Coverage Report

Created: 2026-05-24 06:27

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/FreeRDP/libfreerdp/core/rdp.c
Line
Count
Source
1
/**
2
 * FreeRDP: A Remote Desktop Protocol Implementation
3
 * RDP Core
4
 *
5
 * Copyright 2011 Marc-Andre Moreau <marcandre.moreau@gmail.com>
6
 * Copyright 2014 DI (FH) Martin Haimberger <martin.haimberger@thincast.com>
7
 *
8
 * Licensed under the Apache License, Version 2.0 (the "License");
9
 * you may not use this file except in compliance with the License.
10
 * You may obtain a copy of the License at
11
 *
12
 *     http://www.apache.org/licenses/LICENSE-2.0
13
 *
14
 * Unless required by applicable law or agreed to in writing, software
15
 * distributed under the License is distributed on an "AS IS" BASIS,
16
 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
17
 * See the License for the specific language governing permissions and
18
 * limitations under the License.
19
 */
20
21
#include <freerdp/config.h>
22
23
#include "settings.h"
24
25
#include <winpr/crt.h>
26
#include <winpr/string.h>
27
#include <winpr/synch.h>
28
#include <winpr/assert.h>
29
#include <winpr/cast.h>
30
#include <winpr/json.h>
31
32
#include "rdp.h"
33
34
#include "state.h"
35
#include "info.h"
36
#include "utils.h"
37
#include "mcs.h"
38
#include "redirection.h"
39
40
#include <freerdp/codec/bulk.h>
41
#include <freerdp/crypto/per.h>
42
#include <freerdp/log.h>
43
#include <freerdp/buildflags.h>
44
45
18.3k
#define RDP_TAG FREERDP_TAG("core.rdp")
46
47
typedef struct
48
{
49
  const char* file;
50
  const char* fkt;
51
  size_t line;
52
  DWORD level;
53
} log_line_t;
54
55
static const char* DATA_PDU_TYPE_STRINGS[80] = {
56
  "?",
57
  "?",      /* 0x00 - 0x01 */
58
  "Update", /* 0x02 */
59
  "?",
60
  "?",
61
  "?",
62
  "?",
63
  "?",
64
  "?",
65
  "?",
66
  "?", /* 0x03 - 0x0A */
67
  "?",
68
  "?",
69
  "?",
70
  "?",
71
  "?",
72
  "?",
73
  "?",
74
  "?",
75
  "?",       /* 0x0B - 0x13 */
76
  "Control", /* 0x14 */
77
  "?",
78
  "?",
79
  "?",
80
  "?",
81
  "?",
82
  "?",       /* 0x15 - 0x1A */
83
  "Pointer", /* 0x1B */
84
  "Input",   /* 0x1C */
85
  "?",
86
  "?",                            /* 0x1D - 0x1E */
87
  "Synchronize",                  /* 0x1F */
88
  "?",                            /* 0x20 */
89
  "Refresh Rect",                 /* 0x21 */
90
  "Play Sound",                   /* 0x22 */
91
  "Suppress Output",              /* 0x23 */
92
  "Shutdown Request",             /* 0x24 */
93
  "Shutdown Denied",              /* 0x25 */
94
  "Save Session Info",            /* 0x26 */
95
  "Font List",                    /* 0x27 */
96
  "Font Map",                     /* 0x28 */
97
  "Set Keyboard Indicators",      /* 0x29 */
98
  "?",                            /* 0x2A */
99
  "Bitmap Cache Persistent List", /* 0x2B */
100
  "Bitmap Cache Error",           /* 0x2C */
101
  "Set Keyboard IME Status",      /* 0x2D */
102
  "Offscreen Cache Error",        /* 0x2E */
103
  "Set Error Info",               /* 0x2F */
104
  "Draw Nine Grid Error",         /* 0x30 */
105
  "Draw GDI+ Error",              /* 0x31 */
106
  "ARC Status",                   /* 0x32 */
107
  "?",
108
  "?",
109
  "?",              /* 0x33 - 0x35 */
110
  "Status Info",    /* 0x36 */
111
  "Monitor Layout", /* 0x37 */
112
  "FrameAcknowledge",
113
  "?",
114
  "?", /* 0x38 - 0x40 */
115
  "?",
116
  "?",
117
  "?",
118
  "?",
119
  "?",
120
  "?" /* 0x41 - 0x46 */
121
};
122
123
#define rdp_check_monitor_layout_pdu_state(rdp, expected) \
124
0
  rdp_check_monitor_layout_pdu_state_(rdp, expected, __FILE__, __func__, __LINE__)
125
126
static BOOL rdp_check_monitor_layout_pdu_state_(const rdpRdp* rdp, BOOL expected, const char* file,
127
                                                const char* fkt, size_t line)
128
0
{
129
0
  WINPR_ASSERT(rdp);
130
0
  if (expected != rdp->monitor_layout_pdu)
131
0
  {
132
0
    const DWORD log_level = WLOG_ERROR;
133
0
    if (WLog_IsLevelActive(rdp->log, log_level))
134
0
    {
135
0
      WLog_PrintTextMessage(rdp->log, log_level, line, file, fkt,
136
0
                            "Expected rdp->monitor_layout_pdu == %s",
137
0
                            expected ? "TRUE" : "FALSE");
138
0
    }
139
0
    return FALSE;
140
0
  }
141
0
  return TRUE;
142
0
}
143
144
#define rdp_set_monitor_layout_pdu_state(rdp, expected) \
145
41
  rdp_set_monitor_layout_pdu_state_(rdp, expected, __FILE__, __func__, __LINE__)
146
static BOOL rdp_set_monitor_layout_pdu_state_(rdpRdp* rdp, BOOL value, const char* file,
147
                                              const char* fkt, size_t line)
148
41
{
149
150
41
  WINPR_ASSERT(rdp);
151
41
  if (value && (value == rdp->monitor_layout_pdu))
152
1
  {
153
1
    const DWORD log_level = WLOG_WARN;
154
1
    if (WLog_IsLevelActive(rdp->log, log_level))
155
1
    {
156
1
      WLog_PrintTextMessage(rdp->log, log_level, line, file, fkt,
157
1
                            "rdp->monitor_layout_pdu == TRUE, expected FALSE");
158
1
    }
159
1
    return FALSE;
160
1
  }
161
40
  rdp->monitor_layout_pdu = value;
162
40
  return TRUE;
163
41
}
164
165
const char* data_pdu_type_to_string(UINT8 type)
166
458
{
167
458
  if (type >= ARRAYSIZE(DATA_PDU_TYPE_STRINGS))
168
70
    return "???";
169
388
  return DATA_PDU_TYPE_STRINGS[type];
170
458
}
171
172
static BOOL rdp_read_flow_control_pdu(rdpRdp* rdp, wStream* s, UINT16* type, UINT16* channel_id);
173
static BOOL rdp_write_share_control_header(rdpRdp* rdp, wStream* s, size_t length, UINT16 type,
174
                                           UINT16 channel_id);
175
static BOOL rdp_write_share_data_header(rdpRdp* rdp, wStream* s, size_t length, BYTE type,
176
                                        UINT32 share_id);
177
178
/**
179
 * @brief Read RDP Security Header.
180
 * msdn{cc240579}
181
 *
182
 * @param s stream
183
 * @param flags security flags
184
 *
185
 * @return \b TRUE for success, \b FALSE otherwise
186
 */
187
188
BOOL rdp_read_security_header(rdpRdp* rdp, wStream* s, UINT16* flags, UINT16* length)
189
19.5k
{
190
19.5k
  char buffer[256] = WINPR_C_ARRAY_INIT;
191
19.5k
  WINPR_ASSERT(s);
192
19.5k
  WINPR_ASSERT(flags);
193
19.5k
  WINPR_ASSERT(rdp);
194
195
  /* Basic Security Header */
196
19.5k
  if ((length && (*length < 4)))
197
18.3k
  {
198
18.3k
    WLog_Print(rdp->log, WLOG_WARN,
199
18.3k
               "invalid security header length, have %" PRIu16 ", must be >= 4", *length);
200
18.3k
    return FALSE;
201
18.3k
  }
202
1.18k
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 4))
203
2
    return FALSE;
204
205
1.18k
  *flags = Stream_Get_UINT16(s);                 /* flags */
206
1.18k
  const uint16_t flagsHi = Stream_Get_UINT16(s); /* flagsHi (unused) */
207
1.18k
  if ((*flags & SEC_FLAGSHI_VALID) != 0)
208
673
  {
209
673
    WLog_Print(rdp->log, WLOG_WARN,
210
673
               "[MS-RDPBCGR] 2.2.8.1.1.2.1 Basic (TS_SECURITY_HEADER) SEC_FLAGSHI_VALID field "
211
673
               "set: flagsHi=0x%04" PRIx16,
212
673
               flagsHi);
213
673
  }
214
1.18k
  WLog_Print(rdp->log, WLOG_TRACE, "%s",
215
1.18k
             rdp_security_flag_string(*flags, buffer, sizeof(buffer)));
216
1.18k
  if (length)
217
1.18k
    *length -= 4;
218
219
1.18k
  return TRUE;
220
1.18k
}
221
222
/**
223
 * Write RDP Security Header.
224
 * msdn{cc240579}
225
 * @param s stream
226
 * @param flags security flags
227
 *
228
 * @return \b TRUE for success, \b FALSE otherwise
229
 */
230
231
BOOL rdp_write_security_header(rdpRdp* rdp, wStream* s, UINT16 flags)
232
0
{
233
0
  char buffer[256] = WINPR_C_ARRAY_INIT;
234
0
  WINPR_ASSERT(s);
235
0
  WINPR_ASSERT(rdp);
236
237
0
  if (!Stream_CheckAndLogRequiredCapacityWLog(rdp->log, (s), 4))
238
0
    return FALSE;
239
240
0
  WLog_Print(rdp->log, WLOG_TRACE, "%s", rdp_security_flag_string(flags, buffer, sizeof(buffer)));
241
  /* Basic Security Header */
242
0
  WINPR_ASSERT((flags & SEC_FLAGSHI_VALID) == 0); /* SEC_FLAGSHI_VALID is unsupported */
243
0
  Stream_Write_UINT16(s, flags);                  /* flags */
244
0
  Stream_Write_UINT16(s, 0);                      /* flagsHi (unused) */
245
0
  return TRUE;
246
0
}
247
248
BOOL rdp_read_share_control_header(rdpRdp* rdp, wStream* s, UINT16* tpktLength,
249
                                   UINT16* remainingLength, UINT16* type, UINT16* channel_id)
250
18.3k
{
251
18.3k
  UINT16 len = 0;
252
18.3k
  UINT16 tmp = 0;
253
254
18.3k
  WINPR_ASSERT(rdp);
255
18.3k
  WINPR_ASSERT(s);
256
18.3k
  WINPR_ASSERT(type);
257
18.3k
  WINPR_ASSERT(channel_id);
258
259
18.3k
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 2))
260
6.40k
    return FALSE;
261
262
  /* Share Control Header */
263
11.9k
  Stream_Read_UINT16(s, len); /* totalLength */
264
265
  /* If length is 0x8000 then we actually got a flow control PDU that we should ignore
266
   http://msdn.microsoft.com/en-us/library/cc240576.aspx */
267
11.9k
  if (len == 0x8000)
268
81
  {
269
81
    if (!rdp_read_flow_control_pdu(rdp, s, type, channel_id))
270
11
      return FALSE;
271
70
    *channel_id = 0;
272
70
    if (tpktLength)
273
70
      *tpktLength = 8; /* Flow control PDU is 8 bytes */
274
70
    if (remainingLength)
275
70
      *remainingLength = 0;
276
277
70
    char buffer[128] = WINPR_C_ARRAY_INIT;
278
70
    WLog_Print(rdp->log, WLOG_DEBUG,
279
70
               "[Flow control PDU] type=%s, tpktLength=%" PRIu16 ", remainingLength=%" PRIu16,
280
70
               pdu_type_to_str(*type, buffer, sizeof(buffer)), tpktLength ? *tpktLength : 0u,
281
70
               remainingLength ? *remainingLength : 0u);
282
70
    return TRUE;
283
81
  }
284
285
11.8k
  if (len < 4U)
286
5.94k
  {
287
5.94k
    WLog_Print(rdp->log, WLOG_ERROR,
288
5.94k
               "Invalid share control header, length is %" PRIu16 ", must be >4", len);
289
5.94k
    return FALSE;
290
5.94k
  }
291
292
5.91k
  if (tpktLength)
293
5.91k
    *tpktLength = len;
294
295
5.91k
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 2))
296
142
    return FALSE;
297
298
5.77k
  Stream_Read_UINT16(s, tmp); /* pduType */
299
5.77k
  *type = tmp & 0x0F;         /* type is in the 4 least significant bits */
300
301
5.77k
  size_t remLen = len - 4;
302
5.77k
  if (len > 5)
303
5.55k
  {
304
5.55k
    if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 2))
305
63
      return FALSE;
306
307
5.49k
    Stream_Read_UINT16(s, *channel_id); /* pduSource */
308
5.49k
    remLen = len - 6;
309
5.49k
  }
310
214
  else
311
214
    *channel_id = 0; /* Windows XP can send such short DEACTIVATE_ALL PDUs. */
312
313
5.71k
  char buffer[128] = WINPR_C_ARRAY_INIT;
314
5.71k
  WLog_Print(rdp->log, WLOG_DEBUG, "type=%s, tpktLength=%" PRIu16 ", remainingLength=%" PRIuz,
315
5.71k
             pdu_type_to_str(*type, buffer, sizeof(buffer)), len, remLen);
316
5.71k
  if (remainingLength)
317
5.71k
  {
318
5.71k
    WINPR_ASSERT(remLen <= UINT16_MAX);
319
5.71k
    *remainingLength = (UINT16)remLen;
320
5.71k
  }
321
5.71k
  return Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, remLen);
322
5.77k
}
323
324
BOOL rdp_write_share_control_header(rdpRdp* rdp, wStream* s, size_t length, UINT16 type,
325
                                    UINT16 channel_id)
326
0
{
327
0
  WINPR_ASSERT(s);
328
0
  WINPR_ASSERT(rdp);
329
0
  if (length > UINT16_MAX)
330
0
    return FALSE;
331
332
0
  if (length < RDP_PACKET_HEADER_MAX_LENGTH)
333
0
    return FALSE;
334
0
  if (!Stream_CheckAndLogRequiredCapacityWLog(rdp->log, (s), 6))
335
0
    return FALSE;
336
0
  length -= RDP_PACKET_HEADER_MAX_LENGTH;
337
  /* Share Control Header */
338
0
  Stream_Write_UINT16(s, WINPR_ASSERTING_INT_CAST(uint16_t, length));      /* totalLength */
339
0
  Stream_Write_UINT16(s, WINPR_ASSERTING_INT_CAST(uint16_t, type | 0x10)); /* pduType */
340
0
  Stream_Write_UINT16(s, WINPR_ASSERTING_INT_CAST(uint16_t, channel_id));  /* pduSource */
341
0
  return TRUE;
342
0
}
343
344
BOOL rdp_read_share_data_header(rdpRdp* rdp, wStream* s, UINT16* length, BYTE* type,
345
                                UINT32* shareId, BYTE* compressedType, UINT16* compressedLength)
346
28.9k
{
347
28.9k
  WINPR_ASSERT(s);
348
28.9k
  WINPR_ASSERT(rdp);
349
350
28.9k
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 12))
351
15.6k
    return FALSE;
352
353
  /* Share Data Header */
354
13.3k
  Stream_Read_UINT32(s, *shareId);          /* shareId (4 bytes) */
355
13.3k
  Stream_Seek_UINT8(s);                     /* pad1 (1 byte) */
356
13.3k
  Stream_Seek_UINT8(s);                     /* streamId (1 byte) */
357
13.3k
  Stream_Read_UINT16(s, *length);           /* uncompressedLength (2 bytes) */
358
13.3k
  Stream_Read_UINT8(s, *type);              /* pduType2, Data PDU Type (1 byte) */
359
13.3k
  Stream_Read_UINT8(s, *compressedType);    /* compressedType (1 byte) */
360
13.3k
  Stream_Read_UINT16(s, *compressedLength); /* compressedLength (2 bytes) */
361
13.3k
  return TRUE;
362
28.9k
}
363
364
BOOL rdp_write_share_data_header(rdpRdp* rdp, wStream* s, size_t length, BYTE type, UINT32 share_id)
365
0
{
366
0
  const size_t headerLen = RDP_PACKET_HEADER_MAX_LENGTH + RDP_SHARE_CONTROL_HEADER_LENGTH +
367
0
                           RDP_SHARE_DATA_HEADER_LENGTH;
368
369
0
  WINPR_ASSERT(s);
370
0
  WINPR_ASSERT(rdp);
371
0
  if (length > UINT16_MAX)
372
0
    return FALSE;
373
374
0
  if (length < headerLen)
375
0
    return FALSE;
376
0
  length -= headerLen;
377
0
  if (!Stream_CheckAndLogRequiredCapacityWLog(rdp->log, (s), 12))
378
0
    return FALSE;
379
380
  /* Share Data Header */
381
0
  Stream_Write_UINT32(s, share_id);  /* shareId (4 bytes) */
382
0
  Stream_Write_UINT8(s, 0);          /* pad1 (1 byte) */
383
0
  Stream_Write_UINT8(s, STREAM_LOW); /* streamId (1 byte) */
384
0
  Stream_Write_UINT16(
385
0
      s, WINPR_ASSERTING_INT_CAST(uint16_t, length)); /* uncompressedLength (2 bytes) */
386
0
  Stream_Write_UINT8(s, type);                        /* pduType2, Data PDU Type (1 byte) */
387
0
  Stream_Write_UINT8(s, 0);                           /* compressedType (1 byte) */
388
0
  Stream_Write_UINT16(s, 0);                          /* compressedLength (2 bytes) */
389
0
  return TRUE;
390
0
}
391
392
static BOOL rdp_security_stream_init(rdpRdp* rdp, wStream* s, BOOL sec_header, UINT16* sec_flags)
393
3.05k
{
394
3.05k
  WINPR_ASSERT(rdp);
395
3.05k
  WINPR_ASSERT(s);
396
3.05k
  WINPR_ASSERT(sec_flags);
397
398
3.05k
  if (rdp->do_crypt)
399
0
  {
400
0
    if (!Stream_SafeSeek(s, 12))
401
0
      return FALSE;
402
403
0
    if (rdp->settings->EncryptionMethods == ENCRYPTION_METHOD_FIPS)
404
0
    {
405
0
      if (!Stream_SafeSeek(s, 4))
406
0
        return FALSE;
407
0
    }
408
409
0
    *sec_flags |= SEC_ENCRYPT;
410
411
0
    if (rdp->do_secure_checksum)
412
0
      *sec_flags |= SEC_SECURE_CHECKSUM;
413
0
  }
414
3.05k
  else if (*sec_flags != 0 || sec_header)
415
3.05k
  {
416
3.05k
    if (!Stream_SafeSeek(s, 4))
417
0
      return FALSE;
418
3.05k
  }
419
420
3.05k
  return TRUE;
421
3.05k
}
422
423
wStream* rdp_send_stream_init(rdpRdp* rdp, UINT16* sec_flags)
424
0
{
425
0
  wStream* s = nullptr;
426
427
0
  WINPR_ASSERT(rdp);
428
0
  WINPR_ASSERT(rdp->transport);
429
430
0
  s = transport_send_stream_init(rdp->transport, 4096);
431
432
0
  if (!s)
433
0
    return nullptr;
434
435
0
  if (!Stream_SafeSeek(s, RDP_PACKET_HEADER_MAX_LENGTH))
436
0
    goto fail;
437
438
0
  if (!rdp_security_stream_init(rdp, s, FALSE, sec_flags))
439
0
    goto fail;
440
441
0
  return s;
442
0
fail:
443
0
  Stream_Release(s);
444
0
  return nullptr;
445
0
}
446
447
wStream* rdp_send_stream_pdu_init(rdpRdp* rdp, UINT16* sec_flags)
448
0
{
449
0
  wStream* s = rdp_send_stream_init(rdp, sec_flags);
450
451
0
  if (!s)
452
0
    return nullptr;
453
454
0
  if (!Stream_SafeSeek(s, RDP_SHARE_CONTROL_HEADER_LENGTH))
455
0
    goto fail;
456
457
0
  return s;
458
0
fail:
459
0
  Stream_Release(s);
460
0
  return nullptr;
461
0
}
462
463
wStream* rdp_data_pdu_init(rdpRdp* rdp, UINT16* sec_flags)
464
0
{
465
0
  wStream* s = rdp_send_stream_pdu_init(rdp, sec_flags);
466
467
0
  if (!s)
468
0
    return nullptr;
469
470
0
  if (!Stream_SafeSeek(s, RDP_SHARE_DATA_HEADER_LENGTH))
471
0
    goto fail;
472
473
0
  return s;
474
0
fail:
475
0
  Stream_Release(s);
476
0
  return nullptr;
477
0
}
478
479
BOOL rdp_set_error_info(rdpRdp* rdp, UINT32 errorInfo)
480
1.20k
{
481
1.20k
  BOOL rc = TRUE;
482
1.20k
  WINPR_ASSERT(rdp);
483
484
1.20k
  rdp->errorInfo = errorInfo;
485
486
1.20k
  if (rdp->errorInfo != ERRINFO_SUCCESS)
487
1.20k
  {
488
1.20k
    rdpContext* context = rdp->context;
489
1.20k
    WINPR_ASSERT(context);
490
491
1.20k
    rdp_print_errinfo(rdp->errorInfo);
492
493
1.20k
    if (context)
494
1.20k
    {
495
1.20k
      freerdp_set_last_error_log(context, MAKE_FREERDP_ERROR(ERRINFO, errorInfo));
496
497
1.20k
      if (context->pubSub)
498
534
      {
499
534
        ErrorInfoEventArgs e = WINPR_C_ARRAY_INIT;
500
534
        EventArgsInit(&e, "freerdp");
501
534
        e.code = rdp->errorInfo;
502
534
        rc = PubSub_OnErrorInfo(context->pubSub, context, &e) >= 0;
503
534
      }
504
1.20k
    }
505
0
    else
506
0
      WLog_Print(rdp->log, WLOG_ERROR, "missing context=%p", (void*)context);
507
1.20k
  }
508
4
  else
509
4
  {
510
4
    freerdp_set_last_error_log(rdp->context, FREERDP_ERROR_SUCCESS);
511
4
  }
512
513
1.20k
  return rc;
514
1.20k
}
515
516
wStream* rdp_message_channel_pdu_init(rdpRdp* rdp, UINT16* sec_flags)
517
3.05k
{
518
3.05k
  wStream* s = nullptr;
519
520
3.05k
  WINPR_ASSERT(rdp);
521
522
3.05k
  s = transport_send_stream_init(rdp->transport, 4096);
523
524
3.05k
  if (!s)
525
0
    return nullptr;
526
527
3.05k
  if (!Stream_SafeSeek(s, RDP_PACKET_HEADER_MAX_LENGTH))
528
0
    goto fail;
529
530
3.05k
  if (!rdp_security_stream_init(rdp, s, TRUE, sec_flags))
531
0
    goto fail;
532
533
3.05k
  return s;
534
0
fail:
535
0
  Stream_Release(s);
536
0
  return nullptr;
537
3.05k
}
538
539
/**
540
 * Read an RDP packet header.
541
 * @param rdp rdp module
542
 * @param s stream
543
 * @param length RDP packet length
544
 * @param channelId channel id
545
 *
546
 * @return \b TRUE for success, \b FALSE otherwise
547
 */
548
549
BOOL rdp_read_header(rdpRdp* rdp, wStream* s, UINT16* length, UINT16* channelId)
550
55.0k
{
551
55.0k
  BYTE li = 0;
552
55.0k
  BYTE code = 0;
553
55.0k
  BYTE choice = 0;
554
55.0k
  UINT16 initiator = 0;
555
556
55.0k
  WINPR_ASSERT(rdp);
557
55.0k
  WINPR_ASSERT(rdp->settings);
558
55.0k
  WINPR_ASSERT(s);
559
55.0k
  DomainMCSPDU MCSPDU = (rdp->settings->ServerMode) ? DomainMCSPDU_SendDataRequest
560
55.0k
                                                    : DomainMCSPDU_SendDataIndication;
561
562
55.0k
  *channelId = 0; /* Initialize in case of early abort */
563
55.0k
  if (!tpkt_read_header(s, length))
564
23.8k
    return FALSE;
565
566
31.1k
  if (!tpdu_read_header(s, &code, &li, *length))
567
29.5k
    return FALSE;
568
569
1.59k
  if (code != X224_TPDU_DATA)
570
322
  {
571
322
    if (code == X224_TPDU_DISCONNECT_REQUEST)
572
216
    {
573
216
      WLog_Print(rdp->log, WLOG_WARN, "Received X224_TPDU_DISCONNECT_REQUEST, terminating");
574
216
      utils_abort_connect(rdp);
575
216
      return TRUE;
576
216
    }
577
578
106
    WLog_Print(rdp->log, WLOG_WARN,
579
106
               "Unexpected X224 TPDU type %s [%08" PRIx32 "] instead of %s",
580
106
               tpdu_type_to_string(code), code, tpdu_type_to_string(X224_TPDU_DATA));
581
106
    return FALSE;
582
322
  }
583
584
1.27k
  if (!per_read_choice(s, &choice))
585
4
    return FALSE;
586
587
1.26k
  const DomainMCSPDU domainMCSPDU = (DomainMCSPDU)(choice >> 2);
588
589
1.26k
  if (domainMCSPDU != MCSPDU)
590
1.12k
  {
591
1.12k
    if (domainMCSPDU != DomainMCSPDU_DisconnectProviderUltimatum)
592
58
    {
593
58
      WLog_Print(rdp->log, WLOG_WARN, "Received %s instead of %s",
594
58
                 mcs_domain_pdu_string(domainMCSPDU), mcs_domain_pdu_string(MCSPDU));
595
58
      return FALSE;
596
58
    }
597
1.12k
  }
598
599
1.20k
  MCSPDU = domainMCSPDU;
600
601
1.20k
  if (*length < 8U)
602
9
  {
603
9
    WLog_Print(rdp->log, WLOG_WARN, "TPDU invalid length, got %" PRIu16 ", expected at least 8",
604
9
               *length);
605
9
    return FALSE;
606
9
  }
607
608
1.20k
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, *length - 8))
609
0
    return FALSE;
610
611
1.20k
  if (MCSPDU == DomainMCSPDU_DisconnectProviderUltimatum)
612
1.05k
  {
613
1.05k
    int reason = 0;
614
1.05k
    TerminateEventArgs e = WINPR_C_ARRAY_INIT;
615
616
1.05k
    if (!mcs_recv_disconnect_provider_ultimatum(rdp->mcs, s, &reason))
617
2
      return FALSE;
618
619
1.05k
    rdpContext* context = rdp->context;
620
1.05k
    WINPR_ASSERT(context);
621
1.05k
    context->disconnectUltimatum = reason;
622
623
1.05k
    if (rdp->errorInfo == ERRINFO_SUCCESS)
624
1.01k
    {
625
      /**
626
       * Some servers like Windows Server 2008 R2 do not send the error info pdu
627
       * when the user logs off like they should. Map DisconnectProviderUltimatum
628
       * to a ERRINFO_LOGOFF_BY_USER when the errinfo code is ERRINFO_SUCCESS.
629
       */
630
1.01k
      UINT32 errorInfo = ERRINFO_RPC_INITIATED_DISCONNECT;
631
1.01k
      if (reason == Disconnect_Ultimatum_provider_initiated)
632
109
        errorInfo = ERRINFO_RPC_INITIATED_DISCONNECT;
633
904
      else if (reason == Disconnect_Ultimatum_user_requested)
634
47
        errorInfo = ERRINFO_LOGOFF_BY_USER;
635
636
1.01k
      if (!rdp_set_error_info(rdp, errorInfo))
637
0
        return FALSE;
638
1.01k
    }
639
640
1.05k
    WLog_Print(rdp->log, WLOG_DEBUG, "DisconnectProviderUltimatum: reason: %d", reason);
641
1.05k
    utils_abort_connect(rdp);
642
1.05k
    EventArgsInit(&e, "freerdp");
643
1.05k
    e.code = 0;
644
1.05k
    return PubSub_OnTerminate(rdp->pubSub, context, &e) >= 0;
645
1.05k
  }
646
647
146
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 5))
648
6
    return FALSE;
649
650
140
  if (!per_read_integer16(s, &initiator, MCS_BASE_CHANNEL_ID)) /* initiator (UserId) */
651
55
    return FALSE;
652
653
85
  if (!per_read_integer16(s, channelId, 0)) /* channelId */
654
0
    return FALSE;
655
656
85
  const uint8_t dataPriority = Stream_Get_UINT8(s); /* dataPriority + Segmentation (0x70) */
657
85
  WLog_Print(rdp->log, WLOG_TRACE, "dataPriority=%" PRIu8, dataPriority);
658
659
85
  if (!per_read_length(s, length)) /* userData (OCTET_STRING) */
660
6
    return FALSE;
661
662
79
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, *length))
663
25
    return FALSE;
664
665
54
  return TRUE;
666
79
}
667
668
/**
669
 * Write an RDP packet header.
670
 * @param rdp rdp module
671
 * @param s stream
672
 * @param length RDP packet length
673
 * @param channelId channel id
674
 *
675
 * @return \b TRUE for success, \b FALSE otherwise
676
 */
677
678
BOOL rdp_write_header(rdpRdp* rdp, wStream* s, size_t length, UINT16 channelId, UINT16 sec_flags)
679
3.05k
{
680
3.05k
  WINPR_ASSERT(rdp);
681
3.05k
  WINPR_ASSERT(rdp->settings);
682
3.05k
  WINPR_ASSERT(s);
683
3.05k
  WINPR_ASSERT(length >= RDP_PACKET_HEADER_MAX_LENGTH);
684
3.05k
  if (length > UINT16_MAX)
685
0
    return FALSE;
686
687
3.05k
  DomainMCSPDU MCSPDU = (rdp->settings->ServerMode) ? DomainMCSPDU_SendDataIndication
688
3.05k
                                                    : DomainMCSPDU_SendDataRequest;
689
690
3.05k
  if ((sec_flags & SEC_ENCRYPT) && (rdp->settings->EncryptionMethods == ENCRYPTION_METHOD_FIPS))
691
0
  {
692
0
    const UINT16 body_length = (UINT16)length - RDP_PACKET_HEADER_MAX_LENGTH;
693
0
    const UINT16 pad = 8 - (body_length % 8);
694
695
0
    if (pad != 8)
696
0
      length += pad;
697
0
  }
698
699
3.05k
  if (!mcs_write_domain_mcspdu_header(s, MCSPDU, (UINT16)length, 0))
700
0
    return FALSE;
701
3.05k
  if (!per_write_integer16(s, rdp->mcs->userId, MCS_BASE_CHANNEL_ID)) /* initiator */
702
3.05k
    return FALSE;
703
0
  if (!per_write_integer16(s, channelId, 0)) /* channelId */
704
0
    return FALSE;
705
0
  if (!Stream_EnsureRemainingCapacity(s, 3))
706
0
    return FALSE;
707
0
  Stream_Write_UINT8(s, 0x70); /* dataPriority + segmentation */
708
  /*
709
   * We always encode length in two bytes, even though we could use
710
   * only one byte if length <= 0x7F. It is just easier that way,
711
   * because we can leave room for fixed-length header, store all
712
   * the data first and then store the header.
713
   */
714
0
  length = (length - RDP_PACKET_HEADER_MAX_LENGTH) | 0x8000;
715
0
  Stream_Write_UINT16_BE(
716
0
      s, WINPR_ASSERTING_INT_CAST(uint16_t, length)); /* userData (OCTET_STRING) */
717
0
  return TRUE;
718
0
}
719
720
static BOOL rdp_security_stream_out(rdpRdp* rdp, wStream* s, size_t length, UINT16 sec_flags,
721
                                    UINT32* pad)
722
0
{
723
0
  BOOL status = 0;
724
0
  WINPR_ASSERT(rdp);
725
0
  if (length > UINT16_MAX)
726
0
    return FALSE;
727
728
0
  *pad = 0;
729
730
0
  if (sec_flags != 0)
731
0
  {
732
0
    WINPR_ASSERT(sec_flags <= UINT16_MAX);
733
0
    if (!rdp_write_security_header(rdp, s, sec_flags))
734
0
      return FALSE;
735
736
0
    if (sec_flags & SEC_ENCRYPT)
737
0
    {
738
0
      if (rdp->settings->EncryptionMethods == ENCRYPTION_METHOD_FIPS)
739
0
      {
740
0
        BYTE* data = Stream_PointerAs(s, BYTE) + 12;
741
0
        const size_t size = WINPR_ASSERTING_INT_CAST(size_t, (data - Stream_Buffer(s)));
742
0
        if (size > length)
743
0
          return FALSE;
744
745
0
        length -= size;
746
747
0
        Stream_Write_UINT16(s, 0x10); /* length */
748
0
        Stream_Write_UINT8(s, 0x1);   /* TSFIPS_VERSION 1*/
749
        /* handle padding */
750
0
        *pad = 8 - (length % 8);
751
752
0
        if (*pad == 8)
753
0
          *pad = 0;
754
755
0
        if (*pad)
756
0
          memset(data + length, 0, *pad);
757
758
0
        Stream_Write_UINT8(s, WINPR_ASSERTING_INT_CAST(uint8_t, *pad));
759
760
0
        if (!Stream_CheckAndLogRequiredCapacityWLog(rdp->log, s, 8))
761
0
          return FALSE;
762
0
        if (!security_hmac_signature(data, length, Stream_Pointer(s), 8, rdp))
763
0
          return FALSE;
764
765
0
        Stream_Seek(s, 8);
766
0
        if (!security_fips_encrypt(data, length + *pad, rdp))
767
0
          return FALSE;
768
0
      }
769
0
      else
770
0
      {
771
0
        const BYTE* data = Stream_PointerAs(s, const BYTE) + 8;
772
0
        const size_t diff = Stream_GetPosition(s) + 8ULL;
773
0
        if (diff > length)
774
0
          return FALSE;
775
0
        length -= diff;
776
777
0
        if (!Stream_CheckAndLogRequiredCapacityWLog(rdp->log, s, 8))
778
0
          return FALSE;
779
0
        if (sec_flags & SEC_SECURE_CHECKSUM)
780
0
          status = security_salted_mac_signature(rdp, data, (UINT32)length, TRUE,
781
0
                                                 Stream_Pointer(s), 8);
782
0
        else
783
0
          status = security_mac_signature(rdp, data, (UINT32)length,
784
0
                                          Stream_PointerAs(s, BYTE), 8);
785
786
0
        if (!status)
787
0
          return FALSE;
788
789
0
        Stream_Seek(s, 8);
790
791
0
        if (!security_encrypt(Stream_Pointer(s), length, rdp))
792
0
          return FALSE;
793
0
      }
794
0
    }
795
0
  }
796
797
0
  return TRUE;
798
0
}
799
800
static UINT32 rdp_get_sec_bytes(rdpRdp* rdp, UINT16 sec_flags)
801
0
{
802
0
  UINT32 sec_bytes = 0;
803
804
0
  if (sec_flags & SEC_ENCRYPT)
805
0
  {
806
0
    sec_bytes = 12;
807
808
0
    if (rdp->settings->EncryptionMethods == ENCRYPTION_METHOD_FIPS)
809
0
      sec_bytes += 4;
810
0
  }
811
0
  else if (sec_flags != 0)
812
0
  {
813
0
    sec_bytes = 4;
814
0
  }
815
0
  else
816
0
  {
817
0
    sec_bytes = 0;
818
0
  }
819
820
0
  return sec_bytes;
821
0
}
822
823
BOOL rdp_send(rdpRdp* rdp, wStream* s, UINT16 channelId, UINT16 sec_flags)
824
0
{
825
0
  BOOL rc = FALSE;
826
0
  UINT32 pad = 0;
827
0
  BOOL should_unlock = FALSE;
828
829
0
  if (!s)
830
0
    return FALSE;
831
832
0
  if (!rdp)
833
0
    goto fail;
834
835
0
  if (sec_flags & SEC_ENCRYPT)
836
0
  {
837
0
    security_lock(rdp);
838
0
    should_unlock = TRUE;
839
0
  }
840
841
0
  {
842
0
    size_t length = Stream_GetPosition(s);
843
0
    Stream_ResetPosition(s);
844
0
    if (!rdp_write_header(rdp, s, length, channelId, sec_flags))
845
0
      goto fail;
846
847
0
    if (!rdp_security_stream_out(rdp, s, length, sec_flags, &pad))
848
0
      goto fail;
849
850
0
    length += pad;
851
0
    if (!Stream_SetPosition(s, length))
852
0
      goto fail;
853
0
    Stream_SealLength(s);
854
0
  }
855
856
0
  if (transport_write(rdp->transport, s) < 0)
857
0
    goto fail;
858
859
0
  rc = TRUE;
860
0
fail:
861
0
  if (should_unlock)
862
0
    security_unlock(rdp);
863
0
  Stream_Release(s);
864
0
  return rc;
865
0
}
866
867
BOOL rdp_send_pdu(rdpRdp* rdp, wStream* s, UINT16 type, UINT16 channel_id, UINT16 sec_flags)
868
0
{
869
0
  BOOL rc = FALSE;
870
0
  UINT32 sec_bytes = 0;
871
0
  size_t sec_hold = 0;
872
0
  UINT32 pad = 0;
873
0
  BOOL should_unlock = FALSE;
874
875
0
  if (!s)
876
0
    return FALSE;
877
878
0
  if (!rdp)
879
0
    goto fail;
880
881
0
  if (sec_flags & SEC_ENCRYPT)
882
0
  {
883
0
    security_lock(rdp);
884
0
    should_unlock = TRUE;
885
0
  }
886
887
0
  {
888
0
    size_t length = Stream_GetPosition(s);
889
0
    Stream_ResetPosition(s);
890
0
    if (!rdp_write_header(rdp, s, length, MCS_GLOBAL_CHANNEL_ID, sec_flags))
891
0
      goto fail;
892
0
    sec_bytes = rdp_get_sec_bytes(rdp, sec_flags);
893
0
    sec_hold = Stream_GetPosition(s);
894
0
    Stream_Seek(s, sec_bytes);
895
0
    if (!rdp_write_share_control_header(rdp, s, length - sec_bytes, type, channel_id))
896
0
      goto fail;
897
0
    if (!Stream_SetPosition(s, sec_hold))
898
0
      goto fail;
899
900
0
    if (!rdp_security_stream_out(rdp, s, length, sec_flags, &pad))
901
0
      goto fail;
902
903
0
    length += pad;
904
0
    if (!Stream_SetPosition(s, length))
905
0
      goto fail;
906
0
    Stream_SealLength(s);
907
0
  }
908
909
0
  if (transport_write(rdp->transport, s) < 0)
910
0
    goto fail;
911
912
0
  rc = TRUE;
913
0
fail:
914
0
  if (should_unlock)
915
0
    security_unlock(rdp);
916
0
  return rc;
917
0
}
918
919
BOOL rdp_send_data_pdu(rdpRdp* rdp, wStream* s, BYTE type, UINT16 channel_id, UINT16 sec_flags)
920
0
{
921
0
  BOOL rc = FALSE;
922
0
  UINT32 sec_bytes = 0;
923
0
  size_t sec_hold = 0;
924
0
  UINT32 pad = 0;
925
0
  BOOL should_unlock = FALSE;
926
927
0
  if (!s)
928
0
    return FALSE;
929
930
0
  if (!rdp)
931
0
    goto fail;
932
933
0
  if (sec_flags & SEC_ENCRYPT)
934
0
  {
935
0
    security_lock(rdp);
936
0
    should_unlock = TRUE;
937
0
  }
938
939
0
  {
940
0
    size_t length = Stream_GetPosition(s);
941
0
    Stream_ResetPosition(s);
942
0
    if (!rdp_write_header(rdp, s, length, MCS_GLOBAL_CHANNEL_ID, sec_flags))
943
0
      goto fail;
944
0
    sec_bytes = rdp_get_sec_bytes(rdp, sec_flags);
945
0
    sec_hold = Stream_GetPosition(s);
946
0
    Stream_Seek(s, sec_bytes);
947
0
    if (!rdp_write_share_control_header(rdp, s, length - sec_bytes, PDU_TYPE_DATA, channel_id))
948
0
      goto fail;
949
0
    if (!rdp_write_share_data_header(rdp, s, length - sec_bytes, type, rdp->settings->ShareId))
950
0
      goto fail;
951
0
    if (!Stream_SetPosition(s, sec_hold))
952
0
      goto fail;
953
954
0
    if (!rdp_security_stream_out(rdp, s, length, sec_flags, &pad))
955
0
      goto fail;
956
957
0
    length += pad;
958
0
    if (!Stream_SetPosition(s, length))
959
0
      goto fail;
960
0
    Stream_SealLength(s);
961
0
  }
962
0
  WLog_Print(rdp->log, WLOG_DEBUG,
963
0
             "sending data (type=0x%x size=%" PRIuz " channelId=%" PRIu16 ")", type,
964
0
             Stream_Length(s), channel_id);
965
966
0
  rdp->outPackets++;
967
0
  if (transport_write(rdp->transport, s) < 0)
968
0
    goto fail;
969
970
0
  rc = TRUE;
971
0
fail:
972
0
  if (should_unlock)
973
0
    security_unlock(rdp);
974
0
  Stream_Release(s);
975
0
  return rc;
976
0
}
977
978
BOOL rdp_send_message_channel_pdu(rdpRdp* rdp, wStream* s, UINT16 sec_flags)
979
3.05k
{
980
3.05k
  BOOL rc = FALSE;
981
3.05k
  UINT32 pad = 0;
982
3.05k
  BOOL should_unlock = FALSE;
983
984
3.05k
  WINPR_ASSERT(rdp);
985
3.05k
  WINPR_ASSERT(s);
986
987
3.05k
  if (sec_flags & SEC_ENCRYPT)
988
0
  {
989
0
    security_lock(rdp);
990
0
    should_unlock = TRUE;
991
0
  }
992
993
3.05k
  {
994
3.05k
    size_t length = Stream_GetPosition(s);
995
3.05k
    Stream_ResetPosition(s);
996
3.05k
    if (!rdp_write_header(rdp, s, length, rdp->mcs->messageChannelId, sec_flags))
997
3.05k
      goto fail;
998
999
0
    if (!rdp_security_stream_out(rdp, s, length, sec_flags, &pad))
1000
0
      goto fail;
1001
1002
0
    length += pad;
1003
0
    if (!Stream_SetPosition(s, length))
1004
0
      goto fail;
1005
0
  }
1006
0
  Stream_SealLength(s);
1007
1008
0
  if (transport_write(rdp->transport, s) < 0)
1009
0
    goto fail;
1010
1011
0
  rc = TRUE;
1012
3.05k
fail:
1013
3.05k
  if (should_unlock)
1014
0
    security_unlock(rdp);
1015
1016
3.05k
  Stream_Release(s);
1017
3.05k
  return rc;
1018
0
}
1019
1020
static BOOL rdp_recv_server_shutdown_denied_pdu(WINPR_ATTR_UNUSED rdpRdp* rdp,
1021
                                                WINPR_ATTR_UNUSED wStream* s)
1022
3
{
1023
3
  return TRUE;
1024
3
}
1025
1026
static BOOL rdp_recv_server_set_keyboard_indicators_pdu(rdpRdp* rdp, wStream* s)
1027
45
{
1028
45
  WINPR_ASSERT(rdp);
1029
45
  WINPR_ASSERT(s);
1030
1031
45
  rdpContext* context = rdp->context;
1032
45
  WINPR_ASSERT(context);
1033
45
  WINPR_ASSERT(context->update);
1034
1035
45
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 4))
1036
1
    return FALSE;
1037
1038
44
  const uint16_t unitId = Stream_Get_UINT16(s); /* unitId (2 bytes) */
1039
44
  if (unitId != 0)
1040
37
  {
1041
37
    WLog_Print(rdp->log, WLOG_WARN,
1042
37
               "[MS-RDPBCGR] 2.2.8.2.1.1 Set Keyboard Indicators PDU Data "
1043
37
               "(TS_SET_KEYBOARD_INDICATORS_PDU)::unitId should be 0, is %" PRIu16,
1044
37
               unitId);
1045
37
  }
1046
44
  const UINT16 ledFlags = Stream_Get_UINT16(s); /* ledFlags (2 bytes) */
1047
44
  return IFCALLRESULT(TRUE, context->update->SetKeyboardIndicators, context, ledFlags);
1048
45
}
1049
1050
static BOOL rdp_recv_server_set_keyboard_ime_status_pdu(rdpRdp* rdp, wStream* s)
1051
21
{
1052
21
  if (!rdp || !rdp->input)
1053
0
    return FALSE;
1054
1055
21
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 10))
1056
1
    return FALSE;
1057
1058
20
  const uint16_t unitId = Stream_Get_UINT16(s); /* unitId (2 bytes) */
1059
20
  if (unitId != 0)
1060
13
  {
1061
13
    WLog_Print(rdp->log, WLOG_WARN,
1062
13
               "[MS-RDPBCGR] 2.2.8.2.2.1 Set Keyboard IME Status PDU Data "
1063
13
               "(TS_SET_KEYBOARD_IME_STATUS_PDU)::unitId should be 0, is %" PRIu16,
1064
13
               unitId);
1065
13
  }
1066
20
  const uint32_t imeState = Stream_Get_UINT32(s);    /* imeState (4 bytes) */
1067
20
  const uint32_t imeConvMode = Stream_Get_UINT32(s); /* imeConvMode (4 bytes) */
1068
20
  return IFCALLRESULT(TRUE, rdp->update->SetKeyboardImeStatus, rdp->context, unitId, imeState,
1069
21
                      imeConvMode);
1070
21
}
1071
1072
static BOOL rdp_recv_set_error_info_data_pdu(rdpRdp* rdp, wStream* s)
1073
194
{
1074
194
  UINT32 errorInfo = 0;
1075
1076
194
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 4))
1077
1
    return FALSE;
1078
1079
193
  Stream_Read_UINT32(s, errorInfo); /* errorInfo (4 bytes) */
1080
193
  return rdp_set_error_info(rdp, errorInfo);
1081
194
}
1082
1083
static BOOL rdp_recv_server_auto_reconnect_status_pdu(rdpRdp* rdp, wStream* s)
1084
8
{
1085
8
  UINT32 arcStatus = 0;
1086
1087
8
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 4))
1088
1
    return FALSE;
1089
1090
7
  Stream_Read_UINT32(s, arcStatus); /* arcStatus (4 bytes) */
1091
7
  WLog_Print(rdp->log, WLOG_WARN, "AutoReconnectStatus: 0x%08" PRIX32 "", arcStatus);
1092
7
  return TRUE;
1093
8
}
1094
1095
static BOOL rdp_recv_server_status_info_pdu(rdpRdp* rdp, wStream* s)
1096
19
{
1097
19
  UINT32 statusCode = 0;
1098
1099
19
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 4))
1100
1
    return FALSE;
1101
1102
18
  Stream_Read_UINT32(s, statusCode); /* statusCode (4 bytes) */
1103
1104
18
  if (rdp->update->ServerStatusInfo)
1105
0
    return rdp->update->ServerStatusInfo(rdp->context, statusCode);
1106
1107
18
  return TRUE;
1108
18
}
1109
1110
static void log_monitor(size_t idx, const MONITOR_DEF* monitor, wLog* log, DWORD level)
1111
1.48k
{
1112
1.48k
  WINPR_ASSERT(monitor);
1113
1114
1.48k
  WLog_Print(log, level, "[%" PRIuz "] {%dx%d-%dx%d} [0x%08" PRIx32 "]", idx, monitor->left,
1115
1.48k
             monitor->top, monitor->right, monitor->bottom, monitor->flags);
1116
1.48k
}
1117
1118
static void log_monitor_configuration(wLog* log, const MONITOR_DEF* monitors, size_t count)
1119
41
{
1120
41
  const DWORD level = WLOG_DEBUG;
1121
41
  WLog_Print(log, level, "[BEGIN] RemoteMonitors[%" PRIuz "]", count);
1122
1.53k
  for (size_t x = 0; x < count; x++)
1123
1.48k
  {
1124
1.48k
    const MONITOR_DEF* monitor = &monitors[x];
1125
1.48k
    log_monitor(x, monitor, log, level);
1126
1.48k
  }
1127
41
  WLog_Print(log, level, "[END] RemoteMonitors[%" PRIuz "]", count);
1128
41
}
1129
1130
static BOOL rdp_recv_monitor_layout_pdu(rdpRdp* rdp, wStream* s)
1131
62
{
1132
62
  BOOL ret = TRUE;
1133
1134
62
  WINPR_ASSERT(rdp);
1135
62
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 4))
1136
1
    return FALSE;
1137
1138
61
  const UINT32 monitorCount = Stream_Get_UINT32(s); /* monitorCount (4 bytes) */
1139
1140
61
  if (!Stream_CheckAndLogRequiredLengthOfSizeWLog(rdp->log, s, monitorCount, 20ull))
1141
20
    return FALSE;
1142
1143
41
  MONITOR_DEF* monitorDefArray = (MONITOR_DEF*)calloc(monitorCount, sizeof(MONITOR_DEF));
1144
1145
41
  if (!monitorDefArray)
1146
0
    return FALSE;
1147
1148
1.53k
  for (UINT32 index = 0; index < monitorCount; index++)
1149
1.48k
  {
1150
1.48k
    MONITOR_DEF* monitor = &monitorDefArray[index];
1151
1.48k
    Stream_Read_INT32(s, monitor->left);   /* left (4 bytes) */
1152
1.48k
    Stream_Read_INT32(s, monitor->top);    /* top (4 bytes) */
1153
1.48k
    Stream_Read_INT32(s, monitor->right);  /* right (4 bytes) */
1154
1.48k
    Stream_Read_INT32(s, monitor->bottom); /* bottom (4 bytes) */
1155
1.48k
    Stream_Read_UINT32(s, monitor->flags); /* flags (4 bytes) */
1156
1.48k
  }
1157
1158
41
  log_monitor_configuration(rdp->log, monitorDefArray, monitorCount);
1159
41
  IFCALLRET(rdp->update->RemoteMonitors, ret, rdp->context, monitorCount, monitorDefArray);
1160
41
  free(monitorDefArray);
1161
41
  if (!ret)
1162
0
    return FALSE;
1163
41
  return rdp_set_monitor_layout_pdu_state(rdp, TRUE);
1164
41
}
1165
1166
state_run_t rdp_recv_data_pdu(rdpRdp* rdp, wStream* s)
1167
10.6k
{
1168
10.6k
  BYTE type = 0;
1169
10.6k
  wStream* cs = nullptr;
1170
10.6k
  UINT16 length = 0;
1171
10.6k
  UINT32 shareId = 0;
1172
10.6k
  BYTE compressedType = 0;
1173
10.6k
  UINT16 compressedLength = 0;
1174
1175
10.6k
  WINPR_ASSERT(rdp);
1176
10.6k
  if (!rdp_read_share_data_header(rdp, s, &length, &type, &shareId, &compressedType,
1177
10.6k
                                  &compressedLength))
1178
8.54k
  {
1179
8.54k
    WLog_Print(rdp->log, WLOG_ERROR, "rdp_read_share_data_header() failed");
1180
8.54k
    return STATE_RUN_FAILED;
1181
8.54k
  }
1182
1183
2.11k
  cs = s;
1184
1185
2.11k
  if (compressedType & PACKET_COMPRESSED)
1186
295
  {
1187
295
    if (compressedLength < 18)
1188
17
    {
1189
17
      WLog_Print(rdp->log, WLOG_ERROR,
1190
17
                 "bulk_decompress: not enough bytes for compressedLength %" PRIu16 "",
1191
17
                 compressedLength);
1192
17
      return STATE_RUN_FAILED;
1193
17
    }
1194
1195
278
    UINT32 DstSize = 0;
1196
278
    const BYTE* pDstData = nullptr;
1197
278
    UINT16 SrcSize = compressedLength - 18;
1198
1199
278
    if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, SrcSize))
1200
109
    {
1201
109
      WLog_Print(rdp->log, WLOG_ERROR,
1202
109
                 "bulk_decompress: not enough bytes for compressedLength %" PRIu16 "",
1203
109
                 compressedLength);
1204
109
      return STATE_RUN_FAILED;
1205
109
    }
1206
1207
169
    if (bulk_decompress(rdp->bulk, Stream_ConstPointer(s), SrcSize, &pDstData, &DstSize,
1208
169
                        compressedType))
1209
169
    {
1210
169
      cs = transport_take_from_pool(rdp->transport, DstSize);
1211
169
      if (!cs)
1212
169
      {
1213
169
        WLog_Print(rdp->log, WLOG_ERROR, "Couldn't take stream from pool");
1214
169
        return STATE_RUN_FAILED;
1215
169
      }
1216
1217
0
      Stream_ResetPosition(cs);
1218
0
      Stream_Write(cs, pDstData, DstSize);
1219
0
      Stream_SealLength(cs);
1220
0
      Stream_ResetPosition(cs);
1221
0
    }
1222
0
    else
1223
0
    {
1224
0
      WLog_Print(rdp->log, WLOG_ERROR, "bulk_decompress() failed");
1225
0
      return STATE_RUN_FAILED;
1226
0
    }
1227
1228
0
    Stream_Seek(s, SrcSize);
1229
0
  }
1230
1231
1.81k
  WLog_Print(rdp->log, WLOG_DEBUG, "recv %s Data PDU (0x%02" PRIX8 "), length: %" PRIu16 "",
1232
1.81k
             data_pdu_type_to_string(type), type, length);
1233
1234
1.81k
  switch (type)
1235
1.81k
  {
1236
576
    case DATA_PDU_TYPE_UPDATE:
1237
576
      if (!update_recv(rdp->update, cs))
1238
558
      {
1239
558
        WLog_Print(rdp->log, WLOG_ERROR, "DATA_PDU_TYPE_UPDATE - update_recv() failed");
1240
558
        goto out_fail;
1241
558
      }
1242
1243
18
      break;
1244
1245
40
    case DATA_PDU_TYPE_CONTROL:
1246
40
      if (!rdp_recv_server_control_pdu(rdp, cs))
1247
33
      {
1248
33
        WLog_Print(rdp->log, WLOG_ERROR,
1249
33
                   "DATA_PDU_TYPE_CONTROL - rdp_recv_server_control_pdu() failed");
1250
33
        goto out_fail;
1251
33
      }
1252
1253
7
      break;
1254
1255
18
    case DATA_PDU_TYPE_POINTER:
1256
18
      if (!update_recv_pointer(rdp->update, cs))
1257
18
      {
1258
18
        WLog_Print(rdp->log, WLOG_ERROR,
1259
18
                   "DATA_PDU_TYPE_POINTER - update_recv_pointer() failed");
1260
18
        goto out_fail;
1261
18
      }
1262
1263
0
      break;
1264
1265
11
    case DATA_PDU_TYPE_SYNCHRONIZE:
1266
11
      if (!rdp_recv_server_synchronize_pdu(rdp, cs))
1267
7
      {
1268
7
        WLog_Print(rdp->log, WLOG_ERROR,
1269
7
                   "DATA_PDU_TYPE_SYNCHRONIZE - rdp_recv_synchronize_pdu() failed");
1270
7
        goto out_fail;
1271
7
      }
1272
1273
4
      break;
1274
1275
7
    case DATA_PDU_TYPE_PLAY_SOUND:
1276
7
      if (!update_recv_play_sound(rdp->update, cs))
1277
2
      {
1278
2
        WLog_Print(rdp->log, WLOG_ERROR,
1279
2
                   "DATA_PDU_TYPE_PLAY_SOUND - update_recv_play_sound() failed");
1280
2
        goto out_fail;
1281
2
      }
1282
1283
5
      break;
1284
1285
5
    case DATA_PDU_TYPE_SHUTDOWN_DENIED:
1286
3
      if (!rdp_recv_server_shutdown_denied_pdu(rdp, cs))
1287
0
      {
1288
0
        WLog_Print(
1289
0
            rdp->log, WLOG_ERROR,
1290
0
            "DATA_PDU_TYPE_SHUTDOWN_DENIED - rdp_recv_server_shutdown_denied_pdu() failed");
1291
0
        goto out_fail;
1292
0
      }
1293
1294
3
      break;
1295
1296
317
    case DATA_PDU_TYPE_SAVE_SESSION_INFO:
1297
317
      if (!rdp_recv_save_session_info(rdp, cs))
1298
265
      {
1299
265
        WLog_Print(rdp->log, WLOG_ERROR,
1300
265
                   "DATA_PDU_TYPE_SAVE_SESSION_INFO - rdp_recv_save_session_info() failed");
1301
265
        goto out_fail;
1302
265
      }
1303
1304
52
      break;
1305
1306
52
    case DATA_PDU_TYPE_FONT_MAP:
1307
40
      if (!rdp_recv_font_map_pdu(rdp, cs))
1308
0
      {
1309
0
        WLog_Print(rdp->log, WLOG_ERROR,
1310
0
                   "DATA_PDU_TYPE_FONT_MAP - rdp_recv_font_map_pdu() failed");
1311
0
        goto out_fail;
1312
0
      }
1313
1314
40
      break;
1315
1316
45
    case DATA_PDU_TYPE_SET_KEYBOARD_INDICATORS:
1317
45
      if (!rdp_recv_server_set_keyboard_indicators_pdu(rdp, cs))
1318
1
      {
1319
1
        WLog_Print(rdp->log, WLOG_ERROR,
1320
1
                   "DATA_PDU_TYPE_SET_KEYBOARD_INDICATORS - "
1321
1
                   "rdp_recv_server_set_keyboard_indicators_pdu() failed");
1322
1
        goto out_fail;
1323
1
      }
1324
1325
44
      break;
1326
1327
44
    case DATA_PDU_TYPE_SET_KEYBOARD_IME_STATUS:
1328
21
      if (!rdp_recv_server_set_keyboard_ime_status_pdu(rdp, cs))
1329
1
      {
1330
1
        WLog_Print(rdp->log, WLOG_ERROR,
1331
1
                   "DATA_PDU_TYPE_SET_KEYBOARD_IME_STATUS - "
1332
1
                   "rdp_recv_server_set_keyboard_ime_status_pdu() failed");
1333
1
        goto out_fail;
1334
1
      }
1335
1336
20
      break;
1337
1338
194
    case DATA_PDU_TYPE_SET_ERROR_INFO:
1339
194
      if (!rdp_recv_set_error_info_data_pdu(rdp, cs))
1340
1
      {
1341
1
        WLog_Print(
1342
1
            rdp->log, WLOG_ERROR,
1343
1
            "DATA_PDU_TYPE_SET_ERROR_INFO - rdp_recv_set_error_info_data_pdu() failed");
1344
1
        goto out_fail;
1345
1
      }
1346
1347
193
      break;
1348
1349
193
    case DATA_PDU_TYPE_ARC_STATUS:
1350
8
      if (!rdp_recv_server_auto_reconnect_status_pdu(rdp, cs))
1351
1
      {
1352
1
        WLog_Print(rdp->log, WLOG_ERROR,
1353
1
                   "DATA_PDU_TYPE_ARC_STATUS - "
1354
1
                   "rdp_recv_server_auto_reconnect_status_pdu() failed");
1355
1
        goto out_fail;
1356
1
      }
1357
1358
7
      break;
1359
1360
19
    case DATA_PDU_TYPE_STATUS_INFO:
1361
19
      if (!rdp_recv_server_status_info_pdu(rdp, cs))
1362
1
      {
1363
1
        WLog_Print(rdp->log, WLOG_ERROR,
1364
1
                   "DATA_PDU_TYPE_STATUS_INFO - rdp_recv_server_status_info_pdu() failed");
1365
1
        goto out_fail;
1366
1
      }
1367
1368
18
      break;
1369
1370
62
    case DATA_PDU_TYPE_MONITOR_LAYOUT:
1371
62
      if (!rdp_recv_monitor_layout_pdu(rdp, cs))
1372
22
      {
1373
22
        WLog_Print(rdp->log, WLOG_ERROR,
1374
22
                   "DATA_PDU_TYPE_MONITOR_LAYOUT - rdp_recv_monitor_layout_pdu() failed");
1375
22
        goto out_fail;
1376
22
      }
1377
1378
40
      break;
1379
1380
458
    default:
1381
458
      WLog_Print(rdp->log, WLOG_WARN,
1382
458
                 "[UNHANDLED] %s Data PDU (0x%02" PRIX8 "), length: %" PRIu16 "",
1383
458
                 data_pdu_type_to_string(type), type, length);
1384
458
      break;
1385
1.81k
  }
1386
1387
909
  if (cs != s)
1388
0
    Stream_Release(cs);
1389
1390
909
  return STATE_RUN_SUCCESS;
1391
910
out_fail:
1392
1393
910
  if (cs != s)
1394
0
    Stream_Release(cs);
1395
1396
910
  return STATE_RUN_FAILED;
1397
1.81k
}
1398
1399
state_run_t rdp_recv_message_channel_pdu(rdpRdp* rdp, wStream* s, UINT16 securityFlags)
1400
18.3k
{
1401
18.3k
  WINPR_ASSERT(rdp);
1402
18.3k
  WINPR_ASSERT(s);
1403
1404
18.3k
  if (securityFlags & SEC_AUTODETECT_REQ)
1405
0
  {
1406
    /* Server Auto-Detect Request PDU */
1407
0
    return autodetect_recv_request_packet(rdp->autodetect, RDP_TRANSPORT_TCP, s);
1408
0
  }
1409
1410
18.3k
  if (securityFlags & SEC_AUTODETECT_RSP)
1411
0
  {
1412
    /* Client Auto-Detect Response PDU */
1413
0
    return autodetect_recv_response_packet(rdp->autodetect, RDP_TRANSPORT_TCP, s);
1414
0
  }
1415
1416
18.3k
  if (securityFlags & SEC_HEARTBEAT)
1417
0
  {
1418
    /* Heartbeat PDU */
1419
0
    return rdp_recv_heartbeat_packet(rdp, s);
1420
0
  }
1421
1422
18.3k
  if (securityFlags & SEC_TRANSPORT_REQ)
1423
0
  {
1424
0
    return multitransport_recv_request(rdp->multitransport, s);
1425
0
  }
1426
1427
18.3k
  if (securityFlags & SEC_TRANSPORT_RSP)
1428
0
  {
1429
0
    return multitransport_recv_response(rdp->multitransport, s);
1430
0
  }
1431
1432
18.3k
  if (securityFlags & SEC_LICENSE_PKT)
1433
0
  {
1434
0
    return license_recv(rdp->license, s);
1435
0
  }
1436
1437
18.3k
  if (securityFlags & SEC_LICENSE_ENCRYPT_CS)
1438
0
  {
1439
0
    return license_recv(rdp->license, s);
1440
0
  }
1441
1442
18.3k
  if (securityFlags & SEC_LICENSE_ENCRYPT_SC)
1443
0
  {
1444
0
    return license_recv(rdp->license, s);
1445
0
  }
1446
1447
18.3k
  return STATE_RUN_SUCCESS;
1448
18.3k
}
1449
1450
state_run_t rdp_recv_out_of_sequence_pdu(rdpRdp* rdp, wStream* s, UINT16 pduType, UINT16 length)
1451
9.54k
{
1452
9.54k
  state_run_t rc = STATE_RUN_FAILED;
1453
9.54k
  WINPR_ASSERT(rdp);
1454
1455
9.54k
  switch (pduType)
1456
9.54k
  {
1457
1.11k
    case PDU_TYPE_DATA:
1458
1.11k
      rc = rdp_recv_data_pdu(rdp, s);
1459
1.11k
      break;
1460
135
    case PDU_TYPE_SERVER_REDIRECTION:
1461
135
      rc = rdp_recv_enhanced_security_redirection_packet(rdp, s);
1462
135
      break;
1463
1
    case PDU_TYPE_FLOW_RESPONSE:
1464
3
    case PDU_TYPE_FLOW_STOP:
1465
4
    case PDU_TYPE_FLOW_TEST:
1466
4
      rc = STATE_RUN_SUCCESS;
1467
4
      break;
1468
8.29k
    default:
1469
8.29k
    {
1470
8.29k
      char buffer1[256] = WINPR_C_ARRAY_INIT;
1471
8.29k
      char buffer2[256] = WINPR_C_ARRAY_INIT;
1472
1473
8.29k
      WLog_Print(rdp->log, WLOG_ERROR, "expected %s, got %s",
1474
8.29k
                 pdu_type_to_str(PDU_TYPE_DEMAND_ACTIVE, buffer1, sizeof(buffer1)),
1475
8.29k
                 pdu_type_to_str(pduType, buffer2, sizeof(buffer2)));
1476
8.29k
      rc = STATE_RUN_FAILED;
1477
8.29k
    }
1478
8.29k
    break;
1479
9.54k
  }
1480
1481
9.54k
  if (!tpkt_ensure_stream_consumed(rdp->log, s, length))
1482
6.10k
    return STATE_RUN_FAILED;
1483
3.44k
  return rc;
1484
9.54k
}
1485
1486
BOOL rdp_read_flow_control_pdu(rdpRdp* rdp, wStream* s, UINT16* type, UINT16* channel_id)
1487
81
{
1488
  /*
1489
   * Read flow control PDU - documented in FlowPDU section in T.128
1490
   * http://www.itu.int/rec/T-REC-T.128-199802-S/en
1491
   * The specification for the PDU has pad8bits listed BEFORE pduTypeFlow.
1492
   * However, so far pad8bits has always been observed to arrive AFTER pduTypeFlow.
1493
   * Switched the order of these two fields to match this observation.
1494
   */
1495
81
  UINT8 pduType = 0;
1496
1497
81
  WINPR_ASSERT(rdp);
1498
81
  WINPR_ASSERT(s);
1499
81
  WINPR_ASSERT(type);
1500
81
  WINPR_ASSERT(channel_id);
1501
1502
81
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 6))
1503
11
    return FALSE;
1504
70
  Stream_Read_UINT8(s, pduType); /* pduTypeFlow */
1505
70
  *type = pduType;
1506
70
  Stream_Seek_UINT8(s);               /* pad8bits */
1507
70
  Stream_Seek_UINT8(s);               /* flowIdentifier */
1508
70
  Stream_Seek_UINT8(s);               /* flowNumber */
1509
70
  Stream_Read_UINT16(s, *channel_id); /* pduSource */
1510
70
  return TRUE;
1511
81
}
1512
1513
/**
1514
 * Decrypt an RDP packet.
1515
 *
1516
 * @param rdp RDP module
1517
 * @param s stream
1518
 * @param pLength A pointer to the result variable, must not be nullptr
1519
 * @param securityFlags the security flags to apply
1520
 *
1521
 * @return \b TRUE for success, \b FALSE otherwise
1522
 */
1523
1524
BOOL rdp_decrypt(rdpRdp* rdp, wStream* s, UINT16* pLength, UINT16 securityFlags)
1525
2.33k
{
1526
2.33k
  BOOL res = FALSE;
1527
2.33k
  BYTE cmac[8] = WINPR_C_ARRAY_INIT;
1528
2.33k
  BYTE wmac[8] = WINPR_C_ARRAY_INIT;
1529
2.33k
  BOOL status = FALSE;
1530
1531
2.33k
  WINPR_ASSERT(rdp);
1532
2.33k
  WINPR_ASSERT(rdp->settings);
1533
2.33k
  WINPR_ASSERT(s);
1534
2.33k
  WINPR_ASSERT(pLength);
1535
1536
2.33k
  security_lock(rdp);
1537
1538
2.33k
  INT32 length = *pLength;
1539
2.33k
  if (rdp->settings->EncryptionMethods == ENCRYPTION_METHOD_NONE)
1540
2.33k
  {
1541
2.33k
    res = TRUE;
1542
2.33k
    goto unlock;
1543
2.33k
  }
1544
1545
0
  if (rdp->settings->EncryptionMethods == ENCRYPTION_METHOD_FIPS)
1546
0
  {
1547
0
    if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 12))
1548
0
      goto unlock;
1549
1550
0
    UINT16 len = 0;
1551
0
    Stream_Read_UINT16(s, len); /* 0x10 */
1552
0
    if (len != 0x10)
1553
0
      WLog_Print(rdp->log, WLOG_WARN, "ENCRYPTION_METHOD_FIPS length %" PRIu16 " != 0x10",
1554
0
                 len);
1555
1556
0
    UINT16 version = 0;
1557
0
    Stream_Read_UINT8(s, version); /* 0x1 */
1558
0
    if (version != 1)
1559
0
      WLog_Print(rdp->log, WLOG_WARN, "ENCRYPTION_METHOD_FIPS version %" PRIu16 " != 1",
1560
0
                 version);
1561
1562
0
    BYTE pad = 0;
1563
0
    Stream_Read_UINT8(s, pad);
1564
0
    const BYTE* sig = Stream_ConstPointer(s);
1565
0
    Stream_Seek(s, 8); /* signature */
1566
0
    length -= 12;
1567
0
    const INT32 padLength = length - pad;
1568
1569
0
    if ((length <= 0) || (padLength <= 0) || (padLength > UINT16_MAX))
1570
0
    {
1571
0
      WLog_Print(rdp->log, WLOG_ERROR, "FATAL: invalid pad length %" PRId32, padLength);
1572
0
      goto unlock;
1573
0
    }
1574
1575
0
    if (!security_fips_decrypt(Stream_Pointer(s), (size_t)length, rdp))
1576
0
      goto unlock;
1577
1578
0
    if (!security_fips_check_signature(Stream_ConstPointer(s), (size_t)padLength, sig, 8, rdp))
1579
0
      goto unlock;
1580
1581
0
    if (!Stream_SetLength(s, Stream_Length(s) - pad))
1582
0
      goto unlock;
1583
1584
0
    *pLength = (UINT16)padLength;
1585
0
  }
1586
0
  else
1587
0
  {
1588
0
    if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, sizeof(wmac)))
1589
0
      goto unlock;
1590
1591
0
    Stream_Read(s, wmac, sizeof(wmac));
1592
0
    length -= sizeof(wmac);
1593
1594
0
    if (length <= 0)
1595
0
    {
1596
0
      WLog_Print(rdp->log, WLOG_ERROR, "FATAL: invalid length field");
1597
0
      goto unlock;
1598
0
    }
1599
1600
0
    if (!security_decrypt(Stream_PointerAs(s, BYTE), (size_t)length, rdp))
1601
0
      goto unlock;
1602
1603
0
    if (securityFlags & SEC_SECURE_CHECKSUM)
1604
0
      status = security_salted_mac_signature(rdp, Stream_ConstPointer(s), (UINT32)length,
1605
0
                                             FALSE, cmac, sizeof(cmac));
1606
0
    else
1607
0
      status = security_mac_signature(rdp, Stream_ConstPointer(s), (UINT32)length, cmac,
1608
0
                                      sizeof(cmac));
1609
1610
0
    if (!status)
1611
0
      goto unlock;
1612
1613
0
    if (memcmp(wmac, cmac, sizeof(wmac)) != 0)
1614
0
    {
1615
0
      WLog_Print(rdp->log, WLOG_ERROR, "WARNING: invalid packet signature");
1616
      /*
1617
       * Because Standard RDP Security is totally broken,
1618
       * and cannot protect against MITM, don't treat signature
1619
       * verification failure as critical. This at least enables
1620
       * us to work with broken RDP clients and servers that
1621
       * generate invalid signatures.
1622
       */
1623
      // return FALSE;
1624
0
    }
1625
1626
0
    *pLength = (UINT16)length;
1627
0
  }
1628
0
  res = TRUE;
1629
2.33k
unlock:
1630
2.33k
  security_unlock(rdp);
1631
2.33k
  return res;
1632
0
}
1633
1634
const char* pdu_type_to_str(UINT16 pduType, char* buffer, size_t length)
1635
16.5k
{
1636
16.5k
  const char* str = nullptr;
1637
16.5k
  switch (pduType)
1638
16.5k
  {
1639
8.44k
    case PDU_TYPE_DEMAND_ACTIVE:
1640
8.44k
      str = "PDU_TYPE_DEMAND_ACTIVE";
1641
8.44k
      break;
1642
56
    case PDU_TYPE_CONFIRM_ACTIVE:
1643
56
      str = "PDU_TYPE_CONFIRM_ACTIVE";
1644
56
      break;
1645
47
    case PDU_TYPE_DEACTIVATE_ALL:
1646
47
      str = "PDU_TYPE_DEACTIVATE_ALL";
1647
47
      break;
1648
0
    case PDU_TYPE_DATA:
1649
0
      str = "PDU_TYPE_DATA";
1650
0
      break;
1651
0
    case PDU_TYPE_SERVER_REDIRECTION:
1652
0
      str = "PDU_TYPE_SERVER_REDIRECTION";
1653
0
      break;
1654
0
    case PDU_TYPE_FLOW_TEST:
1655
0
      str = "PDU_TYPE_FLOW_TEST";
1656
0
      break;
1657
0
    case PDU_TYPE_FLOW_RESPONSE:
1658
0
      str = "PDU_TYPE_FLOW_RESPONSE";
1659
0
      break;
1660
0
    case PDU_TYPE_FLOW_STOP:
1661
0
      str = "PDU_TYPE_FLOW_STOP";
1662
0
      break;
1663
8.04k
    default:
1664
8.04k
      str = "PDU_TYPE_UNKNOWN";
1665
8.04k
      break;
1666
16.5k
  }
1667
1668
16.5k
  winpr_str_append(str, buffer, length, "");
1669
16.5k
  {
1670
16.5k
    char msg[32] = WINPR_C_ARRAY_INIT;
1671
16.5k
    (void)_snprintf(msg, sizeof(msg), "[0x%08" PRIx32 "]", pduType);
1672
16.5k
    winpr_str_append(msg, buffer, length, "");
1673
16.5k
  }
1674
16.5k
  return buffer;
1675
16.5k
}
1676
1677
/**
1678
 * Process an RDP packet.
1679
 * @param rdp RDP module
1680
 * @param s stream
1681
 */
1682
1683
static state_run_t rdp_recv_tpkt_pdu(rdpRdp* rdp, wStream* s)
1684
0
{
1685
0
  state_run_t rc = STATE_RUN_SUCCESS;
1686
0
  UINT16 length = 0;
1687
0
  UINT16 pduType = 0;
1688
0
  UINT16 pduSource = 0;
1689
0
  UINT16 channelId = 0;
1690
0
  UINT16 securityFlags = 0;
1691
1692
0
  WINPR_ASSERT(rdp);
1693
0
  WINPR_ASSERT(rdp->context);
1694
0
  WINPR_ASSERT(s);
1695
1696
0
  freerdp* instance = rdp->context->instance;
1697
0
  WINPR_ASSERT(instance);
1698
1699
0
  if (!rdp_read_header(rdp, s, &length, &channelId))
1700
0
    return STATE_RUN_FAILED;
1701
1702
0
  if (freerdp_shall_disconnect_context(rdp->context))
1703
0
    return STATE_RUN_SUCCESS;
1704
1705
0
  if (rdp->autodetect->bandwidthMeasureStarted)
1706
0
  {
1707
0
    rdp->autodetect->bandwidthMeasureByteCount += length;
1708
0
  }
1709
1710
0
  if (rdp->mcs->messageChannelId && (channelId == rdp->mcs->messageChannelId))
1711
0
  {
1712
0
    rdp->inPackets++;
1713
0
    return rdp_handle_message_channel(rdp, s, channelId, length);
1714
0
  }
1715
1716
0
  if (rdp->settings->UseRdpSecurityLayer)
1717
0
  {
1718
0
    if (!rdp_read_security_header(rdp, s, &securityFlags, &length))
1719
0
      return STATE_RUN_FAILED;
1720
1721
0
    if (securityFlags & (SEC_ENCRYPT | SEC_REDIRECTION_PKT))
1722
0
    {
1723
0
      if (!rdp_decrypt(rdp, s, &length, securityFlags))
1724
0
        return STATE_RUN_FAILED;
1725
0
    }
1726
1727
0
    if (securityFlags & SEC_REDIRECTION_PKT)
1728
0
    {
1729
      /*
1730
       * [MS-RDPBCGR] 2.2.13.2.1
1731
       *  - no share control header, nor the 2 byte pad
1732
       */
1733
0
      Stream_Rewind(s, 2);
1734
0
      rdp->inPackets++;
1735
1736
0
      rc = rdp_recv_enhanced_security_redirection_packet(rdp, s);
1737
0
      goto out;
1738
0
    }
1739
0
  }
1740
1741
0
  if (channelId == MCS_GLOBAL_CHANNEL_ID)
1742
0
  {
1743
0
    while (Stream_GetRemainingLength(s) > 3)
1744
0
    {
1745
0
      wStream subbuffer;
1746
0
      wStream* sub = nullptr;
1747
0
      size_t diff = 0;
1748
0
      UINT16 remain = 0;
1749
1750
0
      if (!rdp_read_share_control_header(rdp, s, nullptr, &remain, &pduType, &pduSource))
1751
0
        return STATE_RUN_FAILED;
1752
1753
0
      sub = Stream_StaticInit(&subbuffer, Stream_Pointer(s), remain);
1754
0
      if (!Stream_SafeSeek(s, remain))
1755
0
        return STATE_RUN_FAILED;
1756
1757
0
      rdp->settings->PduSource = pduSource;
1758
0
      rdp->inPackets++;
1759
1760
0
      switch (pduType)
1761
0
      {
1762
0
        case PDU_TYPE_DATA:
1763
0
          rc = rdp_recv_data_pdu(rdp, sub);
1764
0
          if (state_run_failed(rc))
1765
0
            return rc;
1766
0
          break;
1767
1768
0
        case PDU_TYPE_DEACTIVATE_ALL:
1769
0
          if (!rdp_recv_deactivate_all(rdp, sub))
1770
0
          {
1771
0
            WLog_Print(rdp->log, WLOG_ERROR,
1772
0
                       "rdp_recv_tpkt_pdu: rdp_recv_deactivate_all() fail");
1773
0
            return STATE_RUN_FAILED;
1774
0
          }
1775
1776
0
          break;
1777
1778
0
        case PDU_TYPE_SERVER_REDIRECTION:
1779
0
          return rdp_recv_enhanced_security_redirection_packet(rdp, sub);
1780
1781
0
        case PDU_TYPE_FLOW_RESPONSE:
1782
0
        case PDU_TYPE_FLOW_STOP:
1783
0
        case PDU_TYPE_FLOW_TEST:
1784
0
          WLog_Print(rdp->log, WLOG_DEBUG, "flow message 0x%04" PRIX16 "", pduType);
1785
          /* http://msdn.microsoft.com/en-us/library/cc240576.aspx */
1786
0
          if (!Stream_SafeSeek(sub, remain))
1787
0
            return STATE_RUN_FAILED;
1788
0
          break;
1789
1790
0
        default:
1791
0
        {
1792
0
          char buffer[256] = WINPR_C_ARRAY_INIT;
1793
0
          WLog_Print(rdp->log, WLOG_ERROR, "incorrect PDU type: %s",
1794
0
                     pdu_type_to_str(pduType, buffer, sizeof(buffer)));
1795
0
        }
1796
0
        break;
1797
0
      }
1798
1799
0
      diff = Stream_GetRemainingLength(sub);
1800
0
      if (diff > 0)
1801
0
      {
1802
0
        char buffer[256] = WINPR_C_ARRAY_INIT;
1803
0
        WLog_Print(rdp->log, WLOG_WARN,
1804
0
                   "pduType %s not properly parsed, %" PRIuz
1805
0
                   " bytes remaining unhandled. Skipping.",
1806
0
                   pdu_type_to_str(pduType, buffer, sizeof(buffer)), diff);
1807
0
      }
1808
0
    }
1809
0
  }
1810
0
  else
1811
0
  {
1812
0
    rdp->inPackets++;
1813
1814
0
    if (!freerdp_channel_process(instance, s, channelId, length))
1815
0
      return STATE_RUN_FAILED;
1816
0
  }
1817
1818
0
out:
1819
0
  if (!tpkt_ensure_stream_consumed(rdp->log, s, length))
1820
0
    return STATE_RUN_FAILED;
1821
0
  return rc;
1822
0
}
1823
1824
static state_run_t rdp_recv_fastpath_pdu(rdpRdp* rdp, wStream* s)
1825
0
{
1826
0
  UINT16 length = 0;
1827
1828
0
  WINPR_ASSERT(rdp);
1829
0
  rdpFastPath* fastpath = rdp->fastpath;
1830
1831
0
  if (!fastpath_read_header_rdp(fastpath, s, &length))
1832
0
  {
1833
0
    WLog_Print(rdp->log, WLOG_ERROR, "rdp_recv_fastpath_pdu: fastpath_read_header_rdp() fail");
1834
0
    return STATE_RUN_FAILED;
1835
0
  }
1836
1837
0
  if ((length == 0) || (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, length)))
1838
0
  {
1839
0
    WLog_Print(rdp->log, WLOG_ERROR, "incorrect FastPath PDU header length %" PRIu16 "",
1840
0
               length);
1841
0
    return STATE_RUN_FAILED;
1842
0
  }
1843
1844
0
  if (rdp->autodetect->bandwidthMeasureStarted)
1845
0
  {
1846
0
    rdp->autodetect->bandwidthMeasureByteCount += length;
1847
0
  }
1848
1849
0
  if (!fastpath_decrypt(fastpath, s, &length))
1850
0
    return STATE_RUN_FAILED;
1851
1852
0
  return fastpath_recv_updates(rdp->fastpath, s);
1853
0
}
1854
1855
static state_run_t rdp_recv_pdu(rdpRdp* rdp, wStream* s)
1856
0
{
1857
0
  const int rc = tpkt_verify_header(s);
1858
0
  if (rc > 0)
1859
0
    return rdp_recv_tpkt_pdu(rdp, s);
1860
0
  else if (rc == 0)
1861
0
    return rdp_recv_fastpath_pdu(rdp, s);
1862
0
  else
1863
0
    return STATE_RUN_FAILED;
1864
0
}
1865
1866
static state_run_t rdp_handle_sc_flags(rdpRdp* rdp, wStream* s, UINT32 flag,
1867
                                       CONNECTION_STATE nextState)
1868
0
{
1869
0
  const UINT32 mask = FINALIZE_SC_SYNCHRONIZE_PDU | FINALIZE_SC_CONTROL_COOPERATE_PDU |
1870
0
                      FINALIZE_SC_CONTROL_GRANTED_PDU | FINALIZE_SC_FONT_MAP_PDU;
1871
0
  WINPR_ASSERT(rdp);
1872
0
  state_run_t status = rdp_recv_pdu(rdp, s);
1873
0
  if (state_run_success(status))
1874
0
  {
1875
0
    const UINT32 flags = rdp->finalize_sc_pdus & mask;
1876
0
    if ((flags & flag) == flag)
1877
0
    {
1878
0
      if (!rdp_client_transition_to_state(rdp, nextState))
1879
0
        status = STATE_RUN_FAILED;
1880
0
      else
1881
0
        status = STATE_RUN_SUCCESS;
1882
0
    }
1883
0
    else
1884
0
    {
1885
0
      char flag_buffer[256] = WINPR_C_ARRAY_INIT;
1886
0
      char mask_buffer[256] = WINPR_C_ARRAY_INIT;
1887
0
      WLog_Print(rdp->log, WLOG_WARN,
1888
0
                 "[%s] unexpected server message, expected flag %s [have %s]",
1889
0
                 rdp_get_state_string(rdp),
1890
0
                 rdp_finalize_flags_to_str(flag, flag_buffer, sizeof(flag_buffer)),
1891
0
                 rdp_finalize_flags_to_str(flags, mask_buffer, sizeof(mask_buffer)));
1892
0
    }
1893
0
  }
1894
0
  return status;
1895
0
}
1896
1897
static state_run_t rdp_client_exchange_monitor_layout(rdpRdp* rdp, wStream* s)
1898
0
{
1899
0
  WINPR_ASSERT(rdp);
1900
1901
0
  if (!rdp_check_monitor_layout_pdu_state(rdp, FALSE))
1902
0
    return STATE_RUN_FAILED;
1903
1904
  /* We might receive unrelated messages from the server (channel traffic),
1905
   * so only proceed if some flag changed
1906
   */
1907
0
  const UINT32 old = rdp->finalize_sc_pdus;
1908
0
  state_run_t status = rdp_recv_pdu(rdp, s);
1909
0
  const UINT32 now = rdp->finalize_sc_pdus;
1910
0
  const BOOL changed = (old != now) || rdp->monitor_layout_pdu;
1911
1912
  /* This PDU is optional, so if we received a finalize PDU continue there */
1913
0
  if (state_run_success(status) && changed)
1914
0
  {
1915
0
    if (!rdp->monitor_layout_pdu)
1916
0
    {
1917
0
      if (!rdp_finalize_is_flag_set(rdp, FINALIZE_SC_SYNCHRONIZE_PDU))
1918
0
        return STATE_RUN_FAILED;
1919
0
    }
1920
1921
0
    status = rdp_client_connect_finalize(rdp);
1922
0
    if (state_run_success(status) && !rdp->monitor_layout_pdu)
1923
0
      status = STATE_RUN_TRY_AGAIN;
1924
0
  }
1925
0
  return status;
1926
0
}
1927
1928
static state_run_t rdp_recv_callback_int(WINPR_ATTR_UNUSED rdpTransport* transport, wStream* s,
1929
                                         void* extra)
1930
9.54k
{
1931
9.54k
  state_run_t status = STATE_RUN_SUCCESS;
1932
9.54k
  rdpRdp* rdp = (rdpRdp*)extra;
1933
1934
9.54k
  WINPR_ASSERT(transport);
1935
9.54k
  WINPR_ASSERT(rdp);
1936
9.54k
  WINPR_ASSERT(s);
1937
1938
9.54k
  switch (rdp_get_state(rdp))
1939
9.54k
  {
1940
0
    case CONNECTION_STATE_NEGO:
1941
0
      if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_CREATE_REQUEST))
1942
0
        status = STATE_RUN_FAILED;
1943
0
      else
1944
0
        status = STATE_RUN_CONTINUE;
1945
0
      break;
1946
0
    case CONNECTION_STATE_NLA:
1947
0
      if (nla_get_state(rdp->nla) < NLA_STATE_AUTH_INFO)
1948
0
      {
1949
0
        if (nla_recv_pdu(rdp->nla, s) < 1)
1950
0
        {
1951
0
          WLog_Print(rdp->log, WLOG_ERROR, "%s - nla_recv_pdu() fail",
1952
0
                     rdp_get_state_string(rdp));
1953
0
          status = STATE_RUN_FAILED;
1954
0
        }
1955
0
      }
1956
0
      else if (nla_get_state(rdp->nla) == NLA_STATE_POST_NEGO)
1957
0
      {
1958
0
        if (nego_recv(rdp->transport, s, (void*)rdp->nego) < 0)
1959
0
          return STATE_RUN_FAILED;
1960
1961
0
        if (!nego_update_settings_from_state(rdp->nego, rdp->settings))
1962
0
          return STATE_RUN_FAILED;
1963
1964
0
        if (nego_get_state(rdp->nego) != NEGO_STATE_FINAL)
1965
0
        {
1966
0
          WLog_Print(rdp->log, WLOG_ERROR, "%s - nego_recv() fail",
1967
0
                     rdp_get_state_string(rdp));
1968
0
          status = STATE_RUN_FAILED;
1969
0
        }
1970
0
        else if (!nla_set_state(rdp->nla, NLA_STATE_FINAL))
1971
0
          status = STATE_RUN_FAILED;
1972
0
      }
1973
1974
0
      if (state_run_success(status))
1975
0
      {
1976
0
        if (nla_get_state(rdp->nla) == NLA_STATE_AUTH_INFO)
1977
0
        {
1978
0
          transport_set_nla_mode(rdp->transport, FALSE);
1979
1980
0
          if (rdp->settings->VmConnectMode)
1981
0
          {
1982
0
            if (!nego_set_state(rdp->nego, NEGO_STATE_NLA))
1983
0
              status = STATE_RUN_FAILED;
1984
0
            else if (!nego_set_requested_protocols(rdp->nego,
1985
0
                                                   PROTOCOL_HYBRID | PROTOCOL_SSL))
1986
0
              status = STATE_RUN_FAILED;
1987
0
            else if (!nego_send_negotiation_request(rdp->nego))
1988
0
              status = STATE_RUN_FAILED;
1989
0
            else if (!nla_set_state(rdp->nla, NLA_STATE_POST_NEGO))
1990
0
              status = STATE_RUN_FAILED;
1991
0
          }
1992
0
          else
1993
0
          {
1994
0
            if (!nla_set_state(rdp->nla, NLA_STATE_FINAL))
1995
0
              status = STATE_RUN_FAILED;
1996
0
          }
1997
0
        }
1998
0
      }
1999
0
      if (state_run_success(status))
2000
0
      {
2001
2002
0
        if (nla_get_state(rdp->nla) == NLA_STATE_FINAL)
2003
0
        {
2004
0
          if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_CREATE_REQUEST))
2005
0
            status = STATE_RUN_FAILED;
2006
0
          else
2007
0
            status = STATE_RUN_CONTINUE;
2008
0
        }
2009
0
      }
2010
0
      break;
2011
2012
0
    case CONNECTION_STATE_AAD:
2013
0
      if (aad_recv(rdp->aad, s) < 1)
2014
0
      {
2015
0
        WLog_Print(rdp->log, WLOG_ERROR, "%s - aad_recv() fail", rdp_get_state_string(rdp));
2016
0
        status = STATE_RUN_FAILED;
2017
0
      }
2018
0
      if (state_run_success(status))
2019
0
      {
2020
0
        if (aad_get_state(rdp->aad) == AAD_STATE_FINAL)
2021
0
        {
2022
0
          transport_set_aad_mode(rdp->transport, FALSE);
2023
0
          if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_CREATE_REQUEST))
2024
0
            status = STATE_RUN_FAILED;
2025
0
          else
2026
0
            status = STATE_RUN_CONTINUE;
2027
0
        }
2028
0
      }
2029
0
      break;
2030
2031
0
    case CONNECTION_STATE_MCS_CREATE_REQUEST:
2032
0
      if (!mcs_client_begin(rdp->mcs))
2033
0
      {
2034
0
        WLog_Print(rdp->log, WLOG_ERROR, "%s - mcs_client_begin() fail",
2035
0
                   rdp_get_state_string(rdp));
2036
0
        status = STATE_RUN_FAILED;
2037
0
      }
2038
0
      else if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_CREATE_RESPONSE))
2039
0
        status = STATE_RUN_FAILED;
2040
0
      else if (Stream_GetRemainingLength(s) > 0)
2041
0
        status = STATE_RUN_CONTINUE;
2042
0
      break;
2043
2044
0
    case CONNECTION_STATE_MCS_CREATE_RESPONSE:
2045
0
      if (!mcs_recv_connect_response(rdp->mcs, s))
2046
0
      {
2047
0
        WLog_Print(rdp->log, WLOG_ERROR, "mcs_recv_connect_response failure");
2048
0
        status = STATE_RUN_FAILED;
2049
0
      }
2050
0
      else
2051
0
      {
2052
0
        if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_ERECT_DOMAIN))
2053
0
          status = STATE_RUN_FAILED;
2054
0
        else if (!mcs_send_erect_domain_request(rdp->mcs))
2055
0
        {
2056
0
          WLog_Print(rdp->log, WLOG_ERROR, "mcs_send_erect_domain_request failure");
2057
0
          status = STATE_RUN_FAILED;
2058
0
        }
2059
0
        else if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_ATTACH_USER))
2060
0
          status = STATE_RUN_FAILED;
2061
0
        else if (!mcs_send_attach_user_request(rdp->mcs))
2062
0
        {
2063
0
          WLog_Print(rdp->log, WLOG_ERROR, "mcs_send_attach_user_request failure");
2064
0
          status = STATE_RUN_FAILED;
2065
0
        }
2066
0
        else if (!rdp_client_transition_to_state(rdp,
2067
0
                                                 CONNECTION_STATE_MCS_ATTACH_USER_CONFIRM))
2068
0
          status = STATE_RUN_FAILED;
2069
0
      }
2070
0
      break;
2071
2072
0
    case CONNECTION_STATE_MCS_ATTACH_USER_CONFIRM:
2073
0
      if (!mcs_recv_attach_user_confirm(rdp->mcs, s))
2074
0
      {
2075
0
        WLog_Print(rdp->log, WLOG_ERROR, "mcs_recv_attach_user_confirm failure");
2076
0
        status = STATE_RUN_FAILED;
2077
0
      }
2078
0
      else if (!freerdp_settings_get_bool(rdp->settings, FreeRDP_SupportSkipChannelJoin))
2079
0
      {
2080
0
        if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_CHANNEL_JOIN_REQUEST))
2081
0
          status = STATE_RUN_FAILED;
2082
0
        else if (!mcs_send_channel_join_request(rdp->mcs, rdp->mcs->userId))
2083
0
        {
2084
0
          WLog_Print(rdp->log, WLOG_ERROR, "mcs_send_channel_join_request failure");
2085
0
          status = STATE_RUN_FAILED;
2086
0
        }
2087
0
        else if (!rdp_client_transition_to_state(
2088
0
                     rdp, CONNECTION_STATE_MCS_CHANNEL_JOIN_RESPONSE))
2089
0
          status = STATE_RUN_FAILED;
2090
0
      }
2091
0
      else
2092
0
      {
2093
        /* SKIP_CHANNELJOIN is active, consider channels to be joined */
2094
0
        if (!rdp_client_skip_mcs_channel_join(rdp))
2095
0
          status = STATE_RUN_FAILED;
2096
0
      }
2097
0
      break;
2098
2099
0
    case CONNECTION_STATE_MCS_CHANNEL_JOIN_RESPONSE:
2100
0
      if (!rdp_client_connect_mcs_channel_join_confirm(rdp, s))
2101
0
      {
2102
0
        WLog_Print(rdp->log, WLOG_ERROR,
2103
0
                   "%s - "
2104
0
                   "rdp_client_connect_mcs_channel_join_confirm() fail",
2105
0
                   rdp_get_state_string(rdp));
2106
0
        status = STATE_RUN_FAILED;
2107
0
      }
2108
2109
0
      break;
2110
2111
0
    case CONNECTION_STATE_CONNECT_TIME_AUTO_DETECT_REQUEST:
2112
0
      if (!rdp_client_connect_auto_detect(rdp, s, WLOG_DEBUG))
2113
0
      {
2114
0
        if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_LICENSING))
2115
0
          status = STATE_RUN_FAILED;
2116
0
        else
2117
0
          status = STATE_RUN_TRY_AGAIN;
2118
0
      }
2119
0
      break;
2120
2121
0
    case CONNECTION_STATE_LICENSING:
2122
0
      status = rdp_client_connect_license(rdp, s);
2123
2124
0
      if (state_run_failed(status))
2125
0
      {
2126
0
        char buffer[64] = WINPR_C_ARRAY_INIT;
2127
0
        WLog_Print(rdp->log, WLOG_DEBUG, "%s - rdp_client_connect_license() - %s",
2128
0
                   rdp_get_state_string(rdp),
2129
0
                   state_run_result_string(status, buffer, ARRAYSIZE(buffer)));
2130
0
      }
2131
2132
0
      break;
2133
2134
0
    case CONNECTION_STATE_MULTITRANSPORT_BOOTSTRAPPING_REQUEST:
2135
0
      if (!rdp_client_connect_auto_detect(rdp, s, WLOG_DEBUG))
2136
0
      {
2137
0
        if (!rdp_client_transition_to_state(
2138
0
                rdp, CONNECTION_STATE_CAPABILITIES_EXCHANGE_DEMAND_ACTIVE))
2139
0
          status = STATE_RUN_FAILED;
2140
0
        else
2141
0
          status = STATE_RUN_TRY_AGAIN;
2142
0
      }
2143
0
      break;
2144
2145
0
    case CONNECTION_STATE_CAPABILITIES_EXCHANGE_DEMAND_ACTIVE:
2146
0
      status = rdp_client_connect_demand_active(rdp, s);
2147
2148
0
      if (state_run_failed(status))
2149
0
      {
2150
0
        char buffer[64] = WINPR_C_ARRAY_INIT;
2151
0
        WLog_Print(rdp->log, WLOG_DEBUG,
2152
0
                   "%s - "
2153
0
                   "rdp_client_connect_demand_active() - %s",
2154
0
                   rdp_get_state_string(rdp),
2155
0
                   state_run_result_string(status, buffer, ARRAYSIZE(buffer)));
2156
0
      }
2157
0
      else if (status == STATE_RUN_ACTIVE)
2158
0
      {
2159
0
        if (!rdp_client_transition_to_state(
2160
0
                rdp, CONNECTION_STATE_CAPABILITIES_EXCHANGE_CONFIRM_ACTIVE))
2161
0
          status = STATE_RUN_FAILED;
2162
0
        else
2163
0
          status = STATE_RUN_CONTINUE;
2164
0
      }
2165
0
      break;
2166
2167
0
    case CONNECTION_STATE_CAPABILITIES_EXCHANGE_MONITOR_LAYOUT:
2168
0
      status = rdp_client_exchange_monitor_layout(rdp, s);
2169
0
      break;
2170
2171
0
    case CONNECTION_STATE_CAPABILITIES_EXCHANGE_CONFIRM_ACTIVE:
2172
0
      status = rdp_client_connect_confirm_active(rdp, s);
2173
0
      break;
2174
2175
0
    case CONNECTION_STATE_FINALIZATION_CLIENT_SYNC:
2176
0
      status = rdp_handle_sc_flags(rdp, s, FINALIZE_SC_SYNCHRONIZE_PDU,
2177
0
                                   CONNECTION_STATE_FINALIZATION_CLIENT_COOPERATE);
2178
0
      break;
2179
0
    case CONNECTION_STATE_FINALIZATION_CLIENT_COOPERATE:
2180
0
      status = rdp_handle_sc_flags(rdp, s, FINALIZE_SC_CONTROL_COOPERATE_PDU,
2181
0
                                   CONNECTION_STATE_FINALIZATION_CLIENT_GRANTED_CONTROL);
2182
0
      break;
2183
0
    case CONNECTION_STATE_FINALIZATION_CLIENT_GRANTED_CONTROL:
2184
0
      status = rdp_handle_sc_flags(rdp, s, FINALIZE_SC_CONTROL_GRANTED_PDU,
2185
0
                                   CONNECTION_STATE_FINALIZATION_CLIENT_FONT_MAP);
2186
0
      break;
2187
0
    case CONNECTION_STATE_FINALIZATION_CLIENT_FONT_MAP:
2188
0
      status = rdp_handle_sc_flags(rdp, s, FINALIZE_SC_FONT_MAP_PDU, CONNECTION_STATE_ACTIVE);
2189
0
      break;
2190
2191
0
    case CONNECTION_STATE_ACTIVE:
2192
0
      status = rdp_recv_pdu(rdp, s);
2193
2194
0
      if (state_run_failed(status))
2195
0
      {
2196
0
        char buffer[64] = WINPR_C_ARRAY_INIT;
2197
0
        WLog_Print(rdp->log, WLOG_DEBUG, "%s - rdp_recv_pdu() - %s",
2198
0
                   rdp_get_state_string(rdp),
2199
0
                   state_run_result_string(status, buffer, ARRAYSIZE(buffer)));
2200
0
      }
2201
0
      break;
2202
2203
9.54k
    default:
2204
9.54k
      WLog_Print(rdp->log, WLOG_ERROR, "%s state %u", rdp_get_state_string(rdp),
2205
9.54k
                 rdp_get_state(rdp));
2206
9.54k
      status = STATE_RUN_FAILED;
2207
9.54k
      break;
2208
9.54k
  }
2209
2210
9.54k
  if (state_run_failed(status))
2211
9.54k
  {
2212
9.54k
    char buffer[64] = WINPR_C_ARRAY_INIT;
2213
9.54k
    WLog_Print(rdp->log, WLOG_ERROR, "%s status %s", rdp_get_state_string(rdp),
2214
9.54k
               state_run_result_string(status, buffer, ARRAYSIZE(buffer)));
2215
9.54k
  }
2216
9.54k
  return status;
2217
9.54k
}
2218
2219
state_run_t rdp_recv_callback(rdpTransport* transport, wStream* s, void* extra)
2220
9.54k
{
2221
9.54k
  char buffer[64] = WINPR_C_ARRAY_INIT;
2222
9.54k
  state_run_t rc = STATE_RUN_FAILED;
2223
9.54k
  const size_t start = Stream_GetPosition(s);
2224
9.54k
  const rdpContext* context = transport_get_context(transport);
2225
2226
9.54k
  WINPR_ASSERT(context);
2227
9.54k
  do
2228
9.54k
  {
2229
9.54k
    const rdpRdp* rdp = context->rdp;
2230
9.54k
    WINPR_ASSERT(rdp);
2231
2232
9.54k
    if (rc == STATE_RUN_TRY_AGAIN)
2233
0
    {
2234
0
      if (!Stream_SetPosition(s, start))
2235
0
        return STATE_RUN_FAILED;
2236
0
    }
2237
2238
9.54k
    const char* old = rdp_get_state_string(rdp);
2239
9.54k
    const size_t orem = Stream_GetRemainingLength(s);
2240
9.54k
    rc = rdp_recv_callback_int(transport, s, extra);
2241
2242
9.54k
    const char* now = rdp_get_state_string(rdp);
2243
9.54k
    const size_t rem = Stream_GetRemainingLength(s);
2244
2245
9.54k
    WLog_Print(rdp->log, WLOG_TRACE,
2246
9.54k
               "(client)[%s -> %s] current return %s [feeding %" PRIuz " bytes, %" PRIuz
2247
9.54k
               " bytes not processed]",
2248
9.54k
               old, now, state_run_result_string(rc, buffer, sizeof(buffer)), orem, rem);
2249
9.54k
  } while ((rc == STATE_RUN_TRY_AGAIN) || (rc == STATE_RUN_CONTINUE));
2250
9.54k
  return rc;
2251
9.54k
}
2252
2253
BOOL rdp_send_channel_data(rdpRdp* rdp, UINT16 channelId, const BYTE* data, size_t size)
2254
0
{
2255
0
  return freerdp_channel_send(rdp, channelId, data, size);
2256
0
}
2257
2258
BOOL rdp_channel_send_packet(rdpRdp* rdp, UINT16 channelId, size_t totalSize, UINT32 flags,
2259
                             const BYTE* data, size_t chunkSize)
2260
0
{
2261
0
  return freerdp_channel_send_packet(rdp, channelId, totalSize, flags, data, chunkSize);
2262
0
}
2263
2264
BOOL rdp_send_error_info(rdpRdp* rdp)
2265
0
{
2266
0
  UINT16 sec_flags = 0;
2267
0
  wStream* s = nullptr;
2268
0
  BOOL status = 0;
2269
2270
0
  if (rdp->errorInfo == ERRINFO_SUCCESS)
2271
0
    return TRUE;
2272
2273
0
  s = rdp_data_pdu_init(rdp, &sec_flags);
2274
2275
0
  if (!s)
2276
0
    return FALSE;
2277
2278
0
  Stream_Write_UINT32(s, rdp->errorInfo); /* error id (4 bytes) */
2279
0
  status = rdp_send_data_pdu(rdp, s, DATA_PDU_TYPE_SET_ERROR_INFO, 0, sec_flags);
2280
0
  return status;
2281
0
}
2282
2283
int rdp_check_fds(rdpRdp* rdp)
2284
0
{
2285
0
  int status = 0;
2286
0
  rdpTsg* tsg = nullptr;
2287
0
  rdpTransport* transport = nullptr;
2288
2289
0
  WINPR_ASSERT(rdp);
2290
0
  transport = rdp->transport;
2291
2292
0
  tsg = transport_get_tsg(transport);
2293
0
  if (tsg)
2294
0
  {
2295
0
    if (!tsg_check_event_handles(tsg))
2296
0
    {
2297
0
      WLog_Print(rdp->log, WLOG_ERROR, "rdp_check_fds: tsg_check_event_handles()");
2298
0
      return -1;
2299
0
    }
2300
2301
0
    if (tsg_get_state(tsg) != TSG_STATE_PIPE_CREATED)
2302
0
      return 1;
2303
0
  }
2304
2305
0
  status = transport_check_fds(transport);
2306
2307
0
  if (status == 1)
2308
0
  {
2309
0
    if (!rdp_client_redirect(rdp)) /* session redirection */
2310
0
      return -1;
2311
0
  }
2312
2313
0
  if (status < 0)
2314
0
    WLog_Print(rdp->log, WLOG_DEBUG, "transport_check_fds() - %i", status);
2315
0
  else
2316
0
    status = freerdp_timer_poll(rdp->timer);
2317
2318
0
  return status;
2319
0
}
2320
2321
BOOL freerdp_get_stats(const rdpRdp* rdp, UINT64* inBytes, UINT64* outBytes, UINT64* inPackets,
2322
                       UINT64* outPackets)
2323
0
{
2324
0
  if (!rdp)
2325
0
    return FALSE;
2326
2327
0
  if (inBytes)
2328
0
    *inBytes = rdp->inBytes;
2329
0
  if (outBytes)
2330
0
    *outBytes = rdp->outBytes;
2331
0
  if (inPackets)
2332
0
    *inPackets = rdp->inPackets;
2333
0
  if (outPackets)
2334
0
    *outPackets = rdp->outPackets;
2335
2336
0
  return TRUE;
2337
0
}
2338
2339
static bool rdp_new_common(rdpRdp* rdp)
2340
18.3k
{
2341
18.3k
  WINPR_ASSERT(rdp);
2342
2343
18.3k
  bool rc = false;
2344
18.3k
  rdp->transport = transport_new(rdp->context);
2345
18.3k
  if (!rdp->transport)
2346
0
    goto fail;
2347
2348
18.3k
  if (rdp->io)
2349
0
  {
2350
0
    if (!transport_set_io_callbacks(rdp->transport, rdp->io))
2351
0
      goto fail;
2352
0
  }
2353
2354
18.3k
  rdp->aad = aad_new(rdp->context);
2355
18.3k
  if (!rdp->aad)
2356
0
    goto fail;
2357
2358
18.3k
  rdp->nego = nego_new(rdp->transport);
2359
18.3k
  if (!rdp->nego)
2360
0
    goto fail;
2361
2362
18.3k
  rdp->mcs = mcs_new(rdp->context);
2363
18.3k
  if (!rdp->mcs)
2364
0
    goto fail;
2365
2366
18.3k
  rdp->license = license_new(rdp);
2367
18.3k
  if (!rdp->license)
2368
0
    goto fail;
2369
2370
18.3k
  rdp->fastpath = fastpath_new(rdp);
2371
18.3k
  if (!rdp->fastpath)
2372
0
    goto fail;
2373
2374
18.3k
  rc = true;
2375
18.3k
fail:
2376
18.3k
  return rc;
2377
18.3k
}
2378
2379
/**
2380
 * Instantiate new RDP module.
2381
 * @return new RDP module
2382
 */
2383
2384
rdpRdp* rdp_new(rdpContext* context)
2385
18.3k
{
2386
18.3k
  DWORD flags = 0;
2387
18.3k
  rdpRdp* rdp = (rdpRdp*)calloc(1, sizeof(rdpRdp));
2388
2389
18.3k
  if (!rdp)
2390
0
    return nullptr;
2391
2392
18.3k
  rdp->log = WLog_Create(RDP_TAG, WLog_GetRoot());
2393
18.3k
  if (!rdp->log)
2394
0
    goto fail;
2395
2396
18.3k
  (void)_snprintf(rdp->log_context, sizeof(rdp->log_context), "%p", (void*)context);
2397
18.3k
  if (!WLog_SetContext(rdp->log, nullptr, rdp->log_context))
2398
0
    goto fail;
2399
2400
18.3k
  InitializeCriticalSection(&rdp->critical);
2401
18.3k
  rdp->context = context;
2402
18.3k
  WINPR_ASSERT(rdp->context);
2403
2404
18.3k
  if (context->ServerMode)
2405
8.78k
    flags |= FREERDP_SETTINGS_SERVER_MODE;
2406
2407
18.3k
  if (!context->settings)
2408
18.3k
  {
2409
18.3k
    context->settings = rdp->settings = freerdp_settings_new(flags);
2410
2411
18.3k
    if (!rdp->settings)
2412
0
      goto fail;
2413
18.3k
  }
2414
0
  else
2415
0
    rdp->settings = context->settings;
2416
2417
  /* Keep a backup copy of settings for later comparisons */
2418
18.3k
  if (!rdp_set_backup_settings(rdp))
2419
0
    goto fail;
2420
2421
18.3k
  rdp->settings->instance = context->instance;
2422
2423
18.3k
  context->settings = rdp->settings;
2424
18.3k
  if (context->instance)
2425
9.54k
    context->settings->instance = context->instance;
2426
8.78k
  else if (context->peer)
2427
8.78k
  {
2428
8.78k
    rdp->settings->instance = context->peer;
2429
2430
#if defined(WITH_FREERDP_DEPRECATED)
2431
    context->peer->settings = rdp->settings;
2432
#endif
2433
8.78k
  }
2434
2435
18.3k
  if (!rdp_new_common(rdp))
2436
0
    goto fail;
2437
2438
18.3k
  {
2439
18.3k
    const rdpTransportIo* io = transport_get_io_callbacks(rdp->transport);
2440
18.3k
    if (!io)
2441
0
      goto fail;
2442
18.3k
    rdp->io = calloc(1, sizeof(rdpTransportIo));
2443
18.3k
    if (!rdp->io)
2444
0
      goto fail;
2445
18.3k
    *rdp->io = *io;
2446
18.3k
  }
2447
2448
0
  rdp->input = input_new(rdp);
2449
2450
18.3k
  if (!rdp->input)
2451
0
    goto fail;
2452
2453
18.3k
  rdp->update = update_new(rdp);
2454
2455
18.3k
  if (!rdp->update)
2456
0
    goto fail;
2457
2458
18.3k
  rdp->redirection = redirection_new();
2459
2460
18.3k
  if (!rdp->redirection)
2461
0
    goto fail;
2462
2463
18.3k
  rdp->autodetect = autodetect_new(rdp->context);
2464
2465
18.3k
  if (!rdp->autodetect)
2466
0
    goto fail;
2467
2468
18.3k
  rdp->heartbeat = heartbeat_new();
2469
2470
18.3k
  if (!rdp->heartbeat)
2471
0
    goto fail;
2472
2473
18.3k
  rdp->multitransport = multitransport_new(rdp, INITIATE_REQUEST_PROTOCOL_UDPFECL |
2474
18.3k
                                                    INITIATE_REQUEST_PROTOCOL_UDPFECR);
2475
2476
18.3k
  if (!rdp->multitransport)
2477
0
    goto fail;
2478
2479
18.3k
  rdp->bulk = bulk_new(context);
2480
2481
18.3k
  if (!rdp->bulk)
2482
0
    goto fail;
2483
2484
18.3k
  rdp->pubSub = PubSub_New(TRUE);
2485
18.3k
  if (!rdp->pubSub)
2486
0
    goto fail;
2487
2488
18.3k
  rdp->abortEvent = CreateEvent(nullptr, TRUE, FALSE, nullptr);
2489
18.3k
  if (!rdp->abortEvent)
2490
0
    goto fail;
2491
2492
18.3k
  rdp->timer = freerdp_timer_new(rdp);
2493
18.3k
  if (!rdp->timer)
2494
0
    goto fail;
2495
2496
18.3k
  return rdp;
2497
2498
0
fail:
2499
0
  WINPR_PRAGMA_DIAG_PUSH
2500
0
  WINPR_PRAGMA_DIAG_IGNORED_MISMATCHED_DEALLOC
2501
0
  rdp_free(rdp);
2502
0
  WINPR_PRAGMA_DIAG_POP
2503
0
  return nullptr;
2504
18.3k
}
2505
2506
static void rdp_reset_free(rdpRdp* rdp)
2507
18.3k
{
2508
18.3k
  WINPR_ASSERT(rdp);
2509
2510
18.3k
  security_lock(rdp);
2511
18.3k
  rdp_free_rc4_decrypt_keys(rdp);
2512
18.3k
  rdp_free_rc4_encrypt_keys(rdp);
2513
2514
18.3k
  winpr_Cipher_Free(rdp->fips_encrypt);
2515
18.3k
  winpr_Cipher_Free(rdp->fips_decrypt);
2516
18.3k
  rdp->fips_encrypt = nullptr;
2517
18.3k
  rdp->fips_decrypt = nullptr;
2518
18.3k
  security_unlock(rdp);
2519
2520
18.3k
  aad_free(rdp->aad);
2521
18.3k
  mcs_free(rdp->mcs);
2522
18.3k
  nego_free(rdp->nego);
2523
18.3k
  license_free(rdp->license);
2524
18.3k
  transport_free(rdp->transport);
2525
18.3k
  fastpath_free(rdp->fastpath);
2526
2527
18.3k
  rdp->aad = nullptr;
2528
18.3k
  rdp->mcs = nullptr;
2529
18.3k
  rdp->nego = nullptr;
2530
18.3k
  rdp->license = nullptr;
2531
18.3k
  rdp->transport = nullptr;
2532
18.3k
  rdp->fastpath = nullptr;
2533
18.3k
}
2534
2535
BOOL rdp_reset(rdpRdp* rdp)
2536
0
{
2537
0
  BOOL rc = TRUE;
2538
2539
0
  WINPR_ASSERT(rdp);
2540
2541
0
  rdpSettings* settings = rdp->settings;
2542
0
  WINPR_ASSERT(settings);
2543
2544
0
  bulk_reset(rdp->bulk);
2545
2546
0
  rdp_reset_free(rdp);
2547
2548
0
  if (!freerdp_settings_set_pointer_len(settings, FreeRDP_ServerRandom, nullptr, 0))
2549
0
    rc = FALSE;
2550
2551
0
  if (!freerdp_settings_set_pointer_len(settings, FreeRDP_ServerCertificate, nullptr, 0))
2552
0
    rc = FALSE;
2553
2554
0
  if (!freerdp_settings_set_string(settings, FreeRDP_ClientAddress, nullptr))
2555
0
    rc = FALSE;
2556
2557
0
  if (!rc)
2558
0
    goto fail;
2559
2560
0
  rc = rdp_new_common(rdp);
2561
0
  if (!rc)
2562
0
    goto fail;
2563
2564
0
  if (!transport_set_layer(rdp->transport, TRANSPORT_LAYER_TCP))
2565
0
    goto fail;
2566
2567
0
  rdp->errorInfo = 0;
2568
0
  rc = rdp_finalize_reset_flags(rdp, TRUE);
2569
2570
0
fail:
2571
0
  return rc;
2572
0
}
2573
2574
/**
2575
 * Free RDP module.
