Blame crypto/asn1/tasn_utl.c

Packit c4476c
/*
Packit c4476c
 * Copyright 2000-2018 The OpenSSL Project Authors. All Rights Reserved.
Packit c4476c
 *
Packit c4476c
 * Licensed under the OpenSSL license (the "License").  You may not use
Packit c4476c
 * this file except in compliance with the License.  You can obtain a copy
Packit c4476c
 * in the file LICENSE in the source distribution or at
Packit c4476c
 * https://www.openssl.org/source/license.html
Packit c4476c
 */
Packit c4476c
Packit c4476c
#include <stddef.h>
Packit c4476c
#include <string.h>
Packit c4476c
#include "internal/cryptlib.h"
Packit c4476c
#include "internal/refcount.h"
Packit c4476c
#include <openssl/asn1.h>
Packit c4476c
#include <openssl/asn1t.h>
Packit c4476c
#include <openssl/objects.h>
Packit c4476c
#include <openssl/err.h>
Packit c4476c
#include "asn1_local.h"
Packit c4476c
Packit c4476c
/* Utility functions for manipulating fields and offsets */
Packit c4476c
Packit c4476c
/* Add 'offset' to 'addr' */
Packit c4476c
#define offset2ptr(addr, offset) (void *)(((char *) addr) + offset)
Packit c4476c
Packit c4476c
/*
Packit c4476c
 * Given an ASN1_ITEM CHOICE type return the selector value
Packit c4476c
 */
Packit c4476c
Packit c4476c
int asn1_get_choice_selector(ASN1_VALUE **pval, const ASN1_ITEM *it)
Packit c4476c
{
Packit c4476c
    int *sel = offset2ptr(*pval, it->utype);
Packit c4476c
    return *sel;
Packit c4476c
}
Packit c4476c
Packit c4476c
/*
Packit c4476c
 * Given an ASN1_ITEM CHOICE type set the selector value, return old value.
Packit c4476c
 */
Packit c4476c
Packit c4476c
int asn1_set_choice_selector(ASN1_VALUE **pval, int value,
Packit c4476c
                             const ASN1_ITEM *it)
Packit c4476c
{
Packit c4476c
    int *sel, ret;
Packit c4476c
    sel = offset2ptr(*pval, it->utype);
Packit c4476c
    ret = *sel;
Packit c4476c
    *sel = value;
Packit c4476c
    return ret;
Packit c4476c
}
Packit c4476c
Packit c4476c
/*
Packit c4476c
 * Do atomic reference counting. The value 'op' decides what to do.
Packit c4476c
 * If it is +1 then the count is incremented.
Packit c4476c
 * If |op| is 0, lock is initialised and count is set to 1.
Packit c4476c
 * If |op| is -1, count is decremented and the return value is the current
Packit c4476c
 * reference count or 0 if no reference count is active.
Packit c4476c
 * It returns -1 on initialisation error.
Packit c4476c
 * Used by ASN1_SEQUENCE construct of X509, X509_REQ, X509_CRL objects
Packit c4476c
 */
Packit c4476c
int asn1_do_lock(ASN1_VALUE **pval, int op, const ASN1_ITEM *it)
Packit c4476c
{
Packit c4476c
    const ASN1_AUX *aux;
Packit c4476c
    CRYPTO_REF_COUNT *lck;
Packit c4476c
    CRYPTO_RWLOCK **lock;
Packit c4476c
    int ret = -1;
Packit c4476c
Packit c4476c
    if ((it->itype != ASN1_ITYPE_SEQUENCE)
Packit c4476c
        && (it->itype != ASN1_ITYPE_NDEF_SEQUENCE))
Packit c4476c
        return 0;
Packit c4476c
    aux = it->funcs;
Packit c4476c
    if (!aux || !(aux->flags & ASN1_AFLG_REFCOUNT))
Packit c4476c
        return 0;
Packit c4476c
    lck = offset2ptr(*pval, aux->ref_offset);
Packit c4476c
    lock = offset2ptr(*pval, aux->ref_lock);
Packit c4476c
Packit c4476c
    switch (op) {
Packit c4476c
    case 0:
Packit c4476c
        *lck = ret = 1;
Packit c4476c
        *lock = CRYPTO_THREAD_lock_new();
Packit c4476c
        if (*lock == NULL) {
Packit c4476c
            ASN1err(ASN1_F_ASN1_DO_LOCK, ERR_R_MALLOC_FAILURE);
Packit c4476c
            return -1;
Packit c4476c
        }
Packit c4476c
        break;
Packit c4476c
    case 1:
Packit c4476c
        if (!CRYPTO_UP_REF(lck, &ret, *lock))
Packit c4476c
            return -1;
