subshift 282 lib/crypto/aes.c st1[0] = mix_columns(subshift(st0, 0)) ^ rkp[0]; subshift 283 lib/crypto/aes.c st1[1] = mix_columns(subshift(st0, 1)) ^ rkp[1]; subshift 284 lib/crypto/aes.c st1[2] = mix_columns(subshift(st0, 2)) ^ rkp[2]; subshift 285 lib/crypto/aes.c st1[3] = mix_columns(subshift(st0, 3)) ^ rkp[3]; subshift 290 lib/crypto/aes.c st0[0] = mix_columns(subshift(st1, 0)) ^ rkp[4]; subshift 291 lib/crypto/aes.c st0[1] = mix_columns(subshift(st1, 1)) ^ rkp[5]; subshift 292 lib/crypto/aes.c st0[2] = mix_columns(subshift(st1, 2)) ^ rkp[6]; subshift 293 lib/crypto/aes.c st0[3] = mix_columns(subshift(st1, 3)) ^ rkp[7]; subshift 296 lib/crypto/aes.c put_unaligned_le32(subshift(st1, 0) ^ rkp[4], out); subshift 297 lib/crypto/aes.c put_unaligned_le32(subshift(st1, 1) ^ rkp[5], out + 4); subshift 298 lib/crypto/aes.c put_unaligned_le32(subshift(st1, 2) ^ rkp[6], out + 8); subshift 299 lib/crypto/aes.c put_unaligned_le32(subshift(st1, 3) ^ rkp[7], out + 12);