On 2017-07-11T20:03, Alexander Wuerstlein <[email protected]> wrote:
> On 2017-07-11T18:53, Alice Wonder <[email protected]> wrote:
> > 
> > Give an acedemically sound (as in published exploit or peer reviewed paper)
> > demonstrating a flaw in haveged or just stop.

I just found this, pertaining to PolarSSLs own implementation of the
HAVEGE algorithm:
https://tls.mbed.org/tech-updates/security-advisories/polarssl-security-advisory-2011-02

Debian docs describe how the PolarSSL implementation compares to the one in
haveged:
https://www.apt-browse.org/browse/ubuntu/trusty/universe/i386/haveged/1.7c-1/file/usr/share/doc/haveged/README.Debian




Ciao,

Alexander Wuerstlein.
_______________________________________________
Ach mailing list
[email protected]
https://lists.cert.at/cgi-bin/mailman/listinfo/ach

Reply via email to