Romain Malmain a86bd6bbcb
rename symbols to fit with rust 2024. (#104)
reformat code with more typedefs.
2025-03-04 14:45:11 +01:00

50 lines
1.4 KiB
C

#pragma once
#include "qemu/osdep.h"
#include "qapi/error.h"
#include "exec/exec-all.h"
#include "exec/tb-flush.h"
#include "libafl/exit.h"
#include "libafl/hook.h"
typedef uint64_t (*libafl_edge_gen_cb)(uint64_t data, target_ulong src,
target_ulong dst);
typedef void (*libafl_edge_exec_cb)(uint64_t data, uint64_t id);
typedef size_t (*libafl_edge_jit_cb)(uint64_t data, uint64_t id);
struct libafl_edge_hook {
// functions
libafl_edge_gen_cb gen_cb;
libafl_edge_jit_cb jit_cb; // optional opt
// data
uint64_t data;
size_t num;
uint64_t cur_id;
// helpers
TCGHelperInfo helper_info;
// next
struct libafl_edge_hook* next;
};
TranslationBlock* libafl_gen_edge(CPUState* cpu, target_ulong src_block,
target_ulong dst_block, int exit_n,
target_ulong cs_base, uint32_t flags,
int cflags);
size_t libafl_add_edge_hook(libafl_edge_gen_cb gen_cb,
libafl_edge_exec_cb exec_cb, uint64_t data);
bool libafl_qemu_edge_hook_set_jit(
size_t num,
libafl_edge_jit_cb jit_cb); // no param names to avoid to be marked as safe
int libafl_qemu_remove_edge_hook(size_t num, int invalidate);
bool libafl_qemu_hook_edge_gen(target_ulong src_block, target_ulong dst_block);
void libafl_qemu_hook_edge_run(void);