[Klug-general] SSL bug

J D Freeman klug at quixotic.org.uk
Thu May 22 13:26:04 BST 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Thu, May 22, 2008 at 08:10:23AM -0400, Karl Lattimer wrote:
> Not bitching and moaning I'm laughing at you loud and publicly, debian has
> destroyed its reputation by retarded changes.

Laugh away, you are well within your right to excersise freedom of
expression.

> First thing you learn about cryptography in any decent computer science
> class;
> 
>  "Do not modify other peoples cryptographic routines. If they are known or
> believed to be bug free, let them stay that way"
> 
> So... was the guy who caused the problem out of class that day?

I don't know, is the honest answer. I am not entirely briefed on every
individual faset of this bug. However I am sure certain that person wont
make that mistake again. Its the whole learning from ones mistakes
thing...

> p.s. I'm especially laughing now because you continue to put your PGP sigs
> on messages, they aren't worth shit anymore, and every signature sent in
> the past is even worse, every encrypted message you've ever sent are belong
> to us!

You are merely demonstrating you total lack of understanding of the
actual problem here. GPG based keys. Are *NOT* affected by this bug.
As gnupg does not use libssl in anyway. Kindly if you are going to
laugh, laugh when you are right, not when you are embarrassingly wrong.

Julia
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)

iD8DBQFINWZb42M0lILkmGIRAu16AKDr+9PL/EHjTxsN954EWZ8QbuPN9ACfXXNE
agXwND475bdXEAnmlE2HpQo=
=fN4i
-----END PGP SIGNATURE-----



More information about the Kent mailing list