| 
									
										
										
										
											2018-05-02 21:43:17 +02:00
										 |  |  | #include "tommath_private.h"
 | 
					
						
							| 
									
										
										
										
											2004-10-29 22:07:18 +00:00
										 |  |  | #ifdef BN_MP_TOOM_SQR_C
 | 
					
						
							| 
									
										
										
										
											2003-08-05 01:24:44 +00:00
										 |  |  | /* LibTomMath, multiple-precision integer library -- Tom St Denis
 | 
					
						
							|  |  |  |  * | 
					
						
							|  |  |  |  * LibTomMath is a library that provides multiple-precision | 
					
						
							|  |  |  |  * integer arithmetic as well as number theoretic functionality. | 
					
						
							|  |  |  |  * | 
					
						
							|  |  |  |  * The library was designed directly after the MPI library by | 
					
						
							|  |  |  |  * Michael Fromberger but has been written from scratch with | 
					
						
							|  |  |  |  * additional optimizations in place. | 
					
						
							|  |  |  |  * | 
					
						
							|  |  |  |  * The library is free for all purposes without any express | 
					
						
							|  |  |  |  * guarantee it works. | 
					
						
							|  |  |  |  */ | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | /* squaring using Toom-Cook 3-way algorithm */ | 
					
						
							| 
									
										
										
										
											2017-09-20 16:59:43 +02:00
										 |  |  | int mp_toom_sqr(const mp_int *a, mp_int *b) | 
					
						
							| 
									
										
										
										
											2003-08-05 01:24:44 +00:00
										 |  |  | { | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    mp_int w0, w1, w2, w3, w4, tmp1, a0, a1, a2; | 
					
						
							|  |  |  |    int res, B; | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    /* init temps */ | 
					
						
							|  |  |  |    if ((res = mp_init_multi(&w0, &w1, &w2, &w3, &w4, &a0, &a1, &a2, &tmp1, NULL)) != MP_OKAY) { | 
					
						
							|  |  |  |       return res; | 
					
						
							|  |  |  |    } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    /* B */ | 
					
						
							|  |  |  |    B = a->used / 3; | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    /* a = a2 * B**2 + a1 * B + a0 */ | 
					
						
							|  |  |  |    if ((res = mp_mod_2d(a, DIGIT_BIT * B, &a0)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    if ((res = mp_copy(a, &a1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    mp_rshd(&a1, B); | 
					
						
							|  |  |  |    if ((res = mp_mod_2d(&a1, DIGIT_BIT * B, &a1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    if ((res = mp_copy(a, &a2)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    mp_rshd(&a2, B*2); | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    /* w0 = a0*a0 */ | 
					
						
							|  |  |  |    if ((res = mp_sqr(&a0, &w0)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    /* w4 = a2 * a2 */ | 
					
						
							|  |  |  |    if ((res = mp_sqr(&a2, &w4)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    /* w1 = (a2 + 2(a1 + 2a0))**2 */ | 
					
						
							|  |  |  |    if ((res = mp_mul_2(&a0, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_add(&tmp1, &a1, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_mul_2(&tmp1, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_add(&tmp1, &a2, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    if ((res = mp_sqr(&tmp1, &w1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    /* w3 = (a0 + 2(a1 + 2a2))**2 */ | 
					
						
							|  |  |  |    if ((res = mp_mul_2(&a2, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_add(&tmp1, &a1, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_mul_2(&tmp1, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_add(&tmp1, &a0, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    if ((res = mp_sqr(&tmp1, &w3)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    /* w2 = (a2 + a1 + a0)**2 */ | 
					
						
							|  |  |  |    if ((res = mp_add(&a2, &a1, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_add(&tmp1, &a0, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_sqr(&tmp1, &w2)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    /* now solve the matrix
 | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |       0  0  0  0  1 | 
					
						
							|  |  |  |       1  2  4  8  16 | 
					
						
							|  |  |  |       1  1  1  1  1 | 
					
						
							|  |  |  |       16 8  4  2  1 | 
					
						
							|  |  |  |       1  0  0  0  0 | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |       using 12 subtractions, 4 shifts, 2 small divisions and 1 small multiplication. | 
					
