Bug #6252

OpenSSL - ECDSA signature reliability

Added by Henri Sack over 3 years ago. Updated 3 months ago.

ruby -v:ruby 1.9.3p125 (2012-02-16 revision 34643) [i686-linux] Backport:


The snippet code attached shows ECDSA signature test with secp160r1 curve.
* ((|msg|)) a message with length <= 20,
* ((|sig|)) the ECDSA signature of ((|msg|))
* ((|tamp|)), a string,

Then ((|sig|)) can be successfully used to verify any message in the form ((|msg|)) + ((|tamp|))


#1 Updated by Yusuke Endoh over 3 years ago

  • Status changed from Open to Assigned

#2 Updated by Martin Bosslet over 3 years ago

sacketty (Henri Sack) wrote:

The snippet code attached

Hello Henri,

it took me a while to look into this... I can't find your attachment, would you still happen to have it around? I think I know what you're aiming at, just want to be sure!


#3 Updated by Yui NARUSE almost 3 years ago

  • Target version changed from 1.9.3 to next minor

#4 Updated by Zachary Scott 3 months ago

  • Assignee changed from Martin Bosslet to openssl

Also available in: Atom PDF