It looks like the default validation is ecdsa_do_verify() in ecs_ossl.c
That code puts all BIGNUM's in a BN_CTX which it frees on exit.
So this has been resolved as far as I can tell.
--
Rich Salz, OpenSSL dev team; [email protected]

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [email protected]
Automated List Manager                           [email protected]

Reply via email to