Would it be possible to actually search for the function signature in the ROM, and call the function directly, rather than through the pointer?
Presumably something important gets clobbered by the FI2 loading process or some other sensitivity to the values in memory.
Ok, thanks for the info.But do you have any idea why the udumper is actually trying to find the pointer to the function rather the signature of the function? Is there some other magic involved?
And I guess it's faster too, and maybe little less code. But it seems a pretty unreliable method, since the address of the functions is more likely to change than their first few bytes.
Ok, so it worked on the SX200, but not on some other cameras, such as SD960? Could it be because of a different encryption, or because WriteSDCard changed?
Started by Reverb CHDK Releases
Started by PhyrePhoX « 1 2 3 4 » CHDK Releases
Started by RaduP « 1 2 3 4 » General Discussion and Assistance
Started by icantregister General Discussion and Assistance
Started by Mlapse General Chat