| /* |
| * Copyright (C) 2007, 2008, 2010, 2013, 2014 Apple Inc. All rights reserved. |
| * Copyright (C) 2007 Justin Haygood (jhaygood@reaktix.com) |
| * |
| * Redistribution and use in source and binary forms, with or without |
| * modification, are permitted provided that the following conditions |
| * are met: |
| * 1. Redistributions of source code must retain the above copyright |
| * notice, this list of conditions and the following disclaimer. |
| * 2. Redistributions in binary form must reproduce the above copyright |
| * notice, this list of conditions and the following disclaimer in the |
| * documentation and/or other materials provided with the distribution. |
| * |
| * THIS SOFTWARE IS PROVIDED BY APPLE INC. AND ITS CONTRIBUTORS ``AS IS'' AND ANY |
| * EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED |
| * WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE |
| * DISCLAIMED. IN NO EVENT SHALL APPLE INC. OR ITS CONTRIBUTORS BE LIABLE FOR ANY |
| * DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES |
| * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; |
| * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON |
| * ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT |
| * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS |
| * SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. |
| */ |
| |
| #pragma once |
| |
| #include <wtf/ThreadSafeRefCounted.h> |
| |
| namespace WTF { |
| |
| // FIXME: Safer CPP Checking cannot perform analysis globally, and it does not work well |
| // with some of lifetime model, in particular JSC::VM which is retained before entering |
| // JSC world. This class is introduced to suppress these warnings since it does not use |
| // ref / deref functions. Except for the function names, implementation is the copy of |
| // ThreadSafeRefCounted. We would like to drop this class once Safer CPP Checking supports |
| // suppression mechanism for the classes which cannot be handled well with the checker, or |
| // the checker introduces a solution which works well with JSC::VM. |
| class WTF_EMPTY_BASE_CLASS ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase { |
| WTF_MAKE_NONCOPYABLE(ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase); |
| WTF_DEPRECATED_MAKE_FAST_ALLOCATED(ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase); |
| public: |
| void refSuppressingSaferCPPChecking() const |
| { |
| m_refCountDebugger.willRef(m_refCount.load(std::memory_order_relaxed)); |
| m_refCount.fetch_add(1, std::memory_order_relaxed); |
| } |
| |
| bool hasOneRef() const { return m_refCount.load(std::memory_order_acquire) == 1; } |
| uint32_t refCount() const { return m_refCount.load(std::memory_order_relaxed); } |
| |
| // Debug APIs |
| void adopted() { m_refCountDebugger.adopted(); } |
| void relaxAdoptionRequirement() { m_refCountDebugger.relaxAdoptionRequirement(); } |
| void disableThreadingChecks() { m_refCountDebugger.disableThreadingChecks(); } |
| ThreadSafeRefCountDebugger& refCountDebugger() LIFETIME_BOUND { return m_refCountDebugger; } |
| |
| protected: |
| ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase() |
| { |
| // FIXME: Lots of subclasses violate our adoption requirements. Migrate |
| // this call into only those subclasses that need it. |
| m_refCountDebugger.relaxAdoptionRequirement(); |
| } |
| |
| ~ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase() |
| { |
| m_refCountDebugger.willDestroy(m_refCount.load(std::memory_order_relaxed)); |
| // Ideally we'd use a RELEASE_ASSERT() here but it is a 0.7-0.8% regression on Speedometer 3. |
| ASSERT_WITH_SECURITY_IMPLICATION(m_refCount.load(std::memory_order_relaxed) == 1); |
| } |
| |
| // Returns true if the pointer should be freed. |
| bool derefBase() const |
| { |
| m_refCountDebugger.willDeref(m_refCount.load(std::memory_order_relaxed)); |
| |
| if (m_refCount.fetch_sub(1, std::memory_order_acq_rel) == 1) [[unlikely]] { |
| m_refCountDebugger.willDelete(); |
| |
| m_refCount.store(1, std::memory_order_relaxed); |
| return true; |
| } |
| |
| return false; |
| } |
| |
| private: |
| mutable std::atomic<uint32_t> m_refCount { 1 }; |
| NO_UNIQUE_ADDRESS ThreadSafeRefCountDebugger m_refCountDebugger; |
| }; |
| |
| template<class T, DestructionThread destructionThread = DestructionThread::Any> class ThreadSafeRefCountedWithSuppressingSaferCPPChecking : public ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase { |
| public: |
| ThreadSafeRefCountedWithSuppressingSaferCPPChecking() = default; |
| |
| void derefSuppressingSaferCPPChecking() const |
| { |
| if (!derefBase()) |
| return; |
| |
| if constexpr (destructionThread == DestructionThread::Any) { |
| delete static_cast<const T*>(this); |
| } else if constexpr (destructionThread == DestructionThread::Main) { |
| ensureOnMainThread([this] { |
| delete static_cast<const T*>(this); |
| }); |
| } else if constexpr (destructionThread == DestructionThread::MainRunLoop) { |
| ensureOnMainRunLoop([this] { |
| delete static_cast<const T*>(this); |
| }); |
| } else |
| STATIC_ASSERT_NOT_REACHED_FOR_VALUE(destructionThread, "Unexpected destructionThread enumerator value"); |
| } |
| } SWIFT_RETURNED_AS_UNRETAINED_BY_DEFAULT; |
| |
| inline void adopted(ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase* object) |
| { |
| if (!object) |
| return; |
| object->adopted(); |
| } |
| |
| } // namespace WTF |
| |
| using WTF::ThreadSafeRefCountedWithSuppressingSaferCPPChecking; |