From 7e40cd02570f741c84e7beaf1489fbc7826363c7 Mon Sep 17 00:00:00 2001 From: doug <> Date: Sat, 20 Jun 2015 01:21:51 +0000 Subject: Replace internal call to CRYPTO_memcmp with timingsafe_memcmp. Suggested by jsing@. ok jsing@ miod@ --- src/lib/libssl/bs_cbs.c | 4 ++-- src/lib/libssl/src/ssl/bs_cbs.c | 4 ++-- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/src/lib/libssl/bs_cbs.c b/src/lib/libssl/bs_cbs.c index 8173177249..ea31cfc530 100644 --- a/src/lib/libssl/bs_cbs.c +++ b/src/lib/libssl/bs_cbs.c @@ -1,4 +1,4 @@ -/* $OpenBSD: bs_cbs.c,v 1.14 2015/06/19 00:23:36 doug Exp $ */ +/* $OpenBSD: bs_cbs.c,v 1.15 2015/06/20 01:21:51 doug Exp $ */ /* * Copyright (c) 2014, Google Inc. * @@ -127,7 +127,7 @@ CBS_mem_equal(const CBS *cbs, const uint8_t *data, size_t len) if (len != cbs->len) return 0; - return CRYPTO_memcmp(cbs->data, data, len) == 0; + return timingsafe_memcmp(cbs->data, data, len) == 0; } static int diff --git a/src/lib/libssl/src/ssl/bs_cbs.c b/src/lib/libssl/src/ssl/bs_cbs.c index 8173177249..ea31cfc530 100644 --- a/src/lib/libssl/src/ssl/bs_cbs.c +++ b/src/lib/libssl/src/ssl/bs_cbs.c @@ -1,4 +1,4 @@ -/* $OpenBSD: bs_cbs.c,v 1.14 2015/06/19 00:23:36 doug Exp $ */ +/* $OpenBSD: bs_cbs.c,v 1.15 2015/06/20 01:21:51 doug Exp $ */ /* * Copyright (c) 2014, Google Inc. * @@ -127,7 +127,7 @@ CBS_mem_equal(const CBS *cbs, const uint8_t *data, size_t len) if (len != cbs->len) return 0; - return CRYPTO_memcmp(cbs->data, data, len) == 0; + return timingsafe_memcmp(cbs->data, data, len) == 0; } static int -- cgit v1.2.3-55-g6feb