oss-sec mailing list archives

Re: CVE request: crypt_blowfish 8-bit character mishandling


From: Solar Designer <solar () openwall com>
Date: Sun, 17 Jul 2011 22:30:33 +0400

On Sun, Jul 17, 2011 at 05:48:21PM +0400, Solar Designer wrote:
I've just released crypt_blowfish 1.2:

http://www.openwall.com/crypt/

All projects using crypt_blowfish should upgrade to this newer code.

Patches for PHP 5.3 and 5.4:

http://news.php.net/php.internals/54000

Alexander


Current thread: