[openssl-users] CBC ciphers + TLS 1.0 protocol does not work in OpenSSL 1.0.2d

Jakob Bohm jb-openssl at wisemo.com
Wed Dec 9 12:59:11 UTC 2015


Could you extract the disassembly of one of the failed
calls to constant_time_eq_8() in the test program, perhaps
the compiler generates incorrect code for this deeply
nested group of near-edge arithmetic operations?

On 09/12/2015 12:44, Jayalakshmi bhat wrote:
> Hi Matt,
>
> I could build and execute the constant_time_test. I have attached the 
> .c file and test results. 34 tests have failed. All failures are 
> around constant_time_eq_8. This is the function I had mentioned in the 
> earlier mails.
>
> On Tue, Dec 8, 2015 at 4:26 PM, Matt Caswell <matt at openssl.org 
> <mailto:matt at openssl.org>> wrote:
>
>
>
>     On 08/12/15 17:27, Jakob Bohm wrote:
>     > On 08/12/2015 11:57, Matt Caswell wrote:
>     >> On 07/12/15 05:18, Jayalakshmi bhat wrote:
>     >>> Hi All,
>     >>>
>     >>> Is there inputs or suggestions.
>     >> Have you run the tests on this platform? i.e. "make test"
>     >>
>     >> I'm particular interested to know if the constant_time_test passed.
>     > He can't.  WinCE is not a self-hosting platform,
>     > everything is done by cross-compiling on a PC.
>
>     Can we copy the text exe across?
>
Enjoy

Jakob
-- 
Jakob Bohm, CIO, Partner, WiseMo A/S.  https://www.wisemo.com
Transformervej 29, 2860 Søborg, Denmark.  Direct +45 31 13 16 10
This public discussion message is non-binding and may contain errors.
WiseMo - Remote Service Management for PCs, Phones and Embedded



More information about the openssl-users mailing list