summaryrefslogtreecommitdiff
path: root/lib/libcsi
diff options
context:
space:
mode:
authorTheo Buehler <tb@cvs.openbsd.org>2021-11-29 20:02:15 +0000
committerTheo Buehler <tb@cvs.openbsd.org>2021-11-29 20:02:15 +0000
commitfefadc55eaca80de85f3bdadfdda7ebfddab7343 (patch)
tree21673ab4a08305dd6372fa3a3fbd2f01ed45063d /lib/libcsi
parent1a2b6feaec8eb5abf371421eeb7bd667afd6be3e (diff)
Clean up DH_check_pub_key() and ensure that y^q (mod p) == 1.
This aligns our behavior with OpenSSL 1.1.1 which includes a mitigation for small subgroup attacks. This did not affect LibreSSL since we do not support X9.42 style parameter files or RFC 5114. The meat of this commit is from Matt Caswell, OpenSSL b128abc3 ok inoguchi jsing
Diffstat (limited to 'lib/libcsi')
0 files changed, 0 insertions, 0 deletions