View previous topic :: View next topic |
Author |
Message |
Vancouverite Apprentice


Joined: 28 Sep 2002 Posts: 162 Location: Vancouver, Canada
|
|
Back to top |
|
 |
drakonite l33t


Joined: 02 Nov 2002 Posts: 768 Location: Lincoln, NE
|
Posted: Sat Feb 22, 2003 10:00 am Post subject: |
|
|
That article lacked any details, but I'm more than certain it's the same issue that was on slashdot yesterday.
I do not completly understand the vulerability but it seems that it was basically that an incorrect cypher block returned a different length response, and using this they were able to narrow things down and use various methods to grab the cypher block that was used.
There is already a fix for this (check the annoucements forum on these message boards) so the issue is "fixed." _________________ Shoot Pixels Not People
My GPG/PGP Public key |
|
Back to top |
|
 |
aardvark Guru


Joined: 30 Jun 2002 Posts: 576
|
|
Back to top |
|
 |
aardvark Guru


Joined: 30 Jun 2002 Posts: 576
|
|
Back to top |
|
 |
|