crypto: add IsOnCurve check (#31100)

This commit is contained in:
Felix Lange 2025-01-30 14:10:36 +01:00 committed by GitHub
parent 7d0e197def
commit fa9a2ff868
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
1 changed files with 3 additions and 0 deletions

View File

@ -178,6 +178,9 @@ func UnmarshalPubkey(pub []byte) (*ecdsa.PublicKey, error) {
if x == nil { if x == nil {
return nil, errInvalidPubkey return nil, errInvalidPubkey
} }
if !S256().IsOnCurve(x, y) {
return nil, errInvalidPubkey
}
return &ecdsa.PublicKey{Curve: S256(), X: x, Y: y}, nil return &ecdsa.PublicKey{Curve: S256(), X: x, Y: y}, nil
} }