blob: bbbd0db212b939bc9801ade785965cb368d8aca3 [file] [log] [blame]
[email protected]cf901f52012-05-10 04:21:481// Copyright (c) 2012 The Chromium Authors. All rights reserved.
2// Use of this source code is governed by a BSD-style license that can be
3// found in the LICENSE file.
4
5#include "net/websockets/websocket_frame_parser.h"
6
7#include <algorithm>
[email protected]8308b1d12012-08-01 08:31:298#include <limits>
dchengc7eeda422015-12-26 03:56:489#include <utility>
yhirano592ff7f2015-12-07 08:45:1910#include <vector>
[email protected]cf901f52012-05-10 04:21:4811
[email protected]d9806a972014-02-26 18:14:5712#include "base/big_endian.h"
[email protected]cf901f52012-05-10 04:21:4813#include "base/logging.h"
Bence Béky65623972018-03-05 15:31:5614#include "base/memory/scoped_refptr.h"
[email protected]8308b1d12012-08-01 08:31:2915#include "net/base/io_buffer.h"
[email protected]cf901f52012-05-10 04:21:4816#include "net/websockets/websocket_frame.h"
17
18namespace {
19
tfarina8a2c66c22015-10-13 19:14:4920const uint8_t kFinalBit = 0x80;
21const uint8_t kReserved1Bit = 0x40;
22const uint8_t kReserved2Bit = 0x20;
23const uint8_t kReserved3Bit = 0x10;
24const uint8_t kOpCodeMask = 0xF;
25const uint8_t kMaskBit = 0x80;
26const uint8_t kPayloadLengthMask = 0x7F;
27const uint64_t kMaxPayloadLengthWithoutExtendedLengthField = 125;
28const uint64_t kPayloadLengthWithTwoByteExtendedLengthField = 126;
29const uint64_t kPayloadLengthWithEightByteExtendedLengthField = 127;
Yoichi Osato9a742192019-07-29 08:57:3630const size_t kMaximumFrameHeaderSize =
31 net::WebSocketFrameHeader::kBaseHeaderSize +
32 net::WebSocketFrameHeader::kMaximumExtendedLengthSize +
33 net::WebSocketFrameHeader::kMaskingKeyLength;
[email protected]cf901f52012-05-10 04:21:4834
tfarina20ced662015-10-13 23:48:3935} // namespace.
[email protected]cf901f52012-05-10 04:21:4836
37namespace net {
38
39WebSocketFrameParser::WebSocketFrameParser()
Yutaka Hirano29c646f2019-09-04 23:48:0340 : frame_offset_(0), websocket_error_(kWebSocketNormalClosure) {}
[email protected]cf901f52012-05-10 04:21:4841
Chris Watkins28c2fdd2017-11-30 06:06:5242WebSocketFrameParser::~WebSocketFrameParser() = default;
[email protected]cf901f52012-05-10 04:21:4843
44bool WebSocketFrameParser::Decode(
45 const char* data,
46 size_t length,
danakj9c5cab52016-04-16 00:54:3347 std::vector<std::unique_ptr<WebSocketFrameChunk>>* frame_chunks) {
[email protected]40e9c62f2013-05-07 14:59:2148 if (websocket_error_ != kWebSocketNormalClosure)
[email protected]cf901f52012-05-10 04:21:4849 return false;
50 if (!length)
51 return true;
52
Yoichi Osato9a742192019-07-29 08:57:3653 base::span<const char> data_span = base::make_span(data, length);
54 // If we have incomplete frame header, try to decode a header combining with
55 // |data|.
56 bool first_chunk = false;
57 if (incomplete_header_buffer_.size() > 0) {
58 DCHECK(!current_frame_header_.get());
59 const size_t original_size = incomplete_header_buffer_.size();
60 DCHECK_LE(original_size, kMaximumFrameHeaderSize);
61 incomplete_header_buffer_.insert(
62 incomplete_header_buffer_.end(), data,
63 data + std::min(length, kMaximumFrameHeaderSize - original_size));
64 const size_t consumed = DecodeFrameHeader(incomplete_header_buffer_);
65 if (websocket_error_ != kWebSocketNormalClosure)
66 return false;
67 if (!current_frame_header_.get())
68 return true;
[email protected]cf901f52012-05-10 04:21:4869
Yoichi Osato9a742192019-07-29 08:57:3670 DCHECK_GE(consumed, original_size);
71 data_span = data_span.subspan(consumed - original_size);
72 incomplete_header_buffer_.clear();
73 first_chunk = true;
74 }
75
76 DCHECK(incomplete_header_buffer_.empty());
77 while (data_span.size() > 0 || first_chunk) {
[email protected]cf901f52012-05-10 04:21:4878 if (!current_frame_header_.get()) {
Yoichi Osato9a742192019-07-29 08:57:3679 const size_t consumed = DecodeFrameHeader(data_span);
[email protected]40e9c62f2013-05-07 14:59:2180 if (websocket_error_ != kWebSocketNormalClosure)
[email protected]cf901f52012-05-10 04:21:4881 return false;
82 // If frame header is incomplete, then carry over the remaining
83 // data to the next round of Decode().
