Author:
Lee Juneyoung,Kim Dongjoo,Hur Chung-Kil,Lopes Nuno P.
Abstract
AbstractSeveral automatic verification tools have been recently developed to verify subsets of LLVM’s optimizations. However, none of these tools has robust support to verify memory optimizations.In this paper, we present the first SMT encoding of LLVM’s memory model that 1) is sufficiently precise to validate all of LLVM’s intra-procedural memory optimizations, and 2) enables bounded translation validation of programs with up to hundreds of thousands of lines of code. We implemented our new encoding in Alive2, a bounded translation validation tool, and used it to uncover 21 new bugs in LLVM memory optimizations, 10 of which have been already fixed. We also found several inconsistencies in LLVM IR’s official specification document (LangRef) and fixed LLVM’s code and the document so they are in agreement.
Publisher
Springer International Publishing
Reference48 articles.
1. LLVM language reference manual. https://llvm.org/docs/LangRef.html
2. Ball, T., Bounimova, E., Levin, V., de Moura, L.: Efficient evaluation of pointer predicates with Z3 SMT solver in SLAM2. Technical Report MSR-TR-2010-24, Microsoft Research (2010), https://www.microsoft.com/en-us/research/publication/efficient-evaluation-of-pointer-predicates-with-z3-smt-solver-in-slam2/
3. Berdine, J., Calcagno, C., O’Hearn, P.W.: Smallfoot: modular automatic assertion checking with separation logic. In: FMCO (2006). https://doi.org/10.1007/11804192_6
4. Berdine, J., Cook, B., Ishtiaq, S.: Slayer: memory safety for systems-level code. In: CAV (2011). https://doi.org/10.1007/978-3-642-22110-1_15
5. Besson, F., Blazy, S., Wilke, P.: A concrete memory model for CompCert. In: ITP (2015). https://doi.org/10.1007/978-3-319-22102-1_5
Cited by
7 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献
1. SMT Theory Arbitrage: Approximating Unbounded Constraints using Bounded Theories;Proceedings of the ACM on Programming Languages;2024-06-20
2. Modeling Dynamic (De)Allocations of Local Memory for Translation Validation;Proceedings of the ACM on Programming Languages;2024-04-29
3. Translation Validation for JIT Compiler in the V8 JavaScript Engine;Proceedings of the IEEE/ACM 46th International Conference on Software Engineering;2024-04-12
4. Speeding up SMT Solving via Compiler Optimization;Proceedings of the 31st ACM Joint European Software Engineering Conference and Symposium on the Foundations of Software Engineering;2023-11-30
5. Satisfiability Modulo Custom Theories in Z3;Lecture Notes in Computer Science;2023