blob: 8f5cef5e0eccee59593d32b0c2dfe92435b6060b [file] [log] [blame]
SimonB15942102016-04-25 21:34:49 +01001#line 1 "helpers.function"
SimonB0269dad2016-02-17 23:34:30 +00002/*----------------------------------------------------------------------------*/
3/* Headers */
4
Simon Butcheredb7fd92016-05-17 13:35:51 +01005#include <stdlib.h>
6
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02007#if defined(MBEDTLS_PLATFORM_C)
Manuel Pégourié-Gonnard7f809972015-03-09 17:05:11 +00008#include "mbedtls/platform.h"
Manuel Pégourié-Gonnard3d49b9d2014-06-06 14:48:09 +02009#else
Rich Evans00ab4702015-02-06 13:43:58 +000010#include <stdio.h>
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020011#define mbedtls_fprintf fprintf
Simon Butcher25731362016-09-30 13:11:29 +010012#define mbedtls_snprintf snprintf
13#define mbedtls_calloc calloc
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020014#define mbedtls_free free
15#define mbedtls_exit exit
Simon Butcherb2d5dd12016-04-27 13:35:37 +010016#define mbedtls_time time
17#define mbedtls_time_t time_t
Janos Follath55abc212016-04-18 18:18:48 +010018#define MBEDTLS_EXIT_SUCCESS EXIT_SUCCESS
19#define MBEDTLS_EXIT_FAILURE EXIT_FAILURE
Manuel Pégourié-Gonnard3d49b9d2014-06-06 14:48:09 +020020#endif
21
SimonB0269dad2016-02-17 23:34:30 +000022#if defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C)
23#include "mbedtls/memory_buffer_alloc.h"
24#endif
25
Paul Bakkerb3dcbc12011-03-13 16:57:25 +000026#ifdef _MSC_VER
27#include <basetsd.h>
28typedef UINT32 uint32_t;
Nicholas Wilson733676b2015-11-14 13:09:01 +000029#define strncasecmp _strnicmp
30#define strcasecmp _stricmp
Paul Bakkerb3dcbc12011-03-13 16:57:25 +000031#else
Manuel Pégourié-Gonnard93866642015-06-22 19:21:23 +020032#include <stdint.h>
Paul Bakkerb3dcbc12011-03-13 16:57:25 +000033#endif
34
Paul Bakker19343182013-08-16 13:31:10 +020035#include <string.h>
36
Janos Follath8ca53b52016-10-05 10:57:49 +010037#if defined(__unix__) || (defined(__APPLE__) && defined(__MACH__))
38#include <unistd.h>
39#endif
SimonB0269dad2016-02-17 23:34:30 +000040
41/*----------------------------------------------------------------------------*/
SimonB8ca7bc42016-04-17 23:24:50 +010042/* Constants */
SimonB0269dad2016-02-17 23:34:30 +000043
SimonB8ca7bc42016-04-17 23:24:50 +010044#define DEPENDENCY_SUPPORTED 0
45#define DEPENDENCY_NOT_SUPPORTED 1
46
47#define KEY_VALUE_MAPPING_FOUND 0
48#define KEY_VALUE_MAPPING_NOT_FOUND -1
49
50#define DISPATCH_TEST_SUCCESS 0
51#define DISPATCH_TEST_FN_NOT_FOUND 1
52#define DISPATCH_INVALID_TEST_DATA 2
53#define DISPATCH_UNSUPPORTED_SUITE 3
SimonB0269dad2016-02-17 23:34:30 +000054
55
56/*----------------------------------------------------------------------------*/
57/* Macros */
58
59#define TEST_ASSERT( TEST ) \
60 do { \
61 if( ! (TEST) ) \
62 { \
SimonB31a6c492016-05-02 21:32:44 +010063 test_fail( #TEST, __LINE__, __FILE__ ); \
SimonB0269dad2016-02-17 23:34:30 +000064 goto exit; \
65 } \
66 } while( 0 )
67
Rich Evans4c091142015-02-02 12:04:10 +000068#define assert(a) if( !( a ) ) \
69{ \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020070 mbedtls_fprintf( stderr, "Assertion Failed at %s:%d - %s\n", \
Rich Evans4c091142015-02-02 12:04:10 +000071 __FILE__, __LINE__, #a ); \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020072 mbedtls_exit( 1 ); \
Rich Evans4c091142015-02-02 12:04:10 +000073}
74
Ronald Croneb5d0e92020-04-06 10:34:22 +020075#if defined(__GNUC__)
76/* Test if arg and &(arg)[0] have the same type. This is true if arg is
77 * an array but not if it's a pointer. */
78#define IS_ARRAY_NOT_POINTER( arg ) \
79 ( ! __builtin_types_compatible_p( __typeof__( arg ), \
80 __typeof__( &( arg )[0] ) ) )
81#else
82/* On platforms where we don't know how to implement this check,
83 * omit it. Oh well, a non-portable check is better than nothing. */
84#define IS_ARRAY_NOT_POINTER( arg ) 1
85#endif
86
87/* A compile-time constant with the value 0. If `const_expr` is not a
88 * compile-time constant with a nonzero value, cause a compile-time error. */
89#define STATIC_ASSERT_EXPR( const_expr ) \
makise-homura03c2b8f2020-08-23 00:28:45 +030090 ( 0 && sizeof( struct { unsigned int STATIC_ASSERT : 1 - 2 * ! ( const_expr ); } ) )
Ronald Croneb5d0e92020-04-06 10:34:22 +020091/* Return the scalar value `value` (possibly promoted). This is a compile-time
92 * constant if `value` is. `condition` must be a compile-time constant.
93 * If `condition` is false, arrange to cause a compile-time error. */
94#define STATIC_ASSERT_THEN_RETURN( condition, value ) \
95 ( STATIC_ASSERT_EXPR( condition ) ? 0 : ( value ) )
96
97#define ARRAY_LENGTH_UNSAFE( array ) \
98 ( sizeof( array ) / sizeof( *( array ) ) )
99/** Return the number of elements of a static or stack array.
100 *
101 * \param array A value of array (not pointer) type.
102 *
103 * \return The number of elements of the array.
104 */
105#define ARRAY_LENGTH( array ) \
106 ( STATIC_ASSERT_THEN_RETURN( IS_ARRAY_NOT_POINTER( array ), \
107 ARRAY_LENGTH_UNSAFE( array ) ) )
108
109
Paul Bakkerb3dcbc12011-03-13 16:57:25 +0000110/*
111 * 32-bit integer manipulation macros (big endian)
112 */
Paul Bakker5c2364c2012-10-01 14:41:15 +0000113#ifndef GET_UINT32_BE
114#define GET_UINT32_BE(n,b,i) \
Paul Bakkerb3dcbc12011-03-13 16:57:25 +0000115{ \
Paul Bakker5c2364c2012-10-01 14:41:15 +0000116 (n) = ( (uint32_t) (b)[(i) ] << 24 ) \
117 | ( (uint32_t) (b)[(i) + 1] << 16 ) \
118 | ( (uint32_t) (b)[(i) + 2] << 8 ) \
119 | ( (uint32_t) (b)[(i) + 3] ); \
Paul Bakkerb3dcbc12011-03-13 16:57:25 +0000120}
121#endif
122
Paul Bakker5c2364c2012-10-01 14:41:15 +0000123#ifndef PUT_UINT32_BE
124#define PUT_UINT32_BE(n,b,i) \
Paul Bakkerb3dcbc12011-03-13 16:57:25 +0000125{ \
126 (b)[(i) ] = (unsigned char) ( (n) >> 24 ); \
127 (b)[(i) + 1] = (unsigned char) ( (n) >> 16 ); \
128 (b)[(i) + 2] = (unsigned char) ( (n) >> 8 ); \
129 (b)[(i) + 3] = (unsigned char) ( (n) ); \
130}
131#endif
132
SimonB0269dad2016-02-17 23:34:30 +0000133
134/*----------------------------------------------------------------------------*/
SimonB8ca7bc42016-04-17 23:24:50 +0100135/* Global variables */
136
Andres Amaya Garcia3f50f512017-10-01 16:42:29 +0100137
138static struct
139{
140 int failed;
141 const char *test;
142 const char *filename;
143 int line_no;
144}
145test_info;
SimonB8ca7bc42016-04-17 23:24:50 +0100146
147
148/*----------------------------------------------------------------------------*/
Hanno Becker47deec42017-07-24 12:27:09 +0100149/* Helper flags for complex dependencies */
150
151/* Indicates whether we expect mbedtls_entropy_init
152 * to initialize some strong entropy source. */
153#if defined(MBEDTLS_TEST_NULL_ENTROPY) || \
154 ( !defined(MBEDTLS_NO_DEFAULT_ENTROPY_SOURCES) && \
155 ( !defined(MBEDTLS_NO_PLATFORM_ENTROPY) || \
156 defined(MBEDTLS_HAVEGE_C) || \
157 defined(MBEDTLS_ENTROPY_HARDWARE_ALT) || \
158 defined(ENTROPY_NV_SEED) ) )
Hanno Beckerd4a872e2017-09-07 08:09:33 +0100159#define ENTROPY_HAVE_STRONG
Hanno Becker47deec42017-07-24 12:27:09 +0100160#endif
161
162
163/*----------------------------------------------------------------------------*/
SimonB0269dad2016-02-17 23:34:30 +0000164/* Helper Functions */
165
Simon Butcher638dceb2018-10-03 16:17:41 +0100166void test_fail( const char *test, int line_no, const char* filename )
167{
Gilles Peskined4c9fd12020-08-31 10:21:58 +0200168 if( test_info.failed )
169 {
170 /* We've already recorded the test as having failed. Don't
171 * overwrite any previous information about the failure. */
172 return;
173 }
Simon Butcher638dceb2018-10-03 16:17:41 +0100174 test_info.failed = 1;
175 test_info.test = test;
176 test_info.line_no = line_no;
177 test_info.filename = filename;
178}
179
Janos Follath8ca53b52016-10-05 10:57:49 +0100180#if defined(__unix__) || (defined(__APPLE__) && defined(__MACH__))
gufe44b0ab8c22020-07-30 09:02:27 +0200181static int redirect_output( FILE* out_stream, const char* path )
Janos Follath8ca53b52016-10-05 10:57:49 +0100182{
gufe44b0ab8c22020-07-30 09:02:27 +0200183 int out_fd, dup_fd;
184 FILE* path_stream;
Janos Follath8ca53b52016-10-05 10:57:49 +0100185
gufe44b0ab8c22020-07-30 09:02:27 +0200186 out_fd = fileno( out_stream );
187 dup_fd = dup( out_fd );
188
189 if( dup_fd == -1 )
Janos Follath8ca53b52016-10-05 10:57:49 +0100190 {
gufe44b0ab8c22020-07-30 09:02:27 +0200191 return( -1 );
Janos Follath8ca53b52016-10-05 10:57:49 +0100192 }
193
gufe44b0ab8c22020-07-30 09:02:27 +0200194 path_stream = fopen( path, "w" );
195 if( path_stream == NULL )
Janos Follath8ca53b52016-10-05 10:57:49 +0100196 {
gufe44b0ab8c22020-07-30 09:02:27 +0200197 close( dup_fd );
198 return( -1 );
Janos Follath8ca53b52016-10-05 10:57:49 +0100199 }
