Re: cvs: php4 /ext/mcrypt mcrypt.c
| From: | Colin Viebrock | Date: | Tue, 10 Apr 2001 15:53:12 +0000 |
| Subject: | Re: cvs: php4 /ext/mcrypt mcrypt.c | ||
| References: | 1 | Groups: | php.cvs |
| Request: | Send a blank email to php-cvs+get-5069@lists.php.net to get a copy of this message | ||
> Hello Guys,
>
> do you think this should be merged to the 4.0.5 branch? Otherwise Blowfish
> (and others) encrypted get initialised with a too long key. That caused
> them to be not compatible with encryptions/decryptions made by other
> programs.
As the poster of the original bug report, I strongly suggest this be merged
into 4.0.5. As it stands, PHP's blowfish encryption isn't compatible with
any other blowfish-encrypted programs, and should be fixed sooner rather
than later.
Of course, it will require a big note in the NEWS file ... :)
- Colin
P.S. Thank you Derick for figuring this out! :)