Add missing ForceZero call for ML-DSA

This commit is contained in:
Tobias Frauenschläger
2026-06-15 11:17:34 +02:00
parent e43281b2dc
commit d4eedf8af8
+4
View File
@@ -4128,6 +4128,10 @@ static int mldsa_expand_s_c(wc_Shake* shake256, byte* priv_seed, byte eta,
s2 += MLDSA_N;
}
/* seed holds a copy of the secret private seed (rho_prime) from which the
* s1/s2 vectors are derived; zeroize it before return. */
ForceZero(seed, sizeof(seed));
return ret;
}