Coverage Report

Created: 2026-05-24 07:14

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/openssl35/ssl/quic/quic_wire.c
Line
Count
Source
1
/*
2
 * Copyright 2022-2024 The OpenSSL Project Authors. All Rights Reserved.
3
 *
4
 * Licensed under the Apache License 2.0 (the "License").  You may not use
5
 * this file except in compliance with the License.  You can obtain a copy
6
 * in the file LICENSE in the source distribution or at
7
 * https://www.openssl.org/source/license.html
8
 */
9
10
#include <openssl/macros.h>
11
#include <openssl/objects.h>
12
#include "internal/quic_ssl.h"
13
#include "internal/quic_vlint.h"
14
#include "internal/quic_wire.h"
15
#include "internal/quic_error.h"
16
17
OSSL_SAFE_MATH_UNSIGNED(uint64_t, uint64_t)
18
19
int ossl_quic_frame_ack_contains_pn(const OSSL_QUIC_FRAME_ACK *ack, QUIC_PN pn)
20
49.9k
{
21
49.9k
    size_t i;
22
23
71.9k
    for (i = 0; i < ack->num_ack_ranges; ++i)
24
68.3k
        if (pn >= ack->ack_ranges[i].start
25
48.0k
            && pn <= ack->ack_ranges[i].end)
26
46.4k
            return 1;
27
28
3.56k
    return 0;
29
49.9k
}
30
31
/*
32
 * QUIC Wire Format Encoding
33
 * =========================
34
 */
35
36
int ossl_quic_wire_encode_padding(WPACKET *pkt, size_t num_bytes)
37
1.86M
{
38
    /*
39
     * PADDING is frame type zero, which as a variable-length integer is
40
     * represented as a single zero byte. As an optimisation, just use memset.
41
     */
42
1.86M
    return WPACKET_memset(pkt, 0, num_bytes);
43
1.86M
}
44
45
static int encode_frame_hdr(WPACKET *pkt, uint64_t frame_type)
46
9.27M
{
47
9.27M
    return WPACKET_quic_write_vlint(pkt, frame_type);
48
9.27M
}
49
50
int ossl_quic_wire_encode_frame_ping(WPACKET *pkt)
51
2.31M
{
52
2.31M
    return encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_PING);
53
2.31M
}
54
55
int ossl_quic_wire_encode_frame_ack(WPACKET *pkt,
56
    uint32_t ack_delay_exponent,
57
    const OSSL_QUIC_FRAME_ACK *ack)
58
6.93M
{
59
6.93M
    uint64_t frame_type = ack->ecn_present ? OSSL_QUIC_FRAME_TYPE_ACK_WITH_ECN
60
6.93M
                                           : OSSL_QUIC_FRAME_TYPE_ACK_WITHOUT_ECN;
61
62
6.93M
    uint64_t largest_ackd, first_ack_range, ack_delay_enc;
63
6.93M
    uint64_t i, num_ack_ranges = ack->num_ack_ranges;
64
6.93M
    OSSL_TIME delay;
65
66
6.93M
    if (num_ack_ranges == 0)
67
387k
        return 0;
68
69
6.55M
    delay = ossl_time_divide(ossl_time_divide(ack->delay_time, OSSL_TIME_US),
70
6.55M
        (uint64_t)1 << ack_delay_exponent);
71
6.55M
    ack_delay_enc = ossl_time2ticks(delay);
72
73
6.55M
    largest_ackd = ack->ack_ranges[0].end;
74
6.55M
    first_ack_range = ack->ack_ranges[0].end - ack->ack_ranges[0].start;
75
76
6.55M
    if (!encode_frame_hdr(pkt, frame_type)
77
6.55M
        || !WPACKET_quic_write_vlint(pkt, largest_ackd)
78
6.55M
        || !WPACKET_quic_write_vlint(pkt, ack_delay_enc)
79
6.55M
        || !WPACKET_quic_write_vlint(pkt, num_ack_ranges - 1)
80
6.55M
        || !WPACKET_quic_write_vlint(pkt, first_ack_range))
81
329
        return 0;
82
83
18.3M
    for (i = 1; i < num_ack_ranges; ++i) {
84
11.7M
        uint64_t gap, range_len;
85
86
11.7M
        gap = ack->ack_ranges[i - 1].start - ack->ack_ranges[i].end - 2;
87
11.7M
        range_len = ack->ack_ranges[i].end - ack->ack_ranges[i].start;
88
89
11.7M
        if (!WPACKET_quic_write_vlint(pkt, gap)
90
11.7M
            || !WPACKET_quic_write_vlint(pkt, range_len))
91
43
            return 0;
92
11.7M
    }
93
94
6.55M
    if (ack->ecn_present)
95
0
        if (!WPACKET_quic_write_vlint(pkt, ack->ect0)
96
0
            || !WPACKET_quic_write_vlint(pkt, ack->ect1)
97
0
            || !WPACKET_quic_write_vlint(pkt, ack->ecnce))
98
0
            return 0;
99
100
6.55M
    return 1;
101
6.55M
}
102
103
int ossl_quic_wire_encode_frame_reset_stream(WPACKET *pkt,
104
    const OSSL_QUIC_FRAME_RESET_STREAM *f)
105
6.68k
{
106
6.68k
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_RESET_STREAM)
107
6.48k
        || !WPACKET_quic_write_vlint(pkt, f->stream_id)
108
6.42k
        || !WPACKET_quic_write_vlint(pkt, f->app_error_code)
109
6.37k
        || !WPACKET_quic_write_vlint(pkt, f->final_size))
110
359
        return 0;
111
112
6.32k
    return 1;
113
6.68k
}
114
115
int ossl_quic_wire_encode_frame_stop_sending(WPACKET *pkt,
116
    const OSSL_QUIC_FRAME_STOP_SENDING *f)
117
0
{
118
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_STOP_SENDING)
119
0
        || !WPACKET_quic_write_vlint(pkt, f->stream_id)
120
0
        || !WPACKET_quic_write_vlint(pkt, f->app_error_code))
121
0
        return 0;
122
123
0
    return 1;
124
0
}
125
126
int ossl_quic_wire_encode_frame_crypto_hdr(WPACKET *pkt,
127
    const OSSL_QUIC_FRAME_CRYPTO *f)
128
102k
{
129
102k
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_CRYPTO)
130
102k
        || !WPACKET_quic_write_vlint(pkt, f->offset)
131
102k
        || !WPACKET_quic_write_vlint(pkt, f->len))
132
0
        return 0;
133
134
102k
    return 1;
135
102k
}
136
137
size_t ossl_quic_wire_get_encoded_frame_len_crypto_hdr(const OSSL_QUIC_FRAME_CRYPTO *f)
138
102k
{
139
102k
    size_t a, b, c;
140
141
102k
    a = ossl_quic_vlint_encode_len(OSSL_QUIC_FRAME_TYPE_CRYPTO);
142
102k
    b = ossl_quic_vlint_encode_len(f->offset);
143
102k
    c = ossl_quic_vlint_encode_len(f->len);
144
102k
    if (a == 0 || b == 0 || c == 0)
145
0
        return 0;
146
147
102k
    return a + b + c;
148
102k
}
149
150
void *ossl_quic_wire_encode_frame_crypto(WPACKET *pkt,
151
    const OSSL_QUIC_FRAME_CRYPTO *f)
152
0
{
153
0
    unsigned char *p = NULL;
154
155
0
    if (!ossl_quic_wire_encode_frame_crypto_hdr(pkt, f)
156
0
        || f->len > SIZE_MAX /* sizeof(uint64_t) > sizeof(size_t)? */
157
0
        || !WPACKET_allocate_bytes(pkt, (size_t)f->len, &p))
158
0
        return NULL;
159
160
0
    if (f->data != NULL)
161
0
        memcpy(p, f->data, (size_t)f->len);
162
163
0
    return p;
164
0
}
165
166
int ossl_quic_wire_encode_frame_new_token(WPACKET *pkt,
167
    const unsigned char *token,
168
    size_t token_len)
169
0
{
170
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_NEW_TOKEN)
171
0
        || !WPACKET_quic_write_vlint(pkt, token_len)
172
0
        || !WPACKET_memcpy(pkt, token, token_len))
173
0
        return 0;
174
175
0
    return 1;
176
0
}
177
178
int ossl_quic_wire_encode_frame_stream_hdr(WPACKET *pkt,
179
    const OSSL_QUIC_FRAME_STREAM *f)
180
6.47k
{
181
6.47k
    uint64_t frame_type = OSSL_QUIC_FRAME_TYPE_STREAM;
182
183
6.47k
    if (f->offset != 0)
184
2.48k
        frame_type |= OSSL_QUIC_FRAME_FLAG_STREAM_OFF;
185
6.47k
    if (f->has_explicit_len)
186
2.04k
        frame_type |= OSSL_QUIC_FRAME_FLAG_STREAM_LEN;
187
6.47k
    if (f->is_fin)
188
0
        frame_type |= OSSL_QUIC_FRAME_FLAG_STREAM_FIN;
189
190
6.47k
    if (!encode_frame_hdr(pkt, frame_type)
191
6.47k
        || !WPACKET_quic_write_vlint(pkt, f->stream_id))
192
0
        return 0;
193
194
6.47k
    if (f->offset != 0 && !WPACKET_quic_write_vlint(pkt, f->offset))
195
0
        return 0;
196
197
6.47k
    if (f->has_explicit_len && !WPACKET_quic_write_vlint(pkt, f->len))
198
0
        return 0;
199
200
6.47k
    return 1;
201
6.47k
}
202
203
size_t ossl_quic_wire_get_encoded_frame_len_stream_hdr(const OSSL_QUIC_FRAME_STREAM *f)
204
8.55k
{
205
8.55k
    size_t a, b, c, d;
206
207
8.55k
    a = ossl_quic_vlint_encode_len(OSSL_QUIC_FRAME_TYPE_STREAM);
208
8.55k
    b = ossl_quic_vlint_encode_len(f->stream_id);
209
8.55k
    if (a == 0 || b == 0)
210
0
        return 0;
211
212
8.55k
    if (f->offset > 0) {
213
3.16k
        c = ossl_quic_vlint_encode_len(f->offset);
214
3.16k
        if (c == 0)
215
0
            return 0;
216
5.38k
    } else {
217
5.38k
        c = 0;
218
5.38k
    }
219
220
8.55k
    if (f->has_explicit_len) {
221
2.04k
        d = ossl_quic_vlint_encode_len(f->len);
222
2.04k
        if (d == 0)
223
0
            return 0;
224
6.50k
    } else {
225
6.50k
        d = 0;
226
6.50k
    }
227
228
8.55k
    return a + b + c + d;
229
8.55k
}
230
231
void *ossl_quic_wire_encode_frame_stream(WPACKET *pkt,
232
    const OSSL_QUIC_FRAME_STREAM *f)
233
0
{
234
235
0
    unsigned char *p = NULL;
236
237
0
    if (!ossl_quic_wire_encode_frame_stream_hdr(pkt, f)
238
0
        || f->len > SIZE_MAX /* sizeof(uint64_t) > sizeof(size_t)? */)
239
0
        return NULL;
240
241
0
    if (!WPACKET_allocate_bytes(pkt, (size_t)f->len, &p))
242
0
        return NULL;
243
244
0
    if (f->data != NULL)
245
0
        memcpy(p, f->data, (size_t)f->len);
246
247
0
    return p;
248
