1c6672fdcSEdison Ai // SPDX-License-Identifier: Apache-2.0 2817466cbSJens Wiklander /* 3817466cbSJens Wiklander * RFC 1321 compliant MD5 implementation 4817466cbSJens Wiklander * 5817466cbSJens Wiklander * Copyright (C) 2006-2015, ARM Limited, All Rights Reserved 6817466cbSJens Wiklander * 7817466cbSJens Wiklander * Licensed under the Apache License, Version 2.0 (the "License"); you may 8817466cbSJens Wiklander * not use this file except in compliance with the License. 9817466cbSJens Wiklander * You may obtain a copy of the License at 10817466cbSJens Wiklander * 11817466cbSJens Wiklander * http://www.apache.org/licenses/LICENSE-2.0 12817466cbSJens Wiklander * 13817466cbSJens Wiklander * Unless required by applicable law or agreed to in writing, software 14817466cbSJens Wiklander * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT 15817466cbSJens Wiklander * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 16817466cbSJens Wiklander * See the License for the specific language governing permissions and 17817466cbSJens Wiklander * limitations under the License. 18817466cbSJens Wiklander * 19817466cbSJens Wiklander * This file is part of mbed TLS (https://tls.mbed.org) 20817466cbSJens Wiklander */ 21817466cbSJens Wiklander /* 22817466cbSJens Wiklander * The MD5 algorithm was designed by Ron Rivest in 1991. 23817466cbSJens Wiklander * 24817466cbSJens Wiklander * http://www.ietf.org/rfc/rfc1321.txt 25817466cbSJens Wiklander */ 26817466cbSJens Wiklander 27817466cbSJens Wiklander #if !defined(MBEDTLS_CONFIG_FILE) 28817466cbSJens Wiklander #include "mbedtls/config.h" 29817466cbSJens Wiklander #else 30817466cbSJens Wiklander #include MBEDTLS_CONFIG_FILE 31817466cbSJens Wiklander #endif 32817466cbSJens Wiklander 33817466cbSJens Wiklander #if defined(MBEDTLS_MD5_C) 34817466cbSJens Wiklander 35817466cbSJens Wiklander #include "mbedtls/md5.h" 36*3d3b0591SJens Wiklander #include "mbedtls/platform_util.h" 37817466cbSJens Wiklander 38817466cbSJens Wiklander #include <string.h> 39817466cbSJens Wiklander 40817466cbSJens Wiklander #if defined(MBEDTLS_SELF_TEST) 41817466cbSJens Wiklander #if defined(MBEDTLS_PLATFORM_C) 42817466cbSJens Wiklander #include "mbedtls/platform.h" 43817466cbSJens Wiklander #else 44817466cbSJens Wiklander #include <stdio.h> 45817466cbSJens Wiklander #define mbedtls_printf printf 46817466cbSJens Wiklander #endif /* MBEDTLS_PLATFORM_C */ 47817466cbSJens Wiklander #endif /* MBEDTLS_SELF_TEST */ 48817466cbSJens Wiklander 49817466cbSJens Wiklander #if !defined(MBEDTLS_MD5_ALT) 50817466cbSJens Wiklander 51817466cbSJens Wiklander /* 52817466cbSJens Wiklander * 32-bit integer manipulation macros (little endian) 53817466cbSJens Wiklander */ 54817466cbSJens Wiklander #ifndef GET_UINT32_LE 55817466cbSJens Wiklander #define GET_UINT32_LE(n,b,i) \ 56817466cbSJens Wiklander { \ 57817466cbSJens Wiklander (n) = ( (uint32_t) (b)[(i) ] ) \ 58817466cbSJens Wiklander | ( (uint32_t) (b)[(i) + 1] << 8 ) \ 59817466cbSJens Wiklander | ( (uint32_t) (b)[(i) + 2] << 16 ) \ 60817466cbSJens Wiklander | ( (uint32_t) (b)[(i) + 3] << 24 ); \ 61817466cbSJens Wiklander } 62817466cbSJens Wiklander #endif 63817466cbSJens Wiklander 64817466cbSJens Wiklander #ifndef PUT_UINT32_LE 65817466cbSJens Wiklander #define PUT_UINT32_LE(n,b,i) \ 66817466cbSJens Wiklander { \ 67817466cbSJens Wiklander (b)[(i) ] = (unsigned char) ( ( (n) ) & 0xFF ); \ 68817466cbSJens Wiklander (b)[(i) + 1] = (unsigned char) ( ( (n) >> 8 ) & 0xFF ); \ 69817466cbSJens Wiklander (b)[(i) + 2] = (unsigned char) ( ( (n) >> 16 ) & 0xFF ); \ 70817466cbSJens Wiklander (b)[(i) + 3] = (unsigned char) ( ( (n) >> 24 ) & 0xFF ); \ 71817466cbSJens Wiklander } 72817466cbSJens Wiklander #endif 73817466cbSJens Wiklander 74817466cbSJens Wiklander void mbedtls_md5_init( mbedtls_md5_context *ctx ) 75817466cbSJens Wiklander { 76817466cbSJens Wiklander memset( ctx, 0, sizeof( mbedtls_md5_context ) ); 77817466cbSJens Wiklander } 78817466cbSJens Wiklander 79817466cbSJens Wiklander void mbedtls_md5_free( mbedtls_md5_context *ctx ) 80817466cbSJens Wiklander { 81817466cbSJens Wiklander if( ctx == NULL ) 82817466cbSJens Wiklander return; 83817466cbSJens Wiklander 84*3d3b0591SJens Wiklander mbedtls_platform_zeroize( ctx, sizeof( mbedtls_md5_context ) ); 85817466cbSJens Wiklander } 86817466cbSJens Wiklander 87817466cbSJens Wiklander void mbedtls_md5_clone( mbedtls_md5_context *dst, 88817466cbSJens Wiklander const mbedtls_md5_context *src ) 89817466cbSJens Wiklander { 90817466cbSJens Wiklander *dst = *src; 91817466cbSJens Wiklander } 92817466cbSJens Wiklander 93817466cbSJens Wiklander /* 94817466cbSJens Wiklander * MD5 context setup 95817466cbSJens Wiklander */ 96*3d3b0591SJens Wiklander int mbedtls_md5_starts_ret( mbedtls_md5_context *ctx ) 97817466cbSJens Wiklander { 98817466cbSJens Wiklander ctx->total[0] = 0; 99817466cbSJens Wiklander ctx->total[1] = 0; 100817466cbSJens Wiklander 101817466cbSJens Wiklander ctx->state[0] = 0x67452301; 102817466cbSJens Wiklander ctx->state[1] = 0xEFCDAB89; 103817466cbSJens Wiklander ctx->state[2] = 0x98BADCFE; 104817466cbSJens Wiklander ctx->state[3] = 0x10325476; 105*3d3b0591SJens Wiklander 106*3d3b0591SJens Wiklander return( 0 ); 107817466cbSJens Wiklander } 108817466cbSJens Wiklander 109*3d3b0591SJens Wiklander #if !defined(MBEDTLS_DEPRECATED_REMOVED) 110*3d3b0591SJens Wiklander void mbedtls_md5_starts( mbedtls_md5_context *ctx ) 111*3d3b0591SJens Wiklander { 112*3d3b0591SJens Wiklander mbedtls_md5_starts_ret( ctx ); 113*3d3b0591SJens Wiklander } 114*3d3b0591SJens Wiklander #endif 115*3d3b0591SJens Wiklander 116817466cbSJens Wiklander #if !defined(MBEDTLS_MD5_PROCESS_ALT) 117*3d3b0591SJens Wiklander int mbedtls_internal_md5_process( mbedtls_md5_context *ctx, 118*3d3b0591SJens Wiklander const unsigned char data[64] ) 119817466cbSJens Wiklander { 120817466cbSJens Wiklander uint32_t X[16], A, B, C, D; 121817466cbSJens Wiklander 122817466cbSJens Wiklander GET_UINT32_LE( X[ 0], data, 0 ); 123817466cbSJens Wiklander GET_UINT32_LE( X[ 1], data, 4 ); 124817466cbSJens Wiklander GET_UINT32_LE( X[ 2], data, 8 ); 125817466cbSJens Wiklander GET_UINT32_LE( X[ 3], data, 12 ); 126817466cbSJens Wiklander GET_UINT32_LE( X[ 4], data, 16 ); 127817466cbSJens Wiklander GET_UINT32_LE( X[ 5], data, 20 ); 128817466cbSJens Wiklander GET_UINT32_LE( X[ 6], data, 24 ); 129817466cbSJens Wiklander GET_UINT32_LE( X[ 7], data, 28 ); 130817466cbSJens Wiklander GET_UINT32_LE( X[ 8], data, 32 ); 131817466cbSJens Wiklander GET_UINT32_LE( X[ 9], data, 36 ); 132817466cbSJens Wiklander GET_UINT32_LE( X[10], data, 40 ); 133817466cbSJens Wiklander GET_UINT32_LE( X[11], data, 44 ); 134817466cbSJens Wiklander GET_UINT32_LE( X[12], data, 48 ); 135817466cbSJens Wiklander GET_UINT32_LE( X[13], data, 52 ); 136817466cbSJens Wiklander GET_UINT32_LE( X[14], data, 56 ); 137817466cbSJens Wiklander GET_UINT32_LE( X[15], data, 60 ); 138817466cbSJens Wiklander 139817466cbSJens Wiklander #define S(x,n) ((x << n) | ((x & 0xFFFFFFFF) >> (32 - n))) 140817466cbSJens Wiklander 141817466cbSJens Wiklander #define P(a,b,c,d,k,s,t) \ 142817466cbSJens Wiklander { \ 143817466cbSJens Wiklander a += F(b,c,d) + X[k] + t; a = S(a,s) + b; \ 144817466cbSJens Wiklander } 145817466cbSJens Wiklander 146817466cbSJens Wiklander A = ctx->state[0]; 147817466cbSJens Wiklander B = ctx->state[1]; 148817466cbSJens Wiklander C = ctx->state[2]; 149817466cbSJens Wiklander D = ctx->state[3]; 150817466cbSJens Wiklander 151817466cbSJens Wiklander #define F(x,y,z) (z ^ (x & (y ^ z))) 152817466cbSJens Wiklander 153817466cbSJens Wiklander P( A, B, C, D, 0, 7, 0xD76AA478 ); 154817466cbSJens Wiklander P( D, A, B, C, 1, 12, 0xE8C7B756 ); 155817466cbSJens Wiklander P( C, D, A, B, 2, 17, 0x242070DB ); 156817466cbSJens Wiklander P( B, C, D, A, 3, 22, 0xC1BDCEEE ); 157817466cbSJens Wiklander P( A, B, C, D, 4, 7, 0xF57C0FAF ); 158817466cbSJens Wiklander P( D, A, B, C, 5, 12, 0x4787C62A ); 159817466cbSJens Wiklander P( C, D, A, B, 6, 17, 0xA8304613 ); 160817466cbSJens Wiklander P( B, C, D, A, 7, 22, 0xFD469501 ); 161817466cbSJens Wiklander P( A, B, C, D, 8, 7, 0x698098D8 ); 162817466cbSJens Wiklander P( D, A, B, C, 9, 12, 0x8B44F7AF ); 163817466cbSJens Wiklander P( C, D, A, B, 10, 17, 0xFFFF5BB1 ); 164817466cbSJens Wiklander P( B, C, D, A, 11, 22, 0x895CD7BE ); 165817466cbSJens Wiklander P( A, B, C, D, 12, 7, 0x6B901122 ); 166817466cbSJens Wiklander P( D, A, B, C, 13, 12, 0xFD987193 ); 167817466cbSJens Wiklander P( C, D, A, B, 14, 17, 0xA679438E ); 168817466cbSJens Wiklander P( B, C, D, A, 15, 22, 0x49B40821 ); 169817466cbSJens Wiklander 170817466cbSJens Wiklander #undef F 171817466cbSJens Wiklander 172817466cbSJens Wiklander #define F(x,y,z) (y ^ (z & (x ^ y))) 173817466cbSJens Wiklander 174817466cbSJens Wiklander P( A, B, C, D, 1, 5, 0xF61E2562 ); 175817466cbSJens Wiklander P( D, A, B, C, 6, 9, 0xC040B340 ); 176817466cbSJens Wiklander P( C, D, A, B, 11, 14, 0x265E5A51 ); 177817466cbSJens Wiklander P( B, C, D, A, 0, 20, 0xE9B6C7AA ); 178817466cbSJens Wiklander P( A, B, C, D, 5, 5, 0xD62F105D ); 179817466cbSJens Wiklander P( D, A, B, C, 10, 9, 0x02441453 ); 180817466cbSJens Wiklander P( C, D, A, B, 