michael@0: /* -*- Mode: C++; tab-width: 8; indent-tabs-mode: nil; c-basic-offset: 4 -*- michael@0: * vim: set ts=8 sts=4 et sw=4 tw=99: michael@0: */ michael@0: michael@0: #include "jsfriendapi.h" michael@0: michael@0: #include "jsapi-tests/tests.h" michael@0: michael@0: BEGIN_TEST(testArrayBuffer_bug720949_steal) michael@0: { michael@0: static const unsigned NUM_TEST_BUFFERS = 2; michael@0: static const unsigned MAGIC_VALUE_1 = 3; michael@0: static const unsigned MAGIC_VALUE_2 = 17; michael@0: michael@0: JS::RootedObject buf_len1(cx), buf_len200(cx); michael@0: JS::RootedObject tarray_len1(cx), tarray_len200(cx); michael@0: michael@0: uint32_t sizes[NUM_TEST_BUFFERS] = { sizeof(uint32_t), 200 * sizeof(uint32_t) }; michael@0: JS::HandleObject testBuf[NUM_TEST_BUFFERS] = { buf_len1, buf_len200 }; michael@0: JS::HandleObject testArray[NUM_TEST_BUFFERS] = { tarray_len1, tarray_len200 }; michael@0: michael@0: // Single-element ArrayBuffer (uses fixed slots for storage) michael@0: CHECK(buf_len1 = JS_NewArrayBuffer(cx, sizes[0])); michael@0: CHECK(tarray_len1 = JS_NewInt32ArrayWithBuffer(cx, testBuf[0], 0, -1)); michael@0: michael@0: JS_SetElement(cx, testArray[0], 0, MAGIC_VALUE_1); michael@0: michael@0: // Many-element ArrayBuffer (uses dynamic storage) michael@0: CHECK(buf_len200 = JS_NewArrayBuffer(cx, 200 * sizeof(uint32_t))); michael@0: CHECK(tarray_len200 = JS_NewInt32ArrayWithBuffer(cx, testBuf[1], 0, -1)); michael@0: michael@0: for (unsigned i = 0; i < NUM_TEST_BUFFERS; i++) { michael@0: JS::HandleObject obj = testBuf[i]; michael@0: JS::HandleObject view = testArray[i]; michael@0: uint32_t size = sizes[i]; michael@0: JS::RootedValue v(cx); michael@0: michael@0: // Byte lengths should all agree michael@0: CHECK(JS_IsArrayBufferObject(obj)); michael@0: CHECK_EQUAL(JS_GetArrayBufferByteLength(obj), size); michael@0: JS_GetProperty(cx, obj, "byteLength", &v); michael@0: CHECK_SAME(v, INT_TO_JSVAL(size)); michael@0: JS_GetProperty(cx, view, "byteLength", &v); michael@0: CHECK_SAME(v, INT_TO_JSVAL(size)); michael@0: michael@0: // Modifying the underlying data should update the value returned through the view michael@0: uint8_t *data = JS_GetStableArrayBufferData(cx, obj); michael@0: CHECK(data != nullptr); michael@0: *reinterpret_cast(data) = MAGIC_VALUE_2; michael@0: CHECK(JS_GetElement(cx, view, 0, &v)); michael@0: CHECK_SAME(v, INT_TO_JSVAL(MAGIC_VALUE_2)); michael@0: michael@0: // Steal the contents michael@0: void *contents = JS_StealArrayBufferContents(cx, obj); michael@0: CHECK(contents != nullptr); michael@0: CHECK(data != nullptr); michael@0: michael@0: // Check that the original ArrayBuffer is neutered michael@0: CHECK_EQUAL(JS_GetArrayBufferByteLength(obj), 0); michael@0: CHECK(JS_GetProperty(cx, obj, "byteLength", &v)); michael@0: CHECK_SAME(v, INT_TO_JSVAL(0)); michael@0: CHECK(JS_GetProperty(cx, view, "byteLength", &v)); michael@0: CHECK_SAME(v, INT_TO_JSVAL(0)); michael@0: CHECK(JS_GetProperty(cx, view, "byteOffset", &v)); michael@0: CHECK_SAME(v, INT_TO_JSVAL(0)); michael@0: CHECK(JS_GetProperty(cx, view, "length", &v)); michael@0: CHECK_SAME(v, INT_TO_JSVAL(0)); michael@0: CHECK_EQUAL(JS_GetArrayBufferByteLength(obj), 0); michael@0: v = JSVAL_VOID; michael@0: JS_GetElement(cx, obj, 0, &v); michael@0: CHECK_SAME(v, JSVAL_VOID); michael@0: michael@0: // Transfer to a new ArrayBuffer michael@0: JS::RootedObject dst(cx, JS_NewArrayBufferWithContents(cx, size, contents)); michael@0: CHECK(JS_IsArrayBufferObject(dst)); michael@0: data = JS_GetStableArrayBufferData(cx, obj); michael@0: michael@0: JS::RootedObject dstview(cx, JS_NewInt32ArrayWithBuffer(cx, dst, 0, -1)); michael@0: CHECK(dstview != nullptr); michael@0: michael@0: CHECK_EQUAL(JS_GetArrayBufferByteLength(dst), size); michael@0: data = JS_GetStableArrayBufferData(cx, dst); michael@0: CHECK(data != nullptr); michael@0: CHECK_EQUAL(*reinterpret_cast(data), MAGIC_VALUE_2); michael@0: CHECK(JS_GetElement(cx, dstview, 0, &v)); michael@0: CHECK_SAME(v, INT_TO_JSVAL(MAGIC_VALUE_2)); michael@0: } michael@0: michael@0: return true; michael@0: } michael@0: END_TEST(testArrayBuffer_bug720949_steal) michael@0: michael@0: // Varying number of views of a buffer, to test the neutering weak pointers michael@0: BEGIN_TEST(testArrayBuffer_bug720949_viewList) michael@0: { michael@0: JS::RootedObject buffer(cx); michael@0: michael@0: // No views michael@0: buffer = JS_NewArrayBuffer(cx, 2000); michael@0: buffer = nullptr; michael@0: GC(cx); michael@0: michael@0: // One view. michael@0: { michael@0: buffer = JS_NewArrayBuffer(cx, 2000); michael@0: JS::RootedObject view(cx, JS_NewUint8ArrayWithBuffer(cx, buffer, 0, -1)); michael@0: void *contents = JS_StealArrayBufferContents(cx, buffer); michael@0: CHECK(contents != nullptr); michael@0: JS_free(nullptr, contents); michael@0: GC(cx); michael@0: CHECK(isNeutered(view)); michael@0: CHECK(isNeutered(buffer)); michael@0: view = nullptr; michael@0: GC(cx); michael@0: buffer = nullptr; michael@0: GC(cx); michael@0: } michael@0: michael@0: // Two views michael@0: { michael@0: buffer = JS_NewArrayBuffer(cx, 2000); michael@0: michael@0: JS::RootedObject view1(cx, JS_NewUint8ArrayWithBuffer(cx, buffer, 0, -1)); michael@0: JS::RootedObject view2(cx, JS_NewUint8ArrayWithBuffer(cx, buffer, 1, 200)); michael@0: michael@0: // Remove, re-add a view michael@0: view2 = nullptr; michael@0: GC(cx); michael@0: view2 = JS_NewUint8ArrayWithBuffer(cx, buffer, 1, 200); michael@0: michael@0: // Neuter michael@0: void *contents = JS_StealArrayBufferContents(cx, buffer); michael@0: CHECK(contents != nullptr); michael@0: JS_free(nullptr, contents); michael@0: michael@0: CHECK(isNeutered(view1)); michael@0: CHECK(isNeutered(view2)); michael@0: CHECK(isNeutered(buffer)); michael@0: michael@0: view1 = nullptr; michael@0: GC(cx); michael@0: view2 = nullptr; michael@0: GC(cx); michael@0: buffer = nullptr; michael@0: GC(cx); michael@0: } michael@0: michael@0: return true; michael@0: } michael@0: michael@0: static void GC(JSContext *cx) michael@0: { michael@0: JS_GC(JS_GetRuntime(cx)); michael@0: JS_GC(JS_GetRuntime(cx)); // Trigger another to wait for background finalization to end michael@0: } michael@0: michael@0: bool isNeutered(JS::HandleObject obj) { michael@0: JS::RootedValue v(cx); michael@0: return JS_GetProperty(cx, obj, "byteLength", &v) && v.toInt32() == 0; michael@0: } michael@0: michael@0: END_TEST(testArrayBuffer_bug720949_viewList)