Coverage Report

Created: 2026-04-01 07:07

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/cryptofuzz/modules/botan/bn_ops.cpp
Line
Count
Source
1
#include <cryptofuzz/util.h>
2
#include <cryptofuzz/repository.h>
3
#include <fuzzing/datasource/id.hpp>
4
#include <botan/numthry.h>
5
#include <botan/reducer.h>
6
#include <botan/internal/divide.h>
7
#include <botan/internal/barrett.h>
8
#include <botan/internal/primality.h>
9
#include <botan/system_rng.h>
10
11
#include "bn_ops.h"
12
13
namespace cryptofuzz {
14
namespace module {
15
namespace Botan_bignum {
16
17
namespace detail {
18
260
    std::optional<size_t> To_size_t(const Bignum& bn) {
19
        /* TODO use #if */
20
21
260
        if ( sizeof(size_t) == 4 ) {
22
0
            try {
23
0
                return bn.ConstRef().to_u32bit();
24
0
            } catch ( std::exception ) {
25
0
                return std::nullopt;
26
0
            }
27
260
        } else if ( sizeof(size_t) == 8 ) {
28
260
            if( bn.ConstRef().is_negative() ) {
29
0
                return std::nullopt;
30
0
            }
31
32
260
            if( bn.ConstRef().bits() > 64 ) {
33
21
                return std::nullopt;
34
21
            }
35
36
239
            uint64_t out = 0;
37
38
2.15k
            for (size_t i = 0; i != 8; ++i) {
39
1.91k
                out = (out << 8) | bn.ConstRef().byte_at(7-i);
40
1.91k
            }
41
42
239
            return out;
43
260
        } else {
44
0
            CF_UNREACHABLE();
45
0
        }
46
260
    }
47
}
48
49
#if !defined(CRYPTOFUZZ_BOTAN_IS_ORACLE)
50
 #define GET_UINT8_FOR_SWITCH() ds.Get<uint8_t>()
51
#else
52
170
 #define GET_UINT8_FOR_SWITCH() 0
53
#endif /* CRYPTOFUZZ_BOTAN_IS_ORACLE */
54
55
348
#define APPLY_MODULO if (modulo != std::nullopt) res = (res.ConstRef() % modulo->ConstRef())
56
57
17
bool Add::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
58
17
    (void)ds;
59
60
17
    res = bn[0].Ref() + bn[1].Ref();
61
62
17
    APPLY_MODULO;
63
64
17
    return true;
65
17
}
66
67
40
bool Sub::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
68
40
    (void)ds;
69
70
40
    res = bn[0].Ref() - bn[1].Ref();
71
72
40
    APPLY_MODULO;
73
74
40
    return true;
75
40
}
76
77
71
bool Mul::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
78
71
    (void)ds;
79
80
71
    res = bn[0].Ref() * bn[1].Ref();
81
82
71
    APPLY_MODULO;
83
84
71
    return true;
85
71
}
86
87
43
bool Div::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
88
43
    (void)modulo;
89
43
    (void)ds;
90
91
    /* Botan handles negative division different than
92
     * other libraries.
93
     */
94
43
    CF_CHECK_TRUE(bn[0].Ref() > 0);
95
37
    CF_CHECK_TRUE(bn[1].Ref() > 0);
96
97
36
    try {
98
36
        switch ( GET_UINT8_FOR_SWITCH() ) {
99
36
            case    0:
100
                /* / operator */
101
36
                res = bn[0].Ref() / bn[1].Ref();
102
36
                return true;
103
0
            case    1:
104
0
                {
105
0
                    CF_CHECK_TRUE(bn[1].Ref() != 0);
106
0
                    Bignum dummy;
107
0
                    /* noret */ ::Botan::vartime_divide(bn[0].Ref(), bn[1].Ref(), res.Ref(), dummy.Ref());
108
0
                }
109
0
                return true;
110
0
            case    2:
111
0
                {
112
0
                    CF_CHECK_GT(bn[1].Ref(), 0);
113
0
                    CF_CHECK_TRUE(bn[1].Ref() < 256);
114
0
                    ::Botan::word dummy;
115
0
                    CF_NORET(::Botan::ct_divide_word(bn[0].Ref(), bn[1].Ref().word_at(0), res.Ref(), dummy));
116
0
                }
117
0
                return true;
118
0
            case    3:
119
0
                CF_CHECK_TRUE(bn[1].Ref() != 0);
120
0
                res = ::Botan::ct_divide(bn[0].Ref(), bn[1].Ref());
121
0
                return true;
122
0
            case    4:
123
                /* /= operator */
124
0
                res = bn[0].Ref();
125
0
                res.Ref() /= bn[1].Ref();
126
0
                return true;
127
36
        }
128
36
    } catch ( fuzzing::datasource::Datasource::OutOfData ) {
129
0
        return false;
130
0
    } catch ( std::exception e ) {
131
        /* Botan is expected to throw an exception when divisor is 0 */
132
0
        if ( bn[1].Ref() == 0 ) {
133
0
            return false;
134
0
        }
135
136
        /* Rethrow */
137
0
        throw e;
138
0
    }
139
140
7
end:
141
7
    return false;
142
36
}
143
144
134
bool Mod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
145
134
    (void)modulo;
146
134
    (void)ds;
147
148
134
    try {
149
134
        switch ( GET_UINT8_FOR_SWITCH() ) {
150
134
            case    0:
151
134
                {
152
134
                    try {
153
134
                        const Botan::Modular_Reducer reducer(bn[1].Ref());
154
134
                        res = reducer.reduce(bn[0].Ref());
155
134
                    } catch ( std::exception e ) {
156
                        /* Modular reducer is expected to throw an exception when modulo is 0 */
157
16
                        if ( bn[1].Ref() == 0 ) {
158
16
                            return false;
159
16
                        }
160
161
                        /* Rethrow */
162
0
                        throw e;
163
16
                    }
164
134
                }
165
118
                return true;
166
0
            case    1:
167
0
                res = ct_modulo(bn[0].Ref(), bn[1].Ref());
168
0
                return true;
169
0
            case    2:
170
                /* % operator */
171
0
                res = bn[0].Ref() % bn[1].Ref();
172
0
                return true;
173
0
            case    3:
174
                /* %= operator */
175
0
                {
176
0
                    res = bn[0].Ref();
177
178
0
                    const ::Botan::word modulo = bn[1].Ref().word_at(0);
179
180
                    /* Ensure no truncation occurred */
181
0
                    if ( modulo != bn[1].Ref() ) {
182
0
                        return false;
183
0
                    }
184
185
0
                    res = bn[0].Ref() %= modulo;
186
0
                }
187
0
                return true;
188
134
        }
189
134
    } catch ( fuzzing::datasource::Datasource::OutOfData ) {
190
0
        return false;
191
0
    } catch ( std::exception e ) {
192
        /* Botan is expected to throw an exception when modulo is <= 0 */
193
0
        if ( bn[1].Ref() <= 0 ) {
194
0
            return false;
195
0
        }
196
197
        /* Rethrow */
198
0
        throw e;
199
0
    }
200
201
0
    return false;
202
134
}
203
204
0
bool Exp::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
205
0
    (void)ds;
206
207
0
    if ( modulo == std::nullopt ) {
208
0
        return false;
209
0
    }
210
211
0
    res = ::Botan::power_mod(bn[0].Ref(), bn[1].Ref(), modulo->ConstRef());
212
213
0
    return true;