15, 14, 0xD8A1E681 ); 181817466cbSJens Wiklander P( B, C, D, A, 4, 20, 0xE7D3FBC8 ); 182817466cbSJens Wiklander P( A, B, C, D, 9, 5, 0x21E1CDE6 ); 183817466cbSJens Wiklander P( D, A, B, C, 14, 9, 0xC33707D6 ); 184817466cbSJens Wiklander P( C, D, A, B, 3, 14, 0xF4D50D87 ); 185817466cbSJens Wiklander P( B, C, D, A, 8, 20, 0x455A14ED ); 186817466cbSJens Wiklander P( A, B, C, D, 13, 5, 0xA9E3E905 ); 187817466cbSJens Wiklander P( D, A, B, C, 2, 9, 0xFCEFA3F8 ); 188817466cbSJens Wiklander P( C, D, A, B, 7, 14, 0x676F02D9 ); 189817466cbSJens Wiklander P( B, C, D, A, 12, 20, 0x8D2A4C8A ); 190817466cbSJens Wiklander 191817466cbSJens Wiklander #undef F 192817466cbSJens Wiklander 193817466cbSJens Wiklander #define F(x,y,z) (x ^ y ^ z) 194817466cbSJens Wiklander 195817466cbSJens Wiklander P( A, B, C, D, 5, 4, 0xFFFA3942 ); 196817466cbSJens Wiklander P( D, A, B, C, 8, 11, 0x8771F681 ); 197817466cbSJens Wiklander P( C, D, A, B, 11, 16, 0x6D9D6122 ); 198817466cbSJens Wiklander P( B, C, D, A, 14, 23, 0xFDE5380C ); 199817466cbSJens Wiklander P( A, B, C, D, 1, 4, 0xA4BEEA44 ); 200817466cbSJens Wiklander P( D, A, B, C, 4, 11, 0x4BDECFA9 ); 201817466cbSJens Wiklander P( C, D, A, B, 7, 16, 0xF6BB4B60 ); 202817466cbSJens Wiklander P( B, C, D, A, 10, 23, 0xBEBFBC70 ); 203817466cbSJens Wiklander P( A, B, C, D, 13, 4, 0x289B7EC6 ); 204817466cbSJens Wiklander P( D, A, B, C, 0, 11, 0xEAA127FA ); 205817466cbSJens Wiklander P( C, D, A, B, 3, 16, 0xD4EF3085 ); 206817466cbSJens Wiklander P( B, C, D, A, 6, 23, 0x04881D05 ); 207817466cbSJens Wiklander P( A, B, C, D, 9, 4, 0xD9D4D039 ); 208817466cbSJens Wiklander P( D, A, B, C, 12, 11, 0xE6DB99E5 ); 209817466cbSJens Wiklander P( C, D, A, B, 15, 16, 0x1FA27CF8 ); 210817466cbSJens Wiklander P( B, C, D, A, 2, 23, 0xC4AC5665 ); 211817466cbSJens Wiklander 212817466cbSJens Wiklander #undef F 213817466cbSJens Wiklander 214817466cbSJens Wiklander #define F(x,y,z) (y ^ (x | ~z)) 215817466cbSJens Wiklander 216817466cbSJens Wiklander P( A, B, C, D, 0, 6, 0xF4292244 ); 217817466cbSJens Wiklander P( D, A, B, C, 7, 10, 0x432AFF97 ); 218817466cbSJens Wiklander P( C, D, A, B, 14, 15, 0xAB9423A7 ); 219817466cbSJens Wiklander P( B, C, D, A, 5, 21, 0xFC93A039 ); 220817466cbSJens Wiklander P( A, B, C, D, 12, 6, 0x655B59C3 ); 221817466cbSJens Wiklander P( D, A, B, C, 3, 10, 0x8F0CCC92 ); 222817466cbSJens Wiklander P( C, D, A, B, 10, 15, 0xFFEFF47D ); 223817466cbSJens Wiklander P( B, C, D, A, 1, 21, 0x85845DD1 ); 224817466cbSJens Wiklander P( A, B, C, D, 8, 6, 0x6FA87E4F ); 225817466cbSJens Wiklander P( D, A, B, C, 15, 10, 0xFE2CE6E0 ); 226817466cbSJens Wiklander P( C, D, A, B, 6, 15, 0xA3014314 ); 227817466cbSJens Wiklander P( B, C, D, A, 13, 21, 0x4E0811A1 ); 228817466cbSJens Wiklander P( A, B, C, D, 4, 6, 0xF7537E82 ); 229817466cbSJens Wiklander P( D, A, B, C, 11, 10, 0xBD3AF235 ); 230817466cbSJens Wiklander P( C, D, A, B, 2, 15, 0x2AD7D2BB ); 231817466cbSJens Wiklander P( B, C, D, A, 9, 21, 0xEB86D391 ); 232817466cbSJens Wiklander 233817466cbSJens Wiklander #undef F 234817466cbSJens Wiklander 235817466cbSJens Wiklander ctx->state[0] += A; 236817466cbSJens Wiklander ctx->state[1] += B; 237817466cbSJens Wiklander ctx->state[2] += C; 238817466cbSJens Wiklander ctx->state[3] += D; 239*3d3b0591SJens Wiklander 240*3d3b0591SJens Wiklander return( 0 ); 241817466cbSJens Wiklander } 242*3d3b0591SJens Wiklander 243*3d3b0591SJens Wiklander #if !defined(MBEDTLS_DEPRECATED_REMOVED) 244*3d3b0591SJens Wiklander void mbedtls_md5_process( mbedtls_md5_context *ctx, 245*3d3b0591SJens Wiklander const unsigned char data[64] ) 246*3d3b0591SJens Wiklander { 247*3d3b0591SJens Wiklander mbedtls_internal_md5_process( ctx, data ); 248*3d3b0591SJens Wiklander } 249*3d3b0591SJens Wiklander #endif 250817466cbSJens Wiklander #endif /* !MBEDTLS_MD5_PROCESS_ALT */ 251817466cbSJens Wiklander 252817466cbSJens Wiklander /* 253817466cbSJens Wiklander * MD5 process buffer 254817466cbSJens Wiklander */ 255*3d3b0591SJens Wiklander int mbedtls_md5_update_ret( mbedtls_md5_context *ctx, 256*3d3b0591SJens Wiklander const unsigned char *input, 257*3d3b0591SJens Wiklander size_t ilen ) 258817466cbSJens Wiklander { 259*3d3b0591SJens Wiklander int ret; 260817466cbSJens Wiklander size_t fill; 261817466cbSJens Wiklander uint32_t left; 262817466cbSJens Wiklander 263817466cbSJens Wiklander if( ilen == 0 ) 264*3d3b0591SJens Wiklander return( 0 ); 265817466cbSJens Wiklander 266817466cbSJens Wiklander left = ctx->total[0] & 0x3F; 267817466cbSJens Wiklander fill = 64 - left; 268817466cbSJens Wiklander 269817466cbSJens Wiklander ctx->total[0] += (uint32_t) ilen; 270817466cbSJens Wiklander ctx->total[0] &= 0xFFFFFFFF; 271817466cbSJens Wiklander 272817466cbSJens Wiklander if( ctx->total[0] < (uint32_t) ilen ) 273817466cbSJens Wiklander ctx->total[1]++; 274817466cbSJens Wiklander 275817466cbSJens Wiklander if( left && ilen >= fill ) 276817466cbSJens Wiklander { 277817466cbSJens Wiklander memcpy( (void *) (ctx->buffer + left), input, fill ); 278*3d3b0591SJens Wiklander if( ( ret = mbedtls_internal_md5_process( ctx, ctx->buffer ) ) != 0 ) 279*3d3b0591SJens Wiklander return( ret ); 280*3d3b0591SJens Wiklander 281817466cbSJens Wiklander input += fill; 282817466cbSJens Wiklander ilen -= fill; 283817466cbSJens Wiklander left = 0; 284817466cbSJens Wiklander } 285817466cbSJens Wiklander 286817466cbSJens Wiklander while( ilen >= 64 ) 287817466cbSJens Wiklander { 288*3d3b0591SJens Wiklander if( ( ret = mbedtls_internal_md5_process( ctx, input ) ) != 0 ) 289*3d3b0591SJens Wiklander return( ret ); 290*3d3b0591SJens Wiklander 291817466cbSJens Wiklander input += 64; 292817466cbSJens Wiklander ilen -= 64; 293817466cbSJens Wiklander } 294817466cbSJens Wiklander 295817466cbSJens Wiklander if( ilen > 0 ) 296817466cbSJens Wiklander { 297817466cbSJens Wiklander memcpy( (void *) (ctx->buffer + left), input, ilen ); 298817466cbSJens Wiklander } 299*3d3b0591SJens Wiklander 300*3d3b0591SJens Wiklander return( 0 ); 301817466cbSJens Wiklander } 302817466cbSJens Wiklander 303*3d3b0591SJens Wiklander #if !defined(MBEDTLS_DEPRECATED_REMOVED) 304*3d3b0591SJens Wiklander void mbedtls_md5_update( mbedtls_md5_context *ctx, 305*3d3b0591SJens Wiklander const unsigned char *input, 306*3d3b0591SJens Wiklander size_t ilen ) 307817466cbSJens Wiklander { 308*3d3b0591SJens Wiklander mbedtls_md5_update_ret( ctx, input, ilen ); 309*3d3b0591SJens Wiklander } 310*3d3b0591SJens Wiklander #endif 311817466cbSJens Wiklander 312817466cbSJens Wiklander /* 313817466cbSJens Wiklander * MD5 final digest 314817466cbSJens Wiklander */ 315*3d3b0591SJens Wiklander int mbedtls_md5_finish_ret( mbedtls_md5_context *ctx, 316*3d3b0591SJens Wiklander unsigned char output[16] ) 317817466cbSJens Wiklander { 318*3d3b0591SJens Wiklander int ret; 319*3d3b0591SJens Wiklander uint32_t used; 320817466cbSJens Wiklander uint32_t high, low; 321817466cbSJens Wiklander 322*3d3b0591SJens Wiklander /* 323*3d3b0591SJens Wiklander * Add padding: 0x80 then 0x00 until 8 bytes remain for the length 324*3d3b0591SJens Wiklander */ 325*3d3b0591SJens Wiklander used = ctx->total[0] & 0x3F; 326*3d3b0591SJens Wiklander 327*3d3b0591SJens Wiklander ctx->buffer[used++] = 0x80; 328*3d3b0591SJens Wiklander 329*3d3b0591SJens Wiklander if( used <= 56 ) 330*3d3b0591SJens Wiklander { 331*3d3b0591SJens Wiklander /* Enough room for padding + length in current block */ 332*3d3b0591SJens Wiklander memset( ctx->buffer + used, 0, 56 - used ); 333*3d3b0591SJens Wiklander } 334*3d3b0591SJens Wiklander else 335*3d3b0591SJens Wiklander { 336*3d3b0591SJens Wiklander /* We'll need an extra block */ 337*3d3b0591SJens Wiklander memset( ctx->buffer + used, 0, 64 - used ); 338*3d3b0591SJens Wiklander 339*3d3b0591SJens Wiklander if( ( ret = mbedtls_internal_md5_process( ctx, ctx->buffer ) ) != 0 ) 340*3d3b0591SJens Wiklander return( ret ); 341*3d3b0591SJens Wiklander 342*3d3b0591SJens Wiklander memset( ctx->buffer, 0, 56 ); 343*3d3b0591SJens Wiklander } 344*3d3b0591SJens Wiklander 345*3d3b0591SJens Wiklander /* 346*3d3b0591SJens Wiklander * Add message length 347*3d3b0591SJens Wiklander */ 348817466cbSJens Wiklander high = ( ctx->total[0] >> 29 ) 349817466cbSJens Wiklander | ( ctx->total[1] << 3 ); 350817466cbSJens Wiklander low = ( ctx->total[0] << 3 ); 351817466cbSJens Wiklander 352*3d3b0591SJens Wiklander PUT_UINT32_LE( low, ctx->buffer, 56 ); 353*3d3b0591SJens Wiklander PUT_UINT32_LE( high, ctx->buffer, 60 ); 354817466cbSJens Wiklander 355*3d3b0591SJens Wiklander if( ( ret = mbedtls_internal_md5_process( ctx, ctx->buffer ) ) != 0 ) 356*3d3b0591SJens Wiklander return( ret ); 357817466cbSJens Wiklander 358*3d3b0591SJens Wiklander /* 359*3d3b0591SJens Wiklander * Output final state 360*3d3b0591SJens Wiklander */ 361817466cbSJens Wiklander PUT_UINT32_LE( ctx->state[0], output, 0 ); 362817466cbSJens Wiklander PUT_UINT32_LE( ctx->state[1], output, 4 ); 363817466cbSJens Wiklander PUT_UINT32_LE( ctx->state[2], output, 8 ); 364817466cbSJens Wiklander PUT_UINT32_LE( ctx->state[3], output, 12 ); 365*3d3b0591SJens Wiklander 366*3d3b0591SJens Wiklander return( 0 ); 367817466cbSJens Wiklander } 368817466cbSJens Wiklander 369*3d3b0591SJens Wiklander #if !defined(MBEDTLS_DEPRECATED_REMOVED) 370*3d3b0591SJens Wiklander void mbedtls_md5_finish( mbedtls_md5_context *ctx, 371*3d3b0591SJens Wiklander unsigned char output[16] ) 372*3d3b0591SJens Wiklander { 373*3d3b0591SJens Wiklander mbedtls_md5_finish_ret( ctx, output ); 374*3d3b0591SJens Wiklander } 375*3d3b0591SJens Wiklander #endif 376*3d3b0591SJens Wiklander 377817466cbSJens Wiklander #endif /* !MBEDTLS_MD5_ALT */ 378817466cbSJens Wiklander 379817466cbSJens Wiklander /* 380817466cbSJens Wiklander * output = MD5( input buffer ) 381817466cbSJens Wiklander */ 382*3d3b0591SJens Wiklander int mbedtls_md5_ret( const unsigned char *input, 383*3d3b0591SJens Wiklander size_t ilen, 384*3d3b0591SJens Wiklander unsigned char output[16] ) 385817466cbSJens Wiklander { 386*3d3b0591SJens Wiklander int ret; 387817466cbSJens Wiklander mbedtls_md5_context ctx; 388817466cbSJens Wiklander 389817466cbSJens Wiklander mbedtls_md5_init( &ctx ); 390*3d3b0591SJens Wiklander 391*3d3b0591SJens Wiklander if( ( ret = mbedtls_md5_starts_ret( &ctx ) ) != 0 ) 392*3d3b0591SJens Wiklander goto exit; 393*3d3b0591SJens Wiklander 394*3d3b0591SJens Wiklander if( ( ret = mbedtls_md5_update_ret( &ctx, input, ilen ) ) != 0 ) 395*3d3b0591SJens Wiklander goto exit; 396*3d3b0591SJens Wiklander 397*3d3b0591SJens Wiklander if( ( ret = mbedtls_md5_finish_ret( &ctx, output ) ) != 0 ) 398*3d3b0591SJens Wiklander goto exit; 399*3d3b0591SJens Wiklander 400*3d3b0591SJens Wiklander exit: 401817466cbSJens Wiklander mbedtls_md5_free( &ctx ); 402*3d3b0591SJens Wiklander 403*3d3b0591SJens Wiklander return( ret ); 404817466cbSJens Wiklander } 405817466cbSJens Wiklander 406*3d3b0591SJens Wiklander #if !defined(MBEDTLS_DEPRECATED_REMOVED) 407*3d3b0591SJens Wiklander void mbedtls_md5( const unsigned char *input, 408*3d3b0591SJens Wiklander size_t ilen, 409*3d3b0591SJens Wiklander unsigned char output[16] ) 410*3d3b0591SJens Wiklander { 411*3d3b0591SJens Wiklander mbedtls_md5_ret( input, ilen, output ); 412*3d3b0591SJens Wiklander } 413*3d3b0591SJens Wiklander #endif 414*3d3b0591SJens Wiklander 415817466cbSJens Wiklander #if defined(MBEDTLS_SELF_TEST) 416817466cbSJens Wiklander /* 417817466cbSJens Wiklander * RFC 1321 test vectors 418817466cbSJens Wiklander */ 419817466cbSJens Wiklander static const unsigned char md5_test_buf[7][81] = 420817466cbSJens Wiklander { 421817466cbSJens Wiklander { "" }, 422817466cbSJens Wiklander { "a" }, 423817466cbSJens Wiklander { "abc" }, 424817466cbSJens Wiklander { "message digest" }, 425817466cbSJens Wiklander { "abcdefghijklmnopqrstuvwxyz" }, 426817466cbSJens Wiklander { "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789" }, 427*3d3b0591SJens Wiklander { "12345678901234567890123456789012345678901234567890123456789012" 428817466cbSJens Wiklander "345678901234567890" } 429817466cbSJens Wiklander }; 430817466cbSJens Wiklander 431*3d3b0591SJens Wiklander static const size_t md5_test_buflen[7] = 432817466cbSJens Wiklander { 433817466cbSJens Wiklander 0, 1, 3, 14, 26, 62, 80 434817466cbSJens