Coverage Report

Created: 2026-06-06 06:15

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/capstonev5/arch/WASM/WASMDisassembler.c
Line
Count
Source
1
/* Capstone Disassembly Engine */
2
/* By Spike, xwings 2019 */
3
4
#include <string.h>
5
#include <stddef.h> // offsetof macro
6
// alternatively #include "../../utils.h" like everyone else
7
8
#include "WASMDisassembler.h"
9
#include "WASMMapping.h"
10
#include "../../cs_priv.h"
11
12
static const short opcodes[256] = {
13
  WASM_INS_UNREACHABLE,
14
  WASM_INS_NOP,
15
  WASM_INS_BLOCK,
16
  WASM_INS_LOOP,
17
  WASM_INS_IF,
18
  WASM_INS_ELSE,
19
  -1,
20
  -1,
21
  -1,
22
  -1,
23
  -1,
24
  WASM_INS_END,
25
  WASM_INS_BR,
26
  WASM_INS_BR_IF,
27
  WASM_INS_BR_TABLE,
28
  WASM_INS_RETURN,
29
  WASM_INS_CALL,
30
  WASM_INS_CALL_INDIRECT,
31
  -1,
32
  -1,
33
  -1,
34
  -1,
35
  -1,
36
  -1,
37
  -1,
38
  -1,
39
  WASM_INS_DROP,
40
  WASM_INS_SELECT,
41
  -1,
42
  -1,
43
  -1,
44
  -1,
45
  WASM_INS_GET_LOCAL,
46
  WASM_INS_SET_LOCAL,
47
  WASM_INS_TEE_LOCAL,
48
  WASM_INS_GET_GLOBAL,
49
  WASM_INS_SET_GLOBAL,
50
  -1,
51
  -1,
52
  -1,
53
  WASM_INS_I32_LOAD,
54
  WASM_INS_I64_LOAD,
55
  WASM_INS_F32_LOAD,
56
  WASM_INS_F64_LOAD,
57
  WASM_INS_I32_LOAD8_S,
58
  WASM_INS_I32_LOAD8_U,
59
  WASM_INS_I32_LOAD16_S,
60
  WASM_INS_I32_LOAD16_U,
61
  WASM_INS_I64_LOAD8_S,
62
  WASM_INS_I64_LOAD8_U,
63
  WASM_INS_I64_LOAD16_S,
64
  WASM_INS_I64_LOAD16_U,
65
  WASM_INS_I64_LOAD32_S,
66
  WASM_INS_I64_LOAD32_U,
67
  WASM_INS_I32_STORE,
68
  WASM_INS_I64_STORE,
69
  WASM_INS_F32_STORE,
70
  WASM_INS_F64_STORE,
71
  WASM_INS_I32_STORE8,
72
  WASM_INS_I32_STORE16,
73
  WASM_INS_I64_STORE8,
74
  WASM_INS_I64_STORE16,
75
  WASM_INS_I64_STORE32,
76
  WASM_INS_CURRENT_MEMORY,
77
  WASM_INS_GROW_MEMORY,
78
  WASM_INS_I32_CONST,
79
  WASM_INS_I64_CONST,
80
  WASM_INS_F32_CONST,
81
  WASM_INS_F64_CONST,
82
  WASM_INS_I32_EQZ,
83
  WASM_INS_I32_EQ,
84
  WASM_INS_I32_NE,
85
  WASM_INS_I32_LT_S,
86
  WASM_INS_I32_LT_U,
87
  WASM_INS_I32_GT_S,
88
  WASM_INS_I32_GT_U,
89
  WASM_INS_I32_LE_S,
90
  WASM_INS_I32_LE_U,
91
  WASM_INS_I32_GE_S,
92
  WASM_INS_I32_GE_U,
93
  WASM_INS_I64_EQZ,
94
  WASM_INS_I64_EQ,
95
  WASM_INS_I64_NE,
96
  WASM_INS_I64_LT_S,
97
  WASM_INS_I64_LT_U,
98
  WASN_INS_I64_GT_S,
99
  WASM_INS_I64_GT_U,
100
  WASM_INS_I64_LE_S,
101
  WASM_INS_I64_LE_U,
102
  WASM_INS_I64_GE_S,
103
  WASM_INS_I64_GE_U,
104
  WASM_INS_F32_EQ,
105
  WASM_INS_F32_NE,
106
  WASM_INS_F32_LT,
107
  WASM_INS_F32_GT,
108
  WASM_INS_F32_LE,
109
  WASM_INS_F32_GE,
110
  WASM_INS_F64_EQ,
111
  WASM_INS_F64_NE,
112
  WASM_INS_F64_LT,
113
  WASM_INS_F64_GT,
114
  WASM_INS_F64_LE,
115
  WASM_INS_F64_GE,
116
  WASM_INS_I32_CLZ,
117
  WASM_INS_I32_CTZ,
118
  WASM_INS_I32_POPCNT,
119
  WASM_INS_I32_ADD,
120
  WASM_INS_I32_SUB,
121
  WASM_INS_I32_MUL,
122
  WASM_INS_I32_DIV_S,
123
  WASM_INS_I32_DIV_U,
124
  WASM_INS_I32_REM_S,
125
  WASM_INS_I32_REM_U,
126
  WASM_INS_I32_AND,
127
  WASM_INS_I32_OR,
128
  WASM_INS_I32_XOR,
129
  WASM_INS_I32_SHL,
130
  WASM_INS_I32_SHR_S,
131
  WASM_INS_I32_SHR_U,
132
  WASM_INS_I32_ROTL,
133
  WASM_INS_I32_ROTR,
134
  WASM_INS_I64_CLZ,
135
  WASM_INS_I64_CTZ,
136
  WASM_INS_I64_POPCNT,
137
  WASM_INS_I64_ADD,
138
  WASM_INS_I64_SUB,
139
  WASM_INS_I64_MUL,
140
  WASM_INS_I64_DIV_S,
141
  WASM_INS_I64_DIV_U,
142
  WASM_INS_I64_REM_S,
143
  WASM_INS_I64_REM_U,
144
  WASM_INS_I64_AND,
145
  WASM_INS_I64_OR,
146
  WASM_INS_I64_XOR,
147
  WASM_INS_I64_SHL,
148
  WASM_INS_I64_SHR_S,
149
  WASM_INS_I64_SHR_U,
150
  WASM_INS_I64_ROTL,
151
  WASM_INS_I64_ROTR,
152
  WASM_INS_F32_ABS,
153
  WASM_INS_F32_NEG,
154
  WASM_INS_F32_CEIL,
155
  WASM_INS_F32_FLOOR,
156
  WASM_INS_F32_TRUNC,
157
  WASM_INS_F32_NEAREST,
158
  WASM_INS_F32_SQRT,
159
  WASM_INS_F32_ADD,
160
  WASM_INS_F32_SUB,
161
  WASM_INS_F32_MUL,
162
  WASM_INS_F32_DIV,
163
  WASM_INS_F32_MIN,
164
  WASM_INS_F32_MAX,
165
  WASM_INS_F32_COPYSIGN,
166
  WASM_INS_F64_ABS,
167
  WASM_INS_F64_NEG,
168
  WASM_INS_F64_CEIL,
169
  WASM_INS_F64_FLOOR,
170
  WASM_INS_F64_TRUNC,
171
  WASM_INS_F64_NEAREST,
172
  WASM_INS_F64_SQRT,
173
  WASM_INS_F64_ADD,
174
  WASM_INS_F64_SUB,
175
  WASM_INS_F64_MUL,
176
  WASM_INS_F64_DIV,
177
  WASM_INS_F64_MIN,
178
  WASM_INS_F64_MAX,
179
  WASM_INS_F64_COPYSIGN,
180
  WASM_INS_I32_WARP_I64,
181
  WASP_INS_I32_TRUNC_S_F32,
182
  WASM_INS_I32_TRUNC_U_F32,
183
  WASM_INS_I32_TRUNC_S_F64,
184
  WASM_INS_I32_TRUNC_U_F64,
185
  WASM_INS_I64_EXTEND_S_I32,
186
  WASM_INS_I64_EXTEND_U_I32,
187
  WASM_INS_I64_TRUNC_S_F32,
188
  WASM_INS_I64_TRUNC_U_F32,
189
  WASM_INS_I64_TRUNC_S_F64,
190
  WASM_INS_I64_TRUNC_U_F64,
191
  WASM_INS_F32_CONVERT_S_I32,
192
  WASM_INS_F32_CONVERT_U_I32,
193
  WASM_INS_F32_CONVERT_S_I64,
194
  WASM_INS_F32_CONVERT_U_I64,
195
  WASM_INS_F32_DEMOTE_F64,
196
  WASM_INS_F64_CONVERT_S_I32,
197
  WASM_INS_F64_CONVERT_U_I32,
198
  WASM_INS_F64_CONVERT_S_I64,
199
  WASM_INS_F64_CONVERT_U_I64,
200
  WASM_INS_F64_PROMOTE_F32,
201
  WASM_INS_I32_REINTERPRET_F32,
202
  WASM_INS_I64_REINTERPRET_F64,
203
  WASM_INS_F32_REINTERPRET_I32,
204
  WASM_INS_F64_REINTERPRET_I64,
205
  -1,
206
  -1,
207
  -1,
208
  -1,
209
  -1,
210
  -1,
211
  -1,
212
  -1,
213
  -1,
214
  -1,
215
  -1,
216
  -1,
217
  -1,
218
  -1,
219
  -1,
220
  -1,
221
  -1,
222
  -1,
223
  -1,
224
  -1,
225
  -1,
226
  -1,
227
  -1,
228
  -1,
229
  -1,
230
  -1,
231
  -1,
232
  -1,
233
  -1,
234
  -1,
235
  -1,
236
  -1,
237
  -1,
238
  -1,
239
  -1,
240
  -1,
241
  -1,
242
  -1,
243
  -1,
244
  -1,
245
  -1,
246
  -1,
247
  -1,
248
  -1,
249
  -1,
250
  -1,
251
  -1,
252
  -1,
253
  -1,
254
  -1,
255
  -1,
256
  -1,
257
  -1,
258
  -1,
259
  -1,
260
  -1,
261
  -1,
262
  -1,
263
  -1,
264
  -1,
265
  -1,
266
  -1,
267
  -1,
268
  -1,
269
};
270
271
// input  | code: code pointer start from varuint32
272
//        | code_len: real code len count from varint
273
//        | leng: return value, means length of varint. -1 means error
274
// return | varint
275
static uint32_t get_varuint32(const uint8_t *code, size_t code_len, size_t *leng)
276
41.8k
{
277
41.8k
  uint32_t data = 0;
278
41.8k
  int i;
279
280
59.2k
  for(i = 0;; i++) {
281
59.2k
    if (code_len < i + 1) {
282
313
      *leng = -1;
283
313
      return 0;
284
313
    }
285
286
287
58.9k
    if (i > 4 || (i == 4 && (code[i] & 0x7f) > 0x0f)) {
288
608
      *leng = -1;
289
608
      return 0;
290
608
    }
291
292
58.3k
    data = data + (((uint32_t) code[i] & 0x7f) << (i * 7));
293
58.3k
    if (code[i] >> 7 == 0) {
294
40.9k
      break;
295
40.9k
    }
296
58.3k
  }
297
298
40.9k
  *leng = i + 1;
299
300
40.9k
  return data;
301
41.8k
}
302
303
// input  | code : code pointer start from varuint64
304
//        | code_len : real code len count from varint
305
//        | leng: return value, means length of varint. -1 means error
306
// return   | varint
307
static uint64_t get_varuint64(const uint8_t *code, size_t code_len, size_t *leng)
308
932
{
309
932
  uint64_t data;
310
932
  int i;
311
312
932
  data = 0;
313
4.13k
  for(i = 0;; i++){
314
4.13k
    if (code_len < i + 1) {
315
16
      *leng = -1;
316
16
      return 0;
317
16
    }
318
319
4.12k
    if (i > 9 || (i == 9 && (code[i] & 0x7f) > 0x01)) {
320
3
      *leng = -1;
321
3
      return 0;
322
3
    }
323
324
4.11k
    data = data + (((uint64_t) code[i] & 0x7f) << (i * 7));
325
4.11k
    if (code[i] >> 7 == 0) {
326
913
      break;
327
913
    }
328
4.11k
  }
329
330
913
  *leng = i + 1;
331
332
913
  return data;
333
932
}
334
335
// input  | code : code pointer start from uint32
336
//      | dest : the pointer where we store the uint32
337
// return | None 
338
static void get_uint32(const uint8_t *code, uint32_t *dest)
339
1.29k
{
340
1.29k
  memcpy(dest, code, 4);
341
1.29k
}
342
343
// input  | code : code pointer start from uint32
344
//      | dest : the pointer where we store the uint64
345
// return   | None
346
static void get_uint64(const uint8_t *code, uint64_t *dest)
347
484
{
348
484
  memcpy(dest, code, 8);
349
484
}
350
351
// input  | code : code pointer start from varint7
352
//      | code_len : start from the code pointer to the end, how long is it
353
//      | leng : length of the param , -1 means error
354
// return   | data of varint7
355
static int8_t get_varint7(const uint8_t *code, size_t code_len, size_t *leng)
356
2.36k
{
357
2.36k
  int8_t data;
358
359
2.36k
  if (code_len < 1) {
360
0
    *leng = -1;
361
0
    return -1;
362
0
  }
363
364
2.36k
  *leng = 1;
365
366
2.36k
  if (code[0] == 0x40) {
367
710
    return -1;
368
710
  }
369
370
1.65k
  data = code[0] & 0x7f;
371
372
1.65k
  return data;
373
2.36k
}
374
375
// input  | code : code pointer start from varuint32
376
//      | code_len : start from the code pointer to the end, how long is it
377
//      | param_size : pointer of the param size
378
//      | MI : Mcinst handler in this round of disasm
379
// return   | true/false if the function successfully finished 
380
static bool read_varuint32(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
381
4.98k
{
382
4.98k
  size_t len = 0;
383
4.98k
  uint32_t data;
384
385
4.98k
  data = get_varuint32(code, code_len, &len);
386
4.98k
  if (len == -1) {
387
37
    return false;
388
37
  }
389
390
4.94k
  if (MI->flat_insn->detail) {
391
4.94k
    MI->flat_insn->detail->wasm.op_count = 1;
392
4.94k
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_VARUINT32;
393
4.94k
    MI->flat_insn->detail->wasm.operands[0].size= len;
394
4.94k
    MI->flat_insn->detail->wasm.operands[0].varuint32= data;
395
4.94k
  }
396
397
4.94k
  MI->wasm_data.size = len;
398
4.94k
  MI->wasm_data.type = WASM_OP_VARUINT32;
399
4.94k
  MI->wasm_data.uint32 = data;
400
4.94k
  *param_size = len;
401
402
4.94k
  return true;
403
4.98k
}
404
405
// input  | code : code pointer start from varuint64
406
//      | code_len : start from the code pointer to the end, how long is it
407
//      | param_size : pointer of the param size
408
//      | MI : Mcinst handler in this round of disasm
409
// return   | true/false if the function successfully finished 
410
static bool read_varuint64(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
411
932
{
412
932
  size_t len = 0;
413
932
  uint64_t data;
414
415
932
  data = get_varuint64(code, code_len, &len);
416
932
  if (len == -1) {
417
19
    return false;
418
19
  }
419
420
913
  if (MI->flat_insn->detail) {
421
913
    MI->flat_insn->detail->wasm.op_count = 1;
422
913
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_VARUINT64;
423
913
    MI->flat_insn->detail->wasm.operands[0].size = len;
424
913
    MI->flat_insn->detail->wasm.operands[0].varuint64 = data;
425
913
  }
426
427
913
  MI->wasm_data.size = len;
428
913
  MI->wasm_data.type = WASM_OP_VARUINT64;
429
913
  MI->wasm_data.uint64 = data;
430
913
  *param_size = len;
431
432
913
  return true;
433
932
}
434
435
// input  | code : code pointer start from memoryimmediate
436
//      | code_len : start from the code pointer to the end, how long is it
437
//      | param_size : pointer of the param size (sum of two params)
438
//      | MI : Mcinst handler in this round of disasm
439
// return   | true/false if the function successfully finished 
440
static bool read_memoryimmediate(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
441
10.0k
{
442
10.0k
  size_t tmp, len = 0;
443
10.0k
  uint32_t data[2];
444
445
10.0k
  if (MI->flat_insn->detail) {
446
10.0k
    MI->flat_insn->detail->wasm.op_count = 2;
447
10.0k
  }
448
449
10.0k
  data[0] = get_varuint32(code, code_len, &tmp);
450
10.0k
  if (tmp == -1) {
451
78
    return false;
452
78
  }
453
454
9.95k
  if (MI->flat_insn->detail) {
455
9.95k
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_VARUINT32;
456
9.95k
    MI->flat_insn->detail->wasm.operands[0].size = tmp;
457
9.95k
    MI->flat_insn->detail->wasm.operands[0].varuint32 = data[0];
458
9.95k
  }
459
460
9.95k
  len = tmp;
461
9.95k
  data[1] = get_varuint32(&code[len], code_len - len, &tmp);
462
9.95k
  if (len == -1) {
463
44
    return false;
464
44
  }
465
466
9.90k
  if (MI->flat_insn->detail) {
467
9.90k
    MI->flat_insn->detail->wasm.operands[1].type = WASM_OP_VARUINT32;
468
9.90k
    MI->flat_insn->detail->wasm.operands[1].size = tmp;
469
9.90k
    MI->flat_insn->detail->wasm.operands[1].varuint32 = data[1];
470
9.90k
  }
471
472
9.90k
  len += tmp;
473
9.90k
  MI->wasm_data.size = len;
474
9.90k
  MI->wasm_data.type = WASM_OP_IMM;
475
9.90k
  MI->wasm_data.immediate[0] = data[0];
476
9.90k
  MI->wasm_data.immediate[1] = data[1];
477
9.90k
  *param_size = len;
478
479
9.90k
  return true;
480
9.95k
}
481
482
// input  | code : code pointer start from uint32
483
//      | code_len : start from the code pointer to the end, how long is it
484
//      | param_size : pointer of the param size
485
//      | MI : Mcinst handler in this round of disasm
486
// return   | true/false if the function successfully finished 
487
static bool read_uint32(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
488
656
{
489
656
  if (code_len < 4) {
490
9
    return false;
491
9
  }
492
493
647
  get_uint32(code, &(MI->wasm_data.uint32));
494
495
647
  if (MI->flat_insn->detail) {
496
647
    MI->flat_insn->detail->wasm.op_count = 1;
497
647
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_UINT32;
498
647
    MI->flat_insn->detail->wasm.operands[0].size = 4;
499
647
    get_uint32(code, &(MI->flat_insn->detail->wasm.operands[0].uint32));
500
647
  }
501
502
647
  MI->wasm_data.size = 4;
503
647
  MI->wasm_data.type = WASM_OP_UINT32;
504
647
  *param_size = 4;
505
506
647
  return true;
507
656
}
508
509
// input  | code : code pointer start from uint64
510
//      | code_len : start from the code pointer to the end, how long is it
511
//      | param_size : pointer of the param size
512
//      | MI : Mcinst handler in this round of disasm
513
// return   | true/false if the function successfully finished 
514
static bool read_uint64(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
515
251
{
516
251
  if (code_len < 8) {
517
9
    return false;
518
9
  }
519
520
242
  get_uint64(code, &(MI->wasm_data.uint64));
521
522
242
  if (MI->flat_insn->detail) {
523
242
    MI->flat_insn->detail->wasm.op_count = 1;
524
242
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_UINT64;
525
242
    MI->flat_insn->detail->wasm.operands[0].size = 8;
526
242
    get_uint64(code, &(MI->flat_insn->detail->wasm.operands[0].uint64));
527
242
  }
528
529
242
  MI->wasm_data.size = 8;
530
242
  MI->wasm_data.type = WASM_OP_UINT64;
531
242
  *param_size = 8;
532
533
242
  return true;
534
251
}
535
536
// input  | code : code pointer start from brtable
537
//      | code_len : start from the code pointer to the end, how long is it
538
//      | param_size : pointer of the param size (sum of all param)
539
//      | MI : Mcinst handler in this round of disasm
540
// return   | true/false if the function successfully finished 
541
static bool read_brtable(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
542
2.45k
{
543
2.45k
  uint32_t length, default_target;
544
2.45k
  int tmp_len = 0, i;
545
2.45k
  size_t var_len;
546
547
  // read length
548
2.45k
  length = get_varuint32(code, code_len, &var_len);
549
2.45k
  if (var_len == -1) {
550
8
    return false;
551
8
  }
552
553
2.45k
  tmp_len += var_len;
554
2.45k
  MI->wasm_data.brtable.length = length;
555
2.45k
  if (length >= UINT32_MAX - tmp_len) {
556
    // integer overflow check
557
1
    return false;
558
1
  }
559
2.45k
  if (code_len < tmp_len + length) {
560
    // safety check that we have minimum enough data to read
561
66
    return false;
562
66
  }
563
  // base address + 1 byte opcode + tmp_len for number of cases = start of targets
564
2.38k
  MI->wasm_data.brtable.address = MI->address + 1 + tmp_len;
565
566
2.38k
  if (MI->flat_insn->detail) {
567
2.38k
    MI->flat_insn->detail->wasm.op_count = 1;
568
2.38k
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_BRTABLE;
569
2.38k
    MI->flat_insn->detail->wasm.operands[0].brtable.length = MI->wasm_data.brtable.length;
570
2.38k
    MI->flat_insn->detail->wasm.operands[0].brtable.address = MI->wasm_data.brtable.address;
571
2.38k
  }
572
573
  // read data
574
14.4k
  for(i = 0; i < length; i++){
575
12.1k
    if (code_len < tmp_len) {
576
0
      return false;
577
0
    }
578
579
12.1k
    get_varuint32(code + tmp_len, code_len - tmp_len, &var_len);
580
12.1k
    if (var_len == -1) {
581
32
      return false;
582
32
    }
583
584
12.0k
    tmp_len += var_len;
585
12.0k
  }
586
587
  // read default target
588
2.35k
  default_target = get_varuint32(code + tmp_len, code_len - tmp_len, &var_len);
589
2.35k
  if (var_len == -1) {
590
32
    return false;
591
32
  }
592
593
2.32k
  MI->wasm_data.brtable.default_target = default_target;
594
2.32k
  MI->wasm_data.type = WASM_OP_BRTABLE;
595
2.32k
  if ((uint64_t)(tmp_len + var_len) >= UINT16_MAX) {
596
0
    return false;
597
0
  }
598
2.32k
  *param_size = tmp_len + var_len;
599
600
2.32k
  if (MI->flat_insn->detail) {
601
2.32k
    MI->flat_insn->detail->wasm.operands[0].size = *param_size;
602
2.32k
    MI->flat_insn->detail->wasm.operands[0].brtable.default_target = MI->wasm_data.brtable.default_target;
603
2.32k
  }
604
605
2.32k
  return true;
606
2.32k
}
607
608
// input  | code : code pointer start from varint7
609
//      | code_len : start from the code pointer to the end, how long is it
610
//      | param_size : pointer of the param size
611
//      | MI : Mcinst handler in this round of disasm
612
// return   | true/false if the function successfully finished 
613
static bool read_varint7(const uint8_t *code, size_t code_len, uint16_t *param_size, MCInst *MI)
614
2.36k
{
615
2.36k
  size_t len = 0;
616
617
2.36k
  MI->wasm_data.type = WASM_OP_INT7;
618
2.36k
  MI->wasm_data.int7 = get_varint7(code, code_len, &len);
619
2.36k
  if (len == -1) {
620
0
    return false;
621
0
  }
622
623
2.36k
  if (MI->flat_insn->detail) {
624
2.36k
    MI->flat_insn->detail->wasm.op_count = 1;
625
2.36k
    MI->flat_insn->detail->wasm.operands[0].type = WASM_OP_INT7;
626
2.36k
    MI->flat_insn->detail->wasm.operands[0].size = 1;
627
2.36k
    MI->flat_insn->detail->wasm.operands[0].int7 = MI->wasm_data.int7;
628
2.36k
  }
629
630
2.36k
  *param_size = len;
631
632
2.36k
  return true;
633
2.36k
}
634
635
bool WASM_getInstruction(csh ud, const uint8_t *code, size_t code_len,
636
    MCInst *MI, uint16_t *size, uint64_t address, void *inst_info)
637
107k
{
638
107k
  unsigned char opcode;
639
107k
  uint16_t param_size;
640
641
107k
  if (code_len == 0)
642
0
    return false;
643
644
107k
  opcode = code[0];
645
107k
  if (opcodes[opcode] == -1) {
646
    // invalid opcode
647
401
    return false;
648
401
  }
649
650
  // valid opcode
651
106k
  MI->address = address;
652
106k
  MI->OpcodePub = MI->Opcode = opcode;
653
654
106k
  if (MI->flat_insn->detail) {
655
106k
    memset(MI->flat_insn->detail, 0, offsetof(cs_detail, wasm)+sizeof(cs_wasm));
656
106k
    WASM_get_insn_id((cs_struct *)ud, MI->flat_insn, opcode);
657
106k
  }
658
659
  // setup groups
660
106k
  switch(opcode) {
661
0
    default:
662
0
      return false;
663
664
478
    case WASM_INS_I32_CONST:
665
478
      if (code_len == 1 || !read_varuint32(&code[1], code_len - 1, &param_size, MI)) {
666
16
        return false;
667
16
      }
668
669
462
      if (MI->flat_insn->detail) {
670
462
        MI->flat_insn->detail->wasm.op_count = 1;
671
462
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_NUMBERIC;
672
462
        MI->flat_insn->detail->groups_count++;
673
462
      }
674
675
462
      *size = param_size + 1;
676
677
462
      break;
678
679
940
    case WASM_INS_I64_CONST:
680
940
      if (code_len == 1 || !read_varuint64(&code[1], code_len - 1, &param_size, MI)) {
681
27
        return false;
682
27
      }
683
684
913
      if (MI->flat_insn->detail) {
685
913
        MI->flat_insn->detail->wasm.op_count = 1;
686
913
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_NUMBERIC;
687
913
        MI->flat_insn->detail->groups_count++;
688
913
      }
689
690
913
      *size = param_size + 1;
691
692
913
      break;
693
694
665
    case WASM_INS_F32_CONST:
695
665
      if (code_len == 1 || !read_uint32(&code[1], code_len - 1, &param_size, MI)) {
696
18
        return false;
697
18
      }
698
699
647
      if (MI->flat_insn->detail) {
700
647
        MI->flat_insn->detail->wasm.op_count = 1;
701
647
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_NUMBERIC;
702
647
        MI->flat_insn->detail->groups_count++;
703
647
      }
704
705
647
      *size = param_size + 1;
706
707
647
      break;
708
709
253
    case WASM_INS_F64_CONST:
710
253
      if (code_len == 1 || !read_uint64(&code[1], code_len - 1, &param_size, MI)) {
711
11
        return false;
712
11
      }
713
714
242
      if (MI->flat_insn->detail) {
715
242
        MI->flat_insn->detail->wasm.op_count = 1;
716
242
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_NUMBERIC;
717
242
        MI->flat_insn->detail->groups_count++;
718
242
      }
719
720
242
      *size = param_size + 1;
721
722
242
      break;
723
724
480
    case WASM_INS_I32_EQZ:
725
888
    case WASM_INS_I32_EQ:
726
1.15k
    case WASM_INS_I32_NE:
727
1.56k
    case WASM_INS_I32_LT_S:
728
1.95k
    case WASM_INS_I32_LT_U:
729
2.34k
    case WASM_INS_I32_GT_S:
730
2.71k
    case WASM_INS_I32_GT_U:
731
3.02k
    case WASM_INS_I32_LE_S:
732
3.81k
    case WASM_INS_I32_LE_U:
733
4.13k
    case WASM_INS_I32_GE_S:
734
4.51k
    case WASM_INS_I32_GE_U:
735
4.96k
    case WASM_INS_I64_EQZ:
736
5.26k
    case WASM_INS_I64_EQ:
737
5.98k
    case WASM_INS_I64_NE:
738
6.42k
    case WASM_INS_I64_LT_S:
739
6.69k
    case WASM_INS_I64_LT_U:
740
6.99k
    case WASN_INS_I64_GT_S:
741
7.41k
    case WASM_INS_I64_GT_U:
742
7.65k
    case WASM_INS_I64_LE_S:
743
8.22k
    case WASM_INS_I64_LE_U:
744
8.56k
    case WASM_INS_I64_GE_S:
745
8.86k
    case WASM_INS_I64_GE_U:
746
9.26k
    case WASM_INS_F32_EQ:
747
9.95k
    case WASM_INS_F32_NE:
748
10.7k
    case WASM_INS_F32_LT:
749
11.3k
    case WASM_INS_F32_GT:
750
15.8k
    case WASM_INS_F32_LE:
751
17.1k
    case WASM_INS_F32_GE:
752
17.8k
    case WASM_INS_F64_EQ:
753
18.2k
    case WASM_INS_F64_NE:
754
19.1k
    case WASM_INS_F64_LT:
755
21.7k
    case WASM_INS_F64_GT:
756
23.0k
    case WASM_INS_F64_LE:
757
23.5k
    case WASM_INS_F64_GE:
758
24.1k
    case WASM_INS_I32_CLZ:
759
24.5k
    case WASM_INS_I32_CTZ:
760
24.9k
    case WASM_INS_I32_POPCNT:
761
25.2k
    case WASM_INS_I32_ADD:
762
25.8k
    case WASM_INS_I32_SUB:
763
26.2k
    case WASM_INS_I32_MUL:
764
26.8k
    case WASM_INS_I32_DIV_S:
765
27.3k
    case WASM_INS_I32_DIV_U:
766
27.8k
    case WASM_INS_I32_REM_S:
767
28.2k
    case WASM_INS_I32_REM_U:
768
29.0k
    case WASM_INS_I32_AND:
769
29.9k
    case WASM_INS_I32_OR:
770
30.3k
    case WASM_INS_I32_XOR:
771
30.8k
    case WASM_INS_I32_SHL:
772
31.1k
    case WASM_INS_I32_SHR_S:
773
31.8k
    case WASM_INS_I32_SHR_U:
774
32.3k
    case WASM_INS_I32_ROTL:
775
33.1k
    case WASM_INS_I32_ROTR:
776
33.4k
    case WASM_INS_I64_CLZ:
777
33.9k
    case WASM_INS_I64_CTZ:
778
34.3k
    case WASM_INS_I64_POPCNT:
779
34.7k
    case WASM_INS_I64_ADD:
780
35.1k
    case WASM_INS_I64_SUB:
781
35.5k
    case WASM_INS_I64_MUL:
782
36.0k
    case WASM_INS_I64_DIV_S:
783
37.2k
    case WASM_INS_I64_DIV_U:
784
37.9k
    case WASM_INS_I64_REM_S:
785
38.3k
    case WASM_INS_I64_REM_U:
786
38.7k
    case WASM_INS_I64_AND:
787
39.1k
    case WASM_INS_I64_OR:
788
39.5k
    case WASM_INS_I64_XOR:
789
40.1k
    case WASM_INS_I64_SHL:
790
40.7k
    case WASM_INS_I64_SHR_S:
791
41.2k
    case WASM_INS_I64_SHR_U:
792
41.7k
    case WASM_INS_I64_ROTL:
793
42.1k
    case WASM_INS_I64_ROTR:
794
42.6k
    case WASM_INS_F32_ABS:
795
43.0k
    case WASM_INS_F32_NEG:
796
45.6k
    case WASM_INS_F32_CEIL:
797
46.1k
    case WASM_INS_F32_FLOOR:
798
46.5k
    case WASM_INS_F32_TRUNC:
799
47.0k
    case WASM_INS_F32_NEAREST:
800
47.3k
    case WASM_INS_F32_SQRT:
801
47.7k
    case WASM_INS_F32_ADD:
802
48.4k
    case WASM_INS_F32_SUB:
803
48.8k
    case WASM_INS_F32_MUL:
804
49.3k
    case WASM_INS_F32_DIV:
805
49.8k
    case WASM_INS_F32_MIN:
806
50.5k
    case WASM_INS_F32_MAX:
807
52.7k
    case WASM_INS_F32_COPYSIGN:
808
53.1k
    case WASM_INS_F64_ABS:
809
53.7k
    case WASM_INS_F64_NEG:
810
54.6k
    case WASM_INS_F64_CEIL:
811
55.0k
    case WASM_INS_F64_FLOOR:
812
56.6k
    case WASM_INS_F64_TRUNC:
813
57.2k
    case WASM_INS_F64_NEAREST:
814
57.5k
    case WASM_INS_F64_SQRT:
815
57.9k
    case WASM_INS_F64_ADD:
816
58.3k
    case WASM_INS_F64_SUB:
817
58.7k
    case WASM_INS_F64_MUL:
818
58.9k
    case WASM_INS_F64_DIV:
819
59.3k
    case WASM_INS_F64_MIN:
820
59.6k
    case WASM_INS_F64_MAX:
821
60.0k
    case WASM_INS_F64_COPYSIGN:
822
60.3k
    case WASM_INS_I32_WARP_I64:
823
60.8k
    case WASP_INS_I32_TRUNC_S_F32:
824
61.4k
    case WASM_INS_I32_TRUNC_U_F32:
825
61.7k
    case WASM_INS_I32_TRUNC_S_F64:
826
62.8k
    case WASM_INS_I32_TRUNC_U_F64:
827
63.2k
    case WASM_INS_I64_EXTEND_S_I32:
828
63.6k
    case WASM_INS_I64_EXTEND_U_I32:
829
63.9k
    case WASM_INS_I64_TRUNC_S_F32:
830
64.1k
    case WASM_INS_I64_TRUNC_U_F32:
831
64.4k
    case WASM_INS_I64_TRUNC_S_F64:
832
64.8k
    case WASM_INS_I64_TRUNC_U_F64:
833
65.2k
    case WASM_INS_F32_CONVERT_S_I32:
834
65.5k
    case WASM_INS_F32_CONVERT_U_I32:
835
65.8k
    case WASM_INS_F32_CONVERT_S_I64:
836
66.1k
    case WASM_INS_F32_CONVERT_U_I64:
837
66.6k
    case WASM_INS_F32_DEMOTE_F64:
838
67.2k
    case WASM_INS_F64_CONVERT_S_I32:
839
67.5k
    case WASM_INS_F64_CONVERT_U_I32:
840
67.8k
    case WASM_INS_F64_CONVERT_S_I64:
841
68.2k
    case WASM_INS_F64_CONVERT_U_I64:
842
68.5k
    case WASM_INS_F64_PROMOTE_F32:
843
69.0k
    case WASM_INS_I32_REINTERPRET_F32:
844
69.4k
    case WASM_INS_I64_REINTERPRET_F64:
845
69.8k
    case WASM_INS_F32_REINTERPRET_I32:
846
70.2k
    case WASM_INS_F64_REINTERPRET_I64:
847
70.2k
      MI->wasm_data.type = WASM_OP_NONE;
848
849
70.2k
      if (MI->flat_insn->detail) {
850
70.2k
        MI->flat_insn->detail->wasm.op_count = 0;
851
70.2k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_NUMBERIC;
852
70.2k
        MI->flat_insn->detail->groups_count++;
853
70.2k
      }
854
855
70.2k
      *size = 1;
856
857
70.2k
      break;
858
859
475
    case WASM_INS_DROP:
860
842
    case WASM_INS_SELECT:
861
842
      MI->wasm_data.type = WASM_OP_NONE;
862
863
842
      if (MI->flat_insn->detail) {
864
842
        MI->flat_insn->detail->wasm.op_count = 0;
865
842
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_PARAMETRIC;
866
842
        MI->flat_insn->detail->groups_count++;
867
842
      }
868
869
842
      *size = 1;
870
871
842
      break;
872
873
570
    case WASM_INS_GET_LOCAL:
874
923
    case WASM_INS_SET_LOCAL:
875
1.42k
    case WASM_INS_TEE_LOCAL:
876
1.77k
    case WASM_INS_GET_GLOBAL:
877
2.29k
    case WASM_INS_SET_GLOBAL:
878
2.29k
      if (code_len == 1 || !read_varuint32(&code[1], code_len - 1, &param_size, MI)) {
879
54
        return false;
880
54
      }
881
882
2.23k
      if (MI->flat_insn->detail) {
883
2.23k
        MI->flat_insn->detail->wasm.op_count = 1;
884
2.23k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_VARIABLE;
885
2.23k
        MI->flat_insn->detail->groups_count++;
886
2.23k
      }
887
888
2.23k
      *size = param_size + 1;
889
890
2.23k
      break;
891
892
356
    case WASM_INS_I32_LOAD:
893
648
    case WASM_INS_I64_LOAD:
894
961
    case WASM_INS_F32_LOAD:
895
1.84k
    case WASM_INS_F64_LOAD:
896
2.45k
    case WASM_INS_I32_LOAD8_S:
897
2.84k
    case WASM_INS_I32_LOAD8_U:
898
3.34k
    case WASM_INS_I32_LOAD16_S:
899
3.79k
    case WASM_INS_I32_LOAD16_U:
900
4.35k
    case WASM_INS_I64_LOAD8_S:
901
4.81k
    case WASM_INS_I64_LOAD8_U:
902
5.22k
    case WASM_INS_I64_LOAD16_S:
903
5.80k
    case WASM_INS_I64_LOAD16_U:
904
6.25k
    case WASM_INS_I64_LOAD32_S:
905
6.59k
    case WASM_INS_I64_LOAD32_U:
906
7.05k
    case WASM_INS_I32_STORE:
907
7.47k
    case WASM_INS_I64_STORE:
908
7.86k
    case WASM_INS_F32_STORE:
909
8.11k
    case WASM_INS_F64_STORE:
910
8.49k
    case WASM_INS_I32_STORE8:
911
8.99k
    case WASM_INS_I32_STORE16:
912
9.43k
    case WASM_INS_I64_STORE8:
913
9.85k
    case WASM_INS_I64_STORE16:
914
10.2k
    case WASM_INS_I64_STORE32:
915
10.2k
      if (code_len == 1 || !read_memoryimmediate(&code[1], code_len - 1, &param_size, MI)) {
916
296
        return false;
917
296
      }
918
919
9.90k
      if (MI->flat_insn->detail) {
920
9.90k
        MI->flat_insn->detail->wasm.op_count = 2;
921
9.90k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_MEMORY;
922
9.90k
        MI->flat_insn->detail->groups_count++;
923
9.90k
      }
924
925
9.90k
      *size = param_size + 1;
926
927
9.90k
      break;
928
929
260
    case WASM_INS_CURRENT_MEMORY:
930
1.20k
    case WASM_INS_GROW_MEMORY:
931
1.20k
      MI->wasm_data.type = WASM_OP_NONE;
932
933
1.20k
      if (MI->flat_insn->detail) {
934
1.20k
        MI->flat_insn->detail->wasm.op_count = 0;
935
1.20k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_MEMORY;
936
1.20k
        MI->flat_insn->detail->groups_count++;
937
1.20k
      }
938
939
1.20k
      *size = 1;
940
941
1.20k
      break;
942
943
9.70k
    case WASM_INS_UNREACHABLE:
944
10.5k
    case WASM_INS_NOP:
945
11.0k
    case WASM_INS_ELSE:
946
11.3k
    case WASM_INS_END:
947
12.6k
    case WASM_INS_RETURN:
948
12.6k
      MI->wasm_data.type = WASM_OP_NONE;
949
950
12.6k
      if (MI->flat_insn->detail) {
951
12.6k
        MI->flat_insn->detail->wasm.op_count = 0;
952
12.6k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_CONTROL;
953
12.6k
        MI->flat_insn->detail->groups_count++;
954
12.6k
      }
955
956
12.6k
      *size = 1;
957
958
12.6k
      break;
959
960
881
    case WASM_INS_BLOCK:
961
1.42k
    case WASM_INS_LOOP:
962
2.40k
    case WASM_INS_IF:
963
2.40k
      if (code_len == 1 || !read_varint7(&code[1], code_len - 1, &param_size, MI)) {
964
34
        return false;
965
34
      }
966
967
2.36k
      if (MI->flat_insn->detail) {
968
2.36k
        MI->flat_insn->detail->wasm.op_count = 1;
969
2.36k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_CONTROL;
970
2.36k
        MI->flat_insn->detail->groups_count++;
971
2.36k
      }
972
973
2.36k
      *size = param_size + 1;
974
975
2.36k
      break;
976
977
504
    case WASM_INS_BR:
978
1.14k
    case WASM_INS_BR_IF:
979
1.73k
    case WASM_INS_CALL:
980
2.27k
    case WASM_INS_CALL_INDIRECT:
981
2.27k
      if (code_len == 1 || !read_varuint32(&code[1], code_len - 1, &param_size, MI)) {
982
31
        return false;
983
31
      }
984
985
2.24k
      if (MI->flat_insn->detail) {
986
2.24k
        MI->flat_insn->detail->wasm.op_count = 1;
987
2.24k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_CONTROL;
988
2.24k
        MI->flat_insn->detail->groups_count++;
989
2.24k
      }
990
991
2.24k
      *size = param_size + 1;
992
993
2.24k
      break;
994
995
2.46k
    case WASM_INS_BR_TABLE:
996
2.46k
      if (code_len == 1 || !read_brtable(&code[1], code_len - 1, &param_size, MI)) {
997
147
        return false;
998
147
      }
999
1000
2.32k
      if (MI->flat_insn->detail) {
1001
2.32k
        MI->flat_insn->detail->wasm.op_count = 1;
1002
2.32k
        MI->flat_insn->detail->groups[MI->flat_insn->detail->groups_count] = WASM_GRP_CONTROL;
1003
2.32k
        MI->flat_insn->detail->groups_count++;
1004
2.32k
      }
1005
1006
2.32k
      *size = param_size + 1;
1007
1008
2.32k
      break;
1009
106k
  }
1010
1011
106k
  return true;
1012
106k
}