214
0
}
215
216
725
bool ExpMod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
217
725
    (void)modulo;
218
725
    (void)ds;
219
220
    /* Exponent and modulus must be positive, according to the documentation */
221
725
    if ( bn[1].Ref() < 0 || bn[2].Ref() <= 0 ) {
222
20
        return false;
223
20
    }
224
225
705
    res = ::Botan::power_mod(bn[0].Ref(), bn[1].Ref(), bn[2].Ref());
226
227
705
    return true;
228
725
}
229
230
119
bool Sqr::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
231
119
    (void)ds;
232
233
119
    res = ::Botan::square(bn[0].Ref());
234
235
119
    APPLY_MODULO;
236
237
119
    return true;
238
119
}
239
240
671
bool GCD::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
241
671
    (void)modulo;
242
671
    (void)ds;
243
244
671
    res = ::Botan::gcd(bn[0].Ref(), bn[1].Ref());
245
246
671
    return true;
247
671
}
248
249
0
bool SqrMod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
250
0
    (void)modulo;
251
0
    (void)ds;
252
253
0
    if ( bn[1].Ref().is_negative() ) {
254
0
        return false;
255
0
    } else {
256
0
        try {
257
0
            switch ( GET_UINT8_FOR_SWITCH() ) {
258
0
                case    0:
259
0
                    {
260
0
                        try {
261
0
                            ::Botan::Modular_Reducer mod(bn[1].Ref());
262
0
                            res = mod.square(bn[0].Ref());
263
0
                        } catch ( std::exception e ) {
264
                            /* Modular reducer is expected to throw an exception when modulo is 0 */
265
0
                            if ( bn[1].Ref() == 0 ) {
266
0
                                return false;
267
0
                            }
268
269
                            /* Rethrow */
270
0
                            throw e;
271
0
                        }
272
0
                    }
273
0
                    break;
274
0
                case    1:
275
0
                    res = ::Botan::square(bn[0].Ref()) % bn[1].Ref();
276
0
                    break;
277
0
                default:
278
0
                    return false;
279
0
            }
280
0
        } catch ( fuzzing::datasource::Datasource::OutOfData ) {
281
0
            return false;
282
0
        } catch ( std::exception e ) {
283
            /* Botan is expected to throw an exception when modulo is 0 */
284
0
            if ( bn[1].Ref() == 0 ) {
285
0
                return false;
286
0
            }
287
288
            /* Rethrow */
289
0
            throw e;
290
0
        }
291
0
    }
292
293
0
    return true;
294
0
}
295
296
159
bool InvMod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
297
159
    (void)modulo;
298
159
    (void)ds;
299
300
159
    const auto mod = modulo == std::nullopt ? bn[1].ConstRef() : modulo->ConstRef();
301
302
159
    try {
303
159
        res = ::Botan::inverse_mod(bn[0].Ref(), mod);
304
159
    } catch ( std::exception e ) {
305
        /* inverse_mod() is expected to throw an exception when modulo is 0 */
306
4
        if ( mod == 0 ) {
307
4
            return false;
308
4
        }
309
310
        /* inverse_mod() is expected to throw an exception when either argument is negative */
311
0
        if ( bn[0].Ref() < 0 || mod < 0 ) {
312
0
            return false;
313
0
        }
314
315
        /* Rethrow */
316
0
        throw e;
317
0
    }
318
319
155
    return true;
320
159
}
321
322
51
bool Cmp::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
323
51
    (void)modulo;
324
51
    (void)ds;
325
326
51
    if ( bn[0].Ref() < bn[1].Ref() ) {
327
13
        res = Bignum("-1");
328
38
    } else if ( bn[0].Ref() > bn[1].Ref() ) {
329
30
        res = 1;
330
30
    } else {
331
8
        res = 0;
332
8
    }
333
334
51
    return true;
335
51
}
336
337
145
bool LCM::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
338
145
    (void)modulo;
339
145
    (void)ds;
340
341
145
    try {
342
145
        res = ::Botan::lcm(bn[0].Ref(), bn[1].Ref());
343
145
    } catch ( std::exception e ) {
344
        /* lcm() is expected to throw in these cases */
345
0
        if ( bn[0].Ref() == 0 || bn[1].Ref() == 0 ) {
346
0
            return false;
347
0
        }
348
349
        /* Rethrow */
350
0
        throw e;
351
0
    }
352
353
354
145
    return true;
355
145
}
356
357
7
bool Abs::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
358
7
    (void)modulo;
359
7
    (void)ds;
360
361
7
    res = ::Botan::abs(bn[0].Ref());
362
363
7
    return true;
364
7
}
365
366
301
bool Jacobi::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
367
301
    (void)modulo;
368
301
    (void)ds;
369
370
371
301
    int resInt;
372
373
301
    try {
374
301
        resInt = ::Botan::jacobi(bn[0].Ref(), bn[1].Ref());
375
301
    } catch ( std::exception e ) {
376
        /* jacobi() is expected to throw in these cases */
377
10
        if ( (bn[1].Ref() % 2) == 0 || bn[1].Ref() <= 1 ) {
378
10
            return false;
379
10
        }
380
381
        /* Rethrow */
382
0
        throw e;
383
10
    }
384
385
291
    if ( resInt == -1 ) {
386
110
        res = Bignum("-1");
387
181
    } else {
388
181
        res = resInt;
389
181
    }
390
391
291
    return true;
392
301
}
393
394
45
bool Neg::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
395
45
    (void)modulo;
396
45
    (void)ds;
397
398
45
    res = -bn[0].Ref();
399
400
45
    return true;
401
45
}
402
403
0
bool IsPrime::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
404
0
    (void)modulo;
405
0
    (void)ds;
406
407
0
    if ( bn[0].Ref().is_negative() ) {
408
0
        return false;
409
0
    }
410
411
    /* Avoid time-outs */
412
0
    if ( bn[0].Ref().bytes() > 300 ) {
413
0
        return false;
414
0
    }
415
416
0
    auto mod_n = Botan::Barrett_Reduction::for_public_modulus(bn[0].Ref());
417
0
    if ( Botan::is_bailie_psw_probable_prime(bn[0].Ref(), mod_n) ) {
418
0
        res = 1;
419
0
    } else {
420
0
        res = 0;
421
0
    }
422
423
0
    return true;
424
0
}
425
426
65
bool RShift::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
427
65
    (void)ds;
428
429
65
    const auto count = detail::To_size_t(bn[1].Ref());
430
431
65
    if ( count == std::nullopt ) {
432
8
        return false;
433
8
    }
434
435
57
    Bignum toShift = bn[0];
436
57
    if ( modulo && bn[0].Ref() % 2 ) {
437
0
        toShift = toShift.Ref() + modulo->ConstRef();
438
0
    }
439
440
57
    res = toShift.Ref() >> *count;
441
442
57
    APPLY_MODULO;
443
444
57
    return true;
445
65
}
446
447
36
bool LShift1::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
448
36
    (void)ds;
449
450
36
    res = bn[0].Ref() << 1;
451
452
36
    APPLY_MODULO;
453
454
36
    return true;
455
36
}
456
457
0
bool IsNeg::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
458
0
    (void)modulo;
459
0
    (void)ds;
460
461
0
    res = bn[0].Ref() < 0 ? 1 : 0;
462
463
0
    return true;
464
0
}
465
466
0
bool IsEq::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
467
0
    (void)ds;
468
469
0
    auto A = modulo == std::nullopt ? bn[0] : bn[0].Ref() % modulo->ConstRef();
470
0
    auto B = modulo == std::nullopt ? bn[1] : bn[1].Ref() % modulo->ConstRef();
471
472
0
    res = A.Ref() == B.Ref() ? 1 : 0;
473
474
0
    return true;
475
0
}
476
477
0
bool IsGt::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
478
0
    (void)modulo;
479
0
    (void)ds;
480
481
0
    res = bn[0].Ref() > bn[1].Ref() ? 1 : 0;
482
483
0
    return true;
484
0
}
485
486
0
bool IsGte::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
487
0
    (void)modulo;
488
0
    (void)ds;
489
490
0
    res = bn[0].Ref() >= bn[1].Ref() ? 1 : 0;
491
492
0
    return true;
493
0
}
494
495
0
bool IsLt::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
496
0
    (void)modulo;
497
0
    (void)ds;
498
499
0
    res = bn[0].Ref() < bn[1].Ref() ? 1 : 0;
500
501
0
    return true;
502
0
}
503
504
0
bool IsLte::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
505
0
    (void)modulo;
506
0
    (void)ds;
507
508
0
    res = bn[0].Ref() <= bn[1].Ref() ? 1 : 0;
509
510
0
    return true;
511
0
}
512
513
15
bool IsEven::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
514
15
    (void)modulo;
515
15
    (void)ds;
516
517
15
    res = !(bn[0].Ref() % 2) ? 1 : 0;
518
519
15
    return true;
520
15
}
521
522
9
bool IsOdd::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
523
9
    (void)modulo;
524
9
    (void)ds;
525
526
9
    res = (bn[0].Ref() % 2) ? 1 : 0;
527
528
9
    return true;
529
9
}
530
531
7
