mirror of
https://github.com/Telecominfraproject/OpenCellular.git
synced 2025-11-24 02:05:01 +00:00
This reduces the number of exported header files to the minimum needed by
the existing userspace utilities and firmware implementations.
BUG=chromium:221544
BRANCH=none
TEST=manual, trybots
CQ-DEPEND=CL:47019,CL:47022,CL:47023
sudo FEATURES=test emerge vboot_reference
FEATURES=test emerge-$BOARD \
vboot_reference \
chromeos-cryptohome \
chromeos-installer \
chromeos-u-boot \
peach-u-boot \
depthcharge
Change-Id: I2946cc2dbaf5459a6c5eca92ca57d546498e6d85
Signed-off-by: Bill Richardson <wfrichar@chromium.org>
Reviewed-on: https://gerrit.chromium.org/gerrit/47021
Reviewed-by: Randall Spangler <rspangler@chromium.org>
58 lines
1.5 KiB
C
58 lines
1.5 KiB
C
/* Copyright (c) 2010 The Chromium OS Authors. All rights reserved.
|
|
* Use of this source code is governed by a BSD-style license that can be
|
|
* found in the LICENSE file.
|
|
*
|
|
* Utility for aiding fuzz testing of kernel image verification code.
|
|
*/
|
|
|
|
#include <stdint.h>
|
|
#include <stdio.h>
|
|
|
|
#include "file_keys.h"
|
|
#include "kernel_image.h"
|
|
#include "utility.h"
|
|
|
|
int VerifySignedKernel(const char* image_file,
|
|
const char* firmware_key_file) {
|
|
int error, error_code = 0;
|
|
uint64_t len;
|
|
uint8_t* kernel_blob = BufferFromFile(image_file, &len);
|
|
uint8_t* firmware_key_blob = BufferFromFile(firmware_key_file, &len);
|
|
|
|
if (!firmware_key_blob) {
|
|
fprintf(stderr, "Couldn't read pre-processed public firmware key.\n");
|
|
error_code = 1;
|
|
}
|
|
|
|
if (!error_code && !kernel_blob) {
|
|
fprintf(stderr, "Couldn't read kernel image or malformed image.\n");
|
|
error_code = 1;
|
|
}
|
|
|
|
if (!error_code && (error = VerifyKernel(firmware_key_blob, kernel_blob,
|
|
0))) { /* Trusted Mode. */
|
|
fprintf(stderr, "%s\n", VerifyKernelErrorString(error));
|
|
error_code = 1;
|
|
}
|
|
Free(firmware_key_blob);
|
|
Free(kernel_blob);
|
|
if (error_code)
|
|
return 0;
|
|
return 1;
|
|
}
|
|
|
|
int main(int argc, char* argv[]) {
|
|
if (argc != 3) {
|
|
fprintf(stderr, "Usage: %s <image_to_verify> <firmware_keyb>\n", argv[0]);
|
|
return -1;
|
|
}
|
|
if (VerifySignedKernel(argv[1], argv[2])) {
|
|
fprintf(stderr, "Verification SUCCESS!\n");
|
|
return 0;
|
|
}
|
|
else {
|
|
fprintf(stderr, "Verification FAILURE!\n");
|
|
return -1;
|
|
}
|
|
}
|