Shawn Willden | 5ada7b6 | 2014-07-29 09:44:17 -0600 | [diff] [blame] | 1 | /* |
| 2 | * Copyright 2014 The Android Open Source Project |
| 3 | * |
| 4 | * Licensed under the Apache License, Version 2.0 (the "License"); |
| 5 | * you may not use this file except in compliance with the License. |
| 6 | * You may obtain a copy of the License at |
| 7 | * |
| 8 | * http://www.apache.org/licenses/LICENSE-2.0 |
| 9 | * |
| 10 | * Unless required by applicable law or agreed to in writing, software |
| 11 | * distributed under the License is distributed on an "AS IS" BASIS, |
| 12 | * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 13 | * See the License for the specific language governing permissions and |
| 14 | * limitations under the License. |
| 15 | */ |
| 16 | |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 17 | #include <keymaster/serializable.h> |
Shawn Willden | 0f906ec | 2015-06-20 09:16:30 -0600 | [diff] [blame] | 18 | |
| 19 | #include <assert.h> |
| 20 | |
Shawn Willden | b6837e7 | 2015-05-16 09:20:59 -0600 | [diff] [blame] | 21 | #include <keymaster/android_keymaster_utils.h> |
Shawn Willden | 5ada7b6 | 2014-07-29 09:44:17 -0600 | [diff] [blame] | 22 | |
| 23 | namespace keymaster { |
| 24 | |
Seth Moore | 27accf5 | 2022-02-14 10:30:04 -0800 | [diff] [blame] | 25 | bool __buffer_bound_check(const uint8_t* buf, const uint8_t* end, size_t len) { |
Matthew Maurer | b009813 | 2019-06-17 13:09:15 -0700 | [diff] [blame] | 26 | uintptr_t buf_next; |
| 27 | bool overflow_occurred = __builtin_add_overflow(__pval(buf), len, &buf_next); |
| 28 | return (!overflow_occurred) && (buf_next <= __pval(end)); |
| 29 | } |
| 30 | |
Matthew Maurer | b009813 | 2019-06-17 13:09:15 -0700 | [diff] [blame] | 31 | uint8_t* append_to_buf(uint8_t* buf, const uint8_t* end, const void* data, size_t data_len) { |
Seth Moore | 27accf5 | 2022-02-14 10:30:04 -0800 | [diff] [blame] | 32 | if (__buffer_bound_check(buf, end, data_len)) { |
Shawn Willden | 8d336ae | 2014-08-09 15:47:05 -0600 | [diff] [blame] | 33 | memcpy(buf, data, data_len); |
Shawn Willden | 0f906ec | 2015-06-20 09:16:30 -0600 | [diff] [blame] | 34 | return buf + data_len; |
Matthew Maurer | b009813 | 2019-06-17 13:09:15 -0700 | [diff] [blame] | 35 | } else { |
| 36 | return buf; |
Shawn Willden | 0f906ec | 2015-06-20 09:16:30 -0600 | [diff] [blame] | 37 | } |
Shawn Willden | 8d336ae | 2014-08-09 15:47:05 -0600 | [diff] [blame] | 38 | } |
| 39 | |
Shawn Willden | 172f8c9 | 2014-08-17 07:50:34 -0600 | [diff] [blame] | 40 | bool copy_from_buf(const uint8_t** buf_ptr, const uint8_t* end, void* dest, size_t size) { |
Seth Moore | 27accf5 | 2022-02-14 10:30:04 -0800 | [diff] [blame] | 41 | if (__buffer_bound_check(*buf_ptr, end, size)) { |
Matthew Maurer | b009813 | 2019-06-17 13:09:15 -0700 | [diff] [blame] | 42 | memcpy(dest, *buf_ptr, size); |
| 43 | *buf_ptr += size; |
| 44 | return true; |
| 45 | } else { |
Shawn Willden | 0f906ec | 2015-06-20 09:16:30 -0600 | [diff] [blame] | 46 | return false; |
Matthew Maurer | b009813 | 2019-06-17 13:09:15 -0700 | [diff] [blame] | 47 | } |
Shawn Willden | 5ada7b6 | 2014-07-29 09:44:17 -0600 | [diff] [blame] | 48 | } |
| 49 | |
Shawn Willden | 172f8c9 | 2014-08-17 07:50:34 -0600 | [diff] [blame] | 50 | bool copy_size_and_data_from_buf(const uint8_t** buf_ptr, const uint8_t* end, size_t* size, |
Shawn Willden | f2282b3 | 2014-08-25 06:49:54 -0600 | [diff] [blame] | 51 | UniquePtr<uint8_t[]>* dest) { |
Shawn Willden | 3287352 | 2020-12-14 22:29:46 -0700 | [diff] [blame] | 52 | if (!copy_uint32_from_buf(buf_ptr, end, size)) return false; |
Shawn Willden | 0f906ec | 2015-06-20 09:16:30 -0600 | [diff] [blame] | 53 | |
Shawn Willden | 172f8c9 | 2014-08-17 07:50:34 -0600 | [diff] [blame] | 54 | if (*size == 0) { |
Shawn Willden | f2282b3 | 2014-08-25 06:49:54 -0600 | [diff] [blame] | 55 | dest->reset(); |
Shawn Willden | 172f8c9 | 2014-08-17 07:50:34 -0600 | [diff] [blame] | 56 | return true; |
| 57 | } |
Matthew Maurer | b009813 | 2019-06-17 13:09:15 -0700 | [diff] [blame] | 58 | |
Seth Moore | 27accf5 | 2022-02-14 10:30:04 -0800 | [diff] [blame] | 59 | if (__buffer_bound_check(*buf_ptr, end, *size)) { |
Matthew Maurer | b009813 | 2019-06-17 13:09:15 -0700 | [diff] [blame] | 60 | dest->reset(new (std::nothrow) uint8_t[*size]); |
| 61 | if (!dest->get()) { |
| 62 | return false; |
| 63 | } |
| 64 | return copy_from_buf(buf_ptr, end, dest->get(), *size); |
| 65 | } else { |
Shawn Willden | 8d336ae | 2014-08-09 15:47:05 -0600 | [diff] [blame] | 66 | return false; |
Matthew Maurer | b009813 | 2019-06-17 13:09:15 -0700 | [diff] [blame] | 67 | } |
Shawn Willden | 58e1a54 | 2014-08-08 21:58:29 -0600 | [diff] [blame] | 68 | } |
| 69 | |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 70 | bool Buffer::reserve(size_t size) { |
| 71 | if (available_write() < size) { |
Eran Messeri | 48edbcd | 2021-07-19 17:46:11 +0100 | [diff] [blame] | 72 | if (!valid_buffer_state()) { |
| 73 | return false; |
| 74 | } |
| 75 | |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 76 | size_t new_size = buffer_size_ + size - available_write(); |
Shawn Willden | 0f906ec | 2015-06-20 09:16:30 -0600 | [diff] [blame] | 77 | uint8_t* new_buffer = new (std::nothrow) uint8_t[new_size]; |
Shawn Willden | 3287352 | 2020-12-14 22:29:46 -0700 | [diff] [blame] | 78 | if (!new_buffer) return false; |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 79 | memcpy(new_buffer, buffer_.get() + read_position_, available_read()); |
| 80 | memset_s(buffer_.get(), 0, buffer_size_); |
| 81 | buffer_.reset(new_buffer); |
| 82 | buffer_size_ = new_size; |
| 83 | write_position_ -= read_position_; |
| 84 | read_position_ = 0; |
| 85 | } |
| 86 | return true; |
| 87 | } |
| 88 | |
| 89 | bool Buffer::Reinitialize(size_t size) { |
| 90 | Clear(); |
Shawn Willden | 0f906ec | 2015-06-20 09:16:30 -0600 | [diff] [blame] | 91 | buffer_.reset(new (std::nothrow) uint8_t[size]); |
Shawn Willden | 3287352 | 2020-12-14 22:29:46 -0700 | [diff] [blame] | 92 | if (!buffer_.get()) return false; |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 93 | buffer_size_ = size; |
| 94 | read_position_ = 0; |
| 95 | write_position_ = 0; |
| 96 | return true; |
| 97 | } |
| 98 | |
| 99 | bool Buffer::Reinitialize(const void* data, size_t data_len) { |
| 100 | Clear(); |
Sami Tolvanen | 637dd84 | 2016-03-31 10:37:49 -0700 | [diff] [blame] | 101 | if (__pval(data) + data_len < __pval(data)) // Pointer wrap check |
Shawn Willden | 0f906ec | 2015-06-20 09:16:30 -0600 | [diff] [blame] | 102 | return false; |
| 103 | buffer_.reset(new (std::nothrow) uint8_t[data_len]); |
Shawn Willden | 3287352 | 2020-12-14 22:29:46 -0700 | [diff] [blame] | 104 | if (!buffer_.get()) return false; |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 105 | buffer_size_ = data_len; |
| 106 | memcpy(buffer_.get(), data, data_len); |
| 107 | read_position_ = 0; |
| 108 | write_position_ = buffer_size_; |
| 109 | return true; |
| 110 | } |
| 111 | |
| 112 | size_t Buffer::available_write() const { |
Shawn Willden | 0f906ec | 2015-06-20 09:16:30 -0600 | [diff] [blame] | 113 | assert(buffer_size_ >= write_position_); |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 114 | return buffer_size_ - write_position_; |
| 115 | } |
| 116 | |
| 117 | size_t Buffer::available_read() const { |
