Coverage Report

Created: 2025-06-13 06:58

/src/openssl32/crypto/asn1/tasn_enc.c
Line
Count
Source (jump to first uncovered line)
1
/*
2
 * Copyright 2000-2021 The OpenSSL Project Authors. All Rights Reserved.
3
 *
4
 * Licensed under the Apache License 2.0 (the "License").  You may not use
5
 * this file except in compliance with the License.  You can obtain a copy
6
 * in the file LICENSE in the source distribution or at
7
 * https://www.openssl.org/source/license.html
8
 */
9
10
#include <stddef.h>
11
#include <string.h>
12
#include "internal/cryptlib.h"
13
#include <openssl/asn1.h>
14
#include <openssl/asn1t.h>
15
#include <openssl/objects.h>
16
#include "crypto/asn1.h"
17
#include "asn1_local.h"
18
19
static int asn1_i2d_ex_primitive(const ASN1_VALUE **pval, unsigned char **out,
20
                                 const ASN1_ITEM *it, int tag, int aclass);
21
static int asn1_set_seq_out(STACK_OF(const_ASN1_VALUE) *sk,
22
                            unsigned char **out,
23
                            int skcontlen, const ASN1_ITEM *item,
24
                            int do_sort, int iclass);
25
static int asn1_template_ex_i2d(const ASN1_VALUE **pval, unsigned char **out,
26
                                const ASN1_TEMPLATE *tt, int tag, int aclass);
27
static int asn1_item_flags_i2d(const ASN1_VALUE *val, unsigned char **out,
28
                               const ASN1_ITEM *it, int flags);
29
static int asn1_ex_i2c(const ASN1_VALUE **pval, unsigned char *cout, int *putype,
30
                       const ASN1_ITEM *it);
31
32
/*
33
 * Top level i2d equivalents: the 'ndef' variant instructs the encoder to use
34
 * indefinite length constructed encoding, where appropriate
35
 */
36
37
int ASN1_item_ndef_i2d(const ASN1_VALUE *val, unsigned char **out,
38
                       const ASN1_ITEM *it)
39
0
{
40
0
    return asn1_item_flags_i2d(val, out, it, ASN1_TFLG_NDEF);
41
0
}
42
43
int ASN1_item_i2d(const ASN1_VALUE *val, unsigned char **out, const ASN1_ITEM *it)
44
903k
{
45
903k
    return asn1_item_flags_i2d(val, out, it, 0);
46
903k
}
47
48
/*
49
 * Encode an ASN1 item, this is use by the standard 'i2d' function. 'out'
50
 * points to a buffer to output the data to. The new i2d has one additional
51
 * feature. If the output buffer is NULL (i.e. *out == NULL) then a buffer is
52
 * allocated and populated with the encoding.
53
 */
54
55
static int asn1_item_flags_i2d(const ASN1_VALUE *val, unsigned char **out,
56
                               const ASN1_ITEM *it, int flags)
57
903k
{
58
903k
    if (out != NULL && *out == NULL) {
59
708k
        unsigned char *p, *buf;
60
708k
        int len;
61
62
708k
        len = ASN1_item_ex_i2d(&val, NULL, it, -1, flags);
63
708k
        if (len <= 0)
64
76
            return len;
65
708k
        if ((buf = OPENSSL_malloc(len)) == NULL)
66
0
            return -1;
67
708k
        p = buf;
68
708k
        ASN1_item_ex_i2d(&val, &p, it, -1, flags);
69
708k
        *out = buf;
70
708k
        return len;
71
708k
    }
72
73
195k
    return ASN1_item_ex_i2d(&val, out, it, -1, flags);
74
903k
}
75
76
/*
77
 * Encode an item, taking care of IMPLICIT tagging (if any). This function
78
 * performs the normal item handling: it can be used in external types.
79
 */
80
81
int ASN1_item_ex_i2d(const ASN1_VALUE **pval, unsigned char **out,
82
                     const ASN1_ITEM *it, int tag, int aclass)
83
435M
{
84
435M
    const ASN1_TEMPLATE *tt = NULL;
85
435M
    int i, seqcontlen, seqlen, ndef = 1;
86
435M
    const ASN1_EXTERN_FUNCS *ef;
87
435M
    const ASN1_AUX *aux = it->funcs;
88
435M
    ASN1_aux_const_cb *asn1_cb = NULL;
89
90
435M
    if ((it->itype != ASN1_ITYPE_PRIMITIVE) && *pval == NULL)
91
4.58M
        return 0;
92
93
431M
    if (aux != NULL) {
94
7.01M
        asn1_cb = ((aux->flags & ASN1_AFLG_CONST_CB) != 0) ? aux->asn1_const_cb
95
7.01M
            : (ASN1_aux_const_cb *)aux->asn1_cb; /* backward compatibility */
96
7.01M
    }
97
98
431M
    switch (it->itype) {
99
100
223M
    case ASN1_ITYPE_PRIMITIVE:
101
223M
        if (it->templates)
102
16.2M
            return asn1_template_ex_i2d(pval, out, it->templates,
103
16.2M
                                        tag, aclass);
104
207M
        return asn1_i2d_ex_primitive(pval, out, it, tag, aclass);
105
106
102M
    case ASN1_ITYPE_MSTRING:
107
        /*
108
         * It never makes sense for multi-strings to have implicit tagging, so
109
         * if tag != -1, then this looks like an error in the template.
110
         */
111
102M
        if (tag != -1) {
112
0
            ERR_raise(ERR_LIB_ASN1, ASN1_R_BAD_TEMPLATE);
113
0
            return -1;
114
0
        }
115
102M
        return asn1_i2d_ex_primitive(pval, out, it, -1, aclass);
116
117
16.7M
    case ASN1_ITYPE_CHOICE:
118
        /*
119
         * It never makes sense for CHOICE types to have implicit tagging, so
120
         * if tag != -1, then this looks like an error in the template.
121
         */
122
16.7M
        if (tag != -1) {
123
0
            ERR_raise(ERR_LIB_ASN1, ASN1_R_BAD_TEMPLATE);
124
0
            return -1;
125
0
        }
126
16.7M
        if (asn1_cb && !asn1_cb(ASN1_OP_I2D_PRE, pval, it, NULL))
127
0
            return 0;
128
16.7M
        i = ossl_asn1_get_choice_selector_const(pval, it);
129
16.7M
        if ((i >= 0) && (i < it->tcount)) {
130
16.7M
            const ASN1_VALUE **pchval;
131
16.7M
            const ASN1_TEMPLATE *chtt;
132
16.7M
            chtt = it->templates + i;
133
16.7M
            pchval = ossl_asn1_get_const_field_ptr(pval, chtt);
134
16.7M
            return asn1_template_ex_i2d(pchval, out, chtt, -1, aclass);
135
16.7M
        }
136
        /* Fixme: error condition if selector out of range */
137
0
        if (asn1_cb && !asn1_cb(ASN1_OP_I2D_POST, pval, it, NULL))
138
0
            return 0;
139
0
        break;
140
141
1.28M
    case ASN1_ITYPE_EXTERN:
142
        /* If new style i2d it does all the work */
143
1.28M
        ef = it->funcs;
144
1.28M
        return ef->asn1_ex_i2d(pval, out, it, tag, aclass);
145
146
82.6k
    case ASN1_ITYPE_NDEF_SEQUENCE:
147
        /* Use indefinite length constructed if requested */
148
82.6k
        if (aclass & ASN1_TFLG_NDEF)
149
0
            ndef = 2;
150
        /* fall through */
151
152
87.5M
    case ASN1_ITYPE_SEQUENCE:
153
87.5M
        i = ossl_asn1_enc_restore(&seqcontlen, out, pval, it);
154
        /* An error occurred */
155
87.5M
        if (i < 0)
156
0
            return 0;
157
        /* We have a valid cached encoding... */
158
87.5M
        if (i > 0)
159
1.20M
            return seqcontlen;
160
        /* Otherwise carry on */
161
86.3M
        seqcontlen = 0;
162
        /* If no IMPLICIT tagging set to SEQUENCE, UNIVERSAL */
163
86.3M
        if (tag == -1) {
164
85.4M
            tag = V_ASN1_SEQUENCE;
165
            /* Retain any other flags in aclass */
166
85.4M
            aclass = (aclass & ~ASN1_TFLG_TAG_CLASS)
167
85.4M
                | V_ASN1_UNIVERSAL;
168
85.4M
        }
169
86.3M
        if (asn1_cb && !asn1_cb(ASN1_OP_I2D_PRE, pval, it, NULL))
170
0
            return 0;
171
        /* First work out sequence content length */
172
274M
        for (i = 0, tt = it->templates; i < it->tcount; tt++, i++) {
173
188M
            const ASN1_TEMPLATE *seqtt;
174
188M
            const ASN1_VALUE **pseqval;
175
188M
            int tmplen;
176
188M
            seqtt = ossl_asn1_do_adb(*pval, tt, 1);
177
188M
            if (!seqtt)
178
0
                return 0;
179
188M
            pseqval = ossl_asn1_get_const_field_ptr(pval, seqtt);
180
188M
            tmplen = asn1_template_ex_i2d(pseqval, NULL, seqtt, -1, aclass);
181
188M
            if (tmplen == -1 || (tmplen > INT_MAX - seqcontlen))
182
0
                return -1;
183
188M
            seqcontlen += tmplen;
184
188M
        }
185
186
86.3M
        seqlen = ASN1_object_size(ndef, seqcontlen, tag);
187
86.3M
        if (!out || seqlen == -1)
188
59.9M
            return seqlen;
189
        /* Output SEQUENCE header */
190
26.4M
        ASN1_put_object(out, ndef, seqcontlen, tag, aclass);
191
82.1M
        for (i = 0, tt = it->templates; i < it->tcount; tt++, i++) {
192
55.7M
            const ASN1_TEMPLATE *seqtt;
193
55.7M
            const ASN1_VALUE **pseqval;
194
55.7M
            seqtt = ossl_asn1_do_adb(*pval, tt, 1);
195
55.7M
            if (!seqtt)
196
0
                return 0;
197
55.7M
            pseqval = ossl_asn1_get_const_field_ptr(pval, seqtt);
198
            /* FIXME: check for errors in enhanced version */
199
55.7M
            asn1_template_ex_i2d(pseqval, out, seqtt, -1, aclass);
200
55.7M
        }
201
26.4M
        if (ndef == 2)
202
0
            ASN1_put_eoc(out);
203
26.4M
        if (asn1_cb && !asn1_cb(ASN1_OP_I2D_POST, pval, it, NULL))
204
0
            return 0;
205
26.4M
        return seqlen;
206
207
0
    default:
208
0
        return 0;
209
210
431M
    }
211
0
    return 0;
212
431M
}
213
214
static int asn1_template_ex_i2d(const ASN1_VALUE **pval, unsigned char **out,
215
                                const ASN1_TEMPLATE *tt, int tag, int iclass)
216
276M
{
217
276M
    const int flags = tt->flags;
218
276M
    int i, ret, ttag, tclass, ndef, len;
219
276M
    const ASN1_VALUE *tval;
220
221
    /*
222
     * If field is embedded then val needs fixing so it is a pointer to
223
     * a pointer to a field.
224
     */
225
276M
    if (flags & ASN1_TFLG_EMBED) {
226
4.69M
        tval = (ASN1_VALUE *)pval;
227
4.69M
        pval = &tval;
228
4.69M
    }
229
    /*
230
     * Work out tag and class to use: tagging may come either from the
231
     * template or the arguments, not both because this would create
232
     * ambiguity. Additionally the iclass argument may contain some
233
     * additional flags which should be noted and passed down to other
234
     * levels.
235
     */
236
276M
    if (flags & ASN1_TFLG_TAG_MASK) {
237
        /* Error if argument and template tagging */
238
32.7M
        if (tag != -1)
239
            /* FIXME: error code here */
240
0
            return -1;
241
        /* Get tagging from template */
242
32.7M
        ttag = tt->tag;
243
32.7M
        tclass = flags & ASN1_TFLG_TAG_CLASS;
244
244M
    } else if (tag != -1) {
245
        /* No template tagging, get from arguments */
246
0
        ttag = tag;
247
0
        tclass = iclass & ASN1_TFLG_TAG_CLASS;
248
244M
    } else {
249
244M
        ttag = -1;
250
244M
        tclass = 0;
251
244M
    }
252
    /*
253
     * Remove any class mask from iflag.
254
     */
255
276M
    iclass &= ~ASN1_TFLG_TAG_CLASS;
256
257
    /*
258
     * At this point 'ttag' contains the outer tag to use, 'tclass' is the
259
     * class and iclass is any flags passed to this function.
260
     */
261
262
    /* if template and arguments require ndef, use it */
263
276M
    if ((flags & ASN1_TFLG_NDEF) && (iclass & ASN1_TFLG_NDEF))
264
0
        ndef = 2;
265
276M
    else
266
276M
        ndef = 1;
267
268
276M
    if (flags & ASN1_TFLG_SK_MASK) {
269
        /* SET OF, SEQUENCE OF */
270
19.8M
        STACK_OF(const_ASN1_VALUE) *sk = (STACK_OF(const_ASN1_VALUE) *)*pval;
271
19.8M
        int isset, sktag, skaclass;
272
19.8M
        int skcontlen, sklen;
273
19.8M
        const ASN1_VALUE *skitem;
274
275
19.8M
        if (*pval == NULL)
276
3.66M
            return 0;
277
278
16.2M
        if (flags & ASN1_TFLG_SET_OF) {
279
15.2M
            isset = 1;
280
            /* 2 means we reorder */
281
15.2M
            if (flags & ASN1_TFLG_SEQUENCE_OF)
282
932
                isset = 2;
283
15.2M
        } else
284
940k
            isset = 0;
285
286
        /*
287
         * Work out inner tag value: if EXPLICIT or no tagging use underlying
288
         * type.
289
         */
290
16.2M
        if ((ttag != -1) && !(flags & ASN1_TFLG_EXPTAG)) {
291
102k
            sktag = ttag;
292
102k
            skaclass = tclass;
293
16.1M
        } else {
294
16.1M
            skaclass = V_ASN1_UNIVERSAL;
295
16.1M
            if (isset)
296
15.2M
                sktag = V_ASN1_SET;
297
864k
            else
298
864k
                sktag = V_ASN1_SEQUENCE;
299
16.1M
        }
300
301
        /* Determine total length of items */
302
16.2M
        skcontlen = 0;
303
141M
        for (i = 0; i < sk_const_ASN1_VALUE_num(sk); i++) {
304
125M
            skitem = sk_const_ASN1_VALUE_value(sk, i);
305
125M
            len = ASN1_item_ex_i2d(&skitem, NULL, ASN1_ITEM_ptr(tt->item),
306
125M
                                   -1, iclass);
307
125M
            if (len == -1 || (skcontlen > INT_MAX - len))
308
0
                return -1;
309
125M
            if (len == 0 && (tt->flags & ASN1_TFLG_OPTIONAL) == 0) {
310
0
                ERR_raise(ERR_LIB_ASN1, ASN1_R_ILLEGAL_ZERO_CONTENT);
311
0
                return -1;
312
0
            }
313
125M
            skcontlen += len;
314
125M
        }
315
16.2M
        sklen = ASN1_object_size(ndef, skcontlen, sktag);
316
16.2M
        if (sklen == -1)
317
0
            return -1;
318
        /* If EXPLICIT need length of surrounding tag */
319
16.2M
        if (flags & ASN1_TFLG_EXPTAG)
320
78.4k
            ret = ASN1_object_size(ndef, sklen, ttag);
321
16.1M
        else
322
16.1M
            ret = sklen;
323
324
16.2M
        if (!out || ret == -1)
325
9.15M
            return ret;
326
327
        /* Now encode this lot... */
328
        /* EXPLICIT tag */
329
7.07M
        if (flags & ASN1_TFLG_EXPTAG)
330
7.02k
            ASN1_put_object(out, ndef, sklen, ttag, tclass);
331
        /* SET or SEQUENCE and IMPLICIT tag */
332
7.07M
        ASN1_put_object(out, ndef, skcontlen, sktag, skaclass);
333
        /* And the stuff itself */
334
7.07M
        asn1_set_seq_out(sk, out, skcontlen, ASN1_ITEM_ptr(tt->item),
335
7.07M
                         isset, iclass);
336
7.07M
        if (ndef == 2) {
337
0
            ASN1_put_eoc(out);
338
0
            if (flags & ASN1_TFLG_EXPTAG)
339
0
                ASN1_put_eoc(out);
340
0
        }
341
342
7.07M
        return ret;
343
16.2M
    }
344
345
256M
    if (flags & ASN1_TFLG_EXPTAG) {
346
        /* EXPLICIT tagging */
347
        /* Find length of tagged item */
348
7.50M
        i = ASN1_item_ex_i2d(pval, NULL, ASN1_ITEM_ptr(tt->item), -1, iclass);
349
7.50M
        if (i == 0) {
350
6.27M
            if ((tt->flags & ASN1_TFLG_OPTIONAL) == 0) {
351
0
                ERR_raise(ERR_LIB_ASN1, ASN1_R_ILLEGAL_ZERO_CONTENT);
352
0
                return -1;
353
0
            }
354
6.27M
            return 0;
355
6.27M
        }
356
        /* Find length of EXPLICIT tag */
357
1.22M
        ret = ASN1_object_size(ndef, i, ttag);
358
1.22M
        if (out && ret != -1) {
359
            /* Output tag and item */
360
193k
            ASN1_put_object(out, ndef, i, ttag, tclass);
361
193k
            ASN1_item_ex_i2d(pval, out, ASN1_ITEM_ptr(tt->item), -1, iclass);
362
193k
            if (ndef == 2)
363
0
                ASN1_put_eoc(out);
364
193k
        }
365
1.22M
        return ret;
366
7.50M
    }
367
368
    /* Either normal or IMPLICIT tagging: combine class and flags */
369
249M
    len = ASN1_item_ex_i2d(pval, out, ASN1_ITEM_ptr(tt->item),
370
249M
                              ttag, tclass | iclass);
371
249M
    if (len == 0 && (tt->flags & ASN1_TFLG_OPTIONAL) == 0) {
372
0
        ERR_raise(ERR_LIB_ASN1, ASN1_R_ILLEGAL_ZERO_CONTENT);
373
0
        return -1;
374
0
    }
375
249M
    return len;
376
249M
}
377
378
/* Temporary structure used to hold DER encoding of items for SET OF */
379
380
typedef struct {
381
    unsigned char *data;
382
    int length;
383
    const ASN1_VALUE *field;
384
} DER_ENC;
385
386
static int der_cmp(const void *a, const void *b)
387
316M
{
388
316M
    const DER_ENC *d1 = a, *d2 = b;
389
316M
    int cmplen, i;
390
316M
    cmplen = (d1->length < d2->length) ? d1->length : d2->length;
391
316M
    i = memcmp(d1->data, d2->data, cmplen);
392
316M
    if (i)
393
132M
        return i;
394
184M
    return d1->length - d2->length;
395
316M
}
396
397
/* Output the content octets of SET OF or SEQUENCE OF */
398
399
static int asn1_set_seq_out(STACK_OF(const_ASN1_VALUE) *sk,
400
                            unsigned char **out,
401
                            int skcontlen, const ASN1_ITEM *item,
402
                            int do_sort, int iclass)
403
7.07M
{
404
7.07M
    int i, ret = 0;
405
7.07M
    const ASN1_VALUE *skitem;
406
7.07M
    unsigned char *tmpdat = NULL, *p = NULL;
407
7.07M
    DER_ENC *derlst = NULL, *tder;
408
409
7.07M
    if (do_sort) {
410
        /* Don't need to sort less than 2 items */
411
6.87M
        if (sk_const_ASN1_VALUE_num(sk) < 2)
412
6.53M
            do_sort = 0;
413
337k
        else {
414
337k
            derlst = OPENSSL_malloc(sk_const_ASN1_VALUE_num(sk)
415
337k
                                    * sizeof(*derlst));
416
337k
            if (derlst == NULL)
417
0
                return 0;
418
337k
            tmpdat = OPENSSL_malloc(skcontlen);
419
337k
            if (tmpdat == NULL)
420
0
                goto err;
421
337k
        }
422
6.87M
    }
423
    /* If not sorting just output each item */
424
7.07M
    if (!do_sort) {
425
19.6M
        for (i = 0; i < sk_const_ASN1_VALUE_num(sk); i++) {
426
12.9M
            skitem = sk_const_ASN1_VALUE_value(sk, i);
427
12.9M
            ASN1_item_ex_i2d(&skitem, out, item, -1, iclass);
428
12.9M
        }
429
6.73M
        return 1;
430
6.73M
    }
431
337k
    p = tmpdat;
432
433
    /* Doing sort: build up a list of each member's DER encoding */
434
27.4M
    for (i = 0, tder = derlst; i < sk_const_ASN1_VALUE_num(sk); i++, tder++) {
435
27.1M
        skitem = sk_const_ASN1_VALUE_value(sk, i);
436
27.1M
        tder->data = p;
437
27.1M
        tder->length = ASN1_item_ex_i2d(&skitem, &p, item, -1, iclass);
438
27.1M
        tder->field = skitem;
439
27.1M
    }
440
441
    /* Now sort them */
442
337k
    qsort(derlst, sk_const_ASN1_VALUE_num(sk), sizeof(*derlst), der_cmp);
443
    /* Output sorted DER encoding */
444
337k
    p = *out;
445
27.4M
    for (i = 0, tder = derlst; i < sk_const_ASN1_VALUE_num(sk); i++, tder++) {
446
27.1M
        memcpy(p, tder->data, tder->length);
447
27.1M
        p += tder->length;
448
27.1M
    }
449
337k
    *out = p;
450
    /* If do_sort is 2 then reorder the STACK */
451
337k
    if (do_sort == 2) {
452
2.29k
        for (i = 0, tder = derlst; i < sk_const_ASN1_VALUE_num(sk); i++, tder++)
453
2.20k
            (void)sk_const_ASN1_VALUE_set(sk, i, tder->field);
454
97
    }
455
337k
    ret = 1;
456
337k
err:
457
337k
    OPENSSL_free(derlst);
458
337k
    OPENSSL_free(tmpdat);
459
337k
    return ret;
460
337k
}
461
462
static int asn1_i2d_ex_primitive(const ASN1_VALUE **pval, unsigned char **out,
463
                                 const ASN1_ITEM *it, int tag, int aclass)
464
309M
{
465
309M
    int len;
466
309M
    int utype;
467
309M
    int usetag;
468
309M
    int ndef = 0;
469
470
309M
    utype = it->utype;
471
472
    /*
473
     * Get length of content octets and maybe find out the underlying type.
474
     */
475
476
309M
    len = asn1_ex_i2c(pval, NULL, &utype, it);
477
478
    /*
479
     * If SEQUENCE, SET or OTHER then header is included in pseudo content
480
     * octets so don't include tag+length. We need to check here because the
481
     * call to asn1_ex_i2c() could change utype.
482
     */
483
309M
    if ((utype == V_ASN1_SEQUENCE) || (utype == V_ASN1_SET) ||
484
309M
        (utype == V_ASN1_OTHER))
485
73.9M
        usetag = 0;
486
235M
    else
487
235M
        usetag = 1;
488
489
    /* -1 means omit type */
490
491
309M
    if (len == -1)
492
9.83M
        return 0;
493
494
    /* -2 return is special meaning use ndef */
495
299M
    if (len == -2) {
496
0
        ndef = 2;
497
0
        len = 0;
498
0
    }
499
500
    /* If not implicitly tagged get tag from underlying type */
501
299M
    if (tag == -1)
502
283M
        tag = utype;
503
504
    /* Output tag+length followed by content octets */
505
299M
    if (out) {
506
65.4M
        if (usetag)
507
52.1M
            ASN1_put_object(out, ndef, len, tag, aclass);
508
65.4M
        asn1_ex_i2c(pval, *out, &utype, it);
509
65.4M
        if (ndef)
510
0
            ASN1_put_eoc(out);
511
65.4M
        else
512
65.4M
            *out += len;
513
65.4M
    }
514
515
299M
    if (usetag)
516
225M
        return ASN1_object_size(ndef, len, tag);
517
73.9M
    return len;
518
299M
}
519
520
/* Produce content octets from a structure */
521
522
static int asn1_ex_i2c(const ASN1_VALUE **pval, unsigned char *cout, int *putype,
523
                       const ASN1_ITEM *it)
524
265M
{
525
265M
    ASN1_BOOLEAN *tbool = NULL;
526
265M
    ASN1_STRING *strtmp;
527
265M
    ASN1_OBJECT *otmp;
528
265M
    int utype;
529
265M
    const unsigned char *cont;
530
265M
    unsigned char c;
531
265M
    int len;
532
265M
    const ASN1_PRIMITIVE_FUNCS *pf;
533
265M
    pf = it->funcs;
534
265M
    if (pf && pf->prim_i2c)
535
2.41M
        return pf->prim_i2c(pval, cout, putype, it);
536
537
    /* Should type be omitted? */
538
262M
    if ((it->itype != ASN1_ITYPE_PRIMITIVE)
539
262M
        || (it->utype != V_ASN1_BOOLEAN)) {
540
262M
        if (*pval == NULL)
541
7.29M
            return -1;
542
262M
    }
543
544
255M
    if (it->itype == ASN1_ITYPE_MSTRING) {
