Romain Malmain a86bd6bbcb
rename symbols to fit with rust 2024. (#104)
reformat code with more typedefs.
2025-03-04 14:45:11 +01:00

47 lines
1.4 KiB
C

#include "libafl/tcg.h"
#include "libafl/hooks/tcg/backdoor.h"
static struct libafl_backdoor_hook* libafl_backdoor_hooks;
static size_t libafl_backdoor_hooks_num = 0;
static TCGHelperInfo libafl_exec_backdoor_hook_info = {
.func = NULL,
.name = "libafl_exec_backdoor_hook",
.flags = dh_callflag(void),
.typemask = dh_typemask(void, 0) | dh_typemask(env, 1) |
dh_typemask(i64, 2) | dh_typemask(tl, 3)};
GEN_REMOVE_HOOK(backdoor)
size_t libafl_add_backdoor_hook(libafl_backdoor_exec_cb exec_cb, uint64_t data)
{
struct libafl_backdoor_hook* hook =
calloc(sizeof(struct libafl_backdoor_hook), 1);
// hook->exec = exec;
hook->data = data;
hook->num = libafl_backdoor_hooks_num++;
hook->next = libafl_backdoor_hooks;
libafl_backdoor_hooks = hook;
memcpy(&hook->helper_info, &libafl_exec_backdoor_hook_info,
sizeof(TCGHelperInfo));
hook->helper_info.func = exec_cb;
return hook->num;
}
void libafl_qemu_hook_backdoor_run(vaddr pc_next)
{
struct libafl_backdoor_hook* bhk = libafl_backdoor_hooks;
while (bhk) {
TCGv_i64 tmp0 = tcg_constant_i64(bhk->data);
TCGv tmp2 = tcg_constant_tl(pc_next);
TCGTemp* args[3] = {tcgv_i64_temp(tmp0), tcgv_ptr_temp(tcg_env),
tcgv_tl_temp(tmp2)};
tcg_gen_callN(bhk->helper_info.func, &bhk->helper_info, NULL, args);
bhk = bhk->next;
}
}