[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: [SECURITY] [DSA 1571-1] New openssl packages fix predictable random number generator



On Tue, 13 May 2008 14:06:39 +0200, Florian Weimer <fw@deneb.enyo.de>
wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> -
------------------------------------------------------------------------
> Debian Security Advisory DSA-1571-1                  security@debian.org
> http://www.debian.org/security/                           Florian Weimer
> May 13, 2008                          http://www.debian.org/security/faq
> -
------------------------------------------------------------------------
> 
> Package        : openssl
> Vulnerability  : predictable random number generator
> Problem type   : remote
> Debian-specific: yes
> CVE Id(s)      : CVE-2008-0166

How much a key is weakened when generated by vulnerable OpenSSL?


Reply to: