Lines Matching refs:carry0
813 int64_t carry0; in fe_frombytes() local
830 carry0 = h0 + (1 << 25); h1 += carry0 >> 26; h0 -= carry0 & kTop38Bits; in fe_frombytes()
1191 int64_t carry0; in fe_mul() local
1207 carry0 = h0 + (1 << 25); h1 += carry0 >> 26; h0 -= carry0 & kTop38Bits; in fe_mul()
1246 carry0 = h0 + (1 << 25); h1 += carry0 >> 26; h0 -= carry0 & kTop38Bits; in fe_mul()
1365 int64_t carry0; in fe_sq() local
1376 carry0 = h0 + (1 << 25); h1 += carry0 >> 26; h0 -= carry0 & kTop38Bits; in fe_sq()
1393 carry0 = h0 + (1 << 25); h1 += carry0 >> 26; h0 -= carry0 & kTop38Bits; in fe_sq()
1674 int64_t carry0; in fe_sq2() local
1696 carry0 = h0 + (1 << 25); h1 += carry0 >> 26; h0 -= carry0 & kTop38Bits; in fe_sq2()
1713 carry0 = h0 + (1 << 25); h1 += carry0 >> 26; h0 -= carry0 & kTop38Bits; in fe_sq2()
4337 int64_t carry0; in fe_mul121666() local
4354 carry0 = h0 + (1 << 25); h1 += carry0 >> 26; h0 -= carry0 & kTop38Bits; in fe_mul121666()
4646 int64_t carry0; in x25519_sc_reduce() local
4795 carry0 = (s0 + (1 << 20)) >> 21; in x25519_sc_reduce()
4796 s1 += carry0; in x25519_sc_reduce()
4797 s0 -= carry0 * (1 << 21); in x25519_sc_reduce()
4841 carry0 = s0 >> 21; in x25519_sc_reduce()
4842 s1 += carry0; in x25519_sc_reduce()
4843 s0 -= carry0 * (1 << 21); in x25519_sc_reduce()
4886 carry0 = s0 >> 21; in x25519_sc_reduce()
4887 s1 += carry0; in x25519_sc_reduce()
4888 s0 -= carry0 * (1 << 21); in x25519_sc_reduce()
5027 int64_t carry0; in sc_muladd() local
5076 carry0 = (s0 + (1 << 20)) >> 21; in sc_muladd()
5077 s1 += carry0; in sc_muladd()
5078 s0 -= carry0 * (1 << 21); in sc_muladd()
5278 carry0 = (s0 + (1 << 20)) >> 21; in sc_muladd()
5279 s1 += carry0; in sc_muladd()
5280 s0 -= carry0 * (1 << 21); in sc_muladd()
5324 carry0 = s0 >> 21; in sc_muladd()
5325 s1 += carry0; in sc_muladd()
5326 s0 -= carry0 * (1 << 21); in sc_muladd()
5369 carry0 = s0 >> 21; in sc_muladd()
5370 s1 += carry0; in sc_muladd()
5371 s0 -= carry0 * (1 << 21); in sc_muladd()