Home GnuPG

mpi:ec: Least leak with k^(-1) for ECDSA.

Description

mpi:ec: Least leak with k^(-1) for ECDSA.

* src/mpi.h (_gcry_mpi_assign_limb_space): Add.
(_gcry_mpih_mod_lli, _gcry_mpih_mul_lli): Add.
* cipher/ecc-ecdsa.c (_gcry_ecc_ecdsa_sign): Take care
about least leak with k^(-1).
  • GnuPG-bug-id: T7519
  • Signed-off-by: NIIBE Yutaka <gniibe@fsij.org>