/src/cryptofuzz/modules/botan/bn_ops.cpp
Line | Count | Source |
1 | | #include <cryptofuzz/util.h> |
2 | | #include <cryptofuzz/repository.h> |
3 | | #include <fuzzing/datasource/id.hpp> |
4 | | #include <botan/numthry.h> |
5 | | #include <botan/reducer.h> |
6 | | #include <botan/internal/divide.h> |
7 | | #include <botan/internal/barrett.h> |
8 | | #include <botan/internal/primality.h> |
9 | | #include <botan/system_rng.h> |
10 | | |
11 | | #include "bn_ops.h" |
12 | | |
13 | | namespace cryptofuzz { |
14 | | namespace module { |
15 | | namespace Botan_bignum { |
16 | | |
17 | | namespace detail { |
18 | 321 | std::optional<size_t> To_size_t(const Bignum& bn) { |
19 | | /* TODO use #if */ |
20 | | |
21 | 321 | if ( sizeof(size_t) == 4 ) { |
22 | 0 | try { |
23 | 0 | return bn.ConstRef().to_u32bit(); |
24 | 0 | } catch ( ::Botan::Encoding_Error ) { |
25 | 0 | return std::nullopt; |
26 | 0 | } |
27 | 321 | } else if ( sizeof(size_t) == 8 ) { |
28 | 321 | if( bn.ConstRef().is_negative() ) { |
29 | 0 | return std::nullopt; |
30 | 0 | } |
31 | | |
32 | 321 | if( bn.ConstRef().bits() > 64 ) { |
33 | 23 | return std::nullopt; |
34 | 23 | } |
35 | | |
36 | 298 | uint64_t out = 0; |
37 | | |
38 | 2.68k | for (size_t i = 0; i != 8; ++i) { |
39 | 2.38k | out = (out << 8) | bn.ConstRef().byte_at(7-i); |
40 | 2.38k | } |
41 | | |
42 | 298 | return out; |
43 | 321 | } else { |
44 | 0 | CF_UNREACHABLE(); |
45 | 0 | } |
46 | 321 | } |
47 | | } |
48 | | |
49 | | #if !defined(CRYPTOFUZZ_BOTAN_IS_ORACLE) |
50 | | #define GET_UINT8_FOR_SWITCH() ds.Get<uint8_t>() |
51 | | #else |
52 | 173 | #define GET_UINT8_FOR_SWITCH() 0 |
53 | | #endif /* CRYPTOFUZZ_BOTAN_IS_ORACLE */ |
54 | | |
55 | 429 | #define APPLY_MODULO if (modulo != std::nullopt) res = (res.ConstRef() % modulo->ConstRef()) |
56 | | |
57 | 25 | bool Add::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
58 | 25 | (void)ds; |
59 | | |
60 | 25 | res = bn[0].Ref() + bn[1].Ref(); |
61 | | |
62 | 25 | APPLY_MODULO; |
63 | | |
64 | 25 | return true; |
65 | 25 | } |
66 | | |
67 | 75 | bool Sub::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
68 | 75 | (void)ds; |
69 | | |
70 | 75 | res = bn[0].Ref() - bn[1].Ref(); |
71 | | |
72 | 75 | APPLY_MODULO; |
73 | | |
74 | 75 | return true; |
75 | 75 | } |
76 | | |
77 | 87 | bool Mul::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
78 | 87 | (void)ds; |
79 | | |
80 | 87 | res = bn[0].Ref() * bn[1].Ref(); |
81 | | |
82 | 87 | APPLY_MODULO; |
83 | | |
84 | 87 | return true; |
85 | 87 | } |
86 | | |
87 | 51 | bool Div::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
88 | 51 | (void)modulo; |
89 | 51 | (void)ds; |
90 | | |
91 | | /* Botan handles negative division different than |
92 | | * other libraries. |
93 | | */ |
94 | 51 | CF_CHECK_TRUE(bn[0].Ref() > 0); |
95 | 48 | CF_CHECK_TRUE(bn[1].Ref() > 0); |
96 | | |
97 | 46 | try { |
98 | 46 | switch ( GET_UINT8_FOR_SWITCH() ) { |
99 | 46 | case 0: |
100 | | /* / operator */ |
101 | 46 | res = bn[0].Ref() / bn[1].Ref(); |
102 | 46 | return true; |
103 | 0 | case 1: |
104 | 0 | { |
105 | 0 | CF_CHECK_TRUE(bn[1].Ref() != 0); |
106 | 0 | Bignum dummy; |
107 | 0 | /* noret */ ::Botan::vartime_divide(bn[0].Ref(), bn[1].Ref(), res.Ref(), dummy.Ref()); |
108 | 0 | } |
109 | 0 | return true; |
110 | 0 | case 2: |
111 | 0 | { |
112 | 0 | CF_CHECK_GT(bn[1].Ref(), 0); |
113 | 0 | CF_CHECK_TRUE(bn[1].Ref() < 256); |
114 | 0 | ::Botan::word dummy; |
115 | 0 | CF_NORET(::Botan::ct_divide_word(bn[0].Ref(), bn[1].Ref().word_at(0), res.Ref(), dummy)); |
116 | 0 | } |
117 | 0 | return true; |
118 | 0 | case 3: |
119 | 0 | CF_CHECK_TRUE(bn[1].Ref() != 0); |
120 | 0 | res = ::Botan::ct_divide(bn[0].Ref(), bn[1].Ref()); |
121 | 0 | return true; |
122 | 0 | case 4: |
123 | | /* /= operator */ |
124 | 0 | res = bn[0].Ref(); |
125 | 0 | res.Ref() /= bn[1].Ref(); |
126 | 0 | return true; |
127 | 46 | } |
128 | 46 | } catch ( fuzzing::datasource::Datasource::OutOfData ) { |
129 | 0 | return false; |
130 | 0 | } catch ( ::Botan::Invalid_Argument& e ) { |
131 | | /* Botan is expected to throw an exception when divisor is 0 */ |
132 | 0 | if ( bn[1].Ref() == 0 ) { |
133 | 0 | return false; |
134 | 0 | } |
135 | | |
136 | | /* Rethrow */ |
137 | 0 | throw e; |
138 | 0 | } |
139 | | |
140 | 5 | end: |
141 | 5 | return false; |
142 | 46 | } |
143 | | |
144 | 127 | bool Mod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
145 | 127 | (void)modulo; |
146 | 127 | (void)ds; |
147 | | |
148 | 127 | try { |
149 | 127 | switch ( GET_UINT8_FOR_SWITCH() ) { |
150 | 127 | case 0: |
151 | 127 | { |
152 | 127 | try { |
153 | 127 | const Botan::Modular_Reducer reducer(bn[1].Ref()); |
154 | 127 | res = reducer.reduce(bn[0].Ref()); |
155 | 127 | } catch ( ::Botan::Invalid_State& e ) { |
156 | | /* Modular reducer is expected to throw an exception when modulo is 0 */ |
157 | 0 | if ( bn[1].Ref() == 0 ) { |
158 | 0 | return false; |
159 | 0 | } |
160 | | |
161 | | /* Rethrow */ |
162 | 0 | throw e; |
163 | 0 | } |
164 | 127 | } |
165 | 111 | return true; |
166 | 0 | case 1: |
167 | 0 | res = ct_modulo(bn[0].Ref(), bn[1].Ref()); |
168 | 0 | return true; |
169 | 0 | case 2: |
170 | | /* % operator */ |
171 | 0 | res = bn[0].Ref() % bn[1].Ref(); |
172 | 0 | return true; |
173 | 0 | case 3: |
174 | | /* %= operator */ |
175 | 0 | { |
176 | 0 | res = bn[0].Ref(); |
177 | |
|
178 | 0 | const ::Botan::word modulo = bn[1].Ref().word_at(0); |
179 | | |
180 | | /* Ensure no truncation occurred */ |
181 | 0 | if ( modulo != bn[1].Ref() ) { |
182 | 0 | return false; |
183 | 0 | } |
184 | | |
185 | 0 | res = bn[0].Ref() %= modulo; |
186 | 0 | } |
187 | 0 | return true; |
188 | 127 | } |
189 | 127 | } catch ( fuzzing::datasource::Datasource::OutOfData ) { |
190 | 0 | return false; |
191 | 16 | } catch ( ::Botan::Invalid_Argument& e ) { |
192 | | /* Botan is expected to throw an exception when modulo is <= 0 */ |
193 | 16 | if ( bn[1].Ref() <= 0 ) { |
194 | 16 | return false; |
195 | 16 | } |
196 | | |
197 | | /* Rethrow */ |
198 | 0 | throw e; |
199 | 16 | } |
200 | | |
201 | 0 | return false; |
202 | 127 | } |
203 | | |
204 | 0 | bool Exp::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
205 | 0 | (void)ds; |
206 | |
|
207 | 0 | if ( modulo == std::nullopt ) { |
208 | 0 | return false; |
209 | 0 | } |
210 | | |
211 | 0 | res = ::Botan::power_mod(bn[0].Ref(), bn[1].Ref(), modulo->ConstRef()); |
212 | |
|
213 | 0 | return true; |
214 | 0 | } |
215 | | |
216 | 971 | bool ExpMod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
217 | 971 | (void)modulo; |
218 | 971 | (void)ds; |
219 | | |
220 | | /* Exponent and modulus must be positive, according to the documentation */ |
221 | 971 | if ( bn[1].Ref() < 0 || bn[2].Ref() <= 0 ) { |
222 | 19 | return false; |
223 | 19 | } |
224 | | |
225 | 952 | res = ::Botan::power_mod(bn[0].Ref(), bn[1].Ref(), bn[2].Ref()); |
226 | | |
227 | 952 | return true; |
228 | 971 | } |
229 | | |
230 | 127 | bool Sqr::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
231 | 127 | (void)ds; |
232 | | |
233 | 127 | res = ::Botan::square(bn[0].Ref()); |
234 | | |
235 | 127 | APPLY_MODULO; |
236 | | |
237 | 127 | return true; |
238 | 127 | } |
239 | | |
240 | 921 | bool GCD::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
241 | 921 | (void)modulo; |
242 | 921 | (void)ds; |
243 | | |
244 | 921 | res = ::Botan::gcd(bn[0].Ref(), bn[1].Ref()); |
245 | | |
246 | 921 | return true; |
247 | 921 | } |
248 | | |
249 | 0 | bool SqrMod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
250 | 0 | (void)modulo; |
251 | 0 | (void)ds; |
252 | |
|
253 | 0 | if ( bn[1].Ref().is_negative() ) { |
254 | 0 | return false; |
255 | 0 | } else { |
256 | 0 | try { |
257 | 0 | switch ( GET_UINT8_FOR_SWITCH() ) { |
258 | 0 | case 0: |
259 | 0 | { |
260 | 0 | try { |
261 | 0 | ::Botan::Modular_Reducer mod(bn[1].Ref()); |
262 | 0 | res = mod.square(bn[0].Ref()); |
263 | 0 | } catch ( ::Botan::Invalid_State& e ) { |
264 | | /* Modular reducer is expected to throw an exception when modulo is 0 */ |
265 | 0 | if ( bn[1].Ref() == 0 ) { |
266 | 0 | return false; |
267 | 0 | } |
268 | | |
269 | | /* Rethrow */ |
270 | 0 | throw e; |
271 | 0 | } |
272 | 0 | } |
273 | 0 | break; |
274 | 0 | case 1: |
275 | 0 | res = ::Botan::square(bn[0].Ref()) % bn[1].Ref(); |
276 | 0 | break; |
277 | 0 | default: |
278 | 0 | return false; |
279 | 0 | } |
280 | 0 | } catch ( fuzzing::datasource::Datasource::OutOfData ) { |
281 | 0 | return false; |
282 | 0 | } catch ( ::Botan::Invalid_Argument& e ) { |
283 | | /* Botan is expected to throw an exception when modulo is 0 */ |
284 | 0 | if ( bn[1].Ref() == 0 ) { |
285 | 0 | return false; |
286 | 0 | } |
287 | | |
288 | | /* Rethrow */ |
289 | 0 | throw e; |
290 | 0 | } |
291 | 0 | } |
292 | | |
293 | 0 | return true; |
294 | 0 | } |
295 | | |
296 | 244 | bool InvMod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
297 | 244 | (void)modulo; |
298 | 244 | (void)ds; |
299 | | |
300 | 244 | const auto mod = modulo == std::nullopt ? bn[1].ConstRef() : modulo->ConstRef(); |
301 | | |
302 | 244 | try { |
303 | 244 | res = ::Botan::inverse_mod(bn[0].Ref(), mod); |
304 | 244 | } catch ( ::Botan::Invalid_Argument& e ) { |
305 | | /* inverse_mod() is expected to throw an exception when modulo is 0 */ |
306 | 2 | if ( mod == 0 ) { |
307 | 2 | return false; |
308 | 2 | } |
309 | | |
310 | | /* inverse_mod() is expected to throw an exception when either argument is negative */ |
311 | 0 | if ( bn[0].Ref() < 0 || mod < 0 ) { |
312 | 0 | return false; |
313 | 0 | } |
314 | | |
315 | | /* Rethrow */ |
316 | 0 | throw e; |
317 | 0 | } |
318 | | |
319 | 242 | return true; |
320 | 244 | } |
321 | | |
322 | 56 | bool Cmp::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
323 | 56 | (void)modulo; |
324 | 56 | (void)ds; |
325 | | |
326 | 56 | if ( bn[0].Ref() < bn[1].Ref() ) { |
327 | 14 | res = Bignum("-1"); |
328 | 42 | } else if ( bn[0].Ref() > bn[1].Ref() ) { |
329 | 33 | res = 1; |
330 | 33 | } else { |
331 | 9 | res = 0; |
332 | 9 | } |
333 | | |
334 | 56 | return true; |
335 | 56 | } |
336 | | |
337 | 232 | bool LCM::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
338 | 232 | (void)modulo; |
339 | 232 | (void)ds; |
340 | | |
341 | 232 | try { |
342 | 232 | res = ::Botan::lcm(bn[0].Ref(), bn[1].Ref()); |
343 | 232 | } catch ( ::Botan::Invalid_Argument& e ) { |
344 | | /* lcm() is expected to throw in these cases */ |
345 | 0 | if ( bn[0].Ref() == 0 || bn[1].Ref() == 0 ) { |
346 | 0 | return false; |
347 | 0 | } |
348 | | |
349 | | /* Rethrow */ |
350 | 0 | throw e; |
351 | 0 | } |
352 | | |
353 | | |
354 | 232 | return true; |
355 | 232 | } |
356 | | |
