Coverage Report

Created: 2025-12-04 06:33

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/openssl32/crypto/asn1/tasn_utl.c
Line
Count
Source
1
/*
2
 * Copyright 2000-2023 The OpenSSL Project Authors. All Rights Reserved.
3
 *
4
 * Licensed under the Apache License 2.0 (the "License").  You may not use
5
 * this file except in compliance with the License.  You can obtain a copy
6
 * in the file LICENSE in the source distribution or at
7
 * https://www.openssl.org/source/license.html
8
 */
9
10
#include <stddef.h>
11
#include <string.h>
12
#include "internal/cryptlib.h"
13
#include "internal/refcount.h"
14
#include <openssl/asn1.h>
15
#include <openssl/asn1t.h>
16
#include <openssl/objects.h>
17
#include <openssl/err.h>
18
#include "asn1_local.h"
19
20
/* Utility functions for manipulating fields and offsets */
21
22
/* Add 'offset' to 'addr' */
23
808M
#define offset2ptr(addr, offset) (void *)(((char *) addr) + offset)
24
25
/*
26
 * Given an ASN1_ITEM CHOICE type return the selector value
27
 */
28
29
int ossl_asn1_get_choice_selector(ASN1_VALUE **pval, const ASN1_ITEM *it)
30
8.43M
{
31
8.43M
    int *sel = offset2ptr(*pval, it->utype);
32
33
8.43M
    return *sel;
34
8.43M
}
35
36
int ossl_asn1_get_choice_selector_const(const ASN1_VALUE **pval,
37
                                        const ASN1_ITEM *it)
38
9.14M
{
39
9.14M
    int *sel = offset2ptr(*pval, it->utype);
40
41
9.14M
    return *sel;
42
9.14M
}
43
44
/*
45
 * Given an ASN1_ITEM CHOICE type set the selector value, return old value.
46
 */
47
48
int ossl_asn1_set_choice_selector(ASN1_VALUE **pval, int value,
49
                                  const ASN1_ITEM *it)
50
12.6M
{
51
12.6M
    int *sel, ret;
52
53
12.6M
    sel = offset2ptr(*pval, it->utype);
54
12.6M
    ret = *sel;
55
12.6M
    *sel = value;
56
12.6M
    return ret;
57
12.6M
}
58
59
/*
60
 * Do atomic reference counting. The value 'op' decides what to do.
61
 * If it is +1 then the count is incremented.
62
 * If |op| is 0, count is initialised and set to 1.
63
 * If |op| is -1, count is decremented and the return value is the current
64
 * reference count or 0 if no reference count is active.
65
 * It returns -1 on initialisation error.
66
 * Used by ASN1_SEQUENCE construct of X509, X509_REQ, X509_CRL objects
67
 */
68
int ossl_asn1_do_lock(ASN1_VALUE **pval, int op, const ASN1_ITEM *it)
69
119M
{
70
119M
    const ASN1_AUX *aux;
71
119M
    CRYPTO_RWLOCK **lock;
72
119M
    CRYPTO_REF_COUNT *refcnt;
73
119M
    int ret = -1;
74
75
119M
    if ((it->itype != ASN1_ITYPE_SEQUENCE)
76
1.82M
        && (it->itype != ASN1_ITYPE_NDEF_SEQUENCE))
77
0
        return 0;
78
119M
    aux = it->funcs;
79
119M
    if (aux == NULL || (aux->flags & ASN1_AFLG_REFCOUNT) == 0)
80
116M
        return 0;
81
2.52M
    lock = offset2ptr(*pval, aux->ref_lock);
82
2.52M
    refcnt = offset2ptr(*pval, aux->ref_offset);
83
84
2.52M
    switch (op) {
85
1.04M
    case 0:
86
1.04M
        if (!CRYPTO_NEW_REF(refcnt, 1))
87
0
            return -1;
88
1.04M
        *lock = CRYPTO_THREAD_lock_new();
89
1.04M
        if (*lock == NULL) {
90
0
            CRYPTO_FREE_REF(refcnt);
91
0
            ERR_raise(ERR_LIB_ASN1, ERR_R_CRYPTO_LIB);
92
0
            return -1;
93
0
        }
94
1.04M
        ret = 1;
95
1.04M
        break;
96
0
    case 1:
97
0
        if (!CRYPTO_UP_REF(refcnt, &ret))
98
0
            return -1;
99
0
        break;
100
1.48M
    case -1:
101
1.48M
        if (!CRYPTO_DOWN_REF(refcnt, &ret))
102
0
            return -1;  /* failed */
103
1.48M
        REF_PRINT_EX(it->sname, ret, (void *)it);
104
1.48M
        REF_ASSERT_ISNT(ret < 0);
105
1.48M
        if (ret == 0) {
106
1.04M
            CRYPTO_THREAD_lock_free(*lock);
107
1.04M
            *lock = NULL;
108
1.04M
            CRYPTO_FREE_REF(refcnt);
109
1.04M
        }
110
1.48M
        break;
111
2.52M
    }
112
113
2.52M
    return ret;
114
2.52M
}
115
116
static ASN1_ENCODING *asn1_get_enc_ptr(ASN1_VALUE **pval, const ASN1_ITEM *it)
117
178M
{
118
178M
    const ASN1_AUX *aux;
119
120
178M
    if (pval == NULL || *pval == NULL)
121
0
        return NULL;
122
178M
    aux = it->funcs;
123
178M
    if (aux == NULL || (aux->flags & ASN1_AFLG_ENCODING) == 0)
124
174M
        return NULL;
125
3.91M
    return offset2ptr(*pval, aux->enc_offset);
126
178M
}
127
128
static const ASN1_ENCODING *asn1_get_const_enc_ptr(const ASN1_VALUE **pval,
129
                                                   const ASN1_ITEM *it)
130
84.7M
{
131
84.7M
    const ASN1_AUX *aux;
132
133
84.7M
    if (pval == NULL || *pval == NULL)
134
0
        return NULL;
135
84.7M
    aux = it->funcs;
136
84.7M
    if (aux == NULL || (aux->flags & ASN1_AFLG_ENCODING) == 0)
137
82.9M
        return NULL;
138
1.77M
    return offset2ptr(*pval, aux->enc_offset);
139
84.7M
}
140
141
void ossl_asn1_enc_init(ASN1_VALUE **pval, const ASN1_ITEM *it)
142
69.8M
{
143
69.8M
    ASN1_ENCODING *enc = asn1_get_enc_ptr(pval, it);
144
145
69.8M
    if (enc != NULL) {
146
1.46M
        enc->enc = NULL;
147
1.46M
        enc->len = 0;
148
1.46M
        enc->modified = 1;
149
1.46M
    }
150
69.8M
}
151
152
void ossl_asn1_enc_free(ASN1_VALUE **pval, const ASN1_ITEM *it)
153
70.6M
{
154
70.6M
    ASN1_ENCODING *enc = asn1_get_enc_ptr(pval, it);
155
156
70.6M
    if (enc != NULL) {
157
1.46M
        OPENSSL_free(enc->enc);
158
1.46M
        enc->enc = NULL;
159
1.46M
        enc->len = 0;
160
1.46M
        enc->modified = 1;
161
1.46M
    }
162
70.6M
}
163
164
int ossl_asn1_enc_save(ASN1_VALUE **pval, const unsigned char *in, int inlen,
165
                       const ASN1_ITEM *it)
166
37.9M
{
167
37.9M
    ASN1_ENCODING *enc = asn1_get_enc_ptr(pval, it);
168
169
37.9M
    if (enc == NULL)
170
36.9M
        return 1;
171
172
972k
    OPENSSL_free(enc->enc);
173
972k
    if (inlen <= 0)
174
0
        return 0;
175
972k
    if ((enc->enc = OPENSSL_malloc(inlen)) == NULL)
176
0
        return 0;
177
972k
    memcpy(enc->enc, in, inlen);
178
972k
    enc->len = inlen;
179
972k
    enc->modified = 0;
180
181
972k
    return 1;
182
972k
}
183
184
int ossl_asn1_enc_restore(int *len, unsigned char **out, const ASN1_VALUE **pval,
185
                          const ASN1_ITEM *it)
186
84.7M
{
187
84.7M
    const ASN1_ENCODING *enc = asn1_get_const_enc_ptr(pval, it);
188
189
84.7M
    if (enc == NULL || enc->modified)
190
82.9M
        return 0;
191
1.77M
    if (out) {
192
565k
        memcpy(*out, enc->enc, enc->len);
193
565k
        *out += enc->len;
194
565k
    }
195
1.77M
    if (len != NULL)
196
1.77M
        *len = enc->len;
197
1.77M
    return 1;
198
84.7M
}
199
200
/* Given an ASN1_TEMPLATE get a pointer to a field */
201
ASN1_VALUE **ossl_asn1_get_field_ptr(ASN1_VALUE **pval, const ASN1_TEMPLATE *tt)
202
508M
{
203
508M
    ASN1_VALUE **pvaltmp = offset2ptr(*pval, tt->offset);
204
205
    /*
206
     * NOTE for BOOLEAN types the field is just a plain int so we can't
207
     * return int **, so settle for (int *).
208
     */
209
508M
    return pvaltmp;
210
508M
}
211
212
/* Given an ASN1_TEMPLATE get a const pointer to a field */
213
const ASN1_VALUE **ossl_asn1_get_const_field_ptr(const ASN1_VALUE **pval,
214
                                                 const ASN1_TEMPLATE *tt)
215
255M
{
216
255M
    return offset2ptr(*pval, tt->offset);
217
255M
}
218
219
/*
220
 * Handle ANY DEFINED BY template, find the selector, look up the relevant
221
 * ASN1_TEMPLATE in the table and return it.
222
 */
223
224
const ASN1_TEMPLATE *ossl_asn1_do_adb(const ASN1_VALUE *val,
225
                                      const ASN1_TEMPLATE *tt,
226
                                      int nullerr)
227
548M
{
228
548M
    const ASN1_ADB *adb;
229
548M
    const ASN1_ADB_TABLE *atbl;
230
548M
    long selector;
231
548M
    const ASN1_VALUE **sfld;
232
548M
    int i;
233
234
548M
    if ((tt->flags & ASN1_TFLG_ADB_MASK) == 0)
235
545M
        return tt;
236
237
    /* Else ANY DEFINED BY ... get the table */
238
3.21M
    adb = ASN1_ADB_ptr(tt->item);
239
240
    /* Get the selector field */
241
3.21M
    sfld = offset2ptr(val, adb->offset);
242
243
    /* Check if NULL */
244
3.21M
    if (*sfld == NULL) {
245
1.15M
        if (adb->null_tt == NULL)
246
1.15M
            goto err;
247
0
        return adb->null_tt;
248
1.15M
    }
249
250
    /*
251
     * Convert type to a long: NB: don't check for NID_undef here because it
252
     * might be a legitimate value in the table
253
     */
254
2.05M
    if ((tt->flags & ASN1_TFLG_ADB_OID) != 0)
255
2.05M
        selector = OBJ_obj2nid((ASN1_OBJECT *)*sfld);
256
0
    else
257
0
        selector = ASN1_INTEGER_get((ASN1_INTEGER *)*sfld);
258
259
    /* Let application callback translate value */
260
2.05M
    if (adb->adb_cb != NULL && adb->adb_cb(&selector) == 0) {
261
0
        ERR_raise(ERR_LIB_ASN1, ASN1_R_UNSUPPORTED_ANY_DEFINED_BY_TYPE);
262
0
        return NULL;
263
0
    }
264
265
    /*
266
     * Try to find matching entry in table Maybe should check application
267
     * types first to allow application override? Might also be useful to
268
     * have a flag which indicates table is sorted and we can do a binary
269
     * search. For now stick to a linear search.
270
     */
271
272
19.6M
    for (atbl = adb->tbl, i = 0; i < adb->tblcount; i++, atbl++)
273
18.0M
        if (atbl->value == selector)
274
412k
            return &atbl->tt;
275
276
    /* FIXME: need to search application table too */
277
278
    /* No match, return default type */
279
1.64M
    if (!adb->default_tt)
280
0
        goto err;
281
1.64M
    return adb->default_tt;
282
283
1.15M
 err:
284
    /* FIXME: should log the value or OID of unsupported type */
285
1.15M
    if (nullerr)
286
1.15M
        ERR_raise(ERR_LIB_ASN1, ASN1_R_UNSUPPORTED_ANY_DEFINED_BY_TYPE);
287
    return NULL;
288
1.64M
}