200
gufe44b0ab8c22020-07-30 09:02:27 +0200201 fflush( out_stream );
202 if( dup2( fileno( path_stream ), out_fd ) == -1 )
203 {
204 close( dup_fd );
205 fclose( path_stream );
206 return( -1 );
207 }
208
209 fclose( path_stream );
210 return( dup_fd );
Janos Follath8ca53b52016-10-05 10:57:49 +0100211}
212
gufe44b0ab8c22020-07-30 09:02:27 +0200213static int restore_output( FILE* out_stream, int dup_fd )
Janos Follath8ca53b52016-10-05 10:57:49 +0100214{
gufe44b0ab8c22020-07-30 09:02:27 +0200215 int out_fd = fileno( out_stream );
Janos Follath8ca53b52016-10-05 10:57:49 +0100216
gufe44b0ab8c22020-07-30 09:02:27 +0200217 fflush( out_stream );
218 if( dup2( dup_fd, out_fd ) == -1 )
Janos Follath8ca53b52016-10-05 10:57:49 +0100219 {
gufe44b0ab8c22020-07-30 09:02:27 +0200220 close( out_fd );
221 close( dup_fd );
222 return( -1 );
Janos Follath8ca53b52016-10-05 10:57:49 +0100223 }
224
gufe44b0ab8c22020-07-30 09:02:27 +0200225 close( dup_fd );
226 return( 0 );
Simon Butchere0192962016-10-12 23:07:30 +0100227}
Janos Follath8ca53b52016-10-05 10:57:49 +0100228#endif /* __unix__ || __APPLE__ __MACH__ */
229
Simon Butcher638dceb2018-10-03 16:17:41 +0100230int unhexify( unsigned char *obuf, const char *ibuf )
Paul Bakker367dae42009-06-28 21:50:27 +0000231{
232 unsigned char c, c2;
Rich Evans4c091142015-02-02 12:04:10 +0000233 int len = strlen( ibuf ) / 2;
SimonB0269dad2016-02-17 23:34:30 +0000234 assert( strlen( ibuf ) % 2 == 0 ); /* must be even number of bytes */
Paul Bakker367dae42009-06-28 21:50:27 +0000235
Rich Evans4c091142015-02-02 12:04:10 +0000236 while( *ibuf != 0 )
Paul Bakker367dae42009-06-28 21:50:27 +0000237 {
238 c = *ibuf++;
239 if( c >= '0' && c <= '9' )
240 c -= '0';
241 else if( c >= 'a' && c <= 'f' )
242 c -= 'a' - 10;
243 else if( c >= 'A' && c <= 'F' )
244 c -= 'A' - 10;
245 else
246 assert( 0 );
247
248 c2 = *ibuf++;
249 if( c2 >= '0' && c2 <= '9' )
250 c2 -= '0';
251 else if( c2 >= 'a' && c2 <= 'f' )
252 c2 -= 'a' - 10;
253 else if( c2 >= 'A' && c2 <= 'F' )
254 c2 -= 'A' - 10;
255 else
256 assert( 0 );
257
258 *obuf++ = ( c << 4 ) | c2;
259 }
260
261 return len;
262}
263
Simon Butcher638dceb2018-10-03 16:17:41 +0100264void hexify( unsigned char *obuf, const unsigned char *ibuf, int len )
Paul Bakker367dae42009-06-28 21:50:27 +0000265{
266 unsigned char l, h;
267
Rich Evans42914452015-02-02 12:09:25 +0000268 while( len != 0 )
Paul Bakker367dae42009-06-28 21:50:27 +0000269 {
Rich Evans42914452015-02-02 12:09:25 +0000270 h = *ibuf / 16;
271 l = *ibuf % 16;
Paul Bakker367dae42009-06-28 21:50:27 +0000272
273 if( h < 10 )
274 *obuf++ = '0' + h;
275 else
276 *obuf++ = 'a' + h - 10;
277
278 if( l < 10 )
279 *obuf++ = '0' + l;
280 else
281 *obuf++ = 'a' + l - 10;
282
283 ++ibuf;
284 len--;
285 }
286}
Paul Bakker9dcc3222011-03-08 14:16:06 +0000287
288/**
Manuel Pégourié-Gonnard0dc5e0d2014-06-13 21:09:26 +0200289 * Allocate and zeroize a buffer.
290 *
291 * If the size if zero, a pointer to a zeroized 1-byte buffer is returned.
292 *
293 * For convenience, dies if allocation fails.
294 */
295static unsigned char *zero_alloc( size_t len )
296{
297 void *p;
Rich Evans42914452015-02-02 12:09:25 +0000298 size_t actual_len = ( len != 0 ) ? len : 1;
Manuel Pégourié-Gonnard0dc5e0d2014-06-13 21:09:26 +0200299
Manuel Pégourié-Gonnard7551cb92015-05-26 16:04:06 +0200300 p = mbedtls_calloc( 1, actual_len );
Paul Bakker4d0cfe82014-07-10 14:37:36 +0200301 assert( p != NULL );
Manuel Pégourié-Gonnard0dc5e0d2014-06-13 21:09:26 +0200302
303 memset( p, 0x00, actual_len );
304
305 return( p );
306}
307
308/**
Manuel Pégourié-Gonnard3d49b9d2014-06-06 14:48:09 +0200309 * Allocate and fill a buffer from hex data.
310 *
311 * The buffer is sized exactly as needed. This allows to detect buffer
312 * overruns (including overreads) when running the test suite under valgrind.
313 *
Manuel Pégourié-Gonnard0dc5e0d2014-06-13 21:09:26 +0200314 * If the size if zero, a pointer to a zeroized 1-byte buffer is returned.
315 *
Manuel Pégourié-Gonnard3d49b9d2014-06-06 14:48:09 +0200316 * For convenience, dies if allocation fails.
317 */
Simon Butcher638dceb2018-10-03 16:17:41 +0100318unsigned char *unhexify_alloc( const char *ibuf, size_t *olen )
Manuel Pégourié-Gonnard3d49b9d2014-06-06 14:48:09 +0200319{
320 unsigned char *obuf;
321
Rich Evans42914452015-02-02 12:09:25 +0000322 *olen = strlen( ibuf ) / 2;
Manuel Pégourié-Gonnard3d49b9d2014-06-06 14:48:09 +0200323
Manuel Pégourié-Gonnard0dc5e0d2014-06-13 21:09:26 +0200324 if( *olen == 0 )
325 return( zero_alloc( *olen ) );
326
Manuel Pégourié-Gonnard7551cb92015-05-26 16:04:06 +0200327 obuf = mbedtls_calloc( 1, *olen );
Paul Bakker4d0cfe82014-07-10 14:37:36 +0200328 assert( obuf != NULL );
Manuel Pégourié-Gonnard3d49b9d2014-06-06 14:48:09 +0200329
330 (void) unhexify( obuf, ibuf );
331
332 return( obuf );
333}
334
335/**
Paul Bakker9dcc3222011-03-08 14:16:06 +0000336 * This function just returns data from rand().
Paul Bakker997bbd12011-03-13 15:45:42 +0000337 * Although predictable and often similar on multiple
338 * runs, this does not result in identical random on
339 * each run. So do not use this if the results of a
340 * test depend on the random data that is generated.
Paul Bakker9dcc3222011-03-08 14:16:06 +0000341 *
342 * rng_state shall be NULL.
