src/HOL/Hoare/HeapSyntaxAbort.thy
author haftmann
Mon, 02 Aug 2021 10:01:06 +0000
changeset 74101 d804e93ae9ff
parent 72990 db8f94656024
permissions -rw-r--r--
moved theory Bit_Operations into Main corpus
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
41959
b460124855b8 tuned headers;
wenzelm
parents: 35316
diff changeset
     1
(*  Title:      HOL/Hoare/HeapSyntaxAbort.thy
13875
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
     2
    Author:     Tobias Nipkow
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
     3
    Copyright   2002 TUM
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
     4
*)
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
     5
72990
db8f94656024 tuned document, notably authors and sections;
wenzelm
parents: 69597
diff changeset
     6
section \<open>Heap syntax (abort)\<close>
db8f94656024 tuned document, notably authors and sections;
wenzelm
parents: 69597
diff changeset
     7
db8f94656024 tuned document, notably authors and sections;
wenzelm
parents: 69597
diff changeset
     8
theory HeapSyntaxAbort
db8f94656024 tuned document, notably authors and sections;
wenzelm
parents: 69597
diff changeset
     9
  imports Hoare_Logic_Abort Heap
db8f94656024 tuned document, notably authors and sections;
wenzelm
parents: 69597
diff changeset
    10
begin
13875
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    11
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    12
subsection "Field access and update"
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    13
69597
ff784d5a5bfb isabelle update -u control_cartouches;
wenzelm
parents: 62042
diff changeset
    14
text\<open>Heap update \<open>p^.h := e\<close> is now guarded against \<^term>\<open>p\<close>
ff784d5a5bfb isabelle update -u control_cartouches;
wenzelm
parents: 62042
diff changeset
    15
being Null. However, \<^term>\<open>p\<close> may still be illegal,
13875
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    16
e.g. uninitialized or dangling. To guard against that, one needs a
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    17
more detailed model of the heap where allocated and free addresses are
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    18
distinguished, e.g. by making the heap a map, or by carrying the set
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    19
of free addresses around. This is needed anyway as soon as we want to
62042
6c6ccf573479 isabelle update_cartouches -c -t;
wenzelm
parents: 41959
diff changeset
    20
reason about storage allocation/deallocation.\<close>
13875
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    21
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    22
syntax
35101
6ce9177d6b38 modernized translations;
wenzelm
parents: 16417
diff changeset
    23
  "_refupdate" :: "('a \<Rightarrow> 'b) \<Rightarrow> 'a ref \<Rightarrow> 'b \<Rightarrow> ('a \<Rightarrow> 'b)"
13875
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    24
   ("_/'((_ \<rightarrow> _)')" [1000,0] 900)
35101
6ce9177d6b38 modernized translations;
wenzelm
parents: 16417
diff changeset
    25
  "_fassign"  :: "'a ref => id => 'v => 's com"
13875
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    26
   ("(2_^._ :=/ _)" [70,1000,65] 61)
35101
6ce9177d6b38 modernized translations;
wenzelm
parents: 16417
diff changeset
    27
  "_faccess"  :: "'a ref => ('a ref \<Rightarrow> 'v) => 'v"
13875
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    28
   ("_^._" [65,1000] 65)
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    29
translations
35113
1a0c129bb2e0 modernized translations;
wenzelm
parents: 35101
diff changeset
    30
  "_refupdate f r v" == "f(CONST addr r := v)"
1a0c129bb2e0 modernized translations;
wenzelm
parents: 35101
diff changeset
    31
  "p^.f := e" => "(p \<noteq> CONST Null) \<rightarrow> (f := _refupdate f p e)"
1a0c129bb2e0 modernized translations;
wenzelm
parents: 35101
diff changeset
    32
  "p^.f" => "f(CONST addr p)"
13875
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    33
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    34
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    35
declare fun_upd_apply[simp del] fun_upd_same[simp] fun_upd_other[simp]
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    36
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    37
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    38
text "An example due to Suzuki:"
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    39
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    40
lemma "VARS v n
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    41
  {w = Ref w0 & x = Ref x0 & y = Ref y0 & z = Ref z0 &
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    42
   distinct[w0,x0,y0,z0]}
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    43
  w^.v := (1::int); w^.n := x;
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    44
  x^.v := 2; x^.n := y;
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    45
  y^.v := 3; y^.n := z;
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    46
  z^.v := 4; x^.n := z
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    47
  {w^.n^.n^.v = 4}"
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    48
by vcg_simp
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    49
12997e3ddd8d *** empty log message ***
nipkow
parents:
diff changeset
    50
end