1 | /*
|
---|
2 | * Copyright (C) 2015 Apple Inc. All rights reserved.
|
---|
3 | *
|
---|
4 | * Redistribution and use in source and binary forms, with or without
|
---|
5 | * modification, are permitted provided that the following conditions
|
---|
6 | * are met:
|
---|
7 | * 1. Redistributions of source code must retain the above copyright
|
---|
8 | * notice, this list of conditions and the following disclaimer.
|
---|
9 | * 2. Redistributions in binary form must reproduce the above copyright
|
---|
10 | * notice, this list of conditions and the following disclaimer in the
|
---|
11 | * documentation and/or other materials provided with the distribution.
|
---|
12 | *
|
---|
13 | * THIS SOFTWARE IS PROVIDED BY APPLE INC. ``AS IS'' AND ANY
|
---|
14 | * EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
|
---|
15 | * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
|
---|
16 | * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL APPLE INC. OR
|
---|
17 | * CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL,
|
---|
18 | * EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO,
|
---|
19 | * PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR
|
---|
20 | * PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY
|
---|
21 | * OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
|
---|
22 | * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
|
---|
23 | * OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
|
---|
24 | */
|
---|
25 |
|
---|
26 | #include "config.h"
|
---|
27 | #include "ExecutableAllocationFuzz.h"
|
---|
28 |
|
---|
29 | #include "TestRunnerUtils.h"
|
---|
30 | #include <wtf/Atomics.h>
|
---|
31 | #include <wtf/DataLog.h>
|
---|
32 | #include <wtf/WeakRandom.h>
|
---|
33 |
|
---|
34 | namespace JSC {
|
---|
35 |
|
---|
36 | static Atomic<unsigned> s_numberOfExecutableAllocationFuzzChecks;
|
---|
37 | unsigned numberOfExecutableAllocationFuzzChecks()
|
---|
38 | {
|
---|
39 | return s_numberOfExecutableAllocationFuzzChecks.load();
|
---|
40 | }
|
---|
41 |
|
---|
42 | ExecutableAllocationFuzzResult doExecutableAllocationFuzzing()
|
---|
43 | {
|
---|
44 | ASSERT(Options::useExecutableAllocationFuzz());
|
---|
45 |
|
---|
46 | if (Options::fireExecutableAllocationFuzzRandomly()) {
|
---|
47 | static LazyNeverDestroyed<WeakRandom> random;
|
---|
48 | static std::once_flag once;
|
---|
49 | std::call_once(once, [] () {
|
---|
50 | random.construct();
|
---|
51 | });
|
---|
52 |
|
---|
53 | static Lock fuzzingLock;
|
---|
54 | Locker locker { fuzzingLock };
|
---|
55 |
|
---|
56 | if (random->returnTrueWithProbability(Options::fireExecutableAllocationFuzzRandomlyProbability()))
|
---|
57 | return PretendToFailExecutableAllocation;
|
---|
58 |
|
---|
59 | return AllowNormalExecutableAllocation;
|
---|
60 | }
|
---|
61 |
|
---|
62 | unsigned oldValue;
|
---|
63 | unsigned newValue;
|
---|
64 | do {
|
---|
65 | oldValue = s_numberOfExecutableAllocationFuzzChecks.load();
|
---|
66 | newValue = oldValue + 1;
|
---|
67 | } while (!s_numberOfExecutableAllocationFuzzChecks.compareExchangeWeak(oldValue, newValue));
|
---|
68 |
|
---|
69 | if (newValue == Options::fireExecutableAllocationFuzzAt()) {
|
---|
70 | if (Options::verboseExecutableAllocationFuzz()) {
|
---|
71 | dataLog("Will pretend to fail executable allocation.\n");
|
---|
72 | WTFReportBacktrace();
|
---|
73 | }
|
---|
74 | return PretendToFailExecutableAllocation;
|
---|
75 | }
|
---|
76 |
|
---|
77 | if (Options::fireExecutableAllocationFuzzAtOrAfter()
|
---|
78 | && newValue >= Options::fireExecutableAllocationFuzzAtOrAfter()) {
|
---|
79 | if (Options::verboseExecutableAllocationFuzz()) {
|
---|
80 | dataLog("Will pretend to fail executable allocation.\n");
|
---|
81 | WTFReportBacktrace();
|
---|
82 | }
|
---|
83 | return PretendToFailExecutableAllocation;
|
---|
84 | }
|
---|
85 |
|
---|
86 | return AllowNormalExecutableAllocation;
|
---|
87 | }
|
---|
88 |
|
---|
89 | } // namespace JSC
|
---|
90 |
|
---|