1c6672fdcSEdison Ai // SPDX-License-Identifier: Apache-2.0 2817466cbSJens Wiklander /* 3817466cbSJens Wiklander * Generic ASN.1 parsing 4817466cbSJens Wiklander * 5817466cbSJens Wiklander * Copyright (C) 2006-2015, ARM Limited, All Rights Reserved 6817466cbSJens Wiklander * 7817466cbSJens Wiklander * Licensed under the Apache License, Version 2.0 (the "License"); you may 8817466cbSJens Wiklander * not use this file except in compliance with the License. 9817466cbSJens Wiklander * You may obtain a copy of the License at 10817466cbSJens Wiklander * 11817466cbSJens Wiklander * http://www.apache.org/licenses/LICENSE-2.0 12817466cbSJens Wiklander * 13817466cbSJens Wiklander * Unless required by applicable law or agreed to in writing, software 14817466cbSJens Wiklander * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT 15817466cbSJens Wiklander * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 16817466cbSJens Wiklander * See the License for the specific language governing permissions and 17817466cbSJens Wiklander * limitations under the License. 18817466cbSJens Wiklander * 19817466cbSJens Wiklander * This file is part of mbed TLS (https://tls.mbed.org) 20817466cbSJens Wiklander */ 21817466cbSJens Wiklander 22817466cbSJens Wiklander #if !defined(MBEDTLS_CONFIG_FILE) 23817466cbSJens Wiklander #include "mbedtls/config.h" 24817466cbSJens Wiklander #else 25817466cbSJens Wiklander #include MBEDTLS_CONFIG_FILE 26817466cbSJens Wiklander #endif 27817466cbSJens Wiklander 28817466cbSJens Wiklander #if defined(MBEDTLS_ASN1_PARSE_C) 29817466cbSJens Wiklander 30817466cbSJens Wiklander #include "mbedtls/asn1.h" 313d3b0591SJens Wiklander #include "mbedtls/platform_util.h" 32*11fa71b9SJerome Forissier #include "mbedtls/error.h" 33817466cbSJens Wiklander 34817466cbSJens Wiklander #include <string.h> 35817466cbSJens Wiklander 36817466cbSJens Wiklander #if defined(MBEDTLS_BIGNUM_C) 37817466cbSJens Wiklander #include "mbedtls/bignum.h" 38817466cbSJens Wiklander #endif 39817466cbSJens Wiklander 40817466cbSJens Wiklander #if defined(MBEDTLS_PLATFORM_C) 41817466cbSJens Wiklander #include "mbedtls/platform.h" 42817466cbSJens Wiklander #else 43817466cbSJens Wiklander #include <stdlib.h> 44817466cbSJens Wiklander #define mbedtls_calloc calloc 45817466cbSJens Wiklander #define mbedtls_free free 46817466cbSJens Wiklander #endif 47817466cbSJens Wiklander 48817466cbSJens Wiklander /* 49817466cbSJens Wiklander * ASN.1 DER decoding routines 50817466cbSJens Wiklander */ 51817466cbSJens Wiklander int mbedtls_asn1_get_len( unsigned char **p, 52817466cbSJens Wiklander const unsigned char *end, 53817466cbSJens Wiklander size_t *len ) 54817466cbSJens Wiklander { 55817466cbSJens Wiklander if( ( end - *p ) < 1 ) 56817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_OUT_OF_DATA ); 57817466cbSJens Wiklander 58817466cbSJens Wiklander if( ( **p & 0x80 ) == 0 ) 59817466cbSJens Wiklander *len = *(*p)++; 60817466cbSJens Wiklander else 61817466cbSJens Wiklander { 62817466cbSJens Wiklander switch( **p & 0x7F ) 63817466cbSJens Wiklander { 64817466cbSJens Wiklander case 1: 65817466cbSJens Wiklander if( ( end - *p ) < 2 ) 66817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_OUT_OF_DATA ); 67817466cbSJens Wiklander 68817466cbSJens Wiklander *len = (*p)[1]; 69817466cbSJens Wiklander (*p) += 2; 70817466cbSJens Wiklander break; 71817466cbSJens Wiklander 72817466cbSJens Wiklander case 2: 73817466cbSJens Wiklander if( ( end - *p ) < 3 ) 74817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_OUT_OF_DATA ); 75817466cbSJens Wiklander 76817466cbSJens Wiklander *len = ( (size_t)(*p)[1] << 8 ) | (*p)[2]; 77817466cbSJens Wiklander (*p) += 3; 78817466cbSJens Wiklander break; 79817466cbSJens Wiklander 80817466cbSJens Wiklander case 3: 81817466cbSJens Wiklander if( ( end - *p ) < 4 ) 82817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_OUT_OF_DATA ); 83817466cbSJens Wiklander 84817466cbSJens Wiklander *len = ( (size_t)(*p)[1] << 16 ) | 85817466cbSJens Wiklander ( (size_t)(*p)[2] << 8 ) | (*p)[3]; 86817466cbSJens Wiklander (*p) += 4; 87817466cbSJens Wiklander break; 88817466cbSJens Wiklander 89817466cbSJens Wiklander case 4: 90817466cbSJens Wiklander if( ( end - *p ) < 5 ) 91817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_OUT_OF_DATA ); 92817466cbSJens Wiklander 93817466cbSJens Wiklander *len = ( (size_t)(*p)[1] << 24 ) | ( (size_t)(*p)[2] << 16 ) | 94817466cbSJens Wiklander ( (size_t)(*p)[3] << 8 ) | (*p)[4]; 95817466cbSJens Wiklander (*p) += 5; 96817466cbSJens Wiklander break; 97817466cbSJens Wiklander 98817466cbSJens Wiklander default: 99817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_INVALID_LENGTH ); 100817466cbSJens Wiklander } 101817466cbSJens Wiklander } 102817466cbSJens Wiklander 103817466cbSJens Wiklander if( *len > (size_t) ( end - *p ) ) 104817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_OUT_OF_DATA ); 105817466cbSJens Wiklander 106817466cbSJens Wiklander return( 0 ); 107817466cbSJens Wiklander } 108817466cbSJens Wiklander 109817466cbSJens Wiklander int mbedtls_asn1_get_tag( unsigned char **p, 110817466cbSJens Wiklander const unsigned char *end, 111817466cbSJens Wiklander size_t *len, int tag ) 112817466cbSJens Wiklander { 113817466cbSJens Wiklander if( ( end - *p ) < 1 ) 114817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_OUT_OF_DATA ); 115817466cbSJens Wiklander 116817466cbSJens Wiklander if( **p != tag ) 117817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_UNEXPECTED_TAG ); 118817466cbSJens Wiklander 119817466cbSJens Wiklander (*p)++; 120817466cbSJens Wiklander 121817466cbSJens Wiklander return( mbedtls_asn1_get_len( p, end, len ) ); 122817466cbSJens Wiklander } 123817466cbSJens Wiklander 124817466cbSJens Wiklander int mbedtls_asn1_get_bool( unsigned char **p, 125817466cbSJens Wiklander const unsigned char *end, 126817466cbSJens Wiklander int *val ) 127817466cbSJens Wiklander { 128*11fa71b9SJerome Forissier int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED; 129817466cbSJens Wiklander size_t len; 130817466cbSJens Wiklander 131817466cbSJens Wiklander if( ( ret = mbedtls_asn1_get_tag( p, end, &len, MBEDTLS_ASN1_BOOLEAN ) ) != 0 ) 132817466cbSJens Wiklander return( ret ); 133817466cbSJens Wiklander 134817466cbSJens Wiklander if( len != 1 ) 135817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_INVALID_LENGTH ); 136817466cbSJens Wiklander 137817466cbSJens Wiklander *val = ( **p != 0 ) ? 1 : 0; 138817466cbSJens Wiklander (*p)++; 139817466cbSJens Wiklander 140817466cbSJens Wiklander return( 0 ); 141817466cbSJens Wiklander } 142817466cbSJens Wiklander 143*11fa71b9SJerome Forissier static int asn1_get_tagged_int( unsigned char **p, 144817466cbSJens Wiklander const unsigned char *end, 145*11fa71b9SJerome Forissier int tag, int *val ) 146817466cbSJens Wiklander { 147*11fa71b9SJerome Forissier int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED; 148817466cbSJens Wiklander size_t len; 149817466cbSJens Wiklander 150*11fa71b9SJerome Forissier if( ( ret = mbedtls_asn1_get_tag( p, end, &len, tag ) ) != 0 ) 151817466cbSJens Wiklander return( ret ); 152817466cbSJens Wiklander 153*11fa71b9SJerome Forissier /* 154*11fa71b9SJerome Forissier * len==0 is malformed (0 must be represented as 020100 for INTEGER, 155*11fa71b9SJerome Forissier * or 0A0100 for ENUMERATED tags 156*11fa71b9SJerome Forissier */ 157*11fa71b9SJerome Forissier if( len == 0 ) 158*11fa71b9SJerome Forissier return( MBEDTLS_ERR_ASN1_INVALID_LENGTH ); 159*11fa71b9SJerome Forissier /* This is a cryptography library. Reject negative integers. */ 160*11fa71b9SJerome Forissier if( ( **p & 0x80 ) != 0 ) 161*11fa71b9SJerome Forissier return( MBEDTLS_ERR_ASN1_INVALID_LENGTH ); 162*11fa71b9SJerome Forissier 163*11fa71b9SJerome Forissier /* Skip leading zeros. */ 164*11fa71b9SJerome Forissier while( len > 0 && **p == 0 ) 165*11fa71b9SJerome Forissier { 166*11fa71b9SJerome Forissier ++( *p ); 167*11fa71b9SJerome Forissier --len; 168*11fa71b9SJerome Forissier } 169*11fa71b9SJerome Forissier 170*11fa71b9SJerome Forissier /* Reject integers that don't fit in an int. This code assumes that 171*11fa71b9SJerome Forissier * the int type has no padding bit. */ 172*11fa71b9SJerome Forissier if( len > sizeof( int ) ) 173*11fa71b9SJerome Forissier return( MBEDTLS_ERR_ASN1_INVALID_LENGTH ); 174*11fa71b9SJerome Forissier if( len == sizeof( int ) && ( **p & 0x80 ) != 0 ) 175817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_INVALID_LENGTH ); 176817466cbSJens Wiklander 177817466cbSJens Wiklander *val = 0; 178817466cbSJens Wiklander while( len-- > 0 ) 179817466cbSJens Wiklander { 180817466cbSJens Wiklander *val = ( *val << 8 ) | **p; 181817466cbSJens Wiklander (*p)++; 182817466cbSJens Wiklander } 183817466cbSJens Wiklander 184817466cbSJens Wiklander return( 0 ); 185817466cbSJens Wiklander } 186817466cbSJens Wiklander 187*11fa71b9SJerome Forissier int mbedtls_asn1_get_int( unsigned char **p, 188*11fa71b9SJerome Forissier const unsigned char *end, 189*11fa71b9SJerome Forissier int *val ) 190*11fa71b9SJerome Forissier { 191*11fa71b9SJerome Forissier return( asn1_get_tagged_int( p, end, MBEDTLS_ASN1_INTEGER, val) ); 192*11fa71b9SJerome Forissier } 193*11fa71b9SJerome Forissier 194*11fa71b9SJerome Forissier int mbedtls_asn1_get_enum( unsigned char **p, 195*11fa71b9SJerome Forissier const unsigned char *end, 196*11fa71b9SJerome Forissier int *val ) 197*11fa71b9SJerome Forissier { 198*11fa71b9SJerome Forissier return( asn1_get_tagged_int( p, end, MBEDTLS_ASN1_ENUMERATED, val) ); 199*11fa71b9SJerome Forissier } 200*11fa71b9SJerome Forissier 201817466cbSJens Wiklander #if defined(MBEDTLS_BIGNUM_C) 202817466cbSJens Wiklander int mbedtls_asn1_get_mpi( unsigned char **p, 203817466cbSJens Wiklander const unsigned char *end, 204817466cbSJens Wiklander mbedtls_mpi *X ) 205817466cbSJens Wiklander { 206*11fa71b9SJerome Forissier int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED; 207817466cbSJens Wiklander size_t len; 208817466cbSJens Wiklander 209817466cbSJens Wiklander if( ( ret = mbedtls_asn1_get_tag( p, end, &len, MBEDTLS_ASN1_INTEGER ) ) != 0 ) 210817466cbSJens Wiklander return( ret ); 211817466cbSJens Wiklander 212817466cbSJens Wiklander ret = mbedtls_mpi_read_binary( X, *p, len ); 213817466cbSJens Wiklander 214817466cbSJens Wiklander *p += len; 215817466cbSJens Wiklander 216817466cbSJens Wiklander return( ret ); 217817466cbSJens Wiklander } 218817466cbSJens Wiklander #endif /* MBEDTLS_BIGNUM_C */ 219817466cbSJens Wiklander 220817466cbSJens Wiklander int mbedtls_asn1_get_bitstring( unsigned char **p, const unsigned char *end, 221817466cbSJens Wiklander mbedtls_asn1_bitstring *bs) 222817466cbSJens Wiklander { 223*11fa71b9SJerome Forissier int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED; 224817466cbSJens Wiklander 225817466cbSJens Wiklander /* Certificate type is a single byte bitstring */ 226817466cbSJens Wiklander if( ( ret = mbedtls_asn1_get_tag( p, end, &bs->len, MBEDTLS_ASN1_BIT_STRING ) ) != 0 ) 227817466cbSJens Wiklander return( ret ); 228817466cbSJens Wiklander 229817466cbSJens Wiklander /* Check length, subtract one for actual bit string length */ 230817466cbSJens Wiklander if( bs->len < 1 ) 231817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_OUT_OF_DATA ); 232817466cbSJens Wiklander bs->len -= 1; 233817466cbSJens Wiklander 234817466cbSJens Wiklander /* Get number of unused bits, ensure unused bits <= 7 */ 235817466cbSJens Wiklander bs->unused_bits = **p; 236817466cbSJens Wiklander if( bs->unused_bits > 7 ) 237817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_INVALID_LENGTH ); 238817466cbSJens Wiklander (*p)++; 239817466cbSJens Wiklander 240817466cbSJens Wiklander /* Get actual bitstring */ 241817466cbSJens Wiklander bs->p = *p; 242817466cbSJens Wiklander *p += bs->len; 243817466cbSJens Wiklander 244817466cbSJens Wiklander if( *p != end ) 245817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_LENGTH_MISMATCH ); 246817466cbSJens Wiklander 247817466cbSJens Wiklander return( 0 ); 248817466cbSJens Wiklander } 249817466cbSJens Wiklander 250817466cbSJens Wiklander /* 251*11fa71b9SJerome Forissier * Traverse an ASN.1 "SEQUENCE OF <tag>" 252*11fa71b9SJerome Forissier * and call a callback for each entry found. 253*11fa71b9SJerome Forissier */ 254*11fa71b9SJerome Forissier int mbedtls_asn1_traverse_sequence_of( 255*11fa71b9SJerome Forissier unsigned char **p, 256*11fa71b9SJerome Forissier const unsigned char *end, 257*11fa71b9SJerome Forissier unsigned char tag_must_mask, unsigned char tag_must_val, 258*11fa71b9SJerome Forissier unsigned char tag_may_mask, unsigned char tag_may_val, 259*11fa71b9SJerome Forissier int (*cb)( void *ctx, int tag, 260*11fa71b9SJerome Forissier unsigned char *start, size_t len ), 261*11fa71b9SJerome Forissier void *ctx ) 262*11fa71b9SJerome Forissier { 263*11fa71b9SJerome Forissier int ret; 264*11fa71b9SJerome Forissier size_t len; 265*11fa71b9SJerome Forissier 266*11fa71b9SJerome Forissier /* Get main sequence tag */ 267*11fa71b9SJerome Forissier if( ( ret = mbedtls_asn1_get_tag( p, end, &len, 268*11fa71b9SJerome Forissier MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE ) ) != 0 ) 269*11fa71b9SJerome Forissier { 270*11fa71b9SJerome Forissier return( ret ); 271*11fa71b9SJerome Forissier } 272*11fa71b9SJerome Forissier 273*11fa71b9SJerome Forissier if( *p + len != end ) 274*11fa71b9SJerome Forissier return( MBEDTLS_ERR_ASN1_LENGTH_MISMATCH ); 