|
1 |
| -unsigned char* block_int_ptr_to_block_uchar_arr(int **addr_p) |
2 |
| -/*@ |
3 |
| -trusted; |
4 |
| -
|
5 |
| -requires |
6 |
| - take P = Block<int*>(addr_p); |
7 |
| -
|
8 |
| -ensures |
9 |
| - ptr_eq(return, addr_p); |
10 |
| - take B = Block<unsigned char[sizeof(int*)]>(return); |
11 |
| -@*/ |
12 |
| -{ |
13 |
| - return (unsigned char*)addr_p; |
14 |
| -} |
15 |
| -unsigned char* owned_int_ptr_to_owned_uchar_arr(int **addr_p) |
16 |
| -/*@ |
17 |
| -trusted; |
18 |
| -
|
19 |
| -requires |
20 |
| - take P = Owned<int*>(addr_p); |
21 |
| -
|
22 |
| -ensures |
23 |
| - ptr_eq(return, addr_p); |
24 |
| - take B = Owned<unsigned char[(sizeof(int*))]>(return); |
25 |
| - (u64) P == shift_left((u64)B[7u64], 56u64) |
26 |
| - + shift_left((u64)B[6u64], 48u64) |
27 |
| - + shift_left((u64)B[5u64], 40u64) |
28 |
| - + shift_left((u64)B[4u64], 32u64) |
29 |
| - + shift_left((u64)B[3u64], 24u64) |
30 |
| - + shift_left((u64)B[2u64], 16u64) |
31 |
| - + shift_left((u64)B[1u64], 8u64) |
32 |
| - + (u64)B[0u64]; |
33 |
| -@*/ |
34 |
| -{ |
35 |
| - return (unsigned char*)addr_p; |
36 |
| -} |
37 |
| - |
38 |
| -unsigned char* owned_uintptr_t_to_owned_uchar_arr(uintptr_t *addr_p) |
39 |
| -/*@ |
40 |
| -trusted; |
41 |
| -
|
42 |
| -requires |
43 |
| - take P = Owned<uintptr_t>(addr_p); |
44 |
| -
|
45 |
| -ensures |
46 |
| - ptr_eq(return, addr_p); |
47 |
| - take B = Owned<unsigned char[(sizeof(uintptr_t))]>(return); |
48 |
| - (u64) P == shift_left((u64)B[7u64], 56u64) |
49 |
| - + shift_left((u64)B[6u64], 48u64) |
50 |
| - + shift_left((u64)B[5u64], 40u64) |
51 |
| - + shift_left((u64)B[4u64], 32u64) |
52 |
| - + shift_left((u64)B[3u64], 24u64) |
53 |
| - + shift_left((u64)B[2u64], 16u64) |
54 |
| - + shift_left((u64)B[1u64], 8u64) |
55 |
| - + (u64)B[0u64]; |
56 |
| -@*/ |
57 |
| -{ |
58 |
| - return (unsigned char*)addr_p; |
59 |
| -} |
60 |
| -/*@ |
61 |
| -lemma byte_ptr_to_int_ptr_ptr(pointer addr_p) |
62 |
| -
|
63 |
| -requires |
64 |
| - take B = Owned<unsigned char[(sizeof(int*))]>(addr_p); |
65 |
| -
|
66 |
| -ensures |
67 |
| - take P = Owned<int*>(addr_p); |
68 |
| - (u64) P == shift_left((u64)B[7u64], 56u64) |
69 |
| - + shift_left((u64)B[6u64], 48u64) |
70 |
| - + shift_left((u64)B[5u64], 40u64) |
71 |
| - + shift_left((u64)B[4u64], 32u64) |
72 |
| - + shift_left((u64)B[3u64], 24u64) |
73 |
| - + shift_left((u64)B[2u64], 16u64) |
74 |
| - + shift_left((u64)B[1u64], 8u64) |
75 |
| - + (u64)B[0u64]; |
76 |
| -@*/ |
77 |
| - |
78 |
| -/*@ |
79 |
| -lemma byte_ptr_to_uintptr_t(pointer addr_p) |
80 |
| -
|
81 |
| -requires |
82 |
| - take B = Owned<unsigned char[(sizeof(uintptr_t))]>(addr_p); |
83 |
| -
|
84 |
| -ensures |
85 |
| - take P = Owned<uintptr_t>(addr_p); |
86 |
| - (u64) P == shift_left((u64)B[7u64], 56u64) |
87 |
| - + shift_left((u64)B[6u64], 48u64) |
88 |
| - + shift_left((u64)B[5u64], 40u64) |
89 |
| - + shift_left((u64)B[4u64], 32u64) |
90 |
| - + shift_left((u64)B[3u64], 24u64) |
91 |
| - + shift_left((u64)B[2u64], 16u64) |
92 |
| - + shift_left((u64)B[1u64], 8u64) |
93 |
| - + (u64)B[0u64]; |
94 |
| -@*/ |
95 |
| - |
96 | 1 | /*@
|
97 | 2 | lemma byte_arrays_equal(pointer x, pointer y, u64 n)
|
98 | 3 |
|
@@ -151,4 +56,3 @@ requires
|
151 | 56 | ensures
|
152 | 57 | x == y;
|
153 | 58 | @*/
|
154 |
| - |
0 commit comments