Re: [PHP-DEV] What do you think CSPRNG in PHP

2022-07-27 Thread Go Kudo
2022年7月28日(木) 1:47 Tim Düsterhus : > Hi > > On 7/16/22 23:33, Tim Düsterhus wrote: > > Personally I likely wouldn't have merged the PR in question for the same > > reasons. But at least in that case glibc is at fault :-) > > For those following along: > > It turns out the glibc "userland" implemen

Re: [PHP-DEV] What do you think CSPRNG in PHP

2022-07-27 Thread Tim Düsterhus
Hi On 7/16/22 23:33, Tim Düsterhus wrote: Personally I likely wouldn't have merged the PR in question for the same reasons. But at least in that case glibc is at fault :-) For those following along: It turns out the glibc "userland" implementation of arc4random() was questionable and was sim