1 use crate::linker::{Definition, DefinitionType};
2 use crate::prelude::*;
3 use crate::runtime::vm::{
4     Imports, InstanceAllocationRequest, ModuleRuntimeInfo, StorePtr, VMFuncRef, VMFunctionImport,
5     VMGlobalImport, VMMemoryImport, VMOpaqueContext, VMTableImport,
6 };
7 use crate::store::{InstanceId, StoreOpaque, Stored};
8 use crate::types::matching;
9 use crate::{
10     AsContextMut, Engine, Export, Extern, Func, Global, Memory, Module, ModuleExport, SharedMemory,
11     StoreContext, StoreContextMut, Table, TypedFunc,
12 };
13 use alloc::sync::Arc;
14 use core::ptr::NonNull;
15 use wasmparser::WasmFeatures;
16 use wasmtime_environ::{
17     EntityIndex, EntityType, FuncIndex, GlobalIndex, MemoryIndex, PrimaryMap, TableIndex, TypeTrace,
18 };
19 
20 /// An instantiated WebAssembly module.
21 ///
22 /// This type represents the instantiation of a [`Module`]. Once instantiated
23 /// you can access the [`exports`](Instance::exports) which are of type
24 /// [`Extern`] and provide the ability to call functions, set globals, read
25 /// memory, etc. When interacting with any wasm code you'll want to make an
26 /// [`Instance`] to call any code or execute anything.
27 ///
28 /// Instances are owned by a [`Store`](crate::Store) which is passed in at
29 /// creation time. It's recommended to create instances with
30 /// [`Linker::instantiate`](crate::Linker::instantiate) or similar
31 /// [`Linker`](crate::Linker) methods, but a more low-level constructor is also
32 /// available as [`Instance::new`].
33 #[derive(Copy, Clone, Debug)]
34 #[repr(transparent)]
35 pub struct Instance(Stored<InstanceData>);
36 
37 pub(crate) struct InstanceData {
38     /// The id of the instance within the store, used to find the original
39     /// `InstanceHandle`.
40     id: InstanceId,
41     /// A lazily-populated list of exports of this instance. The order of
42     /// exports here matches the order of the exports in the original
43     /// module.
44     exports: Vec<Option<Extern>>,
45 }
46 
47 impl InstanceData {
48     pub fn from_id(id: InstanceId) -> InstanceData {
49         InstanceData {
50             id,
51             exports: vec![],
52         }
53     }
54 }
55 
56 impl Instance {
57     /// Creates a new [`Instance`] from the previously compiled [`Module`] and
58     /// list of `imports` specified.
59     ///
60     /// This method instantiates the `module` provided with the `imports`,
61     /// following the procedure in the [core specification][inst] to
62     /// instantiate. Instantiation can fail for a number of reasons (many
63     /// specified below), but if successful the `start` function will be
64     /// automatically run (if specified in the `module`) and then the
65     /// [`Instance`] will be returned.
66     ///
67     /// Per the WebAssembly spec, instantiation includes running the module's
68     /// start function, if it has one (not to be confused with the `_start`
69     /// function, which is not run).
70     ///
71     /// Note that this is a low-level function that just performs an
72     /// instantiation. See the [`Linker`](crate::Linker) struct for an API which
73     /// provides a convenient way to link imports and provides automatic Command
74     /// and Reactor behavior.
75     ///
76     /// ## Providing Imports
77     ///
78     /// The entries in the list of `imports` are intended to correspond 1:1
79     /// with the list of imports returned by [`Module::imports`]. Before
80     /// calling [`Instance::new`] you'll want to inspect the return value of
81     /// [`Module::imports`] and, for each import type, create an [`Extern`]
82     /// which corresponds to that type.  These [`Extern`] values are all then
83     /// collected into a list and passed to this function.
84     ///
85     /// Note that this function is intentionally relatively low level. For an
86     /// easier time passing imports by doing name-based resolution it's
87     /// recommended to instead use the [`Linker`](crate::Linker) type.
88     ///
89     /// ## Errors
90     ///
91     /// This function can fail for a number of reasons, including, but not
92     /// limited to:
93     ///
94     /// * The number of `imports` provided doesn't match the number of imports
95     ///   returned by the `module`'s [`Module::imports`] method.
96     /// * The type of any [`Extern`] doesn't match the corresponding
97     ///   [`ExternType`] entry that it maps to.
98     /// * The `start` function in the instance, if present, traps.
99     /// * Module/instance resource limits are exceeded.
100     ///
101     /// When instantiation fails it's recommended to inspect the return value to
102     /// see why it failed, or bubble it upwards. If you'd like to specifically
103     /// check for trap errors, you can use `error.downcast::<Trap>()`. For more
104     /// about error handling see the [`Trap`] documentation.
105     ///
106     /// [`Trap`]: crate::Trap
107     ///
108     /// # Panics
109     ///
110     /// This function will panic if called with a store associated with a
111     /// [`asynchronous config`](crate::Config::async_support). This function
112     /// will also panic if any [`Extern`] supplied is not owned by `store`.
113     ///
114     /// [inst]: https://webassembly.github.io/spec/core/exec/modules.html#exec-instantiation
115     /// [`ExternType`]: crate::ExternType
116     pub fn new(
117         mut store: impl AsContextMut,
118         module: &Module,
119         imports: &[Extern],
120     ) -> Result<Instance> {
121         let mut store = store.as_context_mut();
122         let imports = Instance::typecheck_externs(store.0, module, imports)?;
123         // Note that the unsafety here should be satisfied by the call to
124         // `typecheck_externs` above which satisfies the condition that all
125         // the imports are valid for this module.
126         unsafe { Instance::new_started(&mut store, module, imports.as_ref()) }
127     }
128 
129     /// Same as [`Instance::new`], except for usage in [asynchronous stores].
130     ///
131     /// For more details about this function see the documentation on
132     /// [`Instance::new`]. The only difference between these two methods is that
133     /// this one will asynchronously invoke the wasm start function in case it
134     /// calls any imported function which is an asynchronous host function (e.g.
135     /// created with [`Func::new_async`](crate::Func::new_async).
136     ///
137     /// # Panics
138     ///
139     /// This function will panic if called with a store associated with a
140     /// [`synchronous config`](crate::Config::new). This is only compatible with
141     /// stores associated with an [`asynchronous
142     /// config`](crate::Config::async_support).
143     ///
144     /// This function will also panic, like [`Instance::new`], if any [`Extern`]
145     /// specified does not belong to `store`.
146     #[cfg(feature = "async")]
147     pub async fn new_async<T>(
148         mut store: impl AsContextMut<Data = T>,
149         module: &Module,
150         imports: &[Extern],
151     ) -> Result<Instance>
152     where
153         T: Send,
154     {
155         let mut store = store.as_context_mut();
156         let imports = Instance::typecheck_externs(store.0, module, imports)?;
157         // See `new` for notes on this unsafety
158         unsafe { Instance::new_started_async(&mut store, module, imports.as_ref()).await }
159     }
160 
161     fn typecheck_externs(
162         store: &mut StoreOpaque,
163         module: &Module,
164         imports: &[Extern],
165     ) -> Result<OwnedImports> {
166         for import in imports {
167             if !import.comes_from_same_store(store) {
168                 bail!("cross-`Store` instantiation is not currently supported");
169             }
170         }
171         typecheck(module, imports, |cx, ty, item| {
172             let item = DefinitionType::from(store, item);
173             cx.definition(ty, &item)
174         })?;
175         let mut owned_imports = OwnedImports::new(module);
176         for import in imports {
177             owned_imports.push(import, store, module);
178         }
179         Ok(owned_imports)
180     }
181 
182     /// Internal function to create an instance and run the start function.
183     ///
184     /// This function's unsafety is the same as `Instance::new_raw`.
185     pub(crate) unsafe fn new_started<T>(
186         store: &mut StoreContextMut<'_, T>,
187         module: &Module,
188         imports: Imports<'_>,
189     ) -> Result<Instance> {
190         assert!(
191             !store.0.async_support(),
192             "must use async instantiation when async support is enabled",
193         );
194         Self::new_started_impl(store, module, imports)
195     }
196 
197     /// Internal function to create an instance and run the start function.
198     ///
199     /// ONLY CALL THIS IF YOU HAVE ALREADY CHECKED FOR ASYNCNESS AND HANDLED
200     /// THE FIBER NONSENSE
201     pub(crate) unsafe fn new_started_impl<T>(
202         store: &mut StoreContextMut<'_, T>,
203         module: &Module,
204         imports: Imports<'_>,
205     ) -> Result<Instance> {
206         let (instance, start) = Instance::new_raw(store.0, module, imports)?;
207         if let Some(start) = start {
208             instance.start_raw(store, start)?;
209         }
210         Ok(instance)
211     }
212 
213     /// Internal function to create an instance and run the start function.
214     ///
215     /// This function's unsafety is the same as `Instance::new_raw`.
216     #[cfg(feature = "async")]
217     async unsafe fn new_started_async<T>(
218         store: &mut StoreContextMut<'_, T>,
219         module: &Module,
220         imports: Imports<'_>,
221     ) -> Result<Instance>
222     where
223         T: Send,
224     {
225         assert!(
226             store.0.async_support(),
227             "must use sync instantiation when async support is disabled",
228         );
229 
230         store
231             .on_fiber(|store| Self::new_started_impl(store, module, imports))
232             .await?
233     }
234 
235     /// Internal function to create an instance which doesn't have its `start`
236     /// function run yet.
237     ///
238     /// This is not intended to be exposed from Wasmtime, it's intended to
239     /// refactor out common code from `new_started` and `new_started_async`.
240     ///
241     /// Note that this step needs to be run on a fiber in async mode even
242     /// though it doesn't do any blocking work because an async resource
243     /// limiter may need to yield.
244     ///
245     /// # Unsafety
246     ///
247     /// This method is unsafe because it does not type-check the `imports`
248     /// provided. The `imports` provided must be suitable for the module
249     /// provided as well.
250     unsafe fn new_raw(
251         store: &mut StoreOpaque,
252         module: &Module,
253         imports: Imports<'_>,
254     ) -> Result<(Instance, Option<FuncIndex>)> {
255         if !Engine::same(store.engine(), module.engine()) {
256             bail!("cross-`Engine` instantiation is not currently supported");
257         }
258         store.bump_resource_counts(module)?;
259 
260         // Allocate the GC heap, if necessary.
261         let _ = store.gc_store_mut()?;
262 
263         let compiled_module = module.compiled_module();
264 
265         // Register the module just before instantiation to ensure we keep the module
266         // properly referenced while in use by the store.
267         let module_id = store.modules_mut().register_module(module);
268         store.fill_func_refs();
269 
270         // The first thing we do is issue an instance allocation request
271         // to the instance allocator. This, on success, will give us an
272         // instance handle.
273         //
274         // Note that the `host_state` here is a pointer back to the
275         // `Instance` we'll be returning from this function. This is a
276         // circular reference so we can't construct it before we construct
277         // this instance, so we determine what the ID is and then assert
278         // it's the same later when we do actually insert it.
279         let instance_to_be = store.store_data().next_id::<InstanceData>();
280 
281         let mut instance_handle =
282             store
283                 .engine()
284                 .allocator()
285                 .allocate_module(InstanceAllocationRequest {
286                     runtime_info: &ModuleRuntimeInfo::Module(module.clone()),
287                     imports,
288                     host_state: Box::new(Instance(instance_to_be)),
289                     store: StorePtr::new(store.traitobj()),
290                     wmemcheck: store.engine().config().wmemcheck,
291                     pkey: store.get_pkey(),
292                 })?;
293 
294         // The instance still has lots of setup, for example
295         // data/elements/start/etc. This can all fail, but even on failure
296         // the instance may persist some state via previous successful
297         // initialization. For this reason once we have an instance handle
298         // we immediately insert it into the store to keep it alive.
299         //
300         // Note that we `clone` the instance handle just to make easier
301         // working the borrow checker here easier. Technically the `&mut
302         // instance` has somewhat of a borrow on `store` (which
303         // conflicts with the borrow on `store.engine`) but this doesn't
304         // matter in practice since initialization isn't even running any
305         // code here anyway.
306         let id = store.add_instance(instance_handle.clone(), module_id);
307 
308         // Additionally, before we start doing fallible instantiation, we
309         // do one more step which is to insert an `InstanceData`
310         // corresponding to this instance. This `InstanceData` can be used
311         // via `Caller::get_export` if our instance's state "leaks" into
312         // other instances, even if we don't return successfully from this
313         // function.
314         //
315         // We don't actually load all exports from the instance at this
316         // time, instead preferring to lazily load them as they're demanded.
317         // For module/instance exports, though, those aren't actually
318         // stored in the instance handle so we need to immediately handle
319         // those here.
320         let instance = {
321             let exports = vec![None; compiled_module.module().exports.len()];
322             let data = InstanceData { id, exports };
323             Instance::from_wasmtime(data, store)
324         };
325 
326         // double-check our guess of what the new instance's ID would be
327         // was actually correct.
328         assert_eq!(instance.0, instance_to_be);
329 
330         // Now that we've recorded all information we need to about this
331         // instance within a `Store` we can start performing fallible
332         // initialization. Note that we still defer the `start` function to
333         // later since that may need to run asynchronously.
334         //
335         // If this returns an error (or if the start function traps) then
336         // any other initialization which may have succeeded which placed
337         // items from this instance into other instances should be ok when
338         // those items are loaded and run we'll have all the metadata to
339         // look at them.
340         instance_handle.initialize(
341             compiled_module.module(),
342             store
343                 .engine()
344                 .config()
345                 .features
346                 .contains(WasmFeatures::BULK_MEMORY),
347         )?;
348 
349         Ok((instance, compiled_module.module().start_func))
350     }
351 
352     pub(crate) fn from_wasmtime(handle: InstanceData, store: &mut StoreOpaque) -> Instance {
353         Instance(store.store_data_mut().insert(handle))
354     }
355 
356     fn start_raw<T>(&self, store: &mut StoreContextMut<'_, T>, start: FuncIndex) -> Result<()> {
357         let id = store.0.store_data()[self.0].id;
358         // If a start function is present, invoke it. Make sure we use all the
359         // trap-handling configuration in `store` as well.
360         let instance = store.0.instance_mut(id);
361         let f = instance.get_exported_func(start);
362         let caller_vmctx = instance.vmctx();
363         unsafe {
364             super::func::invoke_wasm_and_catch_traps(store, |_default_caller| {
365                 let func = f.func_ref.as_ref().array_call;
366                 func(
367                     f.func_ref.as_ref().vmctx,
368                     VMOpaqueContext::from_vmcontext(caller_vmctx),
369                     [].as_mut_ptr(),
370                     0,
371                 )
372             })?;
373         }
374         Ok(())
375     }
376 
377     /// Get this instance's module.
378     pub fn module<'a, T: 'a>(&self, store: impl Into<StoreContext<'a, T>>) -> &'a Module {
379         self._module(store.into().0)
380     }
381 
382     fn _module<'a>(&self, store: &'a StoreOpaque) -> &'a Module {
383         let InstanceData { id, .. } = store[self.0];
384         store.module_for_instance(id).unwrap()
385     }
386 
387     /// Returns the list of exported items from this [`Instance`].
388     ///
389     /// # Panics
390     ///
391     /// Panics if `store` does not own this instance.
392     pub fn exports<'a, T: 'a>(
393         &'a self,
394         store: impl Into<StoreContextMut<'a, T>>,
395     ) -> impl ExactSizeIterator<Item = Export<'a>> + 'a {
396         self._exports(store.into().0)
397     }
398 
399     fn _exports<'a>(
400         &'a self,
401         store: &'a mut StoreOpaque,
402     ) -> impl ExactSizeIterator<Item = Export<'a>> + 'a {
403         // If this is an `Instantiated` instance then all the `exports` may not
404         // be filled in. Fill them all in now if that's the case.
405         let InstanceData { exports, id, .. } = &store[self.0];
406         if exports.iter().any(|e| e.is_none()) {
407             let module = Arc::clone(store.instance(*id).module());
408             let data = &store[self.0];
409             let id = data.id;
410 
411             for name in module.exports.keys() {
412                 let instance = store.instance(id);
413                 if let Some((export_name_index, _, &entity)) =
414                     instance.module().exports.get_full(name)
415                 {
416                     self._get_export(store, entity, export_name_index);
417                 }
418             }
419         }
420 
421         let data = &store.store_data()[self.0];
422         let module = store.instance(data.id).module();
423         module
424             .exports
425             .iter()
426             .zip(&data.exports)
427             .map(|((name, _), export)| Export::new(name, export.clone().unwrap()))
428     }
429 
430     /// Looks up an exported [`Extern`] value by name.
431     ///
432     /// This method will search the module for an export named `name` and return
433     /// the value, if found.
434     ///
435     /// Returns `None` if there was no export named `name`.
436     ///
437     /// # Panics
438     ///
439     /// Panics if `store` does not own this instance.
440     ///
441     /// # Why does `get_export` take a mutable context?
442     ///
443     /// This method requires a mutable context because an instance's exports are
444     /// lazily populated, and we cache them as they are accessed. This makes
445     /// instantiating a module faster, but also means this method requires a
446     /// mutable context.
447     pub fn get_export(&self, mut store: impl AsContextMut, name: &str) -> Option<Extern> {
448         let store = store.as_context_mut().0;
449         let data = &store[self.0];
450         let instance = store.instance(data.id);
451         let (export_name_index, _, &entity) = instance.module().exports.get_full(name)?;
452         self._get_export(store, entity, export_name_index)
453     }
454 
455     /// Looks up an exported [`Extern`] value by a [`ModuleExport`] value.
456     ///
457     /// This is similar to [`Instance::get_export`] but uses a [`ModuleExport`] value to avoid
458     /// string lookups where possible. [`ModuleExport`]s can be obtained by calling
459     /// [`Module::get_export_index`] on the [`Module`] that this instance was instantiated with.
460     ///
461     /// This method will search the module for an export with a matching entity index and return
462     /// the value, if found.
463     ///
464     /// Returns `None` if there was no export with a matching entity index.
465     /// # Panics
466     ///
467     /// Panics if `store` does not own this instance.
468     pub fn get_module_export(
469         &self,
470         mut store: impl AsContextMut,
471         export: &ModuleExport,
472     ) -> Option<Extern> {
473         let store = store.as_context_mut().0;
474 
475         // Verify the `ModuleExport` matches the module used in this instance.
476         if self._module(store).id() != export.module {
477             return None;
478         }
479 
480         self._get_export(store, export.entity, export.export_name_index)
481     }
482 
483     fn _get_export(
484         &self,
485         store: &mut StoreOpaque,
486         entity: EntityIndex,
487         export_name_index: usize,
488     ) -> Option<Extern> {
489         // Instantiated instances will lazily fill in exports, so we process
490         // all that lazy logic here.
491         let data = &store[self.0];
492 
493         if let Some(export) = &data.exports[export_name_index] {
494             return Some(export.clone());
495         }
496 
497         let instance = store.instance_mut(data.id); // Reborrow the &mut InstanceHandle
498         let item =
499             unsafe { Extern::from_wasmtime_export(instance.get_export_by_index(entity), store) };
500         let data = &mut store[self.0];
501         data.exports[export_name_index] = Some(item.clone());
502         Some(item)
503     }
504 
505     /// Looks up an exported [`Func`] value by name.
506     ///
507     /// Returns `None` if there was no export named `name`, or if there was but
508     /// it wasn't a function.
509     ///
510     /// # Panics
511     ///
512     /// Panics if `store` does not own this instance.
513     pub fn get_func(&self, store: impl AsContextMut, name: &str) -> Option<Func> {
514         self.get_export(store, name)?.into_func()
515     }
516 
517     /// Looks up an exported [`Func`] value by name and with its type.
518     ///
519     /// This function is a convenience wrapper over [`Instance::get_func`] and
520     /// [`Func::typed`]. For more information see the linked documentation.
521     ///
522     /// Returns an error if `name` isn't a function export or if the export's
523     /// type did not match `Params` or `Results`
524     ///
525     /// # Panics
526     ///
527     /// Panics if `store` does not own this instance.
528     pub fn get_typed_func<Params, Results>(
529         &self,
530         mut store: impl AsContextMut,
531         name: &str,
532     ) -> Result<TypedFunc<Params, Results>>
533     where
534         Params: crate::WasmParams,
535         Results: crate::WasmResults,
536     {
537         let f = self
538             .get_export(store.as_context_mut(), name)
539             .and_then(|f| f.into_func())
540             .ok_or_else(|| anyhow!("failed to find function export `{}`", name))?;
541         Ok(f.typed::<Params, Results>(store)
542             .with_context(|| format!("failed to convert function `{}` to given type", name))?)
543     }
544 
545     /// Looks up an exported [`Table`] value by name.
546     ///
547     /// Returns `None` if there was no export named `name`, or if there was but
548     /// it wasn't a table.
549     ///
550     /// # Panics
551     ///
552     /// Panics if `store` does not own this instance.
553     pub fn get_table(&self, store: impl AsContextMut, name: &str) -> Option<Table> {
554         self.get_export(store, name)?.into_table()
555     }
556 
557     /// Looks up an exported [`Memory`] value by name.
558     ///
559     /// Returns `None` if there was no export named `name`, or if there was but
560     /// it wasn't a memory.
561     ///
562     /// # Panics
563     ///
564     /// Panics if `store` does not own this instance.
565     pub fn get_memory(&self, store: impl AsContextMut, name: &str) -> Option<Memory> {
566         self.get_export(store, name)?.into_memory()
567     }
568 
569     /// Looks up an exported [`SharedMemory`] value by name.
570     ///
571     /// Returns `None` if there was no export named `name`, or if there was but
572     /// it wasn't a shared memory.
573     ///
574     /// # Panics
575     ///
576     /// Panics if `store` does not own this instance.
577     pub fn get_shared_memory(
578         &self,
579         mut store: impl AsContextMut,
580         name: &str,
581     ) -> Option<SharedMemory> {
582         let mut store = store.as_context_mut();
583         self.get_export(&mut store, name)?.into_shared_memory()
584     }
585 
586     /// Looks up an exported [`Global`] value by name.
587     ///
588     /// Returns `None` if there was no export named `name`, or if there was but
589     /// it wasn't a global.
590     ///
591     /// # Panics
592     ///
593     /// Panics if `store` does not own this instance.
594     pub fn get_global(&self, store: impl AsContextMut, name: &str) -> Option<Global> {
595         self.get_export(store, name)?.into_global()
596     }
597 
598     #[cfg(feature = "component-model")]
599     pub(crate) fn id(&self, store: &StoreOpaque) -> InstanceId {
600         store[self.0].id
601     }
602 
603     /// Get all globals within this instance.
604     ///
605     /// Returns both import and defined globals.
606     ///
607     /// Returns both exported and non-exported globals.
608     ///
609     /// Gives access to the full globals space.
