xref: /sqlite-3.40.0/src/expr.c (revision 940fac9d)
1cce7d176Sdrh /*
2b19a2bc6Sdrh ** 2001 September 15
3cce7d176Sdrh **
4b19a2bc6Sdrh ** The author disclaims copyright to this source code.  In place of
5b19a2bc6Sdrh ** a legal notice, here is a blessing:
6cce7d176Sdrh **
7b19a2bc6Sdrh **    May you do good and not evil.
8b19a2bc6Sdrh **    May you find forgiveness for yourself and forgive others.
9b19a2bc6Sdrh **    May you share freely, never taking more than you give.
10cce7d176Sdrh **
11cce7d176Sdrh *************************************************************************
121ccde15dSdrh ** This file contains routines used for analyzing expressions and
13b19a2bc6Sdrh ** for generating VDBE code that evaluates expressions in SQLite.
14cce7d176Sdrh **
15*940fac9dSdanielk1977 ** $Id: expr.c,v 1.188 2005/01/23 22:41:37 danielk1977 Exp $
16cce7d176Sdrh */
17cce7d176Sdrh #include "sqliteInt.h"
1804738cb9Sdrh #include <ctype.h>
19a2e00042Sdrh 
20e014a838Sdanielk1977 /*
21e014a838Sdanielk1977 ** Return the 'affinity' of the expression pExpr if any.
22e014a838Sdanielk1977 **
23e014a838Sdanielk1977 ** If pExpr is a column, a reference to a column via an 'AS' alias,
24e014a838Sdanielk1977 ** or a sub-select with a column as the return value, then the
25e014a838Sdanielk1977 ** affinity of that column is returned. Otherwise, 0x00 is returned,
26e014a838Sdanielk1977 ** indicating no affinity for the expression.
27e014a838Sdanielk1977 **
28e014a838Sdanielk1977 ** i.e. the WHERE clause expresssions in the following statements all
29e014a838Sdanielk1977 ** have an affinity:
30e014a838Sdanielk1977 **
31e014a838Sdanielk1977 ** CREATE TABLE t1(a);
32e014a838Sdanielk1977 ** SELECT * FROM t1 WHERE a;
33e014a838Sdanielk1977 ** SELECT a AS b FROM t1 WHERE b;
34e014a838Sdanielk1977 ** SELECT * FROM t1 WHERE (select a from t1);
35e014a838Sdanielk1977 */
36bf3b721fSdanielk1977 char sqlite3ExprAffinity(Expr *pExpr){
37a37cdde0Sdanielk1977   if( pExpr->op==TK_AS ){
38bf3b721fSdanielk1977     return sqlite3ExprAffinity(pExpr->pLeft);
39a37cdde0Sdanielk1977   }
40a37cdde0Sdanielk1977   if( pExpr->op==TK_SELECT ){
41bf3b721fSdanielk1977     return sqlite3ExprAffinity(pExpr->pSelect->pEList->a[0].pExpr);
42a37cdde0Sdanielk1977   }
43a37cdde0Sdanielk1977   return pExpr->affinity;
44a37cdde0Sdanielk1977 }
45a37cdde0Sdanielk1977 
4653db1458Sdrh /*
470202b29eSdanielk1977 ** Return the default collation sequence for the expression pExpr. If
480202b29eSdanielk1977 ** there is no default collation type, return 0.
490202b29eSdanielk1977 */
507cedc8d4Sdanielk1977 CollSeq *sqlite3ExprCollSeq(Parse *pParse, Expr *pExpr){
517cedc8d4Sdanielk1977   CollSeq *pColl = 0;
520202b29eSdanielk1977   if( pExpr ){
537cedc8d4Sdanielk1977     pColl = pExpr->pColl;
547cedc8d4Sdanielk1977     if( pExpr->op==TK_AS && !pColl ){
557cedc8d4Sdanielk1977       return sqlite3ExprCollSeq(pParse, pExpr->pLeft);
560202b29eSdanielk1977     }
570202b29eSdanielk1977   }
587cedc8d4Sdanielk1977   if( sqlite3CheckCollSeq(pParse, pColl) ){
597cedc8d4Sdanielk1977     pColl = 0;
607cedc8d4Sdanielk1977   }
617cedc8d4Sdanielk1977   return pColl;
620202b29eSdanielk1977 }
630202b29eSdanielk1977 
640202b29eSdanielk1977 /*
65626a879aSdrh ** pExpr is an operand of a comparison operator.  aff2 is the
66626a879aSdrh ** type affinity of the other operand.  This routine returns the
6753db1458Sdrh ** type affinity that should be used for the comparison operator.
6853db1458Sdrh */
69e014a838Sdanielk1977 char sqlite3CompareAffinity(Expr *pExpr, char aff2){
70bf3b721fSdanielk1977   char aff1 = sqlite3ExprAffinity(pExpr);
71e014a838Sdanielk1977   if( aff1 && aff2 ){
72e014a838Sdanielk1977     /* Both sides of the comparison are columns. If one has numeric or
73e014a838Sdanielk1977     ** integer affinity, use that. Otherwise use no affinity.
74e014a838Sdanielk1977     */
75e014a838Sdanielk1977     if( aff1==SQLITE_AFF_INTEGER || aff2==SQLITE_AFF_INTEGER ){
76e014a838Sdanielk1977       return SQLITE_AFF_INTEGER;
77e014a838Sdanielk1977     }else if( aff1==SQLITE_AFF_NUMERIC || aff2==SQLITE_AFF_NUMERIC ){
78e014a838Sdanielk1977       return SQLITE_AFF_NUMERIC;
79e014a838Sdanielk1977     }else{
80e014a838Sdanielk1977       return SQLITE_AFF_NONE;
81e014a838Sdanielk1977     }
82e014a838Sdanielk1977   }else if( !aff1 && !aff2 ){
835f6a87b3Sdrh     /* Neither side of the comparison is a column.  Compare the
845f6a87b3Sdrh     ** results directly.
85e014a838Sdanielk1977     */
865f6a87b3Sdrh     /* return SQLITE_AFF_NUMERIC;  // Ticket #805 */
875f6a87b3Sdrh     return SQLITE_AFF_NONE;
88e014a838Sdanielk1977   }else{
89e014a838Sdanielk1977     /* One side is a column, the other is not. Use the columns affinity. */
90e014a838Sdanielk1977     return (aff1 + aff2);
91e014a838Sdanielk1977   }
92e014a838Sdanielk1977 }
93e014a838Sdanielk1977 
9453db1458Sdrh /*
9553db1458Sdrh ** pExpr is a comparison operator.  Return the type affinity that should
9653db1458Sdrh ** be applied to both operands prior to doing the comparison.
9753db1458Sdrh */
98e014a838Sdanielk1977 static char comparisonAffinity(Expr *pExpr){
99e014a838Sdanielk1977   char aff;
100e014a838Sdanielk1977   assert( pExpr->op==TK_EQ || pExpr->op==TK_IN || pExpr->op==TK_LT ||
101e014a838Sdanielk1977           pExpr->op==TK_GT || pExpr->op==TK_GE || pExpr->op==TK_LE ||
102e014a838Sdanielk1977           pExpr->op==TK_NE );
103e014a838Sdanielk1977   assert( pExpr->pLeft );
104bf3b721fSdanielk1977   aff = sqlite3ExprAffinity(pExpr->pLeft);
105e014a838Sdanielk1977   if( pExpr->pRight ){
106e014a838Sdanielk1977     aff = sqlite3CompareAffinity(pExpr->pRight, aff);
107e014a838Sdanielk1977   }
108e014a838Sdanielk1977   else if( pExpr->pSelect ){
109e014a838Sdanielk1977     aff = sqlite3CompareAffinity(pExpr->pSelect->pEList->a[0].pExpr, aff);
110e014a838Sdanielk1977   }
111e014a838Sdanielk1977   else if( !aff ){
112e014a838Sdanielk1977     aff = SQLITE_AFF_NUMERIC;
113e014a838Sdanielk1977   }
114e014a838Sdanielk1977   return aff;
115e014a838Sdanielk1977 }
116e014a838Sdanielk1977 
117e014a838Sdanielk1977 /*
118e014a838Sdanielk1977 ** pExpr is a comparison expression, eg. '=', '<', IN(...) etc.
119e014a838Sdanielk1977 ** idx_affinity is the affinity of an indexed column. Return true
120e014a838Sdanielk1977 ** if the index with affinity idx_affinity may be used to implement
121e014a838Sdanielk1977 ** the comparison in pExpr.
122e014a838Sdanielk1977 */
123e014a838Sdanielk1977 int sqlite3IndexAffinityOk(Expr *pExpr, char idx_affinity){
124e014a838Sdanielk1977   char aff = comparisonAffinity(pExpr);
125e014a838Sdanielk1977   return
126e014a838Sdanielk1977     (aff==SQLITE_AFF_NONE) ||
127e014a838Sdanielk1977     (aff==SQLITE_AFF_NUMERIC && idx_affinity==SQLITE_AFF_INTEGER) ||
128e014a838Sdanielk1977     (aff==SQLITE_AFF_INTEGER && idx_affinity==SQLITE_AFF_NUMERIC) ||
129e014a838Sdanielk1977     (aff==idx_affinity);
130e014a838Sdanielk1977 }
131e014a838Sdanielk1977 
132a37cdde0Sdanielk1977 /*
133a37cdde0Sdanielk1977 ** Return the P1 value that should be used for a binary comparison
134a37cdde0Sdanielk1977 ** opcode (OP_Eq, OP_Ge etc.) used to compare pExpr1 and pExpr2.
135a37cdde0Sdanielk1977 ** If jumpIfNull is true, then set the low byte of the returned
136a37cdde0Sdanielk1977 ** P1 value to tell the opcode to jump if either expression
137a37cdde0Sdanielk1977 ** evaluates to NULL.
138a37cdde0Sdanielk1977 */
139e014a838Sdanielk1977 static int binaryCompareP1(Expr *pExpr1, Expr *pExpr2, int jumpIfNull){
140bf3b721fSdanielk1977   char aff = sqlite3ExprAffinity(pExpr2);
141e014a838Sdanielk1977   return (((int)sqlite3CompareAffinity(pExpr1, aff))<<8)+(jumpIfNull?1:0);
142a37cdde0Sdanielk1977 }
143a37cdde0Sdanielk1977 
144a2e00042Sdrh /*
1450202b29eSdanielk1977 ** Return a pointer to the collation sequence that should be used by
1460202b29eSdanielk1977 ** a binary comparison operator comparing pLeft and pRight.
1470202b29eSdanielk1977 **
1480202b29eSdanielk1977 ** If the left hand expression has a collating sequence type, then it is
1490202b29eSdanielk1977 ** used. Otherwise the collation sequence for the right hand expression
1500202b29eSdanielk1977 ** is used, or the default (BINARY) if neither expression has a collating
1510202b29eSdanielk1977 ** type.
1520202b29eSdanielk1977 */
1537cedc8d4Sdanielk1977 static CollSeq* binaryCompareCollSeq(Parse *pParse, Expr *pLeft, Expr *pRight){
1547cedc8d4Sdanielk1977   CollSeq *pColl = sqlite3ExprCollSeq(pParse, pLeft);
1550202b29eSdanielk1977   if( !pColl ){
1567cedc8d4Sdanielk1977     pColl = sqlite3ExprCollSeq(pParse, pRight);
1570202b29eSdanielk1977   }
1580202b29eSdanielk1977   return pColl;
1590202b29eSdanielk1977 }
1600202b29eSdanielk1977 
1610202b29eSdanielk1977 /*
162be5c89acSdrh ** Generate code for a comparison operator.
163be5c89acSdrh */
164be5c89acSdrh static int codeCompare(
165be5c89acSdrh   Parse *pParse,    /* The parsing (and code generating) context */
166be5c89acSdrh   Expr *pLeft,      /* The left operand */
167be5c89acSdrh   Expr *pRight,     /* The right operand */
168be5c89acSdrh   int opcode,       /* The comparison opcode */
169be5c89acSdrh   int dest,         /* Jump here if true.  */
170be5c89acSdrh   int jumpIfNull    /* If true, jump if either operand is NULL */
171be5c89acSdrh ){
172be5c89acSdrh   int p1 = binaryCompareP1(pLeft, pRight, jumpIfNull);
173be5c89acSdrh   CollSeq *p3 = binaryCompareCollSeq(pParse, pLeft, pRight);
174be5c89acSdrh   return sqlite3VdbeOp3(pParse->pVdbe, opcode, p1, dest, (void*)p3, P3_COLLSEQ);
175be5c89acSdrh }
176be5c89acSdrh 
177be5c89acSdrh /*
178a76b5dfcSdrh ** Construct a new expression node and return a pointer to it.  Memory
179a76b5dfcSdrh ** for this node is obtained from sqliteMalloc().  The calling function
180a76b5dfcSdrh ** is responsible for making sure the node eventually gets freed.
181a76b5dfcSdrh */
182e4e72072Sdrh Expr *sqlite3Expr(int op, Expr *pLeft, Expr *pRight, const Token *pToken){
183a76b5dfcSdrh   Expr *pNew;
184a76b5dfcSdrh   pNew = sqliteMalloc( sizeof(Expr) );
185a76b5dfcSdrh   if( pNew==0 ){
1864efc4754Sdrh     /* When malloc fails, we leak memory from pLeft and pRight */
187a76b5dfcSdrh     return 0;
188a76b5dfcSdrh   }
189a76b5dfcSdrh   pNew->op = op;
190a76b5dfcSdrh   pNew->pLeft = pLeft;
191a76b5dfcSdrh   pNew->pRight = pRight;
192a76b5dfcSdrh   if( pToken ){
1934b59ab5eSdrh     assert( pToken->dyn==0 );
194145716b3Sdrh     pNew->span = pNew->token = *pToken;
195145716b3Sdrh   }else if( pLeft && pRight ){
1964adee20fSdanielk1977     sqlite3ExprSpan(pNew, &pLeft->span, &pRight->span);
197a76b5dfcSdrh   }
198a76b5dfcSdrh   return pNew;
199a76b5dfcSdrh }
200a76b5dfcSdrh 
201a76b5dfcSdrh /*
2024e0cff60Sdrh ** When doing a nested parse, you can include terms in an expression
2034e0cff60Sdrh ** that look like this:   #0 #1 #2 ...  These terms refer to elements
2044e0cff60Sdrh ** on the stack.  "#0" (or just "#") means the top of the stack.
2052958a4e6Sdrh ** "#1" means the next down on the stack.  And so forth.  #-1 means
2062958a4e6Sdrh ** memory location 0.  #-2 means memory location 1.  And so forth.
2074e0cff60Sdrh **
2084e0cff60Sdrh ** This routine is called by the parser to deal with on of those terms.
2094e0cff60Sdrh ** It immediately generates code to store the value in a memory location.
2104e0cff60Sdrh ** The returns an expression that will code to extract the value from
2114e0cff60Sdrh ** that memory location as needed.
2124e0cff60Sdrh */
2134e0cff60Sdrh Expr *sqlite3RegisterExpr(Parse *pParse, Token *pToken){
2144e0cff60Sdrh   Vdbe *v = pParse->pVdbe;
2154e0cff60Sdrh   Expr *p;
2164e0cff60Sdrh   int depth;
2174e0cff60Sdrh   if( v==0 ) return 0;
2184e0cff60Sdrh   if( pParse->nested==0 ){
2194e0cff60Sdrh     sqlite3ErrorMsg(pParse, "near \"%T\": syntax error", pToken);
2204e0cff60Sdrh     return 0;
2214e0cff60Sdrh   }
2224e0cff60Sdrh   p = sqlite3Expr(TK_REGISTER, 0, 0, pToken);
22373c42a13Sdrh   if( p==0 ){
22473c42a13Sdrh     return 0;  /* Malloc failed */
22573c42a13Sdrh   }
2264e0cff60Sdrh   depth = atoi(&pToken->z[1]);
2272958a4e6Sdrh   if( depth>=0 ){
2284e0cff60Sdrh     p->iTable = pParse->nMem++;
2294e0cff60Sdrh     sqlite3VdbeAddOp(v, OP_Dup, depth, 0);
2304e0cff60Sdrh     sqlite3VdbeAddOp(v, OP_MemStore, p->iTable, 1);
2312958a4e6Sdrh   }else{
2322958a4e6Sdrh     p->iTable = -1-depth;
2332958a4e6Sdrh   }
2344e0cff60Sdrh   return p;
2354e0cff60Sdrh }
2364e0cff60Sdrh 
2374e0cff60Sdrh /*
23891bb0eedSdrh ** Join two expressions using an AND operator.  If either expression is
23991bb0eedSdrh ** NULL, then just return the other expression.
24091bb0eedSdrh */
24191bb0eedSdrh Expr *sqlite3ExprAnd(Expr *pLeft, Expr *pRight){
24291bb0eedSdrh   if( pLeft==0 ){
24391bb0eedSdrh     return pRight;
24491bb0eedSdrh   }else if( pRight==0 ){
24591bb0eedSdrh     return pLeft;
24691bb0eedSdrh   }else{
24791bb0eedSdrh     return sqlite3Expr(TK_AND, pLeft, pRight, 0);
24891bb0eedSdrh   }
24991bb0eedSdrh }
25091bb0eedSdrh 
25191bb0eedSdrh /*
2526977fea8Sdrh ** Set the Expr.span field of the given expression to span all
253a76b5dfcSdrh ** text between the two given tokens.
254a76b5dfcSdrh */
2554adee20fSdanielk1977 void sqlite3ExprSpan(Expr *pExpr, Token *pLeft, Token *pRight){
2564efc4754Sdrh   assert( pRight!=0 );
2574efc4754Sdrh   assert( pLeft!=0 );
25871c697efSdrh   if( !sqlite3_malloc_failed && pRight->z && pLeft->z ){
259ad6d9460Sdrh     assert( pLeft->dyn==0 || pLeft->z[pLeft->n]==0 );
260145716b3Sdrh     if( pLeft->dyn==0 && pRight->dyn==0 ){
2616977fea8Sdrh       pExpr->span.z = pLeft->z;
2626977fea8Sdrh       pExpr->span.n = pRight->n + Addr(pRight->z) - Addr(pLeft->z);
2634b59ab5eSdrh     }else{
2646977fea8Sdrh       pExpr->span.z = 0;
2654b59ab5eSdrh     }
266a76b5dfcSdrh   }
267a76b5dfcSdrh }
268a76b5dfcSdrh 
269a76b5dfcSdrh /*
270a76b5dfcSdrh ** Construct a new expression node for a function with multiple
271a76b5dfcSdrh ** arguments.
272a76b5dfcSdrh */
2734adee20fSdanielk1977 Expr *sqlite3ExprFunction(ExprList *pList, Token *pToken){
274a76b5dfcSdrh   Expr *pNew;
275a76b5dfcSdrh   pNew = sqliteMalloc( sizeof(Expr) );
276a76b5dfcSdrh   if( pNew==0 ){
2774adee20fSdanielk1977     /* sqlite3ExprListDelete(pList); // Leak pList when malloc fails */
278a76b5dfcSdrh     return 0;
279a76b5dfcSdrh   }
280a76b5dfcSdrh   pNew->op = TK_FUNCTION;
281a76b5dfcSdrh   pNew->pList = pList;
282a76b5dfcSdrh   if( pToken ){
2834b59ab5eSdrh     assert( pToken->dyn==0 );
284a76b5dfcSdrh     pNew->token = *pToken;
285a76b5dfcSdrh   }else{
286a76b5dfcSdrh     pNew->token.z = 0;
287a76b5dfcSdrh   }
2886977fea8Sdrh   pNew->span = pNew->token;
289a76b5dfcSdrh   return pNew;
290a76b5dfcSdrh }
291a76b5dfcSdrh 
292a76b5dfcSdrh /*
293fa6bc000Sdrh ** Assign a variable number to an expression that encodes a wildcard
294fa6bc000Sdrh ** in the original SQL statement.
295fa6bc000Sdrh **
296fa6bc000Sdrh ** Wildcards consisting of a single "?" are assigned the next sequential
297fa6bc000Sdrh ** variable number.
298fa6bc000Sdrh **
299fa6bc000Sdrh ** Wildcards of the form "?nnn" are assigned the number "nnn".  We make
300fa6bc000Sdrh ** sure "nnn" is not too be to avoid a denial of service attack when
301fa6bc000Sdrh ** the SQL statement comes from an external source.
302fa6bc000Sdrh **
303fa6bc000Sdrh ** Wildcards of the form ":aaa" or "$aaa" are assigned the same number
304fa6bc000Sdrh ** as the previous instance of the same wildcard.  Or if this is the first
305fa6bc000Sdrh ** instance of the wildcard, the next sequenial variable number is
306fa6bc000Sdrh ** assigned.
307fa6bc000Sdrh */
308fa6bc000Sdrh void sqlite3ExprAssignVarNumber(Parse *pParse, Expr *pExpr){
309fa6bc000Sdrh   Token *pToken;
310fa6bc000Sdrh   if( pExpr==0 ) return;
311fa6bc000Sdrh   pToken = &pExpr->token;
312fa6bc000Sdrh   assert( pToken->n>=1 );
313fa6bc000Sdrh   assert( pToken->z!=0 );
314fa6bc000Sdrh   assert( pToken->z[0]!=0 );
315fa6bc000Sdrh   if( pToken->n==1 ){
316fa6bc000Sdrh     /* Wildcard of the form "?".  Assign the next variable number */
317fa6bc000Sdrh     pExpr->iTable = ++pParse->nVar;
318fa6bc000Sdrh   }else if( pToken->z[0]=='?' ){
319fa6bc000Sdrh     /* Wildcard of the form "?nnn".  Convert "nnn" to an integer and
320fa6bc000Sdrh     ** use it as the variable number */
321fa6bc000Sdrh     int i;
322fa6bc000Sdrh     pExpr->iTable = i = atoi(&pToken->z[1]);
323fa6bc000Sdrh     if( i<1 || i>SQLITE_MAX_VARIABLE_NUMBER ){
324fa6bc000Sdrh       sqlite3ErrorMsg(pParse, "variable number must be between ?1 and ?%d",
325fa6bc000Sdrh           SQLITE_MAX_VARIABLE_NUMBER);
326fa6bc000Sdrh     }
327fa6bc000Sdrh     if( i>pParse->nVar ){
328fa6bc000Sdrh       pParse->nVar = i;
329fa6bc000Sdrh     }
330fa6bc000Sdrh   }else{
331fa6bc000Sdrh     /* Wildcards of the form ":aaa" or "$aaa".  Reuse the same variable
332fa6bc000Sdrh     ** number as the prior appearance of the same name, or if the name
333fa6bc000Sdrh     ** has never appeared before, reuse the same variable number
334fa6bc000Sdrh     */
335fa6bc000Sdrh     int i, n;
336fa6bc000Sdrh     n = pToken->n;
337fa6bc000Sdrh     for(i=0; i<pParse->nVarExpr; i++){
338fa6bc000Sdrh       Expr *pE;
339fa6bc000Sdrh       if( (pE = pParse->apVarExpr[i])!=0
340fa6bc000Sdrh           && pE->token.n==n
341fa6bc000Sdrh           && memcmp(pE->token.z, pToken->z, n)==0 ){
342fa6bc000Sdrh         pExpr->iTable = pE->iTable;
343fa6bc000Sdrh         break;
344fa6bc000Sdrh       }
345fa6bc000Sdrh     }
346fa6bc000Sdrh     if( i>=pParse->nVarExpr ){
347fa6bc000Sdrh       pExpr->iTable = ++pParse->nVar;
348fa6bc000Sdrh       if( pParse->nVarExpr>=pParse->nVarExprAlloc-1 ){
349fa6bc000Sdrh         pParse->nVarExprAlloc += pParse->nVarExprAlloc + 10;
350fa6bc000Sdrh         pParse->apVarExpr = sqliteRealloc(pParse->apVarExpr,
351fa6bc000Sdrh                        pParse->nVarExprAlloc*sizeof(pParse->apVarExpr[0]) );
352fa6bc000Sdrh       }
353fa6bc000Sdrh       if( !sqlite3_malloc_failed ){
354fa6bc000Sdrh         assert( pParse->apVarExpr!=0 );
355fa6bc000Sdrh         pParse->apVarExpr[pParse->nVarExpr++] = pExpr;
356fa6bc000Sdrh       }
357fa6bc000Sdrh     }
358fa6bc000Sdrh   }
359fa6bc000Sdrh }
360fa6bc000Sdrh 
361fa6bc000Sdrh /*
362a2e00042Sdrh ** Recursively delete an expression tree.
363a2e00042Sdrh */
3644adee20fSdanielk1977 void sqlite3ExprDelete(Expr *p){
365a2e00042Sdrh   if( p==0 ) return;
3664efc4754Sdrh   if( p->span.dyn ) sqliteFree((char*)p->span.z);
3674efc4754Sdrh   if( p->token.dyn ) sqliteFree((char*)p->token.z);
3684adee20fSdanielk1977   sqlite3ExprDelete(p->pLeft);
3694adee20fSdanielk1977   sqlite3ExprDelete(p->pRight);
3704adee20fSdanielk1977   sqlite3ExprListDelete(p->pList);
3714adee20fSdanielk1977   sqlite3SelectDelete(p->pSelect);
372a2e00042Sdrh   sqliteFree(p);
373a2e00042Sdrh }
374a2e00042Sdrh 
375a76b5dfcSdrh 
376a76b5dfcSdrh /*
377ff78bd2fSdrh ** The following group of routines make deep copies of expressions,
378ff78bd2fSdrh ** expression lists, ID lists, and select statements.  The copies can
379ff78bd2fSdrh ** be deleted (by being passed to their respective ...Delete() routines)
380ff78bd2fSdrh ** without effecting the originals.
381ff78bd2fSdrh **
3824adee20fSdanielk1977 ** The expression list, ID, and source lists return by sqlite3ExprListDup(),
3834adee20fSdanielk1977 ** sqlite3IdListDup(), and sqlite3SrcListDup() can not be further expanded
384ad3cab52Sdrh ** by subsequent calls to sqlite*ListAppend() routines.
385ff78bd2fSdrh **
386ad3cab52Sdrh ** Any tables that the SrcList might point to are not duplicated.
387ff78bd2fSdrh */
3884adee20fSdanielk1977 Expr *sqlite3ExprDup(Expr *p){
389ff78bd2fSdrh   Expr *pNew;
390ff78bd2fSdrh   if( p==0 ) return 0;
391fcb78a49Sdrh   pNew = sqliteMallocRaw( sizeof(*p) );
392ff78bd2fSdrh   if( pNew==0 ) return 0;
3933b167c75Sdrh   memcpy(pNew, p, sizeof(*pNew));
3946977fea8Sdrh   if( p->token.z!=0 ){
395b9ecf6faSdrh     pNew->token.z = sqliteStrNDup(p->token.z, p->token.n);
3964b59ab5eSdrh     pNew->token.dyn = 1;
3974b59ab5eSdrh   }else{
3984efc4754Sdrh     assert( pNew->token.z==0 );
3994b59ab5eSdrh   }
4006977fea8Sdrh   pNew->span.z = 0;
4014adee20fSdanielk1977   pNew->pLeft = sqlite3ExprDup(p->pLeft);
4024adee20fSdanielk1977   pNew->pRight = sqlite3ExprDup(p->pRight);
4034adee20fSdanielk1977   pNew->pList = sqlite3ExprListDup(p->pList);
4044adee20fSdanielk1977   pNew->pSelect = sqlite3SelectDup(p->pSelect);
405ff78bd2fSdrh   return pNew;
406ff78bd2fSdrh }
4074adee20fSdanielk1977 void sqlite3TokenCopy(Token *pTo, Token *pFrom){
4084b59ab5eSdrh   if( pTo->dyn ) sqliteFree((char*)pTo->z);
4094b59ab5eSdrh   if( pFrom->z ){
4104b59ab5eSdrh     pTo->n = pFrom->n;
4114b59ab5eSdrh     pTo->z = sqliteStrNDup(pFrom->z, pFrom->n);
4124b59ab5eSdrh     pTo->dyn = 1;
4134b59ab5eSdrh   }else{
4144b59ab5eSdrh     pTo->z = 0;
4154b59ab5eSdrh   }
4164b59ab5eSdrh }
4174adee20fSdanielk1977 ExprList *sqlite3ExprListDup(ExprList *p){
418ff78bd2fSdrh   ExprList *pNew;
419145716b3Sdrh   struct ExprList_item *pItem, *pOldItem;
420ff78bd2fSdrh   int i;
421ff78bd2fSdrh   if( p==0 ) return 0;
422ff78bd2fSdrh   pNew = sqliteMalloc( sizeof(*pNew) );
423ff78bd2fSdrh   if( pNew==0 ) return 0;
4244305d103Sdrh   pNew->nExpr = pNew->nAlloc = p->nExpr;
4253e7bc9caSdrh   pNew->a = pItem = sqliteMalloc( p->nExpr*sizeof(p->a[0]) );
426e0048400Sdanielk1977   if( pItem==0 ){
427e0048400Sdanielk1977     sqliteFree(pNew);
428e0048400Sdanielk1977     return 0;
429e0048400Sdanielk1977   }
430145716b3Sdrh   pOldItem = p->a;
431145716b3Sdrh   for(i=0; i<p->nExpr; i++, pItem++, pOldItem++){
4324b59ab5eSdrh     Expr *pNewExpr, *pOldExpr;
433145716b3Sdrh     pItem->pExpr = pNewExpr = sqlite3ExprDup(pOldExpr = pOldItem->pExpr);
4346977fea8Sdrh     if( pOldExpr->span.z!=0 && pNewExpr ){
4356977fea8Sdrh       /* Always make a copy of the span for top-level expressions in the
4364b59ab5eSdrh       ** expression list.  The logic in SELECT processing that determines
4374b59ab5eSdrh       ** the names of columns in the result set needs this information */
4384adee20fSdanielk1977       sqlite3TokenCopy(&pNewExpr->span, &pOldExpr->span);
4394b59ab5eSdrh     }
4401f3e905cSdrh     assert( pNewExpr==0 || pNewExpr->span.z!=0
44124b03fd0Sdanielk1977             || pOldExpr->span.z==0 || sqlite3_malloc_failed );
442145716b3Sdrh     pItem->zName = sqliteStrDup(pOldItem->zName);
443145716b3Sdrh     pItem->sortOrder = pOldItem->sortOrder;
444145716b3Sdrh     pItem->isAgg = pOldItem->isAgg;
4453e7bc9caSdrh     pItem->done = 0;
446ff78bd2fSdrh   }
447ff78bd2fSdrh   return pNew;
448ff78bd2fSdrh }
44993758c8dSdanielk1977 
45093758c8dSdanielk1977 /*
45193758c8dSdanielk1977 ** If cursors, triggers, views and subqueries are all omitted from
45293758c8dSdanielk1977 ** the build, then none of the following routines, except for
45393758c8dSdanielk1977 ** sqlite3SelectDup(), can be called. sqlite3SelectDup() is sometimes
45493758c8dSdanielk1977 ** called with a NULL argument.
45593758c8dSdanielk1977 */
45693758c8dSdanielk1977 #if !defined(SQLITE_OMIT_CURSOR) || !defined(SQLITE_OMIT_VIEW) \
45793758c8dSdanielk1977  || !defined(SQLITE_OMIT_TRIGGER) || !defined(SQLITE_OMIT_SUBQUERY)
4584adee20fSdanielk1977 SrcList *sqlite3SrcListDup(SrcList *p){
459ad3cab52Sdrh   SrcList *pNew;
460ad3cab52Sdrh   int i;
461113088ecSdrh   int nByte;
462ad3cab52Sdrh   if( p==0 ) return 0;
463113088ecSdrh   nByte = sizeof(*p) + (p->nSrc>0 ? sizeof(p->a[0]) * (p->nSrc-1) : 0);
4644efc4754Sdrh   pNew = sqliteMallocRaw( nByte );
465ad3cab52Sdrh   if( pNew==0 ) return 0;
4664305d103Sdrh   pNew->nSrc = pNew->nAlloc = p->nSrc;
467ad3cab52Sdrh   for(i=0; i<p->nSrc; i++){
4684efc4754Sdrh     struct SrcList_item *pNewItem = &pNew->a[i];
4694efc4754Sdrh     struct SrcList_item *pOldItem = &p->a[i];
4704efc4754Sdrh     pNewItem->zDatabase = sqliteStrDup(pOldItem->zDatabase);
4714efc4754Sdrh     pNewItem->zName = sqliteStrDup(pOldItem->zName);
4724efc4754Sdrh     pNewItem->zAlias = sqliteStrDup(pOldItem->zAlias);
4734efc4754Sdrh     pNewItem->jointype = pOldItem->jointype;
4744efc4754Sdrh     pNewItem->iCursor = pOldItem->iCursor;
4754efc4754Sdrh     pNewItem->pTab = 0;
4764adee20fSdanielk1977     pNewItem->pSelect = sqlite3SelectDup(pOldItem->pSelect);
4774adee20fSdanielk1977     pNewItem->pOn = sqlite3ExprDup(pOldItem->pOn);
4784adee20fSdanielk1977     pNewItem->pUsing = sqlite3IdListDup(pOldItem->pUsing);
479ad3cab52Sdrh   }
480ad3cab52Sdrh   return pNew;
481ad3cab52Sdrh }
4824adee20fSdanielk1977 IdList *sqlite3IdListDup(IdList *p){
483ff78bd2fSdrh   IdList *pNew;
484ff78bd2fSdrh   int i;
485ff78bd2fSdrh   if( p==0 ) return 0;
4864efc4754Sdrh   pNew = sqliteMallocRaw( sizeof(*pNew) );
487ff78bd2fSdrh   if( pNew==0 ) return 0;
4884305d103Sdrh   pNew->nId = pNew->nAlloc = p->nId;
4894efc4754Sdrh   pNew->a = sqliteMallocRaw( p->nId*sizeof(p->a[0]) );
490e4697f5eSdrh   if( pNew->a==0 ) return 0;
491ff78bd2fSdrh   for(i=0; i<p->nId; i++){
4924efc4754Sdrh     struct IdList_item *pNewItem = &pNew->a[i];
4934efc4754Sdrh     struct IdList_item *pOldItem = &p->a[i];
4944efc4754Sdrh     pNewItem->zName = sqliteStrDup(pOldItem->zName);
4954efc4754Sdrh     pNewItem->idx = pOldItem->idx;
496ff78bd2fSdrh   }
497ff78bd2fSdrh   return pNew;
498ff78bd2fSdrh }
4994adee20fSdanielk1977 Select *sqlite3SelectDup(Select *p){
500ff78bd2fSdrh   Select *pNew;
501ff78bd2fSdrh   if( p==0 ) return 0;
5024efc4754Sdrh   pNew = sqliteMallocRaw( sizeof(*p) );
503ff78bd2fSdrh   if( pNew==0 ) return 0;
504ff78bd2fSdrh   pNew->isDistinct = p->isDistinct;
5054adee20fSdanielk1977   pNew->pEList = sqlite3ExprListDup(p->pEList);
5064adee20fSdanielk1977   pNew->pSrc = sqlite3SrcListDup(p->pSrc);
5074adee20fSdanielk1977   pNew->pWhere = sqlite3ExprDup(p->pWhere);
5084adee20fSdanielk1977   pNew->pGroupBy = sqlite3ExprListDup(p->pGroupBy);
5094adee20fSdanielk1977   pNew->pHaving = sqlite3ExprDup(p->pHaving);
5104adee20fSdanielk1977   pNew->pOrderBy = sqlite3ExprListDup(p->pOrderBy);
511ff78bd2fSdrh   pNew->op = p->op;
5124adee20fSdanielk1977   pNew->pPrior = sqlite3SelectDup(p->pPrior);
513ff78bd2fSdrh   pNew->nLimit = p->nLimit;
514ff78bd2fSdrh   pNew->nOffset = p->nOffset;
5157b58daeaSdrh   pNew->iLimit = -1;
5167b58daeaSdrh   pNew->iOffset = -1;
517dc1bdc4fSdanielk1977   pNew->ppOpenTemp = 0;
518b6c29897Sdrh   pNew->pFetch = 0;
519ff78bd2fSdrh   return pNew;
520ff78bd2fSdrh }
52193758c8dSdanielk1977 #else
52293758c8dSdanielk1977 Select *sqlite3SelectDup(Select *p){
52393758c8dSdanielk1977   assert( p==0 );
52493758c8dSdanielk1977   return 0;
52593758c8dSdanielk1977 }
52693758c8dSdanielk1977 #endif
527ff78bd2fSdrh 
528ff78bd2fSdrh 
529ff78bd2fSdrh /*
530a76b5dfcSdrh ** Add a new element to the end of an expression list.  If pList is
531a76b5dfcSdrh ** initially NULL, then create a new expression list.
532a76b5dfcSdrh */
5334adee20fSdanielk1977 ExprList *sqlite3ExprListAppend(ExprList *pList, Expr *pExpr, Token *pName){
534a76b5dfcSdrh   if( pList==0 ){
535a76b5dfcSdrh     pList = sqliteMalloc( sizeof(ExprList) );
536a76b5dfcSdrh     if( pList==0 ){
5374adee20fSdanielk1977       /* sqlite3ExprDelete(pExpr); // Leak memory if malloc fails */
538a76b5dfcSdrh       return 0;
539a76b5dfcSdrh     }
5404efc4754Sdrh     assert( pList->nAlloc==0 );
541a76b5dfcSdrh   }
5424305d103Sdrh   if( pList->nAlloc<=pList->nExpr ){
5434305d103Sdrh     pList->nAlloc = pList->nAlloc*2 + 4;
5444efc4754Sdrh     pList->a = sqliteRealloc(pList->a, pList->nAlloc*sizeof(pList->a[0]));
5454efc4754Sdrh     if( pList->a==0 ){
5464adee20fSdanielk1977       /* sqlite3ExprDelete(pExpr); // Leak memory if malloc fails */
5474efc4754Sdrh       pList->nExpr = pList->nAlloc = 0;
548a76b5dfcSdrh       return pList;
549a76b5dfcSdrh     }
550a76b5dfcSdrh   }
5514efc4754Sdrh   assert( pList->a!=0 );
5524efc4754Sdrh   if( pExpr || pName ){
5534efc4754Sdrh     struct ExprList_item *pItem = &pList->a[pList->nExpr++];
5544efc4754Sdrh     memset(pItem, 0, sizeof(*pItem));
5554efc4754Sdrh     pItem->pExpr = pExpr;
556a99db3b6Sdrh     pItem->zName = sqlite3NameFromToken(pName);
557a76b5dfcSdrh   }
558a76b5dfcSdrh   return pList;
559a76b5dfcSdrh }
560a76b5dfcSdrh 
561a76b5dfcSdrh /*
562a76b5dfcSdrh ** Delete an entire expression list.
563a76b5dfcSdrh */
5644adee20fSdanielk1977 void sqlite3ExprListDelete(ExprList *pList){
565a76b5dfcSdrh   int i;
566be5c89acSdrh   struct ExprList_item *pItem;
567a76b5dfcSdrh   if( pList==0 ) return;
5681bdd9b57Sdrh   assert( pList->a!=0 || (pList->nExpr==0 && pList->nAlloc==0) );
5691bdd9b57Sdrh   assert( pList->nExpr<=pList->nAlloc );
570be5c89acSdrh   for(pItem=pList->a, i=0; i<pList->nExpr; i++, pItem++){
571be5c89acSdrh     sqlite3ExprDelete(pItem->pExpr);
572be5c89acSdrh     sqliteFree(pItem->zName);
573a76b5dfcSdrh   }
574a76b5dfcSdrh   sqliteFree(pList->a);
575a76b5dfcSdrh   sqliteFree(pList);
576a76b5dfcSdrh }
577a76b5dfcSdrh 
578a76b5dfcSdrh /*
579626a879aSdrh ** Walk an expression tree.  Call xFunc for each node visited.
58073b211abSdrh **
581626a879aSdrh ** The return value from xFunc determines whether the tree walk continues.
582626a879aSdrh ** 0 means continue walking the tree.  1 means do not walk children
583626a879aSdrh ** of the current node but continue with siblings.  2 means abandon
584626a879aSdrh ** the tree walk completely.
585626a879aSdrh **
586626a879aSdrh ** The return value from this routine is 1 to abandon the tree walk
587626a879aSdrh ** and 0 to continue.
588626a879aSdrh */
589626a879aSdrh static int walkExprTree(Expr *pExpr, int (*xFunc)(void*,Expr*), void *pArg){
590626a879aSdrh   ExprList *pList;
591626a879aSdrh   int rc;
592626a879aSdrh   if( pExpr==0 ) return 0;
593626a879aSdrh   rc = (*xFunc)(pArg, pExpr);
594626a879aSdrh   if( rc==0 ){
595626a879aSdrh     if( walkExprTree(pExpr->pLeft, xFunc, pArg) ) return 1;
596626a879aSdrh     if( walkExprTree(pExpr->pRight, xFunc, pArg) ) return 1;
597626a879aSdrh     pList = pExpr->pList;
598626a879aSdrh     if( pList ){
599626a879aSdrh       int i;
600626a879aSdrh       struct ExprList_item *pItem;
601626a879aSdrh       for(i=pList->nExpr, pItem=pList->a; i>0; i--, pItem++){
602626a879aSdrh         if( walkExprTree(pItem->pExpr, xFunc, pArg) ) return 1;
603626a879aSdrh       }
604626a879aSdrh     }
605626a879aSdrh   }
606626a879aSdrh   return rc>1;
607626a879aSdrh }
608626a879aSdrh 
609626a879aSdrh /*
610626a879aSdrh ** This routine is designed as an xFunc for walkExprTree().
611626a879aSdrh **
612626a879aSdrh ** pArg is really a pointer to an integer.  If we can tell by looking
61373b211abSdrh ** at pExpr that the expression that contains pExpr is not a constant
61473b211abSdrh ** expression, then set *pArg to 0 and return 2 to abandon the tree walk.
61573b211abSdrh ** If pExpr does does not disqualify the expression from being a constant
61673b211abSdrh ** then do nothing.
61773b211abSdrh **
61873b211abSdrh ** After walking the whole tree, if no nodes are found that disqualify
61973b211abSdrh ** the expression as constant, then we assume the whole expression
62073b211abSdrh ** is constant.  See sqlite3ExprIsConstant() for additional information.
621626a879aSdrh */
622626a879aSdrh static int exprNodeIsConstant(void *pArg, Expr *pExpr){
623626a879aSdrh   switch( pExpr->op ){
624626a879aSdrh     case TK_ID:
625626a879aSdrh     case TK_COLUMN:
626626a879aSdrh     case TK_DOT:
627626a879aSdrh     case TK_AGG_FUNCTION:
628626a879aSdrh     case TK_FUNCTION:
629fe2093d7Sdrh #ifndef SQLITE_OMIT_SUBQUERY
630fe2093d7Sdrh     case TK_SELECT:
631fe2093d7Sdrh     case TK_EXISTS:
632fe2093d7Sdrh #endif
633626a879aSdrh       *((int*)pArg) = 0;
634626a879aSdrh       return 2;
635626a879aSdrh     default:
636626a879aSdrh       return 0;
637626a879aSdrh   }
638626a879aSdrh }
639626a879aSdrh 
640626a879aSdrh /*
641fef5208cSdrh ** Walk an expression tree.  Return 1 if the expression is constant
642fef5208cSdrh ** and 0 if it involves variables.
6432398937bSdrh **
6442398937bSdrh ** For the purposes of this function, a double-quoted string (ex: "abc")
6452398937bSdrh ** is considered a variable but a single-quoted string (ex: 'abc') is
6462398937bSdrh ** a constant.
647fef5208cSdrh */
6484adee20fSdanielk1977 int sqlite3ExprIsConstant(Expr *p){
649626a879aSdrh   int isConst = 1;
650626a879aSdrh   walkExprTree(p, exprNodeIsConstant, &isConst);
651626a879aSdrh   return isConst;
652fef5208cSdrh }
653fef5208cSdrh 
654fef5208cSdrh /*
65573b211abSdrh ** If the expression p codes a constant integer that is small enough
656202b2df7Sdrh ** to fit in a 32-bit integer, return 1 and put the value of the integer
657202b2df7Sdrh ** in *pValue.  If the expression is not an integer or if it is too big
658202b2df7Sdrh ** to fit in a signed 32-bit integer, return 0 and leave *pValue unchanged.
659e4de1febSdrh */
6604adee20fSdanielk1977 int sqlite3ExprIsInteger(Expr *p, int *pValue){
661e4de1febSdrh   switch( p->op ){
662e4de1febSdrh     case TK_INTEGER: {
663fec19aadSdrh       if( sqlite3GetInt32(p->token.z, pValue) ){
664e4de1febSdrh         return 1;
665e4de1febSdrh       }
666202b2df7Sdrh       break;
667202b2df7Sdrh     }
6684b59ab5eSdrh     case TK_UPLUS: {
6694adee20fSdanielk1977       return sqlite3ExprIsInteger(p->pLeft, pValue);
6704b59ab5eSdrh     }
671e4de1febSdrh     case TK_UMINUS: {
672e4de1febSdrh       int v;
6734adee20fSdanielk1977       if( sqlite3ExprIsInteger(p->pLeft, &v) ){
674e4de1febSdrh         *pValue = -v;
675e4de1febSdrh         return 1;
676e4de1febSdrh       }
677e4de1febSdrh       break;
678e4de1febSdrh     }
679e4de1febSdrh     default: break;
680e4de1febSdrh   }
681e4de1febSdrh   return 0;
682e4de1febSdrh }
683e4de1febSdrh 
684e4de1febSdrh /*
685c4a3c779Sdrh ** Return TRUE if the given string is a row-id column name.
686c4a3c779Sdrh */
6874adee20fSdanielk1977 int sqlite3IsRowid(const char *z){
6884adee20fSdanielk1977   if( sqlite3StrICmp(z, "_ROWID_")==0 ) return 1;
6894adee20fSdanielk1977   if( sqlite3StrICmp(z, "ROWID")==0 ) return 1;
6904adee20fSdanielk1977   if( sqlite3StrICmp(z, "OID")==0 ) return 1;
691c4a3c779Sdrh   return 0;
692c4a3c779Sdrh }
693c4a3c779Sdrh 
694c4a3c779Sdrh /*
6958141f61eSdrh ** Given the name of a column of the form X.Y.Z or Y.Z or just Z, look up
6968141f61eSdrh ** that name in the set of source tables in pSrcList and make the pExpr
6978141f61eSdrh ** expression node refer back to that source column.  The following changes
6988141f61eSdrh ** are made to pExpr:
6998141f61eSdrh **
7008141f61eSdrh **    pExpr->iDb           Set the index in db->aDb[] of the database holding
7018141f61eSdrh **                         the table.
7028141f61eSdrh **    pExpr->iTable        Set to the cursor number for the table obtained
7038141f61eSdrh **                         from pSrcList.
7048141f61eSdrh **    pExpr->iColumn       Set to the column number within the table.
7058141f61eSdrh **    pExpr->op            Set to TK_COLUMN.
7068141f61eSdrh **    pExpr->pLeft         Any expression this points to is deleted
7078141f61eSdrh **    pExpr->pRight        Any expression this points to is deleted.
7088141f61eSdrh **
7098141f61eSdrh ** The pDbToken is the name of the database (the "X").  This value may be
7108141f61eSdrh ** NULL meaning that name is of the form Y.Z or Z.  Any available database
7118141f61eSdrh ** can be used.  The pTableToken is the name of the table (the "Y").  This
7128141f61eSdrh ** value can be NULL if pDbToken is also NULL.  If pTableToken is NULL it
7138141f61eSdrh ** means that the form of the name is Z and that columns from any table
7148141f61eSdrh ** can be used.
7158141f61eSdrh **
7168141f61eSdrh ** If the name cannot be resolved unambiguously, leave an error message
7178141f61eSdrh ** in pParse and return non-zero.  Return zero on success.
7188141f61eSdrh */
7198141f61eSdrh static int lookupName(
7208141f61eSdrh   Parse *pParse,      /* The parsing context */
7218141f61eSdrh   Token *pDbToken,     /* Name of the database containing table, or NULL */
7228141f61eSdrh   Token *pTableToken,  /* Name of table containing column, or NULL */
7238141f61eSdrh   Token *pColumnToken, /* Name of the column. */
724626a879aSdrh   NameContext *pNC,    /* The name context used to resolve the name */
7258141f61eSdrh   Expr *pExpr          /* Make this EXPR node point to the selected column */
7268141f61eSdrh ){
7278141f61eSdrh   char *zDb = 0;       /* Name of the database.  The "X" in X.Y.Z */
7288141f61eSdrh   char *zTab = 0;      /* Name of the table.  The "Y" in X.Y.Z or Y.Z */
7298141f61eSdrh   char *zCol = 0;      /* Name of the column.  The "Z" */
7308141f61eSdrh   int i, j;            /* Loop counters */
7318141f61eSdrh   int cnt = 0;         /* Number of matching column names */
7328141f61eSdrh   int cntTab = 0;      /* Number of matching table names */
7339bb575fdSdrh   sqlite3 *db = pParse->db;  /* The database */
73451669863Sdrh   struct SrcList_item *pItem;       /* Use for looping over pSrcList items */
73551669863Sdrh   struct SrcList_item *pMatch = 0;  /* The matching pSrcList item */
73673b211abSdrh   NameContext *pTopNC = pNC;        /* First namecontext in the list */
7378141f61eSdrh 
7388141f61eSdrh   assert( pColumnToken && pColumnToken->z ); /* The Z in X.Y.Z cannot be NULL */
739a99db3b6Sdrh   zDb = sqlite3NameFromToken(pDbToken);
740a99db3b6Sdrh   zTab = sqlite3NameFromToken(pTableToken);
741a99db3b6Sdrh   zCol = sqlite3NameFromToken(pColumnToken);
74224b03fd0Sdanielk1977   if( sqlite3_malloc_failed ){
7438141f61eSdrh     return 1;  /* Leak memory (zDb and zTab) if malloc fails */
7448141f61eSdrh   }
7458141f61eSdrh 
7468141f61eSdrh   pExpr->iTable = -1;
747626a879aSdrh   while( pNC && cnt==0 ){
748626a879aSdrh     SrcList *pSrcList = pNC->pSrcList;
749626a879aSdrh     ExprList *pEList = pNC->pEList;
750626a879aSdrh 
751626a879aSdrh     pNC->nRef++;
752626a879aSdrh     /* assert( zTab==0 || pEList==0 ); */
75351669863Sdrh     for(i=0, pItem=pSrcList->a; i<pSrcList->nSrc; i++, pItem++){
7548141f61eSdrh       Table *pTab = pItem->pTab;
7558141f61eSdrh       Column *pCol;
7568141f61eSdrh 
7578141f61eSdrh       if( pTab==0 ) continue;
7588141f61eSdrh       assert( pTab->nCol>0 );
7598141f61eSdrh       if( zTab ){
7608141f61eSdrh         if( pItem->zAlias ){
7618141f61eSdrh           char *zTabName = pItem->zAlias;
7624adee20fSdanielk1977           if( sqlite3StrICmp(zTabName, zTab)!=0 ) continue;
7638141f61eSdrh         }else{
7648141f61eSdrh           char *zTabName = pTab->zName;
7654adee20fSdanielk1977           if( zTabName==0 || sqlite3StrICmp(zTabName, zTab)!=0 ) continue;
7664adee20fSdanielk1977           if( zDb!=0 && sqlite3StrICmp(db->aDb[pTab->iDb].zName, zDb)!=0 ){
7678141f61eSdrh             continue;
7688141f61eSdrh           }
7698141f61eSdrh         }
7708141f61eSdrh       }
7718141f61eSdrh       if( 0==(cntTab++) ){
7728141f61eSdrh         pExpr->iTable = pItem->iCursor;
7738141f61eSdrh         pExpr->iDb = pTab->iDb;
77451669863Sdrh         pMatch = pItem;
7758141f61eSdrh       }
7768141f61eSdrh       for(j=0, pCol=pTab->aCol; j<pTab->nCol; j++, pCol++){
7774adee20fSdanielk1977         if( sqlite3StrICmp(pCol->zName, zCol)==0 ){
7788141f61eSdrh           cnt++;
7798141f61eSdrh           pExpr->iTable = pItem->iCursor;
78051669863Sdrh           pMatch = pItem;
7818141f61eSdrh           pExpr->iDb = pTab->iDb;
7828141f61eSdrh           /* Substitute the rowid (column -1) for the INTEGER PRIMARY KEY */
7838141f61eSdrh           pExpr->iColumn = j==pTab->iPKey ? -1 : j;
784a37cdde0Sdanielk1977           pExpr->affinity = pTab->aCol[j].affinity;
7850202b29eSdanielk1977           pExpr->pColl = pTab->aCol[j].pColl;
7868141f61eSdrh           break;
7878141f61eSdrh         }
7888141f61eSdrh       }
7898141f61eSdrh     }
7908141f61eSdrh 
791b7f9164eSdrh #ifndef SQLITE_OMIT_TRIGGER
7928141f61eSdrh     /* If we have not already resolved the name, then maybe
7938141f61eSdrh     ** it is a new.* or old.* trigger argument reference
7948141f61eSdrh     */
7958141f61eSdrh     if( zDb==0 && zTab!=0 && cnt==0 && pParse->trigStack!=0 ){
7968141f61eSdrh       TriggerStack *pTriggerStack = pParse->trigStack;
7978141f61eSdrh       Table *pTab = 0;
7984adee20fSdanielk1977       if( pTriggerStack->newIdx != -1 && sqlite3StrICmp("new", zTab) == 0 ){
7998141f61eSdrh         pExpr->iTable = pTriggerStack->newIdx;
8008141f61eSdrh         assert( pTriggerStack->pTab );
8018141f61eSdrh         pTab = pTriggerStack->pTab;
8024adee20fSdanielk1977       }else if( pTriggerStack->oldIdx != -1 && sqlite3StrICmp("old", zTab)==0 ){
8038141f61eSdrh         pExpr->iTable = pTriggerStack->oldIdx;
8048141f61eSdrh         assert( pTriggerStack->pTab );
8058141f61eSdrh         pTab = pTriggerStack->pTab;
8068141f61eSdrh       }
8078141f61eSdrh 
8088141f61eSdrh       if( pTab ){
8098141f61eSdrh         int j;
8108141f61eSdrh         Column *pCol = pTab->aCol;
8118141f61eSdrh 
8128141f61eSdrh         pExpr->iDb = pTab->iDb;
8138141f61eSdrh         cntTab++;
8148141f61eSdrh         for(j=0; j < pTab->nCol; j++, pCol++) {
8154adee20fSdanielk1977           if( sqlite3StrICmp(pCol->zName, zCol)==0 ){
8168141f61eSdrh             cnt++;
8178141f61eSdrh             pExpr->iColumn = j==pTab->iPKey ? -1 : j;
818a37cdde0Sdanielk1977             pExpr->affinity = pTab->aCol[j].affinity;
8190202b29eSdanielk1977             pExpr->pColl = pTab->aCol[j].pColl;
8208141f61eSdrh             break;
8218141f61eSdrh           }
8228141f61eSdrh         }
8238141f61eSdrh       }
8248141f61eSdrh     }
825b7f9164eSdrh #endif /* !defined(SQLITE_OMIT_TRIGGER) */
8268141f61eSdrh 
8278141f61eSdrh     /*
8288141f61eSdrh     ** Perhaps the name is a reference to the ROWID
8298141f61eSdrh     */
8304adee20fSdanielk1977     if( cnt==0 && cntTab==1 && sqlite3IsRowid(zCol) ){
8318141f61eSdrh       cnt = 1;
8328141f61eSdrh       pExpr->iColumn = -1;
833a37cdde0Sdanielk1977       pExpr->affinity = SQLITE_AFF_INTEGER;
8348141f61eSdrh     }
8358141f61eSdrh 
8368141f61eSdrh     /*
8378141f61eSdrh     ** If the input is of the form Z (not Y.Z or X.Y.Z) then the name Z
8388141f61eSdrh     ** might refer to an result-set alias.  This happens, for example, when
8398141f61eSdrh     ** we are resolving names in the WHERE clause of the following command:
8408141f61eSdrh     **
8418141f61eSdrh     **     SELECT a+b AS x FROM table WHERE x<10;
8428141f61eSdrh     **
8438141f61eSdrh     ** In cases like this, replace pExpr with a copy of the expression that
8448141f61eSdrh     ** forms the result set entry ("a+b" in the example) and return immediately.
