On Friday, August 30, 2019 at 12:08:58 PM UTC-4, Philippe Antoine wrote:
>
> Hi,
>
> The fix does not seem complete.
>
> Here is another reproducer found by oss-fuzz
>
> Integer 
> x("0x20ffff2020ff000020ff2020202020ff20ff20ff202020ffffff20200020ffff");
> Integer 
> y("0xba1a84de8fe276f1d082e3e7c10f35e0baca90baca7c9502044854dba0ecdebc");
> Integer 
> s("0x0000000000000000000000000000000000000000000000000000000000000007");
>

Thanks Phillipe.

So it looks like the problem is limited to brainpool curves at the moment. 
I'm guessing it may apply to custom curves, too.

I found oss-fuzz at https://github.com/google/oss-fuzz. Is this your GitHub 
with the sources? If so, could you point out the program of interest?

Jeff

-- 
You received this message because you are subscribed to "Crypto++ Users". More 
information about Crypto++ and this group is available at 
http://www.cryptopp.com and 
http://groups.google.com/forum/#!forum/cryptopp-users.
--- 
You received this message because you are subscribed to the Google Groups 
"Crypto++ Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/cryptopp-users/19494149-0710-4cb5-aa03-d063b7d0c2e9%40googlegroups.com.

Reply via email to