Reject excessively large primes in DH key generation.
authorGuido Vranken <guidovranken@gmail.com>
Mon, 11 Jun 2018 17:38:54 +0000 (19:38 +0200)
committerMatt Caswell <matt@openssl.org>
Tue, 12 Jun 2018 09:06:46 +0000 (10:06 +0100)
commit91f7361f47b082ae61ffe1a7b17bb2adf213c7fe
treed1f7c29900144aac418f179c5eb4df05e4694c34
parenta21180b70f6372fee836557df187d72f7a91b686
Reject excessively large primes in DH key generation.

CVE-2018-0732

Signed-off-by: Guido Vranken <guidovranken@gmail.com>
Reviewed-by: Matthias St. Pierre <Matthias.St.Pierre@ncp-e.com>
Reviewed-by: Viktor Dukhovni <viktor@openssl.org>
Reviewed-by: Rich Salz <rsalz@openssl.org>
Reviewed-by: Matt Caswell <matt@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/6457)
crypto/dh/dh_key.c