See the paper “Attacking embedded ECC implementations through cmov side channels” for a description of the problem. @sipa and I discussed this briefly in NYC, and we thought maybe this alternative construction might improve the situation. Peter Schwabe also independently mentioned the same construction, and that they hoped to get around to a second paper looking at suggested countermeasures.
Edit: Link to paper: