dis_arm64.lua 30 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233
  1. ----------------------------------------------------------------------------
  2. -- LuaJIT ARM64 disassembler module.
  3. --
  4. -- Copyright (C) 2005-2025 Mike Pall. All rights reserved.
  5. -- Released under the MIT license. See Copyright Notice in luajit.h
  6. --
  7. -- Contributed by Djordje Kovacevic and Stefan Pejic from RT-RK.com.
  8. -- Sponsored by Cisco Systems, Inc.
  9. ----------------------------------------------------------------------------
  10. -- This is a helper module used by the LuaJIT machine code dumper module.
  11. --
  12. -- It disassembles most user-mode AArch64 instructions.
  13. -- NYI: Advanced SIMD and VFP instructions.
  14. ------------------------------------------------------------------------------
  15. local type = type
  16. local sub, byte, format = string.sub, string.byte, string.format
  17. local match, gmatch, gsub = string.match, string.gmatch, string.gsub
  18. local concat = table.concat
  19. local bit = require("bit")
  20. local band, bor, bxor, tohex = bit.band, bit.bor, bit.bxor, bit.tohex
  21. local lshift, rshift, arshift = bit.lshift, bit.rshift, bit.arshift
  22. local ror = bit.ror
  23. ------------------------------------------------------------------------------
  24. -- Opcode maps
  25. ------------------------------------------------------------------------------
  26. local map_adr = { -- PC-relative addressing.
  27. shift = 31, mask = 1,
  28. [0] = "adrDBx", "adrpDBx"
  29. }
  30. local map_addsubi = { -- Add/subtract immediate.
  31. shift = 29, mask = 3,
  32. [0] = "add|movDNIg", "adds|cmnD0NIg", "subDNIg", "subs|cmpD0NIg",
  33. }
  34. local map_logi = { -- Logical immediate.
  35. shift = 31, mask = 1,
  36. [0] = {
  37. shift = 22, mask = 1,
  38. [0] = {
  39. shift = 29, mask = 3,
  40. [0] = "andDNig", "orr|movDN0ig", "eorDNig", "ands|tstD0Nig"
  41. },
  42. false -- unallocated
  43. },
  44. {
  45. shift = 29, mask = 3,
  46. [0] = "andDNig", "orr|movDN0ig", "eorDNig", "ands|tstD0Nig"
  47. }
  48. }
  49. local map_movwi = { -- Move wide immediate.
  50. shift = 31, mask = 1,
  51. [0] = {
  52. shift = 22, mask = 1,
  53. [0] = {
  54. shift = 29, mask = 3,
  55. [0] = "movnDWRg", false, "movz|movDYRg", "movkDWRg"
  56. }, false -- unallocated
  57. },
  58. {
  59. shift = 29, mask = 3,
  60. [0] = "movnDWRg", false, "movz|movDYRg", "movkDWRg"
  61. },
  62. }
  63. local map_bitf = { -- Bitfield.
  64. shift = 31, mask = 1,
  65. [0] = {
  66. shift = 22, mask = 1,
  67. [0] = {
  68. shift = 29, mask = 3,
  69. [0] = "sbfm|sbfiz|sbfx|asr|sxtw|sxth|sxtbDN12w",
  70. "bfm|bfi|bfxilDN13w",
  71. "ubfm|ubfiz|ubfx|lsr|lsl|uxth|uxtbDN12w"
  72. }
  73. },
  74. {
  75. shift = 22, mask = 1,
  76. {
  77. shift = 29, mask = 3,
  78. [0] = "sbfm|sbfiz|sbfx|asr|sxtw|sxth|sxtbDN12x",
  79. "bfm|bfi|bfxilDN13x",
  80. "ubfm|ubfiz|ubfx|lsr|lsl|uxth|uxtbDN12x"
  81. }
  82. }
  83. }
  84. local map_datai = { -- Data processing - immediate.
  85. shift = 23, mask = 7,
  86. [0] = map_adr, map_adr, map_addsubi, false,
  87. map_logi, map_movwi, map_bitf,
  88. {
  89. shift = 15, mask = 0x1c0c1,
  90. [0] = "extr|rorDNM4w", [0x10080] = "extr|rorDNM4x",
  91. [0x10081] = "extr|rorDNM4x"
  92. }
  93. }
  94. local map_logsr = { -- Logical, shifted register.
  95. shift = 31, mask = 1,
  96. [0] = {
  97. shift = 15, mask = 1,
  98. [0] = {
  99. shift = 29, mask = 3,
  100. [0] = {
  101. shift = 21, mask = 1,
  102. [0] = "andDNMSg", "bicDNMSg"
  103. },
  104. {
  105. shift = 21, mask = 1,
  106. [0] = "orr|movDN0MSg", "orn|mvnDN0MSg"
  107. },
  108. {
  109. shift = 21, mask = 1,
  110. [0] = "eorDNMSg", "eonDNMSg"
  111. },
  112. {
  113. shift = 21, mask = 1,
  114. [0] = "ands|tstD0NMSg", "bicsDNMSg"
  115. }
  116. },
  117. false -- unallocated
  118. },
  119. {
  120. shift = 29, mask = 3,
  121. [0] = {
  122. shift = 21, mask = 1,
  123. [0] = "andDNMSg", "bicDNMSg"
  124. },
  125. {
  126. shift = 21, mask = 1,
  127. [0] = "orr|movDN0MSg", "orn|mvnDN0MSg"
  128. },
  129. {
  130. shift = 21, mask = 1,
  131. [0] = "eorDNMSg", "eonDNMSg"
  132. },
  133. {
  134. shift = 21, mask = 1,
  135. [0] = "ands|tstD0NMSg", "bicsDNMSg"
  136. }
  137. }
  138. }
  139. local map_assh = {
  140. shift = 31, mask = 1,
  141. [0] = {
  142. shift = 15, mask = 1,
  143. [0] = {
  144. shift = 29, mask = 3,
  145. [0] = {
  146. shift = 22, mask = 3,
  147. [0] = "addDNMSg", "addDNMSg", "addDNMSg", "addDNMg"
  148. },
  149. {
  150. shift = 22, mask = 3,
  151. [0] = "adds|cmnD0NMSg", "adds|cmnD0NMSg",
  152. "adds|cmnD0NMSg", "adds|cmnD0NMg"
  153. },
  154. {
  155. shift = 22, mask = 3,
  156. [0] = "sub|negDN0MSg", "sub|negDN0MSg", "sub|negDN0MSg", "sub|negDN0Mg"
  157. },
  158. {
  159. shift = 22, mask = 3,
  160. [0] = "subs|cmp|negsD0N0MzSg", "subs|cmp|negsD0N0MzSg",
  161. "subs|cmp|negsD0N0MzSg", "subs|cmp|negsD0N0Mzg"
  162. },
  163. },
  164. false -- unallocated
  165. },
  166. {
  167. shift = 29, mask = 3,
  168. [0] = {
  169. shift = 22, mask = 3,
  170. [0] = "addDNMSg", "addDNMSg", "addDNMSg", "addDNMg"
  171. },
  172. {
  173. shift = 22, mask = 3,
  174. [0] = "adds|cmnD0NMSg", "adds|cmnD0NMSg", "adds|cmnD0NMSg",
  175. "adds|cmnD0NMg"
  176. },
  177. {
  178. shift = 22, mask = 3,
  179. [0] = "sub|negDN0MSg", "sub|negDN0MSg", "sub|negDN0MSg", "sub|negDN0Mg"
  180. },
  181. {
  182. shift = 22, mask = 3,
  183. [0] = "subs|cmp|negsD0N0MzSg", "subs|cmp|negsD0N0MzSg",
  184. "subs|cmp|negsD0N0MzSg", "subs|cmp|negsD0N0Mzg"
  185. }
  186. }
  187. }
  188. local map_addsubsh = { -- Add/subtract, shifted register.
  189. shift = 22, mask = 3,
  190. [0] = map_assh, map_assh, map_assh
  191. }
  192. local map_addsubex = { -- Add/subtract, extended register.
  193. shift = 22, mask = 3,
  194. [0] = {
  195. shift = 29, mask = 3,
  196. [0] = "addDNMXg", "adds|cmnD0NMXg", "subDNMXg", "subs|cmpD0NMzXg",
  197. }
  198. }
  199. local map_addsubc = { -- Add/subtract, with carry.
  200. shift = 10, mask = 63,
  201. [0] = {
  202. shift = 29, mask = 3,
  203. [0] = "adcDNMg", "adcsDNMg", "sbc|ngcDN0Mg", "sbcs|ngcsDN0Mg",
  204. }
  205. }
  206. local map_ccomp = {
  207. shift = 4, mask = 1,
  208. [0] = {
  209. shift = 10, mask = 3,
  210. [0] = { -- Conditional compare register.
  211. shift = 29, mask = 3,
  212. "ccmnNMVCg", false, "ccmpNMVCg",
  213. },
  214. [2] = { -- Conditional compare immediate.
  215. shift = 29, mask = 3,
  216. "ccmnN5VCg", false, "ccmpN5VCg",
  217. }
  218. }
  219. }
  220. local map_csel = { -- Conditional select.
  221. shift = 11, mask = 1,
  222. [0] = {
  223. shift = 10, mask = 1,
  224. [0] = {
  225. shift = 29, mask = 3,
  226. [0] = "cselDNMzCg", false, "csinv|cinv|csetmDNMcg", false,
  227. },
  228. {
  229. shift = 29, mask = 3,
  230. [0] = "csinc|cinc|csetDNMcg", false, "csneg|cnegDNMcg", false,
  231. }
  232. }
  233. }
  234. local map_data1s = { -- Data processing, 1 source.
  235. shift = 29, mask = 1,
  236. [0] = {
  237. shift = 31, mask = 1,
  238. [0] = {
  239. shift = 10, mask = 0x7ff,
  240. [0] = "rbitDNg", "rev16DNg", "revDNw", false, "clzDNg", "clsDNg"
  241. },
  242. {
  243. shift = 10, mask = 0x7ff,
  244. [0] = "rbitDNg", "rev16DNg", "rev32DNx", "revDNx", "clzDNg", "clsDNg"
  245. }
  246. }
  247. }
  248. local map_data2s = { -- Data processing, 2 sources.
  249. shift = 29, mask = 1,
  250. [0] = {
  251. shift = 10, mask = 63,
  252. false, "udivDNMg", "sdivDNMg", false, false, false, false, "lslDNMg",
  253. "lsrDNMg", "asrDNMg", "rorDNMg"
  254. }
  255. }
  256. local map_data3s = { -- Data processing, 3 sources.
  257. shift = 29, mask = 7,
  258. [0] = {
  259. shift = 21, mask = 7,
  260. [0] = {
  261. shift = 15, mask = 1,
  262. [0] = "madd|mulDNMA0g", "msub|mnegDNMA0g"
  263. }
  264. }, false, false, false,
  265. {
  266. shift = 15, mask = 1,
  267. [0] = {
  268. shift = 21, mask = 7,
  269. [0] = "madd|mulDNMA0g", "smaddl|smullDxNMwA0x", "smulhDNMx", false,
  270. false, "umaddl|umullDxNMwA0x", "umulhDNMx"
  271. },
  272. {
  273. shift = 21, mask = 7,
  274. [0] = "msub|mnegDNMA0g", "smsubl|smneglDxNMwA0x", false, false,
  275. false, "umsubl|umneglDxNMwA0x"
  276. }
  277. }
  278. }
  279. local map_datar = { -- Data processing, register.
  280. shift = 28, mask = 1,
  281. [0] = {
  282. shift = 24, mask = 1,
  283. [0] = map_logsr,
  284. {
  285. shift = 21, mask = 1,
  286. [0] = map_addsubsh, map_addsubex
  287. }
  288. },
  289. {
  290. shift = 21, mask = 15,
  291. [0] = map_addsubc, false, map_ccomp, false, map_csel, false,
  292. {
  293. shift = 30, mask = 1,
  294. [0] = map_data2s, map_data1s
  295. },
  296. false, map_data3s, map_data3s, map_data3s, map_data3s, map_data3s,
  297. map_data3s, map_data3s, map_data3s
  298. }
  299. }
  300. local map_lrl = { -- Load register, literal.
  301. shift = 26, mask = 1,
  302. [0] = {
  303. shift = 30, mask = 3,
  304. [0] = "ldrDwB", "ldrDxB", "ldrswDxB"
  305. },
  306. {
  307. shift = 30, mask = 3,
  308. [0] = "ldrDsB", "ldrDdB"
  309. }
  310. }
  311. local map_lsriind = { -- Load/store register, immediate pre/post-indexed.
  312. shift = 30, mask = 3,
  313. [0] = {
  314. shift = 26, mask = 1,
  315. [0] = {
  316. shift = 22, mask = 3,
  317. [0] = "strbDwzL", "ldrbDwzL", "ldrsbDxzL", "ldrsbDwzL"
  318. }
  319. },
  320. {
  321. shift = 26, mask = 1,
  322. [0] = {
  323. shift = 22, mask = 3,
  324. [0] = "strhDwzL", "ldrhDwzL", "ldrshDxzL", "ldrshDwzL"
  325. }
  326. },
  327. {
  328. shift = 26, mask = 1,
  329. [0] = {
  330. shift = 22, mask = 3,
  331. [0] = "strDwzL", "ldrDwzL", "ldrswDxzL"
  332. },
  333. {
  334. shift = 22, mask = 3,
  335. [0] = "strDszL", "ldrDszL"
  336. }
  337. },
  338. {
  339. shift = 26, mask = 1,
  340. [0] = {
  341. shift = 22, mask = 3,
  342. [0] = "strDxzL", "ldrDxzL"
  343. },
  344. {
  345. shift = 22, mask = 3,
  346. [0] = "strDdzL", "ldrDdzL"
  347. }
  348. }
  349. }
  350. local map_lsriro = {
  351. shift = 21, mask = 1,
  352. [0] = { -- Load/store register immediate.
  353. shift = 10, mask = 3,
  354. [0] = { -- Unscaled immediate.
  355. shift = 26, mask = 1,
  356. [0] = {
  357. shift = 30, mask = 3,
  358. [0] = {
  359. shift = 22, mask = 3,
  360. [0] = "sturbDwK", "ldurbDwK"
  361. },
  362. {
  363. shift = 22, mask = 3,
  364. [0] = "sturhDwK", "ldurhDwK"
  365. },
  366. {
  367. shift = 22, mask = 3,
  368. [0] = "sturDwK", "ldurDwK"
  369. },
  370. {
  371. shift = 22, mask = 3,
  372. [0] = "sturDxK", "ldurDxK"
  373. }
  374. }
  375. }, map_lsriind, false, map_lsriind
  376. },
  377. { -- Load/store register, register offset.
  378. shift = 10, mask = 3,
  379. [2] = {
  380. shift = 26, mask = 1,
  381. [0] = {
  382. shift = 30, mask = 3,
  383. [0] = {
  384. shift = 22, mask = 3,
  385. [0] = "strbDwO", "ldrbDwO", "ldrsbDxO", "ldrsbDwO"
  386. },
  387. {
  388. shift = 22, mask = 3,
  389. [0] = "strhDwO", "ldrhDwO", "ldrshDxO", "ldrshDwO"
  390. },
  391. {
  392. shift = 22, mask = 3,
  393. [0] = "strDwO", "ldrDwO", "ldrswDxO"
  394. },
  395. {
  396. shift = 22, mask = 3,
  397. [0] = "strDxO", "ldrDxO"
  398. }
  399. },
  400. {
  401. shift = 30, mask = 3,
  402. [2] = {
  403. shift = 22, mask = 3,
  404. [0] = "strDsO", "ldrDsO"
  405. },
  406. [3] = {
  407. shift = 22, mask = 3,
  408. [0] = "strDdO", "ldrDdO"
  409. }
  410. }
  411. }
  412. }
  413. }
  414. local map_lsp = { -- Load/store register pair, offset.
  415. shift = 22, mask = 1,
  416. [0] = {
  417. shift = 30, mask = 3,
  418. [0] = {
  419. shift = 26, mask = 1,
  420. [0] = "stpDzAzwP", "stpDzAzsP",
  421. },
  422. {
  423. shift = 26, mask = 1,
  424. "stpDzAzdP"
  425. },
  426. {
  427. shift = 26, mask = 1,
  428. [0] = "stpDzAzxP"
  429. }
  430. },
  431. {
  432. shift = 30, mask = 3,
  433. [0] = {
  434. shift = 26, mask = 1,
  435. [0] = "ldpDzAzwP", "ldpDzAzsP",
  436. },
  437. {
  438. shift = 26, mask = 1,
  439. [0] = "ldpswDAxP", "ldpDzAzdP"
  440. },
  441. {
  442. shift = 26, mask = 1,
  443. [0] = "ldpDzAzxP"
  444. }
  445. }
  446. }
  447. local map_ls = { -- Loads and stores.
  448. shift = 24, mask = 0x31,
  449. [0x10] = map_lrl, [0x30] = map_lsriro,
  450. [0x20] = {
  451. shift = 23, mask = 3,
  452. map_lsp, map_lsp, map_lsp
  453. },
  454. [0x21] = {
  455. shift = 23, mask = 3,
  456. map_lsp, map_lsp, map_lsp
  457. },
  458. [0x31] = {
  459. shift = 26, mask = 1,
  460. [0] = {
  461. shift = 30, mask = 3,
  462. [0] = {
  463. shift = 22, mask = 3,
  464. [0] = "strbDwzU", "ldrbDwzU"
  465. },
  466. {
  467. shift = 22, mask = 3,
  468. [0] = "strhDwzU", "ldrhDwzU"
  469. },
  470. {
  471. shift = 22, mask = 3,
  472. [0] = "strDwzU", "ldrDwzU"
  473. },
  474. {
  475. shift = 22, mask = 3,
  476. [0] = "strDxzU", "ldrDxzU"
  477. }
  478. },
  479. {
  480. shift = 30, mask = 3,
  481. [2] = {
  482. shift = 22, mask = 3,
  483. [0] = "strDszU", "ldrDszU"
  484. },
  485. [3] = {
  486. shift = 22, mask = 3,
  487. [0] = "strDdzU", "ldrDdzU"
  488. }
  489. }
  490. },
  491. }
  492. local map_datafp = { -- Data processing, SIMD and FP.
  493. shift = 28, mask = 7,
  494. { -- 001
  495. shift = 24, mask = 1,
  496. [0] = {
  497. shift = 21, mask = 1,
  498. {
  499. shift = 10, mask = 3,
  500. [0] = {
  501. shift = 12, mask = 1,
  502. [0] = {
  503. shift = 13, mask = 1,
  504. [0] = {
  505. shift = 14, mask = 1,
  506. [0] = {
  507. shift = 15, mask = 1,
  508. [0] = { -- FP/int conversion.
  509. shift = 31, mask = 1,
  510. [0] = {
  511. shift = 16, mask = 0xff,
  512. [0x20] = "fcvtnsDwNs", [0x21] = "fcvtnuDwNs",
  513. [0x22] = "scvtfDsNw", [0x23] = "ucvtfDsNw",
  514. [0x24] = "fcvtasDwNs", [0x25] = "fcvtauDwNs",
  515. [0x26] = "fmovDwNs", [0x27] = "fmovDsNw",
  516. [0x28] = "fcvtpsDwNs", [0x29] = "fcvtpuDwNs",
  517. [0x30] = "fcvtmsDwNs", [0x31] = "fcvtmuDwNs",
  518. [0x38] = "fcvtzsDwNs", [0x39] = "fcvtzuDwNs",
  519. [0x60] = "fcvtnsDwNd", [0x61] = "fcvtnuDwNd",
  520. [0x62] = "scvtfDdNw", [0x63] = "ucvtfDdNw",
  521. [0x64] = "fcvtasDwNd", [0x65] = "fcvtauDwNd",
  522. [0x68] = "fcvtpsDwNd", [0x69] = "fcvtpuDwNd",
  523. [0x70] = "fcvtmsDwNd", [0x71] = "fcvtmuDwNd",
  524. [0x78] = "fcvtzsDwNd", [0x79] = "fcvtzuDwNd"
  525. },
  526. {
  527. shift = 16, mask = 0xff,
  528. [0x20] = "fcvtnsDxNs", [0x21] = "fcvtnuDxNs",
  529. [0x22] = "scvtfDsNx", [0x23] = "ucvtfDsNx",
  530. [0x24] = "fcvtasDxNs", [0x25] = "fcvtauDxNs",
  531. [0x28] = "fcvtpsDxNs", [0x29] = "fcvtpuDxNs",
  532. [0x30] = "fcvtmsDxNs", [0x31] = "fcvtmuDxNs",
  533. [0x38] = "fcvtzsDxNs", [0x39] = "fcvtzuDxNs",
  534. [0x60] = "fcvtnsDxNd", [0x61] = "fcvtnuDxNd",
  535. [0x62] = "scvtfDdNx", [0x63] = "ucvtfDdNx",
  536. [0x64] = "fcvtasDxNd", [0x65] = "fcvtauDxNd",
  537. [0x66] = "fmovDxNd", [0x67] = "fmovDdNx",
  538. [0x68] = "fcvtpsDxNd", [0x69] = "fcvtpuDxNd",
  539. [0x70] = "fcvtmsDxNd", [0x71] = "fcvtmuDxNd",
  540. [0x78] = "fcvtzsDxNd", [0x79] = "fcvtzuDxNd"
  541. }
  542. }
  543. },
  544. { -- FP data-processing, 1 source.
  545. shift = 31, mask = 1,
  546. [0] = {
  547. shift = 22, mask = 3,
  548. [0] = {
  549. shift = 15, mask = 63,
  550. [0] = "fmovDNf", "fabsDNf", "fnegDNf",
  551. "fsqrtDNf", false, "fcvtDdNs", false, false,
  552. "frintnDNf", "frintpDNf", "frintmDNf", "frintzDNf",
  553. "frintaDNf", false, "frintxDNf", "frintiDNf",
  554. },
  555. {
  556. shift = 15, mask = 63,
  557. [0] = "fmovDNf", "fabsDNf", "fnegDNf",
  558. "fsqrtDNf", "fcvtDsNd", false, false, false,
  559. "frintnDNf", "frintpDNf", "frintmDNf", "frintzDNf",
  560. "frintaDNf", false, "frintxDNf", "frintiDNf",
  561. }
  562. }
  563. }
  564. },
  565. { -- FP compare.
  566. shift = 31, mask = 1,
  567. [0] = {
  568. shift = 14, mask = 3,
  569. [0] = {
  570. shift = 23, mask = 1,
  571. [0] = {
  572. shift = 0, mask = 31,
  573. [0] = "fcmpNMf", [8] = "fcmpNZf",
  574. [16] = "fcmpeNMf", [24] = "fcmpeNZf",
  575. }
  576. }
  577. }
  578. }
  579. },
  580. { -- FP immediate.
  581. shift = 31, mask = 1,
  582. [0] = {
  583. shift = 5, mask = 31,
  584. [0] = {
  585. shift = 23, mask = 1,
  586. [0] = "fmovDFf"
  587. }
  588. }
  589. }
  590. },
  591. { -- FP conditional compare.
  592. shift = 31, mask = 1,
  593. [0] = {
  594. shift = 23, mask = 1,
  595. [0] = {
  596. shift = 4, mask = 1,
  597. [0] = "fccmpNMVCf", "fccmpeNMVCf"
  598. }
  599. }
  600. },
  601. { -- FP data-processing, 2 sources.
  602. shift = 31, mask = 1,
  603. [0] = {
  604. shift = 23, mask = 1,
  605. [0] = {
  606. shift = 12, mask = 15,
  607. [0] = "fmulDNMf", "fdivDNMf", "faddDNMf", "fsubDNMf",
  608. "fmaxDNMf", "fminDNMf", "fmaxnmDNMf", "fminnmDNMf",
  609. "fnmulDNMf"
  610. }
  611. }
  612. },
  613. { -- FP conditional select.
  614. shift = 31, mask = 1,
  615. [0] = {
  616. shift = 23, mask = 1,
  617. [0] = "fcselDNMCf"
  618. }
  619. }
  620. }
  621. },
  622. { -- FP data-processing, 3 sources.
  623. shift = 31, mask = 1,
  624. [0] = {
  625. shift = 15, mask = 1,
  626. [0] = {
  627. shift = 21, mask = 5,
  628. [0] = "fmaddDNMAf", "fnmaddDNMAf"
  629. },
  630. {
  631. shift = 21, mask = 5,
  632. [0] = "fmsubDNMAf", "fnmsubDNMAf"
  633. }
  634. }
  635. }
  636. },
  637. { -- 010
  638. shift = 0, mask = 0x81f8fc00,
  639. [0x100e400] = "moviDdG"
  640. }
  641. }
  642. local map_br = { -- Branches, exception generating and system instructions.
  643. shift = 29, mask = 7,
  644. [0] = "bB",
  645. { -- Compare & branch, immediate.
  646. shift = 24, mask = 3,
  647. [0] = "cbzDBg", "cbnzDBg", "tbzDTBw", "tbnzDTBw"
  648. },
  649. { -- Conditional branch, immediate.
  650. shift = 24, mask = 3,
  651. [0] = {
  652. shift = 4, mask = 1,
  653. [0] = {
  654. shift = 0, mask = 15,
  655. [0] = "beqB", "bneB", "bhsB", "bloB", "bmiB", "bplB", "bvsB", "bvcB",
  656. "bhiB", "blsB", "bgeB", "bltB", "bgtB", "bleB", "balB"
  657. }
  658. }
  659. }, false, "blB",
  660. { -- Compare & branch, immediate.
  661. shift = 24, mask = 3,
  662. [0] = "cbzDBg", "cbnzDBg", "tbzDTBx", "tbnzDTBx"
  663. },
  664. {
  665. shift = 24, mask = 3,
  666. [0] = { -- Exception generation.
  667. shift = 0, mask = 0xe0001f,
  668. [0x200000] = "brkW"
  669. },
  670. { -- System instructions.
  671. shift = 0, mask = 0x3fffff,
  672. [0x03201f] = "nop",
  673. [0x03245f] = "bti c",
  674. [0x03249f] = "bti j",
  675. [0x0324df] = "bti jc",
  676. },
  677. { -- Unconditional branch, register.
  678. shift = 0, mask = 0xfffc1f,
  679. [0x1f0000] = "brNx", [0x3f0000] = "blrNx",
  680. [0x5f0000] = "retNx"
  681. },
  682. }
  683. }
  684. local map_init = {
  685. shift = 25, mask = 15,
  686. [0] = false, false, false, false, map_ls, map_datar, map_ls, map_datafp,
  687. map_datai, map_datai, map_br, map_br, map_ls, map_datar, map_ls, map_datafp
  688. }
  689. ------------------------------------------------------------------------------
  690. local map_regs = { x = {}, w = {}, d = {}, s = {} }
  691. for i=0,30 do
  692. map_regs.x[i] = "x"..i
  693. map_regs.w[i] = "w"..i
  694. map_regs.d[i] = "d"..i
  695. map_regs.s[i] = "s"..i
  696. end
  697. map_regs.x[31] = "sp"
  698. map_regs.w[31] = "wsp"
  699. map_regs.d[31] = "d31"
  700. map_regs.s[31] = "s31"
  701. local map_cond = {
  702. [0] = "eq", "ne", "cs", "cc", "mi", "pl", "vs", "vc",
  703. "hi", "ls", "ge", "lt", "gt", "le", "al",
  704. }
  705. local map_shift = { [0] = "lsl", "lsr", "asr", "ror"}
  706. local map_extend = {
  707. [0] = "uxtb", "uxth", "uxtw", "uxtx", "sxtb", "sxth", "sxtw", "sxtx",
  708. }
  709. ------------------------------------------------------------------------------
  710. -- Output a nicely formatted line with an opcode and operands.
  711. local function putop(ctx, text, operands)
  712. local pos = ctx.pos
  713. local extra = ""
  714. if ctx.rel then
  715. local sym = ctx.symtab[ctx.rel]
  716. if sym then
  717. extra = "\t->"..sym
  718. end
  719. end
  720. if ctx.hexdump > 0 then
  721. ctx.out(format("%08x %s %-5s %s%s\n",
  722. ctx.addr+pos, tohex(ctx.op), text, concat(operands, ", "), extra))
  723. else
  724. ctx.out(format("%08x %-5s %s%s\n",
  725. ctx.addr+pos, text, concat(operands, ", "), extra))
  726. end
  727. ctx.pos = pos + 4
  728. end
  729. -- Fallback for unknown opcodes.
