f864d0
From e4f08157b6693b956fe9c7c987bc3eeac1abb2cc Mon Sep 17 00:00:00 2001
f864d0
From: Tim Shearer <timtimminz@gmail.com>
f864d0
Date: Tue, 2 Aug 2022 08:48:32 -0400
f864d0
Subject: [PATCH] Fix incorrect SHA384/512 digest calculation.
f864d0
f864d0
Resolves an issue where certain message sizes result in an incorrect
f864d0
checksum. Specifically, when:
f864d0
(n*8) mod 1024 == 896
f864d0
where n is the file size in bytes.
f864d0
---
f864d0
 lib/util/sha2.c | 2 +-
f864d0
 1 file changed, 1 insertion(+), 1 deletion(-)
f864d0
f864d0
diff --git a/lib/util/sha2.c b/lib/util/sha2.c
f864d0
index b7a28cca8..f769f77f2 100644
f864d0
--- a/lib/util/sha2.c
f864d0
+++ b/lib/util/sha2.c
f864d0
@@ -490,7 +490,7 @@ SHA512Pad(SHA2_CTX *ctx)
f864d0
 	SHA512Update(ctx, (uint8_t *)"\200", 1);
f864d0
 
f864d0
 	/* Pad message such that the resulting length modulo 1024 is 896. */
f864d0
-	while ((ctx->count[0] & 1008) != 896)
f864d0
+	while ((ctx->count[0] & 1016) != 896)
f864d0
 		SHA512Update(ctx, (uint8_t *)"\0", 1);
f864d0
 
f864d0
 	/* Append length of message in bits and do final SHA512Transform(). */