1 //===- InstCombineAndOrXor.cpp --------------------------------------------===//
2 //
3 // Part of the LLVM Project, under the Apache License v2.0 with LLVM Exceptions.
4 // See https://llvm.org/LICENSE.txt for license information.
5 // SPDX-License-Identifier: Apache-2.0 WITH LLVM-exception
6 //
7 //===----------------------------------------------------------------------===//
8 //
9 // This file implements the visitAnd, visitOr, and visitXor functions.
10 //
11 //===----------------------------------------------------------------------===//
12 
13 #include "InstCombineInternal.h"
14 #include "llvm/Analysis/CmpInstAnalysis.h"
15 #include "llvm/Analysis/InstructionSimplify.h"
16 #include "llvm/IR/ConstantRange.h"
17 #include "llvm/IR/Intrinsics.h"
18 #include "llvm/IR/PatternMatch.h"
19 #include "llvm/Transforms/InstCombine/InstCombiner.h"
20 #include "llvm/Transforms/Utils/Local.h"
21 
22 using namespace llvm;
23 using namespace PatternMatch;
24 
25 #define DEBUG_TYPE "instcombine"
26 
27 /// This is the complement of getICmpCode, which turns an opcode and two
28 /// operands into either a constant true or false, or a brand new ICmp
29 /// instruction. The sign is passed in to determine which kind of predicate to
30 /// use in the new icmp instruction.
31 static Value *getNewICmpValue(unsigned Code, bool Sign, Value *LHS, Value *RHS,
32                               InstCombiner::BuilderTy &Builder) {
33   ICmpInst::Predicate NewPred;
34   if (Constant *TorF = getPredForICmpCode(Code, Sign, LHS->getType(), NewPred))
35     return TorF;
36   return Builder.CreateICmp(NewPred, LHS, RHS);
37 }
38 
39 /// This is the complement of getFCmpCode, which turns an opcode and two
40 /// operands into either a FCmp instruction, or a true/false constant.
41 static Value *getFCmpValue(unsigned Code, Value *LHS, Value *RHS,
42                            InstCombiner::BuilderTy &Builder) {
43   FCmpInst::Predicate NewPred;
44   if (Constant *TorF = getPredForFCmpCode(Code, LHS->getType(), NewPred))
45     return TorF;
46   return Builder.CreateFCmp(NewPred, LHS, RHS);
47 }
48 
49 /// Transform BITWISE_OP(BSWAP(A),BSWAP(B)) or
50 /// BITWISE_OP(BSWAP(A), Constant) to BSWAP(BITWISE_OP(A, B))
51 /// \param I Binary operator to transform.
52 /// \return Pointer to node that must replace the original binary operator, or
53 ///         null pointer if no transformation was made.
54 static Value *SimplifyBSwap(BinaryOperator &I,
55                             InstCombiner::BuilderTy &Builder) {
56   assert(I.isBitwiseLogicOp() && "Unexpected opcode for bswap simplifying");
57 
58   Value *OldLHS = I.getOperand(0);
59   Value *OldRHS = I.getOperand(1);
60 
61   Value *NewLHS;
62   if (!match(OldLHS, m_BSwap(m_Value(NewLHS))))
63     return nullptr;
64 
65   Value *NewRHS;
66   const APInt *C;
67 
68   if (match(OldRHS, m_BSwap(m_Value(NewRHS)))) {
69     // OP( BSWAP(x), BSWAP(y) ) -> BSWAP( OP(x, y) )
70     if (!OldLHS->hasOneUse() && !OldRHS->hasOneUse())
71       return nullptr;
72     // NewRHS initialized by the matcher.
73   } else if (match(OldRHS, m_APInt(C))) {
74     // OP( BSWAP(x), CONSTANT ) -> BSWAP( OP(x, BSWAP(CONSTANT) ) )
75     if (!OldLHS->hasOneUse())
76       return nullptr;
77     NewRHS = ConstantInt::get(I.getType(), C->byteSwap());
78   } else
79     return nullptr;
80 
81   Value *BinOp = Builder.CreateBinOp(I.getOpcode(), NewLHS, NewRHS);
82   Function *F = Intrinsic::getDeclaration(I.getModule(), Intrinsic::bswap,
83                                           I.getType());
84   return Builder.CreateCall(F, BinOp);
85 }
86 
87 /// Emit a computation of: (V >= Lo && V < Hi) if Inside is true, otherwise
88 /// (V < Lo || V >= Hi). This method expects that Lo < Hi. IsSigned indicates
89 /// whether to treat V, Lo, and Hi as signed or not.
90 Value *InstCombinerImpl::insertRangeTest(Value *V, const APInt &Lo,
91                                          const APInt &Hi, bool isSigned,
92                                          bool Inside) {
93   assert((isSigned ? Lo.slt(Hi) : Lo.ult(Hi)) &&
94          "Lo is not < Hi in range emission code!");
95 
96   Type *Ty = V->getType();
97 
98   // V >= Min && V <  Hi --> V <  Hi
99   // V <  Min || V >= Hi --> V >= Hi
100   ICmpInst::Predicate Pred = Inside ? ICmpInst::ICMP_ULT : ICmpInst::ICMP_UGE;
101   if (isSigned ? Lo.isMinSignedValue() : Lo.isMinValue()) {
102     Pred = isSigned ? ICmpInst::getSignedPredicate(Pred) : Pred;
103     return Builder.CreateICmp(Pred, V, ConstantInt::get(Ty, Hi));
104   }
105 
106   // V >= Lo && V <  Hi --> V - Lo u<  Hi - Lo
107   // V <  Lo || V >= Hi --> V - Lo u>= Hi - Lo
108   Value *VMinusLo =
109       Builder.CreateSub(V, ConstantInt::get(Ty, Lo), V->getName() + ".off");
110   Constant *HiMinusLo = ConstantInt::get(Ty, Hi - Lo);
111   return Builder.CreateICmp(Pred, VMinusLo, HiMinusLo);
112 }
113 
114 /// Classify (icmp eq (A & B), C) and (icmp ne (A & B), C) as matching patterns
115 /// that can be simplified.
116 /// One of A and B is considered the mask. The other is the value. This is
117 /// described as the "AMask" or "BMask" part of the enum. If the enum contains
118 /// only "Mask", then both A and B can be considered masks. If A is the mask,
119 /// then it was proven that (A & C) == C. This is trivial if C == A or C == 0.
120 /// If both A and C are constants, this proof is also easy.
121 /// For the following explanations, we assume that A is the mask.
122 ///
123 /// "AllOnes" declares that the comparison is true only if (A & B) == A or all
124 /// bits of A are set in B.
125 ///   Example: (icmp eq (A & 3), 3) -> AMask_AllOnes
126 ///
127 /// "AllZeros" declares that the comparison is true only if (A & B) == 0 or all
128 /// bits of A are cleared in B.
129 ///   Example: (icmp eq (A & 3), 0) -> Mask_AllZeroes
130 ///
131 /// "Mixed" declares that (A & B) == C and C might or might not contain any
132 /// number of one bits and zero bits.
133 ///   Example: (icmp eq (A & 3), 1) -> AMask_Mixed
134 ///
135 /// "Not" means that in above descriptions "==" should be replaced by "!=".
136 ///   Example: (icmp ne (A & 3), 3) -> AMask_NotAllOnes
137 ///
138 /// If the mask A contains a single bit, then the following is equivalent:
139 ///    (icmp eq (A & B), A) equals (icmp ne (A & B), 0)
140 ///    (icmp ne (A & B), A) equals (icmp eq (A & B), 0)
141 enum MaskedICmpType {
142   AMask_AllOnes           =     1,
143   AMask_NotAllOnes        =     2,
144   BMask_AllOnes           =     4,
145   BMask_NotAllOnes        =     8,
146   Mask_AllZeros           =    16,
147   Mask_NotAllZeros        =    32,
148   AMask_Mixed             =    64,
149   AMask_NotMixed          =   128,
150   BMask_Mixed             =   256,
151   BMask_NotMixed          =   512
152 };
153 
154 /// Return the set of patterns (from MaskedICmpType) that (icmp SCC (A & B), C)
155 /// satisfies.
156 static unsigned getMaskedICmpType(Value *A, Value *B, Value *C,
157                                   ICmpInst::Predicate Pred) {
158   const APInt *ConstA = nullptr, *ConstB = nullptr, *ConstC = nullptr;
159   match(A, m_APInt(ConstA));
160   match(B, m_APInt(ConstB));
161   match(C, m_APInt(ConstC));
162   bool IsEq = (Pred == ICmpInst::ICMP_EQ);
163   bool IsAPow2 = ConstA && ConstA->isPowerOf2();
164   bool IsBPow2 = ConstB && ConstB->isPowerOf2();
165   unsigned MaskVal = 0;
166   if (ConstC && ConstC->isZero()) {
167     // if C is zero, then both A and B qualify as mask
168     MaskVal |= (IsEq ? (Mask_AllZeros | AMask_Mixed | BMask_Mixed)
169                      : (Mask_NotAllZeros | AMask_NotMixed | BMask_NotMixed));
170     if (IsAPow2)
171       MaskVal |= (IsEq ? (AMask_NotAllOnes | AMask_NotMixed)
172                        : (AMask_AllOnes | AMask_Mixed));
173     if (IsBPow2)
174       MaskVal |= (IsEq ? (BMask_NotAllOnes | BMask_NotMixed)
175                        : (BMask_AllOnes | BMask_Mixed));
176     return MaskVal;
177   }
178 
179   if (A == C) {
180     MaskVal |= (IsEq ? (AMask_AllOnes | AMask_Mixed)
181                      : (AMask_NotAllOnes | AMask_NotMixed));
182     if (IsAPow2)
183       MaskVal |= (IsEq ? (Mask_NotAllZeros | AMask_NotMixed)
184                        : (Mask_AllZeros | AMask_Mixed));
185   } else if (ConstA && ConstC && ConstC->isSubsetOf(*ConstA)) {
186     MaskVal |= (IsEq ? AMask_Mixed : AMask_NotMixed);
187   }
188 
189   if (B == C) {
190     MaskVal |= (IsEq ? (BMask_AllOnes | BMask_Mixed)
191                      : (BMask_NotAllOnes | BMask_NotMixed));
192     if (IsBPow2)
193       MaskVal |= (IsEq ? (Mask_NotAllZeros | BMask_NotMixed)
194                        : (Mask_AllZeros | BMask_Mixed));
195   } else if (ConstB && ConstC && ConstC->isSubsetOf(*ConstB)) {
196     MaskVal |= (IsEq ? BMask_Mixed : BMask_NotMixed);
197   }
198 
199   return MaskVal;
200 }
201 
202 /// Convert an analysis of a masked ICmp into its equivalent if all boolean
203 /// operations had the opposite sense. Since each "NotXXX" flag (recording !=)
204 /// is adjacent to the corresponding normal flag (recording ==), this just
205 /// involves swapping those bits over.
206 static unsigned conjugateICmpMask(unsigned Mask) {
207   unsigned NewMask;
208   NewMask = (Mask & (AMask_AllOnes | BMask_AllOnes | Mask_AllZeros |
209                      AMask_Mixed | BMask_Mixed))
210             << 1;
211 
212   NewMask |= (Mask & (AMask_NotAllOnes | BMask_NotAllOnes | Mask_NotAllZeros |
213                       AMask_NotMixed | BMask_NotMixed))
214              >> 1;
215 
216   return NewMask;
217 }
218 
219 // Adapts the external decomposeBitTestICmp for local use.
220 static bool decomposeBitTestICmp(Value *LHS, Value *RHS, CmpInst::Predicate &Pred,
221                                  Value *&X, Value *&Y, Value *&Z) {
222   APInt Mask;
223   if (!llvm::decomposeBitTestICmp(LHS, RHS, Pred, X, Mask))
224     return false;
225 
226   Y = ConstantInt::get(X->getType(), Mask);
227   Z = ConstantInt::get(X->getType(), 0);
228   return true;
229 }
230 
231 /// Handle (icmp(A & B) ==/!= C) &/| (icmp(A & D) ==/!= E).
232 /// Return the pattern classes (from MaskedICmpType) for the left hand side and
233 /// the right hand side as a pair.
234 /// LHS and RHS are the left hand side and the right hand side ICmps and PredL
235 /// and PredR are their predicates, respectively.
236 static
237 Optional<std::pair<unsigned, unsigned>>
238 getMaskedTypeForICmpPair(Value *&A, Value *&B, Value *&C,
239                          Value *&D, Value *&E, ICmpInst *LHS,
240                          ICmpInst *RHS,
241                          ICmpInst::Predicate &PredL,
242                          ICmpInst::Predicate &PredR) {
243   // Don't allow pointers. Splat vectors are fine.
244   if (!LHS->getOperand(0)->getType()->isIntOrIntVectorTy() ||
245       !RHS->getOperand(0)->getType()->isIntOrIntVectorTy())
246     return None;
247 
248   // Here comes the tricky part:
249   // LHS might be of the form L11 & L12 == X, X == L21 & L22,
250   // and L11 & L12 == L21 & L22. The same goes for RHS.
251   // Now we must find those components L** and R**, that are equal, so
252   // that we can extract the parameters A, B, C, D, and E for the canonical
253   // above.
254   Value *L1 = LHS->getOperand(0);
255   Value *L2 = LHS->getOperand(1);
256   Value *L11, *L12, *L21, *L22;
257   // Check whether the icmp can be decomposed into a bit test.
258   if (decomposeBitTestICmp(L1, L2, PredL, L11, L12, L2)) {
259     L21 = L22 = L1 = nullptr;
260   } else {
261     // Look for ANDs in the LHS icmp.
262     if (!match(L1, m_And(m_Value(L11), m_Value(L12)))) {
263       // Any icmp can be viewed as being trivially masked; if it allows us to
264       // remove one, it's worth it.
265       L11 = L1;
266       L12 = Constant::getAllOnesValue(L1->getType());
267     }
268 
269     if (!match(L2, m_And(m_Value(L21), m_Value(L22)))) {
270       L21 = L2;
271       L22 = Constant::getAllOnesValue(L2->getType());
272     }
273   }
274 
275   // Bail if LHS was a icmp that can't be decomposed into an equality.
276   if (!ICmpInst::isEquality(PredL))
277     return None;
278 
279   Value *R1 = RHS->getOperand(0);
280   Value *R2 = RHS->getOperand(1);
281   Value *R11, *R12;
282   bool Ok = false;
283   if (decomposeBitTestICmp(R1, R2, PredR, R11, R12, R2)) {
284     if (R11 == L11 || R11 == L12 || R11 == L21 || R11 == L22) {
285       A = R11;
286       D = R12;
287     } else if (R12 == L11 || R12 == L12 || R12 == L21 || R12 == L22) {
288       A = R12;
289       D = R11;
290     } else {
291       return None;
292     }
293     E = R2;
294     R1 = nullptr;
295     Ok = true;
296   } else {
297     if (!match(R1, m_And(m_Value(R11), m_Value(R12)))) {
298       // As before, model no mask as a trivial mask if it'll let us do an
299       // optimization.
300       R11 = R1;
301       R12 = Constant::getAllOnesValue(R1->getType());
302     }
303 
304     if (R11 == L11 || R11 == L12 || R11 == L21 || R11 == L22) {
305       A = R11;
306       D = R12;
307       E = R2;
308       Ok = true;
309     } else if (R12 == L11 || R12 == L12 || R12 == L21 || R12 == L22) {
310       A = R12;
311       D = R11;
312       E = R2;
313       Ok = true;
314     }
315   }
316 
317   // Bail if RHS was a icmp that can't be decomposed into an equality.
318   if (!ICmpInst::isEquality(PredR))
319     return None;
320 
321   // Look for ANDs on the right side of the RHS icmp.
322   if (!Ok) {
323     if (!match(R2, m_And(m_Value(R11), m_Value(R12)))) {
324       R11 = R2;
325       R12 = Constant::getAllOnesValue(R2->getType());
326     }
327 
328     if (R11 == L11 || R11 == L12 || R11 == L21 || R11 == L22) {
329       A = R11;
330       D = R12;
331       E = R1;
332       Ok = true;
333     } else if (R12 == L11 || R12 == L12 || R12 == L21 || R12 == L22) {
334       A = R12;
335       D = R11;
336       E = R1;
337       Ok = true;
338     } else {
339       return None;
340     }
341 
342     assert(Ok && "Failed to find AND on the right side of the RHS icmp.");
343   }
344 
345   if (L11 == A) {
346     B = L12;
347     C = L2;
348   } else if (L12 == A) {
349     B = L11;
350     C = L2;
351   } else if (L21 == A) {
352     B = L22;
353     C = L1;
354   } else if (L22 == A) {
355     B = L21;
356     C = L1;
357   }
358 
359   unsigned LeftType = getMaskedICmpType(A, B, C, PredL);
360   unsigned RightType = getMaskedICmpType(A, D, E, PredR);
361   return Optional<std::pair<unsigned, unsigned>>(std::make_pair(LeftType, RightType));
362 }
363 
364 /// Try to fold (icmp(A & B) ==/!= C) &/| (icmp(A & D) ==/!= E) into a single
365 /// (icmp(A & X) ==/!= Y), where the left-hand side is of type Mask_NotAllZeros
366 /// and the right hand side is of type BMask_Mixed. For example,
367 /// (icmp (A & 12) != 0) & (icmp (A & 15) == 8) -> (icmp (A & 15) == 8).
368 static Value *foldLogOpOfMaskedICmps_NotAllZeros_BMask_Mixed(
369     ICmpInst *LHS, ICmpInst *RHS, bool IsAnd, Value *A, Value *B, Value *C,
370     Value *D, Value *E, ICmpInst::Predicate PredL, ICmpInst::Predicate PredR,
371     InstCombiner::BuilderTy &Builder) {
372   // We are given the canonical form:
373   //   (icmp ne (A & B), 0) & (icmp eq (A & D), E).
374   // where D & E == E.
375   //
376   // If IsAnd is false, we get it in negated form:
377   //   (icmp eq (A & B), 0) | (icmp ne (A & D), E) ->
378   //      !((icmp ne (A & B), 0) & (icmp eq (A & D), E)).
379   //
380   // We currently handle the case of B, C, D, E are constant.
381   //
382   ConstantInt *BCst, *CCst, *DCst, *ECst;
383   if (!match(B, m_ConstantInt(BCst)) || !match(C, m_ConstantInt(CCst)) ||
384       !match(D, m_ConstantInt(DCst)) || !match(E, m_ConstantInt(ECst)))
385     return nullptr;
386 
387   ICmpInst::Predicate NewCC = IsAnd ? ICmpInst::ICMP_EQ : ICmpInst::ICMP_NE;
388 
389   // Update E to the canonical form when D is a power of two and RHS is
390   // canonicalized as,
391   // (icmp ne (A & D), 0) -> (icmp eq (A & D), D) or
392   // (icmp ne (A & D), D) -> (icmp eq (A & D), 0).
393   if (PredR != NewCC)
394     ECst = cast<ConstantInt>(ConstantExpr::getXor(DCst, ECst));
395 
396   // If B or D is zero, skip because if LHS or RHS can be trivially folded by
397   // other folding rules and this pattern won't apply any more.
398   if (BCst->getValue() == 0 || DCst->getValue() == 0)
399     return nullptr;
400 
401   // If B and D don't intersect, ie. (B & D) == 0, no folding because we can't
402   // deduce anything from it.
403   // For example,
404   // (icmp ne (A & 12), 0) & (icmp eq (A & 3), 1) -> no folding.
405   if ((BCst->getValue() & DCst->getValue()) == 0)
406     return nullptr;
407 
408   // If the following two conditions are met:
409   //
410   // 1. mask B covers only a single bit that's not covered by mask D, that is,
411   // (B & (B ^ D)) is a power of 2 (in other words, B minus the intersection of
412   // B and D has only one bit set) and,
413   //
414   // 2. RHS (and E) indicates that the rest of B's bits are zero (in other
415   // words, the intersection of B and D is zero), that is, ((B & D) & E) == 0
416   //
417   // then that single bit in B must be one and thus the whole expression can be
418   // folded to
419   //   (A & (B | D)) == (B & (B ^ D)) | E.
420   //
421   // For example,
422   // (icmp ne (A & 12), 0) & (icmp eq (A & 7), 1) -> (icmp eq (A & 15), 9)
423   // (icmp ne (A & 15), 0) & (icmp eq (A & 7), 0) -> (icmp eq (A & 15), 8)
424   if ((((BCst->getValue() & DCst->getValue()) & ECst->getValue()) == 0) &&
425       (BCst->getValue() & (BCst->getValue() ^ DCst->getValue())).isPowerOf2()) {
426     APInt BorD = BCst->getValue() | DCst->getValue();
427     APInt BandBxorDorE = (BCst->getValue() & (BCst->getValue() ^ DCst->getValue())) |
428         ECst->getValue();
429     Value *NewMask = ConstantInt::get(BCst->getType(), BorD);
430     Value *NewMaskedValue = ConstantInt::get(BCst->getType(), BandBxorDorE);
431     Value *NewAnd = Builder.CreateAnd(A, NewMask);
432     return Builder.CreateICmp(NewCC, NewAnd, NewMaskedValue);
433   }
434 
435   auto IsSubSetOrEqual = [](ConstantInt *C1, ConstantInt *C2) {
436     return (C1->getValue() & C2->getValue()) == C1->getValue();
437   };
438   auto IsSuperSetOrEqual = [](ConstantInt *C1, ConstantInt *C2) {
439     return (C1->getValue() & C2->getValue()) == C2->getValue();
440   };
441 
442   // In the following, we consider only the cases where B is a superset of D, B
443   // is a subset of D, or B == D because otherwise there's at least one bit
444   // covered by B but not D, in which case we can't deduce much from it, so
445   // no folding (aside from the single must-be-one bit case right above.)
446   // For example,
447   // (icmp ne (A & 14), 0) & (icmp eq (A & 3), 1) -> no folding.
448   if (!IsSubSetOrEqual(BCst, DCst) && !IsSuperSetOrEqual(BCst, DCst))
449     return nullptr;
450 
451   // At this point, either B is a superset of D, B is a subset of D or B == D.
452 
453   // If E is zero, if B is a subset of (or equal to) D, LHS and RHS contradict
454   // and the whole expression becomes false (or true if negated), otherwise, no
455   // folding.
456   // For example,
457   // (icmp ne (A & 3), 0) & (icmp eq (A & 7), 0) -> false.
458   // (icmp ne (A & 15), 0) & (icmp eq (A & 3), 0) -> no folding.
459   if (ECst->isZero()) {
460     if (IsSubSetOrEqual(BCst, DCst))
461       return ConstantInt::get(LHS->getType(), !IsAnd);
462     return nullptr;
463   }
464 
465   // At this point, B, D, E aren't zero and (B & D) == B, (B & D) == D or B ==
466   // D. If B is a superset of (or equal to) D, since E is not zero, LHS is
467   // subsumed by RHS (RHS implies LHS.) So the whole expression becomes
468   // RHS. For example,
469   // (icmp ne (A & 255), 0) & (icmp eq (A & 15), 8) -> (icmp eq (A & 15), 8).
470   // (icmp ne (A & 15), 0) & (icmp eq (A & 15), 8) -> (icmp eq (A & 15), 8).
471   if (IsSuperSetOrEqual(BCst, DCst))
472     return RHS;
473   // Otherwise, B is a subset of D. If B and E have a common bit set,
474   // ie. (B & E) != 0, then LHS is subsumed by RHS. For example.
475   // (icmp ne (A & 12), 0) & (icmp eq (A & 15), 8) -> (icmp eq (A & 15), 8).
476   assert(IsSubSetOrEqual(BCst, DCst) && "Precondition due to above code");
477   if ((BCst->getValue() & ECst->getValue()) != 0)
478     return RHS;
479   // Otherwise, LHS and RHS contradict and the whole expression becomes false
480   // (or true if negated.) For example,
481   // (icmp ne (A & 7), 0) & (icmp eq (A & 15), 8) -> false.
482   // (icmp ne (A & 6), 0) & (icmp eq (A & 15), 8) -> false.
483   return ConstantInt::get(LHS->getType(), !IsAnd);
484 }
485 
486 /// Try to fold (icmp(A & B) ==/!= 0) &/| (icmp(A & D) ==/!= E) into a single
487 /// (icmp(A & X) ==/!= Y), where the left-hand side and the right hand side
488 /// aren't of the common mask pattern type.
489 static Value *foldLogOpOfMaskedICmpsAsymmetric(
490     ICmpInst *LHS, ICmpInst *RHS, bool IsAnd, Value *A, Value *B, Value *C,
491     Value *D, Value *E, ICmpInst::Predicate PredL, ICmpInst::Predicate PredR,
492     unsigned LHSMask, unsigned RHSMask, InstCombiner::BuilderTy &Builder) {
493   assert(ICmpInst::isEquality(PredL) && ICmpInst::isEquality(PredR) &&
494          "Expected equality predicates for masked type of icmps.");
495   // Handle Mask_NotAllZeros-BMask_Mixed cases.
496   // (icmp ne/eq (A & B), C) &/| (icmp eq/ne (A & D), E), or
497   // (icmp eq/ne (A & B), C) &/| (icmp ne/eq (A & D), E)
498   //    which gets swapped to
499   //    (icmp ne/eq (A & D), E) &/| (icmp eq/ne (A & B), C).
500   if (!IsAnd) {
501     LHSMask = conjugateICmpMask(LHSMask);
502     RHSMask = conjugateICmpMask(RHSMask);
503   }
504   if ((LHSMask & Mask_NotAllZeros) && (RHSMask & BMask_Mixed)) {
505     if (Value *V = foldLogOpOfMaskedICmps_NotAllZeros_BMask_Mixed(
506             LHS, RHS, IsAnd, A, B, C, D, E,
507             PredL, PredR, Builder)) {
508       return V;
509     }
510   } else if ((LHSMask & BMask_Mixed) && (RHSMask & Mask_NotAllZeros)) {
511     if (Value *V = foldLogOpOfMaskedICmps_NotAllZeros_BMask_Mixed(
512             RHS, LHS, IsAnd, A, D, E, B, C,
513             PredR, PredL, Builder)) {
514       return V;
515     }
516   }
517   return nullptr;
518 }
519 
520 /// Try to fold (icmp(A & B) ==/!= C) &/| (icmp(A & D) ==/!= E)
521 /// into a single (icmp(A & X) ==/!= Y).
522 static Value *foldLogOpOfMaskedICmps(ICmpInst *LHS, ICmpInst *RHS, bool IsAnd,
523                                      InstCombiner::BuilderTy &Builder) {
524   Value *A = nullptr, *B = nullptr, *C = nullptr, *D = nullptr, *E = nullptr;
525   ICmpInst::Predicate PredL = LHS->getPredicate(), PredR = RHS->getPredicate();
526   Optional<std::pair<unsigned, unsigned>> MaskPair =
527       getMaskedTypeForICmpPair(A, B, C, D, E, LHS, RHS, PredL, PredR);
528   if (!MaskPair)
529     return nullptr;
530   assert(ICmpInst::isEquality(PredL) && ICmpInst::isEquality(PredR) &&
531          "Expected equality predicates for masked type of icmps.");
532   unsigned LHSMask = MaskPair->first;
533   unsigned RHSMask = MaskPair->second;
534   unsigned Mask = LHSMask & RHSMask;
535   if (Mask == 0) {
536     // Even if the two sides don't share a common pattern, check if folding can
537     // still happen.
538     if (Value *V = foldLogOpOfMaskedICmpsAsymmetric(
539             LHS, RHS, IsAnd, A, B, C, D, E, PredL, PredR, LHSMask, RHSMask,
540             Builder))
541       return V;
542     return nullptr;
543   }
544 
545   // In full generality:
546   //     (icmp (A & B) Op C) | (icmp (A & D) Op E)
547   // ==  ![ (icmp (A & B) !Op C) & (icmp (A & D) !Op E) ]
548   //
549   // If the latter can be converted into (icmp (A & X) Op Y) then the former is
550   // equivalent to (icmp (A & X) !Op Y).
551   //
552   // Therefore, we can pretend for the rest of this function that we're dealing
553   // with the conjunction, provided we flip the sense of any comparisons (both
554   // input and output).
555 
556   // In most cases we're going to produce an EQ for the "&&" case.
557   ICmpInst::Predicate NewCC = IsAnd ? ICmpInst::ICMP_EQ : ICmpInst::ICMP_NE;
558   if (!IsAnd) {
559     // Convert the masking analysis into its equivalent with negated
560     // comparisons.
561     Mask = conjugateICmpMask(Mask);
562   }
563 
564   if (Mask & Mask_AllZeros) {
565     // (icmp eq (A & B), 0) & (icmp eq (A & D), 0)
566     // -> (icmp eq (A & (B|D)), 0)
567     Value *NewOr = Builder.CreateOr(B, D);
568     Value *NewAnd = Builder.CreateAnd(A, NewOr);
569     // We can't use C as zero because we might actually handle
570     //   (icmp ne (A & B), B) & (icmp ne (A & D), D)
571     // with B and D, having a single bit set.
572     Value *Zero = Constant::getNullValue(A->getType());
573     return Builder.CreateICmp(NewCC, NewAnd, Zero);
574   }
575   if (Mask & BMask_AllOnes) {
576     // (icmp eq (A & B), B) & (icmp eq (A & D), D)
577     // -> (icmp eq (A & (B|D)), (B|D))
578     Value *NewOr = Builder.CreateOr(B, D);
579     Value *NewAnd = Builder.CreateAnd(A, NewOr);
580     return Builder.CreateICmp(NewCC, NewAnd, NewOr);
581   }
582   if (Mask & AMask_AllOnes) {
583     // (icmp eq (A & B), A) & (icmp eq (A & D), A)
584     // -> (icmp eq (A & (B&D)), A)
585     Value *NewAnd1 = Builder.CreateAnd(B, D);
586     Value *NewAnd2 = Builder.CreateAnd(A, NewAnd1);
587     return Builder.CreateICmp(NewCC, NewAnd2, A);
588   }
589 
590   // Remaining cases assume at least that B and D are constant, and depend on
591   // their actual values. This isn't strictly necessary, just a "handle the
592   // easy cases for now" decision.
593   const APInt *ConstB, *ConstD;
594   if (!match(B, m_APInt(ConstB)) || !match(D, m_APInt(ConstD)))
595     return nullptr;
596 
597   if (Mask & (Mask_NotAllZeros | BMask_NotAllOnes)) {
598     // (icmp ne (A & B), 0) & (icmp ne (A & D), 0) and
599     // (icmp ne (A & B), B) & (icmp ne (A & D), D)
600     //     -> (icmp ne (A & B), 0) or (icmp ne (A & D), 0)
601     // Only valid if one of the masks is a superset of the other (check "B&D" is
602     // the same as either B or D).
603     APInt NewMask = *ConstB & *ConstD;
604     if (NewMask == *ConstB)
605       return LHS;
606     else if (NewMask == *ConstD)
607       return RHS;
608   }
609 
610   if (Mask & AMask_NotAllOnes) {
611     // (icmp ne (A & B), B) & (icmp ne (A & D), D)
612     //     -> (icmp ne (A & B), A) or (icmp ne (A & D), A)
613     // Only valid if one of the masks is a superset of the other (check "B|D" is
614     // the same as either B or D).
615     APInt NewMask = *ConstB | *ConstD;
616     if (NewMask == *ConstB)
617       return LHS;
618     else if (NewMask == *ConstD)
619       return RHS;
620   }
621 
622   if (Mask & BMask_Mixed) {
623     // (icmp eq (A & B), C) & (icmp eq (A & D), E)
624     // We already know that B & C == C && D & E == E.
625     // If we can prove that (B & D) & (C ^ E) == 0, that is, the bits of
626     // C and E, which are shared by both the mask B and the mask D, don't
627     // contradict, then we can transform to
628     // -> (icmp eq (A & (B|D)), (C|E))
629     // Currently, we only handle the case of B, C, D, and E being constant.
630     // We can't simply use C and E because we might actually handle
631     //   (icmp ne (A & B), B) & (icmp eq (A & D), D)
632     // with B and D, having a single bit set.
633     const APInt *OldConstC, *OldConstE;
634     if (!match(C, m_APInt(OldConstC)) || !match(E, m_APInt(OldConstE)))
635       return nullptr;
636 
637     const APInt ConstC = PredL != NewCC ? *ConstB ^ *OldConstC : *OldConstC;
638     const APInt ConstE = PredR != NewCC ? *ConstD ^ *OldConstE : *OldConstE;
639 
640     // If there is a conflict, we should actually return a false for the
641     // whole construct.
642     if (((*ConstB & *ConstD) & (ConstC ^ ConstE)).getBoolValue())
643       return ConstantInt::get(LHS->getType(), !IsAnd);
644 
645     Value *NewOr1 = Builder.CreateOr(B, D);
646     Value *NewAnd = Builder.CreateAnd(A, NewOr1);
647     Constant *NewOr2 = ConstantInt::get(A->getType(), ConstC | ConstE);
648     return Builder.CreateICmp(NewCC, NewAnd, NewOr2);
649   }
650 
651   return nullptr;
652 }
653 
654 /// Try to fold a signed range checked with lower bound 0 to an unsigned icmp.
655 /// Example: (icmp sge x, 0) & (icmp slt x, n) --> icmp ult x, n
656 /// If \p Inverted is true then the check is for the inverted range, e.g.
657 /// (icmp slt x, 0) | (icmp sgt x, n) --> icmp ugt x, n
658 Value *InstCombinerImpl::simplifyRangeCheck(ICmpInst *Cmp0, ICmpInst *Cmp1,
659                                             bool Inverted) {
660   // Check the lower range comparison, e.g. x >= 0
661   // InstCombine already ensured that if there is a constant it's on the RHS.
662   ConstantInt *RangeStart = dyn_cast<ConstantInt>(Cmp0->getOperand(1));
663   if (!RangeStart)
664     return nullptr;
665 
666   ICmpInst::Predicate Pred0 = (Inverted ? Cmp0->getInversePredicate() :
667                                Cmp0->getPredicate());
668 
669   // Accept x > -1 or x >= 0 (after potentially inverting the predicate).
670   if (!((Pred0 == ICmpInst::ICMP_SGT && RangeStart->isMinusOne()) ||
671         (Pred0 == ICmpInst::ICMP_SGE && RangeStart->isZero())))
672     return nullptr;
673 
674   ICmpInst::Predicate Pred1 = (Inverted ? Cmp1->getInversePredicate() :
675                                Cmp1->getPredicate());
676 
677   Value *Input = Cmp0->getOperand(0);
678   Value *RangeEnd;
679   if (Cmp1->getOperand(0) == Input) {
680     // For the upper range compare we have: icmp x, n
681     RangeEnd = Cmp1->getOperand(1);
682   } else if (Cmp1->getOperand(1) == Input) {
683     // For the upper range compare we have: icmp n, x
684     RangeEnd = Cmp1->getOperand(0);
685     Pred1 = ICmpInst::getSwappedPredicate(Pred1);
686   } else {
687     return nullptr;
688   }
689 
690   // Check the upper range comparison, e.g. x < n
691   ICmpInst::Predicate NewPred;
692   switch (Pred1) {
693     case ICmpInst::ICMP_SLT: NewPred = ICmpInst::ICMP_ULT; break;
694     case ICmpInst::ICMP_SLE: NewPred = ICmpInst::ICMP_ULE; break;
695     default: return nullptr;
696   }
697 
698   // This simplification is only valid if the upper range is not negative.
699   KnownBits Known = computeKnownBits(RangeEnd, /*Depth=*/0, Cmp1);
700   if (!Known.isNonNegative())
701     return nullptr;
702 
703   if (Inverted)
704     NewPred = ICmpInst::getInversePredicate(NewPred);
705 
706   return Builder.CreateICmp(NewPred, Input, RangeEnd);
707 }
708 
709 static Value *
710 foldAndOrOfEqualityCmpsWithConstants(ICmpInst *LHS, ICmpInst *RHS,
711                                      bool JoinedByAnd,
712                                      InstCombiner::BuilderTy &Builder) {
713   Value *X = LHS->getOperand(0);
714   if (X != RHS->getOperand(0))
715     return nullptr;
716 
717   const APInt *C1, *C2;
718   if (!match(LHS->getOperand(1), m_APInt(C1)) ||
719       !match(RHS->getOperand(1), m_APInt(C2)))
720     return nullptr;
721 
722   // We only handle (X != C1 && X != C2) and (X == C1 || X == C2).
723   ICmpInst::Predicate Pred = LHS->getPredicate();
724   if (Pred !=  RHS->getPredicate())
725     return nullptr;
726   if (JoinedByAnd && Pred != ICmpInst::ICMP_NE)
727     return nullptr;
728   if (!JoinedByAnd && Pred != ICmpInst::ICMP_EQ)
729     return nullptr;
730 
731   // The larger unsigned constant goes on the right.
732   if (C1->ugt(*C2))
733     std::swap(C1, C2);
734 
735   APInt Xor = *C1 ^ *C2;
736   if (Xor.isPowerOf2()) {
737     // If LHSC and RHSC differ by only one bit, then set that bit in X and
738     // compare against the larger constant:
739     // (X == C1 || X == C2) --> (X | (C1 ^ C2)) == C2
740     // (X != C1 && X != C2) --> (X | (C1 ^ C2)) != C2
741     // We choose an 'or' with a Pow2 constant rather than the inverse mask with
742     // 'and' because that may lead to smaller codegen from a smaller constant.
743     Value *Or = Builder.CreateOr(X, ConstantInt::get(X->getType(), Xor));
744     return Builder.CreateICmp(Pred, Or, ConstantInt::get(X->getType(), *C2));
745   }
746 
747   return nullptr;
748 }
749 
750 // Fold (iszero(A & K1) | iszero(A & K2)) -> (A & (K1 | K2)) != (K1 | K2)
751 // Fold (!iszero(A & K1) & !iszero(A & K2)) -> (A & (K1 | K2)) == (K1 | K2)
752 Value *InstCombinerImpl::foldAndOrOfICmpsOfAndWithPow2(ICmpInst *LHS,
753                                                        ICmpInst *RHS,
754                                                        Instruction *CxtI,
755                                                        bool IsAnd,
756                                                        bool IsLogical) {
757   CmpInst::Predicate Pred = IsAnd ? CmpInst::ICMP_NE : CmpInst::ICMP_EQ;
758   if (LHS->getPredicate() != Pred || RHS->getPredicate() != Pred)
759     return nullptr;
760 
761   if (!match(LHS->getOperand(1), m_Zero()) ||
762       !match(RHS->getOperand(1), m_Zero()))
763     return nullptr;
764 
765   Value *L1, *L2, *R1, *R2;
766   if (match(LHS->getOperand(0), m_And(m_Value(L1), m_Value(L2))) &&
767       match(RHS->getOperand(0), m_And(m_Value(R1), m_Value(R2)))) {
768     if (L1 == R2 || L2 == R2)
769       std::swap(R1, R2);
770     if (L2 == R1)
771       std::swap(L1, L2);
772 
773     if (L1 == R1 &&
774         isKnownToBeAPowerOfTwo(L2, false, 0, CxtI) &&
775         isKnownToBeAPowerOfTwo(R2, false, 0, CxtI)) {
776       // If this is a logical and/or, then we must prevent propagation of a
777       // poison value from the RHS by inserting freeze.
778       if (IsLogical)
779         R2 = Builder.CreateFreeze(R2);
780       Value *Mask = Builder.CreateOr(L2, R2);
781       Value *Masked = Builder.CreateAnd(L1, Mask);
782       auto NewPred = IsAnd ? CmpInst::ICMP_EQ : CmpInst::ICMP_NE;
783       return Builder.CreateICmp(NewPred, Masked, Mask);
784     }
785   }
786 
787   return nullptr;
788 }
789 
790 /// General pattern:
791 ///   X & Y
792 ///
793 /// Where Y is checking that all the high bits (covered by a mask 4294967168)
794 /// are uniform, i.e.  %arg & 4294967168  can be either  4294967168  or  0
795 /// Pattern can be one of:
796 ///   %t = add        i32 %arg,    128
797 ///   %r = icmp   ult i32 %t,      256
798 /// Or
799 ///   %t0 = shl       i32 %arg,    24
800 ///   %t1 = ashr      i32 %t0,     24
801 ///   %r  = icmp  eq  i32 %t1,     %arg
802 /// Or
803 ///   %t0 = trunc     i32 %arg  to i8
804 ///   %t1 = sext      i8  %t0   to i32
805 ///   %r  = icmp  eq  i32 %t1,     %arg
806 /// This pattern is a signed truncation check.
807 ///
808 /// And X is checking that some bit in that same mask is zero.
809 /// I.e. can be one of:
810 ///   %r = icmp sgt i32   %arg,    -1
811 /// Or
812 ///   %t = and      i32   %arg,    2147483648
813 ///   %r = icmp eq  i32   %t,      0
814 ///
815 /// Since we are checking that all the bits in that mask are the same,
816 /// and a particular bit is zero, what we are really checking is that all the
817 /// masked bits are zero.
818 /// So this should be transformed to:
819 ///   %r = icmp ult i32 %arg, 128
820 static Value *foldSignedTruncationCheck(ICmpInst *ICmp0, ICmpInst *ICmp1,
821                                         Instruction &CxtI,
822                                         InstCombiner::BuilderTy &Builder) {
823   assert(CxtI.getOpcode() == Instruction::And);
824 
825   // Match  icmp ult (add %arg, C01), C1   (C1 == C01 << 1; powers of two)
826   auto tryToMatchSignedTruncationCheck = [](ICmpInst *ICmp, Value *&X,
827                                             APInt &SignBitMask) -> bool {
828     CmpInst::Predicate Pred;
829     const APInt *I01, *I1; // powers of two; I1 == I01 << 1
830     if (!(match(ICmp,
831                 m_ICmp(Pred, m_Add(m_Value(X), m_Power2(I01)), m_Power2(I1))) &&
832           Pred == ICmpInst::ICMP_ULT && I1->ugt(*I01) && I01->shl(1) == *I1))
833       return false;
834     // Which bit is the new sign bit as per the 'signed truncation' pattern?
835     SignBitMask = *I01;
836     return true;
837   };
838 
839   // One icmp needs to be 'signed truncation check'.
840   // We need to match this first, else we will mismatch commutative cases.
841   Value *X1;
842   APInt HighestBit;
843   ICmpInst *OtherICmp;
844   if (tryToMatchSignedTruncationCheck(ICmp1, X1, HighestBit))
845     OtherICmp = ICmp0;
846   else if (tryToMatchSignedTruncationCheck(ICmp0, X1, HighestBit))
847     OtherICmp = ICmp1;
848   else
849     return nullptr;
850 
851   assert(HighestBit.isPowerOf2() && "expected to be power of two (non-zero)");
852 
853   // Try to match/decompose into:  icmp eq (X & Mask), 0
854   auto tryToDecompose = [](ICmpInst *ICmp, Value *&X,
855                            APInt &UnsetBitsMask) -> bool {
856     CmpInst::Predicate Pred = ICmp->getPredicate();
857     // Can it be decomposed into  icmp eq (X & Mask), 0  ?
858     if (llvm::decomposeBitTestICmp(ICmp->getOperand(0), ICmp->getOperand(1),
859                                    Pred, X, UnsetBitsMask,
860                                    /*LookThroughTrunc=*/false) &&
861         Pred == ICmpInst::ICMP_EQ)
862       return true;
863     // Is it  icmp eq (X & Mask), 0  already?
864     const APInt *Mask;
865     if (match(ICmp, m_ICmp(Pred, m_And(m_Value(X), m_APInt(Mask)), m_Zero())) &&
866         Pred == ICmpInst::ICMP_EQ) {
867       UnsetBitsMask = *Mask;
868       return true;
869     }
870     return false;
871   };
872 
873   // And the other icmp needs to be decomposable into a bit test.
874   Value *X0;
875   APInt UnsetBitsMask;
876   if (!tryToDecompose(OtherICmp, X0, UnsetBitsMask))
877     return nullptr;
878 
879   assert(!UnsetBitsMask.isZero() && "empty mask makes no sense.");
880 
881   // Are they working on the same value?
882   Value *X;
883   if (X1 == X0) {
884     // Ok as is.
885     X = X1;
886   } else if (match(X0, m_Trunc(m_Specific(X1)))) {
887     UnsetBitsMask = UnsetBitsMask.zext(X1->getType()->getScalarSizeInBits());
888     X = X1;
889   } else
890     return nullptr;
891 
892   // So which bits should be uniform as per the 'signed truncation check'?
893   // (all the bits starting with (i.e. including) HighestBit)
894   APInt SignBitsMask = ~(HighestBit - 1U);
895 
896   // UnsetBitsMask must have some common bits with SignBitsMask,
897   if (!UnsetBitsMask.intersects(SignBitsMask))
898     return nullptr;
899 
900   // Does UnsetBitsMask contain any bits outside of SignBitsMask?
901   if (!UnsetBitsMask.isSubsetOf(SignBitsMask)) {
902     APInt OtherHighestBit = (~UnsetBitsMask) + 1U;
903     if (!OtherHighestBit.isPowerOf2())
904       return nullptr;
905     HighestBit = APIntOps::umin(HighestBit, OtherHighestBit);
906   }
907   // Else, if it does not, then all is ok as-is.
908 
909   // %r = icmp ult %X, SignBit
910   return Builder.CreateICmpULT(X, ConstantInt::get(X->getType(), HighestBit),
911                                CxtI.getName() + ".simplified");
912 }
913 
914 /// Reduce a pair of compares that check if a value has exactly 1 bit set.
915 static Value *foldIsPowerOf2(ICmpInst *Cmp0, ICmpInst *Cmp1, bool JoinedByAnd,
916                              InstCombiner::BuilderTy &Builder) {
917   // Handle 'and' / 'or' commutation: make the equality check the first operand.
918   if (JoinedByAnd && Cmp1->getPredicate() == ICmpInst::ICMP_NE)
919     std::swap(Cmp0, Cmp1);
920   else if (!JoinedByAnd && Cmp1->getPredicate() == ICmpInst::ICMP_EQ)
921     std::swap(Cmp0, Cmp1);
922 
923   // (X != 0) && (ctpop(X) u< 2) --> ctpop(X) == 1
924   CmpInst::Predicate Pred0, Pred1;
925   Value *X;
926   if (JoinedByAnd && match(Cmp0, m_ICmp(Pred0, m_Value(X), m_ZeroInt())) &&
927       match(Cmp1, m_ICmp(Pred1, m_Intrinsic<Intrinsic::ctpop>(m_Specific(X)),
928                          m_SpecificInt(2))) &&
929       Pred0 == ICmpInst::ICMP_NE && Pred1 == ICmpInst::ICMP_ULT) {
930     Value *CtPop = Cmp1->getOperand(0);
931     return Builder.CreateICmpEQ(CtPop, ConstantInt::get(CtPop->getType(), 1));
932   }
933   // (X == 0) || (ctpop(X) u> 1) --> ctpop(X) != 1
934   if (!JoinedByAnd && match(Cmp0, m_ICmp(Pred0, m_Value(X), m_ZeroInt())) &&
935       match(Cmp1, m_ICmp(Pred1, m_Intrinsic<Intrinsic::ctpop>(m_Specific(X)),
936                          m_SpecificInt(1))) &&
937       Pred0 == ICmpInst::ICMP_EQ && Pred1 == ICmpInst::ICMP_UGT) {
938     Value *CtPop = Cmp1->getOperand(0);
939     return Builder.CreateICmpNE(CtPop, ConstantInt::get(CtPop->getType(), 1));
940   }
941   return nullptr;
942 }
943 
944 /// Commuted variants are assumed to be handled by calling this function again
945 /// with the parameters swapped.
946 static Value *foldUnsignedUnderflowCheck(ICmpInst *ZeroICmp,
947                                          ICmpInst *UnsignedICmp, bool IsAnd,
948                                          const SimplifyQuery &Q,
949                                          InstCombiner::BuilderTy &Builder) {
950   Value *ZeroCmpOp;
951   ICmpInst::Predicate EqPred;
952   if (!match(ZeroICmp, m_ICmp(EqPred, m_Value(ZeroCmpOp), m_Zero())) ||
953       !ICmpInst::isEquality(EqPred))
954     return nullptr;
955 
956   auto IsKnownNonZero = [&](Value *V) {
957     return isKnownNonZero(V, Q.DL, /*Depth=*/0, Q.AC, Q.CxtI, Q.DT);
958   };
959 
960   ICmpInst::Predicate UnsignedPred;
961 
962   Value *A, *B;
963   if (match(UnsignedICmp,
964             m_c_ICmp(UnsignedPred, m_Specific(ZeroCmpOp), m_Value(A))) &&
965       match(ZeroCmpOp, m_c_Add(m_Specific(A), m_Value(B))) &&
966       (ZeroICmp->hasOneUse() || UnsignedICmp->hasOneUse())) {
967     auto GetKnownNonZeroAndOther = [&](Value *&NonZero, Value *&Other) {
968       if (!IsKnownNonZero(NonZero))
969         std::swap(NonZero, Other);
970       return IsKnownNonZero(NonZero);
971     };
972 
973     // Given  ZeroCmpOp = (A + B)
974     //   ZeroCmpOp <= A && ZeroCmpOp != 0  -->  (0-B) <  A
975     //   ZeroCmpOp >  A || ZeroCmpOp == 0  -->  (0-B) >= A
976     //
977     //   ZeroCmpOp <  A && ZeroCmpOp != 0  -->  (0-X) <  Y  iff
978     //   ZeroCmpOp >= A || ZeroCmpOp == 0  -->  (0-X) >= Y  iff
979     //     with X being the value (A/B) that is known to be non-zero,
980     //     and Y being remaining value.
981     if (UnsignedPred == ICmpInst::ICMP_ULE && EqPred == ICmpInst::ICMP_NE &&
982         IsAnd)
983       return Builder.CreateICmpULT(Builder.CreateNeg(B), A);
984     if (UnsignedPred == ICmpInst::ICMP_ULT && EqPred == ICmpInst::ICMP_NE &&
985         IsAnd && GetKnownNonZeroAndOther(B, A))
986       return Builder.CreateICmpULT(Builder.CreateNeg(B), A);
987     if (UnsignedPred == ICmpInst::ICMP_UGT && EqPred == ICmpInst::ICMP_EQ &&
988         !IsAnd)
989       return Builder.CreateICmpUGE(Builder.CreateNeg(B), A);
990     if (UnsignedPred == ICmpInst::ICMP_UGE && EqPred == ICmpInst::ICMP_EQ &&
991         !IsAnd && GetKnownNonZeroAndOther(B, A))
992       return Builder.CreateICmpUGE(Builder.CreateNeg(B), A);
993   }
994 
995   Value *Base, *Offset;
996   if (!match(ZeroCmpOp, m_Sub(m_Value(Base), m_Value(Offset))))
997     return nullptr;
998 
999   if (!match(UnsignedICmp,
1000              m_c_ICmp(UnsignedPred, m_Specific(Base), m_Specific(Offset))) ||
1001       !ICmpInst::isUnsigned(UnsignedPred))
1002     return nullptr;
1003 
1004   // Base >=/> Offset && (Base - Offset) != 0  <-->  Base > Offset
1005   // (no overflow and not null)
1006   if ((UnsignedPred == ICmpInst::ICMP_UGE ||
1007        UnsignedPred == ICmpInst::ICMP_UGT) &&
1008       EqPred == ICmpInst::ICMP_NE && IsAnd)
1009     return Builder.CreateICmpUGT(Base, Offset);
1010 
1011   // Base <=/< Offset || (Base - Offset) == 0  <-->  Base <= Offset
1012   // (overflow or null)
1013   if ((UnsignedPred == ICmpInst::ICMP_ULE ||
1014        UnsignedPred == ICmpInst::ICMP_ULT) &&
1015       EqPred == ICmpInst::ICMP_EQ && !IsAnd)
1016     return Builder.CreateICmpULE(Base, Offset);
1017 
1018   // Base <= Offset && (Base - Offset) != 0  -->  Base < Offset
1019   if (UnsignedPred == ICmpInst::ICMP_ULE && EqPred == ICmpInst::ICMP_NE &&
1020       IsAnd)
1021     return Builder.CreateICmpULT(Base, Offset);
1022 
1023   // Base > Offset || (Base - Offset) == 0  -->  Base >= Offset
1024   if (UnsignedPred == ICmpInst::ICMP_UGT && EqPred == ICmpInst::ICMP_EQ &&
1025       !IsAnd)
1026     return Builder.CreateICmpUGE(Base, Offset);
1027 
1028   return nullptr;
1029 }
1030 
1031 struct IntPart {
1032   Value *From;
1033   unsigned StartBit;
1034   unsigned NumBits;
1035 };
1036 
1037 /// Match an extraction of bits from an integer.
1038 static Optional<IntPart> matchIntPart(Value *V) {
1039   Value *X;
1040   if (!match(V, m_OneUse(m_Trunc(m_Value(X)))))
1041     return None;
1042 
1043   unsigned NumOriginalBits = X->getType()->getScalarSizeInBits();
1044   unsigned NumExtractedBits = V->getType()->getScalarSizeInBits();
1045   Value *Y;
1046   const APInt *Shift;
1047   // For a trunc(lshr Y, Shift) pattern, make sure we're only extracting bits
1048   // from Y, not any shifted-in zeroes.
1049   if (match(X, m_OneUse(m_LShr(m_Value(Y), m_APInt(Shift)))) &&
1050       Shift->ule(NumOriginalBits - NumExtractedBits))
1051     return {{Y, (unsigned)Shift->getZExtValue(), NumExtractedBits}};
1052   return {{X, 0, NumExtractedBits}};
1053 }
1054 
1055 /// Materialize an extraction of bits from an integer in IR.
1056 static Value *extractIntPart(const IntPart &P, IRBuilderBase &Builder) {
1057   Value *V = P.From;
1058   if (P.StartBit)
1059     V = Builder.CreateLShr(V, P.StartBit);
1060   Type *TruncTy = V->getType()->getWithNewBitWidth(P.NumBits);
1061   if (TruncTy != V->getType())
1062     V = Builder.CreateTrunc(V, TruncTy);
1063   return V;
1064 }
1065 
1066 /// (icmp eq X0, Y0) & (icmp eq X1, Y1) -> icmp eq X01, Y01
1067 /// (icmp ne X0, Y0) | (icmp ne X1, Y1) -> icmp ne X01, Y01
1068 /// where X0, X1 and Y0, Y1 are adjacent parts extracted from an integer.
1069 Value *InstCombinerImpl::foldEqOfParts(ICmpInst *Cmp0, ICmpInst *Cmp1,
1070                                        bool IsAnd) {
1071   if (!Cmp0->hasOneUse() || !Cmp1->hasOneUse())
1072     return nullptr;
1073 
1074   CmpInst::Predicate Pred = IsAnd ? CmpInst::ICMP_EQ : CmpInst::ICMP_NE;
1075   if (Cmp0->getPredicate() != Pred || Cmp1->getPredicate() != Pred)
1076     return nullptr;
1077 
1078   Optional<IntPart> L0 = matchIntPart(Cmp0->getOperand(0));
1079   Optional<IntPart> R0 = matchIntPart(Cmp0->getOperand(1));
1080   Optional<IntPart> L1 = matchIntPart(Cmp1->getOperand(0));
1081   Optional<IntPart> R1 = matchIntPart(Cmp1->getOperand(1));
1082   if (!L0 || !R0 || !L1 || !R1)
1083     return nullptr;
1084 
1085   // Make sure the LHS/RHS compare a part of the same value, possibly after
1086   // an operand swap.
1087   if (L0->From != L1->From || R0->From != R1->From) {
1088     if (L0->From != R1->From || R0->From != L1->From)
1089       return nullptr;
1090     std::swap(L1, R1);
1091   }
1092 
1093   // Make sure the extracted parts are adjacent, canonicalizing to L0/R0 being
1094   // the low part and L1/R1 being the high part.
1095   if (L0->StartBit + L0->NumBits != L1->StartBit ||
1096       R0->StartBit + R0->NumBits != R1->StartBit) {
1097     if (L1->StartBit + L1->NumBits != L0->StartBit ||
1098         R1->StartBit + R1->NumBits != R0->StartBit)
1099       return nullptr;
1100     std::swap(L0, L1);
1101     std::swap(R0, R1);
1102   }
1103 
1104   // We can simplify to a comparison of these larger parts of the integers.
1105   IntPart L = {L0->From, L0->StartBit, L0->NumBits + L1->NumBits};
1106   IntPart R = {R0->From, R0->StartBit, R0->NumBits + R1->NumBits};
1107   Value *LValue = extractIntPart(L, Builder);
1108   Value *RValue = extractIntPart(R, Builder);
1109   return Builder.CreateICmp(Pred, LValue, RValue);
1110 }
1111 
1112 /// Reduce logic-of-compares with equality to a constant by substituting a
1113 /// common operand with the constant. Callers are expected to call this with
1114 /// Cmp0/Cmp1 switched to handle logic op commutativity.
1115 static Value *foldAndOrOfICmpsWithConstEq(ICmpInst *Cmp0, ICmpInst *Cmp1,
1116                                           BinaryOperator &Logic,
1117                                           InstCombiner::BuilderTy &Builder,
1118                                           const SimplifyQuery &Q) {
1119   bool IsAnd = Logic.getOpcode() == Instruction::And;
1120   assert((IsAnd || Logic.getOpcode() == Instruction::Or) && "Wrong logic op");
1121 
1122   // Match an equality compare with a non-poison constant as Cmp0.
1123   // Also, give up if the compare can be constant-folded to avoid looping.
1124   ICmpInst::Predicate Pred0;
1125   Value *X;
1126   Constant *C;
1127   if (!match(Cmp0, m_ICmp(Pred0, m_Value(X), m_Constant(C))) ||
1128       !isGuaranteedNotToBeUndefOrPoison(C) || isa<Constant>(X))
1129     return nullptr;
1130   if ((IsAnd && Pred0 != ICmpInst::ICMP_EQ) ||
1131       (!IsAnd && Pred0 != ICmpInst::ICMP_NE))
1132     return nullptr;
1133 
1134   // The other compare must include a common operand (X). Canonicalize the
1135   // common operand as operand 1 (Pred1 is swapped if the common operand was
1136   // operand 0).
1137   Value *Y;
1138   ICmpInst::Predicate Pred1;
1139   if (!match(Cmp1, m_c_ICmp(Pred1, m_Value(Y), m_Deferred(X))))
1140     return nullptr;
1141 
1142   // Replace variable with constant value equivalence to remove a variable use:
1143   // (X == C) && (Y Pred1 X) --> (X == C) && (Y Pred1 C)
1144   // (X != C) || (Y Pred1 X) --> (X != C) || (Y Pred1 C)
1145   // Can think of the 'or' substitution with the 'and' bool equivalent:
1146   // A || B --> A || (!A && B)
1147   Value *SubstituteCmp = SimplifyICmpInst(Pred1, Y, C, Q);
1148   if (!SubstituteCmp) {
1149     // If we need to create a new instruction, require that the old compare can
1150     // be removed.
1151     if (!Cmp1->hasOneUse())
1152       return nullptr;
1153     SubstituteCmp = Builder.CreateICmp(Pred1, Y, C);
1154   }
1155   return Builder.CreateBinOp(Logic.getOpcode(), Cmp0, SubstituteCmp);
1156 }
1157 
1158 /// Fold (icmp Pred1 V1, C1) & (icmp Pred2 V2, C2)
1159 /// or   (icmp Pred1 V1, C1) | (icmp Pred2 V2, C2)
1160 /// into a single comparison using range-based reasoning.
1161 static Value *foldAndOrOfICmpsUsingRanges(
1162     ICmpInst::Predicate Pred1, Value *V1, const APInt &C1,
1163     ICmpInst::Predicate Pred2, Value *V2, const APInt &C2,
1164     IRBuilderBase &Builder, bool IsAnd) {
1165   // Look through add of a constant offset on V1, V2, or both operands. This
1166   // allows us to interpret the V + C' < C'' range idiom into a proper range.
1167   const APInt *Offset1 = nullptr, *Offset2 = nullptr;
1168   if (V1 != V2) {
1169     Value *X;
1170     if (match(V1, m_Add(m_Value(X), m_APInt(Offset1))))
1171       V1 = X;
1172     if (match(V2, m_Add(m_Value(X), m_APInt(Offset2))))
1173       V2 = X;
1174   }
1175 
1176   if (V1 != V2)
1177     return nullptr;
1178 
1179   ConstantRange CR1 = ConstantRange::makeExactICmpRegion(Pred1, C1);
1180   if (Offset1)
1181     CR1 = CR1.subtract(*Offset1);
1182 
1183   ConstantRange CR2 = ConstantRange::makeExactICmpRegion(Pred2, C2);
1184   if (Offset2)
1185     CR2 = CR2.subtract(*Offset2);
1186 
1187   Optional<ConstantRange> CR =
1188       IsAnd ? CR1.exactIntersectWith(CR2) : CR1.exactUnionWith(CR2);
1189   if (!CR)
1190     return nullptr;
1191 
1192   CmpInst::Predicate NewPred;
1193   APInt NewC, Offset;
1194   CR->getEquivalentICmp(NewPred, NewC, Offset);
1195 
1196   Type *Ty = V1->getType();
1197   Value *NewV = V1;
1198   if (Offset != 0)
1199     NewV = Builder.CreateAdd(NewV, ConstantInt::get(Ty, Offset));
1200   return Builder.CreateICmp(NewPred, NewV, ConstantInt::get(Ty, NewC));
1201 }
1202 
1203 /// Fold (icmp)&(icmp) if possible.
1204 Value *InstCombinerImpl::foldAndOfICmps(ICmpInst *LHS, ICmpInst *RHS,
1205                                         BinaryOperator &And) {
1206   const SimplifyQuery Q = SQ.getWithInstruction(&And);
1207 
1208   // Fold (!iszero(A & K1) & !iszero(A & K2)) ->  (A & (K1 | K2)) == (K1 | K2)
1209   // if K1 and K2 are a one-bit mask.
1210   if (Value *V = foldAndOrOfICmpsOfAndWithPow2(LHS, RHS, &And,
1211                                                /* IsAnd */ true))
1212     return V;
1213 
1214   ICmpInst::Predicate PredL = LHS->getPredicate(), PredR = RHS->getPredicate();
1215 
1216   // (icmp1 A, B) & (icmp2 A, B) --> (icmp3 A, B)
1217   if (predicatesFoldable(PredL, PredR)) {
1218     if (LHS->getOperand(0) == RHS->getOperand(1) &&
1219         LHS->getOperand(1) == RHS->getOperand(0))
1220       LHS->swapOperands();
1221     if (LHS->getOperand(0) == RHS->getOperand(0) &&
1222         LHS->getOperand(1) == RHS->getOperand(1)) {
1223       Value *Op0 = LHS->getOperand(0), *Op1 = LHS->getOperand(1);
1224       unsigned Code =
1225           getICmpCode(LHS->getPredicate()) & getICmpCode(RHS->getPredicate());
1226       bool IsSigned = LHS->isSigned() || RHS->isSigned();
1227       return getNewICmpValue(Code, IsSigned, Op0, Op1, Builder);
1228     }
1229   }
1230 
1231   // handle (roughly):  (icmp eq (A & B), C) & (icmp eq (A & D), E)
1232   if (Value *V = foldLogOpOfMaskedICmps(LHS, RHS, true, Builder))
1233     return V;
1234 
1235   if (Value *V = foldAndOrOfICmpsWithConstEq(LHS, RHS, And, Builder, Q))
1236     return V;
1237   if (Value *V = foldAndOrOfICmpsWithConstEq(RHS, LHS, And, Builder, Q))
1238     return V;
1239 
1240   // E.g. (icmp sge x, 0) & (icmp slt x, n) --> icmp ult x, n
1241   if (Value *V = simplifyRangeCheck(LHS, RHS, /*Inverted=*/false))
1242     return V;
1243 
1244   // E.g. (icmp slt x, n) & (icmp sge x, 0) --> icmp ult x, n
1245   if (Value *V = simplifyRangeCheck(RHS, LHS, /*Inverted=*/false))
1246     return V;
1247 
1248   if (Value *V = foldAndOrOfEqualityCmpsWithConstants(LHS, RHS, true, Builder))
1249     return V;
1250 
1251   if (Value *V = foldSignedTruncationCheck(LHS, RHS, And, Builder))
1252     return V;
1253 
1254   if (Value *V = foldIsPowerOf2(LHS, RHS, true /* JoinedByAnd */, Builder))
1255     return V;
1256 
1257   if (Value *X =
1258           foldUnsignedUnderflowCheck(LHS, RHS, /*IsAnd=*/true, Q, Builder))
1259     return X;
1260   if (Value *X =
1261           foldUnsignedUnderflowCheck(RHS, LHS, /*IsAnd=*/true, Q, Builder))
1262     return X;
1263 
1264   if (Value *X = foldEqOfParts(LHS, RHS, /*IsAnd=*/true))
1265     return X;
1266 
1267   // This only handles icmp of constants: (icmp1 A, C1) & (icmp2 B, C2).
1268   Value *LHS0 = LHS->getOperand(0), *RHS0 = RHS->getOperand(0);
1269 
1270   // (icmp eq A, 0) & (icmp eq B, 0) --> (icmp eq (A|B), 0)
1271   // TODO: Remove this when foldLogOpOfMaskedICmps can handle undefs.
1272   if (PredL == ICmpInst::ICMP_EQ && match(LHS->getOperand(1), m_ZeroInt()) &&
1273       PredR == ICmpInst::ICMP_EQ && match(RHS->getOperand(1), m_ZeroInt()) &&
1274       LHS0->getType() == RHS0->getType()) {
1275     Value *NewOr = Builder.CreateOr(LHS0, RHS0);
1276     return Builder.CreateICmp(PredL, NewOr,
1277                               Constant::getNullValue(NewOr->getType()));
1278   }
1279 
1280   const APInt *LHSC, *RHSC;
1281   if (!match(LHS->getOperand(1), m_APInt(LHSC)) ||
1282       !match(RHS->getOperand(1), m_APInt(RHSC)))
1283     return nullptr;
1284 
1285   // (trunc x) == C1 & (and x, CA) == C2 -> (and x, CA|CMAX) == C1|C2
1286   // where CMAX is the all ones value for the truncated type,
1287   // iff the lower bits of C2 and CA are zero.
1288   if (PredL == ICmpInst::ICMP_EQ && PredL == PredR && LHS->hasOneUse() &&
1289       RHS->hasOneUse()) {
1290     Value *V;
1291     const APInt *AndC, *SmallC = nullptr, *BigC = nullptr;
1292 
1293     // (trunc x) == C1 & (and x, CA) == C2
1294     // (and x, CA) == C2 & (trunc x) == C1
1295     if (match(RHS0, m_Trunc(m_Value(V))) &&
1296         match(LHS0, m_And(m_Specific(V), m_APInt(AndC)))) {
1297       SmallC = RHSC;
1298       BigC = LHSC;
1299     } else if (match(LHS0, m_Trunc(m_Value(V))) &&
1300                match(RHS0, m_And(m_Specific(V), m_APInt(AndC)))) {
1301       SmallC = LHSC;
1302       BigC = RHSC;
1303     }
1304 
1305     if (SmallC && BigC) {
1306       unsigned BigBitSize = BigC->getBitWidth();
1307       unsigned SmallBitSize = SmallC->getBitWidth();
1308 
1309       // Check that the low bits are zero.
1310       APInt Low = APInt::getLowBitsSet(BigBitSize, SmallBitSize);
1311       if ((Low & *AndC).isZero() && (Low & *BigC).isZero()) {
1312         Value *NewAnd = Builder.CreateAnd(V, Low | *AndC);
1313         APInt N = SmallC->zext(BigBitSize) | *BigC;
1314         Value *NewVal = ConstantInt::get(NewAnd->getType(), N);
1315         return Builder.CreateICmp(PredL, NewAnd, NewVal);
1316       }
1317     }
1318   }
1319 
1320   return foldAndOrOfICmpsUsingRanges(PredL, LHS0, *LHSC, PredR, RHS0, *RHSC,
1321                                      Builder, /* IsAnd */ true);
1322 }
1323 
1324 Value *InstCombinerImpl::foldLogicOfFCmps(FCmpInst *LHS, FCmpInst *RHS,
1325                                           bool IsAnd) {
1326   Value *LHS0 = LHS->getOperand(0), *LHS1 = LHS->getOperand(1);
1327   Value *RHS0 = RHS->getOperand(0), *RHS1 = RHS->getOperand(1);
1328   FCmpInst::Predicate PredL = LHS->getPredicate(), PredR = RHS->getPredicate();
1329 
1330   if (LHS0 == RHS1 && RHS0 == LHS1) {
1331     // Swap RHS operands to match LHS.
1332     PredR = FCmpInst::getSwappedPredicate(PredR);
1333     std::swap(RHS0, RHS1);
1334   }
1335 
1336   // Simplify (fcmp cc0 x, y) & (fcmp cc1 x, y).
1337   // Suppose the relation between x and y is R, where R is one of
1338   // U(1000), L(0100), G(0010) or E(0001), and CC0 and CC1 are the bitmasks for
1339   // testing the desired relations.
1340   //
1341   // Since (R & CC0) and (R & CC1) are either R or 0, we actually have this:
1342   //    bool(R & CC0) && bool(R & CC1)
1343   //  = bool((R & CC0) & (R & CC1))
1344   //  = bool(R & (CC0 & CC1)) <= by re-association, commutation, and idempotency
1345   //
1346   // Since (R & CC0) and (R & CC1) are either R or 0, we actually have this:
1347   //    bool(R & CC0) || bool(R & CC1)
1348   //  = bool((R & CC0) | (R & CC1))
1349   //  = bool(R & (CC0 | CC1)) <= by reversed distribution (contribution? ;)
1350   if (LHS0 == RHS0 && LHS1 == RHS1) {
1351     unsigned FCmpCodeL = getFCmpCode(PredL);
1352     unsigned FCmpCodeR = getFCmpCode(PredR);
1353     unsigned NewPred = IsAnd ? FCmpCodeL & FCmpCodeR : FCmpCodeL | FCmpCodeR;
1354     return getFCmpValue(NewPred, LHS0, LHS1, Builder);
1355   }
1356 
1357   if ((PredL == FCmpInst::FCMP_ORD && PredR == FCmpInst::FCMP_ORD && IsAnd) ||
1358       (PredL == FCmpInst::FCMP_UNO && PredR == FCmpInst::FCMP_UNO && !IsAnd)) {
1359     if (LHS0->getType() != RHS0->getType())
1360       return nullptr;
1361 
1362     // FCmp canonicalization ensures that (fcmp ord/uno X, X) and
1363     // (fcmp ord/uno X, C) will be transformed to (fcmp X, +0.0).
1364     if (match(LHS1, m_PosZeroFP()) && match(RHS1, m_PosZeroFP()))
1365       // Ignore the constants because they are obviously not NANs:
1366       // (fcmp ord x, 0.0) & (fcmp ord y, 0.0)  -> (fcmp ord x, y)
1367       // (fcmp uno x, 0.0) | (fcmp uno y, 0.0)  -> (fcmp uno x, y)
1368       return Builder.CreateFCmp(PredL, LHS0, RHS0);
1369   }
1370 
1371   return nullptr;
1372 }
1373 
1374 /// This a limited reassociation for a special case (see above) where we are
1375 /// checking if two values are either both NAN (unordered) or not-NAN (ordered).
1376 /// This could be handled more generally in '-reassociation', but it seems like
1377 /// an unlikely pattern for a large number of logic ops and fcmps.
1378 static Instruction *reassociateFCmps(BinaryOperator &BO,
1379                                      InstCombiner::BuilderTy &Builder) {
1380   Instruction::BinaryOps Opcode = BO.getOpcode();
1381   assert((Opcode == Instruction::And || Opcode == Instruction::Or) &&
1382          "Expecting and/or op for fcmp transform");
1383 
1384   // There are 4 commuted variants of the pattern. Canonicalize operands of this
1385   // logic op so an fcmp is operand 0 and a matching logic op is operand 1.
1386   Value *Op0 = BO.getOperand(0), *Op1 = BO.getOperand(1), *X;
1387   FCmpInst::Predicate Pred;
1388   if (match(Op1, m_FCmp(Pred, m_Value(), m_AnyZeroFP())))
1389     std::swap(Op0, Op1);
1390 
1391   // Match inner binop and the predicate for combining 2 NAN checks into 1.
1392   Value *BO10, *BO11;
1393   FCmpInst::Predicate NanPred = Opcode == Instruction::And ? FCmpInst::FCMP_ORD
1394                                                            : FCmpInst::FCMP_UNO;
1395   if (!match(Op0, m_FCmp(Pred, m_Value(X), m_AnyZeroFP())) || Pred != NanPred ||
1396       !match(Op1, m_BinOp(Opcode, m_Value(BO10), m_Value(BO11))))
1397     return nullptr;
1398 
1399   // The inner logic op must have a matching fcmp operand.
1400   Value *Y;
1401   if (!match(BO10, m_FCmp(Pred, m_Value(Y), m_AnyZeroFP())) ||
1402       Pred != NanPred || X->getType() != Y->getType())
1403     std::swap(BO10, BO11);
1404 
1405   if (!match(BO10, m_FCmp(Pred, m_Value(Y), m_AnyZeroFP())) ||
1406       Pred != NanPred || X->getType() != Y->getType())
1407     return nullptr;
1408 
1409   // and (fcmp ord X, 0), (and (fcmp ord Y, 0), Z) --> and (fcmp ord X, Y), Z
1410   // or  (fcmp uno X, 0), (or  (fcmp uno Y, 0), Z) --> or  (fcmp uno X, Y), Z
1411   Value *NewFCmp = Builder.CreateFCmp(Pred, X, Y);
1412   if (auto *NewFCmpInst = dyn_cast<FCmpInst>(NewFCmp)) {
1413     // Intersect FMF from the 2 source fcmps.
1414     NewFCmpInst->copyIRFlags(Op0);
1415     NewFCmpInst->andIRFlags(BO10);
1416   }
1417   return BinaryOperator::Create(Opcode, NewFCmp, BO11);
1418 }
1419 
1420 /// Match variations of De Morgan's Laws:
1421 /// (~A & ~B) == (~(A | B))
1422 /// (~A | ~B) == (~(A & B))
1423 static Instruction *matchDeMorgansLaws(BinaryOperator &I,
1424                                        InstCombiner::BuilderTy &Builder) {
1425   const Instruction::BinaryOps Opcode = I.getOpcode();
1426   assert((Opcode == Instruction::And || Opcode == Instruction::Or) &&
1427          "Trying to match De Morgan's Laws with something other than and/or");
1428 
1429   // Flip the logic operation.
1430   const Instruction::BinaryOps FlippedOpcode =
1431       (Opcode == Instruction::And) ? Instruction::Or : Instruction::And;
1432 
1433   Value *Op0 = I.getOperand(0), *Op1 = I.getOperand(1);
1434   Value *A, *B;
1435   if (match(Op0, m_OneUse(m_Not(m_Value(A)))) &&
1436       match(Op1, m_OneUse(m_Not(m_Value(B)))) &&
1437       !InstCombiner::isFreeToInvert(A, A->hasOneUse()) &&
1438       !InstCombiner::isFreeToInvert(B, B->hasOneUse())) {
1439     Value *AndOr =
1440         Builder.CreateBinOp(FlippedOpcode, A, B, I.getName() + ".demorgan");
1441     return BinaryOperator::CreateNot(AndOr);
1442   }
1443 
1444   // The 'not' ops may require reassociation.
1445   // (A & ~B) & ~C --> A & ~(B | C)
1446   // (~B & A) & ~C --> A & ~(B | C)
1447   // (A | ~B) | ~C --> A | ~(B & C)
1448   // (~B | A) | ~C --> A | ~(B & C)
1449   Value *C;
1450   if (match(Op0, m_OneUse(m_c_BinOp(Opcode, m_Value(A), m_Not(m_Value(B))))) &&
1451       match(Op1, m_Not(m_Value(C)))) {
1452     Value *FlippedBO = Builder.CreateBinOp(FlippedOpcode, B, C);
1453     return BinaryOperator::Create(Opcode, A, Builder.CreateNot(FlippedBO));
1454   }
1455 
1456   return nullptr;
1457 }
1458 
1459 bool InstCombinerImpl::shouldOptimizeCast(CastInst *CI) {
1460   Value *CastSrc = CI->getOperand(0);
1461 
1462   // Noop casts and casts of constants should be eliminated trivially.
1463   if (CI->getSrcTy() == CI->getDestTy() || isa<Constant>(CastSrc))
1464     return false;
1465 
1466   // If this cast is paired with another cast that can be eliminated, we prefer
1467   // to have it eliminated.
1468   if (const auto *PrecedingCI = dyn_cast<CastInst>(CastSrc))
1469     if (isEliminableCastPair(PrecedingCI, CI))
1470       return false;
1471 
1472   return true;
1473 }
1474 
1475 /// Fold {and,or,xor} (cast X), C.
1476 static Instruction *foldLogicCastConstant(BinaryOperator &Logic, CastInst *Cast,
1477                                           InstCombiner::BuilderTy &Builder) {
1478   Constant *C = dyn_cast<Constant>(Logic.getOperand(1));
1479   if (!C)
1480     return nullptr;
1481 
1482   auto LogicOpc = Logic.getOpcode();
1483   Type *DestTy = Logic.getType();
1484   Type *SrcTy = Cast->getSrcTy();
1485 
1486   // Move the logic operation ahead of a zext or sext if the constant is
1487   // unchanged in the smaller source type. Performing the logic in a smaller
1488   // type may provide more information to later folds, and the smaller logic
1489   // instruction may be cheaper (particularly in the case of vectors).
1490   Value *X;
1491   if (match(Cast, m_OneUse(m_ZExt(m_Value(X))))) {
1492     Constant *TruncC = ConstantExpr::getTrunc(C, SrcTy);
1493     Constant *ZextTruncC = ConstantExpr::getZExt(TruncC, DestTy);
1494     if (ZextTruncC == C) {
1495       // LogicOpc (zext X), C --> zext (LogicOpc X, C)
1496       Value *NewOp = Builder.CreateBinOp(LogicOpc, X, TruncC);
1497       return new ZExtInst(NewOp, DestTy);
1498     }
1499   }
1500 
1501   if (match(Cast, m_OneUse(m_SExt(m_Value(X))))) {
1502     Constant *TruncC = ConstantExpr::getTrunc(C, SrcTy);
1503     Constant *SextTruncC = ConstantExpr::getSExt(TruncC, DestTy);
1504     if (SextTruncC == C) {
1505       // LogicOpc (sext X), C --> sext (LogicOpc X, C)
1506       Value *NewOp = Builder.CreateBinOp(LogicOpc, X, TruncC);
1507       return new SExtInst(NewOp, DestTy);
1508     }
1509   }
1510 
1511   return nullptr;
1512 }
1513 
1514 /// Fold {and,or,xor} (cast X), Y.
1515 Instruction *InstCombinerImpl::foldCastedBitwiseLogic(BinaryOperator &I) {
1516   auto LogicOpc = I.getOpcode();
1517   assert(I.isBitwiseLogicOp() && "Unexpected opcode for bitwise logic folding");
1518 
1519   Value *Op0 = I.getOperand(0), *Op1 = I.getOperand(1);
1520   CastInst *Cast0 = dyn_cast<CastInst>(Op0);
1521   if (!Cast0)
1522     return nullptr;
1523 
1524   // This must be a cast from an integer or integer vector source type to allow
1525   // transformation of the logic operation to the source type.
1526   Type *DestTy = I.getType();
1527   Type *SrcTy = Cast0->getSrcTy();
1528   if (!SrcTy->isIntOrIntVectorTy())
1529     return nullptr;
1530 
1531   if (Instruction *Ret = foldLogicCastConstant(I, Cast0, Builder))
1532     return Ret;
1533 
1534   CastInst *Cast1 = dyn_cast<CastInst>(Op1);
1535   if (!Cast1)
1536     return nullptr;
1537 
1538   // Both operands of the logic operation are casts. The casts must be of the
1539   // same type for reduction.
1540   auto CastOpcode = Cast0->getOpcode();
1541   if (CastOpcode != Cast1->getOpcode() || SrcTy != Cast1->getSrcTy())
1542     return nullptr;
1543 
1544   Value *Cast0Src = Cast0->getOperand(0);
1545   Value *Cast1Src = Cast1->getOperand(0);
1546 
1547   // fold logic(cast(A), cast(B)) -> cast(logic(A, B))
1548   if (shouldOptimizeCast(Cast0) && shouldOptimizeCast(Cast1)) {
1549     Value *NewOp = Builder.CreateBinOp(LogicOpc, Cast0Src, Cast1Src,
1550                                         I.getName());
1551     return CastInst::Create(CastOpcode, NewOp, DestTy);
1552   }
1553 
1554   // For now, only 'and'/'or' have optimizations after this.
1555   if (LogicOpc == Instruction::Xor)
1556     return nullptr;
1557 
1558   // If this is logic(cast(icmp), cast(icmp)), try to fold this even if the
1559   // cast is otherwise not optimizable.  This happens for vector sexts.
1560   ICmpInst *ICmp0 = dyn_cast<ICmpInst>(Cast0Src);
1561   ICmpInst *ICmp1 = dyn_cast<ICmpInst>(Cast1Src);
1562   if (ICmp0 && ICmp1) {
1563     Value *Res = LogicOpc == Instruction::And ? foldAndOfICmps(ICmp0, ICmp1, I)
1564                                               : foldOrOfICmps(ICmp0, ICmp1, I);
1565     if (Res)
1566       return CastInst::Create(CastOpcode, Res, DestTy);
1567     return nullptr;
1568   }
1569 
1570   // If this is logic(cast(fcmp), cast(fcmp)), try to fold this even if the
1571   // cast is otherwise not optimizable.  This happens for vector sexts.
1572   FCmpInst *FCmp0 = dyn_cast<FCmpInst>(Cast0Src);
1573   FCmpInst *FCmp1 = dyn_cast<FCmpInst>(Cast1Src);
1574   if (FCmp0 && FCmp1)
1575     if (Value *R = foldLogicOfFCmps(FCmp0, FCmp1, LogicOpc == Instruction::And))
1576       return CastInst::Create(CastOpcode, R, DestTy);
1577 
1578   return nullptr;
1579 }
1580 
1581 static Instruction *foldAndToXor(BinaryOperator &I,
1582                                  InstCombiner::BuilderTy &Builder) {
1583   assert(I.getOpcode() == Instruction::And);
1584   Value *Op0 = I.getOperand(0);
1585   Value *Op1 = I.getOperand(1);
1586   Value *A, *B;
1587 
1588   // Operand complexity canonicalization guarantees that the 'or' is Op0.
1589   // (A | B) & ~(A & B) --> A ^ B
1590   // (A | B) & ~(B & A) --> A ^ B
1591   if (match(&I, m_BinOp(m_Or(m_Value(A), m_Value(B)),
1592                         m_Not(m_c_And(m_Deferred(A), m_Deferred(B))))))
1593     return BinaryOperator::CreateXor(A, B);
1594 
1595   // (A | ~B) & (~A | B) --> ~(A ^ B)
1596   // (A | ~B) & (B | ~A) --> ~(A ^ B)
1597   // (~B | A) & (~A | B) --> ~(A ^ B)
1598   // (~B | A) & (B | ~A) --> ~(A ^ B)
1599   if (Op0->hasOneUse() || Op1->hasOneUse())
1600     if (match(&I, m_BinOp(m_c_Or(m_Value(A), m_Not(m_Value(B))),
1601                           m_c_Or(m_Not(m_Deferred(A)), m_Deferred(B)))))
1602       return BinaryOperator::CreateNot(Builder.CreateXor(A, B));
1603 
1604   return nullptr;
1605 }
1606 
1607 static Instruction *foldOrToXor(BinaryOperator &I,
1608                                 InstCombiner::BuilderTy &Builder) {
1609   assert(I.getOpcode() == Instruction::Or);
1610   Value *Op0 = I.getOperand(0);
1611   Value *Op1 = I.getOperand(1);
1612   Value *A, *B;
1613 
1614   // Operand complexity canonicalization guarantees that the 'and' is Op0.
1615   // (A & B) | ~(A | B) --> ~(A ^ B)
1616   // (A & B) | ~(B | A) --> ~(A ^ B)
1617   if (Op0->hasOneUse() || Op1->hasOneUse())
1618     if (match(Op0, m_And(m_Value(A), m_Value(B))) &&
1619         match(Op1, m_Not(m_c_Or(m_Specific(A), m_Specific(B)))))
1620       return BinaryOperator::CreateNot(Builder.CreateXor(A, B));
1621 
1622   // Operand complexity canonicalization guarantees that the 'xor' is Op0.
1623   // (A ^ B) | ~(A | B) --> ~(A & B)
1624   // (A ^ B) | ~(B | A) --> ~(A & B)
1625   if (Op0->hasOneUse() || Op1->hasOneUse())
1626     if (match(Op0, m_Xor(m_Value(A), m_Value(B))) &&
1627         match(Op1, m_Not(m_c_Or(m_Specific(A), m_Specific(B)))))
1628       return BinaryOperator::CreateNot(Builder.CreateAnd(A, B));
1629 
1630   // (A & ~B) | (~A & B) --> A ^ B
1631   // (A & ~B) | (B & ~A) --> A ^ B
1632   // (~B & A) | (~A & B) --> A ^ B
1633   // (~B & A) | (B & ~A) --> A ^ B
1634   if (match(Op0, m_c_And(m_Value(A), m_Not(m_Value(B)))) &&
1635       match(Op1, m_c_And(m_Not(m_Specific(A)), m_Specific(B))))
1636     return BinaryOperator::CreateXor(A, B);
1637 
1638   return nullptr;
1639 }
1640 
1641 /// Return true if a constant shift amount is always less than the specified
1642 /// bit-width. If not, the shift could create poison in the narrower type.
1643 static bool canNarrowShiftAmt(Constant *C, unsigned BitWidth) {
1644   APInt Threshold(C->getType()->getScalarSizeInBits(), BitWidth);
1645   return match(C, m_SpecificInt_ICMP(ICmpInst::ICMP_ULT, Threshold));
1646 }
1647 
1648 /// Try to use narrower ops (sink zext ops) for an 'and' with binop operand and
1649 /// a common zext operand: and (binop (zext X), C), (zext X).
1650 Instruction *InstCombinerImpl::narrowMaskedBinOp(BinaryOperator &And) {
1651   // This transform could also apply to {or, and, xor}, but there are better
1652   // folds for those cases, so we don't expect those patterns here. AShr is not
1653   // handled because it should always be transformed to LShr in this sequence.
1654   // The subtract transform is different because it has a constant on the left.
1655   // Add/mul commute the constant to RHS; sub with constant RHS becomes add.
1656   Value *Op0 = And.getOperand(0), *Op1 = And.getOperand(1);
1657   Constant *C;
1658   if (!match(Op0, m_OneUse(m_Add(m_Specific(Op1), m_Constant(C)))) &&
1659       !match(Op0, m_OneUse(m_Mul(m_Specific(Op1), m_Constant(C)))) &&
1660       !match(Op0, m_OneUse(m_LShr(m_Specific(Op1), m_Constant(C)))) &&
1661       !match(Op0, m_OneUse(m_Shl(m_Specific(Op1), m_Constant(C)))) &&
1662       !match(Op0, m_OneUse(m_Sub(m_Constant(C), m_Specific(Op1)))))
1663     return nullptr;
1664 
1665   Value *X;
1666   if (!match(Op1, m_ZExt(m_Value(X))) || Op1->hasNUsesOrMore(3))
1667     return nullptr;
1668 
1669   Type *Ty = And.getType();
1670   if (!isa<VectorType>(Ty) && !shouldChangeType(Ty, X->getType()))
1671     return nullptr;
1672 
1673   // If we're narrowing a shift, the shift amount must be safe (less than the
1674   // width) in the narrower type. If the shift amount is greater, instsimplify
1675   // usually handles that case, but we can't guarantee/assert it.
1676   Instruction::BinaryOps Opc = cast<BinaryOperator>(Op0)->getOpcode();
1677   if (Opc == Instruction::LShr || Opc == Instruction::Shl)
1678     if (!canNarrowShiftAmt(C, X->getType()->getScalarSizeInBits()))
1679       return nullptr;
1680 
1681   // and (sub C, (zext X)), (zext X) --> zext (and (sub C', X), X)
1682   // and (binop (zext X), C), (zext X) --> zext (and (binop X, C'), X)
1683   Value *NewC = ConstantExpr::getTrunc(C, X->getType());
1684   Value *NewBO = Opc == Instruction::Sub ? Builder.CreateBinOp(Opc, NewC, X)
1685                                          : Builder.CreateBinOp(Opc, X, NewC);
1686   return new ZExtInst(Builder.CreateAnd(NewBO, X), Ty);
1687 }
1688 
1689 /// Try folding relatively complex patterns for both And and Or operations
1690 /// with all And and Or swapped.
1691 static Instruction *foldComplexAndOrPatterns(BinaryOperator &I,
1692                                              InstCombiner::BuilderTy &Builder) {
1693   const Instruction::BinaryOps Opcode = I.getOpcode();
1694   assert(Opcode == Instruction::And || Opcode == Instruction::Or);
1695 
1696   // Flip the logic operation.
1697   const Instruction::BinaryOps FlippedOpcode =
1698       (Opcode == Instruction::And) ? Instruction::Or : Instruction::And;
1699 
1700   Value *Op0 = I.getOperand(0), *Op1 = I.getOperand(1);
1701   Value *A, *B, *C, *X, *Y, *Dummy;
1702 
1703   // Match following expressions:
1704   // (~(A | B) & C)
1705   // (~(A & B) | C)
1706   // Captures X = ~(A | B) or ~(A & B)
1707   const auto matchNotOrAnd =
1708       [Opcode, FlippedOpcode](Value *Op, auto m_A, auto m_B, auto m_C,
1709                               Value *&X, bool CountUses = false) -> bool {
1710     if (CountUses && !Op->hasOneUse())
1711       return false;
1712 
1713     if (match(Op, m_c_BinOp(FlippedOpcode,
1714                             m_CombineAnd(m_Value(X),
1715                                          m_Not(m_c_BinOp(Opcode, m_A, m_B))),
1716                             m_C)))
1717       return !CountUses || X->hasOneUse();
1718 
1719     return false;
1720   };
1721 
1722   // (~(A | B) & C) | ... --> ...
1723   // (~(A & B) | C) & ... --> ...
1724   // TODO: One use checks are conservative. We just need to check that a total
1725   //       number of multiple used values does not exceed reduction
1726   //       in operations.
1727   if (matchNotOrAnd(Op0, m_Value(A), m_Value(B), m_Value(C), X)) {
1728     // (~(A | B) & C) | (~(A | C) & B) --> (B ^ C) & ~A
1729     // (~(A & B) | C) & (~(A & C) | B) --> ~((B ^ C) & A)
1730     if (matchNotOrAnd(Op1, m_Specific(A), m_Specific(C), m_Specific(B), Dummy,
1731                       true)) {
1732       Value *Xor = Builder.CreateXor(B, C);
1733       return (Opcode == Instruction::Or)
1734                  ? BinaryOperator::CreateAnd(Xor, Builder.CreateNot(A))
1735                  : BinaryOperator::CreateNot(Builder.CreateAnd(Xor, A));
1736     }
1737 
1738     // (~(A | B) & C) | (~(B | C) & A) --> (A ^ C) & ~B
1739     // (~(A & B) | C) & (~(B & C) | A) --> ~((A ^ C) & B)
1740     if (matchNotOrAnd(Op1, m_Specific(B), m_Specific(C), m_Specific(A), Dummy,
1741                       true)) {
1742       Value *Xor = Builder.CreateXor(A, C);
1743       return (Opcode == Instruction::Or)
1744                  ? BinaryOperator::CreateAnd(Xor, Builder.CreateNot(B))
1745                  : BinaryOperator::CreateNot(Builder.CreateAnd(Xor, B));
1746     }
1747 
1748     // (~(A | B) & C) | ~(A | C) --> ~((B & C) | A)
1749     // (~(A & B) | C) & ~(A & C) --> ~((B | C) & A)
1750     if (match(Op1, m_OneUse(m_Not(m_OneUse(
1751                        m_c_BinOp(Opcode, m_Specific(A), m_Specific(C)))))))
1752       return BinaryOperator::CreateNot(Builder.CreateBinOp(
1753           Opcode, Builder.CreateBinOp(FlippedOpcode, B, C), A));
1754 
1755     // (~(A | B) & C) | ~(B | C) --> ~((A & C) | B)
1756     // (~(A & B) | C) & ~(B & C) --> ~((A | C) & B)
1757     if (match(Op1, m_OneUse(m_Not(m_OneUse(
1758                        m_c_BinOp(Opcode, m_Specific(B), m_Specific(C)))))))
1759       return BinaryOperator::CreateNot(Builder.CreateBinOp(
1760           Opcode, Builder.CreateBinOp(FlippedOpcode, A, C), B));
1761 
1762     // (~(A | B) & C) | ~(C | (A ^ B)) --> ~((A | B) & (C | (A ^ B)))
1763     // Note, the pattern with swapped and/or is not handled because the
1764     // result is more undefined than a source:
1765     // (~(A & B) | C) & ~(C & (A ^ B)) --> (A ^ B ^ C) | ~(A | C) is invalid.
1766     if (Opcode == Instruction::Or && Op0->hasOneUse() &&
1767         match(Op1, m_OneUse(m_Not(m_CombineAnd(
1768                        m_Value(Y),
1769                        m_c_BinOp(Opcode, m_Specific(C),
1770                                  m_c_Xor(m_Specific(A), m_Specific(B)))))))) {
1771       // X = ~(A | B)
1772       // Y = (C | (A ^ B)
1773       Value *Or = cast<BinaryOperator>(X)->getOperand(0);
1774       return BinaryOperator::CreateNot(Builder.CreateAnd(Or, Y));
1775     }
1776   }
1777 
1778   // (~A & B & C) | ... --> ...
1779   // (~A | B | C) | ... --> ...
1780   // TODO: One use checks are conservative. We just need to check that a total
1781   //       number of multiple used values does not exceed reduction
1782   //       in operations.
1783   if (match(Op0,
1784             m_OneUse(m_c_BinOp(FlippedOpcode,
1785                                m_BinOp(FlippedOpcode, m_Value(B), m_Value(C)),
1786                                m_CombineAnd(m_Value(X), m_Not(m_Value(A)))))) ||
1787       match(Op0, m_OneUse(m_c_BinOp(
1788                      FlippedOpcode,
1789                      m_c_BinOp(FlippedOpcode, m_Value(C),
1790                                m_CombineAnd(m_Value(X), m_Not(m_Value(A)))),
1791                      m_Value(B))))) {
1792     // X = ~A
1793     // (~A & B & C) | ~(A | B | C) --> ~(A | (B ^ C))
1794     // (~A | B | C) & ~(A & B & C) --> (~A | (B ^ C))
1795     if (match(Op1, m_OneUse(m_Not(m_c_BinOp(
1796                        Opcode, m_c_BinOp(Opcode, m_Specific(A), m_Specific(B)),
1797                        m_Specific(C))))) ||
1798         match(Op1, m_OneUse(m_Not(m_c_BinOp(
1799                        Opcode, m_c_BinOp(Opcode, m_Specific(B), m_Specific(C)),
1800                        m_Specific(A))))) ||
1801         match(Op1, m_OneUse(m_Not(m_c_BinOp(
1802                        Opcode, m_c_BinOp(Opcode, m_Specific(A), m_Specific(C)),
1803                        m_Specific(B)))))) {
1804       Value *Xor = Builder.CreateXor(B, C);
1805       return (Opcode == Instruction::Or)
1806                  ? BinaryOperator::CreateNot(Builder.CreateOr(Xor, A))
1807                  : BinaryOperator::CreateOr(Xor, X);
1808     }
1809 
1810     // (~A & B & C) | ~(A | B) --> (C | ~B) & ~A
1811     // (~A | B | C) & ~(A & B) --> (C & ~B) | ~A
1812     if (match(Op1, m_OneUse(m_Not(m_OneUse(
1813                        m_c_BinOp(Opcode, m_Specific(A), m_Specific(B)))))))
1814       return BinaryOperator::Create(
1815           FlippedOpcode, Builder.CreateBinOp(Opcode, C, Builder.CreateNot(B)),
1816           X);
1817 
1818     // (~A & B & C) | ~(A | C) --> (B | ~C) & ~A
1819     // (~A | B | C) & ~(A & C) --> (B & ~C) | ~A
1820     if (match(Op1, m_OneUse(m_Not(m_OneUse(
1821                        m_c_BinOp(Opcode, m_Specific(A), m_Specific(C)))))))
1822       return BinaryOperator::Create(
1823           FlippedOpcode, Builder.CreateBinOp(Opcode, B, Builder.CreateNot(C)),
1824           X);
1825   }
1826 
1827   return nullptr;
1828 }
1829 
1830 // FIXME: We use commutative matchers (m_c_*) for some, but not all, matches
1831 // here. We should standardize that construct where it is needed or choose some
1832 // other way to ensure that commutated variants of patterns are not missed.
1833 Instruction *InstCombinerImpl::visitAnd(BinaryOperator &I) {
1834   Type *Ty = I.getType();
1835 
1836   if (Value *V = SimplifyAndInst(I.getOperand(0), I.getOperand(1),
1837                                  SQ.getWithInstruction(&I)))
1838     return replaceInstUsesWith(I, V);
1839 
1840   if (SimplifyAssociativeOrCommutative(I))
1841     return &I;
1842 
1843   if (Instruction *X = foldVectorBinop(I))
1844     return X;
1845 
1846   if (Instruction *Phi = foldBinopWithPhiOperands(I))
1847     return Phi;
1848 
1849   // See if we can simplify any instructions used by the instruction whose sole
1850   // purpose is to compute bits we don't care about.
1851   if (SimplifyDemandedInstructionBits(I))
1852     return &I;
1853 
1854   // Do this before using distributive laws to catch simple and/or/not patterns.
1855   if (Instruction *Xor = foldAndToXor(I, Builder))
1856     return Xor;
1857 
1858   if (Instruction *X = foldComplexAndOrPatterns(I, Builder))
1859     return X;
1860 
1861   // (A|B)&(A|C) -> A|(B&C) etc
1862   if (Value *V = SimplifyUsingDistributiveLaws(I))
1863     return replaceInstUsesWith(I, V);
1864 
1865   if (Value *V = SimplifyBSwap(I, Builder))
1866     return replaceInstUsesWith(I, V);
1867 
1868   Value *Op0 = I.getOperand(0), *Op1 = I.getOperand(1);
1869 
1870   Value *X, *Y;
1871   if (match(Op0, m_OneUse(m_LogicalShift(m_One(), m_Value(X)))) &&
1872       match(Op1, m_One())) {
1873     // (1 << X) & 1 --> zext(X == 0)
1874     // (1 >> X) & 1 --> zext(X == 0)
1875     Value *IsZero = Builder.CreateICmpEQ(X, ConstantInt::get(Ty, 0));
1876     return new ZExtInst(IsZero, Ty);
1877   }
1878 
1879   const APInt *C;
1880   if (match(Op1, m_APInt(C))) {
1881     const APInt *XorC;
1882     if (match(Op0, m_OneUse(m_Xor(m_Value(X), m_APInt(XorC))))) {
1883       // (X ^ C1) & C2 --> (X & C2) ^ (C1&C2)
1884       Constant *NewC = ConstantInt::get(Ty, *C & *XorC);
1885       Value *And = Builder.CreateAnd(X, Op1);
1886       And->takeName(Op0);
1887       return BinaryOperator::CreateXor(And, NewC);
1888     }
1889 
1890     const APInt *OrC;
1891     if (match(Op0, m_OneUse(m_Or(m_Value(X), m_APInt(OrC))))) {
1892       // (X | C1) & C2 --> (X & C2^(C1&C2)) | (C1&C2)
1893       // NOTE: This reduces the number of bits set in the & mask, which
1894       // can expose opportunities for store narrowing for scalars.
1895       // NOTE: SimplifyDemandedBits should have already removed bits from C1
1896       // that aren't set in C2. Meaning we can replace (C1&C2) with C1 in
1897       // above, but this feels safer.
1898       APInt Together = *C & *OrC;
1899       Value *And = Builder.CreateAnd(X, ConstantInt::get(Ty, Together ^ *C));
1900       And->takeName(Op0);
1901       return BinaryOperator::CreateOr(And, ConstantInt::get(Ty, Together));
1902     }
1903 
1904     // If the mask is only needed on one incoming arm, push the 'and' op up.
1905     if (match(Op0, m_OneUse(m_Xor(m_Value(X), m_Value(Y)))) ||
1906         match(Op0, m_OneUse(m_Or(m_Value(X), m_Value(Y))))) {
1907       APInt NotAndMask(~(*C));
1908       BinaryOperator::BinaryOps BinOp = cast<BinaryOperator>(Op0)->getOpcode();
1909       if (MaskedValueIsZero(X, NotAndMask, 0, &I)) {
1910         // Not masking anything out for the LHS, move mask to RHS.
1911         // and ({x}or X, Y), C --> {x}or X, (and Y, C)
1912         Value *NewRHS = Builder.CreateAnd(Y, Op1, Y->getName() + ".masked");
1913         return BinaryOperator::Create(BinOp, X, NewRHS);
1914       }
1915       if (!isa<Constant>(Y) && MaskedValueIsZero(Y, NotAndMask, 0, &I)) {
1916         // Not masking anything out for the RHS, move mask to LHS.
1917         // and ({x}or X, Y), C --> {x}or (and X, C), Y
1918         Value *NewLHS = Builder.CreateAnd(X, Op1, X->getName() + ".masked");
1919         return BinaryOperator::Create(BinOp, NewLHS, Y);
1920       }
1921     }
1922 
1923     unsigned Width = Ty->getScalarSizeInBits();
1924     const APInt *ShiftC;
1925     if (match(Op0, m_OneUse(m_SExt(m_AShr(m_Value(X), m_APInt(ShiftC)))))) {
1926       if (*C == APInt::getLowBitsSet(Width, Width - ShiftC->getZExtValue())) {
1927         // We are clearing high bits that were potentially set by sext+ashr:
1928         // and (sext (ashr X, ShiftC)), C --> lshr (sext X), ShiftC
1929         Value *Sext = Builder.CreateSExt(X, Ty);
1930         Constant *ShAmtC = ConstantInt::get(Ty, ShiftC->zext(Width));
1931         return BinaryOperator::CreateLShr(Sext, ShAmtC);
1932       }
1933     }
1934 
1935     const APInt *AddC;
1936     if (match(Op0, m_Add(m_Value(X), m_APInt(AddC)))) {
1937       // If we add zeros to every bit below a mask, the add has no effect:
1938       // (X + AddC) & LowMaskC --> X & LowMaskC
1939       unsigned Ctlz = C->countLeadingZeros();
1940       APInt LowMask(APInt::getLowBitsSet(Width, Width - Ctlz));
1941       if ((*AddC & LowMask).isZero())
1942         return BinaryOperator::CreateAnd(X, Op1);
1943 
1944       // If we are masking the result of the add down to exactly one bit and
1945       // the constant we are adding has no bits set below that bit, then the
1946       // add is flipping a single bit. Example:
1947       // (X + 4) & 4 --> (X & 4) ^ 4
1948       if (Op0->hasOneUse() && C->isPowerOf2() && (*AddC & (*C - 1)) == 0) {
1949         assert((*C & *AddC) != 0 && "Expected common bit");
1950         Value *NewAnd = Builder.CreateAnd(X, Op1);
1951         return BinaryOperator::CreateXor(NewAnd, Op1);
1952       }
1953     }
1954 
1955     // ((C1 OP zext(X)) & C2) -> zext((C1 OP X) & C2) if C2 fits in the
1956     // bitwidth of X and OP behaves well when given trunc(C1) and X.
1957     auto isSuitableBinOpcode = [](BinaryOperator *B) {
1958       switch (B->getOpcode()) {
1959       case Instruction::Xor:
1960       case Instruction::Or:
1961       case Instruction::Mul:
1962       case Instruction::Add:
1963       case Instruction::Sub:
1964         return true;
1965       default:
1966         return false;
1967       }
1968     };
1969     BinaryOperator *BO;
1970     if (match(Op0, m_OneUse(m_BinOp(BO))) && isSuitableBinOpcode(BO)) {
1971       Value *X;
1972       const APInt *C1;
1973       // TODO: The one-use restrictions could be relaxed a little if the AND
1974       // is going to be removed.
1975       if (match(BO, m_c_BinOp(m_OneUse(m_ZExt(m_Value(X))), m_APInt(C1))) &&
1976           C->isIntN(X->getType()->getScalarSizeInBits())) {
1977         unsigned XWidth = X->getType()->getScalarSizeInBits();
1978         Constant *TruncC1 = ConstantInt::get(X->getType(), C1->trunc(XWidth));
1979         Value *BinOp = isa<ZExtInst>(BO->getOperand(0))
1980                            ? Builder.CreateBinOp(BO->getOpcode(), X, TruncC1)
1981                            : Builder.CreateBinOp(BO->getOpcode(), TruncC1, X);
1982         Constant *TruncC = ConstantInt::get(X->getType(), C->trunc(XWidth));
1983         Value *And = Builder.CreateAnd(BinOp, TruncC);
1984         return new ZExtInst(And, Ty);
1985       }
1986     }
1987   }
1988 
1989   if (match(&I, m_And(m_OneUse(m_Shl(m_ZExt(m_Value(X)), m_Value(Y))),
1990                       m_SignMask())) &&
1991       match(Y, m_SpecificInt_ICMP(
1992                    ICmpInst::Predicate::ICMP_EQ,
1993                    APInt(Ty->getScalarSizeInBits(),
1994                          Ty->getScalarSizeInBits() -
1995                              X->getType()->getScalarSizeInBits())))) {
1996     auto *SExt = Builder.CreateSExt(X, Ty, X->getName() + ".signext");
1997     auto *SanitizedSignMask = cast<Constant>(Op1);
1998     // We must be careful with the undef elements of the sign bit mask, however:
1999     // the mask elt can be undef iff the shift amount for that lane was undef,
2000     // otherwise we need to sanitize undef masks to zero.
2001     SanitizedSignMask = Constant::replaceUndefsWith(
2002         SanitizedSignMask, ConstantInt::getNullValue(Ty->getScalarType()));
2003     SanitizedSignMask =
2004         Constant::mergeUndefsWith(SanitizedSignMask, cast<Constant>(Y));
2005     return BinaryOperator::CreateAnd(SExt, SanitizedSignMask);
2006   }
2007 
2008   if (Instruction *Z = narrowMaskedBinOp(I))
2009     return Z;
2010 
2011   if (I.getType()->isIntOrIntVectorTy(1)) {
2012     if (auto *SI0 = dyn_cast<SelectInst>(Op0)) {
2013       if (auto *I =
2014               foldAndOrOfSelectUsingImpliedCond(Op1, *SI0, /* IsAnd */ true))
2015         return I;
2016     }
2017     if (auto *SI1 = dyn_cast<SelectInst>(Op1)) {
2018       if (auto *I =
2019               foldAndOrOfSelectUsingImpliedCond(Op0, *SI1, /* IsAnd */ true))
2020         return I;
2021     }
2022   }
2023 
2024   if (Instruction *FoldedLogic = foldBinOpIntoSelectOrPhi(I))
2025     return FoldedLogic;
2026 
2027   if (Instruction *DeMorgan = matchDeMorgansLaws(I, Builder))
2028     return DeMorgan;
2029 
2030   {
2031     Value *A, *B, *C;
2032     // A & (A ^ B) --> A & ~B
2033     if (match(Op1, m_OneUse(m_c_Xor(m_Specific(Op0), m_Value(B)))))
2034       return BinaryOperator::CreateAnd(Op0, Builder.CreateNot(B));
2035     // (A ^ B) & A --> A & ~B
2036     if (match(Op0, m_OneUse(m_c_Xor(m_Specific(Op1), m_Value(B)))))
2037       return BinaryOperator::CreateAnd(Op1, Builder.CreateNot(B));
2038 
2039     // A & ~(A ^ B) --> A & B
2040     if (match(Op1, m_Not(m_c_Xor(m_Specific(Op0), m_Value(B)))))
2041       return BinaryOperator::CreateAnd(Op0, B);
2042     // ~(A ^ B) & A --> A & B
2043     if (match(Op0, m_Not(m_c_Xor(m_Specific(Op1), m_Value(B)))))
2044       return BinaryOperator::CreateAnd(Op1, B);
2045 
2046     // (A ^ B) & ((B ^ C) ^ A) -> (A ^ B) & ~C
2047     if (match(Op0, m_Xor(m_Value(A), m_Value(B))))
2048       if (match(Op1, m_Xor(m_Xor(m_Specific(B), m_Value(C)), m_Specific(A))))
2049         if (Op1->hasOneUse() || isFreeToInvert(C, C->hasOneUse()))
2050           return BinaryOperator::CreateAnd(Op0, Builder.CreateNot(C));
2051 
2052     // ((A ^ C) ^ B) & (B ^ A) -> (B ^ A) & ~C
2053     if (match(Op0, m_Xor(m_Xor(m_Value(A), m_Value(C)), m_Value(B))))
2054       if (match(Op1, m_Xor(m_Specific(B), m_Specific(A))))
2055         if (Op0->hasOneUse() || isFreeToInvert(C, C->hasOneUse()))
2056           return BinaryOperator::CreateAnd(Op1, Builder.CreateNot(C));
2057 
2058     // (A | B) & (~A ^ B) -> A & B
2059     // (A | B) & (B ^ ~A) -> A & B
2060     // (B | A) & (~A ^ B) -> A & B
2061     // (B | A) & (B ^ ~A) -> A & B
2062     if (match(Op1, m_c_Xor(m_Not(m_Value(A)), m_Value(B))) &&
2063         match(Op0, m_c_Or(m_Specific(A), m_Specific(B))))
2064       return BinaryOperator::CreateAnd(A, B);
2065 
2066     // (~A ^ B) & (A | B) -> A & B
2067     // (~A ^ B) & (B | A) -> A & B
2068     // (B ^ ~A) & (A | B) -> A & B
2069     // (B ^ ~A) & (B | A) -> A & B
2070     if (match(Op0, m_c_Xor(m_Not(m_Value(A)), m_Value(B))) &&
2071         match(Op1, m_c_Or(m_Specific(A), m_Specific(B))))
2072       return BinaryOperator::CreateAnd(A, B);
2073 
2074     // (~A | B) & (A ^ B) -> ~A & B
2075     // (~A | B) & (B ^ A) -> ~A & B
2076     // (B | ~A) & (A ^ B) -> ~A & B
2077     // (B | ~A) & (B ^ A) -> ~A & B
2078     if (match(Op0, m_c_Or(m_Not(m_Value(A)), m_Value(B))) &&
2079         match(Op1, m_c_Xor(m_Specific(A), m_Specific(B))))
2080       return BinaryOperator::CreateAnd(Builder.CreateNot(A), B);
2081 
2082     // (A ^ B) & (~A | B) -> ~A & B
2083     // (B ^ A) & (~A | B) -> ~A & B
2084     // (A ^ B) & (B | ~A) -> ~A & B
2085     // (B ^ A) & (B | ~A) -> ~A & B
2086     if (match(Op1, m_c_Or(m_Not(m_Value(A)), m_Value(B))) &&
2087         match(Op0, m_c_Xor(m_Specific(A), m_Specific(B))))
2088       return BinaryOperator::CreateAnd(Builder.CreateNot(A), B);
2089   }
2090 
2091   {
2092     ICmpInst *LHS = dyn_cast<ICmpInst>(Op0);
2093     ICmpInst *RHS = dyn_cast<ICmpInst>(Op1);
2094     if (LHS && RHS)
2095       if (Value *Res = foldAndOfICmps(LHS, RHS, I))
2096         return replaceInstUsesWith(I, Res);
2097 
2098     // TODO: Make this recursive; it's a little tricky because an arbitrary
2099     // number of 'and' instructions might have to be created.
2100     if (LHS && match(Op1, m_OneUse(m_And(m_Value(X), m_Value(Y))))) {
2101       if (auto *Cmp = dyn_cast<ICmpInst>(X))
2102         if (Value *Res = foldAndOfICmps(LHS, Cmp, I))
2103           return replaceInstUsesWith(I, Builder.CreateAnd(Res, Y));
2104       if (auto *Cmp = dyn_cast<ICmpInst>(Y))
2105         if (Value *Res = foldAndOfICmps(LHS, Cmp, I))
2106           return replaceInstUsesWith(I, Builder.CreateAnd(Res, X));
2107     }
2108     if (RHS && match(Op0, m_OneUse(m_And(m_Value(X), m_Value(Y))))) {
2109       if (auto *Cmp = dyn_cast<ICmpInst>(X))
2110         if (Value *Res = foldAndOfICmps(Cmp, RHS, I))
2111           return replaceInstUsesWith(I, Builder.CreateAnd(Res, Y));
2112       if (auto *Cmp = dyn_cast<ICmpInst>(Y))
2113         if (Value *Res = foldAndOfICmps(Cmp, RHS, I))
2114           return replaceInstUsesWith(I, Builder.CreateAnd(Res, X));
2115     }
2116   }
2117 
2118   if (FCmpInst *LHS = dyn_cast<FCmpInst>(I.getOperand(0)))
2119     if (FCmpInst *RHS = dyn_cast<FCmpInst>(I.getOperand(1)))
2120       if (Value *Res = foldLogicOfFCmps(LHS, RHS, true))
2121         return replaceInstUsesWith(I, Res);
2122 
2123   if (Instruction *FoldedFCmps = reassociateFCmps(I, Builder))
2124     return FoldedFCmps;
2125 
2126   if (Instruction *CastedAnd = foldCastedBitwiseLogic(I))
2127     return CastedAnd;
2128 
2129   if (Instruction *Sel = foldBinopOfSextBoolToSelect(I))
2130     return Sel;
2131 
2132   // and(sext(A), B) / and(B, sext(A)) --> A ? B : 0, where A is i1 or <N x i1>.
2133   // TODO: Move this into foldBinopOfSextBoolToSelect as a more generalized fold
2134   //       with binop identity constant. But creating a select with non-constant
2135   //       arm may not be reversible due to poison semantics. Is that a good
2136   //       canonicalization?
2137   Value *A;
2138   if (match(Op0, m_OneUse(m_SExt(m_Value(A)))) &&
2139       A->getType()->isIntOrIntVectorTy(1))
2140     return SelectInst::Create(A, Op1, Constant::getNullValue(Ty));
2141   if (match(Op1, m_OneUse(m_SExt(m_Value(A)))) &&
2142       A->getType()->isIntOrIntVectorTy(1))
2143     return SelectInst::Create(A, Op0, Constant::getNullValue(Ty));
2144 
2145   // (iN X s>> (N-1)) & Y --> (X s< 0) ? Y : 0
2146   unsigned FullShift = Ty->getScalarSizeInBits() - 1;
2147   if (match(&I, m_c_And(m_OneUse(m_AShr(m_Value(X), m_SpecificInt(FullShift))),
2148                         m_Value(Y)))) {
2149     Constant *Zero = ConstantInt::getNullValue(Ty);
2150     Value *Cmp = Builder.CreateICmpSLT(X, Zero, "isneg");
2151     return SelectInst::Create(Cmp, Y, Zero);
2152   }
2153   // If there's a 'not' of the shifted value, swap the select operands:
2154   // ~(iN X s>> (N-1)) & Y --> (X s< 0) ? 0 : Y
2155   if (match(&I, m_c_And(m_OneUse(m_Not(
2156                             m_AShr(m_Value(X), m_SpecificInt(FullShift)))),
2157                         m_Value(Y)))) {
2158     Constant *Zero = ConstantInt::getNullValue(Ty);
2159     Value *Cmp = Builder.CreateICmpSLT(X, Zero, "isneg");
2160     return SelectInst::Create(Cmp, Zero, Y);
2161   }
2162 
2163   // (~x) & y  -->  ~(x | (~y))  iff that gets rid of inversions
2164   if (sinkNotIntoOtherHandOfAndOrOr(I))
2165     return &I;
2166 
2167   // An and recurrence w/loop invariant step is equivelent to (and start, step)
2168   PHINode *PN = nullptr;
2169   Value *Start = nullptr, *Step = nullptr;
2170   if (matchSimpleRecurrence(&I, PN, Start, Step) && DT.dominates(Step, PN))
2171     return replaceInstUsesWith(I, Builder.CreateAnd(Start, Step));
2172 
2173   return nullptr;
2174 }
2175 
2176 Instruction *InstCombinerImpl::matchBSwapOrBitReverse(Instruction &I,
2177                                                       bool MatchBSwaps,
2178                                                       bool MatchBitReversals) {
2179   SmallVector<Instruction *, 4> Insts;
2180   if (!recognizeBSwapOrBitReverseIdiom(&I, MatchBSwaps, MatchBitReversals,
2181                                        Insts))
2182     return nullptr;
2183   Instruction *LastInst = Insts.pop_back_val();
2184   LastInst->removeFromParent();
2185 
2186   for (auto *Inst : Insts)
2187     Worklist.push(Inst);
2188   return LastInst;
2189 }
2190 
2191 /// Match UB-safe variants of the funnel shift intrinsic.
2192 static Instruction *matchFunnelShift(Instruction &Or, InstCombinerImpl &IC) {
2193   // TODO: Can we reduce the code duplication between this and the related
2194   // rotate matching code under visitSelect and visitTrunc?
2195   unsigned Width = Or.getType()->getScalarSizeInBits();
2196 
2197   // First, find an or'd pair of opposite shifts:
2198   // or (lshr ShVal0, ShAmt0), (shl ShVal1, ShAmt1)
2199   BinaryOperator *Or0, *Or1;
2200   if (!match(Or.getOperand(0), m_BinOp(Or0)) ||
2201       !match(Or.getOperand(1), m_BinOp(Or1)))
2202     return nullptr;
2203 
2204   Value *ShVal0, *ShVal1, *ShAmt0, *ShAmt1;
2205   if (!match(Or0, m_OneUse(m_LogicalShift(m_Value(ShVal0), m_Value(ShAmt0)))) ||
2206       !match(Or1, m_OneUse(m_LogicalShift(m_Value(ShVal1), m_Value(ShAmt1)))) ||
2207       Or0->getOpcode() == Or1->getOpcode())
2208     return nullptr;
2209 
2210   // Canonicalize to or(shl(ShVal0, ShAmt0), lshr(ShVal1, ShAmt1)).
2211   if (Or0->getOpcode() == BinaryOperator::LShr) {
2212     std::swap(Or0, Or1);
2213     std::swap(ShVal0, ShVal1);
2214     std::swap(ShAmt0, ShAmt1);
2215   }
2216   assert(Or0->getOpcode() == BinaryOperator::Shl &&
2217          Or1->getOpcode() == BinaryOperator::LShr &&
2218          "Illegal or(shift,shift) pair");
2219 
2220   // Match the shift amount operands for a funnel shift pattern. This always
2221   // matches a subtraction on the R operand.
2222   auto matchShiftAmount = [&](Value *L, Value *R, unsigned Width) -> Value * {
2223     // Check for constant shift amounts that sum to the bitwidth.
2224     const APInt *LI, *RI;
2225     if (match(L, m_APIntAllowUndef(LI)) && match(R, m_APIntAllowUndef(RI)))
2226       if (LI->ult(Width) && RI->ult(Width) && (*LI + *RI) == Width)
2227         return ConstantInt::get(L->getType(), *LI);
2228 
2229     Constant *LC, *RC;
2230     if (match(L, m_Constant(LC)) && match(R, m_Constant(RC)) &&
2231         match(L, m_SpecificInt_ICMP(ICmpInst::ICMP_ULT, APInt(Width, Width))) &&
2232         match(R, m_SpecificInt_ICMP(ICmpInst::ICMP_ULT, APInt(Width, Width))) &&
2233         match(ConstantExpr::getAdd(LC, RC), m_SpecificIntAllowUndef(Width)))
2234       return ConstantExpr::mergeUndefsWith(LC, RC);
2235 
2236     // (shl ShVal, X) | (lshr ShVal, (Width - x)) iff X < Width.
2237     // We limit this to X < Width in case the backend re-expands the intrinsic,
2238     // and has to reintroduce a shift modulo operation (InstCombine might remove
2239     // it after this fold). This still doesn't guarantee that the final codegen
2240     // will match this original pattern.
2241     if (match(R, m_OneUse(m_Sub(m_SpecificInt(Width), m_Specific(L))))) {
2242       KnownBits KnownL = IC.computeKnownBits(L, /*Depth*/ 0, &Or);
2243       return KnownL.getMaxValue().ult(Width) ? L : nullptr;
2244     }
2245 
2246     // For non-constant cases, the following patterns currently only work for
2247     // rotation patterns.
2248     // TODO: Add general funnel-shift compatible patterns.
2249     if (ShVal0 != ShVal1)
2250       return nullptr;
2251 
2252     // For non-constant cases we don't support non-pow2 shift masks.
2253     // TODO: Is it worth matching urem as well?
2254     if (!isPowerOf2_32(Width))
2255       return nullptr;
2256 
2257     // The shift amount may be masked with negation:
2258     // (shl ShVal, (X & (Width - 1))) | (lshr ShVal, ((-X) & (Width - 1)))
2259     Value *X;
2260     unsigned Mask = Width - 1;
2261     if (match(L, m_And(m_Value(X), m_SpecificInt(Mask))) &&
2262         match(R, m_And(m_Neg(m_Specific(X)), m_SpecificInt(Mask))))
2263       return X;
2264 
2265     // Similar to above, but the shift amount may be extended after masking,
2266     // so return the extended value as the parameter for the intrinsic.
2267     if (match(L, m_ZExt(m_And(m_Value(X), m_SpecificInt(Mask)))) &&
2268         match(R, m_And(m_Neg(m_ZExt(m_And(m_Specific(X), m_SpecificInt(Mask)))),
2269                        m_SpecificInt(Mask))))
2270       return L;
2271 
2272     if (match(L, m_ZExt(m_And(m_Value(X), m_SpecificInt(Mask)))) &&
2273         match(R, m_ZExt(m_And(m_Neg(m_Specific(X)), m_SpecificInt(Mask)))))
2274       return L;
2275 
2276     return nullptr;
2277   };
2278 
2279   Value *ShAmt = matchShiftAmount(ShAmt0, ShAmt1, Width);
2280   bool IsFshl = true; // Sub on LSHR.
2281   if (!ShAmt) {
2282     ShAmt = matchShiftAmount(ShAmt1, ShAmt0, Width);
2283     IsFshl = false; // Sub on SHL.
2284   }
2285   if (!ShAmt)
2286     return nullptr;
2287 
2288   Intrinsic::ID IID = IsFshl ? Intrinsic::fshl : Intrinsic::fshr;
2289   Function *F = Intrinsic::getDeclaration(Or.getModule(), IID, Or.getType());
2290   return CallInst::Create(F, {ShVal0, ShVal1, ShAmt});
2291 }
2292 
2293 /// Attempt to combine or(zext(x),shl(zext(y),bw/2) concat packing patterns.
2294 static Instruction *matchOrConcat(Instruction &Or,
2295                                   InstCombiner::BuilderTy &Builder) {
2296   assert(Or.getOpcode() == Instruction::Or && "bswap requires an 'or'");
2297   Value *Op0 = Or.getOperand(0), *Op1 = Or.getOperand(1);
2298   Type *Ty = Or.getType();
2299 
2300   unsigned Width = Ty->getScalarSizeInBits();
2301   if ((Width & 1) != 0)
2302     return nullptr;
2303   unsigned HalfWidth = Width / 2;
2304 
2305   // Canonicalize zext (lower half) to LHS.
2306   if (!isa<ZExtInst>(Op0))
2307     std::swap(Op0, Op1);
2308 
2309   // Find lower/upper half.
2310   Value *LowerSrc, *ShlVal, *UpperSrc;
2311   const APInt *C;
2312   if (!match(Op0, m_OneUse(m_ZExt(m_Value(LowerSrc)))) ||
2313       !match(Op1, m_OneUse(m_Shl(m_Value(ShlVal), m_APInt(C)))) ||
2314       !match(ShlVal, m_OneUse(m_ZExt(m_Value(UpperSrc)))))
2315     return nullptr;
2316   if (*C != HalfWidth || LowerSrc->getType() != UpperSrc->getType() ||
2317       LowerSrc->getType()->getScalarSizeInBits() != HalfWidth)
2318     return nullptr;
2319 
2320   auto ConcatIntrinsicCalls = [&](Intrinsic::ID id, Value *Lo, Value *Hi) {
2321     Value *NewLower = Builder.CreateZExt(Lo, Ty);
2322     Value *NewUpper = Builder.CreateZExt(Hi, Ty);
2323     NewUpper = Builder.CreateShl(NewUpper, HalfWidth);
2324     Value *BinOp = Builder.CreateOr(NewLower, NewUpper);
2325     Function *F = Intrinsic::getDeclaration(Or.getModule(), id, Ty);
2326     return Builder.CreateCall(F, BinOp);
2327   };
2328 
2329   // BSWAP: Push the concat down, swapping the lower/upper sources.
2330   // concat(bswap(x),bswap(y)) -> bswap(concat(x,y))
2331   Value *LowerBSwap, *UpperBSwap;
2332   if (match(LowerSrc, m_BSwap(m_Value(LowerBSwap))) &&
2333       match(UpperSrc, m_BSwap(m_Value(UpperBSwap))))
2334     return ConcatIntrinsicCalls(Intrinsic::bswap, UpperBSwap, LowerBSwap);
2335 
2336   // BITREVERSE: Push the concat down, swapping the lower/upper sources.
2337   // concat(bitreverse(x),bitreverse(y)) -> bitreverse(concat(x,y))
2338   Value *LowerBRev, *UpperBRev;
2339   if (match(LowerSrc, m_BitReverse(m_Value(LowerBRev))) &&
2340       match(UpperSrc, m_BitReverse(m_Value(UpperBRev))))
2341     return ConcatIntrinsicCalls(Intrinsic::bitreverse, UpperBRev, LowerBRev);
2342 
2343   return nullptr;
2344 }
2345 
2346 /// If all elements of two constant vectors are 0/-1 and inverses, return true.
2347 static bool areInverseVectorBitmasks(Constant *C1, Constant *C2) {
2348   unsigned NumElts = cast<FixedVectorType>(C1->getType())->getNumElements();
2349   for (unsigned i = 0; i != NumElts; ++i) {
2350     Constant *EltC1 = C1->getAggregateElement(i);
2351     Constant *EltC2 = C2->getAggregateElement(i);
2352     if (!EltC1 || !EltC2)
2353       return false;
2354 
2355     // One element must be all ones, and the other must be all zeros.
2356     if (!((match(EltC1, m_Zero()) && match(EltC2, m_AllOnes())) ||
2357           (match(EltC2, m_Zero()) && match(EltC1, m_AllOnes()))))
2358       return false;
2359   }
2360   return true;
2361 }
2362 
2363 /// We have an expression of the form (A & C) | (B & D). If A is a scalar or
2364 /// vector composed of all-zeros or all-ones values and is the bitwise 'not' of
2365 /// B, it can be used as the condition operand of a select instruction.
2366 Value *InstCombinerImpl::getSelectCondition(Value *A, Value *B) {
2367   // We may have peeked through bitcasts in the caller.
2368   // Exit immediately if we don't have (vector) integer types.
2369   Type *Ty = A->getType();
2370   if (!Ty->isIntOrIntVectorTy() || !B->getType()->isIntOrIntVectorTy())
2371     return nullptr;
2372 
2373   // If A is the 'not' operand of B and has enough signbits, we have our answer.
2374   if (match(B, m_Not(m_Specific(A)))) {
2375     // If these are scalars or vectors of i1, A can be used directly.
2376     if (Ty->isIntOrIntVectorTy(1))
2377       return A;
2378 
2379     // If we look through a vector bitcast, the caller will bitcast the operands
2380     // to match the condition's number of bits (N x i1).
2381     // To make this poison-safe, disallow bitcast from wide element to narrow
2382     // element. That could allow poison in lanes where it was not present in the
2383     // original code.
2384     A = peekThroughBitcast(A);
2385     if (A->getType()->isIntOrIntVectorTy()) {
2386       unsigned NumSignBits = ComputeNumSignBits(A);
2387       if (NumSignBits == A->getType()->getScalarSizeInBits() &&
2388           NumSignBits <= Ty->getScalarSizeInBits())
2389         return Builder.CreateTrunc(A, CmpInst::makeCmpResultType(A->getType()));
2390     }
2391     return nullptr;
2392   }
2393 
2394   // If both operands are constants, see if the constants are inverse bitmasks.
2395   Constant *AConst, *BConst;
2396   if (match(A, m_Constant(AConst)) && match(B, m_Constant(BConst)))
2397     if (AConst == ConstantExpr::getNot(BConst) &&
2398         ComputeNumSignBits(A) == Ty->getScalarSizeInBits())
2399       return Builder.CreateZExtOrTrunc(A, CmpInst::makeCmpResultType(Ty));
2400 
2401   // Look for more complex patterns. The 'not' op may be hidden behind various
2402   // casts. Look through sexts and bitcasts to find the booleans.
2403   Value *Cond;
2404   Value *NotB;
2405   if (match(A, m_SExt(m_Value(Cond))) &&
2406       Cond->getType()->isIntOrIntVectorTy(1)) {
2407     // A = sext i1 Cond; B = sext (not (i1 Cond))
2408     if (match(B, m_SExt(m_Not(m_Specific(Cond)))))
2409       return Cond;
2410 
2411     // A = sext i1 Cond; B = not ({bitcast} (sext (i1 Cond)))
2412     // TODO: The one-use checks are unnecessary or misplaced. If the caller
2413     //       checked for uses on logic ops/casts, that should be enough to
2414     //       make this transform worthwhile.
2415     if (match(B, m_OneUse(m_Not(m_Value(NotB))))) {
2416       NotB = peekThroughBitcast(NotB, true);
2417       if (match(NotB, m_SExt(m_Specific(Cond))))
2418         return Cond;
2419     }
2420   }
2421 
2422   // All scalar (and most vector) possibilities should be handled now.
2423   // Try more matches that only apply to non-splat constant vectors.
2424   if (!Ty->isVectorTy())
2425     return nullptr;
2426 
2427   // If both operands are xor'd with constants using the same sexted boolean
2428   // operand, see if the constants are inverse bitmasks.
2429   // TODO: Use ConstantExpr::getNot()?
2430   if (match(A, (m_Xor(m_SExt(m_Value(Cond)), m_Constant(AConst)))) &&
2431       match(B, (m_Xor(m_SExt(m_Specific(Cond)), m_Constant(BConst)))) &&
2432       Cond->getType()->isIntOrIntVectorTy(1) &&
2433       areInverseVectorBitmasks(AConst, BConst)) {
2434     AConst = ConstantExpr::getTrunc(AConst, CmpInst::makeCmpResultType(Ty));
2435     return Builder.CreateXor(Cond, AConst);
2436   }
2437   return nullptr;
2438 }
2439 
2440 /// We have an expression of the form (A & C) | (B & D). Try to simplify this
2441 /// to "A' ? C : D", where A' is a boolean or vector of booleans.
2442 Value *InstCombinerImpl::matchSelectFromAndOr(Value *A, Value *C, Value *B,
2443                                               Value *D) {
2444   // The potential condition of the select may be bitcasted. In that case, look
2445   // through its bitcast and the corresponding bitcast of the 'not' condition.
2446   Type *OrigType = A->getType();
2447   A = peekThroughBitcast(A, true);
2448   B = peekThroughBitcast(B, true);
2449   if (Value *Cond = getSelectCondition(A, B)) {
2450     // ((bc Cond) & C) | ((bc ~Cond) & D) --> bc (select Cond, (bc C), (bc D))
2451     // If this is a vector, we may need to cast to match the condition's length.
2452     // The bitcasts will either all exist or all not exist. The builder will
2453     // not create unnecessary casts if the types already match.
2454     Type *SelTy = A->getType();
2455     if (auto *VecTy = dyn_cast<VectorType>(Cond->getType())) {
2456       unsigned Elts = VecTy->getElementCount().getKnownMinValue();
2457       Type *EltTy = Builder.getIntNTy(SelTy->getPrimitiveSizeInBits() / Elts);
2458       SelTy = VectorType::get(EltTy, VecTy->getElementCount());
2459     }
2460     Value *BitcastC = Builder.CreateBitCast(C, SelTy);
2461     Value *BitcastD = Builder.CreateBitCast(D, SelTy);
2462     Value *Select = Builder.CreateSelect(Cond, BitcastC, BitcastD);
2463     return Builder.CreateBitCast(Select, OrigType);
2464   }
2465 
2466   return nullptr;
2467 }
2468 
2469 /// Fold (icmp)|(icmp) if possible.
2470 Value *InstCombinerImpl::foldOrOfICmps(ICmpInst *LHS, ICmpInst *RHS,
2471                                        BinaryOperator &Or) {
2472   const SimplifyQuery Q = SQ.getWithInstruction(&Or);
2473 
2474   // Fold (iszero(A & K1) | iszero(A & K2)) ->  (A & (K1 | K2)) != (K1 | K2)
2475   // if K1 and K2 are a one-bit mask.
2476   if (Value *V = foldAndOrOfICmpsOfAndWithPow2(LHS, RHS, &Or,
2477                                                /* IsAnd */ false))
2478     return V;
2479 
2480   ICmpInst::Predicate PredL = LHS->getPredicate(), PredR = RHS->getPredicate();
2481   Value *LHS0 = LHS->getOperand(0), *RHS0 = RHS->getOperand(0);
2482   Value *LHS1 = LHS->getOperand(1), *RHS1 = RHS->getOperand(1);
2483   const APInt *LHSC = nullptr, *RHSC = nullptr;
2484   match(LHS1, m_APInt(LHSC));
2485   match(RHS1, m_APInt(RHSC));
2486 
2487   // Fold (icmp ult/ule (A + C1), C3) | (icmp ult/ule (A + C2), C3)
2488   //                   -->  (icmp ult/ule ((A & ~(C1 ^ C2)) + max(C1, C2)), C3)
2489   // The original condition actually refers to the following two ranges:
2490   // [MAX_UINT-C1+1, MAX_UINT-C1+1+C3] and [MAX_UINT-C2+1, MAX_UINT-C2+1+C3]
2491   // We can fold these two ranges if:
2492   // 1) C1 and C2 is unsigned greater than C3.
2493   // 2) The two ranges are separated.
2494   // 3) C1 ^ C2 is one-bit mask.
2495   // 4) LowRange1 ^ LowRange2 and HighRange1 ^ HighRange2 are one-bit mask.
2496   // This implies all values in the two ranges differ by exactly one bit.
2497   if ((PredL == ICmpInst::ICMP_ULT || PredL == ICmpInst::ICMP_ULE) &&
2498       PredL == PredR && LHSC && RHSC && LHS->hasOneUse() && RHS->hasOneUse() &&
2499       LHSC->getBitWidth() == RHSC->getBitWidth() && *LHSC == *RHSC) {
2500 
2501     Value *AddOpnd;
2502     const APInt *LAddC, *RAddC;
2503     if (match(LHS0, m_Add(m_Value(AddOpnd), m_APInt(LAddC))) &&
2504         match(RHS0, m_Add(m_Specific(AddOpnd), m_APInt(RAddC))) &&
2505         LAddC->ugt(*LHSC) && RAddC->ugt(*LHSC)) {
2506 
2507       APInt DiffC = *LAddC ^ *RAddC;
2508       if (DiffC.isPowerOf2()) {
2509         const APInt *MaxAddC = nullptr;
2510         if (LAddC->ult(*RAddC))
2511           MaxAddC = RAddC;
2512         else
2513           MaxAddC = LAddC;
2514 
2515         APInt RRangeLow = -*RAddC;
2516         APInt RRangeHigh = RRangeLow + *LHSC;
2517         APInt LRangeLow = -*LAddC;
2518         APInt LRangeHigh = LRangeLow + *LHSC;
2519         APInt LowRangeDiff = RRangeLow ^ LRangeLow;
2520         APInt HighRangeDiff = RRangeHigh ^ LRangeHigh;
2521         APInt RangeDiff = LRangeLow.sgt(RRangeLow) ? LRangeLow - RRangeLow
2522                                                    : RRangeLow - LRangeLow;
2523 
2524         if (LowRangeDiff.isPowerOf2() && LowRangeDiff == HighRangeDiff &&
2525             RangeDiff.ugt(*LHSC)) {
2526           Type *Ty = AddOpnd->getType();
2527           Value *MaskC = ConstantInt::get(Ty, ~DiffC);
2528 
2529           Value *NewAnd = Builder.CreateAnd(AddOpnd, MaskC);
2530           Value *NewAdd = Builder.CreateAdd(NewAnd,
2531                                             ConstantInt::get(Ty, *MaxAddC));
2532           return Builder.CreateICmp(LHS->getPredicate(), NewAdd,
2533                                     ConstantInt::get(Ty, *LHSC));
2534         }
2535       }
2536     }
2537   }
2538 
2539   // (icmp1 A, B) | (icmp2 A, B) --> (icmp3 A, B)
2540   if (predicatesFoldable(PredL, PredR)) {
2541     if (LHS0 == RHS1 && LHS1 == RHS0)
2542       LHS->swapOperands();
2543     if (LHS0 == RHS0 && LHS1 == RHS1) {
2544       unsigned Code =
2545           getICmpCode(LHS->getPredicate()) | getICmpCode(RHS->getPredicate());
2546       bool IsSigned = LHS->isSigned() || RHS->isSigned();
2547       return getNewICmpValue(Code, IsSigned, LHS0, LHS1, Builder);
2548     }
2549   }
2550 
2551   // handle (roughly):
2552   // (icmp ne (A & B), C) | (icmp ne (A & D), E)
2553   if (Value *V = foldLogOpOfMaskedICmps(LHS, RHS, false, Builder))
2554     return V;
2555 
2556   if (LHS->hasOneUse() || RHS->hasOneUse()) {
2557     // (icmp eq B, 0) | (icmp ult A, B) -> (icmp ule A, B-1)
2558     // (icmp eq B, 0) | (icmp ugt B, A) -> (icmp ule A, B-1)
2559     Value *A = nullptr, *B = nullptr;
2560     if (PredL == ICmpInst::ICMP_EQ && match(LHS1, m_Zero())) {
2561       B = LHS0;
2562       if (PredR == ICmpInst::ICMP_ULT && LHS0 == RHS1)
2563         A = RHS0;
2564       else if (PredR == ICmpInst::ICMP_UGT && LHS0 == RHS0)
2565         A = RHS1;
2566     }
2567     // (icmp ult A, B) | (icmp eq B, 0) -> (icmp ule A, B-1)
2568     // (icmp ugt B, A) | (icmp eq B, 0) -> (icmp ule A, B-1)
2569     else if (PredR == ICmpInst::ICMP_EQ && match(RHS1, m_Zero())) {
2570       B = RHS0;
2571       if (PredL == ICmpInst::ICMP_ULT && RHS0 == LHS1)
2572         A = LHS0;
2573       else if (PredL == ICmpInst::ICMP_UGT && RHS0 == LHS0)
2574         A = LHS1;
2575     }
2576     if (A && B && B->getType()->isIntOrIntVectorTy())
2577       return Builder.CreateICmp(
2578           ICmpInst::ICMP_UGE,
2579           Builder.CreateAdd(B, Constant::getAllOnesValue(B->getType())), A);
2580   }
2581 
2582   if (Value *V = foldAndOrOfICmpsWithConstEq(LHS, RHS, Or, Builder, Q))
2583     return V;
2584   if (Value *V = foldAndOrOfICmpsWithConstEq(RHS, LHS, Or, Builder, Q))
2585     return V;
2586 
2587   // E.g. (icmp slt x, 0) | (icmp sgt x, n) --> icmp ugt x, n
2588   if (Value *V = simplifyRangeCheck(LHS, RHS, /*Inverted=*/true))
2589     return V;
2590 
2591   // E.g. (icmp sgt x, n) | (icmp slt x, 0) --> icmp ugt x, n
2592   if (Value *V = simplifyRangeCheck(RHS, LHS, /*Inverted=*/true))
2593     return V;
2594 
2595   if (Value *V = foldAndOrOfEqualityCmpsWithConstants(LHS, RHS, false, Builder))
2596     return V;
2597 
2598   if (Value *V = foldIsPowerOf2(LHS, RHS, false /* JoinedByAnd */, Builder))
2599     return V;
2600 
2601   if (Value *X =
2602           foldUnsignedUnderflowCheck(LHS, RHS, /*IsAnd=*/false, Q, Builder))
2603     return X;
2604   if (Value *X =
2605           foldUnsignedUnderflowCheck(RHS, LHS, /*IsAnd=*/false, Q, Builder))
2606     return X;
2607 
2608   if (Value *X = foldEqOfParts(LHS, RHS, /*IsAnd=*/false))
2609     return X;
2610 
2611   // (icmp ne A, 0) | (icmp ne B, 0) --> (icmp ne (A|B), 0)
2612   // TODO: Remove this when foldLogOpOfMaskedICmps can handle undefs.
2613   if (PredL == ICmpInst::ICMP_NE && match(LHS1, m_ZeroInt()) &&
2614       PredR == ICmpInst::ICMP_NE && match(RHS1, m_ZeroInt()) &&
2615       LHS0->getType() == RHS0->getType()) {
2616     Value *NewOr = Builder.CreateOr(LHS0, RHS0);
2617     return Builder.CreateICmp(PredL, NewOr,
2618                               Constant::getNullValue(NewOr->getType()));
2619   }
2620 
2621   // This only handles icmp of constants: (icmp1 A, C1) | (icmp2 B, C2).
2622   if (!LHSC || !RHSC)
2623     return nullptr;
2624 
2625   return foldAndOrOfICmpsUsingRanges(PredL, LHS0, *LHSC, PredR, RHS0, *RHSC,
2626                                      Builder, /* IsAnd */ false);
2627 }
2628 
2629 // FIXME: We use commutative matchers (m_c_*) for some, but not all, matches
2630 // here. We should standardize that construct where it is needed or choose some
2631 // other way to ensure that commutated variants of patterns are not missed.
2632 Instruction *InstCombinerImpl::visitOr(BinaryOperator &I) {
2633   if (Value *V = SimplifyOrInst(I.getOperand(0), I.getOperand(1),
2634                                 SQ.getWithInstruction(&I)))
2635     return replaceInstUsesWith(I, V);
2636 
2637   if (SimplifyAssociativeOrCommutative(I))
2638     return &I;
2639 
2640   if (Instruction *X = foldVectorBinop(I))
2641     return X;
2642 
2643   if (Instruction *Phi = foldBinopWithPhiOperands(I))
2644     return Phi;
2645 
2646   // See if we can simplify any instructions used by the instruction whose sole
2647   // purpose is to compute bits we don't care about.
2648   if (SimplifyDemandedInstructionBits(I))
2649     return &I;
2650 
2651   // Do this before using distributive laws to catch simple and/or/not patterns.
2652   if (Instruction *Xor = foldOrToXor(I, Builder))
2653     return Xor;
2654 
2655   if (Instruction *X = foldComplexAndOrPatterns(I, Builder))
2656     return X;
2657 
2658   // (A&B)|(A&C) -> A&(B|C) etc
2659   if (Value *V = SimplifyUsingDistributiveLaws(I))
2660     return replaceInstUsesWith(I, V);
2661 
2662   if (Value *V = SimplifyBSwap(I, Builder))
2663     return replaceInstUsesWith(I, V);
2664 
2665   Value *Op0 = I.getOperand(0), *Op1 = I.getOperand(1);
2666   Type *Ty = I.getType();
2667   if (Ty->isIntOrIntVectorTy(1)) {
2668     if (auto *SI0 = dyn_cast<SelectInst>(Op0)) {
2669       if (auto *I =
2670               foldAndOrOfSelectUsingImpliedCond(Op1, *SI0, /* IsAnd */ false))
2671         return I;
2672     }
2673     if (auto *SI1 = dyn_cast<SelectInst>(Op1)) {
2674       if (auto *I =
2675               foldAndOrOfSelectUsingImpliedCond(Op0, *SI1, /* IsAnd */ false))
2676         return I;
2677     }
2678   }
2679 
2680   if (Instruction *FoldedLogic = foldBinOpIntoSelectOrPhi(I))
2681     return FoldedLogic;
2682 
2683   if (Instruction *BitOp = matchBSwapOrBitReverse(I, /*MatchBSwaps*/ true,
2684                                                   /*MatchBitReversals*/ true))
2685     return BitOp;
2686 
2687   if (Instruction *Funnel = matchFunnelShift(I, *this))
2688     return Funnel;
2689 
2690   if (Instruction *Concat = matchOrConcat(I, Builder))
2691     return replaceInstUsesWith(I, Concat);
2692 
2693   Value *X, *Y;
2694   const APInt *CV;
2695   if (match(&I, m_c_Or(m_OneUse(m_Xor(m_Value(X), m_APInt(CV))), m_Value(Y))) &&
2696       !CV->isAllOnes() && MaskedValueIsZero(Y, *CV, 0, &I)) {
2697     // (X ^ C) | Y -> (X | Y) ^ C iff Y & C == 0
2698     // The check for a 'not' op is for efficiency (if Y is known zero --> ~X).
2699     Value *Or = Builder.CreateOr(X, Y);
2700     return BinaryOperator::CreateXor(Or, ConstantInt::get(Ty, *CV));
2701   }
2702 
2703   // If the operands have no common bits set:
2704   // or (mul X, Y), X --> add (mul X, Y), X --> mul X, (Y + 1)
2705   if (match(&I,
2706             m_c_Or(m_OneUse(m_Mul(m_Value(X), m_Value(Y))), m_Deferred(X))) &&
2707       haveNoCommonBitsSet(Op0, Op1, DL)) {
2708     Value *IncrementY = Builder.CreateAdd(Y, ConstantInt::get(Ty, 1));
2709     return BinaryOperator::CreateMul(X, IncrementY);
2710   }
2711 
2712   // (A & C) | (B & D)
2713   Value *A, *B, *C, *D;
2714   if (match(Op0, m_And(m_Value(A), m_Value(C))) &&
2715       match(Op1, m_And(m_Value(B), m_Value(D)))) {
2716 
2717     // (A & C0) | (B & C1)
2718     const APInt *C0, *C1;
2719     if (match(C, m_APInt(C0)) && match(D, m_APInt(C1))) {
2720       Value *X;
2721       if (*C0 == ~*C1) {
2722         // ((X | B) & MaskC) | (B & ~MaskC) -> (X & MaskC) | B
2723         if (match(A, m_c_Or(m_Value(X), m_Specific(B))))
2724           return BinaryOperator::CreateOr(Builder.CreateAnd(X, *C0), B);
2725         // (A & MaskC) | ((X | A) & ~MaskC) -> (X & ~MaskC) | A
2726         if (match(B, m_c_Or(m_Specific(A), m_Value(X))))
2727           return BinaryOperator::CreateOr(Builder.CreateAnd(X, *C1), A);
2728 
2729         // ((X ^ B) & MaskC) | (B & ~MaskC) -> (X & MaskC) ^ B
2730         if (match(A, m_c_Xor(m_Value(X), m_Specific(B))))
2731           return BinaryOperator::CreateXor(Builder.CreateAnd(X, *C0), B);
2732         // (A & MaskC) | ((X ^ A) & ~MaskC) -> (X & ~MaskC) ^ A
2733         if (match(B, m_c_Xor(m_Specific(A), m_Value(X))))
2734           return BinaryOperator::CreateXor(Builder.CreateAnd(X, *C1), A);
2735       }
2736 
2737       if ((*C0 & *C1).isZero()) {
2738         // ((X | B) & C0) | (B & C1) --> (X | B) & (C0 | C1)
2739         // iff (C0 & C1) == 0 and (X & ~C0) == 0
2740         if (match(A, m_c_Or(m_Value(X), m_Specific(B))) &&
2741             MaskedValueIsZero(X, ~*C0, 0, &I)) {
2742           Constant *C01 = ConstantInt::get(Ty, *C0 | *C1);
2743           return BinaryOperator::CreateAnd(A, C01);
2744         }
2745         // (A & C0) | ((X | A) & C1) --> (X | A) & (C0 | C1)
2746         // iff (C0 & C1) == 0 and (X & ~C1) == 0
2747         if (match(B, m_c_Or(m_Value(X), m_Specific(A))) &&
2748             MaskedValueIsZero(X, ~*C1, 0, &I)) {
2749           Constant *C01 = ConstantInt::get(Ty, *C0 | *C1);
2750           return BinaryOperator::CreateAnd(B, C01);
2751         }
2752         // ((X | C2) & C0) | ((X | C3) & C1) --> (X | C2 | C3) & (C0 | C1)
2753         // iff (C0 & C1) == 0 and (C2 & ~C0) == 0 and (C3 & ~C1) == 0.
2754         const APInt *C2, *C3;
2755         if (match(A, m_Or(m_Value(X), m_APInt(C2))) &&
2756             match(B, m_Or(m_Specific(X), m_APInt(C3))) &&
2757             (*C2 & ~*C0).isZero() && (*C3 & ~*C1).isZero()) {
2758           Value *Or = Builder.CreateOr(X, *C2 | *C3, "bitfield");
2759           Constant *C01 = ConstantInt::get(Ty, *C0 | *C1);
2760           return BinaryOperator::CreateAnd(Or, C01);
2761         }
2762       }
2763     }
2764 
2765     // Don't try to form a select if it's unlikely that we'll get rid of at
2766     // least one of the operands. A select is generally more expensive than the
2767     // 'or' that it is replacing.
2768     if (Op0->hasOneUse() || Op1->hasOneUse()) {
2769       // (Cond & C) | (~Cond & D) -> Cond ? C : D, and commuted variants.
2770       if (Value *V = matchSelectFromAndOr(A, C, B, D))
2771         return replaceInstUsesWith(I, V);
2772       if (Value *V = matchSelectFromAndOr(A, C, D, B))
2773         return replaceInstUsesWith(I, V);
2774       if (Value *V = matchSelectFromAndOr(C, A, B, D))
2775         return replaceInstUsesWith(I, V);
2776       if (Value *V = matchSelectFromAndOr(C, A, D, B))
2777         return replaceInstUsesWith(I, V);
2778       if (Value *V = matchSelectFromAndOr(B, D, A, C))
2779         return replaceInstUsesWith(I, V);
2780       if (Value *V = matchSelectFromAndOr(B, D, C, A))
2781         return replaceInstUsesWith(I, V);
2782       if (Value *V = matchSelectFromAndOr(D, B, A, C))
2783         return replaceInstUsesWith(I, V);
2784       if (Value *V = matchSelectFromAndOr(D, B, C, A))
2785         return replaceInstUsesWith(I, V);
2786     }
2787   }
2788 
2789   // (A ^ B) | ((B ^ C) ^ A) -> (A ^ B) | C
2790   if (match(Op0, m_Xor(m_Value(A), m_Value(B))))
2791     if (match(Op1, m_Xor(m_Xor(m_Specific(B), m_Value(C)), m_Specific(A))))
2792       return BinaryOperator::CreateOr(Op0, C);
2793 
2794   // ((A ^ C) ^ B) | (B ^ A) -> (B ^ A) | C
2795   if (match(Op0, m_Xor(m_Xor(m_Value(A), m_Value(C)), m_Value(B))))
2796     if (match(Op1, m_Xor(m_Specific(B), m_Specific(A))))
2797       return BinaryOperator::CreateOr(Op1, C);
2798 
2799   // ((B | C) & A) | B -> B | (A & C)
2800   if (match(Op0, m_And(m_Or(m_Specific(Op1), m_Value(C)), m_Value(A))))
2801     return BinaryOperator::CreateOr(Op1, Builder.CreateAnd(A, C));
2802 
2803   if (Instruction *DeMorgan = matchDeMorgansLaws(I, Builder))
2804     return DeMorgan;
2805 
2806   // Canonicalize xor to the RHS.
2807   bool SwappedForXor = false;
2808   if (match(Op0, m_Xor(m_Value(), m_Value()))) {
2809     std::swap(Op0, Op1);
2810     SwappedForXor = true;
2811   }
2812 
2813   // A | ( A ^ B) -> A |  B
2814   // A | (~A ^ B) -> A | ~B
2815   // (A & B) | (A ^ B)
2816   // ~A | (A ^ B) -> ~(A & B)
2817   // The swap above should always make Op0 the 'not' for the last case.
