Merge pull request #935 from mpg/buf-overread-use-psa-static-ecdh-2.28

[2.28] Fix potential heap buffer overread with `USE_PSA_CRYPTO`