xref: /xnu-11215.1.10/tests/bounded_ptr_src/example.malloc.cpp (revision 8d741a5de7ff4191bf97d57b9f54c2f6d4a15585)
1*8d741a5dSApple OSS Distributions //
2*8d741a5dSApple OSS Distributions // Example of providing a malloc() wrapper that returns a `bounded_ptr`.
3*8d741a5dSApple OSS Distributions //
4*8d741a5dSApple OSS Distributions // This test serves as some kind of integration test, ensuring that we're
5*8d741a5dSApple OSS Distributions // able to convert existing code using raw pointers to using `bounded_ptr`s
6*8d741a5dSApple OSS Distributions // without too much hassle. This code was lifted from existing code in XNU,
7*8d741a5dSApple OSS Distributions // and the variable names were changed to make it more generic.
8*8d741a5dSApple OSS Distributions //
9*8d741a5dSApple OSS Distributions 
10*8d741a5dSApple OSS Distributions #include <libkern/c++/bounded_ptr.h>
11*8d741a5dSApple OSS Distributions #include <cstddef>
12*8d741a5dSApple OSS Distributions #include <cstdint>
13*8d741a5dSApple OSS Distributions #include <cstdlib>
14*8d741a5dSApple OSS Distributions #include <darwintest.h>
15*8d741a5dSApple OSS Distributions #include "test_utils.h"
16*8d741a5dSApple OSS Distributions 
17*8d741a5dSApple OSS Distributions test_bounded_ptr<void>
bounded_malloc(std::size_t size)18*8d741a5dSApple OSS Distributions bounded_malloc(std::size_t size)
19*8d741a5dSApple OSS Distributions {
20*8d741a5dSApple OSS Distributions 	void* p = std::malloc(size);
21*8d741a5dSApple OSS Distributions 	void* end = static_cast<char*>(p) + size;
22*8d741a5dSApple OSS Distributions 	test_bounded_ptr<void> with_bounds(p, p, end);
23*8d741a5dSApple OSS Distributions 	return with_bounds;
24*8d741a5dSApple OSS Distributions }
25*8d741a5dSApple OSS Distributions 
26*8d741a5dSApple OSS Distributions void
bounded_free(test_bounded_ptr<void> ptr)27*8d741a5dSApple OSS Distributions bounded_free(test_bounded_ptr<void> ptr)
28*8d741a5dSApple OSS Distributions {
29*8d741a5dSApple OSS Distributions 	std::free(ptr.discard_bounds());
30*8d741a5dSApple OSS Distributions }
31*8d741a5dSApple OSS Distributions 
32*8d741a5dSApple OSS Distributions struct SomeType {
33*8d741a5dSApple OSS Distributions 	std::uint32_t idx;
34*8d741a5dSApple OSS Distributions };
35*8d741a5dSApple OSS Distributions 
36*8d741a5dSApple OSS Distributions // Pretend that those functions are already part of the code base being
37*8d741a5dSApple OSS Distributions // transitioned over to `bounded_ptr`s, and we can't change their signature.
38*8d741a5dSApple OSS Distributions // The purpose of having those functions is to make sure that we're able to
39*8d741a5dSApple OSS Distributions // integrate into existing code bases with decent ease.
40*8d741a5dSApple OSS Distributions void
use(SomeType *)41*8d741a5dSApple OSS Distributions use(SomeType*)
42*8d741a5dSApple OSS Distributions {
43*8d741a5dSApple OSS Distributions }
44*8d741a5dSApple OSS Distributions void
require(bool condition)45*8d741a5dSApple OSS Distributions require(bool condition)
46*8d741a5dSApple OSS Distributions {
47*8d741a5dSApple OSS Distributions 	if (!condition) {
48*8d741a5dSApple OSS Distributions 		std::exit(EXIT_FAILURE);
49*8d741a5dSApple OSS Distributions 	}
50*8d741a5dSApple OSS Distributions }
51*8d741a5dSApple OSS Distributions 
52*8d741a5dSApple OSS Distributions T_DECL(example_malloc, "bounded_ptr.example.malloc", T_META_TAG_VM_PREFERRED) {
53*8d741a5dSApple OSS Distributions 	test_bounded_ptr<SomeType> array = nullptr;
54*8d741a5dSApple OSS Distributions 	std::uint32_t count = 100;
55*8d741a5dSApple OSS Distributions 	std::uint32_t alloc_size = count * sizeof(SomeType);
56*8d741a5dSApple OSS Distributions 
57*8d741a5dSApple OSS Distributions 	// (1) must use a bounded version of malloc
58*8d741a5dSApple OSS Distributions 	// (2) must use a reinterpret_pointer_cast to go from void* to SomeType*
59*8d741a5dSApple OSS Distributions 	array = libkern::reinterpret_pointer_cast<SomeType>(bounded_malloc(alloc_size));
60*8d741a5dSApple OSS Distributions 
61*8d741a5dSApple OSS Distributions 	require(array != nullptr); // use != nullptr instead of relying on implicit conversion to bool
62*8d741a5dSApple OSS Distributions 	use(array.discard_bounds()); // must manually discard bounds here
63*8d741a5dSApple OSS Distributions 
64*8d741a5dSApple OSS Distributions 	for (std::uint32_t i = 0; i < count; i++) {
65*8d741a5dSApple OSS Distributions 		std::uint32_t& idx = array[i].idx;
66*8d741a5dSApple OSS Distributions 		idx = i;
67*8d741a5dSApple OSS Distributions 		use(&array[idx]);
68*8d741a5dSApple OSS Distributions 	}
69*8d741a5dSApple OSS Distributions 
70*8d741a5dSApple OSS Distributions 	if (array) {
71*8d741a5dSApple OSS Distributions 		bounded_free(array); // must use a bounded version of free
72*8d741a5dSApple OSS Distributions 	}
73*8d741a5dSApple OSS Distributions 
74*8d741a5dSApple OSS Distributions 	T_PASS("bounded_ptr.example.malloc test done");
75*8d741a5dSApple OSS Distributions }
76