mirror of
https://github.com/openssl/openssl.git
synced 2025-01-06 13:26:43 +08:00
d23adad113
EVP_CIPHER_CTX_set_keylen() was succeeding even though a bad key length is passed to it. This is because the set_ctx_params() were all accepting this parameter and blindly changing the keylen even though the cipher did not accept a variable key length. Even removing this didn't entirely resolve the issue because set_ctx_params() functions succeed even if passed a parameter they do not recognise. This should fix various issues found by OSSfuzz/Cryptofuzz. Reviewed-by: Shane Lontis <shane.lontis@oracle.com> (Merged from https://github.com/openssl/openssl/pull/10449)
50 lines
1.5 KiB
C
50 lines
1.5 KiB
C
/*
|
|
* Copyright 2019 The OpenSSL Project Authors. All Rights Reserved.
|
|
*
|
|
* Licensed under the Apache License 2.0 (the "License"). You may not use
|
|
* this file except in compliance with the License. You can obtain a copy
|
|
* in the file LICENSE in the source distribution or at
|
|
* https://www.openssl.org/source/license.html
|
|
*/
|
|
|
|
/* Dispatch functions for cast cipher modes ecb, cbc, ofb, cfb */
|
|
|
|
#include "cipher_cast.h"
|
|
#include "prov/implementations.h"
|
|
#include "prov/providercommonerr.h"
|
|
|
|
#define CAST5_FLAGS (EVP_CIPH_VARIABLE_LENGTH)
|
|
|
|
static OSSL_OP_cipher_freectx_fn cast5_freectx;
|
|
static OSSL_OP_cipher_dupctx_fn cast5_dupctx;
|
|
|
|
static void cast5_freectx(void *vctx)
|
|
{
|
|
PROV_CAST_CTX *ctx = (PROV_CAST_CTX *)vctx;
|
|
|
|
OPENSSL_clear_free(ctx, sizeof(*ctx));
|
|
}
|
|
|
|
static void *cast5_dupctx(void *ctx)
|
|
{
|
|
PROV_CAST_CTX *in = (PROV_CAST_CTX *)ctx;
|
|
PROV_CAST_CTX *ret = OPENSSL_malloc(sizeof(*ret));
|
|
|
|
if (ret == NULL) {
|
|
ERR_raise(ERR_LIB_PROV, ERR_R_MALLOC_FAILURE);
|
|
return NULL;
|
|
}
|
|
*ret = *in;
|
|
|
|
return ret;
|
|
}
|
|
|
|
/* cast5128ecb_functions */
|
|
IMPLEMENT_var_keylen_cipher(cast5, CAST, ecb, ECB, CAST5_FLAGS, 128, 64, 0, block)
|
|
/* cast5128cbc_functions */
|
|
IMPLEMENT_var_keylen_cipher(cast5, CAST, cbc, CBC, CAST5_FLAGS, 128, 64, 64, block)
|
|
/* cast564ofb64_functions */
|
|
IMPLEMENT_var_keylen_cipher(cast5, CAST, ofb64, OFB, CAST5_FLAGS, 64, 8, 64, stream)
|
|
/* cast564cfb64_functions */
|
|
IMPLEMENT_var_keylen_cipher(cast5, CAST, cfb64, CFB, CAST5_FLAGS, 64, 8, 64, stream)
|