Shawn Willden | 0f906ec | 2015-06-20 09:16:30 -0600 | [diff] [blame] | 118 | assert(buffer_size_ >= write_position_); |
| 119 | assert(write_position_ >= read_position_); |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 120 | return write_position_ - read_position_; |
| 121 | } |
| 122 | |
Eran Messeri | 48edbcd | 2021-07-19 17:46:11 +0100 | [diff] [blame] | 123 | bool Buffer::valid_buffer_state() const { |
| 124 | return (buffer_size_ >= write_position_) && (write_position_ >= read_position_); |
| 125 | } |
| 126 | |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 127 | bool Buffer::write(const uint8_t* src, size_t write_length) { |
Shawn Willden | 3287352 | 2020-12-14 22:29:46 -0700 | [diff] [blame] | 128 | if (available_write() < write_length) return false; |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 129 | memcpy(buffer_.get() + write_position_, src, write_length); |
| 130 | write_position_ += write_length; |
| 131 | return true; |
| 132 | } |
| 133 | |
| 134 | bool Buffer::read(uint8_t* dest, size_t read_length) { |
Shawn Willden | 3287352 | 2020-12-14 22:29:46 -0700 | [diff] [blame] | 135 | if (available_read() < read_length) return false; |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 136 | memcpy(dest, buffer_.get() + read_position_, read_length); |
| 137 | read_position_ += read_length; |
| 138 | return true; |
| 139 | } |
| 140 | |
Eran Messeri | 48edbcd | 2021-07-19 17:46:11 +0100 | [diff] [blame] | 141 | bool Buffer::advance_write(int distance) { |
| 142 | if (distance < 0) { |
| 143 | return false; |
| 144 | } |
| 145 | |
| 146 | const size_t validated_distance = static_cast<size_t>(distance); |
Eran Messeri | ab8a504 | 2021-10-21 10:21:29 +0100 | [diff] [blame] | 147 | size_t new_write_position = 0; |
Eran Messeri | 48edbcd | 2021-07-19 17:46:11 +0100 | [diff] [blame] | 148 | |
Eran Messeri | ab8a504 | 2021-10-21 10:21:29 +0100 | [diff] [blame] | 149 | // if an integer overflow occurred or the new position exceeds the buffer_size return false. |
| 150 | if (__builtin_add_overflow(write_position_, validated_distance, &new_write_position) || |
| 151 | new_write_position > buffer_size_) { |
| 152 | return false; |
Eran Messeri | 48edbcd | 2021-07-19 17:46:11 +0100 | [diff] [blame] | 153 | } |
Eran Messeri | ab8a504 | 2021-10-21 10:21:29 +0100 | [diff] [blame] | 154 | |
| 155 | write_position_ = new_write_position; |
| 156 | return true; |
Eran Messeri | 48edbcd | 2021-07-19 17:46:11 +0100 | [diff] [blame] | 157 | } |
| 158 | |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 159 | size_t Buffer::SerializedSize() const { |
| 160 | return sizeof(uint32_t) + available_read(); |
| 161 | } |
| 162 | |
| 163 | uint8_t* Buffer::Serialize(uint8_t* buf, const uint8_t* end) const { |
| 164 | return append_size_and_data_to_buf(buf, end, peek_read(), available_read()); |
| 165 | } |
| 166 | |
| 167 | bool Buffer::Deserialize(const uint8_t** buf_ptr, const uint8_t* end) { |
| 168 | Clear(); |
| 169 | if (!copy_size_and_data_from_buf(buf_ptr, end, &buffer_size_, &buffer_)) { |
| 170 | buffer_.reset(); |
| 171 | buffer_size_ = 0; |
| 172 | return false; |
| 173 | } |
| 174 | write_position_ = buffer_size_; |
| 175 | return true; |
| 176 | } |
| 177 | |
| 178 | void Buffer::Clear() { |
Shawn Willden | 1834d5f | 2014-12-08 12:41:59 -0700 | [diff] [blame] | 179 | memset_s(buffer_.get(), 0, buffer_size_); |
Shawn Willden | 98d9b92 | 2014-08-26 08:14:10 -0600 | [diff] [blame] | 180 | buffer_.reset(); |
| 181 | read_position_ = 0; |
| 182 | write_position_ = 0; |
| 183 | buffer_size_ = 0; |
| 184 | } |
| 185 | |
Shawn Willden | 5ada7b6 | 2014-07-29 09:44:17 -0600 | [diff] [blame] | 186 | } // namespace keymaster |