Comment 27 for bug 1191582

Revision history for this message
Laurynas Biveinis (laurynas-biveinis) wrote :

Sergei -

If this is an OpenSSL bug, what are its implications? I.e. the worst case could be that OpenSSL PRNG has some bug which causes resulting pseudorandom numbers to have less entropy than intended and generate crackable keys. Should we forbid or advice against linking with some OpenSSL versions? Or is it benign?