Missing Phi Function in MLIL
Nobody has claimed this yet.
Assessment
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Newbie friendliness
- 25/100
- Issue type
- Bug
- Clarity
- Mostly clear
- Activity status
- Stale
- Tech stack
- cpp
- Domain
- reverse-engineering
Research direction
Open sacsess.tar.gz at CVTUTF8Scraper::Write (0x140003750) and inspect the MLIL blocks where rdx_2 is used, focusing on the block at address 93. Compare its definitions with the existing dwSize#4 phi; done means rdx_2#4 is defined by a phi combining rdx_2#2 and rdx_2#3.
Written by the indexing model from the issue text.
Description
Version and Platform (required):
- Binary Ninja Version: 3.5.4425-dev
- OS: Arch Linux
- OS Version: -
- CPU Architecture: x64
Bug Description:
Take a look at the following CFG:
rdx_2#2 and rdx_2#3 are assigned in the upper blocks which lead into the block at address 93.
In that block rdx_2#4 is used, but not defined.
It should be defined by a phi function in the form of rdx_2#4 = phi(rdx_2#2, rdx_2#3) at the start of the block, like the one for dwSize#4
Steps To Reproduce:
- Open sacsess.tar.gz at
CVTUTF8Scraper::Write(Addr: 0x140003750) - Look at the MLIL representation of the blocks where
rdx_2is used.
Expected Behavior:
There should be phi function defining rdx_2#4
- Dominant language
- C++
- Stars
- 1.3k
- Forks
- 298
- Avg merge
- 5d 5h
- Merged PRs (30d)
- 19
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from Vector35/binaryninja-api
-
Difficulty 1/5 1-3 hours Newbie friendliness 88/100
Vector35/binaryninja-api#8540 ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 88/100
Vector35/binaryninja-api#8516 ·
-
Difficulty 1/5 Under an hour Newbie friendliness 92/100
Vector35/binaryninja-api#8503 ·
-
Difficulty 1/5 Under an hour Newbie friendliness 88/100
Vector35/binaryninja-api#8446 ·
-
Difficulty 1/5 Under an hour Newbie friendliness 88/100
Vector35/binaryninja-api#8444 ·
All issues in Vector35/binaryninja-api
Similar issues
-
Difficulty 2/5 1-3 hours Newbie friendliness 86/100
-
Sensor initialization takes very long when `--initial-sim-time` is set to current UNIX timestamp Open
Difficulty 2/5 1-3 hours Newbie friendliness 78/100
gazebosim/gz-sensors#662 · 1 comment ·
-
enhancement
Difficulty 2/5 1-3 hours Newbie friendliness 76/100
-
comp-datalake
Difficulty 2/5 1-3 hours Newbie friendliness 88/100
ClickHouse/ClickHouse#121222 ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 68/100
LadybirdBrowser/ladybird#12123 ·