[EMAIL PROTECTED] - Tue Mar 18 19:22:49 2003]:

> Openssl bugs administrator,
>  
> I believe I found a bug in EVP_DecryptInit and EVP_EncryptInit. The
> documentation at: http://www.openssl.org/docs/crypto/EVP_EncryptInit.html
> says that those two functions and EVP_CipherInit do not need the
> EVP_CIPHER_CTX to be initialized, but that is not true. Only 
> EVP_CipherInit allows the EVP_CIPHER_CTX to be un-initialized. You can see
> the problem in openssl-0.9.7/crypto/evp/evp_enc.c, line 227 and 239. 

This was fixed in 0.9.7a.

Steve.
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to