Coverage Report

Created: 2025-07-01 07:03

/src/capstonenext/arch/WASM/WASMDisassembler.c
Line
Count
Source (jump to first uncovered line)
1
/* Capstone Disassembly Engine */
2
/* By Spike, xwings 2019 */
3
4
#include <string.h>
5
#include <stddef.h> // offsetof macro
6
// alternatively #include "../../utils.h" like everyone else
7
8
#include "WASMDisassembler.h"
9
#include "WASMMapping.h"
10
#include "../../cs_priv.h"
11
12
static const short opcodes[256] = {
13
  WASM_INS_UNREACHABLE,
14
  WASM_INS_NOP,
15
  WASM_INS_BLOCK,
16
  WASM_INS_LOOP,
17
  WASM_INS_IF,
18
  WASM_INS_ELSE,
19
  -1,
20
  -1,
21
  -1,
22
  -1,
23
  -1,
24
  WASM_INS_END,
25
  WASM_INS_BR,
26
  WASM_INS_BR_IF,
27
  WASM_INS_BR_TABLE,
28
  WASM_INS_RETURN,
29
  WASM_INS_CALL,
30
  WASM_INS_CALL_INDIRECT,
31
  -1,
32
  -1,
33
  -1,
34
  -1,
35
  -1,
36
  -1,
37
  -1,
38
  -1,
39
  WASM_INS_DROP,
40
  WASM_INS_SELECT,
41
  -1,
42
  -1,
43
  -1,
44
  -1,
45
  WASM_INS_GET_LOCAL,
46
  WASM_INS_SET_LOCAL,
47
  WASM_INS_TEE_LOCAL,
48
  WASM_INS_GET_GLOBAL,
49
  WASM_INS_SET_GLOBAL,
50
  -1,
51
  -1,
52
  -1,
53
  WASM_INS_I32_LOAD,
54
  WASM_INS_I64_LOAD,
55
  WASM_INS_F32_LOAD,
56
  WASM_INS_F64_LOAD,
57
  WASM_INS_I32_LOAD8_S,
58
  WASM_INS_I32_LOAD8_U,
59
  WASM_INS_I32_LOAD16_S,
60
  WASM_INS_I32_LOAD16_U,
61
  WASM_INS_I64_LOAD8_S,
62
  WASM_INS_I64_LOAD8_U,
63
  WASM_INS_I64_LOAD16_S,
64
  WASM_INS_I64_LOAD16_U,
65
  WASM_INS_I64_LOAD32_S,
66
  WASM_INS_I64_LOAD32_U,
67
  WASM_INS_I32_STORE,
68
  WASM_INS_I64_STORE,
69
  WASM_INS_F32_STORE,
70
  WASM_INS_F64_STORE,
71
  WASM_INS_I32_STORE8,
72
  WASM_INS_I32_STORE16,
73
  WASM_INS_I64_STORE8,
74
  WASM_INS_I64_STORE16,
75
  WASM_INS_I64_STORE32,
76
  WASM_INS_CURRENT_MEMORY,
77
  WASM_INS_GROW_MEMORY,
78
  WASM_INS_I32_CONST,
79
  WASM_INS_I64_CONST,
80
  WASM_INS_F32_CONST,
81
  WASM_INS_F64_CONST,
82
  WASM_INS_I32_EQZ,
83
  WASM_INS_I32_EQ,
84
  WASM_INS_I32_NE,
85
  WASM_INS_I32_LT_S,
86
  WASM_INS_I32_LT_U,
87
  WASM_INS_I32_GT_S,
88
  WASM_INS_I32_GT_U,
89
  WASM_INS_I32_LE_S,
90
  WASM_INS_I32_LE_U,
91
  WASM_INS_I32_GE_S,
92
  WASM_INS_I32_GE_U,
93
  WASM_INS_I64_EQZ,
94
  WASM_INS_I64_EQ,
95
  WASM_INS_I64_NE,
96
  WASM_INS_I64_LT_S,
97
  WASM_INS_I64_LT_U,
98
  WASN_INS_I64_GT_S,
99
  WASM_INS_I64_GT_U,
100
  WASM_INS_I64_LE_S,
101
  WASM_INS_I64_LE_U,
102
  WASM_INS_I64_GE_S,
103
  WASM_INS_I64_GE_U,
104
  WASM_INS_F32_EQ,
105
  WASM_INS_F32_NE,
106
  WASM_INS_F32_LT,
107
  WASM_INS_F32_GT,
108
  WASM_INS_F32_LE,
109
  WASM_INS_F32_GE,
110
  WASM_INS_F64_EQ,
111
  WASM_INS_F64_NE,
112
  WASM_INS_F64_LT,
113
  WASM_INS_F64_GT,
114
  WASM_INS_F64_LE,
115
  WASM_INS_F64_GE,
116
  WASM_INS_I32_CLZ,
117
  WASM_INS_I32_CTZ,
118
  WASM_INS_I32_POPCNT,
119
  WASM_INS_I32_ADD,
120
  WASM_INS_I32_SUB,
121
  WASM_INS_I32_MUL,
122
  WASM_INS_I32_DIV_S,
123
  WASM_INS_I32_DIV_U,
124
  WASM_INS_I32_REM_S,
125
  WASM_INS_I32_REM_U,
126
  WASM_INS_I32_AND,
127
  WASM_INS_I32_OR,
128
  WASM_INS_I32_XOR,
129
  WASM_INS_I32_SHL,
130
  WASM_INS_I32_SHR_S,
131
  WASM_INS_I32_SHR_U,
132
  WASM_INS_I32_ROTL,
133
  WASM_INS_I32_ROTR,
134
  WASM_INS_I64_CLZ,
135
  WASM_INS_I64_CTZ,
136
  WASM_INS_I64_POPCNT,
137
  WASM_INS_I64_ADD,
138
  WASM_INS_I64_SUB,
139
  WASM_INS_I64_MUL,
140
  WASM_INS_I64_DIV_S,
141
  WASM_INS_I64_DIV_U,
142
  WASM_INS_I64_REM_S,
143
  WASM_INS_I64_REM_U,
144
  WASM_INS_I64_AND,
145
  WASM_INS_I64_OR,
146
  WASM_INS_I64_XOR,
147
  WASM_INS_I64_SHL,
148
  WASM_INS_I64_SHR_S,
149
  WASM_INS_I64_SHR_U,
150
  WASM_INS_I64_ROTL,
151
  WASM_INS_I64_ROTR,
152
  WASM_INS_F32_ABS,
153
  WASM_INS_F32_NEG,
154
  WASM_INS_F32_CEIL,
155
  WASM_INS_F32_FLOOR,
156
  WASM_INS_F32_TRUNC,
157
  WASM_INS_F32_NEAREST,
158
  WASM_INS_F32_SQRT,
159
  WASM_INS_F32_ADD,
160
  WASM_INS_F32_SUB,
161
  WASM_INS_F32_MUL,
162
  WASM_INS_F32_DIV,
163
  WASM_INS_F32_MIN,
164
  WASM_INS_F32_MAX,
165
  WASM_INS_F32_COPYSIGN,
166
