Re: [PATCH] Delete cryptoloop

From: Fruhwirth Clemens (clemens-dated-1091642568.f246_at_endorphin.org)
Date: 07/25/04

  • Next message: Tim Hockin: "Re: [patch] kernel events layer"
    To: Jari Ruusu <jariruusu@users.sourceforge.net>
    Date:	Sun, 25 Jul 2004 20:02:47 +0200
    
    
    

    On Sun, 2004-07-25 at 19:25, Jari Ruusu wrote:
    > Fruhwirth Clemens wrote:
    > > On Sun, 2004-07-25 at 13:42, Jari Ruusu wrote:
    > > > Fruhwirth Clemens wrote:
    > > There is no use in running your code. It does not decipher any block
    > > without the proper key.
    >
    > So you never ran that. That explains a lot.

    Probably just, that I like to save life time.

    > > Where is the exploit?
    >
    > wget -O cryptoloop-exploit.tar.bz2 "http://marc.theaimsgroup.com/?l=linux-kernel&m=107719798631935&q=p3"

    That's no exploit. Where is the exploit?
    http://www.google.com/search?q=jargon%20exploit
    When you're there, you can look up the term ``backdoor'' as well.

    > > Further the link you provide in the posting above is broken (as you
    > > already noticed). I tried at google cache, citeseer and the rest of
    > > Saarien's homepage. No success.
    >
    > In short: exploit encodes watermark patterns as sequences of identical
    > ciphertexts.

    Probably I'm missing the point, but at the moment this looks like a
    chosen plain text attack. As you know for sure, this is trivial. For
    instance, AES asserts to be secure against this kind of attack. (See the
    author's definition of K-secure..).

    > > > Can you name implementation that your "key-truncated" version is compatible
    > > > with that existed _before_ your version appeared?. To my knowledge, that
    > > > key-truncated version is only compatible with itself, and there is no other
    > > > version that does the same.
    > >
    > > Actually there is a version: util-linux 2.12 official. But
    > > unfortunately, the official version truncates binary keys (at 0x00, 0x0a
    > > values), that's what my patch is for. cryptsetup handles keys the same
    > > way. So migration is easy, something which does not hold true for your
    > > strange util-linux patches.
    >
    > Actually loop-AES' util-linux patch can used in mainline util-linux-2.12
    > compatible mode. Just specify passphrase hash type as unhashed2

    The default mode of loop-AES' isn't compatible with anything out there.

    > But I was talking about your rmd160 compatibity with ancient mount versions
    > that used 160 bits of hash output + 96 zero bits. Last time I looked at your
    > compatibility code it used 128 bits of hash and 128 bits of zeroes.

    I'm not aware of any ``ancient'' mount versions. util-linux 2.12 is not
    designed to be compatible with anything. It's merely a low-level
    interface, since the maintainer decided to omit hashing completely. My
    patch enables the user to utilize external hash programs like hashalot.

    The compatibility code you're referring to is probably my patch for
    hashalot. As you know, this has nothing to do with util-linux. If you're
    not happy with hashalot, write your own external hasher, you can do that
    thanks to my patch.

    -- 
    Fruhwirth Clemens <clemens@endorphin.org>  http://clemens.endorphin.org
    
    

    -
    To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
    the body of a message to majordomo@vger.kernel.org
    More majordomo info at http://vger.kernel.org/majordomo-info.html
    Please read the FAQ at http://www.tux.org/lkml/



  • Next message: Tim Hockin: "Re: [patch] kernel events layer"

    Relevant Pages

    • Re: The possibility of vms opening up?
      ... compatibility or other specific configs like an older version of the OS ... The question was "who ensures the patch does not break...". ... No that does leave room for an exhaustive test, but nobody can test all possibilities, e.g., HP does not have the resources for testing VMS on all platforms in all configurations either. ...
      (comp.os.vms)
    • Re: The possibility of vms opening up?
      ... compatibility or other specific configs like an older version of the OS ... The question was "who ensures the patch does not break...". ... In some cases we are talking machines ... IT department that would do testing, alot of open source projects come ...
      (comp.os.vms)
    • Re: Final Fantasy 8 on XP
      ... Anyone have a patch or anything to get Final Fantasy 8 to run ... It installs fine, but then when I run it nothing happens. ... You running it in Win 98 compatibility mode? ... -- "Arabs are the new Asians, ...
      (comp.sys.ibm.pc.games.rpg)
    • Re: PATCH: Nothing new, just many old patches bundled together
      ... I haven't studied the patch, but it CAN be done without breaking file ... Adding something that needs space reservation for some critical struct is ... what can NOT be done without breaking file compatibility. ...
      (rec.games.roguelike.nethack)