diff options
| author | jsing <> | 2022-02-12 03:01:59 +0000 | 
|---|---|---|
| committer | jsing <> | 2022-02-12 03:01:59 +0000 | 
| commit | a562dcd988173746db99ce701ce9570ccfcbc9b8 (patch) | |
| tree | 6c1fc324b3e83fe846b49e89187600b00a56fd00 /src/lib/libc/stdlib/random.3 | |
| parent | 361c0710908fd1b1a377f83b3fd0ba3c3491c6bb (diff) | |
| download | openbsd-a562dcd988173746db99ce701ce9570ccfcbc9b8.tar.gz openbsd-a562dcd988173746db99ce701ce9570ccfcbc9b8.tar.bz2 openbsd-a562dcd988173746db99ce701ce9570ccfcbc9b8.zip | |
Limit OID text conversion to 64 bits per arc.
The current implementation uses an unsigned long, then switches to BN once
the arc exceeds its size. However, the complexity of BN_bn2dec() is
quadratic in the length of number being converted. This means that OIDs
with excessively large arcs take a lot of computation to convert to text.
While the X.660 specification states that arcs are unbounded, in reality
they are not overly large numbers - 640K^W64 bits ought to be enough for
any arc. Remove BN entirely, switch from unsigned long to uin64_t and fail
if an arc exceeds this size.
Identified via oss-fuzz timeouts - should fix #41028 and #44372.
ok tb@
Diffstat (limited to 'src/lib/libc/stdlib/random.3')
0 files changed, 0 insertions, 0 deletions
