authorization_set.cpp revision ba0d5d01bde427b7d7a22cec84cd9304c00b4e14
15ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden/* 25ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * Copyright (C) 2014 The Android Open Source Project 35ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * 45ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * Licensed under the Apache License, Version 2.0 (the "License"); 55ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * you may not use this file except in compliance with the License. 65ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * You may obtain a copy of the License at 75ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * 85ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * http://www.apache.org/licenses/LICENSE-2.0 95ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * 105ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * Unless required by applicable law or agreed to in writing, software 115ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * distributed under the License is distributed on an "AS IS" BASIS, 125ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 135ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * See the License for the specific language governing permissions and 145ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden * limitations under the License. 155ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden */ 165ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 170f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden#include <keymaster/authorization_set.h> 180f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden 190f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden#include <assert.h> 20f21afff128ac22479c49bdda84f13335ae17d009Shawn Willden#include <stddef.h> 215ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden#include <stdlib.h> 225ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden#include <string.h> 235ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 240f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden#include <new> 255ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 26b6837e7a62a1192e33beef586282812239ee8b28Shawn Willden#include <keymaster/android_keymaster_utils.h> 27f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden#include <keymaster/logger.h> 285ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 295ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdennamespace keymaster { 305ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 315ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenstatic inline bool is_blob_tag(keymaster_tag_t tag) { 325ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return (keymaster_tag_get_type(tag) == KM_BYTES || keymaster_tag_get_type(tag) == KM_BIGNUM); 335ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 345ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 355ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenconst size_t STARTING_ELEMS_CAPACITY = 8; 365ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 372c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn WilldenAuthorizationSet::AuthorizationSet(AuthorizationSetBuilder& builder) { 382c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_ = builder.set.elems_; 392c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.elems_ = NULL; 402c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 412c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_size_ = builder.set.elems_size_; 422c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.elems_size_ = 0; 432c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 442c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_capacity_ = builder.set.elems_capacity_; 452c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.elems_capacity_ = 0; 462c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 472c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden indirect_data_ = builder.set.indirect_data_; 482c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.indirect_data_ = NULL; 492c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 502c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden indirect_data_capacity_ = builder.set.indirect_data_capacity_; 512c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.indirect_data_capacity_ = 0; 522c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 532c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden indirect_data_size_ = builder.set.indirect_data_size_; 542c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.indirect_data_size_ = 0; 552c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 562c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden error_ = builder.set.error_; 572c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden builder.set.error_ = OK; 582c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden} 592c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 608d336ae10df66da4c0433f17c2d42e85baea32c5Shawn WilldenAuthorizationSet::~AuthorizationSet() { 618d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden FreeData(); 628d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 6358e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden 64370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::reserve_elems(size_t count) { 65437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 66437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return false; 67437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 68370121346777e13437c275fbe7a975d899cc325cShawn Willden if (count >= elems_capacity_) { 690f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden keymaster_key_param_t* new_elems = new (std::nothrow) keymaster_key_param_t[count]; 70370121346777e13437c275fbe7a975d899cc325cShawn Willden if (new_elems == NULL) { 71370121346777e13437c275fbe7a975d899cc325cShawn Willden set_invalid(ALLOCATION_FAILURE); 72370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 73370121346777e13437c275fbe7a975d899cc325cShawn Willden } 74370121346777e13437c275fbe7a975d899cc325cShawn Willden memcpy(new_elems, elems_, sizeof(*elems_) * elems_size_); 75370121346777e13437c275fbe7a975d899cc325cShawn Willden delete[] elems_; 76370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_ = new_elems; 77370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_capacity_ = count; 78370121346777e13437c275fbe7a975d899cc325cShawn Willden } 