137a7bc39SJason Zhu /*
237a7bc39SJason Zhu * Copyright (C) 2016 The Android Open Source Project
337a7bc39SJason Zhu *
437a7bc39SJason Zhu * Permission is hereby granted, free of charge, to any person
537a7bc39SJason Zhu * obtaining a copy of this software and associated documentation
637a7bc39SJason Zhu * files (the "Software"), to deal in the Software without
737a7bc39SJason Zhu * restriction, including without limitation the rights to use, copy,
837a7bc39SJason Zhu * modify, merge, publish, distribute, sublicense, and/or sell copies
937a7bc39SJason Zhu * of the Software, and to permit persons to whom the Software is
1037a7bc39SJason Zhu * furnished to do so, subject to the following conditions:
1137a7bc39SJason Zhu *
1237a7bc39SJason Zhu * The above copyright notice and this permission notice shall be
1337a7bc39SJason Zhu * included in all copies or substantial portions of the Software.
1437a7bc39SJason Zhu *
1537a7bc39SJason Zhu * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
1637a7bc39SJason Zhu * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
1737a7bc39SJason Zhu * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
1837a7bc39SJason Zhu * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS
1937a7bc39SJason Zhu * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN
2037a7bc39SJason Zhu * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN
2137a7bc39SJason Zhu * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
2237a7bc39SJason Zhu * SOFTWARE.
2337a7bc39SJason Zhu */
2437a7bc39SJason Zhu
2537a7bc39SJason Zhu #include <android_avb/avb_descriptor.h>
2637a7bc39SJason Zhu #include <android_avb/avb_util.h>
2737a7bc39SJason Zhu #include <android_avb/avb_vbmeta_image.h>
2837a7bc39SJason Zhu
avb_descriptor_validate_and_byteswap(const AvbDescriptor * src,AvbDescriptor * dest)2937a7bc39SJason Zhu bool avb_descriptor_validate_and_byteswap(const AvbDescriptor* src,
3037a7bc39SJason Zhu AvbDescriptor* dest) {
3137a7bc39SJason Zhu dest->tag = avb_be64toh(src->tag);
3237a7bc39SJason Zhu dest->num_bytes_following = avb_be64toh(src->num_bytes_following);
3337a7bc39SJason Zhu
3437a7bc39SJason Zhu if ((dest->num_bytes_following & 0x07) != 0) {
3537a7bc39SJason Zhu avb_error("Descriptor size is not divisible by 8.\n");
3637a7bc39SJason Zhu return false;
3737a7bc39SJason Zhu }
3837a7bc39SJason Zhu return true;
3937a7bc39SJason Zhu }
4037a7bc39SJason Zhu
avb_descriptor_foreach(const uint8_t * image_data,size_t image_size,AvbDescriptorForeachFunc foreach_func,void * user_data)4137a7bc39SJason Zhu bool avb_descriptor_foreach(const uint8_t* image_data,
4237a7bc39SJason Zhu size_t image_size,
4337a7bc39SJason Zhu AvbDescriptorForeachFunc foreach_func,
4437a7bc39SJason Zhu void* user_data) {
4537a7bc39SJason Zhu const AvbVBMetaImageHeader* header = NULL;
4637a7bc39SJason Zhu bool ret = false;
4737a7bc39SJason Zhu const uint8_t* image_end;
4837a7bc39SJason Zhu const uint8_t* desc_start;
4937a7bc39SJason Zhu const uint8_t* desc_end;
5037a7bc39SJason Zhu const uint8_t* p;
5137a7bc39SJason Zhu
5237a7bc39SJason Zhu if (image_data == NULL) {
5337a7bc39SJason Zhu avb_error("image_data is NULL\n.");
5437a7bc39SJason Zhu goto out;
5537a7bc39SJason Zhu }
5637a7bc39SJason Zhu
5737a7bc39SJason Zhu if (foreach_func == NULL) {
5837a7bc39SJason Zhu avb_error("foreach_func is NULL\n.");
5937a7bc39SJason Zhu goto out;
6037a7bc39SJason Zhu }
6137a7bc39SJason Zhu
6237a7bc39SJason Zhu if (image_size < sizeof(AvbVBMetaImageHeader)) {
6337a7bc39SJason Zhu avb_error("Length is smaller than header.\n");
6437a7bc39SJason Zhu goto out;
6537a7bc39SJason Zhu }
6637a7bc39SJason Zhu
6737a7bc39SJason Zhu /* Ensure magic is correct. */
6837a7bc39SJason Zhu if (avb_memcmp(image_data, AVB_MAGIC, AVB_MAGIC_LEN) != 0) {
6937a7bc39SJason Zhu avb_error("Magic is incorrect.\n");
7037a7bc39SJason Zhu goto out;
7137a7bc39SJason Zhu }
7237a7bc39SJason Zhu
7337a7bc39SJason Zhu /* Careful, not byteswapped - also ensure it's aligned properly. */
7437a7bc39SJason Zhu avb_assert_aligned(image_data);
7537a7bc39SJason Zhu header = (const AvbVBMetaImageHeader*)image_data;
7637a7bc39SJason Zhu image_end = image_data + image_size;
7737a7bc39SJason Zhu
7837a7bc39SJason Zhu desc_start = image_data + sizeof(AvbVBMetaImageHeader) +
7937a7bc39SJason Zhu avb_be64toh(header->authentication_data_block_size) +
8037a7bc39SJason Zhu avb_be64toh(header->descriptors_offset);
8137a7bc39SJason Zhu
8237a7bc39SJason Zhu desc_end = desc_start + avb_be64toh(header->descriptors_size);
8337a7bc39SJason Zhu
8437a7bc39SJason Zhu if (desc_start < image_data || desc_start > image_end ||
8537a7bc39SJason Zhu desc_end < image_data || desc_end > image_end || desc_end < desc_start) {
8637a7bc39SJason Zhu avb_error("Descriptors not inside passed-in data.\n");
8737a7bc39SJason Zhu goto out;
8837a7bc39SJason Zhu }
8937a7bc39SJason Zhu
9037a7bc39SJason Zhu for (p = desc_start; p < desc_end;) {
9137a7bc39SJason Zhu const AvbDescriptor* dh = (const AvbDescriptor*)p;
9237a7bc39SJason Zhu avb_assert_aligned(dh);
9337a7bc39SJason Zhu uint64_t nb_following = avb_be64toh(dh->num_bytes_following);
94*69fdc596SJason Zhu uint64_t nb_total = 0;
95*69fdc596SJason Zhu if (!avb_safe_add(&nb_total, sizeof(AvbDescriptor), nb_following)) {
96*69fdc596SJason Zhu avb_error("Invalid descriptor length.\n");
97*69fdc596SJason Zhu goto out;
98*69fdc596SJason Zhu }
9937a7bc39SJason Zhu
10037a7bc39SJason Zhu if ((nb_total & 7) != 0) {
10137a7bc39SJason Zhu avb_error("Invalid descriptor length.\n");
10237a7bc39SJason Zhu goto out;
10337a7bc39SJason Zhu }
10437a7bc39SJason Zhu
10537a7bc39SJason Zhu if (nb_total + p < desc_start || nb_total + p > desc_end) {
10637a7bc39SJason Zhu avb_error("Invalid data in descriptors array.\n");
10737a7bc39SJason Zhu goto out;
10837a7bc39SJason Zhu }
10937a7bc39SJason Zhu
11037a7bc39SJason Zhu if (foreach_func(dh, user_data) == 0) {
11137a7bc39SJason Zhu goto out;
11237a7bc39SJason Zhu }
11337a7bc39SJason Zhu
114*69fdc596SJason Zhu if (!avb_safe_add_to((uint64_t*)(&p), nb_total)) {
115*69fdc596SJason Zhu avb_error("Invalid descriptor length.\n");
116*69fdc596SJason Zhu goto out;
117*69fdc596SJason Zhu }
11837a7bc39SJason Zhu }
11937a7bc39SJason Zhu
12037a7bc39SJason Zhu ret = true;
12137a7bc39SJason Zhu
12237a7bc39SJason Zhu out:
12337a7bc39SJason Zhu return ret;
12437a7bc39SJason Zhu }
12537a7bc39SJason Zhu
count_descriptors(const AvbDescriptor * descriptor,void * user_data)12637a7bc39SJason Zhu static bool count_descriptors(const AvbDescriptor* descriptor,
12737a7bc39SJason Zhu void* user_data) {
12837a7bc39SJason Zhu size_t* num_descriptors = user_data;
12937a7bc39SJason Zhu *num_descriptors += 1;
13037a7bc39SJason Zhu return true;
13137a7bc39SJason Zhu }
13237a7bc39SJason Zhu
13337a7bc39SJason Zhu typedef struct {
13437a7bc39SJason Zhu size_t descriptor_number;
13537a7bc39SJason Zhu const AvbDescriptor** descriptors;
13637a7bc39SJason Zhu } SetDescriptorData;
13737a7bc39SJason Zhu
set_descriptors(const AvbDescriptor * descriptor,void * user_data)13837a7bc39SJason Zhu static bool set_descriptors(const AvbDescriptor* descriptor, void* user_data) {
13937a7bc39SJason Zhu SetDescriptorData* data = user_data;
14037a7bc39SJason Zhu data->descriptors[data->descriptor_number++] = descriptor;
14137a7bc39SJason Zhu return true;
14237a7bc39SJason Zhu }
14337a7bc39SJason Zhu
avb_descriptor_get_all(const uint8_t * image_data,size_t image_size,size_t * out_num_descriptors)14437a7bc39SJason Zhu const AvbDescriptor** avb_descriptor_get_all(const uint8_t* image_data,
14537a7bc39SJason Zhu size_t image_size,
14637a7bc39SJason Zhu size_t* out_num_descriptors) {
14737a7bc39SJason Zhu size_t num_descriptors = 0;
14837a7bc39SJason Zhu SetDescriptorData data;
14937a7bc39SJason Zhu
15037a7bc39SJason Zhu avb_descriptor_foreach(
15137a7bc39SJason Zhu image_data, image_size, count_descriptors, &num_descriptors);
15237a7bc39SJason Zhu
15337a7bc39SJason Zhu data.descriptor_number = 0;
15437a7bc39SJason Zhu data.descriptors =
15537a7bc39SJason Zhu avb_calloc(sizeof(const AvbDescriptor*) * (num_descriptors + 1));
15637a7bc39SJason Zhu if (data.descriptors == NULL) {
15737a7bc39SJason Zhu return NULL;
15837a7bc39SJason Zhu }
15937a7bc39SJason Zhu avb_descriptor_foreach(image_data, image_size, set_descriptors, &data);
16037a7bc39SJason Zhu avb_assert(data.descriptor_number == num_descriptors);
16137a7bc39SJason Zhu
16237a7bc39SJason Zhu if (out_num_descriptors != NULL) {
16337a7bc39SJason Zhu *out_num_descriptors = num_descriptors;
16437a7bc39SJason Zhu }
16537a7bc39SJason Zhu
16637a7bc39SJason Zhu return data.descriptors;
16737a7bc39SJason Zhu }
168