Commit 7748168c authored by Tommi Hirvola's avatar Tommi Hirvola Committed by Herbert Xu

crypto: x86/poly1305 - Clear key material from stack in SSE2 variant

1-block SSE2 variant of poly1305 stores variables s1..s4 containing key
material on the stack. This commit adds missing zeroing of the stack
memory. Benchmarks show negligible performance hit (tested on i7-3770).
Signed-off-by: default avatarTommi Hirvola <tommi@hirvola.fi>
Signed-off-by: default avatarHerbert Xu <herbert@gondor.apana.org.au>
parent 30724445
...@@ -272,6 +272,10 @@ ENTRY(poly1305_block_sse2) ...@@ -272,6 +272,10 @@ ENTRY(poly1305_block_sse2)
dec %rcx dec %rcx
jnz .Ldoblock jnz .Ldoblock
# Zeroing of key material
mov %rcx,0x00(%rsp)
mov %rcx,0x08(%rsp)
add $0x10,%rsp add $0x10,%rsp
pop %r12 pop %r12
pop %rbx pop %rbx
......
Markdown is supported
0%
or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment