Page MenuHome GnuPG

Research ECDSA hash truncation
Closed, ResolvedPublic


Major crypto (TLS) library sources in ECDSA signature computation/verification
truncate hash value to the bitsize of the curve.
Research if adding such truncation will impact GnuPG or other users of libgcrypt.
Patch is proposed at



Event Timeline

This has meanwhile been fixed in master with commit 9edcf109.
I don't see a reason tobackport it to 1.6.

werner claimed this task.

Oh well, backporting is easy enough. Commit id f6bd8ed, will go into 1.6.1.