hv_kernel_structs_xnu_22.h 10.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395
  1. #pragma once
  2. #include <Hypervisor/Hypervisor.h>
  3. // Headers extracted from
  4. // Kernel_Debug_Kit_13.6.2_builld_22G2321.dmg
  5. // type lookup hv_vcpu_t
  6. // type lookup arm_guest_context_t
  7. typedef struct {
  8. uint64_t mdscr_el1;
  9. uint64_t tpidr_el1;
  10. uint64_t tpidr_el0;
  11. uint64_t tpidrro_el0;
  12. uint64_t sp_el0;
  13. uint64_t sp_el1;
  14. uint64_t par_el1;
  15. uint64_t csselr_el1;
  16. uint64_t apstate;
  17. uint64_t afpcr_el0;
  18. } arm_guest_shared_sysregs_22_t;
  19. typedef struct {
  20. uint64_t ttbr0_el1;
  21. uint64_t ttbr1_el1;
  22. uint64_t tcr_el1;
  23. uint64_t elr_el1;
  24. uint64_t far_el1;
  25. uint64_t esr_el1;
  26. uint64_t mair_el1;
  27. uint64_t amair_el1;
  28. uint64_t vbar_el1;
  29. uint64_t cntv_cval_el0;
  30. uint64_t cntp_cval_el0;
  31. uint64_t actlr_el1;
  32. uint64_t sctlr_el1;
  33. uint64_t cpacr_el1;
  34. uint64_t spsr_el1;
  35. uint64_t afsr0_el1;
  36. uint64_t afsr1_el1;
  37. uint64_t contextidr_el1;
  38. uint64_t cntv_ctl_el0;
  39. uint64_t cntp_ctl_el0;
  40. uint64_t cntkctl_el1;
  41. uint64_t ich_vmcr_el2;
  42. } arm_guest_banked_sysregs_22_t;
  43. typedef struct {
  44. uint64_t hcr_el2;
  45. uint64_t hacr_el2;
  46. uint64_t cptr_el2;
  47. uint64_t mdcr_el2;
  48. uint64_t vmpidr_el2;
  49. uint64_t vpidr_el2;
  50. uint64_t virtual_timer_offset;
  51. uint64_t hfgrtr_el2;
  52. uint64_t hfgwtr_el2;
  53. uint64_t hfgitr_el2;
  54. uint64_t hdfgrtr_el2;
  55. uint64_t hdfgwtr_el2;
  56. uint64_t cnthctl_el2;
  57. uint64_t timer;
  58. uint64_t vmkeyhi_el2;
  59. uint64_t vmkeylo_el2;
  60. uint64_t apsts_el1;
  61. uint64_t ich_hcr_el2;
  62. uint64_t ich_lr_el2[8];
  63. uint64_t host_debug;
  64. } arm_guest_controls_22_t;
  65. typedef struct {
  66. struct {
  67. uint64_t bvr;
  68. uint64_t bcr;
  69. } bp[16];
  70. struct {
  71. uint64_t wvr;
  72. uint64_t wcr;
  73. } wp[16];
  74. uint64_t mdccint_el1;
  75. uint64_t osdtrrx_el1;
  76. uint64_t osdtrtx_el1;
  77. uint8_t dbgclaim_el1;
  78. } arm_guest_dbgregs_22_t;
  79. typedef struct {
  80. uint64_t amx_state_t_el1;
  81. uint64_t amx_config_el1;
  82. uint64_t aspsr_el1;
  83. uint64_t ctrr_ctl_el1;
  84. uint64_t ctrr_a_lwr_el1;
  85. uint64_t ctrr_a_upr_el1;
  86. uint64_t ctrr_b_lwr_el1;
  87. uint64_t ctrr_b_upr_el1;
  88. uint64_t ctrr_lock_el1;
  89. uint64_t vmsa_lock_el1;
  90. uint64_t pmcr1_el1;
  91. uint64_t apctl_el1;
  92. uint64_t apgakeyhi_el1;
  93. uint64_t apgakeylo_el1;
  94. uint64_t apiakeyhi_el1;
  95. uint64_t apiakeylo_el1;
  96. uint64_t apibkeyhi_el1;
  97. uint64_t apibkeylo_el1;
  98. uint64_t apdakeyhi_el1;
  99. uint64_t apdakeylo_el1;
