TrustedFirmware Git Browser
Code Review
Sign In
review.trustedfirmware.org
/
mirror
/
mbed-tls
/
afaee1cacfd21a9022b3d014de1120b16b8f0dad
afaee1c
Catch AES failure in mbedtls_ctr_drbg_random
by Gilles Peskine
· 6 years ago
a428ced
Merge pull request #277 from k-stachowiak/check-array-index-range
by Gilles Peskine
· 6 years ago
e80c7e4
Merge pull request #278 from ARMmbed/dev/yanesca/iotcrypt-767-ecdsa-timing-side-channel
by Gilles Peskine
· 6 years ago
90bc6b8
Merge pull request #281 from AndrzejKurek/IOTCRYPT-968-zeroize-aes-variables
by Jaeden Amero
· 6 years ago
95b9f60
Merge pull request #280 from ARMmbed/dev/yanesca/iotcrypt-958-ecdsa-side-channel-fix
by Gilles Peskine
· 6 years ago
96ae5cd
Zeroize local AES variables before exiting the function
by Andrzej Kurek
· 6 years ago
3070242
mpi_lt_mpi_ct: fix condition handling
by Janos Follath
· 6 years ago
0b1ae0e
mpi_lt_mpi_ct: Add further tests
by Janos Follath
· 6 years ago
53fc7b0
mpi_lt_mpi_ct: Fix test numbering
by Janos Follath
· 6 years ago
0e4792e
mpi_lt_mpi_ct perform tests for both limb size
by Janos Follath
· 6 years ago
67ce647
ct_lt_mpi_uint: cast the return value explicitely
by Janos Follath
· 6 years ago
f17c800
mbedtls_mpi_lt_mpi_ct: add tests for 32 bit limbs
by Janos Follath
· 6 years ago
c50e6d5
mbedtls_mpi_lt_mpi_ct: simplify condition
by Janos Follath
· 6 years ago
5e614ce
Rename variable for better readability
by Janos Follath
· 6 years ago
bb5147f
mbedtls_mpi_lt_mpi_ct: Improve documentation
by Janos Follath
· 6 years ago
73ba9ec
Make mbedtls_mpi_lt_mpi_ct more portable
by Janos Follath
· 6 years ago
1f32b5b
Bignum: Document assumptions about the sign field
by Janos Follath
· 6 years ago
0ac9557
Add more tests for mbedtls_mpi_lt_mpi_ct
by Janos Follath
· 6 years ago
b7e1b49
mpi_lt_mpi_ct test: hardcode base 16
by Janos Follath
· 6 years ago
3f6f0e4
Document ct_lt_mpi_uint
by Janos Follath
· 6 years ago
4abc172
mpi_lt_mpi_ct: make use of unsigned consistent
by Janos Follath
· 6 years ago
a0f732b
ct_lt_mpi_uint: make use of biL
by Janos Follath
· 6 years ago
0e5532d
Change mbedtls_mpi_cmp_mpi_ct to check less than
by Janos Follath
· 6 years ago
1fc9759
mbedtls_mpi_cmp_mpi_ct: remove multiplications
by Janos Follath
· 6 years ago
d80080c
Remove excess vertical space
by Janos Follath
· 6 years ago
b259079
Remove declaration after statement
by Janos Follath
· 6 years ago
a779b46
Fix side channel vulnerability in ECDSA
by Janos Follath
· 6 years ago
385d5b8
Add tests to constant time mpi comparison
by Janos Follath
· 6 years ago
ee6abce
Add new, constant time mpi comparison
by Janos Follath
· 6 years ago
22589f0
Merge pull request #305 from gilles-peskine-arm/ctr_drbg-grab_nonce_from_entropy-set_nonce_length
by Gilles Peskine
· 6 years ago
08c674d
Merge pull request #288 from gilles-peskine-arm/psa-ecdsa_longer_hash
by Gilles Peskine
· 6 years ago
ccde952
Merge pull request #259 from k-stachowiak/bounds-check-asn1-len
by Gilles Peskine
· 6 years ago
bd326f9
Note that mbedtls_ctr_drbg_seed() must not be called twice
by Gilles Peskine
· 6 years ago
f0ebbfb
Fix CTR_DRBG benchmark
by Gilles Peskine
· 6 years ago
0eaf49c
