MD5 man page

Ivan Voras ivoras at freebsd.org
Thu Aug 14 02:49:00 UTC 2008


Hi,

In MD5Init(3) there's a paragraph that says:

"""MD5 has not yet (1999-02-11) been broken, but sufficient attacks
     have been made that its security is in some doubt.  The attacks on both
     MD4 and MD5 are both in the nature of finding ``collisions'' - that is,
     multiple inputs which hash to the same value; it is still unlikely for an
     attacker to be able to determine the exact original input given a hash
     value.
"""

Shouldn't it be updated or at least the date of the statement moved to
somewhere in this century?


More information about the freebsd-security mailing list