Home GnuPG

kdf: Add input check for hkdf.

Description

kdf: Add input check for hkdf.

* cipher/kdf.c (hkdf_open): Validate the output size.

In RFC 5869, section 2.3, it specifies: L <= 255*HashLen.

  • Reported-by: Guido Vranken <guidovranken@gmail.com>
  • Signed-off-by: NIIBE Yutaka <gniibe@fsij.org>

Details

Provenance
gniibeAuthored on Jun 21 2022, 6:58 AM
Parents
rCfbddfb964f0b: kdf: Add HKDF of RFC5869.
Branches
Unknown
Tags
Unknown