use crate::ber::*;
use crate::error::*;
use crate::oid::*;
use nom::bytes::streaming::take;
use nom::combinator::{complete, map, verify};
use nom::multi::{many0, many_till};
use nom::number::streaming::be_u8;
use nom::{Err, Needed, Offset};
use rusticata_macros::{combinator::parse_hex_to_u64, custom_check};
use std::borrow::Cow;
use std::convert::{Into, TryFrom};
pub const MAX_RECURSION: usize = 50;
pub const MAX_OBJECT_SIZE: usize = 4_294_967_295;
pub(crate) fn ber_skip_object_content<'a>(
i: &'a [u8],
hdr: &BerObjectHeader,
max_depth: usize,
) -> BerResult<'a, bool> {
if max_depth == 0 {
return Err(Err::Error(BerError::BerMaxDepth));
}
match hdr.len {
BerSize::Definite(l) => {
if l == 0 && hdr.tag == BerTag::EndOfContent {
return Ok((i, true));
}
let (i, _) = take(l)(i)?;
Ok((i, false))
}
BerSize::Indefinite => {
let mut i = i;
loop {
let (i2, header2) = ber_read_element_header(i)?;
let (i3, eoc) = ber_skip_object_content(i2, &header2, max_depth - 1)?;
if eoc {
return Ok((i3, false));
}
i = i3;
}
}
}
}
pub(crate) fn ber_get_object_content<'a>(
i: &'a [u8],
hdr: &BerObjectHeader,
max_depth: usize,
) -> BerResult<'a, &'a [u8]> {
let start_i = i;
let (i, _) = ber_skip_object_content(i, hdr, max_depth)?;
let len = start_i.offset(i);
let (content, i) = start_i.split_at(len);
if hdr.len == BerSize::Indefinite {
let len = content.len();
assert!(len >= 2);
Ok((i, &content[..len - 2]))
} else {
Ok((i, content))
}
}
#[inline]
pub(crate) fn bytes_to_u64(s: &[u8]) -> Result<u64, BerError> {
let mut u: u64 = 0;
for &c in s {
if u & 0xff00_0000_0000_0000 != 0 {
return Err(BerError::IntegerTooLarge);
}
u <<= 8;
u |= u64::from(c);
}
Ok(u)
}
#[inline]
pub(crate) fn bitstring_to_u64(
padding_bits: usize,
data: &BitStringObject,
) -> Result<u64, BerError> {
let raw_bytes = data.data;
let bit_size = (raw_bytes.len() * 8)
.checked_sub(padding_bits)
.ok_or(BerError::InvalidLength)?;
if bit_size > 64 {
return Err(BerError::IntegerTooLarge);
}
let padding_bits = padding_bits % 8;
let num_bytes = if bit_size % 8 > 0 {
(bit_size / 8) + 1
} else {
bit_size / 8
};
let mut resulting_integer: u64 = 0;
for &c in &raw_bytes[..num_bytes] {
resulting_integer <<= 8;
resulting_integer |= c as u64;
}
Ok(resulting_integer >> padding_bits)
}
pub(crate) fn parse_identifier(i: &[u8]) -> BerResult<(u8, u8, u32, &[u8])> {
if i.is_empty() {
Err(Err::Incomplete(Needed::new(1)))
} else {
let a = i[0] >> 6;
let b = if i[0] & 0b0010_0000 != 0 { 1 } else { 0 };
let mut c = u32::from(i[0] & 0b0001_1111);
let mut tag_byte_count = 1;
if c == 0x1f {
c = 0;
loop {
custom_check!(i, tag_byte_count >= i.len(), BerError::InvalidTag)?;
custom_check!(i, tag_byte_count > 5, BerError::InvalidTag)?;
c = (c << 7) | (u32::from(i[tag_byte_count]) & 0x7f);
let done = i[tag_byte_count] & 0x80 == 0;
tag_byte_count += 1;
if done {
break;
}
}
}
let (raw_tag, rem) = i.split_at(tag_byte_count);
Ok((rem, (a, b, c, raw_tag)))
}
}
pub(crate) fn parse_ber_length_byte(i: &[u8]) -> BerResult<(u8, u8)> {
if i.is_empty() {
Err(Err::Incomplete(Needed::new(1)))
} else {
let a = i[0] >> 7;
let b = i[0] & 0b0111_1111;
Ok((&i[1..], (a, b)))
}
}
pub fn ber_read_element_header(i: &[u8]) -> BerResult<BerObjectHeader> {
let (i1, el) = parse_identifier(i)?;
let class = match BerClass::try_from(el.0) {
Ok(c) => c,
Err(_) => unreachable!(),
};
let (i2, len) = parse_ber_length_byte(i1)?;
let (i3, len) = match (len.0, len.1) {
(0, l1) => {
(i2, BerSize::Definite(usize::from(l1)))
}
(_, 0) => {
if el.1 == 0 {
return Err(Err::Error(BerError::ConstructExpected));
}
(i2, BerSize::Indefinite)
}
(_, l1) => {
if l1 == 0b0111_1111 {
return Err(::nom::Err::Error(BerError::InvalidTag));
}
let (i3, llen) = take(l1)(i2)?;
match bytes_to_u64(llen) {
Ok(l) => {
let l =
usize::try_from(l).or(Err(::nom::Err::Error(BerError::InvalidLength)))?;
(i3, BerSize::Definite(l))
}
Err(_) => {
return Err(::nom::Err::Error(BerError::InvalidTag));
}
}
}
};
let hdr = BerObjectHeader::new(class, el.1, BerTag(el.2), len).with_raw_tag(Some(el.3));
Ok((i3, hdr))
}
#[inline]
fn ber_read_content_eoc(i: &[u8]) -> BerResult<BerObjectContent> {
Ok((i, BerObjectContent::EndOfContent))
}
#[inline]
fn ber_read_content_bool(i: &[u8]) -> BerResult<BerObjectContent> {
match be_u8(i) {
Ok((rem, 0)) => Ok((rem, BerObjectContent::Boolean(false))),
Ok((rem, _)) => Ok((rem, BerObjectContent::Boolean(true))),
Err(e) => Err(e),
}
}
#[inline]
fn ber_read_content_integer(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
map(take(len), BerObjectContent::Integer)(i)
}
#[inline]
fn ber_read_content_bitstring(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
custom_check!(i, len == 0, BerError::InvalidLength)?;
let (i, ignored_bits) = be_u8(i)?;
let (i, data) = take(len - 1)(i)?;
Ok((
i,
BerObjectContent::BitString(ignored_bits, BitStringObject { data }),
))
}
#[inline]
fn ber_read_content_octetstring(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
map(take(len), BerObjectContent::OctetString)(i)
}
#[inline]
fn ber_read_content_null(i: &[u8]) -> BerResult<BerObjectContent> {
Ok((i, BerObjectContent::Null))
}
fn ber_read_content_oid(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
custom_check!(i, len == 0, BerError::InvalidLength)?;
let (i1, oid) = verify(take(len), |os: &[u8]| os.last().unwrap() >> 7 == 0u8)(i)?;
let obj = BerObjectContent::OID(Oid::new(Cow::Borrowed(oid)));
Ok((i1, obj))
}
#[inline]
fn ber_read_content_enum(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
let (rem, num) = parse_hex_to_u64(i, len).map_err(|_| BerError::BerValueError)?;
Ok((rem, BerObjectContent::Enum(num)))
}
fn ber_read_content_utf8string(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
let (i, bytes) = take(len)(i)?;
let s = std::str::from_utf8(bytes)
.map_err(|_| Err::Error(BerError::StringInvalidCharset))
.map(|s| BerObjectContent::UTF8String(s))?;
Ok((i, s))
}
fn ber_read_content_relativeoid(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
custom_check!(i, len == 0, BerError::InvalidLength)?;
let (i1, oid) = verify(take(len), |os: &[u8]| os.last().unwrap() >> 7 == 0u8)(i)?;
let obj = BerObjectContent::RelativeOID(Oid::new_relative(Cow::Borrowed(oid)));
Ok((i1, obj))
}
fn ber_read_content_sequence(
i: &[u8],
len: BerSize,
max_depth: usize,
) -> BerResult<BerObjectContent> {
custom_check!(i, max_depth == 0, BerError::BerMaxDepth)?;
match len {
BerSize::Definite(len) => {
let (i, data) = take(len)(i)?;
let (_, l) = many0(complete(r_parse_ber(max_depth - 1)))(data)?;
Ok((i, BerObjectContent::Sequence(l)))
}
BerSize::Indefinite => {
let (rem, (l, _)) = many_till(r_parse_ber(max_depth - 1), parse_ber_endofcontent)(i)?;
Ok((rem, BerObjectContent::Sequence(l)))
}
}
}
fn ber_read_content_set(i: &[u8], len: BerSize, max_depth: usize) -> BerResult<BerObjectContent> {
custom_check!(i, max_depth == 0, BerError::BerMaxDepth)?;
match len {
BerSize::Definite(len) => {
let (i, data) = take(len)(i)?;
let (_, l) = many0(complete(r_parse_ber(max_depth - 1)))(data)?;
Ok((i, BerObjectContent::Set(l)))
}
BerSize::Indefinite => {
let (rem, (l, _)) = many_till(r_parse_ber(max_depth - 1), parse_ber_endofcontent)(i)?;
Ok((rem, BerObjectContent::Set(l)))
}
}
}
fn ber_read_content_numericstring<'a>(i: &'a [u8], len: usize) -> BerResult<BerObjectContent<'a>> {
#[allow(clippy::trivially_copy_pass_by_ref)]
fn is_numeric(b: &u8) -> bool {
matches!(*b, b'0'..=b'9' | b' ')
}
let (i, bytes) = take(len)(i)?;
if !bytes.iter().all(is_numeric) {
return Err(Err::Error(BerError::StringInvalidCharset));
}
let s = std::str::from_utf8(bytes)
.map_err(|_| Err::Error(BerError::StringInvalidCharset))
.map(|s| BerObjectContent::NumericString(s))?;
Ok((i, s))
}
fn ber_read_content_visiblestring<'a>(i: &'a [u8], len: usize) -> BerResult<BerObjectContent<'a>> {
#[allow(clippy::trivially_copy_pass_by_ref)]
fn is_visible(b: &u8) -> bool {
0x20 <= *b && *b <= 0x7f
}
let (i, bytes) = take(len)(i)?;
if !bytes.iter().all(is_visible) {
return Err(Err::Error(BerError::StringInvalidCharset));
}
let s = std::str::from_utf8(bytes)
.map_err(|_| Err::Error(BerError::StringInvalidCharset))
.map(|s| BerObjectContent::VisibleString(s))?;
Ok((i, s))
}
fn ber_read_content_printablestring<'a>(
i: &'a [u8],
len: usize,
) -> BerResult<BerObjectContent<'a>> {
#[allow(clippy::trivially_copy_pass_by_ref)]
fn is_printable(b: &u8) -> bool {
matches!(*b,
b'a'..=b'z'
| b'A'..=b'Z'
| b'0'..=b'9'
| b' '
| b'\''
| b'('
| b')'
| b'+'
| b','
| b'-'
| b'.'
| b'/'
| b':'
| b'='
| b'?')
