mbedtls/ChangeLog.d/issue3819.txt
stroebeljc d4de1b5d4e Updated per comments from @gilles-peskine-arm.
Signed-off-by: stroebeljc <stroebeljc1@gmail.com>
2021-01-04 18:14:32 -06:00

6 lines
271 B
Plaintext

Security
* Fix a security reduction error that caused all bits of the nonce
to be zero in mbedtls_ctr_drbg_reseed_internal. This prevented
the security strength from reaching the level required by NIST.
Found by John Stroebel in #3819 and fixed in #3973.