|
|||||||||||
|
patches available for Klima-Pokorny-Rosa attack on RSA in OpenSSL
From: Todd C. Miller <Todd.Miller(at)courtesan.com>
Date: Wed Mar 19 2003 - 19:01:12 EST
Users who run services utilizing TLS and RSA encryption should update their OpenSSL to the version now in OpenBSD-current and the 3.1 and 3.2 -stable branches or use one of the patches below. Patch for OpenBSD 3.1: ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.1/common/025_kpr.patch Patch for OpenBSD 3.2: ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.2/common/012_kpr.patch The OpenSSL advisory (from which the patches are derived) is: http://www.openssl.org/news/secadv_20030319.txt The following paper describes the attack in detail: http://eprint.iacr.org/2003/052/ Received on Wed Mar 19 19:04:33 2003 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 13:46:07 EDT |
||||||||||
|
|||||||||||