Packit c4476c
        break;
Packit c4476c
    case -1:
Packit c4476c
        if (!CRYPTO_DOWN_REF(lck, &ret, *lock))
Packit c4476c
            return -1;  /* failed */
Packit c4476c
#ifdef REF_PRINT
Packit c4476c
        fprintf(stderr, "%p:%4d:%s\n", it, ret, it->sname);
Packit c4476c
#endif
Packit c4476c
        REF_ASSERT_ISNT(ret < 0);
Packit c4476c
        if (ret == 0) {
Packit c4476c
            CRYPTO_THREAD_lock_free(*lock);
Packit c4476c
            *lock = NULL;
Packit c4476c
        }
Packit c4476c
        break;
Packit c4476c
    }
Packit c4476c
Packit c4476c
    return ret;
Packit c4476c
}
Packit c4476c
Packit c4476c
static ASN1_ENCODING *asn1_get_enc_ptr(ASN1_VALUE **pval, const ASN1_ITEM *it)
Packit c4476c
{
Packit c4476c
    const ASN1_AUX *aux;
Packit c4476c
    if (!pval || !*pval)
Packit c4476c
        return NULL;
Packit c4476c
    aux = it->funcs;
Packit c4476c
    if (!aux || !(aux->flags & ASN1_AFLG_ENCODING))
Packit c4476c
        return NULL;
Packit c4476c
    return offset2ptr(*pval, aux->enc_offset);
Packit c4476c
}
Packit c4476c
Packit c4476c
void asn1_enc_init(ASN1_VALUE **pval, const ASN1_ITEM *it)
Packit c4476c
{
Packit c4476c
    ASN1_ENCODING *enc;
Packit c4476c
    enc = asn1_get_enc_ptr(pval, it);
Packit c4476c
    if (enc) {
Packit c4476c
        enc->enc = NULL;
Packit c4476c
        enc->len = 0;
Packit c4476c
        enc->modified = 1;
Packit c4476c
    }
Packit c4476c
}
Packit c4476c
Packit c4476c
void asn1_enc_free(ASN1_VALUE **pval, const ASN1_ITEM *it)
Packit c4476c
{
Packit c4476c
    ASN1_ENCODING *enc;
Packit c4476c
    enc = asn1_get_enc_ptr(pval, it);
Packit c4476c
    if (enc) {
Packit c4476c
        OPENSSL_free(enc->enc);
Packit c4476c
        enc->enc = NULL;
Packit c4476c
        enc->len = 0;
Packit c4476c
        enc->modified = 1;
Packit c4476c
    }
Packit c4476c
}
Packit c4476c
Packit c4476c
int asn1_enc_save(ASN1_VALUE **pval, const unsigned char *in, int inlen,
Packit c4476c
                  const ASN1_ITEM *it)
Packit c4476c
{
Packit c4476c
    ASN1_ENCODING *enc;
Packit c4476c
    enc = asn1_get_enc_ptr(pval, it);
Packit c4476c
    if (!enc)
Packit c4476c
        return 1;
Packit c4476c
Packit c4476c
    OPENSSL_free(enc->enc);
Packit c4476c
    if ((enc->enc = OPENSSL_malloc(inlen)) == NULL) {
Packit c4476c
        ASN1err(ASN1_F_ASN1_ENC_SAVE, ERR_R_MALLOC_FAILURE);
Packit c4476c
        return 0;
Packit c4476c
    }
Packit c4476c
    memcpy(enc->enc, in, inlen);
Packit c4476c
    enc->len = inlen;
Packit c4476c
    enc->modified = 0;
Packit c4476c
Packit c4476c
    return 1;
Packit c4476c
}
Packit c4476c
Packit c4476c
int asn1_enc_restore(int *len, unsigned char **out, ASN1_VALUE **pval,
Packit c4476c
                     const ASN1_ITEM *it)
Packit c4476c
{
Packit c4476c
    ASN1_ENCODING *enc;
Packit c4476c
    enc = asn1_get_enc_ptr(pval, it);
Packit c4476c
    if (!enc || enc->modified)
Packit c4476c
        return 0;
Packit c4476c
    if (out) {
Packit c4476c
        memcpy(*out, enc->enc, enc->len);
Packit c4476c
        *out += enc->len;
Packit c4476c
    }
Packit c4476c
    if (len)
Packit c4476c
        *len = enc->len;
Packit c4476c
    return 1;
Packit c4476c
}
Packit c4476c
Packit c4476c
/* Given an ASN1_TEMPLATE get a pointer to a field */
Packit c4476c
ASN1_VALUE **asn1_get_field_ptr(ASN1_VALUE **pval, const ASN1_TEMPLATE *tt)
Packit c4476c
{
Packit c4476c
    ASN1_VALUE **pvaltmp;
Packit c4476c
    pvaltmp = offset2ptr(*pval, tt->offset);
Packit c4476c
    /*
Packit c4476c
     * NOTE for BOOLEAN types the field is just a plain int so we can't
Packit c4476c
     * return int **, so settle for (int *).
