Logo Questions Linux Laravel Mysql Ubuntu Git Menu
 

How to push a 64bit int in NASM?

I'm trying to push a 64bit integer but when assembling NASM seems to want to see it as a DWORD not a QWORD.

I'm using ASM to create the shellcode I need to inject a 64bit DLL into a 64bit process. The first QWORD is the old instruction pointer, the second is the address containing the address of the DLL, the third is the address of LoadLibrary. The placeholders are filled in at runtime.

section .text
global _start   

_start:
BITS 64
PUSH QWORD 0xACEACEACACEACEAC
PUSHFQ
push rax
PUSH QWORD 0xACEACEACACEACEAC
MOV RAX, 0xACEACEACACEACEAC
CALL RAX
pop RAX
POPFQ
RETN
like image 570
user2272296 Avatar asked Jun 04 '13 12:06

user2272296


1 Answers

There is no push imm64 instruction. As a workaround you can do one of the following:

  1. go through a register: mov rax, 0xACEACEACACEACEAC; push rax
  2. go through memory: push qword [rel foo]
  3. write it in two parts: push dword low32; mov dword [rsp+4], high32 or sub rsp,8; mov dword [rsp], low32; mov dword [rsp+4], high32
  4. use sign-extension if your immediate allows it
like image 78
Jester Avatar answered Oct 14 '22 11:10

Jester