You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

526 lines
15KB

  1. /*
  2. * VMware Screen Codec (VMnc) decoder
  3. * Copyright (c) 2006 Konstantin Shishkov
  4. *
  5. * This file is part of FFmpeg.
  6. *
  7. * FFmpeg is free software; you can redistribute it and/or
  8. * modify it under the terms of the GNU Lesser General Public
  9. * License as published by the Free Software Foundation; either
  10. * version 2.1 of the License, or (at your option) any later version.
  11. *
  12. * FFmpeg is distributed in the hope that it will be useful,
  13. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  14. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
  15. * Lesser General Public License for more details.
  16. *
  17. * You should have received a copy of the GNU Lesser General Public
  18. * License along with FFmpeg; if not, write to the Free Software
  19. * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA
  20. *
  21. */
  22. /**
  23. * @file vmnc.c
  24. * VMware Screen Codec (VMnc) decoder
  25. * As Alex Beregszaszi discovered, this is effectively RFB data dump
  26. */
  27. #include <stdio.h>
  28. #include <stdlib.h>
  29. #include "common.h"
  30. #include "avcodec.h"
  31. enum EncTypes {
  32. MAGIC_WMVd = 0x574D5664,
  33. MAGIC_WMVe,
  34. MAGIC_WMVf,
  35. MAGIC_WMVg,
  36. MAGIC_WMVh,
  37. MAGIC_WMVi,
  38. MAGIC_WMVj
  39. };
  40. enum HexTile_Flags {
  41. HT_RAW = 1, // tile is raw
  42. HT_BKG = 2, // background color is present
  43. HT_FG = 4, // foreground color is present
  44. HT_SUB = 8, // subrects are present
  45. HT_CLR = 16 // each subrect has own color
  46. };
  47. /*
  48. * Decoder context
  49. */
  50. typedef struct VmncContext {
  51. AVCodecContext *avctx;
  52. AVFrame pic;
  53. int bpp;
  54. int bpp2;
  55. int bigendian;
  56. uint8_t pal[768];
  57. int width, height;
  58. /* cursor data */
  59. int cur_w, cur_h;
  60. int cur_x, cur_y;
  61. int cur_hx, cur_hy;
  62. uint8_t* curbits, *curmask;
  63. uint8_t* screendta;
  64. } VmncContext;
  65. /* read pixel value from stream */
  66. static av_always_inline int vmnc_get_pixel(uint8_t* buf, int bpp, int be) {
  67. switch(bpp * 2 + be) {
  68. case 2:
  69. case 3: return *buf;
  70. case 4: return AV_RL16(buf);
  71. case 5: return AV_RB16(buf);
  72. case 8: return AV_RL32(buf);
  73. case 9: return AV_RB32(buf);
  74. default: return 0;
  75. }
  76. }
  77. static void load_cursor(VmncContext *c, uint8_t *src)
  78. {
  79. int i, j, p;
  80. const int bpp = c->bpp2;
  81. uint8_t *dst8 = c->curbits;
  82. uint16_t *dst16 = (uint16_t*)c->curbits;
  83. uint32_t *dst32 = (uint32_t*)c->curbits;
  84. for(j = 0; j < c->cur_h; j++) {
  85. for(i = 0; i < c->cur_w; i++) {
  86. p = vmnc_get_pixel(src, bpp, c->bigendian);
  87. src += bpp;
  88. if(bpp == 1) *dst8++ = p;
  89. if(bpp == 2) *dst16++ = p;
  90. if(bpp == 4) *dst32++ = p;
  91. }
  92. }
  93. dst8 = c->curmask;
  94. dst16 = (uint16_t*)c->curmask;
  95. dst32 = (uint32_t*)c->curmask;
  96. for(j = 0; j < c->cur_h; j++) {
  97. for(i = 0; i < c->cur_w; i++) {
  98. p = vmnc_get_pixel(src, bpp, c->bigendian);
  99. src += bpp;
  100. if(bpp == 1) *dst8++ = p;
  101. if(bpp == 2) *dst16++ = p;
  102. if(bpp == 4) *dst32++ = p;
  103. }
  104. }
  105. }
  106. static void put_cursor(uint8_t *dst, int stride, VmncContext *c, int dx, int dy)
  107. {
  108. int i, j;
  109. int w, h, x, y;
  110. w = c->cur_w;
  111. if(c->width < c->cur_x + c->cur_w) w = c->width - c->cur_x;
  112. h = c->cur_h;
  113. if(c->height < c->cur_y + c->cur_h) h = c->height - c->cur_y;
  114. x = c->cur_x;
  115. y = c->cur_y;
  116. if(x < 0) {
  117. w += x;
  118. x = 0;
  119. }
  120. if(y < 0) {
  121. h += y;
  122. y = 0;
  123. }
  124. if((w < 1) || (h < 1)) return;
  125. dst += x * c->bpp2 + y * stride;
  126. if(c->bpp2 == 1) {
  127. uint8_t* cd = c->curbits, *msk = c->curmask;
  128. for(j = 0; j < h; j++) {
  129. for(i = 0; i < w; i++)
  130. dst[i] = (dst[i] & cd[i]) ^ msk[i];
  131. msk += c->cur_w;
  132. cd += c->cur_w;
  133. dst += stride;
  134. }
  135. } else if(c->bpp2 == 2) {
  136. uint16_t* cd = (uint16_t*)c->curbits, *msk = (uint16_t*)c->curmask;
  137. uint16_t* dst2;
  138. for(j = 0; j < h; j++) {
  139. dst2 = (uint16_t*)dst;
  140. for(i = 0; i < w; i++)
  141. dst2[i] = (dst2[i] & cd[i]) ^ msk[i];
  142. msk += c->cur_w;
  143. cd += c->cur_w;
  144. dst += stride;
  145. }
  146. } else if(c->bpp2 == 4) {
  147. uint32_t* cd = (uint32_t*)c->curbits, *msk = (uint32_t*)c->curmask;
  148. uint32_t* dst2;
  149. for(j = 0; j < h; j++) {
  150. dst2 = (uint32_t*)dst;
  151. for(i = 0; i < w; i++)
  152. dst2[i] = (dst2[i] & cd[i]) ^ msk[i];
  153. msk += c->cur_w;
  154. cd += c->cur_w;
  155. dst += stride;
  156. }
  157. }
  158. }
  159. /* fill rectangle with given colour */
  160. static av_always_inline void paint_rect(uint8_t *dst, int dx, int dy, int w, int h, int color, int bpp, int stride)
  161. {
  162. int i, j;
  163. dst += dx * bpp + dy * stride;
  164. if(bpp == 1){
  165. for(j = 0; j < h; j++) {
  166. memset(dst, color, w);
  167. dst += stride;
  168. }
  169. }else if(bpp == 2){
  170. uint16_t* dst2;
  171. for(j = 0; j < h; j++) {
  172. dst2 = (uint16_t*)dst;
  173. for(i = 0; i < w; i++) {
  174. *dst2++ = color;
  175. }
  176. dst += stride;
  177. }
  178. }else if(bpp == 4){
  179. uint32_t* dst2;
  180. for(j = 0; j < h; j++) {
  181. dst2 = (uint32_t*)dst;
  182. for(i = 0; i < w; i++) {
  183. dst2[i] = color;
  184. }
  185. dst += stride;
  186. }
  187. }
  188. }
  189. static av_always_inline void paint_raw(uint8_t *dst, int w, int h, uint8_t* src, int bpp, int be, int stride)
  190. {
  191. int i, j, p;
  192. for(j = 0; j < h; j++) {
  193. for(i = 0; i < w; i++) {
  194. p = vmnc_get_pixel(src, bpp, be);
  195. src += bpp;
  196. switch(bpp){
  197. case 1:
  198. dst[i] = p;
  199. break;
  200. case 2:
  201. ((uint16_t*)dst)[i] = p;
  202. break;
  203. case 4:
  204. ((uint32_t*)dst)[i] = p;
  205. break;
  206. }
  207. }
  208. dst += stride;
  209. }
  210. }
  211. static int decode_hextile(VmncContext *c, uint8_t* dst, uint8_t* src, int ssize, int w, int h, int stride)
  212. {
  213. int i, j, k;
  214. int bg = 0, fg = 0, rects, color, flags, xy, wh;
  215. const int bpp = c->bpp2;
  216. uint8_t *dst2;
  217. int bw = 16, bh = 16;
  218. uint8_t *ssrc=src;
  219. for(j = 0; j < h; j += 16) {
  220. dst2 = dst;
  221. bw = 16;
  222. if(j + 16 > h) bh = h - j;
  223. for(i = 0; i < w; i += 16, dst2 += 16 * bpp) {
  224. if(src - ssrc >= ssize) {
  225. av_log(c->avctx, AV_LOG_ERROR, "Premature end of data!\n");
  226. return -1;
  227. }
  228. if(i + 16 > w) bw = w - i;
  229. flags = *src++;
  230. if(flags & HT_RAW) {
  231. if(src - ssrc > ssize - bw * bh * bpp) {
  232. av_log(c->avctx, AV_LOG_ERROR, "Premature end of data!\n");
  233. return -1;
  234. }
  235. paint_raw(dst2, bw, bh, src, bpp, c->bigendian, stride);
  236. src += bw * bh * bpp;
  237. } else {
  238. if(flags & HT_BKG) {
  239. bg = vmnc_get_pixel(src, bpp, c->bigendian); src += bpp;
  240. }
  241. if(flags & HT_FG) {
  242. fg = vmnc_get_pixel(src, bpp, c->bigendian); src += bpp;
  243. }
  244. rects = 0;
  245. if(flags & HT_SUB)
  246. rects = *src++;
  247. color = !!(flags & HT_CLR);
  248. paint_rect(dst2, 0, 0, bw, bh, bg, bpp, stride);
  249. if(src - ssrc > ssize - rects * (color * bpp + 2)) {
  250. av_log(c->avctx, AV_LOG_ERROR, "Premature end of data!\n");
  251. return -1;
  252. }
  253. for(k = 0; k < rects; k++) {
  254. if(color) {
  255. fg = vmnc_get_pixel(src, bpp, c->bigendian); src += bpp;
  256. }
  257. xy = *src++;
  258. wh = *src++;
  259. paint_rect(dst2, xy >> 4, xy & 0xF, (wh>>4)+1, (wh & 0xF)+1, fg, bpp, stride);
  260. }
  261. }
  262. }
  263. dst += stride * 16;
  264. }
  265. return src - ssrc;
  266. }
  267. static int decode_frame(AVCodecContext *avctx, void *data, int *data_size, uint8_t *buf, int buf_size)
  268. {
  269. VmncContext * const c = (VmncContext *)avctx->priv_data;
  270. uint8_t *outptr;
  271. uint8_t *src = buf;
  272. int dx, dy, w, h, depth, enc, chunks, res, size_left;
  273. c->pic.reference = 1;
  274. c->pic.buffer_hints = FF_BUFFER_HINTS_VALID | FF_BUFFER_HINTS_PRESERVE | FF_BUFFER_HINTS_REUSABLE;
  275. if(avctx->reget_buffer(avctx, &c->pic) < 0){
  276. av_log(avctx, AV_LOG_ERROR, "reget_buffer() failed\n");
  277. return -1;
  278. }
  279. c->pic.key_frame = 0;
  280. c->pic.pict_type = FF_P_TYPE;
  281. //restore screen after cursor
  282. if(c->screendta) {
  283. int i;
  284. w = c->cur_w;
  285. if(c->width < c->cur_x + w) w = c->width - c->cur_x;
  286. h = c->cur_h;
  287. if(c->height < c->cur_y + h) h = c->height - c->cur_y;
  288. dx = c->cur_x;
  289. if(dx < 0) {
  290. w += dx;
  291. dx = 0;
  292. }
  293. dy = c->cur_y;
  294. if(dy < 0) {
  295. h += dy;
  296. dy = 0;
  297. }
  298. if((w > 0) && (h > 0)) {
