Coverage Report

Created: 2022-08-24 06:30

/src/libressl/crypto/sm3/sm3.c
Line
Count
Source (jump to first uncovered line)
1
/*  $OpenBSD: sm3.c,v 1.1 2018/11/11 06:53:31 tb Exp $  */
2
/*
3
 * Copyright (c) 2018, Ribose Inc
4
 *
5
 * Permission to use, copy, modify, and/or distribute this software for any
6
 * purpose with or without fee is hereby granted, provided that the above
7
 * copyright notice and this permission notice appear in all copies.
8
 *
9
 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
10
 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
11
 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
12
 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
13
 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
14
 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
15
 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
16
 */
17
18
#ifndef OPENSSL_NO_SM3
19
20
#include <openssl/sm3.h>
21
22
#include "sm3_locl.h"
23
24
int
25
SM3_Init(SM3_CTX *c)
26
0
{
27
0
  memset(c, 0, sizeof(*c));
28
0
  c->A = SM3_A;
29
0
  c->B = SM3_B;
30
0
  c->C = SM3_C;
31
0
  c->D = SM3_D;
32
0
  c->E = SM3_E;
33
0
  c->F = SM3_F;
34
0
  c->G = SM3_G;
35
0
  c->H = SM3_H;
36
0
  return 1;
37
0
}
38
39
void
40
SM3_block_data_order(SM3_CTX *ctx, const void *p, size_t num)
41
0
{
42
0
  const unsigned char *data = p;
43
0
  SM3_WORD A, B, C, D, E, F, G, H;
44
0
  SM3_WORD W00, W01, W02, W03, W04, W05, W06, W07;
45
0
  SM3_WORD W08, W09, W10, W11, W12, W13, W14, W15;
46
47
0
  while (num-- != 0) {
48
0
    A = ctx->A;
49
0
    B = ctx->B;
50
0
    C = ctx->C;
51
0
    D = ctx->D;
52
0
    E = ctx->E;
53
0
    F = ctx->F;
54
0
    G = ctx->G;
55
0
    H = ctx->H;
56
57
          /*
58
           * We have to load all message bytes immediately since SM3 reads
59
           * them slightly out of order.
60
           */
61
0
    HOST_c2l(data, W00);
62
0
    HOST_c2l(data, W01);
63
0
    HOST_c2l(data, W02);
64
0
    HOST_c2l(data, W03);
65
0
    HOST_c2l(data, W04);
66
0
    HOST_c2l(data, W05);
67
0
    HOST_c2l(data, W06);
68
0
    HOST_c2l(data, W07);
69
0
    HOST_c2l(data, W08);
70
0
    HOST_c2l(data, W09);
71
0
    HOST_c2l(data, W10);
72
0
    HOST_c2l(data, W11);
73
0
    HOST_c2l(data, W12);
74
0
    HOST_c2l(data, W13);
75
0
    HOST_c2l(data, W14);
76
0
    HOST_c2l(data, W15);
77
78
0
    R1(A, B, C, D, E, F, G, H, 0x79cc4519, W00, W00 ^ W04);
79
0
    W00 = EXPAND(W00, W07, W13, W03, W10);
80
0
    R1(D, A, B, C, H, E, F, G, 0xf3988a32, W01, W01 ^ W05);
81
0
    W01 = EXPAND(W01, W08, W14, W04, W11);
82
0
    R1(C, D, A, B, G, H, E, F, 0xe7311465, W02, W02 ^ W06);
83
0
    W02 = EXPAND(W02, W09, W15, W05, W12);
84
0
    R1(B, C, D, A, F, G, H, E, 0xce6228cb, W03, W03 ^ W07);
85
0
    W03 = EXPAND(W03, W10, W00, W06, W13);
86
0
    R1(A, B, C, D, E, F, G, H, 0x9cc45197, W04, W04 ^ W08);
87
0
    W04 = EXPAND(W04, W11, W01, W07, W14);
88
0
    R1(D, A, B, C, H, E, F, G, 0x3988a32f, W05, W05 ^ W09);
89
0
    W05 = EXPAND(W05, W12, W02, W08, W15);
90
0
    R1(C, D, A, B, G, H, E, F, 0x7311465e, W06, W06 ^ W10);
91
0
    W06 = EXPAND(W06, W13, W03, W09, W00);
