blob: 16d9d835687a715622c363d5659177d18aaaba57 [file] [log] [blame]
Philippe Antoine72333522018-05-03 16:40:24 +02001#include <stdint.h>
Philippe Antoine8b1ed1c2020-01-22 16:22:36 +01002#include <stdlib.h>
Philippe Antoine72333522018-05-03 16:40:24 +02003#include "mbedtls/pk.h"
4
Gilles Peskine1b6c09a2023-01-11 14:52:35 +01005int LLVMFuzzerTestOneInput(const uint8_t *Data, size_t Size)
6{
Philippe Antoine72333522018-05-03 16:40:24 +02007#ifdef MBEDTLS_PK_PARSE_C
8 int ret;
9 mbedtls_pk_context pk;
10
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010011 mbedtls_pk_init(&pk);
Przemek Stekiel8fa17b62023-04-19 11:47:01 +020012#if defined(MBEDTLS_USE_PSA_CRYPTO)
13 psa_status_t status = psa_crypto_init();
14 if (status != PSA_SUCCESS) {
15 goto exit;
16 }
17#endif /* MBEDTLS_USE_PSA_CRYPTO */
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010018 ret = mbedtls_pk_parse_public_key(&pk, Data, Size);
Philippe Antoine72333522018-05-03 16:40:24 +020019 if (ret == 0) {
20#if defined(MBEDTLS_RSA_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010021 if (mbedtls_pk_get_type(&pk) == MBEDTLS_PK_RSA) {
Philippe Antoine72333522018-05-03 16:40:24 +020022 mbedtls_mpi N, P, Q, D, E, DP, DQ, QP;
23 mbedtls_rsa_context *rsa;
24
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010025 mbedtls_mpi_init(&N); mbedtls_mpi_init(&P); mbedtls_mpi_init(&Q);
26 mbedtls_mpi_init(&D); mbedtls_mpi_init(&E); mbedtls_mpi_init(&DP);
27 mbedtls_mpi_init(&DQ); mbedtls_mpi_init(&QP);
Philippe Antoine72333522018-05-03 16:40:24 +020028
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010029 rsa = mbedtls_pk_rsa(pk);
30 if (mbedtls_rsa_export(rsa, &N, NULL, NULL, NULL, &E) != 0) {
Gilles Peskine8d366962020-02-25 19:51:07 +010031 abort();
32 }
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010033 if (mbedtls_rsa_export(rsa, &N, &P, &Q, &D, &E) != MBEDTLS_ERR_RSA_BAD_INPUT_DATA) {
Philippe Antoine66070bc2020-01-22 13:54:56 +010034 abort();
35 }
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010036 if (mbedtls_rsa_export_crt(rsa, &DP, &DQ, &QP) != MBEDTLS_ERR_RSA_BAD_INPUT_DATA) {
Philippe Antoine7d4bd6f2020-01-22 14:13:08 +010037 abort();
38 }
Philippe Antoine72333522018-05-03 16:40:24 +020039
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010040 mbedtls_mpi_free(&N); mbedtls_mpi_free(&P); mbedtls_mpi_free(&Q);
41 mbedtls_mpi_free(&D); mbedtls_mpi_free(&E); mbedtls_mpi_free(&DP);
42 mbedtls_mpi_free(&DQ); mbedtls_mpi_free(&QP);
Philippe Antoine72333522018-05-03 16:40:24 +020043
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010044 } else
Philippe Antoine72333522018-05-03 16:40:24 +020045#endif
46#if defined(MBEDTLS_ECP_C)
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010047 if (mbedtls_pk_get_type(&pk) == MBEDTLS_PK_ECKEY ||
48 mbedtls_pk_get_type(&pk) == MBEDTLS_PK_ECKEY_DH) {
49 mbedtls_ecp_keypair *ecp = mbedtls_pk_ec(pk);
Gilles Peskinef02b9842020-02-25 19:52:44 +010050 mbedtls_ecp_group_id grp_id = ecp->grp.id;
51 const mbedtls_ecp_curve_info *curve_info =
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010052 mbedtls_ecp_curve_info_from_grp_id(grp_id);
Philippe Antoine72333522018-05-03 16:40:24 +020053
Gilles Peskinef02b9842020-02-25 19:52:44 +010054 /* If the curve is not supported, the key should not have been
55 * accepted. */
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010056 if (curve_info == NULL) {
57 abort();
58 }
Gilles Peskinef02b9842020-02-25 19:52:44 +010059
60 /* It's a public key, so the private value should not have
61 * been changed from its initialization to 0. */
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010062 if (mbedtls_mpi_cmp_int(&ecp->d, 0) != 0) {
63 abort();
64 }
65 } else
Philippe Antoine72333522018-05-03 16:40:24 +020066#endif
67 {
Gilles Peskined7fb66f2020-02-25 19:54:27 +010068 /* The key is valid but is not of a supported type.
69 * This should not happen. */
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010070 abort();
Philippe Antoine72333522018-05-03 16:40:24 +020071 }
72 }
Przemek Stekiel8fa17b62023-04-19 11:47:01 +020073exit:
Gilles Peskine1b6c09a2023-01-11 14:52:35 +010074 mbedtls_pk_free(&pk);
Przemek Stekiel8fa17b62023-04-19 11:47:01 +020075 mbedtls_psa_crypto_free();
Philippe Antoine72333522018-05-03 16:40:24 +020076#else
77 (void) Data;
78 (void) Size;
79#endif //MBEDTLS_PK_PARSE_C
80
81 return 0;
82}