blob: e8a34cc5381f27b827fd7436bf804d47eb16cac9 [file] [edit]
/*
* Copyright (C) 2007, 2008, 2010, 2013, 2014 Apple Inc. All rights reserved.
* Copyright (C) 2007 Justin Haygood (jhaygood@reaktix.com)
*
* Redistribution and use in source and binary forms, with or without
* modification, are permitted provided that the following conditions
* are met:
* 1. Redistributions of source code must retain the above copyright
* notice, this list of conditions and the following disclaimer.
* 2. Redistributions in binary form must reproduce the above copyright
* notice, this list of conditions and the following disclaimer in the
* documentation and/or other materials provided with the distribution.
*
* THIS SOFTWARE IS PROVIDED BY APPLE INC. AND ITS CONTRIBUTORS ``AS IS'' AND ANY
* EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED
* WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
* DISCLAIMED. IN NO EVENT SHALL APPLE INC. OR ITS CONTRIBUTORS BE LIABLE FOR ANY
* DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
* (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
* LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON
* ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
* (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS
* SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
*/
#pragma once
#include <wtf/ThreadSafeRefCounted.h>
namespace WTF {
// FIXME: Safer CPP Checking cannot perform analysis globally, and it does not work well
// with some of lifetime model, in particular JSC::VM which is retained before entering
// JSC world. This class is introduced to suppress these warnings since it does not use
// ref / deref functions. Except for the function names, implementation is the copy of
// ThreadSafeRefCounted. We would like to drop this class once Safer CPP Checking supports
// suppression mechanism for the classes which cannot be handled well with the checker, or
// the checker introduces a solution which works well with JSC::VM.
class WTF_EMPTY_BASE_CLASS ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase {
WTF_MAKE_NONCOPYABLE(ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase);
WTF_DEPRECATED_MAKE_FAST_ALLOCATED(ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase);
public:
void refSuppressingSaferCPPChecking() const
{
m_refCountDebugger.willRef(m_refCount.load(std::memory_order_relaxed));
m_refCount.fetch_add(1, std::memory_order_relaxed);
}
bool hasOneRef() const { return m_refCount.load(std::memory_order_acquire) == 1; }
uint32_t refCount() const { return m_refCount.load(std::memory_order_relaxed); }
// Debug APIs
void adopted() { m_refCountDebugger.adopted(); }
void relaxAdoptionRequirement() { m_refCountDebugger.relaxAdoptionRequirement(); }
void disableThreadingChecks() { m_refCountDebugger.disableThreadingChecks(); }
ThreadSafeRefCountDebugger& refCountDebugger() LIFETIME_BOUND { return m_refCountDebugger; }
protected:
ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase()
{
// FIXME: Lots of subclasses violate our adoption requirements. Migrate
// this call into only those subclasses that need it.
m_refCountDebugger.relaxAdoptionRequirement();
}
~ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase()
{
m_refCountDebugger.willDestroy(m_refCount.load(std::memory_order_relaxed));
// Ideally we'd use a RELEASE_ASSERT() here but it is a 0.7-0.8% regression on Speedometer 3.
ASSERT_WITH_SECURITY_IMPLICATION(m_refCount.load(std::memory_order_relaxed) == 1);
}
// Returns true if the pointer should be freed.
bool derefBase() const
{
m_refCountDebugger.willDeref(m_refCount.load(std::memory_order_relaxed));
if (m_refCount.fetch_sub(1, std::memory_order_acq_rel) == 1) [[unlikely]] {
m_refCountDebugger.willDelete();
m_refCount.store(1, std::memory_order_relaxed);
return true;
}
return false;
}
private:
mutable std::atomic<uint32_t> m_refCount { 1 };
NO_UNIQUE_ADDRESS ThreadSafeRefCountDebugger m_refCountDebugger;
};
template<class T, DestructionThread destructionThread = DestructionThread::Any> class ThreadSafeRefCountedWithSuppressingSaferCPPChecking : public ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase {
public:
ThreadSafeRefCountedWithSuppressingSaferCPPChecking() = default;
void derefSuppressingSaferCPPChecking() const
{
if (!derefBase())
return;
if constexpr (destructionThread == DestructionThread::Any) {
delete static_cast<const T*>(this);
} else if constexpr (destructionThread == DestructionThread::Main) {
ensureOnMainThread([this] {
delete static_cast<const T*>(this);
});
} else if constexpr (destructionThread == DestructionThread::MainRunLoop) {
ensureOnMainRunLoop([this] {
delete static_cast<const T*>(this);
});
} else
STATIC_ASSERT_NOT_REACHED_FOR_VALUE(destructionThread, "Unexpected destructionThread enumerator value");
}
} SWIFT_RETURNED_AS_UNRETAINED_BY_DEFAULT;
inline void adopted(ThreadSafeRefCountedWithSuppressingSaferCPPCheckingBase* object)
{
if (!object)
return;
object->adopted();
}
} // namespace WTF
using WTF::ThreadSafeRefCountedWithSuppressingSaferCPPChecking;