1 /*
2 * Copyright (C) 2011 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17 #include "reflection-inl.h"
18
19 #include "art_field-inl.h"
20 #include "art_method-inl.h"
21 #include "base/enums.h"
22 #include "class_linker.h"
23 #include "common_throws.h"
24 #include "dex/dex_file-inl.h"
25 #include "indirect_reference_table-inl.h"
26 #include "jni/java_vm_ext.h"
27 #include "jni/jni_internal.h"
28 #include "jvalue-inl.h"
29 #include "mirror/class-inl.h"
30 #include "mirror/executable.h"
31 #include "mirror/object_array-inl.h"
32 #include "nativehelper/scoped_local_ref.h"
33 #include "nth_caller_visitor.h"
34 #include "scoped_thread_state_change-inl.h"
35 #include "stack_reference.h"
36 #include "thread-inl.h"
37 #include "well_known_classes.h"
38
39 namespace art {
40 namespace {
41
42 using android::base::StringPrintf;
43
44 class ArgArray {
45 public:
ArgArray(const char * shorty,uint32_t shorty_len)46 ArgArray(const char* shorty, uint32_t shorty_len)
47 : shorty_(shorty), shorty_len_(shorty_len), num_bytes_(0) {
48 size_t num_slots = shorty_len + 1; // +1 in case of receiver.
49 if (LIKELY((num_slots * 2) < kSmallArgArraySize)) {
50 // We can trivially use the small arg array.
51 arg_array_ = small_arg_array_;
52 } else {
53 // Analyze shorty to see if we need the large arg array.
54 for (size_t i = 1; i < shorty_len; ++i) {
55 char c = shorty[i];
56 if (c == 'J' || c == 'D') {
57 num_slots++;
58 }
59 }
60 if (num_slots <= kSmallArgArraySize) {
61 arg_array_ = small_arg_array_;
62 } else {
63 large_arg_array_.reset(new uint32_t[num_slots]);
64 arg_array_ = large_arg_array_.get();
65 }
66 }
67 }
68
GetArray()69 uint32_t* GetArray() {
70 return arg_array_;
71 }
72
GetNumBytes()73 uint32_t GetNumBytes() {
74 return num_bytes_;
75 }
76
Append(uint32_t value)77 void Append(uint32_t value) {
78 arg_array_[num_bytes_ / 4] = value;
79 num_bytes_ += 4;
80 }
81
Append(ObjPtr<mirror::Object> obj)82 void Append(ObjPtr<mirror::Object> obj) REQUIRES_SHARED(Locks::mutator_lock_) {
83 Append(StackReference<mirror::Object>::FromMirrorPtr(obj.Ptr()).AsVRegValue());
84 }
85
AppendWide(uint64_t value)86 void AppendWide(uint64_t value) {
87 arg_array_[num_bytes_ / 4] = value;
88 arg_array_[(num_bytes_ / 4) + 1] = value >> 32;
89 num_bytes_ += 8;
90 }
91
AppendFloat(float value)92 void AppendFloat(float value) {
93 jvalue jv;
94 jv.f = value;
95 Append(jv.i);
96 }
97
AppendDouble(double value)98 void AppendDouble(double value) {
99 jvalue jv;
100 jv.d = value;
101 AppendWide(jv.j);
102 }
103
BuildArgArrayFromVarArgs(const ScopedObjectAccessAlreadyRunnable & soa,ObjPtr<mirror::Object> receiver,va_list ap)104 void BuildArgArrayFromVarArgs(const ScopedObjectAccessAlreadyRunnable& soa,
105 ObjPtr<mirror::Object> receiver,
106 va_list ap)
107 REQUIRES_SHARED(Locks::mutator_lock_) {
108 // Set receiver if non-null (method is not static)
109 if (receiver != nullptr) {
110 Append(receiver);
111 }
112 for (size_t i = 1; i < shorty_len_; ++i) {
113 switch (shorty_[i]) {
114 case 'Z':
115 case 'B':
116 case 'C':
117 case 'S':
118 case 'I':
119 Append(va_arg(ap, jint));
120 break;
121 case 'F':
122 AppendFloat(va_arg(ap, jdouble));
123 break;
124 case 'L':
125 Append(soa.Decode<mirror::Object>(va_arg(ap, jobject)));
126 break;
127 case 'D':
128 AppendDouble(va_arg(ap, jdouble));
129 break;
130 case 'J':
131 AppendWide(va_arg(ap, jlong));
132 break;
133 #ifndef NDEBUG
134 default:
135 LOG(FATAL) << "Unexpected shorty character: " << shorty_[i];
136 #endif
137 }
138 }
139 }
140
BuildArgArrayFromJValues(const ScopedObjectAccessAlreadyRunnable & soa,ObjPtr<mirror::Object> receiver,const jvalue * args)141 void BuildArgArrayFromJValues(const ScopedObjectAccessAlreadyRunnable& soa,
142 ObjPtr<mirror::Object> receiver, const jvalue* args)
143 REQUIRES_SHARED(Locks::mutator_lock_) {
144 // Set receiver if non-null (method is not static)
145 if (receiver != nullptr) {
146 Append(receiver);
147 }
148 for (size_t i = 1, args_offset = 0; i < shorty_len_; ++i, ++args_offset) {
149 switch (shorty_[i]) {
150 case 'Z':
151 Append(args[args_offset].z);
152 break;
153 case 'B':
154 Append(args[args_offset].b);
155 break;
156 case 'C':
157 Append(args[args_offset].c);
158 break;
159 case 'S':
160 Append(args[args_offset].s);
161 break;
162 case 'I':
163 FALLTHROUGH_INTENDED;
164 case 'F':
165 Append(args[args_offset].i);
166 break;
167 case 'L':
168 Append(soa.Decode<mirror::Object>(args[args_offset].l));
169 break;
170 case 'D':
171 FALLTHROUGH_INTENDED;
172 case 'J':
173 AppendWide(args[args_offset].j);
174 break;
175 #ifndef NDEBUG
176 default:
177 LOG(FATAL) << "Unexpected shorty character: " << shorty_[i];
178 #endif
179 }
180 }
181 }
182
BuildArgArrayFromFrame(ShadowFrame * shadow_frame,uint32_t arg_offset)183 void BuildArgArrayFromFrame(ShadowFrame* shadow_frame, uint32_t arg_offset)
184 REQUIRES_SHARED(Locks::mutator_lock_) {
185 // Set receiver if non-null (method is not static)
186 size_t cur_arg = arg_offset;
187 if (!shadow_frame->GetMethod()->IsStatic()) {
188 Append(shadow_frame->GetVReg(cur_arg));
189 cur_arg++;
190 }
191 for (size_t i = 1; i < shorty_len_; ++i) {
192 switch (shorty_[i]) {
193 case 'Z':
194 case 'B':
195 case 'C':
196 case 'S':
197 case 'I':
198 case 'F':
199 case 'L':
200 Append(shadow_frame->GetVReg(cur_arg));
201 cur_arg++;
202 break;
203 case 'D':
204 case 'J':
205 AppendWide(shadow_frame->GetVRegLong(cur_arg));
206 cur_arg++;
207 cur_arg++;
208 break;
209 #ifndef NDEBUG
210 default:
211 LOG(FATAL) << "Unexpected shorty character: " << shorty_[i];
212 #endif
213 }
214 }
215 }
216
ThrowIllegalPrimitiveArgumentException(const char * expected,const char * found_descriptor)217 static void ThrowIllegalPrimitiveArgumentException(const char* expected,
218 const char* found_descriptor)
219 REQUIRES_SHARED(Locks::mutator_lock_) {
220 ThrowIllegalArgumentException(
221 StringPrintf("Invalid primitive conversion from %s to %s", expected,
222 PrettyDescriptor(found_descriptor).c_str()).c_str());
223 }
224
BuildArgArrayFromObjectArray(ObjPtr<mirror::Object> receiver,ObjPtr<mirror::ObjectArray<mirror::Object>> raw_args,ArtMethod * m,Thread * self)225 bool BuildArgArrayFromObjectArray(ObjPtr<mirror::Object> receiver,
226 ObjPtr<mirror::ObjectArray<mirror::Object>> raw_args,
227 ArtMethod* m,
228 Thread* self)
229 REQUIRES_SHARED(Locks::mutator_lock_) {
230 const dex::TypeList* classes = m->GetParameterTypeList();
231 // Set receiver if non-null (method is not static)
232 if (receiver != nullptr) {
233 Append(receiver);
234 }
235 StackHandleScope<2> hs(self);
236 MutableHandle<mirror::Object> arg(hs.NewHandle<mirror::Object>(nullptr));
237 Handle<mirror::ObjectArray<mirror::Object>> args(
238 hs.NewHandle<mirror::ObjectArray<mirror::Object>>(raw_args));
239 for (size_t i = 1, args_offset = 0; i < shorty_len_; ++i, ++args_offset) {
240 arg.Assign(args->Get(args_offset));
241 if (((shorty_[i] == 'L') && (arg != nullptr)) ||
242 ((arg == nullptr && shorty_[i] != 'L'))) {
243 // TODO: The method's parameter's type must have been previously resolved, yet
244 // we've seen cases where it's not b/34440020.
245 ObjPtr<mirror::Class> dst_class(
246 m->ResolveClassFromTypeIndex(classes->GetTypeItem(args_offset).type_idx_));
247 if (dst_class == nullptr) {
248 CHECK(self->IsExceptionPending());
249 return false;
250 }
251 if (UNLIKELY(arg == nullptr || !arg->InstanceOf(dst_class))) {
252 ThrowIllegalArgumentException(
253 StringPrintf("method %s argument %zd has type %s, got %s",
254 m->PrettyMethod(false).c_str(),
255 args_offset + 1, // Humans don't count from 0.
256 mirror::Class::PrettyDescriptor(dst_class).c_str(),
257 mirror::Object::PrettyTypeOf(arg.Get()).c_str()).c_str());
258 return false;
259 }
260 }
261
262 #define DO_FIRST_ARG(match_descriptor, get_fn, append) { \
263 if (LIKELY(arg != nullptr && \
264 arg->GetClass()->DescriptorEquals(match_descriptor))) { \
265 ArtField* primitive_field = arg->GetClass()->GetInstanceField(0); \
266 append(primitive_field-> get_fn(arg.Get()));
267
268 #define DO_ARG(match_descriptor, get_fn, append) \
269 } else if (LIKELY(arg != nullptr && \
270 arg->GetClass<>()->DescriptorEquals(match_descriptor))) { \
271 ArtField* primitive_field = arg->GetClass()->GetInstanceField(0); \
272 append(primitive_field-> get_fn(arg.Get()));
273
274 #define DO_FAIL(expected) \
275 } else { \
276 if (arg->GetClass<>()->IsPrimitive()) { \
277 std::string temp; \
278 ThrowIllegalPrimitiveArgumentException(expected, \
279 arg->GetClass<>()->GetDescriptor(&temp)); \
280 } else { \
281 ThrowIllegalArgumentException(\
282 StringPrintf("method %s argument %zd has type %s, got %s", \
283 ArtMethod::PrettyMethod(m, false).c_str(), \
284 args_offset + 1, \
285 expected, \
286 mirror::Object::PrettyTypeOf(arg.Get()).c_str()).c_str()); \
287 } \
288 return false; \
289 } }
290
291 switch (shorty_[i]) {
292 case 'L':
293 Append(arg.Get());
294 break;
295 case 'Z':
296 DO_FIRST_ARG("Ljava/lang/Boolean;", GetBoolean, Append)
297 DO_FAIL("boolean")
298 break;
299 case 'B':
300 DO_FIRST_ARG("Ljava/lang/Byte;", GetByte, Append)
301 DO_FAIL("byte")
302 break;
303 case 'C':
304 DO_FIRST_ARG("Ljava/lang/Character;", GetChar, Append)
305 DO_FAIL("char")
306 break;
307 case 'S':
308 DO_FIRST_ARG("Ljava/lang/Short;", GetShort, Append)
309 DO_ARG("Ljava/lang/Byte;", GetByte, Append)
310 DO_FAIL("short")
311 break;
312 case 'I':
313 DO_FIRST_ARG("Ljava/lang/Integer;", GetInt, Append)
314 DO_ARG("Ljava/lang/Character;", GetChar, Append)
315 DO_ARG("Ljava/lang/Short;", GetShort, Append)
316 DO_ARG("Ljava/lang/Byte;", GetByte, Append)
317 DO_FAIL("int")
318 break;
319 case 'J':
320 DO_FIRST_ARG("Ljava/lang/Long;", GetLong, AppendWide)
321 DO_ARG("Ljava/lang/Integer;", GetInt, AppendWide)
322 DO_ARG("Ljava/lang/Character;", GetChar, AppendWide)
323 DO_ARG("Ljava/lang/Short;", GetShort, AppendWide)
324 DO_ARG("Ljava/lang/Byte;", GetByte, AppendWide)
325 DO_FAIL("long")
326 break;
327 case 'F':
328 DO_FIRST_ARG("Ljava/lang/Float;", GetFloat, AppendFloat)
329 DO_ARG("Ljava/lang/Long;", GetLong, AppendFloat)
330 DO_ARG("Ljava/lang/Integer;", GetInt, AppendFloat)
331 DO_ARG("Ljava/lang/Character;", GetChar, AppendFloat)
332 DO_ARG("Ljava/lang/Short;", GetShort, AppendFloat)
333 DO_ARG("Ljava/lang/Byte;", GetByte, AppendFloat)
334 DO_FAIL("float")
335 break;
336 case 'D':
337 DO_FIRST_ARG("Ljava/lang/Double;", GetDouble, AppendDouble)
338 DO_ARG("Ljava/lang/Float;", GetFloat, AppendDouble)
339 DO_ARG("Ljava/lang/Long;", GetLong, AppendDouble)
340 DO_ARG("Ljava/lang/Integer;", GetInt, AppendDouble)
341 DO_ARG("Ljava/lang/Character;", GetChar, AppendDouble)
342 DO_ARG("Ljava/lang/Short;", GetShort, AppendDouble)
343 DO_ARG("Ljava/lang/Byte;", GetByte, AppendDouble)
344 DO_FAIL("double")
345 break;
346 #ifndef NDEBUG
347 default:
348 LOG(FATAL) << "Unexpected shorty character: " << shorty_[i];
349 UNREACHABLE();
350 #endif
351 }
352 #undef DO_FIRST_ARG
353 #undef DO_ARG
354 #undef DO_FAIL
355 }
356 return true;
357 }
358
359 private:
360 enum { kSmallArgArraySize = 16 };
361 const char* const shorty_;
362 const uint32_t shorty_len_;
363 uint32_t num_bytes_;
364 uint32_t* arg_array_;
365 uint32_t small_arg_array_[kSmallArgArraySize];
366 std::unique_ptr<uint32_t[]> large_arg_array_;
367 };
368
CheckMethodArguments(JavaVMExt * vm,ArtMethod * m,uint32_t * args)369 void CheckMethodArguments(JavaVMExt* vm, ArtMethod* m, uint32_t* args)
370 REQUIRES_SHARED(Locks::mutator_lock_) {
371 const dex::TypeList* params = m->GetParameterTypeList();
372 if (params == nullptr) {
373 return; // No arguments so nothing to check.
374 }
375 uint32_t offset = 0;
376 uint32_t num_params = params->Size();
377 size_t error_count = 0;
378 if (!m->IsStatic()) {
379 offset = 1;
380 }
381 // TODO: If args contain object references, it may cause problems.
382 Thread* const self = Thread::Current();
383 for (uint32_t i = 0; i < num_params; i++) {
384 dex::TypeIndex type_idx = params->GetTypeItem(i).type_idx_;
385 ObjPtr<mirror::Class> param_type(m->ResolveClassFromTypeIndex(type_idx));
386 if (param_type == nullptr) {
387 CHECK(self->IsExceptionPending());
388 LOG(ERROR) << "Internal error: unresolvable type for argument type in JNI invoke: "
389 << m->GetTypeDescriptorFromTypeIdx(type_idx) << "\n"
390 << self->GetException()->Dump();
391 self->ClearException();
392 ++error_count;
393 } else if (!param_type->IsPrimitive()) {
394 // TODO: There is a compaction bug here since GetClassFromTypeIdx can cause thread suspension,
395 // this is a hard to fix problem since the args can contain Object*, we need to save and
396 // restore them by using a visitor similar to the ones used in the trampoline entrypoints.
397 ObjPtr<mirror::Object> argument =
398 (reinterpret_cast<StackReference<mirror::Object>*>(&args[i + offset]))->AsMirrorPtr();
399 if (argument != nullptr && !argument->InstanceOf(param_type)) {
400 LOG(ERROR) << "JNI ERROR (app bug): attempt to pass an instance of "
401 << argument->PrettyTypeOf() << " as argument " << (i + 1)
402 << " to " << m->PrettyMethod();
403 ++error_count;
404 }
405 } else if (param_type->IsPrimitiveLong() || param_type->IsPrimitiveDouble()) {
406 offset++;
407 } else {
408 int32_t arg = static_cast<int32_t>(args[i + offset]);
409 if (param_type->IsPrimitiveBoolean()) {
410 if (arg != JNI_TRUE && arg != JNI_FALSE) {
411 LOG(ERROR) << "JNI ERROR (app bug): expected jboolean (0/1) but got value of "
412 << arg << " as argument " << (i + 1) << " to " << m->PrettyMethod();
413 ++error_count;
414 }
415 } else if (param_type->IsPrimitiveByte()) {
416 if (arg < -128 || arg > 127) {
417 LOG(ERROR) << "JNI ERROR (app bug): expected jbyte but got value of "
418 << arg << " as argument " << (i + 1) << " to " << m->PrettyMethod();
419 ++error_count;
420 }
421 } else if (param_type->IsPrimitiveChar()) {
422 if (args[i + offset] > 0xFFFF) {
423 LOG(ERROR) << "JNI ERROR (app bug): expected jchar but got value of "
424 << arg << " as argument " << (i + 1) << " to " << m->PrettyMethod();
425 ++error_count;
426 }
427 } else if (param_type->IsPrimitiveShort()) {
428 if (arg < -32768 || arg > 0x7FFF) {
429 LOG(ERROR) << "JNI ERROR (app bug): expected jshort but got value of "
430 << arg << " as argument " << (i + 1) << " to " << m->PrettyMethod();
431 ++error_count;
432 }
433 }
434 }
435 }
436 if (UNLIKELY(error_count > 0)) {
437 // TODO: pass the JNI function name (such as "CallVoidMethodV") through so we can call JniAbort
438 // with an argument.
439 vm->JniAbortF(nullptr, "bad arguments passed to %s (see above for details)",
440 m->PrettyMethod().c_str());
441 }
442 }
443
FindVirtualMethod(ObjPtr<mirror::Object> receiver,ArtMethod * method)444 ArtMethod* FindVirtualMethod(ObjPtr<mirror::Object> receiver, ArtMethod* method)
445 REQUIRES_SHARED(Locks::mutator_lock_) {
446 return receiver->GetClass()->FindVirtualMethodForVirtualOrInterface(method, kRuntimePointerSize);
447 }
448
449
InvokeWithArgArray(const ScopedObjectAccessAlreadyRunnable & soa,ArtMethod * method,ArgArray * arg_array,JValue * result,const char * shorty)450 void InvokeWithArgArray(const ScopedObjectAccessAlreadyRunnable& soa,
451 ArtMethod* method, ArgArray* arg_array, JValue* result,
452 const char* shorty)
453 REQUIRES_SHARED(Locks::mutator_lock_) {
454 uint32_t* args = arg_array->GetArray();
455 if (UNLIKELY(soa.Env()->IsCheckJniEnabled())) {
456 CheckMethodArguments(soa.Vm(), method->GetInterfaceMethodIfProxy(kRuntimePointerSize), args);
457 }
458 method->Invoke(soa.Self(), args, arg_array->GetNumBytes(), result, shorty);
459 }
460
461 ALWAYS_INLINE
CheckArgsForInvokeMethod(ArtMethod * np_method,ObjPtr<mirror::ObjectArray<mirror::Object>> objects)462 bool CheckArgsForInvokeMethod(ArtMethod* np_method,
463 ObjPtr<mirror::ObjectArray<mirror::Object>> objects)
464 REQUIRES_SHARED(Locks::mutator_lock_) {
465 const dex::TypeList* classes = np_method->GetParameterTypeList();
466 uint32_t classes_size = (classes == nullptr) ? 0 : classes->Size();
467 uint32_t arg_count = (objects == nullptr) ? 0 : objects->GetLength();
468 if (UNLIKELY(arg_count != classes_size)) {
469 ThrowIllegalArgumentException(StringPrintf("Wrong number of arguments; expected %d, got %d",
470 classes_size, arg_count).c_str());
471 return false;
472 }
473 return true;
474 }
475
476 ALWAYS_INLINE
InvokeMethodImpl(const ScopedObjectAccessAlreadyRunnable & soa,ArtMethod * m,ArtMethod * np_method,ObjPtr<mirror::Object> receiver,ObjPtr<mirror::ObjectArray<mirror::Object>> objects,const char ** shorty,JValue * result)477 bool InvokeMethodImpl(const ScopedObjectAccessAlreadyRunnable& soa,
478 ArtMethod* m,
479 ArtMethod* np_method,
480 ObjPtr<mirror::Object> receiver,
481 ObjPtr<mirror::ObjectArray<mirror::Object>> objects,
482 const char** shorty,
483 JValue* result) REQUIRES_SHARED(Locks::mutator_lock_) {
484 // Invoke the method.
485 uint32_t shorty_len = 0;
486 *shorty = np_method->GetShorty(&shorty_len);
487 ArgArray arg_array(*shorty, shorty_len);
488 if (!arg_array.BuildArgArrayFromObjectArray(receiver, objects, np_method, soa.Self())) {
489 CHECK(soa.Self()->IsExceptionPending());
490 return false;
491 }
492
493 InvokeWithArgArray(soa, m, &arg_array, result, *shorty);
494
495 // Wrap any exception with "Ljava/lang/reflect/InvocationTargetException;" and return early.
496 if (soa.Self()->IsExceptionPending()) {
497 // If we get another exception when we are trying to wrap, then just use that instead.
498 ScopedLocalRef<jthrowable> th(soa.Env(), soa.Env()->ExceptionOccurred());
499 soa.Self()->ClearException();
500 jobject exception_instance =
501 soa.Env()->NewObject(WellKnownClasses::java_lang_reflect_InvocationTargetException,
502 WellKnownClasses::java_lang_reflect_InvocationTargetException_init,
503 th.get());
504 if (exception_instance == nullptr) {
505 soa.Self()->AssertPendingException();
506 return false;
507 }
508 soa.Env()->Throw(reinterpret_cast<jthrowable>(exception_instance));
509 return false;
510 }
511
512 return true;
513 }
514
515 } // anonymous namespace
516
517 template <>
InvokeWithVarArgs(const ScopedObjectAccessAlreadyRunnable & soa,jobject obj,ArtMethod * method,va_list args)518 JValue InvokeWithVarArgs(const ScopedObjectAccessAlreadyRunnable& soa,
519 jobject obj,
520 ArtMethod* method,
521 va_list args) REQUIRES_SHARED(Locks::mutator_lock_) {
522 // We want to make sure that the stack is not within a small distance from the
523 // protected region in case we are calling into a leaf function whose stack
524 // check has been elided.
525 if (UNLIKELY(__builtin_frame_address(0) < soa.Self()->GetStackEnd())) {
526 ThrowStackOverflowError(soa.Self());
527 return JValue();
528 }
529 bool is_string_init = method->GetDeclaringClass()->IsStringClass() && method->IsConstructor();
530 if (is_string_init) {
531 // Replace calls to String.<init> with equivalent StringFactory call.
532 method = WellKnownClasses::StringInitToStringFactory(method);
533 }
534 ObjPtr<mirror::Object> receiver = method->IsStatic() ? nullptr : soa.Decode<mirror::Object>(obj);
535 uint32_t shorty_len = 0;
536 const char* shorty =
537 method->GetInterfaceMethodIfProxy(kRuntimePointerSize)->GetShorty(&shorty_len);
538 JValue result;
539 ArgArray arg_array(shorty, shorty_len);
540 arg_array.BuildArgArrayFromVarArgs(soa, receiver, args);
541 InvokeWithArgArray(soa, method, &arg_array, &result, shorty);
542 if (is_string_init) {
543 // For string init, remap original receiver to StringFactory result.
544 UpdateReference(soa.Self(), obj, result.GetL());
545 }
546 return result;
547 }
548
549 template <>
InvokeWithVarArgs(const ScopedObjectAccessAlreadyRunnable & soa,jobject obj,jmethodID mid,va_list args)550 JValue InvokeWithVarArgs(const ScopedObjectAccessAlreadyRunnable& soa,
551 jobject obj,
552 jmethodID mid,
553 va_list args) REQUIRES_SHARED(Locks::mutator_lock_) {
554 DCHECK(mid != nullptr) << "Called with null jmethodID";
555 return InvokeWithVarArgs(soa, obj, jni::DecodeArtMethod(mid), args);
556 }
557
558 template <>
InvokeWithJValues(const ScopedObjectAccessAlreadyRunnable & soa,jobject obj,ArtMethod * method,const jvalue * args)559 JValue InvokeWithJValues(const ScopedObjectAccessAlreadyRunnable& soa,
560 jobject obj,
561 ArtMethod* method,
562 const jvalue* args) {
563 // We want to make sure that the stack is not within a small distance from the
564 // protected region in case we are calling into a leaf function whose stack
565 // check has been elided.
566 if (UNLIKELY(__builtin_frame_address(0) < soa.Self()->GetStackEnd())) {
567 ThrowStackOverflowError(soa.Self());
568 return JValue();
569 }
570 bool is_string_init = method->GetDeclaringClass()->IsStringClass() && method->IsConstructor();
571 if (is_string_init) {
572 // Replace calls to String.<init> with equivalent StringFactory call.
573 method = WellKnownClasses::StringInitToStringFactory(method);
574 }
575 ObjPtr<mirror::Object> receiver = method->IsStatic() ? nullptr : soa.Decode<mirror::Object>(obj);
576 uint32_t shorty_len = 0;
577 const char* shorty =
578 method->GetInterfaceMethodIfProxy(kRuntimePointerSize)->GetShorty(&shorty_len);
579 JValue result;
580 ArgArray arg_array(shorty, shorty_len);
581 arg_array.BuildArgArrayFromJValues(soa, receiver, args);
582 InvokeWithArgArray(soa, method, &arg_array, &result, shorty);
583 if (is_string_init) {
584 // For string init, remap original receiver to StringFactory result.
585 UpdateReference(soa.Self(), obj, result.GetL());
586 }
587 return result;
588 }
589
590 template <>
InvokeWithJValues(const ScopedObjectAccessAlreadyRunnable & soa,jobject obj,jmethodID mid,const jvalue * args)591 JValue InvokeWithJValues(const ScopedObjectAccessAlreadyRunnable& soa,
592 jobject obj,
593 jmethodID mid,
594 const jvalue* args) {
595 DCHECK(mid != nullptr) << "Called with null jmethodID";
596 return InvokeWithJValues(soa, obj, jni::DecodeArtMethod(mid), args);
597 }
598
599 template <>
InvokeVirtualOrInterfaceWithJValues(const ScopedObjectAccessAlreadyRunnable & soa,jobject obj,ArtMethod * interface_method,const jvalue * args)600 JValue InvokeVirtualOrInterfaceWithJValues(const ScopedObjectAccessAlreadyRunnable& soa,
601 jobject obj,
602 ArtMethod* interface_method,
603 const jvalue* args) {
604 // We want to make sure that the stack is not within a small distance from the
605 // protected region in case we are calling into a leaf function whose stack
606 // check has been elided.
607 if (UNLIKELY(__builtin_frame_address(0) < soa.Self()->GetStackEnd())) {
608 ThrowStackOverflowError(soa.Self());
609 return JValue();
610 }
611 ObjPtr<mirror::Object> receiver = soa.Decode<mirror::Object>(obj);
612 ArtMethod* method = FindVirtualMethod(receiver, interface_method);
613 bool is_string_init = method->GetDeclaringClass()->IsStringClass() && method->IsConstructor();
614 if (is_string_init) {
615 // Replace calls to String.<init> with equivalent StringFactory call.
616 method = WellKnownClasses::StringInitToStringFactory(method);
617 receiver = nullptr;
618 }
619 uint32_t shorty_len = 0;
620 const char* shorty =
621 method->GetInterfaceMethodIfProxy(kRuntimePointerSize)->GetShorty(&shorty_len);
622 JValue result;
623 ArgArray arg_array(shorty, shorty_len);
624 arg_array.BuildArgArrayFromJValues(soa, receiver, args);
625 InvokeWithArgArray(soa, method, &arg_array, &result, shorty);
626 if (is_string_init) {
627 // For string init, remap original receiver to StringFactory result.
628 UpdateReference(soa.Self(), obj, result.GetL());
629 }
630 return result;
631 }
632
633 template <>
InvokeVirtualOrInterfaceWithJValues(const ScopedObjectAccessAlreadyRunnable & soa,jobject obj,jmethodID mid,const jvalue * args)634 JValue InvokeVirtualOrInterfaceWithJValues(const ScopedObjectAccessAlreadyRunnable& soa,
635 jobject obj,
636 jmethodID mid,
637 const jvalue* args) {
638 DCHECK(mid != nullptr) << "Called with null jmethodID";
639 return InvokeVirtualOrInterfaceWithJValues(soa, obj, jni::DecodeArtMethod(mid), args);
640 }
641
642 template <>
InvokeVirtualOrInterfaceWithVarArgs(const ScopedObjectAccessAlreadyRunnable & soa,jobject obj,ArtMethod * interface_method,va_list args)643 JValue InvokeVirtualOrInterfaceWithVarArgs(const ScopedObjectAccessAlreadyRunnable& soa,
644 jobject obj,
645 ArtMethod* interface_method,
646 va_list args) {
647 // We want to make sure that the stack is not within a small distance from the
648 // protected region in case we are calling into a leaf function whose stack
649 // check has been elided.
650 if (UNLIKELY(__builtin_frame_address(0) < soa.Self()->GetStackEnd())) {
651 ThrowStackOverflowError(soa.Self());
652 return JValue();
653 }
654
655 ObjPtr<mirror::Object> receiver = soa.Decode<mirror::Object>(obj);
656 ArtMethod* method = FindVirtualMethod(receiver, interface_method);
657 bool is_string_init = method->GetDeclaringClass()->IsStringClass() && method->IsConstructor();
658 if (is_string_init) {
659 // Replace calls to String.<init> with equivalent StringFactory call.
660 method = WellKnownClasses::StringInitToStringFactory(method);
661 receiver = nullptr;
662 }
663 uint32_t shorty_len = 0;
664 const char* shorty =
665 method->GetInterfaceMethodIfProxy(kRuntimePointerSize)->GetShorty(&shorty_len);
666 JValue result;
667 ArgArray arg_array(shorty, shorty_len);
668 arg_array.BuildArgArrayFromVarArgs(soa, receiver, args);
669 InvokeWithArgArray(soa, method, &arg_array, &result, shorty);
670 if (is_string_init) {
671 // For string init, remap original receiver to StringFactory result.
672 UpdateReference(soa.Self(), obj, result.GetL());
673 }
674 return result;
675 }
676
677 template <>
InvokeVirtualOrInterfaceWithVarArgs(const ScopedObjectAccessAlreadyRunnable & soa,jobject obj,jmethodID mid,va_list args)678 JValue InvokeVirtualOrInterfaceWithVarArgs(const ScopedObjectAccessAlreadyRunnable& soa,
679 jobject obj,
680 jmethodID mid,
681 va_list args) {
682 DCHECK(mid != nullptr) << "Called with null jmethodID";
683 return InvokeVirtualOrInterfaceWithVarArgs(soa, obj, jni::DecodeArtMethod(mid), args);
684 }
685
InvokeMethod(const ScopedObjectAccessAlreadyRunnable & soa,jobject javaMethod,jobject javaReceiver,jobject javaArgs,size_t num_frames)686 jobject InvokeMethod(const ScopedObjectAccessAlreadyRunnable& soa, jobject javaMethod,
687 jobject javaReceiver, jobject javaArgs, size_t num_frames) {
688 // We want to make sure that the stack is not within a small distance from the
689 // protected region in case we are calling into a leaf function whose stack
690 // check has been elided.
691 if (UNLIKELY(__builtin_frame_address(0) <
692 soa.Self()->GetStackEndForInterpreter(true))) {
693 ThrowStackOverflowError(soa.Self());
694 return nullptr;
695 }
696
697 ObjPtr<mirror::Executable> executable = soa.Decode<mirror::Executable>(javaMethod);
698 const bool accessible = executable->IsAccessible();
699 ArtMethod* m = executable->GetArtMethod();
700
701 ObjPtr<mirror::Class> declaring_class = m->GetDeclaringClass();
702 if (UNLIKELY(!declaring_class->IsVisiblyInitialized())) {
703 Thread* self = soa.Self();
704 StackHandleScope<1> hs(self);
705 HandleWrapperObjPtr<mirror::Class> h_class(hs.NewHandleWrapper(&declaring_class));
706 if (UNLIKELY(!Runtime::Current()->GetClassLinker()->EnsureInitialized(
707 self, h_class, /*can_init_fields=*/ true, /*can_init_parents=*/ true))) {
708 DCHECK(self->IsExceptionPending());
709 return nullptr;
710 }
711 DCHECK(h_class->IsInitializing());
712 }
713
714 ObjPtr<mirror::Object> receiver;
715 if (!m->IsStatic()) {
716 // Replace calls to String.<init> with equivalent StringFactory call.
717 if (declaring_class->IsStringClass() && m->IsConstructor()) {
718 m = WellKnownClasses::StringInitToStringFactory(m);
719 CHECK(javaReceiver == nullptr);
720 } else {
721 // Check that the receiver is non-null and an instance of the field's declaring class.
722 receiver = soa.Decode<mirror::Object>(javaReceiver);
723 if (!VerifyObjectIsClass(receiver, declaring_class)) {
724 return nullptr;
725 }
726
727 // Find the actual implementation of the virtual method.
728 m = receiver->GetClass()->FindVirtualMethodForVirtualOrInterface(m, kRuntimePointerSize);
729 }
730 }
731
732 // Get our arrays of arguments and their types, and check they're the same size.
733 ObjPtr<mirror::ObjectArray<mirror::Object>> objects =
734 soa.Decode<mirror::ObjectArray<mirror::Object>>(javaArgs);
735 auto* np_method = m->GetInterfaceMethodIfProxy(kRuntimePointerSize);
736 if (!CheckArgsForInvokeMethod(np_method, objects)) {
737 return nullptr;
738 }
739
740 // If method is not set to be accessible, verify it can be accessed by the caller.
741 ObjPtr<mirror::Class> calling_class;
742 if (!accessible && !VerifyAccess(soa.Self(),
743 receiver,
744 declaring_class,
745 m->GetAccessFlags(),
746 &calling_class,
747 num_frames)) {
748 ThrowIllegalAccessException(
749 StringPrintf("Class %s cannot access %s method %s of class %s",
750 calling_class == nullptr ? "null" : calling_class->PrettyClass().c_str(),
751 PrettyJavaAccessFlags(m->GetAccessFlags()).c_str(),
752 m->PrettyMethod().c_str(),
753 m->GetDeclaringClass() == nullptr ? "null" :
754 m->GetDeclaringClass()->PrettyClass().c_str()).c_str());
755 return nullptr;
756 }
757
758 // Invoke the method.
759 JValue result;
760 const char* shorty;
761 if (!InvokeMethodImpl(soa, m, np_method, receiver, objects, &shorty, &result)) {
762 return nullptr;
763 }
764 return soa.AddLocalReference<jobject>(BoxPrimitive(Primitive::GetType(shorty[0]), result));
765 }
766
InvokeConstructor(const ScopedObjectAccessAlreadyRunnable & soa,ArtMethod * constructor,ObjPtr<mirror::Object> receiver,jobject javaArgs)767 void InvokeConstructor(const ScopedObjectAccessAlreadyRunnable& soa,
768 ArtMethod* constructor,
769 ObjPtr<mirror::Object> receiver,
770 jobject javaArgs) {
771 // We want to make sure that the stack is not within a small distance from the
772 // protected region in case we are calling into a leaf function whose stack
773 // check has been elided.
774 if (UNLIKELY(__builtin_frame_address(0) < soa.Self()->GetStackEndForInterpreter(true))) {
775 ThrowStackOverflowError(soa.Self());
776 return;
777 }
778
779 if (kIsDebugBuild) {
780 CHECK(constructor->IsConstructor());
781
782 ObjPtr<mirror::Class> declaring_class = constructor->GetDeclaringClass();
783 CHECK(declaring_class->IsInitializing());
784
785 // Calls to String.<init> should have been repplaced with with equivalent StringFactory calls.
786 CHECK(!declaring_class->IsStringClass());
787
788 // Check that the receiver is non-null and an instance of the field's declaring class.
789 CHECK(receiver != nullptr);
790 CHECK(VerifyObjectIsClass(receiver, declaring_class));
791 CHECK_EQ(constructor,
792 receiver->GetClass()->FindVirtualMethodForVirtualOrInterface(constructor,
793 kRuntimePointerSize));
794 }
795
796 // Get our arrays of arguments and their types, and check they're the same size.
797 ObjPtr<mirror::ObjectArray<mirror::Object>> objects =
798 soa.Decode<mirror::ObjectArray<mirror::Object>>(javaArgs);
799 ArtMethod* np_method = constructor->GetInterfaceMethodIfProxy(kRuntimePointerSize);
800 if (!CheckArgsForInvokeMethod(np_method, objects)) {
801 return;
802 }
803
804 // Invoke the constructor.
805 JValue result;
806 const char* shorty;
807 InvokeMethodImpl(soa, constructor, np_method, receiver, objects, &shorty, &result);
808 }
809
BoxPrimitive(Primitive::Type src_class,const JValue & value)810 ObjPtr<mirror::Object> BoxPrimitive(Primitive::Type src_class, const JValue& value) {
811 if (src_class == Primitive::kPrimNot) {
812 return value.GetL();
813 }
814 if (src_class == Primitive::kPrimVoid) {
815 // There's no such thing as a void field, and void methods invoked via reflection return null.
816 return nullptr;
817 }
818
819 jmethodID m = nullptr;
820 const char* shorty;
821 switch (src_class) {
822 case Primitive::kPrimBoolean:
823 m = WellKnownClasses::java_lang_Boolean_valueOf;
824 shorty = "LZ";
825 break;
826 case Primitive::kPrimByte:
827 m = WellKnownClasses::java_lang_Byte_valueOf;
828 shorty = "LB";
829 break;
830 case Primitive::kPrimChar:
831 m = WellKnownClasses::java_lang_Character_valueOf;
832 shorty = "LC";
833 break;
834 case Primitive::kPrimDouble:
835 m = WellKnownClasses::java_lang_Double_valueOf;
836 shorty = "LD";
837 break;
838 case Primitive::kPrimFloat:
839 m = WellKnownClasses::java_lang_Float_valueOf;
840 shorty = "LF";
841 break;
842 case Primitive::kPrimInt:
843 m = WellKnownClasses::java_lang_Integer_valueOf;
844 shorty = "LI";
845 break;
846 case Primitive::kPrimLong:
847 m = WellKnownClasses::java_lang_Long_valueOf;
848 shorty = "LJ";
849 break;
850 case Primitive::kPrimShort:
851 m = WellKnownClasses::java_lang_Short_valueOf;
852 shorty = "LS";
853 break;
854 default:
855 LOG(FATAL) << static_cast<int>(src_class);
856 shorty = nullptr;
857 }
858
859 ScopedObjectAccessUnchecked soa(Thread::Current());
860 DCHECK_EQ(soa.Self()->GetState(), kRunnable);
861
862 ArgArray arg_array(shorty, 2);
863 JValue result;
864 if (src_class == Primitive::kPrimDouble || src_class == Primitive::kPrimLong) {
865 arg_array.AppendWide(value.GetJ());
866 } else {
867 arg_array.Append(value.GetI());
868 }
869
870 jni::DecodeArtMethod(m)->Invoke(soa.Self(),
871 arg_array.GetArray(),
872 arg_array.GetNumBytes(),
873 &result,
874 shorty);
875 return result.GetL();
876 }
877
UnboxingFailureKind(ArtField * f)878 static std::string UnboxingFailureKind(ArtField* f)
879 REQUIRES_SHARED(Locks::mutator_lock_) {
880 if (f != nullptr) {
881 return "field " + f->PrettyField(false);
882 }
883 return "result";
884 }
885
UnboxPrimitive(ObjPtr<mirror::Object> o,ObjPtr<mirror::Class> dst_class,ArtField * f,JValue * unboxed_value)886 static bool UnboxPrimitive(ObjPtr<mirror::Object> o,
887 ObjPtr<mirror::Class> dst_class,
888 ArtField* f,
889 JValue* unboxed_value)
890 REQUIRES_SHARED(Locks::mutator_lock_) {
891 bool unbox_for_result = (f == nullptr);
892 if (!dst_class->IsPrimitive()) {
893 if (UNLIKELY(o != nullptr && !o->InstanceOf(dst_class))) {
894 if (!unbox_for_result) {
895 ThrowIllegalArgumentException(
896 StringPrintf("%s has type %s, got %s",
897 UnboxingFailureKind(f).c_str(),
898 dst_class->PrettyDescriptor().c_str(),
899 o->PrettyTypeOf().c_str()).c_str());
900 } else {
901 ThrowClassCastException(
902 StringPrintf("Couldn't convert result of type %s to %s",
903 o->PrettyTypeOf().c_str(),
904 dst_class->PrettyDescriptor().c_str()).c_str());
905 }
906 return false;
907 }
908 unboxed_value->SetL(o);
909 return true;
910 }
911 if (UNLIKELY(dst_class->GetPrimitiveType() == Primitive::kPrimVoid)) {
912 ThrowIllegalArgumentException(StringPrintf("Can't unbox %s to void",
913 UnboxingFailureKind(f).c_str()).c_str());
914 return false;
915 }
916 if (UNLIKELY(o == nullptr)) {
917 if (!unbox_for_result) {
918 ThrowIllegalArgumentException(
919 StringPrintf("%s has type %s, got null",
920 UnboxingFailureKind(f).c_str(),
921 dst_class->PrettyDescriptor().c_str()).c_str());
922 } else {
923 ThrowNullPointerException(
924 StringPrintf("Expected to unbox a '%s' primitive type but was returned null",
925 dst_class->PrettyDescriptor().c_str()).c_str());
926 }
927 return false;
928 }
929
930 JValue boxed_value;
931 ObjPtr<mirror::Class> klass = o->GetClass();
932 Primitive::Type primitive_type;
933 ArtField* primitive_field = &klass->GetIFieldsPtr()->At(0);
934 if (klass->DescriptorEquals("Ljava/lang/Boolean;")) {
935 primitive_type = Primitive::kPrimBoolean;
936 boxed_value.SetZ(primitive_field->GetBoolean(o));
937 } else if (klass->DescriptorEquals("Ljava/lang/Byte;")) {
938 primitive_type = Primitive::kPrimByte;
939 boxed_value.SetB(primitive_field->GetByte(o));
940 } else if (klass->DescriptorEquals("Ljava/lang/Character;")) {
941 primitive_type = Primitive::kPrimChar;
942 boxed_value.SetC(primitive_field->GetChar(o));
943 } else if (klass->DescriptorEquals("Ljava/lang/Float;")) {
944 primitive_type = Primitive::kPrimFloat;
945 boxed_value.SetF(primitive_field->GetFloat(o));
946 } else if (klass->DescriptorEquals("Ljava/lang/Double;")) {
947 primitive_type = Primitive::kPrimDouble;
948 boxed_value.SetD(primitive_field->GetDouble(o));
949 } else if (klass->DescriptorEquals("Ljava/lang/Integer;")) {
950 primitive_type = Primitive::kPrimInt;
951 boxed_value.SetI(primitive_field->GetInt(o));
952 } else if (klass->DescriptorEquals("Ljava/lang/Long;")) {
953 primitive_type = Primitive::kPrimLong;
954 boxed_value.SetJ(primitive_field->GetLong(o));
955 } else if (klass->DescriptorEquals("Ljava/lang/Short;")) {
956 primitive_type = Primitive::kPrimShort;
957 boxed_value.SetS(primitive_field->GetShort(o));
958 } else {
959 std::string temp;
960 ThrowIllegalArgumentException(
961 StringPrintf("%s has type %s, got %s", UnboxingFailureKind(f).c_str(),
962 dst_class->PrettyDescriptor().c_str(),
963 PrettyDescriptor(o->GetClass()->GetDescriptor(&temp)).c_str()).c_str());
964 return false;
965 }
966
967 return ConvertPrimitiveValue(unbox_for_result,
968 primitive_type,
969 dst_class->GetPrimitiveType(),
970 boxed_value, unboxed_value);
971 }
972
UnboxPrimitiveForField(ObjPtr<mirror::Object> o,ObjPtr<mirror::Class> dst_class,ArtField * f,JValue * unboxed_value)973 bool UnboxPrimitiveForField(ObjPtr<mirror::Object> o,
974 ObjPtr<mirror::Class> dst_class,
975 ArtField* f,
976 JValue* unboxed_value) {
977 DCHECK(f != nullptr);
978 return UnboxPrimitive(o, dst_class, f, unboxed_value);
979 }
980
UnboxPrimitiveForResult(ObjPtr<mirror::Object> o,ObjPtr<mirror::Class> dst_class,JValue * unboxed_value)981 bool UnboxPrimitiveForResult(ObjPtr<mirror::Object> o,
982 ObjPtr<mirror::Class> dst_class,
983 JValue* unboxed_value) {
984 return UnboxPrimitive(o, dst_class, nullptr, unboxed_value);
985 }
986
GetCallingClass(Thread * self,size_t num_frames)987 ObjPtr<mirror::Class> GetCallingClass(Thread* self, size_t num_frames) {
988 NthCallerVisitor visitor(self, num_frames);
989 visitor.WalkStack();
990 return visitor.caller != nullptr ? visitor.caller->GetDeclaringClass() : nullptr;
991 }
992
VerifyAccess(Thread * self,ObjPtr<mirror::Object> obj,ObjPtr<mirror::Class> declaring_class,uint32_t access_flags,ObjPtr<mirror::Class> * calling_class,size_t num_frames)993 bool VerifyAccess(Thread* self,
994 ObjPtr<mirror::Object> obj,
995 ObjPtr<mirror::Class> declaring_class,
996 uint32_t access_flags,
997 ObjPtr<mirror::Class>* calling_class,
998 size_t num_frames) {
999 if ((access_flags & kAccPublic) != 0) {
1000 return true;
1001 }
1002 ObjPtr<mirror::Class> klass = GetCallingClass(self, num_frames);
1003 if (UNLIKELY(klass == nullptr)) {
1004 // The caller is an attached native thread.
1005 return false;
1006 }
1007 *calling_class = klass;
1008 return VerifyAccess(obj, declaring_class, access_flags, klass);
1009 }
1010
VerifyAccess(ObjPtr<mirror::Object> obj,ObjPtr<mirror::Class> declaring_class,uint32_t access_flags,ObjPtr<mirror::Class> calling_class)1011 bool VerifyAccess(ObjPtr<mirror::Object> obj,
1012 ObjPtr<mirror::Class> declaring_class,
1013 uint32_t access_flags,
1014 ObjPtr<mirror::Class> calling_class) {
1015 if (calling_class == declaring_class) {
1016 return true;
1017 }
1018 ScopedAssertNoThreadSuspension sants("verify-access");
1019 if ((access_flags & kAccPrivate) != 0) {
1020 return false;
1021 }
1022 if ((access_flags & kAccProtected) != 0) {
1023 if (obj != nullptr && !obj->InstanceOf(calling_class) &&
1024 !declaring_class->IsInSamePackage(calling_class)) {
1025 return false;
1026 } else if (declaring_class->IsAssignableFrom(calling_class)) {
1027 return true;
1028 }
1029 }
1030 return declaring_class->IsInSamePackage(calling_class);
1031 }
1032
InvalidReceiverError(ObjPtr<mirror::Object> o,ObjPtr<mirror::Class> c)1033 void InvalidReceiverError(ObjPtr<mirror::Object> o, ObjPtr<mirror::Class> c) {
1034 std::string expected_class_name(mirror::Class::PrettyDescriptor(c));
1035 std::string actual_class_name(mirror::Object::PrettyTypeOf(o));
1036 ThrowIllegalArgumentException(StringPrintf("Expected receiver of type %s, but got %s",
1037 expected_class_name.c_str(),
1038 actual_class_name.c_str()).c_str());
1039 }
1040
1041 // This only works if there's one reference which points to the object in obj.
1042 // Will need to be fixed if there's cases where it's not.
UpdateReference(Thread * self,jobject obj,ObjPtr<mirror::Object> result)1043 void UpdateReference(Thread* self, jobject obj, ObjPtr<mirror::Object> result) {
1044 IndirectRef ref = reinterpret_cast<IndirectRef>(obj);
1045 IndirectRefKind kind = IndirectReferenceTable::GetIndirectRefKind(ref);
1046 if (kind == kLocal) {
1047 self->GetJniEnv()->UpdateLocal(obj, result);
1048 } else if (kind == kHandleScopeOrInvalid) {
1049 LOG(FATAL) << "Unsupported UpdateReference for kind kHandleScopeOrInvalid";
1050 } else if (kind == kGlobal) {
1051 self->GetJniEnv()->GetVm()->UpdateGlobal(self, ref, result);
1052 } else {
1053 DCHECK_EQ(kind, kWeakGlobal);
1054 self->GetJniEnv()->GetVm()->UpdateWeakGlobal(self, ref, result);
1055 }
1056 }
1057
1058 } // namespace art
1059