1*e3723e1fSApple OSS Distributions /*
2*e3723e1fSApple OSS Distributions * Copyright (c) 2020 Apple Inc. All rights reserved.
3*e3723e1fSApple OSS Distributions *
4*e3723e1fSApple OSS Distributions * @APPLE_OSREFERENCE_LICENSE_HEADER_START@
5*e3723e1fSApple OSS Distributions *
6*e3723e1fSApple OSS Distributions * This file contains Original Code and/or Modifications of Original Code
7*e3723e1fSApple OSS Distributions * as defined in and that are subject to the Apple Public Source License
8*e3723e1fSApple OSS Distributions * Version 2.0 (the 'License'). You may not use this file except in
9*e3723e1fSApple OSS Distributions * compliance with the License. The rights granted to you under the License
10*e3723e1fSApple OSS Distributions * may not be used to create, or enable the creation or redistribution of,
11*e3723e1fSApple OSS Distributions * unlawful or unlicensed copies of an Apple operating system, or to
12*e3723e1fSApple OSS Distributions * circumvent, violate, or enable the circumvention or violation of, any
13*e3723e1fSApple OSS Distributions * terms of an Apple operating system software license agreement.
14*e3723e1fSApple OSS Distributions *
15*e3723e1fSApple OSS Distributions * Please obtain a copy of the License at
16*e3723e1fSApple OSS Distributions * http://www.opensource.apple.com/apsl/ and read it before using this file.
17*e3723e1fSApple OSS Distributions *
18*e3723e1fSApple OSS Distributions * The Original Code and all software distributed under the License are
19*e3723e1fSApple OSS Distributions * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
20*e3723e1fSApple OSS Distributions * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
21*e3723e1fSApple OSS Distributions * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
22*e3723e1fSApple OSS Distributions * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
23*e3723e1fSApple OSS Distributions * Please see the License for the specific language governing rights and
24*e3723e1fSApple OSS Distributions * limitations under the License.
25*e3723e1fSApple OSS Distributions *
26*e3723e1fSApple OSS Distributions * @APPLE_OSREFERENCE_LICENSE_HEADER_END@
27*e3723e1fSApple OSS Distributions */
28*e3723e1fSApple OSS Distributions
29*e3723e1fSApple OSS Distributions #include <IOKit/IOLib.h>
30*e3723e1fSApple OSS Distributions #include <kern/debug.h> // for panic()
31*e3723e1fSApple OSS Distributions
32*e3723e1fSApple OSS Distributions #include <libkern/ptrauth_utils.h>
33*e3723e1fSApple OSS Distributions
34*e3723e1fSApple OSS Distributions /*
35*e3723e1fSApple OSS Distributions * On ptrauth systems, ptrauth_utils_sign_blob_generic is implemented
36*e3723e1fSApple OSS Distributions * in osfmk/arm64/machine_routines_asm.s
37*e3723e1fSApple OSS Distributions */
38*e3723e1fSApple OSS Distributions
39*e3723e1fSApple OSS Distributions #if !__has_feature(ptrauth_calls)
40*e3723e1fSApple OSS Distributions ptrauth_generic_signature_t
ptrauth_utils_sign_blob_generic(__unused const void * ptr,__unused size_t len_bytes,__unused uint64_t data,__unused int flags)41*e3723e1fSApple OSS Distributions ptrauth_utils_sign_blob_generic(__unused const void * ptr, __unused size_t len_bytes, __unused uint64_t data, __unused int flags)
42*e3723e1fSApple OSS Distributions {
43*e3723e1fSApple OSS Distributions return 0;
44*e3723e1fSApple OSS Distributions }
45*e3723e1fSApple OSS Distributions #endif // __has_feature(ptrauth_calls)
46*e3723e1fSApple OSS Distributions
47*e3723e1fSApple OSS Distributions
48*e3723e1fSApple OSS Distributions /*
49*e3723e1fSApple OSS Distributions * ptrauth_utils_auth_blob_generic
50*e3723e1fSApple OSS Distributions *
51*e3723e1fSApple OSS Distributions * Authenticate signature produced by ptrauth_utils_sign_blob_generic
52*e3723e1fSApple OSS Distributions */
53*e3723e1fSApple OSS Distributions
54*e3723e1fSApple OSS Distributions #if __has_feature(ptrauth_calls)
55*e3723e1fSApple OSS Distributions __attribute__((noinline))
56*e3723e1fSApple OSS Distributions void
ptrauth_utils_auth_blob_generic(const void * ptr,size_t len_bytes,uint64_t data,int flags,ptrauth_generic_signature_t signature)57*e3723e1fSApple OSS Distributions ptrauth_utils_auth_blob_generic(const void * ptr, size_t len_bytes, uint64_t data, int flags, ptrauth_generic_signature_t signature)
58*e3723e1fSApple OSS Distributions {
59*e3723e1fSApple OSS Distributions ptrauth_generic_signature_t calculated_signature = 0;
60*e3723e1fSApple OSS Distributions
61*e3723e1fSApple OSS Distributions if (ptr == NULL) {
62*e3723e1fSApple OSS Distributions if (flags & PTRAUTH_NON_NULL) {
63*e3723e1fSApple OSS Distributions panic("ptrauth_utils_auth_blob_generic: ptr must not be NULL");
64*e3723e1fSApple OSS Distributions } else {
65*e3723e1fSApple OSS Distributions return;
66*e3723e1fSApple OSS Distributions }
67*e3723e1fSApple OSS Distributions }
68*e3723e1fSApple OSS Distributions
69*e3723e1fSApple OSS Distributions if ((calculated_signature = ptrauth_utils_sign_blob_generic(ptr, len_bytes, data, flags)) == signature) {
70*e3723e1fSApple OSS Distributions return;
71*e3723e1fSApple OSS Distributions } else {
72*e3723e1fSApple OSS Distributions panic("signature mismatch for %lu bytes at %p, calculated %lx vs %lx", len_bytes,
73*e3723e1fSApple OSS Distributions ptr,
74*e3723e1fSApple OSS Distributions calculated_signature,
75*e3723e1fSApple OSS Distributions signature);
76*e3723e1fSApple OSS Distributions }
77*e3723e1fSApple OSS Distributions }
78*e3723e1fSApple OSS Distributions #else
79*e3723e1fSApple OSS Distributions void
ptrauth_utils_auth_blob_generic(__unused const void * ptr,__unused size_t len_bytes,__unused uint64_t data,__unused int flags,__unused ptrauth_generic_signature_t signature)80*e3723e1fSApple OSS Distributions ptrauth_utils_auth_blob_generic(__unused const void * ptr, __unused size_t len_bytes, __unused uint64_t data, __unused int flags, __unused ptrauth_generic_signature_t signature)
81*e3723e1fSApple OSS Distributions {
82*e3723e1fSApple OSS Distributions return;
83*e3723e1fSApple OSS Distributions }
84*e3723e1fSApple OSS Distributions #endif // __has_feature(ptrauth_calls)
85