DER.cpp 9.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323
  1. /*
  2. * Copyright (c) 2021, the SerenityOS developers.
  3. *
  4. * SPDX-License-Identifier: BSD-2-Clause
  5. */
  6. #include <AK/DeprecatedStream.h>
  7. #include <AK/Try.h>
  8. #include <AK/Utf8View.h>
  9. #include <LibCrypto/ASN1/DER.h>
  10. namespace Crypto::ASN1 {
  11. ErrorOr<Tag> Decoder::read_tag()
  12. {
  13. auto byte = TRY(read_byte());
  14. u8 class_ = byte & 0xc0;
  15. u8 type = byte & 0x20;
  16. u8 kind = byte & 0x1f;
  17. if (kind == 0x1f) {
  18. kind = 0;
  19. while (byte & 0x80) {
  20. byte = TRY(read_byte());
  21. kind = (kind << 7) | (byte & 0x7f);
  22. }
  23. }
  24. return Tag { (Kind)kind, (Class)class_, (Type)type };
  25. }
  26. ErrorOr<size_t> Decoder::read_length()
  27. {
  28. auto byte = TRY(read_byte());
  29. size_t length = byte;
  30. if (byte & 0x80) {
  31. auto count = byte & 0x7f;
  32. if (count == 0x7f)
  33. return Error::from_string_literal("ASN1::Decoder: Length has an invalid count value");
  34. auto data = TRY(read_bytes(count));
  35. length = 0;
  36. if (data.size() > sizeof(size_t))
  37. return Error::from_string_literal("ASN1::Decoder: Length is larger than the target type");
  38. for (auto&& byte : data)
  39. length = (length << 8) | (size_t)byte;
  40. }
  41. return length;
  42. }
  43. ErrorOr<u8> Decoder::read_byte()
  44. {
  45. if (m_stack.is_empty())
  46. return Error::from_string_literal("ASN1::Decoder: Reading byte from an empty stack");
  47. auto& entry = m_stack.last();
  48. if (entry.is_empty())
  49. return Error::from_string_literal("ASN1::Decoder: Reading byte from an empty entry");
  50. auto byte = entry[0];
  51. entry = entry.slice(1);
  52. return byte;
  53. }
  54. ErrorOr<ReadonlyBytes> Decoder::read_bytes(size_t length)
  55. {
  56. if (m_stack.is_empty())
  57. return Error::from_string_literal("ASN1::Decoder: Reading bytes from an empty stack");
  58. auto& entry = m_stack.last();
  59. if (entry.size() < length)
  60. return Error::from_string_literal("ASN1::Decoder: Reading bytes from an empty entry");
  61. auto bytes = entry.slice(0, length);
  62. entry = entry.slice(length);
  63. return bytes;
  64. }
  65. ErrorOr<bool> Decoder::decode_boolean(ReadonlyBytes data)
  66. {
  67. if (data.size() != 1)
  68. return Error::from_string_literal("ASN1::Decoder: Decoding boolean from a non boolean-sized span");
  69. return data[0] != 0;
  70. }
  71. ErrorOr<UnsignedBigInteger> Decoder::decode_arbitrary_sized_integer(ReadonlyBytes data)
  72. {
  73. if (data.size() < 1)
  74. return Error::from_string_literal("ASN1::Decoder: Decoding arbitrary sized integer from an empty span");
  75. if (data.size() > 1
  76. && ((data[0] == 0xff && data[1] & 0x80)
  77. || (data[0] == 0x00 && !(data[1] & 0x80)))) {
  78. return Error::from_string_literal("ASN1::Decoder: Arbitrary sized integer has an invalid format");
  79. }
  80. bool is_negative = data[0] & 0x80;
  81. if (is_negative)
  82. return Error::from_string_literal("ASN1::Decoder: Decoding a negative unsigned arbitrary sized integer");
  83. return UnsignedBigInteger::import_data(data.data(), data.size());
  84. }
  85. ErrorOr<StringView> Decoder::decode_octet_string(ReadonlyBytes bytes)
  86. {
  87. return StringView { bytes.data(), bytes.size() };
  88. }
  89. ErrorOr<nullptr_t> Decoder::decode_null(ReadonlyBytes data)
  90. {
  91. if (data.size() != 0)
  92. return Error::from_string_literal("ASN1::Decoder: Decoding null from a non-empty span");
  93. return nullptr;
  94. }
  95. ErrorOr<Vector<int>> Decoder::decode_object_identifier(ReadonlyBytes data)
  96. {
  97. Vector<int> result;
  98. result.append(0); // Reserved space.
  99. u32 value = 0;
  100. for (auto&& byte : data) {
  101. if (value == 0 && byte == 0x80)
  102. return Error::from_string_literal("ASN1::Decoder: Invalid first byte in object identifier");
  103. value = (value << 7) | (byte & 0x7f);
  104. if (!(byte & 0x80)) {
  105. result.append(value);
  106. value = 0;
  107. }
  108. }
  109. if (result.size() == 1 || result[1] >= 1600)
  110. return Error::from_string_literal("ASN1::Decoder: Invalid encoding in object identifier");
  111. result[0] = result[1] / 40;
  112. result[1] = result[1] % 40;
  113. return result;
  114. }
  115. ErrorOr<StringView> Decoder::decode_printable_string(ReadonlyBytes data)
  116. {
  117. Utf8View view { data };
  118. if (!view.validate())
  119. return Error::from_string_literal("ASN1::Decoder: Invalid UTF-8 in printable string");
  120. return StringView { data };
  121. }
  122. ErrorOr<BitStringView> Decoder::decode_bit_string(ReadonlyBytes data)
  123. {
  124. if (data.size() < 1)
  125. return Error::from_string_literal("ASN1::Decoder: Decoding bit string from empty span");
  126. auto unused_bits = data[0];
  127. auto total_size_in_bits = (data.size() - 1) * 8;
  128. if (unused_bits > total_size_in_bits)
  129. return Error::from_string_literal("ASN1::Decoder: Number of unused bits is larger than the total size");
  130. return BitStringView { data.slice(1), unused_bits };
  131. }
  132. ErrorOr<Tag> Decoder::peek()
  133. {
  134. if (m_stack.is_empty())
  135. return Error::from_string_literal("ASN1::Decoder: Peeking using an empty stack");
  136. if (eof())
  137. return Error::from_string_literal("ASN1::Decoder: Peeking using a decoder that is at EOF");
  138. if (m_current_tag.has_value())
  139. return m_current_tag.value();
  140. m_current_tag = TRY(read_tag());
  141. return m_current_tag.value();
  142. }
  143. bool Decoder::eof() const
  144. {
  145. return m_stack.is_empty() || m_stack.last().is_empty();
  146. }
  147. ErrorOr<void> Decoder::enter()
  148. {
  149. if (m_stack.is_empty())
  150. return Error::from_string_literal("ASN1::Decoder: Entering using an empty stack");
  151. auto tag = TRY(peek());
  152. if (tag.type != Type::Constructed)
  153. return Error::from_string_literal("ASN1::Decoder: Entering a non-constructed type");
  154. auto length = TRY(read_length());
  155. auto data = TRY(read_bytes(length));
  156. m_current_tag.clear();
  157. m_stack.append(data);
  158. return {};
  159. }
  160. ErrorOr<void> Decoder::leave()
  161. {
  162. if (m_stack.is_empty())
  163. return Error::from_string_literal("ASN1::Decoder: Leaving using an empty stack");
  164. if (m_stack.size() == 1)
  165. return Error::from_string_literal("ASN1::Decoder: Leaving the main context");
  166. m_stack.take_last();
  167. m_current_tag.clear();
  168. return {};
  169. }
  170. ErrorOr<void> pretty_print(Decoder& decoder, DeprecatedOutputStream& stream, int indent)
  171. {
  172. while (!decoder.eof()) {
  173. auto tag = TRY(decoder.peek());
  174. StringBuilder builder;
  175. for (int i = 0; i < indent; ++i)
  176. builder.append(' ');
  177. builder.appendff("<{}> ", class_name(tag.class_));
  178. if (tag.type == Type::Constructed) {
  179. builder.appendff("[{}] {} ({})", type_name(tag.type), static_cast<u8>(tag.kind), kind_name(tag.kind));
  180. TRY(decoder.enter());
  181. builder.append('\n');
  182. stream.write(builder.string_view().bytes());
  183. TRY(pretty_print(decoder, stream, indent + 2));
  184. TRY(decoder.leave());
  185. continue;
  186. } else {
  187. if (tag.class_ != Class::Universal)
  188. builder.appendff("[{}] {} {}", type_name(tag.type), static_cast<u8>(tag.kind), kind_name(tag.kind));
  189. else
  190. builder.appendff("[{}] {}", type_name(tag.type), kind_name(tag.kind));
  191. switch (tag.kind) {
  192. case Kind::Eol: {
  193. TRY(decoder.read<ReadonlyBytes>());
  194. break;
  195. }
  196. case Kind::Boolean: {
  197. auto value = TRY(decoder.read<bool>());
  198. builder.appendff(" {}", value);
  199. break;
  200. }
  201. case Kind::Integer: {
  202. auto value = TRY(decoder.read<ReadonlyBytes>());
  203. builder.append(" 0x"sv);
  204. for (auto ch : value)
  205. builder.appendff("{:0>2x}", ch);
  206. break;
  207. }
  208. case Kind::BitString: {
  209. auto value = TRY(decoder.read<BitmapView>());
  210. builder.append(" 0b"sv);
  211. for (size_t i = 0; i < value.size(); ++i)
  212. builder.append(value.get(i) ? '1' : '0');
  213. break;
  214. }
  215. case Kind::OctetString: {
  216. auto value = TRY(decoder.read<StringView>());
  217. builder.append(" 0x"sv);
  218. for (auto ch : value)
  219. builder.appendff("{:0>2x}", ch);
  220. break;
  221. }
  222. case Kind::Null: {
  223. TRY(decoder.read<decltype(nullptr)>());
  224. break;
  225. }
  226. case Kind::ObjectIdentifier: {
  227. auto value = TRY(decoder.read<Vector<int>>());
  228. for (auto& id : value)
  229. builder.appendff(" {}", id);
  230. break;
  231. }
  232. case Kind::UTCTime:
  233. case Kind::GeneralizedTime:
  234. case Kind::IA5String:
  235. case Kind::PrintableString: {
  236. auto value = TRY(decoder.read<StringView>());
  237. builder.append(' ');
  238. builder.append(value);
  239. break;
  240. }
  241. case Kind::Utf8String: {
  242. auto value = TRY(decoder.read<Utf8View>());
  243. builder.append(' ');
  244. for (auto cp : value)
  245. builder.append_code_point(cp);
  246. break;
  247. }
  248. case Kind::Sequence:
  249. case Kind::Set:
  250. return Error::from_string_literal("ASN1::Decoder: Unexpected Primitive");
  251. }
  252. }
  253. builder.append('\n');
  254. stream.write(builder.string_view().bytes());
  255. }
  256. return {};
  257. }
  258. }