}
let (i, bytes) = take(len)(i)?;
if !bytes.iter().all(is_printable) {
return Err(Err::Error(BerError::StringInvalidCharset));
}
let s = std::str::from_utf8(bytes)
.map_err(|_| Err::Error(BerError::StringInvalidCharset))
.map(|s| BerObjectContent::PrintableString(s))?;
Ok((i, s))
}
#[inline]
fn ber_read_content_t61string(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
map(take(len), BerObjectContent::T61String)(i)
}
#[inline]
fn ber_read_content_videotexstring(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
map(take(len), BerObjectContent::VideotexString)(i)
}
fn ber_read_content_ia5string<'a>(i: &'a [u8], len: usize) -> BerResult<BerObjectContent<'a>> {
let (i, bytes) = take(len)(i)?;
if !bytes.iter().all(u8::is_ascii) {
return Err(Err::Error(BerError::StringInvalidCharset));
}
let s = std::str::from_utf8(bytes)
.map_err(|_| Err::Error(BerError::StringInvalidCharset))
.map(|s| BerObjectContent::IA5String(s))?;
Ok((i, s))
}
fn ber_read_content_utctime<'a>(i: &'a [u8], len: usize) -> BerResult<BerObjectContent<'a>> {
#[allow(clippy::trivially_copy_pass_by_ref)]
fn is_visible(b: &u8) -> bool {
0x20 <= *b && *b <= 0x7f
}
let (i, bytes) = take(len)(i)?;
if !bytes.iter().all(is_visible) {
return Err(Err::Error(BerError::StringInvalidCharset));
}
let s = std::str::from_utf8(bytes)
.map_err(|_| Err::Error(BerError::StringInvalidCharset))
.map(|s| BerObjectContent::UTCTime(s))?;
Ok((i, s))
}
fn ber_read_content_generalizedtime<'a>(
i: &'a [u8],
len: usize,
) -> BerResult<BerObjectContent<'a>> {
#[allow(clippy::trivially_copy_pass_by_ref)]
fn is_visible(b: &u8) -> bool {
0x20 <= *b && *b <= 0x7f
}
let (i, bytes) = take(len)(i)?;
if !bytes.iter().all(is_visible) {
return Err(Err::Error(BerError::StringInvalidCharset));
}
let s = std::str::from_utf8(bytes)
.map_err(|_| Err::Error(BerError::StringInvalidCharset))
.map(|s| BerObjectContent::GeneralizedTime(s))?;
Ok((i, s))
}
#[inline]
fn ber_read_content_objectdescriptor(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
map(take(len), BerObjectContent::ObjectDescriptor)(i)
}
#[inline]
fn ber_read_content_graphicstring(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
map(take(len), BerObjectContent::GraphicString)(i)
}
#[inline]
fn ber_read_content_generalstring(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
map(take(len), BerObjectContent::GeneralString)(i)
}
#[inline]
fn ber_read_content_bmpstring(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
map(take(len), BerObjectContent::BmpString)(i)
}
#[inline]
fn ber_read_content_universalstring(i: &[u8], len: usize) -> BerResult<BerObjectContent> {
map(take(len), BerObjectContent::UniversalString)(i)
}
pub fn ber_read_element_content_as(
i: &[u8],
tag: BerTag,
len: BerSize,
constructed: bool,
max_depth: usize,
) -> BerResult<BerObjectContent> {
if let BerSize::Definite(l) = len {
custom_check!(i, l > MAX_OBJECT_SIZE, BerError::InvalidLength)?;
if i.len() < l {
return Err(Err::Incomplete(Needed::new(l)));
}
}
match tag {
BerTag::EndOfContent => {
custom_check!(i, len != BerSize::Definite(0), BerError::InvalidLength)?;
ber_read_content_eoc(i)
}
BerTag::Boolean => {
let len = len.primitive()?;
custom_check!(i, len != 1, BerError::InvalidLength)?;
ber_read_content_bool(i)
}
BerTag::Integer => {
custom_check!(i, constructed, BerError::ConstructUnexpected)?;
let len = len.primitive()?;
ber_read_content_integer(i, len)
}
BerTag::BitString => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_bitstring(i, len)
}
BerTag::OctetString => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_octetstring(i, len)
}
BerTag::Null => {
custom_check!(i, constructed, BerError::ConstructUnexpected)?;
let len = len.primitive()?;
custom_check!(i, len != 0, BerError::InvalidLength)?;
ber_read_content_null(i)
}
BerTag::Oid => {
custom_check!(i, constructed, BerError::ConstructUnexpected)?;
let len = len.primitive()?;
ber_read_content_oid(i, len)
}
BerTag::ObjDescriptor => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_objectdescriptor(i, len)
}
BerTag::Enumerated => {
custom_check!(i, constructed, BerError::ConstructUnexpected)?;
let len = len.primitive()?;
ber_read_content_enum(i, len)
}
BerTag::Utf8String => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_utf8string(i, len)
}
BerTag::RelativeOid => {
custom_check!(i, constructed, BerError::ConstructUnexpected)?;
let len = len.primitive()?;
ber_read_content_relativeoid(i, len)
}
BerTag::Sequence => {
custom_check!(i, !constructed, BerError::ConstructExpected)?;
ber_read_content_sequence(i, len, max_depth)
}
BerTag::Set => {
custom_check!(i, !constructed, BerError::ConstructExpected)?;
ber_read_content_set(i, len, max_depth)
}
BerTag::NumericString => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_numericstring(i, len)
}
BerTag::PrintableString => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_printablestring(i, len)
}
BerTag::T61String => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_t61string(i, len)
}
BerTag::VideotexString => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_videotexstring(i, len)
}
BerTag::Ia5String => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_ia5string(i, len)
}
BerTag::UtcTime => {
let len = len.primitive()?;
ber_read_content_utctime(i, len)
}
BerTag::GeneralizedTime => {
let len = len.primitive()?;
ber_read_content_generalizedtime(i, len)
}
BerTag::GraphicString => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_graphicstring(i, len)
}
BerTag::VisibleString => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_visiblestring(i, len)
}
BerTag::GeneralString => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_generalstring(i, len)
}
BerTag::BmpString => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_bmpstring(i, len)
}
BerTag::UniversalString => {
custom_check!(i, constructed, BerError::Unsupported)?;
let len = len.primitive()?;
ber_read_content_universalstring(i, len)
}
_ => Err(Err::Error(BerError::UnknownTag)),
}
}
pub fn parse_ber_content<'a>(
tag: BerTag,
) -> impl Fn(&'a [u8], &'_ BerObjectHeader, usize) -> BerResult<'a, BerObjectContent<'a>> {
move |i: &[u8], hdr: &BerObjectHeader, max_recursion: usize| {
ber_read_element_content_as(i, tag, hdr.len, hdr.is_constructed(), max_recursion)
}
}
pub fn parse_ber_content2<'a>(
tag: BerTag,
) -> impl Fn(&'a [u8], BerObjectHeader<'a>, usize) -> BerResult<'a, BerObjectContent<'a>> {
move |i: &[u8], hdr: BerObjectHeader, max_recursion: usize| {
ber_read_element_content_as(i, tag, hdr.len, hdr.is_constructed(), max_recursion)
}
}
pub fn parse_ber_with_tag<Tag: Into<BerTag>>(i: &[u8], tag: Tag) -> BerResult {
let tag = tag.into();
let (i, hdr) = ber_read_element_header(i)?;
if hdr.tag != tag {
return Err(nom::Err::Error(BerError::InvalidTag));
}
let (i, content) =
ber_read_element_content_as(i, hdr.tag, hdr.len, hdr.is_constructed(), MAX_RECURSION)?;
Ok((i, BerObject::from_header_and_content(hdr, content)))
}
#[inline]
pub fn parse_ber_endofcontent(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::EndOfContent)
}
#[inline]
pub fn parse_ber_bool(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::Boolean)
}
#[inline]
pub fn parse_ber_integer(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::Integer)
}
#[inline]
pub fn parse_ber_bitstring(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::BitString)
}
#[inline]
pub fn parse_ber_octetstring(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::OctetString)
}
#[inline]
pub fn parse_ber_null(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::Null)
}
#[inline]
pub fn parse_ber_oid(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::Oid)
}
#[inline]
pub fn parse_ber_enum(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::Enumerated)
}
#[inline]
pub fn parse_ber_utf8string(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::Utf8String)
}
#[inline]
pub fn parse_ber_relative_oid(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::RelativeOid)
}
#[inline]
pub fn parse_ber_sequence(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::Sequence)
}
#[inline]
pub fn parse_ber_set(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::Set)
}
#[inline]
pub fn parse_ber_numericstring(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::NumericString)
}
#[inline]
pub fn parse_ber_visiblestring(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::VisibleString)
}
#[inline]
pub fn parse_ber_printablestring(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::PrintableString)
}
#[inline]
pub fn parse_ber_t61string(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::T61String)
}
#[inline]
pub fn parse_ber_videotexstring(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::VideotexString)
}
#[inline]
pub fn parse_ber_ia5string(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::Ia5String)
}
#[inline]
pub fn parse_ber_utctime(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::UtcTime)
}
#[inline]
pub fn parse_ber_generalizedtime(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::GeneralizedTime)
}
#[inline]
pub fn parse_ber_objectdescriptor(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::ObjDescriptor)
}
#[inline]
pub fn parse_ber_graphicstring(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::GraphicString)
}
#[inline]
pub fn parse_ber_generalstring(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::GeneralString)
}
#[inline]
pub fn parse_ber_bmpstring(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::BmpString)
}
#[inline]
pub fn parse_ber_universalstring(i: &[u8]) -> BerResult {
parse_ber_with_tag(i, BerTag::UniversalString)
}
pub fn parse_ber_explicit_optional<F>(i: &[u8], tag: BerTag, f: F) -> BerResult
where
F: Fn(&[u8]) -> BerResult,
{
parse_ber_optional(parse_ber_tagged_explicit_g(tag, |content, hdr| {
let (rem, obj) = f(content)?;
let content = BerObjectContent::Tagged(hdr.class, hdr.tag, Box::new(obj));
let tagged = BerObject::from_header_and_content(hdr, content);
Ok((rem, tagged))
}))(i)
}
#[deprecated(
since = "5.0.0",
note = "Please use `parse_ber_explicit_optional` instead"
)]
#[inline]
pub fn parse_ber_explicit<F>(i: &[u8], tag: BerTag, f: F) -> BerResult
where
F: Fn(&[u8]) -> BerResult,
{
parse_ber_explicit_optional(i, tag, f)
}
#[inline]
pub fn parse_ber_implicit<'a, Tag, F>(i: &'a [u8], tag: Tag, f: F) -> BerResult<'a>
where
F: Fn(&'a [u8], &'_ BerObjectHeader, usize) -> BerResult<'a, BerObjectContent<'a>>,
Tag: Into<BerTag>,
{
parse_ber_tagged_implicit(tag, f)(i)
}
pub fn parse_ber_optional<'a, F>(mut f: F) -> impl FnMut(&'a [u8]) -> BerResult<'a>
where
F: FnMut(&'a [u8]) -> BerResult<'a>,
{
move |i: &[u8]| {
let res = f(i);
match res {
Ok((rem, inner)) => {
let opt = BerObject::from_header_and_content(
inner.header.clone(),
BerObjectContent::Optional(Some(Box::new(inner))),
);
Ok((rem, opt))
}
Err(_) => Ok((i, BerObject::from_obj(BerObjectContent::Optional(None)))),
}
}
}
#[inline]
pub fn parse_ber_u32(i: &[u8]) -> BerResult<u32> {
parse_ber_container(|content, hdr| {
if hdr.tag != BerTag::Integer {
return Err(Err::Error(BerError::InvalidTag));
}
let l = bytes_to_u64(content)?;
if l > 0xffff_ffff {
Err(Err::Error(BerError::IntegerTooLarge))
} else {
Ok((&b""[..], l as u32))
}
})(i)
}
#[inline]
pub fn parse_ber_u64(i: &[u8]) -> BerResult<u64> {
parse_ber_container(|content, hdr| {
if hdr.tag != BerTag::Integer {
return Err(Err::Error(BerError::InvalidTag));
}
let l = bytes_to_u64(content)?;
Ok((&b""[..], l))
})(i)
}
#[inline]
pub fn parse_ber_slice<Tag: Into<BerTag>>(i: &[u8], tag: Tag) -> BerResult<&[u8]> {
let tag = tag.into();
parse_ber_container(move |content, hdr| {
if hdr.tag != tag {
return Err(Err::Error(BerError::InvalidTag));
}
Ok((&b""[..], content))
})(i)
}
#[inline]
pub(crate) fn r_parse_ber(max_depth: usize) -> impl Fn(&[u8]) -> BerResult {
move |i: &[u8]| parse_ber_recursive(i, max_depth)
}
pub fn parse_ber_recursive(i: &[u8], max_depth: usize) -> BerResult {
custom_check!(i, max_depth == 0, BerError::BerMaxDepth)?;
let (rem, hdr) = ber_read_element_header(i)?;
if let BerSize::Definite(l) = hdr.len {
custom_check!(i, l > MAX_OBJECT_SIZE, BerError::InvalidLength)?;
}
match hdr.class {
BerClass::Universal | BerClass::Private => (),
_ => {
let (rem, content) = ber_get_object_content(rem, &hdr, max_depth)?;
let content = BerObjectContent::Unknown(hdr.tag, content);
let obj = BerObject::from_header_and_content(hdr, content);
return Ok((rem, obj));
}
}
match ber_read_element_content_as(rem, hdr.tag, hdr.len, hdr.is_constructed(), max_depth) {
Ok((rem, content)) => Ok((rem, BerObject::from_header_and_content(hdr, content))),
Err(Err::Error(BerError::UnknownTag)) => {
let (rem, content) = ber_get_object_content(rem, &hdr, max_depth)?;
let content = BerObjectContent::Unknown(hdr.tag, content);
let obj = BerObject::from_header_and_content(hdr, content);
Ok((rem, obj))
}
Err(e) => Err(e),
}
}
#[inline]
pub fn parse_ber(i: &[u8]) -> BerResult {
parse_ber_recursive(i, MAX_RECURSION)
}
#[test]
fn test_numericstring() {
assert_eq!(
ber_read_content_numericstring(b" 0123 4495768 ", 15),
Ok((
[].as_ref(),
BerObjectContent::NumericString(" 0123 4495768 ")
)),
);
assert_eq!(
ber_read_content_numericstring(b"", 0),
Ok(([].as_ref(), BerObjectContent::NumericString(""))),
);
assert!(ber_read_content_numericstring(b"123a", 4).is_err());
}
#[test]
fn text_visiblestring() {
assert_eq!(
ber_read_content_visiblestring(b"AZaz]09 '()+,-./:=?", 19),
Ok((
[].as_ref(),
BerObjectContent::VisibleString("AZaz]09 '()+,-./:=?")
)),
);
assert_eq!(
ber_read_content_visiblestring(b"", 0),
Ok(([].as_ref(), BerObjectContent::VisibleString(""))),
);
assert!(ber_read_content_visiblestring(b"\n", 1).is_err());
}
#[test]
fn test_printablestring() {
assert_eq!(
ber_read_content_printablestring(b"AZaz09 '()+,-./:=?", 18),
Ok((
[].as_ref(),
BerObjectContent::PrintableString("AZaz09 '()+,-./:=?")
)),
);
assert_eq!(
ber_read_content_printablestring(b"", 0),
Ok(([].as_ref(), BerObjectContent::PrintableString(""))),
);
assert!(ber_read_content_printablestring(b"]\n", 2).is_err());
}
#[test]
fn test_ia5string() {
assert_eq!(
ber_read_content_ia5string(b"AZaz\n09 '()+,-./:=?[]{}\0\n", 25),
Ok((
[].as_ref(),
BerObjectContent::IA5String("AZaz\n09 '()+,-./:=?[]{}\0\n")
)),
);
assert_eq!(
ber_read_content_ia5string(b"", 0),
Ok(([].as_ref(), BerObjectContent::IA5String(""))),
);
assert!(ber_read_content_ia5string(b"\xFF", 1).is_err());
}
#[test]
fn test_utf8string() {
assert_eq!(
ber_read_content_utf8string("AZaz09 '()+,-./:=?[]{}\0\nüÜ".as_ref(), 28),
Ok((
[].as_ref(),
BerObjectContent::UTF8String("AZaz09 '()+,-./:=?[]{}\0\nüÜ")
)),
);
assert_eq!(
ber_read_content_utf8string(b"", 0),
Ok(([].as_ref(), BerObjectContent::UTF8String(""))),
);
assert!(ber_read_content_utf8string(b"\xe2\x28\xa1", 3).is_err());
}
#[test]
fn test_bitstring_to_u64() {
let data = &hex_literal::hex!("0d 71 82");
let r = bitstring_to_u64(8, &BitStringObject { data });
assert_eq!(r, Ok(0x0d71));
let data = &hex_literal::hex!("0d 71 82 0e 73 72 76 6e 67 6e 62 6c 6e 2d 65 78 30 31");
let r = bitstring_to_u64(0, &BitStringObject { data });
assert!(r.is_err());
let data = &hex_literal::hex!("0d 71 82 0e 73 72 76 6e 67 6e 62 6c 6e 2d 65 78 30 31");
let r = bitstring_to_u64(130, &BitStringObject { data });
assert_eq!(r, Ok(0x0d71 >> 2));
}