add -trusted_first option and verify flag (backport from HEAD)
[oweals/openssl.git] / crypto / cmac / cmac.c
index 7ae776e3fcfc93cdabd6e51cf8432b876b761cdc..8b72b096813c61c032f76270b45670f1a134b69e 100644 (file)
@@ -179,7 +179,7 @@ int CMAC_Init(CMAC_CTX *ctx, const void *key, size_t keylen,
                        return 0;
                if (!EVP_EncryptInit_ex(&ctx->cctx, NULL, NULL, NULL, zero_iv))
                        return 0;
-               memset(ctx->tbl, 0, bl);
+               memset(ctx->tbl, 0, EVP_CIPHER_CTX_block_size(&ctx->cctx));
                ctx->nlast_block = 0;
                return 1;
                }