1 /*
  2  * Copyright (c) 2022, 2024, Oracle and/or its affiliates. All rights reserved.
  3  * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
  4  *
  5  * This code is free software; you can redistribute it and/or modify it
  6  * under the terms of the GNU General Public License version 2 only, as
  7  * published by the Free Software Foundation.
  8  *
  9  * This code is distributed in the hope that it will be useful, but WITHOUT
 10  * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
 11  * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
 12  * version 2 for more details (a copy is included in the LICENSE file that
 13  * accompanied this code).
 14  *
 15  * You should have received a copy of the GNU General Public License version
 16  * 2 along with this work; if not, write to the Free Software Foundation,
 17  * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
 18  *
 19  * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
 20  * or visit www.oracle.com if you need additional information or have any
 21  * questions.
 22  *
 23  */
 24 
 25 #include "precompiled.hpp"
 26 #include "cds/aotClassInitializer.hpp"
 27 #include "cds/archiveBuilder.hpp"
 28 #include "cds/cdsHeapVerifier.hpp"
 29 #include "classfile/classLoaderDataGraph.hpp"
 30 #include "classfile/javaClasses.inline.hpp"
 31 #include "logging/log.hpp"
 32 #include "logging/logStream.hpp"
 33 #include "memory/resourceArea.hpp"
 34 #include "oops/fieldStreams.inline.hpp"
 35 #include "oops/klass.inline.hpp"
 36 #include "oops/oop.inline.hpp"
 37 #include "runtime/fieldDescriptor.inline.hpp"
 38 
 39 #if INCLUDE_CDS_JAVA_HEAP
 40 
 41 // CDSHeapVerifier is used to check for problems where an archived object references a
 42 // static field that may be reinitialized at runtime. In the following example,
 43 //      Foo.get.test()
 44 // correctly returns true when CDS disabled, but incorrectly returns false when CDS is enabled.
 45 //
 46 // class Foo {
 47 //     final Foo archivedFoo; // this field is archived by CDS
 48 //     Bar bar;
 49 //     static {
 50 //         CDS.initializeFromArchive(Foo.class);
 51 //         if (archivedFoo == null) {
 52 //             archivedFoo = new Foo();
 53 //             archivedFoo.bar = Bar.bar;
 54 //         }
 55 //     }
 56 //     static Foo get() { return archivedFoo; }
 57 //     boolean test() {
 58 //         return bar == Bar.bar;
 59 //     }
 60 // }
 61 //
 62 // class Bar {
 63 //     // this field is initialized in both CDS dump time and runtime.
 64 //     static final Bar bar = new Bar();
 65 // }
 66 //
 67 // The check itself is simple:
 68 // [1] CDSHeapVerifier::do_klass() collects all static fields
 69 // [2] CDSHeapVerifier::do_entry() checks all the archived objects. None of them
 70 //     should be in [1]
 71 //
 72 // However, it's legal for *some* static fields to be references. This leads to the
 73 // table of ADD_EXCL below.
 74 //
 75 // [A] In most of the cases, the module bootstrap code will update the static field
 76 //     to point to part of the archived module graph. E.g.,
 77 //     - java/lang/System::bootLayer
 78 //     - jdk/internal/loader/ClassLoaders::BOOT_LOADER
 79 // [B] A final static String that's explicitly initialized inside <clinit>, but
 80 //     its value is deterministic and is always the same string literal.
 81 // [C] A non-final static string that is assigned a string literal during class
 82 //     initialization; this string is never changed during -Xshare:dump.
 83 // [D] Simple caches whose value doesn't matter.
 84 // [E] Other cases (see comments in-line below).
 85 
 86 CDSHeapVerifier::CDSHeapVerifier() : _archived_objs(0), _problems(0)
 87 {
 88 # define ADD_EXCL(...) { static const char* e[] = {__VA_ARGS__, nullptr}; add_exclusion(e); }
 89 
 90   // Unfortunately this needs to be manually maintained. If
 91   // test/hotspot/jtreg/runtime/cds/appcds/cacheObject/ArchivedEnumTest.java fails,
 92   // you might need to fix the core library code, or fix the ADD_EXCL entries below.
 93   //
 94   //       class                                         field                     type
 95   ADD_EXCL("java/lang/ClassLoader",                      "scl");                   // A
 96   ADD_EXCL("java/lang/Module",                           "ALL_UNNAMED_MODULE",     // A
 97                                                          "ALL_UNNAMED_MODULE_SET", // A
 98                                                          "EVERYONE_MODULE",        // A
 99                                                          "EVERYONE_SET");          // A
100 
101   // This is the same as java/util/ImmutableCollections::EMPTY_SET, which is archived
102   ADD_EXCL("java/lang/reflect/AccessFlag$Location",      "EMPTY_SET");             // E
103 
104   ADD_EXCL("java/lang/System",                           "bootLayer");             // A
105 
106   // A dummy object used by HashSet. The value doesn't matter and it's never
107   // tested for equality.
108   ADD_EXCL("java/util/HashSet",                          "PRESENT");               // E
109   ADD_EXCL("jdk/internal/loader/BuiltinClassLoader",     "packageToModule");       // A
110   ADD_EXCL("jdk/internal/loader/ClassLoaders",           "BOOT_LOADER",            // A
111                                                          "APP_LOADER",             // A
112                                                          "PLATFORM_LOADER");       // A
113   ADD_EXCL("jdk/internal/module/Builder",                "cachedVersion");         // D
114   ADD_EXCL("jdk/internal/module/ModuleLoaderMap$Mapper", "APP_CLASSLOADER",        // A
115                                                          "APP_LOADER_INDEX",       // A
116                                                          "PLATFORM_CLASSLOADER",   // A
117                                                          "PLATFORM_LOADER_INDEX"); // A
118   ADD_EXCL("jdk/internal/module/ServicesCatalog",        "CLV");                   // A
119 
120   // This just points to an empty Map
121   ADD_EXCL("jdk/internal/reflect/Reflection",            "methodFilterMap");       // E
122 
123   // Integer for 0 and 1 are in java/lang/Integer$IntegerCache and are archived
124   ADD_EXCL("sun/invoke/util/ValueConversions",           "ONE_INT",                // E
125                                                          "ZERO_INT");              // E
126 
127   if (CDSConfig::is_dumping_invokedynamic()) {
128     ADD_EXCL("java/lang/invoke/MethodHandles",            "IMPL_NAMES");           // D
129     ADD_EXCL("java/lang/invoke/MemberName$Factory",       "INSTANCE");             // D
130     ADD_EXCL("java/lang/invoke/InvokerBytecodeGenerator", "MEMBERNAME_FACTORY");   // D
131     ADD_EXCL("java/lang/invoke/SimpleMethodHandle",       "BMH_SPECIES");          // D
132   }
133 
134   // These are used by BuiltinClassLoader::negativeLookupCache, etc but seem to be
135   // OK. TODO - we should copletely disable the caching unless ArchiveLoaderLookupCache
136   // is enabled
137   ADD_EXCL("java/lang/Boolean",                           "TRUE",                  // E
138                                                           "FALSE");                // E
139   
140   ADD_EXCL("java/lang/Boolean$AOTHolder",                 "TRUE",                  // E
141                                                           "FALSE");                // E
142   
143 
144 # undef ADD_EXCL
145 
146   ClassLoaderDataGraph::classes_do(this);
147 }
148 
149 CDSHeapVerifier::~CDSHeapVerifier() {
150   if (_problems > 0) {
151     log_warning(cds, heap)("Scanned %d objects. Found %d case(s) where "
152                            "an object points to a static field that may be "
153                            "reinitialized at runtime.", _archived_objs, _problems);
154   }
155 }
156 
157 class CDSHeapVerifier::CheckStaticFields : public FieldClosure {
158   CDSHeapVerifier* _verifier;
159   InstanceKlass* _ik; // The class whose static fields are being checked.
160   const char** _exclusions;
161 public:
162   CheckStaticFields(CDSHeapVerifier* verifier, InstanceKlass* ik)
163     : _verifier(verifier), _ik(ik) {
164     _exclusions = _verifier->find_exclusion(_ik);
165   }
166 
167   void do_field(fieldDescriptor* fd) {
168     if (fd->field_type() != T_OBJECT) {
169       return;
170     }
171 
172     oop static_obj_field = _ik->java_mirror()->obj_field(fd->offset());
173     if (static_obj_field != nullptr) {
174       Klass* klass_of_field = static_obj_field->klass();
175       if (_exclusions != nullptr) {
176         for (const char** p = _exclusions; *p != nullptr; p++) {
177           if (fd->name()->equals(*p)) {
178             return;
179           }
180         }
181       }
182 
183       if (fd->is_final() && java_lang_String::is_instance(static_obj_field) && fd->has_initial_value()) {
184         // This field looks like like this in the Java source:
185         //    static final SOME_STRING = "a string literal";
186         // This string literal has been stored in the shared string table, so it's OK
187         // for the archived objects to refer to it.
188         return;
189       }
190       if (fd->is_final() && java_lang_Class::is_instance(static_obj_field)) {
191         // This field points to an archived mirror.
192         return;
193       }
194       if (klass_of_field->has_archived_enum_objs()) {
195         // This field is an Enum. If any instance of this Enum has been archived, we will archive
196         // all static fields of this Enum as well.
197         // See HeapShared::initialize_enum_klass().
198         return;
199       }
200       if (klass_of_field->is_instance_klass()) {
201         if (InstanceKlass::cast(klass_of_field)->is_initialized() &&
202             AOTClassInitializer::can_archive_initialized_mirror(InstanceKlass::cast(klass_of_field))) {
203           return;
204         }
205       }
206 
207       if (AOTClassInitializer::can_archive_initialized_mirror(_ik)) {
208         return;
209       }
210 
211       // This field *may* be initialized to a different value at runtime. Remember it
212       // and check later if it appears in the archived object graph.
213       _verifier->add_static_obj_field(_ik, static_obj_field, fd->name());
214     }
215   }
216 };
217 
218 // Remember all the static object fields of every class that are currently
219 // loaded.
220 void CDSHeapVerifier::do_klass(Klass* k) {
221   if (k->is_instance_klass()) {
222     InstanceKlass* ik = InstanceKlass::cast(k);
223 
224     if (HeapShared::is_subgraph_root_class(ik)) {
225       // ik is inside one of the ArchivableStaticFieldInfo tables
226       // in heapShared.cpp. We assume such classes are programmed to
227       // update their static fields correctly at runtime.
228       return;
229     }
230 
231     if (HeapShared::is_lambda_form_klass(ik)) {
232       // Archived lambda forms have preinitialized mirrors, so <clinit> won't run.
233       return;
234     }
235 
236     CheckStaticFields csf(this, ik);
237     ik->do_local_static_fields(&csf);
238   }
239 }
240 
241 void CDSHeapVerifier::add_static_obj_field(InstanceKlass* ik, oop field, Symbol* name) {
242   if (field->klass() == vmClasses::MethodType_klass()) {
243     // The identity of MethodTypes are preserved between assembly phase and production runs
244     // (by MethodType::AOTHolder::archivedMethodTypes). No need to check.
245     return;
246   }
247   if (field->klass() == vmClasses::LambdaForm_klass()) {
248     // LambdaForms are non-modifiable and are not tested for object equality, so
249     // it's OK if static fields of the LambdaForm type are reinitialized at runtime with
250     // alternative instances. No need to check.
251     return;
252   }
253 
254   StaticFieldInfo info = {ik, name};
255   _table.put(field, info);
256 }
257 
258 inline bool CDSHeapVerifier::do_entry(oop& orig_obj, HeapShared::CachedOopInfo& value) {
259   _archived_objs++;
260 
261   StaticFieldInfo* info = _table.get(orig_obj);
262   if (info != nullptr) {
263     if (value.orig_referrer() == nullptr && java_lang_String::is_instance(orig_obj)) {
264       // This string object is not referenced by any of the archived object graphs. It's archived
265       // only because it's in the interned string table. So we are not in a condition that
266       // should be flagged by CDSHeapVerifier.
