00001
00002
00003
00004
00005
00006
00007
00008
00009
00010
00011
00012
00013
00014
00015
00016
00017
00018
00019
00020
00021
00022
00023
#include "exp.h"
00024
#pragma hdrstop
00025
00026
00027
00028
00029
00030
00031
00032
00033
00034
00035
00036 ERESOURCE HandleTableListLock;
00037 LIST_ENTRY
HandleTableListHead;
00038
00039
00040
00041
00042
00043
00044 #define EXHANDLE_TABLE_ENTRY_LOCK_BIT ((ULONG_PTR)1 << ((sizeof(ULONG_PTR) * 8) - 1))
00045
00046
00047
00048
00049
00050
00051 LARGE_INTEGER
Ex10Milliseconds = {(ULONG)(-10 * 1000 * 10), -1};
00052
00053
00054
00055
00056
00057
PHANDLE_TABLE
00058
ExpAllocateHandleTable (
00059 IN
PEPROCESS Process OPTIONAL
00060 );
00061
00062
VOID
00063
ExpFreeHandleTable (
00064 IN
PHANDLE_TABLE HandleTable
00065 );
00066
00067
PHANDLE_TABLE_ENTRY
00068
ExpAllocateHandleTableEntry (
00069 IN
PHANDLE_TABLE HandleTable,
00070 OUT
PEXHANDLE Handle
00071 );
00072
00073
VOID
00074
ExpFreeHandleTableEntry (
00075 IN
PHANDLE_TABLE HandleTable,
00076 IN
EXHANDLE Handle,
00077 IN
PHANDLE_TABLE_ENTRY HandleTableEntry
00078 );
00079
00080
PHANDLE_TABLE_ENTRY
00081
ExpLookupHandleTableEntry (
00082 IN
PHANDLE_TABLE HandleTable,
00083 IN
EXHANDLE Handle
00084 );
00085
00086
#ifdef ALLOC_PRAGMA
00087
#pragma alloc_text(INIT, ExInitializeHandleTablePackage)
00088
#pragma alloc_text(PAGE, ExLockHandleTableShared)
00089
#pragma alloc_text(PAGE, ExLockHandleTableExclusive)
00090
#pragma alloc_text(PAGE, ExUnlockHandleTableShared)
00091
#pragma alloc_text(PAGE, ExUnlockHandleTableExclusive)
00092
#pragma alloc_text(PAGE, ExLockHandleTableEntry)
00093
#pragma alloc_text(PAGE, ExUnlockHandleTableEntry)
00094
#pragma alloc_text(PAGE, ExCreateHandleTable)
00095
#pragma alloc_text(PAGE, ExRemoveHandleTable)
00096
#pragma alloc_text(PAGE, ExDestroyHandleTable)
00097
#pragma alloc_text(PAGE, ExEnumHandleTable)
00098
#pragma alloc_text(PAGE, ExDupHandleTable)
00099
#pragma alloc_text(PAGE, ExSnapShotHandleTables)
00100
#pragma alloc_text(PAGE, ExCreateHandle)
00101
#pragma alloc_text(PAGE, ExDestroyHandle)
00102
#pragma alloc_text(PAGE, ExChangeHandle)
00103
#pragma alloc_text(PAGE, ExMapHandleToPointer)
00104
#pragma alloc_text(PAGE, ExpAllocateHandleTable)
00105
#pragma alloc_text(PAGE, ExpFreeHandleTable)
00106
#pragma alloc_text(PAGE, ExpAllocateHandleTableEntry)
00107
#pragma alloc_text(PAGE, ExpFreeHandleTableEntry)
00108
#pragma alloc_text(PAGE, ExpLookupHandleTableEntry)
00109
#endif
00110
00111
00112
NTKERNELAPI
00113
VOID
00114 ExLockHandleTableShared (
00115
PHANDLE_TABLE HandleTable
00116 )
00117
00118
00119
00120
00121
00122
00123
00124
00125
00126
00127
00128
00129
00130
00131
00132
00133
00134
00135 {
00136
PAGED_CODE();
00137
00138 (
VOID)
ExAcquireResourceShared( &HandleTable->
HandleTableLock,
TRUE );
00139
00140
return;
00141 }
00142
00143
00144
NTKERNELAPI
00145
VOID
00146 ExLockHandleTableExclusive (
00147
PHANDLE_TABLE HandleTable
00148 )
00149
00150
00151
00152
00153
00154
00155
00156
00157
00158
00159
00160
00161
00162
00163
00164
00165
00166
00167 {
00168
PAGED_CODE();
00169
00170 (
VOID)
ExAcquireResourceExclusive( &HandleTable->
HandleTableLock,
TRUE );
00171
00172
return;
00173 }
00174
00175
00176
NTKERNELAPI
00177
VOID
00178 ExUnlockHandleTableShared (
00179
PHANDLE_TABLE HandleTable
00180 )
00181
00182
00183
00184
00185
00186
00187
00188
00189
00190
00191
00192
00193
00194
00195
00196
00197
00198 {
00199
PAGED_CODE();
00200
00201 (
VOID)
ExReleaseResource( &HandleTable->
HandleTableLock );
00202
00203
return;
00204 }
00205
00206
00207
NTKERNELAPI
00208
VOID
00209 ExUnlockHandleTableExclusive (
00210
PHANDLE_TABLE HandleTable
00211 )
00212
00213
00214
00215
00216
00217
00218
00219
00220
00221
00222
00223
00224
00225
00226
00227
00228
00229 {
00230
PAGED_CODE();
00231
00232 (
VOID)
ExReleaseResource( &HandleTable->
HandleTableLock );
00233
00234
return;
00235 }
00236
00237
00238
NTKERNELAPI
00239 BOOLEAN
00240 ExLockHandleTableEntry (
00241
PHANDLE_TABLE HandleTable,
00242
PHANDLE_TABLE_ENTRY HandleTableEntry
00243 )
00244
00245
00246
00247
00248
00249
00250
00251
00252
00253
00254
00255
00256
00257
00258
00259
00260
00261
00262
00263
00264
00265 {
00266 LONG_PTR NewValue;
00267 LONG_PTR CurrentValue;
00268 ULONG LoopCount = 0;
00269
00270
PAGED_CODE();
00271
00272
00273
00274
00275
00276
00277
00278
while (
TRUE) {
00279
00280 NewValue =
00281 CurrentValue = *((
volatile LONG_PTR *)&HandleTableEntry->
Object);
00282
00283
00284
00285
00286
00287
if (CurrentValue == 0) {
00288
00289
return FALSE;
00290 }
00291
00292
00293
00294
00295
00296
00297
00298
if (CurrentValue > 0) {
00299
00300 NewValue |=
EXHANDLE_TABLE_ENTRY_LOCK_BIT;
00301
00302
if ((LONG_PTR)(InterlockedCompareExchangePointer( &HandleTableEntry->
Object,
00303 (PVOID)NewValue,
00304 (PVOID)CurrentValue )) == CurrentValue) {
00305
00306
return TRUE;
00307 }
00308 }
00309
00310
00311
00312
00313
00314
00315
00316
00317
00318
if (LoopCount++ < 1) {
00319
00320
KeStallExecutionProcessor( 10 );
00321
00322 }
else {
00323
00324
KeWaitForSingleObject( &HandleTable->
HandleContentionEvent,
00325
Executive,
00326
KernelMode,
00327
FALSE,
00328 &
Ex10Milliseconds );
00329 }
00330 }
00331 }
00332
00333
00334
NTKERNELAPI
00335
VOID
00336 ExUnlockHandleTableEntry (
00337
PHANDLE_TABLE HandleTable,
00338
PHANDLE_TABLE_ENTRY HandleTableEntry
00339 )
00340
00341
00342
00343
00344
00345
00346
00347
00348
00349
00350
00351
00352
00353
00354
00355
00356
00357
00358
00359
00360 {
00361 LONG_PTR NewValue;
00362 LONG_PTR CurrentValue;
00363
00364
PAGED_CODE();
00365
00366
00367
00368
00369
00370
00371
00372
00373
00374
00375 NewValue = CurrentValue = *((
volatile LONG_PTR *)&HandleTableEntry->
Object);
00376
00377
if (CurrentValue >= 0) {
00378
00379
KeBugCheckEx( BAD_EXHANDLE, __LINE__, (LONG_PTR)HandleTableEntry, NewValue, CurrentValue );
00380 }
00381
00382 NewValue &= ~
EXHANDLE_TABLE_ENTRY_LOCK_BIT;
00383
00384
if ((LONG_PTR)(InterlockedCompareExchangePointer( &HandleTableEntry->
Object,
00385 (PVOID)NewValue,
00386 (PVOID)CurrentValue )) != CurrentValue) {
00387
00388
KeBugCheckEx( BAD_EXHANDLE, __LINE__, (LONG_PTR)HandleTableEntry, NewValue, CurrentValue );
00389 }
00390
00391
00392
00393
00394
00395
00396
00397
00398
00399
00400
00401
00402
00403
00404
00405
00406
00407
00408
00409
00410
00411
if (!IsListEmpty( &HandleTable->
HandleContentionEvent.
Header.
WaitListHead )) {
00412
00413
KePulseEvent( &HandleTable->
HandleContentionEvent,
EVENT_INCREMENT,
FALSE );
00414 }
00415
00416
return;
00417 }
00418
00419
00420
NTKERNELAPI
00421
VOID
00422 ExInitializeHandleTablePackage (
00423 VOID
00424 )
00425
00426
00427
00428
00429
00430
00431
00432
00433
00434
00435
00436
00437
00438
00439
00440
00441
00442
00443 {
00444
00445
00446
00447
00448 InitializeListHead( &
HandleTableListHead );
00449
ExInitializeResource( &
HandleTableListLock );
00450
00451
return;
00452 }
00453
00454
00455
NTKERNELAPI
00456
PHANDLE_TABLE
00457 ExCreateHandleTable (
00458 IN
struct _EPROCESS *Process OPTIONAL
00459 )
00460
00461
00462
00463
00464
00465
00466
00467
00468
00469
00470
00471
00472
00473
00474
00475
00476
00477
00478
00479
00480 {
00481
PHANDLE_TABLE HandleTable;
00482
00483
PAGED_CODE();
00484
00485
00486
00487
00488
00489 HandleTable =
ExpAllocateHandleTable( Process );
00490
00491
00492
00493
00494
00495
return HandleTable;
00496 }
00497
00498
00499
NTKERNELAPI
00500
VOID
00501 ExRemoveHandleTable (
00502 IN
PHANDLE_TABLE HandleTable
00503 )
00504
00505
00506
00507
00508
00509
00510
00511
00512
00513
00514
00515
00516
00517
00518
00519
00520
00521
00522
00523
00524 {
00525
PAGED_CODE();
00526
00527
00528
00529
00530
00531
KeEnterCriticalRegion();
00532
ExAcquireResourceExclusive( &
HandleTableListLock,
TRUE );
00533
00534
00535
00536
00537
00538
00539
00540
if (!IsListEmpty( &HandleTable->HandleTableList )) {
00541
00542 RemoveEntryList( &HandleTable->HandleTableList );
00543
00544 InitializeListHead( &HandleTable->HandleTableList );
00545 }
00546
00547
00548
00549
00550
00551
ExReleaseResource( &
HandleTableListLock );
00552
KeLeaveCriticalRegion();
00553
00554
return;
00555 }
00556
00557
00558
NTKERNELAPI
00559
VOID
00560 ExDestroyHandleTable (
00561 IN
PHANDLE_TABLE HandleTable,
00562 IN EX_DESTROY_HANDLE_ROUTINE DestroyHandleProcedure OPTIONAL
00563 )
00564
00565
00566
00567
00568
00569
00570
00571
00572
00573
00574
00575
00576
00577
00578
00579
00580
00581
00582
00583
00584 {
00585
EXHANDLE Handle;
00586
PHANDLE_TABLE_ENTRY HandleTableEntry;
00587
00588
PAGED_CODE();
00589
00590
00591
00592
00593
00594
ExRemoveHandleTable( HandleTable );
00595
00596
00597
00598
00599
00600
00601
00602
00603
00604
00605
if (ARGUMENT_PRESENT(DestroyHandleProcedure)) {
00606
00607
for (
Handle.GenericHandleOverlay =
NULL;
00608 (HandleTableEntry =
ExpLookupHandleTableEntry( HandleTable,
Handle )) !=
NULL;
00609
Handle.Index += 1) {
00610
00611
00612
00613
00614
00615
if (HandleTableEntry->
Object !=
NULL) {
00616
00617 (*DestroyHandleProcedure)(
Handle.GenericHandleOverlay );
00618 }
00619 }
00620 }
00621
00622
00623
00624
00625
00626
ExpFreeHandleTable( HandleTable );
00627
00628
return;
00629 }
00630
00631
00632
NTKERNELAPI
00633 BOOLEAN
00634 ExEnumHandleTable (
00635 IN
PHANDLE_TABLE HandleTable,
00636 IN EX_ENUMERATE_HANDLE_ROUTINE EnumHandleProcedure,
00637 IN PVOID EnumParameter,
00638 OUT PHANDLE Handle OPTIONAL
00639 )
00640
00641
00642
00643
00644
00645
00646
00647
00648
00649
00650
00651
00652
00653
00654
00655
00656
00657
00658
00659
00660
00661
00662
00663
00664
00665
00666
00667
00668
00669
00670
00671
00672
00673 {
00674 BOOLEAN ResultValue;
00675
EXHANDLE LocalHandle;
00676
PHANDLE_TABLE_ENTRY HandleTableEntry;
00677
00678
PAGED_CODE();
00679
00680
00681
00682
00683
00684
00685
00686
00687
KeEnterCriticalRegion();
00688
ExLockHandleTableShared( HandleTable );
00689
00690
try {
00691
00692
00693
00694
00695
00696
00697 ResultValue =
FALSE;
00698
00699
00700
00701
00702
00703
00704
00705
00706
00707
for (LocalHandle.
GenericHandleOverlay =
NULL;
00708 (HandleTableEntry =
ExpLookupHandleTableEntry( HandleTable, LocalHandle )) !=
NULL;
00709 LocalHandle.
Index += 1) {
00710
00711
00712
00713
00714
00715
if (HandleTableEntry->
Object !=
NULL) {
00716
00717
00718
00719
00720
00721
00722
00723
if (
ExLockHandleTableEntry( HandleTable, HandleTableEntry )) {
00724
00725
try {
00726
00727
00728
00729
00730
00731
00732
if ((*EnumHandleProcedure)( HandleTableEntry,
00733 LocalHandle.
GenericHandleOverlay,
00734 EnumParameter )) {
00735
00736
if (ARGUMENT_PRESENT(
Handle )) {
00737
00738 *
Handle = LocalHandle.
GenericHandleOverlay;
00739 }
00740
00741 ResultValue =
TRUE;
00742
break;
00743 }
00744
00745 } finally {
00746
00747
ExUnlockHandleTableEntry( HandleTable, HandleTableEntry );
00748 }
00749 }
00750 }
00751 }
00752
00753 } finally {
00754
00755
ExUnlockHandleTableShared( HandleTable );
00756
KeLeaveCriticalRegion();
00757 }
00758
00759
return ResultValue;
00760 }
00761
00762
00763
NTKERNELAPI
00764
PHANDLE_TABLE
00765 ExDupHandleTable (
00766 IN
struct _EPROCESS *Process OPTIONAL,
00767 IN
PHANDLE_TABLE OldHandleTable,
00768 IN EX_DUPLICATE_HANDLE_ROUTINE DupHandleProcedure OPTIONAL
00769 )
00770
00771
00772
00773
00774
00775
00776
00777
00778
00779
00780
00781
00782
00783
00784
00785
00786
00787
00788
00789
00790
00791
00792
00793
00794 {
00795
PHANDLE_TABLE NewHandleTable;
00796
00797
PHANDLE_TABLE_ENTRY AdditionalFreeEntries;
00798
00799
EXHANDLE Handle;
00800
00801
PHANDLE_TABLE_ENTRY OldHandleTableEntry;
00802
PHANDLE_TABLE_ENTRY NewHandleTableEntry;
00803
00804
PAGED_CODE();
00805
00806
00807
00808
00809
00810
00811 NewHandleTable =
ExpAllocateHandleTable( Process );
00812
00813
if (NewHandleTable ==
NULL) {
00814
00815
return NULL;
00816 }
00817
00818
00819
00820
00821
00822
00823
KeEnterCriticalRegion();
00824
ExLockHandleTableShared( OldHandleTable );
00825
00826 AdditionalFreeEntries =
NULL;
00827
00828
try {
00829
00830
00831
00832
00833
00834
00835
00836
00837
while (NewHandleTable->
NextIndexNeedingPool < OldHandleTable->NextIndexNeedingPool) {
00838
00839
00840
00841
00842
00843
00844 NewHandleTable->
FirstFreeTableEntry = -1;
00845
00846
00847
00848
00849
00850
00851
00852
if (
ExpAllocateHandleTableEntry( NewHandleTable, &
Handle ) ==
NULL) {
00853
00854
ExpFreeHandleTable( NewHandleTable );
00855
00856 NewHandleTable =
NULL;
00857
00858 leave;
00859 }
00860 }
00861
00862
00863
00864
00865
00866
00867
00868 NewHandleTable->
HandleCount = 0;
00869 NewHandleTable->
FirstFreeTableEntry = OldHandleTable->FirstFreeTableEntry;
00870
00871
00872
00873
00874
00875
00876
for (
Handle.GenericHandleOverlay =
NULL;
00877 (OldHandleTableEntry =
ExpLookupHandleTableEntry( OldHandleTable,
Handle )) !=
NULL;
00878
Handle.Index += 1) {
00879
00880
00881
00882
00883
00884
00885
00886 NewHandleTableEntry =
ExpLookupHandleTableEntry( NewHandleTable,
00887
Handle );
00888
00889
00890
00891
00892
00893
00894
00895
if (!
ExLockHandleTableEntry( OldHandleTable, OldHandleTableEntry )) {
00896
00897 *NewHandleTableEntry = *OldHandleTableEntry;
00898
00899 }
else {
00900
00901
00902
00903
00904
00905
00906
00907
00908
00909 *NewHandleTableEntry = *OldHandleTableEntry;
00910 NewHandleTable->
HandleCount += 1;
00911
00912
ExUnlockHandleTableEntry( OldHandleTable, OldHandleTableEntry );
00913
00914
00915
00916
00917
00918
00919
if ((*DupHandleProcedure)( Process, NewHandleTableEntry )) {
00920
00921
ExUnlockHandleTableEntry( NewHandleTable, NewHandleTableEntry );
00922
00923 }
else {
00924
00925
00926
00927
00928
00929
00930
00931 NewHandleTableEntry->
Object = AdditionalFreeEntries;
00932 NewHandleTableEntry->
NextFreeTableEntry =
Handle.Index;
00933
00934 AdditionalFreeEntries = NewHandleTableEntry;
00935 }
00936 }
00937 }
00938
00939 } finally {
00940
00941
ExUnlockHandleTableShared( OldHandleTable );
00942
KeLeaveCriticalRegion();
00943 }
00944
00945
00946
00947
00948
00949
00950
00951
00952
00953
00954
00955
00956
00957
Handle.GenericHandleOverlay =
NULL;
00958
while (AdditionalFreeEntries !=
NULL) {
00959
00960 PVOID Next;
00961
00962 Next = AdditionalFreeEntries->
Object;
00963
Handle.Index = AdditionalFreeEntries->
NextFreeTableEntry;
00964
00965 AdditionalFreeEntries->
Object =
NULL;
00966
00967
ExpFreeHandleTableEntry( NewHandleTable,
00968
Handle,
00969 AdditionalFreeEntries );
00970
00971 AdditionalFreeEntries = Next;
00972 }
00973
00974
00975
00976
00977
00978
return NewHandleTable;
00979 }
00980
00981
00982
NTKERNELAPI
00983
NTSTATUS
00984 ExSnapShotHandleTables (
00985 IN PEX_SNAPSHOT_HANDLE_ENTRY SnapShotHandleEntry,
00986 IN OUT PSYSTEM_HANDLE_INFORMATION HandleInformation,
00987 IN ULONG Length,
00988 IN OUT PULONG RequiredLength
00989 )
00990
00991
00992
00993
00994
00995
00996
00997
00998
00999
01000
01001
01002
01003
01004
01005
01006
01007
01008
01009
01010
01011
01012
01013
01014
01015
01016
01017
01018
01019
01020
01021 {
01022
NTSTATUS Status;
01023 PSYSTEM_HANDLE_TABLE_ENTRY_INFO HandleEntryInfo;
01024 PLIST_ENTRY NextEntry;
01025
PHANDLE_TABLE HandleTable;
01026
EXHANDLE Handle;
01027
PHANDLE_TABLE_ENTRY HandleTableEntry;
01028
01029
PAGED_CODE();
01030
01031
01032
01033
01034
01035
01036
Status = STATUS_SUCCESS;
01037
01038
KeEnterCriticalRegion();
01039
ExAcquireResourceExclusive( &
HandleTableListLock,
TRUE );
01040
01041
try {
01042
01043
01044
01045
01046
01047 HandleEntryInfo = &HandleInformation->Handles[0];
01048
01049
01050
01051
01052
01053 HandleInformation->NumberOfHandles = 0;
01054
01055
01056
01057
01058
01059
for (NextEntry =
HandleTableListHead.Flink;
01060 NextEntry != &
HandleTableListHead;
01061 NextEntry = NextEntry->Flink) {
01062
01063
01064
01065
01066
01067
01068 HandleTable = CONTAINING_RECORD( NextEntry,
01069
HANDLE_TABLE,
01070 HandleTableList );
01071
01072
ExLockHandleTableExclusive( HandleTable );
01073
01074
try {
01075
01076
01077
01078
01079
01080
01081
01082
01083
01084
for (
Handle.Index = 0,
Handle.TagBits = 0;
01085 (HandleTableEntry =
ExpLookupHandleTableEntry( HandleTable,
Handle )) !=
NULL;
01086
Handle.Index += 1) {
01087
01088
01089
01090
01091
01092
if (HandleTableEntry->
Object !=
NULL) {
01093
01094
01095
01096
01097
01098
01099 HandleInformation->NumberOfHandles += 1;
01100
01101
01102
01103
01104
01105
01106
01107
if (
ExLockHandleTableEntry( HandleTable, HandleTableEntry )) {
01108
01109
try {
01110
01111
Status = (*SnapShotHandleEntry)( &HandleEntryInfo,
01112 HandleTable->
UniqueProcessId,
01113 HandleTableEntry,
01114
Handle.GenericHandleOverlay,
01115 Length,
01116 RequiredLength );
01117
01118 } finally {
01119
01120
ExUnlockHandleTableEntry( HandleTable, HandleTableEntry );
01121 }
01122 }
01123 }
01124 }
01125
01126 } finally {
01127
01128
ExUnlockHandleTableExclusive( HandleTable );
01129 }
01130 }
01131
01132 } finally {
01133
01134
ExReleaseResource( &
HandleTableListLock );
01135
KeLeaveCriticalRegion();
01136 }
01137
01138
return Status;
01139 }
01140
01141
01142
NTKERNELAPI
01143 HANDLE
01144 ExCreateHandle (
01145 IN
PHANDLE_TABLE HandleTable,
01146 IN
PHANDLE_TABLE_ENTRY HandleTableEntry
01147 )
01148
01149
01150
01151
01152
01153
01154
01155
01156
01157
01158
01159
01160
01161
01162
01163
01164
01165
01166
01167
01168
01169
01170
01171 {
01172
EXHANDLE Handle;
01173
PHANDLE_TABLE_ENTRY NewHandleTableEntry;
01174
01175
PAGED_CODE();
01176
01177
01178
01179
01180
01181
01182
01183
01184
01185
Handle.GenericHandleOverlay =
NULL;
01186
01187
01188
01189
01190
01191
KeEnterCriticalRegion();
01192
ExLockHandleTableExclusive( HandleTable );
01193
01194
try {
01195
01196
01197
01198
01199
01200 NewHandleTableEntry =
ExpAllocateHandleTableEntry( HandleTable,
01201 &
Handle );
01202
01203
01204
01205
01206
01207
01208
if (NewHandleTableEntry !=
NULL) {
01209
01210 *NewHandleTableEntry = *HandleTableEntry;
01211
01212
ExUnlockHandleTableEntry( HandleTable, NewHandleTableEntry );
01213 }
01214
01215 } finally {
01216
01217
ExUnlockHandleTableExclusive( HandleTable );
01218
KeLeaveCriticalRegion();
01219 }
01220
01221
return Handle.GenericHandleOverlay;
01222 }
01223
01224
01225
NTKERNELAPI
01226 BOOLEAN
01227 ExDestroyHandle (
01228 IN
PHANDLE_TABLE HandleTable,
01229 IN HANDLE Handle,
01230 IN
PHANDLE_TABLE_ENTRY HandleTableEntry OPTIONAL
01231 )
01232
01233
01234
01235
01236
01237
01238
01239
01240
01241
01242
01243
01244
01245
01246
01247
01248
01249
01250
01251
01252
01253
01254
01255
01256 {
01257
EXHANDLE LocalHandle;
01258
01259
PAGED_CODE();
01260
01261 LocalHandle.
GenericHandleOverlay =
Handle;
01262
01263
01264
01265
01266
01267
01268
01269
if (HandleTableEntry ==
NULL) {
01270
01271 HandleTableEntry =
ExpLookupHandleTableEntry( HandleTable,
01272 LocalHandle );
01273
01274
if (HandleTableEntry ==
NULL) {
01275
01276
return FALSE;
01277 }
01278
01279
if (!
ExLockHandleTableEntry( HandleTable, HandleTableEntry )) {
01280
01281
return FALSE;
01282 }
01283 }
01284
01285
01286
01287
01288
01289
01290
01291
01292 HandleTableEntry->Object =
NULL;
01293
01294
KeEnterCriticalRegion();
01295
ExLockHandleTableExclusive( HandleTable );
01296
01297
try {
01298
01299
ExpFreeHandleTableEntry( HandleTable,
01300 LocalHandle,
01301 HandleTableEntry );
01302
01303 } finally {
01304
01305
ExUnlockHandleTableExclusive( HandleTable );
01306
KeLeaveCriticalRegion();
01307 }
01308
01309
return TRUE;
01310 }
01311
01312
01313
NTKERNELAPI
01314 BOOLEAN
01315 ExChangeHandle (
01316 IN
PHANDLE_TABLE HandleTable,
01317 IN HANDLE Handle,
01318 IN PEX_CHANGE_HANDLE_ROUTINE ChangeRoutine,
01319 IN ULONG_PTR Parameter
01320 )
01321
01322
01323
01324
01325
01326
01327
01328
01329
01330
01331
01332
01333
01334
01335
01336
01337
01338
01339
01340
01341
01342
01343
01344
01345
01346
01347
01348 {
01349
EXHANDLE LocalHandle;
01350
01351
PHANDLE_TABLE_ENTRY HandleTableEntry;
01352 BOOLEAN ReturnValue;
01353
01354
PAGED_CODE();
01355
01356 LocalHandle.
GenericHandleOverlay =
Handle;
01357
01358
01359
01360
01361
01362
01363 HandleTableEntry =
ExpLookupHandleTableEntry( HandleTable,
01364 LocalHandle );
01365
01366
if (HandleTableEntry ==
NULL) {
01367
01368
return FALSE;
01369 }
01370
01371
01372
01373
01374
01375
01376
if (!
ExLockHandleTableEntry( HandleTable, HandleTableEntry )) {
01377
01378
return FALSE;
01379 }
01380
01381
01382
01383
01384
01385
KeEnterCriticalRegion();
01386
01387
try {
01388
01389 ReturnValue = (*ChangeRoutine)( HandleTableEntry, Parameter );
01390
01391 } finally {
01392
01393
ExUnlockHandleTableEntry( HandleTable, HandleTableEntry );
01394
KeLeaveCriticalRegion();
01395 }
01396
01397
return ReturnValue;
01398 }
01399
01400
01401
NTKERNELAPI
01402
PHANDLE_TABLE_ENTRY
01403 ExMapHandleToPointer (
01404 IN
PHANDLE_TABLE HandleTable,
01405 IN HANDLE Handle
01406 )
01407
01408
01409
01410
01411
01412
01413
01414
01415
01416
01417
01418
01419
01420
01421
01422
01423
01424
01425
01426
01427
01428
01429
01430 {
01431
EXHANDLE LocalHandle;
01432
01433
PHANDLE_TABLE_ENTRY HandleTableEntry;
01434
01435
PAGED_CODE();
01436
01437 LocalHandle.
GenericHandleOverlay =
Handle;
01438
01439
01440
01441
01442
01443
01444 HandleTableEntry =
ExpLookupHandleTableEntry( HandleTable,
01445 LocalHandle );
01446
01447
if (HandleTableEntry ==
NULL) {
01448
01449
return NULL;
01450 }
01451
01452
01453
01454
01455
01456
01457
if (!
ExLockHandleTableEntry( HandleTable, HandleTableEntry )) {
01458
01459
return NULL;
01460 }
01461
01462
01463
01464
01465
01466
return HandleTableEntry;
01467 }
01468
01469
01470
01471
01472
01473
01474
PHANDLE_TABLE
01475 ExpAllocateHandleTable (
01476 IN
PEPROCESS Process OPTIONAL
01477 )
01478
01479
01480
01481
01482
01483
01484
01485
01486
01487
01488
01489
01490
01491
01492
01493
01494
01495
01496
01497
01498
01499
01500
01501 {
01502
PHANDLE_TABLE HandleTable;
01503 BOOLEAN HandleTableQuotaCharged;
01504
01505 PVOID HandleTableTable;
01506 BOOLEAN HandleTableTableQuotaCharged;
01507
01508 ULONG i;
01509
01510
PAGED_CODE();
01511
01512 HandleTable =
NULL;
01513 HandleTableQuotaCharged =
FALSE;
01514
01515 HandleTableTable =
NULL;
01516 HandleTableTableQuotaCharged =
FALSE;
01517
01518
01519
01520
01521
01522
01523
01524
try {
01525
01526
01527
01528
01529
01530
01531 HandleTable = (
PHANDLE_TABLE)
ExAllocatePoolWithTag(
NonPagedPool |
POOL_RAISE_IF_ALLOCATION_FAILURE,
01532
sizeof(
HANDLE_TABLE),
01533 'btbO' );
01534
01535
if (ARGUMENT_PRESENT(Process)) {
01536
01537
PsChargePoolQuota( Process,
01538
NonPagedPool,
01539
sizeof(
HANDLE_TABLE));
01540
01541 HandleTableQuotaCharged =
TRUE;
01542 }
01543
01544 RtlZeroMemory( HandleTable,
sizeof(
HANDLE_TABLE) );
01545
01546
01547
01548
01549
01550
01551 HandleTableTable =
01552 HandleTable->
Table =
ExAllocatePoolWithTag(
PagedPool |
POOL_RAISE_IF_ALLOCATION_FAILURE,
01553 (2 *
sizeof(ULONG_PTR) * 256) + (
sizeof(
HANDLE_TABLE_ENTRY) * 256),
01554 'btbO' );
01555
01556
if (ARGUMENT_PRESENT(Process)) {
01557
01558
PsChargePoolQuota( Process,
01559
PagedPool,
01560 (2 *
sizeof(ULONG_PTR) * 256) + (
sizeof(
HANDLE_TABLE_ENTRY) * 256) );
01561
01562 HandleTableTableQuotaCharged =
TRUE;
01563
01564 }
01565
01566 RtlZeroMemory( HandleTable->
Table,
01567 (2 *
sizeof(ULONG_PTR) * 256) + (
sizeof(
HANDLE_TABLE_ENTRY) * 256) );
01568
01569 } except (
EXCEPTION_EXECUTE_HANDLER) {
01570
01571
if (HandleTable !=
NULL) {
01572
01573
ExFreePool( HandleTable );
01574
01575
if (HandleTableQuotaCharged) {
01576
01577
PsReturnPoolQuota( Process,
01578
NonPagedPool,
01579
sizeof(
HANDLE_TABLE));
01580 }
01581 }
01582
01583
if (HandleTableTable !=
NULL) {
01584
01585
ExFreePool( HandleTableTable );
01586
01587
if (HandleTableTableQuotaCharged) {
01588
01589
PsReturnPoolQuota( Process,
01590
PagedPool,
01591 (2 *
sizeof(ULONG_PTR) * 256) + (
sizeof(
HANDLE_TABLE_ENTRY) * 256) );
01592 }
01593 }
01594
01595
return NULL;
01596 }
01597
01598
01599
01600
01601
01602 HandleTable->
Table[0] = (PVOID)(((PCHAR)(HandleTable->
Table)) + 1 * (
sizeof(ULONG_PTR) * 256));
01603 HandleTable->
Table[0][0] = (PVOID)(((PCHAR)(HandleTable->
Table)) + 2 * (
sizeof(ULONG_PTR) * 256));
01604
01605
01606
01607
01608
01609
01610
01611
01612
01613
for (i = 0; i < 255; i += 1) {
01614
01615 (HandleTable->
Table[0][0])[i].
NextFreeTableEntry = i+1;
01616 }
01617
01618 (HandleTable->
Table[0][0])[255].NextFreeTableEntry = -1;
01619
01620 HandleTable->
FirstFreeTableEntry = 1;
01621 HandleTable->
NextIndexNeedingPool = 256;
01622
01623
01624
01625
01626
01627 HandleTable->
QuotaProcess = Process;
01628 HandleTable->
UniqueProcessId =
PsGetCurrentProcess()->UniqueProcessId;
01629
01630
01631
01632
01633
01634
ExInitializeResource( &HandleTable->
HandleTableLock );
01635
01636
01637
01638
01639
01640
KeInitializeEvent( &HandleTable->
HandleContentionEvent, NotificationEvent,
FALSE );
01641
01642
01643
01644
01645
01646
KeEnterCriticalRegion();
01647
ExAcquireResourceExclusive( &
HandleTableListLock,
TRUE );
01648
01649 InsertTailList( &
HandleTableListHead, &HandleTable->
HandleTableList );
01650
01651
ExReleaseResource( &
HandleTableListLock );
01652
KeLeaveCriticalRegion();
01653
01654
01655
01656
01657
01658
return HandleTable;
01659 }
01660
01661
01662
01663
01664
01665
01666
VOID
01667 ExpFreeHandleTable (
01668 IN
PHANDLE_TABLE HandleTable
01669 )
01670
01671
01672
01673
01674
01675
01676
01677
01678
01679
01680
01681
01682
01683
01684
01685
01686
01687 {
01688
PEPROCESS Process;
01689 ULONG i,j;
01690
01691
PAGED_CODE();
01692
01693 Process = HandleTable->QuotaProcess;
01694
01695
01696
01697
01698
01699
ExDeleteResource( &HandleTable->HandleTableLock );
01700
01701
01702
01703
01704
01705
01706
01707
01708
01709
01710
01711
01712
01713
01714
for (j = 1; j < 256; j += 2) {
