Coverage Report

Created: 2025-06-13 06:58

/src/openssl32/crypto/asn1/bio_ndef.c
Line
Count
Source (jump to first uncovered line)
1
/*
2
 * Copyright 2008-2023 The OpenSSL Project Authors. All Rights Reserved.
3
 *
4
 * Licensed under the Apache License 2.0 (the "License").  You may not use
5
 * this file except in compliance with the License.  You can obtain a copy
6
 * in the file LICENSE in the source distribution or at
7
 * https://www.openssl.org/source/license.html
8
 */
9
10
#include <openssl/asn1.h>
11
#include <openssl/asn1t.h>
12
#include <openssl/bio.h>
13
#include <openssl/err.h>
14
15
#include <stdio.h>
16
17
/* Experimental NDEF ASN1 BIO support routines */
18
19
/*
20
 * The usage is quite simple, initialize an ASN1 structure, get a BIO from it
21
 * then any data written through the BIO will end up translated to
22
 * appropriate format on the fly. The data is streamed out and does *not*
23
 * need to be all held in memory at once. When the BIO is flushed the output
24
 * is finalized and any signatures etc written out. The BIO is a 'proper'
25
 * BIO and can handle non blocking I/O correctly. The usage is simple. The
26
 * implementation is *not*...
27
 */
28
29
/* BIO support data stored in the ASN1 BIO ex_arg */
30
31
typedef struct ndef_aux_st {
32
    /* ASN1 structure this BIO refers to */
33
    ASN1_VALUE *val;
34
    const ASN1_ITEM *it;
35
    /* Top of the BIO chain */
36
    BIO *ndef_bio;
37
    /* Output BIO */
38
    BIO *out;
39
    /* Boundary where content is inserted */
40
    unsigned char **boundary;
41
    /* DER buffer start */
42
    unsigned char *derbuf;
43
} NDEF_SUPPORT;
44
45
static int ndef_prefix(BIO *b, unsigned char **pbuf, int *plen, void *parg);
46
static int ndef_prefix_free(BIO *b, unsigned char **pbuf, int *plen,
47
                            void *parg);
48
static int ndef_suffix(BIO *b, unsigned char **pbuf, int *plen, void *parg);
49
static int ndef_suffix_free(BIO *b, unsigned char **pbuf, int *plen,
50
                            void *parg);
51
52
/*
53
 * On success, the returned BIO owns the input BIO as part of its BIO chain.
54
 * On failure, NULL is returned and the input BIO is owned by the caller.
55
 *
56
 * Unfortunately cannot constify this due to CMS_stream() and PKCS7_stream()
57
 */
58
BIO *BIO_new_NDEF(BIO *out, ASN1_VALUE *val, const ASN1_ITEM *it)
59
0
{
60
0
    NDEF_SUPPORT *ndef_aux = NULL;
61
0
    BIO *asn_bio = NULL;
62
0
    const ASN1_AUX *aux = it->funcs;
63
0
    ASN1_STREAM_ARG sarg;
64
0
    BIO *pop_bio = NULL;
65
66
0
    if (!aux || !aux->asn1_cb) {
67
0
        ERR_raise(ERR_LIB_ASN1, ASN1_R_STREAMING_NOT_SUPPORTED);
68
0
        return NULL;
69
0
    }
70
0
    ndef_aux = OPENSSL_zalloc(sizeof(*ndef_aux));
71
0
    asn_bio = BIO_new(BIO_f_asn1());
72
0
    if (ndef_aux == NULL || asn_bio == NULL)
73
0
        goto err;
74
75
    /* ASN1 bio needs to be next to output BIO */
76
0
    out = BIO_push(asn_bio, out);
77
0
    if (out == NULL)
78
0
        goto err;
79
0
    pop_bio = asn_bio;
80
81
0
    if (BIO_asn1_set_prefix(asn_bio, ndef_prefix, ndef_prefix_free) <= 0
82
0
            || BIO_asn1_set_suffix(asn_bio, ndef_suffix, ndef_suffix_free) <= 0
83
0
            || BIO_ctrl(asn_bio, BIO_C_SET_EX_ARG, 0, ndef_aux) <= 0)
84
0
        goto err;
85
86
    /*
87
     * Now let the callback prepend any digest, cipher, etc., that the BIO's
88
     * ASN1 structure needs.
89
     */
90
91
0
    sarg.out = out;
92
0
    sarg.ndef_bio = NULL;
93
0
    sarg.boundary = NULL;
94
95
    /*
96
     * The asn1_cb(), must not have mutated asn_bio on error, leaving it in the
97
     * middle of some partially built, but not returned BIO chain.
98
     */
99
0
    if (aux->asn1_cb(ASN1_OP_STREAM_PRE, &val, it, &sarg) <= 0) {
100
        /*
101
         * ndef_aux is now owned by asn_bio so we must not free it in the err
102
         * clean up block
103
         */
104
0
        ndef_aux = NULL;
105
0
        goto err;
106
0
    }
107
108
    /*
109
     * We must not fail now because the callback has prepended additional
110
     * BIOs to the chain
111
     */
112
113
0
    ndef_aux->val = val;
114
0
    ndef_aux->it = it;
115
0
    ndef_aux->ndef_bio = sarg.ndef_bio;
116
0
    ndef_aux->boundary = sarg.boundary;
117
0
    ndef_aux->out = out;
118
119
0
    return sarg.ndef_bio;
120
121
0
 err:
122
    /* BIO_pop() is NULL safe */
123
0
    (void)BIO_pop(pop_bio);
124
0
    BIO_free(asn_bio);
125
0
    OPENSSL_free(ndef_aux);
126
0
    return NULL;
127
0
}
128
129
static int ndef_prefix(BIO *b, unsigned char **pbuf, int *plen, void *parg)
130
0
{
131
0
    NDEF_SUPPORT *ndef_aux;
132
0
    unsigned char *p;
133
0
    int derlen;
134
135
0
    if (parg == NULL)
136
0
        return 0;
137
138
0
    ndef_aux = *(NDEF_SUPPORT **)parg;
139
140
0
    derlen = ASN1_item_ndef_i2d(ndef_aux->val, NULL, ndef_aux->it);
141
0
    if (derlen < 0)
142
0
        return 0;
143
0
    if ((p = OPENSSL_malloc(derlen)) == NULL)
144
0
        return 0;
145
146
0
    ndef_aux->derbuf = p;
147
0
    *pbuf = p;
148
0
    ASN1_item_ndef_i2d(ndef_aux->val, &p, ndef_aux->it);
149
150
0
    if (*ndef_aux->boundary == NULL)
151
0
        return 0;
152
153
0
    *plen = *ndef_aux->boundary - *pbuf;
154
155
0
    return 1;
156
0
}
157
158
static int ndef_prefix_free(BIO *b, unsigned char **pbuf, int *plen,
159
                            void *parg)
160
0
{
161
0
    NDEF_SUPPORT *ndef_aux;
162
163
0
    if (parg == NULL)
164
0
        return 0;
165
166
0
    ndef_aux = *(NDEF_SUPPORT **)parg;
167
168
0
    if (ndef_aux == NULL)
169
0
        return 0;
170
171
0
    OPENSSL_free(ndef_aux->derbuf);
172
173
0
    ndef_aux->derbuf = NULL;
174
0
    *pbuf = NULL;
175
0
    *plen = 0;
176
0
    return 1;
177
0
}
178
179
static int ndef_suffix_free(BIO *b, unsigned char **pbuf, int *plen,
180
                            void *parg)
181
0
{
182
0
    NDEF_SUPPORT **pndef_aux = (NDEF_SUPPORT **)parg;
183
0
    if (!ndef_prefix_free(b, pbuf, plen, parg))
184
0
        return 0;
185
0
    OPENSSL_free(*pndef_aux);
186
0
    *pndef_aux = NULL;
187
0
    return 1;
188
0
}
189
190
static int ndef_suffix(BIO *b, unsigned char **pbuf, int *plen, void *parg)
191
0
{
192
0
    NDEF_SUPPORT *ndef_aux;
193
0
    unsigned char *p;
194
0
    int derlen;
195
0
    const ASN1_AUX *aux;
196
0
    ASN1_STREAM_ARG sarg;
197
198
0
    if (parg == NULL)
199
0
        return 0;
200
201
0
    ndef_aux = *(NDEF_SUPPORT **)parg;
202
203
0
    aux = ndef_aux->it->funcs;
204
205
    /* Finalize structures */
206
0
    sarg.ndef_bio = ndef_aux->ndef_bio;
207
0
    sarg.out = ndef_aux->out;
208
0
    sarg.boundary = ndef_aux->boundary;
209
0
    if (aux->asn1_cb(ASN1_OP_STREAM_POST,
210
0
                     &ndef_aux->val, ndef_aux->it, &sarg) <= 0)
211
0
        return 0;
212
213
0
    derlen = ASN1_item_ndef_i2d(ndef_aux->val, NULL, ndef_aux->it);
214
0
    if (derlen < 0)
215
0
        return 0;
216
0
    if ((p = OPENSSL_malloc(derlen)) == NULL)
217
0
        return 0;
218
219
0
    ndef_aux->derbuf = p;
220
0
    *pbuf = p;
221
0
    derlen = ASN1_item_ndef_i2d(ndef_aux->val, &p, ndef_aux->it);
222
223
0
    if (*ndef_aux->boundary == NULL)
224
0
        return 0;
225
0
    *pbuf = *ndef_aux->boundary;
226
0
    *plen = derlen - (*ndef_aux->boundary - ndef_aux->derbuf);
227
228
0
    return 1;
229
0
}