1*4d7e907cSAndroid Build Coastguard Worker /*
2*4d7e907cSAndroid Build Coastguard Worker * Copyright (C) 2019 The Android Open Source Project
3*4d7e907cSAndroid Build Coastguard Worker *
4*4d7e907cSAndroid Build Coastguard Worker * Licensed under the Apache License, Version 2.0 (the "License");
5*4d7e907cSAndroid Build Coastguard Worker * you may not use this file except in compliance with the License.
6*4d7e907cSAndroid Build Coastguard Worker * You may obtain a copy of the License at
7*4d7e907cSAndroid Build Coastguard Worker *
8*4d7e907cSAndroid Build Coastguard Worker * http://www.apache.org/licenses/LICENSE-2.0
9*4d7e907cSAndroid Build Coastguard Worker *
10*4d7e907cSAndroid Build Coastguard Worker * Unless required by applicable law or agreed to in writing, software
11*4d7e907cSAndroid Build Coastguard Worker * distributed under the License is distributed on an "AS IS" BASIS,
12*4d7e907cSAndroid Build Coastguard Worker * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13*4d7e907cSAndroid Build Coastguard Worker * See the License for the specific language governing permissions and
14*4d7e907cSAndroid Build Coastguard Worker * limitations under the License.
15*4d7e907cSAndroid Build Coastguard Worker */
16*4d7e907cSAndroid Build Coastguard Worker
17*4d7e907cSAndroid Build Coastguard Worker //#define LOG_NDEBUG 0
18*4d7e907cSAndroid Build Coastguard Worker #define LOG_TAG "[email protected]"
19*4d7e907cSAndroid Build Coastguard Worker
20*4d7e907cSAndroid Build Coastguard Worker #include <hidlmemory/mapping.h>
21*4d7e907cSAndroid Build Coastguard Worker #include <inttypes.h>
22*4d7e907cSAndroid Build Coastguard Worker #include <media/cas/DescramblerAPI.h>
23*4d7e907cSAndroid Build Coastguard Worker #include <media/hardware/CryptoAPI.h>
24*4d7e907cSAndroid Build Coastguard Worker #include <media/stagefright/foundation/AUtils.h>
25*4d7e907cSAndroid Build Coastguard Worker #include <utils/Log.h>
26*4d7e907cSAndroid Build Coastguard Worker
27*4d7e907cSAndroid Build Coastguard Worker #include "DescramblerImpl.h"
28*4d7e907cSAndroid Build Coastguard Worker #include "SharedLibrary.h"
29*4d7e907cSAndroid Build Coastguard Worker #include "TypeConvert.h"
30*4d7e907cSAndroid Build Coastguard Worker
31*4d7e907cSAndroid Build Coastguard Worker namespace android {
32*4d7e907cSAndroid Build Coastguard Worker using hidl::memory::V1_0::IMemory;
33*4d7e907cSAndroid Build Coastguard Worker
34*4d7e907cSAndroid Build Coastguard Worker namespace hardware {
35*4d7e907cSAndroid Build Coastguard Worker namespace cas {
36*4d7e907cSAndroid Build Coastguard Worker namespace V1_1 {
37*4d7e907cSAndroid Build Coastguard Worker namespace implementation {
38*4d7e907cSAndroid Build Coastguard Worker
39*4d7e907cSAndroid Build Coastguard Worker #define CHECK_SUBSAMPLE_DEF(type) \
40*4d7e907cSAndroid Build Coastguard Worker static_assert(sizeof(SubSample) == sizeof(type::SubSample), "SubSample: size doesn't match"); \
41*4d7e907cSAndroid Build Coastguard Worker static_assert(offsetof(SubSample, numBytesOfClearData) == \
42*4d7e907cSAndroid Build Coastguard Worker offsetof(type::SubSample, mNumBytesOfClearData), \
43*4d7e907cSAndroid Build Coastguard Worker "SubSample: numBytesOfClearData offset doesn't match"); \
44*4d7e907cSAndroid Build Coastguard Worker static_assert(offsetof(SubSample, numBytesOfEncryptedData) == \
45*4d7e907cSAndroid Build Coastguard Worker offsetof(type::SubSample, mNumBytesOfEncryptedData), \
46*4d7e907cSAndroid Build Coastguard Worker "SubSample: numBytesOfEncryptedData offset doesn't match")
47*4d7e907cSAndroid Build Coastguard Worker
48*4d7e907cSAndroid Build Coastguard Worker CHECK_SUBSAMPLE_DEF(DescramblerPlugin);
49*4d7e907cSAndroid Build Coastguard Worker CHECK_SUBSAMPLE_DEF(CryptoPlugin);
50*4d7e907cSAndroid Build Coastguard Worker
DescramblerImpl(const sp<SharedLibrary> & library,DescramblerPlugin * plugin)51*4d7e907cSAndroid Build Coastguard Worker DescramblerImpl::DescramblerImpl(const sp<SharedLibrary>& library, DescramblerPlugin* plugin)
52*4d7e907cSAndroid Build Coastguard Worker : mLibrary(library), mPluginHolder(plugin) {
53*4d7e907cSAndroid Build Coastguard Worker ALOGV("CTOR: plugin=%p", mPluginHolder.get());
54*4d7e907cSAndroid Build Coastguard Worker }
55*4d7e907cSAndroid Build Coastguard Worker
~DescramblerImpl()56*4d7e907cSAndroid Build Coastguard Worker DescramblerImpl::~DescramblerImpl() {
57*4d7e907cSAndroid Build Coastguard Worker ALOGV("DTOR: plugin=%p", mPluginHolder.get());
58*4d7e907cSAndroid Build Coastguard Worker release();
59*4d7e907cSAndroid Build Coastguard Worker }
60*4d7e907cSAndroid Build Coastguard Worker
setMediaCasSession(const HidlCasSessionId & sessionId)61*4d7e907cSAndroid Build Coastguard Worker Return<Status> DescramblerImpl::setMediaCasSession(const HidlCasSessionId& sessionId) {
62*4d7e907cSAndroid Build Coastguard Worker ALOGV("%s: sessionId=%s", __FUNCTION__, sessionIdToString(sessionId).c_str());
63*4d7e907cSAndroid Build Coastguard Worker
64*4d7e907cSAndroid Build Coastguard Worker std::shared_ptr<DescramblerPlugin> holder = std::atomic_load(&mPluginHolder);
65*4d7e907cSAndroid Build Coastguard Worker if (holder.get() == nullptr) {
66*4d7e907cSAndroid Build Coastguard Worker return toStatus(INVALID_OPERATION);
67*4d7e907cSAndroid Build Coastguard Worker }
68*4d7e907cSAndroid Build Coastguard Worker
69*4d7e907cSAndroid Build Coastguard Worker return toStatus(holder->setMediaCasSession(sessionId));
70*4d7e907cSAndroid Build Coastguard Worker }
71*4d7e907cSAndroid Build Coastguard Worker
requiresSecureDecoderComponent(const hidl_string & mime)72*4d7e907cSAndroid Build Coastguard Worker Return<bool> DescramblerImpl::requiresSecureDecoderComponent(const hidl_string& mime) {
73*4d7e907cSAndroid Build Coastguard Worker std::shared_ptr<DescramblerPlugin> holder = std::atomic_load(&mPluginHolder);
74*4d7e907cSAndroid Build Coastguard Worker if (holder.get() == nullptr) {
75*4d7e907cSAndroid Build Coastguard Worker return false;
76*4d7e907cSAndroid Build Coastguard Worker }
77*4d7e907cSAndroid Build Coastguard Worker
78*4d7e907cSAndroid Build Coastguard Worker return holder->requiresSecureDecoderComponent(mime.c_str());
79*4d7e907cSAndroid Build Coastguard Worker }
80*4d7e907cSAndroid Build Coastguard Worker
validateRangeForSize(uint64_t offset,uint64_t length,uint64_t size)81*4d7e907cSAndroid Build Coastguard Worker static inline bool validateRangeForSize(uint64_t offset, uint64_t length, uint64_t size) {
82*4d7e907cSAndroid Build Coastguard Worker return isInRange<uint64_t, uint64_t>(0, size, offset, length);
83*4d7e907cSAndroid Build Coastguard Worker }
84*4d7e907cSAndroid Build Coastguard Worker
descramble(ScramblingControl scramblingControl,const hidl_vec<SubSample> & subSamples,const SharedBuffer & srcBuffer,uint64_t srcOffset,const DestinationBuffer & dstBuffer,uint64_t dstOffset,descramble_cb _hidl_cb)85*4d7e907cSAndroid Build Coastguard Worker Return<void> DescramblerImpl::descramble(ScramblingControl scramblingControl,
86*4d7e907cSAndroid Build Coastguard Worker const hidl_vec<SubSample>& subSamples,
87*4d7e907cSAndroid Build Coastguard Worker const SharedBuffer& srcBuffer, uint64_t srcOffset,
88*4d7e907cSAndroid Build Coastguard Worker const DestinationBuffer& dstBuffer, uint64_t dstOffset,
89*4d7e907cSAndroid Build Coastguard Worker descramble_cb _hidl_cb) {
90*4d7e907cSAndroid Build Coastguard Worker ALOGV("%s", __FUNCTION__);
91*4d7e907cSAndroid Build Coastguard Worker
92*4d7e907cSAndroid Build Coastguard Worker // hidl_memory's size is stored in uint64_t, but mapMemory's mmap will map
93*4d7e907cSAndroid Build Coastguard Worker // size in size_t. If size is over SIZE_MAX, mapMemory mapMemory could succeed
94*4d7e907cSAndroid Build Coastguard Worker // but the mapped memory's actual size will be smaller than the reported size.
95*4d7e907cSAndroid Build Coastguard Worker if (srcBuffer.heapBase.size() > SIZE_MAX) {
96*4d7e907cSAndroid Build Coastguard Worker ALOGE("Invalid hidl_memory size: %" PRIu64 "", srcBuffer.heapBase.size());
97*4d7e907cSAndroid Build Coastguard Worker android_errorWriteLog(0x534e4554, "79376389");
98*4d7e907cSAndroid Build Coastguard Worker _hidl_cb(toStatus(BAD_VALUE), 0, NULL);
99*4d7e907cSAndroid Build Coastguard Worker return Void();
100*4d7e907cSAndroid Build Coastguard Worker }
101*4d7e907cSAndroid Build Coastguard Worker
102*4d7e907cSAndroid Build Coastguard Worker sp<IMemory> srcMem = mapMemory(srcBuffer.heapBase);
103*4d7e907cSAndroid Build Coastguard Worker
104*4d7e907cSAndroid Build Coastguard Worker // Validate if the offset and size in the SharedBuffer is consistent with the
105*4d7e907cSAndroid Build Coastguard Worker // mapped ashmem, since the offset and size is controlled by client.
106*4d7e907cSAndroid Build Coastguard Worker if (srcMem == NULL) {
107*4d7e907cSAndroid Build Coastguard Worker ALOGE("Failed to map src buffer.");
108*4d7e907cSAndroid Build Coastguard Worker _hidl_cb(toStatus(BAD_VALUE), 0, NULL);
109*4d7e907cSAndroid Build Coastguard Worker return Void();
110*4d7e907cSAndroid Build Coastguard Worker }
111*4d7e907cSAndroid Build Coastguard Worker if (!validateRangeForSize(srcBuffer.offset, srcBuffer.size, (uint64_t)srcMem->getSize())) {
112*4d7e907cSAndroid Build Coastguard Worker ALOGE("Invalid src buffer range: offset %" PRIu64 ", size %" PRIu64 ", srcMem"
113*4d7e907cSAndroid Build Coastguard Worker "size %" PRIu64 "", srcBuffer.offset, srcBuffer.size, (uint64_t)srcMem->getSize());
114*4d7e907cSAndroid Build Coastguard Worker android_errorWriteLog(0x534e4554, "67962232");
115*4d7e907cSAndroid Build Coastguard Worker _hidl_cb(toStatus(BAD_VALUE), 0, NULL);
116*4d7e907cSAndroid Build Coastguard Worker return Void();
117*4d7e907cSAndroid Build Coastguard Worker }
118*4d7e907cSAndroid Build Coastguard Worker
119*4d7e907cSAndroid Build Coastguard Worker // use 64-bit here to catch bad subsample size that might be overflowing.
120*4d7e907cSAndroid Build Coastguard Worker uint64_t totalBytesInSubSamples = 0;
121*4d7e907cSAndroid Build Coastguard Worker for (size_t i = 0; i < subSamples.size(); i++) {
122*4d7e907cSAndroid Build Coastguard Worker totalBytesInSubSamples +=
123*4d7e907cSAndroid Build Coastguard Worker (uint64_t)subSamples[i].numBytesOfClearData + subSamples[i].numBytesOfEncryptedData;
124*4d7e907cSAndroid Build Coastguard Worker }
125*4d7e907cSAndroid Build Coastguard Worker // Further validate if the specified srcOffset and requested total subsample size
126*4d7e907cSAndroid Build Coastguard Worker // is consistent with the source shared buffer size.
127*4d7e907cSAndroid Build Coastguard Worker if (!validateRangeForSize(srcOffset, totalBytesInSubSamples, srcBuffer.size)) {
128*4d7e907cSAndroid Build Coastguard Worker ALOGE("Invalid srcOffset and subsample size: "
129*4d7e907cSAndroid Build Coastguard Worker "srcOffset %" PRIu64 ", totalBytesInSubSamples %" PRIu64 ", srcBuffer"
130*4d7e907cSAndroid Build Coastguard Worker "size %" PRIu64 "", srcOffset, totalBytesInSubSamples, srcBuffer.size);
131*4d7e907cSAndroid Build Coastguard Worker android_errorWriteLog(0x534e4554, "67962232");
132*4d7e907cSAndroid Build Coastguard Worker _hidl_cb(toStatus(BAD_VALUE), 0, NULL);
133*4d7e907cSAndroid Build Coastguard Worker return Void();
134*4d7e907cSAndroid Build Coastguard Worker }
135*4d7e907cSAndroid Build Coastguard Worker
136*4d7e907cSAndroid Build Coastguard Worker void* srcPtr = (uint8_t*)(void*)srcMem->getPointer() + srcBuffer.offset;
137*4d7e907cSAndroid Build Coastguard Worker void* dstPtr = NULL;
138*4d7e907cSAndroid Build Coastguard Worker if (dstBuffer.type == BufferType::SHARED_MEMORY) {
139*4d7e907cSAndroid Build Coastguard Worker // When using shared memory, src buffer is also used as dst,
140*4d7e907cSAndroid Build Coastguard Worker // we don't map it again here.
141*4d7e907cSAndroid Build Coastguard Worker dstPtr = srcPtr;
142*4d7e907cSAndroid Build Coastguard Worker
143*4d7e907cSAndroid Build Coastguard Worker // In this case the dst and src would be the same buffer, need to validate
144*4d7e907cSAndroid Build Coastguard Worker // dstOffset against the buffer size too.
145*4d7e907cSAndroid Build Coastguard Worker if (!validateRangeForSize(dstOffset, totalBytesInSubSamples, srcBuffer.size)) {
146*4d7e907cSAndroid Build Coastguard Worker ALOGE("Invalid dstOffset and subsample size: "
147*4d7e907cSAndroid Build Coastguard Worker "dstOffset %" PRIu64 ", totalBytesInSubSamples %" PRIu64 ", srcBuffer"
148*4d7e907cSAndroid Build Coastguard Worker "size %" PRIu64 "", dstOffset, totalBytesInSubSamples, srcBuffer.size);
149*4d7e907cSAndroid Build Coastguard Worker android_errorWriteLog(0x534e4554, "67962232");
150*4d7e907cSAndroid Build Coastguard Worker _hidl_cb(toStatus(BAD_VALUE), 0, NULL);
151*4d7e907cSAndroid Build Coastguard Worker return Void();
152*4d7e907cSAndroid Build Coastguard Worker }
153*4d7e907cSAndroid Build Coastguard Worker } else {
154*4d7e907cSAndroid Build Coastguard Worker native_handle_t* handle =
155*4d7e907cSAndroid Build Coastguard Worker const_cast<native_handle_t*>(dstBuffer.secureMemory.getNativeHandle());
156*4d7e907cSAndroid Build Coastguard Worker dstPtr = static_cast<void*>(handle);
157*4d7e907cSAndroid Build Coastguard Worker }
158*4d7e907cSAndroid Build Coastguard Worker
159*4d7e907cSAndroid Build Coastguard Worker // Get a local copy of the shared_ptr for the plugin. Note that before
160*4d7e907cSAndroid Build Coastguard Worker // calling the HIDL callback, this shared_ptr must be manually reset,
161*4d7e907cSAndroid Build Coastguard Worker // since the client side could proceed as soon as the callback is called
162*4d7e907cSAndroid Build Coastguard Worker // without waiting for this method to go out of scope.
