1 //===--- SemaExpr.cpp - Semantic Analysis for Expressions -----------------===//
2 //
3 //                     The LLVM Compiler Infrastructure
4 //
5 // This file is distributed under the University of Illinois Open Source
6 // License. See LICENSE.TXT for details.
7 //
8 //===----------------------------------------------------------------------===//
9 //
10 //  This file implements semantic analysis for expressions.
11 //
12 //===----------------------------------------------------------------------===//
13 
14 #include "clang/Sema/SemaInternal.h"
15 #include "TreeTransform.h"
16 #include "clang/AST/ASTConsumer.h"
17 #include "clang/AST/ASTContext.h"
18 #include "clang/AST/ASTLambda.h"
19 #include "clang/AST/ASTMutationListener.h"
20 #include "clang/AST/CXXInheritance.h"
21 #include "clang/AST/DeclObjC.h"
22 #include "clang/AST/DeclTemplate.h"
23 #include "clang/AST/EvaluatedExprVisitor.h"
24 #include "clang/AST/Expr.h"
25 #include "clang/AST/ExprCXX.h"
26 #include "clang/AST/ExprObjC.h"
27 #include "clang/AST/ExprOpenMP.h"
28 #include "clang/AST/RecursiveASTVisitor.h"
29 #include "clang/AST/TypeLoc.h"
30 #include "clang/Basic/PartialDiagnostic.h"
31 #include "clang/Basic/SourceManager.h"
32 #include "clang/Basic/TargetInfo.h"
33 #include "clang/Lex/LiteralSupport.h"
34 #include "clang/Lex/Preprocessor.h"
35 #include "clang/Sema/AnalysisBasedWarnings.h"
36 #include "clang/Sema/DeclSpec.h"
37 #include "clang/Sema/DelayedDiagnostic.h"
38 #include "clang/Sema/Designator.h"
39 #include "clang/Sema/Initialization.h"
40 #include "clang/Sema/Lookup.h"
41 #include "clang/Sema/ParsedTemplate.h"
42 #include "clang/Sema/Scope.h"
43 #include "clang/Sema/ScopeInfo.h"
44 #include "clang/Sema/SemaFixItUtils.h"
45 #include "clang/Sema/Template.h"
46 #include "llvm/Support/ConvertUTF.h"
47 using namespace clang;
48 using namespace sema;
49 
50 /// \brief Determine whether the use of this declaration is valid, without
51 /// emitting diagnostics.
52 bool Sema::CanUseDecl(NamedDecl *D, bool TreatUnavailableAsInvalid) {
53   // See if this is an auto-typed variable whose initializer we are parsing.
54   if (ParsingInitForAutoVars.count(D))
55     return false;
56 
57   // See if this is a deleted function.
58   if (FunctionDecl *FD = dyn_cast<FunctionDecl>(D)) {
59     if (FD->isDeleted())
60       return false;
61 
62     // If the function has a deduced return type, and we can't deduce it,
63     // then we can't use it either.
64     if (getLangOpts().CPlusPlus14 && FD->getReturnType()->isUndeducedType() &&
65         DeduceReturnType(FD, SourceLocation(), /*Diagnose*/ false))
66       return false;
67   }
68 
69   // See if this function is unavailable.
70   if (TreatUnavailableAsInvalid && D->getAvailability() == AR_Unavailable &&
71       cast<Decl>(CurContext)->getAvailability() != AR_Unavailable)
72     return false;
73 
74   return true;
75 }
76 
77 static void DiagnoseUnusedOfDecl(Sema &S, NamedDecl *D, SourceLocation Loc) {
78   // Warn if this is used but marked unused.
79   if (const auto *A = D->getAttr<UnusedAttr>()) {
80     // [[maybe_unused]] should not diagnose uses, but __attribute__((unused))
81     // should diagnose them.
82     if (A->getSemanticSpelling() != UnusedAttr::CXX11_maybe_unused) {
83       const Decl *DC = cast_or_null<Decl>(S.getCurObjCLexicalContext());
84       if (DC && !DC->hasAttr<UnusedAttr>())
85         S.Diag(Loc, diag::warn_used_but_marked_unused) << D->getDeclName();
86     }
87   }
88 }
89 
90 static bool HasRedeclarationWithoutAvailabilityInCategory(const Decl *D) {
91   const auto *OMD = dyn_cast<ObjCMethodDecl>(D);
92   if (!OMD)
93     return false;
94   const ObjCInterfaceDecl *OID = OMD->getClassInterface();
95   if (!OID)
96     return false;
97 
98   for (const ObjCCategoryDecl *Cat : OID->visible_categories())
99     if (ObjCMethodDecl *CatMeth =
100             Cat->getMethod(OMD->getSelector(), OMD->isInstanceMethod()))
101       if (!CatMeth->hasAttr<AvailabilityAttr>())
102         return true;
103   return false;
104 }
105 
106 static AvailabilityResult
107 DiagnoseAvailabilityOfDecl(Sema &S, NamedDecl *D, SourceLocation Loc,
108                            const ObjCInterfaceDecl *UnknownObjCClass,
109                            bool ObjCPropertyAccess) {
110   // See if this declaration is unavailable or deprecated.
111   std::string Message;
112   AvailabilityResult Result = D->getAvailability(&Message);
113 
114   // For typedefs, if the typedef declaration appears available look
115   // to the underlying type to see if it is more restrictive.
116   while (const TypedefNameDecl *TD = dyn_cast<TypedefNameDecl>(D)) {
117     if (Result == AR_Available) {
118       if (const TagType *TT = TD->getUnderlyingType()->getAs<TagType>()) {
119         D = TT->getDecl();
120         Result = D->getAvailability(&Message);
121         continue;
122       }
123     }
124     break;
125   }
126 
127   // Forward class declarations get their attributes from their definition.
128   if (ObjCInterfaceDecl *IDecl = dyn_cast<ObjCInterfaceDecl>(D)) {
129     if (IDecl->getDefinition()) {
130       D = IDecl->getDefinition();
131       Result = D->getAvailability(&Message);
132     }
133   }
134 
135   if (const EnumConstantDecl *ECD = dyn_cast<EnumConstantDecl>(D))
136     if (Result == AR_Available) {
137       const DeclContext *DC = ECD->getDeclContext();
138       if (const EnumDecl *TheEnumDecl = dyn_cast<EnumDecl>(DC))
139         Result = TheEnumDecl->getAvailability(&Message);
140     }
141 
142   const ObjCPropertyDecl *ObjCPDecl = nullptr;
143   if (Result == AR_Deprecated || Result == AR_Unavailable ||
144       Result == AR_NotYetIntroduced) {
145     if (const ObjCMethodDecl *MD = dyn_cast<ObjCMethodDecl>(D)) {
146       if (const ObjCPropertyDecl *PD = MD->findPropertyDecl()) {
147         AvailabilityResult PDeclResult = PD->getAvailability(nullptr);
148         if (PDeclResult == Result)
149           ObjCPDecl = PD;
150       }
151     }
152   }
153 
154   switch (Result) {
155     case AR_Available:
156       break;
157 
158     case AR_Deprecated:
159       if (S.getCurContextAvailability() != AR_Deprecated)
160         S.EmitAvailabilityWarning(Sema::AD_Deprecation,
161                                   D, Message, Loc, UnknownObjCClass, ObjCPDecl,
162                                   ObjCPropertyAccess);
163       break;
164 
165     case AR_NotYetIntroduced: {
166       // Don't do this for enums, they can't be redeclared.
167       if (isa<EnumConstantDecl>(D) || isa<EnumDecl>(D))
168         break;
169 
170       bool Warn = !D->getAttr<AvailabilityAttr>()->isInherited();
171       // Objective-C method declarations in categories are not modelled as
172       // redeclarations, so manually look for a redeclaration in a category
173       // if necessary.
174       if (Warn && HasRedeclarationWithoutAvailabilityInCategory(D))
175         Warn = false;
176       // In general, D will point to the most recent redeclaration. However,
177       // for `@class A;` decls, this isn't true -- manually go through the
178       // redecl chain in that case.
179       if (Warn && isa<ObjCInterfaceDecl>(D))
180         for (Decl *Redecl = D->getMostRecentDecl(); Redecl && Warn;
181              Redecl = Redecl->getPreviousDecl())
182           if (!Redecl->hasAttr<AvailabilityAttr>() ||
183               Redecl->getAttr<AvailabilityAttr>()->isInherited())
184             Warn = false;
185 
186       if (Warn)
187         S.EmitAvailabilityWarning(Sema::AD_Partial, D, Message, Loc,
188                                   UnknownObjCClass, ObjCPDecl,
189                                   ObjCPropertyAccess);
190       break;
191     }
192 
193     case AR_Unavailable:
194       if (S.getCurContextAvailability() != AR_Unavailable)
195         S.EmitAvailabilityWarning(Sema::AD_Unavailable,
196                                   D, Message, Loc, UnknownObjCClass, ObjCPDecl,
197                                   ObjCPropertyAccess);
198       break;
199 
200     }
201     return Result;
202 }
203 
204 /// \brief Emit a note explaining that this function is deleted.
205 void Sema::NoteDeletedFunction(FunctionDecl *Decl) {
206   assert(Decl->isDeleted());
207 
208   CXXMethodDecl *Method = dyn_cast<CXXMethodDecl>(Decl);
209 
210   if (Method && Method->isDeleted() && Method->isDefaulted()) {
211     // If the method was explicitly defaulted, point at that declaration.
212     if (!Method->isImplicit())
213       Diag(Decl->getLocation(), diag::note_implicitly_deleted);
214 
215     // Try to diagnose why this special member function was implicitly
216     // deleted. This might fail, if that reason no longer applies.
217     CXXSpecialMember CSM = getSpecialMember(Method);
218     if (CSM != CXXInvalid)
219       ShouldDeleteSpecialMember(Method, CSM, /*Diagnose=*/true);
220 
221     return;
222   }
223 
224   if (CXXConstructorDecl *CD = dyn_cast<CXXConstructorDecl>(Decl)) {
225     if (CXXConstructorDecl *BaseCD =
226             const_cast<CXXConstructorDecl*>(CD->getInheritedConstructor())) {
227       Diag(Decl->getLocation(), diag::note_inherited_deleted_here);
228       if (BaseCD->isDeleted()) {
229         NoteDeletedFunction(BaseCD);
230       } else {
231         // FIXME: An explanation of why exactly it can't be inherited
232         // would be nice.
233         Diag(BaseCD->getLocation(), diag::note_cannot_inherit);
234       }
235       return;
236     }
237   }
238 
239   Diag(Decl->getLocation(), diag::note_availability_specified_here)
240     << Decl << true;
241 }
242 
243 /// \brief Determine whether a FunctionDecl was ever declared with an
244 /// explicit storage class.
245 static bool hasAnyExplicitStorageClass(const FunctionDecl *D) {
246   for (auto I : D->redecls()) {
247     if (I->getStorageClass() != SC_None)
248       return true;
249   }
250   return false;
251 }
252 
253 /// \brief Check whether we're in an extern inline function and referring to a
254 /// variable or function with internal linkage (C11 6.7.4p3).
255 ///
256 /// This is only a warning because we used to silently accept this code, but
257 /// in many cases it will not behave correctly. This is not enabled in C++ mode
258 /// because the restriction language is a bit weaker (C++11 [basic.def.odr]p6)
259 /// and so while there may still be user mistakes, most of the time we can't
260 /// prove that there are errors.
261 static void diagnoseUseOfInternalDeclInInlineFunction(Sema &S,
262                                                       const NamedDecl *D,
263                                                       SourceLocation Loc) {
264   // This is disabled under C++; there are too many ways for this to fire in
265   // contexts where the warning is a false positive, or where it is technically
266   // correct but benign.
267   if (S.getLangOpts().CPlusPlus)
268     return;
269 
270   // Check if this is an inlined function or method.
271   FunctionDecl *Current = S.getCurFunctionDecl();
272   if (!Current)
273     return;
274   if (!Current->isInlined())
275     return;
276   if (!Current->isExternallyVisible())
277     return;
278 
279   // Check if the decl has internal linkage.
280   if (D->getFormalLinkage() != InternalLinkage)
281     return;
282 
283   // Downgrade from ExtWarn to Extension if
284   //  (1) the supposedly external inline function is in the main file,
285   //      and probably won't be included anywhere else.
286   //  (2) the thing we're referencing is a pure function.
287   //  (3) the thing we're referencing is another inline function.
288   // This last can give us false negatives, but it's better than warning on
289   // wrappers for simple C library functions.
290   const FunctionDecl *UsedFn = dyn_cast<FunctionDecl>(D);
291   bool DowngradeWarning = S.getSourceManager().isInMainFile(Loc);
292   if (!DowngradeWarning && UsedFn)
293     DowngradeWarning = UsedFn->isInlined() || UsedFn->hasAttr<ConstAttr>();
294 
295   S.Diag(Loc, DowngradeWarning ? diag::ext_internal_in_extern_inline_quiet
296                                : diag::ext_internal_in_extern_inline)
297     << /*IsVar=*/!UsedFn << D;
298 
299   S.MaybeSuggestAddingStaticToDecl(Current);
300 
301   S.Diag(D->getCanonicalDecl()->getLocation(), diag::note_entity_declared_at)
302       << D;
303 }
304 
305 void Sema::MaybeSuggestAddingStaticToDecl(const FunctionDecl *Cur) {
306   const FunctionDecl *First = Cur->getFirstDecl();
307 
308   // Suggest "static" on the function, if possible.
309   if (!hasAnyExplicitStorageClass(First)) {
310     SourceLocation DeclBegin = First->getSourceRange().getBegin();
311     Diag(DeclBegin, diag::note_convert_inline_to_static)
312       << Cur << FixItHint::CreateInsertion(DeclBegin, "static ");
313   }
314 }
315 
316 /// \brief Determine whether the use of this declaration is valid, and
317 /// emit any corresponding diagnostics.
318 ///
319 /// This routine diagnoses various problems with referencing
320 /// declarations that can occur when using a declaration. For example,
321 /// it might warn if a deprecated or unavailable declaration is being
322 /// used, or produce an error (and return true) if a C++0x deleted
323 /// function is being used.
324 ///
325 /// \returns true if there was an error (this declaration cannot be
326 /// referenced), false otherwise.
327 ///
328 bool Sema::DiagnoseUseOfDecl(NamedDecl *D, SourceLocation Loc,
329                              const ObjCInterfaceDecl *UnknownObjCClass,
330                              bool ObjCPropertyAccess) {
331   if (getLangOpts().CPlusPlus && isa<FunctionDecl>(D)) {
332     // If there were any diagnostics suppressed by template argument deduction,
333     // emit them now.
334     auto Pos = SuppressedDiagnostics.find(D->getCanonicalDecl());
335     if (Pos != SuppressedDiagnostics.end()) {
336       for (const PartialDiagnosticAt &Suppressed : Pos->second)
337         Diag(Suppressed.first, Suppressed.second);
338 
339       // Clear out the list of suppressed diagnostics, so that we don't emit
340       // them again for this specialization. However, we don't obsolete this
341       // entry from the table, because we want to avoid ever emitting these
342       // diagnostics again.
343       Pos->second.clear();
344     }
345 
346     // C++ [basic.start.main]p3:
347     //   The function 'main' shall not be used within a program.
348     if (cast<FunctionDecl>(D)->isMain())
349       Diag(Loc, diag::ext_main_used);
350   }
351 
352   // See if this is an auto-typed variable whose initializer we are parsing.
353   if (ParsingInitForAutoVars.count(D)) {
354     const AutoType *AT = cast<VarDecl>(D)->getType()->getContainedAutoType();
355 
356     Diag(Loc, diag::err_auto_variable_cannot_appear_in_own_initializer)
357       << D->getDeclName() << (unsigned)AT->getKeyword();
358     return true;
359   }
360 
361   // See if this is a deleted function.
362   if (FunctionDecl *FD = dyn_cast<FunctionDecl>(D)) {
363     if (FD->isDeleted()) {
364       Diag(Loc, diag::err_deleted_function_use);
365       NoteDeletedFunction(FD);
366       return true;
367     }
368 
369     // If the function has a deduced return type, and we can't deduce it,
370     // then we can't use it either.
371     if (getLangOpts().CPlusPlus14 && FD->getReturnType()->isUndeducedType() &&
372         DeduceReturnType(FD, Loc))
373       return true;
374   }
375 
376   // [OpenMP 4.0], 2.15 declare reduction Directive, Restrictions
377   // Only the variables omp_in and omp_out are allowed in the combiner.
378   // Only the variables omp_priv and omp_orig are allowed in the
379   // initializer-clause.
380   auto *DRD = dyn_cast<OMPDeclareReductionDecl>(CurContext);
381   if (LangOpts.OpenMP && DRD && !CurContext->containsDecl(D) &&
382       isa<VarDecl>(D)) {
383     Diag(Loc, diag::err_omp_wrong_var_in_declare_reduction)
384         << getCurFunction()->HasOMPDeclareReductionCombiner;
385     Diag(D->getLocation(), diag::note_entity_declared_at) << D;
386     return true;
387   }
388   DiagnoseAvailabilityOfDecl(*this, D, Loc, UnknownObjCClass,
389                              ObjCPropertyAccess);
390 
391   DiagnoseUnusedOfDecl(*this, D, Loc);
392 
393   diagnoseUseOfInternalDeclInInlineFunction(*this, D, Loc);
394 
395   return false;
396 }
397 
398 /// \brief Retrieve the message suffix that should be added to a
399 /// diagnostic complaining about the given function being deleted or
400 /// unavailable.
401 std::string Sema::getDeletedOrUnavailableSuffix(const FunctionDecl *FD) {
402   std::string Message;
403   if (FD->getAvailability(&Message))
404     return ": " + Message;
405 
406   return std::string();
407 }
408 
409 /// DiagnoseSentinelCalls - This routine checks whether a call or
410 /// message-send is to a declaration with the sentinel attribute, and
411 /// if so, it checks that the requirements of the sentinel are
412 /// satisfied.
413 void Sema::DiagnoseSentinelCalls(NamedDecl *D, SourceLocation Loc,
414                                  ArrayRef<Expr *> Args) {
415   const SentinelAttr *attr = D->getAttr<SentinelAttr>();
416   if (!attr)
417     return;
418 
419   // The number of formal parameters of the declaration.
420   unsigned numFormalParams;
421 
422   // The kind of declaration.  This is also an index into a %select in
423   // the diagnostic.
424   enum CalleeType { CT_Function, CT_Method, CT_Block } calleeType;
425 
426   if (ObjCMethodDecl *MD = dyn_cast<ObjCMethodDecl>(D)) {
427     numFormalParams = MD->param_size();
428     calleeType = CT_Method;
429   } else if (FunctionDecl *FD = dyn_cast<FunctionDecl>(D)) {
430     numFormalParams = FD->param_size();
431     calleeType = CT_Function;
432   } else if (isa<VarDecl>(D)) {
433     QualType type = cast<ValueDecl>(D)->getType();
434     const FunctionType *fn = nullptr;
435     if (const PointerType *ptr = type->getAs<PointerType>()) {
436       fn = ptr->getPointeeType()->getAs<FunctionType>();
437       if (!fn) return;
438       calleeType = CT_Function;
439     } else if (const BlockPointerType *ptr = type->getAs<BlockPointerType>()) {
440       fn = ptr->getPointeeType()->castAs<FunctionType>();
441       calleeType = CT_Block;
442     } else {
443       return;
444     }
445 
446     if (const FunctionProtoType *proto = dyn_cast<FunctionProtoType>(fn)) {
447       numFormalParams = proto->getNumParams();
448     } else {
449       numFormalParams = 0;
450     }
451   } else {
452     return;
453   }
454 
455   // "nullPos" is the number of formal parameters at the end which
456   // effectively count as part of the variadic arguments.  This is
457   // useful if you would prefer to not have *any* formal parameters,
458   // but the language forces you to have at least one.
459   unsigned nullPos = attr->getNullPos();
460   assert((nullPos == 0 || nullPos == 1) && "invalid null position on sentinel");
461   numFormalParams = (nullPos > numFormalParams ? 0 : numFormalParams - nullPos);
462 
463   // The number of arguments which should follow the sentinel.
464   unsigned numArgsAfterSentinel = attr->getSentinel();
465 
466   // If there aren't enough arguments for all the formal parameters,
467   // the sentinel, and the args after the sentinel, complain.
468   if (Args.size() < numFormalParams + numArgsAfterSentinel + 1) {
469     Diag(Loc, diag::warn_not_enough_argument) << D->getDeclName();
470     Diag(D->getLocation(), diag::note_sentinel_here) << int(calleeType);
471     return;
472   }
473 
474   // Otherwise, find the sentinel expression.
475   Expr *sentinelExpr = Args[Args.size() - numArgsAfterSentinel - 1];
476   if (!sentinelExpr) return;
477   if (sentinelExpr->isValueDependent()) return;
478   if (Context.isSentinelNullExpr(sentinelExpr)) return;
479 
480   // Pick a reasonable string to insert.  Optimistically use 'nil', 'nullptr',
481   // or 'NULL' if those are actually defined in the context.  Only use
482   // 'nil' for ObjC methods, where it's much more likely that the
483   // variadic arguments form a list of object pointers.
484   SourceLocation MissingNilLoc
485     = getLocForEndOfToken(sentinelExpr->getLocEnd());
486   std::string NullValue;
487   if (calleeType == CT_Method && PP.isMacroDefined("nil"))
488     NullValue = "nil";
489   else if (getLangOpts().CPlusPlus11)
490     NullValue = "nullptr";
491   else if (PP.isMacroDefined("NULL"))
492     NullValue = "NULL";
493   else
494     NullValue = "(void*) 0";
495 
496   if (MissingNilLoc.isInvalid())
497     Diag(Loc, diag::warn_missing_sentinel) << int(calleeType);
498   else
499     Diag(MissingNilLoc, diag::warn_missing_sentinel)
500       << int(calleeType)
501       << FixItHint::CreateInsertion(MissingNilLoc, ", " + NullValue);
502   Diag(D->getLocation(), diag::note_sentinel_here) << int(calleeType);
503 }
504 
505 SourceRange Sema::getExprRange(Expr *E) const {
506   return E ? E->getSourceRange() : SourceRange();
507 }
508 
509 //===----------------------------------------------------------------------===//
510 //  Standard Promotions and Conversions
511 //===----------------------------------------------------------------------===//
512 
513 /// DefaultFunctionArrayConversion (C99 6.3.2.1p3, C99 6.3.2.1p4).
514 ExprResult Sema::DefaultFunctionArrayConversion(Expr *E, bool Diagnose) {
515   // Handle any placeholder expressions which made it here.
516   if (E->getType()->isPlaceholderType()) {
517     ExprResult result = CheckPlaceholderExpr(E);
518     if (result.isInvalid()) return ExprError();
519     E = result.get();
520   }
521 
522   QualType Ty = E->getType();
523   assert(!Ty.isNull() && "DefaultFunctionArrayConversion - missing type");
524 
525   if (Ty->isFunctionType()) {
526     // If we are here, we are not calling a function but taking
527     // its address (which is not allowed in OpenCL v1.0 s6.8.a.3).
528     if (getLangOpts().OpenCL) {
529       if (Diagnose)
530         Diag(E->getExprLoc(), diag::err_opencl_taking_function_address);
531       return ExprError();
532     }
533 
534     if (auto *DRE = dyn_cast<DeclRefExpr>(E->IgnoreParenCasts()))
535       if (auto *FD = dyn_cast<FunctionDecl>(DRE->getDecl()))
536         if (!checkAddressOfFunctionIsAvailable(FD, Diagnose, E->getExprLoc()))
537           return ExprError();
538 
539     E = ImpCastExprToType(E, Context.getPointerType(Ty),
540                           CK_FunctionToPointerDecay).get();
541   } else if (Ty->isArrayType()) {
542     // In C90 mode, arrays only promote to pointers if the array expression is
543     // an lvalue.  The relevant legalese is C90 6.2.2.1p3: "an lvalue that has
544     // type 'array of type' is converted to an expression that has type 'pointer
545     // to type'...".  In C99 this was changed to: C99 6.3.2.1p3: "an expression
546     // that has type 'array of type' ...".  The relevant change is "an lvalue"
547     // (C90) to "an expression" (C99).
548     //
549     // C++ 4.2p1:
550     // An lvalue or rvalue of type "array of N T" or "array of unknown bound of
551     // T" can be converted to an rvalue of type "pointer to T".
552     //
553     if (getLangOpts().C99 || getLangOpts().CPlusPlus || E->isLValue())
554       E = ImpCastExprToType(E, Context.getArrayDecayedType(Ty),
555                             CK_ArrayToPointerDecay).get();
556   }
557   return E;
558 }
559 
560 static void CheckForNullPointerDereference(Sema &S, Expr *E) {
561   // Check to see if we are dereferencing a null pointer.  If so,
562   // and if not volatile-qualified, this is undefined behavior that the
563   // optimizer will delete, so warn about it.  People sometimes try to use this
564   // to get a deterministic trap and are surprised by clang's behavior.  This
565   // only handles the pattern "*null", which is a very syntactic check.
566   if (UnaryOperator *UO = dyn_cast<UnaryOperator>(E->IgnoreParenCasts()))
567     if (UO->getOpcode() == UO_Deref &&
568         UO->getSubExpr()->IgnoreParenCasts()->
569           isNullPointerConstant(S.Context, Expr::NPC_ValueDependentIsNotNull) &&
570         !UO->getType().isVolatileQualified()) {
571     S.DiagRuntimeBehavior(UO->getOperatorLoc(), UO,
572                           S.PDiag(diag::warn_indirection_through_null)
573                             << UO->getSubExpr()->getSourceRange());
574     S.DiagRuntimeBehavior(UO->getOperatorLoc(), UO,
575                         S.PDiag(diag::note_indirection_through_null));
576   }
577 }
578 
579 static void DiagnoseDirectIsaAccess(Sema &S, const ObjCIvarRefExpr *OIRE,
580                                     SourceLocation AssignLoc,
581                                     const Expr* RHS) {
582   const ObjCIvarDecl *IV = OIRE->getDecl();
583   if (!IV)
584     return;
585 
586   DeclarationName MemberName = IV->getDeclName();
587   IdentifierInfo *Member = MemberName.getAsIdentifierInfo();
588   if (!Member || !Member->isStr("isa"))
589     return;
590 
591   const Expr *Base = OIRE->getBase();
592   QualType BaseType = Base->getType();
593   if (OIRE->isArrow())
594     BaseType = BaseType->getPointeeType();
595   if (const ObjCObjectType *OTy = BaseType->getAs<ObjCObjectType>())
596     if (ObjCInterfaceDecl *IDecl = OTy->getInterface()) {
597       ObjCInterfaceDecl *ClassDeclared = nullptr;
598       ObjCIvarDecl *IV = IDecl->lookupInstanceVariable(Member, ClassDeclared);
599       if (!ClassDeclared->getSuperClass()
600           && (*ClassDeclared->ivar_begin()) == IV) {
601         if (RHS) {
602           NamedDecl *ObjectSetClass =
603             S.LookupSingleName(S.TUScope,
604                                &S.Context.Idents.get("object_setClass"),
605                                SourceLocation(), S.LookupOrdinaryName);
606           if (ObjectSetClass) {
607             SourceLocation RHSLocEnd = S.getLocForEndOfToken(RHS->getLocEnd());
608             S.Diag(OIRE->getExprLoc(), diag::warn_objc_isa_assign) <<
609             FixItHint::CreateInsertion(OIRE->getLocStart(), "object_setClass(") <<
610             FixItHint::CreateReplacement(SourceRange(OIRE->getOpLoc(),
611                                                      AssignLoc), ",") <<
612             FixItHint::CreateInsertion(RHSLocEnd, ")");
613           }
614           else
615             S.Diag(OIRE->getLocation(), diag::warn_objc_isa_assign);
616         } else {
617           NamedDecl *ObjectGetClass =
618             S.LookupSingleName(S.TUScope,
619                                &S.Context.Idents.get("object_getClass"),
620                                SourceLocation(), S.LookupOrdinaryName);
621           if (ObjectGetClass)
622             S.Diag(OIRE->getExprLoc(), diag::warn_objc_isa_use) <<
623             FixItHint::CreateInsertion(OIRE->getLocStart(), "object_getClass(") <<
624             FixItHint::CreateReplacement(
625                                          SourceRange(OIRE->getOpLoc(),
626                                                      OIRE->getLocEnd()), ")");
627           else
628             S.Diag(OIRE->getLocation(), diag::warn_objc_isa_use);
629         }
630         S.Diag(IV->getLocation(), diag::note_ivar_decl);
631       }
632     }
633 }
634 
635 ExprResult Sema::DefaultLvalueConversion(Expr *E) {
636   // Handle any placeholder expressions which made it here.
637   if (E->getType()->isPlaceholderType()) {
638     ExprResult result = CheckPlaceholderExpr(E);
639     if (result.isInvalid()) return ExprError();
640     E = result.get();
641   }
642 
643   // C++ [conv.lval]p1:
644   //   A glvalue of a non-function, non-array type T can be
645   //   converted to a prvalue.
646   if (!E->isGLValue()) return E;
647 
648   QualType T = E->getType();
649   assert(!T.isNull() && "r-value conversion on typeless expression?");
650 
651   // We don't want to throw lvalue-to-rvalue casts on top of
652   // expressions of certain types in C++.
653   if (getLangOpts().CPlusPlus &&
654       (E->getType() == Context.OverloadTy ||
655        T->isDependentType() ||
656        T->isRecordType()))
657     return E;
658 
659   // The C standard is actually really unclear on this point, and
660   // DR106 tells us what the result should be but not why.  It's
661   // generally best to say that void types just doesn't undergo
662   // lvalue-to-rvalue at all.  Note that expressions of unqualified
663   // 'void' type are never l-values, but qualified void can be.
664   if (T->isVoidType())
665     return E;
666 
667   // OpenCL usually rejects direct accesses to values of 'half' type.
668   if (getLangOpts().OpenCL && !getOpenCLOptions().cl_khr_fp16 &&
669       T->isHalfType()) {
670     Diag(E->getExprLoc(), diag::err_opencl_half_load_store)
671       << 0 << T;
672     return ExprError();
673   }
674 
675   CheckForNullPointerDereference(*this, E);
676   if (const ObjCIsaExpr *OISA = dyn_cast<ObjCIsaExpr>(E->IgnoreParenCasts())) {
677     NamedDecl *ObjectGetClass = LookupSingleName(TUScope,
678                                      &Context.Idents.get("object_getClass"),
679                                      SourceLocation(), LookupOrdinaryName);
680     if (ObjectGetClass)
681       Diag(E->getExprLoc(), diag::warn_objc_isa_use) <<
682         FixItHint::CreateInsertion(OISA->getLocStart(), "object_getClass(") <<
683         FixItHint::CreateReplacement(
684                     SourceRange(OISA->getOpLoc(), OISA->getIsaMemberLoc()), ")");
685     else
686       Diag(E->getExprLoc(), diag::warn_objc_isa_use);
687   }
688   else if (const ObjCIvarRefExpr *OIRE =
689             dyn_cast<ObjCIvarRefExpr>(E->IgnoreParenCasts()))
690     DiagnoseDirectIsaAccess(*this, OIRE, SourceLocation(), /* Expr*/nullptr);
691 
692   // C++ [conv.lval]p1:
693   //   [...] If T is a non-class type, the type of the prvalue is the
694   //   cv-unqualified version of T. Otherwise, the type of the
695   //   rvalue is T.
696   //
697   // C99 6.3.2.1p2:
698   //   If the lvalue has qualified type, the value has the unqualified
699   //   version of the type of the lvalue; otherwise, the value has the
700   //   type of the lvalue.
701   if (T.hasQualifiers())
702     T = T.getUnqualifiedType();
703 
704   // Under the MS ABI, lock down the inheritance model now.
705   if (T->isMemberPointerType() &&
706       Context.getTargetInfo().getCXXABI().isMicrosoft())
707     (void)isCompleteType(E->getExprLoc(), T);
708 
709   UpdateMarkingForLValueToRValue(E);
710 
711   // Loading a __weak object implicitly retains the value, so we need a cleanup to
712   // balance that.
713   if (getLangOpts().ObjCAutoRefCount &&
714       E->getType().getObjCLifetime() == Qualifiers::OCL_Weak)
715     ExprNeedsCleanups = true;
716 
717   ExprResult Res = ImplicitCastExpr::Create(Context, T, CK_LValueToRValue, E,
718                                             nullptr, VK_RValue);
719 
720   // C11 6.3.2.1p2:
721   //   ... if the lvalue has atomic type, the value has the non-atomic version
722   //   of the type of the lvalue ...
723   if (const AtomicType *Atomic = T->getAs<AtomicType>()) {
724     T = Atomic->getValueType().getUnqualifiedType();
725     Res = ImplicitCastExpr::Create(Context, T, CK_AtomicToNonAtomic, Res.get(),
726                                    nullptr, VK_RValue);
727   }
728 
729   return Res;
730 }
731 
732 ExprResult Sema::DefaultFunctionArrayLvalueConversion(Expr *E, bool Diagnose) {
733   ExprResult Res = DefaultFunctionArrayConversion(E, Diagnose);
734   if (Res.isInvalid())
735     return ExprError();
736   Res = DefaultLvalueConversion(Res.get());
737   if (Res.isInvalid())
738     return ExprError();
739   return Res;
740 }
741 
742 /// CallExprUnaryConversions - a special case of an unary conversion
743 /// performed on a function designator of a call expression.
744 ExprResult Sema::CallExprUnaryConversions(Expr *E) {
745   QualType Ty = E->getType();
746   ExprResult Res = E;
747   // Only do implicit cast for a function type, but not for a pointer
748   // to function type.
749   if (Ty->isFunctionType()) {
750     Res = ImpCastExprToType(E, Context.getPointerType(Ty),
751                             CK_FunctionToPointerDecay).get();
752     if (Res.isInvalid())
753       return ExprError();
754   }
755   Res = DefaultLvalueConversion(Res.get());
756   if (Res.isInvalid())
757     return ExprError();
758   return Res.get();
759 }
760 
761 /// UsualUnaryConversions - Performs various conversions that are common to most
762 /// operators (C99 6.3). The conversions of array and function types are
763 /// sometimes suppressed. For example, the array->pointer conversion doesn't
764 /// apply if the array is an argument to the sizeof or address (&) operators.
765 /// In these instances, this routine should *not* be called.
766 ExprResult Sema::UsualUnaryConversions(Expr *E) {
767   // First, convert to an r-value.
768   ExprResult Res = DefaultFunctionArrayLvalueConversion(E);
769   if (Res.isInvalid())
770     return ExprError();
771   E = Res.get();
772 
773   QualType Ty = E->getType();
774   assert(!Ty.isNull() && "UsualUnaryConversions - missing type");
775 
776   // Half FP have to be promoted to float unless it is natively supported
777   if (Ty->isHalfType() && !getLangOpts().NativeHalfType)
778     return ImpCastExprToType(Res.get(), Context.FloatTy, CK_FloatingCast);
779 
780   // Try to perform integral promotions if the object has a theoretically
781   // promotable type.
782   if (Ty->isIntegralOrUnscopedEnumerationType()) {
783     // C99 6.3.1.1p2:
784     //
785     //   The following may be used in an expression wherever an int or
786     //   unsigned int may be used:
787     //     - an object or expression with an integer type whose integer
788     //       conversion rank is less than or equal to the rank of int
789     //       and unsigned int.
790     //     - A bit-field of type _Bool, int, signed int, or unsigned int.
791     //
792     //   If an int can represent all values of the original type, the
793     //   value is converted to an int; otherwise, it is converted to an
794     //   unsigned int. These are called the integer promotions. All
795     //   other types are unchanged by the integer promotions.
796 
797     QualType PTy = Context.isPromotableBitField(E);
798     if (!PTy.isNull()) {
799       E = ImpCastExprToType(E, PTy, CK_IntegralCast).get();
800       return E;
801     }
802     if (Ty->isPromotableIntegerType()) {
803       QualType PT = Context.getPromotedIntegerType(Ty);
804       E = ImpCastExprToType(E, PT, CK_IntegralCast).get();
805       return E;
806     }
807   }
808   return E;
809 }
810 
811 /// DefaultArgumentPromotion (C99 6.5.2.2p6). Used for function calls that
812 /// do not have a prototype. Arguments that have type float or __fp16
813 /// are promoted to double. All other argument types are converted by
814 /// UsualUnaryConversions().
815 ExprResult Sema::DefaultArgumentPromotion(Expr *E) {
816   QualType Ty = E->getType();
817   assert(!Ty.isNull() && "DefaultArgumentPromotion - missing type");
818 
819   ExprResult Res = UsualUnaryConversions(E);
820   if (Res.isInvalid())
821     return ExprError();
822   E = Res.get();
823 
824   // If this is a 'float' or '__fp16' (CVR qualified or typedef) promote to
825   // double.
826   const BuiltinType *BTy = Ty->getAs<BuiltinType>();
827   if (BTy && (BTy->getKind() == BuiltinType::Half ||
828               BTy->getKind() == BuiltinType::Float))
829     E = ImpCastExprToType(E, Context.DoubleTy, CK_FloatingCast).get();
830 
831   // C++ performs lvalue-to-rvalue conversion as a default argument
832   // promotion, even on class types, but note:
833   //   C++11 [conv.lval]p2:
834   //     When an lvalue-to-rvalue conversion occurs in an unevaluated
835   //     operand or a subexpression thereof the value contained in the
836   //     referenced object is not accessed. Otherwise, if the glvalue
837   //     has a class type, the conversion copy-initializes a temporary
838   //     of type T from the glvalue and the result of the conversion
839   //     is a prvalue for the temporary.
840   // FIXME: add some way to gate this entire thing for correctness in
841   // potentially potentially evaluated contexts.
842   if (getLangOpts().CPlusPlus && E->isGLValue() && !isUnevaluatedContext()) {
843     ExprResult Temp = PerformCopyInitialization(
844                        InitializedEntity::InitializeTemporary(E->getType()),
845                                                 E->getExprLoc(), E);
846     if (Temp.isInvalid())
847       return ExprError();
848     E = Temp.get();
849   }
850 
851   return E;
852 }
853 
854 /// Determine the degree of POD-ness for an expression.
855 /// Incomplete types are considered POD, since this check can be performed
856 /// when we're in an unevaluated context.
857 Sema::VarArgKind Sema::isValidVarArgType(const QualType &Ty) {
858   if (Ty->isIncompleteType()) {
859     // C++11 [expr.call]p7:
860     //   After these conversions, if the argument does not have arithmetic,
861     //   enumeration, pointer, pointer to member, or class type, the program
862     //   is ill-formed.
863     //
864     // Since we've already performed array-to-pointer and function-to-pointer
865     // decay, the only such type in C++ is cv void. This also handles
866     // initializer lists as variadic arguments.
867     if (Ty->isVoidType())
868       return VAK_Invalid;
869 
870     if (Ty->isObjCObjectType())
871       return VAK_Invalid;
872     return VAK_Valid;
873   }
874 
875   if (Ty.isCXX98PODType(Context))
876     return VAK_Valid;
877 
878   // C++11 [expr.call]p7:
879   //   Passing a potentially-evaluated argument of class type (Clause 9)
880   //   having a non-trivial copy constructor, a non-trivial move constructor,
881   //   or a non-trivial destructor, with no corresponding parameter,
882   //   is conditionally-supported with implementation-defined semantics.
883   if (getLangOpts().CPlusPlus11 && !Ty->isDependentType())
884     if (CXXRecordDecl *Record = Ty->getAsCXXRecordDecl())
885       if (!Record->hasNonTrivialCopyConstructor() &&
886           !Record->hasNonTrivialMoveConstructor() &&
887           !Record->hasNonTrivialDestructor())
888         return VAK_ValidInCXX11;
889 
890   if (getLangOpts().ObjCAutoRefCount && Ty->isObjCLifetimeType())
891     return VAK_Valid;
892 
893   if (Ty->isObjCObjectType())
894     return VAK_Invalid;
895 
896   if (getLangOpts().MSVCCompat)
897     return VAK_MSVCUndefined;
898 
899   // FIXME: In C++11, these cases are conditionally-supported, meaning we're
900   // permitted to reject them. We should consider doing so.
901   return VAK_Undefined;
902 }
903 
904 void Sema::checkVariadicArgument(const Expr *E, VariadicCallType CT) {
905   // Don't allow one to pass an Objective-C interface to a vararg.
906   const QualType &Ty = E->getType();
907   VarArgKind VAK = isValidVarArgType(Ty);
908 
909   // Complain about passing non-POD types through varargs.
910   switch (VAK) {
911   case VAK_ValidInCXX11:
912     DiagRuntimeBehavior(
913         E->getLocStart(), nullptr,
914         PDiag(diag::warn_cxx98_compat_pass_non_pod_arg_to_vararg)
915           << Ty << CT);
916     // Fall through.
917   case VAK_Valid:
918     if (Ty->isRecordType()) {
919       // This is unlikely to be what the user intended. If the class has a
920       // 'c_str' member function, the user probably meant to call that.
921       DiagRuntimeBehavior(E->getLocStart(), nullptr,
922                           PDiag(diag::warn_pass_class_arg_to_vararg)
923                             << Ty << CT << hasCStrMethod(E) << ".c_str()");
924     }
925     break;
926 
927   case VAK_Undefined:
928   case VAK_MSVCUndefined:
929     DiagRuntimeBehavior(
930         E->getLocStart(), nullptr,
931         PDiag(diag::warn_cannot_pass_non_pod_arg_to_vararg)
932           << getLangOpts().CPlusPlus11 << Ty << CT);
933     break;
934 
935   case VAK_Invalid:
936     if (Ty->isObjCObjectType())
937       DiagRuntimeBehavior(
938           E->getLocStart(), nullptr,
939           PDiag(diag::err_cannot_pass_objc_interface_to_vararg)
940             << Ty << CT);
941     else
942       Diag(E->getLocStart(), diag::err_cannot_pass_to_vararg)
943         << isa<InitListExpr>(E) << Ty << CT;
944     break;
945   }
946 }
947 
948 /// DefaultVariadicArgumentPromotion - Like DefaultArgumentPromotion, but
949 /// will create a trap if the resulting type is not a POD type.
950 ExprResult Sema::DefaultVariadicArgumentPromotion(Expr *E, VariadicCallType CT,
951                                                   FunctionDecl *FDecl) {
952   if (const BuiltinType *PlaceholderTy = E->getType()->getAsPlaceholderType()) {
953     // Strip the unbridged-cast placeholder expression off, if applicable.
954     if (PlaceholderTy->getKind() == BuiltinType::ARCUnbridgedCast &&
955         (CT == VariadicMethod ||
956          (FDecl && FDecl->hasAttr<CFAuditedTransferAttr>()))) {
957       E = stripARCUnbridgedCast(E);
958 
959     // Otherwise, do normal placeholder checking.
960     } else {
961       ExprResult ExprRes = CheckPlaceholderExpr(E);
962       if (ExprRes.isInvalid())
963         return ExprError();
964       E = ExprRes.get();
965     }
966   }
967 
968   ExprResult ExprRes = DefaultArgumentPromotion(E);
969   if (ExprRes.isInvalid())
970     return ExprError();
971   E = ExprRes.get();
972 
973   // Diagnostics regarding non-POD argument types are
974   // emitted along with format string checking in Sema::CheckFunctionCall().
975   if (isValidVarArgType(E->getType()) == VAK_Undefined) {
976     // Turn this into a trap.
977     CXXScopeSpec SS;
978     SourceLocation TemplateKWLoc;
979     UnqualifiedId Name;
980     Name.setIdentifier(PP.getIdentifierInfo("__builtin_trap"),
981                        E->getLocStart());
982     ExprResult TrapFn = ActOnIdExpression(TUScope, SS, TemplateKWLoc,
983                                           Name, true, false);
984     if (TrapFn.isInvalid())
985       return ExprError();
986 
987     ExprResult Call = ActOnCallExpr(TUScope, TrapFn.get(),
988                                     E->getLocStart(), None,
989                                     E->getLocEnd());
990     if (Call.isInvalid())
991       return ExprError();
992 
993     ExprResult Comma = ActOnBinOp(TUScope, E->getLocStart(), tok::comma,
994                                   Call.get(), E);
995     if (Comma.isInvalid())
996       return ExprError();
997     return Comma.get();
998   }
999 
1000   if (!getLangOpts().CPlusPlus &&
1001       RequireCompleteType(E->getExprLoc(), E->getType(),
1002                           diag::err_call_incomplete_argument))
1003     return ExprError();
1004 
1005   return E;
1006 }
1007 
1008 /// \brief Converts an integer to complex float type.  Helper function of
1009 /// UsualArithmeticConversions()
1010 ///
1011 /// \return false if the integer expression is an integer type and is
1012 /// successfully converted to the complex type.
1013 static bool handleIntegerToComplexFloatConversion(Sema &S, ExprResult &IntExpr,
1014                                                   ExprResult &ComplexExpr,
1015                                                   QualType IntTy,
1016                                                   QualType ComplexTy,
1017                                                   bool SkipCast) {
1018   if (IntTy->isComplexType() || IntTy->isRealFloatingType()) return true;
1019   if (SkipCast) return false;
1020   if (IntTy->isIntegerType()) {
1021     QualType fpTy = cast<ComplexType>(ComplexTy)->getElementType();
1022     IntExpr = S.ImpCastExprToType(IntExpr.get(), fpTy, CK_IntegralToFloating);
1023     IntExpr = S.ImpCastExprToType(IntExpr.get(), ComplexTy,
1024                                   CK_FloatingRealToComplex);
1025   } else {
1026     assert(IntTy->isComplexIntegerType());
1027     IntExpr = S.ImpCastExprToType(IntExpr.get(), ComplexTy,
1028                                   CK_IntegralComplexToFloatingComplex);
1029   }
1030   return false;
1031 }
1032 
1033 /// \brief Handle arithmetic conversion with complex types.  Helper function of
1034 /// UsualArithmeticConversions()
1035 static QualType handleComplexFloatConversion(Sema &S, ExprResult &LHS,
1036                                              ExprResult &RHS, QualType LHSType,
1037                                              QualType RHSType,
1038                                              bool IsCompAssign) {
1039   // if we have an integer operand, the result is the complex type.
1040   if (!handleIntegerToComplexFloatConversion(S, RHS, LHS, RHSType, LHSType,
1041                                              /*skipCast*/false))
1042     return LHSType;
1043   if (!handleIntegerToComplexFloatConversion(S, LHS, RHS, LHSType, RHSType,
1044                                              /*skipCast*/IsCompAssign))
1045     return RHSType;
1046 
1047   // This handles complex/complex, complex/float, or float/complex.
1048   // When both operands are complex, the shorter operand is converted to the
1049   // type of the longer, and that is the type of the result. This corresponds
1050   // to what is done when combining two real floating-point operands.
1051   // The fun begins when size promotion occur across type domains.
1052   // From H&S 6.3.4: When one operand is complex and the other is a real
1053   // floating-point type, the less precise type is converted, within it's
1054   // real or complex domain, to the precision of the other type. For example,
1055   // when combining a "long double" with a "double _Complex", the
1056   // "double _Complex" is promoted to "long double _Complex".
1057 
1058   // Compute the rank of the two types, regardless of whether they are complex.
1059   int Order = S.Context.getFloatingTypeOrder(LHSType, RHSType);
1060 
1061   auto *LHSComplexType = dyn_cast<ComplexType>(LHSType);
1062   auto *RHSComplexType = dyn_cast<ComplexType>(RHSType);
1063   QualType LHSElementType =
1064       LHSComplexType ? LHSComplexType->getElementType() : LHSType;
1065   QualType RHSElementType =
1066       RHSComplexType ? RHSComplexType->getElementType() : RHSType;
1067 
1068   QualType ResultType = S.Context.getComplexType(LHSElementType);
1069   if (Order < 0) {
1070     // Promote the precision of the LHS if not an assignment.
1071     ResultType = S.Context.getComplexType(RHSElementType);
1072     if (!IsCompAssign) {
1073       if (LHSComplexType)
1074         LHS =
1075             S.ImpCastExprToType(LHS.get(), ResultType, CK_FloatingComplexCast);
1076       else
1077         LHS = S.ImpCastExprToType(LHS.get(), RHSElementType, CK_FloatingCast);
1078     }
1079   } else if (Order > 0) {
1080     // Promote the precision of the RHS.
1081     if (RHSComplexType)
1082       RHS = S.ImpCastExprToType(RHS.get(), ResultType, CK_FloatingComplexCast);
1083     else
1084       RHS = S.ImpCastExprToType(RHS.get(), LHSElementType, CK_FloatingCast);
1085   }
1086   return ResultType;
1087 }
1088 
1089 /// \brief Hande arithmetic conversion from integer to float.  Helper function
1090 /// of UsualArithmeticConversions()
1091 static QualType handleIntToFloatConversion(Sema &S, ExprResult &FloatExpr,
1092                                            ExprResult &IntExpr,
1093                                            QualType FloatTy, QualType IntTy,
1094                                            bool ConvertFloat, bool ConvertInt) {
1095   if (IntTy->isIntegerType()) {
1096     if (ConvertInt)
1097       // Convert intExpr to the lhs floating point type.
1098       IntExpr = S.ImpCastExprToType(IntExpr.get(), FloatTy,
1099                                     CK_IntegralToFloating);
1100     return FloatTy;
1101   }
1102 
1103   // Convert both sides to the appropriate complex float.
1104   assert(IntTy->isComplexIntegerType());
1105   QualType result = S.Context.getComplexType(FloatTy);
1106 
1107   // _Complex int -> _Complex float
1108   if (ConvertInt)
1109     IntExpr = S.ImpCastExprToType(IntExpr.get(), result,
1110                                   CK_IntegralComplexToFloatingComplex);
1111 
1112   // float -> _Complex float
1113   if (ConvertFloat)
1114     FloatExpr = S.ImpCastExprToType(FloatExpr.get(), result,
1115                                     CK_FloatingRealToComplex);
1116 
1117   return result;
1118 }
1119 
1120 /// \brief Handle arithmethic conversion with floating point types.  Helper
1121 /// function of UsualArithmeticConversions()
1122 static QualType handleFloatConversion(Sema &S, ExprResult &LHS,
1123                                       ExprResult &RHS, QualType LHSType,
1124                                       QualType RHSType, bool IsCompAssign) {
1125   bool LHSFloat = LHSType->isRealFloatingType();
1126   bool RHSFloat = RHSType->isRealFloatingType();
1127 
1128   // If we have two real floating types, convert the smaller operand
1129   // to the bigger result.
1130   if (LHSFloat && RHSFloat) {
1131     int order = S.Context.getFloatingTypeOrder(LHSType, RHSType);
1132     if (order > 0) {
1133       RHS = S.ImpCastExprToType(RHS.get(), LHSType, CK_FloatingCast);
1134       return LHSType;
1135     }
1136 
1137     assert(order < 0 && "illegal float comparison");
1138     if (!IsCompAssign)
1139       LHS = S.ImpCastExprToType(LHS.get(), RHSType, CK_FloatingCast);
1140     return RHSType;
1141   }
1142 
1143   if (LHSFloat) {
1144     // Half FP has to be promoted to float unless it is natively supported
1145     if (LHSType->isHalfType() && !S.getLangOpts().NativeHalfType)
1146       LHSType = S.Context.FloatTy;
1147 
1148     return handleIntToFloatConversion(S, LHS, RHS, LHSType, RHSType,
1149                                       /*convertFloat=*/!IsCompAssign,
1150                                       /*convertInt=*/ true);
1151   }
1152   assert(RHSFloat);
1153   return handleIntToFloatConversion(S, RHS, LHS, RHSType, LHSType,
1154                                     /*convertInt=*/ true,
1155                                     /*convertFloat=*/!IsCompAssign);
1156 }
1157 
1158 typedef ExprResult PerformCastFn(Sema &S, Expr *operand, QualType toType);
1159 
1160 namespace {
1161 /// These helper callbacks are placed in an anonymous namespace to
1162 /// permit their use as function template parameters.
1163 ExprResult doIntegralCast(Sema &S, Expr *op, QualType toType) {
1164   return S.ImpCastExprToType(op, toType, CK_IntegralCast);
1165 }
1166 
1167 ExprResult doComplexIntegralCast(Sema &S, Expr *op, QualType toType) {
1168   return S.ImpCastExprToType(op, S.Context.getComplexType(toType),
1169                              CK_IntegralComplexCast);
1170 }
1171 }
1172 
1173 /// \brief Handle integer arithmetic conversions.  Helper function of
1174 /// UsualArithmeticConversions()
1175 template <PerformCastFn doLHSCast, PerformCastFn doRHSCast>
1176 static QualType handleIntegerConversion(Sema &S, ExprResult &LHS,
1177                                         ExprResult &RHS, QualType LHSType,
1178                                         QualType RHSType, bool IsCompAssign) {
1179   // The rules for this case are in C99 6.3.1.8
1180   int order = S.Context.getIntegerTypeOrder(LHSType, RHSType);
1181   bool LHSSigned = LHSType->hasSignedIntegerRepresentation();
1182   bool RHSSigned = RHSType->hasSignedIntegerRepresentation();
1183   if (LHSSigned == RHSSigned) {
1184     // Same signedness; use the higher-ranked type
1185     if (order >= 0) {
1186       RHS = (*doRHSCast)(S, RHS.get(), LHSType);
1187       return LHSType;
1188     } else if (!IsCompAssign)
1189       LHS = (*doLHSCast)(S, LHS.get(), RHSType);
1190     return RHSType;
1191   } else if (order != (LHSSigned ? 1 : -1)) {
1192     // The unsigned type has greater than or equal rank to the
1193     // signed type, so use the unsigned type
1194     if (RHSSigned) {
1195       RHS = (*doRHSCast)(S, RHS.get(), LHSType);
1196       return LHSType;
1197     } else if (!IsCompAssign)
1198       LHS = (*doLHSCast)(S, LHS.get(), RHSType);
1199     return RHSType;
1200   } else if (S.Context.getIntWidth(LHSType) != S.Context.getIntWidth(RHSType)) {
1201     // The two types are different widths; if we are here, that
1202     // means the signed type is larger than the unsigned type, so
1203     // use the signed type.
1204     if (LHSSigned) {
1205       RHS = (*doRHSCast)(S, RHS.get(), LHSType);
1206       return LHSType;
1207     } else if (!IsCompAssign)
1208       LHS = (*doLHSCast)(S, LHS.get(), RHSType);
1209     return RHSType;
1210   } else {
1211     // The signed type is higher-ranked than the unsigned type,
1212     // but isn't actually any bigger (like unsigned int and long
1213     // on most 32-bit systems).  Use the unsigned type corresponding
1214     // to the signed type.
1215     QualType result =
1216       S.Context.getCorrespondingUnsignedType(LHSSigned ? LHSType : RHSType);
1217     RHS = (*doRHSCast)(S, RHS.get(), result);
1218     if (!IsCompAssign)
1219       LHS = (*doLHSCast)(S, LHS.get(), result);
1220     return result;
1221   }
1222 }
1223 
1224 /// \brief Handle conversions with GCC complex int extension.  Helper function
1225 /// of UsualArithmeticConversions()
1226 static QualType handleComplexIntConversion(Sema &S, ExprResult &LHS,
1227                                            ExprResult &RHS, QualType LHSType,
1228                                            QualType RHSType,
1229                                            bool IsCompAssign) {
1230   const ComplexType *LHSComplexInt = LHSType->getAsComplexIntegerType();
1231   const ComplexType *RHSComplexInt = RHSType->getAsComplexIntegerType();
1232 
1233   if (LHSComplexInt && RHSComplexInt) {
1234     QualType LHSEltType = LHSComplexInt->getElementType();
1235     QualType RHSEltType = RHSComplexInt->getElementType();
1236     QualType ScalarType =
1237       handleIntegerConversion<doComplexIntegralCast, doComplexIntegralCast>
1238         (S, LHS, RHS, LHSEltType, RHSEltType, IsCompAssign);
1239 
1240     return S.Context.getComplexType(ScalarType);
1241   }
1242 
1243   if (LHSComplexInt) {
1244     QualType LHSEltType = LHSComplexInt->getElementType();
1245     QualType ScalarType =
1246       handleIntegerConversion<doComplexIntegralCast, doIntegralCast>
1247         (S, LHS, RHS, LHSEltType, RHSType, IsCompAssign);
1248     QualType ComplexType = S.Context.getComplexType(ScalarType);
1249     RHS = S.ImpCastExprToType(RHS.get(), ComplexType,
1250                               CK_IntegralRealToComplex);
1251 
1252     return ComplexType;
1253   }
1254 
1255   assert(RHSComplexInt);
1256 
1257   QualType RHSEltType = RHSComplexInt->getElementType();
1258   QualType ScalarType =
1259     handleIntegerConversion<doIntegralCast, doComplexIntegralCast>
1260       (S, LHS, RHS, LHSType, RHSEltType, IsCompAssign);
1261   QualType ComplexType = S.Context.getComplexType(ScalarType);
1262 
1263   if (!IsCompAssign)
1264     LHS = S.ImpCastExprToType(LHS.get(), ComplexType,
1265                               CK_IntegralRealToComplex);
1266   return ComplexType;
1267 }
1268 
1269 /// UsualArithmeticConversions - Performs various conversions that are common to
1270 /// binary operators (C99 6.3.1.8). If both operands aren't arithmetic, this
1271 /// routine returns the first non-arithmetic type found. The client is
1272 /// responsible for emitting appropriate error diagnostics.
1273 QualType Sema::UsualArithmeticConversions(ExprResult &LHS, ExprResult &RHS,
1274                                           bool IsCompAssign) {
1275   if (!IsCompAssign) {
1276     LHS = UsualUnaryConversions(LHS.get());
1277     if (LHS.isInvalid())
1278       return QualType();
1279   }
1280 
1281   RHS = UsualUnaryConversions(RHS.get());
1282   if (RHS.isInvalid())
1283     return QualType();
1284 
1285   // For conversion purposes, we ignore any qualifiers.
1286   // For example, "const float" and "float" are equivalent.
1287   QualType LHSType =
1288     Context.getCanonicalType(LHS.get()->getType()).getUnqualifiedType();
1289   QualType RHSType =
1290     Context.getCanonicalType(RHS.get()->getType()).getUnqualifiedType();
1291 
1292   // For conversion purposes, we ignore any atomic qualifier on the LHS.
1293   if (const AtomicType *AtomicLHS = LHSType->getAs<AtomicType>())
1294     LHSType = AtomicLHS->getValueType();
1295 
1296   // If both types are identical, no conversion is needed.
1297   if (LHSType == RHSType)
1298     return LHSType;
1299 
1300   // If either side is a non-arithmetic type (e.g. a pointer), we are done.
1301   // The caller can deal with this (e.g. pointer + int).
1302   if (!LHSType->isArithmeticType() || !RHSType->isArithmeticType())
1303     return QualType();
1304 
1305   // Apply unary and bitfield promotions to the LHS's type.
1306   QualType LHSUnpromotedType = LHSType;
1307   if (LHSType->isPromotableIntegerType())
1308     LHSType = Context.getPromotedIntegerType(LHSType);
1309   QualType LHSBitfieldPromoteTy = Context.isPromotableBitField(LHS.get());
1310   if (!LHSBitfieldPromoteTy.isNull())
1311     LHSType = LHSBitfieldPromoteTy;
1312   if (LHSType != LHSUnpromotedType && !IsCompAssign)
1313     LHS = ImpCastExprToType(LHS.get(), LHSType, CK_IntegralCast);
1314 
1315   // If both types are identical, no conversion is needed.
1316   if (LHSType == RHSType)
1317     return LHSType;
1318 
1319   // At this point, we have two different arithmetic types.
1320 
1321   // Handle complex types first (C99 6.3.1.8p1).
1322   if (LHSType->isComplexType() || RHSType->isComplexType())
1323     return handleComplexFloatConversion(*this, LHS, RHS, LHSType, RHSType,
1324                                         IsCompAssign);
1325 
1326   // Now handle "real" floating types (i.e. float, double, long double).
1327   if (LHSType->isRealFloatingType() || RHSType->isRealFloatingType())
1328     return handleFloatConversion(*this, LHS, RHS, LHSType, RHSType,
1329                                  IsCompAssign);
1330 
1331   // Handle GCC complex int extension.
1332   if (LHSType->isComplexIntegerType() || RHSType->isComplexIntegerType())
1333     return handleComplexIntConversion(*this, LHS, RHS, LHSType, RHSType,
1334                                       IsCompAssign);
1335 
1336   // Finally, we have two differing integer types.
1337   return handleIntegerConversion<doIntegralCast, doIntegralCast>
1338            (*this, LHS, RHS, LHSType, RHSType, IsCompAssign);
1339 }
1340 
1341 
1342 //===----------------------------------------------------------------------===//
1343 //  Semantic Analysis for various Expression Types
1344 //===----------------------------------------------------------------------===//
1345 
1346 
1347 ExprResult
1348 Sema::ActOnGenericSelectionExpr(SourceLocation KeyLoc,
1349                                 SourceLocation DefaultLoc,
1350                                 SourceLocation RParenLoc,
1351                                 Expr *ControllingExpr,
1352                                 ArrayRef<ParsedType> ArgTypes,
1353                                 ArrayRef<Expr *> ArgExprs) {
1354   unsigned NumAssocs = ArgTypes.size();
1355   assert(NumAssocs == ArgExprs.size());
1356 
1357   TypeSourceInfo **Types = new TypeSourceInfo*[NumAssocs];
1358   for (unsigned i = 0; i < NumAssocs; ++i) {
1359     if (ArgTypes[i])
1360       (void) GetTypeFromParser(ArgTypes[i], &Types[i]);
1361     else
1362       Types[i] = nullptr;
1363   }
1364 
1365   ExprResult ER = CreateGenericSelectionExpr(KeyLoc, DefaultLoc, RParenLoc,
1366                                              ControllingExpr,
1367                                              llvm::makeArrayRef(Types, NumAssocs),
1368                                              ArgExprs);
1369   delete [] Types;
1370   return ER;
1371 }
1372 
1373 ExprResult
1374 Sema::CreateGenericSelectionExpr(SourceLocation KeyLoc,
1375                                  SourceLocation DefaultLoc,
1376                                  SourceLocation RParenLoc,
1377                                  Expr *ControllingExpr,
1378                                  ArrayRef<TypeSourceInfo *> Types,
1379                                  ArrayRef<Expr *> Exprs) {
1380   unsigned NumAssocs = Types.size();
1381   assert(NumAssocs == Exprs.size());
1382 
1383   // Decay and strip qualifiers for the controlling expression type, and handle
1384   // placeholder type replacement. See committee discussion from WG14 DR423.
1385   {
1386     EnterExpressionEvaluationContext Unevaluated(*this, Sema::Unevaluated);
1387     ExprResult R = DefaultFunctionArrayLvalueConversion(ControllingExpr);
1388     if (R.isInvalid())
1389       return ExprError();
1390     ControllingExpr = R.get();
1391   }
1392 
1393   // The controlling expression is an unevaluated operand, so side effects are
1394   // likely unintended.
1395   if (ActiveTemplateInstantiations.empty() &&
1396       ControllingExpr->HasSideEffects(Context, false))
1397     Diag(ControllingExpr->getExprLoc(),
1398          diag::warn_side_effects_unevaluated_context);
1399 
1400   bool TypeErrorFound = false,
1401        IsResultDependent = ControllingExpr->isTypeDependent(),
1402        ContainsUnexpandedParameterPack
1403          = ControllingExpr->containsUnexpandedParameterPack();
1404 
1405   for (unsigned i = 0; i < NumAssocs; ++i) {
1406     if (Exprs[i]->containsUnexpandedParameterPack())
1407       ContainsUnexpandedParameterPack = true;
1408 
1409     if (Types[i]) {
1410       if (Types[i]->getType()->containsUnexpandedParameterPack())
1411         ContainsUnexpandedParameterPack = true;
1412 
1413       if (Types[i]->getType()->isDependentType()) {
1414         IsResultDependent = true;
1415       } else {
1416         // C11 6.5.1.1p2 "The type name in a generic association shall specify a
1417         // complete object type other than a variably modified type."
1418         unsigned D = 0;
1419         if (Types[i]->getType()->isIncompleteType())
1420           D = diag::err_assoc_type_incomplete;
1421         else if (!Types[i]->getType()->isObjectType())
1422           D = diag::err_assoc_type_nonobject;
1423         else if (Types[i]->getType()->isVariablyModifiedType())
1424           D = diag::err_assoc_type_variably_modified;
1425 
1426         if (D != 0) {
1427           Diag(Types[i]->getTypeLoc().getBeginLoc(), D)
1428             << Types[i]->getTypeLoc().getSourceRange()
1429             << Types[i]->getType();
1430           TypeErrorFound = true;
1431         }
1432 
1433         // C11 6.5.1.1p2 "No two generic associations in the same generic
1434         // selection shall specify compatible types."
1435         for (unsigned j = i+1; j < NumAssocs; ++j)
1436           if (Types[j] && !Types[j]->getType()->isDependentType() &&
1437               Context.typesAreCompatible(Types[i]->getType(),
1438                                          Types[j]->getType())) {
1439             Diag(Types[j]->getTypeLoc().getBeginLoc(),
1440                  diag::err_assoc_compatible_types)
1441               << Types[j]->getTypeLoc().getSourceRange()
1442               << Types[j]->getType()
1443               << Types[i]->getType();
1444             Diag(Types[i]->getTypeLoc().getBeginLoc(),
1445                  diag::note_compat_assoc)
1446               << Types[i]->getTypeLoc().getSourceRange()
1447               << Types[i]->getType();
1448             TypeErrorFound = true;
1449           }
1450       }
1451     }
1452   }
1453   if (TypeErrorFound)
1454     return ExprError();
1455 
1456   // If we determined that the generic selection is result-dependent, don't
1457   // try to compute the result expression.
1458   if (IsResultDependent)
1459     return new (Context) GenericSelectionExpr(
1460         Context, KeyLoc, ControllingExpr, Types, Exprs, DefaultLoc, RParenLoc,
1461         ContainsUnexpandedParameterPack);
1462 
1463   SmallVector<unsigned, 1> CompatIndices;
1464   unsigned DefaultIndex = -1U;
1465   for (unsigned i = 0; i < NumAssocs; ++i) {
1466     if (!Types[i])
1467       DefaultIndex = i;
1468     else if (Context.typesAreCompatible(ControllingExpr->getType(),
1469                                         Types[i]->getType()))
1470       CompatIndices.push_back(i);
1471   }
1472 
1473   // C11 6.5.1.1p2 "The controlling expression of a generic selection shall have
1474   // type compatible with at most one of the types named in its generic
1475   // association list."
1476   if (CompatIndices.size() > 1) {
1477     // We strip parens here because the controlling expression is typically
1478     // parenthesized in macro definitions.
1479     ControllingExpr = ControllingExpr->IgnoreParens();
1480     Diag(ControllingExpr->getLocStart(), diag::err_generic_sel_multi_match)
1481       << ControllingExpr->getSourceRange() << ControllingExpr->getType()
1482       << (unsigned) CompatIndices.size();
1483     for (unsigned I : CompatIndices) {
1484       Diag(Types[I]->getTypeLoc().getBeginLoc(),
1485            diag::note_compat_assoc)
1486         << Types[I]->getTypeLoc().getSourceRange()
1487         << Types[I]->getType();
1488     }
1489     return ExprError();
1490   }
1491 
1492   // C11 6.5.1.1p2 "If a generic selection has no default generic association,
1493   // its controlling expression shall have type compatible with exactly one of
1494   // the types named in its generic association list."
1495   if (DefaultIndex == -1U && CompatIndices.size() == 0) {
1496     // We strip parens here because the controlling expression is typically
1497     // parenthesized in macro definitions.
1498     ControllingExpr = ControllingExpr->IgnoreParens();
1499     Diag(ControllingExpr->getLocStart(), diag::err_generic_sel_no_match)
1500       << ControllingExpr->getSourceRange() << ControllingExpr->getType();
1501     return ExprError();
1502   }
1503 
1504   // C11 6.5.1.1p3 "If a generic selection has a generic association with a
1505   // type name that is compatible with the type of the controlling expression,
1506   // then the result expression of the generic selection is the expression
1507   // in that generic association. Otherwise, the result expression of the
1508   // generic selection is the expression in the default generic association."
1509   unsigned ResultIndex =
1510     CompatIndices.size() ? CompatIndices[0] : DefaultIndex;
1511 
1512   return new (Context) GenericSelectionExpr(
1513       Context, KeyLoc, ControllingExpr, Types, Exprs, DefaultLoc, RParenLoc,
1514       ContainsUnexpandedParameterPack, ResultIndex);
1515 }
1516 
1517 /// getUDSuffixLoc - Create a SourceLocation for a ud-suffix, given the
1518 /// location of the token and the offset of the ud-suffix within it.
1519 static SourceLocation getUDSuffixLoc(Sema &S, SourceLocation TokLoc,
1520                                      unsigned Offset) {
1521   return Lexer::AdvanceToTokenCharacter(TokLoc, Offset, S.getSourceManager(),
1522                                         S.getLangOpts());
1523 }
1524 
1525 /// BuildCookedLiteralOperatorCall - A user-defined literal was found. Look up
1526 /// the corresponding cooked (non-raw) literal operator, and build a call to it.
1527 static ExprResult BuildCookedLiteralOperatorCall(Sema &S, Scope *Scope,
1528                                                  IdentifierInfo *UDSuffix,
1529                                                  SourceLocation UDSuffixLoc,
1530                                                  ArrayRef<Expr*> Args,
1531                                                  SourceLocation LitEndLoc) {
1532   assert(Args.size() <= 2 && "too many arguments for literal operator");
1533 
1534   QualType ArgTy[2];
1535   for (unsigned ArgIdx = 0; ArgIdx != Args.size(); ++ArgIdx) {
1536     ArgTy[ArgIdx] = Args[ArgIdx]->getType();
1537     if (ArgTy[ArgIdx]->isArrayType())
1538       ArgTy[ArgIdx] = S.Context.getArrayDecayedType(ArgTy[ArgIdx]);
1539   }
1540 
1541   DeclarationName OpName =
1542     S.Context.DeclarationNames.getCXXLiteralOperatorName(UDSuffix);
1543   DeclarationNameInfo OpNameInfo(OpName, UDSuffixLoc);
1544   OpNameInfo.setCXXLiteralOperatorNameLoc(UDSuffixLoc);
1545 
1546   LookupResult R(S, OpName, UDSuffixLoc, Sema::LookupOrdinaryName);
1547   if (S.LookupLiteralOperator(Scope, R, llvm::makeArrayRef(ArgTy, Args.size()),
1548                               /*AllowRaw*/false, /*AllowTemplate*/false,
1549                               /*AllowStringTemplate*/false) == Sema::LOLR_Error)
1550     return ExprError();
1551 
1552   return S.BuildLiteralOperatorCall(R, OpNameInfo, Args, LitEndLoc);
1553 }
1554 
1555 /// ActOnStringLiteral - The specified tokens were lexed as pasted string
1556 /// fragments (e.g. "foo" "bar" L"baz").  The result string has to handle string
1557 /// concatenation ([C99 5.1.1.2, translation phase #6]), so it may come from
1558 /// multiple tokens.  However, the common case is that StringToks points to one
1559 /// string.
1560 ///
1561 ExprResult
1562 Sema::ActOnStringLiteral(ArrayRef<Token> StringToks, Scope *UDLScope) {
1563   assert(!StringToks.empty() && "Must have at least one string!");
1564 
1565   StringLiteralParser Literal(StringToks, PP);
1566   if (Literal.hadError)
1567     return ExprError();
1568 
1569   SmallVector<SourceLocation, 4> StringTokLocs;
1570   for (const Token &Tok : StringToks)
1571     StringTokLocs.push_back(Tok.getLocation());
1572 
1573   QualType CharTy = Context.CharTy;
1574   StringLiteral::StringKind Kind = StringLiteral::Ascii;
1575   if (Literal.isWide()) {
1576     CharTy = Context.getWideCharType();
1577     Kind = StringLiteral::Wide;
1578   } else if (Literal.isUTF8()) {
1579     Kind = StringLiteral::UTF8;
1580   } else if (Literal.isUTF16()) {
1581     CharTy = Context.Char16Ty;
1582     Kind = StringLiteral::UTF16;
1583   } else if (Literal.isUTF32()) {
1584     CharTy = Context.Char32Ty;
1585     Kind = StringLiteral::UTF32;
1586   } else if (Literal.isPascal()) {
1587     CharTy = Context.UnsignedCharTy;
1588   }
1589 
1590   QualType CharTyConst = CharTy;
1591   // A C++ string literal has a const-qualified element type (C++ 2.13.4p1).
1592   if (getLangOpts().CPlusPlus || getLangOpts().ConstStrings)
1593     CharTyConst.addConst();
1594 
1595   // Get an array type for the string, according to C99 6.4.5.  This includes
1596   // the nul terminator character as well as the string length for pascal
1597   // strings.
1598   QualType StrTy = Context.getConstantArrayType(CharTyConst,
1599                                  llvm::APInt(32, Literal.GetNumStringChars()+1),
1600                                  ArrayType::Normal, 0);
1601 
1602   // OpenCL v1.1 s6.5.3: a string literal is in the constant address space.
1603   if (getLangOpts().OpenCL) {
1604     StrTy = Context.getAddrSpaceQualType(StrTy, LangAS::opencl_constant);
1605   }
1606 
1607   // Pass &StringTokLocs[0], StringTokLocs.size() to factory!
1608   StringLiteral *Lit = StringLiteral::Create(Context, Literal.GetString(),
1609                                              Kind, Literal.Pascal, StrTy,
1610                                              &StringTokLocs[0],
1611                                              StringTokLocs.size());
1612   if (Literal.getUDSuffix().empty())
1613     return Lit;
1614 
1615   // We're building a user-defined literal.
1616   IdentifierInfo *UDSuffix = &Context.Idents.get(Literal.getUDSuffix());
1617   SourceLocation UDSuffixLoc =
1618     getUDSuffixLoc(*this, StringTokLocs[Literal.getUDSuffixToken()],
1619                    Literal.getUDSuffixOffset());
1620 
1621   // Make sure we're allowed user-defined literals here.
1622   if (!UDLScope)
1623     return ExprError(Diag(UDSuffixLoc, diag::err_invalid_string_udl));
1624 
1625   // C++11 [lex.ext]p5: The literal L is treated as a call of the form
1626   //   operator "" X (str, len)
1627   QualType SizeType = Context.getSizeType();
1628 
1629   DeclarationName OpName =
1630     Context.DeclarationNames.getCXXLiteralOperatorName(UDSuffix);
1631   DeclarationNameInfo OpNameInfo(OpName, UDSuffixLoc);
1632   OpNameInfo.setCXXLiteralOperatorNameLoc(UDSuffixLoc);
1633 
1634   QualType ArgTy[] = {
1635     Context.getArrayDecayedType(StrTy), SizeType
1636   };
1637 
1638   LookupResult R(*this, OpName, UDSuffixLoc, LookupOrdinaryName);
1639   switch (LookupLiteralOperator(UDLScope, R, ArgTy,
1640                                 /*AllowRaw*/false, /*AllowTemplate*/false,
1641                                 /*AllowStringTemplate*/true)) {
1642 
1643   case LOLR_Cooked: {
1644     llvm::APInt Len(Context.getIntWidth(SizeType), Literal.GetNumStringChars());
1645     IntegerLiteral *LenArg = IntegerLiteral::Create(Context, Len, SizeType,
1646                                                     StringTokLocs[0]);
1647     Expr *Args[] = { Lit, LenArg };
1648 
1649     return BuildLiteralOperatorCall(R, OpNameInfo, Args, StringTokLocs.back());
1650   }
1651 
1652   case LOLR_StringTemplate: {
1653     TemplateArgumentListInfo ExplicitArgs;
1654 
1655     unsigned CharBits = Context.getIntWidth(CharTy);
1656     bool CharIsUnsigned = CharTy->isUnsignedIntegerType();
1657     llvm::APSInt Value(CharBits, CharIsUnsigned);
1658 
1659     TemplateArgument TypeArg(CharTy);
1660     TemplateArgumentLocInfo TypeArgInfo(Context.getTrivialTypeSourceInfo(CharTy));
1661     ExplicitArgs.addArgument(TemplateArgumentLoc(TypeArg, TypeArgInfo));
1662 
1663     for (unsigned I = 0, N = Lit->getLength(); I != N; ++I) {
1664       Value = Lit->getCodeUnit(I);
1665       TemplateArgument Arg(Context, Value, CharTy);
1666       TemplateArgumentLocInfo ArgInfo;
1667       ExplicitArgs.addArgument(TemplateArgumentLoc(Arg, ArgInfo));
1668     }
1669     return BuildLiteralOperatorCall(R, OpNameInfo, None, StringTokLocs.back(),
1670                                     &ExplicitArgs);
1671   }
1672   case LOLR_Raw:
1673   case LOLR_Template:
1674     llvm_unreachable("unexpected literal operator lookup result");
1675   case LOLR_Error:
1676     return ExprError();
1677   }
1678   llvm_unreachable("unexpected literal operator lookup result");
1679 }
1680 
1681 ExprResult
1682 Sema::BuildDeclRefExpr(ValueDecl *D, QualType Ty, ExprValueKind VK,
1683                        SourceLocation Loc,
1684                        const CXXScopeSpec *SS) {
1685   DeclarationNameInfo NameInfo(D->getDeclName(), Loc);
1686   return BuildDeclRefExpr(D, Ty, VK, NameInfo, SS);
1687 }
1688 
1689 /// BuildDeclRefExpr - Build an expression that references a
1690 /// declaration that does not require a closure capture.
1691 ExprResult
1692 Sema::BuildDeclRefExpr(ValueDecl *D, QualType Ty, ExprValueKind VK,
1693                        const DeclarationNameInfo &NameInfo,
1694                        const CXXScopeSpec *SS, NamedDecl *FoundD,
1695                        const TemplateArgumentListInfo *TemplateArgs) {
1696   if (getLangOpts().CUDA)
1697     if (const FunctionDecl *Caller = dyn_cast<FunctionDecl>(CurContext))
1698       if (const FunctionDecl *Callee = dyn_cast<FunctionDecl>(D)) {
1699         if (CheckCUDATarget(Caller, Callee)) {
1700           Diag(NameInfo.getLoc(), diag::err_ref_bad_target)
1701             << IdentifyCUDATarget(Callee) << D->getIdentifier()
1702             << IdentifyCUDATarget(Caller);
1703           Diag(D->getLocation(), diag::note_previous_decl)
1704             << D->getIdentifier();
1705           return ExprError();
1706         }
1707       }
1708 
1709   bool RefersToCapturedVariable =
1710       isa<VarDecl>(D) &&
1711       NeedToCaptureVariable(cast<VarDecl>(D), NameInfo.getLoc());
1712 
1713   DeclRefExpr *E;
1714   if (isa<VarTemplateSpecializationDecl>(D)) {
1715     VarTemplateSpecializationDecl *VarSpec =
1716         cast<VarTemplateSpecializationDecl>(D);
1717 
1718     E = DeclRefExpr::Create(Context, SS ? SS->getWithLocInContext(Context)
1719                                         : NestedNameSpecifierLoc(),
1720                             VarSpec->getTemplateKeywordLoc(), D,
1721                             RefersToCapturedVariable, NameInfo.getLoc(), Ty, VK,
1722                             FoundD, TemplateArgs);
1723   } else {
1724     assert(!TemplateArgs && "No template arguments for non-variable"
1725                             " template specialization references");
1726     E = DeclRefExpr::Create(Context, SS ? SS->getWithLocInContext(Context)
1727                                         : NestedNameSpecifierLoc(),
1728                             SourceLocation(), D, RefersToCapturedVariable,
1729                             NameInfo, Ty, VK, FoundD);
1730   }
1731 
1732   MarkDeclRefReferenced(E);
1733 
1734   if (getLangOpts().ObjCWeak && isa<VarDecl>(D) &&
1735       Ty.getObjCLifetime() == Qualifiers::OCL_Weak &&
1736       !Diags.isIgnored(diag::warn_arc_repeated_use_of_weak, E->getLocStart()))
1737       recordUseOfEvaluatedWeak(E);
1738 
1739   // Just in case we're building an illegal pointer-to-member.
1740   FieldDecl *FD = dyn_cast<FieldDecl>(D);
1741   if (FD && FD->isBitField())
1742     E->setObjectKind(OK_BitField);
1743 
1744   return E;
1745 }
1746 
1747 /// Decomposes the given name into a DeclarationNameInfo, its location, and
1748 /// possibly a list of template arguments.
1749 ///
1750 /// If this produces template arguments, it is permitted to call
1751 /// DecomposeTemplateName.
1752 ///
1753 /// This actually loses a lot of source location information for
1754 /// non-standard name kinds; we should consider preserving that in
1755 /// some way.
1756 void
1757 Sema::DecomposeUnqualifiedId(const UnqualifiedId &Id,
1758                              TemplateArgumentListInfo &Buffer,
1759                              DeclarationNameInfo &NameInfo,
1760                              const TemplateArgumentListInfo *&TemplateArgs) {
1761   if (Id.getKind() == UnqualifiedId::IK_TemplateId) {
1762     Buffer.setLAngleLoc(Id.TemplateId->LAngleLoc);
1763     Buffer.setRAngleLoc(Id.TemplateId->RAngleLoc);
1764 
1765     ASTTemplateArgsPtr TemplateArgsPtr(Id.TemplateId->getTemplateArgs(),
1766                                        Id.TemplateId->NumArgs);
1767     translateTemplateArguments(TemplateArgsPtr, Buffer);
1768 
1769     TemplateName TName = Id.TemplateId->Template.get();
1770     SourceLocation TNameLoc = Id.TemplateId->TemplateNameLoc;
1771     NameInfo = Context.getNameForTemplate(TName, TNameLoc);
1772     TemplateArgs = &Buffer;
1773   } else {
1774     NameInfo = GetNameFromUnqualifiedId(Id);
1775     TemplateArgs = nullptr;
1776   }
1777 }
1778 
1779 static void emitEmptyLookupTypoDiagnostic(
1780     const TypoCorrection &TC, Sema &SemaRef, const CXXScopeSpec &SS,
1781     DeclarationName Typo, SourceLocation TypoLoc, ArrayRef<Expr *> Args,
1782     unsigned DiagnosticID, unsigned DiagnosticSuggestID) {
1783   DeclContext *Ctx =
1784       SS.isEmpty() ? nullptr : SemaRef.computeDeclContext(SS, false);
1785   if (!TC) {
1786     // Emit a special diagnostic for failed member lookups.
1787     // FIXME: computing the declaration context might fail here (?)
1788     if (Ctx)
1789       SemaRef.Diag(TypoLoc, diag::err_no_member) << Typo << Ctx
1790                                                  << SS.getRange();
1791     else
1792       SemaRef.Diag(TypoLoc, DiagnosticID) << Typo;
1793     return;
1794   }
1795 
1796   std::string CorrectedStr = TC.getAsString(SemaRef.getLangOpts());
1797   bool DroppedSpecifier =
1798       TC.WillReplaceSpecifier() && Typo.getAsString() == CorrectedStr;
1799   unsigned NoteID = TC.getCorrectionDeclAs<ImplicitParamDecl>()
1800                         ? diag::note_implicit_param_decl
1801                         : diag::note_previous_decl;
1802   if (!Ctx)
1803     SemaRef.diagnoseTypo(TC, SemaRef.PDiag(DiagnosticSuggestID) << Typo,
1804                          SemaRef.PDiag(NoteID));
1805   else
1806     SemaRef.diagnoseTypo(TC, SemaRef.PDiag(diag::err_no_member_suggest)
1807                                  << Typo << Ctx << DroppedSpecifier
1808                                  << SS.getRange(),
1809                          SemaRef.PDiag(NoteID));
1810 }
1811 
1812 /// Diagnose an empty lookup.
1813 ///
1814 /// \return false if new lookup candidates were found
1815 bool
1816 Sema::DiagnoseEmptyLookup(Scope *S, CXXScopeSpec &SS, LookupResult &R,
1817                           std::unique_ptr<CorrectionCandidateCallback> CCC,
1818                           TemplateArgumentListInfo *ExplicitTemplateArgs,
1819                           ArrayRef<Expr *> Args, TypoExpr **Out) {
1820   DeclarationName Name = R.getLookupName();
1821 
1822   unsigned diagnostic = diag::err_undeclared_var_use;
1823   unsigned diagnostic_suggest = diag::err_undeclared_var_use_suggest;
1824   if (Name.getNameKind() == DeclarationName::CXXOperatorName ||
1825       Name.getNameKind() == DeclarationName::CXXLiteralOperatorName ||
1826       Name.getNameKind() == DeclarationName::CXXConversionFunctionName) {
1827     diagnostic = diag::err_undeclared_use;
1828     diagnostic_suggest = diag::err_undeclared_use_suggest;
1829   }
1830 
1831   // If the original lookup was an unqualified lookup, fake an
1832   // unqualified lookup.  This is useful when (for example) the
1833   // original lookup would not have found something because it was a
1834   // dependent name.
1835   DeclContext *DC = SS.isEmpty() ? CurContext : nullptr;
1836   while (DC) {
1837     if (isa<CXXRecordDecl>(DC)) {
1838       LookupQualifiedName(R, DC);
1839 
1840       if (!R.empty()) {
1841         // Don't give errors about ambiguities in this lookup.
1842         R.suppressDiagnostics();
1843 
1844         // During a default argument instantiation the CurContext points
1845         // to a CXXMethodDecl; but we can't apply a this-> fixit inside a
1846         // function parameter list, hence add an explicit check.
1847         bool isDefaultArgument = !ActiveTemplateInstantiations.empty() &&
1848                               ActiveTemplateInstantiations.back().Kind ==
1849             ActiveTemplateInstantiation::DefaultFunctionArgumentInstantiation;
1850         CXXMethodDecl *CurMethod = dyn_cast<CXXMethodDecl>(CurContext);
1851         bool isInstance = CurMethod &&
1852                           CurMethod->isInstance() &&
1853                           DC == CurMethod->getParent() && !isDefaultArgument;
1854 
1855         // Give a code modification hint to insert 'this->'.
1856         // TODO: fixit for inserting 'Base<T>::' in the other cases.
1857         // Actually quite difficult!
1858         if (getLangOpts().MSVCCompat)
1859           diagnostic = diag::ext_found_via_dependent_bases_lookup;
1860         if (isInstance) {
1861           Diag(R.getNameLoc(), diagnostic) << Name
1862             << FixItHint::CreateInsertion(R.getNameLoc(), "this->");
1863           CheckCXXThisCapture(R.getNameLoc());
1864         } else {
1865           Diag(R.getNameLoc(), diagnostic) << Name;
1866         }
1867 
1868         // Do we really want to note all of these?
1869         for (NamedDecl *D : R)
1870           Diag(D->getLocation(), diag::note_dependent_var_use);
1871 
1872         // Return true if we are inside a default argument instantiation
1873         // and the found name refers to an instance member function, otherwise
1874         // the function calling DiagnoseEmptyLookup will try to create an
1875         // implicit member call and this is wrong for default argument.
1876         if (isDefaultArgument && ((*R.begin())->isCXXInstanceMember())) {
1877           Diag(R.getNameLoc(), diag::err_member_call_without_object);
1878           return true;
1879         }
1880 
1881         // Tell the callee to try to recover.
1882         return false;
1883       }
1884 
1885       R.clear();
1886     }
1887 
1888     // In Microsoft mode, if we are performing lookup from within a friend
1889     // function definition declared at class scope then we must set
1890     // DC to the lexical parent to be able to search into the parent
1891     // class.
1892     if (getLangOpts().MSVCCompat && isa<FunctionDecl>(DC) &&
1893         cast<FunctionDecl>(DC)->getFriendObjectKind() &&
1894         DC->getLexicalParent()->isRecord())
1895       DC = DC->getLexicalParent();
1896     else
1897       DC = DC->getParent();
1898   }
1899 
1900   // We didn't find anything, so try to correct for a typo.
1901   TypoCorrection Corrected;
1902   if (S && Out) {
1903     SourceLocation TypoLoc = R.getNameLoc();
1904     assert(!ExplicitTemplateArgs &&
1905            "Diagnosing an empty lookup with explicit template args!");
1906     *Out = CorrectTypoDelayed(
1907         R.getLookupNameInfo(), R.getLookupKind(), S, &SS, std::move(CCC),
1908         [=](const TypoCorrection &TC) {
1909           emitEmptyLookupTypoDiagnostic(TC, *this, SS, Name, TypoLoc, Args,
1910                                         diagnostic, diagnostic_suggest);
1911         },
1912         nullptr, CTK_ErrorRecovery);
1913     if (*Out)
1914       return true;
1915   } else if (S && (Corrected =
1916                        CorrectTypo(R.getLookupNameInfo(), R.getLookupKind(), S,
1917                                    &SS, std::move(CCC), CTK_ErrorRecovery))) {
1918     std::string CorrectedStr(Corrected.getAsString(getLangOpts()));
1919     bool DroppedSpecifier =
1920         Corrected.WillReplaceSpecifier() && Name.getAsString() == CorrectedStr;
1921     R.setLookupName(Corrected.getCorrection());
1922 
1923     bool AcceptableWithRecovery = false;
1924     bool AcceptableWithoutRecovery = false;
1925     NamedDecl *ND = Corrected.getFoundDecl();
1926     if (ND) {
1927       if (Corrected.isOverloaded()) {
1928         OverloadCandidateSet OCS(R.getNameLoc(),
1929                                  OverloadCandidateSet::CSK_Normal);
1930         OverloadCandidateSet::iterator Best;
1931         for (NamedDecl *CD : Corrected) {
1932           if (FunctionTemplateDecl *FTD =
1933                    dyn_cast<FunctionTemplateDecl>(CD))
1934             AddTemplateOverloadCandidate(
1935                 FTD, DeclAccessPair::make(FTD, AS_none), ExplicitTemplateArgs,
1936                 Args, OCS);
1937           else if (FunctionDecl *FD = dyn_cast<FunctionDecl>(CD))
1938             if (!ExplicitTemplateArgs || ExplicitTemplateArgs->size() == 0)
1939               AddOverloadCandidate(FD, DeclAccessPair::make(FD, AS_none),
1940                                    Args, OCS);
1941         }
1942         switch (OCS.BestViableFunction(*this, R.getNameLoc(), Best)) {
1943         case OR_Success:
1944           ND = Best->FoundDecl;
1945           Corrected.setCorrectionDecl(ND);
1946           break;
1947         default:
1948           // FIXME: Arbitrarily pick the first declaration for the note.
1949           Corrected.setCorrectionDecl(ND);
1950           break;
1951         }
1952       }
1953       R.addDecl(ND);
1954       if (getLangOpts().CPlusPlus && ND->isCXXClassMember()) {
1955         CXXRecordDecl *Record = nullptr;
1956         if (Corrected.getCorrectionSpecifier()) {
1957           const Type *Ty = Corrected.getCorrectionSpecifier()->getAsType();
1958           Record = Ty->getAsCXXRecordDecl();
1959         }
1960         if (!Record)
1961           Record = cast<CXXRecordDecl>(
1962               ND->getDeclContext()->getRedeclContext());
1963         R.setNamingClass(Record);
1964       }
1965 
1966       auto *UnderlyingND = ND->getUnderlyingDecl();
1967       AcceptableWithRecovery = isa<ValueDecl>(UnderlyingND) ||
1968                                isa<FunctionTemplateDecl>(UnderlyingND);
1969       // FIXME: If we ended up with a typo for a type name or
1970       // Objective-C class name, we're in trouble because the parser
1971       // is in the wrong place to recover. Suggest the typo
1972       // correction, but don't make it a fix-it since we're not going
1973       // to recover well anyway.
1974       AcceptableWithoutRecovery =
1975           isa<TypeDecl>(UnderlyingND) || isa<ObjCInterfaceDecl>(UnderlyingND);
1976     } else {
1977       // FIXME: We found a keyword. Suggest it, but don't provide a fix-it
1978       // because we aren't able to recover.
1979       AcceptableWithoutRecovery = true;
1980     }
1981 
1982     if (AcceptableWithRecovery || AcceptableWithoutRecovery) {
1983       unsigned NoteID = Corrected.getCorrectionDeclAs<ImplicitParamDecl>()
1984                             ? diag::note_implicit_param_decl
1985                             : diag::note_previous_decl;
1986       if (SS.isEmpty())
1987         diagnoseTypo(Corrected, PDiag(diagnostic_suggest) << Name,
1988                      PDiag(NoteID), AcceptableWithRecovery);
1989       else
1990         diagnoseTypo(Corrected, PDiag(diag::err_no_member_suggest)
1991                                   << Name << computeDeclContext(SS, false)
1992                                   << DroppedSpecifier << SS.getRange(),
1993                      PDiag(NoteID), AcceptableWithRecovery);
1994 
1995       // Tell the callee whether to try to recover.
1996       return !AcceptableWithRecovery;
1997     }
1998   }
1999   R.clear();
2000 
2001   // Emit a special diagnostic for failed member lookups.
2002   // FIXME: computing the declaration context might fail here (?)
2003   if (!SS.isEmpty()) {
2004     Diag(R.getNameLoc(), diag::err_no_member)
2005       << Name << computeDeclContext(SS, false)
2006       << SS.getRange();
2007     return true;
2008   }
2009 
2010   // Give up, we can't recover.
2011   Diag(R.getNameLoc(), diagnostic) << Name;
2012   return true;
2013 }
2014 
2015 /// In Microsoft mode, if we are inside a template class whose parent class has
2016 /// dependent base classes, and we can't resolve an unqualified identifier, then
2017 /// assume the identifier is a member of a dependent base class.  We can only
2018 /// recover successfully in static methods, instance methods, and other contexts
2019 /// where 'this' is available.  This doesn't precisely match MSVC's
2020 /// instantiation model, but it's close enough.
2021 static Expr *
2022 recoverFromMSUnqualifiedLookup(Sema &S, ASTContext &Context,
2023                                DeclarationNameInfo &NameInfo,
2024                                SourceLocation TemplateKWLoc,
2025                                const TemplateArgumentListInfo *TemplateArgs) {
2026   // Only try to recover from lookup into dependent bases in static methods or
2027   // contexts where 'this' is available.
2028   QualType ThisType = S.getCurrentThisType();
2029   const CXXRecordDecl *RD = nullptr;
2030   if (!ThisType.isNull())
2031     RD = ThisType->getPointeeType()->getAsCXXRecordDecl();
2032   else if (auto *MD = dyn_cast<CXXMethodDecl>(S.CurContext))
2033     RD = MD->getParent();
2034   if (!RD || !RD->hasAnyDependentBases())
2035     return nullptr;
2036 
2037   // Diagnose this as unqualified lookup into a dependent base class.  If 'this'
2038   // is available, suggest inserting 'this->' as a fixit.
2039   SourceLocation Loc = NameInfo.getLoc();
2040   auto DB = S.Diag(Loc, diag::ext_undeclared_unqual_id_with_dependent_base);
2041   DB << NameInfo.getName() << RD;
2042 
2043   if (!ThisType.isNull()) {
2044     DB << FixItHint::CreateInsertion(Loc, "this->");
2045     return CXXDependentScopeMemberExpr::Create(
2046         Context, /*This=*/nullptr, ThisType, /*IsArrow=*/true,
2047         /*Op=*/SourceLocation(), NestedNameSpecifierLoc(), TemplateKWLoc,
2048         /*FirstQualifierInScope=*/nullptr, NameInfo, TemplateArgs);
2049   }
2050 
2051   // Synthesize a fake NNS that points to the derived class.  This will
2052   // perform name lookup during template instantiation.
2053   CXXScopeSpec SS;
2054   auto *NNS =
2055       NestedNameSpecifier::Create(Context, nullptr, true, RD->getTypeForDecl());
2056   SS.MakeTrivial(Context, NNS, SourceRange(Loc, Loc));
2057   return DependentScopeDeclRefExpr::Create(
2058       Context, SS.getWithLocInContext(Context), TemplateKWLoc, NameInfo,
2059       TemplateArgs);
2060 }
2061 
2062 ExprResult
2063 Sema::ActOnIdExpression(Scope *S, CXXScopeSpec &SS,
2064                         SourceLocation TemplateKWLoc, UnqualifiedId &Id,
2065                         bool HasTrailingLParen, bool IsAddressOfOperand,
2066                         std::unique_ptr<CorrectionCandidateCallback> CCC,
2067                         bool IsInlineAsmIdentifier, Token *KeywordReplacement) {
2068   assert(!(IsAddressOfOperand && HasTrailingLParen) &&
2069          "cannot be direct & operand and have a trailing lparen");
2070   if (SS.isInvalid())
2071     return ExprError();
2072 
2073   TemplateArgumentListInfo TemplateArgsBuffer;
2074 
2075   // Decompose the UnqualifiedId into the following data.
2076   DeclarationNameInfo NameInfo;
2077   const TemplateArgumentListInfo *TemplateArgs;
2078   DecomposeUnqualifiedId(Id, TemplateArgsBuffer, NameInfo, TemplateArgs);
2079 
2080   DeclarationName Name = NameInfo.getName();
2081   IdentifierInfo *II = Name.getAsIdentifierInfo();
2082   SourceLocation NameLoc = NameInfo.getLoc();
2083 
2084   // C++ [temp.dep.expr]p3:
2085   //   An id-expression is type-dependent if it contains:
2086   //     -- an identifier that was declared with a dependent type,
2087   //        (note: handled after lookup)
2088   //     -- a template-id that is dependent,
2089   //        (note: handled in BuildTemplateIdExpr)
2090   //     -- a conversion-function-id that specifies a dependent type,
2091   //     -- a nested-name-specifier that contains a class-name that
2092   //        names a dependent type.
2093   // Determine whether this is a member of an unknown specialization;
2094   // we need to handle these differently.
2095   bool DependentID = false;
2096   if (Name.getNameKind() == DeclarationName::CXXConversionFunctionName &&
2097       Name.getCXXNameType()->isDependentType()) {
2098     DependentID = true;
2099   } else if (SS.isSet()) {
2100     if (DeclContext *DC = computeDeclContext(SS, false)) {
2101       if (RequireCompleteDeclContext(SS, DC))
2102         return ExprError();
2103     } else {
2104       DependentID = true;
2105     }
2106   }
2107 
2108   if (DependentID)
2109     return ActOnDependentIdExpression(SS, TemplateKWLoc, NameInfo,
2110                                       IsAddressOfOperand, TemplateArgs);
2111 
2112   // Perform the required lookup.
2113   LookupResult R(*this, NameInfo,
2114                  (Id.getKind() == UnqualifiedId::IK_ImplicitSelfParam)
2115                   ? LookupObjCImplicitSelfParam : LookupOrdinaryName);
2116   if (TemplateArgs) {
2117     // Lookup the template name again to correctly establish the context in
2118     // which it was found. This is really unfortunate as we already did the
2119     // lookup to determine that it was a template name in the first place. If
2120     // this becomes a performance hit, we can work harder to preserve those
2121     // results until we get here but it's likely not worth it.
2122     bool MemberOfUnknownSpecialization;
2123     LookupTemplateName(R, S, SS, QualType(), /*EnteringContext=*/false,
2124                        MemberOfUnknownSpecialization);
2125 
2126     if (MemberOfUnknownSpecialization ||
2127         (R.getResultKind() == LookupResult::NotFoundInCurrentInstantiation))
2128       return ActOnDependentIdExpression(SS, TemplateKWLoc, NameInfo,
2129                                         IsAddressOfOperand, TemplateArgs);
2130   } else {
2131     bool IvarLookupFollowUp = II && !SS.isSet() && getCurMethodDecl();
2132     LookupParsedName(R, S, &SS, !IvarLookupFollowUp);
2133 
2134     // If the result might be in a dependent base class, this is a dependent
2135     // id-expression.
2136     if (R.getResultKind() == LookupResult::NotFoundInCurrentInstantiation)
2137       return ActOnDependentIdExpression(SS, TemplateKWLoc, NameInfo,
2138                                         IsAddressOfOperand, TemplateArgs);
2139 
2140     // If this reference is in an Objective-C method, then we need to do
2141     // some special Objective-C lookup, too.
2142     if (IvarLookupFollowUp) {
2143       ExprResult E(LookupInObjCMethod(R, S, II, true));
2144       if (E.isInvalid())
2145         return ExprError();
2146 
2147       if (Expr *Ex = E.getAs<Expr>())
2148         return Ex;
2149     }
2150   }
2151 
2152   if (R.isAmbiguous())
2153     return ExprError();
2154 
2155   // This could be an implicitly declared function reference (legal in C90,
2156   // extension in C99, forbidden in C++).
2157   if (R.empty() && HasTrailingLParen && II && !getLangOpts().CPlusPlus) {
2158     NamedDecl *D = ImplicitlyDefineFunction(NameLoc, *II, S);
2159     if (D) R.addDecl(D);
2160   }
2161 
2162   // Determine whether this name might be a candidate for
2163   // argument-dependent lookup.
2164   bool ADL = UseArgumentDependentLookup(SS, R, HasTrailingLParen);
2165 
2166   if (R.empty() && !ADL) {
2167     if (SS.isEmpty() && getLangOpts().MSVCCompat) {
2168       if (Expr *E = recoverFromMSUnqualifiedLookup(*this, Context, NameInfo,
2169                                                    TemplateKWLoc, TemplateArgs))
2170         return E;
2171     }
2172 
2173     // Don't diagnose an empty lookup for inline assembly.
2174     if (IsInlineAsmIdentifier)
2175       return ExprError();
2176 
2177     // If this name wasn't predeclared and if this is not a function
2178     // call, diagnose the problem.
2179     TypoExpr *TE = nullptr;
2180     auto DefaultValidator = llvm::make_unique<CorrectionCandidateCallback>(
2181         II, SS.isValid() ? SS.getScopeRep() : nullptr);
2182     DefaultValidator->IsAddressOfOperand = IsAddressOfOperand;
2183     assert((!CCC || CCC->IsAddressOfOperand == IsAddressOfOperand) &&
2184            "Typo correction callback misconfigured");
2185     if (CCC) {
2186       // Make sure the callback knows what the typo being diagnosed is.
2187       CCC->setTypoName(II);
2188       if (SS.isValid())
2189         CCC->setTypoNNS(SS.getScopeRep());
2190     }
2191     if (DiagnoseEmptyLookup(S, SS, R,
2192                             CCC ? std::move(CCC) : std::move(DefaultValidator),
2193                             nullptr, None, &TE)) {
2194       if (TE && KeywordReplacement) {
2195         auto &State = getTypoExprState(TE);
2196         auto BestTC = State.Consumer->getNextCorrection();
2197         if (BestTC.isKeyword()) {
2198           auto *II = BestTC.getCorrectionAsIdentifierInfo();
2199           if (State.DiagHandler)
2200             State.DiagHandler(BestTC);
2201           KeywordReplacement->startToken();
2202           KeywordReplacement->setKind(II->getTokenID());
2203           KeywordReplacement->setIdentifierInfo(II);
2204           KeywordReplacement->setLocation(BestTC.getCorrectionRange().getBegin());
2205           // Clean up the state associated with the TypoExpr, since it has
2206           // now been diagnosed (without a call to CorrectDelayedTyposInExpr).
2207           clearDelayedTypo(TE);
2208           // Signal that a correction to a keyword was performed by returning a
2209           // valid-but-null ExprResult.
2210           return (Expr*)nullptr;
2211         }
2212         State.Consumer->resetCorrectionStream();
2213       }
2214       return TE ? TE : ExprError();
2215     }
2216 
2217     assert(!R.empty() &&
2218            "DiagnoseEmptyLookup returned false but added no results");
2219 
2220     // If we found an Objective-C instance variable, let
2221     // LookupInObjCMethod build the appropriate expression to
2222     // reference the ivar.
2223     if (ObjCIvarDecl *Ivar = R.getAsSingle<ObjCIvarDecl>()) {
2224       R.clear();
2225       ExprResult E(LookupInObjCMethod(R, S, Ivar->getIdentifier()));
2226       // In a hopelessly buggy code, Objective-C instance variable
2227       // lookup fails and no expression will be built to reference it.
2228       if (!E.isInvalid() && !E.get())
2229         return ExprError();
2230       return E;
2231     }
2232   }
2233 
2234   // This is guaranteed from this point on.
2235   assert(!R.empty() || ADL);
2236 
2237   // Check whether this might be a C++ implicit instance member access.
2238   // C++ [class.mfct.non-static]p3:
2239   //   When an id-expression that is not part of a class member access
2240   //   syntax and not used to form a pointer to member is used in the
2241   //   body of a non-static member function of class X, if name lookup
2242   //   resolves the name in the id-expression to a non-static non-type
2243   //   member of some class C, the id-expression is transformed into a
2244   //   class member access expression using (*this) as the
2245   //   postfix-expression to the left of the . operator.
2246   //
2247   // But we don't actually need to do this for '&' operands if R
2248   // resolved to a function or overloaded function set, because the
2249   // expression is ill-formed if it actually works out to be a
2250   // non-static member function:
2251   //
2252   // C++ [expr.ref]p4:
2253   //   Otherwise, if E1.E2 refers to a non-static member function. . .
2254   //   [t]he expression can be used only as the left-hand operand of a
2255   //   member function call.
2256   //
2257   // There are other safeguards against such uses, but it's important
2258   // to get this right here so that we don't end up making a
2259   // spuriously dependent expression if we're inside a dependent
2260   // instance method.
2261   if (!R.empty() && (*R.begin())->isCXXClassMember()) {
2262     bool MightBeImplicitMember;
2263     if (!IsAddressOfOperand)
2264       MightBeImplicitMember = true;
2265     else if (!SS.isEmpty())
2266       MightBeImplicitMember = false;
2267     else if (R.isOverloadedResult())
2268       MightBeImplicitMember = false;
2269     else if (R.isUnresolvableResult())
2270       MightBeImplicitMember = true;
2271     else
2272       MightBeImplicitMember = isa<FieldDecl>(R.getFoundDecl()) ||
2273                               isa<IndirectFieldDecl>(R.getFoundDecl()) ||
2274                               isa<MSPropertyDecl>(R.getFoundDecl());
2275 
2276     if (MightBeImplicitMember)
2277       return BuildPossibleImplicitMemberExpr(SS, TemplateKWLoc,
2278                                              R, TemplateArgs, S);
2279   }
2280 
2281   if (TemplateArgs || TemplateKWLoc.isValid()) {
2282 
2283     // In C++1y, if this is a variable template id, then check it
2284     // in BuildTemplateIdExpr().
2285     // The single lookup result must be a variable template declaration.
2286     if (Id.getKind() == UnqualifiedId::IK_TemplateId && Id.TemplateId &&
2287         Id.TemplateId->Kind == TNK_Var_template) {
2288       assert(R.getAsSingle<VarTemplateDecl>() &&
2289              "There should only be one declaration found.");
2290     }
2291 
2292     return BuildTemplateIdExpr(SS, TemplateKWLoc, R, ADL, TemplateArgs);
2293   }
2294 
2295   return BuildDeclarationNameExpr(SS, R, ADL);
2296 }
2297 
2298 /// BuildQualifiedDeclarationNameExpr - Build a C++ qualified
2299 /// declaration name, generally during template instantiation.
2300 /// There's a large number of things which don't need to be done along
2301 /// this path.
2302 ExprResult Sema::BuildQualifiedDeclarationNameExpr(
2303     CXXScopeSpec &SS, const DeclarationNameInfo &NameInfo,
2304     bool IsAddressOfOperand, const Scope *S, TypeSourceInfo **RecoveryTSI) {
2305   DeclContext *DC = computeDeclContext(SS, false);
2306   if (!DC)
2307     return BuildDependentDeclRefExpr(SS, /*TemplateKWLoc=*/SourceLocation(),
2308                                      NameInfo, /*TemplateArgs=*/nullptr);
2309 
2310   if (RequireCompleteDeclContext(SS, DC))
2311     return ExprError();
2312 
2313   LookupResult R(*this, NameInfo, LookupOrdinaryName);
2314   LookupQualifiedName(R, DC);
2315 
2316   if (R.isAmbiguous())
2317     return ExprError();
2318 
2319   if (R.getResultKind() == LookupResult::NotFoundInCurrentInstantiation)
2320     return BuildDependentDeclRefExpr(SS, /*TemplateKWLoc=*/SourceLocation(),
2321                                      NameInfo, /*TemplateArgs=*/nullptr);
2322 
2323   if (R.empty()) {
2324     Diag(NameInfo.getLoc(), diag::err_no_member)
2325       << NameInfo.getName() << DC << SS.getRange();
2326     return ExprError();
2327   }
2328 
2329   if (const TypeDecl *TD = R.getAsSingle<TypeDecl>()) {
2330     // Diagnose a missing typename if this resolved unambiguously to a type in
2331     // a dependent context.  If we can recover with a type, downgrade this to
2332     // a warning in Microsoft compatibility mode.
2333     unsigned DiagID = diag::err_typename_missing;
2334     if (RecoveryTSI && getLangOpts().MSVCCompat)
2335       DiagID = diag::ext_typename_missing;
2336     SourceLocation Loc = SS.getBeginLoc();
2337     auto D = Diag(Loc, DiagID);
2338     D << SS.getScopeRep() << NameInfo.getName().getAsString()
2339       << SourceRange(Loc, NameInfo.getEndLoc());
2340 
2341     // Don't recover if the caller isn't expecting us to or if we're in a SFINAE
2342     // context.
2343     if (!RecoveryTSI)
2344       return ExprError();
2345 
2346     // Only issue the fixit if we're prepared to recover.
2347     D << FixItHint::CreateInsertion(Loc, "typename ");
2348 
2349     // Recover by pretending this was an elaborated type.
2350     QualType Ty = Context.getTypeDeclType(TD);
2351     TypeLocBuilder TLB;
2352     TLB.pushTypeSpec(Ty).setNameLoc(NameInfo.getLoc());
2353 
2354     QualType ET = getElaboratedType(ETK_None, SS, Ty);
2355     ElaboratedTypeLoc QTL = TLB.push<ElaboratedTypeLoc>(ET);
2356     QTL.setElaboratedKeywordLoc(SourceLocation());
2357     QTL.setQualifierLoc(SS.getWithLocInContext(Context));
2358 
2359     *RecoveryTSI = TLB.getTypeSourceInfo(Context, ET);
2360 
2361     return ExprEmpty();
2362   }
2363 
2364   // Defend against this resolving to an implicit member access. We usually
2365   // won't get here if this might be a legitimate a class member (we end up in
2366   // BuildMemberReferenceExpr instead), but this can be valid if we're forming
2367   // a pointer-to-member or in an unevaluated context in C++11.
2368   if (!R.empty() && (*R.begin())->isCXXClassMember() && !IsAddressOfOperand)
2369     return BuildPossibleImplicitMemberExpr(SS,
2370                                            /*TemplateKWLoc=*/SourceLocation(),
2371                                            R, /*TemplateArgs=*/nullptr, S);
2372 
2373   return BuildDeclarationNameExpr(SS, R, /* ADL */ false);
2374 }
2375 
2376 /// LookupInObjCMethod - The parser has read a name in, and Sema has
2377 /// detected that we're currently inside an ObjC method.  Perform some
2378 /// additional lookup.
2379 ///
2380 /// Ideally, most of this would be done by lookup, but there's
2381 /// actually quite a lot of extra work involved.
2382 ///
2383 /// Returns a null sentinel to indicate trivial success.
2384 ExprResult
2385 Sema::LookupInObjCMethod(LookupResult &Lookup, Scope *S,
2386                          IdentifierInfo *II, bool AllowBuiltinCreation) {
2387   SourceLocation Loc = Lookup.getNameLoc();
2388   ObjCMethodDecl *CurMethod = getCurMethodDecl();
2389 
2390   // Check for error condition which is already reported.
2391   if (!CurMethod)
2392     return ExprError();
2393 
2394   // There are two cases to handle here.  1) scoped lookup could have failed,
2395   // in which case we should look for an ivar.  2) scoped lookup could have
2396   // found a decl, but that decl is outside the current instance method (i.e.
2397   // a global variable).  In these two cases, we do a lookup for an ivar with
2398   // this name, if the lookup sucedes, we replace it our current decl.
2399 
2400   // If we're in a class method, we don't normally want to look for
2401   // ivars.  But if we don't find anything else, and there's an
2402   // ivar, that's an error.
2403   bool IsClassMethod = CurMethod->isClassMethod();
2404 
2405   bool LookForIvars;
2406   if (Lookup.empty())
2407     LookForIvars = true;
2408   else if (IsClassMethod)
2409     LookForIvars = false;
2410   else
2411     LookForIvars = (Lookup.isSingleResult() &&
2412                     Lookup.getFoundDecl()->isDefinedOutsideFunctionOrMethod());
2413   ObjCInterfaceDecl *IFace = nullptr;
2414   if (LookForIvars) {
2415     IFace = CurMethod->getClassInterface();
2416     ObjCInterfaceDecl *ClassDeclared;
2417     ObjCIvarDecl *IV = nullptr;
2418     if (IFace && (IV = IFace->lookupInstanceVariable(II, ClassDeclared))) {
2419       // Diagnose using an ivar in a class method.
2420       if (IsClassMethod)
2421         return ExprError(Diag(Loc, diag::error_ivar_use_in_class_method)
2422                          << IV->getDeclName());
2423 
2424       // If we're referencing an invalid decl, just return this as a silent
2425       // error node.  The error diagnostic was already emitted on the decl.
2426       if (IV->isInvalidDecl())
2427         return ExprError();
2428 
2429       // Check if referencing a field with __attribute__((deprecated)).
2430       if (DiagnoseUseOfDecl(IV, Loc))
2431         return ExprError();
2432 
2433       // Diagnose the use of an ivar outside of the declaring class.
2434       if (IV->getAccessControl() == ObjCIvarDecl::Private &&
2435           !declaresSameEntity(ClassDeclared, IFace) &&
2436           !getLangOpts().DebuggerSupport)
2437         Diag(Loc, diag::error_private_ivar_access) << IV->getDeclName();
2438 
2439       // FIXME: This should use a new expr for a direct reference, don't
2440       // turn this into Self->ivar, just return a BareIVarExpr or something.
2441       IdentifierInfo &II = Context.Idents.get("self");
2442       UnqualifiedId SelfName;
2443       SelfName.setIdentifier(&II, SourceLocation());
2444       SelfName.setKind(UnqualifiedId::IK_ImplicitSelfParam);
2445       CXXScopeSpec SelfScopeSpec;
2446       SourceLocation TemplateKWLoc;
2447       ExprResult SelfExpr = ActOnIdExpression(S, SelfScopeSpec, TemplateKWLoc,
2448                                               SelfName, false, false);
2449       if (SelfExpr.isInvalid())
2450         return ExprError();
2451 
2452       SelfExpr = DefaultLvalueConversion(SelfExpr.get());
2453       if (SelfExpr.isInvalid())
2454         return ExprError();
2455 
2456       MarkAnyDeclReferenced(Loc, IV, true);
2457 
2458       ObjCMethodFamily MF = CurMethod->getMethodFamily();
2459       if (MF != OMF_init && MF != OMF_dealloc && MF != OMF_finalize &&
2460           !IvarBacksCurrentMethodAccessor(IFace, CurMethod, IV))
2461         Diag(Loc, diag::warn_direct_ivar_access) << IV->getDeclName();
2462 
2463       ObjCIvarRefExpr *Result = new (Context)
2464           ObjCIvarRefExpr(IV, IV->getUsageType(SelfExpr.get()->getType()), Loc,
2465                           IV->getLocation(), SelfExpr.get(), true, true);
2466 
2467       if (getLangOpts().ObjCAutoRefCount) {
2468         if (IV->getType().getObjCLifetime() == Qualifiers::OCL_Weak) {
2469           if (!Diags.isIgnored(diag::warn_arc_repeated_use_of_weak, Loc))
2470             recordUseOfEvaluatedWeak(Result);
2471         }
2472         if (CurContext->isClosure())
2473           Diag(Loc, diag::warn_implicitly_retains_self)
2474             << FixItHint::CreateInsertion(Loc, "self->");
2475       }
2476 
2477       return Result;
2478     }
2479   } else if (CurMethod->isInstanceMethod()) {
2480     // We should warn if a local variable hides an ivar.
2481     if (ObjCInterfaceDecl *IFace = CurMethod->getClassInterface()) {
2482       ObjCInterfaceDecl *ClassDeclared;
2483       if (ObjCIvarDecl *IV = IFace->lookupInstanceVariable(II, ClassDeclared)) {
2484         if (IV->getAccessControl() != ObjCIvarDecl::Private ||
2485             declaresSameEntity(IFace, ClassDeclared))
2486           Diag(Loc, diag::warn_ivar_use_hidden) << IV->getDeclName();
2487       }
2488     }
2489   } else if (Lookup.isSingleResult() &&
2490              Lookup.getFoundDecl()->isDefinedOutsideFunctionOrMethod()) {
2491     // If accessing a stand-alone ivar in a class method, this is an error.
2492     if (const ObjCIvarDecl *IV = dyn_cast<ObjCIvarDecl>(Lookup.getFoundDecl()))
2493       return ExprError(Diag(Loc, diag::error_ivar_use_in_class_method)
2494                        << IV->getDeclName());
2495   }
2496 
2497   if (Lookup.empty() && II && AllowBuiltinCreation) {
2498     // FIXME. Consolidate this with similar code in LookupName.
2499     if (unsigned BuiltinID = II->getBuiltinID()) {
2500       if (!(getLangOpts().CPlusPlus &&
2501             Context.BuiltinInfo.isPredefinedLibFunction(BuiltinID))) {
2502         NamedDecl *D = LazilyCreateBuiltin((IdentifierInfo *)II, BuiltinID,
2503                                            S, Lookup.isForRedeclaration(),
2504                                            Lookup.getNameLoc());
2505         if (D) Lookup.addDecl(D);
2506       }
2507     }
2508   }
2509   // Sentinel value saying that we didn't do anything special.
2510   return ExprResult((Expr *)nullptr);
2511 }
2512 
2513 /// \brief Cast a base object to a member's actual type.
2514 ///
2515 /// Logically this happens in three phases:
2516 ///
2517 /// * First we cast from the base type to the naming class.
2518 ///   The naming class is the class into which we were looking
2519 ///   when we found the member;  it's the qualifier type if a
2520 ///   qualifier was provided, and otherwise it's the base type.
2521 ///
2522 /// * Next we cast from the naming class to the declaring class.
2523 ///   If the member we found was brought into a class's scope by
2524 ///   a using declaration, this is that class;  otherwise it's
2525 ///   the class declaring the member.
2526 ///
2527 /// * Finally we cast from the declaring class to the "true"
2528 ///   declaring class of the member.  This conversion does not
2529 ///   obey access control.
2530 ExprResult
2531 Sema::PerformObjectMemberConversion(Expr *From,
2532                                     NestedNameSpecifier *Qualifier,
2533                                     NamedDecl *FoundDecl,
2534                                     NamedDecl *Member) {
2535   CXXRecordDecl *RD = dyn_cast<CXXRecordDecl>(Member->getDeclContext());
2536   if (!RD)
2537     return From;
2538 
2539   QualType DestRecordType;
2540   QualType DestType;
2541   QualType FromRecordType;
2542   QualType FromType = From->getType();
2543   bool PointerConversions = false;
2544   if (isa<FieldDecl>(Member)) {
2545     DestRecordType = Context.getCanonicalType(Context.getTypeDeclType(RD));
2546 
2547     if (FromType->getAs<PointerType>()) {
2548       DestType = Context.getPointerType(DestRecordType);
2549       FromRecordType = FromType->getPointeeType();
2550       PointerConversions = true;
2551     } else {
2552       DestType = DestRecordType;
2553       FromRecordType = FromType;
2554     }
2555   } else if (CXXMethodDecl *Method = dyn_cast<CXXMethodDecl>(Member)) {
2556     if (Method->isStatic())
2557       return From;
2558 
2559     DestType = Method->getThisType(Context);
2560     DestRecordType = DestType->getPointeeType();
2561 
2562     if (FromType->getAs<PointerType>()) {
2563       FromRecordType = FromType->getPointeeType();
2564       PointerConversions = true;
2565     } else {
2566       FromRecordType = FromType;
2567       DestType = DestRecordType;
2568     }
2569   } else {
2570     // No conversion necessary.
2571     return From;
2572   }
2573 
2574   if (DestType->isDependentType() || FromType->isDependentType())
2575     return From;
2576 
2577   // If the unqualified types are the same, no conversion is necessary.
2578   if (Context.hasSameUnqualifiedType(FromRecordType, DestRecordType))
2579     return From;
2580 
2581   SourceRange FromRange = From->getSourceRange();
2582   SourceLocation FromLoc = FromRange.getBegin();
2583 
2584   ExprValueKind VK = From->getValueKind();
2585 
2586   // C++ [class.member.lookup]p8:
2587   //   [...] Ambiguities can often be resolved by qualifying a name with its
2588   //   class name.
2589   //
2590   // If the member was a qualified name and the qualified referred to a
2591   // specific base subobject type, we'll cast to that intermediate type
2592   // first and then to the object in which the member is declared. That allows
2593   // one to resolve ambiguities in, e.g., a diamond-shaped hierarchy such as:
2594   //
2595   //   class Base { public: int x; };
2596   //   class Derived1 : public Base { };
2597   //   class Derived2 : public Base { };
2598   //   class VeryDerived : public Derived1, public Derived2 { void f(); };
2599   //
2600   //   void VeryDerived::f() {
2601   //     x = 17; // error: ambiguous base subobjects
2602   //     Derived1::x = 17; // okay, pick the Base subobject of Derived1
2603   //   }
2604   if (Qualifier && Qualifier->getAsType()) {
2605     QualType QType = QualType(Qualifier->getAsType(), 0);
2606     assert(QType->isRecordType() && "lookup done with non-record type");
2607 
2608     QualType QRecordType = QualType(QType->getAs<RecordType>(), 0);
2609 
2610     // In C++98, the qualifier type doesn't actually have to be a base
2611     // type of the object type, in which case we just ignore it.
2612     // Otherwise build the appropriate casts.
2613     if (IsDerivedFrom(FromLoc, FromRecordType, QRecordType)) {
2614       CXXCastPath BasePath;
2615       if (CheckDerivedToBaseConversion(FromRecordType, QRecordType,
2616                                        FromLoc, FromRange, &BasePath))
2617         return ExprError();
2618 
2619       if (PointerConversions)
2620         QType = Context.getPointerType(QType);
2621       From = ImpCastExprToType(From, QType, CK_UncheckedDerivedToBase,
2622                                VK, &BasePath).get();
2623 
2624       FromType = QType;
2625       FromRecordType = QRecordType;
2626 
2627       // If the qualifier type was the same as the destination type,
2628       // we're done.
2629       if (Context.hasSameUnqualifiedType(FromRecordType, DestRecordType))
2630         return From;
2631     }
2632   }
2633 
2634   bool IgnoreAccess = false;
2635 
2636   // If we actually found the member through a using declaration, cast
2637   // down to the using declaration's type.
2638   //
2639   // Pointer equality is fine here because only one declaration of a
2640   // class ever has member declarations.
2641   if (FoundDecl->getDeclContext() != Member->getDeclContext()) {
2642     assert(isa<UsingShadowDecl>(FoundDecl));
2643     QualType URecordType = Context.getTypeDeclType(
2644                            cast<CXXRecordDecl>(FoundDecl->getDeclContext()));
2645 
2646     // We only need to do this if the naming-class to declaring-class
2647     // conversion is non-trivial.
2648     if (!Context.hasSameUnqualifiedType(FromRecordType, URecordType)) {
2649       assert(IsDerivedFrom(FromLoc, FromRecordType, URecordType));
2650       CXXCastPath BasePath;
2651       if (CheckDerivedToBaseConversion(FromRecordType, URecordType,
2652                                        FromLoc, FromRange, &BasePath))
2653         return ExprError();
2654 
2655       QualType UType = URecordType;
2656       if (PointerConversions)
2657         UType = Context.getPointerType(UType);
2658       From = ImpCastExprToType(From, UType, CK_UncheckedDerivedToBase,
2659                                VK, &BasePath).get();
2660       FromType = UType;
2661       FromRecordType = URecordType;
2662     }
2663 
2664     // We don't do access control for the conversion from the
2665     // declaring class to the true declaring class.
2666     IgnoreAccess = true;
2667   }
2668 
2669   CXXCastPath BasePath;
2670   if (CheckDerivedToBaseConversion(FromRecordType, DestRecordType,
2671                                    FromLoc, FromRange, &BasePath,
2672                                    IgnoreAccess))
2673     return ExprError();
2674 
2675   return ImpCastExprToType(From, DestType, CK_UncheckedDerivedToBase,
2676                            VK, &BasePath);
2677 }
2678 
2679 bool Sema::UseArgumentDependentLookup(const CXXScopeSpec &SS,
2680                                       const LookupResult &R,
2681                                       bool HasTrailingLParen) {
2682   // Only when used directly as the postfix-expression of a call.
2683   if (!HasTrailingLParen)
2684     return false;
2685 
2686   // Never if a scope specifier was provided.
2687   if (SS.isSet())
2688     return false;
2689 
2690   // Only in C++ or ObjC++.
2691   if (!getLangOpts().CPlusPlus)
2692     return false;
2693 
2694   // Turn off ADL when we find certain kinds of declarations during
2695   // normal lookup:
2696   for (NamedDecl *D : R) {
2697     // C++0x [basic.lookup.argdep]p3:
2698     //     -- a declaration of a class member
2699     // Since using decls preserve this property, we check this on the
2700     // original decl.
2701     if (D->isCXXClassMember())
2702       return false;
2703 
2704     // C++0x [basic.lookup.argdep]p3:
2705     //     -- a block-scope function declaration that is not a
2706     //        using-declaration
2707     // NOTE: we also trigger this for function templates (in fact, we
2708     // don't check the decl type at all, since all other decl types
2709     // turn off ADL anyway).
2710     if (isa<UsingShadowDecl>(D))
2711       D = cast<UsingShadowDecl>(D)->getTargetDecl();
2712     else if (D->getLexicalDeclContext()->isFunctionOrMethod())
2713       return false;
2714 
2715     // C++0x [basic.lookup.argdep]p3:
2716     //     -- a declaration that is neither a function or a function
2717     //        template
2718     // And also for builtin functions.
2719     if (isa<FunctionDecl>(D)) {
2720       FunctionDecl *FDecl = cast<FunctionDecl>(D);
2721 
2722       // But also builtin functions.
2723       if (FDecl->getBuiltinID() && FDecl->isImplicit())
2724         return false;
2725     } else if (!isa<FunctionTemplateDecl>(D))
2726       return false;
2727   }
2728 
2729   return true;
2730 }
2731 
2732 
2733 /// Diagnoses obvious problems with the use of the given declaration
2734 /// as an expression.  This is only actually called for lookups that
2735 /// were not overloaded, and it doesn't promise that the declaration
2736 /// will in fact be used.
2737 static bool CheckDeclInExpr(Sema &S, SourceLocation Loc, NamedDecl *D) {
2738   if (isa<TypedefNameDecl>(D)) {
2739     S.Diag(Loc, diag::err_unexpected_typedef) << D->getDeclName();
2740     return true;
2741   }
2742 
2743   if (isa<ObjCInterfaceDecl>(D)) {
2744     S.Diag(Loc, diag::err_unexpected_interface) << D->getDeclName();
2745     return true;
2746   }
2747 
2748   if (isa<NamespaceDecl>(D)) {
2749     S.Diag(Loc, diag::err_unexpected_namespace) << D->getDeclName();
2750     return true;
2751   }
2752 
2753   return false;
2754 }
2755 
2756 ExprResult Sema::BuildDeclarationNameExpr(const CXXScopeSpec &SS,
2757                                           LookupResult &R, bool NeedsADL,
2758                                           bool AcceptInvalidDecl) {
2759   // If this is a single, fully-resolved result and we don't need ADL,
2760   // just build an ordinary singleton decl ref.
2761   if (!NeedsADL && R.isSingleResult() && !R.getAsSingle<FunctionTemplateDecl>())
2762     return BuildDeclarationNameExpr(SS, R.getLookupNameInfo(), R.getFoundDecl(),
2763                                     R.getRepresentativeDecl(), nullptr,
2764                                     AcceptInvalidDecl);
2765 
2766   // We only need to check the declaration if there's exactly one
2767   // result, because in the overloaded case the results can only be
2768   // functions and function templates.
2769   if (R.isSingleResult() &&
2770       CheckDeclInExpr(*this, R.getNameLoc(), R.getFoundDecl()))
2771     return ExprError();
2772 
2773   // Otherwise, just build an unresolved lookup expression.  Suppress
2774   // any lookup-related diagnostics; we'll hash these out later, when
2775   // we've picked a target.
2776   R.suppressDiagnostics();
2777 
2778   UnresolvedLookupExpr *ULE
2779     = UnresolvedLookupExpr::Create(Context, R.getNamingClass(),
2780                                    SS.getWithLocInContext(Context),
2781                                    R.getLookupNameInfo(),
2782                                    NeedsADL, R.isOverloadedResult(),
2783                                    R.begin(), R.end());
2784 
2785   return ULE;
2786 }
2787 
2788 /// \brief Complete semantic analysis for a reference to the given declaration.
2789 ExprResult Sema::BuildDeclarationNameExpr(
2790     const CXXScopeSpec &SS, const DeclarationNameInfo &NameInfo, NamedDecl *D,
2791     NamedDecl *FoundD, const TemplateArgumentListInfo *TemplateArgs,
2792     bool AcceptInvalidDecl) {
2793   assert(D && "Cannot refer to a NULL declaration");
2794   assert(!isa<FunctionTemplateDecl>(D) &&
2795          "Cannot refer unambiguously to a function template");
2796 
2797   SourceLocation Loc = NameInfo.getLoc();
2798   if (CheckDeclInExpr(*this, Loc, D))
2799     return ExprError();
2800 
2801   if (TemplateDecl *Template = dyn_cast<TemplateDecl>(D)) {
2802     // Specifically diagnose references to class templates that are missing
2803     // a template argument list.
2804     Diag(Loc, diag::err_template_decl_ref) << (isa<VarTemplateDecl>(D) ? 1 : 0)
2805                                            << Template << SS.getRange();
2806     Diag(Template->getLocation(), diag::note_template_decl_here);
2807     return ExprError();
2808   }
2809 
2810   // Make sure that we're referring to a value.
2811   ValueDecl *VD = dyn_cast<ValueDecl>(D);
2812   if (!VD) {
2813     Diag(Loc, diag::err_ref_non_value)
2814       << D << SS.getRange();
2815     Diag(D->getLocation(), diag::note_declared_at);
2816     return ExprError();
2817   }
2818 
2819   // Check whether this declaration can be used. Note that we suppress
2820   // this check when we're going to perform argument-dependent lookup
2821   // on this function name, because this might not be the function
2822   // that overload resolution actually selects.
2823   if (DiagnoseUseOfDecl(VD, Loc))
2824     return ExprError();
2825 
2826   // Only create DeclRefExpr's for valid Decl's.
2827   if (VD->isInvalidDecl() && !AcceptInvalidDecl)
2828     return ExprError();
2829 
2830   // Handle members of anonymous structs and unions.  If we got here,
2831   // and the reference is to a class member indirect field, then this
2832   // must be the subject of a pointer-to-member expression.
2833   if (IndirectFieldDecl *indirectField = dyn_cast<IndirectFieldDecl>(VD))
2834     if (!indirectField->isCXXClassMember())
2835       return BuildAnonymousStructUnionMemberReference(SS, NameInfo.getLoc(),
2836                                                       indirectField);
2837 
2838   {
2839     QualType type = VD->getType();
2840     ExprValueKind valueKind = VK_RValue;
2841 
2842     switch (D->getKind()) {
2843     // Ignore all the non-ValueDecl kinds.
2844 #define ABSTRACT_DECL(kind)
2845 #define VALUE(type, base)
2846 #define DECL(type, base) \
2847     case Decl::type:
2848 #include "clang/AST/DeclNodes.inc"
2849       llvm_unreachable("invalid value decl kind");
2850 
2851     // These shouldn't make it here.
2852     case Decl::ObjCAtDefsField:
2853     case Decl::ObjCIvar:
2854       llvm_unreachable("forming non-member reference to ivar?");
2855 
2856     // Enum constants are always r-values and never references.
2857     // Unresolved using declarations are dependent.
2858     case Decl::EnumConstant:
2859     case Decl::UnresolvedUsingValue:
2860     case Decl::OMPDeclareReduction:
2861       valueKind = VK_RValue;
2862       break;
2863 
2864     // Fields and indirect fields that got here must be for
2865     // pointer-to-member expressions; we just call them l-values for
2866     // internal consistency, because this subexpression doesn't really
2867     // exist in the high-level semantics.
2868     case Decl::Field:
2869     case Decl::IndirectField:
2870       assert(getLangOpts().CPlusPlus &&
2871              "building reference to field in C?");
2872 
2873       // These can't have reference type in well-formed programs, but
2874       // for internal consistency we do this anyway.
2875       type = type.getNonReferenceType();
2876       valueKind = VK_LValue;
2877       break;
2878 
2879     // Non-type template parameters are either l-values or r-values
2880     // depending on the type.
2881     case Decl::NonTypeTemplateParm: {
2882       if (const ReferenceType *reftype = type->getAs<ReferenceType>()) {
2883         type = reftype->getPointeeType();
2884         valueKind = VK_LValue; // even if the parameter is an r-value reference
2885         break;
2886       }
2887 
2888       // For non-references, we need to strip qualifiers just in case
2889       // the template parameter was declared as 'const int' or whatever.
2890       valueKind = VK_RValue;
2891       type = type.getUnqualifiedType();
2892       break;
2893     }
2894 
2895     case Decl::Var:
2896     case Decl::VarTemplateSpecialization:
2897     case Decl::VarTemplatePartialSpecialization:
2898     case Decl::OMPCapturedExpr:
2899       // In C, "extern void blah;" is valid and is an r-value.
2900       if (!getLangOpts().CPlusPlus &&
2901           !type.hasQualifiers() &&
2902           type->isVoidType()) {
2903         valueKind = VK_RValue;
2904         break;
2905       }
2906       // fallthrough
2907 
2908     case Decl::ImplicitParam:
2909     case Decl::ParmVar: {
2910       // These are always l-values.
2911       valueKind = VK_LValue;
2912       type = type.getNonReferenceType();
2913 
2914       // FIXME: Does the addition of const really only apply in
2915       // potentially-evaluated contexts? Since the variable isn't actually
2916       // captured in an unevaluated context, it seems that the answer is no.
2917       if (!isUnevaluatedContext()) {
2918         QualType CapturedType = getCapturedDeclRefType(cast<VarDecl>(VD), Loc);
2919         if (!CapturedType.isNull())
2920           type = CapturedType;
2921       }
2922 
2923       break;
2924     }
2925 
2926     case Decl::Function: {
2927       if (unsigned BID = cast<FunctionDecl>(VD)->getBuiltinID()) {
2928         if (!Context.BuiltinInfo.isPredefinedLibFunction(BID)) {
2929           type = Context.BuiltinFnTy;
2930           valueKind = VK_RValue;
2931           break;
2932         }
2933       }
2934 
2935       const FunctionType *fty = type->castAs<FunctionType>();
2936 
2937       // If we're referring to a function with an __unknown_anytype
2938       // result type, make the entire expression __unknown_anytype.
2939       if (fty->getReturnType() == Context.UnknownAnyTy) {
2940         type = Context.UnknownAnyTy;
2941         valueKind = VK_RValue;
2942         break;
2943       }
2944 
2945       // Functions are l-values in C++.
2946       if (getLangOpts().CPlusPlus) {
2947         valueKind = VK_LValue;
2948         break;
2949       }
2950 
2951       // C99 DR 316 says that, if a function type comes from a
2952       // function definition (without a prototype), that type is only
2953       // used for checking compatibility. Therefore, when referencing
2954       // the function, we pretend that we don't have the full function
2955       // type.
2956       if (!cast<FunctionDecl>(VD)->hasPrototype() &&
2957           isa<FunctionProtoType>(fty))
2958         type = Context.getFunctionNoProtoType(fty->getReturnType(),
2959                                               fty->getExtInfo());
2960 
2961       // Functions are r-values in C.
2962       valueKind = VK_RValue;
2963       break;
2964     }
2965 
2966     case Decl::MSProperty:
2967       valueKind = VK_LValue;
2968       break;
2969 
2970     case Decl::CXXMethod:
2971       // If we're referring to a method with an __unknown_anytype
2972       // result type, make the entire expression __unknown_anytype.
2973       // This should only be possible with a type written directly.
2974       if (const FunctionProtoType *proto
2975             = dyn_cast<FunctionProtoType>(VD->getType()))
2976         if (proto->getReturnType() == Context.UnknownAnyTy) {
2977           type = Context.UnknownAnyTy;
2978           valueKind = VK_RValue;
2979           break;
2980         }
2981 
2982       // C++ methods are l-values if static, r-values if non-static.
2983       if (cast<CXXMethodDecl>(VD)->isStatic()) {
2984         valueKind = VK_LValue;
2985         break;
2986       }
2987       // fallthrough
2988 
2989     case Decl::CXXConversion:
2990     case Decl::CXXDestructor:
2991     case Decl::CXXConstructor:
2992       valueKind = VK_RValue;
2993       break;
2994     }
2995 
2996     return BuildDeclRefExpr(VD, type, valueKind, NameInfo, &SS, FoundD,
2997                             TemplateArgs);
2998   }
2999 }
3000 
3001 static void ConvertUTF8ToWideString(unsigned CharByteWidth, StringRef Source,
3002                                     SmallString<32> &Target) {
3003   Target.resize(CharByteWidth * (Source.size() + 1));
3004   char *ResultPtr = &Target[0];
3005   const UTF8 *ErrorPtr;
3006   bool success = ConvertUTF8toWide(CharByteWidth, Source, ResultPtr, ErrorPtr);
3007   (void)success;
3008   assert(success);
3009   Target.resize(ResultPtr - &Target[0]);
3010 }
3011 
3012 ExprResult Sema::BuildPredefinedExpr(SourceLocation Loc,
3013                                      PredefinedExpr::IdentType IT) {
3014   // Pick the current block, lambda, captured statement or function.
3015   Decl *currentDecl = nullptr;
3016   if (const BlockScopeInfo *BSI = getCurBlock())
3017     currentDecl = BSI->TheDecl;
3018   else if (const LambdaScopeInfo *LSI = getCurLambda())
3019     currentDecl = LSI->CallOperator;
3020   else if (const CapturedRegionScopeInfo *CSI = getCurCapturedRegion())
3021     currentDecl = CSI->TheCapturedDecl;
3022   else
3023     currentDecl = getCurFunctionOrMethodDecl();
3024 
3025   if (!currentDecl) {
3026     Diag(Loc, diag::ext_predef_outside_function);
3027     currentDecl = Context.getTranslationUnitDecl();
3028   }
3029 
3030   QualType ResTy;
3031   StringLiteral *SL = nullptr;
3032   if (cast<DeclContext>(currentDecl)->isDependentContext())
3033     ResTy = Context.DependentTy;
3034   else {
3035     // Pre-defined identifiers are of type char[x], where x is the length of
3036     // the string.
3037     auto Str = PredefinedExpr::ComputeName(IT, currentDecl);
3038     unsigned Length = Str.length();
3039 
3040     llvm::APInt LengthI(32, Length + 1);
3041     if (IT == PredefinedExpr::LFunction) {
3042       ResTy = Context.WideCharTy.withConst();
3043       SmallString<32> RawChars;
3044       ConvertUTF8ToWideString(Context.getTypeSizeInChars(ResTy).getQuantity(),
3045                               Str, RawChars);
3046       ResTy = Context.getConstantArrayType(ResTy, LengthI, ArrayType::Normal,
3047                                            /*IndexTypeQuals*/ 0);
3048       SL = StringLiteral::Create(Context, RawChars, StringLiteral::Wide,
3049                                  /*Pascal*/ false, ResTy, Loc);
3050     } else {
3051       ResTy = Context.CharTy.withConst();
3052       ResTy = Context.getConstantArrayType(ResTy, LengthI, ArrayType::Normal,
3053                                            /*IndexTypeQuals*/ 0);
3054       SL = StringLiteral::Create(Context, Str, StringLiteral::Ascii,
3055                                  /*Pascal*/ false, ResTy, Loc);
3056     }
3057   }
3058 
3059   return new (Context) PredefinedExpr(Loc, ResTy, IT, SL);
3060 }
3061 
3062 ExprResult Sema::ActOnPredefinedExpr(SourceLocation Loc, tok::TokenKind Kind) {
3063   PredefinedExpr::IdentType IT;
3064 
3065   switch (Kind) {
3066   default: llvm_unreachable("Unknown simple primary expr!");
3067   case tok::kw___func__: IT = PredefinedExpr::Func; break; // [C99 6.4.2.2]
3068   case tok::kw___FUNCTION__: IT = PredefinedExpr::Function; break;
3069   case tok::kw___FUNCDNAME__: IT = PredefinedExpr::FuncDName; break; // [MS]
3070   case tok::kw___FUNCSIG__: IT = PredefinedExpr::FuncSig; break; // [MS]
3071   case tok::kw_L__FUNCTION__: IT = PredefinedExpr::LFunction; break;
3072   case tok::kw___PRETTY_FUNCTION__: IT = PredefinedExpr::PrettyFunction; break;
3073   }
3074 
3075   return BuildPredefinedExpr(Loc, IT);
3076 }
3077 
3078 ExprResult Sema::ActOnCharacterConstant(const Token &Tok, Scope *UDLScope) {
3079   SmallString<16> CharBuffer;
3080   bool Invalid = false;
3081   StringRef ThisTok = PP.getSpelling(Tok, CharBuffer, &Invalid);
3082   if (Invalid)
3083     return ExprError();
3084 
3085   CharLiteralParser Literal(ThisTok.begin(), ThisTok.end(), Tok.getLocation(),
3086                             PP, Tok.getKind());
3087   if (Literal.hadError())
3088     return ExprError();
3089 
3090   QualType Ty;
3091   if (Literal.isWide())
3092     Ty = Context.WideCharTy; // L'x' -> wchar_t in C and C++.
3093   else if (Literal.isUTF16())
3094     Ty = Context.Char16Ty; // u'x' -> char16_t in C11 and C++11.
3095   else if (Literal.isUTF32())
3096     Ty = Context.Char32Ty; // U'x' -> char32_t in C11 and C++11.
3097   else if (!getLangOpts().CPlusPlus || Literal.isMultiChar())
3098     Ty = Context.IntTy;   // 'x' -> int in C, 'wxyz' -> int in C++.
3099   else
3100     Ty = Context.CharTy;  // 'x' -> char in C++
3101 
3102   CharacterLiteral::CharacterKind Kind = CharacterLiteral::Ascii;
3103   if (Literal.isWide())
3104     Kind = CharacterLiteral::Wide;
3105   else if (Literal.isUTF16())
3106     Kind = CharacterLiteral::UTF16;
3107   else if (Literal.isUTF32())
3108     Kind = CharacterLiteral::UTF32;
3109   else if (Literal.isUTF8())
3110     Kind = CharacterLiteral::UTF8;
3111 
3112   Expr *Lit = new (Context) CharacterLiteral(Literal.getValue(), Kind, Ty,
3113                                              Tok.getLocation());
3114 
3115   if (Literal.getUDSuffix().empty())
3116     return Lit;
3117 
3118   // We're building a user-defined literal.
3119   IdentifierInfo *UDSuffix = &Context.Idents.get(Literal.getUDSuffix());
3120   SourceLocation UDSuffixLoc =
3121     getUDSuffixLoc(*this, Tok.getLocation(), Literal.getUDSuffixOffset());
3122 
3123   // Make sure we're allowed user-defined literals here.
3124   if (!UDLScope)
3125     return ExprError(Diag(UDSuffixLoc, diag::err_invalid_character_udl));
3126 
3127   // C++11 [lex.ext]p6: The literal L is treated as a call of the form
3128   //   operator "" X (ch)
3129   return BuildCookedLiteralOperatorCall(*this, UDLScope, UDSuffix, UDSuffixLoc,
3130                                         Lit, Tok.getLocation());
3131 }
3132 
3133 ExprResult Sema::ActOnIntegerConstant(SourceLocation Loc, uint64_t Val) {
3134   unsigned IntSize = Context.getTargetInfo().getIntWidth();
3135   return IntegerLiteral::Create(Context, llvm::APInt(IntSize, Val),
3136                                 Context.IntTy, Loc);
3137 }
3138 
3139 static Expr *BuildFloatingLiteral(Sema &S, NumericLiteralParser &Literal,
3140                                   QualType Ty, SourceLocation Loc) {
3141   const llvm::fltSemantics &Format = S.Context.getFloatTypeSemantics(Ty);
3142 
3143   using llvm::APFloat;
3144   APFloat Val(Format);
3145 
3146   APFloat::opStatus result = Literal.GetFloatValue(Val);
3147 
3148   // Overflow is always an error, but underflow is only an error if
3149   // we underflowed to zero (APFloat reports denormals as underflow).
3150   if ((result & APFloat::opOverflow) ||
3151       ((result & APFloat::opUnderflow) && Val.isZero())) {
3152     unsigned diagnostic;
3153     SmallString<20> buffer;
3154     if (result & APFloat::opOverflow) {
3155       diagnostic = diag::warn_float_overflow;
3156       APFloat::getLargest(Format).toString(buffer);
3157     } else {
3158       diagnostic = diag::warn_float_underflow;
3159       APFloat::getSmallest(Format).toString(buffer);
3160     }
3161 
3162     S.Diag(Loc, diagnostic)
3163       << Ty
3164       << StringRef(buffer.data(), buffer.size());
3165   }
3166 
3167   bool isExact = (result == APFloat::opOK);
3168   return FloatingLiteral::Create(S.Context, Val, isExact, Ty, Loc);
3169 }
3170 
3171 bool Sema::CheckLoopHintExpr(Expr *E, SourceLocation Loc) {
3172   assert(E && "Invalid expression");
3173 
3174   if (E->isValueDependent())
3175     return false;
3176 
3177   QualType QT = E->getType();
3178   if (!QT->isIntegerType() || QT->isBooleanType() || QT->isCharType()) {
3179     Diag(E->getExprLoc(), diag::err_pragma_loop_invalid_argument_type) << QT;
3180     return true;
3181   }
3182 
3183   llvm::APSInt ValueAPS;
3184   ExprResult R = VerifyIntegerConstantExpression(E, &ValueAPS);
3185 
3186   if (R.isInvalid())
3187     return true;
3188 
3189   bool ValueIsPositive = ValueAPS.isStrictlyPositive();
3190   if (!ValueIsPositive || ValueAPS.getActiveBits() > 31) {
3191     Diag(E->getExprLoc(), diag::err_pragma_loop_invalid_argument_value)
3192         << ValueAPS.toString(10) << ValueIsPositive;
3193     return true;
3194   }
3195 
3196   return false;
3197 }
3198 
3199 ExprResult Sema::ActOnNumericConstant(const Token &Tok, Scope *UDLScope) {
3200   // Fast path for a single digit (which is quite common).  A single digit
3201   // cannot have a trigraph, escaped newline, radix prefix, or suffix.
3202   if (Tok.getLength() == 1) {
3203     const char Val = PP.getSpellingOfSingleCharacterNumericConstant(Tok);
3204     return ActOnIntegerConstant(Tok.getLocation(), Val-'0');
3205   }
3206 
3207   SmallString<128> SpellingBuffer;
3208   // NumericLiteralParser wants to overread by one character.  Add padding to
3209   // the buffer in case the token is copied to the buffer.  If getSpelling()
3210   // returns a StringRef to the memory buffer, it should have a null char at
3211   // the EOF, so it is also safe.
3212   SpellingBuffer.resize(Tok.getLength() + 1);
3213 
3214   // Get the spelling of the token, which eliminates trigraphs, etc.
3215   bool Invalid = false;
3216   StringRef TokSpelling = PP.getSpelling(Tok, SpellingBuffer, &Invalid);
3217   if (Invalid)
3218     return ExprError();
3219 
3220   NumericLiteralParser Literal(TokSpelling, Tok.getLocation(), PP);
3221   if (Literal.hadError)
3222     return ExprError();
3223 
3224   if (Literal.hasUDSuffix()) {
3225     // We're building a user-defined literal.
3226     IdentifierInfo *UDSuffix = &Context.Idents.get(Literal.getUDSuffix());
3227     SourceLocation UDSuffixLoc =
3228       getUDSuffixLoc(*this, Tok.getLocation(), Literal.getUDSuffixOffset());
3229 
3230     // Make sure we're allowed user-defined literals here.
3231     if (!UDLScope)
3232       return ExprError(Diag(UDSuffixLoc, diag::err_invalid_numeric_udl));
3233 
3234     QualType CookedTy;
3235     if (Literal.isFloatingLiteral()) {
3236       // C++11 [lex.ext]p4: If S contains a literal operator with parameter type
3237       // long double, the literal is treated as a call of the form
3238       //   operator "" X (f L)
3239       CookedTy = Context.LongDoubleTy;
3240     } else {
3241       // C++11 [lex.ext]p3: If S contains a literal operator with parameter type
3242       // unsigned long long, the literal is treated as a call of the form
3243       //   operator "" X (n ULL)
3244       CookedTy = Context.UnsignedLongLongTy;
3245     }
3246 
3247     DeclarationName OpName =
3248       Context.DeclarationNames.getCXXLiteralOperatorName(UDSuffix);
3249     DeclarationNameInfo OpNameInfo(OpName, UDSuffixLoc);
3250     OpNameInfo.setCXXLiteralOperatorNameLoc(UDSuffixLoc);
3251 
3252     SourceLocation TokLoc = Tok.getLocation();
3253 
3254     // Perform literal operator lookup to determine if we're building a raw
3255     // literal or a cooked one.
3256     LookupResult R(*this, OpName, UDSuffixLoc, LookupOrdinaryName);
3257     switch (LookupLiteralOperator(UDLScope, R, CookedTy,
3258                                   /*AllowRaw*/true, /*AllowTemplate*/true,
3259                                   /*AllowStringTemplate*/false)) {
3260     case LOLR_Error:
3261       return ExprError();
3262 
3263     case LOLR_Cooked: {
3264       Expr *Lit;
3265       if (Literal.isFloatingLiteral()) {
3266         Lit = BuildFloatingLiteral(*this, Literal, CookedTy, Tok.getLocation());
3267       } else {
3268         llvm::APInt ResultVal(Context.getTargetInfo().getLongLongWidth(), 0);
3269         if (Literal.GetIntegerValue(ResultVal))
3270           Diag(Tok.getLocation(), diag::err_integer_literal_too_large)
3271               << /* Unsigned */ 1;
3272         Lit = IntegerLiteral::Create(Context, ResultVal, CookedTy,
3273                                      Tok.getLocation());
3274       }
3275       return BuildLiteralOperatorCall(R, OpNameInfo, Lit, TokLoc);
3276     }
3277 
3278     case LOLR_Raw: {
3279       // C++11 [lit.ext]p3, p4: If S contains a raw literal operator, the
3280       // literal is treated as a call of the form
3281       //   operator "" X ("n")
3282       unsigned Length = Literal.getUDSuffixOffset();
3283       QualType StrTy = Context.getConstantArrayType(
3284           Context.CharTy.withConst(), llvm::APInt(32, Length + 1),
3285           ArrayType::Normal, 0);
3286       Expr *Lit = StringLiteral::Create(
3287           Context, StringRef(TokSpelling.data(), Length), StringLiteral::Ascii,
3288           /*Pascal*/false, StrTy, &TokLoc, 1);
3289       return BuildLiteralOperatorCall(R, OpNameInfo, Lit, TokLoc);
3290     }
3291 
3292     case LOLR_Template: {
3293       // C++11 [lit.ext]p3, p4: Otherwise (S contains a literal operator
3294       // template), L is treated as a call fo the form
3295       //   operator "" X <'c1', 'c2', ... 'ck'>()
3296       // where n is the source character sequence c1 c2 ... ck.
3297       TemplateArgumentListInfo ExplicitArgs;
3298       unsigned CharBits = Context.getIntWidth(Context.CharTy);
3299       bool CharIsUnsigned = Context.CharTy->isUnsignedIntegerType();
3300       llvm::APSInt Value(CharBits, CharIsUnsigned);
3301       for (unsigned I = 0, N = Literal.getUDSuffixOffset(); I != N; ++I) {
3302         Value = TokSpelling[I];
3303         TemplateArgument Arg(Context, Value, Context.CharTy);
3304         TemplateArgumentLocInfo ArgInfo;
3305         ExplicitArgs.addArgument(TemplateArgumentLoc(Arg, ArgInfo));
3306       }
3307       return BuildLiteralOperatorCall(R, OpNameInfo, None, TokLoc,
3308                                       &ExplicitArgs);
3309     }
3310     case LOLR_StringTemplate:
3311       llvm_unreachable("unexpected literal operator lookup result");
3312     }
3313   }
3314 
3315   Expr *Res;
3316 
3317   if (Literal.isFloatingLiteral()) {
3318     QualType Ty;
3319     if (Literal.isHalf){
3320       if (getOpenCLOptions().cl_khr_fp16)
3321         Ty = Context.HalfTy;
3322       else {
3323         Diag(Tok.getLocation(), diag::err_half_const_requires_fp16);
3324         return ExprError();
3325       }
3326     } else if (Literal.isFloat)
3327       Ty = Context.FloatTy;
3328     else if (!Literal.isLong)
3329       Ty = Context.DoubleTy;
3330     else
3331       Ty = Context.LongDoubleTy;
3332 
3333     Res = BuildFloatingLiteral(*this, Literal, Ty, Tok.getLocation());
3334 
3335     if (Ty == Context.DoubleTy) {
3336       if (getLangOpts().SinglePrecisionConstants) {
3337         Res = ImpCastExprToType(Res, Context.FloatTy, CK_FloatingCast).get();
3338       } else if (getLangOpts().OpenCL &&
3339                  !((getLangOpts().OpenCLVersion >= 120) ||
3340                    getOpenCLOptions().cl_khr_fp64)) {
3341         Diag(Tok.getLocation(), diag::warn_double_const_requires_fp64);
3342         Res = ImpCastExprToType(Res, Context.FloatTy, CK_FloatingCast).get();
3343       }
3344     }
3345   } else if (!Literal.isIntegerLiteral()) {
3346     return ExprError();
3347   } else {
3348     QualType Ty;
3349 
3350     // 'long long' is a C99 or C++11 feature.
3351     if (!getLangOpts().C99 && Literal.isLongLong) {
3352       if (getLangOpts().CPlusPlus)
3353         Diag(Tok.getLocation(),
3354              getLangOpts().CPlusPlus11 ?
3355              diag::warn_cxx98_compat_longlong : diag::ext_cxx11_longlong);
3356       else
3357         Diag(Tok.getLocation(), diag::ext_c99_longlong);
3358     }
3359 
3360     // Get the value in the widest-possible width.
3361     unsigned MaxWidth = Context.getTargetInfo().getIntMaxTWidth();
3362     llvm::APInt ResultVal(MaxWidth, 0);
3363 
3364     if (Literal.GetIntegerValue(ResultVal)) {
3365       // If this value didn't fit into uintmax_t, error and force to ull.
3366       Diag(Tok.getLocation(), diag::err_integer_literal_too_large)
3367           << /* Unsigned */ 1;
3368       Ty = Context.UnsignedLongLongTy;
3369       assert(Context.getTypeSize(Ty) == ResultVal.getBitWidth() &&
3370              "long long is not intmax_t?");
3371     } else {
3372       // If this value fits into a ULL, try to figure out what else it fits into
3373       // according to the rules of C99 6.4.4.1p5.
3374 
3375       // Octal, Hexadecimal, and integers with a U suffix are allowed to
3376       // be an unsigned int.
3377       bool AllowUnsigned = Literal.isUnsigned || Literal.getRadix() != 10;
3378 
3379       // Check from smallest to largest, picking the smallest type we can.
3380       unsigned Width = 0;
3381 
3382       // Microsoft specific integer suffixes are explicitly sized.
3383       if (Literal.MicrosoftInteger) {
3384         if (Literal.MicrosoftInteger == 8 && !Literal.isUnsigned) {
3385           Width = 8;
3386           Ty = Context.CharTy;
3387         } else {
3388           Width = Literal.MicrosoftInteger;
3389           Ty = Context.getIntTypeForBitwidth(Width,
3390                                              /*Signed=*/!Literal.isUnsigned);
3391         }
3392       }
3393 
3394       if (Ty.isNull() && !Literal.isLong && !Literal.isLongLong) {
3395         // Are int/unsigned possibilities?
3396         unsigned IntSize = Context.getTargetInfo().getIntWidth();
3397 
3398         // Does it fit in a unsigned int?
3399         if (ResultVal.isIntN(IntSize)) {
3400           // Does it fit in a signed int?
3401           if (!Literal.isUnsigned && ResultVal[IntSize-1] == 0)
3402             Ty = Context.IntTy;
3403           else if (AllowUnsigned)
3404             Ty = Context.UnsignedIntTy;
3405           Width = IntSize;
3406         }
3407       }
3408 
3409       // Are long/unsigned long possibilities?
3410       if (Ty.isNull() && !Literal.isLongLong) {
3411         unsigned LongSize = Context.getTargetInfo().getLongWidth();
3412 
3413         // Does it fit in a unsigned long?
3414         if (ResultVal.isIntN(LongSize)) {
3415           // Does it fit in a signed long?
3416           if (!Literal.isUnsigned && ResultVal[LongSize-1] == 0)
3417             Ty = Context.LongTy;
3418           else if (AllowUnsigned)
3419             Ty = Context.UnsignedLongTy;
3420           // Check according to the rules of C90 6.1.3.2p5. C++03 [lex.icon]p2
3421           // is compatible.
3422           else if (!getLangOpts().C99 && !getLangOpts().CPlusPlus11) {
3423             const unsigned LongLongSize =
3424                 Context.getTargetInfo().getLongLongWidth();
3425             Diag(Tok.getLocation(),
3426                  getLangOpts().CPlusPlus
3427                      ? Literal.isLong
3428                            ? diag::warn_old_implicitly_unsigned_long_cxx
3429                            : /*C++98 UB*/ diag::
3430                                  ext_old_implicitly_unsigned_long_cxx
3431                      : diag::warn_old_implicitly_unsigned_long)
3432                 << (LongLongSize > LongSize ? /*will have type 'long long'*/ 0
3433                                             : /*will be ill-formed*/ 1);
3434             Ty = Context.UnsignedLongTy;
3435           }
3436           Width = LongSize;
3437         }
3438       }
3439 
3440       // Check long long if needed.
3441       if (Ty.isNull()) {
3442         unsigned LongLongSize = Context.getTargetInfo().getLongLongWidth();
3443 
3444         // Does it fit in a unsigned long long?
3445         if (ResultVal.isIntN(LongLongSize)) {
3446           // Does it fit in a signed long long?
3447           // To be compatible with MSVC, hex integer literals ending with the
3448           // LL or i64 suffix are always signed in Microsoft mode.
3449           if (!Literal.isUnsigned && (ResultVal[LongLongSize-1] == 0 ||
3450               (getLangOpts().MicrosoftExt && Literal.isLongLong)))
3451             Ty = Context.LongLongTy;
3452           else if (AllowUnsigned)
3453             Ty = Context.UnsignedLongLongTy;
3454           Width = LongLongSize;
3455         }
3456       }
3457 
3458       // If we still couldn't decide a type, we probably have something that
3459       // does not fit in a signed long long, but has no U suffix.
3460       if (Ty.isNull()) {
3461         Diag(Tok.getLocation(), diag::ext_integer_literal_too_large_for_signed);
3462         Ty = Context.UnsignedLongLongTy;
3463         Width = Context.getTargetInfo().getLongLongWidth();
3464       }
3465 
3466       if (ResultVal.getBitWidth() != Width)
3467         ResultVal = ResultVal.trunc(Width);
3468     }
3469     Res = IntegerLiteral::Create(Context, ResultVal, Ty, Tok.getLocation());
3470   }
3471 
3472   // If this is an imaginary literal, create the ImaginaryLiteral wrapper.
3473   if (Literal.isImaginary)
3474     Res = new (Context) ImaginaryLiteral(Res,
3475                                         Context.getComplexType(Res->getType()));
3476 
3477   return Res;
3478 }
3479 
3480 ExprResult Sema::ActOnParenExpr(SourceLocation L, SourceLocation R, Expr *E) {
3481   assert(E && "ActOnParenExpr() missing expr");
3482   return new (Context) ParenExpr(L, R, E);
3483 }
3484 
3485 static bool CheckVecStepTraitOperandType(Sema &S, QualType T,
3486                                          SourceLocation Loc,
3487                                          SourceRange ArgRange) {
3488   // [OpenCL 1.1 6.11.12] "The vec_step built-in function takes a built-in
3489   // scalar or vector data type argument..."
3490   // Every built-in scalar type (OpenCL 1.1 6.1.1) is either an arithmetic
3491   // type (C99 6.2.5p18) or void.
3492   if (!(T->isArithmeticType() || T->isVoidType() || T->isVectorType())) {
3493     S.Diag(Loc, diag::err_vecstep_non_scalar_vector_type)
3494       << T << ArgRange;
3495     return true;
3496   }
3497 
3498   assert((T->isVoidType() || !T->isIncompleteType()) &&
3499          "Scalar types should always be complete");
3500   return false;
3501 }
3502 
3503 static bool CheckExtensionTraitOperandType(Sema &S, QualType T,
3504                                            SourceLocation Loc,
3505                                            SourceRange ArgRange,
3506                                            UnaryExprOrTypeTrait TraitKind) {
3507   // Invalid types must be hard errors for SFINAE in C++.
3508   if (S.LangOpts.CPlusPlus)
3509     return true;
3510 
3511   // C99 6.5.3.4p1:
3512   if (T->isFunctionType() &&
3513       (TraitKind == UETT_SizeOf || TraitKind == UETT_AlignOf)) {
3514     // sizeof(function)/alignof(function) is allowed as an extension.
3515     S.Diag(Loc, diag::ext_sizeof_alignof_function_type)
3516       << TraitKind << ArgRange;
3517     return false;
3518   }
3519 
3520   // Allow sizeof(void)/alignof(void) as an extension, unless in OpenCL where
3521   // this is an error (OpenCL v1.1 s6.3.k)
3522   if (T->isVoidType()) {
3523     unsigned DiagID = S.LangOpts.OpenCL ? diag::err_opencl_sizeof_alignof_type
3524                                         : diag::ext_sizeof_alignof_void_type;
3525     S.Diag(Loc, DiagID) << TraitKind << ArgRange;
3526     return false;
3527   }
3528 
3529   return true;
3530 }
3531 
3532 static bool CheckObjCTraitOperandConstraints(Sema &S, QualType T,
3533                                              SourceLocation Loc,
3534                                              SourceRange ArgRange,
3535                                              UnaryExprOrTypeTrait TraitKind) {
3536   // Reject sizeof(interface) and sizeof(interface<proto>) if the
3537   // runtime doesn't allow it.
3538   if (!S.LangOpts.ObjCRuntime.allowsSizeofAlignof() && T->isObjCObjectType()) {
3539     S.Diag(Loc, diag::err_sizeof_nonfragile_interface)
3540       << T << (TraitKind == UETT_SizeOf)
3541       << ArgRange;
3542     return true;
3543   }
3544 
3545   return false;
3546 }
3547 
3548 /// \brief Check whether E is a pointer from a decayed array type (the decayed
3549 /// pointer type is equal to T) and emit a warning if it is.
3550 static void warnOnSizeofOnArrayDecay(Sema &S, SourceLocation Loc, QualType T,
3551                                      Expr *E) {
3552   // Don't warn if the operation changed the type.
3553   if (T != E->getType())
3554     return;
3555 
3556   // Now look for array decays.
3557   ImplicitCastExpr *ICE = dyn_cast<ImplicitCastExpr>(E);
3558   if (!ICE || ICE->getCastKind() != CK_ArrayToPointerDecay)
3559     return;
3560 
3561   S.Diag(Loc, diag::warn_sizeof_array_decay) << ICE->getSourceRange()
3562                                              << ICE->getType()
3563                                              << ICE->getSubExpr()->getType();
3564 }
3565 
3566 /// \brief Check the constraints on expression operands to unary type expression
3567 /// and type traits.
3568 ///
3569 /// Completes any types necessary and validates the constraints on the operand
3570 /// expression. The logic mostly mirrors the type-based overload, but may modify
3571 /// the expression as it completes the type for that expression through template
3572 /// instantiation, etc.
3573 bool Sema::CheckUnaryExprOrTypeTraitOperand(Expr *E,
3574                                             UnaryExprOrTypeTrait ExprKind) {
3575   QualType ExprTy = E->getType();
3576   assert(!ExprTy->isReferenceType());
3577 
3578   if (ExprKind == UETT_VecStep)
3579     return CheckVecStepTraitOperandType(*this, ExprTy, E->getExprLoc(),
3580                                         E->getSourceRange());
3581 
3582   // Whitelist some types as extensions
3583   if (!CheckExtensionTraitOperandType(*this, ExprTy, E->getExprLoc(),
3584                                       E->getSourceRange(), ExprKind))
3585     return false;
3586 
3587   // 'alignof' applied to an expression only requires the base element type of
3588   // the expression to be complete. 'sizeof' requires the expression's type to
3589   // be complete (and will attempt to complete it if it's an array of unknown
3590   // bound).
3591   if (ExprKind == UETT_AlignOf) {
3592     if (RequireCompleteType(E->getExprLoc(),
3593                             Context.getBaseElementType(E->getType()),
3594                             diag::err_sizeof_alignof_incomplete_type, ExprKind,
3595                             E->getSourceRange()))
3596       return true;
3597   } else {
3598     if (RequireCompleteExprType(E, diag::err_sizeof_alignof_incomplete_type,
3599                                 ExprKind, E->getSourceRange()))
3600       return true;
3601   }
3602 
3603   // Completing the expression's type may have changed it.
3604   ExprTy = E->getType();
3605   assert(!ExprTy->isReferenceType());
3606 
3607   if (ExprTy->isFunctionType()) {
3608     Diag(E->getExprLoc(), diag::err_sizeof_alignof_function_type)
3609       << ExprKind << E->getSourceRange();
3610     return true;
3611   }
3612 
3613   // The operand for sizeof and alignof is in an unevaluated expression context,
3614   // so side effects could result in unintended consequences.
3615   if ((ExprKind == UETT_SizeOf || ExprKind == UETT_AlignOf) &&
3616       ActiveTemplateInstantiations.empty() && E->HasSideEffects(Context, false))
3617     Diag(E->getExprLoc(), diag::warn_side_effects_unevaluated_context);
3618 
3619   if (CheckObjCTraitOperandConstraints(*this, ExprTy, E->getExprLoc(),
3620                                        E->getSourceRange(), ExprKind))
3621     return true;
3622 
3623   if (ExprKind == UETT_SizeOf) {
3624     if (DeclRefExpr *DeclRef = dyn_cast<DeclRefExpr>(E->IgnoreParens())) {
3625       if (ParmVarDecl *PVD = dyn_cast<ParmVarDecl>(DeclRef->getFoundDecl())) {
3626         QualType OType = PVD->getOriginalType();
3627         QualType Type = PVD->getType();
3628         if (Type->isPointerType() && OType->isArrayType()) {
3629           Diag(E->getExprLoc(), diag::warn_sizeof_array_param)
3630             << Type << OType;
3631           Diag(PVD->getLocation(), diag::note_declared_at);
3632         }
3633       }
3634     }
3635 
3636     // Warn on "sizeof(array op x)" and "sizeof(x op array)", where the array
3637     // decays into a pointer and returns an unintended result. This is most
3638     // likely a typo for "sizeof(array) op x".
3639     if (BinaryOperator *BO = dyn_cast<BinaryOperator>(E->IgnoreParens())) {
3640       warnOnSizeofOnArrayDecay(*this, BO->getOperatorLoc(), BO->getType(),
3641                                BO->getLHS());
3642       warnOnSizeofOnArrayDecay(*this, BO->getOperatorLoc(), BO->getType(),
3643                                BO->getRHS());
3644     }
3645   }
3646 
3647   return false;
3648 }
3649 
3650 /// \brief Check the constraints on operands to unary expression and type
3651 /// traits.
3652 ///
3653 /// This will complete any types necessary, and validate the various constraints
3654 /// on those operands.
3655 ///
3656 /// The UsualUnaryConversions() function is *not* called by this routine.
3657 /// C99 6.3.2.1p[2-4] all state:
3658 ///   Except when it is the operand of the sizeof operator ...
3659 ///
3660 /// C++ [expr.sizeof]p4
3661 ///   The lvalue-to-rvalue, array-to-pointer, and function-to-pointer
3662 ///   standard conversions are not applied to the operand of sizeof.
3663 ///
3664 /// This policy is followed for all of the unary trait expressions.
3665 bool Sema::CheckUnaryExprOrTypeTraitOperand(QualType ExprType,
3666                                             SourceLocation OpLoc,
3667                                             SourceRange ExprRange,
3668                                             UnaryExprOrTypeTrait ExprKind) {
3669   if (ExprType->isDependentType())
3670     return false;
3671 
3672   // C++ [expr.sizeof]p2:
3673   //     When applied to a reference or a reference type, the result
3674   //     is the size of the referenced type.
3675   // C++11 [expr.alignof]p3:
3676   //     When alignof is applied to a reference type, the result
3677   //     shall be the alignment of the referenced type.
3678   if (const ReferenceType *Ref = ExprType->getAs<ReferenceType>())
3679     ExprType = Ref->getPointeeType();
3680 
3681   // C11 6.5.3.4/3, C++11 [expr.alignof]p3:
3682   //   When alignof or _Alignof is applied to an array type, the result
3683   //   is the alignment of the element type.
3684   if (ExprKind == UETT_AlignOf || ExprKind == UETT_OpenMPRequiredSimdAlign)
3685     ExprType = Context.getBaseElementType(ExprType);
3686 
3687   if (ExprKind == UETT_VecStep)
3688     return CheckVecStepTraitOperandType(*this, ExprType, OpLoc, ExprRange);
3689 
3690   // Whitelist some types as extensions
3691   if (!CheckExtensionTraitOperandType(*this, ExprType, OpLoc, ExprRange,
3692                                       ExprKind))
3693     return false;
3694 
3695   if (RequireCompleteType(OpLoc, ExprType,
3696                           diag::err_sizeof_alignof_incomplete_type,
3697                           ExprKind, ExprRange))
3698     return true;
3699 
3700   if (ExprType->isFunctionType()) {
3701     Diag(OpLoc, diag::err_sizeof_alignof_function_type)
3702       << ExprKind << ExprRange;
3703     return true;
3704   }
3705 
3706   if (CheckObjCTraitOperandConstraints(*this, ExprType, OpLoc, ExprRange,
3707                                        ExprKind))
3708     return true;
3709 
3710   return false;
3711 }
3712 
3713 static bool CheckAlignOfExpr(Sema &S, Expr *E) {
3714   E = E->IgnoreParens();
3715 
3716   // Cannot know anything else if the expression is dependent.
3717   if (E->isTypeDependent())
3718     return false;
3719 
3720   if (E->getObjectKind() == OK_BitField) {
3721     S.Diag(E->getExprLoc(), diag::err_sizeof_alignof_typeof_bitfield)
3722        << 1 << E->getSourceRange();
3723     return true;
3724   }
3725 
3726   ValueDecl *D = nullptr;
3727   if (DeclRefExpr *DRE = dyn_cast<DeclRefExpr>(E)) {
3728     D = DRE->getDecl();
3729   } else if (MemberExpr *ME = dyn_cast<MemberExpr>(E)) {
3730     D = ME->getMemberDecl();
3731   }
3732 
3733   // If it's a field, require the containing struct to have a
3734   // complete definition so that we can compute the layout.
3735   //
3736   // This can happen in C++11 onwards, either by naming the member
3737   // in a way that is not transformed into a member access expression
3738   // (in an unevaluated operand, for instance), or by naming the member
3739   // in a trailing-return-type.
3740   //
3741   // For the record, since __alignof__ on expressions is a GCC
3742   // extension, GCC seems to permit this but always gives the
3743   // nonsensical answer 0.
3744   //
3745   // We don't really need the layout here --- we could instead just
3746   // directly check for all the appropriate alignment-lowing
3747   // attributes --- but that would require duplicating a lot of
3748   // logic that just isn't worth duplicating for such a marginal
3749   // use-case.
3750   if (FieldDecl *FD = dyn_cast_or_null<FieldDecl>(D)) {
3751     // Fast path this check, since we at least know the record has a
3752     // definition if we can find a member of it.
3753     if (!FD->getParent()->isCompleteDefinition()) {
3754       S.Diag(E->getExprLoc(), diag::err_alignof_member_of_incomplete_type)
3755         << E->getSourceRange();
3756       return true;
3757     }
3758 
3759     // Otherwise, if it's a field, and the field doesn't have
3760     // reference type, then it must have a complete type (or be a
3761     // flexible array member, which we explicitly want to
3762     // white-list anyway), which makes the following checks trivial.
3763     if (!FD->getType()->isReferenceType())
3764       return false;
3765   }
3766 
3767   return S.CheckUnaryExprOrTypeTraitOperand(E, UETT_AlignOf);
3768 }
3769 
3770 bool Sema::CheckVecStepExpr(Expr *E) {
3771   E = E->IgnoreParens();
3772 
3773   // Cannot know anything else if the expression is dependent.
3774   if (E->isTypeDependent())
3775     return false;
3776 
3777   return CheckUnaryExprOrTypeTraitOperand(E, UETT_VecStep);
3778 }
3779 
3780 static void captureVariablyModifiedType(ASTContext &Context, QualType T,
3781                                         CapturingScopeInfo *CSI) {
3782   assert(T->isVariablyModifiedType());
3783   assert(CSI != nullptr);
3784 
3785   // We're going to walk down into the type and look for VLA expressions.
3786   do {
3787     const Type *Ty = T.getTypePtr();
3788     switch (Ty->getTypeClass()) {
3789 #define TYPE(Class, Base)
3790 #define ABSTRACT_TYPE(Class, Base)
3791 #define NON_CANONICAL_TYPE(Class, Base)
3792 #define DEPENDENT_TYPE(Class, Base) case Type::Class:
3793 #define NON_CANONICAL_UNLESS_DEPENDENT_TYPE(Class, Base)
3794 #include "clang/AST/TypeNodes.def"
3795       T = QualType();
3796       break;
3797     // These types are never variably-modified.
3798     case Type::Builtin:
3799     case Type::Complex:
3800     case Type::Vector:
3801     case Type::ExtVector:
3802     case Type::Record:
3803     case Type::Enum:
3804     case Type::Elaborated:
3805     case Type::TemplateSpecialization:
3806     case Type::ObjCObject:
3807     case Type::ObjCInterface:
3808     case Type::ObjCObjectPointer:
3809     case Type::Pipe:
3810       llvm_unreachable("type class is never variably-modified!");
3811     case Type::Adjusted:
3812       T = cast<AdjustedType>(Ty)->getOriginalType();
3813       break;
3814     case Type::Decayed:
3815       T = cast<DecayedType>(Ty)->getPointeeType();
3816       break;
3817     case Type::Pointer:
3818       T = cast<PointerType>(Ty)->getPointeeType();
3819       break;
3820     case Type::BlockPointer:
3821       T = cast<BlockPointerType>(Ty)->getPointeeType();
3822       break;
3823     case Type::LValueReference:
3824     case Type::RValueReference:
3825       T = cast<ReferenceType>(Ty)->getPointeeType();
3826       break;
3827     case Type::MemberPointer:
3828       T = cast<MemberPointerType>(Ty)->getPointeeType();
3829       break;
3830     case Type::ConstantArray:
3831     case Type::IncompleteArray:
3832       // Losing element qualification here is fine.
3833       T = cast<ArrayType>(Ty)->getElementType();
3834       break;
3835     case Type::VariableArray: {
3836       // Losing element qualification here is fine.
3837       const VariableArrayType *VAT = cast<VariableArrayType>(Ty);
3838 
3839       // Unknown size indication requires no size computation.
3840       // Otherwise, evaluate and record it.
3841       if (auto Size = VAT->getSizeExpr()) {
3842         if (!CSI->isVLATypeCaptured(VAT)) {
3843           RecordDecl *CapRecord = nullptr;
3844           if (auto LSI = dyn_cast<LambdaScopeInfo>(CSI)) {
3845             CapRecord = LSI->Lambda;
3846           } else if (auto CRSI = dyn_cast<CapturedRegionScopeInfo>(CSI)) {
3847             CapRecord = CRSI->TheRecordDecl;
3848           }
3849           if (CapRecord) {
3850             auto ExprLoc = Size->getExprLoc();
3851             auto SizeType = Context.getSizeType();
3852             // Build the non-static data member.
3853             auto Field =
3854                 FieldDecl::Create(Context, CapRecord, ExprLoc, ExprLoc,
3855                                   /*Id*/ nullptr, SizeType, /*TInfo*/ nullptr,
3856                                   /*BW*/ nullptr, /*Mutable*/ false,
3857                                   /*InitStyle*/ ICIS_NoInit);
3858             Field->setImplicit(true);
3859             Field->setAccess(AS_private);
3860             Field->setCapturedVLAType(VAT);
3861             CapRecord->addDecl(Field);
3862 
3863             CSI->addVLATypeCapture(ExprLoc, SizeType);
3864           }
3865         }
3866       }
3867       T = VAT->getElementType();
3868       break;
3869     }
3870     case Type::FunctionProto:
3871     case Type::FunctionNoProto:
3872       T = cast<FunctionType>(Ty)->getReturnType();
3873       break;
3874     case Type::Paren:
3875     case Type::TypeOf:
3876     case Type::UnaryTransform:
3877     case Type::Attributed:
3878     case Type::SubstTemplateTypeParm:
3879     case Type::PackExpansion:
3880       // Keep walking after single level desugaring.
3881       T = T.getSingleStepDesugaredType(Context);
3882       break;
3883     case Type::Typedef:
3884       T = cast<TypedefType>(Ty)->desugar();
3885       break;
3886     case Type::Decltype:
3887       T = cast<DecltypeType>(Ty)->desugar();
3888       break;
3889     case Type::Auto:
3890       T = cast<AutoType>(Ty)->getDeducedType();
3891       break;
3892     case Type::TypeOfExpr:
3893       T = cast<TypeOfExprType>(Ty)->getUnderlyingExpr()->getType();
3894       break;
3895     case Type::Atomic:
3896       T = cast<AtomicType>(Ty)->getValueType();
3897       break;
3898     }
3899   } while (!T.isNull() && T->isVariablyModifiedType());
3900 }
3901 
3902 /// \brief Build a sizeof or alignof expression given a type operand.
3903 ExprResult
3904 Sema::CreateUnaryExprOrTypeTraitExpr(TypeSourceInfo *TInfo,
3905                                      SourceLocation OpLoc,
3906                                      UnaryExprOrTypeTrait ExprKind,
3907                                      SourceRange R) {
3908   if (!TInfo)
3909     return ExprError();
3910 
3911   QualType T = TInfo->getType();
3912 
3913   if (!T->isDependentType() &&
3914       CheckUnaryExprOrTypeTraitOperand(T, OpLoc, R, ExprKind))
3915     return ExprError();
3916 
3917   if (T->isVariablyModifiedType() && FunctionScopes.size() > 1) {
3918     if (auto *TT = T->getAs<TypedefType>()) {
3919       for (auto I = FunctionScopes.rbegin(),
3920                 E = std::prev(FunctionScopes.rend());
3921            I != E; ++I) {
3922         auto *CSI = dyn_cast<CapturingScopeInfo>(*I);
3923         if (CSI == nullptr)
3924           break;
3925         DeclContext *DC = nullptr;
3926         if (auto *LSI = dyn_cast<LambdaScopeInfo>(CSI))
3927           DC = LSI->CallOperator;
3928         else if (auto *CRSI = dyn_cast<CapturedRegionScopeInfo>(CSI))
3929           DC = CRSI->TheCapturedDecl;
3930         else if (auto *BSI = dyn_cast<BlockScopeInfo>(CSI))
3931           DC = BSI->TheDecl;
3932         if (DC) {
3933           if (DC->containsDecl(TT->getDecl()))
3934             break;
3935           captureVariablyModifiedType(Context, T, CSI);
3936         }
3937       }
3938     }
3939   }
3940 
3941   // C99 6.5.3.4p4: the type (an unsigned integer type) is size_t.
3942   return new (Context) UnaryExprOrTypeTraitExpr(
3943       ExprKind, TInfo, Context.getSizeType(), OpLoc, R.getEnd());
3944 }
3945 
3946 /// \brief Build a sizeof or alignof expression given an expression
3947 /// operand.
3948 ExprResult
3949 Sema::CreateUnaryExprOrTypeTraitExpr(Expr *E, SourceLocation OpLoc,
3950                                      UnaryExprOrTypeTrait ExprKind) {
3951   ExprResult PE = CheckPlaceholderExpr(E);
3952   if (PE.isInvalid())
3953     return ExprError();
3954 
3955   E = PE.get();
3956 
3957   // Verify that the operand is valid.
3958   bool isInvalid = false;
3959   if (E->isTypeDependent()) {
3960     // Delay type-checking for type-dependent expressions.
3961   } else if (ExprKind == UETT_AlignOf) {
3962     isInvalid = CheckAlignOfExpr(*this, E);
3963   } else if (ExprKind == UETT_VecStep) {
3964     isInvalid = CheckVecStepExpr(E);
3965   } else if (ExprKind == UETT_OpenMPRequiredSimdAlign) {
3966       Diag(E->getExprLoc(), diag::err_openmp_default_simd_align_expr);
3967       isInvalid = true;
3968   } else if (E->refersToBitField()) {  // C99 6.5.3.4p1.
3969     Diag(E->getExprLoc(), diag::err_sizeof_alignof_typeof_bitfield) << 0;
3970     isInvalid = true;
3971   } else {
3972     isInvalid = CheckUnaryExprOrTypeTraitOperand(E, UETT_SizeOf);
3973   }
3974 
3975   if (isInvalid)
3976     return ExprError();
3977 
3978   if (ExprKind == UETT_SizeOf && E->getType()->isVariableArrayType()) {
3979     PE = TransformToPotentiallyEvaluated(E);
3980     if (PE.isInvalid()) return ExprError();
3981     E = PE.get();
3982   }
3983 
3984   // C99 6.5.3.4p4: the type (an unsigned integer type) is size_t.
3985   return new (Context) UnaryExprOrTypeTraitExpr(
3986       ExprKind, E, Context.getSizeType(), OpLoc, E->getSourceRange().getEnd());
3987 }
3988 
3989 /// ActOnUnaryExprOrTypeTraitExpr - Handle @c sizeof(type) and @c sizeof @c
3990 /// expr and the same for @c alignof and @c __alignof
3991 /// Note that the ArgRange is invalid if isType is false.
3992 ExprResult
3993 Sema::ActOnUnaryExprOrTypeTraitExpr(SourceLocation OpLoc,
3994                                     UnaryExprOrTypeTrait ExprKind, bool IsType,
3995                                     void *TyOrEx, SourceRange ArgRange) {
3996   // If error parsing type, ignore.
3997   if (!TyOrEx) return ExprError();
3998 
3999   if (IsType) {
4000     TypeSourceInfo *TInfo;
4001     (void) GetTypeFromParser(ParsedType::getFromOpaquePtr(TyOrEx), &TInfo);
4002     return CreateUnaryExprOrTypeTraitExpr(TInfo, OpLoc, ExprKind, ArgRange);
4003   }
4004 
4005   Expr *ArgEx = (Expr *)TyOrEx;
4006   ExprResult Result = CreateUnaryExprOrTypeTraitExpr(ArgEx, OpLoc, ExprKind);
4007   return Result;
4008 }
4009 
4010 static QualType CheckRealImagOperand(Sema &S, ExprResult &V, SourceLocation Loc,
4011                                      bool IsReal) {
4012   if (V.get()->isTypeDependent())
4013     return S.Context.DependentTy;
4014 
4015   // _Real and _Imag are only l-values for normal l-values.
4016   if (V.get()->getObjectKind() != OK_Ordinary) {
4017     V = S.DefaultLvalueConversion(V.get());
4018     if (V.isInvalid())
4019       return QualType();
4020   }
4021 
4022   // These operators return the element type of a complex type.
4023   if (const ComplexType *CT = V.get()->getType()->getAs<ComplexType>())
4024     return CT->getElementType();
4025 
4026   // Otherwise they pass through real integer and floating point types here.
4027   if (V.get()->getType()->isArithmeticType())
4028     return V.get()->getType();
4029 
4030   // Test for placeholders.
4031   ExprResult PR = S.CheckPlaceholderExpr(V.get());
4032   if (PR.isInvalid()) return QualType();
4033   if (PR.get() != V.get()) {
4034     V = PR;
4035     return CheckRealImagOperand(S, V, Loc, IsReal);
4036   }
4037 
4038   // Reject anything else.
4039   S.Diag(Loc, diag::err_realimag_invalid_type) << V.get()->getType()
4040     << (IsReal ? "__real" : "__imag");
4041   return QualType();
4042 }
4043 
4044 
4045 
4046 ExprResult
4047 Sema::ActOnPostfixUnaryOp(Scope *S, SourceLocation OpLoc,
4048                           tok::TokenKind Kind, Expr *Input) {
4049   UnaryOperatorKind Opc;
4050   switch (Kind) {
4051   default: llvm_unreachable("Unknown unary op!");
4052   case tok::plusplus:   Opc = UO_PostInc; break;
4053   case tok::minusminus: Opc = UO_PostDec; break;
4054   }
4055 
4056   // Since this might is a postfix expression, get rid of ParenListExprs.
4057   ExprResult Result = MaybeConvertParenListExprToParenExpr(S, Input);
4058   if (Result.isInvalid()) return ExprError();
4059   Input = Result.get();
4060 
4061   return BuildUnaryOp(S, OpLoc, Opc, Input);
4062 }
4063 
4064 /// \brief Diagnose if arithmetic on the given ObjC pointer is illegal.
4065 ///
4066 /// \return true on error
4067 static bool checkArithmeticOnObjCPointer(Sema &S,
4068                                          SourceLocation opLoc,
4069                                          Expr *op) {
4070   assert(op->getType()->isObjCObjectPointerType());
4071   if (S.LangOpts.ObjCRuntime.allowsPointerArithmetic() &&
4072       !S.LangOpts.ObjCSubscriptingLegacyRuntime)
4073     return false;
4074 
4075   S.Diag(opLoc, diag::err_arithmetic_nonfragile_interface)
4076     << op->getType()->castAs<ObjCObjectPointerType>()->getPointeeType()
4077     << op->getSourceRange();
4078   return true;
4079 }
4080 
4081 static bool isMSPropertySubscriptExpr(Sema &S, Expr *Base) {
4082   auto *BaseNoParens = Base->IgnoreParens();
4083   if (auto *MSProp = dyn_cast<MSPropertyRefExpr>(BaseNoParens))
4084     return MSProp->getPropertyDecl()->getType()->isArrayType();
4085   return isa<MSPropertySubscriptExpr>(BaseNoParens);
4086 }
4087 
4088 ExprResult
4089 Sema::ActOnArraySubscriptExpr(Scope *S, Expr *base, SourceLocation lbLoc,
4090                               Expr *idx, SourceLocation rbLoc) {
4091   if (base && !base->getType().isNull() &&
4092       base->getType()->isSpecificPlaceholderType(BuiltinType::OMPArraySection))
4093     return ActOnOMPArraySectionExpr(base, lbLoc, idx, SourceLocation(),
4094                                     /*Length=*/nullptr, rbLoc);
4095 
4096   // Since this might be a postfix expression, get rid of ParenListExprs.
4097   if (isa<ParenListExpr>(base)) {
4098     ExprResult result = MaybeConvertParenListExprToParenExpr(S, base);
4099     if (result.isInvalid()) return ExprError();
4100     base = result.get();
4101   }
4102 
4103   // Handle any non-overload placeholder types in the base and index
4104   // expressions.  We can't handle overloads here because the other
4105   // operand might be an overloadable type, in which case the overload
4106   // resolution for the operator overload should get the first crack
4107   // at the overload.
4108   bool IsMSPropertySubscript = false;
4109   if (base->getType()->isNonOverloadPlaceholderType()) {
4110     IsMSPropertySubscript = isMSPropertySubscriptExpr(*this, base);
4111     if (!IsMSPropertySubscript) {
4112       ExprResult result = CheckPlaceholderExpr(base);
4113       if (result.isInvalid())
4114         return ExprError();
4115       base = result.get();
4116     }
4117   }
4118   if (idx->getType()->isNonOverloadPlaceholderType()) {
4119     ExprResult result = CheckPlaceholderExpr(idx);
4120     if (result.isInvalid()) return ExprError();
4121     idx = result.get();
4122   }
4123 
4124   // Build an unanalyzed expression if either operand is type-dependent.
4125   if (getLangOpts().CPlusPlus &&
4126       (base->isTypeDependent() || idx->isTypeDependent())) {
4127     return new (Context) ArraySubscriptExpr(base, idx, Context.DependentTy,
4128                                             VK_LValue, OK_Ordinary, rbLoc);
4129   }
4130 
4131   // MSDN, property (C++)
4132   // https://msdn.microsoft.com/en-us/library/yhfk0thd(v=vs.120).aspx
4133   // This attribute can also be used in the declaration of an empty array in a
4134   // class or structure definition. For example:
4135   // __declspec(property(get=GetX, put=PutX)) int x[];
4136   // The above statement indicates that x[] can be used with one or more array
4137   // indices. In this case, i=p->x[a][b] will be turned into i=p->GetX(a, b),
4138   // and p->x[a][b] = i will be turned into p->PutX(a, b, i);
4139   if (IsMSPropertySubscript) {
4140     // Build MS property subscript expression if base is MS property reference
4141     // or MS property subscript.
4142     return new (Context) MSPropertySubscriptExpr(
4143         base, idx, Context.PseudoObjectTy, VK_LValue, OK_Ordinary, rbLoc);
4144   }
4145 
4146   // Use C++ overloaded-operator rules if either operand has record
4147   // type.  The spec says to do this if either type is *overloadable*,
4148   // but enum types can't declare subscript operators or conversion
4149   // operators, so there's nothing interesting for overload resolution
4150   // to do if there aren't any record types involved.
4151   //
4152   // ObjC pointers have their own subscripting logic that is not tied
4153   // to overload resolution and so should not take this path.
4154   if (getLangOpts().CPlusPlus &&
4155       (base->getType()->isRecordType() ||
4156        (!base->getType()->isObjCObjectPointerType() &&
4157         idx->getType()->isRecordType()))) {
4158     return CreateOverloadedArraySubscriptExpr(lbLoc, rbLoc, base, idx);
4159   }
4160 
4161   return CreateBuiltinArraySubscriptExpr(base, lbLoc, idx, rbLoc);
4162 }
4163 
4164 ExprResult Sema::ActOnOMPArraySectionExpr(Expr *Base, SourceLocation LBLoc,
4165                                           Expr *LowerBound,
4166                                           SourceLocation ColonLoc, Expr *Length,
4167                                           SourceLocation RBLoc) {
4168   if (Base->getType()->isPlaceholderType() &&
4169       !Base->getType()->isSpecificPlaceholderType(
4170           BuiltinType::OMPArraySection)) {
4171     ExprResult Result = CheckPlaceholderExpr(Base);
4172     if (Result.isInvalid())
4173       return ExprError();
4174     Base = Result.get();
4175   }
4176   if (LowerBound && LowerBound->getType()->isNonOverloadPlaceholderType()) {
4177     ExprResult Result = CheckPlaceholderExpr(LowerBound);
4178     if (Result.isInvalid())
4179       return ExprError();
4180     Result = DefaultLvalueConversion(Result.get());
4181     if (Result.isInvalid())
4182       return ExprError();
4183     LowerBound = Result.get();
4184   }
4185   if (Length && Length->getType()->isNonOverloadPlaceholderType()) {
4186     ExprResult Result = CheckPlaceholderExpr(Length);
4187     if (Result.isInvalid())
4188       return ExprError();
4189     Result = DefaultLvalueConversion(Result.get());
4190     if (Result.isInvalid())
4191       return ExprError();
4192     Length = Result.get();
4193   }
4194 
4195   // Build an unanalyzed expression if either operand is type-dependent.
4196   if (Base->isTypeDependent() ||
4197       (LowerBound &&
4198        (LowerBound->isTypeDependent() || LowerBound->isValueDependent())) ||
4199       (Length && (Length->isTypeDependent() || Length->isValueDependent()))) {
4200     return new (Context)
4201         OMPArraySectionExpr(Base, LowerBound, Length, Context.DependentTy,
4202                             VK_LValue, OK_Ordinary, ColonLoc, RBLoc);
4203   }
4204 
4205   // Perform default conversions.
4206   QualType OriginalTy = OMPArraySectionExpr::getBaseOriginalType(Base);
4207   QualType ResultTy;
4208   if (OriginalTy->isAnyPointerType()) {
4209     ResultTy = OriginalTy->getPointeeType();
4210   } else if (OriginalTy->isArrayType()) {
4211     ResultTy = OriginalTy->getAsArrayTypeUnsafe()->getElementType();
4212   } else {
4213     return ExprError(
4214         Diag(Base->getExprLoc(), diag::err_omp_typecheck_section_value)
4215         << Base->getSourceRange());
4216   }
4217   // C99 6.5.2.1p1
4218   if (LowerBound) {
4219     auto Res = PerformOpenMPImplicitIntegerConversion(LowerBound->getExprLoc(),
4220                                                       LowerBound);
4221     if (Res.isInvalid())
4222       return ExprError(Diag(LowerBound->getExprLoc(),
4223                             diag::err_omp_typecheck_section_not_integer)
4224                        << 0 << LowerBound->getSourceRange());
4225     LowerBound = Res.get();
4226 
4227     if (LowerBound->getType()->isSpecificBuiltinType(BuiltinType::Char_S) ||
4228         LowerBound->getType()->isSpecificBuiltinType(BuiltinType::Char_U))
4229       Diag(LowerBound->getExprLoc(), diag::warn_omp_section_is_char)
4230           << 0 << LowerBound->getSourceRange();
4231   }
4232   if (Length) {
4233     auto Res =
4234         PerformOpenMPImplicitIntegerConversion(Length->getExprLoc(), Length);
4235     if (Res.isInvalid())
4236       return ExprError(Diag(Length->getExprLoc(),
4237                             diag::err_omp_typecheck_section_not_integer)
4238                        << 1 << Length->getSourceRange());
4239     Length = Res.get();
4240 
4241     if (Length->getType()->isSpecificBuiltinType(BuiltinType::Char_S) ||
4242         Length->getType()->isSpecificBuiltinType(BuiltinType::Char_U))
4243       Diag(Length->getExprLoc(), diag::warn_omp_section_is_char)
4244           << 1 << Length->getSourceRange();
4245   }
4246 
4247   // C99 6.5.2.1p1: "shall have type "pointer to *object* type". Similarly,
4248   // C++ [expr.sub]p1: The type "T" shall be a completely-defined object
4249   // type. Note that functions are not objects, and that (in C99 parlance)
4250   // incomplete types are not object types.
4251   if (ResultTy->isFunctionType()) {
4252     Diag(Base->getExprLoc(), diag::err_omp_section_function_type)
4253         << ResultTy << Base->getSourceRange();
4254     return ExprError();
4255   }
4256 
4257   if (RequireCompleteType(Base->getExprLoc(), ResultTy,
4258                           diag::err_omp_section_incomplete_type, Base))
4259     return ExprError();
4260 
4261   if (LowerBound) {
4262     llvm::APSInt LowerBoundValue;
4263     if (LowerBound->EvaluateAsInt(LowerBoundValue, Context)) {
4264       // OpenMP 4.0, [2.4 Array Sections]
4265       // The lower-bound and length must evaluate to non-negative integers.
4266       if (LowerBoundValue.isNegative()) {
4267         Diag(LowerBound->getExprLoc(), diag::err_omp_section_negative)
4268             << 0 << LowerBoundValue.toString(/*Radix=*/10, /*Signed=*/true)
4269             << LowerBound->getSourceRange();
4270         return ExprError();
4271       }
4272     }
4273   }
4274 
4275   if (Length) {
4276     llvm::APSInt LengthValue;
4277     if (Length->EvaluateAsInt(LengthValue, Context)) {
4278       // OpenMP 4.0, [2.4 Array Sections]
4279       // The lower-bound and length must evaluate to non-negative integers.
4280       if (LengthValue.isNegative()) {
4281         Diag(Length->getExprLoc(), diag::err_omp_section_negative)
4282             << 1 << LengthValue.toString(/*Radix=*/10, /*Signed=*/true)
4283             << Length->getSourceRange();
4284         return ExprError();
4285       }
4286     }
4287   } else if (ColonLoc.isValid() &&
4288              (OriginalTy.isNull() || (!OriginalTy->isConstantArrayType() &&
4289                                       !OriginalTy->isVariableArrayType()))) {
4290     // OpenMP 4.0, [2.4 Array Sections]
4291     // When the size of the array dimension is not known, the length must be
4292     // specified explicitly.
4293     Diag(ColonLoc, diag::err_omp_section_length_undefined)
4294         << (!OriginalTy.isNull() && OriginalTy->isArrayType());
4295     return ExprError();
4296   }
4297 
4298   if (!Base->getType()->isSpecificPlaceholderType(
4299           BuiltinType::OMPArraySection)) {
4300     ExprResult Result = DefaultFunctionArrayLvalueConversion(Base);
4301     if (Result.isInvalid())
4302       return ExprError();
4303     Base = Result.get();
4304   }
4305   return new (Context)
4306       OMPArraySectionExpr(Base, LowerBound, Length, Context.OMPArraySectionTy,
4307                           VK_LValue, OK_Ordinary, ColonLoc, RBLoc);
4308 }
4309 
4310 ExprResult
4311 Sema::CreateBuiltinArraySubscriptExpr(Expr *Base, SourceLocation LLoc,
4312                                       Expr *Idx, SourceLocation RLoc) {
4313   Expr *LHSExp = Base;
4314   Expr *RHSExp = Idx;
4315 
4316   // Perform default conversions.
4317   if (!LHSExp->getType()->getAs<VectorType>()) {
4318     ExprResult Result = DefaultFunctionArrayLvalueConversion(LHSExp);
4319     if (Result.isInvalid())
4320       return ExprError();
4321     LHSExp = Result.get();
4322   }
4323   ExprResult Result = DefaultFunctionArrayLvalueConversion(RHSExp);
4324   if (Result.isInvalid())
4325     return ExprError();
4326   RHSExp = Result.get();
4327 
4328   QualType LHSTy = LHSExp->getType(), RHSTy = RHSExp->getType();
4329   ExprValueKind VK = VK_LValue;
4330   ExprObjectKind OK = OK_Ordinary;
4331 
4332   // C99 6.5.2.1p2: the expression e1[e2] is by definition precisely equivalent
4333   // to the expression *((e1)+(e2)). This means the array "Base" may actually be
4334   // in the subscript position. As a result, we need to derive the array base
4335   // and index from the expression types.
4336   Expr *BaseExpr, *IndexExpr;
4337   QualType ResultType;
4338   if (LHSTy->isDependentType() || RHSTy->isDependentType()) {
4339     BaseExpr = LHSExp;
4340     IndexExpr = RHSExp;
4341     ResultType = Context.DependentTy;
4342   } else if (const PointerType *PTy = LHSTy->getAs<PointerType>()) {
4343     BaseExpr = LHSExp;
4344     IndexExpr = RHSExp;
4345     ResultType = PTy->getPointeeType();
4346   } else if (const ObjCObjectPointerType *PTy =
4347                LHSTy->getAs<ObjCObjectPointerType>()) {
4348     BaseExpr = LHSExp;
4349     IndexExpr = RHSExp;
4350 
4351     // Use custom logic if this should be the pseudo-object subscript
4352     // expression.
4353     if (!LangOpts.isSubscriptPointerArithmetic())
4354       return BuildObjCSubscriptExpression(RLoc, BaseExpr, IndexExpr, nullptr,
4355                                           nullptr);
4356 
4357     ResultType = PTy->getPointeeType();
4358   } else if (const PointerType *PTy = RHSTy->getAs<PointerType>()) {
4359      // Handle the uncommon case of "123[Ptr]".
4360     BaseExpr = RHSExp;
4361     IndexExpr = LHSExp;
4362     ResultType = PTy->getPointeeType();
4363   } else if (const ObjCObjectPointerType *PTy =
4364                RHSTy->getAs<ObjCObjectPointerType>()) {
4365      // Handle the uncommon case of "123[Ptr]".
4366     BaseExpr = RHSExp;
4367     IndexExpr = LHSExp;
4368     ResultType = PTy->getPointeeType();
4369     if (!LangOpts.isSubscriptPointerArithmetic()) {
4370       Diag(LLoc, diag::err_subscript_nonfragile_interface)
4371         << ResultType << BaseExpr->getSourceRange();
4372       return ExprError();
4373     }
4374   } else if (const VectorType *VTy = LHSTy->getAs<VectorType>()) {
4375     BaseExpr = LHSExp;    // vectors: V[123]
4376     IndexExpr = RHSExp;
4377     VK = LHSExp->getValueKind();
4378     if (VK != VK_RValue)
4379       OK = OK_VectorComponent;
4380 
4381     // FIXME: need to deal with const...
4382     ResultType = VTy->getElementType();
4383   } else if (LHSTy->isArrayType()) {
4384     // If we see an array that wasn't promoted by
4385     // DefaultFunctionArrayLvalueConversion, it must be an array that
4386     // wasn't promoted because of the C90 rule that doesn't
4387     // allow promoting non-lvalue arrays.  Warn, then
4388     // force the promotion here.
4389     Diag(LHSExp->getLocStart(), diag::ext_subscript_non_lvalue) <<
4390         LHSExp->getSourceRange();
4391     LHSExp = ImpCastExprToType(LHSExp, Context.getArrayDecayedType(LHSTy),
4392                                CK_ArrayToPointerDecay).get();
4393     LHSTy = LHSExp->getType();
4394 
4395     BaseExpr = LHSExp;
4396     IndexExpr = RHSExp;
4397     ResultType = LHSTy->getAs<PointerType>()->getPointeeType();
4398   } else if (RHSTy->isArrayType()) {
4399     // Same as previous, except for 123[f().a] case
4400     Diag(RHSExp->getLocStart(), diag::ext_subscript_non_lvalue) <<
4401         RHSExp->getSourceRange();
4402     RHSExp = ImpCastExprToType(RHSExp, Context.getArrayDecayedType(RHSTy),
4403                                CK_ArrayToPointerDecay).get();
4404     RHSTy = RHSExp->getType();
4405 
4406     BaseExpr = RHSExp;
4407     IndexExpr = LHSExp;
4408     ResultType = RHSTy->getAs<PointerType>()->getPointeeType();
4409   } else {
4410     return ExprError(Diag(LLoc, diag::err_typecheck_subscript_value)
4411        << LHSExp->getSourceRange() << RHSExp->getSourceRange());
4412   }
4413   // C99 6.5.2.1p1
4414   if (!IndexExpr->getType()->isIntegerType() && !IndexExpr->isTypeDependent())
4415     return ExprError(Diag(LLoc, diag::err_typecheck_subscript_not_integer)
4416                      << IndexExpr->getSourceRange());
4417 
4418   if ((IndexExpr->getType()->isSpecificBuiltinType(BuiltinType::Char_S) ||
4419        IndexExpr->getType()->isSpecificBuiltinType(BuiltinType::Char_U))
4420          && !IndexExpr->isTypeDependent())
4421     Diag(LLoc, diag::warn_subscript_is_char) << IndexExpr->getSourceRange();
4422 
4423   // C99 6.5.2.1p1: "shall have type "pointer to *object* type". Similarly,
4424   // C++ [expr.sub]p1: The type "T" shall be a completely-defined object
4425   // type. Note that Functions are not objects, and that (in C99 parlance)
4426   // incomplete types are not object types.
4427   if (ResultType->isFunctionType()) {
4428     Diag(BaseExpr->getLocStart(), diag::err_subscript_function_type)
4429       << ResultType << BaseExpr->getSourceRange();
4430     return ExprError();
4431   }
4432 
4433   if (ResultType->isVoidType() && !getLangOpts().CPlusPlus) {
4434     // GNU extension: subscripting on pointer to void
4435     Diag(LLoc, diag::ext_gnu_subscript_void_type)
4436       << BaseExpr->getSourceRange();
4437 
4438     // C forbids expressions of unqualified void type from being l-values.
4439     // See IsCForbiddenLValueType.
4440     if (!ResultType.hasQualifiers()) VK = VK_RValue;
4441   } else if (!ResultType->isDependentType() &&
4442       RequireCompleteType(LLoc, ResultType,
4443                           diag::err_subscript_incomplete_type, BaseExpr))
4444     return ExprError();
4445 
4446   assert(VK == VK_RValue || LangOpts.CPlusPlus ||
4447          !ResultType.isCForbiddenLValueType());
4448 
4449   return new (Context)
4450       ArraySubscriptExpr(LHSExp, RHSExp, ResultType, VK, OK, RLoc);
4451 }
4452 
4453 ExprResult Sema::BuildCXXDefaultArgExpr(SourceLocation CallLoc,
4454                                         FunctionDecl *FD,
4455                                         ParmVarDecl *Param) {
4456   if (Param->hasUnparsedDefaultArg()) {
4457     Diag(CallLoc,
4458          diag::err_use_of_default_argument_to_function_declared_later) <<
4459       FD << cast<CXXRecordDecl>(FD->getDeclContext())->getDeclName();
4460     Diag(UnparsedDefaultArgLocs[Param],
4461          diag::note_default_argument_declared_here);
4462     return ExprError();
4463   }
4464 
4465   if (Param->hasUninstantiatedDefaultArg()) {
4466     Expr *UninstExpr = Param->getUninstantiatedDefaultArg();
4467 
4468     EnterExpressionEvaluationContext EvalContext(*this, PotentiallyEvaluated,
4469                                                  Param);
4470 
4471     // Instantiate the expression.
4472     MultiLevelTemplateArgumentList MutiLevelArgList
4473       = getTemplateInstantiationArgs(FD, nullptr, /*RelativeToPrimary=*/true);
4474 
4475     InstantiatingTemplate Inst(*this, CallLoc, Param,
4476                                MutiLevelArgList.getInnermost());
4477     if (Inst.isInvalid())
4478       return ExprError();
4479 
4480     ExprResult Result;
4481     {
4482       // C++ [dcl.fct.default]p5:
4483       //   The names in the [default argument] expression are bound, and
4484       //   the semantic constraints are checked, at the point where the
4485       //   default argument expression appears.
4486       ContextRAII SavedContext(*this, FD);
4487       LocalInstantiationScope Local(*this);
4488       Result = SubstExpr(UninstExpr, MutiLevelArgList);
4489     }
4490     if (Result.isInvalid())
4491       return ExprError();
4492 
4493     // Check the expression as an initializer for the parameter.
4494     InitializedEntity Entity
4495       = InitializedEntity::InitializeParameter(Context, Param);
4496     InitializationKind Kind
4497       = InitializationKind::CreateCopy(Param->getLocation(),
4498              /*FIXME:EqualLoc*/UninstExpr->getLocStart());
4499     Expr *ResultE = Result.getAs<Expr>();
4500 
4501     InitializationSequence InitSeq(*this, Entity, Kind, ResultE);
4502     Result = InitSeq.Perform(*this, Entity, Kind, ResultE);
4503     if (Result.isInvalid())
4504       return ExprError();
4505 
4506     Result = ActOnFinishFullExpr(Result.getAs<Expr>(),
4507                                  Param->getOuterLocStart());
4508     if (Result.isInvalid())
4509       return ExprError();
4510 
4511     // Remember the instantiated default argument.
4512     Param->setDefaultArg(Result.getAs<Expr>());
4513     if (ASTMutationListener *L = getASTMutationListener()) {
4514       L->DefaultArgumentInstantiated(Param);
4515     }
4516   }
4517 
4518   // If the default expression creates temporaries, we need to
4519   // push them to the current stack of expression temporaries so they'll
4520   // be properly destroyed.
4521   // FIXME: We should really be rebuilding the default argument with new
4522   // bound temporaries; see the comment in PR5810.
4523   // We don't need to do that with block decls, though, because
4524   // blocks in default argument expression can never capture anything.
4525   if (isa<ExprWithCleanups>(Param->getInit())) {
4526     // Set the "needs cleanups" bit regardless of whether there are
4527     // any explicit objects.
4528     ExprNeedsCleanups = true;
4529 
4530     // Append all the objects to the cleanup list.  Right now, this
4531     // should always be a no-op, because blocks in default argument
4532     // expressions should never be able to capture anything.
4533     assert(!cast<ExprWithCleanups>(Param->getInit())->getNumObjects() &&
4534            "default argument expression has capturing blocks?");
4535   }
4536 
4537   // We already type-checked the argument, so we know it works.
4538   // Just mark all of the declarations in this potentially-evaluated expression
4539   // as being "referenced".
4540   MarkDeclarationsReferencedInExpr(Param->getDefaultArg(),
4541                                    /*SkipLocalVariables=*/true);
4542   return CXXDefaultArgExpr::Create(Context, CallLoc, Param);
4543 }
4544 
4545 
4546 Sema::VariadicCallType
4547 Sema::getVariadicCallType(FunctionDecl *FDecl, const FunctionProtoType *Proto,
4548                           Expr *Fn) {
4549   if (Proto && Proto->isVariadic()) {
4550     if (dyn_cast_or_null<CXXConstructorDecl>(FDecl))
4551       return VariadicConstructor;
4552     else if (Fn && Fn->getType()->isBlockPointerType())
4553       return VariadicBlock;
4554     else if (FDecl) {
4555       if (CXXMethodDecl *Method = dyn_cast_or_null<CXXMethodDecl>(FDecl))
4556         if (Method->isInstance())
4557           return VariadicMethod;
4558     } else if (Fn && Fn->getType() == Context.BoundMemberTy)
4559       return VariadicMethod;
4560     return VariadicFunction;
4561   }
4562   return VariadicDoesNotApply;
4563 }
4564 
4565 namespace {
4566 class FunctionCallCCC : public FunctionCallFilterCCC {
4567 public:
4568   FunctionCallCCC(Sema &SemaRef, const IdentifierInfo *FuncName,
4569                   unsigned NumArgs, MemberExpr *ME)
4570       : FunctionCallFilterCCC(SemaRef, NumArgs, false, ME),
4571         FunctionName(FuncName) {}
4572 
4573   bool ValidateCandidate(const TypoCorrection &candidate) override {
4574     if (!candidate.getCorrectionSpecifier() ||
4575         candidate.getCorrectionAsIdentifierInfo() != FunctionName) {
4576       return false;
4577     }
4578 
4579     return FunctionCallFilterCCC::ValidateCandidate(candidate);
4580   }
4581 
4582 private:
4583   const IdentifierInfo *const FunctionName;
4584 };
4585 }
4586 
4587 static TypoCorrection TryTypoCorrectionForCall(Sema &S, Expr *Fn,
4588                                                FunctionDecl *FDecl,
4589                                                ArrayRef<Expr *> Args) {
4590   MemberExpr *ME = dyn_cast<MemberExpr>(Fn);
4591   DeclarationName FuncName = FDecl->getDeclName();
4592   SourceLocation NameLoc = ME ? ME->getMemberLoc() : Fn->getLocStart();
4593 
4594   if (TypoCorrection Corrected = S.CorrectTypo(
4595           DeclarationNameInfo(FuncName, NameLoc), Sema::LookupOrdinaryName,
4596           S.getScopeForContext(S.CurContext), nullptr,
4597           llvm::make_unique<FunctionCallCCC>(S, FuncName.getAsIdentifierInfo(),
4598                                              Args.size(), ME),
4599           Sema::CTK_ErrorRecovery)) {
4600     if (NamedDecl *ND = Corrected.getFoundDecl()) {
4601       if (Corrected.isOverloaded()) {
4602         OverloadCandidateSet OCS(NameLoc, OverloadCandidateSet::CSK_Normal);
4603         OverloadCandidateSet::iterator Best;
4604         for (NamedDecl *CD : Corrected) {
4605           if (FunctionDecl *FD = dyn_cast<FunctionDecl>(CD))
4606             S.AddOverloadCandidate(FD, DeclAccessPair::make(FD, AS_none), Args,
4607                                    OCS);
4608         }
4609         switch (OCS.BestViableFunction(S, NameLoc, Best)) {
4610         case OR_Success:
4611           ND = Best->FoundDecl;
4612           Corrected.setCorrectionDecl(ND);
4613           break;
4614         default:
4615           break;
4616         }
4617       }
4618       ND = ND->getUnderlyingDecl();
4619       if (isa<ValueDecl>(ND) || isa<FunctionTemplateDecl>(ND))
4620         return Corrected;
4621     }
4622   }
4623   return TypoCorrection();
4624 }
4625 
4626 /// ConvertArgumentsForCall - Converts the arguments specified in
4627 /// Args/NumArgs to the parameter types of the function FDecl with
4628 /// function prototype Proto. Call is the call expression itself, and
4629 /// Fn is the function expression. For a C++ member function, this
4630 /// routine does not attempt to convert the object argument. Returns
4631 /// true if the call is ill-formed.
4632 bool
4633 Sema::ConvertArgumentsForCall(CallExpr *Call, Expr *Fn,
4634                               FunctionDecl *FDecl,
4635                               const FunctionProtoType *Proto,
4636                               ArrayRef<Expr *> Args,
4637                               SourceLocation RParenLoc,
4638                               bool IsExecConfig) {
4639   // Bail out early if calling a builtin with custom typechecking.
4640   if (FDecl)
4641     if (unsigned ID = FDecl->getBuiltinID())
4642       if (Context.BuiltinInfo.hasCustomTypechecking(ID))
4643         return false;
4644 
4645   // C99 6.5.2.2p7 - the arguments are implicitly converted, as if by
4646   // assignment, to the types of the corresponding parameter, ...
4647   unsigned NumParams = Proto->getNumParams();
4648   bool Invalid = false;
4649   unsigned MinArgs = FDecl ? FDecl->getMinRequiredArguments() : NumParams;
4650   unsigned FnKind = Fn->getType()->isBlockPointerType()
4651                        ? 1 /* block */
4652                        : (IsExecConfig ? 3 /* kernel function (exec config) */
4653                                        : 0 /* function */);
4654 
4655   // If too few arguments are available (and we don't have default
4656   // arguments for the remaining parameters), don't make the call.
4657   if (Args.size() < NumParams) {
4658     if (Args.size() < MinArgs) {
4659       TypoCorrection TC;
4660       if (FDecl && (TC = TryTypoCorrectionForCall(*this, Fn, FDecl, Args))) {
4661         unsigned diag_id =
4662             MinArgs == NumParams && !Proto->isVariadic()
4663                 ? diag::err_typecheck_call_too_few_args_suggest
4664                 : diag::err_typecheck_call_too_few_args_at_least_suggest;
4665         diagnoseTypo(TC, PDiag(diag_id) << FnKind << MinArgs
4666                                         << static_cast<unsigned>(Args.size())
4667                                         << TC.getCorrectionRange());
4668       } else if (MinArgs == 1 && FDecl && FDecl->getParamDecl(0)->getDeclName())
4669         Diag(RParenLoc,
4670              MinArgs == NumParams && !Proto->isVariadic()
4671                  ? diag::err_typecheck_call_too_few_args_one
4672                  : diag::err_typecheck_call_too_few_args_at_least_one)
4673             << FnKind << FDecl->getParamDecl(0) << Fn->getSourceRange();
4674       else
4675         Diag(RParenLoc, MinArgs == NumParams && !Proto->isVariadic()
4676                             ? diag::err_typecheck_call_too_few_args
4677                             : diag::err_typecheck_call_too_few_args_at_least)
4678             << FnKind << MinArgs << static_cast<unsigned>(Args.size())
4679             << Fn->getSourceRange();
4680 
4681       // Emit the location of the prototype.
4682       if (!TC && FDecl && !FDecl->getBuiltinID() && !IsExecConfig)
4683         Diag(FDecl->getLocStart(), diag::note_callee_decl)
4684           << FDecl;
4685 
4686       return true;
4687     }
4688     Call->setNumArgs(Context, NumParams);
4689   }
4690 
4691   // If too many are passed and not variadic, error on the extras and drop
4692   // them.
4693   if (Args.size() > NumParams) {
4694     if (!Proto->isVariadic()) {
4695       TypoCorrection TC;
4696       if (FDecl && (TC = TryTypoCorrectionForCall(*this, Fn, FDecl, Args))) {
4697         unsigned diag_id =
4698             MinArgs == NumParams && !Proto->isVariadic()
4699                 ? diag::err_typecheck_call_too_many_args_suggest
4700                 : diag::err_typecheck_call_too_many_args_at_most_suggest;
4701         diagnoseTypo(TC, PDiag(diag_id) << FnKind << NumParams
4702                                         << static_cast<unsigned>(Args.size())
4703                                         << TC.getCorrectionRange());
4704       } else if (NumParams == 1 && FDecl &&
4705                  FDecl->getParamDecl(0)->getDeclName())
4706         Diag(Args[NumParams]->getLocStart(),
4707              MinArgs == NumParams
4708                  ? diag::err_typecheck_call_too_many_args_one
4709                  : diag::err_typecheck_call_too_many_args_at_most_one)
4710             << FnKind << FDecl->getParamDecl(0)
4711             << static_cast<unsigned>(Args.size()) << Fn->getSourceRange()
4712             << SourceRange(Args[NumParams]->getLocStart(),
4713                            Args.back()->getLocEnd());
4714       else
4715         Diag(Args[NumParams]->getLocStart(),
4716              MinArgs == NumParams
4717                  ? diag::err_typecheck_call_too_many_args
4718                  : diag::err_typecheck_call_too_many_args_at_most)
4719             << FnKind << NumParams << static_cast<unsigned>(Args.size())
4720             << Fn->getSourceRange()
4721             << SourceRange(Args[NumParams]->getLocStart(),
4722                            Args.back()->getLocEnd());
4723 
4724       // Emit the location of the prototype.
4725       if (!TC && FDecl && !FDecl->getBuiltinID() && !IsExecConfig)
4726         Diag(FDecl->getLocStart(), diag::note_callee_decl)
4727           << FDecl;
4728 
4729       // This deletes the extra arguments.
4730       Call->setNumArgs(Context, NumParams);
4731       return true;
4732     }
4733   }
4734   SmallVector<Expr *, 8> AllArgs;
4735   VariadicCallType CallType = getVariadicCallType(FDecl, Proto, Fn);
4736 
4737   Invalid = GatherArgumentsForCall(Call->getLocStart(), FDecl,
4738                                    Proto, 0, Args, AllArgs, CallType);
4739   if (Invalid)
4740     return true;
4741   unsigned TotalNumArgs = AllArgs.size();
4742   for (unsigned i = 0; i < TotalNumArgs; ++i)
4743     Call->setArg(i, AllArgs[i]);
4744 
4745   return false;
4746 }
4747 
4748 bool Sema::GatherArgumentsForCall(SourceLocation CallLoc, FunctionDecl *FDecl,
4749                                   const FunctionProtoType *Proto,
4750                                   unsigned FirstParam, ArrayRef<Expr *> Args,
4751                                   SmallVectorImpl<Expr *> &AllArgs,
4752                                   VariadicCallType CallType, bool AllowExplicit,
4753                                   bool IsListInitialization) {
4754   unsigned NumParams = Proto->getNumParams();
4755   bool Invalid = false;
4756   size_t ArgIx = 0;
4757   // Continue to check argument types (even if we have too few/many args).
4758   for (unsigned i = FirstParam; i < NumParams; i++) {
4759     QualType ProtoArgType = Proto->getParamType(i);
4760 
4761     Expr *Arg;
4762     ParmVarDecl *Param = FDecl ? FDecl->getParamDecl(i) : nullptr;
4763     if (ArgIx < Args.size()) {
4764       Arg = Args[ArgIx++];
4765 
4766       if (RequireCompleteType(Arg->getLocStart(),
4767                               ProtoArgType,
4768                               diag::err_call_incomplete_argument, Arg))
4769         return true;
4770 
4771       // Strip the unbridged-cast placeholder expression off, if applicable.
4772       bool CFAudited = false;
4773       if (Arg->getType() == Context.ARCUnbridgedCastTy &&
4774           FDecl && FDecl->hasAttr<CFAuditedTransferAttr>() &&
4775           (!Param || !Param->hasAttr<CFConsumedAttr>()))
4776         Arg = stripARCUnbridgedCast(Arg);
4777       else if (getLangOpts().ObjCAutoRefCount &&
4778                FDecl && FDecl->hasAttr<CFAuditedTransferAttr>() &&
4779                (!Param || !Param->hasAttr<CFConsumedAttr>()))
4780         CFAudited = true;
4781 
4782       InitializedEntity Entity =
4783           Param ? InitializedEntity::InitializeParameter(Context, Param,
4784                                                          ProtoArgType)
4785                 : InitializedEntity::InitializeParameter(
4786                       Context, ProtoArgType, Proto->isParamConsumed(i));
4787 
4788       // Remember that parameter belongs to a CF audited API.
4789       if (CFAudited)
4790         Entity.setParameterCFAudited();
4791 
4792       ExprResult ArgE = PerformCopyInitialization(
4793           Entity, SourceLocation(), Arg, IsListInitialization, AllowExplicit);
4794       if (ArgE.isInvalid())
4795         return true;
4796 
4797       Arg = ArgE.getAs<Expr>();
4798     } else {
4799       assert(Param && "can't use default arguments without a known callee");
4800 
4801       ExprResult ArgExpr =
4802         BuildCXXDefaultArgExpr(CallLoc, FDecl, Param);
4803       if (ArgExpr.isInvalid())
4804         return true;
4805 
4806       Arg = ArgExpr.getAs<Expr>();
4807     }
4808 
4809     // Check for array bounds violations for each argument to the call. This
4810     // check only triggers warnings when the argument isn't a more complex Expr
4811     // with its own checking, such as a BinaryOperator.
4812     CheckArrayAccess(Arg);
4813 
4814     // Check for violations of C99 static array rules (C99 6.7.5.3p7).
4815     CheckStaticArrayArgument(CallLoc, Param, Arg);
4816 
4817     AllArgs.push_back(Arg);
4818   }
4819 
4820   // If this is a variadic call, handle args passed through "...".
4821   if (CallType != VariadicDoesNotApply) {
4822     // Assume that extern "C" functions with variadic arguments that
4823     // return __unknown_anytype aren't *really* variadic.
4824     if (Proto->getReturnType() == Context.UnknownAnyTy && FDecl &&
4825         FDecl->isExternC()) {
4826       for (Expr *A : Args.slice(ArgIx)) {
4827         QualType paramType; // ignored
4828         ExprResult arg = checkUnknownAnyArg(CallLoc, A, paramType);
4829         Invalid |= arg.isInvalid();
4830         AllArgs.push_back(arg.get());
4831       }
4832 
4833     // Otherwise do argument promotion, (C99 6.5.2.2p7).
4834     } else {
4835       for (Expr *A : Args.slice(ArgIx)) {
4836         ExprResult Arg = DefaultVariadicArgumentPromotion(A, CallType, FDecl);
4837         Invalid |= Arg.isInvalid();
4838         AllArgs.push_back(Arg.get());
4839       }
4840     }
4841 
4842     // Check for array bounds violations.
4843     for (Expr *A : Args.slice(ArgIx))
4844       CheckArrayAccess(A);
4845   }
4846   return Invalid;
4847 }
4848 
4849 static void DiagnoseCalleeStaticArrayParam(Sema &S, ParmVarDecl *PVD) {
4850   TypeLoc TL = PVD->getTypeSourceInfo()->getTypeLoc();
4851   if (DecayedTypeLoc DTL = TL.getAs<DecayedTypeLoc>())
4852     TL = DTL.getOriginalLoc();
4853   if (ArrayTypeLoc ATL = TL.getAs<ArrayTypeLoc>())
4854     S.Diag(PVD->getLocation(), diag::note_callee_static_array)
4855       << ATL.getLocalSourceRange();
4856 }
4857 
4858 /// CheckStaticArrayArgument - If the given argument corresponds to a static
4859 /// array parameter, check that it is non-null, and that if it is formed by
4860 /// array-to-pointer decay, the underlying array is sufficiently large.
4861 ///
4862 /// C99 6.7.5.3p7: If the keyword static also appears within the [ and ] of the
4863 /// array type derivation, then for each call to the function, the value of the
4864 /// corresponding actual argument shall provide access to the first element of
4865 /// an array with at least as many elements as specified by the size expression.
4866 void
4867 Sema::CheckStaticArrayArgument(SourceLocation CallLoc,
4868                                ParmVarDecl *Param,
4869                                const Expr *ArgExpr) {
4870   // Static array parameters are not supported in C++.
4871   if (!Param || getLangOpts().CPlusPlus)
4872     return;
4873 
4874   QualType OrigTy = Param->getOriginalType();
4875 
4876   const ArrayType *AT = Context.getAsArrayType(OrigTy);
4877   if (!AT || AT->getSizeModifier() != ArrayType::Static)
4878     return;
4879 
4880   if (ArgExpr->isNullPointerConstant(Context,
4881                                      Expr::NPC_NeverValueDependent)) {
4882     Diag(CallLoc, diag::warn_null_arg) << ArgExpr->getSourceRange();
4883     DiagnoseCalleeStaticArrayParam(*this, Param);
4884     return;
4885   }
4886 
4887   const ConstantArrayType *CAT = dyn_cast<ConstantArrayType>(AT);
4888   if (!CAT)
4889     return;
4890 
4891   const ConstantArrayType *ArgCAT =
4892     Context.getAsConstantArrayType(ArgExpr->IgnoreParenImpCasts()->getType());
4893   if (!ArgCAT)
4894     return;
4895 
4896   if (ArgCAT->getSize().ult(CAT->getSize())) {
4897     Diag(CallLoc, diag::warn_static_array_too_small)
4898       << ArgExpr->getSourceRange()
4899       << (unsigned) ArgCAT->getSize().getZExtValue()
4900       << (unsigned) CAT->getSize().getZExtValue();
4901     DiagnoseCalleeStaticArrayParam(*this, Param);
4902   }
4903 }
4904 
4905 /// Given a function expression of unknown-any type, try to rebuild it
4906 /// to have a function type.
4907 static ExprResult rebuildUnknownAnyFunction(Sema &S, Expr *fn);
4908 
4909 /// Is the given type a placeholder that we need to lower out
4910 /// immediately during argument processing?
4911 static bool isPlaceholderToRemoveAsArg(QualType type) {
4912   // Placeholders are never sugared.
4913   const BuiltinType *placeholder = dyn_cast<BuiltinType>(type);
4914   if (!placeholder) return false;
4915 
4916   switch (placeholder->getKind()) {
4917   // Ignore all the non-placeholder types.
4918 #define IMAGE_TYPE(ImgType, Id, SingletonId, Access, Suffix) \
4919   case BuiltinType::Id:
4920 #include "clang/AST/OpenCLImageTypes.def"
4921 #define PLACEHOLDER_TYPE(ID, SINGLETON_ID)
4922 #define BUILTIN_TYPE(ID, SINGLETON_ID) case BuiltinType::ID:
4923 #include "clang/AST/BuiltinTypes.def"
4924     return false;
4925 
4926   // We cannot lower out overload sets; they might validly be resolved
4927   // by the call machinery.
4928   case BuiltinType::Overload:
4929     return false;
4930 
4931   // Unbridged casts in ARC can be handled in some call positions and
4932   // should be left in place.
4933   case BuiltinType::ARCUnbridgedCast:
4934     return false;
4935 
4936   // Pseudo-objects should be converted as soon as possible.
4937   case BuiltinType::PseudoObject:
4938     return true;
4939 
4940   // The debugger mode could theoretically but currently does not try
4941   // to resolve unknown-typed arguments based on known parameter types.
4942   case BuiltinType::UnknownAny:
4943     return true;
4944 
4945   // These are always invalid as call arguments and should be reported.
4946   case BuiltinType::BoundMember:
4947   case BuiltinType::BuiltinFn:
4948   case BuiltinType::OMPArraySection:
4949     return true;
4950 
4951   }
4952   llvm_unreachable("bad builtin type kind");
4953 }
4954 
4955 /// Check an argument list for placeholders that we won't try to
4956 /// handle later.
4957 static bool checkArgsForPlaceholders(Sema &S, MultiExprArg args) {
4958   // Apply this processing to all the arguments at once instead of
4959   // dying at the first failure.
4960   bool hasInvalid = false;
4961   for (size_t i = 0, e = args.size(); i != e; i++) {
4962     if (isPlaceholderToRemoveAsArg(args[i]->getType())) {
4963       ExprResult result = S.CheckPlaceholderExpr(args[i]);
4964       if (result.isInvalid()) hasInvalid = true;
4965       else args[i] = result.get();
4966     } else if (hasInvalid) {
4967       (void)S.CorrectDelayedTyposInExpr(args[i]);
4968     }
4969   }
4970   return hasInvalid;
4971 }
4972 
4973 /// If a builtin function has a pointer argument with no explicit address
4974 /// space, then it should be able to accept a pointer to any address
4975 /// space as input.  In order to do this, we need to replace the
4976 /// standard builtin declaration with one that uses the same address space
4977 /// as the call.
4978 ///
4979 /// \returns nullptr If this builtin is not a candidate for a rewrite i.e.
4980 ///                  it does not contain any pointer arguments without
4981 ///                  an address space qualifer.  Otherwise the rewritten
4982 ///                  FunctionDecl is returned.
4983 /// TODO: Handle pointer return types.
4984 static FunctionDecl *rewriteBuiltinFunctionDecl(Sema *Sema, ASTContext &Context,
4985                                                 const FunctionDecl *FDecl,
4986                                                 MultiExprArg ArgExprs) {
4987 
4988   QualType DeclType = FDecl->getType();
4989   const FunctionProtoType *FT = dyn_cast<FunctionProtoType>(DeclType);
4990 
4991   if (!Context.BuiltinInfo.hasPtrArgsOrResult(FDecl->getBuiltinID()) ||
4992       !FT || FT->isVariadic() || ArgExprs.size() != FT->getNumParams())
4993     return nullptr;
4994 
4995   bool NeedsNewDecl = false;
4996   unsigned i = 0;
4997   SmallVector<QualType, 8> OverloadParams;
4998 
4999   for (QualType ParamType : FT->param_types()) {
5000 
5001     // Convert array arguments to pointer to simplify type lookup.
5002     Expr *Arg = Sema->DefaultFunctionArrayLvalueConversion(ArgExprs[i++]).get();
5003     QualType ArgType = Arg->getType();
5004     if (!ParamType->isPointerType() ||
5005         ParamType.getQualifiers().hasAddressSpace() ||
5006         !ArgType->isPointerType() ||
5007         !ArgType->getPointeeType().getQualifiers().hasAddressSpace()) {
5008       OverloadParams.push_back(ParamType);
5009       continue;
5010     }
5011 
5012     NeedsNewDecl = true;
5013     unsigned AS = ArgType->getPointeeType().getQualifiers().getAddressSpace();
5014 
5015     QualType PointeeType = ParamType->getPointeeType();
5016     PointeeType = Context.getAddrSpaceQualType(PointeeType, AS);
5017     OverloadParams.push_back(Context.getPointerType(PointeeType));
5018   }
5019 
5020   if (!NeedsNewDecl)
5021     return nullptr;
5022 
5023   FunctionProtoType::ExtProtoInfo EPI;
5024   QualType OverloadTy = Context.getFunctionType(FT->getReturnType(),
5025                                                 OverloadParams, EPI);
5026   DeclContext *Parent = Context.getTranslationUnitDecl();
5027   FunctionDecl *OverloadDecl = FunctionDecl::Create(Context, Parent,
5028                                                     FDecl->getLocation(),
5029                                                     FDecl->getLocation(),
5030                                                     FDecl->getIdentifier(),
5031                                                     OverloadTy,
5032                                                     /*TInfo=*/nullptr,
5033                                                     SC_Extern, false,
5034                                                     /*hasPrototype=*/true);
5035   SmallVector<ParmVarDecl*, 16> Params;
5036   FT = cast<FunctionProtoType>(OverloadTy);
5037   for (unsigned i = 0, e = FT->getNumParams(); i != e; ++i) {
5038     QualType ParamType = FT->getParamType(i);
5039     ParmVarDecl *Parm =
5040         ParmVarDecl::Create(Context, OverloadDecl, SourceLocation(),
5041                                 SourceLocation(), nullptr, ParamType,
5042                                 /*TInfo=*/nullptr, SC_None, nullptr);
5043     Parm->setScopeInfo(0, i);
5044     Params.push_back(Parm);
5045   }
5046   OverloadDecl->setParams(Params);
5047   return OverloadDecl;
5048 }
5049 
5050 static bool isNumberOfArgsValidForCall(Sema &S, const FunctionDecl *Callee,
5051                                        std::size_t NumArgs) {
5052   if (S.TooManyArguments(Callee->getNumParams(), NumArgs,
5053                          /*PartialOverloading=*/false))
5054     return Callee->isVariadic();
5055   return Callee->getMinRequiredArguments() <= NumArgs;
5056 }
5057 
5058 /// ActOnCallExpr - Handle a call to Fn with the specified array of arguments.
5059 /// This provides the location of the left/right parens and a list of comma
5060 /// locations.
5061 ExprResult
5062 Sema::ActOnCallExpr(Scope *S, Expr *Fn, SourceLocation LParenLoc,
5063                     MultiExprArg ArgExprs, SourceLocation RParenLoc,
5064                     Expr *ExecConfig, bool IsExecConfig) {
5065   // Since this might be a postfix expression, get rid of ParenListExprs.
5066   ExprResult Result = MaybeConvertParenListExprToParenExpr(S, Fn);
5067   if (Result.isInvalid()) return ExprError();
5068   Fn = Result.get();
5069 
5070   if (checkArgsForPlaceholders(*this, ArgExprs))
5071     return ExprError();
5072 
5073   if (getLangOpts().CPlusPlus) {
5074     // If this is a pseudo-destructor expression, build the call immediately.
5075     if (isa<CXXPseudoDestructorExpr>(Fn)) {
5076       if (!ArgExprs.empty()) {
5077         // Pseudo-destructor calls should not have any arguments.
5078         Diag(Fn->getLocStart(), diag::err_pseudo_dtor_call_with_args)
5079           << FixItHint::CreateRemoval(
5080                                     SourceRange(ArgExprs.front()->getLocStart(),
5081                                                 ArgExprs.back()->getLocEnd()));
5082       }
5083 
5084       return new (Context)
5085           CallExpr(Context, Fn, None, Context.VoidTy, VK_RValue, RParenLoc);
5086     }
5087     if (Fn->getType() == Context.PseudoObjectTy) {
5088       ExprResult result = CheckPlaceholderExpr(Fn);
5089       if (result.isInvalid()) return ExprError();
5090       Fn = result.get();
5091     }
5092 
5093     // Determine whether this is a dependent call inside a C++ template,
5094     // in which case we won't do any semantic analysis now.
5095     bool Dependent = false;
5096     if (Fn->isTypeDependent())
5097       Dependent = true;
5098     else if (Expr::hasAnyTypeDependentArguments(ArgExprs))
5099       Dependent = true;
5100 
5101     if (Dependent) {
5102       if (ExecConfig) {
5103         return new (Context) CUDAKernelCallExpr(
5104             Context, Fn, cast<CallExpr>(ExecConfig), ArgExprs,
5105             Context.DependentTy, VK_RValue, RParenLoc);
5106       } else {
5107         return new (Context) CallExpr(
5108             Context, Fn, ArgExprs, Context.DependentTy, VK_RValue, RParenLoc);
5109       }
5110     }
5111 
5112     // Determine whether this is a call to an object (C++ [over.call.object]).
5113     if (Fn->getType()->isRecordType())
5114       return BuildCallToObjectOfClassType(S, Fn, LParenLoc, ArgExprs,
5115                                           RParenLoc);
5116 
5117     if (Fn->getType() == Context.UnknownAnyTy) {
5118       ExprResult result = rebuildUnknownAnyFunction(*this, Fn);
5119       if (result.isInvalid()) return ExprError();
5120       Fn = result.get();
5121     }
5122 
5123     if (Fn->getType() == Context.BoundMemberTy) {
5124       return BuildCallToMemberFunction(S, Fn, LParenLoc, ArgExprs, RParenLoc);
5125     }
5126   }
5127 
5128   // Check for overloaded calls.  This can happen even in C due to extensions.
5129   if (Fn->getType() == Context.OverloadTy) {
5130     OverloadExpr::FindResult find = OverloadExpr::find(Fn);
5131 
5132     // We aren't supposed to apply this logic for if there's an '&' involved.
5133     if (!find.HasFormOfMemberPointer) {
5134       OverloadExpr *ovl = find.Expression;
5135       if (UnresolvedLookupExpr *ULE = dyn_cast<UnresolvedLookupExpr>(ovl))
5136         return BuildOverloadedCallExpr(S, Fn, ULE, LParenLoc, ArgExprs,
5137                                        RParenLoc, ExecConfig,
5138                                        /*AllowTypoCorrection=*/true,
5139                                        find.IsAddressOfOperand);
5140       return BuildCallToMemberFunction(S, Fn, LParenLoc, ArgExprs, RParenLoc);
5141     }
5142   }
5143 
5144   // If we're directly calling a function, get the appropriate declaration.
5145   if (Fn->getType() == Context.UnknownAnyTy) {
5146     ExprResult result = rebuildUnknownAnyFunction(*this, Fn);
5147     if (result.isInvalid()) return ExprError();
5148     Fn = result.get();
5149   }
5150 
5151   Expr *NakedFn = Fn->IgnoreParens();
5152 
5153   bool CallingNDeclIndirectly = false;
5154   NamedDecl *NDecl = nullptr;
5155   if (UnaryOperator *UnOp = dyn_cast<UnaryOperator>(NakedFn)) {
5156     if (UnOp->getOpcode() == UO_AddrOf) {
5157       CallingNDeclIndirectly = true;
5158       NakedFn = UnOp->getSubExpr()->IgnoreParens();
5159     }
5160   }
5161 
5162   if (isa<DeclRefExpr>(NakedFn)) {
5163     NDecl = cast<DeclRefExpr>(NakedFn)->getDecl();
5164 
5165     FunctionDecl *FDecl = dyn_cast<FunctionDecl>(NDecl);
5166     if (FDecl && FDecl->getBuiltinID()) {
5167       // Rewrite the function decl for this builtin by replacing parameters
5168       // with no explicit address space with the address space of the arguments
5169       // in ArgExprs.
5170       if ((FDecl = rewriteBuiltinFunctionDecl(this, Context, FDecl, ArgExprs))) {
5171         NDecl = FDecl;
5172         Fn = DeclRefExpr::Create(Context, FDecl->getQualifierLoc(),
5173                            SourceLocation(), FDecl, false,
5174                            SourceLocation(), FDecl->getType(),
5175                            Fn->getValueKind(), FDecl);
5176       }
5177     }
5178   } else if (isa<MemberExpr>(NakedFn))
5179     NDecl = cast<MemberExpr>(NakedFn)->getMemberDecl();
5180 
5181   if (FunctionDecl *FD = dyn_cast_or_null<FunctionDecl>(NDecl)) {
5182     if (CallingNDeclIndirectly &&
5183         !checkAddressOfFunctionIsAvailable(FD, /*Complain=*/true,
5184                                            Fn->getLocStart()))
5185       return ExprError();
5186 
5187     // CheckEnableIf assumes that the we're passing in a sane number of args for
5188     // FD, but that doesn't always hold true here. This is because, in some
5189     // cases, we'll emit a diag about an ill-formed function call, but then
5190     // we'll continue on as if the function call wasn't ill-formed. So, if the
5191     // number of args looks incorrect, don't do enable_if checks; we should've
5192     // already emitted an error about the bad call.
5193     if (FD->hasAttr<EnableIfAttr>() &&
5194         isNumberOfArgsValidForCall(*this, FD, ArgExprs.size())) {
5195       if (const EnableIfAttr *Attr = CheckEnableIf(FD, ArgExprs, true)) {
5196         Diag(Fn->getLocStart(),
5197              isa<CXXMethodDecl>(FD) ?
5198                  diag::err_ovl_no_viable_member_function_in_call :
5199                  diag::err_ovl_no_viable_function_in_call)
5200           << FD << FD->getSourceRange();
5201         Diag(FD->getLocation(),
5202              diag::note_ovl_candidate_disabled_by_enable_if_attr)
5203             << Attr->getCond()->getSourceRange() << Attr->getMessage();
5204       }
5205     }
5206   }
5207 
5208   return BuildResolvedCallExpr(Fn, NDecl, LParenLoc, ArgExprs, RParenLoc,
5209                                ExecConfig, IsExecConfig);
5210 }
5211 
5212 /// ActOnAsTypeExpr - create a new asType (bitcast) from the arguments.
5213 ///
5214 /// __builtin_astype( value, dst type )
5215 ///
5216 ExprResult Sema::ActOnAsTypeExpr(Expr *E, ParsedType ParsedDestTy,
5217                                  SourceLocation BuiltinLoc,
5218                                  SourceLocation RParenLoc) {
5219   ExprValueKind VK = VK_RValue;
5220   ExprObjectKind OK = OK_Ordinary;
5221   QualType DstTy = GetTypeFromParser(ParsedDestTy);
5222   QualType SrcTy = E->getType();
5223   if (Context.getTypeSize(DstTy) != Context.getTypeSize(SrcTy))
5224     return ExprError(Diag(BuiltinLoc,
5225                           diag::err_invalid_astype_of_different_size)
5226                      << DstTy
5227                      << SrcTy
5228                      << E->getSourceRange());
5229   return new (Context) AsTypeExpr(E, DstTy, VK, OK, BuiltinLoc, RParenLoc);
5230 }
5231 
5232 /// ActOnConvertVectorExpr - create a new convert-vector expression from the
5233 /// provided arguments.
5234 ///
5235 /// __builtin_convertvector( value, dst type )
5236 ///
5237 ExprResult Sema::ActOnConvertVectorExpr(Expr *E, ParsedType ParsedDestTy,
5238                                         SourceLocation BuiltinLoc,
5239                                         SourceLocation RParenLoc) {
5240   TypeSourceInfo *TInfo;
5241   GetTypeFromParser(ParsedDestTy, &TInfo);
5242   return SemaConvertVectorExpr(E, TInfo, BuiltinLoc, RParenLoc);
5243 }
5244 
5245 /// BuildResolvedCallExpr - Build a call to a resolved expression,
5246 /// i.e. an expression not of \p OverloadTy.  The expression should
5247 /// unary-convert to an expression of function-pointer or
5248 /// block-pointer type.
5249 ///
5250 /// \param NDecl the declaration being called, if available
5251 ExprResult
5252 Sema::BuildResolvedCallExpr(Expr *Fn, NamedDecl *NDecl,
5253                             SourceLocation LParenLoc,
5254                             ArrayRef<Expr *> Args,
5255                             SourceLocation RParenLoc,
5256                             Expr *Config, bool IsExecConfig) {
5257   FunctionDecl *FDecl = dyn_cast_or_null<FunctionDecl>(NDecl);
5258   unsigned BuiltinID = (FDecl ? FDecl->getBuiltinID() : 0);
5259 
5260   // Functions with 'interrupt' attribute cannot be called directly.
5261   if (FDecl && FDecl->hasAttr<AnyX86InterruptAttr>()) {
5262     Diag(Fn->getExprLoc(), diag::err_anyx86_interrupt_called);
5263     return ExprError();
5264   }
5265 
5266   // Promote the function operand.
5267   // We special-case function promotion here because we only allow promoting
5268   // builtin functions to function pointers in the callee of a call.
5269   ExprResult Result;
5270   if (BuiltinID &&
5271       Fn->getType()->isSpecificBuiltinType(BuiltinType::BuiltinFn)) {
5272     Result = ImpCastExprToType(Fn, Context.getPointerType(FDecl->getType()),
5273                                CK_BuiltinFnToFnPtr).get();
5274   } else {
5275     Result = CallExprUnaryConversions(Fn);
5276   }
5277   if (Result.isInvalid())
5278     return ExprError();
5279   Fn = Result.get();
5280 
5281   // Make the call expr early, before semantic checks.  This guarantees cleanup
5282   // of arguments and function on error.
5283   CallExpr *TheCall;
5284   if (Config)
5285     TheCall = new (Context) CUDAKernelCallExpr(Context, Fn,
5286                                                cast<CallExpr>(Config), Args,
5287                                                Context.BoolTy, VK_RValue,
5288                                                RParenLoc);
5289   else
5290     TheCall = new (Context) CallExpr(Context, Fn, Args, Context.BoolTy,
5291                                      VK_RValue, RParenLoc);
5292 
5293   if (!getLangOpts().CPlusPlus) {
5294     // C cannot always handle TypoExpr nodes in builtin calls and direct
5295     // function calls as their argument checking don't necessarily handle
5296     // dependent types properly, so make sure any TypoExprs have been
5297     // dealt with.
5298     ExprResult Result = CorrectDelayedTyposInExpr(TheCall);
5299     if (!Result.isUsable()) return ExprError();
5300     TheCall = dyn_cast<CallExpr>(Result.get());
5301     if (!TheCall) return Result;
5302     Args = llvm::makeArrayRef(TheCall->getArgs(), TheCall->getNumArgs());
5303   }
5304 
5305   // Bail out early if calling a builtin with custom typechecking.
5306   if (BuiltinID && Context.BuiltinInfo.hasCustomTypechecking(BuiltinID))
5307     return CheckBuiltinFunctionCall(FDecl, BuiltinID, TheCall);
5308 
5309  retry:
5310   const FunctionType *FuncT;
5311   if (const PointerType *PT = Fn->getType()->getAs<PointerType>()) {
5312     // C99 6.5.2.2p1 - "The expression that denotes the called function shall
5313     // have type pointer to function".
5314     FuncT = PT->getPointeeType()->getAs<FunctionType>();
5315     if (!FuncT)
5316       return ExprError(Diag(LParenLoc, diag::err_typecheck_call_not_function)
5317                          << Fn->getType() << Fn->getSourceRange());
5318   } else if (const BlockPointerType *BPT =
5319                Fn->getType()->getAs<BlockPointerType>()) {
5320     FuncT = BPT->getPointeeType()->castAs<FunctionType>();
5321   } else {
5322     // Handle calls to expressions of unknown-any type.
5323     if (Fn->getType() == Context.UnknownAnyTy) {
5324       ExprResult rewrite = rebuildUnknownAnyFunction(*this, Fn);
5325       if (rewrite.isInvalid()) return ExprError();
5326       Fn = rewrite.get();
5327       TheCall->setCallee(Fn);
5328       goto retry;
5329     }
5330 
5331     return ExprError(Diag(LParenLoc, diag::err_typecheck_call_not_function)
5332       << Fn->getType() << Fn->getSourceRange());
5333   }
5334 
5335   if (getLangOpts().CUDA) {
5336     if (Config) {
5337       // CUDA: Kernel calls must be to global functions
5338       if (FDecl && !FDecl->hasAttr<CUDAGlobalAttr>())
5339         return ExprError(Diag(LParenLoc,diag::err_kern_call_not_global_function)
5340             << FDecl->getName() << Fn->getSourceRange());
5341 
5342       // CUDA: Kernel function must have 'void' return type
5343       if (!FuncT->getReturnType()->isVoidType())
5344         return ExprError(Diag(LParenLoc, diag::err_kern_type_not_void_return)
5345             << Fn->getType() << Fn->getSourceRange());
5346     } else {
5347       // CUDA: Calls to global functions must be configured
5348       if (FDecl && FDecl->hasAttr<CUDAGlobalAttr>())
5349         return ExprError(Diag(LParenLoc, diag::err_global_call_not_config)
5350             << FDecl->getName() << Fn->getSourceRange());
5351     }
5352   }
5353 
5354   // Check for a valid return type
5355   if (CheckCallReturnType(FuncT->getReturnType(), Fn->getLocStart(), TheCall,
5356                           FDecl))
5357     return ExprError();
5358 
5359   // We know the result type of the call, set it.
5360   TheCall->setType(FuncT->getCallResultType(Context));
5361   TheCall->setValueKind(Expr::getValueKindForType(FuncT->getReturnType()));
5362 
5363   const FunctionProtoType *Proto = dyn_cast<FunctionProtoType>(FuncT);
5364   if (Proto) {
5365     if (ConvertArgumentsForCall(TheCall, Fn, FDecl, Proto, Args, RParenLoc,
5366                                 IsExecConfig))
5367       return ExprError();
5368   } else {
5369     assert(isa<FunctionNoProtoType>(FuncT) && "Unknown FunctionType!");
5370 
5371     if (FDecl) {
5372       // Check if we have too few/too many template arguments, based
5373       // on our knowledge of the function definition.
5374       const FunctionDecl *Def = nullptr;
5375       if (FDecl->hasBody(Def) && Args.size() != Def->param_size()) {
5376         Proto = Def->getType()->getAs<FunctionProtoType>();
5377        if (!Proto || !(Proto->isVariadic() && Args.size() >= Def->param_size()))
5378           Diag(RParenLoc, diag::warn_call_wrong_number_of_arguments)
5379           << (Args.size() > Def->param_size()) << FDecl << Fn->getSourceRange();
5380       }
5381 
5382       // If the function we're calling isn't a function prototype, but we have
5383       // a function prototype from a prior declaratiom, use that prototype.
5384       if (!FDecl->hasPrototype())
5385         Proto = FDecl->getType()->getAs<FunctionProtoType>();
5386     }
5387 
5388     // Promote the arguments (C99 6.5.2.2p6).
5389     for (unsigned i = 0, e = Args.size(); i != e; i++) {
5390       Expr *Arg = Args[i];
5391 
5392       if (Proto && i < Proto->getNumParams()) {
5393         InitializedEntity Entity = InitializedEntity::InitializeParameter(
5394             Context, Proto->getParamType(i), Proto->isParamConsumed(i));
5395         ExprResult ArgE =
5396             PerformCopyInitialization(Entity, SourceLocation(), Arg);
5397         if (ArgE.isInvalid())
5398           return true;
5399 
5400         Arg = ArgE.getAs<Expr>();
5401 
5402       } else {
5403         ExprResult ArgE = DefaultArgumentPromotion(Arg);
5404 
5405         if (ArgE.isInvalid())
5406           return true;
5407 
5408         Arg = ArgE.getAs<Expr>();
5409       }
5410 
5411       if (RequireCompleteType(Arg->getLocStart(),
5412                               Arg->getType(),
5413                               diag::err_call_incomplete_argument, Arg))
5414         return ExprError();
5415 
5416       TheCall->setArg(i, Arg);
5417     }
5418   }
5419 
5420   if (CXXMethodDecl *Method = dyn_cast_or_null<CXXMethodDecl>(FDecl))
5421     if (!Method->isStatic())
5422       return ExprError(Diag(LParenLoc, diag::err_member_call_without_object)
5423         << Fn->getSourceRange());
5424 
5425   // Check for sentinels
5426   if (NDecl)
5427     DiagnoseSentinelCalls(NDecl, LParenLoc, Args);
5428 
5429   // Do special checking on direct calls to functions.
5430   if (FDecl) {
5431     if (CheckFunctionCall(FDecl, TheCall, Proto))
5432       return ExprError();
5433 
5434     if (BuiltinID)
5435       return CheckBuiltinFunctionCall(FDecl, BuiltinID, TheCall);
5436   } else if (NDecl) {
5437     if (CheckPointerCall(NDecl, TheCall, Proto))
5438       return ExprError();
5439   } else {
5440     if (CheckOtherCall(TheCall, Proto))
5441       return ExprError();
5442   }
5443 
5444   return MaybeBindToTemporary(TheCall);
5445 }
5446 
5447 ExprResult
5448 Sema::ActOnCompoundLiteral(SourceLocation LParenLoc, ParsedType Ty,
5449                            SourceLocation RParenLoc, Expr *InitExpr) {
5450   assert(Ty && "ActOnCompoundLiteral(): missing type");
5451   assert(InitExpr && "ActOnCompoundLiteral(): missing expression");
5452 
5453   TypeSourceInfo *TInfo;
5454   QualType literalType = GetTypeFromParser(Ty, &TInfo);
5455   if (!TInfo)
5456     TInfo = Context.getTrivialTypeSourceInfo(literalType);
5457 
5458   return BuildCompoundLiteralExpr(LParenLoc, TInfo, RParenLoc, InitExpr);
5459 }
5460 
5461 ExprResult
5462 Sema::BuildCompoundLiteralExpr(SourceLocation LParenLoc, TypeSourceInfo *TInfo,
5463                                SourceLocation RParenLoc, Expr *LiteralExpr) {
5464   QualType literalType = TInfo->getType();
5465 
5466   if (literalType->isArrayType()) {
5467     if (RequireCompleteType(LParenLoc, Context.getBaseElementType(literalType),
5468           diag::err_illegal_decl_array_incomplete_type,
5469           SourceRange(LParenLoc,
5470                       LiteralExpr->getSourceRange().getEnd())))
5471       return ExprError();
5472     if (literalType->isVariableArrayType())
5473       return ExprError(Diag(LParenLoc, diag::err_variable_object_no_init)
5474         << SourceRange(LParenLoc, LiteralExpr->getSourceRange().getEnd()));
5475   } else if (!literalType->isDependentType() &&
5476              RequireCompleteType(LParenLoc, literalType,
5477                diag::err_typecheck_decl_incomplete_type,
5478                SourceRange(LParenLoc, LiteralExpr->getSourceRange().getEnd())))
5479     return ExprError();
5480 
5481   InitializedEntity Entity
5482     = InitializedEntity::InitializeCompoundLiteralInit(TInfo);
5483   InitializationKind Kind
5484     = InitializationKind::CreateCStyleCast(LParenLoc,
5485                                            SourceRange(LParenLoc, RParenLoc),
5486                                            /*InitList=*/true);
5487   InitializationSequence InitSeq(*this, Entity, Kind, LiteralExpr);
5488   ExprResult Result = InitSeq.Perform(*this, Entity, Kind, LiteralExpr,
5489                                       &literalType);
5490   if (Result.isInvalid())
5491     return ExprError();
5492   LiteralExpr = Result.get();
5493 
5494   bool isFileScope = getCurFunctionOrMethodDecl() == nullptr;
5495   if (isFileScope &&
5496       !LiteralExpr->isTypeDependent() &&
5497       !LiteralExpr->isValueDependent() &&
5498       !literalType->isDependentType()) { // 6.5.2.5p3
5499     if (CheckForConstantInitializer(LiteralExpr, literalType))
5500       return ExprError();
5501   }
5502 
5503   // In C, compound literals are l-values for some reason.
5504   ExprValueKind VK = getLangOpts().CPlusPlus ? VK_RValue : VK_LValue;
5505 
5506   return MaybeBindToTemporary(
5507            new (Context) CompoundLiteralExpr(LParenLoc, TInfo, literalType,
5508                                              VK, LiteralExpr, isFileScope));
5509 }
5510 
5511 ExprResult
5512 Sema::ActOnInitList(SourceLocation LBraceLoc, MultiExprArg InitArgList,
5513                     SourceLocation RBraceLoc) {
5514   // Immediately handle non-overload placeholders.  Overloads can be
5515   // resolved contextually, but everything else here can't.
5516   for (unsigned I = 0, E = InitArgList.size(); I != E; ++I) {
5517     if (InitArgList[I]->getType()->isNonOverloadPlaceholderType()) {
5518       ExprResult result = CheckPlaceholderExpr(InitArgList[I]);
5519 
5520       // Ignore failures; dropping the entire initializer list because
5521       // of one failure would be terrible for indexing/etc.
5522       if (result.isInvalid()) continue;
5523 
5524       InitArgList[I] = result.get();
5525     }
5526   }
5527 
5528   // Semantic analysis for initializers is done by ActOnDeclarator() and
5529   // CheckInitializer() - it requires knowledge of the object being intialized.
5530 
5531   InitListExpr *E = new (Context) InitListExpr(Context, LBraceLoc, InitArgList,
5532                                                RBraceLoc);
5533   E->setType(Context.VoidTy); // FIXME: just a place holder for now.
5534   return E;
5535 }
5536 
5537 /// Do an explicit extend of the given block pointer if we're in ARC.
5538 void Sema::maybeExtendBlockObject(ExprResult &E) {
5539   assert(E.get()->getType()->isBlockPointerType());
5540   assert(E.get()->isRValue());
5541 
5542   // Only do this in an r-value context.
5543   if (!getLangOpts().ObjCAutoRefCount) return;
5544 
5545   E = ImplicitCastExpr::Create(Context, E.get()->getType(),
5546                                CK_ARCExtendBlockObject, E.get(),
5547                                /*base path*/ nullptr, VK_RValue);
5548   ExprNeedsCleanups = true;
5549 }
5550 
5551 /// Prepare a conversion of the given expression to an ObjC object
5552 /// pointer type.
5553 CastKind Sema::PrepareCastToObjCObjectPointer(ExprResult &E) {
5554   QualType type = E.get()->getType();
5555   if (type->isObjCObjectPointerType()) {
5556     return CK_BitCast;
5557   } else if (type->isBlockPointerType()) {
5558     maybeExtendBlockObject(E);
5559     return CK_BlockPointerToObjCPointerCast;
5560   } else {
5561     assert(type->isPointerType());
5562     return CK_CPointerToObjCPointerCast;
5563   }
5564 }
5565 
5566 /// Prepares for a scalar cast, performing all the necessary stages
5567 /// except the final cast and returning the kind required.
5568 CastKind Sema::PrepareScalarCast(ExprResult &Src, QualType DestTy) {
5569   // Both Src and Dest are scalar types, i.e. arithmetic or pointer.
5570   // Also, callers should have filtered out the invalid cases with
5571   // pointers.  Everything else should be possible.
5572 
5573   QualType SrcTy = Src.get()->getType();
5574   if (Context.hasSameUnqualifiedType(SrcTy, DestTy))
5575     return CK_NoOp;
5576 
5577   switch (Type::ScalarTypeKind SrcKind = SrcTy->getScalarTypeKind()) {
5578   case Type::STK_MemberPointer:
5579     llvm_unreachable("member pointer type in C");
5580 
5581   case Type::STK_CPointer:
5582   case Type::STK_BlockPointer:
5583   case Type::STK_ObjCObjectPointer:
5584     switch (DestTy->getScalarTypeKind()) {
5585     case Type::STK_CPointer: {
5586       unsigned SrcAS = SrcTy->getPointeeType().getAddressSpace();
5587       unsigned DestAS = DestTy->getPointeeType().getAddressSpace();
5588       if (SrcAS != DestAS)
5589         return CK_AddressSpaceConversion;
5590       return CK_BitCast;
5591     }
5592     case Type::STK_BlockPointer:
5593       return (SrcKind == Type::STK_BlockPointer
5594                 ? CK_BitCast : CK_AnyPointerToBlockPointerCast);
5595     case Type::STK_ObjCObjectPointer:
5596       if (SrcKind == Type::STK_ObjCObjectPointer)
5597         return CK_BitCast;
5598       if (SrcKind == Type::STK_CPointer)
5599         return CK_CPointerToObjCPointerCast;
5600       maybeExtendBlockObject(Src);
5601       return CK_BlockPointerToObjCPointerCast;
5602     case Type::STK_Bool:
5603       return CK_PointerToBoolean;
5604     case Type::STK_Integral:
5605       return CK_PointerToIntegral;
5606     case Type::STK_Floating:
5607     case Type::STK_FloatingComplex:
5608     case Type::STK_IntegralComplex:
5609     case Type::STK_MemberPointer:
5610       llvm_unreachable("illegal cast from pointer");
5611     }
5612     llvm_unreachable("Should have returned before this");
5613 
5614   case Type::STK_Bool: // casting from bool is like casting from an integer
5615   case Type::STK_Integral:
5616     switch (DestTy->getScalarTypeKind()) {
5617     case Type::STK_CPointer:
5618     case Type::STK_ObjCObjectPointer:
5619     case Type::STK_BlockPointer:
5620       if (Src.get()->isNullPointerConstant(Context,
5621                                            Expr::NPC_ValueDependentIsNull))
5622         return CK_NullToPointer;
5623       return CK_IntegralToPointer;
5624     case Type::STK_Bool:
5625       return CK_IntegralToBoolean;
5626     case Type::STK_Integral:
5627       return CK_IntegralCast;
5628     case Type::STK_Floating:
5629       return CK_IntegralToFloating;
5630     case Type::STK_IntegralComplex:
5631       Src = ImpCastExprToType(Src.get(),
5632                       DestTy->castAs<ComplexType>()->getElementType(),
5633                       CK_IntegralCast);
5634       return CK_IntegralRealToComplex;
5635     case Type::STK_FloatingComplex:
5636       Src = ImpCastExprToType(Src.get(),
5637                       DestTy->castAs<ComplexType>()->getElementType(),
5638                       CK_IntegralToFloating);
5639       return CK_FloatingRealToComplex;
5640     case Type::STK_MemberPointer:
5641       llvm_unreachable("member pointer type in C");
5642     }
5643     llvm_unreachable("Should have returned before this");
5644 
5645   case Type::STK_Floating:
5646     switch (DestTy->getScalarTypeKind()) {
5647     case Type::STK_Floating:
5648       return CK_FloatingCast;
5649     case Type::STK_Bool:
5650       return CK_FloatingToBoolean;
5651     case Type::STK_Integral:
5652       return CK_FloatingToIntegral;
5653     case Type::STK_FloatingComplex:
5654       Src = ImpCastExprToType(Src.get(),
5655                               DestTy->castAs<ComplexType>()->getElementType(),
5656                               CK_FloatingCast);
5657       return CK_FloatingRealToComplex;
5658     case Type::STK_IntegralComplex:
5659       Src = ImpCastExprToType(Src.get(),
5660                               DestTy->castAs<ComplexType>()->getElementType(),
5661                               CK_FloatingToIntegral);
5662       return CK_IntegralRealToComplex;
5663     case Type::STK_CPointer:
5664     case Type::STK_ObjCObjectPointer:
5665     case Type::STK_BlockPointer:
5666       llvm_unreachable("valid float->pointer cast?");
5667     case Type::STK_MemberPointer:
5668       llvm_unreachable("member pointer type in C");
5669     }
5670     llvm_unreachable("Should have returned before this");
5671 
5672   case Type::STK_FloatingComplex:
5673     switch (DestTy->getScalarTypeKind()) {
5674     case Type::STK_FloatingComplex:
5675       return CK_FloatingComplexCast;
5676     case Type::STK_IntegralComplex:
5677       return CK_FloatingComplexToIntegralComplex;
5678     case Type::STK_Floating: {
5679       QualType ET = SrcTy->castAs<ComplexType>()->getElementType();
5680       if (Context.hasSameType(ET, DestTy))
5681         return CK_FloatingComplexToReal;
5682       Src = ImpCastExprToType(Src.get(), ET, CK_FloatingComplexToReal);
5683       return CK_FloatingCast;
5684     }
5685     case Type::STK_Bool:
5686       return CK_FloatingComplexToBoolean;
5687     case Type::STK_Integral:
5688       Src = ImpCastExprToType(Src.get(),
5689                               SrcTy->castAs<ComplexType>()->getElementType(),
5690                               CK_FloatingComplexToReal);
5691       return CK_FloatingToIntegral;
5692     case Type::STK_CPointer:
5693     case Type::STK_ObjCObjectPointer:
5694     case Type::STK_BlockPointer:
5695       llvm_unreachable("valid complex float->pointer cast?");
5696     case Type::STK_MemberPointer:
5697       llvm_unreachable("member pointer type in C");
5698     }
5699     llvm_unreachable("Should have returned before this");
5700 
5701   case Type::STK_IntegralComplex:
5702     switch (DestTy->getScalarTypeKind()) {
5703     case Type::STK_FloatingComplex:
5704       return CK_IntegralComplexToFloatingComplex;
5705     case Type::STK_IntegralComplex:
5706       return CK_IntegralComplexCast;
5707     case Type::STK_Integral: {
5708       QualType ET = SrcTy->castAs<ComplexType>()->getElementType();
5709       if (Context.hasSameType(ET, DestTy))
5710         return CK_IntegralComplexToReal;
5711       Src = ImpCastExprToType(Src.get(), ET, CK_IntegralComplexToReal);
5712       return CK_IntegralCast;
5713     }
5714     case Type::STK_Bool:
5715       return CK_IntegralComplexToBoolean;
5716     case Type::STK_Floating:
5717       Src = ImpCastExprToType(Src.get(),
5718                               SrcTy->castAs<ComplexType>()->getElementType(),
5719                               CK_IntegralComplexToReal);
5720       return CK_IntegralToFloating;
5721     case Type::STK_CPointer:
5722     case Type::STK_ObjCObjectPointer:
5723     case Type::STK_BlockPointer:
5724       llvm_unreachable("valid complex int->pointer cast?");
5725     case Type::STK_MemberPointer:
5726       llvm_unreachable("member pointer type in C");
5727     }
5728     llvm_unreachable("Should have returned before this");
5729   }
5730 
5731   llvm_unreachable("Unhandled scalar cast");
5732 }
5733 
5734 static bool breakDownVectorType(QualType type, uint64_t &len,
5735                                 QualType &eltType) {
5736   // Vectors are simple.
