Skip to content

Comments

Fix potential SCA vulnerability in some EC_METHODs on armv8#10729

Closed
zorrorffm wants to merge 1 commit intoopenssl:masterfrom
zorrorffm:fix_nistz256
Closed

Fix potential SCA vulnerability in some EC_METHODs on armv8#10729
zorrorffm wants to merge 1 commit intoopenssl:masterfrom
zorrorffm:fix_nistz256

Conversation

@zorrorffm
Copy link
Contributor

This change comes from PR #9239.

It addresses a potential side-channel vulnerability in the internals of some elliptic curve low level operations.It is for armv8. The fixes for other platforms are implemented in PR #9239.

Checklist
  • documentation is added or updated
  • tests are added or updated

This change addresses a potential side-channel vulnerability in
the internals of some elliptic curve low level operations.It is
for armv8. The fixes for other platforms are implemented in PR openssl#9239.

Change-Id: I773ee0d8a5cfc750b835780c9f455dfe701be29d
@romen
Copy link
Member

romen commented Dec 31, 2019

I went ahead and merged your commit as part of #9239 , see #9239 (comment)

If you agree with this you could close this PR and comment in #9239 .

@romen romen added branch: 1.1.1 Applies to OpenSSL_1_1_1-stable branch (EOL) branch: master Applies to master branch labels Dec 31, 2019
@zorrorffm
Copy link
Contributor Author

zorrorffm commented Jan 2, 2020

Yes, I agree with your merging. I'm going to close this PR.

@zorrorffm zorrorffm closed this Jan 2, 2020
@zorrorffm
Copy link
Contributor Author

Merged

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

branch: master Applies to master branch branch: 1.1.1 Applies to OpenSSL_1_1_1-stable branch (EOL)

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants