changelog: Catch up #1309

pull real-or-random wants to merge 2 commits into bitcoin-core:master from real-or-random:202305-changelog changing 1 files +10 −0
  1. real-or-random commented at 2:08 PM on May 12, 2023: contributor

    No description provided.

  2. real-or-random force-pushed on May 12, 2023
  3. sipa commented at 2:22 PM on May 12, 2023: contributor

    ACK 2bbbcce5566162a40887c386bf8803ba7a1959cc

  4. in CHANGELOG.md:11 in 2bbbcce556 outdated
       6 | @@ -7,9 +7,22 @@ and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0
       7 |  
       8 |  ## [Unreleased]
       9 |  
      10 | +#### Security
      11 | + - Module `ecdh`: Fix "constant-timeness" issue with GCC >=13 that could leave applications using libsecp256k1's ECDH module vulnerable to a timing side-channel attack. The fix avoids secret-dependent control flow during ECDH computations when libsecp256k1 is compiled with GCC >=13.
    


    jonasnick commented at 2:27 PM on May 12, 2023:

    Should we mention the specific compiler version where this happens instead of claiming it happens with all versions >=13 (we did the same for clang but meh).

  5. changelog: Add entry for #1303 76b43f3443
  6. real-or-random force-pushed on May 12, 2023
  7. changelog: Catch up 697e1ccf4a
  8. real-or-random force-pushed on May 12, 2023
  9. jonasnick commented at 3:10 PM on May 12, 2023: contributor

    ACK 697e1ccf4af7672d45d5ce61cd7d07764a1c8b90

  10. sipa commented at 3:24 PM on May 12, 2023: contributor

    ACK 697e1ccf4af7672d45d5ce61cd7d07764a1c8b90

  11. real-or-random merged this on May 12, 2023
  12. real-or-random closed this on May 12, 2023

  13. hebasto commented at 9:26 PM on May 12, 2023: member

    Post-merge ACK 697e1ccf4af7672d45d5ce61cd7d07764a1c8b90.

  14. hebasto referenced this in commit 49c52ea2b1 on May 13, 2023
  15. vmta referenced this in commit e1120c94a1 on Jun 4, 2023
  16. sipa referenced this in commit 901336eee7 on Jun 21, 2023
  17. vmta referenced this in commit 8f03457eed on Jul 1, 2023

github-metadata-mirror

This is a metadata mirror of the GitHub repository bitcoin-core/secp256k1. This site is not affiliated with GitHub. Content is generated from a GitHub metadata backup.
generated: 2026-05-01 14:15 UTC

This site is hosted by @0xB10C
More mirrored repositories can be found on mirror.b10c.me