deprecating MD5 in signature verification for gnutls-{cli, serv}

Simon Josefsson simon at
Tue Jan 6 23:00:30 CET 2009

Tomas Mraz <tmraz at> writes:

> And the bug is that ret is not set to 0 in _gnutls_verify_certificate2()
> in case the unsecure algorithm in signature is detected. The same holds
> for crl signature verification in _gnutls_verify_crl2().

Thanks for debugging it.  I appreciate it.


More information about the Gnutls-devel mailing list