1 /*
   2  * Copyright (c) 2000, 2025, Oracle and/or its affiliates. All rights reserved.
   3  * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
   4  *
   5  * This code is free software; you can redistribute it and/or modify it
   6  * under the terms of the GNU General Public License version 2 only, as
   7  * published by the Free Software Foundation.
   8  *
   9  * This code is distributed in the hope that it will be useful, but WITHOUT
  10  * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
  11  * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
  12  * version 2 for more details (a copy is included in the LICENSE file that
  13  * accompanied this code).
  14  *
  15  * You should have received a copy of the GNU General Public License version
  16  * 2 along with this work; if not, write to the Free Software Foundation,
  17  * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
  18  *
  19  * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
  20  * or visit www.oracle.com if you need additional information or have any
  21  * questions.
  22  *
  23  */
  24 
  25 #include "classfile/classFileStream.hpp"
  26 #include "classfile/classLoader.hpp"
  27 #include "classfile/classLoadInfo.hpp"
  28 #include "classfile/javaClasses.inline.hpp"
  29 #include "classfile/systemDictionary.hpp"
  30 #include "classfile/vmSymbols.hpp"
  31 #include "jfr/jfrEvents.hpp"
  32 #include "jni.h"
  33 #include "jvm.h"
  34 #include "logging/log.hpp"
  35 #include "logging/logStream.hpp"
  36 #include "memory/allocation.inline.hpp"
  37 #include "memory/oopFactory.hpp"
  38 #include "memory/resourceArea.hpp"
  39 #include "oops/access.inline.hpp"
  40 #include "oops/fieldStreams.inline.hpp"
  41 #include "oops/flatArrayKlass.hpp"
  42 #include "oops/flatArrayOop.inline.hpp"
  43 #include "oops/inlineKlass.inline.hpp"
  44 #include "oops/instanceKlass.inline.hpp"
  45 #include "oops/klass.inline.hpp"
  46 #include "oops/objArrayOop.inline.hpp"
  47 #include "oops/oop.inline.hpp"
  48 #include "oops/typeArrayOop.inline.hpp"
  49 #include "prims/jvmtiExport.hpp"
  50 #include "prims/unsafe.hpp"
  51 #include "runtime/fieldDescriptor.inline.hpp"
  52 #include "runtime/globals.hpp"
  53 #include "runtime/handles.inline.hpp"
  54 #include "runtime/interfaceSupport.inline.hpp"
  55 #include "runtime/javaThread.inline.hpp"
  56 #include "runtime/jniHandles.inline.hpp"
  57 #include "runtime/orderAccess.hpp"
  58 #include "runtime/reflection.hpp"
  59 #include "runtime/sharedRuntime.hpp"
  60 #include "runtime/stubRoutines.hpp"
  61 #include "runtime/threadSMR.hpp"
  62 #include "runtime/vm_version.hpp"
  63 #include "runtime/vmOperations.hpp"
  64 #include "sanitizers/ub.hpp"
  65 #include "services/threadService.hpp"
  66 #include "utilities/align.hpp"
  67 #include "utilities/copy.hpp"
  68 #include "utilities/dtrace.hpp"
  69 #include "utilities/macros.hpp"
  70 
  71 /**
  72  * Implementation of the jdk.internal.misc.Unsafe class
  73  */
  74 
  75 
  76 #define MAX_OBJECT_SIZE \
  77   ( arrayOopDesc::base_offset_in_bytes(T_DOUBLE) \
  78     + ((julong)max_jint * sizeof(double)) )
  79 
  80 #define UNSAFE_ENTRY(result_type, header) \
  81   JVM_ENTRY(static result_type, header)
  82 
  83 #define UNSAFE_LEAF(result_type, header) \
  84   JVM_LEAF(static result_type, header)
  85 
  86 // All memory access methods (e.g. getInt, copyMemory) must use this macro.
  87 // We call these methods "scoped" methods, as access to these methods is
  88 // typically governed by a "scope" (a MemorySessionImpl object), and no
  89 // access is allowed when the scope is no longer alive.
  90 //
  91 // Closing a scope object (cf. scopedMemoryAccess.cpp) can install
  92 // an async exception during a safepoint. When that happens,
  93 // scoped methods are not allowed to touch the underlying memory (as that
  94 // memory might have been released). Therefore, when entering a scoped method
  95 // we check if an async exception has been installed, and return immediately
  96 // if that is the case.
  97 //
  98 // As a rule, we disallow safepoints in the middle of a scoped method.
  99 // If an async exception handshake were installed in such a safepoint,
 100 // memory access might still occur before the handshake is honored by
 101 // the accessing thread.
 102 //
 103 // Corollary: as threads in native state are considered to be at a safepoint,
 104 // scoped methods must NOT be executed while in the native thread state.
 105 // Because of this, there can be no UNSAFE_LEAF_SCOPED.
 106 #define UNSAFE_ENTRY_SCOPED(result_type, header) \
 107   JVM_ENTRY(static result_type, header) \
 108   if (thread->has_async_exception_condition()) {return (result_type)0;}
 109 
 110 #define UNSAFE_END JVM_END
 111 
 112 
 113 static inline void* addr_from_java(jlong addr) {
 114   // This assert fails in a variety of ways on 32-bit systems.
 115   // It is impossible to predict whether native code that converts
 116   // pointers to longs will sign-extend or zero-extend the addresses.
 117   //assert(addr == (uintptr_t)addr, "must not be odd high bits");
 118   return (void*)(uintptr_t)addr;
 119 }
 120 
 121 static inline jlong addr_to_java(void* p) {
 122   assert(p == (void*)(uintptr_t)p, "must not be odd high bits");
 123   return (uintptr_t)p;
 124 }
 125 
 126 
 127 // Note: The VM's obj_field and related accessors use byte-scaled
 128 // ("unscaled") offsets, just as the unsafe methods do.
 129 
 130 // However, the method Unsafe.fieldOffset explicitly declines to
 131 // guarantee this.  The field offset values manipulated by the Java user
 132 // through the Unsafe API are opaque cookies that just happen to be byte
 133 // offsets.  We represent this state of affairs by passing the cookies
 134 // through conversion functions when going between the VM and the Unsafe API.
 135 // The conversion functions just happen to be no-ops at present.
 136 
 137 static inline jlong field_offset_to_byte_offset(jlong field_offset) {
 138   return field_offset;
 139 }
 140 
 141 static inline int field_offset_from_byte_offset(int byte_offset) {
 142   return byte_offset;
 143 }
 144 
 145 static inline void assert_field_offset_sane(oop p, jlong field_offset) {
 146 #ifdef ASSERT
 147   jlong byte_offset = field_offset_to_byte_offset(field_offset);
 148 
 149   if (p != nullptr) {
 150     assert(byte_offset >= 0 && byte_offset <= (jlong)MAX_OBJECT_SIZE, "sane offset");
 151     if (byte_offset == (jint)byte_offset) {
 152       void* ptr_plus_disp = cast_from_oop<address>(p) + byte_offset;
 153       assert(p->field_addr<void>((jint)byte_offset) == ptr_plus_disp,
 154              "raw [ptr+disp] must be consistent with oop::field_addr");
 155     }
 156     jlong p_size = HeapWordSize * (jlong)(p->size());
 157     assert(byte_offset < p_size, "Unsafe access: offset " INT64_FORMAT " > object's size " INT64_FORMAT, (int64_t)byte_offset, (int64_t)p_size);
 158   }
 159 #endif
 160 }
 161 
 162 static inline void* index_oop_from_field_offset_long(oop p, jlong field_offset) {
 163   assert_field_offset_sane(p, field_offset);
 164   uintptr_t base_address = cast_from_oop<uintptr_t>(p);
 165   uintptr_t byte_offset  = (uintptr_t)field_offset_to_byte_offset(field_offset);
 166   return (void*)(base_address + byte_offset);
 167 }
 168 
 169 // Externally callable versions:
 170 // (Use these in compiler intrinsics which emulate unsafe primitives.)
 171 jlong Unsafe_field_offset_to_byte_offset(jlong field_offset) {
 172   return field_offset;
 173 }
 174 jlong Unsafe_field_offset_from_byte_offset(jlong byte_offset) {
 175   return byte_offset;
 176 }
 177 
 178 ///// Data read/writes on the Java heap and in native (off-heap) memory
 179 
 180 /**
 181  * Helper class to wrap memory accesses in JavaThread::doing_unsafe_access()
 182  */
 183 class GuardUnsafeAccess {
 184   JavaThread* _thread;
 185 
 186 public:
 187   GuardUnsafeAccess(JavaThread* thread) : _thread(thread) {
 188     // native/off-heap access which may raise SIGBUS if accessing
 189     // memory mapped file data in a region of the file which has
 190     // been truncated and is now invalid.
 191     _thread->set_doing_unsafe_access(true);
 192   }
 193 
 194   ~GuardUnsafeAccess() {
 195     _thread->set_doing_unsafe_access(false);
 196   }
 197 };
 198 
 199 /**
 200  * Helper class for accessing memory.
 201  *
 202  * Normalizes values and wraps accesses in
 203  * JavaThread::doing_unsafe_access() if needed.
 204  */
 205 template <typename T>
 206 class MemoryAccess : StackObj {
 207   JavaThread* _thread;
 208   oop _obj;
 209   ptrdiff_t _offset;
 210 
 211   // Resolves and returns the address of the memory access.
 212   // This raw memory access may fault, so we make sure it happens within the
 213   // guarded scope by making the access volatile at least. Since the store
 214   // of Thread::set_doing_unsafe_access() is also volatile, these accesses
 215   // can not be reordered by the compiler. Therefore, if the access triggers
 216   // a fault, we will know that Thread::doing_unsafe_access() returns true.
 217   volatile T* addr() {
 218     void* addr = index_oop_from_field_offset_long(_obj, _offset);
 219     return static_cast<volatile T*>(addr);
 220   }
 221 
 222   template <typename U>
 223   U normalize_for_write(U x) {
 224     return x;
 225   }
 226 
 227   jboolean normalize_for_write(jboolean x) {
 228     return x & 1;
 229   }
 230 
 231   template <typename U>
 232   U normalize_for_read(U x) {
 233     return x;
 234   }
 235 
 236   jboolean normalize_for_read(jboolean x) {
 237     return x != 0;
 238   }
 239 
 240 public:
 241   MemoryAccess(JavaThread* thread, jobject obj, jlong offset)
 242     : _thread(thread), _obj(JNIHandles::resolve(obj)), _offset((ptrdiff_t)offset) {
 243     assert_field_offset_sane(_obj, offset);
 244   }
 245 
 246   T get() {
 247     GuardUnsafeAccess guard(_thread);
 248     return normalize_for_read(*addr());
 249   }
 250 
 251   // we use this method at some places for writing to 0 e.g. to cause a crash;
 252   // ubsan does not know that this is the desired behavior
 253   ATTRIBUTE_NO_UBSAN
 254   void put(T x) {
 255     GuardUnsafeAccess guard(_thread);
 256     assert(_obj == nullptr || !_obj->is_inline_type() || _obj->mark().is_larval_state(), "must be an object instance or a larval inline type");
 257     *addr() = normalize_for_write(x);
 258   }
 259 
 260   T get_volatile() {
 261     GuardUnsafeAccess guard(_thread);
 262     volatile T ret = RawAccess<MO_SEQ_CST>::load(addr());
 263     return normalize_for_read(ret);
 264   }
 265 
 266   void put_volatile(T x) {
 267     GuardUnsafeAccess guard(_thread);
 268     RawAccess<MO_SEQ_CST>::store(addr(), normalize_for_write(x));
 269   }
 270 };
 271 
 272 #ifdef ASSERT
 273 /*
 274  * Get the field descriptor of the field of the given object at the given offset.
 275  */
 276 static bool get_field_descriptor(oop p, jlong offset, fieldDescriptor* fd) {
 277   bool found = false;
 278   Klass* k = p->klass();
 279   if (k->is_instance_klass()) {
 280     InstanceKlass* ik = InstanceKlass::cast(k);
 281     found = ik->find_field_from_offset((int)offset, false, fd);
 282     if (!found && ik->is_mirror_instance_klass()) {
 283       Klass* k2 = java_lang_Class::as_Klass(p);
 284       if (k2->is_instance_klass()) {
 285         ik = InstanceKlass::cast(k2);
 286         found = ik->find_field_from_offset((int)offset, true, fd);
 287       }
 288     }
 289   }
 290   return found;
 291 }
 292 #endif // ASSERT
 293 
 294 static void assert_and_log_unsafe_value_access(oop p, jlong offset, InlineKlass* vk) {
 295   Klass* k = p->klass();
 296 #ifdef ASSERT
 297   if (k->is_instance_klass()) {
 298     assert_field_offset_sane(p, offset);
 299     fieldDescriptor fd;
 300     bool found = get_field_descriptor(p, offset, &fd);
 301     if (found) {
 302       assert(found, "value field not found");
 303       assert(fd.is_flat(), "field not flat");
 304     } else {
 305       if (log_is_enabled(Trace, valuetypes)) {
 306         log_trace(valuetypes)("not a field in %s at offset " UINT64_FORMAT_X,
 307                               p->klass()->external_name(), (uint64_t)offset);
 308       }
 309     }
 310   } else if (k->is_flatArray_klass()) {
 311     FlatArrayKlass* vak = FlatArrayKlass::cast(k);
 312     int index = (offset - vak->array_header_in_bytes()) / vak->element_byte_size();
 313     address dest = (address)((flatArrayOop)p)->value_at_addr(index, vak->layout_helper());
 314     assert(dest == (cast_from_oop<address>(p) + offset), "invalid offset");
 315   } else {
 316     ShouldNotReachHere();
 317   }
 318 #endif // ASSERT
 319   if (log_is_enabled(Trace, valuetypes)) {
 320     if (k->is_flatArray_klass()) {
 321       FlatArrayKlass* vak = FlatArrayKlass::cast(k);
 322       int index = (offset - vak->array_header_in_bytes()) / vak->element_byte_size();
 323       address dest = (address)((flatArrayOop)p)->value_at_addr(index, vak->layout_helper());
 324       log_trace(valuetypes)("%s array type %s index %d element size %d offset " UINT64_FORMAT_X " at " INTPTR_FORMAT,
 325                             p->klass()->external_name(), vak->external_name(),
 326                             index, vak->element_byte_size(), (uint64_t)offset, p2i(dest));
 327     } else {
 328       log_trace(valuetypes)("%s field type %s at offset " UINT64_FORMAT_X,
 329                             p->klass()->external_name(), vk->external_name(), (uint64_t)offset);
 330     }
 331   }
 332 }
 333 
 334 // These functions allow a null base pointer with an arbitrary address.
 335 // But if the base pointer is non-null, the offset should make some sense.
 336 // That is, it should be in the range [0, MAX_OBJECT_SIZE].
 337 UNSAFE_ENTRY(jobject, Unsafe_GetReference(JNIEnv *env, jobject unsafe, jobject obj, jlong offset)) {
 338   oop p = JNIHandles::resolve(obj);
 339   assert_field_offset_sane(p, offset);
 340   oop v = HeapAccess<ON_UNKNOWN_OOP_REF>::oop_load_at(p, offset);
 341   return JNIHandles::make_local(THREAD, v);
 342 } UNSAFE_END
 343 
 344 UNSAFE_ENTRY(void, Unsafe_PutReference(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jobject x_h)) {
 345   oop x = JNIHandles::resolve(x_h);
 346   oop p = JNIHandles::resolve(obj);
 347   assert_field_offset_sane(p, offset);
 348   assert(!p->is_inline_type() || p->mark().is_larval_state(), "must be an object instance or a larval inline type");
 349   HeapAccess<ON_UNKNOWN_OOP_REF>::oop_store_at(p, offset, x);
 350 } UNSAFE_END
 351 
 352 UNSAFE_ENTRY(jlong, Unsafe_ValueHeaderSize(JNIEnv *env, jobject unsafe, jclass c)) {
 353   Klass* k = java_lang_Class::as_Klass(JNIHandles::resolve_non_null(c));
 354   InlineKlass* vk = InlineKlass::cast(k);
 355   return vk->payload_offset();
 356 } UNSAFE_END
 357 
 358 UNSAFE_ENTRY(jboolean, Unsafe_IsFlatField(JNIEnv *env, jobject unsafe, jobject o)) {
 359   oop f = JNIHandles::resolve_non_null(o);
 360   Klass* k = java_lang_Class::as_Klass(java_lang_reflect_Field::clazz(f));
 361   int slot = java_lang_reflect_Field::slot(f);
 362   return InstanceKlass::cast(k)->field_is_flat(slot);
 363 } UNSAFE_END
 364 
 365 UNSAFE_ENTRY(jboolean, Unsafe_HasNullMarker(JNIEnv *env, jobject unsafe, jobject o)) {
 366   oop f = JNIHandles::resolve_non_null(o);
 367   Klass* k = java_lang_Class::as_Klass(java_lang_reflect_Field::clazz(f));
 368   int slot = java_lang_reflect_Field::slot(f);
 369   return InstanceKlass::cast(k)->field_has_null_marker(slot);
 370 } UNSAFE_END
 371 
 372 UNSAFE_ENTRY(jint, Unsafe_NullMarkerOffset(JNIEnv *env, jobject unsafe, jobject o)) {
 373   oop f = JNIHandles::resolve_non_null(o);
 374   Klass* k = java_lang_Class::as_Klass(java_lang_reflect_Field::clazz(f));
 375   int slot = java_lang_reflect_Field::slot(f);
 376   return InstanceKlass::cast(k)->null_marker_offset(slot);
 377 } UNSAFE_END
 378 
 379 UNSAFE_ENTRY(jint, Unsafe_ArrayLayout(JNIEnv *env, jobject unsafe, jarray array)) {
 380   oop ar = JNIHandles::resolve_non_null(array);
 381   ArrayKlass* ak = ArrayKlass::cast(ar->klass());
 382   if (ak->is_refArray_klass()) {
 383     return (jint)LayoutKind::REFERENCE;
 384   } else if (ak->is_flatArray_klass()) {
 385     return (jint)FlatArrayKlass::cast(ak)->layout_kind();
 386   } else {
 387     ShouldNotReachHere();
 388     return -1;
 389   }
 390 } UNSAFE_END
 391 
 392 UNSAFE_ENTRY(jint, Unsafe_FieldLayout(JNIEnv *env, jobject unsafe, jobject field)) {
 393   assert(field != nullptr, "field must not be null");
 394 
 395   oop reflected   = JNIHandles::resolve_non_null(field);
 396   oop mirror      = java_lang_reflect_Field::clazz(reflected);
 397   Klass* k        = java_lang_Class::as_Klass(mirror);
 398   int slot        = java_lang_reflect_Field::slot(reflected);
 399   int modifiers   = java_lang_reflect_Field::modifiers(reflected);
 400 
 401   if ((modifiers & JVM_ACC_STATIC) != 0) {
 402     return (jint)LayoutKind::REFERENCE; // static fields are never flat
 403   } else {
 404     InstanceKlass* ik = InstanceKlass::cast(k);
 405     if (ik->field_is_flat(slot)) {
 406       return (jint)ik->inline_layout_info(slot).kind();
 407     } else {
 408       return (jint)LayoutKind::REFERENCE;
 409     }
 410   }
 411 } UNSAFE_END
 412 
 413 UNSAFE_ENTRY(jarray, Unsafe_NewSpecialArray(JNIEnv *env, jobject unsafe, jclass elmClass, jint len, jint layoutKind)) {
 414   oop mirror = JNIHandles::resolve_non_null(elmClass);
 415   Klass* klass = java_lang_Class::as_Klass(mirror);
 416   klass->initialize(CHECK_NULL);
 417   if (len < 0) {
 418     THROW_MSG_NULL(vmSymbols::java_lang_IllegalArgumentException(), "Array length is negative");
 419   }
 420   if (klass->is_array_klass() || klass->is_identity_class()) {
 421     THROW_MSG_NULL(vmSymbols::java_lang_IllegalArgumentException(), "Element class is not a value class");
 422   }
 423   if (klass->is_abstract()) {
 424     THROW_MSG_NULL(vmSymbols::java_lang_IllegalArgumentException(), "Element class is abstract");
 425   }
 426   LayoutKind lk = static_cast<LayoutKind>(layoutKind);
 427   if (lk <= LayoutKind::REFERENCE || lk >= LayoutKind::UNKNOWN) {
 428     THROW_MSG_NULL(vmSymbols::java_lang_IllegalArgumentException(), "Invalid layout kind");
 429   }
 430   InlineKlass* vk = InlineKlass::cast(klass);
 431   // WARNING: test below will need modifications when flat layouts supported for fields
 432   // but not for arrays are introduce (NULLABLE_NON_ATOMIC_FLAT for instance)
 433   if (!UseArrayFlattening || !vk->is_layout_supported(lk)) {
 434     THROW_MSG_NULL(vmSymbols::java_lang_UnsupportedOperationException(), "Layout not supported");
 435   }
 436   ArrayKlass::ArrayProperties props = ArrayKlass::array_properties_from_layout(lk);
 437   oop array = oopFactory::new_flatArray(vk, len, props, lk, CHECK_NULL);
 438   return (jarray) JNIHandles::make_local(THREAD, array);
 439 } UNSAFE_END
 440 
 441 UNSAFE_ENTRY(jobject, Unsafe_GetValue(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jclass vc)) {
 442   oop base = JNIHandles::resolve(obj);
 443   if (base == nullptr) {
 444     THROW_NULL(vmSymbols::java_lang_NullPointerException());
 445   }
 446   Klass* k = java_lang_Class::as_Klass(JNIHandles::resolve_non_null(vc));
 447   InlineKlass* vk = InlineKlass::cast(k);
 448   assert_and_log_unsafe_value_access(base, offset, vk);
 449   LayoutKind lk = LayoutKind::UNKNOWN;
 450   if (base->is_array()) {
 451     FlatArrayKlass* fak = FlatArrayKlass::cast(base->klass());
 452     lk = fak->layout_kind();
 453   } else {
 454     fieldDescriptor fd;
 455     InstanceKlass::cast(base->klass())->find_field_from_offset(offset, false, &fd);
 456     lk = fd.field_holder()->inline_layout_info(fd.index()).kind();
 457   }
 458   Handle base_h(THREAD, base);
 459   oop v = vk->read_payload_from_addr(base_h(), offset, lk, CHECK_NULL);
 460   return JNIHandles::make_local(THREAD, v);
 461 } UNSAFE_END
 462 
 463 UNSAFE_ENTRY(jobject, Unsafe_GetFlatValue(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jint layoutKind, jclass vc)) {
 464   assert(layoutKind != (int)LayoutKind::REFERENCE, "This method handles only flat layouts");
 465   oop base = JNIHandles::resolve(obj);
 466   if (base == nullptr) {
 467     THROW_NULL(vmSymbols::java_lang_NullPointerException());
 468   }
 469   Klass* k = java_lang_Class::as_Klass(JNIHandles::resolve_non_null(vc));
 470   InlineKlass* vk = InlineKlass::cast(k);
 471   assert_and_log_unsafe_value_access(base, offset, vk);
 472   LayoutKind lk = (LayoutKind)layoutKind;
 473   Handle base_h(THREAD, base);
 474   oop v = vk->read_payload_from_addr(base_h(), offset, lk, CHECK_NULL);
 475   return JNIHandles::make_local(THREAD, v);
 476 } UNSAFE_END
 477 
 478 UNSAFE_ENTRY(void, Unsafe_PutValue(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jclass vc, jobject value)) {
 479   oop base = JNIHandles::resolve(obj);
 480   if (base == nullptr) {
 481     THROW(vmSymbols::java_lang_NullPointerException());
 482   }
 483   Klass* k = java_lang_Class::as_Klass(JNIHandles::resolve_non_null(vc));
 484   InlineKlass* vk = InlineKlass::cast(k);
 485   assert(!base->is_inline_type() || base->mark().is_larval_state(), "must be an object instance or a larval inline type");
 486   assert_and_log_unsafe_value_access(base, offset, vk);
 487   LayoutKind lk = LayoutKind::UNKNOWN;
 488   if (base->is_array()) {
 489     FlatArrayKlass* fak = FlatArrayKlass::cast(base->klass());
 490     lk = fak->layout_kind();
 491   } else {
 492     fieldDescriptor fd;
 493     InstanceKlass::cast(base->klass())->find_field_from_offset(offset, false, &fd);
 494     lk = fd.field_holder()->inline_layout_info(fd.index()).kind();
 495   }
 496   oop v = JNIHandles::resolve(value);
 497   vk->write_value_to_addr(v, ((char*)(oopDesc*)base) + offset, lk, true, CHECK);
 498 } UNSAFE_END
 499 
 500 UNSAFE_ENTRY(void, Unsafe_PutFlatValue(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jint layoutKind, jclass vc, jobject value)) {
 501   assert(layoutKind != (int)LayoutKind::REFERENCE, "This method handles only flat layouts");
 502   oop base = JNIHandles::resolve(obj);
 503   if (base == nullptr) {
 504     THROW(vmSymbols::java_lang_NullPointerException());
 505   }
 506   Klass* k = java_lang_Class::as_Klass(JNIHandles::resolve_non_null(vc));
 507   InlineKlass* vk = InlineKlass::cast(k);
 508   assert(!base->is_inline_type() || base->mark().is_larval_state(), "must be an object instance or a larval inline type");
 509   assert_and_log_unsafe_value_access(base, offset, vk);
 510   LayoutKind lk = (LayoutKind)layoutKind;