357 | 11 | bool Abs::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
358 | 11 | (void)modulo; |
359 | 11 | (void)ds; |
360 | | |
361 | 11 | res = ::Botan::abs(bn[0].Ref()); |
362 | | |
363 | 11 | return true; |
364 | 11 | } |
365 | | |
366 | 407 | bool Jacobi::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
367 | 407 | (void)modulo; |
368 | 407 | (void)ds; |
369 | | |
370 | | |
371 | 407 | int resInt; |
372 | | |
373 | 407 | try { |
374 | 407 | resInt = ::Botan::jacobi(bn[0].Ref(), bn[1].Ref()); |
375 | 407 | } catch ( ::Botan::Invalid_Argument& e ) { |
376 | | /* jacobi() is expected to throw in these cases */ |
377 | 11 | if ( (bn[1].Ref() % 2) == 0 || bn[1].Ref() <= 1 ) { |
378 | 11 | return false; |
379 | 11 | } |
380 | | |
381 | | /* Rethrow */ |
382 | 0 | throw e; |
383 | 11 | } |
384 | | |
385 | 396 | if ( resInt == -1 ) { |
386 | 137 | res = Bignum("-1"); |
387 | 259 | } else { |
388 | 259 | res = resInt; |
389 | 259 | } |
390 | | |
391 | 396 | return true; |
392 | 407 | } |
393 | | |
394 | 48 | bool Neg::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
395 | 48 | (void)modulo; |
396 | 48 | (void)ds; |
397 | | |
398 | 48 | res = -bn[0].Ref(); |
399 | | |
400 | 48 | return true; |
401 | 48 | } |
402 | | |
403 | 0 | bool IsPrime::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
404 | 0 | (void)modulo; |
405 | 0 | (void)ds; |
406 | |
|
407 | 0 | if ( bn[0].Ref().is_negative() ) { |
408 | 0 | return false; |
409 | 0 | } |
410 | | |
411 | | /* Avoid time-outs */ |
412 | 0 | if ( bn[0].Ref().bytes() > 300 ) { |
413 | 0 | return false; |
414 | 0 | } |
415 | | |
416 | 0 | auto mod_n = Botan::Barrett_Reduction::for_public_modulus(bn[0].Ref()); |
417 | 0 | if ( Botan::is_bailie_psw_probable_prime(bn[0].Ref(), mod_n) ) { |
418 | 0 | res = 1; |
419 | 0 | } else { |
420 | 0 | res = 0; |
421 | 0 | } |
422 | |
|
423 | 0 | return true; |
424 | 0 | } |
425 | | |
426 | 90 | bool RShift::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
427 | 90 | (void)ds; |
428 | | |
429 | 90 | const auto count = detail::To_size_t(bn[1].Ref()); |
430 | | |
431 | 90 | if ( count == std::nullopt ) { |
432 | 8 | return false; |
433 | 8 | } |
434 | | |
435 | 82 | Bignum toShift = bn[0]; |
436 | 82 | if ( modulo && bn[0].Ref() % 2 ) { |
437 | 0 | toShift = toShift.Ref() + modulo->ConstRef(); |
438 | 0 | } |
439 | | |
440 | 82 | res = toShift.Ref() >> *count; |
441 | | |
442 | 82 | APPLY_MODULO; |
443 | | |
444 | 82 | return true; |
445 | 90 | } |
446 | | |
447 | 26 | bool LShift1::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
448 | 26 | (void)ds; |
449 | | |
450 | 26 | res = bn[0].Ref() << 1; |
451 | | |
452 | 26 | APPLY_MODULO; |
453 | | |
454 | 26 | return true; |
455 | 26 | } |
456 | | |
457 | 0 | bool IsNeg::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
458 | 0 | (void)modulo; |
459 | 0 | (void)ds; |
460 | |
|
461 | 0 | res = bn[0].Ref() < 0 ? 1 : 0; |
462 | |
|
463 | 0 | return true; |
464 | 0 | } |
465 | | |
466 | 0 | bool IsEq::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
467 | 0 | (void)ds; |
468 | |
|
469 | 0 | auto A = modulo == std::nullopt ? bn[0] : bn[0].Ref() % modulo->ConstRef(); |
470 | 0 | auto B = modulo == std::nullopt ? bn[1] : bn[1].Ref() % modulo->ConstRef(); |
471 | |
|
472 | 0 | res = A.Ref() == B.Ref() ? 1 : 0; |
473 | |
|
474 | 0 | return true; |
475 | 0 | } |
476 | | |
477 | 0 | bool IsGt::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
478 | 0 | (void)modulo; |
479 | 0 | (void)ds; |
480 | |
|
481 | 0 | res = bn[0].Ref() > bn[1].Ref() ? 1 : 0; |
482 | |
|
483 | 0 | return true; |
484 | 0 | } |
485 | | |
486 | 0 | bool IsGte::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
487 | 0 | (void)modulo; |
488 | 0 | (void)ds; |
489 | |
|
490 | 0 | res = bn[0].Ref() >= bn[1].Ref() ? 1 : 0; |
491 | |
|
492 | 0 | return true; |
493 | 0 | } |
494 | | |
495 | 0 | bool IsLt::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
496 | 0 | (void)modulo; |
497 | 0 | (void)ds; |
498 | |
|
499 | 0 | res = bn[0].Ref() < bn[1].Ref() ? 1 : 0; |
500 | |
|
501 | 0 | return true; |
502 | 0 | } |
503 | | |
504 | 0 | bool IsLte::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
505 | 0 | (void)modulo; |
506 | 0 | (void)ds; |
507 | |
|
508 | 0 | res = bn[0].Ref() <= bn[1].Ref() ? 1 : 0; |
509 | |
|
510 | 0 | return true; |
511 | 0 | } |
512 | | |
513 | 9 | bool IsEven::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
514 | 9 | (void)modulo; |
515 | 9 | (void)ds; |
516 | | |
517 | 9 | res = !(bn[0].Ref() % 2) ? 1 : 0; |
518 | | |
519 | 9 | return true; |
520 | 9 | } |
521 | | |
522 | 10 | bool IsOdd::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
523 | 10 | (void)modulo; |
524 | 10 | (void)ds; |
525 | | |
526 | 10 | res = (bn[0].Ref() % 2) ? 1 : 0; |
527 | | |
528 | 10 | return true; |
529 | 10 | } |
530 | | |
531 | 10 | bool IsZero::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
532 | 10 | (void)ds; |
533 | | |
534 | 10 | auto A = modulo == std::nullopt ? bn[0] : bn[0].Ref() % modulo->ConstRef(); |
535 | | |
536 | 10 | res = A.Ref() == 0 ? 1 : 0; |
537 | | |
538 | 10 | return true; |
539 | 10 | } |
540 | | |
541 | 0 | bool IsNotZero::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
542 | 0 | (void)modulo; |
543 | 0 | (void)ds; |
544 | |
|
545 | 0 | res = bn[0].Ref() == 0 ? 0 : 1; |
546 | |
|
547 | 0 | return true; |
548 | 0 | } |
549 | | |
550 | 0 | bool IsOne::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
551 | 0 | (void)ds; |
552 | |
|
553 | 0 | auto A = modulo == std::nullopt ? bn[0] : bn[0].Ref() % modulo->ConstRef(); |
554 | |
|
555 | 0 | res = A.Ref() == 1 ? 1 : 0; |
556 | |
|
557 | 0 | return true; |
558 | 0 | } |
559 | | |
560 | 0 | bool MulMod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
561 | 0 | (void)modulo; |
562 | 0 | (void)ds; |
563 | |
|
564 | 0 | try { |
565 | 0 | switch ( GET_UINT8_FOR_SWITCH() ) { |
566 | 0 | case 0: |
567 | 0 | { |
568 | 0 | try { |
569 | 0 | ::Botan::Modular_Reducer mod(bn[2].Ref()); |
570 | 0 | res = mod.multiply(bn[0].Ref(), bn[1].Ref()); |
571 | 0 | } catch ( ::Botan::Invalid_State& e ) { |
572 | | /* Modular reducer is expected to throw an exception when modulo is 0 */ |
573 | 0 | if ( bn[2].Ref() == 0 ) { |
574 | 0 | return false; |
575 | 0 | } |
576 | | |
577 | | /* Rethrow */ |
578 | 0 | throw e; |
579 | 0 | } |
580 | 0 | } |
581 | 0 | break; |
582 | 0 | case 1: |
583 | 0 | res = (bn[0].Ref() * bn[1].Ref()) % bn[2].Ref(); |
584 | 0 | break; |
585 | 0 | default: |
586 | 0 | return false; |
587 | 0 | } |
588 | 0 | } catch ( fuzzing::datasource::Datasource::OutOfData ) { |
589 | 0 | return false; |
590 | 0 | } catch ( ::Botan::Invalid_Argument& e ) { |
591 | | /* Botan is expected to throw an exception when modulo is <= 0 */ |
592 | 0 | if ( bn[2].Ref() <= 0 ) { |
593 | 0 | return false; |
594 | 0 | } |
595 | | |
596 | | /* Rethrow */ |
597 | 0 | throw e; |
598 | 0 | } |
599 | | |
600 | 0 | return true; |
601 | 0 | } |
602 | | |
603 | 81 | bool Bit::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
604 | 81 | (void)modulo; |
605 | 81 | (void)ds; |
606 | | |
