18faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel/*
28faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * written by Colin Plumb in 1993, no copyright is claimed.
38faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * This code is in the public domain; do with it what you wish.
48faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel *
58faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * Equivalent code is available from RSA Data Security, Inc.
68faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * This code has been tested against that, and is equivalent,
78faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * except that you don't need to include two pages of legalese
88faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * with every copy.
98faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel *
108faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * To compute the message digest of a chunk of bytes, declare an
118faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * MD5Context structure, pass it to MD5Init, call MD5Update as
128faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * needed on buffers full of bytes, and then call MD5Final, which
138faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * will fill a supplied 16-byte array with the digest.
148faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel */
158faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
168faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel#include <string.h>
178faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
188faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel#include "md5.h"
198faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
208faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel#ifndef WORDS_BIGENDIAN
218faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel#define byteReverse(buf, len)   /* Nothing */
228faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel#else
238faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel/*
248faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * Note: this code is harmless on little-endian machines.
258faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel */
268faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedelstatic void byteReverse(unsigned char *buf, unsigned longs)
278faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel{
288faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  u32 t;
298faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  do {
308faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    t = (u32) ((unsigned) buf[3] << 8 | buf[2]) << 16 |
318faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel      ((unsigned) buf[1] << 8 | buf[0]);
328faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    *(u32 *) buf = t;
338faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    buf += 4;
348faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  } while (--longs);
358faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel}
368faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel#endif
378faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
388faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedelstatic void MD5Transform(u32 buf[4], u32 const in[16]);
398faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
408faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel/*
418faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * Start MD5 accumulation.  Set bit count to 0 and buffer to mysterious
428faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * initialization constants.
438faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel */
448faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedelvoid MD5Init(struct MD5Context *ctx)
458faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel{
468faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  ctx->buf[0] = 0x67452301;
478faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  ctx->buf[1] = 0xefcdab89;
488faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  ctx->buf[2] = 0x98badcfe;
498faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  ctx->buf[3] = 0x10325476;
508faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
518faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  ctx->bits[0] = 0;
528faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  ctx->bits[1] = 0;
538faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel}
548faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
558faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel/*
568faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * Update context to reflect the concatenation of another buffer full
578faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * of bytes.
588faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel */
598faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedelvoid MD5Update(struct MD5Context *ctx, unsigned char const *buf, unsigned len)
608faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel{
618faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  u32 t;
628faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
638faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  /* Update bitcount */
648faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
658faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  t = ctx->bits[0];
668faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  if ((ctx->bits[0] = t + ((u32) len << 3)) < t)
678faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    ctx->bits[1]++;         /* Carry from low to high */
688faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  ctx->bits[1] += len >> 29;
698faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
708faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  t = (t >> 3) & 0x3f;        /* Bytes already in shsInfo->data */
718faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
728faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  /* Handle any leading odd-sized chunks */
738faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
748faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  if (t) {
758faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    unsigned char *p = (unsigned char *) ctx->in + t;
768faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
778faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    t = 64 - t;
788faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    if (len < t) {
798faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel      memcpy(p, buf, len);
808faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel      return;
818faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    }
828faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    memcpy(p, buf, t);
838faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    byteReverse(ctx->in, 16);
848faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    MD5Transform(ctx->buf, (u32 *) ctx->in);
858faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    buf += t;
868faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    len -= t;
878faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  }
888faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  /* Process data in 64-byte chunks */
898faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
908faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  while (len >= 64) {
918faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    memcpy(ctx->in, buf, 64);
928faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    byteReverse(ctx->in, 16);
938faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    MD5Transform(ctx->buf, (u32 *) ctx->in);
948faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    buf += 64;
958faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    len -= 64;
968faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  }
978faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
988faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  /* Handle any remaining bytes of data. */
998faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1008faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  memcpy(ctx->in, buf, len);
1018faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel}
1028faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1038faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel/*
1048faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * Final wrapup - pad to 64-byte boundary with the bit pattern
1058faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * 1 0* (64-bit count of bits processed, MSB-first)
1068faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel */
1078faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedelvoid MD5Final(unsigned char digest[16], struct MD5Context *ctx)
1088faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel{
1098faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  unsigned count;
1108faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  unsigned char *p;
1118faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1128faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  /* Compute number of bytes mod 64 */
1138faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  count = (ctx->bits[0] >> 3) & 0x3F;
1148faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1158faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  /* Set the first char of padding to 0x80.  This is safe since there is
1168faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel     always at least one byte free */
1178faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  p = ctx->in + count;
1188faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  *p++ = 0x80;
1198faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1208faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  /* Bytes of padding needed to make 64 bytes */
1218faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  count = 64 - 1 - count;
1228faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1238faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  /* Pad out to 56 mod 64 */
1248faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  if (count < 8) {
1258faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    /* Two lots of padding:  Pad the first block to 64 bytes */
1268faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    memset(p, 0, count);
1278faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    byteReverse(ctx->in, 16);
1288faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    MD5Transform(ctx->buf, (u32 *) ctx->in);
1298faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1308faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    /* Now fill the next block with 56 bytes */
1318faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    memset(ctx->in, 0, 56);
1328faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  } else {
1338faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    /* Pad block to 56 bytes */
1348faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel    memset(p, 0, count - 8);
1358faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  }
1368faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  byteReverse(ctx->in, 14);
1378faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1388faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  /* Append length in bits and transform */
1398faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  ((u32 *) ctx->in)[14] = ctx->bits[0];
1408faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  ((u32 *) ctx->in)[15] = ctx->bits[1];
1418faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1428faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5Transform(ctx->buf, (u32 *) ctx->in);
1438faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  byteReverse((unsigned char *) ctx->buf, 4);
1448faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  memcpy(digest, ctx->buf, 16);
1459c740008e87756445444ea3542c105a631a60cefHan Shen  memset(ctx, 0, sizeof(*ctx));        /* In case it's sensitive */
1468faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel}
1478faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1488faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel/* The four core functions - F1 is optimized somewhat */
1498faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1508faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel/* #define F1(x, y, z) (x & y | ~x & z) */
1518faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel#define F1(x, y, z) (z ^ (x & (y ^ z)))
1528faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel#define F2(x, y, z) F1(z, x, y)
1538faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel#define F3(x, y, z) (x ^ y ^ z)
1548faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel#define F4(x, y, z) (y ^ (x | ~z))
1558faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1568faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel/* This is the central step in the MD5 algorithm. */
1578faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel#define MD5STEP(f, w, x, y, z, data, s) \
1588faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  ( w += f(x, y, z) + data,  w = w<<s | w>>(32-s),  w += x )
1598faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1608faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel/*
1618faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * The core of the MD5 algorithm, this alters an existing MD5 hash to
1628faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * reflect the addition of 16 longwords of new data.  MD5Update blocks
1638faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel * the data and converts bytes into longwords for this routine.
1648faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel */
1658faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedelstatic void MD5Transform(u32 buf[4], u32 const in[16])
1668faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel{
167f94e95832f0dbdee6f38d28a0060d1797e96412aYunlian Jiang  u32 a, b, c, d;
1688faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1698faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  a = buf[0];
1708faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  b = buf[1];
1718faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  c = buf[2];
1728faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  d = buf[3];
1738faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1748faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, a, b, c, d, in[0] + 0xd76aa478, 7);
1758faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, d, a, b, c, in[1] + 0xe8c7b756, 12);
1768faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, c, d, a, b, in[2] + 0x242070db, 17);
1778faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, b, c, d, a, in[3] + 0xc1bdceee, 22);
1788faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, a, b, c, d, in[4] + 0xf57c0faf, 7);
1798faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, d, a, b, c, in[5] + 0x4787c62a, 12);
1808faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, c, d, a, b, in[6] + 0xa8304613, 17);
1818faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, b, c, d, a, in[7] + 0xfd469501, 22);
1828faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, a, b, c, d, in[8] + 0x698098d8, 7);
1838faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, d, a, b, c, in[9] + 0x8b44f7af, 12);
1848faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, c, d, a, b, in[10] + 0xffff5bb1, 17);
1858faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, b, c, d, a, in[11] + 0x895cd7be, 22);
1868faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, a, b, c, d, in[12] + 0x6b901122, 7);
1878faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, d, a, b, c, in[13] + 0xfd987193, 12);
1888faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, c, d, a, b, in[14] + 0xa679438e, 17);
1898faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F1, b, c, d, a, in[15] + 0x49b40821, 22);
1908faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
1918faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, a, b, c, d, in[1] + 0xf61e2562, 5);
1928faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, d, a, b, c, in[6] + 0xc040b340, 9);
1938faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, c, d, a, b, in[11] + 0x265e5a51, 14);
1948faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, b, c, d, a, in[0] + 0xe9b6c7aa, 20);
1958faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, a, b, c, d, in[5] + 0xd62f105d, 5);
1968faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, d, a, b, c, in[10] + 0x02441453, 9);
1978faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, c, d, a, b, in[15] + 0xd8a1e681, 14);
1988faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, b, c, d, a, in[4] + 0xe7d3fbc8, 20);
1998faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, a, b, c, d, in[9] + 0x21e1cde6, 5);
2008faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, d, a, b, c, in[14] + 0xc33707d6, 9);
2018faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, c, d, a, b, in[3] + 0xf4d50d87, 14);
2028faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, b, c, d, a, in[8] + 0x455a14ed, 20);
2038faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, a, b, c, d, in[13] + 0xa9e3e905, 5);
2048faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, d, a, b, c, in[2] + 0xfcefa3f8, 9);
2058faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, c, d, a, b, in[7] + 0x676f02d9, 14);
2068faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F2, b, c, d, a, in[12] + 0x8d2a4c8a, 20);
2078faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
2088faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, a, b, c, d, in[5] + 0xfffa3942, 4);
2098faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, d, a, b, c, in[8] + 0x8771f681, 11);
2108faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, c, d, a, b, in[11] + 0x6d9d6122, 16);
2118faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, b, c, d, a, in[14] + 0xfde5380c, 23);
2128faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, a, b, c, d, in[1] + 0xa4beea44, 4);
2138faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, d, a, b, c, in[4] + 0x4bdecfa9, 11);
2148faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, c, d, a, b, in[7] + 0xf6bb4b60, 16);
2158faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, b, c, d, a, in[10] + 0xbebfbc70, 23);
2168faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, a, b, c, d, in[13] + 0x289b7ec6, 4);
2178faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, d, a, b, c, in[0] + 0xeaa127fa, 11);
2188faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, c, d, a, b, in[3] + 0xd4ef3085, 16);
2198faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, b, c, d, a, in[6] + 0x04881d05, 23);
2208faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, a, b, c, d, in[9] + 0xd9d4d039, 4);
2218faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, d, a, b, c, in[12] + 0xe6db99e5, 11);
2228faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, c, d, a, b, in[15] + 0x1fa27cf8, 16);
2238faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F3, b, c, d, a, in[2] + 0xc4ac5665, 23);
2248faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
2258faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, a, b, c, d, in[0] + 0xf4292244, 6);
2268faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, d, a, b, c, in[7] + 0x432aff97, 10);
2278faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, c, d, a, b, in[14] + 0xab9423a7, 15);
2288faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, b, c, d, a, in[5] + 0xfc93a039, 21);
2298faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, a, b, c, d, in[12] + 0x655b59c3, 6);
2308faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, d, a, b, c, in[3] + 0x8f0ccc92, 10);
2318faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, c, d, a, b, in[10] + 0xffeff47d, 15);
2328faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, b, c, d, a, in[1] + 0x85845dd1, 21);
2338faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, a, b, c, d, in[8] + 0x6fa87e4f, 6);
2348faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, d, a, b, c, in[15] + 0xfe2ce6e0, 10);
2358faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, c, d, a, b, in[6] + 0xa3014314, 15);
2368faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, b, c, d, a, in[13] + 0x4e0811a1, 21);
2378faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, a, b, c, d, in[4] + 0xf7537e82, 6);
2388faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, d, a, b, c, in[11] + 0xbd3af235, 10);
2398faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, c, d, a, b, in[2] + 0x2ad7d2bb, 15);
2408faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  MD5STEP(F4, b, c, d, a, in[9] + 0xeb86d391, 21);
2418faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel
2428faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  buf[0] += a;
2438faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  buf[1] += b;
2448faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  buf[2] += c;
2458faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel  buf[3] += d;
2468faad30e5a44271d9e50c4d75e1271018d7439b5Ilja H. Friedel}
247