Coverage Report

Created: 2026-04-01 06:39

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/openssl36/ssl/quic/quic_wire.c
Line
Count
Source
1
/*
2
 * Copyright 2022-2024 The OpenSSL Project Authors. All Rights Reserved.
3
 *
4
 * Licensed under the Apache License 2.0 (the "License").  You may not use
5
 * this file except in compliance with the License.  You can obtain a copy
6
 * in the file LICENSE in the source distribution or at
7
 * https://www.openssl.org/source/license.html
8
 */
9
10
#include <openssl/macros.h>
11
#include <openssl/objects.h>
12
#include "internal/quic_ssl.h"
13
#include "internal/quic_vlint.h"
14
#include "internal/quic_wire.h"
15
#include "internal/quic_error.h"
16
17
OSSL_SAFE_MATH_UNSIGNED(uint64_t, uint64_t)
18
19
int ossl_quic_frame_ack_contains_pn(const OSSL_QUIC_FRAME_ACK *ack, QUIC_PN pn)
20
51.4k
{
21
51.4k
    size_t i;
22
23
75.3k
    for (i = 0; i < ack->num_ack_ranges; ++i)
24
71.2k
        if (pn >= ack->ack_ranges[i].start
25
48.9k
            && pn <= ack->ack_ranges[i].end)
26
47.4k
            return 1;
27
28
4.04k
    return 0;
29
51.4k
}
30
31
/*
32
 * QUIC Wire Format Encoding
33
 * =========================
34
 */
35
36
int ossl_quic_wire_encode_padding(WPACKET *pkt, size_t num_bytes)
37
1.50M
{
38
    /*
39
     * PADDING is frame type zero, which as a variable-length integer is
40
     * represented as a single zero byte. As an optimisation, just use memset.
41
     */
42
1.50M
    return WPACKET_memset(pkt, 0, num_bytes);
43
1.50M
}
44
45
static int encode_frame_hdr(WPACKET *pkt, uint64_t frame_type)
46
8.06M
{
47
8.06M
    return WPACKET_quic_write_vlint(pkt, frame_type);
48
8.06M
}
49
50
int ossl_quic_wire_encode_frame_ping(WPACKET *pkt)
51
1.95M
{
52
1.95M
    return encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_PING);
53
1.95M
}
54
55
int ossl_quic_wire_encode_frame_ack(WPACKET *pkt,
56
    uint32_t ack_delay_exponent,
57
    const OSSL_QUIC_FRAME_ACK *ack)
58
6.08M
{
59
6.08M
    uint64_t frame_type = ack->ecn_present ? OSSL_QUIC_FRAME_TYPE_ACK_WITH_ECN
60
6.08M
                                           : OSSL_QUIC_FRAME_TYPE_ACK_WITHOUT_ECN;
61
62
6.08M
    uint64_t largest_ackd, first_ack_range, ack_delay_enc;
63
6.08M
    uint64_t i, num_ack_ranges = ack->num_ack_ranges;
64
6.08M
    OSSL_TIME delay;
65
66
6.08M
    if (num_ack_ranges == 0)
67
385k
        return 0;
68
69
5.70M
    delay = ossl_time_divide(ossl_time_divide(ack->delay_time, OSSL_TIME_US),
70
5.70M
        (uint64_t)1 << ack_delay_exponent);
71
5.70M
    ack_delay_enc = ossl_time2ticks(delay);
72
73
5.70M
    largest_ackd = ack->ack_ranges[0].end;
74
5.70M
    first_ack_range = ack->ack_ranges[0].end - ack->ack_ranges[0].start;
75
76
5.70M
    if (!encode_frame_hdr(pkt, frame_type)
77
5.70M
        || !WPACKET_quic_write_vlint(pkt, largest_ackd)
78
5.70M
        || !WPACKET_quic_write_vlint(pkt, ack_delay_enc)
79
5.70M
        || !WPACKET_quic_write_vlint(pkt, num_ack_ranges - 1)
80
5.70M
        || !WPACKET_quic_write_vlint(pkt, first_ack_range))
81
336
        return 0;
82
83
15.8M
    for (i = 1; i < num_ack_ranges; ++i) {
84
10.1M
        uint64_t gap, range_len;
85
86
10.1M
        gap = ack->ack_ranges[i - 1].start - ack->ack_ranges[i].end - 2;
87
10.1M
        range_len = ack->ack_ranges[i].end - ack->ack_ranges[i].start;
88
89
10.1M
        if (!WPACKET_quic_write_vlint(pkt, gap)
90
10.1M
            || !WPACKET_quic_write_vlint(pkt, range_len))
91
39
            return 0;
92
10.1M
    }
93
94
5.70M
    if (ack->ecn_present)
95
0
        if (!WPACKET_quic_write_vlint(pkt, ack->ect0)
96
0
            || !WPACKET_quic_write_vlint(pkt, ack->ect1)
97
0
            || !WPACKET_quic_write_vlint(pkt, ack->ecnce))
98
0
            return 0;
99
100
5.70M
    return 1;
101
5.70M
}
102
103
int ossl_quic_wire_encode_frame_reset_stream(WPACKET *pkt,
104
    const OSSL_QUIC_FRAME_RESET_STREAM *f)
105
6.68k
{
106
6.68k
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_RESET_STREAM)
107
6.49k
        || !WPACKET_quic_write_vlint(pkt, f->stream_id)
108
6.43k
        || !WPACKET_quic_write_vlint(pkt, f->app_error_code)
109
6.38k
        || !WPACKET_quic_write_vlint(pkt, f->final_size))
110
348
        return 0;
111
112
6.33k
    return 1;
113
6.68k
}
114
115
int ossl_quic_wire_encode_frame_stop_sending(WPACKET *pkt,
116
    const OSSL_QUIC_FRAME_STOP_SENDING *f)
117
0
{
118
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_STOP_SENDING)
119
0
        || !WPACKET_quic_write_vlint(pkt, f->stream_id)
120
0
        || !WPACKET_quic_write_vlint(pkt, f->app_error_code))
121
0
        return 0;
122
123
0
    return 1;
124
0
}
125
126
int ossl_quic_wire_encode_frame_crypto_hdr(WPACKET *pkt,
127
    const OSSL_QUIC_FRAME_CRYPTO *f)
128
102k
{
129
102k
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_CRYPTO)
130
102k
        || !WPACKET_quic_write_vlint(pkt, f->offset)
131
102k
        || !WPACKET_quic_write_vlint(pkt, f->len))
132
0
        return 0;
133
134
102k
    return 1;
135
102k
}
136
137
size_t ossl_quic_wire_get_encoded_frame_len_crypto_hdr(const OSSL_QUIC_FRAME_CRYPTO *f)
138
102k
{
139
102k
    size_t a, b, c;
140
141
102k
    a = ossl_quic_vlint_encode_len(OSSL_QUIC_FRAME_TYPE_CRYPTO);
142
102k
    b = ossl_quic_vlint_encode_len(f->offset);
143
102k
    c = ossl_quic_vlint_encode_len(f->len);
144
102k
    if (a == 0 || b == 0 || c == 0)
145
0
        return 0;
146
147
102k
    return a + b + c;
148
102k
}
149
150
void *ossl_quic_wire_encode_frame_crypto(WPACKET *pkt,
151
    const OSSL_QUIC_FRAME_CRYPTO *f)
152
0
{
153
0
    unsigned char *p = NULL;
154
155
0
    if (!ossl_quic_wire_encode_frame_crypto_hdr(pkt, f)
156
0
        || f->len > SIZE_MAX /* sizeof(uint64_t) > sizeof(size_t)? */
157
0
        || !WPACKET_allocate_bytes(pkt, (size_t)f->len, &p))
158
0
        return NULL;
159
160
0
    if (f->data != NULL)
161
0
        memcpy(p, f->data, (size_t)f->len);
162
163
0
    return p;
164
0
}
165
166
int ossl_quic_wire_encode_frame_new_token(WPACKET *pkt,
167
    const unsigned char *token,
168
    size_t token_len)
169
0
{
170
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_NEW_TOKEN)
171
0
        || !WPACKET_quic_write_vlint(pkt, token_len)
172
0
        || !WPACKET_memcpy(pkt, token, token_len))
173
0
        return 0;
174
175
0
    return 1;
176
0
}
177
178
int ossl_quic_wire_encode_frame_stream_hdr(WPACKET *pkt,
179
    const OSSL_QUIC_FRAME_STREAM *f)
180
6.50k
{
181
6.50k
    uint64_t frame_type = OSSL_QUIC_FRAME_TYPE_STREAM;
182
183
6.50k
    if (f->offset != 0)
184
2.47k
        frame_type |= OSSL_QUIC_FRAME_FLAG_STREAM_OFF;
185
6.50k
    if (f->has_explicit_len)
186
1.98k
        frame_type |= OSSL_QUIC_FRAME_FLAG_STREAM_LEN;
187
6.50k
    if (f->is_fin)
188
0
        frame_type |= OSSL_QUIC_FRAME_FLAG_STREAM_FIN;
189
190
6.50k
    if (!encode_frame_hdr(pkt, frame_type)
191
6.50k
        || !WPACKET_quic_write_vlint(pkt, f->stream_id))
192
0
        return 0;
193
194
6.50k
    if (f->offset != 0 && !WPACKET_quic_write_vlint(pkt, f->offset))
195
0
        return 0;
196
197
6.50k
    if (f->has_explicit_len && !WPACKET_quic_write_vlint(pkt, f->len))
198
0
        return 0;
199
200
6.50k
    return 1;
201
6.50k
}
202
203
size_t ossl_quic_wire_get_encoded_frame_len_stream_hdr(const OSSL_QUIC_FRAME_STREAM *f)
204
8.53k
{
205
8.53k
    size_t a, b, c, d;
206
207
8.53k
    a = ossl_quic_vlint_encode_len(OSSL_QUIC_FRAME_TYPE_STREAM);
208
8.53k
    b = ossl_quic_vlint_encode_len(f->stream_id);
209
8.53k
    if (a == 0 || b == 0)
210
0
        return 0;
211
212
8.53k
    if (f->offset > 0) {
213
3.10k
        c = ossl_quic_vlint_encode_len(f->offset);
214
3.10k
        if (c == 0)
215
0
            return 0;
216
5.42k
    } else {
217
5.42k
        c = 0;
218
5.42k
    }
219
220
8.53k
    if (f->has_explicit_len) {
221
1.98k
        d = ossl_quic_vlint_encode_len(f->len);
222
1.98k
        if (d == 0)
223
0
            return 0;
224
6.54k
    } else {
225
6.54k
        d = 0;
226
6.54k
    }
227
228
8.53k
    return a + b + c + d;
229
8.53k
}
230
231
void *ossl_quic_wire_encode_frame_stream(WPACKET *pkt,
232
    const OSSL_QUIC_FRAME_STREAM *f)
233
0
{
234
235
0
    unsigned char *p = NULL;
236
237
0
    if (!ossl_quic_wire_encode_frame_stream_hdr(pkt, f)
238
0
        || f->len > SIZE_MAX /* sizeof(uint64_t) > sizeof(size_t)? */)
239
0
        return NULL;
240
241
0
    if (!WPACKET_allocate_bytes(pkt, (size_t)f->len, &p))
242
0
        return NULL;
243
244
0
    if (f->data != NULL)
245
0
        memcpy(p, f->data, (size_t)f->len);
246
247
0
    return p;
248
0
}
249
250
int ossl_quic_wire_encode_frame_max_data(WPACKET *pkt,
251
    uint64_t max_data)
252
0
{
253
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_MAX_DATA)
254
0
        || !WPACKET_quic_write_vlint(pkt, max_data))
255
0
        return 0;
256
257
0
    return 1;
258
0
}
259
260
int ossl_quic_wire_encode_frame_max_stream_data(WPACKET *pkt,
261
    uint64_t stream_id,
262
    uint64_t max_data)
263
1.40k
{
264
1.40k
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_MAX_STREAM_DATA)
265
1.28k
        || !WPACKET_quic_write_vlint(pkt, stream_id)
266
1.27k
        || !WPACKET_quic_write_vlint(pkt, max_data))
267
176
        return 0;
268
269
1.22k
    return 1;
270
1.40k
}
271
272
int ossl_quic_wire_encode_frame_max_streams(WPACKET *pkt,
273
    char is_uni,
274
    uint64_t max_streams)
275
0
{
276
0
    if (!encode_frame_hdr(pkt, is_uni ? OSSL_QUIC_FRAME_TYPE_MAX_STREAMS_UNI : OSSL_QUIC_FRAME_TYPE_MAX_STREAMS_BIDI)
277
0
        || !WPACKET_quic_write_vlint(pkt, max_streams))
278
0
        return 0;
279
280
0
    return 1;
281
0
}
282
283
int ossl_quic_wire_encode_frame_data_blocked(WPACKET *pkt,
284
    uint64_t max_data)
285
0
{
286
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_DATA_BLOCKED)
287
0
        || !WPACKET_quic_write_vlint(pkt, max_data))
288
0
        return 0;
289
290
0
    return 1;
291
0
}
292
293
int ossl_quic_wire_encode_frame_stream_data_blocked(WPACKET *pkt,
294
    uint64_t stream_id,
295
    uint64_t max_stream_data)
296
0
{
297
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_STREAM_DATA_BLOCKED)
298
0
        || !WPACKET_quic_write_vlint(pkt, stream_id)
299
0
        || !WPACKET_quic_write_vlint(pkt, max_stream_data))
300
0
        return 0;
301
302
0
    return 1;
303
0
}
304
305
int ossl_quic_wire_encode_frame_streams_blocked(WPACKET *pkt,
306
    char is_uni,
307
    uint64_t max_streams)
308
0
{
309
0
    if (!encode_frame_hdr(pkt, is_uni ? OSSL_QUIC_FRAME_TYPE_STREAMS_BLOCKED_UNI : OSSL_QUIC_FRAME_TYPE_STREAMS_BLOCKED_BIDI)
310
0
        || !WPACKET_quic_write_vlint(pkt, max_streams))
311
0
        return 0;
312
313
0
    return 1;
314
0
}
315
316
int ossl_quic_wire_encode_frame_new_conn_id(WPACKET *pkt,
317
    const OSSL_QUIC_FRAME_NEW_CONN_ID *f)
318
0
{
319
0
    if (f->conn_id.id_len < 1
320
0
        || f->conn_id.id_len > QUIC_MAX_CONN_ID_LEN)
321
0
        return 0;
322
323
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_NEW_CONN_ID)
324
0
        || !WPACKET_quic_write_vlint(pkt, f->seq_num)
325
0
        || !WPACKET_quic_write_vlint(pkt, f->retire_prior_to)
326
0
        || !WPACKET_put_bytes_u8(pkt, f->conn_id.id_len)
327
0
        || !WPACKET_memcpy(pkt, f->conn_id.id, f->conn_id.id_len)
328
0
        || !WPACKET_memcpy(pkt, f->stateless_reset.token,
329
0
            sizeof(f->stateless_reset.token)))
330
0
        return 0;
331
332
0
    return 1;
333
0
}
334
335
int ossl_quic_wire_encode_frame_retire_conn_id(WPACKET *pkt,
336
    uint64_t seq_num)
337
11.0k
{
338
11.0k
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_RETIRE_CONN_ID)
339
11.0k
        || !WPACKET_quic_write_vlint(pkt, seq_num))
340
0
        return 0;
341
342
11.0k
    return 1;
343
11.0k
}
344
345
int ossl_quic_wire_encode_frame_path_challenge(WPACKET *pkt,
346
    uint64_t data)
347
0
{
348
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_PATH_CHALLENGE)
349
0
        || !WPACKET_put_bytes_u64(pkt, data))
350
0
        return 0;
351
352
0
    return 1;
353
0
}
354
355
int ossl_quic_wire_encode_frame_path_response(WPACKET *pkt,
356
    uint64_t data)
357
265k
{
358
265k
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_PATH_RESPONSE)
359
265k
        || !WPACKET_put_bytes_u64(pkt, data))
360
0
        return 0;
361
362
265k
    return 1;
363
265k
}
364
365
int ossl_quic_wire_encode_frame_conn_close(WPACKET *pkt,
366
    const OSSL_QUIC_FRAME_CONN_CLOSE *f)
367
24.2k
{
368
24.2k
    if (!encode_frame_hdr(pkt, f->is_app ? OSSL_QUIC_FRAME_TYPE_CONN_CLOSE_APP : OSSL_QUIC_FRAME_TYPE_CONN_CLOSE_TRANSPORT)
369
24.2k
        || !WPACKET_quic_write_vlint(pkt, f->error_code))
370
31
        return 0;
371
372
    /*
373
     * RFC 9000 s. 19.19: The application-specific variant of CONNECTION_CLOSE
374
     * (type 0x1d) does not include this field.
375
     */
376
24.2k
    if (!f->is_app && !WPACKET_quic_write_vlint(pkt, f->frame_type))
377
64
        return 0;
378
379
24.1k
    if (!WPACKET_quic_write_vlint(pkt, f->reason_len)
380
24.1k
        || !WPACKET_memcpy(pkt, f->reason, f->reason_len))
381
125
        return 0;
382
383
24.0k
    return 1;
384
24.1k
}
385
386
int ossl_quic_wire_encode_frame_handshake_done(WPACKET *pkt)
387
0
{
388
0
    return encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_HANDSHAKE_DONE);
389
0
}
390
391
unsigned char *ossl_quic_wire_encode_transport_param_bytes(WPACKET *pkt,
392
    uint64_t id,
393
    const unsigned char *value,
394
    size_t value_len)
395
102k
{
396
102k
    unsigned char *b = NULL;
397
398
102k
    if (!WPACKET_quic_write_vlint(pkt, id)
399
102k
        || !WPACKET_quic_write_vlint(pkt, value_len))
400
0
        return NULL;
401
402
102k
    if (value_len == 0)
403
102k
        b = WPACKET_get_curr(pkt);
404
0
    else if (!WPACKET_allocate_bytes(pkt, value_len, (unsigned char **)&b))
405
0
        return NULL;
406
407
102k
    if (value != NULL)
408
30.1k
        memcpy(b, value, value_len);
409
410
102k
    return b;
411
102k
}
412
413
int ossl_quic_wire_encode_transport_param_int(WPACKET *pkt,
414
    uint64_t id,
415
    uint64_t value)
416
460k
{
417
460k
    if (!WPACKET_quic_write_vlint(pkt, id)
418
460k
        || !WPACKET_quic_write_vlint(pkt, ossl_quic_vlint_encode_len(value))
419
460k
        || !WPACKET_quic_write_vlint(pkt, value))
420
0
        return 0;
421
422
460k
    return 1;
423
460k
}
424
425
int ossl_quic_wire_encode_transport_param_cid(WPACKET *wpkt,
426
    uint64_t id,
427
    const QUIC_CONN_ID *cid)
428
30.1k
{
429
30.1k
    if (cid->id_len > QUIC_MAX_CONN_ID_LEN)
430
0
        return 0;
431
432
30.1k
    if (ossl_quic_wire_encode_transport_param_bytes(wpkt, id,
433
30.1k
            cid->id,
434
30.1k
            cid->id_len)
435
30.1k
        == NULL)
436
0
        return 0;
437
438
30.1k
    return 1;
439
30.1k
}
440
441
/*
442
 * QUIC Wire Format Decoding
443
 * =========================
444
 */
445
int ossl_quic_wire_peek_frame_header(PACKET *pkt, uint64_t *type,
446
    int *was_minimal)
447
4.42M
{
448
4.42M
    return PACKET_peek_quic_vlint_ex(pkt, type, was_minimal);
449
4.42M
}
450
451
int ossl_quic_wire_skip_frame_header(PACKET *pkt, uint64_t *type)
452
4.10M
{
453
4.10M
    return PACKET_get_quic_vlint(pkt, type);
454
4.10M
}
455
456
static int expect_frame_header_mask(PACKET *pkt,
457
    uint64_t expected_frame_type,
458
    uint64_t mask_bits,
459
    uint64_t *actual_frame_type)
460
815k
{
461
815k
    uint64_t actual_frame_type_;
462
463
815k
    if (!ossl_quic_wire_skip_frame_header(pkt, &actual_frame_type_)
464
815k
        || (actual_frame_type_ & ~mask_bits) != expected_frame_type)
465
0
        return 0;
466
467
815k
    if (actual_frame_type != NULL)
468
359k
        *actual_frame_type = actual_frame_type_;
469
470
815k
    return 1;
471
815k
}
472
473
static int expect_frame_header(PACKET *pkt, uint64_t expected_frame_type)
474
3.28M
{
475
3.28M
    uint64_t actual_frame_type;
476
477
3.28M
    if (!ossl_quic_wire_skip_frame_header(pkt, &actual_frame_type)
478
3.28M
        || actual_frame_type != expected_frame_type)
479
0
        return 0;
480
481
3.28M
    return 1;
482
3.28M
}
483
484
int ossl_quic_wire_peek_frame_ack_num_ranges(const PACKET *orig_pkt,
485
    uint64_t *total_ranges)
486
288k
{
487
288k
    PACKET pkt = *orig_pkt;
488
288k
    uint64_t ack_range_count, i;
489
490
288k
    if (!expect_frame_header_mask(&pkt, OSSL_QUIC_FRAME_TYPE_ACK_WITHOUT_ECN,
491
288k
            1, NULL)
492
288k
        || !PACKET_skip_quic_vlint(&pkt)
493
288k
        || !PACKET_skip_quic_vlint(&pkt)
494
288k
        || !PACKET_get_quic_vlint(&pkt, &ack_range_count))
495
421
        return 0;
496
497
    /*
498
     * Ensure the specified number of ack ranges listed in the ACK frame header
499
     * actually are available in the frame data. This naturally bounds the
500
     * number of ACK ranges which can be requested by the MDPL, and therefore by
501
     * the MTU. This ensures we do not allocate memory for an excessive number
502
     * of ACK ranges.
503
     */
504
322k
    for (i = 0; i < ack_range_count; ++i)
505
34.3k
        if (!PACKET_skip_quic_vlint(&pkt)
506
34.0k
            || !PACKET_skip_quic_vlint(&pkt))
507
566
            return 0;
508
509
    /* (cannot overflow because QUIC vlints can only encode up to 2**62-1) */
510
287k
    *total_ranges = ack_range_count + 1;
511
287k
    return 1;
512
288k
}
513
514
int ossl_quic_wire_decode_frame_ack(PACKET *pkt,
515
    uint32_t ack_delay_exponent,
516
    OSSL_QUIC_FRAME_ACK *ack,
517
    uint64_t *total_ranges)
518
287k
{
519
287k
    uint64_t frame_type, largest_ackd, ack_delay_raw;
520
287k
    uint64_t ack_range_count, first_ack_range, start, end, i;
521
522
    /* This call matches both ACK_WITHOUT_ECN and ACK_WITH_ECN. */
523
287k
    if (!expect_frame_header_mask(pkt, OSSL_QUIC_FRAME_TYPE_ACK_WITHOUT_ECN,
524
287k
            1, &frame_type)
525
287k
        || !PACKET_get_quic_vlint(pkt, &largest_ackd)
526
287k
        || !PACKET_get_quic_vlint(pkt, &ack_delay_raw)
527
287k
        || !PACKET_get_quic_vlint(pkt, &ack_range_count)
528
287k
        || !PACKET_get_quic_vlint(pkt, &first_ack_range))
529
91
        return 0;
530
531
287k
    if (first_ack_range > largest_ackd)
532
478
        return 0;
533
534
287k
    if (ack_range_count > SIZE_MAX /* sizeof(uint64_t) > sizeof(size_t)? */)
535
0
        return 0;
536
537
287k
    start = largest_ackd - first_ack_range;
538
539
287k
    if (ack != NULL) {
540
287k
        int err = 0;
541
287k
        ack->delay_time
542
287k
            = ossl_time_multiply(ossl_ticks2time(OSSL_TIME_US),
543
287k
                safe_mul_uint64_t(ack_delay_raw,
544
287k
                    (uint64_t)1 << ack_delay_exponent,
545
287k
                    &err));
546
287k
        if (err)
547
6.31k
            ack->delay_time = ossl_time_infinite();
548
549
287k
        if (ack->num_ack_ranges > 0) {
550
287k
            ack->ack_ranges[0].end = largest_ackd;
551
287k
            ack->ack_ranges[0].start = start;
552
287k
        }
553
287k
    }
554
555
309k
    for (i = 0; i < ack_range_count; ++i) {
556
23.2k
        uint64_t gap, len;
557
558
23.2k
        if (!PACKET_get_quic_vlint(pkt, &gap)
559
23.2k
            || !PACKET_get_quic_vlint(pkt, &len))
560
82
            return 0;
561
562
23.2k
        end = start - gap - 2;
563
23.2k
        if (start < gap + 2 || len > end)
564
495
            return 0;
565
566
22.7k
        if (ack != NULL && i + 1 < ack->num_ack_ranges) {
567
22.7k
            ack->ack_ranges[i + 1].start = start = end - len;
568
22.7k
            ack->ack_ranges[i + 1].end = end;
569
22.7k
        }
570
22.7k
    }
571
572
286k
    if (ack != NULL && ack_range_count + 1 < ack->num_ack_ranges)
573
0
        ack->num_ack_ranges = (size_t)ack_range_count + 1;
574
575
286k
    if (total_ranges != NULL)
576
0
        *total_ranges = ack_range_count + 1;
577
578
286k
    if (frame_type == OSSL_QUIC_FRAME_TYPE_ACK_WITH_ECN) {
579
97.6k
        uint64_t ect0, ect1, ecnce;
580
581
97.6k
        if (!PACKET_get_quic_vlint(pkt, &ect0)
582
97.5k
            || !PACKET_get_quic_vlint(pkt, &ect1)
583
97.5k
            || !PACKET_get_quic_vlint(pkt, &ecnce))
584
158
            return 0;
585
586
97.4k
        if (ack != NULL) {
587
97.4k
            ack->ect0 = ect0;
588
97.4k
            ack->ect1 = ect1;
589
97.4k
            ack->ecnce = ecnce;
590
97.4k
            ack->ecn_present = 1;
591
97.4k
        }
592
189k
    } else if (ack != NULL) {
593
189k
        ack->ecn_present = 0;
594
189k
    }
595
596
286k
    return 1;
597
286k
}
598
599
int ossl_quic_wire_decode_frame_reset_stream(PACKET *pkt,
600
    OSSL_QUIC_FRAME_RESET_STREAM *f)
601
8.45k
{
602
8.45k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_RESET_STREAM)
603
8.45k
        || !PACKET_get_quic_vlint(pkt, &f->stream_id)
604
8.43k
        || !PACKET_get_quic_vlint(pkt, &f->app_error_code)
605
8.41k
        || !PACKET_get_quic_vlint(pkt, &f->final_size))
606
53
        return 0;
607
608
8.39k
    return 1;
609
8.45k
}
610
611
int ossl_quic_wire_decode_frame_stop_sending(PACKET *pkt,
612
    OSSL_QUIC_FRAME_STOP_SENDING *f)
613
92.2k
{
614
92.2k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_STOP_SENDING)
615
92.2k
        || !PACKET_get_quic_vlint(pkt, &f->stream_id)
616
92.1k
        || !PACKET_get_quic_vlint(pkt, &f->app_error_code))
617
53
        return 0;
618
619
92.1k
    return 1;
620
92.2k
}
621
622
int ossl_quic_wire_decode_frame_crypto(PACKET *pkt,
623
    int nodata,
624
    OSSL_QUIC_FRAME_CRYPTO *f)
625
336k
{
626
336k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_CRYPTO)
627
336k
        || !PACKET_get_quic_vlint(pkt, &f->offset)
628
336k
        || !PACKET_get_quic_vlint(pkt, &f->len)
629
336k
        || f->len > SIZE_MAX /* sizeof(uint64_t) > sizeof(size_t)? */)
630
173
        return 0;
631
632
336k
    if (f->offset + f->len > (((uint64_t)1) << 62) - 1)
633
        /* RFC 9000 s. 19.6 */
634
17
        return 0;
635
636
336k
    if (nodata) {
637
0
        f->data = NULL;
638
336k
    } else {
639
336k
        if (PACKET_remaining(pkt) < f->len)
640
623
            return 0;
641
642
335k
        f->data = PACKET_data(pkt);
643
644
335k
        if (!PACKET_forward(pkt, (size_t)f->len))
645
0
            return 0;
646
335k
    }
647
648
335k
    return 1;
649
336k
}
650
651
int ossl_quic_wire_decode_frame_new_token(PACKET *pkt,
652
    const unsigned char **token,
653
    size_t *token_len)
654
3.89k
{
655
3.89k
    uint64_t token_len_;
656
657
3.89k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_NEW_TOKEN)
658
3.89k
        || !PACKET_get_quic_vlint(pkt, &token_len_))
659
21
        return 0;
660
661
3.87k
    if (token_len_ > SIZE_MAX)
662
0
        return 0;
663
664
3.87k
    *token = PACKET_data(pkt);
665
3.87k
    *token_len = (size_t)token_len_;
666
667
3.87k
    if (!PACKET_forward(pkt, (size_t)token_len_))
668
47
        return 0;
669
670
3.82k
    return 1;
671
3.87k
}
672
673
int ossl_quic_wire_decode_frame_stream(PACKET *pkt,
674
    int nodata,
675
    OSSL_QUIC_FRAME_STREAM *f)
676
69.5k
{
677
69.5k
    uint64_t frame_type;
678
679
    /* This call matches all STREAM values (low 3 bits are masked). */
680
69.5k
    if (!expect_frame_header_mask(pkt, OSSL_QUIC_FRAME_TYPE_STREAM,
681
69.5k
            OSSL_QUIC_FRAME_FLAG_STREAM_MASK,
682
69.5k
            &frame_type)
683
69.5k
        || !PACKET_get_quic_vlint(pkt, &f->stream_id))
684
24
        return 0;
685
686
69.5k
    if ((frame_type & OSSL_QUIC_FRAME_FLAG_STREAM_OFF) != 0) {
687
49.0k
        if (!PACKET_get_quic_vlint(pkt, &f->offset))
688
16
            return 0;
689
49.0k
    } else {
690
20.5k
        f->offset = 0;
691
20.5k
    }
692
693
69.5k
    f->has_explicit_len = ((frame_type & OSSL_QUIC_FRAME_FLAG_STREAM_LEN) != 0);
694
69.5k
    f->is_fin = ((frame_type & OSSL_QUIC_FRAME_FLAG_STREAM_FIN) != 0);
695
696
69.5k
    if (f->has_explicit_len) {
697
41.1k
        if (!PACKET_get_quic_vlint(pkt, &f->len))
698
21
            return 0;
699
41.1k
    } else {
700
28.4k
        if (nodata)
701
0
            f->len = 0;
702
28.4k
        else
703
28.4k
            f->len = PACKET_remaining(pkt);
704
28.4k
    }
705
706
    /*
707
     * RFC 9000 s. 19.8: "The largest offset delivered on a stream -- the sum of
708
     * the offset and data length -- cannot exceed 2**62 - 1, as it is not
709
     * possible to provide flow control credit for that data."
710
     */
711
69.5k
    if (f->offset + f->len > (((uint64_t)1) << 62) - 1)
712
9
        return 0;
713
714
69.5k
    if (nodata) {
715
0
        f->data = NULL;
716
69.5k
    } else {
717
69.5k
        f->data = PACKET_data(pkt);
718
719
69.5k
        if (f->len > SIZE_MAX /* sizeof(uint64_t) > sizeof(size_t)? */
720
69.5k
            || !PACKET_forward(pkt, (size_t)f->len))
721
337
            return 0;
722
69.5k
    }
723
724
69.1k
    return 1;
725
69.5k
}
726
727
int ossl_quic_wire_decode_frame_max_data(PACKET *pkt,
728
    uint64_t *max_data)
729
53.5k
{
730
53.5k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_MAX_DATA)
731
53.5k
        || !PACKET_get_quic_vlint(pkt, max_data))
732
22
        return 0;
733
734
53.5k
    return 1;
735
53.5k
}
736
737
int ossl_quic_wire_decode_frame_max_stream_data(PACKET *pkt,
738
    uint64_t *stream_id,
739
    uint64_t *max_stream_data)
740
10.3k
{
741
10.3k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_MAX_STREAM_DATA)
742
10.3k
        || !PACKET_get_quic_vlint(pkt, stream_id)
743
10.3k
        || !PACKET_get_quic_vlint(pkt, max_stream_data))
744
35
        return 0;
745
746
10.3k
    return 1;
747
10.3k
}
748
749
int ossl_quic_wire_decode_frame_max_streams(PACKET *pkt,
750
    uint64_t *max_streams)
751
46.2k
{
752
    /* This call matches both MAX_STREAMS_BIDI and MAX_STREAMS_UNI. */
753
46.2k
    if (!expect_frame_header_mask(pkt, OSSL_QUIC_FRAME_TYPE_MAX_STREAMS_BIDI,
754
46.2k
            1, NULL)
755
46.2k
        || !PACKET_get_quic_vlint(pkt, max_streams))
756
24
        return 0;
757
758
46.2k
    return 1;
759
46.2k
}
760
761
int ossl_quic_wire_decode_frame_data_blocked(PACKET *pkt,
762
    uint64_t *max_data)
763
11.8k
{
764
11.8k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_DATA_BLOCKED)
765
11.8k
        || !PACKET_get_quic_vlint(pkt, max_data))
766
14
        return 0;
767
768
11.8k
    return 1;
769
11.8k
}
770
771
int ossl_quic_wire_decode_frame_stream_data_blocked(PACKET *pkt,
772
    uint64_t *stream_id,
773
    uint64_t *max_stream_data)
774
4.59k
{
775
4.59k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_STREAM_DATA_BLOCKED)
776
4.59k
        || !PACKET_get_quic_vlint(pkt, stream_id)
777
4.57k
        || !PACKET_get_quic_vlint(pkt, max_stream_data))
778
41
        return 0;
779
780
4.55k
    return 1;
781
4.59k
}
782
783
int ossl_quic_wire_decode_frame_streams_blocked(PACKET *pkt,
784
    uint64_t *max_streams)
785
120k
{
786
    /* This call matches both STREAMS_BLOCKED_BIDI and STREAMS_BLOCKED_UNI. */
787
120k
    if (!expect_frame_header_mask(pkt, OSSL_QUIC_FRAME_TYPE_STREAMS_BLOCKED_BIDI,
788
120k
            1, NULL)
789
120k
        || !PACKET_get_quic_vlint(pkt, max_streams))
790
24
        return 0;
791
792
120k
    return 1;
793
120k
}
794
795
int ossl_quic_wire_decode_frame_new_conn_id(PACKET *pkt,
796
    OSSL_QUIC_FRAME_NEW_CONN_ID *f)
797
17.7k
{
798
17.7k
    unsigned int len;
799
800
17.7k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_NEW_CONN_ID)
801
17.7k
        || !PACKET_get_quic_vlint(pkt, &f->seq_num)
802
17.7k
        || !PACKET_get_quic_vlint(pkt, &f->retire_prior_to)
803
17.7k
        || f->seq_num < f->retire_prior_to
804
17.6k
        || !PACKET_get_1(pkt, &len)
805
17.6k
        || len < 1
806
17.6k
        || len > QUIC_MAX_CONN_ID_LEN)
807
57
        return 0;
808
809
17.6k
    f->conn_id.id_len = (unsigned char)len;
810
17.6k
    if (!PACKET_copy_bytes(pkt, f->conn_id.id, len))
811
13
        return 0;
812
813
    /* Clear unused bytes to allow consistent memcmp. */
814
17.6k
    if (len < QUIC_MAX_CONN_ID_LEN)
815
4.66k
        memset(f->conn_id.id + len, 0, QUIC_MAX_CONN_ID_LEN - len);
816
817
17.6k
    if (!PACKET_copy_bytes(pkt, f->stateless_reset.token,
818
17.6k
            sizeof(f->stateless_reset.token)))
819
16
        return 0;
820
821
17.6k
    return 1;
822
17.6k
}
823
824
int ossl_quic_wire_decode_frame_retire_conn_id(PACKET *pkt,
825
    uint64_t *seq_num)
826
75
{
827
75
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_RETIRE_CONN_ID)
828
75
        || !PACKET_get_quic_vlint(pkt, seq_num))
829
11
        return 0;
830
831
64
    return 1;
832
75
}
833
834
int ossl_quic_wire_decode_frame_path_challenge(PACKET *pkt,
835
    uint64_t *data)
836
265k
{
837
265k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_PATH_CHALLENGE)
838
265k
        || !PACKET_get_net_8(pkt, data))
839
72
        return 0;
840
841
265k
    return 1;
842
265k
}
843
844
int ossl_quic_wire_decode_frame_path_response(PACKET *pkt,
845
    uint64_t *data)
846
30.8k
{
847
30.8k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_PATH_RESPONSE)
848
30.8k
        || !PACKET_get_net_8(pkt, data))
849
18
        return 0;
850
851
30.8k
    return 1;
852
30.8k
}
853
854
int ossl_quic_wire_decode_frame_conn_close(PACKET *pkt,
855
    OSSL_QUIC_FRAME_CONN_CLOSE *f)
856
2.51k
{
857
2.51k
    uint64_t frame_type, reason_len;
858
859
    /* This call matches both CONN_CLOSE_TRANSPORT and CONN_CLOSE_APP. */
860
2.51k
    if (!expect_frame_header_mask(pkt, OSSL_QUIC_FRAME_TYPE_CONN_CLOSE_TRANSPORT,
861
2.51k
            1, &frame_type)
862
2.51k
        || !PACKET_get_quic_vlint(pkt, &f->error_code))
863
34
        return 0;
864
865
2.48k
    f->is_app = ((frame_type & 1) != 0);
866
867
2.48k
    if (!f->is_app) {
868
1.69k
        if (!PACKET_get_quic_vlint(pkt, &f->frame_type))
869
25
            return 0;
870
1.69k
    } else {
871
788
        f->frame_type = 0;
872
788
    }
873
874
2.45k
    if (!PACKET_get_quic_vlint(pkt, &reason_len)
875
2.43k
        || reason_len > SIZE_MAX)
876
25
        return 0;
877
878
2.43k
    if (!PACKET_get_bytes(pkt, (const unsigned char **)&f->reason,
879
2.43k
            (size_t)reason_len))
880
333
        return 0;
881
882
2.09k
    f->reason_len = (size_t)reason_len;
883
2.09k
    return 1;
884
2.43k
}
885
886
size_t ossl_quic_wire_decode_padding(PACKET *pkt)
887
597k
{
888
597k
    const unsigned char *start = PACKET_data(pkt), *end = PACKET_end(pkt),
889
597k
                        *p = start;
890
891
12.6M
    while (p < end && *p == 0)
892
12.0M
        ++p;
893
894
597k
    if (!PACKET_forward(pkt, p - start))
895
0
        return 0;
896
897
597k
    return p - start;
898
597k
}
899
900
int ossl_quic_wire_decode_frame_ping(PACKET *pkt)
901
1.89M
{
902
1.89M
    return expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_PING);
903
1.89M
}
904
905
int ossl_quic_wire_decode_frame_handshake_done(PACKET *pkt)
906
558k
{
907
558k
    return expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_HANDSHAKE_DONE);
908
558k
}
909
910
int ossl_quic_wire_peek_transport_param(PACKET *pkt, uint64_t *id)
911
235k
{
912
235k
    return PACKET_peek_quic_vlint(pkt, id);
913
235k
}
914
915
const unsigned char *ossl_quic_wire_decode_transport_param_bytes(PACKET *pkt,
916
    uint64_t *id,
917
    size_t *len)
918
235k
{
919
235k
    uint64_t len_;
920
235k
    const unsigned char *b = NULL;
921
235k
    uint64_t id_;
922
923
235k
    if (!PACKET_get_quic_vlint(pkt, &id_)
924
235k
        || !PACKET_get_quic_vlint(pkt, &len_))
925
42
        return NULL;
926
927
234k
    if (len_ > SIZE_MAX
928
234k
        || !PACKET_get_bytes(pkt, (const unsigned char **)&b, (size_t)len_))
929
246
        return NULL;
930
931
234k
    *len = (size_t)len_;
932
234k
    if (id != NULL)
933
194k
        *id = id_;
934
234k
    return b;
935
234k
}
936
937
int ossl_quic_wire_decode_transport_param_int(PACKET *pkt,
938
    uint64_t *id,
939
    uint64_t *value)
940
138k
{
941
138k
    PACKET sub;
942
943
138k
    sub.curr = ossl_quic_wire_decode_transport_param_bytes(pkt,
944
138k
        id, &sub.remaining);
945
138k
    if (sub.curr == NULL)
946
55
        return 0;
947
948
138k
    if (!PACKET_get_quic_vlint(&sub, value))
949
21
        return 0;
950
951
138k
    if (PACKET_remaining(&sub) > 0)
952
64
        return 0;
953
954
138k
    return 1;
955
138k
}
956
957
int ossl_quic_wire_decode_transport_param_cid(PACKET *pkt,
958
    uint64_t *id,
959
    QUIC_CONN_ID *cid)
960
40.2k
{
961
40.2k
    const unsigned char *body;
962
40.2k
    size_t len = 0;
963
964
40.2k
    body = ossl_quic_wire_decode_transport_param_bytes(pkt, id, &len);
965
40.2k
    if (body == NULL || len > QUIC_MAX_CONN_ID_LEN)
966
26
        return 0;
967
968
40.2k
    cid->id_len = (unsigned char)len;
969
40.2k
    memcpy(cid->id, body, cid->id_len);
970
40.2k
    return 1;
971
40.2k
}
972
973
int ossl_quic_wire_decode_transport_param_preferred_addr(PACKET *pkt,
974
    QUIC_PREFERRED_ADDR *p)
975
96
{
976
96
    const unsigned char *body;
977
96
    uint64_t id;
978
96
    size_t len = 0;
979
96
    PACKET pkt2;
980
96
    unsigned int ipv4_port, ipv6_port, cidl;
981
982
96
    body = ossl_quic_wire_decode_transport_param_bytes(pkt, &id, &len);
983
96
    if (body == NULL
984
65
        || len < QUIC_MIN_ENCODED_PREFERRED_ADDR_LEN
985
43
        || len > QUIC_MAX_ENCODED_PREFERRED_ADDR_LEN
986
39
        || id != QUIC_TPARAM_PREFERRED_ADDR)
987
57
        return 0;
988
989
39
    if (!PACKET_buf_init(&pkt2, body, len))
990
0
        return 0;
991
992
39
    if (!PACKET_copy_bytes(&pkt2, p->ipv4, sizeof(p->ipv4))
993
39
        || !PACKET_get_net_2(&pkt2, &ipv4_port)
994
39
        || !PACKET_copy_bytes(&pkt2, p->ipv6, sizeof(p->ipv6))
995
39
        || !PACKET_get_net_2(&pkt2, &ipv6_port)
996
39
        || !PACKET_get_1(&pkt2, &cidl)
997
39
        || cidl > QUIC_MAX_CONN_ID_LEN
998
34
        || !PACKET_copy_bytes(&pkt2, p->cid.id, cidl)
999
29
        || !PACKET_copy_bytes(&pkt2, p->stateless_reset.token,
1000
29
            sizeof(p->stateless_reset.token)))
1001
21
        return 0;
1002
1003
18
    p->ipv4_port = (uint16_t)ipv4_port;
1004
18
    p->ipv6_port = (uint16_t)ipv6_port;
1005
18
    p->cid.id_len = (unsigned char)cidl;
1006
18
    return 1;
1007
39
}
1008
1009
const char *
1010
ossl_quic_frame_type_to_string(uint64_t frame_type)
1011
13.6k
{
1012
13.6k
    switch (frame_type) {
1013
0
#define X(name)                       \
1014
8.58k
    case OSSL_QUIC_FRAME_TYPE_##name: \
1015
8.58k
        return #name;
1016
0
        X(PADDING)
1017
7
        X(PING)
1018
1.45k
        X(ACK_WITHOUT_ECN)
1019
942
        X(ACK_WITH_ECN)
1020
510
        X(RESET_STREAM)
1021
322
        X(STOP_SENDING)
1022
1.43k
        X(CRYPTO)
1023
142
        X(NEW_TOKEN)
1024
93
        X(MAX_DATA)
1025
176
        X(MAX_STREAM_DATA)
1026
64
        X(MAX_STREAMS_BIDI)
1027
76
        X(MAX_STREAMS_UNI)
1028
35
        X(DATA_BLOCKED)
1029
151
        X(STREAM_DATA_BLOCKED)
1030
62
        X(STREAMS_BLOCKED_BIDI)
1031
160
        X(STREAMS_BLOCKED_UNI)
1032
899
        X(NEW_CONN_ID)
1033
94
        X(RETIRE_CONN_ID)
1034
88
        X(PATH_CHALLENGE)
1035
72
        X(PATH_RESPONSE)
1036
398
        X(CONN_CLOSE_TRANSPORT)
1037
36
        X(CONN_CLOSE_APP)
1038
37
        X(HANDSHAKE_DONE)
1039
186
        X(STREAM)
1040
98
        X(STREAM_FIN)
1041
126
        X(STREAM_LEN)
1042
190
        X(STREAM_LEN_FIN)
1043
165
        X(STREAM_OFF)
1044
108
        X(STREAM_OFF_FIN)
1045
127
        X(STREAM_OFF_LEN)
1046
337
        X(STREAM_OFF_LEN_FIN)
1047
0
#undef X
1048
5.07k
    default:
1049
5.07k
        return NULL;
1050
13.6k
    }
1051
13.6k
}
1052
1053
const char *ossl_quic_err_to_string(uint64_t error_code)
1054
46.3k
{
1055
46.3k
    switch (error_code) {
1056
0
#define X(name)                \
1057
35.0k
    case OSSL_QUIC_ERR_##name: \
1058
35.0k
        return #name;
1059
0
        X(NO_ERROR)
1060
17.9k
        X(INTERNAL_ERROR)
1061
96
        X(CONNECTION_REFUSED)
1062
225
        X(FLOW_CONTROL_ERROR)
1063
250
        X(STREAM_LIMIT_ERROR)
1064
795
        X(STREAM_STATE_ERROR)
1065
360
        X(FINAL_SIZE_ERROR)
1066
9.83k
        X(FRAME_ENCODING_ERROR)
1067
1.04k
        X(TRANSPORT_PARAMETER_ERROR)
1068
711
        X(CONNECTION_ID_LIMIT_ERROR)
1069
2.96k
        X(PROTOCOL_VIOLATION)
1070
14
        X(INVALID_TOKEN)
1071
0
        X(APPLICATION_ERROR)
1072
507
        X(CRYPTO_BUFFER_EXCEEDED)
1073
304
        X(KEY_UPDATE_ERROR)
1074
0
        X(AEAD_LIMIT_REACHED)
1075
0
        X(NO_VIABLE_PATH)
1076
0
#undef X
1077
11.2k
    default:
1078
        return NULL;
1079
46.3k
    }
1080
46.3k
}