607 | 81 | const auto pos = detail::To_size_t(bn[1].Ref()); |
608 | | |
609 | 81 | if ( pos == std::nullopt ) { |
610 | 9 | return false; |
611 | 9 | } |
612 | | |
613 | 72 | res = bn[0].Ref().get_bit(*pos) ? 1 : 0; |
614 | | |
615 | 72 | return true; |
616 | 81 | } |
617 | | |
618 | 24 | bool CmpAbs::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
619 | 24 | (void)modulo; |
620 | 24 | std::vector<Bignum> bnAbs = {bn[0].Ref().abs(), bn[1].Ref().abs()}; |
621 | 24 | auto cmp = std::make_unique<Cmp>(); |
622 | | |
623 | 24 | return cmp->Run(ds, res, bnAbs, modulo); |
624 | 24 | } |
625 | | |
626 | 58 | bool SetBit::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
627 | 58 | (void)modulo; |
628 | 58 | (void)ds; |
629 | | |
630 | 58 | res = bn[0].Ref(); |
631 | | |
632 | 58 | const auto pos = detail::To_size_t(bn[1].Ref()); |
633 | | |
634 | 58 | if ( pos == std::nullopt ) { |
635 | 0 | return false; |
636 | 0 | } |
637 | | |
638 | 58 | res.Ref().set_bit(*pos); |
639 | | |
640 | 58 | return true; |
641 | 58 | } |
642 | | |
643 | 92 | bool ClearBit::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
644 | 92 | (void)modulo; |
645 | 92 | (void)ds; |
646 | | |
647 | 92 | res = bn[0].Ref(); |
648 | | |
649 | 92 | const auto pos = detail::To_size_t(bn[1].Ref()); |
650 | | |
651 | 92 | if ( pos == std::nullopt ) { |
652 | 6 | return false; |
653 | 6 | } |
654 | | |
655 | 86 | res.Ref().clear_bit(*pos); |
656 | | |
657 | 86 | return true; |
658 | 92 | } |
659 | | |
660 | 0 | bool MulAdd::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
661 | 0 | (void)modulo; |
662 | 0 | (void)ds; |
663 | |
|
664 | 0 | res = (bn[0].Ref()*bn[1].Ref()) + bn[2].Ref(); |
665 | |
|
666 | 0 | return true; |
667 | 0 | } |
668 | | |
669 | 0 | bool MulDiv::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
670 | 0 | (void)modulo; |
671 | 0 | (void)ds; |
672 | |
|
673 | 0 | if ( bn[2].Ref() == 0 ) { |
674 | 0 | return false; |
675 | 0 | } |
676 | | |
677 | 0 | res = (bn[0].Ref()*bn[1].Ref()+1) / bn[2].Ref(); |
678 | |
|
679 | 0 | return true; |
680 | 0 | } |
681 | | |
682 | 0 | bool MulDivCeil::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
683 | 0 | (void)modulo; |
684 | 0 | (void)ds; |
685 | |
|
686 | 0 | if ( bn[2].Ref() <= 0 ) { |
687 | 0 | return false; |
688 | 0 | } |
689 | | |
690 | 0 | const auto mulRes = bn[0].Ref() * bn[1].Ref(); |
691 | 0 | const auto modRes = mulRes % bn[2].Ref(); |
692 | 0 | res = mulRes / bn[2].Ref() + (modRes != 0 ? 1 : 0); |
693 | |
|
694 | 0 | return true; |
695 | 0 | } |
696 | | |
697 | 0 | bool Exp2::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
698 | 0 | (void)modulo; |
699 | 0 | (void)ds; |
700 | |
|
701 | 0 | if ( bn[0].Ref() < 1 ) { |
702 | 0 | return false; |
703 | 0 | } |
704 | | |
705 | 0 | const size_t exponent = bn[0].Ref().word_at(0) - 1; |
706 | |
|
707 | 0 | res = Bignum(2).Ref() << exponent; |
708 | |
|
709 | 0 | return true; |
710 | 0 | } |
711 | | |
712 | 0 | bool NumLSZeroBits::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
713 | 0 | (void)modulo; |
714 | 0 | (void)ds; |
715 | |
|
716 | 0 | res = ::Botan::low_zero_bits(bn[0].Ref()); |
717 | |
|
718 | 0 | return true; |
719 | 0 | } |
720 | | |
721 | 253 | bool Sqrt::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
722 | 253 | (void)ds; |
723 | | |
724 | 253 | try { |
725 | 253 | const auto res2 = ::Botan::is_perfect_square(bn[0].Ref()); |
726 | 253 | if ( res2 == 0 ) { |
727 | 242 | return false; |
728 | 242 | } |
729 | | |
730 | 11 | res = res2; |
731 | 11 | } catch ( ::Botan::Invalid_Argument& e ) { |
