packet_locl.h 26.2 KB
Newer Older
M
Matt Caswell 已提交
1
/*
R
Rich Salz 已提交
2
 * Copyright 2015-2016 The OpenSSL Project Authors. All Rights Reserved.
M
Matt Caswell 已提交
3
 *
R
Rich Salz 已提交
4 5 6 7
 * Licensed under the OpenSSL license (the "License").  You may not use
 * this file except in compliance with the License.  You can obtain a copy
 * in the file LICENSE in the source distribution or at
 * https://www.openssl.org/source/license.html
M
Matt Caswell 已提交
8 9 10 11 12 13 14 15
 */

#ifndef HEADER_PACKET_LOCL_H
# define HEADER_PACKET_LOCL_H

# include <string.h>
# include <openssl/bn.h>
# include <openssl/buffer.h>
E
Emilia Kasper 已提交
16
# include <openssl/crypto.h>
D
Dr. Stephen Henson 已提交
17
# include <openssl/e_os2.h>
M
Matt Caswell 已提交
18

19 20
# include "internal/numbers.h"

M
Matt Caswell 已提交
21 22 23 24 25 26
# ifdef __cplusplus
extern "C" {
# endif

typedef struct {
    /* Pointer to where we are currently reading from */
E
Emilia Kasper 已提交
27
    const unsigned char *curr;
E
Emilia Kasper 已提交
28 29
    /* Number of bytes remaining */
    size_t remaining;
M
Matt Caswell 已提交
30 31
} PACKET;

E
Emilia Kasper 已提交
32
/* Internal unchecked shorthand; don't use outside this file. */
D
Dr. Stephen Henson 已提交
33
static ossl_inline void packet_forward(PACKET *pkt, size_t len)
E
Emilia Kasper 已提交
34 35 36 37 38
{
    pkt->curr += len;
    pkt->remaining -= len;
}

M
Matt Caswell 已提交
39
/*
M
Matt Caswell 已提交
40
 * Returns the number of bytes remaining to be read in the PACKET
M
Matt Caswell 已提交
41
 */
D
Dr. Stephen Henson 已提交
42
static ossl_inline size_t PACKET_remaining(const PACKET *pkt)
M
Matt Caswell 已提交
43
{
E
Emilia Kasper 已提交
44
    return pkt->remaining;
M
Matt Caswell 已提交
45 46
}

47 48 49 50 51 52 53 54 55 56
/*
 * Returns a pointer to the first byte after the packet data.
 * Useful for integrating with non-PACKET parsing code.
 * Specifically, we use PACKET_end() to verify that a d2i_... call
 * has consumed the entire packet contents.
 */
static ossl_inline const unsigned char *PACKET_end(const PACKET *pkt)
{
    return pkt->curr + pkt->remaining;
}
E
Emilia Kasper 已提交
57

58 59 60 61
/*
 * Returns a pointer to the PACKET's current position.
 * For use in non-PACKETized APIs.
 */
E
Emilia Kasper 已提交
62
static ossl_inline const unsigned char *PACKET_data(const PACKET *pkt)
63 64 65 66
{
    return pkt->curr;
}

M
Matt Caswell 已提交
67 68 69 70 71
/*
 * Initialise a PACKET with |len| bytes held in |buf|. This does not make a
 * copy of the data so |buf| must be present for the whole time that the PACKET
 * is being used.
 */
E
Emilia Kasper 已提交
72 73
__owur static ossl_inline int PACKET_buf_init(PACKET *pkt,
                                              const unsigned char *buf,
D
Dr. Stephen Henson 已提交
74
                                              size_t len)
M
Matt Caswell 已提交
75
{
E
Emilia Kasper 已提交
76
    /* Sanity check for negative values. */
77
    if (len > (size_t)(SIZE_MAX / 2))
M
Matt Caswell 已提交
78 79
        return 0;

E
Emilia Kasper 已提交
80 81
    pkt->curr = buf;
    pkt->remaining = len;
M
Matt Caswell 已提交
82 83 84
    return 1;
}

85
/* Initialize a PACKET to hold zero bytes. */
D
Dr. Stephen Henson 已提交
86
static ossl_inline void PACKET_null_init(PACKET *pkt)
87 88 89 90 91
{
    pkt->curr = NULL;
    pkt->remaining = 0;
}

E
Emilia Kasper 已提交
92 93 94 95 96
/*
 * Returns 1 if the packet has length |num| and its contents equal the |num|
 * bytes read from |ptr|. Returns 0 otherwise (lengths or contents not equal).
 * If lengths are equal, performs the comparison in constant time.
 */
D
Dr. Stephen Henson 已提交
97 98 99
__owur static ossl_inline int PACKET_equal(const PACKET *pkt, const void *ptr,
                                           size_t num)
{
E
Emilia Kasper 已提交
100 101 102 103 104
    if (PACKET_remaining(pkt) != num)
        return 0;
    return CRYPTO_memcmp(pkt->curr, ptr, num) == 0;
}

M
Matt Caswell 已提交
105 106 107 108 109
/*
 * Peek ahead and initialize |subpkt| with the next |len| bytes read from |pkt|.
 * Data is not copied: the |subpkt| packet will share its underlying buffer with
 * the original |pkt|, so data wrapped by |pkt| must outlive the |subpkt|.
 */
D
Dr. Stephen Henson 已提交
110
__owur static ossl_inline int PACKET_peek_sub_packet(const PACKET *pkt,
E
Emilia Kasper 已提交
111
                                                     PACKET *subpkt, size_t len)
M
Matt Caswell 已提交
112 113 114 115
{
    if (PACKET_remaining(pkt) < len)
        return 0;

E
Emilia Kasper 已提交
116
    return PACKET_buf_init(subpkt, pkt->curr, len);
M
Matt Caswell 已提交
117 118 119 120 121 122 123
}

/*
 * Initialize |subpkt| with the next |len| bytes read from |pkt|. Data is not
 * copied: the |subpkt| packet will share its underlying buffer with the
 * original |pkt|, so data wrapped by |pkt| must outlive the |subpkt|.
 */
D
Dr. Stephen Henson 已提交
124
__owur static ossl_inline int PACKET_get_sub_packet(PACKET *pkt,
E
Emilia Kasper 已提交
125
                                                    PACKET *subpkt, size_t len)
M
Matt Caswell 已提交
126 127 128 129
{
    if (!PACKET_peek_sub_packet(pkt, subpkt, len))
        return 0;

E
Emilia Kasper 已提交
130
    packet_forward(pkt, len);
M
Matt Caswell 已提交
131 132 133 134

    return 1;
}

D
Dr. Stephen Henson 已提交
135 136
/*
 * Peek ahead at 2 bytes in network order from |pkt| and store the value in
M
Matt Caswell 已提交
137 138
 * |*data|
 */
D
Dr. Stephen Henson 已提交
139 140
__owur static ossl_inline int PACKET_peek_net_2(const PACKET *pkt,
                                                unsigned int *data)
M
Matt Caswell 已提交
141 142 143 144
{
    if (PACKET_remaining(pkt) < 2)
        return 0;

D
Dr. Stephen Henson 已提交
145
    *data = ((unsigned int)(*pkt->curr)) << 8;
M
Matt Caswell 已提交
146 147 148 149 150 151 152
    *data |= *(pkt->curr + 1);

    return 1;
}

/* Equivalent of n2s */
/* Get 2 bytes in network order from |pkt| and store the value in |*data| */
E
Emilia Kasper 已提交
153
__owur static ossl_inline int PACKET_get_net_2(PACKET *pkt, unsigned int *data)
M
Matt Caswell 已提交
154 155 156 157
{
    if (!PACKET_peek_net_2(pkt, data))
        return 0;

E
Emilia Kasper 已提交
158
    packet_forward(pkt, 2);
M
Matt Caswell 已提交
159 160 161 162

    return 1;
}

163 164 165 166
/* Same as PACKET_get_net_2() but for a size_t */
__owur static ossl_inline int PACKET_get_net_2_len(PACKET *pkt, size_t *data)
{
    unsigned int i;
167
    int ret = PACKET_get_net_2(pkt, &i);
168 169 170 171 172 173 174

    if (ret)
        *data = (size_t)i;

    return ret;
}

D
Dr. Stephen Henson 已提交
175 176
/*
 * Peek ahead at 3 bytes in network order from |pkt| and store the value in
M
Matt Caswell 已提交
177 178
 * |*data|
 */
D
Dr. Stephen Henson 已提交
179 180
__owur static ossl_inline int PACKET_peek_net_3(const PACKET *pkt,
                                                unsigned long *data)
M
Matt Caswell 已提交
181 182 183 184
{
    if (PACKET_remaining(pkt) < 3)
        return 0;

D
Dr. Stephen Henson 已提交
185 186
    *data = ((unsigned long)(*pkt->curr)) << 16;
    *data |= ((unsigned long)(*(pkt->curr + 1))) << 8;
187
    *data |= *(pkt->curr + 2);
M
Matt Caswell 已提交
188 189 190 191 192 193

    return 1;
}

/* Equivalent of n2l3 */
/* Get 3 bytes in network order from |pkt| and store the value in |*data| */
E
Emilia Kasper 已提交
194
__owur static ossl_inline int PACKET_get_net_3(PACKET *pkt, unsigned long *data)
M
Matt Caswell 已提交
195 196 197 198
{
    if (!PACKET_peek_net_3(pkt, data))
        return 0;

E
Emilia Kasper 已提交
199
    packet_forward(pkt, 3);
M
Matt Caswell 已提交
200 201 202 203

    return 1;
}

204 205 206 207
/* Same as PACKET_get_net_3() but for a size_t */
__owur static ossl_inline int PACKET_get_net_3_len(PACKET *pkt, size_t *data)
{
    unsigned long i;
208
    int ret = PACKET_get_net_3(pkt, &i);
209 210 211 212 213 214 215

    if (ret)
        *data = (size_t)i;

    return ret;
}

D
Dr. Stephen Henson 已提交
216 217
/*
 * Peek ahead at 4 bytes in network order from |pkt| and store the value in
M
Matt Caswell 已提交
218 219
 * |*data|
 */
D
Dr. Stephen Henson 已提交
220 221
__owur static ossl_inline int PACKET_peek_net_4(const PACKET *pkt,
                                                unsigned long *data)
M
Matt Caswell 已提交
222 223 224 225
{
    if (PACKET_remaining(pkt) < 4)
        return 0;

D
Dr. Stephen Henson 已提交
226
    *data = ((unsigned long)(*pkt->curr)) << 24;
227
    *data |= ((unsigned long)(*(pkt->curr + 1))) << 16;
D
Dr. Stephen Henson 已提交
228 229
    *data |= ((unsigned long)(*(pkt->curr + 2))) << 8;
    *data |= *(pkt->curr + 3);
M
Matt Caswell 已提交
230 231 232 233 234 235

    return 1;
}

/* Equivalent of n2l */
/* Get 4 bytes in network order from |pkt| and store the value in |*data| */
E
Emilia Kasper 已提交
236
__owur static ossl_inline int PACKET_get_net_4(PACKET *pkt, unsigned long *data)
M
Matt Caswell 已提交
237 238 239 240
{
    if (!PACKET_peek_net_4(pkt, data))
        return 0;

E
Emilia Kasper 已提交
241
    packet_forward(pkt, 4);
M
Matt Caswell 已提交
242 243 244 245

    return 1;
}

246 247 248 249
/* Same as PACKET_get_net_4() but for a size_t */
__owur static ossl_inline int PACKET_get_net_4_len(PACKET *pkt, size_t *data)
{
    unsigned long i;
250
    int ret = PACKET_get_net_4(pkt, &i);
251 252 253 254 255 256 257

    if (ret)
        *data = (size_t)i;

    return ret;
}

M
Matt Caswell 已提交
258
/* Peek ahead at 1 byte from |pkt| and store the value in |*data| */
D
Dr. Stephen Henson 已提交
259 260
__owur static ossl_inline int PACKET_peek_1(const PACKET *pkt,
                                            unsigned int *data)
M
Matt Caswell 已提交
261 262 263 264 265 266 267 268 269 270
{
    if (!PACKET_remaining(pkt))
        return 0;

    *data = *pkt->curr;

    return 1;
}

/* Get 1 byte from |pkt| and store the value in |*data| */
D
Dr. Stephen Henson 已提交
271
__owur static ossl_inline int PACKET_get_1(PACKET *pkt, unsigned int *data)
M
Matt Caswell 已提交
272 273 274 275
{
    if (!PACKET_peek_1(pkt, data))
        return 0;

E
Emilia Kasper 已提交
276
    packet_forward(pkt, 1);
M
Matt Caswell 已提交
277 278 279 280

    return 1;
}

281 282 283 284
/* Same as PACKET_get_1() but for a size_t */
__owur static ossl_inline int PACKET_get_1_len(PACKET *pkt, size_t *data)
{
    unsigned int i;
285
    int ret = PACKET_get_1(pkt, &i);
286 287 288 289 290 291 292

    if (ret)
        *data = (size_t)i;

    return ret;
}

M
Matt Caswell 已提交
293 294 295 296
/*
 * Peek ahead at 4 bytes in reverse network order from |pkt| and store the value
 * in |*data|
 */
D
Dr. Stephen Henson 已提交
297 298
__owur static ossl_inline int PACKET_peek_4(const PACKET *pkt,
                                            unsigned long *data)
M
Matt Caswell 已提交
299 300 301 302
{
    if (PACKET_remaining(pkt) < 4)
        return 0;

D
Dr. Stephen Henson 已提交
303 304
    *data = *pkt->curr;
    *data |= ((unsigned long)(*(pkt->curr + 1))) << 8;
305 306
    *data |= ((unsigned long)(*(pkt->curr + 2))) << 16;
    *data |= ((unsigned long)(*(pkt->curr + 3))) << 24;
M
Matt Caswell 已提交
307 308 309 310 311 312 313 314 315

    return 1;
}

/* Equivalent of c2l */
/*
 * Get 4 bytes in reverse network order from |pkt| and store the value in
 * |*data|
 */
D
Dr. Stephen Henson 已提交
316
__owur static ossl_inline int PACKET_get_4(PACKET *pkt, unsigned long *data)
M
Matt Caswell 已提交
317 318 319 320
{
    if (!PACKET_peek_4(pkt, data))
        return 0;

E
Emilia Kasper 已提交
321
    packet_forward(pkt, 4);
M
Matt Caswell 已提交
322 323 324 325 326 327 328 329 330 331

    return 1;
}

/*
 * Peek ahead at |len| bytes from the |pkt| and store a pointer to them in
 * |*data|. This just points at the underlying buffer that |pkt| is using. The
 * caller should not free this data directly (it will be freed when the
 * underlying buffer gets freed
 */
D
Dr. Stephen Henson 已提交
332
__owur static ossl_inline int PACKET_peek_bytes(const PACKET *pkt,
E
Emilia Kasper 已提交
333
                                                const unsigned char **data,
D
Dr. Stephen Henson 已提交
334
                                                size_t len)
M
Matt Caswell 已提交
335 336 337 338 339 340 341 342 343 344 345 346 347 348 349
{
    if (PACKET_remaining(pkt) < len)
        return 0;

    *data = pkt->curr;

    return 1;
}

/*
 * Read |len| bytes from the |pkt| and store a pointer to them in |*data|. This
 * just points at the underlying buffer that |pkt| is using. The caller should
 * not free this data directly (it will be freed when the underlying buffer gets
 * freed
 */
D
Dr. Stephen Henson 已提交
350
__owur static ossl_inline int PACKET_get_bytes(PACKET *pkt,
E
Emilia Kasper 已提交
351
                                               const unsigned char **data,
D
Dr. Stephen Henson 已提交
352
                                               size_t len)
M
Matt Caswell 已提交
353 354 355 356
{
    if (!PACKET_peek_bytes(pkt, data, len))
        return 0;

E
Emilia Kasper 已提交
357
    packet_forward(pkt, len);
M
Matt Caswell 已提交
358 359 360 361 362

    return 1;
}

/* Peek ahead at |len| bytes from |pkt| and copy them to |data| */
D
Dr. Stephen Henson 已提交
363 364 365
__owur static ossl_inline int PACKET_peek_copy_bytes(const PACKET *pkt,
                                                     unsigned char *data,
                                                     size_t len)
M
Matt Caswell 已提交
366 367 368 369 370 371 372 373 374
{
    if (PACKET_remaining(pkt) < len)
        return 0;

    memcpy(data, pkt->curr, len);

    return 1;
}

375 376 377 378
/*
 * Read |len| bytes from |pkt| and copy them to |data|.
 * The caller is responsible for ensuring that |data| can hold |len| bytes.
 */
D
Dr. Stephen Henson 已提交
379
__owur static ossl_inline int PACKET_copy_bytes(PACKET *pkt,
E
Emilia Kasper 已提交
380
                                                unsigned char *data, size_t len)
M
Matt Caswell 已提交
381 382 383 384
{
    if (!PACKET_peek_copy_bytes(pkt, data, len))
        return 0;

E
Emilia Kasper 已提交
385
    packet_forward(pkt, len);
M
Matt Caswell 已提交
386 387 388 389

    return 1;
}

E
Emilia Kasper 已提交
390 391 392 393 394 395 396
/*
 * Copy packet data to |dest|, and set |len| to the number of copied bytes.
 * If the packet has more than |dest_len| bytes, nothing is copied.
 * Returns 1 if the packet data fits in |dest_len| bytes, 0 otherwise.
 * Does not forward PACKET position (because it is typically the last thing
 * done with a given PACKET).
 */
D
Dr. Stephen Henson 已提交
397 398 399 400
__owur static ossl_inline int PACKET_copy_all(const PACKET *pkt,
                                              unsigned char *dest,
                                              size_t dest_len, size_t *len)
{
E
Emilia Kasper 已提交
401 402 403 404 405 406 407 408 409
    if (PACKET_remaining(pkt) > dest_len) {
        *len = 0;
        return 0;
    }
    *len = pkt->remaining;
    memcpy(dest, pkt->curr, pkt->remaining);
    return 1;
}

410 411 412 413 414 415 416 417 418
/*
 * Copy |pkt| bytes to a newly allocated buffer and store a pointer to the
 * result in |*data|, and the length in |len|.
 * If |*data| is not NULL, the old data is OPENSSL_free'd.
 * If the packet is empty, or malloc fails, |*data| will be set to NULL.
 * Returns 1 if the malloc succeeds and 0 otherwise.
 * Does not forward PACKET position (because it is typically the last thing
 * done with a given PACKET).
 */
D
Dr. Stephen Henson 已提交
419 420
__owur static ossl_inline int PACKET_memdup(const PACKET *pkt,
                                            unsigned char **data, size_t *len)
421 422 423 424 425 426 427 428 429 430 431 432
{
    size_t length;

    OPENSSL_free(*data);
    *data = NULL;
    *len = 0;

    length = PACKET_remaining(pkt);

    if (length == 0)
        return 1;

R
Rich Salz 已提交
433
    *data = OPENSSL_memdup(pkt->curr, length);
434 435 436 437 438 439 440 441 442 443 444 445 446 447 448 449 450
    if (*data == NULL)
        return 0;

    *len = length;
    return 1;
}

/*
 * Read a C string from |pkt| and copy to a newly allocated, NUL-terminated
 * buffer. Store a pointer to the result in |*data|.
 * If |*data| is not NULL, the old data is OPENSSL_free'd.
 * If the data in |pkt| does not contain a NUL-byte, the entire data is
 * copied and NUL-terminated.
 * Returns 1 if the malloc succeeds and 0 otherwise.
 * Does not forward PACKET position (because it is typically the last thing done
 * with a given PACKET).
 */
D
Dr. Stephen Henson 已提交
451
__owur static ossl_inline int PACKET_strndup(const PACKET *pkt, char **data)
452 453
{
    OPENSSL_free(*data);
454 455

    /* This will succeed on an empty packet, unless pkt->curr == NULL. */
D
Dr. Stephen Henson 已提交
456
    *data = OPENSSL_strndup((const char *)pkt->curr, PACKET_remaining(pkt));
457 458 459
    return (*data != NULL);
}

460 461 462
/* Returns 1 if |pkt| contains at least one 0-byte, 0 otherwise. */
static ossl_inline int PACKET_contains_zero_byte(const PACKET *pkt)
{
E
Emilia Kasper 已提交
463
    return memchr(pkt->curr, 0, pkt->remaining) != NULL;
464 465
}

M
Matt Caswell 已提交
466
/* Move the current reading position forward |len| bytes */
D
Dr. Stephen Henson 已提交
467
__owur static ossl_inline int PACKET_forward(PACKET *pkt, size_t len)
M
Matt Caswell 已提交
468 469 470 471
{
    if (PACKET_remaining(pkt) < len)
        return 0;

E
Emilia Kasper 已提交
472
    packet_forward(pkt, len);
M
Matt Caswell 已提交
473 474 475 476

    return 1;
}

477 478 479 480 481 482 483
/*
 * Reads a variable-length vector prefixed with a one-byte length, and stores
 * the contents in |subpkt|. |pkt| can equal |subpkt|.
 * Data is not copied: the |subpkt| packet will share its underlying buffer with
 * the original |pkt|, so data wrapped by |pkt| must outlive the |subpkt|.
 * Upon failure, the original |pkt| and |subpkt| are not modified.
 */
D
Dr. Stephen Henson 已提交
484 485
__owur static ossl_inline int PACKET_get_length_prefixed_1(PACKET *pkt,
                                                           PACKET *subpkt)
486
{
D
Dr. Stephen Henson 已提交
487
    unsigned int length;
E
Emilia Kasper 已提交
488
    const unsigned char *data;
D
Dr. Stephen Henson 已提交
489 490 491 492 493 494 495 496 497 498 499
    PACKET tmp = *pkt;
    if (!PACKET_get_1(&tmp, &length) ||
        !PACKET_get_bytes(&tmp, &data, (size_t)length)) {
        return 0;
    }

    *pkt = tmp;
    subpkt->curr = data;
    subpkt->remaining = length;

    return 1;
500 501
}

502 503 504 505
/*
 * Like PACKET_get_length_prefixed_1, but additionally, fails when there are
 * leftover bytes in |pkt|.
 */
E
Emilia Kasper 已提交
506 507
__owur static ossl_inline int PACKET_as_length_prefixed_1(PACKET *pkt,
                                                          PACKET *subpkt)
508
{
E
Emilia Kasper 已提交
509 510 511 512 513 514 515 516
    unsigned int length;
    const unsigned char *data;
    PACKET tmp = *pkt;
    if (!PACKET_get_1(&tmp, &length) ||
        !PACKET_get_bytes(&tmp, &data, (size_t)length) ||
        PACKET_remaining(&tmp) != 0) {
        return 0;
    }
517

E
Emilia Kasper 已提交
518 519 520
    *pkt = tmp;
    subpkt->curr = data;
    subpkt->remaining = length;
521

E
Emilia Kasper 已提交
522
    return 1;
523 524
}

525 526 527 528 529 530 531
/*
 * Reads a variable-length vector prefixed with a two-byte length, and stores
 * the contents in |subpkt|. |pkt| can equal |subpkt|.
 * Data is not copied: the |subpkt| packet will share its underlying buffer with
 * the original |pkt|, so data wrapped by |pkt| must outlive the |subpkt|.
 * Upon failure, the original |pkt| and |subpkt| are not modified.
 */
D
Dr. Stephen Henson 已提交
532 533
__owur static ossl_inline int PACKET_get_length_prefixed_2(PACKET *pkt,
                                                           PACKET *subpkt)
534
{
D
Dr. Stephen Henson 已提交
535
    unsigned int length;
E
Emilia Kasper 已提交
536
    const unsigned char *data;
D
Dr. Stephen Henson 已提交
537
    PACKET tmp = *pkt;
538

D
Dr. Stephen Henson 已提交
539 540 541 542 543 544 545 546 547 548
    if (!PACKET_get_net_2(&tmp, &length) ||
        !PACKET_get_bytes(&tmp, &data, (size_t)length)) {
        return 0;
    }

    *pkt = tmp;
    subpkt->curr = data;
    subpkt->remaining = length;

    return 1;
549 550
}

551 552 553 554 555 556 557
/*
 * Like PACKET_get_length_prefixed_2, but additionally, fails when there are
 * leftover bytes in |pkt|.
 */
__owur static ossl_inline int PACKET_as_length_prefixed_2(PACKET *pkt,
                                                          PACKET *subpkt)
{
E
Emilia Kasper 已提交
558 559 560
    unsigned int length;
    const unsigned char *data;
    PACKET tmp = *pkt;
561

E
Emilia Kasper 已提交
562 563 564 565 566
    if (!PACKET_get_net_2(&tmp, &length) ||
        !PACKET_get_bytes(&tmp, &data, (size_t)length) ||
        PACKET_remaining(&tmp) != 0) {
        return 0;
    }
567

E
Emilia Kasper 已提交
568 569 570
    *pkt = tmp;
    subpkt->curr = data;
    subpkt->remaining = length;
571

E
Emilia Kasper 已提交
572
    return 1;
573 574
}

575 576 577 578 579 580 581
/*
 * Reads a variable-length vector prefixed with a three-byte length, and stores
 * the contents in |subpkt|. |pkt| can equal |subpkt|.
 * Data is not copied: the |subpkt| packet will share its underlying buffer with
 * the original |pkt|, so data wrapped by |pkt| must outlive the |subpkt|.
 * Upon failure, the original |pkt| and |subpkt| are not modified.
 */
D
Dr. Stephen Henson 已提交
582 583
__owur static ossl_inline int PACKET_get_length_prefixed_3(PACKET *pkt,
                                                           PACKET *subpkt)
584
{
D
Dr. Stephen Henson 已提交
585
    unsigned long length;
E
Emilia Kasper 已提交
586
    const unsigned char *data;
D
Dr. Stephen Henson 已提交
587 588 589 590 591 592 593 594 595 596 597
    PACKET tmp = *pkt;
    if (!PACKET_get_net_3(&tmp, &length) ||
        !PACKET_get_bytes(&tmp, &data, (size_t)length)) {
        return 0;
    }

    *pkt = tmp;
    subpkt->curr = data;
    subpkt->remaining = length;

    return 1;
598
}
599 600 601

/* Writeable packets */

602 603 604 605 606 607
typedef struct wpacket_sub WPACKET_SUB;
struct wpacket_sub {
    /* The parent WPACKET_SUB if we have one or NULL otherwise */
    WPACKET_SUB *parent;

    /*
M
Matt Caswell 已提交
608 609
     * Offset into the buffer where the length of this WPACKET goes. We use an
     * offset in case the buffer grows and gets reallocated.
610
     */
M
Matt Caswell 已提交
611
    size_t packet_len;
612

M
Matt Caswell 已提交
613
    /* Number of bytes in the packet_len or 0 if we don't write the length */
614 615 616 617 618 619 620 621 622 623 624
    size_t lenbytes;

    /* Number of bytes written to the buf prior to this packet starting */
    size_t pwritten;

    /* Flags for this sub-packet */
    unsigned int flags;
};

typedef struct wpacket_st WPACKET;
struct wpacket_st {
625 626 627
    /* The buffer where we store the output data */
    BUF_MEM *buf;

628 629 630
    /* Fixed sized buffer which can be used as an alternative to buf */
    unsigned char *staticbuf;

M
Matt Caswell 已提交
631 632 633 634 635
    /*
     * Offset into the buffer where we are currently writing. We use an offset
     * in case the buffer grows and gets reallocated.
     */
    size_t curr;
636 637 638 639

    /* Number of bytes written so far */
    size_t written;

640
    /* Maximum number of bytes we will allow to be written to this WPACKET */
641 642
    size_t maxsize;

643
    /* Our sub-packets (always at least one if not finished) */
644
    WPACKET_SUB *subs;
645 646 647
};

/* Flags */
648 649

/* Default */
M
Matt Caswell 已提交
650
#define WPACKET_FLAGS_NONE                      0
651

M
Matt Caswell 已提交
652
/* Error on WPACKET_close() if no data written to the WPACKET */
M
Matt Caswell 已提交
653
#define WPACKET_FLAGS_NON_ZERO_LENGTH           1
654

655
/*
M
Matt Caswell 已提交
656
 * Abandon all changes on WPACKET_close() if no data written to the WPACKET,
657 658
 * i.e. this does not write out a zero packet length
 */
M
Matt Caswell 已提交
659
#define WPACKET_FLAGS_ABANDON_ON_ZERO_LENGTH    2
660

661 662 663 664 665 666 667

/*
 * Initialise a WPACKET with the buffer in |buf|. The buffer must exist
 * for the whole time that the WPACKET is being used. Additionally |lenbytes| of
 * data is preallocated at the start of the buffer to store the length of the
 * WPACKET once we know it.
 */
M
Matt Caswell 已提交
668
int WPACKET_init_len(WPACKET *pkt, BUF_MEM *buf, size_t lenbytes);
669 670 671 672 673

/*
 * Same as WPACKET_init_len except there is no preallocation of the WPACKET
 * length.
 */
M
Matt Caswell 已提交
674
int WPACKET_init(WPACKET *pkt, BUF_MEM *buf);
675

676 677 678 679 680 681 682
/*
 * Same as WPACKET_init_len except we do not use a growable BUF_MEM structure.
 * A fixed buffer of memory |buf| of size |len| is used instead. A failure will
 * occur if you attempt to write beyond the end of the buffer
 */
int WPACKET_init_static_len(WPACKET *pkt, unsigned char *buf, size_t len,
                            size_t lenbytes);
683 684 685
/*
 * Set the flags to be applied to the current sub-packet
 */
M
Matt Caswell 已提交
686
int WPACKET_set_flags(WPACKET *pkt, unsigned int flags);
687 688 689 690 691 692 693