  WASM_INS_F64_ABS,
167
  WASM_INS_F64_NEG,
168
  WASM_INS_F64_CEIL,
169
  WASM_INS_F64_FLOOR,
170
  WASM_INS_F64_TRUNC,
171
  WASM_INS_F64_NEAREST,
172
  WASM_INS_F64_SQRT,
173
  WASM_INS_F64_ADD,
174
  WASM_INS_F64_SUB,
175
  WASM_INS_F64_MUL,
176
  WASM_INS_F64_DIV,
177
  WASM_INS_F64_MIN,
178
  WASM_INS_F64_MAX,
179
  WASM_INS_F64_COPYSIGN,
180
  WASM_INS_I32_WARP_I64,
181
  WASP_INS_I32_TRUNC_S_F32,
182
  WASM_INS_I32_TRUNC_U_F32,
183
  WASM_INS_I32_TRUNC_S_F64,
184
  WASM_INS_I32_TRUNC_U_F64,
185
  WASM_INS_I64_EXTEND_S_I32,
186
  WASM_INS_I64_EXTEND_U_I32,
187
  WASM_INS_I64_TRUNC_S_F32,
188
  WASM_INS_I64_TRUNC_U_F32,
189
  WASM_INS_I64_TRUNC_S_F64,
190
  WASM_INS_I64_TRUNC_U_F64,
191
  WASM_INS_F32_CONVERT_S_I32,
192
  WASM_INS_F32_CONVERT_U_I32,
193
  WASM_INS_F32_CONVERT_S_I64,
194
  WASM_INS_F32_CONVERT_U_I64,
195
  WASM_INS_F32_DEMOTE_F64,
196
  WASM_INS_F64_CONVERT_S_I32,
197
  WASM_INS_F64_CONVERT_U_I32,
198
  WASM_INS_F64_CONVERT_S_I64,
199
  WASM_INS_F64_CONVERT_U_I64,
200
  WASM_INS_F64_PROMOTE_F32,
201
  WASM_INS_I32_REINTERPRET_F32,
202
  WASM_INS_I64_REINTERPRET_F64,
203
  WASM_INS_F32_REINTERPRET_I32,
204
  WASM_INS_F64_REINTERPRET_I64,
205
  -1,
206
  -1,
207
  -1,
208
  -1,
209
  -1,
210
  -1,
211
  -1,
212
  -1,
213
  -1,
214
  -1,
215
  -1,
216
  -1,
217
  -1,
218
  -1,
219
  -1,
220
  -1,
221
  -1,
222
  -1,
223
  -1,
224
  -1,
225
  -1,
226
  -1,
227
  -1,
228
  -1,
229
  -1,
230
  -1,
231
  -1,
232
  -1,
233
  -1,
234
  -1,
235
  -1,
236
  -1,
237
  -1,
238
  -1,
239
  -1,
240
  -1,
241
  -1,
242
  -1,
243
  -1,
244
  -1,
245
  -1,
246
  -1,
247
  -1,
248
  -1,
249
  -1,
250
  -1,
251
  -1,
252
  -1,
253
  -1,
254
  -1,
255
  -1,
256
  -1,
257
  -1,
258
  -1,
259
  -1,
260
  -1,
261
  -1,
262
  -1,
263
  -1,
264
  -1,
265
  -1,
266
  -1,
267
  -1,
268
  -1,
269
};
270
271
// input  | code: code pointer start from varuint32
272
//        | code_len: real code len count from varint
273
//        | leng: return value, means length of varint. -1 means error
274
// return | varint
275
static uint32_t get_varuint32(const uint8_t *code, size_t code_len, size_t *leng)
276
21.5k
{
277
21.5k
  uint32_t data = 0;
278
21.5k
  int i;
279
280
25.6k
  for(i = 0;; i++) {
281
25.6k
    if (code_len < i + 1) {
282
197
      *leng = -1;
283
197
      return 0;
284
197
    }
285
286
287
25.5k
    if (i > 4 || (i == 4 && (code[i] & 0x7f) > 0x0f)) {
288
365
      *leng = -1;
289
365
      return 0;
290
365
    }
291
292
25.1k
    data = data + (((uint32_t) code[i] & 0x7f) << (i * 7));
293
25.1k
    if (code[i] >> 7 == 0) {
294
20.9k
      break;
295
20.9k
    }
296
25.1k
  }
297
298
20.9k
  *leng = i + 1;
299
300
20.9k
  return data;
301
21.5k
}
302
303
// input  | code : code pointer start from varuint64
304
//        | code_len : real code len count from varint
305
//        | leng: return value, means length of varint. -1 means error
306
// return   | varint
307
static uint64_t get_varuint64(const uint8_t *code, size_t code_len, size_t *leng)
308
682
{
309
682
  uint64_t data;
310
682
  int i;
311
312
682
  data = 0;
313
2.29k
  for(i = 0;; i++){
314
2.29k
    if (code_len < i + 1) {
315
4
      *leng = -1;
316
4
      return 0;
317
4
    }
318
319
2.28k
    if (i > 9 || (i == 9 && (code[i] & 0x7f) > 0x01)) {
320
3
      *leng = -1;
321
3
      return 0;
322
3
    }
323
324
2.28k
    data = data + (((uint64_t) code[i] & 0x7f) << (i * 7));
325
2.28k
    if (code[i] >> 7 == 0) {
326
675
      break;
327
675
    }
328
2.28k
  }
329
330
675
  *leng = i + 1;
331
332
675
  return data;
333
682
}
334
335
// input  | code : code pointer start from uint32
336
//      | dest : the pointer where we store the uint32
337
// return | None 
338
static void get_uint32(const uint8_t *code, uint32_t *dest)
339
1.07k
{
340
1.07k
  memcpy(dest, code, 4);
341
1.07k
}
342
343
// input  | code : code pointer start from uint32
344
//      | dest : the pointer where we store the uint64
345
// return   | None
346
static void get_uint64(const uint8_t *code, uint64_t *dest)
347
458
{
348
458
  memcpy(dest, code, 8);
349
458
}
350
351
// input  | code : code pointer start from varint7
352
//      | code_len : start from the code pointer to the end, how long is it
353
//      | leng : length of the param , -1 means error
354
// return   | data of varint7
355
static int8_t get_varint7(const uint8_t *code, size_t code_len, size_t *leng)
356
773
{
357
773
  int8_t data;
358
359
773
  if (code_len < 1) {
360
0
    *leng = -1;
361
0
    return -1;
362
0
  }
363
364
773
  *leng = 1;
365
366
773
  if (code[0] == 0x40) {
367
65
    return -1;
368
65
  }
369
370
708
  data = code[0] & 0x7f;
371
372
708
  return data;
373
773
}
374
375
// input  | code : code pointer start from varuint32
376
//      | code_len : start from the code pointer to the end, how long is it
377
//      | param_size : pointer of the param size
378
//      | MI : Mcinst handler in this round of disasm
379
// return   | true/false if the function successfully finished 
380
static bool read_varuint32(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
381
3.35k
{
382
3.35k
  size_t len = 0;
383
3.35k
  uint32_t data;
384
385
3.35k
  data = get_varuint32(code, code_len, &len);
386
3.35k
  if (len == -1) {
387
23
    return false;
388
23
  }
389
390
3.33k
  if (MI->flat_insn->detail) {
391
3.33k
    MI->flat_insn->detail->wasm.op_count = 1;
392
3.33k
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_VARUINT32;
393
3.33k
    MI->flat_insn->detail->wasm.operands[0].size= len;
394
3.33k
    MI->flat_insn->detail->wasm.operands[0].varuint32= data;
395
3.33k
  }
396
397
3.33k
  MI->wasm_data.size = len;
398
3.33k
  MI->wasm_data.type = WASM_OP_VARUINT32;
399
3.33k
  MI->wasm_data.uint32 = data;
400
3.33k
  *param_size = len;
401
402
3.33k
  return true;
403
3.35k
}
404
405
// input  | code : code pointer start from varuint64
406
//      | code_len : start from the code pointer to the end, how long is it
407
//      | param_size : pointer of the param size
408
//      | MI : Mcinst handler in this round of disasm
409
// return   | true/false if the function successfully finished 
410
static bool read_varuint64(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
411
682
{
412
682
  size_t len = 0;
413
682
  uint64_t data;
414
415
682
  data = get_varuint64(code, code_len, &len);
416
682
  if (len == -1) {
417
7
    return false;
418
7
  }
419
420
675
  if (MI->flat_insn->detail) {
421
675
    MI->flat_insn->detail->wasm.op_count = 1;
422
675
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_VARUINT64;
423
675
    MI->flat_insn->detail->wasm.operands[0].size = len;
424
675
    MI->flat_insn->detail->wasm.operands[0].varuint64 = data;
425
675
  }
426
427
675
  MI->wasm_data.size = len;
428
675
  MI->wasm_data.type = WASM_OP_VARUINT64;
429
675
  MI->wasm_data.uint64 = data;
430
675
  *param_size = len;
431
432
675
  return true;
433
682
}
434
435
// input  | code : code pointer start from memoryimmediate
436
//      | code_len : start from the code pointer to the end, how long is it
437
//      | param_size : pointer of the param size (sum of two params)
438
//      | MI : Mcinst handler in this round of disasm
439
// return   | true/false if the function successfully finished 
440
static bool read_memoryimmediate(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
441
6.46k
{
442
6.46k
  size_t tmp, len = 0;
443
6.46k
  uint32_t data[2];
444
445
6.46k
  if (MI->flat_insn->detail) {
446
6.46k
    MI->flat_insn->detail->wasm.op_count = 2;
447
6.46k
  }
448
449
6.46k
  data[0] = get_varuint32(code, code_len, &tmp);
450
6.46k
  if (tmp == -1) {
451
36
    return false;
452
36
  }
453
454
6.42k
  if (MI->flat_insn->detail) {
455
6.42k
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_VARUINT32;
456
6.42k
    MI->flat_insn->detail->wasm.operands[0].size = tmp;
457
6.42k
    MI->flat_insn->detail->wasm.operands[0].varuint32 = data[0];
458
6.42k
  }
459
460
6.42k
  len = tmp;
461
6.42k
  data[1] = get_varuint32(&code[len], code_len - len, &tmp);
462
463
6.42k
  if (MI->flat_insn->detail) {
464
6.42k
    MI->flat_insn->detail->wasm.operands[1].type = WASM_OP_VARUINT32;
465
6.42k
    MI->flat_insn->detail->wasm.operands[1].size = tmp;
466
6.42k
    MI->flat_insn->detail->wasm.operands[1].varuint32 = data[1];
467
6.42k
  }
468
469
6.42k
  len += tmp;
470
6.42k
  MI->wasm_data.size = len;
471
6.42k
  MI->wasm_data.type = WASM_OP_IMM;
472
6.42k
  MI->wasm_data.immediate[0] = data[0];
473
6.42k
  MI->wasm_data.immediate[1] = data[1];
474
6.42k
  *param_size = len;
475
476
6.42k
  return true;
477
6.46k
}
478
479
// input  | code : code pointer start from uint32
480
//      | code_len : start from the code pointer to the end, how long is it
481
//      | param_size : pointer of the param size
482
//      | MI : Mcinst handler in this round of disasm
483
// return   | true/false if the function successfully finished 
484
static bool read_uint32(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
485
542
{
486
542
  if (code_len < 4) {
487
7
    return false;
488
7
  }
489
490
535
  get_uint32(code, &(MI->wasm_data.uint32));
491
492
535
  if (MI->flat_insn->detail) {
493
535
    MI->flat_insn->detail->wasm.op_count = 1;
494
535
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_UINT32;
495
535
    MI->flat_insn->detail->wasm.operands[0].size = 4;
496
535
    get_uint32(code, &(MI->flat_insn->detail->wasm.operands[0].uint32));
497
535
  }
498
499
535
  MI->wasm_data.size = 4;
500
535
  MI->wasm_data.type = WASM_OP_UINT32;
501
535
  *param_size = 4;
502
503
535
  return true;
504
542
}
505
506
// input  | code : code pointer start from uint64
507
//      | code_len : start from the code pointer to the end, how long is it
508
//      | param_size : pointer of the param size
509
//      | MI : Mcinst handler in this round of disasm
510
// return   | true/false if the function successfully finished 
511
static bool read_uint64(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
512
231
{
513
231
  if (code_len < 8) {
514
2
    return false;
515
2
  }
516
517
229
  get_uint64(code, &(MI->wasm_data.uint64));
518
519
229
  if (MI->flat_insn->detail) {
520
229
    MI->flat_insn->detail->wasm.op_count = 1;
521
229
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_UINT64;
522
229
    MI->flat_insn->detail->wasm.operands[0].size = 8;
523
229
    get_uint64(code, &(MI->flat_insn->detail->wasm.operands[0].uint64));
524
229
  }
525
526
229
  MI->wasm_data.size = 8;
527
229
  MI->wasm_data.type = WASM_OP_UINT64;
528
229
  *param_size = 8;
529
530
229
  return true;
531
231
}
532
533
// input  | code : code pointer start from brtable
534
//      | code_len : start from the code pointer to the end, how long is it
535
//      | param_size : pointer of the param size (sum of all param)
536
//      | MI : Mcinst handler in this round of disasm
537
// return   | true/false if the function successfully finished 
538
static bool read_brtable(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
539
479
{
540
479
  uint32_t length, default_target;
541
479
  int tmp_len = 0, i;
542
479
  size_t var_len;
543
544
  // read length
545
479
  length = get_varuint32(code, code_len, &var_len);
546
479
  if (var_len == -1) {
547
7
    return false;
548
7
  }
549
550
472
  tmp_len += var_len;
551
472
  MI->wasm_data.brtable.length = length;
552
472
  if (length >= UINT32_MAX - tmp_len) {
553
    // integer overflow check
554
1
    return false;
555
1
  }
556
471
  if (code_len < tmp_len + length) {
557
    // safety check that we have minimum enough data to read
558
35
    return false;
559
35
  }
560
  // base address + 1 byte opcode + tmp_len for number of cases = start of targets
561
436
  MI->wasm_data.brtable.address = MI->address + 1 + tmp_len;
562
563
436
  if (MI->flat_insn->detail) {
564
436
    MI->flat_insn->detail->wasm.op_count = 1;
565
436
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_BRTABLE;
566
436
    MI->flat_insn->detail->wasm.operands[0].brtable.length = MI->wasm_data.brtable.length;
567
436
    MI->flat_insn->detail->wasm.operands[0].brtable.address = MI->wasm_data.brtable.address;
568
436
  }
569
570
  // read data
571
4.81k
  for(i = 0; i < length; i++){
572
4.39k
    if (code_len < tmp_len) {
573
0
      return false;
574
0
    }
575
576
4.39k
    get_varuint32(code + tmp_len, code_len - tmp_len, &var_len);
577
4.39k
    if (var_len == -1) {
578
11
      return false;
579
11
    }
580
581
4.38k
    tmp_len += var_len;
582
4.38k
  }
583
584
  // read default target
585
425
  default_target = get_varuint32(code + tmp_len, code_len - tmp_len, &var_len);
586
425
  if (var_len == -1) {
587
12
    return false;
588
12
  }
589
590
413
  MI->wasm_data.brtable.default_target = default_target;
591
413
  MI->wasm_data.type = WASM_OP_BRTABLE;
592
413
  *param_size = tmp_len + var_len;
593
594
413
  if (MI->flat_insn->detail) {
595
413
    MI->flat_insn->detail->wasm.operands[0].size = *param_size;
596
413
    MI->flat_insn->detail->wasm.operands[0].brtable.default_target = MI->wasm_data.brtable.default_target;
597
413
  }
598
599
413
  return true;
600
425
}
601
602
// input  | code : code pointer start from varint7
603
//      | code_len : start from the code pointer to the end, how long is it
604
//      | param_size : pointer of the param size
605
//      | MI : Mcinst handler in this round of disasm
606
// return   | true/false if the function successfully finished 
607
static bool read_varint7(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
608
773
{
609
773
  size_t len = 0;
610
611
773
  MI->wasm_data.type = WASM_OP_INT7;
612
773
  MI->wasm_data.int7 = get_varint7(code, code_len, &len);
613
773
  if (len == -1) {
614
0
    return false;
615
0
  }
616
617
773
  if (MI->flat_insn->detail) {
618
773
    MI->flat_insn->detail->wasm.op_count = 1;
619
773
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_INT7;
620
773
    MI->flat_insn->detail->wasm.operands[0].size = 1;
621
773
    MI->flat_insn->detail->wasm.operands[0].int7 = MI->wasm_data.int7;
622
773
  }
623
624
773
  *param_size = len;
625
626
773
  return true;
627
773
}
628
629
bool WASM_getInstruction(csh ud, const uint8_t *code, size_t code_len,
630
    MCInst *MI, uint16_t *size, uint64_t address, void *inst_info)
631
91.2k
{
632
91.2k
  unsigned char opcode;
633
91.2k
  uint16_t param_size;
634
635
91.2k
  if (code_len == 0)
636
0
    return false;
637
638
91.2k
  opcode = code[0];
639
91.2k
  if (opcodes[opcode] == -1) {
640
    // invalid opcode
641
153
    return false;
642
153
  }
643
644
  // valid opcode
645
91.0k
  MI->address = address;
646
91.0k
  MI->OpcodePub = MI->Opcode = opcode;
647
648
91.0k
  if (MI->flat_insn->detail) {
649
91.0k
    memset(MI->flat_insn->detail, 0, offsetof(cs_detail, wasm)+sizeof(cs_wasm));
650
91.0k
    WASM_get_insn_id((cs_struct *)ud, MI->flat_insn, opcode);
651
91.0k
  }
652
653
  // setup groups
654
91.0k
  switch(opcode) {
655
0
    default:
656
0
      return false;
657
658
308
    case WASM_INS_I32_CONST:
659
308
      if (code_len == 1 || !read_varuint32(&code[1], code_len - 1, &param_size, MI)) {
660
7
        return false;
661
7
      }
662
663
301
      if (MI->flat_insn->detail) {
664
301
        MI->flat_insn->detail->wasm.op_count = 1;
665
301
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_NUMBERIC;
666
301
        MI->flat_insn->detail->groups_count++;
667
301
      }
668
669
301
      *size = param_size + 1;
670
671
301
      break;
672
673
686
    case WASM_INS_I64_CONST:
674
686
      if (code_len == 1 || !read_varuint64(&code[1], code_len - 1, &param_size, MI)) {
675
11
        return false;
676
11
      }
677
678
675
      if (MI->flat_insn->detail) {
679
675
        MI->flat_insn->detail->wasm.op_count = 1;
680
675
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_NUMBERIC;
681
675
        MI->flat_insn->detail->groups_count++;
682
675
      }
683
684
675
      *size = param_size + 1;
685
686
675
      break;
687
688
544
    case WASM_INS_F32_CONST:
689
544
      if (code_len == 1 || !read_uint32(&code[1], code_len - 1, &param_size, MI)) {
690
9
        return false;
691
9
      }
692
693
535
      if (MI->flat_insn->detail) {
694
535
        MI->flat_insn->detail->wasm.op_count = 1;
695
535
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_NUMBERIC;
696
535
        MI->flat_insn->detail->groups_count++;
697
535
      }
698
699
535
      *size = param_size + 1;
700
701
535
      break;
702
703
234
    case WASM_INS_F64_CONST:
704
234
      if (code_len == 1 || !read_uint64(&code[1], code_len - 1, &param_size, MI)) {
705
5
        return false;
706
5
      }
707
708
229
      if (MI->flat_insn->detail) {
709
229
        MI->flat_insn->detail->wasm.op_count = 1;
710
229
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_NUMBERIC;
711
229
        MI->flat_insn->detail->groups_count++;
712
229
      }
713
714
229
      *size = param_size + 1;
715
716
229
      break;
717
718
390
    case WASM_INS_I32_EQZ:
719
908
    case WASM_INS_I32_EQ:
720
1.30k
    case WASM_INS_I32_NE:
721
1.58k
    case WASM_INS_I32_LT_S:
722
1.84k
    case WASM_INS_I32_LT_U:
723
2.16k
    case WASM_INS_I32_GT_S:
724
2.37k
    case WASM_INS_I32_GT_U:
725
2.73k
    case WASM_INS_I32_LE_S:
726
2.95k
    case WASM_INS_I32_LE_U:
727
3.32k
    case WASM_INS_I32_GE_S:
728
3.61k
    case WASM_INS_I32_GE_U:
729
3.82k
    case WASM_INS_I64_EQZ:
730
4.00k
    case WASM_INS_I64_EQ:
731
4.21k
    case WASM_INS_I64_NE:
732
4.46k
    case WASM_INS_I64_LT_S:
733
4.82k
    case WASM_INS_I64_LT_U:
734
5.11k
    case WASN_INS_I64_GT_S:
735
5.37k
    case WASM_INS_I64_GT_U:
736
6.47k
    case WASM_INS_I64_LE_S:
737
6.55k
    case WASM_INS_I64_LE_U:
738
6.62k
    case WASM_INS_I64_GE_S:
739
7.05k
    case WASM_INS_I64_GE_U:
740
7.56k
    case WASM_INS_F32_EQ:
741
7.79k
    case WASM_INS_F32_NE:
742
8.12k
    case WASM_INS_F32_LT:
743
8.39k
    case WASM_INS_F32_GT:
744
8.63k
    case WASM_INS_F32_LE:
745
8.88k
    case WASM_INS_F32_GE:
746
9.23k
    case WASM_INS_F64_EQ:
747
9.64k
    case WASM_INS_F64_NE:
748
10.5k
    case WASM_INS_F64_LT:
749
11.3k
    case WASM_INS_F64_GT:
750
12.4k
    case WASM_INS_F64_LE:
751
13.0k
    case WASM_INS_F64_GE:
752
13.8k
    case WASM_INS_I32_CLZ:
753
14.1k
    case WASM_INS_I32_CTZ:
754
14.3k
    case WASM_INS_I32_POPCNT:
755
15.3k
    case WASM_INS_I32_ADD:
756
15.4k
    case WASM_INS_I32_SUB:
757
17.0k
    case WASM_INS_I32_MUL:
758
17.4k
    case WASM_INS_I32_DIV_S:
759
17.9k
    case WASM_INS_I32_DIV_U:
760
18.2k
    case WASM_INS_I32_REM_S:
761
19.0k
    case WASM_INS_I32_REM_U:
762
19.3k
    case WASM_INS_I32_AND:
763
19.9k
    case WASM_INS_I32_OR:
764
20.7k
    case WASM_INS_I32_XOR:
765
21.5k
    case WASM_INS_I32_SHL:
766
21.8k
    case WASM_INS_I32_SHR_S:
767
22.5k
    case WASM_INS_I32_SHR_U:
768
22.9k
    case WASM_INS_I32_ROTL:
769
23.5k
    case WASM_INS_I32_ROTR:
770
24.3k
    case WASM_INS_I64_CLZ:
771
25.2k
    case WASM_INS_I64_CTZ:
772
25.4k
    case WASM_INS_I64_POPCNT:
773
25.7k
    case WASM_INS_I64_ADD:
774
26.9k
    case WASM_INS_I64_SUB:
775
27.9k
    case WASM_INS_I64_MUL:
776
28.1k
    case WASM_INS_I64_DIV_S:
777
28.6k
    case WASM_INS_I64_DIV_U:
778
29.4k
    case WASM_INS_I64_REM_S:
779
29.6k
    case WASM_INS_I64_REM_U:
780
29.7k
    case WASM_INS_I64_AND:
781
30.1k
    case WASM_INS_I64_OR:
782
32.1k
    case WASM_INS_I64_XOR:
783
32.3k
    case WASM_INS_I64_SHL:
784
33.0k
    case WASM_INS_I64_SHR_S:
785
34.0k
    case WASM_INS_I64_SHR_U:
786
34.1k
    case WASM_INS_I64_ROTL:
787
34.9k
    case WASM_INS_I64_ROTR:
788
35.2k
    case WASM_INS_F32_ABS:
789
35.4k
    case WASM_INS_F32_NEG:
790
36.0k
    case WASM_INS_F32_CEIL:
791
36.5k
    case WASM_INS_F32_FLOOR:
792
36.8k
    case WASM_INS_F32_TRUNC:
793
37.5k
    case WASM_INS_F32_NEAREST:
794
37.9k
    case WASM_INS_F32_SQRT:
795
38.9k
    case WASM_INS_F32_ADD:
796
39.1k
    case WASM_INS_F32_SUB:
797
39.4k
    case WASM_INS_F32_MUL:
798
39.5k
    case WASM_INS_F32_DIV:
799
39.7k
    case WASM_INS_F32_MIN:
800
40.2k
    case WASM_INS_F32_MAX:
801
40.5k
    case WASM_INS_F32_COPYSIGN:
802
41.8k
    case WASM_INS_F64_ABS:
803
42.4k
    case WASM_INS_F64_NEG:
804
42.6k
    case WASM_INS_F64_CEIL:
805
42.9k
    case WASM_INS_F64_FLOOR:
806
43.1k
    case WASM_INS_F64_TRUNC:
807
43.4k
    case WASM_INS_F64_NEAREST:
808
44.1k
    case WASM_INS_F64_SQRT:
809
44.3k
    case WASM_INS_F64_ADD:
810
44.5k
    case WASM_INS_F64_SUB:
811
45.3k
    case WASM_INS_F64_MUL:
812
45.6k
    case WASM_INS_F64_DIV:
813
46.1k
    case WASM_INS_F64_MIN:
814
46.3k
    case WASM_INS_F64_MAX:
815
46.5k
    case WASM_INS_F64_COPYSIGN:
816
46.8k
    case WASM_INS_I32_WARP_I64:
817
47.2k
    case WASP_INS_I32_TRUNC_S_F32:
818
47.4k
    case WASM_INS_I32_TRUNC_U_F32:
819
48.1k
    case WASM_INS_I32_TRUNC_S_F64:
820
48.5k
    case WASM_INS_I32_TRUNC_U_F64:
821
49.8k
    case WASM_INS_I64_EXTEND_S_I32:
822
50.8k
    case WASM_INS_I64_EXTEND_U_I32:
823
51.0k
    case WASM_INS_I64_TRUNC_S_F32:
824
51.4k
    case WASM_INS_I64_TRUNC_U_F32:
825
51.5k
    case WASM_INS_I64_TRUNC_S_F64:
826
51.8k
    case WASM_INS_I64_TRUNC_U_F64:
827
53.4k
    case WASM_INS_F32_CONVERT_S_I32:
828
53.5k
    case WASM_INS_F32_CONVERT_U_I32:
829
53.5k
    case WASM_INS_F32_CONVERT_S_I64:
830
53.8k
    case WASM_INS_F32_CONVERT_U_I64:
831
53.9k
    case WASM_INS_F32_DEMOTE_F64:
832
54.1k
    case WASM_INS_F64_CONVERT_S_I32:
833
54.4k
    case WASM_INS_F64_CONVERT_U_I32:
834
54.7k
    case WASM_INS_F64_CONVERT_S_I64:
835
55.1k
    case WASM_INS_F64_CONVERT_U_I64:
836
55.3k
    case WASM_INS_F64_PROMOTE_F32:
837
55.6k
    case WASM_INS_I32_REINTERPRET_F32:
838
56.1k
    case WASM_INS_I64_REINTERPRET_F64:
839
56.3k
    case WASM_INS_F32_REINTERPRET_I32:
840
56.5k
    case WASM_INS_F64_REINTERPRET_I64:
841
56.5k
      MI->wasm_data.type = WASM_OP_NONE;
842
843
56.5k
      if (MI->flat_insn->detail) {
844
56.5k
        MI->flat_insn->detail->wasm.op_count = 0;
845
56.5k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_NUMBERIC;
846
56.5k
        MI->flat_insn->detail->groups_count++;
847
56.5k
      }
848
849
56.5k
      *size = 1;
850
851
56.5k
      break;
852
853
278
    case WASM_INS_DROP:
854
1.01k
    case WASM_INS_SELECT:
855
1.01k
      MI->wasm_data.type = WASM_OP_NONE;
856
857
1.01k
      if (MI->flat_insn->detail) {
858
1.01k
        MI->flat_insn->detail->wasm.op_count = 0;
859
1.01k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_PARAMETRIC;
860
1.01k
        MI->flat_insn->detail->groups_count++;
861
1.01k
      }
862
863
1.01k
      *size = 1;
864
865
1.01k
      break;
866
867
382
    case WASM_INS_GET_LOCAL:
868
595
    case WASM_INS_SET_LOCAL:
869
1.24k
    case WASM_INS_TEE_LOCAL:
870
1.46k
    case WASM_INS_GET_GLOBAL:
871
1.86k
    case WASM_INS_SET_GLOBAL:
872
1.86k
      if (code_len == 1 || !read_varuint32(&code[1], code_len - 1, &param_size, MI)) {
873
44
        return false;
874
44
      }
875
876
1.81k
      if (MI->flat_insn->detail) {
877
1.81k
        MI->flat_insn->detail->wasm.op_count = 1;
878
1.81k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_VARIABLE;
879
1.81k
        MI->flat_insn->detail->groups_count++;
880
1.81k
      }
881
882
1.81k
      *size = param_size + 1;
883
884
1.81k
      break;
885
886
220
    case WASM_INS_I32_LOAD:
887
432
    case WASM_INS_I64_LOAD:
888
655
    case WASM_INS_F32_LOAD:
889
859
    case WASM_INS_F64_LOAD:
890
1.25k
    case WASM_INS_I32_LOAD8_S:
891
1.69k
    case WASM_INS_I32_LOAD8_U:
892
1.94k
    case WASM_INS_I32_LOAD16_S:
893
2.35k
    case WASM_INS_I32_LOAD16_U:
894
2.73k
    case WASM_INS_I64_LOAD8_S:
895
3.06k
    case WASM_INS_I64_LOAD8_U:
896
3.47k
    case WASM_INS_I64_LOAD16_S:
897
3.76k
    case WASM_INS_I64_LOAD16_U:
898
4.05k
    case WASM_INS_I64_LOAD32_S:
899
4.29k
    case WASM_INS_I64_LOAD32_U:
900
4.39k
    case WASM_INS_I32_STORE:
901
4.73k
    case WASM_INS_I64_STORE:
902
5.09k
    case WASM_INS_F32_STORE:
903
5.29k
    case WASM_INS_F64_STORE:
904
5.49k
    case WASM_INS_I32_STORE8:
905
5.78k
    case WASM_INS_I32_STORE16:
906
5.93k
    case WASM_INS_I64_STORE8:
907
6.51k
    case WASM_INS_I64_STORE16:
908
6.59k
    case WASM_INS_I64_STORE32:
909
6.59k
      if (code_len == 1 || !read_memoryimmediate(&code[1], code_len - 1, &param_size, MI)) {
910
163
        return false;
911
163
      }
912
913
6.42k
      if (MI->flat_insn->detail) {
914
6.42k
        MI->flat_insn->detail->wasm.op_count = 2;
915
6.42k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_MEMORY;
916
6.42k
        MI->flat_insn->detail->groups_count++;
917
6.42k
      }
918
919
6.42k
      *size = param_size + 1;
920
921
6.42k
      break;
922
923
263
    case WASM_INS_CURRENT_MEMORY:
924
819
    case WASM_INS_GROW_MEMORY:
925
819
      MI->wasm_data.type = WASM_OP_NONE;
926
927
819
      if (MI->flat_insn->detail) {
928
819
        MI->flat_insn->detail->wasm.op_count = 0;
929
819
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_MEMORY;
930
819
        MI->flat_insn->detail->groups_count++;
931
819
      }
932
933
819
      *size = 1;
934
935
819
      break;
936
937
18.6k
    case WASM_INS_UNREACHABLE:
938
19.2k
    case WASM_INS_NOP:
939
19.4k
    case WASM_INS_ELSE:
940
19.7k
    case WASM_INS_END:
941
19.9k
    case WASM_INS_RETURN:
942
19.9k
      MI->wasm_data.type = WASM_OP_NONE;
943
944
19.9k
      if (MI->flat_insn->detail) {
945
19.9k
        MI->flat_insn->detail->wasm.op_count = 0;
946
19.9k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_CONTROL;
947
19.9k
        MI->flat_insn->detail->groups_count++;
948
19.9k
      }
949
950
19.9k
      *size = 1;
951
952
19.9k
      break;
953
954
152
    case WASM_INS_BLOCK:
955
312
    case WASM_INS_LOOP:
956
803
    case WASM_INS_IF:
957
803
      if (code_len == 1 || !read_varint7(&code[1], code_len - 1, &param_size, MI)) {
958
30
        return false;
959
30
      }
960
961
773
      if (MI->flat_insn->detail) {
962
773
        MI->flat_insn->detail->wasm.op_count = 1;
963
773
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_CONTROL;
964
773
        MI->flat_insn->detail->groups_count++;
965
773
      }
966
967
773
      *size = param_size + 1;
968
969
773
      break;
970
971
415
    case WASM_INS_BR:
972
715
    case WASM_INS_BR_IF:
973
959
    case WASM_INS_CALL:
974
1.24k
    case WASM_INS_CALL_INDIRECT:
975
1.24k
      if (code_len == 1 || !read_varuint32(&code[1], code_len - 1, &param_size, MI)) {
976
29
        return false;
977
29
      }
978
979
1.21k
      if (MI->flat_insn->detail) {
980
1.21k
        MI->flat_insn->detail->wasm.op_count = 1;
981
1.21k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_CONTROL;
982
1.21k
        MI->flat_insn->detail->groups_count++;
983
1.21k
      }
984
985
1.21k
      *size = param_size + 1;
986
987
1.21k
      break;
988
989
481
    case WASM_INS_BR_TABLE:
990
481
      if (code_len == 1 || !read_brtable(&code[1], code_len - 1, &param_size, MI)) {
991
68
        return false;
992
68
      }
993
994
413
      if (MI->flat_insn->detail) {
995
413
        MI->flat_insn->detail->wasm.op_count = 1;
996
413
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_CONTROL;
997
413
        MI->flat_insn->detail->groups_count++;
998
413
      }
999
1000
413
      *size = param_size + 1;
1001
1002
413
      break;
1003
91.0k
  }
1004
1005
90.7k
  return true;
1006
91.0k
}