Bug#448775: Uses too much entropy (Debian Bug #343085)

Marcus Brinkmann marcus.brinkmann at ruhr-uni-bochum.de
Wed Jan 9 12:22:32 CET 2008


At Tue, 08 Jan 2008 10:20:46 +0100,
'Werner Koch' wrote:
> 
> On Fri,  4 Jan 2008 16:33, linux at paip.net said:
> 
> > plugin for pidgin: if another plugin (say, Jabber) uses gnutls, which
> > initializes libgcrypt, and OTR also initializes libgcrypt (perhaps with
> > custom allocation functions), you can easily cause a crash.
> 
> At least we have a way to test whether libgcrypt is intialized (modulo
> threading issues).

I think I also implemented it so that thread initialization can happen
multiple times, without conflicts, if the same thread package is used
everytime (otherwise you get an error).  It's a long time ago, though,
I may misremember something or it may have changed.

But there are other initialization issues which may not be so
forgiving (random pool, etc).  I don't know.

Thanks,
Marcus






More information about the Gnutls-devel mailing list