Yoichi Osato9a742192019-07-29 08:57:3684 if (!current_frame_header_.get()) {
85 DCHECK(!consumed);
86 incomplete_header_buffer_.insert(incomplete_header_buffer_.end(),
87 data_span.data(),
88 data_span.data() + data_span.size());
89 // Sanity check: the size of carried-over data should not exceed
90 // the maximum possible length of a frame header.
91 DCHECK_LT(incomplete_header_buffer_.size(), kMaximumFrameHeaderSize);
92 return true;
93 }
94 DCHECK_GE(data_span.size(), consumed);
95 data_span = data_span.subspan(consumed);
[email protected]cf901f52012-05-10 04:21:4896 first_chunk = true;
97 }
Yoichi Osato9a742192019-07-29 08:57:3698 DCHECK(incomplete_header_buffer_.empty());
danakj9c5cab52016-04-16 00:54:3399 std::unique_ptr<WebSocketFrameChunk> frame_chunk =
Yoichi Osato9a742192019-07-29 08:57:36100 DecodeFramePayload(first_chunk, &data_span);
101 first_chunk = false;
[email protected]cf901f52012-05-10 04:21:48102 DCHECK(frame_chunk.get());
dchengc7eeda422015-12-26 03:56:48103 frame_chunks->push_back(std::move(frame_chunk));
[email protected]cf901f52012-05-10 04:21:48104 }
[email protected]cf901f52012-05-10 04:21:48105 return true;
106}
107
Yoichi Osato9a742192019-07-29 08:57:36108size_t WebSocketFrameParser::DecodeFrameHeader(base::span<const char> data) {
109 DVLOG(3) << "DecodeFrameHeader buffer size:"
110 << ", data size:" << data.size();
[email protected]cf901f52012-05-10 04:21:48111 typedef WebSocketFrameHeader::OpCode OpCode;
[email protected]cf901f52012-05-10 04:21:48112 DCHECK(!current_frame_header_.get());
113
[email protected]cf901f52012-05-10 04:21:48114 // Header needs 2 bytes at minimum.
Yoichi Osato9a742192019-07-29 08:57:36115 if (data.size() < 2)
116 return 0;
117 size_t current = 0;
118 const uint8_t first_byte = data[current++];
119 const uint8_t second_byte = data[current++];
[email protected]cf901f52012-05-10 04:21:48120
Yoichi Osato9a742192019-07-29 08:57:36121 const bool final = (first_byte & kFinalBit) != 0;
122 const bool reserved1 = (first_byte & kReserved1Bit) != 0;
123 const bool reserved2 = (first_byte & kReserved2Bit) != 0;
124 const bool reserved3 = (first_byte & kReserved3Bit) != 0;
125 const OpCode opcode = first_byte & kOpCodeMask;
[email protected]cf901f52012-05-10 04:21:48126
tfarina8a2c66c22015-10-13 19:14:49127 uint64_t payload_length = second_byte & kPayloadLengthMask;
[email protected]cf901f52012-05-10 04:21:48128 if (payload_length == kPayloadLengthWithTwoByteExtendedLengthField) {
Yoichi Osato9a742192019-07-29 08:57:36129 if (data.size() < current + 2)
130 return 0;
tfarina8a2c66c22015-10-13 19:14:49131 uint16_t payload_length_16;
Yoichi Osato9a742192019-07-29 08:57:36132 base::ReadBigEndian(&data[current], &payload_length_16);
[email protected]cf901f52012-05-10 04:21:48133 current += 2;
134 payload_length = payload_length_16;
Yoichi Osato9a742192019-07-29 08:57:36135 if (payload_length <= kMaxPayloadLengthWithoutExtendedLengthField) {
[email protected]40e9c62f2013-05-07 14:59:21136 websocket_error_ = kWebSocketErrorProtocolError;
Yoichi Osato9a742192019-07-29 08:57:36137 return 0;
138 }
[email protected]cf901f52012-05-10 04:21:48139 } else if (payload_length == kPayloadLengthWithEightByteExtendedLengthField) {
Yoichi Osato9a742192019-07-29 08:57:36140 if (data.size() < current + 8)
141 return 0;
142 base::ReadBigEndian(&data[current], &payload_length);
[email protected]cf901f52012-05-10 04:21:48143 current += 8;
tfarina20ced662015-10-13 23:48:39144 if (payload_length <= UINT16_MAX ||
145 payload_length > static_cast<uint64_t>(INT64_MAX)) {
[email protected]40e9c62f2013-05-07 14:59:21146 websocket_error_ = kWebSocketErrorProtocolError;
Yoichi Osato9a742192019-07-29 08:57:36147 return 0;
148 }
149 if (payload_length > static_cast<uint64_t>(INT32_MAX)) {
[email protected]40e9c62f2013-05-07 14:59:21150 websocket_error_ = kWebSocketErrorMessageTooBig;
Yoichi Osato9a742192019-07-29 08:57:36151 return 0;
[email protected]cf901f52012-05-10 04:21:48152 }
153 }
Yoichi Osato9a742192019-07-29 08:57:36154 DCHECK_EQ(websocket_error_, kWebSocketNormalClosure);
[email protected]cf901f52012-05-10 04:21:48155
Yutaka Hirano29c646f2019-09-04 23:48:03156 WebSocketMaskingKey masking_key = {};
Yoichi Osato9a742192019-07-29 08:57:36157 const bool masked = (second_byte & kMaskBit) != 0;
158 static const int kMaskingKeyLength = WebSocketFrameHeader::kMaskingKeyLength;
[email protected]cf901f52012-05-10 04:21:48159 if (masked) {
Yoichi Osato9a742192019-07-29 08:57:36160 if (data.size() < current + kMaskingKeyLength)
161 return 0;
162 std::copy(&data[current], &data[current] + kMaskingKeyLength,
Yutaka Hirano29c646f2019-09-04 23:48:03163 masking_key.key);
[email protected]cf901f52012-05-10 04:21:48164 current += kMaskingKeyLength;
[email protected]cf901f52012-05-10 04:21:48165 }
166
Bence Béky65623972018-03-05 15:31:56167 current_frame_header_ = std::make_unique<WebSocketFrameHeader>(opcode);
[email protected]cf901f52012-05-10 04:21:48168 current_frame_header_->final = final;
169 current_frame_header_->reserved1 = reserved1;
170 current_frame_header_->reserved2 = reserved2;
171 current_frame_header_->reserved3 = reserved3;
[email protected]cf901f52012-05-10 04:21:48172 current_frame_header_->masked = masked;
Yutaka Hirano29c646f2019-09-04 23:48:03173 current_frame_header_->masking_key = masking_key;
[email protected]cf901f52012-05-10 04:21:48174 current_frame_header_->payload_length = payload_length;
[email protected]cf901f52012-05-10 04:21:48175 DCHECK_EQ(0u, frame_offset_);
Yoichi Osato9a742192019-07-29 08:57:36176 return current;
[email protected]cf901f52012-05-10 04:21:48177}
178
danakj9c5cab52016-04-16 00:54:33179std::unique_ptr<WebSocketFrameChunk> WebSocketFrameParser::DecodeFramePayload(
Yoichi Osato9a742192019-07-29 08:57:36180 bool first_chunk,
181 base::span<const char>* data) {
pkasting4bff6be2014-10-15 17:54:34182 // The cast here is safe because |payload_length| is already checked to be
[email protected]8308b1d12012-08-01 08:31:29183 // less than std::numeric_limits<int>::max() when the header is parsed.
Yoichi Osato9a742192019-07-29 08:57:36184 const int chunk_data_size = static_cast<int>(
185 std::min(static_cast<uint64_t>(data->size()),
tfarina8a2c66c22015-10-13 19:14:49186 current_frame_header_->payload_length - frame_offset_));
[email protected]cf901f52012-05-10 04:21:48187
Bence Béky65623972018-03-05 15:31:56188 auto frame_chunk = std::make_unique<WebSocketFrameChunk>();
[email protected]cf901f52012-05-10 04:21:48189 if (first_chunk) {
[email protected]40e9c62f2013-05-07 14:59:21190 frame_chunk->header = current_frame_header_->Clone();
[email protected]cf901f52012-05-10 04:21:48191 }
192 frame_chunk->final_chunk = false;
Yutaka Hirano76aacb202019-09-05 16:36:56193 if (chunk_data_size > 0) {
Yoichi Osato05cd3642019-09-09 18:13:08194 frame_chunk->payload = data->subspan(0, chunk_data_size);
Yoichi Osato9a742192019-07-29 08:57:36195 *data = data->subspan(chunk_data_size);
Yoichi Osato9a742192019-07-29 08:57:36196 frame_offset_ += chunk_data_size;
[email protected]8308b1d12012-08-01 08:31:29197 }
[email protected]cf901f52012-05-10 04:21:48198
199 DCHECK_LE(frame_offset_, current_frame_header_->payload_length);
200 if (frame_offset_ == current_frame_header_->payload_length) {
201 frame_chunk->final_chunk = true;
202 current_frame_header_.reset();
203 frame_offset_ = 0;
204 }
205
dchengc7eeda422015-12-26 03:56:48206 return frame_chunk;
[email protected]cf901f52012-05-10 04:21:48207}
208
209} // namespace net