  299. outptr = c->pic.data[0] + dx * c->bpp2 + dy * c->pic.linesize[0];
  300. for(i = 0; i < h; i++) {
  301. memcpy(outptr, c->screendta + i * c->cur_w * c->bpp2, w * c->bpp2);
  302. outptr += c->pic.linesize[0];
  303. }
  304. }
  305. }
  306. src += 2;
  307. chunks = AV_RB16(src); src += 2;
  308. while(chunks--) {
  309. dx = AV_RB16(src); src += 2;
  310. dy = AV_RB16(src); src += 2;
  311. w = AV_RB16(src); src += 2;
  312. h = AV_RB16(src); src += 2;
  313. enc = AV_RB32(src); src += 4;
  314. outptr = c->pic.data[0] + dx * c->bpp2 + dy * c->pic.linesize[0];
  315. size_left = buf_size - (src - buf);
  316. switch(enc) {
  317. case MAGIC_WMVd: // cursor
  318. if(size_left < 2 + w * h * c->bpp2 * 2) {
  319. av_log(avctx, AV_LOG_ERROR, "Premature end of data! (need %i got %i)\n", 2 + w * h * c->bpp2 * 2, size_left);
  320. return -1;
  321. }
  322. src += 2;
  323. c->cur_w = w;
  324. c->cur_h = h;
  325. c->cur_hx = dx;
  326. c->cur_hy = dy;
  327. if((c->cur_hx > c->cur_w) || (c->cur_hy > c->cur_h)) {
  328. av_log(avctx, AV_LOG_ERROR, "Cursor hot spot is not in image: %ix%i of %ix%i cursor size\n", c->cur_hx, c->cur_hy, c->cur_w, c->cur_h);
  329. c->cur_hx = c->cur_hy = 0;
  330. }
  331. c->curbits = av_realloc(c->curbits, c->cur_w * c->cur_h * c->bpp2);
  332. c->curmask = av_realloc(c->curmask, c->cur_w * c->cur_h * c->bpp2);
  333. c->screendta = av_realloc(c->screendta, c->cur_w * c->cur_h * c->bpp2);
  334. load_cursor(c, src);
  335. src += w * h * c->bpp2 * 2;
  336. break;
  337. case MAGIC_WMVe: // unknown
  338. src += 2;
  339. break;
  340. case MAGIC_WMVf: // update cursor position
  341. c->cur_x = dx - c->cur_hx;
  342. c->cur_y = dy - c->cur_hy;
  343. break;
  344. case MAGIC_WMVg: // unknown
  345. src += 10;
  346. break;
  347. case MAGIC_WMVh: // unknown
  348. src += 4;
  349. break;
  350. case MAGIC_WMVi: // ServerInitialization struct
  351. c->pic.key_frame = 1;
  352. c->pic.pict_type = FF_I_TYPE;
  353. depth = *src++;
  354. if(depth != c->bpp) {
  355. av_log(avctx, AV_LOG_INFO, "Depth mismatch. Container %i bpp, Frame data: %i bpp\n", c->bpp, depth);
  356. }
  357. src++;
  358. c->bigendian = *src++;
  359. if(c->bigendian & (~1)) {
  360. av_log(avctx, AV_LOG_INFO, "Invalid header: bigendian flag = %i\n", c->bigendian);
  361. return -1;
  362. }
  363. //skip the rest of pixel format data
  364. src += 13;
  365. break;
  366. case MAGIC_WMVj: // unknown
  367. src += 2;
  368. break;
  369. case 0x00000000: // raw rectangle data
  370. if((dx + w > c->width) || (dy + h > c->height)) {
  371. av_log(avctx, AV_LOG_ERROR, "Incorrect frame size: %ix%i+%ix%i of %ix%i\n", w, h, dx, dy, c->width, c->height);
  372. return -1;
  373. }
  374. if(size_left < w * h * c->bpp2) {
  375. av_log(avctx, AV_LOG_ERROR, "Premature end of data! (need %i got %i)\n", w * h * c->bpp2, size_left);
  376. return -1;
  377. }
  378. paint_raw(outptr, w, h, src, c->bpp2, c->bigendian, c->pic.linesize[0]);
  379. src += w * h * c->bpp2;
  380. break;
  381. case 0x00000005: // HexTile encoded rectangle
  382. if((dx + w > c->width) || (dy + h > c->height)) {
  383. av_log(avctx, AV_LOG_ERROR, "Incorrect frame size: %ix%i+%ix%i of %ix%i\n", w, h, dx, dy, c->width, c->height);
  384. return -1;
  385. }
  386. res = decode_hextile(c, outptr, src, size_left, w, h, c->pic.linesize[0]);
  387. if(res < 0)
  388. return -1;
  389. src += res;
  390. break;
  391. default:
  392. av_log(avctx, AV_LOG_ERROR, "Unsupported block type 0x%08X\n", enc);
  393. chunks = 0; // leave chunks decoding loop
  394. }
  395. }
  396. if(c->screendta){
  397. int i;
  398. //save screen data before painting cursor
  399. w = c->cur_w;
  400. if(c->width < c->cur_x + w) w = c->width - c->cur_x;
  401. h = c->cur_h;
  402. if(c->height < c->cur_y + h) h = c->height - c->cur_y;
  403. dx = c->cur_x;
  404. if(dx < 0) {
  405. w += dx;
  406. dx = 0;
  407. }
  408. dy = c->cur_y;
  409. if(dy < 0) {
  410. h += dy;
  411. dy = 0;
  412. }
  413. if((w > 0) && (h > 0)) {
  414. outptr = c->pic.data[0] + dx * c->bpp2 + dy * c->pic.linesize[0];
  415. for(i = 0; i < h; i++) {
  416. memcpy(c->screendta + i * c->cur_w * c->bpp2, outptr, w * c->bpp2);
  417. outptr += c->pic.linesize[0];
  418. }
  419. outptr = c->pic.data[0];
  420. put_cursor(outptr, c->pic.linesize[0], c, c->cur_x, c->cur_y);
  421. }
  422. }
  423. *data_size = sizeof(AVFrame);
  424. *(AVFrame*)data = c->pic;
  425. /* always report that the buffer was completely consumed */
  426. return buf_size;
  427. }
  428. /*
  429. *
  430. * Init VMnc decoder
  431. *
  432. */
  433. static int decode_init(AVCodecContext *avctx)
  434. {
  435. VmncContext * const c = (VmncContext *)avctx->priv_data;
  436. c->avctx = avctx;
  437. avctx->has_b_frames = 0;
  438. c->pic.data[0] = NULL;
  439. c->width = avctx->width;
  440. c->height = avctx->height;
  441. if (avcodec_check_dimensions(avctx, avctx->width, avctx->height) < 0) {
  442. return 1;
  443. }
  444. c->bpp = avctx->bits_per_sample;
  445. c->bpp2 = c->bpp/8;
  446. switch(c->bpp){
  447. case 8:
  448. avctx->pix_fmt = PIX_FMT_PAL8;
  449. break;
  450. case 16:
  451. avctx->pix_fmt = PIX_FMT_RGB555;
  452. break;
  453. case 32:
  454. avctx->pix_fmt = PIX_FMT_RGB32;
  455. break;
  456. default:
  457. av_log(avctx, AV_LOG_ERROR, "Unsupported bitdepth %i\n", c->bpp);
  458. }
  459. return 0;
  460. }
  461. /*
  462. *
  463. * Uninit VMnc decoder
  464. *
  465. */
  466. static int decode_end(AVCodecContext *avctx)
  467. {
  468. VmncContext * const c = (VmncContext *)avctx->priv_data;
  469. if (c->pic.data[0])
  470. avctx->release_buffer(avctx, &c->pic);
  471. av_free(c->curbits);
  472. av_free(c->curmask);
  473. av_free(c->screendta);
  474. return 0;
  475. }
  476. AVCodec vmnc_decoder = {
  477. "VMware video",
  478. CODEC_TYPE_VIDEO,
  479. CODEC_ID_VMNC,
  480. sizeof(VmncContext),
  481. decode_init,
  482. NULL,
  483. decode_end,
  484. decode_frame
  485. };