diff --git a/is-my-code-constant-time?.md b/is-my-code-constant-time?.md index cac971f..678cc85 100644 --- a/is-my-code-constant-time?.md +++ b/is-my-code-constant-time?.md @@ -9,6 +9,7 @@ Non-constant time crypto code is dangerous. 1. [crypto/elliptic: automatically upgrade CurveParams for known curves and deprecate custom ones](https://github.com/golang/go/issues/34648) 1. [PLANNING GO 1.20 CRYPTOGRAPHY WORK](https://words.filippo.io/dispatches/go1-20/) 1. [crypto/internal/bigmod: add amd64 assembly core](https://github.com/golang/go/commit/335e7647f53293eb320c1f069eaf0ff641810d6d) +1. [CVE-2023-45287 Detail](https://nvd.nist.gov/vuln/detail/CVE-2023-45287) ## ECDH & SM2 Key Exchange SM2 Key Exchange要去除big.Int依赖,看起来比ECDH困难得多,主要是第三、四和五步。