343 */
Paul Bakkera3d195c2011-11-27 21:07:34 +0000344static int rnd_std_rand( void *rng_state, unsigned char *output, size_t len )
Paul Bakker9dcc3222011-03-08 14:16:06 +0000345{
gufe44206cb392020-08-03 17:56:50 +0200346#if !defined(__OpenBSD__) && !defined(__NetBSD__)
Paul Bakkera3d195c2011-11-27 21:07:34 +0000347 size_t i;
348
Paul Bakker9dcc3222011-03-08 14:16:06 +0000349 if( rng_state != NULL )
350 rng_state = NULL;
351
Paul Bakkera3d195c2011-11-27 21:07:34 +0000352 for( i = 0; i < len; ++i )
353 output[i] = rand();
Paul Bakkerf96f7b62014-04-30 16:02:38 +0200354#else
355 if( rng_state != NULL )
356 rng_state = NULL;
357
358 arc4random_buf( output, len );
gufe44206cb392020-08-03 17:56:50 +0200359#endif /* !OpenBSD && !NetBSD */
Paul Bakkera3d195c2011-11-27 21:07:34 +0000360
361 return( 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000362}
363
364/**
365 * This function only returns zeros
366 *
367 * rng_state shall be NULL.
368 */
Simon Butcher638dceb2018-10-03 16:17:41 +0100369int rnd_zero_rand( void *rng_state, unsigned char *output, size_t len )
Paul Bakker9dcc3222011-03-08 14:16:06 +0000370{
371 if( rng_state != NULL )
372 rng_state = NULL;
373
Paul Bakkera3d195c2011-11-27 21:07:34 +0000374 memset( output, 0, len );
375
Paul Bakker9dcc3222011-03-08 14:16:06 +0000376 return( 0 );
377}
378
379typedef struct
380{
381 unsigned char *buf;
Paul Bakkera3d195c2011-11-27 21:07:34 +0000382 size_t length;
Paul Bakker997bbd12011-03-13 15:45:42 +0000383} rnd_buf_info;
Paul Bakker9dcc3222011-03-08 14:16:06 +0000384
385/**
386 * This function returns random based on a buffer it receives.
387 *
Paul Bakker997bbd12011-03-13 15:45:42 +0000388 * rng_state shall be a pointer to a rnd_buf_info structure.
Manuel Pégourié-Gonnarde670f902015-10-30 09:23:19 +0100389 *
Paul Bakker997bbd12011-03-13 15:45:42 +0000390 * The number of bytes released from the buffer on each call to
391 * the random function is specified by per_call. (Can be between
392 * 1 and 4)
Paul Bakker9dcc3222011-03-08 14:16:06 +0000393 *
394 * After the buffer is empty it will return rand();
395 */
Simon Butcher638dceb2018-10-03 16:17:41 +0100396int rnd_buffer_rand( void *rng_state, unsigned char *output, size_t len )
Paul Bakker9dcc3222011-03-08 14:16:06 +0000397{
Paul Bakker997bbd12011-03-13 15:45:42 +0000398 rnd_buf_info *info = (rnd_buf_info *) rng_state;
Paul Bakkera3d195c2011-11-27 21:07:34 +0000399 size_t use_len;
Paul Bakker9dcc3222011-03-08 14:16:06 +0000400
401 if( rng_state == NULL )
Paul Bakkera3d195c2011-11-27 21:07:34 +0000402 return( rnd_std_rand( NULL, output, len ) );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000403
Paul Bakkera3d195c2011-11-27 21:07:34 +0000404 use_len = len;
405 if( len > info->length )
406 use_len = info->length;
Paul Bakker997bbd12011-03-13 15:45:42 +0000407
Paul Bakkera3d195c2011-11-27 21:07:34 +0000408 if( use_len )
Paul Bakker9dcc3222011-03-08 14:16:06 +0000409 {
Paul Bakkera3d195c2011-11-27 21:07:34 +0000410 memcpy( output, info->buf, use_len );
411 info->buf += use_len;
412 info->length -= use_len;
Paul Bakker9dcc3222011-03-08 14:16:06 +0000413 }
414
Paul Bakkera3d195c2011-11-27 21:07:34 +0000415 if( len - use_len > 0 )
416 return( rnd_std_rand( NULL, output + use_len, len - use_len ) );
417
418 return( 0 );
Paul Bakker9dcc3222011-03-08 14:16:06 +0000419}
Paul Bakker997bbd12011-03-13 15:45:42 +0000420
421/**
422 * Info structure for the pseudo random function
423 *
424 * Key should be set at the start to a test-unique value.
