[prev in list] [next in list] [prev in thread] [next in thread] 

List:       linux-crypto
Subject:    Re: Vulnerability in encrypted loop device for Linux
From:       Jerome Etienne <jme () off ! net>
Date:       2001-12-19 13:21:42
[Download RAW message or body]

On Wed, Dec 19, 2001 at 09:28:09AM +0000, Andrew McGuinness wrote:
> It seems to me the "cut/paste" attack won't work, as different disk blocks
> are encrypted with different IV values - the IV is derived from the
> block number - so the same ciphertext encrypts
> to different plaintext if you move it to a different block.
> 
> Am I missing something here? 

the cut/paste is independant of the IV. you can read the 
bellovin paper (find the ref at the end of my text)
about it which give a longer explaination
-
Linux-crypto:  cryptography in and on the Linux system
Archive:       http://mail.nl.linux.org/linux-crypto/

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic