UNPKG

@ethereumjs/evm

Version:
97 lines (82 loc) 2.82 kB
import { bytesToHex } from '@ethereumjs/util' import { EVMError } from '../errors.ts' import type { EVM } from '../evm.ts' import { EVMErrorResult, OOGResult } from '../evm.ts' import { BLS_GAS_DISCOUNT_PAIRS_G1, leading16ZeroBytesCheck, msmGasUsed, } from './bls12_381/index.ts' import { getPrecompileName } from './index.ts' import { gasLimitCheck, moduloLengthCheck } from './util.ts' import type { ExecResult } from '../types.ts' import type { PrecompileInput } from './types.ts' export async function precompile0c(opts: PrecompileInput): Promise<ExecResult> { const pName = getPrecompileName('0d') const bls = (opts._EVM as EVM)['_bls']! const inputData = opts.data if (inputData.length === 0) { if (opts._debug !== undefined) { opts._debug(`${pName} failed: Empty input`) } return EVMErrorResult( new EVMError(EVMError.errorMessages.BLS_12_381_INPUT_EMPTY), opts.gasLimit, ) // follow Geth's implementation } // TODO: Double-check respectively confirm that this order is really correct that the gas check // on this eventually to be "floored" pair number should happen before the input length modulo // validation (same for g2msm) const numPairs = Math.floor(inputData.length / 160) const gasUsedPerPair = opts.common.param('bls12381G1MulGas') ?? BigInt(0) const gasUsed = msmGasUsed(numPairs, gasUsedPerPair, BLS_GAS_DISCOUNT_PAIRS_G1) if (!gasLimitCheck(opts, gasUsed, pName)) { return OOGResult(opts.gasLimit) } if (inputData.length % 160 !== 0) { if (opts._debug !== undefined) { opts._debug(`${pName} failed: Invalid input length length=${inputData.length}`) } return EVMErrorResult( new EVMError(EVMError.errorMessages.BLS_12_381_INVALID_INPUT_LENGTH), opts.gasLimit, ) } if (!moduloLengthCheck(opts, 160, pName)) { return EVMErrorResult( new EVMError(EVMError.errorMessages.BLS_12_381_INVALID_INPUT_LENGTH), opts.gasLimit, ) } // prepare pairing list and check for mandatory zero bytes const zeroByteRanges = [ [0, 16], [64, 80], ] for (let k = 0; k < numPairs; k++) { // zero bytes check const pairStart = 160 * k if (!leading16ZeroBytesCheck(opts, zeroByteRanges, pName, pairStart)) { return EVMErrorResult( new EVMError(EVMError.errorMessages.BLS_12_381_POINT_NOT_ON_CURVE), opts.gasLimit, ) } } let returnValue try { returnValue = bls.msmG1(opts.data) } catch (e: any) { if (opts._debug !== undefined) { opts._debug(`${pName} failed: ${e.message}`) } return EVMErrorResult(e, opts.gasLimit) } if (opts._debug !== undefined) { opts._debug(`${pName} return value=${bytesToHex(returnValue)}`) } return { executionGasUsed: gasUsed, returnValue, } }