My heart beats just for you

2008-06-04 Thread sandrarthur
I Knew I Loved You http://125.225.21.89/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Frustration with randome number generator vuln and ssh

2008-06-04 Thread James Miller
Hi everyone, If I am sending this to the wrong list please let me know! I have a server, details below, that I've updated to address the ssl random number generator issue but after generating the new ssh_host rsa and ssh_host_dsa keys, ssh still complains they're still vulnerable. I would

Re: Frustration with randome number generator vuln and ssh

2008-06-04 Thread A n d i k a Triwidada
On Thu, Jun 5, 2008 at 1:29 AM, James Miller [EMAIL PROTECTED] wrote: libssl0.9.8: Installed: 0.9.8e-4 Candidate: 0.9.8e-4 Version table: *** 0.9.8e-4 0 100 /var/lib/dpkg/status 0.9.8c-4etch3 0 500 http://security.debian.org etch/updates/main Packages 0.9.8c-4etch1 0

Re: Frustration with randome number generator vuln and ssh

2008-06-04 Thread Lothar Ketterer
Hi, (sorry James for sending it twice to you, forgot to press group reply) On Wed, Jun 04, 2008 at 01:29:30PM -0500, James Miller wrote: [...] Reinstallation of libssl0.9.8 is not possible, it cannot be downloaded. 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. [...] apt-cache

Re: Frustration with randome number generator vuln and ssh

2008-06-04 Thread James Miller
A n d i k a Triwidada wrote: On Thu, Jun 5, 2008 at 1:29 AM, James Miller [EMAIL PROTECTED] wrote: libssl0.9.8: Installed: 0.9.8e-4 Candidate: 0.9.8e-4 Version table: *** 0.9.8e-4 0 100 /var/lib/dpkg/status 0.9.8c-4etch3 0 500 http://security.debian.org etch/updates/main

Re: Frustration with randome number generator vuln and ssh

2008-06-04 Thread W. Martin Borgert
On Wed, Jun 04, 2008 at 02:37:38PM -0500, James Miller wrote: All I needed to do was run aptitude install libssl0.9.8=0.9.8c-4etch3 ... I have to admit, I _really_ need to learn aptitude, I'm kinda stuck in my ways using apt-get and dselect. I believe, that apt-get install package=version

Re: Frustration with randome number generator vuln and ssh

2008-06-04 Thread yosh
W. Martin Borgert skrev: On Wed, Jun 04, 2008 at 02:37:38PM -0500, James Miller wrote: All I needed to do was run aptitude install libssl0.9.8=0.9.8c-4etch3 ... I have to admit, I _really_ need to learn aptitude, I'm kinda stuck in my ways using apt-get and dselect. I

Re: Frustration with randome number generator vuln and ssh

2008-06-04 Thread Riku Valli
yosh wrote: W. Martin Borgert skrev: On Wed, Jun 04, 2008 at 02:37:38PM -0500, James Miller wrote: All I needed to do was run aptitude install libssl0.9.8=0.9.8c-4etch3 ... I have to admit, I _really_ need to learn aptitude, I'm kinda stuck in my ways using apt-get and dselect.

OT: apt-get (was: Frustration with randome number generator vuln and ssh)

2008-06-04 Thread W. Martin Borgert
On Wed, Jun 04, 2008 at 10:24:53PM +0200, yosh wrote: Sorry for hijacking the thread :) If I choose install a package from stable and there is a newer copy in testing (which I'm using) apt-get will try to replace that package on the next apt-get upgrade. Is there any way to counteract

Re: Frustration with randome number generator vuln and ssh

2008-06-04 Thread Lothar Ketterer
Hi, On Thu, Jun 05, 2008 at 12:40:19AM +0300, Riku Valli wrote: If I choose install a package from stable and there is a newer copy in testing (which I'm using) apt-get will try to replace that package on the next apt-get upgrade. Is there any way to counteract this? regards -- yosh

Re: ssh-keygen still gives vulnerable keys

2008-06-04 Thread s. keeling
Harrison Conlin [EMAIL PROTECTED]: On Wed, Jun 4, 2008 at 10:58 AM, Dan Christensen [EMAIL PROTECTED] wrote: I had this problem with a completely up-to-date Ubuntu gutsy install on I can't reproduce this now, as I have since upgraded the machine to hardy, which doesn't show the problem.

Re: ssh-keygen still gives vulnerable keys

2008-06-04 Thread Dmitry Nedospasov
I use both debian and ubuntu, but the ubuntu lists are quite good as well, so ubuntu users should stick to that for ubuntu question IMHO. P.S. thanks to all the people who found the vulnerability and made the fix. It was much more painless than i thought. D. On Jun 5, 2008, at 01:51, s.

Re: ssh-keygen still gives vulnerable keys

2008-06-04 Thread Dan Christensen
s. keeling [EMAIL PROTECTED] writes: I don't use *buntu myself, but I've no problem with *buntu users seeking Debian answers here. Just to clarify: the original poster was a *Debian* user. I simply was reporting that the same thing happened on Ubuntu, so this was not restricted to a single