732 | | /* is_perfect_square() is expected to throw in this case */ |
733 | 4 | if ( bn[0].Ref() < 1 ) { |
734 | 4 | return false; |
735 | 4 | } |
736 | | |
737 | | /* Rethrow */ |
738 | 0 | throw e; |
739 | 4 | } |
740 | | |
741 | 7 | APPLY_MODULO; |
742 | | |
743 | 7 | return true; |
744 | 253 | } |
745 | | |
746 | 0 | bool AddMod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
747 | 0 | (void)modulo; |
748 | 0 | (void)ds; |
749 | |
|
750 | 0 | try { |
751 | 0 | switch ( GET_UINT8_FOR_SWITCH() ) { |
752 | 0 | case 0: |
753 | 0 | res = (bn[0].Ref() + bn[1].Ref()) % bn[2].Ref(); |
754 | 0 | break; |
755 | 0 | case 1: |
756 | 0 | { |
757 | 0 | if ( bn[0].Ref() >= bn[2].Ref() ) { |
758 | 0 | return false; |
759 | 0 | } |
760 | 0 | if ( bn[1].Ref() >= bn[2].Ref() ) { |
761 | 0 | return false; |
762 | 0 | } |
763 | | |
764 | 0 | ::Botan::secure_vector<::Botan::word> ws; |
765 | 0 | try { |
766 | 0 | res = bn[0].Ref().mod_add(bn[1].Ref(), bn[2].Ref(), ws); |
767 | 0 | } catch ( ::Botan::Invalid_Argument& e ) { |
768 | | /* mod_add is expected to throw an exception when any argument is negative */ |
769 | 0 | if ( bn[0].Ref() < 0 || bn[1].Ref() < 0 || bn[2].Ref() < 0) { |
770 | 0 | return false; |
771 | 0 | } |
772 | | |
773 | | /* Rethrow */ |
774 | 0 | throw e; |
775 | 0 | } |
776 | 0 | } |
777 | 0 | break; |
778 | 0 | default: |
779 | 0 | return false; |
780 | 0 | } |
781 | 0 | } catch ( fuzzing::datasource::Datasource::OutOfData ) { |
782 | 0 | return false; |
783 | 0 | } catch ( ::Botan::Invalid_Argument& e ) { |
784 | | /* Botan is expected to throw an exception when modulo is <= 0 */ |
785 | 0 | if ( bn[2].Ref() <= 0 ) { |
786 | 0 | return false; |
787 | 0 | } |
788 | | |
789 | | /* Rethrow */ |
790 | 0 | throw e; |
791 | 0 | } |
792 | | |
793 | 0 | return true; |
794 | 0 | } |
795 | | |
796 | 0 | bool SubMod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
797 | 0 | (void)modulo; |
798 | 0 | (void)ds; |
799 | |
|
800 | 0 | try { |
801 | 0 | switch ( GET_UINT8_FOR_SWITCH() ) { |
802 | 0 | case 0: |
803 | 0 | res = (bn[0].Ref() - bn[1].Ref()) % bn[2].Ref(); |
804 | 0 | break; |
805 | 0 | case 1: |
806 | 0 | { |
807 | 0 | if ( bn[0].Ref() >= bn[2].Ref() ) { |
808 | 0 | return false; |
809 | 0 | } |
810 | 0 | if ( bn[1].Ref() >= bn[2].Ref() ) { |
811 | 0 | return false; |
812 | 0 | } |
813 | | |
814 | 0 | ::Botan::secure_vector<::Botan::word> ws; |
815 | 0 | try { |
816 | 0 | res = bn[0].Ref().mod_sub(bn[1].Ref(), bn[2].Ref(), ws); |
817 | 0 | } catch ( ::Botan::Invalid_Argument& e ) { |
818 | | /* mod_sub is expected to throw an exception when any argument is negative */ |
819 | 0 | if ( bn[0].Ref() < 0 || bn[1].Ref() < 0 || bn[2].Ref() < 0) { |
820 | 0 | return false; |
821 | 0 | } |
822 | | |
823 | | /* Rethrow */ |
824 | 0 | throw e; |
825 | 0 | } |
826 | 0 | } |
827 | 0 | break; |
828 | 0 | default: |
829 | 0 | return false; |
830 | 0 | } |
831 | 0 | } catch ( fuzzing::datasource::Datasource::OutOfData ) { |
832 | 0 | return false; |
833 | 0 | } catch ( ::Botan::Invalid_Argument& e ) { |
834 | | /* Botan is expected to throw an exception when modulo is <= 0 */ |
835 | 0 | if ( bn[2].Ref() <= 0 ) { |
836 | 0 | return false; |
837 | 0 | } |
838 | | |
839 | | /* Rethrow */ |
840 | 0 | throw e; |
841 | 0 | } |
842 | | |
843 | 0 | return true; |
844 | 0 | } |
845 | | |
846 | 5 | bool NumBits::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
847 | 5 | (void)ds; |
848 | | |
849 | 5 | if ( modulo ) { |
850 | 0 | res = (bn[0].Ref() % modulo->ConstRef()).bits(); |