163*4d7e907cSAndroid Build Coastguard Worker std::shared_ptr<DescramblerPlugin> holder = std::atomic_load(&mPluginHolder);
164*4d7e907cSAndroid Build Coastguard Worker if (holder.get() == nullptr) {
165*4d7e907cSAndroid Build Coastguard Worker _hidl_cb(toStatus(INVALID_OPERATION), 0, NULL);
166*4d7e907cSAndroid Build Coastguard Worker return Void();
167*4d7e907cSAndroid Build Coastguard Worker }
168*4d7e907cSAndroid Build Coastguard Worker
169*4d7e907cSAndroid Build Coastguard Worker // Casting hidl SubSample to DescramblerPlugin::SubSample, but need
170*4d7e907cSAndroid Build Coastguard Worker // to ensure structs are actually idential
171*4d7e907cSAndroid Build Coastguard Worker
172*4d7e907cSAndroid Build Coastguard Worker int32_t result =
173*4d7e907cSAndroid Build Coastguard Worker holder->descramble(dstBuffer.type != BufferType::SHARED_MEMORY,
174*4d7e907cSAndroid Build Coastguard Worker (DescramblerPlugin::ScramblingControl)scramblingControl,
175*4d7e907cSAndroid Build Coastguard Worker subSamples.size(), (DescramblerPlugin::SubSample*)subSamples.data(),
176*4d7e907cSAndroid Build Coastguard Worker srcPtr, srcOffset, dstPtr, dstOffset, NULL);
177*4d7e907cSAndroid Build Coastguard Worker
178*4d7e907cSAndroid Build Coastguard Worker holder.reset();
179*4d7e907cSAndroid Build Coastguard Worker _hidl_cb(toStatus(result >= 0 ? OK : result), result, NULL);
180*4d7e907cSAndroid Build Coastguard Worker return Void();
181*4d7e907cSAndroid Build Coastguard Worker }
182*4d7e907cSAndroid Build Coastguard Worker
release()183*4d7e907cSAndroid Build Coastguard Worker Return<Status> DescramblerImpl::release() {
184*4d7e907cSAndroid Build Coastguard Worker ALOGV("%s: plugin=%p", __FUNCTION__, mPluginHolder.get());
185*4d7e907cSAndroid Build Coastguard Worker
186*4d7e907cSAndroid Build Coastguard Worker std::shared_ptr<DescramblerPlugin> holder(nullptr);
187*4d7e907cSAndroid Build Coastguard Worker std::atomic_store(&mPluginHolder, holder);
188*4d7e907cSAndroid Build Coastguard Worker
189*4d7e907cSAndroid Build Coastguard Worker return Status::OK;
190*4d7e907cSAndroid Build Coastguard Worker }
191*4d7e907cSAndroid Build Coastguard Worker
192*4d7e907cSAndroid Build Coastguard Worker } // namespace implementation
193*4d7e907cSAndroid Build Coastguard Worker } // namespace V1_1
194*4d7e907cSAndroid Build Coastguard Worker } // namespace cas
195*4d7e907cSAndroid Build Coastguard Worker } // namespace hardware
196*4d7e907cSAndroid Build Coastguard Worker } // namespace android
197