packet.c 8.3 KB
Newer Older
1 2 3 4 5 6 7 8 9 10 11 12
/*
 * Copyright 2015-2016 The OpenSSL Project Authors. All Rights Reserved.
 *
 * Licensed under the OpenSSL license (the "License").  You may not use
 * this file except in compliance with the License.  You can obtain a copy
 * in the file LICENSE in the source distribution or at
 * https://www.openssl.org/source/license.html
 */

#include "packet_locl.h"

/*
M
Matt Caswell 已提交
13
 * Allocate bytes in the WPACKET_BUF for the output. This reserves the bytes
14 15
 * and count them as "written", but doesn't actually do the writing.
 */
M
Matt Caswell 已提交
16
static unsigned char *WPACKET_BUF_allocate(WPACKET_BUF *wbuf, size_t len)
17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42
{
    unsigned char *ret = wbuf->curr;

    if (SIZE_MAX - wbuf->written < len)
        return 0;

    if (wbuf->maxsize > 0 && wbuf->written + len > wbuf->maxsize)
        return 0;

    if (wbuf->buf->length - wbuf->written < len) {
        size_t newlen;

        if (wbuf->buf->length > SIZE_MAX / 2)
            newlen = SIZE_MAX;
        else
            newlen = wbuf->buf->length * 2;
        if (BUF_MEM_grow(wbuf->buf, newlen) == 0)
            return NULL;
    }
    wbuf->written += len;
    wbuf->curr += len;

    return ret;
}

/*
M
Matt Caswell 已提交
43 44
 * Initialise a WPACKET with the buffer in |buf|. The buffer must exist
 * for the whole time that the WPACKET is being used. Additionally |lenbytes| of
45
 * data is preallocated at the start of the buffer to store the length of the
M
Matt Caswell 已提交
46
 * WPACKET once we know it.
47
 */
M
Matt Caswell 已提交
48
int WPACKET_init_len(WPACKET *pkt, BUF_MEM *buf, size_t lenbytes)
49
{
M
Matt Caswell 已提交
50
    WPACKET_BUF *wbuf;
51 52 53 54
    /* Sanity check */
    if (buf == NULL)
        return 0;

M
Matt Caswell 已提交
55
    wbuf = OPENSSL_zalloc(sizeof(WPACKET_BUF));
56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77
    if (wbuf == NULL) {
        pkt->isclosed = 1;
        return 0;
    }

    wbuf->buf = buf;
    wbuf->curr = (unsigned char *)buf->data;
    wbuf->written = 0;
    wbuf->maxsize = 0;

    pkt->parent = NULL;
    pkt->wbuf = wbuf;
    pkt->pwritten = lenbytes;
    pkt->lenbytes = lenbytes;
    pkt->haschild = 0;
    pkt->isclosed = 0;

    if (lenbytes == 0) {
        pkt->packet_len = NULL;
        return 1;
    }

M
Matt Caswell 已提交
78
    pkt->packet_len = WPACKET_BUF_allocate(wbuf, lenbytes);
79 80 81 82 83 84 85 86 87 88 89
    if (pkt->packet_len == NULL) {
        OPENSSL_free(wbuf);
        pkt->wbuf = NULL;
        pkt->isclosed = 1;
        return 0;
    }

    return 1;
}

/*
M
Matt Caswell 已提交
90
 * Same as WPACKET_init_len except there is no preallocation of the WPACKET
91 92
 * length.
 */
M
Matt Caswell 已提交
93
int WPACKET_init(WPACKET *pkt, BUF_MEM *buf)
94
{
M
Matt Caswell 已提交
95
    return WPACKET_init_len(pkt, buf, 0);
96 97 98
}

/*
M
Matt Caswell 已提交
99 100 101
 * Set the WPACKET length, and the location for where we should write that
 * length. Normally this will be at the start of the WPACKET, and therefore
 * the WPACKET would have been initialised via WPACKET_init_len(). However there
102
 * is the possibility that the length needs to be written to some other location
M
Matt Caswell 已提交
103
 * other than the start of the WPACKET. In that case init via WPACKET_init() and
104 105
 * then set the location for the length using this function.
 */
M
Matt Caswell 已提交
106
int WPACKET_set_packet_len(WPACKET *pkt, unsigned char *packet_len,
107 108 109 110 111 112 113 114 115 116 117 118
                           size_t lenbytes)
{
    /* We only allow this to be set once */
    if (pkt->isclosed || pkt->packet_len != NULL)
        return 0;

    pkt->lenbytes = lenbytes;
    pkt->packet_len = packet_len;

    return 1;
}

M
Matt Caswell 已提交
119
int WPACKET_set_flags(WPACKET *pkt, unsigned int flags)
120 121 122 123 124 125 126
{
    pkt->flags = flags;

    return 1;
}

/*
M
Matt Caswell 已提交
127
 * Closes the WPACKET and marks it as invalid for future writes. It also writes
128
 * out the length of the packet to the required location (normally the start
M
Matt Caswell 已提交
129
 * of the WPACKET) if appropriate. A WPACKET cannot be closed if it has an
130 131
 * active sub-packet.
 */
M
Matt Caswell 已提交
132
int WPACKET_close(WPACKET *pkt)
133 134 135 136 137 138 139
{
    size_t packlen;

    if (pkt->isclosed || pkt->haschild)
        return 0;

    packlen = pkt->wbuf->written - pkt->pwritten;
M
Matt Caswell 已提交
140
    if (packlen == 0 && pkt->flags & OPENSSL_WPACKET_FLAGS_NON_ZERO_LENGTH)
141 142 143
        return 0;

    if (packlen == 0
M
Matt Caswell 已提交
144 145
            && pkt->flags & OPENSSL_WPACKET_FLAGS_ABANDON_ON_ZERO_LENGTH) {
        /* Deallocate any bytes allocated for the length of the WPACKET */
146 147 148 149 150 151 152 153 154
        if ((pkt->wbuf->curr - pkt->lenbytes) == pkt->packet_len) {
            pkt->wbuf->written -= pkt->lenbytes;
            pkt->wbuf->curr -= pkt->lenbytes;
        }

        /* Don't write out the packet length */
        pkt->packet_len = NULL;
    }

M
Matt Caswell 已提交
155
    /* Write out the WPACKET length if needed */
156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191
    if (pkt->packet_len != NULL) {
        size_t lenbytes;

        lenbytes = pkt->lenbytes;

        for (; lenbytes > 0; lenbytes--) {
            pkt->packet_len[lenbytes - 1] = (unsigned char)(packlen & 0xff);
            packlen >>= 8;
        }
        if (packlen > 0) {
            /*
             * We've extended beyond the max allowed for the number of len bytes
             */
            return 0;
        }
    }

    if (pkt->parent != NULL) {
        if (pkt->parent->haschild != 1) {
            /* Should not happen! */
            return 0;
        }
        pkt->parent->haschild = 0;
        pkt->parent = NULL;
    }

    pkt->isclosed = 1;

    return 1;
}

/*
 * Initialise a new sub-packet (|subpkt|), based on a parent (|pkt|).
 * Additionally |lenbytes| of data is preallocated at the start of the
 * sub-packet to store its length once we know it.
 */
M
Matt Caswell 已提交
192
int WPACKET_get_sub_packet_len(WPACKET *pkt, WPACKET *subpkt, size_t lenbytes)
193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209
{
    if (pkt->isclosed || pkt->haschild || subpkt == NULL)
        return 0;

    subpkt->parent = pkt;
    subpkt->wbuf = pkt->wbuf;
    subpkt->pwritten = pkt->wbuf->written + lenbytes;
    subpkt->lenbytes = lenbytes;
    subpkt->haschild = 0;
    subpkt->isclosed = 0;

    if (lenbytes == 0) {
        subpkt->packet_len = NULL;
        pkt->haschild = 1;
        return 1;
    }

