[Pkg-openssl-devel] Bug#1020695: Bug#1020695: failure to compute digest: md4 and rmd160

Richard B. Kreckel kreckel at in.terlu.de
Tue Nov 29 22:01:05 GMT 2022


IMO, this bug can be closed. There's been the decision by the OpenSSL 
Managment Board to reinstate RIPEMD160 (and only that) to the default 
providers in release 3.0.7.

The other algorithm, MD4 is unsafe and remains in the legacy provider.

References:
OMC decision: 
<https://www.openssl.org/blog/blog/2022/10/18/rmd160-and-the-legacy-provider/>
ChangeLog: <https://www.openssl.org/news/cl30.txt>

   -richy.



More information about the Pkg-openssl-devel mailing list