diff options
Diffstat (limited to '')
| -rw-r--r-- | src/lib/libcrypto/Makefile | 3 | ||||
| -rw-r--r-- | src/lib/libcrypto/ec/ec_check.c | 112 | ||||
| -rw-r--r-- | src/lib/libcrypto/ec/ec_lib.c | 57 |
3 files changed, 57 insertions, 115 deletions
diff --git a/src/lib/libcrypto/Makefile b/src/lib/libcrypto/Makefile index d3be27ade1..6a1d125950 100644 --- a/src/lib/libcrypto/Makefile +++ b/src/lib/libcrypto/Makefile | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | # $OpenBSD: Makefile,v 1.213 2024/10/18 11:12:10 tb Exp $ | 1 | # $OpenBSD: Makefile,v 1.214 2024/10/19 08:26:03 tb Exp $ |
| 2 | 2 | ||
| 3 | LIB= crypto | 3 | LIB= crypto |
| 4 | LIBREBUILD=y | 4 | LIBREBUILD=y |
| @@ -281,7 +281,6 @@ SRCS+= dsa_prn.c | |||
| 281 | # ec/ | 281 | # ec/ |
| 282 | SRCS+= ec_ameth.c | 282 | SRCS+= ec_ameth.c |
| 283 | SRCS+= ec_asn1.c | 283 | SRCS+= ec_asn1.c |
| 284 | SRCS+= ec_check.c | ||
| 285 | SRCS+= ec_curve.c | 284 | SRCS+= ec_curve.c |
| 286 | SRCS+= ec_err.c | 285 | SRCS+= ec_err.c |
| 287 | SRCS+= ec_key.c | 286 | SRCS+= ec_key.c |
diff --git a/src/lib/libcrypto/ec/ec_check.c b/src/lib/libcrypto/ec/ec_check.c deleted file mode 100644 index 0f98ef613c..0000000000 --- a/src/lib/libcrypto/ec/ec_check.c +++ /dev/null | |||
| @@ -1,112 +0,0 @@ | |||
| 1 | /* $OpenBSD: ec_check.c,v 1.15 2023/07/07 13:54:45 beck Exp $ */ | ||
| 2 | /* ==================================================================== | ||
| 3 | * Copyright (c) 1998-2002 The OpenSSL Project. All rights reserved. | ||
| 4 | * | ||
| 5 | * Redistribution and use in source and binary forms, with or without | ||
| 6 | * modification, are permitted provided that the following conditions | ||
| 7 | * are met: | ||
| 8 | * | ||
| 9 | * 1. Redistributions of source code must retain the above copyright | ||
| 10 | * notice, this list of conditions and the following disclaimer. | ||
| 11 | * | ||
| 12 | * 2. Redistributions in binary form must reproduce the above copyright | ||
| 13 | * notice, this list of conditions and the following disclaimer in | ||
| 14 | * the documentation and/or other materials provided with the | ||
| 15 | * distribution. | ||
| 16 | * | ||
| 17 | * 3. All advertising materials mentioning features or use of this | ||
| 18 | * software must display the following acknowledgment: | ||
| 19 | * "This product includes software developed by the OpenSSL Project | ||
| 20 | * for use in the OpenSSL Toolkit. (http://www.openssl.org/)" | ||
| 21 | * | ||
| 22 | * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to | ||
| 23 | * endorse or promote products derived from this software without | ||
| 24 | * prior written permission. For written permission, please contact | ||
| 25 | * openssl-core@openssl.org. | ||
| 26 | * | ||
| 27 | * 5. Products derived from this software may not be called "OpenSSL" | ||
| 28 | * nor may "OpenSSL" appear in their names without prior written | ||
| 29 | * permission of the OpenSSL Project. | ||
| 30 | * | ||
