From: Brad Fitzpatrick Date: Tue, 8 Dec 2015 16:49:17 +0000 (+0000) Subject: crypto/tls: document lack of Lucky13 hardening X-Git-Tag: go1.6beta1~99 X-Git-Url: http://www.git.cypherpunks.su/?a=commitdiff_plain;h=91abab0429a9740ac1b9b0b06282c04f132103f5;p=gostls13.git crypto/tls: document lack of Lucky13 hardening Updates #13385 Change-Id: I9c2edf8c02adc388c48760b29e63dfa2966262d6 Reviewed-on: https://go-review.googlesource.com/17532 Reviewed-by: Tim Cooijmans Reviewed-by: Adam Langley --- diff --git a/src/crypto/tls/tls.go b/src/crypto/tls/tls.go index 2554af6c22..c1d1331bde 100644 --- a/src/crypto/tls/tls.go +++ b/src/crypto/tls/tls.go @@ -5,6 +5,11 @@ // Package tls partially implements TLS 1.2, as specified in RFC 5246. package tls +// BUG(agl): The crypto/tls package does not implement countermeasures +// against Lucky13 attacks on CBC-mode encryption. See +// http://www.isg.rhul.ac.uk/tls/TLStiming.pdf and +// https://www.imperialviolet.org/2013/02/04/luckythirteen.html. + import ( "crypto" "crypto/ecdsa"