Daiki Ueno writes:
>> For testing, I think it would be good to take the testvectors for cfb8,
>> and split into multiple calls to cfb8_*crypt, in several ways. And check
>> they all give the same result. A bit like it's done in arcfour-test.c,
>> or the test_cipher_stream (#if:ed out, not sure if
ni...@lysator.liu.se (Niels Möller) writes:
> Daiki Ueno writes:
>
>> We realized that cfb8_decrypt doesn't update the IV correctly when the
>> input is shorter than AES block size. The attached patches should fix
>> it.
>
> For testing, I think it would be good to take the testvectors for cfb8,
Daiki Ueno writes:
> We realized that cfb8_decrypt doesn't update the IV correctly when the
> input is shorter than AES block size. The attached patches should fix
> it.
For testing, I think it would be good to take the testvectors for cfb8,
and split into multiple calls to cfb8_*crypt, in seve
Hello,
We realized that cfb8_decrypt doesn't update the IV correctly when the
input is shorter than AES block size. The attached patches should fix
it.
Samba is also affected by this and there are similar fixes:
https://git.samba.org/?p=gd/nettle;a=commit;h=c9926d319a44858d9bde5c28e37f37ed4e3ad3