/src/libressl/crypto/sm3/sm3.c
Line | Count | Source (jump to first uncovered line) |
1 | | /* $OpenBSD: sm3.c,v 1.1 2018/11/11 06:53:31 tb Exp $ */ |
2 | | /* |
3 | | * Copyright (c) 2018, Ribose Inc |
4 | | * |
5 | | * Permission to use, copy, modify, and/or distribute this software for any |
6 | | * purpose with or without fee is hereby granted, provided that the above |
7 | | * copyright notice and this permission notice appear in all copies. |
8 | | * |
9 | | * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES |
10 | | * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF |
11 | | * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR |
12 | | * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES |
13 | | * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN |
14 | | * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
15 | | * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
16 | | */ |
17 | | |
18 | | #ifndef OPENSSL_NO_SM3 |
19 | | |
20 | | #include <openssl/sm3.h> |
21 | | |
22 | | #include "sm3_locl.h" |
23 | | |
24 | | int |
25 | | SM3_Init(SM3_CTX *c) |
26 | 0 | { |
27 | 0 | memset(c, 0, sizeof(*c)); |
28 | 0 | c->A = SM3_A; |
29 | 0 | c->B = SM3_B; |
30 | 0 | c->C = SM3_C; |
31 | 0 | c->D = SM3_D; |
32 | 0 | c->E = SM3_E; |
33 | 0 | c->F = SM3_F; |
34 | 0 | c->G = SM3_G; |
35 | 0 | c->H = SM3_H; |
36 | 0 | return 1; |
37 | 0 | } |
38 | | |
39 | | void |
40 | | SM3_block_data_order(SM3_CTX *ctx, const void *p, size_t num) |
41 | 0 | { |
42 | 0 | const unsigned char *data = p; |
43 | 0 | SM3_WORD A, B, C, D, E, F, G, H; |
44 | 0 | SM3_WORD W00, W01, W02, W03, W04, W05, W06, W07; |
45 | 0 | SM3_WORD W08, W09, W10, W11, W12, W13, W14, W15; |
46 | |
|
47 | 0 | while (num-- != 0) { |
48 | 0 | A = ctx->A; |
49 | 0 | B = ctx->B; |
50 | 0 | C = ctx->C; |
51 | 0 | D = ctx->D; |
52 | 0 | E = ctx->E; |
53 | 0 | F = ctx->F; |
54 | 0 | G = ctx->G; |
55 | 0 | H = ctx->H; |
56 | | |
57 | | /* |
58 | | * We have to load all message bytes immediately since SM3 reads |
59 | | * them slightly out of order. |
60 | | */ |
61 | 0 | HOST_c2l(data, W00); |
62 | 0 | HOST_c2l(data, W01); |
63 | 0 | HOST_c2l(data, W02); |
64 | 0 | HOST_c2l(data, W03); |
65 | 0 | HOST_c2l(data, W04); |
66 | 0 | HOST_c2l(data, W05); |
67 | 0 | HOST_c2l(data, W06); |
68 | 0 | HOST_c2l(data, W07); |
69 | 0 | HOST_c2l(data, W08); |
70 | 0 | HOST_c2l(data, W09); |
71 | 0 | HOST_c2l(data, W10); |
72 | 0 | HOST_c2l(data, W11); |
