2015-01-22 03:40:55 +00:00
|
|
|
/*
|
2017-08-18 03:52:46 +00:00
|
|
|
* Copyright 2000-2017 The OpenSSL Project Authors. All Rights Reserved.
|
2000-12-08 19:09:35 +00:00
|
|
|
*
|
2016-05-17 18:51:34 +00:00
|
|
|
* Licensed under the OpenSSL license (the "License"). You may not use
|
|
|
|
* this file except in compliance with the License. You can obtain a copy
|
|
|
|
* in the file LICENSE in the source distribution or at
|
|
|
|
* https://www.openssl.org/source/license.html
|
2000-12-08 19:09:35 +00:00
|
|
|
*/
|
|
|
|
|
|
|
|
#include <stddef.h>
|
2001-02-20 12:43:11 +00:00
|
|
|
#include <string.h>
|
2017-08-03 20:21:01 +00:00
|
|
|
#include "internal/cryptlib.h"
|
2017-08-21 21:17:35 +00:00
|
|
|
#include "internal/refcount.h"
|
2000-12-08 19:09:35 +00:00
|
|
|
#include <openssl/asn1.h>
|
|
|
|
#include <openssl/asn1t.h>
|
|
|
|
#include <openssl/objects.h>
|
|
|
|
#include <openssl/err.h>
|
2015-03-25 15:42:56 +00:00
|
|
|
#include "asn1_locl.h"
|
2000-12-08 19:09:35 +00:00
|
|
|
|
|
|
|
/* Utility functions for manipulating fields and offsets */
|
|
|
|
|
|
|
|
/* Add 'offset' to 'addr' */
|
|
|
|
#define offset2ptr(addr, offset) (void *)(((char *) addr) + offset)
|
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
/*
|
|
|
|
* Given an ASN1_ITEM CHOICE type return the selector value
|
2000-12-08 19:09:35 +00:00
|
|
|
*/
|
|
|
|
|
|
|
|
int asn1_get_choice_selector(ASN1_VALUE **pval, const ASN1_ITEM *it)
|
2015-01-22 03:40:55 +00:00
|
|
|
{
|
|
|
|
int *sel = offset2ptr(*pval, it->utype);
|
|
|
|
return *sel;
|
|
|
|
}
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
/*
|
|
|
|
* Given an ASN1_ITEM CHOICE type set the selector value, return old value.
|
2000-12-08 19:09:35 +00:00
|
|
|
*/
|
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
int asn1_set_choice_selector(ASN1_VALUE **pval, int value,
|
|
|
|
const ASN1_ITEM *it)
|
|
|
|
{
|
|
|
|
int *sel, ret;
|
|
|
|
sel = offset2ptr(*pval, it->utype);
|
|
|
|
ret = *sel;
|
|
|
|
*sel = value;
|
|
|
|
return ret;
|
|
|
|
}
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
/*
|
2016-05-29 12:32:23 +00:00
|
|
|
* Do atomic reference counting. The value 'op' decides what to do.
|
|
|
|
* If it is +1 then the count is incremented.
|
|
|
|
* If |op| is 0, lock is initialised and count is set to 1.
|
|
|
|
* If |op| is -1, count is decremented and the return value is the current
|
|
|
|
* reference count or 0 if no reference count is active.
|
|
|
|
* It returns -1 on initialisation error.
|
|
|
|
* Used by ASN1_SEQUENCE construct of X509, X509_REQ, X509_CRL objects
|
2000-12-08 19:09:35 +00:00
|
|
|
*/
|
|
|
|
int asn1_do_lock(ASN1_VALUE **pval, int op, const ASN1_ITEM *it)
|
2015-01-22 03:40:55 +00:00
|
|
|
{
|
|
|
|
const ASN1_AUX *aux;
|
|
|
|
int *lck, ret;
|
2016-03-01 18:06:15 +00:00
|
|
|
CRYPTO_RWLOCK **lock;
|
2015-01-22 03:40:55 +00:00
|
|
|
if ((it->itype != ASN1_ITYPE_SEQUENCE)
|
|
|
|
&& (it->itype != ASN1_ITYPE_NDEF_SEQUENCE))
|
|
|
|
return 0;
|
|
|
|
aux = it->funcs;
|
|
|
|
if (!aux || !(aux->flags & ASN1_AFLG_REFCOUNT))
|
|
|
|
return 0;
|
|
|
|
lck = offset2ptr(*pval, aux->ref_offset);
|
2016-03-01 18:06:15 +00:00
|
|
|
lock = offset2ptr(*pval, aux->ref_lock);
|
2015-01-22 03:40:55 +00:00
|
|
|
if (op == 0) {
|
|
|
|
*lck = 1;
|
2016-03-01 18:06:15 +00:00
|
|
|
*lock = CRYPTO_THREAD_lock_new();
|
2016-04-30 14:23:33 +00:00
|
|
|
if (*lock == NULL) {
|
2016-05-29 12:32:23 +00:00
|
|
|
ASN1err(ASN1_F_ASN1_DO_LOCK, ERR_R_MALLOC_FAILURE);
|
|
|
|
return -1;
|
2016-04-30 14:23:33 +00:00
|
|
|
}
|
2015-01-22 03:40:55 +00:00
|
|
|
return 1;
|
|
|
|
}
|
2016-05-29 12:32:23 +00:00
|
|
|
if (CRYPTO_atomic_add(lck, op, &ret, *lock) < 0)
|
|
|
|
return -1; /* failed */
|
2000-12-08 19:09:35 +00:00
|
|
|
#ifdef REF_PRINT
|
2016-01-30 17:04:25 +00:00
|
|
|
fprintf(stderr, "%p:%4d:%s\n", it, *lck, it->sname);
|
2000-12-08 19:09:35 +00:00
|
|
|
#endif
|
2016-01-30 17:04:25 +00:00
|
|
|
REF_ASSERT_ISNT(ret < 0);
|
2016-05-29 12:32:23 +00:00
|
|
|
if (ret == 0) {
|
2016-03-01 18:06:15 +00:00
|
|
|
CRYPTO_THREAD_lock_free(*lock);
|
2016-05-29 12:32:23 +00:00
|
|
|
*lock = NULL;
|
|
|
|
}
|
2015-01-22 03:40:55 +00:00
|
|
|
return ret;
|
|
|
|
}
|
2000-12-08 19:09:35 +00:00
|
|
|
|
|
|
|
static ASN1_ENCODING *asn1_get_enc_ptr(ASN1_VALUE **pval, const ASN1_ITEM *it)
|
2015-01-22 03:40:55 +00:00
|
|
|
{
|
|
|
|
const ASN1_AUX *aux;
|
|
|
|
if (!pval || !*pval)
|
|
|
|
return NULL;
|
|
|
|
aux = it->funcs;
|
|
|
|
if (!aux || !(aux->flags & ASN1_AFLG_ENCODING))
|
|
|
|
return NULL;
|
|
|
|
return offset2ptr(*pval, aux->enc_offset);
|
|
|
|
}
|
2000-12-08 19:09:35 +00:00
|
|
|
|
|
|
|
void asn1_enc_init(ASN1_VALUE **pval, const ASN1_ITEM *it)
|
2015-01-22 03:40:55 +00:00
|
|
|
{
|
|
|
|
ASN1_ENCODING *enc;
|
|
|
|
enc = asn1_get_enc_ptr(pval, it);
|
|
|
|
if (enc) {
|
|
|
|
enc->enc = NULL;
|
|
|
|
enc->len = 0;
|
|
|
|
enc->modified = 1;
|
|
|
|
}
|
|
|
|
}
|
2000-12-08 19:09:35 +00:00
|
|
|
|
|
|
|
void asn1_enc_free(ASN1_VALUE **pval, const ASN1_ITEM *it)
|
2015-01-22 03:40:55 +00:00
|
|
|
{
|
|
|
|
ASN1_ENCODING *enc;
|
|
|
|
enc = asn1_get_enc_ptr(pval, it);
|
|
|
|
if (enc) {
|
2015-05-01 14:02:07 +00:00
|
|
|
OPENSSL_free(enc->enc);
|
2015-01-22 03:40:55 +00:00
|
|
|
enc->enc = NULL;
|
|
|
|
enc->len = 0;
|
|
|
|
enc->modified = 1;
|
|
|
|
}
|
|
|
|
}
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2004-04-25 12:46:39 +00:00
|
|
|
int asn1_enc_save(ASN1_VALUE **pval, const unsigned char *in, int inlen,
|
2015-01-22 03:40:55 +00:00
|
|
|
const ASN1_ITEM *it)
|
|
|
|
{
|
|
|
|
ASN1_ENCODING *enc;
|
|
|
|
enc = asn1_get_enc_ptr(pval, it);
|
|
|
|
if (!enc)
|
|
|
|
return 1;
|
|
|
|
|
2015-05-01 14:02:07 +00:00
|
|
|
OPENSSL_free(enc->enc);
|
2015-01-22 03:40:55 +00:00
|
|
|
enc->enc = OPENSSL_malloc(inlen);
|
2015-10-30 11:12:26 +00:00
|
|
|
if (enc->enc == NULL)
|
2015-01-22 03:40:55 +00:00
|
|
|
return 0;
|
|
|
|
memcpy(enc->enc, in, inlen);
|
|
|
|
enc->len = inlen;
|
|
|
|
enc->modified = 0;
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
return 1;
|
|
|
|
}
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2004-04-25 12:46:39 +00:00
|
|
|
int asn1_enc_restore(int *len, unsigned char **out, ASN1_VALUE **pval,
|
2015-01-22 03:40:55 +00:00
|
|
|
const ASN1_ITEM *it)
|
|
|
|
{
|
|
|
|
ASN1_ENCODING *enc;
|
|
|
|
enc = asn1_get_enc_ptr(pval, it);
|
|
|
|
if (!enc || enc->modified)
|
|
|
|
return 0;
|
|
|
|
if (out) {
|
|
|
|
memcpy(*out, enc->enc, enc->len);
|
|
|
|
*out += enc->len;
|
|
|
|
}
|
|
|
|
if (len)
|
|
|
|
*len = enc->len;
|
|
|
|
return 1;
|
|
|
|
}
|
2000-12-08 19:09:35 +00:00
|
|
|
|
|
|
|
/* Given an ASN1_TEMPLATE get a pointer to a field */
|
2015-01-22 03:40:55 +00:00
|
|
|
ASN1_VALUE **asn1_get_field_ptr(ASN1_VALUE **pval, const ASN1_TEMPLATE *tt)
|
|
|
|
{
|
|
|
|
ASN1_VALUE **pvaltmp;
|
|
|
|
pvaltmp = offset2ptr(*pval, tt->offset);
|
|
|
|
/*
|
|
|
|
* NOTE for BOOLEAN types the field is just a plain int so we can't
|
|
|
|
* return int **, so settle for (int *).
