On 02/18/2016 11:41 AM, Vladimir Kempik wrote: > making this routine to always use montgomery_multiply helped to > workaround the issue OK, so possibly a bug in montgomery_square. I'm not sure what "helped" means, though. I guess it doesn't mean "fixes the bug". Andrew.