7325c65
diff -up openssl-1.0.0/crypto/x509/x509_cmp.c.name-hash openssl-1.0.0/crypto/x509/x509_cmp.c
7325c65
--- openssl-1.0.0/crypto/x509/x509_cmp.c.name-hash	2010-01-12 18:27:10.000000000 +0100
7325c65
+++ openssl-1.0.0/crypto/x509/x509_cmp.c	2010-04-06 16:44:52.000000000 +0200
7325c65
@@ -236,10 +236,17 @@ unsigned long X509_NAME_hash_old(X509_NA
7325c65
 	{
7325c65
 	unsigned long ret=0;
7325c65
 	unsigned char md[16];
7325c65
+	EVP_MD_CTX ctx; 
7325c65
 
7325c65
 	/* Make sure X509_NAME structure contains valid cached encoding */
7325c65
 	i2d_X509_NAME(x,NULL);
7325c65
-	EVP_Digest(x->bytes->data, x->bytes->length, md, NULL, EVP_md5(), NULL);
7325c65
+
7325c65
+	EVP_MD_CTX_init(&ctx;;
7325c65
+	EVP_MD_CTX_set_flags(&ctx,EVP_MD_CTX_FLAG_ONESHOT | EVP_MD_CTX_FLAG_NON_FIPS_ALLOW);
7325c65
+        EVP_DigestInit_ex(&ctx, EVP_md5(), NULL)
7325c65
+		&& EVP_DigestUpdate(&ctx, x->bytes->data, x->bytes->length)
7325c65
+		&& EVP_DigestFinal_ex(&ctx, md, NULL);
7325c65
+	EVP_MD_CTX_cleanup(&ctx;;
7325c65
 
7325c65
 	ret=(	((unsigned long)md[0]     )|((unsigned long)md[1]<<8L)|
7325c65
 		((unsigned long)md[2]<<16L)|((unsigned long)md[3]<<24L)