2015-08-18 12:25:19 -07:00
|
|
|
// Copyright 2015 The Crashpad Authors. All rights reserved.
|
|
|
|
//
|
|
|
|
// Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
// you may not use this file except in compliance with the License.
|
|
|
|
// You may obtain a copy of the License at
|
|
|
|
//
|
|
|
|
// http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
//
|
|
|
|
// Unless required by applicable law or agreed to in writing, software
|
|
|
|
// distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
// See the License for the specific language governing permissions and
|
|
|
|
// limitations under the License.
|
|
|
|
|
|
|
|
#include "snapshot/win/exception_snapshot_win.h"
|
|
|
|
|
2020-06-18 15:35:28 +02:00
|
|
|
#include "base/logging.h"
|
2016-04-22 10:03:59 -07:00
|
|
|
#include "client/crashpad_client.h"
|
2016-01-14 12:50:22 -08:00
|
|
|
#include "snapshot/capture_memory.h"
|
2016-01-08 17:24:04 -08:00
|
|
|
#include "snapshot/memory_snapshot.h"
|
2019-06-10 12:15:46 -07:00
|
|
|
#include "snapshot/memory_snapshot_generic.h"
|
2016-01-14 12:50:22 -08:00
|
|
|
#include "snapshot/win/capture_memory_delegate_win.h"
|
2019-06-10 12:15:46 -07:00
|
|
|
#include "snapshot/win/cpu_context_win.h"
|
2015-08-18 12:25:19 -07:00
|
|
|
#include "snapshot/win/process_reader_win.h"
|
|
|
|
#include "util/win/nt_internals.h"
|
|
|
|
|
|
|
|
namespace crashpad {
|
|
|
|
namespace internal {
|
|
|
|
|
2016-04-22 10:03:59 -07:00
|
|
|
namespace {
|
|
|
|
|
2018-12-12 12:58:24 -08:00
|
|
|
#if defined(ARCH_CPU_X86_FAMILY)
|
2016-04-22 10:03:59 -07:00
|
|
|
#if defined(ARCH_CPU_32_BITS)
|
|
|
|
using Context32 = CONTEXT;
|
|
|
|
#elif defined(ARCH_CPU_64_BITS)
|
|
|
|
using Context32 = WOW64_CONTEXT;
|
|
|
|
#endif
|
|
|
|
|
2018-12-12 12:58:24 -08:00
|
|
|
void NativeContextToCPUContext32(const Context32& context_record,
|
|
|
|
CPUContext* context,
|
|
|
|
CPUContextUnion* context_union) {
|
|
|
|
context->architecture = kCPUArchitectureX86;
|
|
|
|
context->x86 = &context_union->x86;
|
|
|
|
InitializeX86Context(context_record, context->x86);
|
|
|
|
}
|
|
|
|
#endif // ARCH_CPU_X86_FAMILY
|
|
|
|
|
2016-04-22 10:03:59 -07:00
|
|
|
#if defined(ARCH_CPU_64_BITS)
|
|
|
|
void NativeContextToCPUContext64(const CONTEXT& context_record,
|
|
|
|
CPUContext* context,
|
|
|
|
CPUContextUnion* context_union) {
|
2018-12-12 12:58:24 -08:00
|
|
|
#if defined(ARCH_CPU_X86_64)
|
2016-04-22 10:03:59 -07:00
|
|
|
context->architecture = kCPUArchitectureX86_64;
|
|
|
|
context->x86_64 = &context_union->x86_64;
|
|
|
|
InitializeX64Context(context_record, context->x86_64);
|
2018-12-12 12:58:24 -08:00
|
|
|
#elif defined(ARCH_CPU_ARM64)
|
|
|
|
context->architecture = kCPUArchitectureARM64;
|
|
|
|
context->arm64 = &context_union->arm64;
|
|
|
|
InitializeARM64Context(context_record, context->arm64);
|
|
|
|
#else
|
|
|
|
#error Unsupported Windows 64-bit Arch
|
2016-04-22 10:03:59 -07:00
|
|
|
#endif
|
|
|
|
}
|
2018-12-12 12:58:24 -08:00
|
|
|
#endif
|
2016-04-22 10:03:59 -07:00
|
|
|
|
|
|
|
} // namespace
|
|
|
|
|
2015-08-18 12:25:19 -07:00
|
|
|
ExceptionSnapshotWin::ExceptionSnapshotWin()
|
|
|
|
: ExceptionSnapshot(),
|
|
|
|
context_union_(),
|
|
|
|
context_(),
|
|
|
|
codes_(),
|
2017-10-19 00:26:38 -04:00
|
|
|
extra_memory_(),
|
2015-08-18 12:25:19 -07:00
|
|
|
thread_id_(0),
|
|
|
|
exception_address_(0),
|
|
|
|
exception_flags_(0),
|
|
|
|
exception_code_(0),
|
|
|
|
initialized_() {
|
|
|
|
}
|
|
|
|
|
|
|
|
ExceptionSnapshotWin::~ExceptionSnapshotWin() {
|
|
|
|
}
|
|
|
|
|
2016-04-22 10:03:59 -07:00
|
|
|
bool ExceptionSnapshotWin::Initialize(
|
|
|
|
ProcessReaderWin* process_reader,
|
|
|
|
DWORD thread_id,
|
2016-05-02 11:36:41 -07:00
|
|
|
WinVMAddress exception_pointers_address) {
|
2015-08-18 12:25:19 -07:00
|
|
|
INITIALIZATION_STATE_SET_INITIALIZING(initialized_);
|
|
|
|
|
2016-01-08 17:24:04 -08:00
|
|
|
const ProcessReaderWin::Thread* thread = nullptr;
|
2015-08-18 12:25:19 -07:00
|
|
|
for (const auto& loop_thread : process_reader->Threads()) {
|
|
|
|
if (thread_id == loop_thread.id) {
|
2016-01-08 17:24:04 -08:00
|
|
|
thread = &loop_thread;
|
2015-08-18 12:25:19 -07:00
|
|
|
break;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2016-01-08 17:24:04 -08:00
|
|
|
if (!thread) {
|
2015-09-18 16:06:05 -07:00
|
|
|
LOG(ERROR) << "thread ID " << thread_id << " not found in process";
|
2015-08-18 12:25:19 -07:00
|
|
|
return false;
|
|
|
|
} else {
|
|
|
|
thread_id_ = thread_id;
|
|
|
|
}
|
|
|
|
|
2015-09-18 16:06:05 -07:00
|
|
|
#if defined(ARCH_CPU_32_BITS)
|
|
|
|
const bool is_64_bit = false;
|
|
|
|
#elif defined(ARCH_CPU_64_BITS)
|
|
|
|
const bool is_64_bit = process_reader->Is64Bit();
|
|
|
|
if (is_64_bit) {
|
|
|
|
if (!InitializeFromExceptionPointers<EXCEPTION_RECORD64,
|
|
|
|
process_types::EXCEPTION_POINTERS64>(
|
2016-05-02 11:36:41 -07:00
|
|
|
process_reader,
|
2016-04-22 10:03:59 -07:00
|
|
|
exception_pointers_address,
|
2016-05-02 11:36:41 -07:00
|
|
|
thread_id,
|
2016-04-22 10:03:59 -07:00
|
|
|
&NativeContextToCPUContext64)) {
|
2015-08-18 12:25:19 -07:00
|
|
|
return false;
|
|
|
|
}
|
2015-09-16 12:42:20 -07:00
|
|
|
}
|
2015-09-18 16:06:05 -07:00
|
|
|
#endif
|
2018-12-12 12:58:24 -08:00
|
|
|
|
|
|
|
#if !defined(ARCH_CPU_ARM64)
|
2015-09-18 16:06:05 -07:00
|
|
|
if (!is_64_bit) {
|
|
|
|
if (!InitializeFromExceptionPointers<EXCEPTION_RECORD32,
|
|
|
|
process_types::EXCEPTION_POINTERS32>(
|
2016-05-02 11:36:41 -07:00
|
|
|
process_reader,
|
2016-04-22 10:03:59 -07:00
|
|
|
exception_pointers_address,
|
2016-05-02 11:36:41 -07:00
|
|
|
thread_id,
|
2016-04-22 10:03:59 -07:00
|
|
|
&NativeContextToCPUContext32)) {
|
2015-09-18 16:06:05 -07:00
|
|
|
return false;
|
|
|
|
}
|
2015-08-18 12:25:19 -07:00
|
|
|
}
|
2018-12-12 12:58:24 -08:00
|
|
|
#endif
|
2015-08-18 12:25:19 -07:00
|
|
|
|
2016-01-14 12:50:22 -08:00
|
|
|
CaptureMemoryDelegateWin capture_memory_delegate(
|
2016-04-21 22:19:31 -07:00
|
|
|
process_reader, *thread, &extra_memory_, nullptr);
|
2016-01-14 12:50:22 -08:00
|
|
|
CaptureMemory::PointedToByContext(context_, &capture_memory_delegate);
