2015-01-17 10:11:08 +00:00
|
|
|
// Copyright 2010 Joseph Jordan <joe.ftpii@psychlaw.com.au>
|
|
|
|
// This code is licensed to you under the terms of the GNU GPL, version 2;
|
|
|
|
// see file COPYING or http://www.gnu.org/licenses/old-licenses/gpl-2.0.txt
|
|
|
|
#include <gccore.h>
|
|
|
|
#include <ogc/machine/processor.h>
|
|
|
|
#include <string.h>
|
|
|
|
|
|
|
|
#include "RuntimeIOSPatch.h"
|
|
|
|
|
|
|
|
#define HAVE_AHBPROT ((*(vu32*)0xcd800064 == 0xFFFFFFFF) ? 1 : 0)
|
|
|
|
#define MEM_REG_BASE 0xd8b4000
|
|
|
|
#define MEM_PROT (MEM_REG_BASE + 0x20a)
|
|
|
|
|
|
|
|
static void disable_memory_protection() {
|
|
|
|
write32(MEM_PROT, read32(MEM_PROT) & 0x0000FFFF);
|
|
|
|
}
|
|
|
|
|
|
|
|
static u32 apply_patch(char *name, const u8 *old, u32 old_size, const u8 *patch, u32 patch_size, u32 patch_offset) {
|
|
|
|
u8 *ptr_start = (u8*)*((u32*)0x80003134), *ptr_end = (u8*)0x94000000;
|
|
|
|
u32 found = 0;
|
|
|
|
u8 *location = NULL;
|
|
|
|
while (ptr_start < (ptr_end - patch_size)) {
|
|
|
|
if (!memcmp(ptr_start, old, old_size)) {
|
|
|
|
found++;
|
|
|
|
location = ptr_start + patch_offset;
|
|
|
|
u8 *start = location;
|
|
|
|
u32 i;
|
|
|
|
for (i = 0; i < patch_size; i++) {
|
|
|
|
*location++ = patch[i];
|
|
|
|
}
|
|
|
|
DCFlushRange((u8 *)(((u32)start) >> 5 << 5), (patch_size >> 5 << 5) + 64);
|
|
|
|
ICInvalidateRange((u8 *)(((u32)start) >> 5 << 5), (patch_size >> 5 << 5) + 64);
|
|
|
|
}
|
|
|
|
ptr_start++;
|
|
|
|
}
|
|
|
|
return found;
|
|
|
|
}
|
|
|
|
|
|
|
|
static const u8 di_readlimit_old[] = {
|
|
|
|
0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
|
|
|
|
0x00, 0x01, 0x40, 0x00, 0x00, 0x00, 0x00, 0x00, 0x46, 0x0A, 0x00, 0x00,
|
|
|
|
0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x08, 0x00, 0x00, 0x00, 0x00,
|
|
|
|
0x7E, 0xD4, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x08
|
|
|
|
};
|
|
|
|
static const u8 di_readlimit_patch[] = { 0x7e, 0xd4 };
|
|
|
|
|
|
|
|
const u8 isfs_permissions_old[] = { 0x42, 0x8B, 0xD0, 0x01, 0x25, 0x66 };
|
|
|
|
const u8 isfs_permissions_patch[] = { 0x42, 0x8B, 0xE0, 0x01, 0x25, 0x66 };
|
|
|
|
static const u8 setuid_old[] = { 0xD1, 0x2A, 0x1C, 0x39 };
|
|
|
|
static const u8 setuid_patch[] = { 0x46, 0xC0 };
|
|
|
|
const u8 es_identify_old[] = { 0x28, 0x03, 0xD1, 0x23 };
|
|
|
|
const u8 es_identify_patch[] = { 0x00, 0x00 };
|
|
|
|
const u8 hash_old[] = { 0x20, 0x07, 0x23, 0xA2 };
|
|
|
|
const u8 hash_patch[] = { 0x00 };
|
|
|
|
const u8 new_hash_old[] = { 0x20, 0x07, 0x4B, 0x0B };
|
|
|
|
const u8 addticket_vers_check[] = { 0xD2, 0x01, 0x4E, 0x56 };
|
|
|
|
const u8 addticket_patch[] = { 0xE0 };
|
|
|
|
const u8 es_set_ahbprot_pattern[] = { 0x68, 0x5B, 0x22, 0xEC, 0x00, 0x52, 0x18, 0x9B, 0x68, 0x1B, 0x46, 0x98, 0x07, 0xDB };
|
|
|
|
const u8 es_set_ahbprot_patch[] = { 0x01 };
|
|
|
|
|
|
|
|
u32 IOSPATCH_Apply() {
|
|
|
|
u32 count = 0;
|
2015-03-15 06:03:08 +00:00
|
|
|
//s32 ret = 0;
|
2015-01-17 10:11:08 +00:00
|
|
|
|
|
|
|
if (HAVE_AHBPROT) {
|
|
|
|
disable_memory_protection();
|
2015-03-15 06:03:08 +00:00
|
|
|
//ret = apply_patch("es_set_ahbprot", es_set_ahbprot_pattern, sizeof(es_set_ahbprot_pattern), es_set_ahbprot_patch, sizeof(es_set_ahbprot_patch), 25);
|
|
|
|
apply_patch("es_set_ahbprot", es_set_ahbprot_pattern, sizeof(es_set_ahbprot_pattern), es_set_ahbprot_patch, sizeof(es_set_ahbprot_patch), 25);
|
2015-01-17 10:11:08 +00:00
|
|
|
}
|
|
|
|
//if (ret) {
|
|
|
|
// IOS_ReloadIOS(IOS_GetVersion());
|
|
|
|
//} else {
|
|
|
|
// return 0;
|
|
|
|
//}
|
|
|
|
|
|
|
|
//if (HAVE_AHBPROT) {
|
|
|
|
// disable_memory_protection();
|
|
|
|
//count += apply_patch("di_readlimit", di_readlimit_old, sizeof(di_readlimit_old), di_readlimit_patch, sizeof(di_readlimit_patch), 12);
|
|
|
|
//count += apply_patch("isfs_permissions", isfs_permissions_old, sizeof(isfs_permissions_old), isfs_permissions_patch, sizeof(isfs_permissions_patch), 0);
|
|
|
|
//count += apply_patch("es_setuid", setuid_old, sizeof(setuid_old), setuid_patch, sizeof(setuid_patch), 0);
|
|
|
|
//count += apply_patch("es_identify", es_identify_old, sizeof(es_identify_old), es_identify_patch, sizeof(es_identify_patch), 2);
|
|
|
|
//count += apply_patch("hash_check", hash_old, sizeof(hash_old), hash_patch, sizeof(hash_patch), 1);
|
|
|
|
//count += apply_patch("new_hash_check", new_hash_old, sizeof(new_hash_old), hash_patch, sizeof(hash_patch), 1);
|
|
|
|
//count += apply_patch("add ticket patch", addticket_vers_check, sizeof(addticket_vers_check), addticket_patch, sizeof(addticket_patch), 0);
|
|
|
|
//}
|
|
|
|
return count;
|
|
|
|
}
|