xref: /aosp_15_r20/external/boringssl/src/crypto/bytestring/cbb.c (revision 8fb009dc861624b67b6cdb62ea21f0f22d0c584b)
1*8fb009dcSAndroid Build Coastguard Worker /* Copyright (c) 2014, Google Inc.
2*8fb009dcSAndroid Build Coastguard Worker  *
3*8fb009dcSAndroid Build Coastguard Worker  * Permission to use, copy, modify, and/or distribute this software for any
4*8fb009dcSAndroid Build Coastguard Worker  * purpose with or without fee is hereby granted, provided that the above
5*8fb009dcSAndroid Build Coastguard Worker  * copyright notice and this permission notice appear in all copies.
6*8fb009dcSAndroid Build Coastguard Worker  *
7*8fb009dcSAndroid Build Coastguard Worker  * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
8*8fb009dcSAndroid Build Coastguard Worker  * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
9*8fb009dcSAndroid Build Coastguard Worker  * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY
10*8fb009dcSAndroid Build Coastguard Worker  * SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
11*8fb009dcSAndroid Build Coastguard Worker  * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION
12*8fb009dcSAndroid Build Coastguard Worker  * OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN
13*8fb009dcSAndroid Build Coastguard Worker  * CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. */
14*8fb009dcSAndroid Build Coastguard Worker 
15*8fb009dcSAndroid Build Coastguard Worker #include <openssl/bytestring.h>
16*8fb009dcSAndroid Build Coastguard Worker 
17*8fb009dcSAndroid Build Coastguard Worker #include <assert.h>
18*8fb009dcSAndroid Build Coastguard Worker #include <limits.h>
19*8fb009dcSAndroid Build Coastguard Worker #include <string.h>
20*8fb009dcSAndroid Build Coastguard Worker 
21*8fb009dcSAndroid Build Coastguard Worker #include <openssl/mem.h>
22*8fb009dcSAndroid Build Coastguard Worker #include <openssl/err.h>
23*8fb009dcSAndroid Build Coastguard Worker 
24*8fb009dcSAndroid Build Coastguard Worker #include "../internal.h"
25*8fb009dcSAndroid Build Coastguard Worker 
26*8fb009dcSAndroid Build Coastguard Worker 
CBB_zero(CBB * cbb)27*8fb009dcSAndroid Build Coastguard Worker void CBB_zero(CBB *cbb) {
28*8fb009dcSAndroid Build Coastguard Worker   OPENSSL_memset(cbb, 0, sizeof(CBB));
29*8fb009dcSAndroid Build Coastguard Worker }
30*8fb009dcSAndroid Build Coastguard Worker 
cbb_init(CBB * cbb,uint8_t * buf,size_t cap,int can_resize)31*8fb009dcSAndroid Build Coastguard Worker static void cbb_init(CBB *cbb, uint8_t *buf, size_t cap, int can_resize) {
32*8fb009dcSAndroid Build Coastguard Worker   cbb->is_child = 0;
33*8fb009dcSAndroid Build Coastguard Worker   cbb->child = NULL;
34*8fb009dcSAndroid Build Coastguard Worker   cbb->u.base.buf = buf;
35*8fb009dcSAndroid Build Coastguard Worker   cbb->u.base.len = 0;
36*8fb009dcSAndroid Build Coastguard Worker   cbb->u.base.cap = cap;
37*8fb009dcSAndroid Build Coastguard Worker   cbb->u.base.can_resize = can_resize;
38*8fb009dcSAndroid Build Coastguard Worker   cbb->u.base.error = 0;
39*8fb009dcSAndroid Build Coastguard Worker }
40*8fb009dcSAndroid Build Coastguard Worker 
CBB_init(CBB * cbb,size_t initial_capacity)41*8fb009dcSAndroid Build Coastguard Worker int CBB_init(CBB *cbb, size_t initial_capacity) {
42*8fb009dcSAndroid Build Coastguard Worker   CBB_zero(cbb);
43*8fb009dcSAndroid Build Coastguard Worker 
44*8fb009dcSAndroid Build Coastguard Worker   uint8_t *buf = OPENSSL_malloc(initial_capacity);
45*8fb009dcSAndroid Build Coastguard Worker   if (initial_capacity > 0 && buf == NULL) {
46*8fb009dcSAndroid Build Coastguard Worker     return 0;
47*8fb009dcSAndroid Build Coastguard Worker   }
48*8fb009dcSAndroid Build Coastguard Worker 
49*8fb009dcSAndroid Build Coastguard Worker   cbb_init(cbb, buf, initial_capacity, /*can_resize=*/1);
50*8fb009dcSAndroid Build Coastguard Worker   return 1;
51*8fb009dcSAndroid Build Coastguard Worker }
52*8fb009dcSAndroid Build Coastguard Worker 
CBB_init_fixed(CBB * cbb,uint8_t * buf,size_t len)53*8fb009dcSAndroid Build Coastguard Worker int CBB_init_fixed(CBB *cbb, uint8_t *buf, size_t len) {
54*8fb009dcSAndroid Build Coastguard Worker   CBB_zero(cbb);
55*8fb009dcSAndroid Build Coastguard Worker   cbb_init(cbb, buf, len, /*can_resize=*/0);
56*8fb009dcSAndroid Build Coastguard Worker   return 1;
57*8fb009dcSAndroid Build Coastguard Worker }
58*8fb009dcSAndroid Build Coastguard Worker 
CBB_cleanup(CBB * cbb)59*8fb009dcSAndroid Build Coastguard Worker void CBB_cleanup(CBB *cbb) {
60*8fb009dcSAndroid Build Coastguard Worker   // Child |CBB|s are non-owning. They are implicitly discarded and should not
61*8fb009dcSAndroid Build Coastguard Worker   // be used with |CBB_cleanup| or |ScopedCBB|.
62*8fb009dcSAndroid Build Coastguard Worker   assert(!cbb->is_child);
63*8fb009dcSAndroid Build Coastguard Worker   if (cbb->is_child) {
64*8fb009dcSAndroid Build Coastguard Worker     return;
65*8fb009dcSAndroid Build Coastguard Worker   }
66*8fb009dcSAndroid Build Coastguard Worker 
67*8fb009dcSAndroid Build Coastguard Worker   if (cbb->u.base.can_resize) {
68*8fb009dcSAndroid Build Coastguard Worker     OPENSSL_free(cbb->u.base.buf);
69*8fb009dcSAndroid Build Coastguard Worker   }
70*8fb009dcSAndroid Build Coastguard Worker }
71*8fb009dcSAndroid Build Coastguard Worker 
cbb_buffer_reserve(struct cbb_buffer_st * base,uint8_t ** out,size_t len)72*8fb009dcSAndroid Build Coastguard Worker static int cbb_buffer_reserve(struct cbb_buffer_st *base, uint8_t **out,
73*8fb009dcSAndroid Build Coastguard Worker                               size_t len) {
74*8fb009dcSAndroid Build Coastguard Worker   if (base == NULL) {
75*8fb009dcSAndroid Build Coastguard Worker     return 0;
76*8fb009dcSAndroid Build Coastguard Worker   }
77*8fb009dcSAndroid Build Coastguard Worker 
78*8fb009dcSAndroid Build Coastguard Worker   size_t newlen = base->len + len;
79*8fb009dcSAndroid Build Coastguard Worker   if (newlen < base->len) {
80*8fb009dcSAndroid Build Coastguard Worker     // Overflow
81*8fb009dcSAndroid Build Coastguard Worker     OPENSSL_PUT_ERROR(CRYPTO, ERR_R_OVERFLOW);
82*8fb009dcSAndroid Build Coastguard Worker     goto err;
83*8fb009dcSAndroid Build Coastguard Worker   }
84*8fb009dcSAndroid Build Coastguard Worker 
85*8fb009dcSAndroid Build Coastguard Worker   if (newlen > base->cap) {
86*8fb009dcSAndroid Build Coastguard Worker     if (!base->can_resize) {
87*8fb009dcSAndroid Build Coastguard Worker       OPENSSL_PUT_ERROR(CRYPTO, ERR_R_OVERFLOW);
88*8fb009dcSAndroid Build Coastguard Worker       goto err;
89*8fb009dcSAndroid Build Coastguard Worker     }
90*8fb009dcSAndroid Build Coastguard Worker 
91*8fb009dcSAndroid Build Coastguard Worker     size_t newcap = base->cap * 2;
92*8fb009dcSAndroid Build Coastguard Worker     if (newcap < base->cap || newcap < newlen) {
93*8fb009dcSAndroid Build Coastguard Worker       newcap = newlen;
94*8fb009dcSAndroid Build Coastguard Worker     }
95*8fb009dcSAndroid Build Coastguard Worker     uint8_t *newbuf = OPENSSL_realloc(base->buf, newcap);
96*8fb009dcSAndroid Build Coastguard Worker     if (newbuf == NULL) {
97*8fb009dcSAndroid Build Coastguard Worker       goto err;
98*8fb009dcSAndroid Build Coastguard Worker     }
99*8fb009dcSAndroid Build Coastguard Worker 
100*8fb009dcSAndroid Build Coastguard Worker     base->buf = newbuf;
101*8fb009dcSAndroid Build Coastguard Worker     base->cap = newcap;
102*8fb009dcSAndroid Build Coastguard Worker   }
103*8fb009dcSAndroid Build Coastguard Worker 
104*8fb009dcSAndroid Build Coastguard Worker   if (out) {
105*8fb009dcSAndroid Build Coastguard Worker     *out = base->buf + base->len;
106*8fb009dcSAndroid Build Coastguard Worker   }
107*8fb009dcSAndroid Build Coastguard Worker 
108*8fb009dcSAndroid Build Coastguard Worker   return 1;
109*8fb009dcSAndroid Build Coastguard Worker 
110*8fb009dcSAndroid Build Coastguard Worker err:
111*8fb009dcSAndroid Build Coastguard Worker   base->error = 1;
112*8fb009dcSAndroid Build Coastguard Worker   return 0;
113*8fb009dcSAndroid Build Coastguard Worker }
114*8fb009dcSAndroid Build Coastguard Worker 
cbb_buffer_add(struct cbb_buffer_st * base,uint8_t ** out,size_t len)115*8fb009dcSAndroid Build Coastguard Worker static int cbb_buffer_add(struct cbb_buffer_st *base, uint8_t **out,
116*8fb009dcSAndroid Build Coastguard Worker                           size_t len) {
117*8fb009dcSAndroid Build Coastguard Worker   if (!cbb_buffer_reserve(base, out, len)) {
118*8fb009dcSAndroid Build Coastguard Worker     return 0;
119*8fb009dcSAndroid Build Coastguard Worker   }
120*8fb009dcSAndroid Build Coastguard Worker   // This will not overflow or |cbb_buffer_reserve| would have failed.
121*8fb009dcSAndroid Build Coastguard Worker   base->len += len;
122*8fb009dcSAndroid Build Coastguard Worker   return 1;
123*8fb009dcSAndroid Build Coastguard Worker }
124*8fb009dcSAndroid Build Coastguard Worker 
CBB_finish(CBB * cbb,uint8_t ** out_data,size_t * out_len)125*8fb009dcSAndroid Build Coastguard Worker int CBB_finish(CBB *cbb, uint8_t **out_data, size_t *out_len) {
126*8fb009dcSAndroid Build Coastguard Worker   if (cbb->is_child) {
127*8fb009dcSAndroid Build Coastguard Worker     OPENSSL_PUT_ERROR(CRYPTO, ERR_R_SHOULD_NOT_HAVE_BEEN_CALLED);
128*8fb009dcSAndroid Build Coastguard Worker     return 0;
129*8fb009dcSAndroid Build Coastguard Worker   }
130*8fb009dcSAndroid Build Coastguard Worker 
131*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_flush(cbb)) {
132*8fb009dcSAndroid Build Coastguard Worker     return 0;
133*8fb009dcSAndroid Build Coastguard Worker   }
134*8fb009dcSAndroid Build Coastguard Worker 
135*8fb009dcSAndroid Build Coastguard Worker   if (cbb->u.base.can_resize && (out_data == NULL || out_len == NULL)) {
136*8fb009dcSAndroid Build Coastguard Worker     // |out_data| and |out_len| can only be NULL if the CBB is fixed.
137*8fb009dcSAndroid Build Coastguard Worker     return 0;
138*8fb009dcSAndroid Build Coastguard Worker   }
139*8fb009dcSAndroid Build Coastguard Worker 
140*8fb009dcSAndroid Build Coastguard Worker   if (out_data != NULL) {
141*8fb009dcSAndroid Build Coastguard Worker     *out_data = cbb->u.base.buf;
142*8fb009dcSAndroid Build Coastguard Worker   }
143*8fb009dcSAndroid Build Coastguard Worker   if (out_len != NULL) {
144*8fb009dcSAndroid Build Coastguard Worker     *out_len = cbb->u.base.len;
145*8fb009dcSAndroid Build Coastguard Worker   }
146*8fb009dcSAndroid Build Coastguard Worker   cbb->u.base.buf = NULL;
147*8fb009dcSAndroid Build Coastguard Worker   CBB_cleanup(cbb);
148*8fb009dcSAndroid Build Coastguard Worker   return 1;
149*8fb009dcSAndroid Build Coastguard Worker }
150*8fb009dcSAndroid Build Coastguard Worker 
cbb_get_base(CBB * cbb)151*8fb009dcSAndroid Build Coastguard Worker static struct cbb_buffer_st *cbb_get_base(CBB *cbb) {
152*8fb009dcSAndroid Build Coastguard Worker   if (cbb->is_child) {
153*8fb009dcSAndroid Build Coastguard Worker     return cbb->u.child.base;
154*8fb009dcSAndroid Build Coastguard Worker   }
155*8fb009dcSAndroid Build Coastguard Worker   return &cbb->u.base;
156*8fb009dcSAndroid Build Coastguard Worker }
157*8fb009dcSAndroid Build Coastguard Worker 
cbb_on_error(CBB * cbb)158*8fb009dcSAndroid Build Coastguard Worker static void cbb_on_error(CBB *cbb) {
159*8fb009dcSAndroid Build Coastguard Worker   // Due to C's lack of destructors and |CBB|'s auto-flushing API, a failing
160*8fb009dcSAndroid Build Coastguard Worker   // |CBB|-taking function may leave a dangling pointer to a child |CBB|. As a
161*8fb009dcSAndroid Build Coastguard Worker   // result, the convention is callers may not write to |CBB|s that have failed.
162*8fb009dcSAndroid Build Coastguard Worker   // But, as a safety measure, we lock the |CBB| into an error state. Once the
163*8fb009dcSAndroid Build Coastguard Worker   // error bit is set, |cbb->child| will not be read.
164*8fb009dcSAndroid Build Coastguard Worker   //
165*8fb009dcSAndroid Build Coastguard Worker   // TODO(davidben): This still isn't quite ideal. A |CBB| function *outside*
166*8fb009dcSAndroid Build Coastguard Worker   // this file may originate an error while the |CBB| points to a local child.
167*8fb009dcSAndroid Build Coastguard Worker   // In that case we don't set the error bit and are reliant on the error
168*8fb009dcSAndroid Build Coastguard Worker   // convention. Perhaps we allow |CBB_cleanup| on child |CBB|s and make every
169*8fb009dcSAndroid Build Coastguard Worker   // child's |CBB_cleanup| set the error bit if unflushed. That will be
170*8fb009dcSAndroid Build Coastguard Worker   // convenient for C++ callers, but very tedious for C callers. So C callers
171*8fb009dcSAndroid Build Coastguard Worker   // perhaps should get a |CBB_on_error| function that can be, less tediously,
172*8fb009dcSAndroid Build Coastguard Worker   // stuck in a |goto err| block.
173*8fb009dcSAndroid Build Coastguard Worker   cbb_get_base(cbb)->error = 1;
174*8fb009dcSAndroid Build Coastguard Worker 
175*8fb009dcSAndroid Build Coastguard Worker   // Clearing the pointer is not strictly necessary, but GCC's dangling pointer
176*8fb009dcSAndroid Build Coastguard Worker   // warning does not know |cbb->child| will not be read once |error| is set
177*8fb009dcSAndroid Build Coastguard Worker   // above.
178*8fb009dcSAndroid Build Coastguard Worker   cbb->child = NULL;
179*8fb009dcSAndroid Build Coastguard Worker }
180*8fb009dcSAndroid Build Coastguard Worker 
181*8fb009dcSAndroid Build Coastguard Worker // CBB_flush recurses and then writes out any pending length prefix. The
182*8fb009dcSAndroid Build Coastguard Worker // current length of the underlying base is taken to be the length of the
183*8fb009dcSAndroid Build Coastguard Worker // length-prefixed data.
CBB_flush(CBB * cbb)184*8fb009dcSAndroid Build Coastguard Worker int CBB_flush(CBB *cbb) {
185*8fb009dcSAndroid Build Coastguard Worker   // If |base| has hit an error, the buffer is in an undefined state, so
186*8fb009dcSAndroid Build Coastguard Worker   // fail all following calls. In particular, |cbb->child| may point to invalid
187*8fb009dcSAndroid Build Coastguard Worker   // memory.
188*8fb009dcSAndroid Build Coastguard Worker   struct cbb_buffer_st *base = cbb_get_base(cbb);
189*8fb009dcSAndroid Build Coastguard Worker   if (base == NULL || base->error) {
190*8fb009dcSAndroid Build Coastguard Worker     return 0;
191*8fb009dcSAndroid Build Coastguard Worker   }
192*8fb009dcSAndroid Build Coastguard Worker 
193*8fb009dcSAndroid Build Coastguard Worker   if (cbb->child == NULL) {
194*8fb009dcSAndroid Build Coastguard Worker     // Nothing to flush.
195*8fb009dcSAndroid Build Coastguard Worker     return 1;
196*8fb009dcSAndroid Build Coastguard Worker   }
197*8fb009dcSAndroid Build Coastguard Worker 
198*8fb009dcSAndroid Build Coastguard Worker   assert(cbb->child->is_child);
199*8fb009dcSAndroid Build Coastguard Worker   struct cbb_child_st *child = &cbb->child->u.child;
200*8fb009dcSAndroid Build Coastguard Worker   assert(child->base == base);
201*8fb009dcSAndroid Build Coastguard Worker   size_t child_start = child->offset + child->pending_len_len;
202*8fb009dcSAndroid Build Coastguard Worker 
203*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_flush(cbb->child) ||
204*8fb009dcSAndroid Build Coastguard Worker       child_start < child->offset ||
205*8fb009dcSAndroid Build Coastguard Worker       base->len < child_start) {
206*8fb009dcSAndroid Build Coastguard Worker     goto err;
207*8fb009dcSAndroid Build Coastguard Worker   }
208*8fb009dcSAndroid Build Coastguard Worker 
209*8fb009dcSAndroid Build Coastguard Worker   size_t len = base->len - child_start;
210*8fb009dcSAndroid Build Coastguard Worker 
211*8fb009dcSAndroid Build Coastguard Worker   if (child->pending_is_asn1) {
212*8fb009dcSAndroid Build Coastguard Worker     // For ASN.1 we assume that we'll only need a single byte for the length.
213*8fb009dcSAndroid Build Coastguard Worker     // If that turned out to be incorrect, we have to move the contents along
214*8fb009dcSAndroid Build Coastguard Worker     // in order to make space.
215*8fb009dcSAndroid Build Coastguard Worker     uint8_t len_len;
216*8fb009dcSAndroid Build Coastguard Worker     uint8_t initial_length_byte;
217*8fb009dcSAndroid Build Coastguard Worker 
218*8fb009dcSAndroid Build Coastguard Worker     assert (child->pending_len_len == 1);
219*8fb009dcSAndroid Build Coastguard Worker 
220*8fb009dcSAndroid Build Coastguard Worker     if (len > 0xfffffffe) {
221*8fb009dcSAndroid Build Coastguard Worker       OPENSSL_PUT_ERROR(CRYPTO, ERR_R_OVERFLOW);
222*8fb009dcSAndroid Build Coastguard Worker       // Too large.
223*8fb009dcSAndroid Build Coastguard Worker       goto err;
224*8fb009dcSAndroid Build Coastguard Worker     } else if (len > 0xffffff) {
225*8fb009dcSAndroid Build Coastguard Worker       len_len = 5;
226*8fb009dcSAndroid Build Coastguard Worker       initial_length_byte = 0x80 | 4;
227*8fb009dcSAndroid Build Coastguard Worker     } else if (len > 0xffff) {
228*8fb009dcSAndroid Build Coastguard Worker       len_len = 4;
229*8fb009dcSAndroid Build Coastguard Worker       initial_length_byte = 0x80 | 3;
230*8fb009dcSAndroid Build Coastguard Worker     } else if (len > 0xff) {
231*8fb009dcSAndroid Build Coastguard Worker       len_len = 3;
232*8fb009dcSAndroid Build Coastguard Worker       initial_length_byte = 0x80 | 2;
233*8fb009dcSAndroid Build Coastguard Worker     } else if (len > 0x7f) {
234*8fb009dcSAndroid Build Coastguard Worker       len_len = 2;
235*8fb009dcSAndroid Build Coastguard Worker       initial_length_byte = 0x80 | 1;
236*8fb009dcSAndroid Build Coastguard Worker     } else {
237*8fb009dcSAndroid Build Coastguard Worker       len_len = 1;
238*8fb009dcSAndroid Build Coastguard Worker       initial_length_byte = (uint8_t)len;
239*8fb009dcSAndroid Build Coastguard Worker       len = 0;
240*8fb009dcSAndroid Build Coastguard Worker     }
241*8fb009dcSAndroid Build Coastguard Worker 
242*8fb009dcSAndroid Build Coastguard Worker     if (len_len != 1) {
243*8fb009dcSAndroid Build Coastguard Worker       // We need to move the contents along in order to make space.
