1 /* Compute MD5, SHA1, SHA224, SHA256, SHA384 or SHA512 checksum of files or strings
2 Copyright (C) 1995-2008 Free Software Foundation, Inc.
4 This program is free software: you can redistribute it and/or modify
5 it under the terms of the GNU General Public License as published by
6 the Free Software Foundation, either version 3 of the License, or
7 (at your option) any later version.
9 This program is distributed in the hope that it will be useful,
10 but WITHOUT ANY WARRANTY; without even the implied warranty of
11 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12 GNU General Public License for more details.
14 You should have received a copy of the GNU General Public License
15 along with this program. If not, see <http://www.gnu.org/licenses/>. */
17 /* Written by Ulrich Drepper <drepper@gnu.ai.mit.edu>. */
22 #include <sys/types.h>
32 #if HASH_ALGO_SHA256 || HASH_ALGO_SHA224
35 #if HASH_ALGO_SHA512 || HASH_ALGO_SHA384
41 /* The official name of this program (e.g., no `g' prefix). */
43 # define PROGRAM_NAME "md5sum"
44 # define DIGEST_TYPE_STRING "MD5"
45 # define DIGEST_STREAM md5_stream
46 # define DIGEST_BITS 128
47 # define DIGEST_REFERENCE "RFC 1321"
48 # define DIGEST_ALIGN 4
50 # define PROGRAM_NAME "sha1sum"
51 # define DIGEST_TYPE_STRING "SHA1"
52 # define DIGEST_STREAM sha1_stream
53 # define DIGEST_BITS 160
54 # define DIGEST_REFERENCE "FIPS-180-1"
55 # define DIGEST_ALIGN 4
56 #elif HASH_ALGO_SHA256
57 # define PROGRAM_NAME "sha256sum"
58 # define DIGEST_TYPE_STRING "SHA256"
59 # define DIGEST_STREAM sha256_stream
60 # define DIGEST_BITS 256
61 # define DIGEST_REFERENCE "FIPS-180-2"
62 # define DIGEST_ALIGN 4
63 #elif HASH_ALGO_SHA224
64 # define PROGRAM_NAME "sha224sum"
65 # define DIGEST_TYPE_STRING "SHA224"
66 # define DIGEST_STREAM sha224_stream
67 # define DIGEST_BITS 224
68 # define DIGEST_REFERENCE "RFC 3874"
69 # define DIGEST_ALIGN 4
70 #elif HASH_ALGO_SHA512
71 # define PROGRAM_NAME "sha512sum"
72 # define DIGEST_TYPE_STRING "SHA512"
73 # define DIGEST_STREAM sha512_stream
74 # define DIGEST_BITS 512
75 # define DIGEST_REFERENCE "FIPS-180-2"
76 # define DIGEST_ALIGN 8
77 #elif HASH_ALGO_SHA384
78 # define PROGRAM_NAME "sha384sum"
79 # define DIGEST_TYPE_STRING "SHA384"
80 # define DIGEST_STREAM sha384_stream
81 # define DIGEST_BITS 384
82 # define DIGEST_REFERENCE "FIPS-180-2"
83 # define DIGEST_ALIGN 8
85 # error "Can't decide which hash algorithm to compile."
88 #define DIGEST_HEX_BYTES (DIGEST_BITS / 4)
89 #define DIGEST_BIN_BYTES (DIGEST_BITS / 8)
92 proper_name ("Ulrich Drepper"), \
93 proper_name ("Scott Miller"), \
94 proper_name ("David Madore")
96 /* The minimum length of a valid digest line. This length does
97 not include any newline character at the end of a line. */
98 #define MIN_DIGEST_LINE_LENGTH \
99 (DIGEST_HEX_BYTES /* length of hexadecimal message digest */ \
100 + 2 /* blank and binary indicator */ \
101 + 1 /* minimum filename length */ )
103 /* True if any of the files read were the standard input. */
104 static bool have_read_stdin;
106 /* The minimum length of a valid checksum line for the selected algorithm. */
107 static size_t min_digest_line_length;
109 /* Set to the length of a digest hex string for the selected algorithm. */
110 static size_t digest_hex_bytes;
112 /* With --check, don't generate any output.
113 The exit code indicates success or failure. */
114 static bool status_only = false;
116 /* With --check, print a message to standard error warning about each
117 improperly formatted checksum line. */
118 static bool warn = false;
120 /* With --check, suppress the "OK" printed for each verified file. */
121 static bool quiet = false;
123 /* For long options that have no equivalent short option, use a
124 non-character as a pseudo short option, starting with CHAR_MAX + 1. */
127 STATUS_OPTION = CHAR_MAX + 1,
131 static struct option const long_options[] =
133 { "binary", no_argument, NULL, 'b' },
134 { "check", no_argument, NULL, 'c' },
135 { "quiet", no_argument, NULL, QUIET_OPTION },
136 { "status", no_argument, NULL, STATUS_OPTION },
137 { "text", no_argument, NULL, 't' },
138 { "warn", no_argument, NULL, 'w' },
139 { GETOPT_HELP_OPTION_DECL },
140 { GETOPT_VERSION_OPTION_DECL },
147 if (status != EXIT_SUCCESS)
148 fprintf (stderr, _("Try `%s --help' for more information.\n"),
153 Usage: %s [OPTION] [FILE]...\n\
154 Print or check %s (%d-bit) checksums.\n\
155 With no FILE, or when FILE is -, read standard input.\n\
163 -b, --binary read in binary mode (default unless reading tty stdin)\n\
167 -b, --binary read in binary mode\n\
170 -c, --check read %s sums from the FILEs and check them\n"),
174 -t, --text read in text mode (default if reading tty stdin)\n\
178 -t, --text read in text mode (default)\n\
182 The following three options are useful only when verifying checksums:\n\
183 --quiet don't print OK for each successfully verified file\n\
184 --status don't output anything, status code shows success\n\
185 -w, --warn warn about improperly formatted checksum lines\n\
188 fputs (HELP_OPTION_DESCRIPTION, stdout);
189 fputs (VERSION_OPTION_DESCRIPTION, stdout);
192 The sums are computed as described in %s. When checking, the input\n\
193 should be a former output of this program. The default mode is to print\n\
194 a line with checksum, a character indicating type (`*' for binary, ` ' for\n\
195 text), and name for each FILE.\n"),
197 emit_bug_reporting_address ();
203 #define ISWHITE(c) ((c) == ' ' || (c) == '\t')
205 /* Split the checksum string S (of length S_LEN) from a BSD 'md5' or
206 'sha1' command into two parts: a hexadecimal digest, and the file
207 name. S is modified. Return true if successful. */
210 bsd_split_3 (char *s, size_t s_len, unsigned char **hex_digest, char **file_name)
219 /* Find end of filename. The BSD 'md5' and 'sha1' commands do not escape
220 filenames, so search backwards for the last ')'. */
222 while (i && s[i] != ')')
230 while (ISWHITE (s[i]))
238 while (ISWHITE (s[i]))
241 *hex_digest = (unsigned char *) &s[i];
245 /* Split the string S (of length S_LEN) into three parts:
246 a hexadecimal digest, binary flag, and the file name.
247 S is modified. Return true if successful. */
250 split_3 (char *s, size_t s_len,
251 unsigned char **hex_digest, int *binary, char **file_name)
254 bool escaped_filename = false;
255 size_t algo_name_len;
258 while (ISWHITE (s[i]))
261 /* Check for BSD-style checksum line. */
262 algo_name_len = strlen (DIGEST_TYPE_STRING);
263 if (strncmp (s + i, DIGEST_TYPE_STRING, algo_name_len) == 0)
265 if (strncmp (s + i + algo_name_len, " (", 2) == 0)
268 return bsd_split_3 (s + i + algo_name_len + 2,
269 s_len - (i + algo_name_len + 2),
270 hex_digest, file_name);
274 /* Ignore this line if it is too short.
275 Each line must have at least `min_digest_line_length - 1' (or one more, if
276 the first is a backslash) more characters to contain correct message digest
278 if (s_len - i < min_digest_line_length + (s[i] == '\\'))
284 escaped_filename = true;
286 *hex_digest = (unsigned char *) &s[i];
288 /* The first field has to be the n-character hexadecimal
289 representation of the message digest. If it is not followed
290 immediately by a white space it's an error. */
291 i += digest_hex_bytes;
297 if (s[i] != ' ' && s[i] != '*')
299 *binary = (s[i++] == '*');
301 /* All characters between the type indicator and end of line are
302 significant -- that includes leading and trailing white space. */
305 if (escaped_filename)
307 /* Translate each `\n' string in the file name to a NEWLINE,
308 and each `\\' string to a backslash. */
319 /* A valid line does not end with a backslash. */
332 /* Only `\' or `n' may follow a backslash. */
338 /* The file name may not contain a NUL. */
352 /* Return true if S is a NUL-terminated string of DIGEST_HEX_BYTES hex digits.
353 Otherwise, return false. */
355 hex_digits (unsigned char const *s)
358 for (i = 0; i < digest_hex_bytes; i++)
367 /* An interface to the function, DIGEST_STREAM.
368 Operate on FILENAME (it may be "-").
370 *BINARY indicates whether the file is binary. BINARY < 0 means it
371 depends on whether binary mode makes any difference and the file is
372 a terminal; in that case, clear *BINARY if the file was treated as
373 text because it was a terminal.
375 Put the checksum in *BIN_RESULT, which must be properly aligned.
376 Return true if successful. */
379 digest_file (const char *filename, int *binary, unsigned char *bin_result)
383 bool is_stdin = STREQ (filename, "-");
387 have_read_stdin = true;
389 if (O_BINARY && *binary)
392 *binary = ! isatty (STDIN_FILENO);
394 freopen (NULL, "rb", stdin);
399 fp = fopen (filename, (O_BINARY && *binary ? "rb" : "r"));
402 error (0, errno, "%s", filename);
407 err = DIGEST_STREAM (fp, bin_result);
410 error (0, errno, "%s", filename);
416 if (!is_stdin && fclose (fp) != 0)
418 error (0, errno, "%s", filename);
426 digest_check (const char *checkfile_name)
428 FILE *checkfile_stream;
429 uintmax_t n_properly_formatted_lines = 0;
430 uintmax_t n_mismatched_checksums = 0;
431 uintmax_t n_open_or_read_failures = 0;
432 unsigned char bin_buffer_unaligned[DIGEST_BIN_BYTES + DIGEST_ALIGN];
433 /* Make sure bin_buffer is properly aligned. */
434 unsigned char *bin_buffer = ptr_align (bin_buffer_unaligned, DIGEST_ALIGN);
435 uintmax_t line_number;
437 size_t line_chars_allocated;
438 bool is_stdin = STREQ (checkfile_name, "-");
442 have_read_stdin = true;
443 checkfile_name = _("standard input");
444 checkfile_stream = stdin;
448 checkfile_stream = fopen (checkfile_name, "r");
449 if (checkfile_stream == NULL)
451 error (0, errno, "%s", checkfile_name);
458 line_chars_allocated = 0;
461 char *filename IF_LINT (= NULL);
463 unsigned char *hex_digest IF_LINT (= NULL);
467 if (line_number == 0)
468 error (EXIT_FAILURE, 0, _("%s: too many checksum lines"),
471 line_length = getline (&line, &line_chars_allocated, checkfile_stream);
472 if (line_length <= 0)
475 /* Ignore comment lines, which begin with a '#' character. */
479 /* Remove any trailing newline. */
480 if (line[line_length - 1] == '\n')
481 line[--line_length] = '\0';
483 if (! (split_3 (line, line_length, &hex_digest, &binary, &filename)
484 && ! (is_stdin && STREQ (filename, "-"))
485 && hex_digits (hex_digest)))
491 ": improperly formatted %s checksum line"),
492 checkfile_name, line_number,
498 static const char bin2hex[] = { '0', '1', '2', '3',
501 'c', 'd', 'e', 'f' };
504 ++n_properly_formatted_lines;
506 ok = digest_file (filename, &binary, bin_buffer);
510 ++n_open_or_read_failures;
513 printf (_("%s: FAILED open or read\n"), filename);
519 size_t digest_bin_bytes = digest_hex_bytes / 2;
521 /* Compare generated binary number with text representation
522 in check file. Ignore case of hex digits. */
523 for (cnt = 0; cnt < digest_bin_bytes; ++cnt)
525 if (tolower (hex_digest[2 * cnt])
526 != bin2hex[bin_buffer[cnt] >> 4]
527 || (tolower (hex_digest[2 * cnt + 1])
528 != (bin2hex[bin_buffer[cnt] & 0xf])))
531 if (cnt != digest_bin_bytes)
532 ++n_mismatched_checksums;
536 if (cnt != digest_bin_bytes)
537 printf ("%s: %s\n", filename, _("FAILED"));
539 printf ("%s: %s\n", filename, _("OK"));
545 while (!feof (checkfile_stream) && !ferror (checkfile_stream));
549 if (ferror (checkfile_stream))
551 error (0, 0, _("%s: read error"), checkfile_name);
555 if (!is_stdin && fclose (checkfile_stream) != 0)
557 error (0, errno, "%s", checkfile_name);
561 if (n_properly_formatted_lines == 0)
563 /* Warn if no tests are found. */
564 error (0, 0, _("%s: no properly formatted %s checksum lines found"),
565 checkfile_name, DIGEST_TYPE_STRING);
571 if (n_open_or_read_failures != 0)
573 ngettext ("WARNING: %" PRIuMAX " of %" PRIuMAX
574 " listed file could not be read",
575 "WARNING: %" PRIuMAX " of %" PRIuMAX
576 " listed files could not be read",
577 select_plural (n_properly_formatted_lines)),
578 n_open_or_read_failures, n_properly_formatted_lines);
580 if (n_mismatched_checksums != 0)
582 uintmax_t n_computed_checksums =
583 (n_properly_formatted_lines - n_open_or_read_failures);
585 ngettext ("WARNING: %" PRIuMAX " of %" PRIuMAX
586 " computed checksum did NOT match",
587 "WARNING: %" PRIuMAX " of %" PRIuMAX
588 " computed checksums did NOT match",
589 select_plural (n_computed_checksums)),
590 n_mismatched_checksums, n_computed_checksums);
595 return (n_properly_formatted_lines != 0
596 && n_mismatched_checksums == 0
597 && n_open_or_read_failures == 0);
601 main (int argc, char **argv)
603 unsigned char bin_buffer_unaligned[DIGEST_BIN_BYTES + DIGEST_ALIGN];
604 /* Make sure bin_buffer is properly aligned. */
605 unsigned char *bin_buffer = ptr_align (bin_buffer_unaligned, DIGEST_ALIGN);
606 bool do_check = false;
611 /* Setting values of global variables. */
612 initialize_main (&argc, &argv);
613 set_program_name (argv[0]);
614 setlocale (LC_ALL, "");
615 bindtextdomain (PACKAGE, LOCALEDIR);
616 textdomain (PACKAGE);
618 atexit (close_stdout);
620 while ((opt = getopt_long (argc, argv, "bctw", long_options, NULL)) != -1)
647 case_GETOPT_HELP_CHAR;
648 case_GETOPT_VERSION_CHAR (PROGRAM_NAME, AUTHORS);
650 usage (EXIT_FAILURE);
653 min_digest_line_length = MIN_DIGEST_LINE_LENGTH;
654 digest_hex_bytes = DIGEST_HEX_BYTES;
656 if (0 <= binary && do_check)
658 error (0, 0, _("the --binary and --text options are meaningless when "
659 "verifying checksums"));
660 usage (EXIT_FAILURE);
663 if (status_only & !do_check)
666 _("the --status option is meaningful only when verifying checksums"));
667 usage (EXIT_FAILURE);
670 if (warn & !do_check)
673 _("the --warn option is meaningful only when verifying checksums"));
674 usage (EXIT_FAILURE);
677 if (quiet & !do_check)
680 _("the --quiet option is meaningful only when verifying checksums"));
681 usage (EXIT_FAILURE);
684 if (!O_BINARY && binary < 0)
690 for (; optind < argc; ++optind)
692 char *file = argv[optind];
695 ok &= digest_check (file);
698 int file_is_binary = binary;
700 if (! digest_file (file, &file_is_binary, bin_buffer))
706 /* Output a leading backslash if the file name contains
707 a newline or backslash. */
708 if (strchr (file, '\n') || strchr (file, '\\'))
711 for (i = 0; i < (digest_hex_bytes / 2); ++i)
712 printf ("%02x", bin_buffer[i]);
720 /* Translate each NEWLINE byte to the string, "\\n",
721 and each backslash to "\\\\". */
722 for (i = 0; i < strlen (file); ++i)
727 fputs ("\\n", stdout);
731 fputs ("\\\\", stdout);
744 if (have_read_stdin && fclose (stdin) == EOF)
745 error (EXIT_FAILURE, errno, _("standard input"));
747 exit (ok ? EXIT_SUCCESS : EXIT_FAILURE);