File tree Expand file tree Collapse file tree 2 files changed +4
-4
lines changed
java/ql/test/experimental/query-tests/security/CWE-208/NotConstantTimeCheckOnSignature Expand file tree Collapse file tree 2 files changed +4
-4
lines changed Original file line number Diff line number Diff line change 10
10
| Test.java:47:22:47:46 | doFinal(...) : byte[] | semmle.label | doFinal(...) : byte[] |
11
11
| Test.java:48:40:48:42 | tag | semmle.label | tag |
12
12
#select
13
- | Test.java:15:43:15:51 | actualMac | Test.java:14:28:14:44 | doFinal(...) : byte[] | Test.java:15:43:15:51 | actualMac | Using a non-constant-time method for checking a $@ . | Test.java:14:28:14:44 | doFinal(...) : byte[] | MAC |
14
- | Test.java:31:40:31:48 | signature | Test.java:30:28:30:40 | sign(...) : byte[] | Test.java:31:40:31:48 | signature | Using a non-constant-time method for checking a $@ . | Test.java:30:28:30:40 | sign(...) : byte[] | signature |
15
- | Test.java:48:40:48:42 | tag | Test.java:47:22:47:46 | doFinal(...) : byte[] | Test.java:48:40:48:42 | tag | Using a non-constant-time method for checking a $@ . | Test.java:47:22:47:46 | doFinal(...) : byte[] | ciphertext |
13
+ | Test.java:15:43:15:51 | actualMac | Test.java:14:28:14:44 | doFinal(...) : byte[] | Test.java:15:43:15:51 | actualMac | Possible timing attack against $@ validation . | Test.java:14:28:14:44 | doFinal(...) : byte[] | MAC |
14
+ | Test.java:31:40:31:48 | signature | Test.java:30:28:30:40 | sign(...) : byte[] | Test.java:31:40:31:48 | signature | Possible timing attack against $@ validation . | Test.java:30:28:30:40 | sign(...) : byte[] | signature |
15
+ | Test.java:48:40:48:42 | tag | Test.java:47:22:47:46 | doFinal(...) : byte[] | Test.java:48:40:48:42 | tag | Possible timing attack against $@ validation . | Test.java:47:22:47:46 | doFinal(...) : byte[] | ciphertext |
Original file line number Diff line number Diff line change 1
- experimental/Security/CWE/CWE-208/NonConstantTimeCheckOnSignature .ql
1
+ experimental/Security/CWE/CWE-208/PossibleTimingAttackAgainstSignature .ql
You can’t perform that action at this time.
0 commit comments