Coverage Report

Created: 2025-06-13 06:55

/src/openssl/crypto/slh_dsa/slh_adrs.c
Line
Count
Source (jump to first uncovered line)
1
/*
2
 * Copyright 2024-2025 The OpenSSL Project Authors. All Rights Reserved.
3
 *
4
 * Licensed under the Apache License 2.0 (the "License").  You may not use
5
 * this file except in compliance with the License.  You can obtain a copy
6
 * in the file LICENSE in the source distribution or at
7
 * https://www.openssl.org/source/license.html
8
 */
9
#include <string.h>
10
#include <openssl/byteorder.h>
11
#include "slh_adrs.h"
12
13
/* See FIPS 205 - Section 4.3 Table 1  Uncompressed Addresses */
14
0
#define SLH_ADRS_OFF_LAYER_ADR      0
15
0
#define SLH_ADRS_OFF_TREE_ADR       4
16
0
#define SLH_ADRS_OFF_TYPE           16
17
0
#define SLH_ADRS_OFF_KEYPAIR_ADDR   20
18
0
#define SLH_ADRS_OFF_CHAIN_ADDR     24
19
0
#define SLH_ADRS_OFF_HASH_ADDR      28
20
#define SLH_ADRS_OFF_TREE_INDEX     SLH_ADRS_OFF_HASH_ADDR
21
0
#define SLH_ADRS_SIZE_TYPE          4
22
/* Number of bytes after type to clear */
23
0
#define SLH_ADRS_SIZE_TYPECLEAR     SLH_ADRS_SIZE - (SLH_ADRS_OFF_TYPE + SLH_ADRS_SIZE_TYPE)
24
0
#define SLH_ADRS_SIZE_KEYPAIR_ADDR  4
25
26
/* See FIPS 205 - Section 11.2 Table 3 Compressed Addresses */
27
0
#define SLH_ADRSC_OFF_LAYER_ADR     0
28
0
#define SLH_ADRSC_OFF_TREE_ADR      1
29
0
#define SLH_ADRSC_OFF_TYPE          9
30
0
#define SLH_ADRSC_OFF_KEYPAIR_ADDR  10
31
0
#define SLH_ADRSC_OFF_CHAIN_ADDR    14
32
0
#define SLH_ADRSC_OFF_HASH_ADDR     18
33
#define SLH_ADRSC_OFF_TREE_INDEX    SLH_ADRSC_OFF_HASH_ADDR
34
0
#define SLH_ADRSC_SIZE_TYPE         1
35
0
#define SLH_ADRSC_SIZE_TYPECLEAR    SLH_ADRS_SIZE_TYPECLEAR
36
0
#define SLH_ADRSC_SIZE_KEYPAIR_ADDR SLH_ADRS_SIZE_KEYPAIR_ADDR
37
38
0
#define slh_adrs_set_tree_height slh_adrs_set_chain_address
39
0
#define slh_adrs_set_tree_index slh_adrs_set_hash_address
40
41
0
#define slh_adrsc_set_tree_height slh_adrsc_set_chain_address
42
0
#define slh_adrsc_set_tree_index slh_adrsc_set_hash_address
43
44
static OSSL_SLH_ADRS_FUNC_set_layer_address slh_adrs_set_layer_address;
45
static OSSL_SLH_ADRS_FUNC_set_tree_address slh_adrs_set_tree_address;
46
static OSSL_SLH_ADRS_FUNC_set_type_and_clear slh_adrs_set_type_and_clear;
47
static OSSL_SLH_ADRS_FUNC_set_keypair_address slh_adrs_set_keypair_address;
48
static OSSL_SLH_ADRS_FUNC_copy_keypair_address slh_adrs_copy_keypair_address;
49
static OSSL_SLH_ADRS_FUNC_set_chain_address slh_adrs_set_chain_address;
50
static OSSL_SLH_ADRS_FUNC_set_hash_address slh_adrs_set_hash_address;
51
static OSSL_SLH_ADRS_FUNC_zero slh_adrs_zero;
52
static OSSL_SLH_ADRS_FUNC_copy slh_adrs_copy;
