PodParley PodParley

Predictable RNG in the vulnerable Debian OpenSSL package (25c3)

the What and the How

An episode of the Chaos Computer Club - 25C3: nothing to hide (ogg) podcast, hosted by Luciano Bello, Maximiliano Bertacchini, titled "Predictable RNG in the vulnerable Debian OpenSSL package (25c3)" was published on December 30, 2008 and runs 50 minutes.

December 30, 2008 ·50m · Chaos Computer Club - 25C3: nothing to hide (ogg)

0:00 / 0:00

Recently, the Debian project announced an OpenSSL package vulnerability which they had been distributing for the last two years. This bug makes the PRNG predictable, affecting the keys generated by openssl and every other system that uses libssl (eg. openssh, openvpn). about this event: http://events.ccc.de/congress/2008/Fahrplan/events/2995.en.html

Recently, the Debian project announced an OpenSSL package vulnerability which they had been distributing for the last two years. This bug makes the PRNG predictable, affecting the keys generated by openssl and every other system that uses libssl (eg. openssh, openvpn). about this event: http://events.ccc.de/congress/2008/Fahrplan/events/2995.en.html
URL copied to clipboard!