610     pub(crate) fn all_globals<'a>(
611         &'a self,
612         store: &'a mut StoreOpaque,
613     ) -> impl ExactSizeIterator<Item = (GlobalIndex, Global)> + 'a {
614         let data = &store[self.0];
615         let instance = store.instance_mut(data.id);
616         instance
617             .all_globals()
618             .collect::<Vec<_>>()
619             .into_iter()
620             .map(|(i, g)| (i, unsafe { Global::from_wasmtime_global(g, store) }))
621     }
622 
623     /// Get all memories within this instance.
624     ///
625     /// Returns both import and defined memories.
626     ///
627     /// Returns both exported and non-exported memories.
628     ///
629     /// Gives access to the full memories space.
630     pub(crate) fn all_memories<'a>(
631         &'a self,
632         store: &'a mut StoreOpaque,
633     ) -> impl ExactSizeIterator<Item = (MemoryIndex, Memory)> + 'a {
634         let data = &store[self.0];
635         let instance = store.instance_mut(data.id);
636         instance
637             .all_memories()
638             .collect::<Vec<_>>()
639             .into_iter()
640             .map(|(i, m)| (i, unsafe { Memory::from_wasmtime_memory(m, store) }))
641     }
642 }
643 
644 pub(crate) struct OwnedImports {
645     functions: PrimaryMap<FuncIndex, VMFunctionImport>,
646     tables: PrimaryMap<TableIndex, VMTableImport>,
647     memories: PrimaryMap<MemoryIndex, VMMemoryImport>,
648     globals: PrimaryMap<GlobalIndex, VMGlobalImport>,
649 }
650 
651 impl OwnedImports {
652     fn new(module: &Module) -> OwnedImports {
653         let mut ret = OwnedImports::empty();
654         ret.reserve(module);
655         return ret;
656     }
657 
658     pub(crate) fn empty() -> OwnedImports {
659         OwnedImports {
660             functions: PrimaryMap::new(),
661             tables: PrimaryMap::new(),
662             memories: PrimaryMap::new(),
663             globals: PrimaryMap::new(),
664         }
665     }
666 
667     pub(crate) fn reserve(&mut self, module: &Module) {
668         let raw = module.compiled_module().module();
669         self.functions.reserve(raw.num_imported_funcs);
670         self.tables.reserve(raw.num_imported_tables);
671         self.memories.reserve(raw.num_imported_memories);
672         self.globals.reserve(raw.num_imported_globals);
673     }
674 
675     #[cfg(feature = "component-model")]
676     pub(crate) fn clear(&mut self) {
677         self.functions.clear();
678         self.tables.clear();
679         self.memories.clear();
680         self.globals.clear();
681     }
682 
683     fn push(&mut self, item: &Extern, store: &mut StoreOpaque, module: &Module) {
684         match item {
685             Extern::Func(i) => {
686                 self.functions.push(i.vmimport(store, module));
687             }
688             Extern::Global(i) => {
689                 self.globals.push(i.vmimport(store));
690             }
691             Extern::Table(i) => {
692                 self.tables.push(i.vmimport(store));
693             }
694             Extern::Memory(i) => {
695                 self.memories.push(i.vmimport(store));
696             }
697             Extern::SharedMemory(i) => {
698                 self.memories.push(i.vmimport(store));
699             }
700         }
701     }
702 
703     /// Note that this is unsafe as the validity of `item` is not verified and
704     /// it contains a bunch of raw pointers.
705     #[cfg(feature = "component-model")]
706     pub(crate) unsafe fn push_export(&mut self, item: &crate::runtime::vm::Export) {
707         match item {
708             crate::runtime::vm::Export::Function(f) => {
709                 let f = f.func_ref.as_ref();
710                 self.functions.push(VMFunctionImport {
711                     wasm_call: f.wasm_call.unwrap(),
712                     array_call: f.array_call,
713                     vmctx: f.vmctx,
714                 });
715             }
716             crate::runtime::vm::Export::Global(g) => {
717                 self.globals.push(VMGlobalImport { from: g.definition });
718             }
719             crate::runtime::vm::Export::Table(t) => {
720                 self.tables.push(VMTableImport {
721                     from: t.definition,
722                     vmctx: t.vmctx,
723                 });
724             }
725             crate::runtime::vm::Export::Memory(m) => {
726                 self.memories.push(VMMemoryImport {
727                     from: m.definition,
728                     vmctx: m.vmctx,
729                     index: m.index,
730                 });
731             }
732         }
733     }
734 
735     pub(crate) fn as_ref(&self) -> Imports<'_> {
736         Imports {
737             tables: self.tables.values().as_slice(),
738             globals: self.globals.values().as_slice(),
739             memories: self.memories.values().as_slice(),
740             functions: self.functions.values().as_slice(),
741         }
742     }
743 }
744 
745 /// An instance, pre-instantiation, that is ready to be instantiated.
