/* PRIVATE FUNCTIONS **********************************************************/
-_SEH_DEFINE_LOCALS(MiGetExceptionInfo)
+static
+int
+MiGetExceptionInfo(EXCEPTION_POINTERS *ExceptionInfo, BOOLEAN * HaveBadAddress, ULONG_PTR * BadAddress)
{
- volatile BOOLEAN HaveBadAddress;
- volatile ULONG_PTR BadAddress;
-};
-
-_SEH_FILTER(MiGetExceptionInfo)
-{
- _SEH_ACCESS_LOCALS(MiGetExceptionInfo);
- EXCEPTION_POINTERS *ExceptionInfo = _SEH_GetExceptionPointers();
PEXCEPTION_RECORD ExceptionRecord;
PAGED_CODE();
-
+
/* Assume default */
- _SEH_VAR(HaveBadAddress) = FALSE;
-
+ *HaveBadAddress = FALSE;
+
/* Get the exception record */
ExceptionRecord = ExceptionInfo->ExceptionRecord;
-
+
/* Look at the exception code */
if ((ExceptionRecord->ExceptionCode == STATUS_ACCESS_VIOLATION) ||
(ExceptionRecord->ExceptionCode == STATUS_GUARD_PAGE_VIOLATION) ||
if (ExceptionRecord->NumberParameters > 1)
{
/* Return the address */
- _SEH_VAR(HaveBadAddress) = TRUE;
- _SEH_VAR(BadAddress) = ExceptionRecord->ExceptionInformation[1];
+ *HaveBadAddress = TRUE;
+ *BadAddress = ExceptionRecord->ExceptionInformation[1];
}
}
-
+
/* Continue executing the next handler */
return EXCEPTION_EXECUTE_HANDLER;
}
PVOID CurrentAddress = SourceAddress, CurrentTargetAddress = TargetAddress;
PVOID MdlAddress;
KAPC_STATE ApcState;
- _SEH_DECLARE_LOCALS(MiGetExceptionInfo);
+ BOOLEAN HaveBadAddress;
+ ULONG_PTR BadAddress;
NTSTATUS Status = STATUS_SUCCESS;
PAGED_CODE();
ASSERT(FailedInProbe == FALSE);
/* Protect user-mode copy */
- _SEH_TRY
+ _SEH2_TRY
{
/* If this is our first time, probe the buffer */
if ((CurrentAddress == SourceAddress) && (PreviousMode != KernelMode))
FailedInMoving = TRUE;
RtlCopyMemory(CurrentTargetAddress, MdlAddress, CurrentSize);
}
- _SEH_EXCEPT(MiGetExceptionInfo)
+ _SEH2_EXCEPT(MiGetExceptionInfo(_SEH2_GetExceptionInformation(), &HaveBadAddress, &BadAddress))
{
/* Detach from whoever we may be attached to */
KeUnstackDetachProcess(&ApcState);
if ((FailedInProbe) || (FailedInMapping))
{
/* Exit */
- Status = _SEH_GetExceptionCode();
- _SEH_YIELD(return Status);
+ Status = _SEH2_GetExceptionCode();
+ _SEH2_YIELD(return Status);
}
/* Otherwise, we failed probably during the move */
if (FailedInMoving)
{
/* Check if we know exactly where we stopped copying */
- if (_SEH_VAR(HaveBadAddress))
+ if (HaveBadAddress)
{
/* Return the exact number of bytes copied */
- *ReturnSize = _SEH_VAR(BadAddress) - (ULONG_PTR)SourceAddress;
+ *ReturnSize = BadAddress - (ULONG_PTR)SourceAddress;
}
}
/* Return partial copy */
Status = STATUS_PARTIAL_COPY;
}
- _SEH_END;
+ _SEH2_END;
/* Check for SEH status */
if (Status != STATUS_SUCCESS) return Status;
PVOID CurrentAddress = SourceAddress, CurrentTargetAddress = TargetAddress;
PVOID PoolAddress;
KAPC_STATE ApcState;
- _SEH_DECLARE_LOCALS(MiGetExceptionInfo);
+ BOOLEAN HaveBadAddress;
+ ULONG_PTR BadAddress;
NTSTATUS Status = STATUS_SUCCESS;
PAGED_CODE();
ASSERT(FailedInProbe == FALSE);
/* Protect user-mode copy */
- _SEH_TRY
+ _SEH2_TRY
{
/* If this is our first time, probe the buffer */
if ((CurrentAddress == SourceAddress) && (PreviousMode != KernelMode))
FailedInMoving = TRUE;
RtlCopyMemory(CurrentTargetAddress, PoolAddress, CurrentSize);
}
- _SEH_EXCEPT(MiGetExceptionInfo)
+ _SEH2_EXCEPT(MiGetExceptionInfo(_SEH2_GetExceptionInformation(), &HaveBadAddress, &BadAddress))
{
/* Detach from whoever we may be attached to */
KeUnstackDetachProcess(&ApcState);
if (FailedInProbe)
{
/* Exit */
- Status = _SEH_GetExceptionCode();
- _SEH_YIELD(return Status);
+ Status = _SEH2_GetExceptionCode();
+ _SEH2_YIELD(return Status);
}
/* Otherwise, we failed probably during the move */
if (FailedInMoving)
{
/* Check if we know exactly where we stopped copying */
- if (_SEH_VAR(HaveBadAddress))
+ if (HaveBadAddress)
{
/* Return the exact number of bytes copied */
- *ReturnSize = _SEH_VAR(BadAddress) - (ULONG_PTR)SourceAddress;
+ *ReturnSize = BadAddress - (ULONG_PTR)SourceAddress;
}
}
/* Return partial copy */
Status = STATUS_PARTIAL_COPY;
}
- _SEH_END;
+ _SEH2_END;
/* Check for SEH status */
if (Status != STATUS_SUCCESS) return Status;
/* Don't accept zero-sized buffers */
if (!BufferSize) return STATUS_SUCCESS;
-
+
/* If we are copying from ourselves, lock the target instead */
if (SourceProcess == PsGetCurrentProcess()) Process = TargetProcess;
-
+
/* Acquire rundown protection */
if (!ExAcquireRundownProtection(&Process->RundownProtect))
{
/* Fail */
return STATUS_PROCESS_IS_TERMINATING;
}
-
+
/* See if we should use the pool copy */
if (BufferSize > MI_POOL_COPY_BYTES)
{
PreviousMode,
ReturnSize);
}
-
+
/* Release the lock */
ExReleaseRundownProtection(&Process->RundownProtect);
return Status;
return Status;
}
-NTSTATUS STDCALL
+NTSTATUS NTAPI
MiProtectVirtualMemory(IN PEPROCESS Process,
IN OUT PVOID *BaseAddress,
IN OUT PSIZE_T NumberOfBytesToProtect,
PMM_AVL_TABLE AddressSpace;
ULONG OldAccessProtection_;
NTSTATUS Status;
-
+
*NumberOfBytesToProtect =
PAGE_ROUND_UP((ULONG_PTR)(*BaseAddress) + (*NumberOfBytesToProtect)) -
PAGE_ROUND_DOWN(*BaseAddress);
*BaseAddress = (PVOID)PAGE_ROUND_DOWN(*BaseAddress);
-
+
AddressSpace = &Process->VadRoot;
-
+
MmLockAddressSpace(AddressSpace);
MemoryArea = MmLocateMemoryAreaByAddress(AddressSpace, *BaseAddress);
if (MemoryArea == NULL)
MmUnlockAddressSpace(AddressSpace);
return STATUS_UNSUCCESSFUL;
}
-
+
if (OldAccessProtection == NULL)
OldAccessProtection = &OldAccessProtection_;
-
+
if (MemoryArea->Type == MEMORY_AREA_VIRTUAL_MEMORY)
{
Status = MmProtectAnonMem(AddressSpace, MemoryArea, *BaseAddress,
/* FIXME: Should we return failure or success in this case? */
Status = STATUS_CONFLICTING_ADDRESSES;
}
-
+
MmUnlockAddressSpace(AddressSpace);
-
+
return Status;
}
PEPROCESS Process;
NTSTATUS Status = STATUS_SUCCESS;
SIZE_T BytesRead = 0;
- PAGED_CODE();
+ PAGED_CODE();
/* Check if we came from user mode */
if (PreviousMode != KernelMode)
{
/* Validate the read addresses */
if ((((ULONG_PTR)BaseAddress + NumberOfBytesToRead) < (ULONG_PTR)BaseAddress) ||
- (((ULONG_PTR)Buffer + NumberOfBytesToRead) < (ULONG_PTR)Buffer) ||
+ (((ULONG_PTR)Buffer + NumberOfBytesToRead) < (ULONG_PTR)Buffer) ||
(((ULONG_PTR)BaseAddress + NumberOfBytesToRead) > MmUserProbeAddress) ||
(((ULONG_PTR)Buffer + NumberOfBytesToRead) > MmUserProbeAddress))
{
/* Don't allow to write into kernel space */
return STATUS_ACCESS_VIOLATION;
}
-
+
/* Enter SEH for probe */
- _SEH_TRY
+ _SEH2_TRY
{
/* Probe the output value */
if (NumberOfBytesRead) ProbeForWriteSize_t(NumberOfBytesRead);
}
- _SEH_HANDLE
+ _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER)
{
/* Get exception code */
- Status = _SEH_GetExceptionCode();
+ Status = _SEH2_GetExceptionCode();
}
- _SEH_END;
-
+ _SEH2_END;
+
/* Return if we failed */
if (!NT_SUCCESS(Status)) return Status;
}
-
+
/* Reference the process */
Status = ObReferenceObjectByHandle(ProcessHandle,
PROCESS_VM_READ,
NumberOfBytesToRead,
PreviousMode,
&BytesRead);
-
+
/* Dereference the process */
ObDereferenceObject(Process);
}
-
+
/* Check if the caller sent this parameter */
if (NumberOfBytesRead)
{
/* Enter SEH to guard write */
- _SEH_TRY
+ _SEH2_TRY
{
/* Return the number of bytes read */
*NumberOfBytesRead = BytesRead;
}
- _SEH_HANDLE
+ _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER)
{
/* Handle exception */
- Status = _SEH_GetExceptionCode();
+ Status = _SEH2_GetExceptionCode();
}
- _SEH_END;
+ _SEH2_END;
}
/* Return status */
PEPROCESS Process;
NTSTATUS Status = STATUS_SUCCESS;
SIZE_T BytesWritten = 0;
- PAGED_CODE();
+ PAGED_CODE();
/* Check if we came from user mode */
if (PreviousMode != KernelMode)
{
/* Validate the read addresses */
if ((((ULONG_PTR)BaseAddress + NumberOfBytesToWrite) < (ULONG_PTR)BaseAddress) ||
- (((ULONG_PTR)Buffer + NumberOfBytesToWrite) < (ULONG_PTR)Buffer) ||
+ (((ULONG_PTR)Buffer + NumberOfBytesToWrite) < (ULONG_PTR)Buffer) ||
(((ULONG_PTR)BaseAddress + NumberOfBytesToWrite) > MmUserProbeAddress) ||
(((ULONG_PTR)Buffer + NumberOfBytesToWrite) > MmUserProbeAddress))
{
/* Don't allow to write into kernel space */
return STATUS_ACCESS_VIOLATION;
}
-
+
/* Enter SEH for probe */
- _SEH_TRY
+ _SEH2_TRY
{
/* Probe the output value */
if (NumberOfBytesWritten) ProbeForWriteSize_t(NumberOfBytesWritten);
}
- _SEH_HANDLE
+ _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER)
{
/* Get exception code */
- Status = _SEH_GetExceptionCode();
+ Status = _SEH2_GetExceptionCode();
}
- _SEH_END;
-
+ _SEH2_END;
+
/* Return if we failed */
if (!NT_SUCCESS(Status)) return Status;
}
-
+
/* Reference the process */
Status = ObReferenceObjectByHandle(ProcessHandle,
PROCESS_VM_WRITE,
NumberOfBytesToWrite,
PreviousMode,
&BytesWritten);
-
+
/* Dereference the process */
ObDereferenceObject(Process);
}
-
+
/* Check if the caller sent this parameter */
if (NumberOfBytesWritten)
{
/* Enter SEH to guard write */
- _SEH_TRY
+ _SEH2_TRY
{
/* Return the number of bytes read */
*NumberOfBytesWritten = BytesWritten;
}
- _SEH_HANDLE
+ _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER)
{
/* Handle exception */
- Status = _SEH_GetExceptionCode();
+ Status = _SEH2_GetExceptionCode();
}
- _SEH_END;
+ _SEH2_END;
}
-
+
/* Return status */
return Status;
}
if (PreviousMode != KernelMode)
{
/* Enter SEH for probing */
- _SEH_TRY
+ _SEH2_TRY
{
/* Validate all outputs */
ProbeForWritePointer(UnsafeBaseAddress);
ProbeForWriteSize_t(UnsafeNumberOfBytesToProtect);
ProbeForWriteUlong(UnsafeOldAccessProtection);
-
+
/* Capture them */
BaseAddress = *UnsafeBaseAddress;
NumberOfBytesToProtect = *UnsafeNumberOfBytesToProtect;
}
- _SEH_HANDLE
+ _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER)
{
/* Get exception code */
- Status = _SEH_GetExceptionCode();
+ Status = _SEH2_GetExceptionCode();
}
- _SEH_END;
-
+ _SEH2_END;
+
/* Return on exception */
if (!NT_SUCCESS(Status)) return Status;
}
BaseAddress = *UnsafeBaseAddress;
NumberOfBytesToProtect = *UnsafeNumberOfBytesToProtect;
}
-
+
/* Catch illegal base address */
if (BaseAddress > (PVOID)MmUserProbeAddress) return STATUS_INVALID_PARAMETER_2;
-
+
/* Catch illegal region size */
if ((MmUserProbeAddress - (ULONG_PTR)BaseAddress) < NumberOfBytesToProtect)
{
/* Release reference */
ObDereferenceObject(Process);
-
+
/* Enter SEH to return data */
- _SEH_TRY
+ _SEH2_TRY
{
/* Return data to user */
*UnsafeOldAccessProtection = OldAccessProtection;
*UnsafeBaseAddress = BaseAddress;
*UnsafeNumberOfBytesToProtect = NumberOfBytesToProtect;
}
- _SEH_HANDLE
+ _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER)
{
/* Catch exception */
- Status = _SEH_GetExceptionCode();
+ Status = _SEH2_GetExceptionCode();
}
- _SEH_END;
+ _SEH2_END;
/* Return status */
return Status;
}
-NTSTATUS STDCALL
+NTSTATUS NTAPI
NtQueryVirtualMemory(IN HANDLE ProcessHandle,
IN PVOID Address,
IN MEMORY_INFORMATION_CLASS VirtualMemoryInformationClass,
MEMORY_BASIC_INFORMATION BasicInfo;
}
VirtualMemoryInfo;
-
+
DPRINT("NtQueryVirtualMemory(ProcessHandle %x, Address %x, "
"VirtualMemoryInformationClass %d, VirtualMemoryInformation %x, "
"Length %lu ResultLength %x)\n",ProcessHandle,Address,
VirtualMemoryInformationClass,VirtualMemoryInformation,
Length,ResultLength);
-
+
PreviousMode = ExGetPreviousMode();
-
+
if (PreviousMode != KernelMode && UnsafeResultLength != NULL)
{
- _SEH_TRY
+ _SEH2_TRY
{
ProbeForWriteSize_t(UnsafeResultLength);
}
- _SEH_HANDLE
+ _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER)
{
- Status = _SEH_GetExceptionCode();
+ Status = _SEH2_GetExceptionCode();
}
- _SEH_END;
-
+ _SEH2_END;
+
if (!NT_SUCCESS(Status))
{
return Status;
}
}
-
+
if (Address >= MmSystemRangeStart)
{
DPRINT1("Invalid parameter\n");
return STATUS_INVALID_PARAMETER;
}
-
+
/* FIXME: Move this inside MiQueryVirtualMemory */
if (VirtualMemoryInformationClass == MemorySectionName)
{
RtlInitEmptyUnicodeString(&ModuleFileName, ModuleFileNameBuffer, sizeof(ModuleFileNameBuffer));
Status = MmGetFileNameForAddress(Address, &ModuleFileName);
-
+
if (NT_SUCCESS(Status))
{
SectionName = VirtualMemoryInformation;
if (PreviousMode != KernelMode)
{
- _SEH_TRY
+ _SEH2_TRY
{
RtlInitUnicodeString(&SectionName->SectionFileName, SectionName->NameBuffer);
SectionName->SectionFileName.MaximumLength = Length;
RtlCopyUnicodeString(&SectionName->SectionFileName, &ModuleFileName);
-
+
if (UnsafeResultLength != NULL)
{
*UnsafeResultLength = ModuleFileName.Length;
}
}
- _SEH_HANDLE
+ _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER)
{
- Status = _SEH_GetExceptionCode();
+ Status = _SEH2_GetExceptionCode();
}
- _SEH_END;
+ _SEH2_END;
}
else
{
RtlInitUnicodeString(&SectionName->SectionFileName, SectionName->NameBuffer);
SectionName->SectionFileName.MaximumLength = Length;
RtlCopyUnicodeString(&SectionName->SectionFileName, &ModuleFileName);
-
+
if (UnsafeResultLength != NULL)
{
*UnsafeResultLength = ModuleFileName.Length;
Length,
&ResultLength);
}
-
+
if (NT_SUCCESS(Status))
{
if (PreviousMode != KernelMode)
{
- _SEH_TRY
+ _SEH2_TRY
{
if (ResultLength > 0)
{
*UnsafeResultLength = ResultLength;
}
}
- _SEH_HANDLE
+ _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER)
{
- Status = _SEH_GetExceptionCode();
+ Status = _SEH2_GetExceptionCode();
}
- _SEH_END;
+ _SEH2_END;
}
else
{
&VirtualMemoryInfo,
ResultLength);
}
-
+
if (UnsafeResultLength != NULL)
{
*UnsafeResultLength = ResultLength;
}
}
}
-
+
return(Status);
}