/src/openssl31/crypto/asn1/asn1_parse.c
Line | Count | Source (jump to first uncovered line) |
1 | | /* |
2 | | * Copyright 1995-2023 The OpenSSL Project Authors. All Rights Reserved. |
3 | | * |
4 | | * Licensed under the Apache License 2.0 (the "License"). You may not use |
5 | | * this file except in compliance with the License. You can obtain a copy |
6 | | * in the file LICENSE in the source distribution or at |
7 | | * https://www.openssl.org/source/license.html |
8 | | */ |
9 | | |
10 | | #include <stdio.h> |
11 | | #include "internal/cryptlib.h" |
12 | | #include <openssl/buffer.h> |
13 | | #include <openssl/objects.h> |
14 | | #include <openssl/asn1.h> |
15 | | |
16 | | #ifndef ASN1_PARSE_MAXDEPTH |
17 | 2.81M | #define ASN1_PARSE_MAXDEPTH 128 |
18 | | #endif |
19 | | |
20 | | static int asn1_parse2(BIO *bp, const unsigned char **pp, long length, |
21 | | int offset, int depth, int indent, int dump); |
22 | | static int asn1_print_info(BIO *bp, long offset, int depth, int hl, long len, |
23 | | int tag, int xclass, int constructed, int indent) |
24 | 8.42M | { |
25 | 8.42M | char str[128]; |
26 | 8.42M | const char *p; |
27 | 8.42M | int pop_f_prefix = 0; |
28 | 8.42M | long saved_indent = -1; |
29 | 8.42M | int i = 0; |
30 | 8.42M | BIO *bio = NULL; |
31 | | |
32 | 8.42M | if (constructed & V_ASN1_CONSTRUCTED) |
33 | 3.15M | p = "cons: "; |
34 | 5.26M | else |
35 | 5.26M | p = "prim: "; |
36 | 8.42M | if (constructed != (V_ASN1_CONSTRUCTED | 1)) { |
37 | 7.04M | if (BIO_snprintf(str, sizeof(str), "%5ld:d=%-2d hl=%ld l=%4ld %s", |
38 | 7.04M | offset, depth, (long)hl, len, p) <= 0) |
39 | 0 | goto err; |
40 | 7.04M | } else { |
41 | 1.37M | if (BIO_snprintf(str, sizeof(str), "%5ld:d=%-2d hl=%ld l=inf %s", |
42 | 1.37M | offset, depth, (long)hl, p) <= 0) |
43 | 0 | goto err; |
44 | 1.37M | } |
45 | 8.42M | if (bp != NULL) { |
46 | 8.42M | if (BIO_set_prefix(bp, str) <= 0) { |
47 | 8.42M | if ((bio = BIO_new(BIO_f_prefix())) == NULL |
48 | 8.42M | || (bp = BIO_push(bio, bp)) == NULL) |
49 | 0 | goto err; |
50 | 8.42M | pop_f_prefix = 1; |
51 | 8.42M | } |
52 | 8.42M | saved_indent = BIO_get_indent(bp); |
53 | 8.42M | if (BIO_set_prefix(bp, str) <= 0 || BIO_set_indent(bp, indent) <= 0) |
54 | 0 | goto err; |
55 | 8.42M | } |
56 | | |
57 | | /* |
58 | | * BIO_set_prefix made a copy of |str|, so we can safely use it for |
59 | | * something else, ASN.1 tag printout. |
60 | | */ |
61 | 8.42M | p = str; |
62 | 8.42M | if ((xclass & V_ASN1_PRIVATE) == V_ASN1_PRIVATE) |
63 | 32.6k | BIO_snprintf(str, sizeof(str), "priv [ %d ] ", tag); |
64 | 8.39M | else if ((xclass & V_ASN1_CONTEXT_SPECIFIC) == V_ASN1_CONTEXT_SPECIFIC) |
65 | 666k | BIO_snprintf(str, sizeof(str), "cont [ %d ]", tag); |
66 | 7.72M | else if ((xclass & V_ASN1_APPLICATION) == V_ASN1_APPLICATION) |
67 | 55.6k | BIO_snprintf(str, sizeof(str), "appl [ %d ]", tag); |
68 | 7.66M | else if (tag > 30) |
69 | 15.6k | BIO_snprintf(str, sizeof(str), "<ASN1 %d>", tag); |
70 | 7.65M | else |
71 | 7.65M | p = ASN1_tag2str(tag); |
72 | | |
73 | 8.42M | i = (BIO_printf(bp, "%-18s", p) > 0); |
74 | 8.42M | err: |
75 | 8.42M | if (saved_indent >= 0) |
76 | 8.42M | BIO_set_indent(bp, saved_indent); |
77 | 8.42M | if (pop_f_prefix) |
78 | 8.42M | BIO_pop(bp); |
79 | 8.42M | BIO_free(bio); |
80 | 8.42M | return i; |
81 | 8.42M | } |
82 | | |
83 | | int ASN1_parse(BIO *bp, const unsigned char *pp, long len, int indent) |
84 | 0 | { |
85 | 0 | return asn1_parse2(bp, &pp, len, 0, 0, indent, 0); |
86 | 0 | } |
87 | | |
88 | | int ASN1_parse_dump(BIO *bp, const unsigned char *pp, long len, int indent, |
89 | | int dump) |
90 | 410k | { |
91 | 410k | return asn1_parse2(bp, &pp, len, 0, 0, indent, dump); |
92 | 410k | } |
93 | | |
94 | | static int asn1_parse2(BIO *bp, const unsigned char **pp, long length, |
95 | | int offset, int depth, int indent, int dump) |
96 | 2.81M | { |
97 | 2.81M | const unsigned char *p, *ep, *tot, *op, *opp; |
98 | 2.81M | long len; |
99 | 2.81M | int tag, xclass, ret = 0; |
100 | 2.81M | int nl, hl, j, r; |
101 | 2.81M | ASN1_OBJECT *o = NULL; |
102 | 2.81M | ASN1_OCTET_STRING *os = NULL; |
103 | 2.81M | ASN1_INTEGER *ai = NULL; |
104 | 2.81M | ASN1_ENUMERATED *ae = NULL; |
105 | | /* ASN1_BMPSTRING *bmp=NULL; */ |
106 | 2.81M | int dump_indent, dump_cont = 0; |
107 | | |
108 | 2.81M | if (depth > ASN1_PARSE_MAXDEPTH) { |
109 | 205 | BIO_puts(bp, "BAD RECURSION DEPTH\n"); |
110 | 205 | return 0; |
111 | 205 | } |
112 | | |
113 | 2.80M | dump_indent = 6; /* Because we know BIO_dump_indent() */ |
114 | 2.80M | p = *pp; |
115 | 2.80M | tot = p + length; |
116 | 9.64M | while (length > 0) { |
117 | 8.47M | op = p; |
118 | 8.47M | j = ASN1_get_object(&p, &len, &tag, &xclass, length); |
119 | 8.47M | if (j & 0x80) { |
120 | 48.1k | BIO_puts(bp, "Error in encoding\n"); |
121 | 48.1k | goto end; |
122 | 48.1k | } |
123 | 8.42M | hl = (p - op); |
124 | 8.42M | length -= hl; |
125 | | /* |
126 | | * if j == 0x21 it is a constructed indefinite length object |
127 | | */ |
128 | 8.42M | if (!asn1_print_info(bp, (long)offset + (long)(op - *pp), depth, |
129 | 8.42M | hl, len, tag, xclass, j, (indent) ? depth : 0)) |
130 | 0 | goto end; |
131 | 8.42M | if (j & V_ASN1_CONSTRUCTED) { |
132 | 3.15M | const unsigned char *sp = p; |
133 | | |
134 | 3.15M | ep = p + len; |
135 | 3.15M | if (BIO_write(bp, "\n", 1) <= 0) |
136 | 0 | goto end; |
137 | 3.15M | if (len > length) { |
138 | 0 | BIO_printf(bp, "length is greater than %ld\n", length); |
139 | 0 | goto end; |
140 | 0 | } |
141 | 3.15M | if ((j == 0x21) && (len == 0)) { |
142 | 1.37M | for (;;) { |