						
							|  |  |  |     */ | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    /* r1 - r4 */ | 
					
						
							|  |  |  |    if ((res = mp_sub(&w1, &w4, &w1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* r3 - r0 */ | 
					
						
							|  |  |  |    if ((res = mp_sub(&w3, &w0, &w3)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* r1/2 */ | 
					
						
							|  |  |  |    if ((res = mp_div_2(&w1, &w1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* r3/2 */ | 
					
						
							|  |  |  |    if ((res = mp_div_2(&w3, &w3)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* r2 - r0 - r4 */ | 
					
						
							|  |  |  |    if ((res = mp_sub(&w2, &w0, &w2)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_sub(&w2, &w4, &w2)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* r1 - r2 */ | 
					
						
							|  |  |  |    if ((res = mp_sub(&w1, &w2, &w1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* r3 - r2 */ | 
					
						
							|  |  |  |    if ((res = mp_sub(&w3, &w2, &w3)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* r1 - 8r0 */ | 
					
						
							|  |  |  |    if ((res = mp_mul_2d(&w0, 3, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_sub(&w1, &tmp1, &w1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* r3 - 8r4 */ | 
					
						
							|  |  |  |    if ((res = mp_mul_2d(&w4, 3, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_sub(&w3, &tmp1, &w3)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* 3r2 - r1 - r3 */ | 
					
						
							| 
									
										
										
										
											2017-10-15 16:11:09 +02:00
										 |  |  |    if ((res = mp_mul_d(&w2, 3uL, &w2)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_sub(&w2, &w1, &w2)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_sub(&w2, &w3, &w2)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* r1 - r2 */ | 
					
						
							|  |  |  |    if ((res = mp_sub(&w1, &w2, &w1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* r3 - r2 */ | 
					
						
							|  |  |  |    if ((res = mp_sub(&w3, &w2, &w3)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* r1/3 */ | 
					
						
							|  |  |  |    if ((res = mp_div_3(&w1, &w1, NULL)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    /* r3/3 */ | 
					
						
							|  |  |  |    if ((res = mp_div_3(&w3, &w3, NULL)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    /* at this point shift W[n] by B*n */ | 
					
						
							|  |  |  |    if ((res = mp_lshd(&w1, 1*B)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_lshd(&w2, 2*B)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_lshd(&w3, 3*B)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_lshd(&w4, 4*B)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    if ((res = mp_add(&w0, &w1, b)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_add(&w2, &w3, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_add(&w4, &tmp1, &tmp1)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							|  |  |  |    if ((res = mp_add(&tmp1, b, b)) != MP_OKAY) { | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  |       goto LBL_ERR; | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    } | 
					
						
							| 
									
										
										
										
											2003-09-19 22:43:07 +00:00
										 |  |  | 
 | 
					
						
							| 
									
										
										
										
											2018-04-11 13:46:35 -07:00
										 |  |  | LBL_ERR: | 
					
						
							| 
									
										
										
										
											2017-08-30 19:15:27 +02:00
										 |  |  |    mp_clear_multi(&w0, &w1, &w2, &w3, &w4, &a0, &a1, &a2, &tmp1, NULL); | 
					
						
							|  |  |  |    return res; | 
					
						
							| 
									
										
										
										
											2003-09-19 22:43:07 +00:00
										 |  |  | } | 
					
						
							|  |  |  | 
 | 
					
						
							| 
									
										
										
										
											2004-10-29 22:07:18 +00:00
										 |  |  | #endif
 | 
					
						
							| 
									
										
										
										
											2005-08-01 16:37:28 +00:00
										 |  |  | 
 | 
					
						
							| 
									
										
										
										
											2017-08-28 16:27:26 +02:00
										 |  |  | /* ref:         $Format:%D$ */ | 
					
						
							|  |  |  | /* git commit:  $Format:%H$ */ | 
					
						
							|  |  |  | /* commit time: $Format:%ai$ */ |