Hello,

On Fri, 23 Jan 2015 19:11:35 +0000
"Salz, Rich" <rs...@akamai.com> wrote:

> OPENSSL_NO_BUF_FREELISTS

As far as I remember the post-heartbleed discussions this disables an
openssl-own memory management which in the case of heartbleed
circumvented memory protection measures like address sanitizer.

What's the plan here? Replace openssl's own memory management by
default with "standard" memory management calls or is the plan to
disable the possibility to have standard memory management at all?
If the latter I'd vote against removing that flag.

cu,
-- 
Hanno Böck
http://hboeck.de/

mail/jabber: ha...@hboeck.de
GPG: BBB51E42

Attachment: pgp7loP3vOqCL.pgp
Description: OpenPGP digital signature

_______________________________________________
openssl-dev mailing list
To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

Reply via email to