0
}
249
250
int ossl_quic_wire_encode_frame_max_data(WPACKET *pkt,
251
    uint64_t max_data)
252
0
{
253
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_MAX_DATA)
254
0
        || !WPACKET_quic_write_vlint(pkt, max_data))
255
0
        return 0;
256
257
0
    return 1;
258
0
}
259
260
int ossl_quic_wire_encode_frame_max_stream_data(WPACKET *pkt,
261
    uint64_t stream_id,
262
    uint64_t max_data)
263
1.37k
{
264
1.37k
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_MAX_STREAM_DATA)
265
1.26k
        || !WPACKET_quic_write_vlint(pkt, stream_id)
266
1.24k
        || !WPACKET_quic_write_vlint(pkt, max_data))
267
174
        return 0;
268
269
1.20k
    return 1;
270
1.37k
}
271
272
int ossl_quic_wire_encode_frame_max_streams(WPACKET *pkt,
273
    char is_uni,
274
    uint64_t max_streams)
275
0
{
276
0
    if (!encode_frame_hdr(pkt, is_uni ? OSSL_QUIC_FRAME_TYPE_MAX_STREAMS_UNI : OSSL_QUIC_FRAME_TYPE_MAX_STREAMS_BIDI)
277
0
        || !WPACKET_quic_write_vlint(pkt, max_streams))
278
0
        return 0;
279
280
0
    return 1;
281
0
}
282
283
int ossl_quic_wire_encode_frame_data_blocked(WPACKET *pkt,
284
    uint64_t max_data)
285
0
{
286
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_DATA_BLOCKED)
287
0
        || !WPACKET_quic_write_vlint(pkt, max_data))
288
0
        return 0;
289
290
0
    return 1;
291
0
}
292
293
int ossl_quic_wire_encode_frame_stream_data_blocked(WPACKET *pkt,
294
    uint64_t stream_id,
295
    uint64_t max_stream_data)
296
0
{
297
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_STREAM_DATA_BLOCKED)
298
0
        || !WPACKET_quic_write_vlint(pkt, stream_id)
299
0
        || !WPACKET_quic_write_vlint(pkt, max_stream_data))
300
0
        return 0;
301
302
0
    return 1;
303
0
}
304
305
int ossl_quic_wire_encode_frame_streams_blocked(WPACKET *pkt,
306
    char is_uni,
307
    uint64_t max_streams)
308
0
{
309
0
    if (!encode_frame_hdr(pkt, is_uni ? OSSL_QUIC_FRAME_TYPE_STREAMS_BLOCKED_UNI : OSSL_QUIC_FRAME_TYPE_STREAMS_BLOCKED_BIDI)
310
0
        || !WPACKET_quic_write_vlint(pkt, max_streams))
311
0
        return 0;
312
313
0
    return 1;
314
0
}
315
316
int ossl_quic_wire_encode_frame_new_conn_id(WPACKET *pkt,
317
    const OSSL_QUIC_FRAME_NEW_CONN_ID *f)
318
0
{
319
0
    if (f->conn_id.id_len < 1
320
0
        || f->conn_id.id_len > QUIC_MAX_CONN_ID_LEN)
321
0
        return 0;
322
323
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_NEW_CONN_ID)
324
0
        || !WPACKET_quic_write_vlint(pkt, f->seq_num)
325
0
        || !WPACKET_quic_write_vlint(pkt, f->retire_prior_to)
326
0
        || !WPACKET_put_bytes_u8(pkt, f->conn_id.id_len)
327
0
        || !WPACKET_memcpy(pkt, f->conn_id.id, f->conn_id.id_len)
328
0
        || !WPACKET_memcpy(pkt, f->stateless_reset.token,
329
0
            sizeof(f->stateless_reset.token)))
330
0
        return 0;
331
332
0
    return 1;
333
0
}
334
335
int ossl_quic_wire_encode_frame_retire_conn_id(WPACKET *pkt,
336
    uint64_t seq_num)
337
10.9k
{
338
10.9k
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_RETIRE_CONN_ID)
339
10.9k
        || !WPACKET_quic_write_vlint(pkt, seq_num))
340
0
        return 0;
341
342
10.9k
    return 1;
343
10.9k
}
344
345
int ossl_quic_wire_encode_frame_path_challenge(WPACKET *pkt,
346
    uint64_t data)
347
0
{
348
0
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_PATH_CHALLENGE)
349
0
        || !WPACKET_put_bytes_u64(pkt, data))
350
0
        return 0;
351
352
0
    return 1;
353
0
}
354
355
int ossl_quic_wire_encode_frame_path_response(WPACKET *pkt,
356
    uint64_t data)
357
261k
{
358
261k
    if (!encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_PATH_RESPONSE)
359
261k
        || !WPACKET_put_bytes_u64(pkt, data))
360
0
        return 0;
361
362
261k
    return 1;
363
261k
}
364
365
int ossl_quic_wire_encode_frame_conn_close(WPACKET *pkt,
366
    const OSSL_QUIC_FRAME_CONN_CLOSE *f)
367
24.2k
{
368
24.2k
    if (!encode_frame_hdr(pkt, f->is_app ? OSSL_QUIC_FRAME_TYPE_CONN_CLOSE_APP : OSSL_QUIC_FRAME_TYPE_CONN_CLOSE_TRANSPORT)
369
24.2k
        || !WPACKET_quic_write_vlint(pkt, f->error_code))
370
34
        return 0;
371
372
    /*
373
     * RFC 9000 s. 19.19: The application-specific variant of CONNECTION_CLOSE
374
     * (type 0x1d) does not include this field.
375
     */
376
24.1k
    if (!f->is_app && !WPACKET_quic_write_vlint(pkt, f->frame_type))
377
77
        return 0;
378
379
24.1k
    if (!WPACKET_quic_write_vlint(pkt, f->reason_len)
380
24.0k
        || !WPACKET_memcpy(pkt, f->reason, f->reason_len))
381
136
        return 0;
382
383
23.9k
    return 1;
384
24.1k
}
385
386
int ossl_quic_wire_encode_frame_handshake_done(WPACKET *pkt)
387
0
{
388
0
    return encode_frame_hdr(pkt, OSSL_QUIC_FRAME_TYPE_HANDSHAKE_DONE);
389
0
}
390
391
unsigned char *ossl_quic_wire_encode_transport_param_bytes(WPACKET *pkt,
392
    uint64_t id,
393
    const unsigned char *value,
394
    size_t value_len)
395
103k
{
396
103k
    unsigned char *b = NULL;
397
398
103k
    if (!WPACKET_quic_write_vlint(pkt, id)
399
103k
        || !WPACKET_quic_write_vlint(pkt, value_len))
400
0
        return NULL;
401
402
103k
    if (value_len == 0)
403
103k
        b = WPACKET_get_curr(pkt);
404
0
    else if (!WPACKET_allocate_bytes(pkt, value_len, (unsigned char **)&b))
405
0
        return NULL;
406
407
103k
    if (value != NULL)
408
29.3k
        memcpy(b, value, value_len);
409
410
103k
    return b;
411
103k
}
412
413
int ossl_quic_wire_encode_transport_param_int(WPACKET *pkt,
414
    uint64_t id,
415
    uint64_t value)
416
467k
{
417
467k
    if (!WPACKET_quic_write_vlint(pkt, id)
418
467k
        || !WPACKET_quic_write_vlint(pkt, ossl_quic_vlint_encode_len(value))
419
467k
        || !WPACKET_quic_write_vlint(pkt, value))
420
0
        return 0;
421
422
467k
    return 1;
423
467k
}
424
425
int ossl_quic_wire_encode_transport_param_cid(WPACKET *wpkt,
426
    uint64_t id,
427
    const QUIC_CONN_ID *cid)
428
29.3k
{
429
29.3k
    if (cid->id_len > QUIC_MAX_CONN_ID_LEN)
430
0
        return 0;
431
432
29.3k
    if (ossl_quic_wire_encode_transport_param_bytes(wpkt, id,
433
29.3k
            cid->id,
434
29.3k
            cid->id_len)
435
29.3k
        == NULL)
436
0
        return 0;
437
438
29.3k
    return 1;
439
29.3k
}
440
441
/*
442
 * QUIC Wire Format Decoding
443
 * =========================
444
 */
445
int ossl_quic_wire_peek_frame_header(PACKET *pkt, uint64_t *type,
446
    int *was_minimal)
447
4.87M
{
448
4.87M
    return PACKET_peek_quic_vlint_ex(pkt, type, was_minimal);
449
4.87M
}
450
451
int ossl_quic_wire_skip_frame_header(PACKET *pkt, uint64_t *type)
452
4.56M
{
453
4.56M
    return PACKET_get_quic_vlint(pkt, type);
454
4.56M
}
455
456
static int expect_frame_header_mask(PACKET *pkt,
457
    uint64_t expected_frame_type,
458
    uint64_t mask_bits,
459
    uint64_t *actual_frame_type)
460
912k
{
461
912k
    uint64_t actual_frame_type_;
462
463
912k
    if (!ossl_quic_wire_skip_frame_header(pkt, &actual_frame_type_)
464
912k
        || (actual_frame_type_ & ~mask_bits) != expected_frame_type)
465
0
        return 0;
466
467
912k
    if (actual_frame_type != NULL)
468
410k
        *actual_frame_type = actual_frame_type_;
469
470
912k
    return 1;
471
912k
}
472
473
static int expect_frame_header(PACKET *pkt, uint64_t expected_frame_type)
474
3.65M
{
475
3.65M
    uint64_t actual_frame_type;
476
477
3.65M
    if (!ossl_quic_wire_skip_frame_header(pkt, &actual_frame_type)
478
3.65M
        || actual_frame_type != expected_frame_type)
479
0
        return 0;
480
481
3.65M
    return 1;
482
3.65M
}
483
484
int ossl_quic_wire_peek_frame_ack_num_ranges(const PACKET *orig_pkt,
485
    uint64_t *total_ranges)
486
340k
{
487
340k
    PACKET pkt = *orig_pkt;
488
340k
    uint64_t ack_range_count, i;
489
490
340k
    if (!expect_frame_header_mask(&pkt, OSSL_QUIC_FRAME_TYPE_ACK_WITHOUT_ECN,
491
340k
            1, NULL)
492
340k
        || !PACKET_skip_quic_vlint(&pkt)
493
340k
        || !PACKET_skip_quic_vlint(&pkt)
494
340k
        || !PACKET_get_quic_vlint(&pkt, &ack_range_count))
495
368
        return 0;
496
497
    /*
498
     * Ensure the specified number of ack ranges listed in the ACK frame header
499
     * actually are available in the frame data. This naturally bounds the
500
     * number of ACK ranges which can be requested by the MDPL, and therefore by
501
     * the MTU. This ensures we do not allocate memory for an excessive number
502
     * of ACK ranges.
503
     */
504
373k
    for (i = 0; i < ack_range_count; ++i)
505
34.3k
        if (!PACKET_skip_quic_vlint(&pkt)
506
33.9k
            || !PACKET_skip_quic_vlint(&pkt))
507
563
            return 0;
508
509
    /* (cannot overflow because QUIC vlints can only encode up to 2**62-1) */
510
339k
    *total_ranges = ack_range_count + 1;
511
339k
    return 1;
512
339k
}
513
514
int ossl_quic_wire_decode_frame_ack(PACKET *pkt,
515
    uint32_t ack_delay_exponent,
516
    OSSL_QUIC_FRAME_ACK *ack,
517
    uint64_t *total_ranges)
518
339k
{
519
339k
    uint64_t frame_type, largest_ackd, ack_delay_raw;
520
339k
    uint64_t ack_range_count, first_ack_range, start, end, i;
521
522
    /* This call matches both ACK_WITHOUT_ECN and ACK_WITH_ECN. */
523
339k
    if (!expect_frame_header_mask(pkt, OSSL_QUIC_FRAME_TYPE_ACK_WITHOUT_ECN,
524
339k
            1, &frame_type)
525
339k
        || !PACKET_get_quic_vlint(pkt, &largest_ackd)
526
339k
        || !PACKET_get_quic_vlint(pkt, &ack_delay_raw)
527
339k
        || !PACKET_get_quic_vlint(pkt, &ack_range_count)
528
339k
        || !PACKET_get_quic_vlint(pkt, &first_ack_range))
529
94
        return 0;
530
531
339k
    if (first_ack_range > largest_ackd)
532
475
        return 0;
533
534
338k
    if (ack_range_count > SIZE_MAX /* sizeof(uint64_t) > sizeof(size_t)? */)
535
0
        return 0;
536
537
338k
    start = largest_ackd - first_ack_range;
538
539
338k
    if (ack != NULL) {
540
338k
        int err = 0;
541
338k
        ack->delay_time
542
338k
            = ossl_time_multiply(ossl_ticks2time(OSSL_TIME_US),
543
338k
                safe_mul_uint64_t(ack_delay_raw,
544
338k
                    (uint64_t)1 << ack_delay_exponent,
545
338k
                    &err));
546
338k
        if (err)
547
5.86k
            ack->delay_time = ossl_time_infinite();
548
549
338k
        if (ack->num_ack_ranges > 0) {
550
338k
            ack->ack_ranges[0].end = largest_ackd;
551
338k
            ack->ack_ranges[0].start = start;
552
338k
        }
553
338k
    }
554
555
360k
    for (i = 0; i < ack_range_count; ++i) {
556
22.6k
        uint64_t gap, len;
557
558
22.6k
        if (!PACKET_get_quic_vlint(pkt, &gap)
559
22.6k
            || !PACKET_get_quic_vlint(pkt, &len))
560
79
            return 0;
561
562
22.5k
        end = start - gap - 2;
563
22.5k
        if (start < gap + 2 || len > end)
564
465
            return 0;
565
566
22.1k
        if (ack != NULL && i + 1 < ack->num_ack_ranges) {
567
22.1k
            ack->ack_ranges[i + 1].start = start = end - len;
568
22.1k
            ack->ack_ranges[i + 1].end = end;
569
22.1k
        }
570
22.1k
    }
571
572
338k
    if (ack != NULL && ack_range_count + 1 < ack->num_ack_ranges)
573
0
        ack->num_ack_ranges = (size_t)ack_range_count + 1;
574
575
338k
    if (total_ranges != NULL)
576
0
        *total_ranges = ack_range_count + 1;
577
578
338k
    if (frame_type == OSSL_QUIC_FRAME_TYPE_ACK_WITH_ECN) {
579
103k
        uint64_t ect0, ect1, ecnce;
580
581
103k
        if (!PACKET_get_quic_vlint(pkt, &ect0)
582
103k
            || !PACKET_get_quic_vlint(pkt, &ect1)
583
103k
            || !PACKET_get_quic_vlint(pkt, &ecnce))
584
157
            return 0;
585
586
103k
        if (ack != NULL) {
587
103k
            ack->ect0 = ect0;
588
103k
            ack->ect1 = ect1;
589
103k
            ack->ecnce = ecnce;
590
103k
            ack->ecn_present = 1;
591
103k
        }
592
234k
    } else if (ack != NULL) {
593
234k
        ack->ecn_present = 0;
594
234k
    }
595
596
338k
    return 1;
597
338k
}
598
599
int ossl_quic_wire_decode_frame_reset_stream(PACKET *pkt,
600
    OSSL_QUIC_FRAME_RESET_STREAM *f)
601
8.08k
{
602
8.08k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_RESET_STREAM)
603
8.08k
        || !PACKET_get_quic_vlint(pkt, &f->stream_id)
604
8.06k
        || !PACKET_get_quic_vlint(pkt, &f->app_error_code)
605
8.04k
        || !PACKET_get_quic_vlint(pkt, &f->final_size))
606
59
        return 0;
607
608
8.02k
    return 1;
609
8.08k
}
610
611
int ossl_quic_wire_decode_frame_stop_sending(PACKET *pkt,
612
    OSSL_QUIC_FRAME_STOP_SENDING *f)
613
93.2k
{
614
93.2k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_STOP_SENDING)
615
93.2k
        || !PACKET_get_quic_vlint(pkt, &f->stream_id)
616
93.1k
        || !PACKET_get_quic_vlint(pkt, &f->app_error_code))
617
63
        return 0;
618
619
93.1k
    return 1;
620
93.2k
}
621
622
int ossl_quic_wire_decode_frame_crypto(PACKET *pkt,
623
    int nodata,
624
    OSSL_QUIC_FRAME_CRYPTO *f)
625
359k
{
626
359k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_CRYPTO)
627
359k
        || !PACKET_get_quic_vlint(pkt, &f->offset)
628
359k
        || !PACKET_get_quic_vlint(pkt, &f->len)
629
359k
        || f->len > SIZE_MAX /* sizeof(uint64_t) > sizeof(size_t)? */)
630
183
        return 0;
631
632
359k
    if (f->offset + f->len > (((uint64_t)1) << 62) - 1)
633
        /* RFC 9000 s. 19.6 */
634
21
        return 0;
635
636
359k
    if (nodata) {
637
0
        f->data = NULL;
638
359k
    } else {
639
359k
        if (PACKET_remaining(pkt) < f->len)
640
579
            return 0;
641
642
358k
        f->data = PACKET_data(pkt);
643
644
358k
        if (!PACKET_forward(pkt, (size_t)f->len))
645
0
            return 0;
646
358k
    }
647
648
358k
    return 1;
649
359k
}
650
651
int ossl_quic_wire_decode_frame_new_token(PACKET *pkt,
652
    const unsigned char **token,
653
    size_t *token_len)
654
4.28k
{
655
4.28k
    uint64_t token_len_;
656
657
4.28k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_NEW_TOKEN)
658
4.28k
        || !PACKET_get_quic_vlint(pkt, &token_len_))
659
24
        return 0;
660
661
4.26k
    if (token_len_ > SIZE_MAX)
662
0
        return 0;
663
664
4.26k
    *token = PACKET_data(pkt);
665
4.26k
    *token_len = (size_t)token_len_;
666
667
4.26k
    if (!PACKET_forward(pkt, (size_t)token_len_))
668
63
        return 0;
669
670
4.20k
    return 1;
671
4.26k
}
672
673
int ossl_quic_wire_decode_frame_stream(PACKET *pkt,
674
    int nodata,
675
    OSSL_QUIC_FRAME_STREAM *f)
676
68.3k
{
677
68.3k
    uint64_t frame_type;
678
679
    /* This call matches all STREAM values (low 3 bits are masked). */
680
68.3k
    if (!expect_frame_header_mask(pkt, OSSL_QUIC_FRAME_TYPE_STREAM,
681
68.3k
            OSSL_QUIC_FRAME_FLAG_STREAM_MASK,
682
68.3k
            &frame_type)
683
68.3k
        || !PACKET_get_quic_vlint(pkt, &f->stream_id))
684
27
        return 0;
685
686
68.2k
    if ((frame_type & OSSL_QUIC_FRAME_FLAG_STREAM_OFF) != 0) {
687
47.8k
        if (!PACKET_get_quic_vlint(pkt, &f->offset))
688
20
            return 0;
689
47.8k
    } else {
690
20.3k
        f->offset = 0;
691
20.3k
    }
692
693
68.2k
    f->has_explicit_len = ((frame_type & OSSL_QUIC_FRAME_FLAG_STREAM_LEN) != 0);
694
68.2k
    f->is_fin = ((frame_type & OSSL_QUIC_FRAME_FLAG_STREAM_FIN) != 0);
695
696
68.2k
    if (f->has_explicit_len) {
697
40.2k
        if (!PACKET_get_quic_vlint(pkt, &f->len))
698
26
            return 0;
699
40.2k
    } else {
700
27.9k
        if (nodata)
701
0
            f->len = 0;
702
27.9k
        else
703
27.9k
            f->len = PACKET_remaining(pkt);
704
27.9k
    }
705
706
    /*
707
     * RFC 9000 s. 19.8: "The largest offset delivered on a stream -- the sum of
708
     * the offset and data length -- cannot exceed 2**62 - 1, as it is not
709
     * possible to provide flow control credit for that data."
710
     */
711
68.2k
    if (f->offset + f->len > (((uint64_t)1) << 62) - 1)
712
8
        return 0;
713
714
68.2k
    if (nodata) {
715
0
        f->data = NULL;
716
68.2k
    } else {
717
68.2k
        f->data = PACKET_data(pkt);
718
719
68.2k
        if (f->len > SIZE_MAX /* sizeof(uint64_t) > sizeof(size_t)? */
720
68.2k
            || !PACKET_forward(pkt, (size_t)f->len))
721
337
            return 0;
722
68.2k
    }
723
724
67.8k
    return 1;
725
68.2k
}
726
727
int ossl_quic_wire_decode_frame_max_data(PACKET *pkt,
728
    uint64_t *max_data)
729
57.0k
{
730
57.0k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_MAX_DATA)
731
57.0k
        || !PACKET_get_quic_vlint(pkt, max_data))
732
27
        return 0;
733
734
57.0k
    return 1;
735
57.0k
}
736
737
int ossl_quic_wire_decode_frame_max_stream_data(PACKET *pkt,
738
    uint64_t *stream_id,
739
    uint64_t *max_stream_data)
740
10.2k
{
741
10.2k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_MAX_STREAM_DATA)
742
10.2k
        || !PACKET_get_quic_vlint(pkt, stream_id)
743
10.2k
        || !PACKET_get_quic_vlint(pkt, max_stream_data))
744
32
        return 0;
745
746
10.2k
    return 1;
747
10.2k
}
748
749
int ossl_quic_wire_decode_frame_max_streams(PACKET *pkt,
750
    uint64_t *max_streams)
751
46.4k
{
752
    /* This call matches both MAX_STREAMS_BIDI and MAX_STREAMS_UNI. */
753
46.4k
    if (!expect_frame_header_mask(pkt, OSSL_QUIC_FRAME_TYPE_MAX_STREAMS_BIDI,
754
46.4k
            1, NULL)
755
46.4k
        || !PACKET_get_quic_vlint(pkt, max_streams))
756
31
        return 0;
757
758
46.3k
    return 1;
759
46.4k
}
760
761
int ossl_quic_wire_decode_frame_data_blocked(PACKET *pkt,
762
    uint64_t *max_data)
763
12.4k
{
764
12.4k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_DATA_BLOCKED)
765
12.4k
        || !PACKET_get_quic_vlint(pkt, max_data))
766
14
        return 0;
767
768
12.4k
    return 1;
769
12.4k
}
770
771
int ossl_quic_wire_decode_frame_stream_data_blocked(PACKET *pkt,
772
    uint64_t *stream_id,
773
    uint64_t *max_stream_data)
774
4.64k
{
775
4.64k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_STREAM_DATA_BLOCKED)
776
4.64k
        || !PACKET_get_quic_vlint(pkt, stream_id)
777
4.62k
        || !PACKET_get_quic_vlint(pkt, max_stream_data))
778
40
        return 0;
779
780
4.60k
    return 1;
781
4.64k
}
782
783
int ossl_quic_wire_decode_frame_streams_blocked(PACKET *pkt,
784
    uint64_t *max_streams)
785
115k
{
786
    /* This call matches both STREAMS_BLOCKED_BIDI and STREAMS_BLOCKED_UNI. */
787
115k
    if (!expect_frame_header_mask(pkt, OSSL_QUIC_FRAME_TYPE_STREAMS_BLOCKED_BIDI,
788
115k
            1, NULL)
789
115k
        || !PACKET_get_quic_vlint(pkt, max_streams))
790
24
        return 0;
791
792
115k
    return 1;
793
115k
}
794
795
int ossl_quic_wire_decode_frame_new_conn_id(PACKET *pkt,
796
    OSSL_QUIC_FRAME_NEW_CONN_ID *f)
797
17.7k
{
798
17.7k
    unsigned int len;
799
800
17.7k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_NEW_CONN_ID)
801
17.7k
        || !PACKET_get_quic_vlint(pkt, &f->seq_num)
802
17.7k
        || !PACKET_get_quic_vlint(pkt, &f->retire_prior_to)
803
17.7k
        || f->seq_num < f->retire_prior_to
804
17.6k
        || !PACKET_get_1(pkt, &len)
805
17.6k
        || len < 1
806
17.6k
        || len > QUIC_MAX_CONN_ID_LEN)
807
142
        return 0;
808
809
17.6k
    f->conn_id.id_len = (unsigned char)len;
810
17.6k
    if (!PACKET_copy_bytes(pkt, f->conn_id.id, len))
811
15
        return 0;
812
813
    /* Clear unused bytes to allow consistent memcmp. */
814
17.5k
    if (len < QUIC_MAX_CONN_ID_LEN)
815
4.90k
        memset(f->conn_id.id + len, 0, QUIC_MAX_CONN_ID_LEN - len);
816
817
17.5k
    if (!PACKET_copy_bytes(pkt, f->stateless_reset.token,
818
17.5k
            sizeof(f->stateless_reset.token)))
819
25
        return 0;
820
821
17.5k
    return 1;
822
17.5k
}
823
824
int ossl_quic_wire_decode_frame_retire_conn_id(PACKET *pkt,
825
    uint64_t *seq_num)
826
76
{
827
76
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_RETIRE_CONN_ID)
828
76
        || !PACKET_get_quic_vlint(pkt, seq_num))
829
12
        return 0;
830
831
64
    return 1;
832
76
}
833
834
int ossl_quic_wire_decode_frame_path_challenge(PACKET *pkt,
835
    uint64_t *data)
836
261k
{
837
261k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_PATH_CHALLENGE)
838
261k
        || !PACKET_get_net_8(pkt, data))
839
78
        return 0;
840
841
261k
    return 1;
842
261k
}
843
844
int ossl_quic_wire_decode_frame_path_response(PACKET *pkt,
845
    uint64_t *data)
846
30.7k
{
847
30.7k
    if (!expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_PATH_RESPONSE)
848
30.7k
        || !PACKET_get_net_8(pkt, data))
849
19
        return 0;
850
851
30.7k
    return 1;
852
30.7k
}
853
854
int ossl_quic_wire_decode_frame_conn_close(PACKET *pkt,
855
    OSSL_QUIC_FRAME_CONN_CLOSE *f)
856
2.40k
{
857
2.40k
    uint64_t frame_type, reason_len;
858
859
    /* This call matches both CONN_CLOSE_TRANSPORT and CONN_CLOSE_APP. */
860
2.40k
    if (!expect_frame_header_mask(pkt, OSSL_QUIC_FRAME_TYPE_CONN_CLOSE_TRANSPORT,
861
2.40k
            1, &frame_type)
862
2.40k
        || !PACKET_get_quic_vlint(pkt, &f->error_code))
863
29
        return 0;
864
865
2.37k
    f->is_app = ((frame_type & 1) != 0);
866
867
2.37k
    if (!f->is_app) {
868
1.60k
        if (!PACKET_get_quic_vlint(pkt, &f->frame_type))
869
29
            return 0;
870
1.60k
    } else {
871
776
        f->frame_type = 0;
872
776
    }
873
874
2.34k
    if (!PACKET_get_quic_vlint(pkt, &reason_len)
875
2.32k
        || reason_len > SIZE_MAX)
876
27
        return 0;
877
878
2.32k
    if (!PACKET_get_bytes(pkt, (const unsigned char **)&f->reason,
879
2.32k
            (size_t)reason_len))
880
330
        return 0;
881
882
1.99k
    f->reason_len = (size_t)reason_len;
883
1.99k
    return 1;
884
2.32k
}
885
886
size_t ossl_quic_wire_decode_padding(PACKET *pkt)
887
642k
{
888
642k
    const unsigned char *start = PACKET_data(pkt), *end = PACKET_end(pkt),
889
642k
                        *p = start;
890
891
12.3M
    while (p < end && *p == 0)
892
11.6M
        ++p;
893
894
642k
    if (!PACKET_forward(pkt, p - start))
895
0
        return 0;
896
897
642k
    return p - start;
898
642k
}
899
900
int ossl_quic_wire_decode_frame_ping(PACKET *pkt)
901
2.26M
{
902
2.26M
    return expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_PING);
903
2.26M
}
904
905
int ossl_quic_wire_decode_frame_handshake_done(PACKET *pkt)
906
529k
{
907
529k
    return expect_frame_header(pkt, OSSL_QUIC_FRAME_TYPE_HANDSHAKE_DONE);
908
529k
}
909
910
int ossl_quic_wire_peek_transport_param(PACKET *pkt, uint64_t *id)
911
237k
{
912
237k
    return PACKET_peek_quic_vlint(pkt, id);
913
237k
}
914
915
const unsigned char *ossl_quic_wire_decode_transport_param_bytes(PACKET *pkt,
916
    uint64_t *id,
917
    size_t *len)
918
236k
{
919
236k
    uint64_t len_;
920
236k
    const unsigned char *b = NULL;
921
236k
    uint64_t id_;
922
923
236k
    if (!PACKET_get_quic_vlint(pkt, &id_)
924
236k
        || !PACKET_get_quic_vlint(pkt, &len_))
925
48
        return NULL;
926
927
236k
    if (len_ > SIZE_MAX
928
236k
        || !PACKET_get_bytes(pkt, (const unsigned char **)&b, (size_t)len_))
929
184
        return NULL;
930
931
236k
    *len = (size_t)len_;
932
236k
    if (id != NULL)
933
196k
        *id = id_;
934
236k
    return b;
935
236k
}
936
937
int ossl_quic_wire_decode_transport_param_int(PACKET *pkt,
938
    uint64_t *id,
939
    uint64_t *value)
940
141k
{
941
141k
    PACKET sub;
942
943
141k
    sub.curr = ossl_quic_wire_decode_transport_param_bytes(pkt,
944
141k
        id, &sub.remaining);
945
141k
    if (sub.curr == NULL)
946
40
        return 0;
947
948
141k
    if (!PACKET_get_quic_vlint(&sub, value))
949
34
        return 0;
950
951
141k
    if (PACKET_remaining(&sub) > 0)
952
74
        return 0;
953
954
141k
    return 1;
955
141k
}
956
957
int ossl_quic_wire_decode_transport_param_cid(PACKET *pkt,
958
    uint64_t *id,
959
    QUIC_CONN_ID *cid)
960
40.5k
{
961
40.5k
    const unsigned char *body;
962
40.5k
    size_t len = 0;
963
964
40.5k