79370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 80370121346777e13437c275fbe7a975d899cc325cShawn Willden} 81370121346777e13437c275fbe7a975d899cc325cShawn Willden 82370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::reserve_indirect(size_t length) { 83437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 84437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return false; 85437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 86370121346777e13437c275fbe7a975d899cc325cShawn Willden if (length > indirect_data_capacity_) { 87c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden uint8_t* new_data = new (std::nothrow) uint8_t[length]; 88370121346777e13437c275fbe7a975d899cc325cShawn Willden if (new_data == NULL) { 89370121346777e13437c275fbe7a975d899cc325cShawn Willden set_invalid(ALLOCATION_FAILURE); 90370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 91370121346777e13437c275fbe7a975d899cc325cShawn Willden } 92370121346777e13437c275fbe7a975d899cc325cShawn Willden memcpy(new_data, indirect_data_, indirect_data_size_); 93370121346777e13437c275fbe7a975d899cc325cShawn Willden 94370121346777e13437c275fbe7a975d899cc325cShawn Willden // Fix up the data pointers to point into the new region. 95370121346777e13437c275fbe7a975d899cc325cShawn Willden for (size_t i = 0; i < elems_size_; ++i) { 96370121346777e13437c275fbe7a975d899cc325cShawn Willden if (is_blob_tag(elems_[i].tag)) 97370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_[i].blob.data = new_data + (elems_[i].blob.data - indirect_data_); 98370121346777e13437c275fbe7a975d899cc325cShawn Willden } 99370121346777e13437c275fbe7a975d899cc325cShawn Willden delete[] indirect_data_; 100370121346777e13437c275fbe7a975d899cc325cShawn Willden indirect_data_ = new_data; 101370121346777e13437c275fbe7a975d899cc325cShawn Willden indirect_data_capacity_ = length; 102370121346777e13437c275fbe7a975d899cc325cShawn Willden } 103370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 104370121346777e13437c275fbe7a975d899cc325cShawn Willden} 105370121346777e13437c275fbe7a975d899cc325cShawn Willden 10643786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowleyvoid AuthorizationSet::MoveFrom(AuthorizationSet& set) { 10743786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley elems_ = set.elems_; 10843786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley elems_size_ = set.elems_size_; 10943786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley elems_capacity_ = set.elems_capacity_; 11043786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley indirect_data_ = set.indirect_data_; 11143786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley indirect_data_size_ = set.indirect_data_size_; 11243786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley indirect_data_capacity_ = set.indirect_data_capacity_; 11343786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley error_ = set.error_; 11443786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley set.elems_ = nullptr; 11543786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley set.elems_size_ = 0; 11643786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley set.elems_capacity_ = 0; 11743786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley set.indirect_data_ = nullptr; 11843786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley set.indirect_data_size_ = 0; 11943786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley set.indirect_data_capacity_ = 0; 12043786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley set.error_ = OK; 12143786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley} 12243786c8ca4e9034b5aa1528b52f9eaaa7551b05fPaul Crowley 1235ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::Reinitialize(const keymaster_key_param_t* elems, const size_t count) { 1245ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden FreeData(); 1255ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 126b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden if (elems == NULL || count == 0) { 127b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden error_ = OK; 128b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden return true; 129b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden } 130b58dcde804dc9f69f89c620592b910083f32b01cShawn Willden 131370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_elems(count)) 132370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 1335ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 134370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_indirect(ComputeIndirectDataSize(elems, count))) 1355ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 1365ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 137370121346777e13437c275fbe7a975d899cc325cShawn Willden memcpy(elems_, elems, sizeof(keymaster_key_param_t) * count); 138370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_size_ = count; 1395ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden CopyIndirectData(); 140370121346777e13437c275fbe7a975d899cc325cShawn Willden error_ = OK; 1415ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 1425ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 1435ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 1445ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenvoid AuthorizationSet::set_invalid(Error error) { 1455ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden FreeData(); 146370121346777e13437c275fbe7a975d899cc325cShawn Willden error_ = error; 1475ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 1485ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 149f21afff128ac22479c49bdda84f13335ae17d009Shawn Willdenvoid AuthorizationSet::Sort() { 1502c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden qsort(elems_, elems_size_, sizeof(*elems_), 1512c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden reinterpret_cast<int (*)(const void*, const void*)>(keymaster_param_compare)); 152f21afff128ac22479c49bdda84f13335ae17d009Shawn Willden} 153f21afff128ac22479c49bdda84f13335ae17d009Shawn Willden 154f21afff128ac22479c49bdda84f13335ae17d009Shawn Willdenvoid AuthorizationSet::Deduplicate() { 155f21afff128ac22479c49bdda84f13335ae17d009Shawn Willden Sort(); 1562c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 1572c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden size_t invalid_count = 0; 1582c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden for (size_t i = 1; i < size(); ++i) { 1592c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden if (elems_[i - 1].tag == KM_TAG_INVALID) 1602c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden ++invalid_count; 1612c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden else if (keymaster_param_compare(elems_ + i - 1, elems_ + i) == 0) { 1622c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden // Mark dups as invalid. Note that this "leaks" the data referenced by KM_BYTES and 1632c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden // KM_BIGNUM entries, but those are just pointers into indirect_data_, so it will all 1642c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden // get cleaned up. 1652c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_[i - 1].tag = KM_TAG_INVALID; 1662c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden ++invalid_count; 1672c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden } 1682c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden } 1692c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden if (size() > 0 && elems_[size() - 1].tag == KM_TAG_INVALID) 1702c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden ++invalid_count; 1712c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 1722c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden if (invalid_count == 0) 1732c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden return; 1742c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 175f21afff128ac22479c49bdda84f13335ae17d009Shawn Willden Sort(); 176f21afff128ac22479c49bdda84f13335ae17d009Shawn Willden 1772c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden // Since KM_TAG_INVALID == 0, all of the invalid entries are first. 1782c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden elems_size_ -= invalid_count; 1792c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden memmove(elems_, elems_ + invalid_count, size() * sizeof(*elems_)); 1802c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden} 1812c242009007a38b5c8003137fb8ba5a1fdb73b70Shawn Willden 182cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willdenvoid AuthorizationSet::CopyToParamSet(keymaster_key_param_set_t* set) const { 183cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden assert(set); 184cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden 185cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden set->length = size(); 186cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden set->params = 187cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden reinterpret_cast<keymaster_key_param_t*>(malloc(sizeof(keymaster_key_param_t) * size())); 188cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden 189cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden for (size_t i = 0; i < size(); ++i) { 190cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden const keymaster_key_param_t src = (*this)[i]; 191cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden keymaster_key_param_t& dst(set->params[i]); 192cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden 193cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden dst = src; 194cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden keymaster_tag_type_t type = keymaster_tag_get_type(src.tag); 195cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden if (type == KM_BIGNUM || type == KM_BYTES) { 196cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden void* tmp = malloc(src.blob.data_length); 197cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden memcpy(tmp, src.blob.data, src.blob.data_length); 198cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden dst.blob.data = reinterpret_cast<uint8_t*>(tmp); 199cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden } 200cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden } 201cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden} 202cb0d64b02d0df2b9eb692c5b0ea5c36db1000e9aShawn Willden 2035ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenint AuthorizationSet::find(keymaster_tag_t tag, int begin) const { 204437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 205437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return -1; 206437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 2075ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int i = ++begin; 2088d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden while (i < (int)elems_size_ && elems_[i].tag != tag) 2098d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden ++i; 2105ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (i == (int)elems_size_) 2115ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return -1; 2125ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden else 2135ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return i; 2145ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 2155ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 216c15af1910d8f451341d0068b5533816ace5defecShawn Willdenbool AuthorizationSet::erase(int index) { 217c15af1910d8f451341d0068b5533816ace5defecShawn Willden if (index < 0 || index >= static_cast<int>(size())) 218cb647fec03f71929fd316d2b8f0750f7b24824f3Shawn Willden return false; 219cb647fec03f71929fd316d2b8f0750f7b24824f3Shawn Willden 220cb647fec03f71929fd316d2b8f0750f7b24824f3Shawn Willden --elems_size_; 221cb647fec03f71929fd316d2b8f0750f7b24824f3Shawn Willden for (size_t i = index; i < elems_size_; ++i) 222cb647fec03f71929fd316d2b8f0750f7b24824f3Shawn Willden elems_[i] = elems_[i + 1]; 223cb647fec03f71929fd316d2b8f0750f7b24824f3Shawn Willden return true; 224cb647fec03f71929fd316d2b8f0750f7b24824f3Shawn Willden} 225cb647fec03f71929fd316d2b8f0750f7b24824f3Shawn Willden 226c15af1910d8f451341d0068b5533816ace5defecShawn Willdenkeymaster_key_param_t empty_param = {KM_TAG_INVALID, {}}; 227d599b15c0693950bdc72fb867872044fdc484ef5Shawn Willdenkeymaster_key_param_t& AuthorizationSet::operator[](int at) { 228d599b15c0693950bdc72fb867872044fdc484ef5Shawn Willden if (is_valid() == OK && at < (int)elems_size_) { 229d599b15c0693950bdc72fb867872044fdc484ef5Shawn Willden return elems_[at]; 230d599b15c0693950bdc72fb867872044fdc484ef5Shawn Willden } 231c15af1910d8f451341d0068b5533816ace5defecShawn Willden empty_param = {KM_TAG_INVALID, {}}; 232c15af1910d8f451341d0068b5533816ace5defecShawn Willden return empty_param; 233d599b15c0693950bdc72fb867872044fdc484ef5Shawn Willden} 234d599b15c0693950bdc72fb867872044fdc484ef5Shawn Willden 2355ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenkeymaster_key_param_t AuthorizationSet::operator[](int at) const { 236437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() == OK && at < (int)elems_size_) { 2378d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return elems_[at]; 2385ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 239c15af1910d8f451341d0068b5533816ace5defecShawn Willden empty_param = {KM_TAG_INVALID, {}}; 240c15af1910d8f451341d0068b5533816ace5defecShawn Willden return empty_param; 2415ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 2425ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 243b5508298cdb1d42eaf8c81aa8a6ac2cbfdeef3c7Shawn Willdenbool AuthorizationSet::push_back(const keymaster_key_param_set_t& set) { 244437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 245437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return false; 246437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 247b5508298cdb1d42eaf8c81aa8a6ac2cbfdeef3c7Shawn Willden if (!reserve_elems(elems_size_ + set.length)) 248370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 249370121346777e13437c275fbe7a975d899cc325cShawn Willden 250b5508298cdb1d42eaf8c81aa8a6ac2cbfdeef3c7Shawn Willden if (!reserve_indirect(indirect_data_size_ + ComputeIndirectDataSize(set.params, set.length))) 251370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 252370121346777e13437c275fbe7a975d899cc325cShawn Willden 253b5508298cdb1d42eaf8c81aa8a6ac2cbfdeef3c7Shawn Willden for (size_t i = 0; i < set.length; ++i) 254b5508298cdb1d42eaf8c81aa8a6ac2cbfdeef3c7Shawn Willden if (!push_back(set.params[i])) 255370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 256370121346777e13437c275fbe7a975d899cc325cShawn Willden 257370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 258370121346777e13437c275fbe7a975d899cc325cShawn Willden} 259370121346777e13437c275fbe7a975d899cc325cShawn Willden 2605ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::push_back(keymaster_key_param_t elem) { 261437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden if (is_valid() != OK) 262437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden return false; 263437fbd195e7de57b7dc0c449c04458bd90ef50deShawn Willden 264370121346777e13437c275fbe7a975d899cc325cShawn Willden if (elems_size_ >= elems_capacity_) 265370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_elems(elems_capacity_ ? elems_capacity_ * 2 : STARTING_ELEMS_CAPACITY)) 2665ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 2675ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 2685ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (is_blob_tag(elem.tag)) { 269370121346777e13437c275fbe7a975d899cc325cShawn Willden if (indirect_data_capacity_ - indirect_data_size_ < elem.blob.data_length) 270370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_indirect(2 * (indirect_data_capacity_ + elem.blob.data_length))) 2715ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 27258e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden 2735ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden memcpy(indirect_data_ + indirect_data_size_, elem.blob.data, elem.blob.data_length); 2748d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden elem.blob.data = indirect_data_ + indirect_data_size_; 2755ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden indirect_data_size_ += elem.blob.data_length; 2765ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 2775ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 2785ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden elems_[elems_size_++] = elem; 2795ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 2805ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 2815ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 2828d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willdenstatic size_t serialized_size(const keymaster_key_param_t& param) { 2838d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden switch (keymaster_tag_get_type(param.tag)) { 2848d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INVALID: 2858d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t); 2868d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM: 2878d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM_REP: 288c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_UINT: 289c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_UINT_REP: 2908d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) * 2; 291c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_ULONG: 292c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_ULONG_REP: 2938d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_DATE: 2948d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) + sizeof(uint64_t); 2958d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BOOL: 2968d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) + 1; 2978d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BIGNUM: 2988d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BYTES: 2998d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) * 3; 3008d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 30182114e7cbf97f65348d32b2685dd52427525146dShawn Willden 30282114e7cbf97f65348d32b2685dd52427525146dShawn Willden return sizeof(uint32_t); 3038d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 3048d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 3058d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willdenstatic uint8_t* serialize(const keymaster_key_param_t& param, uint8_t* buf, const uint8_t* end, 3068d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden const uint8_t* indirect_base) { 307172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.tag); 3088d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden switch (keymaster_tag_get_type(param.tag)) { 3098d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INVALID: 3108d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 3118d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM: 3128d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM_REP: 313172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.enumerated); 3148d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 315c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_UINT: 316c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_UINT_REP: 317172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.integer); 3188d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 319c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_ULONG: 320c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_ULONG_REP: 321172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint64_to_buf(buf, end, param.long_integer); 3228d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 3238d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_DATE: 324172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint64_to_buf(buf, end, param.date_time); 3258d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 3268d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BOOL: 3278d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden if (buf < end) 3288d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden *buf = static_cast<uint8_t>(param.boolean); 3298d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden buf++; 3308d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 3318d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BIGNUM: 3328d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BYTES: 333172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.blob.data_length); 334172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, param.blob.data - indirect_base); 3358d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 3368d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3378d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return buf; 3388d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 3398d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 340172f8c9be706e27f43022063bbc7f4b0177583acShawn Willdenstatic bool deserialize(keymaster_key_param_t* param, const uint8_t** buf_ptr, const uint8_t* end, 3418d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden const uint8_t* indirect_base, const uint8_t* indirect_end) { 342172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden if (!copy_uint32_from_buf(buf_ptr, end, ¶m->tag)) 3438d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3448d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 3458d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden switch (keymaster_tag_get_type(param->tag)) { 3468d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_INVALID: 3478d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3488d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM: 3498d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_ENUM_REP: 350172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden return copy_uint32_from_buf(buf_ptr, end, ¶m->enumerated); 351c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_UINT: 352c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_UINT_REP: 353172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden return copy_uint32_from_buf(buf_ptr, end, ¶m->integer); 354c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_ULONG: 355c3ac84f04c4d6d74fa36abfd1cc2e5ac763a8af3Shawn Willden case KM_ULONG_REP: 356172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden return copy_uint64_from_buf(buf_ptr, end, ¶m->long_integer); 3578d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_DATE: 358172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden return copy_uint64_from_buf(buf_ptr, end, ¶m->date_time); 3598d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden break; 3608d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BOOL: 361172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden if (*buf_ptr < end) { 362172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden param->boolean = static_cast<bool>(**buf_ptr); 363172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden (*buf_ptr)++; 3648d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return true; 3658d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3668d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3678d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 3688d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BIGNUM: 3698d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden case KM_BYTES: { 3708d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden uint32_t offset; 371172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden if (!copy_uint32_from_buf(buf_ptr, end, ¶m->blob.data_length) || 372172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden !copy_uint32_from_buf(buf_ptr, end, &offset)) 3738d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 37428f2e72909a73788cf636b637f7403984ede3b74Shawn Willden if (param->blob.data_length + offset < param->blob.data_length || // Overflow check 37528f2e72909a73788cf636b637f7403984ede3b74Shawn Willden static_cast<ptrdiff_t>(offset) > indirect_end - indirect_base || 376172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden static_cast<ptrdiff_t>(offset + param->blob.data_length) > indirect_end - indirect_base) 3778d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 3788d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden param->blob.data = indirect_base + offset; 3798d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return true; 3808d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3818d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 38282114e7cbf97f65348d32b2685dd52427525146dShawn Willden 38382114e7cbf97f65348d32b2685dd52427525146dShawn Willden return false; 3848d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 3858d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 3868d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willdensize_t AuthorizationSet::SerializedSizeOfElements() const { 3878d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden size_t size = 0; 3888d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden for (size_t i = 0; i < elems_size_; ++i) { 3898d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden size += serialized_size(elems_[i]); 3908d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 3918d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return size; 3928d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden} 3938d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden 39458e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willdensize_t AuthorizationSet::SerializedSize() const { 3958d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return sizeof(uint32_t) + // Size of indirect_data_ 3968d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden indirect_data_size_ + // indirect_data_ 3978d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden sizeof(uint32_t) + // Number of elems_ 