Andrey Chernov <[email protected]> writes: > Theo kindly explained that zeroing whole page instead of single variable > suits to his newest arc4random better, since clears two structs at once > (including ChaCha state), making some form of backward secrecy.
Yes, avoiding leaking key material to child processes would be useful for more than just arc4random. DES -- Dag-Erling Smørgrav - [email protected] _______________________________________________ [email protected] mailing list https://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "[email protected]"
