1. 7d4ebdd Reject low-order points on Curve448 early by Janos Follath · 4 years, 1 month ago
  2. 7017425 Add DoS test case for ecp_check_pub by Janos Follath · 4 years, 1 month ago
  3. 1c6a439 Use mbedtls_mpi_lset() more by Janos Follath · 4 years, 1 month ago
  4. bc96a79 Move mpi constant macros to bn_mul.h by Janos Follath · 4 years, 1 month ago
  5. d31a30c Remove redundant ecp_check_pub() tests by Janos Follath · 4 years, 1 month ago
  6. b4c676e Prevent memory leak in ecp_check_pubkey_x25519() by Janos Follath · 4 years, 1 month ago
  7. 520f0a0 Avoid complaints about undeclared non-static symbols by Manuel Pégourié-Gonnard · 4 years, 1 month ago
  8. ae48111 Use more compact encoding of Montgomery curve constants by Manuel Pégourié-Gonnard · 4 years, 1 month ago
  9. 10b8e5a Use a more compact encoding of bad points by Manuel Pégourié-Gonnard · 4 years, 1 month ago
  10. 6a5f574 Add test for check_pubkey for x25519 by Manuel Pégourié-Gonnard · 4 years, 1 month ago
  11. f2268d1 Reject low-order points on Curve25519 early by Manuel Pégourié-Gonnard · 4 years, 1 month ago
  12. 82a5a9d Merge branch 'development_2.x' into development_2.x-restricted by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  13. c158213 Merge pull request #4678 from JoeSubbiani/FixedMissingContextFree-test_suite_aes by Dave Rodgman · 4 years, 2 months ago
  14. b7a87e3 Merge pull request #835 from mpg/rsa-lookup-2.x-restricted by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  15. 3f0538d Merge pull request #4688 from gilles-peskine-arm/winsock-fd-range-2.x by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  16. 7d5fa2b Reword changelog - Test Resource Leak by Joe Subbiani · 4 years, 2 months ago
  17. 51859aa Fix fd range for select on Windows by Gilles Peskine · 4 years, 2 months ago
  18. 0f6351f Refactor file descriptor checks into a common function by Gilles Peskine · 4 years, 2 months ago
  19. 02945bc Update changelog formatting - Missing Free Context by Joe Subbiani · 4 years, 2 months ago
  20. 707186d Update changelog formatting Missing Free Context by Joe Subbiani · 4 years, 2 months ago
  21. 5e1fac8 Update changelog formatting - Missing Free Context by Joe Subbiani · 4 years, 2 months ago
  22. 2af8d04 Changelog entry for Free Context in test_suite_aes fix by Joe Subbiani · 4 years, 2 months ago
  23. 67889a5 Free context in at the end of aes_crypt_xts_size() by JoeSubbiani · 4 years, 2 months ago
  24. c94b6b0 Homogenize coding patterns by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  25. f97a963 Merge pull request #4656 from gilles-peskine-arm/psa_key_derivation-bad_workflow-20210527-2.x by Gilles Peskine · 4 years, 2 months ago
  26. fbf9aff Merge pull request #830 from gilles-peskine-arm/ecp_max_bits-check-2.x by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  27. 8d54b69 Fix copypasta in test data by Gilles Peskine · 4 years, 2 months ago
  28. a172cf5 Use UNUSED wherever applicable in derive_input tests by Gilles Peskine · 4 years, 2 months ago
  29. f216f0d Fix missing state check for tls12_prf output by Gilles Peskine · 4 years, 2 months ago
  30. d40a21c Key derivation: add test cases where the secret is missing by Gilles Peskine · 4 years, 2 months ago
  31. f627931 Add bad-workflow key derivation tests by Gilles Peskine · 4 years, 2 months ago
  32. 0faba4e More explicit names for some bad-workflow key derivation tests by Gilles Peskine · 4 years, 2 months ago
  33. 3223940 Update MBEDTLS_ECP_MAX_BITS_MIN when adding a curve by Gilles Peskine · 4 years, 2 months ago
  34. 33c92f0 Determine MBEDTLS_ECP_MAX_BITS automatically by Gilles Peskine · 4 years, 2 months ago