3988d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden sizeof(uint32_t) + // Size of elems_ 3998d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden SerializedSizeOfElements(); // elems_ 4005ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4015ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4028d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willdenuint8_t* AuthorizationSet::Serialize(uint8_t* buf, const uint8_t* end) const { 4038d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden buf = append_size_and_data_to_buf(buf, end, indirect_data_, indirect_data_size_); 404172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, elems_size_); 405172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden buf = append_uint32_to_buf(buf, end, SerializedSizeOfElements()); 4068d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden for (size_t i = 0; i < elems_size_; ++i) { 4078d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden buf = serialize(elems_[i], buf, end, indirect_data_); 4088d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 4098d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return buf; 4105ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4115ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 412370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::DeserializeIndirectData(const uint8_t** buf_ptr, const uint8_t* end) { 413f2282b3c6690ccfaa7878886f01693ef4f0b3bedShawn Willden UniquePtr<uint8_t[]> indirect_buf; 414f2282b3c6690ccfaa7878886f01693ef4f0b3bedShawn Willden if (!copy_size_and_data_from_buf(buf_ptr, end, &indirect_data_size_, &indirect_buf)) { 415f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 416370121346777e13437c275fbe7a975d899cc325cShawn Willden set_invalid(MALFORMED_DATA); 417370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 418370121346777e13437c275fbe7a975d899cc325cShawn Willden } 419f2282b3c6690ccfaa7878886f01693ef4f0b3bedShawn Willden indirect_data_ = indirect_buf.release(); 420370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 421370121346777e13437c275fbe7a975d899cc325cShawn Willden} 4225ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 423370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::DeserializeElementsData(const uint8_t** buf_ptr, const uint8_t* end) { 4248d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden uint32_t elements_count; 4258d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden uint32_t elements_size; 426370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!copy_uint32_from_buf(buf_ptr, end, &elements_count) || 427172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden !copy_uint32_from_buf(buf_ptr, end, &elements_size)) { 428f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 42958e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden set_invalid(MALFORMED_DATA); 4305ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 4315ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 4325ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 433834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden // Note that the following validation of elements_count is weak, but it prevents allocation of 434834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden // elems_ arrays which are clearly too large to be reasonable. 43562de26672193373972f2ce968b51cf8335f118f9Shawn Willden if (static_cast<ptrdiff_t>(elements_size) > end - *buf_ptr || 4360f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden elements_count * sizeof(uint32_t) > elements_size || 4370f906ec40f6ade7955c6b967ea522aade54ea2e4Shawn Willden *buf_ptr + (elements_count * sizeof(*elems_)) < *buf_ptr) { 438f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 439834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden set_invalid(MALFORMED_DATA); 440834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden return false; 441834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden } 442834e80747cbb960f8a4028c5c8604bf5218ecdb9Shawn Willden 443370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!reserve_elems(elements_count)) 4445ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 4455ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4468d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden uint8_t* indirect_end = indirect_data_ + indirect_data_size_; 447172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden const uint8_t* elements_end = *buf_ptr + elements_size; 4488d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden for (size_t i = 0; i < elements_count; ++i) { 449172f8c9be706e27f43022063bbc7f4b0177583acShawn Willden if (!deserialize(elems_ + i, buf_ptr, elements_end, indirect_data_, indirect_end)) { 450f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 4518d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden set_invalid(MALFORMED_DATA); 4528d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return false; 4538d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden } 45458e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden } 455370121346777e13437c275fbe7a975d899cc325cShawn Willden elems_size_ = elements_count; 456370121346777e13437c275fbe7a975d899cc325cShawn Willden return true; 457370121346777e13437c275fbe7a975d899cc325cShawn Willden} 4585ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 459370121346777e13437c275fbe7a975d899cc325cShawn Willdenbool AuthorizationSet::Deserialize(const uint8_t** buf_ptr, const uint8_t* end) { 460370121346777e13437c275fbe7a975d899cc325cShawn Willden FreeData(); 461370121346777e13437c275fbe7a975d899cc325cShawn Willden 462370121346777e13437c275fbe7a975d899cc325cShawn Willden if (!DeserializeIndirectData(buf_ptr, end) || !DeserializeElementsData(buf_ptr, end)) 463370121346777e13437c275fbe7a975d899cc325cShawn Willden return false; 464370121346777e13437c275fbe7a975d899cc325cShawn Willden 465370121346777e13437c275fbe7a975d899cc325cShawn Willden if (indirect_data_size_ != ComputeIndirectDataSize(elems_, elems_size_)) { 466f01329d8692edde9a9ffb88f29f5d684eab481e2Shawn Willden LOG_E("Malformed data found in AuthorizationSet deserialization", 0); 4678d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden set_invalid(MALFORMED_DATA); 4685ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 4695ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 4708d336ae10df66da4c0433f17c2d42e85baea32c5Shawn Willden return true; 4715ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4725ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 473941d1c4ad4422a796d90010191c11aef0580295eShawn Willdenvoid AuthorizationSet::Clear() { 4741834d5f82a7ad5884c184fd22c702ac9d915af45Shawn Willden memset_s(elems_, 0, elems_size_ * sizeof(keymaster_key_param_t)); 4751834d5f82a7ad5884c184fd22c702ac9d915af45Shawn Willden memset_s(indirect_data_, 0, indirect_data_size_); 476941d1c4ad4422a796d90010191c11aef0580295eShawn Willden elems_size_ = 0; 477941d1c4ad4422a796d90010191c11aef0580295eShawn Willden indirect_data_size_ = 0; 478941d1c4ad4422a796d90010191c11aef0580295eShawn Willden} 479941d1c4ad4422a796d90010191c11aef0580295eShawn Willden 480941d1c4ad4422a796d90010191c11aef0580295eShawn Willdenvoid AuthorizationSet::FreeData() { 481941d1c4ad4422a796d90010191c11aef0580295eShawn Willden Clear(); 48258e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden 48358e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden delete[] elems_; 48458e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden delete[] indirect_data_; 48558e1a5486219a1be9264d4e863a9dd3e393906c3Shawn Willden 4865ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden elems_ = NULL; 4875ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden indirect_data_ = NULL; 4885ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden elems_capacity_ = 0; 4895ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden indirect_data_capacity_ = 0; 490370121346777e13437c275fbe7a975d899cc325cShawn Willden error_ = OK; 4915ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 4925ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 4935ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden/* static */ 4945ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdensize_t AuthorizationSet::ComputeIndirectDataSize(const keymaster_key_param_t* elems, size_t count) { 4955ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden size_t size = 0; 4965ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden for (size_t i = 0; i < count; ++i) { 4975ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (is_blob_tag(elems[i].tag)) { 4985ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden size += elems[i].blob.data_length; 4995ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 5005ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 5015ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return size; 5025ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5035ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5045ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenvoid AuthorizationSet::CopyIndirectData() { 505370121346777e13437c275fbe7a975d899cc325cShawn Willden memset_s(indirect_data_, 0, indirect_data_capacity_); 5065ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5075ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden uint8_t* indirect_data_pos = indirect_data_; 5085ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden for (size_t i = 0; i < elems_size_; ++i) { 509370121346777e13437c275fbe7a975d899cc325cShawn Willden assert(indirect_data_pos <= indirect_data_ + indirect_data_capacity_); 5105ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (is_blob_tag(elems_[i].tag)) { 5115ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden memcpy(indirect_data_pos, elems_[i].blob.data, elems_[i].blob.data_length); 5125ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden elems_[i].blob.data = indirect_data_pos; 5135ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden indirect_data_pos += elems_[i].blob.data_length; 5145ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 5155ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 516370121346777e13437c275fbe7a975d899cc325cShawn Willden assert(indirect_data_pos == indirect_data_ + indirect_data_capacity_); 517370121346777e13437c275fbe7a975d899cc325cShawn Willden indirect_data_size_ = indirect_data_pos - indirect_data_; 5185ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5195ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5201fa5d591fe6807665092753a5628d8d470888da4Shawn Willdensize_t AuthorizationSet::GetTagCount(keymaster_tag_t tag) const { 5211fa5d591fe6807665092753a5628d8d470888da4Shawn Willden size_t count = 0; 5221fa5d591fe6807665092753a5628d8d470888da4Shawn Willden for (int pos = -1; (pos = find(tag, pos)) != -1;) 5231fa5d591fe6807665092753a5628d8d470888da4Shawn Willden ++count; 5241fa5d591fe6807665092753a5628d8d470888da4Shawn Willden return count; 5251fa5d591fe6807665092753a5628d8d470888da4Shawn Willden} 5261fa5d591fe6807665092753a5628d8d470888da4Shawn Willden 5275ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueEnum(keymaster_tag_t tag, uint32_t* val) const { 5285ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 5295ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5305ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5315ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 532ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].enumerated; 5335ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5345ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5355ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5365ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueEnumRep(keymaster_tag_t tag, size_t instance, 5375ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden uint32_t* val) const { 5385ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden size_t count = 0; 5395ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = -1; 5405ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden while (count <= instance) { 5415ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden pos = find(tag, pos); 5425ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5435ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5445ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 5455ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden ++count; 5465ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 547ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].enumerated; 5485ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5495ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5505ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5515ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueInt(keymaster_tag_t tag, uint32_t* val) const { 5525ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 5535ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5545ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5555ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 556ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].integer; 5575ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5585ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5595ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5605ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueIntRep(keymaster_tag_t tag, size_t instance, 5615ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden uint32_t* val) const { 5625ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden size_t count = 0; 5635ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = -1; 5645ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden while (count <= instance) { 5655ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden pos = find(tag, pos); 5665ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5675ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5685ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 5695ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden ++count; 5705ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 571ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].integer; 5725ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5735ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5745ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 5755ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueLong(keymaster_tag_t tag, uint64_t* val) const { 5765ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 5775ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 5785ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 5795ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 580ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].long_integer; 5815ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 5825ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 5835ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 584eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willdenbool AuthorizationSet::GetTagValueLongRep(keymaster_tag_t tag, size_t instance, 585eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden uint64_t* val) const { 586eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden size_t count = 0; 587eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden int pos = -1; 588eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden while (count <= instance) { 589eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden pos = find(tag, pos); 590eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden if (pos == -1) { 591eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden return false; 592eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden } 593eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden ++count; 594eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden } 595eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden *val = elems_[pos].long_integer; 596eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden return true; 597eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden} 598eb63b9799eadcaa6ef206f8b804d7432e0dab14aShawn Willden 5995ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueDate(keymaster_tag_t tag, uint64_t* val) const { 6005ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 6015ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 6025ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 6035ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 604ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].date_time; 6055ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 6065ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 6075ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 6085ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willdenbool AuthorizationSet::GetTagValueBlob(keymaster_tag_t tag, keymaster_blob_t* val) const { 6095ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden int pos = find(tag); 6105ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden if (pos == -1) { 6115ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return false; 6125ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden } 613ebf627f0b50c0979e6cf53668464297703371ebaShawn Willden *val = elems_[pos].blob; 6145ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden return true; 6155ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} 6165ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden 617dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willdenbool AuthorizationSet::GetTagValueBool(keymaster_tag_t tag) const { 618dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden int pos = find(tag); 619dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden if (pos == -1) { 620dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden return false; 621dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden } 622dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden assert(elems_[pos].boolean); 623dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden return elems_[pos].boolean; 624dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden} 625dfa1c030e941cba4e66b362854d84b19298353c9Shawn Willden 626edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willdenbool AuthorizationSet::ContainsEnumValue(keymaster_tag_t tag, uint32_t value) const { 627edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willden for (auto& entry : *this) 628edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willden if (entry.tag == tag && entry.enumerated == value) 629edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willden return true; 630edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willden return false; 631edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willden} 632edb7994f7d5764fcf06188dc005743f4209deb0fShawn Willden 633ba0d5d01bde427b7d7a22cec84cd9304c00b4e14Shawn Willdenbool AuthorizationSet::ContainsIntValue(keymaster_tag_t tag, uint32_t value) const { 634ba0d5d01bde427b7d7a22cec84cd9304c00b4e14Shawn Willden for (auto& entry : *this) 635ba0d5d01bde427b7d7a22cec84cd9304c00b4e14Shawn Willden if (entry.tag == tag && entry.integer == value) 636ba0d5d01bde427b7d7a22cec84cd9304c00b4e14Shawn Willden return true; 637ba0d5d01bde427b7d7a22cec84cd9304c00b4e14Shawn Willden return false; 638ba0d5d01bde427b7d7a22cec84cd9304c00b4e14Shawn Willden} 639ba0d5d01bde427b7d7a22cec84cd9304c00b4e14Shawn Willden 6405ada7b6c525d2bfd5b556a698ccb11db23e052bbShawn Willden} // namespace keymaster 641