Files
revng-revng/lib/Model/Importer/Binary/PECOFFImporter.cpp
2025-04-17 11:19:17 +03:00

554 lines
19 KiB
C++

/// \file PECOFF.cpp
//
// This file is distributed under the MIT License. See LICENSE.md for details.
//
#include "llvm/Object/COFF.h"
#include "llvm/Object/ObjectFile.h"
#include "llvm/Support/Error.h"
#include "revng/ABI/DefaultFunctionPrototype.h"
#include "revng/Model/Binary.h"
#include "revng/Model/IRHelpers.h"
#include "revng/Model/Importer/Binary/BinaryImporterHelper.h"
#include "revng/Model/Importer/Binary/Options.h"
#include "revng/Model/Importer/DebugInfo/PDBImporter.h"
#include "revng/Model/Pass/AllPasses.h"
#include "revng/Support/Debug.h"
#include "revng/Support/MetaAddress.h"
#include "CrossModelFindTypeHelper.h"
#include "Importers.h"
using namespace llvm;
using namespace llvm::object;
static Logger<> Log("pecoff-importer");
using PELDDTree = std::map<std::string, std::vector<std::string>>;
class PECOFFImporter : public BinaryImporterHelper {
private:
TupleTree<model::Binary> &Model;
const object::COFFObjectFile &TheBinary;
MetaAddress ImageBase = MetaAddress::invalid();
public:
PECOFFImporter(TupleTree<model::Binary> &Model,
const object::COFFObjectFile &TheBinary,
uint64_t BaseAddress) :
BinaryImporterHelper(*Model, BaseAddress, Log),
Model(Model),
TheBinary(TheBinary) {}
Error import(const ImporterOptions &Options);
private:
Error parseSectionsHeaders();
/// Parse static symbols from the file.
void parseSymbols();
/// Parse dynamic symbols from the file.
void parseImportedSymbols();
using ImportedSymbolRange = iterator_range<imported_symbol_iterator>;
void recordImportedFunctions(ImportedSymbolRange Range,
uint32_t ImportAddressTableEntry);
/// Parse delay dynamic symbols from the file.
void parseDelayImportedSymbols();
/// Resolve dependent DLLs.
void getDependencies(PELDDTree Dependencies, unsigned Level);
/// Try to find prototypes in the Models of dynamic libraries.
void findMissingTypes(const ImporterOptions &Options);
using DelayDirectoryRef = const DelayImportDirectoryEntryRef;
void recordDelayImportedFunctions(DelayDirectoryRef &I,
ImportedSymbolRange Range);
};
Error PECOFFImporter::parseSectionsHeaders() {
using namespace model;
revng_assert(Model->Architecture() != Architecture::Invalid);
uint64_t PointerSize = Architecture::getPointerSize(Model->Architecture());
bool IsLittleEndian = Architecture::isLittleEndian(Model->Architecture());
if ((PointerSize != 4 and PointerSize != 8) or not IsLittleEndian) {
return revng::createError("Only 32/64-bit little endian COFF files are "
"supported");
}
const object::pe32_header *PE32Header = TheBinary.getPE32Header();
// Identify ImageBase
if (PE32Header) {
// TODO: ImageBase should aligned to 4kb pages, should we check that?
ImageBase = fromPC(PE32Header->ImageBase);
} else {
const pe32plus_header *PE32PlusHeader = TheBinary.getPE32PlusHeader();
if (not PE32PlusHeader)
return revng::createError("Invalid PE Header");
// PE32+ Header
ImageBase = fromPC(PE32PlusHeader->ImageBase);
}
// Read sections
for (const SectionRef &SecRef : TheBinary.sections()) {
unsigned Id = TheBinary.getSectionID(SecRef);
Expected<const object::coff_section *> MaybeSection = TheBinary
.getSection(Id);
if (auto Error = MaybeSection.takeError()) {
revng_log(Log, "Error in section with ID " << Id << ": " << Error);
consumeError(std::move(Error));
continue;
}
const object::coff_section *CoffRef = *MaybeSection;
MetaAddress Start = ImageBase + u64(CoffRef->VirtualAddress);
Segment Segment({ Start.toGeneric(), u64(CoffRef->VirtualSize) });
Segment.StartOffset() = CoffRef->PointerToRawData;
// VirtualSize might be larger than SizeOfRawData (extra data at the end of
// the section) or vice-versa (data mapped in memory but not present in
// memory, e.g., .bss)
Segment.FileSize() = CoffRef->SizeOfRawData;
// Since it is possible that the file size is greater than VirtualSize
// because SizeOfRawData is rounded, but VirtualSize is not, we work it
// around here by using maximum of these two values for the VirtSize.