53
54
static OSSL_SLH_ADRS_FUNC_set_layer_address slh_adrsc_set_layer_address;
55
static OSSL_SLH_ADRS_FUNC_set_tree_address slh_adrsc_set_tree_address;
56
static OSSL_SLH_ADRS_FUNC_set_type_and_clear slh_adrsc_set_type_and_clear;
57
static OSSL_SLH_ADRS_FUNC_set_keypair_address slh_adrsc_set_keypair_address;
58
static OSSL_SLH_ADRS_FUNC_copy_keypair_address slh_adrsc_copy_keypair_address;
59
static OSSL_SLH_ADRS_FUNC_set_chain_address slh_adrsc_set_chain_address;
60
static OSSL_SLH_ADRS_FUNC_set_hash_address slh_adrsc_set_hash_address;
61
static OSSL_SLH_ADRS_FUNC_zero slh_adrsc_zero;
62
static OSSL_SLH_ADRS_FUNC_copy slh_adrsc_copy;
63
64
/*
65
 * The non compressed versions of the ADRS functions use 32 bytes
66
 * This is only used by SHAKE.
67
 */
68
static void slh_adrs_set_layer_address(uint8_t *adrs, uint32_t layer)
69
0
{
70
0
    OPENSSL_store_u32_be(adrs + SLH_ADRS_OFF_LAYER_ADR, layer);
71
0
}
72
static void slh_adrs_set_tree_address(uint8_t *adrs, uint64_t address)
73
0
{
74
    /*
75
     * There are 12 bytes reserved for this - but the largest number
76
     * used by the parameter sets is only 64 bits. Because this is BE the
77
     * first 4 of the 12 bytes will be zeros. This assumes that the 4 bytes
78
     * are zero initially.
79
     */
80
0
    OPENSSL_store_u64_be(adrs + SLH_ADRS_OFF_TREE_ADR + 4, address);
81
0
}
82
static void slh_adrs_set_type_and_clear(uint8_t *adrs, uint32_t type)
83
0
{
84
0
    OPENSSL_store_u32_be(adrs + SLH_ADRS_OFF_TYPE, type);
85
0
    memset(adrs + SLH_ADRS_OFF_TYPE + SLH_ADRS_SIZE_TYPE, 0, SLH_ADRS_SIZE_TYPECLEAR);
86
0
}
87
static void slh_adrs_set_keypair_address(uint8_t *adrs, uint32_t in)
88
0
{
89
0
    OPENSSL_store_u32_be(adrs + SLH_ADRS_OFF_KEYPAIR_ADDR, in);
90
0
}
91
static void slh_adrs_copy_keypair_address(uint8_t *dst, const uint8_t *src)
92
0
{
93
0
    memcpy(dst + SLH_ADRS_OFF_KEYPAIR_ADDR, src + SLH_ADRS_OFF_KEYPAIR_ADDR,
94
0
           SLH_ADRS_SIZE_KEYPAIR_ADDR);
95
0
}
96
static void slh_adrs_set_chain_address(uint8_t *adrs, uint32_t in)
97
0
{
98
0
    OPENSSL_store_u32_be(adrs + SLH_ADRS_OFF_CHAIN_ADDR, in);
99
0
}
100
static void slh_adrs_set_hash_address(uint8_t *adrs, uint32_t in)
101
0
{
102
0
    OPENSSL_store_u32_be(adrs + SLH_ADRS_OFF_HASH_ADDR, in);
103
0
}
104
static void slh_adrs_zero(uint8_t *adrs)
105
0
{
106
0
    memset(adrs, 0, SLH_ADRS_SIZE);
107
0
}
108
static void slh_adrs_copy(uint8_t *dst, const uint8_t *src)
109
0
{
110
0
    memcpy(dst, src, SLH_ADRS_SIZE);
111
0
}
112
113
/* Compressed versions of ADRS functions See Table 3 */
114
static void slh_adrsc_set_layer_address(uint8_t *adrsc, uint32_t layer)
