[PATCH 0/2] Changes to rsa_decrypt behavior on bad keys

David Galos davegalos at google.com
Fri Jul 24 19:14:36 CEST 2026


Thank you for your response on this. I apologise for my somewhat
delayed message. It was also to the wrong mailing list and I wanted to
avoid double-posting. I can see that what I "figured out" was actually
realized weeks ago by another user of the ProtonMail crypto library,
and it's very heartening to see that changes have been made in the
right direction.

I believe their changes to that go library are incomplete, because I
think the library will still p-q flip when it's reading a key. That
said, gcrypt-wise I don't think theres anything I need to push for.



More information about the Gcrypt-devel mailing list