Merge pull request #304 from gilles-peskine-arm/asan-test-fail-crypto
by Gilles Peskine
· 6 years ago
6997166
CTR_DRBG: define a constant for the default entropy nonce length
by Gilles Peskine
· 6 years ago
e9a3454
CTR_DRBG: grab a nonce from the entropy source if needed
by Gilles Peskine
· 6 years ago
0ed378a
CTR_DRBG: explicitly set entropy_nonce_len=0 when desired
by Gilles Peskine
· 6 years ago
c949de0
Test mbedtls_ctr_drbg_set_nonce_len
by Gilles Peskine
· 6 years ago
4d2d4ff
HMAC_DRBG entropy usage: test the exact amount of consumed entropy
by Gilles Peskine
· 6 years ago
58b56ce
CTR_DRBG entropy usage: test the exact amount of consumed entropy
by Gilles Peskine
· 6 years ago
97f59ab
CTR_DRBG: add the possibility of grabbing entropy for a nonce
by Gilles Peskine
· 6 years ago
9be5098
CTR_DRBG: add the possibility of grabbing entropy for a nonce
by Gilles Peskine
· 6 years ago
dbd3f7c
mbedtls_ctr_drbg_reseed: Minor readability improvement
by Gilles Peskine
· 6 years ago
c0ace35
mbedtls_ctr_drbg_context: minor documentation improvements
by Gilles Peskine
· 6 years ago
460988a
fixup! CTR_DRBG: support set_entropy_len() before seed()
by Gilles Peskine
· 6 years ago
379561f
fixup! CTR_DRBG: support set_entropy_len() before seed()
by Gilles Peskine
· 6 years ago
9d3baea
fixup! HMAC_DRBG: support set_entropy_len() before seed()
by Gilles Peskine
· 6 years ago
67badb4
Secure array index in its bounds
by k-stachowiak
· 6 years ago
54d1937
Fix memory leak in some SE HAL tests
by Gilles Peskine
· 6 years ago
8b5389f
'make test' must fail if Asan fails
by Gilles Peskine
· 6 years ago
bfeed66
Asan make builds: avoid sanitizer recovery
by Gilles Peskine
· 6 years ago
004206c
Unify ASan options in make builds
by Gilles Peskine
· 6 years ago
b1c7197
Merge pull request #299 from gilles-peskine-arm/drbg-set_entropy_len
by Jaeden Amero
· 6 years ago
247c4d3
ECDSA: Fix side channel vulnerability
by Janos Follath
· 6 years ago
150d577
Merge pull request #292 from gilles-peskine-arm/psa-destroy_0
by Gilles Peskine
· 6 years ago
50ed86b
CTR_DRBG: support set_entropy_len() before seed()
by Gilles Peskine
· 6 years ago
8bf5613
CTR_DRBG: Don't use functions before they're defined
by Gilles Peskine
· 6 years ago
8f7921e
HMAC_DRBG: support set_entropy_len() before seed()
by Gilles Peskine
· 6 years ago
3cdb3da
Merge pull request #297 from gilles-peskine-arm/asn1_get_int-undefined_shift
by Gilles Peskine
· 6 years ago
e5e9081
Merge pull request #287 from gilles-peskine-arm/ctr_drbg-doc-nist-crypto
by Gilles Peskine
· 6 years ago
cb5fa8b
Merge pull request #279 from athoelke/at-fix262
by Jaeden Amero
· 6 years ago
b8cde4e
Consolidate invalid-handle tests
by Gilles Peskine
· 6 years ago
37570e8
mbedtls_asn1_get_int: fix int overflow
by Gilles Peskine
· 6 years ago
9fd9794
mbedtls_asn1_get_int: explain the logic
by Gilles Peskine
· 6 years ago
0370b1b
ASN1 tests: more INTEGER test cases
by Gilles Peskine
· 6 years ago
970dcbf
ASN1 tests: Match negative INTEGERs with the actual library behavior
by Gilles Peskine
· 6 years ago
321adb2
ASN1 tests: Match "Empty INTEGER" with the actual library behavior
by Gilles Peskine
