[Top][All Lists]
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Gnu-arch-users] Re: MD5 is broken
From: |
Bruce Stephens |
Subject: |
Re: [Gnu-arch-users] Re: MD5 is broken |
Date: |
Wed, 16 Mar 2005 10:54:52 +0000 |
User-agent: |
Gnus/5.11 (Gnus v5.11) Emacs/22.0.50 (gnu/linux) |
Ivan Boldyrev <address@hidden> writes:
[...]
> Attackers creates some sexy patch for TLA (for example, support of
> multiple hashes from libgcrypt). Then I create another patch that
> stoles gpg passwords that people type when using signed archives.
>
> Two patches with same MD5 signature. Quotation from paper of Czech
> scientist:
Maybe you could do that, but remember these are collisions of things
which have to be carefully constructed.
Anyway, hashes in Arch are about detecting unexpected modifications
due to random breakage. If you really care about patches you'd sign
them, wouldn't you?
[...]
- Re: [Gnu-arch-users] Re: MD5 is broken, (continued)
- Re: [Gnu-arch-users] Re: MD5 is broken, Andrew Suffield, 2005/03/16
- Re: [Gnu-arch-users] Re: MD5 is broken, Karel Gardas, 2005/03/16
- [Gnu-arch-users] Re: MD5 is broken, Andreas Rottmann, 2005/03/16
- Re: [Gnu-arch-users] Re: MD5 is broken, Karel Gardas, 2005/03/16
- Re: [Gnu-arch-users] Re: MD5 is broken, Adrian Irving-Beer, 2005/03/17
- Re: [Gnu-arch-users] Re: MD5 is broken, Jan Hudec, 2005/03/17
- Re: [Gnu-arch-users] Re: MD5 is broken, Tom Lord, 2005/03/21
- Re: [Gnu-arch-users] Re: MD5 is broken, James Blackwell, 2005/03/21
- Re: [Gnu-arch-users] Re: MD5 is broken, Andrew Suffield, 2005/03/17
- Re: [Gnu-arch-users] Re: MD5 is broken, Matthew Dempsky, 2005/03/16
- Re: [Gnu-arch-users] Re: MD5 is broken,
Bruce Stephens <=
- Re: [Gnu-arch-users] Re: MD5 is broken, Jan Hudec, 2005/03/16
- [Gnu-arch-users] Re: MD5 is broken, Ivan Boldyrev, 2005/03/16
- Re: [Gnu-arch-users] Re: MD5 is broken, Bruce Stephens, 2005/03/16
- Re: [Gnu-arch-users] Re: MD5 is broken, Jan Hudec, 2005/03/17