[tahoe-lafs-trac-stream] [tahoe-lafs] #1586: "PowmInsecureWarning: Not using mpz_powm_sec" warning from PyCrypto

tahoe-lafs trac at tahoe-lafs.org
Thu Nov 17 22:50:35 UTC 2011


#1586: "PowmInsecureWarning: Not using mpz_powm_sec" warning from PyCrypto
--------------------------+---------------------------
 Reporter:  davidsarah    |          Owner:  somebody
     Type:  defect        |         Status:  new
 Priority:  minor         |      Milestone:  undecided
Component:  packaging     |        Version:  1.9.0b1
 Keywords:  pycrypto-lib  |  Launchpad Bug:
--------------------------+---------------------------
 This warning occurs when importing PyCrypto 2.4.1:

 {{{
 /usr/local/lib/python2.6/dist-packages/pycrypto-2.4.1-py2.6-linux-
 x86_64.egg/Crypto/Util/number.py:57: PowmInsecureWarning: Not using
 mpz_powm_sec.  You should rebuild using libgmp >= 5 to avoid timing attack
 vulnerability.
 }}}

 We probably just need to accelerate our programme to get rid of PyCrypto
 (http://twistedmatrix.com/trac/ticket/4633).

-- 
Ticket URL: <https://tahoe-lafs.org/trac/tahoe-lafs/ticket/1586>
tahoe-lafs <https://tahoe-lafs.org>
secure decentralized storage


More information about the tahoe-lafs-trac-stream mailing list