143 | 1.37M | r = asn1_parse2(bp, &p, (long)(tot - p), |
144 | 1.37M | offset + (p - *pp), depth + 1, |
145 | 1.37M | indent, dump); |
146 | 1.37M | if (r == 0) |
147 | 88.1k | goto end; |
148 | 1.28M | if ((r == 2) || (p >= tot)) { |
149 | 1.28M | len = p - sp; |
150 | 1.28M | break; |
151 | 1.28M | } |
152 | 1.28M | } |
153 | 1.78M | } else { |
154 | 1.78M | long tmp = len; |
155 | | |
156 | 2.75M | while (p < ep) { |
157 | 1.02M | sp = p; |
158 | 1.02M | r = asn1_parse2(bp, &p, tmp, |
159 | 1.02M | offset + (p - *pp), depth + 1, |
160 | 1.02M | indent, dump); |
161 | 1.02M | if (r == 0) |
162 | 55.8k | goto end; |
163 | 968k | tmp -= p - sp; |
164 | 968k | } |
165 | 1.78M | } |
166 | 5.26M | } else if (xclass != 0) { |
167 | 160k | p += len; |
168 | 160k | if (BIO_write(bp, "\n", 1) <= 0) |
169 | 0 | goto end; |
170 | 5.10M | } else { |
171 | 5.10M | nl = 0; |
172 | 5.10M | if ((tag == V_ASN1_PRINTABLESTRING) || |
173 | 5.10M | (tag == V_ASN1_T61STRING) || |
174 | 5.10M | (tag == V_ASN1_IA5STRING) || |
175 | 5.10M | (tag == V_ASN1_VISIBLESTRING) || |
176 | 5.10M | (tag == V_ASN1_NUMERICSTRING) || |
177 | 5.10M | (tag == V_ASN1_UTF8STRING) || |
178 | 5.10M | (tag == V_ASN1_UTCTIME) || (tag == V_ASN1_GENERALIZEDTIME)) { |
179 | 275k | if (BIO_write(bp, ":", 1) <= 0) |
180 | 0 | goto end; |
181 | 275k | if ((len > 0) && BIO_write(bp, (const char *)p, (int)len) |
182 | 140k | != (int)len) |
183 | 0 | goto end; |
184 | 4.82M | } else if (tag == V_ASN1_OBJECT) { |
185 | 1.26M | opp = op; |
186 | 1.26M | if (d2i_ASN1_OBJECT(&o, &opp, len + hl) != NULL) { |
187 | 1.20M | if (BIO_write(bp, ":", 1) <= 0) |
188 | 0 | goto end; |
189 | 1.20M | i2a_ASN1_OBJECT(bp, o); |
190 | 1.20M | } else { |
191 | 60.5k | if (BIO_puts(bp, ":BAD OBJECT") <= 0) |
192 | 0 | goto end; |
193 | 60.5k | dump_cont = 1; |
194 | 60.5k | } |
195 | 3.56M | } else if (tag == V_ASN1_BOOLEAN) { |
196 | 151k | if (len != 1) { |
197 | 38.0k | if (BIO_puts(bp, ":BAD BOOLEAN") <= 0) |
198 | 0 | goto end; |
199 | 38.0k | dump_cont = 1; |
200 | 38.0k | } |
201 | 151k | if (len > 0) |
202 | 137k | BIO_printf(bp, ":%u", p[0]); |
203 | 3.41M | } else if (tag == V_ASN1_BMPSTRING) { |
204 | | /* do the BMP thang */ |
205 | 3.39M | } else if (tag == V_ASN1_OCTET_STRING) { |
206 | 626k | int i, printable = 1; |
207 | | |
208 | 626k | opp = op; |
209 | 626k | os = d2i_ASN1_OCTET_STRING(NULL, &opp, len + hl); |
210 | 626k | if (os != NULL && os->length > 0) { |
211 | 418k | opp = os->data; |
212 | | /* |
213 | | * testing whether the octet string is printable |
214 | | */ |
215 | 1.34M | for (i = 0; i < os->length; i++) { |
216 | 1.33M | if (((opp[i] < ' ') && |
217 | 1.33M | (opp[i] != '\n') && |
218 | 1.33M | (opp[i] != '\r') && |
219 | 1.33M | (opp[i] != '\t')) || (opp[i] > '~')) { |
220 | 400k | printable = 0; |
221 | 400k | break; |
222 | 400k | } |
223 | 1.33M | } |
224 | 418k | if (printable) |
225 | | /* printable string */ |
226 | 17.6k | { |
227 | 17.6k | if (BIO_write(bp, ":", 1) <= 0) |
228 | 0 | goto end; |
229 | 17.6k | if (BIO_write(bp, (const char *)opp, os->length) <= 0) |
230 | 0 | goto end; |
231 | 400k | } else if (!dump) |
232 | | /* |
233 | | * not printable => print octet string as hex dump |
234 | | */ |
235 | 386k | { |
236 | 386k | if (BIO_write(bp, "[HEX DUMP]:", 11) <= 0) |
237 | 0 | goto end; |
238 | 15.8M | for (i = 0; i < os->length; i++) { |
239 | 15.4M | if (BIO_printf(bp, "%02X", opp[i]) <= 0) |
240 | 0 | goto end; |
241 | 15.4M | } |
242 | 386k | } else |
243 | | /* print the normal dump */ |
244 | 14.2k | { |
245 | 14.2k | if (!nl) { |
246 | 14.2k | if (BIO_write(bp, "\n", 1) <= 0) |
247 | 0 | goto end; |
248 | 14.2k | } |
249 | 14.2k | if (BIO_dump_indent(bp, |
250 | 14.2k | (const char *)opp, |
251 | 14.2k | ((dump == -1 || dump > |
252 | 14.2k | os-> |
253 | 14.2k | length) ? os->length : dump), |
254 | 14.2k | dump_indent) <= 0) |
255 | 0 | goto end; |
256 | 14.2k | nl = 1; |
257 | 14.2k | } |
258 | 418k | } |
259 | 626k | ASN1_OCTET_STRING_free(os); |
260 | 626k | os = NULL; |
261 | 2.76M | } else if (tag == V_ASN1_INTEGER) { |
262 | 860k | int i; |
263 | | |
264 | 860k | opp = op; |
265 | 860k | ai = d2i_ASN1_INTEGER(NULL, &opp, len + hl); |
266 | 860k | if (ai != NULL) { |
267 | 640k | if (BIO_write(bp, ":", 1) <= 0) |
268 | 0 | goto end; |
269 | 640k | if (ai->type == V_ASN1_NEG_INTEGER) |
270 | 245k | if (BIO_write(bp, "-", 1) <= 0) |
271 | 0 | goto end; |
272 | 25.0M | for (i = 0; i < ai->length; i++) { |
273 | 24.4M | if (BIO_printf(bp, "%02X", ai->data[i]) <= 0) |
274 | 0 | goto end; |
275 | 24.4M | } |
276 | 640k | if (ai->length == 0) { |
277 | 0 | if (BIO_write(bp, "00", 2) <= 0) |
278 | 0 | goto end; |
279 | 0 | } |
280 | 640k | } else { |
281 | 219k | if (BIO_puts(bp, ":BAD INTEGER") <= 0) |
282 | 0 | goto end; |
283 | 219k | dump_cont = 1; |
284 | 219k | } |
285 | 860k | ASN1_INTEGER_free(ai); |
286 | 860k | ai = NULL; |
287 | 1.90M | } else if (tag == V_ASN1_ENUMERATED) { |
288 | 54.7k | int i; |
289 | | |
290 | 54.7k | opp = op; |
291 | 54.7k | ae = d2i_ASN1_ENUMERATED(NULL, &opp, len + hl); |
292 | 54.7k | if (ae != NULL) { |
293 | 35.1k | if (BIO_write(bp, ":", 1) <= 0) |
294 | 0 | goto end; |
295 | 35.1k | if (ae->type == V_ASN1_NEG_ENUMERATED) |
296 | 10.9k | if (BIO_write(bp, "-", 1) <= 0) |
297 | 0 | goto end; |
298 | 8.15M | for (i = 0; i < ae->length; i++) { |
299 | 8.12M | if (BIO_printf(bp, "%02X", ae->data[i]) <= 0) |
300 | 0 | goto end; |
301 | 8.12M | } |
302 | 35.1k | if (ae->length == 0) { |
303 | 0 | if (BIO_write(bp, "00", 2) <= 0) |
304 | 0 | goto end; |
305 | 0 | } |
306 | 35.1k | } else { |
307 | 19.6k | if (BIO_puts(bp, ":BAD ENUMERATED") <= 0) |
308 | 0 | goto end; |
309 | 19.6k | dump_cont = 1; |
310 | 19.6k | } |
311 | 54.7k | ASN1_ENUMERATED_free(ae); |
312 | 54.7k | ae = NULL; |
313 | 1.85M | } else if (len > 0 && dump) { |
314 | 23.8k | if (!nl) { |
315 | 23.8k | if (BIO_write(bp, "\n", 1) <= 0) |
316 | 0 | goto end; |
317 | 23.8k | } |
318 | 23.8k | if (BIO_dump_indent(bp, (const char *)p, |
319 | 23.8k | ((dump == -1 || dump > len) ? len : dump), |
320 | 23.8k | dump_indent) <= 0) |
321 | 0 | goto end; |
322 | 23.8k | nl = 1; |
323 | 23.8k | } |
324 | 5.10M | if (dump_cont) { |
325 | 338k | int i; |
326 | 338k | const unsigned char *tmp = op + hl; |
327 | 338k | if (BIO_puts(bp, ":[") <= 0) |
328 | 0 | goto end; |
329 | 22.9M | for (i = 0; i < len; i++) { |
330 | 22.6M | if (BIO_printf(bp, "%02X", tmp[i]) <= 0) |
331 | 0 | goto end; |
332 | 22.6M | } |
333 | 338k | if (BIO_puts(bp, "]") <= 0) |
334 | 0 | goto end; |
335 | 338k | dump_cont = 0; |
336 | 338k | } |
337 | | |
338 | 5.10M | if (!nl) { |
339 | 5.06M | if (BIO_write(bp, "\n", 1) <= 0) |
340 | 0 | goto end; |
341 | 5.06M | } |
342 | 5.10M | p += len; |
343 | 5.10M | if ((tag == V_ASN1_EOC) && (xclass == 0)) { |
344 | 1.44M | ret = 2; /* End of sequence */ |
345 | 1.44M | goto end; |
346 | 1.44M | } |
347 | 5.10M | } |
348 | 6.83M | length -= len; |
349 | 6.83M | } |
350 | 1.17M | ret = 1; |
351 | 2.80M | end: |
352 | 2.80M | ASN1_OBJECT_free(o); |
353 | 2.80M | ASN1_OCTET_STRING_free(os); |
354 | 2.80M | ASN1_INTEGER_free(ai); |
355 | 2.80M | ASN1_ENUMERATED_free(ae); |
356 | 2.80M | *pp = p; |
357 | 2.80M | return ret; |
358 | 1.17M | } |
359 | | |
360 | | const char *ASN1_tag2str(int tag) |
361 | 8.30M | { |
362 | 8.30M | static const char *const tag2str[] = { |
363 | | /* 0-4 */ |
364 | 8.30M | "EOC", "BOOLEAN", "INTEGER", "BIT STRING", "OCTET STRING", |
365 | | /* 5-9 */ |
366 | 8.30M | "NULL", "OBJECT", "OBJECT DESCRIPTOR", "EXTERNAL", "REAL", |
367 | | /* 10-13 */ |
368 | 8.30M | "ENUMERATED", "<ASN1 11>", "UTF8STRING", "<ASN1 13>", |
369 | | /* 15-17 */ |
370 | 8.30M | "<ASN1 14>", "<ASN1 15>", "SEQUENCE", "SET", |
371 | | /* 18-20 */ |
372 | 8.30M | "NUMERICSTRING", "PRINTABLESTRING", "T61STRING", |
373 | | /* 21-24 */ |
374 | 8.30M | "VIDEOTEXSTRING", "IA5STRING", "UTCTIME", "GENERALIZEDTIME", |
375 | | /* 25-27 */ |
376 | 8.30M | "GRAPHICSTRING", "VISIBLESTRING", "GENERALSTRING", |
377 | | /* 28-30 */ |
378 | 8.30M | "UNIVERSALSTRING", "<ASN1 29>", "BMPSTRING" |
379 | 8.30M | }; |
380 | | |
381 | 8.30M | if ((tag == V_ASN1_NEG_INTEGER) || (tag == V_ASN1_NEG_ENUMERATED)) |
382 | 4.19k | tag &= ~0x100; |
383 | | |
384 | 8.30M | if (tag < 0 || tag > 30) |
385 | 66.4k | return "(unknown)"; |
386 | 8.23M | return tag2str[tag]; |
387 | 8.30M | } |