2 * Copyright 1995-2021 The OpenSSL Project Authors. All Rights Reserved.
4 * Licensed under the Apache License 2.0 (the "License"). You may not use
5 * this file except in compliance with the License. You can obtain a copy
6 * in the file LICENSE in the source distribution or at
7 * https://www.openssl.org/source/license.html
11 #include "internal/cryptlib.h"
12 #include <openssl/safestack.h>
13 #include <openssl/asn1.h>
14 #include <openssl/objects.h>
15 #include <openssl/evp.h>
16 #include <openssl/x509.h>
17 #include <openssl/x509v3.h>
18 #include "crypto/x509.h"
19 #include "x509_local.h"
21 int X509at_get_attr_count(const STACK_OF(X509_ATTRIBUTE
) *x
)
23 return sk_X509_ATTRIBUTE_num(x
);
26 int X509at_get_attr_by_NID(const STACK_OF(X509_ATTRIBUTE
) *x
, int nid
,
29 const ASN1_OBJECT
*obj
= OBJ_nid2obj(nid
);
33 return X509at_get_attr_by_OBJ(x
, obj
, lastpos
);
36 int X509at_get_attr_by_OBJ(const STACK_OF(X509_ATTRIBUTE
) *sk
,
37 const ASN1_OBJECT
*obj
, int lastpos
)
47 n
= sk_X509_ATTRIBUTE_num(sk
);
48 for (; lastpos
< n
; lastpos
++) {
49 ex
= sk_X509_ATTRIBUTE_value(sk
, lastpos
);
50 if (OBJ_cmp(ex
->object
, obj
) == 0)
56 X509_ATTRIBUTE
*X509at_get_attr(const STACK_OF(X509_ATTRIBUTE
) *x
, int loc
)
58 if (x
== NULL
|| sk_X509_ATTRIBUTE_num(x
) <= loc
|| loc
< 0)
61 return sk_X509_ATTRIBUTE_value(x
, loc
);
64 X509_ATTRIBUTE
*X509at_delete_attr(STACK_OF(X509_ATTRIBUTE
) *x
, int loc
)
68 if (x
== NULL
|| sk_X509_ATTRIBUTE_num(x
) <= loc
|| loc
< 0)
70 ret
= sk_X509_ATTRIBUTE_delete(x
, loc
);
74 STACK_OF(X509_ATTRIBUTE
) *X509at_add1_attr(STACK_OF(X509_ATTRIBUTE
) **x
,
77 X509_ATTRIBUTE
*new_attr
= NULL
;
78 STACK_OF(X509_ATTRIBUTE
) *sk
= NULL
;
81 ERR_raise(ERR_LIB_X509
, ERR_R_PASSED_NULL_PARAMETER
);
86 if ((sk
= sk_X509_ATTRIBUTE_new_null()) == NULL
)
92 if ((new_attr
= X509_ATTRIBUTE_dup(attr
)) == NULL
)
94 if (!sk_X509_ATTRIBUTE_push(sk
, new_attr
))
100 ERR_raise(ERR_LIB_X509
, ERR_R_MALLOC_FAILURE
);
102 X509_ATTRIBUTE_free(new_attr
);
104 sk_X509_ATTRIBUTE_free(sk
);
108 STACK_OF(X509_ATTRIBUTE
) *X509at_add1_attr_by_OBJ(STACK_OF(X509_ATTRIBUTE
)
109 **x
, const ASN1_OBJECT
*obj
,
111 const unsigned char *bytes
,
114 X509_ATTRIBUTE
*attr
;
115 STACK_OF(X509_ATTRIBUTE
) *ret
;
116 attr
= X509_ATTRIBUTE_create_by_OBJ(NULL
, obj
, type
, bytes
, len
);
119 ret
= X509at_add1_attr(x
, attr
);
120 X509_ATTRIBUTE_free(attr
);
124 STACK_OF(X509_ATTRIBUTE
) *X509at_add1_attr_by_NID(STACK_OF(X509_ATTRIBUTE
)
125 **x
, int nid
, int type
,
126 const unsigned char *bytes
,
129 X509_ATTRIBUTE
*attr
;
130 STACK_OF(X509_ATTRIBUTE
) *ret
;
131 attr
= X509_ATTRIBUTE_create_by_NID(NULL
, nid
, type
, bytes
, len
);
134 ret
= X509at_add1_attr(x
, attr
);
135 X509_ATTRIBUTE_free(attr
);
139 STACK_OF(X509_ATTRIBUTE
) *X509at_add1_attr_by_txt(STACK_OF(X509_ATTRIBUTE
)
140 **x
, const char *attrname
,
142 const unsigned char *bytes
,
145 X509_ATTRIBUTE
*attr
;
146 STACK_OF(X509_ATTRIBUTE
) *ret
;
147 attr
= X509_ATTRIBUTE_create_by_txt(NULL
, attrname
, type
, bytes
, len
);
150 ret
= X509at_add1_attr(x
, attr
);
151 X509_ATTRIBUTE_free(attr
);
155 void *X509at_get0_data_by_OBJ(const STACK_OF(X509_ATTRIBUTE
) *x
,
156 const ASN1_OBJECT
*obj
, int lastpos
, int type
)
160 i
= X509at_get_attr_by_OBJ(x
, obj
, lastpos
);
163 if ((lastpos
<= -2) && (X509at_get_attr_by_OBJ(x
, obj
, i
) != -1))
165 at
= X509at_get_attr(x
, i
);
166 if (lastpos
<= -3 && (X509_ATTRIBUTE_count(at
) != 1))
168 return X509_ATTRIBUTE_get0_data(at
, 0, type
, NULL
);
171 STACK_OF(X509_ATTRIBUTE
) *ossl_x509at_dup(const STACK_OF(X509_ATTRIBUTE
) *x
)
174 STACK_OF(X509_ATTRIBUTE
) *sk
= NULL
;
176 n
= sk_X509_ATTRIBUTE_num(x
);
177 for (i
= 0; i
< n
; ++i
) {
178 X509_ATTRIBUTE
*attr
= sk_X509_ATTRIBUTE_value(x
, i
);
180 if (X509at_add1_attr(&sk
, attr
) == NULL
) {
181 sk_X509_ATTRIBUTE_pop_free(sk
, X509_ATTRIBUTE_free
);
188 X509_ATTRIBUTE
*X509_ATTRIBUTE_create_by_NID(X509_ATTRIBUTE
**attr
, int nid
,
189 int atrtype
, const void *data
,
195 obj
= OBJ_nid2obj(nid
);
197 ERR_raise(ERR_LIB_X509
, X509_R_UNKNOWN_NID
);
200 ret
= X509_ATTRIBUTE_create_by_OBJ(attr
, obj
, atrtype
, data
, len
);
202 ASN1_OBJECT_free(obj
);
206 X509_ATTRIBUTE
*X509_ATTRIBUTE_create_by_OBJ(X509_ATTRIBUTE
**attr
,
207 const ASN1_OBJECT
*obj
,
208 int atrtype
, const void *data
,
213 if ((attr
== NULL
) || (*attr
== NULL
)) {
214 if ((ret
= X509_ATTRIBUTE_new()) == NULL
) {
215 ERR_raise(ERR_LIB_X509
, ERR_R_MALLOC_FAILURE
);
221 if (!X509_ATTRIBUTE_set1_object(ret
, obj
))
223 if (!X509_ATTRIBUTE_set1_data(ret
, atrtype
, data
, len
))
226 if ((attr
!= NULL
) && (*attr
== NULL
))
230 if ((attr
== NULL
) || (ret
!= *attr
))
231 X509_ATTRIBUTE_free(ret
);
235 X509_ATTRIBUTE
*X509_ATTRIBUTE_create_by_txt(X509_ATTRIBUTE
**attr
,
236 const char *atrname
, int type
,
237 const unsigned char *bytes
,
241 X509_ATTRIBUTE
*nattr
;
243 obj
= OBJ_txt2obj(atrname
, 0);
245 ERR_raise_data(ERR_LIB_X509
, X509_R_INVALID_FIELD_NAME
,
249 nattr
= X509_ATTRIBUTE_create_by_OBJ(attr
, obj
, type
, bytes
, len
);
250 ASN1_OBJECT_free(obj
);
254 int X509_ATTRIBUTE_set1_object(X509_ATTRIBUTE
*attr
, const ASN1_OBJECT
*obj
)
256 if ((attr
== NULL
) || (obj
== NULL
))
258 ASN1_OBJECT_free(attr
->object
);
259 attr
->object
= OBJ_dup(obj
);
260 return attr
->object
!= NULL
;
263 int X509_ATTRIBUTE_set1_data(X509_ATTRIBUTE
*attr
, int attrtype
,
264 const void *data
, int len
)
266 ASN1_TYPE
*ttmp
= NULL
;
267 ASN1_STRING
*stmp
= NULL
;
271 if (attrtype
& MBSTRING_FLAG
) {
272 stmp
= ASN1_STRING_set_by_NID(NULL
, data
, len
, attrtype
,
273 OBJ_obj2nid(attr
->object
));
275 ERR_raise(ERR_LIB_X509
, ERR_R_ASN1_LIB
);
279 } else if (len
!= -1) {
280 if ((stmp
= ASN1_STRING_type_new(attrtype
)) == NULL
)
282 if (!ASN1_STRING_set(stmp
, data
, len
))
287 * This is a bit naughty because the attribute should really have at
288 * least one value but some types use and zero length SET and require
292 ASN1_STRING_free(stmp
);
295 if ((ttmp
= ASN1_TYPE_new()) == NULL
)
297 if ((len
== -1) && !(attrtype
& MBSTRING_FLAG
)) {
298 if (!ASN1_TYPE_set1(ttmp
, attrtype
, data
))
301 ASN1_TYPE_set(ttmp
, atype
, stmp
);
304 if (!sk_ASN1_TYPE_push(attr
->set
, ttmp
))
308 ERR_raise(ERR_LIB_X509
, ERR_R_MALLOC_FAILURE
);
309 ASN1_TYPE_free(ttmp
);
310 ASN1_STRING_free(stmp
);
314 int X509_ATTRIBUTE_count(const X509_ATTRIBUTE
*attr
)
318 return sk_ASN1_TYPE_num(attr
->set
);
321 ASN1_OBJECT
*X509_ATTRIBUTE_get0_object(X509_ATTRIBUTE
*attr
)
328 void *X509_ATTRIBUTE_get0_data(X509_ATTRIBUTE
*attr
, int idx
,
329 int atrtype
, void *data
)
332 ttmp
= X509_ATTRIBUTE_get0_type(attr
, idx
);
335 if (atrtype
== V_ASN1_BOOLEAN
336 || atrtype
== V_ASN1_NULL
337 || atrtype
!= ASN1_TYPE_get(ttmp
)) {
338 ERR_raise(ERR_LIB_X509
, X509_R_WRONG_TYPE
);
341 return ttmp
->value
.ptr
;
344 ASN1_TYPE
*X509_ATTRIBUTE_get0_type(X509_ATTRIBUTE
*attr
, int idx
)
348 return sk_ASN1_TYPE_value(attr
->set
, idx
);