X =
00
01
02
03
04
05
06
07
08
09
10
11
12
13
14
15
Y =
00
01
02
03
04
05
06
07
08
09
10
11
12
13
14
15
X ↔ Y
Ext-GCD(0, 6) → Twos = 1 → Ext-GCD(0, 3) :
i
GCD
Bezout
AOdd :
AEven :
A
↔
B
ax
ay
bx
by
|A-B|
A↔B
Sx
Sy
ax ←
Sx' ay ←
Sy' A ←
A/2 ax ←
ax + Y ay ←
ay + X ax ←
ax/2 ay ←
ay/2
0
0
3
1
0
0
1
1
0
3
1
0
0
1
3
2
0
3
1
0
0
1
3
3
0
3
1
0
0
1
3
4
0
3
1
0
0
1
3
5
0
3
1
0
0
1
3
6
0
3
1
0
0
1
3
7
3
↔
0
0
1
1
0
3
GCD = 3; P, Q Prohibited (X = 0, so Q is negative)