diff options
author | Niels Möller <nisse@lysator.liu.se> | 2016-06-20 20:04:56 +0200 |
---|---|---|
committer | Niels Möller <nisse@lysator.liu.se> | 2016-06-20 20:04:56 +0200 |
commit | 3fe1d6549765ecfb24f0b80b2ed086fdc818bff3 (patch) | |
tree | 6bc137df6e38bd4bb5de9007023d1d745f34250c | |
parent | b4115a0abeef459dde9a466ccec98e064fac88ee (diff) | |
download | nettle-3fe1d6549765ecfb24f0b80b2ed086fdc818bff3.tar.gz |
Use mpz_powm_sec.
-rw-r--r-- | bignum.h | 2 | ||||
-rw-r--r-- | configure.ac | 4 | ||||
-rw-r--r-- | dsa-sign.c | 2 | ||||
-rw-r--r-- | rsa-blind.c | 2 | ||||
-rw-r--r-- | rsa-sign-tr.c | 4 | ||||
-rw-r--r-- | rsa-sign.c | 4 |
6 files changed, 10 insertions, 8 deletions
@@ -53,6 +53,8 @@ # define mpz_combit mpz_combit # define mpz_import mpz_import # define mpz_export mpz_export +/* Side-channel silent powm not available in mini-gmp. */ +# define mpz_powm_sec mpz_pwm #else # include <gmp.h> #endif diff --git a/configure.ac b/configure.ac index e1ee64c2..92a36055 100644 --- a/configure.ac +++ b/configure.ac @@ -236,9 +236,9 @@ fi # Checks for libraries if test "x$enable_public_key" = "xyes" ; then if test "x$enable_mini_gmp" = "xno" ; then - AC_CHECK_LIB(gmp, __gmpz_getlimbn,, + AC_CHECK_LIB(gmp, __gmpz_mpz_powm,, [AC_MSG_WARN( - [GNU MP not found, or not 3.1 or up, see http://gmplib.org/. + [GNU MP not found, or too old. GMP-5.0 or later is needed, see http://gmplib.org/. Support for public key algorithms will be unavailable.])] enable_public_key=no) @@ -65,7 +65,7 @@ dsa_sign(const struct dsa_params *params, mpz_add_ui(k, k, 1); /* Compute r = (g^k (mod p)) (mod q) */ - mpz_powm(tmp, params->g, k, params->p); + mpz_powm_sec(tmp, params->g, k, params->p); mpz_fdiv_r(signature->r, tmp, params->q); /* Compute hash */ diff --git a/rsa-blind.c b/rsa-blind.c index 7662f503..16b03d77 100644 --- a/rsa-blind.c +++ b/rsa-blind.c @@ -61,7 +61,7 @@ _rsa_blind (const struct rsa_public_key *pub, while (!mpz_invert (ri, r, pub->n)); /* c = c*(r^e) mod n */ - mpz_powm(r, r, pub->e, pub->n); + mpz_powm_sec(r, r, pub->e, pub->n); mpz_mul(c, c, r); mpz_fdiv_r(c, c, pub->n); diff --git a/rsa-sign-tr.c b/rsa-sign-tr.c index 3d80ed4e..68233a3c 100644 --- a/rsa-sign-tr.c +++ b/rsa-sign-tr.c @@ -60,7 +60,7 @@ rsa_blind (const struct rsa_public_key *pub, while (!mpz_invert (ri, r, pub->n)); /* c = c*(r^e) mod n */ - mpz_powm(r, r, pub->e, pub->n); + mpz_powm_sec(r, r, pub->e, pub->n); mpz_mul(c, m, r); mpz_fdiv_r(c, c, pub->n); @@ -97,7 +97,7 @@ rsa_compute_root_tr(const struct rsa_public_key *pub, rsa_compute_root (key, xb, mb); - mpz_powm(t, xb, pub->e, pub->n); + mpz_powm_sec(t, xb, pub->e, pub->n); res = (mpz_cmp(mb, t) == 0); if (res) @@ -96,11 +96,11 @@ rsa_compute_root(const struct rsa_private_key *key, /* Compute xq = m^d % q = (m%q)^b % q */ mpz_fdiv_r(xq, m, key->q); - mpz_powm(xq, xq, key->b, key->q); + mpz_powm_sec(xq, xq, key->b, key->q); /* Compute xp = m^d % p = (m%p)^a % p */ mpz_fdiv_r(xp, m, key->p); - mpz_powm(xp, xp, key->a, key->p); + mpz_powm_sec(xp, xp, key->a, key->p); /* Set xp' = (xp - xq) c % p. */ mpz_sub(xp, xp, xq); |