244*8fb009dcSAndroid Build Coastguard Worker       size_t extra_bytes = len_len - 1;
245*8fb009dcSAndroid Build Coastguard Worker       if (!cbb_buffer_add(base, NULL, extra_bytes)) {
246*8fb009dcSAndroid Build Coastguard Worker         goto err;
247*8fb009dcSAndroid Build Coastguard Worker       }
248*8fb009dcSAndroid Build Coastguard Worker       OPENSSL_memmove(base->buf + child_start + extra_bytes,
249*8fb009dcSAndroid Build Coastguard Worker                       base->buf + child_start, len);
250*8fb009dcSAndroid Build Coastguard Worker     }
251*8fb009dcSAndroid Build Coastguard Worker     base->buf[child->offset++] = initial_length_byte;
252*8fb009dcSAndroid Build Coastguard Worker     child->pending_len_len = len_len - 1;
253*8fb009dcSAndroid Build Coastguard Worker   }
254*8fb009dcSAndroid Build Coastguard Worker 
255*8fb009dcSAndroid Build Coastguard Worker   for (size_t i = child->pending_len_len - 1; i < child->pending_len_len; i--) {
256*8fb009dcSAndroid Build Coastguard Worker     base->buf[child->offset + i] = (uint8_t)len;
257*8fb009dcSAndroid Build Coastguard Worker     len >>= 8;
258*8fb009dcSAndroid Build Coastguard Worker   }
259*8fb009dcSAndroid Build Coastguard Worker   if (len != 0) {
260*8fb009dcSAndroid Build Coastguard Worker     OPENSSL_PUT_ERROR(CRYPTO, ERR_R_OVERFLOW);
261*8fb009dcSAndroid Build Coastguard Worker     goto err;
262*8fb009dcSAndroid Build Coastguard Worker   }
263*8fb009dcSAndroid Build Coastguard Worker 
264*8fb009dcSAndroid Build Coastguard Worker   child->base = NULL;
265*8fb009dcSAndroid Build Coastguard Worker   cbb->child = NULL;
266*8fb009dcSAndroid Build Coastguard Worker 
267*8fb009dcSAndroid Build Coastguard Worker   return 1;
268*8fb009dcSAndroid Build Coastguard Worker 
269*8fb009dcSAndroid Build Coastguard Worker err:
270*8fb009dcSAndroid Build Coastguard Worker   cbb_on_error(cbb);
271*8fb009dcSAndroid Build Coastguard Worker   return 0;
272*8fb009dcSAndroid Build Coastguard Worker }
273*8fb009dcSAndroid Build Coastguard Worker 
CBB_data(const CBB * cbb)274*8fb009dcSAndroid Build Coastguard Worker const uint8_t *CBB_data(const CBB *cbb) {
275*8fb009dcSAndroid Build Coastguard Worker   assert(cbb->child == NULL);
276*8fb009dcSAndroid Build Coastguard Worker   if (cbb->is_child) {
277*8fb009dcSAndroid Build Coastguard Worker     return cbb->u.child.base->buf + cbb->u.child.offset +
278*8fb009dcSAndroid Build Coastguard Worker            cbb->u.child.pending_len_len;
279*8fb009dcSAndroid Build Coastguard Worker   }
280*8fb009dcSAndroid Build Coastguard Worker   return cbb->u.base.buf;
281*8fb009dcSAndroid Build Coastguard Worker }
282*8fb009dcSAndroid Build Coastguard Worker 
CBB_len(const CBB * cbb)283*8fb009dcSAndroid Build Coastguard Worker size_t CBB_len(const CBB *cbb) {
284*8fb009dcSAndroid Build Coastguard Worker   assert(cbb->child == NULL);
285*8fb009dcSAndroid Build Coastguard Worker   if (cbb->is_child) {
286*8fb009dcSAndroid Build Coastguard Worker     assert(cbb->u.child.offset + cbb->u.child.pending_len_len <=
287*8fb009dcSAndroid Build Coastguard Worker            cbb->u.child.base->len);
288*8fb009dcSAndroid Build Coastguard Worker     return cbb->u.child.base->len - cbb->u.child.offset -
289*8fb009dcSAndroid Build Coastguard Worker            cbb->u.child.pending_len_len;
290*8fb009dcSAndroid Build Coastguard Worker   }
291*8fb009dcSAndroid Build Coastguard Worker   return cbb->u.base.len;
292*8fb009dcSAndroid Build Coastguard Worker }
293*8fb009dcSAndroid Build Coastguard Worker 
cbb_add_child(CBB * cbb,CBB * out_child,uint8_t len_len,int is_asn1)294*8fb009dcSAndroid Build Coastguard Worker static int cbb_add_child(CBB *cbb, CBB *out_child, uint8_t len_len,
295*8fb009dcSAndroid Build Coastguard Worker                          int is_asn1) {
296*8fb009dcSAndroid Build Coastguard Worker   assert(cbb->child == NULL);
297*8fb009dcSAndroid Build Coastguard Worker   assert(!is_asn1 || len_len == 1);
298*8fb009dcSAndroid Build Coastguard Worker   struct cbb_buffer_st *base = cbb_get_base(cbb);
299*8fb009dcSAndroid Build Coastguard Worker   size_t offset = base->len;
300*8fb009dcSAndroid Build Coastguard Worker 
301*8fb009dcSAndroid Build Coastguard Worker   // Reserve space for the length prefix.
302*8fb009dcSAndroid Build Coastguard Worker   uint8_t *prefix_bytes;
303*8fb009dcSAndroid Build Coastguard Worker   if (!cbb_buffer_add(base, &prefix_bytes, len_len)) {
304*8fb009dcSAndroid Build Coastguard Worker     return 0;
305*8fb009dcSAndroid Build Coastguard Worker   }
306*8fb009dcSAndroid Build Coastguard Worker   OPENSSL_memset(prefix_bytes, 0, len_len);
307*8fb009dcSAndroid Build Coastguard Worker 
308*8fb009dcSAndroid Build Coastguard Worker   CBB_zero(out_child);
309*8fb009dcSAndroid Build Coastguard Worker   out_child->is_child = 1;
310*8fb009dcSAndroid Build Coastguard Worker   out_child->u.child.base = base;
311*8fb009dcSAndroid Build Coastguard Worker   out_child->u.child.offset = offset;
312*8fb009dcSAndroid Build Coastguard Worker   out_child->u.child.pending_len_len = len_len;
313*8fb009dcSAndroid Build Coastguard Worker   out_child->u.child.pending_is_asn1 = is_asn1;
314*8fb009dcSAndroid Build Coastguard Worker   cbb->child = out_child;
315*8fb009dcSAndroid Build Coastguard Worker   return 1;
316*8fb009dcSAndroid Build Coastguard Worker }
317*8fb009dcSAndroid Build Coastguard Worker 
cbb_add_length_prefixed(CBB * cbb,CBB * out_contents,uint8_t len_len)318*8fb009dcSAndroid Build Coastguard Worker static int cbb_add_length_prefixed(CBB *cbb, CBB *out_contents,
319*8fb009dcSAndroid Build Coastguard Worker                                    uint8_t len_len) {
320*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_flush(cbb)) {
321*8fb009dcSAndroid Build Coastguard Worker     return 0;
322*8fb009dcSAndroid Build Coastguard Worker   }
323*8fb009dcSAndroid Build Coastguard Worker 
324*8fb009dcSAndroid Build Coastguard Worker   return cbb_add_child(cbb, out_contents, len_len, /*is_asn1=*/0);
325*8fb009dcSAndroid Build Coastguard Worker }
326*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_u8_length_prefixed(CBB * cbb,CBB * out_contents)327*8fb009dcSAndroid Build Coastguard Worker int CBB_add_u8_length_prefixed(CBB *cbb, CBB *out_contents) {
328*8fb009dcSAndroid Build Coastguard Worker   return cbb_add_length_prefixed(cbb, out_contents, 1);
329*8fb009dcSAndroid Build Coastguard Worker }
330*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_u16_length_prefixed(CBB * cbb,CBB * out_contents)331*8fb009dcSAndroid Build Coastguard Worker int CBB_add_u16_length_prefixed(CBB *cbb, CBB *out_contents) {
332*8fb009dcSAndroid Build Coastguard Worker   return cbb_add_length_prefixed(cbb, out_contents, 2);
333*8fb009dcSAndroid Build Coastguard Worker }
334*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_u24_length_prefixed(CBB * cbb,CBB * out_contents)335*8fb009dcSAndroid Build Coastguard Worker int CBB_add_u24_length_prefixed(CBB *cbb, CBB *out_contents) {
336*8fb009dcSAndroid Build Coastguard Worker   return cbb_add_length_prefixed(cbb, out_contents, 3);
337*8fb009dcSAndroid Build Coastguard Worker }
338*8fb009dcSAndroid Build Coastguard Worker 
339*8fb009dcSAndroid Build Coastguard Worker // add_base128_integer encodes |v| as a big-endian base-128 integer where the
340*8fb009dcSAndroid Build Coastguard Worker // high bit of each byte indicates where there is more data. This is the
341*8fb009dcSAndroid Build Coastguard Worker // encoding used in DER for both high tag number form and OID components.
add_base128_integer(CBB * cbb,uint64_t v)342*8fb009dcSAndroid Build Coastguard Worker static int add_base128_integer(CBB *cbb, uint64_t v) {
343*8fb009dcSAndroid Build Coastguard Worker   unsigned len_len = 0;
344*8fb009dcSAndroid Build Coastguard Worker   uint64_t copy = v;
345*8fb009dcSAndroid Build Coastguard Worker   while (copy > 0) {
346*8fb009dcSAndroid Build Coastguard Worker     len_len++;
347*8fb009dcSAndroid Build Coastguard Worker     copy >>= 7;
348*8fb009dcSAndroid Build Coastguard Worker   }
349*8fb009dcSAndroid Build Coastguard Worker   if (len_len == 0) {
350*8fb009dcSAndroid Build Coastguard Worker     len_len = 1;  // Zero is encoded with one byte.
351*8fb009dcSAndroid Build Coastguard Worker   }
352*8fb009dcSAndroid Build Coastguard Worker   for (unsigned i = len_len - 1; i < len_len; i--) {
353*8fb009dcSAndroid Build Coastguard Worker     uint8_t byte = (v >> (7 * i)) & 0x7f;
354*8fb009dcSAndroid Build Coastguard Worker     if (i != 0) {
355*8fb009dcSAndroid Build Coastguard Worker       // The high bit denotes whether there is more data.
