2 * File pe_module.c - handle PE module information
4 * Copyright (C) 1996, Eric Youngdale.
5 * Copyright (C) 1999-2000, Ulrich Weigand.
6 * Copyright (C) 2004-2007, Eric Pouech.
8 * This library is free software; you can redistribute it and/or
9 * modify it under the terms of the GNU Lesser General Public
10 * License as published by the Free Software Foundation; either
11 * version 2.1 of the License, or (at your option) any later version.
13 * This library is distributed in the hope that it will be useful,
14 * but WITHOUT ANY WARRANTY; without even the implied warranty of
15 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
16 * Lesser General Public License for more details.
18 * You should have received a copy of the GNU Lesser General Public
19 * License along with this library; if not, write to the Free Software
20 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301, USA
25 #include "wine/port.h"
32 #include "dbghelp_private.h"
34 #include "wine/debug.h"
36 WINE_DEFAULT_DEBUG_CHANNEL(dbghelp
);
38 /******************************************************************
39 * pe_load_symbol_table
41 * Use the COFF symbol table (if any) from the IMAGE_FILE_HEADER to set the absolute address
43 * Mingw32 requires this for stabs debug information as address for global variables isn't filled in
44 * (this is similar to what is done in elf_module.c when using the .symtab ELF section)
46 static BOOL
pe_load_symbol_table(struct module
* module
, IMAGE_NT_HEADERS
* nth
, void* mapping
)
48 const IMAGE_SYMBOL
* isym
;
53 struct hash_table_iter hti
;
55 struct symt_data
* sym
;
56 const IMAGE_SECTION_HEADER
* sect
;
58 numsym
= nth
->FileHeader
.NumberOfSymbols
;
59 if (!nth
->FileHeader
.PointerToSymbolTable
|| !numsym
)
61 isym
= (const IMAGE_SYMBOL
*)((char*)mapping
+ nth
->FileHeader
.PointerToSymbolTable
);
62 /* FIXME: no way to get strtable size */
63 strtable
= (const char*)&isym
[numsym
];
64 sect
= IMAGE_FIRST_SECTION(nth
);
66 for (i
= 0; i
< numsym
; i
+= naux
, isym
+= naux
)
68 if (isym
->StorageClass
== IMAGE_SYM_CLASS_EXTERNAL
&&
69 isym
->SectionNumber
> 0 && isym
->SectionNumber
<= nth
->FileHeader
.NumberOfSections
)
71 if (isym
->N
.Name
.Short
)
73 name
= memcpy(tmp
, isym
->N
.ShortName
, 8);
76 else name
= strtable
+ isym
->N
.Name
.Long
;
77 if (name
[0] == '_') name
++;
78 hash_table_iter_init(&module
->ht_symbols
, &hti
, name
);
79 while ((ptr
= hash_table_iter_up(&hti
)))
81 sym
= GET_ENTRY(ptr
, struct symt_data
, hash_elt
);
82 if (sym
->symt
.tag
== SymTagData
&&
83 (sym
->kind
== DataIsGlobal
|| sym
->kind
== DataIsFileStatic
) &&
84 !strcmp(sym
->hash_elt
.name
, name
))
86 TRACE("Changing absolute address for %d.%s: %lx -> %s\n",
87 isym
->SectionNumber
, name
, sym
->u
.var
.offset
,
88 wine_dbgstr_longlong(module
->module
.BaseOfImage
+
89 sect
[isym
->SectionNumber
- 1].VirtualAddress
+ isym
->Value
));
90 sym
->u
.var
.offset
= module
->module
.BaseOfImage
+
91 sect
[isym
->SectionNumber
- 1].VirtualAddress
+ isym
->Value
;
96 naux
= isym
->NumberOfAuxSymbols
+ 1;
101 /******************************************************************
104 * look for stabs information in PE header (it's how the mingw compiler provides
105 * its debugging information)
107 static BOOL
pe_load_stabs(const struct process
* pcs
, struct module
* module
,
108 void* mapping
, IMAGE_NT_HEADERS
* nth
)
110 IMAGE_SECTION_HEADER
* section
;
111 int i
, stabsize
= 0, stabstrsize
= 0;
112 unsigned int stabs
= 0, stabstr
= 0;
115 section
= (IMAGE_SECTION_HEADER
*)
116 ((char*)&nth
->OptionalHeader
+ nth
->FileHeader
.SizeOfOptionalHeader
);
117 for (i
= 0; i
< nth
->FileHeader
.NumberOfSections
; i
++, section
++)
119 if (!strcasecmp((const char*)section
->Name
, ".stab"))
121 stabs
= section
->VirtualAddress
;
122 stabsize
= section
->SizeOfRawData
;
124 else if (!strncasecmp((const char*)section
->Name
, ".stabstr", 8))
126 stabstr
= section
->VirtualAddress
;
127 stabstrsize
= section
->SizeOfRawData
;
131 if (stabstrsize
&& stabsize
)
133 ret
= stabs_parse(module
,
134 module
->module
.BaseOfImage
- nth
->OptionalHeader
.ImageBase
,
135 RtlImageRvaToVa(nth
, mapping
, stabs
, NULL
),
137 RtlImageRvaToVa(nth
, mapping
, stabstr
, NULL
),
140 if (ret
) pe_load_symbol_table(module
, nth
, mapping
);
143 TRACE("%s the STABS debug info\n", ret
? "successfully loaded" : "failed to load");
147 /******************************************************************
152 static BOOL
pe_load_dbg_file(const struct process
* pcs
, struct module
* module
,
153 const char* dbg_name
, DWORD timestamp
)
156 HANDLE hFile
= INVALID_HANDLE_VALUE
, hMap
= 0;
157 const BYTE
* dbg_mapping
= NULL
;
160 TRACE("Processing DBG file %s\n", debugstr_a(dbg_name
));
162 if (path_find_symbol_file(pcs
, dbg_name
, NULL
, timestamp
, 0, tmp
, &module
->module
.DbgUnmatched
) &&
163 (hFile
= CreateFileA(tmp
, GENERIC_READ
, FILE_SHARE_READ
, NULL
,
164 OPEN_EXISTING
, FILE_ATTRIBUTE_NORMAL
, NULL
)) != INVALID_HANDLE_VALUE
&&
165 ((hMap
= CreateFileMappingW(hFile
, NULL
, PAGE_READONLY
, 0, 0, NULL
)) != 0) &&
166 ((dbg_mapping
= MapViewOfFile(hMap
, FILE_MAP_READ
, 0, 0, 0)) != NULL
))
168 const IMAGE_SEPARATE_DEBUG_HEADER
* hdr
;
169 const IMAGE_SECTION_HEADER
* sectp
;
170 const IMAGE_DEBUG_DIRECTORY
* dbg
;
172 hdr
= (const IMAGE_SEPARATE_DEBUG_HEADER
*)dbg_mapping
;
173 /* section headers come immediately after debug header */
174 sectp
= (const IMAGE_SECTION_HEADER
*)(hdr
+ 1);
175 /* and after that and the exported names comes the debug directory */
176 dbg
= (const IMAGE_DEBUG_DIRECTORY
*)
177 (dbg_mapping
+ sizeof(*hdr
) +
178 hdr
->NumberOfSections
* sizeof(IMAGE_SECTION_HEADER
) +
179 hdr
->ExportedNamesSize
);
181 ret
= pe_load_debug_directory(pcs
, module
, dbg_mapping
, sectp
,
182 hdr
->NumberOfSections
, dbg
,
183 hdr
->DebugDirectorySize
/ sizeof(*dbg
));
186 ERR("Couldn't find .DBG file %s (%s)\n", debugstr_a(dbg_name
), debugstr_a(tmp
));
188 if (dbg_mapping
) UnmapViewOfFile(dbg_mapping
);
189 if (hMap
) CloseHandle(hMap
);
190 if (hFile
!= INVALID_HANDLE_VALUE
) CloseHandle(hFile
);
194 /******************************************************************
195 * pe_load_msc_debug_info
197 * Process MSC debug information in PE file.
199 static BOOL
pe_load_msc_debug_info(const struct process
* pcs
,
200 struct module
* module
,
201 void* mapping
, const IMAGE_NT_HEADERS
* nth
)
204 const IMAGE_DATA_DIRECTORY
* dir
;
205 const IMAGE_DEBUG_DIRECTORY
*dbg
= NULL
;
208 /* Read in debug directory */
209 dir
= nth
->OptionalHeader
.DataDirectory
+ IMAGE_DIRECTORY_ENTRY_DEBUG
;
210 nDbg
= dir
->Size
/ sizeof(IMAGE_DEBUG_DIRECTORY
);
211 if (!nDbg
) return FALSE
;
213 dbg
= RtlImageRvaToVa(nth
, mapping
, dir
->VirtualAddress
, NULL
);
215 /* Parse debug directory */
216 if (nth
->FileHeader
.Characteristics
& IMAGE_FILE_DEBUG_STRIPPED
)
218 /* Debug info is stripped to .DBG file */
219 const IMAGE_DEBUG_MISC
* misc
= (const IMAGE_DEBUG_MISC
*)
220 ((const char*)mapping
+ dbg
->PointerToRawData
);
222 if (nDbg
!= 1 || dbg
->Type
!= IMAGE_DEBUG_TYPE_MISC
||
223 misc
->DataType
!= IMAGE_DEBUG_MISC_EXENAME
)
225 WINE_ERR("-Debug info stripped, but no .DBG file in module %s\n",
226 debugstr_w(module
->module
.ModuleName
));
230 ret
= pe_load_dbg_file(pcs
, module
, (const char*)misc
->Data
, nth
->FileHeader
.TimeDateStamp
);
235 const IMAGE_SECTION_HEADER
*sectp
= (const IMAGE_SECTION_HEADER
*)((const char*)&nth
->OptionalHeader
+ nth
->FileHeader
.SizeOfOptionalHeader
);
236 /* Debug info is embedded into PE module */
237 ret
= pe_load_debug_directory(pcs
, module
, mapping
, sectp
,
238 nth
->FileHeader
.NumberOfSections
, dbg
, nDbg
);
244 /***********************************************************************
245 * pe_load_export_debug_info
247 static BOOL
pe_load_export_debug_info(const struct process
* pcs
,
248 struct module
* module
,
249 void* mapping
, const IMAGE_NT_HEADERS
* nth
)
252 const IMAGE_EXPORT_DIRECTORY
* exports
;
253 DWORD base
= module
->module
.BaseOfImage
;
256 if (dbghelp_options
& SYMOPT_NO_PUBLICS
) return TRUE
;
259 /* Add start of DLL (better use the (yet unimplemented) Exe SymTag for this) */
260 /* FIXME: module.ModuleName isn't correctly set yet if it's passed in SymLoadModule */
261 symt_new_public(module
, NULL
, module
->module
.ModuleName
, base
, 1,
262 TRUE
/* FIXME */, TRUE
/* FIXME */);
265 /* Add entry point */
266 symt_new_public(module
, NULL
, "EntryPoint",
267 base
+ nth
->OptionalHeader
.AddressOfEntryPoint
, 1,
270 /* FIXME: we'd better store addresses linked to sections rather than
272 IMAGE_SECTION_HEADER
* section
;
273 /* Add start of sections */
274 section
= (IMAGE_SECTION_HEADER
*)
275 ((char*)&nth
->OptionalHeader
+ nth
->FileHeader
.SizeOfOptionalHeader
);
276 for (i
= 0; i
< nth
->FileHeader
.NumberOfSections
; i
++, section
++)
278 symt_new_public(module
, NULL
, section
->Name
,
279 RtlImageRvaToVa(nth
, mapping
, section
->VirtualAddress
, NULL
),
280 1, TRUE
/* FIXME */, TRUE
/* FIXME */);
284 /* Add exported functions */
285 if ((exports
= RtlImageDirectoryEntryToData(mapping
, FALSE
,
286 IMAGE_DIRECTORY_ENTRY_EXPORT
, &size
)))
288 const WORD
* ordinals
= NULL
;
289 const DWORD_PTR
* functions
= NULL
;
290 const DWORD
* names
= NULL
;
294 functions
= RtlImageRvaToVa(nth
, mapping
, exports
