From <@castle.riga.lv,@fgate.uucp,@fgate.castle.riga.lv,@fgate.uucp:harry@fgate.castle.riga.lv>  Fri Jul 12 04:25:38 1996
Received: from wolf.riga.lv (wolf.riga.lv [194.8.12.90]) by suburbia.net (8.7.4/Proff-950810) with SMTP id EAA12966 for <best-of-security@suburbia.net>; Fri, 12 Jul 1996 04:25:12 +1000
Received: from castle.riga.lv by wolf.riga.lv with SMTP id AA28823
  (5.65.kiae-1  for <best-of-security@suburbia.net>); Thu, 11 Jul 1996 21:14:03 +0300
Received: from fgate.UUCP by castle.riga.lv with UUCP id AA08627
  (5.65.kiae-1  for best-of-security@suburbia.net); Thu, 11 Jul 1996 19:20:04 +0300
Received: by fgate.castle.riga.lv (UUPC/@ v6.14b, 06Mar95);
          id AA17675 Thu, 11 Jul 1996 21:16:54 +0200
Received:  by fgate.castle.riga.lv (FIDO2UU 1.92e [DOS]);
           Thu, 11 Jul 1996 21:16:54 +0200
Return-Receipt-To: harry@fgate.castle.riga.lv
To: best-of-security@suburbia.net
From: Harry Bush <harry@fgate.castle.riga.lv>
Message-Id: <31E5A786@fgate.castle.riga.lv>
Subject: BoS: implementation error in blowfish.
Date: Thu, 11 Jul 1996 21:16:54 +0200
Lines: 36
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit


Hello!

Some time ago here in BoS was information about possible error in
Blowfish encrypting.  I contacted author of 32-bit OS/2 implementation
of Blowfish,  Matthew Spencer <jolthead@VNET.IBM.COM>.  His answer
follows.  AFAIK current OS/2 version is  bfish151.zip, length 101441.

Wednesday July 10 1996 from jolthead@VNET.IBM.COM to Harry Bush:

 j> Harry,

 j> Hello again.  Thanks for the information.  Actually, I already saw it
 j> (I follow sci.crypt), and checked my own code to make sure it did not
 j> have the problem.  It seems the problem only applies to the original
 j> Blowfish source published in the April '94 DDJ.  My very first version
 j> of blowfish used this source, but I updated it when the revised code
 j> came out in September '94.   All the versions which I have publically
 j> released are fine.

 j> Thanks for thinking of me.  Keep in touch.
 j> ___________________________________________________________________________
 j> _ Matthew Spencer     VNET:JOLTHEAD at IPNET
 j> Internet:jolthead@vnet.ibm.com


Best wishes,                                   Harry
                              Thursday July 11 1996 20:17

* Crossposted in HARRY_NETMAIL
* Crossposted in RU.CRYPT

--- GoldEd/2 3.00.Alpha1+
 * Origin: Harry Bush, Harry@castle.riga.lv (2:51/2)


