2 Unix SMB/CIFS implementation.
3 Character set conversion Extensions
4 Copyright (C) Igor Vergeichik <iverg@mail.ru> 2001
5 Copyright (C) Andrew Tridgell 2001
6 Copyright (C) Simo Sorce 2001
7 Copyright (C) Martin Pool 2003
9 This program is free software; you can redistribute it and/or modify
10 it under the terms of the GNU General Public License as published by
11 the Free Software Foundation; either version 3 of the License, or
12 (at your option) any later version.
14 This program is distributed in the hope that it will be useful,
15 but WITHOUT ANY WARRANTY; without even the implied warranty of
16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 GNU General Public License for more details.
19 You should have received a copy of the GNU General Public License
20 along with this program. If not, see <http://www.gnu.org/licenses/>.
25 /* We can parameterize this if someone complains.... JRA. */
27 char lp_failed_convert_char(void)
35 * @brief Character-set conversion routines built on our iconv.
37 * @note Samba's internal character set (at least in the 3.0 series)
38 * is always the same as the one for the Unix filesystem. It is
39 * <b>not</b> necessarily UTF-8 and may be different on machines that
40 * need i18n filenames to be compatible with Unix software. It does
41 * have to be a superset of ASCII. All multibyte sequences must start
42 * with a byte with the high bit set.
48 static smb_iconv_t conv_handles
[NUM_CHARSETS
][NUM_CHARSETS
];
49 static bool conv_silent
; /* Should we do a debug if the conversion fails ? */
50 static bool initialized
;
53 * Return the name of a charset to give to iconv().
55 static const char *charset_name(charset_t ch
)
57 const char *ret
= NULL
;
59 if (ch
== CH_UTF16LE
) ret
= "UTF-16LE";
60 else if (ch
== CH_UTF16BE
) ret
= "UTF-16BE";
61 else if (ch
== CH_UNIX
) ret
= lp_unix_charset();
62 else if (ch
== CH_DOS
) ret
= lp_dos_charset();
63 else if (ch
== CH_DISPLAY
) ret
= lp_display_charset();
64 else if (ch
== CH_UTF8
) ret
= "UTF8";
66 #if defined(HAVE_NL_LANGINFO) && defined(CODESET)
67 if (ret
&& !strcmp(ret
, "LOCALE")) {
68 const char *ln
= NULL
;
71 setlocale(LC_ALL
, "");
73 ln
= nl_langinfo(CODESET
);
75 /* Check whether the charset name is supported
77 smb_iconv_t handle
= smb_iconv_open(ln
,"UCS-2LE");
78 if (handle
== (smb_iconv_t
) -1) {
79 DEBUG(5,("Locale charset '%s' unsupported, using ASCII instead\n", ln
));
82 DEBUG(5,("Substituting charset '%s' for LOCALE\n", ln
));
83 smb_iconv_close(handle
);
90 if (!ret
|| !*ret
) ret
= "ASCII";
94 void lazy_initialize_conv(void)
104 * Destroy global objects allocated by init_iconv()
106 void gfree_charcnv(void)
110 for (c1
=0;c1
<NUM_CHARSETS
;c1
++) {
111 for (c2
=0;c2
<NUM_CHARSETS
;c2
++) {
112 if ( conv_handles
[c1
][c2
] ) {
113 smb_iconv_close( conv_handles
[c1
][c2
] );
114 conv_handles
[c1
][c2
] = 0;
122 * Initialize iconv conversion descriptors.
124 * This is called the first time it is needed, and also called again
125 * every time the configuration is reloaded, because the charset or
126 * codepage might have changed.
128 void init_iconv(void)
131 bool did_reload
= False
;
133 /* so that charset_name() works we need to get the UNIX<->UCS2 going
135 if (!conv_handles
[CH_UNIX
][CH_UTF16LE
])
136 conv_handles
[CH_UNIX
][CH_UTF16LE
] = smb_iconv_open(charset_name(CH_UTF16LE
), "ASCII");
138 if (!conv_handles
[CH_UTF16LE
][CH_UNIX
])
139 conv_handles
[CH_UTF16LE
][CH_UNIX
] = smb_iconv_open("ASCII", charset_name(CH_UTF16LE
));
141 for (c1
=0;c1
<NUM_CHARSETS
;c1
++) {
142 for (c2
=0;c2
<NUM_CHARSETS
;c2
++) {
143 const char *n1
= charset_name((charset_t
)c1
);
144 const char *n2
= charset_name((charset_t
)c2
);
145 if (conv_handles
[c1
][c2
] &&
146 strcmp(n1
, conv_handles
[c1
][c2
]->from_name
) == 0 &&
147 strcmp(n2
, conv_handles
[c1
][c2
]->to_name
) == 0)
152 if (conv_handles
[c1
][c2
])
153 smb_iconv_close(conv_handles
[c1
][c2
]);
155 conv_handles
[c1
][c2
] = smb_iconv_open(n2
,n1
);
156 if (conv_handles
[c1
][c2
] == (smb_iconv_t
)-1) {
157 DEBUG(0,("init_iconv: Conversion from %s to %s not supported\n",
158 charset_name((charset_t
)c1
), charset_name((charset_t
)c2
)));
159 if (c1
!= CH_UTF16LE
&& c1
!= CH_UTF16BE
) {
162 if (c2
!= CH_UTF16LE
&& c2
!= CH_UTF16BE
) {
165 DEBUG(0,("init_iconv: Attempting to replace with conversion from %s to %s\n",
167 conv_handles
[c1
][c2
] = smb_iconv_open(n2
,n1
);
168 if (!conv_handles
[c1
][c2
]) {
169 DEBUG(0,("init_iconv: Conversion from %s to %s failed", n1
, n2
));
170 smb_panic("init_iconv: conv_handle initialization failed");
177 /* XXX: Does this really get called every time the dos
178 * codepage changes? */
179 /* XXX: Is the did_reload test too strict? */
187 * Convert string from one encoding to another, making error checking etc
188 * Slow path version - uses (slow) iconv.
190 * @param src pointer to source string (multibyte or singlebyte)
191 * @param srclen length of the source string in bytes
192 * @param dest pointer to destination string (multibyte or singlebyte)
193 * @param destlen maximal length allowed for string
194 * @param allow_bad_conv determines if a "best effort" conversion is acceptable (never returns errors)
195 * @returns the number of bytes occupied in the destination
197 * Ensure the srclen contains the terminating zero.
201 static size_t convert_string_internal(charset_t from
, charset_t to
,
202 void const *src
, size_t srclen
,
203 void *dest
, size_t destlen
, bool allow_bad_conv
)
207 const char* inbuf
= (const char*)src
;
208 char* outbuf
= (char*)dest
;
209 smb_iconv_t descriptor
;
211 lazy_initialize_conv();
213 descriptor
= conv_handles
[from
][to
];
215 if (srclen
== (size_t)-1) {
216 if (from
== CH_UTF16LE
|| from
== CH_UTF16BE
) {
217 srclen
= (strlen_w((const smb_ucs2_t
*)src
)+1) * 2;
219 srclen
= strlen((const char *)src
)+1;
224 if (descriptor
== (smb_iconv_t
)-1 || descriptor
== (smb_iconv_t
)0) {
226 DEBUG(0,("convert_string_internal: Conversion not supported.\n"));
235 retval
= smb_iconv(descriptor
, &inbuf
, &i_len
, &outbuf
, &o_len
);
236 if(retval
==(size_t)-1) {
237 const char *reason
="unknown error";
240 reason
="Incomplete multibyte sequence";
242 DEBUG(3,("convert_string_internal: Conversion error: %s(%s)\n",reason
,inbuf
));
247 reason
="No more room";
249 if (from
== CH_UNIX
) {
250 DEBUG(3,("E2BIG: convert_string(%s,%s): srclen=%u destlen=%u - '%s'\n",
251 charset_name(from
), charset_name(to
),
252 (unsigned int)srclen
, (unsigned int)destlen
, (const char *)src
));
254 DEBUG(3,("E2BIG: convert_string(%s,%s): srclen=%u destlen=%u\n",
255 charset_name(from
), charset_name(to
),
256 (unsigned int)srclen
, (unsigned int)destlen
));
261 reason
="Illegal multibyte sequence";
263 DEBUG(3,("convert_string_internal: Conversion error: %s(%s)\n",reason
,inbuf
));
270 DEBUG(0,("convert_string_internal: Conversion error: %s(%s)\n",reason
,inbuf
));
273 /* smb_panic(reason); */
275 return destlen
-o_len
;
280 * Conversion not supported. This is actually an error, but there are so
281 * many misconfigured iconv systems and smb.conf's out there we can't just
282 * fail. Do a very bad conversion instead.... JRA.
286 if (o_len
== 0 || i_len
== 0)
287 return destlen
- o_len
;
289 if (((from
== CH_UTF16LE
)||(from
== CH_UTF16BE
)) &&
290 ((to
!= CH_UTF16LE
)||(to
!= CH_UTF16BE
))) {
291 /* Can't convert from utf16 any endian to multibyte.
292 Replace with the default fail char.
295 return destlen
- o_len
;
297 *outbuf
= lp_failed_convert_char();
306 if (o_len
== 0 || i_len
== 0)
307 return destlen
- o_len
;
309 /* Keep trying with the next char... */
312 } else if (from
!= CH_UTF16LE
&& from
!= CH_UTF16BE
&& to
== CH_UTF16LE
) {
313 /* Can't convert to UTF16LE - just widen by adding the
314 default fail char then zero.
317 return destlen
- o_len
;
319 outbuf
[0] = lp_failed_convert_char();
328 if (o_len
== 0 || i_len
== 0)
329 return destlen
- o_len
;
331 /* Keep trying with the next char... */
334 } else if (from
!= CH_UTF16LE
&& from
!= CH_UTF16BE
&&
335 to
!= CH_UTF16LE
&& to
!= CH_UTF16BE
) {
336 /* Failed multibyte to multibyte. Just copy the default fail char and
338 outbuf
[0] = lp_failed_convert_char();
346 if (o_len
== 0 || i_len
== 0)
347 return destlen
- o_len
;
349 /* Keep trying with the next char... */
353 /* Keep compiler happy.... */
354 return destlen
- o_len
;
360 * Convert string from one encoding to another, making error checking etc
361 * Fast path version - handles ASCII first.
363 * @param src pointer to source string (multibyte or singlebyte)
364 * @param srclen length of the source string in bytes, or -1 for nul terminated.
365 * @param dest pointer to destination string (multibyte or singlebyte)
366 * @param destlen maximal length allowed for string - *NEVER* -1.
367 * @param allow_bad_conv determines if a "best effort" conversion is acceptable (never returns errors)
368 * @returns the number of bytes occupied in the destination
370 * Ensure the srclen contains the terminating zero.
372 * This function has been hand-tuned to provide a fast path.
373 * Don't change unless you really know what you are doing. JRA.
376 size_t convert_string(charset_t from
, charset_t to
,
377 void const *src
, size_t srclen
,
378 void *dest
, size_t destlen
, bool allow_bad_conv
)
381 * NB. We deliberately don't do a strlen here if srclen == -1.
382 * This is very expensive over millions of calls and is taken
383 * care of in the slow path in convert_string_internal. JRA.
387 SMB_ASSERT(destlen
!= (size_t)-1);
393 if (from
!= CH_UTF16LE
&& from
!= CH_UTF16BE
&& to
!= CH_UTF16LE
&& to
!= CH_UTF16BE
) {
394 const unsigned char *p
= (const unsigned char *)src
;
395 unsigned char *q
= (unsigned char *)dest
;
396 size_t slen
= srclen
;
397 size_t dlen
= destlen
;
398 unsigned char lastp
= '\0';
401 /* If all characters are ascii, fast path here. */
402 while (slen
&& dlen
) {
403 if ((lastp
= *p
) <= 0x7f) {
405 if (slen
!= (size_t)-1) {
413 #ifdef BROKEN_UNICODE_COMPOSE_CHARACTERS
416 size_t ret
= convert_string_internal(from
, to
, p
, slen
, q
, dlen
, allow_bad_conv
);
417 if (ret
== (size_t)-1) {
425 /* Even if we fast path we should note if we ran out of room. */
426 if (((slen
!= (size_t)-1) && slen
) ||
427 ((slen
== (size_t)-1) && lastp
)) {
432 } else if (from
== CH_UTF16LE
&& to
!= CH_UTF16LE
) {
433 const unsigned char *p
= (const unsigned char *)src
;
434 unsigned char *q
= (unsigned char *)dest
;
436 size_t slen
= srclen
;
437 size_t dlen
= destlen
;
438 unsigned char lastp
= '\0';
440 /* If all characters are ascii, fast path here. */
441 while (((slen
== (size_t)-1) || (slen
>= 2)) && dlen
) {
442 if (((lastp
= *p
) <= 0x7f) && (p
[1] == 0)) {
444 if (slen
!= (size_t)-1) {
453 #ifdef BROKEN_UNICODE_COMPOSE_CHARACTERS
456 size_t ret
= convert_string_internal(from
, to
, p
, slen
, q
, dlen
, allow_bad_conv
);
457 if (ret
== (size_t)-1) {
465 /* Even if we fast path we should note if we ran out of room. */
466 if (((slen
!= (size_t)-1) && slen
) ||
467 ((slen
== (size_t)-1) && lastp
)) {
472 } else if (from
!= CH_UTF16LE
&& from
!= CH_UTF16BE
&& to
== CH_UTF16LE
) {
473 const unsigned char *p
= (const unsigned char *)src
;
474 unsigned char *q
= (unsigned char *)dest
;
476 size_t slen
= srclen
;
477 size_t dlen
= destlen
;
478 unsigned char lastp
= '\0';
480 /* If all characters are ascii, fast path here. */
481 while (slen
&& (dlen
>= 2)) {
482 if ((lastp
= *p
) <= 0x7F) {
485 if (slen
!= (size_t)-1) {
493 #ifdef BROKEN_UNICODE_COMPOSE_CHARACTERS
496 size_t ret
= convert_string_internal(from
, to
, p
, slen
, q
, dlen
, allow_bad_conv
);
497 if (ret
== (size_t)-1) {
505 /* Even if we fast path we should note if we ran out of room. */
506 if (((slen
!= (size_t)-1) && slen
) ||
507 ((slen
== (size_t)-1) && lastp
)) {
514 #ifdef BROKEN_UNICODE_COMPOSE_CHARACTERS
517 return convert_string_internal(from
, to
, src
, srclen
, dest
, destlen
, allow_bad_conv
);
521 * Convert between character sets, allocating a new buffer for the result.
523 * @param ctx TALLOC_CTX to use to allocate with. If NULL use malloc.
524 * (this is a bad interface and needs fixing. JRA).
525 * @param srclen length of source buffer.
526 * @param dest always set at least to NULL
527 * @param converted_size set to the size of the allocated buffer on return
529 * @note -1 is not accepted for srclen.
531 * @return True if new buffer was correctly allocated, and string was
534 * Ensure the srclen contains the terminating zero.
536 * I hate the goto's in this function. It's embarressing.....
537 * There has to be a cleaner way to do this. JRA.
540 bool convert_string_allocate(TALLOC_CTX
*ctx
, charset_t from
, charset_t to
,
541 void const *src
, size_t srclen
, void *dst
,
542 size_t *converted_size
, bool allow_bad_conv
)
544 size_t i_len
, o_len
, destlen
= (srclen
* 3) / 2;
546 const char *inbuf
= (const char *)src
;
547 char *outbuf
= NULL
, *ob
= NULL
;
548 smb_iconv_t descriptor
;
549 void **dest
= (void **)dst
;
553 if (!converted_size
) {
558 if (src
== NULL
|| srclen
== (size_t)-1) {
563 ob
= ((ctx
!= NULL
) ? talloc_strdup(ctx
, "") : SMB_STRDUP(""));
573 lazy_initialize_conv();
575 descriptor
= conv_handles
[from
][to
];
577 if (descriptor
== (smb_iconv_t
)-1 || descriptor
== (smb_iconv_t
)0) {
579 DEBUG(0,("convert_string_allocate: Conversion not supported.\n"));
586 /* +2 is for ucs2 null termination. */
587 if ((destlen
*2)+2 < destlen
) {
588 /* wrapped ! abort. */
590 DEBUG(0, ("convert_string_allocate: destlen wrapped !\n"));
596 destlen
= destlen
* 2;
599 /* +2 is for ucs2 null termination. */
601 ob
= (char *)TALLOC_REALLOC(ctx
, ob
, destlen
+ 2);
603 ob
= (char *)SMB_REALLOC(ob
, destlen
+ 2);
607 DEBUG(0, ("convert_string_allocate: realloc failed!\n"));
617 retval
= smb_iconv(descriptor
,
620 if(retval
== (size_t)-1) {
621 const char *reason
="unknown error";
624 reason
="Incomplete multibyte sequence";
626 DEBUG(3,("convert_string_allocate: Conversion error: %s(%s)\n",reason
,inbuf
));
633 reason
="Illegal multibyte sequence";
635 DEBUG(3,("convert_string_allocate: Conversion error: %s(%s)\n",reason
,inbuf
));
641 DEBUG(0,("Conversion error: %s(%s)\n",reason
,inbuf
));
642 /* smb_panic(reason); */
653 destlen
= destlen
- o_len
;
654 /* Don't shrink unless we're reclaiming a lot of
655 * space. This is in the hot codepath and these
656 * reallocs *cost*. JRA.
659 /* We're shrinking here so we know the +2 is safe from wrap. */
661 ob
= (char *)TALLOC_REALLOC(ctx
,ob
,destlen
+ 2);
663 ob
= (char *)SMB_REALLOC(ob
,destlen
+ 2);
667 if (destlen
&& !ob
) {
668 DEBUG(0, ("convert_string_allocate: out of memory!\n"));
675 /* Must ucs2 null terminate in the extra space we allocated. */
677 ob
[destlen
+1] = '\0';
679 *converted_size
= destlen
;
685 * Conversion not supported. This is actually an error, but there are so
686 * many misconfigured iconv systems and smb.conf's out there we can't just
687 * fail. Do a very bad conversion instead.... JRA.
691 if (o_len
== 0 || i_len
== 0)
694 if (((from
== CH_UTF16LE
)||(from
== CH_UTF16BE
)) &&
695 ((to
!= CH_UTF16LE
)||(to
!= CH_UTF16BE
))) {
696 /* Can't convert from utf16 any endian to multibyte.
697 Replace with the default fail char.
704 *outbuf
= lp_failed_convert_char();
713 if (o_len
== 0 || i_len
== 0)
716 /* Keep trying with the next char... */
719 } else if (from
!= CH_UTF16LE
&& from
!= CH_UTF16BE
&& to
== CH_UTF16LE
) {
720 /* Can't convert to UTF16LE - just widen by adding the
721 default fail char then zero.
726 outbuf
[0] = lp_failed_convert_char();
735 if (o_len
== 0 || i_len
== 0)
738 /* Keep trying with the next char... */
741 } else if (from
!= CH_UTF16LE
&& from
!= CH_UTF16BE
&&
742 to
!= CH_UTF16LE
&& to
!= CH_UTF16BE
) {
743 /* Failed multibyte to multibyte. Just copy the default fail char and
745 outbuf
[0] = lp_failed_convert_char();
753 if (o_len
== 0 || i_len
== 0)
756 /* Keep trying with the next char... */
760 /* Keep compiler happy.... */
767 * Convert between character sets, allocating a new buffer using talloc for the result.
769 * @param srclen length of source buffer.
770 * @param dest always set at least to NULL
771 * @note -1 is not accepted for srclen.
773 * @returns Size in bytes of the converted string; or -1 in case of error.
775 size_t convert_string_talloc(TALLOC_CTX
*ctx
, charset_t from
, charset_t to
,
776 void const *src
, size_t srclen
, void *dst
,
779 void **dest
= (void **)dst
;
783 if (!convert_string_allocate(ctx
, from
, to
, src
, srclen
, dest
,
784 &dest_len
, allow_bad_conv
))
791 size_t unix_strupper(const char *src
, size_t srclen
, char *dest
, size_t destlen
)
796 size
= push_ucs2_allocate(&buffer
, src
);
797 if (size
== (size_t)-1) {
800 if (!strupper_w(buffer
) && (dest
== src
)) {
805 size
= convert_string(CH_UTF16LE
, CH_UNIX
, buffer
, size
, dest
, destlen
, True
);
811 strdup() a unix string to upper case.
814 char *strdup_upper(const char *s
)
816 char *out_buffer
= SMB_STRDUP(s
);
817 const unsigned char *p
= (const unsigned char *)s
;
818 unsigned char *q
= (unsigned char *)out_buffer
;
824 /* this is quite a common operation, so we want it to be
825 fast. We optimise for the ascii case, knowing that all our
826 supported multi-byte character sets are ascii-compatible
827 (ie. they match for the first 128 chars) */
832 *q
++ = toupper_ascii_fast(*p
);
839 smb_ucs2_t
*buffer
= NULL
;
841 SAFE_FREE(out_buffer
);
842 if (!convert_string_allocate(NULL
, CH_UNIX
, CH_UTF16LE
, s
,
843 strlen(s
) + 1, (void **)(void *)&buffer
, &size
,
850 if (!convert_string_allocate(NULL
, CH_UTF16LE
, CH_UNIX
, buffer
,
851 size
, (void **)(void *)&out_buffer
, &size2
, True
)) {
856 /* Don't need the intermediate buffer
866 talloc_strdup() a unix string to upper case.
869 char *talloc_strdup_upper(TALLOC_CTX
*ctx
, const char *s
)
871 char *out_buffer
= talloc_strdup(ctx
,s
);
872 const unsigned char *p
= (const unsigned char *)s
;
873 unsigned char *q
= (unsigned char *)out_buffer
;
879 /* this is quite a common operation, so we want it to be
880 fast. We optimise for the ascii case, knowing that all our
881 supported multi-byte character sets are ascii-compatible
882 (ie. they match for the first 128 chars) */
887 *q
++ = toupper_ascii_fast(*p
);
894 smb_ucs2_t
*ubuf
= NULL
;
896 /* We're not using the ascii buffer above. */
897 TALLOC_FREE(out_buffer
);
899 size
= convert_string_talloc(ctx
, CH_UNIX
, CH_UTF16LE
,
903 if (size
== (size_t)-1) {
909 size
= convert_string_talloc(ctx
, CH_UTF16LE
, CH_UNIX
,
914 /* Don't need the intermediate buffer
920 if (size
== (size_t)-1) {
928 size_t unix_strlower(const char *src
, size_t srclen
, char *dest
, size_t destlen
)
931 smb_ucs2_t
*buffer
= NULL
;
933 if (!convert_string_allocate(NULL
, CH_UNIX
, CH_UTF16LE
, src
, srclen
,
934 (void **)(void *)&buffer
, &size
, True
)) {
935 smb_panic("failed to create UCS2 buffer");
937 if (!strlower_w(buffer
) && (dest
== src
)) {
941 size
= convert_string(CH_UTF16LE
, CH_UNIX
, buffer
, size
, dest
, destlen
, True
);
947 strdup() a unix string to lower case.
950 char *strdup_lower(const char *s
)
953 smb_ucs2_t
*buffer
= NULL
;
956 size
= push_ucs2_allocate(&buffer
, s
);
957 if (size
== -1 || !buffer
) {
963 size
= pull_ucs2_allocate(&out_buffer
, buffer
);
966 if (size
== (size_t)-1) {
973 char *talloc_strdup_lower(TALLOC_CTX
*ctx
, const char *s
)
976 smb_ucs2_t
*buffer
= NULL
;
979 size
= push_ucs2_talloc(ctx
, &buffer
, s
);
980 if (size
== -1 || !buffer
) {
987 size
= pull_ucs2_talloc(ctx
, &out_buffer
, buffer
);
990 if (size
== (size_t)-1) {
991 TALLOC_FREE(out_buffer
);
999 size_t ucs2_align(const void *base_ptr
, const void *p
, int flags
)
1001 if (flags
& (STR_NOALIGN
|STR_ASCII
))
1003 return PTR_DIFF(p
, base_ptr
) & 1;
1008 * Copy a string from a char* unix src to a dos codepage string destination.
1010 * @return the number of bytes occupied by the string in the destination.
1012 * @param flags can include
1014 * <dt>STR_TERMINATE</dt> <dd>means include the null termination</dd>
1015 * <dt>STR_UPPER</dt> <dd>means uppercase in the destination</dd>
1018 * @param dest_len the maximum length in bytes allowed in the
1021 size_t push_ascii(void *dest
, const char *src
, size_t dest_len
, int flags
)
1023 size_t src_len
= strlen(src
);
1024 char *tmpbuf
= NULL
;
1027 /* No longer allow a length of -1. */
1028 if (dest_len
== (size_t)-1) {
1029 smb_panic("push_ascii - dest_len == -1");
1032 if (flags
& STR_UPPER
) {
1033 tmpbuf
= SMB_STRDUP(src
);
1035 smb_panic("malloc fail");
1041 if (flags
& (STR_TERMINATE
| STR_TERMINATE_ASCII
)) {
1045 ret
= convert_string(CH_UNIX
, CH_DOS
, src
, src_len
, dest
, dest_len
, True
);
1046 if (ret
== (size_t)-1 &&
1047 (flags
& (STR_TERMINATE
| STR_TERMINATE_ASCII
))
1049 ((char *)dest
)[0] = '\0';
1055 size_t push_ascii_fstring(void *dest
, const char *src
)
1057 return push_ascii(dest
, src
, sizeof(fstring
), STR_TERMINATE
);
1060 /********************************************************************
1061 Push an nstring - ensure null terminated. Written by
1062 moriyama@miraclelinux.com (MORIYAMA Masayuki).
1063 ********************************************************************/
1065 size_t push_ascii_nstring(void *dest
, const char *src
)
1067 size_t i
, buffer_len
, dest_len
;
1071 buffer_len
= push_ucs2_allocate(&buffer
, src
);
1072 if (buffer_len
== (size_t)-1) {
1073 smb_panic("failed to create UCS2 buffer");
1076 /* We're using buffer_len below to count ucs2 characters, not bytes. */
1077 buffer_len
/= sizeof(smb_ucs2_t
);
1080 for (i
= 0; buffer
[i
] != 0 && (i
< buffer_len
); i
++) {
1081 unsigned char mb
[10];
1082 /* Convert one smb_ucs2_t character at a time. */
1083 size_t mb_len
= convert_string(CH_UTF16LE
, CH_DOS
, buffer
+i
, sizeof(smb_ucs2_t
), mb
, sizeof(mb
), False
);
1084 if ((mb_len
!= (size_t)-1) && (dest_len
+ mb_len
<= MAX_NETBIOSNAME_LEN
- 1)) {
1085 memcpy((char *)dest
+ dest_len
, mb
, mb_len
);
1092 ((char *)dest
)[dest_len
] = '\0';
1095 conv_silent
= False
;
1099 /********************************************************************
1100 Push and malloc an ascii string. src and dest null terminated.
1101 ********************************************************************/
1103 size_t push_ascii_allocate(char **dest
, const char *src
)
1105 size_t dest_len
, src_len
= strlen(src
)+1;
1108 if (!convert_string_allocate(NULL
, CH_UNIX
, CH_DOS
, src
, src_len
,
1109 (void **)dest
, &dest_len
, True
))
1116 * Copy a string from a dos codepage source to a unix char* destination.
1118 * The resulting string in "dest" is always null terminated.
1120 * @param flags can have:
1122 * <dt>STR_TERMINATE</dt>
1123 * <dd>STR_TERMINATE means the string in @p src
1124 * is null terminated, and src_len is ignored.</dd>
1127 * @param src_len is the length of the source area in bytes.
1128 * @returns the number of bytes occupied by the string in @p src.
1130 size_t pull_ascii(char *dest
, const void *src
, size_t dest_len
, size_t src_len
, int flags
)
1134 if (dest_len
== (size_t)-1) {
1135 /* No longer allow dest_len of -1. */
1136 smb_panic("pull_ascii - invalid dest_len of -1");
1139 if (flags
& STR_TERMINATE
) {
1140 if (src_len
== (size_t)-1) {
1141 src_len
= strlen((const char *)src
) + 1;
1143 size_t len
= strnlen((const char *)src
, src_len
);
1150 ret
= convert_string(CH_DOS
, CH_UNIX
, src
, src_len
, dest
, dest_len
, True
);
1151 if (ret
== (size_t)-1) {
1156 if (dest_len
&& ret
) {
1157 /* Did we already process the terminating zero ? */
1158 if (dest
[MIN(ret
-1, dest_len
-1)] != 0) {
1159 dest
[MIN(ret
, dest_len
-1)] = 0;
1169 * Copy a string from a dos codepage source to a unix char* destination.
1171 Uses malloc if TALLOC_CTX is NULL (this is a bad interface and
1174 * The resulting string in "dest" is always null terminated.
1176 * @param flags can have:
1178 * <dt>STR_TERMINATE</dt>
1179 * <dd>STR_TERMINATE means the string in @p src
1180 * is null terminated, and src_len is ignored.</dd>
1183 * @param src_len is the length of the source area in bytes.
1184 * @returns the number of bytes occupied by the string in @p src.
1187 static size_t pull_ascii_base_talloc(TALLOC_CTX
*ctx
,
1194 size_t dest_len
= 0;
1197 /* Ensure we never use the braindead "malloc" varient. */
1199 smb_panic("NULL talloc CTX in pull_ascii_base_talloc\n");
1209 if (flags
& STR_TERMINATE
) {
1210 if (src_len
== (size_t)-1) {
1211 src_len
= strlen((const char *)src
) + 1;
1213 size_t len
= strnlen((const char *)src
, src_len
);
1218 /* Ensure we don't use an insane length from the client. */
1219 if (src_len
>= 1024*1024) {
1220 char *msg
= talloc_asprintf(ctx
,
1221 "Bad src length (%u) in "
1222 "pull_ascii_base_talloc",
1223 (unsigned int)src_len
);
1227 /* Can't have an unlimited length
1228 * non STR_TERMINATE'd.
1230 if (src_len
== (size_t)-1) {
1236 /* src_len != -1 here. */
1238 if (!convert_string_allocate(ctx
, CH_DOS
, CH_UNIX
, src
, src_len
, &dest
,
1243 if (dest_len
&& dest
) {
1244 /* Did we already process the terminating zero ? */
1245 if (dest
[dest_len
-1] != 0) {
1246 size_t size
= talloc_get_size(dest
);
1247 /* Have we got space to append the '\0' ? */
1248 if (size
<= dest_len
) {
1250 dest
= TALLOC_REALLOC_ARRAY(ctx
, dest
, char,
1254 dest_len
= (size_t)-1;
1259 dest
[dest_len
] = '\0';
1270 size_t pull_ascii_fstring(char *dest
, const void *src
)
1272 return pull_ascii(dest
, src
, sizeof(fstring
), -1, STR_TERMINATE
);
1275 /* When pulling an nstring it can expand into a larger size (dos cp -> utf8). Cope with this. */
1277 size_t pull_ascii_nstring(char *dest
, size_t dest_len
, const void *src
)
1279 return pull_ascii(dest
, src
, dest_len
, sizeof(nstring
)-1, STR_TERMINATE
);
1283 * Copy a string from a char* src to a unicode destination.
1285 * @returns the number of bytes occupied by the string in the destination.
1287 * @param flags can have:
1290 * <dt>STR_TERMINATE <dd>means include the null termination.
1291 * <dt>STR_UPPER <dd>means uppercase in the destination.
1292 * <dt>STR_NOALIGN <dd>means don't do alignment.
1295 * @param dest_len is the maximum length allowed in the
1299 size_t push_ucs2(const void *base_ptr
, void *dest
, const char *src
, size_t dest_len
, int flags
)
1305 if (dest_len
== (size_t)-1) {
1306 /* No longer allow dest_len of -1. */
1307 smb_panic("push_ucs2 - invalid dest_len of -1");
1310 if (flags
& STR_TERMINATE
)
1311 src_len
= (size_t)-1;
1313 src_len
= strlen(src
);
1315 if (ucs2_align(base_ptr
, dest
, flags
)) {
1317 dest
= (void *)((char *)dest
+ 1);
1323 /* ucs2 is always a multiple of 2 bytes */
1326 ret
= convert_string(CH_UNIX
, CH_UTF16LE
, src
, src_len
, dest
, dest_len
, True
);
1327 if (ret
== (size_t)-1) {
1328 if ((flags
& STR_TERMINATE
) &&
1338 if (flags
& STR_UPPER
) {
1339 smb_ucs2_t
*dest_ucs2
= (smb_ucs2_t
*)dest
;
1342 /* We check for i < (ret / 2) below as the dest string isn't null
1343 terminated if STR_TERMINATE isn't set. */
1345 for (i
= 0; i
< (ret
/ 2) && i
< (dest_len
/ 2) && dest_ucs2
[i
]; i
++) {
1346 smb_ucs2_t v
= toupper_w(dest_ucs2
[i
]);
1347 if (v
!= dest_ucs2
[i
]) {
1358 * Copy a string from a unix char* src to a UCS2 destination,
1359 * allocating a buffer using talloc().
1361 * @param dest always set at least to NULL
1363 * @returns The number of bytes occupied by the string in the destination
1364 * or -1 in case of error.
1366 size_t push_ucs2_talloc(TALLOC_CTX
*ctx
, smb_ucs2_t
**dest
, const char *src
)
1368 size_t src_len
= strlen(src
)+1;
1371 return convert_string_talloc(ctx
, CH_UNIX
, CH_UTF16LE
, src
, src_len
, (void **)dest
, True
);
1376 * Copy a string from a unix char* src to a UCS2 destination, allocating a buffer
1378 * @param dest always set at least to NULL
1380 * @returns The number of bytes occupied by the string in the destination
1381 * or -1 in case of error.
1384 size_t push_ucs2_allocate(smb_ucs2_t
**dest
, const char *src
)
1386 size_t dest_len
, src_len
= strlen(src
)+1;
1389 if (!convert_string_allocate(NULL
, CH_UNIX
, CH_UTF16LE
, src
, src_len
,
1390 (void **)dest
, &dest_len
, True
))
1397 Copy a string from a char* src to a UTF-8 destination.
1398 Return the number of bytes occupied by the string in the destination
1400 STR_TERMINATE means include the null termination
1401 STR_UPPER means uppercase in the destination
1402 dest_len is the maximum length allowed in the destination. If dest_len
1403 is -1 then no maxiumum is used.
1406 static size_t push_utf8(void *dest
, const char *src
, size_t dest_len
, int flags
)
1410 char *tmpbuf
= NULL
;
1412 if (dest_len
== (size_t)-1) {
1413 /* No longer allow dest_len of -1. */
1414 smb_panic("push_utf8 - invalid dest_len of -1");
1417 if (flags
& STR_UPPER
) {
1418 tmpbuf
= strdup_upper(src
);
1423 src_len
= strlen(src
);
1426 src_len
= strlen(src
);
1427 if (flags
& STR_TERMINATE
) {
1431 ret
= convert_string(CH_UNIX
, CH_UTF8
, src
, src_len
, dest
, dest_len
, True
);
1436 size_t push_utf8_fstring(void *dest
, const char *src
)
1438 return push_utf8(dest
, src
, sizeof(fstring
), STR_TERMINATE
);
1442 * Copy a string from a unix char* src to a UTF-8 destination, allocating a buffer using talloc
1444 * @param dest always set at least to NULL
1446 * @returns The number of bytes occupied by the string in the destination
1449 size_t push_utf8_talloc(TALLOC_CTX
*ctx
, char **dest
, const char *src
)
1451 size_t src_len
= strlen(src
)+1;
1454 return convert_string_talloc(ctx
, CH_UNIX
, CH_UTF8
, src
, src_len
, (void**)dest
, True
);
1458 * Copy a string from a unix char* src to a UTF-8 destination, allocating a buffer
1460 * @param dest always set at least to NULL
1462 * @returns The number of bytes occupied by the string in the destination
1465 size_t push_utf8_allocate(char **dest
, const char *src
)
1467 size_t dest_len
, src_len
= strlen(src
)+1;
1470 if (!convert_string_allocate(NULL
, CH_UNIX
, CH_UTF8
, src
, src_len
,
1471 (void **)dest
, &dest_len
, True
))
1478 Copy a string from a ucs2 source to a unix char* destination.
1480 STR_TERMINATE means the string in src is null terminated.
1481 STR_NOALIGN means don't try to align.
1482 if STR_TERMINATE is set then src_len is ignored if it is -1.
1483 src_len is the length of the source area in bytes
1484 Return the number of bytes occupied by the string in src.
1485 The resulting string in "dest" is always null terminated.
1488 size_t pull_ucs2(const void *base_ptr
, char *dest
, const void *src
, size_t dest_len
, size_t src_len
, int flags
)
1492 if (dest_len
== (size_t)-1) {
1493 /* No longer allow dest_len of -1. */
1494 smb_panic("pull_ucs2 - invalid dest_len of -1");
1498 if (dest
&& dest_len
> 0) {
1504 if (ucs2_align(base_ptr
, src
, flags
)) {
1505 src
= (const void *)((const char *)src
+ 1);
1506 if (src_len
!= (size_t)-1)
1510 if (flags
& STR_TERMINATE
) {
1511 /* src_len -1 is the default for null terminated strings. */
1512 if (src_len
!= (size_t)-1) {
1513 size_t len
= strnlen_w((const smb_ucs2_t
*)src
,
1515 if (len
< src_len
/2)
1521 /* ucs2 is always a multiple of 2 bytes */
1522 if (src_len
!= (size_t)-1)
1525 ret
= convert_string(CH_UTF16LE
, CH_UNIX
, src
, src_len
, dest
, dest_len
, True
);
1526 if (ret
== (size_t)-1) {
1531 if (src_len
== (size_t)-1)
1534 if (dest_len
&& ret
) {
1535 /* Did we already process the terminating zero ? */
1536 if (dest
[MIN(ret
-1, dest_len
-1)] != 0) {
1537 dest
[MIN(ret
, dest_len
-1)] = 0;
1547 Copy a string from a ucs2 source to a unix char* destination.
1548 Talloc version with a base pointer.
1549 Uses malloc if TALLOC_CTX is NULL (this is a bad interface and
1552 STR_TERMINATE means the string in src is null terminated.
1553 STR_NOALIGN means don't try to align.
1554 if STR_TERMINATE is set then src_len is ignored if it is -1.
1555 src_len is the length of the source area in bytes
1556 Return the number of bytes occupied by the string in src.
1557 The resulting string in "dest" is always null terminated.
1560 size_t pull_ucs2_base_talloc(TALLOC_CTX
*ctx
,
1561 const void *base_ptr
,
1573 /* Ensure we never use the braindead "malloc" varient. */
1575 smb_panic("NULL talloc CTX in pull_ucs2_base_talloc\n");
1583 if (ucs2_align(base_ptr
, src
, flags
)) {
1584 src
= (const void *)((const char *)src
+ 1);
1585 if (src_len
!= (size_t)-1)
1589 if (flags
& STR_TERMINATE
) {
1590 /* src_len -1 is the default for null terminated strings. */
1591 if (src_len
!= (size_t)-1) {
1592 size_t len
= strnlen_w((const smb_ucs2_t
*)src
,
1594 if (len
< src_len
/2)
1599 * src_len == -1 - alloc interface won't take this
1600 * so we must calculate.
1602 src_len
= (strlen_w((const smb_ucs2_t
*)src
)+1)*sizeof(smb_ucs2_t
);
1604 /* Ensure we don't use an insane length from the client. */
1605 if (src_len
>= 1024*1024) {
1606 smb_panic("Bad src length in pull_ucs2_base_talloc\n");
1609 /* Can't have an unlimited length
1610 * non STR_TERMINATE'd.
1612 if (src_len
== (size_t)-1) {
1618 /* src_len != -1 here. */
1620 /* ucs2 is always a multiple of 2 bytes */
1623 dest_len
= convert_string_talloc(ctx
,
1630 if (dest_len
== (size_t)-1) {
1635 /* Did we already process the terminating zero ? */
1636 if (dest
[dest_len
-1] != 0) {
1637 size_t size
= talloc_get_size(dest
);
1638 /* Have we got space to append the '\0' ? */
1639 if (size
<= dest_len
) {
1641 dest
= TALLOC_REALLOC_ARRAY(ctx
, dest
, char,
1645 dest_len
= (size_t)-1;
1650 dest
[dest_len
] = '\0';
1661 size_t pull_ucs2_fstring(char *dest
, const void *src
)
1663 return pull_ucs2(NULL
, dest
, src
, sizeof(fstring
), -1, STR_TERMINATE
);
1667 * Copy a string from a UCS2 src to a unix char * destination, allocating a buffer using talloc
1669 * @param dest always set at least to NULL
1671 * @returns The number of bytes occupied by the string in the destination
1674 size_t pull_ucs2_talloc(TALLOC_CTX
*ctx
, char **dest
, const smb_ucs2_t
*src
)
1676 size_t src_len
= (strlen_w(src
)+1) * sizeof(smb_ucs2_t
);
1678 return convert_string_talloc(ctx
, CH_UTF16LE
, CH_UNIX
, src
, src_len
, (void **)dest
, True
);
1682 * Copy a string from a UCS2 src to a unix char * destination, allocating a buffer
1684 * @param dest always set at least to NULL
1686 * @returns The number of bytes occupied by the string in the destination
1689 size_t pull_ucs2_allocate(char **dest
, const smb_ucs2_t
*src
)
1691 size_t dest_len
, src_len
= (strlen_w(src
)+1) * sizeof(smb_ucs2_t
);
1693 if (!convert_string_allocate(NULL
, CH_UTF16LE
, CH_UNIX
, src
, src_len
,
1694 (void **)dest
, &dest_len
, True
))
1701 * Copy a string from a UTF-8 src to a unix char * destination, allocating a buffer using talloc
1703 * @param dest always set at least to NULL
1705 * @returns The number of bytes occupied by the string in the destination
1708 size_t pull_utf8_talloc(TALLOC_CTX
*ctx
, char **dest
, const char *src
)
1710 size_t src_len
= strlen(src
)+1;
1712 return convert_string_talloc(ctx
, CH_UTF8
, CH_UNIX
, src
, src_len
, (void **)dest
, True
);
1716 * Copy a string from a UTF-8 src to a unix char * destination, allocating a buffer
1718 * @param dest always set at least to NULL
1720 * @returns The number of bytes occupied by the string in the destination
1723 size_t pull_utf8_allocate(char **dest
, const char *src
)
1725 size_t dest_len
, src_len
= strlen(src
)+1;
1727 if (!convert_string_allocate(NULL
, CH_UTF8
, CH_UNIX
, src
, src_len
,
1728 (void **)dest
, &dest_len
, True
))
1735 * Copy a string from a DOS src to a unix char * destination, allocating a buffer using talloc
1737 * @param dest always set at least to NULL
1739 * @returns The number of bytes occupied by the string in the destination
1742 size_t pull_ascii_talloc(TALLOC_CTX
*ctx
, char **dest
, const char *src
)
1744 size_t src_len
= strlen(src
)+1;
1746 return convert_string_talloc(ctx
, CH_DOS
, CH_UNIX
, src
, src_len
, (void **)dest
, True
);
1750 Copy a string from a char* src to a unicode or ascii
1751 dos codepage destination choosing unicode or ascii based on the
1752 flags in the SMB buffer starting at base_ptr.
1753 Return the number of bytes occupied by the string in the destination.
1755 STR_TERMINATE means include the null termination.
1756 STR_UPPER means uppercase in the destination.
1757 STR_ASCII use ascii even with unicode packet.
1758 STR_NOALIGN means don't do alignment.
1759 dest_len is the maximum length allowed in the destination. If dest_len
1760 is -1 then no maxiumum is used.
1763 size_t push_string_fn(const char *function
, unsigned int line
,
1764 const void *base_ptr
, uint16 flags2
,
1765 void *dest
, const char *src
,
1766 size_t dest_len
, int flags
)
1769 /* We really need to zero fill here, not clobber
1770 * region, as we want to ensure that valgrind thinks
1771 * all of the outgoing buffer has been written to
1772 * so a send() or write() won't trap an error.
1776 clobber_region(function
, line
, dest
, dest_len
);
1778 memset(dest
, '\0', dest_len
);
1782 if (!(flags
& STR_ASCII
) && \
1783 ((flags
& STR_UNICODE
|| \
1784 (flags2
& FLAGS2_UNICODE_STRINGS
)))) {
1785 return push_ucs2(base_ptr
, dest
, src
, dest_len
, flags
);
1787 return push_ascii(dest
, src
, dest_len
, flags
);
1792 Copy a string from a unicode or ascii source (depending on
1793 the packet flags) to a char* destination.
1795 STR_TERMINATE means the string in src is null terminated.
1796 STR_UNICODE means to force as unicode.
1797 STR_ASCII use ascii even with unicode packet.
1798 STR_NOALIGN means don't do alignment.
1799 if STR_TERMINATE is set then src_len is ignored is it is -1
1800 src_len is the length of the source area in bytes.
1801 Return the number of bytes occupied by the string in src.
1802 The resulting string in "dest" is always null terminated.
1805 size_t pull_string_fn(const char *function
,
1807 const void *base_ptr
,
1816 clobber_region(function
, line
, dest
, dest_len
);
1819 if ((base_ptr
== NULL
) && ((flags
& (STR_ASCII
|STR_UNICODE
)) == 0)) {
1820 smb_panic("No base ptr to get flg2 and neither ASCII nor "
1824 if (!(flags
& STR_ASCII
) && \
1825 ((flags
& STR_UNICODE
|| \
1826 (smb_flags2
& FLAGS2_UNICODE_STRINGS
)))) {
1827 return pull_ucs2(base_ptr
, dest
, src
, dest_len
, src_len
, flags
);
1829 return pull_ascii(dest
, src
, dest_len
, src_len
, flags
);
1833 Copy a string from a unicode or ascii source (depending on
1834 the packet flags) to a char* destination.
1835 Variant that uses talloc.
1837 STR_TERMINATE means the string in src is null terminated.
1838 STR_UNICODE means to force as unicode.
1839 STR_ASCII use ascii even with unicode packet.
1840 STR_NOALIGN means don't do alignment.
1841 if STR_TERMINATE is set then src_len is ignored is it is -1
1842 src_len is the length of the source area in bytes.
1843 Return the number of bytes occupied by the string in src.
1844 The resulting string in "dest" is always null terminated.
1847 size_t pull_string_talloc_fn(const char *function
,
1850 const void *base_ptr
,
1857 if ((base_ptr
== NULL
) && ((flags
& (STR_ASCII
|STR_UNICODE
)) == 0)) {
1858 smb_panic("No base ptr to get flg2 and neither ASCII nor "
1862 if (!(flags
& STR_ASCII
) && \
1863 ((flags
& STR_UNICODE
|| \
1864 (smb_flags2
& FLAGS2_UNICODE_STRINGS
)))) {
1865 return pull_ucs2_base_talloc(ctx
,
1872 return pull_ascii_base_talloc(ctx
,
1880 size_t align_string(const void *base_ptr
, const char *p
, int flags
)
1882 if (!(flags
& STR_ASCII
) && \
1883 ((flags
& STR_UNICODE
|| \
1884 (SVAL(base_ptr
, smb_flg2
) & FLAGS2_UNICODE_STRINGS
)))) {
1885 return ucs2_align(base_ptr
, p
, flags
);
1891 Return the unicode codepoint for the next multi-byte CH_UNIX character
1892 in the string. The unicode codepoint (codepoint_t) is an unsinged 32 bit value.
1894 Also return the number of bytes consumed (which tells the caller
1895 how many bytes to skip to get to the next CH_UNIX character).
1897 Return INVALID_CODEPOINT if the next character cannot be converted.
1900 codepoint_t
next_codepoint(const char *str
, size_t *size
)
1902 /* It cannot occupy more than 4 bytes in UTF16 format */
1904 smb_iconv_t descriptor
;
1910 if ((str
[0] & 0x80) == 0) {
1912 return (codepoint_t
)str
[0];
1915 /* We assume that no multi-byte character can take
1916 more than 5 bytes. This is OK as we only
1917 support codepoints up to 1M */
1919 ilen_orig
= strnlen(str
, 5);
1922 lazy_initialize_conv();
1924 descriptor
= conv_handles
[CH_UNIX
][CH_UTF16LE
];
1925 if (descriptor
== (smb_iconv_t
)-1 || descriptor
== (smb_iconv_t
)0) {
1927 return INVALID_CODEPOINT
;
1930 /* This looks a little strange, but it is needed to cope
1931 with codepoints above 64k which are encoded as per RFC2781. */
1933 outbuf
= (char *)buf
;
1934 smb_iconv(descriptor
, &str
, &ilen
, &outbuf
, &olen
);
1936 /* We failed to convert to a 2 byte character.
1937 See if we can convert to a 4 UTF16-LE byte char encoding.
1940 outbuf
= (char *)buf
;
1941 smb_iconv(descriptor
, &str
, &ilen
, &outbuf
, &olen
);
1943 /* We didn't convert any bytes */
1945 return INVALID_CODEPOINT
;
1952 *size
= ilen_orig
- ilen
;
1955 /* 2 byte, UTF16-LE encoded value. */
1956 return (codepoint_t
)SVAL(buf
, 0);
1959 /* Decode a 4 byte UTF16-LE character manually.
1960 See RFC2871 for the encoding machanism.
1962 codepoint_t w1
= SVAL(buf
,0) & ~0xD800;
1963 codepoint_t w2
= SVAL(buf
,2) & ~0xDC00;
1965 return (codepoint_t
)0x10000 +
1969 /* no other length is valid */
1970 return INVALID_CODEPOINT
;