Coverage Report

Created: 2026-08-14 06:23

next uncovered line (L), next uncovered region (R), next uncovered branch (B)
/src/wolfssl/wolfcrypt/src/misc.c
Line
Count
Source
1
/* misc.c
2
 *
3
 * Copyright (C) 2006-2026 wolfSSL Inc.
4
 *
5
 * This file is part of wolfSSL.
6
 *
7
 * wolfSSL is free software; you can redistribute it and/or modify
8
 * it under the terms of the GNU General Public License as published by
9
 * the Free Software Foundation; either version 3 of the License, or
10
 * (at your option) any later version.
11
 *
12
 * wolfSSL is distributed in the hope that it will be useful,
13
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
14
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
15
 * GNU General Public License for more details.
16
 *
17
 * You should have received a copy of the GNU General Public License
18
 * along with this program; if not, write to the Free Software
19
 * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1335, USA
20
 */
21
/*
22
23
DESCRIPTION
24
This module implements the arithmetic-shift right, left, byte swapping, XOR,
25
masking and clearing memory logic.
26
27
*/
28
29
#ifdef WOLFSSL_VIS_FOR_TESTS
30
    #ifdef HAVE_CONFIG_H
31
        #include <config.h>
32
    #endif
33
    #include <wolfssl/wolfcrypt/settings.h>
34
#else
35
    #include <wolfssl/wolfcrypt/libwolfssl_sources.h>
36
#endif
37
38
#ifndef WOLF_CRYPT_MISC_C
39
#define WOLF_CRYPT_MISC_C
40
41
#include <wolfssl/wolfcrypt/misc.h>
42
43
/* inlining these functions is a huge speed increase and a small size decrease,
44
   because the functions are smaller than function call setup/cleanup, e.g.,
45
   md5 benchmark is twice as fast with inline.  If you don't want it, then
46
   define NO_INLINE and compile this file into wolfssl, otherwise it's used as
47
   a source header
48
 */
49
50
/* Check for if compiling misc.c when not needed. */
51
#if !defined(WOLFSSL_MISC_INCLUDED) && !defined(NO_INLINE)
52
    #ifndef WOLFSSL_IGNORE_FILE_WARN
53
        #warning misc.c does not need to be compiled when using inline (NO_INLINE not defined)
54
    #endif
55
56
#else
57
58
59
#if defined(__ICCARM__)
60
    #include <intrinsics.h>
61
#endif
62
63
64
#ifdef INTEL_INTRINSICS
65
66
    #include <stdlib.h>      /* get intrinsic definitions */
67
68
    /* for non visual studio probably need no long version, 32 bit only
69
     * i.e., _rotl and _rotr */
70
    #pragma intrinsic(_lrotl, _lrotr)
71
72
    WC_MISC_STATIC WC_INLINE word32 rotlFixed(word32 x, word32 y)
73
    {
74
        return y ? _lrotl(x, y) : x;
75
    }
76
77
    WC_MISC_STATIC WC_INLINE word32 rotrFixed(word32 x, word32 y)
78
    {
79
        return y ? _lrotr(x, y) : x;
80
    }
81
82
#elif defined(__CCRX__)
83
84
    #include <builtin.h>      /* get intrinsic definitions */
85
86
    #if !defined(NO_INLINE)
87
88
    #define rotlFixed(x, y) _builtin_rotl(x, y)
89
90
    #define rotrFixed(x, y) _builtin_rotr(x, y)
91
92
    #else /* create real function */
93
94
    WC_MISC_STATIC WC_INLINE word32 rotlFixed(word32 x, word32 y)
95
    {
96
        return _builtin_rotl(x, y);
97
    }
98
99
    WC_MISC_STATIC WC_INLINE word32 rotrFixed(word32 x, word32 y)
100
    {
101
        return _builtin_rotr(x, y);
102
    }
103
104
    #endif
105
106
#else /* generic */
107
/* The rotate complement uses sizeof(x) * CHAR_BIT for the value bit-width of the
108
 * word, not a literal * 8. sizeof() counts CHAR_BIT-sized cells, so word32 is a
109
 * true 32-bit type but sizeof(word32) is 2 (not 4) on CHAR_BIT == 16 targets
110
 * (e.g. TI C28x): 2 * 16 == 32. On the usual CHAR_BIT == 8 targets this is
111
 * byte-for-byte identical to the previous sizeof(x) * 8. Same idiom is used by
112
 * the word16 and word64 variants below. */
113
/* This routine performs a left circular arithmetic shift of <x> by <y> value. */
114
115
    WC_MISC_STATIC WC_INLINE word32 rotlFixed(word32 x, word32 y)
116
2.14M
    {
117
2.14M
        return (x << y) | (x >> (sizeof(x) * CHAR_BIT - y));
118
2.14M
    }
Unexecuted instantiation: hmac.c:rotlFixed
Unexecuted instantiation: hash.c:rotlFixed
random.c:rotlFixed
Line
Count
Source
116
23.4k
    {
117
        return (x << y) | (x >> (sizeof(x) * CHAR_BIT - y));
118
23.4k
    }
sha256.c:rotlFixed
Line
Count
Source
116
1.11M
    {
117
        return (x << y) | (x >> (sizeof(x) * CHAR_BIT - y));
118
1.11M
    }
Unexecuted instantiation: rsa.c:rotlFixed
Unexecuted instantiation: sp_int.c:rotlFixed
aes.c:rotlFixed
Line
Count
Source
116
1.00M
    {
117
        return (x << y) | (x >> (sizeof(x) * CHAR_BIT - y));
118
1.00M
    }
Unexecuted instantiation: sha.c:rotlFixed
Unexecuted instantiation: sha512.c:rotlFixed
Unexecuted instantiation: sha3.c:rotlFixed
Unexecuted instantiation: wolfmath.c:rotlFixed
Unexecuted instantiation: memory.c:rotlFixed
Unexecuted instantiation: dh.c:rotlFixed
Unexecuted instantiation: asn.c:rotlFixed
Unexecuted instantiation: coding.c:rotlFixed
Unexecuted instantiation: ecc.c:rotlFixed
Unexecuted instantiation: wc_mlkem.c:rotlFixed
Unexecuted instantiation: wc_mlkem_poly.c:rotlFixed
Unexecuted instantiation: ssl.c:rotlFixed
Unexecuted instantiation: tls.c:rotlFixed
Unexecuted instantiation: tls13.c:rotlFixed
Unexecuted instantiation: kdf.c:rotlFixed
Unexecuted instantiation: wc_encrypt.c:rotlFixed
Unexecuted instantiation: pwdbased.c:rotlFixed
Unexecuted instantiation: chacha20_poly1305.c:rotlFixed
Unexecuted instantiation: internal.c:rotlFixed
Unexecuted instantiation: keys.c:rotlFixed
Unexecuted instantiation: poly1305.c:rotlFixed
Unexecuted instantiation: chacha.c:rotlFixed
119
120
/* This routine performs a right circular arithmetic shift of <x> by <y> value. */
121
    WC_MISC_STATIC WC_INLINE word32 rotrFixed(word32 x, word32 y)
122
41.6M
    {
123
41.6M
        return (x >> y) | (x << (sizeof(x) * CHAR_BIT - y));
124
41.6M
    }
Unexecuted instantiation: hmac.c:rotrFixed
Unexecuted instantiation: hash.c:rotrFixed
random.c:rotrFixed
Line
Count
Source
122
23.4k
    {
123
        return (x >> y) | (x << (sizeof(x) * CHAR_BIT - y));
124
23.4k
    }
sha256.c:rotrFixed
Line
Count
Source
122
40.6M
    {
123
        return (x >> y) | (x << (sizeof(x) * CHAR_BIT - y));
124
40.6M
    }
Unexecuted instantiation: rsa.c:rotrFixed
Unexecuted instantiation: sp_int.c:rotrFixed
aes.c:rotrFixed
Line
Count
Source
122
1.00M
    {
123
        return (x >> y) | (x << (sizeof(x) * CHAR_BIT - y));
124
1.00M
    }
Unexecuted instantiation: sha.c:rotrFixed
Unexecuted instantiation: sha512.c:rotrFixed
Unexecuted instantiation: sha3.c:rotrFixed
Unexecuted instantiation: wolfmath.c:rotrFixed
Unexecuted instantiation: memory.c:rotrFixed
Unexecuted instantiation: dh.c:rotrFixed
Unexecuted instantiation: asn.c:rotrFixed
Unexecuted instantiation: coding.c:rotrFixed
Unexecuted instantiation: ecc.c:rotrFixed
Unexecuted instantiation: wc_mlkem.c:rotrFixed
Unexecuted instantiation: wc_mlkem_poly.c:rotrFixed
Unexecuted instantiation: ssl.c:rotrFixed
Unexecuted instantiation: tls.c:rotrFixed
Unexecuted instantiation: tls13.c:rotrFixed
Unexecuted instantiation: kdf.c:rotrFixed
Unexecuted instantiation: wc_encrypt.c:rotrFixed
Unexecuted instantiation: pwdbased.c:rotrFixed
Unexecuted instantiation: chacha20_poly1305.c:rotrFixed
Unexecuted instantiation: internal.c:rotrFixed
Unexecuted instantiation: keys.c:rotrFixed
Unexecuted instantiation: poly1305.c:rotrFixed
Unexecuted instantiation: chacha.c:rotrFixed
125
126
#endif
127
128
/* This routine performs a left circular arithmetic shift of <x> by <y> value */
129
WC_MISC_STATIC WC_INLINE word16 rotlFixed16(word16 x, word16 y)
130
0
{
131
0
    return (word16)((x << y) | (x >> (sizeof(x) * CHAR_BIT - y)));
132
0
}
Unexecuted instantiation: hmac.c:rotlFixed16
Unexecuted instantiation: hash.c:rotlFixed16
Unexecuted instantiation: random.c:rotlFixed16
Unexecuted instantiation: sha256.c:rotlFixed16
Unexecuted instantiation: rsa.c:rotlFixed16
Unexecuted instantiation: sp_int.c:rotlFixed16
Unexecuted instantiation: aes.c:rotlFixed16
Unexecuted instantiation: sha.c:rotlFixed16
Unexecuted instantiation: sha512.c:rotlFixed16
Unexecuted instantiation: sha3.c:rotlFixed16
Unexecuted instantiation: wolfmath.c:rotlFixed16
Unexecuted instantiation: memory.c:rotlFixed16
Unexecuted instantiation: dh.c:rotlFixed16
Unexecuted instantiation: asn.c:rotlFixed16
Unexecuted instantiation: coding.c:rotlFixed16
Unexecuted instantiation: ecc.c:rotlFixed16
Unexecuted instantiation: wc_mlkem.c:rotlFixed16
Unexecuted instantiation: wc_mlkem_poly.c:rotlFixed16
Unexecuted instantiation: ssl.c:rotlFixed16
Unexecuted instantiation: tls.c:rotlFixed16
Unexecuted instantiation: tls13.c:rotlFixed16
Unexecuted instantiation: kdf.c:rotlFixed16
Unexecuted instantiation: wc_encrypt.c:rotlFixed16
Unexecuted instantiation: pwdbased.c:rotlFixed16
Unexecuted instantiation: chacha20_poly1305.c:rotlFixed16
Unexecuted instantiation: internal.c:rotlFixed16
Unexecuted instantiation: keys.c:rotlFixed16
Unexecuted instantiation: poly1305.c:rotlFixed16
Unexecuted instantiation: chacha.c:rotlFixed16
133
134
135
/* This routine performs a right circular arithmetic shift of <x> by <y> value */
136
WC_MISC_STATIC WC_INLINE word16 rotrFixed16(word16 x, word16 y)
137
0
{
138
0
    return (word16)((x >> y) | (x << (sizeof(x) * CHAR_BIT - y)));
139
0
}
Unexecuted instantiation: hmac.c:rotrFixed16
Unexecuted instantiation: hash.c:rotrFixed16
Unexecuted instantiation: random.c:rotrFixed16
Unexecuted instantiation: sha256.c:rotrFixed16
Unexecuted instantiation: rsa.c:rotrFixed16
Unexecuted instantiation: sp_int.c:rotrFixed16
Unexecuted instantiation: aes.c:rotrFixed16
Unexecuted instantiation: sha.c:rotrFixed16
Unexecuted instantiation: sha512.c:rotrFixed16
Unexecuted instantiation: sha3.c:rotrFixed16
Unexecuted instantiation: wolfmath.c:rotrFixed16
Unexecuted instantiation: memory.c:rotrFixed16
Unexecuted instantiation: dh.c:rotrFixed16
Unexecuted instantiation: asn.c:rotrFixed16
Unexecuted instantiation: coding.c:rotrFixed16
Unexecuted instantiation: ecc.c:rotrFixed16
Unexecuted instantiation: wc_mlkem.c:rotrFixed16
Unexecuted instantiation: wc_mlkem_poly.c:rotrFixed16
Unexecuted instantiation: ssl.c:rotrFixed16
Unexecuted instantiation: tls.c:rotrFixed16
Unexecuted instantiation: tls13.c:rotrFixed16
Unexecuted instantiation: kdf.c:rotrFixed16
Unexecuted instantiation: wc_encrypt.c:rotrFixed16
Unexecuted instantiation: pwdbased.c:rotrFixed16
Unexecuted instantiation: chacha20_poly1305.c:rotrFixed16
Unexecuted instantiation: internal.c:rotrFixed16
Unexecuted instantiation: keys.c:rotrFixed16
Unexecuted instantiation: poly1305.c:rotrFixed16
Unexecuted instantiation: chacha.c:rotrFixed16
140
141
/* This routine performs a byte swap of 32-bit word value. */
142
#if defined(__CCRX__) && !defined(NO_INLINE) /* shortest version for CC-RX */
143
    #define ByteReverseWord32(value) _builtin_revl(value)
144
#else
145
WC_MISC_STATIC WC_INLINE word32 ByteReverseWord32(word32 value)
146
2.14M
{
147
#ifdef PPC_INTRINSICS
148
    /* PPC: load reverse indexed instruction */
149
    return (word32)__lwbrx(&value,0);
150
#elif defined(__ICCARM__)
151
    return (word32)__REV(value);
152
#elif defined(KEIL_INTRINSICS)
153
    return (word32)__rev(value);
154
#elif defined(__CCRX__)
155
    return (word32)_builtin_revl(value);
156
#elif defined(WOLF_ALLOW_BUILTIN) && \
157
        defined(__GNUC_PREREQ) && __GNUC_PREREQ(4, 3)
158
    return (word32)__builtin_bswap32(value);
159
#elif defined(WOLFSSL_BYTESWAP32_ASM) && defined(__GNUC__) && \
160
      defined(__aarch64__)
161
    __asm__ volatile (
162
        "REV32 %0, %0  \n"
163
        : "+r" (value)
164
        :
165
    );
166
    return value;
167
#elif defined(WOLFSSL_BYTESWAP32_ASM) && defined(__GNUC__) && \
168
      (defined(__thumb__) || defined(__arm__))
169
    __asm__ volatile (
170
        "REV %0, %0  \n"
171
        : "+r" (value)
172
        :
173
    );
174
    return value;
175
#elif defined(FAST_ROTATE)
176
    /* 5 instructions with rotate instruction, 9 without */
177
2.14M
    return (rotrFixed(value, 8U) & 0xff00ff00) |
178
2.14M
           (rotlFixed(value, 8U) & 0x00ff00ff);
179
#else
180
    /* 6 instructions with rotate instruction, 8 without */
181
    value = ((value & 0xFF00FF00) >> 8) | ((value & 0x00FF00FF) << 8);
182
    return rotlFixed(value, 16U);
183
#endif
184
2.14M
}
Unexecuted instantiation: hmac.c:ByteReverseWord32
Unexecuted instantiation: hash.c:ByteReverseWord32
random.c:ByteReverseWord32
Line
Count
Source
146
23.4k
{
147
#ifdef PPC_INTRINSICS
148
    /* PPC: load reverse indexed instruction */
149
    return (word32)__lwbrx(&value,0);
150
#elif defined(__ICCARM__)
151
    return (word32)__REV(value);
152
#elif defined(KEIL_INTRINSICS)
153
    return (word32)__rev(value);
154
#elif defined(__CCRX__)
155
    return (word32)_builtin_revl(value);
156
#elif defined(WOLF_ALLOW_BUILTIN) && \
157
        defined(__GNUC_PREREQ) && __GNUC_PREREQ(4, 3)
158
    return (word32)__builtin_bswap32(value);
159
#elif defined(WOLFSSL_BYTESWAP32_ASM) && defined(__GNUC__) && \
160
      defined(__aarch64__)
161
    __asm__ volatile (
162
        "REV32 %0, %0  \n"
163
        : "+r" (value)
164
        :
165
    );
166
    return value;
167
#elif defined(WOLFSSL_BYTESWAP32_ASM) && defined(__GNUC__) && \
168
      (defined(__thumb__) || defined(__arm__))
169
    __asm__ volatile (
170
        "REV %0, %0  \n"
171
        : "+r" (value)
172
        :
173
    );
174
    return value;
175
#elif defined(FAST_ROTATE)
176
    /* 5 instructions with rotate instruction, 9 without */
177
23.4k
    return (rotrFixed(value, 8U) & 0xff00ff00) |
178
23.4k
           (rotlFixed(value, 8U) & 0x00ff00ff);
179
#else
180
    /* 6 instructions with rotate instruction, 8 without */
181
    value = ((value & 0xFF00FF00) >> 8) | ((value & 0x00FF00FF) << 8);
182
    return rotlFixed(value, 16U);
183
#endif
184
23.4k
}
sha256.c:ByteReverseWord32
Line
Count
Source
146
1.11M
{
147
#ifdef PPC_INTRINSICS
148
    /* PPC: load reverse indexed instruction */
149
    return (word32)__lwbrx(&value,0);
150
#elif defined(__ICCARM__)
151
    return (word32)__REV(value);
152
#elif defined(KEIL_INTRINSICS)
153
    return (word32)__rev(value);
154
#elif defined(__CCRX__)
155
    return (word32)_builtin_revl(value);
156
#elif defined(WOLF_ALLOW_BUILTIN) && \
157
        defined(__GNUC_PREREQ) && __GNUC_PREREQ(4, 3)
158
    return (word32)__builtin_bswap32(value);
159
#elif defined(WOLFSSL_BYTESWAP32_ASM) && defined(__GNUC__) && \
160
      defined(__aarch64__)
161
    __asm__ volatile (
162
        "REV32 %0, %0  \n"
163
        : "+r" (value)
164
        :
165
    );
166
    return value;
167
#elif defined(WOLFSSL_BYTESWAP32_ASM) && defined(__GNUC__) && \
168
      (defined(__thumb__) || defined(__arm__))
169
    __asm__ volatile (
170
        "REV %0, %0  \n"
171
        : "+r" (value)
172
        :
173
    );
174
    return value;
175
#elif defined(FAST_ROTATE)
176
    /* 5 instructions with rotate instruction, 9 without */
177
1.11M
    return (rotrFixed(value, 8U) & 0xff00ff00) |
178
1.11M
           (rotlFixed(value, 8U) & 0x00ff00ff);
179
#else
180
    /* 6 instructions with rotate instruction, 8 without */
181
    value = ((value & 0xFF00FF00) >> 8) | ((value & 0x00FF00FF) << 8);
182
    return rotlFixed(value, 16U);
183
#endif
184
1.11M
}
Unexecuted instantiation: rsa.c:ByteReverseWord32
Unexecuted instantiation: sp_int.c:ByteReverseWord32
aes.c:ByteReverseWord32
Line
Count
Source
146
1.00M
{
147
#ifdef PPC_INTRINSICS
148
    /* PPC: load reverse indexed instruction */
149
    return (word32)__lwbrx(&value,0);
150
#elif defined(__ICCARM__)
151
    return (word32)__REV(value);
152
#elif defined(KEIL_INTRINSICS)
153
    return (word32)__rev(value);
154
#elif defined(__CCRX__)
155
    return (word32)_builtin_revl(value);
156
#elif defined(WOLF_ALLOW_BUILTIN) && \
157
        defined(__GNUC_PREREQ) && __GNUC_PREREQ(4, 3)
158
    return (word32)__builtin_bswap32(value);
159
#elif defined(WOLFSSL_BYTESWAP32_ASM) && defined(__GNUC__) && \
160
      defined(__aarch64__)
161
    __asm__ volatile (
162
        "REV32 %0, %0  \n"
163
        : "+r" (value)
164
        :
165
    );
166
    return value;
167
#elif defined(WOLFSSL_BYTESWAP32_ASM) && defined(__GNUC__) && \
168
      (defined(__thumb__) || defined(__arm__))
169
    __asm__ volatile (
170
        "REV %0, %0  \n"
171
        : "+r" (value)
172
        :
173
    );
174
    return value;
175
#elif defined(FAST_ROTATE)
176
    /* 5 instructions with rotate instruction, 9 without */
177
1.00M
    return (rotrFixed(value, 8U) & 0xff00ff00) |
178
1.00M
           (rotlFixed(value, 8U) & 0x00ff00ff);
179
#else
180
    /* 6 instructions with rotate instruction, 8 without */
181
    value = ((value & 0xFF00FF00) >> 8) | ((value & 0x00FF00FF) << 8);
182
    return rotlFixed(value, 16U);
183
#endif
184
1.00M
}
Unexecuted instantiation: sha.c:ByteReverseWord32
Unexecuted instantiation: sha512.c:ByteReverseWord32
Unexecuted instantiation: sha3.c:ByteReverseWord32
Unexecuted instantiation: wolfmath.c:ByteReverseWord32
Unexecuted instantiation: memory.c:ByteReverseWord32
Unexecuted instantiation: dh.c:ByteReverseWord32
Unexecuted instantiation: asn.c:ByteReverseWord32
Unexecuted instantiation: coding.c:ByteReverseWord32
Unexecuted instantiation: ecc.c:ByteReverseWord32
Unexecuted instantiation: wc_mlkem.c:ByteReverseWord32
Unexecuted instantiation: wc_mlkem_poly.c:ByteReverseWord32
Unexecuted instantiation: ssl.c:ByteReverseWord32
Unexecuted instantiation: tls.c:ByteReverseWord32
Unexecuted instantiation: tls13.c:ByteReverseWord32
Unexecuted instantiation: kdf.c:ByteReverseWord32
Unexecuted instantiation: wc_encrypt.c:ByteReverseWord32
Unexecuted instantiation: pwdbased.c:ByteReverseWord32
Unexecuted instantiation: chacha20_poly1305.c:ByteReverseWord32
Unexecuted instantiation: internal.c:ByteReverseWord32
Unexecuted instantiation: keys.c:ByteReverseWord32
Unexecuted instantiation: poly1305.c:ByteReverseWord32
Unexecuted instantiation: chacha.c:ByteReverseWord32
185
#endif /* __CCRX__ */
186
/* This routine performs a byte swap of words array of a given count. */
187
WC_MISC_STATIC WC_INLINE void ByteReverseWords(word32* out, const word32* in,
188
                                    word32 byteCount)
189
73.2k
{
190
73.2k
    word32 i;
191
192
73.2k
#ifdef WOLFSSL_USE_ALIGN
193
73.2k
    if ((((size_t)in & 0x3) == 0) &&
194
73.2k
        (((size_t)out & 0x3) == 0))
195
73.2k
#endif
196
73.2k
    {
197
73.2k
        word32 count = byteCount/(word32)sizeof(word32);
198
1.19M
        for (i = 0; i < count; i++)
199
1.12M
            out[i] = ByteReverseWord32(in[i]);
200
73.2k
    }
201
0
#ifdef WOLFSSL_USE_ALIGN
202
0
    else if (((size_t)in & 0x3) == 0) {
203
0
        byte *out_bytes = (byte *)out;
204
0
        word32 scratch;
205
206
0
        byteCount &= ~0x3U;
207
208
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word32)) {
209
0
            scratch = ByteReverseWord32(*in++);
210
0
            XMEMCPY(out_bytes + i, &scratch, sizeof(scratch));
211
0
        }
212
0
    }
213
0
    else if (((size_t)out & 0x3) == 0) {
214
0
        const byte *in_bytes = (const byte *)in;
215
0
        word32 scratch;
216
217
0
        byteCount &= ~0x3U;
218
219
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word32)) {
220
0
            XMEMCPY(&scratch, in_bytes + i, sizeof(scratch));
221
0
            *out++ = ByteReverseWord32(scratch);
222
0
        }
223
0
    }
224
0
    else {
225
0
        const byte *in_bytes = (const byte *)in;
226
0
        byte *out_bytes = (byte *)out;
227
0
        word32 scratch;
228
229
0
        byteCount &= ~0x3U;
230
231
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word32)) {
232
0
            XMEMCPY(&scratch, in_bytes + i, sizeof(scratch));
233
0
            scratch = ByteReverseWord32(scratch);
234
0
            XMEMCPY(out_bytes + i, &scratch, sizeof(scratch));
235
0
        }
236
0
    }
237
73.2k
#endif
238
73.2k
}
Unexecuted instantiation: hmac.c:ByteReverseWords
Unexecuted instantiation: hash.c:ByteReverseWords
Unexecuted instantiation: random.c:ByteReverseWords
sha256.c:ByteReverseWords
Line
Count
Source
189
71.5k
{
190
71.5k
    word32 i;
191
192
71.5k
#ifdef WOLFSSL_USE_ALIGN
193
71.5k
    if ((((size_t)in & 0x3) == 0) &&
194
71.5k
        (((size_t)out & 0x3) == 0))
195
71.5k
#endif
196
71.5k
    {
197
71.5k
        word32 count = byteCount/(word32)sizeof(word32);
198
1.18M
        for (i = 0; i < count; i++)
199
1.11M
            out[i] = ByteReverseWord32(in[i]);
200
71.5k
    }
201
0
#ifdef WOLFSSL_USE_ALIGN
202
0
    else if (((size_t)in & 0x3) == 0) {
203
0
        byte *out_bytes = (byte *)out;
204
0
        word32 scratch;
205
206
0
        byteCount &= ~0x3U;
207
208
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word32)) {
209
0
            scratch = ByteReverseWord32(*in++);
210
0
            XMEMCPY(out_bytes + i, &scratch, sizeof(scratch));
211
0
        }
212
0
    }
213
0
    else if (((size_t)out & 0x3) == 0) {
214
0
        const byte *in_bytes = (const byte *)in;
215
0
        word32 scratch;
216
217
0
        byteCount &= ~0x3U;
218
219
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word32)) {
220
0
            XMEMCPY(&scratch, in_bytes + i, sizeof(scratch));
221
0
            *out++ = ByteReverseWord32(scratch);
222
0
        }
223
0
    }
224
0
    else {
225
0
        const byte *in_bytes = (const byte *)in;
226
0
        byte *out_bytes = (byte *)out;
227
0
        word32 scratch;
228
229
0
        byteCount &= ~0x3U;
230
231
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word32)) {
232
0
            XMEMCPY(&scratch, in_bytes + i, sizeof(scratch));
233
0
            scratch = ByteReverseWord32(scratch);
234
0
            XMEMCPY(out_bytes + i, &scratch, sizeof(scratch));
235
0
        }
236
0
    }
237
71.5k
#endif
238
71.5k
}
Unexecuted instantiation: rsa.c:ByteReverseWords
Unexecuted instantiation: sp_int.c:ByteReverseWords
aes.c:ByteReverseWords
Line
Count
Source
189
1.60k
{
190
1.60k
    word32 i;
191
192
1.60k
#ifdef WOLFSSL_USE_ALIGN
193
1.60k
    if ((((size_t)in & 0x3) == 0) &&
194
1.60k
        (((size_t)out & 0x3) == 0))
195
1.60k
#endif
196
1.60k
    {
197
1.60k
        word32 count = byteCount/(word32)sizeof(word32);
198
11.6k
        for (i = 0; i < count; i++)
199
10.0k
            out[i] = ByteReverseWord32(in[i]);
200
1.60k
    }
201
0
#ifdef WOLFSSL_USE_ALIGN
202
0
    else if (((size_t)in & 0x3) == 0) {
203
0
        byte *out_bytes = (byte *)out;
204
0
        word32 scratch;
205
206
0
        byteCount &= ~0x3U;
207
208
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word32)) {
209
0
            scratch = ByteReverseWord32(*in++);
210
0
            XMEMCPY(out_bytes + i, &scratch, sizeof(scratch));
211
0
        }
212
0
    }
213
0
    else if (((size_t)out & 0x3) == 0) {
214
0
        const byte *in_bytes = (const byte *)in;
215
0
        word32 scratch;
216
217
0
        byteCount &= ~0x3U;
218
219
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word32)) {
220
0
            XMEMCPY(&scratch, in_bytes + i, sizeof(scratch));
221
0
            *out++ = ByteReverseWord32(scratch);
222
0
        }
223
0
    }
224
0
    else {
225
0
        const byte *in_bytes = (const byte *)in;
226
0
        byte *out_bytes = (byte *)out;
227
0
        word32 scratch;
228
229
0
        byteCount &= ~0x3U;
230
231
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word32)) {
232
0
            XMEMCPY(&scratch, in_bytes + i, sizeof(scratch));
233
0
            scratch = ByteReverseWord32(scratch);
234
0
            XMEMCPY(out_bytes + i, &scratch, sizeof(scratch));
235
0
        }
236
0
    }
237
1.60k
#endif
238
1.60k
}
Unexecuted instantiation: sha.c:ByteReverseWords
Unexecuted instantiation: sha512.c:ByteReverseWords
Unexecuted instantiation: sha3.c:ByteReverseWords
Unexecuted instantiation: wolfmath.c:ByteReverseWords
Unexecuted instantiation: memory.c:ByteReverseWords
Unexecuted instantiation: dh.c:ByteReverseWords
Unexecuted instantiation: asn.c:ByteReverseWords
Unexecuted instantiation: coding.c:ByteReverseWords
Unexecuted instantiation: ecc.c:ByteReverseWords
Unexecuted instantiation: wc_mlkem.c:ByteReverseWords
Unexecuted instantiation: wc_mlkem_poly.c:ByteReverseWords
Unexecuted instantiation: ssl.c:ByteReverseWords
Unexecuted instantiation: tls.c:ByteReverseWords
Unexecuted instantiation: tls13.c:ByteReverseWords
Unexecuted instantiation: kdf.c:ByteReverseWords
Unexecuted instantiation: wc_encrypt.c:ByteReverseWords
Unexecuted instantiation: pwdbased.c:ByteReverseWords
Unexecuted instantiation: chacha20_poly1305.c:ByteReverseWords
Unexecuted instantiation: internal.c:ByteReverseWords
Unexecuted instantiation: keys.c:ByteReverseWords
Unexecuted instantiation: poly1305.c:ByteReverseWords
Unexecuted instantiation: chacha.c:ByteReverseWords
239
240
#if ((defined(WOLFSSL_AARCH64_BUILD) || defined(__aarch64__)) && \
241
     defined(__APPLE__)) || \
242
    defined(WOLFSSL_X86_64_BUILD) || defined(WOLFSSL_X86_BUILD)
243
    #ifndef WOLFSSL_RW_UNALIGNED_16
244
        #define WOLFSSL_RW_UNALIGNED_16
245
    #endif
246
    #ifndef WOLFSSL_RW_UNALIGNED_32
247
        #define WOLFSSL_RW_UNALIGNED_32
248
    #endif
249
#endif
250
#ifdef WOLFSSL_RW_UNALIGNED_16
251
typedef word16 MAYBE_UNALIGNED uword16;
252
#endif
253
#ifdef WOLFSSL_RW_UNALIGNED_32
254
typedef word32 MAYBE_UNALIGNED uword32;
255
#endif
256
257
WC_MISC_STATIC WC_INLINE word16 readUnalignedWord16(const byte *in)
258
0
{
259
0
#ifndef WOLFSSL_RW_UNALIGNED_16
260
0
    if (((wc_ptr_t)in & (wc_ptr_t)(sizeof(word16) - 1U)) == (wc_ptr_t)0) {
261
0
        return *(const word16 *)in;
262
0
    }
263
0
    else {
264
0
        word16 out = 0;
265
0
        XMEMCPY(&out, in, sizeof(out));
266
0
        return out;
267
0
    }
268
0
#else
269
0
    return *(const uword16 *)in;
270
0
#endif
271
0
}
Unexecuted instantiation: hmac.c:readUnalignedWord16
Unexecuted instantiation: hash.c:readUnalignedWord16
Unexecuted instantiation: random.c:readUnalignedWord16
Unexecuted instantiation: sha256.c:readUnalignedWord16
Unexecuted instantiation: rsa.c:readUnalignedWord16
Unexecuted instantiation: sp_int.c:readUnalignedWord16
Unexecuted instantiation: aes.c:readUnalignedWord16
Unexecuted instantiation: sha.c:readUnalignedWord16
Unexecuted instantiation: sha512.c:readUnalignedWord16
Unexecuted instantiation: sha3.c:readUnalignedWord16
Unexecuted instantiation: wolfmath.c:readUnalignedWord16
Unexecuted instantiation: memory.c:readUnalignedWord16
Unexecuted instantiation: dh.c:readUnalignedWord16
Unexecuted instantiation: asn.c:readUnalignedWord16
Unexecuted instantiation: coding.c:readUnalignedWord16
Unexecuted instantiation: ecc.c:readUnalignedWord16
Unexecuted instantiation: wc_mlkem.c:readUnalignedWord16
Unexecuted instantiation: wc_mlkem_poly.c:readUnalignedWord16
Unexecuted instantiation: ssl.c:readUnalignedWord16
Unexecuted instantiation: tls.c:readUnalignedWord16
Unexecuted instantiation: tls13.c:readUnalignedWord16
Unexecuted instantiation: kdf.c:readUnalignedWord16
Unexecuted instantiation: wc_encrypt.c:readUnalignedWord16
Unexecuted instantiation: pwdbased.c:readUnalignedWord16
Unexecuted instantiation: chacha20_poly1305.c:readUnalignedWord16
Unexecuted instantiation: internal.c:readUnalignedWord16
Unexecuted instantiation: keys.c:readUnalignedWord16
Unexecuted instantiation: poly1305.c:readUnalignedWord16
Unexecuted instantiation: chacha.c:readUnalignedWord16
272
273
WC_MISC_STATIC WC_INLINE word16 writeUnalignedWord16(void *out, word16 in)
274
0
{
275
0
#ifndef WOLFSSL_RW_UNALIGNED_16
276
0
    if (((wc_ptr_t)out & (wc_ptr_t)(sizeof(word16) - 1U)) == (wc_ptr_t)0) {
277
0
        *(word16 *)out = in;
278
0
    }
279
0
    else {
280
0
        XMEMCPY(out, &in, sizeof(in));
281
0
    }
282
0
#else
283
0
    *(uword16 *)out = in;
284
0
#endif
285
0
    return in;
286
0
}
Unexecuted instantiation: hmac.c:writeUnalignedWord16
Unexecuted instantiation: hash.c:writeUnalignedWord16
Unexecuted instantiation: random.c:writeUnalignedWord16
Unexecuted instantiation: sha256.c:writeUnalignedWord16
Unexecuted instantiation: rsa.c:writeUnalignedWord16
Unexecuted instantiation: sp_int.c:writeUnalignedWord16
Unexecuted instantiation: aes.c:writeUnalignedWord16
Unexecuted instantiation: sha.c:writeUnalignedWord16
Unexecuted instantiation: sha512.c:writeUnalignedWord16
Unexecuted instantiation: sha3.c:writeUnalignedWord16
Unexecuted instantiation: wolfmath.c:writeUnalignedWord16
Unexecuted instantiation: memory.c:writeUnalignedWord16
Unexecuted instantiation: dh.c:writeUnalignedWord16
Unexecuted instantiation: asn.c:writeUnalignedWord16
Unexecuted instantiation: coding.c:writeUnalignedWord16
Unexecuted instantiation: ecc.c:writeUnalignedWord16
Unexecuted instantiation: wc_mlkem.c:writeUnalignedWord16
Unexecuted instantiation: wc_mlkem_poly.c:writeUnalignedWord16
Unexecuted instantiation: ssl.c:writeUnalignedWord16
Unexecuted instantiation: tls.c:writeUnalignedWord16
Unexecuted instantiation: tls13.c:writeUnalignedWord16
Unexecuted instantiation: kdf.c:writeUnalignedWord16
Unexecuted instantiation: wc_encrypt.c:writeUnalignedWord16
Unexecuted instantiation: pwdbased.c:writeUnalignedWord16
Unexecuted instantiation: chacha20_poly1305.c:writeUnalignedWord16
Unexecuted instantiation: internal.c:writeUnalignedWord16
Unexecuted instantiation: keys.c:writeUnalignedWord16
Unexecuted instantiation: poly1305.c:writeUnalignedWord16
Unexecuted instantiation: chacha.c:writeUnalignedWord16
287
288
WC_MISC_STATIC WC_INLINE word32 readUnalignedWord32(const byte *in)
289
0
{
290
#ifdef WOLFSSL_WIDE_BYTE
291
    /* Where a C byte is wider than an octet (CHAR_BIT != 8, e.g. TI C28x) the
292
     * input holds one octet per cell, so assemble 4 octets little-endian rather
293
     * than aliasing whole cells as a word32. */
294
    return  (word32)(in[0] & 0xFF)        | ((word32)(in[1] & 0xFF) <<  8) |
295
           ((word32)(in[2] & 0xFF) << 16) | ((word32)(in[3] & 0xFF) << 24);
296
#elif !defined(WOLFSSL_RW_UNALIGNED_32)
297
    if (((wc_ptr_t)in & (wc_ptr_t)(sizeof(word32) - 1U)) == (wc_ptr_t)0) {
298
        return *(const word32 *)in;
299
    }
300
    else {
301
        word32 out = 0; /* else CONFIG_FORTIFY_SOURCE -Wmaybe-uninitialized */
302
        XMEMCPY(&out, in, sizeof(out));
303
        return out;
304
    }
305
#else
306
0
    return *(const uword32 *)in;
307
0
#endif
308
0
}
Unexecuted instantiation: hmac.c:readUnalignedWord32
Unexecuted instantiation: hash.c:readUnalignedWord32
Unexecuted instantiation: random.c:readUnalignedWord32
Unexecuted instantiation: sha256.c:readUnalignedWord32
Unexecuted instantiation: rsa.c:readUnalignedWord32
Unexecuted instantiation: sp_int.c:readUnalignedWord32
Unexecuted instantiation: aes.c:readUnalignedWord32
Unexecuted instantiation: sha.c:readUnalignedWord32
Unexecuted instantiation: sha512.c:readUnalignedWord32
Unexecuted instantiation: sha3.c:readUnalignedWord32
Unexecuted instantiation: wolfmath.c:readUnalignedWord32
Unexecuted instantiation: memory.c:readUnalignedWord32
Unexecuted instantiation: dh.c:readUnalignedWord32
Unexecuted instantiation: asn.c:readUnalignedWord32
Unexecuted instantiation: coding.c:readUnalignedWord32
Unexecuted instantiation: ecc.c:readUnalignedWord32
Unexecuted instantiation: wc_mlkem.c:readUnalignedWord32
Unexecuted instantiation: wc_mlkem_poly.c:readUnalignedWord32
Unexecuted instantiation: ssl.c:readUnalignedWord32
Unexecuted instantiation: tls.c:readUnalignedWord32
Unexecuted instantiation: tls13.c:readUnalignedWord32
Unexecuted instantiation: kdf.c:readUnalignedWord32
Unexecuted instantiation: wc_encrypt.c:readUnalignedWord32
Unexecuted instantiation: pwdbased.c:readUnalignedWord32
Unexecuted instantiation: chacha20_poly1305.c:readUnalignedWord32
Unexecuted instantiation: internal.c:readUnalignedWord32
Unexecuted instantiation: keys.c:readUnalignedWord32
Unexecuted instantiation: poly1305.c:readUnalignedWord32
Unexecuted instantiation: chacha.c:readUnalignedWord32
309
310
WC_MISC_STATIC WC_INLINE word32 writeUnalignedWord32(void *out, word32 in)
311
0
{
312
#ifndef WOLFSSL_RW_UNALIGNED_32
313
    if (((wc_ptr_t)out & (wc_ptr_t)(sizeof(word32) - 1U)) == (wc_ptr_t)0) {
314
        *(word32 *)out = in;
315
    }
316
    else {
317
        XMEMCPY(out, &in, sizeof(in));
318
    }
319
#else
320
0
    *(uword32 *)out = in;
321
0
#endif
322
0
    return in;
323
0
}
Unexecuted instantiation: hmac.c:writeUnalignedWord32
Unexecuted instantiation: hash.c:writeUnalignedWord32
Unexecuted instantiation: random.c:writeUnalignedWord32
Unexecuted instantiation: sha256.c:writeUnalignedWord32
Unexecuted instantiation: rsa.c:writeUnalignedWord32
Unexecuted instantiation: sp_int.c:writeUnalignedWord32
Unexecuted instantiation: aes.c:writeUnalignedWord32
Unexecuted instantiation: sha.c:writeUnalignedWord32
Unexecuted instantiation: sha512.c:writeUnalignedWord32
Unexecuted instantiation: sha3.c:writeUnalignedWord32
Unexecuted instantiation: wolfmath.c:writeUnalignedWord32
Unexecuted instantiation: memory.c:writeUnalignedWord32
Unexecuted instantiation: dh.c:writeUnalignedWord32
Unexecuted instantiation: asn.c:writeUnalignedWord32
Unexecuted instantiation: coding.c:writeUnalignedWord32
Unexecuted instantiation: ecc.c:writeUnalignedWord32
Unexecuted instantiation: wc_mlkem.c:writeUnalignedWord32
Unexecuted instantiation: wc_mlkem_poly.c:writeUnalignedWord32
Unexecuted instantiation: ssl.c:writeUnalignedWord32
Unexecuted instantiation: tls.c:writeUnalignedWord32
Unexecuted instantiation: tls13.c:writeUnalignedWord32
Unexecuted instantiation: kdf.c:writeUnalignedWord32
Unexecuted instantiation: wc_encrypt.c:writeUnalignedWord32
Unexecuted instantiation: pwdbased.c:writeUnalignedWord32
Unexecuted instantiation: chacha20_poly1305.c:writeUnalignedWord32
Unexecuted instantiation: internal.c:writeUnalignedWord32
Unexecuted instantiation: keys.c:writeUnalignedWord32
Unexecuted instantiation: poly1305.c:writeUnalignedWord32
Unexecuted instantiation: chacha.c:writeUnalignedWord32
324
325
WC_MISC_STATIC WC_INLINE void readUnalignedWords32(word32 *out, const byte *in,
326
                                                   size_t count)
327
0
{
328
0
#ifndef WOLFSSL_RW_UNALIGNED_32
329
0
    if (((wc_ptr_t)in & (wc_ptr_t)(sizeof(word32) - 1U)) == (wc_ptr_t)0) {
330
0
        const word32 *in_word32 = (const word32 *)in;
331
0
        while (count-- > 0)
332
0
            *out++ = *in_word32++;
333
0
    }
334
0
    else {
335
0
        XMEMCPY(out, in, count * sizeof(*out));
336
0
    }
337
0
#else
338
0
    const uword32 *in_word32 = (const uword32 *)in;
339
0
    while (count-- > 0)
340
0
        *out++ = *in_word32++;
341
0
#endif
342
0
}
Unexecuted instantiation: hmac.c:readUnalignedWords32
Unexecuted instantiation: hash.c:readUnalignedWords32
Unexecuted instantiation: random.c:readUnalignedWords32
Unexecuted instantiation: sha256.c:readUnalignedWords32
Unexecuted instantiation: rsa.c:readUnalignedWords32
Unexecuted instantiation: sp_int.c:readUnalignedWords32
Unexecuted instantiation: aes.c:readUnalignedWords32
Unexecuted instantiation: sha.c:readUnalignedWords32
Unexecuted instantiation: sha512.c:readUnalignedWords32
Unexecuted instantiation: sha3.c:readUnalignedWords32
Unexecuted instantiation: wolfmath.c:readUnalignedWords32
Unexecuted instantiation: memory.c:readUnalignedWords32
Unexecuted instantiation: dh.c:readUnalignedWords32
Unexecuted instantiation: asn.c:readUnalignedWords32
Unexecuted instantiation: coding.c:readUnalignedWords32
Unexecuted instantiation: ecc.c:readUnalignedWords32
Unexecuted instantiation: wc_mlkem.c:readUnalignedWords32
Unexecuted instantiation: wc_mlkem_poly.c:readUnalignedWords32
Unexecuted instantiation: ssl.c:readUnalignedWords32
Unexecuted instantiation: tls.c:readUnalignedWords32
Unexecuted instantiation: tls13.c:readUnalignedWords32
Unexecuted instantiation: kdf.c:readUnalignedWords32
Unexecuted instantiation: wc_encrypt.c:readUnalignedWords32
Unexecuted instantiation: pwdbased.c:readUnalignedWords32
Unexecuted instantiation: chacha20_poly1305.c:readUnalignedWords32
Unexecuted instantiation: internal.c:readUnalignedWords32
Unexecuted instantiation: keys.c:readUnalignedWords32
Unexecuted instantiation: poly1305.c:readUnalignedWords32
Unexecuted instantiation: chacha.c:readUnalignedWords32
343
344
WC_MISC_STATIC WC_INLINE void writeUnalignedWords32(byte *out, const word32 *in,
345
                                                    size_t count)
346
0
{
347
0
#ifndef WOLFSSL_RW_UNALIGNED_32
348
0
    if (((wc_ptr_t)out & (wc_ptr_t)(sizeof(word32) - 1U)) == (wc_ptr_t)0) {
349
0
        word32 *out_word32 = (word32 *)out;
350
0
        while (count-- > 0)
351
0
            *out_word32++ = *in++;
352
0
    }
353
0
    else {
354
0
        XMEMCPY(out, in, count * sizeof(*in));
355
0
    }
356
0
#else
357
0
    uword32 *out_word32 = (uword32 *)out;
358
0
    while (count-- > 0)
359
0
        *out_word32++ = *in++;
360
0
#endif
361
0
}
Unexecuted instantiation: hmac.c:writeUnalignedWords32
Unexecuted instantiation: hash.c:writeUnalignedWords32
Unexecuted instantiation: random.c:writeUnalignedWords32
Unexecuted instantiation: sha256.c:writeUnalignedWords32
Unexecuted instantiation: rsa.c:writeUnalignedWords32
Unexecuted instantiation: sp_int.c:writeUnalignedWords32
Unexecuted instantiation: aes.c:writeUnalignedWords32
Unexecuted instantiation: sha.c:writeUnalignedWords32
Unexecuted instantiation: sha512.c:writeUnalignedWords32
Unexecuted instantiation: sha3.c:writeUnalignedWords32
Unexecuted instantiation: wolfmath.c:writeUnalignedWords32
Unexecuted instantiation: memory.c:writeUnalignedWords32
Unexecuted instantiation: dh.c:writeUnalignedWords32
Unexecuted instantiation: asn.c:writeUnalignedWords32
Unexecuted instantiation: coding.c:writeUnalignedWords32
Unexecuted instantiation: ecc.c:writeUnalignedWords32
Unexecuted instantiation: wc_mlkem.c:writeUnalignedWords32
Unexecuted instantiation: wc_mlkem_poly.c:writeUnalignedWords32
Unexecuted instantiation: ssl.c:writeUnalignedWords32
Unexecuted instantiation: tls.c:writeUnalignedWords32
Unexecuted instantiation: tls13.c:writeUnalignedWords32
Unexecuted instantiation: kdf.c:writeUnalignedWords32
Unexecuted instantiation: wc_encrypt.c:writeUnalignedWords32
Unexecuted instantiation: pwdbased.c:writeUnalignedWords32
Unexecuted instantiation: chacha20_poly1305.c:writeUnalignedWords32
Unexecuted instantiation: internal.c:writeUnalignedWords32
Unexecuted instantiation: keys.c:writeUnalignedWords32
Unexecuted instantiation: poly1305.c:writeUnalignedWords32
Unexecuted instantiation: chacha.c:writeUnalignedWords32
362
363
#if defined(WORD64_AVAILABLE) && !defined(WOLFSSL_NO_WORD64_OPS)
364
365
#if ((defined(WOLFSSL_AARCH64_BUILD) || defined(__aarch64__)) && \
366
     defined(__APPLE__)) || \
367
    defined(WOLFSSL_X86_64_BUILD) || defined(WOLFSSL_X86_BUILD)
368
    #ifndef WOLFSSL_RW_UNALIGNED_64
369
        #define WOLFSSL_RW_UNALIGNED_64
370
    #endif
371
#endif
372
#ifdef WOLFSSL_RW_UNALIGNED_64
373
typedef word64 MAYBE_UNALIGNED uword64;
374
#endif
375
376
WC_MISC_STATIC WC_INLINE word64 readUnalignedWord64(const byte *in)
377
0
{
378
#ifdef WOLFSSL_WIDE_BYTE
379
    /* Where a C byte is wider than an octet (CHAR_BIT != 8, e.g. TI C28x) the
380
     * input holds one octet per cell, so assemble 8 octets little-endian rather
381
     * than aliasing whole cells as a word64. */
382
    return  (word64)(in[0] & 0xFF)        | ((word64)(in[1] & 0xFF) <<  8) |
383
           ((word64)(in[2] & 0xFF) << 16) | ((word64)(in[3] & 0xFF) << 24) |
384
           ((word64)(in[4] & 0xFF) << 32) | ((word64)(in[5] & 0xFF) << 40) |
385
           ((word64)(in[6] & 0xFF) << 48) | ((word64)(in[7] & 0xFF) << 56);
386
#elif !defined(WOLFSSL_RW_UNALIGNED_64)
387
    if (((wc_ptr_t)in & (wc_ptr_t)(sizeof(word64) - 1U)) == (wc_ptr_t)0) {
388
        return *(const word64 *)in;
389
    }
390
    else {
391
        word64 out = 0; /* else CONFIG_FORTIFY_SOURCE -Wmaybe-uninitialized */
392
        XMEMCPY(&out, in, sizeof(out));
393
        return out;
394
    }
395
#else
396
0
    return *(const uword64 *)in;
397
0
#endif
398
0
}
Unexecuted instantiation: hmac.c:readUnalignedWord64
Unexecuted instantiation: hash.c:readUnalignedWord64
Unexecuted instantiation: random.c:readUnalignedWord64
Unexecuted instantiation: sha256.c:readUnalignedWord64
Unexecuted instantiation: rsa.c:readUnalignedWord64
Unexecuted instantiation: sp_int.c:readUnalignedWord64
Unexecuted instantiation: aes.c:readUnalignedWord64
Unexecuted instantiation: sha.c:readUnalignedWord64
Unexecuted instantiation: sha512.c:readUnalignedWord64
Unexecuted instantiation: sha3.c:readUnalignedWord64
Unexecuted instantiation: wolfmath.c:readUnalignedWord64
Unexecuted instantiation: memory.c:readUnalignedWord64
Unexecuted instantiation: dh.c:readUnalignedWord64
Unexecuted instantiation: asn.c:readUnalignedWord64
Unexecuted instantiation: coding.c:readUnalignedWord64
Unexecuted instantiation: ecc.c:readUnalignedWord64
Unexecuted instantiation: wc_mlkem.c:readUnalignedWord64
Unexecuted instantiation: wc_mlkem_poly.c:readUnalignedWord64
Unexecuted instantiation: ssl.c:readUnalignedWord64
Unexecuted instantiation: tls.c:readUnalignedWord64
Unexecuted instantiation: tls13.c:readUnalignedWord64
Unexecuted instantiation: kdf.c:readUnalignedWord64
Unexecuted instantiation: wc_encrypt.c:readUnalignedWord64
Unexecuted instantiation: pwdbased.c:readUnalignedWord64
Unexecuted instantiation: chacha20_poly1305.c:readUnalignedWord64
Unexecuted instantiation: internal.c:readUnalignedWord64
Unexecuted instantiation: keys.c:readUnalignedWord64
Unexecuted instantiation: poly1305.c:readUnalignedWord64
Unexecuted instantiation: chacha.c:readUnalignedWord64
399
400
WC_MISC_STATIC WC_INLINE word64 writeUnalignedWord64(void *out, word64 in)
401
0
{
402
0
#ifndef WOLFSSL_RW_UNALIGNED_64
403
0
    if (((wc_ptr_t)out & (wc_ptr_t)(sizeof(word64) - 1U)) == (wc_ptr_t)0) {
404
0
        *(word64 *)out = in;
405
0
    }
406
0
    else {
407
0
        XMEMCPY(out, &in, sizeof(in));
408
0
    }
409
0
#else
410
0
    *(uword64 *)out = in;
411
0
#endif
412
0
    return in;
413
0
}
Unexecuted instantiation: hmac.c:writeUnalignedWord64
Unexecuted instantiation: hash.c:writeUnalignedWord64
Unexecuted instantiation: random.c:writeUnalignedWord64
Unexecuted instantiation: sha256.c:writeUnalignedWord64
Unexecuted instantiation: rsa.c:writeUnalignedWord64
Unexecuted instantiation: sp_int.c:writeUnalignedWord64
Unexecuted instantiation: aes.c:writeUnalignedWord64
Unexecuted instantiation: sha.c:writeUnalignedWord64
Unexecuted instantiation: sha512.c:writeUnalignedWord64
Unexecuted instantiation: sha3.c:writeUnalignedWord64
Unexecuted instantiation: wolfmath.c:writeUnalignedWord64
Unexecuted instantiation: memory.c:writeUnalignedWord64
Unexecuted instantiation: dh.c:writeUnalignedWord64
Unexecuted instantiation: asn.c:writeUnalignedWord64
Unexecuted instantiation: coding.c:writeUnalignedWord64
Unexecuted instantiation: ecc.c:writeUnalignedWord64
Unexecuted instantiation: wc_mlkem.c:writeUnalignedWord64
Unexecuted instantiation: wc_mlkem_poly.c:writeUnalignedWord64
Unexecuted instantiation: ssl.c:writeUnalignedWord64
Unexecuted instantiation: tls.c:writeUnalignedWord64
Unexecuted instantiation: tls13.c:writeUnalignedWord64
Unexecuted instantiation: kdf.c:writeUnalignedWord64
Unexecuted instantiation: wc_encrypt.c:writeUnalignedWord64
Unexecuted instantiation: pwdbased.c:writeUnalignedWord64
Unexecuted instantiation: chacha20_poly1305.c:writeUnalignedWord64
Unexecuted instantiation: internal.c:writeUnalignedWord64
Unexecuted instantiation: keys.c:writeUnalignedWord64
Unexecuted instantiation: poly1305.c:writeUnalignedWord64
Unexecuted instantiation: chacha.c:writeUnalignedWord64
414
415
WC_MISC_STATIC WC_INLINE void readUnalignedWords64(word64 *out, const byte *in,
416
                                                   size_t count)
417
0
{
418
0
#ifndef WOLFSSL_RW_UNALIGNED_64
419
0
    if (((wc_ptr_t)in & (wc_ptr_t)(sizeof(word64) - 1U)) == (wc_ptr_t)0) {
420
0
        const word64 *in_word64 = (const word64 *)in;
421
0
        while (count-- > 0)
422
0
            *out++ = *in_word64++;
423
0
    }
424
0
    else {
425
0
        XMEMCPY(out, in, count * sizeof(*out));
426
0
    }
427
0
#else
428
0
    const uword64 *in_word64 = (const uword64 *)in;
429
0
    while (count-- > 0)
430
0
        *out++ = *in_word64++;
431
0
#endif
432
0
}
Unexecuted instantiation: hmac.c:readUnalignedWords64
Unexecuted instantiation: hash.c:readUnalignedWords64
Unexecuted instantiation: random.c:readUnalignedWords64
Unexecuted instantiation: sha256.c:readUnalignedWords64
Unexecuted instantiation: rsa.c:readUnalignedWords64
Unexecuted instantiation: sp_int.c:readUnalignedWords64
Unexecuted instantiation: aes.c:readUnalignedWords64
Unexecuted instantiation: sha.c:readUnalignedWords64
Unexecuted instantiation: sha512.c:readUnalignedWords64
Unexecuted instantiation: sha3.c:readUnalignedWords64
Unexecuted instantiation: wolfmath.c:readUnalignedWords64
Unexecuted instantiation: memory.c:readUnalignedWords64
Unexecuted instantiation: dh.c:readUnalignedWords64
Unexecuted instantiation: asn.c:readUnalignedWords64
Unexecuted instantiation: coding.c:readUnalignedWords64
Unexecuted instantiation: ecc.c:readUnalignedWords64
Unexecuted instantiation: wc_mlkem.c:readUnalignedWords64
Unexecuted instantiation: wc_mlkem_poly.c:readUnalignedWords64
Unexecuted instantiation: ssl.c:readUnalignedWords64
Unexecuted instantiation: tls.c:readUnalignedWords64
Unexecuted instantiation: tls13.c:readUnalignedWords64
Unexecuted instantiation: kdf.c:readUnalignedWords64
Unexecuted instantiation: wc_encrypt.c:readUnalignedWords64
Unexecuted instantiation: pwdbased.c:readUnalignedWords64
Unexecuted instantiation: chacha20_poly1305.c:readUnalignedWords64
Unexecuted instantiation: internal.c:readUnalignedWords64
Unexecuted instantiation: keys.c:readUnalignedWords64
Unexecuted instantiation: poly1305.c:readUnalignedWords64
Unexecuted instantiation: chacha.c:readUnalignedWords64
433
434
WC_MISC_STATIC WC_INLINE void writeUnalignedWords64(byte *out, const word64 *in,
435
                                                    size_t count)
436
0
{
437
0
#ifndef WOLFSSL_RW_UNALIGNED_64
438
0
    if (((wc_ptr_t)out & (wc_ptr_t)(sizeof(word64) - 1U)) == (wc_ptr_t)0) {
439
0
        word64 *out_word64 = (word64 *)out;
440
0
        while (count-- > 0)
441
0
            *out_word64++ = *in++;
442
0
    }
443
0
    else {
444
0
        XMEMCPY(out, in, count * sizeof(*in));
445
0
    }
446
0
#else
447
0
    uword64 *out_word64 = (uword64 *)out;
448
0
    while (count-- > 0)
449
0
        *out_word64++ = *in++;
450
0
#endif
451
0
}
Unexecuted instantiation: hmac.c:writeUnalignedWords64
Unexecuted instantiation: hash.c:writeUnalignedWords64
Unexecuted instantiation: random.c:writeUnalignedWords64
Unexecuted instantiation: sha256.c:writeUnalignedWords64
Unexecuted instantiation: rsa.c:writeUnalignedWords64
Unexecuted instantiation: sp_int.c:writeUnalignedWords64
Unexecuted instantiation: aes.c:writeUnalignedWords64
Unexecuted instantiation: sha.c:writeUnalignedWords64
Unexecuted instantiation: sha512.c:writeUnalignedWords64
Unexecuted instantiation: sha3.c:writeUnalignedWords64
Unexecuted instantiation: wolfmath.c:writeUnalignedWords64
Unexecuted instantiation: memory.c:writeUnalignedWords64
Unexecuted instantiation: dh.c:writeUnalignedWords64
Unexecuted instantiation: asn.c:writeUnalignedWords64
Unexecuted instantiation: coding.c:writeUnalignedWords64
Unexecuted instantiation: ecc.c:writeUnalignedWords64
Unexecuted instantiation: wc_mlkem.c:writeUnalignedWords64
Unexecuted instantiation: wc_mlkem_poly.c:writeUnalignedWords64
Unexecuted instantiation: ssl.c:writeUnalignedWords64
Unexecuted instantiation: tls.c:writeUnalignedWords64
Unexecuted instantiation: tls13.c:writeUnalignedWords64
Unexecuted instantiation: kdf.c:writeUnalignedWords64
Unexecuted instantiation: wc_encrypt.c:writeUnalignedWords64
Unexecuted instantiation: pwdbased.c:writeUnalignedWords64
Unexecuted instantiation: chacha20_poly1305.c:writeUnalignedWords64
Unexecuted instantiation: internal.c:writeUnalignedWords64
Unexecuted instantiation: keys.c:writeUnalignedWords64
Unexecuted instantiation: poly1305.c:writeUnalignedWords64
Unexecuted instantiation: chacha.c:writeUnalignedWords64
452
453
WC_MISC_STATIC WC_INLINE word64 rotlFixed64(word64 x, word64 y)
454
7.67M
{
455
7.67M
    return (x << y) | (x >> (sizeof(x) * CHAR_BIT - y));
456
7.67M
}
Unexecuted instantiation: hmac.c:rotlFixed64
Unexecuted instantiation: hash.c:rotlFixed64
random.c:rotlFixed64
Line
Count
Source
454
78.4k
{
455
    return (x << y) | (x >> (sizeof(x) * CHAR_BIT - y));
456
78.4k
}
Unexecuted instantiation: sha256.c:rotlFixed64
Unexecuted instantiation: rsa.c:rotlFixed64