Paul Bakkerb3dcbc12011-03-13 16:57:25 +0000425 * Do not forget endianness!
Paul Bakker997bbd12011-03-13 15:45:42 +0000426 * State( v0, v1 ) should be set to zero.
427 */
428typedef struct
429{
Paul Bakkerb3dcbc12011-03-13 16:57:25 +0000430 uint32_t key[16];
Paul Bakker997bbd12011-03-13 15:45:42 +0000431 uint32_t v0, v1;
432} rnd_pseudo_info;
433
434/**
435 * This function returns random based on a pseudo random function.
436 * This means the results should be identical on all systems.
437 * Pseudo random is based on the XTEA encryption algorithm to
438 * generate pseudorandom.
439 *
440 * rng_state shall be a pointer to a rnd_pseudo_info structure.
441 */
Simon Butcher638dceb2018-10-03 16:17:41 +0100442int rnd_pseudo_rand( void *rng_state, unsigned char *output, size_t len )
Paul Bakker997bbd12011-03-13 15:45:42 +0000443{
444 rnd_pseudo_info *info = (rnd_pseudo_info *) rng_state;
Paul Bakkera3d195c2011-11-27 21:07:34 +0000445 uint32_t i, *k, sum, delta=0x9E3779B9;
Manuel Pégourié-Gonnard217a29c2014-01-03 11:59:09 +0100446 unsigned char result[4], *out = output;
Paul Bakker997bbd12011-03-13 15:45:42 +0000447
448 if( rng_state == NULL )
Paul Bakkera3d195c2011-11-27 21:07:34 +0000449 return( rnd_std_rand( NULL, output, len ) );
Paul Bakker997bbd12011-03-13 15:45:42 +0000450
Paul Bakkerb3dcbc12011-03-13 16:57:25 +0000451 k = info->key;
Paul Bakkera3d195c2011-11-27 21:07:34 +0000452
453 while( len > 0 )
Paul Bakker997bbd12011-03-13 15:45:42 +0000454 {
Paul Bakker40dd5302012-05-15 15:02:38 +0000455 size_t use_len = ( len > 4 ) ? 4 : len;
Paul Bakkera3d195c2011-11-27 21:07:34 +0000456 sum = 0;
457
Paul Bakkera3d195c2011-11-27 21:07:34 +0000458 for( i = 0; i < 32; i++ )
459 {
Rich Evans42914452015-02-02 12:09:25 +0000460 info->v0 += ( ( ( info->v1 << 4 ) ^ ( info->v1 >> 5 ) )
461 + info->v1 ) ^ ( sum + k[sum & 3] );
Paul Bakkera3d195c2011-11-27 21:07:34 +0000462 sum += delta;
Rich Evans42914452015-02-02 12:09:25 +0000463 info->v1 += ( ( ( info->v0 << 4 ) ^ ( info->v0 >> 5 ) )
464 + info->v0 ) ^ ( sum + k[( sum>>11 ) & 3] );
Paul Bakkera3d195c2011-11-27 21:07:34 +0000465 }
466
Paul Bakker5c2364c2012-10-01 14:41:15 +0000467 PUT_UINT32_BE( info->v0, result, 0 );
Manuel Pégourié-Gonnard217a29c2014-01-03 11:59:09 +0100468 memcpy( out, result, use_len );
Paul Bakkera3d195c2011-11-27 21:07:34 +0000469 len -= use_len;
Manuel Pégourié-Gonnard217a29c2014-01-03 11:59:09 +0100470 out += 4;
Paul Bakker997bbd12011-03-13 15:45:42 +0000471 }
472
Paul Bakkera3d195c2011-11-27 21:07:34 +0000473 return( 0 );
Paul Bakker997bbd12011-03-13 15:45:42 +0000474}
SimonB0269dad2016-02-17 23:34:30 +0000475