[*] Binary protection state of integritysetup

  
  	Full RELRO     Canary found      NX disabled  PIE enabled  No RPATH     No RUNPATH   No Symbols


[*] Function strcat tear down of integritysetup

    ; assembly                           | /* r2dec pseudo code output */
                                         | /* /logs/firmware/unblob_extracted/firmware_extract/4325012-58052244.squashfs_v4_le_extract/usr/sbin/integritysetup @ 0x5720 */
                                         | #include <stdint.h>
                                         |  
    ; (fcn) sym.clogger ()               | void clogger () {
    0x00005720 lui gp, 2                 |     
    0x00005724 addiu gp, gp, 0x1d40      |     
    0x00005728 addu gp, gp, t9           |     gp += t9;
    0x0000572c addiu sp, sp, -0x1048     |     
    0x00005730 addiu v0, sp, 0x105c      |     v0 = sp + 0x105c;
    0x00005734 sw s0, 0x1034(sp)         |     *(var_1034h) = s0;
    0x00005738 lw s0, -0x7d60(gp)        |     s0 = *((gp - 8024));
    0x0000573c sw v0, 0x24(sp)           |     *(var_24h) = v0;
    0x00005740 lw t9, -0x7dec(gp)        |     t9 = sym.imp.__vsnprintf_chk;
    0x00005744 lw v1, (s0)               |     v1 = *(s0);
    0x00005748 sw v0, 0x14(sp)           |     *(var_14h) = v0;
    0x0000574c lw v0, 0x1058(sp)         |     v0 = *(arg_1058h);
    0x00005750 sw s1, 0x1038(sp)         |     *(var_1038h) = s1;
    0x00005754 addiu s1, sp, 0x28        |     s1 = sp + 0x28;
    0x00005758 sw gp, 0x18(sp)           |     *(var_18h) = gp;
    0x0000575c sw s3, 0x1040(sp)         |     *(var_1040h) = s3;
    0x00005760 sw s2, 0x103c(sp)         |     *(var_103ch) = s2;
    0x00005764 sw ra, 0x1044(sp)         |     *(var_1044h) = ra;
    0x00005768 move s3, a0               |     s3 = a0;
    0x0000576c move s2, a1               |     s2 = a1;
    0x00005770 sw v0, 0x10(sp)           |     *(var_10h) = v0;
    0x00005774 addiu a3, zero, 0x1002    |     a3 = 0x1002;
    0x00005778 addiu a2, zero, 1         |     a2 = 1;
    0x0000577c addiu a1, zero, 0x1000    |     a1 = 0x1000;
    0x00005780 move a0, s1               |     a0 = s1;
    0x00005784 sw v1, 0x102c(sp)         |     *(var_102ch) = v1;
    0x00005788 jalr t9                   |     t9 ();
    0x0000578c nop                       |     
    0x00005790 lw gp, 0x18(sp)           |     gp = *(var_18h);
                                         |     if (v0 <= 0) {
    0x00005794 blez v0, 0x57c8           |         goto label_0;
                                         |     }
    0x00005798 addiu v0, s2, -1          |     v0 = s2 + -1;
    0x0000579c sltiu v0, v0, 2           |     v0 = (v0 < 2) ? 1 : 0;
    0x000057a0 addiu v0, s2, 2           |     v0 = s2 + 2;
                                         |     if (v0 != 0) {
    0x000057a4 bnez v0, 0x57f0           |         goto label_1;
                                         |     }
    0x000057a8 sltiu v0, v0, 2           |     v0 = (v0 < 2) ? 1 : 0;
    0x000057ac lw t9, -0x7ed8(gp)        |     t9 = sym.imp.crypt_log;
                                         |     if (v0 != 0) {
    0x000057b0 bnez v0, 0x57f0           |         goto label_1;
                                         |     }
    0x000057b4 move a2, s1               |     a2 = s1;
    0x000057b8 move a1, s2               |     a1 = s2;
    0x000057bc move a0, s3               |     a0 = s3;
    0x000057c0 jalr t9                   |     t9 ();
    0x000057c4 lw gp, 0x18(sp)           |     gp = *(var_18h);
                                         |     do {
                                         | label_0:
    0x000057c8 lw v1, 0x102c(sp)         |         v1 = *(var_102ch);
    0x000057cc lw v0, (s0)               |         v0 = *(s0);
    0x000057d0 lw ra, 0x1044(sp)         |         ra = *(var_1044h);
                                         |         if (v1 != v0) {
    0x000057d4 bne v1, v0, 0x5828        |             goto label_2;
                                         |         }
    0x000057d8 lw s3, 0x1040(sp)         |         s3 = *(var_1040h);
    0x000057dc lw s2, 0x103c(sp)         |         s2 = *(var_103ch);
    0x000057e0 lw s1, 0x1038(sp)         |         s1 = *(var_1038h);
    0x000057e4 lw s0, 0x1034(sp)         |         s0 = *(var_1034h);
    0x000057e8 addiu sp, sp, 0x1048      |         
    0x000057ec jr ra                     |         return v1;
                                         | label_1:
    0x000057f0 lw a1, -0x7fdc(gp)        |         a1 = *((gp - 8183));
    0x000057f4 lw t9, -0x7e10(gp)        |         t9 = sym.imp.__strcat_chk
    0x000057f8 addiu a2, zero, 0x1002    |         a2 = 0x1002;
    0x000057fc addiu a1, a1, -0x31fc     |         a1 += -0x31fc;
    0x00005800 move a0, s1               |         a0 = s1;
    0x00005804 jalr t9                   |         t9 ();
    0x00005808 lw gp, 0x18(sp)           |         gp = *(var_18h);
    0x0000580c move a2, s1               |         a2 = s1;
    0x00005810 move a1, s2               |         a1 = s2;
    0x00005814 lw t9, -0x7ed8(gp)        |         t9 = sym.imp.crypt_log;
    0x00005818 move a0, s3               |         a0 = s3;
    0x0000581c jalr t9                   |         t9 ();
    0x00005820 lw gp, 0x18(sp)           |         gp = *(var_18h);
    0x00005824 b 0x57c8                  |         
                                         |     } while (1);
                                         | label_2:
    0x00005828 lw t9, -0x7e2c(gp)        |     t9 = sym.imp.__stack_chk_fail;
    0x0000582c jalr t9                   |     t9 ();
    0x00005830 nop                       |     
                                         | }

[*] Function strcat used 2 times integritysetup