155714Skris/* crypto/md5/md5_dgst.c */
255714Skris/* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
355714Skris * All rights reserved.
455714Skris *
555714Skris * This package is an SSL implementation written
655714Skris * by Eric Young (eay@cryptsoft.com).
755714Skris * The implementation was written so as to conform with Netscapes SSL.
8280304Sjkim *
955714Skris * This library is free for commercial and non-commercial use as long as
1055714Skris * the following conditions are aheared to.  The following conditions
1155714Skris * apply to all code found in this distribution, be it the RC4, RSA,
1255714Skris * lhash, DES, etc., code; not just the SSL code.  The SSL documentation
1355714Skris * included with this distribution is covered by the same copyright terms
1455714Skris * except that the holder is Tim Hudson (tjh@cryptsoft.com).
15280304Sjkim *
1655714Skris * Copyright remains Eric Young's, and as such any Copyright notices in
1755714Skris * the code are not to be removed.
1855714Skris * If this package is used in a product, Eric Young should be given attribution
1955714Skris * as the author of the parts of the library used.
2055714Skris * This can be in the form of a textual message at program startup or
2155714Skris * in documentation (online or textual) provided with the package.
22280304Sjkim *
2355714Skris * Redistribution and use in source and binary forms, with or without
2455714Skris * modification, are permitted provided that the following conditions
2555714Skris * are met:
2655714Skris * 1. Redistributions of source code must retain the copyright
2755714Skris *    notice, this list of conditions and the following disclaimer.
2855714Skris * 2. Redistributions in binary form must reproduce the above copyright
2955714Skris *    notice, this list of conditions and the following disclaimer in the
3055714Skris *    documentation and/or other materials provided with the distribution.
3155714Skris * 3. All advertising materials mentioning features or use of this software
3255714Skris *    must display the following acknowledgement:
3355714Skris *    "This product includes cryptographic software written by
3455714Skris *     Eric Young (eay@cryptsoft.com)"
3555714Skris *    The word 'cryptographic' can be left out if the rouines from the library
3655714Skris *    being used are not cryptographic related :-).
37280304Sjkim * 4. If you include any Windows specific code (or a derivative thereof) from
3855714Skris *    the apps directory (application code) you must include an acknowledgement:
3955714Skris *    "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
40280304Sjkim *
4155714Skris * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
4255714Skris * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
4355714Skris * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
4455714Skris * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
4555714Skris * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
4655714Skris * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
4755714Skris * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
4855714Skris * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
4955714Skris * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
5055714Skris * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
5155714Skris * SUCH DAMAGE.
52280304Sjkim *
5355714Skris * The licence and distribution terms for any publically available version or
5455714Skris * derivative of this code cannot be changed.  i.e. this code cannot simply be
5555714Skris * copied and put under another distribution licence
5655714Skris * [including the GNU Public Licence.]
5755714Skris */
5855714Skris
5955714Skris#include <stdio.h>
6055714Skris#include "md5_locl.h"
6155714Skris#include <openssl/opensslv.h>
62238405Sjkim#include <openssl/crypto.h>
6355714Skris
64280304Sjkimconst char MD5_version[] = "MD5" OPENSSL_VERSION_PTEXT;
6555714Skris
66280304Sjkim/*
67280304Sjkim * Implemented from RFC1321 The MD5 Message-Digest Algorithm
6855714Skris */
6955714Skris
7055714Skris#define INIT_DATA_A (unsigned long)0x67452301L
7155714Skris#define INIT_DATA_B (unsigned long)0xefcdab89L
7255714Skris#define INIT_DATA_C (unsigned long)0x98badcfeL
7355714Skris#define INIT_DATA_D (unsigned long)0x10325476L
7455714Skris
75238405Sjkimfips_md_init(MD5)
76280304Sjkim{
77280304Sjkim    memset(c, 0, sizeof(*c));
78280304Sjkim    c->A = INIT_DATA_A;
79280304Sjkim    c->B = INIT_DATA_B;
80280304Sjkim    c->C = INIT_DATA_C;
81280304Sjkim    c->D = INIT_DATA_D;
82280304Sjkim    return 1;
83280304Sjkim}
8455714Skris
8555714Skris#ifndef md5_block_data_order
86280304Sjkim# ifdef X
87280304Sjkim#  undef X
88280304Sjkim# endif
89280304Sjkimvoid md5_block_data_order(MD5_CTX *c, const void *data_, size_t num)
90280304Sjkim{
91280304Sjkim    const unsigned char *data = data_;
92280304Sjkim    register unsigned MD32_REG_T A, B, C, D, l;
93280304Sjkim# ifndef MD32_XARRAY
94280304Sjkim    /* See comment in crypto/sha/sha_locl.h for details. */
95280304Sjkim    unsigned MD32_REG_T XX0, XX1, XX2, XX3, XX4, XX5, XX6, XX7,
96280304Sjkim        XX8, XX9, XX10, XX11, XX12, XX13, XX14, XX15;
97280304Sjkim#  define X(i)   XX##i
98280304Sjkim# else
99280304Sjkim    MD5_LONG XX[MD5_LBLOCK];
100280304Sjkim#  define X(i)   XX[i]
101280304Sjkim# endif
10255714Skris
103280304Sjkim    A = c->A;
104280304Sjkim    B = c->B;
105280304Sjkim    C = c->C;
106280304Sjkim    D = c->D;
10755714Skris
108280304Sjkim    for (; num--;) {
109280304Sjkim        HOST_c2l(data, l);
110280304Sjkim        X(0) = l;
111280304Sjkim        HOST_c2l(data, l);
112280304Sjkim        X(1) = l;
113280304Sjkim        /* Round 0 */
114280304Sjkim        R0(A, B, C, D, X(0), 7, 0xd76aa478L);
115280304Sjkim        HOST_c2l(data, l);
116280304Sjkim        X(2) = l;
117280304Sjkim        R0(D, A, B, C, X(1), 12, 0xe8c7b756L);
118280304Sjkim        HOST_c2l(data, l);
119280304Sjkim        X(3) = l;
120280304Sjkim        R0(C, D, A, B, X(2), 17, 0x242070dbL);
121280304Sjkim        HOST_c2l(data, l);
122280304Sjkim        X(4) = l;
123280304Sjkim        R0(B, C, D, A, X(3), 22, 0xc1bdceeeL);
124280304Sjkim        HOST_c2l(data, l);
125280304Sjkim        X(5) = l;
126280304Sjkim        R0(A, B, C, D, X(4), 7, 0xf57c0fafL);
127280304Sjkim        HOST_c2l(data, l);
128280304Sjkim        X(6) = l;
129280304Sjkim        R0(D, A, B, C, X(5), 12, 0x4787c62aL);
130280304Sjkim        HOST_c2l(data, l);
131280304Sjkim        X(7) = l;
132280304Sjkim        R0(C, D, A, B, X(6), 17, 0xa8304613L);
133280304Sjkim        HOST_c2l(data, l);
134280304Sjkim        X(8) = l;
135280304Sjkim        R0(B, C, D, A, X(7), 22, 0xfd469501L);
136280304Sjkim        HOST_c2l(data, l);
137280304Sjkim        X(9) = l;
138280304Sjkim        R0(A, B, C, D, X(8), 7, 0x698098d8L);
139280304Sjkim        HOST_c2l(data, l);
140280304Sjkim        X(10) = l;
141280304Sjkim        R0(D, A, B, C, X(9), 12, 0x8b44f7afL);
142280304Sjkim        HOST_c2l(data, l);
143280304Sjkim        X(11) = l;
144280304Sjkim        R0(C, D, A, B, X(10), 17, 0xffff5bb1L);
145280304Sjkim        HOST_c2l(data, l);
146280304Sjkim        X(12) = l;
147280304Sjkim        R0(B, C, D, A, X(11), 22, 0x895cd7beL);
148280304Sjkim        HOST_c2l(data, l);
149280304Sjkim        X(13) = l;
