Hacktoberfest 2026: le issue che i maintainer hanno segnato per ottobre, aperte e adatte ai principianti. Sfoglia le issue Hacktoberfest

Tracking issue for constant-time implementation problems

Aperta
#711 1 commento 0 reazioni 0 assegnatari Vedi su GitHub

Nessuno ha ancora preso questa issue.

Valutazione

Difficoltà
5/5
Tempo stimato
Più di una settimana
Idoneità per principianti
20/100
Tipo di issue
Bug
Chiarezza
Abbastanza chiara
Stato di attività
Attiva
Stack tecnologico
rust

Direzione di ricerca

Start by reading the linked draft-irtf-cfrg-rsa-guidance sections and reviewing related issues #710, #702, and #626 to identify which recommendations remain unaddressed. This is a broad tracking issue with existing contributors working on it; done means a specific unchecked recommendation is resolved and its checklist entry can be marked complete, with coordination before any contribution.

Scritto dal modello di indicizzazione a partire dal testo della issue.

Descrizione

security

draft-irtf-cfrg-rsa-guidance contains plenty of guidance for how to implement RSA in constant time correctly. This is an issue tracking what parts of its recommendations we're currently missing.

Note we have a separate issue #626 specifically to track padding defects and the lack of implicit rejection on padding failures.

  1. Make private-result integer-to-octet conversion fixed-width and constant-time (see §6.1, §7.2, partly addressed in #710)
  2. Ignore the first encoded-message octet when depadding OAEP (see §7)
  3. Apply base blinding by default across private-key operations (see §6.1, partly addressed in #702)
  4. Audit and replace CRT reductions using division by secret primes including rem_vartime for mod reduce (see §6.1, §6.2)
  5. Derive private arithmetic buffer widths from the public modulus (§6.2.1)
  6. Add fresh exponent blinding for each private operation (see §6.4)
  7. Add CRT modulus blinding (see §6.5)
  8. Require exactly k ciphertext octets for PKCS#1 v1.5 decryption (see §7.2, addressed in #710)

NOTE: I'd kindly request that people do NOT open PRs that try to vibe code solutions to these problems. We already have people including myself working on these issues and vibe coded PRs clutter the tracker and just generally waste my time.

Lingua principale
Rust
Stelle
673
Fork
192
Metriche di merge delle PR
Nessuna PR unita negli ultimi 30g

Preparare l'ambiente

Questo progetto non fornisce container di sviluppo, Dockerfile né guida per i contributori, quindi l'ambiente è a tuo carico: parti dal suo README e consulta la nostra guida al primo contributo per i passaggi generali.

Come iniziare

  1. Leggi tutta la issue e poi la guida ai contributi del progetto.
  2. Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
  3. Fai un fork del repository e lavora su un branch.
  4. Apri una pull request che faccia riferimento al numero della issue.

Altre issue di RustCrypto/RSA

Tutte le issue di RustCrypto/RSA

Issue simili

Altre issue su Rust

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.