  35. e57bad4 Check MBEDTLS_ECP_MAX_xxx constants in unit tests by Gilles Peskine · 4 years, 2 months ago
  36. 6dba320 Fail the build if MBEDTLS_ECP_MAX_BITS is not large enough by Gilles Peskine · 4 years, 2 months ago
  37. 7576f55 Add ChangeLog entry about RSA side channel. by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  38. 0b3bde5 Silence MSVC type conversion warnings by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  39. f10d289 Simplify sign selection by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  40. 5325b97 Avoid UB caused by conversion to int by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  41. 464fe6a Use bit operations for mpi_safe_cond_swap() by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  42. c3be399 Use bit operations for mpi_safe_cond_assign() by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  43. eaafa49 Avoid using == for sensitive comparisons by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  44. e10e8db Use constant-time look-up for modular exponentiation by Manuel Pégourié-Gonnard · 4 years, 5 months ago
  45. c4c0d81 Merge branch 'development_2.x' into development_2.x-restricted by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  46. 766edb8 Merge pull request #4635 from Patater/mbed-can-do-timing-2.x by Ronald Cron · 4 years, 2 months ago
  47. 78719ea Merge pull request #4646 from daverodgman/travis-disable-osx-development_2.x by Dave Rodgman · 4 years, 2 months ago
  48. fcf958a Disable OS X builds on Travis by Dave Rodgman · 4 years, 2 months ago
  49. 128c94d config: Allow Mbed to implement TIMING_C by Jaeden Amero · 4 years, 2 months ago
  50. 7a4c758 Merge pull request #4541 from mpg/fix-ssl-cf-hmac-alt-2.x by Gilles Peskine · 4 years, 2 months ago
  51. 8639048 Merge pull request #831 from gilles-peskine-arm/mpi_fill_random-constant_time_comparison-development_2.x-restricted by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  52. 74f66bb Fix non-constant-time comparison in mbedtls_mpi_random by Gilles Peskine · 4 years, 4 months ago
  53. 62da8ac Merge pull request #4276 from gilles-peskine-arm/random-range-uniformity by Manuel Pégourié-Gonnard · 4 years, 2 months ago
  54. 23422e4 Note that the byte order in mpi_fill_random_internal() is deliberate by Gilles Peskine · 4 years, 2 months ago
  55. c0b68bf Use MBEDTLS_MPI_CHK where warranted by Gilles Peskine · 4 years, 2 months ago
  56. 3130ce2 New internal function mbedtls_mpi_resize_clear by Gilles Peskine · 4 years, 2 months ago
  57. e4f937f Lift function call out of inner loop by Gilles Peskine · 4 years, 2 months ago
  58. f37b9f7 Fix mistakes in test case descriptions by Gilles Peskine · 4 years, 2 months ago
  59. 1177907 Use ternary operator with the most common case first by Gilles Peskine · 4 years, 2 months ago
  60. b72b7e6 Fix long-standing obsolete comment by Gilles Peskine · 4 years, 2 months ago
  61. 3f61363 Correct some comments about ECC in mbedtls_mpi_random by Gilles Peskine · 4 years, 4 months ago
  62. 346d20d DHM: add test case with x_size < 0 by Gilles Peskine · 4 years, 4 months ago
  63. 9e96679 DHM tests: add some explanations by Gilles Peskine · 4 years, 4 months ago
  64. 104eb82 DHM: add notes about leading zeros by Gilles Peskine · 4 years, 4 months ago
  65. a16001e mpi_fill_random_internal: remove spurious grow() call by Gilles Peskine · 4 years, 4 months ago
  66. 3d60ece Note that the "0 limb in ..." tests rely on undocumented behavior by Gilles Peskine · 4 years, 4 months ago
  67. 33701a6 mbedtls_mpi_random: document MBEDTLS_ERR_MPI_NOT_ACCEPTABLE by Gilles Peskine · 4 years, 4 months ago
