[llvm-bugs] [Bug 37300] New: clang crashes on valid code at -O3 with debugging enabled while running pass 'Simplify the CFG'

via llvm-bugs llvm-bugs at lists.llvm.org
Mon Apr 30 21:40:18 PDT 2018


https://bugs.llvm.org/show_bug.cgi?id=37300

            Bug ID: 37300
           Summary: clang crashes on valid code at -O3 with debugging
                    enabled while running pass 'Simplify the CFG'
           Product: clang
           Version: unspecified
          Hardware: PC
                OS: All
            Status: NEW
          Severity: enhancement
          Priority: P
         Component: -New Bugs
          Assignee: unassignedclangbugs at nondot.org
          Reporter: su at cs.ucdavis.edu
                CC: llvm-bugs at lists.llvm.org

Tested with trunk revision 331142. The crash appears non-deterministic.  


$ clangpolly -v
clang version 7.0.0 (http://llvm.org/git/clang.git
3e76165c707ba9c0e7a1b061efc065446a1e1de1) (llvm/trunk 331142)
Target: x86_64-unknown-linux-gnu
Thread model: posix
InstalledDir: /home/su/bin
Found candidate GCC installation: /usr/lib/gcc/i686-linux-gnu/4.9
Found candidate GCC installation: /usr/lib/gcc/i686-linux-gnu/4.9.4
Found candidate GCC installation: /usr/lib/gcc/i686-linux-gnu/5
Found candidate GCC installation: /usr/lib/gcc/i686-linux-gnu/5.3.0
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/4.4
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/4.4.7
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/4.6
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/4.6.4
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/4.7
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/4.7.3
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/4.8
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/4.8.5
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/4.9
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/4.9.4
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/5
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/5.3.0
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/6
Found candidate GCC installation: /usr/lib/gcc/x86_64-linux-gnu/6.2.0
Selected GCC installation: /usr/lib/gcc/x86_64-linux-gnu/4.9
Candidate multilib: .;@m64
Candidate multilib: 32;@m32
Candidate multilib: x32;@mx32
Selected multilib: .;@m64
$ 
$ clangpolly -m64 -O0 -c -w small.c
$ clangpolly -m64 -O3 -c -w small.c
$ 
$ clangpolly -m64 -O3 -g -c -w small.c
Stack dump:
0.      Program arguments: /home/su/software/tmp/polly/llvm_build/bin/clang-6.0
-cc1 -triple x86_64-unknown-linux-gnu -emit-obj -disable-free -main-file-name
small.c -mrelocation-model static -mthread-model posix -fmath-errno
-masm-verbose -mconstructor-aliases -munwind-tables -fuse-init-array
-target-cpu x86-64 -dwarf-column-info -debug-info-kind=limited -dwarf-version=4
-debugger-tuning=gdb -momit-leaf-frame-pointer -coverage-notes-file
/home/su/20180430-clangpolly-m64-O3-g-Wall-Wextra-pedantic-std=c17-build-121101/small.gcno
-resource-dir /home/su/software/tmp/polly/llvm_build/lib/clang/7.0.0
-internal-isystem /usr/local/include -internal-isystem
/home/su/software/tmp/polly/llvm_build/lib/clang/7.0.0/include
-internal-externc-isystem /usr/include/x86_64-linux-gnu
-internal-externc-isystem /include -internal-externc-isystem /usr/include -O3
-w -fdebug-compilation-dir
/home/su/20180430-clangpolly-m64-O3-g-Wall-Wextra-pedantic-std=c17-build-121101
-ferror-limit 19 -fmessage-length 116 -fobjc-runtime=gcc
-fdiagnostics-show-option -fcolor-diagnostics -vectorize-loops -vectorize-slp
-o small.o -x c small.c 
1.      <eof> parser at end of file
2.      Per-module optimization passes
3.      Running pass 'CallGraph Pass Manager' on module 'small.c'.
4.      Running pass 'Simplify the CFG' on function '@f'
#0 0x00000000025341aa llvm::sys::PrintStackTrace(llvm::raw_ostream&)
/home/su/software/tmp/polly/llvm/lib/Support/Unix/Signals.inc:402:0
#1 0x000000000253235e llvm::sys::RunSignalHandlers()
/home/su/software/tmp/polly/llvm/lib/Support/Signals.cpp:50:0
#2 0x00000000025324c0 SignalHandler(int)
/home/su/software/tmp/polly/llvm/lib/Support/Unix/Signals.inc:242:0
#3 0x00007fcd7b42f330 __restore_rt
(/lib/x86_64-linux-gnu/libpthread.so.0+0x10330)
#4 0x00000000020899ec LookupBucketFor<const llvm::Value*>
/home/su/software/tmp/polly/llvm/include/llvm/ADT/DenseMap.h:596:0
#5 0x00000000020899ec llvm::DenseMapBase<llvm::DenseMap<llvm::Value*,
llvm::ValueAsMetadata*, llvm::DenseMapInfo<llvm::Value*>,
llvm::detail::DenseMapPair<llvm::Value*, llvm::ValueAsMetadata*> >,
llvm::Value*, llvm::ValueAsMetadata*, llvm::DenseMapInfo<llvm::Value*>,
llvm::detail::DenseMapPair<llvm::Value*, llvm::ValueAsMetadata*>
>::lookup(llvm::Value const*) const
/home/su/software/tmp/polly/llvm/include/llvm/ADT/DenseMap.h:183:0
#6 0x00000000020899ec llvm::ValueAsMetadata::getIfExists(llvm::Value*)
/home/su/software/tmp/polly/llvm/lib/IR/Metadata.cpp:370:0
#7 0x00000000025961b8 llvm::ValueAsMetadata::getLocalIfExists(llvm::Value*)
/home/su/software/tmp/polly/llvm/include/llvm/IR/Metadata.h:374:0
#8 0x00000000025961b8 llvm::LocalAsMetadata::getIfExists(llvm::Value*)
/home/su/software/tmp/polly/llvm/include/llvm/IR/Metadata.h:439:0
#9 0x00000000025961b8
llvm::findDbgValues(llvm::SmallVectorImpl<llvm::DbgValueInst*>&, llvm::Value*)
/home/su/software/tmp/polly/llvm/lib/Transforms/Utils/Local.cpp:1423:0
#10 0x0000000002547d6f llvm::MergeBlockIntoPredecessor(llvm::BasicBlock*,
llvm::DominatorTree*, llvm::LoopInfo*, llvm::MemoryDependenceResults*)
/home/su/software/tmp/polly/llvm/lib/Transforms/Utils/BasicBlockUtils.cpp:176:0
#11 0x0000000002609c9e run
/home/su/software/tmp/polly/llvm/lib/Transforms/Utils/SimplifyCFG.cpp:6042:0
#12 0x0000000002609c9e llvm::simplifyCFG(llvm::BasicBlock*,
llvm::TargetTransformInfo const&, llvm::SimplifyCFGOptions const&,
llvm::SmallPtrSetImpl<llvm::BasicBlock*>*)
/home/su/software/tmp/polly/llvm/lib/Transforms/Utils/SimplifyCFG.cpp:6093:0
#13 0x000000000249e397 iterativelySimplifyCFG(llvm::Function&,
llvm::TargetTransformInfo const&, llvm::SimplifyCFGOptions const&)
/home/su/software/tmp/polly/llvm/lib/Transforms/Scalar/SimplifyCFGPass.cpp:164:0
#14 0x000000000249e60a simplifyFunctionCFG(llvm::Function&,
llvm::TargetTransformInfo const&, llvm::SimplifyCFGOptions const&)
/home/su/software/tmp/polly/llvm/lib/Transforms/Scalar/SimplifyCFGPass.cpp:178:0
#15 0x00000000020815db llvm::FPPassManager::runOnFunction(llvm::Function&)
/home/su/software/tmp/polly/llvm/lib/IR/LegacyPassManager.cpp:1520:0
#16 0x0000000001b22356 RunPassOnSCC
/home/su/software/tmp/polly/llvm/lib/Analysis/CallGraphSCCPass.cpp:156:0
#17 0x0000000001b22356 RunAllPassesOnSCC
/home/su/software/tmp/polly/llvm/lib/Analysis/CallGraphSCCPass.cpp:424:0
#18 0x0000000001b22356 (anonymous
namespace)::CGPassManager::runOnModule(llvm::Module&)
/home/su/software/tmp/polly/llvm/lib/Analysis/CallGraphSCCPass.cpp:479:0
#19 0x00000000020822ea runOnModule
/home/su/software/tmp/polly/llvm/lib/IR/LegacyPassManager.cpp:1597:0
#20 0x00000000020822ea llvm::legacy::PassManagerImpl::run(llvm::Module&)
/home/su/software/tmp/polly/llvm/lib/IR/LegacyPassManager.cpp:1700:0
#21 0x00000000026e765d ~PrettyStackTraceString
/home/su/software/tmp/polly/llvm/include/llvm/Support/PrettyStackTrace.h:52:0
#22 0x00000000026e765d (anonymous
namespace)::EmitAssemblyHelper::EmitAssembly(clang::BackendAction,
std::unique_ptr<llvm::raw_pwrite_stream,
std::default_delete<llvm::raw_pwrite_stream> >)
/home/su/software/tmp/polly/llvm/tools/clang/lib/CodeGen/BackendUtil.cpp:815:0
#23 0x00000000026e8b34 ~unique_ptr /usr/include/c++/4.9/bits/unique_ptr.h:235:0
#24 0x00000000026e8b34 clang::EmitBackendOutput(clang::DiagnosticsEngine&,
clang::HeaderSearchOptions const&, clang::CodeGenOptions const&,
clang::TargetOptions const&, clang::LangOptions const&, llvm::DataLayout
const&, llvm::Module*, clang::BackendAction,
std::unique_ptr<llvm::raw_pwrite_stream,
std::default_delete<llvm::raw_pwrite_stream> >)
/home/su/software/tmp/polly/llvm/tools/clang/lib/CodeGen/BackendUtil.cpp:1220:0
#25 0x0000000002f4699c ~unique_ptr /usr/include/c++/4.9/bits/unique_ptr.h:235:0
#26 0x0000000002f4699c
clang::BackendConsumer::HandleTranslationUnit(clang::ASTContext&)
/home/su/software/tmp/polly/llvm/tools/clang/lib/CodeGen/CodeGenAction.cpp:294:0
#27 0x000000000346e24c clang::ParseAST(clang::Sema&, bool, bool)
/home/su/software/tmp/polly/llvm/tools/clang/lib/Parse/ParseAST.cpp:164:0
#28 0x0000000002f45e30 clang::CodeGenAction::ExecuteAction()
/home/su/software/tmp/polly/llvm/tools/clang/lib/CodeGen/CodeGenAction.cpp:1044:0
#29 0x0000000002aefd76 clang::FrontendAction::Execute()
/home/su/software/tmp/polly/llvm/tools/clang/lib/Frontend/FrontendAction.cpp:904:0
#30 0x0000000002ac2706
clang::CompilerInstance::ExecuteAction(clang::FrontendAction&)
/home/su/software/tmp/polly/llvm/tools/clang/lib/Frontend/CompilerInstance.cpp:990:0
#31 0x0000000002b87a31
clang::ExecuteCompilerInvocation(clang::CompilerInstance*)
/home/su/software/tmp/polly/llvm/tools/clang/lib/FrontendTool/ExecuteCompilerInvocation.cpp:255:0
#32 0x0000000000e04a30 cc1_main(llvm::ArrayRef<char const*>, char const*,
void*)
/home/su/software/tmp/polly/llvm/tools/clang/tools/driver/cc1_main.cpp:221:0
#33 0x0000000000d88621 ExecuteCC1Tool
/home/su/software/tmp/polly/llvm/tools/clang/tools/driver/driver.cpp:311:0
#34 0x0000000000d88621 main
/home/su/software/tmp/polly/llvm/tools/clang/tools/driver/driver.cpp:383:0
#35 0x00007fcd7a202f45 __libc_start_main
/build/eglibc-SvCtMH/eglibc-2.19/csu/libc-start.c:321:0
#36 0x0000000000e00829 _start
(/home/su/software/tmp/polly/llvm_build/bin/clang-6.0+0xe00829)
clang-6.0: error: unable to execute command: Segmentation fault (core dumped)
clang-6.0: error: clang frontend command failed due to signal (use -v to see
invocation)
clang version 7.0.0 (http://llvm.org/git/clang.git
3e76165c707ba9c0e7a1b061efc065446a1e1de1) (llvm/trunk 331142)
Target: x86_64-unknown-linux-gnu
Thread model: posix
InstalledDir: /home/su/bin
clang-6.0: note: diagnostic msg: PLEASE submit a bug report to
http://llvm.org/bugs/ and include the crash backtrace, preprocessed source, and
associated run script.
clang-6.0: note: diagnostic msg: 
********************

PLEASE ATTACH THE FOLLOWING FILES TO THE BUG REPORT:
Preprocessed source(s) and associated run script(s) are located at:
clang-6.0: note: diagnostic msg: /tmp/small-43a27e.c
clang-6.0: note: diagnostic msg: /tmp/small-43a27e.sh
clang-6.0: note: diagnostic msg: 

********************
$ 


-------------------------------------


short a;
static int b[7][9] = { { 4 } }, e;
int c, d, g, h;

void f ()
{
  short j;
  int t = 0;
L:
  if (c)
    e = 8;
  t;
  while (c)
    {
      int k = 0, i = 0;
      if (e)
        goto L;
      if (b[h][i])
        for (; g; g++)
          for (d = 0; d < 8;)
            {
              t = k;
              j = h ? a : a / h;
              k = j;
              d = 14;
            }
    }
}

-- 
You are receiving this mail because:
You are on the CC list for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.llvm.org/pipermail/llvm-bugs/attachments/20180501/35afdad5/attachment-0001.html>


More information about the llvm-bugs mailing list