[9] RFR 8161571: Verifying ECDSA signatures permits trailing bytes

Vincent Ryan vincent.x.ryan at oracle.com
Tue Jul 19 19:10:27 UTC 2016


Please review this fix to apply stricter length checks when verifying public key signatures.
Thanks.

Bug: https://bugs.openjdk.java.net/browse/JDK-8161571
Webrev: http://cr.openjdk.java.net/~vinnie/8161571/webrev.00/


More information about the security-dev mailing list