Wiklander }; 435817466cbSJens Wiklander 436817466cbSJens Wiklander static const unsigned char md5_test_sum[7][16] = 437817466cbSJens Wiklander { 438817466cbSJens Wiklander { 0xD4, 0x1D, 0x8C, 0xD9, 0x8F, 0x00, 0xB2, 0x04, 439817466cbSJens Wiklander 0xE9, 0x80, 0x09, 0x98, 0xEC, 0xF8, 0x42, 0x7E }, 440817466cbSJens Wiklander { 0x0C, 0xC1, 0x75, 0xB9, 0xC0, 0xF1, 0xB6, 0xA8, 441817466cbSJens Wiklander 0x31, 0xC3, 0x99, 0xE2, 0x69, 0x77, 0x26, 0x61 }, 442817466cbSJens Wiklander { 0x90, 0x01, 0x50, 0x98, 0x3C, 0xD2, 0x4F, 0xB0, 443817466cbSJens Wiklander 0xD6, 0x96, 0x3F, 0x7D, 0x28, 0xE1, 0x7F, 0x72 }, 444817466cbSJens Wiklander { 0xF9, 0x6B, 0x69, 0x7D, 0x7C, 0xB7, 0x93, 0x8D, 445817466cbSJens Wiklander 0x52, 0x5A, 0x2F, 0x31, 0xAA, 0xF1, 0x61, 0xD0 }, 446817466cbSJens Wiklander { 0xC3, 0xFC, 0xD3, 0xD7, 0x61, 0x92, 0xE4, 0x00, 447817466cbSJens Wiklander 0x7D, 0xFB, 0x49, 0x6C, 0xCA, 0x67, 0xE1, 0x3B }, 448817466cbSJens Wiklander { 0xD1, 0x74, 0xAB, 0x98, 0xD2, 0x77, 0xD9, 0xF5, 449817466cbSJens Wiklander 0xA5, 0x61, 0x1C, 0x2C, 0x9F, 0x41, 0x9D, 0x9F }, 450817466cbSJens Wiklander { 0x57, 0xED, 0xF4, 0xA2, 0x2B, 0xE3, 0xC9, 0x55, 451817466cbSJens Wiklander 0xAC, 0x49, 0xDA, 0x2E, 0x21, 0x07, 0xB6, 0x7A } 452817466cbSJens Wiklander }; 453817466cbSJens Wiklander 454817466cbSJens Wiklander /* 455817466cbSJens Wiklander * Checkup routine 456817466cbSJens Wiklander */ 457817466cbSJens Wiklander int mbedtls_md5_self_test( int verbose ) 458817466cbSJens Wiklander { 459*3d3b0591SJens Wiklander int i, ret = 0; 460817466cbSJens Wiklander unsigned char md5sum[16]; 461817466cbSJens Wiklander 462817466cbSJens Wiklander for( i = 0; i < 7; i++ ) 463817466cbSJens Wiklander { 464817466cbSJens Wiklander if( verbose != 0 ) 465817466cbSJens Wiklander mbedtls_printf( " MD5 test #%d: ", i + 1 ); 466817466cbSJens Wiklander 467*3d3b0591SJens Wiklander ret = mbedtls_md5_ret( md5_test_buf[i], md5_test_buflen[i], md5sum ); 468*3d3b0591SJens Wiklander if( ret != 0 ) 469*3d3b0591SJens Wiklander goto fail; 470817466cbSJens Wiklander 471817466cbSJens Wiklander if( memcmp( md5sum, md5_test_sum[i], 16 ) != 0 ) 472817466cbSJens Wiklander { 473*3d3b0591SJens Wiklander ret = 1; 474*3d3b0591SJens Wiklander goto fail; 475817466cbSJens Wiklander } 476817466cbSJens Wiklander 477817466cbSJens Wiklander if( verbose != 0 ) 478817466cbSJens Wiklander mbedtls_printf( "passed\n" ); 479817466cbSJens Wiklander } 480817466cbSJens Wiklander 481817466cbSJens Wiklander if( verbose != 0 ) 482817466cbSJens Wiklander mbedtls_printf( "\n" ); 483817466cbSJens Wiklander 484817466cbSJens Wiklander return( 0 ); 485*3d3b0591SJens Wiklander 486*3d3b0591SJens Wiklander fail: 487*3d3b0591SJens Wiklander if( verbose != 0 ) 488*3d3b0591SJens Wiklander mbedtls_printf( "failed\n" ); 489*3d3b0591SJens Wiklander 490*3d3b0591SJens Wiklander return( ret ); 491817466cbSJens Wiklander } 492817466cbSJens Wiklander 493817466cbSJens Wiklander #endif /* MBEDTLS_SELF_TEST */ 494817466cbSJens Wiklander 495817466cbSJens Wiklander #endif /* MBEDTLS_MD5_C */ 496