Unexecuted instantiation: sp_int.c:rotlFixed64
Unexecuted instantiation: aes.c:rotlFixed64
Unexecuted instantiation: sha.c:rotlFixed64
sha512.c:rotlFixed64
Line
Count
Source
454
7.59M
{
455
    return (x << y) | (x >> (sizeof(x) * CHAR_BIT - y));
456
7.59M
}
Unexecuted instantiation: sha3.c:rotlFixed64
Unexecuted instantiation: wolfmath.c:rotlFixed64
Unexecuted instantiation: memory.c:rotlFixed64
Unexecuted instantiation: dh.c:rotlFixed64
Unexecuted instantiation: asn.c:rotlFixed64
Unexecuted instantiation: coding.c:rotlFixed64
Unexecuted instantiation: ecc.c:rotlFixed64
Unexecuted instantiation: wc_mlkem.c:rotlFixed64
Unexecuted instantiation: wc_mlkem_poly.c:rotlFixed64
Unexecuted instantiation: ssl.c:rotlFixed64
Unexecuted instantiation: tls.c:rotlFixed64
Unexecuted instantiation: tls13.c:rotlFixed64
Unexecuted instantiation: kdf.c:rotlFixed64
Unexecuted instantiation: wc_encrypt.c:rotlFixed64
Unexecuted instantiation: pwdbased.c:rotlFixed64
Unexecuted instantiation: chacha20_poly1305.c:rotlFixed64
Unexecuted instantiation: internal.c:rotlFixed64
Unexecuted instantiation: keys.c:rotlFixed64
Unexecuted instantiation: poly1305.c:rotlFixed64
Unexecuted instantiation: chacha.c:rotlFixed64
457
458
459
WC_MISC_STATIC WC_INLINE word64 rotrFixed64(word64 x, word64 y)
460
278M
{
461
278M
    return (x >> y) | (x << (sizeof(x) * CHAR_BIT - y));
462
278M
}
Unexecuted instantiation: hmac.c:rotrFixed64
Unexecuted instantiation: hash.c:rotrFixed64
Unexecuted instantiation: random.c:rotrFixed64
Unexecuted instantiation: sha256.c:rotrFixed64
Unexecuted instantiation: rsa.c:rotrFixed64
Unexecuted instantiation: sp_int.c:rotrFixed64
Unexecuted instantiation: aes.c:rotrFixed64
Unexecuted instantiation: sha.c:rotrFixed64
sha512.c:rotrFixed64
Line
Count
Source
460
278M
{
461
    return (x >> y) | (x << (sizeof(x) * CHAR_BIT - y));
462
278M
}
Unexecuted instantiation: sha3.c:rotrFixed64
Unexecuted instantiation: wolfmath.c:rotrFixed64
Unexecuted instantiation: memory.c:rotrFixed64
Unexecuted instantiation: dh.c:rotrFixed64
Unexecuted instantiation: asn.c:rotrFixed64
Unexecuted instantiation: coding.c:rotrFixed64
Unexecuted instantiation: ecc.c:rotrFixed64
Unexecuted instantiation: wc_mlkem.c:rotrFixed64
Unexecuted instantiation: wc_mlkem_poly.c:rotrFixed64
Unexecuted instantiation: ssl.c:rotrFixed64
Unexecuted instantiation: tls.c:rotrFixed64
Unexecuted instantiation: tls13.c:rotrFixed64
Unexecuted instantiation: kdf.c:rotrFixed64
Unexecuted instantiation: wc_encrypt.c:rotrFixed64
Unexecuted instantiation: pwdbased.c:rotrFixed64
Unexecuted instantiation: chacha20_poly1305.c:rotrFixed64
Unexecuted instantiation: internal.c:rotrFixed64
Unexecuted instantiation: keys.c:rotrFixed64
Unexecuted instantiation: poly1305.c:rotrFixed64
Unexecuted instantiation: chacha.c:rotrFixed64
463
464
465
WC_MISC_STATIC WC_INLINE word64 ByteReverseWord64(word64 value)
466
7.67M
{
467
#if defined(WOLF_ALLOW_BUILTIN) && defined(__GNUC_PREREQ) && __GNUC_PREREQ(4, 3)
468
    return (word64)__builtin_bswap64(value);
469
#elif defined(WOLFCRYPT_SLOW_WORD64)
470
    return (word64)((word64)ByteReverseWord32((word32) value)) << 32 |
471
        (word64)ByteReverseWord32((word32)(value   >> 32));
472
#else
473
7.67M
    value = ((value & W64LIT(0xFF00FF00FF00FF00)) >> 8) |
474
7.67M
        ((value & W64LIT(0x00FF00FF00FF00FF)) << 8);
475
7.67M
    value = ((value & W64LIT(0xFFFF0000FFFF0000)) >> 16) |
476
7.67M
        ((value & W64LIT(0x0000FFFF0000FFFF)) << 16);
477
7.67M
    return rotlFixed64(value, 32U);
478
7.67M
#endif
479
7.67M
}
Unexecuted instantiation: hmac.c:ByteReverseWord64
Unexecuted instantiation: hash.c:ByteReverseWord64
random.c:ByteReverseWord64
Line
Count
Source
466
78.4k
{
467
#if defined(WOLF_ALLOW_BUILTIN) && defined(__GNUC_PREREQ) && __GNUC_PREREQ(4, 3)
468
    return (word64)__builtin_bswap64(value);
469
#elif defined(WOLFCRYPT_SLOW_WORD64)
470
    return (word64)((word64)ByteReverseWord32((word32) value)) << 32 |
471
        (word64)ByteReverseWord32((word32)(value   >> 32));
472
#else
473
78.4k
    value = ((value & W64LIT(0xFF00FF00FF00FF00)) >> 8) |
474
78.4k
        ((value & W64LIT(0x00FF00FF00FF00FF)) << 8);
475
78.4k
    value = ((value & W64LIT(0xFFFF0000FFFF0000)) >> 16) |
476
78.4k
        ((value & W64LIT(0x0000FFFF0000FFFF)) << 16);
477
78.4k
    return rotlFixed64(value, 32U);
478
78.4k
#endif
479
78.4k
}
Unexecuted instantiation: sha256.c:ByteReverseWord64
Unexecuted instantiation: rsa.c:ByteReverseWord64
Unexecuted instantiation: sp_int.c:ByteReverseWord64
Unexecuted instantiation: aes.c:ByteReverseWord64
Unexecuted instantiation: sha.c:ByteReverseWord64
sha512.c:ByteReverseWord64
Line
Count
Source
466
7.59M
{
467
#if defined(WOLF_ALLOW_BUILTIN) && defined(__GNUC_PREREQ) && __GNUC_PREREQ(4, 3)
468
    return (word64)__builtin_bswap64(value);
469
#elif defined(WOLFCRYPT_SLOW_WORD64)
470
    return (word64)((word64)ByteReverseWord32((word32) value)) << 32 |
471
        (word64)ByteReverseWord32((word32)(value   >> 32));
472
#else
473
7.59M
    value = ((value & W64LIT(0xFF00FF00FF00FF00)) >> 8) |
474
7.59M
        ((value & W64LIT(0x00FF00FF00FF00FF)) << 8);
475
7.59M
    value = ((value & W64LIT(0xFFFF0000FFFF0000)) >> 16) |
476
7.59M
        ((value & W64LIT(0x0000FFFF0000FFFF)) << 16);
477
7.59M
    return rotlFixed64(value, 32U);
478
7.59M
#endif
479
7.59M
}
Unexecuted instantiation: sha3.c:ByteReverseWord64
Unexecuted instantiation: wolfmath.c:ByteReverseWord64
Unexecuted instantiation: memory.c:ByteReverseWord64
Unexecuted instantiation: dh.c:ByteReverseWord64
Unexecuted instantiation: asn.c:ByteReverseWord64
Unexecuted instantiation: coding.c:ByteReverseWord64
Unexecuted instantiation: ecc.c:ByteReverseWord64
Unexecuted instantiation: wc_mlkem.c:ByteReverseWord64
Unexecuted instantiation: wc_mlkem_poly.c:ByteReverseWord64
Unexecuted instantiation: ssl.c:ByteReverseWord64
Unexecuted instantiation: tls.c:ByteReverseWord64
Unexecuted instantiation: tls13.c:ByteReverseWord64
Unexecuted instantiation: kdf.c:ByteReverseWord64
Unexecuted instantiation: wc_encrypt.c:ByteReverseWord64
Unexecuted instantiation: pwdbased.c:ByteReverseWord64
Unexecuted instantiation: chacha20_poly1305.c:ByteReverseWord64
Unexecuted instantiation: internal.c:ByteReverseWord64
Unexecuted instantiation: keys.c:ByteReverseWord64
Unexecuted instantiation: poly1305.c:ByteReverseWord64
Unexecuted instantiation: chacha.c:ByteReverseWord64
480
481
482
WC_MISC_STATIC WC_INLINE void ByteReverseWords64(word64* out, const word64* in,
483
                                      word32 byteCount)
484
635k
{
485
635k
    word32 count = byteCount/(word32)sizeof(word64), i;
486
487
635k
#ifdef WOLFSSL_USE_ALIGN
488
635k
    if ((((size_t)in & 0x7) == 0) &&
489
635k
        (((size_t)out & 0x7) == 0))
490
635k
#endif
491
635k
    {
492
8.23M
        for (i = 0; i < count; i++)
493
7.59M
            out[i] = ByteReverseWord64(in[i]);
494
635k
    }
495
0
#ifdef WOLFSSL_USE_ALIGN
496
0
    else if (((size_t)in & 0x7) == 0) {
497
0
        byte *out_bytes = (byte *)out;
498
0
        word64 scratch;
499
500
0
        byteCount &= ~0x7U;
501
502
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word64)) {
503
0
            scratch = ByteReverseWord64(*in++);
504
0
            XMEMCPY(out_bytes + i, &scratch, sizeof(scratch));
505
0
        }
506
0
    }
507
0
    else if (((size_t)out & 0x7) == 0) {
508
0
        const byte *in_bytes = (const byte *)in;
509
0
        word64 scratch;
510
511
0
        byteCount &= ~0x7U;
512
513
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word64)) {
514
0
            XMEMCPY(&scratch, in_bytes + i, sizeof(scratch));
515
0
            *out++ = ByteReverseWord64(scratch);
516
0
        }
517
0
    }
518
0
    else {
519
0
        const byte *in_bytes = (const byte *)in;
520
0
        byte *out_bytes = (byte *)out;
521
0
        word64 scratch;
522
523
0
        byteCount &= ~0x7U;
524
525
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word64)) {
526
0
            XMEMCPY(&scratch, in_bytes + i, sizeof(scratch));
527
0
            scratch = ByteReverseWord64(scratch);
528
0
            XMEMCPY(out_bytes + i, &scratch, sizeof(scratch));
529
0
        }
530
0
    }
531
635k
#endif
532
635k
}
Unexecuted instantiation: hmac.c:ByteReverseWords64
Unexecuted instantiation: hash.c:ByteReverseWords64
Unexecuted instantiation: random.c:ByteReverseWords64
Unexecuted instantiation: sha256.c:ByteReverseWords64
Unexecuted instantiation: rsa.c:ByteReverseWords64
Unexecuted instantiation: sp_int.c:ByteReverseWords64
Unexecuted instantiation: aes.c:ByteReverseWords64
Unexecuted instantiation: sha.c:ByteReverseWords64
sha512.c:ByteReverseWords64
Line
Count
Source
484
635k
{
485
635k
    word32 count = byteCount/(word32)sizeof(word64), i;
486
487
635k
#ifdef WOLFSSL_USE_ALIGN
488
635k
    if ((((size_t)in & 0x7) == 0) &&
489
635k
        (((size_t)out & 0x7) == 0))
490
635k
#endif
491
635k
    {
492
8.23M
        for (i = 0; i < count; i++)
493
7.59M
            out[i] = ByteReverseWord64(in[i]);
494
635k
    }
495
0
#ifdef WOLFSSL_USE_ALIGN
496
0
    else if (((size_t)in & 0x7) == 0) {
497
0
        byte *out_bytes = (byte *)out;
498
0
        word64 scratch;
499
500
0
        byteCount &= ~0x7U;
501
502
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word64)) {
503
0
            scratch = ByteReverseWord64(*in++);
504
0
            XMEMCPY(out_bytes + i, &scratch, sizeof(scratch));
505
0
        }
506
0
    }
507
0
    else if (((size_t)out & 0x7) == 0) {
508
0
        const byte *in_bytes = (const byte *)in;
509
0
        word64 scratch;
510
511
0
        byteCount &= ~0x7U;
512
513
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word64)) {
514
0
            XMEMCPY(&scratch, in_bytes + i, sizeof(scratch));
515
0
            *out++ = ByteReverseWord64(scratch);
516
0
        }
517
0
    }
518
0
    else {
519
0
        const byte *in_bytes = (const byte *)in;
520
0
        byte *out_bytes = (byte *)out;
521
0
        word64 scratch;
522
523
0
        byteCount &= ~0x7U;
524
525
0
        for (i = 0; i < byteCount; i += (word32)sizeof(word64)) {
526
0
            XMEMCPY(&scratch, in_bytes + i, sizeof(scratch));
527
0
            scratch = ByteReverseWord64(scratch);
528
0
            XMEMCPY(out_bytes + i, &scratch, sizeof(scratch));
529
0
        }
530
0
    }
531
635k
#endif
532
635k
}
Unexecuted instantiation: sha3.c:ByteReverseWords64
Unexecuted instantiation: wolfmath.c:ByteReverseWords64
Unexecuted instantiation: memory.c:ByteReverseWords64
Unexecuted instantiation: dh.c:ByteReverseWords64
Unexecuted instantiation: asn.c:ByteReverseWords64
Unexecuted instantiation: coding.c:ByteReverseWords64
Unexecuted instantiation: ecc.c:ByteReverseWords64
Unexecuted instantiation: wc_mlkem.c:ByteReverseWords64
Unexecuted instantiation: wc_mlkem_poly.c:ByteReverseWords64
Unexecuted instantiation: ssl.c:ByteReverseWords64
Unexecuted instantiation: tls.c:ByteReverseWords64
Unexecuted instantiation: tls13.c:ByteReverseWords64
Unexecuted instantiation: kdf.c:ByteReverseWords64
Unexecuted instantiation: wc_encrypt.c:ByteReverseWords64
Unexecuted instantiation: pwdbased.c:ByteReverseWords64
Unexecuted instantiation: chacha20_poly1305.c:ByteReverseWords64
Unexecuted instantiation: internal.c:ByteReverseWords64
Unexecuted instantiation: keys.c:ByteReverseWords64
Unexecuted instantiation: poly1305.c:ByteReverseWords64
Unexecuted instantiation: chacha.c:ByteReverseWords64
533
534
#endif /* WORD64_AVAILABLE && !WOLFSSL_NO_WORD64_OPS */
535
536
#ifdef WOLFSSL_WIDE_BYTE
537
/* Big-endian octet <-> word conversion for WOLFSSL_WIDE_BYTE targets (a C byte
538
 * is wider than an octet, e.g. TI C28x), where a word packs several octets per
539
 * cell and so cannot be aliased as an octet stream.  Loads accumulate with
540
 * <<= 8 (a single (word32)octet << 24 is miscompiled as a 16-bit shift by
541
 * cl2000) and read a whole word before writing, so they are safe in place.
542
 * Stores take an octet count so a partial trailing word works (e.g. the
543
 * 28-octet SHA-512/224 digest).  Shared by SHA-2 and the Hash-DRBG. */
544
WC_MISC_STATIC WC_INLINE void WordsFromBytesBE32(word32* w, const byte* b,
545
    word32 wordCnt)
546
{
547
    word32 i;
548
    word32 r;
549
    for (i = 0; i < wordCnt; i++) {
550
        r  = (word32)(b[(i * 4) + 0] & 0xFF); r <<= 8;
551
        r |= (word32)(b[(i * 4) + 1] & 0xFF); r <<= 8;
552
        r |= (word32)(b[(i * 4) + 2] & 0xFF); r <<= 8;
553
        r |= (word32)(b[(i * 4) + 3] & 0xFF);
554
        w[i] = r;
555
    }
556
}
557
WC_MISC_STATIC WC_INLINE void BytesFromWordsBE32(byte* b, const word32* w,
558
    word32 byteCnt)
559
{
560
    word32 i;
561
    for (i = 0; i < byteCnt; i++) {
562
        b[i] = (byte)((w[i >> 2] >> (24 - ((i & 0x3) * 8))) & 0xFF);
563
    }
564
}
565
/* Serialize words to little-endian octets (one octet per byte cell). */
566
WC_MISC_STATIC WC_INLINE void BytesFromWordsLE32(byte* b, const word32* w,
567
    word32 byteCnt)
568
{
569
    word32 i;
570
    for (i = 0; i < byteCnt; i++) {
571
        b[i] = (byte)((w[i >> 2] >> ((i & 0x3) * 8)) & 0xFF);
572
    }
573
}
574
#ifdef WORD64_AVAILABLE
575
WC_MISC_STATIC WC_INLINE void WordsFromBytesBE64(word64* w, const byte* b,
576
    word32 wordCnt)
577
{
578
    word32 i;
579
    int    j;
580
    word64 r;
581
    for (i = 0; i < wordCnt; i++) {
582
        r = 0;
583
        for (j = 0; j < 8; j++) {
584
            r <<= 8;
585
            r |= (word64)(b[(i * 8) + j] & 0xFF);
586
        }
587
        w[i] = r;
588
    }
589
}
590
WC_MISC_STATIC WC_INLINE void BytesFromWordsBE64(byte* b, const word64* w,
591
    word32 byteCnt)
592
{
593
    word32 i;
594
    for (i = 0; i < byteCnt; i++) {
595
        b[i] = (byte)((w[i >> 3] >> (56 - ((i & 0x7) * 8))) & 0xFF);
596
    }
597
}
598
#endif /* WORD64_AVAILABLE */
599
#endif /* WOLFSSL_WIDE_BYTE */
600
601
#ifndef WOLFSSL_NO_XOR_OPS
602
603
/* Leave no doubt that WOLFSSL_WORD_SIZE is a power of 2. */
604
wc_static_assert((WOLFSSL_WORD_SIZE & (WOLFSSL_WORD_SIZE - 1)) == 0);
605
606
/* This routine performs a bitwise XOR operation of <*a> and <*b> for <n> number
607
of wolfssl_words, placing the result in <*r>. */
608
WC_MISC_STATIC WC_INLINE void XorWordsOut(wolfssl_word** r,
609
                       const wolfssl_word** a, const wolfssl_word** b, word32 n)
610
0
{
611
0
    const wolfssl_word *e = *a + n;
612
613
0
    while (*a < e)
614
0
        *((*r)++) = *((*a)++) ^ *((*b)++);
615
0
}
Unexecuted instantiation: hmac.c:XorWordsOut
Unexecuted instantiation: hash.c:XorWordsOut
Unexecuted instantiation: random.c:XorWordsOut
Unexecuted instantiation: sha256.c:XorWordsOut
Unexecuted instantiation: rsa.c:XorWordsOut
Unexecuted instantiation: sp_int.c:XorWordsOut
Unexecuted instantiation: aes.c:XorWordsOut
Unexecuted instantiation: sha.c:XorWordsOut
Unexecuted instantiation: sha512.c:XorWordsOut
Unexecuted instantiation: sha3.c:XorWordsOut
Unexecuted instantiation: wolfmath.c:XorWordsOut
Unexecuted instantiation: memory.c:XorWordsOut
Unexecuted instantiation: dh.c:XorWordsOut
Unexecuted instantiation: asn.c:XorWordsOut
Unexecuted instantiation: coding.c:XorWordsOut
Unexecuted instantiation: ecc.c:XorWordsOut
Unexecuted instantiation: wc_mlkem.c:XorWordsOut
Unexecuted instantiation: wc_mlkem_poly.c:XorWordsOut
Unexecuted instantiation: ssl.c:XorWordsOut
Unexecuted instantiation: tls.c:XorWordsOut
Unexecuted instantiation: tls13.c:XorWordsOut
Unexecuted instantiation: kdf.c:XorWordsOut
Unexecuted instantiation: wc_encrypt.c:XorWordsOut
Unexecuted instantiation: pwdbased.c:XorWordsOut
Unexecuted instantiation: chacha20_poly1305.c:XorWordsOut
Unexecuted instantiation: internal.c:XorWordsOut
Unexecuted instantiation: keys.c:XorWordsOut
Unexecuted instantiation: poly1305.c:XorWordsOut
Unexecuted instantiation: chacha.c:XorWordsOut
616
617
/* This routine performs a bitwise XOR operation of <*buf> and <*mask> of n
618
counts, placing the result in <*out>. */
619
620
WC_MISC_STATIC WC_INLINE void xorbufout(void* out, const void* buf,
621
                                        const void* mask, word32 count)
622
67.9k
{
623
67.9k
    byte*       o = (byte*)out;
624
67.9k
    const byte* b = (const byte*)buf;
625
67.9k
    const byte* m = (const byte*)mask;
626
627
    /* type-punning helpers */
628
67.9k
    union {
629
67.9k
        byte* bp;
630
67.9k
        wolfssl_word* wp;
631
67.9k
    } tpo;
632
67.9k
    union {
633
67.9k
        const byte* bp;
634
67.9k
        const wolfssl_word* wp;
635
67.9k
    } tpb, tpm;
636
637
67.9k
    if (((((wc_ptr_t)o) & (WOLFSSL_WORD_SIZE - 1)) == 0) &&
638
0
        ((((wc_ptr_t)b) & (WOLFSSL_WORD_SIZE - 1)) == 0) &&
639
0
        ((((wc_ptr_t)m) & (WOLFSSL_WORD_SIZE - 1)) == 0))
640
0
    {
641
        /* All buffers are already aligned.  Possible to XOR by words without
642
         * fixup.
643
         */
644
645
0
        tpo.bp = o;
646
0
        tpb.bp = b;
647
0
        tpm.bp = m;
648
0
        XorWordsOut(&tpo.wp, &tpb.wp, &tpm.wp, count >> WOLFSSL_WORD_SIZE_LOG2);
649
0
        o = tpo.bp;
650
0
        b = tpb.bp;
651
0
        m = tpm.bp;
652
0
        count &= (WOLFSSL_WORD_SIZE - 1);
653
0
    }
654
67.9k
    else if ((((wc_ptr_t)o) & (WOLFSSL_WORD_SIZE - 1)) ==
655
67.9k
             (((wc_ptr_t)b) & (WOLFSSL_WORD_SIZE - 1)) &&
656
0
             (((wc_ptr_t)b) & (WOLFSSL_WORD_SIZE - 1)) ==
657
0
             (((wc_ptr_t)m) & (WOLFSSL_WORD_SIZE - 1)))
658
0
    {
659
        /* Alignment can be fixed up to allow XOR by words. */
660
661
        /* Perform bytewise xor until pointers are aligned to
662
         * WOLFSSL_WORD_SIZE.
663
         */
664
0
        while ((((wc_ptr_t)b & (WOLFSSL_WORD_SIZE - 1)) != 0) && (count > 0))
665
0
        {
666
0
            *o++ = (byte)(*b++ ^ *m++);
667
0
            count--;
668
0
        }
669
670
0
        tpo.bp = o;
671
0
        tpb.bp = b;
672
0
        tpm.bp = m;
673
0
        XorWordsOut(&tpo.wp, &tpb.wp, &tpm.wp, count >> WOLFSSL_WORD_SIZE_LOG2);
674
0
        o = tpo.bp;
675
0
        b = tpb.bp;
676
0
        m = tpm.bp;
677
0
        count &= (WOLFSSL_WORD_SIZE - 1);
678
0
    }
679
680
1.15M
    while (count > 0) {
681
1.08M
        *o++ = (byte)(*b++ ^ *m++);
682
1.08M
        count--;
683
1.08M
    }
684
685
67.9k
}
Unexecuted instantiation: hmac.c:xorbufout
Unexecuted instantiation: hash.c:xorbufout
Unexecuted instantiation: random.c:xorbufout
Unexecuted instantiation: sha256.c:xorbufout
Unexecuted instantiation: rsa.c:xorbufout
Unexecuted instantiation: sp_int.c:xorbufout
aes.c:xorbufout
Line
Count
Source
622
67.9k
{
623
67.9k
    byte*       o = (byte*)out;
624
67.9k
    const byte* b = (const byte*)buf;
625
67.9k
    const byte* m = (const byte*)mask;
626
627
    /* type-punning helpers */
628
67.9k
    union {
629
67.9k
        byte* bp;
630
67.9k
        wolfssl_word* wp;
631
67.9k
    } tpo;
632
67.9k
    union {
633
67.9k
        const byte* bp;
634
67.9k
        const wolfssl_word* wp;
635
67.9k
    } tpb, tpm;
636
637
67.9k
    if (((((wc_ptr_t)o) & (WOLFSSL_WORD_SIZE - 1)) == 0) &&
638
0
        ((((wc_ptr_t)b) & (WOLFSSL_WORD_SIZE - 1)) == 0) &&
639
0
        ((((wc_ptr_t)m) & (WOLFSSL_WORD_SIZE - 1)) == 0))
640
0
    {
641
        /* All buffers are already aligned.  Possible to XOR by words without
642
         * fixup.
643
         */
644
645
0
        tpo.bp = o;
646
0
        tpb.bp = b;
647
0
        tpm.bp = m;
648
0
        XorWordsOut(&tpo.wp, &tpb.wp, &tpm.wp, count >> WOLFSSL_WORD_SIZE_LOG2);
649
0
        o = tpo.bp;
650
0
        b = tpb.bp;
651
0
        m = tpm.bp;
652
0
        count &= (WOLFSSL_WORD_SIZE - 1);
653
0
    }
654
67.9k
    else if ((((wc_ptr_t)o) & (WOLFSSL_WORD_SIZE - 1)) ==
655
67.9k
             (((wc_ptr_t)b) & (WOLFSSL_WORD_SIZE - 1)) &&
656
0
             (((wc_ptr_t)b) & (WOLFSSL_WORD_SIZE - 1)) ==
657
0
             (((wc_ptr_t)m) & (WOLFSSL_WORD_SIZE - 1)))
658
0
    {
659
        /* Alignment can be fixed up to allow XOR by words. */
660
661
        /* Perform bytewise xor until pointers are aligned to
662
         * WOLFSSL_WORD_SIZE.
663
         */
664
0
        while ((((wc_ptr_t)b & (WOLFSSL_WORD_SIZE - 1)) != 0) && (count > 0))
665
0
        {
666
0
            *o++ = (byte)(*b++ ^ *m++);
667
0
            count--;
668
0
        }
669
670
0
        tpo.bp = o;
671
0
        tpb.bp = b;
672
0
        tpm.bp = m;
673
0
        XorWordsOut(&tpo.wp, &tpb.wp, &tpm.wp, count >> WOLFSSL_WORD_SIZE_LOG2);
674
0
        o = tpo.bp;
675
0
        b = tpb.bp;
676
0
        m = tpm.bp;
677
0
        count &= (WOLFSSL_WORD_SIZE - 1);
678
0
    }
679
680
1.15M
    while (count > 0) {
681
1.08M
        *o++ = (byte)(*b++ ^ *m++);
682
1.08M
        count--;
683
1.08M
    }
684
685
67.9k
}
Unexecuted instantiation: sha.c:xorbufout
Unexecuted instantiation: sha512.c:xorbufout
Unexecuted instantiation: sha3.c:xorbufout
Unexecuted instantiation: wolfmath.c:xorbufout
Unexecuted instantiation: memory.c:xorbufout
Unexecuted instantiation: dh.c:xorbufout
Unexecuted instantiation: asn.c:xorbufout
Unexecuted instantiation: coding.c:xorbufout
Unexecuted instantiation: ecc.c:xorbufout
Unexecuted instantiation: wc_mlkem.c:xorbufout
Unexecuted instantiation: wc_mlkem_poly.c:xorbufout
Unexecuted instantiation: ssl.c:xorbufout
Unexecuted instantiation: tls.c:xorbufout
Unexecuted instantiation: tls13.c:xorbufout
Unexecuted instantiation: kdf.c:xorbufout
Unexecuted instantiation: wc_encrypt.c:xorbufout
Unexecuted instantiation: pwdbased.c:xorbufout
Unexecuted instantiation: chacha20_poly1305.c:xorbufout
Unexecuted instantiation: internal.c:xorbufout
Unexecuted instantiation: keys.c:xorbufout
Unexecuted instantiation: poly1305.c:xorbufout
Unexecuted instantiation: chacha.c:xorbufout
686
687
/* This routine performs a bitwise XOR operation of <*r> and <*a> for <n> number
688
of wolfssl_words, placing the result in <*r>. */
689
WC_MISC_STATIC WC_INLINE void XorWords(wolfssl_word** r, const wolfssl_word** a,
690
                                       word32 n)
691
120k
{
692
120k
    const wolfssl_word *e = *a + n;
693
694
362k
    while (*a < e)
695
241k
        *((*r)++) ^= *((*a)++);
696
120k
}
Unexecuted instantiation: hmac.c:XorWords
Unexecuted instantiation: hash.c:XorWords
Unexecuted instantiation: random.c:XorWords
Unexecuted instantiation: sha256.c:XorWords
Unexecuted instantiation: rsa.c:XorWords
Unexecuted instantiation: sp_int.c:XorWords
aes.c:XorWords
Line
Count
Source
691
120k
{
692
120k
    const wolfssl_word *e = *a + n;
693
694
362k
    while (*a < e)
695
241k
        *((*r)++) ^= *((*a)++);
696
120k
}
Unexecuted instantiation: sha.c:XorWords
Unexecuted instantiation: sha512.c:XorWords
Unexecuted instantiation: sha3.c:XorWords
Unexecuted instantiation: wolfmath.c:XorWords
Unexecuted instantiation: memory.c:XorWords
Unexecuted instantiation: dh.c:XorWords
Unexecuted instantiation: asn.c:XorWords
Unexecuted instantiation: coding.c:XorWords
Unexecuted instantiation: ecc.c:XorWords
Unexecuted instantiation: wc_mlkem.c:XorWords
Unexecuted instantiation: wc_mlkem_poly.c:XorWords
Unexecuted instantiation: ssl.c:XorWords
Unexecuted instantiation: tls.c:XorWords
Unexecuted instantiation: tls13.c:XorWords
Unexecuted instantiation: kdf.c:XorWords
Unexecuted instantiation: wc_encrypt.c:XorWords
Unexecuted instantiation: pwdbased.c:XorWords
Unexecuted instantiation: chacha20_poly1305.c:XorWords
Unexecuted instantiation: internal.c:XorWords
Unexecuted instantiation: keys.c:XorWords
Unexecuted instantiation: poly1305.c:XorWords
Unexecuted instantiation: chacha.c:XorWords
697
698
/* This routine performs a bitwise XOR operation of <*buf> and <*mask> of n
699
counts, placing the result in <*buf>. */
700
701
WC_MISC_STATIC WC_INLINE void xorbuf(void* buf, const void* mask, word32 count)
702
244k
{
703
244k
    byte*       b = (byte*)buf;
704
244k
    const byte* m = (const byte*)mask;
705
706
    /* type-punning helpers */
707
244k
    union {
708
244k
        byte* bp;
709
244k
        wolfssl_word* wp;
710
244k
    } tpb;
711
244k
    union {
712
244k
        const byte* bp;
713
244k
        const wolfssl_word* wp;
714
244k
    } tpm;
715
716
244k
    if ((((wc_ptr_t)buf & (WOLFSSL_WORD_SIZE - 1)) == 0) &&
717
188k
        (((wc_ptr_t)mask & (WOLFSSL_WORD_SIZE - 1)) == 0))
718
120k
    {
719
        /* Both buffers are already aligned.  Possible to XOR by words without
720
         * fixup.
721
         */
722
723
120k
        tpb.bp = b;
724
120k
        tpm.bp = m;
725
        /* Work around false positives from linuxkm CONFIG_FORTIFY_SOURCE. */
726
        #if defined(WOLFSSL_LINUXKM) && defined(CONFIG_FORTIFY_SOURCE)
727
            PRAGMA_GCC_DIAG_PUSH;
728
            PRAGMA_GCC("GCC diagnostic ignored \"-Wmaybe-uninitialized\"")
729
        #endif
730
120k
        XorWords(&tpb.wp, &tpm.wp, count >> WOLFSSL_WORD_SIZE_LOG2);
731
        #if defined(WOLFSSL_LINUXKM) && defined(CONFIG_FORTIFY_SOURCE)
732
            PRAGMA_GCC_DIAG_POP;
733
        #endif
734
120k
        b = tpb.bp;
735
120k
        m = tpm.bp;
736
120k
        count &= (WOLFSSL_WORD_SIZE - 1);
737
120k
    }
738
123k
    else if (((wc_ptr_t)buf & (WOLFSSL_WORD_SIZE - 1)) ==
739
123k
             ((wc_ptr_t)mask & (WOLFSSL_WORD_SIZE - 1)))
740
0
    {
741
        /* Alignment can be fixed up to allow XOR by words. */
742
743
        /* Perform bytewise xor until pointers are aligned to
744
         * WOLFSSL_WORD_SIZE.
745
         */
746
0
        while ((((wc_ptr_t)b & (WOLFSSL_WORD_SIZE - 1)) != 0) && (count > 0))
747
0
        {
748
0
            *(b++) ^= *(m++);
749
0
            count--;
750
0
        }
751
752
0
        tpb.bp = b;
753
0
        tpm.bp = m;
754
        /* Work around false positives from linuxkm CONFIG_FORTIFY_SOURCE. */
755
        #if defined(WOLFSSL_LINUXKM) && defined(CONFIG_FORTIFY_SOURCE)
756
            PRAGMA_GCC_DIAG_PUSH;
757
            PRAGMA_GCC("GCC diagnostic ignored \"-Wmaybe-uninitialized\"")
758
        #endif
759
0
        XorWords(&tpb.wp, &tpm.wp, count >> WOLFSSL_WORD_SIZE_LOG2);
760
        #if defined(WOLFSSL_LINUXKM) && defined(CONFIG_FORTIFY_SOURCE)
761
            PRAGMA_GCC_DIAG_POP;
762
        #endif
763
0
        b = tpb.bp;
764
0
        m = tpm.bp;
765
0
        count &= (WOLFSSL_WORD_SIZE - 1);
766
0
    }
767
768
2.22M
    while (count > 0) {
769
1.98M
        *b++ ^= *m++;
770
1.98M
        count--;
771
1.98M
    }
772
244k
}
Unexecuted instantiation: hmac.c:xorbuf
Unexecuted instantiation: hash.c:xorbuf
Unexecuted instantiation: random.c:xorbuf
Unexecuted instantiation: sha256.c:xorbuf
Unexecuted instantiation: rsa.c:xorbuf
Unexecuted instantiation: sp_int.c:xorbuf
aes.c:xorbuf
Line
Count
Source
702
244k
{
703
244k
    byte*       b = (byte*)buf;
704
244k
    const byte* m = (const byte*)mask;
705
706
    /* type-punning helpers */
707
244k
    union {
708
244k
        byte* bp;
709
244k
        wolfssl_word* wp;
710
244k
    } tpb;
711
244k
    union {
712
244k
        const byte* bp;
713
244k
        const wolfssl_word* wp;
714
244k
    } tpm;
715
716
244k
    if ((((wc_ptr_t)buf & (WOLFSSL_WORD_SIZE - 1)) == 0) &&
717
188k
        (((wc_ptr_t)mask & (WOLFSSL_WORD_SIZE - 1)) == 0))
718
120k
    {
719
        /* Both buffers are already aligned.  Possible to XOR by words without
720
         * fixup.
721
         */
722
723
120k
        tpb.bp = b;
724
120k
        tpm.bp = m;
725
        /* Work around false positives from linuxkm CONFIG_FORTIFY_SOURCE. */
726
        #if defined(WOLFSSL_LINUXKM) && defined(CONFIG_FORTIFY_SOURCE)
727
            PRAGMA_GCC_DIAG_PUSH;
728
            PRAGMA_GCC("GCC diagnostic ignored \"-Wmaybe-uninitialized\"")
729
        #endif
730
120k
        XorWords(&tpb.wp, &tpm.wp, count >> WOLFSSL_WORD_SIZE_LOG2);
731
        #if defined(WOLFSSL_LINUXKM) && defined(CONFIG_FORTIFY_SOURCE)
732
            PRAGMA_GCC_DIAG_POP;
733
        #endif
734
120k
        b = tpb.bp;
735
120k
        m = tpm.bp;
736
120k
        count &= (WOLFSSL_WORD_SIZE - 1);
737
120k
    }
738
123k
    else if (((wc_ptr_t)buf & (WOLFSSL_WORD_SIZE - 1)) ==
739
123k
             ((wc_ptr_t)mask & (WOLFSSL_WORD_SIZE - 1)))
740
0
    {
741
        /* Alignment can be fixed up to allow XOR by words. */
742
743
        /* Perform bytewise xor until pointers are aligned to
744
         * WOLFSSL_WORD_SIZE.
745
         */
746
0
        while ((((wc_ptr_t)b & (WOLFSSL_WORD_SIZE - 1)) != 0) && (count > 0))
747
0
        {
748
0
            *(b++) ^= *(m++);
749
0
            count--;
750
0
        }
751
752
0
        tpb.bp = b;
753
0
        tpm.bp = m;
754
        /* Work around false positives from linuxkm CONFIG_FORTIFY_SOURCE. */
755
        #if defined(WOLFSSL_LINUXKM) && defined(CONFIG_FORTIFY_SOURCE)
756
            PRAGMA_GCC_DIAG_PUSH;
757
            PRAGMA_GCC("GCC diagnostic ignored \"-Wmaybe-uninitialized\"")
758
        #endif
759
0
        XorWords(&tpb.wp, &tpm.wp, count >> WOLFSSL_WORD_SIZE_LOG2);
760
        #if defined(WOLFSSL_LINUXKM) && defined(CONFIG_FORTIFY_SOURCE)
761
            PRAGMA_GCC_DIAG_POP;
762
        #endif
763
0
        b = tpb.bp;
764
0
        m = tpm.bp;
765
0
        count &= (WOLFSSL_WORD_SIZE - 1);
766
0
    }
767
768
2.22M
    while (count > 0) {
769
1.98M
        *b++ ^= *m++;
770
1.98M
        count--;
771
1.98M
    }
772
244k
}
Unexecuted instantiation: sha.c:xorbuf
Unexecuted instantiation: sha512.c:xorbuf
Unexecuted instantiation: sha3.c:xorbuf
Unexecuted instantiation: wolfmath.c:xorbuf
Unexecuted instantiation: memory.c:xorbuf
Unexecuted instantiation: dh.c:xorbuf
Unexecuted instantiation: asn.c:xorbuf
Unexecuted instantiation: coding.c:xorbuf
Unexecuted instantiation: ecc.c:xorbuf
Unexecuted instantiation: wc_mlkem.c:xorbuf
Unexecuted instantiation: wc_mlkem_poly.c:xorbuf
Unexecuted instantiation: ssl.c:xorbuf
Unexecuted instantiation: tls.c:xorbuf
Unexecuted instantiation: tls13.c:xorbuf
Unexecuted instantiation: kdf.c:xorbuf
Unexecuted instantiation: wc_encrypt.c:xorbuf
Unexecuted instantiation: pwdbased.c:xorbuf
Unexecuted instantiation: chacha20_poly1305.c:xorbuf
Unexecuted instantiation: internal.c:xorbuf
Unexecuted instantiation: keys.c:xorbuf
Unexecuted instantiation: poly1305.c:xorbuf
Unexecuted instantiation: chacha.c:xorbuf
773
774
#endif /* !WOLFSSL_NO_XOR_OPS */
775
776
#ifndef WOLFSSL_NO_FORCE_ZERO
777
/* This routine fills the first len bytes of the memory area pointed by mem
778
   with zeros. It ensures compiler optimization doesn't skip it. */
779
WC_MISC_STATIC WC_INLINE void ForceZero(void* mem, size_t len)
780
1.66M
{
781
1.66M
    byte *zb = (byte *)mem;
782
1.66M
    unsigned long *zl;
783
784
1.66M
    XFENCE();
785
786
1.74M
    while ((wc_ptr_t)zb & (wc_ptr_t)(sizeof(unsigned long) - 1U)) {
787
79.4k
        if (len == 0)
788
0
            return;
789
79.4k
        *zb++ = 0;
790
79.4k
        --len;
791
79.4k
    }
792
793
1.66M
    zl = (unsigned long *)zb;
794
795
51.3M
    while (len >= sizeof(unsigned long)) {
796
49.6M
        *zl++ = 0;
797
49.6M
        len -= sizeof(unsigned long);
798
49.6M
    }
799
800
1.66M
    zb = (byte *)zl;
801
802
2.67M
    while (len) {
803
1.00M
        *zb++ = 0;
804
1.00M
        --len;
805
1.00M
    }
806
807
1.66M
    XFENCE();
808
1.66M
}
hmac.c:ForceZero
Line
Count
Source
780
73.2k
{
781
73.2k
    byte *zb = (byte *)mem;
782
73.2k
    unsigned long *zl;
783
784
73.2k
    XFENCE();
785
786
73.2k
    while ((wc_ptr_t)zb & (wc_ptr_t)(sizeof(unsigned long) - 1U)) {
787
0
        if (len == 0)
788
0
            return;
789
0
        *zb++ = 0;
790
0
        --len;
791
0
    }
792
793
73.2k
    zl = (unsigned long *)zb;
794
795
7.25M
    while (len >= sizeof(unsigned long)) {
796
7.18M
        *zl++ = 0;
797
7.18M
        len -= sizeof(unsigned long);
798
7.18M
    }
799
800
73.2k
    zb = (byte *)zl;
801
802
73.2k
    while (len) {
803
0
        *zb++ = 0;
804
0
        --len;
805
0
    }
806
807
    XFENCE();
808
73.2k
}
Unexecuted instantiation: hash.c:ForceZero
random.c:ForceZero
Line
Count
Source
780
197k
{
781
197k
    byte *zb = (byte *)mem;
782
197k
    unsigned long *zl;
783
784
197k
    XFENCE();
785
786
197k
    while ((wc_ptr_t)zb & (wc_ptr_t)(sizeof(unsigned long) - 1U)) {
787
0
        if (len == 0)
788
0
            return;
789
0
        *zb++ = 0;
790
0
        --len;
791
0
    }
792
793
197k
    zl = (unsigned long *)zb;
794
795
2.42M
    while (len >= sizeof(unsigned long)) {
796
2.22M
        *zl++ = 0;
797
2.22M
        len -= sizeof(unsigned long);
798
2.22M
    }
799
800
197k
    zb = (byte *)zl;
801
802
770k
    while (len) {
803
572k
        *zb++ = 0;
804
572k
        --len;
805
572k
    }
806
807
    XFENCE();
808
197k
}
sha256.c:ForceZero
Line
Count
Source
780
5.17k
{
781
5.17k
    byte *zb = (byte *)mem;
782
5.17k
    unsigned long *zl;
783
784
5.17k
    XFENCE();
785
786
5.17k
    while ((wc_ptr_t)zb & (wc_ptr_t)(sizeof(unsigned long) - 1U)) {
787
0
        if (len == 0)
788
0
            return;
789
0
        *zb++ = 0;
790
0
        --len;
791
0
    }
792
793
5.17k
    zl = (unsigned long *)zb;
794
795
88.0k
    while (len >= sizeof(unsigned long)) {
796
82.8k
        *zl++ = 0;
797
82.8k
        len -= sizeof(unsigned long);
798
82.8k
    }
799
800
5.17k
    zb = (byte *)zl;
801
802
5.17k
    while (len) {
803
0
        *zb++ = 0;
804
0
        --len;
805
0
    }
806
807
    XFENCE();
808
5.17k
}
Unexecuted instantiation: rsa.c:ForceZero
sp_int.c:ForceZero
Line
Count
Source
780
57.7k
{
781
57.7k
    byte *zb = (byte *)mem;
782
57.7k
    unsigned long *zl;
783
784
57.7k
    XFENCE();
785
786
57.7k
    while ((wc_ptr_t)zb & (wc_ptr_t)(sizeof(unsigned long) - 1U)) {
787
0
        if (len == 0)
788
0
            return;
789
0
        *zb++ = 0;
790
0
        --len;
791
0
    }
792
793
57.7k
    zl = (unsigned long *)zb;
794
795
7.11M
    while (len >= sizeof(unsigned long)) {
796
7.05M
        *zl++ = 0;
797
7.05M
        len -= sizeof(unsigned long);
798
7.05M
    }
799
800
57.7k
    zb = (byte *)zl;
801
802
57.7k
    while (len) {
803
0
        *zb++ = 0;
804
0
        --len;
805
0
    }
806
807
    XFENCE();
808
57.7k
}
aes.c:ForceZero
Line
Count
Source
780
1.60k
{
781
1.60k
    byte *zb = (byte *)mem;
782
1.60k
    unsigned long *zl;
783
784
1.60k
    XFENCE();
785
786
4.82k
    while ((wc_ptr_t)zb & (wc_ptr_t)(sizeof(unsigned long) - 1U)) {
787
3.21k
        if (len == 0)
788
0
            return;
789
3.21k
        *zb++ = 0;
790
3.21k
        --len;
791
3.21k
    }
792
793
1.60k
    zl = (unsigned long *)zb;
794
795
86.8k
    while (len >= sizeof(unsigned long)) {
796
85.2k
        *zl++ = 0;
797
85.2k
        len -= sizeof(unsigned long);
798
85.2k
    }
799
800
1.60k
    zb = (byte *)zl;
801
802
1.60k
    while (len) {
803
0
        *zb++ = 0;
804
0
        --len;
805
0
    }
806
807
    XFENCE();
808
1.60k
}
Unexecuted instantiation: sha.c:ForceZero
sha512.c:ForceZero
Line
Count
Source
780
1.01M
{
781
1.01M
    byte *zb = (byte *)mem;
782
1.01M
    unsigned long *zl;
783
784
1.01M
    XFENCE();
785
786
1.01M
    while ((wc_ptr_t)zb & (wc_ptr_t)(sizeof(unsigned long) - 1U)) {
787
0
        if (len == 0)
788
0
            return;
789
0
        *zb++ = 0;
790
0
        --len;
791
0
    }
792
793
1.01M
    zl = (unsigned long *)zb;
794
795
17.3M
    while (len >= sizeof(unsigned long)) {
796
16.3M
        *zl++ = 0;
797
16.3M
        len -= sizeof(unsigned long);
798
16.3M
    }
799
800
1.01M
    zb = (byte *)zl;
801
802
1.01M
    while (len) {
803
0
        *zb++ = 0;
804
0
        --len;
805
0
    }
806
807
    XFENCE();
808
1.01M
}
Unexecuted instantiation: sha3.c:ForceZero
Unexecuted instantiation: wolfmath.c:ForceZero
memory.c:ForceZero
Line
Count
Source
780
310k
{
781
310k
    byte *zb = (byte *)mem;
782
310k
    unsigned long *zl;
783
784
310k
    XFENCE();
785
786
386k
    while ((wc_ptr_t)zb & (wc_ptr_t)(sizeof(unsigned long) - 1U)) {
787
76.2k
        if (len == 0)
788
0
            return;
789
76.2k
        *zb++ = 0;
790
76.2k
        --len;
791
76.2k
    }
792
793
310k
    zl = (unsigned long *)zb;
794
795
17.0M
    while (len >= sizeof(unsigned long)) {
796
16.7M
        *zl++ = 0;
797
16.7M
        len -= sizeof(unsigned long);
798
16.7M
    }
799
800
310k
    zb = (byte *)zl;
801
802
747k
    while (len) {
803
436k
        *zb++ = 0;
804
436k
        --len;
805
436k
    }
806
807
    XFENCE();
808
310k
}
Unexecuted instantiation: dh.c:ForceZero
Unexecuted instantiation: asn.c:ForceZero
Unexecuted instantiation: coding.c:ForceZero
Unexecuted instantiation: ecc.c:ForceZero
wc_mlkem.c:ForceZero
Line
Count
Source
780
20
{
781
20
    byte *zb = (byte *)mem;
782
20
    unsigned long *zl;
783
784
20
    XFENCE();
785
786
20
    while ((wc_ptr_t)zb & (wc_ptr_t)(sizeof(unsigned long) - 1U)) {
787
0
        if (len == 0)
788
0
            return;
789
0
        *zb++ = 0;
790
0
        --len;
791
0
    }
792
793
20
    zl = (unsigned long *)zb;
794
795
1.84k
    while (len >= sizeof(unsigned long)) {
796
1.82k
        *zl++ = 0;
797
1.82k
        len -= sizeof(unsigned long);
798
1.82k
    }
799
800
20
    zb = (byte *)zl;
801
802
20
    while (len) {
803
0
        *zb++ = 0;
804
0
        --len;
805
0
    }
806
807
    XFENCE();
808
20
}
Unexecuted instantiation: wc_mlkem_poly.c:ForceZero
Unexecuted instantiation: ssl.c:ForceZero
Unexecuted instantiation: tls.c:ForceZero
Unexecuted instantiation: tls13.c:ForceZero
Unexecuted instantiation: kdf.c:ForceZero
Unexecuted instantiation: wc_encrypt.c:ForceZero
Unexecuted instantiation: pwdbased.c:ForceZero
Unexecuted instantiation: chacha20_poly1305.c:ForceZero
Unexecuted instantiation: internal.c:ForceZero
Unexecuted instantiation: keys.c:ForceZero
Unexecuted instantiation: poly1305.c:ForceZero
Unexecuted instantiation: chacha.c:ForceZero
809
#endif
810
811
812
#ifndef WOLFSSL_NO_CONST_CMP
813
/* check all length bytes for equality, return 0 on success */
814
WC_MISC_STATIC WC_INLINE int ConstantCompare(const byte* a, const byte* b,
815
                                             int length)
816
5.91k
{
817
5.91k
    int i;
818
5.91k
    int compareSum = 0;
819
820
1.50M
    for (i = 0; i < length; i++) {
821
1.50M
        compareSum |= a[i] ^ b[i];
822
1.50M
    }
823
824
5.91k
    return compareSum;
825
5.91k
}
Unexecuted instantiation: hmac.c:ConstantCompare
Unexecuted instantiation: hash.c:ConstantCompare
random.c:ConstantCompare
Line
Count
Source
816
5.86k
{
817
5.86k
    int i;
818
5.86k
    int compareSum = 0;
819
820
1.50M
    for (i = 0; i < length; i++) {
821
1.50M
        compareSum |= a[i] ^ b[i];
822
1.50M
    }
823
824
5.86k
    return compareSum;
825
5.86k
}
Unexecuted instantiation: sha256.c:ConstantCompare
Unexecuted instantiation: rsa.c:ConstantCompare
Unexecuted instantiation: sp_int.c:ConstantCompare
aes.c:ConstantCompare
Line
Count
Source
816
49
{
817
49
    int i;
818
49
    int compareSum = 0;
819
820
833
    for (i = 0; i < length; i++) {
821
784
        compareSum |= a[i] ^ b[i];
822
784
    }
823
824
49
    return compareSum;
825
49
}
Unexecuted instantiation: sha.c:ConstantCompare
Unexecuted instantiation: sha512.c:ConstantCompare
Unexecuted instantiation: sha3.c:ConstantCompare
Unexecuted instantiation: wolfmath.c:ConstantCompare
Unexecuted instantiation: memory.c:ConstantCompare
Unexecuted instantiation: dh.c:ConstantCompare
Unexecuted instantiation: asn.c:ConstantCompare
Unexecuted instantiation: coding.c:ConstantCompare
Unexecuted instantiation: ecc.c:ConstantCompare
Unexecuted instantiation: wc_mlkem.c:ConstantCompare
Unexecuted instantiation: wc_mlkem_poly.c:ConstantCompare
Unexecuted instantiation: ssl.c:ConstantCompare
Unexecuted instantiation: tls.c:ConstantCompare
Unexecuted instantiation: tls13.c:ConstantCompare
Unexecuted instantiation: kdf.c:ConstantCompare
Unexecuted instantiation: wc_encrypt.c:ConstantCompare
Unexecuted instantiation: pwdbased.c:ConstantCompare
Unexecuted instantiation: chacha20_poly1305.c:ConstantCompare
Unexecuted instantiation: keys.c:ConstantCompare
Unexecuted instantiation: poly1305.c:ConstantCompare
Unexecuted instantiation: chacha.c:ConstantCompare
826
#endif
827
828
829
#if defined(WOLFSSL_NO_CT_OPS) && (!defined(NO_RSA) || !defined(WOLFCRYPT_ONLY)) \
830
    && (!defined(WOLFSSL_RSA_VERIFY_ONLY))
831
/* constant time operations with mask are required for RSA and TLS operations */
832
#warning constant time operations required unless using NO_RSA & WOLFCRYPT_ONLY
833
#endif
834
835
#if !defined(WOLFSSL_NO_CT_OPS) || !defined(NO_RSA) || !defined(WOLFCRYPT_ONLY)
836
/* Constant time - mask set when a > b. */
837
WC_MISC_STATIC WC_INLINE byte ctMaskGT(int a, int b)
838
748
{
839
748
    return (byte)((((word32)a - (word32)b - 1) >> 31) - 1);
840
748
}
Unexecuted instantiation: hmac.c:ctMaskGT
Unexecuted instantiation: hash.c:ctMaskGT
Unexecuted instantiation: random.c:ctMaskGT
Unexecuted instantiation: sha256.c:ctMaskGT
rsa.c:ctMaskGT
Line
Count
Source
838
748
{
839
748
    return (byte)((((word32)a - (word32)b - 1) >> 31) - 1);
840
748
}
Unexecuted instantiation: sp_int.c:ctMaskGT
Unexecuted instantiation: aes.c:ctMaskGT
Unexecuted instantiation: sha.c:ctMaskGT
Unexecuted instantiation: sha512.c:ctMaskGT
Unexecuted instantiation: sha3.c:ctMaskGT
Unexecuted instantiation: wolfmath.c:ctMaskGT
Unexecuted instantiation: memory.c:ctMaskGT
Unexecuted instantiation: dh.c:ctMaskGT
Unexecuted instantiation: asn.c:ctMaskGT
Unexecuted instantiation: coding.c:ctMaskGT
Unexecuted instantiation: ecc.c:ctMaskGT
Unexecuted instantiation: wc_mlkem.c:ctMaskGT
Unexecuted instantiation: wc_mlkem_poly.c:ctMaskGT
Unexecuted instantiation: ssl.c:ctMaskGT
Unexecuted instantiation: tls.c:ctMaskGT
Unexecuted instantiation: tls13.c:ctMaskGT
Unexecuted instantiation: kdf.c:ctMaskGT
Unexecuted instantiation: wc_encrypt.c:ctMaskGT
Unexecuted instantiation: pwdbased.c:ctMaskGT
Unexecuted instantiation: chacha20_poly1305.c:ctMaskGT
Unexecuted instantiation: internal.c:ctMaskGT
Unexecuted instantiation: keys.c:ctMaskGT
Unexecuted instantiation: poly1305.c:ctMaskGT
Unexecuted instantiation: chacha.c:ctMaskGT
841
842
/* Constant time - mask set when a >= b. */
843
WC_MISC_STATIC WC_INLINE byte ctMaskGTE(int a, int b)
844
0
{
845
0
    return (byte)((((word32)a - (word32)b) >> 31) - 1);
846
0
}
Unexecuted instantiation: hmac.c:ctMaskGTE
Unexecuted instantiation: hash.c:ctMaskGTE
Unexecuted instantiation: random.c:ctMaskGTE
Unexecuted instantiation: sha256.c:ctMaskGTE
Unexecuted instantiation: rsa.c:ctMaskGTE
Unexecuted instantiation: sp_int.c:ctMaskGTE
Unexecuted instantiation: aes.c:ctMaskGTE
Unexecuted instantiation: sha.c:ctMaskGTE
Unexecuted instantiation: sha512.c:ctMaskGTE
Unexecuted instantiation: sha3.c:ctMaskGTE
Unexecuted instantiation: wolfmath.c:ctMaskGTE
Unexecuted instantiation: memory.c:ctMaskGTE
Unexecuted instantiation: dh.c:ctMaskGTE
Unexecuted instantiation: asn.c:ctMaskGTE
Unexecuted instantiation: coding.c:ctMaskGTE
Unexecuted instantiation: ecc.c:ctMaskGTE
Unexecuted instantiation: wc_mlkem.c:ctMaskGTE
Unexecuted instantiation: wc_mlkem_poly.c:ctMaskGTE
Unexecuted instantiation: ssl.c:ctMaskGTE
Unexecuted instantiation: tls.c:ctMaskGTE
Unexecuted instantiation: tls13.c:ctMaskGTE
Unexecuted instantiation: kdf.c:ctMaskGTE
Unexecuted instantiation: wc_encrypt.c:ctMaskGTE
Unexecuted instantiation: pwdbased.c:ctMaskGTE
Unexecuted instantiation: chacha20_poly1305.c:ctMaskGTE
Unexecuted instantiation: internal.c:ctMaskGTE
Unexecuted instantiation: keys.c:ctMaskGTE
Unexecuted instantiation: poly1305.c:ctMaskGTE
Unexecuted instantiation: chacha.c:ctMaskGTE
847
848
/* Constant time - mask set when a >= b. */
849
WC_MISC_STATIC WC_INLINE int ctMaskIntGTE(int a, int b)
850
47.8k
{
851
47.8k
    return (int)((((word32)a - (word32)b) >> 31) - 1);
852
47.8k
}
Unexecuted instantiation: hmac.c:ctMaskIntGTE
Unexecuted instantiation: hash.c:ctMaskIntGTE
Unexecuted instantiation: random.c:ctMaskIntGTE
Unexecuted instantiation: sha256.c:ctMaskIntGTE
Unexecuted instantiation: rsa.c:ctMaskIntGTE
sp_int.c:ctMaskIntGTE
Line
Count
Source
850
47.8k
{
851
47.8k
    return (int)((((word32)a - (word32)b) >> 31) - 1);
852
47.8k
}
Unexecuted instantiation: aes.c:ctMaskIntGTE
Unexecuted instantiation: sha.c:ctMaskIntGTE
Unexecuted instantiation: sha512.c:ctMaskIntGTE
Unexecuted instantiation: sha3.c:ctMaskIntGTE
Unexecuted instantiation: wolfmath.c:ctMaskIntGTE
Unexecuted instantiation: memory.c:ctMaskIntGTE
Unexecuted instantiation: dh.c:ctMaskIntGTE
Unexecuted instantiation: asn.c:ctMaskIntGTE
Unexecuted instantiation: coding.c:ctMaskIntGTE
Unexecuted instantiation: ecc.c:ctMaskIntGTE
Unexecuted instantiation: wc_mlkem.c:ctMaskIntGTE
Unexecuted instantiation: wc_mlkem_poly.c:ctMaskIntGTE
Unexecuted instantiation: ssl.c:ctMaskIntGTE
Unexecuted instantiation: tls.c:ctMaskIntGTE
Unexecuted instantiation: tls13.c:ctMaskIntGTE
Unexecuted instantiation: kdf.c:ctMaskIntGTE
Unexecuted instantiation: wc_encrypt.c:ctMaskIntGTE
Unexecuted instantiation: pwdbased.c:ctMaskIntGTE
Unexecuted instantiation: chacha20_poly1305.c:ctMaskIntGTE
Unexecuted instantiation: internal.c:ctMaskIntGTE
Unexecuted instantiation: keys.c:ctMaskIntGTE
Unexecuted instantiation: poly1305.c:ctMaskIntGTE
Unexecuted instantiation: chacha.c:ctMaskIntGTE
853
854
#ifdef WORD64_AVAILABLE
855
/* Constant time - mask set when a >= b. */
856
WC_MISC_STATIC WC_INLINE word32 ctMaskWord32GTE(word32 a, word32 b)
857
257k
{
858
257k
  return (word32)((((word64)a - (word64)b) >> 63) - 1);
859
257k
}
Unexecuted instantiation: hmac.c:ctMaskWord32GTE
Unexecuted instantiation: hash.c:ctMaskWord32GTE
random.c:ctMaskWord32GTE
Line
Count
Source
857
5.86k
{
858
5.86k
  return (word32)((((word64)a - (word64)b) >> 63) - 1);
859
5.86k
}
sha256.c:ctMaskWord32GTE
Line
Count
Source
857
35.5k
{
858
35.5k
  return (word32)((((word64)a - (word64)b) >> 63) - 1);
859
35.5k
}
Unexecuted instantiation: rsa.c:ctMaskWord32GTE
Unexecuted instantiation: sp_int.c:ctMaskWord32GTE
Unexecuted instantiation: aes.c:ctMaskWord32GTE
Unexecuted instantiation: sha.c:ctMaskWord32GTE
sha512.c:ctMaskWord32GTE
Line
Count
Source
857
216k
{
858
216k
  return (word32)((((word64)a - (word64)b) >> 63) - 1);
859
216k
}
Unexecuted instantiation: sha3.c:ctMaskWord32GTE
Unexecuted instantiation: wolfmath.c:ctMaskWord32GTE
Unexecuted instantiation: memory.c:ctMaskWord32GTE
dh.c:ctMaskWord32GTE
Line
Count
Source
857
50
{
858
50
  return (word32)((((word64)a - (word64)b) >> 63) - 1);
859
50
}
Unexecuted instantiation: asn.c:ctMaskWord32GTE
Unexecuted instantiation: coding.c:ctMaskWord32GTE
Unexecuted instantiation: ecc.c:ctMaskWord32GTE
Unexecuted instantiation: wc_mlkem.c:ctMaskWord32GTE
Unexecuted instantiation: wc_mlkem_poly.c:ctMaskWord32GTE
Unexecuted instantiation: ssl.c:ctMaskWord32GTE
Unexecuted instantiation: tls.c:ctMaskWord32GTE
Unexecuted instantiation: tls13.c:ctMaskWord32GTE
Unexecuted instantiation: kdf.c:ctMaskWord32GTE
Unexecuted instantiation: wc_encrypt.c:ctMaskWord32GTE
Unexecuted instantiation: pwdbased.c:ctMaskWord32GTE
Unexecuted instantiation: chacha20_poly1305.c:ctMaskWord32GTE
Unexecuted instantiation: internal.c:ctMaskWord32GTE
Unexecuted instantiation: keys.c:ctMaskWord32GTE
Unexecuted instantiation: poly1305.c:ctMaskWord32GTE
Unexecuted instantiation: chacha.c:ctMaskWord32GTE
860
#endif
861
862
/* Constant time - mask set when a < b. */
863
WC_MISC_STATIC WC_INLINE byte ctMaskLT(int a, int b)
864
48.6k
{
865
48.6k
    return (byte)((((word32)b - (word32)a - 1) >> 31) - 1);
866
48.6k
}
Unexecuted instantiation: hmac.c:ctMaskLT
Unexecuted instantiation: hash.c:ctMaskLT
Unexecuted instantiation: random.c:ctMaskLT
Unexecuted instantiation: sha256.c:ctMaskLT
rsa.c:ctMaskLT
Line
Count
Source
864
748
{
865
748
    return (byte)((((word32)b - (word32)a - 1) >> 31) - 1);
866
748
}
sp_int.c:ctMaskLT
Line
Count
Source
864
47.8k
{
865
47.8k
    return (byte)((((word32)b - (word32)a - 1) >> 31) - 1);
866
47.8k
}
Unexecuted instantiation: aes.c:ctMaskLT
Unexecuted instantiation: sha.c:ctMaskLT
Unexecuted instantiation: sha512.c:ctMaskLT
Unexecuted instantiation: sha3.c:ctMaskLT
Unexecuted instantiation: wolfmath.c:ctMaskLT
Unexecuted instantiation: memory.c:ctMaskLT
Unexecuted instantiation: dh.c:ctMaskLT
Unexecuted instantiation: asn.c:ctMaskLT
Unexecuted instantiation: coding.c:ctMaskLT
Unexecuted instantiation: ecc.c:ctMaskLT
Unexecuted instantiation: wc_mlkem.c:ctMaskLT
Unexecuted instantiation: wc_mlkem_poly.c:ctMaskLT
Unexecuted instantiation: ssl.c:ctMaskLT
Unexecuted instantiation: tls.c:ctMaskLT
Unexecuted instantiation: tls13.c:ctMaskLT
Unexecuted instantiation: kdf.c:ctMaskLT
Unexecuted instantiation: wc_encrypt.c:ctMaskLT
Unexecuted instantiation: pwdbased.c:ctMaskLT
Unexecuted instantiation: chacha20_poly1305.c:ctMaskLT
Unexecuted instantiation: internal.c:ctMaskLT
Unexecuted instantiation: keys.c:ctMaskLT
Unexecuted instantiation: poly1305.c:ctMaskLT
Unexecuted instantiation: chacha.c:ctMaskLT
867
868
/* Constant time - mask set when a <= b. */
869
WC_MISC_STATIC WC_INLINE byte ctMaskLTE(int a, int b)
870
748
{
871
748
    return (byte)((((word32)b - (word32)a) >> 31) - 1);
872
748
}
Unexecuted instantiation: hmac.c:ctMaskLTE
Unexecuted instantiation: hash.c:ctMaskLTE
Unexecuted instantiation: random.c:ctMaskLTE
Unexecuted instantiation: sha256.c:ctMaskLTE
rsa.c:ctMaskLTE
Line
Count
Source
870
748
{
871
748
    return (byte)((((word32)b - (word32)a) >> 31) - 1);
872
748
}
Unexecuted instantiation: sp_int.c:ctMaskLTE
Unexecuted instantiation: aes.c:ctMaskLTE
Unexecuted instantiation: sha.c:ctMaskLTE
Unexecuted instantiation: sha512.c:ctMaskLTE
Unexecuted instantiation: sha3.c:ctMaskLTE
Unexecuted instantiation: wolfmath.c:ctMaskLTE
Unexecuted instantiation: memory.c:ctMaskLTE
Unexecuted instantiation: dh.c:ctMaskLTE
Unexecuted instantiation: asn.c:ctMaskLTE
Unexecuted instantiation: coding.c:ctMaskLTE
Unexecuted instantiation: ecc.c:ctMaskLTE
Unexecuted instantiation: wc_mlkem.c:ctMaskLTE
Unexecuted instantiation: wc_mlkem_poly.c:ctMaskLTE
Unexecuted instantiation: ssl.c:ctMaskLTE
Unexecuted instantiation: tls.c:ctMaskLTE
Unexecuted instantiation: tls13.c:ctMaskLTE
Unexecuted instantiation: kdf.c:ctMaskLTE
Unexecuted instantiation: wc_encrypt.c:ctMaskLTE
Unexecuted instantiation: pwdbased.c:ctMaskLTE
Unexecuted instantiation: chacha20_poly1305.c:ctMaskLTE
Unexecuted instantiation: internal.c:ctMaskLTE
Unexecuted instantiation: keys.c:ctMaskLTE
Unexecuted instantiation: poly1305.c:ctMaskLTE
Unexecuted instantiation: chacha.c:ctMaskLTE
873
874
/* Constant time - mask set when a == b. */
875
WC_MISC_STATIC WC_INLINE byte ctMaskEq(int a, int b)
876
0
{
877
0
    return (byte)((byte)(~ctMaskGT(a, b)) & (byte)(~ctMaskLT(a, b)));
878
0
}
Unexecuted instantiation: hmac.c:ctMaskEq
Unexecuted instantiation: hash.c:ctMaskEq
Unexecuted instantiation: random.c:ctMaskEq
Unexecuted instantiation: sha256.c:ctMaskEq
Unexecuted instantiation: rsa.c:ctMaskEq
Unexecuted instantiation: sp_int.c:ctMaskEq
Unexecuted instantiation: aes.c:ctMaskEq
Unexecuted instantiation: sha.c:ctMaskEq
Unexecuted instantiation: sha512.c:ctMaskEq
Unexecuted instantiation: sha3.c:ctMaskEq
Unexecuted instantiation: wolfmath.c:ctMaskEq
Unexecuted instantiation: memory.c:ctMaskEq
Unexecuted instantiation: dh.c:ctMaskEq
Unexecuted instantiation: asn.c:ctMaskEq
Unexecuted instantiation: coding.c:ctMaskEq
Unexecuted instantiation: ecc.c:ctMaskEq
Unexecuted instantiation: wc_mlkem.c:ctMaskEq
Unexecuted instantiation: wc_mlkem_poly.c:ctMaskEq
Unexecuted instantiation: ssl.c:ctMaskEq
Unexecuted instantiation: tls.c:ctMaskEq
Unexecuted instantiation: tls13.c:ctMaskEq
Unexecuted instantiation: kdf.c:ctMaskEq
Unexecuted instantiation: wc_encrypt.c:ctMaskEq
Unexecuted instantiation: pwdbased.c:ctMaskEq
Unexecuted instantiation: chacha20_poly1305.c:ctMaskEq
Unexecuted instantiation: internal.c:ctMaskEq
Unexecuted instantiation: keys.c:ctMaskEq
Unexecuted instantiation: poly1305.c:ctMaskEq
Unexecuted instantiation: chacha.c:ctMaskEq
879
880
/* Constant time - sets 16 bit integer mask when a > b */
881
WC_MISC_STATIC WC_INLINE word16 ctMask16GT(int a, int b)
882
0
{
883
0
    return (word16)((((word32)a - (word32)b - 1) >> 31) - 1);
884
0
}
Unexecuted instantiation: hmac.c:ctMask16GT
Unexecuted instantiation: hash.c:ctMask16GT
Unexecuted instantiation: random.c:ctMask16GT
Unexecuted instantiation: sha256.c:ctMask16GT
Unexecuted instantiation: rsa.c:ctMask16GT
Unexecuted instantiation: sp_int.c:ctMask16GT
Unexecuted instantiation: aes.c:ctMask16GT
Unexecuted instantiation: sha.c:ctMask16GT
Unexecuted instantiation: sha512.c:ctMask16GT
Unexecuted instantiation: sha3.c:ctMask16GT
Unexecuted instantiation: wolfmath.c:ctMask16GT
Unexecuted instantiation: memory.c:ctMask16GT
Unexecuted instantiation: dh.c:ctMask16GT
Unexecuted instantiation: asn.c:ctMask16GT
Unexecuted instantiation: coding.c:ctMask16GT
Unexecuted instantiation: ecc.c:ctMask16GT
Unexecuted instantiation: wc_mlkem.c:ctMask16GT
Unexecuted instantiation: wc_mlkem_poly.c:ctMask16GT
Unexecuted instantiation: ssl.c:ctMask16GT
Unexecuted instantiation: tls.c:ctMask16GT
Unexecuted instantiation: tls13.c:ctMask16GT
Unexecuted instantiation: kdf.c:ctMask16GT
Unexecuted instantiation: wc_encrypt.c:ctMask16GT
Unexecuted instantiation: pwdbased.c:ctMask16GT
Unexecuted instantiation: chacha20_poly1305.c:ctMask16GT
Unexecuted instantiation: internal.c:ctMask16GT
Unexecuted instantiation: keys.c:ctMask16GT
Unexecuted instantiation: poly1305.c:ctMask16GT
Unexecuted instantiation: chacha.c:ctMask16GT
885
886
/* Constant time - sets 16 bit integer mask when a >= b */
887
WC_MISC_STATIC WC_INLINE word16 ctMask16GTE(int a, int b)
888
0
{
889
0
    return (word16)((((word32)a - (word32)b) >> 31) - 1);
890
0
}
Unexecuted instantiation: hmac.c:ctMask16GTE
Unexecuted instantiation: hash.c:ctMask16GTE
Unexecuted instantiation: random.c:ctMask16GTE
Unexecuted instantiation: sha256.c:ctMask16GTE
Unexecuted instantiation: rsa.c:ctMask16GTE
Unexecuted instantiation: sp_int.c:ctMask16GTE
Unexecuted instantiation: aes.c:ctMask16GTE
Unexecuted instantiation: sha.c:ctMask16GTE
Unexecuted instantiation: sha512.c:ctMask16GTE
Unexecuted instantiation: sha3.c:ctMask16GTE
Unexecuted instantiation: wolfmath.c:ctMask16GTE
Unexecuted instantiation: memory.c:ctMask16GTE
Unexecuted instantiation: dh.c:ctMask16GTE
Unexecuted instantiation: asn.c:ctMask16GTE
Unexecuted instantiation: coding.c:ctMask16GTE
Unexecuted instantiation: ecc.c:ctMask16GTE
Unexecuted instantiation: wc_mlkem.c:ctMask16GTE
Unexecuted instantiation: wc_mlkem_poly.c:ctMask16GTE
Unexecuted instantiation: ssl.c:ctMask16GTE
Unexecuted instantiation: tls.c:ctMask16GTE
Unexecuted instantiation: tls13.c:ctMask16GTE
Unexecuted instantiation: kdf.c:ctMask16GTE
Unexecuted instantiation: wc_encrypt.c:ctMask16GTE
Unexecuted instantiation: pwdbased.c:ctMask16GTE
Unexecuted instantiation: chacha20_poly1305.c:ctMask16GTE
Unexecuted instantiation: internal.c:ctMask16GTE
Unexecuted instantiation: keys.c:ctMask16GTE
Unexecuted instantiation: poly1305.c:ctMask16GTE
Unexecuted instantiation: chacha.c:ctMask16GTE
891
892
/* Constant time - sets 16 bit integer mask when a < b. */
893
WC_MISC_STATIC WC_INLINE word16 ctMask16LT(int a, int b)
894
0
{
895
0
    return (word16)((((word32)b - (word32)a - 1) >> 31) - 1);
896
0
}
Unexecuted instantiation: hmac.c:ctMask16LT
Unexecuted instantiation: hash.c:ctMask16LT
Unexecuted instantiation: random.c:ctMask16LT
Unexecuted instantiation: sha256.c:ctMask16LT
Unexecuted instantiation: rsa.c:ctMask16LT
Unexecuted instantiation: sp_int.c:ctMask16LT
Unexecuted instantiation: aes.c:ctMask16LT
Unexecuted instantiation: sha.c:ctMask16LT
Unexecuted instantiation: sha512.c:ctMask16LT
Unexecuted instantiation: sha3.c:ctMask16LT
Unexecuted instantiation: wolfmath.c:ctMask16LT
Unexecuted instantiation: memory.c:ctMask16LT
Unexecuted instantiation: dh.c:ctMask16LT
Unexecuted instantiation: asn.c:ctMask16LT
Unexecuted instantiation: coding.c:ctMask16LT
Unexecuted instantiation: ecc.c:ctMask16LT
Unexecuted instantiation: wc_mlkem.c:ctMask16LT
Unexecuted instantiation: wc_mlkem_poly.c:ctMask16LT
Unexecuted instantiation: ssl.c:ctMask16LT
Unexecuted instantiation: tls.c:ctMask16LT
Unexecuted instantiation: tls13.c:ctMask16LT
Unexecuted instantiation: kdf.c:ctMask16LT
Unexecuted instantiation: wc_encrypt.c:ctMask16LT
Unexecuted instantiation: pwdbased.c:ctMask16LT
Unexecuted instantiation: chacha20_poly1305.c:ctMask16LT
Unexecuted instantiation: internal.c:ctMask16LT
Unexecuted instantiation: keys.c:ctMask16LT
Unexecuted instantiation: poly1305.c:ctMask16LT
Unexecuted instantiation: chacha.c:ctMask16LT
897
898
/* Constant time - sets 16 bit integer mask when a <= b. */
899
WC_MISC_STATIC WC_INLINE word16 ctMask16LTE(int a, int b)
900
0
{
901
0
    return (word16)((((word32)b - (word32)a) >> 31) - 1);
902
0
}
Unexecuted instantiation: hmac.c:ctMask16LTE
Unexecuted instantiation: hash.c:ctMask16LTE
Unexecuted instantiation: random.c:ctMask16LTE
Unexecuted instantiation: sha256.c:ctMask16LTE
Unexecuted instantiation: rsa.c:ctMask16LTE
Unexecuted instantiation: sp_int.c:ctMask16LTE
Unexecuted instantiation: aes.c:ctMask16LTE
Unexecuted instantiation: sha.c:ctMask16LTE
Unexecuted instantiation: sha512.c:ctMask16LTE
Unexecuted instantiation: sha3.c:ctMask16LTE
Unexecuted instantiation: wolfmath.c:ctMask16LTE
Unexecuted instantiation: memory.c:ctMask16LTE
Unexecuted instantiation: dh.c:ctMask16LTE
Unexecuted instantiation: asn.c:ctMask16LTE
Unexecuted instantiation: coding.c:ctMask16LTE
Unexecuted instantiation: ecc.c:ctMask16LTE
Unexecuted instantiation: wc_mlkem.c:ctMask16LTE
Unexecuted instantiation: wc_mlkem_poly.c:ctMask16LTE
Unexecuted instantiation: ssl.c:ctMask16LTE
Unexecuted instantiation: tls.c:ctMask16LTE
Unexecuted instantiation: tls13.c:ctMask16LTE
Unexecuted instantiation: kdf.c:ctMask16LTE
Unexecuted instantiation: wc_encrypt.c:ctMask16LTE
Unexecuted instantiation: pwdbased.c:ctMask16LTE
Unexecuted instantiation: chacha20_poly1305.c:ctMask16LTE
Unexecuted instantiation: internal.c:ctMask16LTE
Unexecuted instantiation: keys.c:ctMask16LTE
Unexecuted instantiation: poly1305.c:ctMask16LTE
Unexecuted instantiation: chacha.c:ctMask16LTE
903
904
/* Constant time - sets 16 bit integer mask when a == b. */
905
WC_MISC_STATIC WC_INLINE word16 ctMask16Eq(int a, int b)
906
0
{
907
0
    return (word16)((word16)(~ctMask16GT(a, b)) & (word16)(~ctMask16LT(a, b)));
908
0
}
Unexecuted instantiation: hmac.c:ctMask16Eq
Unexecuted instantiation: hash.c:ctMask16Eq
Unexecuted instantiation: random.c:ctMask16Eq
Unexecuted instantiation: sha256.c:ctMask16Eq
Unexecuted instantiation: rsa.c:ctMask16Eq
Unexecuted instantiation: sp_int.c:ctMask16Eq
Unexecuted instantiation: aes.c:ctMask16Eq
Unexecuted instantiation: sha.c:ctMask16Eq
Unexecuted instantiation: sha512.c:ctMask16Eq
Unexecuted instantiation: sha3.c:ctMask16Eq
Unexecuted instantiation: wolfmath.c:ctMask16Eq
Unexecuted instantiation: memory.c:ctMask16Eq
Unexecuted instantiation: dh.c:ctMask16Eq
Unexecuted instantiation: asn.c:ctMask16Eq
Unexecuted instantiation: coding.c:ctMask16Eq
Unexecuted instantiation: ecc.c:ctMask16Eq
Unexecuted instantiation: wc_mlkem.c:ctMask16Eq
Unexecuted instantiation: wc_mlkem_poly.c:ctMask16Eq
Unexecuted instantiation: ssl.c:ctMask16Eq
Unexecuted instantiation: tls.c:ctMask16Eq
Unexecuted instantiation: tls13.c:ctMask16Eq
Unexecuted instantiation: kdf.c:ctMask16Eq
Unexecuted instantiation: wc_encrypt.c:ctMask16Eq
Unexecuted instantiation: pwdbased.c:ctMask16Eq
Unexecuted instantiation: chacha20_poly1305.c:ctMask16Eq
Unexecuted instantiation: internal.c:ctMask16Eq
Unexecuted instantiation: keys.c:ctMask16Eq
Unexecuted instantiation: poly1305.c:ctMask16Eq
Unexecuted instantiation: chacha.c:ctMask16Eq
909
910
/* Constant time - mask set when a != b. */
911
WC_MISC_STATIC WC_INLINE byte ctMaskNotEq(int a, int b)
912
748
{
913
748
    return (byte)((byte)ctMaskGT(a, b) | (byte)ctMaskLT(a, b));
914
748
}
Unexecuted instantiation: hmac.c:ctMaskNotEq
Unexecuted instantiation: hash.c:ctMaskNotEq
Unexecuted instantiation: random.c:ctMaskNotEq
Unexecuted instantiation: sha256.c:ctMaskNotEq
rsa.c:ctMaskNotEq
Line
Count
Source
912
748
{
913
748
    return (byte)((byte)ctMaskGT(a, b) | (byte)ctMaskLT(a, b));
914
748
}
Unexecuted instantiation: sp_int.c:ctMaskNotEq
Unexecuted instantiation: aes.c:ctMaskNotEq
Unexecuted instantiation: sha.c:ctMaskNotEq
Unexecuted instantiation: sha512.c:ctMaskNotEq
Unexecuted instantiation: sha3.c:ctMaskNotEq
Unexecuted instantiation: wolfmath.c:ctMaskNotEq
Unexecuted instantiation: memory.c:ctMaskNotEq
Unexecuted instantiation: dh.c:ctMaskNotEq
Unexecuted instantiation: asn.c:ctMaskNotEq
Unexecuted instantiation: coding.c:ctMaskNotEq
Unexecuted instantiation: ecc.c:ctMaskNotEq
Unexecuted instantiation: wc_mlkem.c:ctMaskNotEq
Unexecuted instantiation: wc_mlkem_poly.c:ctMaskNotEq
Unexecuted instantiation: ssl.c:ctMaskNotEq
Unexecuted instantiation: tls.c:ctMaskNotEq
Unexecuted instantiation: tls13.c:ctMaskNotEq
Unexecuted instantiation: kdf.c:ctMaskNotEq
Unexecuted instantiation: wc_encrypt.c:ctMaskNotEq
Unexecuted instantiation: pwdbased.c:ctMaskNotEq
Unexecuted instantiation: chacha20_poly1305.c:ctMaskNotEq
Unexecuted instantiation: internal.c:ctMaskNotEq
Unexecuted instantiation: keys.c:ctMaskNotEq
Unexecuted instantiation: poly1305.c:ctMaskNotEq
Unexecuted instantiation: chacha.c:ctMaskNotEq
915
916
/* Constant time - select a when mask is set and b otherwise. */
917
WC_MISC_STATIC WC_INLINE byte ctMaskSel(byte m, byte a, byte b)
918
0
{
919
0
    return (byte)((b & ((byte)~(word32)m)) | (a & m));
920
0
}
Unexecuted instantiation: hmac.c:ctMaskSel
Unexecuted instantiation: hash.c:ctMaskSel
Unexecuted instantiation: random.c:ctMaskSel
Unexecuted instantiation: sha256.c:ctMaskSel
Unexecuted instantiation: rsa.c:ctMaskSel
Unexecuted instantiation: sp_int.c:ctMaskSel
Unexecuted instantiation: aes.c:ctMaskSel
Unexecuted instantiation: sha.c:ctMaskSel
Unexecuted instantiation: sha512.c:ctMaskSel
Unexecuted instantiation: sha3.c:ctMaskSel
Unexecuted instantiation: wolfmath.c:ctMaskSel
Unexecuted instantiation: memory.c:ctMaskSel
Unexecuted instantiation: dh.c:ctMaskSel
Unexecuted instantiation: asn.c:ctMaskSel
Unexecuted instantiation: coding.c:ctMaskSel
Unexecuted instantiation: ecc.c:ctMaskSel
Unexecuted instantiation: wc_mlkem.c:ctMaskSel
Unexecuted instantiation: wc_mlkem_poly.c:ctMaskSel
Unexecuted instantiation: ssl.c:ctMaskSel
Unexecuted instantiation: tls.c:ctMaskSel
Unexecuted instantiation: tls13.c:ctMaskSel
Unexecuted instantiation: kdf.c:ctMaskSel
Unexecuted instantiation: wc_encrypt.c:ctMaskSel
Unexecuted instantiation: pwdbased.c:ctMaskSel
Unexecuted instantiation: chacha20_poly1305.c:ctMaskSel
Unexecuted instantiation: internal.c:ctMaskSel
Unexecuted instantiation: keys.c:ctMaskSel
Unexecuted instantiation: poly1305.c:ctMaskSel
Unexecuted instantiation: chacha.c:ctMaskSel
921
922
/* Constant time - select integer a when mask is set and integer b otherwise. */
923
WC_MISC_STATIC WC_INLINE int ctMaskSelInt(byte m, int a, int b)
924
1.49k
{
925
1.49k
    return (b & (~(signed int)(signed char)m)) |
926
1.49k
           (a & ( (signed int)(signed char)m));
927
1.49k
}
Unexecuted instantiation: hmac.c:ctMaskSelInt
Unexecuted instantiation: hash.c:ctMaskSelInt
Unexecuted instantiation: random.c:ctMaskSelInt
Unexecuted instantiation: sha256.c:ctMaskSelInt
rsa.c:ctMaskSelInt
Line
Count
Source
924
1.49k
{
925
1.49k
    return (b & (~(signed int)(signed char)m)) |
926
1.49k
           (a & ( (signed int)(signed char)m));
927
1.49k
}
Unexecuted instantiation: sp_int.c:ctMaskSelInt
Unexecuted instantiation: aes.c:ctMaskSelInt
Unexecuted instantiation: sha.c:ctMaskSelInt
Unexecuted instantiation: sha512.c:ctMaskSelInt
Unexecuted instantiation: sha3.c:ctMaskSelInt
Unexecuted instantiation: wolfmath.c:ctMaskSelInt
Unexecuted instantiation: memory.c:ctMaskSelInt
Unexecuted instantiation: dh.c:ctMaskSelInt
Unexecuted instantiation: asn.c:ctMaskSelInt
Unexecuted instantiation: coding.c:ctMaskSelInt
Unexecuted instantiation: ecc.c:ctMaskSelInt
Unexecuted instantiation: wc_mlkem.c:ctMaskSelInt
Unexecuted instantiation: wc_mlkem_poly.c:ctMaskSelInt
Unexecuted instantiation: ssl.c:ctMaskSelInt
Unexecuted instantiation: tls.c:ctMaskSelInt
Unexecuted instantiation: tls13.c:ctMaskSelInt
Unexecuted instantiation: kdf.c:ctMaskSelInt
Unexecuted instantiation: wc_encrypt.c:ctMaskSelInt
Unexecuted instantiation: pwdbased.c:ctMaskSelInt
Unexecuted instantiation: chacha20_poly1305.c:ctMaskSelInt
Unexecuted instantiation: internal.c:ctMaskSelInt
Unexecuted instantiation: keys.c:ctMaskSelInt
Unexecuted instantiation: poly1305.c:ctMaskSelInt
Unexecuted instantiation: chacha.c:ctMaskSelInt
928
929
/* Constant time - select word32 a when mask is set and word32 b otherwise. */
930
WC_MISC_STATIC WC_INLINE word32 ctMaskSelWord32(byte m, word32 a, word32 b)
931
0
{
932
0
    return (((word32)b & (word32)(~(signed int)(signed char)m)) |
933
0
            ((word32)a & (word32)( (signed int)(signed char)m)));
934
0
}
Unexecuted instantiation: hmac.c:ctMaskSelWord32
Unexecuted instantiation: hash.c:ctMaskSelWord32
Unexecuted instantiation: random.c:ctMaskSelWord32
Unexecuted instantiation: sha256.c:ctMaskSelWord32
Unexecuted instantiation: rsa.c:ctMaskSelWord32
Unexecuted instantiation: sp_int.c:ctMaskSelWord32
Unexecuted instantiation: aes.c:ctMaskSelWord32
Unexecuted instantiation: sha.c:ctMaskSelWord32
Unexecuted instantiation: sha512.c:ctMaskSelWord32
Unexecuted instantiation: sha3.c:ctMaskSelWord32
Unexecuted instantiation: wolfmath.c:ctMaskSelWord32
Unexecuted instantiation: memory.c:ctMaskSelWord32
Unexecuted instantiation: dh.c:ctMaskSelWord32
Unexecuted instantiation: asn.c:ctMaskSelWord32
Unexecuted instantiation: coding.c:ctMaskSelWord32
Unexecuted instantiation: ecc.c:ctMaskSelWord32
Unexecuted instantiation: wc_mlkem.c:ctMaskSelWord32
Unexecuted instantiation: wc_mlkem_poly.c:ctMaskSelWord32
Unexecuted instantiation: ssl.c:ctMaskSelWord32
Unexecuted instantiation: tls.c:ctMaskSelWord32
Unexecuted instantiation: tls13.c:ctMaskSelWord32
Unexecuted instantiation: kdf.c:ctMaskSelWord32
Unexecuted instantiation: wc_encrypt.c:ctMaskSelWord32
Unexecuted instantiation: pwdbased.c:ctMaskSelWord32
Unexecuted instantiation: chacha20_poly1305.c:ctMaskSelWord32
Unexecuted instantiation: internal.c:ctMaskSelWord32
Unexecuted instantiation: keys.c:ctMaskSelWord32
Unexecuted instantiation: poly1305.c:ctMaskSelWord32
Unexecuted instantiation: chacha.c:ctMaskSelWord32
935
936
/* Constant time - bit set when a <= b. */
937
WC_MISC_STATIC WC_INLINE byte ctSetLTE(int a, int b)
938
0
{
939
0
    return (byte)(((word32)a - (word32)b - 1) >> 31);
940
0
}
Unexecuted instantiation: hmac.c:ctSetLTE
Unexecuted instantiation: hash.c:ctSetLTE
Unexecuted instantiation: random.c:ctSetLTE
Unexecuted instantiation: sha256.c:ctSetLTE
Unexecuted instantiation: rsa.c:ctSetLTE
Unexecuted instantiation: sp_int.c:ctSetLTE
Unexecuted instantiation: aes.c:ctSetLTE
Unexecuted instantiation: sha.c:ctSetLTE
Unexecuted instantiation: sha512.c:ctSetLTE
Unexecuted instantiation: sha3.c:ctSetLTE
Unexecuted instantiation: wolfmath.c:ctSetLTE
Unexecuted instantiation: memory.c:ctSetLTE
Unexecuted instantiation: dh.c:ctSetLTE
Unexecuted instantiation: asn.c:ctSetLTE
Unexecuted instantiation: coding.c:ctSetLTE
Unexecuted instantiation: ecc.c:ctSetLTE
Unexecuted instantiation: wc_mlkem.c:ctSetLTE
Unexecuted instantiation: wc_mlkem_poly.c:ctSetLTE
Unexecuted instantiation: ssl.c:ctSetLTE
Unexecuted instantiation: tls.c:ctSetLTE
Unexecuted instantiation: tls13.c:ctSetLTE
Unexecuted instantiation: kdf.c:ctSetLTE
Unexecuted instantiation: wc_encrypt.c:ctSetLTE
Unexecuted instantiation: pwdbased.c:ctSetLTE
Unexecuted instantiation: chacha20_poly1305.c:ctSetLTE
Unexecuted instantiation: internal.c:ctSetLTE
Unexecuted instantiation: keys.c:ctSetLTE
Unexecuted instantiation: poly1305.c:ctSetLTE
Unexecuted instantiation: chacha.c:ctSetLTE
941
942
/* Constant time - conditionally copy size bytes from src to dst if mask is set
943
 */
944
WC_MISC_STATIC WC_INLINE void ctMaskCopy(byte mask, byte* dst, byte* src,
945
    word16 size)
946
0
{
947
0
    int i;
948
0
    for (i = 0; i < size; ++i) {
949
0
        dst[i] ^= (dst[i] ^ src[i]) & mask;
950
0
    }
951
0
}
Unexecuted instantiation: hmac.c:ctMaskCopy
Unexecuted instantiation: hash.c:ctMaskCopy
Unexecuted instantiation: random.c:ctMaskCopy
Unexecuted instantiation: sha256.c:ctMaskCopy
Unexecuted instantiation: rsa.c:ctMaskCopy
Unexecuted instantiation: sp_int.c:ctMaskCopy
Unexecuted instantiation: aes.c:ctMaskCopy
Unexecuted instantiation: sha.c:ctMaskCopy
Unexecuted instantiation: sha512.c:ctMaskCopy
Unexecuted instantiation: sha3.c:ctMaskCopy
Unexecuted instantiation: wolfmath.c:ctMaskCopy
Unexecuted instantiation: memory.c:ctMaskCopy
Unexecuted instantiation: dh.c:ctMaskCopy
Unexecuted instantiation: asn.c:ctMaskCopy
Unexecuted instantiation: coding.c:ctMaskCopy
Unexecuted instantiation: ecc.c:ctMaskCopy
Unexecuted instantiation: wc_mlkem.c:ctMaskCopy
Unexecuted instantiation: wc_mlkem_poly.c:ctMaskCopy
Unexecuted instantiation: ssl.c:ctMaskCopy
Unexecuted instantiation: tls.c:ctMaskCopy
Unexecuted instantiation: tls13.c:ctMaskCopy
Unexecuted instantiation: kdf.c:ctMaskCopy
Unexecuted instantiation: wc_encrypt.c:ctMaskCopy
Unexecuted instantiation: pwdbased.c:ctMaskCopy
Unexecuted instantiation: chacha20_poly1305.c:ctMaskCopy
Unexecuted instantiation: internal.c:ctMaskCopy
Unexecuted instantiation: keys.c:ctMaskCopy
Unexecuted instantiation: poly1305.c:ctMaskCopy
Unexecuted instantiation: chacha.c:ctMaskCopy
952
953
#endif /* !WOLFSSL_NO_CT_OPS */
954
955
#ifndef WOLFSSL_HAVE_MIN
956
    #define WOLFSSL_HAVE_MIN
957
    #if defined(HAVE_FIPS) && !defined(min) /* so ifdef check passes */
958
        #define min min
959
    #endif
960
    /* returns the smaller of a and b */
961
    WC_MISC_STATIC WC_INLINE word32 min(word32 a, word32 b)
962
257k
    {
963
257k
#if !defined(WOLFSSL_NO_CT_OPS) && !defined(WOLFSSL_NO_CT_MAX_MIN) && \
964
257k
    defined(WORD64_AVAILABLE)
965
257k
        volatile word32 gte_mask = (word32)ctMaskWord32GTE(a, b);
966
257k
        word32 r = (a & ~gte_mask);
967
257k
        r |= (b & gte_mask);
968
257k
        return r;
969
#else /* WOLFSSL_NO_CT_OPS */
970
        return a > b ? b : a;
971
#endif /* WOLFSSL_NO_CT_OPS */
972
257k
    }
Unexecuted instantiation: hmac.c:min
Unexecuted instantiation: hash.c:min
random.c:min
Line
Count
Source
962
5.86k
    {
963
5.86k
#if !defined(WOLFSSL_NO_CT_OPS) && !defined(WOLFSSL_NO_CT_MAX_MIN) && \
964
5.86k
    defined(WORD64_AVAILABLE)
965
5.86k
        volatile word32 gte_mask = (word32)ctMaskWord32GTE(a, b);
966
5.86k
        word32 r = (a & ~gte_mask);
967
5.86k
        r |= (b & gte_mask);
968
5.86k
        return r;
969
#else /* WOLFSSL_NO_CT_OPS */
970
        return a > b ? b : a;
971
#endif /* WOLFSSL_NO_CT_OPS */
972
5.86k
    }
sha256.c:min
Line
Count
Source
962
35.5k
    {
963
35.5k
#if !defined(WOLFSSL_NO_CT_OPS) && !defined(WOLFSSL_NO_CT_MAX_MIN) && \
964
35.5k
    defined(WORD64_AVAILABLE)
965
35.5k
        volatile word32 gte_mask = (word32)ctMaskWord32GTE(a, b);
966
35.5k
        word32 r = (a & ~gte_mask);
967
35.5k
        r |= (b & gte_mask);
968
35.5k
        return r;
969
#else /* WOLFSSL_NO_CT_OPS */
970
        return a > b ? b : a;
971
#endif /* WOLFSSL_NO_CT_OPS */
972
35.5k
    }
Unexecuted instantiation: rsa.c:min
Unexecuted instantiation: sp_int.c:min
Unexecuted instantiation: aes.c:min
Unexecuted instantiation: sha.c:min
sha512.c:min
Line
Count
Source
962
216k
    {
963
216k
#if !defined(WOLFSSL_NO_CT_OPS) && !defined(WOLFSSL_NO_CT_MAX_MIN) && \
964
216k
    defined(WORD64_AVAILABLE)
965
216k
        volatile word32 gte_mask = (word32)ctMaskWord32GTE(a, b);
966
216k
        word32 r = (a & ~gte_mask);
967
216k
        r |= (b & gte_mask);
968
216k
        return r;
969
#else /* WOLFSSL_NO_CT_OPS */
970
        return a > b ? b : a;
971
#endif /* WOLFSSL_NO_CT_OPS */
972
216k
    }
Unexecuted instantiation: sha3.c:min
Unexecuted instantiation: wolfmath.c:min
Unexecuted instantiation: memory.c:min
dh.c:min
Line
Count
Source
962
50
    {
963
50
#if !defined(WOLFSSL_NO_CT_OPS) && !defined(WOLFSSL_NO_CT_MAX_MIN) && \
964
50
    defined(WORD64_AVAILABLE)
965
50
        volatile word32 gte_mask = (word32)ctMaskWord32GTE(a, b);
966
50
        word32 r = (a & ~gte_mask);
967
50
        r |= (b & gte_mask);
968
50
        return r;
969
#else /* WOLFSSL_NO_CT_OPS */
970
        return a > b ? b : a;
971
#endif /* WOLFSSL_NO_CT_OPS */
972
50
    }
Unexecuted instantiation: asn.c:min
Unexecuted instantiation: coding.c:min
Unexecuted instantiation: ecc.c:min
Unexecuted instantiation: wc_mlkem.c:min
Unexecuted instantiation: wc_mlkem_poly.c:min
Unexecuted instantiation: ssl.c:min
Unexecuted instantiation: tls.c:min
Unexecuted instantiation: tls13.c:min
Unexecuted instantiation: kdf.c:min
Unexecuted instantiation: wc_encrypt.c:min
Unexecuted instantiation: pwdbased.c:min
Unexecuted instantiation: chacha20_poly1305.c:min
Unexecuted instantiation: keys.c:min
Unexecuted instantiation: poly1305.c:min
Unexecuted instantiation: chacha.c:min
973
#endif /* !WOLFSSL_HAVE_MIN */
974
975
#ifndef WOLFSSL_HAVE_MAX
976
    #define WOLFSSL_HAVE_MAX
977
    #if defined(HAVE_FIPS) && !defined(max) /* so ifdef check passes */
978
        #define max max
979
    #endif
980
    WC_MISC_STATIC WC_INLINE word32 max(word32 a, word32 b)
981
0
    {
982
0
#if !defined(WOLFSSL_NO_CT_OPS) && !defined(WOLFSSL_NO_CT_MAX_MIN) && \
983
0
    defined(WORD64_AVAILABLE)
984
0
        volatile word32 gte_mask = (word32)ctMaskWord32GTE(a, b);
985
0
        return (a & gte_mask) | (b & ~gte_mask);
986
0
#else /* WOLFSSL_NO_CT_OPS */
987
0
        return a > b ? a : b;
988
0
#endif /* WOLFSSL_NO_CT_OPS */
989
0
    }
Unexecuted instantiation: hmac.c:max
Unexecuted instantiation: hash.c:max
Unexecuted instantiation: random.c:max
Unexecuted instantiation: sha256.c:max
Unexecuted instantiation: rsa.c:max
Unexecuted instantiation: sp_int.c:max
Unexecuted instantiation: aes.c:max
Unexecuted instantiation: sha.c:max
Unexecuted instantiation: sha512.c:max
Unexecuted instantiation: sha3.c:max
Unexecuted instantiation: wolfmath.c:max
Unexecuted instantiation: memory.c:max
Unexecuted instantiation: dh.c:max
Unexecuted instantiation: asn.c:max
Unexecuted instantiation: coding.c:max
Unexecuted instantiation: ecc.c:max
Unexecuted instantiation: wc_mlkem.c:max
Unexecuted instantiation: wc_mlkem_poly.c:max
Unexecuted instantiation: ssl.c:max
Unexecuted instantiation: tls.c:max
Unexecuted instantiation: tls13.c:max
Unexecuted instantiation: kdf.c:max
Unexecuted instantiation: wc_encrypt.c:max
Unexecuted instantiation: pwdbased.c:max
Unexecuted instantiation: chacha20_poly1305.c:max
Unexecuted instantiation: internal.c:max
Unexecuted instantiation: keys.c:max
Unexecuted instantiation: poly1305.c:max
Unexecuted instantiation: chacha.c:max
990
#endif /* !WOLFSSL_HAVE_MAX */
991
992
#ifndef WOLFSSL_NO_INT_ENCODE
993
/* converts a 32 bit integer to 24 bit */
994
WC_MISC_STATIC WC_INLINE void c32to24(word32 in, word24 out)
995
0
{
996
0
    out[0] = (byte)((in >> 16) & 0xff);
997
0
    out[1] = (byte)((in >>  8) & 0xff);
998
0
    out[2] =  (byte)(in        & 0xff);
999
0
}
Unexecuted instantiation: hmac.c:c32to24
Unexecuted instantiation: hash.c:c32to24
Unexecuted instantiation: random.c:c32to24
Unexecuted instantiation: sha256.c:c32to24
Unexecuted instantiation: rsa.c:c32to24
Unexecuted instantiation: sp_int.c:c32to24
Unexecuted instantiation: aes.c:c32to24
Unexecuted instantiation: sha.c:c32to24
Unexecuted instantiation: sha512.c:c32to24
Unexecuted instantiation: sha3.c:c32to24
Unexecuted instantiation: wolfmath.c:c32to24
Unexecuted instantiation: memory.c:c32to24
Unexecuted instantiation: dh.c:c32to24
Unexecuted instantiation: asn.c:c32to24
Unexecuted instantiation: coding.c:c32to24
Unexecuted instantiation: ecc.c:c32to24
Unexecuted instantiation: wc_mlkem.c:c32to24
Unexecuted instantiation: wc_mlkem_poly.c:c32to24
Unexecuted instantiation: ssl.c:c32to24
Unexecuted instantiation: tls.c:c32to24
Unexecuted instantiation: tls13.c:c32to24
Unexecuted instantiation: kdf.c:c32to24
Unexecuted instantiation: wc_encrypt.c:c32to24
Unexecuted instantiation: pwdbased.c:c32to24
Unexecuted instantiation: chacha20_poly1305.c:c32to24
Unexecuted instantiation: internal.c:c32to24
Unexecuted instantiation: keys.c:c32to24
Unexecuted instantiation: poly1305.c:c32to24
Unexecuted instantiation: chacha.c:c32to24
1000
1001
/* convert 16 bit integer to opaque */
1002
WC_MISC_STATIC WC_INLINE void c16toa(word16 wc_u16, byte* c)
1003
0
{
1004
0
    c[0] = (byte)((wc_u16 >> 8) & 0xff);
1005
0
    c[1] =  (byte)(wc_u16       & 0xff);
1006
0
}
Unexecuted instantiation: hmac.c:c16toa
Unexecuted instantiation: hash.c:c16toa
Unexecuted instantiation: random.c:c16toa
Unexecuted instantiation: sha256.c:c16toa
Unexecuted instantiation: rsa.c:c16toa
Unexecuted instantiation: sp_int.c:c16toa
Unexecuted instantiation: aes.c:c16toa
Unexecuted instantiation: sha.c:c16toa
Unexecuted instantiation: sha512.c:c16toa
Unexecuted instantiation: sha3.c:c16toa
Unexecuted instantiation: wolfmath.c:c16toa
Unexecuted instantiation: memory.c:c16toa
Unexecuted instantiation: dh.c:c16toa
Unexecuted instantiation: asn.c:c16toa
Unexecuted instantiation: coding.c:c16toa
Unexecuted instantiation: ecc.c:c16toa
Unexecuted instantiation: wc_mlkem.c:c16toa
Unexecuted instantiation: wc_mlkem_poly.c:c16toa
Unexecuted instantiation: ssl.c:c16toa
Unexecuted instantiation: tls.c:c16toa
Unexecuted instantiation: tls13.c:c16toa
Unexecuted instantiation: kdf.c:c16toa
Unexecuted instantiation: wc_encrypt.c:c16toa
Unexecuted instantiation: pwdbased.c:c16toa
Unexecuted instantiation: chacha20_poly1305.c:c16toa
Unexecuted instantiation: internal.c:c16toa
Unexecuted instantiation: keys.c:c16toa
Unexecuted instantiation: poly1305.c:c16toa
Unexecuted instantiation: chacha.c:c16toa
1007
1008
/* convert 32 bit integer to opaque */
1009
WC_MISC_STATIC WC_INLINE void c32toa(word32 wc_u32, byte* c)
1010
0
{
1011
0
#ifdef WOLFSSL_USE_ALIGN
1012
0
    c[0] = (byte)((wc_u32 >> 24) & 0xff);
1013
0
    c[1] = (byte)((wc_u32 >> 16) & 0xff);
1014
0
    c[2] = (byte)((wc_u32 >>  8) & 0xff);
1015
0
    c[3] =  (byte)(wc_u32        & 0xff);
1016
#elif defined(LITTLE_ENDIAN_ORDER)
1017
    *(word32*)c = ByteReverseWord32(wc_u32);
1018
#else
1019
    *(word32*)c = wc_u32;
1020
#endif
1021
0
}
Unexecuted instantiation: hmac.c:c32toa
Unexecuted instantiation: hash.c:c32toa
Unexecuted instantiation: random.c:c32toa
Unexecuted instantiation: sha256.c:c32toa
Unexecuted instantiation: rsa.c:c32toa
Unexecuted instantiation: sp_int.c:c32toa
Unexecuted instantiation: aes.c:c32toa
Unexecuted instantiation: sha.c:c32toa
Unexecuted instantiation: sha512.c:c32toa
Unexecuted instantiation: sha3.c:c32toa
Unexecuted instantiation: wolfmath.c:c32toa
Unexecuted instantiation: memory.c:c32toa
Unexecuted instantiation: dh.c:c32toa
Unexecuted instantiation: asn.c:c32toa
Unexecuted instantiation: coding.c:c32toa
Unexecuted instantiation: ecc.c:c32toa
Unexecuted instantiation: wc_mlkem.c:c32toa
Unexecuted instantiation: wc_mlkem_poly.c:c32toa
Unexecuted instantiation: ssl.c:c32toa
Unexecuted instantiation: tls.c:c32toa
Unexecuted instantiation: tls13.c:c32toa
Unexecuted instantiation: kdf.c:c32toa
Unexecuted instantiation: wc_encrypt.c:c32toa
Unexecuted instantiation: pwdbased.c:c32toa
Unexecuted instantiation: chacha20_poly1305.c:c32toa
Unexecuted instantiation: keys.c:c32toa
Unexecuted instantiation: poly1305.c:c32toa
Unexecuted instantiation: chacha.c:c32toa
1022
#endif
1023
1024
#ifndef WOLFSSL_NO_INT_DECODE
1025
/* convert a 24 bit integer into a 32 bit one */
1026
WC_MISC_STATIC WC_INLINE void c24to32(const word24 wc_u24, word32* wc_u32)
1027
0
{
1028
0
    *wc_u32 = ((word32)wc_u24[0] << 16) |
1029
0
              ((word32)wc_u24[1] << 8) |
1030
0
               (word32)wc_u24[2];
1031
0
}
Unexecuted instantiation: hmac.c:c24to32
Unexecuted instantiation: hash.c:c24to32
Unexecuted instantiation: random.c:c24to32
Unexecuted instantiation: sha256.c:c24to32
Unexecuted instantiation: rsa.c:c24to32
Unexecuted instantiation: sp_int.c:c24to32
Unexecuted instantiation: aes.c:c24to32
Unexecuted instantiation: sha.c:c24to32
Unexecuted instantiation: sha512.c:c24to32
Unexecuted instantiation: sha3.c:c24to32
Unexecuted instantiation: wolfmath.c:c24to32
Unexecuted instantiation: memory.c:c24to32
Unexecuted instantiation: dh.c:c24to32
Unexecuted instantiation: asn.c:c24to32
Unexecuted instantiation: coding.c:c24to32
Unexecuted instantiation: ecc.c:c24to32
Unexecuted instantiation: wc_mlkem.c:c24to32
Unexecuted instantiation: wc_mlkem_poly.c:c24to32
Unexecuted instantiation: ssl.c:c24to32
Unexecuted instantiation: tls.c:c24to32
Unexecuted instantiation: tls13.c:c24to32
Unexecuted instantiation: kdf.c:c24to32
Unexecuted instantiation: wc_encrypt.c:c24to32
Unexecuted instantiation: pwdbased.c:c24to32
Unexecuted instantiation: chacha20_poly1305.c:c24to32
Unexecuted instantiation: internal.c:c24to32
Unexecuted instantiation: keys.c:c24to32
Unexecuted instantiation: poly1305.c:c24to32
Unexecuted instantiation: chacha.c:c24to32
1032
1033
1034
/* convert opaque to 24 bit integer */
1035
WC_MISC_STATIC WC_INLINE void ato24(const byte* c, word32* wc_u24)
1036
0
{
1037
0
    *wc_u24 = ((word32)c[0] << 16) | ((word32)c[1] << 8) | c[2];
1038
0
}
Unexecuted instantiation: hmac.c:ato24
Unexecuted instantiation: hash.c:ato24
Unexecuted instantiation: random.c:ato24
Unexecuted instantiation: sha256.c:ato24
Unexecuted instantiation: rsa.c:ato24
Unexecuted instantiation: sp_int.c:ato24
Unexecuted instantiation: aes.c:ato24
Unexecuted instantiation: sha.c:ato24
Unexecuted instantiation: sha512.c:ato24
Unexecuted instantiation: sha3.c:ato24
Unexecuted instantiation: wolfmath.c:ato24
Unexecuted instantiation: memory.c:ato24
Unexecuted instantiation: dh.c:ato24
Unexecuted instantiation: asn.c:ato24
Unexecuted instantiation: coding.c:ato24
Unexecuted instantiation: ecc.c:ato24
Unexecuted instantiation: wc_mlkem.c:ato24
Unexecuted instantiation: wc_mlkem_poly.c:ato24
Unexecuted instantiation: ssl.c:ato24
Unexecuted instantiation: tls.c:ato24
Unexecuted instantiation: tls13.c:ato24
Unexecuted instantiation: kdf.c:ato24
Unexecuted instantiation: wc_encrypt.c:ato24
Unexecuted instantiation: pwdbased.c:ato24
Unexecuted instantiation: chacha20_poly1305.c:ato24
Unexecuted instantiation: internal.c:ato24
Unexecuted instantiation: keys.c:ato24
Unexecuted instantiation: poly1305.c:ato24
Unexecuted instantiation: chacha.c:ato24
1039
1040
/* convert opaque to 16 bit integer */
1041
WC_MISC_STATIC WC_INLINE void ato16(const byte* c, word16* wc_u16)
1042
0
{
1043
0
    *wc_u16 = (word16) ((c[0] << 8) | (c[1]));
1044
0
}
Unexecuted instantiation: hmac.c:ato16
Unexecuted instantiation: hash.c:ato16
Unexecuted instantiation: random.c:ato16
Unexecuted instantiation: sha256.c:ato16
Unexecuted instantiation: rsa.c:ato16
Unexecuted instantiation: sp_int.c:ato16
Unexecuted instantiation: aes.c:ato16
Unexecuted instantiation: sha.c:ato16
Unexecuted instantiation: sha512.c:ato16
Unexecuted instantiation: sha3.c:ato16
Unexecuted instantiation: wolfmath.c:ato16
Unexecuted instantiation: memory.c:ato16
Unexecuted instantiation: dh.c:ato16
Unexecuted instantiation: asn.c:ato16
Unexecuted instantiation: coding.c:ato16
Unexecuted instantiation: ecc.c:ato16
Unexecuted instantiation: wc_mlkem.c:ato16
Unexecuted instantiation: wc_mlkem_poly.c:ato16
Unexecuted instantiation: ssl.c:ato16
Unexecuted instantiation: tls.c:ato16
Unexecuted instantiation: tls13.c:ato16
Unexecuted instantiation: kdf.c:ato16
Unexecuted instantiation: wc_encrypt.c:ato16
Unexecuted instantiation: pwdbased.c:ato16
Unexecuted instantiation: chacha20_poly1305.c:ato16
Unexecuted instantiation: internal.c:ato16
Unexecuted instantiation: keys.c:ato16
Unexecuted instantiation: poly1305.c:ato16
Unexecuted instantiation: chacha.c:ato16
1045
1046
/* convert opaque to 32 bit integer */
1047
WC_MISC_STATIC WC_INLINE void ato32(const byte* c, word32* wc_u32)
1048
0
{
1049
0
#ifdef WOLFSSL_USE_ALIGN
1050
0
    *wc_u32 = ((word32)c[0] << 24) |
1051
0
              ((word32)c[1] << 16) |
1052
0
              ((word32)c[2] << 8) |
1053
0
               (word32)c[3];
1054
0
#elif defined(LITTLE_ENDIAN_ORDER)
1055
0
    *wc_u32 = ByteReverseWord32(*(word32*)c);
1056
0
#else
1057
0
    *wc_u32 = *(word32*)c;
1058
0
#endif
1059
0
}
Unexecuted instantiation: hmac.c:ato32
Unexecuted instantiation: hash.c:ato32
Unexecuted instantiation: random.c:ato32
Unexecuted instantiation: sha256.c:ato32
Unexecuted instantiation: rsa.c:ato32
Unexecuted instantiation: sp_int.c:ato32
Unexecuted instantiation: aes.c:ato32
Unexecuted instantiation: sha.c:ato32
Unexecuted instantiation: sha512.c:ato32
Unexecuted instantiation: sha3.c:ato32
Unexecuted instantiation: wolfmath.c:ato32
Unexecuted instantiation: memory.c:ato32
Unexecuted instantiation: dh.c:ato32
Unexecuted instantiation: asn.c:ato32
Unexecuted instantiation: coding.c:ato32
Unexecuted instantiation: ecc.c:ato32
Unexecuted instantiation: wc_mlkem.c:ato32
Unexecuted instantiation: wc_mlkem_poly.c:ato32
Unexecuted instantiation: ssl.c:ato32
Unexecuted instantiation: tls.c:ato32
Unexecuted instantiation: tls13.c:ato32
Unexecuted instantiation: kdf.c:ato32
Unexecuted instantiation: wc_encrypt.c:ato32
Unexecuted instantiation: pwdbased.c:ato32
Unexecuted instantiation: chacha20_poly1305.c:ato32
Unexecuted instantiation: keys.c:ato32
Unexecuted instantiation: poly1305.c:ato32
Unexecuted instantiation: chacha.c:ato32
1060
1061
/* convert opaque to 32 bit integer. Interpret as little endian. */
1062
WC_MISC_STATIC WC_INLINE void ato32le(const byte* c, word32* wc_u32)
1063
0
{
1064
0
    *wc_u32 =  (word32)c[0] |
1065
0
              ((word32)c[1] << 8) |
1066
0
              ((word32)c[2] << 16) |
1067
0
              ((word32)c[3] << 24);
1068
0
}
Unexecuted instantiation: hmac.c:ato32le
Unexecuted instantiation: hash.c:ato32le
Unexecuted instantiation: random.c:ato32le
Unexecuted instantiation: sha256.c:ato32le
Unexecuted instantiation: rsa.c:ato32le
Unexecuted instantiation: sp_int.c:ato32le
Unexecuted instantiation: aes.c:ato32le
Unexecuted instantiation: sha.c:ato32le
Unexecuted instantiation: sha512.c:ato32le
Unexecuted instantiation: sha3.c:ato32le
Unexecuted instantiation: wolfmath.c:ato32le
Unexecuted instantiation: memory.c:ato32le
Unexecuted instantiation: dh.c:ato32le
Unexecuted instantiation: asn.c:ato32le
Unexecuted instantiation: coding.c:ato32le
Unexecuted instantiation: ecc.c:ato32le
Unexecuted instantiation: wc_mlkem.c:ato32le
Unexecuted instantiation: wc_mlkem_poly.c:ato32le
Unexecuted instantiation: ssl.c:ato32le
Unexecuted instantiation: tls.c:ato32le
Unexecuted instantiation: tls13.c:ato32le
Unexecuted instantiation: kdf.c:ato32le
Unexecuted instantiation: wc_encrypt.c:ato32le
Unexecuted instantiation: pwdbased.c:ato32le
Unexecuted instantiation: chacha20_poly1305.c:ato32le
Unexecuted instantiation: internal.c:ato32le
Unexecuted instantiation: keys.c:ato32le
Unexecuted instantiation: poly1305.c:ato32le
Unexecuted instantiation: chacha.c:ato32le
1069
1070
1071
WC_MISC_STATIC WC_INLINE word32 btoi(byte b)
1072
0
{
1073
0
    return (word32)(b - 0x30);
1074
0
}
Unexecuted instantiation: hmac.c:btoi
Unexecuted instantiation: hash.c:btoi
Unexecuted instantiation: random.c:btoi
Unexecuted instantiation: sha256.c:btoi
Unexecuted instantiation: rsa.c:btoi
Unexecuted instantiation: sp_int.c:btoi
Unexecuted instantiation: aes.c:btoi
Unexecuted instantiation: sha.c:btoi
Unexecuted instantiation: sha512.c:btoi
Unexecuted instantiation: sha3.c:btoi
Unexecuted instantiation: wolfmath.c:btoi
Unexecuted instantiation: memory.c:btoi
Unexecuted instantiation: dh.c:btoi
Unexecuted instantiation: asn.c:btoi
Unexecuted instantiation: coding.c:btoi
Unexecuted instantiation: ecc.c:btoi
Unexecuted instantiation: wc_mlkem.c:btoi
Unexecuted instantiation: wc_mlkem_poly.c:btoi
Unexecuted instantiation: ssl.c:btoi
Unexecuted instantiation: tls.c:btoi
Unexecuted instantiation: tls13.c:btoi
Unexecuted instantiation: kdf.c:btoi
Unexecuted instantiation: wc_encrypt.c:btoi
Unexecuted instantiation: pwdbased.c:btoi
Unexecuted instantiation: chacha20_poly1305.c:btoi
Unexecuted instantiation: internal.c:btoi
Unexecuted instantiation: keys.c:btoi
Unexecuted instantiation: poly1305.c:btoi
Unexecuted instantiation: chacha.c:btoi
1075
#endif
1076
1077
WC_MISC_STATIC WC_INLINE signed char HexCharToByte(char ch)
1078
272k
{
1079
272k
    signed char ret = (signed char)ch;
1080
272k
    if (ret >= '0' && ret <= '9')
1081
101k
        ret = (signed char)(ret - '0');
1082
171k
    else if (ret >= 'A' && ret <= 'F')
1083
171k
        ret = (signed char)(ret - ('A' - 10));
1084
0
    else if (ret >= 'a' && ret <= 'f')
1085
0
        ret = (signed char)(ret - ('a' - 10));
1086
0
    else
1087
0
        ret = -1; /* error case - return code must be signed */
1088
272k
    return ret;
1089
272k
}
Unexecuted instantiation: hmac.c:HexCharToByte
Unexecuted instantiation: hash.c:HexCharToByte
Unexecuted instantiation: random.c:HexCharToByte
Unexecuted instantiation: sha256.c:HexCharToByte
Unexecuted instantiation: rsa.c:HexCharToByte
sp_int.c:HexCharToByte
Line
Count
Source
1078
272k
{
1079
272k
    signed char ret = (signed char)ch;
1080
272k
    if (ret >= '0' && ret <= '9')
1081
101k
        ret = (signed char)(ret - '0');
1082
171k
    else if (ret >= 'A' && ret <= 'F')
1083
171k
        ret = (signed char)(ret - ('A' - 10));
1084
0
    else if (ret >= 'a' && ret <= 'f')
1085
0
        ret = (signed char)(ret - ('a' - 10));
1086
0
    else
1087
0
        ret = -1; /* error case - return code must be signed */
1088
272k
    return ret;
1089
272k
}
Unexecuted instantiation: aes.c:HexCharToByte
Unexecuted instantiation: sha.c:HexCharToByte
Unexecuted instantiation: sha512.c:HexCharToByte
Unexecuted instantiation: sha3.c:HexCharToByte
Unexecuted instantiation: wolfmath.c:HexCharToByte
Unexecuted instantiation: memory.c:HexCharToByte
Unexecuted instantiation: dh.c:HexCharToByte
Unexecuted instantiation: asn.c:HexCharToByte
Unexecuted instantiation: coding.c:HexCharToByte
Unexecuted instantiation: ecc.c:HexCharToByte
Unexecuted instantiation: wc_mlkem.c:HexCharToByte
Unexecuted instantiation: wc_mlkem_poly.c:HexCharToByte
Unexecuted instantiation: ssl.c:HexCharToByte
Unexecuted instantiation: tls.c:HexCharToByte
Unexecuted instantiation: tls13.c:HexCharToByte
Unexecuted instantiation: kdf.c:HexCharToByte
Unexecuted instantiation: wc_encrypt.c:HexCharToByte
Unexecuted instantiation: pwdbased.c:HexCharToByte
Unexecuted instantiation: chacha20_poly1305.c:HexCharToByte
Unexecuted instantiation: internal.c:HexCharToByte
Unexecuted instantiation: keys.c:HexCharToByte
Unexecuted instantiation: poly1305.c:HexCharToByte
Unexecuted instantiation: chacha.c:HexCharToByte
1090
1091
WC_MISC_STATIC WC_INLINE char ByteToHex(byte in)
1092
0
{
1093
0
    static ALIGN64 const char kHexChar[] = {
1094
0
        '0', '1', '2', '3', '4', '5', '6', '7',
1095
0
        '8', '9', 'A', 'B', 'C', 'D', 'E', 'F'
1096
0
    };
1097
0
    return (char)(kHexChar[in & 0xF]);
1098
0
}
Unexecuted instantiation: hmac.c:ByteToHex
Unexecuted instantiation: hash.c:ByteToHex
Unexecuted instantiation: random.c:ByteToHex
Unexecuted instantiation: sha256.c:ByteToHex
Unexecuted instantiation: rsa.c:ByteToHex
Unexecuted instantiation: sp_int.c:ByteToHex
Unexecuted instantiation: aes.c:ByteToHex
Unexecuted instantiation: sha.c:ByteToHex
Unexecuted instantiation: sha512.c:ByteToHex
Unexecuted instantiation: sha3.c:ByteToHex
Unexecuted instantiation: wolfmath.c:ByteToHex
Unexecuted instantiation: memory.c:ByteToHex
Unexecuted instantiation: dh.c:ByteToHex
Unexecuted instantiation: asn.c:ByteToHex
Unexecuted instantiation: coding.c:ByteToHex
Unexecuted instantiation: ecc.c:ByteToHex
Unexecuted instantiation: wc_mlkem.c:ByteToHex
Unexecuted instantiation: wc_mlkem_poly.c:ByteToHex
Unexecuted instantiation: ssl.c:ByteToHex
Unexecuted instantiation: tls.c:ByteToHex
Unexecuted instantiation: tls13.c:ByteToHex
Unexecuted instantiation: kdf.c:ByteToHex
Unexecuted instantiation: wc_encrypt.c:ByteToHex
Unexecuted instantiation: pwdbased.c:ByteToHex
Unexecuted instantiation: chacha20_poly1305.c:ByteToHex
Unexecuted instantiation: internal.c:ByteToHex
Unexecuted instantiation: keys.c:ByteToHex
Unexecuted instantiation: poly1305.c:ByteToHex
Unexecuted instantiation: chacha.c:ByteToHex
1099
1100
WC_MISC_STATIC WC_INLINE int ByteToHexStr(byte in, char* out)
1101
0
{
1102
0
    if (out == NULL)
1103
0
        return -1;
1104
0
1105
0
    out[0] = ByteToHex((byte)(in >> 4));
1106
0
    out[1] = ByteToHex((byte)(in & 0xf));
1107
0
    return 0;
1108
0
}
Unexecuted instantiation: hmac.c:ByteToHexStr
Unexecuted instantiation: hash.c:ByteToHexStr
Unexecuted instantiation: random.c:ByteToHexStr
Unexecuted instantiation: sha256.c:ByteToHexStr
Unexecuted instantiation: rsa.c:ByteToHexStr
Unexecuted instantiation: sp_int.c:ByteToHexStr
Unexecuted instantiation: aes.c:ByteToHexStr
Unexecuted instantiation: sha.c:ByteToHexStr
Unexecuted instantiation: sha512.c:ByteToHexStr
Unexecuted instantiation: sha3.c:ByteToHexStr
Unexecuted instantiation: wolfmath.c:ByteToHexStr
Unexecuted instantiation: memory.c:ByteToHexStr
Unexecuted instantiation: dh.c:ByteToHexStr
Unexecuted instantiation: asn.c:ByteToHexStr
Unexecuted instantiation: coding.c:ByteToHexStr
Unexecuted instantiation: ecc.c:ByteToHexStr
Unexecuted instantiation: wc_mlkem.c:ByteToHexStr
Unexecuted instantiation: wc_mlkem_poly.c:ByteToHexStr
Unexecuted instantiation: ssl.c:ByteToHexStr
Unexecuted instantiation: tls.c:ByteToHexStr
Unexecuted instantiation: tls13.c:ByteToHexStr
Unexecuted instantiation: kdf.c:ByteToHexStr
Unexecuted instantiation: wc_encrypt.c:ByteToHexStr
Unexecuted instantiation: pwdbased.c:ByteToHexStr
Unexecuted instantiation: chacha20_poly1305.c:ByteToHexStr
Unexecuted instantiation: internal.c:ByteToHexStr
Unexecuted instantiation: keys.c:ByteToHexStr
Unexecuted instantiation: poly1305.c:ByteToHexStr
Unexecuted instantiation: chacha.c:ByteToHexStr
1109
1110
WC_MISC_STATIC WC_INLINE int CharIsWhiteSpace(char ch)
1111
0
{
1112
0
#ifndef WOLFSSL_NO_CT_OPS
1113
0
    return (ctMaskEq(ch, ' ') |
1114
0
            ctMaskEq(ch, '\t') |
1115
0
            ctMaskEq(ch, '\n')) & 1;
1116
#else /* WOLFSSL_NO_CT_OPS */
1117
    switch (ch) {
1118
        case ' ':
1119
        case '\t':
1120
        case '\n':
1121
            return 1;
1122
        default:
1123
            return 0;
1124
    }
1125
#endif /* WOLFSSL_NO_CT_OPS */
1126
0
}
Unexecuted instantiation: hmac.c:CharIsWhiteSpace
Unexecuted instantiation: hash.c:CharIsWhiteSpace
Unexecuted instantiation: random.c:CharIsWhiteSpace
Unexecuted instantiation: sha256.c:CharIsWhiteSpace
Unexecuted instantiation: rsa.c:CharIsWhiteSpace
Unexecuted instantiation: sp_int.c:CharIsWhiteSpace
Unexecuted instantiation: aes.c:CharIsWhiteSpace
Unexecuted instantiation: sha.c:CharIsWhiteSpace
Unexecuted instantiation: sha512.c:CharIsWhiteSpace
Unexecuted instantiation: sha3.c:CharIsWhiteSpace
Unexecuted instantiation: wolfmath.c:CharIsWhiteSpace
Unexecuted instantiation: memory.c:CharIsWhiteSpace
Unexecuted instantiation: dh.c:CharIsWhiteSpace
Unexecuted instantiation: asn.c:CharIsWhiteSpace
Unexecuted instantiation: coding.c:CharIsWhiteSpace
Unexecuted instantiation: ecc.c:CharIsWhiteSpace
Unexecuted instantiation: wc_mlkem.c:CharIsWhiteSpace
Unexecuted instantiation: wc_mlkem_poly.c:CharIsWhiteSpace
Unexecuted instantiation: ssl.c:CharIsWhiteSpace
Unexecuted instantiation: tls.c:CharIsWhiteSpace
Unexecuted instantiation: tls13.c:CharIsWhiteSpace
Unexecuted instantiation: kdf.c:CharIsWhiteSpace
Unexecuted instantiation: wc_encrypt.c:CharIsWhiteSpace
Unexecuted instantiation: pwdbased.c:CharIsWhiteSpace
Unexecuted instantiation: chacha20_poly1305.c:CharIsWhiteSpace
Unexecuted instantiation: internal.c:CharIsWhiteSpace
Unexecuted instantiation: keys.c:CharIsWhiteSpace
Unexecuted instantiation: poly1305.c:CharIsWhiteSpace
Unexecuted instantiation: chacha.c:CharIsWhiteSpace
1127
1128
#if defined(WOLFSSL_W64_WRAPPER)
1129
#if defined(WORD64_AVAILABLE) && !defined(WOLFSSL_W64_WRAPPER_TEST)
1130
0
WC_MISC_STATIC WC_INLINE void w64Increment(w64wrapper *n) {
1131
0
    n->n++;
1132
0
}
Unexecuted instantiation: hmac.c:w64Increment
Unexecuted instantiation: hash.c:w64Increment
Unexecuted instantiation: random.c:w64Increment
Unexecuted instantiation: sha256.c:w64Increment
Unexecuted instantiation: rsa.c:w64Increment
Unexecuted instantiation: sp_int.c:w64Increment
Unexecuted instantiation: aes.c:w64Increment
Unexecuted instantiation: sha.c:w64Increment
Unexecuted instantiation: sha512.c:w64Increment
Unexecuted instantiation: sha3.c:w64Increment
Unexecuted instantiation: wolfmath.c:w64Increment
Unexecuted instantiation: memory.c:w64Increment
Unexecuted instantiation: dh.c:w64Increment
Unexecuted instantiation: asn.c:w64Increment
Unexecuted instantiation: coding.c:w64Increment
Unexecuted instantiation: ecc.c:w64Increment
Unexecuted instantiation: wc_mlkem.c:w64Increment
Unexecuted instantiation: wc_mlkem_poly.c:w64Increment
Unexecuted instantiation: ssl.c:w64Increment
Unexecuted instantiation: tls.c:w64Increment
Unexecuted instantiation: tls13.c:w64Increment
Unexecuted instantiation: kdf.c:w64Increment
Unexecuted instantiation: wc_encrypt.c:w64Increment
Unexecuted instantiation: pwdbased.c:w64Increment
Unexecuted instantiation: chacha20_poly1305.c:w64Increment
Unexecuted instantiation: internal.c:w64Increment
Unexecuted instantiation: keys.c:w64Increment
Unexecuted instantiation: poly1305.c:w64Increment
Unexecuted instantiation: chacha.c:w64Increment
1133
1134
0
WC_MISC_STATIC WC_INLINE void w64Decrement(w64wrapper *n) {
1135
0
    n->n--;
1136
0
}
Unexecuted instantiation: hmac.c:w64Decrement
Unexecuted instantiation: hash.c:w64Decrement
Unexecuted instantiation: random.c:w64Decrement
Unexecuted instantiation: sha256.c:w64Decrement
Unexecuted instantiation: rsa.c:w64Decrement
Unexecuted instantiation: sp_int.c:w64Decrement
Unexecuted instantiation: aes.c:w64Decrement
Unexecuted instantiation: sha.c:w64Decrement
Unexecuted instantiation: sha512.c:w64Decrement
Unexecuted instantiation: sha3.c:w64Decrement
Unexecuted instantiation: wolfmath.c:w64Decrement
Unexecuted instantiation: memory.c:w64Decrement
Unexecuted instantiation: dh.c:w64Decrement
Unexecuted instantiation: asn.c:w64Decrement
Unexecuted instantiation: coding.c:w64Decrement
Unexecuted instantiation: ecc.c:w64Decrement
Unexecuted instantiation: wc_mlkem.c:w64Decrement
Unexecuted instantiation: wc_mlkem_poly.c:w64Decrement
Unexecuted instantiation: ssl.c:w64Decrement
Unexecuted instantiation: tls.c:w64Decrement
Unexecuted instantiation: tls13.c:w64Decrement
Unexecuted instantiation: kdf.c:w64Decrement
Unexecuted instantiation: wc_encrypt.c:w64Decrement
Unexecuted instantiation: pwdbased.c:w64Decrement
Unexecuted instantiation: chacha20_poly1305.c:w64Decrement
Unexecuted instantiation: internal.c:w64Decrement
Unexecuted instantiation: keys.c:w64Decrement
Unexecuted instantiation: poly1305.c:w64Decrement
Unexecuted instantiation: chacha.c:w64Decrement
1137
1138
0
WC_MISC_STATIC WC_INLINE byte w64Equal(w64wrapper a, w64wrapper b) {
1139
0
    return (a.n == b.n);
1140
0
}
Unexecuted instantiation: hmac.c:w64Equal
Unexecuted instantiation: hash.c:w64Equal
Unexecuted instantiation: random.c:w64Equal
Unexecuted instantiation: sha256.c:w64Equal
Unexecuted instantiation: rsa.c:w64Equal
Unexecuted instantiation: sp_int.c:w64Equal
Unexecuted instantiation: aes.c:w64Equal
Unexecuted instantiation: sha.c:w64Equal
Unexecuted instantiation: sha512.c:w64Equal
Unexecuted instantiation: sha3.c:w64Equal
Unexecuted instantiation: wolfmath.c:w64Equal
Unexecuted instantiation: memory.c:w64Equal
Unexecuted instantiation: dh.c:w64Equal
Unexecuted instantiation: asn.c:w64Equal
Unexecuted instantiation: coding.c:w64Equal
Unexecuted instantiation: ecc.c:w64Equal
Unexecuted instantiation: wc_mlkem.c:w64Equal
Unexecuted instantiation: wc_mlkem_poly.c:w64Equal
Unexecuted instantiation: ssl.c:w64Equal
Unexecuted instantiation: tls.c:w64Equal
Unexecuted instantiation: tls13.c:w64Equal
Unexecuted instantiation: kdf.c:w64Equal
Unexecuted instantiation: wc_encrypt.c:w64Equal
Unexecuted instantiation: pwdbased.c:w64Equal
Unexecuted instantiation: chacha20_poly1305.c:w64Equal
Unexecuted instantiation: internal.c:w64Equal
Unexecuted instantiation: keys.c:w64Equal
Unexecuted instantiation: poly1305.c:w64Equal
Unexecuted instantiation: chacha.c:w64Equal
1141
1142
0
WC_MISC_STATIC WC_INLINE word32 w64GetLow32(w64wrapper n) {
1143
0
    return (word32)n.n;
1144
0
}
Unexecuted instantiation: hmac.c:w64GetLow32
Unexecuted instantiation: hash.c:w64GetLow32
Unexecuted instantiation: random.c:w64GetLow32
Unexecuted instantiation: sha256.c:w64GetLow32
Unexecuted instantiation: rsa.c:w64GetLow32
Unexecuted instantiation: sp_int.c:w64GetLow32
Unexecuted instantiation: aes.c:w64GetLow32
Unexecuted instantiation: sha.c:w64GetLow32
Unexecuted instantiation: sha512.c:w64GetLow32
Unexecuted instantiation: sha3.c:w64GetLow32
Unexecuted instantiation: wolfmath.c:w64GetLow32
Unexecuted instantiation: memory.c:w64GetLow32
Unexecuted instantiation: dh.c:w64GetLow32
Unexecuted instantiation: asn.c:w64GetLow32
Unexecuted instantiation: coding.c:w64GetLow32
Unexecuted instantiation: ecc.c:w64GetLow32
Unexecuted instantiation: wc_mlkem.c:w64GetLow32
Unexecuted instantiation: wc_mlkem_poly.c:w64GetLow32
Unexecuted instantiation: ssl.c:w64GetLow32
Unexecuted instantiation: tls.c:w64GetLow32
Unexecuted instantiation: tls13.c:w64GetLow32
Unexecuted instantiation: kdf.c:w64GetLow32
Unexecuted instantiation: wc_encrypt.c:w64GetLow32
Unexecuted instantiation: pwdbased.c:w64GetLow32
Unexecuted instantiation: chacha20_poly1305.c:w64GetLow32
Unexecuted instantiation: internal.c:w64GetLow32
Unexecuted instantiation: keys.c:w64GetLow32
Unexecuted instantiation: poly1305.c:w64GetLow32
Unexecuted instantiation: chacha.c:w64GetLow32
1145
1146
0
WC_MISC_STATIC WC_INLINE word32 w64GetHigh32(w64wrapper n) {
1147
0
    return (word32)(n.n >> 32);
1148
0
}
Unexecuted instantiation: hmac.c:w64GetHigh32
Unexecuted instantiation: hash.c:w64GetHigh32
Unexecuted instantiation: random.c:w64GetHigh32
Unexecuted instantiation: sha256.c:w64GetHigh32
Unexecuted instantiation: rsa.c:w64GetHigh32
Unexecuted instantiation: sp_int.c:w64GetHigh32
Unexecuted instantiation: aes.c:w64GetHigh32
Unexecuted instantiation: sha.c:w64GetHigh32
Unexecuted instantiation: sha512.c:w64GetHigh32
Unexecuted instantiation: sha3.c:w64GetHigh32
Unexecuted instantiation: wolfmath.c:w64GetHigh32
Unexecuted instantiation: memory.c:w64GetHigh32
Unexecuted instantiation: dh.c:w64GetHigh32
Unexecuted instantiation: asn.c:w64GetHigh32
Unexecuted instantiation: coding.c:w64GetHigh32
Unexecuted instantiation: ecc.c:w64GetHigh32
Unexecuted instantiation: wc_mlkem.c:w64GetHigh32
Unexecuted instantiation: wc_mlkem_poly.c:w64GetHigh32
Unexecuted instantiation: ssl.c:w64GetHigh32
Unexecuted instantiation: tls.c:w64GetHigh32
Unexecuted instantiation: tls13.c:w64GetHigh32
Unexecuted instantiation: kdf.c:w64GetHigh32
Unexecuted instantiation: wc_encrypt.c:w64GetHigh32
Unexecuted instantiation: pwdbased.c:w64GetHigh32
Unexecuted instantiation: chacha20_poly1305.c:w64GetHigh32
Unexecuted instantiation: internal.c:w64GetHigh32
Unexecuted instantiation: keys.c:w64GetHigh32
Unexecuted instantiation: poly1305.c:w64GetHigh32
Unexecuted instantiation: chacha.c:w64GetHigh32
1149
1150
0
WC_MISC_STATIC WC_INLINE void w64SetLow32(w64wrapper *n, word32 low) {
1151
0
    n->n = (n->n & (~(word64)(0xffffffff))) | low;
1152
0
}
Unexecuted instantiation: hmac.c:w64SetLow32
Unexecuted instantiation: hash.c:w64SetLow32
Unexecuted instantiation: random.c:w64SetLow32
Unexecuted instantiation: sha256.c:w64SetLow32
Unexecuted instantiation: rsa.c:w64SetLow32
Unexecuted instantiation: sp_int.c:w64SetLow32
Unexecuted instantiation: aes.c:w64SetLow32
Unexecuted instantiation: sha.c:w64SetLow32
Unexecuted instantiation: sha512.c:w64SetLow32
Unexecuted instantiation: sha3.c:w64SetLow32
Unexecuted instantiation: wolfmath.c:w64SetLow32
Unexecuted instantiation: memory.c:w64SetLow32
Unexecuted instantiation: dh.c:w64SetLow32
Unexecuted instantiation: asn.c:w64SetLow32
Unexecuted instantiation: coding.c:w64SetLow32
Unexecuted instantiation: ecc.c:w64SetLow32
Unexecuted instantiation: wc_mlkem.c:w64SetLow32
Unexecuted instantiation: wc_mlkem_poly.c:w64SetLow32
Unexecuted instantiation: ssl.c:w64SetLow32
Unexecuted instantiation: tls.c:w64SetLow32
Unexecuted instantiation: tls13.c:w64SetLow32
Unexecuted instantiation: kdf.c:w64SetLow32
Unexecuted instantiation: wc_encrypt.c:w64SetLow32
Unexecuted instantiation: pwdbased.c:w64SetLow32
Unexecuted instantiation: chacha20_poly1305.c:w64SetLow32
Unexecuted instantiation: internal.c:w64SetLow32
Unexecuted instantiation: keys.c:w64SetLow32
Unexecuted instantiation: poly1305.c:w64SetLow32
Unexecuted instantiation: chacha.c:w64SetLow32
1153
1154
WC_MISC_STATIC WC_INLINE w64wrapper w64Add32(w64wrapper a, word32 b, byte *wrap)
1155
0
{
1156
0
    a.n += b;
1157
0
    if (a.n < b && wrap != NULL)
1158
0
        *wrap = 1;
1159
0
1160
0
    return a;
1161
0
}
Unexecuted instantiation: hmac.c:w64Add32
Unexecuted instantiation: hash.c:w64Add32
Unexecuted instantiation: random.c:w64Add32
Unexecuted instantiation: sha256.c:w64Add32
Unexecuted instantiation: rsa.c:w64Add32
Unexecuted instantiation: sp_int.c:w64Add32
Unexecuted instantiation: aes.c:w64Add32
Unexecuted instantiation: sha.c:w64Add32
Unexecuted instantiation: sha512.c:w64Add32
Unexecuted instantiation: sha3.c:w64Add32
Unexecuted instantiation: wolfmath.c:w64Add32
Unexecuted instantiation: memory.c:w64Add32
Unexecuted instantiation: dh.c:w64Add32
Unexecuted instantiation: asn.c:w64Add32
Unexecuted instantiation: coding.c:w64Add32
Unexecuted instantiation: ecc.c:w64Add32
Unexecuted instantiation: wc_mlkem.c:w64Add32
Unexecuted instantiation: wc_mlkem_poly.c:w64Add32
Unexecuted instantiation: ssl.c:w64Add32
Unexecuted instantiation: tls.c:w64Add32
Unexecuted instantiation: tls13.c:w64Add32
Unexecuted instantiation: kdf.c:w64Add32
Unexecuted instantiation: wc_encrypt.c:w64Add32
Unexecuted instantiation: pwdbased.c:w64Add32
Unexecuted instantiation: chacha20_poly1305.c:w64Add32
Unexecuted instantiation: internal.c:w64Add32
Unexecuted instantiation: keys.c:w64Add32
Unexecuted instantiation: poly1305.c:w64Add32
Unexecuted instantiation: chacha.c:w64Add32
1162
1163
WC_MISC_STATIC WC_INLINE w64wrapper w64Add(w64wrapper a, w64wrapper b,
1164
    byte *wrap)
1165
0
{
1166
0
    a.n += b.n;
1167
0
    if (a.n < b.n && wrap != NULL)
1168
0
        *wrap = 1;
1169
0
1170
0
    return a;
1171
0
}
Unexecuted instantiation: hmac.c:w64Add
Unexecuted instantiation: hash.c:w64Add
Unexecuted instantiation: random.c:w64Add
Unexecuted instantiation: sha256.c:w64Add
Unexecuted instantiation: rsa.c:w64Add
Unexecuted instantiation: sp_int.c:w64Add
Unexecuted instantiation: aes.c:w64Add
Unexecuted instantiation: sha.c:w64Add
Unexecuted instantiation: sha512.c:w64Add
Unexecuted instantiation: sha3.c:w64Add
Unexecuted instantiation: wolfmath.c:w64Add
Unexecuted instantiation: memory.c:w64Add
Unexecuted instantiation: dh.c:w64Add
Unexecuted instantiation: asn.c:w64Add
Unexecuted instantiation: coding.c:w64Add
Unexecuted instantiation: ecc.c:w64Add
Unexecuted instantiation: wc_mlkem.c:w64Add
Unexecuted instantiation: wc_mlkem_poly.c:w64Add
Unexecuted instantiation: ssl.c:w64Add
Unexecuted instantiation: tls.c:w64Add
Unexecuted instantiation: tls13.c:w64Add
Unexecuted instantiation: kdf.c:w64Add
Unexecuted instantiation: wc_encrypt.c:w64Add
Unexecuted instantiation: pwdbased.c:w64Add
Unexecuted instantiation: chacha20_poly1305.c:w64Add
Unexecuted instantiation: internal.c:w64Add
Unexecuted instantiation: keys.c:w64Add
Unexecuted instantiation: poly1305.c:w64Add
Unexecuted instantiation: chacha.c:w64Add
1172
1173
WC_MISC_STATIC WC_INLINE w64wrapper w64Sub32(w64wrapper a, word32 b, byte *wrap)
1174
0
{
1175
0
    if (a.n < b && wrap != NULL)
1176
0
        *wrap = 1;
1177
0
    a.n = a.n - b;
1178
0
    return a;
1179
0
}
Unexecuted instantiation: hmac.c:w64Sub32
Unexecuted instantiation: hash.c:w64Sub32
Unexecuted instantiation: random.c:w64Sub32
Unexecuted instantiation: sha256.c:w64Sub32
Unexecuted instantiation: rsa.c:w64Sub32
Unexecuted instantiation: sp_int.c:w64Sub32
Unexecuted instantiation: aes.c:w64Sub32
Unexecuted instantiation: sha.c:w64Sub32
Unexecuted instantiation: sha512.c:w64Sub32
Unexecuted instantiation: sha3.c:w64Sub32
Unexecuted instantiation: wolfmath.c:w64Sub32
Unexecuted instantiation: memory.c:w64Sub32
Unexecuted instantiation: dh.c:w64Sub32
Unexecuted instantiation: asn.c:w64Sub32
Unexecuted instantiation: coding.c:w64Sub32
Unexecuted instantiation: ecc.c:w64Sub32
Unexecuted instantiation: wc_mlkem.c:w64Sub32
Unexecuted instantiation: wc_mlkem_poly.c:w64Sub32
Unexecuted instantiation: ssl.c:w64Sub32
Unexecuted instantiation: tls.c:w64Sub32
Unexecuted instantiation: tls13.c:w64Sub32
Unexecuted instantiation: kdf.c:w64Sub32
Unexecuted instantiation: wc_encrypt.c:w64Sub32
Unexecuted instantiation: pwdbased.c:w64Sub32
Unexecuted instantiation: chacha20_poly1305.c:w64Sub32
Unexecuted instantiation: internal.c:w64Sub32
Unexecuted instantiation: keys.c:w64Sub32
Unexecuted instantiation: poly1305.c:w64Sub32
Unexecuted instantiation: chacha.c:w64Sub32
1180
1181
WC_MISC_STATIC WC_INLINE byte w64GT(w64wrapper a, w64wrapper b)
1182
0
{
1183
0
    return a.n > b.n;
1184
0
}
Unexecuted instantiation: hmac.c:w64GT
Unexecuted instantiation: hash.c:w64GT
Unexecuted instantiation: random.c:w64GT
Unexecuted instantiation: sha256.c:w64GT
Unexecuted instantiation: rsa.c:w64GT
Unexecuted instantiation: sp_int.c:w64GT
Unexecuted instantiation: aes.c:w64GT
Unexecuted instantiation: sha.c:w64GT
Unexecuted instantiation: sha512.c:w64GT
Unexecuted instantiation: sha3.c:w64GT
Unexecuted instantiation: wolfmath.c:w64GT
Unexecuted instantiation: memory.c:w64GT
Unexecuted instantiation: dh.c:w64GT
Unexecuted instantiation: asn.c:w64GT
Unexecuted instantiation: coding.c:w64GT
Unexecuted instantiation: ecc.c:w64GT
Unexecuted instantiation: wc_mlkem.c:w64GT
Unexecuted instantiation: wc_mlkem_poly.c:w64GT
Unexecuted instantiation: ssl.c:w64GT
Unexecuted instantiation: tls.c:w64GT
Unexecuted instantiation: tls13.c:w64GT
Unexecuted instantiation: kdf.c:w64GT
Unexecuted instantiation: wc_encrypt.c:w64GT
Unexecuted instantiation: pwdbased.c:w64GT
Unexecuted instantiation: chacha20_poly1305.c:w64GT
Unexecuted instantiation: internal.c:w64GT
Unexecuted instantiation: keys.c:w64GT
Unexecuted instantiation: poly1305.c:w64GT
Unexecuted instantiation: chacha.c:w64GT
1185
1186
WC_MISC_STATIC WC_INLINE byte w64IsZero(w64wrapper a)
1187
0
{
1188
0
    return a.n == 0;
1189
0
}
Unexecuted instantiation: hmac.c:w64IsZero
Unexecuted instantiation: hash.c:w64IsZero
Unexecuted instantiation: random.c:w64IsZero
Unexecuted instantiation: sha256.c:w64IsZero
Unexecuted instantiation: rsa.c:w64IsZero
Unexecuted instantiation: sp_int.c:w64IsZero
Unexecuted instantiation: aes.c:w64IsZero
Unexecuted instantiation: sha.c:w64IsZero
Unexecuted instantiation: sha512.c:w64IsZero
Unexecuted instantiation: sha3.c:w64IsZero
Unexecuted instantiation: wolfmath.c:w64IsZero
Unexecuted instantiation: memory.c:w64IsZero
Unexecuted instantiation: dh.c:w64IsZero
Unexecuted instantiation: asn.c:w64IsZero
Unexecuted instantiation: coding.c:w64IsZero
Unexecuted instantiation: ecc.c:w64IsZero
Unexecuted instantiation: wc_mlkem.c:w64IsZero
Unexecuted instantiation: wc_mlkem_poly.c:w64IsZero
Unexecuted instantiation: ssl.c:w64IsZero
Unexecuted instantiation: tls.c:w64IsZero
Unexecuted instantiation: tls13.c:w64IsZero
Unexecuted instantiation: kdf.c:w64IsZero
Unexecuted instantiation: wc_encrypt.c:w64IsZero
Unexecuted instantiation: pwdbased.c:w64IsZero
Unexecuted instantiation: chacha20_poly1305.c:w64IsZero
Unexecuted instantiation: internal.c:w64IsZero
Unexecuted instantiation: keys.c:w64IsZero
Unexecuted instantiation: poly1305.c:w64IsZero
Unexecuted instantiation: chacha.c:w64IsZero
1190
1191
WC_MISC_STATIC WC_INLINE void c64toa(const w64wrapper *a, byte *out)
1192
0
{
1193
0
#ifdef BIG_ENDIAN_ORDER
1194
0
    XMEMCPY(out, &a->n, sizeof(a->n));
1195
0
#else
1196
0
    word64 _out;
1197
0
    _out = ByteReverseWord64(a->n);
1198
0
    XMEMCPY(out, &_out, sizeof(_out));
1199
0
#endif /* BIG_ENDIAN_ORDER */
1200
0
}
Unexecuted instantiation: hmac.c:c64toa
Unexecuted instantiation: hash.c:c64toa
Unexecuted instantiation: random.c:c64toa
Unexecuted instantiation: sha256.c:c64toa
Unexecuted instantiation: rsa.c:c64toa
Unexecuted instantiation: sp_int.c:c64toa
Unexecuted instantiation: aes.c:c64toa
Unexecuted instantiation: sha.c:c64toa
Unexecuted instantiation: sha512.c:c64toa
Unexecuted instantiation: sha3.c:c64toa
Unexecuted instantiation: wolfmath.c:c64toa
Unexecuted instantiation: memory.c:c64toa
Unexecuted instantiation: dh.c:c64toa
Unexecuted instantiation: asn.c:c64toa
Unexecuted instantiation: coding.c:c64toa
Unexecuted instantiation: ecc.c:c64toa
Unexecuted instantiation: wc_mlkem.c:c64toa
Unexecuted instantiation: wc_mlkem_poly.c:c64toa
Unexecuted instantiation: ssl.c:c64toa
Unexecuted instantiation: tls.c:c64toa
Unexecuted instantiation: tls13.c:c64toa
Unexecuted instantiation: kdf.c:c64toa
Unexecuted instantiation: wc_encrypt.c:c64toa
Unexecuted instantiation: pwdbased.c:c64toa
Unexecuted instantiation: chacha20_poly1305.c:c64toa
Unexecuted instantiation: internal.c:c64toa
Unexecuted instantiation: keys.c:c64toa
Unexecuted instantiation: poly1305.c:c64toa
Unexecuted instantiation: chacha.c:c64toa
1201
1202
WC_MISC_STATIC WC_INLINE void ato64(const byte *in, w64wrapper *w64)
1203
0
{
1204
0
#ifdef BIG_ENDIAN_ORDER
1205
0
    XMEMCPY(&w64->n, in, sizeof(w64->n));
1206
0
#else
1207
0
    union {
1208
0
        word64 w;
1209
0
        byte b[sizeof(word64)];
1210
0
    } _in;
1211
0
    XMEMCPY(_in.b, in, sizeof(_in));
1212
0
    w64->n = ByteReverseWord64(_in.w);
1213
0
#endif /* BIG_ENDIAN_ORDER */
1214
0
}
Unexecuted instantiation: hmac.c:ato64
Unexecuted instantiation: hash.c:ato64
Unexecuted instantiation: random.c:ato64
Unexecuted instantiation: sha256.c:ato64
Unexecuted instantiation: rsa.c:ato64
Unexecuted instantiation: sp_int.c:ato64
Unexecuted instantiation: aes.c:ato64
Unexecuted instantiation: sha.c:ato64
Unexecuted instantiation: sha512.c:ato64
Unexecuted instantiation: sha3.c:ato64
Unexecuted instantiation: wolfmath.c:ato64
Unexecuted instantiation: memory.c:ato64
Unexecuted instantiation: dh.c:ato64
Unexecuted instantiation: asn.c:ato64
Unexecuted instantiation: coding.c:ato64
Unexecuted instantiation: ecc.c:ato64
Unexecuted instantiation: wc_mlkem.c:ato64
Unexecuted instantiation: wc_mlkem_poly.c:ato64
Unexecuted instantiation: ssl.c:ato64
Unexecuted instantiation: tls.c:ato64
Unexecuted instantiation: tls13.c:ato64
Unexecuted instantiation: kdf.c:ato64
Unexecuted instantiation: wc_encrypt.c:ato64
Unexecuted instantiation: pwdbased.c:ato64
Unexecuted instantiation: chacha20_poly1305.c:ato64
Unexecuted instantiation: internal.c:ato64
Unexecuted instantiation: keys.c:ato64
Unexecuted instantiation: poly1305.c:ato64
Unexecuted instantiation: chacha.c:ato64
1215
1216
WC_MISC_STATIC WC_INLINE w64wrapper w64From32(word32 hi, word32 lo)
1217
0
{
1218
0
    w64wrapper ret;
1219
0
    ret.n = ((word64)hi << 32) | lo;
1220
0
    return ret;
1221
0
}
