On Thu, 2010-06-24 at 15:22 +0200, Dr. Stephen Henson wrote:
> On Tue, Jun 22, 2010, Brian Makin wrote:

<snip>

>  
> 
> Can you check to see if PKCS12_PBE_add() is called multiple times using the
> debugger? It is only supposed to be called once before threads are started but
> a bug means if it is called more than once you get multiple table entries per
> PBE algorithm (instead of no-op or replacing) and the subsequent sort
> operations can result in a race condition. I'll look into fixing that.
> 
> OpenSSL 1.0.0 doesn't have this problem because the builtin PBE algorithms are
> in a static table.

It appears the PKCS12_PBE_add is called many times in my test program.

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           majord...@openssl.org

Reply via email to