diff options
author | Sascha Hauer <s.hauer@pengutronix.de> | 2021-03-05 10:08:04 +0100 |
---|---|---|
committer | Sascha Hauer <s.hauer@pengutronix.de> | 2021-07-30 19:50:36 +0200 |
commit | a3337563c705bc8e0cf32f910b3e9e3c43d962ff (patch) | |
tree | 25ebe5505b0f2f861418b561c132fd24ed911451 /dts | |
parent | 0a9f9a7410681e55362f8311537ebc7be9ad0fbe (diff) | |
download | barebox-a3337563c705bc8e0cf32f910b3e9e3c43d962ff.tar.gz barebox-a3337563c705bc8e0cf32f910b3e9e3c43d962ff.tar.xz |
password: Use crypto_memneq() to compare hashes
Cryptographic verifications should be time-constant so that an attacker
cannot get information about the secrets used by observing the system,
so use crypto_memneq() rather than memcmp() to compare password hashes.
Signed-off-by: Sascha Hauer <s.hauer@pengutronix.de>
Diffstat (limited to 'dts')
0 files changed, 0 insertions, 0 deletions