/*
 * Closes the most recent sub-packet. It also writes out the length of the
 * packet to the required location (normally the start of the WPACKET) if
 * appropriate. The top level WPACKET should be closed using WPACKET_finish()
 * instead of this function.
 */
M
Matt Caswell 已提交
694
int WPACKET_close(WPACKET *pkt);
695 696 697 698 699

/*
 * The same as WPACKET_close() but only for the top most WPACKET. Additionally
 * frees memory resources for this WPACKET.
 */
700
int WPACKET_finish(WPACKET *pkt);
701

702
/*
703
 * Iterate through all the sub-packets and write out their lengths as if they
704 705
 * were being closed. The lengths will be overwritten with the final lengths
 * when the sub-packets are eventually closed (which may be different if more
706 707
 * data is added to the WPACKET). This function fails if a sub-packet is of 0
 * length and WPACKET_FLAGS_ABANDON_ON_ZERO_LENGTH is set.
708 709 710
 */
int WPACKET_fill_lengths(WPACKET *pkt);

711 712
/*
 * Initialise a new sub-packet. Additionally |lenbytes| of data is preallocated
713 714
 * at the start of the sub-packet to store its length once we know it. Don't
 * call this directly. Use the convenience macros below instead.
715
 */
716
int WPACKET_start_sub_packet_len__(WPACKET *pkt, size_t lenbytes);
717

M
Matt Caswell 已提交
718 719 720 721 722
/*
 * Convenience macros for calling WPACKET_start_sub_packet_len with different
 * lengths
 */
#define WPACKET_start_sub_packet_u8(pkt) \
723
    WPACKET_start_sub_packet_len__((pkt), 1)
M
Matt Caswell 已提交
724
#define WPACKET_start_sub_packet_u16(pkt) \
725
    WPACKET_start_sub_packet_len__((pkt), 2)
M
Matt Caswell 已提交
726
#define WPACKET_start_sub_packet_u24(pkt) \
727
    WPACKET_start_sub_packet_len__((pkt), 3)
M
Matt Caswell 已提交
728
#define WPACKET_start_sub_packet_u32(pkt) \
729
    WPACKET_start_sub_packet_len__((pkt), 4)
M
Matt Caswell 已提交
730

731
/*
732 733
 * Same as WPACKET_start_sub_packet_len__() except no bytes are pre-allocated
 * for the sub-packet length.
734
 */
735
int WPACKET_start_sub_packet(WPACKET *pkt);
736 737 738 739

/*
 * Allocate bytes in the WPACKET for the output. This reserves the bytes
 * and counts them as "written", but doesn't actually do the writing. A pointer
740
 * to the allocated bytes is stored in |*allocbytes|. |allocbytes| may be NULL.
741 742 743
 * WARNING: the allocated bytes must be filled in immediately, without further
 * WPACKET_* calls. If not then the underlying buffer may be realloc'd and
 * change its location.
744
 */
745
int WPACKET_allocate_bytes(WPACKET *pkt, size_t len,
746
                           unsigned char **allocbytes);
747

748 749 750
/*
 * The same as WPACKET_allocate_bytes() except additionally a new sub-packet is
 * started for the allocated bytes, and then closed immediately afterwards. The
751 752
 * number of length bytes for the sub-packet is in |lenbytes|. Don't call this
 * directly. Use the convenience macros below instead.
753
 */
754 755
int WPACKET_sub_allocate_bytes__(WPACKET *pkt, size_t len,
                                 unsigned char **allocbytes, size_t lenbytes);
756 757 758 759 760 761

/*
 * Convenience macros for calling WPACKET_sub_allocate_bytes with different
 * lengths
 */
#define WPACKET_sub_allocate_bytes_u8(pkt, len, bytes) \
762
    WPACKET_sub_allocate_bytes__((pkt), (len), (bytes), 1)
763
#define WPACKET_sub_allocate_bytes_u16(pkt, len, bytes) \
764
    WPACKET_sub_allocate_bytes__((pkt), (len), (bytes), 2)
765
#define WPACKET_sub_allocate_bytes_u24(pkt, len, bytes) \
766
    WPACKET_sub_allocate_bytes__((pkt), (len), (bytes), 3)
767
#define WPACKET_sub_allocate_bytes_u32(pkt, len, bytes) \
768
    WPACKET_sub_allocate_bytes__((pkt), (len), (bytes), 4)
769

770 771 772 773 774 775 776
/*
 * The same as WPACKET_allocate_bytes() except the reserved bytes are not
 * actually counted as written. Typically this will be for when we don't know
 * how big arbitrary data is going to be up front, but we do know what the
 * maximum size will be. If this function is used, then it should be immediately
 * followed by a WPACKET_allocate_bytes() call before any other WPACKET
 * functions are called (unless the write to the allocated bytes is abandoned).
777
 *
778 779 780 781 782 783 784 785 786
 * For example: If we are generating a signature, then the size of that
 * signature may not be known in advance. We can use WPACKET_reserve_bytes() to
 * handle this:
 *
 *  if (!WPACKET_sub_reserve_bytes_u16(&pkt, EVP_PKEY_size(pkey), &sigbytes1)
 *          || EVP_SignFinal(md_ctx, sigbytes1, &siglen, pkey) <= 0
 *          || !WPACKET_sub_allocate_bytes_u16(&pkt, siglen, &sigbytes2)
 *          || sigbytes1 != sigbytes2)
 *      goto err;
787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802 803 804 805 806 807
 */
int WPACKET_reserve_bytes(WPACKET *pkt, size_t len, unsigned char **allocbytes);