2576
 * @param rdp RDP module to be freed
2577
 */
2578
2579
void rdp_free(rdpRdp* rdp)
2580
18.3k
{
2581
18.3k
  if (rdp)
2582
18.3k
  {
2583
18.3k
    freerdp_timer_free(rdp->timer);
2584
18.3k
    rdp_reset_free(rdp);
2585
2586
18.3k
    freerdp_settings_free(rdp->settings);
2587
18.3k
    freerdp_settings_free(rdp->originalSettings);
2588
18.3k
    freerdp_settings_free(rdp->remoteSettings);
2589
2590
18.3k
    input_free(rdp->input);
2591
18.3k
    update_free(rdp->update);
2592
18.3k
    nla_free(rdp->nla);
2593
18.3k
    redirection_free(rdp->redirection);
2594
18.3k
    autodetect_free(rdp->autodetect);
2595
18.3k
    heartbeat_free(rdp->heartbeat);
2596
18.3k
    multitransport_free(rdp->multitransport);
2597
18.3k
    bulk_free(rdp->bulk);
2598
18.3k
    free(rdp->io);
2599
18.3k
    PubSub_Free(rdp->pubSub);
2600
18.3k
    if (rdp->abortEvent)
2601
18.3k
      (void)CloseHandle(rdp->abortEvent);
2602
18.3k
    aad_free(rdp->aad);
2603
18.3k
    WINPR_JSON_Delete(rdp->wellknown);
2604
18.3k
    DeleteCriticalSection(&rdp->critical);
2605
18.3k
    WLog_Discard(rdp->log);
2606
18.3k
    free(rdp);
2607
18.3k
  }
2608
18.3k
}
2609
2610
BOOL rdp_io_callback_set_event(rdpRdp* rdp, BOOL set)
2611
0
{
2612
0
  if (!rdp)
2613
0
    return FALSE;
2614
0
  return transport_io_callback_set_event(rdp->transport, set);
2615
0
}
2616
2617
const rdpTransportIo* rdp_get_io_callbacks(rdpRdp* rdp)
2618
0
{
2619
0
  if (!rdp)
2620
0
    return nullptr;
2621
0
  return rdp->io;
2622
0
}
2623
2624
BOOL rdp_set_io_callbacks(rdpRdp* rdp, const rdpTransportIo* io_callbacks)
2625
0
{
2626
0
  if (!rdp)
2627
0
    return FALSE;
2628
0
  free(rdp->io);
2629
0
  rdp->io = nullptr;
2630
0
  if (io_callbacks)
2631
0
  {
2632
0
    rdp->io = malloc(sizeof(rdpTransportIo));
2633
0
    if (!rdp->io)
2634
0
      return FALSE;
2635
0
    *rdp->io = *io_callbacks;
2636
0
    return transport_set_io_callbacks(rdp->transport, rdp->io);
2637
0
  }
2638
0
  return TRUE;
2639
0
}
2640
2641
BOOL rdp_set_io_callback_context(rdpRdp* rdp, void* usercontext)
2642
0
{
2643
0
  WINPR_ASSERT(rdp);
2644
0
  rdp->ioContext = usercontext;
2645
0
  return TRUE;
2646
0
}
2647
2648
void* rdp_get_io_callback_context(rdpRdp* rdp)
2649
0
{
2650
0
  WINPR_ASSERT(rdp);
2651
0
  return rdp->ioContext;
2652
0
}
2653
2654
const char* rdp_finalize_flags_to_str(UINT32 flags, char* buffer, size_t size)
2655
0
{
2656
0
  char number[32] = WINPR_C_ARRAY_INIT;
2657
0
  const UINT32 mask =
2658
0
      (uint32_t)~(FINALIZE_SC_SYNCHRONIZE_PDU | FINALIZE_SC_CONTROL_COOPERATE_PDU |
2659
0
                  FINALIZE_SC_CONTROL_GRANTED_PDU | FINALIZE_SC_FONT_MAP_PDU |
2660
0
                  FINALIZE_CS_SYNCHRONIZE_PDU | FINALIZE_CS_CONTROL_COOPERATE_PDU |
2661
0
                  FINALIZE_CS_CONTROL_REQUEST_PDU | FINALIZE_CS_PERSISTENT_KEY_LIST_PDU |
2662
0
                  FINALIZE_CS_FONT_LIST_PDU | FINALIZE_DEACTIVATE_REACTIVATE);
2663
2664
0
  if (flags & FINALIZE_SC_SYNCHRONIZE_PDU)
2665
0
    winpr_str_append("FINALIZE_SC_SYNCHRONIZE_PDU", buffer, size, "|");
2666
0
  if (flags & FINALIZE_SC_CONTROL_COOPERATE_PDU)
2667
0
    winpr_str_append("FINALIZE_SC_CONTROL_COOPERATE_PDU", buffer, size, "|");
2668
0
  if (flags & FINALIZE_SC_CONTROL_GRANTED_PDU)
2669
0
    winpr_str_append("FINALIZE_SC_CONTROL_GRANTED_PDU", buffer, size, "|");
2670
0
  if (flags & FINALIZE_SC_FONT_MAP_PDU)
2671
0
    winpr_str_append("FINALIZE_SC_FONT_MAP_PDU", buffer, size, "|");
2672
0
  if (flags & FINALIZE_CS_SYNCHRONIZE_PDU)
2673
0
    winpr_str_append("FINALIZE_CS_SYNCHRONIZE_PDU", buffer, size, "|");
2674
0
  if (flags & FINALIZE_CS_CONTROL_COOPERATE_PDU)
2675
0
    winpr_str_append("FINALIZE_CS_CONTROL_COOPERATE_PDU", buffer, size, "|");
2676
0
  if (flags & FINALIZE_CS_CONTROL_REQUEST_PDU)
2677
0
    winpr_str_append("FINALIZE_CS_CONTROL_REQUEST_PDU", buffer, size, "|");
2678
0
  if (flags & FINALIZE_CS_PERSISTENT_KEY_LIST_PDU)
2679
0
    winpr_str_append("FINALIZE_CS_PERSISTENT_KEY_LIST_PDU", buffer, size, "|");
2680
0
  if (flags & FINALIZE_CS_FONT_LIST_PDU)
2681
0
    winpr_str_append("FINALIZE_CS_FONT_LIST_PDU", buffer, size, "|");
2682
0
  if (flags & FINALIZE_DEACTIVATE_REACTIVATE)
2683
0
    winpr_str_append("FINALIZE_DEACTIVATE_REACTIVATE", buffer, size, "|");
2684
0
  if (flags & mask)
2685
0
    winpr_str_append("UNKNOWN_FLAG", buffer, size, "|");
2686
0
  if (flags == 0)
2687
0
    winpr_str_append("NO_FLAG_SET", buffer, size, "|");
2688
0
  (void)_snprintf(number, sizeof(number), " [0x%08" PRIx32 "]", flags);
2689
0
  winpr_str_append(number, buffer, size, "");
2690
0
  return buffer;
2691
0
}
2692
2693
BOOL rdp_finalize_reset_flags(rdpRdp* rdp, BOOL clearAll)
2694
0
{
2695
0
  WINPR_ASSERT(rdp);
2696
0
  WLog_Print(rdp->log, WLOG_DEBUG, "[%s] reset finalize_sc_pdus", rdp_get_state_string(rdp));
2697
0
  if (clearAll)
2698
0
    rdp->finalize_sc_pdus = 0;
2699
0
  else
2700
0
    rdp->finalize_sc_pdus &= FINALIZE_DEACTIVATE_REACTIVATE;
2701
2702
0
  return rdp_set_monitor_layout_pdu_state(rdp, FALSE);
2703
0
}
2704
2705
BOOL rdp_finalize_set_flag(rdpRdp* rdp, UINT32 flag)
2706
9.78k
{
2707
9.78k
  char buffer[1024] = WINPR_C_ARRAY_INIT;
2708
2709
9.78k
  WINPR_ASSERT(rdp);
2710
2711
9.78k
  WLog_Print(rdp->log, WLOG_DEBUG, "[%s] received flag %s", rdp_get_state_string(rdp),
2712
9.78k
             rdp_finalize_flags_to_str(flag, buffer, sizeof(buffer)));
2713
9.78k
  rdp->finalize_sc_pdus |= flag;
2714
9.78k
  return TRUE;
2715
9.78k
}
2716
2717
BOOL rdp_finalize_is_flag_set(rdpRdp* rdp, UINT32 flag)
2718
0
{
2719
0
  WINPR_ASSERT(rdp);
2720
0
  return (rdp->finalize_sc_pdus & flag) == flag;
2721
0
}
2722
2723
BOOL rdp_reset_rc4_encrypt_keys(rdpRdp* rdp)
2724
0
{
2725
0
  WINPR_ASSERT(rdp);
2726
0
  rdp_free_rc4_encrypt_keys(rdp);
2727
0
  rdp->rc4_encrypt_key = winpr_RC4_New(rdp->encrypt_key, rdp->rc4_key_len);
2728
2729
0
  rdp->encrypt_use_count = 0;
2730
0
  return rdp->rc4_encrypt_key != nullptr;
2731
0
}
2732
2733
void rdp_free_rc4_encrypt_keys(rdpRdp* rdp)
2734
18.3k
{
2735
18.3k
  WINPR_ASSERT(rdp);
2736
18.3k
  winpr_RC4_Free(rdp->rc4_encrypt_key);
2737
18.3k
  rdp->rc4_encrypt_key = nullptr;
2738
18.3k
}
2739
2740
void rdp_free_rc4_decrypt_keys(rdpRdp* rdp)
2741
18.3k
{
2742
18.3k
  WINPR_ASSERT(rdp);
2743
18.3k
  winpr_RC4_Free(rdp->rc4_decrypt_key);
2744
18.3k
  rdp->rc4_decrypt_key = nullptr;
2745
18.3k
}
2746
2747
BOOL rdp_reset_rc4_decrypt_keys(rdpRdp* rdp)
2748
0
{
2749
0
  WINPR_ASSERT(rdp);
2750
0
  rdp_free_rc4_decrypt_keys(rdp);
2751
0
  rdp->rc4_decrypt_key = winpr_RC4_New(rdp->decrypt_key, rdp->rc4_key_len);
2752
2753
0
  rdp->decrypt_use_count = 0;
2754
0
  return rdp->rc4_decrypt_key != nullptr;
2755
0
}
2756
2757
const char* rdp_security_flag_string(UINT32 securityFlags, char* buffer, size_t size)
2758
11.0k
{
2759
11.0k
  if (securityFlags & SEC_EXCHANGE_PKT)
2760
1.80k
    winpr_str_append("SEC_EXCHANGE_PKT", buffer, size, "|");
2761
11.0k
  if (securityFlags & SEC_TRANSPORT_REQ)
2762
1.88k
    winpr_str_append("SEC_TRANSPORT_REQ", buffer, size, "|");
2763
11.0k
  if (securityFlags & SEC_TRANSPORT_RSP)
2764
1.66k
    winpr_str_append("SEC_TRANSPORT_RSP", buffer, size, "|");
2765
11.0k
  if (securityFlags & SEC_ENCRYPT)
2766
1.60k
    winpr_str_append("SEC_ENCRYPT", buffer, size, "|");
2767
11.0k
  if (securityFlags & SEC_RESET_SEQNO)
2768
1.20k
    winpr_str_append("SEC_RESET_SEQNO", buffer, size, "|");
2769
11.0k
  if (securityFlags & SEC_IGNORE_SEQNO)
2770
1.68k
    winpr_str_append("SEC_IGNORE_SEQNO", buffer, size, "|");
2771
11.0k
  if (securityFlags & SEC_INFO_PKT)
2772
1.33k
    winpr_str_append("SEC_INFO_PKT", buffer, size, "|");
2773
11.0k
  if (securityFlags & SEC_LICENSE_PKT)
2774
1.11k
    winpr_str_append("SEC_LICENSE_PKT", buffer, size, "|");
2775
11.0k
  if (securityFlags & SEC_LICENSE_ENCRYPT_CS)
2776
1.81k
    winpr_str_append("SEC_LICENSE_ENCRYPT_CS", buffer, size, "|");
2777
11.0k
  if (securityFlags & SEC_LICENSE_ENCRYPT_SC)
2778
1.81k
    winpr_str_append("SEC_LICENSE_ENCRYPT_SC", buffer, size, "|");
2779
11.0k
  if (securityFlags & SEC_REDIRECTION_PKT)
2780
7.16k
    winpr_str_append("SEC_REDIRECTION_PKT", buffer, size, "|");
2781
11.0k
  if (securityFlags & SEC_SECURE_CHECKSUM)
2782
1.60k
    winpr_str_append("SEC_SECURE_CHECKSUM", buffer, size, "|");
2783
11.0k
  if (securityFlags & SEC_AUTODETECT_REQ)
2784
1.33k
    winpr_str_append("SEC_AUTODETECT_REQ", buffer, size, "|");
2785
11.0k
  if (securityFlags & SEC_AUTODETECT_RSP)
2786
1.93k
    winpr_str_append("SEC_AUTODETECT_RSP", buffer, size, "|");
2787
11.0k
  if (securityFlags & SEC_HEARTBEAT)
2788
1.57k
    winpr_str_append("SEC_HEARTBEAT", buffer, size, "|");
2789
11.0k
  if (securityFlags & SEC_FLAGSHI_VALID)
2790
1.23k
    winpr_str_append("SEC_FLAGSHI_VALID", buffer, size, "|");
2791
11.0k
  {
2792
11.0k
    char msg[32] = WINPR_C_ARRAY_INIT;
2793
2794
11.0k
    (void)_snprintf(msg, sizeof(msg), "[0x%08" PRIx32 "]", securityFlags);
2795
11.0k
    winpr_str_append(msg, buffer, size, "");
2796
11.0k
  }
2797
11.0k
  return buffer;
2798
11.0k
}
2799
2800
static BOOL rdp_reset_remote_settings(rdpRdp* rdp)
2801
18.3k
{
2802
18.3k
  UINT32 flags = FREERDP_SETTINGS_REMOTE_MODE;
2803
18.3k
  WINPR_ASSERT(rdp);
2804
18.3k
  freerdp_settings_free(rdp->remoteSettings);
2805
2806
18.3k
  if (!freerdp_settings_get_bool(rdp->settings, FreeRDP_ServerMode))
2807
9.54k
    flags |= FREERDP_SETTINGS_SERVER_MODE;
2808
18.3k
  rdp->remoteSettings = freerdp_settings_new(flags);
2809
18.3k
  return rdp->remoteSettings != nullptr;
2810
18.3k
}
2811
2812
BOOL rdp_set_backup_settings(rdpRdp* rdp)
2813
18.3k
{
2814
18.3k
  WINPR_ASSERT(rdp);
2815
18.3k
  freerdp_settings_free(rdp->originalSettings);
2816
18.3k
  rdp->originalSettings = freerdp_settings_clone(rdp->settings);
2817
18.3k
  if (!rdp->originalSettings)
2818
0
    return FALSE;
2819
18.3k
  return rdp_reset_remote_settings(rdp);
2820
18.3k
}
2821
2822
BOOL rdp_reset_runtime_settings(rdpRdp* rdp)
2823
0
{
2824
0
  WINPR_ASSERT(rdp);
2825
0
  WINPR_ASSERT(rdp->context);
2826
2827
0
  freerdp_settings_free(rdp->settings);
2828
0
  rdp->context->settings = rdp->settings = freerdp_settings_clone(rdp->originalSettings);
2829
2830
0
  if (!rdp->settings)
2831
0
    return FALSE;
2832
0
  return rdp_reset_remote_settings(rdp);
2833
0
}
2834
2835
static BOOL starts_with(const char* tok, const char* val)
2836
8.29k
{
2837
8.29k
  const size_t len = strlen(val);
2838
8.29k
  if (strncmp(tok, val, len) != 0)
2839
8.24k
    return FALSE;
2840
51
  if (tok[len] != '=')
2841
11
    return FALSE;
2842
40
  return TRUE;
2843
51
}
2844
2845
static BOOL option_equals(const char* what, const char* val)
2846
118
{
2847
118
  return _stricmp(what, val) == 0;
2848
118
}
2849
2850
static BOOL parse_on_off_option(const char* value)
2851
40
{
2852
40
  WINPR_ASSERT(value);
2853
40
  const char* sep = strchr(value, '=');
2854
40
  if (!sep)
2855
0
    return TRUE;
2856
40
  if (option_equals("on", &sep[1]))
2857
1
    return TRUE;
2858
39
  if (option_equals("true", &sep[1]))
2859
0
    return TRUE;
2860
39
  if (option_equals("off", &sep[1]))
2861
39
    return FALSE;
2862
0
  if (option_equals("false", &sep[1]))
2863
0
    return FALSE;
2864
2865
0
  errno = 0;
2866
0
  long val = strtol(value, nullptr, 0);
2867
0
  if (errno == 0)
2868
0
    return (val != 0);
2869
2870
0
  return FALSE;
2871
0
}
2872
2873
8.74k
#define STR(x) #x
2874
2875
static BOOL option_is_runtime_checks(WINPR_ATTR_UNUSED wLog* log, const char* tok)
2876
186
{
2877
186
  const char* experimental[] = { STR(WITH_VERBOSE_WINPR_ASSERT) };
2878
371
  for (size_t x = 0; x < ARRAYSIZE(experimental); x++)
2879
186
  {
2880
186
    const char* opt = experimental[x];
2881
186
    if (starts_with(tok, opt))
2882
1
    {
2883
1
      return parse_on_off_option(tok);
2884
1
    }
2885
186
  }
2886
185
  return FALSE;
2887
186
}
2888
2889
static BOOL option_is_experimental(WINPR_ATTR_UNUSED wLog* log, const char* tok)
2890
186
{
2891
186
  const char* experimental[] = { STR(WITH_DSP_EXPERIMENTAL), STR(WITH_VAAPI),
2892
186
                               STR(WITH_GFX_AV1),          STR(WITH_VAAPI_H264_ENCODING),
2893
186
                               STR(WITH_MEDIACODEC),       STR(WITH_CLIENT_SDL2),
2894
186
                               STR(WITH_OPENCL),           STR(WITH_LIBRESSL),
2895
186
                               STR(WITH_MBEDTLS),          STR(WITH_MEDIA_FOUNDATION),
2896
186
                               STR(WITH_KRB5_HEIMDAL),     STR(WITH_VIDEOTOOLBOX) };
2897
2.36k
  for (size_t x = 0; x < ARRAYSIZE(experimental); x++)
2898
2.18k
  {
2899
2.18k
    const char* opt = experimental[x];
2900
2.18k
    if (starts_with(tok, opt))
2901
8
    {
2902
8
      return parse_on_off_option(tok);
2903
8
    }
2904
2.18k
  }
2905
178
  return FALSE;
2906
186
}
2907
2908
static BOOL option_is_debug(wLog* log, const char* tok)
2909
186
{
2910
186
  WINPR_ASSERT(log);
2911
186
  const char* debug[] = { STR(WITH_DEBUG_ALL),
2912
186
                        STR(WITH_DEBUG_CERTIFICATE),
2913
186
                        STR(WITH_DEBUG_CAPABILITIES),
2914
186
                        STR(WITH_DEBUG_CHANNELS),
2915
186
                        STR(WITH_DEBUG_CLIPRDR),
2916
186
                        STR(WITH_DEBUG_CODECS),
2917
186
                        STR(WITH_DEBUG_DVC),
2918
186
                        STR(WITH_DEBUG_TSMF),
2919
186
                        STR(WITH_DEBUG_KBD),
2920
186
                        STR(WITH_DEBUG_LICENSE),
2921
186
                        STR(WITH_DEBUG_NEGO),
2922
186
                        STR(WITH_DEBUG_NLA),
2923
186
                        STR(WITH_DEBUG_TSG),
2924
186
                        STR(WITH_DEBUG_RAIL),
2925
186
                        STR(WITH_DEBUG_RDP),
2926
186
                        STR(WITH_DEBUG_RDPEI),
2927
186
                        STR(WITH_DEBUG_REDIR),
2928
186
                        STR(WITH_DEBUG_RDPDR),
2929
186
                        STR(WITH_DEBUG_RFX),
2930
186
                        STR(WITH_DEBUG_SCARD),
2931
186
                        STR(WITH_DEBUG_SND),
2932
186
                        STR(WITH_DEBUG_SVC),
2933
186
                        STR(WITH_DEBUG_TRANSPORT),
2934
186
                        STR(WITH_DEBUG_TIMEZONE),
2935
186
                        STR(WITH_DEBUG_WND),
2936
186
                        STR(WITH_DEBUG_RINGBUFFER),
2937
186
                        STR(WITH_DEBUG_SYMBOLS),
2938
186
                        STR(WITH_DEBUG_EVENTS),
2939
186
                        STR(WITH_DEBUG_MUTEX),
2940
186
                        STR(WITH_DEBUG_NTLM),
2941
186
                        STR(WITH_DEBUG_SDL_KBD_EVENTS),
2942
186
                        STR(WITH_DEBUG_SDL_KBD_EVENTS),
2943
186
                        STR(WITH_DEBUG_THREADS),
2944
186
                        STR(WITH_DEBUG_URBDRC) };
2945
2946
5.92k
  for (size_t x = 0; x < ARRAYSIZE(debug); x++)
2947
5.76k
  {
2948
5.76k
    const char* opt = debug[x];
2949
5.76k
    if (starts_with(tok, opt))
2950
31
      return parse_on_off_option(tok);
2951
5.76k
  }
2952
2953
155
  if (starts_with(tok, "WITH_DEBUG"))
2954
0
  {
2955
0
    WLog_Print(log, WLOG_WARN, "[BUG] Unmapped Debug-Build option '%s'.", tok);
2956
0
    return parse_on_off_option(tok);
2957
0
  }
2958
2959
155
  return FALSE;
2960
155
}
2961
2962
static void log_build_warn(rdpRdp* rdp, const char* what, const char* msg,
2963
                           BOOL (*cmp)(wLog* log, const char* tok))
2964
3
{
2965
3
  WINPR_ASSERT(rdp);
2966
3
  WINPR_PRAGMA_DIAG_PUSH
2967
3
  WINPR_PRAGMA_DIAG_IGNORED_OVERLENGTH_STRINGS
2968
2969
3
  size_t len = sizeof(FREERDP_BUILD_CONFIG);
2970
3
  char* list = calloc(len, sizeof(char));
2971
3
  char* config = _strdup(FREERDP_BUILD_CONFIG);
2972
3
  WINPR_PRAGMA_DIAG_POP
2973
2974
3
  if (config && list)
2975
3
  {
2976
3
    char* saveptr = nullptr;
2977
3
    char* tok = strtok_s(config, " ", &saveptr);
2978
561
    while (tok)
2979
558
    {
2980
558
      if (cmp(rdp->log, tok))
2981
1
        winpr_str_append(tok, list, len, " ");
2982
2983
558
      tok = strtok_s(nullptr, " ", &saveptr);
2984
558
    }
2985
3
  }
2986
3
  free(config);
2987
2988
3
  if (list)
2989
3
  {
2990
3
    if (strlen(list) > 0)
2991
1
    {
2992
1
      WLog_Print(rdp->log, WLOG_WARN, "*************************************************");
2993
1
      WLog_Print(rdp->log, WLOG_WARN, "This build is using [%s] build options:", what);
2994
2995
1
      char* saveptr = nullptr;
2996
1
      char* tok = strtok_s(list, " ", &saveptr);
2997
2
      while (tok)
2998
1
      {
2999
1
        WLog_Print(rdp->log, WLOG_WARN, "* '%s'", tok);
3000
1
        tok = strtok_s(nullptr, " ", &saveptr);
3001
1
      }
3002
1
      WLog_Print(rdp->log, WLOG_WARN, "*");
3003
1
      WLog_Print(rdp->log, WLOG_WARN, "[%s] build options %s", what, msg);
3004
1
      WLog_Print(rdp->log, WLOG_WARN, "*************************************************");
3005
1
    }
3006
3
  }
3007
3
  free(list);
3008
3
}
3009
3010
#define print_first_line(log, firstLine, what) \
3011
0
  print_first_line_int((log), (firstLine), (what), __FILE__, __func__, __LINE__)
3012
static void print_first_line_int(wLog* log, log_line_t* firstLine, const char* what,
3013
                                 const char* file, const char* fkt, size_t line)
3014
0
{
3015
0
  WINPR_ASSERT(firstLine);
3016
0
  if (!firstLine->fkt)
3017
0
  {
3018
0
    const DWORD level = WLOG_WARN;
3019
0
    if (WLog_IsLevelActive(log, level))
3020
0
    {
3021
0
      WLog_PrintTextMessage(log, level, line, file, fkt,
3022
0
                            "*************************************************");
3023
0
      WLog_PrintTextMessage(log, level, line, file, fkt,
3024
0
                            "[SSL] {%s} build or configuration missing:", what);
3025
0
    }
3026
0
    firstLine->line = line;
3027
0
    firstLine->file = file;
3028
0
    firstLine->fkt = fkt;
3029
0
    firstLine->level = level;
3030
0
  }
3031
0
}
3032
3033
static void print_last_line(wLog* log, const log_line_t* firstLine)
3034
3
{
3035
3
  WINPR_ASSERT(firstLine);
3036
3
  if (firstLine->fkt)
3037
0
  {
3038
0
    if (WLog_IsLevelActive(log, firstLine->level))
3039
0
      WLog_PrintTextMessage(log, firstLine->level, firstLine->line, firstLine->file,
3040
0
                            firstLine->fkt,
3041
0
                            "*************************************************");
3042
0
  }
3043
3
}
3044
3045
static void log_build_warn_cipher(rdpRdp* rdp, log_line_t* firstLine, WINPR_CIPHER_TYPE md,
3046
                                  const char* what)
3047
5
{
3048
5
  BOOL haveCipher = FALSE;
3049
3050
5
  char key[WINPR_CIPHER_MAX_KEY_LENGTH] = WINPR_C_ARRAY_INIT;
3051
5
  char iv[WINPR_CIPHER_MAX_IV_LENGTH] = WINPR_C_ARRAY_INIT;
3052
3053
  /* RC4 only exists in the compatibility functions winpr_RC4_*
3054
   * winpr_Cipher_* does not support that. */
3055
5
  if (md == WINPR_CIPHER_ARC4_128)
3056
1
  {
3057
1
    WINPR_RC4_CTX* enc = winpr_RC4_New(key, sizeof(key));
3058
1
    haveCipher = enc != nullptr;
3059
1
    winpr_RC4_Free(enc);
3060
1
  }
3061
4
  else
3062
4
  {
3063
4
    WINPR_CIPHER_CTX* enc =
3064
4
        winpr_Cipher_NewEx(md, WINPR_ENCRYPT, key, sizeof(key), iv, sizeof(iv));
3065
4
    WINPR_CIPHER_CTX* dec =
3066
4
        winpr_Cipher_NewEx(md, WINPR_DECRYPT, key, sizeof(key), iv, sizeof(iv));
3067
4
    if (enc && dec)
3068
4
      haveCipher = TRUE;
3069
3070
4
    winpr_Cipher_Free(enc);
3071
4
    winpr_Cipher_Free(dec);
3072
4
  }
3073
3074
5
  if (!haveCipher)
3075
0
  {
3076
0
    print_first_line(rdp->log, firstLine, "Cipher");
3077
0
    WLog_Print(rdp->log, WLOG_WARN, "* %s: %s", winpr_cipher_type_to_string(md), what);
3078
0
  }
3079
5
}
3080
3081
static void log_build_warn_hmac(rdpRdp* rdp, log_line_t* firstLine, WINPR_MD_TYPE md,
3082
                                const char* what)
3083
2
{
3084
2
  BOOL haveHmacX = FALSE;
3085
2
  WINPR_HMAC_CTX* hmac = winpr_HMAC_New();
3086
2
  if (hmac)
3087
2
  {
3088
    /* We need some key length, but there is no real limit here.
3089
     * just take the cipher maximum key length as we already have that available.
3090
     */
3091
2
    char key[WINPR_CIPHER_MAX_KEY_LENGTH] = WINPR_C_ARRAY_INIT;
3092
2
    haveHmacX = winpr_HMAC_Init(hmac, md, key, sizeof(key));
3093
2
  }
3094
2
  winpr_HMAC_Free(hmac);
3095
3096
2
  if (!haveHmacX)
3097
0
  {
3098
0
    print_first_line(rdp->log, firstLine, "HMAC");
3099
0
    WLog_Print(rdp->log, WLOG_WARN, " * %s: %s", winpr_md_type_to_string(md), what);
3100
0
  }
3101
2
}
3102
3103
static void log_build_warn_hash(rdpRdp* rdp, log_line_t* firstLine, WINPR_MD_TYPE md,
3104
                                const char* what)
3105
4
{
3106
4
  BOOL haveDigestX = FALSE;
3107
3108
4
  WINPR_DIGEST_CTX* digest = winpr_Digest_New();
3109
4
  if (digest)
3110
4
    haveDigestX = winpr_Digest_Init(digest, md);
3111
4
  winpr_Digest_Free(digest);
3112
3113
4
  if (!haveDigestX)
3114
0
  {
3115
0
    print_first_line(rdp->log, firstLine, "Digest");
3116
0
    WLog_Print(rdp->log, WLOG_WARN, " * %s: %s", winpr_md_type_to_string(md), what);
3117
0
  }
3118
4
}
3119
3120
static void log_build_warn_ssl(rdpRdp* rdp)
3121
1
{
3122
1
  WINPR_ASSERT(rdp);
3123
3124
1
  log_line_t firstHashLine = WINPR_C_ARRAY_INIT;
3125
1
  log_build_warn_hash(rdp, &firstHashLine, WINPR_MD_MD4, "NTLM support not available");
3126
1
  log_build_warn_hash(rdp, &firstHashLine, WINPR_MD_MD5,
3127
1
                      "NTLM, assistance files with encrypted passwords, autoreconnect cookies, "
3128
1
                      "licensing and RDP security will not work");
3129
1
  log_build_warn_hash(rdp, &firstHashLine, WINPR_MD_SHA1,
3130
1
                      "assistance files with encrypted passwords, Kerberos, Smartcard Logon, RDP "
3131
1
                      "security support not available");
3132
1
  log_build_warn_hash(
3133
1
      rdp, &firstHashLine, WINPR_MD_SHA256,
3134
1
      "file clipboard, AAD gateway, NLA security and certificates might not work");
3135
1
  print_last_line(rdp->log, &firstHashLine);
3136
3137
1
  log_line_t firstHmacLine = WINPR_C_ARRAY_INIT;
3138
1
  log_build_warn_hmac(rdp, &firstHmacLine, WINPR_MD_MD5, "Autoreconnect cookie not supported");
3139
1
  log_build_warn_hmac(rdp, &firstHmacLine, WINPR_MD_SHA1, "RDP security not supported");
3140
1
  print_last_line(rdp->log, &firstHmacLine);
3141
3142
1
  log_line_t firstCipherLine = WINPR_C_ARRAY_INIT;
3143
1
  log_build_warn_cipher(rdp, &firstCipherLine, WINPR_CIPHER_ARC4_128,
3144
1
                        "assistance files with encrypted passwords, NTLM, RDP licensing and RDP "
3145
1
                        "security will not work");
3146
1
  log_build_warn_cipher(rdp, &firstCipherLine, WINPR_CIPHER_DES_EDE3_CBC,
3147
1
                        "RDP security FIPS mode will not work");
3148
1
  log_build_warn_cipher(
3149
1
      rdp, &firstCipherLine, WINPR_CIPHER_AES_128_CBC,
3150
1
      "assistance file encrypted LHTicket will not work and ARM gateway might not");
3151
1
  log_build_warn_cipher(rdp, &firstCipherLine, WINPR_CIPHER_AES_192_CBC,
3152
1
                        "ARM gateway might not work");
3153
1
  log_build_warn_cipher(rdp, &firstCipherLine, WINPR_CIPHER_AES_256_CBC,
3154
1
                        "ARM gateway might not work");
3155
1
  print_last_line(rdp->log, &firstCipherLine);
3156
1
}
3157
3158
void rdp_log_build_warnings(rdpRdp* rdp)
3159
8.78k
{
3160
8.78k
  static unsigned count = 0;
3161
3162
8.78k
  WINPR_ASSERT(rdp);
3163
  /* Since this function is called in context creation routines stop logging
3164
   * this issue repeatedly. This is required for proxy, which would otherwise
3165
   * spam the log with these. */
3166
8.78k
  if (count > 0)
3167
8.78k
    return;
3168
1
  count++;
3169
1
  log_build_warn(rdp, "experimental", "might crash the application", option_is_experimental);
3170
1
  log_build_warn(rdp, "debug", "might leak sensitive information (credentials, ...)",
3171
1
                 option_is_debug);
3172
1
  log_build_warn(rdp, "runtime-check", "might slow down the application",
3173
1
                 option_is_runtime_checks);
3174
1
  log_build_warn_ssl(rdp);
3175
1
}
3176
3177
size_t rdp_get_event_handles(rdpRdp* rdp, HANDLE* handles, uint32_t count)
3178
0
{
3179
0
  size_t nCount = transport_get_event_handles(rdp->transport, handles, count);
3180
3181
0
  if (nCount == 0)
3182
0
    return 0;
3183
3184
0
  if (count < nCount + 2UL)
3185
0
    return 0;
3186
3187
0
  handles[nCount++] = utils_get_abort_event(rdp);
3188
0
  handles[nCount++] = freerdp_timer_get_event(rdp->timer);
3189
0
  return nCount;
3190
0
}