[MacPorts] #68766: openssl3 @3.2.0_0+universal may have broken PRNG on Mavericks and older

MacPorts noreply at macports.org
Mon Nov 27 06:50:27 UTC 2023


#68766: openssl3 @3.2.0_0+universal may have broken PRNG on Mavericks and older
------------------------+------------------------
  Reporter:  fhgwright  |      Owner:  neverpanic
      Type:  defect     |     Status:  assigned
  Priority:  Normal     |  Milestone:
 Component:  ports      |    Version:
Resolution:             |   Keywords:
      Port:  openssl3   |
------------------------+------------------------

Comment (by kencu):

 Yeah, all you need to do is build openssl3 with clang-11 and it's fine
 (for me).

 This is on 10.7 now:
 {{{
 $ uname -a
 Darwin Kens-107-VM-Parallels.local 11.4.2 Darwin Kernel Version 11.4.2:
 Thu Aug 23 16:25:48 PDT 2012; root:xnu-1699.32.7~1/RELEASE_X86_64 x86_64

 $ openssl-3 list -providers
 Providers:
   default
     name: OpenSSL Default Provider
     version: 3.2.0
     status: active

 $ openssl-3 list -random-generators
 Provided RNGs and seed sources:
   CTR-DRBG @ default
   HASH-DRBG @ default
   HMAC-DRBG @ default
   SEED-SRC @ default
   TEST-RAND @ default

 }}}

 Don't forget not to be tricked when you rebuild from source. You need to
 see it rebuild, and not just install or reinstall some previously-built
 version.
 {{{
 sudo port uninstall openss3
 sudo port -v -s install openssl3 configure.compiler=macports-clang-11
 }}}

-- 
Ticket URL: <https://trac.macports.org/ticket/68766#comment:36>
MacPorts <https://www.macports.org/>
Ports system for macOS


More information about the macports-tickets mailing list