-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Bean a écrit : > > Hi, > > My previous function ensures that execution time is the same > regardless of the input. Although it's not necessary, I guess it's a > nice feature to have. BTW, the simpler function does leak one > information, the size of buffer as the execution time would increase > until the buffer size is reached. >
Hi, Yes, constant time of execution _is_ a constraint of this function. However, I don't think that giving access to the size of the buffer is a leak per se, the source code of Grub being available for everyone; We only need not to leak more informations than already available. Thomas. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (MingW32) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/ iEYEARECAAYFAkr5pjgACgkQBV7eXqefhqhm8ACfVefuwV/IVdB2NzWrPeEzksfs jeIAn1xmJzNWwTa1gKdjvA/o4MQSLsLI =n0nc -----END PGP SIGNATURE----- _______________________________________________ Grub-devel mailing list Grub-devel@gnu.org http://lists.gnu.org/mailman/listinfo/grub-devel