boringssl/crypto/bn
David Benjamin 7f2ee3522d bn/asm/x86_64-mont.pl: fix for CVE-2016-7055 (not affected).
(Imported from upstream's 2a7dd548a6f5d6f7f84a89c98323b70a2822406e and
9ebcbbba81eba52282df9ad8902f047e2d501f51.)

This is only in the ADX assembly codepath which we do not enable. See
$addx = 0 at the top of the file. Nonetheless, import the test vector
and fix since we still have the code in there.

Upstream's test vector only compares a*b against b*a. The expected
answer was computed using Python.

Change-Id: I3a21093978c5946d83f2d6f4f8399f69d78202cf
Reviewed-on: https://boringssl-review.googlesource.com/12186
Commit-Queue: David Benjamin <davidben@google.com>
Reviewed-by: Adam Langley <agl@google.com>
2016-11-10 16:01:39 +00:00
..
asm bn/asm/x86_64-mont.pl: fix for CVE-2016-7055 (not affected). 2016-11-10 16:01:39 +00:00
add.c
bn_asn1.c
bn_test.cc Use scopers a little more. 2016-10-24 20:10:18 +00:00
bn_tests.txt bn/asm/x86_64-mont.pl: fix for CVE-2016-7055 (not affected). 2016-11-10 16:01:39 +00:00
bn.c Add BN_set_u64. 2016-09-18 20:12:25 +00:00
check_bn_tests.go Fix mixed comment markers. 2016-08-01 14:52:39 +00:00
CMakeLists.txt Calculate inverse in |BN_MONT_CTX_set| in constant time w.r.t. modulus. 2016-08-02 16:26:44 +00:00
cmp.c Add BN_rand_range_ex and use internally. 2016-07-29 16:09:26 +00:00
convert.c Use C99 for size_t loops. 2016-09-12 19:44:24 +00:00
ctx.c
div.c crypto/bn/*: x86[_64] division instruction doesn't handle constants, change constraint from 'g' to 'rm'. 2016-09-09 20:59:47 +00:00
exponentiation.c Use BN_nnmod instead of BN_mod in BN_mod_exp_mont_consttime. 2016-08-02 20:24:58 +00:00
gcd.c Don't add ERR_R_INTERNAL_ERROR to BN_R_NO_INVERSE. 2016-08-18 18:14:21 +00:00
generic.c Fix up macros. 2016-10-18 18:28:23 +00:00
internal.h More macro hygiene improvements. 2016-10-24 20:11:08 +00:00
kronecker.c
montgomery_inv.c Clarify origin of optimized computation of Montgomery n0. 2016-08-18 18:22:41 +00:00
montgomery.c Calculate inverse in |BN_MONT_CTX_set| in constant time w.r.t. modulus. 2016-08-02 16:26:44 +00:00
mul.c
prime.c Add constants for BN_rand and use them. 2016-08-18 18:18:31 +00:00
random.c Add constants for BN_rand and use them. 2016-08-18 18:18:31 +00:00
rsaz_exp.c
rsaz_exp.h
shift.c
sqrt.c Document that BN_mod_sqrt assumes p is a prime. 2016-07-06 23:15:41 +00:00