From debbugs-submit-bounces@debbugs.gnu.org Thu Jun 14 16:45:45 2018 Received: (at 31831) by debbugs.gnu.org; 14 Jun 2018 20:45:45 +0000 Received: from localhost ([127.0.0.1]:48565 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1fTZ7o-0003Zm-V1 for submit@debbugs.gnu.org; Thu, 14 Jun 2018 16:45:45 -0400 Received: from out2-smtp.messagingengine.com ([66.111.4.26]:53893) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1fTZ7n-0003Ze-2W for 31831@debbugs.gnu.org; Thu, 14 Jun 2018 16:45:43 -0400 Received: from compute4.internal (compute4.nyi.internal [10.202.2.44]) by mailout.nyi.internal (Postfix) with ESMTP id 93A8D21C55; Thu, 14 Jun 2018 16:45:42 -0400 (EDT) Received: from mailfrontend2 ([10.202.2.163]) by compute4.internal (MEProxy); Thu, 14 Jun 2018 16:45:42 -0400 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=famulari.name; h=content-type:date:from:in-reply-to:message-id:mime-version :references:subject:to:x-me-sender:x-me-sender:x-sasl-enc; s= mesmtp; bh=J5p/dlL9JByRPcDBWjG/8+3exjK9jrOHbrTwp0MR3Ak=; b=peqm2 BzNIyojlsu/nvQyNNWikw4iReUGD8IhvrX91XThTae/1Ewp6nPYpc2iAI+27LcJX y8e6x8ouRr0HsMpTwHMAuJqE1gRvjMPXdYTtSUsZEsA8cwrHw0v7tUBrs1MjW9qM GCJ160kPbQJS1XnBnhSH9pzppdS/De9/Fqlu+k= DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=content-type:date:from:in-reply-to :message-id:mime-version:references:subject:to:x-me-sender :x-me-sender:x-sasl-enc; s=fm3; bh=J5p/dlL9JByRPcDBWjG/8+3exjK9j rOHbrTwp0MR3Ak=; b=QkfA+zJisJkTaiaStg7fMpcigJmoh7XpJct2iK5WHht+7 kTEN3geRxA8Aqk/wZFSN8vpoDXEkAiLSG9wi3Vn8uX21BCjd9WsGWEvbbw1WJ5G5 ME2Uy6EDva4EQspWIZCNezpEYO7w75uKV4bsnchxxoQFt56QEkNXlKWT4kaqXgjr 8+h3Ur+elv/v+50mP//NA7rH35ofknio8efueaDB0Ez7FCkTscI3dWIgATxsjsup R5KEUAEHTtUgmBsSiY/ecx+xYK67204XmaIdY/g128+XjMXtJoUaNIZtmlC+WMDn sGQj613LYzp4sxtBAcZY//Bc+1YyopGaWaJcDRvoQ== X-ME-Proxy: X-ME-Sender: Received: from localhost (c-76-124-202-137.hsd1.pa.comcast.net [76.124.202.137]) by mail.messagingengine.com (Postfix) with ESMTPA id 44BFD10262 for <31831@debbugs.gnu.org>; Thu, 14 Jun 2018 16:45:42 -0400 (EDT) Date: Thu, 14 Jun 2018 16:45:41 -0400 From: Leo Famulari To: 31831@debbugs.gnu.org Subject: Re: CVE-2018-0495 Key Extraction Side Channel in Multiple Crypto Libraries Message-ID: <20180614204541.GA26976@jasmine.lan> References: <20180614195049.GB4039@jasmine.lan> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="rwEMma7ioTxnRzrJ" Content-Disposition: inline In-Reply-To: <20180614195049.GB4039@jasmine.lan> User-Agent: Mutt/1.10.0 (2018-05-17) X-Spam-Score: -0.7 (/) X-Debbugs-Envelope-To: 31831 X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: debbugs-submit-bounces@debbugs.gnu.org Sender: "Debbugs-submit" X-Spam-Score: -1.7 (-) --rwEMma7ioTxnRzrJ Content-Type: text/plain; charset=us-ascii Content-Disposition: inline On Thu, Jun 14, 2018 at 03:50:49PM -0400, Leo Famulari wrote: > I'll try OpenSSL next. I sent patches for both branches of OpenSSL: version 1.0.2: version 1.1.0: --rwEMma7ioTxnRzrJ Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQIzBAABCAAdFiEEsFFZSPHn08G5gDigJkb6MLrKfwgFAlsi0/EACgkQJkb6MLrK fwieQQ/9F9/HwOc2YPtHUb5caJ9i3k0Cm5GWph6qtfOKqw+11flRZfyN7Afn1uu/ +xZHbIuA/NN/h/n+GX/u12U2TnCNQ3K7lIYiWHAXppstSQsbsWV1GcO/zpnRgZcq EJt3NnI20vuR9jCT/bNfig3WAL5twtbkZIdDor1jz8lQfedNGDXBKzW8tY6qpeat P0UPafr8l52Svsxl/zPFCi41mFhOVVYNFXzgsWWxEsdRgwcDRn7mZU3egQlT/l+U FVmDx7qR1lMaECd1Oiy8CoY8IHFx0vq5rRcd7LVuHmkGq69Y/00oE/ktxAKbgBf/ j+uo9OrnAFK5mrL4XYNNA0yPlQjFltz67MJlWL5DiOc7ARnMPz4E+qcJKmOAkVw9 wj+gkSKFsnldlI4oNZMt+klNLQ5OJMG9ibALG9RYrZFSYIqg/FKrDxb7p1blE0cI 4iKY3k6Kh+C+1D8XTls3c8B5OjOt0Wtsix3/B7AE0DFHUTTulhN0DQX/RkT+dDfS x1eyo7Tap4tr2FLnvS4mmhWaC61z7Jyd0g5/MHPk8MgS5uU3SXPEXktwj880jOEe POXybGBdnOzHtptKSzVMS/B4ZqolJfpkIz7JNQ2FRGAdXl4XK4RcxBW3qGS8Jc0C MS1No/DA20tpJA8XTMn65wl70iRPzMLI8c971jdYDNYc06pGkeY= =L3hc -----END PGP SIGNATURE----- --rwEMma7ioTxnRzrJ--