746 ///
747 /// This structure represents an instance *just before* it was instantiated,
748 /// after all type-checking and imports have been resolved. The only thing left
749 /// to do for this instance is to actually run the process of instantiation.
750 ///
751 /// Note that an `InstancePre` may not be tied to any particular [`Store`] if
752 /// none of the imports it closed over are tied to any particular [`Store`].
753 ///
754 /// This structure is created through the [`Linker::instantiate_pre`] method,
755 /// which also has some more information and examples.
756 ///
757 /// [`Store`]: crate::Store
758 /// [`Linker::instantiate_pre`]: crate::Linker::instantiate_pre
759 pub struct InstancePre<T> {
760     module: Module,
761 
762     /// The items which this `InstancePre` use to instantiate the `module`
763     /// provided, passed to `Instance::new_started` after inserting them into a
764     /// `Store`.
765     ///
766     /// Note that this is stored as an `Arc<[T]>` to quickly move a strong
767     /// reference to everything internally into a `Store<T>` without having to
768     /// clone each individual item.
769     items: Arc<[Definition]>,
770 
771     /// A count of `Definition::HostFunc` entries in `items` above to
772     /// preallocate space in a `Store` up front for all entries to be inserted.
773     host_funcs: usize,
774 
775     /// The `VMFuncRef`s for the functions in `items` that do not
776     /// have a `wasm_call` trampoline. We pre-allocate and pre-patch these
777     /// `VMFuncRef`s so that we don't have to do it at
778     /// instantiation time.
779     ///
780     /// This is an `Arc<[T]>` for the same reason as `items`.
781     func_refs: Arc<[VMFuncRef]>,
782 
783     _marker: core::marker::PhantomData<fn() -> T>,
784 }
785 
786 /// InstancePre's clone does not require T: Clone
787 impl<T> Clone for InstancePre<T> {
788     fn clone(&self) -> Self {
789         Self {
790             module: self.module.clone(),
791             items: self.items.clone(),
792             host_funcs: self.host_funcs,
793             func_refs: self.func_refs.clone(),
794             _marker: self._marker,
795         }
796     }
797 }
798 
799 impl<T> InstancePre<T> {
800     /// Creates a new `InstancePre` which type-checks the `items` provided and
801     /// on success is ready to instantiate a new instance.
802     ///
803     /// # Unsafety
804     ///
805     /// This method is unsafe as the `T` of the `InstancePre<T>` is not
806     /// guaranteed to be the same as the `T` within the `Store`, the caller must
807     /// verify that.
808     pub(crate) unsafe fn new(module: &Module, items: Vec<Definition>) -> Result<InstancePre<T>> {
809         typecheck(module, &items, |cx, ty, item| cx.definition(ty, &item.ty()))?;
810 
811         let mut func_refs = vec![];
812         let mut host_funcs = 0;
813         for item in &items {
814             match item {
815                 Definition::Extern(_, _) => {}
816                 Definition::HostFunc(f) => {
817                     host_funcs += 1;
818                     if f.func_ref().wasm_call.is_none() {
819                         // `f` needs its `VMFuncRef::wasm_call` patched with a
820                         // Wasm-to-native trampoline.
821                         debug_assert!(matches!(f.host_ctx(), crate::HostContext::Array(_)));
822                         func_refs.push(VMFuncRef {
823                             wasm_call: module.wasm_to_array_trampoline(f.sig_index()),
824                             ..*f.func_ref()
825                         });
826                     }
827                 }
828             }
829         }
830 
831         Ok(InstancePre {
832             module: module.clone(),
833             items: items.into(),
834             host_funcs,
835             func_refs: func_refs.into(),
836             _marker: core::marker::PhantomData,
837         })
838     }
839 
840     /// Returns a reference to the module that this [`InstancePre`] will be
841     /// instantiating.
842     pub fn module(&self) -> &Module {
843         &self.module
844     }
845 
846     /// Instantiates this instance, creating a new instance within the provided
847     /// `store`.
848     ///
849     /// This function will run the actual process of instantiation to
850     /// completion. This will use all of the previously-closed-over items as
851     /// imports to instantiate the module that this was originally created with.
852     ///
853     /// For more information about instantiation see [`Instance::new`].
854     ///
855     /// # Panics
856     ///
857     /// Panics if any import closed over by this [`InstancePre`] isn't owned by
858     /// `store`, or if `store` has async support enabled. Additionally this
859     /// function will panic if the `store` provided comes from a different
860     /// [`Engine`] than the [`InstancePre`] originally came from.