  68. e39ee8e MPI random test: use more iterations for small numbers by Gilles Peskine · 4 years, 4 months ago
  69. 38de7ee MPI random test: Add test cases with lower_bound > upper_bound by Gilles Peskine · 4 years, 4 months ago
  70. c520d7a MPI random test: fix small-range test stats check when min > 1 by Gilles Peskine · 4 years, 4 months ago
  71. 8190d31 MPI random test: Add a few more small-range tests by Gilles Peskine · 4 years, 4 months ago
  72. b66cc7d Fix copypasta in test case description by Gilles Peskine · 4 years, 4 months ago
  73. ef13251 Contextualize comment about mbedtls_mpi_random retries by Gilles Peskine · 4 years, 4 months ago
  74. 3b05615 Better document and slightly simplify >>2^n heuristic by Gilles Peskine · 4 years, 4 months ago
  75. f467e1a MPI random: add unit tests with a previously nonzero value by Gilles Peskine · 4 years, 4 months ago
  76. 8f45470 Fix mbedtls_mpi_random when N has leading zeros by Gilles Peskine · 4 years, 4 months ago
  77. be4b5dd Add changelog entry for non-uniform MPI random generation by Gilles Peskine · 4 years, 4 months ago
  78. 16e3668 DHM: use mbedtls_mpi_random for blinding and key generation by Gilles Peskine · 4 years, 4 months ago
  79. 58df4c9 dhm_check_range: microoptimization by Gilles Peskine · 4 years, 4 months ago
  80. 87fdb1f DHM refactoring: use dhm_random_below in dhm_make_common by Gilles Peskine · 4 years, 4 months ago
  81. b4e815f DHM blinding: don't accept P-1 as a blinding value by Gilles Peskine · 4 years, 4 months ago
  82. 0853bb2 DHM refactoring: unify mbedtls_dhm_make_{params,public} by Gilles Peskine · 4 years, 4 months ago
  83. 33ec863 Test mbedtls_dhm_make_params with different x_size by Gilles Peskine · 4 years, 4 months ago
  84. a2ce04e Repeat a few DH tests by Gilles Peskine · 4 years, 4 months ago
  85. dc0b6e4 Test range and format of dhm_make_params output by Gilles Peskine · 4 years, 4 months ago
  86. 6466d34 ECP: use mbedtls_mpi_random for blinding by Gilles Peskine · 4 years, 4 months ago
  87. aeab0fb Preserve MBEDTLS_ERR_ECP_RANDOM_FAILED in case of a hostile RNG by Gilles Peskine · 4 years, 4 months ago
  88. cba4b35 Changelog entry for adding mbedtls_mpi_random() by Gilles Peskine · 4 years, 4 months ago
  89. 9312ba5 mbedtls_mpi_random: check for invalid arguments by Gilles Peskine · 4 years, 4 months ago
  90. 4699fa4 Move mbedtls_mpi_random to the bignum module by Gilles Peskine · 4 years, 4 months ago
  91. 7967ec5 mbedtls_ecp_gen_privkey_sw: generalize to mbedtls_mpi_random by Gilles Peskine · 4 years, 4 months ago
  92. 6373fab mbedtls_ecp_gen_privkey_sw: range and coverage tests by Gilles Peskine · 4 years, 4 months ago
  93. eadf31d mbedtls_ecp_gen_privkey_mx: simplify the size calculation logic by Gilles Peskine · 4 years, 5 months ago
  94. 4f77674 mbedtls_ecp_gen_privkey_mx: make bit manipulations unconditional by Gilles Peskine · 4 years, 5 months ago
  95. 6acfc9c mbedtls_ecp_gen_privkey_mx: remove the exception for all-zero by Gilles Peskine · 4 years, 5 months ago
  96. 1888285 Add unit tests for mbedtls_ecp_gen_privkey_mx by Gilles Peskine · 4 years, 5 months ago
  97. bef3019 Make the fallback behavior of mbedtls_test_rnd_buffer_rand optional by Gilles Peskine · 4 years, 5 months ago
  98. ebf3a4b Update references in some test function documentation by Gilles Peskine · 4 years, 5 months ago
  99. 3838f28 mbedtls_ecp_gen_privkey_mx: rename n_bits to high_bit by Gilles Peskine · 4 years, 5 months ago
  100. de33213 mbedtls_ecp_gen_privkey: create subfunctions for each curve type by Gilles Peskine · 4 years, 5 months ago