8458141f61eSdrh     ** Note that the expression in the result set should have already been
8468141f61eSdrh     ** resolved by the time the WHERE clause is resolved.
8478141f61eSdrh     */
84879d5f63fSdrh     if( cnt==0 && pEList!=0 && zTab==0 ){
8498141f61eSdrh       for(j=0; j<pEList->nExpr; j++){
8508141f61eSdrh         char *zAs = pEList->a[j].zName;
8514adee20fSdanielk1977         if( zAs!=0 && sqlite3StrICmp(zAs, zCol)==0 ){
8528141f61eSdrh           assert( pExpr->pLeft==0 && pExpr->pRight==0 );
8538141f61eSdrh           pExpr->op = TK_AS;
8548141f61eSdrh           pExpr->iColumn = j;
8554adee20fSdanielk1977           pExpr->pLeft = sqlite3ExprDup(pEList->a[j].pExpr);
8568141f61eSdrh           sqliteFree(zCol);
8578141f61eSdrh           assert( zTab==0 && zDb==0 );
8588141f61eSdrh           return 0;
8598141f61eSdrh         }
8608141f61eSdrh       }
8618141f61eSdrh     }
8628141f61eSdrh 
863626a879aSdrh     /* Advance to the next name context.  The loop will exit when either
864626a879aSdrh     ** we have a match (cnt>0) or when we run out of name contexts.
865626a879aSdrh     */
866626a879aSdrh     if( cnt==0 ){
867626a879aSdrh       pNC = pNC->pNext;
868626a879aSdrh     }
869626a879aSdrh   }
870626a879aSdrh 
8718141f61eSdrh   /*
8728141f61eSdrh   ** If X and Y are NULL (in other words if only the column name Z is
8738141f61eSdrh   ** supplied) and the value of Z is enclosed in double-quotes, then
8748141f61eSdrh   ** Z is a string literal if it doesn't match any column names.  In that
8758141f61eSdrh   ** case, we need to return right away and not make any changes to
8768141f61eSdrh   ** pExpr.
8778141f61eSdrh   */
8788141f61eSdrh   if( cnt==0 && zTab==0 && pColumnToken->z[0]=='"' ){
8798141f61eSdrh     sqliteFree(zCol);
8808141f61eSdrh     return 0;
8818141f61eSdrh   }
8828141f61eSdrh 
8838141f61eSdrh   /*
8848141f61eSdrh   ** cnt==0 means there was not match.  cnt>1 means there were two or
8858141f61eSdrh   ** more matches.  Either way, we have an error.
8868141f61eSdrh   */
8878141f61eSdrh   if( cnt!=1 ){
8888141f61eSdrh     char *z = 0;
8898141f61eSdrh     char *zErr;
8908141f61eSdrh     zErr = cnt==0 ? "no such column: %s" : "ambiguous column name: %s";
8918141f61eSdrh     if( zDb ){
8924adee20fSdanielk1977       sqlite3SetString(&z, zDb, ".", zTab, ".", zCol, 0);
8938141f61eSdrh     }else if( zTab ){
8944adee20fSdanielk1977       sqlite3SetString(&z, zTab, ".", zCol, 0);
8958141f61eSdrh     }else{
8968141f61eSdrh       z = sqliteStrDup(zCol);
8978141f61eSdrh     }
8984adee20fSdanielk1977     sqlite3ErrorMsg(pParse, zErr, z);
8998141f61eSdrh     sqliteFree(z);
90073b211abSdrh     pTopNC->nErr++;
9018141f61eSdrh   }
9028141f61eSdrh 
90351669863Sdrh   /* If a column from a table in pSrcList is referenced, then record
90451669863Sdrh   ** this fact in the pSrcList.a[].colUsed bitmask.  Column 0 causes
90551669863Sdrh   ** bit 0 to be set.  Column 1 sets bit 1.  And so forth.  If the
90651669863Sdrh   ** column number is greater than the number of bits in the bitmask
90751669863Sdrh   ** then set the high-order bit of the bitmask.
90851669863Sdrh   */
90951669863Sdrh   if( pExpr->iColumn>=0 && pMatch!=0 ){
91051669863Sdrh     int n = pExpr->iColumn;
91151669863Sdrh     if( n>=sizeof(Bitmask)*8 ){
91251669863Sdrh       n = sizeof(Bitmask)*8-1;
91351669863Sdrh     }
91451669863Sdrh     assert( pMatch->iCursor==pExpr->iTable );
91551669863Sdrh     pMatch->colUsed |= 1<<n;
91651669863Sdrh   }
91751669863Sdrh 
9188141f61eSdrh   /* Clean up and return
9198141f61eSdrh   */
9208141f61eSdrh   sqliteFree(zDb);
9218141f61eSdrh   sqliteFree(zTab);
9228141f61eSdrh   sqliteFree(zCol);
9234adee20fSdanielk1977   sqlite3ExprDelete(pExpr->pLeft);
9248141f61eSdrh   pExpr->pLeft = 0;
9254adee20fSdanielk1977   sqlite3ExprDelete(pExpr->pRight);
9268141f61eSdrh   pExpr->pRight = 0;
9278141f61eSdrh   pExpr->op = TK_COLUMN;
928626a879aSdrh   if( cnt==1 ){
929626a879aSdrh     assert( pNC!=0 && pNC->pSrcList!=0 );
930626a879aSdrh     sqlite3AuthRead(pParse, pExpr, pNC->pSrcList);
931626a879aSdrh   }
9328141f61eSdrh   return cnt!=1;
9338141f61eSdrh }
9348141f61eSdrh 
9358141f61eSdrh /*
936626a879aSdrh ** pExpr is a node that defines a function of some kind.  It might
937626a879aSdrh ** be a syntactic function like "count(x)" or it might be a function
938626a879aSdrh ** that implements an operator, like "a LIKE b".
939626a879aSdrh **
940626a879aSdrh ** This routine makes *pzName point to the name of the function and
941626a879aSdrh ** *pnName hold the number of characters in the function name.
942626a879aSdrh */
943626a879aSdrh static void getFunctionName(Expr *pExpr, const char **pzName, int *pnName){
944626a879aSdrh   switch( pExpr->op ){
945626a879aSdrh     case TK_FUNCTION: {
946626a879aSdrh       *pzName = pExpr->token.z;
947626a879aSdrh       *pnName = pExpr->token.n;
948626a879aSdrh       break;
949626a879aSdrh     }
950626a879aSdrh     case TK_LIKE: {
951626a879aSdrh       *pzName = "like";
952626a879aSdrh       *pnName = 4;
953626a879aSdrh       break;
954626a879aSdrh     }
955626a879aSdrh     case TK_GLOB: {
956626a879aSdrh       *pzName = "glob";
957626a879aSdrh       *pnName = 4;
958626a879aSdrh       break;
959626a879aSdrh     }
960626a879aSdrh     case TK_CTIME: {
961626a879aSdrh       *pzName = "current_time";
962626a879aSdrh       *pnName = 12;
963626a879aSdrh       break;
964626a879aSdrh     }
965626a879aSdrh     case TK_CDATE: {
966626a879aSdrh       *pzName = "current_date";
967626a879aSdrh       *pnName = 12;
968626a879aSdrh       break;
969626a879aSdrh     }
970626a879aSdrh     case TK_CTIMESTAMP: {
971626a879aSdrh       *pzName = "current_timestamp";
972626a879aSdrh       *pnName = 17;
973626a879aSdrh       break;
974626a879aSdrh     }
975626a879aSdrh   }
976626a879aSdrh }
977626a879aSdrh 
978626a879aSdrh /*
979626a879aSdrh ** This routine is designed as an xFunc for walkExprTree().
980626a879aSdrh **
98173b211abSdrh ** Resolve symbolic names into TK_COLUMN operators for the current
982626a879aSdrh ** node in the expression tree.  Return 0 to continue the search down
98373b211abSdrh ** the tree or 2 to abort the tree walk.
98473b211abSdrh **
98573b211abSdrh ** This routine also does error checking and name resolution for
98673b211abSdrh ** function names.  The operator for aggregate functions is changed
98773b211abSdrh ** to TK_AGG_FUNCTION.
988626a879aSdrh */
989626a879aSdrh static int nameResolverStep(void *pArg, Expr *pExpr){
990626a879aSdrh   NameContext *pNC = (NameContext*)pArg;
991626a879aSdrh   SrcList *pSrcList;
992626a879aSdrh   Parse *pParse;
993626a879aSdrh 
994626a879aSdrh   assert( pNC!=0 );
995626a879aSdrh   pSrcList = pNC->pSrcList;
996626a879aSdrh   pParse = pNC->pParse;
997626a879aSdrh   if( pExpr==0 ) return 1;
998626a879aSdrh   if( ExprHasAnyProperty(pExpr, EP_Resolved) ) return 1;
999626a879aSdrh   ExprSetProperty(pExpr, EP_Resolved);
1000626a879aSdrh #ifndef NDEBUG
1001626a879aSdrh   if( pSrcList ){
1002*940fac9dSdanielk1977     int i;
1003626a879aSdrh     for(i=0; i<pSrcList->nSrc; i++){
1004626a879aSdrh       assert( pSrcList->a[i].iCursor>=0 && pSrcList->a[i].iCursor<pParse->nTab);
1005626a879aSdrh     }
1006626a879aSdrh   }
1007626a879aSdrh #endif
1008626a879aSdrh   switch( pExpr->op ){
1009626a879aSdrh     /* Double-quoted strings (ex: "abc") are used as identifiers if
1010626a879aSdrh     ** possible.  Otherwise they remain as strings.  Single-quoted
1011626a879aSdrh     ** strings (ex: 'abc') are always string literals.
1012626a879aSdrh     */
1013626a879aSdrh     case TK_STRING: {
1014626a879aSdrh       if( pExpr->token.z[0]=='\'' ) break;
1015626a879aSdrh       /* Fall thru into the TK_ID case if this is a double-quoted string */
1016626a879aSdrh     }
1017626a879aSdrh     /* A lone identifier is the name of a column.
1018626a879aSdrh     */
1019626a879aSdrh     case TK_ID: {
1020626a879aSdrh       if( pSrcList==0 ) break;
1021626a879aSdrh       lookupName(pParse, 0, 0, &pExpr->token, pNC, pExpr);
1022626a879aSdrh       return 1;
1023626a879aSdrh     }
1024626a879aSdrh 
1025626a879aSdrh     /* A table name and column name:     ID.ID
1026626a879aSdrh     ** Or a database, table and column:  ID.ID.ID
1027626a879aSdrh     */
1028626a879aSdrh     case TK_DOT: {
1029626a879aSdrh       Token *pColumn;
1030626a879aSdrh       Token *pTable;
1031626a879aSdrh       Token *pDb;
1032626a879aSdrh       Expr *pRight;
1033626a879aSdrh 
1034626a879aSdrh       if( pSrcList==0 ) break;
1035626a879aSdrh       pRight = pExpr->pRight;
1036626a879aSdrh       if( pRight->op==TK_ID ){
1037626a879aSdrh         pDb = 0;
1038626a879aSdrh         pTable = &pExpr->pLeft->token;
1039626a879aSdrh         pColumn = &pRight->token;
1040626a879aSdrh       }else{
1041626a879aSdrh         assert( pRight->op==TK_DOT );
1042626a879aSdrh         pDb = &pExpr->pLeft->token;
1043626a879aSdrh         pTable = &pRight->pLeft->token;
1044626a879aSdrh         pColumn = &pRight->pRight->token;
1045626a879aSdrh       }
1046626a879aSdrh       lookupName(pParse, pDb, pTable, pColumn, pNC, pExpr);
1047626a879aSdrh       return 1;
1048626a879aSdrh     }
1049626a879aSdrh 
1050626a879aSdrh     /* Resolve function names
1051626a879aSdrh     */
1052626a879aSdrh     case TK_CTIME:
1053626a879aSdrh     case TK_CTIMESTAMP:
1054626a879aSdrh     case TK_CDATE:
1055626a879aSdrh     /* Note: The above three were a seperate case in sqlmoto. Reason? */
1056626a879aSdrh     case TK_GLOB:
1057626a879aSdrh     case TK_LIKE:
1058626a879aSdrh     case TK_FUNCTION: {
1059626a879aSdrh       ExprList *pList = pExpr->pList;    /* The argument list */
1060626a879aSdrh       int n = pList ? pList->nExpr : 0;  /* Number of arguments */
1061626a879aSdrh       int no_such_func = 0;       /* True if no such function exists */
1062626a879aSdrh       int wrong_num_args = 0;     /* True if wrong number of arguments */
1063626a879aSdrh       int is_agg = 0;             /* True if is an aggregate function */
1064626a879aSdrh       int i;
1065626a879aSdrh       int nId;                    /* Number of characters in function name */
1066626a879aSdrh       const char *zId;            /* The function name. */
106773b211abSdrh       FuncDef *pDef;              /* Information about the function */
106873b211abSdrh       int enc = pParse->db->enc;  /* The database encoding */
1069626a879aSdrh 
1070626a879aSdrh       getFunctionName(pExpr, &zId, &nId);
1071626a879aSdrh       pDef = sqlite3FindFunction(pParse->db, zId, nId, n, enc, 0);
1072626a879aSdrh       if( pDef==0 ){
1073626a879aSdrh         pDef = sqlite3FindFunction(pParse->db, zId, nId, -1, enc, 0);
1074626a879aSdrh         if( pDef==0 ){
1075626a879aSdrh           no_such_func = 1;
1076626a879aSdrh         }else{
1077626a879aSdrh           wrong_num_args = 1;
1078626a879aSdrh         }
1079626a879aSdrh       }else{
1080626a879aSdrh         is_agg = pDef->xFunc==0;
1081626a879aSdrh       }
1082626a879aSdrh       if( is_agg && !pNC->allowAgg ){
1083626a879aSdrh         sqlite3ErrorMsg(pParse, "misuse of aggregate function %.*s()", nId,zId);
1084626a879aSdrh         pNC->nErr++;
1085626a879aSdrh         is_agg = 0;
1086626a879aSdrh       }else if( no_such_func ){
1087626a879aSdrh         sqlite3ErrorMsg(pParse, "no such function: %.*s", nId, zId);
1088626a879aSdrh         pNC->nErr++;
1089626a879aSdrh       }else if( wrong_num_args ){
1090626a879aSdrh         sqlite3ErrorMsg(pParse,"wrong number of arguments to function %.*s()",
1091626a879aSdrh              nId, zId);
1092626a879aSdrh         pNC->nErr++;
1093626a879aSdrh       }
1094626a879aSdrh       if( is_agg ){
1095626a879aSdrh         pExpr->op = TK_AGG_FUNCTION;
1096626a879aSdrh         pNC->hasAgg = 1;
1097626a879aSdrh       }
109873b211abSdrh       if( is_agg ) pNC->allowAgg = 0;
1099626a879aSdrh       for(i=0; pNC->nErr==0 && i<n; i++){
110073b211abSdrh         walkExprTree(pList->a[i].pExpr, nameResolverStep, pNC);
1101626a879aSdrh       }
110273b211abSdrh       if( is_agg ) pNC->allowAgg = 1;
1103626a879aSdrh       /* FIX ME:  Compute pExpr->affinity based on the expected return
1104626a879aSdrh       ** type of the function
1105626a879aSdrh       */
1106626a879aSdrh       return is_agg;
1107626a879aSdrh     }
1108626a879aSdrh   }
1109626a879aSdrh   return 0;
1110626a879aSdrh }
1111626a879aSdrh 
11121398ad36Sdrh /* Forward declaration */
11131398ad36Sdrh static int sqlite3ExprCodeSubquery(Parse*, NameContext*, Expr*);
11141398ad36Sdrh 
1115626a879aSdrh /*
1116cce7d176Sdrh ** This routine walks an expression tree and resolves references to
1117967e8b73Sdrh ** table columns.  Nodes of the form ID.ID or ID resolve into an
1118aacc543eSdrh ** index to the table in the table list and a column offset.  The
1119aacc543eSdrh ** Expr.opcode for such nodes is changed to TK_COLUMN.  The Expr.iTable
1120aacc543eSdrh ** value is changed to the index of the referenced table in pTabList
1121832508b7Sdrh ** plus the "base" value.  The base value will ultimately become the
1122aacc543eSdrh ** VDBE cursor number for a cursor that is pointing into the referenced
1123aacc543eSdrh ** table.  The Expr.iColumn value is changed to the index of the column
1124aacc543eSdrh ** of the referenced table.  The Expr.iColumn value for the special
1125aacc543eSdrh ** ROWID column is -1.  Any INTEGER PRIMARY KEY column is tried as an
1126aacc543eSdrh ** alias for ROWID.
112719a775c2Sdrh **
1128626a879aSdrh ** Also resolve function names and check the functions for proper
1129626a879aSdrh ** usage.  Make sure all function names are recognized and all functions
1130626a879aSdrh ** have the correct number of arguments.  Leave an error message
1131626a879aSdrh ** in pParse->zErrMsg if anything is amiss.  Return the number of errors.
1132626a879aSdrh **
113373b211abSdrh ** If the expression contains aggregate functions then set the EP_Agg
113473b211abSdrh ** property on the expression.
1135626a879aSdrh */
1136626a879aSdrh int sqlite3ExprResolveNames(
1137626a879aSdrh   Parse *pParse,          /* The parser context */
1138626a879aSdrh   SrcList *pSrcList,      /* List of tables used to resolve column names */
1139626a879aSdrh   ExprList *pEList,       /* List of expressions used to resolve "AS" */
11401398ad36Sdrh   NameContext *pNC,       /* Namespace of enclosing statement */
1141626a879aSdrh   Expr *pExpr,            /* The expression to be analyzed. */
1142626a879aSdrh   int allowAgg,           /* True to allow aggregate expressions */
1143626a879aSdrh   int codeSubquery        /* If true, then generate code for subqueries too */
1144626a879aSdrh ){
1145626a879aSdrh   NameContext sNC;
1146626a879aSdrh 
114773b211abSdrh   if( pExpr==0 ) return 0;
1148626a879aSdrh   memset(&sNC, 0, sizeof(sNC));
1149626a879aSdrh   sNC.pSrcList = pSrcList;
1150626a879aSdrh   sNC.pParse = pParse;
1151626a879aSdrh   sNC.pEList = pEList;
1152626a879aSdrh   sNC.allowAgg = allowAgg;
11531398ad36Sdrh   sNC.pNext = pNC;
1154626a879aSdrh   walkExprTree(pExpr, nameResolverStep, &sNC);
115573b211abSdrh   if( sNC.hasAgg ){
115673b211abSdrh     ExprSetProperty(pExpr, EP_Agg);
1157626a879aSdrh   }
115873b211abSdrh   if( sNC.nErr>0 ){
115973b211abSdrh     ExprSetProperty(pExpr, EP_Error);
11601398ad36Sdrh   }else if( codeSubquery  && sqlite3ExprCodeSubquery(pParse, &sNC, pExpr) ){
116173b211abSdrh     return 1;
116273b211abSdrh   }
116373b211abSdrh   return ExprHasProperty(pExpr, EP_Error);
1164626a879aSdrh }
1165626a879aSdrh 
11661398ad36Sdrh /*
11671398ad36Sdrh ** A pointer instance of this structure is used to pass information
11681398ad36Sdrh ** through walkExprTree into codeSubqueryStep().
11691398ad36Sdrh */
11701398ad36Sdrh typedef struct QueryCoder QueryCoder;
11711398ad36Sdrh struct QueryCoder {
11721398ad36Sdrh   Parse *pParse;       /* The parsing context */
11731398ad36Sdrh   NameContext *pNC;    /* Namespace of first enclosing query */
11741398ad36Sdrh };
11751398ad36Sdrh 
1176626a879aSdrh 
1177626a879aSdrh /*
1178626a879aSdrh ** Generate code for subqueries and IN operators.
1179626a879aSdrh **
118073b211abSdrh ** IN operators comes in two forms:
1181fef5208cSdrh **
1182fef5208cSdrh **           expr IN (exprlist)
1183fef5208cSdrh ** and
1184fef5208cSdrh **           expr IN (SELECT ...)
1185fef5208cSdrh **
1186fef5208cSdrh ** The first form is handled by creating a set holding the list
1187fef5208cSdrh ** of allowed values.  The second form causes the SELECT to generate
1188fef5208cSdrh ** a temporary table.
1189fef5208cSdrh **
1190fef5208cSdrh ** This routine also looks for scalar SELECTs that are part of an expression.
119119a775c2Sdrh ** If it finds any, it generates code to write the value of that select
119219a775c2Sdrh ** into a memory cell.
119373b211abSdrh **
119473b211abSdrh ** This routine is a callback for wallExprTree() used to implement
119573b211abSdrh ** sqlite3ExprCodeSubquery().  See comments on those routines for
119673b211abSdrh ** additional information.
1197cce7d176Sdrh */
119851522cd3Sdrh #ifndef SQLITE_OMIT_SUBQUERY
1199626a879aSdrh static int codeSubqueryStep(void *pArg, Expr *pExpr){
12001398ad36Sdrh   QueryCoder *pCoder = (QueryCoder*)pArg;
12011398ad36Sdrh   Parse *pParse = pCoder->pParse;
12026a3ea0e6Sdrh 
1203cce7d176Sdrh   switch( pExpr->op ){
1204fef5208cSdrh     case TK_IN: {
1205e014a838Sdanielk1977       char affinity;
12064adee20fSdanielk1977       Vdbe *v = sqlite3GetVdbe(pParse);
1207d3d39e93Sdrh       KeyInfo keyInfo;
12080202b29eSdanielk1977       int addr;        /* Address of OP_OpenTemp instruction */
1209d3d39e93Sdrh 
1210626a879aSdrh       if( v==0 ) return 2;
1211bf3b721fSdanielk1977       affinity = sqlite3ExprAffinity(pExpr->pLeft);
1212e014a838Sdanielk1977 
1213e014a838Sdanielk1977       /* Whether this is an 'x IN(SELECT...)' or an 'x IN(<exprlist>)'
1214e014a838Sdanielk1977       ** expression it is handled the same way. A temporary table is
1215e014a838Sdanielk1977       ** filled with single-field index keys representing the results
1216e014a838Sdanielk1977       ** from the SELECT or the <exprlist>.
1217fef5208cSdrh       **
1218e014a838Sdanielk1977       ** If the 'x' expression is a column value, or the SELECT...
1219e014a838Sdanielk1977       ** statement returns a column value, then the affinity of that
1220e014a838Sdanielk1977       ** column is used to build the index keys. If both 'x' and the
1221e014a838Sdanielk1977       ** SELECT... statement are columns, then numeric affinity is used
1222e014a838Sdanielk1977       ** if either column has NUMERIC or INTEGER affinity. If neither
1223e014a838Sdanielk1977       ** 'x' nor the SELECT... statement are columns, then numeric affinity
1224e014a838Sdanielk1977       ** is used.
1225fef5208cSdrh       */
1226832508b7Sdrh       pExpr->iTable = pParse->nTab++;
12270202b29eSdanielk1977       addr = sqlite3VdbeAddOp(v, OP_OpenTemp, pExpr->iTable, 0);
1228d3d39e93Sdrh       memset(&keyInfo, 0, sizeof(keyInfo));
1229d3d39e93Sdrh       keyInfo.nField = 1;
1230f3218feaSdrh       sqlite3VdbeAddOp(v, OP_SetNumColumns, pExpr->iTable, 1);
1231e014a838Sdanielk1977 
1232e014a838Sdanielk1977       if( pExpr->pSelect ){
1233e014a838Sdanielk1977         /* Case 1:     expr IN (SELECT ...)
1234e014a838Sdanielk1977         **
1235e014a838Sdanielk1977         ** Generate code to write the results of the select into the temporary
1236e014a838Sdanielk1977         ** table allocated and opened above.
1237e014a838Sdanielk1977         */
1238e014a838Sdanielk1977         int iParm = pExpr->iTable +  (((int)affinity)<<16);
1239be5c89acSdrh         ExprList *pEList;
1240e014a838Sdanielk1977         assert( (pExpr->iTable&0x0000FFFF)==pExpr->iTable );
12411398ad36Sdrh         sqlite3Select(pParse, pExpr->pSelect, SRT_Set, iParm, 0, 0, 0, 0, 0);
1242be5c89acSdrh         pEList = pExpr->pSelect->pEList;
1243be5c89acSdrh         if( pEList && pEList->nExpr>0 ){
12447cedc8d4Sdanielk1977           keyInfo.aColl[0] = binaryCompareCollSeq(pParse, pExpr->pLeft,
1245be5c89acSdrh               pEList->a[0].pExpr);
12460202b29eSdanielk1977         }
1247fef5208cSdrh       }else if( pExpr->pList ){
1248fef5208cSdrh         /* Case 2:     expr IN (exprlist)
1249fef5208cSdrh         **
1250e014a838Sdanielk1977 	** For each expression, build an index key from the evaluation and
1251e014a838Sdanielk1977         ** store it in the temporary table. If <expr> is a column, then use
1252e014a838Sdanielk1977         ** that columns affinity when building index keys. If <expr> is not
1253e014a838Sdanielk1977         ** a column, use numeric affinity.
1254fef5208cSdrh         */
1255e014a838Sdanielk1977         int i;
1256e014a838Sdanielk1977         if( !affinity ){
1257e014a838Sdanielk1977           affinity = SQLITE_AFF_NUMERIC;
1258e014a838Sdanielk1977         }
12590202b29eSdanielk1977         keyInfo.aColl[0] = pExpr->pLeft->pColl;
1260e014a838Sdanielk1977 
1261e014a838Sdanielk1977         /* Loop through each expression in <exprlist>. */
1262fef5208cSdrh         for(i=0; i<pExpr->pList->nExpr; i++){
1263fef5208cSdrh           Expr *pE2 = pExpr->pList->a[i].pExpr;
1264e014a838Sdanielk1977 
1265e014a838Sdanielk1977           /* Check that the expression is constant and valid. */
12664adee20fSdanielk1977           if( !sqlite3ExprIsConstant(pE2) ){
12674adee20fSdanielk1977             sqlite3ErrorMsg(pParse,
1268da93d238Sdrh               "right-hand side of IN operator must be constant");
1269626a879aSdrh             return 2;
1270fef5208cSdrh           }
12711398ad36Sdrh           if( sqlite3ExprResolveNames(pParse, 0, 0, 0, pE2, 0, 0) ){
1272626a879aSdrh             return 2;
12734794b980Sdrh           }
1274e014a838Sdanielk1977 
1275e014a838Sdanielk1977           /* Evaluate the expression and insert it into the temp table */
12764adee20fSdanielk1977           sqlite3ExprCode(pParse, pE2);
127794a11211Sdrh           sqlite3VdbeOp3(v, OP_MakeRecord, 1, 0, &affinity, 1);
12780f69c1e3Sdanielk1977           sqlite3VdbeAddOp(v, OP_String8, 0, 0);
1279e014a838Sdanielk1977           sqlite3VdbeAddOp(v, OP_PutStrKey, pExpr->iTable, 0);
1280fef5208cSdrh         }
1281fef5208cSdrh       }
12820202b29eSdanielk1977       sqlite3VdbeChangeP3(v, addr, (void *)&keyInfo, P3_KEYINFO);
1283626a879aSdrh       return 1;
1284fef5208cSdrh     }
1285fef5208cSdrh 
128651522cd3Sdrh     case TK_EXISTS:
128719a775c2Sdrh     case TK_SELECT: {
1288fef5208cSdrh       /* This has to be a scalar SELECT.  Generate code to put the
1289fef5208cSdrh       ** value of this select in a memory cell and record the number
1290967e8b73Sdrh       ** of the memory cell in iColumn.
1291fef5208cSdrh       */
12921398ad36Sdrh       NameContext *pNC;
12931398ad36Sdrh       int nRef;
12941398ad36Sdrh       Vdbe *v;
12951398ad36Sdrh       int addr;
129651522cd3Sdrh       int sop;
129751522cd3Sdrh       Select *pSel;
12981398ad36Sdrh 
12991398ad36Sdrh       pNC = pCoder->pNC;
13001398ad36Sdrh       if( pNC ) nRef = pNC->nRef;
13013119bc42Sdrh       sqlite3CodeVerifySchema(pParse, -1); /* Insert the cookie verifier Goto */
13021398ad36Sdrh       v = sqlite3GetVdbe(pParse);
13031398ad36Sdrh       addr = sqlite3VdbeAddOp(v, OP_Goto, 0, 0);
1304967e8b73Sdrh       pExpr->iColumn = pParse->nMem++;
130551522cd3Sdrh       pSel = pExpr->pSelect;
130651522cd3Sdrh       if( pExpr->op==TK_SELECT ){
130751522cd3Sdrh         sop = SRT_Mem;
130851522cd3Sdrh       }else{
130951522cd3Sdrh         static const Token one = { "1", 0, 1 };
131051522cd3Sdrh         sop = SRT_Exists;
131151522cd3Sdrh         sqlite3ExprListDelete(pSel->pEList);
131251522cd3Sdrh         pSel->pEList = sqlite3ExprListAppend(0,
131351522cd3Sdrh                           sqlite3Expr(TK_INTEGER, 0, 0, &one), 0);
131451522cd3Sdrh       }
131551522cd3Sdrh       sqlite3Select(pParse, pSel, sop, pExpr->iColumn, 0, 0, 0, 0, pNC);
13161398ad36Sdrh       if( pNC && pNC->nRef>nRef ){
13171398ad36Sdrh         /* Subquery value changes.  Evaluate at each use */
13181398ad36Sdrh         pExpr->iTable = addr+1;
13191398ad36Sdrh         sqlite3VdbeAddOp(v, OP_Return, 0, 0);
13201398ad36Sdrh         sqlite3VdbeChangeP2(v, addr, sqlite3VdbeCurrentAddr(v));
13211398ad36Sdrh       }else{
13221398ad36Sdrh         /* Subquery value is constant.  evaluate only once. */
13231398ad36Sdrh         pExpr->iTable = -1;
13241398ad36Sdrh         sqlite3VdbeChangeP2(v, addr, addr+1);
13251398ad36Sdrh       }
132619a775c2Sdrh       return 1;
132719a775c2Sdrh     }
1328cce7d176Sdrh   }
1329cce7d176Sdrh   return 0;
1330cce7d176Sdrh }
133151522cd3Sdrh #endif /* SQLITE_OMIT_SUBQUERY */
1332cce7d176Sdrh 
1333cce7d176Sdrh /*
133473b211abSdrh ** Generate code to evaluate subqueries and IN operators contained
133573b211abSdrh ** in expression pExpr.
13364b59ab5eSdrh */
13371398ad36Sdrh static int sqlite3ExprCodeSubquery(
13381398ad36Sdrh   Parse *pParse,       /* Parser */
13391398ad36Sdrh   NameContext *pNC,    /* First enclosing namespace.  Often NULL */
13401398ad36Sdrh   Expr *pExpr          /* Subquery to be coded */
13411398ad36Sdrh ){
134251522cd3Sdrh #ifndef SQLITE_OMIT_SUBQUERY
13431398ad36Sdrh   QueryCoder sCoder;
13441398ad36Sdrh   sCoder.pParse = pParse;
13451398ad36Sdrh   sCoder.pNC = pNC;
13461398ad36Sdrh   walkExprTree(pExpr, codeSubqueryStep, &sCoder);
134751522cd3Sdrh #endif
1348626a879aSdrh   return 0;
1349290c1948Sdrh }
1350290c1948Sdrh 
1351290c1948Sdrh /*
1352fec19aadSdrh ** Generate an instruction that will put the integer describe by
1353fec19aadSdrh ** text z[0..n-1] on the stack.
1354fec19aadSdrh */
1355fec19aadSdrh static void codeInteger(Vdbe *v, const char *z, int n){
1356fec19aadSdrh   int i;
13576fec0762Sdrh   if( sqlite3GetInt32(z, &i) ){
13586fec0762Sdrh     sqlite3VdbeAddOp(v, OP_Integer, i, 0);
13596fec0762Sdrh   }else if( sqlite3FitsIn64Bits(z) ){
13606fec0762Sdrh     sqlite3VdbeOp3(v, OP_Integer, 0, 0, z, n);
1361fec19aadSdrh   }else{
1362fec19aadSdrh     sqlite3VdbeOp3(v, OP_Real, 0, 0, z, n);
1363fec19aadSdrh   }
1364fec19aadSdrh }
1365fec19aadSdrh 
1366fec19aadSdrh /*
1367cce7d176Sdrh ** Generate code into the current Vdbe to evaluate the given
13681ccde15dSdrh ** expression and leave the result on the top of stack.
1369f2bc013cSdrh **
1370f2bc013cSdrh ** This code depends on the fact that certain token values (ex: TK_EQ)
1371f2bc013cSdrh ** are the same as opcode values (ex: OP_Eq) that implement the corresponding
1372f2bc013cSdrh ** operation.  Special comments in vdbe.c and the mkopcodeh.awk script in
1373f2bc013cSdrh ** the make process cause these values to align.  Assert()s in the code
1374f2bc013cSdrh ** below verify that the numbers are aligned correctly.
1375cce7d176Sdrh */
13764adee20fSdanielk1977 void sqlite3ExprCode(Parse *pParse, Expr *pExpr){
1377cce7d176Sdrh   Vdbe *v = pParse->pVdbe;
1378cce7d176Sdrh   int op;
13797977a17fSdanielk1977   if( v==0 ) return;
13807977a17fSdanielk1977   if( pExpr==0 ){
13817977a17fSdanielk1977     sqlite3VdbeAddOp(v, OP_String8, 0, 0);  /* Empty expression evals to NULL */
13827977a17fSdanielk1977     return;
13837977a17fSdanielk1977   }
1384f2bc013cSdrh   op = pExpr->op;
1385f2bc013cSdrh   switch( op ){
1386967e8b73Sdrh     case TK_COLUMN: {
13872282792aSdrh       if( pParse->useAgg ){
13884adee20fSdanielk1977         sqlite3VdbeAddOp(v, OP_AggGet, 0, pExpr->iAgg);
1389c4a3c779Sdrh       }else if( pExpr->iColumn>=0 ){
13904adee20fSdanielk1977         sqlite3VdbeAddOp(v, OP_Column, pExpr->iTable, pExpr->iColumn);
1391145716b3Sdrh #ifndef NDEBUG
1392145716b3Sdrh         if( pExpr->span.z && pExpr->span.n>0 && pExpr->span.n<100 ){
1393ad6d9460Sdrh           VdbeComment((v, "# %T", &pExpr->span));
1394145716b3Sdrh         }
1395145716b3Sdrh #endif
1396c4a3c779Sdrh       }else{
13974adee20fSdanielk1977         sqlite3VdbeAddOp(v, OP_Recno, pExpr->iTable, 0);
13982282792aSdrh       }
1399cce7d176Sdrh       break;
1400cce7d176Sdrh     }
1401cce7d176Sdrh     case TK_INTEGER: {
1402fec19aadSdrh       codeInteger(v, pExpr->token.z, pExpr->token.n);
1403fec19aadSdrh       break;
140451e9a445Sdrh     }
1405fec19aadSdrh     case TK_FLOAT:
1406fec19aadSdrh     case TK_STRING: {
1407f2bc013cSdrh       assert( TK_FLOAT==OP_Real );
1408f2bc013cSdrh       assert( TK_STRING==OP_String8 );
1409fec19aadSdrh       sqlite3VdbeOp3(v, op, 0, 0, pExpr->token.z, pExpr->token.n);
14104adee20fSdanielk1977       sqlite3VdbeDequoteP3(v, -1);
1411cce7d176Sdrh       break;
1412cce7d176Sdrh     }
14135338a5f7Sdanielk1977 #ifndef SQLITE_OMIT_BLOB_LITERAL
1414c572ef7fSdanielk1977     case TK_BLOB: {
1415f2bc013cSdrh       assert( TK_BLOB==OP_HexBlob );
1416c572ef7fSdanielk1977       sqlite3VdbeOp3(v, op, 0, 0, pExpr->token.z+1, pExpr->token.n-1);
1417c572ef7fSdanielk1977       sqlite3VdbeDequoteP3(v, -1);
1418c572ef7fSdanielk1977       break;
1419c572ef7fSdanielk1977     }
14205338a5f7Sdanielk1977 #endif
1421cce7d176Sdrh     case TK_NULL: {
14220f69c1e3Sdanielk1977       sqlite3VdbeAddOp(v, OP_String8, 0, 0);
1423cce7d176Sdrh       break;
1424cce7d176Sdrh     }
142550457896Sdrh     case TK_VARIABLE: {
14264adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_Variable, pExpr->iTable, 0);
1427895d7472Sdrh       if( pExpr->token.n>1 ){
1428895d7472Sdrh         sqlite3VdbeChangeP3(v, -1, pExpr->token.z, pExpr->token.n);
1429895d7472Sdrh       }
143050457896Sdrh       break;
143150457896Sdrh     }
14324e0cff60Sdrh     case TK_REGISTER: {
14334e0cff60Sdrh       sqlite3VdbeAddOp(v, OP_MemLoad, pExpr->iTable, 0);
14344e0cff60Sdrh       break;
14354e0cff60Sdrh     }
1436c9b84a1fSdrh     case TK_LT:
1437c9b84a1fSdrh     case TK_LE:
1438c9b84a1fSdrh     case TK_GT:
1439c9b84a1fSdrh     case TK_GE:
1440c9b84a1fSdrh     case TK_NE:
1441c9b84a1fSdrh     case TK_EQ: {
1442f2bc013cSdrh       assert( TK_LT==OP_Lt );
1443f2bc013cSdrh       assert( TK_LE==OP_Le );
1444f2bc013cSdrh       assert( TK_GT==OP_Gt );
1445f2bc013cSdrh       assert( TK_GE==OP_Ge );
1446f2bc013cSdrh       assert( TK_EQ==OP_Eq );
1447f2bc013cSdrh       assert( TK_NE==OP_Ne );
1448a37cdde0Sdanielk1977       sqlite3ExprCode(pParse, pExpr->pLeft);
1449a37cdde0Sdanielk1977       sqlite3ExprCode(pParse, pExpr->pRight);
1450be5c89acSdrh       codeCompare(pParse, pExpr->pLeft, pExpr->pRight, op, 0, 0);
1451a37cdde0Sdanielk1977       break;
1452c9b84a1fSdrh     }
1453cce7d176Sdrh     case TK_AND:
1454cce7d176Sdrh     case TK_OR:
1455cce7d176Sdrh     case TK_PLUS:
1456cce7d176Sdrh     case TK_STAR:
1457cce7d176Sdrh     case TK_MINUS:
1458bf4133cbSdrh     case TK_REM:
1459bf4133cbSdrh     case TK_BITAND:
1460bf4133cbSdrh     case TK_BITOR:
146117c40294Sdrh     case TK_SLASH:
1462bf4133cbSdrh     case TK_LSHIFT:
1463855eb1cfSdrh     case TK_RSHIFT:
14640040077dSdrh     case TK_CONCAT: {
1465f2bc013cSdrh       assert( TK_AND==OP_And );
1466f2bc013cSdrh       assert( TK_OR==OP_Or );
1467f2bc013cSdrh       assert( TK_PLUS==OP_Add );
1468f2bc013cSdrh       assert( TK_MINUS==OP_Subtract );
1469f2bc013cSdrh       assert( TK_REM==OP_Remainder );
1470f2bc013cSdrh       assert( TK_BITAND==OP_BitAnd );
1471f2bc013cSdrh       assert( TK_BITOR==OP_BitOr );
1472f2bc013cSdrh       assert( TK_SLASH==OP_Divide );
1473f2bc013cSdrh       assert( TK_LSHIFT==OP_ShiftLeft );
1474f2bc013cSdrh       assert( TK_RSHIFT==OP_ShiftRight );
1475f2bc013cSdrh       assert( TK_CONCAT==OP_Concat );
14764adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr->pLeft);
14774adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr->pRight);
1478855eb1cfSdrh       sqlite3VdbeAddOp(v, op, 0, 0);
14790040077dSdrh       break;
14800040077dSdrh     }
1481cce7d176Sdrh     case TK_UMINUS: {
1482fec19aadSdrh       Expr *pLeft = pExpr->pLeft;
1483fec19aadSdrh       assert( pLeft );
1484fec19aadSdrh       if( pLeft->op==TK_FLOAT || pLeft->op==TK_INTEGER ){
1485fec19aadSdrh         Token *p = &pLeft->token;
14866e142f54Sdrh         char *z = sqliteMalloc( p->n + 2 );
14876e142f54Sdrh         sprintf(z, "-%.*s", p->n, p->z);
1488fec19aadSdrh         if( pLeft->op==TK_FLOAT ){
1489fec19aadSdrh           sqlite3VdbeOp3(v, OP_Real, 0, 0, z, p->n+1);
1490e6840900Sdrh         }else{
1491fec19aadSdrh           codeInteger(v, z, p->n+1);
1492e6840900Sdrh         }
14936e142f54Sdrh         sqliteFree(z);
14946e142f54Sdrh         break;
14956e142f54Sdrh       }
14961ccde15dSdrh       /* Fall through into TK_NOT */
14976e142f54Sdrh     }
1498bf4133cbSdrh     case TK_BITNOT:
14996e142f54Sdrh     case TK_NOT: {
1500f2bc013cSdrh       assert( TK_BITNOT==OP_BitNot );
1501f2bc013cSdrh       assert( TK_NOT==OP_Not );
15024adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr->pLeft);
15034adee20fSdanielk1977       sqlite3VdbeAddOp(v, op, 0, 0);
1504cce7d176Sdrh       break;
1505cce7d176Sdrh     }
1506cce7d176Sdrh     case TK_ISNULL:
1507cce7d176Sdrh     case TK_NOTNULL: {
1508cce7d176Sdrh       int dest;
1509f2bc013cSdrh       assert( TK_ISNULL==OP_IsNull );
1510f2bc013cSdrh       assert( TK_NOTNULL==OP_NotNull );
15114adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_Integer, 1, 0);
15124adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr->pLeft);
15134adee20fSdanielk1977       dest = sqlite3VdbeCurrentAddr(v) + 2;
15144adee20fSdanielk1977       sqlite3VdbeAddOp(v, op, 1, dest);
15154adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_AddImm, -1, 0);
1516a37cdde0Sdanielk1977       break;
1517f2bc013cSdrh     }
15182282792aSdrh     case TK_AGG_FUNCTION: {
15194adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_AggGet, 0, pExpr->iAgg);
15202282792aSdrh       break;
15212282792aSdrh     }
15227977a17fSdanielk1977     case TK_CDATE:
15237977a17fSdanielk1977     case TK_CTIME:
15247977a17fSdanielk1977     case TK_CTIMESTAMP:
15254b59ab5eSdrh     case TK_GLOB:
15264b59ab5eSdrh     case TK_LIKE:
1527cce7d176Sdrh     case TK_FUNCTION: {
1528cce7d176Sdrh       ExprList *pList = pExpr->pList;
152989425d5eSdrh       int nExpr = pList ? pList->nExpr : 0;
15300bce8354Sdrh       FuncDef *pDef;
15314b59ab5eSdrh       int nId;
15324b59ab5eSdrh       const char *zId;
1533682f68b0Sdanielk1977       int p2 = 0;
1534682f68b0Sdanielk1977       int i;
1535d8123366Sdanielk1977       u8 enc = pParse->db->enc;
1536dc1bdc4fSdanielk1977       CollSeq *pColl = 0;
15374b59ab5eSdrh       getFunctionName(pExpr, &zId, &nId);
1538d8123366Sdanielk1977       pDef = sqlite3FindFunction(pParse->db, zId, nId, nExpr, enc, 0);
15390bce8354Sdrh       assert( pDef!=0 );
1540f9b596ebSdrh       nExpr = sqlite3ExprCodeExprList(pParse, pList);
1541682f68b0Sdanielk1977       for(i=0; i<nExpr && i<32; i++){
1542d02eb1fdSdanielk1977         if( sqlite3ExprIsConstant(pList->a[i].pExpr) ){
1543d02eb1fdSdanielk1977           p2 |= (1<<i);
1544d02eb1fdSdanielk1977         }
1545dc1bdc4fSdanielk1977         if( pDef->needCollSeq && !pColl ){
1546dc1bdc4fSdanielk1977           pColl = sqlite3ExprCollSeq(pParse, pList->a[i].pExpr);
1547dc1bdc4fSdanielk1977         }
1548dc1bdc4fSdanielk1977       }
1549dc1bdc4fSdanielk1977       if( pDef->needCollSeq ){
1550dc1bdc4fSdanielk1977         if( !pColl ) pColl = pParse->db->pDfltColl;
1551d8123366Sdanielk1977         sqlite3VdbeOp3(v, OP_CollSeq, 0, 0, (char *)pColl, P3_COLLSEQ);
1552682f68b0Sdanielk1977       }
1553682f68b0Sdanielk1977       sqlite3VdbeOp3(v, OP_Function, nExpr, p2, (char*)pDef, P3_FUNCDEF);
15546ec2733bSdrh       break;
15556ec2733bSdrh     }
1556fe2093d7Sdrh #ifndef SQLITE_OMIT_SUBQUERY
1557fe2093d7Sdrh     case TK_EXISTS:
155819a775c2Sdrh     case TK_SELECT: {
15591398ad36Sdrh       if( pExpr->iTable>=0 ){
15601398ad36Sdrh         sqlite3VdbeAddOp(v, OP_Gosub, 0, pExpr->iTable);
15611398ad36Sdrh         VdbeComment((v, "# run subquery"));
15621398ad36Sdrh       }
15634adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_MemLoad, pExpr->iColumn, 0);
1564ad6d9460Sdrh       VdbeComment((v, "# load subquery result"));
156519a775c2Sdrh       break;
156619a775c2Sdrh     }
1567fef5208cSdrh     case TK_IN: {
1568fef5208cSdrh       int addr;
156994a11211Sdrh       char affinity;
1570e014a838Sdanielk1977 
1571e014a838Sdanielk1977       /* Figure out the affinity to use to create a key from the results
1572e014a838Sdanielk1977       ** of the expression. affinityStr stores a static string suitable for
1573ededfd5eSdanielk1977       ** P3 of OP_MakeRecord.
1574e014a838Sdanielk1977       */
157594a11211Sdrh       affinity = comparisonAffinity(pExpr);
1576e014a838Sdanielk1977 
15774adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_Integer, 1, 0);
1578e014a838Sdanielk1977 
1579e014a838Sdanielk1977       /* Code the <expr> from "<expr> IN (...)". The temporary table
1580e014a838Sdanielk1977       ** pExpr->iTable contains the values that make up the (...) set.
