From 9c61d52f1f975ec0eefe5b4a0b71ac529300cbe7 Mon Sep 17 00:00:00 2001 From: Azul Date: Fri, 12 Jul 2013 12:29:40 +0200 Subject: also zeroprefix the salt if needed Now what else can you possibly zeroprefix? This should be it - shouldn't it? --- src/srp_session.js | 1 + 1 file changed, 1 insertion(+) (limited to 'src') diff --git a/src/srp_session.js b/src/srp_session.js index 0b0e4c6..bdff9c4 100644 --- a/src/srp_session.js +++ b/src/srp_session.js @@ -53,6 +53,7 @@ srp.Session = function(account, calculate) { { //S -> C: s | B var B = calculate.zeroPrefix(ephemeral); + salt = calculate.zeroPrefix(salt); var x = calculate.X(account.login(), account.password(), salt); S = calculate.S(a, A, B, x); K = calculate.K(S); -- cgit v1.2.3