From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mga05.intel.com (mga05.intel.com [192.55.52.43]) by dpdk.org (Postfix) with ESMTP id 484AE1B553 for ; Thu, 7 Feb 2019 16:27:05 +0100 (CET) X-Amp-Result: SKIPPED(no attachment in message) X-Amp-File-Uploaded: False Received: from orsmga002.jf.intel.com ([10.7.209.21]) by fmsmga105.fm.intel.com with ESMTP/TLS/DHE-RSA-AES256-GCM-SHA384; 07 Feb 2019 07:27:04 -0800 X-ExtLoop1: 1 X-IronPort-AV: E=Sophos;i="5.58,344,1544515200"; d="scan'208";a="132316978" Received: from irsmsx107.ger.corp.intel.com ([163.33.3.99]) by orsmga002.jf.intel.com with ESMTP; 07 Feb 2019 07:27:02 -0800 Received: from irsmsx101.ger.corp.intel.com ([169.254.1.185]) by IRSMSX107.ger.corp.intel.com ([169.254.10.229]) with mapi id 14.03.0415.000; Thu, 7 Feb 2019 15:27:01 +0000 From: "Trahe, Fiona" To: "Kusztal, ArkadiuszX" , "dev@dpdk.org" CC: "akhil.goyal@nxp.com" , "shally.verma@caviumnetworks.com" , "sunila.sahu@caviumnetworks.com" , "ashish.gupta@caviumnetworks.com" Thread-Topic: [PATCH] openssl: fix not clearing big numbers after computations Thread-Index: AQHUvtOSVMZ1JmFMMk+0zeRHvq4bdKXUdVGA Date: Thu, 7 Feb 2019 15:27:01 +0000 Message-ID: <348A99DA5F5B7549AA880327E580B435896E9B61@IRSMSX101.ger.corp.intel.com> References: <20190207105439.12260-1-arkadiuszx.kusztal@intel.com> In-Reply-To: <20190207105439.12260-1-arkadiuszx.kusztal@intel.com> Accept-Language: en-IE, en-US Content-Language: en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: x-titus-metadata-40: eyJDYXRlZ29yeUxhYmVscyI6IiIsIk1ldGFkYXRhIjp7Im5zIjoiaHR0cDpcL1wvd3d3LnRpdHVzLmNvbVwvbnNcL0ludGVsMyIsImlkIjoiOTkyMDhjY2ItNzcxMy00Mzg5LTg3ZDMtZTQ0MTk3YjNjNjVmIiwicHJvcHMiOlt7Im4iOiJDVFBDbGFzc2lmaWNhdGlvbiIsInZhbHMiOlt7InZhbHVlIjoiQ1RQX05UIn1dfV19LCJTdWJqZWN0TGFiZWxzIjpbXSwiVE1DVmVyc2lvbiI6IjE3LjEwLjE4MDQuNDkiLCJUcnVzdGVkTGFiZWxIYXNoIjoiQ1wvaDd5ZVVjdjQ4TllkXC9zWTdTMlNkNXd0WlEyMEpFZjhWRDNZNU8yRng4c2orMk9PZ0tnUDFHUjBvZFR3R0p1In0= x-ctpclassification: CTP_NT dlp-product: dlpe-windows dlp-version: 11.0.400.15 dlp-reaction: no-action x-originating-ip: [163.33.239.182] Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: quoted-printable MIME-Version: 1.0 Subject: Re: [dpdk-dev] [PATCH] openssl: fix not clearing big numbers after computations X-BeenThere: dev@dpdk.org X-Mailman-Version: 2.1.15 Precedence: list List-Id: DPDK patches and discussions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 07 Feb 2019 15:27:05 -0000 > -----Original Message----- > From: Kusztal, ArkadiuszX > Sent: Thursday, February 7, 2019 10:55 AM > To: dev@dpdk.org > Cc: akhil.goyal@nxp.com; Trahe, Fiona ; shally.ver= ma@caviumnetworks.com; > sunila.sahu@caviumnetworks.com; ashish.gupta@caviumnetworks.com; Kusztal,= ArkadiuszX > > Subject: [PATCH] openssl: fix not clearing big numbers after computations >=20 > After performing mod exp and mod inv big numbers (BIGNUM) should > be cleared as data already is copied into op fields and this BNs would > very likely contain private information for unspecified amount of time > (duration of the session). >=20 > Fixes: 3e9d6bd447fb ("crypto/openssl: add RSA and mod asym operations") >=20 > Signed-off-by: Arek Kusztal Acked-by: Fiona Trahe