Coverage Report

Created: 2025-11-16 06:40

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/openssl35/crypto/asn1/a_int.c
Line
Count
Source
1
/*
2
 * Copyright 1995-2021 The OpenSSL Project Authors. All Rights Reserved.
3
 *
4
 * Licensed under the Apache License 2.0 (the "License").  You may not use
5
 * this file except in compliance with the License.  You can obtain a copy
6
 * in the file LICENSE in the source distribution or at
7
 * https://www.openssl.org/source/license.html
8
 */
9
10
#include <stdio.h>
11
#include "internal/cryptlib.h"
12
#include "internal/numbers.h"
13
#include <limits.h>
14
#include <openssl/asn1.h>
15
#include <openssl/bn.h>
16
#include "asn1_local.h"
17
18
ASN1_INTEGER *ASN1_INTEGER_dup(const ASN1_INTEGER *x)
19
294
{
20
294
    return ASN1_STRING_dup(x);
21
294
}
22
23
int ASN1_INTEGER_cmp(const ASN1_INTEGER *x, const ASN1_INTEGER *y)
24
2.21k
{
25
2.21k
    int neg, ret;
26
    /* Compare signs */
27
2.21k
    neg = x->type & V_ASN1_NEG;
28
2.21k
    if (neg != (y->type & V_ASN1_NEG)) {
29
670
        if (neg)
30
298
            return -1;
31
372
        else
32
372
            return 1;
33
670
    }
34
35
1.54k
    ret = ASN1_STRING_cmp(x, y);
36
37
1.54k
    if (neg)
38
265
        return -ret;
39
1.28k
    else
40
1.28k
        return ret;
41
1.54k
}
42
43
/*
44
 * This converts a big endian buffer and sign into its content encoding.
45
 * This is used for INTEGER and ENUMERATED types.
46
 * The internal representation is an ASN1_STRING whose data is a big endian
47
 * representation of the value, ignoring the sign. The sign is determined by
48
 * the type: if type & V_ASN1_NEG is true it is negative, otherwise positive.
49
 *
50
 * Positive integers are no problem: they are almost the same as the DER
51
 * encoding, except if the first byte is >= 0x80 we need to add a zero pad.
52
 *
53
 * Negative integers are a bit trickier...
54
 * The DER representation of negative integers is in 2s complement form.
55
 * The internal form is converted by complementing each octet and finally
56
 * adding one to the result. This can be done less messily with a little trick.
57
 * If the internal form has trailing zeroes then they will become FF by the
58
 * complement and 0 by the add one (due to carry) so just copy as many trailing
59
 * zeros to the destination as there are in the source. The carry will add one
60
 * to the last none zero octet: so complement this octet and add one and finally
61
 * complement any left over until you get to the start of the string.
62
 *
63
 * Padding is a little trickier too. If the first bytes is > 0x80 then we pad
64
 * with 0xff. However if the first byte is 0x80 and one of the following bytes
65
 * is non-zero we pad with 0xff. The reason for this distinction is that 0x80
66
 * followed by optional zeros isn't padded.
67
 */
68
69
/*
70
 * If |pad| is zero, the operation is effectively reduced to memcpy,
71
 * and if |pad| is 0xff, then it performs two's complement, ~dst + 1.
72
 * Note that in latter case sequence of zeros yields itself, and so
73
 * does 0x80 followed by any number of zeros. These properties are
74
 * used elsewhere below...
75
 */
76
static void twos_complement(unsigned char *dst, const unsigned char *src,
77
                            size_t len, unsigned char pad)
78
10.1M
{
79
10.1M
    unsigned int carry = pad & 1;
80
81
    /* Begin at the end of the encoding */
82
10.1M
    if (len != 0) {
83
        /*
84
         * if len == 0 then src/dst could be NULL, and this would be undefined
85
         * behaviour.
86
         */
87
10.1M
        dst += len;
88
10.1M
        src += len;
89
10.1M
    }
90
    /* two's complement value: ~value + 1 */
91
869M
    while (len-- != 0) {
92
859M
        *(--dst) = (unsigned char)(carry += *(--src) ^ pad);
93
859M
        carry >>= 8;
94
859M
    }
95
10.1M
}
96
97
static size_t i2c_ibuf(const unsigned char *b, size_t blen, int neg,
98
                       unsigned char **pp)
99
27.2M
{
100
27.2M
    unsigned int pad = 0;
101
27.2M
    size_t ret, i;
102
27.2M
    unsigned char *p, pb = 0;
103
104
27.2M
    if (b != NULL && blen) {
105
27.2M
        ret = blen;
106
27.2M
        i = b[0];
107
27.2M
        if (!neg && (i > 127)) {
108
194k
            pad = 1;
109
194k
            pb = 0;
110
27.0M
        } else if (neg) {
111
4.79M
            pb = 0xFF;
112
4.79M
            if (i > 128) {
113
118k
                pad = 1;
114
4.67M
            } else if (i == 128) {
115
                /*
116
                 * Special case [of minimal negative for given length]:
117
                 * if any other bytes non zero we pad, otherwise we don't.
118
                 */
119
2.71M
                for (pad = 0, i = 1; i < blen; i++)
120
2.15M
                    pad |= b[i];
121
562k
                pb = pad != 0 ? 0xffU : 0;
122
562k
                pad = pb & 1;
123
562k
            }
124
4.79M
        }
125
27.2M
        ret += pad;
126
27.2M
    } else {
127
324
        ret = 1;
128
324
        blen = 0;   /* reduce '(b == NULL || blen == 0)' to '(blen == 0)' */
129
324
    }
130
131
27.2M
    if (pp == NULL || (p = *pp) == NULL)
132
23.0M
        return ret;
133
134
    /*
135
     * This magically handles all corner cases, such as '(b == NULL ||
136
     * blen == 0)', non-negative value, "negative" zero, 0x80 followed
137
     * by any number of zeros...
138
     */
139
4.20M
    *p = pb;
140
4.20M
    p += pad;       /* yes, p[0] can be written twice, but it's little
141
                     * price to pay for eliminated branches */
142
4.20M
    twos_complement(p, b, blen, pb);
143
144
4.20M
    *pp += ret;
145
4.20M
    return ret;
146
27.2M
}
147
148
/*
149
 * convert content octets into a big endian buffer. Returns the length
150
 * of buffer or 0 on error: for malformed INTEGER. If output buffer is
151
 * NULL just return length.
152
 */
153
154
static size_t c2i_ibuf(unsigned char *b, int *pneg,
155
                       const unsigned char *p, size_t plen)
156
20.5M
{
157
20.5M
    int neg, pad;
158
    /* Zero content length is illegal */
159
20.5M
    if (plen == 0) {
160
513k
        ERR_raise(ERR_LIB_ASN1, ASN1_R_ILLEGAL_ZERO_CONTENT);
161
513k
        return 0;
162
513k
    }
163
19.9M
    neg = p[0] & 0x80;
164
19.9M
    if (pneg)
165
9.92M
        *pneg = neg;
166
    /* Handle common case where length is 1 octet separately */
167
19.9M
    if (plen == 1) {
168
7.87M
        if (b != NULL) {
169
3.93M
            if (neg)
170
762k
                b[0] = (p[0] ^ 0xFF) + 1;
171
3.17M
            else
172
3.17M
                b[0] = p[0];
173
3.93M
        }
174
7.87M
        return 1;
175
7.87M
    }
176
177
12.1M
    pad = 0;
178
12.1M
    if (p[0] == 0) {
179
841k
        pad = 1;
180
11.2M
    } else if (p[0] == 0xFF) {
181
296k
        size_t i;
182
183
        /*
184
         * Special case [of "one less minimal negative" for given length]:
185
         * if any other bytes non zero it was padded, otherwise not.
186
         */
187
109M
        for (pad = 0, i = 1; i < plen; i++)
188
108M
            pad |= p[i];
189
296k
        pad = pad != 0 ? 1 : 0;
190
296k
    }
191
    /* reject illegal padding: first two octets MSB can't match */
192
12.1M
    if (pad && (neg == (p[1] & 0x80))) {
193
113k
        ERR_raise(ERR_LIB_ASN1, ASN1_R_ILLEGAL_PADDING);
194
113k
        return 0;
195
113k
    }
196
197
    /* skip over pad */
198
12.0M
    p += pad;
199
12.0M
    plen -= pad;
200
201
12.0M
    if (b != NULL)
202
5.99M
        twos_complement(b, p, plen, neg ? 0xffU : 0);
203
204
12.0M
    return plen;
205
12.1M
}
206
207
int ossl_i2c_ASN1_INTEGER(ASN1_INTEGER *a, unsigned char **pp)
208
26.0M
{
209
26.0M
    return i2c_ibuf(a->data, a->length, a->type & V_ASN1_NEG, pp);
210
26.0M
}
211
212
/* Convert big endian buffer into uint64_t, return 0 on error */
213
static int asn1_get_uint64(uint64_t *pr, const unsigned char *b, size_t blen)
214
1.35M
{
215
1.35M
    size_t i;
216
1.35M
    uint64_t r;
217
218
1.35M
    if (blen > sizeof(*pr)) {
219
18.7k
        ERR_raise(ERR_LIB_ASN1, ASN1_R_TOO_LARGE);
220
18.7k
        return 0;
221
18.7k
    }
222
1.33M
    if (b == NULL)
223
0
        return 0;
224
3.70M
    for (r = 0, i = 0; i < blen; i++) {
225
2.37M
        r <<= 8;
226
2.37M
        r |= b[i];
227
2.37M
    }
228
1.33M
    *pr = r;
229
1.33M
    return 1;
230
1.33M
}
231
232
/*
233
 * Write uint64_t to big endian buffer and return offset to first
234
 * written octet. In other words it returns offset in range from 0
235
 * to 7, with 0 denoting 8 written octets and 7 - one.
236
 */
237
static size_t asn1_put_uint64(unsigned char b[sizeof(uint64_t)], uint64_t r)
238
612k
{
239
612k
    size_t off = sizeof(uint64_t);
240
241
985k
    do {
242
985k
        b[--off] = (unsigned char)r;
243
985k
    } while (r >>= 8);
244
245
612k
    return off;
246
612k
}
247
248
/*
249
 * Absolute value of INT64_MIN: we can't just use -INT64_MIN as gcc produces
250
 * overflow warnings.
251
 */
252
17.8k
#define ABS_INT64_MIN ((uint64_t)INT64_MAX + (-(INT64_MIN + INT64_MAX)))
253
254
/* signed version of asn1_get_uint64 */
255
static int asn1_get_int64(int64_t *pr, const unsigned char *b, size_t blen,
256
                          int neg)
257
569k
{
258
569k
    uint64_t r;
259
569k
    if (asn1_get_uint64(&r, b, blen) == 0)
260
18.7k
        return 0;
261
550k
    if (neg) {
262
96.5k
        if (r <= INT64_MAX) {
263
            /*
264
             * Most significant bit is guaranteed to be clear, negation
265
             * is guaranteed to be meaningful in platform-neutral sense.
266
             */
267
78.6k
            *pr = -(int64_t)r;
268
78.6k
        } else if (r == ABS_INT64_MIN) {
269
            /*
270
             * This never happens if INT64_MAX == ABS_INT64_MIN, e.g.
271
             * on ones'-complement system.
272
             */
273
2.81k
            *pr = (int64_t)(0 - r);
274
15.0k
        } else {
275
15.0k
            ERR_raise(ERR_LIB_ASN1, ASN1_R_TOO_SMALL);
276
15.0k
            return 0;
277
15.0k
        }
278
453k
    } else {
279
453k
        if (r <= INT64_MAX) {
280
442k
            *pr = (int64_t)r;
281
442k
        } else {
282
11.4k
            ERR_raise(ERR_LIB_ASN1, ASN1_R_TOO_LARGE);
283
11.4k
            return 0;
284
11.4k
        }
285
453k
    }
286
523k
    return 1;
287
550k
}
288
289
/* Convert ASN1 INTEGER content octets to ASN1_INTEGER structure */
290
ASN1_INTEGER *ossl_c2i_ASN1_INTEGER(ASN1_INTEGER **a, const unsigned char **pp,
291
                                    long len)
292
8.65M
{
293
8.65M
    ASN1_INTEGER *ret = NULL;
294
8.65M
    size_t r;
295
8.65M
    int neg;
296
297
8.65M
    r = c2i_ibuf(NULL, NULL, *pp, len);
298
299
8.65M
    if (r == 0)
300
459k
        return NULL;
301
302
8.19M
    if ((a == NULL) || ((*a) == NULL)) {
303
6.02M
        ret = ASN1_INTEGER_new();
304
6.02M
        if (ret == NULL)
305
0
            return NULL;
306
6.02M
        ret->type = V_ASN1_INTEGER;
307
6.02M
    } else
308
2.17M
        ret = *a;
309
310
8.19M
    if (ASN1_STRING_set(ret, NULL, r) == 0) {
311
0
        ERR_raise(ERR_LIB_ASN1, ERR_R_ASN1_LIB);
312
0
        goto err;
313
0
    }
314
315
8.19M
    c2i_ibuf(ret->data, &neg, *pp, len);
316
317
8.19M
    if (neg != 0)
318
1.51M
        ret->type |= V_ASN1_NEG;
319
6.67M
    else
320
6.67M
        ret->type &= ~V_ASN1_NEG;
321
322
8.19M
    *pp += len;
323
8.19M
    if (a != NULL)
324
8.19M
        (*a) = ret;
325
8.19M
    return ret;
326
0
 err:
327
0
    if (a == NULL || *a != ret)
328
0
        ASN1_INTEGER_free(ret);
329
0
    return NULL;
330
8.19M
}
331
332
static int asn1_string_get_int64(int64_t *pr, const ASN1_STRING *a, int itype)
333
572k
{
334
572k
    if (a == NULL) {
335
0
        ERR_raise(ERR_LIB_ASN1, ERR_R_PASSED_NULL_PARAMETER);
336
0
        return 0;
337
0
    }
338
572k
    if ((a->type & ~V_ASN1_NEG) != itype) {
339
3.68k
        ERR_raise(ERR_LIB_ASN1, ASN1_R_WRONG_INTEGER_TYPE);
340
3.68k
        return 0;
341
3.68k
    }
342
569k
    return asn1_get_int64(pr, a->data, a->length, a->type & V_ASN1_NEG);
343
572k
}
344
345
static int asn1_string_set_int64(ASN1_STRING *a, int64_t r, int itype)
346
121k
{
347
121k
    unsigned char tbuf[sizeof(r)];
348
121k
    size_t off;
349
350
121k
    a->type = itype;
351
121k
    if (r < 0) {
352
        /*
353
         * Most obvious '-r' triggers undefined behaviour for most
354
         * common INT64_MIN. Even though below '0 - (uint64_t)r' can
355
         * appear two's-complement centric, it does produce correct/
356
         * expected result even on ones' complement. This is because
357
         * cast to unsigned has to change bit pattern...
358
         */
359
0
        off = asn1_put_uint64(tbuf, 0 - (uint64_t)r);
360
0
        a->type |= V_ASN1_NEG;
361
121k
    } else {
362
121k
        off = asn1_put_uint64(tbuf, r);
363
121k
        a->type &= ~V_ASN1_NEG;
364
121k
    }
365
121k
    return ASN1_STRING_set(a, tbuf + off, sizeof(tbuf) - off);
366
121k
}
367
368
static int asn1_string_get_uint64(uint64_t *pr, const ASN1_STRING *a,
369
                                  int itype)
370
0
{
371
0
    if (a == NULL) {
372
0
        ERR_raise(ERR_LIB_ASN1, ERR_R_PASSED_NULL_PARAMETER);
373
0
        return 0;
374
0
    }
375
0
    if ((a->type & ~V_ASN1_NEG) != itype) {
376
0
        ERR_raise(ERR_LIB_ASN1, ASN1_R_WRONG_INTEGER_TYPE);
377
0
        return 0;
378
0
    }
379
0
    if (a->type & V_ASN1_NEG) {
380
0
        ERR_raise(ERR_LIB_ASN1, ASN1_R_ILLEGAL_NEGATIVE_VALUE);
381
0
        return 0;
382
0
    }
383
0
    return asn1_get_uint64(pr, a->data, a->length);
384
0
}
385
386
static int asn1_string_set_uint64(ASN1_STRING *a, uint64_t r, int itype)
387
0
{
388
0
    unsigned char tbuf[sizeof(r)];
389
0
    size_t off;
390
391
0
    a->type = itype;
392
0
    off = asn1_put_uint64(tbuf, r);
393
0
    return ASN1_STRING_set(a, tbuf + off, sizeof(tbuf) - off);
394
0
}
395
396
/*
397
 * This is a version of d2i_ASN1_INTEGER that ignores the sign bit of ASN1
398
 * integers: some broken software can encode a positive INTEGER with its MSB
399
 * set as negative (it doesn't add a padding zero).
400
 */
401
402
ASN1_INTEGER *d2i_ASN1_UINTEGER(ASN1_INTEGER **a, const unsigned char **pp,
403
                                long length)
404
0
{
405
0
    ASN1_INTEGER *ret = NULL;
406
0
    const unsigned char *p;
407
0
    unsigned char *s;
408
0
    long len = 0;
409
0
    int inf, tag, xclass;
410
0
    int i = 0;
411
412
0
    if ((a == NULL) || ((*a) == NULL)) {
413
0
        if ((ret = ASN1_INTEGER_new()) == NULL)
414
0
            return NULL;
415
0
        ret->type = V_ASN1_INTEGER;
416
0
    } else
417
0
        ret = (*a);
418
419
0
    p = *pp;
420
0
    inf = ASN1_get_object(&p, &len, &tag, &xclass, length);
421
0
    if (inf & 0x80) {
422
0
        i = ASN1_R_BAD_OBJECT_HEADER;
423
0
        goto err;
424
0
    }
425
426
0
    if (tag != V_ASN1_INTEGER) {
427
0
        i = ASN1_R_EXPECTING_AN_INTEGER;
428
0
        goto err;
429
0
    }
430
431
0
    if (len < 0) {
432
0
        i = ASN1_R_ILLEGAL_NEGATIVE_VALUE;
433
0
        goto err;
434
0
    }
435
    /*
436
     * We must OPENSSL_malloc stuff, even for 0 bytes otherwise it signifies
437
     * a missing NULL parameter.
438
     */
439
0
    s = OPENSSL_malloc((int)len + 1);
440
0
    if (s == NULL)
441
0
        goto err;
442
0
    ret->type = V_ASN1_INTEGER;
443
0
    if (len) {
444
0
        if ((*p == 0) && (len != 1)) {
445
0
            p++;
446
0
            len--;
447
0
        }
448
0
        memcpy(s, p, (int)len);
449
0
        p += len;
450
0
    }
451
452
0
    ASN1_STRING_set0(ret, s, (int)len);
453
0
    if (a != NULL)
454
0
        (*a) = ret;
455
0
    *pp = p;
456
0
    return ret;
457
0
 err:
458
0
    if (i != 0)
459
0
        ERR_raise(ERR_LIB_ASN1, i);
460
0
    if ((a == NULL) || (*a != ret))
461
0
        ASN1_INTEGER_free(ret);
462
0
    return NULL;
463
0
}
464
465
static ASN1_STRING *bn_to_asn1_string(const BIGNUM *bn, ASN1_STRING *ai,
466
                                      int atype)
467
5.08k
{
468
5.08k
    ASN1_INTEGER *ret;
469
5.08k
    int len;
470
471
5.08k
    if (ai == NULL) {
472
3.42k
        ret = ASN1_STRING_type_new(atype);
473
3.42k
    } else {
474
1.65k
        ret = ai;
475
1.65k
        ret->type = atype;
476
1.65k
    }
477
478
5.08k
    if (ret == NULL) {
479
0
        ERR_raise(ERR_LIB_ASN1, ERR_R_NESTED_ASN1_ERROR);
480
0
        goto err;
481
0
    }
482
483
5.08k
    if (BN_is_negative(bn) && !BN_is_zero(bn))
484
68
        ret->type |= V_ASN1_NEG_INTEGER;
485
486
5.08k
    len = BN_num_bytes(bn);
487
488
5.08k
    if (len == 0)
489
895
        len = 1;
490
491
5.08k
    if (ASN1_STRING_set(ret, NULL, len) == 0) {
492
0
        ERR_raise(ERR_LIB_ASN1, ERR_R_ASN1_LIB);
493
0
        goto err;
494
0
    }
495
496
    /* Correct zero case */
497
5.08k
    if (BN_is_zero(bn))
498
895
        ret->data[0] = 0;
499
4.18k
    else
500
4.18k
        len = BN_bn2bin(bn, ret->data);
501
5.08k
    ret->length = len;
502
5.08k
    return ret;
503
0
 err:
504
0
    if (ret != ai)
505
0
        ASN1_INTEGER_free(ret);
506
0
    return NULL;
507
5.08k
}
508
509
static BIGNUM *asn1_string_to_bn(const ASN1_INTEGER *ai, BIGNUM *bn,
510
                                 int itype)
511
3.30M
{
512
3.30M
    BIGNUM *ret;
513
514
3.30M
    if ((ai->type & ~V_ASN1_NEG) != itype) {
515
452
        ERR_raise(ERR_LIB_ASN1, ASN1_R_WRONG_INTEGER_TYPE);
516
452
        return NULL;
517
452
    }
518
519
3.30M
    ret = BN_bin2bn(ai->data, ai->length, bn);
520
3.30M
    if (ret == NULL) {
521
0
        ERR_raise(ERR_LIB_ASN1, ASN1_R_BN_LIB);
522
0
        return NULL;
523
0
    }
524
3.30M
    if (ai->type & V_ASN1_NEG)
525
731k
        BN_set_negative(ret, 1);
526
3.30M
    return ret;
527
3.30M
}
528
529
int ASN1_INTEGER_get_int64(int64_t *pr, const ASN1_INTEGER *a)
530
448k
{
531
448k
    return asn1_string_get_int64(pr, a, V_ASN1_INTEGER);
532
448k
}
533
534
int ASN1_INTEGER_set_int64(ASN1_INTEGER *a, int64_t r)
535
121k
{
536
121k
    return asn1_string_set_int64(a, r, V_ASN1_INTEGER);
537
121k
}
538
539
int ASN1_INTEGER_get_uint64(uint64_t *pr, const ASN1_INTEGER *a)
540
0
{
541
0
    return asn1_string_get_uint64(pr, a, V_ASN1_INTEGER);
542
0
}
543
544
int ASN1_INTEGER_set_uint64(ASN1_INTEGER *a, uint64_t r)
545
0
{
546
0
    return asn1_string_set_uint64(a, r, V_ASN1_INTEGER);
547
0
}
548
549
int ASN1_INTEGER_set(ASN1_INTEGER *a, long v)
550
82.8k
{
551
82.8k
    return ASN1_INTEGER_set_int64(a, v);
552
82.8k
}
553
554
long ASN1_INTEGER_get(const ASN1_INTEGER *a)
555
422k
{
556
422k
    int i;
557
422k
    int64_t r;
558
422k
    if (a == NULL)
559
69.2k
        return 0;
560
352k
    i = ASN1_INTEGER_get_int64(&r, a);
561
352k
    if (i == 0)
562
22.6k
        return -1;
563
330k
    if (r > LONG_MAX || r < LONG_MIN)
564
0
        return -1;
565
330k
    return (long)r;
566
330k
}
567
568
ASN1_INTEGER *BN_to_ASN1_INTEGER(const BIGNUM *bn, ASN1_INTEGER *ai)
569
5.08k
{
570
5.08k
    return bn_to_asn1_string(bn, ai, V_ASN1_INTEGER);
571
5.08k
}
572
573
BIGNUM *ASN1_INTEGER_to_BN(const ASN1_INTEGER *ai, BIGNUM *bn)
574
3.28M
{
575
3.28M
    return asn1_string_to_bn(ai, bn, V_ASN1_INTEGER);
576
3.28M
}
577
578
int ASN1_ENUMERATED_get_int64(int64_t *pr, const ASN1_ENUMERATED *a)
579
124k
{
580
124k
    return asn1_string_get_int64(pr, a, V_ASN1_ENUMERATED);
581
124k
}
582
583
int ASN1_ENUMERATED_set_int64(ASN1_ENUMERATED *a, int64_t r)
584
0
{
585
0
    return asn1_string_set_int64(a, r, V_ASN1_ENUMERATED);
586
0
}
587
588
int ASN1_ENUMERATED_set(ASN1_ENUMERATED *a, long v)
589
0
{
590
0
    return ASN1_ENUMERATED_set_int64(a, v);
591
0
}
592
593
long ASN1_ENUMERATED_get(const ASN1_ENUMERATED *a)
594
121k
{
595
121k
    int i;
596
121k
    int64_t r;
597
121k
    if (a == NULL)
598
0
        return 0;
599
121k
    if ((a->type & ~V_ASN1_NEG) != V_ASN1_ENUMERATED)
600
0
        return -1;
601
121k
    if (a->length > (int)sizeof(long))
602
8.76k
        return 0xffffffffL;
603
112k
    i = ASN1_ENUMERATED_get_int64(&r, a);
604
112k
    if (i == 0)
605
11.1k
        return -1;
606
101k
    if (r > LONG_MAX || r < LONG_MIN)
607
0
        return -1;
608
101k
    return (long)r;
609
101k
}
610
611
ASN1_ENUMERATED *BN_to_ASN1_ENUMERATED(const BIGNUM *bn, ASN1_ENUMERATED *ai)
612
0
{
613
0
    return bn_to_asn1_string(bn, ai, V_ASN1_ENUMERATED);
614
0
}
615
616
BIGNUM *ASN1_ENUMERATED_to_BN(const ASN1_ENUMERATED *ai, BIGNUM *bn)
617
19.1k
{
618
19.1k
    return asn1_string_to_bn(ai, bn, V_ASN1_ENUMERATED);
619
19.1k
}
620
621
/* Internal functions used by x_int64.c */
622
int ossl_c2i_uint64_int(uint64_t *ret, int *neg,
623
                        const unsigned char **pp, long len)
624
830k
{
625
830k
    unsigned char buf[sizeof(uint64_t)];
626
830k
    size_t buflen;
627
628
830k
    buflen = c2i_ibuf(NULL, NULL, *pp, len);
629
830k
    if (buflen == 0)
630
19.1k
        return 0;
631
811k
    if (buflen > sizeof(uint64_t)) {
632
24.0k
        ERR_raise(ERR_LIB_ASN1, ASN1_R_TOO_LARGE);
633
24.0k
        return 0;
634
24.0k
    }
635
787k
    (void)c2i_ibuf(buf, neg, *pp, len);
636
787k
    return asn1_get_uint64(ret, buf, buflen);
637
811k
}
638
639
int ossl_i2c_uint64_int(unsigned char *p, uint64_t r, int neg)
640
491k
{
641
491k
    unsigned char buf[sizeof(uint64_t)];
642
491k
    size_t off;
643
644
491k
    off = asn1_put_uint64(buf, r);
645
491k
    return i2c_ibuf(buf + off, sizeof(buf) - off, neg, &p);
646
491k
}
647