2818   if (match(Op1, m_Xor(m_Value(A), m_Value(B)))) {
2819     if (Op0 == A || Op0 == B)
2820       return BinaryOperator::CreateOr(A, B);
2821 
2822     if (match(Op0, m_And(m_Specific(A), m_Specific(B))) ||
2823         match(Op0, m_And(m_Specific(B), m_Specific(A))))
2824       return BinaryOperator::CreateOr(A, B);
2825 
2826     if ((Op0->hasOneUse() || Op1->hasOneUse()) &&
2827         (match(Op0, m_Not(m_Specific(A))) || match(Op0, m_Not(m_Specific(B)))))
2828       return BinaryOperator::CreateNot(Builder.CreateAnd(A, B));
2829 
2830     if (Op1->hasOneUse() && match(A, m_Not(m_Specific(Op0)))) {
2831       Value *Not = Builder.CreateNot(B, B->getName() + ".not");
2832       return BinaryOperator::CreateOr(Not, Op0);
2833     }
2834     if (Op1->hasOneUse() && match(B, m_Not(m_Specific(Op0)))) {
2835       Value *Not = Builder.CreateNot(A, A->getName() + ".not");
2836       return BinaryOperator::CreateOr(Not, Op0);
2837     }
2838   }
2839 
2840   // A | ~(A | B) -> A | ~B
2841   // A | ~(A ^ B) -> A | ~B
2842   if (match(Op1, m_Not(m_Value(A))))
2843     if (BinaryOperator *B = dyn_cast<BinaryOperator>(A))
2844       if ((Op0 == B->getOperand(0) || Op0 == B->getOperand(1)) &&
2845           Op1->hasOneUse() && (B->getOpcode() == Instruction::Or ||
2846                                B->getOpcode() == Instruction::Xor)) {
2847         Value *NotOp = Op0 == B->getOperand(0) ? B->getOperand(1) :
2848                                                  B->getOperand(0);
2849         Value *Not = Builder.CreateNot(NotOp, NotOp->getName() + ".not");
2850         return BinaryOperator::CreateOr(Not, Op0);
2851       }
2852 
2853   if (SwappedForXor)
2854     std::swap(Op0, Op1);
2855 
2856   {
2857     ICmpInst *LHS = dyn_cast<ICmpInst>(Op0);
2858     ICmpInst *RHS = dyn_cast<ICmpInst>(Op1);
2859     if (LHS && RHS)
2860       if (Value *Res = foldOrOfICmps(LHS, RHS, I))
2861         return replaceInstUsesWith(I, Res);
2862 
2863     // TODO: Make this recursive; it's a little tricky because an arbitrary
2864     // number of 'or' instructions might have to be created.
2865     Value *X, *Y;
2866     if (LHS && match(Op1, m_OneUse(m_Or(m_Value(X), m_Value(Y))))) {
2867       if (auto *Cmp = dyn_cast<ICmpInst>(X))
2868         if (Value *Res = foldOrOfICmps(LHS, Cmp, I))
2869           return replaceInstUsesWith(I, Builder.CreateOr(Res, Y));
2870       if (auto *Cmp = dyn_cast<ICmpInst>(Y))
2871         if (Value *Res = foldOrOfICmps(LHS, Cmp, I))
2872           return replaceInstUsesWith(I, Builder.CreateOr(Res, X));
2873     }
2874     if (RHS && match(Op0, m_OneUse(m_Or(m_Value(X), m_Value(Y))))) {
2875       if (auto *Cmp = dyn_cast<ICmpInst>(X))
2876         if (Value *Res = foldOrOfICmps(Cmp, RHS, I))
2877           return replaceInstUsesWith(I, Builder.CreateOr(Res, Y));
2878       if (auto *Cmp = dyn_cast<ICmpInst>(Y))
2879         if (Value *Res = foldOrOfICmps(Cmp, RHS, I))
2880           return replaceInstUsesWith(I, Builder.CreateOr(Res, X));
2881     }
2882   }
2883 
2884   if (FCmpInst *LHS = dyn_cast<FCmpInst>(I.getOperand(0)))
2885     if (FCmpInst *RHS = dyn_cast<FCmpInst>(I.getOperand(1)))
2886       if (Value *Res = foldLogicOfFCmps(LHS, RHS, false))
2887         return replaceInstUsesWith(I, Res);
2888 
2889   if (Instruction *FoldedFCmps = reassociateFCmps(I, Builder))
2890     return FoldedFCmps;
2891 
2892   if (Instruction *CastedOr = foldCastedBitwiseLogic(I))
2893     return CastedOr;
2894 
2895   if (Instruction *Sel = foldBinopOfSextBoolToSelect(I))
2896     return Sel;
2897 
2898   // or(sext(A), B) / or(B, sext(A)) --> A ? -1 : B, where A is i1 or <N x i1>.
2899   // TODO: Move this into foldBinopOfSextBoolToSelect as a more generalized fold
2900   //       with binop identity constant. But creating a select with non-constant
2901   //       arm may not be reversible due to poison semantics. Is that a good
2902   //       canonicalization?
2903   if (match(Op0, m_OneUse(m_SExt(m_Value(A)))) &&
2904       A->getType()->isIntOrIntVectorTy(1))
2905     return SelectInst::Create(A, ConstantInt::getAllOnesValue(Ty), Op1);
2906   if (match(Op1, m_OneUse(m_SExt(m_Value(A)))) &&
2907       A->getType()->isIntOrIntVectorTy(1))
2908     return SelectInst::Create(A, ConstantInt::getAllOnesValue(Ty), Op0);
2909 
2910   // Note: If we've gotten to the point of visiting the outer OR, then the
2911   // inner one couldn't be simplified.  If it was a constant, then it won't
2912   // be simplified by a later pass either, so we try swapping the inner/outer
2913   // ORs in the hopes that we'll be able to simplify it this way.
2914   // (X|C) | V --> (X|V) | C
2915   ConstantInt *CI;
2916   if (Op0->hasOneUse() && !match(Op1, m_ConstantInt()) &&
2917       match(Op0, m_Or(m_Value(A), m_ConstantInt(CI)))) {
2918     Value *Inner = Builder.CreateOr(A, Op1);
2919     Inner->takeName(Op0);
2920     return BinaryOperator::CreateOr(Inner, CI);
2921   }
2922 
2923   // Change (or (bool?A:B),(bool?C:D)) --> (bool?(or A,C):(or B,D))
2924   // Since this OR statement hasn't been optimized further yet, we hope
2925   // that this transformation will allow the new ORs to be optimized.
2926   {
2927     Value *X = nullptr, *Y = nullptr;
2928     if (Op0->hasOneUse() && Op1->hasOneUse() &&
2929         match(Op0, m_Select(m_Value(X), m_Value(A), m_Value(B))) &&
2930         match(Op1, m_Select(m_Value(Y), m_Value(C), m_Value(D))) && X == Y) {
2931       Value *orTrue = Builder.CreateOr(A, C);
2932       Value *orFalse = Builder.CreateOr(B, D);
2933       return SelectInst::Create(X, orTrue, orFalse);
2934     }
2935   }
2936 
2937   // or(ashr(subNSW(Y, X), ScalarSizeInBits(Y) - 1), X)  --> X s> Y ? -1 : X.
2938   {
2939     Value *X, *Y;
2940     if (match(&I, m_c_Or(m_OneUse(m_AShr(
2941                              m_NSWSub(m_Value(Y), m_Value(X)),
2942                              m_SpecificInt(Ty->getScalarSizeInBits() - 1))),
2943                          m_Deferred(X)))) {
2944       Value *NewICmpInst = Builder.CreateICmpSGT(X, Y);
2945       Value *AllOnes = ConstantInt::getAllOnesValue(Ty);
2946       return SelectInst::Create(NewICmpInst, AllOnes, X);
2947     }
2948   }
2949 
2950   if (Instruction *V =
2951           canonicalizeCondSignextOfHighBitExtractToSignextHighBitExtract(I))
2952     return V;
2953 
2954   CmpInst::Predicate Pred;
2955   Value *Mul, *Ov, *MulIsNotZero, *UMulWithOv;
2956   // Check if the OR weakens the overflow condition for umul.with.overflow by
2957   // treating any non-zero result as overflow. In that case, we overflow if both
2958   // umul.with.overflow operands are != 0, as in that case the result can only
2959   // be 0, iff the multiplication overflows.
2960   if (match(&I,
2961             m_c_Or(m_CombineAnd(m_ExtractValue<1>(m_Value(UMulWithOv)),
2962                                 m_Value(Ov)),
2963                    m_CombineAnd(m_ICmp(Pred,
2964                                        m_CombineAnd(m_ExtractValue<0>(
2965                                                         m_Deferred(UMulWithOv)),
2966                                                     m_Value(Mul)),
2967                                        m_ZeroInt()),
2968                                 m_Value(MulIsNotZero)))) &&
2969       (Ov->hasOneUse() || (MulIsNotZero->hasOneUse() && Mul->hasOneUse())) &&
2970       Pred == CmpInst::ICMP_NE) {
2971     Value *A, *B;
2972     if (match(UMulWithOv, m_Intrinsic<Intrinsic::umul_with_overflow>(
2973                               m_Value(A), m_Value(B)))) {
2974       Value *NotNullA = Builder.CreateIsNotNull(A);
2975       Value *NotNullB = Builder.CreateIsNotNull(B);
2976       return BinaryOperator::CreateAnd(NotNullA, NotNullB);
2977     }
2978   }
2979 
2980   // (~x) | y  -->  ~(x & (~y))  iff that gets rid of inversions
2981   if (sinkNotIntoOtherHandOfAndOrOr(I))
2982     return &I;
2983 
2984   // Improve "get low bit mask up to and including bit X" pattern:
2985   //   (1 << X) | ((1 << X) + -1)  -->  -1 l>> (bitwidth(x) - 1 - X)
2986   if (match(&I, m_c_Or(m_Add(m_Shl(m_One(), m_Value(X)), m_AllOnes()),
2987                        m_Shl(m_One(), m_Deferred(X)))) &&
2988       match(&I, m_c_Or(m_OneUse(m_Value()), m_Value()))) {
2989     Value *Sub = Builder.CreateSub(
2990         ConstantInt::get(Ty, Ty->getScalarSizeInBits() - 1), X);
2991     return BinaryOperator::CreateLShr(Constant::getAllOnesValue(Ty), Sub);
2992   }
2993 
2994   // An or recurrence w/loop invariant step is equivelent to (or start, step)
2995   PHINode *PN = nullptr;
2996   Value *Start = nullptr, *Step = nullptr;
2997   if (matchSimpleRecurrence(&I, PN, Start, Step) && DT.dominates(Step, PN))
2998     return replaceInstUsesWith(I, Builder.CreateOr(Start, Step));
2999 
3000   return nullptr;
3001 }
3002 
3003 /// A ^ B can be specified using other logic ops in a variety of patterns. We
3004 /// can fold these early and efficiently by morphing an existing instruction.
3005 static Instruction *foldXorToXor(BinaryOperator &I,
3006                                  InstCombiner::BuilderTy &Builder) {
3007   assert(I.getOpcode() == Instruction::Xor);
3008   Value *Op0 = I.getOperand(0);
3009   Value *Op1 = I.getOperand(1);
3010   Value *A, *B;
3011 
3012   // There are 4 commuted variants for each of the basic patterns.
3013 
3014   // (A & B) ^ (A | B) -> A ^ B
3015   // (A & B) ^ (B | A) -> A ^ B
3016   // (A | B) ^ (A & B) -> A ^ B
3017   // (A | B) ^ (B & A) -> A ^ B
3018   if (match(&I, m_c_Xor(m_And(m_Value(A), m_Value(B)),
3019                         m_c_Or(m_Deferred(A), m_Deferred(B)))))
3020     return BinaryOperator::CreateXor(A, B);
3021 
3022   // (A | ~B) ^ (~A | B) -> A ^ B
3023   // (~B | A) ^ (~A | B) -> A ^ B
3024   // (~A | B) ^ (A | ~B) -> A ^ B
3025   // (B | ~A) ^ (A | ~B) -> A ^ B
3026   if (match(&I, m_Xor(m_c_Or(m_Value(A), m_Not(m_Value(B))),
3027                       m_c_Or(m_Not(m_Deferred(A)), m_Deferred(B)))))
3028     return BinaryOperator::CreateXor(A, B);
3029 
3030   // (A & ~B) ^ (~A & B) -> A ^ B
3031   // (~B & A) ^ (~A & B) -> A ^ B
3032   // (~A & B) ^ (A & ~B) -> A ^ B
3033   // (B & ~A) ^ (A & ~B) -> A ^ B
3034   if (match(&I, m_Xor(m_c_And(m_Value(A), m_Not(m_Value(B))),
3035                       m_c_And(m_Not(m_Deferred(A)), m_Deferred(B)))))
3036     return BinaryOperator::CreateXor(A, B);
3037 
3038   // For the remaining cases we need to get rid of one of the operands.
3039   if (!Op0->hasOneUse() && !Op1->hasOneUse())
3040     return nullptr;
3041 
3042   // (A | B) ^ ~(A & B) -> ~(A ^ B)
3043   // (A | B) ^ ~(B & A) -> ~(A ^ B)
3044   // (A & B) ^ ~(A | B) -> ~(A ^ B)
3045   // (A & B) ^ ~(B | A) -> ~(A ^ B)
3046   // Complexity sorting ensures the not will be on the right side.
3047   if ((match(Op0, m_Or(m_Value(A), m_Value(B))) &&
3048        match(Op1, m_Not(m_c_And(m_Specific(A), m_Specific(B))))) ||
3049       (match(Op0, m_And(m_Value(A), m_Value(B))) &&
3050        match(Op1, m_Not(m_c_Or(m_Specific(A), m_Specific(B))))))
3051     return BinaryOperator::CreateNot(Builder.CreateXor(A, B));
3052 
3053   return nullptr;
3054 }
3055 
3056 Value *InstCombinerImpl::foldXorOfICmps(ICmpInst *LHS, ICmpInst *RHS,
3057                                         BinaryOperator &I) {
3058   assert(I.getOpcode() == Instruction::Xor && I.getOperand(0) == LHS &&
3059          I.getOperand(1) == RHS && "Should be 'xor' with these operands");
3060 
3061   if (predicatesFoldable(LHS->getPredicate(), RHS->getPredicate())) {
3062     if (LHS->getOperand(0) == RHS->getOperand(1) &&
3063         LHS->getOperand(1) == RHS->getOperand(0))
3064       LHS->swapOperands();
3065     if (LHS->getOperand(0) == RHS->getOperand(0) &&
3066         LHS->getOperand(1) == RHS->getOperand(1)) {
3067       // (icmp1 A, B) ^ (icmp2 A, B) --> (icmp3 A, B)
3068       Value *Op0 = LHS->getOperand(0), *Op1 = LHS->getOperand(1);
3069       unsigned Code =
3070           getICmpCode(LHS->getPredicate()) ^ getICmpCode(RHS->getPredicate());
3071       bool IsSigned = LHS->isSigned() || RHS->isSigned();
3072       return getNewICmpValue(Code, IsSigned, Op0, Op1, Builder);
3073     }
3074   }
3075 
3076   // TODO: This can be generalized to compares of non-signbits using
3077   // decomposeBitTestICmp(). It could be enhanced more by using (something like)
3078   // foldLogOpOfMaskedICmps().
3079   ICmpInst::Predicate PredL = LHS->getPredicate(), PredR = RHS->getPredicate();
3080   Value *LHS0 = LHS->getOperand(0), *LHS1 = LHS->getOperand(1);
3081   Value *RHS0 = RHS->getOperand(0), *RHS1 = RHS->getOperand(1);
3082   if ((LHS->hasOneUse() || RHS->hasOneUse()) &&
3083       LHS0->getType() == RHS0->getType() &&
3084       LHS0->getType()->isIntOrIntVectorTy()) {
3085     // (X > -1) ^ (Y > -1) --> (X ^ Y) < 0
3086     // (X <  0) ^ (Y <  0) --> (X ^ Y) < 0
3087     if ((PredL == CmpInst::ICMP_SGT && match(LHS1, m_AllOnes()) &&
3088          PredR == CmpInst::ICMP_SGT && match(RHS1, m_AllOnes())) ||
3089         (PredL == CmpInst::ICMP_SLT && match(LHS1, m_Zero()) &&
3090          PredR == CmpInst::ICMP_SLT && match(RHS1, m_Zero()))) {
3091       Value *Zero = ConstantInt::getNullValue(LHS0->getType());
3092       return Builder.CreateICmpSLT(Builder.CreateXor(LHS0, RHS0), Zero);
3093     }
3094     // (X > -1) ^ (Y <  0) --> (X ^ Y) > -1
3095     // (X <  0) ^ (Y > -1) --> (X ^ Y) > -1
3096     if ((PredL == CmpInst::ICMP_SGT && match(LHS1, m_AllOnes()) &&
3097          PredR == CmpInst::ICMP_SLT && match(RHS1, m_Zero())) ||
3098         (PredL == CmpInst::ICMP_SLT && match(LHS1, m_Zero()) &&
3099          PredR == CmpInst::ICMP_SGT && match(RHS1, m_AllOnes()))) {
3100       Value *MinusOne = ConstantInt::getAllOnesValue(LHS0->getType());
3101       return Builder.CreateICmpSGT(Builder.CreateXor(LHS0, RHS0), MinusOne);
3102     }
3103   }
3104 
3105   // Instead of trying to imitate the folds for and/or, decompose this 'xor'
3106   // into those logic ops. That is, try to turn this into an and-of-icmps
3107   // because we have many folds for that pattern.
3108   //
3109   // This is based on a truth table definition of xor:
3110   // X ^ Y --> (X | Y) & !(X & Y)
3111   if (Value *OrICmp = SimplifyBinOp(Instruction::Or, LHS, RHS, SQ)) {
3112     // TODO: If OrICmp is true, then the definition of xor simplifies to !(X&Y).
3113     // TODO: If OrICmp is false, the whole thing is false (InstSimplify?).
3114     if (Value *AndICmp = SimplifyBinOp(Instruction::And, LHS, RHS, SQ)) {
3115       // TODO: Independently handle cases where the 'and' side is a constant.
3116       ICmpInst *X = nullptr, *Y = nullptr;
3117       if (OrICmp == LHS && AndICmp == RHS) {
3118         // (LHS | RHS) & !(LHS & RHS) --> LHS & !RHS  --> X & !Y
3119         X = LHS;
3120         Y = RHS;
3121       }
3122       if (OrICmp == RHS && AndICmp == LHS) {
3123         // !(LHS & RHS) & (LHS | RHS) --> !LHS & RHS  --> !Y & X
3124         X = RHS;
3125         Y = LHS;
3126       }
3127       if (X && Y && (Y->hasOneUse() || canFreelyInvertAllUsersOf(Y, &I))) {
3128         // Invert the predicate of 'Y', thus inverting its output.
3129         Y->setPredicate(Y->getInversePredicate());
3130         // So, are there other uses of Y?
3131         if (!Y->hasOneUse()) {
3132           // We need to adapt other uses of Y though. Get a value that matches
3133           // the original value of Y before inversion. While this increases
3134           // immediate instruction count, we have just ensured that all the
3135           // users are freely-invertible, so that 'not' *will* get folded away.
3136           BuilderTy::InsertPointGuard Guard(Builder);
3137           // Set insertion point to right after the Y.
3138           Builder.SetInsertPoint(Y->getParent(), ++(Y->getIterator()));
3139           Value *NotY = Builder.CreateNot(Y, Y->getName() + ".not");
3140           // Replace all uses of Y (excluding the one in NotY!) with NotY.
3141           Worklist.pushUsersToWorkList(*Y);
3142           Y->replaceUsesWithIf(NotY,
3143                                [NotY](Use &U) { return U.getUser() != NotY; });
3144         }
3145         // All done.
3146         return Builder.CreateAnd(LHS, RHS);
3147       }
3148     }
3149   }
3150 
3151   return nullptr;
3152 }
3153 
3154 /// If we have a masked merge, in the canonical form of:
3155 /// (assuming that A only has one use.)
3156 ///   |        A  |  |B|
3157 ///   ((x ^ y) & M) ^ y
3158 ///    |  D  |
3159 /// * If M is inverted:
3160 ///      |  D  |
3161 ///     ((x ^ y) & ~M) ^ y
3162 ///   We can canonicalize by swapping the final xor operand
3163 ///   to eliminate the 'not' of the mask.
3164 ///     ((x ^ y) & M) ^ x
3165 /// * If M is a constant, and D has one use, we transform to 'and' / 'or' ops
3166 ///   because that shortens the dependency chain and improves analysis:
3167 ///     (x & M) | (y & ~M)
3168 static Instruction *visitMaskedMerge(BinaryOperator &I,
3169                                      InstCombiner::BuilderTy &Builder) {
3170   Value *B, *X, *D;
3171   Value *M;
3172   if (!match(&I, m_c_Xor(m_Value(B),
3173                          m_OneUse(m_c_And(
3174                              m_CombineAnd(m_c_Xor(m_Deferred(B), m_Value(X)),
3175                                           m_Value(D)),
3176                              m_Value(M))))))
3177     return nullptr;
3178 
3179   Value *NotM;
3180   if (match(M, m_Not(m_Value(NotM)))) {
3181     // De-invert the mask and swap the value in B part.
3182     Value *NewA = Builder.CreateAnd(D, NotM);
3183     return BinaryOperator::CreateXor(NewA, X);
3184   }
3185 
3186   Constant *C;
3187   if (D->hasOneUse() && match(M, m_Constant(C))) {
3188     // Propagating undef is unsafe. Clamp undef elements to -1.
3189     Type *EltTy = C->getType()->getScalarType();
3190     C = Constant::replaceUndefsWith(C, ConstantInt::getAllOnesValue(EltTy));
3191     // Unfold.
3192     Value *LHS = Builder.CreateAnd(X, C);
3193     Value *NotC = Builder.CreateNot(C);
3194     Value *RHS = Builder.CreateAnd(B, NotC);
3195     return BinaryOperator::CreateOr(LHS, RHS);
3196   }
3197 
3198   return nullptr;
3199 }
3200 
3201 // Transform
3202 //   ~(x ^ y)
3203 // into:
3204 //   (~x) ^ y
3205 // or into
3206 //   x ^ (~y)
3207 static Instruction *sinkNotIntoXor(BinaryOperator &I,
3208                                    InstCombiner::BuilderTy &Builder) {
3209   Value *X, *Y;
3210   // FIXME: one-use check is not needed in general, but currently we are unable
3211   // to fold 'not' into 'icmp', if that 'icmp' has multiple uses. (D35182)
3212   if (!match(&I, m_Not(m_OneUse(m_Xor(m_Value(X), m_Value(Y))))))
3213     return nullptr;
3214 
3215   // We only want to do the transform if it is free to do.
3216   if (InstCombiner::isFreeToInvert(X, X->hasOneUse())) {
3217     // Ok, good.
3218   } else if (InstCombiner::isFreeToInvert(Y, Y->hasOneUse())) {
3219     std::swap(X, Y);
3220   } else
3221     return nullptr;
3222 
3223   Value *NotX = Builder.CreateNot(X, X->getName() + ".not");
3224   return BinaryOperator::CreateXor(NotX, Y, I.getName() + ".demorgan");
3225 }
3226 
3227 /// Canonicalize a shifty way to code absolute value to the more common pattern
3228 /// that uses negation and select.
3229 static Instruction *canonicalizeAbs(BinaryOperator &Xor,
3230                                     InstCombiner::BuilderTy &Builder) {
3231   assert(Xor.getOpcode() == Instruction::Xor && "Expected an xor instruction.");
3232 
3233   // There are 4 potential commuted variants. Move the 'ashr' candidate to Op1.
3234   // We're relying on the fact that we only do this transform when the shift has
3235   // exactly 2 uses and the add has exactly 1 use (otherwise, we might increase
3236   // instructions).
3237   Value *Op0 = Xor.getOperand(0), *Op1 = Xor.getOperand(1);
3238   if (Op0->hasNUses(2))
3239     std::swap(Op0, Op1);
3240 
3241   Type *Ty = Xor.getType();
3242   Value *A;
3243   const APInt *ShAmt;
3244   if (match(Op1, m_AShr(m_Value(A), m_APInt(ShAmt))) &&
3245       Op1->hasNUses(2) && *ShAmt == Ty->getScalarSizeInBits() - 1 &&
3246       match(Op0, m_OneUse(m_c_Add(m_Specific(A), m_Specific(Op1))))) {
3247     // Op1 = ashr i32 A, 31   ; smear the sign bit
3248     // xor (add A, Op1), Op1  ; add -1 and flip bits if negative
3249     // --> (A < 0) ? -A : A
3250     Value *Cmp = Builder.CreateICmpSLT(A, ConstantInt::getNullValue(Ty));
3251     // Copy the nuw/nsw flags from the add to the negate.
3252     auto *Add = cast<BinaryOperator>(Op0);
3253     Value *Neg = Builder.CreateNeg(A, "", Add->hasNoUnsignedWrap(),
3254                                    Add->hasNoSignedWrap());
3255     return SelectInst::Create(Cmp, Neg, A);
3256   }
3257   return nullptr;
3258 }
3259 
3260 // Transform
3261 //   z = (~x) &/| y
3262 // into:
3263 //   z = ~(x |/& (~y))
3264 // iff y is free to invert and all uses of z can be freely updated.
