Add constant-time secp256k1_point_multiply
for ECDH
Designed with clear separation of the wNAF conversion, precomputation and exponentiation (since the precomp at least we will probably want to separate in the API for users who reuse points a lot).
Future work:
- actually separate precomp in the API
- do multiexp rather than single exponentiation