, use an empty string instead"); |
2662 | |
|
2663 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && !GC_DELREF(ht)) { |
2664 | 0 | zend_array_destroy(ht); |
2665 | 0 | return IS_NULL; |
2666 | 0 | } |
2667 | | |
2668 | 0 | if (EG(exception)) { |
2669 | 0 | return IS_NULL; |
2670 | 0 | } |
2671 | | |
2672 | 0 | value->str = ZSTR_EMPTY_ALLOC(); |
2673 | 0 | return IS_STRING; |
2674 | 0 | case IS_DOUBLE: |
2675 | | /* The array may be destroyed while throwing the notice. |
2676 | | * Temporarily increase the refcount to detect this situation. */ |
2677 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE)) { |
2678 | 0 | GC_ADDREF(ht); |
2679 | 0 | } |
2680 | 0 | value->lval = zend_dval_to_lval_safe(Z_DVAL_P(dim)); |
2681 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && !GC_DELREF(ht)) { |
2682 | 0 | zend_array_destroy(ht); |
2683 | 0 | return IS_NULL; |
2684 | 0 | } |
2685 | 0 | if (EG(exception)) { |
2686 | 0 | return IS_NULL; |
2687 | 0 | } |
2688 | 0 | return IS_LONG; |
2689 | 0 | case IS_RESOURCE: |
2690 | | /* The array may be destroyed while throwing the notice. |
2691 | | * Temporarily increase the refcount to detect this situation. */ |
2692 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE)) { |
2693 | 0 | GC_ADDREF(ht); |
2694 | 0 | } |
2695 | 0 | zend_use_resource_as_offset(dim); |
2696 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && !GC_DELREF(ht)) { |
2697 | 0 | zend_array_destroy(ht); |
2698 | 0 | return IS_NULL; |
2699 | 0 | } |
2700 | 0 | if (EG(exception)) { |
2701 | 0 | return IS_NULL; |
2702 | 0 | } |
2703 | 0 | value->lval = Z_RES_HANDLE_P(dim); |
2704 | 0 | return IS_LONG; |
2705 | 0 | case IS_FALSE: |
2706 | 0 | value->lval = 0; |
2707 | 0 | return IS_LONG; |
2708 | 0 | case IS_TRUE: |
2709 | 0 | value->lval = 1; |
2710 | 0 | return IS_LONG; |
2711 | 0 | default: |
2712 | 0 | zend_illegal_array_offset_access(dim); |
2713 | 0 | return IS_NULL; |
2714 | 0 | } |
2715 | 0 | } |
2716 | | |
2717 | | static zend_never_inline uint8_t slow_index_convert_w(HashTable *ht, const zval *dim, zend_value *value EXECUTE_DATA_DC) |
2718 | 0 | { |
2719 | 0 | switch (Z_TYPE_P(dim)) { |
2720 | 0 | case IS_UNDEF: { |
2721 | | /* The array may be destroyed while throwing the notice. |
2722 | | * Temporarily increase the refcount to detect this situation. */ |
2723 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE)) { |
2724 | 0 | GC_ADDREF(ht); |
2725 | 0 | } |
2726 | 0 | ZVAL_UNDEFINED_OP2(); |
2727 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && GC_DELREF(ht) != 1) { |
2728 | 0 | if (!GC_REFCOUNT(ht)) { |
2729 | 0 | zend_array_destroy(ht); |
2730 | 0 | } |
2731 | 0 | return IS_NULL; |
2732 | 0 | } |
2733 | 0 | if (EG(exception)) { |
2734 | 0 | return IS_NULL; |
2735 | 0 | } |
2736 | 0 | ZEND_FALLTHROUGH; |
2737 | 0 | } |
2738 | 0 | case IS_NULL: |
2739 | | /* The array may be destroyed while throwing the notice. |
2740 | | * Temporarily increase the refcount to detect this situation. */ |
2741 | 0 | GC_TRY_ADDREF(ht); |
2742 | |
|
2743 | 0 | zend_error(E_DEPRECATED, "Using null as an array offset is deprecated, use an empty string instead"); |
2744 | |
|
2745 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && GC_DELREF(ht) != 1) { |
2746 | 0 | if (!GC_REFCOUNT(ht)) { |
2747 | 0 | zend_array_destroy(ht); |
2748 | 0 | } |
2749 | 0 | return IS_NULL; |
2750 | 0 | } |
2751 | 0 | if (EG(exception)) { |
2752 | 0 | return IS_NULL; |
2753 | 0 | } |
2754 | 0 | value->str = ZSTR_EMPTY_ALLOC(); |
2755 | 0 | return IS_STRING; |
2756 | 0 | case IS_DOUBLE: |
2757 | | /* The array may be destroyed while throwing the notice. |
2758 | | * Temporarily increase the refcount to detect this situation. */ |
2759 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE)) { |
2760 | 0 | GC_ADDREF(ht); |
2761 | 0 | } |
2762 | 0 | value->lval = zend_dval_to_lval_safe(Z_DVAL_P(dim)); |
2763 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && GC_DELREF(ht) != 1) { |
2764 | 0 | if (!GC_REFCOUNT(ht)) { |
2765 | 0 | zend_array_destroy(ht); |
2766 | 0 | } |
2767 | 0 | return IS_NULL; |
2768 | 0 | } |
2769 | 0 | if (EG(exception)) { |
2770 | 0 | return IS_NULL; |
2771 | 0 | } |
2772 | 0 | return IS_LONG; |
2773 | 0 | case IS_RESOURCE: |
2774 | | /* The array may be destroyed while throwing the notice. |
2775 | | * Temporarily increase the refcount to detect this situation. */ |
2776 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE)) { |
2777 | 0 | GC_ADDREF(ht); |
2778 | 0 | } |
2779 | 0 | zend_use_resource_as_offset(dim); |
2780 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && GC_DELREF(ht) != 1) { |
2781 | 0 | if (!GC_REFCOUNT(ht)) { |
2782 | 0 | zend_array_destroy(ht); |
2783 | 0 | } |
2784 | 0 | return IS_NULL; |
2785 | 0 | } |
2786 | 0 | if (EG(exception)) { |
2787 | 0 | return IS_NULL; |
2788 | 0 | } |
2789 | 0 | value->lval = Z_RES_HANDLE_P(dim); |
2790 | 0 | return IS_LONG; |
2791 | 0 | case IS_FALSE: |
2792 | 0 | value->lval = 0; |
2793 | 0 | return IS_LONG; |
2794 | 0 | case IS_TRUE: |
2795 | 0 | value->lval = 1; |
2796 | 0 | return IS_LONG; |
2797 | 0 | default: |
2798 | 0 | zend_illegal_array_offset_access(dim); |
2799 | 0 | return IS_NULL; |
2800 | 0 | } |
2801 | 0 | } |
2802 | | |
2803 | | static zend_always_inline zval *zend_fetch_dimension_address_inner(HashTable *ht, const zval *dim, int dim_type, int type EXECUTE_DATA_DC) |
2804 | 0 | { |
2805 | 0 | zval *retval = NULL; |
2806 | 0 | zend_string *offset_key; |
2807 | 0 | zend_ulong hval; |
2808 | |
|
2809 | 0 | try_again: |
2810 | 0 | if (EXPECTED(Z_TYPE_P(dim) == IS_LONG)) { |
2811 | 0 | hval = Z_LVAL_P(dim); |
2812 | 0 | num_index: |
2813 | 0 | if (type != BP_VAR_W) { |
2814 | 0 | ZEND_HASH_INDEX_FIND(ht, hval, retval, num_undef); |
2815 | 0 | return retval; |
2816 | 0 | num_undef: |
2817 | 0 | switch (type) { |
2818 | 0 | case BP_VAR_R: |
2819 | 0 | zend_undefined_offset(hval); |
2820 | 0 | ZEND_FALLTHROUGH; |
2821 | 0 | case BP_VAR_UNSET: |
2822 | 0 | case BP_VAR_IS: |
2823 | 0 | retval = &EG(uninitialized_zval); |
2824 | 0 | break; |
2825 | 0 | case BP_VAR_RW: |
2826 | 0 | retval = zend_undefined_offset_write(ht, hval); |
2827 | 0 | break; |
2828 | 0 | } |
2829 | 0 | } else { |
2830 | 0 | ZEND_HASH_INDEX_LOOKUP(ht, hval, retval); |
2831 | 0 | } |
2832 | 0 | } else if (EXPECTED(Z_TYPE_P(dim) == IS_STRING)) { |
2833 | 0 | offset_key = Z_STR_P(dim); |
2834 | 0 | if (ZEND_CONST_COND(dim_type != IS_CONST, 1)) { |
2835 | 0 | if (ZEND_HANDLE_NUMERIC(offset_key, hval)) { |
2836 | 0 | goto num_index; |
2837 | 0 | } |
2838 | 0 | } |
2839 | 0 | str_index: |
2840 | 0 | if (type != BP_VAR_W) { |
2841 | 0 | retval = zend_hash_find_ex(ht, offset_key, ZEND_CONST_COND(dim_type == IS_CONST, 0)); |
2842 | 0 | if (!retval) { |
2843 | 0 | switch (type) { |
2844 | 0 | case BP_VAR_R: |
2845 | 0 | zend_undefined_index(offset_key); |
2846 | 0 | ZEND_FALLTHROUGH; |
2847 | 0 | case BP_VAR_UNSET: |
2848 | 0 | case BP_VAR_IS: |
2849 | 0 | retval = &EG(uninitialized_zval); |
2850 | 0 | break; |
2851 | 0 | case BP_VAR_RW: |
2852 | 0 | retval = zend_undefined_index_write(ht, offset_key); |
2853 | 0 | break; |
2854 | 0 | } |
2855 | 0 | } |
2856 | 0 | } else { |
2857 | 0 | retval = zend_hash_lookup(ht, offset_key); |
2858 | 0 | } |
2859 | 0 | } else if (EXPECTED(Z_TYPE_P(dim) == IS_REFERENCE)) { |
2860 | 0 | dim = Z_REFVAL_P(dim); |
2861 | 0 | goto try_again; |
2862 | 0 | } else { |
2863 | 0 | zend_value val; |
2864 | 0 | uint8_t t; |
2865 | |
|
2866 | 0 | if (type != BP_VAR_W && type != BP_VAR_RW) { |
2867 | 0 | t = slow_index_convert(ht, dim, &val EXECUTE_DATA_CC); |
2868 | 0 | } else { |
2869 | 0 | t = slow_index_convert_w(ht, dim, &val EXECUTE_DATA_CC); |
2870 | 0 | } |
2871 | 0 | if (t == IS_STRING) { |
2872 | 0 | offset_key = val.str; |
2873 | 0 | goto str_index; |
2874 | 0 | } else if (t == IS_LONG) { |
2875 | 0 | hval = val.lval; |
2876 | 0 | goto num_index; |
2877 | 0 | } else { |
2878 | 0 | retval = (type == BP_VAR_W || type == BP_VAR_RW) ? |
2879 | 0 | NULL : &EG(uninitialized_zval); |
2880 | 0 | } |
2881 | 0 | } |
2882 | 0 | return retval; |
2883 | 0 | } |
2884 | | |
2885 | | static zend_never_inline zval* ZEND_FASTCALL zend_fetch_dimension_address_inner_W(HashTable *ht, const zval *dim EXECUTE_DATA_DC) |
2886 | 0 | { |
2887 | 0 | return zend_fetch_dimension_address_inner(ht, dim, IS_TMP_VAR, BP_VAR_W EXECUTE_DATA_CC); |
2888 | 0 | } |
2889 | | |
2890 | | static zend_never_inline zval* ZEND_FASTCALL zend_fetch_dimension_address_inner_W_CONST(HashTable *ht, const zval *dim EXECUTE_DATA_DC) |
2891 | 0 | { |
2892 | 0 | return zend_fetch_dimension_address_inner(ht, dim, IS_CONST, BP_VAR_W EXECUTE_DATA_CC); |
2893 | 0 | } |
2894 | | |
2895 | | static zend_never_inline zval* ZEND_FASTCALL zend_fetch_dimension_address_inner_RW(HashTable *ht, const zval *dim EXECUTE_DATA_DC) |
2896 | 0 | { |
2897 | 0 | return zend_fetch_dimension_address_inner(ht, dim, IS_TMP_VAR, BP_VAR_RW EXECUTE_DATA_CC); |
2898 | 0 | } |
2899 | | |
2900 | | static zend_never_inline zval* ZEND_FASTCALL zend_fetch_dimension_address_inner_RW_CONST(HashTable *ht, const zval *dim EXECUTE_DATA_DC) |
2901 | 0 | { |
2902 | 0 | return zend_fetch_dimension_address_inner(ht, dim, IS_CONST, BP_VAR_RW EXECUTE_DATA_CC); |
2903 | 0 | } |
2904 | | |
2905 | | static zend_always_inline void zend_fetch_dimension_address(zval *result, zval *container, zval *dim, int dim_type, int type EXECUTE_DATA_DC) |
2906 | 0 | { |
2907 | 0 | zval *retval; |
2908 | |
|
2909 | 0 | if (EXPECTED(Z_TYPE_P(container) == IS_ARRAY)) { |
2910 | 0 | try_array: |
2911 | 0 | SEPARATE_ARRAY(container); |
2912 | 0 | fetch_from_array: |
2913 | 0 | if (dim == NULL) { |
2914 | 0 | retval = zend_hash_next_index_insert(Z_ARRVAL_P(container), &EG(uninitialized_zval)); |
2915 | 0 | if (UNEXPECTED(retval == NULL)) { |
2916 | 0 | zend_cannot_add_element(); |
2917 | 0 | ZVAL_UNDEF(result); |
2918 | 0 | return; |
2919 | 0 | } |
2920 | 0 | } else { |
2921 | 0 | retval = zend_fetch_dimension_address_inner(Z_ARRVAL_P(container), dim, dim_type, type EXECUTE_DATA_CC); |
2922 | 0 | if (UNEXPECTED(!retval)) { |
2923 | | /* This may fail without throwing if the array was modified while throwing an |
2924 | | * undefined index error. */ |
2925 | 0 | ZVAL_NULL(result); |
2926 | 0 | return; |
2927 | 0 | } |
2928 | 0 | } |
2929 | 0 | ZVAL_INDIRECT(result, retval); |
2930 | 0 | return; |
2931 | 0 | } else if (EXPECTED(Z_TYPE_P(container) == IS_REFERENCE)) { |
2932 | 0 | zend_reference *ref = Z_REF_P(container); |
2933 | 0 | container = Z_REFVAL_P(container); |
2934 | 0 | if (EXPECTED(Z_TYPE_P(container) == IS_ARRAY)) { |
2935 | 0 | goto try_array; |
2936 | 0 | } else if (EXPECTED(Z_TYPE_P(container) <= IS_FALSE)) { |
2937 | 0 | if (type != BP_VAR_UNSET) { |
2938 | 0 | if (ZEND_REF_HAS_TYPE_SOURCES(ref)) { |
2939 | 0 | if (UNEXPECTED(!zend_verify_ref_array_assignable(ref))) { |
2940 | 0 | ZVAL_UNDEF(result); |
2941 | 0 | return; |
2942 | 0 | } |
2943 | 0 | } |
2944 | 0 | array_init(container); |
2945 | 0 | goto fetch_from_array; |
2946 | 0 | } else { |
2947 | 0 | goto return_null; |
2948 | 0 | } |
2949 | 0 | } |
2950 | 0 | } |
2951 | 0 | if (UNEXPECTED(Z_TYPE_P(container) == IS_STRING)) { |
2952 | 0 | if (dim == NULL) { |
2953 | 0 | zend_use_new_element_for_string(); |
2954 | 0 | } else { |
2955 | 0 | zend_check_string_offset(dim, type EXECUTE_DATA_CC); |
2956 | 0 | zend_wrong_string_offset_error(); |
2957 | 0 | } |
2958 | 0 | ZVAL_UNDEF(result); |
2959 | 0 | } else if (EXPECTED(Z_TYPE_P(container) == IS_OBJECT)) { |
2960 | 0 | zend_object *obj = Z_OBJ_P(container); |
2961 | 0 | GC_ADDREF(obj); |
2962 | 0 | if (ZEND_CONST_COND(dim_type == IS_CV, dim != NULL) && UNEXPECTED(Z_TYPE_P(dim) == IS_UNDEF)) { |
2963 | 0 | dim = ZVAL_UNDEFINED_OP2(); |
2964 | 0 | } else if (dim_type == IS_CONST && Z_EXTRA_P(dim) == ZEND_EXTRA_VALUE) { |
2965 | 0 | dim++; |
2966 | 0 | } |
2967 | 0 | retval = obj->handlers->read_dimension(obj, dim, type, result); |
2968 | |
|
2969 | 0 | if (UNEXPECTED(retval == &EG(uninitialized_zval))) { |
2970 | 0 | zend_class_entry *ce = obj->ce; |
2971 | |
|
2972 | 0 | ZVAL_NULL(result); |
2973 | 0 | zend_error(E_NOTICE, "Indirect modification of overloaded element of %s has no effect", ZSTR_VAL(ce->name)); |
2974 | 0 | } else if (EXPECTED(retval && Z_TYPE_P(retval) != IS_UNDEF)) { |
2975 | 0 | if (!Z_ISREF_P(retval)) { |
2976 | 0 | if (result != retval) { |
2977 | 0 | ZVAL_COPY(result, retval); |
2978 | 0 | retval = result; |
2979 | 0 | } |
2980 | 0 | if (Z_TYPE_P(retval) != IS_OBJECT) { |
2981 | 0 | zend_class_entry *ce = obj->ce; |
2982 | 0 | zend_error(E_NOTICE, "Indirect modification of overloaded element of %s has no effect", ZSTR_VAL(ce->name)); |
2983 | 0 | } |
2984 | 0 | } else if (UNEXPECTED(Z_REFCOUNT_P(retval) == 1)) { |
2985 | 0 | ZVAL_UNREF(retval); |
2986 | 0 | } |
2987 | 0 | if (result != retval) { |
2988 | 0 | ZVAL_INDIRECT(result, retval); |
2989 | 0 | } |
2990 | 0 | } else { |
2991 | 0 | ZEND_ASSERT(EG(exception) && "read_dimension() returned NULL without exception"); |
2992 | 0 | ZVAL_UNDEF(result); |
2993 | 0 | } |
2994 | 0 | if (UNEXPECTED(GC_DELREF(obj) == 0)) { |
2995 | 0 | zend_objects_store_del(obj); |
2996 | 0 | } |
2997 | 0 | } else { |
2998 | 0 | if (EXPECTED(Z_TYPE_P(container) <= IS_FALSE)) { |
2999 | 0 | if (type != BP_VAR_W && UNEXPECTED(Z_TYPE_P(container) == IS_UNDEF)) { |
3000 | 0 | ZVAL_UNDEFINED_OP1(); |
3001 | 0 | } |
3002 | 0 | if (type != BP_VAR_UNSET) { |
3003 | 0 | HashTable *ht = zend_new_array(0); |
3004 | 0 | uint8_t old_type = Z_TYPE_P(container); |
3005 | |
|
3006 | 0 | ZVAL_ARR(container, ht); |
3007 | 0 | if (UNEXPECTED(old_type == IS_FALSE)) { |
3008 | 0 | GC_ADDREF(ht); |
3009 | 0 | zend_false_to_array_deprecated(); |
3010 | 0 | if (UNEXPECTED(GC_DELREF(ht) == 0)) { |
3011 | 0 | zend_array_destroy(ht); |
3012 | 0 | goto return_null; |
3013 | 0 | } |
3014 | 0 | } |
3015 | 0 | goto fetch_from_array; |
3016 | 0 | } else { |
3017 | 0 | if (UNEXPECTED(Z_TYPE_P(container) == IS_FALSE)) { |
3018 | 0 | zend_false_to_array_deprecated(); |
3019 | 0 | } |
3020 | 0 | return_null: |
3021 | | /* for read-mode only */ |
3022 | 0 | if (ZEND_CONST_COND(dim_type == IS_CV, dim != NULL) && UNEXPECTED(Z_TYPE_P(dim) == IS_UNDEF)) { |
3023 | 0 | ZVAL_UNDEFINED_OP2(); |
3024 | 0 | } |
3025 | 0 | ZVAL_NULL(result); |
3026 | 0 | } |
3027 | 0 | } else { |
3028 | 0 | if (type == BP_VAR_UNSET) { |
3029 | 0 | zend_throw_error(NULL, "Cannot unset offset in a non-array variable"); |
3030 | 0 | ZVAL_UNDEF(result); |
3031 | 0 | } else { |
3032 | 0 | zend_use_scalar_as_array(); |
3033 | 0 | ZVAL_UNDEF(result); |
3034 | 0 | } |
3035 | 0 | } |
3036 | 0 | } |
3037 | 0 | } |
3038 | | |
3039 | | static zend_never_inline void ZEND_FASTCALL zend_fetch_dimension_address_W(zval *container_ptr, zval *dim, int dim_type OPLINE_DC EXECUTE_DATA_DC) |
3040 | 0 | { |
3041 | 0 | zval *result = EX_VAR(opline->result.var); |
3042 | 0 | zend_fetch_dimension_address(result, container_ptr, dim, dim_type, BP_VAR_W EXECUTE_DATA_CC); |
3043 | 0 | } |
3044 | | |
3045 | | static zend_never_inline void ZEND_FASTCALL zend_fetch_dimension_address_RW(zval *container_ptr, zval *dim, int dim_type OPLINE_DC EXECUTE_DATA_DC) |
3046 | 0 | { |
3047 | 0 | zval *result = EX_VAR(opline->result.var); |
3048 | 0 | zend_fetch_dimension_address(result, container_ptr, dim, dim_type, BP_VAR_RW EXECUTE_DATA_CC); |
3049 | 0 | } |
3050 | | |
3051 | | static zend_never_inline void ZEND_FASTCALL zend_fetch_dimension_address_UNSET(zval *container_ptr, zval *dim, int dim_type OPLINE_DC EXECUTE_DATA_DC) |
3052 | 0 | { |
3053 | 0 | zval *result = EX_VAR(opline->result.var); |
3054 | 0 | zend_fetch_dimension_address(result, container_ptr, dim, dim_type, BP_VAR_UNSET EXECUTE_DATA_CC); |
3055 | 0 | } |
3056 | | |
3057 | | static zend_always_inline void zend_fetch_dimension_address_read(zval *result, zval *container, zval *dim, int dim_type, int type, bool is_list, bool slow EXECUTE_DATA_DC) |
3058 | 0 | { |
3059 | 0 | zval *retval; |
3060 | |
|
3061 | 0 | if (!slow) { |
3062 | 0 | if (EXPECTED(Z_TYPE_P(container) == IS_ARRAY)) { |
3063 | 0 | try_array: |
3064 | 0 | retval = zend_fetch_dimension_address_inner(Z_ARRVAL_P(container), dim, dim_type, type EXECUTE_DATA_CC); |
3065 | 0 | ZVAL_COPY_DEREF(result, retval); |
3066 | 0 | return; |
3067 | 0 | } else if (EXPECTED(Z_TYPE_P(container) == IS_REFERENCE)) { |
3068 | 0 | container = Z_REFVAL_P(container); |
3069 | 0 | if (EXPECTED(Z_TYPE_P(container) == IS_ARRAY)) { |
3070 | 0 | goto try_array; |
3071 | 0 | } |
3072 | 0 | } |
3073 | 0 | } |
3074 | 0 | if (!is_list && EXPECTED(Z_TYPE_P(container) == IS_STRING)) { |
3075 | 0 | zend_string *str = Z_STR_P(container); |
3076 | 0 | zend_long offset; |
3077 | |
|
3078 | 0 | try_string_offset: |
3079 | 0 | if (UNEXPECTED(Z_TYPE_P(dim) != IS_LONG)) { |
3080 | 0 | switch (Z_TYPE_P(dim)) { |
3081 | 0 | case IS_STRING: |
3082 | 0 | { |
3083 | 0 | bool trailing_data = false; |
3084 | | /* For BC reasons we allow errors so that we can warn on leading numeric string */ |
3085 | 0 | if (IS_LONG == is_numeric_string_ex(Z_STRVAL_P(dim), Z_STRLEN_P(dim), &offset, |
3086 | 0 | NULL, /* allow errors */ true, NULL, &trailing_data)) { |
3087 | 0 | if (UNEXPECTED(trailing_data)) { |
3088 | 0 | zend_error(E_WARNING, "Illegal string offset \"%s\"", Z_STRVAL_P(dim)); |
3089 | 0 | } |
3090 | 0 | goto out; |
3091 | 0 | } |
3092 | 0 | if (type == BP_VAR_IS) { |
3093 | 0 | ZVAL_NULL(result); |
3094 | 0 | return; |
3095 | 0 | } |
3096 | 0 | zend_illegal_string_offset(dim, BP_VAR_R); |
3097 | 0 | ZVAL_NULL(result); |
3098 | 0 | return; |
3099 | 0 | } |
3100 | 0 | case IS_UNDEF: |
3101 | | /* The string may be destroyed while throwing the notice. |
3102 | | * Temporarily increase the refcount to detect this situation. */ |
3103 | 0 | if (!(GC_FLAGS(str) & IS_STR_INTERNED)) { |
3104 | 0 | GC_ADDREF(str); |
3105 | 0 | } |
3106 | 0 | ZVAL_UNDEFINED_OP2(); |
3107 | 0 | if (!(GC_FLAGS(str) & IS_STR_INTERNED) && UNEXPECTED(GC_DELREF(str) == 0)) { |
3108 | 0 | zend_string_efree(str); |
3109 | 0 | ZVAL_NULL(result); |
3110 | 0 | return; |
3111 | 0 | } |
3112 | 0 | ZEND_FALLTHROUGH; |
3113 | 0 | case IS_DOUBLE: |
3114 | 0 | case IS_NULL: |
3115 | 0 | case IS_FALSE: |
3116 | 0 | case IS_TRUE: |
3117 | 0 | if (type != BP_VAR_IS) { |
3118 | | /* The string may be destroyed while throwing the notice. |
3119 | | * Temporarily increase the refcount to detect this situation. */ |
3120 | 0 | if (!(GC_FLAGS(str) & IS_STR_INTERNED)) { |
3121 | 0 | GC_ADDREF(str); |
3122 | 0 | } |
3123 | 0 | zend_error(E_WARNING, "String offset cast occurred"); |
3124 | 0 | if (!(GC_FLAGS(str) & IS_STR_INTERNED) && UNEXPECTED(GC_DELREF(str) == 0)) { |
3125 | 0 | zend_string_efree(str); |
3126 | 0 | ZVAL_NULL(result); |
3127 | 0 | return; |
3128 | 0 | } |
3129 | 0 | } |
3130 | | /* To prevent double warning */ |
3131 | 0 | if (Z_TYPE_P(dim) == IS_DOUBLE) { |
3132 | 0 | offset = zend_dval_to_lval_silent(Z_DVAL_P(dim)); |
3133 | 0 | goto out; |
3134 | 0 | } |
3135 | 0 | break; |
3136 | 0 | case IS_REFERENCE: |
3137 | 0 | dim = Z_REFVAL_P(dim); |
3138 | 0 | goto try_string_offset; |
3139 | 0 | default: |
3140 | 0 | zend_illegal_string_offset(dim, BP_VAR_R); |
3141 | 0 | ZVAL_NULL(result); |
3142 | 0 | return; |
3143 | 0 | } |
3144 | | |
3145 | 0 | offset = zval_get_long_func(dim, /* is_strict */ false); |
3146 | 0 | } else { |
3147 | 0 | offset = Z_LVAL_P(dim); |
3148 | 0 | } |
3149 | 0 | out: |
3150 | |
|
3151 | 0 | if (UNEXPECTED(ZSTR_LEN(str) < ((offset < 0) ? -(size_t)offset : ((size_t)offset + 1)))) { |
3152 | 0 | if (type != BP_VAR_IS) { |
3153 | 0 | zend_error(E_WARNING, "Uninitialized string offset " ZEND_LONG_FMT, offset); |
3154 | 0 | ZVAL_EMPTY_STRING(result); |
3155 | 0 | } else { |
3156 | 0 | ZVAL_NULL(result); |
3157 | 0 | } |
3158 | 0 | } else { |
3159 | 0 | zend_uchar c; |
3160 | 0 | zend_long real_offset; |
3161 | |
|
3162 | 0 | real_offset = (UNEXPECTED(offset < 0)) /* Handle negative offset */ |
3163 | 0 | ? (zend_long)ZSTR_LEN(str) + offset : offset; |
3164 | 0 | c = (zend_uchar)ZSTR_VAL(str)[real_offset]; |
3165 | |
|
3166 | 0 | ZVAL_CHAR(result, c); |
3167 | 0 | } |
3168 | 0 | } else if (EXPECTED(Z_TYPE_P(container) == IS_OBJECT)) { |
3169 | 0 | zend_object *obj = Z_OBJ_P(container); |
3170 | |
|
3171 | 0 | GC_ADDREF(obj); |
3172 | 0 | if (ZEND_CONST_COND(dim_type == IS_CV, 1) && UNEXPECTED(Z_TYPE_P(dim) == IS_UNDEF)) { |
3173 | 0 | dim = ZVAL_UNDEFINED_OP2(); |
3174 | 0 | } |
3175 | 0 | if (dim_type == IS_CONST && Z_EXTRA_P(dim) == ZEND_EXTRA_VALUE) { |
3176 | 0 | dim++; |
3177 | 0 | } |
3178 | 0 | retval = obj->handlers->read_dimension(obj, dim, type, result); |
3179 | |
|
3180 | 0 | ZEND_ASSERT(result != NULL); |
3181 | 0 | if (retval) { |
3182 | 0 | if (result != retval) { |
3183 | 0 | ZVAL_COPY_DEREF(result, retval); |
3184 | 0 | } else if (UNEXPECTED(Z_ISREF_P(retval))) { |
3185 | 0 | zend_unwrap_reference(result); |
3186 | 0 | } |
3187 | 0 | } else { |
3188 | 0 | ZVAL_NULL(result); |
3189 | 0 | } |
3190 | 0 | if (UNEXPECTED(GC_DELREF(obj) == 0)) { |
3191 | 0 | zend_objects_store_del(obj); |
3192 | 0 | } |
3193 | 0 | } else { |
3194 | 0 | if (type != BP_VAR_IS && UNEXPECTED(Z_TYPE_P(container) == IS_UNDEF)) { |
3195 | 0 | container = ZVAL_UNDEFINED_OP1(); |
3196 | 0 | } |
3197 | 0 | if (ZEND_CONST_COND(dim_type == IS_CV, 1) && UNEXPECTED(Z_TYPE_P(dim) == IS_UNDEF)) { |
3198 | 0 | ZVAL_UNDEFINED_OP2(); |
3199 | 0 | } |
3200 | 0 | if (is_list && Z_TYPE_P(container) > IS_NULL) { |
3201 | 0 | zend_error(E_WARNING, "Cannot use %s as array", zend_zval_type_name(container)); |
3202 | 0 | } |
3203 | 0 | if (!is_list && type != BP_VAR_IS) { |
3204 | 0 | zend_error(E_WARNING, "Trying to access array offset on %s", |
3205 | 0 | zend_zval_value_name(container)); |
3206 | 0 | } |
3207 | 0 | ZVAL_NULL(result); |
3208 | 0 | } |
3209 | 0 | } |
3210 | | |
3211 | | static zend_never_inline void ZEND_FASTCALL zend_fetch_dimension_address_read_R(zval *container, zval *dim, int dim_type OPLINE_DC EXECUTE_DATA_DC) |
3212 | 0 | { |
3213 | 0 | zval *result = EX_VAR(opline->result.var); |
3214 | 0 | zend_fetch_dimension_address_read(result, container, dim, dim_type, BP_VAR_R, 0, 0 EXECUTE_DATA_CC); |
3215 | 0 | } |
3216 | | |
3217 | | static zend_never_inline void zend_fetch_dimension_address_read_R_slow(zval *container, zval *dim OPLINE_DC EXECUTE_DATA_DC) |
3218 | 0 | { |
3219 | 0 | zval *result = EX_VAR(opline->result.var); |
3220 | 0 | zend_fetch_dimension_address_read(result, container, dim, IS_CV, BP_VAR_R, 0, 1 EXECUTE_DATA_CC); |
3221 | 0 | } |
3222 | | |
3223 | | static zend_never_inline void ZEND_FASTCALL zend_fetch_dimension_address_read_IS(zval *container, zval *dim, int dim_type OPLINE_DC EXECUTE_DATA_DC) |
3224 | 0 | { |
3225 | 0 | zval *result = EX_VAR(opline->result.var); |
3226 | 0 | zend_fetch_dimension_address_read(result, container, dim, dim_type, BP_VAR_IS, 0, 0 EXECUTE_DATA_CC); |
3227 | 0 | } |
3228 | | |
3229 | | static zend_never_inline void ZEND_FASTCALL zend_fetch_dimension_address_LIST_r(zval *container, zval *dim, int dim_type OPLINE_DC EXECUTE_DATA_DC) |
3230 | 0 | { |
3231 | 0 | zval *result = EX_VAR(opline->result.var); |
3232 | 0 | zend_fetch_dimension_address_read(result, container, dim, dim_type, BP_VAR_R, 1, 0 EXECUTE_DATA_CC); |
3233 | 0 | } |
3234 | | |
3235 | | ZEND_API void zend_fetch_dimension_const(zval *result, zval *container, zval *dim, int type) |
3236 | 0 | { |
3237 | 0 | zend_fetch_dimension_address_read(result, container, dim, IS_TMP_VAR, type, 0, 0 NO_EXECUTE_DATA_CC); |
3238 | 0 | } |
3239 | | |
3240 | | static zend_never_inline zval* ZEND_FASTCALL zend_find_array_dim_slow(HashTable *ht, zval *offset EXECUTE_DATA_DC) |
3241 | 0 | { |
3242 | 0 | zend_ulong hval; |
3243 | |
|
3244 | 0 | if (Z_TYPE_P(offset) == IS_DOUBLE) { |
3245 | | /* The array may be destroyed while throwing a warning in case the float is not representable as an int. |
3246 | | * Temporarily increase the refcount to detect this situation. */ |
3247 | 0 | GC_TRY_ADDREF(ht); |
3248 | 0 | hval = zend_dval_to_lval_safe(Z_DVAL_P(offset)); |
3249 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && !GC_DELREF(ht)) { |
3250 | 0 | zend_array_destroy(ht); |
3251 | 0 | return NULL; |
3252 | 0 | } |
3253 | 0 | if (EG(exception)) { |
3254 | 0 | return NULL; |
3255 | 0 | } |
3256 | 0 | num_idx: |
3257 | 0 | return zend_hash_index_find(ht, hval); |
3258 | 0 | } else if (Z_TYPE_P(offset) == IS_NULL) { |
3259 | 0 | null_undef_idx: |
3260 | | /* The array may be destroyed while throwing the notice. |
3261 | | * Temporarily increase the refcount to detect this situation. */ |
3262 | 0 | GC_TRY_ADDREF(ht); |
3263 | |
|
3264 | 0 | zend_error(E_DEPRECATED, "Using null as an array offset is deprecated, use an empty string instead"); |
3265 | |
|
3266 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && !GC_DELREF(ht)) { |
3267 | 0 | zend_array_destroy(ht); |
3268 | 0 | return NULL; |
3269 | 0 | } |
3270 | | |
3271 | 0 | if (EG(exception)) { |
3272 | 0 | return NULL; |
3273 | 0 | } |
3274 | | |
3275 | 0 | return zend_hash_find_known_hash(ht, ZSTR_EMPTY_ALLOC()); |
3276 | 0 | } else if (Z_TYPE_P(offset) == IS_FALSE) { |
3277 | 0 | hval = 0; |
3278 | 0 | goto num_idx; |
3279 | 0 | } else if (Z_TYPE_P(offset) == IS_TRUE) { |
3280 | 0 | hval = 1; |
3281 | 0 | goto num_idx; |
3282 | 0 | } else if (Z_TYPE_P(offset) == IS_RESOURCE) { |
3283 | 0 | zend_use_resource_as_offset(offset); |
3284 | 0 | hval = Z_RES_HANDLE_P(offset); |
3285 | 0 | goto num_idx; |
3286 | 0 | } else if (/*OP2_TYPE == IS_CV &&*/ Z_TYPE_P(offset) == IS_UNDEF) { |
3287 | 0 | ZVAL_UNDEFINED_OP2(); |
3288 | 0 | goto null_undef_idx; |
3289 | 0 | } else { |
3290 | 0 | zend_illegal_array_offset_isset(offset); |
3291 | 0 | return NULL; |
3292 | 0 | } |
3293 | 0 | } |
3294 | | |
3295 | | static zend_never_inline bool ZEND_FASTCALL zend_isset_dim_slow(zval *container, zval *offset EXECUTE_DATA_DC) |
3296 | 0 | { |
3297 | 0 | if (/*OP2_TYPE == IS_CV &&*/ UNEXPECTED(Z_TYPE_P(offset) == IS_UNDEF)) { |
3298 | 0 | offset = ZVAL_UNDEFINED_OP2(); |
3299 | 0 | } |
3300 | |
|
3301 | 0 | if (/*OP1_TYPE != IS_CONST &&*/ EXPECTED(Z_TYPE_P(container) == IS_OBJECT)) { |
3302 | 0 | return Z_OBJ_HT_P(container)->has_dimension(Z_OBJ_P(container), offset, 0); |
3303 | 0 | } else if (EXPECTED(Z_TYPE_P(container) == IS_STRING)) { /* string offsets */ |
3304 | 0 | zend_long lval; |
3305 | |
|
3306 | 0 | if (EXPECTED(Z_TYPE_P(offset) == IS_LONG)) { |
3307 | 0 | lval = Z_LVAL_P(offset); |
3308 | 0 | str_offset: |
3309 | 0 | if (UNEXPECTED(lval < 0)) { /* Handle negative offset */ |
3310 | 0 | lval += (zend_long)Z_STRLEN_P(container); |
3311 | 0 | } |
3312 | 0 | if (EXPECTED(lval >= 0) && (size_t)lval < Z_STRLEN_P(container)) { |
3313 | 0 | return 1; |
3314 | 0 | } else { |
3315 | 0 | return 0; |
3316 | 0 | } |
3317 | 0 | } else { |
3318 | | /*if (OP2_TYPE & (IS_CV|IS_VAR)) {*/ |
3319 | 0 | ZVAL_DEREF(offset); |
3320 | | /*}*/ |
3321 | 0 | if (Z_TYPE_P(offset) < IS_STRING /* simple scalar types */ |
3322 | 0 | || (Z_TYPE_P(offset) == IS_STRING /* or numeric string */ |
3323 | 0 | && IS_LONG == is_numeric_string(Z_STRVAL_P(offset), Z_STRLEN_P(offset), NULL, NULL, 0))) { |
3324 | 0 | lval = zval_get_long_ex(offset, /* is_strict */ true); |
3325 | 0 | goto str_offset; |
3326 | 0 | } |
3327 | 0 | return 0; |
3328 | 0 | } |
3329 | 0 | } else { |
3330 | 0 | return 0; |
3331 | 0 | } |
3332 | 0 | } |
3333 | | |
3334 | | static zend_never_inline bool ZEND_FASTCALL zend_isempty_dim_slow(zval *container, zval *offset EXECUTE_DATA_DC) |
3335 | 0 | { |
3336 | 0 | if (/*OP2_TYPE == IS_CV &&*/ UNEXPECTED(Z_TYPE_P(offset) == IS_UNDEF)) { |
3337 | 0 | offset = ZVAL_UNDEFINED_OP2(); |
3338 | 0 | } |
3339 | |
|
3340 | 0 | if (/*OP1_TYPE != IS_CONST &&*/ EXPECTED(Z_TYPE_P(container) == IS_OBJECT)) { |
3341 | 0 | return !Z_OBJ_HT_P(container)->has_dimension(Z_OBJ_P(container), offset, 1); |
3342 | 0 | } else if (EXPECTED(Z_TYPE_P(container) == IS_STRING)) { /* string offsets */ |
3343 | 0 | zend_long lval; |
3344 | |
|
3345 | 0 | if (EXPECTED(Z_TYPE_P(offset) == IS_LONG)) { |
3346 | 0 | lval = Z_LVAL_P(offset); |
3347 | 0 | str_offset: |
3348 | 0 | if (UNEXPECTED(lval < 0)) { /* Handle negative offset */ |
3349 | 0 | lval += (zend_long)Z_STRLEN_P(container); |
3350 | 0 | } |
3351 | 0 | if (EXPECTED(lval >= 0) && (size_t)lval < Z_STRLEN_P(container)) { |
3352 | 0 | return (Z_STRVAL_P(container)[lval] == '0'); |
3353 | 0 | } else { |
3354 | 0 | return 1; |
3355 | 0 | } |
3356 | 0 | } else { |
3357 | | /*if (OP2_TYPE & (IS_CV|IS_VAR)) {*/ |
3358 | 0 | ZVAL_DEREF(offset); |
3359 | | /*}*/ |
3360 | 0 | if (Z_TYPE_P(offset) < IS_STRING /* simple scalar types */ |
3361 | 0 | || (Z_TYPE_P(offset) == IS_STRING /* or numeric string */ |
3362 | 0 | && IS_LONG == is_numeric_string(Z_STRVAL_P(offset), Z_STRLEN_P(offset), NULL, NULL, 0))) { |
3363 | 0 | lval = zval_get_long_ex(offset, /* is_strict */ true); |
3364 | 0 | goto str_offset; |
3365 | 0 | } |
3366 | 0 | return 1; |
3367 | 0 | } |
3368 | 0 | } else { |
3369 | 0 | return 1; |
3370 | 0 | } |
3371 | 0 | } |
3372 | | |
3373 | | static zend_never_inline bool ZEND_FASTCALL zend_array_key_exists_fast(HashTable *ht, zval *key OPLINE_DC EXECUTE_DATA_DC) |
3374 | 0 | { |
3375 | 0 | zend_string *str; |
3376 | 0 | zend_ulong hval; |
3377 | |
|
3378 | 0 | try_again: |
3379 | 0 | if (EXPECTED(Z_TYPE_P(key) == IS_STRING)) { |
3380 | 0 | str = Z_STR_P(key); |
3381 | 0 | if (ZEND_HANDLE_NUMERIC(str, hval)) { |
3382 | 0 | goto num_key; |
3383 | 0 | } |
3384 | 0 | str_key: |
3385 | 0 | return zend_hash_exists(ht, str); |
3386 | 0 | } else if (EXPECTED(Z_TYPE_P(key) == IS_LONG)) { |
3387 | 0 | hval = Z_LVAL_P(key); |
3388 | 0 | num_key: |
3389 | 0 | return zend_hash_index_exists(ht, hval); |
3390 | 0 | } else if (EXPECTED(Z_ISREF_P(key))) { |
3391 | 0 | key = Z_REFVAL_P(key); |
3392 | 0 | goto try_again; |
3393 | 0 | } else if (Z_TYPE_P(key) == IS_DOUBLE) { |
3394 | | /* The array may be destroyed while throwing a warning in case the float is not representable as an int. |
3395 | | * Temporarily increase the refcount to detect this situation. */ |
3396 | 0 | GC_TRY_ADDREF(ht); |
3397 | 0 | hval = zend_dval_to_lval_safe(Z_DVAL_P(key)); |
3398 | 0 | if (!(GC_FLAGS(ht) & IS_ARRAY_IMMUTABLE) && !GC_DELREF(ht)) { |
3399 | 0 | zend_array_destroy(ht); |
3400 | 0 | return false; |
3401 | 0 | } |
3402 | 0 | if (EG(exception)) { |
3403 | 0 | return false; |
3404 | 0 | } |
3405 | 0 | goto num_key; |
3406 | 0 | } else if (Z_TYPE_P(key) == IS_FALSE) { |
3407 | 0 | hval = 0; |
3408 | 0 | goto num_key; |
3409 | 0 | } else if (Z_TYPE_P(key) == IS_TRUE) { |
3410 | 0 | hval = 1; |
3411 | 0 | goto num_key; |
3412 | 0 | } else if (Z_TYPE_P(key) == IS_RESOURCE) { |
3413 | 0 | zend_use_resource_as_offset(key); |
3414 | 0 | hval = Z_RES_HANDLE_P(key); |
3415 | 0 | goto num_key; |
3416 | 0 | } else if (Z_TYPE_P(key) <= IS_NULL) { |
3417 | 0 | if (UNEXPECTED(Z_TYPE_P(key) == IS_UNDEF)) { |
3418 | 0 | ZVAL_UNDEFINED_OP1(); |
3419 | 0 | } else { |
3420 | 0 | ZEND_ASSERT(Z_TYPE_P(key) == IS_NULL); |
3421 | 0 | zend_error(E_DEPRECATED, "Using null as the key parameter for array_key_exists() is deprecated, use an empty string instead"); |
3422 | 0 | } |
3423 | 0 | str = ZSTR_EMPTY_ALLOC(); |
3424 | 0 | goto str_key; |
3425 | 0 | } else { |
3426 | 0 | zend_illegal_array_offset_access(key); |
3427 | 0 | return 0; |
3428 | 0 | } |
3429 | 0 | } |
3430 | | |
3431 | | static ZEND_COLD void ZEND_FASTCALL zend_array_key_exists_error( |
3432 | | zval *subject, zval *key OPLINE_DC EXECUTE_DATA_DC) |
3433 | 0 | { |
3434 | 0 | if (Z_TYPE_P(key) == IS_UNDEF) { |
3435 | 0 | ZVAL_UNDEFINED_OP1(); |
3436 | 0 | } |
3437 | 0 | if (Z_TYPE_P(subject) == IS_UNDEF) { |
3438 | 0 | ZVAL_UNDEFINED_OP2(); |
3439 | 0 | } |
3440 | 0 | if (!EG(exception)) { |
3441 | 0 | zend_type_error("array_key_exists(): Argument #2 ($array) must be of type array, %s given", |
3442 | 0 | zend_zval_value_name(subject)); |
3443 | 0 | } |
3444 | 0 | } |
3445 | | |
3446 | 0 | static zend_always_inline bool promotes_to_array(zval *val) { |
3447 | 0 | return Z_TYPE_P(val) <= IS_FALSE |
3448 | 0 | || (Z_ISREF_P(val) && Z_TYPE_P(Z_REFVAL_P(val)) <= IS_FALSE); |
3449 | 0 | } |
3450 | | |
3451 | 0 | static zend_always_inline bool check_type_array_assignable(zend_type type) { |
3452 | 0 | if (!ZEND_TYPE_IS_SET(type)) { |
3453 | 0 | return 1; |
3454 | 0 | } |
3455 | 0 | return (ZEND_TYPE_FULL_MASK(type) & MAY_BE_ARRAY) != 0; |
3456 | 0 | } |
3457 | | |
3458 | | /* Checks whether an array can be assigned to the reference. Throws error if not assignable. */ |
3459 | 0 | ZEND_API bool zend_verify_ref_array_assignable(zend_reference *ref) { |
3460 | 0 | zend_property_info *prop; |
3461 | 0 | ZEND_ASSERT(ZEND_REF_HAS_TYPE_SOURCES(ref)); |
3462 | 0 | ZEND_REF_FOREACH_TYPE_SOURCES(ref, prop) { |
3463 | 0 | if (!check_type_array_assignable(prop->type)) { |
3464 | 0 | zend_throw_auto_init_in_ref_error(prop); |
3465 | 0 | return 0; |
3466 | 0 | } |
3467 | 0 | } ZEND_REF_FOREACH_TYPE_SOURCES_END(); |
3468 | 0 | return 1; |
3469 | 0 | } |
3470 | | |
3471 | | static zend_never_inline bool zend_handle_fetch_obj_flags( |
3472 | | zval *result, zval *ptr, zend_object *obj, zend_property_info *prop_info, uint32_t flags) |
3473 | 0 | { |
3474 | 0 | switch (flags) { |
3475 | 0 | case ZEND_FETCH_DIM_WRITE: |
3476 | 0 | if (promotes_to_array(ptr)) { |
3477 | 0 | if (!prop_info) { |
3478 | 0 | break; |
3479 | 0 | } |
3480 | 0 | if (!check_type_array_assignable(prop_info->type)) { |
3481 | 0 | zend_throw_auto_init_in_prop_error(prop_info); |
3482 | 0 | if (result) ZVAL_ERROR(result); |
3483 | 0 | return 0; |
3484 | 0 | } |
3485 | 0 | } |
3486 | 0 | break; |
3487 | 0 | case ZEND_FETCH_REF: |
3488 | 0 | if (Z_TYPE_P(ptr) != IS_REFERENCE) { |
3489 | 0 | if (!prop_info) { |
3490 | 0 | break; |
3491 | 0 | } |
3492 | 0 | if (Z_TYPE_P(ptr) == IS_UNDEF) { |
3493 | 0 | if (!ZEND_TYPE_ALLOW_NULL(prop_info->type)) { |
3494 | 0 | zend_throw_access_uninit_prop_by_ref_error(prop_info); |
3495 | 0 | if (result) ZVAL_ERROR(result); |
3496 | 0 | return 0; |
3497 | 0 | } |
3498 | 0 | ZVAL_NULL(ptr); |
3499 | 0 | } |
3500 | | |
3501 | 0 | ZVAL_NEW_REF(ptr, ptr); |
3502 | 0 | ZEND_REF_ADD_TYPE_SOURCE(Z_REF_P(ptr), prop_info); |
3503 | 0 | } |
3504 | 0 | break; |
3505 | 0 | EMPTY_SWITCH_DEFAULT_CASE() |
3506 | 0 | } |
3507 | 0 | return 1; |
3508 | 0 | } |
3509 | | |
3510 | | static zend_always_inline void zend_fetch_property_address(zval *result, zval *container, uint32_t container_op_type, zval *prop_ptr, uint32_t prop_op_type, void **cache_slot, int type, uint32_t flags, zend_property_info **prop_info_p OPLINE_DC EXECUTE_DATA_DC) |
3511 | 0 | { |
3512 | 0 | zval *ptr; |
3513 | 0 | zend_object *zobj; |
3514 | 0 | zend_string *name, *tmp_name; |
3515 | 0 | void *_cache_slot[3] = {0}; |
3516 | 0 | if (prop_op_type != IS_CONST) { |
3517 | 0 | cache_slot = _cache_slot; |
3518 | 0 | } else { |
3519 | 0 | ZEND_ASSERT(cache_slot); |
3520 | 0 | } |
3521 | |
|
3522 | 0 | if (container_op_type != IS_UNUSED && UNEXPECTED(Z_TYPE_P(container) != IS_OBJECT)) { |
3523 | 0 | do { |
3524 | 0 | if (Z_ISREF_P(container) && Z_TYPE_P(Z_REFVAL_P(container)) == IS_OBJECT) { |
3525 | 0 | container = Z_REFVAL_P(container); |
3526 | 0 | break; |
3527 | 0 | } |
3528 | | |
3529 | 0 | if (container_op_type == IS_CV |
3530 | 0 | && type != BP_VAR_W |
3531 | 0 | && UNEXPECTED(Z_TYPE_P(container) == IS_UNDEF)) { |
3532 | 0 | ZVAL_UNDEFINED_OP1(); |
3533 | 0 | } |
3534 | | |
3535 | | /* this should modify object only if it's empty */ |
3536 | 0 | if (type == BP_VAR_UNSET) { |
3537 | 0 | ZVAL_NULL(result); |
3538 | 0 | return; |
3539 | 0 | } |
3540 | | |
3541 | 0 | zend_throw_non_object_error(container, prop_ptr OPLINE_CC EXECUTE_DATA_CC); |
3542 | 0 | ZVAL_ERROR(result); |
3543 | 0 | return; |
3544 | 0 | } while (0); |
3545 | 0 | } |
3546 | | |
3547 | 0 | zobj = Z_OBJ_P(container); |
3548 | 0 | if (prop_op_type == IS_CONST && |
3549 | 0 | EXPECTED(zobj->ce == CACHED_PTR_EX(cache_slot))) { |
3550 | 0 | uintptr_t prop_offset = (uintptr_t)CACHED_PTR_EX(cache_slot + 1); |
3551 | 0 | if (prop_info_p) { |
3552 | 0 | *prop_info_p = CACHED_PTR_EX(cache_slot + 2); |
3553 | 0 | } |
3554 | |
|
3555 | 0 | if (EXPECTED(IS_VALID_PROPERTY_OFFSET(prop_offset))) { |
3556 | 0 | ptr = OBJ_PROP(zobj, prop_offset); |
3557 | 0 | if (EXPECTED(Z_TYPE_P(ptr) != IS_UNDEF)) { |
3558 | 0 | ZVAL_INDIRECT(result, ptr); |
3559 | 0 | zend_property_info *prop_info = CACHED_PTR_EX(cache_slot + 2); |
3560 | 0 | if (prop_info) { |
3561 | 0 | if (UNEXPECTED(prop_info->flags & (ZEND_ACC_READONLY|ZEND_ACC_PPP_SET_MASK)) |
3562 | 0 | && ((prop_info->flags & ZEND_ACC_READONLY) || !zend_asymmetric_property_has_set_access(prop_info))) { |
3563 | | /* For objects, W/RW/UNSET fetch modes might not actually modify object. |
3564 | | * Similar as with magic __get() allow them, but return the value as a copy |
3565 | | * to make sure no actual modification is possible. */ |
3566 | 0 | ZEND_ASSERT(type == BP_VAR_W || type == BP_VAR_RW || type == BP_VAR_UNSET); |
3567 | 0 | if (Z_TYPE_P(ptr) == IS_OBJECT) { |
3568 | 0 | ZVAL_COPY(result, ptr); |
3569 | 0 | } else { |
3570 | 0 | if (prop_info->flags & ZEND_ACC_READONLY) { |
3571 | 0 | zend_readonly_property_indirect_modification_error(prop_info); |
3572 | 0 | } else { |
3573 | 0 | zend_asymmetric_visibility_property_modification_error(prop_info, "indirectly modify"); |
3574 | 0 | } |
3575 | 0 | ZVAL_ERROR(result); |
3576 | 0 | } |
3577 | 0 | return; |
3578 | 0 | } |
3579 | 0 | flags &= ZEND_FETCH_OBJ_FLAGS; |
3580 | 0 | if (flags) { |
3581 | 0 | zend_handle_fetch_obj_flags(result, ptr, NULL, prop_info, flags); |
3582 | 0 | } |
3583 | 0 | } |
3584 | 0 | return; |
3585 | 0 | } |
3586 | 0 | } else if (UNEXPECTED(IS_HOOKED_PROPERTY_OFFSET(prop_offset))) { |
3587 | | /* Fall through to read_property for hooks. */ |
3588 | 0 | } else if (EXPECTED(zobj->properties != NULL)) { |
3589 | 0 | ZEND_ASSERT(IS_DYNAMIC_PROPERTY_OFFSET(prop_offset)); |
3590 | 0 | if (UNEXPECTED(GC_REFCOUNT(zobj->properties) > 1)) { |
3591 | 0 | if (EXPECTED(!(GC_FLAGS(zobj->properties) & IS_ARRAY_IMMUTABLE))) { |
3592 | 0 | GC_DELREF(zobj->properties); |
3593 | 0 | } |
3594 | 0 | zobj->properties = zend_array_dup(zobj->properties); |
3595 | 0 | } |
3596 | 0 | ptr = zend_hash_find_known_hash(zobj->properties, Z_STR_P(prop_ptr)); |
3597 | 0 | if (EXPECTED(ptr)) { |
3598 | 0 | ZVAL_INDIRECT(result, ptr); |
3599 | 0 | return; |
3600 | 0 | } |
3601 | 0 | } |
3602 | 0 | } else if (prop_op_type == IS_CONST) { |
3603 | | /* CE mismatch, make cache slot consistent */ |
3604 | 0 | cache_slot[0] = cache_slot[1] = cache_slot[2] = NULL; |
3605 | 0 | } |
3606 | | |
3607 | | /* Pointer on property callback is required */ |
3608 | 0 | ZEND_ASSERT(zobj->handlers->get_property_ptr_ptr != NULL); |
3609 | |
|
3610 | 0 | if (prop_op_type == IS_CONST) { |
3611 | 0 | name = Z_STR_P(prop_ptr); |
3612 | 0 | } else { |
3613 | 0 | name = zval_get_tmp_string(prop_ptr, &tmp_name); |
3614 | 0 | } |
3615 | 0 | ptr = zobj->handlers->get_property_ptr_ptr(zobj, name, type, cache_slot); |
3616 | 0 | if (NULL == ptr) { |
3617 | 0 | ptr = zobj->handlers->read_property(zobj, name, type, cache_slot, result); |
3618 | 0 | if (ptr == result) { |
3619 | 0 | if (UNEXPECTED(Z_ISREF_P(ptr) && Z_REFCOUNT_P(ptr) == 1)) { |
3620 | 0 | ZVAL_UNREF(ptr); |
3621 | 0 | } |
3622 | 0 | goto end; |
3623 | 0 | } |
3624 | 0 | if (UNEXPECTED(EG(exception))) { |
3625 | 0 | ZVAL_ERROR(result); |
3626 | 0 | goto end; |
3627 | 0 | } |
3628 | 0 | } else if (UNEXPECTED(Z_ISERROR_P(ptr))) { |
3629 | 0 | ZVAL_ERROR(result); |
3630 | 0 | goto end; |
3631 | 0 | } |
3632 | | |
3633 | 0 | ZVAL_INDIRECT(result, ptr); |
3634 | 0 | flags &= ZEND_FETCH_OBJ_FLAGS; |
3635 | 0 | if (flags) { |
3636 | 0 | zend_property_info *prop_info = CACHED_PTR_EX(cache_slot + 2); |
3637 | 0 | if (prop_info && ZEND_TYPE_IS_SET(prop_info->type)) { |
3638 | 0 | if (UNEXPECTED(!zend_handle_fetch_obj_flags(result, ptr, NULL, prop_info, flags))) { |
3639 | 0 | goto end; |
3640 | 0 | } |
3641 | 0 | } |
3642 | 0 | } |
3643 | | |
3644 | 0 | end: |
3645 | 0 | if (prop_info_p) { |
3646 | 0 | *prop_info_p = CACHED_PTR_EX(cache_slot + 2); |
3647 | 0 | } |
3648 | 0 | if (prop_op_type != IS_CONST) { |
3649 | 0 | zend_tmp_string_release(tmp_name); |
3650 | 0 | } |
3651 | 0 | } |
3652 | | |
3653 | | static zend_always_inline void zend_assign_to_property_reference(zval *container, uint32_t container_op_type, zval *prop_ptr, uint32_t prop_op_type, zval *value_ptr OPLINE_DC EXECUTE_DATA_DC) |
3654 | 0 | { |
3655 | 0 | zval variable, *variable_ptr = &variable; |
3656 | 0 | void **cache_addr = (prop_op_type == IS_CONST) ? CACHE_ADDR(opline->extended_value & ~ZEND_RETURNS_FUNCTION) : NULL; |
3657 | 0 | zend_refcounted *garbage = NULL; |
3658 | 0 | zend_property_info *prop_info = NULL; |
3659 | |
|
3660 | 0 | zend_fetch_property_address(variable_ptr, container, container_op_type, prop_ptr, prop_op_type, |
3661 | 0 | cache_addr, BP_VAR_W, 0, &prop_info OPLINE_CC EXECUTE_DATA_CC); |
3662 | |
|
3663 | 0 | if (EXPECTED(Z_TYPE_P(variable_ptr) == IS_INDIRECT)) { |
3664 | 0 | variable_ptr = Z_INDIRECT_P(variable_ptr); |
3665 | 0 | if (/*OP_DATA_TYPE == IS_VAR &&*/ |
3666 | 0 | (opline->extended_value & ZEND_RETURNS_FUNCTION) && |
3667 | 0 | UNEXPECTED(!Z_ISREF_P(value_ptr))) { |
3668 | |
|
3669 | 0 | variable_ptr = zend_wrong_assign_to_variable_reference( |
3670 | 0 | variable_ptr, value_ptr, &garbage OPLINE_CC EXECUTE_DATA_CC); |
3671 | 0 | } else if (prop_info && ZEND_TYPE_IS_SET(prop_info->type)) { |
3672 | 0 | variable_ptr = zend_assign_to_typed_property_reference(prop_info, variable_ptr, value_ptr, &garbage EXECUTE_DATA_CC); |
3673 | 0 | } else { |
3674 | 0 | zend_assign_to_variable_reference(variable_ptr, value_ptr, &garbage); |
3675 | 0 | } |
3676 | 0 | } else if (Z_ISERROR_P(variable_ptr)) { |
3677 | 0 | variable_ptr = &EG(uninitialized_zval); |
3678 | 0 | } else { |
3679 | 0 | zend_throw_error(NULL, "Cannot assign by reference to overloaded object"); |
3680 | 0 | zval_ptr_dtor(&variable); |
3681 | 0 | variable_ptr = &EG(uninitialized_zval); |
3682 | 0 | } |
3683 | |
|
3684 | 0 | if (UNEXPECTED(RETURN_VALUE_USED(opline))) { |
3685 | 0 | ZVAL_COPY(EX_VAR(opline->result.var), variable_ptr); |
3686 | 0 | } |
3687 | 0 | if (garbage) { |
3688 | 0 | GC_DTOR(garbage); |
3689 | 0 | } |
3690 | 0 | } |
3691 | | |
3692 | | static zend_never_inline void zend_assign_to_property_reference_this_const(zval *container, zval *prop_ptr, zval *value_ptr OPLINE_DC EXECUTE_DATA_DC) |
3693 | 0 | { |
3694 | 0 | zend_assign_to_property_reference(container, IS_UNUSED, prop_ptr, IS_CONST, value_ptr |
3695 | 0 | OPLINE_CC EXECUTE_DATA_CC); |
3696 | 0 | } |
3697 | | |
3698 | | static zend_never_inline void zend_assign_to_property_reference_var_const(zval *container, zval *prop_ptr, zval *value_ptr OPLINE_DC EXECUTE_DATA_DC) |
3699 | 0 | { |
3700 | 0 | zend_assign_to_property_reference(container, IS_VAR, prop_ptr, IS_CONST, value_ptr |
3701 | 0 | OPLINE_CC EXECUTE_DATA_CC); |
3702 | 0 | } |
3703 | | |
3704 | | static zend_never_inline void zend_assign_to_property_reference_this_var(zval *container, zval *prop_ptr, zval *value_ptr OPLINE_DC EXECUTE_DATA_DC) |
3705 | 0 | { |
3706 | 0 | zend_assign_to_property_reference(container, IS_UNUSED, prop_ptr, IS_VAR, value_ptr |
3707 | 0 | OPLINE_CC EXECUTE_DATA_CC); |
3708 | 0 | } |
3709 | | |
3710 | | static zend_never_inline void zend_assign_to_property_reference_var_var(zval *container, zval *prop_ptr, zval *value_ptr OPLINE_DC EXECUTE_DATA_DC) |
3711 | 0 | { |
3712 | 0 | zend_assign_to_property_reference(container, IS_VAR, prop_ptr, IS_VAR, value_ptr |
3713 | 0 | OPLINE_CC EXECUTE_DATA_CC); |
3714 | 0 | } |
3715 | | |
3716 | 0 | static zend_never_inline zval* zend_fetch_static_property_address_ex(zend_property_info **prop_info, uint32_t cache_slot, int fetch_type OPLINE_DC EXECUTE_DATA_DC) { |
3717 | 0 | zval *result; |
3718 | 0 | zend_string *name; |
3719 | 0 | zend_class_entry *ce; |
3720 | 0 | zend_property_info *property_info; |
3721 | |
|
3722 | 0 | uint8_t op1_type = opline->op1_type, op2_type = opline->op2_type; |
3723 | |
|
3724 | 0 | if (EXPECTED(op2_type == IS_CONST)) { |
3725 | 0 | zval *class_name = RT_CONSTANT(opline, opline->op2); |
3726 | |
|
3727 | 0 | ZEND_ASSERT(op1_type != IS_CONST || CACHED_PTR(cache_slot) == NULL); |
3728 | |
|
3729 | 0 | if (EXPECTED((ce = CACHED_PTR(cache_slot)) == NULL)) { |
3730 | 0 | ce = zend_fetch_class_by_name(Z_STR_P(class_name), Z_STR_P(class_name + 1), ZEND_FETCH_CLASS_DEFAULT | ZEND_FETCH_CLASS_EXCEPTION); |
3731 | 0 | if (UNEXPECTED(ce == NULL)) { |
3732 | 0 | FREE_OP(op1_type, opline->op1.var); |
3733 | 0 | return NULL; |
3734 | 0 | } |
3735 | 0 | if (UNEXPECTED(op1_type != IS_CONST)) { |
3736 | 0 | CACHE_PTR(cache_slot, ce); |
3737 | 0 | } |
3738 | 0 | } |
3739 | 0 | } else { |
3740 | 0 | if (EXPECTED(op2_type == IS_UNUSED)) { |
3741 | 0 | ce = zend_fetch_class(NULL, opline->op2.num); |
3742 | 0 | if (UNEXPECTED(ce == NULL)) { |
3743 | 0 | FREE_OP(op1_type, opline->op1.var); |
3744 | 0 | return NULL; |
3745 | 0 | } |
3746 | 0 | } else { |
3747 | 0 | ce = Z_CE_P(EX_VAR(opline->op2.var)); |
3748 | 0 | } |
3749 | 0 | if (EXPECTED(op1_type == IS_CONST) && EXPECTED(CACHED_PTR(cache_slot) == ce)) { |
3750 | 0 | result = CACHED_PTR(cache_slot + sizeof(void *)); |
3751 | 0 | *prop_info = CACHED_PTR(cache_slot + sizeof(void *) * 2); |
3752 | 0 | return result; |
3753 | 0 | } |
3754 | 0 | } |
3755 | | |
3756 | 0 | if (EXPECTED(op1_type == IS_CONST)) { |
3757 | 0 | name = Z_STR_P(RT_CONSTANT(opline, opline->op1)); |
3758 | 0 | result = zend_std_get_static_property_with_info(ce, name, fetch_type, &property_info); |
3759 | 0 | } else { |
3760 | 0 | zend_string *tmp_name; |
3761 | 0 | zval *varname = get_zval_ptr_undef(opline->op1_type, opline->op1, BP_VAR_R); |
3762 | 0 | if (EXPECTED(Z_TYPE_P(varname) == IS_STRING)) { |
3763 | 0 | name = Z_STR_P(varname); |
3764 | 0 | tmp_name = NULL; |
3765 | 0 | } else { |
3766 | 0 | if (op1_type == IS_CV && UNEXPECTED(Z_TYPE_P(varname) == IS_UNDEF)) { |
3767 | 0 | zval_undefined_cv(opline->op1.var EXECUTE_DATA_CC); |
3768 | 0 | } |
3769 | 0 | name = zval_get_tmp_string(varname, &tmp_name); |
3770 | 0 | } |
3771 | 0 | result = zend_std_get_static_property_with_info(ce, name, fetch_type, &property_info); |
3772 | |
|
3773 | 0 | zend_tmp_string_release(tmp_name); |
3774 | |
|
3775 | 0 | FREE_OP(op1_type, opline->op1.var); |
3776 | 0 | } |
3777 | |
|
3778 | 0 | if (UNEXPECTED(result == NULL)) { |
3779 | 0 | return NULL; |
3780 | 0 | } |
3781 | | |
3782 | 0 | *prop_info = property_info; |
3783 | |
|
3784 | 0 | if (EXPECTED(op1_type == IS_CONST) |
3785 | 0 | && EXPECTED(!(property_info->ce->ce_flags & ZEND_ACC_TRAIT))) { |
3786 | 0 | CACHE_POLYMORPHIC_PTR(cache_slot, ce, result); |
3787 | 0 | CACHE_PTR(cache_slot + sizeof(void *) * 2, property_info); |
3788 | 0 | } |
3789 | |
|
3790 | 0 | return result; |
3791 | 0 | } |
3792 | | |
3793 | | |
3794 | 0 | static zend_always_inline zval* zend_fetch_static_property_address(zend_property_info **prop_info, uint32_t cache_slot, int fetch_type, int flags OPLINE_DC EXECUTE_DATA_DC) { |
3795 | 0 | zval *result; |
3796 | 0 | zend_property_info *property_info; |
3797 | |
|
3798 | 0 | if (opline->op1_type == IS_CONST |
3799 | 0 | && (opline->op2_type == IS_CONST |
3800 | 0 | || (opline->op2_type == IS_UNUSED |
3801 | 0 | && ((opline->op2.num & ZEND_FETCH_CLASS_MASK) == ZEND_FETCH_CLASS_SELF |
3802 | 0 | || (opline->op2.num & ZEND_FETCH_CLASS_MASK) == ZEND_FETCH_CLASS_PARENT))) |
3803 | 0 | && EXPECTED(CACHED_PTR(cache_slot + sizeof(void *)) != NULL)) { |
3804 | 0 | result = CACHED_PTR(cache_slot + sizeof(void *)); |
3805 | 0 | property_info = CACHED_PTR(cache_slot + sizeof(void *) * 2); |
3806 | |
|
3807 | 0 | if ((fetch_type == BP_VAR_R || fetch_type == BP_VAR_RW) |
3808 | 0 | && UNEXPECTED(Z_TYPE_P(result) == IS_UNDEF) |
3809 | 0 | && ZEND_TYPE_IS_SET(property_info->type)) { |
3810 | 0 | zend_throw_error(NULL, "Typed static property %s::$%s must not be accessed before initialization", |
3811 | 0 | ZSTR_VAL(property_info->ce->name), |
3812 | 0 | zend_get_unmangled_property_name(property_info->name)); |
3813 | 0 | return NULL; |
3814 | 0 | } |
3815 | 0 | } else { |
3816 | 0 | result = zend_fetch_static_property_address_ex(&property_info, cache_slot, fetch_type OPLINE_CC EXECUTE_DATA_CC); |
3817 | 0 | if (UNEXPECTED(!result)) { |
3818 | 0 | return NULL; |
3819 | 0 | } |
3820 | 0 | } |
3821 | | |
3822 | 0 | flags &= ZEND_FETCH_OBJ_FLAGS; |
3823 | 0 | if (flags && ZEND_TYPE_IS_SET(property_info->type)) { |
3824 | 0 | zend_handle_fetch_obj_flags(NULL, result, NULL, property_info, flags); |
3825 | 0 | } |
3826 | |
|
3827 | 0 | if (prop_info) { |
3828 | 0 | *prop_info = property_info; |
3829 | 0 | } |
3830 | |
|
3831 | 0 | return result; |
3832 | 0 | } |
3833 | | |
3834 | 0 | ZEND_API zval* ZEND_FASTCALL zend_fetch_static_property(zend_execute_data *ex, int fetch_type) { |
3835 | 0 | zval *result; |
3836 | 0 | zend_property_info *property_info; |
3837 | | #if defined(ZEND_VM_FP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
3838 | | zend_execute_data *orig_execute_data = execute_data; |
3839 | | #else |
3840 | 0 | zend_execute_data *execute_data; |
3841 | 0 | #endif |
3842 | 0 | execute_data = ex; |
3843 | | #if defined(ZEND_VM_IP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
3844 | | const zend_op *orig_opline = opline; |
3845 | | #else |
3846 | 0 | const zend_op *opline; |
3847 | 0 | #endif |
3848 | 0 | opline = execute_data->opline; |
3849 | |
|
3850 | 0 | uint32_t cache_slot = opline->extended_value & ~ZEND_FETCH_OBJ_FLAGS; |
3851 | 0 | uint32_t flags = 0; |
3852 | |
|
3853 | 0 | if (fetch_type == BP_VAR_W) { |
3854 | 0 | flags = opline->extended_value & ZEND_FETCH_OBJ_FLAGS; |
3855 | 0 | } |
3856 | 0 | result = zend_fetch_static_property_address_ex(&property_info, cache_slot, fetch_type OPLINE_CC EXECUTE_DATA_CC); |
3857 | 0 | if (EXPECTED(result)) { |
3858 | 0 | if (flags && ZEND_TYPE_IS_SET(property_info->type)) { |
3859 | 0 | zend_handle_fetch_obj_flags(NULL, result, NULL, property_info, flags); |
3860 | 0 | } |
3861 | 0 | } else { |
3862 | 0 | result = &EG(uninitialized_zval); |
3863 | 0 | } |
3864 | |
|
3865 | | #if defined(ZEND_VM_IP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
3866 | | EX(opline) = opline; |
3867 | | opline = orig_opline; |
3868 | | #endif |
3869 | | #if defined(ZEND_VM_FP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
3870 | | execute_data = orig_execute_data; |
3871 | | #endif |
3872 | |
|
3873 | 0 | return result; |
3874 | 0 | } |
3875 | | |
3876 | 0 | ZEND_API ZEND_COLD void zend_throw_ref_type_error_type(const zend_property_info *prop1, const zend_property_info *prop2, const zval *zv) { |
3877 | 0 | zend_string *type1_str = zend_type_to_string(prop1->type); |
3878 | 0 | zend_string *type2_str = zend_type_to_string(prop2->type); |
3879 | 0 | zend_type_error("Reference with value of type %s held by property %s::$%s of type %s is not compatible with property %s::$%s of type %s", |
3880 | 0 | zend_zval_type_name(zv), |
3881 | 0 | ZSTR_VAL(prop1->ce->name), |
3882 | 0 | zend_get_unmangled_property_name(prop1->name), |
3883 | 0 | ZSTR_VAL(type1_str), |
3884 | 0 | ZSTR_VAL(prop2->ce->name), |
3885 | 0 | zend_get_unmangled_property_name(prop2->name), |
3886 | 0 | ZSTR_VAL(type2_str) |
3887 | 0 | ); |
3888 | 0 | zend_string_release(type1_str); |
3889 | 0 | zend_string_release(type2_str); |
3890 | 0 | } |
3891 | | |
3892 | 0 | ZEND_API ZEND_COLD void zend_throw_ref_type_error_zval(const zend_property_info *prop, const zval *zv) { |
3893 | 0 | zend_string *type_str = zend_type_to_string(prop->type); |
3894 | 0 | zend_type_error("Cannot assign %s to reference held by property %s::$%s of type %s", |
3895 | 0 | zend_zval_value_name(zv), |
3896 | 0 | ZSTR_VAL(prop->ce->name), |
3897 | 0 | zend_get_unmangled_property_name(prop->name), |
3898 | 0 | ZSTR_VAL(type_str) |
3899 | 0 | ); |
3900 | 0 | zend_string_release(type_str); |
3901 | 0 | } |
3902 | | |
3903 | 0 | ZEND_API ZEND_COLD void zend_throw_conflicting_coercion_error(const zend_property_info *prop1, const zend_property_info *prop2, const zval *zv) { |
3904 | 0 | zend_string *type1_str = zend_type_to_string(prop1->type); |
3905 | 0 | zend_string *type2_str = zend_type_to_string(prop2->type); |
3906 | 0 | zend_type_error("Cannot assign %s to reference held by property %s::$%s of type %s and property %s::$%s of type %s, as this would result in an inconsistent type conversion", |
3907 | 0 | zend_zval_value_name(zv), |
3908 | 0 | ZSTR_VAL(prop1->ce->name), |
3909 | 0 | zend_get_unmangled_property_name(prop1->name), |
3910 | 0 | ZSTR_VAL(type1_str), |
3911 | 0 | ZSTR_VAL(prop2->ce->name), |
3912 | 0 | zend_get_unmangled_property_name(prop2->name), |
3913 | 0 | ZSTR_VAL(type2_str) |
3914 | 0 | ); |
3915 | 0 | zend_string_release(type1_str); |
3916 | 0 | zend_string_release(type2_str); |
3917 | 0 | } |
3918 | | |
3919 | | /* 1: valid, 0: invalid, -1: may be valid after type coercion */ |
3920 | | static zend_always_inline int i_zend_verify_type_assignable_zval( |
3921 | 0 | const zend_property_info *info, const zval *zv, bool strict) { |
3922 | 0 | zend_type type = info->type; |
3923 | 0 | uint32_t type_mask; |
3924 | 0 | uint8_t zv_type = Z_TYPE_P(zv); |
3925 | |
|
3926 | 0 | if (EXPECTED(ZEND_TYPE_CONTAINS_CODE(type, zv_type))) { |
3927 | 0 | return 1; |
3928 | 0 | } |
3929 | | |
3930 | 0 | if (ZEND_TYPE_IS_COMPLEX(type) && zv_type == IS_OBJECT |
3931 | 0 | && zend_check_and_resolve_property_or_class_constant_class_type(info->ce, info->type, Z_OBJCE_P(zv))) { |
3932 | 0 | return 1; |
3933 | 0 | } |
3934 | | |
3935 | 0 | type_mask = ZEND_TYPE_FULL_MASK(type); |
3936 | 0 | ZEND_ASSERT(!(type_mask & (MAY_BE_CALLABLE|MAY_BE_STATIC))); |
3937 | | |
3938 | | /* SSTH Exception: IS_LONG may be accepted as IS_DOUBLE (converted) */ |
3939 | 0 | if (strict) { |
3940 | 0 | if ((type_mask & MAY_BE_DOUBLE) && zv_type == IS_LONG) { |
3941 | 0 | return -1; |
3942 | 0 | } |
3943 | 0 | return 0; |
3944 | 0 | } |
3945 | | |
3946 | | /* NULL may be accepted only by nullable hints (this is already checked) */ |
3947 | 0 | if (zv_type == IS_NULL) { |
3948 | 0 | return 0; |
3949 | 0 | } |
3950 | | |
3951 | | /* Does not contain any type to which a coercion is possible */ |
3952 | 0 | if (!(type_mask & (MAY_BE_LONG|MAY_BE_DOUBLE|MAY_BE_STRING)) |
3953 | 0 | && (type_mask & MAY_BE_BOOL) != MAY_BE_BOOL) { |
3954 | 0 | return 0; |
3955 | 0 | } |
3956 | | |
3957 | | /* Coercion may be necessary, check separately */ |
3958 | 0 | return -1; |
3959 | 0 | } |
3960 | | |
3961 | | ZEND_API bool ZEND_FASTCALL zend_verify_ref_assignable_zval(zend_reference *ref, zval *zv, bool strict) |
3962 | 0 | { |
3963 | 0 | const zend_property_info *prop; |
3964 | | |
3965 | | /* The value must satisfy each property type, and coerce to the same value for each property |
3966 | | * type. Remember the first coerced type and value we've seen for this purpose. */ |
3967 | 0 | const zend_property_info *first_prop = NULL; |
3968 | 0 | zval coerced_value; |
3969 | 0 | ZVAL_UNDEF(&coerced_value); |
3970 | |
|
3971 | 0 | ZEND_ASSERT(Z_TYPE_P(zv) != IS_REFERENCE); |
3972 | 0 | ZEND_REF_FOREACH_TYPE_SOURCES(ref, prop) { |
3973 | 0 | int result = i_zend_verify_type_assignable_zval(prop, zv, strict); |
3974 | 0 | if (result == 0) { |
3975 | 0 | type_error: |
3976 | 0 | zend_throw_ref_type_error_zval(prop, zv); |
3977 | 0 | zval_ptr_dtor(&coerced_value); |
3978 | 0 | return 0; |
3979 | 0 | } |
3980 | | |
3981 | 0 | if (result < 0) { |
3982 | 0 | if (!first_prop) { |
3983 | 0 | first_prop = prop; |
3984 | 0 | ZVAL_COPY(&coerced_value, zv); |
3985 | 0 | if (!zend_verify_weak_scalar_type_hint( |
3986 | 0 | ZEND_TYPE_FULL_MASK(prop->type), &coerced_value)) { |
3987 | 0 | goto type_error; |
3988 | 0 | } |
3989 | 0 | } else if (Z_ISUNDEF(coerced_value)) { |
3990 | | /* A previous property did not require coercion, but this one does, |
3991 | | * so they are incompatible. */ |
3992 | 0 | goto conflicting_coercion_error; |
3993 | 0 | } else { |
3994 | 0 | zval tmp; |
3995 | 0 | ZVAL_COPY(&tmp, zv); |
3996 | 0 | if (!zend_verify_weak_scalar_type_hint(ZEND_TYPE_FULL_MASK(prop->type), &tmp)) { |
3997 | 0 | zval_ptr_dtor(&tmp); |
3998 | 0 | goto type_error; |
3999 | 0 | } |
4000 | 0 | if (!zend_is_identical(&coerced_value, &tmp)) { |
4001 | 0 | zval_ptr_dtor(&tmp); |
4002 | 0 | goto conflicting_coercion_error; |
4003 | 0 | } |
4004 | 0 | zval_ptr_dtor(&tmp); |
4005 | 0 | } |
4006 | 0 | } else { |
4007 | 0 | if (!first_prop) { |
4008 | 0 | first_prop = prop; |
4009 | 0 | } else if (!Z_ISUNDEF(coerced_value)) { |
4010 | | /* A previous property required coercion, but this one doesn't, |
4011 | | * so they are incompatible. */ |
4012 | 0 | conflicting_coercion_error: |
4013 | 0 | zend_throw_conflicting_coercion_error(first_prop, prop, zv); |
4014 | 0 | zval_ptr_dtor(&coerced_value); |
4015 | 0 | return 0; |
4016 | 0 | } |
4017 | 0 | } |
4018 | 0 | } ZEND_REF_FOREACH_TYPE_SOURCES_END(); |
4019 | | |
4020 | 0 | if (!Z_ISUNDEF(coerced_value)) { |
4021 | 0 | zval_ptr_dtor(zv); |
4022 | 0 | ZVAL_COPY_VALUE(zv, &coerced_value); |
4023 | 0 | } |
4024 | |
|
4025 | 0 | return 1; |
4026 | 0 | } |
4027 | | |
4028 | 0 | static zend_always_inline void i_zval_ptr_dtor_noref(zval *zval_ptr) { |
4029 | 0 | if (Z_REFCOUNTED_P(zval_ptr)) { |
4030 | 0 | zend_refcounted *ref = Z_COUNTED_P(zval_ptr); |
4031 | 0 | ZEND_ASSERT(Z_TYPE_P(zval_ptr) != IS_REFERENCE); |
4032 | 0 | GC_DTOR_NO_REF(ref); |
4033 | 0 | } |
4034 | 0 | } |
4035 | | |
4036 | | ZEND_API zval* zend_assign_to_typed_ref_ex(zval *variable_ptr, zval *orig_value, uint8_t value_type, bool strict, zend_refcounted **garbage_ptr) |
4037 | 0 | { |
4038 | 0 | bool ret; |
4039 | 0 | zval value; |
4040 | 0 | zend_refcounted *ref = NULL; |
4041 | |
|
4042 | 0 | if (Z_ISREF_P(orig_value)) { |
4043 | 0 | ref = Z_COUNTED_P(orig_value); |
4044 | 0 | orig_value = Z_REFVAL_P(orig_value); |
4045 | 0 | } |
4046 | |
|
4047 | 0 | ZVAL_COPY(&value, orig_value); |
4048 | 0 | ret = zend_verify_ref_assignable_zval(Z_REF_P(variable_ptr), &value, strict); |
4049 | 0 | variable_ptr = Z_REFVAL_P(variable_ptr); |
4050 | 0 | if (EXPECTED(ret)) { |
4051 | 0 | if (Z_REFCOUNTED_P(variable_ptr)) { |
4052 | 0 | *garbage_ptr = Z_COUNTED_P(variable_ptr); |
4053 | 0 | } |
4054 | 0 | ZVAL_COPY_VALUE(variable_ptr, &value); |
4055 | 0 | } else { |
4056 | 0 | zval_ptr_dtor_nogc(&value); |
4057 | 0 | } |
4058 | 0 | if (value_type & (IS_VAR|IS_TMP_VAR)) { |
4059 | 0 | if (UNEXPECTED(ref)) { |
4060 | 0 | if (UNEXPECTED(GC_DELREF(ref) == 0)) { |
4061 | 0 | zval_ptr_dtor(orig_value); |
4062 | 0 | efree_size(ref, sizeof(zend_reference)); |
4063 | 0 | } |
4064 | 0 | } else { |
4065 | 0 | i_zval_ptr_dtor_noref(orig_value); |
4066 | 0 | } |
4067 | 0 | } |
4068 | 0 | return variable_ptr; |
4069 | 0 | } |
4070 | | |
4071 | | ZEND_API zval* zend_assign_to_typed_ref(zval *variable_ptr, zval *orig_value, uint8_t value_type, bool strict) |
4072 | 0 | { |
4073 | 0 | zend_refcounted *garbage = NULL; |
4074 | 0 | zval *result = zend_assign_to_typed_ref_ex(variable_ptr, orig_value, value_type, strict, &garbage); |
4075 | 0 | if (garbage) { |
4076 | 0 | GC_DTOR_NO_REF(garbage); |
4077 | 0 | } |
4078 | 0 | return result; |
4079 | 0 | } |
4080 | | |
4081 | 0 | ZEND_API bool ZEND_FASTCALL zend_verify_prop_assignable_by_ref_ex(const zend_property_info *prop_info, zval *orig_val, bool strict, zend_verify_prop_assignable_by_ref_context context) { |
4082 | 0 | zval *val = orig_val; |
4083 | 0 | if (Z_ISREF_P(val) && ZEND_REF_HAS_TYPE_SOURCES(Z_REF_P(val))) { |
4084 | 0 | int result; |
4085 | |
|
4086 | 0 | val = Z_REFVAL_P(val); |
4087 | 0 | result = i_zend_verify_type_assignable_zval(prop_info, val, strict); |
4088 | 0 | if (result > 0) { |
4089 | 0 | return 1; |
4090 | 0 | } |
4091 | | |
4092 | 0 | if (result < 0) { |
4093 | | /* This is definitely an error, but we still need to determined why: Either because |
4094 | | * the value is simply illegal for the type, or because or a conflicting coercion. */ |
4095 | 0 | zval tmp; |
4096 | 0 | ZVAL_COPY(&tmp, val); |
4097 | 0 | if (zend_verify_weak_scalar_type_hint(ZEND_TYPE_FULL_MASK(prop_info->type), &tmp)) { |
4098 | 0 | const zend_property_info *ref_prop = ZEND_REF_FIRST_SOURCE(Z_REF_P(orig_val)); |
4099 | 0 | zend_throw_ref_type_error_type(ref_prop, prop_info, val); |
4100 | 0 | zval_ptr_dtor(&tmp); |
4101 | 0 | return 0; |
4102 | 0 | } |
4103 | 0 | zval_ptr_dtor(&tmp); |
4104 | 0 | } |
4105 | 0 | } else { |
4106 | 0 | ZVAL_DEREF(val); |
4107 | 0 | if (i_zend_check_property_type(prop_info, val, strict)) { |
4108 | 0 | return 1; |
4109 | 0 | } |
4110 | 0 | } |
4111 | | |
4112 | 0 | if (EXPECTED(context == ZEND_VERIFY_PROP_ASSIGNABLE_BY_REF_CONTEXT_ASSIGNMENT)) { |
4113 | 0 | zend_verify_property_type_error(prop_info, val); |
4114 | 0 | } else { |
4115 | 0 | ZEND_ASSERT(context == ZEND_VERIFY_PROP_ASSIGNABLE_BY_REF_CONTEXT_MAGIC_GET); |
4116 | 0 | zend_magic_get_property_type_inconsistency_error(prop_info, val); |
4117 | 0 | } |
4118 | |
|
4119 | 0 | return 0; |
4120 | 0 | } |
4121 | | |
4122 | 0 | ZEND_API bool ZEND_FASTCALL zend_verify_prop_assignable_by_ref(const zend_property_info *prop_info, zval *orig_val, bool strict) { |
4123 | 0 | return zend_verify_prop_assignable_by_ref_ex(prop_info, orig_val, strict, ZEND_VERIFY_PROP_ASSIGNABLE_BY_REF_CONTEXT_ASSIGNMENT); |
4124 | 0 | } |
4125 | | |
4126 | | ZEND_API void ZEND_FASTCALL zend_ref_add_type_source(zend_property_info_source_list *source_list, zend_property_info *prop) |
4127 | 0 | { |
4128 | 0 | zend_property_info_list *list; |
4129 | 0 | if (source_list->ptr == NULL) { |
4130 | 0 | source_list->ptr = prop; |
4131 | 0 | return; |
4132 | 0 | } |
4133 | | |
4134 | 0 | list = ZEND_PROPERTY_INFO_SOURCE_TO_LIST(source_list->list); |
4135 | 0 | if (!ZEND_PROPERTY_INFO_SOURCE_IS_LIST(source_list->list)) { |
4136 | 0 | list = emalloc(sizeof(zend_property_info_list) + (4 - 1) * sizeof(zend_property_info *)); |
4137 | 0 | list->ptr[0] = source_list->ptr; |
4138 | 0 | list->num_allocated = 4; |
4139 | 0 | list->num = 1; |
4140 | 0 | } else if (list->num_allocated == list->num) { |
4141 | 0 | list->num_allocated = list->num * 2; |
4142 | 0 | list = erealloc(list, sizeof(zend_property_info_list) + (list->num_allocated - 1) * sizeof(zend_property_info *)); |
4143 | 0 | } |
4144 | |
|
4145 | 0 | list->ptr[list->num++] = prop; |
4146 | 0 | source_list->list = ZEND_PROPERTY_INFO_SOURCE_FROM_LIST(list); |
4147 | 0 | } |
4148 | | |
4149 | | ZEND_API void ZEND_FASTCALL zend_ref_del_type_source(zend_property_info_source_list *source_list, const zend_property_info *prop) |
4150 | 0 | { |
4151 | 0 | zend_property_info_list *list = ZEND_PROPERTY_INFO_SOURCE_TO_LIST(source_list->list); |
4152 | 0 | zend_property_info **ptr, **end; |
4153 | |
|
4154 | 0 | ZEND_ASSERT(prop); |
4155 | 0 | if (!ZEND_PROPERTY_INFO_SOURCE_IS_LIST(source_list->list)) { |
4156 | 0 | ZEND_ASSERT(source_list->ptr == prop); |
4157 | 0 | source_list->ptr = NULL; |
4158 | 0 | return; |
4159 | 0 | } |
4160 | | |
4161 | 0 | if (list->num == 1) { |
4162 | 0 | ZEND_ASSERT(*list->ptr == prop); |
4163 | 0 | efree(list); |
4164 | 0 | source_list->ptr = NULL; |
4165 | 0 | return; |
4166 | 0 | } |
4167 | | |
4168 | | /* Checking against end here to get a more graceful failure mode if we missed adding a type |
4169 | | * source at some point. */ |
4170 | 0 | ptr = list->ptr; |
4171 | 0 | end = ptr + list->num; |
4172 | 0 | while (ptr < end && *ptr != prop) { |
4173 | 0 | ptr++; |
4174 | 0 | } |
4175 | 0 | ZEND_ASSERT(*ptr == prop); |
4176 | | |
4177 | | /* Copy the last list element into the deleted slot. */ |
4178 | 0 | *ptr = list->ptr[--list->num]; |
4179 | |
|
4180 | 0 | if (list->num >= 4 && list->num * 4 == list->num_allocated) { |
4181 | 0 | list->num_allocated = list->num * 2; |
4182 | 0 | source_list->list = ZEND_PROPERTY_INFO_SOURCE_FROM_LIST(erealloc(list, sizeof(zend_property_info_list) + (list->num_allocated - 1) * sizeof(zend_property_info *))); |
4183 | 0 | } |
4184 | 0 | } |
4185 | | |
4186 | | static zend_never_inline void zend_fetch_this_var(int type OPLINE_DC EXECUTE_DATA_DC) |
4187 | 0 | { |
4188 | 0 | zval *result = EX_VAR(opline->result.var); |
4189 | |
|
4190 | 0 | switch (type) { |
4191 | 0 | case BP_VAR_R: |
4192 | 0 | if (EXPECTED(Z_TYPE(EX(This)) == IS_OBJECT)) { |
4193 | 0 | ZVAL_OBJ(result, Z_OBJ(EX(This))); |
4194 | 0 | Z_ADDREF_P(result); |
4195 | 0 | } else { |
4196 | 0 | ZVAL_NULL(result); |
4197 | 0 | zend_error_unchecked(E_WARNING, "Undefined variable $this"); |
4198 | 0 | } |
4199 | 0 | break; |
4200 | 0 | case BP_VAR_IS: |
4201 | 0 | if (EXPECTED(Z_TYPE(EX(This)) == IS_OBJECT)) { |
4202 | 0 | ZVAL_OBJ(result, Z_OBJ(EX(This))); |
4203 | 0 | Z_ADDREF_P(result); |
4204 | 0 | } else { |
4205 | 0 | ZVAL_NULL(result); |
4206 | 0 | } |
4207 | 0 | break; |
4208 | 0 | case BP_VAR_RW: |
4209 | 0 | case BP_VAR_W: |
4210 | 0 | ZVAL_UNDEF(result); |
4211 | 0 | zend_throw_error(NULL, "Cannot re-assign $this"); |
4212 | 0 | break; |
4213 | 0 | case BP_VAR_UNSET: |
4214 | 0 | ZVAL_UNDEF(result); |
4215 | 0 | zend_throw_error(NULL, "Cannot unset $this"); |
4216 | 0 | break; |
4217 | 0 | EMPTY_SWITCH_DEFAULT_CASE() |
4218 | 0 | } |
4219 | 0 | } |
4220 | | |
4221 | | #if ZEND_INTENSIVE_DEBUGGING |
4222 | | |
4223 | | #define CHECK_SYMBOL_TABLES() \ |
4224 | | zend_hash_apply(&EG(symbol_table), zend_check_symbol); \ |
4225 | | if (&EG(symbol_table)!=EX(symbol_table)) { \ |
4226 | | zend_hash_apply(EX(symbol_table), zend_check_symbol); \ |
4227 | | } |
4228 | | |
4229 | | static void zend_check_symbol(zval *pz) |
4230 | | { |
4231 | | if (Z_TYPE_P(pz) == IS_INDIRECT) { |
4232 | | pz = Z_INDIRECT_P(pz); |
4233 | | } |
4234 | | if (Z_TYPE_P(pz) > 10) { |
4235 | | fprintf(stderr, "Warning! %x has invalid type!\n", *pz); |
4236 | | /* See http://support.microsoft.com/kb/190351 */ |
4237 | | #ifdef ZEND_WIN32 |
4238 | | fflush(stderr); |
4239 | | #endif |
4240 | | } else if (Z_TYPE_P(pz) == IS_ARRAY) { |
4241 | | zend_hash_apply(Z_ARRVAL_P(pz), zend_check_symbol); |
4242 | | } else if (Z_TYPE_P(pz) == IS_OBJECT) { |
4243 | | /* OBJ-TBI - doesn't support new object model! */ |
4244 | | zend_hash_apply(Z_OBJPROP_P(pz), zend_check_symbol); |
4245 | | } |
4246 | | } |
4247 | | |
4248 | | |
4249 | | #else |
4250 | | #define CHECK_SYMBOL_TABLES() |
4251 | | #endif |
4252 | | |
4253 | | ZEND_API void execute_internal(zend_execute_data *execute_data, zval *return_value) |
4254 | 0 | { |
4255 | 0 | execute_data->func->internal_function.handler(execute_data, return_value); |
4256 | 0 | } |
4257 | | |
4258 | | ZEND_API void zend_clean_and_cache_symbol_table(zend_array *symbol_table) /* {{{ */ |
4259 | 0 | { |
4260 | | /* Clean before putting into the cache, since clean could call dtors, |
4261 | | * which could use the cached hash. Also do this before the check for |
4262 | | * available cache slots, as those may be used by a dtor as well. */ |
4263 | 0 | zend_symtable_clean(symbol_table); |
4264 | 0 | if (EG(symtable_cache_ptr) >= EG(symtable_cache_limit)) { |
4265 | 0 | zend_array_destroy(symbol_table); |
4266 | 0 | } else { |
4267 | 0 | *(EG(symtable_cache_ptr)++) = symbol_table; |
4268 | 0 | } |
4269 | 0 | } |
4270 | | /* }}} */ |
4271 | | |
4272 | | static zend_always_inline void i_free_compiled_variables(zend_execute_data *execute_data) /* {{{ */ |
4273 | 0 | { |
4274 | 0 | zval *cv = EX_VAR_NUM(0); |
4275 | 0 | int count = EX(func)->op_array.last_var; |
4276 | 0 | while (EXPECTED(count != 0)) { |
4277 | 0 | i_zval_ptr_dtor(cv); |
4278 | 0 | cv++; |
4279 | 0 | count--; |
4280 | 0 | } |
4281 | 0 | } |
4282 | | /* }}} */ |
4283 | | |
4284 | | ZEND_API void ZEND_FASTCALL zend_free_compiled_variables(zend_execute_data *execute_data) /* {{{ */ |
4285 | 0 | { |
4286 | 0 | i_free_compiled_variables(execute_data); |
4287 | 0 | } |
4288 | | /* }}} */ |
4289 | | |
4290 | | ZEND_API ZEND_COLD void ZEND_FASTCALL zend_fcall_interrupt(zend_execute_data *call) |
4291 | 0 | { |
4292 | 0 | zend_atomic_bool_store_ex(&EG(vm_interrupt), false); |
4293 | 0 | if (zend_atomic_bool_load_ex(&EG(timed_out))) { |
4294 | 0 | zend_timeout(); |
4295 | 0 | } else if (zend_interrupt_function) { |
4296 | 0 | zend_interrupt_function(call); |
4297 | 0 | } |
4298 | 0 | } |
4299 | | |
4300 | 0 | #define ZEND_VM_INTERRUPT_CHECK() do { \ |
4301 | 0 | if (UNEXPECTED(zend_atomic_bool_load_ex(&EG(vm_interrupt)))) { \ |
4302 | 0 | ZEND_VM_INTERRUPT(); \ |
4303 | 0 | } \ |
4304 | 0 | } while (0) |
4305 | | |
4306 | 0 | #define ZEND_VM_LOOP_INTERRUPT_CHECK() do { \ |
4307 | 0 | if (UNEXPECTED(zend_atomic_bool_load_ex(&EG(vm_interrupt)))) { \ |
4308 | 0 | ZEND_VM_LOOP_INTERRUPT(); \ |
4309 | 0 | } \ |
4310 | 0 | } while (0) |
4311 | | |
4312 | 0 | #define ZEND_VM_FCALL_INTERRUPT_CHECK(call) do { \ |
4313 | 0 | if (UNEXPECTED(zend_atomic_bool_load_ex(&EG(vm_interrupt)))) { \ |
4314 | 0 | zend_fcall_interrupt(call); \ |
4315 | 0 | } \ |
4316 | 0 | } while (0) |
4317 | | |
4318 | | /* |
4319 | | * Stack Frame Layout (the whole stack frame is allocated at once) |
4320 | | * ================== |
4321 | | * |
4322 | | * +========================================+ |
4323 | | * EG(current_execute_data) -> | zend_execute_data | |
4324 | | * +----------------------------------------+ |
4325 | | * EX_VAR_NUM(0) --------> | VAR[0] = ARG[1] | |
4326 | | * | ... | |
4327 | | * | VAR[op_array->num_args-1] = ARG[N] | |
4328 | | * | ... | |
4329 | | * | VAR[op_array->last_var-1] | |
4330 | | * | VAR[op_array->last_var] = TMP[0] | |
4331 | | * | ... | |
4332 | | * | VAR[op_array->last_var+op_array->T-1] | |
4333 | | * | ARG[N+1] (extra_args) | |
4334 | | * | ... | |
4335 | | * +----------------------------------------+ |
4336 | | */ |
4337 | | |
4338 | | /* zend_copy_extra_args is used when the actually passed number of arguments |
4339 | | * (EX_NUM_ARGS) is greater than what the function defined (op_array->num_args). |
4340 | | * |
4341 | | * The extra arguments will be copied into the call frame after all the compiled variables. |
4342 | | * |
4343 | | * If there are extra arguments copied, a flag "ZEND_CALL_FREE_EXTRA_ARGS" will be set |
4344 | | * on the zend_execute_data, and when the executor leaves the function, the |
4345 | | * args will be freed in zend_leave_helper. |
4346 | | */ |
4347 | | static zend_never_inline void zend_copy_extra_args(EXECUTE_DATA_D) |
4348 | 0 | { |
4349 | 0 | const zend_op_array *op_array = &EX(func)->op_array; |
4350 | 0 | uint32_t first_extra_arg = op_array->num_args; |
4351 | 0 | uint32_t num_args = EX_NUM_ARGS(); |
4352 | 0 | zval *src; |
4353 | 0 | size_t delta; |
4354 | 0 | uint32_t count; |
4355 | 0 | uint32_t type_flags = 0; |
4356 | |
|
4357 | 0 | if (EXPECTED((op_array->fn_flags & ZEND_ACC_HAS_TYPE_HINTS) == 0)) { |
4358 | | /* Skip useless ZEND_RECV and ZEND_RECV_INIT opcodes */ |
4359 | | #if defined(ZEND_VM_IP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
4360 | | opline += first_extra_arg; |
4361 | | #else |
4362 | 0 | EX(opline) += first_extra_arg; |
4363 | 0 | #endif |
4364 | |
|
4365 | 0 | } |
4366 | | |
4367 | | /* move extra args into separate array after all CV and TMP vars */ |
4368 | 0 | src = EX_VAR_NUM(num_args - 1); |
4369 | 0 | delta = op_array->last_var + op_array->T - first_extra_arg; |
4370 | 0 | count = num_args - first_extra_arg; |
4371 | 0 | if (EXPECTED(delta != 0)) { |
4372 | 0 | delta *= sizeof(zval); |
4373 | 0 | do { |
4374 | 0 | type_flags |= Z_TYPE_INFO_P(src); |
4375 | 0 | ZVAL_COPY_VALUE((zval*)(((char*)src) + delta), src); |
4376 | 0 | ZVAL_UNDEF(src); |
4377 | 0 | src--; |
4378 | 0 | } while (--count); |
4379 | 0 | if (Z_TYPE_INFO_REFCOUNTED(type_flags)) { |
4380 | 0 | ZEND_ADD_CALL_FLAG(execute_data, ZEND_CALL_FREE_EXTRA_ARGS); |
4381 | 0 | } |
4382 | 0 | } else { |
4383 | 0 | do { |
4384 | 0 | if (Z_REFCOUNTED_P(src)) { |
4385 | 0 | ZEND_ADD_CALL_FLAG(execute_data, ZEND_CALL_FREE_EXTRA_ARGS); |
4386 | 0 | break; |
4387 | 0 | } |
4388 | 0 | src--; |
4389 | 0 | } while (--count); |
4390 | 0 | } |
4391 | 0 | } |
4392 | | |
4393 | | static zend_always_inline void zend_init_cvs(uint32_t first, uint32_t last EXECUTE_DATA_DC) |
4394 | 0 | { |
4395 | 0 | if (EXPECTED(first < last)) { |
4396 | 0 | uint32_t count = last - first; |
4397 | 0 | zval *var = EX_VAR_NUM(first); |
4398 | |
|
4399 | 0 | do { |
4400 | 0 | ZVAL_UNDEF(var); |
4401 | 0 | var++; |
4402 | 0 | } while (--count); |
4403 | 0 | } |
4404 | 0 | } |
4405 | | |
4406 | | static zend_always_inline void i_init_func_execute_data(zend_op_array *op_array, zval *return_value, bool may_be_trampoline EXECUTE_DATA_DC) /* {{{ */ |
4407 | 0 | { |
4408 | 0 | uint32_t first_extra_arg, num_args; |
4409 | 0 | ZEND_ASSERT(EX(func) == (zend_function*)op_array); |
4410 | |
|
4411 | | #if defined(ZEND_VM_IP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
4412 | | opline = op_array->opcodes; |
4413 | | #else |
4414 | 0 | EX(opline) = op_array->opcodes; |
4415 | 0 | #endif |
4416 | 0 | EX(call) = NULL; |
4417 | 0 | EX(return_value) = return_value; |
4418 | | |
4419 | | /* Handle arguments */ |
4420 | 0 | first_extra_arg = op_array->num_args; |
4421 | 0 | num_args = EX_NUM_ARGS(); |
4422 | 0 | if (UNEXPECTED(num_args > first_extra_arg)) { |
4423 | 0 | if (!may_be_trampoline || EXPECTED(!(op_array->fn_flags & ZEND_ACC_CALL_VIA_TRAMPOLINE))) { |
4424 | 0 | zend_copy_extra_args(EXECUTE_DATA_C); |
4425 | 0 | } |
4426 | 0 | } else if (EXPECTED((op_array->fn_flags & ZEND_ACC_HAS_TYPE_HINTS) == 0)) { |
4427 | | /* Skip useless ZEND_RECV and ZEND_RECV_INIT opcodes */ |
4428 | | #if defined(ZEND_VM_IP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
4429 | | opline += num_args; |
4430 | | #else |
4431 | 0 | EX(opline) += num_args; |
4432 | 0 | #endif |
4433 | 0 | } |
4434 | | |
4435 | | /* Initialize CV variables (skip arguments) */ |
4436 | 0 | zend_init_cvs(num_args, op_array->last_var EXECUTE_DATA_CC); |
4437 | |
|
4438 | 0 | EX(run_time_cache) = RUN_TIME_CACHE(op_array); |
4439 | |
|
4440 | 0 | EG(current_execute_data) = execute_data; |
4441 | 0 | } |
4442 | | /* }}} */ |
4443 | | |
4444 | | static zend_always_inline void init_func_run_time_cache_i(zend_op_array *op_array) /* {{{ */ |
4445 | 0 | { |
4446 | 0 | void **run_time_cache; |
4447 | |
|
4448 | 0 | ZEND_ASSERT(RUN_TIME_CACHE(op_array) == NULL); |
4449 | 0 | run_time_cache = zend_arena_alloc(&CG(arena), op_array->cache_size); |
4450 | 0 | memset(run_time_cache, 0, op_array->cache_size); |
4451 | 0 | ZEND_MAP_PTR_SET(op_array->run_time_cache, run_time_cache); |
4452 | 0 | } |
4453 | | /* }}} */ |
4454 | | |
4455 | | static zend_never_inline void ZEND_FASTCALL init_func_run_time_cache(zend_op_array *op_array) /* {{{ */ |
4456 | 0 | { |
4457 | 0 | init_func_run_time_cache_i(op_array); |
4458 | 0 | } |
4459 | | /* }}} */ |
4460 | | |
4461 | | ZEND_API zend_function * ZEND_FASTCALL zend_fetch_function(zend_string *name) /* {{{ */ |
4462 | 0 | { |
4463 | 0 | zval *zv = zend_hash_find(EG(function_table), name); |
4464 | |
|
4465 | 0 | if (EXPECTED(zv != NULL)) { |
4466 | 0 | zend_function *fbc = Z_FUNC_P(zv); |
4467 | |
|
4468 | 0 | if (EXPECTED(fbc->type == ZEND_USER_FUNCTION) && UNEXPECTED(!RUN_TIME_CACHE(&fbc->op_array))) { |
4469 | 0 | init_func_run_time_cache_i(&fbc->op_array); |
4470 | 0 | } |
4471 | 0 | return fbc; |
4472 | 0 | } |
4473 | 0 | return NULL; |
4474 | 0 | } /* }}} */ |
4475 | | |
4476 | | ZEND_API zend_function * ZEND_FASTCALL zend_fetch_function_str(const char *name, size_t len) /* {{{ */ |
4477 | 0 | { |
4478 | 0 | zval *zv = zend_hash_str_find(EG(function_table), name, len); |
4479 | |
|
4480 | 0 | if (EXPECTED(zv != NULL)) { |
4481 | 0 | zend_function *fbc = Z_FUNC_P(zv); |
4482 | |
|
4483 | 0 | if (EXPECTED(fbc->type == ZEND_USER_FUNCTION) && UNEXPECTED(!RUN_TIME_CACHE(&fbc->op_array))) { |
4484 | 0 | init_func_run_time_cache_i(&fbc->op_array); |
4485 | 0 | } |
4486 | 0 | return fbc; |
4487 | 0 | } |
4488 | 0 | return NULL; |
4489 | 0 | } /* }}} */ |
4490 | | |
4491 | | ZEND_API void ZEND_FASTCALL zend_init_func_run_time_cache(zend_op_array *op_array) /* {{{ */ |
4492 | 0 | { |
4493 | 0 | if (!RUN_TIME_CACHE(op_array)) { |
4494 | 0 | init_func_run_time_cache_i(op_array); |
4495 | 0 | } |
4496 | 0 | } /* }}} */ |
4497 | | |
4498 | | static zend_always_inline void i_init_code_execute_data(zend_execute_data *execute_data, zend_op_array *op_array, zval *return_value) /* {{{ */ |
4499 | 0 | { |
4500 | 0 | ZEND_ASSERT(EX(func) == (zend_function*)op_array); |
4501 | |
|
4502 | 0 | EX(opline) = op_array->opcodes; |
4503 | 0 | EX(call) = NULL; |
4504 | 0 | EX(return_value) = return_value; |
4505 | |
|
4506 | 0 | if (op_array->last_var) { |
4507 | 0 | zend_attach_symbol_table(execute_data); |
4508 | 0 | } |
4509 | |
|
4510 | 0 | if (!ZEND_MAP_PTR(op_array->run_time_cache)) { |
4511 | 0 | void *ptr; |
4512 | |
|
4513 | 0 | ZEND_ASSERT(op_array->fn_flags & ZEND_ACC_HEAP_RT_CACHE); |
4514 | 0 | ptr = emalloc(op_array->cache_size); |
4515 | 0 | ZEND_MAP_PTR_INIT(op_array->run_time_cache, ptr); |
4516 | 0 | memset(ptr, 0, op_array->cache_size); |
4517 | 0 | } |
4518 | 0 | EX(run_time_cache) = RUN_TIME_CACHE(op_array); |
4519 | |
|
4520 | 0 | EG(current_execute_data) = execute_data; |
4521 | 0 | } |
4522 | | /* }}} */ |
4523 | | |
4524 | | ZEND_API void zend_init_func_execute_data(zend_execute_data *ex, zend_op_array *op_array, zval *return_value) /* {{{ */ |
4525 | 0 | { |
4526 | | #if defined(ZEND_VM_FP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
4527 | | zend_execute_data *orig_execute_data = execute_data; |
4528 | | #endif |
4529 | | #if defined(ZEND_VM_IP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
4530 | | const zend_op *orig_opline = opline; |
4531 | | #endif |
4532 | | #if defined(ZEND_VM_FP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
4533 | | execute_data = ex; |
4534 | | #else |
4535 | 0 | zend_execute_data *execute_data = ex; |
4536 | 0 | #endif |
4537 | |
|
4538 | 0 | EX(prev_execute_data) = EG(current_execute_data); |
4539 | 0 | if (!RUN_TIME_CACHE(op_array)) { |
4540 | 0 | init_func_run_time_cache(op_array); |
4541 | 0 | } |
4542 | 0 | i_init_func_execute_data(op_array, return_value, 1 EXECUTE_DATA_CC); |
4543 | |
|
4544 | | #if defined(ZEND_VM_IP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
4545 | | EX(opline) = opline; |
4546 | | opline = orig_opline; |
4547 | | #endif |
4548 | | #if defined(ZEND_VM_FP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
4549 | | execute_data = orig_execute_data; |
4550 | | #endif |
4551 | 0 | } |
4552 | | /* }}} */ |
4553 | | |
4554 | | ZEND_API void zend_init_code_execute_data(zend_execute_data *execute_data, zend_op_array *op_array, zval *return_value) /* {{{ */ |
4555 | 0 | { |
4556 | 0 | EX(prev_execute_data) = EG(current_execute_data); |
4557 | 0 | i_init_code_execute_data(execute_data, op_array, return_value); |
4558 | 0 | } |
4559 | | /* }}} */ |
4560 | | |
4561 | | ZEND_API void zend_init_execute_data(zend_execute_data *execute_data, zend_op_array *op_array, zval *return_value) /* {{{ */ |
4562 | 0 | { |
4563 | 0 | if (EX_CALL_INFO() & ZEND_CALL_HAS_SYMBOL_TABLE) { |
4564 | 0 | zend_init_code_execute_data(execute_data, op_array, return_value); |
4565 | 0 | } else { |
4566 | 0 | zend_init_func_execute_data(execute_data, op_array, return_value); |
4567 | 0 | } |
4568 | 0 | } |
4569 | | /* }}} */ |
4570 | | |
4571 | | zend_execute_data *zend_vm_stack_copy_call_frame(zend_execute_data *call, uint32_t passed_args, uint32_t additional_args) /* {{{ */ |
4572 | 0 | { |
4573 | 0 | zend_execute_data *new_call; |
4574 | 0 | int used_stack = (EG(vm_stack_top) - (zval*)call) + additional_args; |
4575 | | |
4576 | | /* copy call frame into new stack segment */ |
4577 | 0 | new_call = zend_vm_stack_extend(used_stack * sizeof(zval)); |
4578 | 0 | *new_call = *call; |
4579 | 0 | ZEND_ADD_CALL_FLAG(new_call, ZEND_CALL_ALLOCATED); |
4580 | |
|
4581 | 0 | if (passed_args) { |
4582 | 0 | zval *src = ZEND_CALL_ARG(call, 1); |
4583 | 0 | zval *dst = ZEND_CALL_ARG(new_call, 1); |
4584 | 0 | do { |
4585 | 0 | ZVAL_COPY_VALUE(dst, src); |
4586 | 0 | passed_args--; |
4587 | 0 | src++; |
4588 | 0 | dst++; |
4589 | 0 | } while (passed_args); |
4590 | 0 | } |
4591 | | |
4592 | | /* delete old call_frame from previous stack segment */ |
4593 | 0 | EG(vm_stack)->prev->top = (zval*)call; |
4594 | | |
4595 | | /* delete previous stack segment if it became empty */ |
4596 | 0 | if (UNEXPECTED(EG(vm_stack)->prev->top == ZEND_VM_STACK_ELEMENTS(EG(vm_stack)->prev))) { |
4597 | 0 | zend_vm_stack r = EG(vm_stack)->prev; |
4598 | |
|
4599 | 0 | EG(vm_stack)->prev = r->prev; |
4600 | 0 | efree(r); |
4601 | 0 | } |
4602 | |
|
4603 | 0 | return new_call; |
4604 | 0 | } |
4605 | | /* }}} */ |
4606 | | |
4607 | | static zend_always_inline zend_generator *zend_get_running_generator(EXECUTE_DATA_D) /* {{{ */ |
4608 | 0 | { |
4609 | | /* The generator object is stored in EX(return_value) */ |
4610 | 0 | zend_generator *generator = (zend_generator *) EX(return_value); |
4611 | | /* However control may currently be delegated to another generator. |
4612 | | * That's the one we're interested in. */ |
4613 | 0 | return generator; |
4614 | 0 | } |
4615 | | /* }}} */ |
4616 | | |
4617 | | ZEND_API void zend_unfinished_calls_gc(zend_execute_data *execute_data, zend_execute_data *call, uint32_t op_num, zend_get_gc_buffer *buf) /* {{{ */ |
4618 | 0 | { |
4619 | 0 | zend_op *opline = EX(func)->op_array.opcodes + op_num; |
4620 | 0 | int level; |
4621 | 0 | int do_exit; |
4622 | 0 | uint32_t num_args; |
4623 | |
|
4624 | 0 | if (UNEXPECTED(opline->opcode == ZEND_INIT_FCALL || |
4625 | 0 | opline->opcode == ZEND_INIT_FCALL_BY_NAME || |
4626 | 0 | opline->opcode == ZEND_INIT_NS_FCALL_BY_NAME || |
4627 | 0 | opline->opcode == ZEND_INIT_DYNAMIC_CALL || |
4628 | 0 | opline->opcode == ZEND_INIT_USER_CALL || |
4629 | 0 | opline->opcode == ZEND_INIT_METHOD_CALL || |
4630 | 0 | opline->opcode == ZEND_INIT_STATIC_METHOD_CALL || |
4631 | 0 | opline->opcode == ZEND_NEW)) { |
4632 | 0 | ZEND_ASSERT(op_num); |
4633 | 0 | opline--; |
4634 | 0 | } |
4635 | |
|
4636 | 0 | do { |
4637 | | /* find the number of actually passed arguments */ |
4638 | 0 | level = 0; |
4639 | 0 | do_exit = 0; |
4640 | 0 | num_args = ZEND_CALL_NUM_ARGS(call); |
4641 | 0 | do { |
4642 | 0 | switch (opline->opcode) { |
4643 | 0 | case ZEND_DO_FCALL: |
4644 | 0 | case ZEND_DO_ICALL: |
4645 | 0 | case ZEND_DO_UCALL: |
4646 | 0 | case ZEND_DO_FCALL_BY_NAME: |
4647 | 0 | case ZEND_CALLABLE_CONVERT: |
4648 | 0 | level++; |
4649 | 0 | break; |
4650 | 0 | case ZEND_INIT_FCALL: |
4651 | 0 | case ZEND_INIT_FCALL_BY_NAME: |
4652 | 0 | case ZEND_INIT_NS_FCALL_BY_NAME: |
4653 | 0 | case ZEND_INIT_DYNAMIC_CALL: |
4654 | 0 | case ZEND_INIT_USER_CALL: |
4655 | 0 | case ZEND_INIT_METHOD_CALL: |
4656 | 0 | case ZEND_INIT_STATIC_METHOD_CALL: |
4657 | 0 | case ZEND_NEW: |
4658 | 0 | if (level == 0) { |
4659 | 0 | num_args = 0; |
4660 | 0 | do_exit = 1; |
4661 | 0 | } |
4662 | 0 | level--; |
4663 | 0 | break; |
4664 | 0 | case ZEND_SEND_VAL: |
4665 | 0 | case ZEND_SEND_VAL_EX: |
4666 | 0 | case ZEND_SEND_VAR: |
4667 | 0 | case ZEND_SEND_VAR_EX: |
4668 | 0 | case ZEND_SEND_FUNC_ARG: |
4669 | 0 | case ZEND_SEND_REF: |
4670 | 0 | case ZEND_SEND_VAR_NO_REF: |
4671 | 0 | case ZEND_SEND_VAR_NO_REF_EX: |
4672 | 0 | case ZEND_SEND_USER: |
4673 | 0 | if (level == 0) { |
4674 | | /* For named args, the number of arguments is up to date. */ |
4675 | 0 | if (opline->op2_type != IS_CONST) { |
4676 | 0 | num_args = opline->op2.num; |
4677 | 0 | } |
4678 | 0 | do_exit = 1; |
4679 | 0 | } |
4680 | 0 | break; |
4681 | 0 | case ZEND_SEND_ARRAY: |
4682 | 0 | case ZEND_SEND_UNPACK: |
4683 | 0 | case ZEND_CHECK_UNDEF_ARGS: |
4684 | 0 | if (level == 0) { |
4685 | 0 | do_exit = 1; |
4686 | 0 | } |
4687 | 0 | break; |
4688 | 0 | } |
4689 | 0 | if (!do_exit) { |
4690 | 0 | opline--; |
4691 | 0 | } |
4692 | 0 | } while (!do_exit); |
4693 | 0 | if (call->prev_execute_data) { |
4694 | | /* skip current call region */ |
4695 | 0 | level = 0; |
4696 | 0 | do_exit = 0; |
4697 | 0 | do { |
4698 | 0 | switch (opline->opcode) { |
4699 | 0 | case ZEND_DO_FCALL: |
4700 | 0 | case ZEND_DO_ICALL: |
4701 | 0 | case ZEND_DO_UCALL: |
4702 | 0 | case ZEND_DO_FCALL_BY_NAME: |
4703 | 0 | case ZEND_CALLABLE_CONVERT: |
4704 | 0 | level++; |
4705 | 0 | break; |
4706 | 0 | case ZEND_INIT_FCALL: |
4707 | 0 | case ZEND_INIT_FCALL_BY_NAME: |
4708 | 0 | case ZEND_INIT_NS_FCALL_BY_NAME: |
4709 | 0 | case ZEND_INIT_DYNAMIC_CALL: |
4710 | 0 | case ZEND_INIT_USER_CALL: |
4711 | 0 | case ZEND_INIT_METHOD_CALL: |
4712 | 0 | case ZEND_INIT_STATIC_METHOD_CALL: |
4713 | 0 | case ZEND_NEW: |
4714 | 0 | if (level == 0) { |
4715 | 0 | do_exit = 1; |
4716 | 0 | } |
4717 | 0 | level--; |
4718 | 0 | break; |
4719 | 0 | } |
4720 | 0 | opline--; |
4721 | 0 | } while (!do_exit); |
4722 | 0 | } |
4723 | | |
4724 | 0 | if (EXPECTED(num_args > 0)) { |
4725 | 0 | zval *p = ZEND_CALL_ARG(call, 1); |
4726 | 0 | do { |
4727 | 0 | zend_get_gc_buffer_add_zval(buf, p); |
4728 | 0 | p++; |
4729 | 0 | } while (--num_args); |
4730 | 0 | } |
4731 | 0 | if (ZEND_CALL_INFO(call) & ZEND_CALL_RELEASE_THIS) { |
4732 | 0 | zend_get_gc_buffer_add_obj(buf, Z_OBJ(call->This)); |
4733 | 0 | } |
4734 | 0 | if (ZEND_CALL_INFO(call) & ZEND_CALL_HAS_EXTRA_NAMED_PARAMS) { |
4735 | 0 | zval *val; |
4736 | 0 | ZEND_HASH_FOREACH_VAL(call->extra_named_params, val) { |
4737 | 0 | zend_get_gc_buffer_add_zval(buf, val); |
4738 | 0 | } ZEND_HASH_FOREACH_END(); |
4739 | 0 | } |
4740 | 0 | if (call->func->common.fn_flags & ZEND_ACC_CLOSURE) { |
4741 | 0 | zend_get_gc_buffer_add_obj(buf, ZEND_CLOSURE_OBJECT(call->func)); |
4742 | 0 | } |
4743 | |
|
4744 | 0 | call = call->prev_execute_data; |
4745 | 0 | } while (call); |
4746 | 0 | } |
4747 | | /* }}} */ |
4748 | | |
4749 | | static void cleanup_unfinished_calls(zend_execute_data *execute_data, uint32_t op_num) /* {{{ */ |
4750 | 0 | { |
4751 | 0 | if (UNEXPECTED(EX(call))) { |
4752 | 0 | zend_execute_data *call = EX(call); |
4753 | 0 | zend_op *opline = EX(func)->op_array.opcodes + op_num; |
4754 | 0 | int level; |
4755 | 0 | int do_exit; |
4756 | |
|
4757 | 0 | if (UNEXPECTED(opline->opcode == ZEND_INIT_FCALL || |
4758 | 0 | opline->opcode == ZEND_INIT_FCALL_BY_NAME || |
4759 | 0 | opline->opcode == ZEND_INIT_NS_FCALL_BY_NAME || |
4760 | 0 | opline->opcode == ZEND_INIT_DYNAMIC_CALL || |
4761 | 0 | opline->opcode == ZEND_INIT_USER_CALL || |
4762 | 0 | opline->opcode == ZEND_INIT_METHOD_CALL || |
4763 | 0 | opline->opcode == ZEND_INIT_STATIC_METHOD_CALL || |
4764 | 0 | opline->opcode == ZEND_INIT_PARENT_PROPERTY_HOOK_CALL || |
4765 | 0 | opline->opcode == ZEND_NEW)) { |
4766 | 0 | ZEND_ASSERT(op_num); |
4767 | 0 | opline--; |
4768 | 0 | } |
4769 | |
|
4770 | 0 | do { |
4771 | | /* If the exception was thrown during a function call there might be |
4772 | | * arguments pushed to the stack that have to be dtor'ed. */ |
4773 | | |
4774 | | /* find the number of actually passed arguments */ |
4775 | 0 | level = 0; |
4776 | 0 | do_exit = 0; |
4777 | 0 | do { |
4778 | 0 | switch (opline->opcode) { |
4779 | 0 | case ZEND_DO_FCALL: |
4780 | 0 | case ZEND_DO_ICALL: |
4781 | 0 | case ZEND_DO_UCALL: |
4782 | 0 | case ZEND_DO_FCALL_BY_NAME: |
4783 | 0 | case ZEND_CALLABLE_CONVERT: |
4784 | 0 | level++; |
4785 | 0 | break; |
4786 | 0 | case ZEND_INIT_FCALL: |
4787 | 0 | case ZEND_INIT_FCALL_BY_NAME: |
4788 | 0 | case ZEND_INIT_NS_FCALL_BY_NAME: |
4789 | 0 | case ZEND_INIT_DYNAMIC_CALL: |
4790 | 0 | case ZEND_INIT_USER_CALL: |
4791 | 0 | case ZEND_INIT_METHOD_CALL: |
4792 | 0 | case ZEND_INIT_STATIC_METHOD_CALL: |
4793 | 0 | case ZEND_INIT_PARENT_PROPERTY_HOOK_CALL: |
4794 | 0 | case ZEND_NEW: |
4795 | 0 | if (level == 0) { |
4796 | 0 | ZEND_CALL_NUM_ARGS(call) = 0; |
4797 | 0 | do_exit = 1; |
4798 | 0 | } |
4799 | 0 | level--; |
4800 | 0 | break; |
4801 | 0 | case ZEND_SEND_VAL: |
4802 | 0 | case ZEND_SEND_VAL_EX: |
4803 | 0 | case ZEND_SEND_VAR: |
4804 | 0 | case ZEND_SEND_VAR_EX: |
4805 | 0 | case ZEND_SEND_FUNC_ARG: |
4806 | 0 | case ZEND_SEND_REF: |
4807 | 0 | case ZEND_SEND_VAR_NO_REF: |
4808 | 0 | case ZEND_SEND_VAR_NO_REF_EX: |
4809 | 0 | case ZEND_SEND_USER: |
4810 | 0 | if (level == 0) { |
4811 | | /* For named args, the number of arguments is up to date. */ |
4812 | 0 | if (opline->op2_type != IS_CONST) { |
4813 | 0 | ZEND_CALL_NUM_ARGS(call) = opline->op2.num; |
4814 | 0 | } |
4815 | 0 | do_exit = 1; |
4816 | 0 | } |
4817 | 0 | break; |
4818 | 0 | case ZEND_SEND_ARRAY: |
4819 | 0 | case ZEND_SEND_UNPACK: |
4820 | 0 | case ZEND_CHECK_UNDEF_ARGS: |
4821 | 0 | if (level == 0) { |
4822 | 0 | do_exit = 1; |
4823 | 0 | } |
4824 | 0 | break; |
4825 | 0 | } |
4826 | 0 | if (!do_exit) { |
4827 | 0 | opline--; |
4828 | 0 | } |
4829 | 0 | } while (!do_exit); |
4830 | 0 | if (call->prev_execute_data) { |
4831 | | /* skip current call region */ |
4832 | 0 | level = 0; |
4833 | 0 | do_exit = 0; |
4834 | 0 | do { |
4835 | 0 | switch (opline->opcode) { |
4836 | 0 | case ZEND_DO_FCALL: |
4837 | 0 | case ZEND_DO_ICALL: |
4838 | 0 | case ZEND_DO_UCALL: |
4839 | 0 | case ZEND_DO_FCALL_BY_NAME: |
4840 | 0 | case ZEND_CALLABLE_CONVERT: |
4841 | 0 | level++; |
4842 | 0 | break; |
4843 | 0 | case ZEND_INIT_FCALL: |
4844 | 0 | case ZEND_INIT_FCALL_BY_NAME: |
4845 | 0 | case ZEND_INIT_NS_FCALL_BY_NAME: |
4846 | 0 | case ZEND_INIT_DYNAMIC_CALL: |
4847 | 0 | case ZEND_INIT_USER_CALL: |
4848 | 0 | case ZEND_INIT_METHOD_CALL: |
4849 | 0 | case ZEND_INIT_STATIC_METHOD_CALL: |
4850 | 0 | case ZEND_INIT_PARENT_PROPERTY_HOOK_CALL: |
4851 | 0 | case ZEND_NEW: |
4852 | 0 | if (level == 0) { |
4853 | 0 | do_exit = 1; |
4854 | 0 | } |
4855 | 0 | level--; |
4856 | 0 | break; |
4857 | 0 | } |
4858 | 0 | opline--; |
4859 | 0 | } while (!do_exit); |
4860 | 0 | } |
4861 | | |
4862 | 0 | zend_vm_stack_free_args(EX(call)); |
4863 | |
|
4864 | 0 | if (ZEND_CALL_INFO(call) & ZEND_CALL_RELEASE_THIS) { |
4865 | 0 | OBJ_RELEASE(Z_OBJ(call->This)); |
4866 | 0 | } |
4867 | 0 | if (ZEND_CALL_INFO(call) & ZEND_CALL_HAS_EXTRA_NAMED_PARAMS) { |
4868 | 0 | zend_free_extra_named_params(call->extra_named_params); |
4869 | 0 | } |
4870 | 0 | if (call->func->common.fn_flags & ZEND_ACC_CLOSURE) { |
4871 | 0 | zend_object_release(ZEND_CLOSURE_OBJECT(call->func)); |
4872 | 0 | } else if (call->func->common.fn_flags & ZEND_ACC_CALL_VIA_TRAMPOLINE) { |
4873 | 0 | zend_string_release_ex(call->func->common.function_name, 0); |
4874 | 0 | zend_free_trampoline(call->func); |
4875 | 0 | } |
4876 | |
|
4877 | 0 | EX(call) = call->prev_execute_data; |
4878 | 0 | zend_vm_stack_free_call_frame(call); |
4879 | 0 | call = EX(call); |
4880 | 0 | } while (call); |
4881 | 0 | } |
4882 | 0 | } |
4883 | | /* }}} */ |
4884 | | |
4885 | | static const zend_live_range *find_live_range(const zend_op_array *op_array, uint32_t op_num, uint32_t var_num) /* {{{ */ |
4886 | 0 | { |
4887 | 0 | int i; |
4888 | 0 | for (i = 0; i < op_array->last_live_range; i++) { |
4889 | 0 | const zend_live_range *range = &op_array->live_range[i]; |
4890 | 0 | if (op_num >= range->start && op_num < range->end |
4891 | 0 | && var_num == (range->var & ~ZEND_LIVE_MASK)) { |
4892 | 0 | return range; |
4893 | 0 | } |
4894 | 0 | } |
4895 | 0 | return NULL; |
4896 | 0 | } |
4897 | | /* }}} */ |
4898 | | |
4899 | | static void cleanup_live_vars(zend_execute_data *execute_data, uint32_t op_num, uint32_t catch_op_num) /* {{{ */ |
4900 | 0 | { |
4901 | 0 | int i; |
4902 | |
|
4903 | 0 | for (i = 0; i < EX(func)->op_array.last_live_range; i++) { |
4904 | 0 | const zend_live_range *range = &EX(func)->op_array.live_range[i]; |
4905 | 0 | if (range->start > op_num) { |
4906 | | /* further blocks will not be relevant... */ |
4907 | 0 | break; |
4908 | 0 | } else if (op_num < range->end) { |
4909 | 0 | if (!catch_op_num || catch_op_num >= range->end) { |
4910 | 0 | uint32_t kind = range->var & ZEND_LIVE_MASK; |
4911 | 0 | uint32_t var_num = range->var & ~ZEND_LIVE_MASK; |
4912 | 0 | zval *var = EX_VAR(var_num); |
4913 | |
|
4914 | 0 | if (kind == ZEND_LIVE_TMPVAR) { |
4915 | 0 | zval_ptr_dtor_nogc(var); |
4916 | 0 | } else if (kind == ZEND_LIVE_NEW) { |
4917 | 0 | zend_object *obj; |
4918 | 0 | ZEND_ASSERT(Z_TYPE_P(var) == IS_OBJECT); |
4919 | 0 | obj = Z_OBJ_P(var); |
4920 | 0 | zend_object_store_ctor_failed(obj); |
4921 | 0 | OBJ_RELEASE(obj); |
4922 | 0 | } else if (kind == ZEND_LIVE_LOOP) { |
4923 | 0 | if (Z_TYPE_P(var) != IS_ARRAY && Z_FE_ITER_P(var) != (uint32_t)-1) { |
4924 | 0 | zend_hash_iterator_del(Z_FE_ITER_P(var)); |
4925 | 0 | } |
4926 | 0 | zval_ptr_dtor_nogc(var); |
4927 | 0 | } else if (kind == ZEND_LIVE_ROPE) { |
4928 | 0 | zend_string **rope = (zend_string **)var; |
4929 | 0 | const zend_op *last = EX(func)->op_array.opcodes + op_num; |
4930 | 0 | while ((last->opcode != ZEND_ROPE_ADD && last->opcode != ZEND_ROPE_INIT) |
4931 | 0 | || last->result.var != var_num) { |
4932 | 0 | ZEND_ASSERT(last >= EX(func)->op_array.opcodes); |
4933 | 0 | last--; |
4934 | 0 | } |
4935 | 0 | if (last->opcode == ZEND_ROPE_INIT) { |
4936 | 0 | zend_string_release_ex(*rope, 0); |
4937 | 0 | } else { |
4938 | 0 | uint32_t j = last->extended_value; |
4939 | 0 | do { |
4940 | 0 | zend_string_release_ex(rope[j], 0); |
4941 | 0 | } while (j--); |
4942 | 0 | } |
4943 | 0 | } else if (kind == ZEND_LIVE_SILENCE) { |
4944 | | /* restore previous error_reporting value */ |
4945 | 0 | if (E_HAS_ONLY_FATAL_ERRORS(EG(error_reporting)) |
4946 | 0 | && !E_HAS_ONLY_FATAL_ERRORS(Z_LVAL_P(var))) { |
4947 | 0 | EG(error_reporting) = Z_LVAL_P(var); |
4948 | 0 | } |
4949 | 0 | } |
4950 | 0 | } |
4951 | 0 | } |
4952 | 0 | } |
4953 | 0 | } |
4954 | | /* }}} */ |
4955 | | |
4956 | 0 | ZEND_API void zend_cleanup_unfinished_execution(zend_execute_data *execute_data, uint32_t op_num, uint32_t catch_op_num) { |
4957 | 0 | cleanup_unfinished_calls(execute_data, op_num); |
4958 | 0 | cleanup_live_vars(execute_data, op_num, catch_op_num); |
4959 | 0 | } |
4960 | | |
4961 | | ZEND_API ZEND_ATTRIBUTE_DEPRECATED HashTable *zend_unfinished_execution_gc(zend_execute_data *execute_data, zend_execute_data *call, zend_get_gc_buffer *gc_buffer) |
4962 | 0 | { |
4963 | 0 | return zend_unfinished_execution_gc_ex(execute_data, call, gc_buffer, false); |
4964 | 0 | } |
4965 | | |
4966 | | ZEND_API HashTable *zend_unfinished_execution_gc_ex(zend_execute_data *execute_data, zend_execute_data *call, zend_get_gc_buffer *gc_buffer, bool suspended_by_yield) |
4967 | 0 | { |
4968 | 0 | if (!EX(func)) { |
4969 | 0 | return NULL; |
4970 | 0 | } |
4971 | | |
4972 | 0 | if (EX_CALL_INFO() & ZEND_CALL_RELEASE_THIS) { |
4973 | 0 | zend_get_gc_buffer_add_obj(gc_buffer, Z_OBJ(execute_data->This)); |
4974 | 0 | } |
4975 | |
|
4976 | 0 | if (EX_CALL_INFO() & ZEND_CALL_CLOSURE) { |
4977 | 0 | zend_get_gc_buffer_add_obj(gc_buffer, ZEND_CLOSURE_OBJECT(EX(func))); |
4978 | 0 | } |
4979 | |
|
4980 | 0 | if (!ZEND_USER_CODE(EX(func)->common.type)) { |
4981 | 0 | ZEND_ASSERT(!(EX_CALL_INFO() & (ZEND_CALL_HAS_SYMBOL_TABLE|ZEND_CALL_FREE_EXTRA_ARGS|ZEND_CALL_HAS_EXTRA_NAMED_PARAMS))); |
4982 | 0 | return NULL; |
4983 | 0 | } |
4984 | | |
4985 | 0 | const zend_op_array *op_array = &EX(func)->op_array; |
4986 | |
|
4987 | 0 | if (!(EX_CALL_INFO() & ZEND_CALL_HAS_SYMBOL_TABLE)) { |
4988 | 0 | uint32_t i, num_cvs = EX(func)->op_array.last_var; |
4989 | 0 | for (i = 0; i < num_cvs; i++) { |
4990 | 0 | zend_get_gc_buffer_add_zval(gc_buffer, EX_VAR_NUM(i)); |
4991 | 0 | } |
4992 | 0 | } |
4993 | |
|
4994 | 0 | if (EX_CALL_INFO() & ZEND_CALL_FREE_EXTRA_ARGS) { |
4995 | 0 | zval *zv = EX_VAR_NUM(op_array->last_var + op_array->T); |
4996 | 0 | const zval *end = zv + (EX_NUM_ARGS() - op_array->num_args); |
4997 | 0 | while (zv != end) { |
4998 | 0 | zend_get_gc_buffer_add_zval(gc_buffer, zv++); |
4999 | 0 | } |
5000 | 0 | } |
5001 | |
|
5002 | 0 | if (EX_CALL_INFO() & ZEND_CALL_HAS_EXTRA_NAMED_PARAMS) { |
5003 | 0 | zval extra_named_params; |
5004 | 0 | ZVAL_ARR(&extra_named_params, EX(extra_named_params)); |
5005 | 0 | zend_get_gc_buffer_add_zval(gc_buffer, &extra_named_params); |
5006 | 0 | } |
5007 | |
|
5008 | 0 | uint32_t op_num; |
5009 | 0 | if (UNEXPECTED(execute_data->opline->opcode == ZEND_HANDLE_EXCEPTION)) { |
5010 | 0 | op_num = EG(opline_before_exception) - op_array->opcodes; |
5011 | 0 | } else { |
5012 | 0 | op_num = execute_data->opline - op_array->opcodes; |
5013 | 0 | } |
5014 | 0 | ZEND_ASSERT(op_num < op_array->last); |
5015 | |
|
5016 | 0 | if (call) { |
5017 | 0 | zend_unfinished_calls_gc(execute_data, call, op_num, gc_buffer); |
5018 | 0 | } |
5019 | |
|
5020 | 0 | if (execute_data->opline != op_array->opcodes) { |
5021 | 0 | uint32_t i; |
5022 | 0 | for (i = 0; i < op_array->last_live_range; i++) { |
5023 | 0 | const zend_live_range *range = &op_array->live_range[i]; |
5024 | 0 | if (range->start > op_num) { |
5025 | 0 | break; |
5026 | 0 | } else if (op_num < range->end) { |
5027 | 0 | uint32_t kind = range->var & ZEND_LIVE_MASK; |
5028 | 0 | uint32_t var_num = range->var & ~ZEND_LIVE_MASK; |
5029 | 0 | zval *var = EX_VAR(var_num); |
5030 | 0 | if (kind == ZEND_LIVE_TMPVAR || kind == ZEND_LIVE_LOOP) { |
5031 | 0 | zend_get_gc_buffer_add_zval(gc_buffer, var); |
5032 | 0 | } |
5033 | 0 | } |
5034 | 0 | } |
5035 | 0 | } |
5036 | |
|
5037 | 0 | if (EX_CALL_INFO() & ZEND_CALL_HAS_SYMBOL_TABLE) { |
5038 | 0 | return execute_data->symbol_table; |
5039 | 0 | } else { |
5040 | 0 | return NULL; |
5041 | 0 | } |
5042 | 0 | } |
5043 | | |
5044 | | #if ZEND_VM_SPEC |
5045 | | static void zend_swap_operands(zend_op *op) /* {{{ */ |
5046 | 0 | { |
5047 | 0 | znode_op tmp; |
5048 | 0 | uint8_t tmp_type; |
5049 | |
|
5050 | 0 | tmp = op->op1; |
5051 | 0 | tmp_type = op->op1_type; |
5052 | 0 | op->op1 = op->op2; |
5053 | 0 | op->op1_type = op->op2_type; |
5054 | 0 | op->op2 = tmp; |
5055 | 0 | op->op2_type = tmp_type; |
5056 | |
|
5057 | | #ifdef ZEND_VERIFY_TYPE_INFERENCE |
5058 | | uint32_t tmp_info; |
5059 | | tmp_info = op->op1_use_type; |
5060 | | op->op1_use_type = op->op2_use_type; |
5061 | | op->op2_use_type = tmp_info; |
5062 | | tmp_info = op->op1_def_type; |
5063 | | op->op1_def_type = op->op2_def_type; |
5064 | | op->op2_def_type = tmp_info; |
5065 | | #endif |
5066 | 0 | } |
5067 | | /* }}} */ |
5068 | | #endif |
5069 | | |
5070 | | static zend_never_inline zend_execute_data *zend_init_dynamic_call_string(zend_string *function, uint32_t num_args) /* {{{ */ |
5071 | 0 | { |
5072 | 0 | zend_function *fbc; |
5073 | 0 | zval *func; |
5074 | 0 | zend_class_entry *called_scope; |
5075 | 0 | zend_string *lcname; |
5076 | 0 | const char *colon; |
5077 | |
|
5078 | 0 | if ((colon = zend_memrchr(ZSTR_VAL(function), ':', ZSTR_LEN(function))) != NULL && |
5079 | 0 | colon > ZSTR_VAL(function) && |
5080 | 0 | *(colon-1) == ':' |
5081 | 0 | ) { |
5082 | 0 | zend_string *mname; |
5083 | 0 | size_t cname_length = colon - ZSTR_VAL(function) - 1; |
5084 | 0 | size_t mname_length = ZSTR_LEN(function) - cname_length - (sizeof("::") - 1); |
5085 | |
|
5086 | 0 | lcname = zend_string_init(ZSTR_VAL(function), cname_length, 0); |
5087 | |
|
5088 | 0 | called_scope = zend_fetch_class_by_name(lcname, NULL, ZEND_FETCH_CLASS_DEFAULT | ZEND_FETCH_CLASS_EXCEPTION); |
5089 | 0 | if (UNEXPECTED(called_scope == NULL)) { |
5090 | 0 | zend_string_release_ex(lcname, 0); |
5091 | 0 | return NULL; |
5092 | 0 | } |
5093 | | |
5094 | 0 | mname = zend_string_init(ZSTR_VAL(function) + (cname_length + sizeof("::") - 1), mname_length, 0); |
5095 | |
|
5096 | 0 | if (called_scope->get_static_method) { |
5097 | 0 | fbc = called_scope->get_static_method(called_scope, mname); |
5098 | 0 | } else { |
5099 | 0 | fbc = zend_std_get_static_method(called_scope, mname, NULL); |
5100 | 0 | } |
5101 | 0 | if (UNEXPECTED(fbc == NULL)) { |
5102 | 0 | if (EXPECTED(!EG(exception))) { |
5103 | 0 | zend_undefined_method(called_scope, mname); |
5104 | 0 | } |
5105 | 0 | zend_string_release_ex(lcname, 0); |
5106 | 0 | zend_string_release_ex(mname, 0); |
5107 | 0 | return NULL; |
5108 | 0 | } |
5109 | | |
5110 | 0 | zend_string_release_ex(lcname, 0); |
5111 | 0 | zend_string_release_ex(mname, 0); |
5112 | |
|
5113 | 0 | if (UNEXPECTED(!(fbc->common.fn_flags & ZEND_ACC_STATIC))) { |
5114 | 0 | zend_non_static_method_call(fbc); |
5115 | 0 | if (fbc->common.fn_flags & ZEND_ACC_CALL_VIA_TRAMPOLINE) { |
5116 | 0 | zend_string_release_ex(fbc->common.function_name, 0); |
5117 | 0 | zend_free_trampoline(fbc); |
5118 | 0 | } |
5119 | 0 | return NULL; |
5120 | 0 | } |
5121 | 0 | if (EXPECTED(fbc->type == ZEND_USER_FUNCTION) && UNEXPECTED(!RUN_TIME_CACHE(&fbc->op_array))) { |
5122 | 0 | init_func_run_time_cache(&fbc->op_array); |
5123 | 0 | } |
5124 | 0 | } else { |
5125 | 0 | if (ZSTR_VAL(function)[0] == '\\') { |
5126 | 0 | lcname = zend_string_alloc(ZSTR_LEN(function) - 1, 0); |
5127 | 0 | zend_str_tolower_copy(ZSTR_VAL(lcname), ZSTR_VAL(function) + 1, ZSTR_LEN(function) - 1); |
5128 | 0 | } else { |
5129 | 0 | lcname = zend_string_tolower(function); |
5130 | 0 | } |
5131 | 0 | if (UNEXPECTED((func = zend_hash_find(EG(function_table), lcname)) == NULL)) { |
5132 | 0 | zend_throw_error(NULL, "Call to undefined function %s()", ZSTR_VAL(function)); |
5133 | 0 | zend_string_release_ex(lcname, 0); |
5134 | 0 | return NULL; |
5135 | 0 | } |
5136 | 0 | zend_string_release_ex(lcname, 0); |
5137 | |
|
5138 | 0 | fbc = Z_FUNC_P(func); |
5139 | 0 | if (EXPECTED(fbc->type == ZEND_USER_FUNCTION) && UNEXPECTED(!RUN_TIME_CACHE(&fbc->op_array))) { |
5140 | 0 | init_func_run_time_cache(&fbc->op_array); |
5141 | 0 | } |
5142 | 0 | called_scope = NULL; |
5143 | 0 | } |
5144 | | |
5145 | 0 | return zend_vm_stack_push_call_frame(ZEND_CALL_NESTED_FUNCTION | ZEND_CALL_DYNAMIC, |
5146 | 0 | fbc, num_args, called_scope); |
5147 | 0 | } |
5148 | | /* }}} */ |
5149 | | |
5150 | | static zend_never_inline zend_execute_data *zend_init_dynamic_call_object(zend_object *function, uint32_t num_args) /* {{{ */ |
5151 | 0 | { |
5152 | 0 | zend_function *fbc; |
5153 | 0 | void *object_or_called_scope; |
5154 | 0 | zend_class_entry *called_scope; |
5155 | 0 | zend_object *object; |
5156 | 0 | uint32_t call_info; |
5157 | |
|
5158 | 0 | if (EXPECTED(function->handlers->get_closure) && |
5159 | 0 | EXPECTED(function->handlers->get_closure(function, &called_scope, &fbc, &object, 0) == SUCCESS)) { |
5160 | |
|
5161 | 0 | object_or_called_scope = called_scope; |
5162 | 0 | if (EXPECTED(fbc->common.fn_flags & ZEND_ACC_CLOSURE)) { |
5163 | | /* Delay closure destruction until its invocation */ |
5164 | 0 | GC_ADDREF(ZEND_CLOSURE_OBJECT(fbc)); |
5165 | 0 | ZEND_ASSERT(ZEND_ACC_FAKE_CLOSURE == ZEND_CALL_FAKE_CLOSURE); |
5166 | 0 | call_info = ZEND_CALL_NESTED_FUNCTION | ZEND_CALL_DYNAMIC | ZEND_CALL_CLOSURE | |
5167 | 0 | (fbc->common.fn_flags & ZEND_ACC_FAKE_CLOSURE); |
5168 | 0 | if (object) { |
5169 | 0 | call_info |= ZEND_CALL_HAS_THIS; |
5170 | 0 | object_or_called_scope = object; |
5171 | 0 | } |
5172 | 0 | } else { |
5173 | 0 | call_info = ZEND_CALL_NESTED_FUNCTION | ZEND_CALL_DYNAMIC; |
5174 | 0 | if (object) { |
5175 | 0 | call_info |= ZEND_CALL_RELEASE_THIS | ZEND_CALL_HAS_THIS; |
5176 | 0 | GC_ADDREF(object); /* For $this pointer */ |
5177 | 0 | object_or_called_scope = object; |
5178 | 0 | } |
5179 | 0 | } |
5180 | 0 | } else { |
5181 | 0 | zend_throw_error(NULL, "Object of type %s is not callable", ZSTR_VAL(function->ce->name)); |
5182 | 0 | return NULL; |
5183 | 0 | } |
5184 | | |
5185 | 0 | if (EXPECTED(fbc->type == ZEND_USER_FUNCTION) && UNEXPECTED(!RUN_TIME_CACHE(&fbc->op_array))) { |
5186 | 0 | init_func_run_time_cache(&fbc->op_array); |
5187 | 0 | } |
5188 | |
|
5189 | 0 | return zend_vm_stack_push_call_frame(call_info, |
5190 | 0 | fbc, num_args, object_or_called_scope); |
5191 | 0 | } |
5192 | | /* }}} */ |
5193 | | |
5194 | | static zend_never_inline zend_execute_data *zend_init_dynamic_call_array(zend_array *function, uint32_t num_args) /* {{{ */ |
5195 | 0 | { |
5196 | 0 | zend_function *fbc; |
5197 | 0 | void *object_or_called_scope; |
5198 | 0 | uint32_t call_info = ZEND_CALL_NESTED_FUNCTION | ZEND_CALL_DYNAMIC; |
5199 | |
|
5200 | 0 | if (zend_hash_num_elements(function) == 2) { |
5201 | 0 | zval *obj; |
5202 | 0 | zval *method; |
5203 | 0 | obj = zend_hash_index_find(function, 0); |
5204 | 0 | method = zend_hash_index_find(function, 1); |
5205 | |
|
5206 | 0 | if (UNEXPECTED(!obj) || UNEXPECTED(!method)) { |
5207 | 0 | zend_throw_error(NULL, "Array callback has to contain indices 0 and 1"); |
5208 | 0 | return NULL; |
5209 | 0 | } |
5210 | | |
5211 | 0 | ZVAL_DEREF(obj); |
5212 | 0 | if (UNEXPECTED(Z_TYPE_P(obj) != IS_STRING) && UNEXPECTED(Z_TYPE_P(obj) != IS_OBJECT)) { |
5213 | 0 | zend_throw_error(NULL, "First array member is not a valid class name or object"); |
5214 | 0 | return NULL; |
5215 | 0 | } |
5216 | | |
5217 | 0 | ZVAL_DEREF(method); |
5218 | 0 | if (UNEXPECTED(Z_TYPE_P(method) != IS_STRING)) { |
5219 | 0 | zend_throw_error(NULL, "Second array member is not a valid method"); |
5220 | 0 | return NULL; |
5221 | 0 | } |
5222 | | |
5223 | 0 | if (Z_TYPE_P(obj) == IS_STRING) { |
5224 | 0 | zend_class_entry *called_scope = zend_fetch_class_by_name(Z_STR_P(obj), NULL, ZEND_FETCH_CLASS_DEFAULT | ZEND_FETCH_CLASS_EXCEPTION); |
5225 | |
|
5226 | 0 | if (UNEXPECTED(called_scope == NULL)) { |
5227 | 0 | return NULL; |
5228 | 0 | } |
5229 | | |
5230 | 0 | if (called_scope->get_static_method) { |
5231 | 0 | fbc = called_scope->get_static_method(called_scope, Z_STR_P(method)); |
5232 | 0 | } else { |
5233 | 0 | fbc = zend_std_get_static_method(called_scope, Z_STR_P(method), NULL); |
5234 | 0 | } |
5235 | 0 | if (UNEXPECTED(fbc == NULL)) { |
5236 | 0 | if (EXPECTED(!EG(exception))) { |
5237 | 0 | zend_undefined_method(called_scope, Z_STR_P(method)); |
5238 | 0 | } |
5239 | 0 | return NULL; |
5240 | 0 | } |
5241 | 0 | if (!(fbc->common.fn_flags & ZEND_ACC_STATIC)) { |
5242 | 0 | zend_non_static_method_call(fbc); |
5243 | 0 | if (fbc->common.fn_flags & ZEND_ACC_CALL_VIA_TRAMPOLINE) { |
5244 | 0 | zend_string_release_ex(fbc->common.function_name, 0); |
5245 | 0 | zend_free_trampoline(fbc); |
5246 | 0 | } |
5247 | 0 | return NULL; |
5248 | 0 | } |
5249 | 0 | object_or_called_scope = called_scope; |
5250 | 0 | } else { |
5251 | 0 | zend_object *object = Z_OBJ_P(obj); |
5252 | |
|
5253 | 0 | fbc = Z_OBJ_HT_P(obj)->get_method(&object, Z_STR_P(method), NULL); |
5254 | 0 | if (UNEXPECTED(fbc == NULL)) { |
5255 | 0 | if (EXPECTED(!EG(exception))) { |
5256 | 0 | zend_undefined_method(object->ce, Z_STR_P(method)); |
5257 | 0 | } |
5258 | 0 | return NULL; |
5259 | 0 | } |
5260 | | |
5261 | 0 | if ((fbc->common.fn_flags & ZEND_ACC_STATIC) != 0) { |
5262 | 0 | object_or_called_scope = object->ce; |
5263 | 0 | } else { |
5264 | 0 | call_info |= ZEND_CALL_RELEASE_THIS | ZEND_CALL_HAS_THIS; |
5265 | 0 | GC_ADDREF(object); /* For $this pointer */ |
5266 | 0 | object_or_called_scope = object; |
5267 | 0 | } |
5268 | 0 | } |
5269 | 0 | } else { |
5270 | 0 | zend_throw_error(NULL, "Array callback must have exactly two elements"); |
5271 | 0 | return NULL; |
5272 | 0 | } |
5273 | | |
5274 | 0 | if (EXPECTED(fbc->type == ZEND_USER_FUNCTION) && UNEXPECTED(!RUN_TIME_CACHE(&fbc->op_array))) { |
5275 | 0 | init_func_run_time_cache(&fbc->op_array); |
5276 | 0 | } |
5277 | |
|
5278 | 0 | return zend_vm_stack_push_call_frame(call_info, |
5279 | 0 | fbc, num_args, object_or_called_scope); |
5280 | 0 | } |
5281 | | /* }}} */ |
5282 | | |
5283 | 0 | #define ZEND_FAKE_OP_ARRAY ((zend_op_array*)(intptr_t)-1) |
5284 | | |
5285 | | static zend_never_inline zend_op_array* ZEND_FASTCALL zend_include_or_eval(zval *inc_filename_zv, int type) /* {{{ */ |
5286 | 0 | { |
5287 | 0 | zend_op_array *new_op_array = NULL; |
5288 | 0 | zend_string *tmp_inc_filename; |
5289 | 0 | zend_string *inc_filename = zval_try_get_tmp_string(inc_filename_zv, &tmp_inc_filename); |
5290 | 0 | if (UNEXPECTED(!inc_filename)) { |
5291 | 0 | return NULL; |
5292 | 0 | } |
5293 | | |
5294 | 0 | switch (type) { |
5295 | 0 | case ZEND_INCLUDE_ONCE: |
5296 | 0 | case ZEND_REQUIRE_ONCE: { |
5297 | 0 | zend_file_handle file_handle; |
5298 | 0 | zend_string *resolved_path; |
5299 | |
|
5300 | 0 | resolved_path = zend_resolve_path(inc_filename); |
5301 | 0 | if (EXPECTED(resolved_path)) { |
5302 | 0 | if (zend_hash_exists(&EG(included_files), resolved_path)) { |
5303 | 0 | new_op_array = ZEND_FAKE_OP_ARRAY; |
5304 | 0 | zend_string_release_ex(resolved_path, 0); |
5305 | 0 | break; |
5306 | 0 | } |
5307 | 0 | } else if (UNEXPECTED(EG(exception))) { |
5308 | 0 | break; |
5309 | 0 | } else if (UNEXPECTED(zend_str_has_nul_byte(inc_filename))) { |
5310 | 0 | zend_message_dispatcher( |
5311 | 0 | (type == ZEND_INCLUDE_ONCE) ? |
5312 | 0 | ZMSG_FAILED_INCLUDE_FOPEN : ZMSG_FAILED_REQUIRE_FOPEN, |
5313 | 0 | ZSTR_VAL(inc_filename)); |
5314 | 0 | break; |
5315 | 0 | } else { |
5316 | 0 | resolved_path = zend_string_copy(inc_filename); |
5317 | 0 | } |
5318 | | |
5319 | 0 | zend_stream_init_filename_ex(&file_handle, resolved_path); |
5320 | 0 | if (SUCCESS == zend_stream_open(&file_handle)) { |
5321 | |
|
5322 | 0 | if (!file_handle.opened_path) { |
5323 | 0 | file_handle.opened_path = zend_string_copy(resolved_path); |
5324 | 0 | } |
5325 | |
|
5326 | 0 | if (zend_hash_add_empty_element(&EG(included_files), file_handle.opened_path)) { |
5327 | 0 | new_op_array = zend_compile_file(&file_handle, (type==ZEND_INCLUDE_ONCE?ZEND_INCLUDE:ZEND_REQUIRE)); |
5328 | 0 | } else { |
5329 | 0 | new_op_array = ZEND_FAKE_OP_ARRAY; |
5330 | 0 | } |
5331 | 0 | } else if (!EG(exception)) { |
5332 | 0 | zend_message_dispatcher( |
5333 | 0 | (type == ZEND_INCLUDE_ONCE) ? |
5334 | 0 | ZMSG_FAILED_INCLUDE_FOPEN : ZMSG_FAILED_REQUIRE_FOPEN, |
5335 | 0 | ZSTR_VAL(inc_filename)); |
5336 | 0 | } |
5337 | 0 | zend_destroy_file_handle(&file_handle); |
5338 | 0 | zend_string_release_ex(resolved_path, 0); |
5339 | 0 | } |
5340 | 0 | break; |
5341 | 0 | case ZEND_INCLUDE: |
5342 | 0 | case ZEND_REQUIRE: |
5343 | 0 | if (UNEXPECTED(zend_str_has_nul_byte(inc_filename))) { |
5344 | 0 | zend_message_dispatcher( |
5345 | 0 | (type == ZEND_INCLUDE) ? |
5346 | 0 | ZMSG_FAILED_INCLUDE_FOPEN : ZMSG_FAILED_REQUIRE_FOPEN, |
5347 | 0 | ZSTR_VAL(inc_filename)); |
5348 | 0 | break; |
5349 | 0 | } |
5350 | 0 | new_op_array = compile_filename(type, inc_filename); |
5351 | 0 | break; |
5352 | 0 | case ZEND_EVAL: { |
5353 | 0 | char *eval_desc = zend_make_compiled_string_description("eval()'d code"); |
5354 | 0 | new_op_array = zend_compile_string(inc_filename, eval_desc, ZEND_COMPILE_POSITION_AFTER_OPEN_TAG); |
5355 | 0 | efree(eval_desc); |
5356 | 0 | } |
5357 | 0 | break; |
5358 | 0 | EMPTY_SWITCH_DEFAULT_CASE() |
5359 | 0 | } |
5360 | | |
5361 | 0 | zend_tmp_string_release(tmp_inc_filename); |
5362 | 0 | return new_op_array; |
5363 | 0 | } |
5364 | | /* }}} */ |
5365 | | |
5366 | | static zend_never_inline bool ZEND_FASTCALL zend_fe_reset_iterator(zval *array_ptr, int by_ref OPLINE_DC EXECUTE_DATA_DC) /* {{{ */ |
5367 | 0 | { |
5368 | 0 | zend_class_entry *ce = Z_OBJCE_P(array_ptr); |
5369 | 0 | zend_object_iterator *iter = ce->get_iterator(ce, array_ptr, by_ref); |
5370 | 0 | bool is_empty; |
5371 | |
|
5372 | 0 | if (UNEXPECTED(!iter) || UNEXPECTED(EG(exception))) { |
5373 | 0 | if (iter) { |
5374 | 0 | OBJ_RELEASE(&iter->std); |
5375 | 0 | } |
5376 | 0 | if (!EG(exception)) { |
5377 | 0 | zend_throw_exception_ex(NULL, 0, "Object of type %s did not create an Iterator", ZSTR_VAL(ce->name)); |
5378 | 0 | } |
5379 | 0 | ZVAL_UNDEF(EX_VAR(opline->result.var)); |
5380 | 0 | return 1; |
5381 | 0 | } |
5382 | | |
5383 | 0 | iter->index = 0; |
5384 | 0 | if (iter->funcs->rewind) { |
5385 | 0 | iter->funcs->rewind(iter); |
5386 | 0 | if (UNEXPECTED(EG(exception) != NULL)) { |
5387 | 0 | OBJ_RELEASE(&iter->std); |
5388 | 0 | ZVAL_UNDEF(EX_VAR(opline->result.var)); |
5389 | 0 | return 1; |
5390 | 0 | } |
5391 | 0 | } |
5392 | | |
5393 | 0 | is_empty = iter->funcs->valid(iter) != SUCCESS; |
5394 | |
|
5395 | 0 | if (UNEXPECTED(EG(exception) != NULL)) { |
5396 | 0 | OBJ_RELEASE(&iter->std); |
5397 | 0 | ZVAL_UNDEF(EX_VAR(opline->result.var)); |
5398 | 0 | return 1; |
5399 | 0 | } |
5400 | 0 | iter->index = -1; /* will be set to 0 before using next handler */ |
5401 | |
|
5402 | 0 | ZVAL_OBJ(EX_VAR(opline->result.var), &iter->std); |
5403 | 0 | Z_FE_ITER_P(EX_VAR(opline->result.var)) = (uint32_t)-1; |
5404 | |
|
5405 | 0 | return is_empty; |
5406 | 0 | } |
5407 | | /* }}} */ |
5408 | | |
5409 | | static zend_always_inline zend_result _zend_quick_get_constant( |
5410 | | const zval *key, uint32_t flags, bool check_defined_only OPLINE_DC EXECUTE_DATA_DC) /* {{{ */ |
5411 | 0 | { |
5412 | 0 | zval *zv; |
5413 | 0 | zend_constant *c = NULL; |
5414 | | |
5415 | | /* null/true/false are resolved during compilation, so don't check for them here. */ |
5416 | 0 | zv = zend_hash_find_known_hash(EG(zend_constants), Z_STR_P(key)); |
5417 | 0 | if (zv) { |
5418 | 0 | c = (zend_constant*)Z_PTR_P(zv); |
5419 | 0 | } else if (flags & IS_CONSTANT_UNQUALIFIED_IN_NAMESPACE) { |
5420 | 0 | key++; |
5421 | 0 | zv = zend_hash_find_known_hash(EG(zend_constants), Z_STR_P(key)); |
5422 | 0 | if (zv) { |
5423 | 0 | c = (zend_constant*)Z_PTR_P(zv); |
5424 | 0 | } |
5425 | 0 | } |
5426 | |
|
5427 | 0 | if (!c) { |
5428 | 0 | if (!check_defined_only) { |
5429 | 0 | zend_throw_error(NULL, "Undefined constant \"%s\"", Z_STRVAL_P(RT_CONSTANT(opline, opline->op2))); |
5430 | 0 | ZVAL_UNDEF(EX_VAR(opline->result.var)); |
5431 | 0 | } |
5432 | 0 | return FAILURE; |
5433 | 0 | } |
5434 | | |
5435 | 0 | if (!check_defined_only) { |
5436 | 0 | ZVAL_COPY_OR_DUP(EX_VAR(opline->result.var), &c->value); |
5437 | 0 | if (ZEND_CONSTANT_FLAGS(c) & CONST_DEPRECATED) { |
5438 | 0 | if (!CONST_IS_RECURSIVE(c)) { |
5439 | 0 | CONST_PROTECT_RECURSION(c); |
5440 | 0 | zend_deprecated_constant(c, c->name); |
5441 | 0 | CONST_UNPROTECT_RECURSION(c); |
5442 | 0 | } |
5443 | 0 | return SUCCESS; |
5444 | 0 | } |
5445 | 0 | } |
5446 | | |
5447 | 0 | CACHE_PTR(opline->extended_value, c); |
5448 | 0 | return SUCCESS; |
5449 | 0 | } |
5450 | | /* }}} */ |
5451 | | |
5452 | | static zend_never_inline void ZEND_FASTCALL zend_quick_get_constant( |
5453 | | const zval *key, uint32_t flags OPLINE_DC EXECUTE_DATA_DC) /* {{{ */ |
5454 | 0 | { |
5455 | 0 | _zend_quick_get_constant(key, flags, 0 OPLINE_CC EXECUTE_DATA_CC); |
5456 | 0 | } /* }}} */ |
5457 | | |
5458 | | static zend_never_inline zend_result ZEND_FASTCALL zend_quick_check_constant( |
5459 | | const zval *key OPLINE_DC EXECUTE_DATA_DC) /* {{{ */ |
5460 | 0 | { |
5461 | 0 | return _zend_quick_get_constant(key, 0, 1 OPLINE_CC EXECUTE_DATA_CC); |
5462 | 0 | } /* }}} */ |
5463 | | |
5464 | | static zend_always_inline uint32_t zend_get_arg_offset_by_name( |
5465 | 0 | const zend_function *fbc, const zend_string *arg_name, void **cache_slot) { |
5466 | | /* Due to closures, the `fbc` address isn't unique if the memory address is reused. |
5467 | | * The argument info will be however and uniquely positions the arguments. |
5468 | | * We do support NULL arg_info, so we have to distinguish that from an uninitialized cache slot. */ |
5469 | 0 | void *unique_id = (void *) ((uintptr_t) fbc->common.arg_info | 1); |
5470 | |
|
5471 | 0 | if (EXPECTED(*cache_slot == unique_id)) { |
5472 | 0 | return *(uintptr_t *)(cache_slot + 1); |
5473 | 0 | } |
5474 | | |
5475 | | // TODO: Use a hash table? |
5476 | 0 | uint32_t num_args = fbc->common.num_args; |
5477 | 0 | if (EXPECTED(fbc->type == ZEND_USER_FUNCTION) |
5478 | 0 | || EXPECTED(fbc->common.fn_flags & ZEND_ACC_USER_ARG_INFO)) { |
5479 | 0 | for (uint32_t i = 0; i < num_args; i++) { |
5480 | 0 | const zend_arg_info *arg_info = &fbc->common.arg_info[i]; |
5481 | 0 | if (zend_string_equals(arg_name, arg_info->name)) { |
5482 | 0 | if (fbc->type == ZEND_USER_FUNCTION && (!fbc->op_array.refcount || !(fbc->op_array.fn_flags & ZEND_ACC_CLOSURE))) { |
5483 | 0 | *cache_slot = unique_id; |
5484 | 0 | *(uintptr_t *)(cache_slot + 1) = i; |
5485 | 0 | } |
5486 | 0 | return i; |
5487 | 0 | } |
5488 | 0 | } |
5489 | 0 | } else { |
5490 | 0 | ZEND_ASSERT(num_args == 0 || fbc->internal_function.arg_info); |
5491 | 0 | for (uint32_t i = 0; i < num_args; i++) { |
5492 | 0 | const zend_internal_arg_info *arg_info = &fbc->internal_function.arg_info[i]; |
5493 | 0 | size_t len = strlen(arg_info->name); |
5494 | 0 | if (zend_string_equals_cstr(arg_name, arg_info->name, len)) { |
5495 | 0 | *cache_slot = unique_id; |
5496 | 0 | *(uintptr_t *)(cache_slot + 1) = i; |
5497 | 0 | return i; |
5498 | 0 | } |
5499 | 0 | } |
5500 | 0 | } |
5501 | | |
5502 | 0 | if (fbc->common.fn_flags & ZEND_ACC_VARIADIC) { |
5503 | 0 | if ((fbc->type == ZEND_USER_FUNCTION |
5504 | 0 | && (!fbc->op_array.refcount || !(fbc->op_array.fn_flags & ZEND_ACC_CLOSURE))) |
5505 | 0 | || (fbc->type == ZEND_INTERNAL_FUNCTION |
5506 | 0 | && !(fbc->common.fn_flags & ZEND_ACC_USER_ARG_INFO))) { |
5507 | 0 | *cache_slot = unique_id; |
5508 | 0 | *(uintptr_t *)(cache_slot + 1) = fbc->common.num_args; |
5509 | 0 | } |
5510 | 0 | return fbc->common.num_args; |
5511 | 0 | } |
5512 | | |
5513 | 0 | return (uint32_t) -1; |
5514 | 0 | } |
5515 | | |
5516 | | zval * ZEND_FASTCALL zend_handle_named_arg( |
5517 | | zend_execute_data **call_ptr, zend_string *arg_name, |
5518 | 0 | uint32_t *arg_num_ptr, void **cache_slot) { |
5519 | 0 | zend_execute_data *call = *call_ptr; |
5520 | 0 | const zend_function *fbc = call->func; |
5521 | 0 | uint32_t arg_offset = zend_get_arg_offset_by_name(fbc, arg_name, cache_slot); |
5522 | 0 | if (UNEXPECTED(arg_offset == (uint32_t) -1)) { |
5523 | 0 | zend_throw_error(NULL, "Unknown named parameter $%s", ZSTR_VAL(arg_name)); |
5524 | 0 | return NULL; |
5525 | 0 | } |
5526 | | |
5527 | 0 | zval *arg; |
5528 | 0 | if (UNEXPECTED(arg_offset == fbc->common.num_args)) { |
5529 | | /* Unknown named parameter that will be collected into a variadic. */ |
5530 | 0 | if (!(ZEND_CALL_INFO(call) & ZEND_CALL_HAS_EXTRA_NAMED_PARAMS)) { |
5531 | 0 | ZEND_ADD_CALL_FLAG(call, ZEND_CALL_HAS_EXTRA_NAMED_PARAMS); |
5532 | 0 | call->extra_named_params = zend_new_array(0); |
5533 | 0 | } |
5534 | |
|
5535 | 0 | arg = zend_hash_add_empty_element(call->extra_named_params, arg_name); |
5536 | 0 | if (!arg) { |
5537 | 0 | zend_throw_error(NULL, "Named parameter $%s overwrites previous argument", |
5538 | 0 | ZSTR_VAL(arg_name)); |
5539 | 0 | return NULL; |
5540 | 0 | } |
5541 | 0 | *arg_num_ptr = arg_offset + 1; |
5542 | 0 | return arg; |
5543 | 0 | } |
5544 | | |
5545 | 0 | uint32_t current_num_args = ZEND_CALL_NUM_ARGS(call); |
5546 | | // TODO: We may wish to optimize the arg_offset == current_num_args case, |
5547 | | // which is probably common (if the named parameters are in order of declaration). |
5548 | 0 | if (arg_offset >= current_num_args) { |
5549 | 0 | uint32_t new_num_args = arg_offset + 1; |
