Skip to content

Sanitize x25519 public keys #3

@bellebaum

Description

@bellebaum

According to Section 5 of RFC 7748, bit 255 should be ignored when parsing u-coordinates. I cannot find this check, which may result in the constant-time addition on f25519 taking a wrong choice about reducing modulo 2^255-19. Have I missed something?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions