Coverage Report

Created: 2026-05-30 06:46

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/FreeRDP/libfreerdp/core/rdp.c
Line
Count
Source
1
/**
2
 * FreeRDP: A Remote Desktop Protocol Implementation
3
 * RDP Core
4
 *
5
 * Copyright 2011 Marc-Andre Moreau <marcandre.moreau@gmail.com>
6
 * Copyright 2014 DI (FH) Martin Haimberger <martin.haimberger@thincast.com>
7
 *
8
 * Licensed under the Apache License, Version 2.0 (the "License");
9
 * you may not use this file except in compliance with the License.
10
 * You may obtain a copy of the License at
11
 *
12
 *     http://www.apache.org/licenses/LICENSE-2.0
13
 *
14
 * Unless required by applicable law or agreed to in writing, software
15
 * distributed under the License is distributed on an "AS IS" BASIS,
16
 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
17
 * See the License for the specific language governing permissions and
18
 * limitations under the License.
19
 */
20
21
#include <freerdp/config.h>
22
23
#include "settings.h"
24
25
#include <winpr/crt.h>
26
#include <winpr/string.h>
27
#include <winpr/synch.h>
28
#include <winpr/assert.h>
29
#include <winpr/cast.h>
30
#include <winpr/json.h>
31
#include <winpr/ssl.h>
32
33
#include "rdp.h"
34
35
#include "state.h"
36
#include "info.h"
37
#include "utils.h"
38
#include "mcs.h"
39
#include "redirection.h"
40
41
#include <freerdp/codec/bulk.h>
42
#include <freerdp/crypto/per.h>
43
#include <freerdp/log.h>
44
#include <freerdp/buildflags.h>
45
46
18.0k
#define RDP_TAG FREERDP_TAG("core.rdp")
47
48
typedef struct
49
{
50
  const char* file;
51
  const char* fkt;
52
  size_t line;
53
  DWORD level;
54
} log_line_t;
55
56
static const char* DATA_PDU_TYPE_STRINGS[80] = {
57
  "?",
58
  "?",      /* 0x00 - 0x01 */
59
  "Update", /* 0x02 */
60
  "?",
61
  "?",
62
  "?",
63
  "?",
64
  "?",
65
  "?",
66
  "?",
67
  "?", /* 0x03 - 0x0A */
68
  "?",
69
  "?",
70
  "?",
71
  "?",
72
  "?",
73
  "?",
74
  "?",
75
  "?",
76
  "?",       /* 0x0B - 0x13 */
77
  "Control", /* 0x14 */
78
  "?",
79
  "?",
80
  "?",
81
  "?",
82
  "?",
83
  "?",       /* 0x15 - 0x1A */
84
  "Pointer", /* 0x1B */
85
  "Input",   /* 0x1C */
86
  "?",
87
  "?",                            /* 0x1D - 0x1E */
88
  "Synchronize",                  /* 0x1F */
89
  "?",                            /* 0x20 */
90
  "Refresh Rect",                 /* 0x21 */
91
  "Play Sound",                   /* 0x22 */
92
  "Suppress Output",              /* 0x23 */
93
  "Shutdown Request",             /* 0x24 */
94
  "Shutdown Denied",              /* 0x25 */
95
  "Save Session Info",            /* 0x26 */
96
  "Font List",                    /* 0x27 */
97
  "Font Map",                     /* 0x28 */
98
  "Set Keyboard Indicators",      /* 0x29 */
99
  "?",                            /* 0x2A */
100
  "Bitmap Cache Persistent List", /* 0x2B */
101
  "Bitmap Cache Error",           /* 0x2C */
102
  "Set Keyboard IME Status",      /* 0x2D */
103
  "Offscreen Cache Error",        /* 0x2E */
104
  "Set Error Info",               /* 0x2F */
105
  "Draw Nine Grid Error",         /* 0x30 */
106
  "Draw GDI+ Error",              /* 0x31 */
107
  "ARC Status",                   /* 0x32 */
108
  "?",
109
  "?",
110
  "?",              /* 0x33 - 0x35 */
111
  "Status Info",    /* 0x36 */
112
  "Monitor Layout", /* 0x37 */
113
  "FrameAcknowledge",
114
  "?",
115
  "?", /* 0x38 - 0x40 */
116
  "?",
117
  "?",
118
  "?",
119
  "?",
120
  "?",
121
  "?" /* 0x41 - 0x46 */
122
};
123
124
#define rdp_check_monitor_layout_pdu_state(rdp, expected) \
125
0
  rdp_check_monitor_layout_pdu_state_(rdp, expected, __FILE__, __func__, __LINE__)
126
127
static BOOL rdp_check_monitor_layout_pdu_state_(const rdpRdp* rdp, BOOL expected, const char* file,
128
                                                const char* fkt, size_t line)
129
0
{
130
0
  WINPR_ASSERT(rdp);
131
0
  if (expected != rdp->monitor_layout_pdu)
132
0
  {
133
0
    const DWORD log_level = WLOG_ERROR;
134
0
    if (WLog_IsLevelActive(rdp->log, log_level))
135
0
    {
136
0
      WLog_PrintTextMessage(rdp->log, log_level, line, file, fkt,
137
0
                            "Expected rdp->monitor_layout_pdu == %s",
138
0
                            expected ? "TRUE" : "FALSE");
139
0
    }
140
0
    return FALSE;
141
0
  }
142
0
  return TRUE;
143
0
}
144
145
#define rdp_set_monitor_layout_pdu_state(rdp, expected) \
146
50
  rdp_set_monitor_layout_pdu_state_(rdp, expected, __FILE__, __func__, __LINE__)
147
static BOOL rdp_set_monitor_layout_pdu_state_(rdpRdp* rdp, BOOL value, const char* file,
148
                                              const char* fkt, size_t line)
149
50
{
150
151
50
  WINPR_ASSERT(rdp);
152
50
  if (value && (value == rdp->monitor_layout_pdu))
153
2
  {
154
2
    const DWORD log_level = WLOG_WARN;
155
2
    if (WLog_IsLevelActive(rdp->log, log_level))
156
2
    {
157
2
      WLog_PrintTextMessage(rdp->log, log_level, line, file, fkt,
158
2
                            "rdp->monitor_layout_pdu == TRUE, expected FALSE");
159
2
    }
160
2
    return FALSE;
161
2
  }
162
48
  rdp->monitor_layout_pdu = value;
163
48
  return TRUE;
164
50
}
165
166
const char* data_pdu_type_to_string(UINT8 type)
167
403
{
168
403
  if (type >= ARRAYSIZE(DATA_PDU_TYPE_STRINGS))
169
66
    return "???";
170
337
  return DATA_PDU_TYPE_STRINGS[type];
171
403
}
172
173
static BOOL rdp_read_flow_control_pdu(rdpRdp* rdp, wStream* s, UINT16* type, UINT16* channel_id);
174
static BOOL rdp_write_share_control_header(rdpRdp* rdp, wStream* s, size_t length, UINT16 type,
175
                                           UINT16 channel_id);
176
static BOOL rdp_write_share_data_header(rdpRdp* rdp, wStream* s, size_t length, BYTE type,
177
                                        UINT32 share_id);
178
179
/**
180
 * @brief Read RDP Security Header.
181
 * msdn{cc240579}
182
 *
183
 * @param s stream
184
 * @param flags security flags
185
 *
186
 * @return \b TRUE for success, \b FALSE otherwise
187
 */
188
189
BOOL rdp_read_security_header(rdpRdp* rdp, wStream* s, UINT16* flags, UINT16* length)
190
19.1k
{
191
19.1k
  char buffer[256] = WINPR_C_ARRAY_INIT;
192
19.1k
  WINPR_ASSERT(s);
193
19.1k
  WINPR_ASSERT(flags);
194
19.1k
  WINPR_ASSERT(rdp);
195
196
  /* Basic Security Header */
197
19.1k
  if ((length && (*length < 4)))
198
18.0k
  {
199
18.0k
    WLog_Print(rdp->log, WLOG_WARN,
200
18.0k
               "invalid security header length, have %" PRIu16 ", must be >= 4", *length);
201
18.0k
    return FALSE;
202
18.0k
  }
203
1.07k
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 4))
204
2
    return FALSE;
205
206
1.07k
  *flags = Stream_Get_UINT16(s);                 /* flags */
207
1.07k
  const uint16_t flagsHi = Stream_Get_UINT16(s); /* flagsHi (unused) */
208
1.07k
  if ((*flags & SEC_FLAGSHI_VALID) != 0)
209
648
  {
210
648
    WLog_Print(rdp->log, WLOG_WARN,
211
648
               "[MS-RDPBCGR] 2.2.8.1.1.2.1 Basic (TS_SECURITY_HEADER) SEC_FLAGSHI_VALID field "
212
648
               "set: flagsHi=0x%04" PRIx16,
213
648
               flagsHi);
214
648
  }
215
1.07k
  WLog_Print(rdp->log, WLOG_TRACE, "%s",
216
1.07k
             rdp_security_flag_string(*flags, buffer, sizeof(buffer)));
217
1.07k
  if (length)
218
1.07k
    *length -= 4;
219
220
1.07k
  return TRUE;
221
1.07k
}
222
223
/**
224
 * Write RDP Security Header.
225
 * msdn{cc240579}
226
 * @param s stream
227
 * @param flags security flags
228
 *
229
 * @return \b TRUE for success, \b FALSE otherwise
230
 */
231
232
BOOL rdp_write_security_header(rdpRdp* rdp, wStream* s, UINT16 flags)
233
0
{
234
0
  char buffer[256] = WINPR_C_ARRAY_INIT;
235
0
  WINPR_ASSERT(s);
236
0
  WINPR_ASSERT(rdp);
237
238
0
  if (!Stream_CheckAndLogRequiredCapacityWLog(rdp->log, (s), 4))
239
0
    return FALSE;
240
241
0
  WLog_Print(rdp->log, WLOG_TRACE, "%s", rdp_security_flag_string(flags, buffer, sizeof(buffer)));
242
  /* Basic Security Header */
243
0
  WINPR_ASSERT((flags & SEC_FLAGSHI_VALID) == 0); /* SEC_FLAGSHI_VALID is unsupported */
244
0
  Stream_Write_UINT16(s, flags);                  /* flags */
245
0
  Stream_Write_UINT16(s, 0);                      /* flagsHi (unused) */
246
0
  return TRUE;
247
0
}
248
249
BOOL rdp_read_share_control_header(rdpRdp* rdp, wStream* s, UINT16* tpktLength,
250
                                   UINT16* remainingLength, UINT16* type, UINT16* channel_id)
251
18.0k
{
252
18.0k
  UINT16 len = 0;
253
18.0k
  UINT16 tmp = 0;
254
255
18.0k
  WINPR_ASSERT(rdp);
256
18.0k
  WINPR_ASSERT(s);
257
18.0k
  WINPR_ASSERT(type);
258
18.0k
  WINPR_ASSERT(channel_id);
259
260
18.0k
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 2))
261
6.49k
    return FALSE;
262
263
  /* Share Control Header */
264
11.5k
  Stream_Read_UINT16(s, len); /* totalLength */
265
266
  /* If length is 0x8000 then we actually got a flow control PDU that we should ignore
267
   http://msdn.microsoft.com/en-us/library/cc240576.aspx */
268
11.5k
  if (len == 0x8000)
269
72
  {
270
72
    if (!rdp_read_flow_control_pdu(rdp, s, type, channel_id))
271
9
      return FALSE;
272
63
    *channel_id = 0;
273
63
    if (tpktLength)
274
63
      *tpktLength = 8; /* Flow control PDU is 8 bytes */
275
63
    if (remainingLength)
276
63
      *remainingLength = 0;
277
278
63
    char buffer[128] = WINPR_C_ARRAY_INIT;
279
63
    WLog_Print(rdp->log, WLOG_DEBUG,
280
63
               "[Flow control PDU] type=%s, tpktLength=%" PRIu16 ", remainingLength=%" PRIu16,
281
63
               pdu_type_to_str(*type, buffer, sizeof(buffer)), tpktLength ? *tpktLength : 0u,
282
63
               remainingLength ? *remainingLength : 0u);
283
63
    return TRUE;
284
72
  }
285
286
11.4k
  if (len < 4U)
287
5.77k
  {
288
5.77k
    WLog_Print(rdp->log, WLOG_ERROR,
289
5.77k
               "Invalid share control header, length is %" PRIu16 ", must be >4", len);
290
5.77k
    return FALSE;
291
5.77k
  }
292
293
5.71k
  if (tpktLength)
294
5.71k
    *tpktLength = len;
295
296
5.71k
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 2))
297
144
    return FALSE;
298
299
5.56k
  Stream_Read_UINT16(s, tmp); /* pduType */
300
5.56k
  *type = tmp & 0x0F;         /* type is in the 4 least significant bits */
301
302
5.56k
  size_t remLen = len - 4;
303
5.56k
  if (len > 5)
304
5.36k
  {
305
5.36k
    if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 2))
306
55
      return FALSE;
307
308
5.30k
    Stream_Read_UINT16(s, *channel_id); /* pduSource */
309
5.30k
    remLen = len - 6;
310
5.30k
  }
311
206
  else
312
206
    *channel_id = 0; /* Windows XP can send such short DEACTIVATE_ALL PDUs. */
313
314
5.51k
  char buffer[128] = WINPR_C_ARRAY_INIT;
315
5.51k
  WLog_Print(rdp->log, WLOG_DEBUG, "type=%s, tpktLength=%" PRIu16 ", remainingLength=%" PRIuz,
316
5.51k
             pdu_type_to_str(*type, buffer, sizeof(buffer)), len, remLen);
317
5.51k
  if (remainingLength)
318
5.51k
  {
319
5.51k
    WINPR_ASSERT(remLen <= UINT16_MAX);
320
5.51k
    *remainingLength = (UINT16)remLen;
321
5.51k
  }
322
5.51k
  return Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, remLen);
323
5.56k
}
324
325
BOOL rdp_write_share_control_header(rdpRdp* rdp, wStream* s, size_t length, UINT16 type,
326
                                    UINT16 channel_id)
327
0
{
328
0
  WINPR_ASSERT(s);
329
0
  WINPR_ASSERT(rdp);
330
0
  if (length > UINT16_MAX)
331
0
    return FALSE;
332
333
0
  if (length < RDP_PACKET_HEADER_MAX_LENGTH)
334
0
    return FALSE;
335
0
  if (!Stream_CheckAndLogRequiredCapacityWLog(rdp->log, (s), 6))
336
0
    return FALSE;
337
0
  length -= RDP_PACKET_HEADER_MAX_LENGTH;
338
  /* Share Control Header */
339
0
  Stream_Write_UINT16(s, WINPR_ASSERTING_INT_CAST(uint16_t, length));      /* totalLength */
340
0
  Stream_Write_UINT16(s, WINPR_ASSERTING_INT_CAST(uint16_t, type | 0x10)); /* pduType */
341
0
  Stream_Write_UINT16(s, WINPR_ASSERTING_INT_CAST(uint16_t, channel_id));  /* pduSource */
342
0
  return TRUE;
343
0
}
344
345
BOOL rdp_read_share_data_header(rdpRdp* rdp, wStream* s, UINT16* length, BYTE* type,
346
                                UINT32* shareId, BYTE* compressedType, UINT16* compressedLength)
347
28.3k
{
348
28.3k
  WINPR_ASSERT(s);
349
28.3k
  WINPR_ASSERT(rdp);
350
351
28.3k
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 12))
352
15.5k
    return FALSE;
353
354
  /* Share Data Header */
355
12.7k
  Stream_Read_UINT32(s, *shareId);          /* shareId (4 bytes) */
356
12.7k
  Stream_Seek_UINT8(s);                     /* pad1 (1 byte) */
357
12.7k
  Stream_Seek_UINT8(s);                     /* streamId (1 byte) */
358
12.7k
  Stream_Read_UINT16(s, *length);           /* uncompressedLength (2 bytes) */
359
12.7k
  Stream_Read_UINT8(s, *type);              /* pduType2, Data PDU Type (1 byte) */
360
12.7k
  Stream_Read_UINT8(s, *compressedType);    /* compressedType (1 byte) */
361
12.7k
  Stream_Read_UINT16(s, *compressedLength); /* compressedLength (2 bytes) */
362
12.7k
  return TRUE;
363
28.3k
}
364
365
BOOL rdp_write_share_data_header(rdpRdp* rdp, wStream* s, size_t length, BYTE type, UINT32 share_id)
366
0
{
367
0
  const size_t headerLen = RDP_PACKET_HEADER_MAX_LENGTH + RDP_SHARE_CONTROL_HEADER_LENGTH +
368
0
                           RDP_SHARE_DATA_HEADER_LENGTH;
369
370
0
  WINPR_ASSERT(s);
371
0
  WINPR_ASSERT(rdp);
372
0
  if (length > UINT16_MAX)
373
0
    return FALSE;
374
375
0
  if (length < headerLen)
376
0
    return FALSE;
377
0
  length -= headerLen;
378
0
  if (!Stream_CheckAndLogRequiredCapacityWLog(rdp->log, (s), 12))
379
0
    return FALSE;
380
381
  /* Share Data Header */
382
0
  Stream_Write_UINT32(s, share_id);  /* shareId (4 bytes) */
383
0
  Stream_Write_UINT8(s, 0);          /* pad1 (1 byte) */
384
0
  Stream_Write_UINT8(s, STREAM_LOW); /* streamId (1 byte) */
385
0
  Stream_Write_UINT16(
386
0
      s, WINPR_ASSERTING_INT_CAST(uint16_t, length)); /* uncompressedLength (2 bytes) */
387
0
  Stream_Write_UINT8(s, type);                        /* pduType2, Data PDU Type (1 byte) */
388
0
  Stream_Write_UINT8(s, 0);                           /* compressedType (1 byte) */
389
0
  Stream_Write_UINT16(s, 0);                          /* compressedLength (2 bytes) */
390
0
  return TRUE;
391
0
}
392
393
static BOOL rdp_security_stream_init(rdpRdp* rdp, wStream* s, BOOL sec_header, UINT16* sec_flags)
394
2.70k
{
395
2.70k
  WINPR_ASSERT(rdp);
396
2.70k
  WINPR_ASSERT(s);
397
2.70k
  WINPR_ASSERT(sec_flags);
398
399
2.70k
  if (rdp->do_crypt)
400
0
  {
401
0
    if (!Stream_SafeSeek(s, 12))
402
0
      return FALSE;
403
404
0
    if (rdp->settings->EncryptionMethods == ENCRYPTION_METHOD_FIPS)
405
0
    {
406
0
      if (!Stream_SafeSeek(s, 4))
407
0
        return FALSE;
408
0
    }
409
410
0
    *sec_flags |= SEC_ENCRYPT;
411
412
0
    if (rdp->do_secure_checksum)
413
0
      *sec_flags |= SEC_SECURE_CHECKSUM;
414
0
  }
415
2.70k
  else if (*sec_flags != 0 || sec_header)
416
2.70k
  {
417
2.70k
    if (!Stream_SafeSeek(s, 4))
418
0
      return FALSE;
419
2.70k
  }
420
421
2.70k
  return TRUE;
422
2.70k
}
423
424
wStream* rdp_send_stream_init(rdpRdp* rdp, UINT16* sec_flags)
425
0
{
426
0
  wStream* s = nullptr;
427
428
0
  WINPR_ASSERT(rdp);
429
0
  WINPR_ASSERT(rdp->transport);
430
431
0
  s = transport_send_stream_init(rdp->transport, 4096);
432
433
0
  if (!s)
434
0
    return nullptr;
435
436
0
  if (!Stream_SafeSeek(s, RDP_PACKET_HEADER_MAX_LENGTH))
437
0
    goto fail;
438
439
0
  if (!rdp_security_stream_init(rdp, s, FALSE, sec_flags))
440
0
    goto fail;
441
442
0
  return s;
443
0
fail:
444
0
  Stream_Release(s);
445
0
  return nullptr;
446
0
}
447
448
wStream* rdp_send_stream_pdu_init(rdpRdp* rdp, UINT16* sec_flags)
449
0
{
450
0
  wStream* s = rdp_send_stream_init(rdp, sec_flags);
451
452
0
  if (!s)
453
0
    return nullptr;
454
455
0
  if (!Stream_SafeSeek(s, RDP_SHARE_CONTROL_HEADER_LENGTH))
456
0
    goto fail;
457
458
0
  return s;
459
0
fail:
460
0
  Stream_Release(s);
461
0
  return nullptr;
462
0
}
463
464
wStream* rdp_data_pdu_init(rdpRdp* rdp, UINT16* sec_flags)
465
0
{
466
0
  wStream* s = rdp_send_stream_pdu_init(rdp, sec_flags);
467
468
0
  if (!s)
469
0
    return nullptr;
470
471
0
  if (!Stream_SafeSeek(s, RDP_SHARE_DATA_HEADER_LENGTH))
472
0
    goto fail;
473
474
0
  return s;
475
0
fail:
476
0
  Stream_Release(s);
477
0
  return nullptr;
478
0
}
479
480
BOOL rdp_set_error_info(rdpRdp* rdp, UINT32 errorInfo)
481
1.13k
{
482
1.13k
  BOOL rc = TRUE;
483
1.13k
  WINPR_ASSERT(rdp);
484
485
1.13k
  rdp->errorInfo = errorInfo;
486
487
1.13k
  if (rdp->errorInfo != ERRINFO_SUCCESS)
488
1.13k
  {
489
1.13k
    rdpContext* context = rdp->context;
490
1.13k
    WINPR_ASSERT(context);
491
492
1.13k
    rdp_print_errinfo(rdp->errorInfo);
493
494
1.13k
    if (context)
495
1.13k
    {
496
1.13k
      freerdp_set_last_error_log(context, MAKE_FREERDP_ERROR(ERRINFO, errorInfo));
497
498
1.13k
      if (context->pubSub)
499
465
      {
500
465
        ErrorInfoEventArgs e = WINPR_C_ARRAY_INIT;
501
465
        EventArgsInit(&e, "freerdp");
502
465
        e.code = rdp->errorInfo;
503
465
        rc = PubSub_OnErrorInfo(context->pubSub, context, &e) >= 0;
504
465
      }
505
1.13k
    }
506
0
    else
507
0
      WLog_Print(rdp->log, WLOG_ERROR, "missing context=%p", (void*)context);
508
1.13k
  }
509
4
  else
510
4
  {
511
4
    freerdp_set_last_error_log(rdp->context, FREERDP_ERROR_SUCCESS);
512
4
  }
513
514
1.13k
  return rc;
515
1.13k
}
516
517
wStream* rdp_message_channel_pdu_init(rdpRdp* rdp, UINT16* sec_flags)
518
2.70k
{
519
2.70k
  wStream* s = nullptr;
520
521
2.70k
  WINPR_ASSERT(rdp);
522
523
2.70k
  s = transport_send_stream_init(rdp->transport, 4096);
524
525
2.70k
  if (!s)
526
0
    return nullptr;
527
528
2.70k
  if (!Stream_SafeSeek(s, RDP_PACKET_HEADER_MAX_LENGTH))
529
0
    goto fail;
530
531
2.70k
  if (!rdp_security_stream_init(rdp, s, TRUE, sec_flags))
532
0
    goto fail;
533
534
2.70k
  return s;
535
0
fail:
536
0
  Stream_Release(s);
537
0
  return nullptr;
538
2.70k
}
539
540
/**
541
 * Read an RDP packet header.
542
 * @param rdp rdp module
543
 * @param s stream
544
 * @param length RDP packet length
545
 * @param channelId channel id
546
 *
547
 * @return \b TRUE for success, \b FALSE otherwise
548
 */
549
550
BOOL rdp_read_header(rdpRdp* rdp, wStream* s, UINT16* length, UINT16* channelId)
551
54.1k
{
552
54.1k
  BYTE li = 0;
553
54.1k
  BYTE code = 0;
554
54.1k
  BYTE choice = 0;
555
54.1k
  UINT16 initiator = 0;
556
557
54.1k
  WINPR_ASSERT(rdp);
558
54.1k
  WINPR_ASSERT(rdp->settings);
559
54.1k
  WINPR_ASSERT(s);
560
54.1k
  DomainMCSPDU MCSPDU = (rdp->settings->ServerMode) ? DomainMCSPDU_SendDataRequest
561
54.1k
                                                    : DomainMCSPDU_SendDataIndication;
562
563
54.1k
  *channelId = 0; /* Initialize in case of early abort */
564
54.1k
  if (!tpkt_read_header(s, length))
565
24.2k
    return FALSE;
566
567
29.9k
  if (!tpdu_read_header(s, &code, &li, *length))
568
28.4k
    return FALSE;
569
570
1.48k
  if (code != X224_TPDU_DATA)
571
270
  {
572
270
    if (code == X224_TPDU_DISCONNECT_REQUEST)
573
167
    {
574
167
      WLog_Print(rdp->log, WLOG_WARN, "Received X224_TPDU_DISCONNECT_REQUEST, terminating");
575
167
      utils_abort_connect(rdp);
576
167
      return TRUE;
577
167
    }
578
579
103
    WLog_Print(rdp->log, WLOG_WARN,
580
103
               "Unexpected X224 TPDU type %s [%08" PRIx32 "] instead of %s",
581
103
               tpdu_type_to_string(code), code, tpdu_type_to_string(X224_TPDU_DATA));
582
103
    return FALSE;
583
270
  }
584
585
1.21k
  if (!per_read_choice(s, &choice))
586
4
    return FALSE;
587
588
1.21k
  const DomainMCSPDU domainMCSPDU = (DomainMCSPDU)(choice >> 2);
589
590
1.21k
  if (domainMCSPDU != MCSPDU)
591
1.05k
  {
592
1.05k
    if (domainMCSPDU != DomainMCSPDU_DisconnectProviderUltimatum)
593
54
    {
594
54
      WLog_Print(rdp->log, WLOG_WARN, "Received %s instead of %s",
595
54
                 mcs_domain_pdu_string(domainMCSPDU), mcs_domain_pdu_string(MCSPDU));
596
54
      return FALSE;
597
54
    }
598
1.05k
  }
599
600
1.16k
  MCSPDU = domainMCSPDU;
601
602
1.16k
  if (*length < 8U)
603
11
  {
604
11
    WLog_Print(rdp->log, WLOG_WARN, "TPDU invalid length, got %" PRIu16 ", expected at least 8",
605
11
               *length);
606
11
    return FALSE;
607
11
  }
608
609
1.14k
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, *length - 8))
610
0
    return FALSE;
611
612
1.14k
  if (MCSPDU == DomainMCSPDU_DisconnectProviderUltimatum)
613
993
  {
614
993
    int reason = 0;
615
993
    TerminateEventArgs e = WINPR_C_ARRAY_INIT;
616
617
993
    if (!mcs_recv_disconnect_provider_ultimatum(rdp->mcs, s, &reason))
618
2
      return FALSE;
619
620
991
    rdpContext* context = rdp->context;
621
991
    WINPR_ASSERT(context);
622
991
    context->disconnectUltimatum = reason;
623
624
991
    if (rdp->errorInfo == ERRINFO_SUCCESS)
625
952
    {
626
      /**
627
       * Some servers like Windows Server 2008 R2 do not send the error info pdu
628
       * when the user logs off like they should. Map DisconnectProviderUltimatum
629
       * to a ERRINFO_LOGOFF_BY_USER when the errinfo code is ERRINFO_SUCCESS.
630
       */
631
952
      UINT32 errorInfo = ERRINFO_RPC_INITIATED_DISCONNECT;
632
952
      if (reason == Disconnect_Ultimatum_provider_initiated)
633
81
        errorInfo = ERRINFO_RPC_INITIATED_DISCONNECT;
634
871
      else if (reason == Disconnect_Ultimatum_user_requested)
635
48
        errorInfo = ERRINFO_LOGOFF_BY_USER;
636
637
952
      if (!rdp_set_error_info(rdp, errorInfo))
638
0
        return FALSE;
639
952
    }
640
641
991
    WLog_Print(rdp->log, WLOG_DEBUG, "DisconnectProviderUltimatum: reason: %d", reason);
642
991
    utils_abort_connect(rdp);
643
991
    EventArgsInit(&e, "freerdp");
644
991
    e.code = 0;
645
991
    return PubSub_OnTerminate(rdp->pubSub, context, &e) >= 0;
646
991
  }
647
648
156
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 5))
649
6
    return FALSE;
650
651
150
  if (!per_read_integer16(s, &initiator, MCS_BASE_CHANNEL_ID)) /* initiator (UserId) */
652
60
    return FALSE;
653
654
90
  if (!per_read_integer16(s, channelId, 0)) /* channelId */
655
0
    return FALSE;
656
657
90
  const uint8_t dataPriority = Stream_Get_UINT8(s); /* dataPriority + Segmentation (0x70) */
658
90
  WLog_Print(rdp->log, WLOG_TRACE, "dataPriority=%" PRIu8, dataPriority);
659
660
90
  if (!per_read_length(s, length)) /* userData (OCTET_STRING) */
661
6
    return FALSE;
662
663
84
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, *length))
664
27
    return FALSE;
665
666
57
  return TRUE;
667
84
}
668
669
/**
670
 * Write an RDP packet header.
671
 * @param rdp rdp module
672
 * @param s stream
673
 * @param length RDP packet length
674
 * @param channelId channel id
675
 *
676
 * @return \b TRUE for success, \b FALSE otherwise
677
 */
678
679
BOOL rdp_write_header(rdpRdp* rdp, wStream* s, size_t length, UINT16 channelId, UINT16 sec_flags)
680
2.70k
{
681
2.70k
  WINPR_ASSERT(rdp);
682
2.70k
  WINPR_ASSERT(rdp->settings);
683
2.70k
  WINPR_ASSERT(s);
684
2.70k
  WINPR_ASSERT(length >= RDP_PACKET_HEADER_MAX_LENGTH);
685
2.70k
  if (length > UINT16_MAX)
686
0
    return FALSE;
687
688
2.70k
  DomainMCSPDU MCSPDU = (rdp->settings->ServerMode) ? DomainMCSPDU_SendDataIndication
689
2.70k
                                                    : DomainMCSPDU_SendDataRequest;
690
691
2.70k
  if ((sec_flags & SEC_ENCRYPT) && (rdp->settings->EncryptionMethods == ENCRYPTION_METHOD_FIPS))
692
0
  {
693
0
    const UINT16 body_length = (UINT16)length - RDP_PACKET_HEADER_MAX_LENGTH;
694
0
    const UINT16 pad = 8 - (body_length % 8);
695
696
0
    if (pad != 8)
697
0
      length += pad;
698
0
  }
699
700
2.70k
  if (!mcs_write_domain_mcspdu_header(s, MCSPDU, (UINT16)length, 0))
701
0
    return FALSE;
702
2.70k
  if (!per_write_integer16(s, rdp->mcs->userId, MCS_BASE_CHANNEL_ID)) /* initiator */
703
2.70k
    return FALSE;
704
0
  if (!per_write_integer16(s, channelId, 0)) /* channelId */
705
0
    return FALSE;
706
0
  if (!Stream_EnsureRemainingCapacity(s, 3))
707
0
    return FALSE;
708
0
  Stream_Write_UINT8(s, 0x70); /* dataPriority + segmentation */
709
  /*
710
   * We always encode length in two bytes, even though we could use
711
   * only one byte if length <= 0x7F. It is just easier that way,
712
   * because we can leave room for fixed-length header, store all
713
   * the data first and then store the header.
714
   */
715
0
  length = (length - RDP_PACKET_HEADER_MAX_LENGTH) | 0x8000;
716
0
  Stream_Write_UINT16_BE(
717
0
      s, WINPR_ASSERTING_INT_CAST(uint16_t, length)); /* userData (OCTET_STRING) */
718
0
  return TRUE;
719
0
}
720
721
static BOOL rdp_security_stream_out(rdpRdp* rdp, wStream* s, size_t length, UINT16 sec_flags,
722
                                    UINT32* pad)
723
0
{
724
0
  BOOL status = 0;
725
0
  WINPR_ASSERT(rdp);
726
0
  if (length > UINT16_MAX)
727
0
    return FALSE;
728
729
0
  *pad = 0;
730
731
0
  if (sec_flags != 0)
732
0
  {
733
0
    WINPR_ASSERT(sec_flags <= UINT16_MAX);
734
0
    if (!rdp_write_security_header(rdp, s, sec_flags))
735
0
      return FALSE;
736
737
0
    if (sec_flags & SEC_ENCRYPT)
738
0
    {
739
0
      if (rdp->settings->EncryptionMethods == ENCRYPTION_METHOD_FIPS)
740
0
      {
741
0
        BYTE* data = Stream_PointerAs(s, BYTE) + 12;
742
0
        const size_t size = WINPR_ASSERTING_INT_CAST(size_t, (data - Stream_Buffer(s)));
743
0
        if (size > length)
744
0
          return FALSE;
745
746
0
        length -= size;
747
748
0
        Stream_Write_UINT16(s, 0x10); /* length */
749
0
        Stream_Write_UINT8(s, 0x1);   /* TSFIPS_VERSION 1*/
750
        /* handle padding */
751
0
        *pad = 8 - (length % 8);
752
753
0
        if (*pad == 8)
754
0
          *pad = 0;
755
756
0
        if (*pad)
757
0
          memset(data + length, 0, *pad);
758
759
0
        Stream_Write_UINT8(s, WINPR_ASSERTING_INT_CAST(uint8_t, *pad));
760
761
0
        if (!Stream_CheckAndLogRequiredCapacityWLog(rdp->log, s, 8))
762
0
          return FALSE;
763
0
        if (!security_hmac_signature(data, length, Stream_Pointer(s), 8, rdp))
764
0
          return FALSE;
765
766
0
        Stream_Seek(s, 8);
767
0
        if (!security_fips_encrypt(data, length + *pad, rdp))
768
0
          return FALSE;
769
0
      }
770
0
      else
771
0
      {
772
0
        const BYTE* data = Stream_PointerAs(s, const BYTE) + 8;
773
0
        const size_t diff = Stream_GetPosition(s) + 8ULL;
774
0
        if (diff > length)
775
0
          return FALSE;
776
0
        length -= diff;
777
778
0
        if (!Stream_CheckAndLogRequiredCapacityWLog(rdp->log, s, 8))
779
0
          return FALSE;
780
0
        if (sec_flags & SEC_SECURE_CHECKSUM)
781
0
          status = security_salted_mac_signature(rdp, data, (UINT32)length, TRUE,
782
0
                                                 Stream_Pointer(s), 8);
783
0
        else
784
0
          status = security_mac_signature(rdp, data, (UINT32)length,
785
0
                                          Stream_PointerAs(s, BYTE), 8);
786
787
0
        if (!status)
788
0
          return FALSE;
789
790
0
        Stream_Seek(s, 8);
791
792
0
        if (!security_encrypt(Stream_Pointer(s), length, rdp))
793
0
          return FALSE;
794
0
      }
795
0
    }
796
0
  }
797
798
0
  return TRUE;
799
0
}
800
801
static UINT32 rdp_get_sec_bytes(rdpRdp* rdp, UINT16 sec_flags)
802
0
{
803
0
  UINT32 sec_bytes = 0;
804
805
0
  if (sec_flags & SEC_ENCRYPT)
806
0
  {
807
0
    sec_bytes = 12;
808
809
0
    if (rdp->settings->EncryptionMethods == ENCRYPTION_METHOD_FIPS)
810
0
      sec_bytes += 4;
811
0
  }
812
0
  else if (sec_flags != 0)
813
0
  {
814
0
    sec_bytes = 4;
815
0
  }
816
0
  else
817
0
  {
818
0
    sec_bytes = 0;
819
0
  }
820
821
0
  return sec_bytes;
822
0
}
823
824
BOOL rdp_send(rdpRdp* rdp, wStream* s, UINT16 channelId, UINT16 sec_flags)
825
0
{
826
0
  BOOL rc = FALSE;
827
0
  UINT32 pad = 0;
828
0
  BOOL should_unlock = FALSE;
829
830
0
  if (!s)
831
0
    return FALSE;
832
833
0
  if (!rdp)
834
0
    goto fail;
835
836
0
  if (sec_flags & SEC_ENCRYPT)
837
0
  {
838
0
    security_lock(rdp);
839
0
    should_unlock = TRUE;
840
0
  }
841
842
0
  {
843
0
    size_t length = Stream_GetPosition(s);
844
0
    Stream_ResetPosition(s);
845
0
    if (!rdp_write_header(rdp, s, length, channelId, sec_flags))
846
0
      goto fail;
847
848
0
    if (!rdp_security_stream_out(rdp, s, length, sec_flags, &pad))
849
0
      goto fail;
850
851
0
    length += pad;
852
0
    if (!Stream_SetPosition(s, length))
853
0
      goto fail;
854
0
    Stream_SealLength(s);
855
0
  }
856
857
0
  if (transport_write(rdp->transport, s) < 0)
858
0
    goto fail;
859
860
0
  rc = TRUE;
861
0
fail:
862
0
  if (should_unlock)
863
0
    security_unlock(rdp);
864
0
  Stream_Release(s);
865
0
  return rc;
866
0
}
867
868
BOOL rdp_send_pdu(rdpRdp* rdp, wStream* s, UINT16 type, UINT16 channel_id, UINT16 sec_flags)
869
0
{
870
0
  BOOL rc = FALSE;
871
0
  UINT32 sec_bytes = 0;
872
0
  size_t sec_hold = 0;
873
0
  UINT32 pad = 0;
874
0
  BOOL should_unlock = FALSE;
875
876
0
  if (!s)
877
0
    return FALSE;
878
879
0
  if (!rdp)
880
0
    goto fail;
881
882
0
  if (sec_flags & SEC_ENCRYPT)
883
0
  {
884
0
    security_lock(rdp);
885
0
    should_unlock = TRUE;
886
0
  }
887
888
0
  {
889
0
    size_t length = Stream_GetPosition(s);
890
0
    Stream_ResetPosition(s);
891
0
    if (!rdp_write_header(rdp, s, length, MCS_GLOBAL_CHANNEL_ID, sec_flags))
892
0
      goto fail;
893
0
    sec_bytes = rdp_get_sec_bytes(rdp, sec_flags);
894
0
    sec_hold = Stream_GetPosition(s);
895
0
    Stream_Seek(s, sec_bytes);
896
0
    if (!rdp_write_share_control_header(rdp, s, length - sec_bytes, type, channel_id))
897
0
      goto fail;
898
0
    if (!Stream_SetPosition(s, sec_hold))
899
0
      goto fail;
900
901
0
    if (!rdp_security_stream_out(rdp, s, length, sec_flags, &pad))
902
0
      goto fail;
903
904
0
    length += pad;
905
0
    if (!Stream_SetPosition(s, length))
906
0
      goto fail;
907
0
    Stream_SealLength(s);
908
0
  }
909
910
0
  if (transport_write(rdp->transport, s) < 0)
911
0
    goto fail;
912
913
0
  rc = TRUE;
914
0
fail:
915
0
  if (should_unlock)
916
0
    security_unlock(rdp);
917
0
  return rc;
918
0
}
919
920
BOOL rdp_send_data_pdu(rdpRdp* rdp, wStream* s, BYTE type, UINT16 channel_id, UINT16 sec_flags)
921
0
{
922
0
  BOOL rc = FALSE;
923
0
  UINT32 sec_bytes = 0;
924
0
  size_t sec_hold = 0;
925
0
  UINT32 pad = 0;
926
0
  BOOL should_unlock = FALSE;
927
928
0
  if (!s)
929
0
    return FALSE;
930
931
0
  if (!rdp)
932
0
    goto fail;
933
934
0
  if (sec_flags & SEC_ENCRYPT)
935
0
  {
936
0
    security_lock(rdp);
937
0
    should_unlock = TRUE;
938
0
  }
939
940
0
  {
941
0
    size_t length = Stream_GetPosition(s);
942
0
    Stream_ResetPosition(s);
943
0
    if (!rdp_write_header(rdp, s, length, MCS_GLOBAL_CHANNEL_ID, sec_flags))
944
0
      goto fail;
945
0
    sec_bytes = rdp_get_sec_bytes(rdp, sec_flags);
946
0
    sec_hold = Stream_GetPosition(s);
947
0
    Stream_Seek(s, sec_bytes);
948
0
    if (!rdp_write_share_control_header(rdp, s, length - sec_bytes, PDU_TYPE_DATA, channel_id))
949
0
      goto fail;
950
0
    if (!rdp_write_share_data_header(rdp, s, length - sec_bytes, type, rdp->settings->ShareId))
951
0
      goto fail;
952
0
    if (!Stream_SetPosition(s, sec_hold))
953
0
      goto fail;
954
955
0
    if (!rdp_security_stream_out(rdp, s, length, sec_flags, &pad))
956
0
      goto fail;
957
958
0
    length += pad;
959
0
    if (!Stream_SetPosition(s, length))
960
0
      goto fail;
961
0
    Stream_SealLength(s);
962
0
  }
963
0
  WLog_Print(rdp->log, WLOG_DEBUG,
964
0
             "sending data (type=0x%x size=%" PRIuz " channelId=%" PRIu16 ")", type,
965
0
             Stream_Length(s), channel_id);
966
967
0
  rdp->outPackets++;
968
0
  if (transport_write(rdp->transport, s) < 0)
969
0
    goto fail;
970
971
0
  rc = TRUE;
972
0
fail:
973
0
  if (should_unlock)
974
0
    security_unlock(rdp);
975
0
  Stream_Release(s);
976
0
  return rc;
977
0
}
978
979
BOOL rdp_send_message_channel_pdu(rdpRdp* rdp, wStream* s, UINT16 sec_flags)
980
2.70k
{
981
2.70k
  BOOL rc = FALSE;
982
2.70k
  UINT32 pad = 0;
983
2.70k
  BOOL should_unlock = FALSE;
984
985
2.70k
  WINPR_ASSERT(rdp);
986
2.70k
  WINPR_ASSERT(s);
987
988
2.70k
  if (sec_flags & SEC_ENCRYPT)
989
0
  {
990
0
    security_lock(rdp);
991
0
    should_unlock = TRUE;
992
0
  }
993
994
2.70k
  {
995
2.70k
    size_t length = Stream_GetPosition(s);
996
2.70k
    Stream_ResetPosition(s);
997
2.70k
    if (!rdp_write_header(rdp, s, length, rdp->mcs->messageChannelId, sec_flags))
998
2.70k
      goto fail;
999
1000
0
    if (!rdp_security_stream_out(rdp, s, length, sec_flags, &pad))
1001
0
      goto fail;
1002
1003
0
    length += pad;
1004
0
    if (!Stream_SetPosition(s, length))
1005
0
      goto fail;
1006
0
  }
1007
0
  Stream_SealLength(s);
1008
1009
0
  if (transport_write(rdp->transport, s) < 0)
1010
0
    goto fail;
1011
1012
0
  rc = TRUE;
1013
2.70k
fail:
1014
2.70k
  if (should_unlock)
1015
0
    security_unlock(rdp);
1016
1017
2.70k
  Stream_Release(s);
1018
2.70k
  return rc;
1019
0
}
1020
1021
static BOOL rdp_recv_server_shutdown_denied_pdu(WINPR_ATTR_UNUSED rdpRdp* rdp,
1022
                                                WINPR_ATTR_UNUSED wStream* s)
1023
4
{
1024
4
  return TRUE;
1025
4
}
1026
1027
static BOOL rdp_recv_server_set_keyboard_indicators_pdu(rdpRdp* rdp, wStream* s)
1028
34
{
1029
34
  WINPR_ASSERT(rdp);
1030
34
  WINPR_ASSERT(s);
1031
1032
34
  rdpContext* context = rdp->context;
1033
34
  WINPR_ASSERT(context);
1034
34
  WINPR_ASSERT(context->update);
1035
1036
34
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 4))
1037
1
    return FALSE;
1038
1039
33
  const uint16_t unitId = Stream_Get_UINT16(s); /* unitId (2 bytes) */
1040
33
  if (unitId != 0)
1041
27
  {
1042
27
    WLog_Print(rdp->log, WLOG_WARN,
1043
27
               "[MS-RDPBCGR] 2.2.8.2.1.1 Set Keyboard Indicators PDU Data "
1044
27
               "(TS_SET_KEYBOARD_INDICATORS_PDU)::unitId should be 0, is %" PRIu16,
1045
27
               unitId);
1046
27
  }
1047
33
  const UINT16 ledFlags = Stream_Get_UINT16(s); /* ledFlags (2 bytes) */
1048
33
  return IFCALLRESULT(TRUE, context->update->SetKeyboardIndicators, context, ledFlags);
1049
34
}
1050
1051
static BOOL rdp_recv_server_set_keyboard_ime_status_pdu(rdpRdp* rdp, wStream* s)
1052
14
{
1053
14
  if (!rdp || !rdp->input)
1054
0
    return FALSE;
1055
1056
14
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 10))
1057
2
    return FALSE;
1058
1059
12
  const uint16_t unitId = Stream_Get_UINT16(s); /* unitId (2 bytes) */
1060
12
  if (unitId != 0)
1061
9
  {
1062
9
    WLog_Print(rdp->log, WLOG_WARN,
1063
9
               "[MS-RDPBCGR] 2.2.8.2.2.1 Set Keyboard IME Status PDU Data "
1064
9
               "(TS_SET_KEYBOARD_IME_STATUS_PDU)::unitId should be 0, is %" PRIu16,
1065
9
               unitId);
1066
9
  }
1067
12
  const uint32_t imeState = Stream_Get_UINT32(s);    /* imeState (4 bytes) */
1068
12
  const uint32_t imeConvMode = Stream_Get_UINT32(s); /* imeConvMode (4 bytes) */
1069
12
  return IFCALLRESULT(TRUE, rdp->update->SetKeyboardImeStatus, rdp->context, unitId, imeState,
1070
14
                      imeConvMode);
1071
14
}
1072
1073
static BOOL rdp_recv_set_error_info_data_pdu(rdpRdp* rdp, wStream* s)
1074
186
{
1075
186
  UINT32 errorInfo = 0;
1076
1077
186
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 4))
1078
1
    return FALSE;
1079
1080
185
  Stream_Read_UINT32(s, errorInfo); /* errorInfo (4 bytes) */
1081
185
  return rdp_set_error_info(rdp, errorInfo);
1082
186
}
1083
1084
static BOOL rdp_recv_server_auto_reconnect_status_pdu(rdpRdp* rdp, wStream* s)
1085
7
{
1086
7
  UINT32 arcStatus = 0;
1087
1088
7
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 4))
1089
1
    return FALSE;
1090
1091
6
  Stream_Read_UINT32(s, arcStatus); /* arcStatus (4 bytes) */
1092
6
  WLog_Print(rdp->log, WLOG_WARN, "AutoReconnectStatus: 0x%08" PRIX32 "", arcStatus);
1093
6
  return TRUE;
1094
7
}
1095
1096
static BOOL rdp_recv_server_status_info_pdu(rdpRdp* rdp, wStream* s)
1097
10
{
1098
10
  UINT32 statusCode = 0;
1099
1100
10
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 4))
1101
1
    return FALSE;
1102
1103
9
  Stream_Read_UINT32(s, statusCode); /* statusCode (4 bytes) */
1104
1105
9
  if (rdp->update->ServerStatusInfo)
1106
0
    return rdp->update->ServerStatusInfo(rdp->context, statusCode);
1107
1108
9
  return TRUE;
1109
9
}
1110
1111
static void log_monitor(size_t idx, const MONITOR_DEF* monitor, wLog* log, DWORD level)
1112
1.24k
{
1113
1.24k
  WINPR_ASSERT(monitor);
1114
1115
1.24k
  WLog_Print(log, level, "[%" PRIuz "] {%dx%d-%dx%d} [0x%08" PRIx32 "]", idx, monitor->left,
1116
1.24k
             monitor->top, monitor->right, monitor->bottom, monitor->flags);
1117
1.24k
}
1118
1119
static void log_monitor_configuration(wLog* log, const MONITOR_DEF* monitors, size_t count)
1120
50
{
1121
50
  const DWORD level = WLOG_DEBUG;
1122
50
  WLog_Print(log, level, "[BEGIN] RemoteMonitors[%" PRIuz "]", count);
1123
1.29k
  for (size_t x = 0; x < count; x++)
1124
1.24k
  {
1125
1.24k
    const MONITOR_DEF* monitor = &monitors[x];
1126
1.24k
    log_monitor(x, monitor, log, level);
1127
1.24k
  }
1128
50
  WLog_Print(log, level, "[END] RemoteMonitors[%" PRIuz "]", count);
1129
50
}
1130
1131
static BOOL rdp_recv_monitor_layout_pdu(rdpRdp* rdp, wStream* s)
1132
70
{
1133
70
  BOOL ret = TRUE;
1134
1135
70
  WINPR_ASSERT(rdp);
1136
70
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 4))
1137
1
    return FALSE;
1138
1139
69
  const UINT32 monitorCount = Stream_Get_UINT32(s); /* monitorCount (4 bytes) */
1140
1141
69
  if (!Stream_CheckAndLogRequiredLengthOfSizeWLog(rdp->log, s, monitorCount, 20ull))
1142
19
    return FALSE;
1143
1144
50
  MONITOR_DEF* monitorDefArray = (MONITOR_DEF*)calloc(monitorCount, sizeof(MONITOR_DEF));
1145
1146
50
  if (!monitorDefArray)
1147
0
    return FALSE;
1148
1149
1.29k
  for (UINT32 index = 0; index < monitorCount; index++)
1150
1.24k
  {
1151
1.24k
    MONITOR_DEF* monitor = &monitorDefArray[index];
1152
1.24k
    Stream_Read_INT32(s, monitor->left);   /* left (4 bytes) */
1153
1.24k
    Stream_Read_INT32(s, monitor->top);    /* top (4 bytes) */
1154
1.24k
    Stream_Read_INT32(s, monitor->right);  /* right (4 bytes) */
1155
1.24k
    Stream_Read_INT32(s, monitor->bottom); /* bottom (4 bytes) */
1156
1.24k
    Stream_Read_UINT32(s, monitor->flags); /* flags (4 bytes) */
1157
1.24k
  }
1158
1159
50
  log_monitor_configuration(rdp->log, monitorDefArray, monitorCount);
1160
50
  IFCALLRET(rdp->update->RemoteMonitors, ret, rdp->context, monitorCount, monitorDefArray);
1161
50
  free(monitorDefArray);
1162
50
  if (!ret)
1163
0
    return FALSE;
1164
50
  return rdp_set_monitor_layout_pdu_state(rdp, TRUE);
1165
50
}
1166
1167
state_run_t rdp_recv_data_pdu(rdpRdp* rdp, wStream* s)
1168
10.3k
{
1169
10.3k
  BYTE type = 0;
1170
10.3k
  wStream* cs = nullptr;
1171
10.3k
  UINT16 length = 0;
1172
10.3k
  UINT32 shareId = 0;
1173
10.3k
  BYTE compressedType = 0;
1174
10.3k
  UINT16 compressedLength = 0;
1175
1176
10.3k
  WINPR_ASSERT(rdp);
1177
10.3k
  if (!rdp_read_share_data_header(rdp, s, &length, &type, &shareId, &compressedType,
1178
10.3k
                                  &compressedLength))
1179
8.37k
  {
1180
8.37k
    WLog_Print(rdp->log, WLOG_ERROR, "rdp_read_share_data_header() failed");
1181
8.37k
    return STATE_RUN_FAILED;
1182
8.37k
  }
1183
1184
1.93k
  cs = s;
1185
1186
1.93k
  if (compressedType & PACKET_COMPRESSED)
1187
247
  {
1188
247
    if (compressedLength < 18)
1189
14
    {
1190
14
      WLog_Print(rdp->log, WLOG_ERROR,
1191
14
                 "bulk_decompress: not enough bytes for compressedLength %" PRIu16 "",
1192
14
                 compressedLength);
1193
14
      return STATE_RUN_FAILED;
1194
14
    }
1195
1196
233
    UINT32 DstSize = 0;
1197
233
    const BYTE* pDstData = nullptr;
1198
233
    UINT16 SrcSize = compressedLength - 18;
1199
1200
233
    if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, SrcSize))
1201
91
    {
1202
91
      WLog_Print(rdp->log, WLOG_ERROR,
1203
91
                 "bulk_decompress: not enough bytes for compressedLength %" PRIu16 "",
1204
91
                 compressedLength);
1205
91
      return STATE_RUN_FAILED;
1206
91
    }
1207
1208
142
    if (bulk_decompress(rdp->bulk, Stream_ConstPointer(s), SrcSize, &pDstData, &DstSize,
1209
142
                        compressedType))
1210
142
    {
1211
142
      cs = transport_take_from_pool(rdp->transport, DstSize);
1212
142
      if (!cs)
1213
142
      {
1214
142
        WLog_Print(rdp->log, WLOG_ERROR, "Couldn't take stream from pool");
1215
142
        return STATE_RUN_FAILED;
1216
142
      }
1217
1218
0
      Stream_ResetPosition(cs);
1219
0
      Stream_Write(cs, pDstData, DstSize);
1220
0
      Stream_SealLength(cs);
1221
0
      Stream_ResetPosition(cs);
1222
0
    }
1223
0
    else
1224
0
    {
1225
0
      WLog_Print(rdp->log, WLOG_ERROR, "bulk_decompress() failed");
1226
0
      return STATE_RUN_FAILED;
1227
0
    }
1228
1229
0
    Stream_Seek(s, SrcSize);
1230
0
  }
1231
1232
1.68k
  WLog_Print(rdp->log, WLOG_DEBUG, "recv %s Data PDU (0x%02" PRIX8 "), length: %" PRIu16 "",
1233
1.68k
             data_pdu_type_to_string(type), type, length);
1234
1235
1.68k
  switch (type)
1236
1.68k
  {
1237
542
    case DATA_PDU_TYPE_UPDATE:
1238
542
      if (!update_recv(rdp->update, cs))
1239
526
      {
1240
526
        WLog_Print(rdp->log, WLOG_ERROR, "DATA_PDU_TYPE_UPDATE - update_recv() failed");
1241
526
        goto out_fail;
1242
526
      }
1243
1244
16
      break;
1245
1246
37
    case DATA_PDU_TYPE_CONTROL:
1247
37
      if (!rdp_recv_server_control_pdu(rdp, cs))
1248
30
      {
1249
30
        WLog_Print(rdp->log, WLOG_ERROR,
1250
30
                   "DATA_PDU_TYPE_CONTROL - rdp_recv_server_control_pdu() failed");
1251
30
        goto out_fail;
1252
30
      }
1253
1254
7
      break;
1255
1256
17
    case DATA_PDU_TYPE_POINTER:
1257
17
      if (!update_recv_pointer(rdp->update, cs))
1258
17
      {
1259
17
        WLog_Print(rdp->log, WLOG_ERROR,
1260
17
                   "DATA_PDU_TYPE_POINTER - update_recv_pointer() failed");
1261
17
        goto out_fail;
1262
17
      }
1263
1264
0
      break;
1265
1266
15
    case DATA_PDU_TYPE_SYNCHRONIZE:
1267
15
      if (!rdp_recv_server_synchronize_pdu(rdp, cs))
1268
8
      {
1269
8
        WLog_Print(rdp->log, WLOG_ERROR,
1270
8
                   "DATA_PDU_TYPE_SYNCHRONIZE - rdp_recv_synchronize_pdu() failed");
1271
8
        goto out_fail;
1272
8
      }
1273
1274
7
      break;
1275
1276
7
    case DATA_PDU_TYPE_PLAY_SOUND:
1277
7
      if (!update_recv_play_sound(rdp->update, cs))
1278
2
      {
1279
2
        WLog_Print(rdp->log, WLOG_ERROR,
1280
2
                   "DATA_PDU_TYPE_PLAY_SOUND - update_recv_play_sound() failed");
1281
2
        goto out_fail;
1282
2
      }
1283
1284
5
      break;
1285
1286
5
    case DATA_PDU_TYPE_SHUTDOWN_DENIED:
1287
4
      if (!rdp_recv_server_shutdown_denied_pdu(rdp, cs))
1288
0
      {
1289
0
        WLog_Print(
1290
0
            rdp->log, WLOG_ERROR,
1291
0
            "DATA_PDU_TYPE_SHUTDOWN_DENIED - rdp_recv_server_shutdown_denied_pdu() failed");
1292
0
        goto out_fail;
1293
0
      }
1294
1295
4
      break;
1296
1297
307
    case DATA_PDU_TYPE_SAVE_SESSION_INFO:
1298
307
      if (!rdp_recv_save_session_info(rdp, cs))
1299
262
      {
1300
262
        WLog_Print(rdp->log, WLOG_ERROR,
1301
262
                   "DATA_PDU_TYPE_SAVE_SESSION_INFO - rdp_recv_save_session_info() failed");
