diff options
author | Kenny Root <kroot@google.com> | 2015-05-18 11:38:14 -0700 |
---|---|---|
committer | Kenny Root <kroot@google.com> | 2015-05-19 08:50:26 -0700 |
commit | 6c384ac7ee074f2e54f04be94846d528430abc26 (patch) | |
tree | 256bbb44debdbd4ec3438eb7b0c26478f439bf38 /support/src | |
parent | 8c75589cba8b490e9cbc479ce2129ccf480be8f3 (diff) | |
download | libcore-6c384ac7ee074f2e54f04be94846d528430abc26.zip libcore-6c384ac7ee074f2e54f04be94846d528430abc26.tar.gz libcore-6c384ac7ee074f2e54f04be94846d528430abc26.tar.bz2 |
Fix test18566 to have the correct expectation
Before the test was allowing invalid encoding in PKCS#1 data, but this
is an exploitable condition in certain cases. See for instance
https://www.imperialviolet.org/2014/09/26/pkcs1.html
Since BoringSSL has the change to disallow this problem, we are
switching this to assert that the signature did not verify.
(cherry picked from commit 559126c953cf0e1e4986e24c019bbf996d5ab795)
Bug: 21209498
Bug: 5038554
Bug: http://code.google.com/p/android/issues/detail?id=18566
Change-Id: Ie040f644a4588c6801e5557e2f9a3bcdedfd30ac
Diffstat (limited to 'support/src')
0 files changed, 0 insertions, 0 deletions