/*
 * The "reserve_bytes" equivalent of WPACKET_sub_allocate_bytes__()
 */
int WPACKET_sub_reserve_bytes__(WPACKET *pkt, size_t len,
                                 unsigned char **allocbytes, size_t lenbytes);

/*
 * Convenience macros for  WPACKET_sub_reserve_bytes with different lengths
 */
#define WPACKET_sub_reserve_bytes_u8(pkt, len, bytes) \
    WPACKET_reserve_bytes__((pkt), (len), (bytes), 1)
#define WPACKET_sub_reserve_bytes_u16(pkt, len, bytes) \
    WPACKET_sub_reserve_bytes__((pkt), (len), (bytes), 2)
#define WPACKET_sub_reserve_bytes_u24(pkt, len, bytes) \
    WPACKET_sub_reserve_bytes__((pkt), (len), (bytes), 3)
#define WPACKET_sub_reserve_bytes_u32(pkt, len, bytes) \
    WPACKET_sub_reserve_bytes__((pkt), (len), (bytes), 4)

808 809 810 811
/*
 * Write the value stored in |val| into the WPACKET. The value will consume
 * |bytes| amount of storage. An error will occur if |val| cannot be
 * accommodated in |bytes| storage, e.g. attempting to write the value 256 into
812 813
 * 1 byte will fail. Don't call this directly. Use the convenience macros below
 * instead.
814
 */
815 816 817 818 819 820 821 822 823 824 825
int WPACKET_put_bytes__(WPACKET *pkt, unsigned int val, size_t bytes);

/*
 * Convenience macros for calling WPACKET_put_bytes with different
 * lengths
 */
#define WPACKET_put_bytes_u8(pkt, val) \
    WPACKET_put_bytes__((pkt), (val), 1)
#define WPACKET_put_bytes_u16(pkt, val) \
    WPACKET_put_bytes__((pkt), (val), 2)
#define WPACKET_put_bytes_u24(pkt, val) \
826
    WPACKET_put_bytes__((pkt), (val), 3)
827
#define WPACKET_put_bytes_u32(pkt, val) \
M
Matt Caswell 已提交
828
    WPACKET_put_bytes__((pkt), (val), 4)
829 830

/* Set a maximum size that we will not allow the WPACKET to grow beyond */
M
Matt Caswell 已提交
831
int WPACKET_set_max_size(WPACKET *pkt, size_t maxsize);
832 833

/* Copy |len| bytes of data from |*src| into the WPACKET. */
M
Matt Caswell 已提交
834
int WPACKET_memcpy(WPACKET *pkt, const void *src, size_t len);
835 836 837

/*
 * Copy |len| bytes of data from |*src| into the WPACKET and prefix with its
838 839
 * length (consuming |lenbytes| of data for the length). Don't call this
 * directly. Use the convenience macros below instead.
840
 */
841
int WPACKET_sub_memcpy__(WPACKET *pkt, const void *src, size_t len,
M
Matt Caswell 已提交
842
                       size_t lenbytes);
843

844 845
/* Convenience macros for calling WPACKET_sub_memcpy with different lengths */
#define WPACKET_sub_memcpy_u8(pkt, src, len) \
846
    WPACKET_sub_memcpy__((pkt), (src), (len), 1)
847
#define WPACKET_sub_memcpy_u16(pkt, src, len) \
848
    WPACKET_sub_memcpy__((pkt), (src), (len), 2)
849
#define WPACKET_sub_memcpy_u24(pkt, src, len) \
850
    WPACKET_sub_memcpy__((pkt), (src), (len), 3)
851
#define WPACKET_sub_memcpy_u32(pkt, src, len) \
852
    WPACKET_sub_memcpy__((pkt), (src), (len), 4)
853

854 855 856 857
/*
 * Return the total number of bytes written so far to the underlying buffer
 * including any storage allocated for length bytes
 */
M
Matt Caswell 已提交
858
int WPACKET_get_total_written(WPACKET *pkt, size_t *written);
859 860 861 862 863

/*
 * Returns the length of the current sub-packet. This excludes any bytes
 * allocated for the length itself.
 */
M
Matt Caswell 已提交
864
int WPACKET_get_length(WPACKET *pkt, size_t *len);
865

866 867 868 869 870 871
/*
 * Returns a pointer to the current write location, but does not allocate any
 * bytes.
 */
unsigned char *WPACKET_get_curr(WPACKET *pkt);

872
/* Release resources in a WPACKET if a failure has occurred. */
873
void WPACKET_cleanup(WPACKET *pkt);
874

M
Matt Caswell 已提交
875 876 877 878
# ifdef __cplusplus
}
# endif

D
Dr. Stephen Henson 已提交
879
#endif                          /* HEADER_PACKET_LOCL_H */