  100. uint64_t apdbkeyhi_el1;
  101. uint64_t apdbkeylo_el1;
  102. uint64_t kernkeyhi_el1;
  103. uint64_t kernkeylo_el1;
  104. uint64_t gxf_config_el1;
  105. uint64_t gxf_entry_el1;
  106. uint64_t gxf_pabentry_el1;
  107. uint64_t sp_gl1;
  108. uint64_t tpidr_gl1;
  109. uint64_t aspsr_gl1;
  110. uint64_t vbar_gl1;
  111. uint64_t far_gl1;
  112. uint64_t esr_gl1;
  113. uint64_t elr_gl1;
  114. uint64_t spsr_gl1;
  115. uint64_t pmcr1_gl1;
  116. uint64_t afsr1_gl1;
  117. uint64_t sprr_config_el1;
  118. uint64_t sprr_amrange_el1;
  119. uint64_t sprr_pperm_el1;
  120. uint64_t sprr_uperm_el0;
  121. uint64_t sprr_pmprr_el1;
  122. uint64_t sprr_umprr_el1;
  123. uint64_t sprr_pperm_sh1_el1;
  124. uint64_t sprr_pperm_sh2_el1;
  125. uint64_t sprr_pperm_sh3_el1;
  126. uint64_t sprr_pperm_sh4_el1;
  127. uint64_t sprr_pperm_sh5_el1;
  128. uint64_t sprr_pperm_sh6_el1;
  129. uint64_t sprr_pperm_sh7_el1;
  130. uint64_t sprr_uperm_sh1_el1;
  131. uint64_t sprr_uperm_sh2_el1;
  132. uint64_t sprr_uperm_sh3_el1;
  133. uint64_t sprr_uperm_sh4_el1;
  134. uint64_t sprr_uperm_sh5_el1;
  135. uint64_t sprr_uperm_sh6_el1;
  136. uint64_t sprr_uperm_sh7_el1;
  137. uint64_t acfg_el1;
  138. uint64_t jrange_el1;
  139. uint64_t jctl_el1;
  140. uint64_t japiakeyhi_el1;
  141. uint64_t japiakeylo_el1;
  142. uint64_t japibkeyhi_el1;
  143. uint64_t japibkeylo_el1;
  144. uint64_t agtcntrdir_el1;
  145. } arm_guest_extregs_22_t;
  146. typedef struct {
  147. uint8_t __res_00_20[32];
  148. uint64_t vttbr_el2;
  149. uint64_t __res_28;
  150. uint64_t vsttbr_el2;
  151. uint64_t __res_38;
  152. uint64_t vtcr_el2;
  153. uint64_t vstcr_el2;
  154. uint64_t vmpidr_el2;
  155. uint64_t __res_58;
  156. uint64_t cntvoff_el2;
  157. uint8_t __res_68_78[16];
  158. uint64_t hcr_el2;
  159. uint64_t hstr_el2;
  160. uint64_t vpidr_el2;
  161. uint64_t tpidr_el2;
  162. uint8_t __res_98_b0[24];
  163. uint64_t vncr_el2;
  164. uint8_t __res_b8_100[72];
  165. uint64_t cpacr_el1;
  166. uint64_t contextidr_el1;
  167. uint64_t sctlr_el1;
  168. uint64_t actlr_el1;
  169. uint64_t tcr_el1;
  170. uint64_t afsr0_el1;
  171. uint64_t afsr1_el1;
  172. uint64_t esr_el1;
  173. uint64_t mair_el1;
  174. uint64_t amair_el1;
  175. uint8_t __res_158_150[8];
  176. uint64_t mdscr_el1;
  177. uint64_t spsr_el1;
  178. uint64_t cntv_cval_el0;
  179. uint64_t cntv_ctl_el0;
  180. uint64_t cntp_cval_el0;
  181. uint64_t cntp_ctl_el0;
  182. uint64_t scxtnum_el1;
  183. uint64_t tfsr_el1;
  184. uint8_t __res_198_1a8[16];
  185. uint64_t cntpoff_el2;
  186. uint8_t __res_1b0_1b8[8];
  187. uint64_t hfgrtr_el2;
  188. uint64_t hfgwtr_el2;
  189. uint64_t hfgitr_el2;
  190. uint64_t hdfgrtr_el2;
  191. uint64_t hdfgwtr_el2;
  192. uint64_t zcr_el1;
  193. uint8_t __res_1e8_200[24];
  194. uint64_t ttbr0_el1;
  195. uint8_t __res_208_210[8];
  196. uint64_t ttbr1_el1;
  197. uint8_t __res_218_220[8];
  198. uint64_t far_el1;
  199. uint8_t __res_228_230[8];
  200. uint64_t elr_el1;
  201. uint8_t __res_238_240[8];
  202. uint64_t sp_el1;
  203. uint8_t __res_248_250[8];
  204. uint64_t vbar_el1;
  205. uint8_t __res_400_258[424];
  206. uint64_t ich_lr_el2[16];
  207. uint64_t ich_ap0r_el2[4];
  208. uint64_t ich_ap1r_el2[4];
  209. uint64_t ich_hcr_el2;
  210. uint64_t ich_vmcr_el2;
  211. uint8_t __res_4d0_500[48];
  212. uint64_t vdisr_el2;
  213. uint64_t vsesr_el2;
  214. uint8_t __res_510_800[752];
  215. uint64_t pmblimitr_el1;
  216. uint8_t __res_808_810[8];
  217. uint64_t pmbptr_el1;
  218. uint8_t __res_818_820[8];
  219. uint64_t pmbsr_el1;
  220. uint64_t pmscr_el1;
  221. uint64_t pmsevfr_el1;
  222. uint64_t pmsicr_el1;
  223. uint64_t pmsirr_el1;
  224. uint64_t pmslatfr_el1;
  225. uint8_t __res_850_880[48];
  226. uint64_t trfcr_el1;
  227. uint8_t __res_888_1000[1912];
  228. } arm_vncr_context_22_t;
  229. typedef struct {
  230. uint8_t __res_000_008[8];
  231. uint64_t avncr_el2;
  232. uint64_t aspsr_el1;
  233. uint8_t __res_018_100[232];
  234. uint64_t apctl_el1;
  235. uint64_t apsts_el1;
  236. uint64_t vmkey_lo_el2;
  237. uint64_t vmkey_hi_el2;
  238. uint64_t apgakeylo_el1;
  239. uint64_t apgakeyhi_el1;
  240. uint64_t apiakeylo_el1;
  241. uint64_t apiakeyhi_el1;
  242. uint64_t apibkeylo_el1;
  243. uint64_t apibkeyhi_el1;
  244. uint64_t apdakeylo_el1;
  245. uint64_t apdakeyhi_el1;
  246. uint64_t apdbkeylo_el1;
  247. uint64_t apdbkeyhi_el1;
  248. uint64_t kernkeylo_el1;
  249. uint64_t kernkeyhi_el1;
  250. uint8_t __res_180_2d0[336];
  251. uint64_t jctl_el1;
  252. uint64_t jrange_el1;
  253. uint64_t japiakeylo_el1;
  254. uint64_t japiakeyhi_el1;
  255. uint64_t japibkeylo_el1;
  256. uint64_t japibkeyhi_el1;
  257. uint64_t amx_config_el1;
  258. uint8_t __res_308_360[88];
  259. uint64_t vmsa_lock_el1;
  260. uint8_t __res_368_3c0[88];
  261. uint64_t pmcr1_el1;
  262. uint8_t __res_3c8_400[56];
  263. uint64_t apl_lrtmr_el2;
  264. uint64_t apl_intenable_el2;
  265. uint8_t __res_410_1000[3056];
  266. } apple_vncr_context_22_t;
  267. typedef union {
  268. struct {
  269. union {
  270. // arm_context_t guest_context;
  271. struct {
  272. uint64_t res1[1];
  273. struct {
  274. uint64_t x[29];
  275. uint64_t fp;
  276. uint64_t lr;
  277. uint64_t sp;
  278. uint64_t pc;
  279. uint32_t cpsr;
  280. uint32_t pad;
  281. } regs;
  282. uint64_t res2[4];
  283. struct {
  284. __uint128_t q[32];
  285. uint32_t fpsr;
  286. uint32_t fpcr;
  287. } neon;
  288. };
  289. };
  290. arm_guest_shared_sysregs_22_t shared_sysregs;
  291. arm_guest_banked_sysregs_22_t banked_sysregs;
  292. arm_guest_dbgregs_22_t dbgregs;
  293. volatile arm_guest_controls_22_t controls;
  294. volatile uint64_t state_dirty;
  295. uint64_t guest_tick_count;
  296. arm_guest_extregs_22_t extregs;
  297. arm_vncr_context_22_t vncr;
  298. apple_vncr_context_22_t avncr;
  299. };
  300. uint8_t page[16384];
  301. } arm_guest_rw_context_22_t;
  302. typedef struct {
  303. uint32_t vmexit_reason;
  304. uint32_t vmexit_esr;
  305. uint32_t vmexit_instr;
  306. uint64_t vmexit_far;
  307. uint64_t vmexit_hpfar;
  308. } arm_guest_vmexit_22_t;
  309. typedef union {
  310. struct {
  311. uint64_t ver;
  312. arm_guest_vmexit_22_t exit;
  313. arm_guest_controls_22_t controls;
  314. uint64_t state_valid;
  315. uint64_t state_dirty;
  316. uint64_t state_used;
  317. uint32_t ich_vtr_el2;
  318. uint32_t ich_misr_el2;
  319. uint32_t ich_elrsr_el2;
  320. };
  321. uint8_t page[16384];
  322. } arm_guest_ro_context_22_t;
  323. typedef struct {
  324. uint64_t cptr_el2;
  325. uint64_t mdscr_el1;
  326. uint64_t tpidr_el1;
  327. uint64_t tpidr_el0;
  328. uint64_t tpidrro_el0;
  329. uint64_t sp_el0;
  330. uint64_t jop_hash;
  331. uint64_t vmenter_ticks;
  332. uint64_t vmexit_ticks;
  333. uint64_t vncr_el2;
  334. uint64_t avncr_el2;
  335. uint64_t ich_ap0r0_el2;
  336. uint64_t ich_ap1r0_el2;
  337. vm_map_t guest_map;
  338. bool flush_local_tlb;
  339. uint64_t acfg_el1;
  340. } arm_host_context_22_t;
  341. typedef struct {
  342. arm_guest_rw_context_22_t rw;
  343. arm_guest_ro_context_22_t ro;
  344. arm_host_context_22_t priv;
  345. } arm_guest_context_22_t;
  346. typedef struct {
  347. uint64_t control_hcr;
  348. uint64_t control_hacr;
  349. uint64_t control_cptr;
  350. uint64_t control_mdcr;
  351. uint64_t control_ich_hcr;
  352. uint64_t control_timer;
  353. uint64_t control_apsts;
  354. uint64_t control_hfgrtr;
  355. uint64_t control_hfgwtr;
  356. uint64_t control_hfgitr;
  357. uint64_t control_hdfgrtr;
  358. uint64_t control_hdfgwtr;
  359. uint64_t control_cnthctl;
  360. uint64_t ctr_el0;
  361. uint64_t dczid_el0;
  362. uint64_t clidr_el1;
  363. uint64_t ccsidr_el1_inst[8];
  364. uint64_t ccsidr_el1_data_or_unified[8];
  365. uint64_t id_aa64dfr0_el1;
  366. uint64_t id_aa64dfr1_el1;
  367. uint64_t id_aa64isar0_el1;
  368. uint64_t id_aa64isar1_el1;
  369. uint64_t id_aa64mmfr0_el1;
  370. uint64_t id_aa64mmfr1_el1;
  371. uint64_t id_aa64mmfr2_el1;
  372. uint64_t id_aa64pfr0_el1;
  373. uint64_t id_aa64pfr1_el1;
  374. uint8_t gic_npie_active_pending_bug;
  375. uint64_t ipa_bits_4k;
  376. uint64_t ipa_bits_16k;
  377. } hv_capabilities_22_t;
  378. #define HV_XNU_22_MAGIC (0x206879700000000e)
  379. #define HV_VERSION_XNU_22 (22)