CBMC
abstract_environment.h
Go to the documentation of this file.
1 /*******************************************************************\
2 
3  Module: analyses variable-sensitivity
4 
5  Author: Thomas Kiley, thomas.kiley@diffblue.com
6 
7 \*******************************************************************/
8 
16 
17 #ifndef CPROVER_ANALYSES_VARIABLE_SENSITIVITY_ABSTRACT_ENVIROMENT_H
18 #define CPROVER_ANALYSES_VARIABLE_SENSITIVITY_ABSTRACT_ENVIROMENT_H
19 
20 #include <memory>
21 
23 
24 exprt simplify_vsd_expr(exprt src, const namespacet &ns);
25 bool is_ptr_diff(const exprt &expr);
26 bool is_ptr_comparison(const exprt &expr);
27 
30  std::shared_ptr<variable_sensitivity_object_factoryt>;
31 
32 enum class widen_modet
33 {
34  no,
36 };
37 
38 struct vsd_configt;
39 
41 {
42 public:
43  using map_keyt = irep_idt;
44 
45  abstract_environmentt() = delete;
46 
49  : bottom(true), object_factory(std::move(_object_factory))
50  {
51  }
52 
54 
62  eval(const exprt &expr, const namespacet &ns) const;
63 
91  virtual bool assign(
92  const exprt &expr,
93  const abstract_object_pointert &value,
94  const namespacet &ns);
95 
110  virtual bool assume(const exprt &expr, const namespacet &ns);
111  exprt do_assume(const exprt &e, const namespacet &ns);
112 
134  const abstract_object_pointert &lhs,
135  const abstract_object_pointert &rhs,
136  std::stack<exprt> remaining_stack,
137  const namespacet &ns,
138  bool merge_write);
139 
144  void erase(const symbol_exprt &expr);
145 
157  const typet &type,
158  const namespacet &ns,
159  bool top,
160  bool bottom) const;
161 
175  const typet &type,
176  const exprt &e,
177  const namespacet &ns) const;
178 
180  const vsd_configt &configuration() const;
181 
189  virtual bool merge(
190  const abstract_environmentt &env,
191  const goto_programt::const_targett &merge_location,
192  widen_modet widen_mode);
193 
201  virtual void havoc(const std::string &havoc_string);
202 
204  void make_top();
205 
207  void make_bottom();
208 
210  bool is_bottom() const;
211 
213  bool is_top() const;
214 
220  void output(std::ostream &out, const class ai_baset &ai, const namespacet &ns)
221  const;
222 
227  exprt to_predicate() const;
228 
231  bool verify() const;
232 
246  static std::vector<abstract_environmentt::map_keyt> modified_symbols(
247  const abstract_environmentt &first,
248  const abstract_environmentt &second);
249 
251 
252 protected:
253  bool bottom;
254 
255  // We may need to break out more of these cases into these
257  eval_expression(const exprt &e, const namespacet &ns) const;
258 
260  resolve_symbol(const exprt &e, const namespacet &ns) const;
261 
263 
264 private:
280  const typet &type,
281  bool top,
282  bool bottom,
283  const exprt &e,
284  const abstract_environmentt &environment,
285  const namespacet &ns) const;
286 
288 };
289 
290 #endif // CPROVER_ANALYSES_VARIABLE_SENSITIVITY_ABSTRACT_ENVIROMENT_H
widen_modet
widen_modet
Definition: abstract_environment.h:32
dstringt
dstringt has one field, an unsigned integer no which is an index into a static table of strings.
Definition: dstring.h:36
abstract_object_pointert
sharing_ptrt< class abstract_objectt > abstract_object_pointert
Definition: abstract_object.h:69
abstract_environmentt::to_predicate
exprt to_predicate() const
Gives a boolean condition that is true for all values represented by the environment.
Definition: abstract_environment.cpp:425
abstract_environmentt::write
virtual abstract_object_pointert write(const abstract_object_pointert &lhs, const abstract_object_pointert &rhs, std::stack< exprt > remaining_stack, const namespacet &ns, bool merge_write)
Used within assign to do the actual dispatch.
Definition: abstract_environment.cpp:237
sharing_mapt
A map implemented as a tree where subtrees can be shared between different maps.
Definition: sharing_map.h:189
widen_modet::no
@ no
typet
The type of an expression, extends irept.
Definition: type.h:28
abstract_environmentt::resolve_symbol
abstract_object_pointert resolve_symbol(const exprt &e, const namespacet &ns) const
Definition: abstract_environment.cpp:135
abstract_environmentt::bottom
bool bottom
Definition: abstract_environment.h:253
abstract_environmentt::assign
virtual bool assign(const exprt &expr, const abstract_object_pointert &value, const namespacet &ns)
Assign a value to an expression.
Definition: abstract_environment.cpp:147
abstract_environmentt::verify
bool verify() const
Check the structural invariants are maintained.
