Replaced variable-time GCD with consttime inversion to avoid side-channel attacks...
authorSamuel Weiser <samuel.weiser@iaik.tugraz.at>
Tue, 5 Dec 2017 14:55:17 +0000 (15:55 +0100)
committerMatt Caswell <matt@openssl.org>
Wed, 21 Mar 2018 17:36:40 +0000 (17:36 +0000)
commit9db724cfede4ba7a3668bff533973ee70145ec07
treed097f67e8958d1ed6a8e233386f26579f1185ef4
parent178a2a6f1c25d05d801544e6f18963726d90ac0b
Replaced variable-time GCD with consttime inversion to avoid side-channel attacks on RSA key generation

Reviewed-by: Rich Salz <rsalz@openssl.org>
Reviewed-by: Kurt Roeckx <kurt@roeckx.be>
Reviewed-by: Matt Caswell <matt@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/5170)
crypto/rsa/rsa_gen.c