xref: /freebsd/contrib/jemalloc/ChangeLog (revision 4198293b2568c3fa287e7bde71162e9d442f4305)
1Following are change highlights associated with official releases.  Important
2bug fixes are all mentioned, but some internal enhancements are omitted here for
3brevity.  Much more detail can be found in the git revision history:
4
5    https://github.com/jemalloc/jemalloc
6
7* 5.0.0 (June 13, 2017)
8
9  Unlike all previous jemalloc releases, this release does not use naturally
10  aligned "chunks" for virtual memory management, and instead uses page-aligned
11  "extents".  This change has few externally visible effects, but the internal
12  impacts are... extensive.  Many other internal changes combine to make this
13  the most cohesively designed version of jemalloc so far, with ample
14  opportunity for further enhancements.
15
16  Continuous integration is now an integral aspect of development thanks to the
17  efforts of @davidtgoldblatt, and the dev branch tends to remain reasonably
18  stable on the tested platforms (Linux, FreeBSD, macOS, and Windows).  As a
19  side effect the official release frequency may decrease over time.
20
21  New features:
22  - Implement optional per-CPU arena support; threads choose which arena to use
23    based on current CPU rather than on fixed thread-->arena associations.
24    (@interwq)
25  - Implement two-phase decay of unused dirty pages.  Pages transition from
26    dirty-->muzzy-->clean, where the first phase transition relies on
27    madvise(... MADV_FREE) semantics, and the second phase transition discards
28    pages such that they are replaced with demand-zeroed pages on next access.
29    (@jasone)
30  - Increase decay time resolution from seconds to milliseconds.  (@jasone)
31  - Implement opt-in per CPU background threads, and use them for asynchronous
32    decay-driven unused dirty page purging.  (@interwq)
33  - Add mutex profiling, which collects a variety of statistics useful for
34    diagnosing overhead/contention issues.  (@interwq)
35  - Add C++ new/delete operator bindings.  (@djwatson)
36  - Support manually created arena destruction, such that all data and metadata
37    are discarded.  Add MALLCTL_ARENAS_DESTROYED for accessing merged stats
38    associated with destroyed arenas.  (@jasone)
39  - Add MALLCTL_ARENAS_ALL as a fixed index for use in accessing
40    merged/destroyed arena statistics via mallctl.  (@jasone)
41  - Add opt.abort_conf to optionally abort if invalid configuration options are
42    detected during initialization.  (@interwq)
43  - Add opt.stats_print_opts, so that e.g. JSON output can be selected for the
44    stats dumped during exit if opt.stats_print is true.  (@jasone)
45  - Add --with-version=VERSION for use when embedding jemalloc into another
46    project's git repository.  (@jasone)
47  - Add --disable-thp to support cross compiling.  (@jasone)
48  - Add --with-lg-hugepage to support cross compiling.  (@jasone)
49  - Add mallctl interfaces (various authors):
50    + background_thread
51    + opt.abort_conf
52    + opt.retain
53    + opt.percpu_arena
54    + opt.background_thread
55    + opt.{dirty,muzzy}_decay_ms
56    + opt.stats_print_opts
57    + arena.<i>.initialized
58    + arena.<i>.destroy
59    + arena.<i>.{dirty,muzzy}_decay_ms
60    + arena.<i>.extent_hooks
61    + arenas.{dirty,muzzy}_decay_ms
62    + arenas.bin.<i>.slab_size
63    + arenas.nlextents
64    + arenas.lextent.<i>.size
65    + arenas.create
66    + stats.background_thread.{num_threads,num_runs,run_interval}
67    + stats.mutexes.{ctl,background_thread,prof,reset}.
68      {num_ops,num_spin_acq,num_wait,max_wait_time,total_wait_time,max_num_thds,
69      num_owner_switch}
70    + stats.arenas.<i>.{dirty,muzzy}_decay_ms
71    + stats.arenas.<i>.uptime
72    + stats.arenas.<i>.{pmuzzy,base,internal,resident}
73    + stats.arenas.<i>.{dirty,muzzy}_{npurge,nmadvise,purged}
74    + stats.arenas.<i>.bins.<j>.{nslabs,reslabs,curslabs}
75    + stats.arenas.<i>.bins.<j>.mutex.
76      {num_ops,num_spin_acq,num_wait,max_wait_time,total_wait_time,max_num_thds,
77      num_owner_switch}
78    + stats.arenas.<i>.lextents.<j>.{nmalloc,ndalloc,nrequests,curlextents}
79    + stats.arenas.i.mutexes.{large,extent_avail,extents_dirty,extents_muzzy,
80      extents_retained,decay_dirty,decay_muzzy,base,tcache_list}.
81      {num_ops,num_spin_acq,num_wait,max_wait_time,total_wait_time,max_num_thds,
82      num_owner_switch}
83
84  Portability improvements:
85  - Improve reentrant allocation support, such that deadlock is less likely if
86    e.g. a system library call in turn allocates memory.  (@davidtgoldblatt,
87    @interwq)
88  - Support static linking of jemalloc with glibc.  (@djwatson)
89
90  Optimizations and refactors:
91  - Organize virtual memory as "extents" of virtual memory pages, rather than as
92    naturally aligned "chunks", and store all metadata in arbitrarily distant
93    locations.  This reduces virtual memory external fragmentation, and will
94    interact better with huge pages (not yet explicitly supported).  (@jasone)
95  - Fold large and huge size classes together; only small and large size classes
96    remain.  (@jasone)
97  - Unify the allocation paths, and merge most fast-path branching decisions.
98    (@davidtgoldblatt, @interwq)
99  - Embed per thread automatic tcache into thread-specific data, which reduces
100    conditional branches and dereferences.  Also reorganize tcache to increase
101    fast-path data locality.  (@interwq)
102  - Rewrite atomics to closely model the C11 API, convert various
103    synchronization from mutex-based to atomic, and use the explicit memory
104    ordering control to resolve various hypothetical races without increasing
105    synchronization overhead.  (@davidtgoldblatt)
106  - Extensively optimize rtree via various methods:
107    + Add multiple layers of rtree lookup caching, since rtree lookups are now
108      part of fast-path deallocation.  (@interwq)
109    + Determine rtree layout at compile time.  (@jasone)
110    + Make the tree shallower for common configurations.  (@jasone)
111    + Embed the root node in the top-level rtree data structure, thus avoiding
112      one level of indirection.  (@jasone)
113    + Further specialize leaf elements as compared to internal node elements,
114      and directly embed extent metadata needed for fast-path deallocation.
115      (@jasone)
116    + Ignore leading always-zero address bits (architecture-specific).
117      (@jasone)
118  - Reorganize headers (ongoing work) to make them hermetic, and disentangle
119    various module dependencies.  (@davidtgoldblatt)
120  - Convert various internal data structures such as size class metadata from
121    boot-time-initialized to compile-time-initialized.  Propagate resulting data
122    structure simplifications, such as making arena metadata fixed-size.
123    (@jasone)
124  - Simplify size class lookups when constrained to size classes that are
125    multiples of the page size.  This speeds lookups, but the primary benefit is
126    complexity reduction in code that was the source of numerous regressions.
127    (@jasone)
128  - Lock individual extents when possible for localized extent operations,
129    rather than relying on a top-level arena lock.  (@davidtgoldblatt, @jasone)
130  - Use first fit layout policy instead of best fit, in order to improve
131    packing.  (@jasone)
132  - If munmap(2) is not in use, use an exponential series to grow each arena's
133    virtual memory, so that the number of disjoint virtual memory mappings
134    remains low.  (@jasone)
135  - Implement per arena base allocators, so that arenas never share any virtual
136    memory pages.  (@jasone)
137  - Automatically generate private symbol name mangling macros.  (@jasone)
138
139  Incompatible changes:
140  - Replace chunk hooks with an expanded/normalized set of extent hooks.
141    (@jasone)
142  - Remove ratio-based purging.  (@jasone)
143  - Remove --disable-tcache.  (@jasone)
144  - Remove --disable-tls.  (@jasone)
145  - Remove --enable-ivsalloc.  (@jasone)
146  - Remove --with-lg-size-class-group.  (@jasone)
147  - Remove --with-lg-tiny-min.  (@jasone)
148  - Remove --disable-cc-silence.  (@jasone)
149  - Remove --enable-code-coverage.  (@jasone)
150  - Remove --disable-munmap (replaced by opt.retain).  (@jasone)
151  - Remove Valgrind support.  (@jasone)
152  - Remove quarantine support.  (@jasone)
153  - Remove redzone support.  (@jasone)
154  - Remove mallctl interfaces (various authors):
155    + config.munmap
156    + config.tcache
157    + config.tls
158    + config.valgrind
159    + opt.lg_chunk
160    + opt.purge
161    + opt.lg_dirty_mult
162    + opt.decay_time
163    + opt.quarantine
164    + opt.redzone
165    + opt.thp
166    + arena.<i>.lg_dirty_mult
167    + arena.<i>.decay_time
168    + arena.<i>.chunk_hooks
169    + arenas.initialized
170    + arenas.lg_dirty_mult
171    + arenas.decay_time
172    + arenas.bin.<i>.run_size
173    + arenas.nlruns
174    + arenas.lrun.<i>.size
175    + arenas.nhchunks
176    + arenas.hchunk.<i>.size
177    + arenas.extend
178    + stats.cactive
179    + stats.arenas.<i>.lg_dirty_mult
180    + stats.arenas.<i>.decay_time
181    + stats.arenas.<i>.metadata.{mapped,allocated}
182    + stats.arenas.<i>.{npurge,nmadvise,purged}
183    + stats.arenas.<i>.huge.{allocated,nmalloc,ndalloc,nrequests}
184    + stats.arenas.<i>.bins.<j>.{nruns,reruns,curruns}
185    + stats.arenas.<i>.lruns.<j>.{nmalloc,ndalloc,nrequests,curruns}
186    + stats.arenas.<i>.hchunks.<j>.{nmalloc,ndalloc,nrequests,curhchunks}
187
188  Bug fixes:
189  - Improve interval-based profile dump triggering to dump only one profile when
190    a single allocation's size exceeds the interval.  (@jasone)
191  - Use prefixed function names (as controlled by --with-jemalloc-prefix) when
192    pruning backtrace frames in jeprof.  (@jasone)
193
194* 4.5.0 (February 28, 2017)
195
196  This is the first release to benefit from much broader continuous integration
197  testing, thanks to @davidtgoldblatt.  Had we had this testing infrastructure
198  in place for prior releases, it would have caught all of the most serious
199  regressions fixed by this release.
200
201  New features:
202  - Add --disable-thp and the opt.thp mallctl to provide opt-out mechanisms for
203    transparent huge page integration.  (@jasone)
204  - Update zone allocator integration to work with macOS 10.12.  (@glandium)
205  - Restructure *CFLAGS configuration, so that CFLAGS behaves typically, and
206    EXTRA_CFLAGS provides a way to specify e.g. -Werror during building, but not
207    during configuration.  (@jasone, @ronawho)
208
209  Bug fixes:
210  - Fix DSS (sbrk(2)-based) allocation.  This regression was first released in
211    4.3.0.  (@jasone)
212  - Handle race in per size class utilization computation.  This functionality
213    was first released in 4.0.0.  (@interwq)
214  - Fix lock order reversal during gdump.  (@jasone)
215  - Fix/refactor tcache synchronization.  This regression was first released in
216    4.0.0.  (@jasone)
217  - Fix various JSON-formatted malloc_stats_print() bugs.  This functionality
218    was first released in 4.3.0.  (@jasone)
219  - Fix huge-aligned allocation.  This regression was first released in 4.4.0.
220    (@jasone)
221  - When transparent huge page integration is enabled, detect what state pages
222    start in according to the kernel's current operating mode, and only convert
223    arena chunks to non-huge during purging if that is not their initial state.
224    This functionality was first released in 4.4.0.  (@jasone)
225  - Fix lg_chunk clamping for the --enable-cache-oblivious --disable-fill case.
226    This regression was first released in 4.0.0.  (@jasone, @428desmo)
227  - Properly detect sparc64 when building for Linux.  (@glaubitz)
228
229* 4.4.0 (December 3, 2016)
230
231  New features:
232  - Add configure support for *-*-linux-android.  (@cferris1000, @jasone)
233  - Add the --disable-syscall configure option, for use on systems that place
234    security-motivated limitations on syscall(2).  (@jasone)
235  - Add support for Debian GNU/kFreeBSD.  (@thesam)
236
237  Optimizations:
238  - Add extent serial numbers and use them where appropriate as a sort key that
239    is higher priority than address, so that the allocation policy prefers older
240    extents.  This tends to improve locality (decrease fragmentation) when
241    memory grows downward.  (@jasone)
242  - Refactor madvise(2) configuration so that MADV_FREE is detected and utilized
243    on Linux 4.5 and newer.  (@jasone)
244  - Mark partially purged arena chunks as non-huge-page.  This improves
245    interaction with Linux's transparent huge page functionality.  (@jasone)
246
247  Bug fixes:
248  - Fix size class computations for edge conditions involving extremely large
249    allocations.  This regression was first released in 4.0.0.  (@jasone,
250    @ingvarha)
251  - Remove overly restrictive assertions related to the cactive statistic.  This
252    regression was first released in 4.1.0.  (@jasone)
253  - Implement a more reliable detection scheme for os_unfair_lock on macOS.
254    (@jszakmeister)
255
256* 4.3.1 (November 7, 2016)
257
258  Bug fixes:
259  - Fix a severe virtual memory leak.  This regression was first released in
260    4.3.0.  (@interwq, @jasone)
261  - Refactor atomic and prng APIs to restore support for 32-bit platforms that
262    use pre-C11 toolchains, e.g. FreeBSD's mips.  (@jasone)
263
264* 4.3.0 (November 4, 2016)
265
266  This is the first release that passes the test suite for multiple Windows
267  configurations, thanks in large part to @glandium setting up continuous
268  integration via AppVeyor (and Travis CI for Linux and OS X).
269
270  New features:
271  - Add "J" (JSON) support to malloc_stats_print().  (@jasone)
272  - Add Cray compiler support.  (@ronawho)
273
274  Optimizations:
275  - Add/use adaptive spinning for bootstrapping and radix tree node
276    initialization.  (@jasone)
277
278  Bug fixes:
279  - Fix large allocation to search starting in the optimal size class heap,
280    which can substantially reduce virtual memory churn and fragmentation.  This
281    regression was first released in 4.0.0.  (@mjp41, @jasone)
282  - Fix stats.arenas.<i>.nthreads accounting.  (@interwq)
283  - Fix and simplify decay-based purging.  (@jasone)
284  - Make DSS (sbrk(2)-related) operations lockless, which resolves potential
285    deadlocks during thread exit.  (@jasone)
286  - Fix over-sized allocation of radix tree leaf nodes.  (@mjp41, @ogaun,
287    @jasone)
288  - Fix over-sized allocation of arena_t (plus associated stats) data
289    structures.  (@jasone, @interwq)
290  - Fix EXTRA_CFLAGS to not affect configuration.  (@jasone)
291  - Fix a Valgrind integration bug.  (@ronawho)
292  - Disallow 0x5a junk filling when running in Valgrind.  (@jasone)
293  - Fix a file descriptor leak on Linux.  This regression was first released in
294    4.2.0.  (@vsarunas, @jasone)
295  - Fix static linking of jemalloc with glibc.  (@djwatson)
296  - Use syscall(2) rather than {open,read,close}(2) during boot on Linux.  This
297    works around other libraries' system call wrappers performing reentrant
298    allocation.  (@kspinka, @Whissi, @jasone)
299  - Fix OS X default zone replacement to work with OS X 10.12.  (@glandium,
300    @jasone)
301  - Fix cached memory management to avoid needless commit/decommit operations
302    during purging, which resolves permanent virtual memory map fragmentation
303    issues on Windows.  (@mjp41, @jasone)
304  - Fix TSD fetches to avoid (recursive) allocation.  This is relevant to
305    non-TLS and Windows configurations.  (@jasone)
306  - Fix malloc_conf overriding to work on Windows.  (@jasone)
307  - Forcibly disable lazy-lock on Windows (was forcibly *enabled*).  (@jasone)
308
309* 4.2.1 (June 8, 2016)
310
311  Bug fixes:
312  - Fix bootstrapping issues for configurations that require allocation during
313    tsd initialization (e.g. --disable-tls).  (@cferris1000, @jasone)
314  - Fix gettimeofday() version of nstime_update().  (@ronawho)
315  - Fix Valgrind regressions in calloc() and chunk_alloc_wrapper().  (@ronawho)
316  - Fix potential VM map fragmentation regression.  (@jasone)
317  - Fix opt_zero-triggered in-place huge reallocation zeroing.  (@jasone)
318  - Fix heap profiling context leaks in reallocation edge cases.  (@jasone)
319
320* 4.2.0 (May 12, 2016)
321
322  New features:
323  - Add the arena.<i>.reset mallctl, which makes it possible to discard all of
324    an arena's allocations in a single operation.  (@jasone)
325  - Add the stats.retained and stats.arenas.<i>.retained statistics.  (@jasone)
326  - Add the --with-version configure option.  (@jasone)
327  - Support --with-lg-page values larger than actual page size.  (@jasone)
328
329  Optimizations:
330  - Use pairing heaps rather than red-black trees for various hot data
331    structures.  (@djwatson, @jasone)
332  - Streamline fast paths of rtree operations.  (@jasone)
333  - Optimize the fast paths of calloc() and [m,d,sd]allocx().  (@jasone)
334  - Decommit unused virtual memory if the OS does not overcommit.  (@jasone)
335  - Specify MAP_NORESERVE on Linux if [heuristic] overcommit is active, in order
336    to avoid unfortunate interactions during fork(2).  (@jasone)
337
338  Bug fixes:
339  - Fix chunk accounting related to triggering gdump profiles.  (@jasone)
340  - Link against librt for clock_gettime(2) if glibc < 2.17.  (@jasone)
341  - Scale leak report summary according to sampling probability.  (@jasone)
342
343* 4.1.1 (May 3, 2016)
344
345  This bugfix release resolves a variety of mostly minor issues, though the
346  bitmap fix is critical for 64-bit Windows.
347
348  Bug fixes:
349  - Fix the linear scan version of bitmap_sfu() to shift by the proper amount
350    even when sizeof(long) is not the same as sizeof(void *), as on 64-bit
351    Windows.  (@jasone)
352  - Fix hashing functions to avoid unaligned memory accesses (and resulting
353    crashes).  This is relevant at least to some ARM-based platforms.
354    (@rkmisra)
355  - Fix fork()-related lock rank ordering reversals.  These reversals were
356    unlikely to cause deadlocks in practice except when heap profiling was
357    enabled and active.  (@jasone)
358  - Fix various chunk leaks in OOM code paths.  (@jasone)
359  - Fix malloc_stats_print() to print opt.narenas correctly.  (@jasone)
360  - Fix MSVC-specific build/test issues.  (@rustyx, @yuslepukhin)
361  - Fix a variety of test failures that were due to test fragility rather than
362    core bugs.  (@jasone)
363
364* 4.1.0 (February 28, 2016)
365
366  This release is primarily about optimizations, but it also incorporates a lot
367  of portability-motivated refactoring and enhancements.  Many people worked on
368  this release, to an extent that even with the omission here of minor changes
369  (see git revision history), and of the people who reported and diagnosed
370  issues, so much of the work was contributed that starting with this release,
371  changes are annotated with author credits to help reflect the collaborative
372  effort involved.
373
374  New features:
375  - Implement decay-based unused dirty page purging, a major optimization with
376    mallctl API impact.  This is an alternative to the existing ratio-based
377    unused dirty page purging, and is intended to eventually become the sole
378    purging mechanism.  New mallctls:
379    + opt.purge
380    + opt.decay_time
381    + arena.<i>.decay
382    + arena.<i>.decay_time
383    + arenas.decay_time
384    + stats.arenas.<i>.decay_time
385    (@jasone, @cevans87)
386  - Add --with-malloc-conf, which makes it possible to embed a default
387    options string during configuration.  This was motivated by the desire to
388    specify --with-malloc-conf=purge:decay , since the default must remain
389    purge:ratio until the 5.0.0 release.  (@jasone)
390  - Add MS Visual Studio 2015 support.  (@rustyx, @yuslepukhin)
391  - Make *allocx() size class overflow behavior defined.  The maximum
392    size class is now less than PTRDIFF_MAX to protect applications against
393    numerical overflow, and all allocation functions are guaranteed to indicate
394    errors rather than potentially crashing if the request size exceeds the
395    maximum size class.  (@jasone)
396  - jeprof:
397    + Add raw heap profile support.  (@jasone)
398    + Add --retain and --exclude for backtrace symbol filtering.  (@jasone)
399
400  Optimizations:
401  - Optimize the fast path to combine various bootstrapping and configuration
402    checks and execute more streamlined code in the common case.  (@interwq)
403  - Use linear scan for small bitmaps (used for small object tracking).  In
404    addition to speeding up bitmap operations on 64-bit systems, this reduces
405    allocator metadata overhead by approximately 0.2%.  (@djwatson)
406  - Separate arena_avail trees, which substantially speeds up run tree
407    operations.  (@djwatson)
408  - Use memoization (boot-time-computed table) for run quantization.  Separate
409    arena_avail trees reduced the importance of this optimization.  (@jasone)
410  - Attempt mmap-based in-place huge reallocation.  This can dramatically speed
411    up incremental huge reallocation.  (@jasone)
412
413  Incompatible changes:
414  - Make opt.narenas unsigned rather than size_t.  (@jasone)
415
416  Bug fixes:
417  - Fix stats.cactive accounting regression.  (@rustyx, @jasone)
418  - Handle unaligned keys in hash().  This caused problems for some ARM systems.
419    (@jasone, @cferris1000)
420  - Refactor arenas array.  In addition to fixing a fork-related deadlock, this
421    makes arena lookups faster and simpler.  (@jasone)
422  - Move retained memory allocation out of the default chunk allocation
423    function, to a location that gets executed even if the application installs
424    a custom chunk allocation function.  This resolves a virtual memory leak.
425    (@buchgr)
426  - Fix a potential tsd cleanup leak.  (@cferris1000, @jasone)
427  - Fix run quantization.  In practice this bug had no impact unless
428    applications requested memory with alignment exceeding one page.
429    (@jasone, @djwatson)
430  - Fix LinuxThreads-specific bootstrapping deadlock.  (Cosmin Paraschiv)
431  - jeprof:
432    + Don't discard curl options if timeout is not defined.  (@djwatson)
433    + Detect failed profile fetches.  (@djwatson)
434  - Fix stats.arenas.<i>.{dss,lg_dirty_mult,decay_time,pactive,pdirty} for
435    --disable-stats case.  (@jasone)
436
437* 4.0.4 (October 24, 2015)
438
439  This bugfix release fixes another xallocx() regression.  No other regressions
440  have come to light in over a month, so this is likely a good starting point
441  for people who prefer to wait for "dot one" releases with all the major issues
442  shaken out.
443
444  Bug fixes:
445  - Fix xallocx(..., MALLOCX_ZERO to zero the last full trailing page of large
446    allocations that have been randomly assigned an offset of 0 when
447    --enable-cache-oblivious configure option is enabled.
448
449* 4.0.3 (September 24, 2015)
450
451  This bugfix release continues the trend of xallocx() and heap profiling fixes.
452
453  Bug fixes:
454  - Fix xallocx(..., MALLOCX_ZERO) to zero all trailing bytes of large
455    allocations when --enable-cache-oblivious configure option is enabled.
456  - Fix xallocx(..., MALLOCX_ZERO) to zero trailing bytes of huge allocations
457    when resizing from/to a size class that is not a multiple of the chunk size.
458  - Fix prof_tctx_dump_iter() to filter out nodes that were created after heap
459    profile dumping started.
460  - Work around a potentially bad thread-specific data initialization
461    interaction with NPTL (glibc's pthreads implementation).
462
463* 4.0.2 (September 21, 2015)
464
465  This bugfix release addresses a few bugs specific to heap profiling.
466
467  Bug fixes:
468  - Fix ixallocx_prof_sample() to never modify nor create sampled small
469    allocations.  xallocx() is in general incapable of moving small allocations,
470    so this fix removes buggy code without loss of generality.
471  - Fix irallocx_prof_sample() to always allocate large regions, even when
472    alignment is non-zero.
473  - Fix prof_alloc_rollback() to read tdata from thread-specific data rather
474    than dereferencing a potentially invalid tctx.
475
476* 4.0.1 (September 15, 2015)
477
478  This is a bugfix release that is somewhat high risk due to the amount of
479  refactoring required to address deep xallocx() problems.  As a side effect of
480  these fixes, xallocx() now tries harder to partially fulfill requests for
481  optional extra space.  Note that a couple of minor heap profiling
482  optimizations are included, but these are better thought of as performance
483  fixes that were integral to disovering most of the other bugs.
484
485  Optimizations:
486  - Avoid a chunk metadata read in arena_prof_tctx_set(), since it is in the
487    fast path when heap profiling is enabled.  Additionally, split a special
488    case out into arena_prof_tctx_reset(), which also avoids chunk metadata
489    reads.
490  - Optimize irallocx_prof() to optimistically update the sampler state.  The
491    prior implementation appears to have been a holdover from when
492    rallocx()/xallocx() functionality was combined as rallocm().
493
494  Bug fixes:
495  - Fix TLS configuration such that it is enabled by default for platforms on
496    which it works correctly.
497  - Fix arenas_cache_cleanup() and arena_get_hard() to handle
498    allocation/deallocation within the application's thread-specific data
499    cleanup functions even after arenas_cache is torn down.
500  - Fix xallocx() bugs related to size+extra exceeding HUGE_MAXCLASS.
501  - Fix chunk purge hook calls for in-place huge shrinking reallocation to
502    specify the old chunk size rather than the new chunk size.  This bug caused
503    no correctness issues for the default chunk purge function, but was
504    visible to custom functions set via the "arena.<i>.chunk_hooks" mallctl.
505  - Fix heap profiling bugs:
506    + Fix heap profiling to distinguish among otherwise identical sample sites
507      with interposed resets (triggered via the "prof.reset" mallctl).  This bug
508      could cause data structure corruption that would most likely result in a
509      segfault.
510    + Fix irealloc_prof() to prof_alloc_rollback() on OOM.
511    + Make one call to prof_active_get_unlocked() per allocation event, and use
512      the result throughout the relevant functions that handle an allocation
513      event.  Also add a missing check in prof_realloc().  These fixes protect
514      allocation events against concurrent prof_active changes.
515    + Fix ixallocx_prof() to pass usize_max and zero to ixallocx_prof_sample()
516      in the correct order.
517    + Fix prof_realloc() to call prof_free_sampled_object() after calling
518      prof_malloc_sample_object().  Prior to this fix, if tctx and old_tctx were
519      the same, the tctx could have been prematurely destroyed.
520  - Fix portability bugs:
521    + Don't bitshift by negative amounts when encoding/decoding run sizes in
522      chunk header maps.  This affected systems with page sizes greater than 8
523      KiB.
524    + Rename index_t to szind_t to avoid an existing type on Solaris.
525    + Add JEMALLOC_CXX_THROW to the memalign() function prototype, in order to
526      match glibc and avoid compilation errors when including both
527      jemalloc/jemalloc.h and malloc.h in C++ code.
528    + Don't assume that /bin/sh is appropriate when running size_classes.sh
529      during configuration.
530    + Consider __sparcv9 a synonym for __sparc64__ when defining LG_QUANTUM.
531    + Link tests to librt if it contains clock_gettime(2).
532
533* 4.0.0 (August 17, 2015)
534
535  This version contains many speed and space optimizations, both minor and
536  major.  The major themes are generalization, unification, and simplification.
537  Although many of these optimizations cause no visible behavior change, their
538  cumulative effect is substantial.
539
540  New features:
541  - Normalize size class spacing to be consistent across the complete size
542    range.  By default there are four size classes per size doubling, but this
543    is now configurable via the --with-lg-size-class-group option.  Also add the
544    --with-lg-page, --with-lg-page-sizes, --with-lg-quantum, and
545    --with-lg-tiny-min options, which can be used to tweak page and size class
546    settings.  Impacts:
547    + Worst case performance for incrementally growing/shrinking reallocation
548      is improved because there are far fewer size classes, and therefore
549      copying happens less often.
550    + Internal fragmentation is limited to 20% for all but the smallest size
551      classes (those less than four times the quantum).  (1B + 4 KiB)
552      and (1B + 4 MiB) previously suffered nearly 50% internal fragmentation.
553    + Chunk fragmentation tends to be lower because there are fewer distinct run
554      sizes to pack.
555  - Add support for explicit tcaches.  The "tcache.create", "tcache.flush", and
556    "tcache.destroy" mallctls control tcache lifetime and flushing, and the
557    MALLOCX_TCACHE(tc) and MALLOCX_TCACHE_NONE flags to the *allocx() API
558    control which tcache is used for each operation.
559  - Implement per thread heap profiling, as well as the ability to
560    enable/disable heap profiling on a per thread basis.  Add the "prof.reset",
561    "prof.lg_sample", "thread.prof.name", "thread.prof.active",
562    "opt.prof_thread_active_init", "prof.thread_active_init", and
563    "thread.prof.active" mallctls.
564  - Add support for per arena application-specified chunk allocators, configured
565    via the "arena.<i>.chunk_hooks" mallctl.
566  - Refactor huge allocation to be managed by arenas, so that arenas now
567    function as general purpose independent allocators.  This is important in
568    the context of user-specified chunk allocators, aside from the scalability
569    benefits.  Related new statistics:
570    + The "stats.arenas.<i>.huge.allocated", "stats.arenas.<i>.huge.nmalloc",
571      "stats.arenas.<i>.huge.ndalloc", and "stats.arenas.<i>.huge.nrequests"
572      mallctls provide high level per arena huge allocation statistics.
573    + The "arenas.nhchunks", "arenas.hchunk.<i>.size",
574      "stats.arenas.<i>.hchunks.<j>.nmalloc",
575      "stats.arenas.<i>.hchunks.<j>.ndalloc",
576      "stats.arenas.<i>.hchunks.<j>.nrequests", and
577      "stats.arenas.<i>.hchunks.<j>.curhchunks" mallctls provide per size class
578      statistics.
579  - Add the 'util' column to malloc_stats_print() output, which reports the
580    proportion of available regions that are currently in use for each small
581    size class.
582  - Add "alloc" and "free" modes for for junk filling (see the "opt.junk"
583    mallctl), so that it is possible to separately enable junk filling for
584    allocation versus deallocation.
585  - Add the jemalloc-config script, which provides information about how
586    jemalloc was configured, and how to integrate it into application builds.
587  - Add metadata statistics, which are accessible via the "stats.metadata",
588    "stats.arenas.<i>.metadata.mapped", and
589    "stats.arenas.<i>.metadata.allocated" mallctls.
590  - Add the "stats.resident" mallctl, which reports the upper limit of
591    physically resident memory mapped by the allocator.
592  - Add per arena control over unused dirty page purging, via the
593    "arenas.lg_dirty_mult", "arena.<i>.lg_dirty_mult", and
594    "stats.arenas.<i>.lg_dirty_mult" mallctls.
595  - Add the "prof.gdump" mallctl, which makes it possible to toggle the gdump
596    feature on/off during program execution.
597  - Add sdallocx(), which implements sized deallocation.  The primary
598    optimization over dallocx() is the removal of a metadata read, which often
599    suffers an L1 cache miss.
600  - Add missing header includes in jemalloc/jemalloc.h, so that applications
601    only have to #include <jemalloc/jemalloc.h>.
602  - Add support for additional platforms:
603    + Bitrig
604    + Cygwin
605    + DragonFlyBSD
606    + iOS
607    + OpenBSD
608    + OpenRISC/or1k
609
610  Optimizations:
611  - Maintain dirty runs in per arena LRUs rather than in per arena trees of
612    dirty-run-containing chunks.  In practice this change significantly reduces
613    dirty page purging volume.
614  - Integrate whole chunks into the unused dirty page purging machinery.  This
615    reduces the cost of repeated huge allocation/deallocation, because it
616    effectively introduces a cache of chunks.
617  - Split the arena chunk map into two separate arrays, in order to increase
618    cache locality for the frequently accessed bits.
619  - Move small run metadata out of runs, into arena chunk headers.  This reduces
620    run fragmentation, smaller runs reduce external fragmentation for small size
621    classes, and packed (less uniformly aligned) metadata layout improves CPU
622    cache set distribution.
623  - Randomly distribute large allocation base pointer alignment relative to page
624    boundaries in order to more uniformly utilize CPU cache sets.  This can be
625    disabled via the --disable-cache-oblivious configure option, and queried via
626    the "config.cache_oblivious" mallctl.
627  - Micro-optimize the fast paths for the public API functions.
628  - Refactor thread-specific data to reside in a single structure.  This assures
629    that only a single TLS read is necessary per call into the public API.
630  - Implement in-place huge allocation growing and shrinking.
631  - Refactor rtree (radix tree for chunk lookups) to be lock-free, and make
632    additional optimizations that reduce maximum lookup depth to one or two
633    levels.  This resolves what was a concurrency bottleneck for per arena huge
634    allocation, because a global data structure is critical for determining
635    which arenas own which huge allocations.
636
637  Incompatible changes:
638  - Replace --enable-cc-silence with --disable-cc-silence to suppress spurious
639    warnings by default.
640  - Assure that the constness of malloc_usable_size()'s return type matches that
641    of the system implementation.
642  - Change the heap profile dump format to support per thread heap profiling,
643    rename pprof to jeprof, and enhance it with the --thread=<n> option.  As a
644    result, the bundled jeprof must now be used rather than the upstream
645    (gperftools) pprof.
646  - Disable "opt.prof_final" by default, in order to avoid atexit(3), which can
647    internally deadlock on some platforms.
648  - Change the "arenas.nlruns" mallctl type from size_t to unsigned.
649  - Replace the "stats.arenas.<i>.bins.<j>.allocated" mallctl with
650    "stats.arenas.<i>.bins.<j>.curregs".
651  - Ignore MALLOC_CONF in set{uid,gid,cap} binaries.
652  - Ignore MALLOCX_ARENA(a) in dallocx(), in favor of using the
653    MALLOCX_TCACHE(tc) and MALLOCX_TCACHE_NONE flags to control tcache usage.
654
655  Removed features:
656  - Remove the *allocm() API, which is superseded by the *allocx() API.
657  - Remove the --enable-dss options, and make dss non-optional on all platforms
658    which support sbrk(2).
659  - Remove the "arenas.purge" mallctl, which was obsoleted by the
660    "arena.<i>.purge" mallctl in 3.1.0.
661  - Remove the unnecessary "opt.valgrind" mallctl; jemalloc automatically
662    detects whether it is running inside Valgrind.
663  - Remove the "stats.huge.allocated", "stats.huge.nmalloc", and
664    "stats.huge.ndalloc" mallctls.
665  - Remove the --enable-mremap option.
666  - Remove the "stats.chunks.current", "stats.chunks.total", and
667    "stats.chunks.high" mallctls.
668
669  Bug fixes:
670  - Fix the cactive statistic to decrease (rather than increase) when active
671    memory decreases.  This regression was first released in 3.5.0.
672  - Fix OOM handling in memalign() and valloc().  A variant of this bug existed
673    in all releases since 2.0.0, which introduced these functions.
674  - Fix an OOM-related regression in arena_tcache_fill_small(), which could
675    cause cache corruption on OOM.  This regression was present in all releases
676    from 2.2.0 through 3.6.0.
677  - Fix size class overflow handling for malloc(), posix_memalign(), memalign(),
678    calloc(), and realloc() when profiling is enabled.
679  - Fix the "arena.<i>.dss" mallctl to return an error if "primary" or
680    "secondary" precedence is specified, but sbrk(2) is not supported.
681  - Fix fallback lg_floor() implementations to handle extremely large inputs.
682  - Ensure the default purgeable zone is after the default zone on OS X.
683  - Fix latent bugs in atomic_*().
684  - Fix the "arena.<i>.dss" mallctl to handle read-only calls.
685  - Fix tls_model configuration to enable the initial-exec model when possible.
686  - Mark malloc_conf as a weak symbol so that the application can override it.
687  - Correctly detect glibc's adaptive pthread mutexes.
688  - Fix the --without-export configure option.
689
690* 3.6.0 (March 31, 2014)
691
692  This version contains a critical bug fix for a regression present in 3.5.0 and
693  3.5.1.
694
695  Bug fixes:
696  - Fix a regression in arena_chunk_alloc() that caused crashes during
697    small/large allocation if chunk allocation failed.  In the absence of this
698    bug, chunk allocation failure would result in allocation failure, e.g.  NULL
699    return from malloc().  This regression was introduced in 3.5.0.
700  - Fix backtracing for gcc intrinsics-based backtracing by specifying
701    -fno-omit-frame-pointer to gcc.  Note that the application (and all the
702    libraries it links to) must also be compiled with this option for
703    backtracing to be reliable.
704  - Use dss allocation precedence for huge allocations as well as small/large
705    allocations.
706  - Fix test assertion failure message formatting.  This bug did not manifest on
707    x86_64 systems because of implementation subtleties in va_list.
708  - Fix inconsequential test failures for hash and SFMT code.
709
710  New features:
711  - Support heap profiling on FreeBSD.  This feature depends on the proc
712    filesystem being mounted during heap profile dumping.
713
714* 3.5.1 (February 25, 2014)
715
716  This version primarily addresses minor bugs in test code.
717
718  Bug fixes:
719  - Configure Solaris/Illumos to use MADV_FREE.
720  - Fix junk filling for mremap(2)-based huge reallocation.  This is only
721    relevant if configuring with the --enable-mremap option specified.
722  - Avoid compilation failure if 'restrict' C99 keyword is not supported by the
723    compiler.
724  - Add a configure test for SSE2 rather than assuming it is usable on i686
725    systems.  This fixes test compilation errors, especially on 32-bit Linux
726    systems.
727  - Fix mallctl argument size mismatches (size_t vs. uint64_t) in the stats unit
728    test.
729  - Fix/remove flawed alignment-related overflow tests.
730  - Prevent compiler optimizations that could change backtraces in the
731    prof_accum unit test.
732
733* 3.5.0 (January 22, 2014)
734
735  This version focuses on refactoring and automated testing, though it also
736  includes some non-trivial heap profiling optimizations not mentioned below.
737
738  New features:
739  - Add the *allocx() API, which is a successor to the experimental *allocm()
740    API.  The *allocx() functions are slightly simpler to use because they have
741    fewer parameters, they directly return the results of primary interest, and
742    mallocx()/rallocx() avoid the strict aliasing pitfall that
743    allocm()/rallocm() share with posix_memalign().  Note that *allocm() is
744    slated for removal in the next non-bugfix release.
745  - Add support for LinuxThreads.
746
747  Bug fixes:
748  - Unless heap profiling is enabled, disable floating point code and don't link
749    with libm.  This, in combination with e.g. EXTRA_CFLAGS=-mno-sse on x64
750    systems, makes it possible to completely disable floating point register
751    use.  Some versions of glibc neglect to save/restore caller-saved floating
752    point registers during dynamic lazy symbol loading, and the symbol loading
753    code uses whatever malloc the application happens to have linked/loaded
754    with, the result being potential floating point register corruption.
755  - Report ENOMEM rather than EINVAL if an OOM occurs during heap profiling
756    backtrace creation in imemalign().  This bug impacted posix_memalign() and
757    aligned_alloc().
758  - Fix a file descriptor leak in a prof_dump_maps() error path.
759  - Fix prof_dump() to close the dump file descriptor for all relevant error
760    paths.
761  - Fix rallocm() to use the arena specified by the ALLOCM_ARENA(s) flag for
762    allocation, not just deallocation.
763  - Fix a data race for large allocation stats counters.
764  - Fix a potential infinite loop during thread exit.  This bug occurred on
765    Solaris, and could affect other platforms with similar pthreads TSD
766    implementations.
767  - Don't junk-fill reallocations unless usable size changes.  This fixes a
768    violation of the *allocx()/*allocm() semantics.
769  - Fix growing large reallocation to junk fill new space.
770  - Fix huge deallocation to junk fill when munmap is disabled.
771  - Change the default private namespace prefix from empty to je_, and change
772    --with-private-namespace-prefix so that it prepends an additional prefix
773    rather than replacing je_.  This reduces the likelihood of applications
774    which statically link jemalloc experiencing symbol name collisions.
775  - Add missing private namespace mangling (relevant when
776    --with-private-namespace is specified).
777  - Add and use JEMALLOC_INLINE_C so that static inline functions are marked as
778    static even for debug builds.
779  - Add a missing mutex unlock in a malloc_init_hard() error path.  In practice
780    this error path is never executed.
781  - Fix numerous bugs in malloc_strotumax() error handling/reporting.  These
782    bugs had no impact except for malformed inputs.
783  - Fix numerous bugs in malloc_snprintf().  These bugs were not exercised by
784    existing calls, so they had no impact.
785
786* 3.4.1 (October 20, 2013)
787
788  Bug fixes:
789  - Fix a race in the "arenas.extend" mallctl that could cause memory corruption
790    of internal data structures and subsequent crashes.
791  - Fix Valgrind integration flaws that caused Valgrind warnings about reads of
792    uninitialized memory in:
793    + arena chunk headers
794    + internal zero-initialized data structures (relevant to tcache and prof
795      code)
796  - Preserve errno during the first allocation.  A readlink(2) call during
797    initialization fails unless /etc/malloc.conf exists, so errno was typically
798    set during the first allocation prior to this fix.
799  - Fix compilation warnings reported by gcc 4.8.1.
800
801* 3.4.0 (June 2, 2013)
802
803  This version is essentially a small bugfix release, but the addition of
804  aarch64 support requires that the minor version be incremented.
805
806  Bug fixes:
807  - Fix race-triggered deadlocks in chunk_record().  These deadlocks were
808    typically triggered by multiple threads concurrently deallocating huge
809    objects.
810
811  New features:
812  - Add support for the aarch64 architecture.
813
814* 3.3.1 (March 6, 2013)
815
816  This version fixes bugs that are typically encountered only when utilizing
817  custom run-time options.
818
819  Bug fixes:
820  - Fix a locking order bug that could cause deadlock during fork if heap
821    profiling were enabled.
822  - Fix a chunk recycling bug that could cause the allocator to lose track of
823    whether a chunk was zeroed.  On FreeBSD, NetBSD, and OS X, it could cause
824    corruption if allocating via sbrk(2) (unlikely unless running with the
825    "dss:primary" option specified).  This was completely harmless on Linux
826    unless using mlockall(2) (and unlikely even then, unless the
827    --disable-munmap configure option or the "dss:primary" option was
828    specified).  This regression was introduced in 3.1.0 by the
829    mlockall(2)/madvise(2) interaction fix.
830  - Fix TLS-related memory corruption that could occur during thread exit if the
831    thread never allocated memory.  Only the quarantine and prof facilities were
832    susceptible.
833  - Fix two quarantine bugs:
834    + Internal reallocation of the quarantined object array leaked the old
835      array.
836    + Reallocation failure for internal reallocation of the quarantined object
837      array (very unlikely) resulted in memory corruption.
838  - Fix Valgrind integration to annotate all internally allocated memory in a
839    way that keeps Valgrind happy about internal data structure access.
840  - Fix building for s390 systems.
841
842* 3.3.0 (January 23, 2013)
843
844  This version includes a few minor performance improvements in addition to the
845  listed new features and bug fixes.
846
847  New features:
848  - Add clipping support to lg_chunk option processing.
849  - Add the --enable-ivsalloc option.
850  - Add the --without-export option.
851  - Add the --disable-zone-allocator option.
852
853  Bug fixes:
854  - Fix "arenas.extend" mallctl to output the number of arenas.
855  - Fix chunk_recycle() to unconditionally inform Valgrind that returned memory
856    is undefined.
857  - Fix build break on FreeBSD related to alloca.h.
858
859* 3.2.0 (November 9, 2012)
860
861  In addition to a couple of bug fixes, this version modifies page run
862  allocation and dirty page purging algorithms in order to better control
863  page-level virtual memory fragmentation.
864
865  Incompatible changes:
866  - Change the "opt.lg_dirty_mult" default from 5 to 3 (32:1 to 8:1).
867
868  Bug fixes:
869  - Fix dss/mmap allocation precedence code to use recyclable mmap memory only
870    after primary dss allocation fails.
871  - Fix deadlock in the "arenas.purge" mallctl.  This regression was introduced
872    in 3.1.0 by the addition of the "arena.<i>.purge" mallctl.
873
874* 3.1.0 (October 16, 2012)
875
876  New features:
877  - Auto-detect whether running inside Valgrind, thus removing the need to
878    manually specify MALLOC_CONF=valgrind:true.
879  - Add the "arenas.extend" mallctl, which allows applications to create
880    manually managed arenas.
881  - Add the ALLOCM_ARENA() flag for {,r,d}allocm().
882  - Add the "opt.dss", "arena.<i>.dss", and "stats.arenas.<i>.dss" mallctls,
883    which provide control over dss/mmap precedence.
884  - Add the "arena.<i>.purge" mallctl, which obsoletes "arenas.purge".
885  - Define LG_QUANTUM for hppa.
886
887  Incompatible changes:
888  - Disable tcache by default if running inside Valgrind, in order to avoid
889    making unallocated objects appear reachable to Valgrind.
890  - Drop const from malloc_usable_size() argument on Linux.
891
892  Bug fixes:
893  - Fix heap profiling crash if sampled object is freed via realloc(p, 0).
894  - Remove const from __*_hook variable declarations, so that glibc can modify
895    them during process forking.
896  - Fix mlockall(2)/madvise(2) interaction.
897  - Fix fork(2)-related deadlocks.
898  - Fix error return value for "thread.tcache.enabled" mallctl.
899
900* 3.0.0 (May 11, 2012)
901
902  Although this version adds some major new features, the primary focus is on
903  internal code cleanup that facilitates maintainability and portability, most
904  of which is not reflected in the ChangeLog.  This is the first release to
905  incorporate substantial contributions from numerous other developers, and the
906  result is a more broadly useful allocator (see the git revision history for
907  contribution details).  Note that the license has been unified, thanks to
908  Facebook granting a license under the same terms as the other copyright
909  holders (see COPYING).
910
911  New features:
912  - Implement Valgrind support, redzones, and quarantine.
913  - Add support for additional platforms:
914    + FreeBSD
915    + Mac OS X Lion
916    + MinGW
917    + Windows (no support yet for replacing the system malloc)
918  - Add support for additional architectures:
919    + MIPS
920    + SH4
921    + Tilera
922  - Add support for cross compiling.
923  - Add nallocm(), which rounds a request size up to the nearest size class
924    without actually allocating.
925  - Implement aligned_alloc() (blame C11).
926  - Add the "thread.tcache.enabled" mallctl.
927  - Add the "opt.prof_final" mallctl.
928  - Update pprof (from gperftools 2.0).
929  - Add the --with-mangling option.
930  - Add the --disable-experimental option.
931  - Add the --disable-munmap option, and make it the default on Linux.
932  - Add the --enable-mremap option, which disables use of mremap(2) by default.
933
934  Incompatible changes:
935  - Enable stats by default.
936  - Enable fill by default.
937  - Disable lazy locking by default.
938  - Rename the "tcache.flush" mallctl to "thread.tcache.flush".
939  - Rename the "arenas.pagesize" mallctl to "arenas.page".
940  - Change the "opt.lg_prof_sample" default from 0 to 19 (1 B to 512 KiB).
941  - Change the "opt.prof_accum" default from true to false.
942
943  Removed features:
944  - Remove the swap feature, including the "config.swap", "swap.avail",
945    "swap.prezeroed", "swap.nfds", and "swap.fds" mallctls.
946  - Remove highruns statistics, including the
947    "stats.arenas.<i>.bins.<j>.highruns" and
948    "stats.arenas.<i>.lruns.<j>.highruns" mallctls.
949  - As part of small size class refactoring, remove the "opt.lg_[qc]space_max",
950    "arenas.cacheline", "arenas.subpage", "arenas.[tqcs]space_{min,max}", and
951    "arenas.[tqcs]bins" mallctls.
952  - Remove the "arenas.chunksize" mallctl.
953  - Remove the "opt.lg_prof_tcmax" option.
954  - Remove the "opt.lg_prof_bt_max" option.
955  - Remove the "opt.lg_tcache_gc_sweep" option.
956  - Remove the --disable-tiny option, including the "config.tiny" mallctl.
957  - Remove the --enable-dynamic-page-shift configure option.
958  - Remove the --enable-sysv configure option.
959
960  Bug fixes:
961  - Fix a statistics-related bug in the "thread.arena" mallctl that could cause
962    invalid statistics and crashes.
963  - Work around TLS deallocation via free() on Linux.  This bug could cause
964    write-after-free memory corruption.
965  - Fix a potential deadlock that could occur during interval- and
966    growth-triggered heap profile dumps.
967  - Fix large calloc() zeroing bugs due to dropping chunk map unzeroed flags.
968  - Fix chunk_alloc_dss() to stop claiming memory is zeroed.  This bug could
969    cause memory corruption and crashes with --enable-dss specified.
970  - Fix fork-related bugs that could cause deadlock in children between fork
971    and exec.
972  - Fix malloc_stats_print() to honor 'b' and 'l' in the opts parameter.
973  - Fix realloc(p, 0) to act like free(p).
974  - Do not enforce minimum alignment in memalign().
975  - Check for NULL pointer in malloc_usable_size().
976  - Fix an off-by-one heap profile statistics bug that could be observed in
977    interval- and growth-triggered heap profiles.
978  - Fix the "epoch" mallctl to update cached stats even if the passed in epoch
979    is 0.
980  - Fix bin->runcur management to fix a layout policy bug.  This bug did not
981    affect correctness.
982  - Fix a bug in choose_arena_hard() that potentially caused more arenas to be
983    initialized than necessary.
984  - Add missing "opt.lg_tcache_max" mallctl implementation.
985  - Use glibc allocator hooks to make mixed allocator usage less likely.
986  - Fix build issues for --disable-tcache.
987  - Don't mangle pthread_create() when --with-private-namespace is specified.
988
989* 2.2.5 (November 14, 2011)
990
991  Bug fixes:
992  - Fix huge_ralloc() race when using mremap(2).  This is a serious bug that
993    could cause memory corruption and/or crashes.
994  - Fix huge_ralloc() to maintain chunk statistics.
995  - Fix malloc_stats_print(..., "a") output.
996
997* 2.2.4 (November 5, 2011)
998
999  Bug fixes:
1000  - Initialize arenas_tsd before using it.  This bug existed for 2.2.[0-3], as
1001    well as for --disable-tls builds in earlier releases.
1002  - Do not assume a 4 KiB page size in test/rallocm.c.
1003
1004* 2.2.3 (August 31, 2011)
1005
1006  This version fixes numerous bugs related to heap profiling.
1007
1008  Bug fixes:
1009  - Fix a prof-related race condition.  This bug could cause memory corruption,
1010    but only occurred in non-default configurations (prof_accum:false).
1011  - Fix off-by-one backtracing issues (make sure that prof_alloc_prep() is
1012    excluded from backtraces).
1013  - Fix a prof-related bug in realloc() (only triggered by OOM errors).
1014  - Fix prof-related bugs in allocm() and rallocm().
1015  - Fix prof_tdata_cleanup() for --disable-tls builds.
1016  - Fix a relative include path, to fix objdir builds.
1017
1018* 2.2.2 (July 30, 2011)
1019
1020  Bug fixes:
1021  - Fix a build error for --disable-tcache.
1022  - Fix assertions in arena_purge() (for real this time).
1023  - Add the --with-private-namespace option.  This is a workaround for symbol
1024    conflicts that can inadvertently arise when using static libraries.
1025
1026* 2.2.1 (March 30, 2011)
1027
1028  Bug fixes:
1029  - Implement atomic operations for x86/x64.  This fixes compilation failures
1030    for versions of gcc that are still in wide use.
1031  - Fix an assertion in arena_purge().
1032
1033* 2.2.0 (March 22, 2011)
1034
1035  This version incorporates several improvements to algorithms and data
1036  structures that tend to reduce fragmentation and increase speed.
1037
1038  New features:
1039  - Add the "stats.cactive" mallctl.
1040  - Update pprof (from google-perftools 1.7).
1041  - Improve backtracing-related configuration logic, and add the
1042    --disable-prof-libgcc option.
1043
1044  Bug fixes:
1045  - Change default symbol visibility from "internal", to "hidden", which
1046    decreases the overhead of library-internal function calls.
1047  - Fix symbol visibility so that it is also set on OS X.
1048  - Fix a build dependency regression caused by the introduction of the .pic.o
1049    suffix for PIC object files.
1050  - Add missing checks for mutex initialization failures.
1051  - Don't use libgcc-based backtracing except on x64, where it is known to work.
1052  - Fix deadlocks on OS X that were due to memory allocation in
1053    pthread_mutex_lock().
1054  - Heap profiling-specific fixes:
1055    + Fix memory corruption due to integer overflow in small region index
1056      computation, when using a small enough sample interval that profiling
1057      context pointers are stored in small run headers.
1058    + Fix a bootstrap ordering bug that only occurred with TLS disabled.
1059    + Fix a rallocm() rsize bug.
1060    + Fix error detection bugs for aligned memory allocation.
1061
1062* 2.1.3 (March 14, 2011)
1063
1064  Bug fixes:
1065  - Fix a cpp logic regression (due to the "thread.{de,}allocatedp" mallctl fix
1066    for OS X in 2.1.2).
1067  - Fix a "thread.arena" mallctl bug.
1068  - Fix a thread cache stats merging bug.
1069
1070* 2.1.2 (March 2, 2011)
1071
1072  Bug fixes:
1073  - Fix "thread.{de,}allocatedp" mallctl for OS X.
1074  - Add missing jemalloc.a to build system.
1075
1076* 2.1.1 (January 31, 2011)
1077
1078  Bug fixes:
1079  - Fix aligned huge reallocation (affected allocm()).
1080  - Fix the ALLOCM_LG_ALIGN macro definition.
1081  - Fix a heap dumping deadlock.
1082  - Fix a "thread.arena" mallctl bug.
1083
1084* 2.1.0 (December 3, 2010)
1085
1086  This version incorporates some optimizations that can't quite be considered
1087  bug fixes.
1088
1089  New features:
1090  - Use Linux's mremap(2) for huge object reallocation when possible.
1091  - Avoid locking in mallctl*() when possible.
1092  - Add the "thread.[de]allocatedp" mallctl's.
1093  - Convert the manual page source from roff to DocBook, and generate both roff
1094    and HTML manuals.
1095
1096  Bug fixes:
1097  - Fix a crash due to incorrect bootstrap ordering.  This only impacted
1098    --enable-debug --enable-dss configurations.
1099  - Fix a minor statistics bug for mallctl("swap.avail", ...).
1100
1101* 2.0.1 (October 29, 2010)
1102
1103  Bug fixes:
1104  - Fix a race condition in heap profiling that could cause undefined behavior
1105    if "opt.prof_accum" were disabled.
1106  - Add missing mutex unlocks for some OOM error paths in the heap profiling
1107    code.
1108  - Fix a compilation error for non-C99 builds.
1109
1110* 2.0.0 (October 24, 2010)
1111
1112  This version focuses on the experimental *allocm() API, and on improved
1113  run-time configuration/introspection.  Nonetheless, numerous performance
1114  improvements are also included.
1115
1116  New features:
1117  - Implement the experimental {,r,s,d}allocm() API, which provides a superset
1118    of the functionality available via malloc(), calloc(), posix_memalign(),
1119    realloc(), malloc_usable_size(), and free().  These functions can be used to
1120    allocate/reallocate aligned zeroed memory, ask for optional extra memory
1121    during reallocation, prevent object movement during reallocation, etc.
1122  - Replace JEMALLOC_OPTIONS/JEMALLOC_PROF_PREFIX with MALLOC_CONF, which is
1123    more human-readable, and more flexible.  For example:
1124      JEMALLOC_OPTIONS=AJP
1125    is now:
1126      MALLOC_CONF=abort:true,fill:true,stats_print:true
1127  - Port to Apple OS X.  Sponsored by Mozilla.
1128  - Make it possible for the application to control thread-->arena mappings via
1129    the "thread.arena" mallctl.
1130  - Add compile-time support for all TLS-related functionality via pthreads TSD.
1131    This is mainly of interest for OS X, which does not support TLS, but has a
1132    TSD implementation with similar performance.
1133  - Override memalign() and valloc() if they are provided by the system.
1134  - Add the "arenas.purge" mallctl, which can be used to synchronously purge all
1135    dirty unused pages.
1136  - Make cumulative heap profiling data optional, so that it is possible to
1137    limit the amount of memory consumed by heap profiling data structures.
1138  - Add per thread allocation counters that can be accessed via the
1139    "thread.allocated" and "thread.deallocated" mallctls.
1140
1141  Incompatible changes:
1142  - Remove JEMALLOC_OPTIONS and malloc_options (see MALLOC_CONF above).
1143  - Increase default backtrace depth from 4 to 128 for heap profiling.
1144  - Disable interval-based profile dumps by default.
1145
1146  Bug fixes:
1147  - Remove bad assertions in fork handler functions.  These assertions could
1148    cause aborts for some combinations of configure settings.
1149  - Fix strerror_r() usage to deal with non-standard semantics in GNU libc.
1150  - Fix leak context reporting.  This bug tended to cause the number of contexts
1151    to be underreported (though the reported number of objects and bytes were
1152    correct).
1153  - Fix a realloc() bug for large in-place growing reallocation.  This bug could
1154    cause memory corruption, but it was hard to trigger.
1155  - Fix an allocation bug for small allocations that could be triggered if
1156    multiple threads raced to create a new run of backing pages.
1157  - Enhance the heap profiler to trigger samples based on usable size, rather
1158    than request size.
1159  - Fix a heap profiling bug due to sometimes losing track of requested object
1160    size for sampled objects.
1161
1162* 1.0.3 (August 12, 2010)
1163
1164  Bug fixes:
1165  - Fix the libunwind-based implementation of stack backtracing (used for heap
1166    profiling).  This bug could cause zero-length backtraces to be reported.
1167  - Add a missing mutex unlock in library initialization code.  If multiple
1168    threads raced to initialize malloc, some of them could end up permanently
1169    blocked.
1170
1171* 1.0.2 (May 11, 2010)
1172
1173  Bug fixes:
1174  - Fix junk filling of large objects, which could cause memory corruption.
1175  - Add MAP_NORESERVE support for chunk mapping, because otherwise virtual
1176    memory limits could cause swap file configuration to fail.  Contributed by
1177    Jordan DeLong.
1178
1179* 1.0.1 (April 14, 2010)
1180
1181  Bug fixes:
1182  - Fix compilation when --enable-fill is specified.
1183  - Fix threads-related profiling bugs that affected accuracy and caused memory
1184    to be leaked during thread exit.
1185  - Fix dirty page purging race conditions that could cause crashes.
1186  - Fix crash in tcache flushing code during thread destruction.
1187
1188* 1.0.0 (April 11, 2010)
1189
1190  This release focuses on speed and run-time introspection.  Numerous
1191  algorithmic improvements make this release substantially faster than its
1192  predecessors.
1193
1194  New features:
1195  - Implement autoconf-based configuration system.
1196  - Add mallctl*(), for the purposes of introspection and run-time
1197    configuration.
1198  - Make it possible for the application to manually flush a thread's cache, via
1199    the "tcache.flush" mallctl.
1200  - Base maximum dirty page count on proportion of active memory.
1201  - Compute various additional run-time statistics, including per size class
1202    statistics for large objects.
1203  - Expose malloc_stats_print(), which can be called repeatedly by the
1204    application.
1205  - Simplify the malloc_message() signature to only take one string argument,
1206    and incorporate an opaque data pointer argument for use by the application
1207    in combination with malloc_stats_print().
1208  - Add support for allocation backed by one or more swap files, and allow the
1209    application to disable over-commit if swap files are in use.
1210  - Implement allocation profiling and leak checking.
1211
1212  Removed features:
1213  - Remove the dynamic arena rebalancing code, since thread-specific caching
1214    reduces its utility.
1215
1216  Bug fixes:
1217  - Modify chunk allocation to work when address space layout randomization
1218    (ASLR) is in use.
1219  - Fix thread cleanup bugs related to TLS destruction.
1220  - Handle 0-size allocation requests in posix_memalign().
1221  - Fix a chunk leak.  The leaked chunks were never touched, so this impacted
1222    virtual memory usage, but not physical memory usage.
1223
1224* linux_2008082[78]a (August 27/28, 2008)
1225
1226  These snapshot releases are the simple result of incorporating Linux-specific
1227  support into the FreeBSD malloc sources.
1228
1229--------------------------------------------------------------------------------
1230vim:filetype=text:textwidth=80
1231