utils: Use memeq_const() for all cryptographic purposes
This commit is contained in:
@@ -85,7 +85,7 @@ METHOD(signer_t, verify_signature, bool,
|
||||
return FALSE;
|
||||
}
|
||||
return this->mac->get_mac(this->mac, data, mac) &&
|
||||
memeq(signature.ptr, mac, this->truncation);
|
||||
memeq_const(signature.ptr, mac, this->truncation);
|
||||
}
|
||||
|
||||
METHOD(signer_t, get_key_size, size_t,
|
||||
@@ -136,4 +136,3 @@ signer_t *mac_signer_create(mac_t *mac, size_t len)
|
||||
|
||||
return &this->public;
|
||||
}
|
||||
|
||||
|
||||
@@ -138,7 +138,7 @@ METHOD(signer_t, verify_signature, bool,
|
||||
{
|
||||
return FALSE;
|
||||
}
|
||||
return memeq(signature.ptr, sig, signature.len);
|
||||
return memeq_const(signature.ptr, sig, signature.len);
|
||||
}
|
||||
|
||||
METHOD(signer_t, get_key_size, size_t,
|
||||
|
||||
@@ -256,7 +256,7 @@ static bool verify_icv(private_ccm_aead_t *this, chunk_t plain, chunk_t assoc,
|
||||
char buf[this->icv_size];
|
||||
|
||||
return create_icv(this, plain, assoc, iv, buf) &&
|
||||
memeq(buf, icv, this->icv_size);
|
||||
memeq_const(buf, icv, this->icv_size);
|
||||
}
|
||||
|
||||
METHOD(aead_t, encrypt, bool,
|
||||
|
||||
@@ -276,7 +276,7 @@ static bool verify_icv(private_gcm_aead_t *this, chunk_t assoc, chunk_t crypt,
|
||||
char tmp[this->icv_size];
|
||||
|
||||
return create_icv(this, assoc, crypt, j, tmp) &&
|
||||
memeq(tmp, icv, this->icv_size);
|
||||
memeq_const(tmp, icv, this->icv_size);
|
||||
}
|
||||
|
||||
METHOD(aead_t, encrypt, bool,
|
||||
|
||||
@@ -187,7 +187,7 @@ static bool verify_emsa_pkcs1_signature(private_gmp_rsa_public_key_t *this,
|
||||
" %u bytes", em.len, data.len);
|
||||
goto end;
|
||||
}
|
||||
success = memeq(em.ptr, data.ptr, data.len);
|
||||
success = memeq_const(em.ptr, data.ptr, data.len);
|
||||
}
|
||||
else
|
||||
{ /* IKEv2 and X.509 certificate signatures */
|
||||
@@ -258,7 +258,7 @@ static bool verify_emsa_pkcs1_signature(private_gmp_rsa_public_key_t *this,
|
||||
goto end_parser;
|
||||
}
|
||||
hasher->destroy(hasher);
|
||||
success = memeq(object.ptr, hash.ptr, hash.len);
|
||||
success = memeq_const(object.ptr, hash.ptr, hash.len);
|
||||
free(hash.ptr);
|
||||
break;
|
||||
}
|
||||
@@ -500,4 +500,3 @@ gmp_rsa_public_key_t *gmp_rsa_public_key_load(key_type_t type, va_list args)
|
||||
|
||||
return &this->public;
|
||||
}
|
||||
|
||||
|
||||
Reference in New Issue
Block a user