861     pub fn instantiate(&self, mut store: impl AsContextMut<Data = T>) -> Result<Instance> {
862         let mut store = store.as_context_mut();
863         let imports = pre_instantiate_raw(
864             &mut store.0,
865             &self.module,
866             &self.items,
867             self.host_funcs,
868             &self.func_refs,
869         )?;
870 
871         // This unsafety should be handled by the type-checking performed by the
872         // constructor of `InstancePre` to assert that all the imports we're passing
873         // in match the module we're instantiating.
874         unsafe { Instance::new_started(&mut store, &self.module, imports.as_ref()) }
875     }
876 
877     /// Creates a new instance, running the start function asynchronously
878     /// instead of inline.
879     ///
880     /// For more information about asynchronous instantiation see the
881     /// documentation on [`Instance::new_async`].
882     ///
883     /// # Panics
884     ///
885     /// Panics if any import closed over by this [`InstancePre`] isn't owned by
886     /// `store`, or if `store` does not have async support enabled.
887     #[cfg(feature = "async")]
888     pub async fn instantiate_async(
889         &self,
890         mut store: impl AsContextMut<Data = T>,
891     ) -> Result<Instance>
892     where
893         T: Send,
894     {
895         let mut store = store.as_context_mut();
896         let imports = pre_instantiate_raw(
897             &mut store.0,
898             &self.module,
899             &self.items,
900             self.host_funcs,
901             &self.func_refs,
902         )?;
903 
904         // This unsafety should be handled by the type-checking performed by the
905         // constructor of `InstancePre` to assert that all the imports we're passing
906         // in match the module we're instantiating.
907         unsafe { Instance::new_started_async(&mut store, &self.module, imports.as_ref()).await }
908     }
909 }
910 
911 /// Helper function shared between
912 /// `InstancePre::{instantiate,instantiate_async}`
913 ///
914 /// This is an out-of-line function to avoid the generic on `InstancePre` and
915 /// get this compiled into the `wasmtime` crate to avoid having it monomorphized
916 /// elsewhere.
917 fn pre_instantiate_raw(
918     store: &mut StoreOpaque,
919     module: &Module,
920     items: &Arc<[Definition]>,
921     host_funcs: usize,
922     func_refs: &Arc<[VMFuncRef]>,
923 ) -> Result<OwnedImports> {
924     if host_funcs > 0 {
925         // Any linker-defined function of the `Definition::HostFunc` variant
926         // will insert a function into the store automatically as part of
927         // instantiation, so reserve space here to make insertion more efficient
928         // as it won't have to realloc during the instantiation.
929         store.store_data_mut().reserve_funcs(host_funcs);
930 
931         // The usage of `to_extern_store_rooted` requires that the items are
932         // rooted via another means, which happens here by cloning the list of
933         // items into the store once. This avoids cloning each individual item
934         // below.
935         store.push_rooted_funcs(items.clone());
936         store.push_instance_pre_func_refs(func_refs.clone());
937     }
938 
939     let mut func_refs = func_refs.iter().map(|f| NonNull::from(f));
940     let mut imports = OwnedImports::new(module);
941     for import in items.iter() {
942         if !import.comes_from_same_store(store) {
943             bail!("cross-`Store` instantiation is not currently supported");
944         }
945         // This unsafety should be encapsulated in the constructor of
946         // `InstancePre` where the `T` of the original item should match the
947         // `T` of the store. Additionally the rooting necessary has happened
948         // above.
949         let item = match import {
950             Definition::Extern(e, _) => e.clone(),
951             Definition::HostFunc(func) => unsafe {
952                 func.to_func_store_rooted(
953                     store,
954                     if func.func_ref().wasm_call.is_none() {
955                         Some(func_refs.next().unwrap())
956                     } else {
957                         None
958                     },
959                 )
960                 .into()
961             },
962         };
963         imports.push(&item, store, module);
964     }
965 
966     Ok(imports)
967 }
968 
969 fn typecheck<I>(
970     module: &Module,
971     import_args: &[I],
972     check: impl Fn(&matching::MatchCx<'_>, &EntityType, &I) -> Result<()>,
973 ) -> Result<()> {
974     let env_module = module.compiled_module().module();
975     let expected_len = env_module.imports().count();
976     let actual_len = import_args.len();
977     if expected_len != actual_len {
978         bail!("expected {expected_len} imports, found {actual_len}");
979     }
980     let cx = matching::MatchCx::new(module.engine());
981     for ((name, field, mut expected_ty), actual) in env_module.imports().zip(import_args) {
982         expected_ty.canonicalize_for_runtime_usage(&mut |module_index| {
983             module.signatures().shared_type(module_index).unwrap()
984         });
985 
986         check(&cx, &expected_ty, actual)
987             .with_context(|| format!("incompatible import type for `{name}::{field}`"))?;
988     }
989     Ok(())
990 }
991