[openssl-dev] [openssl.org #4393] [PATCH] Call EC_GROUP_order_bits in priv2opt.

Emilia Käsper via RT rt at openssl.org
Tue Mar 29 16:16:59 UTC 2016

While we're at this, shouldn't we then also check the length in oct2priv? (And
either reject or reduce mod n.) Afaics it accepts arbitrary BNs currently,
which means some keys can be parsed but cannot be re-encoded?

Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4393
