Code Coverage |
||||||||||
Lines |
Functions and Methods |
Classes and Traits |
||||||||
Total | |
75.00% |
6 / 8 |
|
66.67% |
2 / 3 |
CRAP | |
0.00% |
0 / 1 |
MWSaltedPassword | |
85.71% |
6 / 7 |
|
66.67% |
2 / 3 |
5.07 | |
0.00% |
0 / 1 |
getDefaultParams | |
100.00% |
1 / 1 |
|
100.00% |
1 / 1 |
1 | |||
getDelimiter | |
100.00% |
1 / 1 |
|
100.00% |
1 / 1 |
1 | |||
crypt | |
80.00% |
4 / 5 |
|
0.00% |
0 / 1 |
3.07 |
1 | <?php |
2 | /** |
3 | * Implements the MWSaltedPassword class for the MediaWiki software. |
4 | * |
5 | * This program is free software; you can redistribute it and/or modify |
6 | * it under the terms of the GNU General Public License as published by |
7 | * the Free Software Foundation; either version 2 of the License, or |
8 | * (at your option) any later version. |
9 | * |
10 | * This program is distributed in the hope that it will be useful, |
11 | * but WITHOUT ANY WARRANTY; without even the implied warranty of |
12 | * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the |
13 | * GNU General Public License for more details. |
14 | * |
15 | * You should have received a copy of the GNU General Public License along |
16 | * with this program; if not, write to the Free Software Foundation, Inc., |
17 | * 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA. |
18 | * http://www.gnu.org/copyleft/gpl.html |
19 | * |
20 | * @file |
21 | */ |
22 | |
23 | declare( strict_types = 1 ); |
24 | |
25 | namespace MediaWiki\Password; |
26 | |
27 | use MWCryptRand; |
28 | |
29 | /** |
30 | * The old style of MediaWiki password hashing, with a salt. It involves |
31 | * running MD5 on the password, and then running MD5 on the salt concatenated |
32 | * with the first hash. |
33 | * |
34 | * @since 1.24 |
35 | */ |
36 | class MWSaltedPassword extends ParameterizedPassword { |
37 | protected function getDefaultParams(): array { |
38 | return []; |
39 | } |
40 | |
41 | protected function getDelimiter(): string { |
42 | return ':'; |
43 | } |
44 | |
45 | public function crypt( string $plaintext ): void { |
46 | if ( count( $this->args ) == 0 ) { |
47 | $this->args[] = MWCryptRand::generateHex( 8 ); |
48 | } |
49 | |
50 | $this->hash = md5( $this->args[0] . '-' . md5( $plaintext ) ); |
51 | |
52 | if ( strlen( $this->hash ) < 32 ) { |
53 | throw new PasswordError( 'Error when hashing password.' ); |
54 | } |
55 | } |
56 | } |
57 | |
58 | /** @deprecated since 1.43 use MediaWiki\\Password\\MWSaltedPassword */ |
59 | class_alias( MWSaltedPassword::class, 'MWSaltedPassword' ); |