dan,
@dan@upvote.au avatar

OpenSSL did add to the entropy pool a bunch uninitialized memory and the PID.

Did they have a comment above the code explaining why it was doing it that way? If not, I’d blame OpenSSL for it.

The OpenSSL codebase has a bunch of issues, which is why somewhat-API-compatible forks like LibreSSL and BoringSSL exist.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • linux@lemmy.ml
  • DreamBathrooms
  • everett
  • InstantRegret
  • ngwrru68w68
  • Youngstown
  • slotface
  • khanakhh
  • love
  • kavyap
  • tacticalgear
  • ethstaker
  • cisconetworking
  • thenastyranch
  • magazineikmin
  • provamag3
  • osvaldo12
  • Durango
  • rosin
  • cubers
  • GTA5RPClips
  • normalnudes
  • mdbf
  • tester
  • Leos
  • modclub
  • anitta
  • megavids
  • JUstTest
  • All magazines