Re: [openssl-dev] ecp_nistz256 correctness/constant-timedness

2015-04-24 Thread Emilia Käsper
On Fri, Apr 24, 2015 at 3:00 PM, Emilia Käsper emi...@openssl.org wrote: Thanks for the report! Let me clarify a few points, and then I'll fix it. On Thu, Apr 23, 2015 at 11:07 PM, Brian Smith br...@briansmith.org wrote: Hi, I have some questions regarding this implementation.

Re: [openssl-dev] ecp_nistz256 correctness/constant-timedness

2015-04-24 Thread Emilia Käsper
Thanks for the report! Let me clarify a few points, and then I'll fix it. On Thu, Apr 23, 2015 at 11:07 PM, Brian Smith br...@briansmith.org wrote: Hi, I have some questions regarding this implementation.

[openssl-dev] [openssl.org #3819] make openssl-1.0.2a failed on Solaris 10 i86pc

2015-04-24 Thread Borut Podlipnik via RT
Dear developers, I am not able to build openssl-1.02.a on Solaris 10: # uname -a SunOS corona 5.10 Generic_150401-23 i86pc i386 i86pc Solaris # ./Configure solaris-x86-gcc --openssldir=/usr/local/openssl-1.0.2a shared … Configured for solaris-x86-gcc. # make making all in crypto... make[1]:

Re: [openssl-dev] [openssl.org #3818] [BUG] dovecot imap-login segfault when running nmap -sV

2015-04-24 Thread Florian Pritz via RT
On 23.04.2015 21:25, Matt Caswell via RT wrote: If I'm right then this is a dovecot bug to fix. Having said that OpenSSL should probably be more forgiving of this error condition. Please see attached patch for 1.0.2a. If this resolves the issue, then it confirms my suspicions. The patch

Re: [openssl-dev] ecp_nistz256 correctness/constant-timedness

2015-04-24 Thread Emilia Käsper
commit c028254b12 fixes 1., 2. and 3. (also applied to 1.0.2). commit 53dd4ddf71 fixes 5 and some of 4. Still ploughing my way through the rest of error checking. Cheers, Emilia On Fri, Apr 24, 2015 at 3:15 PM, Emilia Käsper emi...@openssl.org wrote: On Fri, Apr 24, 2015 at 3:00 PM, Emilia