我设法为 Python2 破解了一些东西,这是一个演示:
$ strace -T -e signal=none -e futex python2 test.py
futex(0x7f6da47be0a8, FUTEX_WAKE_PRIVATE, 2147483647) = 0 <0.000006>
('futex address', '0x55de8d1105b0')
futex(0x55de8d123a30, FUTEX_WAIT_BITSET_PRIVATE|FUTEX_CLOCK_REALTIME, 0, NULL, ffffffff) = 0 <0.000038>
futex(0x55de8d074bf0, FUTEX_WAIT_BITSET_PRIVATE|FUTEX_CLOCK_REALTIME, 0, NULL, ffffffff) = 0 <0.000032>
futex(0x55de8d074bf0, FUTEX_WAIT_BITSET_PRIVATE|FUTEX_CLOCK_REALTIME, 0, NULL, ffffffff) = 0 <0.000036>
before
futex(0x55de8d1105b0, FUTEX_WAIT_BITSET_PRIVATE|FUTEX_CLOCK_REALTIME, 0, NULL, ffffffff) = 0 <5.017658>
inside
+++ exited with 0 +++
请注意,Python 和strace
报告相同的 futex 地址,0x55de8d1105b0
代码:
import threading
import time
import sys
import ctypes
l = threading.Lock()
if sys.getsizeof(l) == 48:
OFFSET = 4 # debug build: next, prev, refcnt, type, payload(lock_lock, ...)
elif sys.getsizeof(l) == 32:
OFFSET = 2 # normal build: refcnt, type, payload(lock_lock, ...)
else:
assert 0, "Don't do this shit to me"
lp = ctypes.cast(id(l), ctypes.POINTER(ctypes.POINTER(ctypes.c_ubyte)))[OFFSET]
print("futex address", hex(ctypes.addressof(lp.contents)))
class holder(threading.Thread):
def run(self):
with l:
time.sleep(5)
holder().start()
print("before")
with l:
print("inside")