Unexecuted instantiation: hmac.c:w64From32
Unexecuted instantiation: hash.c:w64From32
Unexecuted instantiation: random.c:w64From32
Unexecuted instantiation: sha256.c:w64From32
Unexecuted instantiation: rsa.c:w64From32
Unexecuted instantiation: sp_int.c:w64From32
Unexecuted instantiation: aes.c:w64From32
Unexecuted instantiation: sha.c:w64From32
Unexecuted instantiation: sha512.c:w64From32
Unexecuted instantiation: sha3.c:w64From32
Unexecuted instantiation: wolfmath.c:w64From32
Unexecuted instantiation: memory.c:w64From32
Unexecuted instantiation: dh.c:w64From32
Unexecuted instantiation: asn.c:w64From32
Unexecuted instantiation: coding.c:w64From32
Unexecuted instantiation: ecc.c:w64From32
Unexecuted instantiation: wc_mlkem.c:w64From32
Unexecuted instantiation: wc_mlkem_poly.c:w64From32
Unexecuted instantiation: ssl.c:w64From32
Unexecuted instantiation: tls.c:w64From32
Unexecuted instantiation: tls13.c:w64From32
Unexecuted instantiation: kdf.c:w64From32
Unexecuted instantiation: wc_encrypt.c:w64From32
Unexecuted instantiation: pwdbased.c:w64From32
Unexecuted instantiation: chacha20_poly1305.c:w64From32
Unexecuted instantiation: internal.c:w64From32
Unexecuted instantiation: keys.c:w64From32
Unexecuted instantiation: poly1305.c:w64From32
Unexecuted instantiation: chacha.c:w64From32
1222
1223
WC_MISC_STATIC WC_INLINE byte w64GTE(w64wrapper a, w64wrapper b)
1224
0
{
1225
0
    return a.n >= b.n;
1226
0
}
Unexecuted instantiation: hmac.c:w64GTE
Unexecuted instantiation: hash.c:w64GTE
Unexecuted instantiation: random.c:w64GTE
Unexecuted instantiation: sha256.c:w64GTE
Unexecuted instantiation: rsa.c:w64GTE
Unexecuted instantiation: sp_int.c:w64GTE
Unexecuted instantiation: aes.c:w64GTE
Unexecuted instantiation: sha.c:w64GTE
Unexecuted instantiation: sha512.c:w64GTE
Unexecuted instantiation: sha3.c:w64GTE
Unexecuted instantiation: wolfmath.c:w64GTE
Unexecuted instantiation: memory.c:w64GTE
Unexecuted instantiation: dh.c:w64GTE
Unexecuted instantiation: asn.c:w64GTE
Unexecuted instantiation: coding.c:w64GTE
Unexecuted instantiation: ecc.c:w64GTE
Unexecuted instantiation: wc_mlkem.c:w64GTE
Unexecuted instantiation: wc_mlkem_poly.c:w64GTE
Unexecuted instantiation: ssl.c:w64GTE
Unexecuted instantiation: tls.c:w64GTE
Unexecuted instantiation: tls13.c:w64GTE
Unexecuted instantiation: kdf.c:w64GTE
Unexecuted instantiation: wc_encrypt.c:w64GTE
Unexecuted instantiation: pwdbased.c:w64GTE
Unexecuted instantiation: chacha20_poly1305.c:w64GTE
Unexecuted instantiation: internal.c:w64GTE
Unexecuted instantiation: keys.c:w64GTE
Unexecuted instantiation: poly1305.c:w64GTE
Unexecuted instantiation: chacha.c:w64GTE
1227
1228
WC_MISC_STATIC WC_INLINE byte w64LT(w64wrapper a, w64wrapper b)
1229
0
{
1230
0
    return a.n < b.n;
1231
0
}
Unexecuted instantiation: hmac.c:w64LT
Unexecuted instantiation: hash.c:w64LT
Unexecuted instantiation: random.c:w64LT
Unexecuted instantiation: sha256.c:w64LT
Unexecuted instantiation: rsa.c:w64LT
Unexecuted instantiation: sp_int.c:w64LT
Unexecuted instantiation: aes.c:w64LT
Unexecuted instantiation: sha.c:w64LT
Unexecuted instantiation: sha512.c:w64LT
Unexecuted instantiation: sha3.c:w64LT
Unexecuted instantiation: wolfmath.c:w64LT
Unexecuted instantiation: memory.c:w64LT
Unexecuted instantiation: dh.c:w64LT
Unexecuted instantiation: asn.c:w64LT
Unexecuted instantiation: coding.c:w64LT
Unexecuted instantiation: ecc.c:w64LT
Unexecuted instantiation: wc_mlkem.c:w64LT
Unexecuted instantiation: wc_mlkem_poly.c:w64LT
Unexecuted instantiation: ssl.c:w64LT
Unexecuted instantiation: tls.c:w64LT
Unexecuted instantiation: tls13.c:w64LT
Unexecuted instantiation: kdf.c:w64LT
Unexecuted instantiation: wc_encrypt.c:w64LT
Unexecuted instantiation: pwdbased.c:w64LT
Unexecuted instantiation: chacha20_poly1305.c:w64LT
Unexecuted instantiation: internal.c:w64LT
Unexecuted instantiation: keys.c:w64LT
Unexecuted instantiation: poly1305.c:w64LT
Unexecuted instantiation: chacha.c:w64LT
1232
1233
WC_MISC_STATIC WC_INLINE w64wrapper w64Sub(w64wrapper a, w64wrapper b)
1234
0
{
1235
0
    a.n -= b.n;
1236
0
    return a;
1237
0
}
Unexecuted instantiation: hmac.c:w64Sub
Unexecuted instantiation: hash.c:w64Sub
Unexecuted instantiation: random.c:w64Sub
Unexecuted instantiation: sha256.c:w64Sub
Unexecuted instantiation: rsa.c:w64Sub
Unexecuted instantiation: sp_int.c:w64Sub
Unexecuted instantiation: aes.c:w64Sub
Unexecuted instantiation: sha.c:w64Sub
Unexecuted instantiation: sha512.c:w64Sub
Unexecuted instantiation: sha3.c:w64Sub
Unexecuted instantiation: wolfmath.c:w64Sub
Unexecuted instantiation: memory.c:w64Sub
Unexecuted instantiation: dh.c:w64Sub
Unexecuted instantiation: asn.c:w64Sub
Unexecuted instantiation: coding.c:w64Sub
Unexecuted instantiation: ecc.c:w64Sub
Unexecuted instantiation: wc_mlkem.c:w64Sub
Unexecuted instantiation: wc_mlkem_poly.c:w64Sub
Unexecuted instantiation: ssl.c:w64Sub
Unexecuted instantiation: tls.c:w64Sub
Unexecuted instantiation: tls13.c:w64Sub
Unexecuted instantiation: kdf.c:w64Sub
Unexecuted instantiation: wc_encrypt.c:w64Sub
Unexecuted instantiation: pwdbased.c:w64Sub
Unexecuted instantiation: chacha20_poly1305.c:w64Sub
Unexecuted instantiation: internal.c:w64Sub
Unexecuted instantiation: keys.c:w64Sub
Unexecuted instantiation: poly1305.c:w64Sub
Unexecuted instantiation: chacha.c:w64Sub
1238
1239
WC_MISC_STATIC WC_INLINE void w64Zero(w64wrapper *a)
1240
0
{
1241
0
    a->n = 0;
1242
0
}
Unexecuted instantiation: hmac.c:w64Zero
Unexecuted instantiation: hash.c:w64Zero
Unexecuted instantiation: random.c:w64Zero
Unexecuted instantiation: sha256.c:w64Zero
Unexecuted instantiation: rsa.c:w64Zero
Unexecuted instantiation: sp_int.c:w64Zero
Unexecuted instantiation: aes.c:w64Zero
Unexecuted instantiation: sha.c:w64Zero
Unexecuted instantiation: sha512.c:w64Zero
Unexecuted instantiation: sha3.c:w64Zero
Unexecuted instantiation: wolfmath.c:w64Zero
Unexecuted instantiation: memory.c:w64Zero
Unexecuted instantiation: dh.c:w64Zero
Unexecuted instantiation: asn.c:w64Zero
Unexecuted instantiation: coding.c:w64Zero
Unexecuted instantiation: ecc.c:w64Zero
Unexecuted instantiation: wc_mlkem.c:w64Zero
Unexecuted instantiation: wc_mlkem_poly.c:w64Zero
Unexecuted instantiation: ssl.c:w64Zero
Unexecuted instantiation: tls.c:w64Zero
Unexecuted instantiation: tls13.c:w64Zero
Unexecuted instantiation: kdf.c:w64Zero
Unexecuted instantiation: wc_encrypt.c:w64Zero
Unexecuted instantiation: pwdbased.c:w64Zero
Unexecuted instantiation: chacha20_poly1305.c:w64Zero
Unexecuted instantiation: internal.c:w64Zero
Unexecuted instantiation: keys.c:w64Zero
Unexecuted instantiation: poly1305.c:w64Zero
Unexecuted instantiation: chacha.c:w64Zero
1243
1244
WC_MISC_STATIC WC_INLINE w64wrapper w64ShiftRight(w64wrapper a, int shift)
1245
0
{
1246
0
    a.n >>= shift;
1247
0
    return a;
1248
0
}
Unexecuted instantiation: hmac.c:w64ShiftRight
Unexecuted instantiation: hash.c:w64ShiftRight
Unexecuted instantiation: random.c:w64ShiftRight
Unexecuted instantiation: sha256.c:w64ShiftRight
Unexecuted instantiation: rsa.c:w64ShiftRight
Unexecuted instantiation: sp_int.c:w64ShiftRight
Unexecuted instantiation: aes.c:w64ShiftRight
Unexecuted instantiation: sha.c:w64ShiftRight
Unexecuted instantiation: sha512.c:w64ShiftRight
Unexecuted instantiation: sha3.c:w64ShiftRight
Unexecuted instantiation: wolfmath.c:w64ShiftRight
Unexecuted instantiation: memory.c:w64ShiftRight
Unexecuted instantiation: dh.c:w64ShiftRight
Unexecuted instantiation: asn.c:w64ShiftRight
Unexecuted instantiation: coding.c:w64ShiftRight
Unexecuted instantiation: ecc.c:w64ShiftRight
Unexecuted instantiation: wc_mlkem.c:w64ShiftRight
Unexecuted instantiation: wc_mlkem_poly.c:w64ShiftRight
Unexecuted instantiation: ssl.c:w64ShiftRight
Unexecuted instantiation: tls.c:w64ShiftRight
Unexecuted instantiation: tls13.c:w64ShiftRight
Unexecuted instantiation: kdf.c:w64ShiftRight
Unexecuted instantiation: wc_encrypt.c:w64ShiftRight
Unexecuted instantiation: pwdbased.c:w64ShiftRight
Unexecuted instantiation: chacha20_poly1305.c:w64ShiftRight
Unexecuted instantiation: internal.c:w64ShiftRight
Unexecuted instantiation: keys.c:w64ShiftRight
Unexecuted instantiation: poly1305.c:w64ShiftRight
Unexecuted instantiation: chacha.c:w64ShiftRight
1249
1250
WC_MISC_STATIC WC_INLINE w64wrapper w64ShiftLeft(w64wrapper a, int shift)
1251
0
{
1252
0
    a.n <<= shift;
1253
0
    return a;
1254
0
}
Unexecuted instantiation: hmac.c:w64ShiftLeft
Unexecuted instantiation: hash.c:w64ShiftLeft
Unexecuted instantiation: random.c:w64ShiftLeft
Unexecuted instantiation: sha256.c:w64ShiftLeft
Unexecuted instantiation: rsa.c:w64ShiftLeft
Unexecuted instantiation: sp_int.c:w64ShiftLeft
Unexecuted instantiation: aes.c:w64ShiftLeft
Unexecuted instantiation: sha.c:w64ShiftLeft
Unexecuted instantiation: sha512.c:w64ShiftLeft
Unexecuted instantiation: sha3.c:w64ShiftLeft
Unexecuted instantiation: wolfmath.c:w64ShiftLeft
Unexecuted instantiation: memory.c:w64ShiftLeft
Unexecuted instantiation: dh.c:w64ShiftLeft
Unexecuted instantiation: asn.c:w64ShiftLeft
Unexecuted instantiation: coding.c:w64ShiftLeft
Unexecuted instantiation: ecc.c:w64ShiftLeft
Unexecuted instantiation: wc_mlkem.c:w64ShiftLeft
Unexecuted instantiation: wc_mlkem_poly.c:w64ShiftLeft
Unexecuted instantiation: ssl.c:w64ShiftLeft
Unexecuted instantiation: tls.c:w64ShiftLeft
Unexecuted instantiation: tls13.c:w64ShiftLeft
Unexecuted instantiation: kdf.c:w64ShiftLeft
Unexecuted instantiation: wc_encrypt.c:w64ShiftLeft
Unexecuted instantiation: pwdbased.c:w64ShiftLeft
Unexecuted instantiation: chacha20_poly1305.c:w64ShiftLeft
Unexecuted instantiation: internal.c:w64ShiftLeft
Unexecuted instantiation: keys.c:w64ShiftLeft
Unexecuted instantiation: poly1305.c:w64ShiftLeft
Unexecuted instantiation: chacha.c:w64ShiftLeft
1255
1256
WC_MISC_STATIC WC_INLINE w64wrapper w64Mul(word32 a, word32 b)
1257
0
{
1258
0
    w64wrapper ret;
1259
0
    ret.n = (word64)a * (word64)b;
1260
0
    return ret;
1261
0
}
Unexecuted instantiation: hmac.c:w64Mul
Unexecuted instantiation: hash.c:w64Mul
Unexecuted instantiation: random.c:w64Mul
Unexecuted instantiation: sha256.c:w64Mul
Unexecuted instantiation: rsa.c:w64Mul
Unexecuted instantiation: sp_int.c:w64Mul
Unexecuted instantiation: aes.c:w64Mul
Unexecuted instantiation: sha.c:w64Mul
Unexecuted instantiation: sha512.c:w64Mul
Unexecuted instantiation: sha3.c:w64Mul
Unexecuted instantiation: wolfmath.c:w64Mul
Unexecuted instantiation: memory.c:w64Mul
Unexecuted instantiation: dh.c:w64Mul
Unexecuted instantiation: asn.c:w64Mul
Unexecuted instantiation: coding.c:w64Mul
Unexecuted instantiation: ecc.c:w64Mul
Unexecuted instantiation: wc_mlkem.c:w64Mul
Unexecuted instantiation: wc_mlkem_poly.c:w64Mul
Unexecuted instantiation: ssl.c:w64Mul
Unexecuted instantiation: tls.c:w64Mul
Unexecuted instantiation: tls13.c:w64Mul
Unexecuted instantiation: kdf.c:w64Mul
Unexecuted instantiation: wc_encrypt.c:w64Mul
Unexecuted instantiation: pwdbased.c:w64Mul
Unexecuted instantiation: chacha20_poly1305.c:w64Mul
Unexecuted instantiation: internal.c:w64Mul
Unexecuted instantiation: keys.c:w64Mul
Unexecuted instantiation: poly1305.c:w64Mul
Unexecuted instantiation: chacha.c:w64Mul
1262
1263
#else
1264
1265
WC_MISC_STATIC WC_INLINE void w64Increment(w64wrapper *n)
1266
{
1267
    n->n[1]++;
1268
    if (n->n[1] == 0)
1269
        n->n[0]++;
1270
}
1271
1272
WC_MISC_STATIC WC_INLINE void w64Decrement(w64wrapper *n) {
1273
    if (n->n[1] == 0)
1274
        n->n[0]--;
1275
    n->n[1]--;
1276
}
1277
1278
WC_MISC_STATIC WC_INLINE byte w64Equal(w64wrapper a, w64wrapper b)
1279
{
1280
    return (a.n[0] == b.n[0] && a.n[1] == b.n[1]);
1281
}
1282
1283
WC_MISC_STATIC WC_INLINE word32 w64GetLow32(w64wrapper n) {
1284
    return n.n[1];
1285
}
1286
1287
WC_MISC_STATIC WC_INLINE word32 w64GetHigh32(w64wrapper n) {
1288
    return n.n[0];
1289
}
1290
1291
WC_MISC_STATIC WC_INLINE void w64SetLow32(w64wrapper *n, word32 low)
1292
{
1293
    n->n[1] = low;
1294
}
1295
1296
WC_MISC_STATIC WC_INLINE w64wrapper w64Add32(w64wrapper a, word32 b, byte *wrap)
1297
{
1298
    a.n[1] += b;
1299
    if (a.n[1] < b) {
1300
        a.n[0]++;
1301
        if (wrap != NULL && a.n[0] == 0)
1302
                *wrap = 1;
1303
    }
1304
1305
    return a;
1306
}
1307
1308
WC_MISC_STATIC WC_INLINE w64wrapper w64Add(w64wrapper a, w64wrapper b,
1309
    byte *wrap)
1310
{
1311
    a.n[1] += b.n[1];
1312
    if (a.n[1] < b.n[1]) {
1313
        a.n[0]++;
1314
        if (wrap != NULL && a.n[0] == 0)
1315
                *wrap = 1;
1316
    }
1317
1318
    a.n[0] += b.n[0];
1319
    if (wrap != NULL && a.n[0] < b.n[0]) {
1320
        *wrap = 1;
1321
    }
1322
1323
    return a;
1324
}
1325
1326
WC_MISC_STATIC WC_INLINE w64wrapper w64Sub32(w64wrapper a, word32 b, byte *wrap)
1327
{
1328
    byte _underflow = 0;
1329
    if (a.n[1] < b)
1330
        _underflow = 1;
1331
1332
    a.n[1] -= b;
1333
    if (_underflow) {
1334
        if (a.n[0] == 0 && wrap != NULL)
1335
            *wrap = 1;
1336
        a.n[0]--;
1337
    }
1338
1339
    return a;
1340
}
1341
1342
WC_MISC_STATIC WC_INLINE w64wrapper w64Sub(w64wrapper a, w64wrapper b)
1343
{
1344
    if (a.n[1] < b.n[1])
1345
        a.n[0]--;
1346
    a.n[1] -= b.n[1];
1347
    a.n[0] -= b.n[0];
1348
    return a;
1349
}
1350
1351
WC_MISC_STATIC WC_INLINE void w64Zero(w64wrapper *a)
1352
{
1353
    a->n[0] = a->n[1] = 0;
1354
}
1355
1356
WC_MISC_STATIC WC_INLINE byte w64GT(w64wrapper a, w64wrapper b)
1357
{
1358
    if (a.n[0] > b.n[0])
1359
        return 1;
1360
    if (a.n[0] == b.n[0])
1361
        return a.n[1] > b.n[1];
1362
    return 0;
1363
}
1364
1365
WC_MISC_STATIC WC_INLINE byte w64GTE(w64wrapper a, w64wrapper b)
1366
{
1367
    if (a.n[0] > b.n[0])
1368
        return 1;
1369
    if (a.n[0] == b.n[0])
1370
        return a.n[1] >= b.n[1];
1371
    return 0;
1372
}
1373
1374
WC_MISC_STATIC WC_INLINE byte w64IsZero(w64wrapper a)
1375
{
1376
    return a.n[0] == 0 && a.n[1] == 0;
1377
}
1378
1379
WC_MISC_STATIC WC_INLINE void c64toa(const w64wrapper *a, byte *out)
1380
{
1381
#ifdef BIG_ENDIAN_ORDER
1382
    word32 *_out = (word32*)(out);
1383
    _out[0] = a->n[0];
1384
    _out[1] = a->n[1];
1385
#else
1386
    c32toa(a->n[0], out);
1387
    c32toa(a->n[1], out + 4);
1388
#endif /* BIG_ENDIAN_ORDER */
1389
}
1390
1391
WC_MISC_STATIC WC_INLINE void ato64(const byte *in, w64wrapper *w64)
1392
{
1393
#ifdef BIG_ENDIAN_ORDER
1394
    const word32 *_in = (const word32*)(in);
1395
    w64->n[0] = *_in;
1396
    w64->n[1] = *(_in + 1);
1397
#else
1398
    ato32(in, &w64->n[0]);
1399
    ato32(in + 4, &w64->n[1]);
1400
#endif /* BIG_ENDIAN_ORDER */
1401
}
1402
1403
WC_MISC_STATIC WC_INLINE w64wrapper w64From32(word32 hi, word32 lo)
1404
{
1405
    w64wrapper w64;
1406
    w64.n[0] = hi;
1407
    w64.n[1] = lo;
1408
    return w64;
1409
}
1410
1411
WC_MISC_STATIC WC_INLINE byte w64LT(w64wrapper a, w64wrapper b)
1412
{
1413
    if (a.n[0] < b.n[0])
1414
        return 1;
1415
    if (a.n[0] == b.n[0])
1416
        return a.n[1] < b.n[1];
1417
1418
    return 0;
1419
}
1420
1421
WC_MISC_STATIC WC_INLINE w64wrapper w64ShiftRight(w64wrapper a, int shift)
1422
{
1423
     if (shift < 32) {
1424
         a.n[1] = (a.n[1] >> shift) | (a.n[0] << (32 - shift));
1425
         a.n[0] >>= shift;
1426
     }
1427
     else {
1428
         a.n[1] = a.n[0] >> (shift - 32);
1429
         a.n[0] = 0;
1430
     }
1431
     return a;
1432
}
1433
WC_MISC_STATIC WC_INLINE w64wrapper w64ShiftLeft(w64wrapper a, int shift)
1434
{
1435
     if (shift < 32) {
1436
         a.n[0] = (a.n[0] << shift) | (a.n[1] >> (32 - shift));
1437
         a.n[1] <<= shift;
1438
     }
1439
     else {
1440
         a.n[0] = a.n[1] << (shift - 32);
1441
         a.n[1] = 0;
1442
     }
1443
     return a;
1444
}
1445
1446
WC_MISC_STATIC WC_INLINE w64wrapper w64Mul(word32 a, word32 b)
1447
{
1448
    w64wrapper ret;
1449
    word16 ltlA, ltlB, ltlC, ltlD;
1450
    word32 bigA, bigB, bigC, bigD;
1451
1452
    ltlA = a & 0xFFFF;
1453
    ltlB = (a >> 16) & 0xFFFF;
1454
    ltlC = b & 0xFFFF;
1455
    ltlD = (b >> 16) & 0xFFFF;
1456
1457
    bigA = (word32)ltlA * (word32)ltlC;
1458
    bigC = (word32)ltlB * (word32)ltlC;
1459
    bigD = (word32)ltlA * (word32)ltlD;
1460
    bigB = (word32)ltlB * (word32)ltlD;
1461
1462
    ret = w64From32(0, bigB);
1463
    ret = w64ShiftLeft(ret, 16);
1464
    ret = w64Add32(ret, bigD, NULL);
1465
    ret = w64Add32(ret, bigC, NULL);
1466
    ret = w64ShiftLeft(ret, 16);
1467
    return w64Add32(ret, bigA, NULL);
1468
}
1469
1470
#endif /* WORD64_AVAILABLE && !WOLFSSL_W64_WRAPPER_TEST */
1471
#endif /* WOLFSSL_W64_WRAPPER */
1472
1473
#if defined(HAVE_SESSION_TICKET) || !defined(NO_CERTS) || \
1474
    !defined(NO_SESSION_CACHE)
1475
/* Make a word from the front of random hash */
1476
WC_MISC_STATIC WC_INLINE word32 MakeWordFromHash(const byte* hashID)
1477
0
{
1478
0
    return ((word32)hashID[0] << 24) | ((word32)hashID[1] << 16) |
1479
0
           ((word32)hashID[2] <<  8) |  (word32)hashID[3];
1480
0
}
Unexecuted instantiation: hmac.c:MakeWordFromHash
Unexecuted instantiation: hash.c:MakeWordFromHash
Unexecuted instantiation: random.c:MakeWordFromHash
Unexecuted instantiation: sha256.c:MakeWordFromHash
Unexecuted instantiation: rsa.c:MakeWordFromHash
Unexecuted instantiation: sp_int.c:MakeWordFromHash
Unexecuted instantiation: aes.c:MakeWordFromHash
Unexecuted instantiation: sha.c:MakeWordFromHash
Unexecuted instantiation: sha512.c:MakeWordFromHash
Unexecuted instantiation: sha3.c:MakeWordFromHash
Unexecuted instantiation: wolfmath.c:MakeWordFromHash
Unexecuted instantiation: memory.c:MakeWordFromHash
Unexecuted instantiation: dh.c:MakeWordFromHash
Unexecuted instantiation: asn.c:MakeWordFromHash
Unexecuted instantiation: coding.c:MakeWordFromHash
Unexecuted instantiation: ecc.c:MakeWordFromHash
Unexecuted instantiation: wc_mlkem.c:MakeWordFromHash
Unexecuted instantiation: wc_mlkem_poly.c:MakeWordFromHash
Unexecuted instantiation: ssl.c:MakeWordFromHash
Unexecuted instantiation: tls.c:MakeWordFromHash
Unexecuted instantiation: tls13.c:MakeWordFromHash
Unexecuted instantiation: kdf.c:MakeWordFromHash
Unexecuted instantiation: wc_encrypt.c:MakeWordFromHash
Unexecuted instantiation: pwdbased.c:MakeWordFromHash
Unexecuted instantiation: chacha20_poly1305.c:MakeWordFromHash
Unexecuted instantiation: internal.c:MakeWordFromHash
Unexecuted instantiation: keys.c:MakeWordFromHash
Unexecuted instantiation: poly1305.c:MakeWordFromHash
Unexecuted instantiation: chacha.c:MakeWordFromHash
1481
#endif /* HAVE_SESSION_TICKET || !NO_CERTS || !NO_SESSION_CACHE */
1482
1483
1484
#if !defined(WOLFCRYPT_ONLY) && !defined(NO_HASH_WRAPPER) && \
1485
    (!defined(NO_SESSION_CACHE) || defined(HAVE_SESSION_TICKET))
1486
1487
#include <wolfssl/wolfcrypt/hash.h>
1488
1489
/* some session IDs aren't random after all, let's make them random */
1490
WC_MISC_STATIC WC_INLINE word32 HashObject(const byte* o, word32 len,
1491
                                           int* error)
1492
0
{
1493
0
    byte digest[WC_MAX_DIGEST_SIZE];
1494
1495
#ifndef NO_MD5
1496
    *error =  wc_Md5Hash(o, len, digest);
1497
#elif !defined(NO_SHA)
1498
    *error =  wc_ShaHash(o, len, digest);
1499
#elif !defined(NO_SHA256)
1500
    *error =  wc_Sha256Hash(o, len, digest);
1501
#else
1502
    #error "We need a digest to hash the session IDs"
1503
#endif
1504
1505
0
    return *error == 0 ? MakeWordFromHash(digest) : 0; /* 0 on failure */
1506
0
}
Unexecuted instantiation: hmac.c:HashObject
Unexecuted instantiation: hash.c:HashObject
Unexecuted instantiation: random.c:HashObject
Unexecuted instantiation: sha256.c:HashObject
Unexecuted instantiation: rsa.c:HashObject
Unexecuted instantiation: sp_int.c:HashObject
Unexecuted instantiation: aes.c:HashObject
Unexecuted instantiation: sha.c:HashObject
Unexecuted instantiation: sha512.c:HashObject
Unexecuted instantiation: sha3.c:HashObject
Unexecuted instantiation: wolfmath.c:HashObject
Unexecuted instantiation: memory.c:HashObject
Unexecuted instantiation: dh.c:HashObject
Unexecuted instantiation: asn.c:HashObject
Unexecuted instantiation: coding.c:HashObject
Unexecuted instantiation: ecc.c:HashObject
Unexecuted instantiation: wc_mlkem.c:HashObject
Unexecuted instantiation: wc_mlkem_poly.c:HashObject
Unexecuted instantiation: ssl.c:HashObject
Unexecuted instantiation: tls.c:HashObject
Unexecuted instantiation: tls13.c:HashObject
Unexecuted instantiation: kdf.c:HashObject
Unexecuted instantiation: wc_encrypt.c:HashObject
Unexecuted instantiation: pwdbased.c:HashObject
Unexecuted instantiation: chacha20_poly1305.c:HashObject
Unexecuted instantiation: internal.c:HashObject
Unexecuted instantiation: keys.c:HashObject
Unexecuted instantiation: poly1305.c:HashObject
Unexecuted instantiation: chacha.c:HashObject
1507
#endif /* WOLFCRYPT_ONLY && !NO_HASH_WRAPPER &&
1508
        * (!NO_SESSION_CACHE || HAVE_SESSION_TICKET) */
1509
1510
WC_MISC_STATIC WC_INLINE char* CopyString(const char* src, int srcLen,
1511
0
        void* heap, int type) {
1512
0
    char* dst = NULL;
1513
1514
0
    if (src == NULL)
1515
0
        return NULL;
1516
1517
0
    if (srcLen <= 0)
1518
0
        srcLen = (int)XSTRLEN(src);
1519
1520
0
    dst = (char*)XMALLOC((size_t)srcLen + 1, heap, type);
1521
0
    if (dst != NULL) {
1522
0
        XMEMCPY(dst, src, (size_t)srcLen);
1523
0
        dst[srcLen] = '\0';
1524
0
    }
1525
1526
0
    return dst;
1527
0
}
Unexecuted instantiation: hmac.c:CopyString
Unexecuted instantiation: hash.c:CopyString
Unexecuted instantiation: random.c:CopyString
Unexecuted instantiation: sha256.c:CopyString
Unexecuted instantiation: rsa.c:CopyString
Unexecuted instantiation: sp_int.c:CopyString
Unexecuted instantiation: aes.c:CopyString
Unexecuted instantiation: sha.c:CopyString
Unexecuted instantiation: sha512.c:CopyString
Unexecuted instantiation: sha3.c:CopyString
Unexecuted instantiation: wolfmath.c:CopyString
Unexecuted instantiation: memory.c:CopyString
Unexecuted instantiation: dh.c:CopyString
Unexecuted instantiation: asn.c:CopyString
Unexecuted instantiation: coding.c:CopyString
Unexecuted instantiation: ecc.c:CopyString
Unexecuted instantiation: wc_mlkem.c:CopyString
Unexecuted instantiation: wc_mlkem_poly.c:CopyString
Unexecuted instantiation: ssl.c:CopyString
Unexecuted instantiation: tls.c:CopyString
Unexecuted instantiation: tls13.c:CopyString
Unexecuted instantiation: kdf.c:CopyString
Unexecuted instantiation: wc_encrypt.c:CopyString
Unexecuted instantiation: pwdbased.c:CopyString
Unexecuted instantiation: chacha20_poly1305.c:CopyString
Unexecuted instantiation: internal.c:CopyString
Unexecuted instantiation: keys.c:CopyString
Unexecuted instantiation: poly1305.c:CopyString
Unexecuted instantiation: chacha.c:CopyString
1528
1529
#endif /* !WOLFSSL_MISC_INCLUDED && !NO_INLINE */
1530
1531
#endif /* WOLF_CRYPT_MISC_C */