356*8fb009dcSAndroid Build Coastguard Worker       byte |= 0x80;
357*8fb009dcSAndroid Build Coastguard Worker     }
358*8fb009dcSAndroid Build Coastguard Worker     if (!CBB_add_u8(cbb, byte)) {
359*8fb009dcSAndroid Build Coastguard Worker       return 0;
360*8fb009dcSAndroid Build Coastguard Worker     }
361*8fb009dcSAndroid Build Coastguard Worker   }
362*8fb009dcSAndroid Build Coastguard Worker   return 1;
363*8fb009dcSAndroid Build Coastguard Worker }
364*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_asn1(CBB * cbb,CBB * out_contents,CBS_ASN1_TAG tag)365*8fb009dcSAndroid Build Coastguard Worker int CBB_add_asn1(CBB *cbb, CBB *out_contents, CBS_ASN1_TAG tag) {
366*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_flush(cbb)) {
367*8fb009dcSAndroid Build Coastguard Worker     return 0;
368*8fb009dcSAndroid Build Coastguard Worker   }
369*8fb009dcSAndroid Build Coastguard Worker 
370*8fb009dcSAndroid Build Coastguard Worker   // Split the tag into leading bits and tag number.
371*8fb009dcSAndroid Build Coastguard Worker   uint8_t tag_bits = (tag >> CBS_ASN1_TAG_SHIFT) & 0xe0;
372*8fb009dcSAndroid Build Coastguard Worker   CBS_ASN1_TAG tag_number = tag & CBS_ASN1_TAG_NUMBER_MASK;
373*8fb009dcSAndroid Build Coastguard Worker   if (tag_number >= 0x1f) {
374*8fb009dcSAndroid Build Coastguard Worker     // Set all the bits in the tag number to signal high tag number form.
375*8fb009dcSAndroid Build Coastguard Worker     if (!CBB_add_u8(cbb, tag_bits | 0x1f) ||
376*8fb009dcSAndroid Build Coastguard Worker         !add_base128_integer(cbb, tag_number)) {
377*8fb009dcSAndroid Build Coastguard Worker       return 0;
378*8fb009dcSAndroid Build Coastguard Worker     }
379*8fb009dcSAndroid Build Coastguard Worker   } else if (!CBB_add_u8(cbb, tag_bits | tag_number)) {
380*8fb009dcSAndroid Build Coastguard Worker     return 0;
381*8fb009dcSAndroid Build Coastguard Worker   }
382*8fb009dcSAndroid Build Coastguard Worker 
383*8fb009dcSAndroid Build Coastguard Worker   // Reserve one byte of length prefix. |CBB_flush| will finish it later.
384*8fb009dcSAndroid Build Coastguard Worker   return cbb_add_child(cbb, out_contents, /*len_len=*/1, /*is_asn1=*/1);
385*8fb009dcSAndroid Build Coastguard Worker }
386*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_bytes(CBB * cbb,const uint8_t * data,size_t len)387*8fb009dcSAndroid Build Coastguard Worker int CBB_add_bytes(CBB *cbb, const uint8_t *data, size_t len) {
388*8fb009dcSAndroid Build Coastguard Worker   uint8_t *out;
389*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_add_space(cbb, &out, len)) {
390*8fb009dcSAndroid Build Coastguard Worker     return 0;
391*8fb009dcSAndroid Build Coastguard Worker   }
392*8fb009dcSAndroid Build Coastguard Worker   OPENSSL_memcpy(out, data, len);
393*8fb009dcSAndroid Build Coastguard Worker   return 1;
394*8fb009dcSAndroid Build Coastguard Worker }
395*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_zeros(CBB * cbb,size_t len)396*8fb009dcSAndroid Build Coastguard Worker int CBB_add_zeros(CBB *cbb, size_t len) {
397*8fb009dcSAndroid Build Coastguard Worker   uint8_t *out;
398*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_add_space(cbb, &out, len)) {
399*8fb009dcSAndroid Build Coastguard Worker     return 0;
400*8fb009dcSAndroid Build Coastguard Worker   }
401*8fb009dcSAndroid Build Coastguard Worker   OPENSSL_memset(out, 0, len);
402*8fb009dcSAndroid Build Coastguard Worker   return 1;
403*8fb009dcSAndroid Build Coastguard Worker }
404*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_space(CBB * cbb,uint8_t ** out_data,size_t len)405*8fb009dcSAndroid Build Coastguard Worker int CBB_add_space(CBB *cbb, uint8_t **out_data, size_t len) {
406*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_flush(cbb) ||
407*8fb009dcSAndroid Build Coastguard Worker       !cbb_buffer_add(cbb_get_base(cbb), out_data, len)) {
408*8fb009dcSAndroid Build Coastguard Worker     return 0;
409*8fb009dcSAndroid Build Coastguard Worker   }
410*8fb009dcSAndroid Build Coastguard Worker   return 1;
411*8fb009dcSAndroid Build Coastguard Worker }
412*8fb009dcSAndroid Build Coastguard Worker 
CBB_reserve(CBB * cbb,uint8_t ** out_data,size_t len)413*8fb009dcSAndroid Build Coastguard Worker int CBB_reserve(CBB *cbb, uint8_t **out_data, size_t len) {
414*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_flush(cbb) ||
415*8fb009dcSAndroid Build Coastguard Worker       !cbb_buffer_reserve(cbb_get_base(cbb), out_data, len)) {
416*8fb009dcSAndroid Build Coastguard Worker     return 0;
417*8fb009dcSAndroid Build Coastguard Worker   }
418*8fb009dcSAndroid Build Coastguard Worker   return 1;
419*8fb009dcSAndroid Build Coastguard Worker }
420*8fb009dcSAndroid Build Coastguard Worker 
CBB_did_write(CBB * cbb,size_t len)421*8fb009dcSAndroid Build Coastguard Worker int CBB_did_write(CBB *cbb, size_t len) {
422*8fb009dcSAndroid Build Coastguard Worker   struct cbb_buffer_st *base = cbb_get_base(cbb);
423*8fb009dcSAndroid Build Coastguard Worker   size_t newlen = base->len + len;
424*8fb009dcSAndroid Build Coastguard Worker   if (cbb->child != NULL ||
425*8fb009dcSAndroid Build Coastguard Worker       newlen < base->len ||
426*8fb009dcSAndroid Build Coastguard Worker       newlen > base->cap) {
427*8fb009dcSAndroid Build Coastguard Worker     return 0;
428*8fb009dcSAndroid Build Coastguard Worker   }
429*8fb009dcSAndroid Build Coastguard Worker   base->len = newlen;
430*8fb009dcSAndroid Build Coastguard Worker   return 1;
431*8fb009dcSAndroid Build Coastguard Worker }
432*8fb009dcSAndroid Build Coastguard Worker 
cbb_add_u(CBB * cbb,uint64_t v,size_t len_len)433*8fb009dcSAndroid Build Coastguard Worker static int cbb_add_u(CBB *cbb, uint64_t v, size_t len_len) {
434*8fb009dcSAndroid Build Coastguard Worker   uint8_t *buf;
435*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_add_space(cbb, &buf, len_len)) {
436*8fb009dcSAndroid Build Coastguard Worker     return 0;
437*8fb009dcSAndroid Build Coastguard Worker   }
438*8fb009dcSAndroid Build Coastguard Worker 
439*8fb009dcSAndroid Build Coastguard Worker   for (size_t i = len_len - 1; i < len_len; i--) {
440*8fb009dcSAndroid Build Coastguard Worker     buf[i] = v;
441*8fb009dcSAndroid Build Coastguard Worker     v >>= 8;
442*8fb009dcSAndroid Build Coastguard Worker   }
443*8fb009dcSAndroid Build Coastguard Worker 
444*8fb009dcSAndroid Build Coastguard Worker   // |v| must fit in |len_len| bytes.
445*8fb009dcSAndroid Build Coastguard Worker   if (v != 0) {
446*8fb009dcSAndroid Build Coastguard Worker     cbb_on_error(cbb);
447*8fb009dcSAndroid Build Coastguard Worker     return 0;
448*8fb009dcSAndroid Build Coastguard Worker   }
449*8fb009dcSAndroid Build Coastguard Worker 
450*8fb009dcSAndroid Build Coastguard Worker   return 1;
451*8fb009dcSAndroid Build Coastguard Worker }
452*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_u8(CBB * cbb,uint8_t value)453*8fb009dcSAndroid Build Coastguard Worker int CBB_add_u8(CBB *cbb, uint8_t value) {
454*8fb009dcSAndroid Build Coastguard Worker   return cbb_add_u(cbb, value, 1);
455*8fb009dcSAndroid Build Coastguard Worker }
456*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_u16(CBB * cbb,uint16_t value)457*8fb009dcSAndroid Build Coastguard Worker int CBB_add_u16(CBB *cbb, uint16_t value) {
458*8fb009dcSAndroid Build Coastguard Worker   return cbb_add_u(cbb, value, 2);
459*8fb009dcSAndroid Build Coastguard Worker }
460*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_u16le(CBB * cbb,uint16_t value)461*8fb009dcSAndroid Build Coastguard Worker int CBB_add_u16le(CBB *cbb, uint16_t value) {
462*8fb009dcSAndroid Build Coastguard Worker   return CBB_add_u16(cbb, CRYPTO_bswap2(value));
463*8fb009dcSAndroid Build Coastguard Worker }
464*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_u24(CBB * cbb,uint32_t value)465*8fb009dcSAndroid Build Coastguard Worker int CBB_add_u24(CBB *cbb, uint32_t value) {
466*8fb009dcSAndroid Build Coastguard Worker   return cbb_add_u(cbb, value, 3);
467*8fb009dcSAndroid Build Coastguard Worker }
468*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_u32(CBB * cbb,uint32_t value)469*8fb009dcSAndroid Build Coastguard Worker int CBB_add_u32(CBB *cbb, uint32_t value) {
470*8fb009dcSAndroid Build Coastguard Worker   return cbb_add_u(cbb, value, 4);
471*8fb009dcSAndroid Build Coastguard Worker }
472*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_u32le(CBB * cbb,uint32_t value)473*8fb009dcSAndroid Build Coastguard Worker int CBB_add_u32le(CBB *cbb, uint32_t value) {
474*8fb009dcSAndroid Build Coastguard Worker   return CBB_add_u32(cbb, CRYPTO_bswap4(value));
475*8fb009dcSAndroid Build Coastguard Worker }
476*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_u64(CBB * cbb,uint64_t value)477*8fb009dcSAndroid Build Coastguard Worker int CBB_add_u64(CBB *cbb, uint64_t value) {
478*8fb009dcSAndroid Build Coastguard Worker   return cbb_add_u(cbb, value, 8);
479*8fb009dcSAndroid Build Coastguard Worker }
480*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_u64le(CBB * cbb,uint64_t value)481*8fb009dcSAndroid Build Coastguard Worker int CBB_add_u64le(CBB *cbb, uint64_t value) {
482*8fb009dcSAndroid Build Coastguard Worker   return CBB_add_u64(cbb, CRYPTO_bswap8(value));
483*8fb009dcSAndroid Build Coastguard Worker }
484*8fb009dcSAndroid Build Coastguard Worker 
CBB_discard_child(CBB * cbb)485*8fb009dcSAndroid Build Coastguard Worker void CBB_discard_child(CBB *cbb) {
486*8fb009dcSAndroid Build Coastguard Worker   if (cbb->child == NULL) {
487*8fb009dcSAndroid Build Coastguard Worker     return;
488*8fb009dcSAndroid Build Coastguard Worker   }
489*8fb009dcSAndroid Build Coastguard Worker 
490*8fb009dcSAndroid Build Coastguard Worker   struct cbb_buffer_st *base = cbb_get_base(cbb);
491*8fb009dcSAndroid Build Coastguard Worker   assert(cbb->child->is_child);
492*8fb009dcSAndroid Build Coastguard Worker   base->len = cbb->child->u.child.offset;
493*8fb009dcSAndroid Build Coastguard Worker 
494*8fb009dcSAndroid Build Coastguard Worker   cbb->child->u.child.base = NULL;
495*8fb009dcSAndroid Build Coastguard Worker   cbb->child = NULL;
496*8fb009dcSAndroid Build Coastguard Worker }
497*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_asn1_uint64(CBB * cbb,uint64_t value)498*8fb009dcSAndroid Build Coastguard Worker int CBB_add_asn1_uint64(CBB *cbb, uint64_t value) {
499*8fb009dcSAndroid Build Coastguard Worker   return CBB_add_asn1_uint64_with_tag(cbb, value, CBS_ASN1_INTEGER);
500*8fb009dcSAndroid Build Coastguard Worker }
501*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_asn1_uint64_with_tag(CBB * cbb,uint64_t value,CBS_ASN1_TAG tag)502*8fb009dcSAndroid Build Coastguard Worker int CBB_add_asn1_uint64_with_tag(CBB *cbb, uint64_t value, CBS_ASN1_TAG tag) {
503*8fb009dcSAndroid Build Coastguard Worker   CBB child;
504*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_add_asn1(cbb, &child, tag)) {
505*8fb009dcSAndroid Build Coastguard Worker     goto err;
506*8fb009dcSAndroid Build Coastguard Worker   }
507*8fb009dcSAndroid Build Coastguard Worker 
508*8fb009dcSAndroid Build Coastguard Worker   int started = 0;
509*8fb009dcSAndroid Build Coastguard Worker   for (size_t i = 0; i < 8; i++) {
510*8fb009dcSAndroid Build Coastguard Worker     uint8_t byte = (value >> 8*(7-i)) & 0xff;
511*8fb009dcSAndroid Build Coastguard Worker     if (!started) {
512*8fb009dcSAndroid Build Coastguard Worker       if (byte == 0) {
513*8fb009dcSAndroid Build Coastguard Worker         // Don't encode leading zeros.
514*8fb009dcSAndroid Build Coastguard Worker         continue;
515*8fb009dcSAndroid Build Coastguard Worker       }
516*8fb009dcSAndroid Build Coastguard Worker       // If the high bit is set, add a padding byte to make it
517*8fb009dcSAndroid Build Coastguard Worker       // unsigned.
518*8fb009dcSAndroid Build Coastguard Worker       if ((byte & 0x80) && !CBB_add_u8(&child, 0)) {
519*8fb009dcSAndroid Build Coastguard Worker         goto err;
520*8fb009dcSAndroid Build Coastguard Worker       }
521*8fb009dcSAndroid Build Coastguard Worker       started = 1;
522*8fb009dcSAndroid Build Coastguard Worker     }
523*8fb009dcSAndroid Build Coastguard Worker     if (!CBB_add_u8(&child, byte)) {
524*8fb009dcSAndroid Build Coastguard Worker       goto err;
525*8fb009dcSAndroid Build Coastguard Worker     }
526*8fb009dcSAndroid Build Coastguard Worker   }
527*8fb009dcSAndroid Build Coastguard Worker 
528*8fb009dcSAndroid Build Coastguard Worker   // 0 is encoded as a single 0, not the empty string.
529*8fb009dcSAndroid Build Coastguard Worker   if (!started && !CBB_add_u8(&child, 0)) {
530*8fb009dcSAndroid Build Coastguard Worker     goto err;
531*8fb009dcSAndroid Build Coastguard Worker   }
532*8fb009dcSAndroid Build Coastguard Worker 
533*8fb009dcSAndroid Build Coastguard Worker   return CBB_flush(cbb);
534*8fb009dcSAndroid Build Coastguard Worker 
535*8fb009dcSAndroid Build Coastguard Worker err:
536*8fb009dcSAndroid Build Coastguard Worker   cbb_on_error(cbb);
537*8fb009dcSAndroid Build Coastguard Worker   return 0;
538*8fb009dcSAndroid Build Coastguard Worker }
539*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_asn1_int64(CBB * cbb,int64_t value)540*8fb009dcSAndroid Build Coastguard Worker int CBB_add_asn1_int64(CBB *cbb, int64_t value) {
541*8fb009dcSAndroid Build Coastguard Worker   return CBB_add_asn1_int64_with_tag(cbb, value, CBS_ASN1_INTEGER);
542*8fb009dcSAndroid Build Coastguard Worker }
543*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_asn1_int64_with_tag(CBB * cbb,int64_t value,CBS_ASN1_TAG tag)544*8fb009dcSAndroid Build Coastguard Worker int CBB_add_asn1_int64_with_tag(CBB *cbb, int64_t value, CBS_ASN1_TAG tag) {
545*8fb009dcSAndroid Build Coastguard Worker   if (value >= 0) {
546*8fb009dcSAndroid Build Coastguard Worker     return CBB_add_asn1_uint64_with_tag(cbb, (uint64_t)value, tag);
547*8fb009dcSAndroid Build Coastguard Worker   }
548*8fb009dcSAndroid Build Coastguard Worker 
549*8fb009dcSAndroid Build Coastguard Worker   uint8_t bytes[sizeof(int64_t)];
550*8fb009dcSAndroid Build Coastguard Worker   memcpy(bytes, &value, sizeof(value));
551*8fb009dcSAndroid Build Coastguard Worker   int start = 7;
552*8fb009dcSAndroid Build Coastguard Worker   // Skip leading sign-extension bytes unless they are necessary.
553*8fb009dcSAndroid Build Coastguard Worker   while (start > 0 && (bytes[start] == 0xff && (bytes[start - 1] & 0x80))) {
554*8fb009dcSAndroid Build Coastguard Worker     start--;
555*8fb009dcSAndroid Build Coastguard Worker   }
556*8fb009dcSAndroid Build Coastguard Worker 
557*8fb009dcSAndroid Build Coastguard Worker   CBB child;
558*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_add_asn1(cbb, &child, tag)) {
559*8fb009dcSAndroid Build Coastguard Worker     goto err;
560*8fb009dcSAndroid Build Coastguard Worker   }
561*8fb009dcSAndroid Build Coastguard Worker   for (int i = start; i >= 0; i--) {
562*8fb009dcSAndroid Build Coastguard Worker     if (!CBB_add_u8(&child, bytes[i])) {
563*8fb009dcSAndroid Build Coastguard Worker       goto err;
564*8fb009dcSAndroid Build Coastguard Worker     }
565*8fb009dcSAndroid Build Coastguard Worker   }
566*8fb009dcSAndroid Build Coastguard Worker   return CBB_flush(cbb);
567*8fb009dcSAndroid Build Coastguard Worker 
568*8fb009dcSAndroid Build Coastguard Worker err:
569*8fb009dcSAndroid Build Coastguard Worker   cbb_on_error(cbb);
570*8fb009dcSAndroid Build Coastguard Worker   return 0;
571*8fb009dcSAndroid Build Coastguard Worker }
572*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_asn1_octet_string(CBB * cbb,const uint8_t * data,size_t data_len)573*8fb009dcSAndroid Build Coastguard Worker int CBB_add_asn1_octet_string(CBB *cbb, const uint8_t *data, size_t data_len) {
574*8fb009dcSAndroid Build Coastguard Worker   CBB child;
575*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_add_asn1(cbb, &child, CBS_ASN1_OCTETSTRING) ||
576*8fb009dcSAndroid Build Coastguard Worker       !CBB_add_bytes(&child, data, data_len) ||
577*8fb009dcSAndroid Build Coastguard Worker       !CBB_flush(cbb)) {
578*8fb009dcSAndroid Build Coastguard Worker     cbb_on_error(cbb);
579*8fb009dcSAndroid Build Coastguard Worker     return 0;
580*8fb009dcSAndroid Build Coastguard Worker   }
581*8fb009dcSAndroid Build Coastguard Worker 
582*8fb009dcSAndroid Build Coastguard Worker   return 1;
583*8fb009dcSAndroid Build Coastguard Worker }
584*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_asn1_bool(CBB * cbb,int value)585*8fb009dcSAndroid Build Coastguard Worker int CBB_add_asn1_bool(CBB *cbb, int value) {
586*8fb009dcSAndroid Build Coastguard Worker   CBB child;
587*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_add_asn1(cbb, &child, CBS_ASN1_BOOLEAN) ||
588*8fb009dcSAndroid Build Coastguard Worker       !CBB_add_u8(&child, value != 0 ? 0xff : 0) ||
589*8fb009dcSAndroid Build Coastguard Worker       !CBB_flush(cbb)) {
590*8fb009dcSAndroid Build Coastguard Worker     cbb_on_error(cbb);
591*8fb009dcSAndroid Build Coastguard Worker     return 0;
592*8fb009dcSAndroid Build Coastguard Worker   }
593*8fb009dcSAndroid Build Coastguard Worker 
594*8fb009dcSAndroid Build Coastguard Worker   return 1;
595*8fb009dcSAndroid Build Coastguard Worker }
596*8fb009dcSAndroid Build Coastguard Worker 
597*8fb009dcSAndroid Build Coastguard Worker // parse_dotted_decimal parses one decimal component from |cbs|, where |cbs| is
598*8fb009dcSAndroid Build Coastguard Worker // an OID literal, e.g., "1.2.840.113554.4.1.72585". It consumes both the
599*8fb009dcSAndroid Build Coastguard Worker // component and the dot, so |cbs| may be passed into the function again for the
600*8fb009dcSAndroid Build Coastguard Worker // next value.
parse_dotted_decimal(CBS * cbs,uint64_t * out)601*8fb009dcSAndroid Build Coastguard Worker static int parse_dotted_decimal(CBS *cbs, uint64_t *out) {
602*8fb009dcSAndroid Build Coastguard Worker   if (!CBS_get_u64_decimal(cbs, out)) {
603*8fb009dcSAndroid Build Coastguard Worker     return 0;
604*8fb009dcSAndroid Build Coastguard Worker   }
605*8fb009dcSAndroid Build Coastguard Worker 
606*8fb009dcSAndroid Build Coastguard Worker   // The integer must have either ended at the end of the string, or a
607*8fb009dcSAndroid Build Coastguard Worker   // non-terminal dot, which should be consumed. If the string ends with a dot,
608*8fb009dcSAndroid Build Coastguard Worker   // this is not a valid OID string.
609*8fb009dcSAndroid Build Coastguard Worker   uint8_t dot;
610*8fb009dcSAndroid Build Coastguard Worker   return !CBS_get_u8(cbs, &dot) || (dot == '.' && CBS_len(cbs) > 0);
611*8fb009dcSAndroid Build Coastguard Worker }
612*8fb009dcSAndroid Build Coastguard Worker 
CBB_add_asn1_oid_from_text(CBB * cbb,const char * text,size_t len)613*8fb009dcSAndroid Build Coastguard Worker int CBB_add_asn1_oid_from_text(CBB *cbb, const char *text, size_t len) {
614*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_flush(cbb)) {
615*8fb009dcSAndroid Build Coastguard Worker     return 0;
616*8fb009dcSAndroid Build Coastguard Worker   }
617*8fb009dcSAndroid Build Coastguard Worker 
618*8fb009dcSAndroid Build Coastguard Worker   CBS cbs;
619*8fb009dcSAndroid Build Coastguard Worker   CBS_init(&cbs, (const uint8_t *)text, len);
620*8fb009dcSAndroid Build Coastguard Worker 
621*8fb009dcSAndroid Build Coastguard Worker   // OIDs must have at least two components.
622*8fb009dcSAndroid Build Coastguard Worker   uint64_t a, b;
623*8fb009dcSAndroid Build Coastguard Worker   if (!parse_dotted_decimal(&cbs, &a) ||
624*8fb009dcSAndroid Build Coastguard Worker       !parse_dotted_decimal(&cbs, &b)) {
625*8fb009dcSAndroid Build Coastguard Worker     return 0;
626*8fb009dcSAndroid Build Coastguard Worker   }
627*8fb009dcSAndroid Build Coastguard Worker 
628*8fb009dcSAndroid Build Coastguard Worker   // The first component is encoded as 40 * |a| + |b|. This assumes that |a| is
629*8fb009dcSAndroid Build Coastguard Worker   // 0, 1, or 2 and that, when it is 0 or 1, |b| is at most 39.
630*8fb009dcSAndroid Build Coastguard Worker   if (a > 2 ||
631*8fb009dcSAndroid Build Coastguard Worker       (a < 2 && b > 39) ||
632*8fb009dcSAndroid Build Coastguard Worker       b > UINT64_MAX - 80 ||
633*8fb009dcSAndroid Build Coastguard Worker       !add_base128_integer(cbb, 40u * a + b)) {
634*8fb009dcSAndroid Build Coastguard Worker     return 0;
635*8fb009dcSAndroid Build Coastguard Worker   }
636*8fb009dcSAndroid Build Coastguard Worker 
637*8fb009dcSAndroid Build Coastguard Worker   // The remaining components are encoded unmodified.
638*8fb009dcSAndroid Build Coastguard Worker   while (CBS_len(&cbs) > 0) {
639*8fb009dcSAndroid Build Coastguard Worker     if (!parse_dotted_decimal(&cbs, &a) ||
640*8fb009dcSAndroid Build Coastguard Worker         !add_base128_integer(cbb, a)) {
641*8fb009dcSAndroid Build Coastguard Worker       return 0;
642*8fb009dcSAndroid Build Coastguard Worker     }
643*8fb009dcSAndroid Build Coastguard Worker   }
644*8fb009dcSAndroid Build Coastguard Worker 
645*8fb009dcSAndroid Build Coastguard Worker   return 1;
646*8fb009dcSAndroid Build Coastguard Worker }
647*8fb009dcSAndroid Build Coastguard Worker 
compare_set_of_element(const void * a_ptr,const void * b_ptr)648*8fb009dcSAndroid Build Coastguard Worker static int compare_set_of_element(const void *a_ptr, const void *b_ptr) {
649*8fb009dcSAndroid Build Coastguard Worker   // See X.690, section 11.6 for the ordering. They are sorted in ascending
650*8fb009dcSAndroid Build Coastguard Worker   // order by their DER encoding.
651*8fb009dcSAndroid Build Coastguard Worker   const CBS *a = a_ptr, *b = b_ptr;
652*8fb009dcSAndroid Build Coastguard Worker   size_t a_len = CBS_len(a), b_len = CBS_len(b);
653*8fb009dcSAndroid Build Coastguard Worker   size_t min_len = a_len < b_len ? a_len : b_len;
654*8fb009dcSAndroid Build Coastguard Worker   int ret = OPENSSL_memcmp(CBS_data(a), CBS_data(b), min_len);
655*8fb009dcSAndroid Build Coastguard Worker   if (ret != 0) {
656*8fb009dcSAndroid Build Coastguard Worker     return ret;
657*8fb009dcSAndroid Build Coastguard Worker   }
658*8fb009dcSAndroid Build Coastguard Worker   if (a_len == b_len) {
659*8fb009dcSAndroid Build Coastguard Worker     return 0;
660*8fb009dcSAndroid Build Coastguard Worker   }
661*8fb009dcSAndroid Build Coastguard Worker   // If one is a prefix of the other, the shorter one sorts first. (This is not
662*8fb009dcSAndroid Build Coastguard Worker   // actually reachable. No DER encoding is a prefix of another DER encoding.)
663*8fb009dcSAndroid Build Coastguard Worker   return a_len < b_len ? -1 : 1;
664*8fb009dcSAndroid Build Coastguard Worker }
665*8fb009dcSAndroid Build Coastguard Worker 
CBB_flush_asn1_set_of(CBB * cbb)666*8fb009dcSAndroid Build Coastguard Worker int CBB_flush_asn1_set_of(CBB *cbb) {
667*8fb009dcSAndroid Build Coastguard Worker   if (!CBB_flush(cbb)) {
668*8fb009dcSAndroid Build Coastguard Worker     return 0;
669*8fb009dcSAndroid Build Coastguard Worker   }
670*8fb009dcSAndroid Build Coastguard Worker 
671*8fb009dcSAndroid Build Coastguard Worker   CBS cbs;
672*8fb009dcSAndroid Build Coastguard Worker   size_t num_children = 0;
673*8fb009dcSAndroid Build Coastguard Worker   CBS_init(&cbs, CBB_data(cbb), CBB_len(cbb));
674*8fb009dcSAndroid Build Coastguard Worker   while (CBS_len(&cbs) != 0) {
675*8fb009dcSAndroid Build Coastguard Worker     if (!CBS_get_any_asn1_element(&cbs, NULL, NULL, NULL)) {
676*8fb009dcSAndroid Build Coastguard Worker       OPENSSL_PUT_ERROR(CRYPTO, ERR_R_SHOULD_NOT_HAVE_BEEN_CALLED);
677*8fb009dcSAndroid Build Coastguard Worker       return 0;
678*8fb009dcSAndroid Build Coastguard Worker     }
679*8fb009dcSAndroid Build Coastguard Worker     num_children++;
680*8fb009dcSAndroid Build Coastguard Worker   }
681*8fb009dcSAndroid Build Coastguard Worker 
682*8fb009dcSAndroid Build Coastguard Worker   if (num_children < 2) {
683*8fb009dcSAndroid Build Coastguard Worker     return 1;  // Nothing to do. This is the common case for X.509.
684*8fb009dcSAndroid Build Coastguard Worker   }
685*8fb009dcSAndroid Build Coastguard Worker 
686*8fb009dcSAndroid Build Coastguard Worker   // Parse out the children and sort. We alias them into a copy of so they
687*8fb009dcSAndroid Build Coastguard Worker   // remain valid as we rewrite |cbb|.
688*8fb009dcSAndroid Build Coastguard Worker   int ret = 0;
689*8fb009dcSAndroid Build Coastguard Worker   size_t buf_len = CBB_len(cbb);
690*8fb009dcSAndroid Build Coastguard Worker   uint8_t *buf = OPENSSL_memdup(CBB_data(cbb), buf_len);
691*8fb009dcSAndroid Build Coastguard Worker   CBS *children = OPENSSL_calloc(num_children, sizeof(CBS));
692*8fb009dcSAndroid Build Coastguard Worker   if (buf == NULL || children == NULL) {
693*8fb009dcSAndroid Build Coastguard Worker     goto err;
694*8fb009dcSAndroid Build Coastguard Worker   }
695*8fb009dcSAndroid Build Coastguard Worker   CBS_init(&cbs, buf, buf_len);
696*8fb009dcSAndroid Build Coastguard Worker   for (size_t i = 0; i < num_children; i++) {
697*8fb009dcSAndroid Build Coastguard Worker     if (!CBS_get_any_asn1_element(&cbs, &children[i], NULL, NULL)) {
698*8fb009dcSAndroid Build Coastguard Worker       goto err;
699*8fb009dcSAndroid Build Coastguard Worker     }
700*8fb009dcSAndroid Build Coastguard Worker   }
701*8fb009dcSAndroid Build Coastguard Worker   qsort(children, num_children, sizeof(CBS), compare_set_of_element);
702*8fb009dcSAndroid Build Coastguard Worker 
703*8fb009dcSAndroid Build Coastguard Worker   // Write the contents back in the new order.
704*8fb009dcSAndroid Build Coastguard Worker   uint8_t *out = (uint8_t *)CBB_data(cbb);
705*8fb009dcSAndroid Build Coastguard Worker   size_t offset = 0;
706*8fb009dcSAndroid Build Coastguard Worker   for (size_t i = 0; i < num_children; i++) {
707*8fb009dcSAndroid Build Coastguard Worker     OPENSSL_memcpy(out + offset, CBS_data(&children[i]), CBS_len(&children[i]));
708*8fb009dcSAndroid Build Coastguard Worker     offset += CBS_len(&children[i]);
709*8fb009dcSAndroid Build Coastguard Worker   }
710*8fb009dcSAndroid Build Coastguard Worker   assert(offset == buf_len);
711*8fb009dcSAndroid Build Coastguard Worker 
712*8fb009dcSAndroid Build Coastguard Worker   ret = 1;
713*8fb009dcSAndroid Build Coastguard Worker 
714*8fb009dcSAndroid Build Coastguard Worker err:
715*8fb009dcSAndroid Build Coastguard Worker   OPENSSL_free(buf);
716*8fb009dcSAndroid Build Coastguard Worker   OPENSSL_free(children);
717*8fb009dcSAndroid Build Coastguard Worker   return ret;
718*8fb009dcSAndroid Build Coastguard Worker }
719