160662d10Schristos /*
2*1dcdf01fSchristos  * Copyright 2008-2020 The OpenSSL Project Authors. All Rights Reserved.
360662d10Schristos  *
4*1dcdf01fSchristos  * Licensed under the OpenSSL license (the "License").  You may not use
5*1dcdf01fSchristos  * this file except in compliance with the License.  You can obtain a copy
6*1dcdf01fSchristos  * in the file LICENSE in the source distribution or at
7*1dcdf01fSchristos  * https://www.openssl.org/source/license.html
860662d10Schristos  */
960662d10Schristos 
1060662d10Schristos #include <stdio.h>
11*1dcdf01fSchristos #include "crypto/ctype.h"
12*1dcdf01fSchristos #include "internal/cryptlib.h"
1360662d10Schristos #include <openssl/rand.h>
1460662d10Schristos #include <openssl/x509.h>
1560662d10Schristos #include <openssl/asn1.h>
1660662d10Schristos #include <openssl/asn1t.h>
17*1dcdf01fSchristos #include "crypto/evp.h"
18*1dcdf01fSchristos #include "internal/bio.h"
19*1dcdf01fSchristos #include "asn1_local.h"
2060662d10Schristos 
2160662d10Schristos /*
2260662d10Schristos  * Generalised MIME like utilities for streaming ASN1. Although many have a
2360662d10Schristos  * PKCS7/CMS like flavour others are more general purpose.
2460662d10Schristos  */
2560662d10Schristos 
2660662d10Schristos /*
2760662d10Schristos  * MIME format structures Note that all are translated to lower case apart
2860662d10Schristos  * from parameter values. Quotes are stripped off
2960662d10Schristos  */
3060662d10Schristos 
31*1dcdf01fSchristos struct mime_param_st {
3260662d10Schristos     char *param_name;           /* Param name e.g. "micalg" */
3360662d10Schristos     char *param_value;          /* Param value e.g. "sha1" */
34*1dcdf01fSchristos };
3560662d10Schristos 
36*1dcdf01fSchristos struct mime_header_st {
3760662d10Schristos     char *name;                 /* Name of line e.g. "content-type" */
3860662d10Schristos     char *value;                /* Value of line e.g. "text/plain" */
3960662d10Schristos     STACK_OF(MIME_PARAM) *params; /* Zero or more parameters */
40*1dcdf01fSchristos };
4160662d10Schristos 
4260662d10Schristos static int asn1_output_data(BIO *out, BIO *data, ASN1_VALUE *val, int flags,
4360662d10Schristos                             const ASN1_ITEM *it);
4460662d10Schristos static char *strip_ends(char *name);
4560662d10Schristos static char *strip_start(char *name);
4660662d10Schristos static char *strip_end(char *name);
47*1dcdf01fSchristos static MIME_HEADER *mime_hdr_new(const char *name, const char *value);
48*1dcdf01fSchristos static int mime_hdr_addparam(MIME_HEADER *mhdr, const char *name, const char *value);
4960662d10Schristos static STACK_OF(MIME_HEADER) *mime_parse_hdr(BIO *bio);
5060662d10Schristos static int mime_hdr_cmp(const MIME_HEADER *const *a,
5160662d10Schristos                         const MIME_HEADER *const *b);
5260662d10Schristos static int mime_param_cmp(const MIME_PARAM *const *a,
5360662d10Schristos                           const MIME_PARAM *const *b);
5460662d10Schristos static void mime_param_free(MIME_PARAM *param);
55*1dcdf01fSchristos static int mime_bound_check(char *line, int linelen, const char *bound, int blen);
56*1dcdf01fSchristos static int multi_split(BIO *bio, const char *bound, STACK_OF(BIO) **ret);
57*1dcdf01fSchristos static int strip_eol(char *linebuf, int *plen, int flags);
58*1dcdf01fSchristos static MIME_HEADER *mime_hdr_find(STACK_OF(MIME_HEADER) *hdrs, const char *name);
59*1dcdf01fSchristos static MIME_PARAM *mime_param_find(MIME_HEADER *hdr, const char *name);
6060662d10Schristos static void mime_hdr_free(MIME_HEADER *hdr);
6160662d10Schristos 
6260662d10Schristos #define MAX_SMLEN 1024
6360662d10Schristos #define mime_debug(x)           /* x */
6460662d10Schristos 
6560662d10Schristos /* Output an ASN1 structure in BER format streaming if necessary */
6660662d10Schristos 
i2d_ASN1_bio_stream(BIO * out,ASN1_VALUE * val,BIO * in,int flags,const ASN1_ITEM * it)6760662d10Schristos int i2d_ASN1_bio_stream(BIO *out, ASN1_VALUE *val, BIO *in, int flags,
6860662d10Schristos                         const ASN1_ITEM *it)
6960662d10Schristos {
7060662d10Schristos     /* If streaming create stream BIO and copy all content through it */
7160662d10Schristos     if (flags & SMIME_STREAM) {
7260662d10Schristos         BIO *bio, *tbio;
7360662d10Schristos         bio = BIO_new_NDEF(out, val, it);
7460662d10Schristos         if (!bio) {
7560662d10Schristos             ASN1err(ASN1_F_I2D_ASN1_BIO_STREAM, ERR_R_MALLOC_FAILURE);
7660662d10Schristos             return 0;
7760662d10Schristos         }
7860662d10Schristos         SMIME_crlf_copy(in, bio, flags);
7960662d10Schristos         (void)BIO_flush(bio);
8060662d10Schristos         /* Free up successive BIOs until we hit the old output BIO */
8160662d10Schristos         do {
8260662d10Schristos             tbio = BIO_pop(bio);
8360662d10Schristos             BIO_free(bio);
8460662d10Schristos             bio = tbio;
8560662d10Schristos         } while (bio != out);
8660662d10Schristos     }
8760662d10Schristos     /*
8860662d10Schristos      * else just write out ASN1 structure which will have all content stored
8960662d10Schristos      * internally
9060662d10Schristos      */
9160662d10Schristos     else
9260662d10Schristos         ASN1_item_i2d_bio(it, out, val);
9360662d10Schristos     return 1;
9460662d10Schristos }
9560662d10Schristos 
9660662d10Schristos /* Base 64 read and write of ASN1 structure */
9760662d10Schristos 
B64_write_ASN1(BIO * out,ASN1_VALUE * val,BIO * in,int flags,const ASN1_ITEM * it)9860662d10Schristos static int B64_write_ASN1(BIO *out, ASN1_VALUE *val, BIO *in, int flags,
9960662d10Schristos                           const ASN1_ITEM *it)
10060662d10Schristos {
10160662d10Schristos     BIO *b64;
10260662d10Schristos     int r;
10360662d10Schristos     b64 = BIO_new(BIO_f_base64());
104*1dcdf01fSchristos     if (b64 == NULL) {
10560662d10Schristos         ASN1err(ASN1_F_B64_WRITE_ASN1, ERR_R_MALLOC_FAILURE);
10660662d10Schristos         return 0;
10760662d10Schristos     }
10860662d10Schristos     /*
10960662d10Schristos      * prepend the b64 BIO so all data is base64 encoded.
