Neil Horman a552c23c65 Harden asn1 oid loader to invalid inputs vor 11 Monaten
..
aes 84356a02fe remove duplicated typedef for u64 vor 11 Monaten
aria 36c269c302 Change loops conditions to make zero loop risk more obvious. vor 2 Jahren
asn1 a552c23c65 Harden asn1 oid loader to invalid inputs vor 11 Monaten
async e077455e9e Stop raising ERR_R_MALLOC_FAILURE in most places vor 2 Jahren
bf f6a6f7b6aa Avoid duplicating symbols in legacy.a with some build options vor 1 Jahr
bio 5cd1792016 Deprecate SPT threading support on NonStop. vor 11 Monaten
bn 9c1b8f17ce Avoid an infinite loop in BN_GF2m_mod_inv vor 11 Monaten
buffer e077455e9e Stop raising ERR_R_MALLOC_FAILURE in most places vor 2 Jahren
camellia 9968c77539 Rename x86-32 assembly files from .s to .S. vor 2 Jahren
cast da1c088f59 Copyright year updates vor 1 Jahr
chacha fcf68127e2 riscv: Provide a vector implementation of CHACHA20 cipher. vor 1 Jahr
cmac da1c088f59 Copyright year updates vor 1 Jahr
cmp ac0677bd23 CMP: fix OSSL_CMP_MSG_http_perform() by adding option OSSL_CMP_OPT_USE_TLS vor 1 Jahr
cms 3e3aadd51c Fix a possible memleak in CMS_sign_receipt vor 11 Monaten
comp da1c088f59 Copyright year updates vor 1 Jahr
conf 26f75c2d60 Add notes on use of strdup vor 1 Jahr
crmf da1c088f59 Copyright year updates vor 1 Jahr
ct e077455e9e Stop raising ERR_R_MALLOC_FAILURE in most places vor 2 Jahren
des da1c088f59 Copyright year updates vor 1 Jahr
dh ec061bf8ff Make DH_check_pub_key() and DH_generate_key() safer yet vor 1 Jahr
dsa eaee1765a4 DH_check_pub_key() should not fail when setting result code vor 1 Jahr
dso da1c088f59 Copyright year updates vor 1 Jahr
ec 3ffc6c644c Correct comment in crypto/ec/curve448/ed448.h vor 1 Jahr
encode_decode 0541fa7802 ossl_decoder_cache_flush(): Do not raise an error if there is no cache vor 11 Monaten
engine 2b74e75331 Improved detection of engine-provided private "classic" keys vor 1 Jahr
err ec061bf8ff Make DH_check_pub_key() and DH_generate_key() safer yet vor 1 Jahr
ess e077455e9e Stop raising ERR_R_MALLOC_FAILURE in most places vor 2 Jahren
evp 5366490822 Add EVP_DigestSqueeze() API. vor 1 Jahr
ffc eaee1765a4 DH_check_pub_key() should not fail when setting result code vor 1 Jahr
hmac 21dfdbef49 Adapt other parts of the source to the changed EVP_Q_digest() and EVP_Q_mac() vor 3 Jahren
hpke a1c0306895 Add additional internal HPKE hardening checks resulting from code audit. vor 1 Jahr
http 322517d817 Fix some invalid use of sscanf vor 11 Monaten
idea f6a6f7b6aa Avoid duplicating symbols in legacy.a with some build options vor 1 Jahr
kdf 905b097fd5 Deprecate ERR_load_KDF_strings() vor 5 Jahren
lhash 6a92159d01 All lh_stats functions were deprecated in 3.1 vor 1 Jahr
md2 f6a6f7b6aa Avoid duplicating symbols in legacy.a with some build options vor 1 Jahr
md4 f6a6f7b6aa Avoid duplicating symbols in legacy.a with some build options vor 1 Jahr
md5 ad347c9ff0 Enable BTI feature for md5 on aarch64 vor 11 Monaten
mdc2 f6a6f7b6aa Avoid duplicating symbols in legacy.a with some build options vor 1 Jahr
modes ebecf322e5 Provide additional AES-GCM test patterns to enhance test coverage. vor 1 Jahr
objects cd920f8fa1 ensure that ossl_obj_nid_lock is allocated before use vor 1 Jahr
ocsp da1c088f59 Copyright year updates vor 1 Jahr
pem 556009c596 Copyright year updates vor 1 Jahr
perlasm 1da7c09f79 x86_64-xlate.pl: Fix build with icx and nvc compilers vor 11 Monaten
pkcs12 556009c596 Copyright year updates vor 1 Jahr
pkcs7 7d52539f00 Fix possible memleak in PKCS7_add0_attrib_signing_time vor 11 Monaten
poly1305 da1c088f59 Copyright year updates vor 1 Jahr
property 986c48c4eb Add overflow checks to parse_number/parse_hex/parse_oct vor 11 Monaten
rand f1e0c94545 internal/common.h: rename macro `(un)likely` to `ossl_(un)likely` vor 1 Jahr
rc2 da1c088f59 Copyright year updates vor 1 Jahr
rc4 da1c088f59 Copyright year updates vor 1 Jahr
rc5 da1c088f59 Copyright year updates vor 1 Jahr
ripemd f6a6f7b6aa Avoid duplicating symbols in legacy.a with some build options vor 1 Jahr
rsa 8b268541d9 rsa: Add SP800-56Br2 6.4.1.2.1 (3.c) check vor 1 Jahr
seed f6a6f7b6aa Avoid duplicating symbols in legacy.a with some build options vor 1 Jahr
sha f58d39fb9f SHA3_squeeze(): The next argument is int vor 11 Monaten
siphash c734058309 crypto/*: Fix various typos, repeated words, align some spelling to LDP. vor 2 Jahren
sm2 da1c088f59 Copyright year updates vor 1 Jahr
sm3 1c25bc2e3f riscv: Support sm3 on platforms with vlen >= 128. vor 1 Jahr
sm4 3645eb0be2 Update for Zvkb extension. vor 1 Jahr
srp 556009c596 Copyright year updates vor 1 Jahr
stack da1c088f59 Copyright year updates vor 1 Jahr
store 556009c596 Copyright year updates vor 1 Jahr
thread da1c088f59 Copyright year updates vor 1 Jahr
ts da1c088f59 Copyright year updates vor 1 Jahr
txt_db da1c088f59 Copyright year updates vor 1 Jahr
ui da1c088f59 Copyright year updates vor 1 Jahr
whrlpool da1c088f59 Copyright year updates vor 1 Jahr
x509 1c078212f1 Fix a possible memory leak in do_othername vor 11 Monaten
LPdir_nyi.c 0e9725bcb9 Following the license change, modify the boilerplates in crypto/ vor 6 Jahren
LPdir_unix.c da1c088f59 Copyright year updates vor 1 Jahr
LPdir_vms.c 0e9725bcb9 Following the license change, modify the boilerplates in crypto/ vor 6 Jahren
LPdir_win.c 0e9725bcb9 Following the license change, modify the boilerplates in crypto/ vor 6 Jahren
LPdir_win32.c 0e9725bcb9 Following the license change, modify the boilerplates in crypto/ vor 6 Jahren
LPdir_wince.c 0e9725bcb9 Following the license change, modify the boilerplates in crypto/ vor 6 Jahren
README-sparse_array.md 1dc1ea182b Fix many MarkDown issues in {NOTES*,README*,HACKING,LICENSE}.md files vor 4 Jahren
alphacpuid.pl 33388b44b6 Update copyright year vor 4 Jahren
arm64cpuid.pl fecb3aae22 Update copyright year vor 2 Jahren
arm_arch.h cc82b09cbd Optimize AES-CTR for ARM Neoverse V1 and V2. vor 11 Monaten
armcap.c cc82b09cbd Optimize AES-CTR for ARM Neoverse V1 and V2. vor 11 Monaten
armv4cpuid.pl da1c088f59 Copyright year updates vor 1 Jahr
asn1_dsa.c 3c2bdd7df9 Update copyright year vor 3 Jahren
bsearch.c 5c3f1e34b5 ossl_bsearch(): New generic internal binary search utility function vor 5 Jahren
build.info 34d36cdcbd Do not include sparse_array.o in libssl vor 1 Jahr
c64xpluscpuid.pl 33388b44b6 Update copyright year vor 4 Jahren
context.c da1c088f59 Copyright year updates vor 1 Jahr
core_algorithm.c e077455e9e Stop raising ERR_R_MALLOC_FAILURE in most places vor 2 Jahren
core_fetch.c e1eafe8c87 "Reserve" the method store when constructing methods vor 2 Jahren
core_namemap.c da1c088f59 Copyright year updates vor 1 Jahr
cpt_err.c 826da1451b err: add additional errors vor 2 Jahren
cpuid.c 556009c596 Copyright year updates vor 1 Jahr
cryptlib.c da1c088f59 Copyright year updates vor 1 Jahr
ctype.c da1c088f59 Copyright year updates vor 1 Jahr
cversion.c 26b7cc0d20 Cleanup include/openssl/opensslv.h.in vor 5 Jahren
der_writer.c 59196250cb der_writer: Use uint32_t instead of long. vor 2 Jahren
deterministic_nonce.c da1c088f59 Copyright year updates vor 1 Jahr
dllmain.c fecb3aae22 Update copyright year vor 2 Jahren
ebcdic.c 0e9725bcb9 Following the license change, modify the boilerplates in crypto/ vor 6 Jahren
ex_data.c d4f22a915a Fix error handling in CRYPTO_get_ex_new_index vor 1 Jahr
getenv.c fecb3aae22 Update copyright year vor 2 Jahren
ia64cpuid.S 0e9725bcb9 Following the license change, modify the boilerplates in crypto/ vor 6 Jahren
info.c da1c088f59 Copyright year updates vor 1 Jahr
init.c da1c088f59 Copyright year updates vor 1 Jahr
initthread.c c61fda2ff8 crypto/initthread.c: fix misspelled OSSL_provider_init() in comment vor 1 Jahr
loongarch64cpuid.pl 7f2d6188c7 Add LoongArch64 cpuid and OPENSSL_loongarchcap_P vor 2 Jahren
loongarch_arch.h da1c088f59 Copyright year updates vor 1 Jahr
loongarchcap.c da1c088f59 Copyright year updates vor 1 Jahr
mem.c 3b107b86ca Windows: use srand() instead of srandom() vor 1 Jahr
mem_clr.c 0e9725bcb9 Following the license change, modify the boilerplates in crypto/ vor 6 Jahren
mem_sec.c 7eae6ee0e5 Add locking to CRYPTO_secure_used vor 11 Monaten
mips_arch.h ae4186b004 Fix header file include guard names vor 5 Jahren
o_dir.c fecb3aae22 Update copyright year vor 2 Jahren
o_fopen.c 1567a821a4 crypto: Fix various typos, repeated words, align some spelling to LDP. vor 2 Jahren
o_init.c fecb3aae22 Update copyright year vor 2 Jahren
o_str.c 556009c596 Copyright year updates vor 1 Jahr
o_time.c 8020d79b40 Update copyright year vor 3 Jahren
packet.c da1c088f59 Copyright year updates vor 1 Jahr
param_build.c d4d6694aa7 ossl-params: check length returned by strlen() vor 11 Monaten
param_build_set.c 15a39e7025 ossl_param_build_set_multi_key_bn(): Do not set NULL BIGNUMs vor 1 Jahr
params.c da1c088f59 Copyright year updates vor 1 Jahr
params_dup.c e077455e9e Stop raising ERR_R_MALLOC_FAILURE in most places vor 2 Jahren
params_from_text.c e077455e9e Stop raising ERR_R_MALLOC_FAILURE in most places vor 2 Jahren
params_idx.c.in e84b5fcc1b params: provide a faster TRIE based param lookup. vor 1 Jahr
pariscid.pl 33388b44b6 Update copyright year vor 4 Jahren
passphrase.c e077455e9e Stop raising ERR_R_MALLOC_FAILURE in most places vor 2 Jahren
ppccap.c fecb3aae22 Update copyright year vor 2 Jahren
ppccpuid.pl fecb3aae22 Update copyright year vor 2 Jahren
provider.c da1c088f59 Copyright year updates vor 1 Jahr
provider_child.c da1c088f59 Copyright year updates vor 1 Jahr
provider_conf.c da1c088f59 Copyright year updates vor 1 Jahr
provider_core.c 8fa65a6648 After initializing a provider, check if its output dispatch table is NULL vor 11 Monaten
provider_local.h b7248964a4 make struct provider_info_st a full type vor 3 Jahren
provider_predefined.c b7248964a4 make struct provider_info_st a full type vor 3 Jahren
punycode.c da1c088f59 Copyright year updates vor 1 Jahr
quic_vlint.c 6292519cd8 QUIC: Enable building with QUIC support disabled vor 1 Jahr
riscv32cpuid.pl 61170642b1 Add RISC-V 32 cpuid support vor 2 Jahren
riscv64cpuid.pl cdea67193d riscv: Add basic vector extension support vor 1 Jahr
riscvcap.c cdea67193d riscv: Add basic vector extension support vor 1 Jahr
s390x_arch.h da1c088f59 Copyright year updates vor 1 Jahr
s390xcap.c da1c088f59 Copyright year updates vor 1 Jahr
s390xcpuid.pl 33388b44b6 Update copyright year vor 4 Jahren
self_test_core.c fecb3aae22 Update copyright year vor 2 Jahren
sleep.c da1c088f59 Copyright year updates vor 1 Jahr
sparccpuid.S 0e9725bcb9 Following the license change, modify the boilerplates in crypto/ vor 6 Jahren
sparcv9cap.c 52f7e44ec8 Split bignum code out of the sparcv9cap.c vor 3 Jahren
sparse_array.c 93429fc0ce Coverity 1507376: Dereference after null check vor 2 Jahren
threads_lib.c 523e54c15c Define threads_lib.c functions only for OPENSSL_SYS_UNIX vor 2 Jahren
threads_none.c da1c088f59 Copyright year updates vor 1 Jahr
threads_pthread.c da1c088f59 Copyright year updates vor 1 Jahr
threads_win.c da1c088f59 Copyright year updates vor 1 Jahr
time.c da1c088f59 Copyright year updates vor 1 Jahr
trace.c bbaeadb068 "foo * bar" should be "foo *bar" vor 1 Jahr
uid.c da1c088f59 Copyright year updates vor 1 Jahr
vms_rms.h 0e9725bcb9 Following the license change, modify the boilerplates in crypto/ vor 6 Jahren
x86_64cpuid.pl 3c2bdd7df9 Update copyright year vor 3 Jahren
x86cpuid.pl 33388b44b6 Update copyright year vor 4 Jahren

README-sparse_array.md

Sparse Arrays

The sparse_array.c file contains an implementation of a sparse array that attempts to be both space and time efficient.

The sparse array is represented using a tree structure. Each node in the tree contains a block of pointers to either the user supplied leaf values or to another node.

There are a number of parameters used to define the block size:

OPENSSL_SA_BLOCK_BITS   Specifies the number of bits covered by each block
SA_BLOCK_MAX            Specifies the number of pointers in each block
SA_BLOCK_MASK           Specifies a bit mask to perform modulo block size
SA_BLOCK_MAX_LEVELS     Indicates the maximum possible height of the tree

These constants are inter-related:

SA_BLOCK_MAX        = 2 ^ OPENSSL_SA_BLOCK_BITS
SA_BLOCK_MASK       = SA_BLOCK_MAX - 1
SA_BLOCK_MAX_LEVELS = number of bits in size_t divided by
                      OPENSSL_SA_BLOCK_BITS rounded up to the next multiple
                      of OPENSSL_SA_BLOCK_BITS

OPENSSL_SA_BLOCK_BITS can be defined at compile time and this overrides the built in setting.

As a space and performance optimisation, the height of the tree is usually less than the maximum possible height. Only sufficient height is allocated to accommodate the largest index added to the data structure.

The largest index used to add a value to the array determines the tree height:

    +----------------------+---------------------+
    | Largest Added Index  |   Height of Tree    |
    +----------------------+---------------------+
    | SA_BLOCK_MAX     - 1 |          1          |
    | SA_BLOCK_MAX ^ 2 - 1 |          2          |
    | SA_BLOCK_MAX ^ 3 - 1 |          3          |
    | ...                  |          ...        |
    | size_t max           | SA_BLOCK_MAX_LEVELS |
    +----------------------+---------------------+

The tree height is dynamically increased as needed based on additions.

An empty tree is represented by a NULL root pointer. Inserting a value at index 0 results in the allocation of a top level node full of null pointers except for the single pointer to the user's data (N = SA_BLOCK_MAX for brevity):

    +----+
    |Root|
    |Node|
    +-+--+
      |
      |
      |
      v
    +-+-+---+---+---+---+
    | 0 | 1 | 2 |...|N-1|
    |   |nil|nil|...|nil|
    +-+-+---+---+---+---+
      |
      |
      |
      v
    +-+--+
    |User|
    |Data|
    +----+
Index 0

Inserting at element 2N+1 creates a new root node and pushes down the old root node. It then creates a second second level node to hold the pointer to the user's new data:

    +----+
    |Root|
    |Node|
    +-+--+
      |
      |
      |
      v
    +-+-+---+---+---+---+
    | 0 | 1 | 2 |...|N-1|
    |   |nil|   |...|nil|
    +-+-+---+-+-+---+---+
      |       |
      |       +------------------+
      |                          |
      v                          v
    +-+-+---+---+---+---+      +-+-+---+---+---+---+
    | 0 | 1 | 2 |...|N-1|      | 0 | 1 | 2 |...|N-1|
    |nil|   |nil|...|nil|      |nil|   |nil|...|nil|
    +-+-+---+---+---+---+      +---+-+-+---+---+---+
      |                              |
      |                              |
      |                              |
      v                              v
    +-+--+                         +-+--+
    |User|                         |User|
    |Data|                         |Data|
    +----+                         +----+
Index 0                       Index 2N+1

The nodes themselves are allocated in a sparse manner. Only nodes which exist along a path from the root of the tree to an added leaf will be allocated. The complexity is hidden and nodes are allocated on an as needed basis. Because the data is expected to be sparse this doesn't result in a large waste of space.

Values can be removed from the sparse array by setting their index position to NULL. The data structure does not attempt to reclaim nodes or reduce the height of the tree on removal. For example, now setting index 0 to NULL would result in:

    +----+
    |Root|
    |Node|
    +-+--+
      |
      |
      |
      v
    +-+-+---+---+---+---+
    | 0 | 1 | 2 |...|N-1|
    |   |nil|   |...|nil|
    +-+-+---+-+-+---+---+
      |       |
      |       +------------------+
      |                          |
      v                          v
    +-+-+---+---+---+---+      +-+-+---+---+---+---+
    | 0 | 1 | 2 |...|N-1|      | 0 | 1 | 2 |...|N-1|
    |nil|nil|nil|...|nil|      |nil|   |nil|...|nil|
    +---+---+---+---+---+      +---+-+-+---+---+---+
                                     |
                                     |
                                     |
                                     v
                                   +-+--+
                                   |User|
                                   |Data|
                                   +----+
                              Index 2N+1

Accesses to elements in the sparse array take O(log n) time where n is the largest element. The base of the logarithm is SA_BLOCK_MAX, so for moderately small indices (e.g. NIDs), single level (constant time) access is achievable. Space usage is O(minimum(m, n log(n)) where m is the number of elements in the array.

Note: sparse arrays only include pointers to types. Thus, SPARSE_ARRAY_OF(char) can be used to store a string.