1581e014a838Sdanielk1977       */
15824adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr->pLeft);
15834adee20fSdanielk1977       addr = sqlite3VdbeCurrentAddr(v);
1584e014a838Sdanielk1977       sqlite3VdbeAddOp(v, OP_NotNull, -1, addr+4);            /* addr + 0 */
15854adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_Pop, 2, 0);
15860f69c1e3Sdanielk1977       sqlite3VdbeAddOp(v, OP_String8, 0, 0);
1587e014a838Sdanielk1977       sqlite3VdbeAddOp(v, OP_Goto, 0, addr+7);
158894a11211Sdrh       sqlite3VdbeOp3(v, OP_MakeRecord, 1, 0, &affinity, 1);   /* addr + 4 */
1589e014a838Sdanielk1977       sqlite3VdbeAddOp(v, OP_Found, pExpr->iTable, addr+7);
1590e014a838Sdanielk1977       sqlite3VdbeAddOp(v, OP_AddImm, -1, 0);                  /* addr + 6 */
1591e014a838Sdanielk1977 
1592fef5208cSdrh       break;
1593fef5208cSdrh     }
159493758c8dSdanielk1977 #endif
1595fef5208cSdrh     case TK_BETWEEN: {
1596be5c89acSdrh       Expr *pLeft = pExpr->pLeft;
1597be5c89acSdrh       struct ExprList_item *pLItem = pExpr->pList->a;
1598be5c89acSdrh       Expr *pRight = pLItem->pExpr;
1599be5c89acSdrh       sqlite3ExprCode(pParse, pLeft);
16004adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_Dup, 0, 0);
1601be5c89acSdrh       sqlite3ExprCode(pParse, pRight);
1602be5c89acSdrh       codeCompare(pParse, pLeft, pRight, OP_Ge, 0, 0);
16034adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_Pull, 1, 0);
1604be5c89acSdrh       pLItem++;
1605be5c89acSdrh       pRight = pLItem->pExpr;
1606be5c89acSdrh       sqlite3ExprCode(pParse, pRight);
1607be5c89acSdrh       codeCompare(pParse, pLeft, pRight, OP_Le, 0, 0);
16084adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_And, 0, 0);
1609fef5208cSdrh       break;
1610fef5208cSdrh     }
161151e9a445Sdrh     case TK_UPLUS:
1612a2e00042Sdrh     case TK_AS: {
16134adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr->pLeft);
1614a2e00042Sdrh       break;
1615a2e00042Sdrh     }
161617a7f8ddSdrh     case TK_CASE: {
161717a7f8ddSdrh       int expr_end_label;
1618f5905aa7Sdrh       int jumpInst;
1619f5905aa7Sdrh       int addr;
1620f5905aa7Sdrh       int nExpr;
162117a7f8ddSdrh       int i;
1622be5c89acSdrh       ExprList *pEList;
1623be5c89acSdrh       struct ExprList_item *aListelem;
162417a7f8ddSdrh 
162517a7f8ddSdrh       assert(pExpr->pList);
162617a7f8ddSdrh       assert((pExpr->pList->nExpr % 2) == 0);
162717a7f8ddSdrh       assert(pExpr->pList->nExpr > 0);
1628be5c89acSdrh       pEList = pExpr->pList;
1629be5c89acSdrh       aListelem = pEList->a;
1630be5c89acSdrh       nExpr = pEList->nExpr;
16314adee20fSdanielk1977       expr_end_label = sqlite3VdbeMakeLabel(v);
163217a7f8ddSdrh       if( pExpr->pLeft ){
16334adee20fSdanielk1977         sqlite3ExprCode(pParse, pExpr->pLeft);
1634cce7d176Sdrh       }
1635f5905aa7Sdrh       for(i=0; i<nExpr; i=i+2){
1636be5c89acSdrh         sqlite3ExprCode(pParse, aListelem[i].pExpr);
163717a7f8ddSdrh         if( pExpr->pLeft ){
16384adee20fSdanielk1977           sqlite3VdbeAddOp(v, OP_Dup, 1, 1);
1639be5c89acSdrh           jumpInst = codeCompare(pParse, pExpr->pLeft, aListelem[i].pExpr,
1640be5c89acSdrh                                  OP_Ne, 0, 1);
16414adee20fSdanielk1977           sqlite3VdbeAddOp(v, OP_Pop, 1, 0);
1642f5905aa7Sdrh         }else{
16434adee20fSdanielk1977           jumpInst = sqlite3VdbeAddOp(v, OP_IfNot, 1, 0);
164417a7f8ddSdrh         }
1645be5c89acSdrh         sqlite3ExprCode(pParse, aListelem[i+1].pExpr);
16464adee20fSdanielk1977         sqlite3VdbeAddOp(v, OP_Goto, 0, expr_end_label);
16474adee20fSdanielk1977         addr = sqlite3VdbeCurrentAddr(v);
16484adee20fSdanielk1977         sqlite3VdbeChangeP2(v, jumpInst, addr);
164917a7f8ddSdrh       }
1650f570f011Sdrh       if( pExpr->pLeft ){
16514adee20fSdanielk1977         sqlite3VdbeAddOp(v, OP_Pop, 1, 0);
1652f570f011Sdrh       }
165317a7f8ddSdrh       if( pExpr->pRight ){
16544adee20fSdanielk1977         sqlite3ExprCode(pParse, pExpr->pRight);
165517a7f8ddSdrh       }else{
16560f69c1e3Sdanielk1977         sqlite3VdbeAddOp(v, OP_String8, 0, 0);
165717a7f8ddSdrh       }
16584adee20fSdanielk1977       sqlite3VdbeResolveLabel(v, expr_end_label);
16596f34903eSdanielk1977       break;
16606f34903eSdanielk1977     }
16615338a5f7Sdanielk1977 #ifndef SQLITE_OMIT_TRIGGER
16626f34903eSdanielk1977     case TK_RAISE: {
16636f34903eSdanielk1977       if( !pParse->trigStack ){
16644adee20fSdanielk1977         sqlite3ErrorMsg(pParse,
1665da93d238Sdrh                        "RAISE() may only be used within a trigger-program");
16666f34903eSdanielk1977 	return;
16676f34903eSdanielk1977       }
1668ad6d9460Sdrh       if( pExpr->iColumn!=OE_Ignore ){
1669ad6d9460Sdrh          assert( pExpr->iColumn==OE_Rollback ||
16706f34903eSdanielk1977                  pExpr->iColumn == OE_Abort ||
1671ad6d9460Sdrh                  pExpr->iColumn == OE_Fail );
16724adee20fSdanielk1977          sqlite3VdbeOp3(v, OP_Halt, SQLITE_CONSTRAINT, pExpr->iColumn,
1673701a0aebSdrh                         pExpr->token.z, pExpr->token.n);
16744adee20fSdanielk1977          sqlite3VdbeDequoteP3(v, -1);
16756f34903eSdanielk1977       } else {
16766f34903eSdanielk1977          assert( pExpr->iColumn == OE_Ignore );
1677344737f6Sdrh          sqlite3VdbeAddOp(v, OP_ContextPop, 0, 0);
1678ad6d9460Sdrh          sqlite3VdbeAddOp(v, OP_Goto, 0, pParse->trigStack->ignoreJump);
1679ad6d9460Sdrh          VdbeComment((v, "# raise(IGNORE)"));
16806f34903eSdanielk1977       }
168117a7f8ddSdrh     }
16825338a5f7Sdanielk1977 #endif
168317a7f8ddSdrh     break;
168417a7f8ddSdrh   }
1685cce7d176Sdrh }
1686cce7d176Sdrh 
168793758c8dSdanielk1977 #ifndef SQLITE_OMIT_TRIGGER
1688cce7d176Sdrh /*
168925303780Sdrh ** Generate code that evalutes the given expression and leaves the result
169025303780Sdrh ** on the stack.  See also sqlite3ExprCode().
169125303780Sdrh **
169225303780Sdrh ** This routine might also cache the result and modify the pExpr tree
169325303780Sdrh ** so that it will make use of the cached result on subsequent evaluations
169425303780Sdrh ** rather than evaluate the whole expression again.  Trivial expressions are
169525303780Sdrh ** not cached.  If the expression is cached, its result is stored in a
169625303780Sdrh ** memory location.
169725303780Sdrh */
169825303780Sdrh void sqlite3ExprCodeAndCache(Parse *pParse, Expr *pExpr){
169925303780Sdrh   Vdbe *v = pParse->pVdbe;
170025303780Sdrh   int iMem;
170125303780Sdrh   int addr1, addr2;
170225303780Sdrh   if( v==0 ) return;
170325303780Sdrh   addr1 = sqlite3VdbeCurrentAddr(v);
170425303780Sdrh   sqlite3ExprCode(pParse, pExpr);
170525303780Sdrh   addr2 = sqlite3VdbeCurrentAddr(v);
170625303780Sdrh   if( addr2>addr1+1 || sqlite3VdbeGetOp(v, addr1)->opcode==OP_Function ){
170725303780Sdrh     iMem = pExpr->iTable = pParse->nMem++;
170825303780Sdrh     sqlite3VdbeAddOp(v, OP_MemStore, iMem, 0);
170925303780Sdrh     pExpr->op = TK_REGISTER;
171025303780Sdrh   }
171125303780Sdrh }
171293758c8dSdanielk1977 #endif
171325303780Sdrh 
171425303780Sdrh /*
1715268380caSdrh ** Generate code that pushes the value of every element of the given
1716f9b596ebSdrh ** expression list onto the stack.
1717268380caSdrh **
1718268380caSdrh ** Return the number of elements pushed onto the stack.
1719268380caSdrh */
17204adee20fSdanielk1977 int sqlite3ExprCodeExprList(
1721268380caSdrh   Parse *pParse,     /* Parsing context */
1722f9b596ebSdrh   ExprList *pList    /* The expression list to be coded */
1723268380caSdrh ){
1724268380caSdrh   struct ExprList_item *pItem;
1725268380caSdrh   int i, n;
1726268380caSdrh   Vdbe *v;
1727268380caSdrh   if( pList==0 ) return 0;
17284adee20fSdanielk1977   v = sqlite3GetVdbe(pParse);
1729268380caSdrh   n = pList->nExpr;
1730268380caSdrh   for(pItem=pList->a, i=0; i<n; i++, pItem++){
17314adee20fSdanielk1977     sqlite3ExprCode(pParse, pItem->pExpr);
1732268380caSdrh   }
1733f9b596ebSdrh   return n;
1734268380caSdrh }
1735268380caSdrh 
1736268380caSdrh /*
1737cce7d176Sdrh ** Generate code for a boolean expression such that a jump is made
1738cce7d176Sdrh ** to the label "dest" if the expression is true but execution
1739cce7d176Sdrh ** continues straight thru if the expression is false.
1740f5905aa7Sdrh **
1741f5905aa7Sdrh ** If the expression evaluates to NULL (neither true nor false), then
1742f5905aa7Sdrh ** take the jump if the jumpIfNull flag is true.
1743f2bc013cSdrh **
1744f2bc013cSdrh ** This code depends on the fact that certain token values (ex: TK_EQ)
1745f2bc013cSdrh ** are the same as opcode values (ex: OP_Eq) that implement the corresponding
1746f2bc013cSdrh ** operation.  Special comments in vdbe.c and the mkopcodeh.awk script in
1747f2bc013cSdrh ** the make process cause these values to align.  Assert()s in the code
1748f2bc013cSdrh ** below verify that the numbers are aligned correctly.
1749cce7d176Sdrh */
17504adee20fSdanielk1977 void sqlite3ExprIfTrue(Parse *pParse, Expr *pExpr, int dest, int jumpIfNull){
1751cce7d176Sdrh   Vdbe *v = pParse->pVdbe;
1752cce7d176Sdrh   int op = 0;
1753daffd0e5Sdrh   if( v==0 || pExpr==0 ) return;
1754f2bc013cSdrh   op = pExpr->op;
1755f2bc013cSdrh   switch( op ){
1756cce7d176Sdrh     case TK_AND: {
17574adee20fSdanielk1977       int d2 = sqlite3VdbeMakeLabel(v);
17584adee20fSdanielk1977       sqlite3ExprIfFalse(pParse, pExpr->pLeft, d2, !jumpIfNull);
17594adee20fSdanielk1977       sqlite3ExprIfTrue(pParse, pExpr->pRight, dest, jumpIfNull);
17604adee20fSdanielk1977       sqlite3VdbeResolveLabel(v, d2);
1761cce7d176Sdrh       break;
1762cce7d176Sdrh     }
1763cce7d176Sdrh     case TK_OR: {
17644adee20fSdanielk1977       sqlite3ExprIfTrue(pParse, pExpr->pLeft, dest, jumpIfNull);
17654adee20fSdanielk1977       sqlite3ExprIfTrue(pParse, pExpr->pRight, dest, jumpIfNull);
1766cce7d176Sdrh       break;
1767cce7d176Sdrh     }
1768cce7d176Sdrh     case TK_NOT: {
17694adee20fSdanielk1977       sqlite3ExprIfFalse(pParse, pExpr->pLeft, dest, jumpIfNull);
1770cce7d176Sdrh       break;
1771cce7d176Sdrh     }
1772cce7d176Sdrh     case TK_LT:
1773cce7d176Sdrh     case TK_LE:
1774cce7d176Sdrh     case TK_GT:
1775cce7d176Sdrh     case TK_GE:
1776cce7d176Sdrh     case TK_NE:
17770ac65892Sdrh     case TK_EQ: {
1778f2bc013cSdrh       assert( TK_LT==OP_Lt );
1779f2bc013cSdrh       assert( TK_LE==OP_Le );
1780f2bc013cSdrh       assert( TK_GT==OP_Gt );
1781f2bc013cSdrh       assert( TK_GE==OP_Ge );
1782f2bc013cSdrh       assert( TK_EQ==OP_Eq );
1783f2bc013cSdrh       assert( TK_NE==OP_Ne );
17844adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr->pLeft);
17854adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr->pRight);
1786be5c89acSdrh       codeCompare(pParse, pExpr->pLeft, pExpr->pRight, op, dest, jumpIfNull);
1787cce7d176Sdrh       break;
1788cce7d176Sdrh     }
1789cce7d176Sdrh     case TK_ISNULL:
1790cce7d176Sdrh     case TK_NOTNULL: {
1791f2bc013cSdrh       assert( TK_ISNULL==OP_IsNull );
1792f2bc013cSdrh       assert( TK_NOTNULL==OP_NotNull );
17934adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr->pLeft);
17944adee20fSdanielk1977       sqlite3VdbeAddOp(v, op, 1, dest);
1795cce7d176Sdrh       break;
1796cce7d176Sdrh     }
1797fef5208cSdrh     case TK_BETWEEN: {
17980202b29eSdanielk1977       /* The expression "x BETWEEN y AND z" is implemented as:
17990202b29eSdanielk1977       **
18000202b29eSdanielk1977       ** 1 IF (x < y) GOTO 3
18010202b29eSdanielk1977       ** 2 IF (x <= z) GOTO <dest>
18020202b29eSdanielk1977       ** 3 ...
18030202b29eSdanielk1977       */
1804f5905aa7Sdrh       int addr;
1805be5c89acSdrh       Expr *pLeft = pExpr->pLeft;
1806be5c89acSdrh       Expr *pRight = pExpr->pList->a[0].pExpr;
1807be5c89acSdrh       sqlite3ExprCode(pParse, pLeft);
18084adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_Dup, 0, 0);
1809be5c89acSdrh       sqlite3ExprCode(pParse, pRight);
1810be5c89acSdrh       addr = codeCompare(pParse, pLeft, pRight, OP_Lt, 0, !jumpIfNull);
18110202b29eSdanielk1977 
1812be5c89acSdrh       pRight = pExpr->pList->a[1].pExpr;
1813be5c89acSdrh       sqlite3ExprCode(pParse, pRight);
1814be5c89acSdrh       codeCompare(pParse, pLeft, pRight, OP_Le, dest, jumpIfNull);
18150202b29eSdanielk1977 
18164adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_Integer, 0, 0);
18174adee20fSdanielk1977       sqlite3VdbeChangeP2(v, addr, sqlite3VdbeCurrentAddr(v));
18184adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_Pop, 1, 0);
1819fef5208cSdrh       break;
1820fef5208cSdrh     }
1821cce7d176Sdrh     default: {
18224adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr);
18234adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_If, jumpIfNull, dest);
1824cce7d176Sdrh       break;
1825cce7d176Sdrh     }
1826cce7d176Sdrh   }
1827cce7d176Sdrh }
1828cce7d176Sdrh 
1829cce7d176Sdrh /*
183066b89c8fSdrh ** Generate code for a boolean expression such that a jump is made
1831cce7d176Sdrh ** to the label "dest" if the expression is false but execution
1832cce7d176Sdrh ** continues straight thru if the expression is true.
1833f5905aa7Sdrh **
1834f5905aa7Sdrh ** If the expression evaluates to NULL (neither true nor false) then
1835f5905aa7Sdrh ** jump if jumpIfNull is true or fall through if jumpIfNull is false.
1836cce7d176Sdrh */
18374adee20fSdanielk1977 void sqlite3ExprIfFalse(Parse *pParse, Expr *pExpr, int dest, int jumpIfNull){
1838cce7d176Sdrh   Vdbe *v = pParse->pVdbe;
1839cce7d176Sdrh   int op = 0;
1840daffd0e5Sdrh   if( v==0 || pExpr==0 ) return;
1841f2bc013cSdrh 
1842f2bc013cSdrh   /* The value of pExpr->op and op are related as follows:
1843f2bc013cSdrh   **
1844f2bc013cSdrh   **       pExpr->op            op
1845f2bc013cSdrh   **       ---------          ----------
1846f2bc013cSdrh   **       TK_ISNULL          OP_NotNull
1847f2bc013cSdrh   **       TK_NOTNULL         OP_IsNull
1848f2bc013cSdrh   **       TK_NE              OP_Eq
1849f2bc013cSdrh   **       TK_EQ              OP_Ne
1850f2bc013cSdrh   **       TK_GT              OP_Le
1851f2bc013cSdrh   **       TK_LE              OP_Gt
1852f2bc013cSdrh   **       TK_GE              OP_Lt
1853f2bc013cSdrh   **       TK_LT              OP_Ge
1854f2bc013cSdrh   **
1855f2bc013cSdrh   ** For other values of pExpr->op, op is undefined and unused.
1856f2bc013cSdrh   ** The value of TK_ and OP_ constants are arranged such that we
1857f2bc013cSdrh   ** can compute the mapping above using the following expression.
1858f2bc013cSdrh   ** Assert()s verify that the computation is correct.
