summaryrefslogtreecommitdiff
path: root/src/lib/libcrypto/rsa/rsa_gen.c
diff options
context:
space:
mode:
authorinoguchi <>2022-01-20 11:12:14 +0000
committerinoguchi <>2022-01-20 11:12:14 +0000
commit16d4a60b8641ac0612a3e7f2bbbaad39ab88c974 (patch)
tree738ba0a6b501fd8e94d479e5af4cf39d1de4479c /src/lib/libcrypto/rsa/rsa_gen.c
parent58a48f1e9c4f1c9c42f60ac854e4870e9d623585 (diff)
downloadopenbsd-16d4a60b8641ac0612a3e7f2bbbaad39ab88c974.tar.gz
openbsd-16d4a60b8641ac0612a3e7f2bbbaad39ab88c974.tar.bz2
openbsd-16d4a60b8641ac0612a3e7f2bbbaad39ab88c974.zip
Fix check for BN_mod_inverse_ct return value
ok jsing@ millert@ tb@
Diffstat (limited to 'src/lib/libcrypto/rsa/rsa_gen.c')
-rw-r--r--src/lib/libcrypto/rsa/rsa_gen.c6
1 files changed, 3 insertions, 3 deletions
diff --git a/src/lib/libcrypto/rsa/rsa_gen.c b/src/lib/libcrypto/rsa/rsa_gen.c
index 3a0d8837b4..5f062a7a24 100644
--- a/src/lib/libcrypto/rsa/rsa_gen.c
+++ b/src/lib/libcrypto/rsa/rsa_gen.c
@@ -1,4 +1,4 @@
1/* $OpenBSD: rsa_gen.c,v 1.24 2022/01/07 09:55:32 tb Exp $ */ 1/* $OpenBSD: rsa_gen.c,v 1.25 2022/01/20 11:11:17 inoguchi Exp $ */
2/* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) 2/* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
3 * All rights reserved. 3 * All rights reserved.
4 * 4 *
@@ -198,7 +198,7 @@ rsa_builtin_keygen(RSA *rsa, int bits, BIGNUM *e_value, BN_GENCB *cb)
198 BN_init(&pr0); 198 BN_init(&pr0);
199 BN_with_flags(&pr0, r0, BN_FLG_CONSTTIME); 199 BN_with_flags(&pr0, r0, BN_FLG_CONSTTIME);
200 200
201 if (!BN_mod_inverse_ct(rsa->d, rsa->e, &pr0, ctx)) /* d */ 201 if (BN_mod_inverse_ct(rsa->d, rsa->e, &pr0, ctx) == NULL) /* d */
202 goto err; 202 goto err;
203 203
204 /* set up d for correct BN_FLG_CONSTTIME flag */ 204 /* set up d for correct BN_FLG_CONSTTIME flag */
@@ -216,7 +216,7 @@ rsa_builtin_keygen(RSA *rsa, int bits, BIGNUM *e_value, BN_GENCB *cb)
216 /* calculate inverse of q mod p */ 216 /* calculate inverse of q mod p */
217 BN_init(&p); 217 BN_init(&p);
218 BN_with_flags(&p, rsa->p, BN_FLG_CONSTTIME); 218 BN_with_flags(&p, rsa->p, BN_FLG_CONSTTIME);
219 if (!BN_mod_inverse_ct(rsa->iqmp, rsa->q, &p, ctx)) 219 if (BN_mod_inverse_ct(rsa->iqmp, rsa->q, &p, ctx) == NULL)
220 goto err; 220 goto err;
221 221
222 ok = 1; 222 ok = 1;