· 6 years ago
03c165e
Fix the build and the tests when MBEDTLS_BIGNUM_C is unset
by Gilles Peskine
· 6 years ago
3602938
Merge pull request #285 from gilles-peskine-arm/psa-se_driver-validate_save_persistent
by Gilles Peskine
· 6 years ago
1bbe284
Merge pull request #272 from adrianlshaw/document_old_algs
by Gilles Peskine
· 6 years ago
43326f0
Change PSA_DH_GROUP_CUSTOM to not be in the vendor-defined range
by Gilles Peskine
· 6 years ago
04129a0
Update slot management tests now that {close,destroy}_key(0) succeed
by Gilles Peskine
· 6 years ago
cb25cdd
Add ECDSA tests with hash and key of different lengths
by Gilles Peskine
· 6 years ago
1841cf4
Make psa_close_key(0) and psa_destroy_key(0) succeed
by Gilles Peskine
· 6 years ago
f102e4e
Test that psa_close_key(0) and psa_destroy_key(0) succeed
by Gilles Peskine
· 6 years ago
2493401
Document that psa_close_key(0) and psa_destroy_key(0) succeed
by Gilles Peskine
· 6 years ago
6e59505
Recommend use of GREASE values for vendor defined DH groups
by Andrew Thoelke
· 6 years ago
691ec52
Remove over-specific RFC references
by Andrew Thoelke
· 6 years ago
e249c0e
config.pl full: exclude MBEDTLS_CTR_DRBG_USE_128_BIT_KEY
by Gilles Peskine
· 6 years ago
77d4457
mbedtls_hmac_drbg_set_entropy_len() only matters when reseeding
by Gilles Peskine
· 6 years ago
dddda81
mbedtls_ctr_drbg_set_entropy_len() only matters when reseeding
by Gilles Peskine
· 6 years ago
9ab7c07
Merge pull request #75 from gilles-peskine-arm/asn1-tests-without-x509
by Jaeden Amero
· 6 years ago
88f136f
Fix free_named_data_list tests
by Gilles Peskine
· 6 years ago
dc2db48
Fix typos in documentation
by Gilles Peskine
· 6 years ago
7e27936
Add a note about CTR_DRBG security strength to config.h
by Gilles Peskine
· 6 years ago
1540e5b
Move MBEDTLS_CTR_DRBG_USE_128_BIT_KEY to the correct section
by Gilles Peskine
· 6 years ago
d0c64c8
CTR_DRBG: more consistent formatting and wording
by Gilles Peskine
· 6 years ago
2884ba3
CTR_DRBG: Improve the explanation of security strength
by Gilles Peskine
· 6 years ago
017778e
CTR_DRBG: make it easier to understand the security strength
by Gilles Peskine
· 6 years ago
5d9fd07
HMAC_DRBG: note that the initial seeding grabs entropy for the nonce
by Gilles Peskine
· 6 years ago
217b815
Use standard terminology to describe the personalization string
by Gilles Peskine
· 6 years ago
2d8f069
Do note that xxx_drbg_random functions reseed with PR enabled
by Gilles Peskine
· 6 years ago
10f16ac
Consistently use \c NULL and \c 0
by Gilles Peskine
· 6 years ago
3457b5e
HMAC_DRBG: improve the documentation of the entropy length
by Gilles Peskine
· 6 years ago
74efcd2
HMAC_DRBG documentation improvements clarifications
by Gilles Peskine
· 6 years ago
ec51dd1
More CTR_DRBG documentation improvements and clarifications
by Gilles Peskine
· 6 years ago
6fdf0b3
CTR_DRBG: improve the discussion of entropy length vs strength
by Gilles Peskine
· 6 years ago
223deea
CTR_DRBG: Document the security strength and SP 800-90A compliance
by Gilles Peskine
· 6 years ago
944bc58
CTR_DRBG: Document the maximum size of some parameters
by Gilles Peskine
· 6 years ago
Next »