On Friday, August 30, 2019 at 12:08:58 PM UTC-4, Philippe Antoine wrote:
>
> Hi,
>
> The fix does not seem complete.
>
> Here is another reproducer found by oss-fuzz
>
> Integer
> x("0x20ffff2020ff000020ff2020202020ff20ff20ff202020ffffff20200020ffff");
> Integer
> y("0xba1a84de8fe276f1d082e3e7c10f35e0baca90baca7c9502044854dba0ecdebc");
> Integer
> s("0x0000000000000000000000000000000000000000000000000000000000000007");
>
Thanks Phillipe.
So it looks like the problem is limited to brainpool curves at the moment.
I'm guessing it may apply to custom curves, too.
I found oss-fuzz at https://github.com/google/oss-fuzz. Is this your GitHub
with the sources? If so, could you point out the program of interest?
Jeff
--
You received this message because you are subscribed to "Crypto++ Users". More
information about Crypto++ and this group is available at
http://www.cryptopp.com and
http://groups.google.com/forum/#!forum/cryptopp-users.
---
You received this message because you are subscribed to the Google Groups
"Crypto++ Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email
to [email protected].
To view this discussion on the web visit
https://groups.google.com/d/msgid/cryptopp-users/19494149-0710-4cb5-aa03-d063b7d0c2e9%40googlegroups.com.