1302
262
        goto out_fail;
1303
262
      }
1304
1305
45
      break;
1306
1307
45
    case DATA_PDU_TYPE_FONT_MAP:
1308
36
      if (!rdp_recv_font_map_pdu(rdp, cs))
1309
0
      {
1310
0
        WLog_Print(rdp->log, WLOG_ERROR,
1311
0
                   "DATA_PDU_TYPE_FONT_MAP - rdp_recv_font_map_pdu() failed");
1312
0
        goto out_fail;
1313
0
      }
1314
1315
36
      break;
1316
1317
36
    case DATA_PDU_TYPE_SET_KEYBOARD_INDICATORS:
1318
34
      if (!rdp_recv_server_set_keyboard_indicators_pdu(rdp, cs))
1319
1
      {
1320
1
        WLog_Print(rdp->log, WLOG_ERROR,
1321
1
                   "DATA_PDU_TYPE_SET_KEYBOARD_INDICATORS - "
1322
1
                   "rdp_recv_server_set_keyboard_indicators_pdu() failed");
1323
1
        goto out_fail;
1324
1
      }
1325
1326
33
      break;
1327
1328
33
    case DATA_PDU_TYPE_SET_KEYBOARD_IME_STATUS:
1329
14
      if (!rdp_recv_server_set_keyboard_ime_status_pdu(rdp, cs))
1330
2
      {
1331
2
        WLog_Print(rdp->log, WLOG_ERROR,
1332
2
                   "DATA_PDU_TYPE_SET_KEYBOARD_IME_STATUS - "
1333
2
                   "rdp_recv_server_set_keyboard_ime_status_pdu() failed");
1334
2
        goto out_fail;
1335
2
      }
1336
1337
12
      break;
1338
1339
186
    case DATA_PDU_TYPE_SET_ERROR_INFO:
1340
186
      if (!rdp_recv_set_error_info_data_pdu(rdp, cs))
1341
1
      {
1342
1
        WLog_Print(
1343
1
            rdp->log, WLOG_ERROR,
1344
1
            "DATA_PDU_TYPE_SET_ERROR_INFO - rdp_recv_set_error_info_data_pdu() failed");
1345
1
        goto out_fail;
1346
1
      }
1347
1348
185
      break;
1349
1350
185
    case DATA_PDU_TYPE_ARC_STATUS:
1351
7
      if (!rdp_recv_server_auto_reconnect_status_pdu(rdp, cs))
1352
1
      {
1353
1
        WLog_Print(rdp->log, WLOG_ERROR,
1354
1
                   "DATA_PDU_TYPE_ARC_STATUS - "
1355
1
                   "rdp_recv_server_auto_reconnect_status_pdu() failed");
1356
1
        goto out_fail;
1357
1
      }
1358
1359
6
      break;
1360
1361
10
    case DATA_PDU_TYPE_STATUS_INFO:
1362
10
      if (!rdp_recv_server_status_info_pdu(rdp, cs))
1363
1
      {
1364
1
        WLog_Print(rdp->log, WLOG_ERROR,
1365
1
                   "DATA_PDU_TYPE_STATUS_INFO - rdp_recv_server_status_info_pdu() failed");
1366
1
        goto out_fail;
1367
1
      }
1368
1369
9
      break;
1370
1371
70
    case DATA_PDU_TYPE_MONITOR_LAYOUT:
1372
70
      if (!rdp_recv_monitor_layout_pdu(rdp, cs))
1373
22
      {
1374
22
        WLog_Print(rdp->log, WLOG_ERROR,
1375
22
                   "DATA_PDU_TYPE_MONITOR_LAYOUT - rdp_recv_monitor_layout_pdu() failed");
1376
22
        goto out_fail;
1377
22
      }
1378
1379
48
      break;
1380
1381
403
    default:
1382
403
      WLog_Print(rdp->log, WLOG_WARN,
1383
403
                 "[UNHANDLED] %s Data PDU (0x%02" PRIX8 "), length: %" PRIu16 "",
1384
403
                 data_pdu_type_to_string(type), type, length);
1385
403
      break;
1386
1.68k
  }
1387
1388
816
  if (cs != s)
1389
0
    Stream_Release(cs);
1390
1391
816
  return STATE_RUN_SUCCESS;
1392
873
out_fail:
1393
1394
873
  if (cs != s)
1395
0
    Stream_Release(cs);
1396
1397
873
  return STATE_RUN_FAILED;
1398
1.68k
}
1399
1400
state_run_t rdp_recv_message_channel_pdu(rdpRdp* rdp, wStream* s, UINT16 securityFlags)
1401
18.0k
{
1402
18.0k
  WINPR_ASSERT(rdp);
1403
18.0k
  WINPR_ASSERT(s);
1404
1405
18.0k
  if (securityFlags & SEC_AUTODETECT_REQ)
1406
0
  {
1407
    /* Server Auto-Detect Request PDU */
1408
0
    return autodetect_recv_request_packet(rdp->autodetect, RDP_TRANSPORT_TCP, s);
1409
0
  }
1410
1411
18.0k
  if (securityFlags & SEC_AUTODETECT_RSP)
1412
0
  {
1413
    /* Client Auto-Detect Response PDU */
1414
0
    return autodetect_recv_response_packet(rdp->autodetect, RDP_TRANSPORT_TCP, s);
1415
0
  }
1416
1417
18.0k
  if (securityFlags & SEC_HEARTBEAT)
1418
0
  {
1419
    /* Heartbeat PDU */
1420
0
    return rdp_recv_heartbeat_packet(rdp, s);
1421
0
  }
1422
1423
18.0k
  if (securityFlags & SEC_TRANSPORT_REQ)
1424
0
  {
1425
0
    return multitransport_recv_request(rdp->multitransport, s);
1426
0
  }
1427
1428
18.0k
  if (securityFlags & SEC_TRANSPORT_RSP)
1429
0
  {
1430
0
    return multitransport_recv_response(rdp->multitransport, s);
1431
0
  }
1432
1433
18.0k
  if (securityFlags & SEC_LICENSE_PKT)
1434
0
  {
1435
0
    return license_recv(rdp->license, s);
1436
0
  }
1437
1438
18.0k
  if (securityFlags & SEC_LICENSE_ENCRYPT_CS)
1439
0
  {
1440
0
    return license_recv(rdp->license, s);
1441
0
  }
1442
1443
18.0k
  if (securityFlags & SEC_LICENSE_ENCRYPT_SC)
1444
0
  {
1445
0
    return license_recv(rdp->license, s);
1446
0
  }
1447
1448
18.0k
  return STATE_RUN_SUCCESS;
1449
18.0k
}
1450
1451
state_run_t rdp_recv_out_of_sequence_pdu(rdpRdp* rdp, wStream* s, UINT16 pduType, UINT16 length)
1452
9.26k
{
1453
9.26k
  state_run_t rc = STATE_RUN_FAILED;
1454
9.26k
  WINPR_ASSERT(rdp);
1455
1456
9.26k
  switch (pduType)
1457
9.26k
  {
1458
1.04k
    case PDU_TYPE_DATA:
1459
1.04k
      rc = rdp_recv_data_pdu(rdp, s);
1460
1.04k
      break;
1461
128
    case PDU_TYPE_SERVER_REDIRECTION:
1462
128
      rc = rdp_recv_enhanced_security_redirection_packet(rdp, s);
1463
128
      break;
1464
1
    case PDU_TYPE_FLOW_RESPONSE:
1465
3
    case PDU_TYPE_FLOW_STOP:
1466
4
    case PDU_TYPE_FLOW_TEST:
1467
4
      rc = STATE_RUN_SUCCESS;
1468
4
      break;
1469
8.08k
    default:
1470
8.08k
    {
1471
8.08k
      char buffer1[256] = WINPR_C_ARRAY_INIT;
1472
8.08k
      char buffer2[256] = WINPR_C_ARRAY_INIT;
1473
1474
8.08k
      WLog_Print(rdp->log, WLOG_ERROR, "expected %s, got %s",
1475
8.08k
                 pdu_type_to_str(PDU_TYPE_DEMAND_ACTIVE, buffer1, sizeof(buffer1)),
1476
8.08k
                 pdu_type_to_str(pduType, buffer2, sizeof(buffer2)));
1477
8.08k
      rc = STATE_RUN_FAILED;
1478
8.08k
    }
1479
8.08k
    break;
1480
9.26k
  }
1481
1482
9.26k
  if (!tpkt_ensure_stream_consumed(rdp->log, s, length))
1483
5.70k
    return STATE_RUN_FAILED;
1484
3.55k
  return rc;
1485
9.26k
}
1486
1487
BOOL rdp_read_flow_control_pdu(rdpRdp* rdp, wStream* s, UINT16* type, UINT16* channel_id)
1488
72
{
1489
  /*
1490
   * Read flow control PDU - documented in FlowPDU section in T.128
1491
   * http://www.itu.int/rec/T-REC-T.128-199802-S/en
1492
   * The specification for the PDU has pad8bits listed BEFORE pduTypeFlow.
1493
   * However, so far pad8bits has always been observed to arrive AFTER pduTypeFlow.
1494
   * Switched the order of these two fields to match this observation.
1495
   */
1496
72
  UINT8 pduType = 0;
1497
1498
72
  WINPR_ASSERT(rdp);
1499
72
  WINPR_ASSERT(s);
1500
72
  WINPR_ASSERT(type);
1501
72
  WINPR_ASSERT(channel_id);
1502
1503
72
  if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 6))
1504
9
    return FALSE;
1505
63
  Stream_Read_UINT8(s, pduType); /* pduTypeFlow */
1506
63
  *type = pduType;
1507
63
  Stream_Seek_UINT8(s);               /* pad8bits */
1508
63
  Stream_Seek_UINT8(s);               /* flowIdentifier */
1509
63
  Stream_Seek_UINT8(s);               /* flowNumber */
1510
63
  Stream_Read_UINT16(s, *channel_id); /* pduSource */
1511
63
  return TRUE;
1512
72
}
1513
1514
/**
1515
 * Decrypt an RDP packet.
1516
 *
1517
 * @param rdp RDP module
1518
 * @param s stream
1519
 * @param pLength A pointer to the result variable, must not be nullptr
1520
 * @param securityFlags the security flags to apply
1521
 *
1522
 * @return \b TRUE for success, \b FALSE otherwise
1523
 */
1524
1525
BOOL rdp_decrypt(rdpRdp* rdp, wStream* s, UINT16* pLength, UINT16 securityFlags)
1526
2.23k
{
1527
2.23k
  BOOL res = FALSE;
1528
2.23k
  BYTE cmac[8] = WINPR_C_ARRAY_INIT;
1529
2.23k
  BYTE wmac[8] = WINPR_C_ARRAY_INIT;
1530
2.23k
  BOOL status = FALSE;
1531
1532
2.23k
  WINPR_ASSERT(rdp);
1533
2.23k
  WINPR_ASSERT(rdp->settings);
1534
2.23k
  WINPR_ASSERT(s);
1535
2.23k
  WINPR_ASSERT(pLength);
1536
1537
2.23k
  security_lock(rdp);
1538
1539
2.23k
  INT32 length = *pLength;
1540
2.23k
  if (rdp->settings->EncryptionMethods == ENCRYPTION_METHOD_NONE)
1541
2.23k
  {
1542
2.23k
    res = TRUE;
1543
2.23k
    goto unlock;
1544
2.23k
  }
1545
1546
0
  if (rdp->settings->EncryptionMethods == ENCRYPTION_METHOD_FIPS)
1547
0
  {
1548
0
    if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, 12))
1549
0
      goto unlock;
1550
1551
0
    UINT16 len = 0;
1552
0
    Stream_Read_UINT16(s, len); /* 0x10 */
1553
0
    if (len != 0x10)
1554
0
      WLog_Print(rdp->log, WLOG_WARN, "ENCRYPTION_METHOD_FIPS length %" PRIu16 " != 0x10",
1555
0
                 len);
1556
1557
0
    UINT16 version = 0;
1558
0
    Stream_Read_UINT8(s, version); /* 0x1 */
1559
0
    if (version != 1)
1560
0
      WLog_Print(rdp->log, WLOG_WARN, "ENCRYPTION_METHOD_FIPS version %" PRIu16 " != 1",
1561
0
                 version);
1562
1563
0
    BYTE pad = 0;
1564
0
    Stream_Read_UINT8(s, pad);
1565
0
    const BYTE* sig = Stream_ConstPointer(s);
1566
0
    Stream_Seek(s, 8); /* signature */
1567
0
    length -= 12;
1568
0
    const INT32 padLength = length - pad;
1569
1570
0
    if ((length <= 0) || (padLength <= 0) || (padLength > UINT16_MAX))
1571
0
    {
1572
0
      WLog_Print(rdp->log, WLOG_ERROR, "FATAL: invalid pad length %" PRId32, padLength);
1573
0
      goto unlock;
1574
0
    }
1575
1576
0
    if (!security_fips_decrypt(Stream_Pointer(s), (size_t)length, rdp))
1577
0
      goto unlock;
1578
1579
0
    if (!security_fips_check_signature(Stream_ConstPointer(s), (size_t)padLength, sig, 8, rdp))
1580
0
      goto unlock;
1581
1582
0
    if (!Stream_SetLength(s, Stream_Length(s) - pad))
1583
0
      goto unlock;
1584
1585
0
    *pLength = (UINT16)padLength;
1586
0
  }
1587
0
  else
1588
0
  {
1589
0
    if (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, sizeof(wmac)))
1590
0
      goto unlock;
1591
1592
0
    Stream_Read(s, wmac, sizeof(wmac));
1593
0
    length -= sizeof(wmac);
1594
1595
0
    if (length <= 0)
1596
0
    {
1597
0
      WLog_Print(rdp->log, WLOG_ERROR, "FATAL: invalid length field");
1598
0
      goto unlock;
1599
0
    }
1600
1601
0
    if (!security_decrypt(Stream_PointerAs(s, BYTE), (size_t)length, rdp))
1602
0
      goto unlock;
1603
1604
0
    if (securityFlags & SEC_SECURE_CHECKSUM)
1605
0
      status = security_salted_mac_signature(rdp, Stream_ConstPointer(s), (UINT32)length,
1606
0
                                             FALSE, cmac, sizeof(cmac));
1607
0
    else
1608
0
      status = security_mac_signature(rdp, Stream_ConstPointer(s), (UINT32)length, cmac,
1609
0
                                      sizeof(cmac));
1610
1611
0
    if (!status)
1612
0
      goto unlock;
1613
1614
0
    if (memcmp(wmac, cmac, sizeof(wmac)) != 0)
1615
0
    {
1616
0
      WLog_Print(rdp->log, WLOG_ERROR, "WARNING: invalid packet signature");
1617
      /*
1618
       * Because Standard RDP Security is totally broken,
1619
       * and cannot protect against MITM, don't treat signature
1620
       * verification failure as critical. This at least enables
1621
       * us to work with broken RDP clients and servers that
1622
       * generate invalid signatures.
1623
       */
1624
      // return FALSE;
1625
0
    }
1626
1627
0
    *pLength = (UINT16)length;
1628
0
  }
1629
0
  res = TRUE;
1630
2.23k
unlock:
1631
2.23k
  security_unlock(rdp);
1632
2.23k
  return res;
1633
0
}
1634
1635
const char* pdu_type_to_str(UINT16 pduType, char* buffer, size_t length)
1636
16.1k
{
1637
16.1k
  const char* str = nullptr;
1638
16.1k
  switch (pduType)
1639
16.1k
  {
1640
8.23k
    case PDU_TYPE_DEMAND_ACTIVE:
1641
8.23k
      str = "PDU_TYPE_DEMAND_ACTIVE";
1642
8.23k
      break;
1643
48
    case PDU_TYPE_CONFIRM_ACTIVE:
1644
48
      str = "PDU_TYPE_CONFIRM_ACTIVE";
1645
48
      break;
1646
60
    case PDU_TYPE_DEACTIVATE_ALL:
1647
60
      str = "PDU_TYPE_DEACTIVATE_ALL";
1648
60
      break;
1649
0
    case PDU_TYPE_DATA:
1650
0
      str = "PDU_TYPE_DATA";
1651
0
      break;
1652
0
    case PDU_TYPE_SERVER_REDIRECTION:
1653
0
      str = "PDU_TYPE_SERVER_REDIRECTION";
1654
0
      break;
1655
0
    case PDU_TYPE_FLOW_TEST:
1656
0
      str = "PDU_TYPE_FLOW_TEST";
1657
0
      break;
1658
0
    case PDU_TYPE_FLOW_RESPONSE:
1659
0
      str = "PDU_TYPE_FLOW_RESPONSE";
1660
0
      break;
1661
0
    case PDU_TYPE_FLOW_STOP:
1662
0
      str = "PDU_TYPE_FLOW_STOP";
1663
0
      break;
1664
7.82k
    default:
1665
7.82k
      str = "PDU_TYPE_UNKNOWN";
1666
7.82k
      break;
1667
16.1k
  }
1668
1669
16.1k
  winpr_str_append(str, buffer, length, "");
1670
16.1k
  {
1671
16.1k
    char msg[32] = WINPR_C_ARRAY_INIT;
1672
16.1k
    (void)_snprintf(msg, sizeof(msg), "[0x%08" PRIx32 "]", pduType);
1673
16.1k
    winpr_str_append(msg, buffer, length, "");
1674
16.1k
  }
1675
16.1k
  return buffer;
1676
16.1k
}
1677
1678
/**
1679
 * Process an RDP packet.
