Guido Günther <a...@sigxcpu.org> writes: > There are exploits mentioned in the paper. I think we should test them > before releasing a DLA.
What paper are you referring to here? There is the blog post here: https://blog.fuzzing-project.org/51-Fun-with-Bignums-Crashing-MatrixSSL-and-more.html However I don't see any exploits mentioned. Maybe you know of some other document? -- Brian May <b...@debian.org>