11060662d10Schristos      */
11160662d10Schristos     out = BIO_push(b64, out);
11260662d10Schristos     r = i2d_ASN1_bio_stream(out, val, in, flags, it);
11360662d10Schristos     (void)BIO_flush(out);
11460662d10Schristos     BIO_pop(out);
11560662d10Schristos     BIO_free(b64);
11660662d10Schristos     return r;
11760662d10Schristos }
11860662d10Schristos 
11960662d10Schristos /* Streaming ASN1 PEM write */
12060662d10Schristos 
PEM_write_bio_ASN1_stream(BIO * out,ASN1_VALUE * val,BIO * in,int flags,const char * hdr,const ASN1_ITEM * it)12160662d10Schristos int PEM_write_bio_ASN1_stream(BIO *out, ASN1_VALUE *val, BIO *in, int flags,
12260662d10Schristos                               const char *hdr, const ASN1_ITEM *it)
12360662d10Schristos {
12460662d10Schristos     int r;
12560662d10Schristos     BIO_printf(out, "-----BEGIN %s-----\n", hdr);
12660662d10Schristos     r = B64_write_ASN1(out, val, in, flags, it);
12760662d10Schristos     BIO_printf(out, "-----END %s-----\n", hdr);
12860662d10Schristos     return r;
12960662d10Schristos }
13060662d10Schristos 
b64_read_asn1(BIO * bio,const ASN1_ITEM * it)13160662d10Schristos static ASN1_VALUE *b64_read_asn1(BIO *bio, const ASN1_ITEM *it)
13260662d10Schristos {
13360662d10Schristos     BIO *b64;
13460662d10Schristos     ASN1_VALUE *val;
135*1dcdf01fSchristos 
136*1dcdf01fSchristos     if ((b64 = BIO_new(BIO_f_base64())) == NULL) {
13760662d10Schristos         ASN1err(ASN1_F_B64_READ_ASN1, ERR_R_MALLOC_FAILURE);
13860662d10Schristos         return 0;
13960662d10Schristos     }
14060662d10Schristos     bio = BIO_push(b64, bio);
14160662d10Schristos     val = ASN1_item_d2i_bio(it, bio, NULL);
14260662d10Schristos     if (!val)
14360662d10Schristos         ASN1err(ASN1_F_B64_READ_ASN1, ASN1_R_DECODE_ERROR);
14460662d10Schristos     (void)BIO_flush(bio);
145*1dcdf01fSchristos     BIO_pop(bio);
14660662d10Schristos     BIO_free(b64);
14760662d10Schristos     return val;
14860662d10Schristos }
14960662d10Schristos 
15060662d10Schristos /* Generate the MIME "micalg" parameter from RFC3851, RFC4490 */
15160662d10Schristos 
asn1_write_micalg(BIO * out,STACK_OF (X509_ALGOR)* mdalgs)15260662d10Schristos static int asn1_write_micalg(BIO *out, STACK_OF(X509_ALGOR) *mdalgs)
15360662d10Schristos {
15460662d10Schristos     const EVP_MD *md;
15560662d10Schristos     int i, have_unknown = 0, write_comma, ret = 0, md_nid;
15660662d10Schristos     have_unknown = 0;
15760662d10Schristos     write_comma = 0;
15860662d10Schristos     for (i = 0; i < sk_X509_ALGOR_num(mdalgs); i++) {
15960662d10Schristos         if (write_comma)
16060662d10Schristos             BIO_write(out, ",", 1);
16160662d10Schristos         write_comma = 1;
16260662d10Schristos         md_nid = OBJ_obj2nid(sk_X509_ALGOR_value(mdalgs, i)->algorithm);
16360662d10Schristos         md = EVP_get_digestbynid(md_nid);
16460662d10Schristos         if (md && md->md_ctrl) {
16560662d10Schristos             int rv;
16660662d10Schristos             char *micstr;
16760662d10Schristos             rv = md->md_ctrl(NULL, EVP_MD_CTRL_MICALG, 0, &micstr);
16860662d10Schristos             if (rv > 0) {
16960662d10Schristos                 BIO_puts(out, micstr);
17060662d10Schristos                 OPENSSL_free(micstr);
17160662d10Schristos                 continue;
17260662d10Schristos             }
17360662d10Schristos             if (rv != -2)
17460662d10Schristos                 goto err;
17560662d10Schristos         }
17660662d10Schristos         switch (md_nid) {
17760662d10Schristos         case NID_sha1:
17860662d10Schristos             BIO_puts(out, "sha1");
17960662d10Schristos             break;
18060662d10Schristos 
18160662d10Schristos         case NID_md5:
18260662d10Schristos             BIO_puts(out, "md5");
18360662d10Schristos             break;
18460662d10Schristos 
18560662d10Schristos         case NID_sha256:
18660662d10Schristos             BIO_puts(out, "sha-256");
18760662d10Schristos             break;
18860662d10Schristos 
18960662d10Schristos         case NID_sha384:
19060662d10Schristos             BIO_puts(out, "sha-384");
19160662d10Schristos             break;
19260662d10Schristos 
19360662d10Schristos         case NID_sha512:
19460662d10Schristos             BIO_puts(out, "sha-512");
19560662d10Schristos             break;
19660662d10Schristos 
19760662d10Schristos         case NID_id_GostR3411_94:
19860662d10Schristos             BIO_puts(out, "gostr3411-94");
19960662d10Schristos             goto err;
200*1dcdf01fSchristos 
201*1dcdf01fSchristos         case NID_id_GostR3411_2012_256:
202*1dcdf01fSchristos             BIO_puts(out, "gostr3411-2012-256");
203*1dcdf01fSchristos             goto err;
204*1dcdf01fSchristos 
205*1dcdf01fSchristos         case NID_id_GostR3411_2012_512:
206*1dcdf01fSchristos             BIO_puts(out, "gostr3411-2012-512");
207*1dcdf01fSchristos             goto err;
20860662d10Schristos 
20960662d10Schristos         default:
21060662d10Schristos             if (have_unknown)
21160662d10Schristos                 write_comma = 0;
21260662d10Schristos             else {
21360662d10Schristos                 BIO_puts(out, "unknown");
21460662d10Schristos                 have_unknown = 1;
21560662d10Schristos             }
21660662d10Schristos             break;
21760662d10Schristos 
21860662d10Schristos         }
21960662d10Schristos     }
22060662d10Schristos 
22160662d10Schristos     ret = 1;
22260662d10Schristos  err:
22360662d10Schristos 
22460662d10Schristos     return ret;
22560662d10Schristos 
22660662d10Schristos }
22760662d10Schristos 
22860662d10Schristos /* SMIME sender */
22960662d10Schristos 
SMIME_write_ASN1(BIO * bio,ASN1_VALUE * val,BIO * data,int flags,int ctype_nid,int econt_nid,STACK_OF (X509_ALGOR)* mdalgs,const ASN1_ITEM * it)23060662d10Schristos int SMIME_write_ASN1(BIO *bio, ASN1_VALUE *val, BIO *data, int flags,
23160662d10Schristos                      int ctype_nid, int econt_nid,
23260662d10Schristos                      STACK_OF(X509_ALGOR) *mdalgs, const ASN1_ITEM *it)
23360662d10Schristos {
23460662d10Schristos     char bound[33], c;
23560662d10Schristos     int i;
23660662d10Schristos     const char *mime_prefix, *mime_eol, *cname = "smime.p7m";
23760662d10Schristos     const char *msg_type = NULL;
23860662d10Schristos     if (flags & SMIME_OLDMIME)
23960662d10Schristos         mime_prefix = "application/x-pkcs7-";
24060662d10Schristos     else
24160662d10Schristos         mime_prefix = "application/pkcs7-";
24260662d10Schristos 
24360662d10Schristos     if (flags & SMIME_CRLFEOL)
24460662d10Schristos         mime_eol = "\r\n";
24560662d10Schristos     else
24660662d10Schristos         mime_eol = "\n";
24760662d10Schristos     if ((flags & SMIME_DETACHED) && data) {
24860662d10Schristos         /* We want multipart/signed */
24960662d10Schristos         /* Generate a random boundary */
25060662d10Schristos         if (RAND_bytes((unsigned char *)bound, 32) <= 0)
25160662d10Schristos             return 0;
25260662d10Schristos         for (i = 0; i < 32; i++) {
25360662d10Schristos             c = bound[i] & 0xf;
25460662d10Schristos             if (c < 10)
25560662d10Schristos                 c += '0';
25660662d10Schristos             else
25760662d10Schristos                 c += 'A' - 10;
25860662d10Schristos             bound[i] = c;
25960662d10Schristos         }
26060662d10Schristos         bound[32] = 0;
26160662d10Schristos         BIO_printf(bio, "MIME-Version: 1.0%s", mime_eol);
26260662d10Schristos         BIO_printf(bio, "Content-Type: multipart/signed;");
26360662d10Schristos         BIO_printf(bio, " protocol=\"%ssignature\";", mime_prefix);
26460662d10Schristos         BIO_puts(bio, " micalg=\"");
26560662d10Schristos         asn1_write_micalg(bio, mdalgs);
26660662d10Schristos         BIO_printf(bio, "\"; boundary=\"----%s\"%s%s",
26760662d10Schristos                    bound, mime_eol, mime_eol);
26860662d10Schristos         BIO_printf(bio, "This is an S/MIME signed message%s%s",
26960662d10Schristos                    mime_eol, mime_eol);
27060662d10Schristos         /* Now write out the first part */
27160662d10Schristos         BIO_printf(bio, "------%s%s", bound, mime_eol);
27260662d10Schristos         if (!asn1_output_data(bio, data, val, flags, it))
27360662d10Schristos             return 0;
27460662d10Schristos         BIO_printf(bio, "%s------%s%s", mime_eol, bound, mime_eol);
27560662d10Schristos 
27660662d10Schristos         /* Headers for signature */
27760662d10Schristos 
27860662d10Schristos         BIO_printf(bio, "Content-Type: %ssignature;", mime_prefix);
27960662d10Schristos         BIO_printf(bio, " name=\"smime.p7s\"%s", mime_eol);
28060662d10Schristos         BIO_printf(bio, "Content-Transfer-Encoding: base64%s", mime_eol);
28160662d10Schristos         BIO_printf(bio, "Content-Disposition: attachment;");
28260662d10Schristos         BIO_printf(bio, " filename=\"smime.p7s\"%s%s", mime_eol, mime_eol);
28360662d10Schristos         B64_write_ASN1(bio, val, NULL, 0, it);
28460662d10Schristos         BIO_printf(bio, "%s------%s--%s%s", mime_eol, bound,
28560662d10Schristos                    mime_eol, mime_eol);
28660662d10Schristos         return 1;
28760662d10Schristos     }
28860662d10Schristos 
28960662d10Schristos     /* Determine smime-type header */
29060662d10Schristos 
29160662d10Schristos     if (ctype_nid == NID_pkcs7_enveloped)
29260662d10Schristos         msg_type = "enveloped-data";
29360662d10Schristos     else if (ctype_nid == NID_pkcs7_signed) {
29460662d10Schristos         if (econt_nid == NID_id_smime_ct_receipt)
29560662d10Schristos             msg_type = "signed-receipt";
29660662d10Schristos         else if (sk_X509_ALGOR_num(mdalgs) >= 0)
29760662d10Schristos             msg_type = "signed-data";
29860662d10Schristos         else
29960662d10Schristos             msg_type = "certs-only";
30060662d10Schristos     } else if (ctype_nid == NID_id_smime_ct_compressedData) {
30160662d10Schristos         msg_type = "compressed-data";
30260662d10Schristos         cname = "smime.p7z";
30360662d10Schristos     }
30460662d10Schristos     /* MIME headers */
30560662d10Schristos     BIO_printf(bio, "MIME-Version: 1.0%s", mime_eol);
30660662d10Schristos     BIO_printf(bio, "Content-Disposition: attachment;");
30760662d10Schristos     BIO_printf(bio, " filename=\"%s\"%s", cname, mime_eol);
30860662d10Schristos     BIO_printf(bio, "Content-Type: %smime;", mime_prefix);
30960662d10Schristos     if (msg_type)
31060662d10Schristos         BIO_printf(bio, " smime-type=%s;", msg_type);
31160662d10Schristos     BIO_printf(bio, " name=\"%s\"%s", cname, mime_eol);
31260662d10Schristos     BIO_printf(bio, "Content-Transfer-Encoding: base64%s%s",
31360662d10Schristos                mime_eol, mime_eol);
31460662d10Schristos     if (!B64_write_ASN1(bio, val, data, flags, it))
31560662d10Schristos         return 0;
31660662d10Schristos     BIO_printf(bio, "%s", mime_eol);
31760662d10Schristos     return 1;
31860662d10Schristos }
31960662d10Schristos 
32060662d10Schristos /* Handle output of ASN1 data */
32160662d10Schristos 
asn1_output_data(BIO * out,BIO * data,ASN1_VALUE * val,int flags,const ASN1_ITEM * it)32260662d10Schristos static int asn1_output_data(BIO *out, BIO *data, ASN1_VALUE *val, int flags,
32360662d10Schristos                             const ASN1_ITEM *it)
32460662d10Schristos {
32560662d10Schristos     BIO *tmpbio;
32660662d10Schristos     const ASN1_AUX *aux = it->funcs;
32760662d10Schristos     ASN1_STREAM_ARG sarg;
32860662d10Schristos     int rv = 1;
32960662d10Schristos 
33060662d10Schristos     /*
331*1dcdf01fSchristos      * If data is not detached or resigning then the output BIO is already
33260662d10Schristos      * set up to finalise when it is written through.
33360662d10Schristos      */
33460662d10Schristos     if (!(flags & SMIME_DETACHED) || (flags & PKCS7_REUSE_DIGEST)) {
33560662d10Schristos         SMIME_crlf_copy(data, out, flags);
33660662d10Schristos         return 1;
33760662d10Schristos     }
33860662d10Schristos 
33960662d10Schristos     if (!aux || !aux->asn1_cb) {
34060662d10Schristos         ASN1err(ASN1_F_ASN1_OUTPUT_DATA, ASN1_R_STREAMING_NOT_SUPPORTED);
34160662d10Schristos         return 0;
34260662d10Schristos     }
34360662d10Schristos 
34460662d10Schristos     sarg.out = out;
34560662d10Schristos     sarg.ndef_bio = NULL;
34660662d10Schristos     sarg.boundary = NULL;
34760662d10Schristos 
34860662d10Schristos     /* Let ASN1 code prepend any needed BIOs */
34960662d10Schristos 
35060662d10Schristos     if (aux->asn1_cb(ASN1_OP_DETACHED_PRE, &val, it, &sarg) <= 0)
35160662d10Schristos         return 0;
35260662d10Schristos 
35360662d10Schristos     /* Copy data across, passing through filter BIOs for processing */
35460662d10Schristos     SMIME_crlf_copy(data, sarg.ndef_bio, flags);
35560662d10Schristos 
35660662d10Schristos     /* Finalize structure */
35760662d10Schristos     if (aux->asn1_cb(ASN1_OP_DETACHED_POST, &val, it, &sarg) <= 0)
35860662d10Schristos         rv = 0;
35960662d10Schristos 
36060662d10Schristos     /* Now remove any digests prepended to the BIO */
36160662d10Schristos 
36260662d10Schristos     while (sarg.ndef_bio != out) {
36360662d10Schristos         tmpbio = BIO_pop(sarg.ndef_bio);
36460662d10Schristos         BIO_free(sarg.ndef_bio);
36560662d10Schristos         sarg.ndef_bio = tmpbio;
36660662d10Schristos     }
36760662d10Schristos 
36860662d10Schristos     return rv;
36960662d10Schristos 
37060662d10Schristos }
37160662d10Schristos 
37260662d10Schristos /*
37360662d10Schristos  * SMIME reader: handle multipart/signed and opaque signing. in multipart
37460662d10Schristos  * case the content is placed in a memory BIO pointed to by "bcont". In
37560662d10Schristos  * opaque this is set to NULL
37660662d10Schristos  */
37760662d10Schristos 
SMIME_read_ASN1(BIO * bio,BIO ** bcont,const ASN1_ITEM * it)37860662d10Schristos ASN1_VALUE *SMIME_read_ASN1(BIO *bio, BIO **bcont, const ASN1_ITEM *it)
37960662d10Schristos {
38060662d10Schristos     BIO *asnin;
38160662d10Schristos     STACK_OF(MIME_HEADER) *headers = NULL;
38260662d10Schristos     STACK_OF(BIO) *parts = NULL;
38360662d10Schristos     MIME_HEADER *hdr;
38460662d10Schristos     MIME_PARAM *prm;
38560662d10Schristos     ASN1_VALUE *val;
38660662d10Schristos     int ret;
38760662d10Schristos 
38860662d10Schristos     if (bcont)
38960662d10Schristos         *bcont = NULL;
39060662d10Schristos 
391*1dcdf01fSchristos     if ((headers = mime_parse_hdr(bio)) == NULL) {
39260662d10Schristos         ASN1err(ASN1_F_SMIME_READ_ASN1, ASN1_R_MIME_PARSE_ERROR);
39360662d10Schristos         return NULL;
39460662d10Schristos     }
39560662d10Schristos 
396*1dcdf01fSchristos     if ((hdr = mime_hdr_find(headers, "content-type")) == NULL
397*1dcdf01fSchristos         || hdr->value == NULL) {
39860662d10Schristos         sk_MIME_HEADER_pop_free(headers, mime_hdr_free);
39960662d10Schristos         ASN1err(ASN1_F_SMIME_READ_ASN1, ASN1_R_NO_CONTENT_TYPE);
40060662d10Schristos         return NULL;
40160662d10Schristos     }
40260662d10Schristos 
40360662d10Schristos     /* Handle multipart/signed */
40460662d10Schristos 
405*1dcdf01fSchristos     if (strcmp(hdr->value, "multipart/signed") == 0) {
40660662d10Schristos         /* Split into two parts */
40760662d10Schristos         prm = mime_param_find(hdr, "boundary");
40860662d10Schristos         if (!prm || !prm->param_value) {
40960662d10Schristos             sk_MIME_HEADER_pop_free(headers, mime_hdr_free);
41060662d10Schristos             ASN1err(ASN1_F_SMIME_READ_ASN1, ASN1_R_NO_MULTIPART_BOUNDARY);
41160662d10Schristos             return NULL;
41260662d10Schristos         }
41360662d10Schristos         ret = multi_split(bio, prm->param_value, &parts);
41460662d10Schristos         sk_MIME_HEADER_pop_free(headers, mime_hdr_free);
41560662d10Schristos         if (!ret || (sk_BIO_num(parts) != 2)) {
41660662d10Schristos             ASN1err(ASN1_F_SMIME_READ_ASN1, ASN1_R_NO_MULTIPART_BODY_FAILURE);
41760662d10Schristos             sk_BIO_pop_free(parts, BIO_vfree);
41860662d10Schristos             return NULL;
41960662d10Schristos         }
42060662d10Schristos 
42160662d10Schristos         /* Parse the signature piece */
42260662d10Schristos         asnin = sk_BIO_value(parts, 1);
42360662d10Schristos 
424*1dcdf01fSchristos         if ((headers = mime_parse_hdr(asnin)) == NULL) {
42560662d10Schristos             ASN1err(ASN1_F_SMIME_READ_ASN1, ASN1_R_MIME_SIG_PARSE_ERROR);
42660662d10Schristos             sk_BIO_pop_free(parts, BIO_vfree);
42760662d10Schristos             return NULL;
42860662d10Schristos         }
42960662d10Schristos 
43060662d10Schristos         /* Get content type */
43160662d10Schristos 
432*1dcdf01fSchristos         if ((hdr = mime_hdr_find(headers, "content-type")) == NULL
433*1dcdf01fSchristos             || hdr->value == NULL) {
43460662d10Schristos             sk_MIME_HEADER_pop_free(headers, mime_hdr_free);
43560662d10Schristos             ASN1err(ASN1_F_SMIME_READ_ASN1, ASN1_R_NO_SIG_CONTENT_TYPE);
436*1dcdf01fSchristos             sk_BIO_pop_free(parts, BIO_vfree);
43760662d10Schristos             return NULL;
43860662d10Schristos         }
43960662d10Schristos 
44060662d10Schristos         if (strcmp(hdr->value, "application/x-pkcs7-signature") &&
44160662d10Schristos             strcmp(hdr->value, "application/pkcs7-signature")) {
44260662d10Schristos             ASN1err(ASN1_F_SMIME_READ_ASN1, ASN1_R_SIG_INVALID_MIME_TYPE);
44360662d10Schristos             ERR_add_error_data(2, "type: ", hdr->value);
44460662d10Schristos             sk_MIME_HEADER_pop_free(headers, mime_hdr_free);
44560662d10Schristos             sk_BIO_pop_free(parts, BIO_vfree);
44660662d10Schristos             return NULL;
44760662d10Schristos         }
44860662d10Schristos         sk_MIME_HEADER_pop_free(headers, mime_hdr_free);
44960662d10Schristos         /* Read in ASN1 */
450*1dcdf01fSchristos         if ((val = b64_read_asn1(asnin, it)) == NULL) {
45160662d10Schristos             ASN1err(ASN1_F_SMIME_READ_ASN1, ASN1_R_ASN1_SIG_PARSE_ERROR);
45260662d10Schristos             sk_BIO_pop_free(parts, BIO_vfree);
45360662d10Schristos             return NULL;
45460662d10Schristos         }
45560662d10Schristos 
45660662d10Schristos         if (bcont) {
45760662d10Schristos             *bcont = sk_BIO_value(parts, 0);
45860662d10Schristos             BIO_free(asnin);
45960662d10Schristos             sk_BIO_free(parts);
46060662d10Schristos         } else
46160662d10Schristos             sk_BIO_pop_free(parts, BIO_vfree);
46260662d10Schristos         return val;
46360662d10Schristos     }
46460662d10Schristos 
46560662d10Schristos     /* OK, if not multipart/signed try opaque signature */
46660662d10Schristos 
46760662d10Schristos     if (strcmp(hdr->value, "application/x-pkcs7-mime") &&
46860662d10Schristos         strcmp(hdr->value, "application/pkcs7-mime")) {
46960662d10Schristos         ASN1err(ASN1_F_SMIME_READ_ASN1, ASN1_R_INVALID_MIME_TYPE);
47060662d10Schristos         ERR_add_error_data(2, "type: ", hdr->value);
47160662d10Schristos         sk_MIME_HEADER_pop_free(headers, mime_hdr_free);
47260662d10Schristos         return NULL;
47360662d10Schristos     }
47460662d10Schristos 
47560662d10Schristos     sk_MIME_HEADER_pop_free(headers, mime_hdr_free);
47660662d10Schristos 
477*1dcdf01fSchristos     if ((val = b64_read_asn1(bio, it)) == NULL) {
47860662d10Schristos         ASN1err(ASN1_F_SMIME_READ_ASN1, ASN1_R_ASN1_PARSE_ERROR);
47960662d10Schristos         return NULL;
48060662d10Schristos     }
48160662d10Schristos     return val;
48260662d10Schristos 
48360662d10Schristos }
48460662d10Schristos 
48560662d10Schristos /* Copy text from one BIO to another making the output CRLF at EOL */
SMIME_crlf_copy(BIO * in,BIO * out,int flags)48660662d10Schristos int SMIME_crlf_copy(BIO *in, BIO *out, int flags)
48760662d10Schristos {
48860662d10Schristos     BIO *bf;
48960662d10Schristos     char eol;
49060662d10Schristos     int len;
49160662d10Schristos     char linebuf[MAX_SMLEN];
492*1dcdf01fSchristos     int ret;
49360662d10Schristos     /*
49460662d10Schristos      * Buffer output so we don't write one line at a time. This is useful
49560662d10Schristos      * when streaming as we don't end up with one OCTET STRING per line.
49660662d10Schristos      */
49760662d10Schristos     bf = BIO_new(BIO_f_buffer());
498*1dcdf01fSchristos     if (bf == NULL)
49960662d10Schristos         return 0;
50060662d10Schristos     out = BIO_push(bf, out);
50160662d10Schristos     if (flags & SMIME_BINARY) {
50260662d10Schristos         while ((len = BIO_read(in, linebuf, MAX_SMLEN)) > 0)
50360662d10Schristos             BIO_write(out, linebuf, len);
50460662d10Schristos     } else {
505*1dcdf01fSchristos         int eolcnt = 0;
50660662d10Schristos         if (flags & SMIME_TEXT)
50760662d10Schristos             BIO_printf(out, "Content-Type: text/plain\r\n\r\n");
50860662d10Schristos         while ((len = BIO_gets(in, linebuf, MAX_SMLEN)) > 0) {
509*1dcdf01fSchristos             eol = strip_eol(linebuf, &len, flags);
510*1dcdf01fSchristos             if (len) {
511*1dcdf01fSchristos                 /* Not EOF: write out all CRLF */
512*1dcdf01fSchristos                 if (flags & SMIME_ASCIICRLF) {
513*1dcdf01fSchristos                     int i;
514*1dcdf01fSchristos                     for (i = 0; i < eolcnt; i++)
515*1dcdf01fSchristos                         BIO_write(out, "\r\n", 2);
516*1dcdf01fSchristos                     eolcnt = 0;
517*1dcdf01fSchristos                 }
51860662d10Schristos                 BIO_write(out, linebuf, len);
51960662d10Schristos                 if (eol)
52060662d10Schristos                     BIO_write(out, "\r\n", 2);
521*1dcdf01fSchristos             } else if (flags & SMIME_ASCIICRLF)
522*1dcdf01fSchristos                 eolcnt++;
523*1dcdf01fSchristos             else if (eol)
524*1dcdf01fSchristos                 BIO_write(out, "\r\n", 2);
52560662d10Schristos         }
52660662d10Schristos     }
527*1dcdf01fSchristos     ret = BIO_flush(out);
52860662d10Schristos     BIO_pop(out);
52960662d10Schristos     BIO_free(bf);
530*1dcdf01fSchristos     if (ret <= 0)
531*1dcdf01fSchristos         return 0;
532*1dcdf01fSchristos 
53360662d10Schristos     return 1;
53460662d10Schristos }
53560662d10Schristos 
53660662d10Schristos /* Strip off headers if they are text/plain */
SMIME_text(BIO * in,BIO * out)53760662d10Schristos int SMIME_text(BIO *in, BIO *out)
53860662d10Schristos {
53960662d10Schristos     char iobuf[4096];
54060662d10Schristos     int len;
54160662d10Schristos     STACK_OF(MIME_HEADER) *headers;
54260662d10Schristos     MIME_HEADER *hdr;
54360662d10Schristos 
544*1dcdf01fSchristos     if ((headers = mime_parse_hdr(in)) == NULL) {
54560662d10Schristos         ASN1err(ASN1_F_SMIME_TEXT, ASN1_R_MIME_PARSE_ERROR);
54660662d10Schristos         return 0;
54760662d10Schristos     }
548*1dcdf01fSchristos     if ((hdr = mime_hdr_find(headers, "content-type")) == NULL
549*1dcdf01fSchristos         || hdr->value == NULL) {
55060662d10Schristos         ASN1err(ASN1_F_SMIME_TEXT, ASN1_R_MIME_NO_CONTENT_TYPE);
55160662d10Schristos         sk_MIME_HEADER_pop_free(headers, mime_hdr_free);
55260662d10Schristos         return 0;
55360662d10Schristos     }
55460662d10Schristos     if (strcmp(hdr->value, "text/plain")) {
55560662d10Schristos         ASN1err(ASN1_F_SMIME_TEXT, ASN1_R_INVALID_MIME_TYPE);
55660662d10Schristos         ERR_add_error_data(2, "type: ", hdr->value);
55760662d10Schristos         sk_MIME_HEADER_pop_free(headers, mime_hdr_free);
55860662d10Schristos         return 0;
55960662d10Schristos     }
56060662d10Schristos     sk_MIME_HEADER_pop_free(headers, mime_hdr_free);
56160662d10Schristos     while ((len = BIO_read(in, iobuf, sizeof(iobuf))) > 0)
56260662d10Schristos         BIO_write(out, iobuf, len);
56360662d10Schristos     if (len < 0)
56460662d10Schristos         return 0;
56560662d10Schristos     return 1;
56660662d10Schristos }
56760662d10Schristos 
56860662d10Schristos /*
56960662d10Schristos  * Split a multipart/XXX message body into component parts: result is
57060662d10Schristos  * canonical parts in a STACK of bios
57160662d10Schristos  */
57260662d10Schristos 
multi_split(BIO * bio,const char * bound,STACK_OF (BIO)** ret)573*1dcdf01fSchristos static int multi_split(BIO *bio, const char *bound, STACK_OF(BIO) **ret)
57460662d10Schristos {
57560662d10Schristos     char linebuf[MAX_SMLEN];
57660662d10Schristos     int len, blen;
57760662d10Schristos     int eol = 0, next_eol = 0;
57860662d10Schristos     BIO *bpart = NULL;
57960662d10Schristos     STACK_OF(BIO) *parts;
58060662d10Schristos     char state, part, first;
58160662d10Schristos 
58260662d10Schristos     blen = strlen(bound);
58360662d10Schristos     part = 0;
58460662d10Schristos     state = 0;
58560662d10Schristos     first = 1;
58660662d10Schristos     parts = sk_BIO_new_null();
58760662d10Schristos     *ret = parts;
588*1dcdf01fSchristos     if (*ret == NULL)
589*1dcdf01fSchristos         return 0;
59060662d10Schristos     while ((len = BIO_gets(bio, linebuf, MAX_SMLEN)) > 0) {
59160662d10Schristos         state = mime_bound_check(linebuf, len, bound, blen);
59260662d10Schristos         if (state == 1) {
59360662d10Schristos             first = 1;
59460662d10Schristos             part++;
59560662d10Schristos         } else if (state == 2) {
596*1dcdf01fSchristos             if (!sk_BIO_push(parts, bpart)) {
597*1dcdf01fSchristos                 BIO_free(bpart);
598*1dcdf01fSchristos                 return 0;
599*1dcdf01fSchristos             }
60060662d10Schristos             return 1;
60160662d10Schristos         } else if (part) {
60260662d10Schristos             /* Strip CR+LF from linebuf */
603*1dcdf01fSchristos             next_eol = strip_eol(linebuf, &len, 0);
60460662d10Schristos             if (first) {
60560662d10Schristos                 first = 0;
60660662d10Schristos                 if (bpart)
607*1dcdf01fSchristos                     if (!sk_BIO_push(parts, bpart)) {
608*1dcdf01fSchristos                         BIO_free(bpart);
609*1dcdf01fSchristos                         return 0;
610*1dcdf01fSchristos                     }
61160662d10Schristos                 bpart = BIO_new(BIO_s_mem());
