[openssl-dev] ec_wNAF_precompute_mult sometimes calls BN_CTX_end without BN_CTX_start

Brian Smith brian at briansmith.org
Thu Apr 23 21:24:57 UTC 2015


See
https://boringssl.googlesource.com/boringssl/+/d6405beb2c75564edbbb7f4203252aa5edee2359

It seems OpenSSL has the same bug, although the code is slightly different,
and my fix for BoringSSL should be easy to adapt for OpenSSL.

It may be worth trying to find the same pattern elsewhere in the OpenSSL
code.

Cheers,
Brian
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mta.openssl.org/pipermail/openssl-dev/attachments/20150423/27975e8a/attachment.html>


More information about the openssl-dev mailing list