150280304Sjkim        R0(A, B, C, D, X(12), 7, 0x6b901122L);
151280304Sjkim        HOST_c2l(data, l);
152280304Sjkim        X(14) = l;
153280304Sjkim        R0(D, A, B, C, X(13), 12, 0xfd987193L);
154280304Sjkim        HOST_c2l(data, l);
155280304Sjkim        X(15) = l;
156280304Sjkim        R0(C, D, A, B, X(14), 17, 0xa679438eL);
157280304Sjkim        R0(B, C, D, A, X(15), 22, 0x49b40821L);
158280304Sjkim        /* Round 1 */
159280304Sjkim        R1(A, B, C, D, X(1), 5, 0xf61e2562L);
160280304Sjkim        R1(D, A, B, C, X(6), 9, 0xc040b340L);
161280304Sjkim        R1(C, D, A, B, X(11), 14, 0x265e5a51L);
162280304Sjkim        R1(B, C, D, A, X(0), 20, 0xe9b6c7aaL);
163280304Sjkim        R1(A, B, C, D, X(5), 5, 0xd62f105dL);
164280304Sjkim        R1(D, A, B, C, X(10), 9, 0x02441453L);
165280304Sjkim        R1(C, D, A, B, X(15), 14, 0xd8a1e681L);
166280304Sjkim        R1(B, C, D, A, X(4), 20, 0xe7d3fbc8L);
167280304Sjkim        R1(A, B, C, D, X(9), 5, 0x21e1cde6L);
168280304Sjkim        R1(D, A, B, C, X(14), 9, 0xc33707d6L);
169280304Sjkim        R1(C, D, A, B, X(3), 14, 0xf4d50d87L);
170280304Sjkim        R1(B, C, D, A, X(8), 20, 0x455a14edL);
171280304Sjkim        R1(A, B, C, D, X(13), 5, 0xa9e3e905L);
172280304Sjkim        R1(D, A, B, C, X(2), 9, 0xfcefa3f8L);
173280304Sjkim        R1(C, D, A, B, X(7), 14, 0x676f02d9L);
174280304Sjkim        R1(B, C, D, A, X(12), 20, 0x8d2a4c8aL);
175280304Sjkim        /* Round 2 */
176280304Sjkim        R2(A, B, C, D, X(5), 4, 0xfffa3942L);
177280304Sjkim        R2(D, A, B, C, X(8), 11, 0x8771f681L);
178280304Sjkim        R2(C, D, A, B, X(11), 16, 0x6d9d6122L);
179280304Sjkim        R2(B, C, D, A, X(14), 23, 0xfde5380cL);
180280304Sjkim        R2(A, B, C, D, X(1), 4, 0xa4beea44L);
181280304Sjkim        R2(D, A, B, C, X(4), 11, 0x4bdecfa9L);
182280304Sjkim        R2(C, D, A, B, X(7), 16, 0xf6bb4b60L);
183280304Sjkim        R2(B, C, D, A, X(10), 23, 0xbebfbc70L);
184280304Sjkim        R2(A, B, C, D, X(13), 4, 0x289b7ec6L);
185280304Sjkim        R2(D, A, B, C, X(0), 11, 0xeaa127faL);
186280304Sjkim        R2(C, D, A, B, X(3), 16, 0xd4ef3085L);
187280304Sjkim        R2(B, C, D, A, X(6), 23, 0x04881d05L);
188280304Sjkim        R2(A, B, C, D, X(9), 4, 0xd9d4d039L);
189280304Sjkim        R2(D, A, B, C, X(12), 11, 0xe6db99e5L);
190280304Sjkim        R2(C, D, A, B, X(15), 16, 0x1fa27cf8L);
191280304Sjkim        R2(B, C, D, A, X(2), 23, 0xc4ac5665L);
192280304Sjkim        /* Round 3 */
193280304Sjkim        R3(A, B, C, D, X(0), 6, 0xf4292244L);
194280304Sjkim        R3(D, A, B, C, X(7), 10, 0x432aff97L);
195280304Sjkim        R3(C, D, A, B, X(14), 15, 0xab9423a7L);
196280304Sjkim        R3(B, C, D, A, X(5), 21, 0xfc93a039L);
197280304Sjkim        R3(A, B, C, D, X(12), 6, 0x655b59c3L);
198280304Sjkim        R3(D, A, B, C, X(3), 10, 0x8f0ccc92L);
199280304Sjkim        R3(C, D, A, B, X(10), 15, 0xffeff47dL);
200280304Sjkim        R3(B, C, D, A, X(1), 21, 0x85845dd1L);
201280304Sjkim        R3(A, B, C, D, X(8), 6, 0x6fa87e4fL);
202280304Sjkim        R3(D, A, B, C, X(15), 10, 0xfe2ce6e0L);
203280304Sjkim        R3(C, D, A, B, X(6), 15, 0xa3014314L);
204280304Sjkim        R3(B, C, D, A, X(13), 21, 0x4e0811a1L);
205280304Sjkim        R3(A, B, C, D, X(4), 6, 0xf7537e82L);
206280304Sjkim        R3(D, A, B, C, X(11), 10, 0xbd3af235L);
207280304Sjkim        R3(C, D, A, B, X(2), 15, 0x2ad7d2bbL);
208280304Sjkim        R3(B, C, D, A, X(9), 21, 0xeb86d391L);
20955714Skris
210280304Sjkim        A = c->A += A;
211280304Sjkim        B = c->B += B;
212280304Sjkim        C = c->C += C;
213280304Sjkim        D = c->D += D;
214280304Sjkim    }
215280304Sjkim}
21655714Skris#endif
217