openssl / project

Tracking of project related issues
2 stars 1 forks source link

Address New Minerva Findings #860

Open nhorman opened 2 months ago

nhorman commented 2 months ago

https://github.openssl.org/otc/security/issues/170

New Findings in the Minerva attack when using various EC curves

There is a desire to fix this by properly refactoring the BIGNUM const time api

see https://github.com/openssl/openssl/issues/6640 for details

nhorman commented 2 months ago

@Sashan to investigate an enumerate tasks to define what needs to complete here. @levitte interested in participating as well