61260662d10Schristos                 if (bpart == NULL)
613*1dcdf01fSchristos                     return 0;
61460662d10Schristos                 BIO_set_mem_eof_return(bpart, 0);
61560662d10Schristos             } else if (eol)
61660662d10Schristos                 BIO_write(bpart, "\r\n", 2);
61760662d10Schristos             eol = next_eol;
61860662d10Schristos             if (len)
61960662d10Schristos                 BIO_write(bpart, linebuf, len);
62060662d10Schristos         }
62160662d10Schristos     }
622*1dcdf01fSchristos     BIO_free(bpart);
62360662d10Schristos     return 0;
62460662d10Schristos }
62560662d10Schristos 
62660662d10Schristos /* This is the big one: parse MIME header lines up to message body */
62760662d10Schristos 
62860662d10Schristos #define MIME_INVALID    0
62960662d10Schristos #define MIME_START      1
63060662d10Schristos #define MIME_TYPE       2
63160662d10Schristos #define MIME_NAME       3
63260662d10Schristos #define MIME_VALUE      4
63360662d10Schristos #define MIME_QUOTE      5
63460662d10Schristos #define MIME_COMMENT    6
63560662d10Schristos 
STACK_OF(MIME_HEADER)63660662d10Schristos static STACK_OF(MIME_HEADER) *mime_parse_hdr(BIO *bio)
63760662d10Schristos {
63860662d10Schristos     char *p, *q, c;
63960662d10Schristos     char *ntmp;
64060662d10Schristos     char linebuf[MAX_SMLEN];
641*1dcdf01fSchristos     MIME_HEADER *mhdr = NULL, *new_hdr = NULL;
64260662d10Schristos     STACK_OF(MIME_HEADER) *headers;
64360662d10Schristos     int len, state, save_state = 0;
64460662d10Schristos 
64560662d10Schristos     headers = sk_MIME_HEADER_new(mime_hdr_cmp);
646*1dcdf01fSchristos     if (headers == NULL)
64760662d10Schristos         return NULL;
64860662d10Schristos     while ((len = BIO_gets(bio, linebuf, MAX_SMLEN)) > 0) {
64960662d10Schristos         /* If whitespace at line start then continuation line */
650*1dcdf01fSchristos         if (mhdr && ossl_isspace(linebuf[0]))
65160662d10Schristos             state = MIME_NAME;
65260662d10Schristos         else
65360662d10Schristos             state = MIME_START;
65460662d10Schristos         ntmp = NULL;
65560662d10Schristos         /* Go through all characters */
65660662d10Schristos         for (p = linebuf, q = linebuf; (c = *p) && (c != '\r') && (c != '\n');
65760662d10Schristos              p++) {
65860662d10Schristos 
65960662d10Schristos             /*
66060662d10Schristos              * State machine to handle MIME headers if this looks horrible
66160662d10Schristos              * that's because it *is*
66260662d10Schristos              */
66360662d10Schristos 
66460662d10Schristos             switch (state) {
66560662d10Schristos             case MIME_START:
66660662d10Schristos                 if (c == ':') {
66760662d10Schristos                     state = MIME_TYPE;
66860662d10Schristos                     *p = 0;
66960662d10Schristos                     ntmp = strip_ends(q);
67060662d10Schristos                     q = p + 1;
67160662d10Schristos                 }
67260662d10Schristos                 break;
67360662d10Schristos 
67460662d10Schristos             case MIME_TYPE:
67560662d10Schristos                 if (c == ';') {
67660662d10Schristos                     mime_debug("Found End Value\n");
67760662d10Schristos                     *p = 0;
678*1dcdf01fSchristos                     new_hdr = mime_hdr_new(ntmp, strip_ends(q));
679*1dcdf01fSchristos                     if (new_hdr == NULL)
680*1dcdf01fSchristos                         goto err;
681*1dcdf01fSchristos                     if (!sk_MIME_HEADER_push(headers, new_hdr))
682*1dcdf01fSchristos                         goto err;
683*1dcdf01fSchristos                     mhdr = new_hdr;
684*1dcdf01fSchristos                     new_hdr = NULL;
68560662d10Schristos                     ntmp = NULL;
68660662d10Schristos                     q = p + 1;
68760662d10Schristos                     state = MIME_NAME;
68860662d10Schristos                 } else if (c == '(') {
68960662d10Schristos                     save_state = state;
69060662d10Schristos                     state = MIME_COMMENT;
69160662d10Schristos                 }
69260662d10Schristos                 break;
69360662d10Schristos 
69460662d10Schristos             case MIME_COMMENT:
69560662d10Schristos                 if (c == ')') {
69660662d10Schristos                     state = save_state;
69760662d10Schristos                 }
69860662d10Schristos                 break;
69960662d10Schristos 
70060662d10Schristos             case MIME_NAME:
70160662d10Schristos                 if (c == '=') {
70260662d10Schristos                     state = MIME_VALUE;
70360662d10Schristos                     *p = 0;
70460662d10Schristos                     ntmp = strip_ends(q);
70560662d10Schristos                     q = p + 1;
70660662d10Schristos                 }
70760662d10Schristos                 break;
70860662d10Schristos 
70960662d10Schristos             case MIME_VALUE:
71060662d10Schristos                 if (c == ';') {
71160662d10Schristos                     state = MIME_NAME;
71260662d10Schristos                     *p = 0;
71360662d10Schristos                     mime_hdr_addparam(mhdr, ntmp, strip_ends(q));
71460662d10Schristos                     ntmp = NULL;
71560662d10Schristos                     q = p + 1;
71660662d10Schristos                 } else if (c == '"') {
71760662d10Schristos                     mime_debug("Found Quote\n");
71860662d10Schristos                     state = MIME_QUOTE;
71960662d10Schristos                 } else if (c == '(') {
72060662d10Schristos                     save_state = state;
72160662d10Schristos                     state = MIME_COMMENT;
72260662d10Schristos                 }
72360662d10Schristos                 break;
72460662d10Schristos 
72560662d10Schristos             case MIME_QUOTE:
72660662d10Schristos                 if (c == '"') {
72760662d10Schristos                     mime_debug("Found Match Quote\n");
72860662d10Schristos                     state = MIME_VALUE;
72960662d10Schristos                 }
73060662d10Schristos                 break;
73160662d10Schristos             }
73260662d10Schristos         }
73360662d10Schristos 
73460662d10Schristos         if (state == MIME_TYPE) {
735*1dcdf01fSchristos             new_hdr = mime_hdr_new(ntmp, strip_ends(q));
736*1dcdf01fSchristos             if (new_hdr == NULL)
737*1dcdf01fSchristos                 goto err;
738*1dcdf01fSchristos             if (!sk_MIME_HEADER_push(headers, new_hdr))
739*1dcdf01fSchristos                 goto err;
740*1dcdf01fSchristos             mhdr = new_hdr;
741*1dcdf01fSchristos             new_hdr = NULL;
74260662d10Schristos         } else if (state == MIME_VALUE)
74360662d10Schristos             mime_hdr_addparam(mhdr, ntmp, strip_ends(q));
74460662d10Schristos         if (p == linebuf)
74560662d10Schristos             break;              /* Blank line means end of headers */
74660662d10Schristos     }
74760662d10Schristos 
74860662d10Schristos     return headers;
74960662d10Schristos 
750*1dcdf01fSchristos err:
751*1dcdf01fSchristos     mime_hdr_free(new_hdr);
752*1dcdf01fSchristos     sk_MIME_HEADER_pop_free(headers, mime_hdr_free);
753*1dcdf01fSchristos     return NULL;
75460662d10Schristos }
75560662d10Schristos 
strip_ends(char * name)75660662d10Schristos static char *strip_ends(char *name)
75760662d10Schristos {
75860662d10Schristos     return strip_end(strip_start(name));
75960662d10Schristos }
76060662d10Schristos 
76160662d10Schristos /* Strip a parameter of whitespace from start of param */
strip_start(char * name)76260662d10Schristos static char *strip_start(char *name)
76360662d10Schristos {
76460662d10Schristos     char *p, c;
76560662d10Schristos     /* Look for first non white space or quote */
76660662d10Schristos     for (p = name; (c = *p); p++) {
76760662d10Schristos         if (c == '"') {
76860662d10Schristos             /* Next char is start of string if non null */
76960662d10Schristos             if (p[1])
77060662d10Schristos                 return p + 1;
77160662d10Schristos             /* Else null string */
77260662d10Schristos             return NULL;
77360662d10Schristos         }
774*1dcdf01fSchristos         if (!ossl_isspace(c))
77560662d10Schristos             return p;
77660662d10Schristos     }
77760662d10Schristos     return NULL;
77860662d10Schristos }
77960662d10Schristos 
78060662d10Schristos /* As above but strip from end of string : maybe should handle brackets? */
strip_end(char * name)78160662d10Schristos static char *strip_end(char *name)
78260662d10Schristos {
78360662d10Schristos     char *p, c;
78460662d10Schristos     if (!name)
78560662d10Schristos         return NULL;
78660662d10Schristos     /* Look for first non white space or quote */
78760662d10Schristos     for (p = name + strlen(name) - 1; p >= name; p--) {
78860662d10Schristos         c = *p;
78960662d10Schristos         if (c == '"') {
79060662d10Schristos             if (p - 1 == name)
79160662d10Schristos                 return NULL;
79260662d10Schristos             *p = 0;
79360662d10Schristos             return name;
79460662d10Schristos         }
795*1dcdf01fSchristos         if (ossl_isspace(c))
79660662d10Schristos             *p = 0;
79760662d10Schristos         else
79860662d10Schristos             return name;
79960662d10Schristos     }
80060662d10Schristos     return NULL;
80160662d10Schristos }
80260662d10Schristos 
mime_hdr_new(const char * name,const char * value)803*1dcdf01fSchristos static MIME_HEADER *mime_hdr_new(const char *name, const char *value)
80460662d10Schristos {
805*1dcdf01fSchristos     MIME_HEADER *mhdr = NULL;
806*1dcdf01fSchristos     char *tmpname = NULL, *tmpval = NULL, *p;
807*1dcdf01fSchristos 
80860662d10Schristos     if (name) {
809*1dcdf01fSchristos         if ((tmpname = OPENSSL_strdup(name)) == NULL)
81060662d10Schristos             return NULL;
811*1dcdf01fSchristos         for (p = tmpname; *p; p++)
812*1dcdf01fSchristos             *p = ossl_tolower(*p);
81360662d10Schristos     }
81460662d10Schristos     if (value) {
815*1dcdf01fSchristos         if ((tmpval = OPENSSL_strdup(value)) == NULL)
816*1dcdf01fSchristos             goto err;
817*1dcdf01fSchristos         for (p = tmpval; *p; p++)
818*1dcdf01fSchristos             *p = ossl_tolower(*p);
81960662d10Schristos     }
820*1dcdf01fSchristos     mhdr = OPENSSL_malloc(sizeof(*mhdr));
821*1dcdf01fSchristos     if (mhdr == NULL)
822*1dcdf01fSchristos         goto err;
82360662d10Schristos     mhdr->name = tmpname;
82460662d10Schristos     mhdr->value = tmpval;
825*1dcdf01fSchristos     if ((mhdr->params = sk_MIME_PARAM_new(mime_param_cmp)) == NULL)
826*1dcdf01fSchristos         goto err;
82760662d10Schristos     return mhdr;
828*1dcdf01fSchristos 
829*1dcdf01fSchristos  err:
830*1dcdf01fSchristos     OPENSSL_free(tmpname);
831*1dcdf01fSchristos     OPENSSL_free(tmpval);
832*1dcdf01fSchristos     OPENSSL_free(mhdr);
833*1dcdf01fSchristos     return NULL;
83460662d10Schristos }
83560662d10Schristos 
mime_hdr_addparam(MIME_HEADER * mhdr,const char * name,const char * value)836*1dcdf01fSchristos static int mime_hdr_addparam(MIME_HEADER *mhdr, const char *name, const char *value)
83760662d10Schristos {
838*1dcdf01fSchristos     char *tmpname = NULL, *tmpval = NULL, *p;
839*1dcdf01fSchristos     MIME_PARAM *mparam = NULL;
840*1dcdf01fSchristos 
84160662d10Schristos     if (name) {
842*1dcdf01fSchristos         tmpname = OPENSSL_strdup(name);
84360662d10Schristos         if (!tmpname)
844*1dcdf01fSchristos             goto err;
845*1dcdf01fSchristos         for (p = tmpname; *p; p++)
846*1dcdf01fSchristos             *p = ossl_tolower(*p);
84760662d10Schristos     }
84860662d10Schristos     if (value) {
849*1dcdf01fSchristos         tmpval = OPENSSL_strdup(value);
85060662d10Schristos         if (!tmpval)
851*1dcdf01fSchristos             goto err;
852*1dcdf01fSchristos     }
85360662d10Schristos     /* Parameter values are case sensitive so leave as is */
854*1dcdf01fSchristos     mparam = OPENSSL_malloc(sizeof(*mparam));
855*1dcdf01fSchristos     if (mparam == NULL)
856*1dcdf01fSchristos         goto err;
85760662d10Schristos     mparam->param_name = tmpname;
85860662d10Schristos     mparam->param_value = tmpval;
859*1dcdf01fSchristos     if (!sk_MIME_PARAM_push(mhdr->params, mparam))
860*1dcdf01fSchristos         goto err;
86160662d10Schristos     return 1;
862*1dcdf01fSchristos  err:
863*1dcdf01fSchristos     OPENSSL_free(tmpname);
864*1dcdf01fSchristos     OPENSSL_free(tmpval);
865*1dcdf01fSchristos     OPENSSL_free(mparam);
866*1dcdf01fSchristos     return 0;
86760662d10Schristos }
86860662d10Schristos 
mime_hdr_cmp(const MIME_HEADER * const * a,const MIME_HEADER * const * b)86960662d10Schristos static int mime_hdr_cmp(const MIME_HEADER *const *a,
87060662d10Schristos                         const MIME_HEADER *const *b)
87160662d10Schristos {
87260662d10Schristos     if (!(*a)->name || !(*b)->name)
87360662d10Schristos         return ! !(*a)->name - ! !(*b)->name;
87460662d10Schristos 
875*1dcdf01fSchristos     return strcmp((*a)->name, (*b)->name);
87660662d10Schristos }
87760662d10Schristos 
mime_param_cmp(const MIME_PARAM * const * a,const MIME_PARAM * const * b)87860662d10Schristos static int mime_param_cmp(const MIME_PARAM *const *a,
87960662d10Schristos                           const MIME_PARAM *const *b)
88060662d10Schristos {
88160662d10Schristos     if (!(*a)->param_name || !(*b)->param_name)
88260662d10Schristos         return ! !(*a)->param_name - ! !(*b)->param_name;
883*1dcdf01fSchristos     return strcmp((*a)->param_name, (*b)->param_name);
88460662d10Schristos }
88560662d10Schristos 
88660662d10Schristos /* Find a header with a given name (if possible) */
88760662d10Schristos 
mime_hdr_find(STACK_OF (MIME_HEADER)* hdrs,const char * name)888*1dcdf01fSchristos static MIME_HEADER *mime_hdr_find(STACK_OF(MIME_HEADER) *hdrs, const char *name)
88960662d10Schristos {
89060662d10Schristos     MIME_HEADER htmp;
89160662d10Schristos     int idx;
892*1dcdf01fSchristos 
893*1dcdf01fSchristos     htmp.name = (char *)name;
894*1dcdf01fSchristos     htmp.value = NULL;
895*1dcdf01fSchristos     htmp.params = NULL;
896*1dcdf01fSchristos 
89760662d10Schristos     idx = sk_MIME_HEADER_find(hdrs, &htmp);
89860662d10Schristos     return sk_MIME_HEADER_value(hdrs, idx);
89960662d10Schristos }
90060662d10Schristos 
mime_param_find(MIME_HEADER * hdr,const char * name)901*1dcdf01fSchristos static MIME_PARAM *mime_param_find(MIME_HEADER *hdr, const char *name)
90260662d10Schristos {
90360662d10Schristos     MIME_PARAM param;
90460662d10Schristos     int idx;
905*1dcdf01fSchristos 
906*1dcdf01fSchristos     param.param_name = (char *)name;
907*1dcdf01fSchristos     param.param_value = NULL;
90860662d10Schristos     idx = sk_MIME_PARAM_find(hdr->params, &param);
90960662d10Schristos     return sk_MIME_PARAM_value(hdr->params, idx);
91060662d10Schristos }
91160662d10Schristos 
mime_hdr_free(MIME_HEADER * hdr)91260662d10Schristos static void mime_hdr_free(MIME_HEADER *hdr)
91360662d10Schristos {
914*1dcdf01fSchristos     if (hdr == NULL)
915*1dcdf01fSchristos         return;
91660662d10Schristos     OPENSSL_free(hdr->name);
91760662d10Schristos     OPENSSL_free(hdr->value);
91860662d10Schristos     if (hdr->params)
91960662d10Schristos         sk_MIME_PARAM_pop_free(hdr->params, mime_param_free);
92060662d10Schristos     OPENSSL_free(hdr);
92160662d10Schristos }
92260662d10Schristos 
mime_param_free(MIME_PARAM * param)92360662d10Schristos static void mime_param_free(MIME_PARAM *param)
92460662d10Schristos {
92560662d10Schristos     OPENSSL_free(param->param_name);
92660662d10Schristos     OPENSSL_free(param->param_value);
92760662d10Schristos     OPENSSL_free(param);
92860662d10Schristos }
92960662d10Schristos 
93060662d10Schristos /*-
93160662d10Schristos  * Check for a multipart boundary. Returns:
93260662d10Schristos  * 0 : no boundary
93360662d10Schristos  * 1 : part boundary
93460662d10Schristos  * 2 : final boundary
93560662d10Schristos  */
mime_bound_check(char * line,int linelen,const char * bound,int blen)936*1dcdf01fSchristos static int mime_bound_check(char *line, int linelen, const char *bound, int blen)
93760662d10Schristos {
93860662d10Schristos     if (linelen == -1)
93960662d10Schristos         linelen = strlen(line);
94060662d10Schristos     if (blen == -1)
94160662d10Schristos         blen = strlen(bound);
94260662d10Schristos     /* Quickly eliminate if line length too short */
94360662d10Schristos     if (blen + 2 > linelen)
94460662d10Schristos         return 0;
94560662d10Schristos     /* Check for part boundary */
946*1dcdf01fSchristos     if ((strncmp(line, "--", 2) == 0)
947*1dcdf01fSchristos         && strncmp(line + 2, bound, blen) == 0) {
948*1dcdf01fSchristos         if (strncmp(line + blen + 2, "--", 2) == 0)
94960662d10Schristos             return 2;
95060662d10Schristos         else
95160662d10Schristos             return 1;
95260662d10Schristos     }
95360662d10Schristos     return 0;
95460662d10Schristos }
95560662d10Schristos 
strip_eol(char * linebuf,int * plen,int flags)956*1dcdf01fSchristos static int strip_eol(char *linebuf, int *plen, int flags)
95760662d10Schristos {
95860662d10Schristos     int len = *plen;
95960662d10Schristos     char *p, c;
96060662d10Schristos     int is_eol = 0;
961*1dcdf01fSchristos 
96260662d10Schristos     for (p = linebuf + len - 1; len > 0; len--, p--) {
96360662d10Schristos         c = *p;
964*1dcdf01fSchristos         if (c == '\n') {
96560662d10Schristos             is_eol = 1;
966*1dcdf01fSchristos         } else if (is_eol && flags & SMIME_ASCIICRLF && c == 32) {
967*1dcdf01fSchristos             /* Strip trailing space on a line; 32 == ASCII for ' ' */
968*1dcdf01fSchristos             continue;
969*1dcdf01fSchristos         } else if (c != '\r') {
97060662d10Schristos             break;
97160662d10Schristos         }
972*1dcdf01fSchristos     }
97360662d10Schristos     *plen = len;
97460662d10Schristos     return is_eol;
97560662d10Schristos }
976