[dundee] 'Severe' OpenSSL vuln busts public key crypto

gordon dunlop zubenel at fedoraproject.org
Thu Mar 4 23:36:35 UTC 2010


On 4 March 2010 22:21, Arron M Finnon <finux at finux.co.uk> wrote:

> Not too practical in the real world, but you never know it could lead to
> more things
>
> http://www.theregister.co.uk/2010/03/04/severe_openssl_vulnerability/
>
> Computer scientists say they've discovered a "severe vulnerability" in
> the world's most widely used software encryption package that allows
> them to retrieve a machine's secret cryptographic key.
>
> The paper can be got from here:

http://www.eecs.umich.edu/%7Evaleria/research/publications/DATE10RSA.pd<http://www.eecs.umich.edu/%7Evaleria/research/publications/DATE10RSA.pdf>

Gordon

>
> --
> Arron "finux" Finnon
>
> Finux.co.uk/blog - Twitter.com/f1nux - facebook.com/finux
>
> Podcasting for HPR and TRACsec, shows can be found at;
> http://hackerpublicradio.org/correspondents.php?hostid=85
> http://www.tracsec.com
>
>
>
>
>
> _______________________________________________
> dundee GNU/Linux Users Group mailing list
> dundee at lists.lug.org.uk  http://dundeelug.org.uk
> https://mailman.lug.org.uk/mailman/listinfo/dundee
> Chat on IRC, #tlug on irc.lug.org.uk
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.lug.org.uk/pipermail/dundee/attachments/20100304/18afa1d2/attachment.htm 


More information about the dundee mailing list