|
|
|
|
*/
|
|
|
|
return pvaltmp;
|
|
|
|
}
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
/*
|
|
|
|
* Handle ANY DEFINED BY template, find the selector, look up the relevant
|
|
|
|
* ASN1_TEMPLATE in the table and return it.
|
2000-12-08 19:09:35 +00:00
|
|
|
*/
|
|
|
|
|
2004-04-25 12:46:39 +00:00
|
|
|
const ASN1_TEMPLATE *asn1_do_adb(ASN1_VALUE **pval, const ASN1_TEMPLATE *tt,
|
2015-01-22 03:40:55 +00:00
|
|
|
int nullerr)
|
|
|
|
{
|
|
|
|
const ASN1_ADB *adb;
|
|
|
|
const ASN1_ADB_TABLE *atbl;
|
|
|
|
long selector;
|
|
|
|
ASN1_VALUE **sfld;
|
|
|
|
int i;
|
|
|
|
if (!(tt->flags & ASN1_TFLG_ADB_MASK))
|
|
|
|
return tt;
|
|
|
|
|
|
|
|
/* Else ANY DEFINED BY ... get the table */
|
|
|
|
adb = ASN1_ADB_ptr(tt->item);
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
/* Get the selector field */
|
|
|
|
sfld = offset2ptr(*pval, adb->offset);
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
/* Check if NULL */
|
2016-06-14 16:44:22 +00:00
|
|
|
if (*sfld == NULL) {
|
2015-01-22 03:40:55 +00:00
|
|
|
if (!adb->null_tt)
|
|
|
|
goto err;
|
|
|
|
return adb->null_tt;
|
|
|
|
}
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
/*
|
|
|
|
* Convert type to a long: NB: don't check for NID_undef here because it
|
|
|
|
* might be a legitimate value in the table
|
|
|
|
*/
|
|
|
|
if (tt->flags & ASN1_TFLG_ADB_OID)
|
|
|
|
selector = OBJ_obj2nid((ASN1_OBJECT *)*sfld);
|
|
|
|
else
|
|
|
|
selector = ASN1_INTEGER_get((ASN1_INTEGER *)*sfld);
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2016-03-04 14:55:24 +00:00
|
|
|
/* Let application callback translate value */
|
|
|
|
if (adb->adb_cb != NULL && adb->adb_cb(&selector) == 0) {
|
|
|
|
ASN1err(ASN1_F_ASN1_DO_ADB, ASN1_R_UNSUPPORTED_ANY_DEFINED_BY_TYPE);
|
|
|
|
return NULL;
|
|
|
|
}
|
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
/*
|
|
|
|
* Try to find matching entry in table Maybe should check application
|
|
|
|
* types first to allow application override? Might also be useful to
|
|
|
|
* have a flag which indicates table is sorted and we can do a binary
|
|
|
|
* search. For now stick to a linear search.
|
|
|
|
*/
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
for (atbl = adb->tbl, i = 0; i < adb->tblcount; i++, atbl++)
|
|
|
|
if (atbl->value == selector)
|
|
|
|
return &atbl->tt;
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
/* FIXME: need to search application table too */
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
/* No match, return default type */
|
|
|
|
if (!adb->default_tt)
|
|
|
|
goto err;
|
|
|
|
return adb->default_tt;
|
2000-12-08 19:09:35 +00:00
|
|
|
|
2015-01-22 03:40:55 +00:00
|
|
|
err:
|
|
|
|
/* FIXME: should log the value or OID of unsupported type */
|
|
|
|
if (nullerr)
|
|
|
|
ASN1err(ASN1_F_ASN1_DO_ADB, ASN1_R_UNSUPPORTED_ANY_DEFINED_BY_TYPE);
|
|
|
|
return NULL;
|
|
|
|
}
|