summaryrefslogtreecommitdiffstats
path: root/crypto/bn
diff options
context:
space:
mode:
authorMatt Caswell <matt@openssl.org>2017-10-18 10:23:33 +0100
committerMatt Caswell <matt@openssl.org>2017-10-23 14:01:12 +0100
commit84a85b5755befabd450fbb7cc63d5e23a268ddb0 (patch)
tree96fc4fdde9ed6cb8babc3cf7efcc57697172791a /crypto/bn
parent8efce5badd2f3bdd2d15e4aacd6b04f6ee69cf60 (diff)
Correct value for BN_security_bits()
The function BN_security_bits() uses the values from SP800-57 to assign security bit values for different FF key sizes. However the value for 192 security bits is wrong. SP800-57 has it as 7680 but the code had it as 7690. Reviewed-by: Tim Hudson <tjh@openssl.org> Reviewed-by: Rich Salz <rsalz@openssl.org> (Merged from https://github.com/openssl/openssl/pull/4546) (cherry picked from commit c9fe362303fc54ff19bde7511475f28663f7d554)
Diffstat (limited to 'crypto/bn')
-rw-r--r--crypto/bn/bn_lib.c2
1 files changed, 1 insertions, 1 deletions
diff --git a/crypto/bn/bn_lib.c b/crypto/bn/bn_lib.c
index c2dff7da9b..d7c5fc3c97 100644
--- a/crypto/bn/bn_lib.c
+++ b/crypto/bn/bn_lib.c
@@ -897,7 +897,7 @@ int BN_security_bits(int L, int N)
int secbits, bits;
if (L >= 15360)
secbits = 256;
- else if (L >= 7690)
+ else if (L >= 7680)
secbits = 192;
else if (L >= 3072)
secbits = 128;