libfreefare/examples
Robert Quattlebaum ec91014ebf Properly handle edge cases in AN10922 key diversification
This commit fixes issue #91.

[AN10922][] specifies the key diversification algorithms used by the
MIFARE SAM AV3. Support for these algorithms was added to
`libfreefare` via pull-request #79.

However, while every attempt was made to write a faithful
implementation, the implemented code did not properly handle cases
where the diversification data was less than or equal to the block
size of the cipher: 16 bytes for AES, and 8 bytes for DES. This
bug was identified in issue #91.

This commit addresses this problem while providing a way to revert to
the previous behavior in cases where it is necessary to maintain
previous deployments. This was accomplished by introducing a new
`flags` parameter to the `mifare_key_deriver_new_an10922` method.

Normally, `flags` should simply be set to `AN10922_FLAG_DEFAULT`.
However, if the previous behavior is required, it should be set to
`AN10922_FLAG_EMULATE_ISSUE_91`.

[AN10922][] does not include any test vectors that might have helped to
identify this problem earlier. However, [AN10957][] (pages 13-14) was
found to have a suitable example usage of [AN10922][] with an
appropriately short value for *M* that we are using as a test vector
to verify correct behavior.

Note that the issue being addressed here is not a security issue:
using the `AN10922_FLAG_EMULATE_ISSUE_91` should not be any less
secure than using `AN10922_FLAG_DEFAULT`.

[AN10922]: https://www.nxp.com/docs/en/application-note/AN10922.pdf
[AN10957]: https://www.nxp.com/docs/en/application-note/AN10957.pdf
2019-10-29 11:21:56 -07:00
..
CMakeLists.txt Added support for NTAG 21x tags (#53) 2017-06-27 10:50:50 +02:00
felica-lite-dump.c Remove copyright comments. 2017-06-29 09:29:15 +02:00
felica-read-ndef.c Run make style to indent macros 2017-06-29 12:25:53 +02:00
Makefile.am Support for AN10922 key derivation 2018-01-08 22:08:37 -08:00
mifare-classic-format.c Run make style to indent macros 2017-06-29 12:25:53 +02:00
mifare-classic-read-ndef.c Run make style to indent macros 2017-06-29 12:25:53 +02:00
mifare-classic-write-ndef.c Run make style to indent macros 2017-06-29 12:25:53 +02:00
mifare-desfire-access.c Remove copyright comments. 2017-06-29 09:29:15 +02:00
mifare-desfire-create-ndef.c Run make style to indent macros 2017-06-29 12:25:53 +02:00
mifare-desfire-ev1-configure-ats.c Run make style to indent macros 2017-06-29 12:25:53 +02:00
mifare-desfire-ev1-configure-default-key.c Run make style to indent macros 2017-06-29 12:25:53 +02:00
mifare-desfire-ev1-configure-random-uid.c Fix issues for NTAG21x tags 2018-03-09 23:19:30 +01:00
mifare-desfire-format.c Run make style to indent macros 2017-06-29 12:25:53 +02:00
mifare-desfire-info.c Remove copyright comments. 2017-06-29 09:29:15 +02:00
mifare-desfire-read-ndef.c Run make style to indent macros 2017-06-29 12:25:53 +02:00
mifare-desfire-write-ndef.c Run make style to indent macros 2017-06-29 12:25:53 +02:00
mifare-ultralight-info.c Properly handle edge cases in AN10922 key diversification 2019-10-29 11:21:56 -07:00
mifare-ultralightc-diversify.c Properly handle edge cases in AN10922 key diversification 2019-10-29 11:21:56 -07:00
ntag-detect.c Remove copyright comments. 2017-06-29 09:29:15 +02:00
ntag-removeauth.c Remove copyright comments. 2017-06-29 09:29:15 +02:00
ntag-setauth.c Remove copyright comments. 2017-06-29 09:29:15 +02:00
ntag-write.c Remove copyright comments. 2017-06-29 09:29:15 +02:00