851 | 5 | } else { |
852 | 5 | res = bn[0].Ref().bits(); |
853 | 5 | } |
854 | | |
855 | 5 | return true; |
856 | 5 | } |
857 | | |
858 | 0 | bool Set::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
859 | 0 | (void)modulo; |
860 | 0 | (void)ds; |
861 | |
|
862 | 0 | res = bn[0].Ref(); |
863 | |
|
864 | 0 | APPLY_MODULO; |
865 | |
|
866 | 0 | return true; |
867 | 0 | } |
868 | | |
869 | 0 | bool CondSet::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
870 | 0 | (void)modulo; |
871 | 0 | (void)ds; |
872 | |
|
873 | 0 | res.Ref().ct_cond_assign(bn[1].Ref() != 0, bn[0].Ref()); |
874 | |
|
875 | 0 | return true; |
876 | 0 | } |
877 | | |
878 | 0 | bool Ressol::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
879 | 0 | (void)ds; |
880 | |
|
881 | 0 | try { |
882 | 0 | auto mod = modulo == std::nullopt ? bn[1] : *modulo; |
883 | |
|
884 | 0 | const auto r = ::Botan::sqrt_modulo_prime(bn[0].Ref(), mod.Ref()); |
885 | |
|
886 | 0 | if ( r < 1 ) { |
887 | 0 | if ( modulo != std::nullopt ) { |
888 | 0 | res = 0; |
889 | 0 | return true; |
890 | 0 | } else { |
891 | 0 | return false; |
892 | 0 | } |
893 | 0 | } |
894 | | |
895 | 0 | if ( modulo != std::nullopt ) { |
896 | 0 | res = ::Botan::square(r) % mod.Ref(); |
897 | 0 | } |
898 | |
|
899 | 0 | return true; |
900 | 0 | } catch ( ::Botan::Invalid_Argument& e ) { |
901 | | /* Expected to throw if called with non-prime argument */ |
902 | |
|
903 | 0 | return false; |
904 | 0 | } |
905 | 0 | } |
906 | | |
907 | 0 | bool Not::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
908 | 0 | (void)ds; |
909 | |
|
910 | 0 | Bignum max; |
911 | |
|
912 | 0 | if ( modulo ) { |
913 | 0 | max = *modulo; |
914 | 0 | } else { |
915 | 0 | const size_t numBits = bn[0].Ref().bits(); |
916 | |
|
917 | 0 | if ( numBits == 0 ) { |
918 | 0 | return false; |
919 | 0 | } |
920 | | |
921 | 0 | max = (::Botan::BigInt(1) << numBits) - 1; |
922 | 0 | } |
923 | | |
924 | 0 | res = max.Ref() - bn[0].Ref(); |
925 | |
|
926 | 0 | APPLY_MODULO; |
927 | |
|
928 | 0 | return true; |
929 | 0 | } |
930 | | |
931 | 0 | bool Prime::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
932 | 0 | (void)ds; |
933 | 0 | (void)bn; |
934 | 0 | (void)modulo; |
935 | |
|
936 | 0 | ::Botan::System_RNG rng; |
937 | 0 | res = Botan::random_prime(rng, (rand() % 512) + 2); |
938 | |
|
939 | 0 | return true; |
940 | 0 | } |
941 | | |
942 | 0 | bool RandRange::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
943 | 0 | (void)ds; |
944 | 0 | (void)modulo; |
945 | |
|
946 | 0 | try { |
947 | 0 | ::Botan::System_RNG rng; |
948 | 0 | res = ::Botan::BigInt::random_integer(rng, bn[0].Ref(), bn[1].Ref()); |
949 | 0 | } catch ( ::Botan::Invalid_Argument ) { |
950 | 0 | return false; |
951 | 0 | } |
952 | | |
953 | 0 | return true; |
954 | 0 | } |
955 | | |
956 | 0 | bool IsSquare::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const { |
957 | 0 | (void)ds; |
958 | |
|
959 | 0 | if ( modulo != std::nullopt ) { |
960 | 0 | return false; |
961 | 0 | } |
962 | | |
963 | 0 | try { |
964 | 0 | res = ::Botan::is_perfect_square(bn[0].Ref()) == 0 ? 0 : 1; |
965 | 0 | } catch ( ::Botan::Invalid_Argument& e ) { |
966 | | /* is_perfect_square() is expected to throw in this case */ |
967 | 0 | if ( bn[0].Ref() < 1 ) { |
968 | 0 | return false; |
969 | 0 | } |
970 | | |
971 | | /* Rethrow */ |
972 | 0 | throw e; |
973 | 0 | } |
974 | | |
975 | 0 | return true; |
976 | 0 | } |
977 | | |
978 | | } /* namespace Botan_bignum */ |
979 | | } /* namespace module */ |
980 | | } /* namespace cryptofuzz */ |