5550 | 0 | ZEND_CALL_NUM_ARGS(call) = new_num_args; |
5551 | |
|
5552 | 0 | uint32_t num_extra_args = new_num_args - current_num_args; |
5553 | 0 | zend_vm_stack_extend_call_frame(call_ptr, current_num_args, num_extra_args); |
5554 | 0 | call = *call_ptr; |
5555 | |
|
5556 | 0 | arg = ZEND_CALL_VAR_NUM(call, arg_offset); |
5557 | 0 | if (num_extra_args > 1) { |
5558 | 0 | zval *zv = ZEND_CALL_VAR_NUM(call, current_num_args); |
5559 | 0 | do { |
5560 | 0 | ZVAL_UNDEF(zv); |
5561 | 0 | zv++; |
5562 | 0 | } while (zv != arg); |
5563 | 0 | ZEND_ADD_CALL_FLAG(call, ZEND_CALL_MAY_HAVE_UNDEF); |
5564 | 0 | } |
5565 | 0 | } else { |
5566 | 0 | arg = ZEND_CALL_VAR_NUM(call, arg_offset); |
5567 | 0 | if (UNEXPECTED(!Z_ISUNDEF_P(arg))) { |
5568 | 0 | zend_throw_error(NULL, "Named parameter $%s overwrites previous argument", |
5569 | 0 | ZSTR_VAL(arg_name)); |
5570 | 0 | return NULL; |
5571 | 0 | } |
5572 | 0 | } |
5573 | | |
5574 | 0 | *arg_num_ptr = arg_offset + 1; |
5575 | 0 | return arg; |
5576 | 0 | } |
5577 | | |
5578 | 0 | static zend_execute_data *start_fake_frame(zend_execute_data *call, const zend_op *opline) { |
5579 | 0 | zend_execute_data *old_prev_execute_data = call->prev_execute_data; |
5580 | 0 | call->prev_execute_data = EG(current_execute_data); |
5581 | 0 | call->opline = opline; |
5582 | 0 | EG(current_execute_data) = call; |
5583 | 0 | return old_prev_execute_data; |
5584 | 0 | } |
5585 | | |
5586 | 0 | static void end_fake_frame(zend_execute_data *call, zend_execute_data *old_prev_execute_data) { |
5587 | 0 | zend_execute_data *prev_execute_data = call->prev_execute_data; |
5588 | 0 | EG(current_execute_data) = prev_execute_data; |
5589 | 0 | call->prev_execute_data = old_prev_execute_data; |
5590 | 0 | if (UNEXPECTED(EG(exception)) && ZEND_USER_CODE(prev_execute_data->func->common.type)) { |
5591 | 0 | zend_rethrow_exception(prev_execute_data); |
5592 | 0 | } |
5593 | 0 | } |
5594 | | |
5595 | 0 | ZEND_API zend_result ZEND_FASTCALL zend_handle_undef_args(zend_execute_data *call) { |
5596 | 0 | zend_function *fbc = call->func; |
5597 | 0 | if (fbc->type == ZEND_USER_FUNCTION) { |
5598 | 0 | zend_op_array *op_array = &fbc->op_array; |
5599 | 0 | uint32_t num_args = ZEND_CALL_NUM_ARGS(call); |
5600 | 0 | for (uint32_t i = 0; i < num_args; i++) { |
5601 | 0 | zval *arg = ZEND_CALL_VAR_NUM(call, i); |
5602 | 0 | if (!Z_ISUNDEF_P(arg)) { |
5603 | 0 | continue; |
5604 | 0 | } |
5605 | | |
5606 | 0 | const zend_op *opline = &op_array->opcodes[i]; |
5607 | 0 | if (EXPECTED(opline->opcode == ZEND_RECV_INIT)) { |
5608 | 0 | zval *default_value = RT_CONSTANT(opline, opline->op2); |
5609 | 0 | if (Z_OPT_TYPE_P(default_value) == IS_CONSTANT_AST) { |
5610 | 0 | if (UNEXPECTED(!RUN_TIME_CACHE(op_array))) { |
5611 | 0 | init_func_run_time_cache(op_array); |
5612 | 0 | } |
5613 | |
|
5614 | 0 | void *run_time_cache = RUN_TIME_CACHE(op_array); |
5615 | 0 | zval *cache_val = |
5616 | 0 | (zval *) ((char *) run_time_cache + Z_CACHE_SLOT_P(default_value)); |
5617 | |
|
5618 | 0 | if (Z_TYPE_P(cache_val) != IS_UNDEF) { |
5619 | | /* We keep in cache only not refcounted values */ |
5620 | 0 | ZVAL_COPY_VALUE(arg, cache_val); |
5621 | 0 | } else { |
5622 | | /* Update constant inside a temporary zval, to make sure the CONSTANT_AST |
5623 | | * value is not accessible through back traces. */ |
5624 | 0 | zval tmp; |
5625 | 0 | ZVAL_COPY(&tmp, default_value); |
5626 | 0 | zend_execute_data *old = start_fake_frame(call, opline); |
5627 | 0 | zend_result ret = zval_update_constant_ex(&tmp, fbc->op_array.scope); |
5628 | 0 | end_fake_frame(call, old); |
5629 | 0 | if (UNEXPECTED(ret == FAILURE)) { |
5630 | 0 | zval_ptr_dtor_nogc(&tmp); |
5631 | 0 | return FAILURE; |
5632 | 0 | } |
5633 | 0 | ZVAL_COPY_VALUE(arg, &tmp); |
5634 | 0 | if (!Z_REFCOUNTED(tmp)) { |
5635 | 0 | ZVAL_COPY_VALUE(cache_val, &tmp); |
5636 | 0 | } |
5637 | 0 | } |
5638 | 0 | } else { |
5639 | 0 | ZVAL_COPY(arg, default_value); |
5640 | 0 | } |
5641 | 0 | } else { |
5642 | 0 | ZEND_ASSERT(opline->opcode == ZEND_RECV); |
5643 | 0 | zend_execute_data *old = start_fake_frame(call, opline); |
5644 | 0 | zend_argument_error(zend_ce_argument_count_error, i + 1, "not passed"); |
5645 | 0 | end_fake_frame(call, old); |
5646 | 0 | return FAILURE; |
5647 | 0 | } |
5648 | 0 | } |
5649 | | |
5650 | 0 | return SUCCESS; |
5651 | 0 | } else { |
5652 | 0 | if (fbc->common.fn_flags & ZEND_ACC_USER_ARG_INFO) { |
5653 | | /* Magic function, let it deal with it. */ |
5654 | 0 | return SUCCESS; |
5655 | 0 | } |
5656 | | |
5657 | 0 | uint32_t num_args = ZEND_CALL_NUM_ARGS(call); |
5658 | 0 | for (uint32_t i = 0; i < num_args; i++) { |
5659 | 0 | zval *arg = ZEND_CALL_VAR_NUM(call, i); |
5660 | 0 | if (!Z_ISUNDEF_P(arg)) { |
5661 | 0 | continue; |
5662 | 0 | } |
5663 | | |
5664 | 0 | zend_internal_arg_info *arg_info = &fbc->internal_function.arg_info[i]; |
5665 | 0 | if (i < fbc->common.required_num_args) { |
5666 | 0 | zend_execute_data *old = start_fake_frame(call, NULL); |
5667 | 0 | zend_argument_error(zend_ce_argument_count_error, i + 1, "not passed"); |
5668 | 0 | end_fake_frame(call, old); |
5669 | 0 | return FAILURE; |
5670 | 0 | } |
5671 | | |
5672 | 0 | zval default_value; |
5673 | 0 | if (zend_get_default_from_internal_arg_info(&default_value, arg_info) == FAILURE) { |
5674 | 0 | zend_execute_data *old = start_fake_frame(call, NULL); |
5675 | 0 | zend_argument_error(zend_ce_argument_count_error, i + 1, |
5676 | 0 | "must be passed explicitly, because the default value is not known"); |
5677 | 0 | end_fake_frame(call, old); |
5678 | 0 | return FAILURE; |
5679 | 0 | } |
5680 | | |
5681 | 0 | if (Z_TYPE(default_value) == IS_CONSTANT_AST) { |
5682 | 0 | zend_execute_data *old = start_fake_frame(call, NULL); |
5683 | 0 | zend_result ret = zval_update_constant_ex(&default_value, fbc->common.scope); |
5684 | 0 | end_fake_frame(call, old); |
5685 | 0 | if (ret == FAILURE) { |
5686 | 0 | return FAILURE; |
5687 | 0 | } |
5688 | 0 | } |
5689 | | |
5690 | 0 | ZVAL_COPY_VALUE(arg, &default_value); |
5691 | 0 | if (ZEND_ARG_SEND_MODE(arg_info) & ZEND_SEND_BY_REF) { |
5692 | 0 | ZVAL_NEW_REF(arg, arg); |
5693 | 0 | } |
5694 | 0 | } |
5695 | 0 | } |
5696 | | |
5697 | 0 | return SUCCESS; |
5698 | 0 | } |
5699 | | |
5700 | | ZEND_API void ZEND_FASTCALL zend_free_extra_named_params(zend_array *extra_named_params) |
5701 | 0 | { |
5702 | | /* Extra named params may be shared. */ |
5703 | 0 | zend_array_release(extra_named_params); |
5704 | 0 | } |
5705 | | |
5706 | | #if defined(ZEND_VM_IP_GLOBAL_REG) && ((ZEND_VM_KIND == ZEND_VM_KIND_CALL) || (ZEND_VM_KIND == ZEND_VM_KIND_HYBRID)) |
5707 | | /* Special versions of functions that sets EX(opline) before calling zend_vm_stack_extend() */ |
5708 | | static zend_always_inline zend_execute_data *_zend_vm_stack_push_call_frame_ex(uint32_t used_stack, uint32_t call_info, zend_function *func, uint32_t num_args, void *object_or_called_scope) /* {{{ */ |
5709 | | { |
5710 | | zend_execute_data *call = (zend_execute_data*)EG(vm_stack_top); |
5711 | | |
5712 | | ZEND_ASSERT_VM_STACK_GLOBAL; |
5713 | | |
5714 | | if (UNEXPECTED(used_stack > (size_t)(((char*)EG(vm_stack_end)) - (char*)call))) { |
5715 | | EX(opline) = opline; /* this is the only difference */ |
5716 | | call = (zend_execute_data*)zend_vm_stack_extend(used_stack); |
5717 | | ZEND_ASSERT_VM_STACK_GLOBAL; |
5718 | | zend_vm_init_call_frame(call, call_info | ZEND_CALL_ALLOCATED, func, num_args, object_or_called_scope); |
5719 | | return call; |
5720 | | } else { |
5721 | | EG(vm_stack_top) = (zval*)((char*)call + used_stack); |
5722 | | zend_vm_init_call_frame(call, call_info, func, num_args, object_or_called_scope); |
5723 | | return call; |
5724 | | } |
5725 | | } /* }}} */ |
5726 | | |
5727 | | static zend_always_inline zend_execute_data *_zend_vm_stack_push_call_frame(uint32_t call_info, zend_function *func, uint32_t num_args, void *object_or_called_scope) /* {{{ */ |
5728 | | { |
5729 | | uint32_t used_stack = zend_vm_calc_used_stack(num_args, func); |
5730 | | |
5731 | | return _zend_vm_stack_push_call_frame_ex(used_stack, call_info, |
5732 | | func, num_args, object_or_called_scope); |
5733 | | } /* }}} */ |
5734 | | #else |
5735 | 0 | # define _zend_vm_stack_push_call_frame_ex zend_vm_stack_push_call_frame_ex |
5736 | 0 | # define _zend_vm_stack_push_call_frame zend_vm_stack_push_call_frame |
5737 | | #endif |
5738 | | |
5739 | | #ifdef ZEND_VM_TRACE_HANDLERS |
5740 | | # include "zend_vm_trace_handlers.h" |
5741 | | #elif defined(ZEND_VM_TRACE_LINES) |
5742 | | # include "zend_vm_trace_lines.h" |
5743 | | #elif defined(ZEND_VM_TRACE_MAP) |
5744 | | # include "zend_vm_trace_map.h" |
5745 | | #elif defined(ZEND_VERIFY_TYPE_INFERENCE) |
5746 | | # include "zend_verify_type_inference.h" |
5747 | | #endif |
5748 | | |
5749 | | #define ZEND_VM_NEXT_OPCODE_EX(check_exception, skip) \ |
5750 | 0 | CHECK_SYMBOL_TABLES() \ |
5751 | 0 | if (check_exception) { \ |
5752 | 0 | OPLINE = EX(opline) + (skip); \ |
5753 | 0 | } else { \ |
5754 | 0 | ZEND_ASSERT(!EG(exception)); \ |
5755 | 0 | OPLINE = opline + (skip); \ |
5756 | 0 | } \ |
5757 | 0 | ZEND_VM_CONTINUE() |
5758 | | |
5759 | | #define ZEND_VM_NEXT_OPCODE_CHECK_EXCEPTION() \ |
5760 | 0 | ZEND_VM_NEXT_OPCODE_EX(1, 1) |
5761 | | |
5762 | | #define ZEND_VM_NEXT_OPCODE() \ |
5763 | 0 | ZEND_VM_NEXT_OPCODE_EX(0, 1) |
5764 | | |
5765 | | #define ZEND_VM_SET_NEXT_OPCODE(new_op) \ |
5766 | 0 | CHECK_SYMBOL_TABLES() \ |
5767 | 0 | OPLINE = new_op |
5768 | | |
5769 | | #define ZEND_VM_SET_OPCODE_NO_INTERRUPT(new_op) \ |
5770 | 0 | CHECK_SYMBOL_TABLES() \ |
5771 | 0 | OPLINE = new_op |
5772 | | |
5773 | | #define ZEND_VM_SET_OPCODE(new_op) \ |
5774 | 0 | ZEND_VM_SET_OPCODE_NO_INTERRUPT(new_op); \ |
5775 | 0 | ZEND_VM_INTERRUPT_CHECK() |
5776 | | |
5777 | | #define ZEND_VM_SET_RELATIVE_OPCODE(opline, offset) \ |
5778 | 0 | ZEND_VM_SET_OPCODE(ZEND_OFFSET_TO_OPLINE(opline, offset)) |
5779 | | |
5780 | 0 | #define ZEND_VM_JMP_EX(new_op, check_exception) do { \ |
5781 | 0 | if (check_exception && UNEXPECTED(EG(exception))) { \ |
5782 | 0 | HANDLE_EXCEPTION(); \ |
5783 | 0 | } \ |
5784 | 0 | ZEND_VM_SET_OPCODE(new_op); \ |
5785 | 0 | ZEND_VM_CONTINUE(); \ |
5786 | 0 | } while (0) |
5787 | | |
5788 | | #define ZEND_VM_JMP(new_op) \ |
5789 | 0 | ZEND_VM_JMP_EX(new_op, 1) |
5790 | | |
5791 | | #define ZEND_VM_INC_OPCODE() \ |
5792 | 0 | OPLINE++ |
5793 | | |
5794 | | |
5795 | | #define ZEND_VM_REPEATABLE_OPCODE \ |
5796 | 0 | do { |
5797 | | #define ZEND_VM_REPEAT_OPCODE(_opcode) \ |
5798 | 0 | } while (UNEXPECTED((++opline)->opcode == _opcode)); \ |
5799 | 0 | OPLINE = opline; \ |
5800 | 0 | ZEND_VM_CONTINUE() |
5801 | 0 | #define ZEND_VM_SMART_BRANCH(_result, _check) do { \ |
5802 | 0 | if ((_check) && UNEXPECTED(EG(exception))) { \ |
5803 | 0 | OPLINE = EX(opline); \ |
5804 | 0 | } else if (EXPECTED(opline->result_type == (IS_SMART_BRANCH_JMPZ|IS_TMP_VAR))) { \ |
5805 | 0 | if (_result) { \ |
5806 | 0 | ZEND_VM_SET_NEXT_OPCODE(opline + 2); \ |
5807 | 0 | } else { \ |
5808 | 0 | ZEND_VM_SET_OPCODE(OP_JMP_ADDR(opline + 1, (opline+1)->op2)); \ |
5809 | 0 | } \ |
5810 | 0 | } else if (EXPECTED(opline->result_type == (IS_SMART_BRANCH_JMPNZ|IS_TMP_VAR))) { \ |
5811 | 0 | if (!(_result)) { \ |
5812 | 0 | ZEND_VM_SET_NEXT_OPCODE(opline + 2); \ |
5813 | 0 | } else { \ |
5814 | 0 | ZEND_VM_SET_OPCODE(OP_JMP_ADDR(opline + 1, (opline+1)->op2)); \ |
5815 | 0 | } \ |
5816 | 0 | } else { \ |
5817 | 0 | ZVAL_BOOL(EX_VAR(opline->result.var), _result); \ |
5818 | 0 | ZEND_VM_SET_NEXT_OPCODE(opline + 1); \ |
5819 | 0 | } \ |
5820 | 0 | ZEND_VM_CONTINUE(); \ |
5821 | 0 | } while (0) |
5822 | 0 | #define ZEND_VM_SMART_BRANCH_JMPZ(_result, _check) do { \ |
5823 | 0 | if ((_check) && UNEXPECTED(EG(exception))) { \ |
5824 | 0 | OPLINE = EX(opline); \ |
5825 | 0 | } else if (_result) { \ |
5826 | 0 | ZEND_VM_SET_NEXT_OPCODE(opline + 2); \ |
5827 | 0 | } else { \ |
5828 | 0 | ZEND_VM_SET_OPCODE(OP_JMP_ADDR(opline + 1, (opline+1)->op2)); \ |
5829 | 0 | } \ |
5830 | 0 | ZEND_VM_CONTINUE(); \ |
5831 | 0 | } while (0) |
5832 | 0 | #define ZEND_VM_SMART_BRANCH_JMPNZ(_result, _check) do { \ |
5833 | 0 | if ((_check) && UNEXPECTED(EG(exception))) { \ |
5834 | 0 | OPLINE = EX(opline); \ |
5835 | 0 | } else if (!(_result)) { \ |
5836 | 0 | ZEND_VM_SET_NEXT_OPCODE(opline + 2); \ |
5837 | 0 | } else { \ |
5838 | 0 | ZEND_VM_SET_OPCODE(OP_JMP_ADDR(opline + 1, (opline+1)->op2)); \ |
5839 | 0 | } \ |
5840 | 0 | ZEND_VM_CONTINUE(); \ |
5841 | 0 | } while (0) |
5842 | 0 | #define ZEND_VM_SMART_BRANCH_NONE(_result, _check) do { \ |
5843 | 0 | ZVAL_BOOL(EX_VAR(opline->result.var), _result); \ |
5844 | 0 | ZEND_VM_NEXT_OPCODE_EX(_check, 1); \ |
5845 | 0 | ZEND_VM_CONTINUE(); \ |
5846 | 0 | } while (0) |
5847 | 0 | #define ZEND_VM_SMART_BRANCH_TRUE() do { \ |
5848 | 0 | if (EXPECTED(opline->result_type == (IS_SMART_BRANCH_JMPNZ|IS_TMP_VAR))) { \ |
5849 | 0 | ZEND_VM_SET_OPCODE(OP_JMP_ADDR(opline + 1, (opline+1)->op2)); \ |
5850 | 0 | } else if (EXPECTED(opline->result_type == (IS_SMART_BRANCH_JMPZ|IS_TMP_VAR))) { \ |
5851 | 0 | ZEND_VM_SET_NEXT_OPCODE(opline + 2); \ |
5852 | 0 | } else { \ |
5853 | 0 | ZVAL_TRUE(EX_VAR(opline->result.var)); \ |
5854 | 0 | ZEND_VM_SET_NEXT_OPCODE(opline + 1); \ |
5855 | 0 | } \ |
5856 | 0 | ZEND_VM_CONTINUE(); \ |
5857 | 0 | } while (0) |
5858 | 0 | #define ZEND_VM_SMART_BRANCH_TRUE_JMPZ() do { \ |
5859 | 0 | ZEND_VM_SET_NEXT_OPCODE(opline + 2); \ |
5860 | 0 | ZEND_VM_CONTINUE(); \ |
5861 | 0 | } while (0) |
5862 | 0 | #define ZEND_VM_SMART_BRANCH_TRUE_JMPNZ() do { \ |
5863 | 0 | ZEND_VM_SET_OPCODE(OP_JMP_ADDR(opline + 1, (opline+1)->op2)); \ |
5864 | 0 | ZEND_VM_CONTINUE(); \ |
5865 | 0 | } while (0) |
5866 | 0 | #define ZEND_VM_SMART_BRANCH_TRUE_NONE() do { \ |
5867 | 0 | ZVAL_TRUE(EX_VAR(opline->result.var)); \ |
5868 | 0 | ZEND_VM_NEXT_OPCODE(); \ |
5869 | 0 | } while (0) |
5870 | 0 | #define ZEND_VM_SMART_BRANCH_FALSE() do { \ |
5871 | 0 | if (EXPECTED(opline->result_type == (IS_SMART_BRANCH_JMPNZ|IS_TMP_VAR))) { \ |
5872 | 0 | ZEND_VM_SET_NEXT_OPCODE(opline + 2); \ |
5873 | 0 | } else if (EXPECTED(opline->result_type == (IS_SMART_BRANCH_JMPZ|IS_TMP_VAR))) { \ |
5874 | 0 | ZEND_VM_SET_OPCODE(OP_JMP_ADDR(opline + 1, (opline+1)->op2)); \ |
5875 | 0 | } else { \ |
5876 | 0 | ZVAL_FALSE(EX_VAR(opline->result.var)); \ |
5877 | 0 | ZEND_VM_SET_NEXT_OPCODE(opline + 1); \ |
5878 | 0 | } \ |
5879 | 0 | ZEND_VM_CONTINUE(); \ |
5880 | 0 | } while (0) |
5881 | 0 | #define ZEND_VM_SMART_BRANCH_FALSE_JMPZ() do { \ |
5882 | 0 | ZEND_VM_SET_OPCODE(OP_JMP_ADDR(opline + 1, (opline+1)->op2)); \ |
5883 | 0 | ZEND_VM_CONTINUE(); \ |
5884 | 0 | } while (0) |
5885 | 0 | #define ZEND_VM_SMART_BRANCH_FALSE_JMPNZ() do { \ |
5886 | 0 | ZEND_VM_SET_NEXT_OPCODE(opline + 2); \ |
5887 | 0 | ZEND_VM_CONTINUE(); \ |
5888 | 0 | } while (0) |
5889 | 0 | #define ZEND_VM_SMART_BRANCH_FALSE_NONE() do { \ |
5890 | 0 | ZVAL_FALSE(EX_VAR(opline->result.var)); \ |
5891 | 0 | ZEND_VM_NEXT_OPCODE(); \ |
5892 | 0 | } while (0) |
5893 | | |
5894 | | #ifdef __GNUC__ |
5895 | | # define ZEND_VM_GUARD(name) __asm__("#" #name) |
5896 | | #else |
5897 | | # define ZEND_VM_GUARD(name) |
5898 | | #endif |
5899 | | |
5900 | 0 | #define UNDEF_RESULT() do { \ |
5901 | 0 | if (opline->result_type & (IS_VAR | IS_TMP_VAR)) { \ |
5902 | 0 | ZVAL_UNDEF(EX_VAR(opline->result.var)); \ |
5903 | 0 | } \ |
5904 | 0 | } while (0) |
5905 | | |
5906 | | /* This callback disables optimization of "vm_stack_data" variable in VM */ |
5907 | | ZEND_API void (ZEND_FASTCALL *zend_touch_vm_stack_data)(void *vm_stack_data) = NULL; |
5908 | | |
5909 | | #include "zend_vm_execute.h" |
5910 | | |
5911 | | ZEND_API zend_result zend_set_user_opcode_handler(zend_uchar opcode, user_opcode_handler_t handler) |
5912 | 0 | { |
5913 | 0 | if (opcode != ZEND_USER_OPCODE) { |
5914 | 0 | if (handler == NULL) { |
5915 | | /* restore the original handler */ |
5916 | 0 | zend_user_opcodes[opcode] = opcode; |
5917 | 0 | } else { |
5918 | 0 | zend_user_opcodes[opcode] = ZEND_USER_OPCODE; |
5919 | 0 | } |
5920 | 0 | zend_user_opcode_handlers[opcode] = handler; |
5921 | 0 | return SUCCESS; |
5922 | 0 | } |
5923 | 0 | return FAILURE; |
5924 | 0 | } |
5925 | | |
5926 | | ZEND_API user_opcode_handler_t zend_get_user_opcode_handler(zend_uchar opcode) |
5927 | 512 | { |
5928 | 512 | return zend_user_opcode_handlers[opcode]; |
5929 | 512 | } |
5930 | | |
5931 | | ZEND_API zval *zend_get_zval_ptr(const zend_op *opline, int op_type, const znode_op *node, const zend_execute_data *execute_data) |
5932 | 0 | { |
5933 | 0 | zval *ret; |
5934 | |
|
5935 | 0 | switch (op_type) { |
5936 | 0 | case IS_CONST: |
5937 | 0 | ret = RT_CONSTANT(opline, *node); |
5938 | 0 | break; |
5939 | 0 | case IS_TMP_VAR: |
5940 | 0 | case IS_VAR: |
5941 | 0 | case IS_CV: |
5942 | 0 | ret = EX_VAR(node->var); |
5943 | 0 | break; |
5944 | 0 | default: |
5945 | 0 | ret = NULL; |
5946 | 0 | break; |
5947 | 0 | } |
5948 | 0 | return ret; |
5949 | 0 | } |