On Tue, 12 Jan 2021 21:38:32 GMT, Martin Balao <mba...@openjdk.org> wrote:
> > > > For cipher impls, there are more than just P11Cipher, there are also > > P11AEADCipher and P11RSACipher. It looks like they should be updated with > > this defensive cancellation change unless the non-compliant NSS impl is > > algorithm-specific and does not apply to AES/GCM and RSA. > > Sure, I was going to go through each of them. Only P11Cipher and P11Signature > so far but I'm working on this. Wonderful, thanks! ------------- PR: https://git.openjdk.java.net/jdk/pull/1901