Re: RSASSA-PSS using a wounded hash function



Tom St Denis wrote:

Noob wrote:

I'm using LTC to add RSASSA-PSS from to a slow (130 MHz) STB.
(Thanks for LTC ;-)

You're welcome, keep in mind there are no maintainers of LTC that I'm
aware of. A few people have offered up to maintain it over the years
but I have yet to see a 1.18 release ... :-/

There are bugs in some of the ASN.1 [which is largely incomplete] and
a few other places which I won't really go into.

I used rsa_export and rsa_import. AFAIU, these functions rely on the ASN.1 code.

Are there bugs in that specific part of the ASN.1 implementation, or was that
use case (rsa_import and rsa_export) somewhat bug-free?

The signature will only be as strong as it's weakest link, assuming
that's not your PK implementation it'll be the choice of hash.

What is considered the PK implementation?

Regards.
.



Relevant Pages

  • Re: This is [Re:] How to improve the quality of the kernel[?].
    ... The goal is to get all patches for a maintained subsystem submitted to ... The fact is, some maintainers are excellent. ... Let's say that we aim for 0.1 bugs ... Blarney, where mistakes don't happen, developers are perfect, hardware is ...
    (Linux-Kernel)
  • Re: Reason behind MISRA rule 111
    ... but when you're forced to adapt your mind from Python to Perl to Ada, ... Maybe original MISRA wasn't intended for systems which even had I/O. ... the development, by making it harder for the "easy" bugs to creep in, ... I'm not complaining about adding '{' for 'if', ...
    (comp.arch.embedded)
  • Re: Store Oddity/Bug Report
    ... few months torrid?), the maintainers of Steam, ToME, Heng, Norse, POS, ... After a string of quiet ones V has a vigorous ... maintained variants AFAICT, and those that are are mostly on very long ... I'm not surprised that there are bugs as a result. ...
    (rec.games.roguelike.angband)
  • Re: Iceweasel 3 and gopher?
    ... simple rebranding project that the maintainers had greater ambitions ... Changes to work around bugs with the hidden visibility pragma on gcc, ... Overall, Ubuntu applies the same set of patches as Debian, plus some ... kernel, glibc, and OOo than you will in our forced "fork" of iceweasel. ...
    (Debian-User)
  • Re: PP Preparty?
    ... Less concert tickets and peace of mind, ... I didn't mind the bugs too much. ... haven't read the Da Vinci Code yet so it would work out pretty well. ...
    (rec.music.artists.queensryche)