Lines Matching refs:s12

4634     int64_t s12 = kBottom21Bits & (load_4(s + 31) >> 4);  in x25519_sc_reduce()  local
4665 s12 += s23 * 470296; in x25519_sc_reduce()
4674 s12 += s22 * 654183; in x25519_sc_reduce()
4683 s12 -= s21 * 997805; in x25519_sc_reduce()
4692 s12 += s20 * 136657; in x25519_sc_reduce()
4701 s12 -= s19 * 683901; in x25519_sc_reduce()
4721 carry12 = (s12 + (1 << 20)) >> 21; in x25519_sc_reduce()
4723 s12 -= carry12 * (1 << 21); in x25519_sc_reduce()
4738 s12 += carry11; in x25519_sc_reduce()
4787 s0 += s12 * 666643; in x25519_sc_reduce()
4788 s1 += s12 * 470296; in x25519_sc_reduce()
4789 s2 += s12 * 654183; in x25519_sc_reduce()
4790 s3 -= s12 * 997805; in x25519_sc_reduce()
4791 s4 += s12 * 136657; in x25519_sc_reduce()
4792 s5 -= s12 * 683901; in x25519_sc_reduce()
4793 s12 = 0; in x25519_sc_reduce()
4830 s12 += carry11; in x25519_sc_reduce()
4833 s0 += s12 * 666643; in x25519_sc_reduce()
4834 s1 += s12 * 470296; in x25519_sc_reduce()
4835 s2 += s12 * 654183; in x25519_sc_reduce()
4836 s3 -= s12 * 997805; in x25519_sc_reduce()
4837 s4 += s12 * 136657; in x25519_sc_reduce()
4838 s5 -= s12 * 683901; in x25519_sc_reduce()
4839 s12 = 0; in x25519_sc_reduce()
4875 s12 += carry11; in x25519_sc_reduce()
4878 s0 += s12 * 666643; in x25519_sc_reduce()
4879 s1 += s12 * 470296; in x25519_sc_reduce()
4880 s2 += s12 * 654183; in x25519_sc_reduce()
4881 s3 -= s12 * 997805; in x25519_sc_reduce()
4882 s4 += s12 * 136657; in x25519_sc_reduce()
4883 s5 -= s12 * 683901; in x25519_sc_reduce()
4884 s12 = 0; in x25519_sc_reduce()
5015 int64_t s12; in sc_muladd() local
5063s12 = a1 * b11 + a2 * b10 + a3 * b9 + a4 * b8 + a5 * b7 + a6 * b6 + a7 *… in sc_muladd()
5094 carry12 = (s12 + (1 << 20)) >> 21; in sc_muladd()
5096 s12 -= carry12 * (1 << 21); in sc_muladd()
5129 s12 += carry11; in sc_muladd()
5148 s12 += s23 * 470296; in sc_muladd()
5157 s12 += s22 * 654183; in sc_muladd()
5166 s12 -= s21 * 997805; in sc_muladd()
5175 s12 += s20 * 136657; in sc_muladd()
5184 s12 -= s19 * 683901; in sc_muladd()
5204 carry12 = (s12 + (1 << 20)) >> 21; in sc_muladd()
5206 s12 -= carry12 * (1 << 21); in sc_muladd()
5221 s12 += carry11; in sc_muladd()
5270 s0 += s12 * 666643; in sc_muladd()
5271 s1 += s12 * 470296; in sc_muladd()
5272 s2 += s12 * 654183; in sc_muladd()
5273 s3 -= s12 * 997805; in sc_muladd()
5274 s4 += s12 * 136657; in sc_muladd()
5275 s5 -= s12 * 683901; in sc_muladd()
5276 s12 = 0; in sc_muladd()
5313 s12 += carry11; in sc_muladd()
5316 s0 += s12 * 666643; in sc_muladd()
5317 s1 += s12 * 470296; in sc_muladd()
5318 s2 += s12 * 654183; in sc_muladd()
5319 s3 -= s12 * 997805; in sc_muladd()
5320 s4 += s12 * 136657; in sc_muladd()
5321 s5 -= s12 * 683901; in sc_muladd()
5322 s12 = 0; in sc_muladd()
5358 s12 += carry11; in sc_muladd()
5361 s0 += s12 * 666643; in sc_muladd()
5362 s1 += s12 * 470296; in sc_muladd()
5363 s2 += s12 * 654183; in sc_muladd()
5364 s3 -= s12 * 997805; in sc_muladd()
5365 s4 += s12 * 136657; in sc_muladd()
5366 s5 -= s12 * 683901; in sc_muladd()
5367 s12 = 0; in sc_muladd()