5737   if (const VectorType *vecType = type->getAs<VectorType>()) {
5738     len = vecType->getNumElements();
5739     eltType = vecType->getElementType();
5740     assert(eltType->isScalarType());
5741     return true;
5742   }
5743 
5744   // We allow lax conversion to and from non-vector types, but only if
5745   // they're real types (i.e. non-complex, non-pointer scalar types).
5746   if (!type->isRealType()) return false;
5747 
5748   len = 1;
5749   eltType = type;
5750   return true;
5751 }
5752 
5753 /// Are the two types lax-compatible vector types?  That is, given
5754 /// that one of them is a vector, do they have equal storage sizes,
5755 /// where the storage size is the number of elements times the element
5756 /// size?
5757 ///
5758 /// This will also return false if either of the types is neither a
5759 /// vector nor a real type.
5760 bool Sema::areLaxCompatibleVectorTypes(QualType srcTy, QualType destTy) {
5761   assert(destTy->isVectorType() || srcTy->isVectorType());
5762 
5763   // Disallow lax conversions between scalars and ExtVectors (these
5764   // conversions are allowed for other vector types because common headers
5765   // depend on them).  Most scalar OP ExtVector cases are handled by the
5766   // splat path anyway, which does what we want (convert, not bitcast).
5767   // What this rules out for ExtVectors is crazy things like char4*float.
5768   if (srcTy->isScalarType() && destTy->isExtVectorType()) return false;
5769   if (destTy->isScalarType() && srcTy->isExtVectorType()) return false;
5770 
5771   uint64_t srcLen, destLen;
5772   QualType srcEltTy, destEltTy;
5773   if (!breakDownVectorType(srcTy, srcLen, srcEltTy)) return false;
5774   if (!breakDownVectorType(destTy, destLen, destEltTy)) return false;
5775 
5776   // ASTContext::getTypeSize will return the size rounded up to a
5777   // power of 2, so instead of using that, we need to use the raw
5778   // element size multiplied by the element count.
5779   uint64_t srcEltSize = Context.getTypeSize(srcEltTy);
5780   uint64_t destEltSize = Context.getTypeSize(destEltTy);
5781 
5782   return (srcLen * srcEltSize == destLen * destEltSize);
5783 }
5784 
5785 /// Is this a legal conversion between two types, one of which is
5786 /// known to be a vector type?
5787 bool Sema::isLaxVectorConversion(QualType srcTy, QualType destTy) {
5788   assert(destTy->isVectorType() || srcTy->isVectorType());
5789 
5790   if (!Context.getLangOpts().LaxVectorConversions)
5791     return false;
5792   return areLaxCompatibleVectorTypes(srcTy, destTy);
5793 }
5794 
5795 bool Sema::CheckVectorCast(SourceRange R, QualType VectorTy, QualType Ty,
5796                            CastKind &Kind) {
5797   assert(VectorTy->isVectorType() && "Not a vector type!");
5798 
5799   if (Ty->isVectorType() || Ty->isIntegralType(Context)) {
5800     if (!areLaxCompatibleVectorTypes(Ty, VectorTy))
5801       return Diag(R.getBegin(),
5802                   Ty->isVectorType() ?
5803                   diag::err_invalid_conversion_between_vectors :
5804                   diag::err_invalid_conversion_between_vector_and_integer)
5805         << VectorTy << Ty << R;
5806   } else
5807     return Diag(R.getBegin(),
5808                 diag::err_invalid_conversion_between_vector_and_scalar)
5809       << VectorTy << Ty << R;
5810 
5811   Kind = CK_BitCast;
5812   return false;
5813 }
5814 
5815 ExprResult Sema::prepareVectorSplat(QualType VectorTy, Expr *SplattedExpr) {
5816   QualType DestElemTy = VectorTy->castAs<VectorType>()->getElementType();
5817 
5818   if (DestElemTy == SplattedExpr->getType())
5819     return SplattedExpr;
5820 
5821   assert(DestElemTy->isFloatingType() ||
5822          DestElemTy->isIntegralOrEnumerationType());
5823 
5824   CastKind CK;
5825   if (VectorTy->isExtVectorType() && SplattedExpr->getType()->isBooleanType()) {
5826     // OpenCL requires that we convert `true` boolean expressions to -1, but
5827     // only when splatting vectors.
5828     if (DestElemTy->isFloatingType()) {
5829       // To avoid having to have a CK_BooleanToSignedFloating cast kind, we cast
5830       // in two steps: boolean to signed integral, then to floating.
5831       ExprResult CastExprRes = ImpCastExprToType(SplattedExpr, Context.IntTy,
5832                                                  CK_BooleanToSignedIntegral);
5833       SplattedExpr = CastExprRes.get();
5834       CK = CK_IntegralToFloating;
5835     } else {
5836       CK = CK_BooleanToSignedIntegral;
5837     }
5838   } else {
5839     ExprResult CastExprRes = SplattedExpr;
5840     CK = PrepareScalarCast(CastExprRes, DestElemTy);
5841     if (CastExprRes.isInvalid())
5842       return ExprError();
5843     SplattedExpr = CastExprRes.get();
5844   }
5845   return ImpCastExprToType(SplattedExpr, DestElemTy, CK);
5846 }
5847 
5848 ExprResult Sema::CheckExtVectorCast(SourceRange R, QualType DestTy,
5849                                     Expr *CastExpr, CastKind &Kind) {
5850   assert(DestTy->isExtVectorType() && "Not an extended vector type!");
5851 
5852   QualType SrcTy = CastExpr->getType();
5853 
5854   // If SrcTy is a VectorType, the total size must match to explicitly cast to
5855   // an ExtVectorType.
5856   // In OpenCL, casts between vectors of different types are not allowed.
5857   // (See OpenCL 6.2).
5858   if (SrcTy->isVectorType()) {
5859     if (!areLaxCompatibleVectorTypes(SrcTy, DestTy)
5860         || (getLangOpts().OpenCL &&
5861             (DestTy.getCanonicalType() != SrcTy.getCanonicalType()))) {
5862       Diag(R.getBegin(),diag::err_invalid_conversion_between_ext_vectors)
5863         << DestTy << SrcTy << R;
5864       return ExprError();
5865     }
5866     Kind = CK_BitCast;
5867     return CastExpr;
5868   }
5869 
5870   // All non-pointer scalars can be cast to ExtVector type.  The appropriate
5871   // conversion will take place first from scalar to elt type, and then
5872   // splat from elt type to vector.
5873   if (SrcTy->isPointerType())
5874     return Diag(R.getBegin(),
5875                 diag::err_invalid_conversion_between_vector_and_scalar)
5876       << DestTy << SrcTy << R;
5877 
5878   Kind = CK_VectorSplat;
5879   return prepareVectorSplat(DestTy, CastExpr);
5880 }
5881 
5882 ExprResult
5883 Sema::ActOnCastExpr(Scope *S, SourceLocation LParenLoc,
5884                     Declarator &D, ParsedType &Ty,
5885                     SourceLocation RParenLoc, Expr *CastExpr) {
5886   assert(!D.isInvalidType() && (CastExpr != nullptr) &&
5887          "ActOnCastExpr(): missing type or expr");
5888 
5889   TypeSourceInfo *castTInfo = GetTypeForDeclaratorCast(D, CastExpr->getType());
5890   if (D.isInvalidType())
5891     return ExprError();
5892 
5893   if (getLangOpts().CPlusPlus) {
5894     // Check that there are no default arguments (C++ only).
5895     CheckExtraCXXDefaultArguments(D);
5896   } else {
5897     // Make sure any TypoExprs have been dealt with.
5898     ExprResult Res = CorrectDelayedTyposInExpr(CastExpr);
5899     if (!Res.isUsable())
5900       return ExprError();
5901     CastExpr = Res.get();
5902   }
5903 
5904   checkUnusedDeclAttributes(D);
5905 
5906   QualType castType = castTInfo->getType();
5907   Ty = CreateParsedType(castType, castTInfo);
5908 
5909   bool isVectorLiteral = false;
5910 
5911   // Check for an altivec or OpenCL literal,
5912   // i.e. all the elements are integer constants.
5913   ParenExpr *PE = dyn_cast<ParenExpr>(CastExpr);
5914   ParenListExpr *PLE = dyn_cast<ParenListExpr>(CastExpr);
5915   if ((getLangOpts().AltiVec || getLangOpts().ZVector || getLangOpts().OpenCL)
5916        && castType->isVectorType() && (PE || PLE)) {
5917     if (PLE && PLE->getNumExprs() == 0) {
5918       Diag(PLE->getExprLoc(), diag::err_altivec_empty_initializer);
5919       return ExprError();
5920     }
5921     if (PE || PLE->getNumExprs() == 1) {
5922       Expr *E = (PE ? PE->getSubExpr() : PLE->getExpr(0));
5923       if (!E->getType()->isVectorType())
5924         isVectorLiteral = true;
5925     }
5926     else
5927       isVectorLiteral = true;
5928   }
5929 
5930   // If this is a vector initializer, '(' type ')' '(' init, ..., init ')'
5931   // then handle it as such.
5932   if (isVectorLiteral)
5933     return BuildVectorLiteral(LParenLoc, RParenLoc, CastExpr, castTInfo);
5934 
5935   // If the Expr being casted is a ParenListExpr, handle it specially.
5936   // This is not an AltiVec-style cast, so turn the ParenListExpr into a
5937   // sequence of BinOp comma operators.
5938   if (isa<ParenListExpr>(CastExpr)) {
5939     ExprResult Result = MaybeConvertParenListExprToParenExpr(S, CastExpr);
5940     if (Result.isInvalid()) return ExprError();
5941     CastExpr = Result.get();
5942   }
5943 
5944   if (getLangOpts().CPlusPlus && !castType->isVoidType() &&
5945       !getSourceManager().isInSystemMacro(LParenLoc))
5946     Diag(LParenLoc, diag::warn_old_style_cast) << CastExpr->getSourceRange();
5947 
5948   CheckTollFreeBridgeCast(castType, CastExpr);
5949 
5950   CheckObjCBridgeRelatedCast(castType, CastExpr);
5951 
5952   return BuildCStyleCastExpr(LParenLoc, castTInfo, RParenLoc, CastExpr);
5953 }
5954 
5955 ExprResult Sema::BuildVectorLiteral(SourceLocation LParenLoc,
5956                                     SourceLocation RParenLoc, Expr *E,
5957                                     TypeSourceInfo *TInfo) {
5958   assert((isa<ParenListExpr>(E) || isa<ParenExpr>(E)) &&
5959          "Expected paren or paren list expression");
5960 
5961   Expr **exprs;
5962   unsigned numExprs;
5963   Expr *subExpr;
5964   SourceLocation LiteralLParenLoc, LiteralRParenLoc;
5965   if (ParenListExpr *PE = dyn_cast<ParenListExpr>(E)) {
5966     LiteralLParenLoc = PE->getLParenLoc();
5967     LiteralRParenLoc = PE->getRParenLoc();
5968     exprs = PE->getExprs();
5969     numExprs = PE->getNumExprs();
5970   } else { // isa<ParenExpr> by assertion at function entrance
5971     LiteralLParenLoc = cast<ParenExpr>(E)->getLParen();
5972     LiteralRParenLoc = cast<ParenExpr>(E)->getRParen();
5973     subExpr = cast<ParenExpr>(E)->getSubExpr();
5974     exprs = &subExpr;
5975     numExprs = 1;
5976   }
5977 
5978   QualType Ty = TInfo->getType();
5979   assert(Ty->isVectorType() && "Expected vector type");
5980 
5981   SmallVector<Expr *, 8> initExprs;
5982   const VectorType *VTy = Ty->getAs<VectorType>();
5983   unsigned numElems = Ty->getAs<VectorType>()->getNumElements();
5984 
5985   // '(...)' form of vector initialization in AltiVec: the number of
5986   // initializers must be one or must match the size of the vector.
5987   // If a single value is specified in the initializer then it will be
5988   // replicated to all the components of the vector
5989   if (VTy->getVectorKind() == VectorType::AltiVecVector) {
5990     // The number of initializers must be one or must match the size of the
5991     // vector. If a single value is specified in the initializer then it will
5992     // be replicated to all the components of the vector
5993     if (numExprs == 1) {
5994       QualType ElemTy = Ty->getAs<VectorType>()->getElementType();
5995       ExprResult Literal = DefaultLvalueConversion(exprs[0]);
5996       if (Literal.isInvalid())
5997         return ExprError();
5998       Literal = ImpCastExprToType(Literal.get(), ElemTy,
5999                                   PrepareScalarCast(Literal, ElemTy));
6000       return BuildCStyleCastExpr(LParenLoc, TInfo, RParenLoc, Literal.get());
6001     }
6002     else if (numExprs < numElems) {
6003       Diag(E->getExprLoc(),
6004            diag::err_incorrect_number_of_vector_initializers);
6005       return ExprError();
6006     }
6007     else
6008       initExprs.append(exprs, exprs + numExprs);
6009   }
6010   else {
6011     // For OpenCL, when the number of initializers is a single value,
6012     // it will be replicated to all components of the vector.
6013     if (getLangOpts().OpenCL &&
6014         VTy->getVectorKind() == VectorType::GenericVector &&
6015         numExprs == 1) {
6016         QualType ElemTy = Ty->getAs<VectorType>()->getElementType();
6017         ExprResult Literal = DefaultLvalueConversion(exprs[0]);
6018         if (Literal.isInvalid())
6019           return ExprError();
6020         Literal = ImpCastExprToType(Literal.get(), ElemTy,
6021                                     PrepareScalarCast(Literal, ElemTy));
6022         return BuildCStyleCastExpr(LParenLoc, TInfo, RParenLoc, Literal.get());
6023     }
6024 
6025     initExprs.append(exprs, exprs + numExprs);
6026   }
6027   // FIXME: This means that pretty-printing the final AST will produce curly
6028   // braces instead of the original commas.
6029   InitListExpr *initE = new (Context) InitListExpr(Context, LiteralLParenLoc,
6030                                                    initExprs, LiteralRParenLoc);
6031   initE->setType(Ty);
6032   return BuildCompoundLiteralExpr(LParenLoc, TInfo, RParenLoc, initE);
6033 }
6034 
6035 /// This is not an AltiVec-style cast or or C++ direct-initialization, so turn
6036 /// the ParenListExpr into a sequence of comma binary operators.
6037 ExprResult
6038 Sema::MaybeConvertParenListExprToParenExpr(Scope *S, Expr *OrigExpr) {
6039   ParenListExpr *E = dyn_cast<ParenListExpr>(OrigExpr);
6040   if (!E)
6041     return OrigExpr;
6042 
6043   ExprResult Result(E->getExpr(0));
6044 
6045   for (unsigned i = 1, e = E->getNumExprs(); i != e && !Result.isInvalid(); ++i)
6046     Result = ActOnBinOp(S, E->getExprLoc(), tok::comma, Result.get(),
6047                         E->getExpr(i));
6048 
6049   if (Result.isInvalid()) return ExprError();
6050 
6051   return ActOnParenExpr(E->getLParenLoc(), E->getRParenLoc(), Result.get());
6052 }
6053 
6054 ExprResult Sema::ActOnParenListExpr(SourceLocation L,
6055                                     SourceLocation R,
6056                                     MultiExprArg Val) {
6057   Expr *expr = new (Context) ParenListExpr(Context, L, Val, R);
6058   return expr;
6059 }
6060 
6061 /// \brief Emit a specialized diagnostic when one expression is a null pointer
6062 /// constant and the other is not a pointer.  Returns true if a diagnostic is
6063 /// emitted.
6064 bool Sema::DiagnoseConditionalForNull(Expr *LHSExpr, Expr *RHSExpr,
6065                                       SourceLocation QuestionLoc) {
6066   Expr *NullExpr = LHSExpr;
6067   Expr *NonPointerExpr = RHSExpr;
6068   Expr::NullPointerConstantKind NullKind =
6069       NullExpr->isNullPointerConstant(Context,
6070                                       Expr::NPC_ValueDependentIsNotNull);
6071 
6072   if (NullKind == Expr::NPCK_NotNull) {
6073     NullExpr = RHSExpr;
6074     NonPointerExpr = LHSExpr;
6075     NullKind =
6076         NullExpr->isNullPointerConstant(Context,
6077                                         Expr::NPC_ValueDependentIsNotNull);
6078   }
6079 
6080   if (NullKind == Expr::NPCK_NotNull)
6081     return false;
6082 
6083   if (NullKind == Expr::NPCK_ZeroExpression)
6084     return false;
6085 
6086   if (NullKind == Expr::NPCK_ZeroLiteral) {
6087     // In this case, check to make sure that we got here from a "NULL"
6088     // string in the source code.
6089     NullExpr = NullExpr->IgnoreParenImpCasts();
6090     SourceLocation loc = NullExpr->getExprLoc();
6091     if (!findMacroSpelling(loc, "NULL"))
6092       return false;
6093   }
6094 
6095   int DiagType = (NullKind == Expr::NPCK_CXX11_nullptr);
6096   Diag(QuestionLoc, diag::err_typecheck_cond_incompatible_operands_null)
6097       << NonPointerExpr->getType() << DiagType
6098       << NonPointerExpr->getSourceRange();
6099   return true;
6100 }
6101 
6102 /// \brief Return false if the condition expression is valid, true otherwise.
6103 static bool checkCondition(Sema &S, Expr *Cond, SourceLocation QuestionLoc) {
6104   QualType CondTy = Cond->getType();
6105 
6106   // OpenCL v1.1 s6.3.i says the condition cannot be a floating point type.
6107   if (S.getLangOpts().OpenCL && CondTy->isFloatingType()) {
6108     S.Diag(QuestionLoc, diag::err_typecheck_cond_expect_nonfloat)
6109       << CondTy << Cond->getSourceRange();
6110     return true;
6111   }
6112 
6113   // C99 6.5.15p2
6114   if (CondTy->isScalarType()) return false;
6115 
6116   S.Diag(QuestionLoc, diag::err_typecheck_cond_expect_scalar)
6117     << CondTy << Cond->getSourceRange();
6118   return true;
6119 }
6120 
6121 /// \brief Handle when one or both operands are void type.
6122 static QualType checkConditionalVoidType(Sema &S, ExprResult &LHS,
6123                                          ExprResult &RHS) {
6124     Expr *LHSExpr = LHS.get();
6125     Expr *RHSExpr = RHS.get();
6126 
6127     if (!LHSExpr->getType()->isVoidType())
6128       S.Diag(RHSExpr->getLocStart(), diag::ext_typecheck_cond_one_void)
6129         << RHSExpr->getSourceRange();
6130     if (!RHSExpr->getType()->isVoidType())
6131       S.Diag(LHSExpr->getLocStart(), diag::ext_typecheck_cond_one_void)
6132         << LHSExpr->getSourceRange();
6133     LHS = S.ImpCastExprToType(LHS.get(), S.Context.VoidTy, CK_ToVoid);
6134     RHS = S.ImpCastExprToType(RHS.get(), S.Context.VoidTy, CK_ToVoid);
6135     return S.Context.VoidTy;
6136 }
6137 
6138 /// \brief Return false if the NullExpr can be promoted to PointerTy,
6139 /// true otherwise.
6140 static bool checkConditionalNullPointer(Sema &S, ExprResult &NullExpr,
6141                                         QualType PointerTy) {
6142   if ((!PointerTy->isAnyPointerType() && !PointerTy->isBlockPointerType()) ||
6143       !NullExpr.get()->isNullPointerConstant(S.Context,
6144                                             Expr::NPC_ValueDependentIsNull))
6145     return true;
6146 
6147   NullExpr = S.ImpCastExprToType(NullExpr.get(), PointerTy, CK_NullToPointer);
6148   return false;
6149 }
6150 
6151 /// \brief Checks compatibility between two pointers and return the resulting
6152 /// type.
6153 static QualType checkConditionalPointerCompatibility(Sema &S, ExprResult &LHS,
6154                                                      ExprResult &RHS,
6155                                                      SourceLocation Loc) {
6156   QualType LHSTy = LHS.get()->getType();
6157   QualType RHSTy = RHS.get()->getType();
6158 
6159   if (S.Context.hasSameType(LHSTy, RHSTy)) {
6160     // Two identical pointers types are always compatible.
6161     return LHSTy;
6162   }
6163 
6164   QualType lhptee, rhptee;
6165 
6166   // Get the pointee types.
6167   bool IsBlockPointer = false;
6168   if (const BlockPointerType *LHSBTy = LHSTy->getAs<BlockPointerType>()) {
6169     lhptee = LHSBTy->getPointeeType();
6170     rhptee = RHSTy->castAs<BlockPointerType>()->getPointeeType();
6171     IsBlockPointer = true;
6172   } else {
6173     lhptee = LHSTy->castAs<PointerType>()->getPointeeType();
6174     rhptee = RHSTy->castAs<PointerType>()->getPointeeType();
6175   }
6176 
6177   // C99 6.5.15p6: If both operands are pointers to compatible types or to
6178   // differently qualified versions of compatible types, the result type is
6179   // a pointer to an appropriately qualified version of the composite
6180   // type.
6181 
6182   // Only CVR-qualifiers exist in the standard, and the differently-qualified
6183   // clause doesn't make sense for our extensions. E.g. address space 2 should
6184   // be incompatible with address space 3: they may live on different devices or
6185   // anything.
6186   Qualifiers lhQual = lhptee.getQualifiers();
6187   Qualifiers rhQual = rhptee.getQualifiers();
6188 
6189   unsigned MergedCVRQual = lhQual.getCVRQualifiers() | rhQual.getCVRQualifiers();
6190   lhQual.removeCVRQualifiers();
6191   rhQual.removeCVRQualifiers();
6192 
6193   lhptee = S.Context.getQualifiedType(lhptee.getUnqualifiedType(), lhQual);
6194   rhptee = S.Context.getQualifiedType(rhptee.getUnqualifiedType(), rhQual);
6195 
6196   QualType CompositeTy = S.Context.mergeTypes(lhptee, rhptee);
6197 
6198   if (CompositeTy.isNull()) {
6199     S.Diag(Loc, diag::ext_typecheck_cond_incompatible_pointers)
6200       << LHSTy << RHSTy << LHS.get()->getSourceRange()
6201       << RHS.get()->getSourceRange();
6202     // In this situation, we assume void* type. No especially good
6203     // reason, but this is what gcc does, and we do have to pick
6204     // to get a consistent AST.
6205     QualType incompatTy = S.Context.getPointerType(S.Context.VoidTy);
6206     LHS = S.ImpCastExprToType(LHS.get(), incompatTy, CK_BitCast);
6207     RHS = S.ImpCastExprToType(RHS.get(), incompatTy, CK_BitCast);
6208     return incompatTy;
6209   }
6210 
6211   // The pointer types are compatible.
6212   QualType ResultTy = CompositeTy.withCVRQualifiers(MergedCVRQual);
6213   if (IsBlockPointer)
6214     ResultTy = S.Context.getBlockPointerType(ResultTy);
6215   else
6216     ResultTy = S.Context.getPointerType(ResultTy);
6217 
6218   LHS = S.ImpCastExprToType(LHS.get(), ResultTy, CK_BitCast);
6219   RHS = S.ImpCastExprToType(RHS.get(), ResultTy, CK_BitCast);
6220   return ResultTy;
6221 }
6222 
6223 /// \brief Return the resulting type when the operands are both block pointers.
6224 static QualType checkConditionalBlockPointerCompatibility(Sema &S,
6225                                                           ExprResult &LHS,
6226                                                           ExprResult &RHS,
6227                                                           SourceLocation Loc) {
6228   QualType LHSTy = LHS.get()->getType();
6229   QualType RHSTy = RHS.get()->getType();
6230 
6231   if (!LHSTy->isBlockPointerType() || !RHSTy->isBlockPointerType()) {
6232     if (LHSTy->isVoidPointerType() || RHSTy->isVoidPointerType()) {
6233       QualType destType = S.Context.getPointerType(S.Context.VoidTy);
6234       LHS = S.ImpCastExprToType(LHS.get(), destType, CK_BitCast);
6235       RHS = S.ImpCastExprToType(RHS.get(), destType, CK_BitCast);
6236       return destType;
6237     }
6238     S.Diag(Loc, diag::err_typecheck_cond_incompatible_operands)
6239       << LHSTy << RHSTy << LHS.get()->getSourceRange()
6240       << RHS.get()->getSourceRange();
6241     return QualType();
6242   }
6243 
6244   // We have 2 block pointer types.
6245   return checkConditionalPointerCompatibility(S, LHS, RHS, Loc);
6246 }
6247 
6248 /// \brief Return the resulting type when the operands are both pointers.
6249 static QualType
6250 checkConditionalObjectPointersCompatibility(Sema &S, ExprResult &LHS,
6251                                             ExprResult &RHS,
6252                                             SourceLocation Loc) {
6253   // get the pointer types
6254   QualType LHSTy = LHS.get()->getType();
6255   QualType RHSTy = RHS.get()->getType();
6256 
6257   // get the "pointed to" types
6258   QualType lhptee = LHSTy->getAs<PointerType>()->getPointeeType();
6259   QualType rhptee = RHSTy->getAs<PointerType>()->getPointeeType();
6260 
6261   // ignore qualifiers on void (C99 6.5.15p3, clause 6)
6262   if (lhptee->isVoidType() && rhptee->isIncompleteOrObjectType()) {
6263     // Figure out necessary qualifiers (C99 6.5.15p6)
6264     QualType destPointee
6265       = S.Context.getQualifiedType(lhptee, rhptee.getQualifiers());
6266     QualType destType = S.Context.getPointerType(destPointee);
6267     // Add qualifiers if necessary.
6268     LHS = S.ImpCastExprToType(LHS.get(), destType, CK_NoOp);
6269     // Promote to void*.
6270     RHS = S.ImpCastExprToType(RHS.get(), destType, CK_BitCast);
6271     return destType;
6272   }
6273   if (rhptee->isVoidType() && lhptee->isIncompleteOrObjectType()) {
6274     QualType destPointee
6275       = S.Context.getQualifiedType(rhptee, lhptee.getQualifiers());
6276     QualType destType = S.Context.getPointerType(destPointee);
6277     // Add qualifiers if necessary.
6278     RHS = S.ImpCastExprToType(RHS.get(), destType, CK_NoOp);
6279     // Promote to void*.
6280     LHS = S.ImpCastExprToType(LHS.get(), destType, CK_BitCast);
6281     return destType;
6282   }
6283 
6284   return checkConditionalPointerCompatibility(S, LHS, RHS, Loc);
6285 }
6286 
6287 /// \brief Return false if the first expression is not an integer and the second
6288 /// expression is not a pointer, true otherwise.
6289 static bool checkPointerIntegerMismatch(Sema &S, ExprResult &Int,
6290                                         Expr* PointerExpr, SourceLocation Loc,
6291                                         bool IsIntFirstExpr) {
6292   if (!PointerExpr->getType()->isPointerType() ||
6293       !Int.get()->getType()->isIntegerType())
6294     return false;
6295 
6296   Expr *Expr1 = IsIntFirstExpr ? Int.get() : PointerExpr;
6297   Expr *Expr2 = IsIntFirstExpr ? PointerExpr : Int.get();
6298 
6299   S.Diag(Loc, diag::ext_typecheck_cond_pointer_integer_mismatch)
6300     << Expr1->getType() << Expr2->getType()
6301     << Expr1->getSourceRange() << Expr2->getSourceRange();
6302   Int = S.ImpCastExprToType(Int.get(), PointerExpr->getType(),
6303                             CK_IntegralToPointer);
6304   return true;
6305 }
6306 
6307 /// \brief Simple conversion between integer and floating point types.
6308 ///
6309 /// Used when handling the OpenCL conditional operator where the
6310 /// condition is a vector while the other operands are scalar.
6311 ///
6312 /// OpenCL v1.1 s6.3.i and s6.11.6 together require that the scalar
6313 /// types are either integer or floating type. Between the two
6314 /// operands, the type with the higher rank is defined as the "result
6315 /// type". The other operand needs to be promoted to the same type. No
6316 /// other type promotion is allowed. We cannot use
6317 /// UsualArithmeticConversions() for this purpose, since it always
6318 /// promotes promotable types.
6319 static QualType OpenCLArithmeticConversions(Sema &S, ExprResult &LHS,
6320                                             ExprResult &RHS,
6321                                             SourceLocation QuestionLoc) {
6322   LHS = S.DefaultFunctionArrayLvalueConversion(LHS.get());
6323   if (LHS.isInvalid())
6324     return QualType();
6325   RHS = S.DefaultFunctionArrayLvalueConversion(RHS.get());
6326   if (RHS.isInvalid())
6327     return QualType();
6328 
6329   // For conversion purposes, we ignore any qualifiers.
6330   // For example, "const float" and "float" are equivalent.
6331   QualType LHSType =
6332     S.Context.getCanonicalType(LHS.get()->getType()).getUnqualifiedType();
6333   QualType RHSType =
6334     S.Context.getCanonicalType(RHS.get()->getType()).getUnqualifiedType();
6335 
6336   if (!LHSType->isIntegerType() && !LHSType->isRealFloatingType()) {
6337     S.Diag(QuestionLoc, diag::err_typecheck_cond_expect_int_float)
6338       << LHSType << LHS.get()->getSourceRange();
6339     return QualType();
6340   }
6341 
6342   if (!RHSType->isIntegerType() && !RHSType->isRealFloatingType()) {
6343     S.Diag(QuestionLoc, diag::err_typecheck_cond_expect_int_float)
6344       << RHSType << RHS.get()->getSourceRange();
6345     return QualType();
6346   }
6347 
6348   // If both types are identical, no conversion is needed.
6349   if (LHSType == RHSType)
6350     return LHSType;
6351 
6352   // Now handle "real" floating types (i.e. float, double, long double).
6353   if (LHSType->isRealFloatingType() || RHSType->isRealFloatingType())
6354     return handleFloatConversion(S, LHS, RHS, LHSType, RHSType,
6355                                  /*IsCompAssign = */ false);
6356 
6357   // Finally, we have two differing integer types.
6358   return handleIntegerConversion<doIntegralCast, doIntegralCast>
6359   (S, LHS, RHS, LHSType, RHSType, /*IsCompAssign = */ false);
6360 }
6361 
6362 /// \brief Convert scalar operands to a vector that matches the
6363 ///        condition in length.
6364 ///
6365 /// Used when handling the OpenCL conditional operator where the
6366 /// condition is a vector while the other operands are scalar.
6367 ///
6368 /// We first compute the "result type" for the scalar operands
6369 /// according to OpenCL v1.1 s6.3.i. Both operands are then converted
6370 /// into a vector of that type where the length matches the condition
6371 /// vector type. s6.11.6 requires that the element types of the result
6372 /// and the condition must have the same number of bits.
6373 static QualType
6374 OpenCLConvertScalarsToVectors(Sema &S, ExprResult &LHS, ExprResult &RHS,
6375                               QualType CondTy, SourceLocation QuestionLoc) {
6376   QualType ResTy = OpenCLArithmeticConversions(S, LHS, RHS, QuestionLoc);
6377   if (ResTy.isNull()) return QualType();
6378 
6379   const VectorType *CV = CondTy->getAs<VectorType>();
6380   assert(CV);
6381 
6382   // Determine the vector result type
6383   unsigned NumElements = CV->getNumElements();
6384   QualType VectorTy = S.Context.getExtVectorType(ResTy, NumElements);
6385 
6386   // Ensure that all types have the same number of bits
6387   if (S.Context.getTypeSize(CV->getElementType())
6388       != S.Context.getTypeSize(ResTy)) {
6389     // Since VectorTy is created internally, it does not pretty print
6390     // with an OpenCL name. Instead, we just print a description.
6391     std::string EleTyName = ResTy.getUnqualifiedType().getAsString();
6392     SmallString<64> Str;
6393     llvm::raw_svector_ostream OS(Str);
6394     OS << "(vector of " << NumElements << " '" << EleTyName << "' values)";
6395     S.Diag(QuestionLoc, diag::err_conditional_vector_element_size)
6396       << CondTy << OS.str();
6397     return QualType();
6398   }
6399 
6400   // Convert operands to the vector result type
6401   LHS = S.ImpCastExprToType(LHS.get(), VectorTy, CK_VectorSplat);
6402   RHS = S.ImpCastExprToType(RHS.get(), VectorTy, CK_VectorSplat);
6403 
6404   return VectorTy;
6405 }
6406 
6407 /// \brief Return false if this is a valid OpenCL condition vector
6408 static bool checkOpenCLConditionVector(Sema &S, Expr *Cond,
6409                                        SourceLocation QuestionLoc) {
6410   // OpenCL v1.1 s6.11.6 says the elements of the vector must be of
6411   // integral type.
6412   const VectorType *CondTy = Cond->getType()->getAs<VectorType>();
6413   assert(CondTy);
6414   QualType EleTy = CondTy->getElementType();
6415   if (EleTy->isIntegerType()) return false;
6416 
6417   S.Diag(QuestionLoc, diag::err_typecheck_cond_expect_nonfloat)
6418     << Cond->getType() << Cond->getSourceRange();
6419   return true;
6420 }
6421 
6422 /// \brief Return false if the vector condition type and the vector
6423 ///        result type are compatible.
6424 ///
6425 /// OpenCL v1.1 s6.11.6 requires that both vector types have the same
6426 /// number of elements, and their element types have the same number
6427 /// of bits.
6428 static bool checkVectorResult(Sema &S, QualType CondTy, QualType VecResTy,
6429                               SourceLocation QuestionLoc) {
6430   const VectorType *CV = CondTy->getAs<VectorType>();
6431   const VectorType *RV = VecResTy->getAs<VectorType>();
6432   assert(CV && RV);
6433 
6434   if (CV->getNumElements() != RV->getNumElements()) {
6435     S.Diag(QuestionLoc, diag::err_conditional_vector_size)
6436       << CondTy << VecResTy;
6437     return true;
6438   }
6439 
6440   QualType CVE = CV->getElementType();
6441   QualType RVE = RV->getElementType();
6442 
6443   if (S.Context.getTypeSize(CVE) != S.Context.getTypeSize(RVE)) {
6444     S.Diag(QuestionLoc, diag::err_conditional_vector_element_size)
6445       << CondTy << VecResTy;
6446     return true;
6447   }
6448 
6449   return false;
6450 }
6451 
6452 /// \brief Return the resulting type for the conditional operator in
6453 ///        OpenCL (aka "ternary selection operator", OpenCL v1.1
6454 ///        s6.3.i) when the condition is a vector type.
6455 static QualType
6456 OpenCLCheckVectorConditional(Sema &S, ExprResult &Cond,
6457                              ExprResult &LHS, ExprResult &RHS,
6458                              SourceLocation QuestionLoc) {
6459   Cond = S.DefaultFunctionArrayLvalueConversion(Cond.get());
6460   if (Cond.isInvalid())
6461     return QualType();
6462   QualType CondTy = Cond.get()->getType();
6463 
6464   if (checkOpenCLConditionVector(S, Cond.get(), QuestionLoc))
6465     return QualType();
6466 
6467   // If either operand is a vector then find the vector type of the
6468   // result as specified in OpenCL v1.1 s6.3.i.
6469   if (LHS.get()->getType()->isVectorType() ||
6470       RHS.get()->getType()->isVectorType()) {
6471     QualType VecResTy = S.CheckVectorOperands(LHS, RHS, QuestionLoc,
6472                                               /*isCompAssign*/false,
6473                                               /*AllowBothBool*/true,
6474                                               /*AllowBoolConversions*/false);
6475     if (VecResTy.isNull()) return QualType();
6476     // The result type must match the condition type as specified in
6477     // OpenCL v1.1 s6.11.6.
6478     if (checkVectorResult(S, CondTy, VecResTy, QuestionLoc))
6479       return QualType();
6480     return VecResTy;
6481   }
6482 
6483   // Both operands are scalar.
6484   return OpenCLConvertScalarsToVectors(S, LHS, RHS, CondTy, QuestionLoc);
6485 }
6486 
6487 /// \brief Return true if the Expr is block type
6488 static bool checkBlockType(Sema &S, const Expr *E) {
6489   if (const CallExpr *CE = dyn_cast<CallExpr>(E)) {
6490     QualType Ty = CE->getCallee()->getType();
6491     if (Ty->isBlockPointerType()) {
6492       S.Diag(E->getExprLoc(), diag::err_opencl_ternary_with_block);
6493       return true;
6494     }
6495   }
6496   return false;
6497 }
6498 
6499 /// Note that LHS is not null here, even if this is the gnu "x ?: y" extension.
6500 /// In that case, LHS = cond.
6501 /// C99 6.5.15
6502 QualType Sema::CheckConditionalOperands(ExprResult &Cond, ExprResult &LHS,
6503                                         ExprResult &RHS, ExprValueKind &VK,
6504                                         ExprObjectKind &OK,
6505                                         SourceLocation QuestionLoc) {
6506 
6507   ExprResult LHSResult = CheckPlaceholderExpr(LHS.get());
6508   if (!LHSResult.isUsable()) return QualType();
6509   LHS = LHSResult;
6510 
6511   ExprResult RHSResult = CheckPlaceholderExpr(RHS.get());
6512   if (!RHSResult.isUsable()) return QualType();
6513   RHS = RHSResult;
6514 
6515   // C++ is sufficiently different to merit its own checker.
6516   if (getLangOpts().CPlusPlus)
6517     return CXXCheckConditionalOperands(Cond, LHS, RHS, VK, OK, QuestionLoc);
6518 
6519   VK = VK_RValue;
6520   OK = OK_Ordinary;
6521 
6522   // The OpenCL operator with a vector condition is sufficiently
6523   // different to merit its own checker.
6524   if (getLangOpts().OpenCL && Cond.get()->getType()->isVectorType())
6525     return OpenCLCheckVectorConditional(*this, Cond, LHS, RHS, QuestionLoc);
6526 
6527   // First, check the condition.
6528   Cond = UsualUnaryConversions(Cond.get());
6529   if (Cond.isInvalid())
6530     return QualType();
6531   if (checkCondition(*this, Cond.get(), QuestionLoc))
6532     return QualType();
6533 
6534   // Now check the two expressions.
6535   if (LHS.get()->getType()->isVectorType() ||
6536       RHS.get()->getType()->isVectorType())
6537     return CheckVectorOperands(LHS, RHS, QuestionLoc, /*isCompAssign*/false,
6538                                /*AllowBothBool*/true,
6539                                /*AllowBoolConversions*/false);
6540 
6541   QualType ResTy = UsualArithmeticConversions(LHS, RHS);
6542   if (LHS.isInvalid() || RHS.isInvalid())
6543     return QualType();
6544 
6545   QualType LHSTy = LHS.get()->getType();
6546   QualType RHSTy = RHS.get()->getType();
6547 
6548   // OpenCL v2.0 s6.12.5 - Blocks cannot be used as expressions of the ternary
6549   // selection operator (?:).
6550   if (getLangOpts().OpenCL &&
6551       (checkBlockType(*this, LHS.get()) | checkBlockType(*this, RHS.get()))) {
6552     return QualType();
6553   }
6554 
6555   // If both operands have arithmetic type, do the usual arithmetic conversions
6556   // to find a common type: C99 6.5.15p3,5.
6557   if (LHSTy->isArithmeticType() && RHSTy->isArithmeticType()) {
6558     LHS = ImpCastExprToType(LHS.get(), ResTy, PrepareScalarCast(LHS, ResTy));
6559     RHS = ImpCastExprToType(RHS.get(), ResTy, PrepareScalarCast(RHS, ResTy));
6560 
6561     return ResTy;
6562   }
6563 
6564   // If both operands are the same structure or union type, the result is that
6565   // type.
6566   if (const RecordType *LHSRT = LHSTy->getAs<RecordType>()) {    // C99 6.5.15p3
6567     if (const RecordType *RHSRT = RHSTy->getAs<RecordType>())
6568       if (LHSRT->getDecl() == RHSRT->getDecl())
6569         // "If both the operands have structure or union type, the result has
6570         // that type."  This implies that CV qualifiers are dropped.
6571         return LHSTy.getUnqualifiedType();
6572     // FIXME: Type of conditional expression must be complete in C mode.
6573   }
6574 
6575   // C99 6.5.15p5: "If both operands have void type, the result has void type."
6576   // The following || allows only one side to be void (a GCC-ism).
6577   if (LHSTy->isVoidType() || RHSTy->isVoidType()) {
6578     return checkConditionalVoidType(*this, LHS, RHS);
6579   }
6580 
6581   // C99 6.5.15p6 - "if one operand is a null pointer constant, the result has
6582   // the type of the other operand."
6583   if (!checkConditionalNullPointer(*this, RHS, LHSTy)) return LHSTy;
6584   if (!checkConditionalNullPointer(*this, LHS, RHSTy)) return RHSTy;
6585 
6586   // All objective-c pointer type analysis is done here.
6587   QualType compositeType = FindCompositeObjCPointerType(LHS, RHS,
6588                                                         QuestionLoc);
6589   if (LHS.isInvalid() || RHS.isInvalid())
6590     return QualType();
6591   if (!compositeType.isNull())
6592     return compositeType;
6593 
6594 
6595   // Handle block pointer types.
6596   if (LHSTy->isBlockPointerType() || RHSTy->isBlockPointerType())
6597     return checkConditionalBlockPointerCompatibility(*this, LHS, RHS,
6598                                                      QuestionLoc);
6599 
6600   // Check constraints for C object pointers types (C99 6.5.15p3,6).
6601   if (LHSTy->isPointerType() && RHSTy->isPointerType())
6602     return checkConditionalObjectPointersCompatibility(*this, LHS, RHS,
6603                                                        QuestionLoc);
6604 
6605   // GCC compatibility: soften pointer/integer mismatch.  Note that
6606   // null pointers have been filtered out by this point.
6607   if (checkPointerIntegerMismatch(*this, LHS, RHS.get(), QuestionLoc,
6608       /*isIntFirstExpr=*/true))
6609     return RHSTy;
6610   if (checkPointerIntegerMismatch(*this, RHS, LHS.get(), QuestionLoc,
6611       /*isIntFirstExpr=*/false))
6612     return LHSTy;
6613 
6614   // Emit a better diagnostic if one of the expressions is a null pointer
6615   // constant and the other is not a pointer type. In this case, the user most
6616   // likely forgot to take the address of the other expression.
6617   if (DiagnoseConditionalForNull(LHS.get(), RHS.get(), QuestionLoc))
6618     return QualType();
6619 
6620   // Otherwise, the operands are not compatible.
6621   Diag(QuestionLoc, diag::err_typecheck_cond_incompatible_operands)
6622     << LHSTy << RHSTy << LHS.get()->getSourceRange()
6623     << RHS.get()->getSourceRange();
6624   return QualType();
6625 }
6626 
6627 /// FindCompositeObjCPointerType - Helper method to find composite type of
6628 /// two objective-c pointer types of the two input expressions.
6629 QualType Sema::FindCompositeObjCPointerType(ExprResult &LHS, ExprResult &RHS,
6630                                             SourceLocation QuestionLoc) {
6631   QualType LHSTy = LHS.get()->getType();
6632   QualType RHSTy = RHS.get()->getType();
6633 
6634   // Handle things like Class and struct objc_class*.  Here we case the result
6635   // to the pseudo-builtin, because that will be implicitly cast back to the
6636   // redefinition type if an attempt is made to access its fields.
6637   if (LHSTy->isObjCClassType() &&
6638       (Context.hasSameType(RHSTy, Context.getObjCClassRedefinitionType()))) {
6639     RHS = ImpCastExprToType(RHS.get(), LHSTy, CK_CPointerToObjCPointerCast);
6640     return LHSTy;
6641   }
6642   if (RHSTy->isObjCClassType() &&
6643       (Context.hasSameType(LHSTy, Context.getObjCClassRedefinitionType()))) {
6644     LHS = ImpCastExprToType(LHS.get(), RHSTy, CK_CPointerToObjCPointerCast);
6645     return RHSTy;
6646   }
6647   // And the same for struct objc_object* / id
6648   if (LHSTy->isObjCIdType() &&
6649       (Context.hasSameType(RHSTy, Context.getObjCIdRedefinitionType()))) {
6650     RHS = ImpCastExprToType(RHS.get(), LHSTy, CK_CPointerToObjCPointerCast);
6651     return LHSTy;
6652   }
6653   if (RHSTy->isObjCIdType() &&
6654       (Context.hasSameType(LHSTy, Context.getObjCIdRedefinitionType()))) {
6655     LHS = ImpCastExprToType(LHS.get(), RHSTy, CK_CPointerToObjCPointerCast);
6656     return RHSTy;
6657   }
6658   // And the same for struct objc_selector* / SEL
6659   if (Context.isObjCSelType(LHSTy) &&
6660       (Context.hasSameType(RHSTy, Context.getObjCSelRedefinitionType()))) {
6661     RHS = ImpCastExprToType(RHS.get(), LHSTy, CK_BitCast);
6662     return LHSTy;
6663   }
6664   if (Context.isObjCSelType(RHSTy) &&
6665       (Context.hasSameType(LHSTy, Context.getObjCSelRedefinitionType()))) {
6666     LHS = ImpCastExprToType(LHS.get(), RHSTy, CK_BitCast);
6667     return RHSTy;
6668   }
6669   // Check constraints for Objective-C object pointers types.
6670   if (LHSTy->isObjCObjectPointerType() && RHSTy->isObjCObjectPointerType()) {
6671 
6672     if (Context.getCanonicalType(LHSTy) == Context.getCanonicalType(RHSTy)) {
6673       // Two identical object pointer types are always compatible.
6674       return LHSTy;
6675     }
6676     const ObjCObjectPointerType *LHSOPT = LHSTy->castAs<ObjCObjectPointerType>();
6677     const ObjCObjectPointerType *RHSOPT = RHSTy->castAs<ObjCObjectPointerType>();
6678     QualType compositeType = LHSTy;
6679 
6680     // If both operands are interfaces and either operand can be
6681     // assigned to the other, use that type as the composite
6682     // type. This allows
6683     //   xxx ? (A*) a : (B*) b
6684     // where B is a subclass of A.
6685     //
6686     // Additionally, as for assignment, if either type is 'id'
6687     // allow silent coercion. Finally, if the types are
6688     // incompatible then make sure to use 'id' as the composite
6689     // type so the result is acceptable for sending messages to.
6690 
6691     // FIXME: Consider unifying with 'areComparableObjCPointerTypes'.
6692     // It could return the composite type.
6693     if (!(compositeType =
6694           Context.areCommonBaseCompatible(LHSOPT, RHSOPT)).isNull()) {
6695       // Nothing more to do.
6696     } else if (Context.canAssignObjCInterfaces(LHSOPT, RHSOPT)) {
6697       compositeType = RHSOPT->isObjCBuiltinType() ? RHSTy : LHSTy;
6698     } else if (Context.canAssignObjCInterfaces(RHSOPT, LHSOPT)) {
6699       compositeType = LHSOPT->isObjCBuiltinType() ? LHSTy : RHSTy;
6700     } else if ((LHSTy->isObjCQualifiedIdType() ||
6701                 RHSTy->isObjCQualifiedIdType()) &&
6702                Context.ObjCQualifiedIdTypesAreCompatible(LHSTy, RHSTy, true)) {
6703       // Need to handle "id<xx>" explicitly.
6704       // GCC allows qualified id and any Objective-C type to devolve to
6705       // id. Currently localizing to here until clear this should be
6706       // part of ObjCQualifiedIdTypesAreCompatible.
6707       compositeType = Context.getObjCIdType();
6708     } else if (LHSTy->isObjCIdType() || RHSTy->isObjCIdType()) {
6709       compositeType = Context.getObjCIdType();
6710     } else {
6711       Diag(QuestionLoc, diag::ext_typecheck_cond_incompatible_operands)
6712       << LHSTy << RHSTy
6713       << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
6714       QualType incompatTy = Context.getObjCIdType();
6715       LHS = ImpCastExprToType(LHS.get(), incompatTy, CK_BitCast);
6716       RHS = ImpCastExprToType(RHS.get(), incompatTy, CK_BitCast);
6717       return incompatTy;
6718     }
6719     // The object pointer types are compatible.
6720     LHS = ImpCastExprToType(LHS.get(), compositeType, CK_BitCast);
6721     RHS = ImpCastExprToType(RHS.get(), compositeType, CK_BitCast);
6722     return compositeType;
6723   }
6724   // Check Objective-C object pointer types and 'void *'
6725   if (LHSTy->isVoidPointerType() && RHSTy->isObjCObjectPointerType()) {
6726     if (getLangOpts().ObjCAutoRefCount) {
6727       // ARC forbids the implicit conversion of object pointers to 'void *',
6728       // so these types are not compatible.
6729       Diag(QuestionLoc, diag::err_cond_voidptr_arc) << LHSTy << RHSTy
6730           << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
6731       LHS = RHS = true;
6732       return QualType();
6733     }
6734     QualType lhptee = LHSTy->getAs<PointerType>()->getPointeeType();
6735     QualType rhptee = RHSTy->getAs<ObjCObjectPointerType>()->getPointeeType();
6736     QualType destPointee
6737     = Context.getQualifiedType(lhptee, rhptee.getQualifiers());
6738     QualType destType = Context.getPointerType(destPointee);
6739     // Add qualifiers if necessary.
6740     LHS = ImpCastExprToType(LHS.get(), destType, CK_NoOp);
6741     // Promote to void*.
6742     RHS = ImpCastExprToType(RHS.get(), destType, CK_BitCast);
6743     return destType;
6744   }
6745   if (LHSTy->isObjCObjectPointerType() && RHSTy->isVoidPointerType()) {
6746     if (getLangOpts().ObjCAutoRefCount) {
6747       // ARC forbids the implicit conversion of object pointers to 'void *',
6748       // so these types are not compatible.
6749       Diag(QuestionLoc, diag::err_cond_voidptr_arc) << LHSTy << RHSTy
6750           << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
6751       LHS = RHS = true;
6752       return QualType();
6753     }
6754     QualType lhptee = LHSTy->getAs<ObjCObjectPointerType>()->getPointeeType();
6755     QualType rhptee = RHSTy->getAs<PointerType>()->getPointeeType();
6756     QualType destPointee
6757     = Context.getQualifiedType(rhptee, lhptee.getQualifiers());
6758     QualType destType = Context.getPointerType(destPointee);
6759     // Add qualifiers if necessary.
6760     RHS = ImpCastExprToType(RHS.get(), destType, CK_NoOp);
6761     // Promote to void*.
6762     LHS = ImpCastExprToType(LHS.get(), destType, CK_BitCast);
6763     return destType;
6764   }
6765   return QualType();
6766 }
6767 
6768 /// SuggestParentheses - Emit a note with a fixit hint that wraps
6769 /// ParenRange in parentheses.
6770 static void SuggestParentheses(Sema &Self, SourceLocation Loc,
6771                                const PartialDiagnostic &Note,
6772                                SourceRange ParenRange) {
6773   SourceLocation EndLoc = Self.getLocForEndOfToken(ParenRange.getEnd());
6774   if (ParenRange.getBegin().isFileID() && ParenRange.getEnd().isFileID() &&
6775       EndLoc.isValid()) {
6776     Self.Diag(Loc, Note)
6777       << FixItHint::CreateInsertion(ParenRange.getBegin(), "(")
6778       << FixItHint::CreateInsertion(EndLoc, ")");
6779   } else {
6780     // We can't display the parentheses, so just show the bare note.
6781     Self.Diag(Loc, Note) << ParenRange;
6782   }
6783 }
6784 
6785 static bool IsArithmeticOp(BinaryOperatorKind Opc) {
6786   return BinaryOperator::isAdditiveOp(Opc) ||
6787          BinaryOperator::isMultiplicativeOp(Opc) ||
6788          BinaryOperator::isShiftOp(Opc);
6789 }
6790 
6791 /// IsArithmeticBinaryExpr - Returns true if E is an arithmetic binary
6792 /// expression, either using a built-in or overloaded operator,
6793 /// and sets *OpCode to the opcode and *RHSExprs to the right-hand side
6794 /// expression.
6795 static bool IsArithmeticBinaryExpr(Expr *E, BinaryOperatorKind *Opcode,
6796                                    Expr **RHSExprs) {
6797   // Don't strip parenthesis: we should not warn if E is in parenthesis.
6798   E = E->IgnoreImpCasts();
6799   E = E->IgnoreConversionOperator();
6800   E = E->IgnoreImpCasts();
6801 
6802   // Built-in binary operator.
6803   if (BinaryOperator *OP = dyn_cast<BinaryOperator>(E)) {
6804     if (IsArithmeticOp(OP->getOpcode())) {
6805       *Opcode = OP->getOpcode();
6806       *RHSExprs = OP->getRHS();
6807       return true;
6808     }
6809   }
6810 
6811   // Overloaded operator.
6812   if (CXXOperatorCallExpr *Call = dyn_cast<CXXOperatorCallExpr>(E)) {
6813     if (Call->getNumArgs() != 2)
6814       return false;
6815 
6816     // Make sure this is really a binary operator that is safe to pass into
6817     // BinaryOperator::getOverloadedOpcode(), e.g. it's not a subscript op.
6818     OverloadedOperatorKind OO = Call->getOperator();
6819     if (OO < OO_Plus || OO > OO_Arrow ||
6820         OO == OO_PlusPlus || OO == OO_MinusMinus)
6821       return false;
6822 
6823     BinaryOperatorKind OpKind = BinaryOperator::getOverloadedOpcode(OO);
6824     if (IsArithmeticOp(OpKind)) {
6825       *Opcode = OpKind;
6826       *RHSExprs = Call->getArg(1);
6827       return true;
6828     }
6829   }
6830 
6831   return false;
6832 }
6833 
6834 /// ExprLooksBoolean - Returns true if E looks boolean, i.e. it has boolean type
6835 /// or is a logical expression such as (x==y) which has int type, but is
6836 /// commonly interpreted as boolean.
6837 static bool ExprLooksBoolean(Expr *E) {
6838   E = E->IgnoreParenImpCasts();
6839 
6840   if (E->getType()->isBooleanType())
6841     return true;
6842   if (BinaryOperator *OP = dyn_cast<BinaryOperator>(E))
6843     return OP->isComparisonOp() || OP->isLogicalOp();
6844   if (UnaryOperator *OP = dyn_cast<UnaryOperator>(E))
6845     return OP->getOpcode() == UO_LNot;
6846   if (E->getType()->isPointerType())
6847     return true;
6848 
6849   return false;
6850 }
6851 
6852 /// DiagnoseConditionalPrecedence - Emit a warning when a conditional operator
6853 /// and binary operator are mixed in a way that suggests the programmer assumed
6854 /// the conditional operator has higher precedence, for example:
6855 /// "int x = a + someBinaryCondition ? 1 : 2".
6856 static void DiagnoseConditionalPrecedence(Sema &Self,
6857                                           SourceLocation OpLoc,
6858                                           Expr *Condition,
6859                                           Expr *LHSExpr,
6860                                           Expr *RHSExpr) {
6861   BinaryOperatorKind CondOpcode;
6862   Expr *CondRHS;
6863 
6864   if (!IsArithmeticBinaryExpr(Condition, &CondOpcode, &CondRHS))
6865     return;
6866   if (!ExprLooksBoolean(CondRHS))
6867     return;
6868 
6869   // The condition is an arithmetic binary expression, with a right-
6870   // hand side that looks boolean, so warn.
6871 
6872   Self.Diag(OpLoc, diag::warn_precedence_conditional)
6873       << Condition->getSourceRange()
6874       << BinaryOperator::getOpcodeStr(CondOpcode);
6875 
6876   SuggestParentheses(Self, OpLoc,
6877     Self.PDiag(diag::note_precedence_silence)
6878       << BinaryOperator::getOpcodeStr(CondOpcode),
6879     SourceRange(Condition->getLocStart(), Condition->getLocEnd()));
6880 
6881   SuggestParentheses(Self, OpLoc,
6882     Self.PDiag(diag::note_precedence_conditional_first),
6883     SourceRange(CondRHS->getLocStart(), RHSExpr->getLocEnd()));
6884 }
6885 
6886 /// ActOnConditionalOp - Parse a ?: operation.  Note that 'LHS' may be null
6887 /// in the case of a the GNU conditional expr extension.
6888 ExprResult Sema::ActOnConditionalOp(SourceLocation QuestionLoc,
6889                                     SourceLocation ColonLoc,
6890                                     Expr *CondExpr, Expr *LHSExpr,
6891                                     Expr *RHSExpr) {
6892   if (!getLangOpts().CPlusPlus) {
6893     // C cannot handle TypoExpr nodes in the condition because it
6894     // doesn't handle dependent types properly, so make sure any TypoExprs have
6895     // been dealt with before checking the operands.
6896     ExprResult CondResult = CorrectDelayedTyposInExpr(CondExpr);
6897     ExprResult LHSResult = CorrectDelayedTyposInExpr(LHSExpr);
6898     ExprResult RHSResult = CorrectDelayedTyposInExpr(RHSExpr);
6899 
6900     if (!CondResult.isUsable())
6901       return ExprError();
6902 
6903     if (LHSExpr) {
6904       if (!LHSResult.isUsable())
6905         return ExprError();
6906     }
6907 
6908     if (!RHSResult.isUsable())
6909       return ExprError();
6910 
6911     CondExpr = CondResult.get();
6912     LHSExpr = LHSResult.get();
6913     RHSExpr = RHSResult.get();
6914   }
6915 
6916   // If this is the gnu "x ?: y" extension, analyze the types as though the LHS
6917   // was the condition.
6918   OpaqueValueExpr *opaqueValue = nullptr;
6919   Expr *commonExpr = nullptr;
6920   if (!LHSExpr) {
6921     commonExpr = CondExpr;
6922     // Lower out placeholder types first.  This is important so that we don't
6923     // try to capture a placeholder. This happens in few cases in C++; such
6924     // as Objective-C++'s dictionary subscripting syntax.
6925     if (commonExpr->hasPlaceholderType()) {
6926       ExprResult result = CheckPlaceholderExpr(commonExpr);
6927       if (!result.isUsable()) return ExprError();
6928       commonExpr = result.get();
6929     }
6930     // We usually want to apply unary conversions *before* saving, except
6931     // in the special case of a C++ l-value conditional.
6932     if (!(getLangOpts().CPlusPlus
6933           && !commonExpr->isTypeDependent()
6934           && commonExpr->getValueKind() == RHSExpr->getValueKind()
6935           && commonExpr->isGLValue()
6936           && commonExpr->isOrdinaryOrBitFieldObject()
6937           && RHSExpr->isOrdinaryOrBitFieldObject()
6938           && Context.hasSameType(commonExpr->getType(), RHSExpr->getType()))) {
6939       ExprResult commonRes = UsualUnaryConversions(commonExpr);
6940       if (commonRes.isInvalid())
6941         return ExprError();
6942       commonExpr = commonRes.get();
6943     }
6944 
6945     opaqueValue = new (Context) OpaqueValueExpr(commonExpr->getExprLoc(),
6946                                                 commonExpr->getType(),
6947                                                 commonExpr->getValueKind(),
6948                                                 commonExpr->getObjectKind(),
6949                                                 commonExpr);
6950     LHSExpr = CondExpr = opaqueValue;
6951   }
6952 
6953   ExprValueKind VK = VK_RValue;
6954   ExprObjectKind OK = OK_Ordinary;
6955   ExprResult Cond = CondExpr, LHS = LHSExpr, RHS = RHSExpr;
6956   QualType result = CheckConditionalOperands(Cond, LHS, RHS,
6957                                              VK, OK, QuestionLoc);
6958   if (result.isNull() || Cond.isInvalid() || LHS.isInvalid() ||
6959       RHS.isInvalid())
6960     return ExprError();
6961 
6962   DiagnoseConditionalPrecedence(*this, QuestionLoc, Cond.get(), LHS.get(),
6963                                 RHS.get());
6964 
6965   CheckBoolLikeConversion(Cond.get(), QuestionLoc);
6966 
6967   if (!commonExpr)
6968     return new (Context)
6969         ConditionalOperator(Cond.get(), QuestionLoc, LHS.get(), ColonLoc,
6970                             RHS.get(), result, VK, OK);
6971 
6972   return new (Context) BinaryConditionalOperator(
6973       commonExpr, opaqueValue, Cond.get(), LHS.get(), RHS.get(), QuestionLoc,
6974       ColonLoc, result, VK, OK);
6975 }
6976 
6977 // checkPointerTypesForAssignment - This is a very tricky routine (despite
6978 // being closely modeled after the C99 spec:-). The odd characteristic of this
6979 // routine is it effectively iqnores the qualifiers on the top level pointee.
6980 // This circumvents the usual type rules specified in 6.2.7p1 & 6.7.5.[1-3].
6981 // FIXME: add a couple examples in this comment.
6982 static Sema::AssignConvertType
6983 checkPointerTypesForAssignment(Sema &S, QualType LHSType, QualType RHSType) {
6984   assert(LHSType.isCanonical() && "LHS not canonicalized!");
6985   assert(RHSType.isCanonical() && "RHS not canonicalized!");
6986 
6987   // get the "pointed to" type (ignoring qualifiers at the top level)
6988   const Type *lhptee, *rhptee;
6989   Qualifiers lhq, rhq;
6990   std::tie(lhptee, lhq) =
6991       cast<PointerType>(LHSType)->getPointeeType().split().asPair();
6992   std::tie(rhptee, rhq) =
6993       cast<PointerType>(RHSType)->getPointeeType().split().asPair();
6994 
6995   Sema::AssignConvertType ConvTy = Sema::Compatible;
6996 
6997   // C99 6.5.16.1p1: This following citation is common to constraints
6998   // 3 & 4 (below). ...and the type *pointed to* by the left has all the
6999   // qualifiers of the type *pointed to* by the right;
7000 
7001   // As a special case, 'non-__weak A *' -> 'non-__weak const *' is okay.
7002   if (lhq.getObjCLifetime() != rhq.getObjCLifetime() &&
7003       lhq.compatiblyIncludesObjCLifetime(rhq)) {
7004     // Ignore lifetime for further calculation.
7005     lhq.removeObjCLifetime();
7006     rhq.removeObjCLifetime();
7007   }
7008 
7009   if (!lhq.compatiblyIncludes(rhq)) {
7010     // Treat address-space mismatches as fatal.  TODO: address subspaces
7011     if (!lhq.isAddressSpaceSupersetOf(rhq))
7012       ConvTy = Sema::IncompatiblePointerDiscardsQualifiers;
7013 
7014     // It's okay to add or remove GC or lifetime qualifiers when converting to
7015     // and from void*.
7016     else if (lhq.withoutObjCGCAttr().withoutObjCLifetime()
7017                         .compatiblyIncludes(
7018                                 rhq.withoutObjCGCAttr().withoutObjCLifetime())
7019              && (lhptee->isVoidType() || rhptee->isVoidType()))
7020       ; // keep old
7021 
7022     // Treat lifetime mismatches as fatal.
7023     else if (lhq.getObjCLifetime() != rhq.getObjCLifetime())
7024       ConvTy = Sema::IncompatiblePointerDiscardsQualifiers;
7025 
7026     // For GCC compatibility, other qualifier mismatches are treated
7027     // as still compatible in C.
7028     else ConvTy = Sema::CompatiblePointerDiscardsQualifiers;
7029   }
7030 
7031   // C99 6.5.16.1p1 (constraint 4): If one operand is a pointer to an object or
7032   // incomplete type and the other is a pointer to a qualified or unqualified
7033   // version of void...
7034   if (lhptee->isVoidType()) {
7035     if (rhptee->isIncompleteOrObjectType())
7036       return ConvTy;
7037 
7038     // As an extension, we allow cast to/from void* to function pointer.
7039     assert(rhptee->isFunctionType());
7040     return Sema::FunctionVoidPointer;
7041   }
7042 
7043   if (rhptee->isVoidType()) {
7044     if (lhptee->isIncompleteOrObjectType())
7045       return ConvTy;
7046 
7047     // As an extension, we allow cast to/from void* to function pointer.
7048     assert(lhptee->isFunctionType());
7049     return Sema::FunctionVoidPointer;
7050   }
7051 
7052   // C99 6.5.16.1p1 (constraint 3): both operands are pointers to qualified or
7053   // unqualified versions of compatible types, ...
7054   QualType ltrans = QualType(lhptee, 0), rtrans = QualType(rhptee, 0);
7055   if (!S.Context.typesAreCompatible(ltrans, rtrans)) {
7056     // Check if the pointee types are compatible ignoring the sign.
7057     // We explicitly check for char so that we catch "char" vs
7058     // "unsigned char" on systems where "char" is unsigned.
7059     if (lhptee->isCharType())
7060       ltrans = S.Context.UnsignedCharTy;
7061     else if (lhptee->hasSignedIntegerRepresentation())
7062       ltrans = S.Context.getCorrespondingUnsignedType(ltrans);
7063 
7064     if (rhptee->isCharType())
7065       rtrans = S.Context.UnsignedCharTy;
7066     else if (rhptee->hasSignedIntegerRepresentation())
7067       rtrans = S.Context.getCorrespondingUnsignedType(rtrans);
7068 
7069     if (ltrans == rtrans) {
7070       // Types are compatible ignoring the sign. Qualifier incompatibility
7071       // takes priority over sign incompatibility because the sign
7072       // warning can be disabled.
7073       if (ConvTy != Sema::Compatible)
7074         return ConvTy;
7075 
7076       return Sema::IncompatiblePointerSign;
7077     }
7078 
7079     // If we are a multi-level pointer, it's possible that our issue is simply
7080     // one of qualification - e.g. char ** -> const char ** is not allowed. If
7081     // the eventual target type is the same and the pointers have the same
7082     // level of indirection, this must be the issue.
7083     if (isa<PointerType>(lhptee) && isa<PointerType>(rhptee)) {
7084       do {
7085         lhptee = cast<PointerType>(lhptee)->getPointeeType().getTypePtr();
7086         rhptee = cast<PointerType>(rhptee)->getPointeeType().getTypePtr();
7087       } while (isa<PointerType>(lhptee) && isa<PointerType>(rhptee));
7088 
7089       if (lhptee == rhptee)
7090         return Sema::IncompatibleNestedPointerQualifiers;
7091     }
7092 
7093     // General pointer incompatibility takes priority over qualifiers.
7094     return Sema::IncompatiblePointer;
7095   }
7096   if (!S.getLangOpts().CPlusPlus &&
7097       S.IsNoReturnConversion(ltrans, rtrans, ltrans))
7098     return Sema::IncompatiblePointer;
7099   return ConvTy;
7100 }
7101 
7102 /// checkBlockPointerTypesForAssignment - This routine determines whether two
7103 /// block pointer types are compatible or whether a block and normal pointer
7104 /// are compatible. It is more restrict than comparing two function pointer
7105 // types.
7106 static Sema::AssignConvertType
7107 checkBlockPointerTypesForAssignment(Sema &S, QualType LHSType,
7108                                     QualType RHSType) {
7109   assert(LHSType.isCanonical() && "LHS not canonicalized!");
7110   assert(RHSType.isCanonical() && "RHS not canonicalized!");
7111 
7112   QualType lhptee, rhptee;
7113 
7114   // get the "pointed to" type (ignoring qualifiers at the top level)
7115   lhptee = cast<BlockPointerType>(LHSType)->getPointeeType();
7116   rhptee = cast<BlockPointerType>(RHSType)->getPointeeType();
7117 
7118   // In C++, the types have to match exactly.
7119   if (S.getLangOpts().CPlusPlus)
7120     return Sema::IncompatibleBlockPointer;
7121 
7122   Sema::AssignConvertType ConvTy = Sema::Compatible;
7123 
7124   // For blocks we enforce that qualifiers are identical.
7125   if (lhptee.getLocalQualifiers() != rhptee.getLocalQualifiers())
7126     ConvTy = Sema::CompatiblePointerDiscardsQualifiers;
7127 
7128   if (!S.Context.typesAreBlockPointerCompatible(LHSType, RHSType))
7129     return Sema::IncompatibleBlockPointer;
7130 
7131   return ConvTy;
7132 }
7133 
7134 /// checkObjCPointerTypesForAssignment - Compares two objective-c pointer types
7135 /// for assignment compatibility.
7136 static Sema::AssignConvertType
7137 checkObjCPointerTypesForAssignment(Sema &S, QualType LHSType,
7138                                    QualType RHSType) {
7139   assert(LHSType.isCanonical() && "LHS was not canonicalized!");
7140   assert(RHSType.isCanonical() && "RHS was not canonicalized!");
7141 
7142   if (LHSType->isObjCBuiltinType()) {
7143     // Class is not compatible with ObjC object pointers.
7144     if (LHSType->isObjCClassType() && !RHSType->isObjCBuiltinType() &&
7145         !RHSType->isObjCQualifiedClassType())
7146       return Sema::IncompatiblePointer;
7147     return Sema::Compatible;
7148   }
7149   if (RHSType->isObjCBuiltinType()) {
7150     if (RHSType->isObjCClassType() && !LHSType->isObjCBuiltinType() &&
7151         !LHSType->isObjCQualifiedClassType())
7152       return Sema::IncompatiblePointer;
7153     return Sema::Compatible;
7154   }
7155   QualType lhptee = LHSType->getAs<ObjCObjectPointerType>()->getPointeeType();
7156   QualType rhptee = RHSType->getAs<ObjCObjectPointerType>()->getPointeeType();
7157 
7158   if (!lhptee.isAtLeastAsQualifiedAs(rhptee) &&
7159       // make an exception for id<P>
7160       !LHSType->isObjCQualifiedIdType())
7161     return Sema::CompatiblePointerDiscardsQualifiers;
7162 
7163   if (S.Context.typesAreCompatible(LHSType, RHSType))
7164     return Sema::Compatible;
7165   if (LHSType->isObjCQualifiedIdType() || RHSType->isObjCQualifiedIdType())
7166     return Sema::IncompatibleObjCQualifiedId;
7167   return Sema::IncompatiblePointer;
7168 }
7169 
7170 Sema::AssignConvertType
7171 Sema::CheckAssignmentConstraints(SourceLocation Loc,
7172                                  QualType LHSType, QualType RHSType) {
7173   // Fake up an opaque expression.  We don't actually care about what
7174   // cast operations are required, so if CheckAssignmentConstraints
7175   // adds casts to this they'll be wasted, but fortunately that doesn't
7176   // usually happen on valid code.
7177   OpaqueValueExpr RHSExpr(Loc, RHSType, VK_RValue);
7178   ExprResult RHSPtr = &RHSExpr;
7179   CastKind K = CK_Invalid;
7180 
7181   return CheckAssignmentConstraints(LHSType, RHSPtr, K, /*ConvertRHS=*/false);
7182 }
7183 
7184 /// CheckAssignmentConstraints (C99 6.5.16) - This routine currently
7185 /// has code to accommodate several GCC extensions when type checking
7186 /// pointers. Here are some objectionable examples that GCC considers warnings:
7187 ///
7188 ///  int a, *pint;
7189 ///  short *pshort;
7190 ///  struct foo *pfoo;
7191 ///
7192 ///  pint = pshort; // warning: assignment from incompatible pointer type
7193 ///  a = pint; // warning: assignment makes integer from pointer without a cast
7194 ///  pint = a; // warning: assignment makes pointer from integer without a cast
7195 ///  pint = pfoo; // warning: assignment from incompatible pointer type
7196 ///
7197 /// As a result, the code for dealing with pointers is more complex than the
7198 /// C99 spec dictates.
7199 ///
7200 /// Sets 'Kind' for any result kind except Incompatible.
7201 Sema::AssignConvertType
7202 Sema::CheckAssignmentConstraints(QualType LHSType, ExprResult &RHS,
7203                                  CastKind &Kind, bool ConvertRHS) {
7204   QualType RHSType = RHS.get()->getType();
7205   QualType OrigLHSType = LHSType;
7206 
7207   // Get canonical types.  We're not formatting these types, just comparing
7208   // them.
7209   LHSType = Context.getCanonicalType(LHSType).getUnqualifiedType();
7210   RHSType = Context.getCanonicalType(RHSType).getUnqualifiedType();
7211 
7212   // Common case: no conversion required.
7213   if (LHSType == RHSType) {
7214     Kind = CK_NoOp;
7215     return Compatible;
7216   }
7217 
7218   // If we have an atomic type, try a non-atomic assignment, then just add an
7219   // atomic qualification step.
7220   if (const AtomicType *AtomicTy = dyn_cast<AtomicType>(LHSType)) {
7221     Sema::AssignConvertType result =
7222       CheckAssignmentConstraints(AtomicTy->getValueType(), RHS, Kind);
7223     if (result != Compatible)
7224       return result;
7225     if (Kind != CK_NoOp && ConvertRHS)
7226       RHS = ImpCastExprToType(RHS.get(), AtomicTy->getValueType(), Kind);
7227     Kind = CK_NonAtomicToAtomic;
7228     return Compatible;
7229   }
7230 
7231   // If the left-hand side is a reference type, then we are in a
7232   // (rare!) case where we've allowed the use of references in C,
7233   // e.g., as a parameter type in a built-in function. In this case,
7234   // just make sure that the type referenced is compatible with the
7235   // right-hand side type. The caller is responsible for adjusting
7236   // LHSType so that the resulting expression does not have reference
7237   // type.
7238   if (const ReferenceType *LHSTypeRef = LHSType->getAs<ReferenceType>()) {
7239     if (Context.typesAreCompatible(LHSTypeRef->getPointeeType(), RHSType)) {
7240       Kind = CK_LValueBitCast;
7241       return Compatible;
7242     }
7243     return Incompatible;
7244   }
7245 
7246   // Allow scalar to ExtVector assignments, and assignments of an ExtVector type
7247   // to the same ExtVector type.
7248   if (LHSType->isExtVectorType()) {
7249     if (RHSType->isExtVectorType())
7250       return Incompatible;
7251     if (RHSType->isArithmeticType()) {
7252       // CK_VectorSplat does T -> vector T, so first cast to the element type.
7253       if (ConvertRHS)
7254         RHS = prepareVectorSplat(LHSType, RHS.get());
7255       Kind = CK_VectorSplat;
7256       return Compatible;
7257     }
7258   }
7259 
7260   // Conversions to or from vector type.
7261   if (LHSType->isVectorType() || RHSType->isVectorType()) {
7262     if (LHSType->isVectorType() && RHSType->isVectorType()) {
7263       // Allow assignments of an AltiVec vector type to an equivalent GCC
7264       // vector type and vice versa
7265       if (Context.areCompatibleVectorTypes(LHSType, RHSType)) {
7266         Kind = CK_BitCast;
7267         return Compatible;
7268       }
7269 
7270       // If we are allowing lax vector conversions, and LHS and RHS are both
7271       // vectors, the total size only needs to be the same. This is a bitcast;
7272       // no bits are changed but the result type is different.
7273       if (isLaxVectorConversion(RHSType, LHSType)) {
7274         Kind = CK_BitCast;
7275         return IncompatibleVectors;
7276       }
7277     }
7278     return Incompatible;
7279   }
7280 
7281   // Arithmetic conversions.
7282   if (LHSType->isArithmeticType() && RHSType->isArithmeticType() &&
7283       !(getLangOpts().CPlusPlus && LHSType->isEnumeralType())) {
7284     if (ConvertRHS)
7285       Kind = PrepareScalarCast(RHS, LHSType);
7286     return Compatible;
7287   }
7288 
7289   // Conversions to normal pointers.
7290   if (const PointerType *LHSPointer = dyn_cast<PointerType>(LHSType)) {
7291     // U* -> T*
7292     if (isa<PointerType>(RHSType)) {
7293       unsigned AddrSpaceL = LHSPointer->getPointeeType().getAddressSpace();
7294       unsigned AddrSpaceR = RHSType->getPointeeType().getAddressSpace();
7295       Kind = AddrSpaceL != AddrSpaceR ? CK_AddressSpaceConversion : CK_BitCast;
7296       return checkPointerTypesForAssignment(*this, LHSType, RHSType);
7297     }
7298 
7299     // int -> T*
7300     if (RHSType->isIntegerType()) {
7301       Kind = CK_IntegralToPointer; // FIXME: null?
7302       return IntToPointer;
7303     }
7304 
7305     // C pointers are not compatible with ObjC object pointers,
7306     // with two exceptions:
7307     if (isa<ObjCObjectPointerType>(RHSType)) {
7308       //  - conversions to void*
7309       if (LHSPointer->getPointeeType()->isVoidType()) {
7310         Kind = CK_BitCast;
7311         return Compatible;
7312       }
7313 
7314       //  - conversions from 'Class' to the redefinition type
7315       if (RHSType->isObjCClassType() &&
7316           Context.hasSameType(LHSType,
7317                               Context.getObjCClassRedefinitionType())) {
7318         Kind = CK_BitCast;
7319         return Compatible;
7320       }
7321 
7322       Kind = CK_BitCast;
7323       return IncompatiblePointer;
7324     }
7325 
7326     // U^ -> void*
7327     if (RHSType->getAs<BlockPointerType>()) {
7328       if (LHSPointer->getPointeeType()->isVoidType()) {
7329         Kind = CK_BitCast;
7330         return Compatible;
7331       }
7332     }
7333 
7334     return Incompatible;
7335   }
7336 
7337   // Conversions to block pointers.
7338   if (isa<BlockPointerType>(LHSType)) {
7339     // U^ -> T^
7340     if (RHSType->isBlockPointerType()) {
7341       Kind = CK_BitCast;
7342       return checkBlockPointerTypesForAssignment(*this, LHSType, RHSType);
7343     }
7344 
7345     // int or null -> T^
7346     if (RHSType->isIntegerType()) {
7347       Kind = CK_IntegralToPointer; // FIXME: null
7348       return IntToBlockPointer;
7349     }
7350 
7351     // id -> T^
7352     if (getLangOpts().ObjC1 && RHSType->isObjCIdType()) {
7353       Kind = CK_AnyPointerToBlockPointerCast;
7354       return Compatible;
7355     }
7356 
7357     // void* -> T^
7358     if (const PointerType *RHSPT = RHSType->getAs<PointerType>())
7359       if (RHSPT->getPointeeType()->isVoidType()) {
7360         Kind = CK_AnyPointerToBlockPointerCast;
7361         return Compatible;
7362       }
7363 
7364     return Incompatible;
7365   }
7366 
7367   // Conversions to Objective-C pointers.
7368   if (isa<ObjCObjectPointerType>(LHSType)) {
7369     // A* -> B*
7370     if (RHSType->isObjCObjectPointerType()) {
7371       Kind = CK_BitCast;
7372       Sema::AssignConvertType result =
7373         checkObjCPointerTypesForAssignment(*this, LHSType, RHSType);
7374       if (getLangOpts().ObjCAutoRefCount &&
7375           result == Compatible &&
7376           !CheckObjCARCUnavailableWeakConversion(OrigLHSType, RHSType))
7377         result = IncompatibleObjCWeakRef;
7378       return result;
7379     }
7380 
7381     // int or null -> A*
7382     if (RHSType->isIntegerType()) {
7383       Kind = CK_IntegralToPointer; // FIXME: null
7384       return IntToPointer;
7385     }
7386 
7387     // In general, C pointers are not compatible with ObjC object pointers,
7388     // with two exceptions:
7389     if (isa<PointerType>(RHSType)) {
7390       Kind = CK_CPointerToObjCPointerCast;
7391 
7392       //  - conversions from 'void*'
7393       if (RHSType->isVoidPointerType()) {
7394         return Compatible;
7395       }
7396 
7397       //  - conversions to 'Class' from its redefinition type
7398       if (LHSType->isObjCClassType() &&
7399           Context.hasSameType(RHSType,
7400                               Context.getObjCClassRedefinitionType())) {
7401         return Compatible;
7402       }
7403 
7404       return IncompatiblePointer;
7405     }
7406 
7407     // Only under strict condition T^ is compatible with an Objective-C pointer.
7408     if (RHSType->isBlockPointerType() &&
7409         LHSType->isBlockCompatibleObjCPointerType(Context)) {
7410       if (ConvertRHS)
7411         maybeExtendBlockObject(RHS);
7412       Kind = CK_BlockPointerToObjCPointerCast;
7413       return Compatible;
7414     }
7415 
7416     return Incompatible;
7417   }
7418 
7419   // Conversions from pointers that are not covered by the above.
7420   if (isa<PointerType>(RHSType)) {
7421     // T* -> _Bool
7422     if (LHSType == Context.BoolTy) {
7423       Kind = CK_PointerToBoolean;
7424       return Compatible;
7425     }
7426 
7427     // T* -> int
7428     if (LHSType->isIntegerType()) {
7429       Kind = CK_PointerToIntegral;
7430       return PointerToInt;
7431     }
7432 
7433     return Incompatible;
7434   }
7435 
7436   // Conversions from Objective-C pointers that are not covered by the above.
7437   if (isa<ObjCObjectPointerType>(RHSType)) {
7438     // T* -> _Bool
7439     if (LHSType == Context.BoolTy) {
7440       Kind = CK_PointerToBoolean;
7441       return Compatible;
7442     }
7443 
7444     // T* -> int
7445     if (LHSType->isIntegerType()) {
7446       Kind = CK_PointerToIntegral;
7447       return PointerToInt;
7448     }
7449 
7450     return Incompatible;
7451   }
7452 
7453   // struct A -> struct B
7454   if (isa<TagType>(LHSType) && isa<TagType>(RHSType)) {
7455     if (Context.typesAreCompatible(LHSType, RHSType)) {
7456       Kind = CK_NoOp;
7457       return Compatible;
7458     }
7459   }
7460 
7461   return Incompatible;
7462 }
7463 
7464 /// \brief Constructs a transparent union from an expression that is
7465 /// used to initialize the transparent union.
7466 static void ConstructTransparentUnion(Sema &S, ASTContext &C,
7467                                       ExprResult &EResult, QualType UnionType,
7468                                       FieldDecl *Field) {
7469   // Build an initializer list that designates the appropriate member
7470   // of the transparent union.
7471   Expr *E = EResult.get();
7472   InitListExpr *Initializer = new (C) InitListExpr(C, SourceLocation(),
7473                                                    E, SourceLocation());
7474   Initializer->setType(UnionType);
7475   Initializer->setInitializedFieldInUnion(Field);
7476 
7477   // Build a compound literal constructing a value of the transparent
7478   // union type from this initializer list.
7479   TypeSourceInfo *unionTInfo = C.getTrivialTypeSourceInfo(UnionType);
7480   EResult = new (C) CompoundLiteralExpr(SourceLocation(), unionTInfo, UnionType,
7481                                         VK_RValue, Initializer, false);
7482 }
7483 
7484 Sema::AssignConvertType
7485 Sema::CheckTransparentUnionArgumentConstraints(QualType ArgType,
7486                                                ExprResult &RHS) {
7487   QualType RHSType = RHS.get()->getType();
7488 
7489   // If the ArgType is a Union type, we want to handle a potential
7490   // transparent_union GCC extension.
7491   const RecordType *UT = ArgType->getAsUnionType();
7492   if (!UT || !UT->getDecl()->hasAttr<TransparentUnionAttr>())
7493     return Incompatible;
7494 
7495   // The field to initialize within the transparent union.
7496   RecordDecl *UD = UT->getDecl();
7497   FieldDecl *InitField = nullptr;
7498   // It's compatible if the expression matches any of the fields.
7499   for (auto *it : UD->fields()) {
7500     if (it->getType()->isPointerType()) {
7501       // If the transparent union contains a pointer type, we allow:
7502       // 1) void pointer
7503       // 2) null pointer constant
7504       if (RHSType->isPointerType())
7505         if (RHSType->castAs<PointerType>()->getPointeeType()->isVoidType()) {
7506           RHS = ImpCastExprToType(RHS.get(), it->getType(), CK_BitCast);
7507           InitField = it;
7508           break;
7509         }
7510 
7511       if (RHS.get()->isNullPointerConstant(Context,
7512                                            Expr::NPC_ValueDependentIsNull)) {
7513         RHS = ImpCastExprToType(RHS.get(), it->getType(),
7514                                 CK_NullToPointer);
7515         InitField = it;
7516         break;
7517       }
7518     }
7519 
7520     CastKind Kind = CK_Invalid;
7521     if (CheckAssignmentConstraints(it->getType(), RHS, Kind)
7522           == Compatible) {
7523       RHS = ImpCastExprToType(RHS.get(), it->getType(), Kind);
7524       InitField = it;
7525       break;
7526     }
7527   }
7528 
7529   if (!InitField)
7530     return Incompatible;
7531 
7532   ConstructTransparentUnion(*this, Context, RHS, ArgType, InitField);
7533   return Compatible;
7534 }
7535 
7536 Sema::AssignConvertType
7537 Sema::CheckSingleAssignmentConstraints(QualType LHSType, ExprResult &CallerRHS,
7538                                        bool Diagnose,
7539                                        bool DiagnoseCFAudited,
7540                                        bool ConvertRHS) {
7541   // If ConvertRHS is false, we want to leave the caller's RHS untouched. Sadly,
7542   // we can't avoid *all* modifications at the moment, so we need some somewhere
7543   // to put the updated value.
7544   ExprResult LocalRHS = CallerRHS;
7545   ExprResult &RHS = ConvertRHS ? CallerRHS : LocalRHS;
7546 
7547   if (getLangOpts().CPlusPlus) {
7548     if (!LHSType->isRecordType() && !LHSType->isAtomicType()) {
7549       // C++ 5.17p3: If the left operand is not of class type, the
7550       // expression is implicitly converted (C++ 4) to the
7551       // cv-unqualified type of the left operand.
7552       ExprResult Res;
7553       if (Diagnose) {
7554         Res = PerformImplicitConversion(RHS.get(), LHSType.getUnqualifiedType(),
7555                                         AA_Assigning);
7556       } else {
7557         ImplicitConversionSequence ICS =
7558             TryImplicitConversion(RHS.get(), LHSType.getUnqualifiedType(),
7559                                   /*SuppressUserConversions=*/false,
7560                                   /*AllowExplicit=*/false,
7561                                   /*InOverloadResolution=*/false,
7562                                   /*CStyle=*/false,
7563                                   /*AllowObjCWritebackConversion=*/false);
7564         if (ICS.isFailure())
7565           return Incompatible;
7566         Res = PerformImplicitConversion(RHS.get(), LHSType.getUnqualifiedType(),
7567                                         ICS, AA_Assigning);
7568       }
7569       if (Res.isInvalid())
7570         return Incompatible;
7571       Sema::AssignConvertType result = Compatible;
7572       if (getLangOpts().ObjCAutoRefCount &&
7573           !CheckObjCARCUnavailableWeakConversion(LHSType,
7574                                                  RHS.get()->getType()))
7575         result = IncompatibleObjCWeakRef;
7576       RHS = Res;
7577       return result;
7578     }
7579 
7580     // FIXME: Currently, we fall through and treat C++ classes like C
7581     // structures.
7582     // FIXME: We also fall through for atomics; not sure what should
7583     // happen there, though.
7584   } else if (RHS.get()->getType() == Context.OverloadTy) {
7585     // As a set of extensions to C, we support overloading on functions. These
7586     // functions need to be resolved here.
7587     DeclAccessPair DAP;
7588     if (FunctionDecl *FD = ResolveAddressOfOverloadedFunction(
7589             RHS.get(), LHSType, /*Complain=*/false, DAP))
7590       RHS = FixOverloadedFunctionReference(RHS.get(), DAP, FD);
7591     else
7592       return Incompatible;
7593   }
7594 
7595   // C99 6.5.16.1p1: the left operand is a pointer and the right is
7596   // a null pointer constant.
7597   if ((LHSType->isPointerType() || LHSType->isObjCObjectPointerType() ||
7598        LHSType->isBlockPointerType()) &&
7599       RHS.get()->isNullPointerConstant(Context,
7600                                        Expr::NPC_ValueDependentIsNull)) {
7601     if (Diagnose || ConvertRHS) {
7602       CastKind Kind;
7603       CXXCastPath Path;
7604       CheckPointerConversion(RHS.get(), LHSType, Kind, Path,
7605                              /*IgnoreBaseAccess=*/false, Diagnose);
7606       if (ConvertRHS)
7607         RHS = ImpCastExprToType(RHS.get(), LHSType, Kind, VK_RValue, &Path);
7608     }
7609     return Compatible;
7610   }
7611 
7612   // This check seems unnatural, however it is necessary to ensure the proper
7613   // conversion of functions/arrays. If the conversion were done for all
7614   // DeclExpr's (created by ActOnIdExpression), it would mess up the unary
7615   // expressions that suppress this implicit conversion (&, sizeof).
7616   //
7617   // Suppress this for references: C++ 8.5.3p5.
7618   if (!LHSType->isReferenceType()) {
7619     // FIXME: We potentially allocate here even if ConvertRHS is false.
7620     RHS = DefaultFunctionArrayLvalueConversion(RHS.get(), Diagnose);
7621     if (RHS.isInvalid())
7622       return Incompatible;
7623   }
7624 
7625   Expr *PRE = RHS.get()->IgnoreParenCasts();
7626   if (Diagnose && isa<ObjCProtocolExpr>(PRE)) {
7627     ObjCProtocolDecl *PDecl = cast<ObjCProtocolExpr>(PRE)->getProtocol();
7628     if (PDecl && !PDecl->hasDefinition()) {
7629       Diag(PRE->getExprLoc(), diag::warn_atprotocol_protocol) << PDecl->getName();
7630       Diag(PDecl->getLocation(), diag::note_entity_declared_at) << PDecl;
7631     }
7632   }
7633 
7634   CastKind Kind = CK_Invalid;
7635   Sema::AssignConvertType result =
7636     CheckAssignmentConstraints(LHSType, RHS, Kind, ConvertRHS);
7637 
7638   // C99 6.5.16.1p2: The value of the right operand is converted to the
7639   // type of the assignment expression.
7640   // CheckAssignmentConstraints allows the left-hand side to be a reference,
7641   // so that we can use references in built-in functions even in C.
7642   // The getNonReferenceType() call makes sure that the resulting expression
7643   // does not have reference type.
7644   if (result != Incompatible && RHS.get()->getType() != LHSType) {
7645     QualType Ty = LHSType.getNonLValueExprType(Context);
7646     Expr *E = RHS.get();
7647 
7648     // Check for various Objective-C errors. If we are not reporting
7649     // diagnostics and just checking for errors, e.g., during overload
7650     // resolution, return Incompatible to indicate the failure.
7651     if (getLangOpts().ObjCAutoRefCount &&
7652         CheckObjCARCConversion(SourceRange(), Ty, E, CCK_ImplicitConversion,
7653                                Diagnose, DiagnoseCFAudited) != ACR_okay) {
7654       if (!Diagnose)
7655         return Incompatible;
7656     }
7657     if (getLangOpts().ObjC1 &&
7658         (CheckObjCBridgeRelatedConversions(E->getLocStart(), LHSType,
7659                                            E->getType(), E, Diagnose) ||
7660          ConversionToObjCStringLiteralCheck(LHSType, E, Diagnose))) {
7661       if (!Diagnose)
7662         return Incompatible;
7663       // Replace the expression with a corrected version and continue so we
7664       // can find further errors.
7665       RHS = E;
7666       return Compatible;
7667     }
7668 
7669     if (ConvertRHS)
7670       RHS = ImpCastExprToType(E, Ty, Kind);
7671   }
7672   return result;
7673 }
7674 
7675 QualType Sema::InvalidOperands(SourceLocation Loc, ExprResult &LHS,
7676                                ExprResult &RHS) {
7677   Diag(Loc, diag::err_typecheck_invalid_operands)
7678     << LHS.get()->getType() << RHS.get()->getType()
7679     << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
7680   return QualType();
7681 }
7682 
7683 /// Try to convert a value of non-vector type to a vector type by converting
7684 /// the type to the element type of the vector and then performing a splat.
7685 /// If the language is OpenCL, we only use conversions that promote scalar
7686 /// rank; for C, Obj-C, and C++ we allow any real scalar conversion except
7687 /// for float->int.
7688 ///
7689 /// \param scalar - if non-null, actually perform the conversions
7690 /// \return true if the operation fails (but without diagnosing the failure)
7691 static bool tryVectorConvertAndSplat(Sema &S, ExprResult *scalar,
7692                                      QualType scalarTy,
7693                                      QualType vectorEltTy,
7694                                      QualType vectorTy) {
7695   // The conversion to apply to the scalar before splatting it,
7696   // if necessary.
7697   CastKind scalarCast = CK_Invalid;
7698 
7699   if (vectorEltTy->isIntegralType(S.Context)) {
7700     if (!scalarTy->isIntegralType(S.Context))
7701       return true;
7702     if (S.getLangOpts().OpenCL &&
7703         S.Context.getIntegerTypeOrder(vectorEltTy, scalarTy) < 0)
7704       return true;
7705     scalarCast = CK_IntegralCast;
7706   } else if (vectorEltTy->isRealFloatingType()) {
7707     if (scalarTy->isRealFloatingType()) {
7708       if (S.getLangOpts().OpenCL &&
7709           S.Context.getFloatingTypeOrder(vectorEltTy, scalarTy) < 0)
7710         return true;
7711       scalarCast = CK_FloatingCast;
7712     }
7713     else if (scalarTy->isIntegralType(S.Context))
7714       scalarCast = CK_IntegralToFloating;
7715     else
7716       return true;
7717   } else {
7718     return true;
7719   }
7720 
7721   // Adjust scalar if desired.
7722   if (scalar) {
7723     if (scalarCast != CK_Invalid)
7724       *scalar = S.ImpCastExprToType(scalar->get(), vectorEltTy, scalarCast);
7725     *scalar = S.ImpCastExprToType(scalar->get(), vectorTy, CK_VectorSplat);
7726   }
7727   return false;
7728 }
7729 
7730 QualType Sema::CheckVectorOperands(ExprResult &LHS, ExprResult &RHS,
7731                                    SourceLocation Loc, bool IsCompAssign,
7732                                    bool AllowBothBool,
7733                                    bool AllowBoolConversions) {
7734   if (!IsCompAssign) {
7735     LHS = DefaultFunctionArrayLvalueConversion(LHS.get());
7736     if (LHS.isInvalid())
7737       return QualType();
7738   }
7739   RHS = DefaultFunctionArrayLvalueConversion(RHS.get());
7740   if (RHS.isInvalid())
7741     return QualType();
7742 
7743   // For conversion purposes, we ignore any qualifiers.
7744   // For example, "const float" and "float" are equivalent.
7745   QualType LHSType = LHS.get()->getType().getUnqualifiedType();
7746   QualType RHSType = RHS.get()->getType().getUnqualifiedType();
7747 
7748   const VectorType *LHSVecType = LHSType->getAs<VectorType>();
7749   const VectorType *RHSVecType = RHSType->getAs<VectorType>();
7750   assert(LHSVecType || RHSVecType);
7751 
7752   // AltiVec-style "vector bool op vector bool" combinations are allowed
7753   // for some operators but not others.
7754   if (!AllowBothBool &&
7755       LHSVecType && LHSVecType->getVectorKind() == VectorType::AltiVecBool &&
7756       RHSVecType && RHSVecType->getVectorKind() == VectorType::AltiVecBool)
7757     return InvalidOperands(Loc, LHS, RHS);
7758 
7759   // If the vector types are identical, return.
7760   if (Context.hasSameType(LHSType, RHSType))
7761     return LHSType;
7762 
7763   // If we have compatible AltiVec and GCC vector types, use the AltiVec type.
7764   if (LHSVecType && RHSVecType &&
7765       Context.areCompatibleVectorTypes(LHSType, RHSType)) {
7766     if (isa<ExtVectorType>(LHSVecType)) {
7767       RHS = ImpCastExprToType(RHS.get(), LHSType, CK_BitCast);
7768       return LHSType;
7769     }
7770 
7771     if (!IsCompAssign)
7772       LHS = ImpCastExprToType(LHS.get(), RHSType, CK_BitCast);
7773     return RHSType;
7774   }
7775 
7776   // AllowBoolConversions says that bool and non-bool AltiVec vectors
7777   // can be mixed, with the result being the non-bool type.  The non-bool
7778   // operand must have integer element type.
7779   if (AllowBoolConversions && LHSVecType && RHSVecType &&
7780       LHSVecType->getNumElements() == RHSVecType->getNumElements() &&
7781       (Context.getTypeSize(LHSVecType->getElementType()) ==
7782        Context.getTypeSize(RHSVecType->getElementType()))) {
7783     if (LHSVecType->getVectorKind() == VectorType::AltiVecVector &&
7784         LHSVecType->getElementType()->isIntegerType() &&
7785         RHSVecType->getVectorKind() == VectorType::AltiVecBool) {
7786       RHS = ImpCastExprToType(RHS.get(), LHSType, CK_BitCast);
7787       return LHSType;
7788     }
7789     if (!IsCompAssign &&
7790         LHSVecType->getVectorKind() == VectorType::AltiVecBool &&
7791         RHSVecType->getVectorKind() == VectorType::AltiVecVector &&
7792         RHSVecType->getElementType()->isIntegerType()) {
7793       LHS = ImpCastExprToType(LHS.get(), RHSType, CK_BitCast);
7794       return RHSType;
7795     }
7796   }
7797 
7798   // If there's an ext-vector type and a scalar, try to convert the scalar to
7799   // the vector element type and splat.
7800   if (!RHSVecType && isa<ExtVectorType>(LHSVecType)) {
7801     if (!tryVectorConvertAndSplat(*this, &RHS, RHSType,
7802                                   LHSVecType->getElementType(), LHSType))
7803       return LHSType;
7804   }
7805   if (!LHSVecType && isa<ExtVectorType>(RHSVecType)) {
7806     if (!tryVectorConvertAndSplat(*this, (IsCompAssign ? nullptr : &LHS),
7807                                   LHSType, RHSVecType->getElementType(),
7808                                   RHSType))
7809       return RHSType;
7810   }
7811 
7812   // If we're allowing lax vector conversions, only the total (data) size
7813   // needs to be the same.
7814   // FIXME: Should we really be allowing this?
7815   // FIXME: We really just pick the LHS type arbitrarily?
7816   if (isLaxVectorConversion(RHSType, LHSType)) {
7817     QualType resultType = LHSType;
7818     RHS = ImpCastExprToType(RHS.get(), resultType, CK_BitCast);
7819     return resultType;
7820   }
7821 
7822   // Okay, the expression is invalid.
7823 
7824   // If there's a non-vector, non-real operand, diagnose that.
7825   if ((!RHSVecType && !RHSType->isRealType()) ||
7826       (!LHSVecType && !LHSType->isRealType())) {
7827     Diag(Loc, diag::err_typecheck_vector_not_convertable_non_scalar)
7828       << LHSType << RHSType
7829       << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
7830     return QualType();
7831   }
7832 
7833   // OpenCL V1.1 6.2.6.p1:
7834   // If the operands are of more than one vector type, then an error shall
7835   // occur. Implicit conversions between vector types are not permitted, per
7836   // section 6.2.1.
7837   if (getLangOpts().OpenCL &&
7838       RHSVecType && isa<ExtVectorType>(RHSVecType) &&
7839       LHSVecType && isa<ExtVectorType>(LHSVecType)) {
7840     Diag(Loc, diag::err_opencl_implicit_vector_conversion) << LHSType
7841                                                            << RHSType;
7842     return QualType();
7843   }
7844 
7845   // Otherwise, use the generic diagnostic.
7846   Diag(Loc, diag::err_typecheck_vector_not_convertable)
7847     << LHSType << RHSType
7848     << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
7849   return QualType();
7850 }
7851 
7852 // checkArithmeticNull - Detect when a NULL constant is used improperly in an
7853 // expression.  These are mainly cases where the null pointer is used as an
7854 // integer instead of a pointer.
7855 static void checkArithmeticNull(Sema &S, ExprResult &LHS, ExprResult &RHS,
7856                                 SourceLocation Loc, bool IsCompare) {
7857   // The canonical way to check for a GNU null is with isNullPointerConstant,
7858   // but we use a bit of a hack here for speed; this is a relatively
7859   // hot path, and isNullPointerConstant is slow.
7860   bool LHSNull = isa<GNUNullExpr>(LHS.get()->IgnoreParenImpCasts());
7861   bool RHSNull = isa<GNUNullExpr>(RHS.get()->IgnoreParenImpCasts());
7862 
7863   QualType NonNullType = LHSNull ? RHS.get()->getType() : LHS.get()->getType();
7864 
7865   // Avoid analyzing cases where the result will either be invalid (and
7866   // diagnosed as such) or entirely valid and not something to warn about.
7867   if ((!LHSNull && !RHSNull) || NonNullType->isBlockPointerType() ||
7868       NonNullType->isMemberPointerType() || NonNullType->isFunctionType())
7869     return;
7870 
7871   // Comparison operations would not make sense with a null pointer no matter
7872   // what the other expression is.
7873   if (!IsCompare) {
7874     S.Diag(Loc, diag::warn_null_in_arithmetic_operation)
7875         << (LHSNull ? LHS.get()->getSourceRange() : SourceRange())
7876         << (RHSNull ? RHS.get()->getSourceRange() : SourceRange());
7877     return;
7878   }
7879 
7880   // The rest of the operations only make sense with a null pointer
7881   // if the other expression is a pointer.
7882   if (LHSNull == RHSNull || NonNullType->isAnyPointerType() ||
7883       NonNullType->canDecayToPointerType())
7884     return;
7885 
7886   S.Diag(Loc, diag::warn_null_in_comparison_operation)
7887       << LHSNull /* LHS is NULL */ << NonNullType
7888       << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
7889 }
7890 
7891 static void DiagnoseBadDivideOrRemainderValues(Sema& S, ExprResult &LHS,
7892                                                ExprResult &RHS,
7893                                                SourceLocation Loc, bool IsDiv) {
7894   // Check for division/remainder by zero.
7895   llvm::APSInt RHSValue;
7896   if (!RHS.get()->isValueDependent() &&
7897       RHS.get()->EvaluateAsInt(RHSValue, S.Context) && RHSValue == 0)
7898     S.DiagRuntimeBehavior(Loc, RHS.get(),
7899                           S.PDiag(diag::warn_remainder_division_by_zero)
7900                             << IsDiv << RHS.get()->getSourceRange());
7901 }
7902 
7903 QualType Sema::CheckMultiplyDivideOperands(ExprResult &LHS, ExprResult &RHS,
7904                                            SourceLocation Loc,
7905                                            bool IsCompAssign, bool IsDiv) {
7906   checkArithmeticNull(*this, LHS, RHS, Loc, /*isCompare=*/false);
7907 
7908   if (LHS.get()->getType()->isVectorType() ||
7909       RHS.get()->getType()->isVectorType())
7910     return CheckVectorOperands(LHS, RHS, Loc, IsCompAssign,
7911                                /*AllowBothBool*/getLangOpts().AltiVec,
7912                                /*AllowBoolConversions*/false);
7913 
7914   QualType compType = UsualArithmeticConversions(LHS, RHS, IsCompAssign);
7915   if (LHS.isInvalid() || RHS.isInvalid())
7916     return QualType();
7917 
7918 
7919   if (compType.isNull() || !compType->isArithmeticType())
7920     return InvalidOperands(Loc, LHS, RHS);
7921   if (IsDiv)
7922     DiagnoseBadDivideOrRemainderValues(*this, LHS, RHS, Loc, IsDiv);
7923   return compType;
7924 }
7925 
7926 QualType Sema::CheckRemainderOperands(
7927   ExprResult &LHS, ExprResult &RHS, SourceLocation Loc, bool IsCompAssign) {
7928   checkArithmeticNull(*this, LHS, RHS, Loc, /*isCompare=*/false);
7929 
7930   if (LHS.get()->getType()->isVectorType() ||
7931       RHS.get()->getType()->isVectorType()) {
7932     if (LHS.get()->getType()->hasIntegerRepresentation() &&
7933         RHS.get()->getType()->hasIntegerRepresentation())
7934       return CheckVectorOperands(LHS, RHS, Loc, IsCompAssign,
7935                                  /*AllowBothBool*/getLangOpts().AltiVec,
7936                                  /*AllowBoolConversions*/false);
7937     return InvalidOperands(Loc, LHS, RHS);
7938   }
7939 
7940   QualType compType = UsualArithmeticConversions(LHS, RHS, IsCompAssign);
7941   if (LHS.isInvalid() || RHS.isInvalid())
7942     return QualType();
7943 
7944   if (compType.isNull() || !compType->isIntegerType())
7945     return InvalidOperands(Loc, LHS, RHS);
7946   DiagnoseBadDivideOrRemainderValues(*this, LHS, RHS, Loc, false /* IsDiv */);
7947   return compType;
7948 }
7949 
7950 /// \brief Diagnose invalid arithmetic on two void pointers.
7951 static void diagnoseArithmeticOnTwoVoidPointers(Sema &S, SourceLocation Loc,
7952                                                 Expr *LHSExpr, Expr *RHSExpr) {
7953   S.Diag(Loc, S.getLangOpts().CPlusPlus
7954                 ? diag::err_typecheck_pointer_arith_void_type
7955                 : diag::ext_gnu_void_ptr)
7956     << 1 /* two pointers */ << LHSExpr->getSourceRange()
7957                             << RHSExpr->getSourceRange();
7958 }
7959 
7960 /// \brief Diagnose invalid arithmetic on a void pointer.
7961 static void diagnoseArithmeticOnVoidPointer(Sema &S, SourceLocation Loc,
7962                                             Expr *Pointer) {
7963   S.Diag(Loc, S.getLangOpts().CPlusPlus
7964                 ? diag::err_typecheck_pointer_arith_void_type
7965                 : diag::ext_gnu_void_ptr)
7966     << 0 /* one pointer */ << Pointer->getSourceRange();
7967 }
7968 
7969 /// \brief Diagnose invalid arithmetic on two function pointers.
7970 static void diagnoseArithmeticOnTwoFunctionPointers(Sema &S, SourceLocation Loc,
7971                                                     Expr *LHS, Expr *RHS) {
7972   assert(LHS->getType()->isAnyPointerType());
7973   assert(RHS->getType()->isAnyPointerType());
7974   S.Diag(Loc, S.getLangOpts().CPlusPlus
7975                 ? diag::err_typecheck_pointer_arith_function_type
7976                 : diag::ext_gnu_ptr_func_arith)
7977     << 1 /* two pointers */ << LHS->getType()->getPointeeType()
7978     // We only show the second type if it differs from the first.
7979     << (unsigned)!S.Context.hasSameUnqualifiedType(LHS->getType(),
7980                                                    RHS->getType())
7981     << RHS->getType()->getPointeeType()
7982     << LHS->getSourceRange() << RHS->getSourceRange();
7983 }
7984 
7985 /// \brief Diagnose invalid arithmetic on a function pointer.
7986 static void diagnoseArithmeticOnFunctionPointer(Sema &S, SourceLocation Loc,
7987                                                 Expr *Pointer) {
7988   assert(Pointer->getType()->isAnyPointerType());
7989   S.Diag(Loc, S.getLangOpts().CPlusPlus
7990                 ? diag::err_typecheck_pointer_arith_function_type
7991                 : diag::ext_gnu_ptr_func_arith)
7992     << 0 /* one pointer */ << Pointer->getType()->getPointeeType()
7993     << 0 /* one pointer, so only one type */
7994     << Pointer->getSourceRange();
7995 }
7996 
7997 /// \brief Emit error if Operand is incomplete pointer type
7998 ///
7999 /// \returns True if pointer has incomplete type
8000 static bool checkArithmeticIncompletePointerType(Sema &S, SourceLocation Loc,
8001                                                  Expr *Operand) {
8002   QualType ResType = Operand->getType();
8003   if (const AtomicType *ResAtomicType = ResType->getAs<AtomicType>())
8004     ResType = ResAtomicType->getValueType();
8005 
8006   assert(ResType->isAnyPointerType() && !ResType->isDependentType());
8007   QualType PointeeTy = ResType->getPointeeType();
8008   return S.RequireCompleteType(Loc, PointeeTy,
8009                                diag::err_typecheck_arithmetic_incomplete_type,
8010                                PointeeTy, Operand->getSourceRange());
8011 }
8012 
8013 /// \brief Check the validity of an arithmetic pointer operand.
8014 ///
8015 /// If the operand has pointer type, this code will check for pointer types
8016 /// which are invalid in arithmetic operations. These will be diagnosed
8017 /// appropriately, including whether or not the use is supported as an
8018 /// extension.
8019 ///
8020 /// \returns True when the operand is valid to use (even if as an extension).
8021 static bool checkArithmeticOpPointerOperand(Sema &S, SourceLocation Loc,
8022                                             Expr *Operand) {
8023   QualType ResType = Operand->getType();
8024   if (const AtomicType *ResAtomicType = ResType->getAs<AtomicType>())
8025     ResType = ResAtomicType->getValueType();
8026 
8027   if (!ResType->isAnyPointerType()) return true;
8028 
8029   QualType PointeeTy = ResType->getPointeeType();
8030   if (PointeeTy->isVoidType()) {
8031     diagnoseArithmeticOnVoidPointer(S, Loc, Operand);
8032     return !S.getLangOpts().CPlusPlus;
8033   }
8034   if (PointeeTy->isFunctionType()) {
8035     diagnoseArithmeticOnFunctionPointer(S, Loc, Operand);
8036     return !S.getLangOpts().CPlusPlus;
8037   }
8038 
8039   if (checkArithmeticIncompletePointerType(S, Loc, Operand)) return false;
8040 
8041   return true;
8042 }
8043 
8044 /// \brief Check the validity of a binary arithmetic operation w.r.t. pointer
8045 /// operands.
8046 ///
8047 /// This routine will diagnose any invalid arithmetic on pointer operands much
8048 /// like \see checkArithmeticOpPointerOperand. However, it has special logic
8049 /// for emitting a single diagnostic even for operations where both LHS and RHS
8050 /// are (potentially problematic) pointers.
8051 ///
8052 /// \returns True when the operand is valid to use (even if as an extension).
8053 static bool checkArithmeticBinOpPointerOperands(Sema &S, SourceLocation Loc,
8054                                                 Expr *LHSExpr, Expr *RHSExpr) {
8055   bool isLHSPointer = LHSExpr->getType()->isAnyPointerType();
8056   bool isRHSPointer = RHSExpr->getType()->isAnyPointerType();
8057   if (!isLHSPointer && !isRHSPointer) return true;
8058 
8059   QualType LHSPointeeTy, RHSPointeeTy;
8060   if (isLHSPointer) LHSPointeeTy = LHSExpr->getType()->getPointeeType();
8061   if (isRHSPointer) RHSPointeeTy = RHSExpr->getType()->getPointeeType();
8062 
8063   // if both are pointers check if operation is valid wrt address spaces
8064   if (S.getLangOpts().OpenCL && isLHSPointer && isRHSPointer) {
8065     const PointerType *lhsPtr = LHSExpr->getType()->getAs<PointerType>();
8066     const PointerType *rhsPtr = RHSExpr->getType()->getAs<PointerType>();
8067     if (!lhsPtr->isAddressSpaceOverlapping(*rhsPtr)) {
8068       S.Diag(Loc,
8069              diag::err_typecheck_op_on_nonoverlapping_address_space_pointers)
8070           << LHSExpr->getType() << RHSExpr->getType() << 1 /*arithmetic op*/
8071           << LHSExpr->getSourceRange() << RHSExpr->getSourceRange();
8072       return false;
8073     }
8074   }
8075 
8076   // Check for arithmetic on pointers to incomplete types.
8077   bool isLHSVoidPtr = isLHSPointer && LHSPointeeTy->isVoidType();
8078   bool isRHSVoidPtr = isRHSPointer && RHSPointeeTy->isVoidType();
8079   if (isLHSVoidPtr || isRHSVoidPtr) {
8080     if (!isRHSVoidPtr) diagnoseArithmeticOnVoidPointer(S, Loc, LHSExpr);
8081     else if (!isLHSVoidPtr) diagnoseArithmeticOnVoidPointer(S, Loc, RHSExpr);
8082     else diagnoseArithmeticOnTwoVoidPointers(S, Loc, LHSExpr, RHSExpr);
8083 
8084     return !S.getLangOpts().CPlusPlus;
8085   }
8086 
8087   bool isLHSFuncPtr = isLHSPointer && LHSPointeeTy->isFunctionType();
8088   bool isRHSFuncPtr = isRHSPointer && RHSPointeeTy->isFunctionType();
8089   if (isLHSFuncPtr || isRHSFuncPtr) {
8090     if (!isRHSFuncPtr) diagnoseArithmeticOnFunctionPointer(S, Loc, LHSExpr);
8091     else if (!isLHSFuncPtr) diagnoseArithmeticOnFunctionPointer(S, Loc,
8092                                                                 RHSExpr);
8093     else diagnoseArithmeticOnTwoFunctionPointers(S, Loc, LHSExpr, RHSExpr);
8094 
8095     return !S.getLangOpts().CPlusPlus;
8096   }
8097 
8098   if (isLHSPointer && checkArithmeticIncompletePointerType(S, Loc, LHSExpr))
8099     return false;
8100   if (isRHSPointer && checkArithmeticIncompletePointerType(S, Loc, RHSExpr))
8101     return false;
8102 
8103   return true;
8104 }
8105 
8106 /// diagnoseStringPlusInt - Emit a warning when adding an integer to a string
8107 /// literal.
8108 static void diagnoseStringPlusInt(Sema &Self, SourceLocation OpLoc,
8109                                   Expr *LHSExpr, Expr *RHSExpr) {
8110   StringLiteral* StrExpr = dyn_cast<StringLiteral>(LHSExpr->IgnoreImpCasts());
8111   Expr* IndexExpr = RHSExpr;
8112   if (!StrExpr) {
8113     StrExpr = dyn_cast<StringLiteral>(RHSExpr->IgnoreImpCasts());
8114     IndexExpr = LHSExpr;
8115   }
8116 
8117   bool IsStringPlusInt = StrExpr &&
8118       IndexExpr->getType()->isIntegralOrUnscopedEnumerationType();
8119   if (!IsStringPlusInt || IndexExpr->isValueDependent())
8120     return;
8121 
8122   llvm::APSInt index;
8123   if (IndexExpr->EvaluateAsInt(index, Self.getASTContext())) {
8124     unsigned StrLenWithNull = StrExpr->getLength() + 1;
8125     if (index.isNonNegative() &&
8126         index <= llvm::APSInt(llvm::APInt(index.getBitWidth(), StrLenWithNull),
8127                               index.isUnsigned()))
8128       return;
8129   }
8130 
8131   SourceRange DiagRange(LHSExpr->getLocStart(), RHSExpr->getLocEnd());
8132   Self.Diag(OpLoc, diag::warn_string_plus_int)
8133       << DiagRange << IndexExpr->IgnoreImpCasts()->getType();
8134 
8135   // Only print a fixit for "str" + int, not for int + "str".
8136   if (IndexExpr == RHSExpr) {
8137     SourceLocation EndLoc = Self.getLocForEndOfToken(RHSExpr->getLocEnd());
8138     Self.Diag(OpLoc, diag::note_string_plus_scalar_silence)
8139         << FixItHint::CreateInsertion(LHSExpr->getLocStart(), "&")
8140         << FixItHint::CreateReplacement(SourceRange(OpLoc), "[")
8141         << FixItHint::CreateInsertion(EndLoc, "]");
8142   } else
8143     Self.Diag(OpLoc, diag::note_string_plus_scalar_silence);
8144 }
8145 
8146 /// \brief Emit a warning when adding a char literal to a string.
8147 static void diagnoseStringPlusChar(Sema &Self, SourceLocation OpLoc,
8148                                    Expr *LHSExpr, Expr *RHSExpr) {
8149   const Expr *StringRefExpr = LHSExpr;
8150   const CharacterLiteral *CharExpr =
8151       dyn_cast<CharacterLiteral>(RHSExpr->IgnoreImpCasts());
8152 
8153   if (!CharExpr) {
8154     CharExpr = dyn_cast<CharacterLiteral>(LHSExpr->IgnoreImpCasts());
8155     StringRefExpr = RHSExpr;
8156   }
8157 
8158   if (!CharExpr || !StringRefExpr)
8159     return;
8160 
8161   const QualType StringType = StringRefExpr->getType();
8162 
8163   // Return if not a PointerType.
8164   if (!StringType->isAnyPointerType())
8165     return;
8166 
8167   // Return if not a CharacterType.
8168   if (!StringType->getPointeeType()->isAnyCharacterType())
8169     return;
8170 
8171   ASTContext &Ctx = Self.getASTContext();
8172   SourceRange DiagRange(LHSExpr->getLocStart(), RHSExpr->getLocEnd());
8173 
8174   const QualType CharType = CharExpr->getType();
8175   if (!CharType->isAnyCharacterType() &&
8176       CharType->isIntegerType() &&
8177       llvm::isUIntN(Ctx.getCharWidth(), CharExpr->getValue())) {
8178     Self.Diag(OpLoc, diag::warn_string_plus_char)
8179         << DiagRange << Ctx.CharTy;
8180   } else {
8181     Self.Diag(OpLoc, diag::warn_string_plus_char)
8182         << DiagRange << CharExpr->getType();
8183   }
8184 
8185   // Only print a fixit for str + char, not for char + str.
8186   if (isa<CharacterLiteral>(RHSExpr->IgnoreImpCasts())) {
8187     SourceLocation EndLoc = Self.getLocForEndOfToken(RHSExpr->getLocEnd());
8188     Self.Diag(OpLoc, diag::note_string_plus_scalar_silence)
8189         << FixItHint::CreateInsertion(LHSExpr->getLocStart(), "&")
8190         << FixItHint::CreateReplacement(SourceRange(OpLoc), "[")
8191         << FixItHint::CreateInsertion(EndLoc, "]");
8192   } else {
8193     Self.Diag(OpLoc, diag::note_string_plus_scalar_silence);
8194   }
8195 }
8196 
8197 /// \brief Emit error when two pointers are incompatible.
8198 static void diagnosePointerIncompatibility(Sema &S, SourceLocation Loc,
8199                                            Expr *LHSExpr, Expr *RHSExpr) {
8200   assert(LHSExpr->getType()->isAnyPointerType());
8201   assert(RHSExpr->getType()->isAnyPointerType());
8202   S.Diag(Loc, diag::err_typecheck_sub_ptr_compatible)
8203     << LHSExpr->getType() << RHSExpr->getType() << LHSExpr->getSourceRange()
8204     << RHSExpr->getSourceRange();
8205 }
8206 
8207 // C99 6.5.6
8208 QualType Sema::CheckAdditionOperands(ExprResult &LHS, ExprResult &RHS,
8209                                      SourceLocation Loc, BinaryOperatorKind Opc,
8210                                      QualType* CompLHSTy) {
8211   checkArithmeticNull(*this, LHS, RHS, Loc, /*isCompare=*/false);
8212 
8213   if (LHS.get()->getType()->isVectorType() ||
8214       RHS.get()->getType()->isVectorType()) {
8215     QualType compType = CheckVectorOperands(
8216         LHS, RHS, Loc, CompLHSTy,
8217         /*AllowBothBool*/getLangOpts().AltiVec,
8218         /*AllowBoolConversions*/getLangOpts().ZVector);
8219     if (CompLHSTy) *CompLHSTy = compType;
8220     return compType;
8221   }
8222 
8223   QualType compType = UsualArithmeticConversions(LHS, RHS, CompLHSTy);
8224   if (LHS.isInvalid() || RHS.isInvalid())
8225     return QualType();
8226 
8227   // Diagnose "string literal" '+' int and string '+' "char literal".
8228   if (Opc == BO_Add) {
8229     diagnoseStringPlusInt(*this, Loc, LHS.get(), RHS.get());
8230     diagnoseStringPlusChar(*this, Loc, LHS.get(), RHS.get());
8231   }
8232 
8233   // handle the common case first (both operands are arithmetic).
8234   if (!compType.isNull() && compType->isArithmeticType()) {
8235     if (CompLHSTy) *CompLHSTy = compType;
8236     return compType;
8237   }
8238 
8239   // Type-checking.  Ultimately the pointer's going to be in PExp;
8240   // note that we bias towards the LHS being the pointer.
8241   Expr *PExp = LHS.get(), *IExp = RHS.get();
8242 
8243   bool isObjCPointer;
8244   if (PExp->getType()->isPointerType()) {
8245     isObjCPointer = false;
8246   } else if (PExp->getType()->isObjCObjectPointerType()) {
8247     isObjCPointer = true;
8248   } else {
8249     std::swap(PExp, IExp);
8250     if (PExp->getType()->isPointerType()) {
8251       isObjCPointer = false;
8252     } else if (PExp->getType()->isObjCObjectPointerType()) {
8253       isObjCPointer = true;
8254     } else {
8255       return InvalidOperands(Loc, LHS, RHS);
8256     }
8257   }
8258   assert(PExp->getType()->isAnyPointerType());
8259 
8260   if (!IExp->getType()->isIntegerType())
8261     return InvalidOperands(Loc, LHS, RHS);
8262 
8263   if (!checkArithmeticOpPointerOperand(*this, Loc, PExp))
8264     return QualType();
8265 
8266   if (isObjCPointer && checkArithmeticOnObjCPointer(*this, Loc, PExp))
8267     return QualType();
8268 
8269   // Check array bounds for pointer arithemtic
8270   CheckArrayAccess(PExp, IExp);
8271 
8272   if (CompLHSTy) {
8273     QualType LHSTy = Context.isPromotableBitField(LHS.get());
8274     if (LHSTy.isNull()) {
8275       LHSTy = LHS.get()->getType();
8276       if (LHSTy->isPromotableIntegerType())
8277         LHSTy = Context.getPromotedIntegerType(LHSTy);
8278     }
8279     *CompLHSTy = LHSTy;
8280   }
8281 
8282   return PExp->getType();
8283 }
8284 
8285 // C99 6.5.6
8286 QualType Sema::CheckSubtractionOperands(ExprResult &LHS, ExprResult &RHS,
8287                                         SourceLocation Loc,
8288                                         QualType* CompLHSTy) {
8289   checkArithmeticNull(*this, LHS, RHS, Loc, /*isCompare=*/false);
8290 
8291   if (LHS.get()->getType()->isVectorType() ||
8292       RHS.get()->getType()->isVectorType()) {
8293     QualType compType = CheckVectorOperands(
8294         LHS, RHS, Loc, CompLHSTy,
8295         /*AllowBothBool*/getLangOpts().AltiVec,
8296         /*AllowBoolConversions*/getLangOpts().ZVector);
8297     if (CompLHSTy) *CompLHSTy = compType;
8298     return compType;
8299   }
8300 
8301   QualType compType = UsualArithmeticConversions(LHS, RHS, CompLHSTy);
8302   if (LHS.isInvalid() || RHS.isInvalid())
8303     return QualType();
8304 
8305   // Enforce type constraints: C99 6.5.6p3.
8306 
8307   // Handle the common case first (both operands are arithmetic).
8308   if (!compType.isNull() && compType->isArithmeticType()) {
8309     if (CompLHSTy) *CompLHSTy = compType;
8310     return compType;
8311   }
8312 
8313   // Either ptr - int   or   ptr - ptr.
8314   if (LHS.get()->getType()->isAnyPointerType()) {
8315     QualType lpointee = LHS.get()->getType()->getPointeeType();
8316 
8317     // Diagnose bad cases where we step over interface counts.
8318     if (LHS.get()->getType()->isObjCObjectPointerType() &&
8319         checkArithmeticOnObjCPointer(*this, Loc, LHS.get()))
8320       return QualType();
8321 
8322     // The result type of a pointer-int computation is the pointer type.
8323     if (RHS.get()->getType()->isIntegerType()) {
8324       if (!checkArithmeticOpPointerOperand(*this, Loc, LHS.get()))
8325         return QualType();
8326 
8327       // Check array bounds for pointer arithemtic
8328       CheckArrayAccess(LHS.get(), RHS.get(), /*ArraySubscriptExpr*/nullptr,
8329                        /*AllowOnePastEnd*/true, /*IndexNegated*/true);
8330 
8331       if (CompLHSTy) *CompLHSTy = LHS.get()->getType();
8332       return LHS.get()->getType();
8333     }
8334 
8335     // Handle pointer-pointer subtractions.
8336     if (const PointerType *RHSPTy
8337           = RHS.get()->getType()->getAs<PointerType>()) {
8338       QualType rpointee = RHSPTy->getPointeeType();
8339 
8340       if (getLangOpts().CPlusPlus) {
8341         // Pointee types must be the same: C++ [expr.add]
8342         if (!Context.hasSameUnqualifiedType(lpointee, rpointee)) {
8343           diagnosePointerIncompatibility(*this, Loc, LHS.get(), RHS.get());
8344         }
8345       } else {
8346         // Pointee types must be compatible C99 6.5.6p3
8347         if (!Context.typesAreCompatible(
8348                 Context.getCanonicalType(lpointee).getUnqualifiedType(),
8349                 Context.getCanonicalType(rpointee).getUnqualifiedType())) {
8350           diagnosePointerIncompatibility(*this, Loc, LHS.get(), RHS.get());
8351           return QualType();
8352         }
8353       }
8354 
8355       if (!checkArithmeticBinOpPointerOperands(*this, Loc,
8356                                                LHS.get(), RHS.get()))
8357         return QualType();
8358 
8359       // The pointee type may have zero size.  As an extension, a structure or
8360       // union may have zero size or an array may have zero length.  In this
8361       // case subtraction does not make sense.
8362       if (!rpointee->isVoidType() && !rpointee->isFunctionType()) {
8363         CharUnits ElementSize = Context.getTypeSizeInChars(rpointee);
8364         if (ElementSize.isZero()) {
8365           Diag(Loc,diag::warn_sub_ptr_zero_size_types)
8366             << rpointee.getUnqualifiedType()
8367             << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
8368         }
8369       }
8370 
8371       if (CompLHSTy) *CompLHSTy = LHS.get()->getType();
8372       return Context.getPointerDiffType();
8373     }
8374   }
8375 
8376   return InvalidOperands(Loc, LHS, RHS);
8377 }
8378 
8379 static bool isScopedEnumerationType(QualType T) {
8380   if (const EnumType *ET = T->getAs<EnumType>())
8381     return ET->getDecl()->isScoped();
8382   return false;
8383 }
8384 
8385 static void DiagnoseBadShiftValues(Sema& S, ExprResult &LHS, ExprResult &RHS,
8386                                    SourceLocation Loc, BinaryOperatorKind Opc,
8387                                    QualType LHSType) {
8388   // OpenCL 6.3j: shift values are effectively % word size of LHS (more defined),
8389   // so skip remaining warnings as we don't want to modify values within Sema.
8390   if (S.getLangOpts().OpenCL)
8391     return;
8392 
8393   llvm::APSInt Right;
8394   // Check right/shifter operand
8395   if (RHS.get()->isValueDependent() ||
8396       !RHS.get()->EvaluateAsInt(Right, S.Context))
8397     return;
8398 
8399   if (Right.isNegative()) {
8400     S.DiagRuntimeBehavior(Loc, RHS.get(),
8401                           S.PDiag(diag::warn_shift_negative)
8402                             << RHS.get()->getSourceRange());
8403     return;
8404   }
8405   llvm::APInt LeftBits(Right.getBitWidth(),
8406                        S.Context.getTypeSize(LHS.get()->getType()));
8407   if (Right.uge(LeftBits)) {
8408     S.DiagRuntimeBehavior(Loc, RHS.get(),
8409                           S.PDiag(diag::warn_shift_gt_typewidth)
8410                             << RHS.get()->getSourceRange());
8411     return;
8412   }
8413   if (Opc != BO_Shl)
8414     return;
8415 
8416   // When left shifting an ICE which is signed, we can check for overflow which
8417   // according to C++ has undefined behavior ([expr.shift] 5.8/2). Unsigned
8418   // integers have defined behavior modulo one more than the maximum value
8419   // representable in the result type, so never warn for those.
8420   llvm::APSInt Left;
8421   if (LHS.get()->isValueDependent() ||
8422       LHSType->hasUnsignedIntegerRepresentation() ||
8423       !LHS.get()->EvaluateAsInt(Left, S.Context))
8424     return;
8425 
8426   // If LHS does not have a signed type and non-negative value
8427   // then, the behavior is undefined. Warn about it.
8428   if (Left.isNegative()) {
8429     S.DiagRuntimeBehavior(Loc, LHS.get(),
8430                           S.PDiag(diag::warn_shift_lhs_negative)
8431                             << LHS.get()->getSourceRange());
8432     return;
8433   }
8434 
8435   llvm::APInt ResultBits =
8436       static_cast<llvm::APInt&>(Right) + Left.getMinSignedBits();
8437   if (LeftBits.uge(ResultBits))
8438     return;
8439   llvm::APSInt Result = Left.extend(ResultBits.getLimitedValue());
8440   Result = Result.shl(Right);
8441 
8442   // Print the bit representation of the signed integer as an unsigned
8443   // hexadecimal number.
8444   SmallString<40> HexResult;
8445   Result.toString(HexResult, 16, /*Signed =*/false, /*Literal =*/true);
8446 
8447   // If we are only missing a sign bit, this is less likely to result in actual
8448   // bugs -- if the result is cast back to an unsigned type, it will have the
8449   // expected value. Thus we place this behind a different warning that can be
8450   // turned off separately if needed.
8451   if (LeftBits == ResultBits - 1) {
8452     S.Diag(Loc, diag::warn_shift_result_sets_sign_bit)
8453         << HexResult << LHSType
8454         << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
8455     return;
8456   }
8457 
8458   S.Diag(Loc, diag::warn_shift_result_gt_typewidth)
8459     << HexResult.str() << Result.getMinSignedBits() << LHSType
8460     << Left.getBitWidth() << LHS.get()->getSourceRange()
8461     << RHS.get()->getSourceRange();
8462 }
8463 
8464 /// \brief Return the resulting type when an OpenCL vector is shifted
8465 ///        by a scalar or vector shift amount.
8466 static QualType checkOpenCLVectorShift(Sema &S,
8467                                        ExprResult &LHS, ExprResult &RHS,
8468                                        SourceLocation Loc, bool IsCompAssign) {
8469   // OpenCL v1.1 s6.3.j says RHS can be a vector only if LHS is a vector.
8470   if (!LHS.get()->getType()->isVectorType()) {
8471     S.Diag(Loc, diag::err_shift_rhs_only_vector)
8472       << RHS.get()->getType() << LHS.get()->getType()
8473       << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
8474     return QualType();
8475   }
8476 
8477   if (!IsCompAssign) {
8478     LHS = S.UsualUnaryConversions(LHS.get());
8479     if (LHS.isInvalid()) return QualType();
8480   }
8481 
8482   RHS = S.UsualUnaryConversions(RHS.get());
8483   if (RHS.isInvalid()) return QualType();
8484 
8485   QualType LHSType = LHS.get()->getType();
8486   const VectorType *LHSVecTy = LHSType->castAs<VectorType>();
8487   QualType LHSEleType = LHSVecTy->getElementType();
8488 
8489   // Note that RHS might not be a vector.
8490   QualType RHSType = RHS.get()->getType();
8491   const VectorType *RHSVecTy = RHSType->getAs<VectorType>();
8492   QualType RHSEleType = RHSVecTy ? RHSVecTy->getElementType() : RHSType;
8493 
8494   // OpenCL v1.1 s6.3.j says that the operands need to be integers.
8495   if (!LHSEleType->isIntegerType()) {
8496     S.Diag(Loc, diag::err_typecheck_expect_int)
8497       << LHS.get()->getType() << LHS.get()->getSourceRange();
8498     return QualType();
8499   }
8500 
8501   if (!RHSEleType->isIntegerType()) {
8502     S.Diag(Loc, diag::err_typecheck_expect_int)
8503       << RHS.get()->getType() << RHS.get()->getSourceRange();
8504     return QualType();
8505   }
8506 
8507   if (RHSVecTy) {
8508     // OpenCL v1.1 s6.3.j says that for vector types, the operators
8509     // are applied component-wise. So if RHS is a vector, then ensure
8510     // that the number of elements is the same as LHS...
8511     if (RHSVecTy->getNumElements() != LHSVecTy->getNumElements()) {
8512       S.Diag(Loc, diag::err_typecheck_vector_lengths_not_equal)
8513         << LHS.get()->getType() << RHS.get()->getType()
8514         << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
8515       return QualType();
8516     }
8517   } else {
8518     // ...else expand RHS to match the number of elements in LHS.
8519     QualType VecTy =
8520       S.Context.getExtVectorType(RHSEleType, LHSVecTy->getNumElements());
8521     RHS = S.ImpCastExprToType(RHS.get(), VecTy, CK_VectorSplat);
8522   }
8523 
8524   return LHSType;
8525 }
8526 
8527 // C99 6.5.7
8528 QualType Sema::CheckShiftOperands(ExprResult &LHS, ExprResult &RHS,
8529                                   SourceLocation Loc, BinaryOperatorKind Opc,
8530                                   bool IsCompAssign) {
8531   checkArithmeticNull(*this, LHS, RHS, Loc, /*isCompare=*/false);
8532 
8533   // Vector shifts promote their scalar inputs to vector type.
8534   if (LHS.get()->getType()->isVectorType() ||
8535       RHS.get()->getType()->isVectorType()) {
8536     if (LangOpts.OpenCL)
8537       return checkOpenCLVectorShift(*this, LHS, RHS, Loc, IsCompAssign);
8538     if (LangOpts.ZVector) {
8539       // The shift operators for the z vector extensions work basically
8540       // like OpenCL shifts, except that neither the LHS nor the RHS is
8541       // allowed to be a "vector bool".
8542       if (auto LHSVecType = LHS.get()->getType()->getAs<VectorType>())
8543         if (LHSVecType->getVectorKind() == VectorType::AltiVecBool)
8544           return InvalidOperands(Loc, LHS, RHS);
8545       if (auto RHSVecType = RHS.get()->getType()->getAs<VectorType>())
8546         if (RHSVecType->getVectorKind() == VectorType::AltiVecBool)
8547           return InvalidOperands(Loc, LHS, RHS);
8548       return checkOpenCLVectorShift(*this, LHS, RHS, Loc, IsCompAssign);
8549     }
8550     return CheckVectorOperands(LHS, RHS, Loc, IsCompAssign,
8551                                /*AllowBothBool*/true,
8552                                /*AllowBoolConversions*/false);
8553   }
8554 
8555   // Shifts don't perform usual arithmetic conversions, they just do integer
8556   // promotions on each operand. C99 6.5.7p3
8557 
8558   // For the LHS, do usual unary conversions, but then reset them away
8559   // if this is a compound assignment.
8560   ExprResult OldLHS = LHS;
8561   LHS = UsualUnaryConversions(LHS.get());
8562   if (LHS.isInvalid())
8563     return QualType();
8564   QualType LHSType = LHS.get()->getType();
8565   if (IsCompAssign) LHS = OldLHS;
8566 
8567   // The RHS is simpler.
8568   RHS = UsualUnaryConversions(RHS.get());
8569   if (RHS.isInvalid())
8570     return QualType();
8571   QualType RHSType = RHS.get()->getType();
8572 
8573   // C99 6.5.7p2: Each of the operands shall have integer type.
8574   if (!LHSType->hasIntegerRepresentation() ||
8575       !RHSType->hasIntegerRepresentation())
8576     return InvalidOperands(Loc, LHS, RHS);
8577 
8578   // C++0x: Don't allow scoped enums. FIXME: Use something better than
8579   // hasIntegerRepresentation() above instead of this.
8580   if (isScopedEnumerationType(LHSType) ||
8581       isScopedEnumerationType(RHSType)) {
8582     return InvalidOperands(Loc, LHS, RHS);
8583   }
8584   // Sanity-check shift operands
8585   DiagnoseBadShiftValues(*this, LHS, RHS, Loc, Opc, LHSType);
8586 
8587   // "The type of the result is that of the promoted left operand."
8588   return LHSType;
8589 }
8590 
8591 static bool IsWithinTemplateSpecialization(Decl *D) {
8592   if (DeclContext *DC = D->getDeclContext()) {
8593     if (isa<ClassTemplateSpecializationDecl>(DC))
8594       return true;
8595     if (FunctionDecl *FD = dyn_cast<FunctionDecl>(DC))
8596       return FD->isFunctionTemplateSpecialization();
8597   }
8598   return false;
8599 }
8600 
8601 /// If two different enums are compared, raise a warning.
8602 static void checkEnumComparison(Sema &S, SourceLocation Loc, Expr *LHS,
8603                                 Expr *RHS) {
8604   QualType LHSStrippedType = LHS->IgnoreParenImpCasts()->getType();
8605   QualType RHSStrippedType = RHS->IgnoreParenImpCasts()->getType();
8606 
8607   const EnumType *LHSEnumType = LHSStrippedType->getAs<EnumType>();
8608   if (!LHSEnumType)
8609     return;
8610   const EnumType *RHSEnumType = RHSStrippedType->getAs<EnumType>();
8611   if (!RHSEnumType)
8612     return;
8613 
8614   // Ignore anonymous enums.
8615   if (!LHSEnumType->getDecl()->getIdentifier())
8616     return;
8617   if (!RHSEnumType->getDecl()->getIdentifier())
8618     return;
8619 
8620   if (S.Context.hasSameUnqualifiedType(LHSStrippedType, RHSStrippedType))
8621     return;
8622 
8623   S.Diag(Loc, diag::warn_comparison_of_mixed_enum_types)
8624       << LHSStrippedType << RHSStrippedType
8625       << LHS->getSourceRange() << RHS->getSourceRange();
8626 }
8627 
8628 /// \brief Diagnose bad pointer comparisons.
8629 static void diagnoseDistinctPointerComparison(Sema &S, SourceLocation Loc,
8630                                               ExprResult &LHS, ExprResult &RHS,
8631                                               bool IsError) {
8632   S.Diag(Loc, IsError ? diag::err_typecheck_comparison_of_distinct_pointers
8633                       : diag::ext_typecheck_comparison_of_distinct_pointers)
8634     << LHS.get()->getType() << RHS.get()->getType()
8635     << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
8636 }
8637 
8638 /// \brief Returns false if the pointers are converted to a composite type,
8639 /// true otherwise.
8640 static bool convertPointersToCompositeType(Sema &S, SourceLocation Loc,
8641                                            ExprResult &LHS, ExprResult &RHS) {
8642   // C++ [expr.rel]p2:
8643   //   [...] Pointer conversions (4.10) and qualification
8644   //   conversions (4.4) are performed on pointer operands (or on
8645   //   a pointer operand and a null pointer constant) to bring
8646   //   them to their composite pointer type. [...]
8647   //
8648   // C++ [expr.eq]p1 uses the same notion for (in)equality
8649   // comparisons of pointers.
8650 
8651   // C++ [expr.eq]p2:
8652   //   In addition, pointers to members can be compared, or a pointer to
8653   //   member and a null pointer constant. Pointer to member conversions
8654   //   (4.11) and qualification conversions (4.4) are performed to bring
8655   //   them to a common type. If one operand is a null pointer constant,
8656   //   the common type is the type of the other operand. Otherwise, the
8657   //   common type is a pointer to member type similar (4.4) to the type
8658   //   of one of the operands, with a cv-qualification signature (4.4)
8659   //   that is the union of the cv-qualification signatures of the operand
8660   //   types.
8661 
8662   QualType LHSType = LHS.get()->getType();
8663   QualType RHSType = RHS.get()->getType();
8664   assert((LHSType->isPointerType() && RHSType->isPointerType()) ||
8665          (LHSType->isMemberPointerType() && RHSType->isMemberPointerType()));
8666 
8667   bool NonStandardCompositeType = false;
8668   bool *BoolPtr = S.isSFINAEContext() ? nullptr : &NonStandardCompositeType;
8669   QualType T = S.FindCompositePointerType(Loc, LHS, RHS, BoolPtr);
8670   if (T.isNull()) {
8671     diagnoseDistinctPointerComparison(S, Loc, LHS, RHS, /*isError*/true);
8672     return true;
8673   }
8674 
8675   if (NonStandardCompositeType)
8676     S.Diag(Loc, diag::ext_typecheck_comparison_of_distinct_pointers_nonstandard)
8677       << LHSType << RHSType << T << LHS.get()->getSourceRange()
8678       << RHS.get()->getSourceRange();
8679 
8680   LHS = S.ImpCastExprToType(LHS.get(), T, CK_BitCast);
8681   RHS = S.ImpCastExprToType(RHS.get(), T, CK_BitCast);
8682   return false;
8683 }
8684 
8685 static void diagnoseFunctionPointerToVoidComparison(Sema &S, SourceLocation Loc,
8686                                                     ExprResult &LHS,
8687                                                     ExprResult &RHS,
8688                                                     bool IsError) {
8689   S.Diag(Loc, IsError ? diag::err_typecheck_comparison_of_fptr_to_void
8690                       : diag::ext_typecheck_comparison_of_fptr_to_void)
8691     << LHS.get()->getType() << RHS.get()->getType()
8692     << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
8693 }
8694 
8695 static bool isObjCObjectLiteral(ExprResult &E) {
8696   switch (E.get()->IgnoreParenImpCasts()->getStmtClass()) {
8697   case Stmt::ObjCArrayLiteralClass:
8698   case Stmt::ObjCDictionaryLiteralClass:
8699   case Stmt::ObjCStringLiteralClass:
8700   case Stmt::ObjCBoxedExprClass:
8701     return true;
8702   default:
8703     // Note that ObjCBoolLiteral is NOT an object literal!
8704     return false;
8705   }
8706 }
8707 
8708 static bool hasIsEqualMethod(Sema &S, const Expr *LHS, const Expr *RHS) {
8709   const ObjCObjectPointerType *Type =
8710     LHS->getType()->getAs<ObjCObjectPointerType>();
8711 
8712   // If this is not actually an Objective-C object, bail out.
8713   if (!Type)
8714     return false;
8715 
8716   // Get the LHS object's interface type.
8717   QualType InterfaceType = Type->getPointeeType();
8718 
8719   // If the RHS isn't an Objective-C object, bail out.
8720   if (!RHS->getType()->isObjCObjectPointerType())
8721     return false;
8722 
8723   // Try to find the -isEqual: method.
8724   Selector IsEqualSel = S.NSAPIObj->getIsEqualSelector();
8725   ObjCMethodDecl *Method = S.LookupMethodInObjectType(IsEqualSel,
8726                                                       InterfaceType,
8727                                                       /*instance=*/true);
8728   if (!Method) {
8729     if (Type->isObjCIdType()) {
8730       // For 'id', just check the global pool.
8731       Method = S.LookupInstanceMethodInGlobalPool(IsEqualSel, SourceRange(),
8732                                                   /*receiverId=*/true);
8733     } else {
8734       // Check protocols.
8735       Method = S.LookupMethodInQualifiedType(IsEqualSel, Type,
8736                                              /*instance=*/true);
8737     }
8738   }
8739 
8740   if (!Method)
8741     return false;
8742 
8743   QualType T = Method->parameters()[0]->getType();
8744   if (!T->isObjCObjectPointerType())
8745     return false;
8746 
8747   QualType R = Method->getReturnType();
8748   if (!R->isScalarType())
8749     return false;
8750 
8751   return true;
8752 }
8753 
8754 Sema::ObjCLiteralKind Sema::CheckLiteralKind(Expr *FromE) {
8755   FromE = FromE->IgnoreParenImpCasts();
8756   switch (FromE->getStmtClass()) {
8757     default:
8758       break;
8759     case Stmt::ObjCStringLiteralClass:
8760       // "string literal"
8761       return LK_String;
8762     case Stmt::ObjCArrayLiteralClass:
8763       // "array literal"
8764       return LK_Array;
8765     case Stmt::ObjCDictionaryLiteralClass:
8766       // "dictionary literal"
8767       return LK_Dictionary;
8768     case Stmt::BlockExprClass:
8769       return LK_Block;
8770     case Stmt::ObjCBoxedExprClass: {
8771       Expr *Inner = cast<ObjCBoxedExpr>(FromE)->getSubExpr()->IgnoreParens();
8772       switch (Inner->getStmtClass()) {
8773         case Stmt::IntegerLiteralClass:
8774         case Stmt::FloatingLiteralClass:
8775         case Stmt::CharacterLiteralClass:
8776         case Stmt::ObjCBoolLiteralExprClass:
8777         case Stmt::CXXBoolLiteralExprClass:
8778           // "numeric literal"
8779           return LK_Numeric;
8780         case Stmt::ImplicitCastExprClass: {
8781           CastKind CK = cast<CastExpr>(Inner)->getCastKind();
8782           // Boolean literals can be represented by implicit casts.
8783           if (CK == CK_IntegralToBoolean || CK == CK_IntegralCast)
8784             return LK_Numeric;
8785           break;
8786         }
8787         default:
8788           break;
8789       }
8790       return LK_Boxed;
8791     }
8792   }
8793   return LK_None;
8794 }
8795 
8796 static void diagnoseObjCLiteralComparison(Sema &S, SourceLocation Loc,
8797                                           ExprResult &LHS, ExprResult &RHS,
8798                                           BinaryOperator::Opcode Opc){
8799   Expr *Literal;
8800   Expr *Other;
8801   if (isObjCObjectLiteral(LHS)) {
8802     Literal = LHS.get();
8803     Other = RHS.get();
8804   } else {
8805     Literal = RHS.get();
8806     Other = LHS.get();
8807   }
8808 
8809   // Don't warn on comparisons against nil.
8810   Other = Other->IgnoreParenCasts();
8811   if (Other->isNullPointerConstant(S.getASTContext(),
8812                                    Expr::NPC_ValueDependentIsNotNull))
8813     return;
8814 
8815   // This should be kept in sync with warn_objc_literal_comparison.
8816   // LK_String should always be after the other literals, since it has its own
8817   // warning flag.
8818   Sema::ObjCLiteralKind LiteralKind = S.CheckLiteralKind(Literal);
8819   assert(LiteralKind != Sema::LK_Block);
8820   if (LiteralKind == Sema::LK_None) {
8821     llvm_unreachable("Unknown Objective-C object literal kind");
8822   }
8823 
8824   if (LiteralKind == Sema::LK_String)
8825     S.Diag(Loc, diag::warn_objc_string_literal_comparison)
8826       << Literal->getSourceRange();
8827   else
8828     S.Diag(Loc, diag::warn_objc_literal_comparison)
8829       << LiteralKind << Literal->getSourceRange();
8830 
8831   if (BinaryOperator::isEqualityOp(Opc) &&
8832       hasIsEqualMethod(S, LHS.get(), RHS.get())) {
8833     SourceLocation Start = LHS.get()->getLocStart();
8834     SourceLocation End = S.getLocForEndOfToken(RHS.get()->getLocEnd());
8835     CharSourceRange OpRange =
8836       CharSourceRange::getCharRange(Loc, S.getLocForEndOfToken(Loc));
8837 
8838     S.Diag(Loc, diag::note_objc_literal_comparison_isequal)
8839       << FixItHint::CreateInsertion(Start, Opc == BO_EQ ? "[" : "![")
8840       << FixItHint::CreateReplacement(OpRange, " isEqual:")
8841       << FixItHint::CreateInsertion(End, "]");
8842   }
8843 }
8844 
8845 static void diagnoseLogicalNotOnLHSofComparison(Sema &S, ExprResult &LHS,
8846                                                 ExprResult &RHS,
8847                                                 SourceLocation Loc,
8848                                                 BinaryOperatorKind Opc) {
8849   // Check that left hand side is !something.
8850   UnaryOperator *UO = dyn_cast<UnaryOperator>(LHS.get()->IgnoreImpCasts());
8851   if (!UO || UO->getOpcode() != UO_LNot) return;
8852 
8853   // Only check if the right hand side is non-bool arithmetic type.
8854   if (RHS.get()->isKnownToHaveBooleanValue()) return;
8855 
8856   // Make sure that the something in !something is not bool.
8857   Expr *SubExpr = UO->getSubExpr()->IgnoreImpCasts();
8858   if (SubExpr->isKnownToHaveBooleanValue()) return;
8859 
8860   // Emit warning.
8861   S.Diag(UO->getOperatorLoc(), diag::warn_logical_not_on_lhs_of_comparison)
8862       << Loc;
8863 
8864   // First note suggest !(x < y)
8865   SourceLocation FirstOpen = SubExpr->getLocStart();
8866   SourceLocation FirstClose = RHS.get()->getLocEnd();
8867   FirstClose = S.getLocForEndOfToken(FirstClose);
8868   if (FirstClose.isInvalid())
8869     FirstOpen = SourceLocation();
8870   S.Diag(UO->getOperatorLoc(), diag::note_logical_not_fix)
8871       << FixItHint::CreateInsertion(FirstOpen, "(")
8872       << FixItHint::CreateInsertion(FirstClose, ")");
8873 
8874   // Second note suggests (!x) < y
8875   SourceLocation SecondOpen = LHS.get()->getLocStart();
8876   SourceLocation SecondClose = LHS.get()->getLocEnd();
8877   SecondClose = S.getLocForEndOfToken(SecondClose);
8878   if (SecondClose.isInvalid())
8879     SecondOpen = SourceLocation();
8880   S.Diag(UO->getOperatorLoc(), diag::note_logical_not_silence_with_parens)
8881       << FixItHint::CreateInsertion(SecondOpen, "(")
8882       << FixItHint::CreateInsertion(SecondClose, ")");
8883 }
8884 
8885 // Get the decl for a simple expression: a reference to a variable,
8886 // an implicit C++ field reference, or an implicit ObjC ivar reference.
8887 static ValueDecl *getCompareDecl(Expr *E) {
8888   if (DeclRefExpr* DR = dyn_cast<DeclRefExpr>(E))
8889     return DR->getDecl();
8890   if (ObjCIvarRefExpr* Ivar = dyn_cast<ObjCIvarRefExpr>(E)) {
8891     if (Ivar->isFreeIvar())
8892       return Ivar->getDecl();
8893   }
8894   if (MemberExpr* Mem = dyn_cast<MemberExpr>(E)) {
8895     if (Mem->isImplicitAccess())
8896       return Mem->getMemberDecl();
8897   }
8898   return nullptr;
8899 }
8900 
8901 // C99 6.5.8, C++ [expr.rel]
8902 QualType Sema::CheckCompareOperands(ExprResult &LHS, ExprResult &RHS,
8903                                     SourceLocation Loc, BinaryOperatorKind Opc,
8904                                     bool IsRelational) {
8905   checkArithmeticNull(*this, LHS, RHS, Loc, /*isCompare=*/true);
8906 
8907   // Handle vector comparisons separately.
8908   if (LHS.get()->getType()->isVectorType() ||
8909       RHS.get()->getType()->isVectorType())
8910     return CheckVectorCompareOperands(LHS, RHS, Loc, IsRelational);
8911 
8912   QualType LHSType = LHS.get()->getType();
8913   QualType RHSType = RHS.get()->getType();
8914 
8915   Expr *LHSStripped = LHS.get()->IgnoreParenImpCasts();
8916   Expr *RHSStripped = RHS.get()->IgnoreParenImpCasts();
8917 
8918   checkEnumComparison(*this, Loc, LHS.get(), RHS.get());
8919   diagnoseLogicalNotOnLHSofComparison(*this, LHS, RHS, Loc, Opc);
8920 
8921   if (!LHSType->hasFloatingRepresentation() &&
8922       !(LHSType->isBlockPointerType() && IsRelational) &&
8923       !LHS.get()->getLocStart().isMacroID() &&
8924       !RHS.get()->getLocStart().isMacroID() &&
8925       ActiveTemplateInstantiations.empty()) {
8926     // For non-floating point types, check for self-comparisons of the form
8927     // x == x, x != x, x < x, etc.  These always evaluate to a constant, and
8928     // often indicate logic errors in the program.
8929     //
8930     // NOTE: Don't warn about comparison expressions resulting from macro
8931     // expansion. Also don't warn about comparisons which are only self
8932     // comparisons within a template specialization. The warnings should catch
8933     // obvious cases in the definition of the template anyways. The idea is to
8934     // warn when the typed comparison operator will always evaluate to the same
8935     // result.
8936     ValueDecl *DL = getCompareDecl(LHSStripped);
8937     ValueDecl *DR = getCompareDecl(RHSStripped);
8938     if (DL && DR && DL == DR && !IsWithinTemplateSpecialization(DL)) {
8939       DiagRuntimeBehavior(Loc, nullptr, PDiag(diag::warn_comparison_always)
8940                           << 0 // self-
8941                           << (Opc == BO_EQ
8942                               || Opc == BO_LE
8943                               || Opc == BO_GE));
8944     } else if (DL && DR && LHSType->isArrayType() && RHSType->isArrayType() &&
8945                !DL->getType()->isReferenceType() &&
8946                !DR->getType()->isReferenceType()) {
8947         // what is it always going to eval to?
8948         char always_evals_to;
8949         switch(Opc) {
8950         case BO_EQ: // e.g. array1 == array2
8951           always_evals_to = 0; // false
8952           break;
8953         case BO_NE: // e.g. array1 != array2
8954           always_evals_to = 1; // true
8955           break;
8956         default:
8957           // best we can say is 'a constant'
8958           always_evals_to = 2; // e.g. array1 <= array2
8959           break;
8960         }
8961         DiagRuntimeBehavior(Loc, nullptr, PDiag(diag::warn_comparison_always)
8962                             << 1 // array
8963                             << always_evals_to);
8964     }
8965 
8966     if (isa<CastExpr>(LHSStripped))
8967       LHSStripped = LHSStripped->IgnoreParenCasts();
8968     if (isa<CastExpr>(RHSStripped))
8969       RHSStripped = RHSStripped->IgnoreParenCasts();
8970 
8971     // Warn about comparisons against a string constant (unless the other
8972     // operand is null), the user probably wants strcmp.
8973     Expr *literalString = nullptr;
8974     Expr *literalStringStripped = nullptr;
8975     if ((isa<StringLiteral>(LHSStripped) || isa<ObjCEncodeExpr>(LHSStripped)) &&
8976         !RHSStripped->isNullPointerConstant(Context,
8977                                             Expr::NPC_ValueDependentIsNull)) {
8978       literalString = LHS.get();
8979       literalStringStripped = LHSStripped;
8980     } else if ((isa<StringLiteral>(RHSStripped) ||
8981                 isa<ObjCEncodeExpr>(RHSStripped)) &&
8982                !LHSStripped->isNullPointerConstant(Context,
8983                                             Expr::NPC_ValueDependentIsNull)) {
8984       literalString = RHS.get();
8985       literalStringStripped = RHSStripped;
8986     }
8987 
8988     if (literalString) {
8989       DiagRuntimeBehavior(Loc, nullptr,
8990         PDiag(diag::warn_stringcompare)
8991           << isa<ObjCEncodeExpr>(literalStringStripped)
8992           << literalString->getSourceRange());
8993     }
8994   }
8995 
8996   // C99 6.5.8p3 / C99 6.5.9p4
8997   UsualArithmeticConversions(LHS, RHS);
8998   if (LHS.isInvalid() || RHS.isInvalid())
8999     return QualType();
9000 
9001   LHSType = LHS.get()->getType();
9002   RHSType = RHS.get()->getType();
9003 
9004   // The result of comparisons is 'bool' in C++, 'int' in C.
9005   QualType ResultTy = Context.getLogicalOperationType();
9006 
9007   if (IsRelational) {
9008     if (LHSType->isRealType() && RHSType->isRealType())
9009       return ResultTy;
9010   } else {
9011     // Check for comparisons of floating point operands using != and ==.
9012     if (LHSType->hasFloatingRepresentation())
9013       CheckFloatComparison(Loc, LHS.get(), RHS.get());
9014 
9015     if (LHSType->isArithmeticType() && RHSType->isArithmeticType())
9016       return ResultTy;
9017   }
9018 
9019   const Expr::NullPointerConstantKind LHSNullKind =
9020       LHS.get()->isNullPointerConstant(Context, Expr::NPC_ValueDependentIsNull);
9021   const Expr::NullPointerConstantKind RHSNullKind =
9022       RHS.get()->isNullPointerConstant(Context, Expr::NPC_ValueDependentIsNull);
9023   bool LHSIsNull = LHSNullKind != Expr::NPCK_NotNull;
9024   bool RHSIsNull = RHSNullKind != Expr::NPCK_NotNull;
9025 
9026   if (!IsRelational && LHSIsNull != RHSIsNull) {
9027     bool IsEquality = Opc == BO_EQ;
9028     if (RHSIsNull)
9029       DiagnoseAlwaysNonNullPointer(LHS.get(), RHSNullKind, IsEquality,
9030                                    RHS.get()->getSourceRange());
9031     else
9032       DiagnoseAlwaysNonNullPointer(RHS.get(), LHSNullKind, IsEquality,
9033                                    LHS.get()->getSourceRange());
9034   }
9035 
9036   // All of the following pointer-related warnings are GCC extensions, except
9037   // when handling null pointer constants.
9038   if (LHSType->isPointerType() && RHSType->isPointerType()) { // C99 6.5.8p2
9039     QualType LCanPointeeTy =
9040       LHSType->castAs<PointerType>()->getPointeeType().getCanonicalType();
9041     QualType RCanPointeeTy =
9042       RHSType->castAs<PointerType>()->getPointeeType().getCanonicalType();
9043 
9044     if (getLangOpts().CPlusPlus) {
9045       if (LCanPointeeTy == RCanPointeeTy)
9046         return ResultTy;
9047       if (!IsRelational &&
9048           (LCanPointeeTy->isVoidType() || RCanPointeeTy->isVoidType())) {
9049         // Valid unless comparison between non-null pointer and function pointer
9050         // This is a gcc extension compatibility comparison.
9051         // In a SFINAE context, we treat this as a hard error to maintain
9052         // conformance with the C++ standard.
9053         if ((LCanPointeeTy->isFunctionType() || RCanPointeeTy->isFunctionType())
9054             && !LHSIsNull && !RHSIsNull) {
9055           diagnoseFunctionPointerToVoidComparison(
9056               *this, Loc, LHS, RHS, /*isError*/ (bool)isSFINAEContext());
9057 
9058           if (isSFINAEContext())
9059             return QualType();
9060 
9061           RHS = ImpCastExprToType(RHS.get(), LHSType, CK_BitCast);
9062           return ResultTy;
9063         }
9064       }
9065 
9066       if (convertPointersToCompositeType(*this, Loc, LHS, RHS))
9067         return QualType();
9068       else
9069         return ResultTy;
9070     }
9071     // C99 6.5.9p2 and C99 6.5.8p2
9072     if (Context.typesAreCompatible(LCanPointeeTy.getUnqualifiedType(),
9073                                    RCanPointeeTy.getUnqualifiedType())) {
9074       // Valid unless a relational comparison of function pointers
9075       if (IsRelational && LCanPointeeTy->isFunctionType()) {
9076         Diag(Loc, diag::ext_typecheck_ordered_comparison_of_function_pointers)
9077           << LHSType << RHSType << LHS.get()->getSourceRange()
9078           << RHS.get()->getSourceRange();
9079       }
9080     } else if (!IsRelational &&
9081                (LCanPointeeTy->isVoidType() || RCanPointeeTy->isVoidType())) {
9082       // Valid unless comparison between non-null pointer and function pointer
9083       if ((LCanPointeeTy->isFunctionType() || RCanPointeeTy->isFunctionType())
9084           && !LHSIsNull && !RHSIsNull)
9085         diagnoseFunctionPointerToVoidComparison(*this, Loc, LHS, RHS,
9086                                                 /*isError*/false);
9087     } else {
9088       // Invalid
9089       diagnoseDistinctPointerComparison(*this, Loc, LHS, RHS, /*isError*/false);
9090     }
9091     if (LCanPointeeTy != RCanPointeeTy) {
9092       // Treat NULL constant as a special case in OpenCL.
9093       if (getLangOpts().OpenCL && !LHSIsNull && !RHSIsNull) {
9094         const PointerType *LHSPtr = LHSType->getAs<PointerType>();
9095         if (!LHSPtr->isAddressSpaceOverlapping(*RHSType->getAs<PointerType>())) {
9096           Diag(Loc,
9097                diag::err_typecheck_op_on_nonoverlapping_address_space_pointers)
9098               << LHSType << RHSType << 0 /* comparison */
9099               << LHS.get()->getSourceRange() << RHS.get()->getSourceRange();
9100         }
9101       }
9102       unsigned AddrSpaceL = LCanPointeeTy.getAddressSpace();
9103       unsigned AddrSpaceR = RCanPointeeTy.getAddressSpace();
9104       CastKind Kind = AddrSpaceL != AddrSpaceR ? CK_AddressSpaceConversion
9105                                                : CK_BitCast;
9106       if (LHSIsNull && !RHSIsNull)
9107         LHS = ImpCastExprToType(LHS.get(), RHSType, Kind);
9108       else
9109         RHS = ImpCastExprToType(RHS.get(), LHSType, Kind);
9110     }
9111     return ResultTy;
9112   }
9113 
9114   if (getLangOpts().CPlusPlus) {
9115     // Comparison of nullptr_t with itself.
9116     if (LHSType->isNullPtrType() && RHSType->isNullPtrType())
9117       return ResultTy;
9118 
9119     // Comparison of pointers with null pointer constants and equality
9120     // comparisons of member pointers to null pointer constants.
9121     if (RHSIsNull &&
9122         ((LHSType->isAnyPointerType() || LHSType->isNullPtrType()) ||
9123          (!IsRelational &&
9124           (LHSType->isMemberPointerType() || LHSType->isBlockPointerType())))) {
9125       RHS = ImpCastExprToType(RHS.get(), LHSType,
9126                         LHSType->isMemberPointerType()
9127                           ? CK_NullToMemberPointer
9128                           : CK_NullToPointer);
9129       return ResultTy;
9130     }
9131     if (LHSIsNull &&
9132         ((RHSType->isAnyPointerType() || RHSType->isNullPtrType()) ||
9133          (!IsRelational &&
9134           (RHSType->isMemberPointerType() || RHSType->isBlockPointerType())))) {
9135       LHS = ImpCastExprToType(LHS.get(), RHSType,
9136                         RHSType->isMemberPointerType()
9137                           ? CK_NullToMemberPointer
9138                           : CK_NullToPointer);
9139       return ResultTy;
9140     }
9141 
9142     // Comparison of member pointers.
9143     if (!IsRelational &&
9144         LHSType->isMemberPointerType() && RHSType->isMemberPointerType()) {
9145       if (convertPointersToCompositeType(*this, Loc, LHS, RHS))
9146         return QualType();
9147       else
9148         return ResultTy;
9149     }
9150 
9151     // Handle scoped enumeration types specifically, since they don't promote
9152     // to integers.
9153     if (LHS.get()->getType()->isEnumeralType() &&
9154         Context.hasSameUnqualifiedType(LHS.get()->getType(),
9155                                        RHS.get()->getType()))
9156       return ResultTy;
9157   }
9158 
9159   // Handle block pointer types.
9160   if (!IsRelational && LHSType->isBlockPointerType() &&
9161       RHSType->isBlockPointerType()) {
9162     QualType lpointee = LHSType->castAs<BlockPointerType>()->getPointeeType();
9163     QualType rpointee = RHSType->castAs<BlockPointerType>()->getPointeeType();
9164 
9165     if (!LHSIsNull && !RHSIsNull &&
9166         !Context.typesAreCompatible(lpointee, rpointee)) {
9167       Diag(Loc, diag::err_typecheck_comparison_of_distinct_blocks)
9168         << LHSType << RHSType << LHS.get()->getSourceRange()
9169         << RHS.get()->getSourceRange();
9170     }
9171     RHS = ImpCastExprToType(RHS.get(), LHSType, CK_BitCast);
9172     return ResultTy;
9173   }
9174 
9175   // Allow block pointers to be compared with null pointer constants.
9176   if (!IsRelational
9177       && ((LHSType->isBlockPointerType() && RHSType->isPointerType())
9178           || (LHSType->isPointerType() && RHSType->isBlockPointerType()))) {
9179     if (!LHSIsNull && !RHSIsNull) {
9180       if (!((RHSType->isPointerType() && RHSType->castAs<PointerType>()
9181              ->getPointeeType()->isVoidType())
9182             || (LHSType->isPointerType() && LHSType->castAs<PointerType>()
9183                 ->getPointeeType()->isVoidType())))
9184         Diag(Loc, diag::err_typecheck_comparison_of_distinct_blocks)
9185           << LHSType << RHSType << LHS.get()->getSourceRange()
9186           << RHS.get()->getSourceRange();
9187     }
9188     if (LHSIsNull && !RHSIsNull)
9189       LHS = ImpCastExprToType(LHS.get(), RHSType,
9190                               RHSType->isPointerType() ? CK_BitCast
9191                                 : CK_AnyPointerToBlockPointerCast);
9192     else
9193       RHS = ImpCastExprToType(RHS.get(), LHSType,
9194                               LHSType->isPointerType() ? CK_BitCast
9195                                 : CK_AnyPointerToBlockPointerCast);
9196     return ResultTy;
9197   }
9198 
9199   if (LHSType->isObjCObjectPointerType() ||
9200       RHSType->isObjCObjectPointerType()) {
9201     const PointerType *LPT = LHSType->getAs<PointerType>();
9202     const PointerType *RPT = RHSType->getAs<PointerType>();
9203     if (LPT || RPT) {
9204       bool LPtrToVoid = LPT ? LPT->getPointeeType()->isVoidType() : false;
9205       bool RPtrToVoid = RPT ? RPT->getPointeeType()->isVoidType() : false;
9206 
9207       if (!LPtrToVoid && !RPtrToVoid &&
9208           !Context.typesAreCompatible(LHSType, RHSType)) {
9209         diagnoseDistinctPointerComparison(*this, Loc, LHS, RHS,
9210                                           /*isError*/false);
9211       }
9212       if (LHSIsNull && !RHSIsNull) {
9213         Expr *E = LHS.get();
9214         if (getLangOpts().ObjCAutoRefCount)
9215           CheckObjCARCConversion(SourceRange(), RHSType, E, CCK_ImplicitConversion);
9216         LHS = ImpCastExprToType(E, RHSType,
9217                                 RPT ? CK_BitCast :CK_CPointerToObjCPointerCast);
9218       }
9219       else {
9220         Expr *E = RHS.get();
9221         if (getLangOpts().ObjCAutoRefCount)
9222           CheckObjCARCConversion(SourceRange(), LHSType, E,
9223                                  CCK_ImplicitConversion, /*Diagnose=*/true,
9224                                  /*DiagnoseCFAudited=*/false, Opc);
9225         RHS = ImpCastExprToType(E, LHSType,
9226                                 LPT ? CK_BitCast :CK_CPointerToObjCPointerCast);
9227       }
9228       return ResultTy;
9229     }
9230     if (LHSType->isObjCObjectPointerType() &&
9231         RHSType->isObjCObjectPointerType()) {
9232       if (!Context.areComparableObjCPointerTypes(LHSType, RHSType))
9233         diagnoseDistinctPointerComparison(*this, Loc, LHS, RHS,
9234                                           /*isError*/false);
9235       if (isObjCObjectLiteral(LHS) || isObjCObjectLiteral(RHS))
9236         diagnoseObjCLiteralComparison(*this, Loc, LHS, RHS, Opc);
9237 
9238       if (LHSIsNull && !RHSIsNull)
9239         LHS = ImpCastExprToType(LHS.get(), RHSType, CK_BitCast);
9240       else
9241         RHS = ImpCastExprToType(RHS.get(), LHSType, CK_BitCast);
9242       return ResultTy;
9243     }
9244   }
9245   if ((LHSType->isAnyPointerType() && RHSType->isIntegerType()) ||
9246       (LHSType->isIntegerType() && RHSType->isAnyPointerType())) {
9247     unsigned DiagID = 0;
9248     bool isError = false;
9249     if (LangOpts.DebuggerSupport) {
9250       // Under a debugger, allow the comparison of pointers to integers,
9251       // since users tend to want to compare addresses.
9252     } else if ((LHSIsNull && LHSType->isIntegerType()) ||
9253         (RHSIsNull && RHSType->isIntegerType())) {
9254       if (IsRelational && !getLangOpts().CPlusPlus)
9255         DiagID = diag::ext_typecheck_ordered_comparison_of_pointer_and_zero;
9256     } else if (IsRelational && !getLangOpts().CPlusPlus)
9257       DiagID = diag::ext_typecheck_ordered_comparison_of_pointer_integer;
9258     else if (getLangOpts().CPlusPlus) {
9259       DiagID = diag::err_typecheck_comparison_of_pointer_integer;
9260       isError = true;
9261     } else
9262       DiagID = diag::ext_typecheck_comparison_of_pointer_integer;
9263 
9264     if (DiagID) {
9265       Diag(Loc, DiagID)
9266         << LHSType << RHSType << LHS.get()->getSourceRange()
9267         << RHS.get()->getSourceRange();
9268       if (isError)
9269         return QualType();
9270     }
9271 
9272     if (LHSType->isIntegerType())
9273       LHS = ImpCastExprToType(LHS.get(), RHSType,
9274                         LHSIsNull ? CK_NullToPointer : CK_IntegralToPointer);
9275     else
9276       RHS = ImpCastExprToType(RHS.get(), LHSType,
9277                         RHSIsNull ? CK_NullToPointer : CK_IntegralToPointer);
9278     return ResultTy;
9279   }
9280 
9281   // Handle block pointers.
9282   if (!IsRelational && RHSIsNull
9283       && LHSType->isBlockPointerType() && RHSType->isIntegerType()) {
9284     RHS = ImpCastExprToType(RHS.get(), LHSType, CK_NullToPointer);
9285     return ResultTy;
9286   }
9287   if (!IsRelational && LHSIsNull
9288       && LHSType->isIntegerType() && RHSType->isBlockPointerType()) {
9289     LHS = ImpCastExprToType(LHS.get(), RHSType, CK_NullToPointer);
9290     return ResultTy;
9291   }
9292 
9293   return InvalidOperands(Loc, LHS, RHS);
9294 }
9295 
9296 
9297 // Return a signed type that is of identical size and number of elements.
9298 // For floating point vectors, return an integer type of identical size
9299 // and number of elements.
9300 QualType Sema::GetSignedVectorType(QualType V) {
9301   const VectorType *VTy = V->getAs<VectorType>();
9302   unsigned TypeSize = Context.getTypeSize(VTy->getElementType());
9303   if (TypeSize == Context.getTypeSize(Context.CharTy))
9304     return Context.getExtVectorType(Context.CharTy, VTy->getNumElements());
9305   else if (TypeSize == Context.getTypeSize(Context.ShortTy))
9306     return Context.getExtVectorType(Context.ShortTy, VTy->getNumElements());
9307   else if (TypeSize == Context.getTypeSize(Context.IntTy))
9308     return Context.getExtVectorType(Context.IntTy, VTy->getNumElements());
9309   else if (TypeSize == Context.getTypeSize(Context.LongTy))
9310     return Context.getExtVectorType(Context.LongTy, VTy->getNumElements());
9311   assert(TypeSize == Context.getTypeSize(Context.LongLongTy) &&
9312          "Unhandled vector element size in vector compare");
9313   return Context.getExtVectorType(Context.LongLongTy, VTy->getNumElements());
9314 }
9315 
9316 /// CheckVectorCompareOperands - vector comparisons are a clang extension that
9317 /// operates on extended vector types.  Instead of producing an IntTy result,
9318 /// like a scalar comparison, a vector comparison produces a vector of integer
9319 /// types.
9320 QualType Sema::CheckVectorCompareOperands(ExprResult &LHS, ExprResult &RHS,
9321                                           SourceLocation Loc,
9322                                           bool IsRelational) {
9323   // Check to make sure we're operating on vectors of the same type and width,
9324   // Allowing one side to be a scalar of element type.
9325   QualType vType = CheckVectorOperands(LHS, RHS, Loc, /*isCompAssign*/false,
9326                               /*AllowBothBool*/true,
9327                               /*AllowBoolConversions*/getLangOpts().ZVector);
9328   if (vType.isNull())
9329     return vType;
9330 
9331   QualType LHSType = LHS.get()->getType();
9332 
9333   // If AltiVec, the comparison results in a numeric type, i.e.
9334   // bool for C++, int for C
9335   if (getLangOpts().AltiVec &&
9336       vType->getAs<VectorType>()->getVectorKind() == VectorType::AltiVecVector)
9337     return Context.getLogicalOperationType();
9338 
9339   // For non-floating point types, check for self-comparisons of the form
9340   // x == x, x != x, x < x, etc.  These always evaluate to a constant, and
9341   // often indicate logic errors in the program.
9342   if (!LHSType->hasFloatingRepresentation() &&
9343       ActiveTemplateInstantiations.empty()) {
9344     if (DeclRefExpr* DRL
9345           = dyn_cast<DeclRefExpr>(LHS.get()->IgnoreParenImpCasts()))
9346       if (DeclRefExpr* DRR
9347             = dyn_cast<DeclRefExpr>(RHS.get()->IgnoreParenImpCasts()))
9348         if (DRL->getDecl() == DRR->getDecl())
9349           DiagRuntimeBehavior(Loc, nullptr,
9350                               PDiag(diag::warn_comparison_always)
9351                                 << 0 // self-
9352                                 << 2 // "a constant"
9353                               );
9354   }
9355 
9356   // Check for comparisons of floating point operands using != and ==.
9357   if (!IsRelational && LHSType->hasFloatingRepresentation()) {
9358     assert (RHS.get()->getType()->hasFloatingRepresentation());
9359     CheckFloatComparison(Loc, LHS.get(), RHS.get());
9360   }
9361 
9362   // Return a signed type for the vector.
9363   return GetSignedVectorType(LHSType);
9364 }
9365 
9366 QualType Sema::CheckVectorLogicalOperands(ExprResult &LHS, ExprResult &RHS,
9367                                           SourceLocation Loc) {
9368   // Ensure that either both operands are of the same vector type, or
9369   // one operand is of a vector type and the other is of its element type.
9370   QualType vType = CheckVectorOperands(LHS, RHS, Loc, false,
9371                                        /*AllowBothBool*/true,
9372                                        /*AllowBoolConversions*/false);
9373   if (vType.isNull())
9374     return InvalidOperands(Loc, LHS, RHS);
9375   if (getLangOpts().OpenCL && getLangOpts().OpenCLVersion < 120 &&
9376       vType->hasFloatingRepresentation())
9377     return InvalidOperands(Loc, LHS, RHS);
9378 
9379   return GetSignedVectorType(LHS.get()->getType());
9380 }
9381 
9382 inline QualType Sema::CheckBitwiseOperands(
9383   ExprResult &LHS, ExprResult &RHS, SourceLocation Loc, bool IsCompAssign) {
9384   checkArithmeticNull(*this, LHS, RHS, Loc, /*isCompare=*/false);
9385 
9386   if (LHS.get()->getType()->isVectorType() ||
9387       RHS.get()->getType()->isVectorType()) {
9388     if (LHS.get()->getType()->hasIntegerRepresentation() &&
9389         RHS.get()->getType()->hasIntegerRepresentation())
9390       return CheckVectorOperands(LHS, RHS, Loc, IsCompAssign,
9391                         /*AllowBothBool*/true,
9392                         /*AllowBoolConversions*/getLangOpts().ZVector);
9393     return InvalidOperands(Loc, LHS, RHS);
9394   }
9395 
9396   ExprResult LHSResult = LHS, RHSResult = RHS;
9397   QualType compType = UsualArithmeticConversions(LHSResult, RHSResult,
9398                                                  IsCompAssign);
9399   if (LHSResult.isInvalid() || RHSResult.isInvalid())
9400     return QualType();
9401   LHS = LHSResult.get();
9402   RHS = RHSResult.get();
9403 
9404   if (!compType.isNull() && compType->isIntegralOrUnscopedEnumerationType())
9405     return compType;
9406   return InvalidOperands(Loc, LHS, RHS);
9407 }
9408 
9409 // C99 6.5.[13,14]
9410 inline QualType Sema::CheckLogicalOperands(ExprResult &LHS, ExprResult &RHS,
9411                                            SourceLocation Loc,
9412                                            BinaryOperatorKind Opc) {
9413   // Check vector operands differently.
9414   if (LHS.get()->getType()->isVectorType() || RHS.get()->getType()->isVectorType())
9415     return CheckVectorLogicalOperands(LHS, RHS, Loc);
9416 
9417   // Diagnose cases where the user write a logical and/or but probably meant a
9418   // bitwise one.  We do this when the LHS is a non-bool integer and the RHS
9419   // is a constant.
9420   if (LHS.get()->getType()->isIntegerType() &&
9421       !LHS.get()->getType()->isBooleanType() &&
9422       RHS.get()->getType()->isIntegerType() && !RHS.get()->isValueDependent() &&
9423       // Don't warn in macros or template instantiations.
9424       !Loc.isMacroID() && ActiveTemplateInstantiations.empty()) {
9425     // If the RHS can be constant folded, and if it constant folds to something
9426     // that isn't 0 or 1 (which indicate a potential logical operation that
9427     // happened to fold to true/false) then warn.
9428     // Parens on the RHS are ignored.
9429     llvm::APSInt Result;
9430     if (RHS.get()->EvaluateAsInt(Result, Context))
9431       if ((getLangOpts().Bool && !RHS.get()->getType()->isBooleanType() &&
9432            !RHS.get()->getExprLoc().isMacroID()) ||
9433           (Result != 0 && Result != 1)) {
9434         Diag(Loc, diag::warn_logical_instead_of_bitwise)
9435           << RHS.get()->getSourceRange()
9436           << (Opc == BO_LAnd ? "&&" : "||");
9437         // Suggest replacing the logical operator with the bitwise version
9438         Diag(Loc, diag::note_logical_instead_of_bitwise_change_operator)
9439             << (Opc == BO_LAnd ? "&" : "|")
9440             << FixItHint::CreateReplacement(SourceRange(
9441                                                  Loc, getLocForEndOfToken(Loc)),
9442                                             Opc == BO_LAnd ? "&" : "|");
9443         if (Opc == BO_LAnd)
9444           // Suggest replacing "Foo() && kNonZero" with "Foo()"
9445           Diag(Loc, diag::note_logical_instead_of_bitwise_remove_constant)
9446               << FixItHint::CreateRemoval(
9447                   SourceRange(getLocForEndOfToken(LHS.get()->getLocEnd()),
9448                               RHS.get()->getLocEnd()));
9449       }
9450   }
9451 
9452   if (!Context.getLangOpts().CPlusPlus) {
9453     // OpenCL v1.1 s6.3.g: The logical operators and (&&), or (||) do
9454     // not operate on the built-in scalar and vector float types.
9455     if (Context.getLangOpts().OpenCL &&
9456         Context.getLangOpts().OpenCLVersion < 120) {
9457       if (LHS.get()->getType()->isFloatingType() ||
9458           RHS.get()->getType()->isFloatingType())
9459         return InvalidOperands(Loc, LHS, RHS);
9460     }
9461 
9462     LHS = UsualUnaryConversions(LHS.get());
9463     if (LHS.isInvalid())
9464       return QualType();
9465 
9466     RHS = UsualUnaryConversions(RHS.get());
9467     if (RHS.isInvalid())
9468       return QualType();
9469 
9470     if (!LHS.get()->getType()->isScalarType() ||
9471         !RHS.get()->getType()->isScalarType())
9472       return InvalidOperands(Loc, LHS, RHS);
9473 
9474     return Context.IntTy;
9475   }
9476 
9477   // The following is safe because we only use this method for
9478   // non-overloadable operands.
9479 
9480   // C++ [expr.log.and]p1
9481   // C++ [expr.log.or]p1
9482   // The operands are both contextually converted to type bool.
9483   ExprResult LHSRes = PerformContextuallyConvertToBool(LHS.get());
9484   if (LHSRes.isInvalid())
9485     return InvalidOperands(Loc, LHS, RHS);
9486   LHS = LHSRes;
9487 
9488   ExprResult RHSRes = PerformContextuallyConvertToBool(RHS.get());
9489   if (RHSRes.isInvalid())
9490     return InvalidOperands(Loc, LHS, RHS);
9491   RHS = RHSRes;
9492 
9493   // C++ [expr.log.and]p2
9494   // C++ [expr.log.or]p2
9495   // The result is a bool.
9496   return Context.BoolTy;
9497 }
9498 
9499 static bool IsReadonlyMessage(Expr *E, Sema &S) {
9500   const MemberExpr *ME = dyn_cast<MemberExpr>(E);
9501   if (!ME) return false;
9502   if (!isa<FieldDecl>(ME->getMemberDecl())) return false;
9503   ObjCMessageExpr *Base =
9504     dyn_cast<ObjCMessageExpr>(ME->getBase()->IgnoreParenImpCasts());
9505   if (!Base) return false;
9506   return Base->getMethodDecl() != nullptr;
9507 }
9508 
9509 /// Is the given expression (which must be 'const') a reference to a
9510 /// variable which was originally non-const, but which has become
9511 /// 'const' due to being captured within a block?
9512 enum NonConstCaptureKind { NCCK_None, NCCK_Block, NCCK_Lambda };
9513 static NonConstCaptureKind isReferenceToNonConstCapture(Sema &S, Expr *E) {
9514   assert(E->isLValue() && E->getType().isConstQualified());
9515   E = E->IgnoreParens();
9516 
9517   // Must be a reference to a declaration from an enclosing scope.
9518   DeclRefExpr *DRE = dyn_cast<DeclRefExpr>(E);
9519   if (!DRE) return NCCK_None;
9520   if (!DRE->refersToEnclosingVariableOrCapture()) return NCCK_None;
9521 
9522   // The declaration must be a variable which is not declared 'const'.
9523   VarDecl *var = dyn_cast<VarDecl>(DRE->getDecl());
9524   if (!var) return NCCK_None;
9525   if (var->getType().isConstQualified()) return NCCK_None;
9526   assert(var->hasLocalStorage() && "capture added 'const' to non-local?");
9527 
9528   // Decide whether the first capture was for a block or a lambda.
9529   DeclContext *DC = S.CurContext, *Prev = nullptr;
9530   while (DC != var->getDeclContext()) {
9531     Prev = DC;
9532     DC = DC->getParent();
9533   }
9534   // Unless we have an init-capture, we've gone one step too far.
9535   if (!var->isInitCapture())
9536     DC = Prev;
9537   return (isa<BlockDecl>(DC) ? NCCK_Block : NCCK_Lambda);
9538 }
9539 
9540 static bool IsTypeModifiable(QualType Ty, bool IsDereference) {
9541   Ty = Ty.getNonReferenceType();
9542   if (IsDereference && Ty->isPointerType())
9543     Ty = Ty->getPointeeType();
9544   return !Ty.isConstQualified();
9545 }
9546 
9547 /// Emit the "read-only variable not assignable" error and print notes to give
9548 /// more information about why the variable is not assignable, such as pointing
9549 /// to the declaration of a const variable, showing that a method is const, or
9550 /// that the function is returning a const reference.
9551 static void DiagnoseConstAssignment(Sema &S, const Expr *E,
9552                                     SourceLocation Loc) {
9553   // Update err_typecheck_assign_const and note_typecheck_assign_const
9554   // when this enum is changed.
9555   enum {
9556     ConstFunction,
9557     ConstVariable,
9558     ConstMember,
9559     ConstMethod,
9560     ConstUnknown,  // Keep as last element
9561   };
9562 
9563   SourceRange ExprRange = E->getSourceRange();
9564 
9565   // Only emit one error on the first const found.  All other consts will emit
9566   // a note to the error.
9567   bool DiagnosticEmitted = false;
9568 
9569   // Track if the current expression is the result of a derefence, and if the
9570   // next checked expression is the result of a derefence.
9571   bool IsDereference = false;
9572   bool NextIsDereference = false;
9573 
9574   // Loop to process MemberExpr chains.
9575   while (true) {
9576     IsDereference = NextIsDereference;
9577     NextIsDereference = false;
9578 
9579     E = E->IgnoreParenImpCasts();
9580     if (const MemberExpr *ME = dyn_cast<MemberExpr>(E)) {
9581       NextIsDereference = ME->isArrow();
9582       const ValueDecl *VD = ME->getMemberDecl();
9583       if (const FieldDecl *Field = dyn_cast<FieldDecl>(VD)) {
9584         // Mutable fields can be modified even if the class is const.
9585         if (Field->isMutable()) {
9586           assert(DiagnosticEmitted && "Expected diagnostic not emitted.");
9587           break;
9588         }
9589 
9590         if (!IsTypeModifiable(Field->getType(), IsDereference)) {
9591           if (!DiagnosticEmitted) {
9592             S.Diag(Loc, diag::err_typecheck_assign_const)
9593                 << ExprRange << ConstMember << false /*static*/ << Field
9594                 << Field->getType();
9595             DiagnosticEmitted = true;
9596           }
9597           S.Diag(VD->getLocation(), diag::note_typecheck_assign_const)
9598               << ConstMember << false /*static*/ << Field << Field->getType()
9599               << Field->getSourceRange();
9600         }
9601         E = ME->getBase();
9602         continue;
9603       } else if (const VarDecl *VDecl = dyn_cast<VarDecl>(VD)) {
9604         if (VDecl->getType().isConstQualified()) {
9605           if (!DiagnosticEmitted) {
9606             S.Diag(Loc, diag::err_typecheck_assign_const)
9607                 << ExprRange << ConstMember << true /*static*/ << VDecl
9608                 << VDecl->getType();
9609             DiagnosticEmitted = true;
9610           }
9611           S.Diag(VD->getLocation(), diag::note_typecheck_assign_const)
9612               << ConstMember << true /*static*/ << VDecl << VDecl->getType()
9613               << VDecl->getSourceRange();
9614         }
9615         // Static fields do not inherit constness from parents.
9616         break;
9617       }
9618       break;
9619     } // End MemberExpr
9620     break;
9621   }
9622 
9623   if (const CallExpr *CE = dyn_cast<CallExpr>(E)) {
9624     // Function calls
9625     const FunctionDecl *FD = CE->getDirectCallee();
9626     if (FD && !IsTypeModifiable(FD->getReturnType(), IsDereference)) {
9627       if (!DiagnosticEmitted) {
9628         S.Diag(Loc, diag::err_typecheck_assign_const) << ExprRange
9629                                                       << ConstFunction << FD;
9630         DiagnosticEmitted = true;
9631       }
9632       S.Diag(FD->getReturnTypeSourceRange().getBegin(),
9633              diag::note_typecheck_assign_const)
9634           << ConstFunction << FD << FD->getReturnType()
9635           << FD->getReturnTypeSourceRange();
9636     }
9637   } else if (const DeclRefExpr *DRE = dyn_cast<DeclRefExpr>(E)) {
9638     // Point to variable declaration.
9639     if (const ValueDecl *VD = DRE->getDecl()) {
9640       if (!IsTypeModifiable(VD->getType(), IsDereference)) {
9641         if (!DiagnosticEmitted) {
9642           S.Diag(Loc, diag::err_typecheck_assign_const)
9643               << ExprRange << ConstVariable << VD << VD->getType();
9644           DiagnosticEmitted = true;
9645         }
9646         S.Diag(VD->getLocation(), diag::note_typecheck_assign_const)
9647             << ConstVariable << VD << VD->getType() << VD->getSourceRange();
9648       }
9649     }
9650   } else if (isa<CXXThisExpr>(E)) {
9651     if (const DeclContext *DC = S.getFunctionLevelDeclContext()) {
9652       if (const CXXMethodDecl *MD = dyn_cast<CXXMethodDecl>(DC)) {
9653         if (MD->isConst()) {
9654           if (!DiagnosticEmitted) {
9655             S.Diag(Loc, diag::err_typecheck_assign_const) << ExprRange
9656                                                           << ConstMethod << MD;
9657             DiagnosticEmitted = true;
9658           }
9659           S.Diag(MD->getLocation(), diag::note_typecheck_assign_const)
9660               << ConstMethod << MD << MD->getSourceRange();
9661         }
9662       }
9663     }
9664   }
9665 
9666   if (DiagnosticEmitted)
9667     return;
9668 
9669   // Can't determine a more specific message, so display the generic error.
9670   S.Diag(Loc, diag::err_typecheck_assign_const) << ExprRange << ConstUnknown;
9671 }
9672 
9673 /// CheckForModifiableLvalue - Verify that E is a modifiable lvalue.  If not,
9674 /// emit an error and return true.  If so, return false.
9675 static bool CheckForModifiableLvalue(Expr *E, SourceLocation Loc, Sema &S) {
9676   assert(!E->hasPlaceholderType(BuiltinType::PseudoObject));
9677   SourceLocation OrigLoc = Loc;
9678   Expr::isModifiableLvalueResult IsLV = E->isModifiableLvalue(S.Context,
9679                                                               &Loc);
9680   if (IsLV == Expr::MLV_ClassTemporary && IsReadonlyMessage(E, S))
9681     IsLV = Expr::MLV_InvalidMessageExpression;
9682   if (IsLV == Expr::MLV_Valid)
9683     return false;
9684 
9685   unsigned DiagID = 0;
9686   bool NeedType = false;
9687   switch (IsLV) { // C99 6.5.16p2
9688   case Expr::MLV_ConstQualified:
9689     // Use a specialized diagnostic when we're assigning to an object
9690     // from an enclosing function or block.
9691     if (NonConstCaptureKind NCCK = isReferenceToNonConstCapture(S, E)) {
9692       if (NCCK == NCCK_Block)
9693         DiagID = diag::err_block_decl_ref_not_modifiable_lvalue;
9694       else
9695         DiagID = diag::err_lambda_decl_ref_not_modifiable_lvalue;
9696       break;
9697     }
9698 
9699     // In ARC, use some specialized diagnostics for occasions where we
9700     // infer 'const'.  These are always pseudo-strong variables.
9701     if (S.getLangOpts().ObjCAutoRefCount) {
9702       DeclRefExpr *declRef = dyn_cast<DeclRefExpr>(E->IgnoreParenCasts());
9703       if (declRef && isa<VarDecl>(declRef->getDecl())) {
9704         VarDecl *var = cast<VarDecl>(declRef->getDecl());
9705 
9706         // Use the normal diagnostic if it's pseudo-__strong but the
9707         // user actually wrote 'const'.
9708         if (var->isARCPseudoStrong() &&
9709             (!var->getTypeSourceInfo() ||
9710              !var->getTypeSourceInfo()->getType().isConstQualified())) {
9711           // There are two pseudo-strong cases:
9712           //  - self
9713           ObjCMethodDecl *method = S.getCurMethodDecl();
9714           if (method && var == method->getSelfDecl())
9715             DiagID = method->isClassMethod()
9716               ? diag::err_typecheck_arc_assign_self_class_method
9717               : diag::err_typecheck_arc_assign_self;
9718 
9719           //  - fast enumeration variables
9720           else
9721             DiagID = diag::err_typecheck_arr_assign_enumeration;
9722 
9723           SourceRange Assign;
9724           if (Loc != OrigLoc)
9725             Assign = SourceRange(OrigLoc, OrigLoc);
9726           S.Diag(Loc, DiagID) << E->getSourceRange() << Assign;
9727           // We need to preserve the AST regardless, so migration tool
9728           // can do its job.
9729           return false;
9730         }
9731       }
9732     }
9733 
9734     // If none of the special cases above are triggered, then this is a
9735     // simple const assignment.
9736     if (DiagID == 0) {
9737       DiagnoseConstAssignment(S, E, Loc);
9738       return true;
9739     }
9740 
9741     break;
9742   case Expr::MLV_ConstAddrSpace:
9743     DiagnoseConstAssignment(S, E, Loc);
9744     return true;
9745   case Expr::MLV_ArrayType:
9746   case Expr::MLV_ArrayTemporary:
9747     DiagID = diag::err_typecheck_array_not_modifiable_lvalue;
9748     NeedType = true;
9749     break;
9750   case Expr::MLV_NotObjectType:
9751     DiagID = diag::err_typecheck_non_object_not_modifiable_lvalue;
9752     NeedType = true;
9753     break;
9754   case Expr::MLV_LValueCast:
9755     DiagID = diag::err_typecheck_lvalue_casts_not_supported;
9756     break;
9757   case Expr::MLV_Valid:
9758     llvm_unreachable("did not take early return for MLV_Valid");
9759   case Expr::MLV_InvalidExpression:
9760   case Expr::MLV_MemberFunction:
9761   case Expr::MLV_ClassTemporary:
9762     DiagID = diag::err_typecheck_expression_not_modifiable_lvalue;
9763     break;
9764   case Expr::MLV_IncompleteType:
9765   case Expr::MLV_IncompleteVoidType:
9766     return S.RequireCompleteType(Loc, E->getType(),
9767              diag::err_typecheck_incomplete_type_not_modifiable_lvalue, E);
9768   case Expr::MLV_DuplicateVectorComponents:
9769     DiagID = diag::err_typecheck_duplicate_vector_components_not_mlvalue;
9770     break;
9771   case Expr::MLV_NoSetterProperty:
9772     llvm_unreachable("readonly properties should be processed differently");
9773   case Expr::MLV_InvalidMessageExpression:
9774     DiagID = diag::error_readonly_message_assignment;
9775     break;
9776   case Expr::MLV_SubObjCPropertySetting:
9777     DiagID = diag::error_no_subobject_property_setting;
9778     break;
9779   }
9780 
9781   SourceRange Assign;
9782   if (Loc != OrigLoc)
9783     Assign = SourceRange(OrigLoc, OrigLoc);
9784   if (NeedType)
9785     S.Diag(Loc, DiagID) << E->getType() << E->getSourceRange() << Assign;
9786   else
9787     S.Diag(Loc, DiagID) << E->getSourceRange() << Assign;
9788   return true;
9789 }
9790 
9791 static void CheckIdentityFieldAssignment(Expr *LHSExpr, Expr *RHSExpr,
9792                                          SourceLocation Loc,
9793                                          Sema &Sema) {
9794   // C / C++ fields
9795   MemberExpr *ML = dyn_cast<MemberExpr>(LHSExpr);
9796   MemberExpr *MR = dyn_cast<MemberExpr>(RHSExpr);
9797   if (ML && MR && ML->getMemberDecl() == MR->getMemberDecl()) {
9798     if (isa<CXXThisExpr>(ML->getBase()) && isa<CXXThisExpr>(MR->getBase()))
9799       Sema.Diag(Loc, diag::warn_identity_field_assign) << 0;
9800   }
9801 
9802   // Objective-C instance variables
9803   ObjCIvarRefExpr *OL = dyn_cast<ObjCIvarRefExpr>(LHSExpr);
9804   ObjCIvarRefExpr *OR = dyn_cast<ObjCIvarRefExpr>(RHSExpr);
9805   if (OL && OR && OL->getDecl() == OR->getDecl()) {
9806     DeclRefExpr *RL = dyn_cast<DeclRefExpr>(OL->getBase()->IgnoreImpCasts());
9807     DeclRefExpr *RR = dyn_cast<DeclRefExpr>(OR->getBase()->IgnoreImpCasts());
9808     if (RL && RR && RL->getDecl() == RR->getDecl())
9809       Sema.Diag(Loc, diag::warn_identity_field_assign) << 1;
9810   }
9811 }
9812 
9813 // C99 6.5.16.1
9814 QualType Sema::CheckAssignmentOperands(Expr *LHSExpr, ExprResult &RHS,
9815                                        SourceLocation Loc,
9816                                        QualType CompoundType) {
9817   assert(!LHSExpr->hasPlaceholderType(BuiltinType::PseudoObject));
9818 
9819   // Verify that LHS is a modifiable lvalue, and emit error if not.
9820   if (CheckForModifiableLvalue(LHSExpr, Loc, *this))
9821     return QualType();
9822 
9823   QualType LHSType = LHSExpr->getType();
9824   QualType RHSType = CompoundType.isNull() ? RHS.get()->getType() :
9825                                              CompoundType;
9826   AssignConvertType ConvTy;
9827   if (CompoundType.isNull()) {
9828     Expr *RHSCheck = RHS.get();
9829 
9830     CheckIdentityFieldAssignment(LHSExpr, RHSCheck, Loc, *this);
9831 
9832     QualType LHSTy(LHSType);
9833     ConvTy = CheckSingleAssignmentConstraints(LHSTy, RHS);
9834     if (RHS.isInvalid())
9835       return QualType();
9836     // Special case of NSObject attributes on c-style pointer types.
9837     if (ConvTy == IncompatiblePointer &&
9838         ((Context.isObjCNSObjectType(LHSType) &&
9839           RHSType->isObjCObjectPointerType()) ||
9840          (Context.isObjCNSObjectType(RHSType) &&
9841           LHSType->isObjCObjectPointerType())))
9842       ConvTy = Compatible;
9843 
9844     if (ConvTy == Compatible &&
9845         LHSType->isObjCObjectType())
9846         Diag(Loc, diag::err_objc_object_assignment)
9847           << LHSType;
9848 
9849     // If the RHS is a unary plus or minus, check to see if they = and + are
9850     // right next to each other.  If so, the user may have typo'd "x =+ 4"
9851     // instead of "x += 4".
9852     if (ImplicitCastExpr *ICE = dyn_cast<ImplicitCastExpr>(RHSCheck))
9853       RHSCheck = ICE->getSubExpr();
9854     if (UnaryOperator *UO = dyn_cast<UnaryOperator>(RHSCheck)) {
9855       if ((UO->getOpcode() == UO_Plus ||
9856            UO->getOpcode() == UO_Minus) &&
9857           Loc.isFileID() && UO->getOperatorLoc().isFileID() &&
9858           // Only if the two operators are exactly adjacent.
9859           Loc.getLocWithOffset(1) == UO->getOperatorLoc() &&
9860           // And there is a space or other character before the subexpr of the
9861           // unary +/-.  We don't want to warn on "x=-1".
9862           Loc.getLocWithOffset(2) != UO->getSubExpr()->getLocStart() &&
9863           UO->getSubExpr()->getLocStart().isFileID()) {
9864         Diag(Loc, diag::warn_not_compound_assign)
9865           << (UO->getOpcode() == UO_Plus ? "+" : "-")
9866           << SourceRange(UO->getOperatorLoc(), UO->getOperatorLoc());
9867       }
9868     }
9869 
9870     if (ConvTy == Compatible) {
9871       if (LHSType.getObjCLifetime() == Qualifiers::OCL_Strong) {
9872         // Warn about retain cycles where a block captures the LHS, but
9873         // not if the LHS is a simple variable into which the block is
9874         // being stored...unless that variable can be captured by reference!
9875         const Expr *InnerLHS = LHSExpr->IgnoreParenCasts();
9876         const DeclRefExpr *DRE = dyn_cast<DeclRefExpr>(InnerLHS);
9877         if (!DRE || DRE->getDecl()->hasAttr<BlocksAttr>())
9878           checkRetainCycles(LHSExpr, RHS.get());
9879 
9880         // It is safe to assign a weak reference into a strong variable.
9881         // Although this code can still have problems:
9882         //   id x = self.weakProp;
9883         //   id y = self.weakProp;
9884         // we do not warn to warn spuriously when 'x' and 'y' are on separate
9885         // paths through the function. This should be revisited if
9886         // -Wrepeated-use-of-weak is made flow-sensitive.
9887         if (!Diags.isIgnored(diag::warn_arc_repeated_use_of_weak,
9888                              RHS.get()->getLocStart()))
9889           getCurFunction()->markSafeWeakUse(RHS.get());
9890 
9891       } else if (getLangOpts().ObjCAutoRefCount) {
9892         checkUnsafeExprAssigns(Loc, LHSExpr, RHS.get());
9893       }
9894     }
9895   } else {
9896     // Compound assignment "x += y"
9897     ConvTy = CheckAssignmentConstraints(Loc, LHSType, RHSType);
9898   }
9899 
9900   if (DiagnoseAssignmentResult(ConvTy, Loc, LHSType, RHSType,
9901                                RHS.get(), AA_Assigning))
9902     return QualType();
9903 
9904   CheckForNullPointerDereference(*this, LHSExpr);
9905 
9906   // C99 6.5.16p3: The type of an assignment expression is the type of the
9907   // left operand unless the left operand has qualified type, in which case
9908   // it is the unqualified version of the type of the left operand.
9909   // C99 6.5.16.1p2: In simple assignment, the value of the right operand
9910   // is converted to the type of the assignment expression (above).
9911   // C++ 5.17p1: the type of the assignment expression is that of its left
9912   // operand.
9913   return (getLangOpts().CPlusPlus
9914           ? LHSType : LHSType.getUnqualifiedType());
9915 }
9916 
9917 // Only ignore explicit casts to void.
9918 static bool IgnoreCommaOperand(const Expr *E) {
9919   E = E->IgnoreParens();
9920 
9921   if (const CastExpr *CE = dyn_cast<CastExpr>(E)) {
9922     if (CE->getCastKind() == CK_ToVoid) {
9923       return true;
9924     }
9925   }
9926 
9927   return false;
9928 }
9929 
9930 // Look for instances where it is likely the comma operator is confused with
9931 // another operator.  There is a whitelist of acceptable expressions for the
9932 // left hand side of the comma operator, otherwise emit a warning.
9933 void Sema::DiagnoseCommaOperator(const Expr *LHS, SourceLocation Loc) {
9934   // No warnings in macros
9935   if (Loc.isMacroID())
9936     return;
9937 
9938   // Don't warn in template instantiations.
9939   if (!ActiveTemplateInstantiations.empty())
9940     return;
9941 
9942   // Scope isn't fine-grained enough to whitelist the specific cases, so
9943   // instead, skip more than needed, then call back into here with the
9944   // CommaVisitor in SemaStmt.cpp.
9945   // The whitelisted locations are the initialization and increment portions
9946   // of a for loop.  The additional checks are on the condition of
9947   // if statements, do/while loops, and for loops.
9948   const unsigned ForIncrementFlags =
9949       Scope::ControlScope | Scope::ContinueScope | Scope::BreakScope;
9950   const unsigned ForInitFlags = Scope::ControlScope | Scope::DeclScope;
9951   const unsigned ScopeFlags = getCurScope()->getFlags();
9952   if ((ScopeFlags & ForIncrementFlags) == ForIncrementFlags ||
9953       (ScopeFlags & ForInitFlags) == ForInitFlags)
9954     return;
9955 
9956   // If there are multiple comma operators used together, get the RHS of the
9957   // of the comma operator as the LHS.
9958   while (const BinaryOperator *BO = dyn_cast<BinaryOperator>(LHS)) {
9959     if (BO->getOpcode() != BO_Comma)
9960       break;
9961     LHS = BO->getRHS();
9962   }
9963 
9964   // Only allow some expressions on LHS to not warn.
9965   if (IgnoreCommaOperand(LHS))
9966     return;
9967 
9968   Diag(Loc, diag::warn_comma_operator);
9969   Diag(LHS->getLocStart(), diag::note_cast_to_void)
9970       << LHS->getSourceRange()
9971       << FixItHint::CreateInsertion(LHS->getLocStart(),
9972                                     LangOpts.CPlusPlus ? "static_cast<void>("
9973                                                        : "(void)(")
9974       << FixItHint::CreateInsertion(PP.getLocForEndOfToken(LHS->getLocEnd()),
9975                                     ")");
9976 }
9977 
9978 // C99 6.5.17
9979 static QualType CheckCommaOperands(Sema &S, ExprResult &LHS, ExprResult &RHS,
9980                                    SourceLocation Loc) {
9981   LHS = S.CheckPlaceholderExpr(LHS.get());
9982   RHS = S.CheckPlaceholderExpr(RHS.get());
9983   if (LHS.isInvalid() || RHS.isInvalid())
9984     return QualType();
9985 
9986   // C's comma performs lvalue conversion (C99 6.3.2.1) on both its
9987   // operands, but not unary promotions.
9988   // C++'s comma does not do any conversions at all (C++ [expr.comma]p1).
9989 
9990   // So we treat the LHS as a ignored value, and in C++ we allow the
9991   // containing site to determine what should be done with the RHS.
9992   LHS = S.IgnoredValueConversions(LHS.get());
9993   if (LHS.isInvalid())
9994     return QualType();
9995 
9996   S.DiagnoseUnusedExprResult(LHS.get());
9997 
9998   if (!S.getLangOpts().CPlusPlus) {
9999     RHS = S.DefaultFunctionArrayLvalueConversion(RHS.get());
10000     if (RHS.isInvalid())
10001       return QualType();
10002     if (!RHS.get()->getType()->isVoidType())
10003       S.RequireCompleteType(Loc, RHS.get()->getType(),
10004                             diag::err_incomplete_type);
10005   }
10006 
10007   if (!S.getDiagnostics().isIgnored(diag::warn_comma_operator, Loc))
10008     S.DiagnoseCommaOperator(LHS.get(), Loc);
10009 
10010   return RHS.get()->getType();
10011 }
10012 
10013 /// CheckIncrementDecrementOperand - unlike most "Check" methods, this routine
10014 /// doesn't need to call UsualUnaryConversions or UsualArithmeticConversions.
10015 static QualType CheckIncrementDecrementOperand(Sema &S, Expr *Op,
10016                                                ExprValueKind &VK,
10017                                                ExprObjectKind &OK,
10018                                                SourceLocation OpLoc,
10019                                                bool IsInc, bool IsPrefix) {
10020   if (Op->isTypeDependent())
10021     return S.Context.DependentTy;
10022 
10023   QualType ResType = Op->getType();
10024   // Atomic types can be used for increment / decrement where the non-atomic
10025   // versions can, so ignore the _Atomic() specifier for the purpose of
10026   // checking.
10027   if (const AtomicType *ResAtomicType = ResType->getAs<AtomicType>())
10028     ResType = ResAtomicType->getValueType();
10029 
10030   assert(!ResType.isNull() && "no type for increment/decrement expression");
10031 
10032   if (S.getLangOpts().CPlusPlus && ResType->isBooleanType()) {
10033     // Decrement of bool is not allowed.
10034     if (!IsInc) {
10035       S.Diag(OpLoc, diag::err_decrement_bool) << Op->getSourceRange();
10036       return QualType();
10037     }
10038     // Increment of bool sets it to true, but is deprecated.
10039     S.Diag(OpLoc, S.getLangOpts().CPlusPlus1z ? diag::ext_increment_bool
10040                                               : diag::warn_increment_bool)
10041       << Op->getSourceRange();
10042   } else if (S.getLangOpts().CPlusPlus && ResType->isEnumeralType()) {
10043     // Error on enum increments and decrements in C++ mode
10044     S.Diag(OpLoc, diag::err_increment_decrement_enum) << IsInc << ResType;
10045     return QualType();
10046   } else if (ResType->isRealType()) {
10047     // OK!
10048   } else if (ResType->isPointerType()) {
10049     // C99 6.5.2.4p2, 6.5.6p2
10050     if (!checkArithmeticOpPointerOperand(S, OpLoc, Op))
10051       return QualType();
10052   } else if (ResType->isObjCObjectPointerType()) {
10053     // On modern runtimes, ObjC pointer arithmetic is forbidden.
10054     // Otherwise, we just need a complete type.
10055     if (checkArithmeticIncompletePointerType(S, OpLoc, Op) ||
10056         checkArithmeticOnObjCPointer(S, OpLoc, Op))
10057       return QualType();
10058   } else if (ResType->isAnyComplexType()) {
10059     // C99 does not support ++/-- on complex types, we allow as an extension.
10060     S.Diag(OpLoc, diag::ext_integer_increment_complex)
10061       << ResType << Op->getSourceRange();
10062   } else if (ResType->isPlaceholderType()) {
10063     ExprResult PR = S.CheckPlaceholderExpr(Op);
10064     if (PR.isInvalid()) return QualType();
10065     return CheckIncrementDecrementOperand(S, PR.get(), VK, OK, OpLoc,
10066                                           IsInc, IsPrefix);
10067   } else if (S.getLangOpts().AltiVec && ResType->isVectorType()) {
10068     // OK! ( C/C++ Language Extensions for CBEA(Version 2.6) 10.3 )
10069   } else if (S.getLangOpts().ZVector && ResType->isVectorType() &&
10070              (ResType->getAs<VectorType>()->getVectorKind() !=
10071               VectorType::AltiVecBool)) {
10072     // The z vector extensions allow ++ and -- for non-bool vectors.
10073   } else if(S.getLangOpts().OpenCL && ResType->isVectorType() &&
10074             ResType->getAs<VectorType>()->getElementType()->isIntegerType()) {
10075     // OpenCL V1.2 6.3 says dec/inc ops operate on integer vector types.
10076   } else {
10077     S.Diag(OpLoc, diag::err_typecheck_illegal_increment_decrement)
10078       << ResType << int(IsInc) << Op->getSourceRange();
10079     return QualType();
10080   }
10081   // At this point, we know we have a real, complex or pointer type.
10082   // Now make sure the operand is a modifiable lvalue.
10083   if (CheckForModifiableLvalue(Op, OpLoc, S))
10084     return QualType();
10085   // In C++, a prefix increment is the same type as the operand. Otherwise
10086   // (in C or with postfix), the increment is the unqualified type of the
10087   // operand.
10088   if (IsPrefix && S.getLangOpts().CPlusPlus) {
10089     VK = VK_LValue;
10090     OK = Op->getObjectKind();
10091     return ResType;
10092   } else {
10093     VK = VK_RValue;
10094     return ResType.getUnqualifiedType();
10095   }
10096 }
10097 
10098 
10099 /// getPrimaryDecl - Helper function for CheckAddressOfOperand().
10100 /// This routine allows us to typecheck complex/recursive expressions
10101 /// where the declaration is needed for type checking. We only need to
10102 /// handle cases when the expression references a function designator
10103 /// or is an lvalue. Here are some examples:
10104 ///  - &(x) => x
10105 ///  - &*****f => f for f a function designator.
10106 ///  - &s.xx => s
10107 ///  - &s.zz[1].yy -> s, if zz is an array
10108 ///  - *(x + 1) -> x, if x is an array
10109 ///  - &"123"[2] -> 0
10110 ///  - & __real__ x -> x
10111 static ValueDecl *getPrimaryDecl(Expr *E) {
10112   switch (E->getStmtClass()) {
10113   case Stmt::DeclRefExprClass:
10114     return cast<DeclRefExpr>(E)->getDecl();
10115   case Stmt::MemberExprClass:
10116     // If this is an arrow operator, the address is an offset from
10117     // the base's value, so the object the base refers to is
10118     // irrelevant.
10119     if (cast<MemberExpr>(E)->isArrow())
10120       return nullptr;
10121     // Otherwise, the expression refers to a part of the base
10122     return getPrimaryDecl(cast<MemberExpr>(E)->getBase());
10123   case Stmt::ArraySubscriptExprClass: {
10124     // FIXME: This code shouldn't be necessary!  We should catch the implicit
10125     // promotion of register arrays earlier.
10126     Expr* Base = cast<ArraySubscriptExpr>(E)->getBase();
10127     if (ImplicitCastExpr* ICE = dyn_cast<ImplicitCastExpr>(Base)) {
10128       if (ICE->getSubExpr()->getType()->isArrayType())
10129         return getPrimaryDecl(ICE->getSubExpr());
10130     }
10131     return nullptr;
10132   }
10133   case Stmt::UnaryOperatorClass: {
10134     UnaryOperator *UO = cast<UnaryOperator>(E);
10135 
10136     switch(UO->getOpcode()) {
10137     case UO_Real:
10138     case UO_Imag:
10139     case UO_Extension:
10140       return getPrimaryDecl(UO->getSubExpr());
10141     default:
10142       return nullptr;
10143     }
10144   }
10145   case Stmt::ParenExprClass:
10146     return getPrimaryDecl(cast<ParenExpr>(E)->getSubExpr());
10147   case Stmt::ImplicitCastExprClass:
10148     // If the result of an implicit cast is an l-value, we care about
10149     // the sub-expression; otherwise, the result here doesn't matter.
10150     return getPrimaryDecl(cast<ImplicitCastExpr>(E)->getSubExpr());
10151   default:
10152     return nullptr;
10153   }
10154 }
10155 
10156 namespace {
10157   enum {
10158     AO_Bit_Field = 0,
10159     AO_Vector_Element = 1,
10160     AO_Property_Expansion = 2,
10161     AO_Register_Variable = 3,
10162     AO_No_Error = 4
10163   };
10164 }
10165 /// \brief Diagnose invalid operand for address of operations.
10166 ///
10167 /// \param Type The type of operand which cannot have its address taken.
10168 static void diagnoseAddressOfInvalidType(Sema &S, SourceLocation Loc,
10169                                          Expr *E, unsigned Type) {
10170   S.Diag(Loc, diag::err_typecheck_address_of) << Type << E->getSourceRange();
10171 }
10172 
10173 /// CheckAddressOfOperand - The operand of & must be either a function
10174 /// designator or an lvalue designating an object. If it is an lvalue, the
10175 /// object cannot be declared with storage class register or be a bit field.
10176 /// Note: The usual conversions are *not* applied to the operand of the &
10177 /// operator (C99 6.3.2.1p[2-4]), and its result is never an lvalue.
10178 /// In C++, the operand might be an overloaded function name, in which case
10179 /// we allow the '&' but retain the overloaded-function type.
10180 QualType Sema::CheckAddressOfOperand(ExprResult &OrigOp, SourceLocation OpLoc) {
10181   if (const BuiltinType *PTy = OrigOp.get()->getType()->getAsPlaceholderType()){
10182     if (PTy->getKind() == BuiltinType::Overload) {
10183       Expr *E = OrigOp.get()->IgnoreParens();
10184       if (!isa<OverloadExpr>(E)) {
10185         assert(cast<UnaryOperator>(E)->getOpcode() == UO_AddrOf);
10186         Diag(OpLoc, diag::err_typecheck_invalid_lvalue_addrof_addrof_function)
10187           << OrigOp.get()->getSourceRange();
10188         return QualType();
10189       }
10190 
10191       OverloadExpr *Ovl = cast<OverloadExpr>(E);
10192       if (isa<UnresolvedMemberExpr>(Ovl))
10193         if (!ResolveSingleFunctionTemplateSpecialization(Ovl)) {
10194           Diag(OpLoc, diag::err_invalid_form_pointer_member_function)
10195             << OrigOp.get()->getSourceRange();
10196           return QualType();
10197         }
10198 
10199       return Context.OverloadTy;
10200     }
10201 
10202     if (PTy->getKind() == BuiltinType::UnknownAny)
10203       return Context.UnknownAnyTy;
10204 
10205     if (PTy->getKind() == BuiltinType::BoundMember) {
10206       Diag(OpLoc, diag::err_invalid_form_pointer_member_function)
10207         << OrigOp.get()->getSourceRange();
10208       return QualType();
10209     }
10210 
10211     OrigOp = CheckPlaceholderExpr(OrigOp.get());
10212     if (OrigOp.isInvalid()) return QualType();
10213   }
10214 
10215   if (OrigOp.get()->isTypeDependent())
10216     return Context.DependentTy;
10217 
10218   assert(!OrigOp.get()->getType()->isPlaceholderType());
10219 
10220   // Make sure to ignore parentheses in subsequent checks
10221   Expr *op = OrigOp.get()->IgnoreParens();
10222 
10223   // OpenCL v1.0 s6.8.a.3: Pointers to functions are not allowed.
10224   if (LangOpts.OpenCL && op->getType()->isFunctionType()) {
10225     Diag(op->getExprLoc(), diag::err_opencl_taking_function_address);
10226     return QualType();
10227   }
10228 
10229   if (getLangOpts().C99) {
10230     // Implement C99-only parts of addressof rules.
10231     if (UnaryOperator* uOp = dyn_cast<UnaryOperator>(op)) {
10232       if (uOp->getOpcode() == UO_Deref)
10233         // Per C99 6.5.3.2, the address of a deref always returns a valid result
10234         // (assuming the deref expression is valid).
10235         return uOp->getSubExpr()->getType();
10236     }
10237     // Technically, there should be a check for array subscript
10238     // expressions here, but the result of one is always an lvalue anyway.
10239   }
10240   ValueDecl *dcl = getPrimaryDecl(op);
10241 
10242   if (auto *FD = dyn_cast_or_null<FunctionDecl>(dcl))
10243     if (!checkAddressOfFunctionIsAvailable(FD, /*Complain=*/true,
10244                                            op->getLocStart()))
10245       return QualType();
10246 
10247   Expr::LValueClassification lval = op->ClassifyLValue(Context);
10248   unsigned AddressOfError = AO_No_Error;
10249 
10250   if (lval == Expr::LV_ClassTemporary || lval == Expr::LV_ArrayTemporary) {
10251     bool sfinae = (bool)isSFINAEContext();
10252     Diag(OpLoc, isSFINAEContext() ? diag::err_typecheck_addrof_temporary
10253                                   : diag::ext_typecheck_addrof_temporary)
10254       << op->getType() << op->getSourceRange();
10255     if (sfinae)
10256       return QualType();
10257     // Materialize the temporary as an lvalue so that we can take its address.
10258     OrigOp = op = new (Context)
10259         MaterializeTemporaryExpr(op->getType(), OrigOp.get(), true);
10260   } else if (isa<ObjCSelectorExpr>(op)) {
10261     return Context.getPointerType(op->getType());
10262   } else if (lval == Expr::LV_MemberFunction) {
10263     // If it's an instance method, make a member pointer.
10264     // The expression must have exactly the form &A::foo.
10265 
10266     // If the underlying expression isn't a decl ref, give up.
10267     if (!isa<DeclRefExpr>(op)) {
10268       Diag(OpLoc, diag::err_invalid_form_pointer_member_function)
10269         << OrigOp.get()->getSourceRange();
10270       return QualType();
10271     }
10272     DeclRefExpr *DRE = cast<DeclRefExpr>(op);
10273     CXXMethodDecl *MD = cast<CXXMethodDecl>(DRE->getDecl());
10274 
10275     // The id-expression was parenthesized.
10276     if (OrigOp.get() != DRE) {
10277       Diag(OpLoc, diag::err_parens_pointer_member_function)
10278         << OrigOp.get()->getSourceRange();
10279 
10280     // The method was named without a qualifier.
10281     } else if (!DRE->getQualifier()) {
10282       if (MD->getParent()->getName().empty())
10283         Diag(OpLoc, diag::err_unqualified_pointer_member_function)
10284           << op->getSourceRange();
10285       else {
10286         SmallString<32> Str;
10287         StringRef Qual = (MD->getParent()->getName() + "::").toStringRef(Str);
10288         Diag(OpLoc, diag::err_unqualified_pointer_member_function)
10289           << op->getSourceRange()
10290           << FixItHint::CreateInsertion(op->getSourceRange().getBegin(), Qual);
10291       }
10292     }
10293 
10294     // Taking the address of a dtor is illegal per C++ [class.dtor]p2.
10295     if (isa<CXXDestructorDecl>(MD))
10296       Diag(OpLoc, diag::err_typecheck_addrof_dtor) << op->getSourceRange();
10297 
10298     QualType MPTy = Context.getMemberPointerType(
10299         op->getType(), Context.getTypeDeclType(MD->getParent()).getTypePtr());
10300     // Under the MS ABI, lock down the inheritance model now.
10301     if (Context.getTargetInfo().getCXXABI().isMicrosoft())
10302       (void)isCompleteType(OpLoc, MPTy);
10303     return MPTy;
10304   } else if (lval != Expr::LV_Valid && lval != Expr::LV_IncompleteVoidType) {
10305     // C99 6.5.3.2p1
10306     // The operand must be either an l-value or a function designator
10307     if (!op->getType()->isFunctionType()) {
10308       // Use a special diagnostic for loads from property references.
10309       if (isa<PseudoObjectExpr>(op)) {
10310         AddressOfError = AO_Property_Expansion;
10311       } else {
10312         Diag(OpLoc, diag::err_typecheck_invalid_lvalue_addrof)
10313           << op->getType() << op->getSourceRange();
10314         return QualType();
10315       }
10316     }
10317   } else if (op->getObjectKind() == OK_BitField) { // C99 6.5.3.2p1
10318     // The operand cannot be a bit-field
10319     AddressOfError = AO_Bit_Field;
10320   } else if (op->getObjectKind() == OK_VectorComponent) {
10321     // The operand cannot be an element of a vector
10322     AddressOfError = AO_Vector_Element;
10323   } else if (dcl) { // C99 6.5.3.2p1
10324     // We have an lvalue with a decl. Make sure the decl is not declared
10325     // with the register storage-class specifier.
10326     if (const VarDecl *vd = dyn_cast<VarDecl>(dcl)) {
10327       // in C++ it is not error to take address of a register
10328       // variable (c++03 7.1.1P3)
10329       if (vd->getStorageClass() == SC_Register &&
10330           !getLangOpts().CPlusPlus) {
10331         AddressOfError = AO_Register_Variable;
10332       }
10333     } else if (isa<MSPropertyDecl>(dcl)) {
10334       AddressOfError = AO_Property_Expansion;
10335     } else if (isa<FunctionTemplateDecl>(dcl)) {
10336       return Context.OverloadTy;
10337     } else if (isa<FieldDecl>(dcl) || isa<IndirectFieldDecl>(dcl)) {
10338       // Okay: we can take the address of a field.
10339       // Could be a pointer to member, though, if there is an explicit
10340       // scope qualifier for the class.
10341       if (isa<DeclRefExpr>(op) && cast<DeclRefExpr>(op)->getQualifier()) {
10342         DeclContext *Ctx = dcl->getDeclContext();
10343         if (Ctx && Ctx->isRecord()) {
10344           if (dcl->getType()->isReferenceType()) {
10345             Diag(OpLoc,
10346                  diag::err_cannot_form_pointer_to_member_of_reference_type)
10347               << dcl->getDeclName() << dcl->getType();
10348             return QualType();
10349           }
10350 
10351           while (cast<RecordDecl>(Ctx)->isAnonymousStructOrUnion())
10352             Ctx = Ctx->getParent();
10353 
10354           QualType MPTy = Context.getMemberPointerType(
10355               op->getType(),
10356               Context.getTypeDeclType(cast<RecordDecl>(Ctx)).getTypePtr());
10357           // Under the MS ABI, lock down the inheritance model now.
10358           if (Context.getTargetInfo().getCXXABI().isMicrosoft())
10359             (void)isCompleteType(OpLoc, MPTy);
10360           return MPTy;
10361         }
10362       }
10363     } else if (!isa<FunctionDecl>(dcl) && !isa<NonTypeTemplateParmDecl>(dcl))
10364       llvm_unreachable("Unknown/unexpected decl type");
10365   }
10366 
10367   if (AddressOfError != AO_No_Error) {
10368     diagnoseAddressOfInvalidType(*this, OpLoc, op, AddressOfError);
10369     return QualType();
10370   }
10371 
10372   if (lval == Expr::LV_IncompleteVoidType) {
10373     // Taking the address of a void variable is technically illegal, but we
10374     // allow it in cases which are otherwise valid.
10375     // Example: "extern void x; void* y = &x;".
10376     Diag(OpLoc, diag::ext_typecheck_addrof_void) << op->getSourceRange();
10377   }
10378 
10379   // If the operand has type "type", the result has type "pointer to type".
10380   if (op->getType()->isObjCObjectType())
10381     return Context.getObjCObjectPointerType(op->getType());
10382 
10383   // OpenCL v2.0 s6.12.5 - The unary operators & cannot be used with a block.
10384   if (getLangOpts().OpenCL && OrigOp.get()->getType()->isBlockPointerType()) {
10385     Diag(OpLoc, diag::err_typecheck_unary_expr) << OrigOp.get()->getType()
10386                                                 << op->getSourceRange();
10387     return QualType();
10388   }
10389 
10390   return Context.getPointerType(op->getType());
10391 }
10392 
10393 static void RecordModifiableNonNullParam(Sema &S, const Expr *Exp) {
10394   const DeclRefExpr *DRE = dyn_cast<DeclRefExpr>(Exp);
10395   if (!DRE)
10396     return;
10397   const Decl *D = DRE->getDecl();
10398   if (!D)
10399     return;
10400   const ParmVarDecl *Param = dyn_cast<ParmVarDecl>(D);
10401   if (!Param)
10402     return;
10403   if (const FunctionDecl* FD = dyn_cast<FunctionDecl>(Param->getDeclContext()))
10404     if (!FD->hasAttr<NonNullAttr>() && !Param->hasAttr<NonNullAttr>())
10405       return;
10406   if (FunctionScopeInfo *FD = S.getCurFunction())
10407     if (!FD->ModifiedNonNullParams.count(Param))
10408       FD->ModifiedNonNullParams.insert(Param);
10409 }
10410 
10411 /// CheckIndirectionOperand - Type check unary indirection (prefix '*').
10412 static QualType CheckIndirectionOperand(Sema &S, Expr *Op, ExprValueKind &VK,
10413                                         SourceLocation OpLoc) {
10414   if (Op->isTypeDependent())
10415     return S.Context.DependentTy;
10416 
10417   ExprResult ConvResult = S.UsualUnaryConversions(Op);
10418   if (ConvResult.isInvalid())
10419     return QualType();
10420   Op = ConvResult.get();
10421   QualType OpTy = Op->getType();
10422   QualType Result;
10423 
10424   if (isa<CXXReinterpretCastExpr>(Op)) {
10425     QualType OpOrigType = Op->IgnoreParenCasts()->getType();
10426     S.CheckCompatibleReinterpretCast(OpOrigType, OpTy, /*IsDereference*/true,
10427                                      Op->getSourceRange());
10428   }
10429 
10430   if (const PointerType *PT = OpTy->getAs<PointerType>())
10431   {
10432     Result = PT->getPointeeType();
10433     // OpenCL v2.0 s6.12.5 - The unary operators * cannot be used with a block.
10434     if (S.getLangOpts().OpenCLVersion >= 200 && Result->isBlockPointerType()) {
10435       S.Diag(OpLoc, diag::err_opencl_dereferencing) << OpTy
10436                                                     << Op->getSourceRange();
10437       return QualType();
10438     }
10439   }
10440   else if (const ObjCObjectPointerType *OPT =
10441              OpTy->getAs<ObjCObjectPointerType>())
10442     Result = OPT->getPointeeType();
10443   else {
10444     ExprResult PR = S.CheckPlaceholderExpr(Op);
10445     if (PR.isInvalid()) return QualType();
10446     if (PR.get() != Op)
10447       return CheckIndirectionOperand(S, PR.get(), VK, OpLoc);
10448   }
10449 
10450   if (Result.isNull()) {
10451     S.Diag(OpLoc, diag::err_typecheck_indirection_requires_pointer)
10452       << OpTy << Op->getSourceRange();
10453     return QualType();
10454   }
10455 
10456   // Note that per both C89 and C99, indirection is always legal, even if Result
10457   // is an incomplete type or void.  It would be possible to warn about
10458   // dereferencing a void pointer, but it's completely well-defined, and such a
10459   // warning is unlikely to catch any mistakes. In C++, indirection is not valid
10460   // for pointers to 'void' but is fine for any other pointer type:
10461   //
10462   // C++ [expr.unary.op]p1:
10463   //   [...] the expression to which [the unary * operator] is applied shall
10464   //   be a pointer to an object type, or a pointer to a function type
10465   if (S.getLangOpts().CPlusPlus && Result->isVoidType())
10466     S.Diag(OpLoc, diag::ext_typecheck_indirection_through_void_pointer)
10467       << OpTy << Op->getSourceRange();
10468 
10469   // Dereferences are usually l-values...
10470   VK = VK_LValue;
10471 
10472   // ...except that certain expressions are never l-values in C.
10473   if (!S.getLangOpts().CPlusPlus && Result.isCForbiddenLValueType())
10474     VK = VK_RValue;
10475 
10476   return Result;
10477 }
10478 
10479 BinaryOperatorKind Sema::ConvertTokenKindToBinaryOpcode(tok::TokenKind Kind) {
10480   BinaryOperatorKind Opc;
10481   switch (Kind) {
10482   default: llvm_unreachable("Unknown binop!");
10483   case tok::periodstar:           Opc = BO_PtrMemD; break;
10484   case tok::arrowstar:            Opc = BO_PtrMemI; break;
10485   case tok::star:                 Opc = BO_Mul; break;
10486   case tok::slash:                Opc = BO_Div; break;
10487   case tok::percent:              Opc = BO_Rem; break;
10488   case tok::plus:                 Opc = BO_Add; break;
10489   case tok::minus:                Opc = BO_Sub; break;
10490   case tok::lessless:             Opc = BO_Shl; break;
10491   case tok::greatergreater:       Opc = BO_Shr; break;
10492   case tok::lessequal:            Opc = BO_LE; break;
10493   case tok::less:                 Opc = BO_LT; break;
10494   case tok::greaterequal:         Opc = BO_GE; break;
10495   case tok::greater:              Opc = BO_GT; break;
10496   case tok::exclaimequal:         Opc = BO_NE; break;
10497   case tok::equalequal:           Opc = BO_EQ; break;
10498   case tok::amp:                  Opc = BO_And; break;
10499   case tok::caret:                Opc = BO_Xor; break;
10500   case tok::pipe:                 Opc = BO_Or; break;
10501   case tok::ampamp:               Opc = BO_LAnd; break;
10502   case tok::pipepipe:             Opc = BO_LOr; break;
10503   case tok::equal:                Opc = BO_Assign; break;
10504   case tok::starequal:            Opc = BO_MulAssign; break;
10505   case tok::slashequal:           Opc = BO_DivAssign; break;
10506   case tok::percentequal:         Opc = BO_RemAssign; break;
10507   case tok::plusequal:            Opc = BO_AddAssign; break;
10508   case tok::minusequal:           Opc = BO_SubAssign; break;
10509   case tok::lesslessequal:        Opc = BO_ShlAssign; break;
10510   case tok::greatergreaterequal:  Opc = BO_ShrAssign; break;
10511   case tok::ampequal:             Opc = BO_AndAssign; break;
10512   case tok::caretequal:           Opc = BO_XorAssign; break;
10513   case tok::pipeequal:            Opc = BO_OrAssign; break;
10514   case tok::comma:                Opc = BO_Comma; break;
10515   }
10516   return Opc;
10517 }
10518 
10519 static inline UnaryOperatorKind ConvertTokenKindToUnaryOpcode(
10520   tok::TokenKind Kind) {
10521   UnaryOperatorKind Opc;
10522   switch (Kind) {
10523   default: llvm_unreachable("Unknown unary op!");
10524   case tok::plusplus:     Opc = UO_PreInc; break;
10525   case tok::minusminus:   Opc = UO_PreDec; break;
10526   case tok::amp:          Opc = UO_AddrOf; break;
10527   case tok::star:         Opc = UO_Deref; break;
10528   case tok::plus:         Opc = UO_Plus; break;
10529   case tok::minus:        Opc = UO_Minus; break;
10530   case tok::tilde:        Opc = UO_Not; break;
10531   case tok::exclaim:      Opc = UO_LNot; break;
10532   case tok::kw___real:    Opc = UO_Real; break;
10533   case tok::kw___imag:    Opc = UO_Imag; break;
10534   case tok::kw___extension__: Opc = UO_Extension; break;
10535   }
10536   return Opc;
10537 }
10538 
10539 /// DiagnoseSelfAssignment - Emits a warning if a value is assigned to itself.
10540 /// This warning is only emitted for builtin assignment operations. It is also
10541 /// suppressed in the event of macro expansions.
10542 static void DiagnoseSelfAssignment(Sema &S, Expr *LHSExpr, Expr *RHSExpr,
10543                                    SourceLocation OpLoc) {
10544   if (!S.ActiveTemplateInstantiations.empty())
10545     return;
10546   if (OpLoc.isInvalid() || OpLoc.isMacroID())
10547     return;
10548   LHSExpr = LHSExpr->IgnoreParenImpCasts();
10549   RHSExpr = RHSExpr->IgnoreParenImpCasts();
10550   const DeclRefExpr *LHSDeclRef = dyn_cast<DeclRefExpr>(LHSExpr);
10551   const DeclRefExpr *RHSDeclRef = dyn_cast<DeclRefExpr>(RHSExpr);
10552   if (!LHSDeclRef || !RHSDeclRef ||
10553       LHSDeclRef->getLocation().isMacroID() ||
10554       RHSDeclRef->getLocation().isMacroID())
10555     return;
10556   const ValueDecl *LHSDecl =
10557     cast<ValueDecl>(LHSDeclRef->getDecl()->getCanonicalDecl());
10558   const ValueDecl *RHSDecl =
10559     cast<ValueDecl>(RHSDeclRef->getDecl()->getCanonicalDecl());
10560   if (LHSDecl != RHSDecl)
10561     return;
10562   if (LHSDecl->getType().isVolatileQualified())
10563     return;
10564   if (const ReferenceType *RefTy = LHSDecl->getType()->getAs<ReferenceType>())
10565     if (RefTy->getPointeeType().isVolatileQualified())
10566       return;
10567 
10568   S.Diag(OpLoc, diag::warn_self_assignment)
10569       << LHSDeclRef->getType()
10570       << LHSExpr->getSourceRange() << RHSExpr->getSourceRange();
10571 }
10572 
10573 /// Check if a bitwise-& is performed on an Objective-C pointer.  This
10574 /// is usually indicative of introspection within the Objective-C pointer.
10575 static void checkObjCPointerIntrospection(Sema &S, ExprResult &L, ExprResult &R,
10576                                           SourceLocation OpLoc) {
10577   if (!S.getLangOpts().ObjC1)
10578     return;
10579 
10580   const Expr *ObjCPointerExpr = nullptr, *OtherExpr = nullptr;
10581   const Expr *LHS = L.get();
10582   const Expr *RHS = R.get();
10583 
10584   if (LHS->IgnoreParenCasts()->getType()->isObjCObjectPointerType()) {
10585     ObjCPointerExpr = LHS;
10586     OtherExpr = RHS;
10587   }
10588   else if (RHS->IgnoreParenCasts()->getType()->isObjCObjectPointerType()) {
10589     ObjCPointerExpr = RHS;
10590     OtherExpr = LHS;
10591   }
10592 
10593   // This warning is deliberately made very specific to reduce false
10594   // positives with logic that uses '&' for hashing.  This logic mainly
10595   // looks for code trying to introspect into tagged pointers, which
10596   // code should generally never do.
10597   if (ObjCPointerExpr && isa<IntegerLiteral>(OtherExpr->IgnoreParenCasts())) {
10598     unsigned Diag = diag::warn_objc_pointer_masking;
10599     // Determine if we are introspecting the result of performSelectorXXX.
10600     const Expr *Ex = ObjCPointerExpr->IgnoreParenCasts();
10601     // Special case messages to -performSelector and friends, which
10602     // can return non-pointer values boxed in a pointer value.
10603     // Some clients may wish to silence warnings in this subcase.
10604     if (const ObjCMessageExpr *ME = dyn_cast<ObjCMessageExpr>(Ex)) {
10605       Selector S = ME->getSelector();
10606       StringRef SelArg0 = S.getNameForSlot(0);
10607       if (SelArg0.startswith("performSelector"))
10608         Diag = diag::warn_objc_pointer_masking_performSelector;
10609     }
10610 
10611     S.Diag(OpLoc, Diag)
10612       << ObjCPointerExpr->getSourceRange();
10613   }
10614 }
10615 
10616 static NamedDecl *getDeclFromExpr(Expr *E) {
10617   if (!E)
10618     return nullptr;
10619   if (auto *DRE = dyn_cast<DeclRefExpr>(E))
10620     return DRE->getDecl();
10621   if (auto *ME = dyn_cast<MemberExpr>(E))
10622     return ME->getMemberDecl();
10623   if (auto *IRE = dyn_cast<ObjCIvarRefExpr>(E))
10624     return IRE->getDecl();
10625   return nullptr;
10626 }
10627 
10628 /// CreateBuiltinBinOp - Creates a new built-in binary operation with
10629 /// operator @p Opc at location @c TokLoc. This routine only supports
10630 /// built-in operations; ActOnBinOp handles overloaded operators.
10631 ExprResult Sema::CreateBuiltinBinOp(SourceLocation OpLoc,
10632                                     BinaryOperatorKind Opc,
10633                                     Expr *LHSExpr, Expr *RHSExpr) {
10634   if (getLangOpts().CPlusPlus11 && isa<InitListExpr>(RHSExpr)) {
10635     // The syntax only allows initializer lists on the RHS of assignment,
10636     // so we don't need to worry about accepting invalid code for
10637     // non-assignment operators.
10638     // C++11 5.17p9:
10639     //   The meaning of x = {v} [...] is that of x = T(v) [...]. The meaning
10640     //   of x = {} is x = T().
10641     InitializationKind Kind =
10642         InitializationKind::CreateDirectList(RHSExpr->getLocStart());
10643     InitializedEntity Entity =
10644         InitializedEntity::InitializeTemporary(LHSExpr->getType());
10645     InitializationSequence InitSeq(*this, Entity, Kind, RHSExpr);
10646     ExprResult Init = InitSeq.Perform(*this, Entity, Kind, RHSExpr);
10647     if (Init.isInvalid())
10648       return Init;
10649     RHSExpr = Init.get();
10650   }
10651 
10652   ExprResult LHS = LHSExpr, RHS = RHSExpr;
10653   QualType ResultTy;     // Result type of the binary operator.
10654   // The following two variables are used for compound assignment operators
10655   QualType CompLHSTy;    // Type of LHS after promotions for computation
10656   QualType CompResultTy; // Type of computation result
10657   ExprValueKind VK = VK_RValue;
10658   ExprObjectKind OK = OK_Ordinary;
10659 
10660   if (!getLangOpts().CPlusPlus) {
10661     // C cannot handle TypoExpr nodes on either side of a binop because it
10662     // doesn't handle dependent types properly, so make sure any TypoExprs have
10663     // been dealt with before checking the operands.
10664     LHS = CorrectDelayedTyposInExpr(LHSExpr);
10665     RHS = CorrectDelayedTyposInExpr(RHSExpr, [Opc, LHS](Expr *E) {
10666       if (Opc != BO_Assign)
10667         return ExprResult(E);
10668       // Avoid correcting the RHS to the same Expr as the LHS.
10669       Decl *D = getDeclFromExpr(E);
10670       return (D && D == getDeclFromExpr(LHS.get())) ? ExprError() : E;
10671     });
10672     if (!LHS.isUsable() || !RHS.isUsable())
10673       return ExprError();
10674   }
10675 
10676   if (getLangOpts().OpenCL) {
10677     // OpenCLC v2.0 s6.13.11.1 allows atomic variables to be initialized by
10678     // the ATOMIC_VAR_INIT macro.
10679     if (LHSExpr->getType()->isAtomicType() ||
10680         RHSExpr->getType()->isAtomicType()) {
10681       SourceRange SR(LHSExpr->getLocStart(), RHSExpr->getLocEnd());
10682       if (BO_Assign == Opc)
10683         Diag(OpLoc, diag::err_atomic_init_constant) << SR;
10684       else
10685         ResultTy = InvalidOperands(OpLoc, LHS, RHS);
10686       return ExprError();
10687     }
10688   }
10689 
10690   switch (Opc) {
10691   case BO_Assign:
10692     ResultTy = CheckAssignmentOperands(LHS.get(), RHS, OpLoc, QualType());
10693     if (getLangOpts().CPlusPlus &&
10694         LHS.get()->getObjectKind() != OK_ObjCProperty) {
10695       VK = LHS.get()->getValueKind();
10696       OK = LHS.get()->getObjectKind();
10697     }
10698     if (!ResultTy.isNull()) {
10699       DiagnoseSelfAssignment(*this, LHS.get(), RHS.get(), OpLoc);
10700       DiagnoseSelfMove(LHS.get(), RHS.get(), OpLoc);
10701     }
10702     RecordModifiableNonNullParam(*this, LHS.get());
10703     break;
10704   case BO_PtrMemD:
10705   case BO_PtrMemI:
10706     ResultTy = CheckPointerToMemberOperands(LHS, RHS, VK, OpLoc,
10707                                             Opc == BO_PtrMemI);
10708     break;
10709   case BO_Mul:
10710   case BO_Div:
10711     ResultTy = CheckMultiplyDivideOperands(LHS, RHS, OpLoc, false,
10712                                            Opc == BO_Div);
10713     break;
10714   case BO_Rem:
10715     ResultTy = CheckRemainderOperands(LHS, RHS, OpLoc);
10716     break;
10717   case BO_Add:
10718     ResultTy = CheckAdditionOperands(LHS, RHS, OpLoc, Opc);
10719     break;
10720   case BO_Sub:
10721     ResultTy = CheckSubtractionOperands(LHS, RHS, OpLoc);
10722     break;
10723   case BO_Shl:
10724   case BO_Shr:
10725     ResultTy = CheckShiftOperands(LHS, RHS, OpLoc, Opc);
10726     break;
10727   case BO_LE:
10728   case BO_LT:
10729   case BO_GE:
10730   case BO_GT:
10731     ResultTy = CheckCompareOperands(LHS, RHS, OpLoc, Opc, true);
10732     break;
10733   case BO_EQ:
10734   case BO_NE:
10735     ResultTy = CheckCompareOperands(LHS, RHS, OpLoc, Opc, false);
10736     break;
10737   case BO_And:
10738     checkObjCPointerIntrospection(*this, LHS, RHS, OpLoc);
10739   case BO_Xor:
10740   case BO_Or:
10741     ResultTy = CheckBitwiseOperands(LHS, RHS, OpLoc);
10742     break;
10743   case BO_LAnd:
10744   case BO_LOr:
10745     ResultTy = CheckLogicalOperands(LHS, RHS, OpLoc, Opc);
10746     break;
10747   case BO_MulAssign:
10748   case BO_DivAssign:
10749     CompResultTy = CheckMultiplyDivideOperands(LHS, RHS, OpLoc, true,
10750                                                Opc == BO_DivAssign);
10751     CompLHSTy = CompResultTy;
10752     if (!CompResultTy.isNull() && !LHS.isInvalid() && !RHS.isInvalid())
10753       ResultTy = CheckAssignmentOperands(LHS.get(), RHS, OpLoc, CompResultTy);
10754     break;
10755   case BO_RemAssign:
10756     CompResultTy = CheckRemainderOperands(LHS, RHS, OpLoc, true);
10757     CompLHSTy = CompResultTy;
10758     if (!CompResultTy.isNull() && !LHS.isInvalid() && !RHS.isInvalid())
10759       ResultTy = CheckAssignmentOperands(LHS.get(), RHS, OpLoc, CompResultTy);
10760     break;
10761   case BO_AddAssign:
10762     CompResultTy = CheckAdditionOperands(LHS, RHS, OpLoc, Opc, &CompLHSTy);
10763     if (!CompResultTy.isNull() && !LHS.isInvalid() && !RHS.isInvalid())
10764       ResultTy = CheckAssignmentOperands(LHS.get(), RHS, OpLoc, CompResultTy);
10765     break;
10766   case BO_SubAssign:
10767     CompResultTy = CheckSubtractionOperands(LHS, RHS, OpLoc, &CompLHSTy);
10768     if (!CompResultTy.isNull() && !LHS.isInvalid() && !RHS.isInvalid())
10769       ResultTy = CheckAssignmentOperands(LHS.get(), RHS, OpLoc, CompResultTy);
10770     break;
10771   case BO_ShlAssign:
10772   case BO_ShrAssign:
10773     CompResultTy = CheckShiftOperands(LHS, RHS, OpLoc, Opc, true);
10774     CompLHSTy = CompResultTy;
10775     if (!CompResultTy.isNull() && !LHS.isInvalid() && !RHS.isInvalid())
10776       ResultTy = CheckAssignmentOperands(LHS.get(), RHS, OpLoc, CompResultTy);
10777     break;
10778   case BO_AndAssign:
10779   case BO_OrAssign: // fallthrough
10780     DiagnoseSelfAssignment(*this, LHS.get(), RHS.get(), OpLoc);
10781   case BO_XorAssign:
10782     CompResultTy = CheckBitwiseOperands(LHS, RHS, OpLoc, true);
10783     CompLHSTy = CompResultTy;
10784     if (!CompResultTy.isNull() && !LHS.isInvalid() && !RHS.isInvalid())
10785       ResultTy = CheckAssignmentOperands(LHS.get(), RHS, OpLoc, CompResultTy);
10786     break;
10787   case BO_Comma:
10788     ResultTy = CheckCommaOperands(*this, LHS, RHS, OpLoc);
10789     if (getLangOpts().CPlusPlus && !RHS.isInvalid()) {
10790       VK = RHS.get()->getValueKind();
10791       OK = RHS.get()->getObjectKind();
10792     }
10793     break;
10794   }
10795   if (ResultTy.isNull() || LHS.isInvalid() || RHS.isInvalid())
10796     return ExprError();
10797 
10798   // Check for array bounds violations for both sides of the BinaryOperator
10799   CheckArrayAccess(LHS.get());
10800   CheckArrayAccess(RHS.get());
10801 
10802   if (const ObjCIsaExpr *OISA = dyn_cast<ObjCIsaExpr>(LHS.get()->IgnoreParenCasts())) {
10803     NamedDecl *ObjectSetClass = LookupSingleName(TUScope,
10804                                                  &Context.Idents.get("object_setClass"),
10805                                                  SourceLocation(), LookupOrdinaryName);
10806     if (ObjectSetClass && isa<ObjCIsaExpr>(LHS.get())) {
10807       SourceLocation RHSLocEnd = getLocForEndOfToken(RHS.get()->getLocEnd());
10808       Diag(LHS.get()->getExprLoc(), diag::warn_objc_isa_assign) <<
10809       FixItHint::CreateInsertion(LHS.get()->getLocStart(), "object_setClass(") <<
10810       FixItHint::CreateReplacement(SourceRange(OISA->getOpLoc(), OpLoc), ",") <<
10811       FixItHint::CreateInsertion(RHSLocEnd, ")");
10812     }
10813     else
10814       Diag(LHS.get()->getExprLoc(), diag::warn_objc_isa_assign);
10815   }
10816   else if (const ObjCIvarRefExpr *OIRE =
10817            dyn_cast<ObjCIvarRefExpr>(LHS.get()->IgnoreParenCasts()))
10818     DiagnoseDirectIsaAccess(*this, OIRE, OpLoc, RHS.get());
10819 
10820   if (CompResultTy.isNull())
10821     return new (Context) BinaryOperator(LHS.get(), RHS.get(), Opc, ResultTy, VK,
10822                                         OK, OpLoc, FPFeatures.fp_contract);
10823   if (getLangOpts().CPlusPlus && LHS.get()->getObjectKind() !=
10824       OK_ObjCProperty) {
10825     VK = VK_LValue;
10826     OK = LHS.get()->getObjectKind();
10827   }
10828   return new (Context) CompoundAssignOperator(
10829       LHS.get(), RHS.get(), Opc, ResultTy, VK, OK, CompLHSTy, CompResultTy,
10830       OpLoc, FPFeatures.fp_contract);
10831 }
10832 
10833 /// DiagnoseBitwisePrecedence - Emit a warning when bitwise and comparison
10834 /// operators are mixed in a way that suggests that the programmer forgot that
10835 /// comparison operators have higher precedence. The most typical example of
10836 /// such code is "flags & 0x0020 != 0", which is equivalent to "flags & 1".
10837 static void DiagnoseBitwisePrecedence(Sema &Self, BinaryOperatorKind Opc,
10838                                       SourceLocation OpLoc, Expr *LHSExpr,
10839                                       Expr *RHSExpr) {
10840   BinaryOperator *LHSBO = dyn_cast<BinaryOperator>(LHSExpr);
10841   BinaryOperator *RHSBO = dyn_cast<BinaryOperator>(RHSExpr);
10842 
10843   // Check that one of the sides is a comparison operator and the other isn't.
10844   bool isLeftComp = LHSBO && LHSBO->isComparisonOp();
10845   bool isRightComp = RHSBO && RHSBO->isComparisonOp();
10846   if (isLeftComp == isRightComp)
10847     return;
10848 
10849   // Bitwise operations are sometimes used as eager logical ops.
10850   // Don't diagnose this.
10851   bool isLeftBitwise = LHSBO && LHSBO->isBitwiseOp();
10852   bool isRightBitwise = RHSBO && RHSBO->isBitwiseOp();
10853   if (isLeftBitwise || isRightBitwise)
10854     return;
10855 
10856   SourceRange DiagRange = isLeftComp ? SourceRange(LHSExpr->getLocStart(),
10857                                                    OpLoc)
10858                                      : SourceRange(OpLoc, RHSExpr->getLocEnd());
10859   StringRef OpStr = isLeftComp ? LHSBO->getOpcodeStr() : RHSBO->getOpcodeStr();
10860   SourceRange ParensRange = isLeftComp ?
10861       SourceRange(LHSBO->getRHS()->getLocStart(), RHSExpr->getLocEnd())
10862     : SourceRange(LHSExpr->getLocStart(), RHSBO->getLHS()->getLocEnd());
10863 
10864   Self.Diag(OpLoc, diag::warn_precedence_bitwise_rel)
10865     << DiagRange << BinaryOperator::getOpcodeStr(Opc) << OpStr;
10866   SuggestParentheses(Self, OpLoc,
10867     Self.PDiag(diag::note_precedence_silence) << OpStr,
10868     (isLeftComp ? LHSExpr : RHSExpr)->getSourceRange());
10869   SuggestParentheses(Self, OpLoc,
10870     Self.PDiag(diag::note_precedence_bitwise_first)
10871       << BinaryOperator::getOpcodeStr(Opc),
10872     ParensRange);
10873 }
10874 
10875 /// \brief It accepts a '&&' expr that is inside a '||' one.
10876 /// Emit a diagnostic together with a fixit hint that wraps the '&&' expression
10877 /// in parentheses.
10878 static void
10879 EmitDiagnosticForLogicalAndInLogicalOr(Sema &Self, SourceLocation OpLoc,
10880                                        BinaryOperator *Bop) {
10881   assert(Bop->getOpcode() == BO_LAnd);
10882   Self.Diag(Bop->getOperatorLoc(), diag::warn_logical_and_in_logical_or)
10883       << Bop->getSourceRange() << OpLoc;
10884   SuggestParentheses(Self, Bop->getOperatorLoc(),
10885     Self.PDiag(diag::note_precedence_silence)
10886       << Bop->getOpcodeStr(),
10887     Bop->getSourceRange());
10888 }
10889 
10890 /// \brief Returns true if the given expression can be evaluated as a constant
10891 /// 'true'.
10892 static bool EvaluatesAsTrue(Sema &S, Expr *E) {
10893   bool Res;
10894   return !E->isValueDependent() &&
10895          E->EvaluateAsBooleanCondition(Res, S.getASTContext()) && Res;
10896 }
10897 
10898 /// \brief Returns true if the given expression can be evaluated as a constant
10899 /// 'false'.
10900 static bool EvaluatesAsFalse(Sema &S, Expr *E) {
10901   bool Res;
10902   return !E->isValueDependent() &&
10903          E->EvaluateAsBooleanCondition(Res, S.getASTContext()) && !Res;
10904 }
10905 
10906 /// \brief Look for '&&' in the left hand of a '||' expr.
10907 static void DiagnoseLogicalAndInLogicalOrLHS(Sema &S, SourceLocation OpLoc,
10908                                              Expr *LHSExpr, Expr *RHSExpr) {
10909   if (BinaryOperator *Bop = dyn_cast<BinaryOperator>(LHSExpr)) {
10910     if (Bop->getOpcode() == BO_LAnd) {
10911       // If it's "a && b || 0" don't warn since the precedence doesn't matter.
10912       if (EvaluatesAsFalse(S, RHSExpr))
10913         return;
10914       // If it's "1 && a || b" don't warn since the precedence doesn't matter.
10915       if (!EvaluatesAsTrue(S, Bop->getLHS()))
10916         return EmitDiagnosticForLogicalAndInLogicalOr(S, OpLoc, Bop);
10917     } else if (Bop->getOpcode() == BO_LOr) {
10918       if (BinaryOperator *RBop = dyn_cast<BinaryOperator>(Bop->getRHS())) {
10919         // If it's "a || b && 1 || c" we didn't warn earlier for
10920         // "a || b && 1", but warn now.
10921         if (RBop->getOpcode() == BO_LAnd && EvaluatesAsTrue(S, RBop->getRHS()))
10922           return EmitDiagnosticForLogicalAndInLogicalOr(S, OpLoc, RBop);
10923       }
10924     }
10925   }
10926 }
10927 
10928 /// \brief Look for '&&' in the right hand of a '||' expr.
10929 static void DiagnoseLogicalAndInLogicalOrRHS(Sema &S, SourceLocation OpLoc,
10930                                              Expr *LHSExpr, Expr *RHSExpr) {
10931   if (BinaryOperator *Bop = dyn_cast<BinaryOperator>(RHSExpr)) {
10932     if (Bop->getOpcode() == BO_LAnd) {
10933       // If it's "0 || a && b" don't warn since the precedence doesn't matter.
10934       if (EvaluatesAsFalse(S, LHSExpr))
10935         return;
10936       // If it's "a || b && 1" don't warn since the precedence doesn't matter.
10937       if (!EvaluatesAsTrue(S, Bop->getRHS()))
10938         return EmitDiagnosticForLogicalAndInLogicalOr(S, OpLoc, Bop);
10939     }
10940   }
10941 }
10942 
10943 /// \brief Look for bitwise op in the left or right hand of a bitwise op with
10944 /// lower precedence and emit a diagnostic together with a fixit hint that wraps
10945 /// the '&' expression in parentheses.
10946 static void DiagnoseBitwiseOpInBitwiseOp(Sema &S, BinaryOperatorKind Opc,
10947                                          SourceLocation OpLoc, Expr *SubExpr) {
10948   if (BinaryOperator *Bop = dyn_cast<BinaryOperator>(SubExpr)) {
10949     if (Bop->isBitwiseOp() && Bop->getOpcode() < Opc) {
10950       S.Diag(Bop->getOperatorLoc(), diag::warn_bitwise_op_in_bitwise_op)
10951         << Bop->getOpcodeStr() << BinaryOperator::getOpcodeStr(Opc)
10952         << Bop->getSourceRange() << OpLoc;
10953       SuggestParentheses(S, Bop->getOperatorLoc(),
10954         S.PDiag(diag::note_precedence_silence)
10955           << Bop->getOpcodeStr(),
10956         Bop->getSourceRange());
10957     }
10958   }
10959 }
10960 
10961 static void DiagnoseAdditionInShift(Sema &S, SourceLocation OpLoc,
10962                                     Expr *SubExpr, StringRef Shift) {
10963   if (BinaryOperator *Bop = dyn_cast<BinaryOperator>(SubExpr)) {
10964     if (Bop->getOpcode() == BO_Add || Bop->getOpcode() == BO_Sub) {
10965       StringRef Op = Bop->getOpcodeStr();
10966       S.Diag(Bop->getOperatorLoc(), diag::warn_addition_in_bitshift)
10967           << Bop->getSourceRange() << OpLoc << Shift << Op;
10968       SuggestParentheses(S, Bop->getOperatorLoc(),
10969           S.PDiag(diag::note_precedence_silence) << Op,
10970           Bop->getSourceRange());
10971     }
10972   }
10973 }
10974 
10975 static void DiagnoseShiftCompare(Sema &S, SourceLocation OpLoc,
10976                                  Expr *LHSExpr, Expr *RHSExpr) {
10977   CXXOperatorCallExpr *OCE = dyn_cast<CXXOperatorCallExpr>(LHSExpr);
10978   if (!OCE)
10979     return;
10980 
10981   FunctionDecl *FD = OCE->getDirectCallee();
10982   if (!FD || !FD->isOverloadedOperator())
10983     return;
10984 
10985   OverloadedOperatorKind Kind = FD->getOverloadedOperator();
10986   if (Kind != OO_LessLess && Kind != OO_GreaterGreater)
10987     return;
10988 
10989   S.Diag(OpLoc, diag::warn_overloaded_shift_in_comparison)
10990       << LHSExpr->getSourceRange() << RHSExpr->getSourceRange()
10991       << (Kind == OO_LessLess);
10992   SuggestParentheses(S, OCE->getOperatorLoc(),
10993                      S.PDiag(diag::note_precedence_silence)
10994                          << (Kind == OO_LessLess ? "<<" : ">>"),
10995                      OCE->getSourceRange());
10996   SuggestParentheses(S, OpLoc,
10997                      S.PDiag(diag::note_evaluate_comparison_first),
10998                      SourceRange(OCE->getArg(1)->getLocStart(),
10999                                  RHSExpr->getLocEnd()));
11000 }
11001 
11002 /// DiagnoseBinOpPrecedence - Emit warnings for expressions with tricky
11003 /// precedence.
11004 static void DiagnoseBinOpPrecedence(Sema &Self, BinaryOperatorKind Opc,
11005                                     SourceLocation OpLoc, Expr *LHSExpr,
11006                                     Expr *RHSExpr){
11007   // Diagnose "arg1 'bitwise' arg2 'eq' arg3".
11008   if (BinaryOperator::isBitwiseOp(Opc))
11009     DiagnoseBitwisePrecedence(Self, Opc, OpLoc, LHSExpr, RHSExpr);
11010 
11011   // Diagnose "arg1 & arg2 | arg3"
11012   if ((Opc == BO_Or || Opc == BO_Xor) &&
11013       !OpLoc.isMacroID()/* Don't warn in macros. */) {
11014     DiagnoseBitwiseOpInBitwiseOp(Self, Opc, OpLoc, LHSExpr);
11015     DiagnoseBitwiseOpInBitwiseOp(Self, Opc, OpLoc, RHSExpr);
11016   }
11017 
11018   // Warn about arg1 || arg2 && arg3, as GCC 4.3+ does.
11019   // We don't warn for 'assert(a || b && "bad")' since this is safe.
11020   if (Opc == BO_LOr && !OpLoc.isMacroID()/* Don't warn in macros. */) {
11021     DiagnoseLogicalAndInLogicalOrLHS(Self, OpLoc, LHSExpr, RHSExpr);
11022     DiagnoseLogicalAndInLogicalOrRHS(Self, OpLoc, LHSExpr, RHSExpr);
11023   }
11024 
11025   if ((Opc == BO_Shl && LHSExpr->getType()->isIntegralType(Self.getASTContext()))
11026       || Opc == BO_Shr) {
11027     StringRef Shift = BinaryOperator::getOpcodeStr(Opc);
11028     DiagnoseAdditionInShift(Self, OpLoc, LHSExpr, Shift);
11029     DiagnoseAdditionInShift(Self, OpLoc, RHSExpr, Shift);
11030   }
11031 
11032   // Warn on overloaded shift operators and comparisons, such as:
11033   // cout << 5 == 4;
11034   if (BinaryOperator::isComparisonOp(Opc))
11035     DiagnoseShiftCompare(Self, OpLoc, LHSExpr, RHSExpr);
11036 }
11037 
11038 // Binary Operators.  'Tok' is the token for the operator.
11039 ExprResult Sema::ActOnBinOp(Scope *S, SourceLocation TokLoc,
11040                             tok::TokenKind Kind,
11041                             Expr *LHSExpr, Expr *RHSExpr) {
11042   BinaryOperatorKind Opc = ConvertTokenKindToBinaryOpcode(Kind);
11043   assert(LHSExpr && "ActOnBinOp(): missing left expression");
11044   assert(RHSExpr && "ActOnBinOp(): missing right expression");
11045 
11046   // Emit warnings for tricky precedence issues, e.g. "bitfield & 0x4 == 0"
11047   DiagnoseBinOpPrecedence(*this, Opc, TokLoc, LHSExpr, RHSExpr);
11048 
11049   return BuildBinOp(S, TokLoc, Opc, LHSExpr, RHSExpr);
11050 }
11051 
11052 /// Build an overloaded binary operator expression in the given scope.
11053 static ExprResult BuildOverloadedBinOp(Sema &S, Scope *Sc, SourceLocation OpLoc,
11054                                        BinaryOperatorKind Opc,
11055                                        Expr *LHS, Expr *RHS) {
11056   // Find all of the overloaded operators visible from this
11057   // point. We perform both an operator-name lookup from the local
11058   // scope and an argument-dependent lookup based on the types of
11059   // the arguments.
11060   UnresolvedSet<16> Functions;
11061   OverloadedOperatorKind OverOp
11062     = BinaryOperator::getOverloadedOperator(Opc);
11063   if (Sc && OverOp != OO_None && OverOp != OO_Equal)
11064     S.LookupOverloadedOperatorName(OverOp, Sc, LHS->getType(),
11065                                    RHS->getType(), Functions);
11066 
11067   // Build the (potentially-overloaded, potentially-dependent)
11068   // binary operation.
11069   return S.CreateOverloadedBinOp(OpLoc, Opc, Functions, LHS, RHS);
11070 }
11071 
11072 ExprResult Sema::BuildBinOp(Scope *S, SourceLocation OpLoc,
11073                             BinaryOperatorKind Opc,
11074                             Expr *LHSExpr, Expr *RHSExpr) {
11075   // We want to end up calling one of checkPseudoObjectAssignment
11076   // (if the LHS is a pseudo-object), BuildOverloadedBinOp (if
11077   // both expressions are overloadable or either is type-dependent),
11078   // or CreateBuiltinBinOp (in any other case).  We also want to get
11079   // any placeholder types out of the way.
11080 
11081   // Handle pseudo-objects in the LHS.
11082   if (const BuiltinType *pty = LHSExpr->getType()->getAsPlaceholderType()) {
11083     // Assignments with a pseudo-object l-value need special analysis.
11084     if (pty->getKind() == BuiltinType::PseudoObject &&
11085         BinaryOperator::isAssignmentOp(Opc))
11086       return checkPseudoObjectAssignment(S, OpLoc, Opc, LHSExpr, RHSExpr);
11087 
11088     // Don't resolve overloads if the other type is overloadable.
11089     if (pty->getKind() == BuiltinType::Overload) {
11090       // We can't actually test that if we still have a placeholder,
11091       // though.  Fortunately, none of the exceptions we see in that
11092       // code below are valid when the LHS is an overload set.  Note
11093       // that an overload set can be dependently-typed, but it never
11094       // instantiates to having an overloadable type.
11095       ExprResult resolvedRHS = CheckPlaceholderExpr(RHSExpr);
11096       if (resolvedRHS.isInvalid()) return ExprError();
11097       RHSExpr = resolvedRHS.get();
11098 
11099       if (RHSExpr->isTypeDependent() ||
11100           RHSExpr->getType()->isOverloadableType())
11101         return BuildOverloadedBinOp(*this, S, OpLoc, Opc, LHSExpr, RHSExpr);
11102     }
11103 
11104     ExprResult LHS = CheckPlaceholderExpr(LHSExpr);
11105     if (LHS.isInvalid()) return ExprError();
11106     LHSExpr = LHS.get();
11107   }
11108 
11109   // Handle pseudo-objects in the RHS.
11110   if (const BuiltinType *pty = RHSExpr->getType()->getAsPlaceholderType()) {
11111     // An overload in the RHS can potentially be resolved by the type
11112     // being assigned to.
11113     if (Opc == BO_Assign && pty->getKind() == BuiltinType::Overload) {
11114       if (LHSExpr->isTypeDependent() || RHSExpr->isTypeDependent())
11115         return BuildOverloadedBinOp(*this, S, OpLoc, Opc, LHSExpr, RHSExpr);
11116 
11117       if (LHSExpr->getType()->isOverloadableType())
11118         return BuildOverloadedBinOp(*this, S, OpLoc, Opc, LHSExpr, RHSExpr);
11119 
11120       return CreateBuiltinBinOp(OpLoc, Opc, LHSExpr, RHSExpr);
11121     }
11122 
11123     // Don't resolve overloads if the other type is overloadable.
11124     if (pty->getKind() == BuiltinType::Overload &&
11125         LHSExpr->getType()->isOverloadableType())
11126       return BuildOverloadedBinOp(*this, S, OpLoc, Opc, LHSExpr, RHSExpr);
11127 
11128     ExprResult resolvedRHS = CheckPlaceholderExpr(RHSExpr);
11129     if (!resolvedRHS.isUsable()) return ExprError();
11130     RHSExpr = resolvedRHS.get();
11131   }
11132 
11133   if (getLangOpts().CPlusPlus) {
11134     // If either expression is type-dependent, always build an
11135     // overloaded op.
11136     if (LHSExpr->isTypeDependent() || RHSExpr->isTypeDependent())
11137       return BuildOverloadedBinOp(*this, S, OpLoc, Opc, LHSExpr, RHSExpr);
11138 
11139     // Otherwise, build an overloaded op if either expression has an
11140     // overloadable type.
11141     if (LHSExpr->getType()->isOverloadableType() ||
11142         RHSExpr->getType()->isOverloadableType())
11143       return BuildOverloadedBinOp(*this, S, OpLoc, Opc, LHSExpr, RHSExpr);
11144   }
11145 
11146   // Build a built-in binary operation.
11147   return CreateBuiltinBinOp(OpLoc, Opc, LHSExpr, RHSExpr);
11148 }
11149 
11150 ExprResult Sema::CreateBuiltinUnaryOp(SourceLocation OpLoc,
11151                                       UnaryOperatorKind Opc,
11152                                       Expr *InputExpr) {
11153   ExprResult Input = InputExpr;
11154   ExprValueKind VK = VK_RValue;
11155   ExprObjectKind OK = OK_Ordinary;
11156   QualType resultType;
11157   if (getLangOpts().OpenCL) {
11158     // The only legal unary operation for atomics is '&'.
11159     if (Opc != UO_AddrOf && InputExpr->getType()->isAtomicType()) {
11160       return ExprError(Diag(OpLoc, diag::err_typecheck_unary_expr)
11161                        << InputExpr->getType()
11162                        << Input.get()->getSourceRange());
11163     }
11164   }
11165   switch (Opc) {
11166   case UO_PreInc:
11167   case UO_PreDec:
11168   case UO_PostInc:
11169   case UO_PostDec:
11170     resultType = CheckIncrementDecrementOperand(*this, Input.get(), VK, OK,
11171                                                 OpLoc,
11172                                                 Opc == UO_PreInc ||
11173                                                 Opc == UO_PostInc,
11174                                                 Opc == UO_PreInc ||
11175                                                 Opc == UO_PreDec);
11176     break;
11177   case UO_AddrOf:
11178     resultType = CheckAddressOfOperand(Input, OpLoc);
11179     RecordModifiableNonNullParam(*this, InputExpr);
11180     break;
11181   case UO_Deref: {
11182     Input = DefaultFunctionArrayLvalueConversion(Input.get());
11183     if (Input.isInvalid()) return ExprError();
11184     resultType = CheckIndirectionOperand(*this, Input.get(), VK, OpLoc);
11185     break;
11186   }
11187   case UO_Plus:
11188   case UO_Minus:
11189     Input = UsualUnaryConversions(Input.get());
11190     if (Input.isInvalid()) return ExprError();
11191     resultType = Input.get()->getType();
11192     if (resultType->isDependentType())
11193       break;
11194     if (resultType->isArithmeticType()) // C99 6.5.3.3p1
11195       break;
11196     else if (resultType->isVectorType() &&
11197              // The z vector extensions don't allow + or - with bool vectors.
11198              (!Context.getLangOpts().ZVector ||
11199               resultType->getAs<VectorType>()->getVectorKind() !=
11200               VectorType::AltiVecBool))
11201       break;
11202     else if (getLangOpts().CPlusPlus && // C++ [expr.unary.op]p6
11203              Opc == UO_Plus &&
11204              resultType->isPointerType())
11205       break;
11206 
11207     return ExprError(Diag(OpLoc, diag::err_typecheck_unary_expr)
11208       << resultType << Input.get()->getSourceRange());
11209 
11210   case UO_Not: // bitwise complement
11211     Input = UsualUnaryConversions(Input.get());
11212     if (Input.isInvalid())
11213       return ExprError();
11214     resultType = Input.get()->getType();
11215     if (resultType->isDependentType())
11216       break;
11217     // C99 6.5.3.3p1. We allow complex int and float as a GCC extension.
11218     if (resultType->isComplexType() || resultType->isComplexIntegerType())
11219       // C99 does not support '~' for complex conjugation.
11220       Diag(OpLoc, diag::ext_integer_complement_complex)
11221           << resultType << Input.get()->getSourceRange();
11222     else if (resultType->hasIntegerRepresentation())
11223       break;
11224     else if (resultType->isExtVectorType()) {
11225       if (Context.getLangOpts().OpenCL) {
11226         // OpenCL v1.1 s6.3.f: The bitwise operator not (~) does not operate
11227         // on vector float types.
11228         QualType T = resultType->getAs<ExtVectorType>()->getElementType();
11229         if (!T->isIntegerType())
11230           return ExprError(Diag(OpLoc, diag::err_typecheck_unary_expr)
11231                            << resultType << Input.get()->getSourceRange());
11232       }
11233       break;
11234     } else {
11235       return ExprError(Diag(OpLoc, diag::err_typecheck_unary_expr)
11236                        << resultType << Input.get()->getSourceRange());
11237     }
11238     break;
11239 
11240   case UO_LNot: // logical negation
11241     // Unlike +/-/~, integer promotions aren't done here (C99 6.5.3.3p5).
11242     Input = DefaultFunctionArrayLvalueConversion(Input.get());
11243     if (Input.isInvalid()) return ExprError();
11244     resultType = Input.get()->getType();
11245 
11246     // Though we still have to promote half FP to float...
11247     if (resultType->isHalfType() && !Context.getLangOpts().NativeHalfType) {
11248       Input = ImpCastExprToType(Input.get(), Context.FloatTy, CK_FloatingCast).get();
11249       resultType = Context.FloatTy;
11250     }
11251 
11252     if (resultType->isDependentType())
11253       break;
11254     if (resultType->isScalarType() && !isScopedEnumerationType(resultType)) {
11255       // C99 6.5.3.3p1: ok, fallthrough;
11256       if (Context.getLangOpts().CPlusPlus) {
11257         // C++03 [expr.unary.op]p8, C++0x [expr.unary.op]p9:
11258         // operand contextually converted to bool.
11259         Input = ImpCastExprToType(Input.get(), Context.BoolTy,
11260                                   ScalarTypeToBooleanCastKind(resultType));
11261       } else if (Context.getLangOpts().OpenCL &&
11262                  Context.getLangOpts().OpenCLVersion < 120) {
11263         // OpenCL v1.1 6.3.h: The logical operator not (!) does not
11264         // operate on scalar float types.
11265         if (!resultType->isIntegerType())
11266           return ExprError(Diag(OpLoc, diag::err_typecheck_unary_expr)
11267                            << resultType << Input.get()->getSourceRange());
11268       }
11269     } else if (resultType->isExtVectorType()) {
11270       if (Context.getLangOpts().OpenCL &&
11271           Context.getLangOpts().OpenCLVersion < 120) {
11272         // OpenCL v1.1 6.3.h: The logical operator not (!) does not
11273         // operate on vector float types.
11274         QualType T = resultType->getAs<ExtVectorType>()->getElementType();
11275         if (!T->isIntegerType())
11276           return ExprError(Diag(OpLoc, diag::err_typecheck_unary_expr)
11277                            << resultType << Input.get()->getSourceRange());
11278       }
11279       // Vector logical not returns the signed variant of the operand type.
11280       resultType = GetSignedVectorType(resultType);
11281       break;
11282     } else {
11283       return ExprError(Diag(OpLoc, diag::err_typecheck_unary_expr)
11284         << resultType << Input.get()->getSourceRange());
11285     }
11286 
11287     // LNot always has type int. C99 6.5.3.3p5.
11288     // In C++, it's bool. C++ 5.3.1p8
11289     resultType = Context.getLogicalOperationType();
11290     break;
11291   case UO_Real:
11292   case UO_Imag:
11293     resultType = CheckRealImagOperand(*this, Input, OpLoc, Opc == UO_Real);
11294     // _Real maps ordinary l-values into ordinary l-values. _Imag maps ordinary
11295     // complex l-values to ordinary l-values and all other values to r-values.
11296     if (Input.isInvalid()) return ExprError();
11297     if (Opc == UO_Real || Input.get()->getType()->isAnyComplexType()) {
11298       if (Input.get()->getValueKind() != VK_RValue &&
11299           Input.get()->getObjectKind() == OK_Ordinary)
11300         VK = Input.get()->getValueKind();
11301     } else if (!getLangOpts().CPlusPlus) {
11302       // In C, a volatile scalar is read by __imag. In C++, it is not.
11303       Input = DefaultLvalueConversion(Input.get());
11304     }
11305     break;
11306   case UO_Extension:
11307   case UO_Coawait:
11308     resultType = Input.get()->getType();
11309     VK = Input.get()->getValueKind();
11310     OK = Input.get()->getObjectKind();
11311     break;
11312   }
11313   if (resultType.isNull() || Input.isInvalid())
11314     return ExprError();
11315 
11316   // Check for array bounds violations in the operand of the UnaryOperator,
11317   // except for the '*' and '&' operators that have to be handled specially
11318   // by CheckArrayAccess (as there are special cases like &array[arraysize]
11319   // that are explicitly defined as valid by the standard).
11320   if (Opc != UO_AddrOf && Opc != UO_Deref)
11321     CheckArrayAccess(Input.get());
11322 
11323   return new (Context)
11324       UnaryOperator(Input.get(), Opc, resultType, VK, OK, OpLoc);
11325 }
11326 
11327 /// \brief Determine whether the given expression is a qualified member
11328 /// access expression, of a form that could be turned into a pointer to member
11329 /// with the address-of operator.
11330 static bool isQualifiedMemberAccess(Expr *E) {
11331   if (DeclRefExpr *DRE = dyn_cast<DeclRefExpr>(E)) {
11332     if (!DRE->getQualifier())
11333       return false;
11334 
11335     ValueDecl *VD = DRE->getDecl();
11336     if (!VD->isCXXClassMember())
11337       return false;
11338 
11339     if (isa<FieldDecl>(VD) || isa<IndirectFieldDecl>(VD))
11340       return true;
11341     if (CXXMethodDecl *Method = dyn_cast<CXXMethodDecl>(VD))
11342       return Method->isInstance();
11343 
11344     return false;
11345   }
11346 
11347   if (UnresolvedLookupExpr *ULE = dyn_cast<UnresolvedLookupExpr>(E)) {
11348     if (!ULE->getQualifier())
11349       return false;
11350 
11351     for (NamedDecl *D : ULE->decls()) {
11352       if (CXXMethodDecl *Method = dyn_cast<CXXMethodDecl>(D)) {
11353         if (Method->isInstance())
11354           return true;
11355       } else {
11356         // Overload set does not contain methods.
11357         break;
11358       }
11359     }
11360 
11361     return false;
11362   }
11363 
11364   return false;
11365 }
11366 
11367 ExprResult Sema::BuildUnaryOp(Scope *S, SourceLocation OpLoc,
11368                               UnaryOperatorKind Opc, Expr *Input) {
11369   // First things first: handle placeholders so that the
11370   // overloaded-operator check considers the right type.
11371   if (const BuiltinType *pty = Input->getType()->getAsPlaceholderType()) {
11372     // Increment and decrement of pseudo-object references.
11373     if (pty->getKind() == BuiltinType::PseudoObject &&
11374         UnaryOperator::isIncrementDecrementOp(Opc))
11375       return checkPseudoObjectIncDec(S, OpLoc, Opc, Input);
11376 
11377     // extension is always a builtin operator.
11378     if (Opc == UO_Extension)
11379       return CreateBuiltinUnaryOp(OpLoc, Opc, Input);
11380 
11381     // & gets special logic for several kinds of placeholder.
11382     // The builtin code knows what to do.
11383     if (Opc == UO_AddrOf &&
11384         (pty->getKind() == BuiltinType::Overload ||
11385          pty->getKind() == BuiltinType::UnknownAny ||
11386          pty->getKind() == BuiltinType::BoundMember))
11387       return CreateBuiltinUnaryOp(OpLoc, Opc, Input);
11388 
11389     // Anything else needs to be handled now.
11390     ExprResult Result = CheckPlaceholderExpr(Input);
11391     if (Result.isInvalid()) return ExprError();
11392     Input = Result.get();
11393   }
11394 
11395   if (getLangOpts().CPlusPlus && Input->getType()->isOverloadableType() &&
11396       UnaryOperator::getOverloadedOperator(Opc) != OO_None &&
11397       !(Opc == UO_AddrOf && isQualifiedMemberAccess(Input))) {
11398     // Find all of the overloaded operators visible from this
11399     // point. We perform both an operator-name lookup from the local
11400     // scope and an argument-dependent lookup based on the types of
11401     // the arguments.
11402     UnresolvedSet<16> Functions;
11403     OverloadedOperatorKind OverOp = UnaryOperator::getOverloadedOperator(Opc);
11404     if (S && OverOp != OO_None)
11405       LookupOverloadedOperatorName(OverOp, S, Input->getType(), QualType(),
11406                                    Functions);
11407 
11408     return CreateOverloadedUnaryOp(OpLoc, Opc, Functions, Input);
11409   }
11410 
11411   return CreateBuiltinUnaryOp(OpLoc, Opc, Input);
11412 }
11413 
11414 // Unary Operators.  'Tok' is the token for the operator.
11415 ExprResult Sema::ActOnUnaryOp(Scope *S, SourceLocation OpLoc,
11416                               tok::TokenKind Op, Expr *Input) {
11417   return BuildUnaryOp(S, OpLoc, ConvertTokenKindToUnaryOpcode(Op), Input);
11418 }
11419 
11420 /// ActOnAddrLabel - Parse the GNU address of label extension: "&&foo".
11421 ExprResult Sema::ActOnAddrLabel(SourceLocation OpLoc, SourceLocation LabLoc,
11422                                 LabelDecl *TheDecl) {
11423   TheDecl->markUsed(Context);
11424   // Create the AST node.  The address of a label always has type 'void*'.
11425   return new (Context) AddrLabelExpr(OpLoc, LabLoc, TheDecl,
11426                                      Context.getPointerType(Context.VoidTy));
11427 }
11428 
11429 /// Given the last statement in a statement-expression, check whether
11430 /// the result is a producing expression (like a call to an
11431 /// ns_returns_retained function) and, if so, rebuild it to hoist the
11432 /// release out of the full-expression.  Otherwise, return null.
11433 /// Cannot fail.
11434 static Expr *maybeRebuildARCConsumingStmt(Stmt *Statement) {
11435   // Should always be wrapped with one of these.
11436   ExprWithCleanups *cleanups = dyn_cast<ExprWithCleanups>(Statement);
11437   if (!cleanups) return nullptr;
11438 
11439   ImplicitCastExpr *cast = dyn_cast<ImplicitCastExpr>(cleanups->getSubExpr());
11440   if (!cast || cast->getCastKind() != CK_ARCConsumeObject)
11441     return nullptr;
11442 
11443   // Splice out the cast.  This shouldn't modify any interesting
11444   // features of the statement.
11445   Expr *producer = cast->getSubExpr();
11446   assert(producer->getType() == cast->getType());
11447   assert(producer->getValueKind() == cast->getValueKind());
11448   cleanups->setSubExpr(producer);
11449   return cleanups;
11450 }
11451 
11452 void Sema::ActOnStartStmtExpr() {
11453   PushExpressionEvaluationContext(ExprEvalContexts.back().Context);
11454 }
11455 
11456 void Sema::ActOnStmtExprError() {
11457   // Note that function is also called by TreeTransform when leaving a
11458   // StmtExpr scope without rebuilding anything.
11459 
11460   DiscardCleanupsInEvaluationContext();
11461   PopExpressionEvaluationContext();
11462 }
11463 
11464 ExprResult
11465 Sema::ActOnStmtExpr(SourceLocation LPLoc, Stmt *SubStmt,
11466                     SourceLocation RPLoc) { // "({..})"
11467   assert(SubStmt && isa<CompoundStmt>(SubStmt) && "Invalid action invocation!");
11468   CompoundStmt *Compound = cast<CompoundStmt>(SubStmt);
11469 
11470   if (hasAnyUnrecoverableErrorsInThisFunction())
11471     DiscardCleanupsInEvaluationContext();
11472   assert(!ExprNeedsCleanups && "cleanups within StmtExpr not correctly bound!");
11473   PopExpressionEvaluationContext();
11474 
11475   // FIXME: there are a variety of strange constraints to enforce here, for
11476   // example, it is not possible to goto into a stmt expression apparently.
11477   // More semantic analysis is needed.
11478 
11479   // If there are sub-stmts in the compound stmt, take the type of the last one
11480   // as the type of the stmtexpr.
11481   QualType Ty = Context.VoidTy;
11482   bool StmtExprMayBindToTemp = false;
11483   if (!Compound->body_empty()) {
11484     Stmt *LastStmt = Compound->body_back();
11485     LabelStmt *LastLabelStmt = nullptr;
11486     // If LastStmt is a label, skip down through into the body.
11487     while (LabelStmt *Label = dyn_cast<LabelStmt>(LastStmt)) {
11488       LastLabelStmt = Label;
11489       LastStmt = Label->getSubStmt();
11490     }
11491 
11492     if (Expr *LastE = dyn_cast<Expr>(LastStmt)) {
11493       // Do function/array conversion on the last expression, but not
11494       // lvalue-to-rvalue.  However, initialize an unqualified type.
11495       ExprResult LastExpr = DefaultFunctionArrayConversion(LastE);
11496       if (LastExpr.isInvalid())
11497         return ExprError();
11498       Ty = LastExpr.get()->getType().getUnqualifiedType();
11499 
11500       if (!Ty->isDependentType() && !LastExpr.get()->isTypeDependent()) {
11501         // In ARC, if the final expression ends in a consume, splice
11502         // the consume out and bind it later.  In the alternate case
11503         // (when dealing with a retainable type), the result
11504         // initialization will create a produce.  In both cases the
11505         // result will be +1, and we'll need to balance that out with
11506         // a bind.
11507         if (Expr *rebuiltLastStmt
11508               = maybeRebuildARCConsumingStmt(LastExpr.get())) {
11509           LastExpr = rebuiltLastStmt;
11510         } else {
11511           LastExpr = PerformCopyInitialization(
11512                             InitializedEntity::InitializeResult(LPLoc,
11513                                                                 Ty,
11514                                                                 false),
11515                                                    SourceLocation(),
11516                                                LastExpr);
11517         }
11518 
11519         if (LastExpr.isInvalid())
11520           return ExprError();
11521         if (LastExpr.get() != nullptr) {
11522           if (!LastLabelStmt)
11523             Compound->setLastStmt(LastExpr.get());
11524           else
11525             LastLabelStmt->setSubStmt(LastExpr.get());
11526           StmtExprMayBindToTemp = true;
11527         }
11528       }
11529     }
11530   }
11531 
11532   // FIXME: Check that expression type is complete/non-abstract; statement
11533   // expressions are not lvalues.
11534   Expr *ResStmtExpr = new (Context) StmtExpr(Compound, Ty, LPLoc, RPLoc);
11535   if (StmtExprMayBindToTemp)
11536     return MaybeBindToTemporary(ResStmtExpr);
11537   return ResStmtExpr;
11538 }
11539 
11540 ExprResult Sema::BuildBuiltinOffsetOf(SourceLocation BuiltinLoc,
11541                                       TypeSourceInfo *TInfo,
11542                                       ArrayRef<OffsetOfComponent> Components,
11543                                       SourceLocation RParenLoc) {
11544   QualType ArgTy = TInfo->getType();
11545   bool Dependent = ArgTy->isDependentType();
11546   SourceRange TypeRange = TInfo->getTypeLoc().getLocalSourceRange();
11547 
11548   // We must have at least one component that refers to the type, and the first
11549   // one is known to be a field designator.  Verify that the ArgTy represents
11550   // a struct/union/class.
11551   if (!Dependent && !ArgTy->isRecordType())
11552     return ExprError(Diag(BuiltinLoc, diag::err_offsetof_record_type)
11553                        << ArgTy << TypeRange);
11554 
11555   // Type must be complete per C99 7.17p3 because a declaring a variable
11556   // with an incomplete type would be ill-formed.
11557   if (!Dependent
11558       && RequireCompleteType(BuiltinLoc, ArgTy,
11559                              diag::err_offsetof_incomplete_type, TypeRange))
11560     return ExprError();
11561 
11562   // offsetof with non-identifier designators (e.g. "offsetof(x, a.b[c])") are a
11563   // GCC extension, diagnose them.
11564   // FIXME: This diagnostic isn't actually visible because the location is in
11565   // a system header!
11566   if (Components.size() != 1)
11567     Diag(BuiltinLoc, diag::ext_offsetof_extended_field_designator)
11568       << SourceRange(Components[1].LocStart, Components.back().LocEnd);
11569 
11570   bool DidWarnAboutNonPOD = false;
11571   QualType CurrentType = ArgTy;
11572   SmallVector<OffsetOfNode, 4> Comps;
11573   SmallVector<Expr*, 4> Exprs;
11574   for (const OffsetOfComponent &OC : Components) {
11575     if (OC.isBrackets) {
11576       // Offset of an array sub-field.  TODO: Should we allow vector elements?
11577       if (!CurrentType->isDependentType()) {
11578         const ArrayType *AT = Context.getAsArrayType(CurrentType);
11579         if(!AT)
11580           return ExprError(Diag(OC.LocEnd, diag::err_offsetof_array_type)
11581                            << CurrentType);
11582         CurrentType = AT->getElementType();
11583       } else
11584         CurrentType = Context.DependentTy;
11585 
11586       ExprResult IdxRval = DefaultLvalueConversion(static_cast<Expr*>(OC.U.E));
11587       if (IdxRval.isInvalid())
11588         return ExprError();
11589       Expr *Idx = IdxRval.get();
11590 
11591       // The expression must be an integral expression.
11592       // FIXME: An integral constant expression?
11593       if (!Idx->isTypeDependent() && !Idx->isValueDependent() &&
11594           !Idx->getType()->isIntegerType())
11595         return ExprError(Diag(Idx->getLocStart(),
11596                               diag::err_typecheck_subscript_not_integer)
11597                          << Idx->getSourceRange());
11598 
11599       // Record this array index.
11600       Comps.push_back(OffsetOfNode(OC.LocStart, Exprs.size(), OC.LocEnd));
11601       Exprs.push_back(Idx);
11602       continue;
11603     }
11604 
11605     // Offset of a field.
11606     if (CurrentType->isDependentType()) {
11607       // We have the offset of a field, but we can't look into the dependent
11608       // type. Just record the identifier of the field.
11609       Comps.push_back(OffsetOfNode(OC.LocStart, OC.U.IdentInfo, OC.LocEnd));
11610       CurrentType = Context.DependentTy;
11611       continue;
11612     }
11613 
11614     // We need to have a complete type to look into.
11615     if (RequireCompleteType(OC.LocStart, CurrentType,
11616                             diag::err_offsetof_incomplete_type))
11617       return ExprError();
11618 
11619     // Look for the designated field.
11620     const RecordType *RC = CurrentType->getAs<RecordType>();
11621     if (!RC)
11622       return ExprError(Diag(OC.LocEnd, diag::err_offsetof_record_type)
11623                        << CurrentType);
11624     RecordDecl *RD = RC->getDecl();
11625 
11626     // C++ [lib.support.types]p5:
11627     //   The macro offsetof accepts a restricted set of type arguments in this
11628     //   International Standard. type shall be a POD structure or a POD union
11629     //   (clause 9).
11630     // C++11 [support.types]p4:
11631     //   If type is not a standard-layout class (Clause 9), the results are
11632     //   undefined.
11633     if (CXXRecordDecl *CRD = dyn_cast<CXXRecordDecl>(RD)) {
11634       bool IsSafe = LangOpts.CPlusPlus11? CRD->isStandardLayout() : CRD->isPOD();
11635       unsigned DiagID =
11636         LangOpts.CPlusPlus11? diag::ext_offsetof_non_standardlayout_type
11637                             : diag::ext_offsetof_non_pod_type;
11638 
11639       if (!IsSafe && !DidWarnAboutNonPOD &&
11640           DiagRuntimeBehavior(BuiltinLoc, nullptr,
11641                               PDiag(DiagID)
11642                               << SourceRange(Components[0].LocStart, OC.LocEnd)
11643                               << CurrentType))
11644         DidWarnAboutNonPOD = true;
11645     }
11646 
11647     // Look for the field.
11648     LookupResult R(*this, OC.U.IdentInfo, OC.LocStart, LookupMemberName);
11649     LookupQualifiedName(R, RD);
11650     FieldDecl *MemberDecl = R.getAsSingle<FieldDecl>();
11651     IndirectFieldDecl *IndirectMemberDecl = nullptr;
11652     if (!MemberDecl) {
11653       if ((IndirectMemberDecl = R.getAsSingle<IndirectFieldDecl>()))
11654         MemberDecl = IndirectMemberDecl->getAnonField();
11655     }
11656 
11657     if (!MemberDecl)
11658       return ExprError(Diag(BuiltinLoc, diag::err_no_member)
11659                        << OC.U.IdentInfo << RD << SourceRange(OC.LocStart,
11660                                                               OC.LocEnd));
11661 
11662     // C99 7.17p3:
11663     //   (If the specified member is a bit-field, the behavior is undefined.)
11664     //
11665     // We diagnose this as an error.
11666     if (MemberDecl->isBitField()) {
11667       Diag(OC.LocEnd, diag::err_offsetof_bitfield)
11668         << MemberDecl->getDeclName()
11669         << SourceRange(BuiltinLoc, RParenLoc);
11670       Diag(MemberDecl->getLocation(), diag::note_bitfield_decl);
11671       return ExprError();
11672     }
11673 
11674     RecordDecl *Parent = MemberDecl->getParent();
11675     if (IndirectMemberDecl)
11676       Parent = cast<RecordDecl>(IndirectMemberDecl->getDeclContext());
11677 
11678     // If the member was found in a base class, introduce OffsetOfNodes for
11679     // the base class indirections.
11680     CXXBasePaths Paths;
11681     if (IsDerivedFrom(OC.LocStart, CurrentType, Context.getTypeDeclType(Parent),
11682                       Paths)) {
11683       if (Paths.getDetectedVirtual()) {
11684         Diag(OC.LocEnd, diag::err_offsetof_field_of_virtual_base)
11685           << MemberDecl->getDeclName()
11686           << SourceRange(BuiltinLoc, RParenLoc);
11687         return ExprError();
11688       }
11689 
11690       CXXBasePath &Path = Paths.front();
11691       for (const CXXBasePathElement &B : Path)
11692         Comps.push_back(OffsetOfNode(B.Base));
11693     }
11694 
11695     if (IndirectMemberDecl) {
11696       for (auto *FI : IndirectMemberDecl->chain()) {
11697         assert(isa<FieldDecl>(FI));
11698         Comps.push_back(OffsetOfNode(OC.LocStart,
11699                                      cast<FieldDecl>(FI), OC.LocEnd));
11700       }
11701     } else
11702       Comps.push_back(OffsetOfNode(OC.LocStart, MemberDecl, OC.LocEnd));
11703 
11704     CurrentType = MemberDecl->getType().getNonReferenceType();
11705   }
11706 
11707   return OffsetOfExpr::Create(Context, Context.getSizeType(), BuiltinLoc, TInfo,
11708                               Comps, Exprs, RParenLoc);
11709 }
11710 
11711 ExprResult Sema::ActOnBuiltinOffsetOf(Scope *S,
11712                                       SourceLocation BuiltinLoc,
11713                                       SourceLocation TypeLoc,
11714                                       ParsedType ParsedArgTy,
11715                                       ArrayRef<OffsetOfComponent> Components,
11716                                       SourceLocation RParenLoc) {
11717 
11718   TypeSourceInfo *ArgTInfo;
11719   QualType ArgTy = GetTypeFromParser(ParsedArgTy, &ArgTInfo);
11720   if (ArgTy.isNull())
11721     return ExprError();
11722 
11723   if (!ArgTInfo)
11724     ArgTInfo = Context.getTrivialTypeSourceInfo(ArgTy, TypeLoc);
11725 
11726   return BuildBuiltinOffsetOf(BuiltinLoc, ArgTInfo, Components, RParenLoc);
11727 }
11728 
11729 
11730 ExprResult Sema::ActOnChooseExpr(SourceLocation BuiltinLoc,
11731                                  Expr *CondExpr,
11732                                  Expr *LHSExpr, Expr *RHSExpr,
11733                                  SourceLocation RPLoc) {
11734   assert((CondExpr && LHSExpr && RHSExpr) && "Missing type argument(s)");
11735 
11736   ExprValueKind VK = VK_RValue;
11737   ExprObjectKind OK = OK_Ordinary;
11738   QualType resType;
11739   bool ValueDependent = false;
11740   bool CondIsTrue = false;
11741   if (CondExpr->isTypeDependent() || CondExpr->isValueDependent()) {
11742     resType = Context.DependentTy;
11743     ValueDependent = true;
11744   } else {
11745     // The conditional expression is required to be a constant expression.
11746     llvm::APSInt condEval(32);
11747     ExprResult CondICE
11748       = VerifyIntegerConstantExpression(CondExpr, &condEval,
11749           diag::err_typecheck_choose_expr_requires_constant, false);
11750     if (CondICE.isInvalid())
11751       return ExprError();
11752     CondExpr = CondICE.get();
11753     CondIsTrue = condEval.getZExtValue();
11754 
11755     // If the condition is > zero, then the AST type is the same as the LSHExpr.
11756     Expr *ActiveExpr = CondIsTrue ? LHSExpr : RHSExpr;
11757 
11758     resType = ActiveExpr->getType();
11759     ValueDependent = ActiveExpr->isValueDependent();
11760     VK = ActiveExpr->getValueKind();
11761     OK = ActiveExpr->getObjectKind();
11762   }
11763 
11764   return new (Context)
11765       ChooseExpr(BuiltinLoc, CondExpr, LHSExpr, RHSExpr, resType, VK, OK, RPLoc,
11766                  CondIsTrue, resType->isDependentType(), ValueDependent);
11767 }
11768 
11769 //===----------------------------------------------------------------------===//
11770 // Clang Extensions.
11771 //===----------------------------------------------------------------------===//
11772 
11773 /// ActOnBlockStart - This callback is invoked when a block literal is started.
11774 void Sema::ActOnBlockStart(SourceLocation CaretLoc, Scope *CurScope) {
11775   BlockDecl *Block = BlockDecl::Create(Context, CurContext, CaretLoc);
11776 
11777   if (LangOpts.CPlusPlus) {
11778     Decl *ManglingContextDecl;
11779     if (MangleNumberingContext *MCtx =
11780             getCurrentMangleNumberContext(Block->getDeclContext(),
11781                                           ManglingContextDecl)) {
11782       unsigned ManglingNumber = MCtx->getManglingNumber(Block);
11783       Block->setBlockMangling(ManglingNumber, ManglingContextDecl);
11784     }
11785   }
11786 
11787   PushBlockScope(CurScope, Block);
11788   CurContext->addDecl(Block);
11789   if (CurScope)
11790     PushDeclContext(CurScope, Block);
11791   else
11792     CurContext = Block;
11793 
11794   getCurBlock()->HasImplicitReturnType = true;
11795 
11796   // Enter a new evaluation context to insulate the block from any
11797   // cleanups from the enclosing full-expression.
11798   PushExpressionEvaluationContext(PotentiallyEvaluated);
11799 }
11800 
11801 void Sema::ActOnBlockArguments(SourceLocation CaretLoc, Declarator &ParamInfo,
11802                                Scope *CurScope) {
11803   assert(ParamInfo.getIdentifier() == nullptr &&
11804          "block-id should have no identifier!");
11805   assert(ParamInfo.getContext() == Declarator::BlockLiteralContext);
11806   BlockScopeInfo *CurBlock = getCurBlock();
11807 
11808   TypeSourceInfo *Sig = GetTypeForDeclarator(ParamInfo, CurScope);
11809   QualType T = Sig->getType();
11810 
11811   // FIXME: We should allow unexpanded parameter packs here, but that would,
11812   // in turn, make the block expression contain unexpanded parameter packs.
11813   if (DiagnoseUnexpandedParameterPack(CaretLoc, Sig, UPPC_Block)) {
11814     // Drop the parameters.
11815     FunctionProtoType::ExtProtoInfo EPI;
11816     EPI.HasTrailingReturn = false;
11817     EPI.TypeQuals |= DeclSpec::TQ_const;
11818     T = Context.getFunctionType(Context.DependentTy, None, EPI);
11819     Sig = Context.getTrivialTypeSourceInfo(T);
11820   }
11821 
11822   // GetTypeForDeclarator always produces a function type for a block
11823   // literal signature.  Furthermore, it is always a FunctionProtoType
11824   // unless the function was written with a typedef.
11825   assert(T->isFunctionType() &&
11826          "GetTypeForDeclarator made a non-function block signature");
11827 
11828   // Look for an explicit signature in that function type.
11829   FunctionProtoTypeLoc ExplicitSignature;
11830 
11831   TypeLoc tmp = Sig->getTypeLoc().IgnoreParens();
11832   if ((ExplicitSignature = tmp.getAs<FunctionProtoTypeLoc>())) {
11833 
11834     // Check whether that explicit signature was synthesized by
11835     // GetTypeForDeclarator.  If so, don't save that as part of the
11836     // written signature.
11837     if (ExplicitSignature.getLocalRangeBegin() ==
11838         ExplicitSignature.getLocalRangeEnd()) {
11839       // This would be much cheaper if we stored TypeLocs instead of
11840       // TypeSourceInfos.
11841       TypeLoc Result = ExplicitSignature.getReturnLoc();
11842       unsigned Size = Result.getFullDataSize();
11843       Sig = Context.CreateTypeSourceInfo(Result.getType(), Size);
11844       Sig->getTypeLoc().initializeFullCopy(Result, Size);
11845 
11846       ExplicitSignature = FunctionProtoTypeLoc();
11847     }
11848   }
11849 
11850   CurBlock->TheDecl->setSignatureAsWritten(Sig);
11851   CurBlock->FunctionType = T;
11852 
11853   const FunctionType *Fn = T->getAs<FunctionType>();
11854   QualType RetTy = Fn->getReturnType();
11855   bool isVariadic =
11856     (isa<FunctionProtoType>(Fn) && cast<FunctionProtoType>(Fn)->isVariadic());
11857 
11858   CurBlock->TheDecl->setIsVariadic(isVariadic);
11859 
11860   // Context.DependentTy is used as a placeholder for a missing block
11861   // return type.  TODO:  what should we do with declarators like:
11862   //   ^ * { ... }
11863   // If the answer is "apply template argument deduction"....
11864   if (RetTy != Context.DependentTy) {
11865     CurBlock->ReturnType = RetTy;
11866     CurBlock->TheDecl->setBlockMissingReturnType(false);
11867     CurBlock->HasImplicitReturnType = false;
11868   }
11869 
11870   // Push block parameters from the declarator if we had them.
11871   SmallVector<ParmVarDecl*, 8> Params;
11872   if (ExplicitSignature) {
11873     for (unsigned I = 0, E = ExplicitSignature.getNumParams(); I != E; ++I) {
11874       ParmVarDecl *Param = ExplicitSignature.getParam(I);
11875       if (Param->getIdentifier() == nullptr &&
11876           !Param->isImplicit() &&
11877           !Param->isInvalidDecl() &&
11878           !getLangOpts().CPlusPlus)
11879         Diag(Param->getLocation(), diag::err_parameter_name_omitted);
11880       Params.push_back(Param);
11881     }
11882 
11883   // Fake up parameter variables if we have a typedef, like
11884   //   ^ fntype { ... }
11885   } else if (const FunctionProtoType *Fn = T->getAs<FunctionProtoType>()) {
11886     for (const auto &I : Fn->param_types()) {
11887       ParmVarDecl *Param = BuildParmVarDeclForTypedef(
11888           CurBlock->TheDecl, ParamInfo.getLocStart(), I);
11889       Params.push_back(Param);
11890     }
11891   }
11892 
11893   // Set the parameters on the block decl.
11894   if (!Params.empty()) {
11895     CurBlock->TheDecl->setParams(Params);
11896     CheckParmsForFunctionDef(CurBlock->TheDecl->param_begin(),
11897                              CurBlock->TheDecl->param_end(),
11898                              /*CheckParameterNames=*/false);
11899   }
11900 
11901   // Finally we can process decl attributes.
11902   ProcessDeclAttributes(CurScope, CurBlock->TheDecl, ParamInfo);
11903 
11904   // Put the parameter variables in scope.
11905   for (auto AI : CurBlock->TheDecl->params()) {
11906     AI->setOwningFunction(CurBlock->TheDecl);
11907 
11908     // If this has an identifier, add it to the scope stack.
11909     if (AI->getIdentifier()) {
11910       CheckShadow(CurBlock->TheScope, AI);
11911 
11912       PushOnScopeChains(AI, CurBlock->TheScope);
11913     }
11914   }
11915 }
11916 
11917 /// ActOnBlockError - If there is an error parsing a block, this callback
11918 /// is invoked to pop the information about the block from the action impl.
11919 void Sema::ActOnBlockError(SourceLocation CaretLoc, Scope *CurScope) {
11920   // Leave the expression-evaluation context.
11921   DiscardCleanupsInEvaluationContext();
11922   PopExpressionEvaluationContext();
11923 
11924   // Pop off CurBlock, handle nested blocks.
11925   PopDeclContext();
11926   PopFunctionScopeInfo();
11927 }
11928 
11929 /// ActOnBlockStmtExpr - This is called when the body of a block statement
11930 /// literal was successfully completed.  ^(int x){...}
11931 ExprResult Sema::ActOnBlockStmtExpr(SourceLocation CaretLoc,
11932                                     Stmt *Body, Scope *CurScope) {
11933   // If blocks are disabled, emit an error.
11934   if (!LangOpts.Blocks)
11935     Diag(CaretLoc, diag::err_blocks_disable);
11936 
11937   // Leave the expression-evaluation context.
11938   if (hasAnyUnrecoverableErrorsInThisFunction())
11939     DiscardCleanupsInEvaluationContext();
11940   assert(!ExprNeedsCleanups && "cleanups within block not correctly bound!");
11941   PopExpressionEvaluationContext();
11942 
11943   BlockScopeInfo *BSI = cast<BlockScopeInfo>(FunctionScopes.back());
11944 
11945   if (BSI->HasImplicitReturnType)
11946     deduceClosureReturnType(*BSI);
11947 
11948   PopDeclContext();
11949 
11950   QualType RetTy = Context.VoidTy;
11951   if (!BSI->ReturnType.isNull())
11952     RetTy = BSI->ReturnType;
11953 
11954   bool NoReturn = BSI->TheDecl->hasAttr<NoReturnAttr>();
11955   QualType BlockTy;
11956 
11957   // Set the captured variables on the block.
11958   // FIXME: Share capture structure between BlockDecl and CapturingScopeInfo!
11959   SmallVector<BlockDecl::Capture, 4> Captures;
11960   for (CapturingScopeInfo::Capture &Cap : BSI->Captures) {
11961     if (Cap.isThisCapture())
11962       continue;
11963     BlockDecl::Capture NewCap(Cap.getVariable(), Cap.isBlockCapture(),
11964                               Cap.isNested(), Cap.getInitExpr());
11965     Captures.push_back(NewCap);
11966   }
11967   BSI->TheDecl->setCaptures(Context, Captures, BSI->CXXThisCaptureIndex != 0);
11968 
11969   // If the user wrote a function type in some form, try to use that.
11970   if (!BSI->FunctionType.isNull()) {
11971     const FunctionType *FTy = BSI->FunctionType->getAs<FunctionType>();
11972 
11973     FunctionType::ExtInfo Ext = FTy->getExtInfo();
11974     if (NoReturn && !Ext.getNoReturn()) Ext = Ext.withNoReturn(true);
11975 
11976     // Turn protoless block types into nullary block types.
11977     if (isa<FunctionNoProtoType>(FTy)) {
11978       FunctionProtoType::ExtProtoInfo EPI;
11979       EPI.ExtInfo = Ext;
11980       BlockTy = Context.getFunctionType(RetTy, None, EPI);
11981 
11982     // Otherwise, if we don't need to change anything about the function type,
11983     // preserve its sugar structure.
11984     } else if (FTy->getReturnType() == RetTy &&
11985                (!NoReturn || FTy->getNoReturnAttr())) {
11986       BlockTy = BSI->FunctionType;
11987 
11988     // Otherwise, make the minimal modifications to the function type.
11989     } else {
11990       const FunctionProtoType *FPT = cast<FunctionProtoType>(FTy);
11991       FunctionProtoType::ExtProtoInfo EPI = FPT->getExtProtoInfo();
11992       EPI.TypeQuals = 0; // FIXME: silently?
11993       EPI.ExtInfo = Ext;
11994       BlockTy = Context.getFunctionType(RetTy, FPT->getParamTypes(), EPI);
11995     }
11996 
11997   // If we don't have a function type, just build one from nothing.
11998   } else {
11999     FunctionProtoType::ExtProtoInfo EPI;
12000     EPI.ExtInfo = FunctionType::ExtInfo().withNoReturn(NoReturn);
12001     BlockTy = Context.getFunctionType(RetTy, None, EPI);
12002   }
12003 
12004   DiagnoseUnusedParameters(BSI->TheDecl->param_begin(),
12005                            BSI->TheDecl->param_end());
12006   BlockTy = Context.getBlockPointerType(BlockTy);
12007 
12008   // If needed, diagnose invalid gotos and switches in the block.
12009   if (getCurFunction()->NeedsScopeChecking() &&
12010       !PP.isCodeCompletionEnabled())
12011     DiagnoseInvalidJumps(cast<CompoundStmt>(Body));
12012 
12013   BSI->TheDecl->setBody(cast<CompoundStmt>(Body));
12014 
12015   // Try to apply the named return value optimization. We have to check again
12016   // if we can do this, though, because blocks keep return statements around
12017   // to deduce an implicit return type.
12018   if (getLangOpts().CPlusPlus && RetTy->isRecordType() &&
12019       !BSI->TheDecl->isDependentContext())
12020     computeNRVO(Body, BSI);
12021 
12022   BlockExpr *Result = new (Context) BlockExpr(BSI->TheDecl, BlockTy);
12023   AnalysisBasedWarnings::Policy WP = AnalysisWarnings.getDefaultPolicy();
12024   PopFunctionScopeInfo(&WP, Result->getBlockDecl(), Result);
12025 
12026   // If the block isn't obviously global, i.e. it captures anything at
12027   // all, then we need to do a few things in the surrounding context:
12028   if (Result->getBlockDecl()->hasCaptures()) {
12029     // First, this expression has a new cleanup object.
12030     ExprCleanupObjects.push_back(Result->getBlockDecl());
12031     ExprNeedsCleanups = true;
12032 
12033     // It also gets a branch-protected scope if any of the captured
12034     // variables needs destruction.
12035     for (const auto &CI : Result->getBlockDecl()->captures()) {
12036       const VarDecl *var = CI.getVariable();
12037       if (var->getType().isDestructedType() != QualType::DK_none) {
12038         getCurFunction()->setHasBranchProtectedScope();
12039         break;
12040       }
12041     }
12042   }
12043 
12044   return Result;
12045 }
12046 
12047 ExprResult Sema::ActOnVAArg(SourceLocation BuiltinLoc, Expr *E, ParsedType Ty,
12048                             SourceLocation RPLoc) {
12049   TypeSourceInfo *TInfo;
12050   GetTypeFromParser(Ty, &TInfo);
12051   return BuildVAArgExpr(BuiltinLoc, E, TInfo, RPLoc);
12052 }
12053 
12054 ExprResult Sema::BuildVAArgExpr(SourceLocation BuiltinLoc,
12055                                 Expr *E, TypeSourceInfo *TInfo,
12056                                 SourceLocation RPLoc) {
12057   Expr *OrigExpr = E;
12058   bool IsMS = false;
12059 
12060   // CUDA device code does not support varargs.
12061   if (getLangOpts().CUDA && getLangOpts().CUDAIsDevice) {
12062     if (const FunctionDecl *F = dyn_cast<FunctionDecl>(CurContext)) {
12063       CUDAFunctionTarget T = IdentifyCUDATarget(F);
12064       if (T == CFT_Global || T == CFT_Device || T == CFT_HostDevice)
12065         return ExprError(Diag(E->getLocStart(), diag::err_va_arg_in_device));
12066     }
12067   }
12068 
12069   // It might be a __builtin_ms_va_list. (But don't ever mark a va_arg()
12070   // as Microsoft ABI on an actual Microsoft platform, where
12071   // __builtin_ms_va_list and __builtin_va_list are the same.)
12072   if (!E->isTypeDependent() && Context.getTargetInfo().hasBuiltinMSVaList() &&
12073       Context.getTargetInfo().getBuiltinVaListKind() != TargetInfo::CharPtrBuiltinVaList) {
12074     QualType MSVaListType = Context.getBuiltinMSVaListType();
12075     if (Context.hasSameType(MSVaListType, E->getType())) {
12076       if (CheckForModifiableLvalue(E, BuiltinLoc, *this))
12077         return ExprError();
12078       IsMS = true;
12079     }
12080   }
12081 
12082   // Get the va_list type
12083   QualType VaListType = Context.getBuiltinVaListType();
12084   if (!IsMS) {
12085     if (VaListType->isArrayType()) {
12086       // Deal with implicit array decay; for example, on x86-64,
12087       // va_list is an array, but it's supposed to decay to
12088       // a pointer for va_arg.
12089       VaListType = Context.getArrayDecayedType(VaListType);
12090       // Make sure the input expression also decays appropriately.
12091       ExprResult Result = UsualUnaryConversions(E);
12092       if (Result.isInvalid())
12093         return ExprError();
12094       E = Result.get();
12095     } else if (VaListType->isRecordType() && getLangOpts().CPlusPlus) {
12096       // If va_list is a record type and we are compiling in C++ mode,
12097       // check the argument using reference binding.
12098       InitializedEntity Entity = InitializedEntity::InitializeParameter(
12099           Context, Context.getLValueReferenceType(VaListType), false);
12100       ExprResult Init = PerformCopyInitialization(Entity, SourceLocation(), E);
12101       if (Init.isInvalid())
12102         return ExprError();
12103       E = Init.getAs<Expr>();
12104     } else {
12105       // Otherwise, the va_list argument must be an l-value because
12106       // it is modified by va_arg.
12107       if (!E->isTypeDependent() &&
12108           CheckForModifiableLvalue(E, BuiltinLoc, *this))
12109         return ExprError();
12110     }
12111   }
12112 
12113   if (!IsMS && !E->isTypeDependent() &&
12114       !Context.hasSameType(VaListType, E->getType()))
12115     return ExprError(Diag(E->getLocStart(),
12116                          diag::err_first_argument_to_va_arg_not_of_type_va_list)
12117       << OrigExpr->getType() << E->getSourceRange());
12118 
12119   if (!TInfo->getType()->isDependentType()) {
12120     if (RequireCompleteType(TInfo->getTypeLoc().getBeginLoc(), TInfo->getType(),
12121                             diag::err_second_parameter_to_va_arg_incomplete,
12122                             TInfo->getTypeLoc()))
12123       return ExprError();
12124 
12125     if (RequireNonAbstractType(TInfo->getTypeLoc().getBeginLoc(),
12126                                TInfo->getType(),
12127                                diag::err_second_parameter_to_va_arg_abstract,
12128                                TInfo->getTypeLoc()))
12129       return ExprError();
12130 
12131     if (!TInfo->getType().isPODType(Context)) {
12132       Diag(TInfo->getTypeLoc().getBeginLoc(),
12133            TInfo->getType()->isObjCLifetimeType()
12134              ? diag::warn_second_parameter_to_va_arg_ownership_qualified
12135              : diag::warn_second_parameter_to_va_arg_not_pod)
12136         << TInfo->getType()
12137         << TInfo->getTypeLoc().getSourceRange();
12138     }
12139 
12140     // Check for va_arg where arguments of the given type will be promoted
12141     // (i.e. this va_arg is guaranteed to have undefined behavior).
12142     QualType PromoteType;
12143     if (TInfo->getType()->isPromotableIntegerType()) {
12144       PromoteType = Context.getPromotedIntegerType(TInfo->getType());
12145       if (Context.typesAreCompatible(PromoteType, TInfo->getType()))
12146         PromoteType = QualType();
12147     }
12148     if (TInfo->getType()->isSpecificBuiltinType(BuiltinType::Float))
12149       PromoteType = Context.DoubleTy;
12150     if (!PromoteType.isNull())
12151       DiagRuntimeBehavior(TInfo->getTypeLoc().getBeginLoc(), E,
12152                   PDiag(diag::warn_second_parameter_to_va_arg_never_compatible)
12153                           << TInfo->getType()
12154                           << PromoteType
12155                           << TInfo->getTypeLoc().getSourceRange());
12156   }
12157 
12158   QualType T = TInfo->getType().getNonLValueExprType(Context);
12159   return new (Context) VAArgExpr(BuiltinLoc, E, TInfo, RPLoc, T, IsMS);
12160 }
12161 
12162 ExprResult Sema::ActOnGNUNullExpr(SourceLocation TokenLoc) {
12163   // The type of __null will be int or long, depending on the size of
12164   // pointers on the target.
12165   QualType Ty;
12166   unsigned pw = Context.getTargetInfo().getPointerWidth(0);
12167   if (pw == Context.getTargetInfo().getIntWidth())
12168     Ty = Context.IntTy;
12169   else if (pw == Context.getTargetInfo().getLongWidth())
12170     Ty = Context.LongTy;
12171   else if (pw == Context.getTargetInfo().getLongLongWidth())
12172     Ty = Context.LongLongTy;
12173   else {
12174     llvm_unreachable("I don't know size of pointer!");
12175   }
12176 
12177   return new (Context) GNUNullExpr(Ty, TokenLoc);
12178 }
12179 
12180 bool Sema::ConversionToObjCStringLiteralCheck(QualType DstType, Expr *&Exp,
12181                                               bool Diagnose) {
12182   if (!getLangOpts().ObjC1)
12183     return false;
12184 
12185   const ObjCObjectPointerType *PT = DstType->getAs<ObjCObjectPointerType>();
12186   if (!PT)
12187     return false;
12188 
12189   if (!PT->isObjCIdType()) {
12190     // Check if the destination is the 'NSString' interface.
12191     const ObjCInterfaceDecl *ID = PT->getInterfaceDecl();
12192     if (!ID || !ID->getIdentifier()->isStr("NSString"))
12193       return false;
12194   }
12195 
12196   // Ignore any parens, implicit casts (should only be
12197   // array-to-pointer decays), and not-so-opaque values.  The last is
12198   // important for making this trigger for property assignments.
12199   Expr *SrcExpr = Exp->IgnoreParenImpCasts();
12200   if (OpaqueValueExpr *OV = dyn_cast<OpaqueValueExpr>(SrcExpr))
12201     if (OV->getSourceExpr())
12202       SrcExpr = OV->getSourceExpr()->IgnoreParenImpCasts();
12203 
12204   StringLiteral *SL = dyn_cast<StringLiteral>(SrcExpr);
12205   if (!SL || !SL->isAscii())
12206     return false;
12207   if (Diagnose) {
12208     Diag(SL->getLocStart(), diag::err_missing_atsign_prefix)
12209       << FixItHint::CreateInsertion(SL->getLocStart(), "@");
12210     Exp = BuildObjCStringLiteral(SL->getLocStart(), SL).get();
12211   }
12212   return true;
12213 }
12214 
12215 static bool maybeDiagnoseAssignmentToFunction(Sema &S, QualType DstType,
12216                                               const Expr *SrcExpr) {
12217   if (!DstType->isFunctionPointerType() ||
12218       !SrcExpr->getType()->isFunctionType())
12219     return false;
12220 
12221   auto *DRE = dyn_cast<DeclRefExpr>(SrcExpr->IgnoreParenImpCasts());
12222   if (!DRE)
12223     return false;
12224 
12225   auto *FD = dyn_cast<FunctionDecl>(DRE->getDecl());
12226   if (!FD)
12227     return false;
12228 
12229   return !S.checkAddressOfFunctionIsAvailable(FD,
12230                                               /*Complain=*/true,
12231                                               SrcExpr->getLocStart());
12232 }
12233 
12234 bool Sema::DiagnoseAssignmentResult(AssignConvertType ConvTy,
12235                                     SourceLocation Loc,
12236                                     QualType DstType, QualType SrcType,
12237                                     Expr *SrcExpr, AssignmentAction Action,
12238                                     bool *Complained) {
12239   if (Complained)
12240     *Complained = false;
12241 
12242   // Decode the result (notice that AST's are still created for extensions).
12243   bool CheckInferredResultType = false;
12244   bool isInvalid = false;
12245   unsigned DiagKind = 0;
12246   FixItHint Hint;
12247   ConversionFixItGenerator ConvHints;
12248   bool MayHaveConvFixit = false;
12249   bool MayHaveFunctionDiff = false;
12250   const ObjCInterfaceDecl *IFace = nullptr;
12251   const ObjCProtocolDecl *PDecl = nullptr;
12252 
12253   switch (ConvTy) {
12254   case Compatible:
12255       DiagnoseAssignmentEnum(DstType, SrcType, SrcExpr);
12256       return false;
12257 
12258   case PointerToInt:
12259     DiagKind = diag::ext_typecheck_convert_pointer_int;
12260     ConvHints.tryToFixConversion(SrcExpr, SrcType, DstType, *this);
12261     MayHaveConvFixit = true;
12262     break;
12263   case IntToPointer:
12264     DiagKind = diag::ext_typecheck_convert_int_pointer;
12265     ConvHints.tryToFixConversion(SrcExpr, SrcType, DstType, *this);
12266     MayHaveConvFixit = true;
12267     break;
12268   case IncompatiblePointer:
12269       DiagKind =
12270         (Action == AA_Passing_CFAudited ?
12271           diag::err_arc_typecheck_convert_incompatible_pointer :
12272           diag::ext_typecheck_convert_incompatible_pointer);
12273     CheckInferredResultType = DstType->isObjCObjectPointerType() &&
12274       SrcType->isObjCObjectPointerType();
12275     if (Hint.isNull() && !CheckInferredResultType) {
12276       ConvHints.tryToFixConversion(SrcExpr, SrcType, DstType, *this);
12277     }
12278     else if (CheckInferredResultType) {
12279       SrcType = SrcType.getUnqualifiedType();
12280       DstType = DstType.getUnqualifiedType();
12281     }
12282     MayHaveConvFixit = true;
12283     break;
12284   case IncompatiblePointerSign:
12285     DiagKind = diag::ext_typecheck_convert_incompatible_pointer_sign;
12286     break;
12287   case FunctionVoidPointer:
12288     DiagKind = diag::ext_typecheck_convert_pointer_void_func;
12289     break;
12290   case IncompatiblePointerDiscardsQualifiers: {
12291     // Perform array-to-pointer decay if necessary.
12292     if (SrcType->isArrayType()) SrcType = Context.getArrayDecayedType(SrcType);
12293 
12294     Qualifiers lhq = SrcType->getPointeeType().getQualifiers();
12295     Qualifiers rhq = DstType->getPointeeType().getQualifiers();
12296     if (lhq.getAddressSpace() != rhq.getAddressSpace()) {
12297       DiagKind = diag::err_typecheck_incompatible_address_space;
12298       break;
12299 
12300 
12301     } else if (lhq.getObjCLifetime() != rhq.getObjCLifetime()) {
12302       DiagKind = diag::err_typecheck_incompatible_ownership;
12303       break;
12304     }
12305 
12306     llvm_unreachable("unknown error case for discarding qualifiers!");
12307     // fallthrough
12308   }
12309   case CompatiblePointerDiscardsQualifiers:
12310     // If the qualifiers lost were because we were applying the
12311     // (deprecated) C++ conversion from a string literal to a char*
12312     // (or wchar_t*), then there was no error (C++ 4.2p2).  FIXME:
12313     // Ideally, this check would be performed in
12314     // checkPointerTypesForAssignment. However, that would require a
12315     // bit of refactoring (so that the second argument is an
12316     // expression, rather than a type), which should be done as part
12317     // of a larger effort to fix checkPointerTypesForAssignment for
12318     // C++ semantics.
12319     if (getLangOpts().CPlusPlus &&
12320         IsStringLiteralToNonConstPointerConversion(SrcExpr, DstType))
12321       return false;
12322     DiagKind = diag::ext_typecheck_convert_discards_qualifiers;
12323     break;
12324   case IncompatibleNestedPointerQualifiers:
12325     DiagKind = diag::ext_nested_pointer_qualifier_mismatch;
12326     break;
12327   case IntToBlockPointer:
12328     DiagKind = diag::err_int_to_block_pointer;
12329     break;
12330   case IncompatibleBlockPointer:
12331     DiagKind = diag::err_typecheck_convert_incompatible_block_pointer;
12332     break;
12333   case IncompatibleObjCQualifiedId: {
12334     if (SrcType->isObjCQualifiedIdType()) {
12335       const ObjCObjectPointerType *srcOPT =
12336                 SrcType->getAs<ObjCObjectPointerType>();
12337       for (auto *srcProto : srcOPT->quals()) {
12338         PDecl = srcProto;
12339         break;
12340       }
12341       if (const ObjCInterfaceType *IFaceT =
12342             DstType->getAs<ObjCObjectPointerType>()->getInterfaceType())
12343         IFace = IFaceT->getDecl();
12344     }
12345     else if (DstType->isObjCQualifiedIdType()) {
12346       const ObjCObjectPointerType *dstOPT =
12347         DstType->getAs<ObjCObjectPointerType>();
12348       for (auto *dstProto : dstOPT->quals()) {
12349         PDecl = dstProto;
12350         break;
12351       }
12352       if (const ObjCInterfaceType *IFaceT =
12353             SrcType->getAs<ObjCObjectPointerType>()->getInterfaceType())
12354         IFace = IFaceT->getDecl();
12355     }
12356     DiagKind = diag::warn_incompatible_qualified_id;
12357     break;
12358   }
12359   case IncompatibleVectors:
12360     DiagKind = diag::warn_incompatible_vectors;
12361     break;
12362   case IncompatibleObjCWeakRef:
12363     DiagKind = diag::err_arc_weak_unavailable_assign;
12364     break;
12365   case Incompatible:
12366     if (maybeDiagnoseAssignmentToFunction(*this, DstType, SrcExpr)) {
12367       if (Complained)
12368         *Complained = true;
12369       return true;
12370     }
12371 
12372     DiagKind = diag::err_typecheck_convert_incompatible;
12373     ConvHints.tryToFixConversion(SrcExpr, SrcType, DstType, *this);
12374     MayHaveConvFixit = true;
12375     isInvalid = true;
12376     MayHaveFunctionDiff = true;
12377     break;
12378   }
12379 
12380   QualType FirstType, SecondType;
12381   switch (Action) {
12382   case AA_Assigning:
12383   case AA_Initializing:
12384     // The destination type comes first.
12385     FirstType = DstType;
12386     SecondType = SrcType;
12387     break;
12388 
12389   case AA_Returning:
12390   case AA_Passing:
12391   case AA_Passing_CFAudited:
12392   case AA_Converting:
12393   case AA_Sending:
12394   case AA_Casting:
12395     // The source type comes first.
12396     FirstType = SrcType;
12397     SecondType = DstType;
12398     break;
12399   }
12400 
12401   PartialDiagnostic FDiag = PDiag(DiagKind);
12402   if (Action == AA_Passing_CFAudited)
12403     FDiag << FirstType << SecondType << AA_Passing << SrcExpr->getSourceRange();
12404   else
12405     FDiag << FirstType << SecondType << Action << SrcExpr->getSourceRange();
12406 
12407   // If we can fix the conversion, suggest the FixIts.
12408   assert(ConvHints.isNull() || Hint.isNull());
12409   if (!ConvHints.isNull()) {
12410     for (FixItHint &H : ConvHints.Hints)
12411       FDiag << H;
12412   } else {
12413     FDiag << Hint;
12414   }
12415   if (MayHaveConvFixit) { FDiag << (unsigned) (ConvHints.Kind); }
12416 
12417   if (MayHaveFunctionDiff)
12418     HandleFunctionTypeMismatch(FDiag, SecondType, FirstType);
12419 
12420   Diag(Loc, FDiag);
12421   if (DiagKind == diag::warn_incompatible_qualified_id &&
12422       PDecl && IFace && !IFace->hasDefinition())
12423       Diag(IFace->getLocation(), diag::not_incomplete_class_and_qualified_id)
12424         << IFace->getName() << PDecl->getName();
12425 
12426   if (SecondType == Context.OverloadTy)
12427     NoteAllOverloadCandidates(OverloadExpr::find(SrcExpr).Expression,
12428                               FirstType, /*TakingAddress=*/true);
12429 
12430   if (CheckInferredResultType)
12431     EmitRelatedResultTypeNote(SrcExpr);
12432 
12433   if (Action == AA_Returning && ConvTy == IncompatiblePointer)
12434     EmitRelatedResultTypeNoteForReturn(DstType);
12435 
12436   if (Complained)
12437     *Complained = true;
12438   return isInvalid;
12439 }
12440 
12441 ExprResult Sema::VerifyIntegerConstantExpression(Expr *E,
12442                                                  llvm::APSInt *Result) {
12443   class SimpleICEDiagnoser : public VerifyICEDiagnoser {
12444   public:
12445     void diagnoseNotICE(Sema &S, SourceLocation Loc, SourceRange SR) override {
12446       S.Diag(Loc, diag::err_expr_not_ice) << S.LangOpts.CPlusPlus << SR;
12447     }
12448   } Diagnoser;
12449 
12450   return VerifyIntegerConstantExpression(E, Result, Diagnoser);
12451 }
12452 
12453 ExprResult Sema::VerifyIntegerConstantExpression(Expr *E,
12454                                                  llvm::APSInt *Result,
12455                                                  unsigned DiagID,
12456                                                  bool AllowFold) {
12457   class IDDiagnoser : public VerifyICEDiagnoser {
12458     unsigned DiagID;
12459 
12460   public:
12461     IDDiagnoser(unsigned DiagID)
12462       : VerifyICEDiagnoser(DiagID == 0), DiagID(DiagID) { }
12463 
12464     void diagnoseNotICE(Sema &S, SourceLocation Loc, SourceRange SR) override {
12465       S.Diag(Loc, DiagID) << SR;
12466     }
12467   } Diagnoser(DiagID);
12468 
12469   return VerifyIntegerConstantExpression(E, Result, Diagnoser, AllowFold);
12470 }
12471 
12472 void Sema::VerifyICEDiagnoser::diagnoseFold(Sema &S, SourceLocation Loc,
12473                                             SourceRange SR) {
12474   S.Diag(Loc, diag::ext_expr_not_ice) << SR << S.LangOpts.CPlusPlus;
12475 }
12476 
12477 ExprResult
12478 Sema::VerifyIntegerConstantExpression(Expr *E, llvm::APSInt *Result,
12479                                       VerifyICEDiagnoser &Diagnoser,
12480                                       bool AllowFold) {
12481   SourceLocation DiagLoc = E->getLocStart();
12482 
12483   if (getLangOpts().CPlusPlus11) {
12484     // C++11 [expr.const]p5:
12485     //   If an expression of literal class type is used in a context where an
12486     //   integral constant expression is required, then that class type shall
12487     //   have a single non-explicit conversion function to an integral or
12488     //   unscoped enumeration type
12489     ExprResult Converted;
12490     class CXX11ConvertDiagnoser : public ICEConvertDiagnoser {
12491     public:
12492       CXX11ConvertDiagnoser(bool Silent)
12493           : ICEConvertDiagnoser(/*AllowScopedEnumerations*/false,
12494                                 Silent, true) {}
12495 
12496       SemaDiagnosticBuilder diagnoseNotInt(Sema &S, SourceLocation Loc,
12497                                            QualType T) override {
12498         return S.Diag(Loc, diag::err_ice_not_integral) << T;
12499       }
12500 
12501       SemaDiagnosticBuilder diagnoseIncomplete(
12502           Sema &S, SourceLocation Loc, QualType T) override {
12503         return S.Diag(Loc, diag::err_ice_incomplete_type) << T;
12504       }
12505 
12506       SemaDiagnosticBuilder diagnoseExplicitConv(
12507           Sema &S, SourceLocation Loc, QualType T, QualType ConvTy) override {
12508         return S.Diag(Loc, diag::err_ice_explicit_conversion) << T << ConvTy;
12509       }
12510 
12511       SemaDiagnosticBuilder noteExplicitConv(
12512           Sema &S, CXXConversionDecl *Conv, QualType ConvTy) override {
12513         return S.Diag(Conv->getLocation(), diag::note_ice_conversion_here)
12514                  << ConvTy->isEnumeralType() << ConvTy;
12515       }
12516 
12517       SemaDiagnosticBuilder diagnoseAmbiguous(
12518           Sema &S, SourceLocation Loc, QualType T) override {
12519         return S.Diag(Loc, diag::err_ice_ambiguous_conversion) << T;
12520       }
12521 
12522       SemaDiagnosticBuilder noteAmbiguous(
12523           Sema &S, CXXConversionDecl *Conv, QualType ConvTy) override {
12524         return S.Diag(Conv->getLocation(), diag::note_ice_conversion_here)
12525                  << ConvTy->isEnumeralType() << ConvTy;
12526       }
12527 
12528       SemaDiagnosticBuilder diagnoseConversion(
12529           Sema &S, SourceLocation Loc, QualType T, QualType ConvTy) override {
12530         llvm_unreachable("conversion functions are permitted");
12531       }
12532     } ConvertDiagnoser(Diagnoser.Suppress);
12533 
12534     Converted = PerformContextualImplicitConversion(DiagLoc, E,
12535                                                     ConvertDiagnoser);
12536     if (Converted.isInvalid())
12537       return Converted;
12538     E = Converted.get();
12539     if (!E->getType()->isIntegralOrUnscopedEnumerationType())
12540       return ExprError();
12541   } else if (!E->getType()->isIntegralOrUnscopedEnumerationType()) {
12542     // An ICE must be of integral or unscoped enumeration type.
12543     if (!Diagnoser.Suppress)
12544       Diagnoser.diagnoseNotICE(*this, DiagLoc, E->getSourceRange());
12545     return ExprError();
12546   }
12547 
12548   // Circumvent ICE checking in C++11 to avoid evaluating the expression twice
12549   // in the non-ICE case.
12550   if (!getLangOpts().CPlusPlus11 && E->isIntegerConstantExpr(Context)) {
12551     if (Result)
12552       *Result = E->EvaluateKnownConstInt(Context);
12553     return E;
12554   }
12555 
12556   Expr::EvalResult EvalResult;
12557   SmallVector<PartialDiagnosticAt, 8> Notes;
12558   EvalResult.Diag = &Notes;
12559 
12560   // Try to evaluate the expression, and produce diagnostics explaining why it's
12561   // not a constant expression as a side-effect.
12562   bool Folded = E->EvaluateAsRValue(EvalResult, Context) &&
12563                 EvalResult.Val.isInt() && !EvalResult.HasSideEffects;
12564 
12565   // In C++11, we can rely on diagnostics being produced for any expression
12566   // which is not a constant expression. If no diagnostics were produced, then
12567   // this is a constant expression.
12568   if (Folded && getLangOpts().CPlusPlus11 && Notes.empty()) {
12569     if (Result)
12570       *Result = EvalResult.Val.getInt();
12571     return E;
12572   }
12573 
12574   // If our only note is the usual "invalid subexpression" note, just point
12575   // the caret at its location rather than producing an essentially
12576   // redundant note.
12577   if (Notes.size() == 1 && Notes[0].second.getDiagID() ==
12578         diag::note_invalid_subexpr_in_const_expr) {
12579     DiagLoc = Notes[0].first;
12580     Notes.clear();
12581   }
12582 
12583   if (!Folded || !AllowFold) {
12584     if (!Diagnoser.Suppress) {
12585       Diagnoser.diagnoseNotICE(*this, DiagLoc, E->getSourceRange());
12586       for (const PartialDiagnosticAt &Note : Notes)
12587         Diag(Note.first, Note.second);
12588     }
12589 
12590     return ExprError();
12591   }
12592 
12593   Diagnoser.diagnoseFold(*this, DiagLoc, E->getSourceRange());
12594   for (const PartialDiagnosticAt &Note : Notes)
12595     Diag(Note.first, Note.second);
12596 
12597   if (Result)
12598     *Result = EvalResult.Val.getInt();
12599   return E;
12600 }
12601 
12602 namespace {
12603   // Handle the case where we conclude a expression which we speculatively
12604   // considered to be unevaluated is actually evaluated.
12605   class TransformToPE : public TreeTransform<TransformToPE> {
12606     typedef TreeTransform<TransformToPE> BaseTransform;
12607 
12608   public:
12609     TransformToPE(Sema &SemaRef) : BaseTransform(SemaRef) { }
12610 
12611     // Make sure we redo semantic analysis
12612     bool AlwaysRebuild() { return true; }
12613 
12614     // Make sure we handle LabelStmts correctly.
12615     // FIXME: This does the right thing, but maybe we need a more general
12616     // fix to TreeTransform?
12617     StmtResult TransformLabelStmt(LabelStmt *S) {
12618       S->getDecl()->setStmt(nullptr);
12619       return BaseTransform::TransformLabelStmt(S);
12620     }
12621 
12622     // We need to special-case DeclRefExprs referring to FieldDecls which
12623     // are not part of a member pointer formation; normal TreeTransforming
12624     // doesn't catch this case because of the way we represent them in the AST.
12625     // FIXME: This is a bit ugly; is it really the best way to handle this
12626     // case?
12627     //
12628     // Error on DeclRefExprs referring to FieldDecls.
12629     ExprResult TransformDeclRefExpr(DeclRefExpr *E) {
12630       if (isa<FieldDecl>(E->getDecl()) &&
12631           !SemaRef.isUnevaluatedContext())
12632         return SemaRef.Diag(E->getLocation(),
12633                             diag::err_invalid_non_static_member_use)
12634             << E->getDecl() << E->getSourceRange();
12635 
12636       return BaseTransform::TransformDeclRefExpr(E);
12637     }
12638 
12639     // Exception: filter out member pointer formation
12640     ExprResult TransformUnaryOperator(UnaryOperator *E) {
12641       if (E->getOpcode() == UO_AddrOf && E->getType()->isMemberPointerType())
12642         return E;
12643 
12644       return BaseTransform::TransformUnaryOperator(E);
12645     }
12646 
12647     ExprResult TransformLambdaExpr(LambdaExpr *E) {
12648       // Lambdas never need to be transformed.
12649       return E;
12650     }
12651   };
12652 }
12653 
12654 ExprResult Sema::TransformToPotentiallyEvaluated(Expr *E) {
12655   assert(isUnevaluatedContext() &&
12656          "Should only transform unevaluated expressions");
12657   ExprEvalContexts.back().Context =
12658       ExprEvalContexts[ExprEvalContexts.size()-2].Context;
12659   if (isUnevaluatedContext())
12660     return E;
12661   return TransformToPE(*this).TransformExpr(E);
12662 }
12663 
12664 void
12665 Sema::PushExpressionEvaluationContext(ExpressionEvaluationContext NewContext,
12666                                       Decl *LambdaContextDecl,
12667                                       bool IsDecltype) {
12668   ExprEvalContexts.emplace_back(NewContext, ExprCleanupObjects.size(),
12669                                 ExprNeedsCleanups, LambdaContextDecl,
12670                                 IsDecltype);
12671   ExprNeedsCleanups = false;
12672   if (!MaybeODRUseExprs.empty())
12673     std::swap(MaybeODRUseExprs, ExprEvalContexts.back().SavedMaybeODRUseExprs);
12674 }
12675 
12676 void
12677 Sema::PushExpressionEvaluationContext(ExpressionEvaluationContext NewContext,
12678                                       ReuseLambdaContextDecl_t,
12679                                       bool IsDecltype) {
12680   Decl *ClosureContextDecl = ExprEvalContexts.back().ManglingContextDecl;
12681   PushExpressionEvaluationContext(NewContext, ClosureContextDecl, IsDecltype);
12682 }
12683 
12684 void Sema::PopExpressionEvaluationContext() {
12685   ExpressionEvaluationContextRecord& Rec = ExprEvalContexts.back();
12686   unsigned NumTypos = Rec.NumTypos;
12687 
12688   if (!Rec.Lambdas.empty()) {
12689     if (Rec.isUnevaluated() || Rec.Context == ConstantEvaluated) {
12690       unsigned D;
12691       if (Rec.isUnevaluated()) {
12692         // C++11 [expr.prim.lambda]p2:
12693         //   A lambda-expression shall not appear in an unevaluated operand
12694         //   (Clause 5).
12695         D = diag::err_lambda_unevaluated_operand;
12696       } else {
12697         // C++1y [expr.const]p2:
12698         //   A conditional-expression e is a core constant expression unless the
12699         //   evaluation of e, following the rules of the abstract machine, would
12700         //   evaluate [...] a lambda-expression.
12701         D = diag::err_lambda_in_constant_expression;
12702       }
12703       for (const auto *L : Rec.Lambdas)
12704         Diag(L->getLocStart(), D);
12705     } else {
12706       // Mark the capture expressions odr-used. This was deferred
12707       // during lambda expression creation.
12708       for (auto *Lambda : Rec.Lambdas) {
12709         for (auto *C : Lambda->capture_inits())
12710           MarkDeclarationsReferencedInExpr(C);
12711       }
12712     }
12713   }
12714 
12715   // When are coming out of an unevaluated context, clear out any
12716   // temporaries that we may have created as part of the evaluation of
12717   // the expression in that context: they aren't relevant because they
12718   // will never be constructed.
12719   if (Rec.isUnevaluated() || Rec.Context == ConstantEvaluated) {
12720     ExprCleanupObjects.erase(ExprCleanupObjects.begin() + Rec.NumCleanupObjects,
12721                              ExprCleanupObjects.end());
12722     ExprNeedsCleanups = Rec.ParentNeedsCleanups;
12723     CleanupVarDeclMarking();
12724     std::swap(MaybeODRUseExprs, Rec.SavedMaybeODRUseExprs);
12725   // Otherwise, merge the contexts together.
12726   } else {
12727     ExprNeedsCleanups |= Rec.ParentNeedsCleanups;
12728     MaybeODRUseExprs.insert(Rec.SavedMaybeODRUseExprs.begin(),
12729                             Rec.SavedMaybeODRUseExprs.end());
12730   }
12731 
12732   // Pop the current expression evaluation context off the stack.
12733   ExprEvalContexts.pop_back();
12734 
12735   if (!ExprEvalContexts.empty())
12736     ExprEvalContexts.back().NumTypos += NumTypos;
12737   else
12738     assert(NumTypos == 0 && "There are outstanding typos after popping the "
12739                             "last ExpressionEvaluationContextRecord");
12740 }
12741 
12742 void Sema::DiscardCleanupsInEvaluationContext() {
12743   ExprCleanupObjects.erase(
12744          ExprCleanupObjects.begin() + ExprEvalContexts.back().NumCleanupObjects,
12745          ExprCleanupObjects.end());
12746   ExprNeedsCleanups = false;
12747   MaybeODRUseExprs.clear();
12748 }
12749 
12750 ExprResult Sema::HandleExprEvaluationContextForTypeof(Expr *E) {
12751   if (!E->getType()->isVariablyModifiedType())
12752     return E;
12753   return TransformToPotentiallyEvaluated(E);
12754 }
12755 
12756 static bool IsPotentiallyEvaluatedContext(Sema &SemaRef) {
12757   // Do not mark anything as "used" within a dependent context; wait for
12758   // an instantiation.
12759   if (SemaRef.CurContext->isDependentContext())
12760     return false;
12761 
12762   switch (SemaRef.ExprEvalContexts.back().Context) {
12763     case Sema::Unevaluated:
12764     case Sema::UnevaluatedAbstract:
12765       // We are in an expression that is not potentially evaluated; do nothing.
12766       // (Depending on how you read the standard, we actually do need to do
12767       // something here for null pointer constants, but the standard's
12768       // definition of a null pointer constant is completely crazy.)
12769       return false;
12770 
12771     case Sema::ConstantEvaluated:
12772     case Sema::PotentiallyEvaluated:
12773       // We are in a potentially evaluated expression (or a constant-expression
12774       // in C++03); we need to do implicit template instantiation, implicitly
12775       // define class members, and mark most declarations as used.
12776       return true;
12777 
12778     case Sema::PotentiallyEvaluatedIfUsed:
12779       // Referenced declarations will only be used if the construct in the
12780       // containing expression is used.
12781       return false;
12782   }
12783   llvm_unreachable("Invalid context");
12784 }
12785 
12786 /// \brief Mark a function referenced, and check whether it is odr-used
12787 /// (C++ [basic.def.odr]p2, C99 6.9p3)
12788 void Sema::MarkFunctionReferenced(SourceLocation Loc, FunctionDecl *Func,
12789                                   bool MightBeOdrUse) {
12790   assert(Func && "No function?");
12791 
12792   Func->setReferenced();
12793 
12794   // C++11 [basic.def.odr]p3:
12795   //   A function whose name appears as a potentially-evaluated expression is
12796   //   odr-used if it is the unique lookup result or the selected member of a
12797   //   set of overloaded functions [...].
12798   //
12799   // We (incorrectly) mark overload resolution as an unevaluated context, so we
12800   // can just check that here. Skip the rest of this function if we've already
12801   // marked the function as used.
12802   bool OdrUse = MightBeOdrUse && IsPotentiallyEvaluatedContext(*this);
12803   if (Func->isUsed(/*CheckUsedAttr=*/false) || !OdrUse) {
12804     // C++11 [temp.inst]p3:
12805     //   Unless a function template specialization has been explicitly
12806     //   instantiated or explicitly specialized, the function template
12807     //   specialization is implicitly instantiated when the specialization is
12808     //   referenced in a context that requires a function definition to exist.
12809     //
12810     // We consider constexpr function templates to be referenced in a context
12811     // that requires a definition to exist whenever they are referenced.
12812     //
12813     // FIXME: This instantiates constexpr functions too frequently. If this is
12814     // really an unevaluated context (and we're not just in the definition of a
12815     // function template or overload resolution or other cases which we
12816     // incorrectly consider to be unevaluated contexts), and we're not in a
12817     // subexpression which we actually need to evaluate (for instance, a
12818     // template argument, array bound or an expression in a braced-init-list),
12819     // we are not permitted to instantiate this constexpr function definition.
12820     //
12821     // FIXME: This also implicitly defines special members too frequently. They
12822     // are only supposed to be implicitly defined if they are odr-used, but they
12823     // are not odr-used from constant expressions in unevaluated contexts.
12824     // However, they cannot be referenced if they are deleted, and they are
12825     // deleted whenever the implicit definition of the special member would
12826     // fail.
12827     if (!Func->isConstexpr() || Func->getBody())
12828       return;
12829     CXXMethodDecl *MD = dyn_cast<CXXMethodDecl>(Func);
12830     if (!Func->isImplicitlyInstantiable() && (!MD || MD->isUserProvided()))
12831       return;
12832   }
12833 
12834   // Note that this declaration has been used.
12835   if (CXXConstructorDecl *Constructor = dyn_cast<CXXConstructorDecl>(Func)) {
12836     Constructor = cast<CXXConstructorDecl>(Constructor->getFirstDecl());
12837     if (Constructor->isDefaulted() && !Constructor->isDeleted()) {
12838       if (Constructor->isDefaultConstructor()) {
12839         if (Constructor->isTrivial() && !Constructor->hasAttr<DLLExportAttr>())
12840           return;
12841         DefineImplicitDefaultConstructor(Loc, Constructor);
12842       } else if (Constructor->isCopyConstructor()) {
12843         DefineImplicitCopyConstructor(Loc, Constructor);
12844       } else if (Constructor->isMoveConstructor()) {
12845         DefineImplicitMoveConstructor(Loc, Constructor);
12846       }
12847     } else if (Constructor->getInheritedConstructor()) {
12848       DefineInheritingConstructor(Loc, Constructor);
12849     }
12850   } else if (CXXDestructorDecl *Destructor =
12851                  dyn_cast<CXXDestructorDecl>(Func)) {
12852     Destructor = cast<CXXDestructorDecl>(Destructor->getFirstDecl());
12853     if (Destructor->isDefaulted() && !Destructor->isDeleted()) {
12854       if (Destructor->isTrivial() && !Destructor->hasAttr<DLLExportAttr>())
12855         return;
12856       DefineImplicitDestructor(Loc, Destructor);
12857     }
12858     if (Destructor->isVirtual() && getLangOpts().AppleKext)
12859       MarkVTableUsed(Loc, Destructor->getParent());
12860   } else if (CXXMethodDecl *MethodDecl = dyn_cast<CXXMethodDecl>(Func)) {
12861     if (MethodDecl->isOverloadedOperator() &&
12862         MethodDecl->getOverloadedOperator() == OO_Equal) {
12863       MethodDecl = cast<CXXMethodDecl>(MethodDecl->getFirstDecl());
12864       if (MethodDecl->isDefaulted() && !MethodDecl->isDeleted()) {
12865         if (MethodDecl->isCopyAssignmentOperator())
12866           DefineImplicitCopyAssignment(Loc, MethodDecl);
12867         else
12868           DefineImplicitMoveAssignment(Loc, MethodDecl);
12869       }
12870     } else if (isa<CXXConversionDecl>(MethodDecl) &&
12871                MethodDecl->getParent()->isLambda()) {
12872       CXXConversionDecl *Conversion =
12873           cast<CXXConversionDecl>(MethodDecl->getFirstDecl());
12874       if (Conversion->isLambdaToBlockPointerConversion())
12875         DefineImplicitLambdaToBlockPointerConversion(Loc, Conversion);
12876       else
12877         DefineImplicitLambdaToFunctionPointerConversion(Loc, Conversion);
12878     } else if (MethodDecl->isVirtual() && getLangOpts().AppleKext)
12879       MarkVTableUsed(Loc, MethodDecl->getParent());
12880   }
12881 
12882   // Recursive functions should be marked when used from another function.
12883   // FIXME: Is this really right?
12884   if (CurContext == Func) return;
12885 
12886   // Resolve the exception specification for any function which is
12887   // used: CodeGen will need it.
12888   const FunctionProtoType *FPT = Func->getType()->getAs<FunctionProtoType>();
12889   if (FPT && isUnresolvedExceptionSpec(FPT->getExceptionSpecType()))
12890     ResolveExceptionSpec(Loc, FPT);
12891 
12892   // Implicit instantiation of function templates and member functions of
12893   // class templates.
12894   if (Func->isImplicitlyInstantiable()) {
12895     bool AlreadyInstantiated = false;
12896     SourceLocation PointOfInstantiation = Loc;
12897     if (FunctionTemplateSpecializationInfo *SpecInfo
12898                               = Func->getTemplateSpecializationInfo()) {
12899       if (SpecInfo->getPointOfInstantiation().isInvalid())
12900         SpecInfo->setPointOfInstantiation(Loc);
12901       else if (SpecInfo->getTemplateSpecializationKind()
12902                  == TSK_ImplicitInstantiation) {
12903         AlreadyInstantiated = true;
12904         PointOfInstantiation = SpecInfo->getPointOfInstantiation();
12905       }
12906     } else if (MemberSpecializationInfo *MSInfo
12907                                 = Func->getMemberSpecializationInfo()) {
12908       if (MSInfo->getPointOfInstantiation().isInvalid())
12909         MSInfo->setPointOfInstantiation(Loc);
12910       else if (MSInfo->getTemplateSpecializationKind()
12911                  == TSK_ImplicitInstantiation) {
12912         AlreadyInstantiated = true;
12913         PointOfInstantiation = MSInfo->getPointOfInstantiation();
12914       }
12915     }
12916 
12917     if (!AlreadyInstantiated || Func->isConstexpr()) {
12918       if (isa<CXXRecordDecl>(Func->getDeclContext()) &&
12919           cast<CXXRecordDecl>(Func->getDeclContext())->isLocalClass() &&
12920           ActiveTemplateInstantiations.size())
12921         PendingLocalImplicitInstantiations.push_back(
12922             std::make_pair(Func, PointOfInstantiation));
12923       else if (Func->isConstexpr())
12924         // Do not defer instantiations of constexpr functions, to avoid the
12925         // expression evaluator needing to call back into Sema if it sees a
12926         // call to such a function.
12927         InstantiateFunctionDefinition(PointOfInstantiation, Func);
12928       else {
12929         PendingInstantiations.push_back(std::make_pair(Func,
12930                                                        PointOfInstantiation));
12931         // Notify the consumer that a function was implicitly instantiated.
12932         Consumer.HandleCXXImplicitFunctionInstantiation(Func);
12933       }
12934     }
12935   } else {
12936     // Walk redefinitions, as some of them may be instantiable.
12937     for (auto i : Func->redecls()) {
12938       if (!i->isUsed(false) && i->isImplicitlyInstantiable())
12939         MarkFunctionReferenced(Loc, i, OdrUse);
12940     }
12941   }
12942 
12943   if (!OdrUse) return;
12944 
12945   // Keep track of used but undefined functions.
12946   if (!Func->isDefined()) {
12947     if (mightHaveNonExternalLinkage(Func))
12948       UndefinedButUsed.insert(std::make_pair(Func->getCanonicalDecl(), Loc));
12949     else if (Func->getMostRecentDecl()->isInlined() &&
12950              !LangOpts.GNUInline &&
12951              !Func->getMostRecentDecl()->hasAttr<GNUInlineAttr>())
12952       UndefinedButUsed.insert(std::make_pair(Func->getCanonicalDecl(), Loc));
12953   }
12954 
12955   // Normally the most current decl is marked used while processing the use and
12956   // any subsequent decls are marked used by decl merging. This fails with
12957   // template instantiation since marking can happen at the end of the file
12958   // and, because of the two phase lookup, this function is called with at
12959   // decl in the middle of a decl chain. We loop to maintain the invariant
12960   // that once a decl is used, all decls after it are also used.
12961   for (FunctionDecl *F = Func->getMostRecentDecl();; F = F->getPreviousDecl()) {
12962     F->markUsed(Context);
12963     if (F == Func)
12964       break;
12965   }
12966 }
12967 
12968 static void
12969 diagnoseUncapturableValueReference(Sema &S, SourceLocation loc,
12970                                    VarDecl *var, DeclContext *DC) {
12971   DeclContext *VarDC = var->getDeclContext();
12972 
12973   //  If the parameter still belongs to the translation unit, then
12974   //  we're actually just using one parameter in the declaration of
12975   //  the next.
12976   if (isa<ParmVarDecl>(var) &&
12977       isa<TranslationUnitDecl>(VarDC))
12978     return;
12979 
12980   // For C code, don't diagnose about capture if we're not actually in code
12981   // right now; it's impossible to write a non-constant expression outside of
12982   // function context, so we'll get other (more useful) diagnostics later.
12983   //
12984   // For C++, things get a bit more nasty... it would be nice to suppress this
12985   // diagnostic for certain cases like using a local variable in an array bound
12986   // for a member of a local class, but the correct predicate is not obvious.
12987   if (!S.getLangOpts().CPlusPlus && !S.CurContext->isFunctionOrMethod())
12988     return;
12989 
12990   if (isa<CXXMethodDecl>(VarDC) &&
12991       cast<CXXRecordDecl>(VarDC->getParent())->isLambda()) {
12992     S.Diag(loc, diag::err_reference_to_local_var_in_enclosing_lambda)
12993       << var->getIdentifier();
12994   } else if (FunctionDecl *fn = dyn_cast<FunctionDecl>(VarDC)) {
12995     S.Diag(loc, diag::err_reference_to_local_var_in_enclosing_function)
12996       << var->getIdentifier() << fn->getDeclName();
12997   } else if (isa<BlockDecl>(VarDC)) {
12998     S.Diag(loc, diag::err_reference_to_local_var_in_enclosing_block)
12999       << var->getIdentifier();
13000   } else {
13001     // FIXME: Is there any other context where a local variable can be
13002     // declared?
13003     S.Diag(loc, diag::err_reference_to_local_var_in_enclosing_context)
13004       << var->getIdentifier();
13005   }
13006 
13007   S.Diag(var->getLocation(), diag::note_entity_declared_at)
13008       << var->getIdentifier();
13009 
13010   // FIXME: Add additional diagnostic info about class etc. which prevents
13011   // capture.
13012 }
13013 
13014 
13015 static bool isVariableAlreadyCapturedInScopeInfo(CapturingScopeInfo *CSI, VarDecl *Var,
13016                                       bool &SubCapturesAreNested,
13017                                       QualType &CaptureType,
13018                                       QualType &DeclRefType) {
13019    // Check whether we've already captured it.
13020   if (CSI->CaptureMap.count(Var)) {
13021     // If we found a capture, any subcaptures are nested.
13022     SubCapturesAreNested = true;
13023 
13024     // Retrieve the capture type for this variable.
13025     CaptureType = CSI->getCapture(Var).getCaptureType();
13026 
13027     // Compute the type of an expression that refers to this variable.
13028     DeclRefType = CaptureType.getNonReferenceType();
13029 
13030     // Similarly to mutable captures in lambda, all the OpenMP captures by copy
13031     // are mutable in the sense that user can change their value - they are
13032     // private instances of the captured declarations.
13033     const CapturingScopeInfo::Capture &Cap = CSI->getCapture(Var);
13034     if (Cap.isCopyCapture() &&
13035         !(isa<LambdaScopeInfo>(CSI) && cast<LambdaScopeInfo>(CSI)->Mutable) &&
13036         !(isa<CapturedRegionScopeInfo>(CSI) &&
13037           cast<CapturedRegionScopeInfo>(CSI)->CapRegionKind == CR_OpenMP))
13038       DeclRefType.addConst();
13039     return true;
13040   }
13041   return false;
13042 }
13043 
13044 // Only block literals, captured statements, and lambda expressions can
13045 // capture; other scopes don't work.
13046 static DeclContext *getParentOfCapturingContextOrNull(DeclContext *DC, VarDecl *Var,
13047                                  SourceLocation Loc,
13048                                  const bool Diagnose, Sema &S) {
13049   if (isa<BlockDecl>(DC) || isa<CapturedDecl>(DC) || isLambdaCallOperator(DC))
13050     return getLambdaAwareParentOfDeclContext(DC);
13051   else if (Var->hasLocalStorage()) {
13052     if (Diagnose)
13053        diagnoseUncapturableValueReference(S, Loc, Var, DC);
13054   }
13055   return nullptr;
13056 }
13057 
13058 // Certain capturing entities (lambdas, blocks etc.) are not allowed to capture
13059 // certain types of variables (unnamed, variably modified types etc.)
13060 // so check for eligibility.
13061 static bool isVariableCapturable(CapturingScopeInfo *CSI, VarDecl *Var,
13062                                  SourceLocation Loc,
13063                                  const bool Diagnose, Sema &S) {
13064 
13065   bool IsBlock = isa<BlockScopeInfo>(CSI);
13066   bool IsLambda = isa<LambdaScopeInfo>(CSI);
13067 
13068   // Lambdas are not allowed to capture unnamed variables
13069   // (e.g. anonymous unions).
13070   // FIXME: The C++11 rule don't actually state this explicitly, but I'm
13071   // assuming that's the intent.
13072   if (IsLambda && !Var->getDeclName()) {
13073     if (Diagnose) {
13074       S.Diag(Loc, diag::err_lambda_capture_anonymous_var);
13075       S.Diag(Var->getLocation(), diag::note_declared_at);
13076     }
13077     return false;
13078   }
13079 
13080   // Prohibit variably-modified types in blocks; they're difficult to deal with.
13081   if (Var->getType()->isVariablyModifiedType() && IsBlock) {
13082     if (Diagnose) {
13083       S.Diag(Loc, diag::err_ref_vm_type);
13084       S.Diag(Var->getLocation(), diag::note_previous_decl)
13085         << Var->getDeclName();
13086     }
13087     return false;
13088   }
13089   // Prohibit structs with flexible array members too.
13090   // We cannot capture what is in the tail end of the struct.
13091   if (const RecordType *VTTy = Var->getType()->getAs<RecordType>()) {
13092     if (VTTy->getDecl()->hasFlexibleArrayMember()) {
13093       if (Diagnose) {
13094         if (IsBlock)
13095           S.Diag(Loc, diag::err_ref_flexarray_type);
13096         else
13097           S.Diag(Loc, diag::err_lambda_capture_flexarray_type)
13098             << Var->getDeclName();
13099         S.Diag(Var->getLocation(), diag::note_previous_decl)
13100           << Var->getDeclName();
13101       }
13102       return false;
13103     }
13104   }
13105   const bool HasBlocksAttr = Var->hasAttr<BlocksAttr>();
13106   // Lambdas and captured statements are not allowed to capture __block
13107   // variables; they don't support the expected semantics.
13108   if (HasBlocksAttr && (IsLambda || isa<CapturedRegionScopeInfo>(CSI))) {
13109     if (Diagnose) {
13110       S.Diag(Loc, diag::err_capture_block_variable)
13111         << Var->getDeclName() << !IsLambda;
13112       S.Diag(Var->getLocation(), diag::note_previous_decl)
13113         << Var->getDeclName();
13114     }
13115     return false;
13116   }
13117 
13118   return true;
13119 }
13120 
13121 // Returns true if the capture by block was successful.
13122 static bool captureInBlock(BlockScopeInfo *BSI, VarDecl *Var,
13123                                  SourceLocation Loc,
13124                                  const bool BuildAndDiagnose,
13125                                  QualType &CaptureType,
13126                                  QualType &DeclRefType,
13127                                  const bool Nested,
13128                                  Sema &S) {
13129   Expr *CopyExpr = nullptr;
13130   bool ByRef = false;
13131 
13132   // Blocks are not allowed to capture arrays.
13133   if (CaptureType->isArrayType()) {
13134     if (BuildAndDiagnose) {
13135       S.Diag(Loc, diag::err_ref_array_type);
13136       S.Diag(Var->getLocation(), diag::note_previous_decl)
13137       << Var->getDeclName();
13138     }
13139     return false;
13140   }
13141 
13142   // Forbid the block-capture of autoreleasing variables.
13143   if (CaptureType.getObjCLifetime() == Qualifiers::OCL_Autoreleasing) {
13144     if (BuildAndDiagnose) {
13145       S.Diag(Loc, diag::err_arc_autoreleasing_capture)
13146         << /*block*/ 0;
13147       S.Diag(Var->getLocation(), diag::note_previous_decl)
13148         << Var->getDeclName();
13149     }
13150     return false;
13151   }
13152   const bool HasBlocksAttr = Var->hasAttr<BlocksAttr>();
13153   if (HasBlocksAttr || CaptureType->isReferenceType()) {
13154     // Block capture by reference does not change the capture or
13155     // declaration reference types.
13156     ByRef = true;
13157   } else {
13158     // Block capture by copy introduces 'const'.
13159     CaptureType = CaptureType.getNonReferenceType().withConst();
13160     DeclRefType = CaptureType;
13161 
13162     if (S.getLangOpts().CPlusPlus && BuildAndDiagnose) {
13163       if (const RecordType *Record = DeclRefType->getAs<RecordType>()) {
13164         // The capture logic needs the destructor, so make sure we mark it.
13165         // Usually this is unnecessary because most local variables have
13166         // their destructors marked at declaration time, but parameters are
13167         // an exception because it's technically only the call site that
13168         // actually requires the destructor.
13169         if (isa<ParmVarDecl>(Var))
13170           S.FinalizeVarWithDestructor(Var, Record);
13171 
13172         // Enter a new evaluation context to insulate the copy
13173         // full-expression.
13174         EnterExpressionEvaluationContext scope(S, S.PotentiallyEvaluated);
13175 
13176         // According to the blocks spec, the capture of a variable from
13177         // the stack requires a const copy constructor.  This is not true
13178         // of the copy/move done to move a __block variable to the heap.
13179         Expr *DeclRef = new (S.Context) DeclRefExpr(Var, Nested,
13180                                                   DeclRefType.withConst(),
13181                                                   VK_LValue, Loc);
13182 
13183         ExprResult Result
13184           = S.PerformCopyInitialization(
13185               InitializedEntity::InitializeBlock(Var->getLocation(),
13186                                                   CaptureType, false),
13187               Loc, DeclRef);
13188 
13189         // Build a full-expression copy expression if initialization
13190         // succeeded and used a non-trivial constructor.  Recover from
13191         // errors by pretending that the copy isn't necessary.
13192         if (!Result.isInvalid() &&
13193             !cast<CXXConstructExpr>(Result.get())->getConstructor()
13194                 ->isTrivial()) {
13195           Result = S.MaybeCreateExprWithCleanups(Result);
13196           CopyExpr = Result.get();
13197         }
13198       }
13199     }
13200   }
13201 
13202   // Actually capture the variable.
13203   if (BuildAndDiagnose)
13204     BSI->addCapture(Var, HasBlocksAttr, ByRef, Nested, Loc,
13205                     SourceLocation(), CaptureType, CopyExpr);
13206 
13207   return true;
13208 
13209 }
13210 
13211 
13212 /// \brief Capture the given variable in the captured region.
13213 static bool captureInCapturedRegion(CapturedRegionScopeInfo *RSI,
13214                                     VarDecl *Var,
13215                                     SourceLocation Loc,
13216                                     const bool BuildAndDiagnose,
13217                                     QualType &CaptureType,
13218                                     QualType &DeclRefType,
13219                                     const bool RefersToCapturedVariable,
13220                                     Sema &S) {
13221 
13222   // By default, capture variables by reference.
13223   bool ByRef = true;
13224   // Using an LValue reference type is consistent with Lambdas (see below).
13225   if (S.getLangOpts().OpenMP) {
13226     ByRef = S.IsOpenMPCapturedByRef(Var, RSI);
13227     if (S.IsOpenMPCapturedDecl(Var))
13228       DeclRefType = DeclRefType.getUnqualifiedType();
13229   }
13230 
13231   if (ByRef)
13232     CaptureType = S.Context.getLValueReferenceType(DeclRefType);
13233   else
13234     CaptureType = DeclRefType;
13235 
13236   Expr *CopyExpr = nullptr;
13237   if (BuildAndDiagnose) {
13238     // The current implementation assumes that all variables are captured
13239     // by references. Since there is no capture by copy, no expression
13240     // evaluation will be needed.
13241     RecordDecl *RD = RSI->TheRecordDecl;
13242 
13243     FieldDecl *Field
13244       = FieldDecl::Create(S.Context, RD, Loc, Loc, nullptr, CaptureType,
13245                           S.Context.getTrivialTypeSourceInfo(CaptureType, Loc),
13246                           nullptr, false, ICIS_NoInit);
13247     Field->setImplicit(true);
13248     Field->setAccess(AS_private);
13249     RD->addDecl(Field);
13250 
13251     CopyExpr = new (S.Context) DeclRefExpr(Var, RefersToCapturedVariable,
13252                                             DeclRefType, VK_LValue, Loc);
13253     Var->setReferenced(true);
13254     Var->markUsed(S.Context);
13255   }
13256 
13257   // Actually capture the variable.
13258   if (BuildAndDiagnose)
13259     RSI->addCapture(Var, /*isBlock*/false, ByRef, RefersToCapturedVariable, Loc,
13260                     SourceLocation(), CaptureType, CopyExpr);
13261 
13262 
13263   return true;
13264 }
13265 
13266 /// \brief Create a field within the lambda class for the variable
13267 /// being captured.
13268 static void addAsFieldToClosureType(Sema &S, LambdaScopeInfo *LSI,
13269                                     QualType FieldType, QualType DeclRefType,
13270                                     SourceLocation Loc,
13271                                     bool RefersToCapturedVariable) {
13272   CXXRecordDecl *Lambda = LSI->Lambda;
13273 
13274   // Build the non-static data member.
13275   FieldDecl *Field
13276     = FieldDecl::Create(S.Context, Lambda, Loc, Loc, nullptr, FieldType,
13277                         S.Context.getTrivialTypeSourceInfo(FieldType, Loc),
13278                         nullptr, false, ICIS_NoInit);
13279   Field->setImplicit(true);
13280   Field->setAccess(AS_private);
13281   Lambda->addDecl(Field);
13282 }
13283 
13284 /// \brief Capture the given variable in the lambda.
13285 static bool captureInLambda(LambdaScopeInfo *LSI,
13286                             VarDecl *Var,
13287                             SourceLocation Loc,
13288                             const bool BuildAndDiagnose,
13289                             QualType &CaptureType,
13290                             QualType &DeclRefType,
13291                             const bool RefersToCapturedVariable,
13292                             const Sema::TryCaptureKind Kind,
13293                             SourceLocation EllipsisLoc,
13294                             const bool IsTopScope,
13295                             Sema &S) {
13296 
13297   // Determine whether we are capturing by reference or by value.
13298   bool ByRef = false;
13299   if (IsTopScope && Kind != Sema::TryCapture_Implicit) {
13300     ByRef = (Kind == Sema::TryCapture_ExplicitByRef);
13301   } else {
13302     ByRef = (LSI->ImpCaptureStyle == LambdaScopeInfo::ImpCap_LambdaByref);
13303   }
13304 
13305   // Compute the type of the field that will capture this variable.
13306   if (ByRef) {
13307     // C++11 [expr.prim.lambda]p15:
13308     //   An entity is captured by reference if it is implicitly or
13309     //   explicitly captured but not captured by copy. It is
13310     //   unspecified whether additional unnamed non-static data
13311     //   members are declared in the closure type for entities
13312     //   captured by reference.
13313     //
13314     // FIXME: It is not clear whether we want to build an lvalue reference
13315     // to the DeclRefType or to CaptureType.getNonReferenceType(). GCC appears
13316     // to do the former, while EDG does the latter. Core issue 1249 will
13317     // clarify, but for now we follow GCC because it's a more permissive and
13318     // easily defensible position.
13319     CaptureType = S.Context.getLValueReferenceType(DeclRefType);
13320   } else {
13321     // C++11 [expr.prim.lambda]p14:
13322     //   For each entity captured by copy, an unnamed non-static
13323     //   data member is declared in the closure type. The
13324     //   declaration order of these members is unspecified. The type
13325     //   of such a data member is the type of the corresponding
13326     //   captured entity if the entity is not a reference to an
13327     //   object, or the referenced type otherwise. [Note: If the
13328     //   captured entity is a reference to a function, the
13329     //   corresponding data member is also a reference to a
13330     //   function. - end note ]
13331     if (const ReferenceType *RefType = CaptureType->getAs<ReferenceType>()){
13332       if (!RefType->getPointeeType()->isFunctionType())
13333         CaptureType = RefType->getPointeeType();
13334     }
13335 
13336     // Forbid the lambda copy-capture of autoreleasing variables.
13337     if (CaptureType.getObjCLifetime() == Qualifiers::OCL_Autoreleasing) {
13338       if (BuildAndDiagnose) {
13339         S.Diag(Loc, diag::err_arc_autoreleasing_capture) << /*lambda*/ 1;
13340         S.Diag(Var->getLocation(), diag::note_previous_decl)
13341           << Var->getDeclName();
13342       }
13343       return false;
13344     }
13345 
13346     // Make sure that by-copy captures are of a complete and non-abstract type.
13347     if (BuildAndDiagnose) {
13348       if (!CaptureType->isDependentType() &&
13349           S.RequireCompleteType(Loc, CaptureType,
13350                                 diag::err_capture_of_incomplete_type,
13351                                 Var->getDeclName()))
13352         return false;
13353 
13354       if (S.RequireNonAbstractType(Loc, CaptureType,
13355                                    diag::err_capture_of_abstract_type))
13356         return false;
13357     }
13358   }
13359 
13360   // Capture this variable in the lambda.
13361   if (BuildAndDiagnose)
13362     addAsFieldToClosureType(S, LSI, CaptureType, DeclRefType, Loc,
13363                             RefersToCapturedVariable);
13364 
13365   // Compute the type of a reference to this captured variable.
13366   if (ByRef)
13367     DeclRefType = CaptureType.getNonReferenceType();
13368   else {
13369     // C++ [expr.prim.lambda]p5:
13370     //   The closure type for a lambda-expression has a public inline
13371     //   function call operator [...]. This function call operator is
13372     //   declared const (9.3.1) if and only if the lambda-expression’s
13373     //   parameter-declaration-clause is not followed by mutable.
13374     DeclRefType = CaptureType.getNonReferenceType();
13375     if (!LSI->Mutable && !CaptureType->isReferenceType())
13376       DeclRefType.addConst();
13377   }
13378 
13379   // Add the capture.
13380   if (BuildAndDiagnose)
13381     LSI->addCapture(Var, /*IsBlock=*/false, ByRef, RefersToCapturedVariable,
13382                     Loc, EllipsisLoc, CaptureType, /*CopyExpr=*/nullptr);
13383 
13384   return true;
13385 }
13386 
13387 bool Sema::tryCaptureVariable(
13388     VarDecl *Var, SourceLocation ExprLoc, TryCaptureKind Kind,
13389     SourceLocation EllipsisLoc, bool BuildAndDiagnose, QualType &CaptureType,
13390     QualType &DeclRefType, const unsigned *const FunctionScopeIndexToStopAt) {
13391   // An init-capture is notionally from the context surrounding its
13392   // declaration, but its parent DC is the lambda class.
13393   DeclContext *VarDC = Var->getDeclContext();
13394   if (Var->isInitCapture())
13395     VarDC = VarDC->getParent();
13396 
13397   DeclContext *DC = CurContext;
13398   const unsigned MaxFunctionScopesIndex = FunctionScopeIndexToStopAt
13399       ? *FunctionScopeIndexToStopAt : FunctionScopes.size() - 1;
13400   // We need to sync up the Declaration Context with the
13401   // FunctionScopeIndexToStopAt
13402   if (FunctionScopeIndexToStopAt) {
13403     unsigned FSIndex = FunctionScopes.size() - 1;
13404     while (FSIndex != MaxFunctionScopesIndex) {
13405       DC = getLambdaAwareParentOfDeclContext(DC);
13406       --FSIndex;
13407     }
13408   }
13409 
13410 
13411   // If the variable is declared in the current context, there is no need to
13412   // capture it.
13413   if (VarDC == DC) return true;
13414 
13415   // Capture global variables if it is required to use private copy of this
13416   // variable.
13417   bool IsGlobal = !Var->hasLocalStorage();
13418   if (IsGlobal && !(LangOpts.OpenMP && IsOpenMPCapturedDecl(Var)))
13419     return true;
13420 
13421   // Walk up the stack to determine whether we can capture the variable,
13422   // performing the "simple" checks that don't depend on type. We stop when
13423   // we've either hit the declared scope of the variable or find an existing
13424   // capture of that variable.  We start from the innermost capturing-entity
13425   // (the DC) and ensure that all intervening capturing-entities
13426   // (blocks/lambdas etc.) between the innermost capturer and the variable`s
13427   // declcontext can either capture the variable or have already captured
13428   // the variable.
13429   CaptureType = Var->getType();
13430   DeclRefType = CaptureType.getNonReferenceType();
13431   bool Nested = false;
13432   bool Explicit = (Kind != TryCapture_Implicit);
13433   unsigned FunctionScopesIndex = MaxFunctionScopesIndex;
13434   unsigned OpenMPLevel = 0;
13435   do {
13436     // Only block literals, captured statements, and lambda expressions can
13437     // capture; other scopes don't work.
13438     DeclContext *ParentDC = getParentOfCapturingContextOrNull(DC, Var,
13439                                                               ExprLoc,
13440                                                               BuildAndDiagnose,
13441                                                               *this);
13442     // We need to check for the parent *first* because, if we *have*
13443     // private-captured a global variable, we need to recursively capture it in
13444     // intermediate blocks, lambdas, etc.
13445     if (!ParentDC) {
13446       if (IsGlobal) {
13447         FunctionScopesIndex = MaxFunctionScopesIndex - 1;
13448         break;
13449       }
13450       return true;
13451     }
13452 
13453     FunctionScopeInfo  *FSI = FunctionScopes[FunctionScopesIndex];
13454     CapturingScopeInfo *CSI = cast<CapturingScopeInfo>(FSI);
13455 
13456 
13457     // Check whether we've already captured it.
13458     if (isVariableAlreadyCapturedInScopeInfo(CSI, Var, Nested, CaptureType,
13459                                              DeclRefType))
13460       break;
13461     // If we are instantiating a generic lambda call operator body,
13462     // we do not want to capture new variables.  What was captured
13463     // during either a lambdas transformation or initial parsing
13464     // should be used.
13465     if (isGenericLambdaCallOperatorSpecialization(DC)) {
13466       if (BuildAndDiagnose) {
13467         LambdaScopeInfo *LSI = cast<LambdaScopeInfo>(CSI);
13468         if (LSI->ImpCaptureStyle == CapturingScopeInfo::ImpCap_None) {
13469           Diag(ExprLoc, diag::err_lambda_impcap) << Var->getDeclName();
13470           Diag(Var->getLocation(), diag::note_previous_decl)
13471              << Var->getDeclName();
13472           Diag(LSI->Lambda->getLocStart(), diag::note_lambda_decl);
13473         } else
13474           diagnoseUncapturableValueReference(*this, ExprLoc, Var, DC);
13475       }
13476       return true;
13477     }
13478     // Certain capturing entities (lambdas, blocks etc.) are not allowed to capture
13479     // certain types of variables (unnamed, variably modified types etc.)
13480     // so check for eligibility.
13481     if (!isVariableCapturable(CSI, Var, ExprLoc, BuildAndDiagnose, *this))
13482        return true;
13483 
13484     // Try to capture variable-length arrays types.
13485     if (Var->getType()->isVariablyModifiedType()) {
13486       // We're going to walk down into the type and look for VLA
13487       // expressions.
13488       QualType QTy = Var->getType();
13489       if (ParmVarDecl *PVD = dyn_cast_or_null<ParmVarDecl>(Var))
13490         QTy = PVD->getOriginalType();
13491       captureVariablyModifiedType(Context, QTy, CSI);
13492     }
13493 
13494     if (getLangOpts().OpenMP) {
13495       if (auto *RSI = dyn_cast<CapturedRegionScopeInfo>(CSI)) {
13496         // OpenMP private variables should not be captured in outer scope, so
13497         // just break here. Similarly, global variables that are captured in a
13498         // target region should not be captured outside the scope of the region.
13499         if (RSI->CapRegionKind == CR_OpenMP) {
13500           auto isTargetCap = isOpenMPTargetCapturedDecl(Var, OpenMPLevel);
13501           // When we detect target captures we are looking from inside the
13502           // target region, therefore we need to propagate the capture from the
13503           // enclosing region. Therefore, the capture is not initially nested.
13504           if (isTargetCap)
13505             FunctionScopesIndex--;
13506 
13507           if (isTargetCap || isOpenMPPrivateDecl(Var, OpenMPLevel)) {
13508             Nested = !isTargetCap;
13509             DeclRefType = DeclRefType.getUnqualifiedType();
13510             CaptureType = Context.getLValueReferenceType(DeclRefType);
13511             break;
13512           }
13513           ++OpenMPLevel;
13514         }
13515       }
13516     }
13517     if (CSI->ImpCaptureStyle == CapturingScopeInfo::ImpCap_None && !Explicit) {
13518       // No capture-default, and this is not an explicit capture
13519       // so cannot capture this variable.
13520       if (BuildAndDiagnose) {
13521         Diag(ExprLoc, diag::err_lambda_impcap) << Var->getDeclName();
13522         Diag(Var->getLocation(), diag::note_previous_decl)
13523           << Var->getDeclName();
13524         if (cast<LambdaScopeInfo>(CSI)->Lambda)
13525           Diag(cast<LambdaScopeInfo>(CSI)->Lambda->getLocStart(),
13526                diag::note_lambda_decl);
13527         // FIXME: If we error out because an outer lambda can not implicitly
13528         // capture a variable that an inner lambda explicitly captures, we
13529         // should have the inner lambda do the explicit capture - because
13530         // it makes for cleaner diagnostics later.  This would purely be done
13531         // so that the diagnostic does not misleadingly claim that a variable
13532         // can not be captured by a lambda implicitly even though it is captured
13533         // explicitly.  Suggestion:
13534         //  - create const bool VariableCaptureWasInitiallyExplicit = Explicit
13535         //    at the function head
13536         //  - cache the StartingDeclContext - this must be a lambda
13537         //  - captureInLambda in the innermost lambda the variable.
13538       }
13539       return true;
13540     }
13541 
13542     FunctionScopesIndex--;
13543     DC = ParentDC;
13544     Explicit = false;
13545   } while (!VarDC->Equals(DC));
13546 
13547   // Walk back down the scope stack, (e.g. from outer lambda to inner lambda)
13548   // computing the type of the capture at each step, checking type-specific
13549   // requirements, and adding captures if requested.
13550   // If the variable had already been captured previously, we start capturing
13551   // at the lambda nested within that one.
13552   for (unsigned I = ++FunctionScopesIndex, N = MaxFunctionScopesIndex + 1; I != N;
13553        ++I) {
13554     CapturingScopeInfo *CSI = cast<CapturingScopeInfo>(FunctionScopes[I]);
13555 
13556     if (BlockScopeInfo *BSI = dyn_cast<BlockScopeInfo>(CSI)) {
13557       if (!captureInBlock(BSI, Var, ExprLoc,
13558                           BuildAndDiagnose, CaptureType,
13559                           DeclRefType, Nested, *this))
13560         return true;
13561       Nested = true;
13562     } else if (CapturedRegionScopeInfo *RSI = dyn_cast<CapturedRegionScopeInfo>(CSI)) {
13563       if (!captureInCapturedRegion(RSI, Var, ExprLoc,
13564                                    BuildAndDiagnose, CaptureType,
13565                                    DeclRefType, Nested, *this))
13566         return true;
13567       Nested = true;
13568     } else {
13569       LambdaScopeInfo *LSI = cast<LambdaScopeInfo>(CSI);
13570       if (!captureInLambda(LSI, Var, ExprLoc,
13571                            BuildAndDiagnose, CaptureType,
13572                            DeclRefType, Nested, Kind, EllipsisLoc,
13573                             /*IsTopScope*/I == N - 1, *this))
13574         return true;
13575       Nested = true;
13576     }
13577   }
13578   return false;
13579 }
13580 
13581 bool Sema::tryCaptureVariable(VarDecl *Var, SourceLocation Loc,
13582                               TryCaptureKind Kind, SourceLocation EllipsisLoc) {
13583   QualType CaptureType;
13584   QualType DeclRefType;
13585   return tryCaptureVariable(Var, Loc, Kind, EllipsisLoc,
13586                             /*BuildAndDiagnose=*/true, CaptureType,
13587                             DeclRefType, nullptr);
13588 }
13589 
13590 bool Sema::NeedToCaptureVariable(VarDecl *Var, SourceLocation Loc) {
13591   QualType CaptureType;
13592   QualType DeclRefType;
13593   return !tryCaptureVariable(Var, Loc, TryCapture_Implicit, SourceLocation(),
13594                              /*BuildAndDiagnose=*/false, CaptureType,
13595                              DeclRefType, nullptr);
13596 }
13597 
13598 QualType Sema::getCapturedDeclRefType(VarDecl *Var, SourceLocation Loc) {
13599   QualType CaptureType;
13600   QualType DeclRefType;
13601 
13602   // Determine whether we can capture this variable.
13603   if (tryCaptureVariable(Var, Loc, TryCapture_Implicit, SourceLocation(),
13604                          /*BuildAndDiagnose=*/false, CaptureType,
13605                          DeclRefType, nullptr))
13606     return QualType();
13607 
13608   return DeclRefType;
13609 }
13610 
13611 
13612 
13613 // If either the type of the variable or the initializer is dependent,
13614 // return false. Otherwise, determine whether the variable is a constant
13615 // expression. Use this if you need to know if a variable that might or
13616 // might not be dependent is truly a constant expression.
13617 static inline bool IsVariableNonDependentAndAConstantExpression(VarDecl *Var,
13618     ASTContext &Context) {
13619 
13620   if (Var->getType()->isDependentType())
13621     return false;
13622   const VarDecl *DefVD = nullptr;
13623   Var->getAnyInitializer(DefVD);
13624   if (!DefVD)
13625     return false;
13626   EvaluatedStmt *Eval = DefVD->ensureEvaluatedStmt();
13627   Expr *Init = cast<Expr>(Eval->Value);
13628   if (Init->isValueDependent())
13629     return false;
13630   return IsVariableAConstantExpression(Var, Context);
13631 }
13632 
13633 
13634 void Sema::UpdateMarkingForLValueToRValue(Expr *E) {
13635   // Per C++11 [basic.def.odr], a variable is odr-used "unless it is
13636   // an object that satisfies the requirements for appearing in a
13637   // constant expression (5.19) and the lvalue-to-rvalue conversion (4.1)
13638   // is immediately applied."  This function handles the lvalue-to-rvalue
13639   // conversion part.
13640   MaybeODRUseExprs.erase(E->IgnoreParens());
13641 
13642   // If we are in a lambda, check if this DeclRefExpr or MemberExpr refers
13643   // to a variable that is a constant expression, and if so, identify it as
13644   // a reference to a variable that does not involve an odr-use of that
13645   // variable.
13646   if (LambdaScopeInfo *LSI = getCurLambda()) {
13647     Expr *SansParensExpr = E->IgnoreParens();
13648     VarDecl *Var = nullptr;
13649     if (DeclRefExpr *DRE = dyn_cast<DeclRefExpr>(SansParensExpr))
13650       Var = dyn_cast<VarDecl>(DRE->getFoundDecl());
13651     else if (MemberExpr *ME = dyn_cast<MemberExpr>(SansParensExpr))
13652       Var = dyn_cast<VarDecl>(ME->getMemberDecl());
13653 
13654     if (Var && IsVariableNonDependentAndAConstantExpression(Var, Context))
13655       LSI->markVariableExprAsNonODRUsed(SansParensExpr);
13656   }
13657 }
13658 
13659 ExprResult Sema::ActOnConstantExpression(ExprResult Res) {
13660   Res = CorrectDelayedTyposInExpr(Res);
13661 
13662   if (!Res.isUsable())
13663     return Res;
13664 
13665   // If a constant-expression is a reference to a variable where we delay
13666   // deciding whether it is an odr-use, just assume we will apply the
13667   // lvalue-to-rvalue conversion.  In the one case where this doesn't happen
13668   // (a non-type template argument), we have special handling anyway.
13669   UpdateMarkingForLValueToRValue(Res.get());
13670   return Res;
13671 }
13672 
13673 void Sema::CleanupVarDeclMarking() {
13674   for (Expr *E : MaybeODRUseExprs) {
13675     VarDecl *Var;
13676     SourceLocation Loc;
13677     if (DeclRefExpr *DRE = dyn_cast<DeclRefExpr>(E)) {
13678       Var = cast<VarDecl>(DRE->getDecl());
13679       Loc = DRE->getLocation();
13680     } else if (MemberExpr *ME = dyn_cast<MemberExpr>(E)) {
13681       Var = cast<VarDecl>(ME->getMemberDecl());
13682       Loc = ME->getMemberLoc();
13683     } else {
13684       llvm_unreachable("Unexpected expression");
13685     }
13686 
13687     MarkVarDeclODRUsed(Var, Loc, *this,
13688                        /*MaxFunctionScopeIndex Pointer*/ nullptr);
13689   }
13690 
13691   MaybeODRUseExprs.clear();
13692 }
13693 
13694 
13695 static void DoMarkVarDeclReferenced(Sema &SemaRef, SourceLocation Loc,
13696                                     VarDecl *Var, Expr *E) {
13697   assert((!E || isa<DeclRefExpr>(E) || isa<MemberExpr>(E)) &&
13698          "Invalid Expr argument to DoMarkVarDeclReferenced");
13699   Var->setReferenced();
13700 
13701   TemplateSpecializationKind TSK = Var->getTemplateSpecializationKind();
13702   bool MarkODRUsed = true;
13703 
13704   // If the context is not potentially evaluated, this is not an odr-use and
13705   // does not trigger instantiation.
13706   if (!IsPotentiallyEvaluatedContext(SemaRef)) {
13707     if (SemaRef.isUnevaluatedContext())
13708       return;
13709 
13710     // If we don't yet know whether this context is going to end up being an
13711     // evaluated context, and we're referencing a variable from an enclosing
13712     // scope, add a potential capture.
13713     //
13714     // FIXME: Is this necessary? These contexts are only used for default
13715     // arguments, where local variables can't be used.
13716     const bool RefersToEnclosingScope =
13717         (SemaRef.CurContext != Var->getDeclContext() &&
13718          Var->getDeclContext()->isFunctionOrMethod() && Var->hasLocalStorage());
13719     if (RefersToEnclosingScope) {
13720       if (LambdaScopeInfo *const LSI = SemaRef.getCurLambda()) {
13721         // If a variable could potentially be odr-used, defer marking it so
13722         // until we finish analyzing the full expression for any
13723         // lvalue-to-rvalue
13724         // or discarded value conversions that would obviate odr-use.
13725         // Add it to the list of potential captures that will be analyzed
13726         // later (ActOnFinishFullExpr) for eventual capture and odr-use marking
13727         // unless the variable is a reference that was initialized by a constant
13728         // expression (this will never need to be captured or odr-used).
13729         assert(E && "Capture variable should be used in an expression.");
13730         if (!Var->getType()->isReferenceType() ||
13731             !IsVariableNonDependentAndAConstantExpression(Var, SemaRef.Context))
13732           LSI->addPotentialCapture(E->IgnoreParens());
13733       }
13734     }
13735 
13736     if (!isTemplateInstantiation(TSK))
13737       return;
13738 
13739     // Instantiate, but do not mark as odr-used, variable templates.
13740     MarkODRUsed = false;
13741   }
13742 
13743   VarTemplateSpecializationDecl *VarSpec =
13744       dyn_cast<VarTemplateSpecializationDecl>(Var);
13745   assert(!isa<VarTemplatePartialSpecializationDecl>(Var) &&
13746          "Can't instantiate a partial template specialization.");
13747 
13748   // Perform implicit instantiation of static data members, static data member
13749   // templates of class templates, and variable template specializations. Delay
13750   // instantiations of variable templates, except for those that could be used
13751   // in a constant expression.
13752   if (isTemplateInstantiation(TSK)) {
13753     bool TryInstantiating = TSK == TSK_ImplicitInstantiation;
13754 
13755     if (TryInstantiating && !isa<VarTemplateSpecializationDecl>(Var)) {
13756       if (Var->getPointOfInstantiation().isInvalid()) {
13757         // This is a modification of an existing AST node. Notify listeners.
13758         if (ASTMutationListener *L = SemaRef.getASTMutationListener())
13759           L->StaticDataMemberInstantiated(Var);
13760       } else if (!Var->isUsableInConstantExpressions(SemaRef.Context))
13761         // Don't bother trying to instantiate it again, unless we might need
13762         // its initializer before we get to the end of the TU.
13763         TryInstantiating = false;
13764     }
13765 
13766     if (Var->getPointOfInstantiation().isInvalid())
13767       Var->setTemplateSpecializationKind(TSK, Loc);
13768 
13769     if (TryInstantiating) {
13770       SourceLocation PointOfInstantiation = Var->getPointOfInstantiation();
13771       bool InstantiationDependent = false;
13772       bool IsNonDependent =
13773           VarSpec ? !TemplateSpecializationType::anyDependentTemplateArguments(
13774                         VarSpec->getTemplateArgsInfo(), InstantiationDependent)
13775                   : true;
13776 
13777       // Do not instantiate specializations that are still type-dependent.
13778       if (IsNonDependent) {
13779         if (Var->isUsableInConstantExpressions(SemaRef.Context)) {
13780           // Do not defer instantiations of variables which could be used in a
13781           // constant expression.
13782           SemaRef.InstantiateVariableDefinition(PointOfInstantiation, Var);
13783         } else {
13784           SemaRef.PendingInstantiations
13785               .push_back(std::make_pair(Var, PointOfInstantiation));
13786         }
13787       }
13788     }
13789   }
13790 
13791   if(!MarkODRUsed) return;
13792 
13793   // Per C++11 [basic.def.odr], a variable is odr-used "unless it satisfies
13794   // the requirements for appearing in a constant expression (5.19) and, if
13795   // it is an object, the lvalue-to-rvalue conversion (4.1)
13796   // is immediately applied."  We check the first part here, and
13797   // Sema::UpdateMarkingForLValueToRValue deals with the second part.
13798   // Note that we use the C++11 definition everywhere because nothing in
13799   // C++03 depends on whether we get the C++03 version correct. The second
13800   // part does not apply to references, since they are not objects.
13801   if (E && IsVariableAConstantExpression(Var, SemaRef.Context)) {
13802     // A reference initialized by a constant expression can never be
13803     // odr-used, so simply ignore it.
13804     if (!Var->getType()->isReferenceType())
13805       SemaRef.MaybeODRUseExprs.insert(E);
13806   } else
13807     MarkVarDeclODRUsed(Var, Loc, SemaRef,
13808                        /*MaxFunctionScopeIndex ptr*/ nullptr);
13809 }
13810 
13811 /// \brief Mark a variable referenced, and check whether it is odr-used
13812 /// (C++ [basic.def.odr]p2, C99 6.9p3).  Note that this should not be
13813 /// used directly for normal expressions referring to VarDecl.
13814 void Sema::MarkVariableReferenced(SourceLocation Loc, VarDecl *Var) {
13815   DoMarkVarDeclReferenced(*this, Loc, Var, nullptr);
13816 }
13817 
13818 static void MarkExprReferenced(Sema &SemaRef, SourceLocation Loc,
13819                                Decl *D, Expr *E, bool MightBeOdrUse) {
13820   if (SemaRef.isInOpenMPDeclareTargetContext())
13821     SemaRef.checkDeclIsAllowedInOpenMPTarget(E, D);
13822 
13823   if (VarDecl *Var = dyn_cast<VarDecl>(D)) {
13824     DoMarkVarDeclReferenced(SemaRef, Loc, Var, E);
13825     return;
13826   }
13827 
13828   SemaRef.MarkAnyDeclReferenced(Loc, D, MightBeOdrUse);
13829 
13830   // If this is a call to a method via a cast, also mark the method in the
13831   // derived class used in case codegen can devirtualize the call.
13832   const MemberExpr *ME = dyn_cast<MemberExpr>(E);
13833   if (!ME)
13834     return;
13835   CXXMethodDecl *MD = dyn_cast<CXXMethodDecl>(ME->getMemberDecl());
13836   if (!MD)
13837     return;
13838   // Only attempt to devirtualize if this is truly a virtual call.
13839   bool IsVirtualCall = MD->isVirtual() &&
13840                           ME->performsVirtualDispatch(SemaRef.getLangOpts());
13841   if (!IsVirtualCall)
13842     return;
13843   const Expr *Base = ME->getBase();
13844   const CXXRecordDecl *MostDerivedClassDecl = Base->getBestDynamicClassType();
13845   if (!MostDerivedClassDecl)
13846     return;
13847   CXXMethodDecl *DM = MD->getCorrespondingMethodInClass(MostDerivedClassDecl);
13848   if (!DM || DM->isPure())
13849     return;
13850   SemaRef.MarkAnyDeclReferenced(Loc, DM, MightBeOdrUse);
13851 }
13852 
13853 /// \brief Perform reference-marking and odr-use handling for a DeclRefExpr.
13854 void Sema::MarkDeclRefReferenced(DeclRefExpr *E) {
13855   // TODO: update this with DR# once a defect report is filed.
13856   // C++11 defect. The address of a pure member should not be an ODR use, even
13857   // if it's a qualified reference.
13858   bool OdrUse = true;
13859   if (CXXMethodDecl *Method = dyn_cast<CXXMethodDecl>(E->getDecl()))
13860     if (Method->isVirtual())
13861       OdrUse = false;
13862   MarkExprReferenced(*this, E->getLocation(), E->getDecl(), E, OdrUse);
13863 }
13864 
13865 /// \brief Perform reference-marking and odr-use handling for a MemberExpr.
13866 void Sema::MarkMemberReferenced(MemberExpr *E) {
13867   // C++11 [basic.def.odr]p2:
13868   //   A non-overloaded function whose name appears as a potentially-evaluated
13869   //   expression or a member of a set of candidate functions, if selected by
13870   //   overload resolution when referred to from a potentially-evaluated
13871   //   expression, is odr-used, unless it is a pure virtual function and its
13872   //   name is not explicitly qualified.
13873   bool MightBeOdrUse = true;
13874   if (E->performsVirtualDispatch(getLangOpts())) {
13875     if (CXXMethodDecl *Method = dyn_cast<CXXMethodDecl>(E->getMemberDecl()))
13876       if (Method->isPure())
13877         MightBeOdrUse = false;
13878   }
13879   SourceLocation Loc = E->getMemberLoc().isValid() ?
13880                             E->getMemberLoc() : E->getLocStart();
13881   MarkExprReferenced(*this, Loc, E->getMemberDecl(), E, MightBeOdrUse);
13882 }
13883 
13884 /// \brief Perform marking for a reference to an arbitrary declaration.  It
13885 /// marks the declaration referenced, and performs odr-use checking for
13886 /// functions and variables. This method should not be used when building a
13887 /// normal expression which refers to a variable.
13888 void Sema::MarkAnyDeclReferenced(SourceLocation Loc, Decl *D,
13889                                  bool MightBeOdrUse) {
13890   if (MightBeOdrUse) {
13891     if (auto *VD = dyn_cast<VarDecl>(D)) {
13892       MarkVariableReferenced(Loc, VD);
13893       return;
13894     }
13895   }
13896   if (auto *FD = dyn_cast<FunctionDecl>(D)) {
13897     MarkFunctionReferenced(Loc, FD, MightBeOdrUse);
13898     return;
13899   }
13900   D->setReferenced();
13901 }
13902 
13903 namespace {
13904   // Mark all of the declarations referenced
13905   // FIXME: Not fully implemented yet! We need to have a better understanding
13906   // of when we're entering
13907   class MarkReferencedDecls : public RecursiveASTVisitor<MarkReferencedDecls> {
13908     Sema &S;
13909     SourceLocation Loc;
13910 
13911   public:
13912     typedef RecursiveASTVisitor<MarkReferencedDecls> Inherited;
13913 
13914     MarkReferencedDecls(Sema &S, SourceLocation Loc) : S(S), Loc(Loc) { }
13915 
13916     bool TraverseTemplateArgument(const TemplateArgument &Arg);
13917     bool TraverseRecordType(RecordType *T);
13918   };
13919 }
13920 
13921 bool MarkReferencedDecls::TraverseTemplateArgument(
13922     const TemplateArgument &Arg) {
13923   if (Arg.getKind() == TemplateArgument::Declaration) {
13924     if (Decl *D = Arg.getAsDecl())
13925       S.MarkAnyDeclReferenced(Loc, D, true);
13926   }
13927 
13928   return Inherited::TraverseTemplateArgument(Arg);
13929 }
13930 
13931 bool MarkReferencedDecls::TraverseRecordType(RecordType *T) {
13932   if (ClassTemplateSpecializationDecl *Spec
13933                   = dyn_cast<ClassTemplateSpecializationDecl>(T->getDecl())) {
13934     const TemplateArgumentList &Args = Spec->getTemplateArgs();
13935     return TraverseTemplateArguments(Args.data(), Args.size());
13936   }
13937 
13938   return true;
13939 }
13940 
13941 void Sema::MarkDeclarationsReferencedInType(SourceLocation Loc, QualType T) {
13942   MarkReferencedDecls Marker(*this, Loc);
13943   Marker.TraverseType(Context.getCanonicalType(T));
13944 }
13945 
13946 namespace {
13947   /// \brief Helper class that marks all of the declarations referenced by
13948   /// potentially-evaluated subexpressions as "referenced".
13949   class EvaluatedExprMarker : public EvaluatedExprVisitor<EvaluatedExprMarker> {
13950     Sema &S;
13951     bool SkipLocalVariables;
13952 
13953   public:
13954     typedef EvaluatedExprVisitor<EvaluatedExprMarker> Inherited;
13955 
13956     EvaluatedExprMarker(Sema &S, bool SkipLocalVariables)
13957       : Inherited(S.Context), S(S), SkipLocalVariables(SkipLocalVariables) { }
13958 
13959     void VisitDeclRefExpr(DeclRefExpr *E) {
13960       // If we were asked not to visit local variables, don't.
13961       if (SkipLocalVariables) {
13962         if (VarDecl *VD = dyn_cast<VarDecl>(E->getDecl()))
13963           if (VD->hasLocalStorage())
13964             return;
13965       }
13966 
13967       S.MarkDeclRefReferenced(E);
13968     }
13969 
13970     void VisitMemberExpr(MemberExpr *E) {
13971       S.MarkMemberReferenced(E);
13972       Inherited::VisitMemberExpr(E);
13973     }
13974 
13975     void VisitCXXBindTemporaryExpr(CXXBindTemporaryExpr *E) {
13976       S.MarkFunctionReferenced(E->getLocStart(),
13977             const_cast<CXXDestructorDecl*>(E->getTemporary()->getDestructor()));
13978       Visit(E->getSubExpr());
13979     }
13980 
13981     void VisitCXXNewExpr(CXXNewExpr *E) {
13982       if (E->getOperatorNew())
13983         S.MarkFunctionReferenced(E->getLocStart(), E->getOperatorNew());
13984       if (E->getOperatorDelete())
13985         S.MarkFunctionReferenced(E->getLocStart(), E->getOperatorDelete());
13986       Inherited::VisitCXXNewExpr(E);
13987     }
13988 
13989     void VisitCXXDeleteExpr(CXXDeleteExpr *E) {
13990       if (E->getOperatorDelete())
13991         S.MarkFunctionReferenced(E->getLocStart(), E->getOperatorDelete());
13992       QualType Destroyed = S.Context.getBaseElementType(E->getDestroyedType());
13993       if (const RecordType *DestroyedRec = Destroyed->getAs<RecordType>()) {
13994         CXXRecordDecl *Record = cast<CXXRecordDecl>(DestroyedRec->getDecl());
13995         S.MarkFunctionReferenced(E->getLocStart(),
13996                                     S.LookupDestructor(Record));
13997       }
13998 
13999       Inherited::VisitCXXDeleteExpr(E);
14000     }
14001 
14002     void VisitCXXConstructExpr(CXXConstructExpr *E) {
14003       S.MarkFunctionReferenced(E->getLocStart(), E->getConstructor());
14004       Inherited::VisitCXXConstructExpr(E);
14005     }
14006 
14007     void VisitCXXDefaultArgExpr(CXXDefaultArgExpr *E) {
14008       Visit(E->getExpr());
14009     }
14010 
14011     void VisitImplicitCastExpr(ImplicitCastExpr *E) {
14012       Inherited::VisitImplicitCastExpr(E);
14013 
14014       if (E->getCastKind() == CK_LValueToRValue)
14015         S.UpdateMarkingForLValueToRValue(E->getSubExpr());
14016     }
14017   };
14018 }
14019 
14020 /// \brief Mark any declarations that appear within this expression or any
14021 /// potentially-evaluated subexpressions as "referenced".
14022 ///
14023 /// \param SkipLocalVariables If true, don't mark local variables as
14024 /// 'referenced'.
14025 void Sema::MarkDeclarationsReferencedInExpr(Expr *E,
14026                                             bool SkipLocalVariables) {
14027   EvaluatedExprMarker(*this, SkipLocalVariables).Visit(E);
14028 }
14029 
14030 /// \brief Emit a diagnostic that describes an effect on the run-time behavior
14031 /// of the program being compiled.
14032 ///
14033 /// This routine emits the given diagnostic when the code currently being
14034 /// type-checked is "potentially evaluated", meaning that there is a
14035 /// possibility that the code will actually be executable. Code in sizeof()
14036 /// expressions, code used only during overload resolution, etc., are not
14037 /// potentially evaluated. This routine will suppress such diagnostics or,
14038 /// in the absolutely nutty case of potentially potentially evaluated
14039 /// expressions (C++ typeid), queue the diagnostic to potentially emit it
14040 /// later.
14041 ///
14042 /// This routine should be used for all diagnostics that describe the run-time
14043 /// behavior of a program, such as passing a non-POD value through an ellipsis.
14044 /// Failure to do so will likely result in spurious diagnostics or failures
14045 /// during overload resolution or within sizeof/alignof/typeof/typeid.
14046 bool Sema::DiagRuntimeBehavior(SourceLocation Loc, const Stmt *Statement,
14047                                const PartialDiagnostic &PD) {
14048   switch (ExprEvalContexts.back().Context) {
14049   case Unevaluated:
14050   case UnevaluatedAbstract:
14051     // The argument will never be evaluated, so don't complain.
14052     break;
14053 
14054   case ConstantEvaluated:
14055     // Relevant diagnostics should be produced by constant evaluation.
14056     break;
14057 
14058   case PotentiallyEvaluated:
14059   case PotentiallyEvaluatedIfUsed:
14060     if (Statement && getCurFunctionOrMethodDecl()) {
14061       FunctionScopes.back()->PossiblyUnreachableDiags.
14062         push_back(sema::PossiblyUnreachableDiag(PD, Loc, Statement));
14063     }
14064     else
14065       Diag(Loc, PD);
14066 
14067     return true;
14068   }
14069 
14070   return false;
14071 }
14072 
14073 bool Sema::CheckCallReturnType(QualType ReturnType, SourceLocation Loc,
14074                                CallExpr *CE, FunctionDecl *FD) {
14075   if (ReturnType->isVoidType() || !ReturnType->isIncompleteType())
14076     return false;
14077 
14078   // If we're inside a decltype's expression, don't check for a valid return
14079   // type or construct temporaries until we know whether this is the last call.
14080   if (ExprEvalContexts.back().IsDecltype) {
14081     ExprEvalContexts.back().DelayedDecltypeCalls.push_back(CE);
14082     return false;
14083   }
14084 
14085   class CallReturnIncompleteDiagnoser : public TypeDiagnoser {
14086     FunctionDecl *FD;
14087     CallExpr *CE;
14088 
14089   public:
14090     CallReturnIncompleteDiagnoser(FunctionDecl *FD, CallExpr *CE)
14091       : FD(FD), CE(CE) { }
14092 
14093     void diagnose(Sema &S, SourceLocation Loc, QualType T) override {
14094       if (!FD) {
14095         S.Diag(Loc, diag::err_call_incomplete_return)
14096           << T << CE->getSourceRange();
14097         return;
14098       }
14099 
14100       S.Diag(Loc, diag::err_call_function_incomplete_return)
14101         << CE->getSourceRange() << FD->getDeclName() << T;
14102       S.Diag(FD->getLocation(), diag::note_entity_declared_at)
14103           << FD->getDeclName();
14104     }
14105   } Diagnoser(FD, CE);
14106 
14107   if (RequireCompleteType(Loc, ReturnType, Diagnoser))
14108     return true;
14109 
14110   return false;
14111 }
14112 
14113 // Diagnose the s/=/==/ and s/\|=/!=/ typos. Note that adding parentheses
14114 // will prevent this condition from triggering, which is what we want.
14115 void Sema::DiagnoseAssignmentAsCondition(Expr *E) {
14116   SourceLocation Loc;
14117 
14118   unsigned diagnostic = diag::warn_condition_is_assignment;
14119   bool IsOrAssign = false;
14120 
14121   if (BinaryOperator *Op = dyn_cast<BinaryOperator>(E)) {
14122     if (Op->getOpcode() != BO_Assign && Op->getOpcode() != BO_OrAssign)
14123       return;
14124 
14125     IsOrAssign = Op->getOpcode() == BO_OrAssign;
14126 
14127     // Greylist some idioms by putting them into a warning subcategory.
14128     if (ObjCMessageExpr *ME
14129           = dyn_cast<ObjCMessageExpr>(Op->getRHS()->IgnoreParenCasts())) {
14130       Selector Sel = ME->getSelector();
14131 
14132       // self = [<foo> init...]
14133       if (isSelfExpr(Op->getLHS()) && ME->getMethodFamily() == OMF_init)
14134         diagnostic = diag::warn_condition_is_idiomatic_assignment;
14135 
14136       // <foo> = [<bar> nextObject]
14137       else if (Sel.isUnarySelector() && Sel.getNameForSlot(0) == "nextObject")
14138         diagnostic = diag::warn_condition_is_idiomatic_assignment;
14139     }
14140 
14141     Loc = Op->getOperatorLoc();
14142   } else if (CXXOperatorCallExpr *Op = dyn_cast<CXXOperatorCallExpr>(E)) {
14143     if (Op->getOperator() != OO_Equal && Op->getOperator() != OO_PipeEqual)
14144       return;
14145 
14146     IsOrAssign = Op->getOperator() == OO_PipeEqual;
14147     Loc = Op->getOperatorLoc();
14148   } else if (PseudoObjectExpr *POE = dyn_cast<PseudoObjectExpr>(E))
14149     return DiagnoseAssignmentAsCondition(POE->getSyntacticForm());
14150   else {
14151     // Not an assignment.
14152     return;
14153   }
14154 
14155   Diag(Loc, diagnostic) << E->getSourceRange();
14156 
14157   SourceLocation Open = E->getLocStart();
14158   SourceLocation Close = getLocForEndOfToken(E->getSourceRange().getEnd());
14159   Diag(Loc, diag::note_condition_assign_silence)
14160         << FixItHint::CreateInsertion(Open, "(")
14161         << FixItHint::CreateInsertion(Close, ")");
14162 
14163   if (IsOrAssign)
14164     Diag(Loc, diag::note_condition_or_assign_to_comparison)
14165       << FixItHint::CreateReplacement(Loc, "!=");
14166   else
14167     Diag(Loc, diag::note_condition_assign_to_comparison)
14168       << FixItHint::CreateReplacement(Loc, "==");
14169 }
14170 
14171 /// \brief Redundant parentheses over an equality comparison can indicate
14172 /// that the user intended an assignment used as condition.
14173 void Sema::DiagnoseEqualityWithExtraParens(ParenExpr *ParenE) {
14174   // Don't warn if the parens came from a macro.
14175   SourceLocation parenLoc = ParenE->getLocStart();
14176   if (parenLoc.isInvalid() || parenLoc.isMacroID())
14177     return;
14178   // Don't warn for dependent expressions.
14179   if (ParenE->isTypeDependent())
14180     return;
14181 
14182   Expr *E = ParenE->IgnoreParens();
14183 
14184   if (BinaryOperator *opE = dyn_cast<BinaryOperator>(E))
14185     if (opE->getOpcode() == BO_EQ &&
14186         opE->getLHS()->IgnoreParenImpCasts()->isModifiableLvalue(Context)
14187                                                            == Expr::MLV_Valid) {
14188       SourceLocation Loc = opE->getOperatorLoc();
14189 
14190       Diag(Loc, diag::warn_equality_with_extra_parens) << E->getSourceRange();
14191       SourceRange ParenERange = ParenE->getSourceRange();
14192       Diag(Loc, diag::note_equality_comparison_silence)
14193         << FixItHint::CreateRemoval(ParenERange.getBegin())
14194         << FixItHint::CreateRemoval(ParenERange.getEnd());
14195       Diag(Loc, diag::note_equality_comparison_to_assign)
14196         << FixItHint::CreateReplacement(Loc, "=");
14197     }
14198 }
14199 
14200 ExprResult Sema::CheckBooleanCondition(Expr *E, SourceLocation Loc) {
14201   DiagnoseAssignmentAsCondition(E);
14202   if (ParenExpr *parenE = dyn_cast<ParenExpr>(E))
14203     DiagnoseEqualityWithExtraParens(parenE);
14204 
14205   ExprResult result = CheckPlaceholderExpr(E);
14206   if (result.isInvalid()) return ExprError();
14207   E = result.get();
14208 
14209   if (!E->isTypeDependent()) {
14210     if (getLangOpts().CPlusPlus)
14211       return CheckCXXBooleanCondition(E); // C++ 6.4p4
14212 
14213     ExprResult ERes = DefaultFunctionArrayLvalueConversion(E);
14214     if (ERes.isInvalid())
14215       return ExprError();
14216     E = ERes.get();
14217 
14218     QualType T = E->getType();
14219     if (!T->isScalarType()) { // C99 6.8.4.1p1
14220       Diag(Loc, diag::err_typecheck_statement_requires_scalar)
14221         << T << E->getSourceRange();
14222       return ExprError();
14223     }
14224     CheckBoolLikeConversion(E, Loc);
14225   }
14226 
14227   return E;
14228 }
14229 
14230 ExprResult Sema::ActOnBooleanCondition(Scope *S, SourceLocation Loc,
14231                                        Expr *SubExpr) {
14232   if (!SubExpr)
14233     return ExprError();
14234 
14235   return CheckBooleanCondition(SubExpr, Loc);
14236 }
14237 
14238 namespace {
14239   /// A visitor for rebuilding a call to an __unknown_any expression
14240   /// to have an appropriate type.
14241   struct RebuildUnknownAnyFunction
14242     : StmtVisitor<RebuildUnknownAnyFunction, ExprResult> {
14243 
14244     Sema &S;
14245 
14246     RebuildUnknownAnyFunction(Sema &S) : S(S) {}
14247 
14248     ExprResult VisitStmt(Stmt *S) {
14249       llvm_unreachable("unexpected statement!");
14250     }
14251 
14252     ExprResult VisitExpr(Expr *E) {
14253       S.Diag(E->getExprLoc(), diag::err_unsupported_unknown_any_call)
14254         << E->getSourceRange();
14255       return ExprError();
14256     }
14257 
14258     /// Rebuild an expression which simply semantically wraps another
14259     /// expression which it shares the type and value kind of.
14260     template <class T> ExprResult rebuildSugarExpr(T *E) {
14261       ExprResult SubResult = Visit(E->getSubExpr());
14262       if (SubResult.isInvalid()) return ExprError();
14263 
14264       Expr *SubExpr = SubResult.get();
14265       E->setSubExpr(SubExpr);
14266       E->setType(SubExpr->getType());
14267       E->setValueKind(SubExpr->getValueKind());
14268       assert(E->getObjectKind() == OK_Ordinary);
14269       return E;
14270     }
14271 
14272     ExprResult VisitParenExpr(ParenExpr *E) {
14273       return rebuildSugarExpr(E);
14274     }
14275 
14276     ExprResult VisitUnaryExtension(UnaryOperator *E) {
14277       return rebuildSugarExpr(E);
14278     }
14279 
14280     ExprResult VisitUnaryAddrOf(UnaryOperator *E) {
14281       ExprResult SubResult = Visit(E->getSubExpr());
14282       if (SubResult.isInvalid()) return ExprError();
14283 
14284       Expr *SubExpr = SubResult.get();
14285       E->setSubExpr(SubExpr);
14286       E->setType(S.Context.getPointerType(SubExpr->getType()));
14287       assert(E->getValueKind() == VK_RValue);
14288       assert(E->getObjectKind() == OK_Ordinary);
14289       return E;
14290     }
14291 
14292     ExprResult resolveDecl(Expr *E, ValueDecl *VD) {
14293       if (!isa<FunctionDecl>(VD)) return VisitExpr(E);
14294 
14295       E->setType(VD->getType());
14296 
14297       assert(E->getValueKind() == VK_RValue);
14298       if (S.getLangOpts().CPlusPlus &&
14299           !(isa<CXXMethodDecl>(VD) &&
14300             cast<CXXMethodDecl>(VD)->isInstance()))
14301         E->setValueKind(VK_LValue);
14302 
14303       return E;
14304     }
14305 
14306     ExprResult VisitMemberExpr(MemberExpr *E) {
14307       return resolveDecl(E, E->getMemberDecl());
14308     }
14309 
14310     ExprResult VisitDeclRefExpr(DeclRefExpr *E) {
14311       return resolveDecl(E, E->getDecl());
14312     }
14313   };
14314 }
14315 
14316 /// Given a function expression of unknown-any type, try to rebuild it
14317 /// to have a function type.
14318 static ExprResult rebuildUnknownAnyFunction(Sema &S, Expr *FunctionExpr) {
14319   ExprResult Result = RebuildUnknownAnyFunction(S).Visit(FunctionExpr);
14320   if (Result.isInvalid()) return ExprError();
14321   return S.DefaultFunctionArrayConversion(Result.get());
14322 }
14323 
14324 namespace {
14325   /// A visitor for rebuilding an expression of type __unknown_anytype
14326   /// into one which resolves the type directly on the referring
14327   /// expression.  Strict preservation of the original source
14328   /// structure is not a goal.
14329   struct RebuildUnknownAnyExpr
14330     : StmtVisitor<RebuildUnknownAnyExpr, ExprResult> {
14331 
14332     Sema &S;
14333 
14334     /// The current destination type.
14335     QualType DestType;
14336 
14337     RebuildUnknownAnyExpr(Sema &S, QualType CastType)
14338       : S(S), DestType(CastType) {}
14339 
14340     ExprResult VisitStmt(Stmt *S) {
14341       llvm_unreachable("unexpected statement!");
14342     }
14343 
14344     ExprResult VisitExpr(Expr *E) {
14345       S.Diag(E->getExprLoc(), diag::err_unsupported_unknown_any_expr)
14346         << E->getSourceRange();
14347       return ExprError();
14348     }
14349 
14350     ExprResult VisitCallExpr(CallExpr *E);
14351     ExprResult VisitObjCMessageExpr(ObjCMessageExpr *E);
14352 
14353     /// Rebuild an expression which simply semantically wraps another
14354     /// expression which it shares the type and value kind of.
14355     template <class T> ExprResult rebuildSugarExpr(T *E) {
14356       ExprResult SubResult = Visit(E->getSubExpr());
14357       if (SubResult.isInvalid()) return ExprError();
14358       Expr *SubExpr = SubResult.get();
14359       E->setSubExpr(SubExpr);
14360       E->setType(SubExpr->getType());
14361       E->setValueKind(SubExpr->getValueKind());
14362       assert(E->getObjectKind() == OK_Ordinary);
14363       return E;
14364     }
14365 
14366     ExprResult VisitParenExpr(ParenExpr *E) {
14367       return rebuildSugarExpr(E);
14368     }
14369 
14370     ExprResult VisitUnaryExtension(UnaryOperator *E) {
14371       return rebuildSugarExpr(E);
14372     }
14373 
14374     ExprResult VisitUnaryAddrOf(UnaryOperator *E) {
14375       const PointerType *Ptr = DestType->getAs<PointerType>();
14376       if (!Ptr) {
14377         S.Diag(E->getOperatorLoc(), diag::err_unknown_any_addrof)
14378           << E->getSourceRange();
14379         return ExprError();
14380       }
14381       assert(E->getValueKind() == VK_RValue);
14382       assert(E->getObjectKind() == OK_Ordinary);
14383       E->setType(DestType);
14384 
14385       // Build the sub-expression as if it were an object of the pointee type.
14386       DestType = Ptr->getPointeeType();
14387       ExprResult SubResult = Visit(E->getSubExpr());
14388       if (SubResult.isInvalid()) return ExprError();
14389       E->setSubExpr(SubResult.get());
14390       return E;
14391     }
14392 
14393     ExprResult VisitImplicitCastExpr(ImplicitCastExpr *E);
14394 
14395     ExprResult resolveDecl(Expr *E, ValueDecl *VD);
14396 
14397     ExprResult VisitMemberExpr(MemberExpr *E) {
14398       return resolveDecl(E, E->getMemberDecl());
14399     }
14400 
14401     ExprResult VisitDeclRefExpr(DeclRefExpr *E) {
14402       return resolveDecl(E, E->getDecl());
14403     }
14404   };
14405 }
14406 
14407 /// Rebuilds a call expression which yielded __unknown_anytype.
14408 ExprResult RebuildUnknownAnyExpr::VisitCallExpr(CallExpr *E) {
14409   Expr *CalleeExpr = E->getCallee();
14410 
14411   enum FnKind {
14412     FK_MemberFunction,
14413     FK_FunctionPointer,
14414     FK_BlockPointer
14415   };
14416 
14417   FnKind Kind;
14418   QualType CalleeType = CalleeExpr->getType();
14419   if (CalleeType == S.Context.BoundMemberTy) {
14420     assert(isa<CXXMemberCallExpr>(E) || isa<CXXOperatorCallExpr>(E));
14421     Kind = FK_MemberFunction;
14422     CalleeType = Expr::findBoundMemberType(CalleeExpr);
14423   } else if (const PointerType *Ptr = CalleeType->getAs<PointerType>()) {
14424     CalleeType = Ptr->getPointeeType();
14425     Kind = FK_FunctionPointer;
14426   } else {
14427     CalleeType = CalleeType->castAs<BlockPointerType>()->getPointeeType();
14428     Kind = FK_BlockPointer;
14429   }
14430   const FunctionType *FnType = CalleeType->castAs<FunctionType>();
14431 
14432   // Verify that this is a legal result type of a function.
14433   if (DestType->isArrayType() || DestType->isFunctionType()) {
14434     unsigned diagID = diag::err_func_returning_array_function;
14435     if (Kind == FK_BlockPointer)
14436       diagID = diag::err_block_returning_array_function;
14437 
14438     S.Diag(E->getExprLoc(), diagID)
14439       << DestType->isFunctionType() << DestType;
14440     return ExprError();
14441   }
14442 
14443   // Otherwise, go ahead and set DestType as the call's result.
14444   E->setType(DestType.getNonLValueExprType(S.Context));
14445   E->setValueKind(Expr::getValueKindForType(DestType));
14446   assert(E->getObjectKind() == OK_Ordinary);
14447 
14448   // Rebuild the function type, replacing the result type with DestType.
14449   const FunctionProtoType *Proto = dyn_cast<FunctionProtoType>(FnType);
14450   if (Proto) {
14451     // __unknown_anytype(...) is a special case used by the debugger when
14452     // it has no idea what a function's signature is.
14453     //
14454     // We want to build this call essentially under the K&R
14455     // unprototyped rules, but making a FunctionNoProtoType in C++
14456     // would foul up all sorts of assumptions.  However, we cannot
14457     // simply pass all arguments as variadic arguments, nor can we
14458     // portably just call the function under a non-variadic type; see
14459     // the comment on IR-gen's TargetInfo::isNoProtoCallVariadic.
14460     // However, it turns out that in practice it is generally safe to
14461     // call a function declared as "A foo(B,C,D);" under the prototype
14462     // "A foo(B,C,D,...);".  The only known exception is with the
14463     // Windows ABI, where any variadic function is implicitly cdecl
14464     // regardless of its normal CC.  Therefore we change the parameter
14465     // types to match the types of the arguments.
14466     //
14467     // This is a hack, but it is far superior to moving the
14468     // corresponding target-specific code from IR-gen to Sema/AST.
14469 
14470     ArrayRef<QualType> ParamTypes = Proto->getParamTypes();
14471     SmallVector<QualType, 8> ArgTypes;
14472     if (ParamTypes.empty() && Proto->isVariadic()) { // the special case
14473       ArgTypes.reserve(E->getNumArgs());
14474       for (unsigned i = 0, e = E->getNumArgs(); i != e; ++i) {
14475         Expr *Arg = E->getArg(i);
14476         QualType ArgType = Arg->getType();
14477         if (E->isLValue()) {
14478           ArgType = S.Context.getLValueReferenceType(ArgType);
14479         } else if (E->isXValue()) {
14480           ArgType = S.Context.getRValueReferenceType(ArgType);
14481         }
14482         ArgTypes.push_back(ArgType);
14483       }
14484       ParamTypes = ArgTypes;
14485     }
14486     DestType = S.Context.getFunctionType(DestType, ParamTypes,
14487                                          Proto->getExtProtoInfo());
14488   } else {
14489     DestType = S.Context.getFunctionNoProtoType(DestType,
14490                                                 FnType->getExtInfo());
14491   }
14492 
14493   // Rebuild the appropriate pointer-to-function type.
14494   switch (Kind) {
14495   case FK_MemberFunction:
14496     // Nothing to do.
14497     break;
14498 
14499   case FK_FunctionPointer:
14500     DestType = S.Context.getPointerType(DestType);
14501     break;
14502 
14503   case FK_BlockPointer:
14504     DestType = S.Context.getBlockPointerType(DestType);
14505     break;
14506   }
14507 
14508   // Finally, we can recurse.
14509   ExprResult CalleeResult = Visit(CalleeExpr);
14510   if (!CalleeResult.isUsable()) return ExprError();
14511   E->setCallee(CalleeResult.get());
14512 
14513   // Bind a temporary if necessary.
14514   return S.MaybeBindToTemporary(E);
14515 }
14516 
14517 ExprResult RebuildUnknownAnyExpr::VisitObjCMessageExpr(ObjCMessageExpr *E) {
14518   // Verify that this is a legal result type of a call.
14519   if (DestType->isArrayType() || DestType->isFunctionType()) {
14520     S.Diag(E->getExprLoc(), diag::err_func_returning_array_function)
14521       << DestType->isFunctionType() << DestType;
14522     return ExprError();
14523   }
14524 
14525   // Rewrite the method result type if available.
14526   if (ObjCMethodDecl *Method = E->getMethodDecl()) {
14527     assert(Method->getReturnType() == S.Context.UnknownAnyTy);
14528     Method->setReturnType(DestType);
14529   }
14530 
14531   // Change the type of the message.
14532   E->setType(DestType.getNonReferenceType());
14533   E->setValueKind(Expr::getValueKindForType(DestType));
14534 
14535   return S.MaybeBindToTemporary(E);
14536 }
14537 
14538 ExprResult RebuildUnknownAnyExpr::VisitImplicitCastExpr(ImplicitCastExpr *E) {
14539   // The only case we should ever see here is a function-to-pointer decay.
14540   if (E->getCastKind() == CK_FunctionToPointerDecay) {
14541     assert(E->getValueKind() == VK_RValue);
14542     assert(E->getObjectKind() == OK_Ordinary);
14543 
14544     E->setType(DestType);
14545 
14546     // Rebuild the sub-expression as the pointee (function) type.
14547     DestType = DestType->castAs<PointerType>()->getPointeeType();
14548 
14549     ExprResult Result = Visit(E->getSubExpr());
14550     if (!Result.isUsable()) return ExprError();
14551 
14552     E->setSubExpr(Result.get());
14553     return E;
14554   } else if (E->getCastKind() == CK_LValueToRValue) {
14555     assert(E->getValueKind() == VK_RValue);
14556     assert(E->getObjectKind() == OK_Ordinary);
14557 
14558     assert(isa<BlockPointerType>(E->getType()));
14559 
14560     E->setType(DestType);
14561 
14562     // The sub-expression has to be a lvalue reference, so rebuild it as such.
14563     DestType = S.Context.getLValueReferenceType(DestType);
14564 
14565     ExprResult Result = Visit(E->getSubExpr());
14566     if (!Result.isUsable()) return ExprError();
14567 
14568     E->setSubExpr(Result.get());
14569     return E;
14570   } else {
14571     llvm_unreachable("Unhandled cast type!");
14572   }
14573 }
14574 
14575 ExprResult RebuildUnknownAnyExpr::resolveDecl(Expr *E, ValueDecl *VD) {
14576   ExprValueKind ValueKind = VK_LValue;
14577   QualType Type = DestType;
14578 
14579   // We know how to make this work for certain kinds of decls:
14580 
14581   //  - functions
14582   if (FunctionDecl *FD = dyn_cast<FunctionDecl>(VD)) {
14583     if (const PointerType *Ptr = Type->getAs<PointerType>()) {
14584       DestType = Ptr->getPointeeType();
14585       ExprResult Result = resolveDecl(E, VD);
14586       if (Result.isInvalid()) return ExprError();
14587       return S.ImpCastExprToType(Result.get(), Type,
14588                                  CK_FunctionToPointerDecay, VK_RValue);
14589     }
14590 
14591     if (!Type->isFunctionType()) {
14592       S.Diag(E->getExprLoc(), diag::err_unknown_any_function)
14593         << VD << E->getSourceRange();
14594       return ExprError();
14595     }
14596     if (const FunctionProtoType *FT = Type->getAs<FunctionProtoType>()) {
14597       // We must match the FunctionDecl's type to the hack introduced in
14598       // RebuildUnknownAnyExpr::VisitCallExpr to vararg functions of unknown
14599       // type. See the lengthy commentary in that routine.
14600       QualType FDT = FD->getType();
14601       const FunctionType *FnType = FDT->castAs<FunctionType>();
14602       const FunctionProtoType *Proto = dyn_cast_or_null<FunctionProtoType>(FnType);
14603       DeclRefExpr *DRE = dyn_cast<DeclRefExpr>(E);
14604       if (DRE && Proto && Proto->getParamTypes().empty() && Proto->isVariadic()) {
14605         SourceLocation Loc = FD->getLocation();
14606         FunctionDecl *NewFD = FunctionDecl::Create(FD->getASTContext(),
14607                                       FD->getDeclContext(),
14608                                       Loc, Loc, FD->getNameInfo().getName(),
14609                                       DestType, FD->getTypeSourceInfo(),
14610                                       SC_None, false/*isInlineSpecified*/,
14611                                       FD->hasPrototype(),
14612                                       false/*isConstexprSpecified*/);
14613 
14614         if (FD->getQualifier())
14615           NewFD->setQualifierInfo(FD->getQualifierLoc());
14616 
14617         SmallVector<ParmVarDecl*, 16> Params;
14618         for (const auto &AI : FT->param_types()) {
14619           ParmVarDecl *Param =
14620             S.BuildParmVarDeclForTypedef(FD, Loc, AI);
14621           Param->setScopeInfo(0, Params.size());
14622           Params.push_back(Param);
14623         }
14624         NewFD->setParams(Params);
14625         DRE->setDecl(NewFD);
14626         VD = DRE->getDecl();
14627       }
14628     }
14629 
14630     if (CXXMethodDecl *MD = dyn_cast<CXXMethodDecl>(FD))
14631       if (MD->isInstance()) {
14632         ValueKind = VK_RValue;
14633         Type = S.Context.BoundMemberTy;
14634       }
14635 
14636     // Function references aren't l-values in C.
14637     if (!S.getLangOpts().CPlusPlus)
14638       ValueKind = VK_RValue;
14639 
14640   //  - variables
14641   } else if (isa<VarDecl>(VD)) {
14642     if (const ReferenceType *RefTy = Type->getAs<ReferenceType>()) {
14643       Type = RefTy->getPointeeType();
14644     } else if (Type->isFunctionType()) {
14645       S.Diag(E->getExprLoc(), diag::err_unknown_any_var_function_type)
14646         << VD << E->getSourceRange();
14647       return ExprError();
14648     }
14649 
14650   //  - nothing else
14651   } else {
14652     S.Diag(E->getExprLoc(), diag::err_unsupported_unknown_any_decl)
14653       << VD << E->getSourceRange();
14654     return ExprError();
14655   }
14656 
14657   // Modifying the declaration like this is friendly to IR-gen but
14658   // also really dangerous.
14659   VD->setType(DestType);
14660   E->setType(Type);
14661   E->setValueKind(ValueKind);
14662   return E;
14663 }
14664 
14665 /// Check a cast of an unknown-any type.  We intentionally only
14666 /// trigger this for C-style casts.
14667 ExprResult Sema::checkUnknownAnyCast(SourceRange TypeRange, QualType CastType,
14668                                      Expr *CastExpr, CastKind &CastKind,
14669                                      ExprValueKind &VK, CXXCastPath &Path) {
14670   // The type we're casting to must be either void or complete.
14671   if (!CastType->isVoidType() &&
14672       RequireCompleteType(TypeRange.getBegin(), CastType,
14673                           diag::err_typecheck_cast_to_incomplete))
14674     return ExprError();
14675 
14676   // Rewrite the casted expression from scratch.
14677   ExprResult result = RebuildUnknownAnyExpr(*this, CastType).Visit(CastExpr);
14678   if (!result.isUsable()) return ExprError();
14679 
14680   CastExpr = result.get();
14681   VK = CastExpr->getValueKind();
14682   CastKind = CK_NoOp;
14683 
14684   return CastExpr;
14685 }
14686 
14687 ExprResult Sema::forceUnknownAnyToType(Expr *E, QualType ToType) {
14688   return RebuildUnknownAnyExpr(*this, ToType).Visit(E);
14689 }
14690 
14691 ExprResult Sema::checkUnknownAnyArg(SourceLocation callLoc,
14692                                     Expr *arg, QualType &paramType) {
14693   // If the syntactic form of the argument is not an explicit cast of
14694   // any sort, just do default argument promotion.
14695   ExplicitCastExpr *castArg = dyn_cast<ExplicitCastExpr>(arg->IgnoreParens());
14696   if (!castArg) {
14697     ExprResult result = DefaultArgumentPromotion(arg);
14698     if (result.isInvalid()) return ExprError();
14699     paramType = result.get()->getType();
14700     return result;
14701   }
14702 
14703   // Otherwise, use the type that was written in the explicit cast.
14704   assert(!arg->hasPlaceholderType());
14705   paramType = castArg->getTypeAsWritten();
14706 
14707   // Copy-initialize a parameter of that type.
14708   InitializedEntity entity =
14709     InitializedEntity::InitializeParameter(Context, paramType,
14710                                            /*consumed*/ false);
14711   return PerformCopyInitialization(entity, callLoc, arg);
14712 }
14713 
14714 static ExprResult diagnoseUnknownAnyExpr(Sema &S, Expr *E) {
14715   Expr *orig = E;
14716   unsigned diagID = diag::err_uncasted_use_of_unknown_any;
14717   while (true) {
14718     E = E->IgnoreParenImpCasts();
14719     if (CallExpr *call = dyn_cast<CallExpr>(E)) {
14720       E = call->getCallee();
14721       diagID = diag::err_uncasted_call_of_unknown_any;
14722     } else {
14723       break;
14724     }
14725   }
14726 
14727   SourceLocation loc;
14728   NamedDecl *d;
14729   if (DeclRefExpr *ref = dyn_cast<DeclRefExpr>(E)) {
14730     loc = ref->getLocation();
14731     d = ref->getDecl();
14732   } else if (MemberExpr *mem = dyn_cast<MemberExpr>(E)) {
14733     loc = mem->getMemberLoc();
14734     d = mem->getMemberDecl();
14735   } else if (ObjCMessageExpr *msg = dyn_cast<ObjCMessageExpr>(E)) {
14736     diagID = diag::err_uncasted_call_of_unknown_any;
14737     loc = msg->getSelectorStartLoc();
14738     d = msg->getMethodDecl();
14739     if (!d) {
14740       S.Diag(loc, diag::err_uncasted_send_to_unknown_any_method)
14741         << static_cast<unsigned>(msg->isClassMessage()) << msg->getSelector()
14742         << orig->getSourceRange();
14743       return ExprError();
14744     }
14745   } else {
14746     S.Diag(E->getExprLoc(), diag::err_unsupported_unknown_any_expr)
14747       << E->getSourceRange();
14748     return ExprError();
14749   }
14750 
14751   S.Diag(loc, diagID) << d << orig->getSourceRange();
14752 
14753   // Never recoverable.
14754   return ExprError();
14755 }
14756 
14757 /// Check for operands with placeholder types and complain if found.
14758 /// Returns true if there was an error and no recovery was possible.
14759 ExprResult Sema::CheckPlaceholderExpr(Expr *E) {
14760   if (!getLangOpts().CPlusPlus) {
14761     // C cannot handle TypoExpr nodes on either side of a binop because it
14762     // doesn't handle dependent types properly, so make sure any TypoExprs have
14763     // been dealt with before checking the operands.
14764     ExprResult Result = CorrectDelayedTyposInExpr(E);
14765     if (!Result.isUsable()) return ExprError();
14766     E = Result.get();
14767   }
14768 
14769   const BuiltinType *placeholderType = E->getType()->getAsPlaceholderType();
14770   if (!placeholderType) return E;
14771 
14772   switch (placeholderType->getKind()) {
14773 
14774   // Overloaded expressions.
14775   case BuiltinType::Overload: {
14776     // Try to resolve a single function template specialization.
14777     // This is obligatory.
14778     ExprResult result = E;
14779     if (ResolveAndFixSingleFunctionTemplateSpecialization(result, false)) {
14780       return result;
14781 
14782     // If that failed, try to recover with a call.
14783     } else {
14784       tryToRecoverWithCall(result, PDiag(diag::err_ovl_unresolvable),
14785                            /*complain*/ true);
14786       return result;
14787     }
14788   }
14789 
14790   // Bound member functions.
14791   case BuiltinType::BoundMember: {
14792     ExprResult result = E;
14793     const Expr *BME = E->IgnoreParens();
14794     PartialDiagnostic PD = PDiag(diag::err_bound_member_function);
14795     // Try to give a nicer diagnostic if it is a bound member that we recognize.
14796     if (isa<CXXPseudoDestructorExpr>(BME)) {
14797       PD = PDiag(diag::err_dtor_expr_without_call) << /*pseudo-destructor*/ 1;
14798     } else if (const auto *ME = dyn_cast<MemberExpr>(BME)) {
14799       if (ME->getMemberNameInfo().getName().getNameKind() ==
14800           DeclarationName::CXXDestructorName)
14801         PD = PDiag(diag::err_dtor_expr_without_call) << /*destructor*/ 0;
14802     }
14803     tryToRecoverWithCall(result, PD,
14804                          /*complain*/ true);
14805     return result;
14806   }
14807 
14808   // ARC unbridged casts.
14809   case BuiltinType::ARCUnbridgedCast: {
14810     Expr *realCast = stripARCUnbridgedCast(E);
14811     diagnoseARCUnbridgedCast(realCast);
14812     return realCast;
14813   }
14814 
14815   // Expressions of unknown type.
14816   case BuiltinType::UnknownAny:
14817     return diagnoseUnknownAnyExpr(*this, E);
14818 
14819   // Pseudo-objects.
14820   case BuiltinType::PseudoObject:
14821     return checkPseudoObjectRValue(E);
14822 
14823   case BuiltinType::BuiltinFn: {
14824     // Accept __noop without parens by implicitly converting it to a call expr.
14825     auto *DRE = dyn_cast<DeclRefExpr>(E->IgnoreParenImpCasts());
14826     if (DRE) {
14827       auto *FD = cast<FunctionDecl>(DRE->getDecl());
14828       if (FD->getBuiltinID() == Builtin::BI__noop) {
14829         E = ImpCastExprToType(E, Context.getPointerType(FD->getType()),
14830                               CK_BuiltinFnToFnPtr).get();
14831         return new (Context) CallExpr(Context, E, None, Context.IntTy,
14832                                       VK_RValue, SourceLocation());
14833       }
14834     }
14835 
14836     Diag(E->getLocStart(), diag::err_builtin_fn_use);
14837     return ExprError();
14838   }
14839 
14840   // Expressions of unknown type.
14841   case BuiltinType::OMPArraySection:
14842     Diag(E->getLocStart(), diag::err_omp_array_section_use);
14843     return ExprError();
14844 
14845   // Everything else should be impossible.
14846 #define IMAGE_TYPE(ImgType, Id, SingletonId, Access, Suffix) \
14847   case BuiltinType::Id:
14848 #include "clang/AST/OpenCLImageTypes.def"
14849 #define BUILTIN_TYPE(Id, SingletonId) case BuiltinType::Id:
14850 #define PLACEHOLDER_TYPE(Id, SingletonId)
14851 #include "clang/AST/BuiltinTypes.def"
14852     break;
14853   }
14854 
14855   llvm_unreachable("invalid placeholder type!");
14856 }
14857 
14858 bool Sema::CheckCaseExpression(Expr *E) {
14859   if (E->isTypeDependent())
14860     return true;
14861   if (E->isValueDependent() || E->isIntegerConstantExpr(Context))
14862     return E->getType()->isIntegralOrEnumerationType();
14863   return false;
14864 }
14865 
14866 /// ActOnObjCBoolLiteral - Parse {__objc_yes,__objc_no} literals.
14867 ExprResult
14868 Sema::ActOnObjCBoolLiteral(SourceLocation OpLoc, tok::TokenKind Kind) {
14869   assert((Kind == tok::kw___objc_yes || Kind == tok::kw___objc_no) &&
14870          "Unknown Objective-C Boolean value!");
14871   QualType BoolT = Context.ObjCBuiltinBoolTy;
14872   if (!Context.getBOOLDecl()) {
14873     LookupResult Result(*this, &Context.Idents.get("BOOL"), OpLoc,
14874                         Sema::LookupOrdinaryName);
14875     if (LookupName(Result, getCurScope()) && Result.isSingleResult()) {
14876       NamedDecl *ND = Result.getFoundDecl();
14877       if (TypedefDecl *TD = dyn_cast<TypedefDecl>(ND))
14878         Context.setBOOLDecl(TD);
14879     }
14880   }
14881   if (Context.getBOOLDecl())
14882     BoolT = Context.getBOOLType();
14883   return new (Context)
14884       ObjCBoolLiteralExpr(Kind == tok::kw___objc_yes, BoolT, OpLoc);
14885 }
14886