Add ChangeLog message for EC private exponent information leak

This commit is contained in:
Hanno Becker 2017-10-19 10:10:18 +01:00
parent a21e2a015b
commit 509fef7de3

View file

@ -8,6 +8,8 @@ Security
and omitted for the sake of saving memory, but potentially
leading to slight timing differences.
Reported by Marco Macchetti, Kudelski Group.
* Wipe stack buffer temporarily holding EC private exponent
after keypair generation.
Features
* Allow comments in test data files.