1 | /***************************************************************************** |
---|
2 | * |
---|
3 | * "derived from the RSA Data Security, Inc. MD5 Message-Digest Algorithm". |
---|
4 | * |
---|
5 | * This program is free software; you can redistribute it and/or modify |
---|
6 | * it under the terms of the GNU General Public License as published by |
---|
7 | * the Free Software Foundation; either version 2 of the License, or |
---|
8 | * (at your option) any later version. |
---|
9 | * |
---|
10 | * This program is distributed in the hope that it will be useful, |
---|
11 | * but WITHOUT ANY WARRANTY; without even the implied warranty of |
---|
12 | * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the |
---|
13 | * GNU General Public License for more details. |
---|
14 | * |
---|
15 | * You should have received a copy of the GNU General Public License |
---|
16 | * along with this program; if not, write to the Free Software |
---|
17 | * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA |
---|
18 | * |
---|
19 | *****************************************************************************/ |
---|
20 | |
---|
21 | #include <endian.h> |
---|
22 | #include <md5.h> |
---|
23 | #include <string.h> |
---|
24 | |
---|
25 | #if (__BYTE_ORDER == __BIG_ENDIAN) |
---|
26 | /* |
---|
27 | Block copy and convert byte order to little-endian. |
---|
28 | dst must be 32bit aligned. |
---|
29 | Length is the number of 32bit words |
---|
30 | */ |
---|
31 | static void CopyToLittleEndian (uint32_t *dst, const uint8_t *src, int length) { |
---|
32 | while (length--) { |
---|
33 | *dst=(((uint32_t)src[3])<<24) | |
---|
34 | (((uint32_t)src[2])<<16) | |
---|
35 | (((uint32_t)src[1])<< 8) | |
---|
36 | (uint32_t)src[0]; |
---|
37 | src+=4; |
---|
38 | dst++; |
---|
39 | } |
---|
40 | } |
---|
41 | #endif |
---|
42 | |
---|
43 | |
---|
44 | /* |
---|
45 | Assembler versions of __MD5Transform, MD5Init and MD5Update |
---|
46 | currently exist for x86 and little-endian ARM. |
---|
47 | For other targets, we need to use the C versions below. |
---|
48 | */ |
---|
49 | |
---|
50 | #if !(defined (__i386__) || ((defined (__arm__) && (__BYTE_ORDER == __LITTLE_ENDIAN)))) |
---|
51 | |
---|
52 | /* |
---|
53 | Initialise the MD5 context. |
---|
54 | */ |
---|
55 | void MD5Init (MD5_CTX* context) { |
---|
56 | context->count[0] = 0; |
---|
57 | context->count[1] = 0; |
---|
58 | |
---|
59 | context->state[0] = 0x67452301; /* Load magic constants. */ |
---|
60 | context->state[1] = 0xefcdab89; |
---|
61 | context->state[2] = 0x98badcfe; |
---|
62 | context->state[3] = 0x10325476; |
---|
63 | } |
---|
64 | |
---|
65 | #define ROTATE_LEFT(x, n) ((x << n) | (x >> (32-n))) |
---|
66 | |
---|
67 | #define F(x, y, z) (z ^ (x & (y ^ z))) |
---|
68 | #define G(x, y, z) (y ^ (z & (x ^ y))) |
---|
69 | #define H(x, y, z) (x ^ y ^ z) |
---|
70 | #define I(x, y, z) (y ^ (x | ~z)) |
---|
71 | |
---|
72 | #define FF(a, b, c, d, x, s, ac) { (a) += F (b, c, d) + (x) + (uint32_t)(ac); (a) = ROTATE_LEFT (a, s); (a) += (b); } |
---|
73 | #define GG(a, b, c, d, x, s, ac) { (a) += G (b, c, d) + (x) + (uint32_t)(ac); (a) = ROTATE_LEFT (a, s); (a) += (b); } |
---|
74 | #define HH(a, b, c, d, x, s, ac) { (a) += H (b, c, d) + (x) + (uint32_t)(ac); (a) = ROTATE_LEFT (a, s); (a) += (b); } |
---|
75 | #define II(a, b, c, d, x, s, ac) { (a) += I (b, c, d) + (x) + (uint32_t)(ac); (a) = ROTATE_LEFT (a, s); (a) += (b); } |
---|
76 | |
---|
77 | static void __MD5Transform (uint32_t state[4], const uint8_t *in, int repeat) { |
---|
78 | const uint32_t *x; |
---|
79 | |
---|
80 | uint32_t a = state[0]; |
---|
81 | uint32_t b = state[1]; |
---|
82 | uint32_t c = state[2]; |
---|
83 | uint32_t d = state[3]; |
---|
84 | |
---|
85 | for ( ; repeat; repeat--) { |
---|
86 | uint32_t tempBuffer[16]; |
---|
87 | #if (__BYTE_ORDER == __BIG_ENDIAN) |
---|
88 | |
---|
89 | CopyToLittleEndian (tempBuffer, in, 16); |
---|
90 | x = tempBuffer; |
---|
91 | #else |
---|
92 | if ((long)in & 3) { |
---|
93 | memcpy(tempBuffer, in, 64); |
---|
94 | x = tempBuffer; |
---|
95 | } else |
---|
96 | x = (const uint32_t *) in; |
---|
97 | #endif |
---|
98 | |
---|
99 | FF (a, b, c, d, x[ 0], 7, 0xd76aa478); /* 1 */ /* Round 1 */ |
---|
100 | FF (d, a, b, c, x[ 1], 12, 0xe8c7b756); /* 2 */ |
---|
101 | FF (c, d, a, b, x[ 2], 17, 0x242070db); /* 3 */ |
---|
102 | FF (b, c, d, a, x[ 3], 22, 0xc1bdceee); /* 4 */ |
---|
103 | FF (a, b, c, d, x[ 4], 7, 0xf57c0faf); /* 5 */ |
---|
104 | FF (d, a, b, c, x[ 5], 12, 0x4787c62a); /* 6 */ |
---|
105 | FF (c, d, a, b, x[ 6], 17, 0xa8304613); /* 7 */ |
---|
106 | FF (b, c, d, a, x[ 7], 22, 0xfd469501); /* 8 */ |
---|
107 | FF (a, b, c, d, x[ 8], 7, 0x698098d8); /* 9 */ |
---|
108 | FF (d, a, b, c, x[ 9], 12, 0x8b44f7af); /* 10 */ |
---|
109 | FF (c, d, a, b, x[10], 17, 0xffff5bb1); /* 11 */ |
---|
110 | FF (b, c, d, a, x[11], 22, 0x895cd7be); /* 12 */ |
---|
111 | FF (a, b, c, d, x[12], 7, 0x6b901122); /* 13 */ |
---|
112 | FF (d, a, b, c, x[13], 12, 0xfd987193); /* 14 */ |
---|
113 | FF (c, d, a, b, x[14], 17, 0xa679438e); /* 15 */ |
---|
114 | FF (b, c, d, a, x[15], 22, 0x49b40821); /* 16 */ |
---|
115 | |
---|
116 | GG (a, b, c, d, x[ 1], 5, 0xf61e2562); /* 17 */ /* Round 2 */ |
---|
117 | GG (d, a, b, c, x[ 6], 9, 0xc040b340); /* 18 */ |
---|
118 | GG (c, d, a, b, x[11], 14, 0x265e5a51); /* 19 */ |
---|
119 | GG (b, c, d, a, x[ 0], 20, 0xe9b6c7aa); /* 20 */ |
---|
120 | GG (a, b, c, d, x[ 5], 5, 0xd62f105d); /* 21 */ |
---|
121 | GG (d, a, b, c, x[10], 9, 0x02441453); /* 22 */ |
---|
122 | GG (c, d, a, b, x[15], 14, 0xd8a1e681); /* 23 */ |
---|
123 | GG (b, c, d, a, x[ 4], 20, 0xe7d3fbc8); /* 24 */ |
---|
124 | GG (a, b, c, d, x[ 9], 5, 0x21e1cde6); /* 25 */ |
---|
125 | GG (d, a, b, c, x[14], 9, 0xc33707d6); /* 26 */ |
---|
126 | GG (c, d, a, b, x[ 3], 14, 0xf4d50d87); /* 27 */ |
---|
127 | GG (b, c, d, a, x[ 8], 20, 0x455a14ed); /* 28 */ |
---|
128 | GG (a, b, c, d, x[13], 5, 0xa9e3e905); /* 29 */ |
---|
129 | GG (d, a, b, c, x[ 2], 9, 0xfcefa3f8); /* 30 */ |
---|
130 | GG (c, d, a, b, x[ 7], 14, 0x676f02d9); /* 31 */ |
---|
131 | GG (b, c, d, a, x[12], 20, 0x8d2a4c8a); /* 32 */ |
---|
132 | |
---|
133 | HH (a, b, c, d, x[ 5], 4, 0xfffa3942); /* 33 */ /* Round 3 */ |
---|
134 | HH (d, a, b, c, x[ 8], 11, 0x8771f681); /* 34 */ |
---|
135 | HH (c, d, a, b, x[11], 16, 0x6d9d6122); /* 35 */ |
---|
136 | HH (b, c, d, a, x[14], 23, 0xfde5380c); /* 36 */ |
---|
137 | HH (a, b, c, d, x[ 1], 4, 0xa4beea44); /* 37 */ |
---|
138 | HH (d, a, b, c, x[ 4], 11, 0x4bdecfa9); /* 38 */ |
---|
139 | HH (c, d, a, b, x[ 7], 16, 0xf6bb4b60); /* 39 */ |
---|
140 | HH (b, c, d, a, x[10], 23, 0xbebfbc70); /* 40 */ |
---|
141 | HH (a, b, c, d, x[13], 4, 0x289b7ec6); /* 41 */ |
---|
142 | HH (d, a, b, c, x[ 0], 11, 0xeaa127fa); /* 42 */ |
---|
143 | HH (c, d, a, b, x[ 3], 16, 0xd4ef3085); /* 43 */ |
---|
144 | HH (b, c, d, a, x[ 6], 23, 0x04881d05); /* 44 */ |
---|
145 | HH (a, b, c, d, x[ 9], 4, 0xd9d4d039); /* 45 */ |
---|
146 | HH (d, a, b, c, x[12], 11, 0xe6db99e5); /* 46 */ |
---|
147 | HH (c, d, a, b, x[15], 16, 0x1fa27cf8); /* 47 */ |
---|
148 | HH (b, c, d, a, x[ 2], 23, 0xc4ac5665); /* 48 */ |
---|
149 | |
---|
150 | II (a, b, c, d, x[ 0], 6, 0xf4292244); /* 49 */ /* Round 4 */ |
---|
151 | II (d, a, b, c, x[ 7], 10, 0x432aff97); /* 50 */ |
---|
152 | II (c, d, a, b, x[14], 15, 0xab9423a7); /* 51 */ |
---|
153 | II (b, c, d, a, x[ 5], 21, 0xfc93a039); /* 52 */ |
---|
154 | II (a, b, c, d, x[12], 6, 0x655b59c3); /* 53 */ |
---|
155 | II (d, a, b, c, x[ 3], 10, 0x8f0ccc92); /* 54 */ |
---|
156 | II (c, d, a, b, x[10], 15, 0xffeff47d); /* 55 */ |
---|
157 | II (b, c, d, a, x[ 1], 21, 0x85845dd1); /* 56 */ |
---|
158 | II (a, b, c, d, x[ 8], 6, 0x6fa87e4f); /* 57 */ |
---|
159 | II (d, a, b, c, x[15], 10, 0xfe2ce6e0); /* 58 */ |
---|
160 | II (c, d, a, b, x[ 6], 15, 0xa3014314); /* 59 */ |
---|
161 | II (b, c, d, a, x[13], 21, 0x4e0811a1); /* 60 */ |
---|
162 | II (a, b, c, d, x[ 4], 6, 0xf7537e82); /* 61 */ |
---|
163 | II (d, a, b, c, x[11], 10, 0xbd3af235); /* 62 */ |
---|
164 | II (c, d, a, b, x[ 2], 15, 0x2ad7d2bb); /* 63 */ |
---|
165 | II (b, c, d, a, x[ 9], 21, 0xeb86d391); /* 64 */ |
---|
166 | |
---|
167 | state[0] = a = a + state[0]; |
---|
168 | state[1] = b = b + state[1]; |
---|
169 | state[2] = c = c + state[2]; |
---|
170 | state[3] = d = d + state[3]; |
---|
171 | |
---|
172 | in += 64; |
---|
173 | } |
---|
174 | } |
---|
175 | |
---|
176 | |
---|
177 | /* |
---|
178 | MD5 block update operation: |
---|
179 | Process another sub-string of the message and update the context. |
---|
180 | */ |
---|
181 | void MD5Update (MD5_CTX *context, const uint8_t *input, size_t inputBytes) { |
---|
182 | int i; |
---|
183 | int byteIndex; |
---|
184 | unsigned int partLen; |
---|
185 | int len; |
---|
186 | |
---|
187 | /* Compute number of bytes mod 64 */ |
---|
188 | byteIndex = (context->count[0] >> 3) & 0x3F; |
---|
189 | |
---|
190 | /* Update number of bits: count += 8 * inputBytes */ |
---|
191 | if ((context->count[0] += inputBytes << 3) < (inputBytes << 3)) |
---|
192 | context->count[1]++; |
---|
193 | context->count[1] += (inputBytes >> (32-3)); |
---|
194 | |
---|
195 | partLen = (64 - byteIndex); |
---|
196 | |
---|
197 | /* Transform as many times as possible. */ |
---|
198 | if (inputBytes >= partLen) { |
---|
199 | memcpy (context->buffer + byteIndex, input, partLen); |
---|
200 | __MD5Transform (context->state, (const uint8_t *) context->buffer, 1); |
---|
201 | len = (inputBytes - partLen) / 64; |
---|
202 | __MD5Transform (context->state, &input[partLen], len); |
---|
203 | i = partLen + 64 * len; |
---|
204 | byteIndex = 0; |
---|
205 | } else |
---|
206 | i = 0; |
---|
207 | |
---|
208 | /* Buffer remaining input */ |
---|
209 | memcpy (&context->buffer[byteIndex], &input[i], inputBytes - i); |
---|
210 | } |
---|
211 | |
---|
212 | #endif |
---|
213 | |
---|
214 | |
---|
215 | void MD5Final (uint8_t digest[16], MD5_CTX* context) { |
---|
216 | static uint8_t finalBlock[64]; |
---|
217 | |
---|
218 | uint32_t bits[2]; |
---|
219 | int byteIndex; |
---|
220 | int finalBlockLength; |
---|
221 | |
---|
222 | byteIndex = (context->count[0] >> 3) & 0x3F; |
---|
223 | finalBlockLength = ((byteIndex < 56) ? 56 : 120) - byteIndex; |
---|
224 | finalBlock[0] = 0x80; |
---|
225 | |
---|
226 | #if (__BYTE_ORDER == __BIG_ENDIAN) |
---|
227 | CopyToLittleEndian (bits, (const uint8_t *) context->count, 2); |
---|
228 | #else |
---|
229 | memcpy(bits, context->count, 8); |
---|
230 | #endif |
---|
231 | |
---|
232 | MD5Update (context, finalBlock, finalBlockLength); |
---|
233 | MD5Update (context, (const uint8_t *) bits, 8); |
---|
234 | |
---|
235 | #if (__BYTE_ORDER == __BIG_ENDIAN) |
---|
236 | CopyToLittleEndian ((uint32_t *) digest, (const uint8_t *) context->state, 4); |
---|
237 | #else |
---|
238 | memcpy (digest, context->state, 16); |
---|
239 | #endif |
---|
240 | |
---|
241 | memset(context, 0, sizeof(*context)); |
---|
242 | } |
---|
243 | |
---|