Report side-channel leakages

Qinkun Bao qub14 at psu.edu
Sun Aug 23 22:13:27 CEST 2020


Hello,

We found some secret-dependent control-flows in the latest version of
libgcrypt (1.8.6). Those leakage sites may lead to potential
side-channel attacks. I was wondering if you are interested in fixing those
leakages? If so, could you please share us with the way to report those
side-channel leakages?

Thanks,
Qinkun Bao
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gcrypt-devel/attachments/20200823/2078b932/attachment.html>


More information about the Gcrypt-devel mailing list