Skip to content

Commit 3efb75d

Browse files
committed
musig: improve test coverage of pubkey_combine
1 parent b14ee17 commit 3efb75d

File tree

2 files changed

+24
-5
lines changed

2 files changed

+24
-5
lines changed

src/modules/musig/main_impl.h

Lines changed: 6 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -80,9 +80,11 @@ typedef struct {
8080
/* Callback for batch EC multiplication to compute ell_0*P0 + ell_1*P1 + ... */
8181
static int secp256k1_musig_pubkey_combine_callback(secp256k1_scalar *sc, secp256k1_ge *pt, size_t idx, void *data) {
8282
secp256k1_musig_pubkey_combine_ecmult_data *ctx = (secp256k1_musig_pubkey_combine_ecmult_data *) data;
83-
if (!secp256k1_xonly_pubkey_load(ctx->ctx, pt, ctx->pks[idx])) {
84-
return 0;
85-
}
83+
int ret;
84+
ret = secp256k1_xonly_pubkey_load(ctx->ctx, pt, ctx->pks[idx]);
85+
/* pubkey_load can't fail because the same pks have already been loaded (and
86+
* we test this) */
87+
VERIFY_CHECK(ret);
8688
secp256k1_musig_coefficient_internal(sc, ctx->ell, &pt->x, &ctx->second_pk_x);
8789
return 1;
8890
}
@@ -129,6 +131,7 @@ int secp256k1_musig_pubkey_combine(const secp256k1_context* ctx, secp256k1_scrat
129131
return 0;
130132
}
131133
if (!secp256k1_ecmult_multi_var(&ctx->error_callback, &ctx->ecmult_ctx, scratch, &pkj, NULL, secp256k1_musig_pubkey_combine_callback, (void *) &ecmult_data, n_pubkeys)) {
134+
/* The current implementation of ecmult_multi_var makes this code unreachable with tests. */
132135
return 0;
133136
}
134137
secp256k1_ge_set_gej(&pkp, &pkj);

src/modules/musig/tests_impl.h

Lines changed: 18 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -102,11 +102,15 @@ void musig_api_tests(secp256k1_scratch_space *scratch) {
102102
secp256k1_musig_pre_session pre_session_uninitialized;
103103
secp256k1_xonly_pubkey pk[2];
104104
const secp256k1_xonly_pubkey *pk_ptr[2];
105+
secp256k1_xonly_pubkey invalid_pk;
106+
const secp256k1_xonly_pubkey *invalid_pk_ptr2[2];
107+
const secp256k1_xonly_pubkey *invalid_pk_ptr3[3];
105108
unsigned char tweak[32];
106109

107110
unsigned char sec_adaptor[32];
108111
unsigned char sec_adaptor1[32];
109112
secp256k1_pubkey adaptor;
113+
int i;
110114

111115
/** setup **/
112116
secp256k1_context *none = secp256k1_context_create(SECP256K1_CONTEXT_NONE);
@@ -127,6 +131,7 @@ void musig_api_tests(secp256k1_scratch_space *scratch) {
127131
* structs. */
128132
memset(&pre_session_uninitialized, 0, sizeof(pre_session_uninitialized));
129133
memset(&session_uninitialized, 0, sizeof(session_uninitialized));
134+
memset(&invalid_pk, 0, sizeof(invalid_pk));
130135

131136
secp256k1_testrand256(session_id[0]);
132137
secp256k1_testrand256(session_id[1]);
@@ -142,6 +147,13 @@ void musig_api_tests(secp256k1_scratch_space *scratch) {
142147
CHECK(secp256k1_xonly_pubkey_create(&pk[1], sk[1]) == 1);
143148
CHECK(secp256k1_ec_pubkey_create(ctx, &adaptor, sec_adaptor) == 1);
144149

150+
for (i = 0; i < 2; i++) {
151+
invalid_pk_ptr2[i] = &invalid_pk;
152+
invalid_pk_ptr3[i] = &pk[i];
153+
}
154+
/* invalid_pk_ptr3 has two valid, one invalid pk, which is important to test
155+
* musig_pubkeys_combine */
156+
invalid_pk_ptr3[2] = &invalid_pk;
145157

146158
/** main test body **/
147159

@@ -167,10 +179,14 @@ void musig_api_tests(secp256k1_scratch_space *scratch) {
167179
CHECK(ecount == 3);
168180
CHECK(secp256k1_musig_pubkey_combine(vrfy, scratch, &combined_pk, &pre_session, NULL, 2) == 0);
169181
CHECK(ecount == 4);
170-
CHECK(secp256k1_musig_pubkey_combine(vrfy, scratch, &combined_pk, &pre_session, pk_ptr, 0) == 0);
182+
CHECK(secp256k1_musig_pubkey_combine(vrfy, scratch, &combined_pk, &pre_session, invalid_pk_ptr2, 2) == 0);
171183
CHECK(ecount == 5);
172-
CHECK(secp256k1_musig_pubkey_combine(vrfy, scratch, &combined_pk, &pre_session, NULL, 0) == 0);
184+
CHECK(secp256k1_musig_pubkey_combine(vrfy, scratch, &combined_pk, &pre_session, invalid_pk_ptr3, 3) == 0);
173185
CHECK(ecount == 6);
186+
CHECK(secp256k1_musig_pubkey_combine(vrfy, scratch, &combined_pk, &pre_session, pk_ptr, 0) == 0);
187+
CHECK(ecount == 7);
188+
CHECK(secp256k1_musig_pubkey_combine(vrfy, scratch, &combined_pk, &pre_session, NULL, 0) == 0);
189+
CHECK(ecount == 8);
174190

175191
CHECK(secp256k1_musig_pubkey_combine(vrfy, scratch, &combined_pk, &pre_session, pk_ptr, 2) == 1);
176192
CHECK(secp256k1_musig_pubkey_combine(vrfy, scratch, &combined_pk, &pre_session, pk_ptr, 2) == 1);

0 commit comments

Comments
 (0)