Definition: abstract_environment.cpp:449
abstract_environmentt
Definition: abstract_environment.h:40
exprt
Base class for all expressions.
Definition: expr.h:55
abstract_environmentt::output
void output(std::ostream &out, const class ai_baset &ai, const namespacet &ns) const
Print out all the values in the abstract object map.
Definition: abstract_environment.cpp:408
abstract_environmentt::havoc
virtual void havoc(const std::string &havoc_string)
This should be used as a default case / everything else has failed The string is so that I can easily...
Definition: abstract_environment.cpp:379
irep_idt
dstringt irep_idt
Definition: irep.h:37
symbol_exprt
Expression to hold a symbol (variable)
Definition: std_expr.h:112
abstract_environmentt::make_top
void make_top()
Set the domain to top (i.e. everything)
Definition: abstract_environment.cpp:385
vsd_configt
Definition: variable_sensitivity_configuration.h:44
abstract_object.h
abstract_environmentt::eval_expression
virtual abstract_object_pointert eval_expression(const exprt &e, const namespacet &ns) const
Definition: abstract_environment.cpp:461
namespacet
A namespacet is essentially one or two symbol tables bound together, to allow for symbol lookups in t...
Definition: namespace.h:90
abstract_environmentt::object_factory
variable_sensitivity_object_factory_ptrt object_factory
Definition: abstract_environment.h:287
abstract_environmentt::is_top
bool is_top() const
Gets whether the domain is top.
Definition: abstract_environment.cpp:403
abstract_environmentt::abstract_environmentt
abstract_environmentt(variable_sensitivity_object_factory_ptrt _object_factory)
Definition: abstract_environment.h:47
abstract_object_statisticst
Definition: abstract_object_statistics.h:18
abstract_environmentt::abstract_object_factory
virtual abstract_object_pointert abstract_object_factory(const typet &type, const namespacet &ns, bool top, bool bottom) const
Look at the configuration for the sensitivity and create an appropriate abstract_object.
Definition: abstract_environment.cpp:312
abstract_environmentt::abstract_environmentt
abstract_environmentt()=delete
variable_sensitivity_object_factory_ptrt
std::shared_ptr< variable_sensitivity_object_factoryt > variable_sensitivity_object_factory_ptrt
Definition: abstract_environment.h:30
abstract_environmentt::make_bottom
void make_bottom()
Set the domain to top (i.e. no possible states / unreachable)
Definition: abstract_environment.cpp:392
is_ptr_comparison
bool is_ptr_comparison(const exprt &expr)
Definition: abstract_environment.cpp:67
abstract_environmentt::merge
virtual bool merge(const abstract_environmentt &env, const goto_programt::const_targett &merge_location, widen_modet widen_mode)
Computes the join between "this" and "b".
Definition: abstract_environment.cpp:348
abstract_environmentt::map
sharing_mapt< map_keyt, abstract_object_pointert > map
Definition: abstract_environment.h:262
abstract_environmentt::eval
virtual abstract_object_pointert eval(const exprt &expr, const namespacet &ns) const
These three are really the heart of the method.
Definition: abstract_environment.cpp:94
abstract_environmentt::do_assume
exprt do_assume(const exprt &e, const namespacet &ns)
Definition: abstract_environment.cpp:300
variable_sensitivity_object_factoryt
Definition: variable_sensitivity_object_factory.h:37
ai_baset
This is the basic interface of the abstract interpreter with default implementations of the core func...
Definition: ai.h:118
widen_modet::could_widen
@ could_widen
simplify_vsd_expr
exprt simplify_vsd_expr(exprt src, const namespacet &ns)
abstract_environmentt::modified_symbols
static std::vector< abstract_environmentt::map_keyt > modified_symbols(const abstract_environmentt &first, const abstract_environmentt &second)
For our implementation of variable sensitivity domains, we need to be able to efficiently find symbol...
Definition: abstract_environment.cpp:482
goto_programt::const_targett
instructionst::const_iterator const_targett
Definition: goto_program.h:587
abstract_environmentt::configuration
const vsd_configt & configuration() const
Exposes the environment configuration.
Definition: abstract_environment.cpp:343
is_ptr_diff
bool is_ptr_diff(const exprt &expr)
Definition: abstract_environment.cpp:60
abstract_environmentt::gather_statistics
abstract_object_statisticst gather_statistics(const namespacet &ns) const
Definition: abstract_environment.cpp:527
abstract_environmentt::is_bottom
bool is_bottom() const
Gets whether the domain is bottom.
Definition: abstract_environment.cpp:398
abstract_environmentt::erase
void erase(const symbol_exprt &expr)
Delete a symbol from the map.
Definition: abstract_environment.cpp:476
abstract_environmentt::assume
virtual bool assume(const exprt &expr, const namespacet &ns)
Reduces the domain based on a condition.
Definition: abstract_environment.cpp:257