Blame pr2815-race_condition_in_sunec_provider_with_system_nss_fix.patch

acfc6fd
# HG changeset patch
acfc6fd
# User andrew
acfc6fd
# Date 1453867347 0
acfc6fd
#      Wed Jan 27 04:02:27 2016 +0000
acfc6fd
# Node ID 26e2e029ee256e9815fdc324831a03d8582255e1
acfc6fd
# Parent  0ff7720931e8dbf7de25720bdc93b18527ab89e8
acfc6fd
PR2815: Race condition in SunEC provider with system NSS
acfc6fd
Summary: Perform initialisation and shutdown only when library is loaded or SunEC is finalized respectively
acfc6fd
acfc6fd
diff -r 0ff7720931e8 -r 26e2e029ee25 make/mapfiles/libsunec/mapfile-vers
acfc6fd
--- openjdk/jdk/make/mapfiles/libsunec/mapfile-vers	Wed Jan 27 03:45:06 2016 +0000
acfc6fd
+++ openjdk/jdk/make/mapfiles/libsunec/mapfile-vers	Wed Jan 27 04:02:27 2016 +0000
acfc6fd
@@ -31,6 +31,8 @@
acfc6fd
                 Java_sun_security_ec_ECDSASignature_signDigest;
acfc6fd
                 Java_sun_security_ec_ECDSASignature_verifySignedDigest;
acfc6fd
                 Java_sun_security_ec_ECDHKeyAgreement_deriveKey;
acfc6fd
+		Java_sun_security_ec_SunEC_initialize;
acfc6fd
+		Java_sun_security_ec_SunEC_cleanup;
acfc6fd
         local:
acfc6fd
                 *;
acfc6fd
 };
acfc6fd
diff -r 0ff7720931e8 -r 26e2e029ee25 src/share/classes/sun/security/ec/SunEC.java
acfc6fd
--- openjdk/jdk/src/share/classes/sun/security/ec/SunEC.java	Wed Jan 27 03:45:06 2016 +0000
acfc6fd
+++ openjdk/jdk/src/share/classes/sun/security/ec/SunEC.java	Wed Jan 27 04:02:27 2016 +0000
acfc6fd
@@ -58,6 +58,7 @@
acfc6fd
             AccessController.doPrivileged(new PrivilegedAction<Void>() {
acfc6fd
                 public Void run() {
acfc6fd
                     System.loadLibrary("sunec"); // check for native library
acfc6fd
+                    initialize();
acfc6fd
                     return null;
acfc6fd
                 }
acfc6fd
             });
acfc6fd
@@ -81,4 +82,22 @@
acfc6fd
         }
acfc6fd
     }
acfc6fd
 
acfc6fd
+    /**
acfc6fd
+     * Cleanup native resources during finalisation.
acfc6fd
+     */
acfc6fd
+    @Override
acfc6fd
+    protected void finalize() {
acfc6fd
+        cleanup();
acfc6fd
+    }
acfc6fd
+
acfc6fd
+    /**
acfc6fd
+     * Initialize the native code.
acfc6fd
+     */
acfc6fd
+    private static native void initialize();
acfc6fd
+
acfc6fd
+    /**
acfc6fd
+     * Cleanup in the native layer.
acfc6fd
+     */
acfc6fd
+    private static native void cleanup();
acfc6fd
+
acfc6fd
 }
acfc6fd
diff -r 0ff7720931e8 -r 26e2e029ee25 src/share/native/sun/security/ec/ECC_JNI.cpp
acfc6fd
--- openjdk/jdk/src/share/native/sun/security/ec/ECC_JNI.cpp	Wed Jan 27 03:45:06 2016 +0000
acfc6fd
+++ openjdk/jdk/src/share/native/sun/security/ec/ECC_JNI.cpp	Wed Jan 27 04:02:27 2016 +0000
acfc6fd
@@ -121,13 +121,6 @@
acfc6fd
         goto cleanup;
acfc6fd
     }
acfc6fd
 
acfc6fd
-#ifdef SYSTEM_NSS
acfc6fd
-    if (SECOID_Init() != SECSuccess) {
acfc6fd
-	ThrowException(env, INTERNAL_ERROR);
acfc6fd
-	goto cleanup;
acfc6fd
-    }
acfc6fd
-#endif
acfc6fd
-
acfc6fd
     // Fill a new ECParams using the supplied OID
acfc6fd
     if (EC_DecodeParams(&params_item, &ecparams, 0) != SECSuccess) {
acfc6fd
         /* bad curve OID */
acfc6fd
@@ -183,11 +176,6 @@
acfc6fd
         if (params_item.data) {
acfc6fd
             env->ReleaseByteArrayElements(encodedParams,
acfc6fd
                 (jbyte *) params_item.data, JNI_ABORT);
acfc6fd
-#ifdef SYSTEM_NSS
acfc6fd
-	    if (SECOID_Shutdown() != SECSuccess) {
acfc6fd
-		ThrowException(env, INTERNAL_ERROR);
acfc6fd
-	    }
acfc6fd
-#endif
acfc6fd
         }
acfc6fd
         if (ecparams) {
acfc6fd
             FreeECParams(ecparams, true);
acfc6fd
@@ -253,13 +241,6 @@
acfc6fd
         goto cleanup;
acfc6fd
     }
acfc6fd
 
acfc6fd
-#ifdef SYSTEM_NSS
acfc6fd
-    if (SECOID_Init() != SECSuccess) {
acfc6fd
-	ThrowException(env, INTERNAL_ERROR);
acfc6fd
-	goto cleanup;
acfc6fd
-    }
acfc6fd
-#endif
acfc6fd
-
acfc6fd
     // Fill a new ECParams using the supplied OID
acfc6fd
     if (EC_DecodeParams(&params_item, &ecparams, 0) != SECSuccess) {
acfc6fd
         /* bad curve OID */
acfc6fd
@@ -307,11 +288,6 @@
acfc6fd
         if (params_item.data) {
acfc6fd
             env->ReleaseByteArrayElements(encodedParams,
acfc6fd
                 (jbyte *) params_item.data, JNI_ABORT);
acfc6fd
-#ifdef SYSTEM_NSS
acfc6fd
-	    if (SECOID_Shutdown() != SECSuccess) {
acfc6fd
-		ThrowException(env, INTERNAL_ERROR);
acfc6fd
-	    }
acfc6fd
-#endif
acfc6fd
         }
acfc6fd
         if (privKey.privateValue.data) {
acfc6fd
             env->ReleaseByteArrayElements(privateKey,
acfc6fd
@@ -378,13 +354,6 @@
acfc6fd
         goto cleanup;
acfc6fd
     }
acfc6fd
 
acfc6fd
-#ifdef SYSTEM_NSS
acfc6fd
-    if (SECOID_Init() != SECSuccess) {
acfc6fd
-	ThrowException(env, INTERNAL_ERROR);
acfc6fd
-	goto cleanup;
acfc6fd
-    }
acfc6fd
-#endif
acfc6fd
-
acfc6fd
     // Fill a new ECParams using the supplied OID
acfc6fd
     if (EC_DecodeParams(&params_item, &ecparams, 0) != SECSuccess) {
acfc6fd
         /* bad curve OID */
acfc6fd
@@ -408,11 +377,6 @@
acfc6fd
         if (params_item.data) {
acfc6fd
             env->ReleaseByteArrayElements(encodedParams,
acfc6fd
                 (jbyte *) params_item.data, JNI_ABORT);
acfc6fd
-#ifdef SYSTEM_NSS
acfc6fd
-	    if (SECOID_Shutdown() != SECSuccess) {
acfc6fd
-		ThrowException(env, INTERNAL_ERROR);
acfc6fd
-	    }
acfc6fd
-#endif
acfc6fd
 	}
acfc6fd
 
acfc6fd
         if (pubKey.publicValue.data)
acfc6fd
@@ -474,13 +438,6 @@
acfc6fd
         goto cleanup;
acfc6fd
     }
acfc6fd
 
acfc6fd
-#ifdef SYSTEM_NSS
acfc6fd
-    if (SECOID_Init() != SECSuccess) {
acfc6fd
-	ThrowException(env, INTERNAL_ERROR);
acfc6fd
-	goto cleanup;
acfc6fd
-    }
acfc6fd
-#endif
acfc6fd
-
acfc6fd
     // Fill a new ECParams using the supplied OID
acfc6fd
     if (EC_DecodeParams(&params_item, &ecparams, 0) != SECSuccess) {
acfc6fd
         /* bad curve OID */
acfc6fd
@@ -525,11 +482,6 @@
acfc6fd
         if (params_item.data) {
acfc6fd
             env->ReleaseByteArrayElements(encodedParams,
acfc6fd
                 (jbyte *) params_item.data, JNI_ABORT);
acfc6fd
-#ifdef SYSTEM_NSS
acfc6fd
-	    if (SECOID_Shutdown() != SECSuccess) {
acfc6fd
-		ThrowException(env, INTERNAL_ERROR);
acfc6fd
-	    }
acfc6fd
-#endif
acfc6fd
 	}
acfc6fd
 
acfc6fd
         if (ecparams)
acfc6fd
@@ -539,4 +491,26 @@
acfc6fd
     return jSecret;
acfc6fd
 }
acfc6fd
 
acfc6fd
+JNIEXPORT void
acfc6fd
+JNICALL Java_sun_security_ec_SunEC_initialize
acfc6fd
+  (JNIEnv *env, jclass UNUSED(clazz))
acfc6fd
+{
acfc6fd
+#ifdef SYSTEM_NSS
acfc6fd
+    if (SECOID_Init() != SECSuccess) {
acfc6fd
+	ThrowException(env, INTERNAL_ERROR);
acfc6fd
+    }
acfc6fd
+#endif
acfc6fd
+}
acfc6fd
+
acfc6fd
+JNIEXPORT void
acfc6fd
+JNICALL Java_sun_security_ec_SunEC_cleanup
acfc6fd
+  (JNIEnv *env, jclass UNUSED(clazz))
acfc6fd
+{
acfc6fd
+#ifdef SYSTEM_NSS
acfc6fd
+    if (SECOID_Shutdown() != SECSuccess) {
acfc6fd
+	ThrowException(env, INTERNAL_ERROR);
acfc6fd
+    }
acfc6fd
+#endif
acfc6fd
+}
acfc6fd
+
acfc6fd
 } /* extern "C" */