if (Segment.FileSize() > Segment.VirtualSize())
Segment.VirtualSize() = Segment.FileSize();
Segment.IsReadable() = CoffRef->Characteristics & COFF::IMAGE_SCN_MEM_READ;
Segment.IsWriteable() = CoffRef->Characteristics
& COFF::IMAGE_SCN_MEM_WRITE;
Segment.IsExecutable() = CoffRef->Characteristics
& COFF::IMAGE_SCN_MEM_EXECUTE;
// TODO: replace the following with `populateSegmentTypeStruct`, when
// symbol table and dynamic symbol table parsing is finalized
auto &&[Struct, Type] = Model->makeStructDefinition(Segment.VirtualSize());
Struct.CanContainCode() = Segment.IsExecutable();
Segment.Type() = std::move(Type);
Segment.verify(true);
Model->Segments().insert(std::move(Segment));
}
processSegments();
// Identify EntryPoint
MetaAddress EntryPoint;
if (PE32Header) {
if (PE32Header->AddressOfEntryPoint != 0) {
EntryPoint = ImageBase + u64(PE32Header->AddressOfEntryPoint);
}
} else {
const pe32plus_header *PE32PlusHeader = TheBinary.getPE32PlusHeader();
revng_assert(PE32PlusHeader);
// PE32+ Header
if (PE32PlusHeader->AddressOfEntryPoint != 0) {
EntryPoint = ImageBase + u64(PE32PlusHeader->AddressOfEntryPoint);
}
}
if (EntryPoint.isValid())
setEntryPoint(EntryPoint);
return Error::success();
}
void PECOFFImporter::parseSymbols() {
for (auto Sym : TheBinary.symbols()) {
COFFSymbolRef Symbol = TheBinary.getCOFFSymbol(Sym);
if (!Symbol.isFunctionDefinition())
continue;
Expected<StringRef> MaybeName = TheBinary.getSymbolName(Symbol);
if (auto Error = MaybeName.takeError()) {
revng_log(Log, "Found static symbol without a name.");
consumeError(std::move(Error));
continue;
}
// Relocate the symbol.
MetaAddress Address = ImageBase + Symbol.getValue();
if (Model->Functions().contains(Address))
continue;
if (auto *Function = registerFunctionEntry(Address))
Function->Name() = *MaybeName;
}
}
void PECOFFImporter::recordImportedFunctions(ImportedSymbolRange Range,
uint32_t ImportAddressTableEntry) {
// Index of entries within import table.
uint32_t Index = 0;
for (const ImportedSymbolRef &I : Range) {
StringRef Sym;
if (Error E = I.getSymbolName(Sym)) {
revng_log(Log, "Found an imported symbol without a name.");
continue;
}
// TODO: We may face some old linkers that use ordinal bits only
// so consider this info then.
uint16_t Ordinal;
if (Error E = I.getOrdinal(Ordinal)) {
revng_log(Log, "Found an imported symbol without an ordinal.");
continue;
}
// Dynamic functions must have a name, so skip those without it.
// TODO: handle imports by ordinal
if (Sym.empty() or Model->ImportedDynamicFunctions().contains(Sym.str()))
continue;
// NOTE: This address will occur in the .text section as a target of a jump.
// Once we have the address of the entry within .idata, we can access
// the information about symbol.
uint64_t PointerSize = getPointerSize(Model->Architecture());
MetaAddress AddressOfImportEntry = ImageBase + u64(ImportAddressTableEntry)
+ u64(Index * PointerSize);
// Lets make a Relocation.
using namespace model::RelocationType;
auto RelocationType = formCOFFRelocation(Model->Architecture());
model::Relocation NewRelocation(AddressOfImportEntry, RelocationType);
auto It = Model->ImportedDynamicFunctions().insert(Sym.str()).first;
revng_assert(NewRelocation.verify(true));
It->Relocations().insert(NewRelocation);
++Index;
}
}
void PECOFFImporter::parseImportedSymbols() {
for (const ImportDirectoryEntryRef &I : TheBinary.import_directories()) {
StringRef Name;
if (Error E = I.getName(Name)) {
revng_log(Log, "Found an imported symbol without a name.");
continue;
}
// Let's find symbols of the dll associated with Name.
uint32_t ImportLookupTableEntry;
if (Error E = I.getImportLookupTableRVA(ImportLookupTableEntry)) {
revng_log(Log, "No ImportLookupTableRVA found for an import");
continue;
}
uint32_t ImportAddressTableEntry;
if (Error E = I.getImportAddressTableRVA(ImportAddressTableEntry)) {
revng_log(Log, "No ImportAddressTableRVA found for an import");
continue;
}
if (not Model->ImportedLibraries().insert(Name.str()).second)
continue;
// The import lookup table can be missing with certain older linkers, so
// fall back to the import address table in that case.
if (ImportLookupTableEntry) {
recordImportedFunctions(I.lookup_table_symbols(),
ImportAddressTableEntry);
} else {
recordImportedFunctions(I.imported_symbols(), ImportAddressTableEntry);
}
}
}
void PECOFFImporter::recordDelayImportedFunctions(DelayDirectoryRef &I,
ImportedSymbolRange Range) {
// Index of entries within import table.
uint32_t Index = 0;
for (const ImportedSymbolRef &S : Range) {
StringRef Sym;
if (Error E = S.getSymbolName(Sym)) {
revng_log(Log, "Found a delay imported symbol without a name.");
continue;
}
// TODO: We may face some old linkers that use ordinal bits only
// so consider this info then.
uint16_t Ordinal;
if (Error E = S.getOrdinal(Ordinal)) {
revng_log(Log, "Found a delay imported symbol without an ordinal.");
continue;
}
uint64_t Addr;
if (Error E = I.getImportAddress(Index++, Addr)) {
revng_log(Log, "Found a delay imported symbol without an address.");
continue;
}
// Dynamic functions must have a name, so skip those without it.
// TODO: handle imports by ordinal
if (Sym.empty() or Model->ImportedDynamicFunctions().contains(Sym.str()))
continue;
MetaAddress AddressOfDelayImportEntry = ImageBase + u64(Addr);
// Lets make Relocation.
using namespace model::RelocationType;
auto RelocationType = formCOFFRelocation(Model->Architecture());
model::Relocation NewRelocation(AddressOfDelayImportEntry, RelocationType);
auto NewIt = Model->ImportedDynamicFunctions().insert(Sym.str()).first;
revng_assert(NewRelocation.verify(true));
NewIt->Relocations().insert(NewRelocation);
}
}
void PECOFFImporter::parseDelayImportedSymbols() {
for (DelayDirectoryRef &I : TheBinary.delay_import_directories()) {
StringRef Name;
if (Error E = I.getName(Name)) {
revng_log(Log, "No name of a delay imported dll.");
continue;
}
const delay_import_directory_table_entry *Table;
if (Error E = I.getDelayImportTable(Table)) {
revng_log(Log, "No delay import table found for a dll.");
continue;
}
if (not Model->ImportedLibraries().insert(Name.str()).second)
continue;
recordDelayImportedFunctions(I, I.imported_symbols());
}
}
/// \note For the PE/COFF, we are assuming that the libraries are in the current
/// directory.
static RecursiveCoroutine<void> getDependenciesHelper(StringRef FileName,
PELDDTree Dependencies,
unsigned CurrentLevel,
unsigned Level) {
auto BinaryOrErr = object::createBinary(FileName);
if (not BinaryOrErr) {
revng_log(Log,
"Can't create object for " << FileName << " due to "
<< toString(BinaryOrErr.takeError()));
llvm::consumeError(BinaryOrErr.takeError());
rc_return;
}
auto Object = cast<object::ObjectFile>(BinaryOrErr->getBinary());
auto COFFObject = cast<COFFObjectFile>(Object);
for (const ImportDirectoryEntryRef &I : COFFObject->import_directories()) {
StringRef LibraryName;
if (Error E = I.getName(LibraryName)) {
revng_log(Log, "Found an imported symbol without a name.");
continue;
}
uint32_t ImportLookupTableEntry;
if (Error E = I.getImportLookupTableRVA(ImportLookupTableEntry)) {
revng_log(Log, "No ImportLookupTableRVA found for an import");
continue;
}
uint32_t ImportAddressTableEntry;
if (Error E = I.getImportAddressTableRVA(ImportAddressTableEntry)) {
revng_log(Log, "No ImportAddressTableRVA found for an import");
continue;
}
/// \note DLL names can be all upper-cased in the Import Tables, so we want
/// to lower it.
auto LibraryNameAsString = LibraryName.str();
transform(LibraryNameAsString.begin(),
LibraryNameAsString.end(),
LibraryNameAsString.begin(),
::tolower);
Dependencies[FileName.str()].push_back(LibraryNameAsString);
}
if (CurrentLevel == Level)
rc_return;
++CurrentLevel;
for (auto &Library : Dependencies) {
revng_log(Log, "Dependencies for " << Library.first << ":\n");
for (auto &DependingLibrary : Library.second)
if (!Dependencies.contains(DependingLibrary))
rc_recur getDependenciesHelper(DependingLibrary,
Dependencies,
CurrentLevel,
Level);
}
}
void PECOFFImporter::getDependencies(PELDDTree Dependencies, unsigned Level) {
if (Level > 0)
getDependenciesHelper(TheBinary.getFileName(), Dependencies, 1, Level);
}
void PECOFFImporter::findMissingTypes(const ImporterOptions &Opts) {
if (Opts.DebugInfo != DebugInfoLevel::Yes)
return;
// TODO: disclose a way to modify this value with
// the `ImporterOptions::DebugInfo`, if the need ever arises.
unsigned MaximumRecursionDepth = 1;
PELDDTree Dependencies;
getDependencies(Dependencies, MaximumRecursionDepth);
ModelMap ModelsOfLibraries;
TypeCopierMap TypeCopiers;
for (auto &Library : Dependencies) {
revng_log(Log,
"Importing Models for dependencies of " << Library.first << ":");
for (auto &DependencyLibrary : Library.second) {
if (ModelsOfLibraries.contains(DependencyLibrary))
continue;
revng_log(Log, " Importing Model for: " << DependencyLibrary);
auto BinaryOrErr = llvm::object::createBinary(DependencyLibrary);
if (not BinaryOrErr) {
revng_log(Log,
"Can't create object for "
<< DependencyLibrary << " due to "
<< toString(BinaryOrErr.takeError()));
llvm::consumeError(BinaryOrErr.takeError());
continue;
}
auto &File = *cast<llvm::object::ObjectFile>(BinaryOrErr->getBinary());
auto *TheBinary = dyn_cast<COFFObjectFile>(&File);
if (!TheBinary)
continue;
ModelsOfLibraries[DependencyLibrary] = TupleTree<model::Binary>();
auto &DepModel = ModelsOfLibraries[DependencyLibrary];
DepModel->Architecture() = Model->Architecture();
ImporterOptions AdjustedOptions{
.BaseAddress = Opts.BaseAddress,
.DebugInfo = DebugInfoLevel::IgnoreLibraries,
.EnableRemoteDebugInfo = Opts.EnableRemoteDebugInfo,