| 31 | * 6. Redistributions of any form whatsoever must retain the following | ||
| 32 | * acknowledgment: | ||
| 33 | * "This product includes software developed by the OpenSSL Project | ||
| 34 | * for use in the OpenSSL Toolkit (http://www.openssl.org/)" | ||
| 35 | * | ||
| 36 | * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY | ||
| 37 | * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE | ||
| 38 | * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR | ||
| 39 | * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR | ||
| 40 | * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, | ||
| 41 | * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT | ||
| 42 | * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; | ||
| 43 | * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) | ||
| 44 | * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, | ||
| 45 | * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) | ||
| 46 | * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | ||
| 47 | * OF THE POSSIBILITY OF SUCH DAMAGE. | ||
| 48 | * ==================================================================== | ||
| 49 | * | ||
| 50 | * This product includes cryptographic software written by Eric Young | ||
| 51 | * (eay@cryptsoft.com). This product includes software written by Tim | ||
| 52 | * Hudson (tjh@cryptsoft.com). | ||
| 53 | * | ||
| 54 | */ | ||
| 55 | |||
| 56 | #include "ec_local.h" | ||
| 57 | #include <openssl/err.h> | ||
| 58 | |||
| 59 | int | ||
| 60 | EC_GROUP_check(const EC_GROUP *group, BN_CTX *ctx_in) | ||
| 61 | { | ||
| 62 | BN_CTX *ctx; | ||
| 63 | EC_POINT *point = NULL; | ||
| 64 | const BIGNUM *order; | ||
| 65 | int ret = 0; | ||
| 66 | |||
| 67 | if ((ctx = ctx_in) == NULL) | ||
| 68 | ctx = BN_CTX_new(); | ||
| 69 | if (ctx == NULL) | ||
| 70 | goto err; | ||
| 71 | |||
| 72 | /* check the discriminant */ | ||
| 73 | if (!EC_GROUP_check_discriminant(group, ctx)) { | ||
| 74 | ECerror(EC_R_DISCRIMINANT_IS_ZERO); | ||
| 75 | goto err; | ||
| 76 | } | ||
| 77 | /* check the generator */ | ||
| 78 | if (group->generator == NULL) { | ||
| 79 | ECerror(EC_R_UNDEFINED_GENERATOR); | ||
| 80 | goto err; | ||
| 81 | } | ||
| 82 | if (EC_POINT_is_on_curve(group, group->generator, ctx) <= 0) { | ||
| 83 | ECerror(EC_R_POINT_IS_NOT_ON_CURVE); | ||
| 84 | goto err; | ||
| 85 | } | ||
| 86 | /* check the order of the generator */ | ||
| 87 | if ((point = EC_POINT_new(group)) == NULL) | ||
| 88 | goto err; | ||
| 89 | if ((order = EC_GROUP_get0_order(group)) == NULL) | ||
| 90 | goto err; | ||
| 91 | if (BN_is_zero(order)) { | ||
| 92 | ECerror(EC_R_UNDEFINED_ORDER); | ||
| 93 | goto err; | ||
| 94 | } | ||
| 95 | if (!EC_POINT_mul(group, point, order, NULL, NULL, ctx)) | ||
| 96 | goto err; | ||
| 97 | if (EC_POINT_is_at_infinity(group, point) <= 0) { | ||
| 98 | ECerror(EC_R_INVALID_GROUP_ORDER); | ||
| 99 | goto err; | ||
| 100 | } | ||
| 101 | |||
| 102 | ret = 1; | ||
| 103 | |||
| 104 | err: | ||
| 105 | if (ctx != ctx_in) | ||
| 106 | BN_CTX_free(ctx); | ||
| 107 | |||
| 108 | EC_POINT_free(point); | ||
| 109 | |||
| 110 | return ret; | ||
| 111 | } | ||
| 112 | LCRYPTO_ALIAS(EC_GROUP_check); | ||
diff --git a/src/lib/libcrypto/ec/ec_lib.c b/src/lib/libcrypto/ec/ec_lib.c index 0e5897da9d..e17c4396f7 100644 --- a/src/lib/libcrypto/ec/ec_lib.c +++ b/src/lib/libcrypto/ec/ec_lib.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ec_lib.c,v 1.70 2024/10/18 10:57:26 tb Exp $ */ | 1 | /* $OpenBSD: ec_lib.c,v 1.71 2024/10/19 08:26:03 tb Exp $ */ |
| 2 | /* | 2 | /* |
| 3 | * Originally written by Bodo Moeller for the OpenSSL project. | 3 | * Originally written by Bodo Moeller for the OpenSSL project. |
| 4 | */ | 4 | */ |
| @@ -602,6 +602,61 @@ EC_GROUP_check_discriminant(const EC_GROUP *group, BN_CTX *ctx_in) | |||
| 602 | LCRYPTO_ALIAS(EC_GROUP_check_discriminant); | 602 | LCRYPTO_ALIAS(EC_GROUP_check_discriminant); |
| 603 | 603 | ||
| 604 | int | 604 | int |
| 605 | EC_GROUP_check(const EC_GROUP *group, BN_CTX *ctx_in) | ||
| 606 | { | ||
| 607 | BN_CTX *ctx; | ||
| 608 | EC_POINT *point = NULL; | ||
| 609 | const BIGNUM *order; | ||
| 610 | int ret = 0; | ||
| 611 | |||
| 612 | if ((ctx = ctx_in) == NULL) | ||
| 613 | ctx = BN_CTX_new(); | ||
| 614 | if (ctx == NULL) | ||
| 615 | goto err; | ||
| 616 | |||
| 617 | /* check the discriminant */ | ||
| 618 | if (!EC_GROUP_check_discriminant(group, ctx)) { | ||
| 619 | ECerror(EC_R_DISCRIMINANT_IS_ZERO); | ||
| 620 | goto err; | ||
| 621 | } | ||
| 622 | /* check the generator */ | ||
| 623 | if (group->generator == NULL) { | ||
| 624 | ECerror(EC_R_UNDEFINED_GENERATOR); | ||
| 625 | goto err; | ||
| 626 | } | ||
| 627 | if (EC_POINT_is_on_curve(group, group->generator, ctx) <= 0) { | ||
| 628 | ECerror(EC_R_POINT_IS_NOT_ON_CURVE); | ||
| 629 | goto err; | ||
| 630 | } | ||
| 631 | /* check the order of the generator */ | ||
| 632 | if ((point = EC_POINT_new(group)) == NULL) | ||
| 633 | goto err; | ||
| 634 | if ((order = EC_GROUP_get0_order(group)) == NULL) | ||
| 635 | goto err; | ||
| 636 | if (BN_is_zero(order)) { | ||
| 637 | ECerror(EC_R_UNDEFINED_ORDER); | ||
| 638 | goto err; | ||
| 639 | } | ||
| 640 | if (!EC_POINT_mul(group, point, order, NULL, NULL, ctx)) | ||
| 641 | goto err; | ||
| 642 | if (EC_POINT_is_at_infinity(group, point) <= 0) { | ||
| 643 | ECerror(EC_R_INVALID_GROUP_ORDER); | ||
| 644 | goto err; | ||
| 645 | } | ||
| 646 | |||
| 647 | ret = 1; | ||
| 648 | |||
| 649 | err: | ||
| 650 | if (ctx != ctx_in) | ||
| 651 | BN_CTX_free(ctx); | ||
| 652 | |||
| 653 | EC_POINT_free(point); | ||
| 654 | |||
| 655 | return ret; | ||
| 656 | } | ||
| 657 | LCRYPTO_ALIAS(EC_GROUP_check); | ||
| 658 | |||
| 659 | int | ||
| 605 | EC_GROUP_cmp(const EC_GROUP *a, const EC_GROUP *b, BN_CTX *ctx) | 660 | EC_GROUP_cmp(const EC_GROUP *a, const EC_GROUP *b, BN_CTX *ctx) |
| 606 | { | 661 | { |
| 607 | int r = 0; | 662 | int r = 0; |
