Add Changelog entry for RSA exponent blinding

This commit is contained in:
Janos Follath 2017-03-23 10:41:56 +00:00 committed by Manuel Pégourié-Gonnard
parent 9ef9f1099f
commit 4477bcabc3

View File

@ -1,5 +1,14 @@
mbed TLS ChangeLog (Sorted per branch, date)
= mbed TLS 2.1.x branch released xxxx-xx-xx
Security
* Add exponent blinding to RSA private operations as a countermeasure
against side-channel attacks like the cache attack described in
https://arxiv.org/abs/1702.08719v2.
Found and fix proposed by Michael Schwarz, Samuel Weiser, Daniel Gruss,
Clémentine Maurice and Stefan Mangard.
= mbed TLS 2.1.7 branch released 2017-03-08
Security