1 //===- CallGraph.cpp - Build a Module's call graph ------------------------===//
2 //
3 // Part of the LLVM Project, under the Apache License v2.0 with LLVM Exceptions.
4 // See https://llvm.org/LICENSE.txt for license information.
5 // SPDX-License-Identifier: Apache-2.0 WITH LLVM-exception
6 //
7 //===----------------------------------------------------------------------===//
8 
9 #include "llvm/Analysis/CallGraph.h"
10 #include "llvm/ADT/STLExtras.h"
11 #include "llvm/ADT/SmallVector.h"
12 #include "llvm/Config/llvm-config.h"
13 #include "llvm/IR/AbstractCallSite.h"
14 #include "llvm/IR/Function.h"
15 #include "llvm/IR/IntrinsicInst.h"
16 #include "llvm/IR/Intrinsics.h"
17 #include "llvm/IR/Module.h"
18 #include "llvm/IR/PassManager.h"
19 #include "llvm/InitializePasses.h"
20 #include "llvm/Pass.h"
21 #include "llvm/Support/Compiler.h"
22 #include "llvm/Support/Debug.h"
23 #include "llvm/Support/raw_ostream.h"
24 #include <algorithm>
25 #include <cassert>
26 
27 using namespace llvm;
28 
29 //===----------------------------------------------------------------------===//
30 // Implementations of the CallGraph class methods.
31 //
32 
CallGraph(Module & M)33 CallGraph::CallGraph(Module &M)
34     : M(M), ExternalCallingNode(getOrInsertFunction(nullptr)),
35       CallsExternalNode(std::make_unique<CallGraphNode>(this, nullptr)) {
36   // Add every interesting function to the call graph.
37   for (Function &F : M)
38     if (!isDbgInfoIntrinsic(F.getIntrinsicID()))
39       addToCallGraph(&F);
40 }
41 
CallGraph(CallGraph && Arg)42 CallGraph::CallGraph(CallGraph &&Arg)
43     : M(Arg.M), FunctionMap(std::move(Arg.FunctionMap)),
44       ExternalCallingNode(Arg.ExternalCallingNode),
45       CallsExternalNode(std::move(Arg.CallsExternalNode)) {
46   Arg.FunctionMap.clear();
47   Arg.ExternalCallingNode = nullptr;
48 
49   // Update parent CG for all call graph's nodes.
50   CallsExternalNode->CG = this;
51   for (auto &P : FunctionMap)
52     P.second->CG = this;
53 }
54 
~CallGraph()55 CallGraph::~CallGraph() {
56   // CallsExternalNode is not in the function map, delete it explicitly.
57   if (CallsExternalNode)
58     CallsExternalNode->allReferencesDropped();
59 
60 // Reset all node's use counts to zero before deleting them to prevent an
61 // assertion from firing.
62 #ifndef NDEBUG
63   for (auto &I : FunctionMap)
64     I.second->allReferencesDropped();
65 #endif
66 }
67 
invalidate(Module &,const PreservedAnalyses & PA,ModuleAnalysisManager::Invalidator &)68 bool CallGraph::invalidate(Module &, const PreservedAnalyses &PA,
69                            ModuleAnalysisManager::Invalidator &) {
70   // Check whether the analysis, all analyses on functions, or the function's
71   // CFG have been preserved.
72   auto PAC = PA.getChecker<CallGraphAnalysis>();
73   return !(PAC.preserved() || PAC.preservedSet<AllAnalysesOn<Module>>() ||
74            PAC.preservedSet<CFGAnalyses>());
75 }
76 
addToCallGraph(Function * F)77 void CallGraph::addToCallGraph(Function *F) {
78   CallGraphNode *Node = getOrInsertFunction(F);
79 
80   // If this function has external linkage or has its address taken and
81   // it is not a callback, then anything could call it.
82   if (!F->hasLocalLinkage() ||
83       F->hasAddressTaken(nullptr, /*IgnoreCallbackUses=*/true))
84     ExternalCallingNode->addCalledFunction(nullptr, Node);
85 
86   populateCallGraphNode(Node);
87 }
88 
populateCallGraphNode(CallGraphNode * Node)89 void CallGraph::populateCallGraphNode(CallGraphNode *Node) {
90   Function *F = Node->getFunction();
91 
92   // If this function is not defined in this translation unit, it could call
93   // anything.
94   if (F->isDeclaration() && !F->isIntrinsic())
95     Node->addCalledFunction(nullptr, CallsExternalNode.get());
96 
97   // Look for calls by this function.
98   for (BasicBlock &BB : *F)
99     for (Instruction &I : BB) {
100       if (auto *Call = dyn_cast<CallBase>(&I)) {
101         const Function *Callee = Call->getCalledFunction();
102         if (!Callee || !Intrinsic::isLeaf(Callee->getIntrinsicID()))
103           // Indirect calls of intrinsics are not allowed so no need to check.
104           // We can be more precise here by using TargetArg returned by
105           // Intrinsic::isLeaf.
106           Node->addCalledFunction(Call, CallsExternalNode.get());
107         else if (!Callee->isIntrinsic())
108           Node->addCalledFunction(Call, getOrInsertFunction(Callee));
109 
110         // Add reference to callback functions.
111         forEachCallbackFunction(*Call, [=](Function *CB) {
112           Node->addCalledFunction(nullptr, getOrInsertFunction(CB));
113         });
114       }
115     }
116 }
117 
print(raw_ostream & OS) const118 void CallGraph::print(raw_ostream &OS) const {
119   // Print in a deterministic order by sorting CallGraphNodes by name.  We do
120   // this here to avoid slowing down the non-printing fast path.
121 
122   SmallVector<CallGraphNode *, 16> Nodes;
123   Nodes.reserve(FunctionMap.size());
124 
125   for (const auto &I : *this)
126     Nodes.push_back(I.second.get());
127 
128   llvm::sort(Nodes, [](CallGraphNode *LHS, CallGraphNode *RHS) {
129     if (Function *LF = LHS->getFunction())
130       if (Function *RF = RHS->getFunction())
131         return LF->getName() < RF->getName();
132 
133     return RHS->getFunction() != nullptr;
134   });
135 
136   for (CallGraphNode *CN : Nodes)
137     CN->print(OS);
138 }
139 
140 #if !defined(NDEBUG) || defined(LLVM_ENABLE_DUMP)
dump() const141 LLVM_DUMP_METHOD void CallGraph::dump() const { print(dbgs()); }
142 #endif
143 
ReplaceExternalCallEdge(CallGraphNode * Old,CallGraphNode * New)144 void CallGraph::ReplaceExternalCallEdge(CallGraphNode *Old,
145                                         CallGraphNode *New) {
146   for (auto &CR : ExternalCallingNode->CalledFunctions)
147     if (CR.second == Old) {
148       CR.second->DropRef();
149       CR.second = New;
150       CR.second->AddRef();
151     }
152 }
153 
154 // removeFunctionFromModule - Unlink the function from this module, returning
155 // it.  Because this removes the function from the module, the call graph node
156 // is destroyed.  This is only valid if the function does not call any other
157 // functions (ie, there are no edges in it's CGN).  The easiest way to do this
158 // is to dropAllReferences before calling this.
159 //
removeFunctionFromModule(CallGraphNode * CGN)160 Function *CallGraph::removeFunctionFromModule(CallGraphNode *CGN) {
161   assert(CGN->empty() && "Cannot remove function from call "
162          "graph if it references other functions!");
163   Function *F = CGN->getFunction(); // Get the function for the call graph node
164   FunctionMap.erase(F);             // Remove the call graph node from the map
165 
166   M.getFunctionList().remove(F);
167   return F;
168 }
169 
170 /// spliceFunction - Replace the function represented by this node by another.
171 /// This does not rescan the body of the function, so it is suitable when
172 /// splicing the body of the old function to the new while also updating all
173 /// callers from old to new.
spliceFunction(const Function * From,const Function * To)174 void CallGraph::spliceFunction(const Function *From, const Function *To) {
175   assert(FunctionMap.count(From) && "No CallGraphNode for function!");
176   assert(!FunctionMap.count(To) &&
177          "Pointing CallGraphNode at a function that already exists");
178   FunctionMapTy::iterator I = FunctionMap.find(From);
179   I->second->F = const_cast<Function*>(To);
180   FunctionMap[To] = std::move(I->second);
181   FunctionMap.erase(I);
182 }
183 
184 // getOrInsertFunction - This method is identical to calling operator[], but
185 // it will insert a new CallGraphNode for the specified function if one does
186 // not already exist.
getOrInsertFunction(const Function * F)187 CallGraphNode *CallGraph::getOrInsertFunction(const Function *F) {
188   auto &CGN = FunctionMap[F];
189   if (CGN)
190     return CGN.get();
191 
192   assert((!F || F->getParent() == &M) && "Function not in current module!");
193   CGN = std::make_unique<CallGraphNode>(this, const_cast<Function *>(F));
194   return CGN.get();
195 }
196 
197 //===----------------------------------------------------------------------===//
198 // Implementations of the CallGraphNode class methods.