 511   oop v = JNIHandles::resolve(value);
 512   vk->write_value_to_addr(v, ((char*)(oopDesc*)base) + offset, lk, true, CHECK);
 513 } UNSAFE_END
 514 
 515 UNSAFE_ENTRY(jobject, Unsafe_MakePrivateBuffer(JNIEnv *env, jobject unsafe, jobject value)) {
 516   oop v = JNIHandles::resolve_non_null(value);
 517   assert(v->is_inline_type(), "must be an inline type instance");
 518   Handle vh(THREAD, v);
 519   InlineKlass* vk = InlineKlass::cast(v->klass());
 520   instanceOop new_value = vk->allocate_instance_buffer(CHECK_NULL);
 521   vk->copy_payload_to_addr(vk->payload_addr(vh()), vk->payload_addr(new_value), LayoutKind::BUFFERED, false);
 522   markWord mark = new_value->mark();
 523   new_value->set_mark(mark.enter_larval_state());
 524   return JNIHandles::make_local(THREAD, new_value);
 525 } UNSAFE_END
 526 
 527 UNSAFE_ENTRY(jobject, Unsafe_FinishPrivateBuffer(JNIEnv *env, jobject unsafe, jobject value)) {
 528   oop v = JNIHandles::resolve(value);
 529   assert(v->mark().is_larval_state(), "must be a larval value");
 530   markWord mark = v->mark();
 531   v->set_mark(mark.exit_larval_state());
 532   return JNIHandles::make_local(THREAD, v);
 533 } UNSAFE_END
 534 
 535 UNSAFE_ENTRY(jobject, Unsafe_GetReferenceVolatile(JNIEnv *env, jobject unsafe, jobject obj, jlong offset)) {
 536   oop p = JNIHandles::resolve(obj);
 537   assert_field_offset_sane(p, offset);
 538   oop v = HeapAccess<MO_SEQ_CST | ON_UNKNOWN_OOP_REF>::oop_load_at(p, offset);
 539   return JNIHandles::make_local(THREAD, v);
 540 } UNSAFE_END
 541 
 542 UNSAFE_ENTRY(void, Unsafe_PutReferenceVolatile(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jobject x_h)) {
 543   oop x = JNIHandles::resolve(x_h);
 544   oop p = JNIHandles::resolve(obj);
 545   assert_field_offset_sane(p, offset);
 546   HeapAccess<MO_SEQ_CST | ON_UNKNOWN_OOP_REF>::oop_store_at(p, offset, x);
 547 } UNSAFE_END
 548 
 549 UNSAFE_ENTRY(jobject, Unsafe_GetUncompressedObject(JNIEnv *env, jobject unsafe, jlong addr)) {
 550   oop v = *(oop*) (address) addr;
 551   return JNIHandles::make_local(THREAD, v);
 552 } UNSAFE_END
 553 
 554 #define DEFINE_GETSETOOP(java_type, Type) \
 555  \
 556 UNSAFE_ENTRY_SCOPED(java_type, Unsafe_Get##Type(JNIEnv *env, jobject unsafe, jobject obj, jlong offset)) { \
 557   return MemoryAccess<java_type>(thread, obj, offset).get(); \
 558 } UNSAFE_END \
 559  \
 560 UNSAFE_ENTRY_SCOPED(void, Unsafe_Put##Type(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, java_type x)) { \
 561   MemoryAccess<java_type>(thread, obj, offset).put(x); \
 562 } UNSAFE_END \
 563  \
 564 // END DEFINE_GETSETOOP.
 565 
 566 DEFINE_GETSETOOP(jboolean, Boolean)
 567 DEFINE_GETSETOOP(jbyte, Byte)
 568 DEFINE_GETSETOOP(jshort, Short);
 569 DEFINE_GETSETOOP(jchar, Char);
 570 DEFINE_GETSETOOP(jint, Int);
 571 DEFINE_GETSETOOP(jlong, Long);
 572 DEFINE_GETSETOOP(jfloat, Float);
 573 DEFINE_GETSETOOP(jdouble, Double);
 574 
 575 #undef DEFINE_GETSETOOP
 576 
 577 #define DEFINE_GETSETOOP_VOLATILE(java_type, Type) \
 578  \
 579 UNSAFE_ENTRY_SCOPED(java_type, Unsafe_Get##Type##Volatile(JNIEnv *env, jobject unsafe, jobject obj, jlong offset)) { \
 580   return MemoryAccess<java_type>(thread, obj, offset).get_volatile(); \
 581 } UNSAFE_END \
 582  \
 583 UNSAFE_ENTRY_SCOPED(void, Unsafe_Put##Type##Volatile(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, java_type x)) { \
 584   MemoryAccess<java_type>(thread, obj, offset).put_volatile(x); \
 585 } UNSAFE_END \
 586  \
 587 // END DEFINE_GETSETOOP_VOLATILE.
 588 
 589 DEFINE_GETSETOOP_VOLATILE(jboolean, Boolean)
 590 DEFINE_GETSETOOP_VOLATILE(jbyte, Byte)
 591 DEFINE_GETSETOOP_VOLATILE(jshort, Short);
 592 DEFINE_GETSETOOP_VOLATILE(jchar, Char);
 593 DEFINE_GETSETOOP_VOLATILE(jint, Int);
 594 DEFINE_GETSETOOP_VOLATILE(jlong, Long);
 595 DEFINE_GETSETOOP_VOLATILE(jfloat, Float);
 596 DEFINE_GETSETOOP_VOLATILE(jdouble, Double);
 597 
 598 #undef DEFINE_GETSETOOP_VOLATILE
 599 
 600 UNSAFE_LEAF(void, Unsafe_FullFence(JNIEnv *env, jobject unsafe)) {
 601   OrderAccess::fence();
 602 } UNSAFE_END
 603 
 604 ////// Allocation requests
 605 
 606 UNSAFE_ENTRY(jobject, Unsafe_AllocateInstance(JNIEnv *env, jobject unsafe, jclass cls)) {
 607   JvmtiVMObjectAllocEventCollector oam;
 608   instanceOop i = InstanceKlass::allocate_instance(JNIHandles::resolve_non_null(cls), CHECK_NULL);
 609   return JNIHandles::make_local(THREAD, i);
 610 } UNSAFE_END
 611 
 612 UNSAFE_LEAF(jlong, Unsafe_AllocateMemory0(JNIEnv *env, jobject unsafe, jlong size)) {
 613   size_t sz = (size_t)size;
 614 
 615   assert(is_aligned(sz, HeapWordSize), "sz not aligned");
 616 
 617   void* x = os::malloc(sz, mtOther);
 618 
 619   return addr_to_java(x);
 620 } UNSAFE_END
 621 
 622 UNSAFE_LEAF(jlong, Unsafe_ReallocateMemory0(JNIEnv *env, jobject unsafe, jlong addr, jlong size)) {
 623   void* p = addr_from_java(addr);
 624   size_t sz = (size_t)size;
 625 
 626   assert(is_aligned(sz, HeapWordSize), "sz not aligned");
 627 
 628   void* x = os::realloc(p, sz, mtOther);
 629 
 630   return addr_to_java(x);
 631 } UNSAFE_END
 632 
 633 UNSAFE_LEAF(void, Unsafe_FreeMemory0(JNIEnv *env, jobject unsafe, jlong addr)) {
 634   void* p = addr_from_java(addr);
 635 
 636   os::free(p);
 637 } UNSAFE_END
 638 
 639 UNSAFE_ENTRY_SCOPED(void, Unsafe_SetMemory0(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jlong size, jbyte value)) {
 640   size_t sz = (size_t)size;
 641 
 642   oop base = JNIHandles::resolve(obj);
 643   void* p = index_oop_from_field_offset_long(base, offset);
 644 
 645   {
 646     GuardUnsafeAccess guard(thread);
 647     if (StubRoutines::unsafe_setmemory() != nullptr) {
 648       MACOS_AARCH64_ONLY(ThreadWXEnable wx(WXExec, thread));
 649       StubRoutines::UnsafeSetMemory_stub()(p, sz, value);
 650     } else {
 651       Copy::fill_to_memory_atomic(p, sz, value);
 652     }
 653   }
 654 } UNSAFE_END
 655 
 656 UNSAFE_ENTRY_SCOPED(void, Unsafe_CopyMemory0(JNIEnv *env, jobject unsafe, jobject srcObj, jlong srcOffset, jobject dstObj, jlong dstOffset, jlong size)) {
 657   size_t sz = (size_t)size;
 658 
 659   oop srcp = JNIHandles::resolve(srcObj);
 660   oop dstp = JNIHandles::resolve(dstObj);
 661 
 662   void* src = index_oop_from_field_offset_long(srcp, srcOffset);
 663   void* dst = index_oop_from_field_offset_long(dstp, dstOffset);
 664   {
 665     GuardUnsafeAccess guard(thread);
 666     if (StubRoutines::unsafe_arraycopy() != nullptr) {
 667       MACOS_AARCH64_ONLY(ThreadWXEnable wx(WXExec, thread));
 668       StubRoutines::UnsafeArrayCopy_stub()(src, dst, sz);
 669     } else {
 670       Copy::conjoint_memory_atomic(src, dst, sz);
 671     }
 672   }
 673 } UNSAFE_END
 674 
 675 UNSAFE_ENTRY_SCOPED(void, Unsafe_CopySwapMemory0(JNIEnv *env, jobject unsafe, jobject srcObj, jlong srcOffset, jobject dstObj, jlong dstOffset, jlong size, jlong elemSize)) {
 676   size_t sz = (size_t)size;
 677   size_t esz = (size_t)elemSize;
 678 
 679   oop srcp = JNIHandles::resolve(srcObj);
 680   oop dstp = JNIHandles::resolve(dstObj);
 681 
 682   address src = (address)index_oop_from_field_offset_long(srcp, srcOffset);
 683   address dst = (address)index_oop_from_field_offset_long(dstp, dstOffset);
 684 
 685   {
 686     GuardUnsafeAccess guard(thread);
 687     Copy::conjoint_swap(src, dst, sz, esz);
 688   }
 689 } UNSAFE_END
 690 
 691 UNSAFE_LEAF (void, Unsafe_WriteBack0(JNIEnv *env, jobject unsafe, jlong line)) {
 692   assert(VM_Version::supports_data_cache_line_flush(), "should not get here");
 693 #ifdef ASSERT
 694   if (TraceMemoryWriteback) {
 695     tty->print_cr("Unsafe: writeback 0x%p", addr_from_java(line));
 696   }
 697 #endif
 698 
 699   MACOS_AARCH64_ONLY(ThreadWXEnable wx(WXExec, Thread::current()));
 700   assert(StubRoutines::data_cache_writeback() != nullptr, "sanity");
 701   (StubRoutines::DataCacheWriteback_stub())(addr_from_java(line));
 702 } UNSAFE_END
 703 
 704 static void doWriteBackSync0(bool is_pre)
 705 {
 706   MACOS_AARCH64_ONLY(ThreadWXEnable wx(WXExec, Thread::current()));
 707   assert(StubRoutines::data_cache_writeback_sync() != nullptr, "sanity");
 708   (StubRoutines::DataCacheWritebackSync_stub())(is_pre);
 709 }
 710 
 711 UNSAFE_LEAF (void, Unsafe_WriteBackPreSync0(JNIEnv *env, jobject unsafe)) {
 712   assert(VM_Version::supports_data_cache_line_flush(), "should not get here");
 713 #ifdef ASSERT
 714   if (TraceMemoryWriteback) {
 715       tty->print_cr("Unsafe: writeback pre-sync");
 716   }
 717 #endif
 718 
 719   doWriteBackSync0(true);
 720 } UNSAFE_END
 721 
 722 UNSAFE_LEAF (void, Unsafe_WriteBackPostSync0(JNIEnv *env, jobject unsafe)) {
 723   assert(VM_Version::supports_data_cache_line_flush(), "should not get here");
 724 #ifdef ASSERT
 725   if (TraceMemoryWriteback) {
 726     tty->print_cr("Unsafe: writeback pre-sync");
 727   }
 728 #endif
 729 
 730   doWriteBackSync0(false);
 731 } UNSAFE_END
 732 
 733 ////// Random queries
 734 
 735 // Finds the object field offset of a field with the matching name, or an error code
 736 // Error code -1 is not found, -2 is static field
 737 static jlong find_known_instance_field_offset(jclass clazz, jstring name, TRAPS) {
 738   assert(clazz != nullptr, "clazz must not be null");
 739   assert(name != nullptr, "name must not be null");
 740 
 741   ResourceMark rm(THREAD);
 742   char *utf_name = java_lang_String::as_utf8_string(JNIHandles::resolve_non_null(name));
 743 
 744   InstanceKlass* k = java_lang_Class::as_InstanceKlass(JNIHandles::resolve_non_null(clazz));
 745 
 746   jint offset = -1; // Not found
 747   for (JavaFieldStream fs(k); !fs.done(); fs.next()) {
 748     Symbol *name = fs.name();
 749     if (name->equals(utf_name)) {
 750       if (!fs.access_flags().is_static()) {
 751         offset = fs.offset();
 752       } else {
 753         offset = -2; // A static field
 754       }
 755       break;
 756     }
 757   }
 758   if (offset < 0) {
 759     return offset; // Error code
 760   }
 761   return field_offset_from_byte_offset(offset);
 762 }
 763 
 764 static jlong find_field_offset(jobject field, int must_be_static, TRAPS) {
 765   assert(field != nullptr, "field must not be null");
 766 
 767   oop reflected   = JNIHandles::resolve_non_null(field);
 768   oop mirror      = java_lang_reflect_Field::clazz(reflected);
 769   Klass* k        = java_lang_Class::as_Klass(mirror);
 770   int slot        = java_lang_reflect_Field::slot(reflected);
 771   int modifiers   = java_lang_reflect_Field::modifiers(reflected);
 772 
 773   if (must_be_static >= 0) {
 774     int really_is_static = ((modifiers & JVM_ACC_STATIC) != 0);
 775     if (must_be_static != really_is_static) {
 776       THROW_0(vmSymbols::java_lang_IllegalArgumentException());
 777     }
 778   }
 779 
 780   int offset = InstanceKlass::cast(k)->field_offset(slot);
 781   return field_offset_from_byte_offset(offset);
 782 }
 783 
 784 UNSAFE_ENTRY(jlong, Unsafe_ObjectFieldOffset0(JNIEnv *env, jobject unsafe, jobject field)) {
 785   return find_field_offset(field, 0, THREAD);
 786 } UNSAFE_END
 787 
 788 UNSAFE_ENTRY(jlong, Unsafe_KnownObjectFieldOffset0(JNIEnv *env, jobject unsafe, jclass c, jstring name)) {
 789   return find_known_instance_field_offset(c, name, THREAD);
 790 } UNSAFE_END
 791 
 792 UNSAFE_ENTRY(jlong, Unsafe_StaticFieldOffset0(JNIEnv *env, jobject unsafe, jobject field)) {
 793   return find_field_offset(field, 1, THREAD);
 794 } UNSAFE_END
 795 
 796 UNSAFE_ENTRY(jobject, Unsafe_StaticFieldBase0(JNIEnv *env, jobject unsafe, jobject field)) {
 797   assert(field != nullptr, "field must not be null");
 798 
 799   // Note:  In this VM implementation, a field address is always a short
 800   // offset from the base of a klass metaobject.  Thus, the full dynamic
 801   // range of the return type is never used.  However, some implementations
 802   // might put the static field inside an array shared by many classes,
 803   // or even at a fixed address, in which case the address could be quite
 804   // large.  In that last case, this function would return null, since
 805   // the address would operate alone, without any base pointer.
 806 
 807   oop reflected   = JNIHandles::resolve_non_null(field);
 808   oop mirror      = java_lang_reflect_Field::clazz(reflected);
 809   int modifiers   = java_lang_reflect_Field::modifiers(reflected);
 810 
 811   if ((modifiers & JVM_ACC_STATIC) == 0) {
 812     THROW_NULL(vmSymbols::java_lang_IllegalArgumentException());
 813   }
 814 
 815   return JNIHandles::make_local(THREAD, mirror);
 816 } UNSAFE_END
 817 
 818 UNSAFE_ENTRY(void, Unsafe_EnsureClassInitialized0(JNIEnv *env, jobject unsafe, jobject clazz)) {
 819   assert(clazz != nullptr, "clazz must not be null");
 820 
 821   oop mirror = JNIHandles::resolve_non_null(clazz);
 822 
 823   Klass* klass = java_lang_Class::as_Klass(mirror);
 824   if (klass != nullptr && klass->should_be_initialized()) {
 825     InstanceKlass* k = InstanceKlass::cast(klass);
 826     k->initialize(CHECK);
 827   }
 828 }
 829 UNSAFE_END
 830 
 831 UNSAFE_ENTRY(jboolean, Unsafe_ShouldBeInitialized0(JNIEnv *env, jobject unsafe, jobject clazz)) {
 832   assert(clazz != nullptr, "clazz must not be null");
 833 
 834   oop mirror = JNIHandles::resolve_non_null(clazz);
 835   Klass* klass = java_lang_Class::as_Klass(mirror);
 836 
 837   if (klass != nullptr && klass->should_be_initialized()) {
 838     return true;
 839   }
 840 
 841   return false;
 842 }
 843 UNSAFE_END
 844 
 845 UNSAFE_ENTRY(void, Unsafe_NotifyStrictStaticAccess0(JNIEnv *env, jobject unsafe, jobject clazz,
 846                                                     jlong sfoffset, jboolean writing)) {
 847   assert(clazz != nullptr, "clazz must not be null");
 848 
 849   oop mirror = JNIHandles::resolve_non_null(clazz);
 850   Klass* klass = java_lang_Class::as_Klass(mirror);
 851 
 852   if (klass != nullptr && klass->is_instance_klass()) {
 853     InstanceKlass* ik = InstanceKlass::cast(klass);
 854     fieldDescriptor fd;
 855     if (ik->find_local_field_from_offset((int)sfoffset, true, &fd)) {
 856       // Note: The Unsafe API takes an OFFSET, but the InstanceKlass wants the INDEX.
 857       // We could surface field indexes into Unsafe, but that's too much churn.
 858       ik->notify_strict_static_access(fd.index(), writing, CHECK);
 859       return;
 860     }
 861   }
 862   THROW(vmSymbols::java_lang_InternalError());
 863 }
 864 UNSAFE_END
 865 
 866 static void getBaseAndScale(int& base, int& scale, jclass clazz, TRAPS) {
 867   assert(clazz != nullptr, "clazz must not be null");
 868 
 869   oop mirror = JNIHandles::resolve_non_null(clazz);
 870   Klass* k = java_lang_Class::as_Klass(mirror);
 871 
 872   if (k == nullptr || !k->is_array_klass()) {
 873     THROW(vmSymbols::java_lang_InvalidClassException());
 874   } else if (k->is_typeArray_klass()) {
 875     TypeArrayKlass* tak = TypeArrayKlass::cast(k);
 876     base  = tak->array_header_in_bytes();
 877     assert(base == arrayOopDesc::base_offset_in_bytes(tak->element_type()), "array_header_size semantics ok");
 878     scale = (1 << tak->log2_element_size());
 879   } else if (k->is_objArray_klass()) {
 880     Klass* ek = ObjArrayKlass::cast(k)->element_klass();
 881     if (!ek->is_identity_class() && !ek->is_abstract()) {
 882       // Arrays of a concrete value class type can have multiple layouts
 883       // There's no good value to return, so throwing an exception is the way out
 884       THROW_MSG(vmSymbols::java_lang_IllegalArgumentException(), "Arrays of a concrete value class don't have a single base and offset");
 885     }
 886     base  = arrayOopDesc::base_offset_in_bytes(T_OBJECT);
 887     scale = heapOopSize;
 888   } else {
 889     ShouldNotReachHere();
 890   }
 891 }
 892 
 893 UNSAFE_ENTRY(jint, Unsafe_ArrayInstanceBaseOffset0(JNIEnv *env, jobject unsafe, jarray array)) {
 894   assert(array != nullptr, "array must not be null");
 895   oop ar = JNIHandles::resolve_non_null(array);
 896   assert(ar->is_array(), "Must be an array");
 897   ArrayKlass* ak = ArrayKlass::cast(ar->klass());
 898   if (ak->is_refArray_klass()) {
 899     return arrayOopDesc::base_offset_in_bytes(T_OBJECT);
 900   } else if (ak->is_flatArray_klass()) {
 901     FlatArrayKlass* fak = FlatArrayKlass::cast(ak);
 902     return fak->array_header_in_bytes();
 903   } else {
 904     ShouldNotReachHere();
 905   }
 906 } UNSAFE_END
 907 
 908 UNSAFE_ENTRY(jint, Unsafe_ArrayBaseOffset0(JNIEnv *env, jobject unsafe, jclass clazz)) {
 909   int base = 0, scale = 0;
 910   getBaseAndScale(base, scale, clazz, CHECK_0);
 911 
 912   return field_offset_from_byte_offset(base);
 913 } UNSAFE_END
 914 
 915 
 916 UNSAFE_ENTRY(jint, Unsafe_ArrayIndexScale0(JNIEnv *env, jobject unsafe, jclass clazz)) {
 917   int base = 0, scale = 0;
 918   getBaseAndScale(base, scale, clazz, CHECK_0);
 919 
 920   // This VM packs both fields and array elements down to the byte.
 921   // But watch out:  If this changes, so that array references for
 922   // a given primitive type (say, T_BOOLEAN) use different memory units
 923   // than fields, this method MUST return zero for such arrays.
 924   // For example, the VM used to store sub-word sized fields in full
 925   // words in the object layout, so that accessors like getByte(Object,int)
 926   // did not really do what one might expect for arrays.  Therefore,
 927   // this function used to report a zero scale factor, so that the user
 928   // would know not to attempt to access sub-word array elements.
 929   // // Code for unpacked fields:
 930   // if (scale < wordSize)  return 0;
 931 
 932   // The following allows for a pretty general fieldOffset cookie scheme,
 933   // but requires it to be linear in byte offset.
 934   return field_offset_from_byte_offset(scale) - field_offset_from_byte_offset(0);
 935 } UNSAFE_END
 936 
 937 UNSAFE_ENTRY(jint, Unsafe_ArrayInstanceIndexScale0(JNIEnv *env, jobject unsafe, jarray array)) {
 938   assert(array != nullptr, "array must not be null");
 939   oop ar = JNIHandles::resolve_non_null(array);
 940   assert(ar->is_array(), "Must be an array");
 941   ArrayKlass* ak = ArrayKlass::cast(ar->klass());
 942   if (ak->is_refArray_klass()) {
 943     return heapOopSize;
 944   } else if (ak->is_flatArray_klass()) {
 945     FlatArrayKlass* fak = FlatArrayKlass::cast(ak);
 946     return fak->element_byte_size();
 947   } else {
 948     ShouldNotReachHere();
 949   }
 950 } UNSAFE_END
 951 
 952 UNSAFE_ENTRY(jarray, Unsafe_GetFieldMap0(JNIEnv* env, jobject unsafe, jclass clazz)) {
 953   oop mirror = JNIHandles::resolve_non_null(clazz);
 954   Klass* k = java_lang_Class::as_Klass(mirror);
 955 
 956   if (!k->is_inline_klass()) {
 957     THROW_MSG_NULL(vmSymbols::java_lang_IllegalArgumentException(), "Argument is not a concrete value class");
 958   }
 959   InlineKlass* vk = InlineKlass::cast(k);
 960   oop map = mirror->obj_field(vk->acmp_maps_offset());
 961   return (jarray) JNIHandles::make_local(THREAD, map);
 962 } UNSAFE_END
 963 
 964 
 965 UNSAFE_ENTRY(jlong, Unsafe_GetObjectSize0(JNIEnv* env, jobject o, jobject obj))
 966   oop p = JNIHandles::resolve(obj);
 967   return p->size() * HeapWordSize;
 968 UNSAFE_END
 969 
 970 
 971 static inline void throw_new(JNIEnv *env, const char *ename) {
 972   jclass cls = env->FindClass(ename);
 973   if (env->ExceptionCheck()) {
 974     env->ExceptionClear();
 975     tty->print_cr("Unsafe: cannot throw %s because FindClass has failed", ename);
 976     return;
 977   }
 978 
 979   env->ThrowNew(cls, nullptr);
 980 }
 981 
 982 static jclass Unsafe_DefineClass_impl(JNIEnv *env, jstring name, jbyteArray data, int offset, int length, jobject loader, jobject pd) {
 983   // Code lifted from JDK 1.3 ClassLoader.c
 984 
 985   jbyte *body;
 986   char *utfName = nullptr;
 987   jclass result = nullptr;
 988   char buf[128];
 989 
 990   assert(data != nullptr, "Class bytes must not be null");
 991   assert(length >= 0, "length must not be negative: %d", length);
 992 
 993   if (UsePerfData) {
 994     ClassLoader::unsafe_defineClassCallCounter()->inc();
 995   }
 996 
 997   body = NEW_C_HEAP_ARRAY_RETURN_NULL(jbyte, length, mtInternal);
 998   if (body == nullptr) {
 999     throw_new(env, "java/lang/OutOfMemoryError");
1000     return nullptr;
1001   }
1002 
1003   env->GetByteArrayRegion(data, offset, length, body);
1004   if (env->ExceptionCheck()) {
1005     goto free_body;
1006   }
1007 
1008   if (name != nullptr) {
1009     uint len = env->GetStringUTFLength(name);
1010     int unicode_len = env->GetStringLength(name);
1011 
1012     if (len >= sizeof(buf)) {
1013       utfName = NEW_C_HEAP_ARRAY_RETURN_NULL(char, len + 1, mtInternal);
1014       if (utfName == nullptr) {
1015         throw_new(env, "java/lang/OutOfMemoryError");
1016         goto free_body;
1017       }
1018     } else {
1019       utfName = buf;
1020     }
1021 
1022     env->GetStringUTFRegion(name, 0, unicode_len, utfName);
1023 
1024     for (uint i = 0; i < len; i++) {
1025       if (utfName[i] == '.')   utfName[i] = '/';
1026     }
1027   }
1028 
1029   result = JVM_DefineClass(env, utfName, loader, body, length, pd);
1030 
1031   if (utfName && utfName != buf) {
1032     FREE_C_HEAP_ARRAY(char, utfName);
1033   }
1034 
1035  free_body:
1036   FREE_C_HEAP_ARRAY(jbyte, body);
1037   return result;
1038 }
1039 
1040 
1041 UNSAFE_ENTRY(jclass, Unsafe_DefineClass0(JNIEnv *env, jobject unsafe, jstring name, jbyteArray data, int offset, int length, jobject loader, jobject pd)) {
1042   ThreadToNativeFromVM ttnfv(thread);
1043 
1044   return Unsafe_DefineClass_impl(env, name, data, offset, length, loader, pd);
1045 } UNSAFE_END
1046 
1047 
1048 UNSAFE_ENTRY(void, Unsafe_ThrowException(JNIEnv *env, jobject unsafe, jthrowable thr)) {
1049   ThreadToNativeFromVM ttnfv(thread);
1050   env->Throw(thr);
1051 } UNSAFE_END
1052 
1053 // JSR166 ------------------------------------------------------------------
1054 
1055 UNSAFE_ENTRY(jobject, Unsafe_CompareAndExchangeReference(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jobject e_h, jobject x_h)) {
1056   oop x = JNIHandles::resolve(x_h);
1057   oop e = JNIHandles::resolve(e_h);
1058   oop p = JNIHandles::resolve(obj);
1059   assert_field_offset_sane(p, offset);
1060   oop res = HeapAccess<ON_UNKNOWN_OOP_REF>::oop_atomic_cmpxchg_at(p, (ptrdiff_t)offset, e, x);
1061   return JNIHandles::make_local(THREAD, res);
1062 } UNSAFE_END
1063 
1064 UNSAFE_ENTRY_SCOPED(jint, Unsafe_CompareAndExchangeInt(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jint e, jint x)) {
1065   oop p = JNIHandles::resolve(obj);
1066   volatile jint* addr = (volatile jint*)index_oop_from_field_offset_long(p, offset);
1067   return AtomicAccess::cmpxchg(addr, e, x);
1068 } UNSAFE_END
1069 
1070 UNSAFE_ENTRY_SCOPED(jlong, Unsafe_CompareAndExchangeLong(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jlong e, jlong x)) {
1071   oop p = JNIHandles::resolve(obj);
1072   volatile jlong* addr = (volatile jlong*)index_oop_from_field_offset_long(p, offset);
1073   return AtomicAccess::cmpxchg(addr, e, x);
1074 } UNSAFE_END
1075 
1076 UNSAFE_ENTRY(jboolean, Unsafe_CompareAndSetReference(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jobject e_h, jobject x_h)) {
1077   oop x = JNIHandles::resolve(x_h);
1078   oop e = JNIHandles::resolve(e_h);
1079   oop p = JNIHandles::resolve(obj);
1080   assert_field_offset_sane(p, offset);
1081   oop ret = HeapAccess<ON_UNKNOWN_OOP_REF>::oop_atomic_cmpxchg_at(p, (ptrdiff_t)offset, e, x);
1082   return ret == e;
1083 } UNSAFE_END
1084 
1085 UNSAFE_ENTRY_SCOPED(jboolean, Unsafe_CompareAndSetInt(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jint e, jint x)) {
1086   oop p = JNIHandles::resolve(obj);
1087   volatile jint* addr = (volatile jint*)index_oop_from_field_offset_long(p, offset);
1088   return AtomicAccess::cmpxchg(addr, e, x) == e;
1089 } UNSAFE_END
1090 
1091 UNSAFE_ENTRY_SCOPED(jboolean, Unsafe_CompareAndSetLong(JNIEnv *env, jobject unsafe, jobject obj, jlong offset, jlong e, jlong x)) {
1092   oop p = JNIHandles::resolve(obj);
1093   volatile jlong* addr = (volatile jlong*)index_oop_from_field_offset_long(p, offset);
1094   return AtomicAccess::cmpxchg(addr, e, x) == e;
1095 } UNSAFE_END
1096 
1097 static void post_thread_park_event(EventThreadPark* event, const oop obj, jlong timeout_nanos, jlong until_epoch_millis) {
1098   assert(event != nullptr, "invariant");
1099   event->set_parkedClass((obj != nullptr) ? obj->klass() : nullptr);
1100   event->set_timeout(timeout_nanos);
1101   event->set_until(until_epoch_millis);
1102   event->set_address((obj != nullptr) ? (u8)cast_from_oop<uintptr_t>(obj) : 0);
1103   event->commit();
1104 }
1105 
1106 UNSAFE_ENTRY(void, Unsafe_Park(JNIEnv *env, jobject unsafe, jboolean isAbsolute, jlong time)) {
1107   HOTSPOT_THREAD_PARK_BEGIN((uintptr_t) thread->parker(), (int) isAbsolute, time);
1108   EventThreadPark event;
1109 
1110   JavaThreadParkedState jtps(thread, time != 0);
1111   thread->parker()->park(isAbsolute != 0, time);
1112   if (event.should_commit()) {
1113     const oop obj = thread->current_park_blocker();
1114     if (time == 0) {
1115       post_thread_park_event(&event, obj, min_jlong, min_jlong);
1116     } else {
1117       if (isAbsolute != 0) {
1118         post_thread_park_event(&event, obj, min_jlong, time);
1119       } else {
1120         post_thread_park_event(&event, obj, time, min_jlong);
1121       }
1122     }
1123   }
1124   HOTSPOT_THREAD_PARK_END((uintptr_t) thread->parker());
1125 } UNSAFE_END
1126 
1127 UNSAFE_ENTRY(void, Unsafe_Unpark(JNIEnv *env, jobject unsafe, jobject jthread)) {
1128   if (jthread != nullptr) {
1129     oop thread_oop = JNIHandles::resolve_non_null(jthread);
1130     // Get the JavaThread* stored in the java.lang.Thread object _before_
1131     // the embedded ThreadsListHandle is constructed so we know if the
1132     // early life stage of the JavaThread* is protected. We use acquire
1133     // here to ensure that if we see a non-nullptr value, then we also
1134     // see the main ThreadsList updates from the JavaThread* being added.
1135     FastThreadsListHandle ftlh(thread_oop, java_lang_Thread::thread_acquire(thread_oop));
1136     JavaThread* thr = ftlh.protected_java_thread();
1137     if (thr != nullptr) {
1138       // The still live JavaThread* is protected by the FastThreadsListHandle
1139       // so it is safe to access.
1140       Parker* p = thr->parker();
1141       HOTSPOT_THREAD_UNPARK((uintptr_t) p);
1142       p->unpark();
1143     }
1144   } // FastThreadsListHandle is destroyed here.
1145 } UNSAFE_END
1146 
1147 UNSAFE_ENTRY(jint, Unsafe_GetLoadAverage0(JNIEnv *env, jobject unsafe, jdoubleArray loadavg, jint nelem)) {
1148   const int max_nelem = 3;
1149   double la[max_nelem];
1150   jint ret;
1151 
1152   typeArrayOop a = typeArrayOop(JNIHandles::resolve_non_null(loadavg));
1153   assert(a->is_typeArray(), "must be type array");
1154 
1155   ret = os::loadavg(la, nelem);
1156   if (ret == -1) {
1157     return -1;
1158   }
1159 
1160   // if successful, ret is the number of samples actually retrieved.
1161   assert(ret >= 0 && ret <= max_nelem, "Unexpected loadavg return value");
1162   switch(ret) {
1163     case 3: a->double_at_put(2, (jdouble)la[2]); // fall through
1164     case 2: a->double_at_put(1, (jdouble)la[1]); // fall through
1165     case 1: a->double_at_put(0, (jdouble)la[0]); break;
1166   }
1167 
1168   return ret;
1169 } UNSAFE_END
1170 
1171 
1172 /// JVM_RegisterUnsafeMethods
1173 
1174 #define ADR "J"
1175 
1176 #define LANG "Ljava/lang/"
1177 
1178 #define OBJ LANG "Object;"
1179 #define CLS LANG "Class;"
1180 #define FLD LANG "reflect/Field;"
1181 #define THR LANG "Throwable;"
1182 
1183 #define OBJ_ARR "[" OBJ
1184 
1185 #define DC_Args  LANG "String;[BII" LANG "ClassLoader;" "Ljava/security/ProtectionDomain;"
1186 #define DAC_Args CLS "[B[" OBJ
1187 
1188 #define CC (char*)  /*cast a literal from (const char*)*/
1189 #define FN_PTR(f) CAST_FROM_FN_PTR(void*, &f)
1190 
1191 #define DECLARE_GETPUTOOP(Type, Desc) \
1192     {CC "get"  #Type,      CC "(" OBJ "J)" #Desc,                 FN_PTR(Unsafe_Get##Type)}, \
1193     {CC "put"  #Type,      CC "(" OBJ "J" #Desc ")V",             FN_PTR(Unsafe_Put##Type)}, \
1194     {CC "get"  #Type "Volatile",      CC "(" OBJ "J)" #Desc,      FN_PTR(Unsafe_Get##Type##Volatile)}, \
1195     {CC "put"  #Type "Volatile",      CC "(" OBJ "J" #Desc ")V",  FN_PTR(Unsafe_Put##Type##Volatile)}
1196 
1197 
1198 static JNINativeMethod jdk_internal_misc_Unsafe_methods[] = {
1199     {CC "getReference",         CC "(" OBJ "J)" OBJ "",   FN_PTR(Unsafe_GetReference)},
1200     {CC "putReference",         CC "(" OBJ "J" OBJ ")V",  FN_PTR(Unsafe_PutReference)},
1201     {CC "getReferenceVolatile", CC "(" OBJ "J)" OBJ,      FN_PTR(Unsafe_GetReferenceVolatile)},
1202     {CC "putReferenceVolatile", CC "(" OBJ "J" OBJ ")V",  FN_PTR(Unsafe_PutReferenceVolatile)},
1203 
1204     {CC "isFlatField0",         CC "(" OBJ ")Z",          FN_PTR(Unsafe_IsFlatField)},
1205     {CC "hasNullMarker0",       CC "(" OBJ ")Z",          FN_PTR(Unsafe_HasNullMarker)},
1206     {CC "nullMarkerOffset0",    CC "(" OBJ ")I",          FN_PTR(Unsafe_NullMarkerOffset)},
1207     {CC "arrayLayout0",         CC "(" OBJ_ARR ")I",      FN_PTR(Unsafe_ArrayLayout)},
1208     {CC "fieldLayout0",         CC "(" OBJ ")I",          FN_PTR(Unsafe_FieldLayout)},
1209     {CC "newSpecialArray",      CC "(" CLS "II)[" OBJ,    FN_PTR(Unsafe_NewSpecialArray)},
1210     {CC "getValue",             CC "(" OBJ "J" CLS ")" OBJ, FN_PTR(Unsafe_GetValue)},
1211     {CC "getFlatValue",         CC "(" OBJ "JI" CLS ")" OBJ, FN_PTR(Unsafe_GetFlatValue)},
1212     {CC "putValue",             CC "(" OBJ "J" CLS OBJ ")V", FN_PTR(Unsafe_PutValue)},
1213     {CC "putFlatValue",         CC "(" OBJ "JI" CLS OBJ ")V", FN_PTR(Unsafe_PutFlatValue)},
1214     {CC "makePrivateBuffer",     CC "(" OBJ ")" OBJ,      FN_PTR(Unsafe_MakePrivateBuffer)},
1215     {CC "finishPrivateBuffer",   CC "(" OBJ ")" OBJ,      FN_PTR(Unsafe_FinishPrivateBuffer)},
1216     {CC "valueHeaderSize",       CC "(" CLS ")J",         FN_PTR(Unsafe_ValueHeaderSize)},
1217 
1218     {CC "getUncompressedObject", CC "(" ADR ")" OBJ,  FN_PTR(Unsafe_GetUncompressedObject)},
1219 
1220     DECLARE_GETPUTOOP(Boolean, Z),
1221     DECLARE_GETPUTOOP(Byte, B),
1222     DECLARE_GETPUTOOP(Short, S),
1223     DECLARE_GETPUTOOP(Char, C),
1224     DECLARE_GETPUTOOP(Int, I),
1225     DECLARE_GETPUTOOP(Long, J),
1226     DECLARE_GETPUTOOP(Float, F),
1227     DECLARE_GETPUTOOP(Double, D),
1228 
1229     {CC "allocateMemory0",    CC "(J)" ADR,              FN_PTR(Unsafe_AllocateMemory0)},
1230     {CC "reallocateMemory0",  CC "(" ADR "J)" ADR,       FN_PTR(Unsafe_ReallocateMemory0)},
1231     {CC "freeMemory0",        CC "(" ADR ")V",           FN_PTR(Unsafe_FreeMemory0)},
1232 
1233     {CC "objectFieldOffset0", CC "(" FLD ")J",           FN_PTR(Unsafe_ObjectFieldOffset0)},
1234     {CC "knownObjectFieldOffset0", CC "(" CLS LANG "String;)J", FN_PTR(Unsafe_KnownObjectFieldOffset0)},
1235     {CC "staticFieldOffset0", CC "(" FLD ")J",           FN_PTR(Unsafe_StaticFieldOffset0)},
1236     {CC "staticFieldBase0",   CC "(" FLD ")" OBJ,        FN_PTR(Unsafe_StaticFieldBase0)},
1237     {CC "ensureClassInitialized0", CC "(" CLS ")V",      FN_PTR(Unsafe_EnsureClassInitialized0)},
1238     {CC "arrayBaseOffset0",   CC "(" CLS ")I",           FN_PTR(Unsafe_ArrayBaseOffset0)},
1239     {CC "arrayInstanceBaseOffset0",   CC "(" OBJ_ARR ")I", FN_PTR(Unsafe_ArrayInstanceBaseOffset0)},
1240     {CC "arrayIndexScale0",   CC "(" CLS ")I",           FN_PTR(Unsafe_ArrayIndexScale0)},
1241     {CC "arrayInstanceIndexScale0",   CC "(" OBJ_ARR ")I", FN_PTR(Unsafe_ArrayInstanceIndexScale0)},
1242     {CC "getFieldMap0",       CC "(Ljava/lang/Class;)[I", FN_PTR(Unsafe_GetFieldMap0)},
1243     {CC "getObjectSize0",     CC "(Ljava/lang/Object;)J", FN_PTR(Unsafe_GetObjectSize0)},
1244 
1245     {CC "defineClass0",       CC "(" DC_Args ")" CLS,    FN_PTR(Unsafe_DefineClass0)},
1246     {CC "allocateInstance",   CC "(" CLS ")" OBJ,        FN_PTR(Unsafe_AllocateInstance)},
1247     {CC "throwException",     CC "(" THR ")V",           FN_PTR(Unsafe_ThrowException)},
1248     {CC "compareAndSetReference",CC "(" OBJ "J" OBJ "" OBJ ")Z", FN_PTR(Unsafe_CompareAndSetReference)},
1249     {CC "compareAndSetInt",   CC "(" OBJ "J""I""I"")Z",  FN_PTR(Unsafe_CompareAndSetInt)},
1250     {CC "compareAndSetLong",  CC "(" OBJ "J""J""J"")Z",  FN_PTR(Unsafe_CompareAndSetLong)},
1251     {CC "compareAndExchangeReference", CC "(" OBJ "J" OBJ "" OBJ ")" OBJ, FN_PTR(Unsafe_CompareAndExchangeReference)},
1252     {CC "compareAndExchangeInt",  CC "(" OBJ "J""I""I"")I", FN_PTR(Unsafe_CompareAndExchangeInt)},
1253     {CC "compareAndExchangeLong", CC "(" OBJ "J""J""J"")J", FN_PTR(Unsafe_CompareAndExchangeLong)},
1254 
1255     {CC "park",               CC "(ZJ)V",                FN_PTR(Unsafe_Park)},
1256     {CC "unpark",             CC "(" OBJ ")V",           FN_PTR(Unsafe_Unpark)},
1257 
1258     {CC "getLoadAverage0",    CC "([DI)I",               FN_PTR(Unsafe_GetLoadAverage0)},
1259 
1260     {CC "copyMemory0",        CC "(" OBJ "J" OBJ "JJ)V", FN_PTR(Unsafe_CopyMemory0)},
1261     {CC "copySwapMemory0",    CC "(" OBJ "J" OBJ "JJJ)V", FN_PTR(Unsafe_CopySwapMemory0)},
1262     {CC "writeback0",         CC "(" "J" ")V",           FN_PTR(Unsafe_WriteBack0)},
1263     {CC "writebackPreSync0",  CC "()V",                  FN_PTR(Unsafe_WriteBackPreSync0)},
1264     {CC "writebackPostSync0", CC "()V",                  FN_PTR(Unsafe_WriteBackPostSync0)},
1265     {CC "setMemory0",         CC "(" OBJ "JJB)V",        FN_PTR(Unsafe_SetMemory0)},
1266 
1267     {CC "shouldBeInitialized0", CC "(" CLS ")Z",         FN_PTR(Unsafe_ShouldBeInitialized0)},
1268     {CC "notifyStrictStaticAccess0", CC "(" CLS "JZ)V",  FN_PTR(Unsafe_NotifyStrictStaticAccess0)},
1269 
1270     {CC "fullFence",          CC "()V",                  FN_PTR(Unsafe_FullFence)},
1271 };
1272 
1273 #undef CC
1274 #undef FN_PTR
1275 
1276 #undef ADR
1277 #undef LANG
1278 #undef OBJ
1279 #undef CLS
1280 #undef FLD
1281 #undef THR
1282 #undef DC_Args
1283 #undef DAC_Args
1284 
1285 #undef DECLARE_GETPUTOOP
1286 
1287 
1288 // This function is exported, used by NativeLookup.
1289 // The Unsafe_xxx functions above are called only from the interpreter.
1290 // The optimizer looks at names and signatures to recognize
1291 // individual functions.
1292 
1293 JVM_ENTRY(void, JVM_RegisterJDKInternalMiscUnsafeMethods(JNIEnv *env, jclass unsafeclass)) {
1294   ThreadToNativeFromVM ttnfv(thread);
1295 
1296   int ok = env->RegisterNatives(unsafeclass, jdk_internal_misc_Unsafe_methods, sizeof(jdk_internal_misc_Unsafe_methods)/sizeof(JNINativeMethod));
1297   guarantee(ok == 0, "register jdk.internal.misc.Unsafe natives");
1298 } JVM_END