Use condition for not sensitive data
Signed-off-by: Gabor Mezei <gabor.mezei@arm.com>
diff --git a/library/constant_time.c b/library/constant_time.c
index ea21692..85e0e76 100644
--- a/library/constant_time.c
+++ b/library/constant_time.c
@@ -589,9 +589,8 @@
size_t plaintext_size = 0;
unsigned output_too_large;
- plaintext_max_size = mbedtls_cf_size_if( output_max_len > ilen - 11,
- ilen - 11,
- output_max_len );
+ plaintext_max_size = ( output_max_len > ilen - 11 ) ? ilen - 11
+ : output_max_len;
/* Check and get padding length in constant time and constant
* memory trace. The first byte must be 0. */