with bits set to 1023, buf of 256 bytes was filled by rng_get_bytes up to 257 bytes. Buf is now 258 bytes so it's no longer problem. Signed-off-by: Jan Friesse <jfriesse@redhat.com> Reviewed-by: Steven Dake <sdake@redhat.com>
@@ -1314,7 +1314,7 @@ unsigned long rng_get_bytes(unsigned char *buf, unsigned long len,
int rng_make_prng(int bits, int wprng, prng_state *prng,
void (*callback)(void))
{
- unsigned char buf[256];
+ unsigned char buf[258];
int err;
if (bits < 64 || bits > 1024) {