1680
 * @param rdp RDP module
1681
 * @param s stream
1682
 */
1683
1684
static state_run_t rdp_recv_tpkt_pdu(rdpRdp* rdp, wStream* s)
1685
0
{
1686
0
  state_run_t rc = STATE_RUN_SUCCESS;
1687
0
  UINT16 length = 0;
1688
0
  UINT16 pduType = 0;
1689
0
  UINT16 pduSource = 0;
1690
0
  UINT16 channelId = 0;
1691
0
  UINT16 securityFlags = 0;
1692
1693
0
  WINPR_ASSERT(rdp);
1694
0
  WINPR_ASSERT(rdp->context);
1695
0
  WINPR_ASSERT(s);
1696
1697
0
  freerdp* instance = rdp->context->instance;
1698
0
  WINPR_ASSERT(instance);
1699
1700
0
  if (!rdp_read_header(rdp, s, &length, &channelId))
1701
0
    return STATE_RUN_FAILED;
1702
1703
0
  if (freerdp_shall_disconnect_context(rdp->context))
1704
0
    return STATE_RUN_SUCCESS;
1705
1706
0
  if (rdp->autodetect->bandwidthMeasureStarted)
1707
0
  {
1708
0
    rdp->autodetect->bandwidthMeasureByteCount += length;
1709
0
  }
1710
1711
0
  if (rdp->mcs->messageChannelId && (channelId == rdp->mcs->messageChannelId))
1712
0
  {
1713
0
    rdp->inPackets++;
1714
0
    return rdp_handle_message_channel(rdp, s, channelId, length);
1715
0
  }
1716
1717
0
  if (rdp->settings->UseRdpSecurityLayer)
1718
0
  {
1719
0
    if (!rdp_read_security_header(rdp, s, &securityFlags, &length))
1720
0
      return STATE_RUN_FAILED;
1721
1722
0
    if (securityFlags & (SEC_ENCRYPT | SEC_REDIRECTION_PKT))
1723
0
    {
1724
0
      if (!rdp_decrypt(rdp, s, &length, securityFlags))
1725
0
        return STATE_RUN_FAILED;
1726
0
    }
1727
1728
0
    if (securityFlags & SEC_REDIRECTION_PKT)
1729
0
    {
1730
      /*
1731
       * [MS-RDPBCGR] 2.2.13.2.1
1732
       *  - no share control header, nor the 2 byte pad
1733
       */
1734
0
      Stream_Rewind(s, 2);
1735
0
      rdp->inPackets++;
1736
1737
0
      rc = rdp_recv_enhanced_security_redirection_packet(rdp, s);
1738
0
      goto out;
1739
0
    }
1740
0
  }
1741
1742
0
  if (channelId == MCS_GLOBAL_CHANNEL_ID)
1743
0
  {
1744
0
    while (Stream_GetRemainingLength(s) > 3)
1745
0
    {
1746
0
      wStream subbuffer;
1747
0
      wStream* sub = nullptr;
1748
0
      size_t diff = 0;
1749
0
      UINT16 remain = 0;
1750
1751
0
      if (!rdp_read_share_control_header(rdp, s, nullptr, &remain, &pduType, &pduSource))
1752
0
        return STATE_RUN_FAILED;
1753
1754
0
      sub = Stream_StaticInit(&subbuffer, Stream_Pointer(s), remain);
1755
0
      if (!Stream_SafeSeek(s, remain))
1756
0
        return STATE_RUN_FAILED;
1757
1758
0
      rdp->settings->PduSource = pduSource;
1759
0
      rdp->inPackets++;
1760
1761
0
      switch (pduType)
1762
0
      {
1763
0
        case PDU_TYPE_DATA:
1764
0
          rc = rdp_recv_data_pdu(rdp, sub);
1765
0
          if (state_run_failed(rc))
1766
0
            return rc;
1767
0
          break;
1768
1769
0
        case PDU_TYPE_DEACTIVATE_ALL:
1770
0
          if (!rdp_recv_deactivate_all(rdp, sub))
1771
0
          {
1772
0
            WLog_Print(rdp->log, WLOG_ERROR,
1773
0
                       "rdp_recv_tpkt_pdu: rdp_recv_deactivate_all() fail");
1774
0
            return STATE_RUN_FAILED;
1775
0
          }
1776
1777
0
          break;
1778
1779
0
        case PDU_TYPE_SERVER_REDIRECTION:
1780
0
          return rdp_recv_enhanced_security_redirection_packet(rdp, sub);
1781
1782
0
        case PDU_TYPE_FLOW_RESPONSE:
1783
0
        case PDU_TYPE_FLOW_STOP:
1784
0
        case PDU_TYPE_FLOW_TEST:
1785
0
          WLog_Print(rdp->log, WLOG_DEBUG, "flow message 0x%04" PRIX16 "", pduType);
1786
          /* http://msdn.microsoft.com/en-us/library/cc240576.aspx */
1787
0
          if (!Stream_SafeSeek(sub, remain))
1788
0
            return STATE_RUN_FAILED;
1789
0
          break;
1790
1791
0
        default:
1792
0
        {
1793
0
          char buffer[256] = WINPR_C_ARRAY_INIT;
1794
0
          WLog_Print(rdp->log, WLOG_ERROR, "incorrect PDU type: %s",
1795
0
                     pdu_type_to_str(pduType, buffer, sizeof(buffer)));
1796
0
        }
1797
0
        break;
1798
0
      }
1799
1800
0
      diff = Stream_GetRemainingLength(sub);
1801
0
      if (diff > 0)
1802
0
      {
1803
0
        char buffer[256] = WINPR_C_ARRAY_INIT;
1804
0
        WLog_Print(rdp->log, WLOG_WARN,
1805
0
                   "pduType %s not properly parsed, %" PRIuz
1806
0
                   " bytes remaining unhandled. Skipping.",
1807
0
                   pdu_type_to_str(pduType, buffer, sizeof(buffer)), diff);
1808
0
      }
1809
0
    }
1810
0
  }
1811
0
  else
1812
0
  {
1813
0
    rdp->inPackets++;
1814
1815
0
    if (!freerdp_channel_process(instance, s, channelId, length))
1816
0
      return STATE_RUN_FAILED;
1817
0
  }
1818
1819
0
out:
1820
0
  if (!tpkt_ensure_stream_consumed(rdp->log, s, length))
1821
0
    return STATE_RUN_FAILED;
1822
0
  return rc;
1823
0
}
1824
1825
static state_run_t rdp_recv_fastpath_pdu(rdpRdp* rdp, wStream* s)
1826
0
{
1827
0
  UINT16 length = 0;
1828
1829
0
  WINPR_ASSERT(rdp);
1830
0
  rdpFastPath* fastpath = rdp->fastpath;
1831
1832
0
  if (!fastpath_read_header_rdp(fastpath, s, &length))
1833
0
  {
1834
0
    WLog_Print(rdp->log, WLOG_ERROR, "rdp_recv_fastpath_pdu: fastpath_read_header_rdp() fail");
1835
0
    return STATE_RUN_FAILED;
1836
0
  }
1837
1838
0
  if ((length == 0) || (!Stream_CheckAndLogRequiredLengthWLog(rdp->log, s, length)))
1839
0
  {
1840
0
    WLog_Print(rdp->log, WLOG_ERROR, "incorrect FastPath PDU header length %" PRIu16 "",
1841
0
               length);
1842
0
    return STATE_RUN_FAILED;
1843
0
  }
1844
1845
0
  if (rdp->autodetect->bandwidthMeasureStarted)
1846
0
  {
1847
0
    rdp->autodetect->bandwidthMeasureByteCount += length;
1848
0
  }
1849
1850
0
  if (!fastpath_decrypt(fastpath, s, &length))
1851
0
    return STATE_RUN_FAILED;
1852
1853
0
  return fastpath_recv_updates(rdp->fastpath, s);
1854
0
}
1855
1856
static state_run_t rdp_recv_pdu(rdpRdp* rdp, wStream* s)
1857
0
{
1858
0
  const int rc = tpkt_verify_header(s);
1859
0
  if (rc > 0)
1860
0
    return rdp_recv_tpkt_pdu(rdp, s);
1861
0
  else if (rc == 0)
1862
0
    return rdp_recv_fastpath_pdu(rdp, s);
1863
0
  else
1864
0
    return STATE_RUN_FAILED;
1865
0
}
1866
1867
static state_run_t rdp_handle_sc_flags(rdpRdp* rdp, wStream* s, UINT32 flag,
1868
                                       CONNECTION_STATE nextState)
1869
0
{
1870
0
  const UINT32 mask = FINALIZE_SC_SYNCHRONIZE_PDU | FINALIZE_SC_CONTROL_COOPERATE_PDU |
1871
0
                      FINALIZE_SC_CONTROL_GRANTED_PDU | FINALIZE_SC_FONT_MAP_PDU;
1872
0
  WINPR_ASSERT(rdp);
1873
0
  state_run_t status = rdp_recv_pdu(rdp, s);
1874
0
  if (state_run_success(status))
1875
0
  {
1876
0
    const UINT32 flags = rdp->finalize_sc_pdus & mask;
1877
0
    if ((flags & flag) == flag)
1878
0
    {
1879
0
      if (!rdp_client_transition_to_state(rdp, nextState))
1880
0
        status = STATE_RUN_FAILED;
1881
0
      else
1882
0
        status = STATE_RUN_SUCCESS;
1883
0
    }
1884
0
    else
1885
0
    {
1886
0
      char flag_buffer[256] = WINPR_C_ARRAY_INIT;
1887
0
      char mask_buffer[256] = WINPR_C_ARRAY_INIT;
1888
0
      WLog_Print(rdp->log, WLOG_WARN,
1889
0
                 "[%s] unexpected server message, expected flag %s [have %s]",
1890
0
                 rdp_get_state_string(rdp),
1891
0
                 rdp_finalize_flags_to_str(flag, flag_buffer, sizeof(flag_buffer)),
1892
0
                 rdp_finalize_flags_to_str(flags, mask_buffer, sizeof(mask_buffer)));
1893
0
    }
1894
0
  }
1895
0
  return status;
1896
0
}
1897
1898
static state_run_t rdp_client_exchange_monitor_layout(rdpRdp* rdp, wStream* s)
1899
0
{
1900
0
  WINPR_ASSERT(rdp);
1901
1902
0
  if (!rdp_check_monitor_layout_pdu_state(rdp, FALSE))
1903
0
    return STATE_RUN_FAILED;
1904
1905
  /* We might receive unrelated messages from the server (channel traffic),
1906
   * so only proceed if some flag changed
1907
   */
1908
0
  const UINT32 old = rdp->finalize_sc_pdus;
1909
0
  state_run_t status = rdp_recv_pdu(rdp, s);
1910
0
  const UINT32 now = rdp->finalize_sc_pdus;
1911
0
  const BOOL changed = (old != now) || rdp->monitor_layout_pdu;
1912
1913
  /* This PDU is optional, so if we received a finalize PDU continue there */
1914
0
  if (state_run_success(status) && changed)
1915
0
  {
1916
0
    if (!rdp->monitor_layout_pdu)
1917
0
    {
1918
0
      if (!rdp_finalize_is_flag_set(rdp, FINALIZE_SC_SYNCHRONIZE_PDU))
1919
0
        return STATE_RUN_FAILED;
1920
0
    }
1921
1922
0
    status = rdp_client_connect_finalize(rdp);
1923
0
    if (state_run_success(status) && !rdp->monitor_layout_pdu)
1924
0
      status = STATE_RUN_TRY_AGAIN;
1925
0
  }
1926
0
  return status;
1927
0
}
1928
1929
static state_run_t rdp_recv_callback_int(WINPR_ATTR_UNUSED rdpTransport* transport, wStream* s,
1930
                                         void* extra)
1931
9.26k
{
1932
9.26k
  state_run_t status = STATE_RUN_SUCCESS;
1933
9.26k
  rdpRdp* rdp = (rdpRdp*)extra;
1934
1935
9.26k
  WINPR_ASSERT(transport);
1936
9.26k
  WINPR_ASSERT(rdp);
1937
9.26k
  WINPR_ASSERT(s);
1938
1939
9.26k
  switch (rdp_get_state(rdp))
1940
9.26k
  {
1941
0
    case CONNECTION_STATE_NEGO:
1942
0
      if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_CREATE_REQUEST))
1943
0
        status = STATE_RUN_FAILED;
1944
0
      else
1945
0
        status = STATE_RUN_CONTINUE;
1946
0
      break;
1947
0
    case CONNECTION_STATE_NLA:
1948
0
      if (nla_get_state(rdp->nla) < NLA_STATE_AUTH_INFO)
1949
0
      {
1950
0
        if (nla_recv_pdu(rdp->nla, s) < 1)
1951
0
        {
1952
0
          WLog_Print(rdp->log, WLOG_ERROR, "%s - nla_recv_pdu() fail",
1953
0
                     rdp_get_state_string(rdp));
1954
0
          status = STATE_RUN_FAILED;
1955
0
        }
1956
0
      }
1957
0
      else if (nla_get_state(rdp->nla) == NLA_STATE_POST_NEGO)
1958
0
      {
1959
0
        if (nego_recv(rdp->transport, s, (void*)rdp->nego) < 0)
1960
0
          return STATE_RUN_FAILED;
1961
1962
0
        if (!nego_update_settings_from_state(rdp->nego, rdp->settings))
1963
0
          return STATE_RUN_FAILED;
1964
1965
0
        if (nego_get_state(rdp->nego) != NEGO_STATE_FINAL)
1966
0
        {
1967
0
          WLog_Print(rdp->log, WLOG_ERROR, "%s - nego_recv() fail",
1968
0
                     rdp_get_state_string(rdp));
1969
0
          status = STATE_RUN_FAILED;
1970
0
        }
1971
0
        else if (!nla_set_state(rdp->nla, NLA_STATE_FINAL))
1972
0
          status = STATE_RUN_FAILED;
1973
0
      }
1974
1975
0
      if (state_run_success(status))
1976
0
      {
1977
0
        if (nla_get_state(rdp->nla) == NLA_STATE_AUTH_INFO)
1978
0
        {
1979
0
          transport_set_nla_mode(rdp->transport, FALSE);
1980
1981
0
          if (rdp->settings->VmConnectMode)
1982
0
          {
1983
0
            if (!nego_set_state(rdp->nego, NEGO_STATE_NLA))
1984
0
              status = STATE_RUN_FAILED;
1985
0
            else if (!nego_set_requested_protocols(rdp->nego,
1986
0
                                                   PROTOCOL_HYBRID | PROTOCOL_SSL))
1987
0
              status = STATE_RUN_FAILED;
1988
0
            else if (!nego_send_negotiation_request(rdp->nego))
1989
0
              status = STATE_RUN_FAILED;
1990
0
            else if (!nla_set_state(rdp->nla, NLA_STATE_POST_NEGO))
1991
0
              status = STATE_RUN_FAILED;
1992
0
          }
1993
0
          else
1994
0
          {
1995
0
            if (!nla_set_state(rdp->nla, NLA_STATE_FINAL))
1996
0
              status = STATE_RUN_FAILED;
1997
0
          }
1998
0
        }
1999
0
      }
2000
0
      if (state_run_success(status))
2001
0
      {
2002
2003
0
        if (nla_get_state(rdp->nla) == NLA_STATE_FINAL)
2004
0
        {
2005
0
          if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_CREATE_REQUEST))
2006
0
            status = STATE_RUN_FAILED;
2007
0
          else
2008
0
            status = STATE_RUN_CONTINUE;
2009
0
        }
2010
0
      }
2011
0
      break;
2012
2013
0
    case CONNECTION_STATE_AAD:
2014
0
      if (aad_recv(rdp->aad, s) < 1)
2015
0
      {
2016
0
        WLog_Print(rdp->log, WLOG_ERROR, "%s - aad_recv() fail", rdp_get_state_string(rdp));
2017
0
        status = STATE_RUN_FAILED;
2018
0
      }
2019
0
      if (state_run_success(status))
2020
0
      {
2021
0
        if (aad_get_state(rdp->aad) == AAD_STATE_FINAL)
2022
0
        {
2023
0
          transport_set_aad_mode(rdp->transport, FALSE);
2024
0
          if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_CREATE_REQUEST))
2025
0
            status = STATE_RUN_FAILED;
2026
0
          else
2027
0
            status = STATE_RUN_CONTINUE;
2028
0
        }
2029
0
      }
2030
0
      break;
2031
2032
0
    case CONNECTION_STATE_MCS_CREATE_REQUEST:
2033
0
      if (!mcs_client_begin(rdp->mcs))
2034
0
      {
2035
0
        WLog_Print(rdp->log, WLOG_ERROR, "%s - mcs_client_begin() fail",
2036
0
                   rdp_get_state_string(rdp));
2037
0
        status = STATE_RUN_FAILED;
2038
0
      }
2039
0
      else if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_CREATE_RESPONSE))
2040
0
        status = STATE_RUN_FAILED;
2041
0
      else if (Stream_GetRemainingLength(s) > 0)
2042
0
        status = STATE_RUN_CONTINUE;
2043
0
      break;
2044
2045
0
    case CONNECTION_STATE_MCS_CREATE_RESPONSE:
2046
0
      if (!mcs_recv_connect_response(rdp->mcs, s))
2047
0
      {
2048
0
        WLog_Print(rdp->log, WLOG_ERROR, "mcs_recv_connect_response failure");
2049
0
        status = STATE_RUN_FAILED;
2050
0
      }
2051
0
      else
2052
0
      {
2053
0
        if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_ERECT_DOMAIN))
2054
0
          status = STATE_RUN_FAILED;
2055
0
        else if (!mcs_send_erect_domain_request(rdp->mcs))
2056
0
        {
2057
0
          WLog_Print(rdp->log, WLOG_ERROR, "mcs_send_erect_domain_request failure");
2058
0
          status = STATE_RUN_FAILED;
2059
0
        }
2060
0
        else if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_ATTACH_USER))
2061
0
          status = STATE_RUN_FAILED;
2062
0
        else if (!mcs_send_attach_user_request(rdp->mcs))
2063
0
        {
2064
0
          WLog_Print(rdp->log, WLOG_ERROR, "mcs_send_attach_user_request failure");
2065
0
          status = STATE_RUN_FAILED;
2066
0
        }
2067
0
        else if (!rdp_client_transition_to_state(rdp,
2068
0
                                                 CONNECTION_STATE_MCS_ATTACH_USER_CONFIRM))
2069
0
          status = STATE_RUN_FAILED;
2070
0
      }
2071
0
      break;
2072
2073
0
    case CONNECTION_STATE_MCS_ATTACH_USER_CONFIRM:
2074
0
      if (!mcs_recv_attach_user_confirm(rdp->mcs, s))
2075
0
      {
2076
0
        WLog_Print(rdp->log, WLOG_ERROR, "mcs_recv_attach_user_confirm failure");
2077
0
        status = STATE_RUN_FAILED;
2078
0
      }
2079
0
      else if (!freerdp_settings_get_bool(rdp->settings, FreeRDP_SupportSkipChannelJoin))
2080
0
      {
2081
0
        if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_MCS_CHANNEL_JOIN_REQUEST))
2082
0
          status = STATE_RUN_FAILED;
2083
0
        else if (!mcs_send_channel_join_request(rdp->mcs, rdp->mcs->userId))
2084
0
        {
2085
0
          WLog_Print(rdp->log, WLOG_ERROR, "mcs_send_channel_join_request failure");
2086
0
          status = STATE_RUN_FAILED;
2087
0
        }
2088
0
        else if (!rdp_client_transition_to_state(
2089
0
                     rdp, CONNECTION_STATE_MCS_CHANNEL_JOIN_RESPONSE))
2090
0
          status = STATE_RUN_FAILED;
2091
0
      }
2092
0
      else
2093
0
      {
2094
        /* SKIP_CHANNELJOIN is active, consider channels to be joined */
2095
0
        if (!rdp_client_skip_mcs_channel_join(rdp))
2096
0
          status = STATE_RUN_FAILED;
2097
0
      }
2098
0
      break;
2099
2100
0
    case CONNECTION_STATE_MCS_CHANNEL_JOIN_RESPONSE:
2101
0
      if (!rdp_client_connect_mcs_channel_join_confirm(rdp, s))
2102
0
      {
2103
0
        WLog_Print(rdp->log, WLOG_ERROR,
2104
0
                   "%s - "
2105
0
                   "rdp_client_connect_mcs_channel_join_confirm() fail",
2106
0
                   rdp_get_state_string(rdp));
2107
0
        status = STATE_RUN_FAILED;
2108
0
      }
2109
2110
0
      break;
2111
2112
0
    case CONNECTION_STATE_CONNECT_TIME_AUTO_DETECT_REQUEST:
2113
0
      if (!rdp_client_connect_auto_detect(rdp, s, WLOG_DEBUG))
2114
0
      {
2115
0
        if (!rdp_client_transition_to_state(rdp, CONNECTION_STATE_LICENSING))
2116
0
          status = STATE_RUN_FAILED;
2117
0
        else
2118
0
          status = STATE_RUN_TRY_AGAIN;
2119
0
      }
2120
0
      break;
2121
2122
0
    case CONNECTION_STATE_LICENSING:
2123
0
      status = rdp_client_connect_license(rdp, s);
2124
2125
0
      if (state_run_failed(status))
2126
0
      {
2127
0
        char buffer[64] = WINPR_C_ARRAY_INIT;
2128
0
        WLog_Print(rdp->log, WLOG_DEBUG, "%s - rdp_client_connect_license() - %s",
2129
0
                   rdp_get_state_string(rdp),
2130
0
                   state_run_result_string(status, buffer, ARRAYSIZE(buffer)));
2131
0
      }
2132
2133
0
      break;
2134
2135
0
    case CONNECTION_STATE_MULTITRANSPORT_BOOTSTRAPPING_REQUEST:
2136
0
      if (!rdp_client_connect_auto_detect(rdp, s, WLOG_DEBUG))
2137
0
      {
2138
0
        if (!rdp_client_transition_to_state(
2139
0
                rdp, CONNECTION_STATE_CAPABILITIES_EXCHANGE_DEMAND_ACTIVE))
2140
0
          status = STATE_RUN_FAILED;
2141
0
        else
2142
0
          status = STATE_RUN_TRY_AGAIN;
2143
0
      }
2144
0
      break;
2145
2146
0
    case CONNECTION_STATE_CAPABILITIES_EXCHANGE_DEMAND_ACTIVE:
2147
0
      status = rdp_client_connect_demand_active(rdp, s);
2148
2149
0
      if (state_run_failed(status))
2150
0
      {
2151
0
        char buffer[64] = WINPR_C_ARRAY_INIT;
2152
0
        WLog_Print(rdp->log, WLOG_DEBUG,
2153
0
                   "%s - "
2154
0
                   "rdp_client_connect_demand_active() - %s",
2155
0
                   rdp_get_state_string(rdp),
2156
0
                   state_run_result_string(status, buffer, ARRAYSIZE(buffer)));
2157
0
      }
2158
0
      else if (status == STATE_RUN_ACTIVE)
2159
0
      {
2160
0
        if (!rdp_client_transition_to_state(
2161
0
                rdp, CONNECTION_STATE_CAPABILITIES_EXCHANGE_CONFIRM_ACTIVE))
2162
0
          status = STATE_RUN_FAILED;
2163
0
        else
2164
0
          status = STATE_RUN_CONTINUE;
2165
0
      }
2166
0
      break;
2167
2168
0
    case CONNECTION_STATE_CAPABILITIES_EXCHANGE_MONITOR_LAYOUT:
2169
0
      status = rdp_client_exchange_monitor_layout(rdp, s);
2170
0
      break;
2171
2172
0
    case CONNECTION_STATE_CAPABILITIES_EXCHANGE_CONFIRM_ACTIVE:
2173
0
      status = rdp_client_connect_confirm_active(rdp, s);
2174
0
      break;
2175
2176
0
    case CONNECTION_STATE_FINALIZATION_CLIENT_SYNC:
2177
0
      status = rdp_handle_sc_flags(rdp, s, FINALIZE_SC_SYNCHRONIZE_PDU,
2178
0
                                   CONNECTION_STATE_FINALIZATION_CLIENT_COOPERATE);
2179
0
      break;
2180
0
    case CONNECTION_STATE_FINALIZATION_CLIENT_COOPERATE:
2181
0
      status = rdp_handle_sc_flags(rdp, s, FINALIZE_SC_CONTROL_COOPERATE_PDU,
2182
0
                                   CONNECTION_STATE_FINALIZATION_CLIENT_GRANTED_CONTROL);
2183
0
      break;
2184
0
    case CONNECTION_STATE_FINALIZATION_CLIENT_GRANTED_CONTROL:
2185
0
      status = rdp_handle_sc_flags(rdp, s, FINALIZE_SC_CONTROL_GRANTED_PDU,
2186
0
                                   CONNECTION_STATE_FINALIZATION_CLIENT_FONT_MAP);
2187
0
      break;
2188
0
    case CONNECTION_STATE_FINALIZATION_CLIENT_FONT_MAP:
2189
0
      status = rdp_handle_sc_flags(rdp, s, FINALIZE_SC_FONT_MAP_PDU, CONNECTION_STATE_ACTIVE);
2190
0
      break;
2191
2192
0
    case CONNECTION_STATE_ACTIVE:
2193
0
      status = rdp_recv_pdu(rdp, s);
2194
2195
0
      if (state_run_failed(status))
2196
0
      {
2197
0
        char buffer[64] = WINPR_C_ARRAY_INIT;
2198
0
        WLog_Print(rdp->log, WLOG_DEBUG, "%s - rdp_recv_pdu() - %s",
2199
0
                   rdp_get_state_string(rdp),
2200
0
                   state_run_result_string(status, buffer, ARRAYSIZE(buffer)));
2201
0
      }
2202
0
      break;
2203
2204
9.26k
    default:
2205
9.26k
      WLog_Print(rdp->log, WLOG_ERROR, "%s state %u", rdp_get_state_string(rdp),
2206
9.26k
                 rdp_get_state(rdp));
2207
9.26k
      status = STATE_RUN_FAILED;
2208
9.26k
      break;
2209
9.26k
  }
2210
2211
9.26k
  if (state_run_failed(status))
2212
9.26k
  {
2213
9.26k
    char buffer[64] = WINPR_C_ARRAY_INIT;
2214
9.26k
    WLog_Print(rdp->log, WLOG_ERROR, "%s status %s", rdp_get_state_string(rdp),
2215
9.26k
               state_run_result_string(status, buffer, ARRAYSIZE(buffer)));
2216
9.26k
  }
2217
9.26k
  return status;
2218
9.26k
}
2219
2220
state_run_t rdp_recv_callback(rdpTransport* transport, wStream* s, void* extra)
2221
9.26k
{
2222
9.26k
  char buffer[64] = WINPR_C_ARRAY_INIT;
2223
9.26k
  state_run_t rc = STATE_RUN_FAILED;
2224
9.26k
  const size_t start = Stream_GetPosition(s);
2225
9.26k
  const rdpContext* context = transport_get_context(transport);
2226
2227
9.26k
  WINPR_ASSERT(context);
2228
9.26k
  do
2229
9.26k
  {
2230
9.26k
    const rdpRdp* rdp = context->rdp;
2231
9.26k
    WINPR_ASSERT(rdp);
2232
2233
9.26k
    if (rc == STATE_RUN_TRY_AGAIN)
2234
0
    {
2235
0
      if (!Stream_SetPosition(s, start))
2236
0
        return STATE_RUN_FAILED;
2237
0
    }
2238
2239
9.26k
    const char* old = rdp_get_state_string(rdp);
2240
9.26k
    const size_t orem = Stream_GetRemainingLength(s);
2241
9.26k
    rc = rdp_recv_callback_int(transport, s, extra);
2242
2243
9.26k
    const char* now = rdp_get_state_string(rdp);
2244
9.26k
    const size_t rem = Stream_GetRemainingLength(s);
2245
2246
9.26k
    WLog_Print(rdp->log, WLOG_TRACE,
2247
9.26k
               "(client)[%s -> %s] current return %s [feeding %" PRIuz " bytes, %" PRIuz
2248
9.26k
               " bytes not processed]",
2249
9.26k
               old, now, state_run_result_string(rc, buffer, sizeof(buffer)), orem, rem);
2250
9.26k
  } while ((rc == STATE_RUN_TRY_AGAIN) || (rc == STATE_RUN_CONTINUE));
2251
9.26k
  return rc;
2252
9.26k
}
2253
2254
BOOL rdp_send_channel_data(rdpRdp* rdp, UINT16 channelId, const BYTE* data, size_t size)
2255
0
{
2256
0
  return freerdp_channel_send(rdp, channelId, data, size);
2257
0
}
2258
2259
BOOL rdp_channel_send_packet(rdpRdp* rdp, UINT16 channelId, size_t totalSize, UINT32 flags,
2260
                             const BYTE* data, size_t chunkSize)
2261
0
{
2262
0
  return freerdp_channel_send_packet(rdp, channelId, totalSize, flags, data, chunkSize);
2263
0
}
2264
2265
BOOL rdp_send_error_info(rdpRdp* rdp)
2266
0
{
2267
0
  UINT16 sec_flags = 0;
2268
0
  wStream* s = nullptr;
2269
0
  BOOL status = 0;
2270
2271
0
  if (rdp->errorInfo == ERRINFO_SUCCESS)
2272
0
    return TRUE;
2273
2274
0
  s = rdp_data_pdu_init(rdp, &sec_flags);
2275
2276
0
  if (!s)
2277
0
    return FALSE;
2278
2279
0
  Stream_Write_UINT32(s, rdp->errorInfo); /* error id (4 bytes) */
2280
0
  status = rdp_send_data_pdu(rdp, s, DATA_PDU_TYPE_SET_ERROR_INFO, 0, sec_flags);
2281
0
  return status;
2282
0
}
2283
2284
int rdp_check_fds(rdpRdp* rdp)
2285
0
{
2286
0
  int status = 0;
2287
0
  rdpTsg* tsg = nullptr;
2288
0
  rdpTransport* transport = nullptr;
2289
2290
0
  WINPR_ASSERT(rdp);
2291
0
  transport = rdp->transport;
2292
2293
0
  tsg = transport_get_tsg(transport);
2294
0
  if (tsg)
2295
0
  {
2296
0
    if (!tsg_check_event_handles(tsg))
2297
0
    {
2298
0
      WLog_Print(rdp->log, WLOG_ERROR, "rdp_check_fds: tsg_check_event_handles()");
2299
0
      return -1;
2300
0
    }
2301
2302
0
    if (tsg_get_state(tsg) != TSG_STATE_PIPE_CREATED)
2303
0
      return 1;
2304
0
  }
2305
2306
0
  status = transport_check_fds(transport);
2307
2308
0
  if (status == 1)
2309
0
  {
2310
0
    if (!rdp_client_redirect(rdp)) /* session redirection */
2311
0
      return -1;
2312
0
  }
2313
2314
0
  if (status < 0)
2315
0
    WLog_Print(rdp->log, WLOG_DEBUG, "transport_check_fds() - %i", status);
2316
0
  else
2317
0
    status = freerdp_timer_poll(rdp->timer);
2318
2319
0
  return status;
2320
0
}
2321
2322
BOOL freerdp_get_stats(const rdpRdp* rdp, UINT64* inBytes, UINT64* outBytes, UINT64* inPackets,
2323
                       UINT64* outPackets)
2324
0
{
2325
0
  if (!rdp)
2326
0
    return FALSE;
2327
2328
0
  if (inBytes)
2329
0
    *inBytes = rdp->inBytes;
2330
0
  if (outBytes)
2331
0
    *outBytes = rdp->outBytes;
2332
0
  if (inPackets)
2333
0
    *inPackets = rdp->inPackets;
2334
0
  if (outPackets)
2335
0
    *outPackets = rdp->outPackets;
2336
2337
0
  return TRUE;
2338
0
}
2339
2340
static bool rdp_new_common(rdpRdp* rdp)
2341
18.0k
{
2342
18.0k
  WINPR_ASSERT(rdp);
2343
2344
18.0k
  bool rc = false;
2345
18.0k
  rdp->transport = transport_new(rdp->context);
2346
18.0k
  if (!rdp->transport)
2347
0
    goto fail;
2348
2349
18.0k
  if (rdp->io)
2350
0
  {
2351
0
    if (!transport_set_io_callbacks(rdp->transport, rdp->io))
2352
0
      goto fail;
2353
0
  }
2354
2355
18.0k
  rdp->aad = aad_new(rdp->context);
2356
18.0k
  if (!rdp->aad)
2357
0
    goto fail;
2358
2359
18.0k
  rdp->nego = nego_new(rdp->transport);
2360
18.0k
  if (!rdp->nego)
2361
0
    goto fail;
2362
2363
18.0k
  rdp->mcs = mcs_new(rdp->context);
2364
18.0k
  if (!rdp->mcs)
2365
0
    goto fail;
2366
2367
18.0k
  rdp->license = license_new(rdp);
2368
18.0k
  if (!rdp->license)
2369
0
    goto fail;
2370
2371
18.0k
  rdp->fastpath = fastpath_new(rdp);
2372
18.0k
  if (!rdp->fastpath)
2373
0
    goto fail;
2374
2375
18.0k
  rc = true;
2376
18.0k
fail:
2377
18.0k
  return rc;
2378
18.0k
}
2379
2380
/**
2381
 * Instantiate new RDP module.
2382
 * @return new RDP module
2383
 */
2384
2385
rdpRdp* rdp_new(rdpContext* context)
2386
18.0k
{
2387
18.0k
  DWORD flags = 0;
2388
18.0k
  rdpRdp* rdp = (rdpRdp*)calloc(1, sizeof(rdpRdp));
2389
2390
18.0k
  if (!rdp)
2391
0
    return nullptr;
2392
2393
18.0k
  rdp->log = WLog_Create(RDP_TAG, WLog_GetRoot());
2394
18.0k
  if (!rdp->log)
2395
0
    goto fail;
2396
2397
18.0k
  (void)_snprintf(rdp->log_context, sizeof(rdp->log_context), "%p", (void*)context);
2398
18.0k
  if (!WLog_SetContext(rdp->log, nullptr, rdp->log_context))
2399
0
    goto fail;
2400
2401
18.0k
  InitializeCriticalSection(&rdp->critical);
2402
18.0k
  rdp->context = context;
2403
18.0k
  WINPR_ASSERT(rdp->context);
2404
2405
18.0k
  if (context->ServerMode)
2406
8.78k
    flags |= FREERDP_SETTINGS_SERVER_MODE;
2407
2408
18.0k
  if (!context->settings)
2409
18.0k
  {
2410
18.0k
    context->settings = rdp->settings = freerdp_settings_new(flags);
2411
2412
18.0k
    if (!rdp->settings)
2413
0
      goto fail;
2414
18.0k
  }
2415
0
  else
2416
0
    rdp->settings = context->settings;
2417
2418
  /* Keep a backup copy of settings for later comparisons */
2419
18.0k
  if (!rdp_set_backup_settings(rdp))
2420
0
    goto fail;
2421
2422
18.0k
  rdp->settings->instance = context->instance;
2423
2424
18.0k
  context->settings = rdp->settings;
2425
18.0k
  if (context->instance)
2426
9.26k
    context->settings->instance = context->instance;
2427
8.78k
  else if (context->peer)
2428
8.78k
  {
2429
8.78k
    rdp->settings->instance = context->peer;
2430
2431
#if defined(WITH_FREERDP_DEPRECATED)
2432
    context->peer->settings = rdp->settings;
2433
#endif
2434
8.78k
  }
2435
2436
18.0k
  if (!rdp_new_common(rdp))
2437
0
    goto fail;
2438
2439
18.0k
  {
2440
18.0k
    const rdpTransportIo* io = transport_get_io_callbacks(rdp->transport);
2441
18.0k
    if (!io)
2442
0
      goto fail;
2443
18.0k
    rdp->io = calloc(1, sizeof(rdpTransportIo));
2444
18.0k
    if (!rdp->io)
2445
0
      goto fail;
2446
18.0k
    *rdp->io = *io;
2447
18.0k
  }
2448
2449
0
  rdp->input = input_new(rdp);
2450
2451
18.0k
  if (!rdp->input)
2452
0
    goto fail;
2453
2454
18.0k
  rdp->update = update_new(rdp);
2455
2456
18.0k
  if (!rdp->update)
2457
0
    goto fail;
2458
2459
18.0k
  rdp->redirection = redirection_new();
2460
2461
18.0k
  if (!rdp->redirection)
2462
0
    goto fail;
2463
2464
18.0k
  rdp->autodetect = autodetect_new(rdp->context);
2465
2466
18.0k
  if (!rdp->autodetect)
2467
0
    goto fail;
2468
2469
18.0k
  rdp->heartbeat = heartbeat_new();
2470
2471
18.0k
  if (!rdp->heartbeat)
2472
0
    goto fail;
2473
2474
18.0k
  rdp->multitransport = multitransport_new(rdp, INITIATE_REQUEST_PROTOCOL_UDPFECL |
2475
18.0k
                                                    INITIATE_REQUEST_PROTOCOL_UDPFECR);
2476
2477
18.0k
  if (!rdp->multitransport)
2478
0
    goto fail;
2479
2480
18.0k
  rdp->bulk = bulk_new(context);
2481
2482
18.0k
  if (!rdp->bulk)
2483
0
    goto fail;
2484
2485
18.0k
  rdp->pubSub = PubSub_New(TRUE);
2486
18.0k
  if (!rdp->pubSub)
2487
0
    goto fail;
2488
2489
18.0k
  rdp->abortEvent = CreateEvent(nullptr, TRUE, FALSE, nullptr);
2490
18.0k
  if (!rdp->abortEvent)
2491
0
    goto fail;
2492
2493
18.0k
  rdp->timer = freerdp_timer_new(rdp);
2494
18.0k
  if (!rdp->timer)
2495
0
    goto fail;
2496
2497
18.0k
  return rdp;
2498
2499
0
fail:
2500
0
  WINPR_PRAGMA_DIAG_PUSH
2501
0
  WINPR_PRAGMA_DIAG_IGNORED_MISMATCHED_DEALLOC
2502
0
  rdp_free(rdp);
2503
0
  WINPR_PRAGMA_DIAG_POP
2504
0
  return nullptr;
2505
18.0k
}
2506
2507
static void rdp_reset_free(rdpRdp* rdp)
2508
18.0k
{
2509
18.0k
  WINPR_ASSERT(rdp);
2510
2511
18.0k
  security_lock(rdp);
2512
18.0k
  rdp_free_rc4_decrypt_keys(rdp);
2513
18.0k
  rdp_free_rc4_encrypt_keys(rdp);
2514
2515
18.0k
  winpr_Cipher_Free(rdp->fips_encrypt);
2516
18.0k
  winpr_Cipher_Free(rdp->fips_decrypt);
2517
18.0k
  rdp->fips_encrypt = nullptr;
2518
18.0k
  rdp->fips_decrypt = nullptr;
2519
18.0k
  security_unlock(rdp);
2520
2521
18.0k
  aad_free(rdp->aad);
2522
18.0k
  mcs_free(rdp->mcs);
2523
18.0k
  nego_free(rdp->nego);
2524
18.0k
  license_free(rdp->license);
2525
18.0k
  transport_free(rdp->transport);
2526
18.0k
  fastpath_free(rdp->fastpath);
2527
2528
18.0k
  rdp->aad = nullptr;
2529
18.0k
  rdp->mcs = nullptr;
2530
18.0k
  rdp->nego = nullptr;
2531
18.0k
  rdp->license = nullptr;
2532
18.0k
  rdp->transport = nullptr;
2533
18.0k
  rdp->fastpath = nullptr;
2534
18.0k
}
2535
2536
BOOL rdp_reset(rdpRdp* rdp)
2537
0
{
2538
0
  BOOL rc = TRUE;
2539
2540
0
  WINPR_ASSERT(rdp);
2541
2542
0
  rdpSettings* settings = rdp->settings;
2543
0
  WINPR_ASSERT(settings);
2544
2545
0
  bulk_reset(rdp->bulk);
2546
2547
0
  rdp_reset_free(rdp);
2548
2549
0
  if (!freerdp_settings_set_pointer_len(settings, FreeRDP_ServerRandom, nullptr, 0))
2550
0
    rc = FALSE;
2551
2552
0
  if (!freerdp_settings_set_pointer_len(settings, FreeRDP_ServerCertificate, nullptr, 0))
2553
0
    rc = FALSE;
2554
2555
0
  if (!freerdp_settings_set_string(settings, FreeRDP_ClientAddress, nullptr))
2556
0
    rc = FALSE;
2557
2558
0
  if (!rc)
2559
0
    goto fail;
2560
2561
0
  rc = rdp_new_common(rdp);
2562
0
  if (!rc)
2563
0
    goto fail;
2564
2565
0
  if (!transport_set_layer(rdp->transport, TRANSPORT_LAYER_TCP))
2566
0
    goto fail;
2567
2568
0
  rdp->errorInfo = 0;
2569
0
  rc = rdp_finalize_reset_flags(rdp, TRUE);
2570
2571
0
fail:
2572
0
  return rc;
2573
0
}
2574
2575
/**
2576
 * Free RDP module.
2577
 * @param rdp RDP module to be freed
2578
 */
2579
2580
void rdp_free(rdpRdp* rdp)
2581
18.0k
{
2582
18.0k
  if (rdp)
2583
18.0k
  {
2584
18.0k
    freerdp_timer_free(rdp->timer);
2585
18.0k
    rdp_reset_free(rdp);
2586
2587
18.0k
    freerdp_settings_free(rdp->settings);
2588
18.0k
    freerdp_settings_free(rdp->originalSettings);
2589
18.0k
    freerdp_settings_free(rdp->remoteSettings);
2590
2591
18.0k
    input_free(rdp->input);
2592
18.0k
    update_free(rdp->update);
2593
18.0k
    nla_free(rdp->nla);
2594
18.0k
    redirection_free(rdp->redirection);
2595
18.0k
    autodetect_free(rdp->autodetect);
2596
18.0k
    heartbeat_free(rdp->heartbeat);
2597
18.0k
    multitransport_free(rdp->multitransport);
2598
18.0k
    bulk_free(rdp->bulk);
2599
18.0k
    free(rdp->io);
2600
18.0k
    PubSub_Free(rdp->pubSub);
2601
18.0k
    if (rdp->abortEvent)
2602
18.0k
      (void)CloseHandle(rdp->abortEvent);
2603
18.0k
    aad_free(rdp->aad);
2604
18.0k
    WINPR_JSON_Delete(rdp->wellknown);
2605
18.0k
    DeleteCriticalSection(&rdp->critical);
2606
18.0k
    WLog_Discard(rdp->log);
2607
18.0k
    free(rdp);
2608
18.0k
  }
2609
18.0k
}
2610
2611
BOOL rdp_io_callback_set_event(rdpRdp* rdp, BOOL set)
2612
0
{
2613
0
  if (!rdp)
2614
0
    return FALSE;
2615
0
  return transport_io_callback_set_event(rdp->transport, set);
2616
0
}
2617
2618
const rdpTransportIo* rdp_get_io_callbacks(rdpRdp* rdp)
2619
0
{
2620
0
  if (!rdp)
2621
0
    return nullptr;
2622
0
  return rdp->io;
2623
0
}
2624
2625
BOOL rdp_set_io_callbacks(rdpRdp* rdp, const rdpTransportIo* io_callbacks)
2626
0
{
2627
0
  if (!rdp)
2628
0
    return FALSE;
2629
0
  free(rdp->io);
2630
0
  rdp->io = nullptr;
2631
0
  if (io_callbacks)
2632
0
  {
2633
0
    rdp->io = malloc(sizeof(rdpTransportIo));
2634
0
    if (!rdp->io)
2635
0
      return FALSE;
2636
0
    *rdp->io = *io_callbacks;
2637
0
    return transport_set_io_callbacks(rdp->transport, rdp->io);
2638
0
  }
2639
0
  return TRUE;
2640
0
}
2641
2642
BOOL rdp_set_io_callback_context(rdpRdp* rdp, void* usercontext)
2643
0
{
2644
0
  WINPR_ASSERT(rdp);
2645
0
  rdp->ioContext = usercontext;
2646
0
  return TRUE;
2647
0
}
2648
2649
void* rdp_get_io_callback_context(rdpRdp* rdp)
2650
0
{
2651
0
  WINPR_ASSERT(rdp);
2652
0
  return rdp->ioContext;
2653
0
}
2654
2655
const char* rdp_finalize_flags_to_str(UINT32 flags, char* buffer, size_t size)
2656
0
{
2657
0
  char number[32] = WINPR_C_ARRAY_INIT;
2658
0
  const UINT32 mask =
2659
0
      (uint32_t)~(FINALIZE_SC_SYNCHRONIZE_PDU | FINALIZE_SC_CONTROL_COOPERATE_PDU |
2660
0
                  FINALIZE_SC_CONTROL_GRANTED_PDU | FINALIZE_SC_FONT_MAP_PDU |
2661
0
                  FINALIZE_CS_SYNCHRONIZE_PDU | FINALIZE_CS_CONTROL_COOPERATE_PDU |
2662
0
                  FINALIZE_CS_CONTROL_REQUEST_PDU | FINALIZE_CS_PERSISTENT_KEY_LIST_PDU |
2663
0
                  FINALIZE_CS_FONT_LIST_PDU | FINALIZE_DEACTIVATE_REACTIVATE);
2664
2665
0
  if (flags & FINALIZE_SC_SYNCHRONIZE_PDU)
2666
0
    winpr_str_append("FINALIZE_SC_SYNCHRONIZE_PDU", buffer, size, "|");
2667
0
  if (flags & FINALIZE_SC_CONTROL_COOPERATE_PDU)
2668
0
    winpr_str_append("FINALIZE_SC_CONTROL_COOPERATE_PDU", buffer, size, "|");
2669
0
  if (flags & FINALIZE_SC_CONTROL_GRANTED_PDU)
2670
0
    winpr_str_append("FINALIZE_SC_CONTROL_GRANTED_PDU", buffer, size, "|");
2671
0
  if (flags & FINALIZE_SC_FONT_MAP_PDU)
2672
0
    winpr_str_append("FINALIZE_SC_FONT_MAP_PDU", buffer, size, "|");
2673
0
  if (flags & FINALIZE_CS_SYNCHRONIZE_PDU)
2674
0
    winpr_str_append("FINALIZE_CS_SYNCHRONIZE_PDU", buffer, size, "|");
2675
0
  if (flags & FINALIZE_CS_CONTROL_COOPERATE_PDU)
2676
0
    winpr_str_append("FINALIZE_CS_CONTROL_COOPERATE_PDU", buffer, size, "|");
2677
0
  if (flags & FINALIZE_CS_CONTROL_REQUEST_PDU)
2678
0
    winpr_str_append("FINALIZE_CS_CONTROL_REQUEST_PDU", buffer, size, "|");
2679
0
  if (flags & FINALIZE_CS_PERSISTENT_KEY_LIST_PDU)
2680
0
    winpr_str_append("FINALIZE_CS_PERSISTENT_KEY_LIST_PDU", buffer, size, "|");
2681
0
  if (flags & FINALIZE_CS_FONT_LIST_PDU)
2682
0
    winpr_str_append("FINALIZE_CS_FONT_LIST_PDU", buffer, size, "|");
2683
0
  if (flags & FINALIZE_DEACTIVATE_REACTIVATE)
2684
0
    winpr_str_append("FINALIZE_DEACTIVATE_REACTIVATE", buffer, size, "|");
2685
0
  if (flags & mask)
2686
0
    winpr_str_append("UNKNOWN_FLAG", buffer, size, "|");
2687
0
  if (flags == 0)
2688
0
    winpr_str_append("NO_FLAG_SET", buffer, size, "|");
2689
0
  (void)_snprintf(number, sizeof(number), " [0x%08" PRIx32 "]", flags);
2690
0
  winpr_str_append(number, buffer, size, "");
2691
0
  return buffer;
2692
0
}
2693
2694
BOOL rdp_finalize_reset_flags(rdpRdp* rdp, BOOL clearAll)
2695
0
{
2696
0
  WINPR_ASSERT(rdp);
2697
0
  WLog_Print(rdp->log, WLOG_DEBUG, "[%s] reset finalize_sc_pdus", rdp_get_state_string(rdp));
2698
0
  if (clearAll)
2699
0
    rdp->finalize_sc_pdus = 0;
2700
0
  else
2701
0
    rdp->finalize_sc_pdus &= FINALIZE_DEACTIVATE_REACTIVATE;
2702
2703
0
  return rdp_set_monitor_layout_pdu_state(rdp, FALSE);
2704
0
}
2705
2706
BOOL rdp_finalize_set_flag(rdpRdp* rdp, UINT32 flag)
2707
9.48k
{
2708
9.48k
  char buffer[1024] = WINPR_C_ARRAY_INIT;
2709
2710
9.48k
  WINPR_ASSERT(rdp);
2711
2712
9.48k
  WLog_Print(rdp->log, WLOG_DEBUG, "[%s] received flag %s", rdp_get_state_string(rdp),
2713
9.48k
             rdp_finalize_flags_to_str(flag, buffer, sizeof(buffer)));
2714
9.48k
  rdp->finalize_sc_pdus |= flag;
2715
9.48k
  return TRUE;
2716
9.48k
}
2717
2718
BOOL rdp_finalize_is_flag_set(rdpRdp* rdp, UINT32 flag)
2719
0
{
2720
0
  WINPR_ASSERT(rdp);
2721
0
  return (rdp->finalize_sc_pdus & flag) == flag;
2722
0
}
2723
2724
BOOL rdp_reset_rc4_encrypt_keys(rdpRdp* rdp)
2725
0
{
2726
0
  WINPR_ASSERT(rdp);
2727
0
  rdp_free_rc4_encrypt_keys(rdp);
2728
0
  rdp->rc4_encrypt_key = winpr_RC4_New(rdp->encrypt_key, rdp->rc4_key_len);
2729
2730
0
  rdp->encrypt_use_count = 0;
2731
0
  return rdp->rc4_encrypt_key != nullptr;
2732
0
}
2733
2734
void rdp_free_rc4_encrypt_keys(rdpRdp* rdp)
2735
18.0k
{
2736
18.0k
  WINPR_ASSERT(rdp);
2737
18.0k
  winpr_RC4_Free(rdp->rc4_encrypt_key);
2738
18.0k
  rdp->rc4_encrypt_key = nullptr;
2739
18.0k
}
2740
2741
void rdp_free_rc4_decrypt_keys(rdpRdp* rdp)
2742
18.0k
{
2743
18.0k
  WINPR_ASSERT(rdp);
2744
18.0k
  winpr_RC4_Free(rdp->rc4_decrypt_key);
2745
18.0k
  rdp->rc4_decrypt_key = nullptr;
2746
18.0k
}
2747
2748
BOOL rdp_reset_rc4_decrypt_keys(rdpRdp* rdp)
2749
0
{
2750
0
  WINPR_ASSERT(rdp);
2751
0
  rdp_free_rc4_decrypt_keys(rdp);
2752
0
  rdp->rc4_decrypt_key = winpr_RC4_New(rdp->decrypt_key, rdp->rc4_key_len);
2753
2754
0
  rdp->decrypt_use_count = 0;
2755
0
  return rdp->rc4_decrypt_key != nullptr;
2756
0
}
2757
2758
const char* rdp_security_flag_string(UINT32 securityFlags, char* buffer, size_t size)
2759
10.3k
{
2760
10.3k
  if (securityFlags & SEC_EXCHANGE_PKT)
2761
1.66k
    winpr_str_append("SEC_EXCHANGE_PKT", buffer, size, "|");
2762
10.3k
  if (securityFlags & SEC_TRANSPORT_REQ)
2763
1.72k
    winpr_str_append("SEC_TRANSPORT_REQ", buffer, size, "|");
2764
10.3k
  if (securityFlags & SEC_TRANSPORT_RSP)
2765
1.54k
    winpr_str_append("SEC_TRANSPORT_RSP", buffer, size, "|");
2766
10.3k
  if (securityFlags & SEC_ENCRYPT)
2767
1.49k
    winpr_str_append("SEC_ENCRYPT", buffer, size, "|");
2768
10.3k
  if (securityFlags & SEC_RESET_SEQNO)
2769
1.10k
    winpr_str_append("SEC_RESET_SEQNO", buffer, size, "|");
2770
10.3k
  if (securityFlags & SEC_IGNORE_SEQNO)
2771
1.58k
    winpr_str_append("SEC_IGNORE_SEQNO", buffer, size, "|");
2772
10.3k
  if (securityFlags & SEC_INFO_PKT)
2773
1.25k
    winpr_str_append("SEC_INFO_PKT", buffer, size, "|");
2774
10.3k
  if (securityFlags & SEC_LICENSE_PKT)
2775
1.03k
    winpr_str_append("SEC_LICENSE_PKT", buffer, size, "|");
2776
10.3k
  if (securityFlags & SEC_LICENSE_ENCRYPT_CS)
2777
1.70k
    winpr_str_append("SEC_LICENSE_ENCRYPT_CS", buffer, size, "|");
2778
10.3k
  if (securityFlags & SEC_LICENSE_ENCRYPT_SC)
2779
1.70k
    winpr_str_append("SEC_LICENSE_ENCRYPT_SC", buffer, size, "|");
2780
10.3k
  if (securityFlags & SEC_REDIRECTION_PKT)
2781
6.67k
    winpr_str_append("SEC_REDIRECTION_PKT", buffer, size, "|");
2782
10.3k
  if (securityFlags & SEC_SECURE_CHECKSUM)
2783
1.50k
    winpr_str_append("SEC_SECURE_CHECKSUM", buffer, size, "|");
2784
10.3k
  if (securityFlags & SEC_AUTODETECT_REQ)
2785
1.23k
    winpr_str_append("SEC_AUTODETECT_REQ", buffer, size, "|");
2786
10.3k
  if (securityFlags & SEC_AUTODETECT_RSP)
2787
1.80k
    winpr_str_append("SEC_AUTODETECT_RSP", buffer, size, "|");
2788
10.3k
  if (securityFlags & SEC_HEARTBEAT)
2789
1.47k
    winpr_str_append("SEC_HEARTBEAT", buffer, size, "|");
2790
10.3k
  if (securityFlags & SEC_FLAGSHI_VALID)
2791
1.15k
    winpr_str_append("SEC_FLAGSHI_VALID", buffer, size, "|");
2792
10.3k
  {
2793
10.3k
    char msg[32] = WINPR_C_ARRAY_INIT;
2794
2795
10.3k
    (void)_snprintf(msg, sizeof(msg), "[0x%08" PRIx32 "]", securityFlags);
2796
10.3k
    winpr_str_append(msg, buffer, size, "");
2797
10.3k
  }
2798
10.3k
  return buffer;
2799
10.3k
}
2800
2801
static BOOL rdp_reset_remote_settings(rdpRdp* rdp)
2802
18.0k
{
2803
18.0k
  UINT32 flags = FREERDP_SETTINGS_REMOTE_MODE;
2804
18.0k
  WINPR_ASSERT(rdp);
2805
18.0k
  freerdp_settings_free(rdp->remoteSettings);
2806
2807
18.0k
  if (!freerdp_settings_get_bool(rdp->settings, FreeRDP_ServerMode))
2808
9.26k
    flags |= FREERDP_SETTINGS_SERVER_MODE;
2809
18.0k
  rdp->remoteSettings = freerdp_settings_new(flags);
2810
18.0k
  return rdp->remoteSettings != nullptr;
2811
18.0k
}
2812
2813
BOOL rdp_set_backup_settings(rdpRdp* rdp)
2814
18.0k
{
2815
18.0k
  WINPR_ASSERT(rdp);
2816
18.0k
  freerdp_settings_free(rdp->originalSettings);
2817
18.0k
  rdp->originalSettings = freerdp_settings_clone(rdp->settings);
2818
18.0k
  if (!rdp->originalSettings)
2819
0
    return FALSE;
2820
18.0k
  return rdp_reset_remote_settings(rdp);
2821
18.0k
}
2822
2823
BOOL rdp_reset_runtime_settings(rdpRdp* rdp)
2824
0
{
2825
0
  WINPR_ASSERT(rdp);
2826
0
  WINPR_ASSERT(rdp->context);
2827
2828
0
  freerdp_settings_free(rdp->settings);
2829
0
  rdp->context->settings = rdp->settings = freerdp_settings_clone(rdp->originalSettings);
2830
2831
0
  if (!rdp->settings)
2832
0
    return FALSE;
2833
0
  return rdp_reset_remote_settings(rdp);
2834
0
}
2835
2836
static BOOL starts_with(const char* tok, const char* val)
2837
8.33k
{
2838
8.33k
  const size_t len = strlen(val);
2839
8.33k
  if (strncmp(tok, val, len) != 0)
2840
8.28k
    return FALSE;
2841
51
  if (tok[len] != '=')
2842
11
    return FALSE;
2843
40
  return TRUE;
2844
51
}
2845
2846
static BOOL option_equals(const char* what, const char* val)
2847
118
{
2848
118
  return _stricmp(what, val) == 0;
2849
118
}
2850
2851
static BOOL parse_on_off_option(const char* value)
2852
40
{
2853
40
  WINPR_ASSERT(value);
2854
40
  const char* sep = strchr(value, '=');
2855
40
  if (!sep)
2856
0
    return TRUE;
2857
40
  if (option_equals("on", &sep[1]))
2858
1
    return TRUE;
2859
39
  if (option_equals("true", &sep[1]))
2860
0
    return TRUE;
2861
39
  if (option_equals("off", &sep[1]))
2862
39
    return FALSE;
2863
0
  if (option_equals("false", &sep[1]))
2864
0
    return FALSE;
2865
2866
0
  errno = 0;
2867
0
  long val = strtol(value, nullptr, 0);
2868
0
  if (errno == 0)
2869
0
    return (val != 0);
2870
2871
0
  return FALSE;
2872
0
}
2873
2874
8.78k
#define STR(x) #x
2875
2876
static BOOL option_is_runtime_checks(WINPR_ATTR_UNUSED wLog* log, const char* tok)
2877
187
{
2878
187
  const char* experimental[] = { STR(WITH_VERBOSE_WINPR_ASSERT) };
2879
373
  for (size_t x = 0; x < ARRAYSIZE(experimental); x++)
2880
187
  {
2881
187
    const char* opt = experimental[x];
2882
187
    if (starts_with(tok, opt))
2883
1
    {
2884
1
      return parse_on_off_option(tok);
2885
1
    }
2886
187
  }
2887
186
  return FALSE;
2888
187
}
2889
2890
static BOOL option_is_experimental(WINPR_ATTR_UNUSED wLog* log, const char* tok)
2891
187
{
2892
187
  const char* experimental[] = { STR(WITH_DSP_EXPERIMENTAL), STR(WITH_VAAPI),
2893
187
                               STR(WITH_GFX_AV1),          STR(WITH_VAAPI_H264_ENCODING),
2894
187
                               STR(WITH_MEDIACODEC),       STR(WITH_CLIENT_SDL2),
2895
187
                               STR(WITH_OPENCL),           STR(WITH_LIBRESSL),
2896
187
                               STR(WITH_MBEDTLS),          STR(WITH_MEDIA_FOUNDATION),
2897
187
                               STR(WITH_KRB5_HEIMDAL),     STR(WITH_VIDEOTOOLBOX) };
2898
2.37k
  for (size_t x = 0; x < ARRAYSIZE(experimental); x++)
2899
2.19k
  {
2900
2.19k
    const char* opt = experimental[x];
2901
2.19k
    if (starts_with(tok, opt))
2902
8
    {
2903
8
      return parse_on_off_option(tok);
2904
8
    }
2905
2.19k
  }
2906
179
  return FALSE;
2907
187
}
2908
2909
static BOOL option_is_debug(wLog* log, const char* tok)
2910
187
{
2911
187
  WINPR_ASSERT(log);
2912
187
  const char* debug[] = { STR(WITH_DEBUG_ALL),
2913
187
                        STR(WITH_DEBUG_CERTIFICATE),
2914
187
                        STR(WITH_DEBUG_CAPABILITIES),
2915
187
                        STR(WITH_DEBUG_CHANNELS),
2916
187
                        STR(WITH_DEBUG_CLIPRDR),
2917
187
                        STR(WITH_DEBUG_CODECS),
2918
187
                        STR(WITH_DEBUG_DVC),
2919
187
                        STR(WITH_DEBUG_TSMF),
2920
187
                        STR(WITH_DEBUG_KBD),
2921
187
                        STR(WITH_DEBUG_LICENSE),
2922
187
                        STR(WITH_DEBUG_NEGO),
2923
187
                        STR(WITH_DEBUG_NLA),
2924
187
                        STR(WITH_DEBUG_TSG),
2925
187
                        STR(WITH_DEBUG_RAIL),
2926
187
                        STR(WITH_DEBUG_RDP),
2927
187
                        STR(WITH_DEBUG_RDPEI),
2928
187
                        STR(WITH_DEBUG_REDIR),
2929
187
                        STR(WITH_DEBUG_RDPDR),
2930
187
                        STR(WITH_DEBUG_RFX),
2931
187
                        STR(WITH_DEBUG_SCARD),
2932
187
                        STR(WITH_DEBUG_SND),
2933
187
                        STR(WITH_DEBUG_SVC),
2934
187
                        STR(WITH_DEBUG_TRANSPORT),
2935
187
                        STR(WITH_DEBUG_TIMEZONE),
2936
187
                        STR(WITH_DEBUG_WND),
2937
187
                        STR(WITH_DEBUG_RINGBUFFER),
2938
187
                        STR(WITH_DEBUG_SYMBOLS),
2939
187
                        STR(WITH_DEBUG_EVENTS),
2940
187
                        STR(WITH_DEBUG_MUTEX),
2941
187
                        STR(WITH_DEBUG_NTLM),
2942
187
                        STR(WITH_DEBUG_SDL_KBD_EVENTS),
2943
187
                        STR(WITH_DEBUG_SDL_KBD_EVENTS),
2944
187
                        STR(WITH_DEBUG_THREADS),
2945
187
                        STR(WITH_DEBUG_URBDRC) };
2946
2947
5.95k
  for (size_t x = 0; x < ARRAYSIZE(debug); x++)
2948
5.80k
  {
2949
5.80k
    const char* opt = debug[x];
2950
5.80k
    if (starts_with(tok, opt))
2951
31
      return parse_on_off_option(tok);
2952
5.80k
  }
2953
2954
156
  if (starts_with(tok, "WITH_DEBUG"))
2955
0
  {
2956
0
    WLog_Print(log, WLOG_WARN, "[BUG] Unmapped Debug-Build option '%s'.", tok);
2957
0
    return parse_on_off_option(tok);
2958
0
  }
2959
2960
156
  return FALSE;
2961
156
}
2962
2963
static void log_build_warn(rdpRdp* rdp, const char* what, const char* msg,
2964
                           BOOL (*cmp)(wLog* log, const char* tok))
2965
3
{
2966
3
  WINPR_ASSERT(rdp);
2967
3
  WINPR_PRAGMA_DIAG_PUSH
2968
3
  WINPR_PRAGMA_DIAG_IGNORED_OVERLENGTH_STRINGS
2969
2970
3
  size_t len = sizeof(FREERDP_BUILD_CONFIG);
2971
3
  char* list = calloc(len, sizeof(char));
2972
3
  char* config = _strdup(FREERDP_BUILD_CONFIG);
2973
3
  WINPR_PRAGMA_DIAG_POP
2974
2975
3
  if (config && list)
2976
3
  {
2977
3
    char* saveptr = nullptr;
2978
3
    char* tok = strtok_s(config, " ", &saveptr);
2979
564
    while (tok)
2980
561
    {
2981
561
      if (cmp(rdp->log, tok))
2982
1
        winpr_str_append(tok, list, len, " ");
2983
2984
561
      tok = strtok_s(nullptr, " ", &saveptr);
2985
561
    }
2986
3
  }
2987
3
  free(config);
2988
2989
3
  if (list)
2990
3
  {
2991
3
    if (strlen(list) > 0)
2992
1
    {
2993
1
      WLog_Print(rdp->log, WLOG_WARN, "*************************************************");
2994
1
      WLog_Print(rdp->log, WLOG_WARN, "This build is using [%s] build options:", what);
2995
2996
1
      char* saveptr = nullptr;
2997
1
      char* tok = strtok_s(list, " ", &saveptr);
2998
2
      while (tok)
2999
1
      {
3000
1
        WLog_Print(rdp->log, WLOG_WARN, "* '%s'", tok);
3001
1
        tok = strtok_s(nullptr, " ", &saveptr);
3002
1
      }
3003
1
      WLog_Print(rdp->log, WLOG_WARN, "*");
3004
1
      WLog_Print(rdp->log, WLOG_WARN, "[%s] build options %s", what, msg);
3005
1
      WLog_Print(rdp->log, WLOG_WARN, "*************************************************");
3006
1
    }
3007
3
  }
3008
3
  free(list);
3009
3
}
3010
3011
#define print_first_line(log, firstLine, what) \
3012
0
  print_first_line_int((log), (firstLine), (what), __FILE__, __func__, __LINE__)
3013
static void print_first_line_int(wLog* log, log_line_t* firstLine, const char* what,
3014
                                 const char* file, const char* fkt, size_t line)
3015
0
{
3016
0
  WINPR_ASSERT(firstLine);
3017
0
  if (!firstLine->fkt)
3018
0
  {
3019
0
    const DWORD level = WLOG_WARN;
3020
0
    if (WLog_IsLevelActive(log, level))
3021
0
    {
3022
0
      WLog_PrintTextMessage(log, level, line, file, fkt,
3023
0
                            "*************************************************");
3024
0
      WLog_PrintTextMessage(log, level, line, file, fkt,
3025
0
                            "[SSL] {%s} build or configuration missing:", what);
3026
0
    }
3027
0
    firstLine->line = line;
3028
0
    firstLine->file = file;
3029
0
    firstLine->fkt = fkt;
3030
0
    firstLine->level = level;
3031
0
  }
3032
0
}
3033
3034
static void print_last_line(wLog* log, const log_line_t* firstLine)
3035
3
{
3036
3
  WINPR_ASSERT(firstLine);
3037
3
  if (firstLine->fkt)
3038
0
  {
3039
0
    if (WLog_IsLevelActive(log, firstLine->level))
3040
0
      WLog_PrintTextMessage(log, firstLine->level, firstLine->line, firstLine->file,
3041
0
                            firstLine->fkt,
3042
0
                            "*************************************************");
3043
0
  }
3044
3
}
3045
3046
static void log_build_warn_cipher(rdpRdp* rdp, log_line_t* firstLine, WINPR_CIPHER_TYPE md,
3047
                                  const char* what, BOOL allowFIPS)
3048
6
{
3049
6
  BOOL haveCipher = FALSE;
3050
3051
6
  char key[WINPR_CIPHER_MAX_KEY_LENGTH] = WINPR_C_ARRAY_INIT;
3052
6
  char iv[WINPR_CIPHER_MAX_IV_LENGTH] = WINPR_C_ARRAY_INIT;
3053
3054
  /* RC4 only exists in the compatibility functions winpr_RC4_*
3055
   * winpr_Cipher_* does not support that. */
3056
6
  if (md == WINPR_CIPHER_ARC4_128)
3057
2
  {
3058
2
    WINPR_RC4_CTX* enc = nullptr;
3059
2
    if (allowFIPS)
3060
1
      enc = winpr_RC4_New_Allow_FIPS(key, sizeof(key));
3061
1
    else
3062
1
      enc = winpr_RC4_New(key, sizeof(key));
3063
2
    haveCipher = enc != nullptr;
3064
2
    winpr_RC4_Free(enc);
3065
2
  }
3066
4
  else
3067
4
  {
3068
4
    WINPR_CIPHER_CTX* enc =
3069
4
        winpr_Cipher_NewEx(md, WINPR_ENCRYPT, key, sizeof(key), iv, sizeof(iv));
3070
4
    WINPR_CIPHER_CTX* dec =
3071
4
        winpr_Cipher_NewEx(md, WINPR_DECRYPT, key, sizeof(key), iv, sizeof(iv));
3072
4
    if (enc && dec)
3073
4
      haveCipher = TRUE;
3074
3075
4
    winpr_Cipher_Free(enc);
3076
4
    winpr_Cipher_Free(dec);
3077
4
  }
3078
3079
6
  if (!haveCipher)
3080
0
  {
3081
0
    print_first_line(rdp->log, firstLine, "Cipher");
3082
0
    WLog_Print(rdp->log, WLOG_WARN, "* %s: %s", winpr_cipher_type_to_string(md), what);
3083
0
  }
3084
6
}
3085
3086
static void log_build_warn_hmac(rdpRdp* rdp, log_line_t* firstLine, WINPR_MD_TYPE md,
3087
                                const char* what)
3088
2
{
3089
2
  BOOL haveHmacX = FALSE;
3090
2
  WINPR_HMAC_CTX* hmac = winpr_HMAC_New();
3091
2
  if (hmac)
3092
2
  {
3093
    /* We need some key length, but there is no real limit here.
3094
     * just take the cipher maximum key length as we already have that available.
3095
     */
3096
2
    char key[WINPR_CIPHER_MAX_KEY_LENGTH] = WINPR_C_ARRAY_INIT;
3097
2
    haveHmacX = winpr_HMAC_Init(hmac, md, key, sizeof(key));
3098
2
  }
3099
2
  winpr_HMAC_Free(hmac);
3100
3101
2
  if (!haveHmacX)
3102
0
  {
3103
0
    print_first_line(rdp->log, firstLine, "HMAC");
3104
0
    WLog_Print(rdp->log, WLOG_WARN, " * %s: %s", winpr_md_type_to_string(md), what);
3105
0
  }
3106
2
}
3107
3108
static void log_build_warn_hash(rdpRdp* rdp, log_line_t* firstLine, WINPR_MD_TYPE md,
3109
                                const char* what, BOOL allowFIPS)
3110
5
{
3111
5
  BOOL haveDigestX = FALSE;
3112
5
  WINPR_DIGEST_CTX* digest = winpr_Digest_New();
3113
5
  if (digest)
3114
5
  {
3115
5
    if (allowFIPS)
3116
1
      haveDigestX = winpr_Digest_Init_Allow_FIPS(digest, md);
3117
4
    else
3118
4
      haveDigestX = winpr_Digest_Init(digest, md);
3119
5
  }
3120
5
  winpr_Digest_Free(digest);
3121
3122
5
  if (!haveDigestX)
3123
0
  {
3124
0
    print_first_line(rdp->log, firstLine, "Digest");
3125
0
    WLog_Print(rdp->log, WLOG_WARN, " * %s: %s", winpr_md_type_to_string(md), what);
3126
0
  }
3127
5
}
3128
3129
static void log_build_warn_ssl(rdpRdp* rdp)
3130
1
{
3131
1
  WINPR_ASSERT(rdp);
3132
3133
1
  const BOOL fips = winpr_FIPSMode();
3134
3135
1
  if (fips)
3136
0
  {
3137
0
    WLog_Print(rdp->log, WLOG_INFO,
3138
0
               "FIPS mode active: non-approved algorithms are unavailable "
3139
0
               "as expected. NTLM, autoreconnect cookies, assistance files "
3140
0
               "with encrypted passwords and RDP security will not work.");
3141
0
  }
3142
3143
1
  log_line_t firstHashLine = WINPR_C_ARRAY_INIT;
3144
1
  if (!fips)
3145
1
  {
3146
1
    log_build_warn_hash(rdp, &firstHashLine, WINPR_MD_MD4, "NTLM support not available", FALSE);
3147
1
    log_build_warn_hash(rdp, &firstHashLine, WINPR_MD_MD5,
3148
1
                        "NTLM, assistance files with encrypted passwords "
3149
1
                        " and autoreconnect cookies will not work",
3150
1
                        FALSE);
3151
1
  }
3152
1
  log_build_warn_hash(rdp, &firstHashLine, WINPR_MD_MD5,
3153
1
                      "RDP licensing and RDP security will not work", TRUE);
3154
1
  log_build_warn_hash(rdp, &firstHashLine, WINPR_MD_SHA1,
3155
1
                      "assistance files with encrypted passwords, Kerberos, Smartcard Logon, RDP "
3156
1
                      "security support not available",
3157
1
                      FALSE);
3158
1
  log_build_warn_hash(rdp, &firstHashLine, WINPR_MD_SHA256,
3159
1
                      "file clipboard, AAD gateway, NLA security and certificates might not work",
3160
1
                      FALSE);
3161
1
  print_last_line(rdp->log, &firstHashLine);
3162
3163
1
  if (!fips)
3164
1
  {
3165
1
    log_line_t firstHmacLine = WINPR_C_ARRAY_INIT;
3166
1
    log_build_warn_hmac(rdp, &firstHmacLine, WINPR_MD_MD5,
3167
1
                        "Autoreconnect cookie not supported");
3168
1
    log_build_warn_hmac(rdp, &firstHmacLine, WINPR_MD_SHA1, "RDP security not supported");
3169
1
    print_last_line(rdp->log, &firstHmacLine);
3170
1
  }
3171
3172
1
  log_line_t firstCipherLine = WINPR_C_ARRAY_INIT;
3173
1
  if (!fips)
3174
1
  {
3175
1
    log_build_warn_cipher(rdp, &firstCipherLine, WINPR_CIPHER_ARC4_128,
3176
1
                          "assistance files with encrypted passwords, NTLM "
3177
1
                          "and autoreconnect cookies will not work",
3178
1
                          FALSE);
3179
1
  }
3180
1
  log_build_warn_cipher(rdp, &firstCipherLine, WINPR_CIPHER_ARC4_128,
3181
1
                        "RDP licensing and RDP security will not work", TRUE);
3182
1
  if (!fips)
3183
1
    log_build_warn_cipher(rdp, &firstCipherLine, WINPR_CIPHER_DES_EDE3_CBC,
3184
1
                          "RDP security will not work", TRUE);
3185
1
  log_build_warn_cipher(
3186
1
      rdp, &firstCipherLine, WINPR_CIPHER_AES_128_CBC,
3187
1
      "assistance file encrypted LHTicket will not work and ARM gateway might not", FALSE);
3188
1
  log_build_warn_cipher(rdp, &firstCipherLine, WINPR_CIPHER_AES_192_CBC,
3189
1
                        "ARM gateway might not work", FALSE);
3190
1
  log_build_warn_cipher(rdp, &firstCipherLine, WINPR_CIPHER_AES_256_CBC,
3191
1
                        "ARM gateway might not work", FALSE);
3192
1
  print_last_line(rdp->log, &firstCipherLine);
3193
1
}
3194
3195
void rdp_log_build_warnings(rdpRdp* rdp)
3196
8.78k
{
3197
8.78k
  static unsigned count = 0;
3198
3199
8.78k
  WINPR_ASSERT(rdp);
3200
  /* Since this function is called in context creation routines stop logging
3201
   * this issue repeatedly. This is required for proxy, which would otherwise
3202
   * spam the log with these. */
3203
8.78k
  if (count > 0)
3204
8.78k
    return;
3205
1
  count++;
3206
1
  log_build_warn(rdp, "experimental", "might crash the application", option_is_experimental);
3207
1
  log_build_warn(rdp, "debug", "might leak sensitive information (credentials, ...)",
3208
1
                 option_is_debug);
3209
1
  log_build_warn(rdp, "runtime-check", "might slow down the application",
3210
1
                 option_is_runtime_checks);
3211
1
  log_build_warn_ssl(rdp);
3212
1
}
3213
3214
size_t rdp_get_event_handles(rdpRdp* rdp, HANDLE* handles, uint32_t count)
3215
0
{
3216
0
  size_t nCount = transport_get_event_handles(rdp->transport, handles, count);
3217
3218
0
  if (nCount == 0)
3219
0
    return 0;
3220
3221
0
  if (count < nCount + 2UL)
3222
0
    return 0;
3223
3224
0
  handles[nCount++] = utils_get_abort_event(rdp);
3225
0
  handles[nCount++] = freerdp_timer_get_event(rdp->timer);
3226
0
  return nCount;
3227
0
}