Re: libssl patch available

2015-03-14 Thread Ted Unangst
Ted Unangst wrote: > The patch below includes the fix for CVE-2015-0204 as well as some other "low > severity" fixes for similar downgrade issues relating to ECDHE. Heads up. This patch contains a not quite backwards compatible change. We removed support for 512 bit DH exchange as part of the diff

Re: keyboard and mouse problems

2015-03-14 Thread Fred
On 03/11/15 15:11, Theo de Raadt wrote: Two related problems regarding mice and keyboards came to my attention during s2k15 in Brisbane and I worked with jcs@ on solutions. The first problem is some newer machines (such as the thinkpad x1) have keyboard repeat or stuttering during install -- thi

Re: ksh version lies

2015-03-14 Thread Christian Weisgerber
On 2015-03-13, Patrik Lundin wrote: > If ksh88 neither has KSH_VERSION or the .sh variables, could the > presence of KSH_VERSION mean "this shell is at least ksh93 equivalent"? No. As far as I can tell, pdksh actually pre-dates ksh93. I don't know when KSH_VERSION was added--possibly at the tim

libssl: signal races in capability checks

2015-03-14 Thread Tobias Stoeckmann
Hi, grep'ed the tree for siglongjmp calls, and spotted possible offenders in libssl's code. The code in question checks hardware capabilities for ARM, S390x, and SPARCv9. The code will call some routines that could trigger SIGILL (or SIGBUS), which is caught with an own signal handler. This signa

Re: keyboard and mouse problems

2015-03-14 Thread Eivind Eide
On this rather older machine I cannot upgrade the system now with the bsd.rd of 14. march 2015. What happens is that when I press u I get uuu. All keypresses get duplicated by seven. Because I cannot upgrade (or at all use keyboard) with this ramdisk kernel I can only contribute the dmesg from