Ci-dessous, les différences entre deux révisions de la page.
Les deux révisions précédentes Révision précédente Prochaine révision | Révision précédente | ||
doc:debian:openssl [2008/05/17 12:04] lehobey |
doc:debian:openssl [2008/10/13 23:23] (Version actuelle) lehobey |
||
---|---|---|---|
Ligne 6: | Ligne 6: | ||
* RFH : http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=332498 | * RFH : http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=332498 | ||
* http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=363516 | * http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=363516 | ||
+ | |||
+ | * http://rt.openssl.org/NoAuth/Buglist.html | ||
==== Analyse : ==== | ==== Analyse : ==== | ||
* http://lwn.net/Articles/281901/ | * http://lwn.net/Articles/281901/ | ||
+ | * http://lwn.net/Articles/282038/ | ||
+ | * http://lwn.net/Articles/282230/ | ||
* http://www.dslreports.com/forum/r20474302-Heads-Up-Debian-OpenSSL-RNG-Vuln-CVE20080166 | * http://www.dslreports.com/forum/r20474302-Heads-Up-Debian-OpenSSL-RNG-Vuln-CVE20080166 | ||
* http://blog.sesse.net/blog/tech/2008-05-14-17-21_some_maths.html | * http://blog.sesse.net/blog/tech/2008-05-14-17-21_some_maths.html | ||
Ligne 14: | Ligne 18: | ||
* http://blog.drinsama.de/erich/en/linux/2008051401-consequences-of-sslssh-weakness.html | * http://blog.drinsama.de/erich/en/linux/2008051401-consequences-of-sslssh-weakness.html | ||
* http://metasploit.com/users/hdm/tools/debian-openssl/ | * http://metasploit.com/users/hdm/tools/debian-openssl/ | ||
+ | |||
==== Réflexion ==== | ==== Réflexion ==== | ||
* http://blog.zakame.net/news/wheres-the-open | * http://blog.zakame.net/news/wheres-the-open | ||
Ligne 31: | Ligne 36: | ||
* http://blog.zakame.net/news/openssl-remote-dsa-1571 | * http://blog.zakame.net/news/openssl-remote-dsa-1571 | ||
* http://lucumr.pocoo.org/cogitations/2008/05/13/command-of-the-day/ | * http://lucumr.pocoo.org/cogitations/2008/05/13/command-of-the-day/ | ||
- | * Désactiver DSA : http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=481133 | + | * Désactiver DSA : |
+ | * (À lire) : http://etbe.coker.com.au/2008/05/18/debian-ssh-problems/ | ||
+ | * http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=481133 | ||
+ | |||
+ | |||
+ | ==== Attaques ==== | ||
+ | * http://community.livejournal.com/lbello_english/8799.html | ||
+ | * http://www.lucianobello.com.ar/post/the-root-of-all-mistake-the-overgeneralization/ |