275*11fa71b9SJerome Forissier 276*11fa71b9SJerome Forissier while( *p < end ) 277*11fa71b9SJerome Forissier { 278*11fa71b9SJerome Forissier unsigned char const tag = *(*p)++; 279*11fa71b9SJerome Forissier 280*11fa71b9SJerome Forissier if( ( tag & tag_must_mask ) != tag_must_val ) 281*11fa71b9SJerome Forissier return( MBEDTLS_ERR_ASN1_UNEXPECTED_TAG ); 282*11fa71b9SJerome Forissier 283*11fa71b9SJerome Forissier if( ( ret = mbedtls_asn1_get_len( p, end, &len ) ) != 0 ) 284*11fa71b9SJerome Forissier return( ret ); 285*11fa71b9SJerome Forissier 286*11fa71b9SJerome Forissier if( ( tag & tag_may_mask ) == tag_may_val ) 287*11fa71b9SJerome Forissier { 288*11fa71b9SJerome Forissier if( cb != NULL ) 289*11fa71b9SJerome Forissier { 290*11fa71b9SJerome Forissier ret = cb( ctx, tag, *p, len ); 291*11fa71b9SJerome Forissier if( ret != 0 ) 292*11fa71b9SJerome Forissier return( ret ); 293*11fa71b9SJerome Forissier } 294*11fa71b9SJerome Forissier } 295*11fa71b9SJerome Forissier 296*11fa71b9SJerome Forissier *p += len; 297*11fa71b9SJerome Forissier } 298*11fa71b9SJerome Forissier 299*11fa71b9SJerome Forissier return( 0 ); 300*11fa71b9SJerome Forissier } 301*11fa71b9SJerome Forissier 302*11fa71b9SJerome Forissier /* 303817466cbSJens Wiklander * Get a bit string without unused bits 304817466cbSJens Wiklander */ 305817466cbSJens Wiklander int mbedtls_asn1_get_bitstring_null( unsigned char **p, const unsigned char *end, 306817466cbSJens Wiklander size_t *len ) 307817466cbSJens Wiklander { 308*11fa71b9SJerome Forissier int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED; 309817466cbSJens Wiklander 310817466cbSJens Wiklander if( ( ret = mbedtls_asn1_get_tag( p, end, len, MBEDTLS_ASN1_BIT_STRING ) ) != 0 ) 311817466cbSJens Wiklander return( ret ); 312817466cbSJens Wiklander 313*11fa71b9SJerome Forissier if( *len == 0 ) 314817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_INVALID_DATA ); 315*11fa71b9SJerome Forissier --( *len ); 316*11fa71b9SJerome Forissier 317*11fa71b9SJerome Forissier if( **p != 0 ) 318*11fa71b9SJerome Forissier return( MBEDTLS_ERR_ASN1_INVALID_DATA ); 319*11fa71b9SJerome Forissier ++( *p ); 320817466cbSJens Wiklander 321817466cbSJens Wiklander return( 0 ); 322817466cbSJens Wiklander } 323817466cbSJens Wiklander 324*11fa71b9SJerome Forissier void mbedtls_asn1_sequence_free( mbedtls_asn1_sequence *seq ) 325*11fa71b9SJerome Forissier { 326*11fa71b9SJerome Forissier while( seq != NULL ) 327*11fa71b9SJerome Forissier { 328*11fa71b9SJerome Forissier mbedtls_asn1_sequence *next = seq->next; 329*11fa71b9SJerome Forissier mbedtls_platform_zeroize( seq, sizeof( *seq ) ); 330*11fa71b9SJerome Forissier mbedtls_free( seq ); 331*11fa71b9SJerome Forissier seq = next; 332*11fa71b9SJerome Forissier } 333*11fa71b9SJerome Forissier } 334817466cbSJens Wiklander 335*11fa71b9SJerome Forissier typedef struct 336*11fa71b9SJerome Forissier { 337*11fa71b9SJerome Forissier int tag; 338*11fa71b9SJerome Forissier mbedtls_asn1_sequence *cur; 339*11fa71b9SJerome Forissier } asn1_get_sequence_of_cb_ctx_t; 340*11fa71b9SJerome Forissier 341*11fa71b9SJerome Forissier static int asn1_get_sequence_of_cb( void *ctx, 342*11fa71b9SJerome Forissier int tag, 343*11fa71b9SJerome Forissier unsigned char *start, 344*11fa71b9SJerome Forissier size_t len ) 345*11fa71b9SJerome Forissier { 346*11fa71b9SJerome Forissier asn1_get_sequence_of_cb_ctx_t *cb_ctx = 347*11fa71b9SJerome Forissier (asn1_get_sequence_of_cb_ctx_t *) ctx; 348*11fa71b9SJerome Forissier mbedtls_asn1_sequence *cur = 349*11fa71b9SJerome Forissier cb_ctx->cur; 350*11fa71b9SJerome Forissier 351*11fa71b9SJerome Forissier if( cur->buf.p != NULL ) 352*11fa71b9SJerome Forissier { 353*11fa71b9SJerome Forissier cur->next = 354*11fa71b9SJerome Forissier mbedtls_calloc( 1, sizeof( mbedtls_asn1_sequence ) ); 355*11fa71b9SJerome Forissier 356*11fa71b9SJerome Forissier if( cur->next == NULL ) 357*11fa71b9SJerome Forissier return( MBEDTLS_ERR_ASN1_ALLOC_FAILED ); 358*11fa71b9SJerome Forissier 359*11fa71b9SJerome Forissier cur = cur->next; 360*11fa71b9SJerome Forissier } 361*11fa71b9SJerome Forissier 362*11fa71b9SJerome Forissier cur->buf.p = start; 363*11fa71b9SJerome Forissier cur->buf.len = len; 364*11fa71b9SJerome Forissier cur->buf.tag = tag; 365*11fa71b9SJerome Forissier 366*11fa71b9SJerome Forissier cb_ctx->cur = cur; 367*11fa71b9SJerome Forissier return( 0 ); 368*11fa71b9SJerome Forissier } 369817466cbSJens Wiklander 370817466cbSJens Wiklander /* 371817466cbSJens Wiklander * Parses and splits an ASN.1 "SEQUENCE OF <tag>" 372817466cbSJens Wiklander */ 373817466cbSJens Wiklander int mbedtls_asn1_get_sequence_of( unsigned char **p, 374817466cbSJens Wiklander const unsigned char *end, 375817466cbSJens Wiklander mbedtls_asn1_sequence *cur, 376817466cbSJens Wiklander int tag) 377817466cbSJens Wiklander { 378*11fa71b9SJerome Forissier asn1_get_sequence_of_cb_ctx_t cb_ctx = { tag, cur }; 379*11fa71b9SJerome Forissier memset( cur, 0, sizeof( mbedtls_asn1_sequence ) ); 380*11fa71b9SJerome Forissier return( mbedtls_asn1_traverse_sequence_of( 381*11fa71b9SJerome Forissier p, end, 0xFF, tag, 0, 0, 382*11fa71b9SJerome Forissier asn1_get_sequence_of_cb, &cb_ctx ) ); 383817466cbSJens Wiklander } 384817466cbSJens Wiklander 385817466cbSJens Wiklander int mbedtls_asn1_get_alg( unsigned char **p, 386817466cbSJens Wiklander const unsigned char *end, 387817466cbSJens Wiklander mbedtls_asn1_buf *alg, mbedtls_asn1_buf *params ) 388817466cbSJens Wiklander { 389*11fa71b9SJerome Forissier int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED; 390817466cbSJens Wiklander size_t len; 391817466cbSJens Wiklander 392817466cbSJens Wiklander if( ( ret = mbedtls_asn1_get_tag( p, end, &len, 393817466cbSJens Wiklander MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE ) ) != 0 ) 394817466cbSJens Wiklander return( ret ); 395817466cbSJens Wiklander 396817466cbSJens Wiklander if( ( end - *p ) < 1 ) 397817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_OUT_OF_DATA ); 398817466cbSJens Wiklander 399817466cbSJens Wiklander alg->tag = **p; 400817466cbSJens Wiklander end = *p + len; 401817466cbSJens Wiklander 402817466cbSJens Wiklander if( ( ret = mbedtls_asn1_get_tag( p, end, &alg->len, MBEDTLS_ASN1_OID ) ) != 0 ) 403817466cbSJens Wiklander return( ret ); 404817466cbSJens Wiklander 405817466cbSJens Wiklander alg->p = *p; 406817466cbSJens Wiklander *p += alg->len; 407817466cbSJens Wiklander 408817466cbSJens Wiklander if( *p == end ) 409817466cbSJens Wiklander { 4103d3b0591SJens Wiklander mbedtls_platform_zeroize( params, sizeof(mbedtls_asn1_buf) ); 411817466cbSJens Wiklander return( 0 ); 412817466cbSJens Wiklander } 413817466cbSJens Wiklander 414817466cbSJens Wiklander params->tag = **p; 415817466cbSJens Wiklander (*p)++; 416817466cbSJens Wiklander 417817466cbSJens Wiklander if( ( ret = mbedtls_asn1_get_len( p, end, ¶ms->len ) ) != 0 ) 418817466cbSJens Wiklander return( ret ); 419817466cbSJens Wiklander 420817466cbSJens Wiklander params->p = *p; 421817466cbSJens Wiklander *p += params->len; 422817466cbSJens Wiklander 423817466cbSJens Wiklander if( *p != end ) 424817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_LENGTH_MISMATCH ); 425817466cbSJens Wiklander 426817466cbSJens Wiklander return( 0 ); 427817466cbSJens Wiklander } 428817466cbSJens Wiklander 429817466cbSJens Wiklander int mbedtls_asn1_get_alg_null( unsigned char **p, 430817466cbSJens Wiklander const unsigned char *end, 431817466cbSJens Wiklander mbedtls_asn1_buf *alg ) 432817466cbSJens Wiklander { 433*11fa71b9SJerome Forissier int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED; 434817466cbSJens Wiklander mbedtls_asn1_buf params; 435817466cbSJens Wiklander 436817466cbSJens Wiklander memset( ¶ms, 0, sizeof(mbedtls_asn1_buf) ); 437817466cbSJens Wiklander 438817466cbSJens Wiklander if( ( ret = mbedtls_asn1_get_alg( p, end, alg, ¶ms ) ) != 0 ) 439817466cbSJens Wiklander return( ret ); 440817466cbSJens Wiklander 441817466cbSJens Wiklander if( ( params.tag != MBEDTLS_ASN1_NULL && params.tag != 0 ) || params.len != 0 ) 442817466cbSJens Wiklander return( MBEDTLS_ERR_ASN1_INVALID_DATA ); 443817466cbSJens Wiklander 444817466cbSJens Wiklander return( 0 ); 445817466cbSJens Wiklander } 446817466cbSJens Wiklander 447817466cbSJens Wiklander void mbedtls_asn1_free_named_data( mbedtls_asn1_named_data *cur ) 448817466cbSJens Wiklander { 449817466cbSJens Wiklander if( cur == NULL ) 450817466cbSJens Wiklander return; 451817466cbSJens Wiklander 452817466cbSJens Wiklander mbedtls_free( cur->oid.p ); 453817466cbSJens Wiklander mbedtls_free( cur->val.p ); 454817466cbSJens Wiklander 4553d3b0591SJens Wiklander mbedtls_platform_zeroize( cur, sizeof( mbedtls_asn1_named_data ) ); 456817466cbSJens Wiklander } 457817466cbSJens Wiklander 458817466cbSJens Wiklander void mbedtls_asn1_free_named_data_list( mbedtls_asn1_named_data **head ) 459817466cbSJens Wiklander { 460817466cbSJens Wiklander mbedtls_asn1_named_data *cur; 461817466cbSJens Wiklander 462817466cbSJens Wiklander while( ( cur = *head ) != NULL ) 463817466cbSJens Wiklander { 464817466cbSJens Wiklander *head = cur->next; 465817466cbSJens Wiklander mbedtls_asn1_free_named_data( cur ); 466817466cbSJens Wiklander mbedtls_free( cur ); 467817466cbSJens Wiklander } 468817466cbSJens Wiklander } 469817466cbSJens Wiklander 470817466cbSJens Wiklander mbedtls_asn1_named_data *mbedtls_asn1_find_named_data( mbedtls_asn1_named_data *list, 471817466cbSJens Wiklander const char *oid, size_t len ) 472817466cbSJens Wiklander { 473817466cbSJens Wiklander while( list != NULL ) 474817466cbSJens Wiklander { 475817466cbSJens Wiklander if( list->oid.len == len && 476817466cbSJens Wiklander memcmp( list->oid.p, oid, len ) == 0 ) 477817466cbSJens Wiklander { 478817466cbSJens Wiklander break; 479817466cbSJens Wiklander } 480817466cbSJens Wiklander 481817466cbSJens Wiklander list = list->next; 482817466cbSJens Wiklander } 483817466cbSJens Wiklander 484817466cbSJens Wiklander return( list ); 485817466cbSJens Wiklander } 486817466cbSJens Wiklander 487817466cbSJens Wiklander #endif /* MBEDTLS_ASN1_PARSE_C */ 488