Coverage Report

Created: 2025-11-16 06:38

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/capstonenext/arch/ARM/ARMDisassemblerExtension.c
Line
Count
Source
1
/* Capstone Disassembly Engine */
2
/* By Nguyen Anh Quynh <aquynh@gmail.com>, 2013-2019 */
3
/*    Rot127 <unisono@quyllur.org>, 2022-2023 */
4
5
#include "ARMDisassemblerExtension.h"
6
#include "ARMBaseInfo.h"
7
8
bool ITBlock_push_back(ARM_ITBlock *it, char v)
9
40.7k
{
10
40.7k
  if (it->size >= sizeof(it->ITStates)) {
11
    // TODO: consider warning user.
12
1.48k
    it->size = 0;
13
1.48k
  }
14
40.7k
  it->ITStates[it->size] = v;
15
40.7k
  it->size++;
16
17
40.7k
  return true;
18
40.7k
}
19
20
// Returns true if the current instruction is in an IT block
21
bool ITBlock_instrInITBlock(ARM_ITBlock *it)
22
1.33M
{
23
1.33M
  return (it->size > 0);
24
1.33M
}
25
26
// Returns true if current instruction is the last instruction in an IT block
27
bool ITBlock_instrLastInITBlock(ARM_ITBlock *it)
28
1.53k
{
29
1.53k
  return (it->size == 1);
30
1.53k
}
31
32
// Returns the condition code for instruction in IT block
33
unsigned ITBlock_getITCC(ARM_ITBlock *it)
34
43.1k
{
35
43.1k
  unsigned CC = ARMCC_AL;
36
37
43.1k
  if (ITBlock_instrInITBlock(it))
38
28.2k
    CC = it->ITStates[it->size - 1];
39
40
43.1k
  return CC;
41
43.1k
}
42
43
// Advances the IT block state to the next T or E
44
void ITBlock_advanceITState(ARM_ITBlock *it)
45
28.2k
{
46
28.2k
  it->size--;
47
28.2k
}
48
49
// Called when decoding an IT instruction. Sets the IT state for the following
50
// instructions that for the IT block. Firstcond and Mask correspond to the
51
// fields in the IT instruction encoding.
52
void ITBlock_setITState(ARM_ITBlock *it, char Firstcond, char Mask)
53
11.1k
{
54
  // (3 - the number of trailing zeros) is the number of then / else.
55
11.1k
  unsigned NumTZ = CountTrailingZeros_8(Mask);
56
11.1k
  unsigned char CCBits = (unsigned char)(Firstcond & 0xf);
57
11.1k
  CS_ASSERT_RET(NumTZ <= 3 && "Invalid IT mask!");
58
  // push condition codes onto the stack the correct order for the pops
59
40.7k
  for (unsigned Pos = NumTZ + 1; Pos <= 3; ++Pos) {
60
29.5k
    unsigned Else = (Mask >> Pos) & 1;
61
29.5k
    ITBlock_push_back(it, CCBits ^ Else);
62
29.5k
  }
63
11.1k
  ITBlock_push_back(it, CCBits);
64
11.1k
}
65
66
bool VPTBlock_push_back(ARM_VPTBlock *it, char v)
67
30.6k
{
68
30.6k
  if (it->size >= sizeof(it->VPTStates)) {
69
    // TODO: consider warning user.
70
1.26k
    it->size = 0;
71
1.26k
  }
72
30.6k
  it->VPTStates[it->size] = v;
73
30.6k
  it->size++;
74
75
30.6k
  return true;
76
30.6k
}
77
78
bool VPTBlock_instrInVPTBlock(ARM_VPTBlock *VPT)
79
1.70M
{
80
1.70M
  return VPT->size > 0;
81
1.70M
}
82
83
unsigned VPTBlock_getVPTPred(ARM_VPTBlock *VPT)
84
19.9k
{
85
19.9k
  unsigned Pred = ARMVCC_None;
86
19.9k
  if (VPTBlock_instrInVPTBlock(VPT))
87
19.9k
    Pred = VPT->VPTStates[VPT->size - 1];
88
19.9k
  return Pred;
89
19.9k
}
90
91
void VPTBlock_advanceVPTState(ARM_VPTBlock *VPT)
92
19.9k
{
93
19.9k
  VPT->size--;
94
19.9k
}
95
96
void VPTBlock_setVPTState(ARM_VPTBlock *VPT, char Mask)
97
9.19k
{
98
  // (3 - the number of trailing zeros) is the number of then / else.
99
9.19k
  unsigned NumTZ = CountTrailingZeros_8(Mask);
100
9.19k
  CS_ASSERT_RET(NumTZ <= 3 && "Invalid VPT mask!");
101
  // push predicates onto the stack the correct order for the pops
102
30.6k
  for (unsigned Pos = NumTZ + 1; Pos <= 3; ++Pos) {
103
21.4k
    bool T = ((Mask >> Pos) & 1) == 0;
104
21.4k
    if (T)
105
14.8k
      VPTBlock_push_back(VPT, ARMVCC_Then);
106
6.54k
    else
107
6.54k
      VPTBlock_push_back(VPT, ARMVCC_Else);
108
21.4k
  }
109
9.19k
  VPTBlock_push_back(VPT, ARMVCC_Then);
110
9.19k
}
111
112
// Imported from ARMBaseInstrInfo.h
113
//
114
/// isValidCoprocessorNumber - decide whether an explicit coprocessor
115
/// number is legal in generic instructions like CDP. The answer can
116
/// vary with the subtarget.
117
bool isValidCoprocessorNumber(MCInst *Inst, unsigned Num)
118
36.7k
{
119
  // In Armv7 and Armv8-M CP10 and CP11 clash with VFP/NEON, however, the
120
  // coprocessor is still valid for CDP/MCR/MRC and friends. Allowing it is
121
  // useful for code which is shared with older architectures which do not
122
  // know the new VFP/NEON mnemonics.
123
124
  // Armv8-A disallows everything *other* than 111x (CP14 and CP15).
125
36.7k
  if (ARM_getFeatureBits(Inst->csh->mode, ARM_HasV8Ops) &&
126
96
      (Num & 0xE) != 0xE)
127
88
    return false;
128
129
  // Armv8.1-M disallows 100x (CP8,CP9) and 111x (CP14,CP15)
130
  // which clash with MVE.
131
36.6k
  if (ARM_getFeatureBits(Inst->csh->mode, ARM_HasV8_1MMainlineOps) &&
132
8
      ((Num & 0xE) == 0x8 || (Num & 0xE) == 0xE))
133
8
    return false;
134
135
36.6k
  return true;
136
36.6k
}
137
138
// Imported from ARMMCTargetDesc.h
139
bool ARM_isVpred(arm_op_type op)
140
18.1M
{
141
18.1M
  return op == ARM_OP_VPRED_R || op == ARM_OP_VPRED_N;
142
18.1M
}
143
144
// Imported from ARMBaseInstrInfo.h
145
//
146
// This table shows the VPT instruction variants, i.e. the different
147
// mask field encodings, see also B5.6. Predication/conditional execution in
148
// the ArmARM.
149
bool isVPTOpcode(int Opc)
150
107k
{
151
107k
  return Opc == ARM_MVE_VPTv16i8 || Opc == ARM_MVE_VPTv16u8 ||
152
106k
         Opc == ARM_MVE_VPTv16s8 || Opc == ARM_MVE_VPTv8i16 ||
153
105k
         Opc == ARM_MVE_VPTv8u16 || Opc == ARM_MVE_VPTv8s16 ||
154
104k
         Opc == ARM_MVE_VPTv4i32 || Opc == ARM_MVE_VPTv4u32 ||
155
103k
         Opc == ARM_MVE_VPTv4s32 || Opc == ARM_MVE_VPTv4f32 ||
156
102k
         Opc == ARM_MVE_VPTv8f16 || Opc == ARM_MVE_VPTv16i8r ||
157
99.7k
         Opc == ARM_MVE_VPTv16u8r || Opc == ARM_MVE_VPTv16s8r ||
158
93.9k
         Opc == ARM_MVE_VPTv8i16r || Opc == ARM_MVE_VPTv8u16r ||
159
93.0k
         Opc == ARM_MVE_VPTv8s16r || Opc == ARM_MVE_VPTv4i32r ||
160
92.1k
         Opc == ARM_MVE_VPTv4u32r || Opc == ARM_MVE_VPTv4s32r ||
161
91.5k
         Opc == ARM_MVE_VPTv4f32r || Opc == ARM_MVE_VPTv8f16r ||
162
89.6k
         Opc == ARM_MVE_VPST;
163
107k
}
164
165
// Imported from ARMMCTargetDesc.cpp
166
bool ARM_isCDECoproc(size_t Coproc, const MCInst *MI)
167
50.4k
{
168
  // Unfortunately we don't have ARMTargetInfo in the disassembler, so we have
169
  // to rely on feature bits.
170
50.4k
  if (Coproc >= 8)
171
33.5k
    return false;
172
173
16.8k
  return ARM_getFeatureBits(MI->csh->mode,
174
16.8k
          ARM_FeatureCoprocCDE0 + Coproc);
175
50.4k
}
176
177
// Hacky: enable all features for disassembler
178
bool ARM_getFeatureBits(unsigned int mode, unsigned int feature)
179
3.84M
{
180
3.84M
  if (feature == ARM_ModeThumb) {
181
1.94M
    if (mode & CS_MODE_THUMB)
182
1.72M
      return true;
183
220k
    return false;
184
1.94M
  }
185
186
1.90M
  if (feature == ARM_FeatureDFB)
187
404
    return false;
188
189
1.89M
  if (feature == ARM_FeatureRAS)
190
1.56k
    return false;
191
192
1.89M
  if (feature == ARM_FeatureMClass && (mode & CS_MODE_MCLASS) == 0)
193
65.4k
    return false;
194
195
1.83M
  if ((feature == ARM_HasMVEIntegerOps || feature == ARM_HasMVEFloatOps ||
196
1.71M
       feature == ARM_FeatureMVEVectorCostFactor1 ||
197
1.71M
       feature == ARM_FeatureMVEVectorCostFactor2 ||
198
1.71M
       feature == ARM_FeatureMVEVectorCostFactor4) &&
199
121k
      (mode & CS_MODE_MCLASS) == 0)
200
16.7k
    return false;
201
202
1.81M
  if ((feature == ARM_HasV8Ops || feature == ARM_HasV8_1MMainlineOps ||
203
1.56M
       feature == ARM_HasV8_1aOps || feature == ARM_HasV8_2aOps ||
204
1.56M
       feature == ARM_HasV8_3aOps || feature == ARM_HasV8_4aOps ||
205
1.55M
       feature == ARM_HasV8_5aOps || feature == ARM_HasV8_6aOps ||
206
1.55M
       feature == ARM_HasV8_7aOps || feature == ARM_HasV8_8aOps ||
207
1.55M
       feature == ARM_HasV8_9aOps) &&
208
262k
      (mode & CS_MODE_V8) == 0)
209
237k
    return false;
210
211
1.57M
  if (feature >= ARM_FeatureCoprocCDE0 &&
212
1.56M
      feature <= ARM_FeatureCoprocCDE7)
213
    // We currently have no way to detect CDE (Custom-Datapath-Extension)
214
    // coprocessors.
215
16.8k
    return false;
216
217
  // we support everything
218
1.56M
  return true;
219
1.57M
}