3265 bool InstCombinerImpl::sinkNotIntoOtherHandOfAndOrOr(BinaryOperator &I) {
3266   Instruction::BinaryOps NewOpc;
3267   switch (I.getOpcode()) {
3268   case Instruction::And:
3269     NewOpc = Instruction::Or;
3270     break;
3271   case Instruction::Or:
3272     NewOpc = Instruction::And;
3273     break;
3274   default:
3275     return false;
3276   };
3277 
3278   Value *X, *Y;
3279   if (!match(&I, m_c_BinOp(m_Not(m_Value(X)), m_Value(Y))))
3280     return false;
3281 
3282   // Will we be able to fold the `not` into Y eventually?
3283   if (!InstCombiner::isFreeToInvert(Y, Y->hasOneUse()))
3284     return false;
3285 
3286   // And can our users be adapted?
3287   if (!InstCombiner::canFreelyInvertAllUsersOf(&I, /*IgnoredUser=*/nullptr))
3288     return false;
3289 
3290   Value *NotY = Builder.CreateNot(Y, Y->getName() + ".not");
3291   Value *NewBinOp =
3292       BinaryOperator::Create(NewOpc, X, NotY, I.getName() + ".not");
3293   Builder.Insert(NewBinOp);
3294   replaceInstUsesWith(I, NewBinOp);
3295   // We can not just create an outer `not`, it will most likely be immediately
3296   // folded back, reconstructing our initial pattern, and causing an
3297   // infinite combine loop, so immediately manually fold it away.
3298   freelyInvertAllUsersOf(NewBinOp);
3299   return true;
3300 }
3301 
3302 Instruction *InstCombinerImpl::foldNot(BinaryOperator &I) {
3303   Value *NotOp;
3304   if (!match(&I, m_Not(m_Value(NotOp))))
3305     return nullptr;
3306 
3307   // Apply DeMorgan's Law for 'nand' / 'nor' logic with an inverted operand.
3308   // We must eliminate the and/or (one-use) for these transforms to not increase
3309   // the instruction count.
3310   //
3311   // ~(~X & Y) --> (X | ~Y)
3312   // ~(Y & ~X) --> (X | ~Y)
3313   //
3314   // Note: The logical matches do not check for the commuted patterns because
3315   //       those are handled via SimplifySelectsFeedingBinaryOp().
3316   Type *Ty = I.getType();
3317   Value *X, *Y;
3318   if (match(NotOp, m_OneUse(m_c_And(m_Not(m_Value(X)), m_Value(Y))))) {
3319     Value *NotY = Builder.CreateNot(Y, Y->getName() + ".not");
3320     return BinaryOperator::CreateOr(X, NotY);
3321   }
3322   if (match(NotOp, m_OneUse(m_LogicalAnd(m_Not(m_Value(X)), m_Value(Y))))) {
3323     Value *NotY = Builder.CreateNot(Y, Y->getName() + ".not");
3324     return SelectInst::Create(X, ConstantInt::getTrue(Ty), NotY);
3325   }
3326 
3327   // ~(~X | Y) --> (X & ~Y)
3328   // ~(Y | ~X) --> (X & ~Y)
3329   if (match(NotOp, m_OneUse(m_c_Or(m_Not(m_Value(X)), m_Value(Y))))) {
3330     Value *NotY = Builder.CreateNot(Y, Y->getName() + ".not");
3331     return BinaryOperator::CreateAnd(X, NotY);
3332   }
3333   if (match(NotOp, m_OneUse(m_LogicalOr(m_Not(m_Value(X)), m_Value(Y))))) {
3334     Value *NotY = Builder.CreateNot(Y, Y->getName() + ".not");
3335     return SelectInst::Create(X, NotY, ConstantInt::getFalse(Ty));
3336   }
3337 
3338   // Is this a 'not' (~) fed by a binary operator?
3339   BinaryOperator *NotVal;
3340   if (match(NotOp, m_BinOp(NotVal))) {
3341     if (NotVal->getOpcode() == Instruction::And ||
3342         NotVal->getOpcode() == Instruction::Or) {
3343       // Apply DeMorgan's Law when inverts are free:
3344       // ~(X & Y) --> (~X | ~Y)
3345       // ~(X | Y) --> (~X & ~Y)
3346       if (isFreeToInvert(NotVal->getOperand(0),
3347                          NotVal->getOperand(0)->hasOneUse()) &&
3348           isFreeToInvert(NotVal->getOperand(1),
3349                          NotVal->getOperand(1)->hasOneUse())) {
3350         Value *NotX = Builder.CreateNot(NotVal->getOperand(0), "notlhs");
3351         Value *NotY = Builder.CreateNot(NotVal->getOperand(1), "notrhs");
3352         if (NotVal->getOpcode() == Instruction::And)
3353           return BinaryOperator::CreateOr(NotX, NotY);
3354         return BinaryOperator::CreateAnd(NotX, NotY);
3355       }
3356     }
3357 
3358     // ~((-X) | Y) --> (X - 1) & (~Y)
3359     if (match(NotVal,
3360               m_OneUse(m_c_Or(m_OneUse(m_Neg(m_Value(X))), m_Value(Y))))) {
3361       Value *DecX = Builder.CreateAdd(X, ConstantInt::getAllOnesValue(Ty));
3362       Value *NotY = Builder.CreateNot(Y);
3363       return BinaryOperator::CreateAnd(DecX, NotY);
3364     }
3365 
3366     // ~(~X >>s Y) --> (X >>s Y)
3367     if (match(NotVal, m_AShr(m_Not(m_Value(X)), m_Value(Y))))
3368       return BinaryOperator::CreateAShr(X, Y);
3369 
3370     // If we are inverting a right-shifted constant, we may be able to eliminate
3371     // the 'not' by inverting the constant and using the opposite shift type.
3372     // Canonicalization rules ensure that only a negative constant uses 'ashr',
3373     // but we must check that in case that transform has not fired yet.
3374 
3375     // ~(C >>s Y) --> ~C >>u Y (when inverting the replicated sign bits)
3376     Constant *C;
3377     if (match(NotVal, m_AShr(m_Constant(C), m_Value(Y))) &&
3378         match(C, m_Negative())) {
3379       // We matched a negative constant, so propagating undef is unsafe.
3380       // Clamp undef elements to -1.
3381       Type *EltTy = Ty->getScalarType();
3382       C = Constant::replaceUndefsWith(C, ConstantInt::getAllOnesValue(EltTy));
3383       return BinaryOperator::CreateLShr(ConstantExpr::getNot(C), Y);
3384     }
3385 
3386     // ~(C >>u Y) --> ~C >>s Y (when inverting the replicated sign bits)
3387     if (match(NotVal, m_LShr(m_Constant(C), m_Value(Y))) &&
3388         match(C, m_NonNegative())) {
3389       // We matched a non-negative constant, so propagating undef is unsafe.
3390       // Clamp undef elements to 0.
3391       Type *EltTy = Ty->getScalarType();
3392       C = Constant::replaceUndefsWith(C, ConstantInt::getNullValue(EltTy));
3393       return BinaryOperator::CreateAShr(ConstantExpr::getNot(C), Y);
3394     }
3395 
3396     // ~(X + C) --> ~C - X
3397     if (match(NotVal, m_c_Add(m_Value(X), m_ImmConstant(C))))
3398       return BinaryOperator::CreateSub(ConstantExpr::getNot(C), X);
3399 
3400     // ~(X - Y) --> ~X + Y
3401     // FIXME: is it really beneficial to sink the `not` here?
3402     if (match(NotVal, m_Sub(m_Value(X), m_Value(Y))))
3403       if (isa<Constant>(X) || NotVal->hasOneUse())
3404         return BinaryOperator::CreateAdd(Builder.CreateNot(X), Y);
3405 
3406     // ~(~X + Y) --> X - Y
3407     if (match(NotVal, m_c_Add(m_Not(m_Value(X)), m_Value(Y))))
3408       return BinaryOperator::CreateWithCopiedFlags(Instruction::Sub, X, Y,
3409                                                    NotVal);
3410   }
3411 
3412   // not (cmp A, B) = !cmp A, B
3413   CmpInst::Predicate Pred;
3414   if (match(NotOp, m_OneUse(m_Cmp(Pred, m_Value(), m_Value())))) {
3415     cast<CmpInst>(NotOp)->setPredicate(CmpInst::getInversePredicate(Pred));
3416     return replaceInstUsesWith(I, NotOp);
3417   }
3418 
3419   // Eliminate a bitwise 'not' op of 'not' min/max by inverting the min/max:
3420   // ~min(~X, ~Y) --> max(X, Y)
3421   // ~max(~X, Y) --> min(X, ~Y)
3422   auto *II = dyn_cast<IntrinsicInst>(NotOp);
3423   if (II && II->hasOneUse()) {
3424     if (match(NotOp, m_MaxOrMin(m_Value(X), m_Value(Y))) &&
3425         isFreeToInvert(X, X->hasOneUse()) &&
3426         isFreeToInvert(Y, Y->hasOneUse())) {
3427       Intrinsic::ID InvID = getInverseMinMaxIntrinsic(II->getIntrinsicID());
3428       Value *NotX = Builder.CreateNot(X);
3429       Value *NotY = Builder.CreateNot(Y);
3430       Value *InvMaxMin = Builder.CreateBinaryIntrinsic(InvID, NotX, NotY);
3431       return replaceInstUsesWith(I, InvMaxMin);
3432     }
3433     if (match(NotOp, m_c_MaxOrMin(m_Not(m_Value(X)), m_Value(Y)))) {
3434       Intrinsic::ID InvID = getInverseMinMaxIntrinsic(II->getIntrinsicID());
3435       Value *NotY = Builder.CreateNot(Y);
3436       Value *InvMaxMin = Builder.CreateBinaryIntrinsic(InvID, X, NotY);
3437       return replaceInstUsesWith(I, InvMaxMin);
3438     }
3439   }
3440 
3441   if (NotOp->hasOneUse()) {
3442     // Pull 'not' into operands of select if both operands are one-use compares
3443     // or one is one-use compare and the other one is a constant.
3444     // Inverting the predicates eliminates the 'not' operation.
3445     // Example:
3446     //   not (select ?, (cmp TPred, ?, ?), (cmp FPred, ?, ?) -->
3447     //     select ?, (cmp InvTPred, ?, ?), (cmp InvFPred, ?, ?)
3448     //   not (select ?, (cmp TPred, ?, ?), true -->
3449     //     select ?, (cmp InvTPred, ?, ?), false
3450     if (auto *Sel = dyn_cast<SelectInst>(NotOp)) {
3451       Value *TV = Sel->getTrueValue();
3452       Value *FV = Sel->getFalseValue();
3453       auto *CmpT = dyn_cast<CmpInst>(TV);
3454       auto *CmpF = dyn_cast<CmpInst>(FV);
3455       bool InvertibleT = (CmpT && CmpT->hasOneUse()) || isa<Constant>(TV);
3456       bool InvertibleF = (CmpF && CmpF->hasOneUse()) || isa<Constant>(FV);
3457       if (InvertibleT && InvertibleF) {
3458         if (CmpT)
3459           CmpT->setPredicate(CmpT->getInversePredicate());
3460         else
3461           Sel->setTrueValue(ConstantExpr::getNot(cast<Constant>(TV)));
3462         if (CmpF)
3463           CmpF->setPredicate(CmpF->getInversePredicate());
3464         else
3465           Sel->setFalseValue(ConstantExpr::getNot(cast<Constant>(FV)));
3466         return replaceInstUsesWith(I, Sel);
3467       }
3468     }
3469   }
3470 
3471   if (Instruction *NewXor = sinkNotIntoXor(I, Builder))
3472     return NewXor;
3473 
3474   return nullptr;
3475 }
3476 
3477 // FIXME: We use commutative matchers (m_c_*) for some, but not all, matches
3478 // here. We should standardize that construct where it is needed or choose some
3479 // other way to ensure that commutated variants of patterns are not missed.
3480 Instruction *InstCombinerImpl::visitXor(BinaryOperator &I) {
3481   if (Value *V = SimplifyXorInst(I.getOperand(0), I.getOperand(1),
3482                                  SQ.getWithInstruction(&I)))
3483     return replaceInstUsesWith(I, V);
3484 
3485   if (SimplifyAssociativeOrCommutative(I))
3486     return &I;
3487 
3488   if (Instruction *X = foldVectorBinop(I))
3489     return X;
3490 
3491   if (Instruction *Phi = foldBinopWithPhiOperands(I))
3492     return Phi;
3493 
3494   if (Instruction *NewXor = foldXorToXor(I, Builder))
3495     return NewXor;
3496 
3497   // (A&B)^(A&C) -> A&(B^C) etc
3498   if (Value *V = SimplifyUsingDistributiveLaws(I))
3499     return replaceInstUsesWith(I, V);
3500 
3501   // See if we can simplify any instructions used by the instruction whose sole
3502   // purpose is to compute bits we don't care about.
3503   if (SimplifyDemandedInstructionBits(I))
3504     return &I;
3505 
3506   if (Value *V = SimplifyBSwap(I, Builder))
3507     return replaceInstUsesWith(I, V);
3508 
3509   if (Instruction *R = foldNot(I))
3510     return R;
3511 
3512   // Fold (X & M) ^ (Y & ~M) -> (X & M) | (Y & ~M)
3513   // This it a special case in haveNoCommonBitsSet, but the computeKnownBits
3514   // calls in there are unnecessary as SimplifyDemandedInstructionBits should
3515   // have already taken care of those cases.
3516   Value *Op0 = I.getOperand(0), *Op1 = I.getOperand(1);
3517   Value *M;
3518   if (match(&I, m_c_Xor(m_c_And(m_Not(m_Value(M)), m_Value()),
3519                         m_c_And(m_Deferred(M), m_Value()))))
3520     return BinaryOperator::CreateOr(Op0, Op1);
3521 
3522   if (Instruction *Xor = visitMaskedMerge(I, Builder))
3523     return Xor;
3524 
3525   Value *X, *Y;
3526   Constant *C1;
3527   if (match(Op1, m_Constant(C1))) {
3528     // Use DeMorgan and reassociation to eliminate a 'not' op.
3529     Constant *C2;
3530     if (match(Op0, m_OneUse(m_Or(m_Not(m_Value(X)), m_Constant(C2))))) {
3531       // (~X | C2) ^ C1 --> ((X & ~C2) ^ -1) ^ C1 --> (X & ~C2) ^ ~C1
3532       Value *And = Builder.CreateAnd(X, ConstantExpr::getNot(C2));
3533       return BinaryOperator::CreateXor(And, ConstantExpr::getNot(C1));
3534     }
3535     if (match(Op0, m_OneUse(m_And(m_Not(m_Value(X)), m_Constant(C2))))) {
3536       // (~X & C2) ^ C1 --> ((X | ~C2) ^ -1) ^ C1 --> (X | ~C2) ^ ~C1
3537       Value *Or = Builder.CreateOr(X, ConstantExpr::getNot(C2));
3538       return BinaryOperator::CreateXor(Or, ConstantExpr::getNot(C1));
3539     }
3540 
3541     // Convert xor ([trunc] (ashr X, BW-1)), C =>
3542     //   select(X >s -1, C, ~C)
3543     // The ashr creates "AllZeroOrAllOne's", which then optionally inverses the
3544     // constant depending on whether this input is less than 0.
3545     const APInt *CA;
3546     if (match(Op0, m_OneUse(m_TruncOrSelf(
3547                        m_AShr(m_Value(X), m_APIntAllowUndef(CA))))) &&
3548         *CA == X->getType()->getScalarSizeInBits() - 1 &&
3549         !match(C1, m_AllOnes())) {
3550       assert(!C1->isZeroValue() && "Unexpected xor with 0");
3551       Value *ICmp =
3552           Builder.CreateICmpSGT(X, Constant::getAllOnesValue(X->getType()));
3553       return SelectInst::Create(ICmp, Op1, Builder.CreateNot(Op1));
3554     }
3555   }
3556 
3557   Type *Ty = I.getType();
3558   {
3559     const APInt *RHSC;
3560     if (match(Op1, m_APInt(RHSC))) {
3561       Value *X;
3562       const APInt *C;
3563       // (C - X) ^ signmaskC --> (C + signmaskC) - X
3564       if (RHSC->isSignMask() && match(Op0, m_Sub(m_APInt(C), m_Value(X))))
3565         return BinaryOperator::CreateSub(ConstantInt::get(Ty, *C + *RHSC), X);
3566 
3567       // (X + C) ^ signmaskC --> X + (C + signmaskC)
3568       if (RHSC->isSignMask() && match(Op0, m_Add(m_Value(X), m_APInt(C))))
3569         return BinaryOperator::CreateAdd(X, ConstantInt::get(Ty, *C + *RHSC));
3570 
3571       // (X | C) ^ RHSC --> X ^ (C ^ RHSC) iff X & C == 0
3572       if (match(Op0, m_Or(m_Value(X), m_APInt(C))) &&
3573           MaskedValueIsZero(X, *C, 0, &I))
3574         return BinaryOperator::CreateXor(X, ConstantInt::get(Ty, *C ^ *RHSC));
3575 
3576       // If RHSC is inverting the remaining bits of shifted X,
3577       // canonicalize to a 'not' before the shift to help SCEV and codegen:
3578       // (X << C) ^ RHSC --> ~X << C
3579       if (match(Op0, m_OneUse(m_Shl(m_Value(X), m_APInt(C)))) &&
3580           *RHSC == APInt::getAllOnes(Ty->getScalarSizeInBits()).shl(*C)) {
3581         Value *NotX = Builder.CreateNot(X);
3582         return BinaryOperator::CreateShl(NotX, ConstantInt::get(Ty, *C));
3583       }
3584       // (X >>u C) ^ RHSC --> ~X >>u C
3585       if (match(Op0, m_OneUse(m_LShr(m_Value(X), m_APInt(C)))) &&
3586           *RHSC == APInt::getAllOnes(Ty->getScalarSizeInBits()).lshr(*C)) {
3587         Value *NotX = Builder.CreateNot(X);
3588         return BinaryOperator::CreateLShr(NotX, ConstantInt::get(Ty, *C));
3589       }
3590       // TODO: We could handle 'ashr' here as well. That would be matching
3591       //       a 'not' op and moving it before the shift. Doing that requires
3592       //       preventing the inverse fold in canShiftBinOpWithConstantRHS().
3593     }
3594   }
3595 
3596   // FIXME: This should not be limited to scalar (pull into APInt match above).
3597   {
3598     Value *X;
3599     ConstantInt *C1, *C2, *C3;
3600     // ((X^C1) >> C2) ^ C3 -> (X>>C2) ^ ((C1>>C2)^C3)
3601     if (match(Op1, m_ConstantInt(C3)) &&
3602         match(Op0, m_LShr(m_Xor(m_Value(X), m_ConstantInt(C1)),
3603                           m_ConstantInt(C2))) &&
3604         Op0->hasOneUse()) {
3605       // fold (C1 >> C2) ^ C3
3606       APInt FoldConst = C1->getValue().lshr(C2->getValue());
3607       FoldConst ^= C3->getValue();
3608       // Prepare the two operands.
3609       auto *Opnd0 = Builder.CreateLShr(X, C2);
3610       Opnd0->takeName(Op0);
3611       return BinaryOperator::CreateXor(Opnd0, ConstantInt::get(Ty, FoldConst));
3612     }
3613   }
3614 
3615   if (Instruction *FoldedLogic = foldBinOpIntoSelectOrPhi(I))
3616     return FoldedLogic;
3617 
3618   // Y ^ (X | Y) --> X & ~Y
3619   // Y ^ (Y | X) --> X & ~Y
3620   if (match(Op1, m_OneUse(m_c_Or(m_Value(X), m_Specific(Op0)))))
3621     return BinaryOperator::CreateAnd(X, Builder.CreateNot(Op0));
3622   // (X | Y) ^ Y --> X & ~Y
3623   // (Y | X) ^ Y --> X & ~Y
3624   if (match(Op0, m_OneUse(m_c_Or(m_Value(X), m_Specific(Op1)))))
3625     return BinaryOperator::CreateAnd(X, Builder.CreateNot(Op1));
3626 
3627   // Y ^ (X & Y) --> ~X & Y
3628   // Y ^ (Y & X) --> ~X & Y
3629   if (match(Op1, m_OneUse(m_c_And(m_Value(X), m_Specific(Op0)))))
3630     return BinaryOperator::CreateAnd(Op0, Builder.CreateNot(X));
3631   // (X & Y) ^ Y --> ~X & Y
3632   // (Y & X) ^ Y --> ~X & Y
3633   // Canonical form is (X & C) ^ C; don't touch that.
3634   // TODO: A 'not' op is better for analysis and codegen, but demanded bits must
3635   //       be fixed to prefer that (otherwise we get infinite looping).
3636   if (!match(Op1, m_Constant()) &&
3637       match(Op0, m_OneUse(m_c_And(m_Value(X), m_Specific(Op1)))))
3638     return BinaryOperator::CreateAnd(Op1, Builder.CreateNot(X));
3639 
3640   Value *A, *B, *C;
3641   // (A ^ B) ^ (A | C) --> (~A & C) ^ B -- There are 4 commuted variants.
3642   if (match(&I, m_c_Xor(m_OneUse(m_Xor(m_Value(A), m_Value(B))),
3643                         m_OneUse(m_c_Or(m_Deferred(A), m_Value(C))))))
3644       return BinaryOperator::CreateXor(
3645           Builder.CreateAnd(Builder.CreateNot(A), C), B);
3646 
3647   // (A ^ B) ^ (B | C) --> (~B & C) ^ A -- There are 4 commuted variants.
3648   if (match(&I, m_c_Xor(m_OneUse(m_Xor(m_Value(A), m_Value(B))),
3649                         m_OneUse(m_c_Or(m_Deferred(B), m_Value(C))))))
3650       return BinaryOperator::CreateXor(
3651           Builder.CreateAnd(Builder.CreateNot(B), C), A);
3652 
3653   // (A & B) ^ (A ^ B) -> (A | B)
3654   if (match(Op0, m_And(m_Value(A), m_Value(B))) &&
3655       match(Op1, m_c_Xor(m_Specific(A), m_Specific(B))))
3656     return BinaryOperator::CreateOr(A, B);
3657   // (A ^ B) ^ (A & B) -> (A | B)
3658   if (match(Op0, m_Xor(m_Value(A), m_Value(B))) &&
3659       match(Op1, m_c_And(m_Specific(A), m_Specific(B))))
3660     return BinaryOperator::CreateOr(A, B);
3661 
3662   // (A & ~B) ^ ~A -> ~(A & B)
3663   // (~B & A) ^ ~A -> ~(A & B)
3664   if (match(Op0, m_c_And(m_Value(A), m_Not(m_Value(B)))) &&
3665       match(Op1, m_Not(m_Specific(A))))
3666     return BinaryOperator::CreateNot(Builder.CreateAnd(A, B));
3667 
3668   // (~A & B) ^ A --> A | B -- There are 4 commuted variants.
3669   if (match(&I, m_c_Xor(m_c_And(m_Not(m_Value(A)), m_Value(B)), m_Deferred(A))))
3670     return BinaryOperator::CreateOr(A, B);
3671 
3672   // (~A | B) ^ A --> ~(A & B)
3673   if (match(Op0, m_OneUse(m_c_Or(m_Not(m_Specific(Op1)), m_Value(B)))))
3674     return BinaryOperator::CreateNot(Builder.CreateAnd(Op1, B));
3675 
3676   // A ^ (~A | B) --> ~(A & B)
3677   if (match(Op1, m_OneUse(m_c_Or(m_Not(m_Specific(Op0)), m_Value(B)))))
3678     return BinaryOperator::CreateNot(Builder.CreateAnd(Op0, B));
3679 
3680   // (A | B) ^ (A | C) --> (B ^ C) & ~A -- There are 4 commuted variants.
3681   // TODO: Loosen one-use restriction if common operand is a constant.
3682   Value *D;
3683   if (match(Op0, m_OneUse(m_Or(m_Value(A), m_Value(B)))) &&
3684       match(Op1, m_OneUse(m_Or(m_Value(C), m_Value(D))))) {
3685     if (B == C || B == D)
3686       std::swap(A, B);
3687     if (A == C)
3688       std::swap(C, D);
3689     if (A == D) {
3690       Value *NotA = Builder.CreateNot(A);
3691       return BinaryOperator::CreateAnd(Builder.CreateXor(B, C), NotA);
3692     }
3693   }
3694 
3695   if (auto *LHS = dyn_cast<ICmpInst>(I.getOperand(0)))
3696     if (auto *RHS = dyn_cast<ICmpInst>(I.getOperand(1)))
3697       if (Value *V = foldXorOfICmps(LHS, RHS, I))
3698         return replaceInstUsesWith(I, V);
3699 
3700   if (Instruction *CastedXor = foldCastedBitwiseLogic(I))
3701     return CastedXor;
3702 
3703   if (Instruction *Abs = canonicalizeAbs(I, Builder))
3704     return Abs;
3705 
3706   // Otherwise, if all else failed, try to hoist the xor-by-constant:
3707   //   (X ^ C) ^ Y --> (X ^ Y) ^ C
3708   // Just like we do in other places, we completely avoid the fold
3709   // for constantexprs, at least to avoid endless combine loop.
3710   if (match(&I, m_c_Xor(m_OneUse(m_Xor(m_CombineAnd(m_Value(X),
3711                                                     m_Unless(m_ConstantExpr())),
3712                                        m_ImmConstant(C1))),
3713                         m_Value(Y))))
3714     return BinaryOperator::CreateXor(Builder.CreateXor(X, Y), C1);
3715 
3716   return nullptr;
3717 }
3718