73 | 0 | HOST_c2l(data, W12); |
74 | 0 | HOST_c2l(data, W13); |
75 | 0 | HOST_c2l(data, W14); |
76 | 0 | HOST_c2l(data, W15); |
77 | |
|
78 | 0 | R1(A, B, C, D, E, F, G, H, 0x79cc4519, W00, W00 ^ W04); |
79 | 0 | W00 = EXPAND(W00, W07, W13, W03, W10); |
80 | 0 | R1(D, A, B, C, H, E, F, G, 0xf3988a32, W01, W01 ^ W05); |
81 | 0 | W01 = EXPAND(W01, W08, W14, W04, W11); |
82 | 0 | R1(C, D, A, B, G, H, E, F, 0xe7311465, W02, W02 ^ W06); |
83 | 0 | W02 = EXPAND(W02, W09, W15, W05, W12); |
84 | 0 | R1(B, C, D, A, F, G, H, E, 0xce6228cb, W03, W03 ^ W07); |
85 | 0 | W03 = EXPAND(W03, W10, W00, W06, W13); |
86 | 0 | R1(A, B, C, D, E, F, G, H, 0x9cc45197, W04, W04 ^ W08); |
87 | 0 | W04 = EXPAND(W04, W11, W01, W07, W14); |
88 | 0 | R1(D, A, B, C, H, E, F, G, 0x3988a32f, W05, W05 ^ W09); |
89 | 0 | W05 = EXPAND(W05, W12, W02, W08, W15); |
90 | 0 | R1(C, D, A, B, G, H, E, F, 0x7311465e, W06, W06 ^ W10); |
91 | 0 | W06 = EXPAND(W06, W13, W03, W09, W00); |
92 | 0 | R1(B, C, D, A, F, G, H, E, 0xe6228cbc, W07, W07 ^ W11); |
93 | 0 | W07 = EXPAND(W07, W14, W04, W10, W01); |
94 | 0 | R1(A, B, C, D, E, F, G, H, 0xcc451979, W08, W08 ^ W12); |
95 | 0 | W08 = EXPAND(W08, W15, W05, W11, W02); |
96 | 0 | R1(D, A, B, C, H, E, F, G, 0x988a32f3, W09, W09 ^ W13); |
97 | 0 | W09 = EXPAND(W09, W00, W06, W12, W03); |
98 | 0 | R1(C, D, A, B, G, H, E, F, 0x311465e7, W10, W10 ^ W14); |
99 | 0 | W10 = EXPAND(W10, W01, W07, W13, W04); |
100 | 0 | R1(B, C, D, A, F, G, H, E, 0x6228cbce, W11, W11 ^ W15); |
101 | 0 | W11 = EXPAND(W11, W02, W08, W14, W05); |
102 | 0 | R1(A, B, C, D, E, F, G, H, 0xc451979c, W12, W12 ^ W00); |
103 | 0 | W12 = EXPAND(W12, W03, W09, W15, W06); |
104 | 0 | R1(D, A, B, C, H, E, F, G, 0x88a32f39, W13, W13 ^ W01); |
105 | 0 | W13 = EXPAND(W13, W04, W10, W00, W07); |
106 | 0 | R1(C, D, A, B, G, H, E, F, 0x11465e73, W14, W14 ^ W02); |
107 | 0 | W14 = EXPAND(W14, W05, W11, W01, W08); |
108 | 0 | R1(B, C, D, A, F, G, H, E, 0x228cbce6, W15, W15 ^ W03); |
109 | 0 | W15 = EXPAND(W15, W06, W12, W02, W09); |
110 | 0 | R2(A, B, C, D, E, F, G, H, 0x9d8a7a87, W00, W00 ^ W04); |
111 | 0 | W00 = EXPAND(W00, W07, W13, W03, W10); |
112 | 0 | R2(D, A, B, C, H, E, F, G, 0x3b14f50f, W01, W01 ^ W05); |
113 | 0 | W01 = EXPAND(W01, W08, W14, W04, W11); |
114 | 0 | R2(C, D, A, B, G, H, E, F, 0x7629ea1e, W02, W02 ^ W06); |
115 | 0 | W02 = EXPAND(W02, W09, W15, W05, W12); |
116 | 0 | R2(B, C, D, A, F, G, H, E, 0xec53d43c, W03, W03 ^ W07); |
117 | 0 | W03 = EXPAND(W03, W10, W00, W06, W13); |
