1*a03ca8b9SKrzysztof Kosiński // Copyright 2017 The Chromium Authors. All rights reserved.
2*a03ca8b9SKrzysztof Kosiński // Use of this source code is governed by a BSD-style license that can be
3*a03ca8b9SKrzysztof Kosiński // found in the LICENSE file.
4*a03ca8b9SKrzysztof Kosiński
5*a03ca8b9SKrzysztof Kosiński #include "components/zucchini/zucchini_apply.h"
6*a03ca8b9SKrzysztof Kosiński
7*a03ca8b9SKrzysztof Kosiński #include <algorithm>
8*a03ca8b9SKrzysztof Kosiński #include <map>
9*a03ca8b9SKrzysztof Kosiński #include <memory>
10*a03ca8b9SKrzysztof Kosiński #include <utility>
11*a03ca8b9SKrzysztof Kosiński
12*a03ca8b9SKrzysztof Kosiński #include "base/logging.h"
13*a03ca8b9SKrzysztof Kosiński #include "base/numerics/safe_conversions.h"
14*a03ca8b9SKrzysztof Kosiński #include "components/zucchini/disassembler.h"
15*a03ca8b9SKrzysztof Kosiński #include "components/zucchini/element_detection.h"
16*a03ca8b9SKrzysztof Kosiński #include "components/zucchini/equivalence_map.h"
17*a03ca8b9SKrzysztof Kosiński #include "components/zucchini/image_index.h"
18*a03ca8b9SKrzysztof Kosiński
19*a03ca8b9SKrzysztof Kosiński namespace zucchini {
20*a03ca8b9SKrzysztof Kosiński
ApplyEquivalenceAndExtraData(ConstBufferView old_image,const PatchElementReader & patch_reader,MutableBufferView new_image)21*a03ca8b9SKrzysztof Kosiński bool ApplyEquivalenceAndExtraData(ConstBufferView old_image,
22*a03ca8b9SKrzysztof Kosiński const PatchElementReader& patch_reader,
23*a03ca8b9SKrzysztof Kosiński MutableBufferView new_image) {
24*a03ca8b9SKrzysztof Kosiński EquivalenceSource equiv_source = patch_reader.GetEquivalenceSource();
25*a03ca8b9SKrzysztof Kosiński ExtraDataSource extra_data_source = patch_reader.GetExtraDataSource();
26*a03ca8b9SKrzysztof Kosiński MutableBufferView::iterator dst_it = new_image.begin();
27*a03ca8b9SKrzysztof Kosiński
28*a03ca8b9SKrzysztof Kosiński for (auto equivalence = equiv_source.GetNext(); equivalence.has_value();
29*a03ca8b9SKrzysztof Kosiński equivalence = equiv_source.GetNext()) {
30*a03ca8b9SKrzysztof Kosiński MutableBufferView::iterator next_dst_it =
31*a03ca8b9SKrzysztof Kosiński new_image.begin() + equivalence->dst_offset;
32*a03ca8b9SKrzysztof Kosiński CHECK(next_dst_it >= dst_it);
33*a03ca8b9SKrzysztof Kosiński
34*a03ca8b9SKrzysztof Kosiński offset_t gap = static_cast<offset_t>(next_dst_it - dst_it);
35*a03ca8b9SKrzysztof Kosiński std::optional<ConstBufferView> extra_data = extra_data_source.GetNext(gap);
36*a03ca8b9SKrzysztof Kosiński if (!extra_data) {
37*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Error reading extra_data";
38*a03ca8b9SKrzysztof Kosiński return false;
39*a03ca8b9SKrzysztof Kosiński }
40*a03ca8b9SKrzysztof Kosiński // |extra_data| length is based on what was parsed from the patch so this
41*a03ca8b9SKrzysztof Kosiński // copy should be valid.
