mbedtls/ChangeLog.d/limit_size_of_diffie_hellman_calculations.txt

5 lines
215 B
Text
Raw Normal View History

Security
* Limit the size of calculations performed by mbedtls_mpi_exp_mod to
MBEDTLS_MPI_MAX_SIZE to prevent a potential denial of service when
generating Diffie-Hellman key pairs. Credit to OSS-Fuzz.