matthew green wrote: > "Alexander Nasonov" writes: > > XXX Using memset for wiping isn't a good idea because memset is likely > > optimised away by gcc. This should be revisited. > > use explicit_memset(3)?
Yes, we should change memsets of sensitive buffers to explicit_memset but we also should inspect code for any missing memsets. -- Alex