Blame libarchive/archive_write_set_format_zip.c

Packit Service 1d0348
/*-
Packit Service 1d0348
 * Copyright (c) 2008 Anselm Strauss
Packit Service 1d0348
 * Copyright (c) 2009 Joerg Sonnenberger
Packit Service 1d0348
 * Copyright (c) 2011-2012,2014 Michihiro NAKAJIMA
Packit Service 1d0348
 * All rights reserved.
Packit Service 1d0348
 *
Packit Service 1d0348
 * Redistribution and use in source and binary forms, with or without
Packit Service 1d0348
 * modification, are permitted provided that the following conditions
Packit Service 1d0348
 * are met:
Packit Service 1d0348
 * 1. Redistributions of source code must retain the above copyright
Packit Service 1d0348
 *    notice, this list of conditions and the following disclaimer.
Packit Service 1d0348
 * 2. Redistributions in binary form must reproduce the above copyright
Packit Service 1d0348
 *    notice, this list of conditions and the following disclaimer in the
Packit Service 1d0348
 *    documentation and/or other materials provided with the distribution.
Packit Service 1d0348
 *
Packit Service 1d0348
 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR(S) ``AS IS'' AND ANY EXPRESS OR
Packit Service 1d0348
 * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
Packit Service 1d0348
 * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
Packit Service 1d0348
 * IN NO EVENT SHALL THE AUTHOR(S) BE LIABLE FOR ANY DIRECT, INDIRECT,
Packit Service 1d0348
 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
Packit Service 1d0348
 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
Packit Service 1d0348
 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
Packit Service 1d0348
 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
Packit Service 1d0348
 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
Packit Service 1d0348
 * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
Packit Service 1d0348
 */
Packit Service 1d0348
Packit Service 1d0348
/*
Packit Service 1d0348
 * Development supported by Google Summer of Code 2008.
Packit Service 1d0348
 */
Packit Service 1d0348
Packit Service 1d0348
#include "archive_platform.h"
Packit Service 1d0348
__FBSDID("$FreeBSD: head/lib/libarchive/archive_write_set_format_zip.c 201168 2009-12-29 06:15:32Z kientzle $");
Packit Service 1d0348
Packit Service 1d0348
#ifdef HAVE_ERRNO_H
Packit Service 1d0348
#include <errno.h>
Packit Service 1d0348
#endif
Packit Service 1d0348
#ifdef HAVE_LANGINFO_H
Packit Service 1d0348
#include <langinfo.h>
Packit Service 1d0348
#endif
Packit Service 1d0348
#ifdef HAVE_STDLIB_H
Packit Service 1d0348
#include <stdlib.h>
Packit Service 1d0348
#endif
Packit Service 1d0348
#ifdef HAVE_STRING_H
Packit Service 1d0348
#include <string.h>
Packit Service 1d0348
#endif
Packit Service 1d0348
#ifdef HAVE_ZLIB_H
Packit Service 1d0348
#include <zlib.h>
Packit Service 1d0348
#endif
Packit Service 1d0348
Packit Service 1d0348
#include "archive.h"
Packit Service 1d0348
#include "archive_cryptor_private.h"
Packit Service 1d0348
#include "archive_endian.h"
Packit Service 1d0348
#include "archive_entry.h"
Packit Service 1d0348
#include "archive_entry_locale.h"
Packit Service 1d0348
#include "archive_hmac_private.h"
Packit Service 1d0348
#include "archive_private.h"
Packit Service 1d0348
#include "archive_random_private.h"
Packit Service 1d0348
#include "archive_write_private.h"
Packit Service 1d0348
Packit Service 1d0348
#ifndef HAVE_ZLIB_H
Packit Service 1d0348
#include "archive_crc32.h"
Packit Service 1d0348
#endif
Packit Service 1d0348
Packit Service 1d0348
#define ZIP_ENTRY_FLAG_ENCRYPTED	(1<<0)
Packit Service 1d0348
#define ZIP_ENTRY_FLAG_LENGTH_AT_END	(1<<3)
Packit Service 1d0348
#define ZIP_ENTRY_FLAG_UTF8_NAME	(1 << 11)
Packit Service 1d0348
Packit Service 1d0348
#define ZIP_4GB_MAX ARCHIVE_LITERAL_LL(0xffffffff)
Packit Service 1d0348
#define ZIP_4GB_MAX_UNCOMPRESSED ARCHIVE_LITERAL_LL(0xff000000)
Packit Service 1d0348
Packit Service 1d0348
enum compression {
Packit Service 1d0348
	COMPRESSION_UNSPECIFIED = -1,
Packit Service 1d0348
	COMPRESSION_STORE = 0,
Packit Service 1d0348
	COMPRESSION_DEFLATE = 8
Packit Service 1d0348
};
Packit Service 1d0348
Packit Service 1d0348
#ifdef HAVE_ZLIB_H
Packit Service 1d0348
#define COMPRESSION_DEFAULT	COMPRESSION_DEFLATE
Packit Service 1d0348
#else
Packit Service 1d0348
#define COMPRESSION_DEFAULT	COMPRESSION_STORE
Packit Service 1d0348
#endif
Packit Service 1d0348
Packit Service 1d0348
enum encryption {
Packit Service 1d0348
	ENCRYPTION_NONE	= 0,
Packit Service 1d0348
	ENCRYPTION_TRADITIONAL, /* Traditional PKWARE encryption. */
Packit Service 1d0348
	ENCRYPTION_WINZIP_AES128, /* WinZIP AES-128 encryption. */
Packit Service 1d0348
	ENCRYPTION_WINZIP_AES256, /* WinZIP AES-256 encryption. */
Packit Service 1d0348
};
Packit Service 1d0348
Packit Service 1d0348
#define TRAD_HEADER_SIZE	12
Packit Service 1d0348
/*
Packit Service 1d0348
 * See "WinZip - AES Encryption Information"
Packit Service 1d0348
 *     http://www.winzip.com/aes_info.htm
Packit Service 1d0348
 */
Packit Service 1d0348
/* Value used in compression method. */
Packit Service 1d0348
#define WINZIP_AES_ENCRYPTION	99
Packit Service 1d0348
/* A WinZip AES header size which is stored at the beginning of
Packit Service 1d0348
 * file contents. */
Packit Service 1d0348
#define WINZIP_AES128_HEADER_SIZE	(8 + 2)
Packit Service 1d0348
#define WINZIP_AES256_HEADER_SIZE	(16 + 2)
Packit Service 1d0348
/* AES vendor version. */
Packit Service 1d0348
#define AES_VENDOR_AE_1 0x0001
Packit Service 1d0348
#define AES_VENDOR_AE_2 0x0002
Packit Service 1d0348
/* Authentication code size. */
Packit Service 1d0348
#define AUTH_CODE_SIZE		10
Packit Service 1d0348
/**/
Packit Service 1d0348
#define MAX_DERIVED_KEY_BUF_SIZE (AES_MAX_KEY_SIZE * 2 + 2)
Packit Service 1d0348
Packit Service 1d0348
struct cd_segment {
Packit Service 1d0348
	struct cd_segment *next;
Packit Service 1d0348
	size_t buff_size;
Packit Service 1d0348
	unsigned char *buff;
Packit Service 1d0348
	unsigned char *p;
Packit Service 1d0348
};
Packit Service 1d0348
Packit Service 1d0348
struct trad_enc_ctx {
Packit Service 1d0348
	uint32_t keys[3];
Packit Service 1d0348
};
Packit Service 1d0348
Packit Service 1d0348
struct zip {
Packit Service 1d0348
Packit Service 1d0348
	int64_t entry_offset;
Packit Service 1d0348
	int64_t entry_compressed_size;
Packit Service 1d0348
	int64_t entry_uncompressed_size;
Packit Service 1d0348
	int64_t entry_compressed_written;
Packit Service 1d0348
	int64_t entry_uncompressed_written;
Packit Service 1d0348
	int64_t entry_uncompressed_limit;
Packit Service 1d0348
	struct archive_entry *entry;
Packit Service 1d0348
	uint32_t entry_crc32;
Packit Service 1d0348
	enum compression entry_compression;
Packit Service 1d0348
	enum encryption  entry_encryption;
Packit Service 1d0348
	int entry_flags;
Packit Service 1d0348
	int entry_uses_zip64;
Packit Service 1d0348
	int experiments;
Packit Service 1d0348
	struct trad_enc_ctx tctx;
Packit Service 1d0348
	char tctx_valid;
Packit Service 1d0348
	unsigned char trad_chkdat;
Packit Service 1d0348
	unsigned aes_vendor;
Packit Service 1d0348
	archive_crypto_ctx cctx;
Packit Service 1d0348
	char cctx_valid;
Packit Service 1d0348
	archive_hmac_sha1_ctx hctx;
Packit Service 1d0348
	char hctx_valid;
Packit Service 1d0348
Packit Service 1d0348
	unsigned char *file_header;
Packit Service 1d0348
	size_t file_header_extra_offset;
Packit Service 1d0348
	unsigned long (*crc32func)(unsigned long crc, const void *buff, size_t len);
Packit Service 1d0348
Packit Service 1d0348
	struct cd_segment *central_directory;
Packit Service 1d0348
	struct cd_segment *central_directory_last;
Packit Service 1d0348
	size_t central_directory_bytes;
Packit Service 1d0348
	size_t central_directory_entries;
Packit Service 1d0348
Packit Service 1d0348
	int64_t written_bytes; /* Overall position in file. */
Packit Service 1d0348
Packit Service 1d0348
	struct archive_string_conv *opt_sconv;
Packit Service 1d0348
	struct archive_string_conv *sconv_default;
Packit Service 1d0348
	enum compression requested_compression;
Packit Service 1d0348
	int deflate_compression_level;
Packit Service 1d0348
	int init_default_conversion;
Packit Service 1d0348
	enum encryption  encryption_type;
Packit Service 1d0348
Packit Service 1d0348
#define ZIP_FLAG_AVOID_ZIP64 1
Packit Service 1d0348
#define ZIP_FLAG_FORCE_ZIP64 2
Packit Service 1d0348
#define ZIP_FLAG_EXPERIMENT_xl 4
Packit Service 1d0348
	int flags;
Packit Service 1d0348
Packit Service 1d0348
#ifdef HAVE_ZLIB_H
Packit Service 1d0348
	z_stream stream;
Packit Service 1d0348
#endif
Packit Service 1d0348
	size_t len_buf;
Packit Service 1d0348
	unsigned char *buf;
Packit Service 1d0348
};
Packit Service 1d0348
Packit Service 1d0348
/* Don't call this min or MIN, since those are already defined
Packit Service 1d0348
   on lots of platforms (but not all). */
Packit Service 1d0348
#define zipmin(a, b) ((a) > (b) ? (b) : (a))
Packit Service 1d0348
Packit Service 1d0348
static ssize_t archive_write_zip_data(struct archive_write *,
Packit Service 1d0348
		   const void *buff, size_t s);
Packit Service 1d0348
static int archive_write_zip_close(struct archive_write *);
Packit Service 1d0348
static int archive_write_zip_free(struct archive_write *);
Packit Service 1d0348
static int archive_write_zip_finish_entry(struct archive_write *);
Packit Service 1d0348
static int archive_write_zip_header(struct archive_write *,
Packit Service 1d0348
	      struct archive_entry *);
Packit Service 1d0348
static int archive_write_zip_options(struct archive_write *,
Packit Service 1d0348
	      const char *, const char *);
Packit Service 1d0348
static unsigned int dos_time(const time_t);
Packit Service 1d0348
static size_t path_length(struct archive_entry *);
Packit Service 1d0348
static int write_path(struct archive_entry *, struct archive_write *);
Packit Service 1d0348
static void copy_path(struct archive_entry *, unsigned char *);
Packit Service 1d0348
static struct archive_string_conv *get_sconv(struct archive_write *, struct zip *);
Packit Service 1d0348
static int trad_enc_init(struct trad_enc_ctx *, const char *, size_t);
Packit Service 1d0348
static unsigned trad_enc_encrypt_update(struct trad_enc_ctx *, const uint8_t *,
Packit Service 1d0348
    size_t, uint8_t *, size_t);
Packit Service 1d0348
static int init_traditional_pkware_encryption(struct archive_write *);
Packit Service 1d0348
static int is_traditional_pkware_encryption_supported(void);
Packit Service 1d0348
static int init_winzip_aes_encryption(struct archive_write *);
Packit Service 1d0348
static int is_winzip_aes_encryption_supported(int encryption);
Packit Service 1d0348
Packit Service 1d0348
static unsigned char *
Packit Service 1d0348
cd_alloc(struct zip *zip, size_t length)
Packit Service 1d0348
{
Packit Service 1d0348
	unsigned char *p;
Packit Service 1d0348
Packit Service 1d0348
	if (zip->central_directory == NULL
Packit Service 1d0348
	    || (zip->central_directory_last->p + length
Packit Service 1d0348
		> zip->central_directory_last->buff + zip->central_directory_last->buff_size)) {
Packit Service 1d0348
		struct cd_segment *segment = calloc(1, sizeof(*segment));
Packit Service 1d0348
		if (segment == NULL)
Packit Service 1d0348
			return NULL;
Packit Service 1d0348
		segment->buff_size = 64 * 1024;
Packit Service 1d0348
		segment->buff = malloc(segment->buff_size);
Packit Service 1d0348
		if (segment->buff == NULL) {
Packit Service 1d0348
			free(segment);
Packit Service 1d0348
			return NULL;
Packit Service 1d0348
		}
Packit Service 1d0348
		segment->p = segment->buff;
Packit Service 1d0348
Packit Service 1d0348
		if (zip->central_directory == NULL) {
Packit Service 1d0348
			zip->central_directory
Packit Service 1d0348
			    = zip->central_directory_last
Packit Service 1d0348
			    = segment;
Packit Service 1d0348
		} else {
Packit Service 1d0348
			zip->central_directory_last->next = segment;
Packit Service 1d0348
			zip->central_directory_last = segment;
Packit Service 1d0348
		}
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	p = zip->central_directory_last->p;
Packit Service 1d0348
	zip->central_directory_last->p += length;
Packit Service 1d0348
	zip->central_directory_bytes += length;
Packit Service 1d0348
	return (p);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static unsigned long
Packit Service 1d0348
real_crc32(unsigned long crc, const void *buff, size_t len)
Packit Service 1d0348
{
Packit Service 1d0348
	return crc32(crc, buff, (unsigned int)len);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static unsigned long
Packit Service 1d0348
fake_crc32(unsigned long crc, const void *buff, size_t len)
Packit Service 1d0348
{
Packit Service 1d0348
	(void)crc; /* UNUSED */
Packit Service 1d0348
	(void)buff; /* UNUSED */
Packit Service 1d0348
	(void)len; /* UNUSED */
Packit Service 1d0348
	return 0;
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static int
Packit Service 1d0348
archive_write_zip_options(struct archive_write *a, const char *key,
Packit Service 1d0348
    const char *val)
Packit Service 1d0348
{
Packit Service 1d0348
	struct zip *zip = a->format_data;
Packit Service 1d0348
	int ret = ARCHIVE_FAILED;
Packit Service 1d0348
Packit Service 1d0348
	if (strcmp(key, "compression") == 0) {
Packit Service 1d0348
		/*
Packit Service 1d0348
		 * Set compression to use on all future entries.
Packit Service 1d0348
		 * This only affects regular files.
Packit Service 1d0348
		 */
Packit Service 1d0348
		if (val == NULL || val[0] == 0) {
Packit Service 1d0348
			archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
			    "%s: compression option needs a compression name",
Packit Service 1d0348
			    a->format_name);
Packit Service 1d0348
		} else if (strcmp(val, "deflate") == 0) {
Packit Service 1d0348
#ifdef HAVE_ZLIB_H
Packit Service 1d0348
			zip->requested_compression = COMPRESSION_DEFLATE;
Packit Service 1d0348
			ret = ARCHIVE_OK;
Packit Service 1d0348
#else
Packit Service 1d0348
			archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
			    "deflate compression not supported");
Packit Service 1d0348
#endif
Packit Service 1d0348
		} else if (strcmp(val, "store") == 0) {
Packit Service 1d0348
			zip->requested_compression = COMPRESSION_STORE;
Packit Service 1d0348
			ret = ARCHIVE_OK;
Packit Service 1d0348
		}
Packit Service 1d0348
		return (ret);
Packit Service 1d0348
	} else if (strcmp(key, "compression-level") == 0) {
Packit Service 1d0348
		if (val == NULL || !(val[0] >= '0' && val[0] <= '9') || val[1] != '\0') {
Packit Service 1d0348
			return ARCHIVE_WARN;
Packit Service 1d0348
		}
Packit Service 1d0348
Packit Service 1d0348
		if (val[0] == '0') {
Packit Service 1d0348
			zip->requested_compression = COMPRESSION_STORE;
Packit Service 1d0348
			return ARCHIVE_OK;
Packit Service 1d0348
		} else {
Packit Service 1d0348
#ifdef HAVE_ZLIB_H
Packit Service 1d0348
			zip->requested_compression = COMPRESSION_DEFLATE;
Packit Service 1d0348
			zip->deflate_compression_level = val[0] - '0';
Packit Service 1d0348
			return ARCHIVE_OK;
Packit Service 1d0348
#else
Packit Service 1d0348
			archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
			    "deflate compression not supported");
Packit Service 1d0348
#endif
Packit Service 1d0348
		}
Packit Service 1d0348
	} else if (strcmp(key, "encryption") == 0) {
Packit Service 1d0348
		if (val == NULL) {
Packit Service 1d0348
			zip->encryption_type = ENCRYPTION_NONE;
Packit Service 1d0348
			ret = ARCHIVE_OK;
Packit Service 1d0348
		} else if (val[0] == '1' || strcmp(val, "traditional") == 0
Packit Service 1d0348
		    || strcmp(val, "zipcrypt") == 0
Packit Service 1d0348
		    || strcmp(val, "ZipCrypt") == 0) {
Packit Service 1d0348
			if (is_traditional_pkware_encryption_supported()) {
Packit Service 1d0348
				zip->encryption_type = ENCRYPTION_TRADITIONAL;
Packit Service 1d0348
				ret = ARCHIVE_OK;
Packit Service 1d0348
			} else {
Packit Service 1d0348
				archive_set_error(&a->archive,
Packit Service 1d0348
				    ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
				    "encryption not supported");
Packit Service 1d0348
			}
Packit Service 1d0348
		} else if (strcmp(val, "aes128") == 0) {
Packit Service 1d0348
			if (is_winzip_aes_encryption_supported(
Packit Service 1d0348
			    ENCRYPTION_WINZIP_AES128)) {
Packit Service 1d0348
				zip->encryption_type = ENCRYPTION_WINZIP_AES128;
Packit Service 1d0348
				ret = ARCHIVE_OK;
Packit Service 1d0348
			} else {
Packit Service 1d0348
				archive_set_error(&a->archive,
Packit Service 1d0348
				    ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
				    "encryption not supported");
Packit Service 1d0348
			}
Packit Service 1d0348
		} else if (strcmp(val, "aes256") == 0) {
Packit Service 1d0348
			if (is_winzip_aes_encryption_supported(
Packit Service 1d0348
			    ENCRYPTION_WINZIP_AES256)) {
Packit Service 1d0348
				zip->encryption_type = ENCRYPTION_WINZIP_AES256;
Packit Service 1d0348
				ret = ARCHIVE_OK;
Packit Service 1d0348
			} else {
Packit Service 1d0348
				archive_set_error(&a->archive,
Packit Service 1d0348
				    ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
				    "encryption not supported");
Packit Service 1d0348
			}
Packit Service 1d0348
		} else {
Packit Service 1d0348
			archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
			    "%s: unknown encryption '%s'",
Packit Service 1d0348
			    a->format_name, val);
Packit Service 1d0348
		}
Packit Service 1d0348
		return (ret);
Packit Service 1d0348
	} else if (strcmp(key, "experimental") == 0) {
Packit Service 1d0348
		if (val == NULL || val[0] == 0) {
Packit Service 1d0348
			zip->flags &= ~ ZIP_FLAG_EXPERIMENT_xl;
Packit Service 1d0348
		} else {
Packit Service 1d0348
			zip->flags |= ZIP_FLAG_EXPERIMENT_xl;
Packit Service 1d0348
		}
Packit Service 1d0348
		return (ARCHIVE_OK);
Packit Service 1d0348
	} else if (strcmp(key, "fakecrc32") == 0) {
Packit Service 1d0348
		/*
Packit Service 1d0348
		 * FOR TESTING ONLY:  disable CRC calculation to speed up
Packit Service 1d0348
		 * certain complex tests.
Packit Service 1d0348
		 */
Packit Service 1d0348
		if (val == NULL || val[0] == 0) {
Packit Service 1d0348
			zip->crc32func = real_crc32;
Packit Service 1d0348
		} else {
Packit Service 1d0348
			zip->crc32func = fake_crc32;
Packit Service 1d0348
		}
Packit Service 1d0348
		return (ARCHIVE_OK);
Packit Service 1d0348
	} else if (strcmp(key, "hdrcharset")  == 0) {
Packit Service 1d0348
		/*
Packit Service 1d0348
		 * Set the character set used in translating filenames.
Packit Service 1d0348
		 */
Packit Service 1d0348
		if (val == NULL || val[0] == 0) {
Packit Service 1d0348
			archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
			    "%s: hdrcharset option needs a character-set name",
Packit Service 1d0348
			    a->format_name);
Packit Service 1d0348
		} else {
Packit Service 1d0348
			zip->opt_sconv = archive_string_conversion_to_charset(
Packit Service 1d0348
			    &a->archive, val, 0);
Packit Service 1d0348
			if (zip->opt_sconv != NULL)
Packit Service 1d0348
				ret = ARCHIVE_OK;
Packit Service 1d0348
			else
Packit Service 1d0348
				ret = ARCHIVE_FATAL;
Packit Service 1d0348
		}
Packit Service 1d0348
		return (ret);
Packit Service 1d0348
	} else if (strcmp(key, "zip64") == 0) {
Packit Service 1d0348
		/*
Packit Service 1d0348
		 * Bias decisions about Zip64: force them to be
Packit Service 1d0348
		 * generated in certain cases where they are not
Packit Service 1d0348
		 * forbidden or avoid them in certain cases where they
Packit Service 1d0348
		 * are not strictly required.
Packit Service 1d0348
		 */
Packit Service 1d0348
		if (val != NULL && *val != '\0') {
Packit Service 1d0348
			zip->flags |= ZIP_FLAG_FORCE_ZIP64;
Packit Service 1d0348
			zip->flags &= ~ZIP_FLAG_AVOID_ZIP64;
Packit Service 1d0348
		} else {
Packit Service 1d0348
			zip->flags &= ~ZIP_FLAG_FORCE_ZIP64;
Packit Service 1d0348
			zip->flags |= ZIP_FLAG_AVOID_ZIP64;
Packit Service 1d0348
		}
Packit Service 1d0348
		return (ARCHIVE_OK);
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* Note: The "warn" return is just to inform the options
Packit Service 1d0348
	 * supervisor that we didn't handle it.  It will generate
Packit Service 1d0348
	 * a suitable error if no one used this option. */
Packit Service 1d0348
	return (ARCHIVE_WARN);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
int
Packit Service 1d0348
archive_write_zip_set_compression_deflate(struct archive *_a)
Packit Service 1d0348
{
Packit Service 1d0348
	struct archive_write *a = (struct archive_write *)_a;
Packit Service 1d0348
	int ret = ARCHIVE_FAILED;
Packit Service 1d0348
Packit Service 1d0348
	archive_check_magic(_a, ARCHIVE_WRITE_MAGIC,
Packit Service 1d0348
		ARCHIVE_STATE_NEW | ARCHIVE_STATE_HEADER | ARCHIVE_STATE_DATA,
Packit Service 1d0348
		"archive_write_zip_set_compression_deflate");
Packit Service 1d0348
	if (a->archive.archive_format != ARCHIVE_FORMAT_ZIP) {
Packit Service 1d0348
		archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
		"Can only use archive_write_zip_set_compression_deflate"
Packit Service 1d0348
		" with zip format");
Packit Service 1d0348
		ret = ARCHIVE_FATAL;
Packit Service 1d0348
	} else {
Packit Service 1d0348
#ifdef HAVE_ZLIB_H
Packit Service 1d0348
		struct zip *zip = a->format_data;
Packit Service 1d0348
		zip->requested_compression = COMPRESSION_DEFLATE;
Packit Service 1d0348
		ret = ARCHIVE_OK;
Packit Service 1d0348
#else
Packit Service 1d0348
		archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
			"deflate compression not supported");
Packit Service 1d0348
		ret = ARCHIVE_FAILED;
Packit Service 1d0348
#endif
Packit Service 1d0348
	}
Packit Service 1d0348
	return (ret);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
int
Packit Service 1d0348
archive_write_zip_set_compression_store(struct archive *_a)
Packit Service 1d0348
{
Packit Service 1d0348
	struct archive_write *a = (struct archive_write *)_a;
Packit Service 1d0348
	struct zip *zip = a->format_data;
Packit Service 1d0348
	int ret = ARCHIVE_FAILED;
Packit Service 1d0348
Packit Service 1d0348
	archive_check_magic(_a, ARCHIVE_WRITE_MAGIC,
Packit Service 1d0348
		ARCHIVE_STATE_NEW | ARCHIVE_STATE_HEADER | ARCHIVE_STATE_DATA,
Packit Service 1d0348
		"archive_write_zip_set_compression_deflate");
Packit Service 1d0348
	if (a->archive.archive_format != ARCHIVE_FORMAT_ZIP) {
Packit Service 1d0348
		archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
			"Can only use archive_write_zip_set_compression_store"
Packit Service 1d0348
			" with zip format");
Packit Service 1d0348
		ret = ARCHIVE_FATAL;
Packit Service 1d0348
	} else {
Packit Service 1d0348
		zip->requested_compression = COMPRESSION_STORE;
Packit Service 1d0348
		ret = ARCHIVE_OK;
Packit Service 1d0348
	}
Packit Service 1d0348
	return (ret);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
int
Packit Service 1d0348
archive_write_set_format_zip(struct archive *_a)
Packit Service 1d0348
{
Packit Service 1d0348
	struct archive_write *a = (struct archive_write *)_a;
Packit Service 1d0348
	struct zip *zip;
Packit Service 1d0348
Packit Service 1d0348
	archive_check_magic(_a, ARCHIVE_WRITE_MAGIC,
Packit Service 1d0348
	    ARCHIVE_STATE_NEW, "archive_write_set_format_zip");
Packit Service 1d0348
Packit Service 1d0348
	/* If another format was already registered, unregister it. */
Packit Service 1d0348
	if (a->format_free != NULL)
Packit Service 1d0348
		(a->format_free)(a);
Packit Service 1d0348
Packit Service 1d0348
	zip = (struct zip *) calloc(1, sizeof(*zip));
Packit Service 1d0348
	if (zip == NULL) {
Packit Service 1d0348
		archive_set_error(&a->archive, ENOMEM,
Packit Service 1d0348
		    "Can't allocate zip data");
Packit Service 1d0348
		return (ARCHIVE_FATAL);
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* "Unspecified" lets us choose the appropriate compression. */
Packit Service 1d0348
	zip->requested_compression = COMPRESSION_UNSPECIFIED;
Packit Service 1d0348
#ifdef HAVE_ZLIB_H
Packit Service 1d0348
	zip->deflate_compression_level = Z_DEFAULT_COMPRESSION;
Packit Service 1d0348
#endif
Packit Service 1d0348
	zip->crc32func = real_crc32;
Packit Service 1d0348
Packit Service 1d0348
	/* A buffer used for both compression and encryption. */
Packit Service 1d0348
	zip->len_buf = 65536;
Packit Service 1d0348
	zip->buf = malloc(zip->len_buf);
Packit Service 1d0348
	if (zip->buf == NULL) {
Packit Service 1d0348
		free(zip);
Packit Service 1d0348
		archive_set_error(&a->archive, ENOMEM,
Packit Service 1d0348
		    "Can't allocate compression buffer");
Packit Service 1d0348
		return (ARCHIVE_FATAL);
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	a->format_data = zip;
Packit Service 1d0348
	a->format_name = "zip";
Packit Service 1d0348
	a->format_options = archive_write_zip_options;
Packit Service 1d0348
	a->format_write_header = archive_write_zip_header;
Packit Service 1d0348
	a->format_write_data = archive_write_zip_data;
Packit Service 1d0348
	a->format_finish_entry = archive_write_zip_finish_entry;
Packit Service 1d0348
	a->format_close = archive_write_zip_close;
Packit Service 1d0348
	a->format_free = archive_write_zip_free;
Packit Service 1d0348
	a->archive.archive_format = ARCHIVE_FORMAT_ZIP;
Packit Service 1d0348
	a->archive.archive_format_name = "ZIP";
Packit Service 1d0348
Packit Service 1d0348
	return (ARCHIVE_OK);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static int
Packit Service 1d0348
is_all_ascii(const char *p)
Packit Service 1d0348
{
Packit Service 1d0348
	const unsigned char *pp = (const unsigned char *)p;
Packit Service 1d0348
Packit Service 1d0348
	while (*pp) {
Packit Service 1d0348
		if (*pp++ > 127)
Packit Service 1d0348
			return (0);
Packit Service 1d0348
	}
Packit Service 1d0348
	return (1);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static int
Packit Service 1d0348
archive_write_zip_header(struct archive_write *a, struct archive_entry *entry)
Packit Service 1d0348
{
Packit Service 1d0348
	unsigned char local_header[32];
Packit Service 1d0348
	unsigned char local_extra[144];
Packit Service 1d0348
	struct zip *zip = a->format_data;
Packit Service 1d0348
	unsigned char *e;
Packit Service 1d0348
	unsigned char *cd_extra;
Packit Service 1d0348
	size_t filename_length;
Packit Service 1d0348
	const char *slink = NULL;
Packit Service 1d0348
	size_t slink_size = 0;
Packit Service 1d0348
	struct archive_string_conv *sconv = get_sconv(a, zip);
Packit Service 1d0348
	int ret, ret2 = ARCHIVE_OK;
Packit Service 1d0348
	mode_t type;
Packit Service 1d0348
	int version_needed = 10;
Packit Service 1d0348
Packit Service 1d0348
	/* Ignore types of entries that we don't support. */
Packit Service 1d0348
	type = archive_entry_filetype(entry);
Packit Service 1d0348
	if (type != AE_IFREG && type != AE_IFDIR && type != AE_IFLNK) {
Packit Service 1d0348
		archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
		    "Filetype not supported");
Packit Service 1d0348
		return ARCHIVE_FAILED;
Packit Service 1d0348
	};
Packit Service 1d0348
Packit Service 1d0348
	/* If we're not using Zip64, reject large files. */
Packit Service 1d0348
	if (zip->flags & ZIP_FLAG_AVOID_ZIP64) {
Packit Service 1d0348
		/* Reject entries over 4GB. */
Packit Service 1d0348
		if (archive_entry_size_is_set(entry)
Packit Service 1d0348
		    && (archive_entry_size(entry) > ZIP_4GB_MAX)) {
Packit Service 1d0348
			archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
			    "Files > 4GB require Zip64 extensions");
Packit Service 1d0348
			return ARCHIVE_FAILED;
Packit Service 1d0348
		}
Packit Service 1d0348
		/* Reject entries if archive is > 4GB. */
Packit Service 1d0348
		if (zip->written_bytes > ZIP_4GB_MAX) {
Packit Service 1d0348
			archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
			    "Archives > 4GB require Zip64 extensions");
Packit Service 1d0348
			return ARCHIVE_FAILED;
Packit Service 1d0348
		}
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* Only regular files can have size > 0. */
Packit Service 1d0348
	if (type != AE_IFREG)
Packit Service 1d0348
		archive_entry_set_size(entry, 0);
Packit Service 1d0348
Packit Service 1d0348
Packit Service 1d0348
	/* Reset information from last entry. */
Packit Service 1d0348
	zip->entry_offset = zip->written_bytes;
Packit Service 1d0348
	zip->entry_uncompressed_limit = INT64_MAX;
Packit Service 1d0348
	zip->entry_compressed_size = 0;
Packit Service 1d0348
	zip->entry_uncompressed_size = 0;
Packit Service 1d0348
	zip->entry_compressed_written = 0;
Packit Service 1d0348
	zip->entry_uncompressed_written = 0;
Packit Service 1d0348
	zip->entry_flags = 0;
Packit Service 1d0348
	zip->entry_uses_zip64 = 0;
Packit Service 1d0348
	zip->entry_crc32 = zip->crc32func(0, NULL, 0);
Packit Service 1d0348
	zip->entry_encryption = 0;
Packit Service 1d0348
	if (zip->entry != NULL) {
Packit Service 1d0348
		archive_entry_free(zip->entry);
Packit Service 1d0348
		zip->entry = NULL;
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	if (zip->cctx_valid)
Packit Service 1d0348
		archive_encrypto_aes_ctr_release(&zip->cctx);
Packit Service 1d0348
	if (zip->hctx_valid)
Packit Service 1d0348
		archive_hmac_sha1_cleanup(&zip->hctx);
Packit Service 1d0348
	zip->tctx_valid = zip->cctx_valid = zip->hctx_valid = 0;
Packit Service 1d0348
Packit Service 1d0348
	if (type == AE_IFREG
Packit Service 1d0348
		    &&(!archive_entry_size_is_set(entry)
Packit Service 1d0348
			|| archive_entry_size(entry) > 0)) {
Packit Service 1d0348
		switch (zip->encryption_type) {
Packit Service 1d0348
		case ENCRYPTION_TRADITIONAL:
Packit Service 1d0348
		case ENCRYPTION_WINZIP_AES128:
Packit Service 1d0348
		case ENCRYPTION_WINZIP_AES256:
Packit Service 1d0348
			zip->entry_flags |= ZIP_ENTRY_FLAG_ENCRYPTED;
Packit Service 1d0348
			zip->entry_encryption = zip->encryption_type;
Packit Service 1d0348
			break;
Packit Service 1d0348
		default:
Packit Service 1d0348
			break;
Packit Service 1d0348
		}
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
Packit Service 1d0348
#if defined(_WIN32) && !defined(__CYGWIN__)
Packit Service 1d0348
	/* Make sure the path separators in pathname, hardlink and symlink
Packit Service 1d0348
	 * are all slash '/', not the Windows path separator '\'. */
Packit Service 1d0348
	zip->entry = __la_win_entry_in_posix_pathseparator(entry);
Packit Service 1d0348
	if (zip->entry == entry)
Packit Service 1d0348
		zip->entry = archive_entry_clone(entry);
Packit Service 1d0348
#else
Packit Service 1d0348
	zip->entry = archive_entry_clone(entry);
Packit Service 1d0348
#endif
Packit Service 1d0348
	if (zip->entry == NULL) {
Packit Service 1d0348
		archive_set_error(&a->archive, ENOMEM,
Packit Service 1d0348
		    "Can't allocate zip header data");
Packit Service 1d0348
		return (ARCHIVE_FATAL);
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	if (sconv != NULL) {
Packit Service 1d0348
		const char *p;
Packit Service 1d0348
		size_t len;
Packit Service 1d0348
Packit Service 1d0348
		if (archive_entry_pathname_l(entry, &p, &len, sconv) != 0) {
Packit Service 1d0348
			if (errno == ENOMEM) {
Packit Service 1d0348
				archive_set_error(&a->archive, ENOMEM,
Packit Service 1d0348
				    "Can't allocate memory for Pathname");
Packit Service 1d0348
				return (ARCHIVE_FATAL);
Packit Service 1d0348
			}
Packit Service 1d0348
			archive_set_error(&a->archive,
Packit Service 1d0348
			    ARCHIVE_ERRNO_FILE_FORMAT,
Packit Service 1d0348
			    "Can't translate Pathname '%s' to %s",
Packit Service 1d0348
			    archive_entry_pathname(entry),
Packit Service 1d0348
			    archive_string_conversion_charset_name(sconv));
Packit Service 1d0348
			ret2 = ARCHIVE_WARN;
Packit Service 1d0348
		}
Packit Service 1d0348
		if (len > 0)
Packit Service 1d0348
			archive_entry_set_pathname(zip->entry, p);
Packit Service 1d0348
Packit Service 1d0348
		/*
Packit Service 1d0348
		 * There is no standard for symlink handling; we convert
Packit Service 1d0348
		 * it using the same character-set translation that we use
Packit Service 1d0348
		 * for filename.
Packit Service 1d0348
		 */
Packit Service 1d0348
		if (type == AE_IFLNK) {
Packit Service 1d0348
			if (archive_entry_symlink_l(entry, &p, &len, sconv)) {
Packit Service 1d0348
				if (errno == ENOMEM) {
Packit Service 1d0348
					archive_set_error(&a->archive, ENOMEM,
Packit Service 1d0348
					    "Can't allocate memory "
Packit Service 1d0348
					    " for Symlink");
Packit Service 1d0348
					return (ARCHIVE_FATAL);
Packit Service 1d0348
				}
Packit Service 1d0348
				/* No error if we can't convert. */
Packit Service 1d0348
			} else if (len > 0)
Packit Service 1d0348
				archive_entry_set_symlink(zip->entry, p);
Packit Service 1d0348
		}
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* If filename isn't ASCII and we can use UTF-8, set the UTF-8 flag. */
Packit Service 1d0348
	if (!is_all_ascii(archive_entry_pathname(zip->entry))) {
Packit Service 1d0348
		if (zip->opt_sconv != NULL) {
Packit Service 1d0348
			if (strcmp(archive_string_conversion_charset_name(
Packit Service 1d0348
					zip->opt_sconv), "UTF-8") == 0)
Packit Service 1d0348
				zip->entry_flags |= ZIP_ENTRY_FLAG_UTF8_NAME;
Packit Service 1d0348
#if HAVE_NL_LANGINFO
Packit Service 1d0348
		} else if (strcmp(nl_langinfo(CODESET), "UTF-8") == 0) {
Packit Service 1d0348
			zip->entry_flags |= ZIP_ENTRY_FLAG_UTF8_NAME;
Packit Service 1d0348
#endif
Packit Service 1d0348
		}
Packit Service 1d0348
	}
Packit Service 1d0348
	filename_length = path_length(zip->entry);
Packit Service 1d0348
Packit Service 1d0348
	/* Determine appropriate compression and size for this entry. */
Packit Service 1d0348
	if (type == AE_IFLNK) {
Packit Service 1d0348
		slink = archive_entry_symlink(zip->entry);
Packit Service 1d0348
		if (slink != NULL)
Packit Service 1d0348
			slink_size = strlen(slink);
Packit Service 1d0348
		else
Packit Service 1d0348
			slink_size = 0;
Packit Service 1d0348
		zip->entry_uncompressed_limit = slink_size;
Packit Service 1d0348
		zip->entry_compressed_size = slink_size;
Packit Service 1d0348
		zip->entry_uncompressed_size = slink_size;
Packit Service 1d0348
		zip->entry_crc32 = zip->crc32func(zip->entry_crc32,
Packit Service 1d0348
		    (const unsigned char *)slink, slink_size);
Packit Service 1d0348
		zip->entry_compression = COMPRESSION_STORE;
Packit Service 1d0348
		version_needed = 20;
Packit Service 1d0348
	} else if (type != AE_IFREG) {
Packit Service 1d0348
		zip->entry_compression = COMPRESSION_STORE;
Packit Service 1d0348
		zip->entry_uncompressed_limit = 0;
Packit Service 1d0348
		version_needed = 20;
Packit Service 1d0348
	} else if (archive_entry_size_is_set(zip->entry)) {
Packit Service 1d0348
		int64_t size = archive_entry_size(zip->entry);
Packit Service 1d0348
		int64_t additional_size = 0;
Packit Service 1d0348
Packit Service 1d0348
		zip->entry_uncompressed_limit = size;
Packit Service 1d0348
		zip->entry_compression = zip->requested_compression;
Packit Service 1d0348
		if (zip->entry_compression == COMPRESSION_UNSPECIFIED) {
Packit Service 1d0348
			zip->entry_compression = COMPRESSION_DEFAULT;
Packit Service 1d0348
		}
Packit Service 1d0348
		if (zip->entry_compression == COMPRESSION_STORE) {
Packit Service 1d0348
			zip->entry_compressed_size = size;
Packit Service 1d0348
			zip->entry_uncompressed_size = size;
Packit Service 1d0348
			version_needed = 10;
Packit Service 1d0348
		} else {
Packit Service 1d0348
			zip->entry_uncompressed_size = size;
Packit Service 1d0348
			version_needed = 20;
Packit Service 1d0348
		}
Packit Service 1d0348
Packit Service 1d0348
		if (zip->entry_flags & ZIP_ENTRY_FLAG_ENCRYPTED) {
Packit Service 1d0348
			switch (zip->entry_encryption) {
Packit Service 1d0348
			case ENCRYPTION_TRADITIONAL:
Packit Service 1d0348
				additional_size = TRAD_HEADER_SIZE;
Packit Service 1d0348
				version_needed = 20;
Packit Service 1d0348
				break;
Packit Service 1d0348
			case ENCRYPTION_WINZIP_AES128:
Packit Service 1d0348
				additional_size = WINZIP_AES128_HEADER_SIZE
Packit Service 1d0348
				    + AUTH_CODE_SIZE;
Packit Service 1d0348
				version_needed = 20;
Packit Service 1d0348
				break;
Packit Service 1d0348
			case ENCRYPTION_WINZIP_AES256:
Packit Service 1d0348
				additional_size = WINZIP_AES256_HEADER_SIZE
Packit Service 1d0348
				    + AUTH_CODE_SIZE;
Packit Service 1d0348
				version_needed = 20;
Packit Service 1d0348
				break;
Packit Service 1d0348
			default:
Packit Service 1d0348
				break;
Packit Service 1d0348
			}
Packit Service 1d0348
			if (zip->entry_compression == COMPRESSION_STORE)
Packit Service 1d0348
				zip->entry_compressed_size += additional_size;
Packit Service 1d0348
		}
Packit Service 1d0348
Packit Service 1d0348
		/*
Packit Service 1d0348
		 * Set Zip64 extension in any of the following cases
Packit Service 1d0348
		 * (this was suggested by discussion on info-zip-dev
Packit Service 1d0348
		 * mailing list):
Packit Service 1d0348
		 *  = Zip64 is being forced by user
Packit Service 1d0348
		 *  = File is over 4GiB uncompressed
Packit Service 1d0348
		 *    (including encryption header, if any)
Packit Service 1d0348
		 *  = File is close to 4GiB and is being compressed
Packit Service 1d0348
		 *    (compression might make file larger)
Packit Service 1d0348
		 */
Packit Service 1d0348
		if ((zip->flags & ZIP_FLAG_FORCE_ZIP64)
Packit Service 1d0348
		    || (zip->entry_uncompressed_size + additional_size > ZIP_4GB_MAX)
Packit Service 1d0348
		    || (zip->entry_uncompressed_size > ZIP_4GB_MAX_UNCOMPRESSED
Packit Service 1d0348
			&& zip->entry_compression != COMPRESSION_STORE)) {
Packit Service 1d0348
			zip->entry_uses_zip64 = 1;
Packit Service 1d0348
			version_needed = 45;
Packit Service 1d0348
		}
Packit Service 1d0348
Packit Service 1d0348
		/* We may know the size, but never the CRC. */
Packit Service 1d0348
		zip->entry_flags |= ZIP_ENTRY_FLAG_LENGTH_AT_END;
Packit Service 1d0348
	} else {
Packit Service 1d0348
		/* We don't know the size.  In this case, we prefer
Packit Service 1d0348
		 * deflate (it has a clear end-of-data marker which
Packit Service 1d0348
		 * makes length-at-end more reliable) and will
Packit Service 1d0348
		 * enable Zip64 extensions unless we're told not to.
Packit Service 1d0348
		 */
Packit Service 1d0348
		zip->entry_compression = COMPRESSION_DEFAULT;
Packit Service 1d0348
		zip->entry_flags |= ZIP_ENTRY_FLAG_LENGTH_AT_END;
Packit Service 1d0348
		if ((zip->flags & ZIP_FLAG_AVOID_ZIP64) == 0) {
Packit Service 1d0348
			zip->entry_uses_zip64 = 1;
Packit Service 1d0348
			version_needed = 45;
Packit Service 1d0348
		} else if (zip->entry_compression == COMPRESSION_STORE) {
Packit Service 1d0348
			version_needed = 10;
Packit Service 1d0348
		} else {
Packit Service 1d0348
			version_needed = 20;
Packit Service 1d0348
		}
Packit Service 1d0348
Packit Service 1d0348
		if (zip->entry_flags & ZIP_ENTRY_FLAG_ENCRYPTED) {
Packit Service 1d0348
			switch (zip->entry_encryption) {
Packit Service 1d0348
			case ENCRYPTION_TRADITIONAL:
Packit Service 1d0348
			case ENCRYPTION_WINZIP_AES128:
Packit Service 1d0348
			case ENCRYPTION_WINZIP_AES256:
Packit Service 1d0348
				if (version_needed < 20)
Packit Service 1d0348
					version_needed = 20;
Packit Service 1d0348
				break;
Packit Service 1d0348
			default:
Packit Service 1d0348
				break;
Packit Service 1d0348
			}
Packit Service 1d0348
		}
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* Format the local header. */
Packit Service 1d0348
	memset(local_header, 0, sizeof(local_header));
Packit Service 1d0348
	memcpy(local_header, "PK\003\004", 4);
Packit Service 1d0348
	archive_le16enc(local_header + 4, version_needed);
Packit Service 1d0348
	archive_le16enc(local_header + 6, zip->entry_flags);
Packit Service 1d0348
	if (zip->entry_encryption == ENCRYPTION_WINZIP_AES128
Packit Service 1d0348
	    || zip->entry_encryption == ENCRYPTION_WINZIP_AES256)
Packit Service 1d0348
		archive_le16enc(local_header + 8, WINZIP_AES_ENCRYPTION);
Packit Service 1d0348
	else
Packit Service 1d0348
		archive_le16enc(local_header + 8, zip->entry_compression);
Packit Service 1d0348
	archive_le32enc(local_header + 10,
Packit Service 1d0348
		dos_time(archive_entry_mtime(zip->entry)));
Packit Service 1d0348
	archive_le32enc(local_header + 14, zip->entry_crc32);
Packit Service 1d0348
	if (zip->entry_uses_zip64) {
Packit Service 1d0348
		/* Zip64 data in the local header "must" include both
Packit Service 1d0348
		 * compressed and uncompressed sizes AND those fields
Packit Service 1d0348
		 * are included only if these are 0xffffffff;
Packit Service 1d0348
		 * THEREFORE these must be set this way, even if we
Packit Service 1d0348
		 * know one of them is smaller. */
Packit Service 1d0348
		archive_le32enc(local_header + 18, ZIP_4GB_MAX);
Packit Service 1d0348
		archive_le32enc(local_header + 22, ZIP_4GB_MAX);
Packit Service 1d0348
	} else {
Packit Service 1d0348
		archive_le32enc(local_header + 18, (uint32_t)zip->entry_compressed_size);
Packit Service 1d0348
		archive_le32enc(local_header + 22, (uint32_t)zip->entry_uncompressed_size);
Packit Service 1d0348
	}
Packit Service 1d0348
	archive_le16enc(local_header + 26, (uint16_t)filename_length);
Packit Service 1d0348
Packit Service 1d0348
	if (zip->entry_encryption == ENCRYPTION_TRADITIONAL) {
Packit Service 1d0348
		if (zip->entry_flags & ZIP_ENTRY_FLAG_LENGTH_AT_END)
Packit Service 1d0348
			zip->trad_chkdat = local_header[11];
Packit Service 1d0348
		else
Packit Service 1d0348
			zip->trad_chkdat = local_header[17];
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* Format as much of central directory file header as we can: */
Packit Service 1d0348
	zip->file_header = cd_alloc(zip, 46);
Packit Service 1d0348
	/* If (zip->file_header == NULL) XXXX */
Packit Service 1d0348
	++zip->central_directory_entries;
Packit Service 1d0348
	memset(zip->file_header, 0, 46);
Packit Service 1d0348
	memcpy(zip->file_header, "PK\001\002", 4);
Packit Service 1d0348
	/* "Made by PKZip 2.0 on Unix." */
Packit Service 1d0348
	archive_le16enc(zip->file_header + 4, 3 * 256 + version_needed);
Packit Service 1d0348
	archive_le16enc(zip->file_header + 6, version_needed);
Packit Service 1d0348
	archive_le16enc(zip->file_header + 8, zip->entry_flags);
Packit Service 1d0348
	if (zip->entry_encryption == ENCRYPTION_WINZIP_AES128
Packit Service 1d0348
	    || zip->entry_encryption == ENCRYPTION_WINZIP_AES256)
Packit Service 1d0348
		archive_le16enc(zip->file_header + 10, WINZIP_AES_ENCRYPTION);
Packit Service 1d0348
	else
Packit Service 1d0348
		archive_le16enc(zip->file_header + 10, zip->entry_compression);
Packit Service 1d0348
	archive_le32enc(zip->file_header + 12,
Packit Service 1d0348
		dos_time(archive_entry_mtime(zip->entry)));
Packit Service 1d0348
	archive_le16enc(zip->file_header + 28, (uint16_t)filename_length);
Packit Service 1d0348
	/* Following Info-Zip, store mode in the "external attributes" field. */
Packit Service 1d0348
	archive_le32enc(zip->file_header + 38,
Packit Service 1d0348
	    ((uint32_t)archive_entry_mode(zip->entry)) << 16);
Packit Service 1d0348
	e = cd_alloc(zip, filename_length);
Packit Service 1d0348
	/* If (e == NULL) XXXX */
Packit Service 1d0348
	copy_path(zip->entry, e);
Packit Service 1d0348
Packit Service 1d0348
	/* Format extra data. */
Packit Service 1d0348
	memset(local_extra, 0, sizeof(local_extra));
Packit Service 1d0348
	e = local_extra;
Packit Service 1d0348
Packit Service 1d0348
	/* First, extra blocks that are the same between
Packit Service 1d0348
	 * the local file header and the central directory.