267       return true; /* keep on iterating */
268     }
269     if (info->_holder->is_hidden()) {
270       return true;
271     }
272     ResourceMark rm;
273     char* class_name = info->_holder->name()->as_C_string();
274     char* field_name = info->_name->as_C_string();
275     if (strstr(class_name, "java/lang/invoke/BoundMethodHandle$Species_") == class_name &&
276         strcmp(field_name, "BMH_SPECIES") == 0) {
277       return true;
278     }
279     LogStream ls(Log(cds, heap)::warning());
280     ls.print_cr("Archive heap points to a static field that may be reinitialized at runtime:");
281     ls.print_cr("Field: %s::%s", class_name, field_name);
282     ls.print("Value: ");
283     orig_obj->print_on(&ls);
284     ls.print_cr("--- trace begin ---");
285     trace_to_root(&ls, orig_obj, nullptr, &value);
286     ls.print_cr("--- trace end ---");
287     ls.cr();
288     _problems ++;
289   }
290 
291   return true; /* keep on iterating */
292 }
293 
294 class CDSHeapVerifier::TraceFields : public FieldClosure {
295   oop _orig_obj;
296   oop _orig_field;
297   outputStream* _st;
298 
299 public:
300   TraceFields(oop orig_obj, oop orig_field, outputStream* st)
301     : _orig_obj(orig_obj), _orig_field(orig_field), _st(st) {}
302 
303   void do_field(fieldDescriptor* fd) {
304     if (fd->field_type() == T_OBJECT || fd->field_type() == T_ARRAY) {
305       oop obj_field = _orig_obj->obj_field(fd->offset());
306       if (obj_field == _orig_field) {
307         _st->print("::%s (offset = %d)", fd->name()->as_C_string(), fd->offset());
308       }
309     }
310   }
311 };
312 
313 // Call this function (from gdb, etc) if you want to know why an object is archived.
314 void CDSHeapVerifier::trace_to_root(outputStream* st, oop orig_obj) {
315   HeapShared::CachedOopInfo* info = HeapShared::archived_object_cache()->get(orig_obj);
316   if (info != nullptr) {
317     trace_to_root(st, orig_obj, nullptr, info);
318   } else {
319     st->print_cr("Not an archived object??");
320   }
321 }
322 
323 int CDSHeapVerifier::trace_to_root(outputStream* st, oop orig_obj, oop orig_field, HeapShared::CachedOopInfo* info) {
324   int level = 0;
325   if (info->orig_referrer() != nullptr) {
326     HeapShared::CachedOopInfo* ref = HeapShared::archived_object_cache()->get(info->orig_referrer());
327     assert(ref != nullptr, "sanity");
328     level = trace_to_root(st, info->orig_referrer(), orig_obj, ref) + 1;
329   } else if (java_lang_String::is_instance(orig_obj)) {
330     st->print_cr("[%2d] (shared string table)", level++);
331   }
332   Klass* k = orig_obj->klass();
333   ResourceMark rm;
334   st->print("[%2d] ", level);
335   orig_obj->print_address_on(st);
336   st->print(" %s", k->internal_name());
337   if (java_lang_Class::is_instance(orig_obj)) {
338     st->print(" (%s)", java_lang_Class::as_Klass(orig_obj)->external_name());
339   }
340   if (orig_field != nullptr) {
341     if (k->is_instance_klass()) {
342       TraceFields clo(orig_obj, orig_field, st);
343       InstanceKlass::cast(k)->do_nonstatic_fields(&clo);
344     } else {
345       assert(orig_obj->is_objArray(), "must be");
346       objArrayOop array = (objArrayOop)orig_obj;
347       for (int i = 0; i < array->length(); i++) {
348         if (array->obj_at(i) == orig_field) {
349           st->print(" @[%d]", i);
350           break;
351         }
352       }
353     }
354   }
355   st->cr();
356 
357   return level;
358 }
359 
360 void CDSHeapVerifier::verify() {
361   CDSHeapVerifier verf;
362   HeapShared::archived_object_cache()->iterate(&verf);
363 }
364 
365 #endif // INCLUDE_CDS_JAVA_HEAP