179c4e257a
The bug, courtesy of Wycheproof, is that AES key wrap requires the input be at least two blocks, not one. This also matches the OpenSSL behavior of those two APIs. Update-Note: AES_wrap_key with in_len = 8 and AES_unwrap_key with in_len = 16 will no longer work. Change-Id: I5fc63ebc16920c2f9fd488afe8c544e0647d7507 Reviewed-on: https://boringssl-review.googlesource.com/27925 Commit-Queue: David Benjamin <davidben@google.com> CQ-Verified: CQ bot account: commit-bot@chromium.org <commit-bot@chromium.org> Reviewed-by: Adam Langley <agl@google.com> |
||
---|---|---|
.. | ||
asm | ||
aes_test.cc | ||
aes_tests.txt | ||
aes.c | ||
internal.h | ||
key_wrap.c | ||
mode_wrappers.c |