[Top][All Lists]
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Bug crypto/38417] gnu.java.security.util.PRNG produces easily predictab
From: |
lloyd at randombit dot net |
Subject: |
[Bug crypto/38417] gnu.java.security.util.PRNG produces easily predictable values |
Date: |
8 Dec 2008 15:45:07 -0000 |
------- Comment #3 from lloyd at randombit dot net 2008-12-08 15:45 -------
I have confirmed that DSA private keys can easily be derived from the public
key and a single message/signature pair when the app is compiled with gcj. It
does not matter if the key was generated by gcj or something else; any DSA key
used with gcj is easily compromised as long as the public key, message and
signature are known, and the attacker has some starting guess as to what time
the message was signed. Tested with 'gcj (Gentoo 4.3.2 p1.2) 4.3.2'.
I can attach the victim and attack code, if desired.
--
http://gcc.gnu.org/bugzilla/show_bug.cgi?id=38417
- [Bug crypto/38417] New: gnu.java.security.util.PRNG produces easily predictable values, lloyd at randombit dot net, 2008/12/05
- [Bug crypto/38417] gnu.java.security.util.PRNG produces easily predictable values, lloyd at randombit dot net, 2008/12/05
- [Bug crypto/38417] gnu.java.security.util.PRNG produces easily predictable values, lloyd at randombit dot net, 2008/12/05
- [Bug crypto/38417] gnu.java.security.util.PRNG produces easily predictable values,
lloyd at randombit dot net <=
- [Bug crypto/38417] gnu.java.security.util.PRNG produces easily predictable values, neugens at limasoftware dot net, 2008/12/08
- [Bug crypto/38417] gnu.java.security.util.PRNG produces easily predictable values, lloyd at randombit dot net, 2008/12/08
- [Bug crypto/38417] gnu.java.security.util.PRNG produces easily predictable values, neugens at limasoftware dot net, 2008/12/08
- [Bug crypto/38417] gnu.java.security.util.PRNG produces easily predictable values, lloyd at randombit dot net, 2008/12/08
- [Bug crypto/38417] gnu.java.security.util.PRNG produces easily predictable values, csm at gnu dot org, 2008/12/08
- [Bug crypto/38417] gnu.java.security.util.PRNG produces easily predictable values, gnu_andrew at member dot fsf dot org, 2008/12/19