summaryrefslogtreecommitdiffstats
path: root/crypto/dsa
diff options
context:
space:
mode:
authorPauli <paul.dale@oracle.com>2018-10-31 23:44:11 +0100
committerPauli <paul.dale@oracle.com>2018-11-01 23:10:07 +0100
commit00496b6423605391864fbbd1693f23631a1c5239 (patch)
tree8f35a4a9b6725dc5769bfe6d4f589b01273fc412 /crypto/dsa
parentopenssl list -mac-algorithms support. (diff)
downloadopenssl-00496b6423605391864fbbd1693f23631a1c5239.tar.xz
openssl-00496b6423605391864fbbd1693f23631a1c5239.zip
Add a constant time flag to one of the bignums to avoid a timing leak.
Reviewed-by: Tim Hudson <tjh@openssl.org> (Merged from https://github.com/openssl/openssl/pull/7549)
Diffstat (limited to 'crypto/dsa')
-rw-r--r--crypto/dsa/dsa_ossl.c1
1 files changed, 1 insertions, 0 deletions
diff --git a/crypto/dsa/dsa_ossl.c b/crypto/dsa/dsa_ossl.c
index 2dd2d7489a..7a0b0874c5 100644
--- a/crypto/dsa/dsa_ossl.c
+++ b/crypto/dsa/dsa_ossl.c
@@ -223,6 +223,7 @@ static int dsa_sign_setup(DSA *dsa, BN_CTX *ctx_in,
} while (BN_is_zero(k));
BN_set_flags(k, BN_FLG_CONSTTIME);
+ BN_set_flags(l, BN_FLG_CONSTTIME);
if (dsa->flags & DSA_FLAG_CACHE_MONT_P) {
if (!BN_MONT_CTX_set_locked(&dsa->method_mont_p,