Skip to content

Vsd value set of pointers #5825

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 5 commits into from
Mar 1, 2021
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Original file line number Diff line number Diff line change
@@ -0,0 +1,16 @@
#include <assert.h>

int main()
{
int unknown;
int a = 10;

int *p = &a;

if(unknown)
a = 15;

int q = *p;

assert(q == a);
}
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
CORE
main.c
--verify --variable-sensitivity --vsd-values intervals --vsd-pointers constants
^\[main.assertion.1\] line 15 assertion q == a: SUCCESS
^EXIT=0$
^SIGNAL=0$
--
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
CORE
main.c
--verify --variable-sensitivity --vsd-values intervals --vsd-pointers top-bottom
^\[main.assertion.1\] line 15 assertion q == a: UNKNOWN
^EXIT=0$
^SIGNAL=0$
--
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
CORE
main.c
--verify --variable-sensitivity --vsd-values intervals --vsd-pointers value-set
^\[main.assertion.1\] line 15 assertion q == a: SUCCESS
^EXIT=0$
^SIGNAL=0$
--
11 changes: 11 additions & 0 deletions regression/goto-analyzer/pointer-dereference/main.c
Original file line number Diff line number Diff line change
@@ -0,0 +1,11 @@
#include <assert.h>

int main()
{
int a = 10;
int *p = &a;

int q = *p;

assert(q == a);
}
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
CORE
main.c
--verify --variable-sensitivity --vsd-pointers constants
^\[main.assertion.1\] line 10 assertion q == a: SUCCESS
^EXIT=0$
^SIGNAL=0$
--
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
CORE
main.c
--verify --variable-sensitivity --vsd-pointers top-bottom
^\[main.assertion.1\] line 10 assertion q == a: UNKNOWN
^EXIT=0$
^SIGNAL=0$
--
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
CORE
main.c
--verify --variable-sensitivity --vsd-pointers value-set
^\[main.assertion.1\] line 10 assertion q == a: SUCCESS
^EXIT=0$
^SIGNAL=0$
--
Original file line number Diff line number Diff line change
@@ -0,0 +1,17 @@
#include <assert.h>

int main()
{
int unknown;
int a = 10;
int b = 10;
int *p = &a;

if(unknown)
{
b = 15;
*p = 15;
}

assert(*p == b);
}
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
CORE
main.c
--verify --variable-sensitivity --vsd-values intervals --vsd-pointers constants
^\[main.assertion.1\] line 16 assertion \*p == b: SUCCESS
^EXIT=0$
^SIGNAL=0$
--
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
CORE
main.c
--verify --variable-sensitivity --vsd-values intervals --vsd-pointers top-bottom
^\[main.assertion.1\] line 16 assertion \*p == b: UNKNOWN
^EXIT=0$
^SIGNAL=0$
--
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
CORE
main.c
--verify --variable-sensitivity --vsd-values intervals --vsd-pointers value-set
^\[main.assertion.1\] line 16 assertion \*p == b: SUCCESS
^EXIT=0$
^SIGNAL=0$
--
11 changes: 11 additions & 0 deletions regression/goto-analyzer/pointer-write-through/main.c
Original file line number Diff line number Diff line change
@@ -0,0 +1,11 @@
#include <assert.h>

int main()
{
int a = 10;
int *p = &a;

*p = 15;

assert(a == 15);
}
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
CORE
main.c
--verify --variable-sensitivity --vsd-pointers constants
^\[main.assertion.1\] line 10 assertion a == 15: SUCCESS
^EXIT=0$
^SIGNAL=0$
--
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
CORE
main.c
--verify --variable-sensitivity --vsd-pointers top-bottom
^\[main.assertion.1\] line 10 assertion a == 15: UNKNOWN
^EXIT=0$
^SIGNAL=0$
--
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
CORE
main.c
--verify --variable-sensitivity --vsd-pointers value-set
^\[main.assertion.1\] line 10 assertion a == 15: SUCCESS
^EXIT=0$
^SIGNAL=0$
--
4 changes: 2 additions & 2 deletions scripts/expected_doxygen_warnings.txt
Original file line number Diff line number Diff line change
Expand Up @@ -97,6 +97,6 @@ warning: Included by graph for 'pointer_expr.h' not generated, too many nodes (1
warning: Included by graph for 'prefix.h' not generated, too many nodes (86), threshold is 60. Consider increasing DOT_GRAPH_MAX_NODES.
warning: Included by graph for 'simplify_expr.h' not generated, too many nodes (77), threshold is 60. Consider increasing DOT_GRAPH_MAX_NODES.
warning: Included by graph for 'std_code.h' not generated, too many nodes (78), threshold is 60. Consider increasing DOT_GRAPH_MAX_NODES.
warning: Included by graph for 'std_expr.h' not generated, too many nodes (245), threshold is 60. Consider increasing DOT_GRAPH_MAX_NODES.
warning: Included by graph for 'std_types.h' not generated, too many nodes (122), threshold is 60. Consider increasing DOT_GRAPH_MAX_NODES.
warning: Included by graph for 'std_expr.h' not generated, too many nodes (244), threshold is 60. Consider increasing DOT_GRAPH_MAX_NODES.
warning: Included by graph for 'std_types.h' not generated, too many nodes (121), threshold is 60. Consider increasing DOT_GRAPH_MAX_NODES.
warning: Included by graph for 'symbol_table.h' not generated, too many nodes (95), threshold is 60. Consider increasing DOT_GRAPH_MAX_NODES.
24 changes: 12 additions & 12 deletions src/analyses/Makefile
Original file line number Diff line number Diff line change
Expand Up @@ -33,29 +33,29 @@ SRC = ai.cpp \
static_analysis.cpp \
uncaught_exceptions_analysis.cpp \
uninitialized_domain.cpp \
variable-sensitivity/abstract_object.cpp \
variable-sensitivity/abstract_environment.cpp \
variable-sensitivity/abstract_object.cpp \
variable-sensitivity/abstract_object_set.cpp \
variable-sensitivity/abstract_pointer_object.cpp \
variable-sensitivity/abstract_value_object.cpp \
variable-sensitivity/constant_abstract_value.cpp \
variable-sensitivity/constant_pointer_abstract_object.cpp \
variable-sensitivity/context_abstract_object.cpp \
variable-sensitivity/write_location_context.cpp \
variable-sensitivity/pointer_abstract_object.cpp \
variable-sensitivity/variable_sensitivity_domain.cpp \
variable-sensitivity/variable_sensitivity_object_factory.cpp \
variable-sensitivity/full_struct_abstract_object.cpp \
variable-sensitivity/full_array_abstract_object.cpp \
variable-sensitivity/write_stack.cpp \
variable-sensitivity/write_stack_entry.cpp \
variable-sensitivity/data_dependency_context.cpp \
variable-sensitivity/value_set_abstract_object.cpp \
variable-sensitivity/variable_sensitivity_dependence_graph.cpp \
variable-sensitivity/full_array_abstract_object.cpp \
variable-sensitivity/full_struct_abstract_object.cpp \
variable-sensitivity/interval_abstract_value.cpp \
variable-sensitivity/three_way_merge_abstract_interpreter.cpp \
variable-sensitivity/value_set_abstract_object.cpp \
variable-sensitivity/value_set_abstract_value.cpp \
variable-sensitivity/value_set_pointer_abstract_object.cpp \
variable-sensitivity/three_way_merge_abstract_interpreter.cpp \
variable-sensitivity/variable_sensitivity_configuration.cpp \
variable-sensitivity/variable_sensitivity_dependence_graph.cpp \
variable-sensitivity/variable_sensitivity_domain.cpp \
variable-sensitivity/variable_sensitivity_object_factory.cpp \
variable-sensitivity/write_location_context.cpp \
variable-sensitivity/write_stack.cpp \
variable-sensitivity/write_stack_entry.cpp \
# Empty last line