545
        /* If MSTRING type set the underlying type */
546
89.5M
        strtmp = (ASN1_STRING *)*pval;
547
89.5M
        utype = strtmp->type;
548
89.5M
        *putype = utype;
549
166M
    } else if (it->utype == V_ASN1_ANY) {
550
        /* If ANY set type and pointer to value */
551
62.2M
        ASN1_TYPE *typ;
552
62.2M
        typ = (ASN1_TYPE *)*pval;
553
62.2M
        utype = typ->type;
554
62.2M
        *putype = utype;
555
62.2M
        pval = (const ASN1_VALUE **)&typ->value.asn1_value; /* actually is const */
556
62.2M
    } else
557
103M
        utype = *putype;
558
559
255M
    switch (utype) {
560
93.9M
    case V_ASN1_OBJECT:
561
93.9M
        otmp = (ASN1_OBJECT *)*pval;
562
93.9M
        cont = otmp->data;
563
93.9M
        len = otmp->length;
564
93.9M
        if (cont == NULL || len == 0)
565
0
            return -1;
566
93.9M
        break;
567
568
93.9M
    case V_ASN1_UNDEF:
569
0
        return -2;
570
571
720k
    case V_ASN1_NULL:
572
720k
        cont = NULL;
573
720k
        len = 0;
574
720k
        break;
575
576
637k
    case V_ASN1_BOOLEAN:
577
637k
        tbool = (ASN1_BOOLEAN *)pval;
578
637k
        if (*tbool == -1)
579
300k
            return -1;
580
336k
        if (it->utype != V_ASN1_ANY) {
581
            /*
582
             * Default handling if value == size field then omit
583
             */
584
275k
            if (*tbool && (it->size > 0))
585
24
                return -1;
586
275k
            if (!*tbool && !it->size)
587
257k
                return -1;
588
275k
        }
589
79.3k
        c = (unsigned char)*tbool;
590
79.3k
        cont = &c;
591
79.3k
        len = 1;
592
79.3k
        break;
593
594
8.21M
    case V_ASN1_BIT_STRING:
595
8.21M
        return ossl_i2c_ASN1_BIT_STRING((ASN1_BIT_STRING *)*pval,
596
8.21M
                                        cout ? &cout : NULL);
597
598
6.45M
    case V_ASN1_INTEGER:
599
6.51M
    case V_ASN1_ENUMERATED:
600
        /*
601
         * These are all have the same content format as ASN1_INTEGER
602
         */
603
6.51M
        return ossl_i2c_ASN1_INTEGER((ASN1_INTEGER *)*pval, cout ? &cout : NULL);
604
605
1.61M
    case V_ASN1_OCTET_STRING:
606
6.74M
    case V_ASN1_NUMERICSTRING:
607
8.64M
    case V_ASN1_PRINTABLESTRING:
608
9.52M
    case V_ASN1_T61STRING:
609
9.54M
    case V_ASN1_VIDEOTEXSTRING:
610
12.8M
    case V_ASN1_IA5STRING:
611
12.8M
    case V_ASN1_UTCTIME:
612
12.9M
    case V_ASN1_GENERALIZEDTIME:
613
14.0M
    case V_ASN1_GRAPHICSTRING:
614
14.2M
    case V_ASN1_VISIBLESTRING:
615
14.2M
    case V_ASN1_GENERALSTRING:
616
15.3M
    case V_ASN1_UNIVERSALSTRING:
617
16.5M
    case V_ASN1_BMPSTRING:
618
54.7M
    case V_ASN1_UTF8STRING:
619
64.6M
    case V_ASN1_SEQUENCE:
620
113M
    case V_ASN1_SET:
621
145M
    default:
622
        /* All based on ASN1_STRING and handled the same */
623
145M
        strtmp = (ASN1_STRING *)*pval;
624
        /* Special handling for NDEF */
625
145M
        if ((it->size == ASN1_TFLG_NDEF)
626
145M
            && (strtmp->flags & ASN1_STRING_FLAG_NDEF)) {
627
0
            if (cout) {
628
0
                strtmp->data = cout;
629
0
                strtmp->length = 0;
630
0
            }
631
            /* Special return code */
632
0
            return -2;
633
0
        }
634
145M
        cont = strtmp->data;
635
145M
        len = strtmp->length;
636
637
145M
        break;
638
639
255M
    }
640
240M
    if (cout && len)
641
28.3M
        memcpy(cout, cont, len);
642
240M
    return len;
643
255M
}