  730. local function unknown(ctx)
  731. return putop(ctx, ".long", { "0x"..tohex(ctx.op) })
  732. end
  733. local function match_reg(p, pat, regnum)
  734. return map_regs[match(pat, p.."%w-([xwds])")][regnum]
  735. end
  736. local function fmt_hex32(x)
  737. if x < 0 then
  738. return tohex(x)
  739. else
  740. return format("%x", x)
  741. end
  742. end
  743. local imm13_rep = { 0x55555555, 0x11111111, 0x01010101, 0x00010001, 0x00000001 }
  744. local function decode_imm13(op)
  745. local imms = band(rshift(op, 10), 63)
  746. local immr = band(rshift(op, 16), 63)
  747. if band(op, 0x00400000) == 0 then
  748. local len = 5
  749. if imms >= 56 then
  750. if imms >= 60 then len = 1 else len = 2 end
  751. elseif imms >= 48 then len = 3 elseif imms >= 32 then len = 4 end
  752. local l = lshift(1, len)-1
  753. local s = band(imms, l)
  754. local r = band(immr, l)
  755. local imm = ror(rshift(-1, 31-s), r)
  756. if len ~= 5 then imm = band(imm, lshift(1, l)-1) + rshift(imm, 31-l) end
  757. imm = imm * imm13_rep[len]
  758. local ix = fmt_hex32(imm)
  759. if rshift(op, 31) ~= 0 then
  760. return ix..tohex(imm)
  761. else
  762. return ix
  763. end
  764. else
  765. local lo, hi = -1, 0
  766. if imms < 32 then lo = rshift(-1, 31-imms) else hi = rshift(-1, 63-imms) end
  767. if immr ~= 0 then
  768. lo, hi = ror(lo, immr), ror(hi, immr)
  769. local x = immr == 32 and 0 or band(bxor(lo, hi), lshift(-1, 32-immr))
  770. lo, hi = bxor(lo, x), bxor(hi, x)
  771. if immr >= 32 then lo, hi = hi, lo end
  772. end
  773. if hi ~= 0 then
  774. return fmt_hex32(hi)..tohex(lo)
  775. else
  776. return fmt_hex32(lo)
  777. end
  778. end
  779. end
  780. local function parse_immpc(op, name)
  781. if name == "b" or name == "bl" then
  782. return arshift(lshift(op, 6), 4)
  783. elseif name == "adr" or name == "adrp" then
  784. local immlo = band(rshift(op, 29), 3)
  785. local immhi = lshift(arshift(lshift(op, 8), 13), 2)
  786. return bor(immhi, immlo)
  787. elseif name == "tbz" or name == "tbnz" then
  788. return lshift(arshift(lshift(op, 13), 18), 2)
  789. else
  790. return lshift(arshift(lshift(op, 8), 13), 2)
  791. end
  792. end
  793. local function parse_fpimm8(op)
  794. local sign = band(op, 0x100000) == 0 and 1 or -1
  795. local exp = bxor(rshift(arshift(lshift(op, 12), 5), 24), 0x80) - 131
  796. local frac = 16+band(rshift(op, 13), 15)
  797. return sign * frac * 2^exp
  798. end
  799. local function decode_fpmovi(op)
  800. local lo = rshift(op, 5)
  801. local hi = rshift(op, 9)
  802. lo = bor(band(lo, 1) * 0xff, band(lo, 2) * 0x7f80, band(lo, 4) * 0x3fc000,
  803. band(lo, 8) * 0x1fe00000)
  804. hi = bor(band(hi, 1) * 0xff, band(hi, 0x80) * 0x1fe,
  805. band(hi, 0x100) * 0xff00, band(hi, 0x200) * 0x7f8000)
  806. if hi ~= 0 then
  807. return fmt_hex32(hi)..tohex(lo)
  808. else
  809. return fmt_hex32(lo)
  810. end
  811. end
  812. local function prefer_bfx(sf, uns, imms, immr)
  813. if imms < immr or imms == 31 or imms == 63 then
  814. return false
  815. end
  816. if immr == 0 then
  817. if sf == 0 and (imms == 7 or imms == 15) then
  818. return false
  819. end
  820. if sf ~= 0 and uns == 0 and (imms == 7 or imms == 15 or imms == 31) then
  821. return false
  822. end
  823. end
  824. return true
  825. end
  826. -- Disassemble a single instruction.
  827. local function disass_ins(ctx)
  828. local pos = ctx.pos
  829. local b0, b1, b2, b3 = byte(ctx.code, pos+1, pos+4)
  830. local op = bor(lshift(b3, 24), lshift(b2, 16), lshift(b1, 8), b0)
  831. local operands = {}
  832. local suffix = ""
  833. local last, name, pat
  834. local map_reg
  835. ctx.op = op
  836. ctx.rel = nil
  837. last = nil
  838. local opat
  839. opat = map_init[band(rshift(op, 25), 15)]
  840. while type(opat) ~= "string" do
  841. if not opat then return unknown(ctx) end
  842. opat = opat[band(rshift(op, opat.shift), opat.mask)] or opat._
  843. end
  844. name, pat = match(opat, "^([a-z0-9]*)(.*)")
  845. local altname, pat2 = match(pat, "|([a-z0-9_.|]*)(.*)")
  846. if altname then pat = pat2 end
  847. if sub(pat, 1, 1) == "." then
  848. local s2, p2 = match(pat, "^([a-z0-9.]*)(.*)")
  849. suffix = suffix..s2
  850. pat = p2
  851. end
  852. local rt = match(pat, "[gf]")
  853. if rt then
  854. if rt == "g" then
  855. map_reg = band(op, 0x80000000) ~= 0 and map_regs.x or map_regs.w
  856. else
  857. map_reg = band(op, 0x400000) ~= 0 and map_regs.d or map_regs.s
  858. end
  859. end
  860. local second0, immr
  861. for p in gmatch(pat, ".") do
  862. local x = nil
  863. if p == "D" then
  864. local regnum = band(op, 31)
  865. x = rt and map_reg[regnum] or match_reg(p, pat, regnum)
  866. elseif p == "N" then
  867. local regnum = band(rshift(op, 5), 31)
  868. x = rt and map_reg[regnum] or match_reg(p, pat, regnum)
  869. elseif p == "M" then
  870. local regnum = band(rshift(op, 16), 31)
  871. x = rt and map_reg[regnum] or match_reg(p, pat, regnum)
  872. elseif p == "A" then
  873. local regnum = band(rshift(op, 10), 31)
  874. x = rt and map_reg[regnum] or match_reg(p, pat, regnum)
  875. elseif p == "B" then
  876. local addr = ctx.addr + pos + parse_immpc(op, name)
  877. ctx.rel = addr
  878. x = format("0x%08x", addr)
  879. elseif p == "T" then
  880. x = bor(band(rshift(op, 26), 32), band(rshift(op, 19), 31))
  881. elseif p == "V" then
  882. x = band(op, 15)
  883. elseif p == "C" then
  884. x = map_cond[band(rshift(op, 12), 15)]
  885. elseif p == "c" then
  886. local rn = band(rshift(op, 5), 31)
  887. local rm = band(rshift(op, 16), 31)
  888. local cond = band(rshift(op, 12), 15)
  889. local invc = bxor(cond, 1)
  890. x = map_cond[cond]
  891. if altname and cond ~= 14 and cond ~= 15 then
  892. local a1, a2 = match(altname, "([^|]*)|(.*)")
  893. if rn == rm then
  894. local n = #operands
  895. operands[n] = nil
  896. x = map_cond[invc]
  897. if rn ~= 31 then
  898. if a1 then name = a1 else name = altname end
  899. else
  900. operands[n-1] = nil
  901. name = a2
  902. end
  903. end
  904. end
  905. elseif p == "W" then
  906. x = band(rshift(op, 5), 0xffff)
  907. elseif p == "Y" then
  908. x = band(rshift(op, 5), 0xffff)
  909. local hw = band(rshift(op, 21), 3)
  910. if altname and (hw == 0 or x ~= 0) then
  911. name = altname
  912. end
  913. elseif p == "L" then
  914. local rn = map_regs.x[band(rshift(op, 5), 31)]
  915. local imm9 = arshift(lshift(op, 11), 23)
  916. if band(op, 0x800) ~= 0 then
  917. x = "["..rn..", #"..imm9.."]!"
  918. else
  919. x = "["..rn.."], #"..imm9
  920. end
  921. elseif p == "U" then
  922. local rn = map_regs.x[band(rshift(op, 5), 31)]
  923. local sz = band(rshift(op, 30), 3)
  924. local imm12 = lshift(rshift(lshift(op, 10), 20), sz)
  925. if imm12 ~= 0 then
  926. x = "["..rn..", #"..imm12.."]"
  927. else
  928. x = "["..rn.."]"
  929. end
  930. elseif p == "K" then
  931. local rn = map_regs.x[band(rshift(op, 5), 31)]
  932. local imm9 = arshift(lshift(op, 11), 23)
  933. if imm9 ~= 0 then
  934. x = "["..rn..", #"..imm9.."]"
  935. else
  936. x = "["..rn.."]"
  937. end
  938. elseif p == "O" then
  939. local rn, rm = map_regs.x[band(rshift(op, 5), 31)]
  940. local m = band(rshift(op, 13), 1)
  941. if m == 0 then
  942. rm = map_regs.w[band(rshift(op, 16), 31)]
  943. else
  944. rm = map_regs.x[band(rshift(op, 16), 31)]
  945. end
  946. x = "["..rn..", "..rm
  947. local opt = band(rshift(op, 13), 7)
  948. local s = band(rshift(op, 12), 1)
  949. local sz = band(rshift(op, 30), 3)
  950. -- extension to be applied
  951. if opt == 3 then
  952. if s == 0 then x = x.."]"
  953. else x = x..", lsl #"..sz.."]" end
  954. elseif opt == 2 or opt == 6 or opt == 7 then
  955. if s == 0 then x = x..", "..map_extend[opt].."]"
  956. else x = x..", "..map_extend[opt].." #"..sz.."]" end
  957. else
  958. x = x.."]"
  959. end
  960. elseif p == "P" then
  961. local sh = 2 + rshift(op, 31 - band(rshift(op, 26), 1))
  962. local imm7 = lshift(arshift(lshift(op, 10), 25), sh)
  963. local rn = map_regs.x[band(rshift(op, 5), 31)]
  964. local ind = band(rshift(op, 23), 3)
  965. if ind == 1 then
  966. x = "["..rn.."], #"..imm7
  967. elseif ind == 2 then
  968. if imm7 == 0 then
  969. x = "["..rn.."]"
  970. else
  971. x = "["..rn..", #"..imm7.."]"
  972. end
  973. elseif ind == 3 then
  974. x = "["..rn..", #"..imm7.."]!"
  975. end
  976. elseif p == "I" then
  977. local shf = band(rshift(op, 22), 3)
  978. local imm12 = band(rshift(op, 10), 0x0fff)
  979. local rn, rd = band(rshift(op, 5), 31), band(op, 31)
  980. if altname == "mov" and shf == 0 and imm12 == 0 and (rn == 31 or rd == 31) then
  981. name = altname
  982. x = nil
  983. elseif shf == 0 then
  984. x = imm12
  985. elseif shf == 1 then
  986. x = imm12..", lsl #12"
  987. end
  988. elseif p == "i" then
  989. x = "#0x"..decode_imm13(op)
  990. elseif p == "1" then
  991. immr = band(rshift(op, 16), 63)
  992. x = immr
  993. elseif p == "2" then
  994. x = band(rshift(op, 10), 63)
  995. if altname then
  996. local a1, a2, a3, a4, a5, a6 =
  997. match(altname, "([^|]*)|([^|]*)|([^|]*)|([^|]*)|([^|]*)|(.*)")
  998. local sf = band(rshift(op, 26), 32)
  999. local uns = band(rshift(op, 30), 1)
  1000. if prefer_bfx(sf, uns, x, immr) then
  1001. name = a2
  1002. x = x - immr + 1
  1003. elseif immr == 0 and x == 7 then
  1004. local n = #operands
  1005. operands[n] = nil
  1006. if sf ~= 0 then
  1007. operands[n-1] = gsub(operands[n-1], "x", "w")
  1008. end
  1009. last = operands[n-1]
  1010. name = a6
  1011. x = nil
  1012. elseif immr == 0 and x == 15 then
  1013. local n = #operands
  1014. operands[n] = nil
  1015. if sf ~= 0 then
  1016. operands[n-1] = gsub(operands[n-1], "x", "w")
  1017. end
  1018. last = operands[n-1]
  1019. name = a5
  1020. x = nil
  1021. elseif x == 31 or x == 63 then
  1022. if x == 31 and immr == 0 and name == "sbfm" then
  1023. name = a4
  1024. local n = #operands
  1025. operands[n] = nil
  1026. if sf ~= 0 then
  1027. operands[n-1] = gsub(operands[n-1], "x", "w")
  1028. end
  1029. last = operands[n-1]
  1030. else
  1031. name = a3
  1032. end
  1033. x = nil
  1034. elseif band(x, 31) ~= 31 and immr == x+1 and name == "ubfm" then
  1035. name = a4
  1036. last = "#"..(sf+32 - immr)
  1037. operands[#operands] = last
  1038. x = nil
  1039. elseif x < immr then
  1040. name = a1
  1041. last = "#"..(sf+32 - immr)
  1042. operands[#operands] = last
  1043. x = x + 1
  1044. end
  1045. end
  1046. elseif p == "3" then
  1047. x = band(rshift(op, 10), 63)
  1048. if altname then
