summaryrefslogtreecommitdiff
path: root/bcprov/src
diff options
context:
space:
mode:
authorSergio Giro <sgiro@google.com>2016-02-23 12:15:15 +0000
committerSergio Giro <sgiro@google.com>2016-02-23 12:15:15 +0000
commit4d0e19131da68053fe1a73d43052bedadb107c70 (patch)
tree51dab55432b0287b8772baac6c53487921f37766 /bcprov/src
parentc0d8909a6c6a4ac075a9dee7ac1fe6baff34acc0 (diff)
downloadbouncycastle-4d0e19131da68053fe1a73d43052bedadb107c70.tar.gz
GCMParameters: fix insecure tag size
Note: port of cr/110497945 Bug: 26231099 Bug: 26234568 Change-Id: I3eef233b15ded9553c3cdfd1c51ffef306276f7d
Diffstat (limited to 'bcprov/src')
-rw-r--r--bcprov/src/main/java/org/bouncycastle/asn1/cms/GCMParameters.java15
1 files changed, 12 insertions, 3 deletions
diff --git a/bcprov/src/main/java/org/bouncycastle/asn1/cms/GCMParameters.java b/bcprov/src/main/java/org/bouncycastle/asn1/cms/GCMParameters.java
index 0f03c879..7fcaa01b 100644
--- a/bcprov/src/main/java/org/bouncycastle/asn1/cms/GCMParameters.java
+++ b/bcprov/src/main/java/org/bouncycastle/asn1/cms/GCMParameters.java
@@ -16,7 +16,10 @@ import org.bouncycastle.util.Arrays;
* <pre>
GCMParameters ::= SEQUENCE {
aes-nonce OCTET STRING, -- recommended size is 12 octets
- aes-ICVlen AES-GCM-ICVlen DEFAULT 12 }
+ // BEGIN android-changed
+ // Was: aes-ICVlen AES-GCM-ICVlen DEFAULT 12 }
+ aes-ICVlen AES-GCM-ICVlen DEFAULT 16 }
+ // END android-changed
* </pre>
*/
public class GCMParameters
@@ -64,7 +67,10 @@ public class GCMParameters
}
else
{
- this.icvLen = 12;
+ // BEGIN android-changed
+ // Was: this.icvLen = 12;
+ this.icvLen = 16;
+ // END android-changed
}
}
@@ -92,7 +98,10 @@ public class GCMParameters
v.add(new DEROctetString(nonce));
- if (icvLen != 12)
+ // BEGIN android-changed
+ // Was: if (icvLen != 12)
+ if (icvLen != 16)
+ // END android-changed
{
v.add(new ASN1Integer(icvLen));
}