diff --git a/STATUS b/STATUS index ee2850889..b0cb3a55a 100644 --- a/STATUS +++ b/STATUS @@ -1,6 +1,6 @@ OpenSSL STATUS Last modified at - ______________ $Date: 2002/08/09 11:37:13 $ + ______________ $Date: 2002/11/21 22:39:16 $ DEVELOPMENT STATE @@ -23,6 +23,18 @@ RELEASE SHOWSTOPPERS + o [2002-11-21] + PR 343 mentions that scrubbing memory with 'memset(ptr, 0, n)' may + be optimized away in modern compilers. This is definitely not good + and needs to be fixed immediately. The formula to use is presented + in: + + http://online.securityfocus.com/archive/82/297918/2002-10-27/2002-11-02/0 + + The problem report that mentions this is: + + https://www.aet.TU-Cottbus.DE/rt2/Ticket/Display.html?id=343 + AVAILABLE PATCHES o