Cotton Rohrscheib

The Cotton Club Blog & Podcast

  • Home
  • About
    • Entrepreneurial Journey
  • Blog
    • Faith & Family
    • Marketing & Tech
    • Farm & Business
    • Entertainment
    • Health & Wellness
    • Urban Farming
    • Weekend Projects
  • Podcast
  • Newsletter
  • Media
    • Photo Galleries
    • Video Archives
  • Marketplace
    • Buying Gold & Silver
    • Accoutrements
      • Bags & Briefcases
      • Notebooks
      • Personal Carry
      • Wallets
    • Artwork
    • Coins & Currency
      • Silver Certificates
      • Gold Banknotes
      • Currency
      • Coin Sets
      • Individual Coins
    • Sports Memorabilia
    • CIvil War Relics
    • Drones
    • Native American Artifacts
      • Individual Pieces
      • Groups (Cache)
    • Pens
    • Rare Books
    • Signs & Advertising
    • Stock Certificates
    • Trading Cards
      • Trading Cards: Autographs
      • Trading Cards: Base
      • Trading Cards: Graded
      • Trading Cards: Raw
      • Trading Cards: Pokémon
      • Trading Cards: Sets
    • Vintage Toys
      • Buddy L
      • Ertl Farm Toys
      • GI Joe
      • Masters of the Universe
      • Hot Wheels
      • Lionel Trains
      • Lunch Boxes
      • Marx Toys
      • NASCAR Die-Cast
      • Schleich Toys
      • Star Wars
      • Tonka Trucks
      • Walt Disney Productions
    • Vintage T-Shirts
    • Vinyl Records
    • Watches & Jewelry
    • Workshop
      • Building Hardware
      • Camping & Outdoors
      • Tools
      • PCMCIA Cards
      • RAM Memory
      • Microcontrollers
      • CPUs
      • Laboratory Glassware
  • Connect
You are here: Home / Marketing & Tech / Crypto Bug Cripples Ubuntu Linux

Crypto Bug Cripples Ubuntu Linux

May 19, 2008 by Cotton Rohrscheib Leave a Comment

Fortunately we predominately run Centos Linux and aren’t affected by the Major Crypto Bug that was announced this week.  Apparently it only affects systems with the Ubuntu flavor of Linux running.  Here’s a snippet I found in PC Magazine outlining the bug exploit.

A major problem has been revealed in Debian Linux and derivative packages, such as Ubuntu . Debian revealed the other day that a fix they made back in September 2006 had the unintended consequence of crippling the strength of their OpenSSL distribution.

OpenSSL is used, of course, for Secure Sockets Layer which provides authentication and encryption for web traffic, but it’s also used for other cryptography functions. OpenSSL is a very important package that brought public key cryptography to the masses; prior to OpenSSL, https web sites were expensive and complicated to build.

The strength of public key encryption relies, in large part, on the large number of potential keys that could be used to encrypt data. Keys are often 1024 or 2048 or 4096 bits long; these store very large numbers so a brute force attack, trying all of the possibilities, could take a prohibitive amount of time.

But the bug introduced by Debian effectively reduces the strength of the key to 32768 permutations, which is 16 bits. Famed security researcher HD Moore has actually already pre-calculated all of the potential keys for the most common cases. It took mere hours. So now you can be hacked even without someone brute-forcing your encryption.

Because of it’s centrality, Linux sites are often deeply-reliant on certificates generated by OpenSSL to encrypt network traffic. Fixing the problem is not just a matter of updating the software; you also have to go back and generate new certificates and have them signed. This is complicated stuff, not for the novice Linux user. Expect tools to come along soon to help.

Originally published on Security Watch, the PC Magazine security blog.
Source:
Major Crypto Bug Cripples Ubuntu Linux Security – News and Analysis by PC Magazine

Share this post on:

  • Share on Facebook (Opens in new window) Facebook
  • Share on X (Opens in new window) X
  • Share on Reddit (Opens in new window) Reddit
  • Email a link to a friend (Opens in new window) Email
  • Share on LinkedIn (Opens in new window) LinkedIn
  • Share on Pinterest (Opens in new window) Pinterest

Filed Under: Marketing & Tech Tagged With: Linux, Ubuntu

About Cotton Rohrscheib

The Cotton Club is a monthly podcast hosted by me, Cotton Rohrscheib. I'm a 52 year old entrepreneur w/ ADHD, OCD (and now AARP) that refuses to grow up as I grow old. I have collaborated and invested in hundreds of projects throughout my career in multiple industries such as; technology, healthcare, and agriculture. I also have 25 years experience in the marketing industry as a co-founder of an award-winning advertising agency. I will undoubtedly cover a wide variety of topics on my podcast while sharing some really crazy stories and situations that I've been fortunate to witness firsthand. I also have a book coming out in 2025 titled, "Mistakes were Made"

Leave a Reply Cancel reply

You must be logged in to post a comment.

  • Email
  • Facebook
  • Instagram
  • LinkedIn
  • Twitter

Recent Updates

  • Upcoming Podcast w/ World-Renowned Author & Memphis Wrestling Historian Mark James
  • Monthly Garden Update – May 2026
  • What does El Niño mean for Farmers?
  • Trying Out Degree Grading Service
  • Envira Gallery Photo Plugin for WordPress

Blog Categories

  • Blog (448)
  • Entertainment (379)
  • Faith & Family (155)
  • Farm & Business (305)
  • Health & Wellness (38)
  • Marketing & Tech (595)
  • Podcasts (33)
  • Urban Farming (25)
  • Weekend Projects (16)

Blog Archives

Join the Cotton Club!

 

Content Copyright © 2000-2026
Cotton Rohrscheib | Rohrscheib Capital
Disclaimer | Privacy Policy | Account Manager | View Cart

All opinions expressed on this website are 100% Cotton (see my disclaimer). All content, including text, images, and media, are the intellectual property of Rohrscheib Capital unless otherwise noted. To learn how we use your private information, checkout our privacy policy.