Commit 901b9b5c authored by Dr. Stephen Henson's avatar Dr. Stephen Henson
Browse files

In EC_KEY_set_public_key_affine_coordinates include explicit check to see...

In EC_KEY_set_public_key_affine_coordinates include explicit check to see passed components do not exceed field order
parent 9eca2399
Loading
Loading
Loading
Loading
+5 −3
Original line number Diff line number Diff line
@@ -511,10 +511,12 @@ int EC_KEY_set_public_key_affine_coordinates(EC_KEY *key, BIGNUM *x, BIGNUM *y)
								tx, ty, ctx))
			goto err;
		}
	/* Check if retrieved coordinates match originals: if not values
	 * are out of range.
	/* Check if retrieved coordinates match originals and are less than
	 * field order: if not values are out of range.
	 */
	if (BN_cmp(x, tx) || BN_cmp(y, ty))
	if (BN_cmp(x, tx) || BN_cmp(y, ty)
		|| (BN_cmp(x, &key->group->field) >= 0)
		|| (BN_cmp(y, &key->group->field) >= 0))
		{
		ECerr(EC_F_EC_KEY_SET_PUBLIC_KEY_AFFINE_COORDINATES,
			EC_R_COORDINATES_OUT_OF_RANGE);