M
Matt Caswell 已提交
210
    subpkt->packet_len = WPACKET_BUF_allocate(pkt->wbuf, lenbytes);
211 212 213 214 215 216 217 218 219 220 221
    if (subpkt->packet_len == NULL) {
        subpkt->isclosed = 1;
        return 0;
    }

    pkt->haschild = 1;

    return 1;
}

/*
M
Matt Caswell 已提交
222
 * Same as WPACKET_get_sub_packet_len() except no bytes are pre-allocated for
223 224
 * the sub-packet length.
 */
M
Matt Caswell 已提交
225
int WPACKET_get_sub_packet(WPACKET *pkt, WPACKET *subpkt)
226
{
M
Matt Caswell 已提交
227
    return WPACKET_get_sub_packet_len(pkt, subpkt, 0);
228 229 230
}

/*
M
Matt Caswell 已提交
231
 * Allocate some bytes in the WPACKET for writing. That number of bytes is
232 233 234
 * marked as having been written, and a pointer to their location is stored in
 * |*allocbytes|.
 */
M
Matt Caswell 已提交
235
int WPACKET_allocate_bytes(WPACKET *pkt, size_t bytes,
236 237 238 239 240 241 242
                           unsigned char **allocbytes)
{
    unsigned char *data;

    if (pkt->isclosed || pkt->haschild || bytes == 0)
        return 0;

M
Matt Caswell 已提交
243
    data = WPACKET_BUF_allocate(pkt->wbuf, bytes);
244 245 246 247 248 249 250 251 252
    if (data == NULL)
        return 0;

    *allocbytes = data;

    return 1;
}

/*
M
Matt Caswell 已提交
253
 * Write the value stored in |val| into the WPACKET. The value will consome
254 255 256 257
 * |bytes| amount of storage. An error will occur if |val| cannot be accommdated
 * in |bytes| storage, e.g. attempting to write the value 256 into 1 byte will
 * fail.
 */
M
Matt Caswell 已提交
258
int WPACKET_put_bytes(WPACKET *pkt, unsigned int val, size_t bytes)
259 260 261 262
{
    unsigned char *data;

    if (bytes > sizeof(unsigned int)
M
Matt Caswell 已提交
263
            || !WPACKET_allocate_bytes(pkt, bytes, &data))
264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280
        return 0;

    data += bytes - 1;
    for (; bytes > 0; bytes--) {
        *data = (unsigned char)(val & 0xff);
        data--;
        val >>= 8;
    }

    /* Check whether we could fit the value in the assigned number of bytes */
    if (val > 0)
        return 0;

    return 1;
}

/*
M
Matt Caswell 已提交
281
 * Set a maximum size that we will not allow the WPACKET to grow beyond. If not
282 283
 * set then there is no maximum.
 */
M
Matt Caswell 已提交
284
int WPACKET_set_max_size(WPACKET *pkt, size_t maxsize)
285 286 287 288 289 290 291
{
    pkt->wbuf->maxsize = maxsize;

    return 1;
}

/*
M
Matt Caswell 已提交
292
 * Copy |len| bytes of data from |*src| into the WPACKET.
293
 */
M
Matt Caswell 已提交
294
int WPACKET_memcpy(WPACKET *pkt, const void *src, size_t len)
295 296 297 298 299 300
{
    unsigned char *dest;

    if (len == 0)
        return 1;

M
Matt Caswell 已提交
301
    if (!WPACKET_allocate_bytes(pkt, len, &dest))
302 303 304 305 306 307 308 309 310
        return 0;

    memcpy(dest, src, len);

    return 1;
}

/*
 * Return the total number of bytes written so far to the underlying buffer.
M
Matt Caswell 已提交
311
 * This might includes bytes written by a parent WPACKET.
312
 */
M
Matt Caswell 已提交
313
int WPACKET_get_total_written(WPACKET *pkt, size_t *written)
314 315 316 317 318 319 320 321 322 323
{
    if (pkt->isclosed || written == NULL)
        return 0;

    *written = pkt->wbuf->curr - (unsigned char *)pkt->wbuf->buf->data;

    return 1;
}

/*
M
Matt Caswell 已提交
324
 * Returns the length of this WPACKET so far. This excludes any bytes allocated
325 326
 * for the length itself.
 */
M
Matt Caswell 已提交
327
int WPACKET_get_length(WPACKET *pkt, size_t *len)
328 329 330 331 332 333 334 335
{
    if (pkt->isclosed || len == NULL)
        return 0;

    *len = pkt->wbuf->written - pkt->pwritten;

    return 1;
}