INCLUDES= -I ..
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -11,8 +11,8 @@
#include <analyses/variable-sensitivity/abstract_object.h>
#include <analyses/variable-sensitivity/abstract_object_statistics.h>
#include <analyses/variable-sensitivity/constant_abstract_value.h>
#include <analyses/variable-sensitivity/pointer_abstract_object.h>
#include <analyses/variable-sensitivity/two_value_array_abstract_object.h>
#include <analyses/variable-sensitivity/two_value_pointer_abstract_object.h>
#include <analyses/variable-sensitivity/two_value_struct_abstract_object.h>
#include <analyses/variable-sensitivity/variable_sensitivity_object_factory.h>
#include <util/pointer_expr.h>
Expand Down
36 changes: 36 additions & 0 deletions src/analyses/variable-sensitivity/abstract_object_set.cpp
Original file line number Diff line number Diff line change
@@ -0,0 +1,36 @@
/*******************************************************************\

Module: analyses variable-sensitivity

Author: Jez Higgins, [email protected]

\*******************************************************************/

#include <analyses/variable-sensitivity/abstract_object_set.h>
#include <util/string_utils.h>

static bool by_length(const std::string &lhs, const std::string &rhs)
{
if(lhs.size() < rhs.size())
return true;
if(lhs.size() > rhs.size())
return false;
return lhs < rhs;
}

void abstract_object_sett::output(
std::ostream &out,
const ai_baset &ai,
const namespacet &ns) const
{
std::vector<std::string> output_values;
for(const auto &value : values)
{
std::ostringstream ss;
value->output(ss, ai, ns);
output_values.emplace_back(ss.str());
}
std::sort(output_values.begin(), output_values.end(), by_length);

join_strings(out, output_values.begin(), output_values.end(), ", ");
}
83 changes: 83 additions & 0 deletions src/analyses/variable-sensitivity/abstract_object_set.h
Original file line number Diff line number Diff line change
@@ -0,0 +1,83 @@
/*******************************************************************\

Module: analyses variable-sensitivity

Author: Jez Higgins, [email protected]

\*******************************************************************/

/// \file
/// an unordered set of value objects

#ifndef CBMC_ABSTRACT_OBJECT_SET_H
#define CBMC_ABSTRACT_OBJECT_SET_H

#include <analyses/variable-sensitivity/abstract_value_object.h>
#include <unordered_set>

class abstract_object_sett
{
public:
using value_sett = std::unordered_set<
abstract_object_pointert,
abstract_hashert,
abstract_equalert>;
using const_iterator = value_sett::const_iterator;
using value_type = value_sett::value_type;
using size_type = value_sett::size_type;

void insert(const abstract_object_pointert &o)
{
values.insert(o);
}
void insert(abstract_object_pointert &&o)
{
values.insert(std::move(o));
}
void insert(const abstract_object_sett &rhs)
{
values.insert(rhs.begin(), rhs.end());
}

abstract_object_pointert first() const
{
return *begin();
}

const_iterator begin() const
{
return values.begin();
}
const_iterator end() const
{
return values.end();
}

value_sett::size_type size() const
{
return values.size();
}
bool empty() const
{
return values.empty();
}

bool operator==(const abstract_object_sett &rhs) const
{
return values == rhs.values;
}

void
output(std::ostream &out, const ai_baset &ai, const namespacet &ns) const;

private:
value_sett values;
};

class value_set_tag
{
public:
virtual const abstract_object_sett &get_values() const = 0;
};

#endif //CBMC_ABSTRACT_OBJECT_SET_H
Loading