.AdditionalDebugInfoPaths = Opts.AdditionalDebugInfoPaths
};
if (auto E = importPECOFF(DepModel, *TheBinary, AdjustedOptions)) {
revng_log(Log,
"Can't import model for " << DependencyLibrary << " due to "
<< E);
llvm::consumeError(std::move(E));
ModelsOfLibraries.erase(DependencyLibrary);
continue;
}
}
}
auto GetOrMakeACopier = [&](llvm::StringRef Name) -> TypeCopier & {
if (auto It = TypeCopiers.find(Name.str()); It != TypeCopiers.end())
return *It->second;
auto Iterator = ModelsOfLibraries.find(Name.str());
revng_assert(Iterator != ModelsOfLibraries.end());
auto NewCopier = std::make_unique<TypeCopier>(Iterator->second, Model);
auto &&[Result, Success] = TypeCopiers.emplace(Name.str(),
std::move(NewCopier));
revng_assert(Success);
return *Result->second;
};
for (auto &Fn : Model->ImportedDynamicFunctions()) {
if (not Fn.Prototype().isEmpty() or Fn.Name().size() == 0)
continue;
revng_log(Log, "Searching for prototype for " << Fn.Name());
if (auto Found = findPrototype(Fn.Name(), ModelsOfLibraries)) {
revng_assert(!Found->ModuleName.empty());
revng_assert(Found->Prototype.verify(true));
model::UpcastableTypeDefinition SerializablePrototype = Found->Prototype;
revng_log(Log,
"Found type for " << Fn.Name() << " in " << Found->ModuleName
<< ": " << toString(SerializablePrototype));
TypeCopier &TheTypeCopier = GetOrMakeACopier(Found->ModuleName);
Fn.Prototype() = TheTypeCopier.copyTypeInto(Found->Prototype);
// Copy all the Attributes except for `Inline`.
for (auto &Attribute : Found->Attributes)
if (Attribute != model::FunctionAttribute::Inline)
Fn.Attributes().insert(Attribute);
}
}
// Finalize the copies
for (auto &[_, TC] : TypeCopiers)
TC->finalize();
// Purge cached references and update the reference to Root.
Model.evictCachedReferences();
Model.initializeReferences();
model::flattenPrimitiveTypedefs(Model);
deduplicateEquivalentTypes(Model);
model::deduplicateCollidingNames(Model);
}
Error PECOFFImporter::import(const ImporterOptions &Options) {
if (Error E = parseSectionsHeaders())
return E;
// Parse the symbol table.
parseSymbols();
// Parse dynamic symbol table.
parseImportedSymbols();
// Parse delay dynamic symbol table (similar to ELF's symbols used for lazy
// linking).
parseDelayImportedSymbols();
// Set default ABI
if (Model->DefaultABI() == model::ABI::Invalid) {
revng_assert(Model->Architecture() != model::Architecture::Invalid);
if (auto ABI = model::ABI::getDefaultForPECOFF(Model->Architecture())) {
Model->DefaultABI() = ABI.value();
} else {
auto ArchName = model::Architecture::getName(Model->Architecture()).str();
return revng::createError("Unsupported architecture for PECOFF: "
+ ArchName);
}
}
// Create a default prototype.
Model->DefaultPrototype() = abi::registerDefaultFunctionPrototype(*Model);
if (Options.DebugInfo != DebugInfoLevel::No) {
PDBImporter PDBI(Model, ImageBase);
PDBI.import(TheBinary, Options);
// Now we try to find missing types in the dependencies.
findMissingTypes(Options);
}
model::flattenPrimitiveTypedefs(Model);
model::deduplicateCollidingNames(Model);
return Error::success();
}
Error importPECOFF(TupleTree<model::Binary> &Model,
const object::COFFObjectFile &TheBinary,
const ImporterOptions &Options) {
PECOFFImporter Importer(Model, TheBinary, Options.BaseAddress);
return Importer.import(Options);
}