summaryrefslogtreecommitdiffstats
path: root/chrome_elf/ntdll_cache.cc
diff options
context:
space:
mode:
authorcaitkp@chromium.org <caitkp@chromium.org@0039d316-1c4b-4281-b951-d872f2087c98>2013-12-09 06:15:24 +0000
committercaitkp@chromium.org <caitkp@chromium.org@0039d316-1c4b-4281-b951-d872f2087c98>2013-12-09 06:15:24 +0000
commit8bbb666624bf357fc22915b8f4ff5cbc12dedd59 (patch)
treeb7bc7a36e4d63cd58947457a45089050cc3bef77 /chrome_elf/ntdll_cache.cc
parentce7e5961e2251b5489925fa7d4f307793605d99e (diff)
downloadchromium_src-8bbb666624bf357fc22915b8f4ff5cbc12dedd59.zip
chromium_src-8bbb666624bf357fc22915b8f4ff5cbc12dedd59.tar.gz
chromium_src-8bbb666624bf357fc22915b8f4ff5cbc12dedd59.tar.bz2
Cache ntdll proc addresses in ELF
BUG= Committed: https://src.chromium.org/viewvc/chrome?view=rev&revision=238539 Review URL: https://codereview.chromium.org/85403005 git-svn-id: svn://svn.chromium.org/chrome/trunk/src@239437 0039d316-1c4b-4281-b951-d872f2087c98
Diffstat (limited to 'chrome_elf/ntdll_cache.cc')
-rw-r--r--chrome_elf/ntdll_cache.cc51
1 files changed, 51 insertions, 0 deletions
diff --git a/chrome_elf/ntdll_cache.cc b/chrome_elf/ntdll_cache.cc
new file mode 100644
index 0000000..e550442
--- /dev/null
+++ b/chrome_elf/ntdll_cache.cc
@@ -0,0 +1,51 @@
+// Copyright 2013 The Chromium Authors. All rights reserved.
+// Use of this source code is governed by a BSD-style license that can be
+// found in the LICENSE file.
+
+#include <stdint.h>
+#include <windows.h>
+
+#include "chrome_elf/ntdll_cache.h"
+
+FunctionLookupTable g_ntdll_lookup;
+
+void InitCache() {
+ HMODULE ntdll_handle = ::GetModuleHandle(L"ntdll.dll");
+
+ // To find the Export Address Table address, we start from the DOS header.
+ // The module handle is actually the address of the header.
+ IMAGE_DOS_HEADER* dos_header =
+ reinterpret_cast<IMAGE_DOS_HEADER*>(ntdll_handle);
+ // The e_lfanew is an offset from the DOS header to the NT header. It should
+ // never be 0.
+ IMAGE_NT_HEADERS* nt_headers = reinterpret_cast<IMAGE_NT_HEADERS*>(
+ ntdll_handle + dos_header->e_lfanew / sizeof(uint32_t));
+ // For modules that have an import address table, its offset from the
+ // DOS header is stored in the second data directory's VirtualAddress.
+ if (!nt_headers->OptionalHeader.DataDirectory[0].VirtualAddress)
+ return;
+
+ BYTE* base_addr = reinterpret_cast<BYTE*>(ntdll_handle);
+
+ IMAGE_DATA_DIRECTORY* exports_data_dir =
+ &nt_headers->OptionalHeader.DataDirectory[IMAGE_DIRECTORY_ENTRY_EXPORT];
+
+ IMAGE_EXPORT_DIRECTORY* exports = reinterpret_cast<IMAGE_EXPORT_DIRECTORY*>(
+ base_addr + exports_data_dir->VirtualAddress);
+
+ WORD* ordinals = reinterpret_cast<WORD*>(
+ base_addr + exports->AddressOfNameOrdinals);
+ DWORD* names = reinterpret_cast<DWORD*>(
+ base_addr + exports->AddressOfNames);
+ DWORD* funcs = reinterpret_cast<DWORD*>(
+ base_addr + exports->AddressOfFunctions);
+ int num_entries = exports->NumberOfNames;
+
+ for (int i = 0; i < num_entries; i++) {
+ char* name = reinterpret_cast<char*>(base_addr + names[i]);
+ WORD ord = ordinals[i];
+ DWORD func = funcs[ord];
+ FARPROC func_addr = reinterpret_cast<FARPROC>(func + base_addr);
+ g_ntdll_lookup[std::string(name)] = func_addr;
+ }
+}