login
Header Space

 
 

Re: More details show that someone seriously fucked up in debian. [Was: Re: Debian libssl security (OpenSSH safe?)]

Score:
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
To: chefren <chefren@...>
Cc: openbsd-misc <misc@...>
Date: Wednesday, May 14, 2008 - 2:47 am

On Wed, May 14, 2008 at 12:48:41AM +0200, chefren wrote:


Of course it is wrong to /depend/ on uninitialized mem to stir a
random pool. Often "uninitialized" means lots of zeroes or predictable
stack contents.

But the actual Debian diff that was committed removes any stirring, it
seems. From a quick view, no actual data from the passed in argument
is being used to stir the pool anymore. Now that is the real problem.
Because even if you have collected nice date with high entropy to seed
the PRNG, it will be ignored.

The openssl-dev list did not spot that, and indeed, that is
disturbing. But Kurt never actually posted a diff there: so it's easy
for the two two sided to be talking about different things.

As for the arrogance: i'm pretty sure openssl proper contains more
bugs. When I wrote our dc(1) (which uses the bignum lib from openssl)
that occurred whan adding 0 to a bignum A, which resulted in A not
being equal to the result. I was quite suprised that bug was never
found before. Probably crypto code only covers parts of the bignum
functionality. The handing of that bug was adequate, though.

	-Otto
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Debian libssl security (OpenSSH safe?), Juan Miscaro, (Tue May 13, 11:37 am)
Re: Debian libssl security (OpenSSH safe?), Sean Malloy, (Tue May 13, 12:14 pm)
Re: Debian libssl security (OpenSSH safe?), Gabriel Linder, (Wed May 14, 3:41 am)
Re: Debian libssl security (OpenSSH safe?), Otto Moerbeek, (Wed May 14, 7:22 am)
Re: Debian libssl security (OpenSSH safe?), Ted Unangst, (Wed May 14, 7:24 am)
Re: Debian libssl security (OpenSSH safe?), raven, (Wed May 14, 7:45 pm)
Re: Debian libssl security (OpenSSH safe?), Darrin Chandler, (Wed May 14, 8:22 pm)
Re: Debian libssl security (OpenSSH safe?), Ben Calvert, (Wed May 14, 8:30 pm)
Re: Debian libssl security (OpenSSH safe?), Ted Unangst, (Wed May 14, 10:22 pm)
Re: Debian libssl security (OpenSSH safe?), Darrin Chandler, (Wed May 14, 10:43 pm)
Re: Debian libssl security (OpenSSH safe?), Otto Moerbeek, (Thu May 15, 1:11 am)
Re: Debian libssl security (OpenSSH safe?), Dave Ewart, (Thu May 15, 5:02 am)
Re: Debian libssl security (OpenSSH safe?), Tim Post, (Thu May 15, 5:44 am)
Re: Debian libssl security (OpenSSH safe?), Darrin Chandler, (Thu May 15, 9:31 am)
Re: Debian libssl security (OpenSSH safe?), Tim Post, (Fri May 16, 2:51 am)
Re: Debian libssl security (OpenSSH safe?), Ted Unangst, (Wed May 14, 11:10 pm)
Re: Debian libssl security (OpenSSH safe?), Jussi Peltola, (Wed May 14, 8:53 pm)
Re: Debian libssl security (OpenSSH safe?), Douglas A. Tutty, (Thu May 15, 9:52 am)
Re: Debian libssl security (OpenSSH safe?), Marc Espie, (Tue May 13, 1:00 pm)
Re: More details show that someone seriously fucked up in de..., Otto Moerbeek, (Wed May 14, 2:47 am)
speck-geostationary