Page MenuHomeFreeBSD

libcrypto: Work around strict aliasing violations in bn_nist.c
ClosedPublic

Authored by jrtc27 on Jul 24 2022, 1:24 AM.
Tags
None
Referenced Files
Unknown Object (File)
Mon, Aug 11, 9:19 AM
Unknown Object (File)
Mon, Aug 4, 6:00 PM
Unknown Object (File)
Jul 13 2025, 4:33 PM
Unknown Object (File)
Jun 25 2025, 11:17 AM
Unknown Object (File)
Jun 24 2025, 7:50 AM
Unknown Object (File)
Jun 15 2025, 11:12 AM
Unknown Object (File)
Jun 14 2025, 9:26 PM
Unknown Object (File)
May 30 2025, 1:06 AM
Subscribers

Details

Summary

This file is full of strict aliasing violations. Previously it was only
optimised in ways that broke the code by CHERI LLVM, but now it appears
that the in-tree LLVM also breaks it for RISC-V, resulting in broken
ECDSA signature validation with error messages like the following:

root@unmatched:/usr/src # ssh-keygen -l -f /etc/ssh/ssh_host_ecdsa_key
/etc/ssh/ssh_host_ecdsa_key is not a key file.
root@unmatched:/usr/src # git fetch
fatal: unable to access 'https://git.FreeBSD.org/src.git/': error:1012606B:elliptic curve routines:EC_POINT_set_affine_coordinates:point is not on curve

Obtained from: CheriBSD
MFC after: 1 week

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable