1 #include <stdint.h>
2 #include <stdlib.h>
3 #include "mbedtls/pk.h"
4 
LLVMFuzzerTestOneInput(const uint8_t *Data, size_t Size)5 int LLVMFuzzerTestOneInput(const uint8_t *Data, size_t Size)
6 {
7 #ifdef MBEDTLS_PK_PARSE_C
8     int ret;
9     mbedtls_pk_context pk;
10 
11     mbedtls_pk_init(&pk);
12 #if defined(MBEDTLS_USE_PSA_CRYPTO)
13     psa_status_t status = psa_crypto_init();
14     if (status != PSA_SUCCESS) {
15         goto exit;
16     }
17 #endif /* MBEDTLS_USE_PSA_CRYPTO */
18     ret = mbedtls_pk_parse_public_key(&pk, Data, Size);
19     if (ret == 0) {
20 #if defined(MBEDTLS_RSA_C)
21         if (mbedtls_pk_get_type(&pk) == MBEDTLS_PK_RSA) {
22             mbedtls_mpi N, P, Q, D, E, DP, DQ, QP;
23             mbedtls_rsa_context *rsa;
24 
25             mbedtls_mpi_init(&N); mbedtls_mpi_init(&P); mbedtls_mpi_init(&Q);
26             mbedtls_mpi_init(&D); mbedtls_mpi_init(&E); mbedtls_mpi_init(&DP);
27             mbedtls_mpi_init(&DQ); mbedtls_mpi_init(&QP);
28 
29             rsa = mbedtls_pk_rsa(pk);
30             if (mbedtls_rsa_export(rsa, &N, NULL, NULL, NULL, &E) != 0) {
31                 abort();
32             }
33             if (mbedtls_rsa_export(rsa, &N, &P, &Q, &D, &E) != MBEDTLS_ERR_RSA_BAD_INPUT_DATA) {
34                 abort();
35             }
36             if (mbedtls_rsa_export_crt(rsa, &DP, &DQ, &QP) != MBEDTLS_ERR_RSA_BAD_INPUT_DATA) {
37                 abort();
38             }
39 
40             mbedtls_mpi_free(&N); mbedtls_mpi_free(&P); mbedtls_mpi_free(&Q);
41             mbedtls_mpi_free(&D); mbedtls_mpi_free(&E); mbedtls_mpi_free(&DP);
42             mbedtls_mpi_free(&DQ); mbedtls_mpi_free(&QP);
43 
44         } else
45 #endif
46 #if defined(MBEDTLS_ECP_C)
47         if (mbedtls_pk_get_type(&pk) == MBEDTLS_PK_ECKEY ||
48             mbedtls_pk_get_type(&pk) == MBEDTLS_PK_ECKEY_DH) {
49             mbedtls_ecp_keypair *ecp = mbedtls_pk_ec(pk);
50             mbedtls_ecp_group_id grp_id = mbedtls_ecp_keypair_get_group_id(ecp);
51             const mbedtls_ecp_curve_info *curve_info =
52                 mbedtls_ecp_curve_info_from_grp_id(grp_id);
53 
54             /* If the curve is not supported, the key should not have been
55              * accepted. */
56             if (curve_info == NULL) {
57                 abort();
58             }
59 
60             /* It's a public key, so the private value should not have
61              * been changed from its initialization to 0. */
62             mbedtls_mpi d;
63             mbedtls_mpi_init(&d);
64             if (mbedtls_ecp_export(ecp, NULL, &d, NULL) != 0) {
65                 abort();
66             }
67             if (mbedtls_mpi_cmp_int(&d, 0) != 0) {
68                 abort();
69             }
70             mbedtls_mpi_free(&d);
71         } else
72 #endif
73         {
74             /* The key is valid but is not of a supported type.
75              * This should not happen. */
76             abort();
77         }
78     }
79 #if defined(MBEDTLS_USE_PSA_CRYPTO)
80 exit:
81     mbedtls_psa_crypto_free();
82 #endif /* MBEDTLS_USE_PSA_CRYPTO */
83     mbedtls_pk_free(&pk);
84 #else
85     (void) Data;
86     (void) Size;
87 #endif //MBEDTLS_PK_PARSE_C
88 
89     return 0;
90 }
91