2016-05-18 02:51:04 +08:00
|
|
|
/*
|
2017-07-07 05:29:55 +08:00
|
|
|
* Copyright 1995-2017 The OpenSSL Project Authors. All Rights Reserved.
|
1998-12-21 18:52:47 +08:00
|
|
|
*
|
2016-05-18 02:51:04 +08:00
|
|
|
* Licensed under the OpenSSL license (the "License"). You may not use
|
|
|
|
* this file except in compliance with the License. You can obtain a copy
|
|
|
|
* in the file LICENSE in the source distribution or at
|
|
|
|
* https://www.openssl.org/source/license.html
|
1998-12-21 18:52:47 +08:00
|
|
|
*/
|
|
|
|
|
|
|
|
#include <stdio.h>
|
2017-08-21 05:19:17 +08:00
|
|
|
#include "internal/ctype.h"
|
2016-02-22 18:27:18 +08:00
|
|
|
#include <limits.h>
|
2015-05-14 22:56:48 +08:00
|
|
|
#include "internal/cryptlib.h"
|
1999-04-24 06:13:45 +08:00
|
|
|
#include <openssl/buffer.h>
|
1998-12-21 18:52:47 +08:00
|
|
|
#include "bn_lcl.h"
|
|
|
|
|
2015-01-22 11:40:55 +08:00
|
|
|
static const char Hex[] = "0123456789ABCDEF";
|
1998-12-21 18:52:47 +08:00
|
|
|
|
2000-06-02 06:19:21 +08:00
|
|
|
/* Must 'OPENSSL_free' the returned data */
|
1999-06-21 01:36:11 +08:00
|
|
|
char *BN_bn2hex(const BIGNUM *a)
|
2015-01-22 11:40:55 +08:00
|
|
|
{
|
|
|
|
int i, j, v, z = 0;
|
|
|
|
char *buf;
|
|
|
|
char *p;
|
|
|
|
|
2016-09-06 06:08:43 +08:00
|
|
|
if (BN_is_zero(a))
|
|
|
|
return OPENSSL_strdup("0");
|
|
|
|
buf = OPENSSL_malloc(a->top * BN_BYTES * 2 + 2);
|
2015-01-22 11:40:55 +08:00
|
|
|
if (buf == NULL) {
|
|
|
|
BNerr(BN_F_BN_BN2HEX, ERR_R_MALLOC_FAILURE);
|
|
|
|
goto err;
|
|
|
|
}
|
|
|
|
p = buf;
|
|
|
|
if (a->neg)
|
2017-08-21 05:23:36 +08:00
|
|
|
*p++ = '-';
|
2015-01-22 11:40:55 +08:00
|
|
|
for (i = a->top - 1; i >= 0; i--) {
|
|
|
|
for (j = BN_BITS2 - 8; j >= 0; j -= 8) {
|
|
|
|
/* strip leading zeros */
|
2017-08-21 05:23:36 +08:00
|
|
|
v = (int)((a->d[i] >> j) & 0xff);
|
|
|
|
if (z || v != 0) {
|
|
|
|
*p++ = Hex[v >> 4];
|
|
|
|
*p++ = Hex[v & 0x0f];
|
2015-01-22 11:40:55 +08:00
|
|
|
z = 1;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
|
|
|
*p = '\0';
|
|
|
|
err:
|
2017-07-07 05:29:55 +08:00
|
|
|
return buf;
|
2015-01-22 11:40:55 +08:00
|
|
|
}
|
1998-12-21 18:52:47 +08:00
|
|
|
|
2000-06-02 06:19:21 +08:00
|
|
|
/* Must 'OPENSSL_free' the returned data */
|
1999-06-21 01:36:11 +08:00
|
|
|
char *BN_bn2dec(const BIGNUM *a)
|
2015-01-22 11:40:55 +08:00
|
|
|
{
|
2017-07-07 08:17:59 +08:00
|
|
|
int i = 0, num, ok = 0, n, tbytes;
|
2015-01-22 11:40:55 +08:00
|
|
|
char *buf = NULL;
|
|
|
|
char *p;
|
|
|
|
BIGNUM *t = NULL;
|
|
|
|
BN_ULONG *bn_data = NULL, *lp;
|
2016-08-05 21:26:03 +08:00
|
|
|
int bn_data_num;
|
2015-01-22 11:40:55 +08:00
|
|
|
|
2015-01-17 08:06:54 +08:00
|
|
|
/*-
|
|
|
|
* get an upper bound for the length of the decimal integer
|
|
|
|
* num <= (BN_num_bits(a) + 1) * log(2)
|
2016-08-23 13:39:24 +08:00
|
|
|
* <= 3 * BN_num_bits(a) * 0.101 + log(2) + 1 (rounding error)
|
|
|
|
* <= 3 * BN_num_bits(a) / 10 + 3 * BN_num_bits / 1000 + 1 + 1
|
2015-01-17 08:06:54 +08:00
|
|
|
*/
|
2015-01-22 11:40:55 +08:00
|
|
|
i = BN_num_bits(a) * 3;
|
|
|
|
num = (i / 10 + i / 1000 + 1) + 1;
|
2017-07-07 08:17:59 +08:00
|
|
|
tbytes = num + 3; /* negative and terminator and one spare? */
|
2016-08-05 21:26:03 +08:00
|
|
|
bn_data_num = num / BN_DEC_NUM + 1;
|
|
|
|
bn_data = OPENSSL_malloc(bn_data_num * sizeof(BN_ULONG));
|
2017-07-07 08:17:59 +08:00
|
|
|
buf = OPENSSL_malloc(tbytes);
|
2017-08-21 05:23:36 +08:00
|
|
|
if (buf == NULL || bn_data == NULL) {
|
2015-01-22 11:40:55 +08:00
|
|
|
BNerr(BN_F_BN_BN2DEC, ERR_R_MALLOC_FAILURE);
|
|
|
|
goto err;
|
|
|
|
}
|
|
|
|
if ((t = BN_dup(a)) == NULL)
|
|
|
|
goto err;
|
1998-12-21 18:56:39 +08:00
|
|
|
|
2015-01-22 11:40:55 +08:00
|
|
|
p = buf;
|
|
|
|
lp = bn_data;
|
|
|
|
if (BN_is_zero(t)) {
|
2017-08-21 05:23:36 +08:00
|
|
|
*p++ = '0';
|
|
|
|
*p++ = '\0';
|
2015-01-22 11:40:55 +08:00
|
|
|
} else {
|
|
|
|
if (BN_is_negative(t))
|
|
|
|
*p++ = '-';
|
|
|
|
|
|
|
|
while (!BN_is_zero(t)) {
|
2016-08-22 01:36:36 +08:00
|
|
|
if (lp - bn_data >= bn_data_num)
|
|
|
|
goto err;
|
2015-01-22 11:40:55 +08:00
|
|
|
*lp = BN_div_word(t, BN_DEC_CONV);
|
2016-08-05 21:26:03 +08:00
|
|
|
if (*lp == (BN_ULONG)-1)
|
|
|
|
goto err;
|
2015-01-22 11:40:55 +08:00
|
|
|
lp++;
|
|
|
|
}
|
|
|
|
lp--;
|
|
|
|
/*
|
|
|
|
* We now have a series of blocks, BN_DEC_NUM chars in length, where
|
|
|
|
* the last one needs truncation. The blocks need to be reversed in
|
|
|
|
* order.
|
|
|
|
*/
|
2017-07-07 08:17:59 +08:00
|
|
|
n = BIO_snprintf(p, tbytes - (size_t)(p - buf), BN_DEC_FMT1, *lp);
|
|
|
|
if (n < 0)
|
|
|
|
goto err;
|
|
|
|
p += n;
|
2015-01-22 11:40:55 +08:00
|
|
|
while (lp != bn_data) {
|
|
|
|
lp--;
|
2017-07-07 08:17:59 +08:00
|
|
|
n = BIO_snprintf(p, tbytes - (size_t)(p - buf), BN_DEC_FMT2, *lp);
|
|
|
|
if (n < 0)
|
|
|
|
goto err;
|
|
|
|
p += n;
|
2015-01-22 11:40:55 +08:00
|
|
|
}
|
|
|
|
}
|
|
|
|
ok = 1;
|
|
|
|
err:
|
2015-05-01 22:02:07 +08:00
|
|
|
OPENSSL_free(bn_data);
|
2015-05-01 09:37:06 +08:00
|
|
|
BN_free(t);
|
2015-05-01 22:02:07 +08:00
|
|
|
if (ok)
|
|
|
|
return buf;
|
|
|
|
OPENSSL_free(buf);
|
|
|
|
return NULL;
|
2015-01-22 11:40:55 +08:00
|
|
|
}
|
1998-12-21 18:56:39 +08:00
|
|
|
|
1999-06-21 01:36:11 +08:00
|
|
|
int BN_hex2bn(BIGNUM **bn, const char *a)
|
2015-01-22 11:40:55 +08:00
|
|
|
{
|
|
|
|
BIGNUM *ret = NULL;
|
|
|
|
BN_ULONG l = 0;
|
|
|
|
int neg = 0, h, m, i, j, k, c;
|
|
|
|
int num;
|
|
|
|
|
2017-08-21 05:23:36 +08:00
|
|
|
if (a == NULL || *a == '\0')
|
2017-07-07 05:29:55 +08:00
|
|
|
return 0;
|
2015-01-22 11:40:55 +08:00
|
|
|
|
|
|
|
if (*a == '-') {
|
|
|
|
neg = 1;
|
|
|
|
a++;
|
|
|
|
}
|
|
|
|
|
2017-08-21 05:23:36 +08:00
|
|
|
for (i = 0; i <= INT_MAX / 4 && ossl_isxdigit(a[i]); i++)
|
2016-02-22 18:27:18 +08:00
|
|
|
continue;
|
|
|
|
|
2017-08-21 05:23:36 +08:00
|
|
|
if (i == 0 || i > INT_MAX / 4)
|
2016-02-22 18:27:18 +08:00
|
|
|
goto err;
|
2015-01-22 11:40:55 +08:00
|
|
|
|
|
|
|
num = i + neg;
|
|
|
|
if (bn == NULL)
|
2017-07-07 05:29:55 +08:00
|
|
|
return num;
|
2015-01-22 11:40:55 +08:00
|
|
|
|
|
|
|
/* a is the start of the hex digits, and it is 'i' long */
|
|
|
|
if (*bn == NULL) {
|
|
|
|
if ((ret = BN_new()) == NULL)
|
2017-07-07 05:29:55 +08:00
|
|
|
return 0;
|
2015-01-22 11:40:55 +08:00
|
|
|
} else {
|
|
|
|
ret = *bn;
|
|
|
|
BN_zero(ret);
|
|
|
|
}
|
|
|
|
|
2016-02-22 18:27:18 +08:00
|
|
|
/* i is the number of hex digits */
|
2015-01-22 11:40:55 +08:00
|
|
|
if (bn_expand(ret, i * 4) == NULL)
|
|
|
|
goto err;
|
|
|
|
|
|
|
|
j = i; /* least significant 'hex' */
|
|
|
|
m = 0;
|
|
|
|
h = 0;
|
|
|
|
while (j > 0) {
|
2017-08-21 05:23:36 +08:00
|
|
|
m = (BN_BYTES * 2 <= j) ? BN_BYTES * 2 : j;
|
2015-01-22 11:40:55 +08:00
|
|
|
l = 0;
|
|
|
|
for (;;) {
|
|
|
|
c = a[j - m];
|
2016-05-13 03:52:58 +08:00
|
|
|
k = OPENSSL_hexchar2int(c);
|
|
|
|
if (k < 0)
|
2015-01-22 11:40:55 +08:00
|
|
|
k = 0; /* paranoia */
|
|
|
|
l = (l << 4) | k;
|
|
|
|
|
|
|
|
if (--m <= 0) {
|
|
|
|
ret->d[h++] = l;
|
|
|
|
break;
|
|
|
|
}
|
|
|
|
}
|
2017-08-21 05:23:36 +08:00
|
|
|
j -= BN_BYTES * 2;
|
2015-01-22 11:40:55 +08:00
|
|
|
}
|
|
|
|
ret->top = h;
|
|
|
|
bn_correct_top(ret);
|
|
|
|
|
|
|
|
*bn = ret;
|
|
|
|
bn_check_top(ret);
|
2016-09-06 06:08:43 +08:00
|
|
|
/* Don't set the negative flag if it's zero. */
|
|
|
|
if (ret->top != 0)
|
|
|
|
ret->neg = neg;
|
2017-07-07 05:29:55 +08:00
|
|
|
return num;
|
2015-01-22 11:40:55 +08:00
|
|
|
err:
|
|
|
|
if (*bn == NULL)
|
|
|
|
BN_free(ret);
|
2017-07-07 05:29:55 +08:00
|
|
|
return 0;
|
2015-01-22 11:40:55 +08:00
|
|
|
}
|
1998-12-21 18:52:47 +08:00
|
|
|
|
1999-06-21 01:36:11 +08:00
|
|
|
int BN_dec2bn(BIGNUM **bn, const char *a)
|
2015-01-22 11:40:55 +08:00
|
|
|
{
|
|
|
|
BIGNUM *ret = NULL;
|
|
|
|
BN_ULONG l = 0;
|
|
|
|
int neg = 0, i, j;
|
|
|
|
int num;
|
|
|
|
|
2017-08-21 05:23:36 +08:00
|
|
|
if (a == NULL || *a == '\0')
|
2017-07-07 05:29:55 +08:00
|
|
|
return 0;
|
2015-01-22 11:40:55 +08:00
|
|
|
if (*a == '-') {
|
|
|
|
neg = 1;
|
|
|
|
a++;
|
|
|
|
}
|
|
|
|
|
2017-08-21 05:23:36 +08:00
|
|
|
for (i = 0; i <= INT_MAX / 4 && ossl_isdigit(a[i]); i++)
|
2016-02-22 18:27:18 +08:00
|
|
|
continue;
|
|
|
|
|
2017-08-21 05:23:36 +08:00
|
|
|
if (i == 0 || i > INT_MAX / 4)
|
2016-02-22 18:27:18 +08:00
|
|
|
goto err;
|
2015-01-22 11:40:55 +08:00
|
|
|
|
|
|
|
num = i + neg;
|
|
|
|
if (bn == NULL)
|
2017-07-07 05:29:55 +08:00
|
|
|
return num;
|
2015-01-22 11:40:55 +08:00
|
|
|
|
|
|
|
/*
|
|
|
|
* a is the start of the digits, and it is 'i' long. We chop it into
|
|
|
|
* BN_DEC_NUM digits at a time
|
|
|
|
*/
|
|
|
|
if (*bn == NULL) {
|
|
|
|
if ((ret = BN_new()) == NULL)
|
2017-07-07 05:29:55 +08:00
|
|
|
return 0;
|
2015-01-22 11:40:55 +08:00
|
|
|
} else {
|
|
|
|
ret = *bn;
|
|
|
|
BN_zero(ret);
|
|
|
|
}
|
|
|
|
|
2016-02-22 18:27:18 +08:00
|
|
|
/* i is the number of digits, a bit of an over expand */
|
2015-01-22 11:40:55 +08:00
|
|
|
if (bn_expand(ret, i * 4) == NULL)
|
|
|
|
goto err;
|
|
|
|
|
2017-08-21 05:23:36 +08:00
|
|
|
j = BN_DEC_NUM - i % BN_DEC_NUM;
|
2015-01-22 11:40:55 +08:00
|
|
|
if (j == BN_DEC_NUM)
|
|
|
|
j = 0;
|
|
|
|
l = 0;
|
2016-09-06 06:08:43 +08:00
|
|
|
while (--i >= 0) {
|
2015-01-22 11:40:55 +08:00
|
|
|
l *= 10;
|
|
|
|
l += *a - '0';
|
|
|
|
a++;
|
|
|
|
if (++j == BN_DEC_NUM) {
|
2016-06-10 23:51:39 +08:00
|
|
|
if (!BN_mul_word(ret, BN_DEC_CONV)
|
|
|
|
|| !BN_add_word(ret, l))
|
|
|
|
goto err;
|
2015-01-22 11:40:55 +08:00
|
|
|
l = 0;
|
|
|
|
j = 0;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
bn_correct_top(ret);
|
|
|
|
*bn = ret;
|
|
|
|
bn_check_top(ret);
|
2016-09-06 06:08:43 +08:00
|
|
|
/* Don't set the negative flag if it's zero. */
|
|
|
|
if (ret->top != 0)
|
|
|
|
ret->neg = neg;
|
2017-07-07 05:29:55 +08:00
|
|
|
return num;
|
2015-01-22 11:40:55 +08:00
|
|
|
err:
|
|
|
|
if (*bn == NULL)
|
|
|
|
BN_free(ret);
|
2017-07-07 05:29:55 +08:00
|
|
|
return 0;
|
2015-01-22 11:40:55 +08:00
|
|
|
}
|
1998-12-21 18:56:39 +08:00
|
|
|
|
2006-04-12 01:28:37 +08:00
|
|
|
int BN_asc2bn(BIGNUM **bn, const char *a)
|
2015-01-22 11:40:55 +08:00
|
|
|
{
|
|
|
|
const char *p = a;
|
2016-09-06 06:08:43 +08:00
|
|
|
|
2015-01-22 11:40:55 +08:00
|
|
|
if (*p == '-')
|
|
|
|
p++;
|
|
|
|
|
|
|
|
if (p[0] == '0' && (p[1] == 'X' || p[1] == 'x')) {
|
|
|
|
if (!BN_hex2bn(bn, p + 2))
|
|
|
|
return 0;
|
|
|
|
} else {
|
|
|
|
if (!BN_dec2bn(bn, p))
|
|
|
|
return 0;
|
|
|
|
}
|
2016-09-06 06:08:43 +08:00
|
|
|
/* Don't set the negative flag if it's zero. */
|
|
|
|
if (*a == '-' && (*bn)->top != 0)
|
2015-01-22 11:40:55 +08:00
|
|
|
(*bn)->neg = 1;
|
|
|
|
return 1;
|
|
|
|
}
|
2006-04-12 01:28:37 +08:00
|
|
|
|
2015-01-22 11:40:55 +08:00
|
|
|
# ifndef OPENSSL_NO_STDIO
|
2000-01-27 09:50:42 +08:00
|
|
|
int BN_print_fp(FILE *fp, const BIGNUM *a)
|
2015-01-22 11:40:55 +08:00
|
|
|
{
|
|
|
|
BIO *b;
|
|
|
|
int ret;
|
|
|
|
|
|
|
|
if ((b = BIO_new(BIO_s_file())) == NULL)
|
2017-07-07 05:29:55 +08:00
|
|
|
return 0;
|
2015-01-22 11:40:55 +08:00
|
|
|
BIO_set_fp(b, fp, BIO_NOCLOSE);
|
|
|
|
ret = BN_print(b, a);
|
|
|
|
BIO_free(b);
|
2017-07-07 05:29:55 +08:00
|
|
|
return ret;
|
2015-01-22 11:40:55 +08:00
|
|
|
}
|
|
|
|
# endif
|
1998-12-21 18:52:47 +08:00
|
|
|
|
1999-06-05 20:16:33 +08:00
|
|
|
int BN_print(BIO *bp, const BIGNUM *a)
|
2015-01-22 11:40:55 +08:00
|
|
|
{
|
|
|
|
int i, j, v, z = 0;
|
|
|
|
int ret = 0;
|
|
|
|
|
2017-08-21 05:23:36 +08:00
|
|
|
if ((a->neg) && BIO_write(bp, "-", 1) != 1)
|
2015-01-22 11:40:55 +08:00
|
|
|
goto end;
|
2017-08-21 05:23:36 +08:00
|
|
|
if (BN_is_zero(a) && BIO_write(bp, "0", 1) != 1)
|
2015-01-22 11:40:55 +08:00
|
|
|
goto end;
|
|
|
|
for (i = a->top - 1; i >= 0; i--) {
|
|
|
|
for (j = BN_BITS2 - 4; j >= 0; j -= 4) {
|
|
|
|
/* strip leading zeros */
|
2017-08-24 00:28:05 +08:00
|
|
|
v = (int)((a->d[i] >> j) & 0x0f);
|
2017-08-21 05:23:36 +08:00
|
|
|
if (z || v != 0) {
|
|
|
|
if (BIO_write(bp, &Hex[v], 1) != 1)
|
2015-01-22 11:40:55 +08:00
|
|
|
goto end;
|
|
|
|
z = 1;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
|
|
|
ret = 1;
|
|
|
|
end:
|
2017-07-07 05:29:55 +08:00
|
|
|
return ret;
|
2015-01-22 11:40:55 +08:00
|
|
|
}
|
2011-01-26 01:10:30 +08:00
|
|
|
|
|
|
|
char *BN_options(void)
|
2015-01-22 11:40:55 +08:00
|
|
|
{
|
|
|
|
static int init = 0;
|
|
|
|
static char data[16];
|
2011-01-26 01:10:30 +08:00
|
|
|
|
2015-01-22 11:40:55 +08:00
|
|
|
if (!init) {
|
|
|
|
init++;
|
2011-01-26 01:10:30 +08:00
|
|
|
#ifdef BN_LLONG
|
2017-07-07 08:17:59 +08:00
|
|
|
BIO_snprintf(data, sizeof(data), "bn(%zu,%zu)",
|
|
|
|
sizeof(BN_ULLONG) * 8, sizeof(BN_ULONG) * 8);
|
2011-01-26 01:10:30 +08:00
|
|
|
#else
|
2017-07-07 08:17:59 +08:00
|
|
|
BIO_snprintf(data, sizeof(data), "bn(%zu,%zu)",
|
|
|
|
sizeof(BN_ULONG) * 8, sizeof(BN_ULONG) * 8);
|
2011-01-26 01:10:30 +08:00
|
|
|
#endif
|
2015-01-22 11:40:55 +08:00
|
|
|
}
|
2017-07-07 05:29:55 +08:00
|
|
|
return data;
|
2015-01-22 11:40:55 +08:00
|
|
|
}
|