[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: [tor-dev] memcmp() & co. timing info disclosures?



On May 6, 2011, at 10:25 PM, Robert Ransom wrote:

> I would expect GCC (and most other C compilers) to use a
> non-constant-time implementation of (v1 == v2).

Are there machines that implement uint8_t comparison in a data-dependent way? What's an example?


-- 
Chris Palmer
Technology Director, Electronic Frontier Foundation
https://www.eff.org/code

_______________________________________________
tor-dev mailing list
tor-dev@xxxxxxxxxxxxxxxxxxxx
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-dev