Coverage Report

Created: 2026-06-15 06:41

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/capstonenext/arch/WASM/WASMDisassembler.c
Line
Count
Source
1
/* Capstone Disassembly Engine */
2
/* By Spike, xwings 2019 */
3
4
#include <string.h>
5
#include <stddef.h>
6
7
#include "WASMDisassembler.h"
8
#include "WASMMapping.h"
9
#include "../../cs_priv.h"
10
11
static const short opcodes[256] = {
12
  WASM_INS_UNREACHABLE,
13
  WASM_INS_NOP,
14
  WASM_INS_BLOCK,
15
  WASM_INS_LOOP,
16
  WASM_INS_IF,
17
  WASM_INS_ELSE,
18
  -1,
19
  -1,
20
  -1,
21
  -1,
22
  -1,
23
  WASM_INS_END,
24
  WASM_INS_BR,
25
  WASM_INS_BR_IF,
26
  WASM_INS_BR_TABLE,
27
  WASM_INS_RETURN,
28
  WASM_INS_CALL,
29
  WASM_INS_CALL_INDIRECT,
30
  -1,
31
  -1,
32
  -1,
33
  -1,
34
  -1,
35
  -1,
36
  -1,
37
  -1,
38
  WASM_INS_DROP,
39
  WASM_INS_SELECT,
40
  -1,
41
  -1,
42
  -1,
43
  -1,
44
  WASM_INS_GET_LOCAL,
45
  WASM_INS_SET_LOCAL,
46
  WASM_INS_TEE_LOCAL,
47
  WASM_INS_GET_GLOBAL,
48
  WASM_INS_SET_GLOBAL,
49
  -1,
50
  -1,
51
  -1,
52
  WASM_INS_I32_LOAD,
53
  WASM_INS_I64_LOAD,
54
  WASM_INS_F32_LOAD,
55
  WASM_INS_F64_LOAD,
56
  WASM_INS_I32_LOAD8_S,
57
  WASM_INS_I32_LOAD8_U,
58
  WASM_INS_I32_LOAD16_S,
59
  WASM_INS_I32_LOAD16_U,
60
  WASM_INS_I64_LOAD8_S,
61
  WASM_INS_I64_LOAD8_U,
62
  WASM_INS_I64_LOAD16_S,
63
  WASM_INS_I64_LOAD16_U,
64
  WASM_INS_I64_LOAD32_S,
65
  WASM_INS_I64_LOAD32_U,
66
  WASM_INS_I32_STORE,
67
  WASM_INS_I64_STORE,
68
  WASM_INS_F32_STORE,
69
  WASM_INS_F64_STORE,
70
  WASM_INS_I32_STORE8,
71
  WASM_INS_I32_STORE16,
72
  WASM_INS_I64_STORE8,
73
  WASM_INS_I64_STORE16,
74
  WASM_INS_I64_STORE32,
75
  WASM_INS_CURRENT_MEMORY,
76
  WASM_INS_GROW_MEMORY,
77
  WASM_INS_I32_CONST,
78
  WASM_INS_I64_CONST,
79
  WASM_INS_F32_CONST,
80
  WASM_INS_F64_CONST,
81
  WASM_INS_I32_EQZ,
82
  WASM_INS_I32_EQ,
83
  WASM_INS_I32_NE,
84
  WASM_INS_I32_LT_S,
85
  WASM_INS_I32_LT_U,
86
  WASM_INS_I32_GT_S,
87
  WASM_INS_I32_GT_U,
88
  WASM_INS_I32_LE_S,
89
  WASM_INS_I32_LE_U,
90
  WASM_INS_I32_GE_S,
91
  WASM_INS_I32_GE_U,
92
  WASM_INS_I64_EQZ,
93
  WASM_INS_I64_EQ,
94
  WASM_INS_I64_NE,
95
  WASM_INS_I64_LT_S,
96
  WASM_INS_I64_LT_U,
97
  WASN_INS_I64_GT_S,
98
  WASM_INS_I64_GT_U,
99
  WASM_INS_I64_LE_S,
100
  WASM_INS_I64_LE_U,
101
  WASM_INS_I64_GE_S,
102
  WASM_INS_I64_GE_U,
103
  WASM_INS_F32_EQ,
104
  WASM_INS_F32_NE,
105
  WASM_INS_F32_LT,
106
  WASM_INS_F32_GT,
107
  WASM_INS_F32_LE,
108
  WASM_INS_F32_GE,
109
  WASM_INS_F64_EQ,
110
  WASM_INS_F64_NE,
111
  WASM_INS_F64_LT,
112
  WASM_INS_F64_GT,
113
  WASM_INS_F64_LE,
114
  WASM_INS_F64_GE,
115
  WASM_INS_I32_CLZ,
116
  WASM_INS_I32_CTZ,
117
  WASM_INS_I32_POPCNT,
118
  WASM_INS_I32_ADD,
119
  WASM_INS_I32_SUB,
120
  WASM_INS_I32_MUL,
121
  WASM_INS_I32_DIV_S,
122
  WASM_INS_I32_DIV_U,
123
  WASM_INS_I32_REM_S,
124
  WASM_INS_I32_REM_U,
125
  WASM_INS_I32_AND,
126
  WASM_INS_I32_OR,
127
  WASM_INS_I32_XOR,
128
  WASM_INS_I32_SHL,
129
  WASM_INS_I32_SHR_S,
130
  WASM_INS_I32_SHR_U,
131
  WASM_INS_I32_ROTL,
132
  WASM_INS_I32_ROTR,
133
  WASM_INS_I64_CLZ,
134
  WASM_INS_I64_CTZ,
135
  WASM_INS_I64_POPCNT,
136
  WASM_INS_I64_ADD,
137
  WASM_INS_I64_SUB,
138
  WASM_INS_I64_MUL,
139
  WASM_INS_I64_DIV_S,
140
  WASM_INS_I64_DIV_U,
141
  WASM_INS_I64_REM_S,
142
  WASM_INS_I64_REM_U,
143
  WASM_INS_I64_AND,
144
  WASM_INS_I64_OR,
145
  WASM_INS_I64_XOR,
146
  WASM_INS_I64_SHL,
147
  WASM_INS_I64_SHR_S,
148
  WASM_INS_I64_SHR_U,
149
  WASM_INS_I64_ROTL,
150
  WASM_INS_I64_ROTR,
151
  WASM_INS_F32_ABS,
152
  WASM_INS_F32_NEG,
153
  WASM_INS_F32_CEIL,
154
  WASM_INS_F32_FLOOR,
155
  WASM_INS_F32_TRUNC,
156
  WASM_INS_F32_NEAREST,
157
  WASM_INS_F32_SQRT,
158
  WASM_INS_F32_ADD,
159
  WASM_INS_F32_SUB,
160
  WASM_INS_F32_MUL,
161
  WASM_INS_F32_DIV,
162
  WASM_INS_F32_MIN,
163
  WASM_INS_F32_MAX,
164
  WASM_INS_F32_COPYSIGN,
165
  WASM_INS_F64_ABS,
166
  WASM_INS_F64_NEG,
167
  WASM_INS_F64_CEIL,
168
  WASM_INS_F64_FLOOR,
169
  WASM_INS_F64_TRUNC,
170
  WASM_INS_F64_NEAREST,
171
  WASM_INS_F64_SQRT,
172
  WASM_INS_F64_ADD,
173
  WASM_INS_F64_SUB,
174
  WASM_INS_F64_MUL,
175
  WASM_INS_F64_DIV,
176
  WASM_INS_F64_MIN,
177
  WASM_INS_F64_MAX,
178
  WASM_INS_F64_COPYSIGN,
179
  WASM_INS_I32_WARP_I64,
180
  WASP_INS_I32_TRUNC_S_F32,
181
  WASM_INS_I32_TRUNC_U_F32,
182
  WASM_INS_I32_TRUNC_S_F64,
183
  WASM_INS_I32_TRUNC_U_F64,
184
  WASM_INS_I64_EXTEND_S_I32,
185
  WASM_INS_I64_EXTEND_U_I32,
186
  WASM_INS_I64_TRUNC_S_F32,
187
  WASM_INS_I64_TRUNC_U_F32,
188
  WASM_INS_I64_TRUNC_S_F64,
189
  WASM_INS_I64_TRUNC_U_F64,
190
  WASM_INS_F32_CONVERT_S_I32,
191
  WASM_INS_F32_CONVERT_U_I32,
192
  WASM_INS_F32_CONVERT_S_I64,
193
  WASM_INS_F32_CONVERT_U_I64,
194
  WASM_INS_F32_DEMOTE_F64,
195
  WASM_INS_F64_CONVERT_S_I32,
196
  WASM_INS_F64_CONVERT_U_I32,
197
  WASM_INS_F64_CONVERT_S_I64,
198
  WASM_INS_F64_CONVERT_U_I64,
199
  WASM_INS_F64_PROMOTE_F32,
200
  WASM_INS_I32_REINTERPRET_F32,
201
  WASM_INS_I64_REINTERPRET_F64,
202
  WASM_INS_F32_REINTERPRET_I32,
203
  WASM_INS_F64_REINTERPRET_I64,
204
  -1,
205
  -1,
206
  -1,
207
  -1,
208
  -1,
209
  -1,
210
  -1,
211
  -1,
212
  -1,
213
  -1,
214
  -1,
215
  -1,
216
  -1,
217
  -1,
218
  -1,
219
  -1,
220
  -1,
221
  -1,
222
  -1,
223
  -1,
224
  -1,
225
  -1,
226
  -1,
227
  -1,
228
  -1,
229
  -1,
230
  -1,
231
  -1,
232
  -1,
233
  -1,
234
  -1,
235
  -1,
236
  -1,
237
  -1,
238
  -1,
239
  -1,
240
  -1,
241
  -1,
242
  -1,
243
  -1,
244
  -1,
245
  -1,
246
  -1,
247
  -1,
248
  -1,
249
  -1,
250
  -1,
251
  -1,
252
  -1,
253
  -1,
254
  -1,
255
  -1,
256
  -1,
257
  -1,
258
  -1,
259
  -1,
260
  -1,
261
  -1,
262
  -1,
263
  -1,
264
  -1,
265
  -1,
266
  -1,
267
  -1,
268
};
269
270
// input  | code: code pointer start from varuint32
271
//        | code_len: real code len count from varint
272
//        | leng: return value, means length of varint. -1 means error
273
// return | varint
274
static uint32_t get_varuint32(const uint8_t *code, size_t code_len,
275
            size_t *leng)
276
18.5k
{
277
18.5k
  uint32_t data = 0;
278
18.5k
  int i;
279
280
24.7k
  for (i = 0;; i++) {
281
24.7k
    if (code_len < i + 1) {
282
94
      *leng = -1;
283
94
      return 0;
284
94
    }
285
286
24.6k
    if (i > 4 || (i == 4 && (code[i] & 0x7f) > 0x0f)) {
287
21
      *leng = -1;
288
21
      return 0;
289
21
    }
290
291
24.5k
    data = data + (((uint32_t)code[i] & 0x7f) << (i * 7));
292
24.5k
    if (code[i] >> 7 == 0) {
293
18.4k
      break;
294
18.4k
    }
295
24.5k
  }
296
297
18.4k
  *leng = i + 1;
298
299
18.4k
  return data;
300
18.5k
}
301
302
// input  | code : code pointer start from varuint64
303
//        | code_len : real code len count from varint
304
//        | leng: return value, means length of varint. -1 means error
305
// return   | varint
306
static uint64_t get_varuint64(const uint8_t *code, size_t code_len,
307
            size_t *leng)
308
545
{
309
545
  uint64_t data;
310
545
  int i;
311
312
545
  data = 0;
313
3.18k
  for (i = 0;; i++) {
314
3.18k
    if (code_len < i + 1) {
315
6
      *leng = -1;
316
6
      return 0;
317
6
    }
318
319
3.17k
    if (i > 9 || (i == 9 && (code[i] & 0x7f) > 0x01)) {
320
1
      *leng = -1;
321
1
      return 0;
322
1
    }
323
324
3.17k
    data = data + (((uint64_t)code[i] & 0x7f) << (i * 7));
325
3.17k
    if (code[i] >> 7 == 0) {
326
538
      break;
327
538
    }
328
3.17k
  }
329
330
538
  *leng = i + 1;
331
332
538
  return data;
333
545
}
334
335
// input  | code : code pointer start from uint32
336
//      | dest : the pointer where we store the uint32
337
// return | None
338
static void get_uint32(const uint8_t *code, uint32_t *dest)
339
230
{
340
230
  memcpy(dest, code, 4);
341
230
}
342
343
// input  | code : code pointer start from uint32
344
//      | dest : the pointer where we store the uint64
345
// return   | None
346
static void get_uint64(const uint8_t *code, uint64_t *dest)
347
56
{
348
56
  memcpy(dest, code, 8);
349
56
}
350
351
// input  | code : code pointer start from varint7
352
//      | code_len : start from the code pointer to the end, how long is it
353
//      | leng : length of the param , -1 means error
354
// return   | data of varint7
355
static int8_t get_varint7(const uint8_t *code, size_t code_len, size_t *leng)
356
1.32k
{
357
1.32k
  int8_t data;
358
359
1.32k
  if (code_len < 1) {
360
0
    *leng = -1;
361
0
    return -1;
362
0
  }
363
364
1.32k
  *leng = 1;
365
366
1.32k
  if (code[0] == 0x40) {
367
321
    return -1;
368
321
  }
369
370
1.00k
  data = code[0] & 0x7f;
371
372
1.00k
  return data;
373
1.32k
}
374
375
// input  | code : code pointer start from varuint32
376
//      | code_len : start from the code pointer to the end, how long is it
377
//      | param_size : pointer of the param size
378
//      | MI : Mcinst handler in this round of disasm
379
// return   | true/false if the function successfully finished
380
static bool read_varuint32(const uint8_t *code, size_t code_len,
381
         uint16_t *param_size, MCInst *MI)
382
2.48k
{
383
2.48k
  size_t len = 0;
384
2.48k
  uint32_t data;
385
386
2.48k
  data = get_varuint32(code, code_len, &len);
387
2.48k
  if (len == -1) {
388
13
    return false;
389
13
  }
390
391
2.46k
  if (MI->flat_insn->detail) {
392
2.46k
    MI->flat_insn->detail->wasm.op_count = 1;
393
2.46k
    MI->flat_insn->detail->wasm.operands[0].type =
394
2.46k
      WASM_OP_VARUINT32;
395
2.46k
    MI->flat_insn->detail->wasm.operands[0].size = len;
396
2.46k
    MI->flat_insn->detail->wasm.operands[0].varuint32 = data;
397
2.46k
  }
398
399
2.46k
  MI->wasm_data.size = len;
400
2.46k
  MI->wasm_data.type = WASM_OP_VARUINT32;
401
2.46k
  MI->wasm_data.uint32 = data;
402
2.46k
  *param_size = len;
403
404
2.46k
  return true;
405
2.48k
}
406
407
// input  | code : code pointer start from varuint64
408
//      | code_len : start from the code pointer to the end, how long is it
409
//      | param_size : pointer of the param size
410
//      | MI : Mcinst handler in this round of disasm
411
// return   | true/false if the function successfully finished
412
static bool read_varuint64(const uint8_t *code, size_t code_len,
413
         uint16_t *param_size, MCInst *MI)
414
545
{
415
545
  size_t len = 0;
416
545
  uint64_t data;
417
418
545
  data = get_varuint64(code, code_len, &len);
419
545
  if (len == -1) {
420
7
    return false;
421
7
  }
422
423
538
  if (MI->flat_insn->detail) {
424
538
    MI->flat_insn->detail->wasm.op_count = 1;
425
538
    MI->flat_insn->detail->wasm.operands[0].type =
426
538
      WASM_OP_VARUINT64;
427
538
    MI->flat_insn->detail->wasm.operands[0].size = len;
428
538
    MI->flat_insn->detail->wasm.operands[0].varuint64 = data;
429
538
  }
430
431
538
  MI->wasm_data.size = len;
432
538
  MI->wasm_data.type = WASM_OP_VARUINT64;
433
538
  MI->wasm_data.uint64 = data;
434
538
  *param_size = len;
435
436
538
  return true;
437
545
}
438
439
// input  | code : code pointer start from memoryimmediate
440
//      | code_len : start from the code pointer to the end, how long is it
441
//      | param_size : pointer of the param size (sum of two params)
442
//      | MI : Mcinst handler in this round of disasm
443
// return   | true/false if the function successfully finished
444
static bool read_memoryimmediate(const uint8_t *code, size_t code_len,
445
         uint16_t *param_size, MCInst *MI)
446
4.68k
{
447
4.68k
  size_t tmp, len = 0;
448
4.68k
  uint32_t data[2];
449
450
4.68k
  if (MI->flat_insn->detail) {
451
4.68k
    MI->flat_insn->detail->wasm.op_count = 2;
452
4.68k
  }
453
454
4.68k
  data[0] = get_varuint32(code, code_len, &tmp);
455
4.68k
  if (tmp == -1) {
456
27
    return false;
457
27
  }
458
459
4.65k
  if (MI->flat_insn->detail) {
460
4.65k
    MI->flat_insn->detail->wasm.operands[0].type =
461
4.65k
      WASM_OP_VARUINT32;
462
4.65k
    MI->flat_insn->detail->wasm.operands[0].size = tmp;
463
4.65k
    MI->flat_insn->detail->wasm.operands[0].varuint32 = data[0];
464
4.65k
  }
465
466
4.65k
  len = tmp;
467
4.65k
  data[1] = get_varuint32(&code[len], code_len - len, &tmp);
468
4.65k
  if (tmp == -1) {
469
50
    return false;
470
50
  }
471
472
4.60k
  if (MI->flat_insn->detail) {
473
4.60k
    MI->flat_insn->detail->wasm.operands[1].type =
474
4.60k
      WASM_OP_VARUINT32;
475
4.60k
    MI->flat_insn->detail->wasm.operands[1].size = tmp;
476
4.60k
    MI->flat_insn->detail->wasm.operands[1].varuint32 = data[1];
477
4.60k
  }
478
479
4.60k
  len += tmp;
480
4.60k
  MI->wasm_data.size = len;
481
4.60k
  MI->wasm_data.type = WASM_OP_IMM;
482
4.60k
  MI->wasm_data.immediate[0] = data[0];
483
4.60k
  MI->wasm_data.immediate[1] = data[1];
484
4.60k
  *param_size = len;
485
486
4.60k
  return true;
487
4.65k
}
488
489
// input  | code : code pointer start from uint32
490
//      | code_len : start from the code pointer to the end, how long is it
491
//      | param_size : pointer of the param size
492
//      | MI : Mcinst handler in this round of disasm
493
// return   | true/false if the function successfully finished
494
static bool read_uint32(const uint8_t *code, size_t code_len,
495
      uint16_t *param_size, MCInst *MI)
496
121
{
497
121
  if (code_len < 4) {
498
6
    return false;
499
6
  }
500
501
115
  get_uint32(code, &(MI->wasm_data.uint32));
502
503
115
  if (MI->flat_insn->detail) {
504
115
    MI->flat_insn->detail->wasm.op_count = 1;
505
115
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_UINT32;
506
115
    MI->flat_insn->detail->wasm.operands[0].size = 4;
507
115
    get_uint32(code,
508
115
         &(MI->flat_insn->detail->wasm.operands[0].uint32));
509
115
  }
510
511
115
  MI->wasm_data.size = 4;
512
115
  MI->wasm_data.type = WASM_OP_UINT32;
513
115
  *param_size = 4;
514
515
115
  return true;
516
121
}
517
518
// input  | code : code pointer start from uint64
519
//      | code_len : start from the code pointer to the end, how long is it
520
//      | param_size : pointer of the param size
521
//      | MI : Mcinst handler in this round of disasm
522
// return   | true/false if the function successfully finished
523
static bool read_uint64(const uint8_t *code, size_t code_len,
524
      uint16_t *param_size, MCInst *MI)
525
32
{
526
32
  if (code_len < 8) {
527
4
    return false;
528
4
  }
529
530
28
  get_uint64(code, &(MI->wasm_data.uint64));
531
532
28
  if (MI->flat_insn->detail) {
533
28
    MI->flat_insn->detail->wasm.op_count = 1;
534
28
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_UINT64;
535
28
    MI->flat_insn->detail->wasm.operands[0].size = 8;
536
28
    get_uint64(code,
537
28
         &(MI->flat_insn->detail->wasm.operands[0].uint64));
538
28
  }
539
540
28
  MI->wasm_data.size = 8;
541
28
  MI->wasm_data.type = WASM_OP_UINT64;
542
28
  *param_size = 8;
543
544
28
  return true;
545
32
}
546
547
// input  | code : code pointer start from brtable
548
//      | code_len : start from the code pointer to the end, how long is it
549
//      | param_size : pointer of the param size (sum of all param)
550
//      | MI : Mcinst handler in this round of disasm
551
// return   | true/false if the function successfully finished
552
static bool read_brtable(const uint8_t *code, size_t code_len,
553
       uint16_t *param_size, MCInst *MI)
554
640
{
555
640
  uint32_t length, default_target;
556
640
  int tmp_len = 0, i;
557
640
  size_t var_len;
558
559
  // read length
560
640
  length = get_varuint32(code, code_len, &var_len);
561
640
  if (var_len == -1) {
562
3
    return false;
563
3
  }
564
565
637
  tmp_len += var_len;
566
637
  MI->wasm_data.brtable.length = length;
567
637
  if (length >= UINT32_MAX - tmp_len) {
568
    // integer overflow check
569
0
    return false;
570
0
  }
571
637
  if (code_len < tmp_len + length) {
572
    // safety check that we have minimum enough data to read
573
19
    return false;
574
19
  }
575
  // base address + 1 byte opcode + tmp_len for number of cases = start of targets
576
618
  MI->wasm_data.brtable.address = MI->address + 1 + tmp_len;
577
578
618
  if (MI->flat_insn->detail) {
579
618
    MI->flat_insn->detail->wasm.op_count = 1;
580
618
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_BRTABLE;
581
618
    MI->flat_insn->detail->wasm.operands[0].brtable.length =
582
618
      MI->wasm_data.brtable.length;
583
618
    MI->flat_insn->detail->wasm.operands[0].brtable.address =
584
618
      MI->wasm_data.brtable.address;
585
618
  }
586
587
  // read data
588
6.05k
  for (i = 0; i < length; i++) {
589
5.44k
    if (code_len < tmp_len) {
590
0
      return false;
591
0
    }
592
593
5.44k
    get_varuint32(code + tmp_len, code_len - tmp_len, &var_len);
594
5.44k
    if (var_len == -1) {
595
10
      return false;
596
10
    }
597
598
5.43k
    tmp_len += var_len;
599
5.43k
  }
600
601
  // read default target
602
608
  default_target =
603
608
    get_varuint32(code + tmp_len, code_len - tmp_len, &var_len);
604
608
  if (var_len == -1) {
605
12
    return false;
606
12
  }
607
608
596
  MI->wasm_data.brtable.default_target = default_target;
609
596
  MI->wasm_data.type = WASM_OP_BRTABLE;
610
596
  if ((uint64_t)(tmp_len + var_len) >= UINT16_MAX) {
611
0
    return false;
612
0
  }
613
596
  *param_size = tmp_len + var_len;
614
615
596
  if (MI->flat_insn->detail) {
616
596
    MI->flat_insn->detail->wasm.operands[0].size = *param_size;
617
596
    MI->flat_insn->detail->wasm.operands[0].brtable.default_target =
618
596
      MI->wasm_data.brtable.default_target;
619
596
  }
620
621
596
  return true;
622
596
}
623
624
// input  | code : code pointer start from varint7
625
//      | code_len : start from the code pointer to the end, how long is it
626
//      | param_size : pointer of the param size
627
//      | MI : Mcinst handler in this round of disasm
628
// return   | true/false if the function successfully finished
629
static bool read_varint7(const uint8_t *code, size_t code_len,
630
       uint16_t *param_size, MCInst *MI)
631
1.32k
{
632
1.32k
  size_t len = 0;
633
634
1.32k
  MI->wasm_data.type = WASM_OP_INT7;
635
1.32k
  MI->wasm_data.int7 = get_varint7(code, code_len, &len);
636
1.32k
  if (len == -1) {
637
0
    return false;
638
0
  }
639
640
1.32k
  if (MI->flat_insn->detail) {
641
1.32k
    MI->flat_insn->detail->wasm.op_count = 1;
642
1.32k
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_INT7;
643
1.32k
    MI->flat_insn->detail->wasm.operands[0].size = 1;
644
1.32k
    MI->flat_insn->detail->wasm.operands[0].int7 =
645
1.32k
      MI->wasm_data.int7;
646
1.32k
  }
647
648
1.32k
  *param_size = len;
649
650
1.32k
  return true;
651
1.32k
}
652
653
bool WASM_getInstruction(csh ud, const uint8_t *code, size_t code_len,
654
       MCInst *MI, uint16_t *size, uint64_t address,
655
       void *inst_info)
656
61.6k
{
657
61.6k
  unsigned char opcode;
658
61.6k
  uint16_t param_size;
659
660
61.6k
  if (code_len == 0)
661
0
    return false;
662
663
61.6k
  opcode = code[0];
664
61.6k
  if (opcodes[opcode] == -1) {
665
    // invalid opcode
666
209
    return false;
667
209
  }
668
669
  // valid opcode
670
61.3k
  MI->address = address;
671
61.3k
  MI->OpcodePub = MI->Opcode = opcode;
672
673
61.3k
  if (MI->flat_insn->detail) {
674
61.3k
    memset(MI->flat_insn->detail, 0,
675
61.3k
           offsetof(cs_detail, wasm) + sizeof(cs_wasm));
676
61.3k
    WASM_get_insn_id((cs_struct *)ud, MI->flat_insn, opcode);
677
61.3k
  }
678
679
  // setup groups
680
61.3k
  switch (opcode) {
681
0
  default:
682
0
    return false;
683
684
220
  case WASM_INS_I32_CONST:
685
220
    if (code_len == 1 ||
686
218
        !read_varuint32(&code[1], code_len - 1, &param_size, MI)) {
687
3
      return false;
688
3
    }
689
690
217
    if (MI->flat_insn->detail) {
691
217
      MI->flat_insn->detail->wasm.op_count = 1;
692
217
      MI->flat_insn->detail
693
217
        ->groups[MI->flat_insn->detail->groups_count] =
694
217
        WASM_GRP_NUMBERIC;
695
217
      MI->flat_insn->detail->groups_count++;
696
217
    }
697
698
217
    *size = param_size + 1;
699
700
217
    break;
701
702
549
  case WASM_INS_I64_CONST:
703
549
    if (code_len == 1 ||
704
545
        !read_varuint64(&code[1], code_len - 1, &param_size, MI)) {
705
11
      return false;
706
11
    }
707
708
538
    if (MI->flat_insn->detail) {
709
538
      MI->flat_insn->detail->wasm.op_count = 1;
710
538
      MI->flat_insn->detail
711
538
        ->groups[MI->flat_insn->detail->groups_count] =
712
538
        WASM_GRP_NUMBERIC;
713
538
      MI->flat_insn->detail->groups_count++;
714
538
    }
715
716
538
    *size = param_size + 1;
717
718
538
    break;
719
720
124
  case WASM_INS_F32_CONST:
721
124
    if (code_len == 1 ||
722
121
        !read_uint32(&code[1], code_len - 1, &param_size, MI)) {
723
9
      return false;
724
9
    }
725
726
115
    if (MI->flat_insn->detail) {
727
115
      MI->flat_insn->detail->wasm.op_count = 1;
728
115
      MI->flat_insn->detail
729
115
        ->groups[MI->flat_insn->detail->groups_count] =
730
115
        WASM_GRP_NUMBERIC;
731
115
      MI->flat_insn->detail->groups_count++;
732
115
    }
733
734
115
    *size = param_size + 1;
735
736
115
    break;
737
738
32
  case WASM_INS_F64_CONST:
739
32
    if (code_len == 1 ||
740
32
        !read_uint64(&code[1], code_len - 1, &param_size, MI)) {
741
4
      return false;
742
4
    }
743
744
28
    if (MI->flat_insn->detail) {
745
28
      MI->flat_insn->detail->wasm.op_count = 1;
746
28
      MI->flat_insn->detail
747
28
        ->groups[MI->flat_insn->detail->groups_count] =
748
28
        WASM_GRP_NUMBERIC;
749
28
      MI->flat_insn->detail->groups_count++;
750
28
    }
751
752
28
    *size = param_size + 1;
753
754
28
    break;
755
756
151
  case WASM_INS_I32_EQZ:
757
326
  case WASM_INS_I32_EQ:
758
379
  case WASM_INS_I32_NE:
759
588
  case WASM_INS_I32_LT_S:
760
771
  case WASM_INS_I32_LT_U:
761
969
  case WASM_INS_I32_GT_S:
762
1.18k
  case WASM_INS_I32_GT_U:
763
1.29k
  case WASM_INS_I32_LE_S:
764
1.47k
  case WASM_INS_I32_LE_U:
765
1.56k
  case WASM_INS_I32_GE_S:
766
1.88k
  case WASM_INS_I32_GE_U:
767
2.14k
  case WASM_INS_I64_EQZ:
768
2.45k
  case WASM_INS_I64_EQ:
769
2.48k
  case WASM_INS_I64_NE:
770
2.57k
  case WASM_INS_I64_LT_S:
771
2.77k
  case WASM_INS_I64_LT_U:
772
2.85k
  case WASN_INS_I64_GT_S:
773
3.08k
  case WASM_INS_I64_GT_U:
774
3.20k
  case WASM_INS_I64_LE_S:
775
3.60k
  case WASM_INS_I64_LE_U:
776
3.71k
  case WASM_INS_I64_GE_S:
777
3.90k
  case WASM_INS_I64_GE_U:
778
4.18k
  case WASM_INS_F32_EQ:
779
4.35k
  case WASM_INS_F32_NE:
780
4.72k
  case WASM_INS_F32_LT:
781
4.89k
  case WASM_INS_F32_GT:
782
5.07k
  case WASM_INS_F32_LE:
783
6.06k
  case WASM_INS_F32_GE:
784
6.23k
  case WASM_INS_F64_EQ:
785
6.44k
  case WASM_INS_F64_NE:
786
6.72k
  case WASM_INS_F64_LT:
787
9.07k
  case WASM_INS_F64_GT:
788
11.0k
  case WASM_INS_F64_LE:
789
11.1k
  case WASM_INS_F64_GE:
790
11.5k
  case WASM_INS_I32_CLZ:
791
11.7k
  case WASM_INS_I32_CTZ:
792
11.9k
  case WASM_INS_I32_POPCNT:
793
12.1k
  case WASM_INS_I32_ADD:
794
12.9k
  case WASM_INS_I32_SUB:
795
13.5k
  case WASM_INS_I32_MUL:
796
13.9k
  case WASM_INS_I32_DIV_S:
797
14.0k
  case WASM_INS_I32_DIV_U:
798
14.3k
  case WASM_INS_I32_REM_S:
799
14.5k
  case WASM_INS_I32_REM_U:
800
14.6k
  case WASM_INS_I32_AND:
801
14.8k
  case WASM_INS_I32_OR:
802
14.9k
  case WASM_INS_I32_XOR:
803
15.1k
  case WASM_INS_I32_SHL:
804
15.3k
  case WASM_INS_I32_SHR_S:
805
16.0k
  case WASM_INS_I32_SHR_U:
806
16.2k
  case WASM_INS_I32_ROTL:
807
16.5k
  case WASM_INS_I32_ROTR:
808
16.6k
  case WASM_INS_I64_CLZ:
809
16.7k
  case WASM_INS_I64_CTZ:
810
16.9k
  case WASM_INS_I64_POPCNT:
811
17.2k
  case WASM_INS_I64_ADD:
812
17.3k
  case WASM_INS_I64_SUB:
813
17.5k
  case WASM_INS_I64_MUL:
814
17.7k
  case WASM_INS_I64_DIV_S:
815
18.0k
  case WASM_INS_I64_DIV_U:
816
18.5k
  case WASM_INS_I64_REM_S:
817
18.7k
  case WASM_INS_I64_REM_U:
818
19.0k
  case WASM_INS_I64_AND:
819
19.2k
  case WASM_INS_I64_OR:
820
19.3k
  case WASM_INS_I64_XOR:
821
19.6k
  case WASM_INS_I64_SHL:
822
19.9k
  case WASM_INS_I64_SHR_S:
823
19.9k
  case WASM_INS_I64_SHR_U:
824
20.2k
  case WASM_INS_I64_ROTL:
825
20.3k
  case WASM_INS_I64_ROTR:
826
20.6k
  case WASM_INS_F32_ABS:
827
20.8k
  case WASM_INS_F32_NEG:
828
21.0k
  case WASM_INS_F32_CEIL:
829
24.1k
  case WASM_INS_F32_FLOOR:
830
24.3k
  case WASM_INS_F32_TRUNC:
831
24.5k
  case WASM_INS_F32_NEAREST:
832
24.6k
  case WASM_INS_F32_SQRT:
833
24.9k
  case WASM_INS_F32_ADD:
834
25.4k
  case WASM_INS_F32_SUB:
835
25.5k
  case WASM_INS_F32_MUL:
836
25.7k
  case WASM_INS_F32_DIV:
837
25.9k
  case WASM_INS_F32_MIN:
838
26.0k
  case WASM_INS_F32_MAX:
839
26.2k
  case WASM_INS_F32_COPYSIGN:
840
26.6k
  case WASM_INS_F64_ABS:
841
27.0k
  case WASM_INS_F64_NEG:
842
27.8k
  case WASM_INS_F64_CEIL:
843
32.2k
  case WASM_INS_F64_FLOOR:
844
32.5k
  case WASM_INS_F64_TRUNC:
845
32.7k
  case WASM_INS_F64_NEAREST:
846
33.0k
  case WASM_INS_F64_SQRT:
847
33.1k
  case WASM_INS_F64_ADD:
848
33.4k
  case WASM_INS_F64_SUB:
849
33.4k
  case WASM_INS_F64_MUL:
850
33.5k
  case WASM_INS_F64_DIV:
851
33.7k
  case WASM_INS_F64_MIN:
852
33.7k
  case WASM_INS_F64_MAX:
853
34.0k
  case WASM_INS_F64_COPYSIGN:
854
34.2k
  case WASM_INS_I32_WARP_I64:
855
34.4k
  case WASP_INS_I32_TRUNC_S_F32:
856
34.9k
  case WASM_INS_I32_TRUNC_U_F32:
857
35.1k
  case WASM_INS_I32_TRUNC_S_F64:
858
36.1k
  case WASM_INS_I32_TRUNC_U_F64:
859
36.3k
  case WASM_INS_I64_EXTEND_S_I32:
860
36.5k
  case WASM_INS_I64_EXTEND_U_I32:
861
36.6k
  case WASM_INS_I64_TRUNC_S_F32:
862
36.8k
  case WASM_INS_I64_TRUNC_U_F32:
863
37.0k
  case WASM_INS_I64_TRUNC_S_F64:
864
37.2k
  case WASM_INS_I64_TRUNC_U_F64:
865
37.5k
  case WASM_INS_F32_CONVERT_S_I32:
866
37.6k
  case WASM_INS_F32_CONVERT_U_I32:
867
37.9k
  case WASM_INS_F32_CONVERT_S_I64:
868
38.1k
  case WASM_INS_F32_CONVERT_U_I64:
869
38.2k
  case WASM_INS_F32_DEMOTE_F64:
870
38.5k
  case WASM_INS_F64_CONVERT_S_I32:
871
38.6k
  case WASM_INS_F64_CONVERT_U_I32:
872
38.9k
  case WASM_INS_F64_CONVERT_S_I64:
873
38.9k
  case WASM_INS_F64_CONVERT_U_I64:
874
39.1k
  case WASM_INS_F64_PROMOTE_F32:
875
39.3k
  case WASM_INS_I32_REINTERPRET_F32:
876
39.5k
  case WASM_INS_I64_REINTERPRET_F64:
877
39.7k
  case WASM_INS_F32_REINTERPRET_I32:
878
39.8k
  case WASM_INS_F64_REINTERPRET_I64:
879
39.8k
    MI->wasm_data.type = WASM_OP_NONE;
880
881
39.8k
    if (MI->flat_insn->detail) {
882
39.8k
      MI->flat_insn->detail->wasm.op_count = 0;
883
39.8k
      MI->flat_insn->detail
884
39.8k
        ->groups[MI->flat_insn->detail->groups_count] =
885
39.8k
        WASM_GRP_NUMBERIC;
886
39.8k
      MI->flat_insn->detail->groups_count++;
887
39.8k
    }
888
889
39.8k
    *size = 1;
890
891
39.8k
    break;
892
893
155
  case WASM_INS_DROP:
894
516
  case WASM_INS_SELECT:
895
516
    MI->wasm_data.type = WASM_OP_NONE;
896
897
516
    if (MI->flat_insn->detail) {
898
516
      MI->flat_insn->detail->wasm.op_count = 0;
899
516
      MI->flat_insn->detail
900
516
        ->groups[MI->flat_insn->detail->groups_count] =
901
516
        WASM_GRP_PARAMETRIC;
902
516
      MI->flat_insn->detail->groups_count++;
903
516
    }
904
905
516
    *size = 1;
906
907
516
    break;
908
909
353
  case WASM_INS_GET_LOCAL:
910
491
  case WASM_INS_SET_LOCAL:
911
739
  case WASM_INS_TEE_LOCAL:
912
869
  case WASM_INS_GET_GLOBAL:
913
1.12k
  case WASM_INS_SET_GLOBAL:
914
1.12k
    if (code_len == 1 ||
915
1.11k
        !read_varuint32(&code[1], code_len - 1, &param_size, MI)) {
916
18
      return false;
917
18
    }
918
919
1.10k
    if (MI->flat_insn->detail) {
920
1.10k
      MI->flat_insn->detail->wasm.op_count = 1;
921
1.10k
      MI->flat_insn->detail
922
1.10k
        ->groups[MI->flat_insn->detail->groups_count] =
923
1.10k
        WASM_GRP_VARIABLE;
924
1.10k
      MI->flat_insn->detail->groups_count++;
925
1.10k
    }
926
927
1.10k
    *size = param_size + 1;
928
929
1.10k
    break;
930
931
279
  case WASM_INS_I32_LOAD:
932
482
  case WASM_INS_I64_LOAD:
933
519
  case WASM_INS_F32_LOAD:
934
757
  case WASM_INS_F64_LOAD:
935
911
  case WASM_INS_I32_LOAD8_S:
936
1.13k
  case WASM_INS_I32_LOAD8_U:
937
1.38k
  case WASM_INS_I32_LOAD16_S:
938
1.60k
  case WASM_INS_I32_LOAD16_U:
939
1.92k
  case WASM_INS_I64_LOAD8_S:
940
2.17k
  case WASM_INS_I64_LOAD8_U:
941
2.30k
  case WASM_INS_I64_LOAD16_S:
942
2.59k
  case WASM_INS_I64_LOAD16_U:
943
2.79k
  case WASM_INS_I64_LOAD32_S:
944
2.92k
  case WASM_INS_I64_LOAD32_U:
945
3.20k
  case WASM_INS_I32_STORE:
946
3.39k
  case WASM_INS_I64_STORE:
947
3.60k
  case WASM_INS_F32_STORE:
948
3.68k
  case WASM_INS_F64_STORE:
949
3.71k
  case WASM_INS_I32_STORE8:
950
4.17k
  case WASM_INS_I32_STORE16:
951
4.49k
  case WASM_INS_I64_STORE8:
952
4.65k
  case WASM_INS_I64_STORE16:
953
4.72k
  case WASM_INS_I64_STORE32:
954
4.72k
    if (code_len == 1 ||
955
4.68k
        !read_memoryimmediate(&code[1], code_len - 1, &param_size,
956
4.68k
            MI)) {
957
122
      return false;
958
122
    }
959
960
4.60k
    if (MI->flat_insn->detail) {
961
4.60k
      MI->flat_insn->detail->wasm.op_count = 2;
962
4.60k
      MI->flat_insn->detail
963
4.60k
        ->groups[MI->flat_insn->detail->groups_count] =
964
4.60k
        WASM_GRP_MEMORY;
965
4.60k
      MI->flat_insn->detail->groups_count++;
966
4.60k
    }
967
968
4.60k
    *size = param_size + 1;
969
970
4.60k
    break;
971
972
125
  case WASM_INS_CURRENT_MEMORY:
973
1.05k
  case WASM_INS_GROW_MEMORY:
974
1.05k
    MI->wasm_data.type = WASM_OP_NONE;
975
976
1.05k
    if (MI->flat_insn->detail) {
977
1.05k
      MI->flat_insn->detail->wasm.op_count = 0;
978
1.05k
      MI->flat_insn->detail
979
1.05k
        ->groups[MI->flat_insn->detail->groups_count] =
980
1.05k
        WASM_GRP_MEMORY;
981
1.05k
      MI->flat_insn->detail->groups_count++;
982
1.05k
    }
983
984
1.05k
    *size = 1;
985
986
1.05k
    break;
987
988
8.79k
  case WASM_INS_UNREACHABLE:
989
8.96k
  case WASM_INS_NOP:
990
9.21k
  case WASM_INS_ELSE:
991
9.31k
  case WASM_INS_END:
992
10.0k
  case WASM_INS_RETURN:
993
10.0k
    MI->wasm_data.type = WASM_OP_NONE;
994
995
10.0k
    if (MI->flat_insn->detail) {
996
10.0k
      MI->flat_insn->detail->wasm.op_count = 0;
997
10.0k
      MI->flat_insn->detail
998
10.0k
        ->groups[MI->flat_insn->detail->groups_count] =
999
10.0k
        WASM_GRP_CONTROL;
1000
10.0k
      MI->flat_insn->detail->groups_count++;
1001
10.0k
    }
1002
1003
10.0k
    *size = 1;
1004
1005
10.0k
    break;
1006
1007
722
  case WASM_INS_BLOCK:
1008
1.12k
  case WASM_INS_LOOP:
1009
1.33k
  case WASM_INS_IF:
1010
1.33k
    if (code_len == 1 ||
1011
1.32k
        !read_varint7(&code[1], code_len - 1, &param_size, MI)) {
1012
11
      return false;
1013
11
    }
1014
1015
1.32k
    if (MI->flat_insn->detail) {
1016
1.32k
      MI->flat_insn->detail->wasm.op_count = 1;
1017
1.32k
      MI->flat_insn->detail
1018
1.32k
        ->groups[MI->flat_insn->detail->groups_count] =
1019
1.32k
        WASM_GRP_CONTROL;
1020
1.32k
      MI->flat_insn->detail->groups_count++;
1021
1.32k
    }
1022
1023
1.32k
    *size = param_size + 1;
1024
1025
1.32k
    break;
1026
1027
79
  case WASM_INS_BR:
1028
492
  case WASM_INS_BR_IF:
1029
675
  case WASM_INS_CALL:
1030
1.15k
  case WASM_INS_CALL_INDIRECT:
1031
1.15k
    if (code_len == 1 ||
1032
1.15k
        !read_varuint32(&code[1], code_len - 1, &param_size, MI)) {
1033
15
      return false;
1034
15
    }
1035
1036
1.14k
    if (MI->flat_insn->detail) {
1037
1.14k
      MI->flat_insn->detail->wasm.op_count = 1;
1038
1.14k
      MI->flat_insn->detail
1039
1.14k
        ->groups[MI->flat_insn->detail->groups_count] =
1040
1.14k
        WASM_GRP_CONTROL;
1041
1.14k
      MI->flat_insn->detail->groups_count++;
1042
1.14k
    }
1043
1044
1.14k
    *size = param_size + 1;
1045
1046
1.14k
    break;
1047
1048
642
  case WASM_INS_BR_TABLE:
1049
642
    if (code_len == 1 ||
1050
640
        !read_brtable(&code[1], code_len - 1, &param_size, MI)) {
1051
46
      return false;
1052
46
    }
1053
1054
596
    if (MI->flat_insn->detail) {
1055
596
      MI->flat_insn->detail->wasm.op_count = 1;
1056
596
      MI->flat_insn->detail
1057
596
        ->groups[MI->flat_insn->detail->groups_count] =
1058
596
        WASM_GRP_CONTROL;
1059
596
      MI->flat_insn->detail->groups_count++;
1060
596
    }
1061
1062
596
    *size = param_size + 1;
1063
1064
596
    break;
1065
61.3k
  }
1066
1067
61.1k
  return true;
1068
61.3k
}