Luciano Bello discovered that the random number generator in Debian's openssl package is predictable. This is caused by an incorrect Debian-specific change to the openssl package (CVE-2008-0166). As a result, cryptographic key material may be guessable.
This is a Debian-specific vulnerability which does not affect other operating systems which are not based on Debian. However, other systems can be indirectly affected if weak keys are imported into them.
Subscription
Categories
- HowTos (612)
- Linux Devices (40)
- Linux Diggs (620)
- Linux News (1541)
- Linux Videos (24)
Recent Posts
Blog Archive
-
▼
2008
(2301)
-
▼
June
(29)
- Contact
- How to: Install Linux on your PlayStation 3
- How to: Install Linux on your Xbox
- How to: install Linux on your Nintendo DS
- Nvidia says no to free drivers, I say no to Nvidia
- KDE 4.1 Beta 2 Released!
- 5 Ways to Screencast Your Linux Desktop
- 10 IRC Client for Linux
- Sourceforge.net Blocked In Mainland China
- Wine 1.1.0 Released
- Red Hat Sales Rise; Big Clients Renew
- Firefox 3 Success and Celebration
- How To Love Linux On The Desktop
- Donnie Berkholz speaks with LinuxCrazy
- A Slacker Tries His Hand at Gentoo
- Debian releases weak OpenSSL
- Debian with XFCE
- Coders now can try mobile Ubuntu Linux
- First look: OpenSUSE 11 out, offers best KDE 4 exp...
- Novell: openSUSE for All Linux Users
- Welcome to the EeePCLinuxOS
- Nice PCLinuxOS Experience
- CentOS 5.2 Releases
- CentOS updates Red Hat Enterprise clone
- Fedora Project Boards Elected
- Red Hat takes on Windows with new desktop software
- Red Hat profit climbs almost 7 pct in 1Q 2009
- About
- Fedora 9: Rsyslog - Most Advanced Log Server
-
▼
June
(29)
Thursday, June 26, 2008
Debian releases weak OpenSSL
Posted by VeRTiTO at 8:16 AM
Labels: Linux News
Subscribe to:
Post Comments (Atom)
ILoveTux - howtos and news | About | Contact | TOS | Policy
0 comments:
Post a Comment