Merge pull request #672 from gilles-peskine-arm/ctr_drbg-aes_fail-2.16

Backport 2.16: Uncaught AES failure in CTR_DRBG