|
2016-01-08 17:24:04 -08:00
|
|
|
|
2015-08-18 12:25:19 -07:00
|
|
|
INITIALIZATION_STATE_SET_VALID(initialized_);
|
|
|
|
return true;
|
|
|
|
}
|
|
|
|
|
|
|
|
const CPUContext* ExceptionSnapshotWin::Context() const {
|
|
|
|
INITIALIZATION_STATE_DCHECK_VALID(initialized_);
|
|
|
|
return &context_;
|
|
|
|
}
|
|
|
|
|
|
|
|
uint64_t ExceptionSnapshotWin::ThreadID() const {
|
|
|
|
INITIALIZATION_STATE_DCHECK_VALID(initialized_);
|
|
|
|
return thread_id_;
|
|
|
|
}
|
|
|
|
|
|
|
|
uint32_t ExceptionSnapshotWin::Exception() const {
|
|
|
|
INITIALIZATION_STATE_DCHECK_VALID(initialized_);
|
|
|
|
return exception_code_;
|
|
|
|
}
|
|
|
|
|
|
|
|
uint32_t ExceptionSnapshotWin::ExceptionInfo() const {
|
|
|
|
INITIALIZATION_STATE_DCHECK_VALID(initialized_);
|
|
|
|
return exception_flags_;
|
|
|
|
}
|
|
|
|
|
|
|
|
uint64_t ExceptionSnapshotWin::ExceptionAddress() const {
|
|
|
|
INITIALIZATION_STATE_DCHECK_VALID(initialized_);
|
|
|
|
return exception_address_;
|
|
|
|
}
|
|
|
|
|
|
|
|
const std::vector<uint64_t>& ExceptionSnapshotWin::Codes() const {
|
|
|
|
INITIALIZATION_STATE_DCHECK_VALID(initialized_);
|
|
|
|
return codes_;
|
|
|
|
}
|
|
|
|
|
2016-01-08 17:24:04 -08:00
|
|
|
std::vector<const MemorySnapshot*> ExceptionSnapshotWin::ExtraMemory() const {
|
|
|
|
INITIALIZATION_STATE_DCHECK_VALID(initialized_);
|
|
|
|
std::vector<const MemorySnapshot*> result;
|
|
|
|
result.reserve(extra_memory_.size());
|
2017-10-19 00:26:38 -04:00
|
|
|
for (const auto& em : extra_memory_) {
|
|
|
|
result.push_back(em.get());
|
|
|
|
}
|
2016-01-08 17:24:04 -08:00
|
|
|
return result;
|
|
|
|
}
|
|
|
|
|
2015-09-18 16:06:05 -07:00
|
|
|
template <class ExceptionRecordType,
|
|
|
|
class ExceptionPointersType,
|
|
|
|
class ContextType>
|
2015-09-16 12:42:20 -07:00
|
|
|
bool ExceptionSnapshotWin::InitializeFromExceptionPointers(
|
2016-05-02 11:36:41 -07:00
|
|
|
ProcessReaderWin* process_reader,
|
2015-09-18 16:06:05 -07:00
|
|
|
WinVMAddress exception_pointers_address,
|
2016-05-05 09:48:27 -07:00
|
|
|
DWORD exception_thread_id,
|
2016-04-22 10:03:59 -07:00
|
|
|
void (*native_to_cpu_context)(const ContextType& context_record,
|
|
|
|
CPUContext* context,
|
|
|
|
CPUContextUnion* context_union)) {
|
2015-09-18 16:06:05 -07:00
|
|
|
ExceptionPointersType exception_pointers;
|
2018-11-14 10:15:50 -08:00
|
|
|
if (!process_reader->Memory()->Read(exception_pointers_address,
|
|
|
|
sizeof(exception_pointers),
|
|
|
|
&exception_pointers)) {
|
2015-09-18 16:06:05 -07:00
|
|
|
LOG(ERROR) << "EXCEPTION_POINTERS read failed";
|
|
|
|
return false;
|
|
|
|
}
|
|
|
|
if (!exception_pointers.ExceptionRecord) {
|
|
|
|
LOG(ERROR) << "null ExceptionRecord";
|
|
|
|
return false;
|
|
|
|
}
|
|
|
|
|
2015-09-16 12:42:20 -07:00
|
|
|
ExceptionRecordType first_record;
|
2018-11-14 10:15:50 -08:00
|
|
|
if (!process_reader->Memory()->Read(
|
2015-09-18 16:06:05 -07:00
|
|
|
static_cast<WinVMAddress>(exception_pointers.ExceptionRecord),
|
2015-09-16 12:42:20 -07:00
|
|
|
sizeof(first_record),
|
|
|
|
&first_record)) {
|
|
|
|
LOG(ERROR) << "ExceptionRecord";
|
|
|
|
return false;
|
|
|
|
}
|
|
|
|
|
2016-05-02 11:36:41 -07:00
|
|
|
const bool triggered_by_client =
|
|
|
|
first_record.ExceptionCode == CrashpadClient::kTriggeredExceptionCode &&
|
|
|
|
first_record.NumberParameters == 2;
|
|
|
|
if (triggered_by_client)
|
2016-05-05 09:48:27 -07:00
|
|
|
process_reader->DecrementThreadSuspendCounts(exception_thread_id);
|
2016-05-02 11:36:41 -07:00
|
|
|
|
|
|
|
if (triggered_by_client && first_record.ExceptionInformation[0] != 0) {
|
2016-04-22 10:03:59 -07:00
|
|
|
// This special exception code indicates that the target was crashed by
|
|
|
|
// another client calling CrashpadClient::DumpAndCrashTargetProcess(). In
|
|
|
|
// this case the parameters are a thread id and an exception code which we
|
|
|
|
// use to fabricate a new exception record.
|
|
|
|
using ArgumentType = decltype(first_record.ExceptionInformation[0]);
|
2016-05-05 09:48:27 -07:00
|
|
|
const ArgumentType blame_thread_id = first_record.ExceptionInformation[0];
|
2016-04-22 10:03:59 -07:00
|
|
|
exception_code_ = static_cast<DWORD>(first_record.ExceptionInformation[1]);
|
|
|
|
exception_flags_ = EXCEPTION_NONCONTINUABLE;
|
2016-05-02 11:36:41 -07:00
|
|
|
for (const auto& thread : process_reader->Threads()) {
|
2016-05-05 09:48:27 -07:00
|
|
|
if (thread.id == blame_thread_id) {
|
|
|
|
thread_id_ = blame_thread_id;
|
2016-05-02 11:36:41 -07:00
|
|
|
native_to_cpu_context(
|
|
|
|
*reinterpret_cast<const ContextType*>(&thread.context),
|
|
|
|
&context_,
|
|
|
|
&context_union_);
|
|
|
|
exception_address_ = context_.InstructionPointer();
|
2016-04-22 10:03:59 -07:00
|
|
|
break;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
if (exception_address_ == 0) {
|
2016-05-05 09:48:27 -07:00
|
|
|
LOG(WARNING) << "thread " << blame_thread_id << " not found";
|
2016-04-22 10:03:59 -07:00
|
|
|
return false;
|
|
|
|
}
|
|
|
|
} else {
|
|
|
|
// Normal case.
|
|
|
|
exception_code_ = first_record.ExceptionCode;
|
|
|
|
exception_flags_ = first_record.ExceptionFlags;
|
|
|
|
exception_address_ = first_record.ExceptionAddress;
|
|
|
|
for (DWORD i = 0; i < first_record.NumberParameters; ++i)
|
|
|
|
codes_.push_back(first_record.ExceptionInformation[i]);
|
|
|
|
if (first_record.ExceptionRecord) {
|
|
|
|
// https://crashpad.chromium.org/bug/43
|
|
|
|
LOG(WARNING) << "dropping chained ExceptionRecord";
|
|
|
|
}
|
|
|
|
|
|
|
|
ContextType context_record;
|
2018-11-14 10:15:50 -08:00
|
|
|
if (!process_reader->Memory()->Read(
|
2016-04-22 10:03:59 -07:00
|
|
|
static_cast<WinVMAddress>(exception_pointers.ContextRecord),
|
|
|
|
sizeof(context_record),
|
|
|
|
&context_record)) {
|
|
|
|
LOG(ERROR) << "ContextRecord";
|
|
|
|
return false;
|
|
|
|
}
|
|
|
|
|
|
|
|
native_to_cpu_context(context_record, &context_, &context_union_);
|
2015-09-16 12:42:20 -07:00
|
|
|
}
|
|
|
|
|
|
|
|
return true;
|
|
|
|
}
|
|
|
|
|
2015-08-18 12:25:19 -07:00
|
|
|
} // namespace internal
|
|
|
|
} // namespace crashpad
|