->AddressOfFunctions
, NULL
);
295 ordinals
= RtlImageRvaToVa(nth
, mapping
, exports
->AddressOfNameOrdinals
, NULL
);
296 names
= RtlImageRvaToVa(nth
, mapping
, exports
->AddressOfNames
, NULL
);
298 if (functions
&& ordinals
&& names
)
300 for (i
= 0; i
< exports
->NumberOfNames
; i
++)
302 if (!names
[i
]) continue;
303 symt_new_public(module
, NULL
,
304 RtlImageRvaToVa(nth
, mapping
, names
[i
], NULL
),
305 base
+ functions
[ordinals
[i
]],
306 1, TRUE
/* FIXME */, TRUE
/* FIXME */);
309 for (i
= 0; i
< exports
->NumberOfFunctions
; i
++)
311 if (!functions
[i
]) continue;
312 /* Check if we already added it with a name */
313 for (j
= 0; j
< exports
->NumberOfNames
; j
++)
314 if ((ordinals
[j
] == i
) && names
[j
]) break;
315 if (j
< exports
->NumberOfNames
) continue;
316 snprintf(buffer
, sizeof(buffer
), "%d", i
+ exports
->Base
);
317 symt_new_public(module
, NULL
, buffer
, base
+ (DWORD
)functions
[i
], 1,
318 TRUE
/* FIXME */, TRUE
/* FIXME */);
322 /* no real debug info, only entry points */
323 if (module
->module
.SymType
== SymDeferred
)
324 module
->module
.SymType
= SymExport
;
328 /******************************************************************
332 BOOL
pe_load_debug_info(const struct process
* pcs
, struct module
* module
)
338 IMAGE_NT_HEADERS
* nth
;
340 hFile
= CreateFileW(module
->module
.LoadedImageName
, GENERIC_READ
, FILE_SHARE_READ
,
341 NULL
, OPEN_EXISTING
, FILE_ATTRIBUTE_NORMAL
, NULL
);
342 if (hFile
== INVALID_HANDLE_VALUE
) return ret
;
343 if ((hMap
= CreateFileMappingW(hFile
, NULL
, PAGE_READONLY
, 0, 0, NULL
)) != 0)
345 if ((mapping
= MapViewOfFile(hMap
, FILE_MAP_READ
, 0, 0, 0)) != NULL
)
347 nth
= RtlImageNtHeader(mapping
);
349 if (!(dbghelp_options
& SYMOPT_PUBLICS_ONLY
))
351 ret
= pe_load_stabs(pcs
, module
, mapping
, nth
) ||
352 pe_load_msc_debug_info(pcs
, module
, mapping
, nth
);
353 /* if we still have no debug info (we could only get SymExport at this
354 * point), then do the SymExport except if we have an ELF container,
355 * in which case we'll rely on the export's on the ELF side
358 /* FIXME shouldn't we check that? if (!module_get_debug(pcs, module))l */
359 if (pe_load_export_debug_info(pcs
, module
, mapping
, nth
) && !ret
)
361 UnmapViewOfFile(mapping
);
370 /******************************************************************
371 * pe_load_native_module
374 struct module
* pe_load_native_module(struct process
* pcs
, const WCHAR
* name
,
375 HANDLE hFile
, DWORD base
, DWORD size
)
377 struct module
* module
= NULL
;
380 WCHAR loaded_name
[MAX_PATH
];
382 loaded_name
[0] = '\0';
388 if ((hFile
= FindExecutableImageExW(name
, pcs
->search_path
, loaded_name
, NULL
, NULL
)) == NULL
)
392 else if (name
) strcpyW(loaded_name
, name
);
393 else if (dbghelp_options
& SYMOPT_DEFERRED_LOADS
)
394 FIXME("Trouble ahead (no module name passed in deferred mode)\n");
396 if ((hMap
= CreateFileMappingW(hFile
, NULL
, PAGE_READONLY
, 0, 0, NULL
)) != NULL
)
400 if ((mapping
= MapViewOfFile(hMap
, FILE_MAP_READ
, 0, 0, 0)) != NULL
)
402 IMAGE_NT_HEADERS
* nth
= RtlImageNtHeader(mapping
);
406 if (!base
) base
= nth
->OptionalHeader
.ImageBase
;
407 if (!size
) size
= nth
->OptionalHeader
.SizeOfImage
;
409 module
= module_new(pcs
, loaded_name
, DMT_PE
, FALSE
, base
, size
,
410 nth
->FileHeader
.TimeDateStamp
,
411 nth
->OptionalHeader
.CheckSum
);
414 if (dbghelp_options
& SYMOPT_DEFERRED_LOADS
)
415 module
->module
.SymType
= SymDeferred
;
417 pe_load_debug_info(pcs
, module
);
420 ERR("could not load the module '%s'\n", debugstr_w(loaded_name
));
422 UnmapViewOfFile(mapping
);
426 if (opened
) CloseHandle(hFile
);
431 /******************************************************************
435 BOOL
pe_load_nt_header(HANDLE hProc
, DWORD64 base
, IMAGE_NT_HEADERS
* nth
)
437 IMAGE_DOS_HEADER dos
;
439 return ReadProcessMemory(hProc
, (char*)(DWORD_PTR
)base
, &dos
, sizeof(dos
), NULL
) &&
440 dos
.e_magic
== IMAGE_DOS_SIGNATURE
&&
441 ReadProcessMemory(hProc
, (char*)(DWORD_PTR
)(base
+ dos
.e_lfanew
),
442 nth
, sizeof(*nth
), NULL
) &&
443 nth
->Signature
== IMAGE_NT_SIGNATURE
;
446 /******************************************************************
447 * pe_load_builtin_module
450 struct module
* pe_load_builtin_module(struct process
* pcs
, const WCHAR
* name
,
451 DWORD64 base
, DWORD64 size
)
453 struct module
* module
= NULL
;
455 if (base
&& pcs
->dbg_hdr_addr
)
457 IMAGE_NT_HEADERS nth
;
459 if (pe_load_nt_header(pcs
->handle
, base
, &nth
))
461 if (!size
) size
= nth
.OptionalHeader
.SizeOfImage
;
462 module
= module_new(pcs
, name
, DMT_PE
, FALSE
, base
, size
,
463 nth
.FileHeader
.TimeDateStamp
,
464 nth
.OptionalHeader
.CheckSum
);
470 /***********************************************************************
471 * ImageDirectoryEntryToDataEx (DBGHELP.@)
473 * Search for specified directory in PE image
477 * base [in] Image base address
478 * image [in] TRUE - image has been loaded by loader, FALSE - raw file image
479 * dir [in] Target directory index
480 * size [out] Receives directory size
481 * section [out] Receives pointer to section header of section containing directory data
484 * Success: pointer to directory data
488 PVOID WINAPI
ImageDirectoryEntryToDataEx( PVOID base
, BOOLEAN image
, USHORT dir
, PULONG size
, PIMAGE_SECTION_HEADER
*section
)
490 const IMAGE_NT_HEADERS
*nt
;
494 if (section
) *section
= NULL
;
496 if (!(nt
= RtlImageNtHeader( base
))) return NULL
;
497 if (dir
>= nt
->OptionalHeader
.NumberOfRvaAndSizes
) return NULL
;
498 if (!(addr
= nt
->OptionalHeader
.DataDirectory
[dir
].VirtualAddress
)) return NULL
;
500 *size
= nt
->OptionalHeader
.DataDirectory
[dir
].Size
;
501 if (image
|| addr
< nt
->OptionalHeader
.SizeOfHeaders
) return (char *)base
+ addr
;
503 return RtlImageRvaToVa( nt
, base
, addr
, section
);
506 /***********************************************************************
507 * ImageDirectoryEntryToData (DBGHELP.@)
510 * See ImageDirectoryEntryToDataEx
512 PVOID WINAPI
ImageDirectoryEntryToData( PVOID base
, BOOLEAN image
, USHORT dir
, PULONG size
)
514 return ImageDirectoryEntryToDataEx( base
, image
, dir
, size
, NULL
);