Fixes for RSA and ElGamal

NIIBE Yutaka gniibe at
Thu Nov 2 02:34:43 CET 2023


In master, I pushed my fixes for RSA and ElGamal.  It is to minimize
timing difference (between success case and failure case) in unpadding
PKCS#1 v1.5 padding and OAEP padding.

More information about the Gcrypt-devel mailing list