Uploaded image for project: 'Embedded Software & Tools'
  1. Embedded Software & Tools
  2. EXT_EP-11106

ECDH Curve25519 little-endian shared secret buffer overflow

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Medium Medium
    • TI Device Drivers
    • TIDRIVERS-5959
    • TIDRIVERS_7_10_01
    • TIDRIVERS_7_10_04
    • Hide
      CC13x2
      CC26x2
      CC13x2x7
      CC26x2x7
      CC13x4
      CC26x3
      CC26x4
      Show
      CC13x2 CC26x2 CC13x2x7 CC26x2x7 CC13x4 CC26x3 CC26x4

      For Curve 25519 keys in little endian keys format, the Y coordinate is being zeroised. But the shared secret buffer is only 32B for X coordinates

      Updated ECDH driver to check the buffer size to be updated before writing the key / zeroising the input buffer.

            syncuser TI User
            syncuser TI User
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated: