Loading CHANGES +7 −0 Original line number Diff line number Diff line Loading @@ -8,6 +8,13 @@ release branch. Changes between 1.1.0h and 1.1.1 [xx XXX xxxx] *) Make ec_group_do_inverse_ord() more robust and available to other EC cryptosystems, so that irrespective of BN_FLG_CONSTTIME, SCA mitigations are applied to the fallback BN_mod_inverse(). When using this function rather than BN_mod_inverse() directly, new EC cryptosystem implementations are then safer-by-default. [Billy Bob Brumley] *) Add coordinate blinding for EC_POINT and implement projective coordinate blinding for generic prime curves as a countermeasure to chosen point SCA attacks. Loading Loading
CHANGES +7 −0 Original line number Diff line number Diff line Loading @@ -8,6 +8,13 @@ release branch. Changes between 1.1.0h and 1.1.1 [xx XXX xxxx] *) Make ec_group_do_inverse_ord() more robust and available to other EC cryptosystems, so that irrespective of BN_FLG_CONSTTIME, SCA mitigations are applied to the fallback BN_mod_inverse(). When using this function rather than BN_mod_inverse() directly, new EC cryptosystem implementations are then safer-by-default. [Billy Bob Brumley] *) Add coordinate blinding for EC_POINT and implement projective coordinate blinding for generic prime curves as a countermeasure to chosen point SCA attacks. Loading