v8에서 v8에서 정수는 *2한 짝수로 변환되고 주소는 +1한 홀수를 사용한다

그러므로 정수를 이용한 주소값 ****을 할 수 없다

현재 map을 정상적으로 만들지 못해서 큰일이다

 

gef➤  x/16wx 0x38a08194
0x38a08194: 0x22684ba9 0x35e04125 0x38a07f91 0x00000014
0x38a081a4: 0x23785021 0x33618ee5 0x22684c2d 0x35e04125
0x38a081b4: 0x38a081bd 0x00000014 0x23784185 0x00000014
0x38a081c4: 0x336197fd 0x3361980d 0x3361981d 0x3361982d
gef➤  x/16wx 0x22684ba8
0x22684ba8: 0x2378412d 0x17000004 0x000100c2 0x092007ff
0x22684bb8: 0x33607785 0x336075a9 0x3360794d 0x33607969
0x22684bc8: 0x35e04125 0x35e04125 0x33607985 0x2378412d
0x22684bd8: 0x17000004 0x000500c2 0x082083ff 0x33605171

gef➤  x/16wx 0x38a07f90
0x38a07f90: 0x2378433d 0x00000014 0x00000002 0x00000004
0x38a07fa0: 0x00000006 0x00000008 0x0000000a 0x0000000c
0x38a07fb0: 0x0000000e 0x00000010 0x00000012 0x00000014
0x38a07fc0: 0x237843c1 0x00000003 0x000000cc 0x5f415343

gef➤  x/32wx 0x2378433c
0x2378433c: 0x2378412d 0x06000000 0x001900a9 0x082003ff
0x2378434c: 0x35e04101 0x35e04101 0x00000000 0x35e0411d

gef➤  x/16w 0x35e04100
0x35e04100: 0x23784159 0x00000000 0x00000000 0x35e0412d
0x35e04110: 0x00000000 0x35e0413d 0x00000006 0x23784185
0x35e04120: 0x00000000 0x23784185 0x00000000 0x237841b1
0x35e04130: 0x3043247e 0x00000008 0x6c6c756e 0x237841b1
gef➤  x/16wx 0x23784158
0x23784158: 0x2378412d 0x33000007 0x00001083 0x002003ff
0x23784168: 0x35e04101 0x35e04101 0x00000000 0x35e0411d
0x23784178: 0x35e04125 0x35e04125 0x00000000 0x2378412d
0x23784188: 0x06000000 0x001800a9 0x002003ff 0x35e04101

Posted by goldpapa
,