diff options
author | Kees Cook <keescook@chromium.org> | 2018-03-30 09:55:44 -0700 |
---|---|---|
committer | Herbert Xu <herbert@gondor.apana.org.au> | 2018-04-21 00:58:29 +0800 |
commit | 96ea4f4f1987807e2705f67ac2b47812b52015de (patch) | |
tree | 88e96ecf7302e051757473c1e3733f4b327e305d /crypto/ecc.h | |
parent | ef734472771a62ae9f901367a40a89382a991917 (diff) | |
download | linux-crypto-96ea4f4f1987807e2705f67ac2b47812b52015de.tar.gz linux-crypto-96ea4f4f1987807e2705f67ac2b47812b52015de.zip |
crypto: ecc - Actually remove stack VLA usage
On the quest to remove all VLAs from the kernel[1], this avoids VLAs
by just using the maximum allocation size (4 bytes) for stack arrays.
All the VLAs in ecc were either 3 or 4 bytes (or a multiple), so just
make it 4 bytes all the time. Initialization routines are adjusted to
check that ndigits does not end up larger than the arrays.
This includes a removal of the earlier attempt at this fix from
commit a963834b4742 ("crypto/ecc: Remove stack VLA usage")
[1] https://lkml.org/lkml/2018/3/7/621
Signed-off-by: Kees Cook <keescook@chromium.org>
Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>
Diffstat (limited to 'crypto/ecc.h')
-rw-r--r-- | crypto/ecc.h | 4 |
1 files changed, 3 insertions, 1 deletions
diff --git a/crypto/ecc.h b/crypto/ecc.h index e4fd4492..f75a86ba 100644 --- a/crypto/ecc.h +++ b/crypto/ecc.h @@ -26,7 +26,9 @@ #ifndef _CRYPTO_ECC_H #define _CRYPTO_ECC_H -#define ECC_MAX_DIGITS 4 /* 256 */ +#define ECC_CURVE_NIST_P192_DIGITS 3 +#define ECC_CURVE_NIST_P256_DIGITS 4 +#define ECC_MAX_DIGITS ECC_CURVE_NIST_P256_DIGITS #define ECC_DIGITS_TO_BYTES_SHIFT 3 |