wycheproof-ecdh-modified-group
ECDH: Modified group
The EC curve of the public key has been modified. EC curve primitives should always check that the keys are on the expected curve.
REJECT
Your service should reject this one.
Stated as the outcome to assert against, so a suite compares with this rather than hardcoding a result and getting it backwards.
The EC curve of the public key has been modified. EC curve primitives should always check that the keys are on the expected curve. Demonstrated by 43 test vectors across 18 vector documents in Project Wycheproof.
Provenance
- Kind
- normativeA specification clause requires this. Failing it is non-conformance, not opinion.
- Source
- wycheproof
- Clause
- SEC 1 §3.3
- CVE
- none
- Weakness
- none
Test keys only. Nothing here is a statement about any particular service: the expected outcome above is what an application ought to do, not evidence that yours does.