bool IsZero::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
532
7
    (void)ds;
533
534
7
    auto A = modulo == std::nullopt ? bn[0] : bn[0].Ref() % modulo->ConstRef();
535
536
7
    res = A.Ref() == 0 ? 1 : 0;
537
538
7
    return true;
539
7
}
540
541
0
bool IsNotZero::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
542
0
    (void)modulo;
543
0
    (void)ds;
544
545
0
    res = bn[0].Ref() == 0 ? 0 : 1;
546
547
0
    return true;
548
0
}
549
550
0
bool IsOne::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
551
0
    (void)ds;
552
553
0
    auto A = modulo == std::nullopt ? bn[0] : bn[0].Ref() % modulo->ConstRef();
554
555
0
    res = A.Ref() == 1 ? 1 : 0;
556
557
0
    return true;
558
0
}
559
560
0
bool MulMod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
561
0
    (void)modulo;
562
0
    (void)ds;
563
564
0
    try {
565
0
        switch ( GET_UINT8_FOR_SWITCH() ) {
566
0
            case    0:
567
0
                {
568
0
                    try {
569
0
                        ::Botan::Modular_Reducer mod(bn[2].Ref());
570
0
                        res = mod.multiply(bn[0].Ref(), bn[1].Ref());
571
0
                    } catch ( std::exception e ) {
572
                        /* Modular reducer is expected to throw an exception when modulo is 0 */
573
0
                        if ( bn[2].Ref() == 0 ) {
574
0
                            return false;
575
0
                        }
576
577
                        /* Rethrow */
578
0
                        throw e;
579
0
                    }
580
0
                }
581
0
                break;
582
0
            case    1:
583
0
                res = (bn[0].Ref() * bn[1].Ref()) % bn[2].Ref();
584
0
                break;
585
0
            default:
586
0
                return false;
587
0
        }
588
0
    } catch ( fuzzing::datasource::Datasource::OutOfData ) {
589
0
        return false;
590
0
    } catch ( std::exception e ) {
591
        /* Botan is expected to throw an exception when modulo is <= 0 */
592
0
        if ( bn[2].Ref() <= 0 ) {
593
0
            return false;
594
0
        }
595
596
        /* Rethrow */
597
0
        throw e;
598
0
    }
599
600
0
    return true;
601
0
}
602
603
65
bool Bit::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
604
65
    (void)modulo;
605
65
    (void)ds;
606
607
65
    const auto pos = detail::To_size_t(bn[1].Ref());
608
609
65
    if ( pos == std::nullopt ) {
610
5
        return false;
611
5
    }
612
613
60
    res = bn[0].Ref().get_bit(*pos) ? 1 : 0;
614
615
60
    return true;
616
65
}
617
618
36
bool CmpAbs::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
619
36
    (void)modulo;
620
36
    std::vector<Bignum> bnAbs = {bn[0].Ref().abs(), bn[1].Ref().abs()};
621
36
    auto cmp = std::make_unique<Cmp>();
622
623
36
    return cmp->Run(ds, res, bnAbs, modulo);
624
36
}
625
626
61
bool SetBit::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
627
61
    (void)modulo;
628
61
    (void)ds;
629
630
61
    res = bn[0].Ref();
631
632
61
    const auto pos = detail::To_size_t(bn[1].Ref());
633
634
61
    if ( pos == std::nullopt ) {
635
0
        return false;
636
0
    }
637
638
61
    res.Ref().set_bit(*pos);
639
640
61
    return true;
641
61
}
642
643
69
bool ClearBit::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
644
69
    (void)modulo;
645
69
    (void)ds;
646
647
69
    res = bn[0].Ref();
648
649
69
    const auto pos = detail::To_size_t(bn[1].Ref());
650
651
69
    if ( pos == std::nullopt ) {
652
8
        return false;
653
8
    }
654
655
61
    res.Ref().clear_bit(*pos);
656
657
61
    return true;
658
69
}
659
660
0
bool MulAdd::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
661
0
    (void)modulo;
662
0
    (void)ds;
663
664
0
    res = (bn[0].Ref()*bn[1].Ref()) + bn[2].Ref();
665
666
0
    return true;
667
0
}
668
669
0
bool MulDiv::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
670
0
    (void)modulo;
671
0
    (void)ds;
672
673
0
    if ( bn[2].Ref() == 0 ) {
674
0
        return false;
675
0
    }
676
677
0
    res = (bn[0].Ref()*bn[1].Ref()+1) / bn[2].Ref();
678
679
0
    return true;
680
0
}
681
682
0
bool MulDivCeil::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
683
0
    (void)modulo;
684
0
    (void)ds;
685
686
0
    if ( bn[2].Ref() <= 0 ) {
687
0
        return false;
688
0
    }
689
690
0
    const auto mulRes = bn[0].Ref() * bn[1].Ref();
691
0
    const auto modRes = mulRes % bn[2].Ref();
692
0
    res = mulRes / bn[2].Ref() + (modRes != 0 ? 1 : 0);
693
694
0
    return true;
695
0
}
696
697
0
bool Exp2::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
698
0
    (void)modulo;
699
0
    (void)ds;
700
701
0
    if ( bn[0].Ref() < 1 ) {
702
0
        return false;
703
0
    }
704
705
0
    const size_t exponent = bn[0].Ref().word_at(0) - 1;
706
707
0
    res = Bignum(2).Ref() << exponent;
708
709
0
    return true;
710
0
}
711
712
0
bool NumLSZeroBits::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
713
0
    (void)modulo;
714
0
    (void)ds;
715
716
0
    res = ::Botan::low_zero_bits(bn[0].Ref());
717
718
0
    return true;
719
0
}
720
721
217
bool Sqrt::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
722
217
    (void)ds;
723
724
217
    try {
725
217
        const auto res2 = ::Botan::is_perfect_square(bn[0].Ref());
726
217
        if ( res2 == 0 ) {
727
204
            return false;
728
204
        }
729
730
13
        res = res2;
731
13
    } catch ( std::exception e ) {
732
        /* is_perfect_square() is expected to throw in this case */
733
5
        if ( bn[0].Ref() < 1 ) {
734
5
            return false;
735
5
        }
736
737
        /* Rethrow */
738
0
        throw e;
739
5
    }
740
741
8
    APPLY_MODULO;
742
743
8
    return true;
744
217
}
745
746
0
bool AddMod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
747
0
    (void)modulo;
748
0
    (void)ds;
749
750
0
    try {
751
0
        switch ( GET_UINT8_FOR_SWITCH() ) {
752
0
            case    0:
753
0
                res = (bn[0].Ref() + bn[1].Ref()) % bn[2].Ref();
754
0
                break;
755
0
            case    1:
756
0
                {
757
0
                    if ( bn[0].Ref() >= bn[2].Ref() ) {
758
0
                        return false;
759
0
                    }
760
0
                    if ( bn[1].Ref() >= bn[2].Ref() ) {
761
0
                        return false;
762
0
                    }
763
764
0
                    ::Botan::secure_vector<::Botan::word> ws;
765
0
                    try {
766
0
                        res = bn[0].Ref().mod_add(bn[1].Ref(), bn[2].Ref(), ws);
767
0
                    } catch ( std::exception e ) {
768
                        /* mod_add is expected to throw an exception when any argument is negative */
769
0
                        if ( bn[0].Ref() < 0 || bn[1].Ref() < 0 || bn[2].Ref() < 0) {
770
0
                            return false;
771
0
                        }
772
773
                        /* Rethrow */
774
0
                        throw e;
775
0
                    }
776
0
                }
777
0
                break;
778
0
            default:
779
0
                return false;
780
0
        }
781
0
    } catch ( fuzzing::datasource::Datasource::OutOfData ) {
782
0
        return false;
783
0
    } catch ( std::exception e ) {
784
        /* Botan is expected to throw an exception when modulo is <= 0 */
785
0
        if ( bn[2].Ref() <= 0 ) {
786
0
            return false;
787
0
        }
788
789
        /* Rethrow */
790
0
        throw e;
791
0
    }
792
793
0
    return true;
794
0
}
795
796
0
bool SubMod::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
797
0
    (void)modulo;
798
0
    (void)ds;
799
800
0
    try {
801
0
        switch ( GET_UINT8_FOR_SWITCH() ) {
802
0
            case    0:
803
0
                res = (bn[0].Ref() - bn[1].Ref()) % bn[2].Ref();
804
0
                break;
805
0
            case    1:
806
0
                {
807
0
                    if ( bn[0].Ref() >= bn[2].Ref() ) {
808
0
                        return false;
809
0
                    }
810
0
                    if ( bn[1].Ref() >= bn[2].Ref() ) {
811
0
                        return false;
812
0
                    }
813
814
0
                    ::Botan::secure_vector<::Botan::word> ws;
815
0
                    try {
816
0
                        res = bn[0].Ref().mod_sub(bn[1].Ref(), bn[2].Ref(), ws);
817
0
                    } catch ( std::exception e ) {
818
                        /* mod_sub is expected to throw an exception when any argument is negative */
819
0
                        if ( bn[0].Ref() < 0 || bn[1].Ref() < 0 || bn[2].Ref() < 0) {
820
0
                            return false;
821
0
                        }
822
823
                        /* Rethrow */
824
0
                        throw e;
825
0
                    }
826
0
                }
827
0
                break;
828
0
            default:
829
0
                return false;
830
0
        }
831
0
    } catch ( fuzzing::datasource::Datasource::OutOfData ) {
832
0
        return false;
833
0
    } catch ( std::exception e ) {
834
        /* Botan is expected to throw an exception when modulo is <= 0 */
835
0
        if ( bn[2].Ref() <= 0 ) {
836
0
            return false;
837
0
        }
838
839
        /* Rethrow */
840
0
        throw e;
841
0
    }
842
843
0
    return true;
844
0
}
845
846
8
bool NumBits::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
847
8
    (void)ds;
848
849
8
    if ( modulo ) {
850
0
        res = (bn[0].Ref() % modulo->ConstRef()).bits();
851
8
    } else {
852
8
        res = bn[0].Ref().bits();
853
8
    }
854
855
8
    return true;
856
8
}
857
858
0
bool Set::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
859
0
    (void)modulo;
860
0
    (void)ds;
861
862
0
    res = bn[0].Ref();
863
864
0
    APPLY_MODULO;
865
866
0
    return true;
867
0
}
868
869
0
bool CondSet::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
870
0
    (void)modulo;
871
0
    (void)ds;
872
873
0
    res.Ref().ct_cond_assign(bn[1].Ref() != 0, bn[0].Ref());
874
875
0
    return true;
876
0
}
877
878
0
bool Ressol::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
879
0
    (void)ds;
880
881
0
    try {
882
0
        auto mod = modulo == std::nullopt ? bn[1] : *modulo;
883
884
0
        const auto r = ::Botan::sqrt_modulo_prime(bn[0].Ref(), mod.Ref());
885
886
0
        if ( r < 1 ) {
887
0
            if ( modulo != std::nullopt ) {
888
0
                res = 0;
889
0
                return true;
890
0
            } else {
891
0
                return false;
892
0
            }
893
0
        }
894
895
0
        if ( modulo != std::nullopt ) {
896
0
            res = ::Botan::square(r) % mod.Ref();
897
0
        }
898
899
0
        return true;
900
0
    } catch ( std::exception e ) {
901
        /* Expected to throw if called with non-prime argument */
902
903
0
        return false;
904
0
    }
905
0
}
906
907
0
bool Not::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
908
0
    (void)ds;
909
910
0
    Bignum max;
911
912
0
    if ( modulo ) {
913
0
        max = *modulo;
914
0
    } else {
915
0
        const size_t numBits = bn[0].Ref().bits();
916
917
0
        if ( numBits == 0 ) {
918
0
            return false;
919
0
        }
920
921
0
        max = (::Botan::BigInt(1) << numBits) - 1;
922
0
    }
923
924
0
    res = max.Ref() - bn[0].Ref();
925
926
0
    APPLY_MODULO;
927
928
0
    return true;
929
0
}
930
931
0
bool Prime::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
932
0
    (void)ds;
933
0
    (void)bn;
934
0
    (void)modulo;
935
936
0
    ::Botan::System_RNG rng;
937
0
    res = Botan::random_prime(rng, (rand() % 512) + 2);
938
939
0
    return true;
940
0
}
941
942
0
bool RandRange::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
943
0
    (void)ds;
944
0
    (void)modulo;
945
946
0
    try {
947
0
        ::Botan::System_RNG rng;
948
0
        res = ::Botan::BigInt::random_integer(rng, bn[0].Ref(), bn[1].Ref());
949
0
    } catch ( std::exception ) {
950
0
        return false;
951
0
    }
952
953
0
    return true;
954
0
}
955
956
0
bool IsSquare::Run(Datasource& ds, Bignum& res, std::vector<Bignum>& bn, const std::optional<Bignum>& modulo) const {
957
0
    (void)ds;
958
959
0
    if ( modulo != std::nullopt ) {
960
0
        return false;
961
0
    }
962
963
0
    try {
964
0
        res = ::Botan::is_perfect_square(bn[0].Ref()) == 0 ? 0 : 1;
965
0
    } catch ( std::exception e ) {
966
        /* is_perfect_square() is expected to throw in this case */
967
0
        if ( bn[0].Ref() < 1 ) {
968
0
            return false;
969
0
        }
970
971
        /* Rethrow */
972
0
        throw e;
973
0
    }
974
975
0
    return true;
976
0
}
977
978
} /* namespace Botan_bignum */
979
} /* namespace module */
980
} /* namespace cryptofuzz */