1859f2bc013cSdrh   */
1860f2bc013cSdrh   op = ((pExpr->op+(TK_ISNULL&1))^1)-(TK_ISNULL&1);
1861f2bc013cSdrh 
1862f2bc013cSdrh   /* Verify correct alignment of TK_ and OP_ constants
1863f2bc013cSdrh   */
1864f2bc013cSdrh   assert( pExpr->op!=TK_ISNULL || op==OP_NotNull );
1865f2bc013cSdrh   assert( pExpr->op!=TK_NOTNULL || op==OP_IsNull );
1866f2bc013cSdrh   assert( pExpr->op!=TK_NE || op==OP_Eq );
1867f2bc013cSdrh   assert( pExpr->op!=TK_EQ || op==OP_Ne );
1868f2bc013cSdrh   assert( pExpr->op!=TK_LT || op==OP_Ge );
1869f2bc013cSdrh   assert( pExpr->op!=TK_LE || op==OP_Gt );
1870f2bc013cSdrh   assert( pExpr->op!=TK_GT || op==OP_Le );
1871f2bc013cSdrh   assert( pExpr->op!=TK_GE || op==OP_Lt );
1872f2bc013cSdrh 
1873cce7d176Sdrh   switch( pExpr->op ){
1874cce7d176Sdrh     case TK_AND: {
18754adee20fSdanielk1977       sqlite3ExprIfFalse(pParse, pExpr->pLeft, dest, jumpIfNull);
18764adee20fSdanielk1977       sqlite3ExprIfFalse(pParse, pExpr->pRight, dest, jumpIfNull);
1877cce7d176Sdrh       break;
1878cce7d176Sdrh     }
1879cce7d176Sdrh     case TK_OR: {
18804adee20fSdanielk1977       int d2 = sqlite3VdbeMakeLabel(v);
18814adee20fSdanielk1977       sqlite3ExprIfTrue(pParse, pExpr->pLeft, d2, !jumpIfNull);
18824adee20fSdanielk1977       sqlite3ExprIfFalse(pParse, pExpr->pRight, dest, jumpIfNull);
18834adee20fSdanielk1977       sqlite3VdbeResolveLabel(v, d2);
1884cce7d176Sdrh       break;
1885cce7d176Sdrh     }
1886cce7d176Sdrh     case TK_NOT: {
18874adee20fSdanielk1977       sqlite3ExprIfTrue(pParse, pExpr->pLeft, dest, jumpIfNull);
1888cce7d176Sdrh       break;
1889cce7d176Sdrh     }
1890cce7d176Sdrh     case TK_LT:
1891cce7d176Sdrh     case TK_LE:
1892cce7d176Sdrh     case TK_GT:
1893cce7d176Sdrh     case TK_GE:
1894cce7d176Sdrh     case TK_NE:
1895cce7d176Sdrh     case TK_EQ: {
18964adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr->pLeft);
18974adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr->pRight);
1898be5c89acSdrh       codeCompare(pParse, pExpr->pLeft, pExpr->pRight, op, dest, jumpIfNull);
1899cce7d176Sdrh       break;
1900cce7d176Sdrh     }
1901cce7d176Sdrh     case TK_ISNULL:
1902cce7d176Sdrh     case TK_NOTNULL: {
19034adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr->pLeft);
19044adee20fSdanielk1977       sqlite3VdbeAddOp(v, op, 1, dest);
1905cce7d176Sdrh       break;
1906cce7d176Sdrh     }
1907fef5208cSdrh     case TK_BETWEEN: {
19080202b29eSdanielk1977       /* The expression is "x BETWEEN y AND z". It is implemented as:
19090202b29eSdanielk1977       **
19100202b29eSdanielk1977       ** 1 IF (x >= y) GOTO 3
19110202b29eSdanielk1977       ** 2 GOTO <dest>
19120202b29eSdanielk1977       ** 3 IF (x > z) GOTO <dest>
19130202b29eSdanielk1977       */
1914fef5208cSdrh       int addr;
1915be5c89acSdrh       Expr *pLeft = pExpr->pLeft;
1916be5c89acSdrh       Expr *pRight = pExpr->pList->a[0].pExpr;
1917be5c89acSdrh       sqlite3ExprCode(pParse, pLeft);
19184adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_Dup, 0, 0);
1919be5c89acSdrh       sqlite3ExprCode(pParse, pRight);
19204adee20fSdanielk1977       addr = sqlite3VdbeCurrentAddr(v);
1921be5c89acSdrh       codeCompare(pParse, pLeft, pRight, OP_Ge, addr+3, !jumpIfNull);
1922be5c89acSdrh 
19234adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_Pop, 1, 0);
19244adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_Goto, 0, dest);
1925be5c89acSdrh       pRight = pExpr->pList->a[1].pExpr;
1926be5c89acSdrh       sqlite3ExprCode(pParse, pRight);
1927be5c89acSdrh       codeCompare(pParse, pLeft, pRight, OP_Gt, dest, jumpIfNull);
1928fef5208cSdrh       break;
1929fef5208cSdrh     }
1930cce7d176Sdrh     default: {
19314adee20fSdanielk1977       sqlite3ExprCode(pParse, pExpr);
19324adee20fSdanielk1977       sqlite3VdbeAddOp(v, OP_IfNot, jumpIfNull, dest);
1933cce7d176Sdrh       break;
1934cce7d176Sdrh     }
1935cce7d176Sdrh   }
1936cce7d176Sdrh }
19372282792aSdrh 
19382282792aSdrh /*
19392282792aSdrh ** Do a deep comparison of two expression trees.  Return TRUE (non-zero)
19402282792aSdrh ** if they are identical and return FALSE if they differ in any way.
19412282792aSdrh */
19424adee20fSdanielk1977 int sqlite3ExprCompare(Expr *pA, Expr *pB){
19432282792aSdrh   int i;
19442282792aSdrh   if( pA==0 ){
19452282792aSdrh     return pB==0;
19462282792aSdrh   }else if( pB==0 ){
19472282792aSdrh     return 0;
19482282792aSdrh   }
19492282792aSdrh   if( pA->op!=pB->op ) return 0;
19504adee20fSdanielk1977   if( !sqlite3ExprCompare(pA->pLeft, pB->pLeft) ) return 0;
19514adee20fSdanielk1977   if( !sqlite3ExprCompare(pA->pRight, pB->pRight) ) return 0;
19522282792aSdrh   if( pA->pList ){
19532282792aSdrh     if( pB->pList==0 ) return 0;
19542282792aSdrh     if( pA->pList->nExpr!=pB->pList->nExpr ) return 0;
19552282792aSdrh     for(i=0; i<pA->pList->nExpr; i++){
19564adee20fSdanielk1977       if( !sqlite3ExprCompare(pA->pList->a[i].pExpr, pB->pList->a[i].pExpr) ){
19572282792aSdrh         return 0;
19582282792aSdrh       }
19592282792aSdrh     }
19602282792aSdrh   }else if( pB->pList ){
19612282792aSdrh     return 0;
19622282792aSdrh   }
19632282792aSdrh   if( pA->pSelect || pB->pSelect ) return 0;
19642f2c01e5Sdrh   if( pA->iTable!=pB->iTable || pA->iColumn!=pB->iColumn ) return 0;
19652282792aSdrh   if( pA->token.z ){
19662282792aSdrh     if( pB->token.z==0 ) return 0;
19676977fea8Sdrh     if( pB->token.n!=pA->token.n ) return 0;
19684adee20fSdanielk1977     if( sqlite3StrNICmp(pA->token.z, pB->token.z, pB->token.n)!=0 ) return 0;
19692282792aSdrh   }
19702282792aSdrh   return 1;
19712282792aSdrh }
19722282792aSdrh 
19732282792aSdrh /*
19742282792aSdrh ** Add a new element to the pParse->aAgg[] array and return its index.
197573b211abSdrh ** The new element is initialized to zero.  The calling function is
197673b211abSdrh ** expected to fill it in.
19772282792aSdrh */
19782282792aSdrh static int appendAggInfo(Parse *pParse){
19792282792aSdrh   if( (pParse->nAgg & 0x7)==0 ){
19802282792aSdrh     int amt = pParse->nAgg + 8;
19816d4abfbeSdrh     AggExpr *aAgg = sqliteRealloc(pParse->aAgg, amt*sizeof(pParse->aAgg[0]));
19826d4abfbeSdrh     if( aAgg==0 ){
19832282792aSdrh       return -1;
19842282792aSdrh     }
19856d4abfbeSdrh     pParse->aAgg = aAgg;
19862282792aSdrh   }
19872282792aSdrh   memset(&pParse->aAgg[pParse->nAgg], 0, sizeof(pParse->aAgg[0]));
19882282792aSdrh   return pParse->nAgg++;
19892282792aSdrh }
19902282792aSdrh 
19912282792aSdrh /*
1992626a879aSdrh ** This is an xFunc for walkExprTree() used to implement
1993626a879aSdrh ** sqlite3ExprAnalyzeAggregates().  See sqlite3ExprAnalyzeAggregates
1994626a879aSdrh ** for additional information.
19952282792aSdrh **
1996626a879aSdrh ** This routine analyzes the aggregate function at pExpr.
19972282792aSdrh */
1998626a879aSdrh static int analyzeAggregate(void *pArg, Expr *pExpr){
19992282792aSdrh   int i;
20002282792aSdrh   AggExpr *aAgg;
2001626a879aSdrh   Parse *pParse = (Parse*)pArg;
20022282792aSdrh 
20032282792aSdrh   switch( pExpr->op ){
2004967e8b73Sdrh     case TK_COLUMN: {
20052282792aSdrh       aAgg = pParse->aAgg;
20062282792aSdrh       for(i=0; i<pParse->nAgg; i++){
20072282792aSdrh         if( aAgg[i].isAgg ) continue;
20082282792aSdrh         if( aAgg[i].pExpr->iTable==pExpr->iTable
2009967e8b73Sdrh          && aAgg[i].pExpr->iColumn==pExpr->iColumn ){
20102282792aSdrh           break;
20112282792aSdrh         }
20122282792aSdrh       }
20132282792aSdrh       if( i>=pParse->nAgg ){
20142282792aSdrh         i = appendAggInfo(pParse);
20152282792aSdrh         if( i<0 ) return 1;
20162282792aSdrh         pParse->aAgg[i].isAgg = 0;
20172282792aSdrh         pParse->aAgg[i].pExpr = pExpr;
20182282792aSdrh       }
2019aaf88729Sdrh       pExpr->iAgg = i;
2020626a879aSdrh       return 1;
20212282792aSdrh     }
20222282792aSdrh     case TK_AGG_FUNCTION: {
20232282792aSdrh       aAgg = pParse->aAgg;
20242282792aSdrh       for(i=0; i<pParse->nAgg; i++){
20252282792aSdrh         if( !aAgg[i].isAgg ) continue;
20264adee20fSdanielk1977         if( sqlite3ExprCompare(aAgg[i].pExpr, pExpr) ){
20272282792aSdrh           break;
20282282792aSdrh         }
20292282792aSdrh       }
20302282792aSdrh       if( i>=pParse->nAgg ){
2031d8123366Sdanielk1977         u8 enc = pParse->db->enc;
20322282792aSdrh         i = appendAggInfo(pParse);
20332282792aSdrh         if( i<0 ) return 1;
20342282792aSdrh         pParse->aAgg[i].isAgg = 1;
20352282792aSdrh         pParse->aAgg[i].pExpr = pExpr;
20364adee20fSdanielk1977         pParse->aAgg[i].pFunc = sqlite3FindFunction(pParse->db,
20376977fea8Sdrh              pExpr->token.z, pExpr->token.n,
2038d8123366Sdanielk1977              pExpr->pList ? pExpr->pList->nExpr : 0, enc, 0);
20392282792aSdrh       }
20402282792aSdrh       pExpr->iAgg = i;
2041626a879aSdrh       return 1;
20422282792aSdrh     }
20432282792aSdrh   }
2044626a879aSdrh   return 0;
20452282792aSdrh }
2046626a879aSdrh 
2047626a879aSdrh /*
2048626a879aSdrh ** Analyze the given expression looking for aggregate functions and
2049626a879aSdrh ** for variables that need to be added to the pParse->aAgg[] array.
2050626a879aSdrh ** Make additional entries to the pParse->aAgg[] array as necessary.
2051626a879aSdrh **
2052626a879aSdrh ** This routine should only be called after the expression has been
2053626a879aSdrh ** analyzed by sqlite3ExprResolveNames().
2054626a879aSdrh **
2055626a879aSdrh ** If errors are seen, leave an error message in zErrMsg and return
2056626a879aSdrh ** the number of errors.
2057626a879aSdrh */
2058626a879aSdrh int sqlite3ExprAnalyzeAggregates(Parse *pParse, Expr *pExpr){
2059626a879aSdrh   int nErr = pParse->nErr;
2060626a879aSdrh   walkExprTree(pExpr, analyzeAggregate, pParse);
2061626a879aSdrh   return pParse->nErr - nErr;
20622282792aSdrh }
20638e0a2f90Sdrh 
20648e0a2f90Sdrh /*
2065d02eb1fdSdanielk1977 ** Locate a user function given a name, a number of arguments and a flag
2066d02eb1fdSdanielk1977 ** indicating whether the function prefers UTF-16 over UTF-8.  Return a
2067d02eb1fdSdanielk1977 ** pointer to the FuncDef structure that defines that function, or return
2068d02eb1fdSdanielk1977 ** NULL if the function does not exist.
20698e0a2f90Sdrh **
20700bce8354Sdrh ** If the createFlag argument is true, then a new (blank) FuncDef
20718e0a2f90Sdrh ** structure is created and liked into the "db" structure if a
20728e0a2f90Sdrh ** no matching function previously existed.  When createFlag is true
20738e0a2f90Sdrh ** and the nArg parameter is -1, then only a function that accepts
20748e0a2f90Sdrh ** any number of arguments will be returned.
20758e0a2f90Sdrh **
20768e0a2f90Sdrh ** If createFlag is false and nArg is -1, then the first valid
20778e0a2f90Sdrh ** function found is returned.  A function is valid if either xFunc
20788e0a2f90Sdrh ** or xStep is non-zero.
2079d02eb1fdSdanielk1977 **
2080d02eb1fdSdanielk1977 ** If createFlag is false, then a function with the required name and
2081d02eb1fdSdanielk1977 ** number of arguments may be returned even if the eTextRep flag does not
2082d02eb1fdSdanielk1977 ** match that requested.
20838e0a2f90Sdrh */
20844adee20fSdanielk1977 FuncDef *sqlite3FindFunction(
20859bb575fdSdrh   sqlite3 *db,       /* An open database */
20868e0a2f90Sdrh   const char *zName, /* Name of the function.  Not null-terminated */
20878e0a2f90Sdrh   int nName,         /* Number of characters in the name */
20888e0a2f90Sdrh   int nArg,          /* Number of arguments.  -1 means any number */
2089d8123366Sdanielk1977   u8 enc,            /* Preferred text encoding */
20908e0a2f90Sdrh   int createFlag     /* Create new entry if true and does not otherwise exist */
20918e0a2f90Sdrh ){
2092d02eb1fdSdanielk1977   FuncDef *p;         /* Iterator variable */
2093d02eb1fdSdanielk1977   FuncDef *pFirst;    /* First function with this name */
2094d02eb1fdSdanielk1977   FuncDef *pBest = 0; /* Best match found so far */
2095d8123366Sdanielk1977   int bestmatch = 0;
2096d02eb1fdSdanielk1977 
2097d8123366Sdanielk1977 
2098d8123366Sdanielk1977   assert( enc==SQLITE_UTF8 || enc==SQLITE_UTF16LE || enc==SQLITE_UTF16BE );
2099d02eb1fdSdanielk1977   if( nArg<-1 ) nArg = -1;
2100d02eb1fdSdanielk1977 
2101d02eb1fdSdanielk1977   pFirst = (FuncDef*)sqlite3HashFind(&db->aFunc, zName, nName);
2102d02eb1fdSdanielk1977   for(p=pFirst; p; p=p->pNext){
2103d8123366Sdanielk1977     /* During the search for the best function definition, bestmatch is set
2104d8123366Sdanielk1977     ** as follows to indicate the quality of the match with the definition
2105d8123366Sdanielk1977     ** pointed to by pBest:
2106d8123366Sdanielk1977     **
2107d8123366Sdanielk1977     ** 0: pBest is NULL. No match has been found.
2108d8123366Sdanielk1977     ** 1: A variable arguments function that prefers UTF-8 when a UTF-16
2109d8123366Sdanielk1977     **    encoding is requested, or vice versa.
2110d8123366Sdanielk1977     ** 2: A variable arguments function that uses UTF-16BE when UTF-16LE is
2111d8123366Sdanielk1977     **    requested, or vice versa.
2112d8123366Sdanielk1977     ** 3: A variable arguments function using the same text encoding.
2113d8123366Sdanielk1977     ** 4: A function with the exact number of arguments requested that
2114d8123366Sdanielk1977     **    prefers UTF-8 when a UTF-16 encoding is requested, or vice versa.
2115d8123366Sdanielk1977     ** 5: A function with the exact number of arguments requested that
2116d8123366Sdanielk1977     **    prefers UTF-16LE when UTF-16BE is requested, or vice versa.
2117d8123366Sdanielk1977     ** 6: An exact match.
2118d8123366Sdanielk1977     **
2119d8123366Sdanielk1977     ** A larger value of 'matchqual' indicates a more desirable match.
2120d8123366Sdanielk1977     */
2121e12c17baSdanielk1977     if( p->nArg==-1 || p->nArg==nArg || nArg==-1 ){
2122d8123366Sdanielk1977       int match = 1;          /* Quality of this match */
2123d8123366Sdanielk1977       if( p->nArg==nArg || nArg==-1 ){
2124d8123366Sdanielk1977         match = 4;
21258e0a2f90Sdrh       }
2126d8123366Sdanielk1977       if( enc==p->iPrefEnc ){
2127d8123366Sdanielk1977         match += 2;
21288e0a2f90Sdrh       }
2129d8123366Sdanielk1977       else if( (enc==SQLITE_UTF16LE && p->iPrefEnc==SQLITE_UTF16BE) ||
2130d8123366Sdanielk1977                (enc==SQLITE_UTF16BE && p->iPrefEnc==SQLITE_UTF16LE) ){
2131d8123366Sdanielk1977         match += 1;
2132d02eb1fdSdanielk1977       }
2133d8123366Sdanielk1977 
2134d8123366Sdanielk1977       if( match>bestmatch ){
2135d02eb1fdSdanielk1977         pBest = p;
2136d8123366Sdanielk1977         bestmatch = match;
2137d02eb1fdSdanielk1977       }
2138d02eb1fdSdanielk1977     }
2139d02eb1fdSdanielk1977   }
2140d02eb1fdSdanielk1977 
2141d8123366Sdanielk1977   /* If the createFlag parameter is true, and the seach did not reveal an
2142d8123366Sdanielk1977   ** exact match for the name, number of arguments and encoding, then add a
2143d8123366Sdanielk1977   ** new entry to the hash table and return it.
2144d8123366Sdanielk1977   */
2145d8123366Sdanielk1977   if( createFlag && bestmatch<6 &&
2146d02eb1fdSdanielk1977       (pBest = sqliteMalloc(sizeof(*pBest)+nName+1)) ){
2147d02eb1fdSdanielk1977     pBest->nArg = nArg;
2148d02eb1fdSdanielk1977     pBest->pNext = pFirst;
2149d02eb1fdSdanielk1977     pBest->zName = (char*)&pBest[1];
2150d8123366Sdanielk1977     pBest->iPrefEnc = enc;
2151d02eb1fdSdanielk1977     memcpy(pBest->zName, zName, nName);
2152d02eb1fdSdanielk1977     pBest->zName[nName] = 0;
21532c336549Sdanielk1977     if( pBest==sqlite3HashInsert(&db->aFunc,pBest->zName,nName,(void*)pBest) ){
21542c336549Sdanielk1977       sqliteFree(pBest);
21552c336549Sdanielk1977       return 0;
21562c336549Sdanielk1977     }
2157d02eb1fdSdanielk1977   }
2158d02eb1fdSdanielk1977 
2159d02eb1fdSdanielk1977   if( pBest && (pBest->xStep || pBest->xFunc || createFlag) ){
2160d02eb1fdSdanielk1977     return pBest;
2161d02eb1fdSdanielk1977   }
21628e0a2f90Sdrh   return 0;
21638e0a2f90Sdrh }
2164