1*19c3b8c2SApple OSS Distributions /*
2*19c3b8c2SApple OSS Distributions * Copyright (c) 2020 Apple Inc. All rights reserved.
3*19c3b8c2SApple OSS Distributions *
4*19c3b8c2SApple OSS Distributions * @APPLE_OSREFERENCE_LICENSE_HEADER_START@
5*19c3b8c2SApple OSS Distributions *
6*19c3b8c2SApple OSS Distributions * This file contains Original Code and/or Modifications of Original Code
7*19c3b8c2SApple OSS Distributions * as defined in and that are subject to the Apple Public Source License
8*19c3b8c2SApple OSS Distributions * Version 2.0 (the 'License'). You may not use this file except in
9*19c3b8c2SApple OSS Distributions * compliance with the License. The rights granted to you under the License
10*19c3b8c2SApple OSS Distributions * may not be used to create, or enable the creation or redistribution of,
11*19c3b8c2SApple OSS Distributions * unlawful or unlicensed copies of an Apple operating system, or to
12*19c3b8c2SApple OSS Distributions * circumvent, violate, or enable the circumvention or violation of, any
13*19c3b8c2SApple OSS Distributions * terms of an Apple operating system software license agreement.
14*19c3b8c2SApple OSS Distributions *
15*19c3b8c2SApple OSS Distributions * Please obtain a copy of the License at
16*19c3b8c2SApple OSS Distributions * http://www.opensource.apple.com/apsl/ and read it before using this file.
17*19c3b8c2SApple OSS Distributions *
18*19c3b8c2SApple OSS Distributions * The Original Code and all software distributed under the License are
19*19c3b8c2SApple OSS Distributions * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
20*19c3b8c2SApple OSS Distributions * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
21*19c3b8c2SApple OSS Distributions * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
22*19c3b8c2SApple OSS Distributions * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
23*19c3b8c2SApple OSS Distributions * Please see the License for the specific language governing rights and
24*19c3b8c2SApple OSS Distributions * limitations under the License.
25*19c3b8c2SApple OSS Distributions *
26*19c3b8c2SApple OSS Distributions * @APPLE_OSREFERENCE_LICENSE_HEADER_END@
27*19c3b8c2SApple OSS Distributions */
28*19c3b8c2SApple OSS Distributions
29*19c3b8c2SApple OSS Distributions #include <IOKit/IOLib.h>
30*19c3b8c2SApple OSS Distributions #include <kern/debug.h> // for panic()
31*19c3b8c2SApple OSS Distributions
32*19c3b8c2SApple OSS Distributions #include <libkern/ptrauth_utils.h>
33*19c3b8c2SApple OSS Distributions
34*19c3b8c2SApple OSS Distributions /*
35*19c3b8c2SApple OSS Distributions * On ptrauth systems, ptrauth_utils_sign_blob_generic is implemented
36*19c3b8c2SApple OSS Distributions * in osfmk/arm64/machine_routines_asm.s
37*19c3b8c2SApple OSS Distributions */
38*19c3b8c2SApple OSS Distributions
39*19c3b8c2SApple OSS Distributions #if !__has_feature(ptrauth_calls)
40*19c3b8c2SApple OSS Distributions ptrauth_generic_signature_t
ptrauth_utils_sign_blob_generic(__unused const void * ptr,__unused size_t len_bytes,__unused uint64_t data,__unused int flags)41*19c3b8c2SApple OSS Distributions ptrauth_utils_sign_blob_generic(__unused const void * ptr, __unused size_t len_bytes, __unused uint64_t data, __unused int flags)
42*19c3b8c2SApple OSS Distributions {
43*19c3b8c2SApple OSS Distributions return 0;
44*19c3b8c2SApple OSS Distributions }
45*19c3b8c2SApple OSS Distributions #endif // __has_feature(ptrauth_calls)
46*19c3b8c2SApple OSS Distributions
47*19c3b8c2SApple OSS Distributions
48*19c3b8c2SApple OSS Distributions /*
49*19c3b8c2SApple OSS Distributions * ptrauth_utils_auth_blob_generic
50*19c3b8c2SApple OSS Distributions *
51*19c3b8c2SApple OSS Distributions * Authenticate signature produced by ptrauth_utils_sign_blob_generic
52*19c3b8c2SApple OSS Distributions */
53*19c3b8c2SApple OSS Distributions
54*19c3b8c2SApple OSS Distributions #if __has_feature(ptrauth_calls)
55*19c3b8c2SApple OSS Distributions __attribute__((noinline))
56*19c3b8c2SApple OSS Distributions void
ptrauth_utils_auth_blob_generic(const void * ptr,size_t len_bytes,uint64_t data,int flags,ptrauth_generic_signature_t signature)57*19c3b8c2SApple OSS Distributions ptrauth_utils_auth_blob_generic(const void * ptr, size_t len_bytes, uint64_t data, int flags, ptrauth_generic_signature_t signature)
58*19c3b8c2SApple OSS Distributions {
59*19c3b8c2SApple OSS Distributions ptrauth_generic_signature_t calculated_signature = 0;
60*19c3b8c2SApple OSS Distributions
61*19c3b8c2SApple OSS Distributions if (ptr == NULL) {
62*19c3b8c2SApple OSS Distributions if (flags & PTRAUTH_NON_NULL) {
63*19c3b8c2SApple OSS Distributions panic("ptrauth_utils_auth_blob_generic: ptr must not be NULL");
64*19c3b8c2SApple OSS Distributions } else {
65*19c3b8c2SApple OSS Distributions return;
66*19c3b8c2SApple OSS Distributions }
67*19c3b8c2SApple OSS Distributions }
68*19c3b8c2SApple OSS Distributions
69*19c3b8c2SApple OSS Distributions if ((calculated_signature = ptrauth_utils_sign_blob_generic(ptr, len_bytes, data, flags)) == signature) {
70*19c3b8c2SApple OSS Distributions return;
71*19c3b8c2SApple OSS Distributions } else {
72*19c3b8c2SApple OSS Distributions panic("signature mismatch for %lu bytes at %p, calculated %lx vs %lx", len_bytes,
73*19c3b8c2SApple OSS Distributions ptr,
74*19c3b8c2SApple OSS Distributions calculated_signature,
75*19c3b8c2SApple OSS Distributions signature);
76*19c3b8c2SApple OSS Distributions }
77*19c3b8c2SApple OSS Distributions }
78*19c3b8c2SApple OSS Distributions #else
79*19c3b8c2SApple OSS Distributions void
ptrauth_utils_auth_blob_generic(__unused const void * ptr,__unused size_t len_bytes,__unused uint64_t data,__unused int flags,__unused ptrauth_generic_signature_t signature)80*19c3b8c2SApple OSS Distributions ptrauth_utils_auth_blob_generic(__unused const void * ptr, __unused size_t len_bytes, __unused uint64_t data, __unused int flags, __unused ptrauth_generic_signature_t signature)
81*19c3b8c2SApple OSS Distributions {
82*19c3b8c2SApple OSS Distributions return;
83*19c3b8c2SApple OSS Distributions }
84*19c3b8c2SApple OSS Distributions #endif // __has_feature(ptrauth_calls)
85