Commit 84d14408 authored by Bodo Möller's avatar Bodo Möller
Browse files

Use RAND_pseudo_bytes, not RAND_bytes, for IVs/salts.

parent 7c472f70
Loading
Loading
Loading
Loading
+4 −0
Original line number Original line Diff line number Diff line
@@ -4,6 +4,10 @@


 Changes between 0.9.5 and 0.9.6  [XX XXX 2000]
 Changes between 0.9.5 and 0.9.6  [XX XXX 2000]


  *) In PEM_ASN1_write_bio and some other functions, use RAND_pseudo_bytes
     instead of RAND_bytes for encryption IVs and salts.
     [Bodo Moeller]

  *) Include RAND_status() into RAND_METHOD instead of implementing
  *) Include RAND_status() into RAND_METHOD instead of implementing
     it only for md_rand.c  Otherwise replacing the PRNG by calling
     it only for md_rand.c  Otherwise replacing the PRNG by calling
     RAND_set_rand_method would be impossible.
     RAND_set_rand_method would be impossible.