arch/arm32_code_inference
ARM32 architecture-specific rules for code inference.
- arm_ver_order(Name:symbol, VersionID:unsigned)
Assign ARM version names to their generation number
e.g., “v7E_M” -> 7
Used by:
+disconnected7
- init_ldr_add_pc(EA_ldr:address, Size:unsigned, Reg1:register, LitPoolAddr:address, EA_add_pc:address, Reg2:register)
ldr Reg1, .L0 add Reg2, Reg1, pc
Uses
straight_line_def_used, which is a weaker version ofdef_usedthat can be used before code inference.Uses:
arch.load_operation,arch.reg_reg_arithmetic_operation,instructionRecursive:
block_points,flags_and_jump_pair,block_next,jump_table_element_access,jump_table_candidate_refined,relative_jump_table_entry_candidate,value_reg,reg_def_use.live_var_used,arm_jump_table_cmp_limit,arm_jump_table_block_start,unresolved_block,last_value_reg_limit,__agg_single2,reg_def_use.ref_in_block,arm_jump_table_candidate_start,relocation_adjustment_total,data_in_code_propagate,data_in_code,contains_implausible_instr_seq,code_in_block,stack_def_use.live_var_def,reg_def_use.live_var_def,wis_prior,simple_data_access_pattern,no_value_reg_limit,arm_jump_table_candidate,reg_def_use.used,arm_jump_table_skip_first_entry,reg_def_use.live_var_at_block_end,invalid,litpool_symbolic_operand,straight_line_def_used,jump_table_target,after_end,code_in_block_candidate_refined,stack_base_reg_move,initialized_data_segment,indefinite_litpool_ref,may_fallthrough,block_implies_block,reg_def_use.return_block_end,wis_has_prior,data_block_candidate,wis_memo,litpool_boundaries,inter_procedural_edge,candidate_block_is_not_padding,invalid_jump_table_candidate,stack_def_use.live_var_at_block_end,indexed_pc_relative_load_relative,unresolved_interval_order,compare_and_jump_register,tls_relative_operand_mips,reg_def_use.return_val_used,next_end,adjusts_stack_in_block,got_relative_operand,segment_target_range,tls_get_addr,stack_def_use.last_def_in_block,basic_target,symbolic_expr_from_relocation,unlikely_have_symbolic_immediate,next_start,block_overlap,compare_and_jump_indirect,def_used_for_address,overlapping_instruction,wis_schedule,__agg_single3,compare_and_jump_indirect_op_valid,cinf_ldr_add_pc,block_heuristic,stack_def_use.live_var_at_prior_used,symbol_minus_symbol_litpool_access_pattern,arm_jump_table_data_block,block_total_points,split_load_point,no_return_call_propagated,__agg_subclause6,discarded_split_load,init_symbol_minus_symbol_candidate_arm,__agg_subclause4,function_inference.function_entry_initial,next_type,stack_def_use.block_last_def,__agg_single6,reg_has_got,data_block_limit,base_relative_operation,init_ldr_add_pc,block_limit,unresolved_interval,stack_def_use.ref_in_block,reg_used_for,must_fallthrough,value_reg_edge,self_contained_segment,hi_load_prop,block,reg_def_use.def_used,relative_address,likely_fallthrough,composite_data_access,stack_def_use.defined_in_block,known_block,branch_to_calculated_pc_rel_addr,__agg_subclause7,no_return_call,split_load_operand,block_points_proportional,reg_has_base_image,relocation_adjustment,overlap_with_litpool,plt_block,instruction_memory_access_size,const_value_reg_used,__agg_single10,plt_entry,split_load_conflict,common_tail,correlated_live_reg,first_block_in_byte_interval,stack_def_use.def_used,reg_def_use.block_last_def,arm_jump_table_data_block_limit,possible_target_from,reg_reg_arithmetic_operation_defs,wis_schedule_iter,possible_target,stack_def_use.used_in_block,jump_table_prelude,padding_block_candidate,reg_def_use.ambiguous_last_def_in_block,block_candidate_boundaries,no_return_block,candidate_block_is_padding,indexed_pc_relative_load,block_boundaries,jump_table_candidate,discarded_block,reg_def_use.used_in_block,reg_def_use.flow_def,data_segment,transition_block_limit,inferred_main_dispatch,relative_address_start,padding_block_limit,data_access,local_dynamic_tls_candidate,negative_block_heuristic,gp_relative_operand,jump_table_signed,split_load_total_points,cmp_defines,start_function,no_return_call_refined,next_block_in_byte_interval,reg_def_use.live_var_at_prior_used,resolved_reaches,unresolved_block_overlap,arch.extend_load,block_instruction_next,inferred_main_in_reg,contains_plausible_instr_seq,value_reg_limit,tls_desc_call,base_relative_jump,straight_line_last_def,impossible_block,arm_jump_table_block_instruction,split_load_candidate,adrp_used,call_tls_get_addr_mips,cmp_reg_to_reg,split_load_for_symbolization,__agg_subclause2,incomplete_block,reg_def_use.defined_in_block,base_relative_operand,arch.reg_relative_load,stack_def_use.live_var_used_in_block,nop_in_padding_candidate,code_in_block_candidate,is_padding,value_reg_unsupported,reg_def_use.ambiguous_block_last_def,arch.simple_data_load,block_last_instruction,reg_def_use.last_def_in_block,call_tls_get_addr,litpool_ref,litpool_confidence,split_load,jump_table_start,block_candidate_dependency_edge,jump_table_max,compare_and_jump_immediate,stack_def_use.live_var_used,__agg_subclause3
- init_symbol_minus_symbol_candidate_arm(EA:address, Size:unsigned, Symbol1:address, Symbol2:address, Scale:unsigned, Offset:number)
A weaker version of
cinf_symbol_minus_symbol_candidate_armthat can be used before code inference. see the comment ofcinf_symbol_minus_symbol_candidate_arm.Uses:
relocation,symbolRecursive:
block_points,flags_and_jump_pair,block_next,jump_table_element_access,jump_table_candidate_refined,relative_jump_table_entry_candidate,value_reg,reg_def_use.live_var_used,arm_jump_table_cmp_limit,arm_jump_table_block_start,unresolved_block,last_value_reg_limit,__agg_single2,reg_def_use.ref_in_block,arm_jump_table_candidate_start,relocation_adjustment_total,data_in_code_propagate,data_in_code,contains_implausible_instr_seq,code_in_block,stack_def_use.live_var_def,reg_def_use.live_var_def,wis_prior,simple_data_access_pattern,no_value_reg_limit,arm_jump_table_candidate,reg_def_use.used,arm_jump_table_skip_first_entry,reg_def_use.live_var_at_block_end,invalid,litpool_symbolic_operand,straight_line_def_used,jump_table_target,after_end,code_in_block_candidate_refined,stack_base_reg_move,initialized_data_segment,indefinite_litpool_ref,may_fallthrough,block_implies_block,reg_def_use.return_block_end,wis_has_prior,data_block_candidate,wis_memo,litpool_boundaries,inter_procedural_edge,candidate_block_is_not_padding,invalid_jump_table_candidate,stack_def_use.live_var_at_block_end,indexed_pc_relative_load_relative,unresolved_interval_order,compare_and_jump_register,tls_relative_operand_mips,reg_def_use.return_val_used,next_end,adjusts_stack_in_block,got_relative_operand,segment_target_range,tls_get_addr,stack_def_use.last_def_in_block,basic_target,symbolic_expr_from_relocation,unlikely_have_symbolic_immediate,next_start,block_overlap,compare_and_jump_indirect,def_used_for_address,overlapping_instruction,wis_schedule,__agg_single3,compare_and_jump_indirect_op_valid,cinf_ldr_add_pc,block_heuristic,stack_def_use.live_var_at_prior_used,symbol_minus_symbol_litpool_access_pattern,arm_jump_table_data_block,block_total_points,split_load_point,no_return_call_propagated,__agg_subclause6,discarded_split_load,init_symbol_minus_symbol_candidate_arm,__agg_subclause4,function_inference.function_entry_initial,next_type,stack_def_use.block_last_def,__agg_single6,reg_has_got,data_block_limit,base_relative_operation,init_ldr_add_pc,block_limit,unresolved_interval,stack_def_use.ref_in_block,reg_used_for,must_fallthrough,value_reg_edge,self_contained_segment,hi_load_prop,block,reg_def_use.def_used,relative_address,likely_fallthrough,composite_data_access,stack_def_use.defined_in_block,known_block,branch_to_calculated_pc_rel_addr,__agg_subclause7,no_return_call,split_load_operand,block_points_proportional,reg_has_base_image,relocation_adjustment,overlap_with_litpool,plt_block,instruction_memory_access_size,const_value_reg_used,__agg_single10,plt_entry,split_load_conflict,common_tail,correlated_live_reg,first_block_in_byte_interval,stack_def_use.def_used,reg_def_use.block_last_def,arm_jump_table_data_block_limit,possible_target_from,reg_reg_arithmetic_operation_defs,wis_schedule_iter,possible_target,stack_def_use.used_in_block,jump_table_prelude,padding_block_candidate,reg_def_use.ambiguous_last_def_in_block,block_candidate_boundaries,no_return_block,candidate_block_is_padding,indexed_pc_relative_load,block_boundaries,jump_table_candidate,discarded_block,reg_def_use.used_in_block,reg_def_use.flow_def,data_segment,transition_block_limit,inferred_main_dispatch,relative_address_start,padding_block_limit,data_access,local_dynamic_tls_candidate,negative_block_heuristic,gp_relative_operand,jump_table_signed,split_load_total_points,cmp_defines,start_function,no_return_call_refined,next_block_in_byte_interval,reg_def_use.live_var_at_prior_used,resolved_reaches,unresolved_block_overlap,arch.extend_load,block_instruction_next,inferred_main_in_reg,contains_plausible_instr_seq,value_reg_limit,tls_desc_call,base_relative_jump,straight_line_last_def,impossible_block,arm_jump_table_block_instruction,split_load_candidate,adrp_used,call_tls_get_addr_mips,cmp_reg_to_reg,split_load_for_symbolization,__agg_subclause2,incomplete_block,reg_def_use.defined_in_block,base_relative_operand,arch.reg_relative_load,stack_def_use.live_var_used_in_block,nop_in_padding_candidate,code_in_block_candidate,is_padding,value_reg_unsupported,reg_def_use.ambiguous_block_last_def,arch.simple_data_load,block_last_instruction,reg_def_use.last_def_in_block,call_tls_get_addr,litpool_ref,litpool_confidence,split_load,jump_table_start,block_candidate_dependency_edge,jump_table_max,compare_and_jump_immediate,stack_def_use.live_var_used,__agg_subclause3
- data_block_limit(Limit:address)
Addresses where the propagation of indefinite data blocks should be limited.
Similar to (and a superset of) block_limit for code blocks.
Uses:
arch.instruction_atRecursive:
block_points,flags_and_jump_pair,block_next,jump_table_element_access,jump_table_candidate_refined,relative_jump_table_entry_candidate,value_reg,reg_def_use.live_var_used,arm_jump_table_cmp_limit,arm_jump_table_block_start,unresolved_block,last_value_reg_limit,__agg_single2,reg_def_use.ref_in_block,arm_jump_table_candidate_start,relocation_adjustment_total,data_in_code_propagate,data_in_code,contains_implausible_instr_seq,code_in_block,stack_def_use.live_var_def,reg_def_use.live_var_def,wis_prior,simple_data_access_pattern,no_value_reg_limit,arm_jump_table_candidate,reg_def_use.used,arm_jump_table_skip_first_entry,reg_def_use.live_var_at_block_end,invalid,litpool_symbolic_operand,straight_line_def_used,jump_table_target,after_end,code_in_block_candidate_refined,stack_base_reg_move,initialized_data_segment,indefinite_litpool_ref,may_fallthrough,block_implies_block,reg_def_use.return_block_end,wis_has_prior,data_block_candidate,wis_memo,litpool_boundaries,inter_procedural_edge,candidate_block_is_not_padding,invalid_jump_table_candidate,stack_def_use.live_var_at_block_end,indexed_pc_relative_load_relative,unresolved_interval_order,compare_and_jump_register,tls_relative_operand_mips,reg_def_use.return_val_used,next_end,adjusts_stack_in_block,got_relative_operand,segment_target_range,tls_get_addr,stack_def_use.last_def_in_block,basic_target,symbolic_expr_from_relocation,unlikely_have_symbolic_immediate,next_start,block_overlap,compare_and_jump_indirect,def_used_for_address,overlapping_instruction,wis_schedule,__agg_single3,compare_and_jump_indirect_op_valid,cinf_ldr_add_pc,block_heuristic,stack_def_use.live_var_at_prior_used,symbol_minus_symbol_litpool_access_pattern,arm_jump_table_data_block,block_total_points,split_load_point,no_return_call_propagated,__agg_subclause6,discarded_split_load,init_symbol_minus_symbol_candidate_arm,__agg_subclause4,function_inference.function_entry_initial,next_type,stack_def_use.block_last_def,__agg_single6,reg_has_got,data_block_limit,base_relative_operation,init_ldr_add_pc,block_limit,unresolved_interval,stack_def_use.ref_in_block,reg_used_for,must_fallthrough,value_reg_edge,self_contained_segment,hi_load_prop,block,reg_def_use.def_used,relative_address,likely_fallthrough,composite_data_access,stack_def_use.defined_in_block,known_block,branch_to_calculated_pc_rel_addr,__agg_subclause7,no_return_call,split_load_operand,block_points_proportional,reg_has_base_image,relocation_adjustment,overlap_with_litpool,plt_block,instruction_memory_access_size,const_value_reg_used,__agg_single10,plt_entry,split_load_conflict,common_tail,correlated_live_reg,first_block_in_byte_interval,stack_def_use.def_used,reg_def_use.block_last_def,arm_jump_table_data_block_limit,possible_target_from,reg_reg_arithmetic_operation_defs,wis_schedule_iter,possible_target,stack_def_use.used_in_block,jump_table_prelude,padding_block_candidate,reg_def_use.ambiguous_last_def_in_block,block_candidate_boundaries,no_return_block,candidate_block_is_padding,indexed_pc_relative_load,block_boundaries,jump_table_candidate,discarded_block,reg_def_use.used_in_block,reg_def_use.flow_def,data_segment,transition_block_limit,inferred_main_dispatch,relative_address_start,padding_block_limit,data_access,local_dynamic_tls_candidate,negative_block_heuristic,gp_relative_operand,jump_table_signed,split_load_total_points,cmp_defines,start_function,no_return_call_refined,next_block_in_byte_interval,reg_def_use.live_var_at_prior_used,resolved_reaches,unresolved_block_overlap,arch.extend_load,block_instruction_next,inferred_main_in_reg,contains_plausible_instr_seq,value_reg_limit,tls_desc_call,base_relative_jump,straight_line_last_def,impossible_block,arm_jump_table_block_instruction,split_load_candidate,adrp_used,call_tls_get_addr_mips,cmp_reg_to_reg,split_load_for_symbolization,__agg_subclause2,incomplete_block,reg_def_use.defined_in_block,base_relative_operand,arch.reg_relative_load,stack_def_use.live_var_used_in_block,nop_in_padding_candidate,code_in_block_candidate,is_padding,value_reg_unsupported,reg_def_use.ambiguous_block_last_def,arch.simple_data_load,block_last_instruction,reg_def_use.last_def_in_block,call_tls_get_addr,litpool_ref,litpool_confidence,split_load,jump_table_start,block_candidate_dependency_edge,jump_table_max,compare_and_jump_immediate,stack_def_use.live_var_used,__agg_subclause3
- indefinite_litpool_ref(Start:address, Size:unsigned)
References to potential litpools with indeterminate sizes.
Recursive:
block_points,flags_and_jump_pair,block_next,jump_table_element_access,jump_table_candidate_refined,relative_jump_table_entry_candidate,value_reg,reg_def_use.live_var_used,arm_jump_table_cmp_limit,arm_jump_table_block_start,unresolved_block,last_value_reg_limit,__agg_single2,reg_def_use.ref_in_block,arm_jump_table_candidate_start,relocation_adjustment_total,data_in_code_propagate,data_in_code,contains_implausible_instr_seq,code_in_block,stack_def_use.live_var_def,reg_def_use.live_var_def,wis_prior,simple_data_access_pattern,no_value_reg_limit,arm_jump_table_candidate,reg_def_use.used,arm_jump_table_skip_first_entry,reg_def_use.live_var_at_block_end,invalid,litpool_symbolic_operand,straight_line_def_used,jump_table_target,after_end,code_in_block_candidate_refined,stack_base_reg_move,initialized_data_segment,indefinite_litpool_ref,may_fallthrough,block_implies_block,reg_def_use.return_block_end,wis_has_prior,data_block_candidate,wis_memo,litpool_boundaries,inter_procedural_edge,candidate_block_is_not_padding,invalid_jump_table_candidate,stack_def_use.live_var_at_block_end,indexed_pc_relative_load_relative,unresolved_interval_order,compare_and_jump_register,tls_relative_operand_mips,reg_def_use.return_val_used,next_end,adjusts_stack_in_block,got_relative_operand,segment_target_range,tls_get_addr,stack_def_use.last_def_in_block,basic_target,symbolic_expr_from_relocation,unlikely_have_symbolic_immediate,next_start,block_overlap,compare_and_jump_indirect,def_used_for_address,overlapping_instruction,wis_schedule,__agg_single3,compare_and_jump_indirect_op_valid,cinf_ldr_add_pc,block_heuristic,stack_def_use.live_var_at_prior_used,symbol_minus_symbol_litpool_access_pattern,arm_jump_table_data_block,block_total_points,split_load_point,no_return_call_propagated,__agg_subclause6,discarded_split_load,init_symbol_minus_symbol_candidate_arm,__agg_subclause4,function_inference.function_entry_initial,next_type,stack_def_use.block_last_def,__agg_single6,reg_has_got,data_block_limit,base_relative_operation,init_ldr_add_pc,block_limit,unresolved_interval,stack_def_use.ref_in_block,reg_used_for,must_fallthrough,value_reg_edge,self_contained_segment,hi_load_prop,block,reg_def_use.def_used,relative_address,likely_fallthrough,composite_data_access,stack_def_use.defined_in_block,known_block,branch_to_calculated_pc_rel_addr,__agg_subclause7,no_return_call,split_load_operand,block_points_proportional,reg_has_base_image,relocation_adjustment,overlap_with_litpool,plt_block,instruction_memory_access_size,const_value_reg_used,__agg_single10,plt_entry,split_load_conflict,common_tail,correlated_live_reg,first_block_in_byte_interval,stack_def_use.def_used,reg_def_use.block_last_def,arm_jump_table_data_block_limit,possible_target_from,reg_reg_arithmetic_operation_defs,wis_schedule_iter,possible_target,stack_def_use.used_in_block,jump_table_prelude,padding_block_candidate,reg_def_use.ambiguous_last_def_in_block,block_candidate_boundaries,no_return_block,candidate_block_is_padding,indexed_pc_relative_load,block_boundaries,jump_table_candidate,discarded_block,reg_def_use.used_in_block,reg_def_use.flow_def,data_segment,transition_block_limit,inferred_main_dispatch,relative_address_start,padding_block_limit,data_access,local_dynamic_tls_candidate,negative_block_heuristic,gp_relative_operand,jump_table_signed,split_load_total_points,cmp_defines,start_function,no_return_call_refined,next_block_in_byte_interval,reg_def_use.live_var_at_prior_used,resolved_reaches,unresolved_block_overlap,arch.extend_load,block_instruction_next,inferred_main_in_reg,contains_plausible_instr_seq,value_reg_limit,tls_desc_call,base_relative_jump,straight_line_last_def,impossible_block,arm_jump_table_block_instruction,split_load_candidate,adrp_used,call_tls_get_addr_mips,cmp_reg_to_reg,split_load_for_symbolization,__agg_subclause2,incomplete_block,reg_def_use.defined_in_block,base_relative_operand,arch.reg_relative_load,stack_def_use.live_var_used_in_block,nop_in_padding_candidate,code_in_block_candidate,is_padding,value_reg_unsupported,reg_def_use.ambiguous_block_last_def,arch.simple_data_load,block_last_instruction,reg_def_use.last_def_in_block,call_tls_get_addr,litpool_ref,litpool_confidence,split_load,jump_table_start,block_candidate_dependency_edge,jump_table_max,compare_and_jump_immediate,stack_def_use.live_var_used,__agg_subclause3
- litpool_boundaries(BegAddr:address, EndAddr:address)
Used by:
function_inference.function_entryRecursive:
block_points,flags_and_jump_pair,block_next,jump_table_element_access,jump_table_candidate_refined,relative_jump_table_entry_candidate,value_reg,reg_def_use.live_var_used,arm_jump_table_cmp_limit,arm_jump_table_block_start,unresolved_block,last_value_reg_limit,__agg_single2,reg_def_use.ref_in_block,arm_jump_table_candidate_start,relocation_adjustment_total,data_in_code_propagate,data_in_code,contains_implausible_instr_seq,code_in_block,stack_def_use.live_var_def,reg_def_use.live_var_def,wis_prior,simple_data_access_pattern,no_value_reg_limit,arm_jump_table_candidate,reg_def_use.used,arm_jump_table_skip_first_entry,reg_def_use.live_var_at_block_end,invalid,litpool_symbolic_operand,straight_line_def_used,jump_table_target,after_end,code_in_block_candidate_refined,stack_base_reg_move,initialized_data_segment,indefinite_litpool_ref,may_fallthrough,block_implies_block,reg_def_use.return_block_end,wis_has_prior,data_block_candidate,wis_memo,litpool_boundaries,inter_procedural_edge,candidate_block_is_not_padding,invalid_jump_table_candidate,stack_def_use.live_var_at_block_end,indexed_pc_relative_load_relative,unresolved_interval_order,compare_and_jump_register,tls_relative_operand_mips,reg_def_use.return_val_used,next_end,adjusts_stack_in_block,got_relative_operand,segment_target_range,tls_get_addr,stack_def_use.last_def_in_block,basic_target,symbolic_expr_from_relocation,unlikely_have_symbolic_immediate,next_start,block_overlap,compare_and_jump_indirect,def_used_for_address,overlapping_instruction,wis_schedule,__agg_single3,compare_and_jump_indirect_op_valid,cinf_ldr_add_pc,block_heuristic,stack_def_use.live_var_at_prior_used,symbol_minus_symbol_litpool_access_pattern,arm_jump_table_data_block,block_total_points,split_load_point,no_return_call_propagated,__agg_subclause6,discarded_split_load,init_symbol_minus_symbol_candidate_arm,__agg_subclause4,function_inference.function_entry_initial,next_type,stack_def_use.block_last_def,__agg_single6,reg_has_got,data_block_limit,base_relative_operation,init_ldr_add_pc,block_limit,unresolved_interval,stack_def_use.ref_in_block,reg_used_for,must_fallthrough,value_reg_edge,self_contained_segment,hi_load_prop,block,reg_def_use.def_used,relative_address,likely_fallthrough,composite_data_access,stack_def_use.defined_in_block,known_block,branch_to_calculated_pc_rel_addr,__agg_subclause7,no_return_call,split_load_operand,block_points_proportional,reg_has_base_image,relocation_adjustment,overlap_with_litpool,plt_block,instruction_memory_access_size,const_value_reg_used,__agg_single10,plt_entry,split_load_conflict,common_tail,correlated_live_reg,first_block_in_byte_interval,stack_def_use.def_used,reg_def_use.block_last_def,arm_jump_table_data_block_limit,possible_target_from,reg_reg_arithmetic_operation_defs,wis_schedule_iter,possible_target,stack_def_use.used_in_block,jump_table_prelude,padding_block_candidate,reg_def_use.ambiguous_last_def_in_block,block_candidate_boundaries,no_return_block,candidate_block_is_padding,indexed_pc_relative_load,block_boundaries,jump_table_candidate,discarded_block,reg_def_use.used_in_block,reg_def_use.flow_def,data_segment,transition_block_limit,inferred_main_dispatch,relative_address_start,padding_block_limit,data_access,local_dynamic_tls_candidate,negative_block_heuristic,gp_relative_operand,jump_table_signed,split_load_total_points,cmp_defines,start_function,no_return_call_refined,next_block_in_byte_interval,reg_def_use.live_var_at_prior_used,resolved_reaches,unresolved_block_overlap,arch.extend_load,block_instruction_next,inferred_main_in_reg,contains_plausible_instr_seq,value_reg_limit,tls_desc_call,base_relative_jump,straight_line_last_def,impossible_block,arm_jump_table_block_instruction,split_load_candidate,adrp_used,call_tls_get_addr_mips,cmp_reg_to_reg,split_load_for_symbolization,__agg_subclause2,incomplete_block,reg_def_use.defined_in_block,base_relative_operand,arch.reg_relative_load,stack_def_use.live_var_used_in_block,nop_in_padding_candidate,code_in_block_candidate,is_padding,value_reg_unsupported,reg_def_use.ambiguous_block_last_def,arch.simple_data_load,block_last_instruction,reg_def_use.last_def_in_block,call_tls_get_addr,litpool_ref,litpool_confidence,split_load,jump_table_start,block_candidate_dependency_edge,jump_table_max,compare_and_jump_immediate,stack_def_use.live_var_used,__agg_subclause3
- overlap_with_litpool(Block:address)
Check if the given block overlaps with a possible literal pool.
Recursive:
block_points,flags_and_jump_pair,block_next,jump_table_element_access,jump_table_candidate_refined,relative_jump_table_entry_candidate,value_reg,reg_def_use.live_var_used,arm_jump_table_cmp_limit,arm_jump_table_block_start,unresolved_block,last_value_reg_limit,__agg_single2,reg_def_use.ref_in_block,arm_jump_table_candidate_start,relocation_adjustment_total,data_in_code_propagate,data_in_code,contains_implausible_instr_seq,code_in_block,stack_def_use.live_var_def,reg_def_use.live_var_def,wis_prior,simple_data_access_pattern,no_value_reg_limit,arm_jump_table_candidate,reg_def_use.used,arm_jump_table_skip_first_entry,reg_def_use.live_var_at_block_end,invalid,litpool_symbolic_operand,straight_line_def_used,jump_table_target,after_end,code_in_block_candidate_refined,stack_base_reg_move,initialized_data_segment,indefinite_litpool_ref,may_fallthrough,block_implies_block,reg_def_use.return_block_end,wis_has_prior,data_block_candidate,wis_memo,litpool_boundaries,inter_procedural_edge,candidate_block_is_not_padding,invalid_jump_table_candidate,stack_def_use.live_var_at_block_end,indexed_pc_relative_load_relative,unresolved_interval_order,compare_and_jump_register,tls_relative_operand_mips,reg_def_use.return_val_used,next_end,adjusts_stack_in_block,got_relative_operand,segment_target_range,tls_get_addr,stack_def_use.last_def_in_block,basic_target,symbolic_expr_from_relocation,unlikely_have_symbolic_immediate,next_start,block_overlap,compare_and_jump_indirect,def_used_for_address,overlapping_instruction,wis_schedule,__agg_single3,compare_and_jump_indirect_op_valid,cinf_ldr_add_pc,block_heuristic,stack_def_use.live_var_at_prior_used,symbol_minus_symbol_litpool_access_pattern,arm_jump_table_data_block,block_total_points,split_load_point,no_return_call_propagated,__agg_subclause6,discarded_split_load,init_symbol_minus_symbol_candidate_arm,__agg_subclause4,function_inference.function_entry_initial,next_type,stack_def_use.block_last_def,__agg_single6,reg_has_got,data_block_limit,base_relative_operation,init_ldr_add_pc,block_limit,unresolved_interval,stack_def_use.ref_in_block,reg_used_for,must_fallthrough,value_reg_edge,self_contained_segment,hi_load_prop,block,reg_def_use.def_used,relative_address,likely_fallthrough,composite_data_access,stack_def_use.defined_in_block,known_block,branch_to_calculated_pc_rel_addr,__agg_subclause7,no_return_call,split_load_operand,block_points_proportional,reg_has_base_image,relocation_adjustment,overlap_with_litpool,plt_block,instruction_memory_access_size,const_value_reg_used,__agg_single10,plt_entry,split_load_conflict,common_tail,correlated_live_reg,first_block_in_byte_interval,stack_def_use.def_used,reg_def_use.block_last_def,arm_jump_table_data_block_limit,possible_target_from,reg_reg_arithmetic_operation_defs,wis_schedule_iter,possible_target,stack_def_use.used_in_block,jump_table_prelude,padding_block_candidate,reg_def_use.ambiguous_last_def_in_block,block_candidate_boundaries,no_return_block,candidate_block_is_padding,indexed_pc_relative_load,block_boundaries,jump_table_candidate,discarded_block,reg_def_use.used_in_block,reg_def_use.flow_def,data_segment,transition_block_limit,inferred_main_dispatch,relative_address_start,padding_block_limit,data_access,local_dynamic_tls_candidate,negative_block_heuristic,gp_relative_operand,jump_table_signed,split_load_total_points,cmp_defines,start_function,no_return_call_refined,next_block_in_byte_interval,reg_def_use.live_var_at_prior_used,resolved_reaches,unresolved_block_overlap,arch.extend_load,block_instruction_next,inferred_main_in_reg,contains_plausible_instr_seq,value_reg_limit,tls_desc_call,base_relative_jump,straight_line_last_def,impossible_block,arm_jump_table_block_instruction,split_load_candidate,adrp_used,call_tls_get_addr_mips,cmp_reg_to_reg,split_load_for_symbolization,__agg_subclause2,incomplete_block,reg_def_use.defined_in_block,base_relative_operand,arch.reg_relative_load,stack_def_use.live_var_used_in_block,nop_in_padding_candidate,code_in_block_candidate,is_padding,value_reg_unsupported,reg_def_use.ambiguous_block_last_def,arch.simple_data_load,block_last_instruction,reg_def_use.last_def_in_block,call_tls_get_addr,litpool_ref,litpool_confidence,split_load,jump_table_start,block_candidate_dependency_edge,jump_table_max,compare_and_jump_immediate,stack_def_use.live_var_used,__agg_subclause3
- litpool_confidence(EARef:address, LitPoolAddr:address, Reason:symbol)
Confidence level for each literal pool
Uses:
arch.call,arch.dangling_thumb_instr,arch.float_reg,arch.integer_reg_param,arch.memory_access,arch.pc_relative_addr,instruction,instruction_get_dest_op,op_regdirect_contains_regRecursive:
block_points,flags_and_jump_pair,block_next,jump_table_element_access,jump_table_candidate_refined,relative_jump_table_entry_candidate,value_reg,reg_def_use.live_var_used,arm_jump_table_cmp_limit,arm_jump_table_block_start,unresolved_block,last_value_reg_limit,__agg_single2,reg_def_use.ref_in_block,arm_jump_table_candidate_start,relocation_adjustment_total,data_in_code_propagate,data_in_code,contains_implausible_instr_seq,code_in_block,stack_def_use.live_var_def,reg_def_use.live_var_def,wis_prior,simple_data_access_pattern,no_value_reg_limit,arm_jump_table_candidate,reg_def_use.used,arm_jump_table_skip_first_entry,reg_def_use.live_var_at_block_end,invalid,litpool_symbolic_operand,straight_line_def_used,jump_table_target,after_end,code_in_block_candidate_refined,stack_base_reg_move,initialized_data_segment,indefinite_litpool_ref,may_fallthrough,block_implies_block,reg_def_use.return_block_end,wis_has_prior,data_block_candidate,wis_memo,litpool_boundaries,inter_procedural_edge,candidate_block_is_not_padding,invalid_jump_table_candidate,stack_def_use.live_var_at_block_end,indexed_pc_relative_load_relative,unresolved_interval_order,compare_and_jump_register,tls_relative_operand_mips,reg_def_use.return_val_used,next_end,adjusts_stack_in_block,got_relative_operand,segment_target_range,tls_get_addr,stack_def_use.last_def_in_block,basic_target,symbolic_expr_from_relocation,unlikely_have_symbolic_immediate,next_start,block_overlap,compare_and_jump_indirect,def_used_for_address,overlapping_instruction,wis_schedule,__agg_single3,compare_and_jump_indirect_op_valid,cinf_ldr_add_pc,block_heuristic,stack_def_use.live_var_at_prior_used,symbol_minus_symbol_litpool_access_pattern,arm_jump_table_data_block,block_total_points,split_load_point,no_return_call_propagated,__agg_subclause6,discarded_split_load,init_symbol_minus_symbol_candidate_arm,__agg_subclause4,function_inference.function_entry_initial,next_type,stack_def_use.block_last_def,__agg_single6,reg_has_got,data_block_limit,base_relative_operation,init_ldr_add_pc,block_limit,unresolved_interval,stack_def_use.ref_in_block,reg_used_for,must_fallthrough,value_reg_edge,self_contained_segment,hi_load_prop,block,reg_def_use.def_used,relative_address,likely_fallthrough,composite_data_access,stack_def_use.defined_in_block,known_block,branch_to_calculated_pc_rel_addr,__agg_subclause7,no_return_call,split_load_operand,block_points_proportional,reg_has_base_image,relocation_adjustment,overlap_with_litpool,plt_block,instruction_memory_access_size,const_value_reg_used,__agg_single10,plt_entry,split_load_conflict,common_tail,correlated_live_reg,first_block_in_byte_interval,stack_def_use.def_used,reg_def_use.block_last_def,arm_jump_table_data_block_limit,possible_target_from,reg_reg_arithmetic_operation_defs,wis_schedule_iter,possible_target,stack_def_use.used_in_block,jump_table_prelude,padding_block_candidate,reg_def_use.ambiguous_last_def_in_block,block_candidate_boundaries,no_return_block,candidate_block_is_padding,indexed_pc_relative_load,block_boundaries,jump_table_candidate,discarded_block,reg_def_use.used_in_block,reg_def_use.flow_def,data_segment,transition_block_limit,inferred_main_dispatch,relative_address_start,padding_block_limit,data_access,local_dynamic_tls_candidate,negative_block_heuristic,gp_relative_operand,jump_table_signed,split_load_total_points,cmp_defines,start_function,no_return_call_refined,next_block_in_byte_interval,reg_def_use.live_var_at_prior_used,resolved_reaches,unresolved_block_overlap,arch.extend_load,block_instruction_next,inferred_main_in_reg,contains_plausible_instr_seq,value_reg_limit,tls_desc_call,base_relative_jump,straight_line_last_def,impossible_block,arm_jump_table_block_instruction,split_load_candidate,adrp_used,call_tls_get_addr_mips,cmp_reg_to_reg,split_load_for_symbolization,__agg_subclause2,incomplete_block,reg_def_use.defined_in_block,base_relative_operand,arch.reg_relative_load,stack_def_use.live_var_used_in_block,nop_in_padding_candidate,code_in_block_candidate,is_padding,value_reg_unsupported,reg_def_use.ambiguous_block_last_def,arch.simple_data_load,block_last_instruction,reg_def_use.last_def_in_block,call_tls_get_addr,litpool_ref,litpool_confidence,split_load,jump_table_start,block_candidate_dependency_edge,jump_table_max,compare_and_jump_immediate,stack_def_use.live_var_used,__agg_subclause3
- code_to_litpool_ref_point_transfer(Reason:symbol)
Used by:
block_heuristic
- mode_min_instruction_size(Mode:unsigned, Size:unsigned)
Minimum instruction size for each execution mode.
Mode can be 0 (ARM) or 1 (Thumb)
Used by:
branch_to_calculated_pc_rel_addr
- branch_to_calculated_pc_rel_addr(EA:address, Dest:address)
A computed PC-relative address that isn’t a jump table.
This example was generated in zlib with gcc 9.4. -Os:
adr r1, Label add r2, r1, r2, lsl #4 mov pc, r2
- .Label:
cmp r3, r1, lsl #31 nop adc r0, r0, r0 it hs subhs r3, r3, r1, lsl #31
- .Label+16:
cmp r3, r1, lsl #30 nop adc r0, r0, r0 it hs subhs r3, r3, r1, lsl #30
- .Label+32:
…
In the above pattern, Label is supposed to be code rather than data (literal pools).
Uses:
arch.instruction_at,arch.jump_operation_op_index,arch.pc_relative_addr,arch.reg_reg_arithmetic_operation,instruction,instruction_get_op,mode_min_instruction_size,op_regdirect_contains_regRecursive:
block_points,flags_and_jump_pair,block_next,jump_table_element_access,jump_table_candidate_refined,relative_jump_table_entry_candidate,value_reg,reg_def_use.live_var_used,arm_jump_table_cmp_limit,arm_jump_table_block_start,unresolved_block,last_value_reg_limit,__agg_single2,reg_def_use.ref_in_block,arm_jump_table_candidate_start,relocation_adjustment_total,data_in_code_propagate,data_in_code,contains_implausible_instr_seq,code_in_block,stack_def_use.live_var_def,reg_def_use.live_var_def,wis_prior,simple_data_access_pattern,no_value_reg_limit,arm_jump_table_candidate,reg_def_use.used,arm_jump_table_skip_first_entry,reg_def_use.live_var_at_block_end,invalid,litpool_symbolic_operand,straight_line_def_used,jump_table_target,after_end,code_in_block_candidate_refined,stack_base_reg_move,initialized_data_segment,indefinite_litpool_ref,may_fallthrough,block_implies_block,reg_def_use.return_block_end,wis_has_prior,data_block_candidate,wis_memo,litpool_boundaries,inter_procedural_edge,candidate_block_is_not_padding,invalid_jump_table_candidate,stack_def_use.live_var_at_block_end,indexed_pc_relative_load_relative,unresolved_interval_order,compare_and_jump_register,tls_relative_operand_mips,reg_def_use.return_val_used,next_end,adjusts_stack_in_block,got_relative_operand,segment_target_range,tls_get_addr,stack_def_use.last_def_in_block,basic_target,symbolic_expr_from_relocation,unlikely_have_symbolic_immediate,next_start,block_overlap,compare_and_jump_indirect,def_used_for_address,overlapping_instruction,wis_schedule,__agg_single3,compare_and_jump_indirect_op_valid,cinf_ldr_add_pc,block_heuristic,stack_def_use.live_var_at_prior_used,symbol_minus_symbol_litpool_access_pattern,arm_jump_table_data_block,block_total_points,split_load_point,no_return_call_propagated,__agg_subclause6,discarded_split_load,init_symbol_minus_symbol_candidate_arm,__agg_subclause4,function_inference.function_entry_initial,next_type,stack_def_use.block_last_def,__agg_single6,reg_has_got,data_block_limit,base_relative_operation,init_ldr_add_pc,block_limit,unresolved_interval,stack_def_use.ref_in_block,reg_used_for,must_fallthrough,value_reg_edge,self_contained_segment,hi_load_prop,block,reg_def_use.def_used,relative_address,likely_fallthrough,composite_data_access,stack_def_use.defined_in_block,known_block,branch_to_calculated_pc_rel_addr,__agg_subclause7,no_return_call,split_load_operand,block_points_proportional,reg_has_base_image,relocation_adjustment,overlap_with_litpool,plt_block,instruction_memory_access_size,const_value_reg_used,__agg_single10,plt_entry,split_load_conflict,common_tail,correlated_live_reg,first_block_in_byte_interval,stack_def_use.def_used,reg_def_use.block_last_def,arm_jump_table_data_block_limit,possible_target_from,reg_reg_arithmetic_operation_defs,wis_schedule_iter,possible_target,stack_def_use.used_in_block,jump_table_prelude,padding_block_candidate,reg_def_use.ambiguous_last_def_in_block,block_candidate_boundaries,no_return_block,candidate_block_is_padding,indexed_pc_relative_load,block_boundaries,jump_table_candidate,discarded_block,reg_def_use.used_in_block,reg_def_use.flow_def,data_segment,transition_block_limit,inferred_main_dispatch,relative_address_start,padding_block_limit,data_access,local_dynamic_tls_candidate,negative_block_heuristic,gp_relative_operand,jump_table_signed,split_load_total_points,cmp_defines,start_function,no_return_call_refined,next_block_in_byte_interval,reg_def_use.live_var_at_prior_used,resolved_reaches,unresolved_block_overlap,arch.extend_load,block_instruction_next,inferred_main_in_reg,contains_plausible_instr_seq,value_reg_limit,tls_desc_call,base_relative_jump,straight_line_last_def,impossible_block,arm_jump_table_block_instruction,split_load_candidate,adrp_used,call_tls_get_addr_mips,cmp_reg_to_reg,split_load_for_symbolization,__agg_subclause2,incomplete_block,reg_def_use.defined_in_block,base_relative_operand,arch.reg_relative_load,stack_def_use.live_var_used_in_block,nop_in_padding_candidate,code_in_block_candidate,is_padding,value_reg_unsupported,reg_def_use.ambiguous_block_last_def,arch.simple_data_load,block_last_instruction,reg_def_use.last_def_in_block,call_tls_get_addr,litpool_ref,litpool_confidence,split_load,jump_table_start,block_candidate_dependency_edge,jump_table_max,compare_and_jump_immediate,stack_def_use.live_var_used,__agg_subclause3