RFC Errata
RFC 8391, "XMSS: eXtended Merkle Signature Scheme", May 2018
Source of RFC: IRTFSee Also: RFC 8391 w/ inline errata
Errata ID: 5573
Status: Verified
Type: Technical
Publication Format(s) : TEXT
Reported By: Franziskus Kiefer
Date Reported: 2018-12-10
Verifier Name: Colin Perkins
Date Verified: 2019-04-09
Section 4.1.6 says:
Output: n-byte root node - top node on Stack
It should say:
Output: n-byte root node - top node on Stack or -1
Notes:
The algorithm can fail and might return -1 instead of a root node