Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
17 changes: 16 additions & 1 deletion src/ntexapi.rs
Original file line number Diff line number Diff line change
Expand Up @@ -940,7 +940,8 @@ ENUM!{enum SYSTEM_INFORMATION_CLASS {
SystemCodeIntegrityUnlockModeInformation = 205,
SystemLeapSecondInformation = 206,
SystemFlags2Information = 207,
MaxSystemInfoClass = 208,
SystemShadowStackInformation = 221,
SystemBasicProcessInformation = 252,
}}
STRUCT!{struct SYSTEM_BASIC_INFORMATION {
Reserved: ULONG,
Expand Down Expand Up @@ -1118,6 +1119,16 @@ STRUCT!{struct SYSTEM_PROCESS_INFORMATION {
Threads: [SYSTEM_THREAD_INFORMATION; 1],
}}
pub type PSYSTEM_PROCESS_INFORMATION = *mut SYSTEM_PROCESS_INFORMATION;

STRUCT!{struct SYSTEM_BASICPROCESS_INFORMATION {
NextEntryOffset: ULONG,
UniqueProcessId: HANDLE,
InheritedFromUniqueProcessId: HANDLE,
SequenceNumber: ULONG64,
ImageName: UNICODE_STRING,
}}
pub type PSYSTEM_BASICPROCESS_INFORMATION = *mut SYSTEM_BASICPROCESS_INFORMATION;

STRUCT!{struct SYSTEM_CALL_COUNT_INFORMATION {
Length: ULONG,
NumberOfTables: ULONG,
Expand Down Expand Up @@ -2462,6 +2473,10 @@ STRUCT!{struct SYSTEM_WORKLOAD_ALLOWED_CPU_SET_INFORMATION {
}}
pub type PSYSTEM_WORKLOAD_ALLOWED_CPU_SET_INFORMATION =
*mut SYSTEM_WORKLOAD_ALLOWED_CPU_SET_INFORMATION;
STRUCT!{struct SYSTEM_SHADOW_STACK_INFORMATION {
Flags: ULONG,
}}
pub type PSYSTEM_SHADOW_STACK_INFORMATION = *mut SYSTEM_SHADOW_STACK_INFORMATION;
EXTERN!{extern "system" {
fn NtQuerySystemInformation(
SystemInformationClass: SYSTEM_INFORMATION_CLASS,
Expand Down
4 changes: 4 additions & 0 deletions tests/layout_aarch64.rs
Original file line number Diff line number Diff line change
Expand Up @@ -87,6 +87,8 @@ fn ntexapi() {
assert_eq!(align_of::<SYSTEM_EXTENDED_THREAD_INFORMATION>(), 8);
assert_eq!(size_of::<SYSTEM_PROCESS_INFORMATION>(), 336);
assert_eq!(align_of::<SYSTEM_PROCESS_INFORMATION>(), 8);
assert_eq!(size_of::<SYSTEM_BASICPROCESS_INFORMATION>(), 48);
assert_eq!(align_of::<SYSTEM_BASICPROCESS_INFORMATION>(), 8);
assert_eq!(size_of::<SYSTEM_CALL_COUNT_INFORMATION>(), 8);
assert_eq!(align_of::<SYSTEM_CALL_COUNT_INFORMATION>(), 4);
assert_eq!(size_of::<SYSTEM_DEVICE_INFORMATION>(), 24);
Expand All @@ -97,6 +99,8 @@ fn ntexapi() {
assert_eq!(align_of::<SYSTEM_FLAGS_INFORMATION>(), 4);
assert_eq!(size_of::<SYSTEM_CALL_TIME_INFORMATION>(), 16);
assert_eq!(align_of::<SYSTEM_CALL_TIME_INFORMATION>(), 8);
assert_eq!(size_of::<SYSTEM_SHADOW_STACK_INFORMATION>(), 4);
assert_eq!(align_of::<SYSTEM_SHADOW_STACK_INFORMATION>(), 4);
assert_eq!(size_of::<RTL_PROCESS_LOCK_INFORMATION>(), 48);
assert_eq!(align_of::<RTL_PROCESS_LOCK_INFORMATION>(), 8);
assert_eq!(size_of::<RTL_PROCESS_LOCKS>(), 56);
Expand Down
4 changes: 4 additions & 0 deletions tests/layout_x86.rs
Original file line number Diff line number Diff line change
Expand Up @@ -87,6 +87,8 @@ fn ntexapi() {
assert_eq!(align_of::<SYSTEM_EXTENDED_THREAD_INFORMATION>(), 8);
assert_eq!(size_of::<SYSTEM_PROCESS_INFORMATION>(), 248);
assert_eq!(align_of::<SYSTEM_PROCESS_INFORMATION>(), 8);
assert_eq!(size_of::<SYSTEM_BASICPROCESS_INFORMATION>(), 32);
assert_eq!(align_of::<SYSTEM_BASICPROCESS_INFORMATION>(), 8);
assert_eq!(size_of::<SYSTEM_CALL_COUNT_INFORMATION>(), 8);
assert_eq!(align_of::<SYSTEM_CALL_COUNT_INFORMATION>(), 4);
assert_eq!(size_of::<SYSTEM_DEVICE_INFORMATION>(), 24);
Expand All @@ -97,6 +99,8 @@ fn ntexapi() {
assert_eq!(align_of::<SYSTEM_FLAGS_INFORMATION>(), 4);
assert_eq!(size_of::<SYSTEM_CALL_TIME_INFORMATION>(), 16);
assert_eq!(align_of::<SYSTEM_CALL_TIME_INFORMATION>(), 8);
assert_eq!(size_of::<SYSTEM_SHADOW_STACK_INFORMATION>(), 4);
assert_eq!(align_of::<SYSTEM_SHADOW_STACK_INFORMATION>(), 4);
assert_eq!(size_of::<RTL_PROCESS_LOCK_INFORMATION>(), 36);
assert_eq!(align_of::<RTL_PROCESS_LOCK_INFORMATION>(), 4);
assert_eq!(size_of::<RTL_PROCESS_LOCKS>(), 40);
Expand Down
4 changes: 4 additions & 0 deletions tests/layout_x86_64.rs
Original file line number Diff line number Diff line change
Expand Up @@ -87,6 +87,8 @@ fn ntexapi() {
assert_eq!(align_of::<SYSTEM_EXTENDED_THREAD_INFORMATION>(), 8);
assert_eq!(size_of::<SYSTEM_PROCESS_INFORMATION>(), 336);
assert_eq!(align_of::<SYSTEM_PROCESS_INFORMATION>(), 8);
assert_eq!(size_of::<SYSTEM_BASICPROCESS_INFORMATION>(), 48);
assert_eq!(align_of::<SYSTEM_BASICPROCESS_INFORMATION>(), 8);
assert_eq!(size_of::<SYSTEM_CALL_COUNT_INFORMATION>(), 8);
assert_eq!(align_of::<SYSTEM_CALL_COUNT_INFORMATION>(), 4);
assert_eq!(size_of::<SYSTEM_DEVICE_INFORMATION>(), 24);
Expand All @@ -97,6 +99,8 @@ fn ntexapi() {
assert_eq!(align_of::<SYSTEM_FLAGS_INFORMATION>(), 4);
assert_eq!(size_of::<SYSTEM_CALL_TIME_INFORMATION>(), 16);
assert_eq!(align_of::<SYSTEM_CALL_TIME_INFORMATION>(), 8);
assert_eq!(size_of::<SYSTEM_SHADOW_STACK_INFORMATION>(), 4);
assert_eq!(align_of::<SYSTEM_SHADOW_STACK_INFORMATION>(), 4);
assert_eq!(size_of::<RTL_PROCESS_LOCK_INFORMATION>(), 48);
assert_eq!(align_of::<RTL_PROCESS_LOCK_INFORMATION>(), 8);
assert_eq!(size_of::<RTL_PROCESS_LOCKS>(), 56);
Expand Down