openssl/crypto/rsa
Ben Laurie 2ee798880a Add and use a constant-time memcmp.
This change adds CRYPTO_memcmp, which compares two vectors of bytes in
an amount of time that's independent of their contents. It also changes
several MAC compares in the code to use this over the standard memcmp,
which may leak information about the size of a matching prefix.
2013-01-28 17:30:38 +00:00
..
.cvsignore Add emacs cache files to .cvsignore. 2005-04-11 14:17:07 +00:00
Makefile make update 2012-04-26 10:42:20 +00:00
rsa.h Reduce version skew. 2012-06-08 09:18:47 +00:00
rsa_ameth.c Backport PSS signature support from HEAD. 2011-10-09 23:13:50 +00:00
rsa_asn1.c Backport PSS signature support from HEAD. 2011-10-09 23:13:50 +00:00
rsa_chk.c This is a first-cut at improving the callback mechanisms used in 2002-12-08 05:24:31 +00:00
rsa_crpt.c Redirection of low level APIs to FIPS module. 2011-06-02 18:22:42 +00:00
rsa_depr.c add additional checks + cleanup 2006-01-29 23:12:22 +00:00
rsa_eay.c Reduce version skew. 2012-06-08 09:18:47 +00:00
rsa_err.c Backport PSS signature support from HEAD. 2011-10-09 23:13:50 +00:00
rsa_gen.c Use method rsa keygen first if FIPS mode if it is a FIPS method. 2011-06-09 13:18:07 +00:00
rsa_lib.c Don't set default public key methods in FIPS mode so applications 2011-06-20 19:41:13 +00:00
rsa_locl.h Make sure the int_rsa_verify() prototype matches the implementation 2006-09-08 06:00:40 +00:00
rsa_none.c Constify the RSA library. 2000-11-06 22:34:17 +00:00
rsa_null.c Update obsolete email address... 2008-11-05 18:39:08 +00:00
rsa_oaep.c Add and use a constant-time memcmp. 2013-01-28 17:30:38 +00:00
rsa_pk1.c The logic in the main signing and verifying functions to check lengths was 2002-11-26 11:14:32 +00:00
rsa_pmeth.c Additional compatibility fix for MDC2 signature format. 2012-02-15 14:14:01 +00:00
rsa_prn.c Update obsolete email address... 2008-11-05 18:39:08 +00:00
rsa_pss.c Backport extended PSS support from HEAD: allow setting of mgf1Hash explicitly. 2011-06-02 18:13:33 +00:00
rsa_saos.c Add lots of checks for memory allocation failure, error codes to indicate 2004-12-05 01:03:15 +00:00
rsa_sign.c An incompatibility has always existed between the format used for RSA 2012-02-15 14:00:09 +00:00
rsa_ssl.c We should check the eight bytes starting at p[-9] for rollback attack 2008-07-17 22:11:53 +00:00
rsa_test.c Remove the dual-callback scheme for numeric and pointer thread IDs, 2008-08-06 15:54:15 +00:00
rsa_x931.c Update obsolete email address... 2008-11-05 18:39:08 +00:00