PATMInternal.h revision 17ba03925269c071aa1567eb8c5a49c37a65f62f
52676b598e9afd834db7f3e62a983044038e92bevboxsync * PATM - Internal header file.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Copyright (C) 2006-2007 innotek GmbH
52676b598e9afd834db7f3e62a983044038e92bevboxsync * This file is part of VirtualBox Open Source Edition (OSE), as
52676b598e9afd834db7f3e62a983044038e92bevboxsync * available from http://www.virtualbox.org. This file is free software;
52676b598e9afd834db7f3e62a983044038e92bevboxsync * you can redistribute it and/or modify it under the terms of the GNU
52676b598e9afd834db7f3e62a983044038e92bevboxsync * General Public License as published by the Free Software Foundation,
52676b598e9afd834db7f3e62a983044038e92bevboxsync * in version 2 as it comes in the "COPYING" file of the VirtualBox OSE
52676b598e9afd834db7f3e62a983044038e92bevboxsync * distribution. VirtualBox OSE is distributed in the hope that it will
52676b598e9afd834db7f3e62a983044038e92bevboxsync * be useful, but WITHOUT ANY WARRANTY of any kind.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * If you received this file as part of a commercial VirtualBox
52676b598e9afd834db7f3e62a983044038e92bevboxsync * distribution, then only the terms of your commercial VirtualBox
52676b598e9afd834db7f3e62a983044038e92bevboxsync * license agreement apply instead of the previous paragraph.
52676b598e9afd834db7f3e62a983044038e92bevboxsync#if !defined(IN_PATM_R3) && !defined(IN_PATM_R0) && !defined(IN_PATM_GC)
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync/* Enable for call patching. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * Internal patch type flags (starts at BIT(11))
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync#define PATMFL_READ_ORIGINAL_BYTES BIT64(16) /** opcode might have already been patched */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync#define PATMFL_IDTHANDLER_WITHOUT_ENTRYPOINT BIT64(20) /** internal flag to avoid duplicate entrypoints */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync#define PATMFL_INHIBIT_IRQS BIT64(21) /** temporary internal flag */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync#define PATMFL_GENERATE_JUMPTOGUEST BIT64(22) /** temporary internal flag */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync#define PATMFL_RECOMPILE_NEXT BIT64(23) /** for recompilation of the next instruction */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync#define PATMFL_CODE_MONITORED BIT64(24) /** code pages of guest monitored for self-modifying code. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync#define PATMFL_CALLABLE_AS_FUNCTION BIT64(25) /** cli and pushf blocks can be used as callable functions. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync#define PATMFL_GLOBAL_FUNCTIONS BIT64(26) /** fake patch for global patm functions. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync#define PATMFL_TRAMPOLINE BIT64(27) /** trampoline patch that clears PATM_INTERRUPTFLAG and jumps to patch destination */
52676b598e9afd834db7f3e62a983044038e92bevboxsync#define PATMFL_GENERATE_SETPIF BIT64(28) /** generate set PIF for the next instruction */
3bf5a39c9314b43d8fe91e4ed18b977e2f87659dvboxsync#define PATMFL_INSTR_HINT BIT64(29) /** Generate patch, but don't activate it. */
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync#define PATMFL_PATCHED_GUEST_CODE BIT64(30) /** Patched guest code. */
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync#define PATMFL_MUST_INSTALL_PATCHJMP BIT64(31) /** Need to patch guest code in order to activate patch. */
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync#define PATMFL_INT3_REPLACEMENT_BLOCK BIT64(32) /** int 3 replacement block */
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync#define PATMFL_EXTERNAL_JUMP_INSIDE BIT64(33) /** A trampoline patch was created that jumps to an instruction in the patch block */
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync#define SIZEOF_NEARJUMP8 2 //opcode byte + 1 byte relative offset
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync#define SIZEOF_NEARJUMP16 3 //opcode byte + 2 byte relative offset
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync#define SIZEOF_NEARJUMP32 5 //opcode byte + 4 byte relative offset
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync#define SIZEOF_NEAR_COND_JUMP32 6 //0xF + opcode byte + 4 byte relative offset
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync//Patch states
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync/* Maximum nr of writes before a patch is marked dirty. (disabled) */
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync/* Maximum nr of invalid writes before a patch is disabled. */
3bf5a39c9314b43d8fe91e4ed18b977e2f87659dvboxsync/** Size of the instruction that's used for requests from patch code (currently only call) */
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync/** No statistics counter index allocated just yet */
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync/** Dummy counter to handle overflows */
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync#define PATM_STAT_INDEX_IS_VALID(a) (a != PATM_STAT_INDEX_DUMMY && a != PATM_STAT_INDEX_NONE)
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync if (PATM_STAT_INDEX_IS_VALID((pPatch)->uPatchIdx)) \
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync CTXSUFF(pVM->patm.s.pStats)[(pPatch)->uPatchIdx].u32A++;
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync if (PATM_STAT_INDEX_IS_VALID((pPatch)->uPatchIdx)) \
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync CTXSUFF(pVM->patm.s.pStats)[(pPatch)->uPatchIdx].u32B++;
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync#define PATM_STAT_FAULT_INC(pPatch) do { } while (0)
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync/** Maximum number of stat counters. */
3bf5a39c9314b43d8fe91e4ed18b977e2f87659dvboxsync/** Size of memory allocated for patch statistics. */
3bf5a39c9314b43d8fe91e4ed18b977e2f87659dvboxsync#define PATM_STAT_MEMSIZE (PATM_STAT_MAX_COUNTERS*sizeof(STAMRATIOU32))
3bf5a39c9314b43d8fe91e4ed18b977e2f87659dvboxsynctypedef struct
3bf5a39c9314b43d8fe91e4ed18b977e2f87659dvboxsync /** The key is a HC virtual address. */
3bf5a39c9314b43d8fe91e4ed18b977e2f87659dvboxsynctypedef struct
3bf5a39c9314b43d8fe91e4ed18b977e2f87659dvboxsynctypedef struct
3bf5a39c9314b43d8fe91e4ed18b977e2f87659dvboxsync /** The key is a pointer to a JUMPREC structure. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Patch to guest lookup type (single or both direction)
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsynctypedef enum
52676b598e9afd834db7f3e62a983044038e92bevboxsync PATM_LOOKUP_BOTHDIR /* guest to patch + patch to guest */
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Patch to guest address lookup record
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync /** The key is an offset inside the patch memory block. */
fe479db82741c317766a2b9035cbd92f3f5a745cvboxsync uint8_t u8DirtyOpcode; /* original opcode before writing 0xCC there to mark it dirty */
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsync * Guest to patch address lookup record
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** The key is a GC virtual address. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** Patch offset (relative to PATM::pPatchMemGC / PATM::pPatchMemHC). */
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Temporary information used in ring 3 only; no need to waste memory in the patch record itself.
90f2027a781d66b7498ed1e5684e087e4d9d3b1bvboxsynctypedef struct
fe479db82741c317766a2b9035cbd92f3f5a745cvboxsync /* Temporary tree for storing the addresses of illegal instructions. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /* Temporary tree of encountered jumps. (debug only) */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** Last original guest instruction pointer; used for disassmebly log. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** Keeping track of multiple ret instructions. */
52676b598e9afd834db7f3e62a983044038e92bevboxsynctypedef struct _PATCHINFO
52676b598e9afd834db7f3e62a983044038e92bevboxsync GCPTRTYPE(uint8_t *) pPrivInstrGC; //GC pointer of privileged instruction
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync HCPTRTYPE(uint8_t *) pPrivInstrHC; //HC pointer of privileged instruction
52676b598e9afd834db7f3e62a983044038e92bevboxsync /* Only valid for PATMFL_JUMP_CONFLICT patches */
52676b598e9afd834db7f3e62a983044038e92bevboxsync uint32_t Alignment0; /**< Align flags correctly. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Lowest and highest patched GC instruction address. To optimize searches.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /* Tree of fixup records for the patch. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /* Tree of jumps inside the generated patch code. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Lookup trees for determining the corresponding guest address of an
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * instruction in the patch block.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync // Cache record for PATMGCVirtToHCVirt
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /* Temporary information during patch creation. Don't waste hypervisor memory for this. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /* Count the number of writes to the corresponding guest code. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /* Count the number of invalid writes to pages monitored for the patch. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync //some statistics to determine if we should keep this patch activated
52676b598e9afd834db7f3e62a983044038e92bevboxsync // Index into the uPatchRun and uPatchTrap arrays (0..MAX_PATCHES-1)
52676b598e9afd834db7f3e62a983044038e92bevboxsync /* First opcode byte, that's overwritten when a patch is marked dirty. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync uint8_t Alignment2[7]; /**< Align the structure size on a 8-byte boundrary. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync#define PATCHCODE_PTR_GC(pPatch) (RTGCPTR) (pVM->patm.s.pPatchMemGC + (pPatch)->pPatchBlockOffset)
52676b598e9afd834db7f3e62a983044038e92bevboxsync#define PATCHCODE_PTR_HC(pPatch) (uint8_t *)(pVM->patm.s.pPatchMemHC + (pPatch)->pPatchBlockOffset)
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Lookup record for patches
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsynctypedef struct PATMPATCHREC
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** The key is a GC virtual address. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** The key is a patch offset. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync/** Increment for allocating room for pointer array */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * Lookup record for patch pages
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** The key is a GC virtual address. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** Region to monitor. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync /** Number of patches for this page. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync /** Maximum nr of pointers in the array. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync /** Array of patch pointers for this page. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync#define PATM_PATCHREC_FROM_COREOFFSET(a) (PPATMPATCHREC)((uintptr_t)a - RT_OFFSETOF(PATMPATCHREC, CoreOffset))
52676b598e9afd834db7f3e62a983044038e92bevboxsync#define PATM_PATCHREC_FROM_PATCHINFO(a) (PPATMPATCHREC)((uintptr_t)a - RT_OFFSETOF(PATMPATCHREC, patch))
52676b598e9afd834db7f3e62a983044038e92bevboxsynctypedef struct PATMTREES
52676b598e9afd834db7f3e62a983044038e92bevboxsync * AVL tree with all patches (active or disabled) sorted by guest instruction address
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * AVL tree with all patches sorted by patch address (offset actually)
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * AVL tree with all pages which were (partly) patched
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * PATM VM Instance data.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * Changes to this must checked against the padding of the patm union in VM!
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsynctypedef struct PATM
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** Offset to the VM structure.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * See PATM2VM(). */
52676b598e9afd834db7f3e62a983044038e92bevboxsync /* GC PATM state pointers */
52676b598e9afd834db7f3e62a983044038e92bevboxsync /** PATM stack page for call instruction execution. (2 parts: one for our private stack and one to store the original return address */
52676b598e9afd834db7f3e62a983044038e92bevboxsync /** GC pointer to CPUMCTX structure. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /* GC statistics pointers */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /* Current free index value (uPatchRun/uPatchTrap arrays). */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /* Temporary counter for patch installation call depth. (in order not to go on forever) */
52676b598e9afd834db7f3e62a983044038e92bevboxsync /** Number of page lookup records. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Lowest and highest patched GC instruction addresses. To optimize searches.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** Pointer to the patch tree for instructions replaced by 'int 3'. */
52676b598e9afd834db7f3e62a983044038e92bevboxsync /** Global PATM lookup and call function (used by call patches). */
52676b598e9afd834db7f3e62a983044038e92bevboxsync /** Global PATM return function (used by ret patches). */
52676b598e9afd834db7f3e62a983044038e92bevboxsync /** Global PATM jump function (used by indirect jmp patches). */
52676b598e9afd834db7f3e62a983044038e92bevboxsync /** Global PATM return function (used by iret patches). */
52676b598e9afd834db7f3e62a983044038e92bevboxsync /** Fake patch record for global functions. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** Pointer to original sysenter handler */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** Pointer to sysenter handler trampoline */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /** Sysenter patch index (for stats only) */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync // GC address of fault in monitored page (set by PATMGCMonitorPage, used by PATMR3HandleMonitoredPage)
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /* Temporary information for pending MMIO patch. Set in GC or R0 context. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync /* Temporary storage during load/save state */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync uint32_t Alignment0; /**< Align the structure size on a 8-byte boundrary. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync uint32_t Alignment0; /**< Align the structure size on a 8-byte boundrary. */
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * Execute state save operation.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * @returns VBox status code.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * @param pVM VM Handle.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * @param pSSM SSM operation handle.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsyncDECLCALLBACK(int) patmr3Save(PVM pVM, PSSMHANDLE pSSM);
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * Execute state load operation.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * @returns VBox status code.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * @param pVM VM Handle.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * @param pSSM SSM operation handle.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * @param u32Version Data layout version.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsyncDECLCALLBACK(int) patmr3Load(PVM pVM, PSSMHANDLE pSSM, uint32_t u32Version);
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsyncRTGCPTR patmPatchGCPtr2GuestGCPtr(PVM pVM, PPATCHINFO pPatch, GCPTRTYPE(uint8_t *) pPatchGC);
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsyncRTGCPTR patmGuestGCPtrToPatchGCPtr(PVM pVM, PPATCHINFO pPatch, GCPTRTYPE(uint8_t*) pInstrGC);
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync/* Add a patch to guest lookup record
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * @param pVM The VM to operate on.
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * @param pPatch Patch structure ptr
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pPatchInstrHC Guest context pointer to patch block
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pInstrGC Guest context pointer to privileged instruction
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param enmType Lookup type
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param fDirty Dirty flag
52676b598e9afd834db7f3e62a983044038e92bevboxsyncvoid patmr3AddP2GLookupRecord(PVM pVM, PPATCHINFO pPatch, uint8_t *pPatchInstrHC, RTGCPTR pInstrGC, PATM_LOOKUP_TYPE enmType, bool fDirty=false);
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Insert page records for all guest pages that contain instructions that were recompiled for this patch
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @returns VBox status code.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pVM The VM to operate on.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pPatch Patch record
52676b598e9afd834db7f3e62a983044038e92bevboxsyncint patmInsertPatchPages(PVM pVM, PPATCHINFO pPatch);
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Remove page records for all guest pages that contain instructions that were recompiled for this patch
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @returns VBox status code.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pVM The VM to operate on.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pPatch Patch record
52676b598e9afd834db7f3e62a983044038e92bevboxsyncint patmRemovePatchPages(PVM pVM, PPATCHINFO pPatch);
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Returns the GC address of the corresponding patch statistics counter
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @returns Stat address
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * @param pVM The VM to operate on.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pPatch Patch structure
52676b598e9afd834db7f3e62a983044038e92bevboxsyncRTGCPTR patmPatchQueryStatAddress(PVM pVM, PPATCHINFO pPatch);
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Remove patch for privileged instruction at specified location
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @returns VBox status code.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pVM The VM to operate on.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pPatchRec Patch record
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param fForceRemove Remove *all* patches
52676b598e9afd834db7f3e62a983044038e92bevboxsyncint PATMRemovePatch(PVM pVM, PPATMPATCHREC pPatchRec, bool fForceRemove);
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Call for analysing the instructions following the privileged instr. for compliance with our heuristics
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @returns VBox status code.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pVM The VM to operate on.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pCpu CPU disassembly state
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pInstrHC Guest context pointer to privileged instruction
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pCurInstrHC Guest context pointer to current instruction
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pUserData User pointer
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsynctypedef int (VBOXCALL *PFN_PATMR3ANALYSE)(PVM pVM, DISCPUSTATE *pCpu, GCPTRTYPE(uint8_t *) pInstrGC, GCPTRTYPE(uint8_t *) pCurInstrGC, void *pUserData);
52676b598e9afd834db7f3e62a983044038e92bevboxsync * Install guest OS specific patch
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @returns VBox status code.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pVM The VM to operate on
a41a001e5a4dd3f39faab90b412243ced6d59394vboxsync * @param pCpu Disassembly state of instruction.
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pInstrGC GC Instruction pointer for instruction
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pInstrHC GC Instruction pointer for instruction
52676b598e9afd834db7f3e62a983044038e92bevboxsync * @param pPatchRec Patch structure
409950536f73e7c9a387f7d548122ae6bffae950vboxsyncint PATMInstallGuestSpecificPatch(PVM pVM, PDISCPUSTATE pCpu, RTGCPTR pInstrGC, uint8_t *pInstrHC, PPATMPATCHREC pPatchRec);
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * Convert guest context address to host context pointer
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @returns VBox status code.
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pVM The VM to operate on.
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pPatch Patch block structure pointer
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pGCPtr Guest context pointer
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @returns Host context pointer or NULL in case of an error
409950536f73e7c9a387f7d548122ae6bffae950vboxsyncHCPTRTYPE(uint8_t *) PATMGCVirtToHCVirt(PVM pVM, PPATCHINFO pPatch, GCPTRTYPE(uint8_t *) pGCPtr);
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * Check if the instruction is patched as a duplicated function
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @returns patch record
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pVM The VM to operate on.
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pInstrGC Guest context point to the instruction
409950536f73e7c9a387f7d548122ae6bffae950vboxsyncPATMDECL(PPATMPATCHREC) PATMQueryFunctionPatch(PVM pVM, RTGCPTR pInstrGC);
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * Empty the specified tree (PV tree, MMR3 heap)
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pVM The VM to operate on.
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param ppTree Tree to empty
409950536f73e7c9a387f7d548122ae6bffae950vboxsyncvoid patmEmptyTree(PVM pVM, PPAVLPVNODECORE ppTree);
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * Empty the specified tree (U32 tree, MMR3 heap)
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pVM The VM to operate on.
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param ppTree Tree to empty
409950536f73e7c9a387f7d548122ae6bffae950vboxsyncvoid patmEmptyTreeU32(PVM pVM, PPAVLU32NODECORE ppTree);
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * Return the name of the patched instruction
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @returns instruction name
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param opcode DIS instruction opcode
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param fPatchFlags Patch flags
409950536f73e7c9a387f7d548122ae6bffae950vboxsyncPATMDECL(const char *) patmGetInstructionString(uint32_t opcode, uint32_t fPatchFlags);
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * Read callback for disassembly function; supports reading bytes that cross a page boundary
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @returns VBox status code.
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pSrc GC source pointer
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pDest HC destination pointer
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param size Number of bytes to read
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param dwUserdata Callback specific user data (pCpu)
409950536f73e7c9a387f7d548122ae6bffae950vboxsyncint32_t patmReadBytes(RTHCUINTPTR pSrc, uint8_t *pDest, uint32_t size, RTHCUINTPTR dwUserdata);
409950536f73e7c9a387f7d548122ae6bffae950vboxsync#define PATMREAD_ORGCODE 2 /* read original guest opcode bytes; not the patched bytes */
409950536f73e7c9a387f7d548122ae6bffae950vboxsync#define PATMREAD_NOCHECK 4 /* don't check for patch conflicts */
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * Private structure used during disassembly
409950536f73e7c9a387f7d548122ae6bffae950vboxsynctypedef struct
409950536f73e7c9a387f7d548122ae6bffae950vboxsyncinline bool PATMR3DISInstr(PVM pVM, PPATCHINFO pPatch, DISCPUSTATE *pCpu, RTGCPTR InstrGC,
409950536f73e7c9a387f7d548122ae6bffae950vboxsync uint8_t *InstrHC, uint32_t *pOpsize, char *pszOutput,
409950536f73e7c9a387f7d548122ae6bffae950vboxsync return DISInstr(pCpu, InstrGC, 0, pOpsize, pszOutput);
409950536f73e7c9a387f7d548122ae6bffae950vboxsync#endif /* !IN_GC */
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * #PF Virtual Handler callback for Guest access a page monitored by PATM
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @returns VBox status code (appropritate for trap handling and GC return).
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pVM VM Handle.
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param uErrorCode CPU Error code.
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pRegFrame Trap register frame.
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pvFault The fault address (cr2).
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param pvRange The base address of the handled virtual range.
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * @param offRange The offset of the access into this range.
409950536f73e7c9a387f7d548122ae6bffae950vboxsync * (If it's a EIP range this's the EIP, if not it's pvFault.)
PATMGCDECL(int) PATMGCMonitorPage(PVM pVM, RTGCUINT uErrorCode, PCPUMCTXCORE pRegFrame, void *pvFault, void *pvRange, uintptr_t offRange);
* @param pInstr Guest context point to instruction that might lie within 5 bytes of an existing patch jump
* Replace an instruction with a breakpoint (0xCC), that is handled dynamically in the guest context.
PATMR3DECL(int) PATMR3PatchInstrInt3(PVM pVM, RTGCPTR pInstrGC, HCPTRTYPE(uint8_t *) pInstrHC, DISCPUSTATE *pCpu, PPATCHINFO pPatch);
#ifdef IN_GC
#ifdef DEBUG
int patmr3DisasmCallback(PVM pVM, DISCPUSTATE *pCpu, GCPTRTYPE(uint8_t *) pInstrGC, GCPTRTYPE(uint8_t *) pCurInstrGC, void *pUserData);
int patmr3DisasmCodeStream(PVM pVM, GCPTRTYPE(uint8_t *) pInstrGC, GCPTRTYPE(uint8_t *) pCurInstrGC, PFN_PATMR3ANALYSE pfnPATMR3Analyse, void *pUserData);