[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types - #94787

Merged
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods
Dec 7, 2023
Merged

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types#94787
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods

Conversation

@kotlarmilos

Copy link
Copy Markdown
Member

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes#94467

…haredvt ref arguments if it is a nullable vtype.
@ghost

Copy link
Copy Markdown

Tagging subscribers to 'os-ios': @steveisok, @akoeplinger, @kotlarmilos
See info in area-owners.md if you want to be subscribed.

Issue Details

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes #94467

Author:kotlarmilos
Assignees:kotlarmilos
Labels:

area-Codegen-AOT-mono, os-ios

Milestone:9.0.0

Comment threadsrc/mono/mono/mini/jit-icalls.c Outdated
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
if (deref_args [i])
// If the argument is a ref or nullable non-vtype, deref it

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@vargaz Please confirm this is correct.

@BrzVladBrzVladNov 27, 2023

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args? Also isn't deref_args supposed to be set only for valuetype args, why the check below?

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is there a testcase which fails for this case ?

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The case we want handle here is handler.Test<bool?>(true);.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args?

Yes, this information already known at the callsite:

if(mini_is_gsharedvt_type(fsig->params[i])){MonoInst*is_deref;intderef_arg_reg;ins=mini_emit_get_gsharedvt_info_klass(cfg,mono_class_from_mono_type_internal(fsig->params[i]),MONO_RGCTX_INFO_CLASS_BOX_TYPE);deref_arg_reg=alloc_preg(cfg);/* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */EMIT_NEW_BIALU_IMM(cfg,is_deref,OP_ISUB_IMM,deref_arg_reg,ins->dreg,1);MONO_EMIT_NEW_STORE_MEMBASE(cfg,OP_STOREI1_MEMBASE_REG,is_gsharedvt_ins->dreg,i,is_deref->dreg);}

Also isn't deref_args supposed to be set only for valuetype args, why the check below?

It appears that an argument is being dereferenced if the BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE. However, if the argument is a nullable value type, deref_args [i] is set because mono_class_is_nullable is checked first:

if(MONO_TYPE_IS_REFERENCE(m_class_get_byval_arg(impl_class)))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_REF);elseif(mono_class_is_nullable(impl_class))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_NULLABLE);elsereturnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_VTYPE);

Then, during runtime, a nullable value type is dereferenced, leading to a runtime crash. Perhaps this check (if not nullable vtype) can be moved to the handle_constrained_gsharedvt_call, which might result in larger codegen.

Is there a testcase which fails for this case ?

The fullAOT tests are not currently running on the CI. Once the job is enabled, we will check if this case is already covered. If it is not covered, we will add a runtime test. You can currently verify this by using the following sample: #94467 (comment).

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Would suggest this fix instead:

diff --git a/src/mono/mono/mini/jit-icalls.c b/src/mono/mono/mini/jit-icalls.c
index 21f3252c814..442cb9a65aa 100644
--- a/src/mono/mono/mini/jit-icalls.c
+++ b/src/mono/mono/mini/jit-icalls.c
@@ -1482,7 +1482,7 @@ mono_gsharedvt_constrained_call (gpointer mp, MonoMethod *cmethod, MonoClass *kl
g_assert (fsig->param_count < 16);
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
- if (deref_args [i])
+ if (deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_VTYPE && deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_NULLABLE)
new_args [i] = *(gpointer*)new_args [i];
}
args = new_args;
diff --git a/src/mono/mono/mini/method-to-ir.c b/src/mono/mono/mini/method-to-ir.c
index 99a11126b62..1f359e31cc6 100644
--- a/src/mono/mono/mini/method-to-ir.c
+++ b/src/mono/mono/mini/method-to-ir.c
@@ -3896,13 +3896,8 @@ handle_constrained_gsharedvt_call (MonoCompile *cfg, MonoMethod *cmethod, MonoMe
int addr_reg;
if (mini_is_gsharedvt_type (fsig->params [i])) {
- MonoInst *is_deref;
- int deref_arg_reg;
ins = mini_emit_get_gsharedvt_info_klass (cfg, mono_class_from_mono_type_internal (fsig->params [i]), MONO_RGCTX_INFO_CLASS_BOX_TYPE);
- deref_arg_reg = alloc_preg (cfg);
- /* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */
- EMIT_NEW_BIALU_IMM (cfg, is_deref, OP_ISUB_IMM, deref_arg_reg, ins->dreg, 1);
- MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, is_deref->dreg);
+ MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, ins->dreg);
} else if (has_gsharedvt) {
MONO_EMIT_NEW_STORE_MEMBASE_IMM (cfg, OP_STOREI1_MEMBASE_IMM, is_gsharedvt_ins->dreg, i, 0);
}

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/7140806171

@vargaz

Copy link
Copy Markdown
Contributor

Would be nice to have some CI tests before a backport.

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

Agreed. Postponing this backport until we enable fullAOT CI tests: #92057.

@kotlarmiloskotlarmilos added the blocked Issue/PR is blocked on something - see comments label Dec 8, 2023
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Jan 8, 2024
@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actionsgithub-actionsBot unlocked this conversation Apr 24, 2024
@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/8815796126

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos backporting to release/8.0-staging failed, the patch most likely resulted in conflicts:

$ git am --3way --ignore-whitespace --keep-non-patch changes.patch
Applying: [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
Using index info to reconstruct a base tree...
M	src/mono/mono/mini/jit-icalls.c
Falling back to patching base and 3-way merge...
Auto-merging src/mono/mono/mini/jit-icalls.c
CONFLICT (content): Merge conflict in src/mono/mono/mini/jit-icalls.c
error: Failed to merge in the changes.
hint: Use 'git am --show-current-patch=diff' to see the failed patch
Patch failed at 0001 [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
When you have resolved this problem, run "git am --continue".
If you prefer to skip this patch, run "git am --skip" instead.
To restore the original branch and stop patching, run "git am --abort".
Error: The process '/usr/bin/git' failed with exit code 128

Please backport manually!

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos an error occurred while backporting to release/8.0-staging, please check the run log for details!

Error: git am failed, most likely due to a merge conflict.

@github-actionsgithub-actionsBot locked as resolved and limited conversation to collaborators Apr 24, 2024
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

area-Codegen-AOT-monoblockedIssue/PR is blocked on something - see commentsos-iosApple iOS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[net8.0-ios] App crashes on ios device when calling static abstract generic interface method in a sealed class

3 participants

@kotlarmilos@vargaz@BrzVlad
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Add copy buttons to all
 blocks\n(function() {\n function addCopyButtons() {\n document.querySelectorAll('pre code').forEach(function(codeBlock) {\n if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;\n codeBlock.parentElement.setAttribute('data-copy-added', 'true');\n \n var btn = document.createElement('button');\n btn.textContent = 'Copy';\n btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';\n btn.onmouseover = function() { this.style.opacity = '1'; };\n btn.onmouseout = function() { this.style.opacity = '0.7'; };\n btn.onclick = function() {\n navigator.clipboard.writeText(codeBlock.textContent).then(function() {\n btn.textContent = 'Copied!';\n setTimeout(function() { btn.textContent = 'Copy'; }, 1500);\n });\n };\n codeBlock.parentElement.style.position = 'relative';\n codeBlock.parentElement.appendChild(btn);\n });\n }\n \n addCopyButtons();\n \n // Re-run on dynamic content\n var observer = new MutationObserver(addCopyButtons);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Add Copy Buttons to Code Blocks");
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
Skip to content

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types - #94787

Merged
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods
Dec 7, 2023
Merged

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types#94787
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods

Conversation

@kotlarmilos

Copy link
Copy Markdown
Member

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes#94467

…haredvt ref arguments if it is a nullable vtype.
@ghost

Copy link
Copy Markdown

Tagging subscribers to 'os-ios': @steveisok, @akoeplinger, @kotlarmilos
See info in area-owners.md if you want to be subscribed.

