From: Pauli Date: Wed, 31 Oct 2018 22:44:11 +0000 (+1000) Subject: Add a constant time flag to one of the bignums to avoid a timing leak. X-Git-Tag: openssl-3.0.0-alpha1~2967 X-Git-Url: https://git.librecmc.org/?a=commitdiff_plain;h=00496b6423605391864fbbd1693f23631a1c5239;p=oweals%2Fopenssl.git Add a constant time flag to one of the bignums to avoid a timing leak. Reviewed-by: Tim Hudson (Merged from https://github.com/openssl/openssl/pull/7549) --- diff --git a/crypto/dsa/dsa_ossl.c b/crypto/dsa/dsa_ossl.c index 2dd2d7489a..7a0b0874c5 100644 --- a/crypto/dsa/dsa_ossl.c +++ b/crypto/dsa/dsa_ossl.c @@ -223,6 +223,7 @@ static int dsa_sign_setup(DSA *dsa, BN_CTX *ctx_in, } while (BN_is_zero(k)); BN_set_flags(k, BN_FLG_CONSTTIME); + BN_set_flags(l, BN_FLG_CONSTTIME); if (dsa->flags & DSA_FLAG_CACHE_MONT_P) { if (!BN_MONT_CTX_set_locked(&dsa->method_mont_p,