summary refs log tree commit diff stats
path: root/results/classifier/zero-shot/004/semantic/gitlab_semantic_adox
blob: ed838cbdddc9ba453def415414e1d879c56fad2a (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
semantic: 0.990
instruction: 0.944
assembly: 0.913
graphic: 0.782
device: 0.776
vnc: 0.663
boot: 0.599
socket: 0.556
mistranslation: 0.452
network: 0.426
other: 0.286
KVM: 0.240

x86 ADOX and ADCX semantic bug
Description of problem
The result of instruction ADOX and ADCX are different from the CPU. The value of one of EFLAGS is different.

Steps to reproduce

Compile this code


void main() {
    asm("push 512; popfq;");
    asm("mov rax, 0xffffffff84fdbf24");
    asm("mov rbx, 0xb197d26043bec15d");
    asm("adox eax, ebx");
}



Execute and compare the result with the CPU. This problem happens with ADCX, too (with CF).

CPU

OF = 0


QEMU

OF = 1






Additional information
This bug is discovered by research conducted by KAIST SoftSec.