hmac-secret should be different when UV=1

max_enumeration_issue
Conor Patrick 2020-03-28 12:14:35 -04:00
rodzic 8d93f88631
commit cbf40f4ec7
1 zmienionych plików z 1 dodań i 0 usunięć

Wyświetl plik

@ -461,6 +461,7 @@ static int ctap_make_extensions(CTAP_extensions * ext, uint8_t * ext_encoder_buf
// Generate credRandom
crypto_sha256_hmac_init(CRYPTO_TRANSPORT_KEY2, 0, credRandom);
crypto_sha256_update((uint8_t*)&ext->hmac_secret.credential->id, sizeof(CredentialId));
crypto_sha256_update(&getAssertionState.user_verified, 1);
crypto_sha256_hmac_final(CRYPTO_TRANSPORT_KEY2, 0, credRandom);
// Decrypt saltEnc