Rather embarrassing. Thanks to GCC 6 for pointing out that
`shake256_gcops' was unused.
static gcipher *shake256_gcinit(const void *k, size_t sz)
{
shake_gcctx *cc = S_CREATE(shake_gcctx);
static gcipher *shake256_gcinit(const void *k, size_t sz)
{
shake_gcctx *cc = S_CREATE(shake_gcctx);
- cc->gc.ops = &shake128_gcops;
+ cc->gc.ops = &shake256_gcops;
shake256_init(&cc->c); shake_hash(&cc->c, k, sz); shake_xof(&cc->c);
return (&cc->gc);
}
shake256_init(&cc->c); shake_hash(&cc->c, k, sz); shake_xof(&cc->c);
return (&cc->gc);
}