Packit c4476c
     */
Packit c4476c
    return pvaltmp;
Packit c4476c
}
Packit c4476c
Packit c4476c
/*
Packit c4476c
 * Handle ANY DEFINED BY template, find the selector, look up the relevant
Packit c4476c
 * ASN1_TEMPLATE in the table and return it.
Packit c4476c
 */
Packit c4476c
Packit c4476c
const ASN1_TEMPLATE *asn1_do_adb(ASN1_VALUE **pval, const ASN1_TEMPLATE *tt,
Packit c4476c
                                 int nullerr)
Packit c4476c
{
Packit c4476c
    const ASN1_ADB *adb;
Packit c4476c
    const ASN1_ADB_TABLE *atbl;
Packit c4476c
    long selector;
Packit c4476c
    ASN1_VALUE **sfld;
Packit c4476c
    int i;
Packit c4476c
    if (!(tt->flags & ASN1_TFLG_ADB_MASK))
Packit c4476c
        return tt;
Packit c4476c
Packit c4476c
    /* Else ANY DEFINED BY ... get the table */
Packit c4476c
    adb = ASN1_ADB_ptr(tt->item);
Packit c4476c
Packit c4476c
    /* Get the selector field */
Packit c4476c
    sfld = offset2ptr(*pval, adb->offset);
Packit c4476c
Packit c4476c
    /* Check if NULL */
Packit c4476c
    if (*sfld == NULL) {
Packit c4476c
        if (!adb->null_tt)
Packit c4476c
            goto err;
Packit c4476c
        return adb->null_tt;
Packit c4476c
    }
Packit c4476c
Packit c4476c
    /*
Packit c4476c
     * Convert type to a long: NB: don't check for NID_undef here because it
Packit c4476c
     * might be a legitimate value in the table
Packit c4476c
     */
Packit c4476c
    if (tt->flags & ASN1_TFLG_ADB_OID)
Packit c4476c
        selector = OBJ_obj2nid((ASN1_OBJECT *)*sfld);
Packit c4476c
    else
Packit c4476c
        selector = ASN1_INTEGER_get((ASN1_INTEGER *)*sfld);
Packit c4476c
Packit c4476c
    /* Let application callback translate value */
Packit c4476c
    if (adb->adb_cb != NULL && adb->adb_cb(&selector) == 0) {
Packit c4476c
        ASN1err(ASN1_F_ASN1_DO_ADB, ASN1_R_UNSUPPORTED_ANY_DEFINED_BY_TYPE);
Packit c4476c
        return NULL;
Packit c4476c
    }
Packit c4476c
Packit c4476c
    /*
Packit c4476c
     * Try to find matching entry in table Maybe should check application
Packit c4476c
     * types first to allow application override? Might also be useful to
Packit c4476c
     * have a flag which indicates table is sorted and we can do a binary
Packit c4476c
     * search. For now stick to a linear search.
Packit c4476c
     */
Packit c4476c
Packit c4476c
    for (atbl = adb->tbl, i = 0; i < adb->tblcount; i++, atbl++)
Packit c4476c
        if (atbl->value == selector)
Packit c4476c
            return &atbl->tt;
Packit c4476c
Packit c4476c
    /* FIXME: need to search application table too */
Packit c4476c
Packit c4476c
    /* No match, return default type */
Packit c4476c
    if (!adb->default_tt)
Packit c4476c
        goto err;
Packit c4476c
    return adb->default_tt;
Packit c4476c
Packit c4476c
 err:
Packit c4476c
    /* FIXME: should log the value or OID of unsupported type */
Packit c4476c
    if (nullerr)
Packit c4476c
        ASN1err(ASN1_F_ASN1_DO_ADB, ASN1_R_UNSUPPORTED_ANY_DEFINED_BY_TYPE);
Packit c4476c
    return NULL;
Packit c4476c
}