• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

sybrenstuvel / python-rsa / 306
92%

Build:
DEFAULT BRANCH: master
Ran 15 Nov 2020 02:23PM UTC
Jobs 4
Files 15
Run time 37s
Badge
Embed ▾
README BADGES
x

If you need to use a raster PNG badge, change the '.svg' to '.png' in the link

Markdown

Textile

RDoc

HTML

Rst

pending completion
306

push

travis-ci

sybrenstuvel
Fix #165: CVE-2020-25658 - Bleichenbacher-style timing oracle

Use as many constant-time comparisons as practical in the
`rsa.pkcs1.decrypt` function.

`cleartext.index(b'\x00', 2)` will still be non-constant-time. The
alternative would be to iterate over all the data byte by byte in
Python, which is several orders of magnitude slower. Given that a
perfect constant-time implementation is very hard or even impossible to
do in Python [1], I chose the more performant option here.

[1]: https://securitypitfalls.wordpress.com/2018/08/03/constant-time-compare-in-python/

7 of 7 new or added lines in 1 file covered. (100.0%)

735 of 803 relevant lines covered (91.53%)

2.75 hits per line

Jobs
ID Job ID Ran Files Coverage
1 306.1 15 Nov 2020 02:23PM UTC 0
91.34
Travis Job 306.1
2 306.2 15 Nov 2020 02:23PM UTC 0
91.34
Travis Job 306.2
3 306.3 15 Nov 2020 02:23PM UTC 0
91.53
Travis Job 306.3
4 306.4 15 Nov 2020 02:23PM UTC 0
0.0
Travis Job 306.4
Source Files on build 306
Detailed source file information is not available for this build.
  • Back to Repo
  • Travis Build #306
  • dae8ce0d on github
  • Prev Build on master (#305)
  • Next Build on master (#308)
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc