1 //===- InputSection.cpp ---------------------------------------------------===//
2 //
3 // Part of the LLVM Project, under the Apache License v2.0 with LLVM Exceptions.
4 // See https://llvm.org/LICENSE.txt for license information.
5 // SPDX-License-Identifier: Apache-2.0 WITH LLVM-exception
6 //
7 //===----------------------------------------------------------------------===//
8 
9 #include "InputSection.h"
10 #include "Config.h"
11 #include "InputFiles.h"
12 #include "OutputSections.h"
13 #include "Relocations.h"
14 #include "SymbolTable.h"
15 #include "Symbols.h"
16 #include "SyntheticSections.h"
17 #include "Target.h"
18 #include "lld/Common/CommonLinkerContext.h"
19 #include "llvm/Support/Compiler.h"
20 #include "llvm/Support/Compression.h"
21 #include "llvm/Support/Endian.h"
22 #include "llvm/Support/xxhash.h"
23 #include <algorithm>
24 #include <mutex>
25 #include <vector>
26 
27 using namespace llvm;
28 using namespace llvm::ELF;
29 using namespace llvm::object;
30 using namespace llvm::support;
31 using namespace llvm::support::endian;
32 using namespace llvm::sys;
33 using namespace lld;
34 using namespace lld::elf;
35 
36 SmallVector<InputSectionBase *, 0> elf::inputSections;
37 DenseSet<std::pair<const Symbol *, uint64_t>> elf::ppc64noTocRelax;
38 
39 // Returns a string to construct an error message.
40 std::string lld::toString(const InputSectionBase *sec) {
41   return (toString(sec->file) + ":(" + sec->name + ")").str();
42 }
43 
44 template <class ELFT>
45 static ArrayRef<uint8_t> getSectionContents(ObjFile<ELFT> &file,
46                                             const typename ELFT::Shdr &hdr) {
47   if (hdr.sh_type == SHT_NOBITS)
48     return makeArrayRef<uint8_t>(nullptr, hdr.sh_size);
49   return check(file.getObj().getSectionContents(hdr));
50 }
51 
52 InputSectionBase::InputSectionBase(InputFile *file, uint64_t flags,
53                                    uint32_t type, uint64_t entsize,
54                                    uint32_t link, uint32_t info,
55                                    uint32_t alignment, ArrayRef<uint8_t> data,
56                                    StringRef name, Kind sectionKind)
57     : SectionBase(sectionKind, name, flags, entsize, alignment, type, info,
58                   link),
59       file(file), rawData(data) {
60   // In order to reduce memory allocation, we assume that mergeable
61   // sections are smaller than 4 GiB, which is not an unreasonable
62   // assumption as of 2017.
63   if (sectionKind == SectionBase::Merge && rawData.size() > UINT32_MAX)
64     error(toString(this) + ": section too large");
65 
66   // The ELF spec states that a value of 0 means the section has
67   // no alignment constraints.
68   uint32_t v = std::max<uint32_t>(alignment, 1);
69   if (!isPowerOf2_64(v))
70     fatal(toString(this) + ": sh_addralign is not a power of 2");
71   this->alignment = v;
72 
73   // In ELF, each section can be compressed by zlib, and if compressed,
74   // section name may be mangled by appending "z" (e.g. ".zdebug_info").
75   // If that's the case, demangle section name so that we can handle a
76   // section as if it weren't compressed.
77   if ((flags & SHF_COMPRESSED) || name.startswith(".zdebug")) {
78     if (!zlib::isAvailable())
79       error(toString(file) + ": contains a compressed section, " +
80             "but zlib is not available");
81     invokeELFT(parseCompressedHeader);
82   }
83 }
84 
85 // Drop SHF_GROUP bit unless we are producing a re-linkable object file.
86 // SHF_GROUP is a marker that a section belongs to some comdat group.
87 // That flag doesn't make sense in an executable.
88 static uint64_t getFlags(uint64_t flags) {
89   flags &= ~(uint64_t)SHF_INFO_LINK;
90   if (!config->relocatable)
91     flags &= ~(uint64_t)SHF_GROUP;
92   return flags;
93 }
94 
95 template <class ELFT>
96 InputSectionBase::InputSectionBase(ObjFile<ELFT> &file,
97                                    const typename ELFT::Shdr &hdr,
98                                    StringRef name, Kind sectionKind)
99     : InputSectionBase(&file, getFlags(hdr.sh_flags), hdr.sh_type,
100                        hdr.sh_entsize, hdr.sh_link, hdr.sh_info,
101                        hdr.sh_addralign, getSectionContents(file, hdr), name,
102                        sectionKind) {
103   // We reject object files having insanely large alignments even though
104   // they are allowed by the spec. I think 4GB is a reasonable limitation.
105   // We might want to relax this in the future.
106   if (hdr.sh_addralign > UINT32_MAX)
107     fatal(toString(&file) + ": section sh_addralign is too large");
108 }
109 
110 size_t InputSectionBase::getSize() const {
111   if (auto *s = dyn_cast<SyntheticSection>(this))
112     return s->getSize();
113   if (uncompressedSize >= 0)
114     return uncompressedSize;
115   return rawData.size() - bytesDropped;
116 }
117 
118 void InputSectionBase::uncompress() const {
119   size_t size = uncompressedSize;
120   char *uncompressedBuf;
121   {
122     static std::mutex mu;
123     std::lock_guard<std::mutex> lock(mu);
124     uncompressedBuf = bAlloc().Allocate<char>(size);
125   }
126 
127   if (Error e = zlib::uncompress(toStringRef(rawData), uncompressedBuf, size))
128     fatal(toString(this) +
129           ": uncompress failed: " + llvm::toString(std::move(e)));
130   rawData = makeArrayRef((uint8_t *)uncompressedBuf, size);
131   uncompressedSize = -1;
132 }
133 
134 template <class ELFT> RelsOrRelas<ELFT> InputSectionBase::relsOrRelas() const {
135   if (relSecIdx == 0)
136     return {};
137   RelsOrRelas<ELFT> ret;
138   typename ELFT::Shdr shdr =
139       cast<ELFFileBase>(file)->getELFShdrs<ELFT>()[relSecIdx];
140   if (shdr.sh_type == SHT_REL) {
141     ret.rels = makeArrayRef(reinterpret_cast<const typename ELFT::Rel *>(
142                                 file->mb.getBufferStart() + shdr.sh_offset),
143                             shdr.sh_size / sizeof(typename ELFT::Rel));
144   } else {
145     assert(shdr.sh_type == SHT_RELA);
146     ret.relas = makeArrayRef(reinterpret_cast<const typename ELFT::Rela *>(
147                                  file->mb.getBufferStart() + shdr.sh_offset),
148                              shdr.sh_size / sizeof(typename ELFT::Rela));
149   }
150   return ret;
151 }
152 
153 uint64_t SectionBase::getOffset(uint64_t offset) const {
154   switch (kind()) {
155   case Output: {
156     auto *os = cast<OutputSection>(this);
157     // For output sections we treat offset -1 as the end of the section.
158     return offset == uint64_t(-1) ? os->size : offset;
159   }
160   case Regular:
161   case Synthetic:
162     return cast<InputSection>(this)->outSecOff + offset;
163   case EHFrame:
164     // The file crtbeginT.o has relocations pointing to the start of an empty
165     // .eh_frame that is known to be the first in the link. It does that to
166     // identify the start of the output .eh_frame.
167     return offset;
168   case Merge:
169     const MergeInputSection *ms = cast<MergeInputSection>(this);
170     if (InputSection *isec = ms->getParent())
171       return isec->outSecOff + ms->getParentOffset(offset);
172     return ms->getParentOffset(offset);
173   }
174   llvm_unreachable("invalid section kind");
175 }
176 
177 uint64_t SectionBase::getVA(uint64_t offset) const {
178   const OutputSection *out = getOutputSection();
179   return (out ? out->addr : 0) + getOffset(offset);
180 }
181 
182 OutputSection *SectionBase::getOutputSection() {
183   InputSection *sec;
184   if (auto *isec = dyn_cast<InputSection>(this))
185     sec = isec;
186   else if (auto *ms = dyn_cast<MergeInputSection>(this))
187     sec = ms->getParent();
188   else if (auto *eh = dyn_cast<EhInputSection>(this))
189     sec = eh->getParent();
190   else
191     return cast<OutputSection>(this);
192   return sec ? sec->getParent() : nullptr;
193 }
194 
195 // When a section is compressed, `rawData` consists with a header followed
196 // by zlib-compressed data. This function parses a header to initialize
197 // `uncompressedSize` member and remove the header from `rawData`.
198 template <typename ELFT> void InputSectionBase::parseCompressedHeader() {
199   // Old-style header
200   if (!(flags & SHF_COMPRESSED)) {
201     assert(name.startswith(".zdebug"));
202     if (!toStringRef(rawData).startswith("ZLIB")) {
203       error(toString(this) + ": corrupted compressed section header");
204       return;
205     }
206     rawData = rawData.slice(4);
207 
208     if (rawData.size() < 8) {
209       error(toString(this) + ": corrupted compressed section header");
210       return;
211     }
212 
213     uncompressedSize = read64be(rawData.data());
214     rawData = rawData.slice(8);
215 
216     // Restore the original section name.
217     // (e.g. ".zdebug_info" -> ".debug_info")
218     name = saver().save("." + name.substr(2));
219     return;
220   }
221 
222   flags &= ~(uint64_t)SHF_COMPRESSED;
223 
224   // New-style header
225   if (rawData.size() < sizeof(typename ELFT::Chdr)) {
226     error(toString(this) + ": corrupted compressed section");
227     return;
228   }
229 
230   auto *hdr = reinterpret_cast<const typename ELFT::Chdr *>(rawData.data());
231   if (hdr->ch_type != ELFCOMPRESS_ZLIB) {
232     error(toString(this) + ": unsupported compression type");
233     return;
234   }
235 
236   uncompressedSize = hdr->ch_size;
237   alignment = std::max<uint32_t>(hdr->ch_addralign, 1);
238   rawData = rawData.slice(sizeof(*hdr));
239 }
240 
241 InputSection *InputSectionBase::getLinkOrderDep() const {
242   assert(flags & SHF_LINK_ORDER);
243   if (!link)
244     return nullptr;
245   return cast<InputSection>(file->getSections()[link]);
246 }
247 
248 // Find a function symbol that encloses a given location.
249 Defined *InputSectionBase::getEnclosingFunction(uint64_t offset) {
250   for (Symbol *b : file->getSymbols())
251     if (Defined *d = dyn_cast<Defined>(b))
252       if (d->section == this && d->type == STT_FUNC && d->value <= offset &&
253           offset < d->value + d->size)
254         return d;
255   return nullptr;
256 }
257 
258 // Returns an object file location string. Used to construct an error message.
259 std::string InputSectionBase::getLocation(uint64_t offset) {
260   std::string secAndOffset =
261       (name + "+0x" + Twine::utohexstr(offset) + ")").str();
262 
263   // We don't have file for synthetic sections.
264   if (file == nullptr)
265     return (config->outputFile + ":(" + secAndOffset).str();
266 
267   std::string filename = toString(file);
268   if (Defined *d = getEnclosingFunction(offset))
269     return filename + ":(function " + toString(*d) + ": " + secAndOffset;
270 
271   return filename + ":(" + secAndOffset;
272 }
273 
274 // This function is intended to be used for constructing an error message.
275 // The returned message looks like this:
276 //
277 //   foo.c:42 (/home/alice/possibly/very/long/path/foo.c:42)
278 //
279 //  Returns an empty string if there's no way to get line info.
280 std::string InputSectionBase::getSrcMsg(const Symbol &sym, uint64_t offset) {
281   return file->getSrcMsg(sym, *this, offset);
282 }
283 
284 // Returns a filename string along with an optional section name. This
285 // function is intended to be used for constructing an error
286 // message. The returned message looks like this:
287 //
288 //   path/to/foo.o:(function bar)
289 //
290 // or
291 //
292 //   path/to/foo.o:(function bar) in archive path/to/bar.a
293 std::string InputSectionBase::getObjMsg(uint64_t off) {
294   std::string filename = std::string(file->getName());
295 
296   std::string archive;
297   if (!file->archiveName.empty())
298     archive = (" in archive " + file->archiveName).str();
299 
300   // Find a symbol that encloses a given location.
301   for (Symbol *b : file->getSymbols())
302     if (auto *d = dyn_cast<Defined>(b))
303       if (d->section == this && d->value <= off && off < d->value + d->size)
304         return filename + ":(" + toString(*d) + ")" + archive;
305 
306   // If there's no symbol, print out the offset in the section.
307   return (filename + ":(" + name + "+0x" + utohexstr(off) + ")" + archive)
308       .str();
309 }
310 
311 InputSection InputSection::discarded(nullptr, 0, 0, 0, ArrayRef<uint8_t>(), "");
312 
313 InputSection::InputSection(InputFile *f, uint64_t flags, uint32_t type,
314                            uint32_t alignment, ArrayRef<uint8_t> data,
315                            StringRef name, Kind k)
316     : InputSectionBase(f, flags, type,
317                        /*Entsize*/ 0, /*Link*/ 0, /*Info*/ 0, alignment, data,
318                        name, k) {}
319 
320 template <class ELFT>
321 InputSection::InputSection(ObjFile<ELFT> &f, const typename ELFT::Shdr &header,
322                            StringRef name)
323     : InputSectionBase(f, header, name, InputSectionBase::Regular) {}
324 
325 bool InputSection::classof(const SectionBase *s) {
326   return s->kind() == SectionBase::Regular ||
327          s->kind() == SectionBase::Synthetic;
328 }
329 
330 OutputSection *InputSection::getParent() const {
331   return cast_or_null<OutputSection>(parent);
332 }
333 
334 // Copy SHT_GROUP section contents. Used only for the -r option.
335 template <class ELFT> void InputSection::copyShtGroup(uint8_t *buf) {
336   // ELFT::Word is the 32-bit integral type in the target endianness.
337   using u32 = typename ELFT::Word;
338   ArrayRef<u32> from = getDataAs<u32>();
339   auto *to = reinterpret_cast<u32 *>(buf);
340 
341   // The first entry is not a section number but a flag.
342   *to++ = from[0];
343 
344   // Adjust section numbers because section numbers in an input object files are
345   // different in the output. We also need to handle combined or discarded
346   // members.
347   ArrayRef<InputSectionBase *> sections = file->getSections();
348   DenseSet<uint32_t> seen;
349   for (uint32_t idx : from.slice(1)) {
350     OutputSection *osec = sections[idx]->getOutputSection();
351     if (osec && seen.insert(osec->sectionIndex).second)
352       *to++ = osec->sectionIndex;
353   }
354 }
355 
356 InputSectionBase *InputSection::getRelocatedSection() const {
357   if (!file || (type != SHT_RELA && type != SHT_REL))
358     return nullptr;
359   ArrayRef<InputSectionBase *> sections = file->getSections();
360   return sections[info];
361 }
362 
363 // This is used for -r and --emit-relocs. We can't use memcpy to copy
364 // relocations because we need to update symbol table offset and section index
365 // for each relocation. So we copy relocations one by one.
366 template <class ELFT, class RelTy>
367 void InputSection::copyRelocations(uint8_t *buf, ArrayRef<RelTy> rels) {
368   const TargetInfo &target = *elf::target;
369   InputSectionBase *sec = getRelocatedSection();
370   (void)sec->data(); // uncompress if needed
371 
372   for (const RelTy &rel : rels) {
373     RelType type = rel.getType(config->isMips64EL);
374     const ObjFile<ELFT> *file = getFile<ELFT>();
375     Symbol &sym = file->getRelocTargetSym(rel);
376 
377     auto *p = reinterpret_cast<typename ELFT::Rela *>(buf);
378     buf += sizeof(RelTy);
379 
380     if (RelTy::IsRela)
381       p->r_addend = getAddend<ELFT>(rel);
382 
383     // Output section VA is zero for -r, so r_offset is an offset within the
384     // section, but for --emit-relocs it is a virtual address.
385     p->r_offset = sec->getVA(rel.r_offset);
386     p->setSymbolAndType(in.symTab->getSymbolIndex(&sym), type,
387                         config->isMips64EL);
388 
389     if (sym.type == STT_SECTION) {
390       // We combine multiple section symbols into only one per
391       // section. This means we have to update the addend. That is
392       // trivial for Elf_Rela, but for Elf_Rel we have to write to the
393       // section data. We do that by adding to the Relocation vector.
394 
395       // .eh_frame is horribly special and can reference discarded sections. To
396       // avoid having to parse and recreate .eh_frame, we just replace any
397       // relocation in it pointing to discarded sections with R_*_NONE, which
398       // hopefully creates a frame that is ignored at runtime. Also, don't warn
399       // on .gcc_except_table and debug sections.
400       //
401       // See the comment in maybeReportUndefined for PPC32 .got2 and PPC64 .toc
402       auto *d = dyn_cast<Defined>(&sym);
403       if (!d) {
404         if (!isDebugSection(*sec) && sec->name != ".eh_frame" &&
405             sec->name != ".gcc_except_table" && sec->name != ".got2" &&
406             sec->name != ".toc") {
407           uint32_t secIdx = cast<Undefined>(sym).discardedSecIdx;
408           Elf_Shdr_Impl<ELFT> sec = file->template getELFShdrs<ELFT>()[secIdx];
409           warn("relocation refers to a discarded section: " +
410                CHECK(file->getObj().getSectionName(sec), file) +
411                "\n>>> referenced by " + getObjMsg(p->r_offset));
412         }
413         p->setSymbolAndType(0, 0, false);
414         continue;
415       }
416       SectionBase *section = d->section;
417       if (!section->isLive()) {
418         p->setSymbolAndType(0, 0, false);
419         continue;
420       }
421 
422       int64_t addend = getAddend<ELFT>(rel);
423       const uint8_t *bufLoc = sec->rawData.begin() + rel.r_offset;
424       if (!RelTy::IsRela)
425         addend = target.getImplicitAddend(bufLoc, type);
426 
427       if (config->emachine == EM_MIPS &&
428           target.getRelExpr(type, sym, bufLoc) == R_MIPS_GOTREL) {
429         // Some MIPS relocations depend on "gp" value. By default,
430         // this value has 0x7ff0 offset from a .got section. But
431         // relocatable files produced by a compiler or a linker
432         // might redefine this default value and we must use it
433         // for a calculation of the relocation result. When we
434         // generate EXE or DSO it's trivial. Generating a relocatable
435         // output is more difficult case because the linker does
436         // not calculate relocations in this mode and loses
437         // individual "gp" values used by each input object file.
438         // As a workaround we add the "gp" value to the relocation
439         // addend and save it back to the file.
440         addend += sec->getFile<ELFT>()->mipsGp0;
441       }
442 
443       if (RelTy::IsRela)
444         p->r_addend = sym.getVA(addend) - section->getOutputSection()->addr;
445       else if (config->relocatable && type != target.noneRel)
446         sec->relocations.push_back({R_ABS, type, rel.r_offset, addend, &sym});
447     } else if (config->emachine == EM_PPC && type == R_PPC_PLTREL24 &&
448                p->r_addend >= 0x8000 && sec->file->ppc32Got2) {
449       // Similar to R_MIPS_GPREL{16,32}. If the addend of R_PPC_PLTREL24
450       // indicates that r30 is relative to the input section .got2
451       // (r_addend>=0x8000), after linking, r30 should be relative to the output
452       // section .got2 . To compensate for the shift, adjust r_addend by
453       // ppc32Got->outSecOff.
454       p->r_addend += sec->file->ppc32Got2->outSecOff;
455     }
456   }
457 }
458 
459 // The ARM and AArch64 ABI handle pc-relative relocations to undefined weak
460 // references specially. The general rule is that the value of the symbol in
461 // this context is the address of the place P. A further special case is that
462 // branch relocations to an undefined weak reference resolve to the next
463 // instruction.
464 static uint32_t getARMUndefinedRelativeWeakVA(RelType type, uint32_t a,
465                                               uint32_t p) {
466   switch (type) {
467   // Unresolved branch relocations to weak references resolve to next
468   // instruction, this will be either 2 or 4 bytes on from P.
469   case R_ARM_THM_JUMP8:
470   case R_ARM_THM_JUMP11:
471     return p + 2 + a;
472   case R_ARM_CALL:
473   case R_ARM_JUMP24:
474   case R_ARM_PC24:
475   case R_ARM_PLT32:
476   case R_ARM_PREL31:
477   case R_ARM_THM_JUMP19:
478   case R_ARM_THM_JUMP24:
479     return p + 4 + a;
480   case R_ARM_THM_CALL:
481     // We don't want an interworking BLX to ARM
482     return p + 5 + a;
483   // Unresolved non branch pc-relative relocations
484   // R_ARM_TARGET2 which can be resolved relatively is not present as it never
485   // targets a weak-reference.
486   case R_ARM_MOVW_PREL_NC:
487   case R_ARM_MOVT_PREL:
488   case R_ARM_REL32:
489   case R_ARM_THM_ALU_PREL_11_0:
490   case R_ARM_THM_MOVW_PREL_NC:
491   case R_ARM_THM_MOVT_PREL:
492   case R_ARM_THM_PC12:
493     return p + a;
494   // p + a is unrepresentable as negative immediates can't be encoded.
495   case R_ARM_THM_PC8:
496     return p;
497   }
498   llvm_unreachable("ARM pc-relative relocation expected\n");
499 }
500 
501 // The comment above getARMUndefinedRelativeWeakVA applies to this function.
502 static uint64_t getAArch64UndefinedRelativeWeakVA(uint64_t type, uint64_t p) {
503   switch (type) {
504   // Unresolved branch relocations to weak references resolve to next
505   // instruction, this is 4 bytes on from P.
506   case R_AARCH64_CALL26:
507   case R_AARCH64_CONDBR19:
508   case R_AARCH64_JUMP26:
509   case R_AARCH64_TSTBR14:
510     return p + 4;
511   // Unresolved non branch pc-relative relocations
512   case R_AARCH64_PREL16:
513   case R_AARCH64_PREL32:
514   case R_AARCH64_PREL64:
515   case R_AARCH64_ADR_PREL_LO21:
516   case R_AARCH64_LD_PREL_LO19:
517   case R_AARCH64_PLT32:
518     return p;
519   }
520   llvm_unreachable("AArch64 pc-relative relocation expected\n");
521 }
522 
523 static uint64_t getRISCVUndefinedRelativeWeakVA(uint64_t type, uint64_t p) {
524   switch (type) {
525   case R_RISCV_BRANCH:
526   case R_RISCV_JAL:
527   case R_RISCV_CALL:
528   case R_RISCV_CALL_PLT:
529   case R_RISCV_RVC_BRANCH:
530   case R_RISCV_RVC_JUMP:
531     return p;
532   default:
533     return 0;
534   }
535 }
536 
537 // ARM SBREL relocations are of the form S + A - B where B is the static base
538 // The ARM ABI defines base to be "addressing origin of the output segment
539 // defining the symbol S". We defined the "addressing origin"/static base to be
540 // the base of the PT_LOAD segment containing the Sym.
541 // The procedure call standard only defines a Read Write Position Independent
542 // RWPI variant so in practice we should expect the static base to be the base
543 // of the RW segment.
544 static uint64_t getARMStaticBase(const Symbol &sym) {
545   OutputSection *os = sym.getOutputSection();
546   if (!os || !os->ptLoad || !os->ptLoad->firstSec)
547     fatal("SBREL relocation to " + sym.getName() + " without static base");
548   return os->ptLoad->firstSec->addr;
549 }
550 
551 // For R_RISCV_PC_INDIRECT (R_RISCV_PCREL_LO12_{I,S}), the symbol actually
552 // points the corresponding R_RISCV_PCREL_HI20 relocation, and the target VA
553 // is calculated using PCREL_HI20's symbol.
554 //
555 // This function returns the R_RISCV_PCREL_HI20 relocation from
556 // R_RISCV_PCREL_LO12's symbol and addend.
557 static Relocation *getRISCVPCRelHi20(const Symbol *sym, uint64_t addend) {
558   const Defined *d = cast<Defined>(sym);
559   if (!d->section) {
560     error("R_RISCV_PCREL_LO12 relocation points to an absolute symbol: " +
561           sym->getName());
562     return nullptr;
563   }
564   InputSection *isec = cast<InputSection>(d->section);
565 
566   if (addend != 0)
567     warn("non-zero addend in R_RISCV_PCREL_LO12 relocation to " +
568          isec->getObjMsg(d->value) + " is ignored");
569 
570   // Relocations are sorted by offset, so we can use std::equal_range to do
571   // binary search.
572   Relocation r;
573   r.offset = d->value;
574   auto range =
575       std::equal_range(isec->relocations.begin(), isec->relocations.end(), r,
576                        [](const Relocation &lhs, const Relocation &rhs) {
577                          return lhs.offset < rhs.offset;
578                        });
579 
580   for (auto it = range.first; it != range.second; ++it)
581     if (it->type == R_RISCV_PCREL_HI20 || it->type == R_RISCV_GOT_HI20 ||
582         it->type == R_RISCV_TLS_GD_HI20 || it->type == R_RISCV_TLS_GOT_HI20)
583       return &*it;
584 
585   error("R_RISCV_PCREL_LO12 relocation points to " + isec->getObjMsg(d->value) +
586         " without an associated R_RISCV_PCREL_HI20 relocation");
587   return nullptr;
588 }
589 
590 // A TLS symbol's virtual address is relative to the TLS segment. Add a
591 // target-specific adjustment to produce a thread-pointer-relative offset.
592 static int64_t getTlsTpOffset(const Symbol &s) {
593   // On targets that support TLSDESC, _TLS_MODULE_BASE_@tpoff = 0.
594   if (&s == ElfSym::tlsModuleBase)
595     return 0;
596 
597   // There are 2 TLS layouts. Among targets we support, x86 uses TLS Variant 2
598   // while most others use Variant 1. At run time TP will be aligned to p_align.
599 
600   // Variant 1. TP will be followed by an optional gap (which is the size of 2
601   // pointers on ARM/AArch64, 0 on other targets), followed by alignment
602   // padding, then the static TLS blocks. The alignment padding is added so that
603   // (TP + gap + padding) is congruent to p_vaddr modulo p_align.
604   //
605   // Variant 2. Static TLS blocks, followed by alignment padding are placed
606   // before TP. The alignment padding is added so that (TP - padding -
607   // p_memsz) is congruent to p_vaddr modulo p_align.
608   PhdrEntry *tls = Out::tlsPhdr;
609   switch (config->emachine) {
610     // Variant 1.
611   case EM_ARM:
612   case EM_AARCH64:
613     return s.getVA(0) + config->wordsize * 2 +
614            ((tls->p_vaddr - config->wordsize * 2) & (tls->p_align - 1));
615   case EM_MIPS:
616   case EM_PPC:
617   case EM_PPC64:
618     // Adjusted Variant 1. TP is placed with a displacement of 0x7000, which is
619     // to allow a signed 16-bit offset to reach 0x1000 of TCB/thread-library
620     // data and 0xf000 of the program's TLS segment.
621     return s.getVA(0) + (tls->p_vaddr & (tls->p_align - 1)) - 0x7000;
622   case EM_RISCV:
623     return s.getVA(0) + (tls->p_vaddr & (tls->p_align - 1));
624 
625     // Variant 2.
626   case EM_HEXAGON:
627   case EM_SPARCV9:
628   case EM_386:
629   case EM_X86_64:
630     return s.getVA(0) - tls->p_memsz -
631            ((-tls->p_vaddr - tls->p_memsz) & (tls->p_align - 1));
632   default:
633     llvm_unreachable("unhandled Config->EMachine");
634   }
635 }
636 
637 uint64_t InputSectionBase::getRelocTargetVA(const InputFile *file, RelType type,
638                                             int64_t a, uint64_t p,
639                                             const Symbol &sym, RelExpr expr) {
640   switch (expr) {
641   case R_ABS:
642   case R_DTPREL:
643   case R_RELAX_TLS_LD_TO_LE_ABS:
644   case R_RELAX_GOT_PC_NOPIC:
645   case R_RISCV_ADD:
646     return sym.getVA(a);
647   case R_ADDEND:
648     return a;
649   case R_ARM_SBREL:
650     return sym.getVA(a) - getARMStaticBase(sym);
651   case R_GOT:
652   case R_RELAX_TLS_GD_TO_IE_ABS:
653     return sym.getGotVA() + a;
654   case R_GOTONLY_PC:
655     return in.got->getVA() + a - p;
656   case R_GOTPLTONLY_PC:
657     return in.gotPlt->getVA() + a - p;
658   case R_GOTREL:
659   case R_PPC64_RELAX_TOC:
660     return sym.getVA(a) - in.got->getVA();
661   case R_GOTPLTREL:
662     return sym.getVA(a) - in.gotPlt->getVA();
663   case R_GOTPLT:
664   case R_RELAX_TLS_GD_TO_IE_GOTPLT:
665     return sym.getGotVA() + a - in.gotPlt->getVA();
666   case R_TLSLD_GOT_OFF:
667   case R_GOT_OFF:
668   case R_RELAX_TLS_GD_TO_IE_GOT_OFF:
669     return sym.getGotOffset() + a;
670   case R_AARCH64_GOT_PAGE_PC:
671   case R_AARCH64_RELAX_TLS_GD_TO_IE_PAGE_PC:
672     return getAArch64Page(sym.getGotVA() + a) - getAArch64Page(p);
673   case R_AARCH64_GOT_PAGE:
674     return sym.getGotVA() + a - getAArch64Page(in.got->getVA());
675   case R_GOT_PC:
676   case R_RELAX_TLS_GD_TO_IE:
677     return sym.getGotVA() + a - p;
678   case R_MIPS_GOTREL:
679     return sym.getVA(a) - in.mipsGot->getGp(file);
680   case R_MIPS_GOT_GP:
681     return in.mipsGot->getGp(file) + a;
682   case R_MIPS_GOT_GP_PC: {
683     // R_MIPS_LO16 expression has R_MIPS_GOT_GP_PC type iif the target
684     // is _gp_disp symbol. In that case we should use the following
685     // formula for calculation "AHL + GP - P + 4". For details see p. 4-19 at
686     // ftp://www.linux-mips.org/pub/linux/mips/doc/ABI/mipsabi.pdf
687     // microMIPS variants of these relocations use slightly different
688     // expressions: AHL + GP - P + 3 for %lo() and AHL + GP - P - 1 for %hi()
689     // to correctly handle less-significant bit of the microMIPS symbol.
690     uint64_t v = in.mipsGot->getGp(file) + a - p;
691     if (type == R_MIPS_LO16 || type == R_MICROMIPS_LO16)
692       v += 4;
693     if (type == R_MICROMIPS_LO16 || type == R_MICROMIPS_HI16)
694       v -= 1;
695     return v;
696   }
697   case R_MIPS_GOT_LOCAL_PAGE:
698     // If relocation against MIPS local symbol requires GOT entry, this entry
699     // should be initialized by 'page address'. This address is high 16-bits
700     // of sum the symbol's value and the addend.
701     return in.mipsGot->getVA() + in.mipsGot->getPageEntryOffset(file, sym, a) -
702            in.mipsGot->getGp(file);
703   case R_MIPS_GOT_OFF:
704   case R_MIPS_GOT_OFF32:
705     // In case of MIPS if a GOT relocation has non-zero addend this addend
706     // should be applied to the GOT entry content not to the GOT entry offset.
707     // That is why we use separate expression type.
708     return in.mipsGot->getVA() + in.mipsGot->getSymEntryOffset(file, sym, a) -
709            in.mipsGot->getGp(file);
710   case R_MIPS_TLSGD:
711     return in.mipsGot->getVA() + in.mipsGot->getGlobalDynOffset(file, sym) -
712            in.mipsGot->getGp(file);
713   case R_MIPS_TLSLD:
714     return in.mipsGot->getVA() + in.mipsGot->getTlsIndexOffset(file) -
715            in.mipsGot->getGp(file);
716   case R_AARCH64_PAGE_PC: {
717     uint64_t val = sym.isUndefWeak() ? p + a : sym.getVA(a);
718     return getAArch64Page(val) - getAArch64Page(p);
719   }
720   case R_RISCV_PC_INDIRECT: {
721     if (const Relocation *hiRel = getRISCVPCRelHi20(&sym, a))
722       return getRelocTargetVA(file, hiRel->type, hiRel->addend, sym.getVA(),
723                               *hiRel->sym, hiRel->expr);
724     return 0;
725   }
726   case R_PC:
727   case R_ARM_PCA: {
728     uint64_t dest;
729     if (expr == R_ARM_PCA)
730       // Some PC relative ARM (Thumb) relocations align down the place.
731       p = p & 0xfffffffc;
732     if (sym.isUndefWeak()) {
733       // On ARM and AArch64 a branch to an undefined weak resolves to the next
734       // instruction, otherwise the place. On RISCV, resolve an undefined weak
735       // to the same instruction to cause an infinite loop (making the user
736       // aware of the issue) while ensuring no overflow.
737       if (config->emachine == EM_ARM)
738         dest = getARMUndefinedRelativeWeakVA(type, a, p);
739       else if (config->emachine == EM_AARCH64)
740         dest = getAArch64UndefinedRelativeWeakVA(type, p) + a;
741       else if (config->emachine == EM_PPC)
742         dest = p;
743       else if (config->emachine == EM_RISCV)
744         dest = getRISCVUndefinedRelativeWeakVA(type, p) + a;
745       else
746         dest = sym.getVA(a);
747     } else {
748       dest = sym.getVA(a);
749     }
750     return dest - p;
751   }
752   case R_PLT:
753     return sym.getPltVA() + a;
754   case R_PLT_PC:
755   case R_PPC64_CALL_PLT:
756     return sym.getPltVA() + a - p;
757   case R_PLT_GOTPLT:
758     return sym.getPltVA() + a - in.gotPlt->getVA();
759   case R_PPC32_PLTREL:
760     // R_PPC_PLTREL24 uses the addend (usually 0 or 0x8000) to indicate r30
761     // stores _GLOBAL_OFFSET_TABLE_ or .got2+0x8000. The addend is ignored for
762     // target VA computation.
763     return sym.getPltVA() - p;
764   case R_PPC64_CALL: {
765     uint64_t symVA = sym.getVA(a);
766     // If we have an undefined weak symbol, we might get here with a symbol
767     // address of zero. That could overflow, but the code must be unreachable,
768     // so don't bother doing anything at all.
769     if (!symVA)
770       return 0;
771 
772     // PPC64 V2 ABI describes two entry points to a function. The global entry
773     // point is used for calls where the caller and callee (may) have different
774     // TOC base pointers and r2 needs to be modified to hold the TOC base for
775     // the callee. For local calls the caller and callee share the same
776     // TOC base and so the TOC pointer initialization code should be skipped by
777     // branching to the local entry point.
778     return symVA - p + getPPC64GlobalEntryToLocalEntryOffset(sym.stOther);
779   }
780   case R_PPC64_TOCBASE:
781     return getPPC64TocBase() + a;
782   case R_RELAX_GOT_PC:
783   case R_PPC64_RELAX_GOT_PC:
784     return sym.getVA(a) - p;
785   case R_RELAX_TLS_GD_TO_LE:
786   case R_RELAX_TLS_IE_TO_LE:
787   case R_RELAX_TLS_LD_TO_LE:
788   case R_TPREL:
789     // It is not very clear what to return if the symbol is undefined. With
790     // --noinhibit-exec, even a non-weak undefined reference may reach here.
791     // Just return A, which matches R_ABS, and the behavior of some dynamic
792     // loaders.
793     if (sym.isUndefined())
794       return a;
795     return getTlsTpOffset(sym) + a;
796   case R_RELAX_TLS_GD_TO_LE_NEG:
797   case R_TPREL_NEG:
798     if (sym.isUndefined())
799       return a;
800     return -getTlsTpOffset(sym) + a;
801   case R_SIZE:
802     return sym.getSize() + a;
803   case R_TLSDESC:
804     return in.got->getTlsDescAddr(sym) + a;
805   case R_TLSDESC_PC:
806     return in.got->getTlsDescAddr(sym) + a - p;
807   case R_TLSDESC_GOTPLT:
808     return in.got->getTlsDescAddr(sym) + a - in.gotPlt->getVA();
809   case R_AARCH64_TLSDESC_PAGE:
810     return getAArch64Page(in.got->getTlsDescAddr(sym) + a) - getAArch64Page(p);
811   case R_TLSGD_GOT:
812     return in.got->getGlobalDynOffset(sym) + a;
813   case R_TLSGD_GOTPLT:
814     return in.got->getGlobalDynAddr(sym) + a - in.gotPlt->getVA();
815   case R_TLSGD_PC:
816     return in.got->getGlobalDynAddr(sym) + a - p;
817   case R_TLSLD_GOTPLT:
818     return in.got->getVA() + in.got->getTlsIndexOff() + a - in.gotPlt->getVA();
819   case R_TLSLD_GOT:
820     return in.got->getTlsIndexOff() + a;
821   case R_TLSLD_PC:
822     return in.got->getTlsIndexVA() + a - p;
823   default:
824     llvm_unreachable("invalid expression");
825   }
826 }
827 
828 // This function applies relocations to sections without SHF_ALLOC bit.
829 // Such sections are never mapped to memory at runtime. Debug sections are
830 // an example. Relocations in non-alloc sections are much easier to
831 // handle than in allocated sections because it will never need complex
832 // treatment such as GOT or PLT (because at runtime no one refers them).
833 // So, we handle relocations for non-alloc sections directly in this
834 // function as a performance optimization.
835 template <class ELFT, class RelTy>
836 void InputSection::relocateNonAlloc(uint8_t *buf, ArrayRef<RelTy> rels) {
837   const unsigned bits = sizeof(typename ELFT::uint) * 8;
838   const TargetInfo &target = *elf::target;
839   const bool isDebug = isDebugSection(*this);
840   const bool isDebugLocOrRanges =
841       isDebug && (name == ".debug_loc" || name == ".debug_ranges");
842   const bool isDebugLine = isDebug && name == ".debug_line";
843   Optional<uint64_t> tombstone;
844   for (const auto &patAndValue : llvm::reverse(config->deadRelocInNonAlloc))
845     if (patAndValue.first.match(this->name)) {
846       tombstone = patAndValue.second;
847       break;
848     }
849 
850   for (const RelTy &rel : rels) {
851     RelType type = rel.getType(config->isMips64EL);
852 
853     // GCC 8.0 or earlier have a bug that they emit R_386_GOTPC relocations
854     // against _GLOBAL_OFFSET_TABLE_ for .debug_info. The bug has been fixed
855     // in 2017 (https://gcc.gnu.org/bugzilla/show_bug.cgi?id=82630), but we
856     // need to keep this bug-compatible code for a while.
857     if (config->emachine == EM_386 && type == R_386_GOTPC)
858       continue;
859 
860     uint64_t offset = rel.r_offset;
861     uint8_t *bufLoc = buf + offset;
862     int64_t addend = getAddend<ELFT>(rel);
863     if (!RelTy::IsRela)
864       addend += target.getImplicitAddend(bufLoc, type);
865 
866     Symbol &sym = getFile<ELFT>()->getRelocTargetSym(rel);
867     RelExpr expr = target.getRelExpr(type, sym, bufLoc);
868     if (expr == R_NONE)
869       continue;
870 
871     if (tombstone ||
872         (isDebug && (type == target.symbolicRel || expr == R_DTPREL))) {
873       // Resolve relocations in .debug_* referencing (discarded symbols or ICF
874       // folded section symbols) to a tombstone value. Resolving to addend is
875       // unsatisfactory because the result address range may collide with a
876       // valid range of low address, or leave multiple CUs claiming ownership of
877       // the same range of code, which may confuse consumers.
878       //
879       // To address the problems, we use -1 as a tombstone value for most
880       // .debug_* sections. We have to ignore the addend because we don't want
881       // to resolve an address attribute (which may have a non-zero addend) to
882       // -1+addend (wrap around to a low address).
883       //
884       // R_DTPREL type relocations represent an offset into the dynamic thread
885       // vector. The computed value is st_value plus a non-negative offset.
886       // Negative values are invalid, so -1 can be used as the tombstone value.
887       //
888       // If the referenced symbol is discarded (made Undefined), or the
889       // section defining the referenced symbol is garbage collected,
890       // sym.getOutputSection() is nullptr. `ds->folded` catches the ICF folded
891       // case. However, resolving a relocation in .debug_line to -1 would stop
892       // debugger users from setting breakpoints on the folded-in function, so
893       // exclude .debug_line.
894       //
895       // For pre-DWARF-v5 .debug_loc and .debug_ranges, -1 is a reserved value
896       // (base address selection entry), use 1 (which is used by GNU ld for
897       // .debug_ranges).
898       //
899       // TODO To reduce disruption, we use 0 instead of -1 as the tombstone
900       // value. Enable -1 in a future release.
901       auto *ds = dyn_cast<Defined>(&sym);
902       if (!sym.getOutputSection() || (ds && ds->folded && !isDebugLine)) {
903         // If -z dead-reloc-in-nonalloc= is specified, respect it.
904         const uint64_t value = tombstone ? SignExtend64<bits>(*tombstone)
905                                          : (isDebugLocOrRanges ? 1 : 0);
906         target.relocateNoSym(bufLoc, type, value);
907         continue;
908       }
909     }
910 
911     // For a relocatable link, only tombstone values are applied.
912     if (config->relocatable)
913       continue;
914 
915     if (expr == R_SIZE) {
916       target.relocateNoSym(bufLoc, type,
917                            SignExtend64<bits>(sym.getSize() + addend));
918       continue;
919     }
920 
921     // R_ABS/R_DTPREL and some other relocations can be used from non-SHF_ALLOC
922     // sections.
923     if (expr == R_ABS || expr == R_DTPREL || expr == R_GOTPLTREL ||
924         expr == R_RISCV_ADD) {
925       target.relocateNoSym(bufLoc, type, SignExtend64<bits>(sym.getVA(addend)));
926       continue;
927     }
928 
929     std::string msg = getLocation(offset) + ": has non-ABS relocation " +
930                       toString(type) + " against symbol '" + toString(sym) +
931                       "'";
932     if (expr != R_PC && expr != R_ARM_PCA) {
933       error(msg);
934       return;
935     }
936 
937     // If the control reaches here, we found a PC-relative relocation in a
938     // non-ALLOC section. Since non-ALLOC section is not loaded into memory
939     // at runtime, the notion of PC-relative doesn't make sense here. So,
940     // this is a usage error. However, GNU linkers historically accept such
941     // relocations without any errors and relocate them as if they were at
942     // address 0. For bug-compatibilty, we accept them with warnings. We
943     // know Steel Bank Common Lisp as of 2018 have this bug.
944     warn(msg);
945     target.relocateNoSym(
946         bufLoc, type,
947         SignExtend64<bits>(sym.getVA(addend - offset - outSecOff)));
948   }
949 }
950 
951 // This is used when '-r' is given.
952 // For REL targets, InputSection::copyRelocations() may store artificial
953 // relocations aimed to update addends. They are handled in relocateAlloc()
954 // for allocatable sections, and this function does the same for
955 // non-allocatable sections, such as sections with debug information.
956 static void relocateNonAllocForRelocatable(InputSection *sec, uint8_t *buf) {
957   const unsigned bits = config->is64 ? 64 : 32;
958 
959   for (const Relocation &rel : sec->relocations) {
960     // InputSection::copyRelocations() adds only R_ABS relocations.
961     assert(rel.expr == R_ABS);
962     uint8_t *bufLoc = buf + rel.offset;
963     uint64_t targetVA = SignExtend64(rel.sym->getVA(rel.addend), bits);
964     target->relocate(bufLoc, rel, targetVA);
965   }
966 }
967 
968 template <class ELFT>
969 void InputSectionBase::relocate(uint8_t *buf, uint8_t *bufEnd) {
970   if ((flags & SHF_EXECINSTR) && LLVM_UNLIKELY(getFile<ELFT>()->splitStack))
971     adjustSplitStackFunctionPrologues<ELFT>(buf, bufEnd);
972 
973   if (flags & SHF_ALLOC) {
974     relocateAlloc(buf, bufEnd);
975     return;
976   }
977 
978   auto *sec = cast<InputSection>(this);
979   if (config->relocatable)
980     relocateNonAllocForRelocatable(sec, buf);
981   // For a relocatable link, also call relocateNonAlloc() to rewrite applicable
982   // locations with tombstone values.
983   const RelsOrRelas<ELFT> rels = sec->template relsOrRelas<ELFT>();
984   if (rels.areRelocsRel())
985     sec->relocateNonAlloc<ELFT>(buf, rels.rels);
986   else
987     sec->relocateNonAlloc<ELFT>(buf, rels.relas);
988 }
989 
990 void InputSectionBase::relocateAlloc(uint8_t *buf, uint8_t *bufEnd) {
991   assert(flags & SHF_ALLOC);
992   const unsigned bits = config->wordsize * 8;
993   const TargetInfo &target = *elf::target;
994   uint64_t lastPPCRelaxedRelocOff = UINT64_C(-1);
995   AArch64Relaxer aarch64relaxer(relocations);
996   for (size_t i = 0, size = relocations.size(); i != size; ++i) {
997     const Relocation &rel = relocations[i];
998     if (rel.expr == R_NONE)
999       continue;
1000     uint64_t offset = rel.offset;
1001     uint8_t *bufLoc = buf + offset;
1002 
1003     uint64_t secAddr = getOutputSection()->addr;
1004     if (auto *sec = dyn_cast<InputSection>(this))
1005       secAddr += sec->outSecOff;
1006     const uint64_t addrLoc = secAddr + offset;
1007     const uint64_t targetVA =
1008         SignExtend64(getRelocTargetVA(file, rel.type, rel.addend, addrLoc,
1009                                       *rel.sym, rel.expr),
1010                      bits);
1011     switch (rel.expr) {
1012     case R_RELAX_GOT_PC:
1013     case R_RELAX_GOT_PC_NOPIC:
1014       target.relaxGot(bufLoc, rel, targetVA);
1015       break;
1016     case R_AARCH64_GOT_PAGE_PC:
1017       if (i + 1 < size && aarch64relaxer.tryRelaxAdrpLdr(
1018                               rel, relocations[i + 1], secAddr, buf)) {
1019         ++i;
1020         continue;
1021       }
1022       target.relocate(bufLoc, rel, targetVA);
1023       break;
1024     case R_AARCH64_PAGE_PC:
1025       if (i + 1 < size && aarch64relaxer.tryRelaxAdrpAdd(
1026                               rel, relocations[i + 1], secAddr, buf)) {
1027         ++i;
1028         continue;
1029       }
1030       target.relocate(bufLoc, rel, targetVA);
1031       break;
1032     case R_PPC64_RELAX_GOT_PC: {
1033       // The R_PPC64_PCREL_OPT relocation must appear immediately after
1034       // R_PPC64_GOT_PCREL34 in the relocations table at the same offset.
1035       // We can only relax R_PPC64_PCREL_OPT if we have also relaxed
1036       // the associated R_PPC64_GOT_PCREL34 since only the latter has an
1037       // associated symbol. So save the offset when relaxing R_PPC64_GOT_PCREL34
1038       // and only relax the other if the saved offset matches.
1039       if (rel.type == R_PPC64_GOT_PCREL34)
1040         lastPPCRelaxedRelocOff = offset;
1041       if (rel.type == R_PPC64_PCREL_OPT && offset != lastPPCRelaxedRelocOff)
1042         break;
1043       target.relaxGot(bufLoc, rel, targetVA);
1044       break;
1045     }
1046     case R_PPC64_RELAX_TOC:
1047       // rel.sym refers to the STT_SECTION symbol associated to the .toc input
1048       // section. If an R_PPC64_TOC16_LO (.toc + addend) references the TOC
1049       // entry, there may be R_PPC64_TOC16_HA not paired with
1050       // R_PPC64_TOC16_LO_DS. Don't relax. This loses some relaxation
1051       // opportunities but is safe.
1052       if (ppc64noTocRelax.count({rel.sym, rel.addend}) ||
1053           !tryRelaxPPC64TocIndirection(rel, bufLoc))
1054         target.relocate(bufLoc, rel, targetVA);
1055       break;
1056     case R_RELAX_TLS_IE_TO_LE:
1057       target.relaxTlsIeToLe(bufLoc, rel, targetVA);
1058       break;
1059     case R_RELAX_TLS_LD_TO_LE:
1060     case R_RELAX_TLS_LD_TO_LE_ABS:
1061       target.relaxTlsLdToLe(bufLoc, rel, targetVA);
1062       break;
1063     case R_RELAX_TLS_GD_TO_LE:
1064     case R_RELAX_TLS_GD_TO_LE_NEG:
1065       target.relaxTlsGdToLe(bufLoc, rel, targetVA);
1066       break;
1067     case R_AARCH64_RELAX_TLS_GD_TO_IE_PAGE_PC:
1068     case R_RELAX_TLS_GD_TO_IE:
1069     case R_RELAX_TLS_GD_TO_IE_ABS:
1070     case R_RELAX_TLS_GD_TO_IE_GOT_OFF:
1071     case R_RELAX_TLS_GD_TO_IE_GOTPLT:
1072       target.relaxTlsGdToIe(bufLoc, rel, targetVA);
1073       break;
1074     case R_PPC64_CALL:
1075       // If this is a call to __tls_get_addr, it may be part of a TLS
1076       // sequence that has been relaxed and turned into a nop. In this
1077       // case, we don't want to handle it as a call.
1078       if (read32(bufLoc) == 0x60000000) // nop
1079         break;
1080 
1081       // Patch a nop (0x60000000) to a ld.
1082       if (rel.sym->needsTocRestore) {
1083         // gcc/gfortran 5.4, 6.3 and earlier versions do not add nop for
1084         // recursive calls even if the function is preemptible. This is not
1085         // wrong in the common case where the function is not preempted at
1086         // runtime. Just ignore.
1087         if ((bufLoc + 8 > bufEnd || read32(bufLoc + 4) != 0x60000000) &&
1088             rel.sym->file != file) {
1089           // Use substr(6) to remove the "__plt_" prefix.
1090           errorOrWarn(getErrorLocation(bufLoc) + "call to " +
1091                       lld::toString(*rel.sym).substr(6) +
1092                       " lacks nop, can't restore toc");
1093           break;
1094         }
1095         write32(bufLoc + 4, 0xe8410018); // ld %r2, 24(%r1)
1096       }
1097       target.relocate(bufLoc, rel, targetVA);
1098       break;
1099     default:
1100       target.relocate(bufLoc, rel, targetVA);
1101       break;
1102     }
1103   }
1104 
1105   // Apply jumpInstrMods.  jumpInstrMods are created when the opcode of
1106   // a jmp insn must be modified to shrink the jmp insn or to flip the jmp
1107   // insn.  This is primarily used to relax and optimize jumps created with
1108   // basic block sections.
1109   if (jumpInstrMod) {
1110     target.applyJumpInstrMod(buf + jumpInstrMod->offset, jumpInstrMod->original,
1111                              jumpInstrMod->size);
1112   }
1113 }
1114 
1115 // For each function-defining prologue, find any calls to __morestack,
1116 // and replace them with calls to __morestack_non_split.
1117 static void switchMorestackCallsToMorestackNonSplit(
1118     DenseSet<Defined *> &prologues,
1119     SmallVector<Relocation *, 0> &morestackCalls) {
1120 
1121   // If the target adjusted a function's prologue, all calls to
1122   // __morestack inside that function should be switched to
1123   // __morestack_non_split.
1124   Symbol *moreStackNonSplit = symtab->find("__morestack_non_split");
1125   if (!moreStackNonSplit) {
1126     error("mixing split-stack objects requires a definition of "
1127           "__morestack_non_split");
1128     return;
1129   }
1130 
1131   // Sort both collections to compare addresses efficiently.
1132   llvm::sort(morestackCalls, [](const Relocation *l, const Relocation *r) {
1133     return l->offset < r->offset;
1134   });
1135   std::vector<Defined *> functions(prologues.begin(), prologues.end());
1136   llvm::sort(functions, [](const Defined *l, const Defined *r) {
1137     return l->value < r->value;
1138   });
1139 
1140   auto it = morestackCalls.begin();
1141   for (Defined *f : functions) {
1142     // Find the first call to __morestack within the function.
1143     while (it != morestackCalls.end() && (*it)->offset < f->value)
1144       ++it;
1145     // Adjust all calls inside the function.
1146     while (it != morestackCalls.end() && (*it)->offset < f->value + f->size) {
1147       (*it)->sym = moreStackNonSplit;
1148       ++it;
1149     }
1150   }
1151 }
1152 
1153 static bool enclosingPrologueAttempted(uint64_t offset,
1154                                        const DenseSet<Defined *> &prologues) {
1155   for (Defined *f : prologues)
1156     if (f->value <= offset && offset < f->value + f->size)
1157       return true;
1158   return false;
1159 }
1160 
1161 // If a function compiled for split stack calls a function not
1162 // compiled for split stack, then the caller needs its prologue
1163 // adjusted to ensure that the called function will have enough stack
1164 // available. Find those functions, and adjust their prologues.
1165 template <class ELFT>
1166 void InputSectionBase::adjustSplitStackFunctionPrologues(uint8_t *buf,
1167                                                          uint8_t *end) {
1168   DenseSet<Defined *> prologues;
1169   SmallVector<Relocation *, 0> morestackCalls;
1170 
1171   for (Relocation &rel : relocations) {
1172     // Ignore calls into the split-stack api.
1173     if (rel.sym->getName().startswith("__morestack")) {
1174       if (rel.sym->getName().equals("__morestack"))
1175         morestackCalls.push_back(&rel);
1176       continue;
1177     }
1178 
1179     // A relocation to non-function isn't relevant. Sometimes
1180     // __morestack is not marked as a function, so this check comes
1181     // after the name check.
1182     if (rel.sym->type != STT_FUNC)
1183       continue;
1184 
1185     // If the callee's-file was compiled with split stack, nothing to do.  In
1186     // this context, a "Defined" symbol is one "defined by the binary currently
1187     // being produced". So an "undefined" symbol might be provided by a shared
1188     // library. It is not possible to tell how such symbols were compiled, so be
1189     // conservative.
1190     if (Defined *d = dyn_cast<Defined>(rel.sym))
1191       if (InputSection *isec = cast_or_null<InputSection>(d->section))
1192         if (!isec || !isec->getFile<ELFT>() || isec->getFile<ELFT>()->splitStack)
1193           continue;
1194 
1195     if (enclosingPrologueAttempted(rel.offset, prologues))
1196       continue;
1197 
1198     if (Defined *f = getEnclosingFunction(rel.offset)) {
1199       prologues.insert(f);
1200       if (target->adjustPrologueForCrossSplitStack(buf + f->value, end,
1201                                                    f->stOther))
1202         continue;
1203       if (!getFile<ELFT>()->someNoSplitStack)
1204         error(lld::toString(this) + ": " + f->getName() +
1205               " (with -fsplit-stack) calls " + rel.sym->getName() +
1206               " (without -fsplit-stack), but couldn't adjust its prologue");
1207     }
1208   }
1209 
1210   if (target->needsMoreStackNonSplit)
1211     switchMorestackCallsToMorestackNonSplit(prologues, morestackCalls);
1212 }
1213 
1214 template <class ELFT> void InputSection::writeTo(uint8_t *buf) {
1215   if (auto *s = dyn_cast<SyntheticSection>(this)) {
1216     s->writeTo(buf);
1217     return;
1218   }
1219 
1220   if (LLVM_UNLIKELY(type == SHT_NOBITS))
1221     return;
1222   // If -r or --emit-relocs is given, then an InputSection
1223   // may be a relocation section.
1224   if (LLVM_UNLIKELY(type == SHT_RELA)) {
1225     copyRelocations<ELFT>(buf, getDataAs<typename ELFT::Rela>());
1226     return;
1227   }
1228   if (LLVM_UNLIKELY(type == SHT_REL)) {
1229     copyRelocations<ELFT>(buf, getDataAs<typename ELFT::Rel>());
1230     return;
1231   }
1232 
1233   // If -r is given, we may have a SHT_GROUP section.
1234   if (LLVM_UNLIKELY(type == SHT_GROUP)) {
1235     copyShtGroup<ELFT>(buf);
1236     return;
1237   }
1238 
1239   // If this is a compressed section, uncompress section contents directly
1240   // to the buffer.
1241   if (uncompressedSize >= 0) {
1242     size_t size = uncompressedSize;
1243     if (Error e = zlib::uncompress(toStringRef(rawData), (char *)buf, size))
1244       fatal(toString(this) +
1245             ": uncompress failed: " + llvm::toString(std::move(e)));
1246     uint8_t *bufEnd = buf + size;
1247     relocate<ELFT>(buf, bufEnd);
1248     return;
1249   }
1250 
1251   // Copy section contents from source object file to output file
1252   // and then apply relocations.
1253   memcpy(buf, rawData.data(), rawData.size());
1254   relocate<ELFT>(buf, buf + rawData.size());
1255 }
1256 
1257 void InputSection::replace(InputSection *other) {
1258   alignment = std::max(alignment, other->alignment);
1259 
1260   // When a section is replaced with another section that was allocated to
1261   // another partition, the replacement section (and its associated sections)
1262   // need to be placed in the main partition so that both partitions will be
1263   // able to access it.
1264   if (partition != other->partition) {
1265     partition = 1;
1266     for (InputSection *isec : dependentSections)
1267       isec->partition = 1;
1268   }
1269 
1270   other->repl = repl;
1271   other->markDead();
1272 }
1273 
1274 template <class ELFT>
1275 EhInputSection::EhInputSection(ObjFile<ELFT> &f,
1276                                const typename ELFT::Shdr &header,
1277                                StringRef name)
1278     : InputSectionBase(f, header, name, InputSectionBase::EHFrame) {}
1279 
1280 SyntheticSection *EhInputSection::getParent() const {
1281   return cast_or_null<SyntheticSection>(parent);
1282 }
1283 
1284 // Returns the index of the first relocation that points to a region between
1285 // Begin and Begin+Size.
1286 template <class IntTy, class RelTy>
1287 static unsigned getReloc(IntTy begin, IntTy size, const ArrayRef<RelTy> &rels,
1288                          unsigned &relocI) {
1289   // Start search from RelocI for fast access. That works because the
1290   // relocations are sorted in .eh_frame.
1291   for (unsigned n = rels.size(); relocI < n; ++relocI) {
1292     const RelTy &rel = rels[relocI];
1293     if (rel.r_offset < begin)
1294       continue;
1295 
1296     if (rel.r_offset < begin + size)
1297       return relocI;
1298     return -1;
1299   }
1300   return -1;
1301 }
1302 
1303 // .eh_frame is a sequence of CIE or FDE records.
1304 // This function splits an input section into records and returns them.
1305 template <class ELFT> void EhInputSection::split() {
1306   const RelsOrRelas<ELFT> rels = relsOrRelas<ELFT>();
1307   // getReloc expects the relocations to be sorted by r_offset. See the comment
1308   // in scanRelocs.
1309   if (rels.areRelocsRel()) {
1310     SmallVector<typename ELFT::Rel, 0> storage;
1311     split<ELFT>(sortRels(rels.rels, storage));
1312   } else {
1313     SmallVector<typename ELFT::Rela, 0> storage;
1314     split<ELFT>(sortRels(rels.relas, storage));
1315   }
1316 }
1317 
1318 template <class ELFT, class RelTy>
1319 void EhInputSection::split(ArrayRef<RelTy> rels) {
1320   ArrayRef<uint8_t> d = rawData;
1321   const char *msg = nullptr;
1322   unsigned relI = 0;
1323   while (!d.empty()) {
1324     if (d.size() < 4) {
1325       msg = "CIE/FDE too small";
1326       break;
1327     }
1328     uint64_t size = endian::read32<ELFT::TargetEndianness>(d.data());
1329     // If it is 0xFFFFFFFF, the next 8 bytes contain the size instead,
1330     // but we do not support that format yet.
1331     if (size == UINT32_MAX) {
1332       msg = "CIE/FDE too large";
1333       break;
1334     }
1335     size += 4;
1336     if (size > d.size()) {
1337       msg = "CIE/FDE ends past the end of the section";
1338       break;
1339     }
1340 
1341     uint64_t off = d.data() - rawData.data();
1342     pieces.emplace_back(off, this, size, getReloc(off, size, rels, relI));
1343     d = d.slice(size);
1344   }
1345   if (msg)
1346     errorOrWarn("corrupted .eh_frame: " + Twine(msg) + "\n>>> defined in " +
1347                 getObjMsg(d.data() - rawData.data()));
1348 }
1349 
1350 static size_t findNull(StringRef s, size_t entSize) {
1351   for (unsigned i = 0, n = s.size(); i != n; i += entSize) {
1352     const char *b = s.begin() + i;
1353     if (std::all_of(b, b + entSize, [](char c) { return c == 0; }))
1354       return i;
1355   }
1356   llvm_unreachable("");
1357 }
1358 
1359 SyntheticSection *MergeInputSection::getParent() const {
1360   return cast_or_null<SyntheticSection>(parent);
1361 }
1362 
1363 // Split SHF_STRINGS section. Such section is a sequence of
1364 // null-terminated strings.
1365 void MergeInputSection::splitStrings(StringRef s, size_t entSize) {
1366   const bool live = !(flags & SHF_ALLOC) || !config->gcSections;
1367   const char *p = s.data(), *end = s.data() + s.size();
1368   if (!std::all_of(end - entSize, end, [](char c) { return c == 0; }))
1369     fatal(toString(this) + ": string is not null terminated");
1370   if (entSize == 1) {
1371     // Optimize the common case.
1372     do {
1373       size_t size = strlen(p) + 1;
1374       pieces.emplace_back(p - s.begin(), xxHash64(StringRef(p, size)), live);
1375       p += size;
1376     } while (p != end);
1377   } else {
1378     do {
1379       size_t size = findNull(StringRef(p, end - p), entSize) + entSize;
1380       pieces.emplace_back(p - s.begin(), xxHash64(StringRef(p, size)), live);
1381       p += size;
1382     } while (p != end);
1383   }
1384 }
1385 
1386 // Split non-SHF_STRINGS section. Such section is a sequence of
1387 // fixed size records.
1388 void MergeInputSection::splitNonStrings(ArrayRef<uint8_t> data,
1389                                         size_t entSize) {
1390   size_t size = data.size();
1391   assert((size % entSize) == 0);
1392   const bool live = !(flags & SHF_ALLOC) || !config->gcSections;
1393 
1394   pieces.resize_for_overwrite(size / entSize);
1395   for (size_t i = 0, j = 0; i != size; i += entSize, j++)
1396     pieces[j] = {i, (uint32_t)xxHash64(data.slice(i, entSize)), live};
1397 }
1398 
1399 template <class ELFT>
1400 MergeInputSection::MergeInputSection(ObjFile<ELFT> &f,
1401                                      const typename ELFT::Shdr &header,
1402                                      StringRef name)
1403     : InputSectionBase(f, header, name, InputSectionBase::Merge) {}
1404 
1405 MergeInputSection::MergeInputSection(uint64_t flags, uint32_t type,
1406                                      uint64_t entsize, ArrayRef<uint8_t> data,
1407                                      StringRef name)
1408     : InputSectionBase(nullptr, flags, type, entsize, /*Link*/ 0, /*Info*/ 0,
1409                        /*Alignment*/ entsize, data, name, SectionBase::Merge) {}
1410 
1411 // This function is called after we obtain a complete list of input sections
1412 // that need to be linked. This is responsible to split section contents
1413 // into small chunks for further processing.
1414 //
1415 // Note that this function is called from parallelForEach. This must be
1416 // thread-safe (i.e. no memory allocation from the pools).
1417 void MergeInputSection::splitIntoPieces() {
1418   assert(pieces.empty());
1419 
1420   if (flags & SHF_STRINGS)
1421     splitStrings(toStringRef(data()), entsize);
1422   else
1423     splitNonStrings(data(), entsize);
1424 }
1425 
1426 SectionPiece *MergeInputSection::getSectionPiece(uint64_t offset) {
1427   if (this->rawData.size() <= offset)
1428     fatal(toString(this) + ": offset is outside the section");
1429 
1430   // If Offset is not at beginning of a section piece, it is not in the map.
1431   // In that case we need to  do a binary search of the original section piece vector.
1432   auto it = partition_point(
1433       pieces, [=](SectionPiece p) { return p.inputOff <= offset; });
1434   return &it[-1];
1435 }
1436 
1437 // Returns the offset in an output section for a given input offset.
1438 // Because contents of a mergeable section is not contiguous in output,
1439 // it is not just an addition to a base output offset.
1440 uint64_t MergeInputSection::getParentOffset(uint64_t offset) const {
1441   // If Offset is not at beginning of a section piece, it is not in the map.
1442   // In that case we need to search from the original section piece vector.
1443   const SectionPiece &piece = *getSectionPiece(offset);
1444   uint64_t addend = offset - piece.inputOff;
1445   return piece.outputOff + addend;
1446 }
1447 
1448 template InputSection::InputSection(ObjFile<ELF32LE> &, const ELF32LE::Shdr &,
1449                                     StringRef);
1450 template InputSection::InputSection(ObjFile<ELF32BE> &, const ELF32BE::Shdr &,
1451                                     StringRef);
1452 template InputSection::InputSection(ObjFile<ELF64LE> &, const ELF64LE::Shdr &,
1453                                     StringRef);
1454 template InputSection::InputSection(ObjFile<ELF64BE> &, const ELF64BE::Shdr &,
1455                                     StringRef);
1456 
1457 template void InputSection::writeTo<ELF32LE>(uint8_t *);
1458 template void InputSection::writeTo<ELF32BE>(uint8_t *);
1459 template void InputSection::writeTo<ELF64LE>(uint8_t *);
1460 template void InputSection::writeTo<ELF64BE>(uint8_t *);
1461 
1462 template RelsOrRelas<ELF32LE> InputSectionBase::relsOrRelas<ELF32LE>() const;
1463 template RelsOrRelas<ELF32BE> InputSectionBase::relsOrRelas<ELF32BE>() const;
1464 template RelsOrRelas<ELF64LE> InputSectionBase::relsOrRelas<ELF64LE>() const;
1465 template RelsOrRelas<ELF64BE> InputSectionBase::relsOrRelas<ELF64BE>() const;
1466 
1467 template MergeInputSection::MergeInputSection(ObjFile<ELF32LE> &,
1468                                               const ELF32LE::Shdr &, StringRef);
1469 template MergeInputSection::MergeInputSection(ObjFile<ELF32BE> &,
1470                                               const ELF32BE::Shdr &, StringRef);
1471 template MergeInputSection::MergeInputSection(ObjFile<ELF64LE> &,
1472                                               const ELF64LE::Shdr &, StringRef);
1473 template MergeInputSection::MergeInputSection(ObjFile<ELF64BE> &,
1474                                               const ELF64BE::Shdr &, StringRef);
1475 
1476 template EhInputSection::EhInputSection(ObjFile<ELF32LE> &,
1477                                         const ELF32LE::Shdr &, StringRef);
1478 template EhInputSection::EhInputSection(ObjFile<ELF32BE> &,
1479                                         const ELF32BE::Shdr &, StringRef);
1480 template EhInputSection::EhInputSection(ObjFile<ELF64LE> &,
1481                                         const ELF64LE::Shdr &, StringRef);
1482 template EhInputSection::EhInputSection(ObjFile<ELF64BE> &,
1483                                         const ELF64BE::Shdr &, StringRef);
1484 
1485 template void EhInputSection::split<ELF32LE>();
1486 template void EhInputSection::split<ELF32BE>();
1487 template void EhInputSection::split<ELF64LE>();
1488 template void EhInputSection::split<ELF64BE>();
1489