git: security/libressl: Fix ECDSA P-256 timing attack vulnerability

John Marino marino at crater.dragonflybsd.org
Fri Jan 13 15:18:52 PST 2017


commit bd84e83893b298face58762e1fec24667126c8c7
Author: John Marino <draco at marino.st>
Date:   Fri Jan 13 16:11:37 2017 -0600

    security/libressl: Fix ECDSA P-256 timing attack vulnerability
    
    OpenBSD 6.0 errata 16, Jan 5, 2017:
    Avoid possible side-channel leak of ECDSA private keys when signing.
    
    security: CVE-2016-7056

Summary of changes:
 crypto/libressl/README.DRAGONFLY        | 3 +++
 crypto/libressl/crypto/ecdsa/ecs_ossl.c | 2 ++
 2 files changed, 5 insertions(+)

http://gitweb.dragonflybsd.org/dragonfly.git/commitdiff/bd84e83893b298face58762e1fec24667126c8c7


-- 
DragonFly BSD source repository



More information about the Commits mailing list