118 | 0 | R2(A, B, C, D, E, F, G, H, 0xd8a7a879, W04, W04 ^ W08); |
119 | 0 | W04 = EXPAND(W04, W11, W01, W07, W14); |
120 | 0 | R2(D, A, B, C, H, E, F, G, 0xb14f50f3, W05, W05 ^ W09); |
121 | 0 | W05 = EXPAND(W05, W12, W02, W08, W15); |
122 | 0 | R2(C, D, A, B, G, H, E, F, 0x629ea1e7, W06, W06 ^ W10); |
123 | 0 | W06 = EXPAND(W06, W13, W03, W09, W00); |
124 | 0 | R2(B, C, D, A, F, G, H, E, 0xc53d43ce, W07, W07 ^ W11); |
125 | 0 | W07 = EXPAND(W07, W14, W04, W10, W01); |
126 | 0 | R2(A, B, C, D, E, F, G, H, 0x8a7a879d, W08, W08 ^ W12); |
127 | 0 | W08 = EXPAND(W08, W15, W05, W11, W02); |
128 | 0 | R2(D, A, B, C, H, E, F, G, 0x14f50f3b, W09, W09 ^ W13); |
129 | 0 | W09 = EXPAND(W09, W00, W06, W12, W03); |
130 | 0 | R2(C, D, A, B, G, H, E, F, 0x29ea1e76, W10, W10 ^ W14); |
131 | 0 | W10 = EXPAND(W10, W01, W07, W13, W04); |
132 | 0 | R2(B, C, D, A, F, G, H, E, 0x53d43cec, W11, W11 ^ W15); |
133 | 0 | W11 = EXPAND(W11, W02, W08, W14, W05); |
134 | 0 | R2(A, B, C, D, E, F, G, H, 0xa7a879d8, W12, W12 ^ W00); |
135 | 0 | W12 = EXPAND(W12, W03, W09, W15, W06); |
136 | 0 | R2(D, A, B, C, H, E, F, G, 0x4f50f3b1, W13, W13 ^ W01); |
137 | 0 | W13 = EXPAND(W13, W04, W10, W00, W07); |
138 | 0 | R2(C, D, A, B, G, H, E, F, 0x9ea1e762, W14, W14 ^ W02); |
139 | 0 | W14 = EXPAND(W14, W05, W11, W01, W08); |
140 | 0 | R2(B, C, D, A, F, G, H, E, 0x3d43cec5, W15, W15 ^ W03); |
141 | 0 | W15 = EXPAND(W15, W06, W12, W02, W09); |
142 | 0 | R2(A, B, C, D, E, F, G, H, 0x7a879d8a, W00, W00 ^ W04); |
143 | 0 | W00 = EXPAND(W00, W07, W13, W03, W10); |
144 | 0 | R2(D, A, B, C, H, E, F, G, 0xf50f3b14, W01, W01 ^ W05); |
145 | 0 | W01 = EXPAND(W01, W08, W14, W04, W11); |
146 | 0 | R2(C, D, A, B, G, H, E, F, 0xea1e7629, W02, W02 ^ W06); |
147 | 0 | W02 = EXPAND(W02, W09, W15, W05, W12); |
148 | 0 | R2(B, C, D, A, F, G, H, E, 0xd43cec53, W03, W03 ^ W07); |
149 | 0 | W03 = EXPAND(W03, W10, W00, W06, W13); |
150 | 0 | R2(A, B, C, D, E, F, G, H, 0xa879d8a7, W04, W04 ^ W08); |
151 | 0 | W04 = EXPAND(W04, W11, W01, W07, W14); |
152 | 0 | R2(D, A, B, C, H, E, F, G, 0x50f3b14f, W05, W05 ^ W09); |
153 | 0 | W05 = EXPAND(W05, W12, W02, W08, W15); |
154 | 0 | R2(C, D, A, B, G, H, E, F, 0xa1e7629e, W06, W06 ^ W10); |
155 | 0 | W06 = EXPAND(W06, W13, W03, W09, W00); |
156 | 0 | R2(B, C, D, A, F, G, H, E, 0x43cec53d, W07, W07 ^ W11); |
157 | 0 | W07 = EXPAND(W07, W14, W04, W10, W01); |
158 | 0 | R2(A, B, C, D, E, F, G, H, 0x879d8a7a, W08, W08 ^ W12); |
159 | 0 | W08 = EXPAND(W08, W15, W05, W11, W02); |
160 | 0 | R2(D, A, B, C, H, E, F, G, 0x0f3b14f5, W09, W09 ^ W13); |
161 | 0 | W09 = EXPAND(W09, W00, W06, W12, W03); |
162 | 0 | R2(C, D, A, B, G, H, E, F, 0x1e7629ea, W10, W10 ^ W14); |
163 | 0 | W10 = EXPAND(W10, W01, W07, W13, W04); |
164 | 0 | R2(B, C, D, A, F, G, H, E, 0x3cec53d4, W11, W11 ^ W15); |
165 | 0 | W11 = EXPAND(W11, W02, W08, W14, W05); |
166 | 0 | R2(A, B, C, D, E, F, G, H, 0x79d8a7a8, W12, W12 ^ W00); |
167 | 0 | W12 = EXPAND(W12, W03, W09, W15, W06); |
168 | 0 | R2(D, A, B, C, H, E, F, G, 0xf3b14f50, W13, W13 ^ W01); |
169 | 0 | W13 = EXPAND(W13, W04, W10, W00, W07); |
170 | 0 | R2(C, D, A, B, G, H, E, F, 0xe7629ea1, W14, W14 ^ W02); |
171 | 0 | W14 = EXPAND(W14, W05, W11, W01, W08); |
172 | 0 | R2(B, C, D, A, F, G, H, E, 0xcec53d43, W15, W15 ^ W03); |
173 | 0 | W15 = EXPAND(W15, W06, W12, W02, W09); |
174 | 0 | R2(A, B, C, D, E, F, G, H, 0x9d8a7a87, W00, W00 ^ W04); |
175 | 0 | W00 = EXPAND(W00, W07, W13, W03, W10); |
176 | 0 | R2(D, A, B, C, H, E, F, G, 0x3b14f50f, W01, W01 ^ W05); |
177 | 0 | W01 = EXPAND(W01, W08, W14, W04, W11); |
178 | 0 | R2(C, D, A, B, G, H, E, F, 0x7629ea1e, W02, W02 ^ W06); |
179 | 0 | W02 = EXPAND(W02, W09, W15, W05, W12); |
180 | 0 | R2(B, C, D, A, F, G, H, E, 0xec53d43c, W03, W03 ^ W07); |
181 | 0 | W03 = EXPAND(W03, W10, W00, W06, W13); |
182 | 0 | R2(A, B, C, D, E, F, G, H, 0xd8a7a879, W04, W04 ^ W08); |
183 | 0 | R2(D, A, B, C, H, E, F, G, 0xb14f50f3, W05, W05 ^ W09); |
184 | 0 | R2(C, D, A, B, G, H, E, F, 0x629ea1e7, W06, W06 ^ W10); |
185 | 0 | R2(B, C, D, A, F, G, H, E, 0xc53d43ce, W07, W07 ^ W11); |
186 | 0 | R2(A, B, C, D, E, F, G, H, 0x8a7a879d, W08, W08 ^ W12); |
187 | 0 | R2(D, A, B, C, H, E, F, G, 0x14f50f3b, W09, W09 ^ W13); |
188 | 0 | R2(C, D, A, B, G, H, E, F, 0x29ea1e76, W10, W10 ^ W14); |
189 | 0 | R2(B, C, D, A, F, G, H, E, 0x53d43cec, W11, W11 ^ W15); |
190 | 0 | R2(A, B, C, D, E, F, G, H, 0xa7a879d8, W12, W12 ^ W00); |
191 | 0 | R2(D, A, B, C, H, E, F, G, 0x4f50f3b1, W13, W13 ^ W01); |
192 | 0 | R2(C, D, A, B, G, H, E, F, 0x9ea1e762, W14, W14 ^ W02); |
193 | 0 | R2(B, C, D, A, F, G, H, E, 0x3d43cec5, W15, W15 ^ W03); |
194 | |
|
195 | 0 | ctx->A ^= A; |
196 | 0 | ctx->B ^= B; |
197 | 0 | ctx->C ^= C; |
198 | 0 | ctx->D ^= D; |
199 | 0 | ctx->E ^= E; |
200 | 0 | ctx->F ^= F; |
201 | 0 | ctx->G ^= G; |
202 | 0 | ctx->H ^= H; |
203 | 0 | } |
204 | 0 | } |
205 | | |
206 | | #endif /* !OPENSSL_NO_SM3 */ |