    body = ossl_quic_wire_decode_transport_param_bytes(pkt, id, &len);
965
40.5k
    if (body == NULL || len > QUIC_MAX_CONN_ID_LEN)
966
28
        return 0;
967
968
40.5k
    cid->id_len = (unsigned char)len;
969
40.5k
    memcpy(cid->id, body, cid->id_len);
970
40.5k
    return 1;
971
40.5k
}
972
973
int ossl_quic_wire_decode_transport_param_preferred_addr(PACKET *pkt,
974
    QUIC_PREFERRED_ADDR *p)
975
93
{
976
93
    const unsigned char *body;
977
93
    uint64_t id;
978
93
    size_t len = 0;
979
93
    PACKET pkt2;
980
93
    unsigned int ipv4_port, ipv6_port, cidl;
981
982
93
    body = ossl_quic_wire_decode_transport_param_bytes(pkt, &id, &len);
983
93
    if (body == NULL
984
66
        || len < QUIC_MIN_ENCODED_PREFERRED_ADDR_LEN
985
42
        || len > QUIC_MAX_ENCODED_PREFERRED_ADDR_LEN
986
37
        || id != QUIC_TPARAM_PREFERRED_ADDR)
987
56
        return 0;
988
989
37
    if (!PACKET_buf_init(&pkt2, body, len))
990
0
        return 0;
991
992
37
    if (!PACKET_copy_bytes(&pkt2, p->ipv4, sizeof(p->ipv4))
993
37
        || !PACKET_get_net_2(&pkt2, &ipv4_port)
994
37
        || !PACKET_copy_bytes(&pkt2, p->ipv6, sizeof(p->ipv6))
995
37
        || !PACKET_get_net_2(&pkt2, &ipv6_port)
996
37
        || !PACKET_get_1(&pkt2, &cidl)
997
37
        || cidl > QUIC_MAX_CONN_ID_LEN
998
31
        || !PACKET_copy_bytes(&pkt2, p->cid.id, cidl)
999
26
        || !PACKET_copy_bytes(&pkt2, p->stateless_reset.token,
1000
26
            sizeof(p->stateless_reset.token)))
1001
21
        return 0;
1002
1003
16
    p->ipv4_port = (uint16_t)ipv4_port;
1004
16
    p->ipv6_port = (uint16_t)ipv6_port;
1005
16
    p->cid.id_len = (unsigned char)cidl;
1006
16
    return 1;
1007
37
}
1008
1009
const char *
1010
ossl_quic_frame_type_to_string(uint64_t frame_type)
1011
13.9k
{
1012
13.9k
    switch (frame_type) {
1013
0
#define X(name)                       \
1014
8.83k
    case OSSL_QUIC_FRAME_TYPE_##name: \
1015
8.83k
        return #name;
1016
0
        X(PADDING)
1017
12
        X(PING)
1018
1.39k
        X(ACK_WITHOUT_ECN)
1019
874
        X(ACK_WITH_ECN)
1020
518
        X(RESET_STREAM)
1021
330
        X(STOP_SENDING)
1022
1.45k
        X(CRYPTO)
1023
158
        X(NEW_TOKEN)
1024
107
        X(MAX_DATA)
1025
190
        X(MAX_STREAM_DATA)
1026
54
        X(MAX_STREAMS_BIDI)
1027
77
        X(MAX_STREAMS_UNI)
1028
40
        X(DATA_BLOCKED)
1029
146
        X(STREAM_DATA_BLOCKED)
1030
63
        X(STREAMS_BLOCKED_BIDI)
1031
206
        X(STREAMS_BLOCKED_UNI)
1032
1.04k
        X(NEW_CONN_ID)
1033
108
        X(RETIRE_CONN_ID)
1034
91
        X(PATH_CHALLENGE)
1035
83
        X(PATH_RESPONSE)
1036
395
        X(CONN_CLOSE_TRANSPORT)
1037
43
        X(CONN_CLOSE_APP)
1038
34
        X(HANDSHAKE_DONE)
1039
192
        X(STREAM)
1040
105
        X(STREAM_FIN)
1041
134
        X(STREAM_LEN)
1042
194
        X(STREAM_LEN_FIN)
1043
192
        X(STREAM_OFF)
1044
109
        X(STREAM_OFF_FIN)
1045
133
        X(STREAM_OFF_LEN)
1046
356
        X(STREAM_OFF_LEN_FIN)
1047
0
#undef X
1048
5.10k
    default:
1049
5.10k
        return NULL;
1050
13.9k
    }
1051
13.9k
}
1052
1053
const char *ossl_quic_err_to_string(uint64_t error_code)
1054
46.1k
{
1055
46.1k
    switch (error_code) {
1056
0
#define X(name)                \
1057
35.0k
    case OSSL_QUIC_ERR_##name: \
1058
35.0k
        return #name;
1059
0
        X(NO_ERROR)
1060
17.6k
        X(INTERNAL_ERROR)
1061
99
        X(CONNECTION_REFUSED)
1062
223
        X(FLOW_CONTROL_ERROR)
1063
290
        X(STREAM_LIMIT_ERROR)
1064
863
        X(STREAM_STATE_ERROR)
1065
407
        X(FINAL_SIZE_ERROR)
1066
9.94k
        X(FRAME_ENCODING_ERROR)
1067
1.01k
        X(TRANSPORT_PARAMETER_ERROR)
1068
827
        X(CONNECTION_ID_LIMIT_ERROR)
1069
2.93k
        X(PROTOCOL_VIOLATION)
1070
14
        X(INVALID_TOKEN)
1071
0
        X(APPLICATION_ERROR)
1072
528
        X(CRYPTO_BUFFER_EXCEEDED)
1073
250
        X(KEY_UPDATE_ERROR)
1074
0
        X(AEAD_LIMIT_REACHED)
1075
0
        X(NO_VIABLE_PATH)
1076
0
#undef X
1077
11.0k
    default:
1078
        return NULL;
1079
46.1k
    }
1080
46.1k
}