recent DH change does not avoid *all* possible small-subgroup attacks;

let's be clear about that
This commit is contained in:
Bodo Möller 2005-08-23 06:54:33 +00:00
parent 7534d131d6
commit 770bc596e1

View File

@ -27,7 +27,7 @@
Changes between 0.9.8 and 0.9.8a [XX xxx XXXX]
*) Avoid small subgroup attacks in Diffie-Hellman.
*) Avoid some small subgroup attacks in Diffie-Hellman.
[Nick Mathewson and Ben Laurie]
*) Add functions for well-known primes.