]> git.ipfire.org Git - thirdparty/openssl.git/commit
Fix error propagatation in BN_check_prime()
authorKazuki Yamaguchi <k@rhe.jp>
Fri, 30 Sep 2022 11:33:08 +0000 (20:33 +0900)
committerPauli <pauli@openssl.org>
Tue, 4 Oct 2022 08:05:26 +0000 (19:05 +1100)
commit0b3867634f74f6cb7b60b3a0adde396421207214
tree7a7231dc9d195436e1b9cc4f79defaaa7dea4ee4
parent47cd0e5b1f98fb88d6d8337f7ec0e16bb83cea32
Fix error propagatation in BN_check_prime()

BN_check_prime() is supposed to return 0 for a composite number and -1
on error. Properly translate the return value of the internal function
ossl_bn_miller_rabin_is_prime(), where 0 means an error.

The confusion prevented BN_GENCB callbacks from aborting the primality
test or key generation routines utilizing this.

Reviewed-by: Tomas Mraz <tomas@openssl.org>
Reviewed-by: Nicola Tuveri <nic.tuv@gmail.com>
Reviewed-by: Paul Dale <pauli@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/19314)
crypto/bn/bn_prime.c