0001-Support-OpenSSL-1.1.0.patch 4.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151
  1. From c14d9bf71753a38df57cc6538b22ed389d2c2cb1 Mon Sep 17 00:00:00 2001
  2. From: Khem Raj <raj.khem@gmail.com>
  3. Date: Tue, 4 Sep 2018 17:18:51 -0700
  4. Subject: [PATCH] Support OpenSSL 1.1.0
  5. Taken from https://github.com/x42/liboauth/issues/9
  6. Upstream-Status: Submitted [https://github.com/x42/liboauth/issues/9]
  7. Signed-off-by: Khem Raj <raj.khem@gmail.com>
  8. ---
  9. src/hash.c | 65 ++++++++++++++++++++++++++++++++++++------------------
  10. 1 file changed, 44 insertions(+), 21 deletions(-)
  11. diff --git a/src/hash.c b/src/hash.c
  12. index 17ff5c8..e128826 100644
  13. --- a/src/hash.c
  14. +++ b/src/hash.c
  15. @@ -362,6 +362,11 @@ looser:
  16. #include "oauth.h" // base64 encode fn's.
  17. #include <openssl/hmac.h>
  18. +#if OPENSSL_VERSION_NUMBER < 0x10100000
  19. +#define EVP_MD_CTX_new EVP_MD_CTX_create
  20. +#define EVP_MD_CTX_free EVP_MD_CTX_destroy
  21. +#endif
  22. +
  23. char *oauth_sign_hmac_sha1 (const char *m, const char *k) {
  24. return(oauth_sign_hmac_sha1_raw (m, strlen(m), k, strlen(k)));
  25. }
  26. @@ -386,7 +391,7 @@ char *oauth_sign_rsa_sha1 (const char *m, const char *k) {
  27. unsigned char *sig = NULL;
  28. unsigned char *passphrase = NULL;
  29. unsigned int len=0;
  30. - EVP_MD_CTX md_ctx;
  31. + EVP_MD_CTX *md_ctx;
  32. EVP_PKEY *pkey;
  33. BIO *in;
  34. @@ -399,24 +404,31 @@ char *oauth_sign_rsa_sha1 (const char *m, const char *k) {
  35. return xstrdup("liboauth/OpenSSL: can not read private key");
  36. }
  37. + md_ctx = EVP_MD_CTX_new();
  38. + if (md_ctx == NULL) {
  39. + return xstrdup("liboauth/OpenSSL: failed to allocate EVP_MD_CTX");
  40. + }
  41. +
  42. len = EVP_PKEY_size(pkey);
  43. sig = (unsigned char*)xmalloc((len+1)*sizeof(char));
  44. - EVP_SignInit(&md_ctx, EVP_sha1());
  45. - EVP_SignUpdate(&md_ctx, m, strlen(m));
  46. - if (EVP_SignFinal (&md_ctx, sig, &len, pkey)) {
  47. + EVP_SignInit(md_ctx, EVP_sha1());
  48. + EVP_SignUpdate(md_ctx, m, strlen(m));
  49. + if (EVP_SignFinal (md_ctx, sig, &len, pkey)) {
  50. char *tmp;
  51. sig[len] = '\0';
  52. tmp = oauth_encode_base64(len,sig);
  53. OPENSSL_free(sig);
  54. EVP_PKEY_free(pkey);
  55. + EVP_MD_CTX_free(md_ctx);
  56. return tmp;
  57. }
  58. + EVP_MD_CTX_free(md_ctx);
  59. return xstrdup("liboauth/OpenSSL: rsa-sha1 signing failed");
  60. }
  61. int oauth_verify_rsa_sha1 (const char *m, const char *c, const char *s) {
  62. - EVP_MD_CTX md_ctx;
  63. + EVP_MD_CTX *md_ctx;
  64. EVP_PKEY *pkey;
  65. BIO *in;
  66. X509 *cert = NULL;
  67. @@ -437,13 +449,18 @@ int oauth_verify_rsa_sha1 (const char *m, const char *c, const char *s) {
  68. return -2;
  69. }
  70. + md_ctx = EVP_MD_CTX_new();
  71. + if (md_ctx == NULL) {
  72. + return -2;
  73. + }
  74. +
  75. b64d= (unsigned char*) xmalloc(sizeof(char)*strlen(s));
  76. slen = oauth_decode_base64(b64d, s);
  77. - EVP_VerifyInit(&md_ctx, EVP_sha1());
  78. - EVP_VerifyUpdate(&md_ctx, m, strlen(m));
  79. - err = EVP_VerifyFinal(&md_ctx, b64d, slen, pkey);
  80. - EVP_MD_CTX_cleanup(&md_ctx);
  81. + EVP_VerifyInit(md_ctx, EVP_sha1());
  82. + EVP_VerifyUpdate(md_ctx, m, strlen(m));
  83. + err = EVP_VerifyFinal(md_ctx, b64d, slen, pkey);
  84. + EVP_MD_CTX_free(md_ctx);
  85. EVP_PKEY_free(pkey);
  86. xfree(b64d);
  87. return (err);
  88. @@ -455,35 +472,41 @@ int oauth_verify_rsa_sha1 (const char *m, const char *c, const char *s) {
  89. */
  90. char *oauth_body_hash_file(char *filename) {
  91. unsigned char fb[BUFSIZ];
  92. - EVP_MD_CTX ctx;
  93. + EVP_MD_CTX *ctx;
  94. size_t len=0;
  95. unsigned char *md;
  96. FILE *F= fopen(filename, "r");
  97. if (!F) return NULL;
  98. - EVP_MD_CTX_init(&ctx);
  99. - EVP_DigestInit(&ctx,EVP_sha1());
  100. + ctx = EVP_MD_CTX_new();
  101. + if (ctx == NULL) {
  102. + return xstrdup("liboauth/OpenSSL: failed to allocate EVP_MD_CTX");
  103. + }
  104. + EVP_DigestInit(ctx,EVP_sha1());
  105. while (!feof(F) && (len=fread(fb,sizeof(char),BUFSIZ, F))>0) {
  106. - EVP_DigestUpdate(&ctx, fb, len);
  107. + EVP_DigestUpdate(ctx, fb, len);
  108. }
  109. fclose(F);
  110. len=0;
  111. md=(unsigned char*) xcalloc(EVP_MD_size(EVP_sha1()),sizeof(unsigned char));
  112. - EVP_DigestFinal(&ctx, md,(unsigned int*) &len);
  113. - EVP_MD_CTX_cleanup(&ctx);
  114. + EVP_DigestFinal(ctx, md,(unsigned int*) &len);
  115. + EVP_MD_CTX_free(ctx);
  116. return oauth_body_hash_encode(len, md);
  117. }
  118. char *oauth_body_hash_data(size_t length, const char *data) {
  119. - EVP_MD_CTX ctx;
  120. + EVP_MD_CTX *ctx;
  121. size_t len=0;
  122. unsigned char *md;
  123. md=(unsigned char*) xcalloc(EVP_MD_size(EVP_sha1()),sizeof(unsigned char));
  124. - EVP_MD_CTX_init(&ctx);
  125. - EVP_DigestInit(&ctx,EVP_sha1());
  126. - EVP_DigestUpdate(&ctx, data, length);
  127. - EVP_DigestFinal(&ctx, md,(unsigned int*) &len);
  128. - EVP_MD_CTX_cleanup(&ctx);
  129. + ctx = EVP_MD_CTX_new();
  130. + if (ctx == NULL) {
  131. + return xstrdup("liboauth/OpenSSL: failed to allocate EVP_MD_CTX");
  132. + }
  133. + EVP_DigestInit(ctx,EVP_sha1());
  134. + EVP_DigestUpdate(ctx, data, length);
  135. + EVP_DigestFinal(ctx, md,(unsigned int*) &len);
  136. + EVP_MD_CTX_free(ctx);
  137. return oauth_body_hash_encode(len, md);
  138. }