42*a03ca8b9SKrzysztof Kosiński dst_it = std::copy(extra_data->begin(), extra_data->end(), dst_it);
43*a03ca8b9SKrzysztof Kosiński CHECK_EQ(dst_it, next_dst_it);
44*a03ca8b9SKrzysztof Kosiński dst_it = std::copy_n(old_image.begin() + equivalence->src_offset,
45*a03ca8b9SKrzysztof Kosiński equivalence->length, dst_it);
46*a03ca8b9SKrzysztof Kosiński CHECK_EQ(dst_it, next_dst_it + equivalence->length);
47*a03ca8b9SKrzysztof Kosiński }
48*a03ca8b9SKrzysztof Kosiński offset_t gap = static_cast<offset_t>(new_image.end() - dst_it);
49*a03ca8b9SKrzysztof Kosiński std::optional<ConstBufferView> extra_data = extra_data_source.GetNext(gap);
50*a03ca8b9SKrzysztof Kosiński if (!extra_data) {
51*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Error reading extra_data";
52*a03ca8b9SKrzysztof Kosiński return false;
53*a03ca8b9SKrzysztof Kosiński }
54*a03ca8b9SKrzysztof Kosiński std::copy(extra_data->begin(), extra_data->end(), dst_it);
55*a03ca8b9SKrzysztof Kosiński if (!equiv_source.Done() || !extra_data_source.Done()) {
56*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Found trailing equivalence and extra_data";
57*a03ca8b9SKrzysztof Kosiński return false;
58*a03ca8b9SKrzysztof Kosiński }
59*a03ca8b9SKrzysztof Kosiński return true;
60*a03ca8b9SKrzysztof Kosiński }
61*a03ca8b9SKrzysztof Kosiński
ApplyRawDelta(const PatchElementReader & patch_reader,MutableBufferView new_image)62*a03ca8b9SKrzysztof Kosiński bool ApplyRawDelta(const PatchElementReader& patch_reader,
63*a03ca8b9SKrzysztof Kosiński MutableBufferView new_image) {
64*a03ca8b9SKrzysztof Kosiński EquivalenceSource equiv_source = patch_reader.GetEquivalenceSource();
65*a03ca8b9SKrzysztof Kosiński RawDeltaSource raw_delta_source = patch_reader.GetRawDeltaSource();
66*a03ca8b9SKrzysztof Kosiński // Traverse |equiv_source| and |raw_delta_source| in lockstep.
67*a03ca8b9SKrzysztof Kosiński auto equivalence = equiv_source.GetNext();
68*a03ca8b9SKrzysztof Kosiński offset_t base_copy_offset = 0;
69*a03ca8b9SKrzysztof Kosiński for (auto delta = raw_delta_source.GetNext(); delta.has_value();
70*a03ca8b9SKrzysztof Kosiński delta = raw_delta_source.GetNext()) {
71*a03ca8b9SKrzysztof Kosiński while (equivalence.has_value() &&
72*a03ca8b9SKrzysztof Kosiński base_copy_offset + equivalence->length <= delta->copy_offset) {
73*a03ca8b9SKrzysztof Kosiński base_copy_offset += equivalence->length;
74*a03ca8b9SKrzysztof Kosiński equivalence = equiv_source.GetNext();
75*a03ca8b9SKrzysztof Kosiński }
76*a03ca8b9SKrzysztof Kosiński if (!equivalence.has_value()) {
77*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Error reading equivalences";
78*a03ca8b9SKrzysztof Kosiński return false;
79*a03ca8b9SKrzysztof Kosiński }
80*a03ca8b9SKrzysztof Kosiński CHECK_GE(delta->copy_offset, base_copy_offset);
81*a03ca8b9SKrzysztof Kosiński CHECK_LT(delta->copy_offset, base_copy_offset + equivalence->length);
82*a03ca8b9SKrzysztof Kosiński
83*a03ca8b9SKrzysztof Kosiński // Invert byte diff.
84*a03ca8b9SKrzysztof Kosiński new_image[equivalence->dst_offset - base_copy_offset +
85*a03ca8b9SKrzysztof Kosiński delta->copy_offset] += delta->diff;
86*a03ca8b9SKrzysztof Kosiński }
87*a03ca8b9SKrzysztof Kosiński if (!raw_delta_source.Done()) {
88*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Found trailing raw_delta";
89*a03ca8b9SKrzysztof Kosiński return false;
90*a03ca8b9SKrzysztof Kosiński }
91*a03ca8b9SKrzysztof Kosiński return true;
92*a03ca8b9SKrzysztof Kosiński }
93*a03ca8b9SKrzysztof Kosiński
ApplyReferencesCorrection(ExecutableType exe_type,ConstBufferView old_image,const PatchElementReader & patch,MutableBufferView new_image)94*a03ca8b9SKrzysztof Kosiński bool ApplyReferencesCorrection(ExecutableType exe_type,
95*a03ca8b9SKrzysztof Kosiński ConstBufferView old_image,
96*a03ca8b9SKrzysztof Kosiński const PatchElementReader& patch,
97*a03ca8b9SKrzysztof Kosiński MutableBufferView new_image) {
98*a03ca8b9SKrzysztof Kosiński auto old_disasm = MakeDisassemblerOfType(old_image, exe_type);
99*a03ca8b9SKrzysztof Kosiński auto new_disasm =
100*a03ca8b9SKrzysztof Kosiński MakeDisassemblerOfType(ConstBufferView(new_image), exe_type);
101*a03ca8b9SKrzysztof Kosiński if (!old_disasm || !new_disasm) {
102*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Failed to create Disassembler";
103*a03ca8b9SKrzysztof Kosiński return false;
104*a03ca8b9SKrzysztof Kosiński }
105*a03ca8b9SKrzysztof Kosiński if (old_disasm->size() != old_image.size() ||
106*a03ca8b9SKrzysztof Kosiński new_disasm->size() != new_image.size()) {
107*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Disassembler and element size mismatch";
108*a03ca8b9SKrzysztof Kosiński return false;
109*a03ca8b9SKrzysztof Kosiński }
110*a03ca8b9SKrzysztof Kosiński
111*a03ca8b9SKrzysztof Kosiński ReferenceDeltaSource ref_delta_source = patch.GetReferenceDeltaSource();
112*a03ca8b9SKrzysztof Kosiński std::map<PoolTag, std::vector<ReferenceGroup>> pool_groups;
113*a03ca8b9SKrzysztof Kosiński for (const auto& ref_group : old_disasm->MakeReferenceGroups())
114*a03ca8b9SKrzysztof Kosiński pool_groups[ref_group.pool_tag()].push_back(ref_group);
115*a03ca8b9SKrzysztof Kosiński
116*a03ca8b9SKrzysztof Kosiński OffsetMapper offset_mapper(patch.GetEquivalenceSource(),
117*a03ca8b9SKrzysztof Kosiński base::checked_cast<offset_t>(old_image.size()),
118*a03ca8b9SKrzysztof Kosiński base::checked_cast<offset_t>(new_image.size()));
119*a03ca8b9SKrzysztof Kosiński
120*a03ca8b9SKrzysztof Kosiński std::vector<ReferenceGroup> new_groups = new_disasm->MakeReferenceGroups();
121*a03ca8b9SKrzysztof Kosiński for (const auto& pool_and_sub_groups : pool_groups) {
122*a03ca8b9SKrzysztof Kosiński PoolTag pool_tag = pool_and_sub_groups.first;
123*a03ca8b9SKrzysztof Kosiński const std::vector<ReferenceGroup>& sub_groups = pool_and_sub_groups.second;
124*a03ca8b9SKrzysztof Kosiński
125*a03ca8b9SKrzysztof Kosiński TargetPool targets;
126*a03ca8b9SKrzysztof Kosiński // Load "old" targets, then filter and map them to "new" targets.
127*a03ca8b9SKrzysztof Kosiński for (ReferenceGroup group : sub_groups)
128*a03ca8b9SKrzysztof Kosiński targets.InsertTargets(std::move(*group.GetReader(old_disasm.get())));
129*a03ca8b9SKrzysztof Kosiński targets.FilterAndProject(offset_mapper);
130*a03ca8b9SKrzysztof Kosiński
131*a03ca8b9SKrzysztof Kosiński // Load extra targets from patch.
132*a03ca8b9SKrzysztof Kosiński TargetSource target_source = patch.GetExtraTargetSource(pool_tag);
133*a03ca8b9SKrzysztof Kosiński targets.InsertTargets(&target_source);
134*a03ca8b9SKrzysztof Kosiński if (!target_source.Done()) {
135*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Found trailing extra_targets";
136*a03ca8b9SKrzysztof Kosiński return false;
137*a03ca8b9SKrzysztof Kosiński }
138*a03ca8b9SKrzysztof Kosiński
139*a03ca8b9SKrzysztof Kosiński // Correct all new references, and write results to |new_disasm|.
140*a03ca8b9SKrzysztof Kosiński for (ReferenceGroup group : sub_groups) {
141*a03ca8b9SKrzysztof Kosiński std::unique_ptr<ReferenceWriter> ref_writer =
142*a03ca8b9SKrzysztof Kosiński new_groups[group.type_tag().value()].GetWriter(new_image,
143*a03ca8b9SKrzysztof Kosiński new_disasm.get());
144*a03ca8b9SKrzysztof Kosiński
145*a03ca8b9SKrzysztof Kosiński EquivalenceSource equiv_source = patch.GetEquivalenceSource();
146*a03ca8b9SKrzysztof Kosiński for (auto equivalence = equiv_source.GetNext(); equivalence.has_value();
147*a03ca8b9SKrzysztof Kosiński equivalence = equiv_source.GetNext()) {
148*a03ca8b9SKrzysztof Kosiński std::unique_ptr<ReferenceReader> ref_gen = group.GetReader(
149*a03ca8b9SKrzysztof Kosiński equivalence->src_offset, equivalence->src_end(), old_disasm.get());
150*a03ca8b9SKrzysztof Kosiński for (auto ref = ref_gen->GetNext(); ref.has_value();
151*a03ca8b9SKrzysztof Kosiński ref = ref_gen->GetNext()) {
152*a03ca8b9SKrzysztof Kosiński DCHECK_GE(ref->location, equivalence->src_offset);
153*a03ca8b9SKrzysztof Kosiński DCHECK_LT(ref->location, equivalence->src_end());
154*a03ca8b9SKrzysztof Kosiński
155*a03ca8b9SKrzysztof Kosiński offset_t projected_target =
156*a03ca8b9SKrzysztof Kosiński offset_mapper.ExtendedForwardProject(ref->target);
157*a03ca8b9SKrzysztof Kosiński offset_t expected_key = targets.KeyForNearestOffset(projected_target);
158*a03ca8b9SKrzysztof Kosiński auto delta = ref_delta_source.GetNext();
159*a03ca8b9SKrzysztof Kosiński if (!delta.has_value()) {
160*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Error reading reference_delta";
161*a03ca8b9SKrzysztof Kosiński return false;
162*a03ca8b9SKrzysztof Kosiński }
163*a03ca8b9SKrzysztof Kosiński const key_t key = expected_key + delta.value();
164*a03ca8b9SKrzysztof Kosiński if (!targets.KeyIsValid(key)) {
165*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Invalid reference_delta";
166*a03ca8b9SKrzysztof Kosiński return false;
167*a03ca8b9SKrzysztof Kosiński }
168*a03ca8b9SKrzysztof Kosiński ref->target = targets.OffsetForKey(expected_key + delta.value());
169*a03ca8b9SKrzysztof Kosiński ref->location =
170*a03ca8b9SKrzysztof Kosiński ref->location - equivalence->src_offset + equivalence->dst_offset;
171*a03ca8b9SKrzysztof Kosiński ref_writer->PutNext(*ref);
172*a03ca8b9SKrzysztof Kosiński }
173*a03ca8b9SKrzysztof Kosiński }
174*a03ca8b9SKrzysztof Kosiński }
175*a03ca8b9SKrzysztof Kosiński }
176*a03ca8b9SKrzysztof Kosiński if (!ref_delta_source.Done()) {
177*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Found trailing ref_delta_source";
178*a03ca8b9SKrzysztof Kosiński return false;
179*a03ca8b9SKrzysztof Kosiński }
180*a03ca8b9SKrzysztof Kosiński return true;
181*a03ca8b9SKrzysztof Kosiński }
182*a03ca8b9SKrzysztof Kosiński
ApplyElement(ExecutableType exe_type,ConstBufferView old_image,const PatchElementReader & patch_reader,MutableBufferView new_image)183*a03ca8b9SKrzysztof Kosiński bool ApplyElement(ExecutableType exe_type,
184*a03ca8b9SKrzysztof Kosiński ConstBufferView old_image,
185*a03ca8b9SKrzysztof Kosiński const PatchElementReader& patch_reader,
186*a03ca8b9SKrzysztof Kosiński MutableBufferView new_image) {
187*a03ca8b9SKrzysztof Kosiński return ApplyEquivalenceAndExtraData(old_image, patch_reader, new_image) &&
188*a03ca8b9SKrzysztof Kosiński ApplyRawDelta(patch_reader, new_image) &&
189*a03ca8b9SKrzysztof Kosiński ApplyReferencesCorrection(exe_type, old_image, patch_reader,
190*a03ca8b9SKrzysztof Kosiński new_image);
191*a03ca8b9SKrzysztof Kosiński }
192*a03ca8b9SKrzysztof Kosiński
193*a03ca8b9SKrzysztof Kosiński /******** Exported Functions ********/
194*a03ca8b9SKrzysztof Kosiński
ApplyBuffer(ConstBufferView old_image,const EnsemblePatchReader & patch_reader,MutableBufferView new_image)195*a03ca8b9SKrzysztof Kosiński status::Code ApplyBuffer(ConstBufferView old_image,
196*a03ca8b9SKrzysztof Kosiński const EnsemblePatchReader& patch_reader,
197*a03ca8b9SKrzysztof Kosiński MutableBufferView new_image) {
198*a03ca8b9SKrzysztof Kosiński if (!patch_reader.CheckOldFile(old_image)) {
199*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Invalid old_image.";
200*a03ca8b9SKrzysztof Kosiński return status::kStatusInvalidOldImage;
201*a03ca8b9SKrzysztof Kosiński }
202*a03ca8b9SKrzysztof Kosiński
203*a03ca8b9SKrzysztof Kosiński for (const auto& element_patch : patch_reader.elements()) {
204*a03ca8b9SKrzysztof Kosiński ElementMatch match = element_patch.element_match();
205*a03ca8b9SKrzysztof Kosiński if (!ApplyElement(match.exe_type(), old_image[match.old_element.region()],
206*a03ca8b9SKrzysztof Kosiński element_patch, new_image[match.new_element.region()]))
207*a03ca8b9SKrzysztof Kosiński return status::kStatusFatal;
208*a03ca8b9SKrzysztof Kosiński }
209*a03ca8b9SKrzysztof Kosiński
210*a03ca8b9SKrzysztof Kosiński if (!patch_reader.CheckNewFile(ConstBufferView(new_image))) {
211*a03ca8b9SKrzysztof Kosiński LOG(ERROR) << "Invalid new_image.";
212*a03ca8b9SKrzysztof Kosiński return status::kStatusInvalidNewImage;
213*a03ca8b9SKrzysztof Kosiński }
214*a03ca8b9SKrzysztof Kosiński return status::kStatusSuccess;
215*a03ca8b9SKrzysztof Kosiński }
216*a03ca8b9SKrzysztof Kosiński
217*a03ca8b9SKrzysztof Kosiński } // namespace zucchini
218