115
0
{
116
0
    adrsc[SLH_ADRSC_OFF_LAYER_ADR] = (uint8_t)layer;
117
0
}
118
static void slh_adrsc_set_tree_address(uint8_t *adrsc, uint64_t in)
119
0
{
120
0
    OPENSSL_store_u64_be(adrsc + SLH_ADRSC_OFF_TREE_ADR, in);
121
0
}
122
static void slh_adrsc_set_type_and_clear(uint8_t *adrsc, uint32_t type)
123
0
{
124
0
    adrsc[SLH_ADRSC_OFF_TYPE] = (uint8_t)type;
125
0
    memset(adrsc + SLH_ADRSC_OFF_TYPE + SLH_ADRSC_SIZE_TYPE, 0, SLH_ADRSC_SIZE_TYPECLEAR);
126
0
}
127
static void slh_adrsc_set_keypair_address(uint8_t *adrsc, uint32_t in)
128
0
{
129
0
    OPENSSL_store_u32_be(adrsc + SLH_ADRSC_OFF_KEYPAIR_ADDR, in);
130
0
}
131
static void slh_adrsc_copy_keypair_address(uint8_t *dst, const uint8_t *src)
132
0
{
133
0
    memcpy(dst + SLH_ADRSC_OFF_KEYPAIR_ADDR, src + SLH_ADRSC_OFF_KEYPAIR_ADDR,
134
0
           SLH_ADRSC_SIZE_KEYPAIR_ADDR);
135
0
}
136
static void slh_adrsc_set_chain_address(uint8_t *adrsc, uint32_t in)
137
0
{
138
0
    OPENSSL_store_u32_be(adrsc + SLH_ADRSC_OFF_CHAIN_ADDR, in);
139
0
}
140
static void slh_adrsc_set_hash_address(uint8_t *adrsc, uint32_t in)
141
0
{
142
0
    OPENSSL_store_u32_be(adrsc + SLH_ADRSC_OFF_HASH_ADDR, in);
143
0
}
144
static void slh_adrsc_zero(uint8_t *adrsc)
145
0
{
146
0
    memset(adrsc, 0, SLH_ADRSC_SIZE);
147
0
}
148
static void slh_adrsc_copy(uint8_t *dst, const uint8_t *src)
149
0
{
150
0
    memcpy(dst, src, SLH_ADRSC_SIZE);
151
0
}
152
153
const SLH_ADRS_FUNC *ossl_slh_get_adrs_fn(int is_compressed)
154
0
{
155
0
    static const SLH_ADRS_FUNC methods[] = {
156
0
        {
157
0
            slh_adrs_set_layer_address,
158
0
            slh_adrs_set_tree_address,
159
0
            slh_adrs_set_type_and_clear,
160
0
            slh_adrs_set_keypair_address,
161
0
            slh_adrs_copy_keypair_address,
162
0
            slh_adrs_set_chain_address,
163
0
            slh_adrs_set_tree_height,
164
0
            slh_adrs_set_hash_address,
165
0
            slh_adrs_set_tree_index,
166
0
            slh_adrs_zero,
167
0
            slh_adrs_copy,
168
0
        },
169
0
        {
170
0
            slh_adrsc_set_layer_address,
171
0
            slh_adrsc_set_tree_address,
172
0
            slh_adrsc_set_type_and_clear,
173
0
            slh_adrsc_set_keypair_address,
174
0
            slh_adrsc_copy_keypair_address,
175
0
            slh_adrsc_set_chain_address,
176
0
            slh_adrsc_set_tree_height,
177
0
            slh_adrsc_set_hash_address,
178
0
            slh_adrsc_set_tree_index,
179
0
            slh_adrsc_zero,
180
0
            slh_adrsc_copy,
181
0
        }
182
0
    };
183
0
    return &methods[is_compressed == 0 ? 0 : 1];
184
0
}