Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Constant-time comparison of nullifiers in scan_block #120

Open
str4d opened this issue Sep 12, 2019 · 1 comment
Open

Constant-time comparison of nullifiers in scan_block #120

str4d opened this issue Sep 12, 2019 · 1 comment

Comments

@str4d
Copy link
Contributor

@str4d str4d commented Sep 12, 2019

From #84.

@str4d str4d added the SECURITY label Sep 12, 2019
@str4d

This comment has been minimized.

Copy link
Contributor Author

@str4d str4d commented Sep 12, 2019

This was mostly completed in 2bafc68 as part of #114. The remaining non-constant-time behaviour is in filtering out negative results, and it's not obvious to me whether this is something that is exploitable. cc @defuse

@str4d str4d added the light client label Sep 12, 2019
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
1 participant
You can’t perform that action at this time.