Add Changelog entry for RSA exponent blinding

This commit is contained in:
Janos Follath 2017-03-23 10:41:56 +00:00 committed by Simon Butcher
parent f9203b4139
commit 45182a0065

View File

@ -2,6 +2,13 @@ mbed TLS ChangeLog (Sorted per branch, date)
= mbed TLS 2.x.x branch released xxxx-xx-xx = mbed TLS 2.x.x branch released xxxx-xx-xx
Security
* Add exponent blinding to RSA private operations as a countermeasure
against side-channel attacks like the cache attack described in
https://arxiv.org/abs/1702.08719v2.
Found and fix proposed by Michael Schwarz, Samuel Weiser, Daniel Gruss,
Clémentine Maurice and Stefan Mangard.
Feature Feature
* Add a new configuration option to 'mbedtls_ssl_config' to enable * Add a new configuration option to 'mbedtls_ssl_config' to enable
suppressing the CA list in Certificate Request messages. The default suppressing the CA list in Certificate Request messages. The default