  1049. local a1, a2 = match(altname, "([^|]*)|(.*)")
  1050. if x < immr then
  1051. name = a1
  1052. local sf = band(rshift(op, 26), 32)
  1053. last = "#"..(sf+32 - immr)
  1054. operands[#operands] = last
  1055. x = x + 1
  1056. else
  1057. name = a2
  1058. x = x - immr + 1
  1059. end
  1060. end
  1061. elseif p == "4" then
  1062. x = band(rshift(op, 10), 63)
  1063. local rn = band(rshift(op, 5), 31)
  1064. local rm = band(rshift(op, 16), 31)
  1065. if altname and rn == rm then
  1066. local n = #operands
  1067. operands[n] = nil
  1068. last = operands[n-1]
  1069. name = altname
  1070. end
  1071. elseif p == "5" then
  1072. x = band(rshift(op, 16), 31)
  1073. elseif p == "S" then
  1074. x = band(rshift(op, 10), 63)
  1075. if x == 0 then x = nil
  1076. else x = map_shift[band(rshift(op, 22), 3)].." #"..x end
  1077. elseif p == "X" then
  1078. local opt = band(rshift(op, 13), 7)
  1079. -- Width specifier <R>.
  1080. if opt ~= 3 and opt ~= 7 then
  1081. last = map_regs.w[band(rshift(op, 16), 31)]
  1082. operands[#operands] = last
  1083. end
  1084. x = band(rshift(op, 10), 7)
  1085. -- Extension.
  1086. if opt == 2 + band(rshift(op, 31), 1) and
  1087. band(rshift(op, second0 and 5 or 0), 31) == 31 then
  1088. if x == 0 then x = nil
  1089. else x = "lsl #"..x end
  1090. else
  1091. if x == 0 then x = map_extend[band(rshift(op, 13), 7)]
  1092. else x = map_extend[band(rshift(op, 13), 7)].." #"..x end
  1093. end
  1094. elseif p == "R" then
  1095. x = band(rshift(op,21), 3)
  1096. if x == 0 then x = nil
  1097. else x = "lsl #"..x*16 end
  1098. elseif p == "z" then
  1099. local n = #operands
  1100. if operands[n] == "sp" then operands[n] = "xzr"
  1101. elseif operands[n] == "wsp" then operands[n] = "wzr"
  1102. end
  1103. elseif p == "Z" then
  1104. x = 0
  1105. elseif p == "F" then
  1106. x = parse_fpimm8(op)
  1107. elseif p == "G" then
  1108. x = "#0x"..decode_fpmovi(op)
  1109. elseif p == "g" or p == "f" or p == "x" or p == "w" or
  1110. p == "d" or p == "s" then
  1111. -- These are handled in D/N/M/A.
  1112. elseif p == "0" then
  1113. if last == "sp" or last == "wsp" then
  1114. local n = #operands
  1115. operands[n] = nil
  1116. last = operands[n-1]
  1117. if altname then
  1118. local a1, a2 = match(altname, "([^|]*)|(.*)")
  1119. if not a1 then
  1120. name = altname
  1121. elseif second0 then
  1122. name, altname = a2, a1
  1123. else
  1124. name, altname = a1, a2
  1125. end
  1126. end
  1127. end
  1128. second0 = true
  1129. elseif p == " " then
  1130. operands[#operands+1] = pat:match(" (.*)")
  1131. break
  1132. else
  1133. assert(false)
  1134. end
  1135. if x then
  1136. last = x
  1137. if type(x) == "number" then x = "#"..x end
  1138. operands[#operands+1] = x
  1139. end
  1140. end
  1141. return putop(ctx, name..suffix, operands)
  1142. end
  1143. ------------------------------------------------------------------------------
  1144. -- Disassemble a block of code.
  1145. local function disass_block(ctx, ofs, len)
  1146. if not ofs then ofs = 0 end
  1147. local stop = len and ofs+len or #ctx.code
  1148. ctx.pos = ofs
  1149. ctx.rel = nil
  1150. while ctx.pos < stop do disass_ins(ctx) end
  1151. end
  1152. -- Extended API: create a disassembler context. Then call ctx:disass(ofs, len).
  1153. local function create(code, addr, out)
  1154. local ctx = {}
  1155. ctx.code = code
  1156. ctx.addr = addr or 0
  1157. ctx.out = out or io.write
  1158. ctx.symtab = {}
  1159. ctx.disass = disass_block
  1160. ctx.hexdump = 8
  1161. return ctx
  1162. end
  1163. -- Simple API: disassemble code (a string) at address and output via out.
  1164. local function disass(code, addr, out)
  1165. create(code, addr, out):disass()
  1166. end
  1167. -- Return register name for RID.
  1168. local function regname(r)
  1169. if r < 32 then return map_regs.x[r] end
  1170. return map_regs.d[r-32]
  1171. end
  1172. -- Public module functions.
  1173. return {
  1174. create = create,
  1175. disass = disass,
  1176. regname = regname
  1177. }