[openssl-commits] [openssl] OpenSSL_1_1_0-stable update
Paul I. Dale
pauli at openssl.org
Thu Nov 1 22:16:20 UTC 2018
The branch OpenSSL_1_1_0-stable has been updated
via 26d7fce13d469f8d1a1b42131467ed4a65f8137b (commit)
from 003f1bfd185267cc67ac9dc521a27d7a2af0d0ee (commit)
- Log -----------------------------------------------------------------
commit 26d7fce13d469f8d1a1b42131467ed4a65f8137b
Author: Pauli <paul.dale at oracle.com>
Date: Thu Nov 1 08:44:11 2018 +1000
Add a constant time flag to one of the bignums to avoid a timing leak.
Reviewed-by: Tim Hudson <tjh at openssl.org>
(Merged from https://github.com/openssl/openssl/pull/7549)
(cherry picked from commit 00496b6423605391864fbbd1693f23631a1c5239)
-----------------------------------------------------------------------
Summary of changes:
crypto/dsa/dsa_ossl.c | 1 +
1 file changed, 1 insertion(+)
diff --git a/crypto/dsa/dsa_ossl.c b/crypto/dsa/dsa_ossl.c
index be58625..868283a 100644
--- a/crypto/dsa/dsa_ossl.c
+++ b/crypto/dsa/dsa_ossl.c
@@ -225,6 +225,7 @@ static int dsa_sign_setup(DSA *dsa, BN_CTX *ctx_in,
} while (BN_is_zero(k));
BN_set_flags(k, BN_FLG_CONSTTIME);
+ BN_set_flags(l, BN_FLG_CONSTTIME);
if (dsa->flags & DSA_FLAG_CACHE_MONT_P) {
if (!BN_MONT_CTX_set_locked(&dsa->method_mont_p,
More information about the openssl-commits
mailing list