blob: 89469736557ea72c25998b70143890082a95e94f [file] [log] [blame]
Mateusz Starzyk6c2e9b62021-05-19 17:54:54 +02001#define MBEDTLS_ALLOW_PRIVATE_ACCESS
2
Philippe Antoine72333522018-05-03 16:40:24 +02003#include <stdint.h>
Philippe Antoine8b1ed1c2020-01-22 16:22:36 +01004#include <stdlib.h>
Philippe Antoine72333522018-05-03 16:40:24 +02005#include "mbedtls/pk.h"
6
Gilles Peskine449bd832023-01-11 14:50:10 +01007int LLVMFuzzerTestOneInput(const uint8_t *Data, size_t Size)
8{
Philippe Antoine72333522018-05-03 16:40:24 +02009#ifdef MBEDTLS_PK_PARSE_C
10 int ret;
11 mbedtls_pk_context pk;
12
Gilles Peskine449bd832023-01-11 14:50:10 +010013 mbedtls_pk_init(&pk);
Przemek Stekiel774f9de2023-04-19 11:47:01 +020014#if defined(MBEDTLS_USE_PSA_CRYPTO)
15 psa_status_t status = psa_crypto_init();
16 if (status != PSA_SUCCESS) {
17 goto exit;
18 }
19#endif /* MBEDTLS_USE_PSA_CRYPTO */
Gilles Peskine449bd832023-01-11 14:50:10 +010020 ret = mbedtls_pk_parse_public_key(&pk, Data, Size);
Philippe Antoine72333522018-05-03 16:40:24 +020021 if (ret == 0) {
22#if defined(MBEDTLS_RSA_C)
Gilles Peskine449bd832023-01-11 14:50:10 +010023 if (mbedtls_pk_get_type(&pk) == MBEDTLS_PK_RSA) {
Philippe Antoine72333522018-05-03 16:40:24 +020024 mbedtls_mpi N, P, Q, D, E, DP, DQ, QP;
25 mbedtls_rsa_context *rsa;
26
Gilles Peskine449bd832023-01-11 14:50:10 +010027 mbedtls_mpi_init(&N); mbedtls_mpi_init(&P); mbedtls_mpi_init(&Q);
28 mbedtls_mpi_init(&D); mbedtls_mpi_init(&E); mbedtls_mpi_init(&DP);
29 mbedtls_mpi_init(&DQ); mbedtls_mpi_init(&QP);
Philippe Antoine72333522018-05-03 16:40:24 +020030
Gilles Peskine449bd832023-01-11 14:50:10 +010031 rsa = mbedtls_pk_rsa(pk);
32 if (mbedtls_rsa_export(rsa, &N, NULL, NULL, NULL, &E) != 0) {
Gilles Peskine8d366962020-02-25 19:51:07 +010033 abort();
34 }
Gilles Peskine449bd832023-01-11 14:50:10 +010035 if (mbedtls_rsa_export(rsa, &N, &P, &Q, &D, &E) != MBEDTLS_ERR_RSA_BAD_INPUT_DATA) {
Philippe Antoine66070bc2020-01-22 13:54:56 +010036 abort();
37 }
Gilles Peskine449bd832023-01-11 14:50:10 +010038 if (mbedtls_rsa_export_crt(rsa, &DP, &DQ, &QP) != MBEDTLS_ERR_RSA_BAD_INPUT_DATA) {
Philippe Antoine7d4bd6f2020-01-22 14:13:08 +010039 abort();
40 }
Philippe Antoine72333522018-05-03 16:40:24 +020041
Gilles Peskine449bd832023-01-11 14:50:10 +010042 mbedtls_mpi_free(&N); mbedtls_mpi_free(&P); mbedtls_mpi_free(&Q);
43 mbedtls_mpi_free(&D); mbedtls_mpi_free(&E); mbedtls_mpi_free(&DP);
44 mbedtls_mpi_free(&DQ); mbedtls_mpi_free(&QP);
Philippe Antoine72333522018-05-03 16:40:24 +020045
Gilles Peskine449bd832023-01-11 14:50:10 +010046 } else
Philippe Antoine72333522018-05-03 16:40:24 +020047#endif
48#if defined(MBEDTLS_ECP_C)
Gilles Peskine449bd832023-01-11 14:50:10 +010049 if (mbedtls_pk_get_type(&pk) == MBEDTLS_PK_ECKEY ||
50 mbedtls_pk_get_type(&pk) == MBEDTLS_PK_ECKEY_DH) {
51 mbedtls_ecp_keypair *ecp = mbedtls_pk_ec(pk);
Gilles Peskinef02b9842020-02-25 19:52:44 +010052 mbedtls_ecp_group_id grp_id = ecp->grp.id;
53 const mbedtls_ecp_curve_info *curve_info =
Gilles Peskine449bd832023-01-11 14:50:10 +010054 mbedtls_ecp_curve_info_from_grp_id(grp_id);
Philippe Antoine72333522018-05-03 16:40:24 +020055
Gilles Peskinef02b9842020-02-25 19:52:44 +010056 /* If the curve is not supported, the key should not have been
57 * accepted. */
Gilles Peskine449bd832023-01-11 14:50:10 +010058 if (curve_info == NULL) {
59 abort();
60 }
Gilles Peskinef02b9842020-02-25 19:52:44 +010061
62 /* It's a public key, so the private value should not have
63 * been changed from its initialization to 0. */
Gilles Peskine449bd832023-01-11 14:50:10 +010064 if (mbedtls_mpi_cmp_int(&ecp->d, 0) != 0) {
65 abort();
66 }
67 } else
Philippe Antoine72333522018-05-03 16:40:24 +020068#endif
69 {
Gilles Peskined7fb66f2020-02-25 19:54:27 +010070 /* The key is valid but is not of a supported type.
71 * This should not happen. */
Gilles Peskine449bd832023-01-11 14:50:10 +010072 abort();
Philippe Antoine72333522018-05-03 16:40:24 +020073 }
74 }
Przemek Stekiel774f9de2023-04-19 11:47:01 +020075exit:
Gilles Peskine449bd832023-01-11 14:50:10 +010076 mbedtls_pk_free(&pk);
Przemek Stekiel774f9de2023-04-19 11:47:01 +020077 mbedtls_psa_crypto_free();
Philippe Antoine72333522018-05-03 16:40:24 +020078#else
79 (void) Data;
80 (void) Size;
81#endif //MBEDTLS_PK_PARSE_C
82
83 return 0;
84}