01715
01716
if (HandleTable->Table[0][j] ==
NULL) {
01717
01718
break;
01719 }
01720
01721
ExFreePool( HandleTable->Table[0][j] );
01722
01723
if (Process !=
NULL) {
01724
01725
PsReturnPoolQuota( Process,
01726
PagedPool,
01727 2 *
sizeof(
HANDLE_TABLE_ENTRY) * 256 );
01728 }
01729 }
01730
01731
01732
01733
01734
01735
01736
01737
for (i = 1; i < 256; i += 1) {
01738
01739
if (HandleTable->Table[i] ==
NULL) {
01740
01741
break;
01742 }
01743
01744
for (j = 0; j < 256; j += 2) {
01745
01746
if (HandleTable->Table[i][j] ==
NULL) {
01747
01748
break;
01749 }
01750
01751
ExFreePool( HandleTable->Table[i][j] );
01752
01753
if (Process !=
NULL) {
01754
01755
PsReturnPoolQuota( Process,
01756
PagedPool,
01757 2 *
sizeof(
HANDLE_TABLE_ENTRY) * 256 );
01758 }
01759 }
01760 }
01761
01762
01763
01764
01765
01766
01767
01768
for (i = 1; i < 256; i += 4) {
01769
01770
if (HandleTable->Table[i] ==
NULL) {
01771
01772
break;
01773 }
01774
01775
ExFreePool( HandleTable->Table[i] );
01776
01777
if (Process !=
NULL) {
01778
01779
PsReturnPoolQuota( Process,
01780
PagedPool,
01781 4 *
sizeof(ULONG_PTR) * 256 );
01782 }
01783 }
01784
01785
01786
01787
01788
01789
01790
ExFreePool( HandleTable->Table );
01791
01792
if (Process !=
NULL) {
01793
01794
PsReturnPoolQuota( Process,
01795
PagedPool,
01796 (2 *
sizeof(ULONG_PTR) * 256) + (
sizeof(
HANDLE_TABLE_ENTRY) * 256) );
01797 }
01798
01799
01800
01801
01802
01803
ExFreePool( HandleTable );
01804
01805
if (Process !=
NULL) {
01806
01807
PsReturnPoolQuota( Process,
01808
NonPagedPool,
01809
sizeof(
HANDLE_TABLE) );
01810 }
01811
01812
01813
01814
01815
01816
return;
01817 }
01818
01819
01820
01821
01822
01823
01824
PHANDLE_TABLE_ENTRY
01825 ExpAllocateHandleTableEntry (
01826 IN
PHANDLE_TABLE HandleTable,
01827 OUT
PEXHANDLE Handle
01828 )
01829
01830
01831
01832
01833
01834
01835
01836
01837
01838
01839
01840
01841
01842
01843
01844
01845
01846
01847
01848
01849
01850
01851
01852
01853 {
01854 ULONG i,j,k;
01855
01856 PUCHAR NewMidLevel;
01857 BOOLEAN MidTableQuotaCharged;
01858
01859 PUCHAR NewLowLevel;
01860 BOOLEAN LowTableQuotaCharged;
01861
01862
PHANDLE_TABLE_ENTRY HandleTableEntry;
01863
01864
PAGED_CODE();
01865
01866
Handle->GenericHandleOverlay =
NULL;
01867
01868
01869
01870
01871
01872
01873
if (HandleTable->FirstFreeTableEntry == -1) {
01874
01875
01876
01877
01878
01879
01880
01881
if (HandleTable->NextIndexNeedingPool >= (1 << 24)) {
01882
01883
return NULL;
01884 }
01885
01886
01887
01888
01889 i = (HandleTable->NextIndexNeedingPool >> 16) & 255;
01890 j = (HandleTable->NextIndexNeedingPool >> 8) & 255;
01891
01892
01893
01894
01895
01896
01897
01898
01899
01900
01901
01902 NewMidLevel =
NULL;
01903 MidTableQuotaCharged =
FALSE;
01904
01905 NewLowLevel =
NULL;
01906 LowTableQuotaCharged =
FALSE;
01907
01908
try {
01909
01910
01911
01912
01913
01914
01915
if (HandleTable->Table[i] ==
NULL) {
01916
01917 NewMidLevel =
ExAllocatePoolWithTag(
PagedPool |
POOL_RAISE_IF_ALLOCATION_FAILURE,
01918 4 *
sizeof(ULONG_PTR) * 256,
01919 'btbO' );
01920
01921 RtlZeroMemory( NewMidLevel, 4 *
sizeof(ULONG_PTR) * 256 );
01922
01923
if (HandleTable->QuotaProcess !=
NULL) {
01924
01925
PsChargePoolQuota( HandleTable->QuotaProcess,
01926
PagedPool,
01927 (4 *
sizeof(ULONG_PTR) * 256) );
01928
01929 MidTableQuotaCharged =
TRUE;
01930 }
01931 }
01932
01933
01934
01935
01936
01937 NewLowLevel =
ExAllocatePoolWithTag(
PagedPool |
POOL_RAISE_IF_ALLOCATION_FAILURE,
01938 2 *
sizeof(
HANDLE_TABLE_ENTRY) * 256,
01939 'btbO' );
01940
01941 RtlZeroMemory( NewLowLevel, 2 *
sizeof(
HANDLE_TABLE_ENTRY) * 256 );
01942
01943
if (HandleTable->QuotaProcess !=
NULL) {
01944
01945
PsChargePoolQuota( HandleTable->QuotaProcess,
01946
PagedPool,
01947 (2 *
sizeof(
HANDLE_TABLE_ENTRY) * 256) );
01948
01949 LowTableQuotaCharged =
TRUE;
01950 }
01951
01952
01953
01954
01955
01956
01957
01958
01959 InterlockedExchangePointer( (PVOID *) NewLowLevel,
NULL );
01960
01961
01962
01963
01964
01965
01966
01967
if (NewMidLevel !=
NULL) {
01968
01969
if (i+0 < 256) { HandleTable->Table[i+0] = (PVOID)(NewMidLevel + 0 *
sizeof(ULONG_PTR) * 256); }
01970
if (i+1 < 256) { HandleTable->Table[i+1] = (PVOID)(NewMidLevel + 1 *
sizeof(ULONG_PTR) * 256); }
01971
if (i+2 < 256) { HandleTable->Table[i+2] = (PVOID)(NewMidLevel + 2 *
sizeof(ULONG_PTR) * 256); }
01972
if (i+3 < 256) { HandleTable->Table[i+3] = (PVOID)(NewMidLevel + 3 *
sizeof(ULONG_PTR) * 256); }
01973 }
01974
01975
01976
01977
01978
01979
01980
01981 { HandleTable->Table[i][j+0] = (PVOID)(NewLowLevel + 0 *
sizeof(
HANDLE_TABLE_ENTRY) * 256); }
01982
if (j+1 < 256) { HandleTable->Table[i][j+1] = (PVOID)(NewLowLevel + 1 *
sizeof(
HANDLE_TABLE_ENTRY) * 256); }
01983
01984
01985
01986
01987
01988
01989
01990
01991
01992
01993 HandleTable->FirstFreeTableEntry = HandleTable->NextIndexNeedingPool;
01994
01995
01996
01997
01998
01999
for (k = 0; k < 256; k += 1) {
02000
02001 HandleTable->Table[i][j+0][k].NextFreeTableEntry = HandleTable->NextIndexNeedingPool + k + 1;
02002 }
02003
02004
02005
02006
02007
02008
if ((j+1 < 256) && (HandleTable->Table[i][j+1] !=
NULL)) {
02009
02010
02011
02012
02013
02014
for (k = 0; k < 255; k += 1) {
02015
02016 HandleTable->Table[i][j+1][k].NextFreeTableEntry = HandleTable->NextIndexNeedingPool + k + 1 + 256;
02017 }
02018
02019
02020
02021
02022
02023
02024 HandleTable->Table[i][j+1][255].NextFreeTableEntry = -1;
02025
02026 HandleTable->NextIndexNeedingPool += 512;
02027
02028 }
else {
02029
02030
02031
02032
02033
02034
02035 HandleTable->Table[i][j+0][255].NextFreeTableEntry = -1;
02036
02037 HandleTable->NextIndexNeedingPool += 256;
02038 }
02039
02040 } except (
EXCEPTION_EXECUTE_HANDLER) {
02041
02042
02043
02044
02045
02046
02047
02048
if (NewMidLevel !=
NULL) {
02049
02050
ExFreePool( NewMidLevel );
02051
02052
if (MidTableQuotaCharged) {
02053
02054
PsReturnPoolQuota( HandleTable->QuotaProcess,
02055
PagedPool,
02056 (4 *
sizeof(ULONG_PTR) * 256) );
02057 }
02058 }
02059
02060
if (NewLowLevel !=
NULL) {
02061
02062
ExFreePool( NewLowLevel );
02063
02064
if (LowTableQuotaCharged) {
02065
02066
PsReturnPoolQuota( HandleTable->QuotaProcess,
02067
PagedPool,
02068 (2 *
sizeof(
HANDLE_TABLE_ENTRY) * 256) );
02069 }
02070 }
02071
02072
Handle->Index = 0;
02073
02074
return NULL;
02075 }
02076 }
02077
02078
02079
02080
02081
02082
02083
02084
02085
Handle->Index = HandleTable->FirstFreeTableEntry;
02086
02087 HandleTableEntry =
ExpLookupHandleTableEntry( HandleTable,
02088 *
Handle );
02089
02090
02091
02092
02093
02094 HandleTable->FirstFreeTableEntry = HandleTableEntry->
NextFreeTableEntry;
02095
02096
02097
02098
02099
02100 RtlZeroMemory( HandleTableEntry,
sizeof(
HANDLE_TABLE_ENTRY ));
02101
02102
02103
02104
02105
02106
02107 HandleTable->HandleCount += 1;
02108
02109
return HandleTableEntry;
02110 }
02111
02112
02113
02114
02115
02116
02117
02118
02119
02120
02121
02122
#if DBG
02123
BOOLEAN ExReuseHandles = 1;
02124
#endif //DBG
02125
02126
VOID
02127 ExpFreeHandleTableEntry (
02128 IN
PHANDLE_TABLE HandleTable,
02129 IN
EXHANDLE Handle,
02130 IN
PHANDLE_TABLE_ENTRY HandleTableEntry
02131 IN
02132 )
02133
02134
02135
02136
02137
02138
02139
02140
02141
02142
02143
02144
02145
02146
02147
02148
02149
02150
02151
02152
02153
02154
02155
02156
02157 {
02158
PAGED_CODE();
02159
02160
02161
02162
02163
02164
02165
02166
#if DBG
02167
if (ExReuseHandles) {
02168
#endif //DBG
02169
02170 HandleTableEntry->NextFreeTableEntry = HandleTable->FirstFreeTableEntry;
02171 HandleTable->FirstFreeTableEntry =
Handle.Index;
02172
02173
#if DBG
02174
}
else {
02175
02176 HandleTableEntry->NextFreeTableEntry = 0;
02177 }
02178
#endif //DBG
02179
02180
02181
02182
02183
02184 HandleTable->HandleCount -= 1;
02185
02186
return;
02187 }
02188
02189
02190
02191
02192
02193
02194
PHANDLE_TABLE_ENTRY
02195 ExpLookupHandleTableEntry (
02196 IN
PHANDLE_TABLE HandleTable,
02197 IN
EXHANDLE Handle
02198 )
02199
02200
02201
02202
02203
02204
02205
02206
02207
02208
02209
02210
02211
02212
02213
02214
02215
02216
02217
02218
02219
02220
02221 {
02222 ULONG i,j,k,l;
02223
02224
PAGED_CODE();
02225
02226
02227
02228
02229
02230 l = (
Handle.Index >> 24) & 255;
02231 i = (
Handle.Index >> 16) & 255;
02232 j = (
Handle.Index >> 8) & 255;
02233 k = (
Handle.Index) & 255;
02234
02235
02236
02237
02238
02239
02240
02241
if ( l != 0 ) {
02242
02243
02244
02245
02246
02247
return NULL;
02248 }
02249
02250
02251
02252
02253
02254
if (HandleTable->Table[i] ==
NULL) {
02255
02256
return NULL;
02257 }
02258
02259
02260
02261
02262
02263
if (HandleTable->Table[i][j] ==
NULL) {
02264
02265
return NULL;
02266 }
02267
02268
02269
02270
02271
02272
return &(HandleTable->Table[i][j][k]);
02273 }