]> git.ipfire.org Git - thirdparty/hostap.git/commit
SAE: Avoid branches in is_quadratic_residue_blind()
authorJouni Malinen <jouni@codeaurora.org>
Tue, 26 Feb 2019 17:34:38 +0000 (19:34 +0200)
committerJouni Malinen <j@w1.fi>
Tue, 9 Apr 2019 14:11:15 +0000 (17:11 +0300)
commit362704dda04507e7ebb8035122e83d9f0ae7c320
tree743f24939fb8ca8cc9475217e1b56fd088ef869f
parent6513db3e96c43c2e36805cf5ead349765d18eaf7
SAE: Avoid branches in is_quadratic_residue_blind()

Make the non-failure path in the function proceed without branches based
on r_odd and in constant time to minimize risk of observable differences
in timing or cache use. (CVE-2019-9494)

Signed-off-by: Jouni Malinen <jouni@codeaurora.org>
src/common/sae.c