Packit Service 1d0348
	 * We format them once and then duplicate them. */
Packit Service 1d0348
Packit Service 1d0348
	/* UT timestamp, length depends on what timestamps are set. */
Packit Service 1d0348
	memcpy(e, "UT", 2);
Packit Service 1d0348
	archive_le16enc(e + 2,
Packit Service 1d0348
	    1
Packit Service 1d0348
	    + (archive_entry_mtime_is_set(entry) ? 4 : 0)
Packit Service 1d0348
	    + (archive_entry_atime_is_set(entry) ? 4 : 0)
Packit Service 1d0348
	    + (archive_entry_ctime_is_set(entry) ? 4 : 0));
Packit Service 1d0348
	e += 4;
Packit Service 1d0348
	*e++ =
Packit Service 1d0348
	    (archive_entry_mtime_is_set(entry) ? 1 : 0)
Packit Service 1d0348
	    | (archive_entry_atime_is_set(entry) ? 2 : 0)
Packit Service 1d0348
	    | (archive_entry_ctime_is_set(entry) ? 4 : 0);
Packit Service 1d0348
	if (archive_entry_mtime_is_set(entry)) {
Packit Service 1d0348
		archive_le32enc(e, (uint32_t)archive_entry_mtime(entry));
Packit Service 1d0348
		e += 4;
Packit Service 1d0348
	}
Packit Service 1d0348
	if (archive_entry_atime_is_set(entry)) {
Packit Service 1d0348
		archive_le32enc(e, (uint32_t)archive_entry_atime(entry));
Packit Service 1d0348
		e += 4;
Packit Service 1d0348
	}
Packit Service 1d0348
	if (archive_entry_ctime_is_set(entry)) {
Packit Service 1d0348
		archive_le32enc(e, (uint32_t)archive_entry_ctime(entry));
Packit Service 1d0348
		e += 4;
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* ux Unix extra data, length 11, version 1 */
Packit Service 1d0348
	/* TODO: If uid < 64k, use 2 bytes, ditto for gid. */
Packit Service 1d0348
	memcpy(e, "ux\013\000\001", 5);
Packit Service 1d0348
	e += 5;
Packit Service 1d0348
	*e++ = 4; /* Length of following UID */
Packit Service 1d0348
	archive_le32enc(e, (uint32_t)archive_entry_uid(entry));
Packit Service 1d0348
	e += 4;
Packit Service 1d0348
	*e++ = 4; /* Length of following GID */
Packit Service 1d0348
	archive_le32enc(e, (uint32_t)archive_entry_gid(entry));
Packit Service 1d0348
	e += 4;
Packit Service 1d0348
Packit Service 1d0348
	/* AES extra data field: WinZIP AES information, ID=0x9901 */
Packit Service 1d0348
	if ((zip->entry_flags & ZIP_ENTRY_FLAG_ENCRYPTED)
Packit Service 1d0348
	    && (zip->entry_encryption == ENCRYPTION_WINZIP_AES128
Packit Service 1d0348
	        || zip->entry_encryption == ENCRYPTION_WINZIP_AES256)) {
Packit Service 1d0348
Packit Service 1d0348
		memcpy(e, "\001\231\007\000\001\000AE", 8);
Packit Service 1d0348
		/* AES vendor version AE-2 does not store a CRC.
Packit Service 1d0348
		 * WinZip 11 uses AE-1, which does store the CRC,
Packit Service 1d0348
		 * but it does not store the CRC when the file size
Packit Service 1d0348
		 * is less than 20 bytes. So we simulate what
Packit Service 1d0348
		 * WinZip 11 does.
Packit Service 1d0348
		 * NOTE: WinZip 9.0 and 10.0 uses AE-2 by default. */
Packit Service 1d0348
		if (archive_entry_size_is_set(zip->entry)
Packit Service 1d0348
		    && archive_entry_size(zip->entry) < 20) {
Packit Service 1d0348
			archive_le16enc(e+4, AES_VENDOR_AE_2);
Packit Service 1d0348
			zip->aes_vendor = AES_VENDOR_AE_2;/* no CRC. */
Packit Service 1d0348
		} else
Packit Service 1d0348
			zip->aes_vendor = AES_VENDOR_AE_1;
Packit Service 1d0348
		e += 8;
Packit Service 1d0348
		/* AES encryption strength. */
Packit Service 1d0348
		*e++ = (zip->entry_encryption == ENCRYPTION_WINZIP_AES128)?1:3;
Packit Service 1d0348
		/* Actual compression method. */
Packit Service 1d0348
		archive_le16enc(e, zip->entry_compression);
Packit Service 1d0348
		e += 2;
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* Copy UT ,ux, and AES-extra into central directory as well. */
Packit Service 1d0348
	zip->file_header_extra_offset = zip->central_directory_bytes;
Packit Service 1d0348
	cd_extra = cd_alloc(zip, e - local_extra);
Packit Service 1d0348
	memcpy(cd_extra, local_extra, e - local_extra);
Packit Service 1d0348
Packit Service 1d0348
	/*
Packit Service 1d0348
	 * Following extra blocks vary between local header and
Packit Service 1d0348
	 * central directory. These are the local header versions.
Packit Service 1d0348
	 * Central directory versions get formatted in
Packit Service 1d0348
	 * archive_write_zip_finish_entry() below.
Packit Service 1d0348
	 */
Packit Service 1d0348
Packit Service 1d0348
	/* "[Zip64 entry] in the local header MUST include BOTH
Packit Service 1d0348
	 * original [uncompressed] and compressed size fields." */
Packit Service 1d0348
	if (zip->entry_uses_zip64) {
Packit Service 1d0348
		unsigned char *zip64_start = e;
Packit Service 1d0348
		memcpy(e, "\001\000\020\000", 4);
Packit Service 1d0348
		e += 4;
Packit Service 1d0348
		archive_le64enc(e, zip->entry_uncompressed_size);
Packit Service 1d0348
		e += 8;
Packit Service 1d0348
		archive_le64enc(e, zip->entry_compressed_size);
Packit Service 1d0348
		e += 8;
Packit Service 1d0348
		archive_le16enc(zip64_start + 2, (uint16_t)(e - (zip64_start + 4)));
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	if (zip->flags & ZIP_FLAG_EXPERIMENT_xl) {
Packit Service 1d0348
		/* Experimental 'xl' extension to improve streaming. */
Packit Service 1d0348
		unsigned char *external_info = e;
Packit Service 1d0348
		int included = 7;
Packit Service 1d0348
		memcpy(e, "xl\000\000", 4); // 0x6c65 + 2-byte length
Packit Service 1d0348
		e += 4;
Packit Service 1d0348
		e[0] = included; /* bitmap of included fields */
Packit Service 1d0348
		e += 1;
Packit Service 1d0348
		if (included & 1) {
Packit Service 1d0348
			archive_le16enc(e, /* "Version created by" */
Packit Service 1d0348
			    3 * 256 + version_needed);
Packit Service 1d0348
			e += 2;
Packit Service 1d0348
		}
Packit Service 1d0348
		if (included & 2) {
Packit Service 1d0348
			archive_le16enc(e, 0); /* internal file attributes */
Packit Service 1d0348
			e += 2;
Packit Service 1d0348
		}
Packit Service 1d0348
		if (included & 4) {
Packit Service 1d0348
			archive_le32enc(e,  /* external file attributes */
Packit Service 1d0348
			    ((uint32_t)archive_entry_mode(zip->entry)) << 16);
Packit Service 1d0348
			e += 4;
Packit Service 1d0348
		}
Packit Service 1d0348
		if (included & 8) {
Packit Service 1d0348
			// Libarchive does not currently support file comments.
Packit Service 1d0348
		}
Packit Service 1d0348
		archive_le16enc(external_info + 2, (uint16_t)(e - (external_info + 4)));
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* Update local header with size of extra data and write it all out: */
Packit Service 1d0348
	archive_le16enc(local_header + 28, (uint16_t)(e - local_extra));
Packit Service 1d0348
Packit Service 1d0348
	ret = __archive_write_output(a, local_header, 30);
Packit Service 1d0348
	if (ret != ARCHIVE_OK)
Packit Service 1d0348
		return (ARCHIVE_FATAL);
Packit Service 1d0348
	zip->written_bytes += 30;
Packit Service 1d0348
Packit Service 1d0348
	ret = write_path(zip->entry, a);
Packit Service 1d0348
	if (ret <= ARCHIVE_OK)
Packit Service 1d0348
		return (ARCHIVE_FATAL);
Packit Service 1d0348
	zip->written_bytes += ret;
Packit Service 1d0348
Packit Service 1d0348
	ret = __archive_write_output(a, local_extra, e - local_extra);
Packit Service 1d0348
	if (ret != ARCHIVE_OK)
Packit Service 1d0348
		return (ARCHIVE_FATAL);
Packit Service 1d0348
	zip->written_bytes += e - local_extra;
Packit Service 1d0348
Packit Service 1d0348
	/* For symlinks, write the body now. */
Packit Service 1d0348
	if (slink != NULL) {
Packit Service 1d0348
		ret = __archive_write_output(a, slink, slink_size);
Packit Service 1d0348
		if (ret != ARCHIVE_OK)
Packit Service 1d0348
			return (ARCHIVE_FATAL);
Packit Service 1d0348
		zip->entry_compressed_written += slink_size;
Packit Service 1d0348
		zip->entry_uncompressed_written += slink_size;
Packit Service 1d0348
		zip->written_bytes += slink_size;
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
#ifdef HAVE_ZLIB_H
Packit Service 1d0348
	if (zip->entry_compression == COMPRESSION_DEFLATE) {
Packit Service 1d0348
		zip->stream.zalloc = Z_NULL;
Packit Service 1d0348
		zip->stream.zfree = Z_NULL;
Packit Service 1d0348
		zip->stream.opaque = Z_NULL;
Packit Service 1d0348
		zip->stream.next_out = zip->buf;
Packit Service 1d0348
		zip->stream.avail_out = (uInt)zip->len_buf;
Packit Service 1d0348
		if (deflateInit2(&zip->stream, zip->deflate_compression_level,
Packit Service 1d0348
		    Z_DEFLATED, -15, 8, Z_DEFAULT_STRATEGY) != Z_OK) {
Packit Service 1d0348
			archive_set_error(&a->archive, ENOMEM,
Packit Service 1d0348
			    "Can't init deflate compressor");
Packit Service 1d0348
			return (ARCHIVE_FATAL);
Packit Service 1d0348
		}
Packit Service 1d0348
	}
Packit Service 1d0348
#endif
Packit Service 1d0348
Packit Service 1d0348
	return (ret2);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static ssize_t
Packit Service 1d0348
archive_write_zip_data(struct archive_write *a, const void *buff, size_t s)
Packit Service 1d0348
{
Packit Service 1d0348
	int ret;
Packit Service 1d0348
	struct zip *zip = a->format_data;
Packit Service 1d0348
Packit Service 1d0348
	if ((int64_t)s > zip->entry_uncompressed_limit)
Packit Service 1d0348
		s = (size_t)zip->entry_uncompressed_limit;
Packit Service 1d0348
	zip->entry_uncompressed_written += s;
Packit Service 1d0348
Packit Service 1d0348
	if (s == 0) return 0;
Packit Service 1d0348
Packit Service 1d0348
	if (zip->entry_flags & ZIP_ENTRY_FLAG_ENCRYPTED) {
Packit Service 1d0348
		switch (zip->entry_encryption) {
Packit Service 1d0348
		case ENCRYPTION_TRADITIONAL:
Packit Service 1d0348
			/* Initialize traditional PKWARE encryption context. */
Packit Service 1d0348
			if (!zip->tctx_valid) {
Packit Service 1d0348
				ret = init_traditional_pkware_encryption(a);
Packit Service 1d0348
				if (ret != ARCHIVE_OK)
Packit Service 1d0348
					return (ret);
Packit Service 1d0348
				zip->tctx_valid = 1;
Packit Service 1d0348
			}
Packit Service 1d0348
			break;
Packit Service 1d0348
		case ENCRYPTION_WINZIP_AES128:
Packit Service 1d0348
		case ENCRYPTION_WINZIP_AES256:
Packit Service 1d0348
			if (!zip->cctx_valid) {
Packit Service 1d0348
				ret = init_winzip_aes_encryption(a);
Packit Service 1d0348
				if (ret != ARCHIVE_OK)
Packit Service 1d0348
					return (ret);
Packit Service 1d0348
				zip->cctx_valid = zip->hctx_valid = 1;
Packit Service 1d0348
			}
Packit Service 1d0348
			break;
Packit Service 1d0348
		default:
Packit Service 1d0348
			break;
Packit Service 1d0348
		}
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	switch (zip->entry_compression) {
Packit Service 1d0348
	case COMPRESSION_STORE:
Packit Service 1d0348
		if (zip->tctx_valid || zip->cctx_valid) {
Packit Service 1d0348
			const uint8_t *rb = (const uint8_t *)buff;
Packit Service 1d0348
			const uint8_t * const re = rb + s;
Packit Service 1d0348
Packit Service 1d0348
			while (rb < re) {
Packit Service 1d0348
				size_t l;
Packit Service 1d0348
Packit Service 1d0348
				if (zip->tctx_valid) {
Packit Service 1d0348
					l = trad_enc_encrypt_update(&zip->tctx,
Packit Service 1d0348
					    rb, re - rb,
Packit Service 1d0348
					    zip->buf, zip->len_buf);
Packit Service 1d0348
				} else {
Packit Service 1d0348
					l = zip->len_buf;
Packit Service 1d0348
					ret = archive_encrypto_aes_ctr_update(
Packit Service 1d0348
					    &zip->cctx,
Packit Service 1d0348
					    rb, re - rb, zip->buf, &l);
Packit Service 1d0348
					if (ret < 0) {
Packit Service 1d0348
						archive_set_error(&a->archive,
Packit Service 1d0348
						    ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
						    "Failed to encrypt file");
Packit Service 1d0348
						return (ARCHIVE_FAILED);
Packit Service 1d0348
					}
Packit Service 1d0348
					archive_hmac_sha1_update(&zip->hctx,
Packit Service 1d0348
					    zip->buf, l);
Packit Service 1d0348
				}
Packit Service 1d0348
				ret = __archive_write_output(a, zip->buf, l);
Packit Service 1d0348
				if (ret != ARCHIVE_OK)
Packit Service 1d0348
					return (ret);
Packit Service 1d0348
				zip->entry_compressed_written += l;
Packit Service 1d0348
				zip->written_bytes += l;
Packit Service 1d0348
				rb += l;
Packit Service 1d0348
			}
Packit Service 1d0348
		} else {
Packit Service 1d0348
			ret = __archive_write_output(a, buff, s);
Packit Service 1d0348
			if (ret != ARCHIVE_OK)
Packit Service 1d0348
				return (ret);
Packit Service 1d0348
			zip->written_bytes += s;
Packit Service 1d0348
			zip->entry_compressed_written += s;
Packit Service 1d0348
		}
Packit Service 1d0348
		break;
Packit Service 1d0348
#if HAVE_ZLIB_H
Packit Service 1d0348
	case COMPRESSION_DEFLATE:
Packit Service 1d0348
		zip->stream.next_in = (unsigned char*)(uintptr_t)buff;
Packit Service 1d0348
		zip->stream.avail_in = (uInt)s;
Packit Service 1d0348
		do {
Packit Service 1d0348
			ret = deflate(&zip->stream, Z_NO_FLUSH);
Packit Service 1d0348
			if (ret == Z_STREAM_ERROR)
Packit Service 1d0348
				return (ARCHIVE_FATAL);
Packit Service 1d0348
			if (zip->stream.avail_out == 0) {
Packit Service 1d0348
				if (zip->tctx_valid) {
Packit Service 1d0348
					trad_enc_encrypt_update(&zip->tctx,
Packit Service 1d0348
					    zip->buf, zip->len_buf,
Packit Service 1d0348
					    zip->buf, zip->len_buf);
Packit Service 1d0348
				} else if (zip->cctx_valid) {
Packit Service 1d0348
					size_t outl = zip->len_buf;
Packit Service 1d0348
					ret = archive_encrypto_aes_ctr_update(
Packit Service 1d0348
					    &zip->cctx,
Packit Service 1d0348
					    zip->buf, zip->len_buf,
Packit Service 1d0348
					    zip->buf, &outl);
Packit Service 1d0348
					if (ret < 0) {
Packit Service 1d0348
						archive_set_error(&a->archive,
Packit Service 1d0348
						    ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
						    "Failed to encrypt file");
Packit Service 1d0348
						return (ARCHIVE_FAILED);
Packit Service 1d0348
					}
Packit Service 1d0348
					archive_hmac_sha1_update(&zip->hctx,
Packit Service 1d0348
					    zip->buf, zip->len_buf);
Packit Service 1d0348
				}
Packit Service 1d0348
				ret = __archive_write_output(a, zip->buf,
Packit Service 1d0348
					zip->len_buf);
Packit Service 1d0348
				if (ret != ARCHIVE_OK)
Packit Service 1d0348
					return (ret);
Packit Service 1d0348
				zip->entry_compressed_written += zip->len_buf;
Packit Service 1d0348
				zip->written_bytes += zip->len_buf;
Packit Service 1d0348
				zip->stream.next_out = zip->buf;
Packit Service 1d0348
				zip->stream.avail_out = (uInt)zip->len_buf;
Packit Service 1d0348
			}
Packit Service 1d0348
		} while (zip->stream.avail_in != 0);
Packit Service 1d0348
		break;
Packit Service 1d0348
#endif
Packit Service 1d0348
Packit Service 1d0348
	default:
Packit Service 1d0348
		archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
		    "Invalid ZIP compression type");
Packit Service 1d0348
		return ARCHIVE_FATAL;
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	zip->entry_uncompressed_limit -= s;
Packit Service 1d0348
	if (!zip->cctx_valid || zip->aes_vendor != AES_VENDOR_AE_2)
Packit Service 1d0348
		zip->entry_crc32 =
Packit Service 1d0348
		    zip->crc32func(zip->entry_crc32, buff, (unsigned)s);
Packit Service 1d0348
	return (s);
Packit Service 1d0348
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static int
Packit Service 1d0348
archive_write_zip_finish_entry(struct archive_write *a)
Packit Service 1d0348
{
Packit Service 1d0348
	struct zip *zip = a->format_data;
Packit Service 1d0348
	int ret;
Packit Service 1d0348
Packit Service 1d0348
#if HAVE_ZLIB_H
Packit Service 1d0348
	if (zip->entry_compression == COMPRESSION_DEFLATE) {
Packit Service 1d0348
		for (;;) {
Packit Service 1d0348
			size_t remainder;
Packit Service 1d0348
Packit Service 1d0348
			ret = deflate(&zip->stream, Z_FINISH);
Packit Service 1d0348
			if (ret == Z_STREAM_ERROR)
Packit Service 1d0348
				return (ARCHIVE_FATAL);
Packit Service 1d0348
			remainder = zip->len_buf - zip->stream.avail_out;
Packit Service 1d0348
			if (zip->tctx_valid) {
Packit Service 1d0348
				trad_enc_encrypt_update(&zip->tctx,
Packit Service 1d0348
				    zip->buf, remainder, zip->buf, remainder);
Packit Service 1d0348
			} else if (zip->cctx_valid) {
Packit Service 1d0348
				size_t outl = remainder;
Packit Service 1d0348
				ret = archive_encrypto_aes_ctr_update(
Packit Service 1d0348
				    &zip->cctx, zip->buf, remainder,
Packit Service 1d0348
				    zip->buf, &outl);
Packit Service 1d0348
				if (ret < 0) {
Packit Service 1d0348
					archive_set_error(&a->archive,
Packit Service 1d0348
					    ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
					    "Failed to encrypt file");
Packit Service 1d0348
					return (ARCHIVE_FAILED);
Packit Service 1d0348
				}
Packit Service 1d0348
				archive_hmac_sha1_update(&zip->hctx,
Packit Service 1d0348
				    zip->buf, remainder);
Packit Service 1d0348
			}
Packit Service 1d0348
			ret = __archive_write_output(a, zip->buf, remainder);
Packit Service 1d0348
			if (ret != ARCHIVE_OK)
Packit Service 1d0348
				return (ret);
Packit Service 1d0348
			zip->entry_compressed_written += remainder;
Packit Service 1d0348
			zip->written_bytes += remainder;
Packit Service 1d0348
			zip->stream.next_out = zip->buf;
Packit Service 1d0348
			if (zip->stream.avail_out != 0)
Packit Service 1d0348
				break;
Packit Service 1d0348
			zip->stream.avail_out = (uInt)zip->len_buf;
Packit Service 1d0348
		}
Packit Service 1d0348
		deflateEnd(&zip->stream);
Packit Service 1d0348
	}
Packit Service 1d0348
#endif
Packit Service 1d0348
	if (zip->hctx_valid) {
Packit Service 1d0348
		uint8_t hmac[20];
Packit Service 1d0348
		size_t hmac_len = 20;
Packit Service 1d0348
Packit Service 1d0348
		archive_hmac_sha1_final(&zip->hctx, hmac, &hmac_len);
Packit Service 1d0348
		ret = __archive_write_output(a, hmac, AUTH_CODE_SIZE);
Packit Service 1d0348
		if (ret != ARCHIVE_OK)
Packit Service 1d0348
			return (ret);
Packit Service 1d0348
		zip->entry_compressed_written += AUTH_CODE_SIZE;
Packit Service 1d0348
		zip->written_bytes += AUTH_CODE_SIZE;
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* Write trailing data descriptor. */
Packit Service 1d0348
	if ((zip->entry_flags & ZIP_ENTRY_FLAG_LENGTH_AT_END) != 0) {
Packit Service 1d0348
		char d[24];
Packit Service 1d0348
		memcpy(d, "PK\007\010", 4);
Packit Service 1d0348
		if (zip->cctx_valid && zip->aes_vendor == AES_VENDOR_AE_2)
Packit Service 1d0348
			archive_le32enc(d + 4, 0);/* no CRC.*/
Packit Service 1d0348
		else
Packit Service 1d0348
			archive_le32enc(d + 4, zip->entry_crc32);
Packit Service 1d0348
		if (zip->entry_uses_zip64) {
Packit Service 1d0348
			archive_le64enc(d + 8,
Packit Service 1d0348
				(uint64_t)zip->entry_compressed_written);
Packit Service 1d0348
			archive_le64enc(d + 16,
Packit Service 1d0348
				(uint64_t)zip->entry_uncompressed_written);
Packit Service 1d0348
			ret = __archive_write_output(a, d, 24);
Packit Service 1d0348
			zip->written_bytes += 24;
Packit Service 1d0348
		} else {
Packit Service 1d0348
			archive_le32enc(d + 8,
Packit Service 1d0348
				(uint32_t)zip->entry_compressed_written);
Packit Service 1d0348
			archive_le32enc(d + 12,
Packit Service 1d0348
				(uint32_t)zip->entry_uncompressed_written);
Packit Service 1d0348
			ret = __archive_write_output(a, d, 16);
Packit Service 1d0348
			zip->written_bytes += 16;
Packit Service 1d0348
		}
Packit Service 1d0348
		if (ret != ARCHIVE_OK)
Packit Service 1d0348
			return (ARCHIVE_FATAL);
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* Append Zip64 extra data to central directory information. */
Packit Service 1d0348
	if (zip->entry_compressed_written > ZIP_4GB_MAX
Packit Service 1d0348
	    || zip->entry_uncompressed_written > ZIP_4GB_MAX
Packit Service 1d0348
	    || zip->entry_offset > ZIP_4GB_MAX) {
Packit Service 1d0348
		unsigned char zip64[32];
Packit Service 1d0348
		unsigned char *z = zip64, *zd;
Packit Service 1d0348
		memcpy(z, "\001\000\000\000", 4);
Packit Service 1d0348
		z += 4;
Packit Service 1d0348
		if (zip->entry_uncompressed_written >= ZIP_4GB_MAX) {
Packit Service 1d0348
			archive_le64enc(z, zip->entry_uncompressed_written);
Packit Service 1d0348
			z += 8;
Packit Service 1d0348
		}
Packit Service 1d0348
		if (zip->entry_compressed_written >= ZIP_4GB_MAX) {
Packit Service 1d0348
			archive_le64enc(z, zip->entry_compressed_written);
Packit Service 1d0348
			z += 8;
Packit Service 1d0348
		}
Packit Service 1d0348
		if (zip->entry_offset >= ZIP_4GB_MAX) {
Packit Service 1d0348
			archive_le64enc(z, zip->entry_offset);
Packit Service 1d0348
			z += 8;
Packit Service 1d0348
		}
Packit Service 1d0348
		archive_le16enc(zip64 + 2, (uint16_t)(z - (zip64 + 4)));
Packit Service 1d0348
		zd = cd_alloc(zip, z - zip64);
Packit Service 1d0348
		if (zd == NULL) {
Packit Service 1d0348
			archive_set_error(&a->archive, ENOMEM,
Packit Service 1d0348
				"Can't allocate zip data");
Packit Service 1d0348
			return (ARCHIVE_FATAL);
Packit Service 1d0348
		}
Packit Service 1d0348
		memcpy(zd, zip64, z - zip64);
Packit Service 1d0348
		/* Zip64 means version needs to be set to at least 4.5 */
Packit Service 1d0348
		if (archive_le16dec(zip->file_header + 6) < 45)
Packit Service 1d0348
			archive_le16enc(zip->file_header + 6, 45);
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* Fix up central directory file header. */
Packit Service 1d0348
	if (zip->cctx_valid && zip->aes_vendor == AES_VENDOR_AE_2)
Packit Service 1d0348
		archive_le32enc(zip->file_header + 16, 0);/* no CRC.*/
Packit Service 1d0348
	else
Packit Service 1d0348
		archive_le32enc(zip->file_header + 16, zip->entry_crc32);
Packit Service 1d0348
	archive_le32enc(zip->file_header + 20,
Packit Service 1d0348
		(uint32_t)zipmin(zip->entry_compressed_written,
Packit Service 1d0348
				 ZIP_4GB_MAX));
Packit Service 1d0348
	archive_le32enc(zip->file_header + 24,
Packit Service 1d0348
		(uint32_t)zipmin(zip->entry_uncompressed_written,
Packit Service 1d0348
				 ZIP_4GB_MAX));
Packit Service 1d0348
	archive_le16enc(zip->file_header + 30,
Packit Service 1d0348
	    (uint16_t)(zip->central_directory_bytes - zip->file_header_extra_offset));
Packit Service 1d0348
	archive_le32enc(zip->file_header + 42,
Packit Service 1d0348
		(uint32_t)zipmin(zip->entry_offset,
Packit Service 1d0348
				 ZIP_4GB_MAX));
Packit Service 1d0348
Packit Service 1d0348
	return (ARCHIVE_OK);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static int
Packit Service 1d0348
archive_write_zip_close(struct archive_write *a)
Packit Service 1d0348
{
Packit Service 1d0348
	uint8_t buff[64];
Packit Service 1d0348
	int64_t offset_start, offset_end;
Packit Service 1d0348
	struct zip *zip = a->format_data;
Packit Service 1d0348
	struct cd_segment *segment;
Packit Service 1d0348
	int ret;
Packit Service 1d0348
Packit Service 1d0348
	offset_start = zip->written_bytes;
Packit Service 1d0348
	segment = zip->central_directory;
Packit Service 1d0348
	while (segment != NULL) {
Packit Service 1d0348
		ret = __archive_write_output(a,
Packit Service 1d0348
		    segment->buff, segment->p - segment->buff);
Packit Service 1d0348
		if (ret != ARCHIVE_OK)
Packit Service 1d0348
			return (ARCHIVE_FATAL);
Packit Service 1d0348
		zip->written_bytes += segment->p - segment->buff;
Packit Service 1d0348
		segment = segment->next;
Packit Service 1d0348
	}
Packit Service 1d0348
	offset_end = zip->written_bytes;
Packit Service 1d0348
Packit Service 1d0348
	/* If central dir info is too large, write Zip64 end-of-cd */
Packit Service 1d0348
	if (offset_end - offset_start > ZIP_4GB_MAX
Packit Service 1d0348
	    || offset_start > ZIP_4GB_MAX
Packit Service 1d0348
	    || zip->central_directory_entries > 0xffffUL
Packit Service 1d0348
	    || (zip->flags & ZIP_FLAG_FORCE_ZIP64)) {
Packit Service 1d0348
	  /* Zip64 end-of-cd record */
Packit Service 1d0348
	  memset(buff, 0, 56);
Packit Service 1d0348
	  memcpy(buff, "PK\006\006", 4);
Packit Service 1d0348
	  archive_le64enc(buff + 4, 44);
Packit Service 1d0348
	  archive_le16enc(buff + 12, 45);
Packit Service 1d0348
	  archive_le16enc(buff + 14, 45);
Packit Service 1d0348
	  /* This is disk 0 of 0. */
Packit Service 1d0348
	  archive_le64enc(buff + 24, zip->central_directory_entries);
Packit Service 1d0348
	  archive_le64enc(buff + 32, zip->central_directory_entries);
Packit Service 1d0348
	  archive_le64enc(buff + 40, offset_end - offset_start);
Packit Service 1d0348
	  archive_le64enc(buff + 48, offset_start);
Packit Service 1d0348
	  ret = __archive_write_output(a, buff, 56);
Packit Service 1d0348
	  if (ret != ARCHIVE_OK)
Packit Service 1d0348
		  return (ARCHIVE_FATAL);
Packit Service 1d0348
	  zip->written_bytes += 56;
Packit Service 1d0348
Packit Service 1d0348
	  /* Zip64 end-of-cd locator record. */
Packit Service 1d0348
	  memset(buff, 0, 20);
Packit Service 1d0348
	  memcpy(buff, "PK\006\007", 4);
Packit Service 1d0348
	  archive_le32enc(buff + 4, 0);
Packit Service 1d0348
	  archive_le64enc(buff + 8, offset_end);
Packit Service 1d0348
	  archive_le32enc(buff + 16, 1);
Packit Service 1d0348
	  ret = __archive_write_output(a, buff, 20);
Packit Service 1d0348
	  if (ret != ARCHIVE_OK)
Packit Service 1d0348
		  return (ARCHIVE_FATAL);
Packit Service 1d0348
	  zip->written_bytes += 20;
Packit Service 1d0348
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	/* Format and write end of central directory. */
Packit Service 1d0348
	memset(buff, 0, sizeof(buff));
Packit Service 1d0348
	memcpy(buff, "PK\005\006", 4);
Packit Service 1d0348
	archive_le16enc(buff + 8, (uint16_t)zipmin(0xffffU,
Packit Service 1d0348
		zip->central_directory_entries));
Packit Service 1d0348
	archive_le16enc(buff + 10, (uint16_t)zipmin(0xffffU,
Packit Service 1d0348
		zip->central_directory_entries));
Packit Service 1d0348
	archive_le32enc(buff + 12,
Packit Service 1d0348
		(uint32_t)zipmin(ZIP_4GB_MAX, (offset_end - offset_start)));
Packit Service 1d0348
	archive_le32enc(buff + 16,
Packit Service 1d0348
		(uint32_t)zipmin(ZIP_4GB_MAX, offset_start));
Packit Service 1d0348
	ret = __archive_write_output(a, buff, 22);
Packit Service 1d0348
	if (ret != ARCHIVE_OK)
Packit Service 1d0348
		return (ARCHIVE_FATAL);
Packit Service 1d0348
	zip->written_bytes += 22;
Packit Service 1d0348
	return (ARCHIVE_OK);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static int
Packit Service 1d0348
archive_write_zip_free(struct archive_write *a)
Packit Service 1d0348
{
Packit Service 1d0348
	struct zip *zip;
Packit Service 1d0348
	struct cd_segment *segment;
Packit Service 1d0348
Packit Service 1d0348
	zip = a->format_data;
Packit Service 1d0348
	while (zip->central_directory != NULL) {
Packit Service 1d0348
		segment = zip->central_directory;
Packit Service 1d0348
		zip->central_directory = segment->next;
Packit Service 1d0348
		free(segment->buff);
Packit Service 1d0348
		free(segment);
Packit Service 1d0348
	}
Packit Service 1d0348
	free(zip->buf);
Packit Service 1d0348
	archive_entry_free(zip->entry);
Packit Service 1d0348
	if (zip->cctx_valid)
Packit Service 1d0348
		archive_encrypto_aes_ctr_release(&zip->cctx);
Packit Service 1d0348
	if (zip->hctx_valid)
Packit Service 1d0348
		archive_hmac_sha1_cleanup(&zip->hctx);
Packit Service 1d0348
	/* TODO: Free opt_sconv, sconv_default */
Packit Service 1d0348
Packit Service 1d0348
	free(zip);
Packit Service 1d0348
	a->format_data = NULL;
Packit Service 1d0348
	return (ARCHIVE_OK);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
/* Convert into MSDOS-style date/time. */
Packit Service 1d0348
static unsigned int
Packit Service 1d0348
dos_time(const time_t unix_time)
Packit Service 1d0348
{
Packit Service 1d0348
	struct tm *t;
Packit Service 1d0348
	unsigned int dt;
Packit Service 1d0348
Packit Service 1d0348
	/* This will not preserve time when creating/extracting the archive
Packit Service 1d0348
	 * on two systems with different time zones. */
Packit Service 1d0348
	t = localtime(&unix_time);
Packit Service 1d0348
Packit Service 1d0348
	/* MSDOS-style date/time is only between 1980-01-01 and 2107-12-31 */
Packit Service 1d0348
	if (t->tm_year < 1980 - 1900)
Packit Service 1d0348
		/* Set minimum date/time '1980-01-01 00:00:00'. */
Packit Service 1d0348
		dt = 0x00210000U;
Packit Service 1d0348
	else if (t->tm_year > 2107 - 1900)
Packit Service 1d0348
		/* Set maximum date/time '2107-12-31 23:59:58'. */
Packit Service 1d0348
		dt = 0xff9fbf7dU;
Packit Service 1d0348
	else {
Packit Service 1d0348
		dt = 0;
Packit Service 1d0348
		dt += ((t->tm_year - 80) & 0x7f) << 9;
Packit Service 1d0348
		dt += ((t->tm_mon + 1) & 0x0f) << 5;
Packit Service 1d0348
		dt += (t->tm_mday & 0x1f);
Packit Service 1d0348
		dt <<= 16;
Packit Service 1d0348
		dt += (t->tm_hour & 0x1f) << 11;
Packit Service 1d0348
		dt += (t->tm_min & 0x3f) << 5;
Packit Service 1d0348
		dt += (t->tm_sec & 0x3e) >> 1; /* Only counting every 2 seconds. */
Packit Service 1d0348
	}
Packit Service 1d0348
	return dt;
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static size_t
Packit Service 1d0348
path_length(struct archive_entry *entry)
Packit Service 1d0348
{
Packit Service 1d0348
	mode_t type;
Packit Service 1d0348
	const char *path;
Packit Service 1d0348
Packit Service 1d0348
	type = archive_entry_filetype(entry);
Packit Service 1d0348
	path = archive_entry_pathname(entry);
Packit Service 1d0348
Packit Service 1d0348
	if (path == NULL)
Packit Service 1d0348
		return (0);
Packit Service 1d0348
	if (type == AE_IFDIR &&
Packit Service 1d0348
	    (path[0] == '\0' || path[strlen(path) - 1] != '/')) {
Packit Service 1d0348
		return strlen(path) + 1;
Packit Service 1d0348
	} else {
Packit Service 1d0348
		return strlen(path);
Packit Service 1d0348
	}
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static int
Packit Service 1d0348
write_path(struct archive_entry *entry, struct archive_write *archive)
Packit Service 1d0348
{
Packit Service 1d0348
	int ret;
Packit Service 1d0348
	const char *path;
Packit Service 1d0348
	mode_t type;
Packit Service 1d0348
	size_t written_bytes;
Packit Service 1d0348
Packit Service 1d0348
	path = archive_entry_pathname(entry);
Packit Service 1d0348
	type = archive_entry_filetype(entry);
Packit Service 1d0348
	written_bytes = 0;
Packit Service 1d0348
Packit Service 1d0348
	ret = __archive_write_output(archive, path, strlen(path));
Packit Service 1d0348
	if (ret != ARCHIVE_OK)
Packit Service 1d0348
		return (ARCHIVE_FATAL);
Packit Service 1d0348
	written_bytes += strlen(path);
Packit Service 1d0348
Packit Service 1d0348
	/* Folders are recognized by a trailing slash. */
Packit Service 1d0348
	if ((type == AE_IFDIR) & (path[strlen(path) - 1] != '/')) {
Packit Service 1d0348
		ret = __archive_write_output(archive, "/", 1);
Packit Service 1d0348
		if (ret != ARCHIVE_OK)
Packit Service 1d0348
			return (ARCHIVE_FATAL);
Packit Service 1d0348
		written_bytes += 1;
Packit Service 1d0348
	}
Packit Service 1d0348
Packit Service 1d0348
	return ((int)written_bytes);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static void
Packit Service 1d0348
copy_path(struct archive_entry *entry, unsigned char *p)
Packit Service 1d0348
{
Packit Service 1d0348
	const char *path;
Packit Service 1d0348
	size_t pathlen;
Packit Service 1d0348
	mode_t type;
Packit Service 1d0348
Packit Service 1d0348
	path = archive_entry_pathname(entry);
Packit Service 1d0348
	pathlen = strlen(path);
Packit Service 1d0348
	type = archive_entry_filetype(entry);
Packit Service 1d0348
Packit Service 1d0348
	memcpy(p, path, pathlen);
Packit Service 1d0348
Packit Service 1d0348
	/* Folders are recognized by a trailing slash. */
Packit Service 1d0348
	if ((type == AE_IFDIR) & (path[pathlen - 1] != '/')) {
Packit Service 1d0348
		p[pathlen] = '/';
Packit Service 1d0348
		p[pathlen + 1] = '\0';
Packit Service 1d0348
	}
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
Packit Service 1d0348
static struct archive_string_conv *
Packit Service 1d0348
get_sconv(struct archive_write *a, struct zip *zip)
Packit Service 1d0348
{
Packit Service 1d0348
	if (zip->opt_sconv != NULL)
Packit Service 1d0348
		return (zip->opt_sconv);
Packit Service 1d0348
Packit Service 1d0348
	if (!zip->init_default_conversion) {
Packit Service 1d0348
		zip->sconv_default =
Packit Service 1d0348
		    archive_string_default_conversion_for_write(&(a->archive));
Packit Service 1d0348
		zip->init_default_conversion = 1;
Packit Service 1d0348
	}
Packit Service 1d0348
	return (zip->sconv_default);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
/*
Packit Service 1d0348
  Traditional PKWARE Decryption functions.
Packit Service 1d0348
 */
Packit Service 1d0348
Packit Service 1d0348
static void
Packit Service 1d0348
trad_enc_update_keys(struct trad_enc_ctx *ctx, uint8_t c)
Packit Service 1d0348
{
Packit Service 1d0348
	uint8_t t;
Packit Service 1d0348
#define CRC32(c, b) (crc32(c ^ 0xffffffffUL, &b, 1) ^ 0xffffffffUL)
Packit Service 1d0348
Packit Service 1d0348
	ctx->keys[0] = CRC32(ctx->keys[0], c);
Packit Service 1d0348
	ctx->keys[1] = (ctx->keys[1] + (ctx->keys[0] & 0xff)) * 134775813L + 1;
Packit Service 1d0348
	t = (ctx->keys[1] >> 24) & 0xff;
Packit Service 1d0348
	ctx->keys[2] = CRC32(ctx->keys[2], t);
Packit Service 1d0348
#undef CRC32
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static uint8_t
Packit Service 1d0348
trad_enc_decrypt_byte(struct trad_enc_ctx *ctx)
Packit Service 1d0348
{
Packit Service 1d0348
	unsigned temp = ctx->keys[2] | 2;
Packit Service 1d0348
	return (uint8_t)((temp * (temp ^ 1)) >> 8) & 0xff;
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static unsigned
Packit Service 1d0348
trad_enc_encrypt_update(struct trad_enc_ctx *ctx, const uint8_t *in,
Packit Service 1d0348
    size_t in_len, uint8_t *out, size_t out_len)
Packit Service 1d0348
{
Packit Service 1d0348
	unsigned i, max;
Packit Service 1d0348
Packit Service 1d0348
	max = (unsigned)((in_len < out_len)? in_len: out_len);
Packit Service 1d0348
Packit Service 1d0348
	for (i = 0; i < max; i++) {
Packit Service 1d0348
		uint8_t t = in[i];
Packit Service 1d0348
		out[i] = t ^ trad_enc_decrypt_byte(ctx);
Packit Service 1d0348
		trad_enc_update_keys(ctx, t);
Packit Service 1d0348
	}
Packit Service 1d0348
	return i;
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static int
Packit Service 1d0348
trad_enc_init(struct trad_enc_ctx *ctx, const char *pw, size_t pw_len)
Packit Service 1d0348
{
Packit Service 1d0348
Packit Service 1d0348
	ctx->keys[0] = 305419896L;
Packit Service 1d0348
	ctx->keys[1] = 591751049L;
Packit Service 1d0348
	ctx->keys[2] = 878082192L;
Packit Service 1d0348
Packit Service 1d0348
	for (;pw_len; --pw_len)
Packit Service 1d0348
		trad_enc_update_keys(ctx, *pw++);
Packit Service 1d0348
	return 0;
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static int
Packit Service 1d0348
is_traditional_pkware_encryption_supported(void)
Packit Service 1d0348
{
Packit Service 1d0348
	uint8_t key[TRAD_HEADER_SIZE];
Packit Service 1d0348
Packit Service 1d0348
	if (archive_random(key, sizeof(key)-1) != ARCHIVE_OK)
Packit Service 1d0348
		return (0);
Packit Service 1d0348
	return (1);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static int
Packit Service 1d0348
init_traditional_pkware_encryption(struct archive_write *a)
Packit Service 1d0348
{
Packit Service 1d0348
	struct zip *zip = a->format_data;
Packit Service 1d0348
	const char *passphrase;
Packit Service 1d0348
	uint8_t key[TRAD_HEADER_SIZE];
Packit Service 1d0348
	uint8_t key_encrypted[TRAD_HEADER_SIZE];
Packit Service 1d0348
	int ret;
Packit Service 1d0348
Packit Service 1d0348
	passphrase = __archive_write_get_passphrase(a);
Packit Service 1d0348
	if (passphrase == NULL) {
Packit Service 1d0348
		archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
		    "Encryption needs passphrase");
Packit Service 1d0348
		return ARCHIVE_FAILED;
Packit Service 1d0348
	}
Packit Service 1d0348
	if (archive_random(key, sizeof(key)-1) != ARCHIVE_OK) {
Packit Service 1d0348
		archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
		    "Can't generate random number for encryption");
Packit Service 1d0348
		return ARCHIVE_FATAL;
Packit Service 1d0348
	}
Packit Service 1d0348
	trad_enc_init(&zip->tctx, passphrase, strlen(passphrase));
Packit Service 1d0348
	/* Set the last key code which will be used as a check code
Packit Service 1d0348
	 * for verifying passphrase in decryption. */
Packit Service 1d0348
	key[TRAD_HEADER_SIZE-1] = zip->trad_chkdat;
Packit Service 1d0348
	trad_enc_encrypt_update(&zip->tctx, key, TRAD_HEADER_SIZE,
Packit Service 1d0348
	    key_encrypted, TRAD_HEADER_SIZE);
Packit Service 1d0348
	/* Write encrypted keys in the top of the file content. */
Packit Service 1d0348
	ret = __archive_write_output(a, key_encrypted, TRAD_HEADER_SIZE);
Packit Service 1d0348
	if (ret != ARCHIVE_OK)
Packit Service 1d0348
		return (ret);
Packit Service 1d0348
	zip->written_bytes += TRAD_HEADER_SIZE;
Packit Service 1d0348
	zip->entry_compressed_written += TRAD_HEADER_SIZE;
Packit Service 1d0348
	return (ret);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static int
Packit Service 1d0348
init_winzip_aes_encryption(struct archive_write *a)
Packit Service 1d0348
{
Packit Service 1d0348
	struct zip *zip = a->format_data;
Packit Service 1d0348
	const char *passphrase;
Packit Service 1d0348
	size_t key_len, salt_len;
Packit Service 1d0348
	uint8_t salt[16 + 2];
Packit Service 1d0348
	uint8_t derived_key[MAX_DERIVED_KEY_BUF_SIZE];
Packit Service 1d0348
	int ret;
Packit Service 1d0348
Packit Service 1d0348
	passphrase = __archive_write_get_passphrase(a);
Packit Service 1d0348
	if (passphrase == NULL) {
Packit Service 1d0348
		archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
		    "Encryption needs passphrase");
Packit Service 1d0348
		return (ARCHIVE_FAILED);
Packit Service 1d0348
	}
Packit Service 1d0348
	if (zip->entry_encryption == ENCRYPTION_WINZIP_AES128) {
Packit Service 1d0348
		salt_len = 8;
Packit Service 1d0348
		key_len = 16;
Packit Service 1d0348
	} else {
Packit Service 1d0348
		/* AES 256 */
Packit Service 1d0348
		salt_len = 16;
Packit Service 1d0348
		key_len = 32;
Packit Service 1d0348
	}
Packit Service 1d0348
	if (archive_random(salt, salt_len) != ARCHIVE_OK) {
Packit Service 1d0348
		archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
		    "Can't generate random number for encryption");
Packit Service 1d0348
		return (ARCHIVE_FATAL);
Packit Service 1d0348
	}
Packit Service 1d0348
	archive_pbkdf2_sha1(passphrase, strlen(passphrase),
Packit Service 1d0348
	    salt, salt_len, 1000, derived_key, key_len * 2 + 2);
Packit Service 1d0348
Packit Service 1d0348
	ret = archive_encrypto_aes_ctr_init(&zip->cctx, derived_key, key_len);
Packit Service 1d0348
	if (ret != 0) {
Packit Service 1d0348
		archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
		    "Decryption is unsupported due to lack of crypto library");
Packit Service 1d0348
		return (ARCHIVE_FAILED);
Packit Service 1d0348
	}
Packit Service 1d0348
	ret = archive_hmac_sha1_init(&zip->hctx, derived_key + key_len,
Packit Service 1d0348
	    key_len);
Packit Service 1d0348
	if (ret != 0) {
Packit Service 1d0348
		archive_encrypto_aes_ctr_release(&zip->cctx);
Packit Service 1d0348
		archive_set_error(&a->archive, ARCHIVE_ERRNO_MISC,
Packit Service 1d0348
		    "Failed to initialize HMAC-SHA1");
Packit Service 1d0348
		return (ARCHIVE_FAILED);
Packit Service 1d0348
        }
Packit Service 1d0348
Packit Service 1d0348
	/* Set a password verification value after the 'salt'. */
Packit Service 1d0348
	salt[salt_len] = derived_key[key_len * 2];
Packit Service 1d0348
	salt[salt_len + 1] = derived_key[key_len * 2 + 1];
Packit Service 1d0348
Packit Service 1d0348
	/* Write encrypted keys in the top of the file content. */
Packit Service 1d0348
	ret = __archive_write_output(a, salt, salt_len + 2);
Packit Service 1d0348
	if (ret != ARCHIVE_OK)
Packit Service 1d0348
		return (ret);
Packit Service 1d0348
	zip->written_bytes += salt_len + 2;
Packit Service 1d0348
	zip->entry_compressed_written += salt_len + 2;
Packit Service 1d0348
Packit Service 1d0348
	return (ARCHIVE_OK);
Packit Service 1d0348
}
Packit Service 1d0348
Packit Service 1d0348
static int
Packit Service 1d0348
is_winzip_aes_encryption_supported(int encryption)
Packit Service 1d0348
{
Packit Service 1d0348
	size_t key_len, salt_len;
Packit Service 1d0348
	uint8_t salt[16 + 2];
Packit Service 1d0348
	uint8_t derived_key[MAX_DERIVED_KEY_BUF_SIZE];
Packit Service 1d0348
	archive_crypto_ctx cctx;
Packit Service 1d0348
	archive_hmac_sha1_ctx hctx;
Packit Service 1d0348
	int ret;
Packit Service 1d0348
Packit Service 1d0348
	if (encryption == ENCRYPTION_WINZIP_AES128) {
Packit Service 1d0348
		salt_len = 8;
Packit Service 1d0348
		key_len = 16;
Packit Service 1d0348
	} else {
Packit Service 1d0348
		/* AES 256 */
Packit Service 1d0348
		salt_len = 16;
Packit Service 1d0348
		key_len = 32;
Packit Service 1d0348
	}
Packit Service 1d0348
	if (archive_random(salt, salt_len) != ARCHIVE_OK)
Packit Service 1d0348
		return (0);
Packit Service 1d0348
	ret = archive_pbkdf2_sha1("p", 1, salt, salt_len, 1000,
Packit Service 1d0348
	    derived_key, key_len * 2 + 2);
Packit Service 1d0348
	if (ret != 0)
Packit Service 1d0348
		return (0);
Packit Service 1d0348
Packit Service 1d0348
	ret = archive_encrypto_aes_ctr_init(&cctx, derived_key, key_len);
Packit Service 1d0348
	if (ret != 0)
Packit Service 1d0348
		return (0);
Packit Service 1d0348
	ret = archive_hmac_sha1_init(&hctx, derived_key + key_len,
Packit Service 1d0348
	    key_len);
Packit Service 1d0348
	archive_encrypto_aes_ctr_release(&cctx);
Packit Service 1d0348
	if (ret != 0)
Packit Service 1d0348
		return (0);
Packit Service 1d0348
	archive_hmac_sha1_cleanup(&hctx);
Packit Service 1d0348
	return (1);
Packit Service 1d0348
}