199 //
200 
print(raw_ostream & OS) const201 void CallGraphNode::print(raw_ostream &OS) const {
202   if (Function *F = getFunction())
203     OS << "Call graph node for function: '" << F->getName() << "'";
204   else
205     OS << "Call graph node <<null function>>";
206 
207   OS << "<<" << this << ">>  #uses=" << getNumReferences() << '\n';
208 
209   for (const auto &I : *this) {
210     OS << "  CS<" << I.first << "> calls ";
211     if (Function *FI = I.second->getFunction())
212       OS << "function '" << FI->getName() <<"'\n";
213     else
214       OS << "external node\n";
215   }
216   OS << '\n';
217 }
218 
219 #if !defined(NDEBUG) || defined(LLVM_ENABLE_DUMP)
dump() const220 LLVM_DUMP_METHOD void CallGraphNode::dump() const { print(dbgs()); }
221 #endif
222 
223 /// removeCallEdgeFor - This method removes the edge in the node for the
224 /// specified call site.  Note that this method takes linear time, so it
225 /// should be used sparingly.
removeCallEdgeFor(CallBase & Call)226 void CallGraphNode::removeCallEdgeFor(CallBase &Call) {
227   for (CalledFunctionsVector::iterator I = CalledFunctions.begin(); ; ++I) {
228     assert(I != CalledFunctions.end() && "Cannot find callsite to remove!");
229     if (I->first && *I->first == &Call) {
230       I->second->DropRef();
231       *I = CalledFunctions.back();
232       CalledFunctions.pop_back();
233 
234       // Remove all references to callback functions if there are any.
235       forEachCallbackFunction(Call, [=](Function *CB) {
236         removeOneAbstractEdgeTo(CG->getOrInsertFunction(CB));
237       });
238       return;
239     }
240   }
241 }
242 
243 // removeAnyCallEdgeTo - This method removes any call edges from this node to
244 // the specified callee function.  This takes more time to execute than
245 // removeCallEdgeTo, so it should not be used unless necessary.
removeAnyCallEdgeTo(CallGraphNode * Callee)246 void CallGraphNode::removeAnyCallEdgeTo(CallGraphNode *Callee) {
247   for (unsigned i = 0, e = CalledFunctions.size(); i != e; ++i)
248     if (CalledFunctions[i].second == Callee) {
249       Callee->DropRef();
250       CalledFunctions[i] = CalledFunctions.back();
251       CalledFunctions.pop_back();
252       --i; --e;
253     }
254 }
255 
256 /// removeOneAbstractEdgeTo - Remove one edge associated with a null callsite
257 /// from this node to the specified callee function.
removeOneAbstractEdgeTo(CallGraphNode * Callee)258 void CallGraphNode::removeOneAbstractEdgeTo(CallGraphNode *Callee) {
259   for (CalledFunctionsVector::iterator I = CalledFunctions.begin(); ; ++I) {
260     assert(I != CalledFunctions.end() && "Cannot find callee to remove!");
261     CallRecord &CR = *I;
262     if (CR.second == Callee && !CR.first) {
263       Callee->DropRef();
264       *I = CalledFunctions.back();
265       CalledFunctions.pop_back();
266       return;
267     }
268   }
269 }
270 
271 /// replaceCallEdge - This method replaces the edge in the node for the
272 /// specified call site with a new one.  Note that this method takes linear
273 /// time, so it should be used sparingly.
replaceCallEdge(CallBase & Call,CallBase & NewCall,CallGraphNode * NewNode)274 void CallGraphNode::replaceCallEdge(CallBase &Call, CallBase &NewCall,
275                                     CallGraphNode *NewNode) {
276   for (CalledFunctionsVector::iterator I = CalledFunctions.begin(); ; ++I) {
277     assert(I != CalledFunctions.end() && "Cannot find callsite to remove!");
278     if (I->first && *I->first == &Call) {
279       I->second->DropRef();
280       I->first = &NewCall;
281       I->second = NewNode;
282       NewNode->AddRef();
283 
284       // Refresh callback references. Do not resize CalledFunctions if the
285       // number of callbacks is the same for new and old call sites.
286       SmallVector<CallGraphNode *, 4u> OldCBs;
287       SmallVector<CallGraphNode *, 4u> NewCBs;
288       forEachCallbackFunction(Call, [this, &OldCBs](Function *CB) {
289         OldCBs.push_back(CG->getOrInsertFunction(CB));
290       });
291       forEachCallbackFunction(NewCall, [this, &NewCBs](Function *CB) {
292         NewCBs.push_back(CG->getOrInsertFunction(CB));
293       });
294       if (OldCBs.size() == NewCBs.size()) {
295         for (unsigned N = 0; N < OldCBs.size(); ++N) {
296           CallGraphNode *OldNode = OldCBs[N];
297           CallGraphNode *NewNode = NewCBs[N];
298           for (auto J = CalledFunctions.begin();; ++J) {
299             assert(J != CalledFunctions.end() &&
300                    "Cannot find callsite to update!");
301             if (!J->first && J->second == OldNode) {
302               J->second = NewNode;
303               OldNode->DropRef();
304               NewNode->AddRef();
305               break;
306             }
307           }
308         }
309       } else {
310         for (auto *CGN : OldCBs)
311           removeOneAbstractEdgeTo(CGN);
312         for (auto *CGN : NewCBs)
313           addCalledFunction(nullptr, CGN);
314       }
315       return;
316     }
317   }
318 }
319 
320 // Provide an explicit template instantiation for the static ID.
321 AnalysisKey CallGraphAnalysis::Key;
322 
run(Module & M,ModuleAnalysisManager & AM)323 PreservedAnalyses CallGraphPrinterPass::run(Module &M,
324                                             ModuleAnalysisManager &AM) {
325   AM.getResult<CallGraphAnalysis>(M).print(OS);
326   return PreservedAnalyses::all();
327 }
328 
329 //===----------------------------------------------------------------------===//
330 // Out-of-line definitions of CallGraphAnalysis class members.
331 //
332 
333 //===----------------------------------------------------------------------===//
334 // Implementations of the CallGraphWrapperPass class methods.
335 //
336 
CallGraphWrapperPass()337 CallGraphWrapperPass::CallGraphWrapperPass() : ModulePass(ID) {
338   initializeCallGraphWrapperPassPass(*PassRegistry::getPassRegistry());
339 }
340 
341 CallGraphWrapperPass::~CallGraphWrapperPass() = default;
342 
getAnalysisUsage(AnalysisUsage & AU) const343 void CallGraphWrapperPass::getAnalysisUsage(AnalysisUsage &AU) const {
344   AU.setPreservesAll();
345 }
346 
runOnModule(Module & M)347 bool CallGraphWrapperPass::runOnModule(Module &M) {
348   // All the real work is done in the constructor for the CallGraph.
349   G.reset(new CallGraph(M));
350   return false;
351 }
352 
353 INITIALIZE_PASS(CallGraphWrapperPass, "basiccg", "CallGraph Construction",
354                 false, true)
355 
356 char CallGraphWrapperPass::ID = 0;
357 
releaseMemory()358 void CallGraphWrapperPass::releaseMemory() { G.reset(); }
359 
print(raw_ostream & OS,const Module *) const360 void CallGraphWrapperPass::print(raw_ostream &OS, const Module *) const {
361   if (!G) {
362     OS << "No call graph has been built!\n";
363     return;
364   }
365 
366   // Just delegate.
367   G->print(OS);
368 }
369 
370 #if !defined(NDEBUG) || defined(LLVM_ENABLE_DUMP)
371 LLVM_DUMP_METHOD
dump() const372 void CallGraphWrapperPass::dump() const { print(dbgs(), nullptr); }
373 #endif
374 
375 namespace {
376 
377 struct CallGraphPrinterLegacyPass : public ModulePass {
378   static char ID; // Pass ID, replacement for typeid
379 
CallGraphPrinterLegacyPass__anon340850010611::CallGraphPrinterLegacyPass380   CallGraphPrinterLegacyPass() : ModulePass(ID) {
381     initializeCallGraphPrinterLegacyPassPass(*PassRegistry::getPassRegistry());
382   }
383 
getAnalysisUsage__anon340850010611::CallGraphPrinterLegacyPass384   void getAnalysisUsage(AnalysisUsage &AU) const override {
385     AU.setPreservesAll();
386     AU.addRequiredTransitive<CallGraphWrapperPass>();
387   }
388 
runOnModule__anon340850010611::CallGraphPrinterLegacyPass389   bool runOnModule(Module &M) override {
390     getAnalysis<CallGraphWrapperPass>().print(errs(), &M);
391     return false;
392   }
393 };
394 
395 } // end anonymous namespace
396 
397 char CallGraphPrinterLegacyPass::ID = 0;
398 
399 INITIALIZE_PASS_BEGIN(CallGraphPrinterLegacyPass, "print-callgraph",
400                       "Print a call graph", true, true)
401 INITIALIZE_PASS_DEPENDENCY(CallGraphWrapperPass)
402 INITIALIZE_PASS_END(CallGraphPrinterLegacyPass, "print-callgraph",
403                     "Print a call graph", true, true)
404