Nick Coghlan <> added the comment:

A comment above the length check referring back to this issue and the 
deliberate decision to allow a timing attack to determine the length of the 
expected digest would be handy.

I was just looking at hmac.secure_compare and my thought when reading the 
source and the docstring was "No, it's not time-independent, you can still use 
a timing attack to figure out the expected digest length".

nosy: +ncoghlan

Python tracker <>
Python-bugs-list mailing list

Reply via email to