openssl: Verify that a peer's ECDH public value is a point on the elliptic curve

This check is mandated by RFC 6989.  Since we don't reuse DH secrets,
it is mostly a sanity check.
This commit is contained in:
Tobias Brunner
2013-11-19 15:00:28 +01:00
parent 38a4f1964e
commit 3bff80aee3
@@ -102,6 +102,11 @@ static bool chunk2ecp(const EC_GROUP *group, chunk_t chunk, EC_POINT *point)
goto error;
}
if (!EC_POINT_is_on_curve(group, point, ctx))
{
goto error;
}
ret = TRUE;
error:
BN_CTX_end(ctx);