92
0
    R1(B, C, D, A, F, G, H, E, 0xe6228cbc, W07, W07 ^ W11);
93
0
    W07 = EXPAND(W07, W14, W04, W10, W01);
94
0
    R1(A, B, C, D, E, F, G, H, 0xcc451979, W08, W08 ^ W12);
95
0
    W08 = EXPAND(W08, W15, W05, W11, W02);
96
0
    R1(D, A, B, C, H, E, F, G, 0x988a32f3, W09, W09 ^ W13);
97
0
    W09 = EXPAND(W09, W00, W06, W12, W03);
98
0
    R1(C, D, A, B, G, H, E, F, 0x311465e7, W10, W10 ^ W14);
99
0
    W10 = EXPAND(W10, W01, W07, W13, W04);
100
0
    R1(B, C, D, A, F, G, H, E, 0x6228cbce, W11, W11 ^ W15);
101
0
    W11 = EXPAND(W11, W02, W08, W14, W05);
102
0
    R1(A, B, C, D, E, F, G, H, 0xc451979c, W12, W12 ^ W00);
103
0
    W12 = EXPAND(W12, W03, W09, W15, W06);
104
0
    R1(D, A, B, C, H, E, F, G, 0x88a32f39, W13, W13 ^ W01);
105
0
    W13 = EXPAND(W13, W04, W10, W00, W07);
106
0
    R1(C, D, A, B, G, H, E, F, 0x11465e73, W14, W14 ^ W02);
107
0
    W14 = EXPAND(W14, W05, W11, W01, W08);
108
0
    R1(B, C, D, A, F, G, H, E, 0x228cbce6, W15, W15 ^ W03);
109
0
    W15 = EXPAND(W15, W06, W12, W02, W09);
110
0
    R2(A, B, C, D, E, F, G, H, 0x9d8a7a87, W00, W00 ^ W04);
111
0
    W00 = EXPAND(W00, W07, W13, W03, W10);
112
0
    R2(D, A, B, C, H, E, F, G, 0x3b14f50f, W01, W01 ^ W05);
113
0
    W01 = EXPAND(W01, W08, W14, W04, W11);
114
0
    R2(C, D, A, B, G, H, E, F, 0x7629ea1e, W02, W02 ^ W06);
115
0
    W02 = EXPAND(W02, W09, W15, W05, W12);
116
0
    R2(B, C, D, A, F, G, H, E, 0xec53d43c, W03, W03 ^ W07);
117
0
    W03 = EXPAND(W03, W10, W00, W06, W13);
118
0
    R2(A, B, C, D, E, F, G, H, 0xd8a7a879, W04, W04 ^ W08);
119
0
    W04 = EXPAND(W04, W11, W01, W07, W14);
120
0
    R2(D, A, B, C, H, E, F, G, 0xb14f50f3, W05, W05 ^ W09);
121
0
    W05 = EXPAND(W05, W12, W02, W08, W15);
122
0
    R2(C, D, A, B, G, H, E, F, 0x629ea1e7, W06, W06 ^ W10);
123
0
    W06 = EXPAND(W06, W13, W03, W09, W00);
124
0
    R2(B, C, D, A, F, G, H, E, 0xc53d43ce, W07, W07 ^ W11);
125
0
    W07 = EXPAND(W07, W14, W04, W10, W01);
126
0
    R2(A, B, C, D, E, F, G, H, 0x8a7a879d, W08, W08 ^ W12);
127
0
    W08 = EXPAND(W08, W15, W05, W11, W02);
128
0
    R2(D, A, B, C, H, E, F, G, 0x14f50f3b, W09, W09 ^ W13);
129
0
    W09 = EXPAND(W09, W00, W06, W12, W03);
130
0
    R2(C, D, A, B, G, H, E, F, 0x29ea1e76, W10, W10 ^ W14);
131
0
    W10 = EXPAND(W10, W01, W07, W13, W04);
132
0
    R2(B, C, D, A, F, G, H, E, 0x53d43cec, W11, W11 ^ W15);
133
0
    W11 = EXPAND(W11, W02, W08, W14, W05);
134
0
    R2(A, B, C, D, E, F, G, H, 0xa7a879d8, W12, W12 ^ W00);
135
0
    W12 = EXPAND(W12, W03, W09, W15, W06);
136
0
    R2(D, A, B, C, H, E, F, G, 0x4f50f3b1, W13, W13 ^ W01);
137
0
    W13 = EXPAND(W13, W04, W10, W00, W07);
138
0
    R2(C, D, A, B, G, H, E, F, 0x9ea1e762, W14, W14 ^ W02);
139
0
    W14 = EXPAND(W14, W05, W11, W01, W08);
140
0
    R2(B, C, D, A, F, G, H, E, 0x3d43cec5, W15, W15 ^ W03);
141
0
    W15 = EXPAND(W15, W06, W12, W02, W09);
142
0
    R2(A, B, C, D, E, F, G, H, 0x7a879d8a, W00, W00 ^ W04);
143
0
    W00 = EXPAND(W00, W07, W13, W03, W10);
144
0
    R2(D, A, B, C, H, E, F, G, 0xf50f3b14, W01, W01 ^ W05);
145
0
    W01 = EXPAND(W01, W08, W14, W04, W11);
146
0
    R2(C, D, A, B, G, H, E, F, 0xea1e7629, W02, W02 ^ W06);
147
0
    W02 = EXPAND(W02, W09, W15, W05, W12);
148
0
    R2(B, C, D, A, F, G, H, E, 0xd43cec53, W03, W03 ^ W07);
149
0
    W03 = EXPAND(W03, W10, W00, W06, W13);
150
0
    R2(A, B, C, D, E, F, G, H, 0xa879d8a7, W04, W04 ^ W08);
151
0
    W04 = EXPAND(W04, W11, W01, W07, W14);
152
0
    R2(D, A, B, C, H, E, F, G, 0x50f3b14f, W05, W05 ^ W09);
153
0
    W05 = EXPAND(W05, W12, W02, W08, W15);
154
0
    R2(C, D, A, B, G, H, E, F, 0xa1e7629e, W06, W06 ^ W10);
155
0
    W06 = EXPAND(W06, W13, W03, W09, W00);
156
0
    R2(B, C, D, A, F, G, H, E, 0x43cec53d, W07, W07 ^ W11);
157
0
    W07 = EXPAND(W07, W14, W04, W10, W01);
158
0
    R2(A, B, C, D, E, F, G, H, 0x879d8a7a, W08, W08 ^ W12);
159
0
    W08 = EXPAND(W08, W15, W05, W11, W02);
160
0
    R2(D, A, B, C, H, E, F, G, 0x0f3b14f5, W09, W09 ^ W13);
161
0
    W09 = EXPAND(W09, W00, W06, W12, W03);
162
0
    R2(C, D, A, B, G, H, E, F, 0x1e7629ea, W10, W10 ^ W14);
163
0
    W10 = EXPAND(W10, W01, W07, W13, W04);
164
0
    R2(B, C, D, A, F, G, H, E, 0x3cec53d4, W11, W11 ^ W15);
165
0
    W11 = EXPAND(W11, W02, W08, W14, W05);
166
0
    R2(A, B, C, D, E, F, G, H, 0x79d8a7a8, W12, W12 ^ W00);
167
0
    W12 = EXPAND(W12, W03, W09, W15, W06);
168
0
    R2(D, A, B, C, H, E, F, G, 0xf3b14f50, W13, W13 ^ W01);
169
0
    W13 = EXPAND(W13, W04, W10, W00, W07);
170
0
    R2(C, D, A, B, G, H, E, F, 0xe7629ea1, W14, W14 ^ W02);
171
0
    W14 = EXPAND(W14, W05, W11, W01, W08);
172
0
    R2(B, C, D, A, F, G, H, E, 0xcec53d43, W15, W15 ^ W03);
173
0
    W15 = EXPAND(W15, W06, W12, W02, W09);
174
0
    R2(A, B, C, D, E, F, G, H, 0x9d8a7a87, W00, W00 ^ W04);
175
0
    W00 = EXPAND(W00, W07, W13, W03, W10);
176
0
    R2(D, A, B, C, H, E, F, G, 0x3b14f50f, W01, W01 ^ W05);
177
0
    W01 = EXPAND(W01, W08, W14, W04, W11);
178
0
    R2(C, D, A, B, G, H, E, F, 0x7629ea1e, W02, W02 ^ W06);
179
0
    W02 = EXPAND(W02, W09, W15, W05, W12);
180
0
    R2(B, C, D, A, F, G, H, E, 0xec53d43c, W03, W03 ^ W07);
181
0
    W03 = EXPAND(W03, W10, W00, W06, W13);
182
0
    R2(A, B, C, D, E, F, G, H, 0xd8a7a879, W04, W04 ^ W08);
183
0
    R2(D, A, B, C, H, E, F, G, 0xb14f50f3, W05, W05 ^ W09);
184
0
    R2(C, D, A, B, G, H, E, F, 0x629ea1e7, W06, W06 ^ W10);
185
0
    R2(B, C, D, A, F, G, H, E, 0xc53d43ce, W07, W07 ^ W11);
186
0
    R2(A, B, C, D, E, F, G, H, 0x8a7a879d, W08, W08 ^ W12);
187
0
    R2(D, A, B, C, H, E, F, G, 0x14f50f3b, W09, W09 ^ W13);
188
0
    R2(C, D, A, B, G, H, E, F, 0x29ea1e76, W10, W10 ^ W14);
189
0
    R2(B, C, D, A, F, G, H, E, 0x53d43cec, W11, W11 ^ W15);
190
0
    R2(A, B, C, D, E, F, G, H, 0xa7a879d8, W12, W12 ^ W00);
191
0
    R2(D, A, B, C, H, E, F, G, 0x4f50f3b1, W13, W13 ^ W01);
192
0
    R2(C, D, A, B, G, H, E, F, 0x9ea1e762, W14, W14 ^ W02);
193
0
    R2(B, C, D, A, F, G, H, E, 0x3d43cec5, W15, W15 ^ W03);
194
195
0
    ctx->A ^= A;
196
0
    ctx->B ^= B;
197
0
    ctx->C ^= C;
198
0
    ctx->D ^= D;
199
0
    ctx->E ^= E;
200
0
    ctx->F ^= F;
201
0
    ctx->G ^= G;
202
0
    ctx->H ^= H;
203
0
  }
204
0
}
205
206
#endif /* !OPENSSL_NO_SM3 */