diff options
author | Matt Caswell <matt@openssl.org> | 2018-11-23 13:50:43 +0000 |
---|---|---|
committer | Matt Caswell <matt@openssl.org> | 2018-12-03 14:21:05 +0000 |
commit | 0ac8f35c04c4fcdee421170ae6351e42b9e84ce4 (patch) | |
tree | 6acf04eb393b745fc1ccdf9c483e7015485ba578 /crypto/bn | |
parent | be80b21d2a9c1e0d4fb920ca023e4ec225d878a7 (diff) |
Disallow Ed25519 signature maleability
Check that s is less than the order before attempting to verify the
signature as per RFC8032 5.1.7
Fixes #7693
Reviewed-by: Paul Dale <paul.dale@oracle.com>
(Merged from https://github.com/openssl/openssl/pull/7697)
Diffstat (limited to 'crypto/bn')
0 files changed, 0 insertions, 0 deletions