xref: /freebsd/crypto/openssl/crypto/asn1/x_algor.c (revision f25b8c9fb4f58cf61adb47d7570abe7caa6d385d)
1 /*
2  * Copyright 1998-2022 The OpenSSL Project Authors. All Rights Reserved.
3  *
4  * Licensed under the Apache License 2.0 (the "License").  You may not use
5  * this file except in compliance with the License.  You can obtain a copy
6  * in the file LICENSE in the source distribution or at
7  * https://www.openssl.org/source/license.html
8  */
9 
10 #include <stddef.h>
11 #include <openssl/x509.h>
12 #include <openssl/asn1.h>
13 #include <openssl/asn1t.h>
14 #include <openssl/err.h>
15 #include "crypto/asn1.h"
16 #include "crypto/evp.h"
17 
18 ASN1_SEQUENCE(X509_ALGOR) = {
19     ASN1_SIMPLE(X509_ALGOR, algorithm, ASN1_OBJECT),
20     ASN1_OPT(X509_ALGOR, parameter, ASN1_ANY)
21 } ASN1_SEQUENCE_END(X509_ALGOR)
22 
23 ASN1_ITEM_TEMPLATE(X509_ALGORS) = ASN1_EX_TEMPLATE_TYPE(ASN1_TFLG_SEQUENCE_OF, 0, algorithms, X509_ALGOR)
24 ASN1_ITEM_TEMPLATE_END(X509_ALGORS)
25 
26 IMPLEMENT_ASN1_FUNCTIONS(X509_ALGOR)
27 IMPLEMENT_ASN1_ENCODE_FUNCTIONS_fname(X509_ALGORS, X509_ALGORS, X509_ALGORS)
28 IMPLEMENT_ASN1_DUP_FUNCTION(X509_ALGOR)
29 
30 int X509_ALGOR_set0(X509_ALGOR *alg, ASN1_OBJECT *aobj, int ptype, void *pval)
31 {
32     if (alg == NULL)
33         return 0;
34 
35     if (ptype != V_ASN1_UNDEF && alg->parameter == NULL
36         && (alg->parameter = ASN1_TYPE_new()) == NULL)
37         return 0;
38 
39     ASN1_OBJECT_free(alg->algorithm);
40     alg->algorithm = aobj;
41 
42     if (ptype == V_ASN1_EOC)
43         return 1;
44     if (ptype == V_ASN1_UNDEF) {
45         ASN1_TYPE_free(alg->parameter);
46         alg->parameter = NULL;
47     } else
48         ASN1_TYPE_set(alg->parameter, ptype, pval);
49     return 1;
50 }
51 
ossl_X509_ALGOR_from_nid(int nid,int ptype,void * pval)52 X509_ALGOR *ossl_X509_ALGOR_from_nid(int nid, int ptype, void *pval)
53 {
54     ASN1_OBJECT *algo = OBJ_nid2obj(nid);
55     X509_ALGOR *alg = NULL;
56 
57     if (algo == NULL)
58         return NULL;
59     if ((alg = X509_ALGOR_new()) == NULL)
60         goto err;
61     if (X509_ALGOR_set0(alg, algo, ptype, pval))
62         return alg;
63     alg->algorithm = NULL; /* precaution to prevent double free */
64 
65 err:
66     X509_ALGOR_free(alg);
67     /* ASN1_OBJECT_free(algo) is not needed due to OBJ_nid2obj() */
68     return NULL;
69 }
70 
X509_ALGOR_get0(const ASN1_OBJECT ** paobj,int * pptype,const void ** ppval,const X509_ALGOR * algor)71 void X509_ALGOR_get0(const ASN1_OBJECT **paobj, int *pptype,
72     const void **ppval, const X509_ALGOR *algor)
73 {
74     if (paobj)
75         *paobj = algor->algorithm;
76     if (pptype) {
77         if (algor->parameter == NULL) {
78             *pptype = V_ASN1_UNDEF;
79             return;
80         } else
81             *pptype = algor->parameter->type;
82         if (ppval)
83             *ppval = algor->parameter->value.ptr;
84     }
85 }
86 
87 /* Set up an X509_ALGOR DigestAlgorithmIdentifier from an EVP_MD */
X509_ALGOR_set_md(X509_ALGOR * alg,const EVP_MD * md)88 void X509_ALGOR_set_md(X509_ALGOR *alg, const EVP_MD *md)
89 {
90     int type = md->flags & EVP_MD_FLAG_DIGALGID_ABSENT ? V_ASN1_UNDEF
91                                                        : V_ASN1_NULL;
92 
93     (void)X509_ALGOR_set0(alg, OBJ_nid2obj(EVP_MD_get_type(md)), type, NULL);
94 }
95 
X509_ALGOR_cmp(const X509_ALGOR * a,const X509_ALGOR * b)96 int X509_ALGOR_cmp(const X509_ALGOR *a, const X509_ALGOR *b)
97 {
98     int rv;
99     rv = OBJ_cmp(a->algorithm, b->algorithm);
100     if (rv)
101         return rv;
102     if (!a->parameter && !b->parameter)
103         return 0;
104     return ASN1_TYPE_cmp(a->parameter, b->parameter);
105 }
106 
X509_ALGOR_copy(X509_ALGOR * dest,const X509_ALGOR * src)107 int X509_ALGOR_copy(X509_ALGOR *dest, const X509_ALGOR *src)
108 {
109     if (src == NULL || dest == NULL)
110         return 0;
111 
112     if (dest->algorithm)
113         ASN1_OBJECT_free(dest->algorithm);
114     dest->algorithm = NULL;
115 
116     if (dest->parameter)
117         ASN1_TYPE_free(dest->parameter);
118     dest->parameter = NULL;
119 
120     if (src->algorithm)
121         if ((dest->algorithm = OBJ_dup(src->algorithm)) == NULL)
122             return 0;
123 
124     if (src->parameter != NULL) {
125         dest->parameter = ASN1_TYPE_new();
126         if (dest->parameter == NULL)
127             return 0;
128 
129         /* Assuming this is also correct for a BOOL.
130          * set does copy as a side effect.
131          */
132         if (ASN1_TYPE_set1(dest->parameter, src->parameter->type,
133                 src->parameter->value.ptr)
134             == 0)
135             return 0;
136     }
137 
138     return 1;
139 }
140 
141 /* allocate and set algorithm ID from EVP_MD, default SHA1 */
ossl_x509_algor_new_from_md(X509_ALGOR ** palg,const EVP_MD * md)142 int ossl_x509_algor_new_from_md(X509_ALGOR **palg, const EVP_MD *md)
143 {
144     X509_ALGOR *alg;
145 
146     /* Default is SHA1 so no need to create it - still success */
147     if (md == NULL || EVP_MD_is_a(md, "SHA1"))
148         return 1;
149     if ((alg = X509_ALGOR_new()) == NULL)
150         return 0;
151     X509_ALGOR_set_md(alg, md);
152     *palg = alg;
153     return 1;
154 }
155 
156 /* convert algorithm ID to EVP_MD, default SHA1 */
ossl_x509_algor_get_md(X509_ALGOR * alg)157 const EVP_MD *ossl_x509_algor_get_md(X509_ALGOR *alg)
158 {
159     const EVP_MD *md;
160 
161     if (alg == NULL)
162         return EVP_sha1();
163     md = EVP_get_digestbyobj(alg->algorithm);
164     if (md == NULL)
165         ERR_raise(ERR_LIB_ASN1, ASN1_R_UNKNOWN_DIGEST);
166     return md;
167 }
168 
ossl_x509_algor_mgf1_decode(X509_ALGOR * alg)169 X509_ALGOR *ossl_x509_algor_mgf1_decode(X509_ALGOR *alg)
170 {
171     if (OBJ_obj2nid(alg->algorithm) != NID_mgf1)
172         return NULL;
173     return ASN1_TYPE_unpack_sequence(ASN1_ITEM_rptr(X509_ALGOR),
174         alg->parameter);
175 }
176 
177 /* Allocate and set MGF1 algorithm ID from EVP_MD */
ossl_x509_algor_md_to_mgf1(X509_ALGOR ** palg,const EVP_MD * mgf1md)178 int ossl_x509_algor_md_to_mgf1(X509_ALGOR **palg, const EVP_MD *mgf1md)
179 {
180     X509_ALGOR *algtmp = NULL;
181     ASN1_STRING *stmp = NULL;
182 
183     *palg = NULL;
184     if (mgf1md == NULL || EVP_MD_is_a(mgf1md, "SHA1"))
185         return 1;
186     /* need to embed algorithm ID inside another */
187     if (!ossl_x509_algor_new_from_md(&algtmp, mgf1md))
188         goto err;
189     if (ASN1_item_pack(algtmp, ASN1_ITEM_rptr(X509_ALGOR), &stmp) == NULL)
190         goto err;
191     *palg = ossl_X509_ALGOR_from_nid(NID_mgf1, V_ASN1_SEQUENCE, stmp);
192     if (*palg == NULL)
193         goto err;
194     stmp = NULL;
195 err:
196     ASN1_STRING_free(stmp);
197     X509_ALGOR_free(algtmp);
198     return *palg != NULL;
199 }
200