xref: /freebsd/crypto/openssl/fuzz/decoder.c (revision e7be843b4a162e68651d3911f0357ed464915629)
1*e7be843bSPierre Pronchery /*
2*e7be843bSPierre Pronchery  * Copyright 2023-2024 The OpenSSL Project Authors. All Rights Reserved.
3*e7be843bSPierre Pronchery  *
4*e7be843bSPierre Pronchery  * Licensed under the Apache License 2.0 (the "License");
5*e7be843bSPierre Pronchery  * you may not use this file except in compliance with the License.
6*e7be843bSPierre Pronchery  * You may obtain a copy of the License at
7*e7be843bSPierre Pronchery  * https://www.openssl.org/source/license.html
8*e7be843bSPierre Pronchery  * or in the file LICENSE in the source distribution.
9*e7be843bSPierre Pronchery  */
10*e7be843bSPierre Pronchery 
11*e7be843bSPierre Pronchery #include <openssl/decoder.h>
12*e7be843bSPierre Pronchery #include <openssl/err.h>
13*e7be843bSPierre Pronchery #include <openssl/rand.h>
14*e7be843bSPierre Pronchery #include "fuzzer.h"
15*e7be843bSPierre Pronchery 
16*e7be843bSPierre Pronchery static ASN1_PCTX *pctx;
17*e7be843bSPierre Pronchery 
FuzzerInitialize(int * argc,char *** argv)18*e7be843bSPierre Pronchery int FuzzerInitialize(int *argc, char ***argv)
19*e7be843bSPierre Pronchery {
20*e7be843bSPierre Pronchery     FuzzerSetRand();
21*e7be843bSPierre Pronchery 
22*e7be843bSPierre Pronchery     OPENSSL_init_crypto(OPENSSL_INIT_LOAD_CRYPTO_STRINGS
23*e7be843bSPierre Pronchery                         | OPENSSL_INIT_ADD_ALL_CIPHERS
24*e7be843bSPierre Pronchery                         | OPENSSL_INIT_ADD_ALL_DIGESTS, NULL);
25*e7be843bSPierre Pronchery 
26*e7be843bSPierre Pronchery     pctx = ASN1_PCTX_new();
27*e7be843bSPierre Pronchery     ASN1_PCTX_set_flags(pctx, ASN1_PCTX_FLAGS_SHOW_ABSENT
28*e7be843bSPierre Pronchery                               | ASN1_PCTX_FLAGS_SHOW_SEQUENCE
29*e7be843bSPierre Pronchery                               | ASN1_PCTX_FLAGS_SHOW_SSOF
30*e7be843bSPierre Pronchery                               | ASN1_PCTX_FLAGS_SHOW_TYPE
31*e7be843bSPierre Pronchery                               | ASN1_PCTX_FLAGS_SHOW_FIELD_STRUCT_NAME);
32*e7be843bSPierre Pronchery     ASN1_PCTX_set_str_flags(pctx, ASN1_STRFLGS_UTF8_CONVERT
33*e7be843bSPierre Pronchery                                   | ASN1_STRFLGS_SHOW_TYPE
34*e7be843bSPierre Pronchery                                   | ASN1_STRFLGS_DUMP_ALL);
35*e7be843bSPierre Pronchery 
36*e7be843bSPierre Pronchery     ERR_clear_error();
37*e7be843bSPierre Pronchery     CRYPTO_free_ex_index(0, -1);
38*e7be843bSPierre Pronchery     return 1;
39*e7be843bSPierre Pronchery }
40*e7be843bSPierre Pronchery 
FuzzerTestOneInput(const uint8_t * buf,size_t len)41*e7be843bSPierre Pronchery int FuzzerTestOneInput(const uint8_t *buf, size_t len)
42*e7be843bSPierre Pronchery {
43*e7be843bSPierre Pronchery     OSSL_DECODER_CTX *dctx;
44*e7be843bSPierre Pronchery     EVP_PKEY *pkey = NULL;
45*e7be843bSPierre Pronchery     EVP_PKEY_CTX *ctx = NULL;
46*e7be843bSPierre Pronchery     BIO *bio;
47*e7be843bSPierre Pronchery 
48*e7be843bSPierre Pronchery     bio = BIO_new(BIO_s_null());
49*e7be843bSPierre Pronchery     dctx = OSSL_DECODER_CTX_new_for_pkey(&pkey, NULL, NULL, NULL, 0, NULL,
50*e7be843bSPierre Pronchery                                                 NULL);
51*e7be843bSPierre Pronchery     if (dctx == NULL) {
52*e7be843bSPierre Pronchery         return 0;
53*e7be843bSPierre Pronchery     }
54*e7be843bSPierre Pronchery     if (OSSL_DECODER_from_data(dctx, &buf, &len)) {
55*e7be843bSPierre Pronchery         EVP_PKEY *pkey2;
56*e7be843bSPierre Pronchery 
57*e7be843bSPierre Pronchery         EVP_PKEY_print_public(bio, pkey, 1, pctx);
58*e7be843bSPierre Pronchery         EVP_PKEY_print_private(bio, pkey, 1, pctx);
59*e7be843bSPierre Pronchery         EVP_PKEY_print_params(bio, pkey, 1, pctx);
60*e7be843bSPierre Pronchery 
61*e7be843bSPierre Pronchery         pkey2 = EVP_PKEY_dup(pkey);
62*e7be843bSPierre Pronchery         OPENSSL_assert(pkey2 != NULL);
63*e7be843bSPierre Pronchery         EVP_PKEY_eq(pkey, pkey2);
64*e7be843bSPierre Pronchery         EVP_PKEY_free(pkey2);
65*e7be843bSPierre Pronchery 
66*e7be843bSPierre Pronchery         ctx = EVP_PKEY_CTX_new(pkey, NULL);
67*e7be843bSPierre Pronchery         /*
68*e7be843bSPierre Pronchery          * Param check will take too long time on large DH parameters.
69*e7be843bSPierre Pronchery          * Skip it.
70*e7be843bSPierre Pronchery          */
71*e7be843bSPierre Pronchery         if ((!EVP_PKEY_is_a(pkey, "DH") && !EVP_PKEY_is_a(pkey, "DHX"))
72*e7be843bSPierre Pronchery             || EVP_PKEY_get_bits(pkey) <= 2048)
73*e7be843bSPierre Pronchery             EVP_PKEY_param_check(ctx);
74*e7be843bSPierre Pronchery 
75*e7be843bSPierre Pronchery         EVP_PKEY_public_check(ctx);
76*e7be843bSPierre Pronchery         /* Private and pairwise checks are unbounded, skip for large keys. */
77*e7be843bSPierre Pronchery         if (EVP_PKEY_get_bits(pkey) <= 4096) {
78*e7be843bSPierre Pronchery             EVP_PKEY_private_check(ctx);
79*e7be843bSPierre Pronchery             EVP_PKEY_pairwise_check(ctx);
80*e7be843bSPierre Pronchery         }
81*e7be843bSPierre Pronchery         OPENSSL_assert(ctx != NULL);
82*e7be843bSPierre Pronchery         EVP_PKEY_CTX_free(ctx);
83*e7be843bSPierre Pronchery         EVP_PKEY_free(pkey);
84*e7be843bSPierre Pronchery     }
85*e7be843bSPierre Pronchery     OSSL_DECODER_CTX_free(dctx);
86*e7be843bSPierre Pronchery 
87*e7be843bSPierre Pronchery     BIO_free(bio);
88*e7be843bSPierre Pronchery     ERR_clear_error();
89*e7be843bSPierre Pronchery     return 0;
90*e7be843bSPierre Pronchery }
91*e7be843bSPierre Pronchery 
FuzzerCleanup(void)92*e7be843bSPierre Pronchery void FuzzerCleanup(void)
93*e7be843bSPierre Pronchery {
94*e7be843bSPierre Pronchery     ASN1_PCTX_free(pctx);
95*e7be843bSPierre Pronchery     FuzzerClearRand();
96*e7be843bSPierre Pronchery }
97