Correctly set Z_is_one on the return value in the NISTZ256 implementation.
Also add a few comments about constant-timeness.
Thanks to Brian Smith for reporting this issue.
Reviewed-by: 
Rich Salz <rsalz@openssl.org>
Loading
Please sign in to comment