TrustedFirmware Git Browser
Code Review
Sign In
review.trustedfirmware.org
/
mirror
/
mbed-tls
/
6c30be8e4b693aba886c57457afc10ec2ef9420b
/
library
6c30be8
ssl: call signature verification twice for non-restartable operations
by Andrzej Kurek
· 5 years ago
69bafce
Improve the FI resistance in ssl_tls.c key switching
by Andrzej Kurek
· 4 years, 11 months ago
f7df0d3
Reduce the size of used constant in ssl_tls.c
by Andrzej Kurek
· 4 years, 11 months ago
a793237
Calculate hashes of ssl encryption and decryption keys
by Andrzej Kurek
· 4 years, 11 months ago
d81351b
Change the default value of initialized cipher operation to NONE
by Andrzej Kurek
· 4 years, 11 months ago
73680ad
Merge pull request #3694 from AndrzejKurek/transform-cipher-optimization
by Andrzej Kurek
· 4 years, 11 months ago
1175044
Merge enc/dec cipher contexts in ssl transforms
by Andrzej Kurek
· 4 years, 11 months ago
05beb9a
replace user rand by platform rand in ecc delays
by Shelly Liberman
· 5 years ago
9539f83
Swap out CRC calculation in AES in favour of a simple hash
by Andrzej Kurek
· 5 years ago
8bb0839
Add a deprecated version of mbedtls_platform_memcmp.
by Andrzej Kurek
· 5 years ago
c87e91c
Merge pull request #3553 from AndrzejKurek/crc-calculation-base
by Andrzej Kurek
· 5 years ago
305a5ec
Checking in critical places if secured memset() and memcpy() was successful
by Piotr Nowicki
· 5 years ago
ea8e846
Add flow monitor for mbedtls_platform_memcpy() and mbedtls_platform_memmove()
by Piotr Nowicki
· 5 years ago
a6348ed
Checking in critical places if the mbedtls_platform_zeroize() was successful
by Piotr Nowicki
· 5 years ago
ed840db
Add flow montitor to the mbedtls_platform_memset()
by Piotr Nowicki
· 5 years ago
26c3369
Fix CI failure.
by Piotr Nowicki
· 5 years ago
057daa3
Random delay can be disabled in configuration
by Piotr Nowicki
· 5 years ago
77b7a77
Expanded the random number generator in the `platform_util.c` file
by Piotr Nowicki
· 5 years ago
8656fc6
Change the value type in the mbedtls_platform_random_in_range()
by Piotr Nowicki
· 5 years ago
fa635df
Merge pull request #3448 from piotr-now/platform_util
by Piotr Nowicki
· 5 years ago
8fba6e9
Merge pull request #3532 from AndrzejKurek/fi-hmac-drbg-fixes
by Andrzej Kurek
· 5 years ago
0305753
Merge pull request #3477 from AndrzejKurek/aes-fake-key
by Andrzej Kurek
· 5 years ago
e3c4ee5
Rename mbedtls_platform_memcmp() to mbedtls_platform_memequal()
by Piotr Nowicki
· 5 years ago
e4f865d
Makefile: alphabetically order object files
by Andrzej Kurek
· 5 years ago
fba5921
aes: validate keys using crc before encryption/decryption
by Andrzej Kurek
· 5 years ago
9df2b41
Add a CRC module to mbedtls and baremetal config
by Andrzej Kurek
· 5 years ago
c6319a7
Merge pull request #3514 from shelib01/fi_write_user_data
by Shelly Liberman
· 5 years ago
3799fc1
Splitting buffers comment added
by Shelly Liberman
· 5 years ago
c6a7e6b
Enhancement fixes
by Shelly Liberman
· 5 years ago
archive/fi_write_user_data
fi_write_user_data
4062d6c
Add user pointer and data size duplication to ssl context.
by shelib01
· 5 years ago
e9cb642
Merge pull request #3516 from AndrzejKurek/fi-pkparse-changes
by Andrzej Kurek
· 5 years ago
7400fae
Merge pull request #3510 from AndrzejKurek/fi-pk-fixes
by Andrzej Kurek
· 5 years ago
898d330
Merge pull request #3500 from AndrzejKurek/fi-sha256-fixes
by Andrzej Kurek
· 5 years ago
84afe68
Merge pull request #3509 from AndrzejKurek/fi-x509-changes
by Andrzej Kurek
· 5 years ago
4353b69
hmac_drbg: make no reseeding behaviour explicit
by Andrzej Kurek
· 5 years ago
fac2f9b
aes: move the fake key operations to AES_SCA_COUNTERMEASURES define
by Andrzej Kurek
· 5 years ago
f626544
hmac_drbg: fix default value of the prediction resistance in ctx
by Andrzej Kurek
· 5 years ago
6bc37fa
hmac_drbg: set_entropy_len can now return an error
by Andrzej Kurek
· 5 years ago
9167aa9
hmac_drbg: change two variables to be volatile
by Andrzej Kurek
· 5 years ago
e78775e
Use a fake random key in AES calculations
by Andrzej Kurek
· 5 years ago
8917326
Introduce sha256 security review fixes
by Andrzej Kurek
· 5 years ago
3403969
Add a comment regarding remaining space check
by Andrzej Kurek
· 5 years ago
a9a5ff5
aes: add a comment about expected keybits value.
by Andrzej Kurek
· 5 years ago
11ddf25
Add minor FI countermeasures improvements
by Andrzej Kurek
· 5 years ago
189ee74
Add a platform function to return a random uint32_t
by Andrzej Kurek
· 5 years ago
3ed65d2
Add a return from pk_get_ueccpubkey if uecc_public_key_read_binary fails
by Andrzej Kurek
· 5 years ago
a798e5d
Introduce additional buffer size checks to pk.c
by Andrzej Kurek
· 5 years ago
ddc2db4
x509.c: Remove one unnecessary cast
by Andrzej Kurek
· 5 years ago
afec885
Revert a part of the sensitive information duplication changes
by Andrzej Kurek
· 5 years ago
c417c78
Merge pull request #3481 from AndrzejKurek/fi_duplicate_buffers_2
by Andrzej Kurek
· 5 years ago
45e7199
Minor formatting and cosmetic changes
by Andrzej Kurek
· 5 years ago
ca60937
Add buffer and context clearing upon suspected FI
by Andrzej Kurek
· 5 years ago
0919b14
Formatting changes
by Andrzej Kurek
· 5 years ago
84bde41
Add FI countermeasures to the ssl module
by Andrzej Kurek
· 5 years ago
74f7d0f
Duplicate sensitive buffer and buffer length information
by Andrzej Kurek
· 5 years ago
a24c841
Merge pull request #3439 from piotr-now/fic_switch
by Shelly Liberman
· 5 years ago
78fc139
Add FI countermeasures for sensitive switch instructions
by Piotr Nowicki
· 5 years ago
77647bd
Wrap AES 192 and 256 info structures in !AES_ONLY_128_BIT_KEY_LENGTH
by Andrzej Kurek
· 5 years ago
98c847a
Merge pull request #3395 from AndrzejKurek/sha-flow_ctrl
by Andrzej Kurek
· 5 years ago
e5425a0
Merge pull request #3408 from AndrzejKurek/hamming-distance-improvements
by Andrzej Kurek
· 5 years ago
f523c47
Merge pull request #3403 from piotr-now/sca_memmove
by Piotr Nowicki
· 5 years ago
ce0aab4
Add new error code PLATFORM_ALLOC_FAILED for mbedtls_platform_memmove()
by Piotr Nowicki
· 5 years ago
78f77eb
Add flow control to sha256
by Andrzej Kurek
· 5 years ago
5d5841f
Add mbedtls_platform_memmove() as a secured memcmp()
by Piotr Nowicki
· 5 years ago
e048b91
Add returning a FAULT_DETECTED error on suspected FI attacks
by Piotr Nowicki
· 5 years ago
8f52a8a
Improve the Hamming distance of ssl_hs_is_proper_fragment return values
by Andrzej Kurek
· 5 years ago
b06ec05
Add comment for mbedtls_platform_random_delay()
by Piotr Nowicki
· 5 years ago
478b05c
Merge pull request #3355 from AndrzejKurek/fi_error_codes
by Andrzej Kurek
· 5 years ago
fd56f40
Change the default value of status variables to an error
by Andrzej Kurek
· 5 years ago
e071e42
Merge pull request #3336 from piotr-now/baremetal_flowmon
by Piotr Nowicki
· 5 years ago
f0ab6d6
Added some descriptions of functions
by Piotr Nowicki
· 5 years ago
13bebd0
Keep SSL context const when hw accel is disabled
by Manuel Pégourié-Gonnard
· 5 years ago
731d7c0
Fix lack of cookie check on hard reconnect
by Manuel Pégourié-Gonnard
· 5 years ago
4aaa34c
Add flow monitor protection to mbedtls_platform_memcmp()
by Piotr Nowicki
· 5 years ago
825ebd4
Merge mbedtls 2.16.6 into baremetal
by Andrzej Kurek
· 5 years ago
f3a1348
Revert "Merge pull request #3012 from Patater/dev/jp-bennett/development-2.16"
by Janos Follath
· 6 years ago
8830bd2
Minor comment improvement
by Gilles Peskine
· 6 years ago
0660747
Improve comments in mpi_shrink
by Gilles Peskine
· 6 years ago
51c2e06
mpi_copy: make the 0 case slightly more robust
by Gilles Peskine
· 6 years ago
32b6e69
Parse RSA parameters DP, DQ and QP from PKCS1 private keys
by Jack Lloyd
· 6 years ago
b9082ed
Allow loading symlinked certificates
by Jonathan Bennett
· 6 years ago
010efeb
Remove redundant block_size validity check
by Gilles Peskine
· 6 years ago
aa377cf
Fix incrementing pointer instead of value
by Manuel Pégourié-Gonnard
· 6 years ago
140f502
Add missing return code check on call to mbedtls_md()
by Gilles Peskine
· 6 years ago
e7b49d3
Bump version to Mbed TLS 2.16.4
by Janos Follath
· 6 years ago
8b7f03f
Catch AES failure in mbedtls_ctr_drbg_random
by Gilles Peskine
· 6 years ago
a840544
Zeroize local AES variables before exiting the function
by Andrzej Kurek
· 6 years ago
e9db2aa
mpi_lt_mpi_ct: fix condition handling
by Janos Follath
· 6 years ago
3d2b769
ct_lt_mpi_uint: cast the return value explicitely
by Janos Follath
· 6 years ago
c8256e7
mbedtls_mpi_lt_mpi_ct: simplify condition
by Janos Follath
· 6 years ago
ec4c42a
Rename variable for better readability
by Janos Follath
· 6 years ago
cf7eeef
mbedtls_mpi_lt_mpi_ct: Improve documentation
by Janos Follath
· 6 years ago
aa9e7a4
Make mbedtls_mpi_lt_mpi_ct more portable
by Janos Follath
· 6 years ago
3480947
Document ct_lt_mpi_uint
by Janos Follath
· 6 years ago
afa5342
mpi_lt_mpi_ct: make use of unsigned consistent
by Janos Follath
· 6 years ago
a830377
ct_lt_mpi_uint: make use of biL
by Janos Follath
· 6 years ago
8faf1d6
Change mbedtls_mpi_cmp_mpi_ct to check less than
by Janos Follath
· 6 years ago
81c9fe5
mbedtls_mpi_cmp_mpi_ct: remove multiplications
by Janos Follath
· 6 years ago
fd9797b
Remove excess vertical space
by Janos Follath
· 6 years ago
78ed22b
Remove declaration after statement
by Janos Follath
· 6 years ago
Next »