[Verifpal] signverif on wrong key

Nadim Kobeissi nadim at symbolic.software
Sat Dec 12 20:52:19 CET 2020


Dear Mike,

Thanks again for your awesome bug-finding. This is definitely a bug (lack of precision in the base for the exponentiation accepted by SIGNVERIF) and has been fixed here:

https://source.symbolic.software/verifpal/verifpal/-/commit/c70010ff9ea8fe7fc851ffccafd2347c4562e7d2

Your repeat contributions have also inspired something else, which I will document shortly in a different thread on this mailing list.

Nadim Kobeissi
Symbolic Software • https://symbolic.software

> On Dec 12, 2020, at 6:52 PM, Mike via Verifpal <verifpal at lists.symbolic.software> wrote:
> 
> hi all,
> 
> I accidentally found SIGNVERIF can pass verification on wrong key.
> Please comment how it works if this is not a bug.
> 
> Thanks in advance,
> (mike)
> <sign.vp>
> _______________________________________________
> Verifpal mailing list
> Verifpal at lists.symbolic.software
> https://lists.symbolic.software/mailman/listinfo/verifpal



More information about the Verifpal mailing list