diff options
author | Pauli <paul.dale@oracle.com> | 2018-10-31 23:44:11 +0100 |
---|---|---|
committer | Pauli <paul.dale@oracle.com> | 2018-11-01 23:10:07 +0100 |
commit | 00496b6423605391864fbbd1693f23631a1c5239 (patch) | |
tree | 8f35a4a9b6725dc5769bfe6d4f589b01273fc412 /crypto/dsa | |
parent | openssl list -mac-algorithms support. (diff) | |
download | openssl-00496b6423605391864fbbd1693f23631a1c5239.tar.xz openssl-00496b6423605391864fbbd1693f23631a1c5239.zip |
Add a constant time flag to one of the bignums to avoid a timing leak.
Reviewed-by: Tim Hudson <tjh@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/7549)
Diffstat (limited to 'crypto/dsa')
-rw-r--r-- | crypto/dsa/dsa_ossl.c | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/crypto/dsa/dsa_ossl.c b/crypto/dsa/dsa_ossl.c index 2dd2d7489a..7a0b0874c5 100644 --- a/crypto/dsa/dsa_ossl.c +++ b/crypto/dsa/dsa_ossl.c @@ -223,6 +223,7 @@ static int dsa_sign_setup(DSA *dsa, BN_CTX *ctx_in, } while (BN_is_zero(k)); BN_set_flags(k, BN_FLG_CONSTTIME); + BN_set_flags(l, BN_FLG_CONSTTIME); if (dsa->flags & DSA_FLAG_CACHE_MONT_P) { if (!BN_MONT_CTX_set_locked(&dsa->method_mont_p, |