md5_dgst.c revision 109998
1147072Sbrooks/* crypto/md5/md5_dgst.c */
2147072Sbrooks/* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
3147072Sbrooks * All rights reserved.
4147086Sbrooks *
5147072Sbrooks * This package is an SSL implementation written
6147072Sbrooks * by Eric Young (eay@cryptsoft.com).
7147072Sbrooks * The implementation was written so as to conform with Netscapes SSL.
8147072Sbrooks *
9147072Sbrooks * This library is free for commercial and non-commercial use as long as
10147072Sbrooks * the following conditions are aheared to.  The following conditions
11147072Sbrooks * apply to all code found in this distribution, be it the RC4, RSA,
12147072Sbrooks * lhash, DES, etc., code; not just the SSL code.  The SSL documentation
13147072Sbrooks * included with this distribution is covered by the same copyright terms
14147072Sbrooks * except that the holder is Tim Hudson (tjh@cryptsoft.com).
15147072Sbrooks *
16147072Sbrooks * Copyright remains Eric Young's, and as such any Copyright notices in
17147072Sbrooks * the code are not to be removed.
18147072Sbrooks * If this package is used in a product, Eric Young should be given attribution
19147072Sbrooks * as the author of the parts of the library used.
20147072Sbrooks * This can be in the form of a textual message at program startup or
21147072Sbrooks * in documentation (online or textual) provided with the package.
22147086Sbrooks *
23147086Sbrooks * Redistribution and use in source and binary forms, with or without
24147086Sbrooks * modification, are permitted provided that the following conditions
25147086Sbrooks * are met:
26147086Sbrooks * 1. Redistributions of source code must retain the copyright
27147086Sbrooks *    notice, this list of conditions and the following disclaimer.
28147086Sbrooks * 2. Redistributions in binary form must reproduce the above copyright
29147086Sbrooks *    notice, this list of conditions and the following disclaimer in the
30147086Sbrooks *    documentation and/or other materials provided with the distribution.
31147086Sbrooks * 3. All advertising materials mentioning features or use of this software
32147086Sbrooks *    must display the following acknowledgement:
33147086Sbrooks *    "This product includes cryptographic software written by
34147086Sbrooks *     Eric Young (eay@cryptsoft.com)"
35147072Sbrooks *    The word 'cryptographic' can be left out if the rouines from the library
36147072Sbrooks *    being used are not cryptographic related :-).
37147072Sbrooks * 4. If you include any Windows specific code (or a derivative thereof) from
38147072Sbrooks *    the apps directory (application code) you must include an acknowledgement:
39147086Sbrooks *    "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
40147086Sbrooks *
41147086Sbrooks * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
42147086Sbrooks * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
43147086Sbrooks * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
44147086Sbrooks * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
45147086Sbrooks * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
46147086Sbrooks * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
47147086Sbrooks * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
48147072Sbrooks * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
49147072Sbrooks * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
50147072Sbrooks * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
51147086Sbrooks * SUCH DAMAGE.
52147086Sbrooks *
53147086Sbrooks * The licence and distribution terms for any publically available version or
54147086Sbrooks * derivative of this code cannot be changed.  i.e. this code cannot simply be
55147086Sbrooks * copied and put under another distribution licence
56147086Sbrooks * [including the GNU Public Licence.]
57147086Sbrooks */
58147086Sbrooks
59147086Sbrooks#include <stdio.h>
60147086Sbrooks#include "md5_locl.h"
61147072Sbrooks#include <openssl/opensslv.h>
62147072Sbrooks
63147072Sbrooksconst char *MD5_version="MD5" OPENSSL_VERSION_PTEXT;
64147072Sbrooks
65147072Sbrooks/* Implemented from RFC1321 The MD5 Message-Digest Algorithm
66147072Sbrooks */
67147072Sbrooks
68147086Sbrooks#define INIT_DATA_A (unsigned long)0x67452301L
69147086Sbrooks#define INIT_DATA_B (unsigned long)0xefcdab89L
70147086Sbrooks#define INIT_DATA_C (unsigned long)0x98badcfeL
71147086Sbrooks#define INIT_DATA_D (unsigned long)0x10325476L
72147072Sbrooks
73147072Sbrooksint MD5_Init(MD5_CTX *c)
74147072Sbrooks	{
75147072Sbrooks	c->A=INIT_DATA_A;
76147072Sbrooks	c->B=INIT_DATA_B;
77147086Sbrooks	c->C=INIT_DATA_C;
78147072Sbrooks	c->D=INIT_DATA_D;
79147072Sbrooks	c->Nl=0;
80147072Sbrooks	c->Nh=0;
81147072Sbrooks	c->num=0;
82147072Sbrooks	return 1;
83147072Sbrooks	}
84147072Sbrooks
85147086Sbrooks#ifndef md5_block_host_order
86147072Sbrooksvoid md5_block_host_order (MD5_CTX *c, const void *data, int num)
87147072Sbrooks	{
88147072Sbrooks	const MD5_LONG *X=data;
89147072Sbrooks	register unsigned MD32_REG_T A,B,C,D;
90147086Sbrooks
91147086Sbrooks	A=c->A;
92147086Sbrooks	B=c->B;
93147086Sbrooks	C=c->C;
94147086Sbrooks	D=c->D;
95147086Sbrooks
96147072Sbrooks	for (;num--;X+=HASH_LBLOCK)
97147072Sbrooks		{
98147072Sbrooks	/* Round 0 */
99147072Sbrooks	R0(A,B,C,D,X[ 0], 7,0xd76aa478L);
100147072Sbrooks	R0(D,A,B,C,X[ 1],12,0xe8c7b756L);
101147072Sbrooks	R0(C,D,A,B,X[ 2],17,0x242070dbL);
102147072Sbrooks	R0(B,C,D,A,X[ 3],22,0xc1bdceeeL);
103147072Sbrooks	R0(A,B,C,D,X[ 4], 7,0xf57c0fafL);
104147072Sbrooks	R0(D,A,B,C,X[ 5],12,0x4787c62aL);
105147086Sbrooks	R0(C,D,A,B,X[ 6],17,0xa8304613L);
106147072Sbrooks	R0(B,C,D,A,X[ 7],22,0xfd469501L);
107147072Sbrooks	R0(A,B,C,D,X[ 8], 7,0x698098d8L);
108147072Sbrooks	R0(D,A,B,C,X[ 9],12,0x8b44f7afL);
109147086Sbrooks	R0(C,D,A,B,X[10],17,0xffff5bb1L);
110147072Sbrooks	R0(B,C,D,A,X[11],22,0x895cd7beL);
111147072Sbrooks	R0(A,B,C,D,X[12], 7,0x6b901122L);
112147072Sbrooks	R0(D,A,B,C,X[13],12,0xfd987193L);
113147072Sbrooks	R0(C,D,A,B,X[14],17,0xa679438eL);
114147072Sbrooks	R0(B,C,D,A,X[15],22,0x49b40821L);
115147072Sbrooks	/* Round 1 */
116147072Sbrooks	R1(A,B,C,D,X[ 1], 5,0xf61e2562L);
117147072Sbrooks	R1(D,A,B,C,X[ 6], 9,0xc040b340L);
118147072Sbrooks	R1(C,D,A,B,X[11],14,0x265e5a51L);
119147072Sbrooks	R1(B,C,D,A,X[ 0],20,0xe9b6c7aaL);
120147072Sbrooks	R1(A,B,C,D,X[ 5], 5,0xd62f105dL);
121147072Sbrooks	R1(D,A,B,C,X[10], 9,0x02441453L);
122147086Sbrooks	R1(C,D,A,B,X[15],14,0xd8a1e681L);
123147072Sbrooks	R1(B,C,D,A,X[ 4],20,0xe7d3fbc8L);
124147072Sbrooks	R1(A,B,C,D,X[ 9], 5,0x21e1cde6L);
125147072Sbrooks	R1(D,A,B,C,X[14], 9,0xc33707d6L);
126147072Sbrooks	R1(C,D,A,B,X[ 3],14,0xf4d50d87L);
127147072Sbrooks	R1(B,C,D,A,X[ 8],20,0x455a14edL);
128147072Sbrooks	R1(A,B,C,D,X[13], 5,0xa9e3e905L);
129147072Sbrooks	R1(D,A,B,C,X[ 2], 9,0xfcefa3f8L);
130147072Sbrooks	R1(C,D,A,B,X[ 7],14,0x676f02d9L);
131147072Sbrooks	R1(B,C,D,A,X[12],20,0x8d2a4c8aL);
132147072Sbrooks	/* Round 2 */
133147072Sbrooks	R2(A,B,C,D,X[ 5], 4,0xfffa3942L);
134147072Sbrooks	R2(D,A,B,C,X[ 8],11,0x8771f681L);
135147072Sbrooks	R2(C,D,A,B,X[11],16,0x6d9d6122L);
136147072Sbrooks	R2(B,C,D,A,X[14],23,0xfde5380cL);
137147072Sbrooks	R2(A,B,C,D,X[ 1], 4,0xa4beea44L);
138147072Sbrooks	R2(D,A,B,C,X[ 4],11,0x4bdecfa9L);
139147072Sbrooks	R2(C,D,A,B,X[ 7],16,0xf6bb4b60L);
140147072Sbrooks	R2(B,C,D,A,X[10],23,0xbebfbc70L);
141147072Sbrooks	R2(A,B,C,D,X[13], 4,0x289b7ec6L);
142147072Sbrooks	R2(D,A,B,C,X[ 0],11,0xeaa127faL);
143147072Sbrooks	R2(C,D,A,B,X[ 3],16,0xd4ef3085L);
144147072Sbrooks	R2(B,C,D,A,X[ 6],23,0x04881d05L);
145147072Sbrooks	R2(A,B,C,D,X[ 9], 4,0xd9d4d039L);
146147072Sbrooks	R2(D,A,B,C,X[12],11,0xe6db99e5L);
147147072Sbrooks	R2(C,D,A,B,X[15],16,0x1fa27cf8L);
148147072Sbrooks	R2(B,C,D,A,X[ 2],23,0xc4ac5665L);
149147072Sbrooks	/* Round 3 */
150147072Sbrooks	R3(A,B,C,D,X[ 0], 6,0xf4292244L);
151147072Sbrooks	R3(D,A,B,C,X[ 7],10,0x432aff97L);
152147072Sbrooks	R3(C,D,A,B,X[14],15,0xab9423a7L);
153147072Sbrooks	R3(B,C,D,A,X[ 5],21,0xfc93a039L);
154147072Sbrooks	R3(A,B,C,D,X[12], 6,0x655b59c3L);
155147072Sbrooks	R3(D,A,B,C,X[ 3],10,0x8f0ccc92L);
156147072Sbrooks	R3(C,D,A,B,X[10],15,0xffeff47dL);
157147072Sbrooks	R3(B,C,D,A,X[ 1],21,0x85845dd1L);
158147072Sbrooks	R3(A,B,C,D,X[ 8], 6,0x6fa87e4fL);
159147072Sbrooks	R3(D,A,B,C,X[15],10,0xfe2ce6e0L);
160147072Sbrooks	R3(C,D,A,B,X[ 6],15,0xa3014314L);
161147072Sbrooks	R3(B,C,D,A,X[13],21,0x4e0811a1L);
162147072Sbrooks	R3(A,B,C,D,X[ 4], 6,0xf7537e82L);
163147072Sbrooks	R3(D,A,B,C,X[11],10,0xbd3af235L);
164147072Sbrooks	R3(C,D,A,B,X[ 2],15,0x2ad7d2bbL);
165147072Sbrooks	R3(B,C,D,A,X[ 9],21,0xeb86d391L);
166147072Sbrooks
167147072Sbrooks	A = c->A += A;
168147072Sbrooks	B = c->B += B;
169147072Sbrooks	C = c->C += C;
170147072Sbrooks	D = c->D += D;
171147072Sbrooks		}
172147072Sbrooks	}
173147072Sbrooks#endif
174147072Sbrooks
175147138Sbrooks#ifndef md5_block_data_order
176147138Sbrooks#ifdef X
177147138Sbrooks#undef X
178147138Sbrooks#endif
179147138Sbrooksvoid md5_block_data_order (MD5_CTX *c, const void *data_, int num)
180147138Sbrooks	{
181147138Sbrooks	const unsigned char *data=data_;
182147138Sbrooks	register unsigned MD32_REG_T A,B,C,D,l;
183147138Sbrooks#ifndef MD32_XARRAY
184147138Sbrooks	/* See comment in crypto/sha/sha_locl.h for details. */
185147072Sbrooks	unsigned MD32_REG_T	XX0, XX1, XX2, XX3, XX4, XX5, XX6, XX7,
186147072Sbrooks				XX8, XX9,XX10,XX11,XX12,XX13,XX14,XX15;
187147072Sbrooks# define X(i)	XX##i
188147072Sbrooks#else
189147086Sbrooks	MD5_LONG XX[MD5_LBLOCK];
190147086Sbrooks# define X(i)	XX[i]
191147086Sbrooks#endif
192147086Sbrooks
193147072Sbrooks	A=c->A;
194147072Sbrooks	B=c->B;
195147072Sbrooks	C=c->C;
196147072Sbrooks	D=c->D;
197147072Sbrooks
198147072Sbrooks	for (;num--;)
199147072Sbrooks		{
200147072Sbrooks	HOST_c2l(data,l); X( 0)=l;		HOST_c2l(data,l); X( 1)=l;
201147072Sbrooks	/* Round 0 */
202147072Sbrooks	R0(A,B,C,D,X( 0), 7,0xd76aa478L);	HOST_c2l(data,l); X( 2)=l;
203147072Sbrooks	R0(D,A,B,C,X( 1),12,0xe8c7b756L);	HOST_c2l(data,l); X( 3)=l;
204147072Sbrooks	R0(C,D,A,B,X( 2),17,0x242070dbL);	HOST_c2l(data,l); X( 4)=l;
205147072Sbrooks	R0(B,C,D,A,X( 3),22,0xc1bdceeeL);	HOST_c2l(data,l); X( 5)=l;
206147072Sbrooks	R0(A,B,C,D,X( 4), 7,0xf57c0fafL);	HOST_c2l(data,l); X( 6)=l;
207147072Sbrooks	R0(D,A,B,C,X( 5),12,0x4787c62aL);	HOST_c2l(data,l); X( 7)=l;
208147072Sbrooks	R0(C,D,A,B,X( 6),17,0xa8304613L);	HOST_c2l(data,l); X( 8)=l;
209147072Sbrooks	R0(B,C,D,A,X( 7),22,0xfd469501L);	HOST_c2l(data,l); X( 9)=l;
210147072Sbrooks	R0(A,B,C,D,X( 8), 7,0x698098d8L);	HOST_c2l(data,l); X(10)=l;
211147086Sbrooks	R0(D,A,B,C,X( 9),12,0x8b44f7afL);	HOST_c2l(data,l); X(11)=l;
212147072Sbrooks	R0(C,D,A,B,X(10),17,0xffff5bb1L);	HOST_c2l(data,l); X(12)=l;
213147072Sbrooks	R0(B,C,D,A,X(11),22,0x895cd7beL);	HOST_c2l(data,l); X(13)=l;
214147072Sbrooks	R0(A,B,C,D,X(12), 7,0x6b901122L);	HOST_c2l(data,l); X(14)=l;
215147072Sbrooks	R0(D,A,B,C,X(13),12,0xfd987193L);	HOST_c2l(data,l); X(15)=l;
216147072Sbrooks	R0(C,D,A,B,X(14),17,0xa679438eL);
217147072Sbrooks	R0(B,C,D,A,X(15),22,0x49b40821L);
218147072Sbrooks	/* Round 1 */
219147072Sbrooks	R1(A,B,C,D,X( 1), 5,0xf61e2562L);
220147072Sbrooks	R1(D,A,B,C,X( 6), 9,0xc040b340L);
221147072Sbrooks	R1(C,D,A,B,X(11),14,0x265e5a51L);
222147072Sbrooks	R1(B,C,D,A,X( 0),20,0xe9b6c7aaL);
223147072Sbrooks	R1(A,B,C,D,X( 5), 5,0xd62f105dL);
224147072Sbrooks	R1(D,A,B,C,X(10), 9,0x02441453L);
225147072Sbrooks	R1(C,D,A,B,X(15),14,0xd8a1e681L);
226147072Sbrooks	R1(B,C,D,A,X( 4),20,0xe7d3fbc8L);
227147072Sbrooks	R1(A,B,C,D,X( 9), 5,0x21e1cde6L);
228147072Sbrooks	R1(D,A,B,C,X(14), 9,0xc33707d6L);
229147072Sbrooks	R1(C,D,A,B,X( 3),14,0xf4d50d87L);
230147072Sbrooks	R1(B,C,D,A,X( 8),20,0x455a14edL);
231147072Sbrooks	R1(A,B,C,D,X(13), 5,0xa9e3e905L);
232147072Sbrooks	R1(D,A,B,C,X( 2), 9,0xfcefa3f8L);
233147072Sbrooks	R1(C,D,A,B,X( 7),14,0x676f02d9L);
234147072Sbrooks	R1(B,C,D,A,X(12),20,0x8d2a4c8aL);
235147072Sbrooks	/* Round 2 */
236147072Sbrooks	R2(A,B,C,D,X( 5), 4,0xfffa3942L);
237147072Sbrooks	R2(D,A,B,C,X( 8),11,0x8771f681L);
238147072Sbrooks	R2(C,D,A,B,X(11),16,0x6d9d6122L);
239147072Sbrooks	R2(B,C,D,A,X(14),23,0xfde5380cL);
240147072Sbrooks	R2(A,B,C,D,X( 1), 4,0xa4beea44L);
241147072Sbrooks	R2(D,A,B,C,X( 4),11,0x4bdecfa9L);
242147072Sbrooks	R2(C,D,A,B,X( 7),16,0xf6bb4b60L);
243147072Sbrooks	R2(B,C,D,A,X(10),23,0xbebfbc70L);
244147072Sbrooks	R2(A,B,C,D,X(13), 4,0x289b7ec6L);
245147072Sbrooks	R2(D,A,B,C,X( 0),11,0xeaa127faL);
246147072Sbrooks	R2(C,D,A,B,X( 3),16,0xd4ef3085L);
247147072Sbrooks	R2(B,C,D,A,X( 6),23,0x04881d05L);
248147072Sbrooks	R2(A,B,C,D,X( 9), 4,0xd9d4d039L);
249147072Sbrooks	R2(D,A,B,C,X(12),11,0xe6db99e5L);
250147072Sbrooks	R2(C,D,A,B,X(15),16,0x1fa27cf8L);
251147072Sbrooks	R2(B,C,D,A,X( 2),23,0xc4ac5665L);
252147086Sbrooks	/* Round 3 */
253147072Sbrooks	R3(A,B,C,D,X( 0), 6,0xf4292244L);
254147072Sbrooks	R3(D,A,B,C,X( 7),10,0x432aff97L);
255147072Sbrooks	R3(C,D,A,B,X(14),15,0xab9423a7L);
256147072Sbrooks	R3(B,C,D,A,X( 5),21,0xfc93a039L);
257147072Sbrooks	R3(A,B,C,D,X(12), 6,0x655b59c3L);
258147072Sbrooks	R3(D,A,B,C,X( 3),10,0x8f0ccc92L);
259147072Sbrooks	R3(C,D,A,B,X(10),15,0xffeff47dL);
260147138Sbrooks	R3(B,C,D,A,X( 1),21,0x85845dd1L);
261147072Sbrooks	R3(A,B,C,D,X( 8), 6,0x6fa87e4fL);
262147072Sbrooks	R3(D,A,B,C,X(15),10,0xfe2ce6e0L);
263147072Sbrooks	R3(C,D,A,B,X( 6),15,0xa3014314L);
264147072Sbrooks	R3(B,C,D,A,X(13),21,0x4e0811a1L);
265147072Sbrooks	R3(A,B,C,D,X( 4), 6,0xf7537e82L);
266147138Sbrooks	R3(D,A,B,C,X(11),10,0xbd3af235L);
267147072Sbrooks	R3(C,D,A,B,X( 2),15,0x2ad7d2bbL);
268147072Sbrooks	R3(B,C,D,A,X( 9),21,0xeb86d391L);
269147072Sbrooks
270147138Sbrooks	A = c->A += A;
271	B = c->B += B;
272	C = c->C += C;
273	D = c->D += D;
274		}
275	}
276#endif
277
278#ifdef undef
279int printit(unsigned long *l)
280	{
281	int i,ii;
282
283	for (i=0; i<2; i++)
284		{
285		for (ii=0; ii<8; ii++)
286			{
287			fprintf(stderr,"%08lx ",l[i*8+ii]);
288			}
289		fprintf(stderr,"\n");
290		}
291	}
292#endif
293