Issue Details

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes #94467

Author:kotlarmilos
Assignees:kotlarmilos
Labels:

area-Codegen-AOT-mono, os-ios

Milestone:9.0.0

Comment threadsrc/mono/mono/mini/jit-icalls.c Outdated
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
if (deref_args [i])
// If the argument is a ref or nullable non-vtype, deref it

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@vargaz Please confirm this is correct.

@BrzVladBrzVladNov 27, 2023

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args? Also isn't deref_args supposed to be set only for valuetype args, why the check below?

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is there a testcase which fails for this case ?

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The case we want handle here is handler.Test<bool?>(true);.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args?

Yes, this information already known at the callsite:

if(mini_is_gsharedvt_type(fsig->params[i])){MonoInst*is_deref;intderef_arg_reg;ins=mini_emit_get_gsharedvt_info_klass(cfg,mono_class_from_mono_type_internal(fsig->params[i]),MONO_RGCTX_INFO_CLASS_BOX_TYPE);deref_arg_reg=alloc_preg(cfg);/* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */EMIT_NEW_BIALU_IMM(cfg,is_deref,OP_ISUB_IMM,deref_arg_reg,ins->dreg,1);MONO_EMIT_NEW_STORE_MEMBASE(cfg,OP_STOREI1_MEMBASE_REG,is_gsharedvt_ins->dreg,i,is_deref->dreg);}

Also isn't deref_args supposed to be set only for valuetype args, why the check below?

It appears that an argument is being dereferenced if the BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE. However, if the argument is a nullable value type, deref_args [i] is set because mono_class_is_nullable is checked first:

if(MONO_TYPE_IS_REFERENCE(m_class_get_byval_arg(impl_class)))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_REF);elseif(mono_class_is_nullable(impl_class))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_NULLABLE);elsereturnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_VTYPE);

Then, during runtime, a nullable value type is dereferenced, leading to a runtime crash. Perhaps this check (if not nullable vtype) can be moved to the handle_constrained_gsharedvt_call, which might result in larger codegen.

Is there a testcase which fails for this case ?

The fullAOT tests are not currently running on the CI. Once the job is enabled, we will check if this case is already covered. If it is not covered, we will add a runtime test. You can currently verify this by using the following sample: #94467 (comment).

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Would suggest this fix instead:

diff --git a/src/mono/mono/mini/jit-icalls.c b/src/mono/mono/mini/jit-icalls.c
index 21f3252c814..442cb9a65aa 100644
--- a/src/mono/mono/mini/jit-icalls.c
+++ b/src/mono/mono/mini/jit-icalls.c
@@ -1482,7 +1482,7 @@ mono_gsharedvt_constrained_call (gpointer mp, MonoMethod *cmethod, MonoClass *kl
g_assert (fsig->param_count < 16);
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
- if (deref_args [i])
+ if (deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_VTYPE && deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_NULLABLE)
new_args [i] = *(gpointer*)new_args [i];
}
args = new_args;
diff --git a/src/mono/mono/mini/method-to-ir.c b/src/mono/mono/mini/method-to-ir.c
index 99a11126b62..1f359e31cc6 100644
--- a/src/mono/mono/mini/method-to-ir.c
+++ b/src/mono/mono/mini/method-to-ir.c
@@ -3896,13 +3896,8 @@ handle_constrained_gsharedvt_call (MonoCompile *cfg, MonoMethod *cmethod, MonoMe
int addr_reg;
if (mini_is_gsharedvt_type (fsig->params [i])) {
- MonoInst *is_deref;
- int deref_arg_reg;
ins = mini_emit_get_gsharedvt_info_klass (cfg, mono_class_from_mono_type_internal (fsig->params [i]), MONO_RGCTX_INFO_CLASS_BOX_TYPE);
- deref_arg_reg = alloc_preg (cfg);
- /* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */
- EMIT_NEW_BIALU_IMM (cfg, is_deref, OP_ISUB_IMM, deref_arg_reg, ins->dreg, 1);
- MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, is_deref->dreg);
+ MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, ins->dreg);
} else if (has_gsharedvt) {
MONO_EMIT_NEW_STORE_MEMBASE_IMM (cfg, OP_STOREI1_MEMBASE_IMM, is_gsharedvt_ins->dreg, i, 0);
}

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/7140806171

@vargaz

Copy link
Copy Markdown
Contributor

Would be nice to have some CI tests before a backport.

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

Agreed. Postponing this backport until we enable fullAOT CI tests: #92057.

@kotlarmiloskotlarmilos added the blocked Issue/PR is blocked on something - see comments label Dec 8, 2023
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Jan 8, 2024
@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actionsgithub-actionsBot unlocked this conversation Apr 24, 2024
@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/8815796126

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos backporting to release/8.0-staging failed, the patch most likely resulted in conflicts:

$ git am --3way --ignore-whitespace --keep-non-patch changes.patch
Applying: [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
Using index info to reconstruct a base tree...
M	src/mono/mono/mini/jit-icalls.c
Falling back to patching base and 3-way merge...
Auto-merging src/mono/mono/mini/jit-icalls.c
CONFLICT (content): Merge conflict in src/mono/mono/mini/jit-icalls.c
error: Failed to merge in the changes.
hint: Use 'git am --show-current-patch=diff' to see the failed patch
Patch failed at 0001 [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
When you have resolved this problem, run "git am --continue".
If you prefer to skip this patch, run "git am --skip" instead.
To restore the original branch and stop patching, run "git am --abort".
Error: The process '/usr/bin/git' failed with exit code 128

Please backport manually!

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos an error occurred while backporting to release/8.0-staging, please check the run log for details!

Error: git am failed, most likely due to a merge conflict.

@github-actionsgithub-actionsBot locked as resolved and limited conversation to collaborators Apr 24, 2024
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

area-Codegen-AOT-monoblockedIssue/PR is blocked on something - see commentsos-iosApple iOS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[net8.0-ios] App crashes on ios device when calling static abstract generic interface method in a sealed class

3 participants

@kotlarmilos@vargaz@BrzVlad
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Force GitHub README to respect dark mode\n(function() {\n var style = document.createElement('style');\n style.textContent = '\n .markdown-body {\n color-scheme: dark light;\n }\n .markdown-body pre { background: #161b22 !important; }\n .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; }\n .markdown-body table th, .markdown-body table td { border-color: #30363d !important; }\n .markdown-body img { background: #0d1117; }\n .markdown-body blockquote { border-left-color: #8b949e; }\n .markdown-body hr { border-color: #30363d; }\n ';\n document.head.appendChild(style);\n})();", "GitHub Dark Mode README Fix"); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types - #94787

Merged
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods
Dec 7, 2023
Merged

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types#94787
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods

Conversation

@kotlarmilos

Copy link
Copy Markdown
Member

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes#94467

…haredvt ref arguments if it is a nullable vtype.
@ghost

Copy link
Copy Markdown

Tagging subscribers to 'os-ios': @steveisok, @akoeplinger, @kotlarmilos
See info in area-owners.md if you want to be subscribed.

Issue Details

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes #94467

Author:kotlarmilos
Assignees:kotlarmilos
Labels:

area-Codegen-AOT-mono, os-ios

Milestone:9.0.0

Comment threadsrc/mono/mono/mini/jit-icalls.c Outdated
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
if (deref_args [i])
// If the argument is a ref or nullable non-vtype, deref it

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@vargaz Please confirm this is correct.

@BrzVladBrzVladNov 27, 2023

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args? Also isn't deref_args supposed to be set only for valuetype args, why the check below?

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is there a testcase which fails for this case ?

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The case we want handle here is handler.Test<bool?>(true);.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args?

Yes, this information already known at the callsite:

if(mini_is_gsharedvt_type(fsig->params[i])){MonoInst*is_deref;intderef_arg_reg;ins=mini_emit_get_gsharedvt_info_klass(cfg,mono_class_from_mono_type_internal(fsig->params[i]),MONO_RGCTX_INFO_CLASS_BOX_TYPE);deref_arg_reg=alloc_preg(cfg);/* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */EMIT_NEW_BIALU_IMM(cfg,is_deref,OP_ISUB_IMM,deref_arg_reg,ins->dreg,1);MONO_EMIT_NEW_STORE_MEMBASE(cfg,OP_STOREI1_MEMBASE_REG,is_gsharedvt_ins->dreg,i,is_deref->dreg);}

Also isn't deref_args supposed to be set only for valuetype args, why the check below?

It appears that an argument is being dereferenced if the BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE. However, if the argument is a nullable value type, deref_args [i] is set because mono_class_is_nullable is checked first:

if(MONO_TYPE_IS_REFERENCE(m_class_get_byval_arg(impl_class)))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_REF);elseif(mono_class_is_nullable(impl_class))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_NULLABLE);elsereturnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_VTYPE);

Then, during runtime, a nullable value type is dereferenced, leading to a runtime crash. Perhaps this check (if not nullable vtype) can be moved to the handle_constrained_gsharedvt_call, which might result in larger codegen.

Is there a testcase which fails for this case ?

The fullAOT tests are not currently running on the CI. Once the job is enabled, we will check if this case is already covered. If it is not covered, we will add a runtime test. You can currently verify this by using the following sample: #94467 (comment).

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Would suggest this fix instead:

diff --git a/src/mono/mono/mini/jit-icalls.c b/src/mono/mono/mini/jit-icalls.c
index 21f3252c814..442cb9a65aa 100644
--- a/src/mono/mono/mini/jit-icalls.c
+++ b/src/mono/mono/mini/jit-icalls.c
@@ -1482,7 +1482,7 @@ mono_gsharedvt_constrained_call (gpointer mp, MonoMethod *cmethod, MonoClass *kl
g_assert (fsig->param_count < 16);
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
- if (deref_args [i])
+ if (deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_VTYPE && deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_NULLABLE)
new_args [i] = *(gpointer*)new_args [i];
}
args = new_args;
diff --git a/src/mono/mono/mini/method-to-ir.c b/src/mono/mono/mini/method-to-ir.c
index 99a11126b62..1f359e31cc6 100644
--- a/src/mono/mono/mini/method-to-ir.c
+++ b/src/mono/mono/mini/method-to-ir.c
@@ -3896,13 +3896,8 @@ handle_constrained_gsharedvt_call (MonoCompile *cfg, MonoMethod *cmethod, MonoMe
int addr_reg;
if (mini_is_gsharedvt_type (fsig->params [i])) {
- MonoInst *is_deref;
- int deref_arg_reg;
ins = mini_emit_get_gsharedvt_info_klass (cfg, mono_class_from_mono_type_internal (fsig->params [i]), MONO_RGCTX_INFO_CLASS_BOX_TYPE);
- deref_arg_reg = alloc_preg (cfg);
- /* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */
- EMIT_NEW_BIALU_IMM (cfg, is_deref, OP_ISUB_IMM, deref_arg_reg, ins->dreg, 1);
- MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, is_deref->dreg);
+ MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, ins->dreg);
} else if (has_gsharedvt) {
MONO_EMIT_NEW_STORE_MEMBASE_IMM (cfg, OP_STOREI1_MEMBASE_IMM, is_gsharedvt_ins->dreg, i, 0);
}

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/7140806171

@vargaz

Copy link
Copy Markdown
Contributor

Would be nice to have some CI tests before a backport.

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

Agreed. Postponing this backport until we enable fullAOT CI tests: #92057.

@kotlarmiloskotlarmilos added the blocked Issue/PR is blocked on something - see comments label Dec 8, 2023
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Jan 8, 2024
@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actionsgithub-actionsBot unlocked this conversation Apr 24, 2024
@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/8815796126

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos backporting to release/8.0-staging failed, the patch most likely resulted in conflicts:

$ git am --3way --ignore-whitespace --keep-non-patch changes.patch
Applying: [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
Using index info to reconstruct a base tree...
M	src/mono/mono/mini/jit-icalls.c
Falling back to patching base and 3-way merge...
Auto-merging src/mono/mono/mini/jit-icalls.c
CONFLICT (content): Merge conflict in src/mono/mono/mini/jit-icalls.c
error: Failed to merge in the changes.
hint: Use 'git am --show-current-patch=diff' to see the failed patch
Patch failed at 0001 [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
When you have resolved this problem, run "git am --continue".
If you prefer to skip this patch, run "git am --skip" instead.
To restore the original branch and stop patching, run "git am --abort".
Error: The process '/usr/bin/git' failed with exit code 128

Please backport manually!

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos an error occurred while backporting to release/8.0-staging, please check the run log for details!

Error: git am failed, most likely due to a merge conflict.

@github-actionsgithub-actionsBot locked as resolved and limited conversation to collaborators Apr 24, 2024
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

area-Codegen-AOT-monoblockedIssue/PR is blocked on something - see commentsos-iosApple iOS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[net8.0-ios] App crashes on ios device when calling static abstract generic interface method in a sealed class

3 participants

@kotlarmilos@vargaz@BrzVlad
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Highlight search terms from Google/DuckDuckGo/Bing referrer\n(function() {\n var ref = document.referrer;\n var terms = [];\n \n if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) {\n var url = new URL(ref);\n var q = url.searchParams.get('q') || url.searchParams.get('p');\n if (q) {\n terms = q.split(/\\s+/).filter(function(t) { return t.length > 2; });\n }\n }\n \n if (terms.length === 0) return;\n \n var style = document.createElement('style');\n style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }';\n document.head.appendChild(style);\n \n function highlight(node) {\n if (node.nodeType === 3) { // text node\n var text = node.textContent;\n var found = false;\n terms.forEach(function(term) {\n var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\\]\\\\]/g, '\\\\') + ')', 'gi');\n if (regex.test(text)) {\n found = true;\n var frag = document.createDocumentFragment();\n var parts = text.split(regex);\n parts.forEach(function(part, i) {\n if (i % 2 === 0) {\n frag.appendChild(document.createTextNode(part));\n } else {\n var span = document.createElement('span');\n span.className = 'userscript-highlight';\n span.textContent = part;\n frag.appendChild(span);\n }\n });\n node.parentNode.replaceChild(frag, node);\n }\n });\n } else if (node.nodeType === 1 && node.childNodes) { // element\n var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT'];\n if (!skipTags.includes(node.tagName)) {\n Array.from(node.childNodes).forEach(highlight);\n }\n }\n }\n \n highlight(document.body);\n \n // Re-highlight on dynamic content\n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1 || node.nodeType === 3) highlight(node);\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Highlight Search Terms"); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types - #94787

Merged
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods
Dec 7, 2023
Merged

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types#94787
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods

Conversation

@kotlarmilos

Copy link
Copy Markdown
Member

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes#94467

…haredvt ref arguments if it is a nullable vtype.
@ghost

Copy link
Copy Markdown

Tagging subscribers to 'os-ios': @steveisok, @akoeplinger, @kotlarmilos
See info in area-owners.md if you want to be subscribed.

Issue Details

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes #94467

Author:kotlarmilos
Assignees:kotlarmilos
Labels:

area-Codegen-AOT-mono, os-ios

Milestone:9.0.0

Comment threadsrc/mono/mono/mini/jit-icalls.c Outdated
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
if (deref_args [i])
// If the argument is a ref or nullable non-vtype, deref it

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@vargaz Please confirm this is correct.

@BrzVladBrzVladNov 27, 2023

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args? Also isn't deref_args supposed to be set only for valuetype args, why the check below?

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is there a testcase which fails for this case ?

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The case we want handle here is handler.Test<bool?>(true);.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args?

Yes, this information already known at the callsite:

if(mini_is_gsharedvt_type(fsig->params[i])){MonoInst*is_deref;intderef_arg_reg;ins=mini_emit_get_gsharedvt_info_klass(cfg,mono_class_from_mono_type_internal(fsig->params[i]),MONO_RGCTX_INFO_CLASS_BOX_TYPE);deref_arg_reg=alloc_preg(cfg);/* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */EMIT_NEW_BIALU_IMM(cfg,is_deref,OP_ISUB_IMM,deref_arg_reg,ins->dreg,1);MONO_EMIT_NEW_STORE_MEMBASE(cfg,OP_STOREI1_MEMBASE_REG,is_gsharedvt_ins->dreg,i,is_deref->dreg);}

Also isn't deref_args supposed to be set only for valuetype args, why the check below?

It appears that an argument is being dereferenced if the BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE. However, if the argument is a nullable value type, deref_args [i] is set because mono_class_is_nullable is checked first:

if(MONO_TYPE_IS_REFERENCE(m_class_get_byval_arg(impl_class)))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_REF);elseif(mono_class_is_nullable(impl_class))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_NULLABLE);elsereturnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_VTYPE);

Then, during runtime, a nullable value type is dereferenced, leading to a runtime crash. Perhaps this check (if not nullable vtype) can be moved to the handle_constrained_gsharedvt_call, which might result in larger codegen.

Is there a testcase which fails for this case ?

The fullAOT tests are not currently running on the CI. Once the job is enabled, we will check if this case is already covered. If it is not covered, we will add a runtime test. You can currently verify this by using the following sample: #94467 (comment).

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Would suggest this fix instead:

diff --git a/src/mono/mono/mini/jit-icalls.c b/src/mono/mono/mini/jit-icalls.c
index 21f3252c814..442cb9a65aa 100644
--- a/src/mono/mono/mini/jit-icalls.c
+++ b/src/mono/mono/mini/jit-icalls.c
@@ -1482,7 +1482,7 @@ mono_gsharedvt_constrained_call (gpointer mp, MonoMethod *cmethod, MonoClass *kl
g_assert (fsig->param_count < 16);
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
- if (deref_args [i])
+ if (deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_VTYPE && deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_NULLABLE)
new_args [i] = *(gpointer*)new_args [i];
}
args = new_args;
diff --git a/src/mono/mono/mini/method-to-ir.c b/src/mono/mono/mini/method-to-ir.c
index 99a11126b62..1f359e31cc6 100644
--- a/src/mono/mono/mini/method-to-ir.c
+++ b/src/mono/mono/mini/method-to-ir.c
@@ -3896,13 +3896,8 @@ handle_constrained_gsharedvt_call (MonoCompile *cfg, MonoMethod *cmethod, MonoMe
int addr_reg;
if (mini_is_gsharedvt_type (fsig->params [i])) {
- MonoInst *is_deref;
- int deref_arg_reg;
ins = mini_emit_get_gsharedvt_info_klass (cfg, mono_class_from_mono_type_internal (fsig->params [i]), MONO_RGCTX_INFO_CLASS_BOX_TYPE);
- deref_arg_reg = alloc_preg (cfg);
- /* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */
- EMIT_NEW_BIALU_IMM (cfg, is_deref, OP_ISUB_IMM, deref_arg_reg, ins->dreg, 1);
- MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, is_deref->dreg);
+ MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, ins->dreg);
} else if (has_gsharedvt) {
MONO_EMIT_NEW_STORE_MEMBASE_IMM (cfg, OP_STOREI1_MEMBASE_IMM, is_gsharedvt_ins->dreg, i, 0);
}

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/7140806171

@vargaz

Copy link
Copy Markdown
Contributor

Would be nice to have some CI tests before a backport.

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

Agreed. Postponing this backport until we enable fullAOT CI tests: #92057.

@kotlarmiloskotlarmilos added the blocked Issue/PR is blocked on something - see comments label Dec 8, 2023
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Jan 8, 2024
@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actionsgithub-actionsBot unlocked this conversation Apr 24, 2024
@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/8815796126

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos backporting to release/8.0-staging failed, the patch most likely resulted in conflicts:

$ git am --3way --ignore-whitespace --keep-non-patch changes.patch
Applying: [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
Using index info to reconstruct a base tree...
M	src/mono/mono/mini/jit-icalls.c
Falling back to patching base and 3-way merge...
Auto-merging src/mono/mono/mini/jit-icalls.c
CONFLICT (content): Merge conflict in src/mono/mono/mini/jit-icalls.c
error: Failed to merge in the changes.
hint: Use 'git am --show-current-patch=diff' to see the failed patch
Patch failed at 0001 [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
When you have resolved this problem, run "git am --continue".
If you prefer to skip this patch, run "git am --skip" instead.
To restore the original branch and stop patching, run "git am --abort".
Error: The process '/usr/bin/git' failed with exit code 128

Please backport manually!

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos an error occurred while backporting to release/8.0-staging, please check the run log for details!

Error: git am failed, most likely due to a merge conflict.

@github-actionsgithub-actionsBot locked as resolved and limited conversation to collaborators Apr 24, 2024
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

area-Codegen-AOT-monoblockedIssue/PR is blocked on something - see commentsos-iosApple iOS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[net8.0-ios] App crashes on ios device when calling static abstract generic interface method in a sealed class

3 participants

@kotlarmilos@vargaz@BrzVlad
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Strip utm_, fbclid, gclid, etc. from all links on page\n(function() {\n var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content',\n 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid',\n 'ref', 'ref_src', 'source', 'medium', 'campaign'];\n \n function cleanUrl(url) {\n try {\n var u = new URL(url, window.location.origin);\n var changed = false;\n trackingParams.forEach(function(p) {\n if (u.searchParams.has(p)) {\n u.searchParams.delete(p);\n changed = true;\n }\n });\n return changed ? u.toString() : url;\n } catch (e) {\n return url;\n }\n }\n \n function cleanLinks() {\n document.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n \n cleanLinks();\n \n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1) {\n if (node.tagName === 'A') cleanLinks();\n node.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Remove Tracking Parameters from Links"); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + '
Skip to content

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types - #94787

Merged
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods
Dec 7, 2023
Merged

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types#94787
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods

Conversation

@kotlarmilos

Copy link
Copy Markdown
Member

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes#94467

…haredvt ref arguments if it is a nullable vtype.
@ghost

Copy link
Copy Markdown

Tagging subscribers to 'os-ios': @steveisok, @akoeplinger, @kotlarmilos
See info in area-owners.md if you want to be subscribed.

Issue Details

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes #94467

Author:kotlarmilos
Assignees:kotlarmilos
Labels:

area-Codegen-AOT-mono, os-ios

Milestone:9.0.0

Comment threadsrc/mono/mono/mini/jit-icalls.c Outdated
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
if (deref_args [i])
// If the argument is a ref or nullable non-vtype, deref it

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@vargaz Please confirm this is correct.

@BrzVladBrzVladNov 27, 2023

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args? Also isn't deref_args supposed to be set only for valuetype args, why the check below?

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is there a testcase which fails for this case ?

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The case we want handle here is handler.Test<bool?>(true);.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args?

Yes, this information already known at the callsite:

if(mini_is_gsharedvt_type(fsig->params[i])){MonoInst*is_deref;intderef_arg_reg;ins=mini_emit_get_gsharedvt_info_klass(cfg,mono_class_from_mono_type_internal(fsig->params[i]),MONO_RGCTX_INFO_CLASS_BOX_TYPE);deref_arg_reg=alloc_preg(cfg);/* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */EMIT_NEW_BIALU_IMM(cfg,is_deref,OP_ISUB_IMM,deref_arg_reg,ins->dreg,1);MONO_EMIT_NEW_STORE_MEMBASE(cfg,OP_STOREI1_MEMBASE_REG,is_gsharedvt_ins->dreg,i,is_deref->dreg);}

Also isn't deref_args supposed to be set only for valuetype args, why the check below?

It appears that an argument is being dereferenced if the BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE. However, if the argument is a nullable value type, deref_args [i] is set because mono_class_is_nullable is checked first:

if(MONO_TYPE_IS_REFERENCE(m_class_get_byval_arg(impl_class)))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_REF);elseif(mono_class_is_nullable(impl_class))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_NULLABLE);elsereturnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_VTYPE);

Then, during runtime, a nullable value type is dereferenced, leading to a runtime crash. Perhaps this check (if not nullable vtype) can be moved to the handle_constrained_gsharedvt_call, which might result in larger codegen.

Is there a testcase which fails for this case ?

The fullAOT tests are not currently running on the CI. Once the job is enabled, we will check if this case is already covered. If it is not covered, we will add a runtime test. You can currently verify this by using the following sample: #94467 (comment).

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Would suggest this fix instead:

diff --git a/src/mono/mono/mini/jit-icalls.c b/src/mono/mono/mini/jit-icalls.c
index 21f3252c814..442cb9a65aa 100644
--- a/src/mono/mono/mini/jit-icalls.c
+++ b/src/mono/mono/mini/jit-icalls.c
@@ -1482,7 +1482,7 @@ mono_gsharedvt_constrained_call (gpointer mp, MonoMethod *cmethod, MonoClass *kl
g_assert (fsig->param_count < 16);
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
- if (deref_args [i])
+ if (deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_VTYPE && deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_NULLABLE)
new_args [i] = *(gpointer*)new_args [i];
}
args = new_args;
diff --git a/src/mono/mono/mini/method-to-ir.c b/src/mono/mono/mini/method-to-ir.c
index 99a11126b62..1f359e31cc6 100644
--- a/src/mono/mono/mini/method-to-ir.c
+++ b/src/mono/mono/mini/method-to-ir.c
@@ -3896,13 +3896,8 @@ handle_constrained_gsharedvt_call (MonoCompile *cfg, MonoMethod *cmethod, MonoMe
int addr_reg;
if (mini_is_gsharedvt_type (fsig->params [i])) {
- MonoInst *is_deref;
- int deref_arg_reg;
ins = mini_emit_get_gsharedvt_info_klass (cfg, mono_class_from_mono_type_internal (fsig->params [i]), MONO_RGCTX_INFO_CLASS_BOX_TYPE);
- deref_arg_reg = alloc_preg (cfg);
- /* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */
- EMIT_NEW_BIALU_IMM (cfg, is_deref, OP_ISUB_IMM, deref_arg_reg, ins->dreg, 1);
- MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, is_deref->dreg);
+ MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, ins->dreg);
} else if (has_gsharedvt) {
MONO_EMIT_NEW_STORE_MEMBASE_IMM (cfg, OP_STOREI1_MEMBASE_IMM, is_gsharedvt_ins->dreg, i, 0);
}

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/7140806171

@vargaz

Copy link
Copy Markdown
Contributor

Would be nice to have some CI tests before a backport.

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

Agreed. Postponing this backport until we enable fullAOT CI tests: #92057.

@kotlarmiloskotlarmilos added the blocked Issue/PR is blocked on something - see comments label Dec 8, 2023
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Jan 8, 2024
@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actionsgithub-actionsBot unlocked this conversation Apr 24, 2024
@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/8815796126

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos backporting to release/8.0-staging failed, the patch most likely resulted in conflicts:

$ git am --3way --ignore-whitespace --keep-non-patch changes.patch
Applying: [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
Using index info to reconstruct a base tree...
M	src/mono/mono/mini/jit-icalls.c
Falling back to patching base and 3-way merge...
Auto-merging src/mono/mono/mini/jit-icalls.c
CONFLICT (content): Merge conflict in src/mono/mono/mini/jit-icalls.c
error: Failed to merge in the changes.
hint: Use 'git am --show-current-patch=diff' to see the failed patch
Patch failed at 0001 [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
When you have resolved this problem, run "git am --continue".
If you prefer to skip this patch, run "git am --skip" instead.
To restore the original branch and stop patching, run "git am --abort".
Error: The process '/usr/bin/git' failed with exit code 128

Please backport manually!

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos an error occurred while backporting to release/8.0-staging, please check the run log for details!

Error: git am failed, most likely due to a merge conflict.

@github-actionsgithub-actionsBot locked as resolved and limited conversation to collaborators Apr 24, 2024
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

area-Codegen-AOT-monoblockedIssue/PR is blocked on something - see commentsos-iosApple iOS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[net8.0-ios] App crashes on ios device when calling static abstract generic interface method in a sealed class

3 participants

@kotlarmilos@vargaz@BrzVlad
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Auto-enable theater mode on YouTube\n(function() {\n function tryTheater() {\n var btn = document.querySelector('button[aria-label=\"Theater mode\"], ytd-player #player button[title=\"Theater mode\"]');\n if (btn && !btn.classList.contains('activated')) {\n btn.click();\n }\n }\n \n // Try immediately\n tryTheater();\n \n // Try after navigation (SPA)\n var lastUrl = location.href;\n setInterval(function() {\n if (location.href !== lastUrl) {\n lastUrl = location.href;\n setTimeout(tryTheater, 500);\n }\n }, 1000);\n \n // Also try on player load\n var observer = new MutationObserver(tryTheater);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "YouTube Theater Mode Default"); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types - #94787

Merged
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods
Dec 7, 2023
Merged

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types#94787
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods

Conversation

@kotlarmilos

Copy link
Copy Markdown
Member

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes#94467

…haredvt ref arguments if it is a nullable vtype.
@ghost

Copy link
Copy Markdown

Tagging subscribers to 'os-ios': @steveisok, @akoeplinger, @kotlarmilos
See info in area-owners.md if you want to be subscribed.

Issue Details

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes #94467

Author:kotlarmilos
Assignees:kotlarmilos
Labels:

area-Codegen-AOT-mono, os-ios

Milestone:9.0.0

Comment threadsrc/mono/mono/mini/jit-icalls.c Outdated
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
if (deref_args [i])
// If the argument is a ref or nullable non-vtype, deref it

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@vargaz Please confirm this is correct.

@BrzVladBrzVladNov 27, 2023

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args? Also isn't deref_args supposed to be set only for valuetype args, why the check below?

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is there a testcase which fails for this case ?

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The case we want handle here is handler.Test<bool?>(true);.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args?

Yes, this information already known at the callsite:

if(mini_is_gsharedvt_type(fsig->params[i])){MonoInst*is_deref;intderef_arg_reg;ins=mini_emit_get_gsharedvt_info_klass(cfg,mono_class_from_mono_type_internal(fsig->params[i]),MONO_RGCTX_INFO_CLASS_BOX_TYPE);deref_arg_reg=alloc_preg(cfg);/* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */EMIT_NEW_BIALU_IMM(cfg,is_deref,OP_ISUB_IMM,deref_arg_reg,ins->dreg,1);MONO_EMIT_NEW_STORE_MEMBASE(cfg,OP_STOREI1_MEMBASE_REG,is_gsharedvt_ins->dreg,i,is_deref->dreg);}

Also isn't deref_args supposed to be set only for valuetype args, why the check below?

It appears that an argument is being dereferenced if the BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE. However, if the argument is a nullable value type, deref_args [i] is set because mono_class_is_nullable is checked first:

if(MONO_TYPE_IS_REFERENCE(m_class_get_byval_arg(impl_class)))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_REF);elseif(mono_class_is_nullable(impl_class))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_NULLABLE);elsereturnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_VTYPE);

Then, during runtime, a nullable value type is dereferenced, leading to a runtime crash. Perhaps this check (if not nullable vtype) can be moved to the handle_constrained_gsharedvt_call, which might result in larger codegen.

Is there a testcase which fails for this case ?

The fullAOT tests are not currently running on the CI. Once the job is enabled, we will check if this case is already covered. If it is not covered, we will add a runtime test. You can currently verify this by using the following sample: #94467 (comment).

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Would suggest this fix instead:

diff --git a/src/mono/mono/mini/jit-icalls.c b/src/mono/mono/mini/jit-icalls.c
index 21f3252c814..442cb9a65aa 100644
--- a/src/mono/mono/mini/jit-icalls.c
+++ b/src/mono/mono/mini/jit-icalls.c
@@ -1482,7 +1482,7 @@ mono_gsharedvt_constrained_call (gpointer mp, MonoMethod *cmethod, MonoClass *kl
g_assert (fsig->param_count < 16);
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
- if (deref_args [i])
+ if (deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_VTYPE && deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_NULLABLE)
new_args [i] = *(gpointer*)new_args [i];
}
args = new_args;
diff --git a/src/mono/mono/mini/method-to-ir.c b/src/mono/mono/mini/method-to-ir.c
index 99a11126b62..1f359e31cc6 100644
--- a/src/mono/mono/mini/method-to-ir.c
+++ b/src/mono/mono/mini/method-to-ir.c
@@ -3896,13 +3896,8 @@ handle_constrained_gsharedvt_call (MonoCompile *cfg, MonoMethod *cmethod, MonoMe
int addr_reg;
if (mini_is_gsharedvt_type (fsig->params [i])) {
- MonoInst *is_deref;
- int deref_arg_reg;
ins = mini_emit_get_gsharedvt_info_klass (cfg, mono_class_from_mono_type_internal (fsig->params [i]), MONO_RGCTX_INFO_CLASS_BOX_TYPE);
- deref_arg_reg = alloc_preg (cfg);
- /* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */
- EMIT_NEW_BIALU_IMM (cfg, is_deref, OP_ISUB_IMM, deref_arg_reg, ins->dreg, 1);
- MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, is_deref->dreg);
+ MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, ins->dreg);
} else if (has_gsharedvt) {
MONO_EMIT_NEW_STORE_MEMBASE_IMM (cfg, OP_STOREI1_MEMBASE_IMM, is_gsharedvt_ins->dreg, i, 0);
}

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/7140806171

@vargaz

Copy link
Copy Markdown
Contributor

Would be nice to have some CI tests before a backport.

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

Agreed. Postponing this backport until we enable fullAOT CI tests: #92057.

@kotlarmiloskotlarmilos added the blocked Issue/PR is blocked on something - see comments label Dec 8, 2023
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Jan 8, 2024
@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actionsgithub-actionsBot unlocked this conversation Apr 24, 2024
@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/8815796126

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos backporting to release/8.0-staging failed, the patch most likely resulted in conflicts:

$ git am --3way --ignore-whitespace --keep-non-patch changes.patch
Applying: [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
Using index info to reconstruct a base tree...
M	src/mono/mono/mini/jit-icalls.c
Falling back to patching base and 3-way merge...
Auto-merging src/mono/mono/mini/jit-icalls.c
CONFLICT (content): Merge conflict in src/mono/mono/mini/jit-icalls.c
error: Failed to merge in the changes.
hint: Use 'git am --show-current-patch=diff' to see the failed patch
Patch failed at 0001 [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
When you have resolved this problem, run "git am --continue".
If you prefer to skip this patch, run "git am --skip" instead.
To restore the original branch and stop patching, run "git am --abort".
Error: The process '/usr/bin/git' failed with exit code 128

Please backport manually!

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos an error occurred while backporting to release/8.0-staging, please check the run log for details!

Error: git am failed, most likely due to a merge conflict.

@github-actionsgithub-actionsBot locked as resolved and limited conversation to collaborators Apr 24, 2024
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

area-Codegen-AOT-monoblockedIssue/PR is blocked on something - see commentsos-iosApple iOS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[net8.0-ios] App crashes on ios device when calling static abstract generic interface method in a sealed class

3 participants

@kotlarmilos@vargaz@BrzVlad
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Remove or un-stick sticky/fixed headers that block content\n(function() {\n function unstick() {\n document.querySelectorAll('header, nav, [role=\"banner\"], .header, .navbar, .sticky, .fixed-top, [style*=\"position: fixed\"], [style*=\"position:sticky\"]').forEach(function(el) {\n if (el.style.position === 'fixed' || el.style.position === 'sticky' || \n getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') {\n el.style.position = 'static';\n el.style.top = 'auto';\n el.style.zIndex = 'auto';\n }\n });\n }\n \n unstick();\n \n var observer = new MutationObserver(unstick);\n observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] });\n})();", "Kill Sticky Headers"); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types - #94787

Merged
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods
Dec 7, 2023
Merged

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types#94787
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods

Conversation

@kotlarmilos

Copy link
Copy Markdown
Member

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes#94467

…haredvt ref arguments if it is a nullable vtype.
@ghost

Copy link
Copy Markdown

Tagging subscribers to 'os-ios': @steveisok, @akoeplinger, @kotlarmilos
See info in area-owners.md if you want to be subscribed.

Issue Details

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes #94467

Author:kotlarmilos
Assignees:kotlarmilos
Labels:

area-Codegen-AOT-mono, os-ios

Milestone:9.0.0

Comment threadsrc/mono/mono/mini/jit-icalls.c Outdated
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
if (deref_args [i])
// If the argument is a ref or nullable non-vtype, deref it

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@vargaz Please confirm this is correct.

@BrzVladBrzVladNov 27, 2023

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args? Also isn't deref_args supposed to be set only for valuetype args, why the check below?

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is there a testcase which fails for this case ?

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The case we want handle here is handler.Test<bool?>(true);.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args?

Yes, this information already known at the callsite:

if(mini_is_gsharedvt_type(fsig->params[i])){MonoInst*is_deref;intderef_arg_reg;ins=mini_emit_get_gsharedvt_info_klass(cfg,mono_class_from_mono_type_internal(fsig->params[i]),MONO_RGCTX_INFO_CLASS_BOX_TYPE);deref_arg_reg=alloc_preg(cfg);/* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */EMIT_NEW_BIALU_IMM(cfg,is_deref,OP_ISUB_IMM,deref_arg_reg,ins->dreg,1);MONO_EMIT_NEW_STORE_MEMBASE(cfg,OP_STOREI1_MEMBASE_REG,is_gsharedvt_ins->dreg,i,is_deref->dreg);}

Also isn't deref_args supposed to be set only for valuetype args, why the check below?

It appears that an argument is being dereferenced if the BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE. However, if the argument is a nullable value type, deref_args [i] is set because mono_class_is_nullable is checked first:

if(MONO_TYPE_IS_REFERENCE(m_class_get_byval_arg(impl_class)))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_REF);elseif(mono_class_is_nullable(impl_class))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_NULLABLE);elsereturnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_VTYPE);

Then, during runtime, a nullable value type is dereferenced, leading to a runtime crash. Perhaps this check (if not nullable vtype) can be moved to the handle_constrained_gsharedvt_call, which might result in larger codegen.

Is there a testcase which fails for this case ?

The fullAOT tests are not currently running on the CI. Once the job is enabled, we will check if this case is already covered. If it is not covered, we will add a runtime test. You can currently verify this by using the following sample: #94467 (comment).

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Would suggest this fix instead:

diff --git a/src/mono/mono/mini/jit-icalls.c b/src/mono/mono/mini/jit-icalls.c
index 21f3252c814..442cb9a65aa 100644
--- a/src/mono/mono/mini/jit-icalls.c
+++ b/src/mono/mono/mini/jit-icalls.c
@@ -1482,7 +1482,7 @@ mono_gsharedvt_constrained_call (gpointer mp, MonoMethod *cmethod, MonoClass *kl
g_assert (fsig->param_count < 16);
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
- if (deref_args [i])
+ if (deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_VTYPE && deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_NULLABLE)
new_args [i] = *(gpointer*)new_args [i];
}
args = new_args;
diff --git a/src/mono/mono/mini/method-to-ir.c b/src/mono/mono/mini/method-to-ir.c
index 99a11126b62..1f359e31cc6 100644
--- a/src/mono/mono/mini/method-to-ir.c
+++ b/src/mono/mono/mini/method-to-ir.c
@@ -3896,13 +3896,8 @@ handle_constrained_gsharedvt_call (MonoCompile *cfg, MonoMethod *cmethod, MonoMe
int addr_reg;
if (mini_is_gsharedvt_type (fsig->params [i])) {
- MonoInst *is_deref;
- int deref_arg_reg;
ins = mini_emit_get_gsharedvt_info_klass (cfg, mono_class_from_mono_type_internal (fsig->params [i]), MONO_RGCTX_INFO_CLASS_BOX_TYPE);
- deref_arg_reg = alloc_preg (cfg);
- /* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */
- EMIT_NEW_BIALU_IMM (cfg, is_deref, OP_ISUB_IMM, deref_arg_reg, ins->dreg, 1);
- MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, is_deref->dreg);
+ MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, ins->dreg);
} else if (has_gsharedvt) {
MONO_EMIT_NEW_STORE_MEMBASE_IMM (cfg, OP_STOREI1_MEMBASE_IMM, is_gsharedvt_ins->dreg, i, 0);
}

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/7140806171

@vargaz

Copy link
Copy Markdown
Contributor

Would be nice to have some CI tests before a backport.

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

Agreed. Postponing this backport until we enable fullAOT CI tests: #92057.

@kotlarmiloskotlarmilos added the blocked Issue/PR is blocked on something - see comments label Dec 8, 2023
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Jan 8, 2024
@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actionsgithub-actionsBot unlocked this conversation Apr 24, 2024
@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/8815796126

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos backporting to release/8.0-staging failed, the patch most likely resulted in conflicts:

$ git am --3way --ignore-whitespace --keep-non-patch changes.patch
Applying: [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
Using index info to reconstruct a base tree...
M	src/mono/mono/mini/jit-icalls.c
Falling back to patching base and 3-way merge...
Auto-merging src/mono/mono/mini/jit-icalls.c
CONFLICT (content): Merge conflict in src/mono/mono/mini/jit-icalls.c
error: Failed to merge in the changes.
hint: Use 'git am --show-current-patch=diff' to see the failed patch
Patch failed at 0001 [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
When you have resolved this problem, run "git am --continue".
If you prefer to skip this patch, run "git am --skip" instead.
To restore the original branch and stop patching, run "git am --abort".
Error: The process '/usr/bin/git' failed with exit code 128

Please backport manually!

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos an error occurred while backporting to release/8.0-staging, please check the run log for details!

Error: git am failed, most likely due to a merge conflict.

@github-actionsgithub-actionsBot locked as resolved and limited conversation to collaborators Apr 24, 2024
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

area-Codegen-AOT-monoblockedIssue/PR is blocked on something - see commentsos-iosApple iOS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[net8.0-ios] App crashes on ios device when calling static abstract generic interface method in a sealed class

3 participants

@kotlarmilos@vargaz@BrzVlad
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Universal Dark Mode - works on any site\n(function() {\n var enabled = true;\n \n function applyDarkMode() {\n if (!enabled) return;\n \n // Create style element if it doesn't exist\n var style = document.getElementById('universal-dark-mode-style');\n if (!style) {\n style = document.createElement('style');\n style.id = 'universal-dark-mode-style';\n document.head.appendChild(style);\n }\n \n // Dark mode CSS - inverts colors but preserves images/video\n style.textContent = '\n /* Invert everything except media */\n html {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #1a1a2e !important;\n }\n \n /* Restore images, videos, iframes, canvas */\n img, video, iframe, canvas, svg, picture, [style*=\"background-image\"] {\n filter: invert(1) hue-rotate(180deg) !important;\n }\n \n /* Preserve specific elements that should not be inverted */\n .no-dark-mode, .no-dark-mode *,\n [data-theme=\"light\"], [data-theme=\"light\"],\n .ace_editor, .ace_editor *,\n .CodeMirror, .CodeMirror *,\n .monaco-editor, .monaco-editor *,\n .markdown-body pre, .markdown-body pre *,\n .highlight, .highlight *,\n pre code, pre code * {\n filter: none !important;\n }\n \n /* Fix common UI elements */\n .modal, .popup, .dropdown-menu, .tooltip, .popover {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #2d2d44 !important;\n border-color: #444 !important;\n }\n \n /* Scrollbars */\n ::-webkit-scrollbar { background: #1a1a2e !important; }\n ::-webkit-scrollbar-thumb { background: #444 !important; }\n ::-webkit-scrollbar-thumb:hover { background: #555 !important; }\n \n /* Selection */\n ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ';\n }\n \n function removeDarkMode() {\n var style = document.getElementById('universal-dark-mode-style');\n if (style) style.remove();\n }\n \n // Toggle with Alt+Shift+D\n document.addEventListener('keydown', function(e) {\n if (e.altKey && e.shiftKey && e.key === 'D') {\n e.preventDefault();\n enabled = !enabled;\n if (enabled) {\n applyDarkMode();\n console.log('[Universal Dark Mode] Enabled');\n } else {\n removeDarkMode();\n console.log('[Universal Dark Mode] Disabled');\n }\n }\n });\n \n // Apply on load\n applyDarkMode();\n \n // Re-apply on dynamic content\n var observer = new MutationObserver(function(mutations) {\n if (enabled && !document.getElementById('universal-dark-mode-style')) {\n applyDarkMode();\n }\n });\n observer.observe(document.head, { childList: true });\n \n console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle');\n})();", "Universal Dark Mode"); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })();
Skip to content

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types - #94787

Merged
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods
Dec 7, 2023
Merged

[mono] Extend mono_gsharedvt_constrained_call for static calls and handle nullable value types#94787
kotlarmilos merged 4 commits into
dotnet:mainfrom
kotlarmilos:bugfix/static-gsharedvt-methods

Conversation

@kotlarmilos

Copy link
Copy Markdown
Member

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes#94467

…haredvt ref arguments if it is a nullable vtype.
@ghost

Copy link
Copy Markdown

Tagging subscribers to 'os-ios': @steveisok, @akoeplinger, @kotlarmilos
See info in area-owners.md if you want to be subscribed.

Issue Details

Description

This PR extends mono_gsharedvt_constrained_call to handle static MONO_GSHAREDVT_CONSTRAINT_CALL_TYPE_REF calls. If the cmethod is a static method, this_arg should be NULL. Also, it skips dereferencing sharedvt ref arguments if they are nullable value types.

Fixes #94467

Author:kotlarmilos
Assignees:kotlarmilos
Labels:

area-Codegen-AOT-mono, os-ios

Milestone:9.0.0

Comment threadsrc/mono/mono/mini/jit-icalls.c Outdated
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
if (deref_args [i])
// If the argument is a ref or nullable non-vtype, deref it

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@vargaz Please confirm this is correct.

@BrzVladBrzVladNov 27, 2023

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args? Also isn't deref_args supposed to be set only for valuetype args, why the check below?

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is there a testcase which fails for this case ?

Copy link
Copy Markdown
MemberAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The case we want handle here is handler.Test<bool?>(true);.

Isn't this information already known at the callsite in handle_constrained_gsharedvt_call and can be passed through deref_args?

Yes, this information already known at the callsite:

if(mini_is_gsharedvt_type(fsig->params[i])){MonoInst*is_deref;intderef_arg_reg;ins=mini_emit_get_gsharedvt_info_klass(cfg,mono_class_from_mono_type_internal(fsig->params[i]),MONO_RGCTX_INFO_CLASS_BOX_TYPE);deref_arg_reg=alloc_preg(cfg);/* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */EMIT_NEW_BIALU_IMM(cfg,is_deref,OP_ISUB_IMM,deref_arg_reg,ins->dreg,1);MONO_EMIT_NEW_STORE_MEMBASE(cfg,OP_STOREI1_MEMBASE_REG,is_gsharedvt_ins->dreg,i,is_deref->dreg);}

Also isn't deref_args supposed to be set only for valuetype args, why the check below?

It appears that an argument is being dereferenced if the BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE. However, if the argument is a nullable value type, deref_args [i] is set because mono_class_is_nullable is checked first:

if(MONO_TYPE_IS_REFERENCE(m_class_get_byval_arg(impl_class)))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_REF);elseif(mono_class_is_nullable(impl_class))returnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_NULLABLE);elsereturnGUINT_TO_POINTER(MONO_GSHAREDVT_BOX_TYPE_VTYPE);

Then, during runtime, a nullable value type is dereferenced, leading to a runtime crash. Perhaps this check (if not nullable vtype) can be moved to the handle_constrained_gsharedvt_call, which might result in larger codegen.

Is there a testcase which fails for this case ?

The fullAOT tests are not currently running on the CI. Once the job is enabled, we will check if this case is already covered. If it is not covered, we will add a runtime test. You can currently verify this by using the following sample: #94467 (comment).

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Would suggest this fix instead:

diff --git a/src/mono/mono/mini/jit-icalls.c b/src/mono/mono/mini/jit-icalls.c
index 21f3252c814..442cb9a65aa 100644
--- a/src/mono/mono/mini/jit-icalls.c
+++ b/src/mono/mono/mini/jit-icalls.c
@@ -1482,7 +1482,7 @@ mono_gsharedvt_constrained_call (gpointer mp, MonoMethod *cmethod, MonoClass *kl
g_assert (fsig->param_count < 16);
memcpy (new_args, args, fsig->param_count * sizeof (gpointer));
for (int i = 0; i < fsig->param_count; ++i) {
- if (deref_args [i])
+ if (deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_VTYPE && deref_args [i] != MONO_GSHAREDVT_BOX_TYPE_NULLABLE)
new_args [i] = *(gpointer*)new_args [i];
}
args = new_args;
diff --git a/src/mono/mono/mini/method-to-ir.c b/src/mono/mono/mini/method-to-ir.c
index 99a11126b62..1f359e31cc6 100644
--- a/src/mono/mono/mini/method-to-ir.c
+++ b/src/mono/mono/mini/method-to-ir.c
@@ -3896,13 +3896,8 @@ handle_constrained_gsharedvt_call (MonoCompile *cfg, MonoMethod *cmethod, MonoMe
int addr_reg;
if (mini_is_gsharedvt_type (fsig->params [i])) {
- MonoInst *is_deref;
- int deref_arg_reg;
ins = mini_emit_get_gsharedvt_info_klass (cfg, mono_class_from_mono_type_internal (fsig->params [i]), MONO_RGCTX_INFO_CLASS_BOX_TYPE);
- deref_arg_reg = alloc_preg (cfg);
- /* deref_arg = BOX_TYPE != MONO_GSHAREDVT_BOX_TYPE_VTYPE */
- EMIT_NEW_BIALU_IMM (cfg, is_deref, OP_ISUB_IMM, deref_arg_reg, ins->dreg, 1);
- MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, is_deref->dreg);
+ MONO_EMIT_NEW_STORE_MEMBASE (cfg, OP_STOREI1_MEMBASE_REG, is_gsharedvt_ins->dreg, i, ins->dreg);
} else if (has_gsharedvt) {
MONO_EMIT_NEW_STORE_MEMBASE_IMM (cfg, OP_STOREI1_MEMBASE_IMM, is_gsharedvt_ins->dreg, i, 0);
}

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/azp run runtime-extra-platforms

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines successfully started running 1 pipeline(s).

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/7140806171

@vargaz

Copy link
Copy Markdown
Contributor

Would be nice to have some CI tests before a backport.

@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

Agreed. Postponing this backport until we enable fullAOT CI tests: #92057.

@kotlarmiloskotlarmilos added the blocked Issue/PR is blocked on something - see comments label Dec 8, 2023
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Jan 8, 2024
@kotlarmilos

Copy link
Copy Markdown
MemberAuthor

/backport to release/8.0-staging

@github-actionsgithub-actionsBot unlocked this conversation Apr 24, 2024
@github-actions

Copy link
Copy Markdown
Contributor

Started backporting to release/8.0-staging: https://github.com/dotnet/runtime/actions/runs/8815796126

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos backporting to release/8.0-staging failed, the patch most likely resulted in conflicts:

$ git am --3way --ignore-whitespace --keep-non-patch changes.patch
Applying: [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
Using index info to reconstruct a base tree...
M	src/mono/mono/mini/jit-icalls.c
Falling back to patching base and 3-way merge...
Auto-merging src/mono/mono/mini/jit-icalls.c
CONFLICT (content): Merge conflict in src/mono/mono/mini/jit-icalls.c
error: Failed to merge in the changes.
hint: Use 'git am --show-current-patch=diff' to see the failed patch
Patch failed at 0001 [mono] Don't use this_arg in static constrained calls. Don't deref gsharedvt ref arguments if it is a nullable vtype.
When you have resolved this problem, run "git am --continue".
If you prefer to skip this patch, run "git am --skip" instead.
To restore the original branch and stop patching, run "git am --abort".
Error: The process '/usr/bin/git' failed with exit code 128

Please backport manually!

@github-actions

Copy link
Copy Markdown
Contributor

@kotlarmilos an error occurred while backporting to release/8.0-staging, please check the run log for details!

Error: git am failed, most likely due to a merge conflict.

@github-actionsgithub-actionsBot locked as resolved and limited conversation to collaborators Apr 24, 2024
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

area-Codegen-AOT-monoblockedIssue/PR is blocked on something - see commentsos-iosApple iOS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[net8.0-ios] App crashes on ios device when calling static abstract generic interface method in a sealed class

3 participants

@kotlarmilos@vargaz@BrzVlad