summaryrefslogtreecommitdiff
path: root/src/lib/libc/crypt/cryptutil.c
diff options
context:
space:
mode:
authortb <>2020-04-27 19:31:02 +0000
committertb <>2020-04-27 19:31:02 +0000
commit59b4077b60cc24004bc23295bd2ff465be743f11 (patch)
tree690e769e57ab9ebb2919a9465adde8c1621ffb33 /src/lib/libc/crypt/cryptutil.c
parente46228d31b64bf4aabfbe1e7bafe0120ba40176c (diff)
downloadopenbsd-59b4077b60cc24004bc23295bd2ff465be743f11.tar.gz
openbsd-59b4077b60cc24004bc23295bd2ff465be743f11.tar.bz2
openbsd-59b4077b60cc24004bc23295bd2ff465be743f11.zip
Disallow the use of zero length IVs in AES-GCM via
EVP_AEAD_CTX_{open,seal}, as this leaks the authentication key. Issue reported and fix tested by Guido Vranken. ok beck, jsing This commit adds a constant to a public header despite library lock, as discussed with deraadt and sthen.
Diffstat (limited to 'src/lib/libc/crypt/cryptutil.c')
0 files changed, 0 insertions, 0 deletions